Monday, July 16, 2018

Branch Switching and VLAN Termination

We are opening a new retail outlet (our first in a long time), we have a couple of HP 2620 switches pilfered from the stores of our parent company (so i have no say in the choice of device and not much experience with HP). The network infrastructure I inherited is hodge-podge at best (unmanaged switches across all sites, not a VLAN in sight, HO existing on a single flat /16 for everything) and i would like to use this new site as a bit of a proof-of-concept for a model that can be rolled out to our other stores. I have a requirement from our parent company that sites are split into multiple VLANs (PCs/Printers, EPOS, VOIP, CCTV and WIFI), and am fairly confident in my ability to achieve this, but the meat of my question is as follows:

Terminate the VLAN's on the switches or on the WAN routers?

WAN router is provided as part of a managed MPLS service from our ISP, so I will not have write access to it. Slightly complicating things is that there will be 2 routers in a VRRP setupto provide failover. So my choices are either to trunk the VLANs back to each router and lose 3 addresses in each VLAN to VRRP, or to terminate the VLANs on the switch and have a 'gateway?' VLAN between the switches and the routers, with a default route on the switch pointing to the VRRP virtual IP.

Parent company terminates theirs on the router, but they manage their own routers. I believe either configuration will work, and i like the idea of termination on the switches to keep more control on our side, but where i get a bit fuzzy is failover behaviour.

I think in either configuration i would be OK if i lost a router. However, while the HP 2620 offers 'IP stacking' i don't believe this is proper stacking as i still have to configure each switch independently, so if i configure an SVI and terminate the VLANs on one of the switches and that switch fails, the other switch will not pick up this SVI. Please someone correct me if i am wrong.

This is leading me towards terminating on the router, but i would love to hear from someone with more experience, maybe even someone who deploys 2620's in a similar manner. We have a consultant who is going to sign off on the design before deployment, but i like to go into discussions with him as well prepared as possible, so thought i would ask the question here and see if anyone had any advice.

Thanks!



No comments:

Post a Comment