I am a project manager for my company, I would like someone to review and possibly suggest some hardware for the project that I would like to implement.
Basically I host customer’s proprietary systems in my lab where I perform proprietary testing on their systems. I want to be able to give my customers the ability to remotely log into thier equipment via VPN or another means so that they are able to diagnose and correct issues that I find on their systems.
What I would like to do is the following:
Setup an independent internet connection (cable, DSL, T1, etc) with a static public IP address or a range of IP addresses.
Each customer needs to have thier own secure network that I can put their equipment on. I would most likely use VLAN on a 48 port cisco switch.
A customer needs to be able to access thier network through a secure means because the data they send is confidential. So I would assume this would involve a VPN for each customer via a hardware appliance such as a pix firewall or ASA.
All of my customers are competitors of each other, so each VPN needs to be secured from each other so that one customer cannot access another customers network.
This is what I was thinking: I setup an enterprise business account with cable modem service. There is a static public IP associated with this that will accept incoming connections from my customers.
This gateway is associated with my firewall appliance which will prompt for a login/pass in order to setup a VPN connection. I guess one question that I have is: can I assign users to a different network based on thier username/password. What hardware do I need to do this? Do I need an additional router in this instance with a cable modem? If I use a T1, would I need a router or will the firewall do this for me?
This is just a preliminary brainstorm. I would like to get feedback from all you gurus out there and possibly bounce some ideas and questions off of you if you are willing.
thank you for your help.