Thursday, March 7, 2019

Help with designing a network please!

So, I've been tasked with expanding from our flat network at work to one that is segmented. Right now we have right around 150 hosts in a single /24 with a single vlan at our datacenter which encompasses literally every device and VM. Then at the office everything is on a second /24 and vlan and connected to the datacenter via s2s vpn. We are looking into standing up a Colo2 on the opposite coast and I'm trying to get our network in order before doing that. Here is my plan:

Supernet 10.<Site ID>.<VLAN##>.X /8

Datacenter 1 - 10.10.0.0/16

Production Servers - 10.10.10.0/24 VLAN 110

Test Servers - 10.10.20.0/24 VLAN 120

Network Devices - 10.10.30.0/24 VLAN 130

DMZ - 10.10.40.0/24 VLAN 140

Datacenter 2 - 10.20.0.0/16

Production Servers - 10.20.10.0/24 VLAN 210

Test Servers - 10.20.20.0/24 VLAN 220

Network devices - 10.20.30.0/24 VLAN 230

DMZ - 10.20.40.0/24 VLAN 240

Office - 10.30.0.0/16

LAN -10.30.10.0/24 VLAN 10

WiFi -10.30.20.0/24 VLAN 20

Does this look right? I cant imagine I'll ever need more then 250 IPs for each VLAN. Also each site will have two stacked 5515-x Cisco ASA's to do all the routing.



No comments:

Post a Comment