240 likes | 346 Views
SECCNET Upgrade. A new way of doing business. 10Mbps. 1Gbps. SECCNET Backbone Capacity/. Speed Between Buildings. The Heart and Sole of the Upgrade. Cisco 6509 Layer 3 Core Switch. A. B. Layer 1 – Physical (Wire Only). Layer 2 – Data (Network Card Address). A. B.
E N D
SECCNET Upgrade A new way of doing business
10Mbps 1Gbps SECCNET Backbone Capacity/ Speed Between Buildings
The Heart and Sole of the Upgrade
A B Layer 1 – Physical (Wire Only) Layer 2 – Data (Network Card Address) A B Layer 3 – Network (Network Card Address + Route) A B Layer 3 Switching: Why that is important!
What Makes-Up the SECCNET
9 Servers 12 Buildings 662 Workstations 10 Connected Labs 2 Stand Alone Labs 2 Separate Labs 39 Network Printers 66 Laptops SECCNET
How We Hook It All Together
Cisco 3524 Buildings to Demarcation Connection
Internal Building and Lab Connections
Internal Building and Lab Connections
Perimeter Protection Why, What, & How
SECCNET Firewall ITS T-1 NCIH ISP BorderWare Provides: * TCP/IP Port Control * Secure Layer Mgt. with Crypto Access SECCNET Internal Network Built-In: * External Secure E-Mail Server * DNS (Domain Name Server) * Caching Proxy
172.xxx.xxx.xxx “Us” Internal Network “Boogies” The Internet 204.xxx.xxx.1 The Firewall & IP Addresses
Novell DHCP Server software on a Compaq ML 530 DHCP Service (Dynamic Host Configuration Protocol) * Because of the Firewall, all Internet traffic from SECCNET will have the same IP address (204.xxx.xxx.1). * It is the Firewall’s job to track internal addresses associated with outside traffic. * It is the DHCP Server’s job is to dispense “bogus” IP addresses to the internal nodes on the network.
Internal Protection Why, What, & How
Why do we need Internal Security? SECCNET Currently has: • 9 servers • 650 + Workstations • Administrative software • Financial data • Personnel Information • Etc. • Student records • GroupWise • Full Internet access
SECCNET VLAN’s (Virtual Local Area Networks) SECCNET Internal Network
SECCNET VLAN’s (Virtual Local Area Networks) SECCNET Administrative Network SECCNET Instructional Network Cisco 6509 Switch will allow us to configure these 2 VLAN’s through its Layer 3 switching capabilities.
SECCNET Upgrade: We've Come Full Circle from Where We Started
Last Thoughts • Do the “PR” thing with administration, employees, and students • Provide the technicians with upgrade information • Keep the security parameters loose initially • Once the upgrade is in place, concentrate on understanding your new network • Purchase some kind of network monitoring software