WAN Acceleration

Hello all. I originally posted this message in the novell.support.native-
file-access forum and it was suggested that I try this forum instead. So
here goes.
We are in the process of evaluating a WAN accelerator solution
from a company named Riverbed. They have an array of WAN accelerator
appliances called Steelhead's. These appliances sit at each WAN location
and actually CACHE the WAN data that is accessed across the wire, thus
giving your WAN a LAN like performance. We have 3 sites connected via T1
lines and are a Civil Engineering firm that at times needs to have multiple
people in multiple offices work on the same projects. We can do this now
with our setup but the file access performance at the remote sites back to
our main office is fairly sluggish. The Steelhead appliances are supposed
to improve this performance dramatically. Spoke to one of their
representitives and they mentioned that another client of theirs also used
NetWare and they simply had to enable CIFS on their servers since NCP
traffic is not accelerated by their devices. I know there is more to the
configuration than that. Has anyone out there had experience configuring
NetWare boxes with these Riverbed Steelhead appliances? Any information
would be appreciated. We are going to be getting some of their reps in
here soon, hopefully they can shed some light on this as far as what kind
of configuration they require from their end. We currently have a total
of 7 NetWare 6.5 SP2 servers spread throughout our 3 locations. We have
not had a need for any other native file access (CIFS, AFP, NFS) since we
are a complete Novell shop. As you may have guessed, NFAP is fairly new
to me, always been a die hard Novell guy. Again, thanks to all for any
information you could provide.
John

Hi
found some interesting links about your subject. I remember that in my
company they werde quite impressed about peribit. So go ahead and compare...
However you have also to consider that theses boxes are not always black
boxes they mostly need some maintenance....
www.allot.com
www.cisco.de
www.expand.com
www.nortelnetworks.com
www.packeteer.com
www.peribit.com
www.telonic.de
Regards
Marc
[email protected] wrote:
> Unfortunately Branch Office doesn't offer bi-directional synchronization
> which is what most people would look for when deploying somthing like this.
> On initial setup id does do bi-directional sync, but that's about it.
>
> The reason we are looking for a solution like this is because it is one of
> the very few solutions that offer this type of functionality. Unfortunately
> these vendors don't offer support for Novell.
>
>
>
>
>>We do have native file access (cifs) and consider going back. NCP has
>>more performance and is more secure. We had abends because of client
>>security upgrades and were even forced to upgrade from 6.0 to 6.5
>>rapidly. I always see a higher risk when implementing a service pack
>>etc. By the way: Why are you going to buy a solution at a vendor with
>>*NO* (not even little) Novell experience. Consider using Novell Branch
>>office if you are a real novell shop.
>>
>>Bill Sappington wrote:
>>
>>>Hey there,
>>>
>>>Enabling Windows native file access is just insane, avoid at all costs.
>>> One of the only major Novell threats came from CIFS, because they of
>>>course implemented MicroSofts protocol exactly, and therefor implemented
>>>their bugs and wholes as well. Now one might ask WHY they did this,
>>>well its because they had to be compatable with a completely exploitable
>>>file access protocol. They fixed the security whole, and I dont * think
>>>* it affected the native access protocol for windows, but in my opinion
>>>windows file access protocols are just not trustable, and well for that
>>>matter, neither is windows.
>>>
>>>Consider BroderManager. It has web caching and all those other goodies,
>>>including compliant fire walls, client VPN, server to server VPN and all
>>>that fun stuff and its priced very reasonably. It also lets you control
>>>who gets to surf, when they get to surf, where they get to surf, etc. etc.
>>>
>>>- Bill
>>>
>>>[email protected] wrote:
>>>
>>>
>>>>Hello all. I originally posted this message in the
>>>>novell.support.native-
>>>>file-access forum and it was suggested that I try this forum instead.
>>>>So here goes.
>>>>
>>>>We are in the process of evaluating a WAN accelerator solution from a
>>>>company named Riverbed. They have an array of WAN accelerator
>>>>appliances called Steelhead's. These appliances sit at each WAN
>>>>location and actually CACHE the WAN data that is accessed across the
>>>>wire, thus giving your WAN a LAN like performance. We have 3 sites
>>>>connected via T1 lines and are a Civil Engineering firm that at times
>>>>needs to have multiple
>>>>people in multiple offices work on the same projects. We can do this
>>>>now with our setup but the file access performance at the remote sites
>>>>back to our main office is fairly sluggish. The Steelhead appliances
>>>>are supposed to improve this performance dramatically. Spoke to one
>>>>of their representitives and they mentioned that another client of
>>>>theirs also used NetWare and they simply had to enable CIFS on their
>>>>servers since NCP traffic is not accelerated by their devices. I know
>>>>there is more to the configuration than that. Has anyone out there
>>>>had experience configuring NetWare boxes with these Riverbed Steelhead
>>>>appliances? Any information would be appreciated. We are going to be
>>>>getting some of their reps in here soon, hopefully they can shed some
>>>>light on this as far as what kind of configuration they require from
>>>>their end. We currently have a total of 7 NetWare 6.5 SP2 servers
>>>>spread throughout our 3 locations. We have not had a need for any
>>>>other native file access (CIFS, AFP, NFS) since we are a complete
>>>>Novell shop. As you may have guessed, NFAP is fairly new to me,
>>>>always been a die hard Novell guy. Again, thanks to all for any
>>>>information you could provide.
>>>>John
>>>>
>>>>
>
>

Similar Messages

  • WAN Accelerator

    Hi,
    Anyone know if streams will benefit from a wan accelerator?
    The accelerator software will optimize "known protocols and ports" will this include Oracle streams ?, with or without configuration?
    Any info and/or first hand experience is appreciated
    regards Curt

    Depends on where the time is being spent.
    If 90% of the time is spent on the network transmitting data then: Yes. If 90% is spent reading and writing log files and dealing with application logic: No.
    Do you know that the network is the weakest link or are you just shooting at random targets and hoping some arrow sticks?

  • WAN Acceleration Configuration

    Hello all,
    We have purchased WAAS WAE 674 WAN Accelerator's, and I have a question on placement in our network.  I've just recently implemented redundant WAN Lines (DS3's), and now would like to move my WAE674's so that they are accelerating traffic across both WAN lines.
    Is this configuration possible with the 2 WAE674's (no inline cards), and WCCP forwarding, and my HQ WAAS controller, or do I have to purchase an additional 2 WAE 674's to accelarate both WAN lines.
    Attached is a drawing for what our WAN design network looks like, we are using EIGRP as our routing protocol, and using per destination load sharing, and redistributing our static routes out from our HQ 6509E.
    Please let me know if there is more information needed.
    Thanks,
    Jon

    Hi Jon,
    Here are the details of GRE and L2 WCCP redirection.
    GRE allows datagrams to be encapsulated into IP packets at the WCCP-enabled router and then redirected to a WAE (the transparent proxy server). At this intermediate destination, the datagrams are decapsulated and then handled by the WAAS software. If the request cannot be handled locally, the origin server may be contacted by the associated WAE to complete the request. In doing so, the trip to the origin server appears to the inner datagrams as one hop. The redirected traffic using GRE usually is referred to as GRE tunnel traffic. With GRE, all redirection is handled by the router software.
    Layer 2 redirection is accomplished when a WCCP-enabled router or switch takes advantage of internal switching hardware that either partially or fully implements the WCCP traffic interception and redirection functions at Layer 2. This type of redirection is currently supported only with the Catalyst 6500 series switches and Cisco 7200 and 7600 series routers. With Layer 2 redirection, the first redirected traffic packet is handled by the router software. The rest of the traffic is handled by the router hardware. The branch WAE instructs the router or switch to apply a bit mask to certain packet fields, which in turn provides a mask result or index mapped to the branch WAE in the service group in the form of a mask index address table. The redirection process is accelerated in the switching hardware, making Layer 2 redirection more efficient than Layer 3 GRE.
    More details here:
    http://www.cisco.com/en/US/docs/app_ntwk_services/waas/waas/v441/configuration/guide/traffic.html
    Cisco WAAS Software Release 4.0.13 introduces flexibility when using WCCPv2 as the redirection method. It allows configuration of egress method that increases Cisco WAAS deployment alternatives in cases using WCCP iterception. From Cisco WAAS 4.0.13 onward, the WCCP negotiated return is also supported as the egress method. This method allows the Cisco WAE to be deployed on the same subnet as users or servers and provides better support for preservation of the routing path chosen by the network, because the optimized traffic is returned to the redirecting router. The negotiated return egress method also helps ensure compatibility with asymmetric routing, equal-cost multipath (ECMP) load-balancing, and Hot Standby Router Protocol (HSRP) environments. The return traffic egress method is negotiated based on the WCCPv2 configuration on the router and the egress method configuration on the Cisco WAE.
    You will find more information here:
    http://www-europe.cisco.com/en/US/prod/collateral/contnetw/ps5680/ps6870/prod_white_paper0900aecd806d976a_ps6474_Products_White_Paper.html
    Regards.

  • SCCM 2012 BITS transfers With Riverbed WAN Acceleration

    Hi all
    i'm implementing SCCM 2012 R2 infrastructure for a organization. 
    its having multiple branch location which i'm planning to put Distribution points and deliver contents using SCCM BITS.
    most of these branch locations is having Riverbed WAN Accelerators, 
    I want to know, BITS working with Riverbed accelerators. is there any issues ? , because i have read in a riverbed document they are saying to disable or have a high bits throttling.
    Please let me know your opinions
    Asitha

    I've seen strange things happening when (misconfigured) WAN accelerators were in place. There are many moving parts involved so there is no one-fits-all answer except for: implement it an try it out.
    Torsten Meringer | http://www.mssccmfaq.de

  • Juniper WAN Acceleration and WCCP v2

    Somewhat off-topic, and perhaps not the right forum anyway, but wccp is part of content networking, isn't it?
    Does anyone have experience of integrating Juniper's WX/WXC products with WCCP ver 2. The reason I ask is that Juniper's documentation says that WCCPv2 is supported, but doesn't seem to give any sense that it really is. Version 2 should support a fault-tolerant configuration where multiple routers operate WCCP with a cluster of caches. According to Cisco IOS documentation, this discovery can be by either of two methods:
    1. Static configuration of the cache IP addresses (i.e. unicast), or
    2. Multicast advertisement
    However, the WX documentation doesn't mention anything about supporting the second (multicast) WCCP discovery method, and doesn't make any explicit reference, either, to supporting multiple statements like
    wccp set router-ip-address 10.0.0.100
    wccp set router-ip-address 10.0.0.101
    to configure the WX to peer WCCP with multiple routers.
    Can anyone advise whether (a) there is any undocumented support for WCCPv2 in multicast mode, or (b) whether the explicit definition of multiple unicast WCCP peer routers is supported?
    I know this should really be a question to put to Juniper's tech support, but I have no access to it and have been asked by a customer to review a proposal including these products.
    Any help greatly appreciated.

    I don't think WCCPv2 is supported

  • VoIP (UDP) and Video (mpeg4) Benefit from WAN Optimization?

    From what I am reading VoIP and (Video)MPEG4 are "integrated" into a vendor's WAN acceleration/optimization app/device but I don't read VoIP or mpeg4 will benefit? Is this a true statement?

    Sorry I have taken so long to reply but work got in the way.
    This User Defined Firewall.
    Can you tell us more about that.
    Access Control = NO Valid Filtering Rule!!!
    MAC Filtering Table = Disabled
    URL Blocking = No entries
    Schedule rule = No Valid Schedule Rule!!!
    Intrusion Detection Feature
    SPI firewall protection = ticked
    Anti-DoS firewall protection = ticked
    RIP defect = blank
    Discard Ping To WAN Interface = blank
    Stateful Packet Inspection
    Packet Fragmentation = ticked
    TCP Connection = ticked
    UDP Session = ticked
    FTP Service = ticked
    H.323 Service = ticked
    TFTP Service = ticked
    When hackers attempt to enter your network, we can alert you by Email
    Your Email Address :empty
    SMTP Server Address :empty
    Connection Policy
    Fragmentation half-open wait: 10 secs
    TCP SYN wait: 30 sec.
    TCP FIN wait: 5 sec.
    TCP connection idle timeout: 3600 sec.
    UDP session idle timeout: 30 sec.
    H.323 data channel idle timeout: 180 sec.
    DoS Detect Criteria:
    Total incomplete TCP/UDP sessions HIGH: 120 session
    Total incomplete TCP/UDP sessions LOW: 115 session
    Incomplete TCP/UDP sessions (per min) HIGH: 115 session
    Incomplete TCP/UDP sessions (per min) LOW: 110session
    Maximum incomplete TCP/UDP sessions number from same host:30
    Incomplete TCP/UDP sessions detect sensitive time period: 900 msec.
    Maximum half-open fragmentation packet number from same host:20
    Half-open fragmentation detect sensitive time period: 10000 msec.
    Flooding cracker block time: 300 sec.
    DMZ = disable
    There are NO ports set.
    The NAT Mapping table is 16 pages long.
    SIP/VoIP only mentions 5060 with no ranges
    Well I hope that is the info you wanted
    Cheers
    Message was edited by: greatfinewine
    Message was edited by: greatfinewine

  • Global Architectural design for SharePoint 2013??

    Hi Friends,
    i am trying to pursue SharePoint 2013 global Architectural design before we implement SharePoint 2013 farm. FYI, Our Current SharePoint 2010 farm is three tier farm (2 web servers + 2 App servers + cluster Sql server) and total users 1,000 and its
    located in one data center. From this farm we are serving now SP site to five different countries in the world via WAN. But as our company growing rapidly, we want share point will provide robust performance. As our company globalized, how many data center
    we will need? Can we have one centralized farm in USA and other regional SharePoint farms into different countries? According to my business scenario, what will be the best architectural design?
    Any help will be appreciated!!

    "It depends" would be the answer with the information given. It depends on how much content is accessed at any one location, if a WAN accelerator could alleviate any issues end users at the remote locations were seeing, and if the company can take on the
    added complexity, extra licensing, and hardware cost that are associated with SharePoint farms.
    It would also depend if you want to replicate content (e.g. Metalogix Replicator) or if each farm will have its own unique content targeted at the specific region.
    Trevor Seward
    Follow or contact me at...
    &nbsp&nbsp
    This post is my own opinion and does not necessarily reflect the opinion or view of Microsoft, its employees, or other MVPs.

  • Best practice for IE cache

    Hi, all.
    Over the weekend, we applied the SPS17 to the ECC6.0 server running on dual stack. We also updated the HCM EHP3 to stack 6.
    We have a lot of WD for ABAP and WD for JAVA applications running on the ECC dual stack server. The contents are federated to the consumer portal running on EP7.0 SPS21. Note the consumer was NOT patched during the weekend.
    On Monday morning, we get many calls from users that their HCM apps are not working on the consumer portal. The error can come in many different ways. The fix so far is to clear their IE cache and everything works again. Note that the problem doesn't happen to everybody, less than 10% of the user population. But the 10% is enough to flood our helpdesk with calls.
    I am not sure if any of you has run into this problem before. Is that a best practice to delete the IE cache from all the users after an SP upgrade? Any idea to see what caused the error?
    Thanks,
    Jonathan.

    Hi Jonathan,
    I have encountered a similar situation before but have unfortunately never got to the root cause of it. One thing I did notice was that browser versions tended to affect how the cache was handled for local users. We noticed that IE7 handled changes in the WDA apps much better than certain versions of IE6. Not sure if this is relevant in your scenario.
    I assume also that you are not using ACCAD or other WAN acceleration devices (as these have their own cache that can break on upgrades) and that you've cleared out your portal caches for good measure. As far as I know in ITS, if you've stopped and started the WDA services during the upgrade then the caching shouldn't be a problem.
    Cheers,
    E

  • Transactional Replication - SQL Server 2012

    Newbie to Replication.
    Configured transactional replication on a database and everything run's fine, but out of all the tables one of the table with couple of columns as VARCHAR(MAX) and with about 3 million records takes 80% of replication duration.
    on bit of research and recommendations, I did configured the server with following
    EXEC sp_configure 'max text repl size', -1 ;
    but still the table take around 80% of the replication time.
    Can someone point me to other areas / best practices / articles to improve Replication performance?
    Sreedhar

    You need to determine why it is taking so long to replicate.
    If it during snapshot application? If so use the initialize from backup option. Is it after the snapshot has been deployed?
    Then you need to use tracer tokens to see if it is the log reader agent or the distribution agent. There is not a lot you can do with the log reader agent and it is not normally the bottleneck. It is likely with the distribution agent.
    If so, I would first try to factor out the network. Replicate this table locally and see if you still have the same latency. if you don't it is the network and you need to try to minimize the network impact. Use a pull subscription and use a WAN accelerator.
    These will have more impact than setting the network packet size.
    looking for a book on SQL Server 2008 Administration?
    http://www.amazon.com/Microsoft-Server-2008-Management-Administration/dp/067233044X looking for a book on SQL Server 2008 Full-Text Search?
    http://www.amazon.com/Pro-Full-Text-Search-Server-2008/dp/1430215941

  • Data Center Latencies !!!!

    Hello,
    I am coming across these phrases where MPLS is legacy, old school etc.etc..
    My topic here is not an issue but more of a knowledge gathering where i would like to know more about the new WAN technologies in the market, what are the efficient ways of connecting two cities miles away from each other or countries or continents. Getting latency in WAN is a thing of past and there are better ways to get low latencies.
    Please be kind to share insights on the new effiecient WAN technologies that will reduce the latencies drastically.
    Thx in advance.
    Regards,
    Amol.

    My topic here is not an issue but more of a knowledge gathering where i would like to know more about the new WAN technologies in the market, what are the efficient ways of connecting two cities miles away from each other or countries or continents. Getting latency in WAN is a thing of past and there are better ways to get low latencies.
    This line of questioning sounds very familiar to a school work.  
    Anyway, MPLS is not a "legacy".  It's still there.  Growing.  The only thing stopping or slowing down the implementation of MPLS/VRF is cost and the knowledge skill.  
    Have you heard of WAN Acceleration?  Have you heard of "dark fibre"?  These two are predominantly used to link two (or more) sites together.  

  • Multiple remote sessions to same machine

    Hi everybody,
    is there a way to allow on Leopard multiple remote graphical logins? I would like to connect to my account using VNC or ARD remotely while a user is logged in locally. Is it possible to do that without a third party software? If a third party sw is necessary what would you suggest?
    Thanks in advance for any help,
    Paolo

    Hello,
    All data is sent to all replicas that need the data at the rate at which they can consume. So to answer your question, no because it doesn't care where the replicas are it just needs to get it the data. What you could do is put some type of compression wan
    accelerator on each end but the data stream by default is already compressed with availability groups so I'm not sure how much extra help that may give.
    If you want to verify this out for yourself, packet capture the mirroring endpoint setup for AOAG on every replica.
    Sean Gallardy | Blog |
    Twitter

  • Protecting users and their emails after FA-P2T on Cloud and on-premise environments

    Hello everyone,
       I would like to share this helpful article to let you know how to protect user's emails after a FA-P2T(production to test) procedure on-premise environments, and make it possible for Cloud(thru SRs, if approved, of course).
    thiagoleoncio: Protecting users and their emails after FA-P2T on Cloud environments
    I hope it helps,
    Thiago Leoncio.

    I had exactly same issue. And it was hard for me to troubleshoot too. Here is what I did,
    Forced "Outlook Anywhere" even when users were in internal LAN. The issue did not appear. This gave me the idea that since Outlook Anywhere is encrypted (HTTPS) connection there was no interference with
    traffic between Outlook and Exchange. This tells me that some other network devices were interfering with this traffic.
    In my case, it was WAN Acceleration (Riverbed). Riverbed did acknowledged this issue and pointed us to their KB article. Good luck convincing your network guys though. If HTTPS work, keep using it. It
    will eventually irritate the network guys as they cannot compress encrypted traffic ( if you don't provide them the certificate). 
    I know this is shot in the dark as I don't know your network.
    Exchange server reboot could be completely different issue. I have no idea why.
    I hope this helps.

  • Transparent TCP Proxy

    Has anyone used a transparent TCP Proxy solution as a performance enhancement tool (via caching or buffering)?
    Does Cisco has anything? WAAS looks the closest but it more like a point to point solution (wan acceleration). I am looking after something like a PROXY (device in the middle).
    Thanks

    Hello Tivig,
    look for WCCPv2 it allows one or more routers to redirect to a group of web caches
    It is supported also on multilayer switches and it is not limited to WEB traffic
    see
    http://www.cisco.com/en/US/docs/switches/lan/catalyst4500/12.2/31sga/configuration/guide/wccp.html
    Hope to help
    Giuseppe

  • Behaviour JRE1.6 with Forms services compare to Jinitiator

    Hi,
    I want to optimize oracle forms traffic on the Wan through Wan optimization appliances.
    The customer OracleAS 10G R2.
    The constraint is that he wants to use JRE1.6 with http or https communication modes.
    I know that services forms exchanges are encrypted in RC4-40bits which isn't a problem
    for the wan accelerator equipments.
    But i have heard that JRE doesn't behave like Jinitiator because it maintains a session
    between the Java Machine and the Oracle listener which prevents the optimization
    to work.
    So i would like to know if there is a real difference between Jinitiator and JRE1.6
    in the exchanges between Client and Server.
    Best regards.
    Andre

    This seems to be a very specific question regarding the Application Server, you would probably increase your chances to get a response if you post the question in Application Server forum.
    Oracle Application Server - General

  • How to reduce latency of accessing sp intranet hosting in London from Australia

    Hi,
    We have SP 2010 intranet hosting in London. When Australian users access the home page, it takes around 6-10s to load up. According to MS, we cannot have another WFE in APAC to reduce the latency. 
    What is the best way to reduce the latency?
    Regards,
    James

    I would suggest using a WAN accelerator. For example, a Riverbed appliance might help. Other companies make similar appliances and/or software solutions you can deploy to your networks.
    Alternatively, depending on usage, you can build another farm in APAC and use a product like Metalogix Replicator to have two-way content replication. Then users can interact with content in their local region.
    Trevor Seward
    Follow or contact me at...
    &nbsp&nbsp
    This post is my own opinion and does not necessarily reflect the opinion or view of Microsoft, its employees, or other MVPs.

Maybe you are looking for

  • Big FMB files

    We have a strange case with big FMB file (approximately 3 MB). When i open the file in Forms Builder and store it in other directory the file change it size approximately to 2.5 MB. After compilation and resaving the file it returns to original size

  • Change name of function..?

    I have 2 codes on 2 different keyframes i have just copy/pasted. I have changed all the name of functions and variables, I just need one function I don't know how to change name of. code on key frame 1: var timedelay2:Number = 10;  // seconds delay i

  • WD ABAP: Regarding the url

    Hi, I just installed the netwear2004s for ABAP. My intention is to learn webdynpro. I installed this on a different machine. When I tried to execute some demo web dynpro, I am facing an error regarding the url. The url its trying starts with localhos

  • WLS Servlet design question

    I have a WLS servlet that connects as a CORBA client to WLE. This servlet           receives XML requests and calls remote CORBA objects in the WLE system.           When WLS loads a servlet and invokes the servlet's init() method, does it           

  • Third party upgrade automation software

    Hi, Has anyone had experience of using any third party upgrade software to reduce down-time? If yes, how effective has this been? Secondly, has anyone used Panaya? They offer cloud based upgrade automation and maintenance solution. Regards, Shehryar