Solved

Remote Desktop Services High Availability Scenario, Juniper SA compatibility

Posted on 2010-11-25
7
3,060 Views
Last Modified: 2012-05-10
Good day,

I am looking to deploy a new Remote Desktop Services 2008 R2 Farm. This farm would be accessible internally via WEB App without a RD Gateway, and I plan to avoid the need for a RDGW by publishing the RD Web Access page through a Juniper SA SSL VPN appliance similiar to how we deploy Outlook Web Access as a bookmark through the SA to field users.

I have 3 big questions about my scenario I would appreciate your input on;

1. Juniper says RDS RemoteApp is supported on our current firmware version- do you foresee an issues with browsing network drives from within a RemoteApp session using WSAM or JSAM? Should SSO work if I follow these instructions; http://blogs.msdn.com/b/rds/archive/2009/08/11/introducing-web-single-sign-on-for-remoteapp-and-desktop-connections.aspx 
 
2. Do I still need a RDGW if I am requiring all external users sign into the SSL VPN appliance first for authorization? What security holes or functionality can you forsee?

3. I plan to use Clustering on the Connection Broker servers, do you know if clustering is supported with RD Web Access servers, and if I can colocate these roles on the RDCB with clustering?

I plan to have 5 new servers; 2 hosting the RWDA, and RDCB roles clustered, and 3 RD Session Hosts in the farm with standard MS Apps. The target is 100 concurrent users.

Thank you for your assistance!



0
Comment
Question by:Graycon
  • 3
  • 2
7 Comments
 
LVL 47

Accepted Solution

by:
dlethe earned 250 total points
ID: 34214580
this is really one of those situations where you should contact their presales engineering, log it as an instance so they have record ... and have them provide details and config info to do this all.

sometimes best answer is to a vendor support engineer. this is one of them..
0
 
LVL 18

Assisted Solution

by:deimark
deimark earned 250 total points
ID: 34214867
Have to agree with dlethe here bud.

With regards to the SA box, my initial thoughts are yes, it can be done but its definitely worth double checking with your support provider for all components here just to make sure that they will all play well together given your detailed questions above.

Besides, the support ticket will allow you to go into a lot more details about your installation which it is unwise to post here.
0
 
LVL 18

Expert Comment

by:deimark
ID: 34232005
Not really an appropriate close reason here.

A question was asked and then answered, its not our fault if he asks a complex question that he gets a complex answer.
0
 
LVL 47

Expert Comment

by:dlethe
ID: 34232420
Not only that, but technically he received the correct answer.   He specifically asked for "input" on these issues.

Input was to get a support ticket and work with manufacturer directly, as due to the nature of the question, it necessitates hands-on engineering support with the manufacturer.  Going into this, the author clearly thought the nature of the problem was simple enough that he could ask a 3-part question and get the right answer and move on.

Now author has been educated, thank's to expert advice, and is likely doing just that.

Points should be split between experts who responded.
0
 
LVL 18

Expert Comment

by:deimark
ID: 34234833
Agree with dlethe here

Split points betyween myself and dlethe

Comments 34214580 and 34214867
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Like many organizations, your foray into cloud computing may have started with an ancillary or security service, like email spam and virus protection. For some, the first or second step into the cloud was moving email off-premise. For others, a clou…
New Windows 7 Installations take days for Windows-Updates to show up and install. This can easily be fixed. I have finally decided to write an article because this seems to get asked several times a day lately. This Article and the Links apply to…
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
This tutorial will walk an individual through configuring a drive on a Windows Server 2008 to perform shadow copies in order to quickly recover deleted files and folders. Click on Start and then select Computer to view the available drives on the se…

825 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question