cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
400
Views
0
Helpful
1
Replies

Optimum infrastructure

kvlassisgr
Level 1
Level 1

Hello to everyone,

I’m trying to put forward a proposal for a much needed upgrade of our company’s infrastructure and wanted to pass it through your expert eyes first to make sure no ‘major’ mistake is being done, one that would cost time & money...

We are a small business that so far is relying on a single Web and Database server, co-located in a big Data Centre. This is going to change in the next couple of weeks and the plan is this:

(A) Data Centre:

* PIX 501 Firewall

* CSS 11501 for load balancing between the servers

* 2 or 3 machines working as Web Servers (Windows 2000 or Windows 2003)

* 1 machine as the main DB Server (Windows 2000/2003 and SQL 2000 Standard) where all the above Web Servers will be storing data.

(B) Business Office:

* ADSL modem (provided by ISP)

* PIX 501 Firewall for VPN between this location and the Data Centre

* SQL Server replication between this location and the Data Centre

* Terminal Services access needed to all servers in (A)

(C) Remote workers/admins:

* Cisco 837 ADSL Broadband Router (1 x Static IP per user given by their ISP)

* VPN needed between (C) and (A) and between (C) and (B)

* Terminal Services access needed to all servers in (A)

Will all these be possible? Are there any ways to do things ‘better’? Finally is there a course/book for the CSS 11501? I guess it will need a lot of work to get things done the way I want them to...

Thanks for taking the time to read this and respond!

Regards,

Kostas

1 Reply 1

jfoerster
Level 4
Level 4

HI Kostas,

two suggestions

1) use at the date-center a redudnant PIX (may be failover bundle with the existing regelementations in regards of the distance between the two)

2) use 2 CSS11501(S) because of redundnancy depending on which maintenance contracts you have and if you could achieve a total loss if the CSS fails. In regards of the SSL-Module I would think about this to be able to watch the HTTPS traffic if you have some of this and to terminate this on the CSS and not on the servers...

All the other things should work properly.

Kind Regards,

Joerg

Review Cisco Networking for a $25 gift card