Hi,
What is the Cisco position when it comes to choose the best site, based on network proximity with a GSS? The GSS version 1.2 allows Boomerang/CRA and the new network proximity method that uses DRP.
Question : Which one is the preferred method ?
I designed an international distributed Data Center network that uses Boomerang and I am evaluating replacement of this protocol with the DRP method.
Here are my concerns with both methods :
Boomerang : The address spoofing used by the CRAs to respond to the client generated a lot of problems during deployment. First, firewalls must be configured to allow adress spoofing for the GSS address, then the ISP have to disable their anti-spoofing ACL in the entry points where CRA are installed.
Proximity with DRP : I have some thoughts if the provider hosting the proxy-DNS disallows ICMP or TCP probing from the DRP agents on their DNS servers
Can you give me some comments on this ?
Thank you
Yves