About Us  |  Services  | Recruitment  |  Advertise  | Contact

 

Computer Network Defence Ltd

IDS & IPS Products
Scanning Products
VPN & Firewall Products
UTM
Desktop Fwall Software
Host IPS
SoHo Fwall Appliance
Enterprise Fwall Appliance
Gateway Fwall Software
Telephony Firewalls
VPN Clients
VPN Servers
Fwall Rule Editors/Testers
Forensics Solutions
Content Protection
Training Courses
Raw Packets
Bug Sweeping / TSCM
Miscellaneous
Services


VPN Clients

A  VPN Client is most often a software program but can also be hardware as well (usually another VPN router). The client initiates a conversation with the server and attempts to authenticate and log on. If authentication is successful then the VPN client and VPN server are able to communicate as if they were on the same network. At this point they are on the same virtual network.

Last Reviewed by Michele Jordan 15 May 2006



Links to Products

Securepoint Security Suite 2006nx

Windows 2000, XP, and Server 2003

PPTP Client

Kerio VPN Client

Cisco Easy VPN Remote

Mergic VPN for Palm OS

LinkSys USB VPN & Firewall Adapter

InJoy Firewall

Nortel VPN Client

iPIG - iOpus Private Internet Gateway

FortiClient

Watchguard Mobile User VPN

Astaro Secure Client for VPN Networks

SoftRemote VPN Client

NetGear ProSafe VPN Client

Borderware Sentinel VPN Client

Checkpoint VPN-1 SecureClient

Symantec Enterprise Firewall

anthaVPN

Trustway VPN Client

Hot Brick VPN Client

Lucent IPSec Client

LiSS VPN Client

GTA Mobile VPN Client

BorderGuard Client

AF Secure Client

NCP Secure Client

IP-Granite Workstation Software

VPN Tracker

TheGreenBow IPSec VPN Client

D-Link VPN Client Software

vpnc - client for Cisco EasyVPN

Netscreen-Remote

SSH Tectia Connector and Client

SafeNet VPN Client Software

StoneGate VPN Client

Mac OS X VPN Client

ViPNet

 
 

Securepoint Security Suite 2006nx

 

Securepoint GmbH

http://www.securepoint.cc

To build a VPN - Virtual Private Network - various conditions have to be fulfilled. The authentication of the partner, a standardised encryption as well as the access control and embeddening in the security structure of the company - together they establish the favoured private network.

The build up of communication channels by means of an unitary technology as tunnel to the communication partner via the Internet is a cost-effective possibility (approx. 3:1) compared to the previous solutions via user-to-user connection/standard telephone line (Standleitung) respectively conventional dial-in-methods/dial-up connections (Einwahlverfahren) (RAS-technology).

There are different encryption methods to choose from (Preshared, RSA, X.509-certificates). Basically they are combinations of public and private modes and the choice what shall be encrypted. Encrytions are also offered in combination with Securepoint Firewall Systems. Securepoint supports the VPN-standards PPTP and IPSec.

Securepoint VPN IPSec Client
- Fast and easy integration in networks
- Support of IPSec and IKE
- Secure encryption (X.509)
- High performant, no system overhead
- DNS and WINS support
- Working as Windows Service, `Unattended` server mode possible
- Accepts incomming IPSec tunnels
- Optional `IPSec only´ traffic filter

Commercial

 

Information updated: 05 Apr 06


Windows 2000, Windows XP, and Windows Server 2003

 

Microsoft Corporation

http://www.microsoft.com

VPN Client Support
Windows XP and Windows Server 2003 include a built-in VPN client that supports PPTP and L2TP/IPsec. You can configure a remote access VPN connection by using either the Network Connections folder or Connection Manager.

Network Connections Folder
If you have a small number of VPN clients, you can manually configure a VPN connection for each client. For clients running Windows XP or Windows Server 2003, use the New Connection Wizard in the Network Connections folder to create the VPN connection. Within the New Connection Wizard, click Connect to the network at my workplace on the Network Connection Type page and click Virtual Private Network connection on the Network Connection page.

Connection Manager
If you try to manually configure remote access VPN connections for thousands of clients in an enterprise organization, you will probably experience one or more of the following problems:
- The exact procedure to configure a VPN connection varies depending on the version of Windows running on the client computer, so training end users to configure these connections will require multiple sets of training materials.
- To prevent configuration errors, the information technology (IT) staff should manually configure the VPN connection rather than end users, placing a large administrative burden on the IT staff.
- A VPN connection may need a double-dial configuration, in which a user must connect to the Internet before connecting to the organization intranet. This requirement makes training end users even more complicated.

To configure VPN connections for an enterprise organization, you can use the following components:
- Connection Manager
- Connection Manager Administration Kit
- Connection Point Services

Connection Manager is a client dialer with advanced features that offer a superset of basic dial-up and VPN networking. Windows Server 2003 includes a set of tools that you can use deliver pre-configured connections to network users. These tools are the Connection Manager Administration Kit (CMAK) and Connection Point Services (CPS).
You can use CMAK to tailor the appearance and behavior of a connection made with Connection Manager. With CMAK, you can develop client dialer and connection software that allows users to connect to the network by using only the connection features that you define for them. Connection Manager supports a variety of features that both simplify and enhance the deployment of connection support for you and your users, and you can incorporate most of those features using the Connection Manager Administration Kit Wizard. By using CMAK, you can create custom profiles that reflect the identity, online help, and support infrastructure of your organization.
By using Connection Point Services (CPS), you can automatically create, distribute, and update custom phone books. These phone books contain one or more Point of Presence (POP) entries, with each POP entry storing a telephone number that provides dial-up access to a local ISP. Phone books give users complete POP information so that, when they travel, they can connect to different Internet access points rather than being restricted to a single POP.

Commercial

 

Information updated: 06 Apr 06


PPTP Client

 

SourceForge.net

http://pptpclient.sourceforge.net

PPTP Client is a Linux, FreeBSD, NetBSD and OpenBSD client for the proprietary Microsoft Point-to-Point Tunneling Protocol, PPTP. Allows connection to a PPTP based Virtual Private Network (VPN) as used by employers and some cable and ADSL internet service providers.

Features
* compatible with the Linux PPTP Server,
* compatible with Microsoft Windows VPN Server,
* compatible with many ADSL service providers,
* compatible with Cisco PIX,
* supports 128-bit stateless encryption using MPPE,
* supports on-demand or persistent tunnels using pppd psuedo-tty support,
* supports synchronous HDLC PPP encoding,
* supports reordering of out of order packets,
* runs on Linux, FreeBSD, NetBSD and OpenBSD.

GNU General Public License (GPL)

 

Information updated: 06 Apr 06

Click Here To Go To The Top Of The Page

Kerio VPN Client

 

Kerio Technologies, Inc.

http://www.kerio.com

For all business people traveling or working from home, connecting securely to the corporate network is simply an essential part of their life. With Kerio WinRoute Firewall, setting up a Virtual Private Network is almost effortless.

The Kerio VPN Server and Kerio VPN Client are an integral part of Kerio WinRoute Firewall secure remote access capabilities.

Using Kerio's VPN allows people to remotely connect to the IT resources such as file servers, database servers or even printers that are otherwise hidden behind a firewall and inaccessible to anyone outside the company offices.

Kerio VPN Server - Kerio WinRoute Firewall's built-in VPN Server allows companies to setup VPN networks in two different scenarios:
* server-to-server VPN
* client-to-server VPN
Client-to-server uses Kerio VPN Client for Windows.

Server-to-server VPN
Server-to-server mode is useful for companies that want to securely connect their branch offices and share common resources. This setup requires that a copy of Kerio WinRoute Firewall is running at each location to create a secure tunnel over the Internet and connect the sites.

Client-to-server VPN
Client-to-server mode will allow remote workers to securely connect to the corporate network with their notebooks and desktop PCs.

Commercial

 

Information updated: 06 Apr 06


Cisco Easy VPN Remote

 

Cisco Systems, Inc.

http://www.cisco.com

Cisco IOS IPsec functionality provides network data encryption at the IP packet level, offering a robust, standards-based, security solution. IPsec provides data authentication and anti-replay services, in addition to data confidentiality services. It is the only way to implement secure VPNs.

Cisco Easy VPN greatly simplifies virtual private network (VPN) deployment for remote offices and teleworkers. Based on the Cisco Unified Client Framework, the Cisco Easy VPN solution centralizes VPN management across all Cisco VPN devices, thus reducing the management complexity of VPN deployments. Cisco Easy VPN solution helps enable an integration of VPN remote devices--such as Cisco routers, Cisco PIX Security Appliances, the Cisco VPN 3002 Hardware Client, or the Cisco VPN Client--within a single deployment and with a consistent policy and key management method, which simplifies remote side administration.

Cisco Easy VPN consists of two components: Cisco Easy VPN Remote and Cisco Easy VPN Server. The Cisco Easy VPN Remote feature allows Cisco IOS routers, Cisco PIX Security Appliances, Cisco VPN 3002 Hardware Clients and the Cisco VPN Client to receive security policies upon a VPN tunnel connection from a Cisco Easy VPN Server, minimizing configuration requirements at the remote location. This cost-effective solution is ideal for remote offices with little IT support or for large customer premises equipment (CPE) deployments where it is impractical to individually configure multiple remote devices. This feature makes VPN configuration as easy as entering a password, which minimizes local IT support, increases productivity, and lowers costs.

The Cisco Easy VPN Server allows Cisco IOS routers, Cisco PIX Security Appliances, and Cisco VPN 3000 Concentrators to act as VPN head-end devices in site-to-site or remote-access VPNs, where the remote office devices are using the Cisco Easy VPN Remote feature. This feature pushes security policies defined at the central site to the remote VPN device, helping to ensure that those connections have up-to-date policies in place before the connection is established. Additionally, a device enabled with the Cisco Easy VPN Server can terminate VPN tunnels initiated by mobile remote workers running the Cisco VPN Client software on PCs. This flexibility allows mobile and remote workers to access critical data and applications on their corporate intranet.

Cisco Easy VPN Remote is now available on Cisco 800, 1700, and UBR900 Series routers, Cisco PIX 501 and 506E Security Appliances, and Cisco VPN 3002 Hardware Clients. The Cisco Easy VPN Server is available on numerous Cisco VPN routers including the Cisco 1700, 7200 Series routers with Cisco IOS release 12.2(8)T, Cisco PIX Security Appliances, and all Cisco VPN 3000 Concentrators.

Commercial

 

Information updated: 06 Apr 06


Mergic VPN for Palm OS

 

Mergic Inc.

http://www.mergic.com

Use your Palm OS device's Internet connection to HotSync, access intranet email or web servers, remotely control your PC or perform any other local network enabled task.

Mergic™ VPN allows you to securely access a private network, such as your corporate or home LAN, using a connection to the Internet. This means that you can access resources on your LAN just as if you were directly connected to it.

Mergic VPN 1.1 is a Virtual Private Network (VPN) client for the Palm OS that uses widely available authentication and encryption technologies along with the Point-to-Point Tunneling Protocol (PPTP) to provide you with a secure connection to your private network.

Commercial

 

Information updated: 06 Apr 06

Click Here To Go To The Top Of The Page

USB VPN & Firewall Adapter

 

LinkSys / Cisco Systems

http://www.linksys.com

Let the Linksys USB VPN and Firewall Adapter protect your PC and your communications wherever you go. This easy-to-pack, lightweight, network interface with advanced safety and security features connects you to the Internet through any broadband connection (cable, DSL, or your hotel's fast Internet service), and protects your PC from most known Internet attacks with a powerful Stateful Packet Inspection firewall. You can also optionally block Java, Active X, and Cookies -- known points of entry for hackers.

The Adapter connects to virtually any PC through the USB port, and requires no external power supply. Once you're connected, you can establish a Virtual Private Network tunnel from your PC to a corporate network using the popular IPSec VPN standard, and your transmitted data will be protected by government-spec DES or Triple-DES encryption.

It's also a perfect traveling companion to the Linksys Firewall Router (BEFSX41) or VPN Router (BEFVP41) on your home or small office network. You can securely connect to your home resources to retrieve files, or check your local email. Once you're connected over VPN, it's just like being attached to the local network.

With the Linksys USB VPN and Firewall Adapter protecting your PC and communications, you'll have one less thing to worry about when you're traveling.

Commercial

 

Information updated: 06 Apr 06


InJoy Firewall

 

F/X Communications

http://www.fx.dk

Transparent, standards-based cross-platform unified IPSec technology, extends the InJoy Firewall™ with capability of building VPN's and secure channels — allowing corporations to deploy it either as a VPN Gateway or as a secure VPN Client.

InJoy IPSec™ includes all the latest features and a comprehensive palette of business-ready protocols:
* High-grade encryption standards, including U.S. government adopted AES (Advanced Encryption Standard), 3DES, Blowfish, DES and NULL encryption.
* Powerful Authentication through Pre-Shared Keys (PSK), Extended Authentication (X-Auth), RSA signatures and Group Authentication. Password prompting supported to avoid storing of passwords on the harddisk.
* Nat Traversal facilitates easy IPSec deployment over NAT connections.
* IP Compression delivers maximum bandwidth through LZS or DEFLATE compression.
* Dynamic IP (Road Warrior) Support allows you to accept IPSec connections from hosts whose IP addresses you do not know in advance.
* Split tunneling allows a host to maintain tunneled VPN communications with other hosts in the VPN while at the same time communicating with public Internet hosts directly, outside the tunnel. This reduces both processing and traffic overhead on the private network.
* Virtual IP allows the VPN administrator to assign an internal (virtual) IP address to any IPSec client to unify the internal IP address range.
* Fail-over and Fall-back allows InJoy IPSec to "fail-over" to another VPN Server when the primary one fails, and then "fall-back" to the primary VPN Server when it starts working again.
* Wide protocol support, including manual and automatic key exchange, tunnel and transport mode, main-mode and aggressive mode.

Commercial

 

Information updated: 06 Apr 06


Nortel VPN Client

 

Nortel Networks

http://www.nortel.com

The Nortel VPN Client provides user-side ('client') functionality for secure remote access over IP networks using Nortel VPN routers and VPN servers. Nortel VPN Client software works on virtually all user workstations access platforms, including Windows 2000, NT, ME, XP, Mobile (Pocket PC), IBM-AIX, SUN-Solaris, Linux and Macintosh operating systems.

Key Features:
* Provides full user-side functionality for VPN Router and VPN Gateway-based secure access from Windows, Unix/Linux, Solaris, Pocket PC, and Macintosh systems
* Enforces centralized security policies, including bandwidth allocation, access control, authentication, encryption, and other user parameters; triggers automatic denial or termination of out-of-parameter client connections
* Enables PDA and other devices running the Windows Mobile operating system (Pocket PC) to securely connect to VPN Router (Contivity) via Nortel provided and supported software (i.e., no 3rd-party software required).
* Allows end-users to roam across network boundaries (e.g., from wireless LAN to fixed LAN) without breaking the secure VPN connection and disrupting end-user applications.
* Enables administrators to customize and mass-distribute configurations to users; optionally, can auto-launch when connecting, with no end-user software load required
* Supports load-balancing, failover, and LZS compression for optimum user experience
* Integrates with complementary security, authentication, and access control products (Verisign, Entrust, Baltimore, etc.)
* VPN Client Administrator offers a cost-effective centralized solution for provisioning Nortel VPN Client software

Commercial

 

Information updated: 07 Apr 06

Click Here To Go To The Top Of The Page

iPIG - iOpus Private Internet Gateway

 

iOpus GmbH

http://www.iopus.com

Whenever you use an internet connection in a public or publically accessible place, you put your data at risk. The internet connection may be a free or commercial Wi–Fi hotspot, an Ethernet network jack in your hotel room, or a network drop in the office you’re visiting. All data you send can be intercepted easily and quickly by persons unknown, without your knowledge. Your data may be your email usernames and passwords, your emails, Instant Messages, web passwords, and all the web pages you visit.

The solution: iOpus Private Internet Gateway (iPIG)
Using powerful 256-bit AES encryption technology, the iOpus Private Internet Gateway (iPIG) creates a secure "tunnel" that protects your inbound and outbound communications (Email, Web, IM, VOIP, calls, FTP, etc.) at any Wi-Fi hotspot or wired network.
iPIG shields your data from even the most sophisticated methods of online spying and snooping like the "Evil twin attackts". In addition, your sensitive information is not only protected between your computer and the wireless access point you're using, but all the way to iOpus' secure connection servers deep in the Internet. This ensures that your data can't be easily hijacked through the air and at the point it transitions to a "wired" Ethernet connection.
Unlike other technologies, iPig works with any kind of Internet connection (Wifi, WLAN, 802.11 a/b/g, wired ethernet) and requires NO configuration of any kind. You just start your favorite web browser, email client or chat software and switch the iPig encryption on: iPig grabs all Internet traffic before it leaves your PC and encrypts it securely! iPig also works with all major firewall software like Zonealarm or Norton Internet Security. The software runs on Windows 2000, XP and 2003 (Sorry, Windows 98, ME are not supported).

How does iPig security compare to WEP or WPA encryption?
* WEP encryption is already broken and thus not secure. WEP will stop a casual user, but freely available programs like AirSnort enable any Cracker to break into your WLAN with little trouble. Making matters even worse, the cracking techniques most frequently used will work equally well no matter what WEP key length you're using.
* WPA encryption itself is secure, but stops at the hotspot. Thus while it protects your data while it is "in the air", it offers no protection at all if the hotspot itself is corrupted.
* In contrast, if the data is encrypted with iPig, the data is still encrypted while it passes through the hotspot. Thus, even an "evil twin" attack can not compromise your security.

The cost: iPig is freeware.

freeware

 

Information updated: 07 Apr 06


FortiClient

 

Fortinet Inc.

http://www.fortinet.com

In today's environment, Cyber criminals use an array of techniques to damage PC applications uptime and steal personal information. Cyber criminals primarily use email and web vectors to launch an array of blended attacks comprised of:
Viruses, Spyware, Greyware, Worms, Network D/DOS, Spam, Inappropriate Web Content, Unencrypted Traffic

These multi-threat problems ensure that anti-virus, anti-spyware or personal firewall products alone are insufficient to combat serious dangers plaguing PC end points.

Solution:
Fortinet introduces FortiClient™, the first Unified Threat Management (UTM) end-point protection solution that provides the most comprehensive security via a lightweight software agent. Instead of relying on several software vendors for anti-virus, anti-spyware, personal firewall, IPSEC VPN, Anti-Spam and Web Content Filtering security capabilities, FortiClient provides a comprehensive proactive and responsive security capability powered by Fortinet's global FortiGuard service, which delivers the industry's quickest security subscription service updates.

Key Features:
* Real-time anti-virus protection certified by ICSA Labs and VB1000 to effectively protect against viruses, worms, rootkits, etc.
* Powerful anti-spyware protection certified by ICSA Labs to effectively protect against adware, keyloggers, etc.
* Personal Firewall and Intrusion Prevention to monitor the efficacy of end point network traffic
* Application Control to explicit define application behavior and permissions
* Anti-Spam that interoperates with Microsoft Outlook to protect against email borne phishing attacks
* Web Content Filtering to protect against offensive web content and web borne phishing attacks
* IPSEC VPN to secure communication traffic from mobile PC to company headquarters
* Real-Time security subscription delivered by Fortinet's World renown FortiGuard™ security R&D team
* Centrally manageable and can scale from 1 to 10,000+ PC end points

Supported Platforms:
* Windows XP Home
* Windows XP Pro
* Windows 2003

Commercial

 

Information updated: 07 Apr 06


Mobile User VPN

 

Watchguard Technologies, Inc.

http://www.watchguard.com

Virtual Private Networking (VPN) enables businesses to deliver secure, encrypted connectivity for traveling employees, remote offices, and telecommuters who require access to critical corporate network resources like e-mail, network drives, and intranet resources. WatchGuard offers two VPN options: Mobile User VPN and Branch Office VPN.

Mobile User VPN (MUVPN) enables telecommuters and traveling employees to access the corporate network while maintaining privacy and security. Remote users remain protected with Firebox's MUVPN solution integrated with desktop firewall software.

Commercial, free with the VPN Appliance purchase

 

Information updated: 07 Apr 06

Click Here To Go To The Top Of The Page

Astaro Secure Client for VPN Networks

 

Astaro Corporation

http://www.astaro.com

The Astaro Secure Client ensures the highest levels of security for VPN connections by providing an IPSec VPN client. Advanced encryption algorithms protect the entire network against unauthorized access. Strong user authentication methods ensure that only authorized users can access the central VPN gateway. An integrated dialer simplifies operations, and a personal firewall prevents hackers from taking over the client and creating a “backdoor” into the main network.

Commercial

 

Information updated: 02 Nov 06


SoftRemote VPN Client

 

Secure Computing Corporation

http://www.securecomputing.com

SoftRemote: part of Secure Computing's complete VPN solution

* Connect safely to your Sidewinder G2®-protected site from small work sites, while telecommuting, or on travel.
* Save money by using your Internet connection to replace costly dial-in lines and other leased lines.
* Break the 56K barrier by taking advantage of broadband and DSL connections.
* Take advantage of strong authentication products like SafeWord® RemoteAccess™.
* Save time with prepackaged client configurations, automatic policy updates, and crypto negotiation.
* Deploy with confidence using the industry's most popular IPSec client in conjunction with Secure Computing's respected family of security products.

Secure Computing provides SoftRemote by SafeNet as its endorsed VPN client because of its unmatched security, features, and performance. Any modern Microsoft Windows system can use SoftRemote, including Windows 95, 98, Me, NT 4.0, 2000 Professional, and XP. SoftRemote provides an easy-to-use and highly interoperable alternative to the Windows 2000 native IPSec support.

SoftRemote's interoperability and performance extends beyond the IPSec standards. Sites using strong user authentication products like SafeWord® RemoteAccess™, SecurID, or public-key certificates from major PKI vendors can use these products to authenticate SoftRemote users. To dramatically increase network reliability, SoftRemote supports redundant gateways, which enable alternate gateways when the primary is unavailable, and SafeNet's keepalive technology restarts negotiations when necessary. These capabilities have helped make SoftRemote the most popular VPN client software in the industry.

Commercial

 

Information updated: 07 Apr 06


NetGear ProSafe VPN Client

 

Netgear

http://www.netgear.com

Secure Network Access for Remote Users and the Mobile Workforce
Today’s distributed mobile workforce requires secure, remote access to corporate network resources. Network security administrators need a VPN client solution that is simple to deploy, manageable and completely secure. NETGEAR®’s ProSafe VPN Client software delivers the ideal solution, with robust encryption and broad support across multiple connection types and Microsoft® Windows® operating platforms. The ProSafe VPN client provides easy setup and seamless compatibility with the full line of NETGEAR VPN/Firewall routers as well as compatibility with IPSec VPN solutions from other leading manufacturers. With the NETGEAR ProSafe VPN client, NETGEAR extends its line of cost-effective security offerings, providing a single-vendor solution for growing businesses.

Robust Security
Supports a wide range of security protocols and authentication methods, including Advanced Encryption Standard (AES), Data Encryption Standard (DES), 3DES, Message-Digest Algorithm (MD5) and Secure Hash Algorithm (SHA-1). Also supports Public-Key Infrastructure (PKI) and Internet Key Exchange (IKE - Main and Aggressive modes), plus a wide range of Smart Cards and certificate authorities.

Extensive Compatibility
Provides protected access to corporate resources via wireless, broadband, and dial-up connections. Supports NETGEAR VPN/Firewall routers, including the FVS318, FVL328, and FWAG114, as well as many other IPSec-compliant VPN devices. Enables client-initiated VPNs from Windows 98, Me, XP, 2000, and Windows NT®-based PCs.

Commercial

 

Information updated: 07 Apr 06

Click Here To Go To The Top Of The Page

Borderware Sentinel VPN Client

 

Borderware Technologies, Inc.

http://www.borderware.com

VPN Services
The BorderWare Firewall Server’s integrated IPSec VPN Server supports both server-server and client-server VPN connections. The IPSec VPN Server is fully standards-compliant and supports connections with a large range of third party devices.

For remote workstations, BorderWare provides the Sentinel VPN Client. The Sentinel VPN Client is an easy-to-use solution for providing remote VPN access to corporate networks, and may be managed based on centrally devised policies. It incorporates a personal firewall to prevent “hijacking” of VPN connections by Trojan Horses and similar threats.

All VPN connections – server and client - can be secured with granular access controls and by additional layers of authentication, including PKI certificates and hardware tokens like RSA SecurID.

IPSec VPN connections are readily specified using BWClient, with “wizards” guiding the administrator through the required steps.

Commercial

 

Information updated: 07 Apr 06

Click Here To Go To The Top Of The Page

VPN-1 SecureClient

 

Check Point Software Technologies Ltd.

http://www.checkpoint.com

As employees become more mobile, sophisticated VPN solutions are required to meet key security challenges such as securing access to corporate resources and protecting remote desktops. To meet the VPN client needs of any organization, Check Point offers VPN-1 SecureClient.

It encrypts and authenticates data to protect against eavesdropping and data tampering. It also extends security to the desktop by enabling security administrators to enforce desktop security policies for remote users.

Benefits
- ecured access to corporate resources
- Remote PC and handheld protection
- Flexible connectivity options
- Simplified central management for lower total cost of ownership

Commercial

 

Information updated: 07 Apr 06


Symantec Enterprise Firewall

 

Symantec Corporation

http://www.symantec.com

Symantec Enterprise Firewall protects business assets and transactions by ensuring secure connections with the Internet and between networks. As a comprehensive hybrid firewall, it enables fast, controlled connectivity, providing strong and transparent protection against intrusions and malicious attacks.

Key Features
* EAL-4 and ICSA certifications guarantee compliance with industry-leading security requirements.
* Initial and continuous automatic system hardening minimizes risks and vulnerabilities.
* Strong user-authentication alternatives provide the flexibility to use existing security databases.

Key Benefits
* Comprehensive hybrid architecture provides both speed and security.
* Delivers strong intrusion protection without interfering with day-to-day business.
* Seamless integration with optional VPN delivers low-cost, secure connectivity for remote users.

Commercial

 

Information updated: 07 Apr 06


anthaVPN

 

anthaSoftware

http://www.anthavpn.com

Extending Enterprise Security to wireless handheld devices
Guarantee the security of your wireless connections: anthaVPN Secured by Certicom is an award-winning VPN client that provides secure wireless access to corporate network resources. Built on the IPSec standard, anthaVPN works with leading VPN gateways, handheld devices and wireless networks so you can extend strong, cost-effective security to mobile employees. Worldnet's experience with security for constrained environments and Certicom ECC technology ensures that anthaVPN has negligible impact on performance or battery-life.

Commercial

 

Information updated: 07 Apr 06

Click Here To Go To The Top Of The Page

Trustway VPN Client

 

Bull

http://www.bull.com

TrustWay VPN Client is a software solution for nomadic users for installation on a Windows NT, 2000 or XP workstation. It can be used to create IPSEC tunnels to a TrustWay VPN appliance. With TrustWay VPN Client, nomadic users can authenticate themselves via a TrustWay PPS. With TrustWay VPN client, establishing remote connections to nomadic PCs (home-based, sales reps., etc.) is guaranteed to be highly secure whatever the used network (ADSL, WiFi, PSTN, ...).

Commercial

 

Information updated: 08 Apr 06


Hot Brick VPN Client

 

HotBrick Corporation

http://www.hotbrick.com

Your network is constantly evolving as you integrate more business applications and consolidate servers. In this environment it’s becoming extremely complex to maintain total security while users such as employees or subcontractors are working remotely with customers and partners. They need to get access to applications and servers quickly, easily, and securely.

The Tunneling Protocol offers full IKE support. Our IKE implementation is based on the OpenBSD 3.1 implementation (ISAKMPD), thus providing the best compatibility with existing IPSec routers and gateways. Full IPSec support :
• Main mode and Aggressive mode
• MD5 and SHA hash algorithms

NAT Traversal support of NAT Traversal Draft 1 (enhanced), Draft 2 and 3 (full implementation). IP address emulation.
• Including NAT_OA support (floating port for IKE exchange)
• Including NAT keepalive

IP Encapsulating Security: mode tunnel & transport. Multi-tunneling to several VPN Gateways. Allow 'IPsec only' trafic filtering. Accepts incoming IPSec Tunnels.

Strong IPSec encryption provided by 3DES, DES and AES using 256 bit encryption.

Strong User Authentication with support X-Auth, PreShared keying and X509 Certificates support. Flexible Certificate support (PEM, PKCS12, ...). Support of Diffie-Hellman Group1, 2, 5 and 14 (i.e. 1536 and 2048).

The connection operates in VPN Client to Gateway Mode and allows remote users and business partners or subcontractors to securely connect to the corporate network with strong authentication. Peer to Peer Mode can be used to securely connect branch office servers to the corporate information system. All connection types including Dial up, DSL, Cable, GSM/GPRS and WiFi are supported.

Our Multi-vendor strategy allows us to support as many IPSec VPN gateways and routers on the market as possible to offer a true multi-vendor solution to entreprises. HotBrick has certified with several IPSec VPN gateways including Bewan, Cisco, Linksys, Netgear, Netscreen, SonicWall, Symantec, Zyxel and Linux appliances that support StrongS/WAN or FreeS/WAN.

Commercial

 

Information updated: 09 Apr 06


Lucent IPSec Client

 

Lucent Technologies

http://www.lucent.com

Lucent IPSec Client software helps enterprises provide cost-effective, high-value remote access VPN services for telecommuters and mobile workers with PCs running Microsoft® Windows® operating systems. And it helps lighten the management burden on IT staffs. Standards-based IP Security (IPSec) features and centralized management combine with diverse value-added capabilities to deliver a secure solution that is easy to install, administer and use.

A built-in personal firewall ensures protection even for always-on cable and digital subscriber line (DSL) connections. End-users can access the Web, log into an enterprise-wide intranet VPN or connect to multiparty extranets safely and simply regardless of the connection mode — dial-up modem, WAN router, DSL, cable or wireless link.

Smooth interoperability across the entire Lucent IP services portfolio helps satisfy users’ total remote access VPN needs. When deployed with Lucent VPN Firewall Brick platforms, IPSec Client software is completely integrated and centrally managed by Lucent Security Management Server (LSMS) software. This simplifies enterprise-wide administration of large-scale remote access VPNs — while helping optimize IT staff time and contain operating and ownership costs.

IPSec Client and LSMS software and VPN Firewall Brick platforms are key components of Lucent’s comprehensive IP services solutions portfolio.

Commercial

 

Information updated: 09 Apr 06

Click Here To Go To The Top Of The Page

LiSS VPN Client

 

Telco Tech

http://www.microliss.de

The Secure Entry Client software is for secure access to the corporate network via public dial-in networks and wireless networks with additional utilization of the worldwide availability of the Internet. The Internet brings significant cost-savings by providing a substitute for very expensive stationary connections and relatively expensive dial-in connections. The teleworker can access the central data network from any location worldwide - simply by dialing into the next PoP (Point of Presence) of an Internet Service Provider (ISP).

Advanced Security Features mechanisms as IPsec ensure the required security on the transmission paths.

The integrated Personal Firewall Mechanisms partition the teleworkstation against potential Internet attacks. You can also use PC workstations with Secure VPN client software in the LAN (for example for alternating telework), this means the tunnel end point is behind any IP router.

Commercial

 

Information updated: 09 Apr 06


GTA Mobile VPN Client

 

Global Technology Associates, Inc.

http://www.gta.com

For Mobile and Remote Virtual Private Networks
Designed specifically for the mobile work force, GTA Mobile VPN Client provides the vital ability for remote uses to initiate VPN communication with corporate resources. "Road warriors" or telecommuters need to access mission critical networks over the Internet and often use unsecured public networks or untrusted local networks. A VPN connection may connect end-users that need a secure host to network connection to transmit sensitive information over an Intranet.

The GTA Mobile VPN Client uses the IPSec ESP tunnel mode to form a secure communications channel to a network secured by a GTA Firewall. It provides VPN capability to desktop and notebook computers running Microsoft Windows operating systems, enabling secure client-to-client or client-to-gateway communication over TCP/IP networks and dial-up connections. The GTA Mobile VPN Client can be used with IPSec gateways and firewalls or another host running IPSec compatible VPN software such as another computer running the GTA Mobile VPN Client. Secured encrypted communications can be initiated in any IP environment, such as Ethernet LAN, NAT, DSL or dial-up.

The GTA Mobile VPN Client licenses TheGreenBow VPN technology, an IP-Sec-compliant, virtual private network (VPN client) which supports NAT-T and is interoperable with most VPN IPSec gateways. The configuration wizard makes GTA Mobile VPN Clients easy to install and configure. Following GTA.s standard of offering flexible implementation options, GTA Mobile VPN Client also incorporates advanced features for network administrators who need more implementation options including: import and export of configurations, Hide mode, USB key mode, and start up mode (log-on, boot or manual).

Flexible Configuration: Whether adding a one or many mobile VPN users, the GTA Mobile VPN Client offers a variety of flexible configuration options, including a configuration wizard, start-up options, hide mode, and USB stick mode. Combined, these flexible configuration options allow IT professional to adapt the GTA Mobile VPN Client to meet their needs with minimal time investment.

Interoperability: The GTA Mobile VPN Client transparently creates a VPN when operating on the Internet including when utilizing NAT-T. With the client, you can connect securely with all IPSec compliant network products like routers, gateway encryptors, and firewalls. Multiple encryption and authentication algorithms are employed, including DES, 3DES, AES, MD-5 and SHA-1. IKE is supported in main, quick and aggressive modes. Additionally, the GTA Mobile VPN Client supports certificates for connectivity to third party firewalls and VPN devises that support them. Certificates from Microsoft, Netscape, Entrust, Verisign and Baltimore Technologies are used with Simple Certificate Enrollment Protocol (SCEP). XAUTH (Extended Authentication Protocol) V.6 supports RSA SecurID and RADIUS.

Commercial

 

Information updated: 09 Apr 06

Click Here To Go To The Top Of The Page

BorderGuard Client

 

Blue Ridge Networks, Inc.

http://www.blueridgenetworks.com

The BorderGuard client provides Windows users with easy-to-create, high-security VPN connections that are compatible with client/server applications.

Our integrated VPN desktop includes all security and connectivity functions in a simple-to-understand graphical user interface. Installation of the client software is straightforward and easily accomplished by non-technical end-users.

Compatible with all Windows-supported network media:
* Dial-up
* LAN
* Wireless

For dial-up users, the Client includes a phonebook and integrated dialer that simplify operation for travelers.

Advanced security capabilities
* Two-factor authentication with KeyGuard, which delivers a more effective level of user authentication than password-only solutions
* Tunnel Lock™, which insulates the enterprise network from backdoor attacks that exploit weaknesses of the user’s laptop or desktop computer.

Commercial

 

Information updated: 10 Apr 06


AF Secure Client

 

Fortress Technologies

http://www.fortresstech.com

AF Secure Clients

The Fortress Secure client is the only wireless security solution to cover such a broad range of both current and legacy devices. While other vendors may claim to support DOS clients, only Fortress provides the same level of security, encryption and integrity across all operating environments. This ensures that common attacks such as MAC spoofing and Replay schemes are no longer effective means for intruding on client to network communications.

The Fortress Secure Client is a software client requires less than 100Kb of overhead and a bare minimum of processing power. Once installed, the client is "administration free" with a simple interface for viewing utilities, statistics, and logs. Since the client foundation is uniform for all OS platforms, administration for all devices and users is identical. Additionally, an Access ID is enabled on the Windows Secure Client to support secure peer-to-peer mobile computing in ad-hoc wireless LANs.

Commercial

 

Information updated: 10 Apr 06


NCP Secure Client

 

NCP

http://www.ncp.de

NCP Enterprise Client software sets new standards and integrates all technologies that contribute to achieving maximum security, universality, administrative control, and profitability (TCO), in remote access projects.
Stationary PC and mobile PC workstations are integrated as equal participants in the corporate network over public networks and beyond. Teleworkers work in their accustomed manner as they do at office workstations. All LAN applications and resources are available to them 1:1 on their remote PC.

The software works on the principle of LAN emulation, i.e. the software appears to the PC operating system as a LAN adapter (virtual network adapter). Consequently it is possible to assign the remote client a private IP address from the central Secure Enterprise Gateway, (among other things). This private IP address can be assigned either permanently or variably (dynamically) from an address pool, as required. If needed the client can retain a one-time assigned IP address, even in manual connection mode, in spite of physical connection clearing. This means that the logical connection between remote client and central resource remains intact. Even accessing networks in different local area networks poses no problem, in spite of changing IP addresses. The remote user can always be identified with the same name in the corporate network, wherever he/she is located. Integration in a DDNS (Dynamic Domain Name Service-Protocol ) structure is also possible.

Optionally the connection to the central server and connection monitoring are automated unnoticed in the background of the user's activities.

The NCP Secure Enterprise Client can be universally implemented in any remote access environment. This means:
* Independence from transmission medium (media type neutral)
* Support of all major operating systems and a wide variety of end devices
* Security and manageability because it is independent from Microsoft RAS
* Communication with IPSec gateways, even from third-party manufacturers (compatibility)
* Installation on standalone PCs and LAN PCs (even behind IP routers with IP-NAT)
* Support of all security standards (transmission security and access security)

The various NCP Secure Enterprise Server comprise the other side of the remote access connection.

The NCP Secure Communications solution guarantees that a teleworkstation cannot be attacked from the Internet, nor from other LAN participants (at hotspots for instance), through the Personal Firewall, which comes standard with the product.

Commercial

 

Information updated: 10 Apr 06

Click Here To Go To The Top Of The Page

IP-Granite Workstation Software

 

Trispen Technologies

http://www.trispen.com

Secure Remote Access
Do your roaming users want access to your corporate network from wherever they are? Would you like to improve your employees' productivity by enabling them to work from home? Using IP-Granite's Roamer will enable roaming users to connect to your network at the cost of establishing the nearest Internet connection. Small companies can also install the IP-Granite Workstation on remote users' computers enabling them to establish a secure link with a Gateway or VPN appliances on their network.

Remote users with IP-Granite Workstation installed, who need to access your private network can now simply log onto the Internet through a local ISP. IP-Granite will establish a secure 'tunnel' through which the remote user can gain access to your private network and its associated resources. Remote users are authenticated either by pre-shared keys, a certificate issued by an internal Certificate Authority (CA), or through a certificate issued by an independent CA.

Commercial

 

Information updated: 10 Apr 06


VPN Tracker

 

Equinux USA Inc.

http://www.equinux.com

Trust the market leader - VPN Tracker, from equinux, is the #1 VPN client on Mac platform. Once installed on your Mac, your corporate network is just one click away.

Intel Compatible - The latest version of VPN Tracker is now fully compatible with the brand new Intel Macs.
Connect to the office from anywhere - securely
VPN Tracker, the Premier Mac VPN client for Mac OS X, allows safe data transfer between your Mac and your company network. All unsecure Internet and Airport connections are encrypted on the fly by using high grade security algorithms offered by VPN Tracker. Whether you're working from home or abroad, you can securely access your files, emails, databases and anything else. It's like you're sitting in your office.

Based on IPsec - the industry standard
VPN Tracker communicates with a variety of hardware and software devices based on the IPsec Standard. Many hardware gateway manufacturers, from SonicWall to Cisco, and sofware manufacturers, like Novell or Symantec, rely on this sound protocol to create and secure VPN connections.

Compatible with over 250 VPN firewalls devices
VPN Tracker is the only Mac OS X IPsec client on the market which allows you to connect to over 250 commercial VPN gateways from different vendors. Check out our supported devices database for more information.

Commercial

 

Information updated: 10 Apr 06

Click Here To Go To The Top Of The Page

TheGreenBow IPSec VPN Client

 

Sistech SA

http://www.thegreenbow.com