We have MPLS across 3 countrys and 11 sites all terminal server back to HQ and all internet access through the main site (via IPRISM) I had a ISA Server off the main firewall for VPN untill we changed it for an SSL VPN box
We have it setup as your ISP recommend and you can then put MPLS aware traffic shapers in
1.Do you need WINS at both sites? (at the exchange server site Yes) but at the remote site no hardcode the wins server address into PCs ie wins = 192.168.1.*)
2.Is the DC at the remote site running DNS,DHCP
3.The newer traffic shapers will help with the speed of outlook to exchange over the link (if the link isnt big enough)Exchange to Outlook very chatty
What are you using the ISA server for?
I agree with Irmoore but I think we need to understand more of what the ISA server is suppose to be doing
Main Topics
Browse All Topics





by: lrmoorePosted on 2006-09-11 at 20:21:01ID: 17499666
a) yes. Consider the MPLS as secure as point-point frame relay links
b) Not sure what you mean. You should not need site-site vpns between sites
c) simple routing. Just make sure the BDC is also a secondary DNS server and a WINS server. Point the local clients to it, point it to the HQ primary servers. Done.