Monday, June 8, 2009

Cisco AnyConnect versus Cisco VPN Client (IPSEC)

Below is a small list I created for a project at work, compairing the newer Cisco AnyConnect SSL client to the older Cisco IPSEC VPN Client.

AnyConnect

IPSEC VPN Client

Support for 64bit windows.

Yes

No

Connect before logon support for Windows Vista.

Yes

No

Requires PKI framework.

Yes

No* If client side certificates are not used.

Functions in locked down network environment, Web Proxy, Port Blocking etc.

Yes

No

Supports High Encryption AES-256 for example.

Yes

Yes

Ease of administration by distributing software / profile updates from the head end security appliance.

Yes

No

Designed for latency-sensitive traffic.

Yes

No

RADIUS Authentication support

Yes

Yes

Can be implemented in tandem with IPSEC infrastructure.

Yes

Yes

Vulnerable to man in the middle attack.

Yes

No

Vulnerable to MD5 SSL exploit.

Yes

No

Able to function in extreme latency / low bandwidth circumstances. e.g. Satellite

Yes

No


*Bolded result deemed positive feature.*

3 comments:

  1. Very useful for quick overview. Thanks

    ReplyDelete
  2. Thanks for the post Tim, I would like to know what versions of IPSEC VPN client and anyconnect did you consider on this comparison...

    Thanks

    ReplyDelete
  3. it was a wonderful chance to visit this kind of site and I am happy to know. thank you so much for giving us a chance to have this opportunity.. windscribe free

    ReplyDelete