Solved

dual PIX 515e / Catalyst 3750 / Dell server - high availability

Posted on 2006-10-31
6
499 Views
Last Modified: 2013-11-16
Hi everyone,
I need to setup a small network with high availability in mind.

We have following network equipment:
- two Cisco PIX 515e firewalls
- two Cisco Catalyst 3750 switches
- two Dell servers with two NICs each (Intel/Netgear but can work in a team using Intel ANS)

What is the best way to configure this network?

Is it possible to configure it so that system can still work if eg. following components fail: NIC1, switch1 and pix2?

Thanks
0
Comment
Question by:milan_novkovic
  • 3
  • 3
6 Comments
 
LVL 27

Accepted Solution

by:
pseudocyber earned 500 total points
ID: 17841190
Pix                      Pix
 |                        |
---VRRP or GLBP---
 |                        |
 |                        |
3750=======3750
 | \                  /  |
 |  \                /   |
 |    \             /    |
 |      \         /      |
 |        \     /        |
 |          \  /         |
 |          / \          |
 |         /    \        |
 |       /        \      |
 |     /            \    |
 |   /                \  |
 | /                    \|
Dell                    Dell
Teamed             Teamed

If you're using multiple vlans, then trunk your vlan across on both switches.  Make two connections between switches and aggregate them (Fast Etherchannel) for redundant load balancing connections.

VRRP or GLBP will provide firewall redundancy in case one fails.  GLBP is active/active.

Team the NICs on your Dells.  Then, connect one cable from each switch to the Dells.  Aggregate the two connections if you can on the switch side and if so, then use Switch Assisted Load Balancing (SLB) (naming changes).  If you can't aggregate the two connections (bond, or Etherchannel) then use Fault Tolerant Load Balancing (FTLB) on the Server Teaming end.

HTH
0
 

Author Comment

by:milan_novkovic
ID: 17843341
I forgot to mention that PIXes have active/standby licences, so standby would work only when active fails.

We received Stackwise cable with 3750 switches. Is there a need to use switch stacks for our needs or should switches be connected using only ethernet cables?
0
 
LVL 27

Expert Comment

by:pseudocyber
ID: 17843359
I would use the stacking cables.  Faster, and don't burn Ethernet ports.
0
What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

 

Author Comment

by:milan_novkovic
ID: 17849961
Is there a way of configuring this network so that system would work if eg. PIX1 and Switch2 fail (PIX1 is connected to Switch1) ?
0
 
LVL 27

Expert Comment

by:pseudocyber
ID: 17850112
Not without connecting both pixes to both 3750's.
0
 

Author Comment

by:milan_novkovic
ID: 17857814
How can I connect both pixes to both catalysts? I think it's not possible to use the same subnet for two different interfaces on PIX 515e.
0

Featured Post

Zoho SalesIQ

Hassle-free live chat software re-imagined for business growth. 2 users, always free.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Data center, now-a-days, is referred as the home of all the advanced technologies. In-fact, most of the businesses are now establishing their entire organizational structure around the IT capabilities.
Most of the applications these days are on Cloud. Cloud is ubiquitous with many service providers in the market. Since it has many benefits such as cost reduction, software updates, remote access, disaster recovery and much more.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

932 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now