Link to home
Start Free TrialLog in
Avatar of krella
krellaFlag for United States of America

asked on

Load balancing and / or round robin with a firewall

Not sure if this is possible, but I was wondering if there is a firewall solution that provides load balancing as well.  I would like 2 web servers to sit behind the firewalls and receive sessions either by round round or based on load.  Years ago, I used Hyperflow and cisco local director to provide these capabilities, but I am not sure if today's firewalls can do this.  I would like to go with cisco if possible, but will look at other vendors.  Thanks for your help.
Avatar of kiranghag
kiranghag

it will depend on the web server you are using...
windows and iis server provides network load balancing and web farming solutions...
there are also other solutions which will allow you to utilise multiple servers for one purpose and each sharing load and taking over in case one or more node fails...
ASKER CERTIFIED SOLUTION
Avatar of Les Moore
Les Moore
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of krella

ASKER

If I was to setup a DNS server inside the firewall, to provide round robin capabilities, how would this work?  Is it even possible?  Could a session come in through the firewall, look at the DNS server to see which record to reference, and then go to that record?  I would like to provide load balancing and failover, using the cheapest possible solution.  And I know Windows 2003 DNS / round-robin is inexpensive and incredibly easy to setup.
Do you already have your primary DNS on the inside of the firewall?
Round-robin does not provide for failover. For that you might want to look into Cisco Distributed Director. This is a function in Enterprise IOS on most any 2600 or higher router. If you have a decent Cisco router in front of the firewall, that might be an easy solution. It's like DNS on steriods, because it can provide for failover, or least busy or other ...