Skip to main content
ZeroInterrupt
New Member
October 2, 2015
Question

HA across comcast switched fiber network

  • October 2, 2015
  • 1 reply
  • 4513 views

I have a client with multiple remote sites.  All of the remote sites are connected back to the main site via Comcast switched fiber Ethernet with layer 3 static routing and no connection to the internet.  The remote sites come back to the main site for internet and all server access, the main site runs a 200D. The plan is to make one of the remotes a hot site and adding a connection to the internet and installing another 200D. Routers between the layer 3 switches and the Comcast link for OSPF routing will be added at all sites.  Is it possible to configure the 200D's in HA in the case that the main site goes down?

    1 reply

    emnoc
    New Member
    October 2, 2015

    Not sure what you mean HA across the network but here 's a example of what I'm doing with ATT.

     

    We have 2x active West & East exits. The internal sites for this car dealership exit out of what ever sit eis up and  less metric. if the ATT edge router goes down, our  ospf default expires and traffic divert out the other exit. We are running  FGT800C at each W/E DC in a cluster & EX43000 stacks terminating our MPLS cloud appearance with 40mbps uplinks.

     

    VIP terminates in each datacenter for external peering services ( webmail, DNS, MXes, etc...) Clients are  SNAT at the W or E appearance.

     

    i just recently had  VRRP peers installed for the edge-routers. So we have redundancy in all areas and  as long as the  MPLS core is intact and the link into the mpls core is up , we have 100% uptime. All of my failures today has been with ATT either the mpls cloud where a site was isolated into a island or A edge-router. I call it a very good design & for the bandwidth we have great  performance on the FGT800C for ipsec and non-ipsec traffic.

     

     

    ZeroInterrupt
    New Member
    October 2, 2015

    what I am asking is if it is possible to HA the 200d's even though they are at different locations.  The Comcast links between them are the ENA switched cloud point to point links. 

    emnoc
    New Member
    October 2, 2015

    If your talking about the FGCP protocol across the comcast cloud yes, but  that would probably not be wise.

     

    if the comcast paths are un-stable you  might have premature failover or both units operating as active and then your port monitor attempts would be extremely hard to manage. Also session pickup or not could cause extreme delay or major interruptions if you have any serious flapping the 2 units. I would think long and hard on what your trying to accomplish the risks involved.