Thursday, February 21, 2019

Opinions on connecting labs (GNS3 etc) to a wider campus network

Hi guys,

Long time reader first time post.

We have had a request to setup a network simulator that will run in virtual machines in a classroom of approx 30 physical PCs that are currently connected to our LAN covering the rest of our campus (HE environment). Not sure yet if the labs will involve bridging the virtual network to our LAN to reach the internet or other things but I suspect it will and regardless there is nothing to stop a student setting this up this anyway.

What are peoples opinions when connecting a lab with these sort of tools/software to a wider network? Should I be worried about any potential impact to the wider network? Am I being overly cautious? There is nothing stopping people using this sort of thing already on our network but I am just wondering what needs to be considered before we decide to ok this as students always seem to find ways of breaking things even if they aren't trying to be malicious.

We have layer 3 at the edge of our network and these machines are currently on their own VLAN but this is shared by machines that would be in other classrooms. Can put them onto their own VLAN. Anything else to consider besides DHCP snooping etc? Or would you just say no and tell them keep these lab machines off the main network to avoid any hassle?

Thanks



No comments:

Post a Comment