Hello all,
I have a question. I am putting together a regional network for a state agency. Here is a basic breakdown of the network architecture I wish to achieve:
1 Main Office 6 Satellite OfficesThe existing architecture is a private T-1 between the state mainframe and the regional head office. Currently, the users of this network at the regional head office (a total of 7 users) use PCs with Terminal Emulation clients to reach the state mainframe via the T-1. That works fine and nothing of interest there. However, these users spend much of the week operating out of remote locations. There are six laptops these users bring with them to these remote locations. They travel to these remote locations one at a time, three days a week. They spend one day at the remote location then move to another location the next day. Only one remote location is in use on any given day. Currently, the users dial up directly to the state via regular phone lines to attach to the state mainframe. Due to changing architectures, the state would like to do away with the dialup and move to TCP/IP. This means that the remote sites now must communicate with the head office and THEN be transported to the state mainframe via the link from the head office to the mainframe. I propose to accomplish this via DSL connections at the remote locations, transport the data via VPN to the regional head office, and then send the data on its way to the state mainframe via the T-1.
My question is this: which device would be best for the regional head office for the VPN? I have already settled on the Pix 501 for the remote locations. I originally planned to use another 501 for the head office end of the VPN tunnel. However, I am looking at the 515e for the head office now. Is this overkill? With so few users (the bandwidth requirements for the applications are very small, in truth a 56K dialup would do just fine for the amount of bandwidth required for the applications) will a 501 at the head office fulfill the requirements? Or is the 515e required at the head office location simply because it is the "master" end of the tunnel?
Thanks in advance for your time and advice.