10-08-04 10:45 PM
"Bj?rnar Eilertsen" <bjornar@vetromac.no> wrote in message
news:35544b6.0410080430.5f7d287f@posting.google.com...
> Here's the deal:
>
> In our WAN we have apr. 15 sites around the world. Today we have a
> full mesh VPN network between the sites.
>
> We are planning a redundant VPN net with a new FW at each site. I have
> not figured out how to do this and the routing is a true nightmare.
square law scaling rules always hurt.
you need a routing protocol so that you dont have to do resilience with
static routing.
>
> Anyone have any ideas or thoughts around this problem?
some of the manufacturers have noticed
- e.g. cisco routers now have a "feature" so that you set up a VPN on a
star basis, and they will negotiate and build direct dynamic tunnels when
there is a traffic flow between 2 edge boxes.
but its Friday pm - so cant remember what it is called....
>
> Also, what is the "best practice" regarding VPN net? Star or Mesh?
if it is a big issue go and rent a managed service so it becomes a telco
problem.....
>
> Thanks for any replies,
>
> BR
> Bjornar
--
Regards
Stephen Hope - return address needs fewer xxs
[ Post a follow-up to this message ]
|