What do you guys thnk about Multi T-1 connections and SDSL backup lines?

I have a network config suggestion from our ISP to get the following:

Go with plan A?
t-1 A that is for the internet only which will be filtering with a Cisco ASA 5510
t-1 B that is just for VPN traffic, both will be on a 3845 and another one for load balancing.

both will have SDSL lines as backup.


Go with plan B?

Before this suggestion they said get a bonded T-1 (2 T-1 through 3.0Mbps+) for both the internet/vpn.  and also have 1 SDSL backup.
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Juan OcasioApplication DeveloperCommented:
I think this would depend on how many people and how often your users use VPN.  If you have a lot of remote users, you may want two dedicated line, however, if you do not you may want to have the bonded T1s as they will always be used.  Since you will have a SDSL back up, that should suffice with either scenario as that's just a backup until you get service back.  Most ISPs nowadays guarantee 24 hour uptime with a 4 hour response in the event they do go down.


Considering that the ASA is a better VPN endpoint and much less expensive than a 3845, I see no reason to separate the two T1's like that. Personally I would have one router, perhaps a 2851, as the T1/SDSL router and use the ASA for both VPN and Firewall. Go with the bonded T-1's.

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
HOPE-ITAuthor Commented:
What if the ASA is used for web content filtering too from all the remote 27 sites which are connected via VPN/DSL well 6 of them are T-1?
An opinion was all that was asked for and I provided a very detailed one.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.