N
N
nak-alexey2020-12-15 13:51:41
Computer networks
nak-alexey, 2020-12-15 13:51:41

Why do we need crypto gateways?

Hello, for example, there is a crypto-gateway continent, but is it not possible, for example, to make encrypted IPsec on your own? Why Mrs. institutions, industrial enterprises do not spare money for such expensive equipment?

Answer the question

In order to leave comments, you need to log in

4 answer(s)
A
Artem @Jump, 2020-12-15
Tag

but isn't it possible, for example, to make encrypted IPsec yourself?
Can.
Why Mrs. institutions, industrial enterprises do not spare money for such expensive equipment?
Why do bank safes use expensive locks? Is it really impossible to put the one bought in the nearest hozmage?

A
AntHTML, 2020-12-15
@anthtml

Because there are requirements of a bunch of information security standards that communication channels must comply with, and security gateways have such certificates. And in the state, everything should be its own, so that the enemies do not fit in, and friends remain warm, hence the state Linux and other crafts.
The same with the requirements for certification of border and public equipment - wifi from mikrotik is much cheaper and more modern than cisco - but you can’t install it at school - there is no certificate, e1 / sip gateway from yealink also works well, but the provider requires a certified cisco

S
Sanes, 2020-12-15
@Sanes

There are encryption requirements. This part of the work is carried out on separate equipment.

V
Valentin, 2020-12-15
@vvpoloskin

unless it is impossible for example to make ciphered IPsec independently?

Can. Only the Continent has more opportunities than the usual IPSEC. For example, there is a dedicated Network Control Center, there are software clients such as Cisco any connect, there is the possibility of encryption according to GOST. In addition, CIPF must be certified. I recommend reading orders 21 and 17 FSTEC.
industrial enterprises do not spare money for such expensive equipment?

It is not so expensive if we compare hardware similar in functionality (but not in certificates) from Cisco / juniper.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question