I’d be really interested to know more about the standby systems and the impact of failing over/back. The feeling from the outside is that Salesforce favour lengthy outages over switching to standby instances (10 hour outage on EU2 at the beginning of March is a good example), so I’m guessing there’s some real complexity in there.

CTO at BrightGen, author Visualforce Development Cookbook, multi Salesforce Developer MVP. Salesforce Certified Technical Architect. I am the one who codes.

