On Tue, 16 Apr 2002, Schouten, Diederik (Diederik) wrote:

> Ugly network design. But possible, for that you will need multiple switches,
> on their trunk ports they need to be capable of handling that ammount of
> MAC's anyway.
>
> I would say that is a network design flaw.

So would I, but then I consider a LOT of things people do network design
flaws :)

> Cheap
> Fast
> Secure/Redundant
>
> pick 2.

More like pick 1!

> > The point however was that in low-latency failover scenerios, it may be
> > advantageous to have level of control if the gateway needs to ARP more
> > than one address if it doesn't get an answer imeediately due to load, a
> > downed system, etc.
>
> Sorry, I can't follow you. What setup are you thinking of?

If I have a firewall that's aware of multiple servers or gateways, and who
switches to a different one, based on how long it takes to get an ARP
reply then having control over how quickly/often ARPs are broadcast via
the firewall can be very advantageous (it's amazing what some people will
do to create failover or load balancing scenerios, isn't it?)

Paul
-----------------------------------------------------------------------------
Paul D. Robertson      "My statements in this message are personal opinions
[EMAIL PROTECTED]      which may have no basis whatsoever in fact."

_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to