Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
?
Solved

Sharing Internet connections for second facility connected to main facility via VPN

Posted on 2006-12-01
6
Medium Priority
?
265 Views
Last Modified: 2012-05-05
My company has opened up a new facility and I have it connected to our main facility via a VPN over the Internet.  The second facility has something called Stonebridge Wireless for an ISP (1.5M up and down).  I was told it is reliable, but in 5 weeks of having it, I don't think it is.  

I am thinking about trying DSL instead, but the upload speed is only 896k.  I have a Firebox Edge firewall at my second facility (and a Firebox Core at my main facility).

Can I connect both the Stonebridge Wireless and DSL into my Edge to "share" the connection or at least so it can fall back (instantly) on DSL when Stonebridge fails?

Thanks

Doug
0
Comment
Question by:dougshepard
  • 2
  • 2
4 Comments
 

Author Comment

by:dougshepard
ID: 18059839
I believe I may have answered my own question by digging around in the web interface for the Edge.  It has a second WAN port and a failover setup screen.  Any opinions/experience on how well this will work or has worked in the past for you is still greatly appreciated.

However, now I am thinking about doing load balancing instead of failover.  Please see this question for any advice on this topic.

http://www.experts-exchange.com/Networking/Broadband/DSL_Cable/Q_22080140.html

Thanks

Doug
0
 
LVL 78

Accepted Solution

by:
Rob Williams earned 2000 total points
ID: 18059918
I have used load balancing in the past and it works very well, but I haven't used it on the Watchguards. The one catch with it, at least on the units I used, is it works best if the 2 connections have similar bandwidth. As there is no logic in what traffic gets routed through which connection, just basically sends 1/2 through one and 1/2 through the other, if one connecting is much slower, 50% of the users/connections get the slower speed, which is frustrating when a faster connection is available. I ended up at one site where there was a radical difference just using it for fail-over, with the faster connection being the primary. Perhaps the Edge offers some control over traffic flow.
Just my 2¢ worth :-)
--Rob
0
 

Author Comment

by:dougshepard
ID: 18060047
So you used your Firewall to do the Load Balancing?

Thanks

Doug
0
 
LVL 78

Expert Comment

by:Rob Williams
ID: 18060655
Yes, and it seemed to work well, but as mentioned, more ideal when the 2 connections have similar bandwidth.
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Juniper VPN devices are a popular alternative to using Cisco products. Last year I needed to set up an international site-to-site VPN over the Internet, but the client had high security requirements -- FIPS 140. What and Why of FIPS 140 Federa…
I've written this article to illustrate how we can implement a Dynamic Multipoint VPN (DMVPN) with both hub and spokes having a dynamically assigned non-broadcast multiple-access (NBMA) network IP (public IP). Here is the basic setup of DMVPN Pha…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…
Suggested Courses

564 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question