Daniel Pittman <[EMAIL PROTECTED]> writes:
> Sven Peters <[EMAIL PROTECTED]> writes:
Following up to myself: bad form, I know, but in the spirit of the
stairway:
>> I'm about to start to set up multiple offices with the normal
>> services (SMB, IMAP, etc) in different cities.
Are you trying to offer SMB file sharing across the VPN link?
If so, I *strongly* advise you to revisit your plans: SMB is extremely
latency sensitive, and performance is appalling across a link with 50ms
latency, and much worse on anything higher.
>> I want all of them connected via VPN and this needs to be as much
>> reliable as possible. VPN Service for people on the road needs to be
>> available as well (with Password+Certificates).
What clients are you trying to use here?
>> I'd love to get all useraccounts into LDAP as well later on.
Why?
>> Therefore I've set up every location with two different DSL lines
>> which I now want to use to interconnect the locations. I thought of
>> setting up Linux firewalls with multiple interfaces (one internal,
>> one DMZ, two for the DSL connections) but not sure what's the best
>> way to do it.
Why two interfaces for the DSL connections? That is unlikely to make a
significant difference to performance, and potentially introduces more
points of failure into your setup...
Regards,
Daniel
--
SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html