Advantage of (2) routers

Discussion in 'Cisco Small Business Routers and VPN Solutions' started by soslink, Feb 2, 2007.

  1. soslink

    soslink LI Guru Member

    We are setting up a Site-to-Site VPN between our Main Office and Branch office and plan to use (2) RV042 routers. Since we also want to access the main office from locations besides the branch office, such as traveling, home users, etc., what is the advantage of having a router at both the main office and one at the branch office when we are not going to have the second router at the other locations? The Branch office & Main office will have their own Static IPs. Also, at the main office we have a range of static IPs from the ISP if we can/should use them??
  2. pablito

    pablito Network Guru Member

    I'm not sure what the question is, for two office locations it certainly makes sense to have a router at each site. A net-net VPN makes life easier for you and the users.

    Remote users can use a variety of apps to VPN into the office. QuickVPN, PPTP, IPSEC. I would suggest using an RV082 at the main office because of better processing power and better VPN options. But a 042 will also work.

    The extra IPs at HO are handy if you want to run internal servers that are accessible from the outside.
  3. YeOldeStonecat

    YeOldeStonecat Network Guru Member

    Keeping your PC(s) behind NAT is a primary reason. I'll users PCs sitting on a public IP address. I always insist on any/all PCs being behind NAT.
  4. soslink

    soslink LI Guru Member

    Thanks for replying. I guess a better way to ask the question is: We are spending money on 2 routers for Site-to-site, but why??? when it is not necessary (or possible) for every home user or traveling user that will connect to the home office.... We certainly want the most secure setup when it's possible,but not sure where the "extra" security is when using 2 routers. Now that you point out the NAT, that makes sense.
  5. ifican

    ifican Network Guru Member

    For the best possible answer we need to know just one question are the HO and BO both on your network (ip address is relatively the same) or are they on two different networks? The answers you have been given are thinking about this from a 2 network perspective. But having read this a few times it almost sounds like you are on just one network and your BO is behind your network? Can you clarify that and then we can give you the best possible answer.
  6. DocLarge

    DocLarge Super Moderator Staff Member Member

    That was my initial impression when I read this late last night. The post almost hints as the Main office will be the "edge" router and the branch office will be an internal LAN behind the main office.

    Is this the configuration you have in mind, soslink, or are we still pulling at straws?

  7. soslink

    soslink LI Guru Member

    Thanks for replying..the BO is on a separate network from the MO. The BO is just a peer-to-peer, located in another town. The MO is has a Windows 2000 Server as DC, a Windows 2003 Server running Termianl Services. It is the Windows 2003 server we want to access to run application from the BO. I am not sure what the MO has for a router now, but is only protected by software firewall - I think. Does this clarify? Thanks
