In article <(E-Mail Removed)>,
russell_dot_preece@activetechnology*co*uk says...
> "Leythos" <(E-Mail Removed)> wrote in message
> news:(E-Mail Removed)...
> > In article <VI-(E-Mail Removed)>,
> > russell_dot_preece@activetechnology*co*uk says...
> >> The Internet connection on both sides stays up, as the routers always
> >> have
> >> large uptimes when this happens (200-300 hours), so that's not knocking
> >> it
> >> out. One main difference with the previous successful install is that
> >> the
> >> ADSL connections are with two different ISP's, but I don't see how that
> >> would affect it, and especially seeing as it's refusing to automatically
> >> reconnect - in fact seems like it's refusing to know that it has dropped?
> >>
> >> The Site 2 server does have SQL SP3a on it, which i've heard may cause a
> >> problem, but how? I've also heard of an MTU change - does anyone think
> >> this
> >> will help before I go changing reg values on these boxes?
> >
> > Are you doing site-site using the routers or are you actually doing
> > SBS2003 to SBS2003 site to site vpns?
> >
> > If you have fixed IP on the WAN ports, then use the routers to do the
> > IPSec tunnels and not SBS, it's easier to manage and moves the load onto
> > the routers.
> >
>
> Thanks for the reply. I'm doing the vpn via sbs at the moment. The routers
> do support IPSec tunnels, but I've no idea how to set this up. Also I
> thought it may be a problem that the WAN network is on a different subnet
> (10.) and so wouldn't be able to route the two interconnecting ranges
> together?
I don't do SBS to SBS site-site VPN's, but I also don't do Dual NIC
installs either. I install a Firewall Appliance (not a cheap nat router)
and do the IPSec tunnels between appliances - this makes sharing
resources simple as the LAN on both sides (access) is controlled by the
firewall not the server. As long as the network have different subnets
it makes it easy to share resources - as long as you have DNS setup
properly.
Since you want to do SBS to SBS I will have to bow out and let one of
the others assist you.
--
(E-Mail Removed)
remove 999 in order to email me