Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Internet link load balancing

Posted on 2006-06-22
9
Medium Priority
?
420 Views
Last Modified: 2010-03-19
Hi

We are hosting few application servers on DMZ using Cisco PIX firewall. These applications are accessed by the users from Internet. We have one 2 Mbps Internet connection for this purpose. However, due to availability issue of ISP link, we are planning to add second ISP link from different provider. please suggest any economical product available to do inbound and outbound load balancing between two ISP links

-NMG

0
Comment
Question by:nessmssit
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
  • 2
9 Comments
 
LVL 77

Accepted Solution

by:
Rob Williams earned 500 total points
ID: 16963232
The Linksys RV042 works very well for this. It will allow you to have 2 independent WAN/Internet connections and automatically balance the network requests over the 2 connections. In the event of a failure it will automatically force all traffic to the working connection. They tend to run about $150-$200 US
http://www.linksys.com/servlet/Satellite?c=L_Product_C2&childpagename=US%2FLayout&cid=1123638171618&pagename=Linksys%2FCommon%2FVisitorWrapper
Support for this product would also be through Cisco's Linksys division.
0
 
LVL 3

Assisted Solution

by:papimichel
papimichel earned 500 total points
ID: 16963674
i'm not sure i understood you..
those DMZ servers have valid IP addresses.. right ?
how are those addresses are routed to you ? do you use DSL/Frame relay connection ?
if you do, the suggestion above is not good for you, but anyway be more specific about the use of those servers.. there might be another way to give you better redundancy.

anyway, i don't think there's a way to have the kind of load-balancing that you mentioned..
0
 
LVL 77

Expert Comment

by:Rob Williams
ID: 16963906
Good point papimichel, if users are to connect from the outside, names can only resolve to one IP.
0
Survive A High-Traffic Event with Percona

Your application or website rely on your database to deliver information about products and services to your customers. You can’t afford to have your database lose performance, lose availability or become unresponsive – even for just a few minutes.

 

Author Comment

by:nessmssit
ID: 16969633
Hi Papimichel ,

The servers that we have hosted in DMZ has a private IP addressess which are natted to the Public IP ones given by the Internet Service Provider . The Natting is done on the Cisco-Pix Firewall .We have an internet leased line connection for the internet and the same is terminated on a Cisco ISP Edge router.


Regards
NMG


0
 

Author Comment

by:nessmssit
ID: 16969711
Hi Rob will,

I have a query regarding two independent ISP connections.

How will the failover happens when the users URL is resolved (by the DNS ) into an public IP of the Internet Link-01 and after that the internet link fails

With Regards
NMG
0
 
LVL 77

Expert Comment

by:Rob Williams
ID: 16969844
>>"How will the failover happens "
It won't. That is why I mentioned papimichel, had a good point. It is an ideal solution for "inside" users but will not resolve the problem for those on the outside of the firewall. Sorry, I know of no solution that will work in this situation.
0
 
LVL 3

Expert Comment

by:papimichel
ID: 16973209
in order to have that kind of redundancy you can do something else:
you can point your registered DNS to a dynnamic DNS address that'll map by default to one of the ISP's address. if that line fails, you'll be still online because the other ISP's line is on (that you'll have to configure on your router) thus, the dynamic DNS record'll change its map to the other ISP's ip address, and all users on the outside'll still be able to use your services with your original DNS name.

Yours,
Michel
0

Featured Post

[Webinar] Lessons on Recovering from Petya

Skyport is working hard to help customers recover from recent attacks, like the Petya worm. This work has brought to light some important lessons. New malware attacks like this can take down your entire environment. Learn from others mistakes on how to prevent Petya like worms.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

You deserve ‘straight talk’ from your cloud provider about your risk, your costs, security, uptime and the processes that are in place to protect your mission-critical applications.
This article is in regards to the Cisco QSFP-4SFP10G-CU1M cables, which are designed to uplink/downlink 40GB ports to 10GB SFP ports. I recently experienced this and found very little configuration documentation on how these are supposed to be confi…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Michael from AdRem Software outlines event notifications and Automatic Corrective Actions in network monitoring. Automatic Corrective Actions are scripts, which can automatically run upon discovery of a certain undesirable condition in your network.…

705 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question