What is a layer 2 vpn

what exactly is one of these ? i have never heard of it, are they all layer 2 ?

Hi
The answer is yes.If u are having a pool of 192.168.1.0/24 and you have a VPN dial-in user having IP 192.168.1.200.He will be able to communicate with the LAN.
Below are some of excerpts from L2TP questionnire.
"Q. What is Layer 3 tunneling?
A. Layer 3 tunneling is not a new technology. Generic Routing Encapsulation (GRE) with RFC 1701 has existed for a long time. Cisco has offered this tunneling technology since Cisco IOS software version 9.21. IPSec is the new IETF standard for encryption and encrypted tunnel. Cisco is providing IPSec in Cisco IOS software version 11.3(3)T and later. Cisco is providing Mobile IP in Cisco IOS version 12.0(1)T.
Q. What is the difference between Layer 2 and Layer 3 tunneling?
A. Layer 2 leverages existing PPP technologies such as NCP and access-authentication protocols. Layer 3 loses much of this by recreating the NCP as Layer 3 tunnel endpoints within the customer network. Layer 2 does not require additional special IP software for end users, corporation, and ISP. The Layer 3 solutions require an IP substrate shared between the Corporation and the ISP. In terms of security, user authentication and tunnel authentication features in Layer two tunneling provide better resistance against hackers. In some Layer 3 solutions, authentication is done only at the SP. This solution may pose a security risk for the corporation. The emerging standard for Layer 2 tunneling protocol is L2TP.
Q. Why is Cisco pushing for Layer 2 tunneling instead of Layer 3 tunneling?
A. Cisco is providing both Layer 2 and Layer 3 tunneling solutions. Cisco does not favor one type over the other. Layer 2 tunneling is primarily an Access VPN solution while Layer 3 tunneling provides support for intranet and extranet VPNs between branch offices and a corporate headquarters. Layer 3 tunneling may also make sense in some of the Access VPN implementations such as client-initiated tunnel mode and Internet wholesale access solutions."
More answers can be found at:
http://www.cisco.com/en/US/tech/tk827/tk369/technologies_q_and_a_item09186a00800a443e.shtml
Regards
JD

Similar Messages

  • What is the,  iPad2 VPN setting for "transmit ALL data stream" equivalent in PC VPN?

    What is the,
    iPad2  VPN setting for "transmit ALL data stream" equivalent setting in PC VPN?
    Thanks.
    Or there is not equivalent part?
    -namlow

    Great question, Aerogoob.
    The XY graph can be bound to a 1d array of "points", where each point is a cluster of two numerics (X and Y). To create a shared variable of this type, you can set the data type to "From Custom Control..." in the shared variable properties dialog. Of course, first you'll have to build the custom control of the correct type: array of cluster of two numerics.
    If any of that doesn't make sense, please post back and we can walk you through it in more detail.
    Also, just for completeness, the chart indicator can be bound to a scalar numeric or to an array of numerics. The graph indicator can only be bound to an array of numerics.

  • Application Layer VPN

    Apple states that OSX Mavericks has a new "Application Layer VPN" feature. Is this something that can be configured by users? For example, can I set up a VPN only for Safari?

    The VPN-IPSec is a technology that let you access to your private network through Internet or an unsecured network. It works at network layer. Before you access to your private network you have to set up a tunnel IPSec.
    Regarding SSL there is an interesting link : SSL: Introduction to Secure Sockets Layer
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns50/ns140/networking_solutions_white_paper09186a0080136858.shtml
    With SSL you have secure access to a WEB server (which can be located on Internet) without setting up a tunnel VPN.
    I hope this helps.
    Best regards.
    Massimiliano.

  • Can I  get info about  what Filter a layer  have been set?

    I'm not sure if this is the right place to bring up this issue.
    I hvae read the photoshop reference guide ,  the ArtLayer Object have many Methods about to set Fillters to layer , like  ApplyClouds ,ApplyBlur.......
    unfortunately  there is no such property or method  to get the filter  what I have set before!
    Any Friend  who knows   how to do it ?  no matter via  Scripting or  analysis Photoshop File Formats.

    Thank you ,Well, I  have written a VBS script  named UseHistoryLog.vbs. the contents :
    Set appRef = CreateObject( "Photoshop.Application" )
    appRef.Preferences.UseHistoryLog=true
    appRef.Preferences.SaveLogItems=2
    appRef.Preferences.EditLogItems=2
    appRef.Preferences.SaveLogItemsFile="C:\1.txt"
    ok, the problem is how to do it? ----->   once I lanuch (open ) photoshop, the vbs script I written can be  executed automatically.

  • What's replaced the vpn concentrator?

    Greenhorn here, I didn't sit any of this up.  We have three remote sites, sister institutions, that we share an app with.  We house the app.  One site has a vpn concentrator setup, the other two are using a point to point leased line. They have each have a router that connects to a single router.  They want to replace the leased lines with a vpn concentrator.  Doing the digging I see the concentrators are EOL.
    So what's used to replace the concentrator today?  What's a solution today to move away from the leased lines? These are all cash poor non-profits. My guess is they'll say look on Ebay for a concentrator if the solution is too pricey.
    Thanks Jim

    Sorry it took so long but here's the output from sh version.
    Location 1
    Cisco Internetwork Operating System Software
    IOS (tm) C2600 Software (C2600-I-M), Version 12.2(16a), RELEASE SOFTWARE (fc2)
    Copyright (c) 1986-2003 by cisco Systems, Inc.
    Compiled Fri 18-Apr-03 19:25 by xxxxx
    Image text-base: 0x8000808C, data-base: 0x80A0EE84
    ROM: System Bootstrap, Version 12.2(10r)1, RELEASE SOFTWARE (fc1)
    xxxxxxxxx uptime is 41 weeks, 3 days, 20 hours, 54 minutes
    System returned to ROM by power-on
    System image file is "flash:c2600-i-mz.122-16a.bin"
    cisco 2621 (MPC860) processor (revision 0x00) with 27648K/5120K bytes of memory.
    Processor board ID JAD07070EVT (2982455740)
    M860 processor: part number 5, mask 2
    Bridging software.
    X.25 software, Version 3.0.0.
    2 FastEthernet/IEEE 802.3 interface(s)
    2 Serial network interface(s)
    32K bytes of non-volatile configuration memory.
    8192K bytes of processor board System flash (Read/Write)
    Configuration register is 0x2102
    Location 2
    Cisco Internetwork Operating System Software
    IOS (tm) C1700 Software (C1700-SY-M), Version 12.2(11)T6, RELEASE SOFTWARE (fc1)
    TAC Support: http://www.cisco.com/tac
    Copyright (c) 1986-2003 by cisco Systems, Inc.
    Compiled Fri 14-Feb-03 14:34 by ccai
    Image text-base: 0x80008124, data-base: 0x80A94064
    ROM: System Bootstrap, Version 12.2(7r)XM1, RELEASE SOFTWARE (fc1)
    xxxxxxxxxxx uptime is 14 weeks, 14 hours, 22 minutes
    System returned to ROM by power-on
    System image file is "flash:c1700-sy-mz.122-11.T6.bin"
    cisco 1721 (MPC860P) processor (revision 0x100) with 44237K/4915K bytes of memory.
    Processor board ID FOC0708028N (496857573), with hardware revision 0000
    MPC860P processor: part number 5, mask 2
    Bridging software.
    X.25 software, Version 3.0.0.
    1 FastEthernet/IEEE 802.3 interface(s)
    1 Serial network interface(s)
    WIC T1-DSU
    32K bytes of non-volatile configuration memory.
    16384K bytes of processor board System flash (Read/Write)
    Configuration register is 0x2102
    Location 3
    Cisco Internetwork Operating System Software
    IOS (tm) C1700 Software (C1700-SY-M), Version 12.2(11)T6, RELEASE SOFTWARE (fc1)
    TAC Support: http://www.cisco.com/tac
    Copyright (c) 1986-2003 by cisco Systems, Inc.
    Compiled Fri 14-Feb-03 14:34 by ccai
    Image text-base: 0x80008124, data-base: 0x80A94064
    ROM: System Bootstrap, Version 12.2(7r)XM1, RELEASE SOFTWARE (fc1)
    Xxxxxxxxx uptime is 13 weeks, 6 days, 5 minutes
    System returned to ROM by reload
    System image file is "flash:c1700-sy-mz.122-11.T6.bin"
    cisco 1721 (MPC860P) processor (revision 0x100) with 44237K/4915K bytes of memory.
    Processor board ID FOC0707142M (1927840357), with hardware revision 0000
    MPC860P processor: part number 5, mask 2
    Bridging software.
    X.25 software, Version 3.0.0.
    1 FastEthernet/IEEE 802.3 interface(s)
    1 Serial network interface(s)
    WIC T1-DSU
    32K bytes of non-volatile configuration memory.
    16384K bytes of processor board System flash (Read/Write)
    Configuration register is 0x2102
    Location 4
    Cisco IOS Software, 2800 Software (C2800NM-ADVSECURITYK9-M), Version 12.4(3g), RELEASE SOFTWARE (fc2)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2006 by Cisco Systems, Inc.
    Compiled Mon 06-Nov-06 02:36 by alnguyen
    ROM: System Bootstrap, Version 12.4(13r)T, RELEASE SOFTWARE (fc1)
    xxxxxxxxxx uptime is 40 weeks, 5 days, 6 hours, 22 minutes
    System returned to ROM by reload at 13:34:01 UTC Thu Dec 27 2012
    System image file is "flash:c2800nm-advsecurityk9-mz.124-3g.bin"
    This product contains cryptographic features and is subject to United States and local country laws governing import, export, transfer and use. Delivery of Cisco cryptographic products does not imply third-party authority to import, export, distribute or use encryption.
    Importers, exporters, distributors and users are responsible for compliance with U.S. and local country laws. By using this product you agree to comply with applicable laws and regulations. If you are unable to comply with U.S. and local laws, return this product immediately.
    A summary of U.S. laws governing Cisco cryptographic products may be found at:
    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
    If you require further assistance please contact us by sending email to [email protected].
    Cisco 2811 (revision 53.50) with 249856K/12288K bytes of memory.
    Processor board ID FTX1051A01V
    2 FastEthernet interfaces
    2 Serial interfaces
    1 Virtual Private Network (VPN) Module
    DRAM configuration is 64 bits wide with parity enabled.
    239K bytes of non-volatile configuration memory.
    62720K bytes of ATA CompactFlash (Read/Write)
    Configuration register is 0x2102

  • Stabilizing Footage Question: What Type of Layer?

    Hello, I'd like to do a bit of stabilization on a clip.
    I seem to be stumbling a bit on creating a new layer to do my tracking upon.   Other than that I seem to have a solid grip on what is required.
    What kind of new layer should I create to assist me in this process?  A new adjustment layer?
    Thanks!
    Matt Dubuque
    Here is a screen shot:

    Here is a tutorial of mine showing how to stabilize using the Mocha tracker (which I would more recommend than using AE's build in tracker)
    There is also a German Version of the tutorial (deutsches Tutorial)

  • What happened to layer styles

    Stupidly uipgraded to Photoshop CC-- no layer sthyles. Any ideas?

    When clicking on the layer's menu in the upper right corner, are you seeing "Blending Options..." in the menu?  If so what happens when you click on it?  Give us some more info - screen shots, etc.

  • What Home Router Supports VPN Endpoints for the iPod Touch?

    Hello,
    I'm trying to figure out what VPN Endpoints I can use for remote access to my home network. I'd prefer a hardware VPN router like a Linksys BEFSX41, or a D-Link DIR-330. I'd prefer something like the DLink since it supports local area wireless as well.
    I want to know if anyone has used any of this equipment, and how well it worked. There seems to be surprisingly little info on getting VPN to the home, let alone the iPod.
    Can anyone recommend a router which will perform as a VPN end point for me?
    UHF.

    You might be facing the problem, because the Ipod and your Desktop computer must be having the same IP address thats the reason whenever your IPod is connected to your Network, your Desktop must be getting disconnected. Check the IP address of your IPOD and of your Desktop Computer.
    First thing which you need to check, if the Physical connections are done properly. Connect the Modem to the Internet Port of the Linksys Router and then Connect the computer to the LAN Port No.1. On your Desktop computer login to the setup page of your Router and click on the Status tab and check "Internet IP address" 
    If required you can Re-Set your Router and Re-configure all the settings on your Router from the scratch. 

  • No support for pse4, need help with help and everything else.What's a layer? How can I get help PDF from CD? I don't have a clue how to use this. I have a Macbook pro.

    Need help with help pse4 not supported by adobe. how to do topics not available and I have never used any thing like this. Help says there is a download but have not been able to get it. What's a rookie to do ? Is there somewhere I can go to find out how to use PSE4?

    The internet is overflowing with tutorials on PSE. Just google what you want and include Photoshop Elements 4 as part of your search term, or  go to the library and they may have several different books on PSE 4. For PSE 4, you won't find a mac specific book, but that doesn't matter because the editor is the same on either program. Just substitute Command for Ctrl and Option for Alt in the keystrokes, and ignore anything about the organizer.
    Some popular sites for learning elements:
    http://www.photoshopelementsuser.com/
    lynda.com
    eclecticacademy.com
    youtube has a lot of video tutorials, too.

  • MPLS layer-2 VPN

    Hi,
    1. what's MPLS layer-2 VPN? it just provides layer-2 services, like traditional frame-relay/or ATM service.
    2. How to implement?
    thanks /difei

    Hi,
    1- Yes. It provides Layer 2 services over MPLS.
    2- It is now supported on a few platforms . You can find many documents , if you search as ATOM ( Any Transport Over MPLS ) on Cisco.com.
    Regards

  • What is color burn layer?

    I was reading one of techniques for removing blue haze from pictures.
    The initial two steps were as follows:
    1. Click on your color burn layer
    2. Select all and copy the color burn layer only to the clipboard
    I have never used "color burn layer".  So I have no idea what "color burn layer" is and how to create it.
    Please asvise me how to creaste color burn layer.
    I have photoshop CS5 (with Windows 7).

    It is not a tutorial.   Somebody asked the question in a photo forum. 
    I now lost the original webpage but I copied the anwer as follows:
    Click on your color burn layer
    Select all and copy the color burn layer only to the
    clipboard
    Open a Hue/saturation adjustment layer but make no corrections just press OK.
    Alt click on the Hue/adjustment layers mask this will make the screen go white.
    Edit> paste... this will paste the color burn layer to the mask.
    We must reverse the mask now so press Ctrl+I or Image>Adjustment>Inverse
    Click on the adjustment part of the hue/saturation or Alt click on the mask again.
    Now reduce saturation by moving the saturation slider to the left.
    My question is how to careate color burn layer in CS5 photoshop.

  • What is a VPN connection

    How do I use my VPN connection for the internet, and what is it?

    VPN is virutal private network you can use it easily after download in your PC. It use to access the blocked website and data encryption... Jimhdk provided a wiki link where you can read more details.. Some free VPNs which you can download eaily i.e. Hotspot Shield, Cyber Ghost there are paid vpn also but as you don't know about it so better to start with free vpn.. also you can instal Chrome Browser extension (Zenmate) its great and very easy to use..

  • Ask the Expert: Introduction to Cisco Adaptive Security Appliance (ASA) version 9.x (Context Aware Security and VPN Features)

    With Namit Agarwal and Rahul Govindan 
    Welcome to the Cisco Support Community Ask the Expert conversation. This is an opportunity to learn and ask questions about Cisco Adaptive Security Appliance (ASA) version 9.x (Context Aware Security and VPN Features) with experts Namit Agarwal and Rahul Govindan.
    This is a continuation of the live webcast.
    Cisco ASA CX (Context-Aware) is a next generation firewall service that serves as an extension to the Cisco Adaptive Security Appliance (ASA) firewall platform. In addition to the proven stateful inspection firewall capabilities, it provides us with next-generation capabilities and a host of additional network-based security controls for end-to-end network intelligence and streamlined security operations.
    Namit Agarwal is a customer support engineer at the Cisco Technical Assistance Center in Bangalore, India. He has more than four years of experience in the security domain. His areas of expertise include ASA firewalls, IPS, and ASA content-aware security (ASA CX). He has been involved in various escalation requests from around the world. He holds CCIE certification (number 33795) in security.   
    Rahul Govindan has been an engineer with the Security Technical Assistance Center team in Bangalore for more than three years. He works on security technologies such as VPN; Cisco ASA firewalls; and authentication, authorization, and accounting. His particular expertise is in Secure Sockets Layer VPN and IP security VPN technologies. He holds CCIE certification (number 29948) in security.
    Remember to use the rating system to let Namit and Govindan know if you have received an adequate response. 
    Because of the volume expected during this event, Namit and Govindan might not be able to answer every question. Remember that you can continue the conversation in the Security community, subcommunity VPN shortly after the event. This event lasts through November 1, 2013. Visit this forum often to view responses to your questions and the questions of other Cisco Support Community members.
    Webcast related links:
    Slides from the live webcast
    Video Recording of the live webcast
    Introduction to Cisco Adaptive Security Appliance (ASA) version 9.x (Context Aware Security and VPN Features): FAQ from live webcast

    Hello Namit and Rahul,
    Here are few questions that came in directly during your live webcast hence posting them here so that users can benifit:
    1)      How is ASA CX different from other UTM solutions ?
    2)      How is dynamic application inspection of CX better than other inspection engines  ?
    3)      What features or functionalities on the CX are available by default ?
    4)      what are the different ways we can run or install CX on the ASA platform ?
    5)      What VPN features are supported with multi context ASA in the 9.x release ?
    6)      What are the IPv6 Enhancements in the ASA version 9.x ?
    Request you to please provide your responses to them individually.
    Thanks.

  • MPLS L2 VPN

    Hi,
    What is L2 MPLS VPN & how to configure it end-to-end, What are the diffrence with L3 VPN
    What is vrflite & what is the pros/cons of the same
    Br/Subhojit                  

    In a MPLS L3 VPN the service provider carries the route for the customer. The network is not transparent meaning that layer 2 traffic such as broadcast and control plane traffic like CDP/LACP/STP etc is not carried for the customer.
    There are different L2 VPNS such as Ethernet over MPLS (EoMPLS) and Virtual Private LAN Service (VPLS).
    EoMPLS is a point to point layer 2 service which does no MAC learning and it is transparent to the customer meaning that the customer can connect two switches together over the "cloud".
    VPLS is a multipoint to multipoint technology. Essentially to the customer the provider network looks like a big switch. Several sites can be connected together and traffic here is also transparent.
    Because these are layer 2 services the customer would be responsible themselves for providing routing in the network.
    VRF lite is a form of L3 VPN but it's not running MPLS. Instead it uses VLANs to separate customer traffic. The cons are that it requires more configuration, is less scalable and needs peering in multiple VRFs compared to just peering in the VPNv4 address family.
    Daniel Dib
    CCIE #37149
    Please rate helpful posts.

  • Bug report: vpn (ipsec) interface number in snmp always change

    Hi,
    this is a bug report for RV082 hardware version 3 and 4, firmware version 1.x, 2.x and 4.x (all latest versions). I hope someone from cisco/belkin reads it.
    Summary:
    The snmp interface number of a VPN Tunnel change when the VPN tunnel disconnect and then re-connects.
    What should happend:
    The VPN Tunnel number 1, should always have the same snmp interface number. In RV082 v4, this number should always be 10. For example, the LAN, WAN1 and WAN2 always have the same snmp interface number.
    What is the problem:
    The VPN Tunnel number 1 change the snmp interface number, from 10, to 11, to 12, etc.
    How to reproduce:
    create a VPN Tunnel using 2 RV082 or 1 RV082 and 1 RV042. Once the VPN Tunnel is connected write down the snmp interface number. A few days later, disconnect the cable of block internet access. Then restore the internet conection and write down the snmp interface number, you should note that the snmp interface number have changed.
    Tools used:
    PRTG Network Monitor
    Please take a look at the attached image, note all the "ppp" interfaces, theres only 1 VPN Tunnel (gateway-to-gateway) defined.

    Hi Tom,
    many thanks for your reply.
    I see that I have to call Tech-support, in order to report a very technical situation, explaining them this is a bug report and I want them to make a better product.
    Since I won't pay a dime for this problem to be fixed, I can only see pain in this path(calling to speak with a tech support representative).
    I also readed that Belkin has bought Linksys, so I don't know if the RV082 will remain with Cisco or will go with Belkin.
    So, my only hope is to document this bug, that is pressent inall firmware version and hardware version of the RV082 as of today.
    many thanks for your help,
    regards,
    Oliver

Maybe you are looking for

  • How do you get an audio CD to play on a MacBook Pro?

    I've actually looked around the site and see others have had the same problem with their mac, unfortunately I don't have the technical expertise or the time to get stuck into the long winded and confusing steps required to sort this problem. There is

  • Pick Full Storage Units

    Hi Guys I have two St types 003 and 005 003 is where we have the picking and 005 is the reserve st type I have stock in both and in 005 they are in boxes of 20 I am using two step picking in AFS I require 150 units for one material and 200 for anothe

  • EJB is null

    Hello, I have a problem whit the EJB injection. The @EJB returns null and I dont know why :(. I'm using JBoss 7.1.0.Final-Snapshot-2, maven and arquillian. In the surfire reports it shows: SubscriptionSaveTest(com.project.scr.prj.service.Subscription

  • Drop database link

    I'm having trouble dropping a database link. In SQLPlus I get: SQL> SELECT db_link FROM USER_DB_LINKS where db_link like 'PROD%'; DB_LINK PROD.CBS.STATE.OR.US PROD.CBS.STATE.OR.US PROD_DB.CBS.STATE.OR.US PROD_RI.CBS.STATE.OR.US SQL> drop database lin

  • Where is the database panel in Dreamweaver CC?  Was this feature removed?

    Where is the database panel in Dreamweaver CC?  Was this feature removed? Mike