Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Complete VPN Solution (In-House)

Status
Not open for further replies.

MsSBSPro

IS-IT--Management
Jul 3, 2006
2
ZA
Hi,

I need to setup a VPN solution for my company. It needs to be inhouse. I want to get all my branches (+- 75 branches) connected to my head office. I am located in South Africa, so I am going to use ADSL (DSL in other places) which means that my head office will have static IP's but I will have to rely on Dynamic DNS for my branches. I want to use MS, but the Fedora Core 5 (Linux) firewall and NAT server looks like it can do the job for no cost at all. If there is someone that has done this or has planned this for anyone else, please let me know. I have laid everything out on a VISIO 2003 layout. My question is how do I make it work, my theorie seems ok for it to work, but I do not want to jump into this blind and experience problems that I am not prepared for. Any ideas? I will not be using Cisco routers, but normal ADSL routers supplied by the ISP. I also do not want to use 3rd party vendors as I do not trust them.

Regards
 
I'd consider using some dedicated VPN routers if I were you (RV082). They're generally much more reliable and configurable than software connectivity. They often have Dynamic DNS options in them, too.


Carlsberg don't run I.T departments, but if they did they'd probably be more fun.
 
75 branches...
VPN, unless you have super bandwidth will only suffice to open small Word and Excel files... useless for database and large files. Look into Terminal services or Citrix. Aside from the speed issue is the management of all the VPN tunnels, basically a nightmare. Aside from the broadband pipe size, a rv082 does not have the processing ability to handle this much VPN traffic.

........................................
Chernobyl disaster..a must see pictorial
 
Christ, 75. I missed that bit!


Carlsberg don't run I.T departments, but if they did they'd probably be more fun.
 
The documents will be on the local machine. They only need to be able to send their MSMQ to me via the VPN and I need them connected 24/7 for remote support. I will have GP's setup for them on the server. SO basically, all they will get from Head Office will be e-mail and MSMQ and they must be able to send mail via the mail server at Head office and send me their MSMQ. Citrix is great software but way to costly to setup here.
 
As long as you've worked out the bandwidth, it should work fine. The remote sites can initiate the connection to the main site's static IP address. DNS names can also be used.

I've used Linux to set up a VPN for backup purposes, and it does work. Just keep in mind that the VPN will be less reliable than a private network like frame relay or MPLS, but it does work. At my current employer we use VPN exclusively (not Linux-based).

I'd also prefer hardware VPN endpoints over servers, though. We use Cisco PIX and routers.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top