Timberline Technologies Logo

HOME SECURITY PRODUCT LINKS SECURITY RESOURCES
SECURITY WORKSHOPS SECURITY ADVISORY LINKS CONTACT INFORMATION
CONSULTING SERVICES SECURITY NEWS LINKS SITE MAP

 New from Timberline Technologies:

Online Cryptography Course

with Lab Exercises

Tell me more ...

Alphabetical List of Virtual Private Network Products

Disclaimer:

These links are provided as a free service to those seeking commercial information security products or shareware tools. The fact that a product is listed here is not an indication that Timberline Technologies LLC has evaluated it nor that we recommend it. The descriptive text is generally taken from the vendor's own product literature. The buyer has the ultimate responsibility to ensure that the information security product is suitable for its intended use. Please follow the links to the vendor pages to obtain more detailed information on a particular product. Additional guidance on product selection can be found in the On-Site Security Workshops.

Vendors Please Note: If your product does not appear in this index or if you feel that it has been incorrectly categorized please contact webmaster@timberlinetechnologies.com and the error will be corrected.

Important Note to Surfers: Timberline Technologies takes strict precautions to provide "safe" links. We will not knowingly provide a link to a site with dangerous active content or questionable privacy policies. Nevertheless, we can not guarantee the safety of all links provided. Those who are concerned about browsing securely are advised to use the facilities of safeWeb or Anonymizer.

Product Name Description
AIX VPN (IBM) Key Exchange Methods: Internet Key Exchange for IP Version 4. Signature mode using RSA Digital Certificates. Preshared Key Mode. IBM Tunnel Protocol. Manual Tunnels for IP Versions 4 and 6. Tunnel Types: ESP - Encapsulating Security Payload. AH - Authentication Header. Transport and Tunnel mode (end host or gateway configuration). Algorithms: DES - Data Encryption Standard. Triple DES. CDMF - 40 bit DES. Null encryption. MD5 - Message Digest 5. SHA1 - Secure Hash Algorithm 1. IKE Options: Main or Aggressive Mode. Diffie Hellman groups 1 and 2. Range of acceptable key lifetimes for responding. Predefined security policies. Quick Configuration panel. Packet Filtering: Accept or deny packets based on: IP address and subnet mask for IPV4 and IPV6. Interface, protocol and port numbers. inbound or outbound packets. forwarded or local packets. fragmented packets.
CeloCom for Citrix Metaframe (Celo Communications) Fully transparent towards Citrix MetaFrame and enables full-strength encryption, e.g. 128-bit 3DES, RC4. CeloCom for Citrix also enables usage of certificates (X.509) for strong user-authentication, e.g. RSA keys up to 2048-bit. Below you can see how CeloCom for Citrix works.
Cisco Secure VPN Client (Cicso Systems) Provides Cisco customers with a best-in-class solution that supports the remote access VPN requirements for e-commerce, road warrior, and telecommuting applications. The Cisco Secure VPN Client provides Microsoft Windows 95/98 and NT 4.0 users with complete implementation of IPSec standards, including support for DES and Triple DES encryption and authentication with digital certificates, one-time password tokens, and pre-shared keys.
Defensor (CyberSafe) Designed to rapidly leverage an Entrust PKI. Defensor AppVPN provides secure end-to-end application communications, regardless of the network technology or the geographic location of the communicating parties. Defensor AppVPN is an Entrust-Ready product under the Entrust/PKI v5.0.
Entrust/Access (Entrust Technologies) Provides a cost-effective solution for transparently and securely connecting remote users to your internal networks. Because Entrust/Access is Entrust-Ready™, it can leverage the power of the Entrust/PKI™ for an integrated and easy-to-manage solution for users seeking secure remote access to your organization's VPN.
Entrust/VPNConnector (Entrust Technologies) A flexible solution for providing digital IDs for VPN gateways, remote access clients and routers from a wide range of industry leading vendors. Entrust/VPNConnector ensures security by allowing you to control your network, permitting access only to authenticated devices with legitimate and current digital IDs.
Fiberlink LAN to LAN VPN (Fiberlink Communcations) A turnkey VPN enabling companies to create secure communication access to mission-critical information with remote offices, business partners, clients, or suppliers anywhere in the world. Fiberlink uses the Internet to deliver guaranteed high performance, secure and scalable VPN solutions with significant savings over private networks.
Fiberlink Remote Access VPN (Fiberlink Communcations) Secure local connections to more than 4,000 POPs around the world makes this solution ideal. With Fiberlink Global Remote your users receive the widest global reach, quality performance, robust security, world class management and monitoring, combined with cost savings of 30-80%.
Guardian VPN Client Software (NetGuard) Runs on Windows¨ 95, Windows¨ 98 or Windows NT¨ 4.0. With the Guardian VPN Client Software, remote users (such as mobile employees and telecommuters) can securely access corporate resources using either public networks or existing corporate dial-up facilities. Like the IPSECure Guard IPsec Card, Guardian VPN Client Software follows the IETF IPSec security standards, using full 40-bit/56-bit DES and 168-bit Triple DES encryption, X.509 v.3 Digital Certificate Authentication, and Internet Key Exchange (IKE) for key management.
HP eFirewall w/VPN (Hewlett-Packard) In a partnership with AXENT Technologies, HP offers the Raptor Firewall for HP-UX, Windows NT®, and Solaris platforms.
HP Praesidium Extranet VPN (Hewlett-Packard) In a partnership with Aventail Corporation, HP offers the Extranet VPN, which secures communications between third-party users and a company's internal network, with user-based authentication and strong encryption of information sent over the Internet. With the addition of Aventail's solution to the Praesidium product line, businesses can more safely and cost-effectively conduct transactions and share confidential information over the Internet with customers, strategic partners and employees.
HP IPSec/9000 (Hewlett-Packard) Provides secure and private communication both over the Internet and within the enterprise without the need to modify existing applications. Along with authentication, data integrity, and data privacy, IPSec/9000 offers protection against spoofing and packet tampering. This VPN capability is provided at no charge on HP-UX 11.0.
IBM 2210 Nways Multiprotocol Router (IBM) Provides serious network computing solutions for a range of applications. This family of routers offers connectivity and protocol support to work with everything from a 2-client local area network (LAN) to a 1000-user TCP/IP-based wide area network (WAN).
IBM 2212 Access Utility (IBM) A branch office in a box. Now it's easy to connect local area networks (LANs) to your mobile workforce via remote LANs, or branch offices to the Internet or to company backbone, using advanced multiprotocol virtual private networks (VPNs). The IBM 2212 Access Utility provides both cost-effective computing across a broad range of remote locations, as well as the flexibility to grow in meeting tomorrow's networking needs.
IBM 2216 Nways Multiaccess Connector (IBM) Delivers wide-area-network (WAN) access, S/390 host access and remote site concentration. When combined with the Nways Multiprotocol Access Services (MAS) software, the 2216 Nways Multiaccess Connector helps reduce the cost of computing through increased network performance and operations efficiencies.
KyberDIAL Client Software (KyberPASS) A 32-Bit client application, which is compatible with Windows 95™, Windows 98™ and Windows NT™ V4.0 Remote Access Service (RAS) dialers in both function and operation. It provides functions for the creation, modification and deletion of connection definitions and is fully compatible with existing definitions. It provides for the initiation, monitoring and termination of dial-up connections.
KyberPASS Security Server (KyberPASS) An Internetworking Security and Policy Management system (ISPM) and is the heart of the KyberPASS™ software suite. This software-based proxy server uses public/private key encryption technology to strongly authenticate users before creating a dynamic Virtual Private Network (VPN) between the user's workstation and enterprise servers. All data packets transferred between the client workstation and the server can be encrypted and digitally signed ensuring privacy and integrity of information across non-secure public networks.
KyberWIN Client Software (KyberPASS) An easy to install transparent desktop application that works in conjunction with the KyberPASS™ Security Server to enable secure and authenticated connection to enterprise servers over public networks. KyberWIN™ acts as middleware between the network application and the network operating system, automatically making the application PKI enabled. Any legacy application or commercial off the shelf software which implements the TCP/IP protocol is enabled for PKI by KyberWIN™
KyberXPRESS (KyberPASS) An add-on component to the KyberPASS™ Security Server software. It provides a server to server authentication and encryption solution useful for transmitting large volumes of data securely and privately between multiple locations. When KyberXPRESS™ is installed along with the KyberPASS™ Security Server, it facilitates the client digital signature and encryption services in a way similar to the KyberWIN™ Client software on a workstation. KyberXPRESS™ can be used to create Partner and Extranet Virtual Private Networks.
NetScreen-5 (NetScreen Technologies) This high-performance security appliance integrates a firewall, VPN, and traffic shaping in a single unit for small offices and telecommuters.
NetScreen-10 (NetScreen Technologies) Supports wireline performance for critical VPN functions and sets the standard for VPN solutions. IPSec Compatible - Inter-operability With Other Vendor Devices. IKE Key Management - Secure Key Exchange. DES and Triple DES - Highest Level of Encryption.
NetScreen-100 (NetScreen Technologies) Network Address Translation (NAT) - Hide Inside IP addressing. Transparent Mode- Insivible to network devices. Dynamic Filter - Protect Network Service. User Authentication - Authorized Access Only, Web, Radius & Secure ID. IPSec Compatible - Inter-operability With Other Vendor Devices. IKE Key Management - Secure Key Exchange. DES and Triple DES - Highest Level of Encryption. Strong Authentication- MD5, SHA-1.
NetScreen Global (NetScreen Technologies) Central security management for up to 1000 devices. Secure configuration. Monitoring. Reporting.
NetScreen Remote (NetScreen Technologies) Windows 95, 98, NT VPN client. Secure remote access. IPSec compatible. Policy-based.
Norman Security Server (Norman Data Defense Systems) Secures networks against unauthorized access from both internal and external sources and will improve the level of data security for a security minded company. The Norman Security Server is available for both Windows NT and Novell NetWare.
PathBuilder S400 WAN Convergence Switch (3Com) Both voice and data carried over the VPN.
PathBuilder S500 Tunnel Switch (3Com) Graphical system for monitoring tunnels, including session statistics, QoS, security breaches, and potential faults. ICSA-certified firewalls, NAT, IPSec, and MPPE. Authentication is supported through RADIUS, EAP, and LDAP client.
Personal Ravlin (Global Technologies Group) Addresses the needs of individual remote users who access corporations via cable, xDSL, and ISDN modems. The Personal Ravlin is a single-user hardware client that provides full IPSec Virtual Private Network (VPN) capability in a small form factor (can fit in the palm of your hand). Security administrators can deploy the Personal Ravlin in a number of ways: within a corporate LAN; behind a cable, ISDN, or xDSL modem; or behind an access router connected to a full-duplex T1/E1 wide-area network (WAN) circuit. The Personal Ravlin can be configured by the administrator to support either a single tunnel or multiple simultaneous tunnels.
PGP VPN Client (PGP) Provides full-featured communication security. The PGP VPN client is an easy-to-use encryption application that allows you to communicate securely and economically with other IPSec compliant VPN products. It is a standards based product using the IETF IPSec and IKE protocols. The privacy, integrity and authenticity of information sent from a PGP VPN Client host to a secure host, gateway or subnet is maintained. PGP VPN Client empowers you to send data securely across the Internet and other untrusted networks.
Lucent VPN Gateway (Lucent Technologies) The Lucent VPN Gateway provides secure Internet connectivity for intranet, extranet, and remote access virtual private networks (VPNs). Unlike VPN products that include makeshift security functions, the Lucent VPN Gateway is built on our Lucent Managed Firewall, a state-of-the-art, NSA-certified hybrid firewall. This gives you maximum VPN security, scalability, and speed.
RapidStream 2000 (RapidStream) The RapidStrea Multi-Function Security Appliance product family supports the following: High performance - Using a Network Security Processor developed by RapidStream (called  RapidCore™), the RapidStream Mutli-function Security Appliance Family supports simultaneous enforcement of firewall, VPN/encryption, QoS, and NAT policies at throughputs up to 400 Mbps. Range of applications - The RapidStream Security Appliance product family provides solutions for all parts of the network infrastructure including intranets, remote sites, and within Service Provider networks. Assured performance/WAN optimization - The RapidCore architecture enables throughputs to support WAN/cable modem links (DSL, FT1, T1, multiple T1s, and DS3) at wire-speed, regardless of what types of security polices are being enforced. In addition to the assurance that the WAN link can be fully utilized, QOS policies can be defined to assign higher priority to traffic. Low latency - The RapidCore architecture enforces security policies with minimal delay (microseconds vs. milliseconds). This is particularly important to delay-sensitive applications, such as voice and video.
Ravlin 10/5100 (Global Technologies Group) Performs encryption and decryption of the theoretical maximum of Ethernet. Network administrators use it to establish private communications within secure intranets (between corporate divisions, workgroups, branch offices, and individuals) or within secure extranets (between customers, suppliers, and strategic partners.) Provides data privacy using industry-standard 56-bit DES and 168-bit Triple DES encryption. Authentication and access control are provided using DSS (Digital Signature Standard), Diffe-Hellman key exchange, X.509 v.3 digital certificates, and ISAKMP/Oakley key management. These security standards are part of the Internet Engineering Task Force (IETF) IP Security Standard (IPSec). The Ravlin10/5100 maintains the theoretical maximum of Ethernet (or "wire" speed) through the use of RedCreek CryptoCoreTM technology.
Ravlin 3200 (Global Technologies Group) Performs encryption and decryption of the theoretical maximum of Ethernet. Network administrators use it to establish private communications within secure intranets (between corporate divisions, workgroups, branch offices, and individuals) or within secure extranets (between customers, suppliers, and strategic partners.)
Ravlin 7100 (Global Technologies Group) Implements all the mandatory components of the Internet Engineering Task Force (IETF) IP Security Standard (IPSec) standard for enhanced network security. Provides data privacy using industry-standard 56-bit Data Encryption Standard (DES) and 168-bit Triple DES encryption. Authentication and access control are provided using DSS (Digital Signature Standard), Diffie-Hellman key exchange, X.509 v.3 digital certificates, and IKE key management. Using RavlinNodeManager, the Ravlin 7100 firmware gives the network administrator or security manager a choice of several secure VPN operational modes.
RavlinSoft (Global Technologies Group) Client software tool that provides the same security as a Ravlin hardware unit. Remote users such as mobile employees and telecommuters can securely access corporate resources through either public networks or existing corporate dial-up facilities. Provides privacy (56-bit DES, 168-bit Triple DES encryption), user authentication (ISO X.509 v.3 digital certificates), and key management (IKE).
S9500 Security Appliance (Netopia) A high performance Firewall with integrated IPSec VPN and traffic shaping capabilities. Designed specifically to meet the needs of small and medium sized businesses, the S9500 is a cost-effective solution for securing local area networks (LANs). The S9500 features high powered hardware-based performance that is capable of screening 4000 concurrent firewall sessions at 10 Mbps while supporting 200 concurrent 3DES encryption operations.
SecureCom 8001 Secure Internet Appliance (Intrusion.com) Allows customers a complete security solution in a small form factor utilizing best-of-breed software from ODS Networks and Check Point Software. SecureCom is the only Internet security appliance that provides a low cost, ease-of-use security appliance. Engineered to provide secure Internet connectivity, the SecureCom includes routing, LAN/WAN connectivity, remote configuration and up to 4 DMZ connections. SecureCom comes pre-configured or as a stand-alone gateway. ODS Networks offers SecureCom in a variety of security bundles for firewall protection depending on the amount of users. These bundled configurations are engineered specifically for security professionals, ISP's, consultants and administrators for securing corporate information.
Shiva LANRover VPN Suite (Intel) The LanRover VPN Gateway and LanRover VPN Express connect employees, customers, business partners and corporate systems in a complete, end-to-end virtual private networking (VPN) solution. Businesses can take advantage of the LanRover VPN Suite to achieve a unique combination of powerful, inexpensive Internet-based business access and data privacy.
Shiva VPN Client (Intel) Provides your remote employees and partners with a transparent, secure way to leverage the Internet for cost-effective access to your corporate networks. Shiva VPN Client software works with the LanRover VPN Gateway™ to give Windows 95/NT clients confidential, authenticated communications with other users, servers and networks. By augmenting and interoperating with direct-dial and leased-line connections, including Shiva’s full line of business access products, the Shiva VPN Client increases the value of your investments in existing network architecture.
SmartGate VPN (V-ONE) SmartPass Client (License Agreement) - installs on a remote user’s desktop to provide VPN connection services to the SmartGate server. It manages user authentication by interfacing with a variety of tokens, including V-ONE’s integrated digital token. Successful authentication initiates a DES or 3DES encrypted data session with the SmartGate server. SmartGate Server (License Agreement) –  integrates into the Internet perimeter security environment. It manages authentication token deployment and registration, session authentication, user connection privileges to network applications, and event logging. The SmartGate server has an integrated user database or interfaces with third-party authentication systems. 
Trusted Client (TrustWorks Systems) Protects personal computers against unauthorised access from a network. And it provides user-to-application security for all local, remote and mobile user communications, by establishing an encrypted connection to all authorised application resources.
Trusted Server (TrustWorks Systems) Protects local resources on a server (eg: databases, applications and websites). It protects servers against unauthorised network access, and provides security encrypted IP connections to a variety of network services (including e-commerce transactions).
VPN-1 Accelerator Card (Check Point Software Technologies) A hardware-based cryptographic accelerator developed by Chrysalis-ITS. The VPN-1 Accelerator Card delivers high-performance Virtual Private Networking for users of Check Point Software's market-leading VPN-1 GatewayTM solution. A fully plug-and-play solution, the Accelerator Card provides kernel-level integration with VPN-1 to perform the processor-intensive cryptographic operations required by IKE IPSec.
VPN-1 Appliance (Check Point Software Technologies) Allows organizations to deploy virtual private networks (VPNs) to protect the privacy and integrity of business communications over the Internet. In addition, VPN-1 Appliance protects internal network resources from external threats with Check Point Software’s complete enterprise security suite. And with centralized management, on-site security expertise is not required to define and manage a comprehensive security policy.
VPN-1 Certificate Manager (Check Point Software Technologies) Integrates best-of-breed technologies into a complete PKI and user management solution. The Certificate Authority (CA) from Entrust Technologies provides comprehensive key lifecycle management. The LDAP-compliant directory from Netscape Communications stores the X.509 digital certificates for all VPN nodes, as well as the Certificate Revocation Lists (CRLs). Check Point Software has pre-configured these industry-leading technologies specifically for VPN-1, and integrated them with a unified installation and management interface.
VPN-1 Gateway (Check Point Software Technologies) A tightly integrated software solution combining the market-leading FireWall-1® security suite with sophisticated VPN technologies. The cornerstone of Check Point’s Secure Virtual Network architecture, VPN-1 Gateway meets the demanding requirements of Internet, intranet, and extranet VPNs by providing secure connectivity to corporate networks, remote and mobile users, satellite offices, and key partners. VPN-1 Gateway software may be deployed on a range of platforms for maximum flexibility and scalability.
VPN-1 SecureClient (Check Point Software Technologies) Adds powerful client security features such as access control and security configuration control. VPN-1 SecureClient strengthens the security of the entire corporate network by ensuring that intruders--such as users on shared outside networks--cannot take advantage of an insecure remote client machine to hijack an existing VPN connection into the corporate network. VPN-1 SecureClient also provides the ability to automatically verify that users' machines across the extended enterprise are configured securely.
VPN-1 SecuRemote(Check Point Software Technologies) Provides flexible VPN support for both remote and local users. Using VPN-1 SecuRemote, remote users can connect to their corporate gateways via Internet connections and establish secure VPN sessions to access sensitive network resources. When installed on LAN clients, VPN-1 SecuRemote establishes "Intranet VPN" connections to either critical application servers or internal VPN gateways. Whether internal or remote access, the VPN client transparently encrypts and authenticates critical data to protect against eavesdropping and malicious data tampering.
VPN-1 SecureServer (Check Point Software Technologies) Provides VPN-1 Gateway protection for a single application server. Like FireWall-1 SecureServer, VPN-1 SecureServer protects sensitive application servers against attacks or unauthorized access, while also enabling clients to establish authenticated encrypted connections to the server. VPN-1 SecureServer installations are administered within Check Point’s centralized policy management and distributed deployment framework.
VPN200 Series (Check Point Software Technologies) A family of VPN appliances which provide a simple and cost-effective way to deploy a Virtual Private Network (VPN) as an integrated part of the networking infrastructure for Internet Service Providers and corporate users. Every regional location has a secure, private connection to all other locations. In addition, unlike other VPN products, every location has a fully firewalled local connection to the Internet.
VTCP (infoExpress) VTCP is a remote access VPN that securely extends the corporate network to remote users over the Internet. The software creates a tunnel between the remote user's PC that protects data through encryption, authentication, and authorization.
WatchGuard Live Security System (WatchGuard Technologies) Combines an innovative security broadcast service with advanced security technology. Provides Internet Security and VPN for every office.



© 2005 by Timberline Technologies LLC