Understanding Cisco SSL VPN vs IPSec VPN

Sdílet
Vložit
  • čas přidán 6. 09. 2024
  • This video is from the Cisco SIMOS class at Stormwind Live, in this section we explore the differences between the newer SSL VPN and legacy IPsec VPN

Komentáře • 76

  • @PrashantSharma-ql4yb
    @PrashantSharma-ql4yb Před 8 lety +36

    Beautiful beautiful video!!!!
    This is what I call real treasure. Pure knowledge.
    Thank you Sir!!
    Please keep on posting.

    • @RyanLindfield
      @RyanLindfield  Před 8 lety +7

      +Prashant Sharma Thanks for your kind words, happy it was helpful.

  • @ciscoguru2007
    @ciscoguru2007 Před 4 lety +1

    Hi Ryan, Great job articulating key difference between SSL and IPSec VPN protocols. Thanks

  • @aironaldana4638
    @aironaldana4638 Před 2 lety +1

    This is very CLear! Thank you for this Video

  • @alancisnerosmonreal3119

    Man you don't know how much you've helped me with this, thank you very much for your knowledge !!

  • @chriscowboyfan
    @chriscowboyfan Před 8 lety +2

    Outstanding discussion. Learned a lot. Thank you

  • @RanaShahid87
    @RanaShahid87 Před 3 lety

    Perfectttttttt. I read alot of blogs and thought I knew the answers and you surprised me.

  • @suleimansalau3100
    @suleimansalau3100 Před 7 lety

    Not only do you know your stuff; you are very good at transferring knowledge; great video. I learned a lot from your videos.

  • @garv_chawla
    @garv_chawla Před 5 lety +2

    This is amazing.
    Beautifully explained.

  • @fiddycaliber947
    @fiddycaliber947 Před 6 lety +1

    Needed a quick refresher, very well explained, thanks Ryan!

  • @laurentpilot
    @laurentpilot Před rokem +1

    Many thanks Ryan ! brillant explanations !

  • @abdultaqi34
    @abdultaqi34 Před 6 lety +1

    A very beneficial video Must thank you for your knowledge sharing

  • @user-ej3iw8lw3w
    @user-ej3iw8lw3w Před 2 lety

    Als SSL-VPN (englische Schreibweise: SSL VPN ohne durchkoppelnden Bindestrich) bezeichnet man Systeme, die den Transport privater Daten über öffentliche Netzwerke ermöglichen (siehe VPN) und als Verschlüsselungsprotokoll TLS (alte Bezeichnung: SSL) verwenden. Prinzipiell ist SSL als Verschlüsselungsprotokoll für VPN sowohl für Site-to-Site- als auch End-to-Site-VPNs geeignet. In den 1990er-Jahren gab es Systeme, die SSL als Sicherungsschicht für Site-to-Site-VPNs einsetzten. Mit der Entwicklung von IPsec und der zunehmenden Vernetzung über Organisationsgrenzen hinaus hat das standardisierte, interoperable IPsec sich als Alternative etabliert.
    Der entscheidende Vorteil von SSL-VPN gegenüber IPsec ist die Bereitstellung des Netzwerk- und Applikationszugriffs für mobile Anwender, da die Konfiguration der Clients einfacher möglich ist als mit einer Lösung durch IPsec.
    de.wikipedia.org/wiki/SSL-VPN

  • @jaski8143
    @jaski8143 Před 2 lety

    Gold content right here

  • @chandrakantrai
    @chandrakantrai Před 7 lety +1

    Excellent explanation. Thanks Ryan

  • @rayang9929
    @rayang9929 Před 5 lety

    Thank you very much for this video, always helps me revise for situations on demand.

  • @vorpalmusic
    @vorpalmusic Před 9 lety +2

    Excellent! Extremely helpful overview.

  • @garyfrazier614
    @garyfrazier614 Před 9 lety +1

    This was very helpful. I have been unsure about IPsec vs SSL security differences. I have setup a IPsec vpn connection for my office. As I read about the two, it seems SSL is more popular. It makes more sense now that it was broken down into the OSI layers and all. I think I'll stay with my IPsec vpn connections now.

    • @RyanLindfield
      @RyanLindfield  Před 9 lety +1

      Gary Frazier SSL works more reliably for remote users because when they travel they'll most likely be able to get out over TCP 443 vs UDP 4500 (NAT-T). We can't control the firewalls of remote airports, hotels, conference centers etc, so TCP443 is the way to go :)

  • @LuckyLuke_de
    @LuckyLuke_de Před 10 lety +1

    Very detailed good explanation, but I would always prefer a IPSec IKEv2 connection over a SSL one ;-)

  • @geetanjalisapar2277
    @geetanjalisapar2277 Před 4 lety

    Best explanation ever got!!Thank you so much sir...

  • @mrobjectoriented
    @mrobjectoriented Před 4 lety

    Awesome! Very informative and to the point!

  • @MrArunbabuc
    @MrArunbabuc Před 8 lety

    Thanks a lot for such a session.. very useful indeed

  • @nadzimnor3880
    @nadzimnor3880 Před 9 lety +1

    Thanks for video upload..clear and simple to understand

  • @pragyanidhi2264
    @pragyanidhi2264 Před 5 lety +1

    Very good explanation.. keep it up

  • @Gabru-RJ
    @Gabru-RJ Před 3 lety +1

    awesome explanation

  • @jaggs05
    @jaggs05 Před 8 lety +1

    You rock mate.... simply the best.

    • @RyanLindfield
      @RyanLindfield  Před 8 lety

      +Jagdeep Gambhir Thanks for watching glad it helped :)

  • @scottminnella1880
    @scottminnella1880 Před 7 lety +1

    Excellent stuff.

  • @andresfx28
    @andresfx28 Před 5 lety

    Crystal clear. Thank you sir.

  • @tjcreek5556
    @tjcreek5556 Před 9 lety +1

    This is a great video! Thank you.

  • @sudiptakp
    @sudiptakp Před 7 lety +1

    Very informative...

  • @dmezzio
    @dmezzio Před 2 lety

    Geniuss.. thanks man

  • @Arshar
    @Arshar Před 4 lety

    You were going good until 12:35.. the flow broke and I had wo watch again and again, to catch u, 2nd thing I would never have understood what u were saying about tcp retransmissions related to vpn just few secs later if I had not watched TCP- meltdown video by computerphile.. good video btw, pratical examples make it better.. good.. make more. could u do one on ssh tunneling and similar ?

  • @zyk_mt
    @zyk_mt Před 6 lety

    perfect explaination!! many thanks

  • @giovannimercuri5168
    @giovannimercuri5168 Před 7 lety +1

    Awesome video, thanks Ryan. Also...I just gave this video a thumbs up and it was thumbs up number 443...get it?

  • @NextGennGaming
    @NextGennGaming Před 7 lety +1

    Thank you so much

  • @veerakumardevireddy2884
    @veerakumardevireddy2884 Před 5 lety +1

    Nice video

  • @LayneSadler
    @LayneSadler Před 9 lety +1

    wow, thank you so much!

  • @lucaspascual5956
    @lucaspascual5956 Před 6 lety

    Thank you Sr.

  • @muhammad.rafi2012
    @muhammad.rafi2012 Před 9 lety

    Thanks Rhyan for awesome knowledge transfer, do you have more videos on either security or RS/DC ?

  • @jordanaldrich
    @jordanaldrich Před 6 lety

    Awesome video

  • @globaleducationnetworklear6000

    Excellent

  • @kumarchinthaginjala5610

    Excellent!!!

  • @ChaoMridu
    @ChaoMridu Před 4 lety +1

    Hi sir..m confused..doesn't esp have a port number, 50.. wat was the need of a udp overhead..plz help

    • @RyanLindfield
      @RyanLindfield  Před 4 lety +1

      Protocol numbers are different than port numbers.
      If you look at a picture of an IP header you'll see it has a PROTOCOL field, that field holds a number, like 17 , which would mean UDP.
      When an IP packet is being processed the computer uses the protocol field to know how to decode layer 4.
      This is really confusing at first, hope that helped.

    • @ChaoMridu
      @ChaoMridu Před 4 lety

      @@RyanLindfield Ty Sir.. I will read more on it and then get back to you if I need any further clarification

  • @syedmobeen981
    @syedmobeen981 Před 5 lety +1

    GURU ... GOD BLESS "_)

  • @freddiemunoz4443
    @freddiemunoz4443 Před 7 lety

    Great!!!!!!!!!!!!!

  • @abdulfattahassad6228
    @abdulfattahassad6228 Před 4 lety

    Thanks Ryan for Simplicity and make an unobvious issue to be cleared. But still I have quesiton regards SSL / TLS . SSL is in application layer which use TCP 443 as Transport Layer . so thats mean TLS should in Application layer NOT Transport Layer ? am I right. please explain

    • @RyanLindfield
      @RyanLindfield  Před 4 lety

      SSL is in the presentation layer, layer 6, this is where the "work" takes place. As far as allowing SSL VPN traffic, it's Default TCP 443 and there is also a more efficient D-TLS (Datagram) which uses UDP.
      DTLS is efficient however it requires firewall admins to allow their guest networks to pass UDP 443.

  • @RanaShahid87
    @RanaShahid87 Před 4 lety +1

    Instructor speaking style is so much similar to Khawar Butt....

  • @Rubded
    @Rubded Před 5 lety

    Your videos are A+ quality.

  • @rubenjaldinsalvatierra6337

    hello ryan i have a good question please help me to figure out. in a sesión SSL is a fact that you have a public key within the digital certificate that the server send you. and the server has the private Key. is a fact that you (the user) encrypt with the public key and the only one who can DesEncrypt is the server. my doubt is somebody inside my swicht with wireshark capture a Packet from the server to the user (first) and me (the second user) with the public key that i got because is a public key can DesEncrypt that Packet ?? and see the data that the server is sending to the First User ??

  • @phoonjzc
    @phoonjzc Před 3 lety

    Why the esp port number disappeared?

  • @WoundedEgo
    @WoundedEgo Před 7 lety

    Hey, can you please tell me if there is a piece of vpnssl hardware that I can buy that will not require me to subscribe to a monthly service? This is for safe internet browsing, not for corporate connectivity.Thanks.

  • @vishalkalal9657
    @vishalkalal9657 Před 8 lety

    +Ryan Lindfield
    Hello Ryan, thanks for your efforts, I think this video is continuation of another video. So, can you please provide a link for that video (if at all there is any). Thanks

  • @julianmolina4806
    @julianmolina4806 Před 4 lety

    Hola: Tengo el Corporativo y las sucursales unidos por VPN todos, uso escritorio remotos para el RP en todas las sucursales. quiero conectarme al server desde las sucursales usando el Nombre del Servidor y No la dirección ip. En el corporativo si me conecto al Server desde la misma LAN interna usando el nombre del SERVER, pero cuando quiero conectarme desde una sucursal usando el nombre del server no me resuelve, no lo encuentra el escritorio remoto a través de conexión VPN, solamente con la dirección IP funciona. Que se puede hacer para que el nombre del Server este publico a través de las VPN ?? Gracias

  • @engineermuhammad3936
    @engineermuhammad3936 Před 8 lety

    its pretty informative....😉

  • @boydseabiscuit2635
    @boydseabiscuit2635 Před 8 lety

    that's a quiet class

  • @subhsamal5948
    @subhsamal5948 Před 8 lety

    why it is not possible to configure site to site vpn using ssl ?

  • @relikpL
    @relikpL Před 6 lety

    Sounds a bit like you're selling Cisco. OpenVPN works everywhere and is faster and much easier to set up. Managing and configuring ASAs is a nightmare.

  • @rudranarayanbiswal9853
    @rudranarayanbiswal9853 Před rokem +1

    your explanation is not that much clear. new engineer can not understand. only experienced engineer can understand. if some one experienced, then why does he need your video?

  • @Bob_Bikes
    @Bob_Bikes Před 5 lety

    Learn to spell, dude.

  • @birolgormez2705
    @birolgormez2705 Před rokem

    A company wants to implement a large number of WAPs throughout its building and allow
    users to be able to move around the building without dropping their connections Which of the
    following pieces of equipment would be able to handle this requirement?
    (A). A VPN concentrator
    (B). A load balancer
    (C). A wireless controller
    (D). A RADIUS server