What model buy for VPN (IPsec) site2site 600 peers ?

Question very urgent!!!

What model of the device to choose for organization VPN of connections to the central office of 600 remote branches.

Or it is better to take RouterOS and to install on the high-efficiency server. Then what parameters should be at the server?

There is no RouterBOARD that is going to handle 600 IPsec tunnels.

I honestly don’t believe that it would work well on a server, either. 600 IPsec tunnels - unless they are in the tens of kilobit range for throughput - requires too much crypto work to be done well on something that doesn’t offload to hardware. There are PCI-X cards - rather expensive ones - that can do that kind of offloading, but I do not know if they require special drivers and if RouterOS has those drivers (the latter part is unlikely). Others may have more input.

A central office for 600 branches is a big undertaking, and if I were tasked to build that I’d be looking at Cisco or Juniper with higher end IPsec service modules.

You may even want to look at obtaining MPLS connections to each of those offices. It’d probably make the most sense, and would definitely be the most efficient.

Some users speak that it is possible to use tunnels IPIP and in them enciphering IPSec.

I planned to put RouterOS on server VMWare.
Really in quality the server the platform with two FOUR core processors Intel Xeon Pro X5570 4C 2.93G won’t consult?

Remote branches it is booths (shops) which in the morning and load in the evening and unload from the center the data. A file of archive with a length to 1МБ.

Plus current connection to providers it 20Mbs though here the channel will grow most likely and is multiplied.

It seems to me that RouterOS is reported will consult.

CISCO very expensive vendor, the budget matters.