Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    HA public service

    Routing and Multi WAN
    2
    4
    1.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      cyruspy
      last edited by

      Hi, how do you guys keep services HA to outside world?. Imagine you already have two WAN interfaces from two ISPs with services published to outside world (web, ftp, whatever). With DNS round robin,  monitoring availbility and updating DNS with low TTL zones sounds a pain in the ass and it's not bullet proof (DNS caching). I think a custom script running from outside applies here.

      Are there other options?, I've read something about BGP, but apparently it applies if both links are provided by same ISP.

      Ideas?

      1 Reply Last reply Reply Quote 0
      • C
        cyruspy
        last edited by

        well, read a little more about BGP and seems the way to go for HA but seems to be impossible for little installations as you need to own your own valid ip address range and apply for an ASN..

        1 Reply Last reply Reply Quote 0
        • jimpJ
          jimp Rebel Alliance Developer Netgate
          last edited by

          You are correct there. The proper way to do that is BGP, but that can be expensive or not feasible for smaller sites.

          You may not need BGP if both links are from the same ISP, but that depends on what kind of links they are. If it's something like DSL, or T1s even, multiple circuits could be bonded into a larger, fault-tolerant pipe. Provided the ISP supports that of course.

          Playing tricks with low DNS TTLs is how some devices try to make that work, but that can be quite problematic.

          Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

          Need help fast? Netgate Global Support!

          Do not Chat/PM for help!

          1 Reply Last reply Reply Quote 0
          • C
            cyruspy
            last edited by

            Right now both links are from the same ISP, fibre + WiMax. In the near future the secondary link will be switched to another ISP.

            We'll be doing some tests with DNS failover (not load balancing), we'll see how it goes…

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.