Re: IPSEC through load balancers?

From: Greg Hennessy (nntp@NOSPAM.cmkrnl.cix.co.uk)
Date: 04/08/02


From: Greg Hennessy <nntp@NOSPAM.cmkrnl.cix.co.uk>
Date: Mon, 08 Apr 2002 20:01:06 +0100

On 8 Apr 2002 07:08:47 -0700, chudel@carolina.rr.com (chu) wrote:

>Hello,
>
>I am implementing Checkpoint SecureServer VPN between an application
>server and a farm of db servers. This works fine with software load
>balancing but I would like to use a lb switch instead. Is this
>possible?

Yes

>Typically, the load balancer switch fronts a Virtual IP for
>all the backend database servers but I fear that this will break my
>IPSEC connections (with the switch twiddling the header bits).
>
>Is there a solution for this?

I've used Foundaries in the past the do this, I am sure the Alteons can do
it also.

greg

--
$ReplyAddress =~ s#NOSPAM\.##;
With Precious and Grace ev'rything's all right. 



Relevant Pages

  • IPSEC through load balancers?
    ... server and a farm of db servers. ... This works fine with software load ... balancing but I would like to use a lb switch instead. ...
    (comp.security.firewalls)
  • Bonding and arp monitoring
    ... multiple HP BL30p blade servers running Red ... Alle servers in the chassi share two internal switches, ... The ARP monitor relies on the network device driver to maintain two ... If the current slave goes down, ...
    (comp.os.linux.networking)
  • Re: Very Strange Network Problem HELP!!!
    ... single switch, and bad when I plugged in the others. ... I have a client with 200 users running Citrix. ... > Anyways, the client was running old servers, so they upgraded to HP DL380 ... it felt like it might be network traffic. ...
    (microsoft.public.win2000.networking)
  • Very Strange Network Problem HELP!!!
    ... Anyways, the client was running old servers, so they upgraded to HP DL380 ... felt like it might be network traffic. ... I took a catalyst 2900 switch that had never been connected to the network, ...
    (microsoft.public.win2000.networking)
  • Re: Switch Questions
    ... >:I manage a small network (75 desktops, 4 servers) with a single HP ... >:Procurve 4000m switch which has one 1-port gigabit module and the other ... >:with dual gigabit NICS. ... >:1) I'm guessing I can plug the Linksys into the Procurve through the ...
    (comp.dcom.lans.ethernet)