We initially tested some basic failover functionality (web bookmarks) and IIRC it worked just fine. For the first couple years we ran in a Failover mode and the seconday box never got used. As the user count got higher, we went to a Round Robin mode so both boxes share the load. If you are doing NetConnect, it will not failover properly since you will need to define two differnt DHCP ranges, one for each server. I would assume anything else that is a constant connection (RDP/CItrix/ probalby anything SAM based) would probably drop and require the end user to recconnect. Shouldn't log them out of the SSL-VPN, just potentially the application. We do have the servers on different LAN segments, so they have no direct connection between them. They have 500miles, an OC3 and 4 routers between them on the LAN side. Different ISPs on the WAN side. -Stephen
... View more