This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Site to Site VPN- Best Method

I just upgraded our 4 firewalls to XG (latest build).  We use IPsec firewalls.  When a firewall is rebooted or there is a power failure the IPsec VPNs do not reconnect on their own.  I have to mess around with both sides of the tunnel to get them to connect again.  I created a new SSL VPN between two sites and it works fine after a reboot.  What is the current preferred method for Site to Site VPNs, IPSec or SSL?  If it is IPSec why wouldn't my VPNs connect on their own after a restart.  Thanks.


Jae



This thread was automatically locked due to age.
Parents
  • I use Site to Site SSL and it seems to work fine for me.  I have tried to use RED to connect 2 XG's but I have never been able to get it to work, the RED tunnel is established and up but I can't get traffic to flow across it.  

    I'd be curious to know which of the 3 methods, IPSec, RED, or S22 SSL the folks here find to have the best performance?

  • Red between XGs works great if you tweak it right. 

    Can't tell with numbers but both seem to work equally well.

    On one company I have a star topology with Site2Site SSLVPN on which on the central one machine does video stream and one of the others in the star does the radio stream to everyone else. 7 points. Works well if the internet lines are good. On most of them they're 100/100

    On another it's red with gateway setup (though it's a dedicated red device) which flows all network data through the central which also works well(central wilth about 70 machines, red with same, maybe more). 100/100 on both sites

    Personally on my home setup I set it with a friend and another spot, all 3 with XG and RED. Works a treat for streaming from the nas. It's mostly got to do with internet speed. On home setup the central one has 200/200mbps internet line and the stars have 18/1 & 8/1 respectively

Reply
  • Red between XGs works great if you tweak it right. 

    Can't tell with numbers but both seem to work equally well.

    On one company I have a star topology with Site2Site SSLVPN on which on the central one machine does video stream and one of the others in the star does the radio stream to everyone else. 7 points. Works well if the internet lines are good. On most of them they're 100/100

    On another it's red with gateway setup (though it's a dedicated red device) which flows all network data through the central which also works well(central wilth about 70 machines, red with same, maybe more). 100/100 on both sites

    Personally on my home setup I set it with a friend and another spot, all 3 with XG and RED. Works a treat for streaming from the nas. It's mostly got to do with internet speed. On home setup the central one has 200/200mbps internet line and the stars have 18/1 & 8/1 respectively

Children
No Data