Office network design ideas..

Hey all, we are upgrading to a Cisco network and wanted some input on our possible network design...
Currently we have:
A Juniper SSG 140 and IDP for our firewall and IDS
3com (layer2/3) switches for our desktops
2 Dell PowerConnect 5424 switches for our servers and firewalls
2 Dell PowerConnect 5424 switches (separate network) for our SAN/VM hosts
This is what we are thinking of for our next solution
ASA 5512 for our firewall (I read we could possibly get a 25% performance speed improvement for user VPN connections?)
2 WS-C3750x-48t-e (I think this does Layer 2/3) for our desktops
2 WS-C3750x-48t-e for our firewalls/servers
2 WS-C3750x-24P-L for our SAN/VM hosts
The problem is different network services providers who are going to implement this for us are giving us different solutions
Some desktop 3560X for desktops and 4948 for servers and others are telling me 3750x for desktops and Nexus 3048 switches for SAN
Some are telling me we can keep SAN+VM+core traffic on the same switches and just separate them with VLANs while others are telling me we should get separate switches for them
Basically, we just want a improved improvement with better PERFORMANCE and REDUNDANCY (esp with our core + SAN/VM traffic) without going overboard and spending a ton of money
More thoughts:
We need Layer 2/3 switches for core + SAN
Do we need 10G ports?
Let me know your thoughts...

Hi There,
the hardware selection actually depends on the network/site topology, number of users, traffic load and more other factors
this is for IP network, for SAN do you mean iscsi, FCoE or pure FC SAN because these are different things and may change the HW selection,
in general 3560 are good fro access switches and 3750 provide same capabilities with improved performance and support for swtckwise ( 3750 is a good option especially if you planing to stack them )
for L3 it is supported on both but consider the license/image you buy with regard to the features you need
nexus for Data center switch are the best as they are design for data center switching however you need to know, port density, 1G or 10G, do you need any FC SAN, DC load/capacity, any L3 function is required and future growth then you can decide if Nexus 3K or 5K is good for you or not
N5K
http://www.cisco.com/en/US/prod/collateral/switches/ps9441/ps9670/data_sheet_c78-618603.html
N3K
http://www.cisco.com/en/US/prod/collateral/switches/ps9441/ps11541/at_a_glance_c45-648255.pdf
if yo have a network topology with more details of what you need, post it here for more discussions
hope this help
if helpful rate

Similar Messages

  • New office network setup idea, can anyone help!

    Hi all
    I wish to do the following and would help and advice from this group to guide our purchases and development of the following;
    I wish to set up a company dedicated LAN [with wifi access]. We also need to access the system via ftp and some way remotely connect from several laptops on the road to a main server securely. BUT we will also need to access a few PC programs either jointly on a Mac server AND a PC linked up or just with a Mac. We already have a real mix of systems needing to access the proposed setup. Mac Mini's. ibooks, Ti's Intel Apple's G5's and so on.
    Can you guys suggest a low learning curve, reliable setup?

    You'll probably want to take up this question in the Mac OS X Networking forum. This forum is for questions about Apple Remote Desktop, Apple's application for managing networked Macs and so probably not the forum where you'll be most likely to get help and advice for your situation.
    Regards.

  • Home Office Network Setup

    Sorry in advance. Just spent the better part of the weekend trying to find related post/replies...and just got woefully confused.
    I do architectural graphics and work primarily on a mac for PShop, Illustrator, InDesign, and Sketchup. I also use a PC to work in AutoCAD. Trying to update my OSes (major backup needed, hence the external drive)AND streamline my workflow.
    Currently, I use sneakernet/flashdrive to share graphics files between the two platforms. This is getting old. Was told I could share an external hard drive between the two. Bought one without researching HOW-TO first. My bad. Before integrating the hard drive, would like to create a home-office network. (hard drive not connected yet)
    Here's what I have:
    imac G4 17-inch, OS X 10.4.11, NO airport extreme card installed
    Dell Latitude D610 notebook, Windows XP, sp1 (I know, updating after success here)
    My Book External Hard Drive (non-portable, TO BE usb-connected to imac)
    ABS Snow
    A few pre-bluetooth printers
    *Current set up*, archaic, but works fine:
    Cable modem> ethernet> ABS (WAN port)
    ABS (LAN port)>ethernet> imac g4
    Windows wireless to ABS
    Printer > usb > imac
    What I want to do:
    1) Print wirelessly from pc.
    2) Access my mac-stored graphic files from pc.
    3) Share external drive with mac and pc without having to do the sneaker-flash drive dance. I intend on connecting directly from mac via usb.
    4) Read/write SHARED files to/from said external drive with either mac or pc.
    5) Use external drive for backups, mac and pc.
    6) Share iTunes library between pc and mac.
    Money's my biggest limitation, or I'd just go buy a newer extreme w/ usb ports, etc. After trying to piecemeal the 5000 related posts I've read, I officially have no idea where to start.
    I THINK I understand how to share files/folders between the two (http://www.ifelix.net/tech/3020.html) With my current setup, can I simply use file sharing in a similar way to connect PC to external hard drive? printer?
    I THINK I will be moving my mac documents/graphic files/music to the external hard drive. I THINK I will chose the moved folders on this _external hard drive_ that I want to pc-share. I THINK the mac-pc compatible external drive will allow equal read/write access. I THINK it's going to be THIS easy.
    BUT...does the Snow have the capacity to support my intended network (internet, external drive, printer)? Or will the mac need an airport extreme card to make this work?
    Also, any thoughts on partitioning the external drive? I've read some posts elsewhere with that recommendation. It seems like a potential headache since I'll be sharing things like music and graphic files.
    I have some serious backing up and general hd cleanup to do but am petrified to lose everything in my attempt to share this external disk. Help! Mega-many thank you's if you made it this far in the post!

    Does the mac need to be wireless in order to utilize file sharing or 'Connect to Server' commands?
    No. You can do both via an Ethernet connection. A matter of fact, file sharing will be demonstrably faster with Ethernet as compared to wireless.
    Do I need programs like DAVE and/or SAMBA to make all this wireless talk happen?
    Neither. These have nothing to do with wireless connectivity. When sharing files between Macs, you will utilize AFP which is built-in OS X. Sharing with Windows/Linux clients will require SMB. This too is available from OS X.
    It sounds like, by your post, that the pc will only network with peripherals directly connected to the router (snow) and NOT to peripherals connected to the mac, which is wired to the snow. Is that correct?
    Sorry, if I mislead you. That is not true. A PC can access either devices connected wired/wirelessly to the Snow or to devices connected to a Mac that is sharing them.
    Let me know if the AFP link I provided doesn't answer all your questions. You may also find the following iFelix link handy: Sharing files between a Windows XP PC and a Mac running OS 10.4.x

  • Help/Advice needed on setting up home office network please

    Hi
    I hope someone can help me with some technical difficulties i am having with a home / office network.
    Computer equipment i have is:
    2 desktop PCs on same floor  different rooms.
    2 laptop PCs to be used wired in office and/or Wifi if possible any room
    2 Apple mac Laptops to be used wired in office and/or Wifi in any room.
    1 HP Laser printer with network enabled
    1 TB HDD network enabled
    1 Linksys WiFi extender unit
    Connection equipment:
    I have an NTL Cable modem
    Linksys WR54G ver 2 router ( with the option of going to aLinksys WRT300N ver 2 router)
    A Netgear Dual speed hub DS116
    What i would like to do is have one office holding 1 desktop pc, 1 HP Printer and the other office holding the 2nd desktop PC with USB printer attached. I would like to be able to go Wifi around the house for all PC & Mac Laptops with the option of connecting them by wire in the office if required.
    Idealy i would like to be able to share files, folders and printers between all units as well as all having internet access through the router's firewall.
    I also use Zone Alarm Pro.
    At the moment i have in one office the WR54G attached to the cable modem with one Desktop PC wired in to one of the 4 ports. in a 2nd port i have a cable going to the 2nd office into the DS116.
    Connected to the DS116 is the 2nd Desktop PC, the HP Laser printer and the 1TB HDD.
    The Wifi extender is in another room.
    For some reason every now and then the whole system goes wobbly and seems to loose settings at which point internet access is denied and ihave to go back to 1 pc into the cable modem and starting rebuilding the network.
    Can anyone give me an idiots guide to settin this kind of system up with specificsettings on each item if possible.
    I would say i would also like to use 1 desktop PC for gaming now and then which at the moment sems very hit and miss with speed etc.
    Any help warmly welcomed
    Best Rgds
    Kev

    ryclark wrote:
    Following on from Steve's advice I would probably not bring the unwanted channels all the way down on the faders, either in a live mix or if mixing subsequently in Audition, as it may change the background acoustic too much. Leaving a bit of the background mics faded up a bit helps to pull the whole recording together and also means you have a better chance of getting all the faders back up in time for when they are needed without missing anything.
    I didn't actually touch on this at all - perhaps I should have. There's definitely more than one way to undertake this sort of operation, and it rather depends on exactly what equipment you have available. So far, we know you've got potentially 16 channels available, but have no idea how you were planning to cover the different aspects of it. For instance, I would always consider it worth it to have a pair of ambience mics up all the time - which would get around this particular problem anyway....
    The other thing you really have to pay quite a bit of attention to before you start is making damn sure (the previous day) that everything is in good order, and it all works when connected together. And if, for instance, you're going to rely on radio mic feeds from clergy,  that you can tap into these without difficulty, etc. Make sure your mic stands are not falling apart, and that you've got all the right mic stand adaptors - amazing how many times people have screwed that one up! 
    What this generally means is that even if you're familiar with the location, you still need to do a reccé just to make sure that everything in the venue is as you think. And if you can grab a dedicated assistant for the event, go for it. This can make carting stuff about a lot easier, and provide additional security for your equipment. And sometimes other benefits too, like tea...

  • Need help on network design

    Hi guys.
    Looking for some advice on a network design.
    Please tell me what you think may or may not be wrong or missing.
    Here are the details:
    The user count is approximately 600 (desktops, laptops and Cisco IP phones) with two locations (office and data center) connected via 100Mbps guaranteed MAN line with site-to-site VPN as backup.
    Servers will all be in the Data Center.
    Edge routers to be used as site-to-site VPN connection point between office and data center.
    Edge router at data center also to be used to connect to 4 other remote sites.
    Edge networks (router and ASA) will be used to provide internet access to equipment at their respective locations. (No routing across MAN for internet access)
    Cisco 4510 to be used as user switches.
    Supervisor engines will be connected via 10G fiber to core switches.
    There will be 2x 10G connection for each supervisor module.
    Core switches are 4500x to be stacked via VSS using 10G Twinax cables.
    Core switch will also have 1G copper sfp to connect to MAN line hand-off.
    There will also be a physically (for the most part) segregated network using 3750x 
    switches that connect back to the core. We will use 1G Fiber connections.
    Here is the current kit list:
    Office Network Edge
    1x Cisco 3925 Router to connect to internet and vpn tunnel endpoint (CISCO3925-HSEC+/K9)
    1x 2GB RAM upgrade for Cisco Router (MEM-3900-1GU2GB)
    1x 1GB Compact Flash for Cisco Router (MEM-CF-256U1GB)
    1x ASA Firewall w/ IPS  (ASA5525-IPS-K9)
    Office Network Core
    2x 4500X 32 Port Switches (WS-C4500X-32SFP+) w/ IP Enterprise License
    2x 1GB Fiber SFP module per 4500X switch to connect to 3750x  (GLC-SX-MMD)
    2x 10GB TwinAX cables to stack 4500x switches together (SFP-H10GB-CU1M)
    8x 10GB Fiber SFP+ module to connect to 4510 Sup Engines (SFP-10G-SR))
    1x 1GB Copper SFP to connect to MAN circuit hand-off (GLC-T)
    1x 1GB Copper SFP to connect to ASA firewal (GLC-T)
    Distribution
    4x Catalyst 4510R+E Switches (WS-C4510R+E) w/ IP Base License
    2x Supervisor 8-E per 4510 switch (WS-X45-SUP8-E)
    8x 48-port PoE module per 4510 switch (WS-X4748-UPOE+E)
    4x 10G Fiber SFP+ module per 4510 switch (SFP-10G-SR)
    1x 2GB SD Memory card per Supervisor Engine (SD-X45-2GB-E)
    Office Network Segregated
    4x 3750X 48-port PoE Switches (WS-C3750X-48P-L) LAN Base License
    1x 1G Fiber SFP module per 3750x switch (GLC-SX-MMD)
    1x Slot module per 3750x to connect 1GB SFP modules (C3KX-NM-1G)
    Data Center Edge
    1x Cisco 3925 Router to connect to internet and vpn tunnel endpoint (CISCO3925-HSEC+/K9)
    1x 2GB RAM upgrade for Cisco Router (MEM-3900-1GU2GB)
    1x 1GB Compact Flash for Cisco Router (MEM-CF-256U1GB)
    1x ASA Firewall w/ IPS  (ASA5525-IPS-K9)
    Data Center Core
    2x 4500X 32 Port Switches (WS-C4500X-32SFP+) w/ IP Enterprise License
    2x 10GB TwinAX cables to stack 4500x switches together (SFP-H10GB-CU1M)
    3x 10GB Fiber SFP+ modules per 4500X switch to connect to 3850 switches (SFP-10G-SR)
    1x 1GB Copper SFP to connect to MAN circuit hand-off (GLC-T)
    1x 1GB Copper SFP to connect to ASA firewall (GLC-T)
    1x 1GB Copper SFP to connect to segregated ASA (GLC-T)
    Data Center Distribution
    6x 3850 24-port PoE Switches (WS-C3850-24T-S) IP Base License
    1x Slot module per 3850 switch to connect 10GB SFP+ modules (C3850-NM-2-10G)
    1x 10G Fiber SFP+ module per 3850 switch (SFP-10G-SR)
    Data Center Segregated
    1x Cisco 2951 Router to connect to internet and vpn tunnel endpoint (CISCO2951/K9)
    1x ASA 5512-X (ASA5515-K9)
    Attached diagram is just a draft.

    Disclaimer
    The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
    Liability Disclaimer
    In no event shall Author be liable for any damages whatsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
    Posting
    A 39xx is underpowered if you want to support gig VPN tunnel.
    If your MAN is 100 Mbps (possibly "light" for 600 users), I would suggest running your port at 100 Mbps, not gig.  (This because LAN switches don't shape, and may not be able to "see" congestion or drops within the MAN.)
    You user edge (the 4500s) will be L2 or L3.  If the latter, I would recommend not using a VSS core.
    I would recommend not using the same Internet connection for both general Internet access and VPN.

  • In office network messaging app suggestion

    Situation: I would like to use my iPhone to send messages to other computers on my office network. It would be nice to be able to send docs as well. For example, I would like to have a template for an invoice that I could fill out on my iPhone and send to the cashier. Office computers are running Windows.
    Any suggestions as far as cross platform programs and/or apps that could do this? Does AOL/AIM do network messaging, ie without having to access the internet?
    Thanks for any ideas.
    Message was edited by: Robart Defuego

    In a networked world, why on earth would you want to use a "thick" app on the iPhone and another "thick" app on 1 (or more) Windows machine(s)?
    Surely a web app is the way to go here, with an iPhone-friendly version of the interface? It doesn't have to be an "internet" app - in fact, in a small office, you could just run a copy of Apache on a desktop Windows machine and have everyone access that over the internal office network.
    There are plenty of web-based IM-type products (open source or otherwise) that you could install to do what you want.

  • High Level Network Design

    Hi Guys
    I am posting this because I am starting my career into network design and want some help in it. I am at present in need of a high level design overview as I need to prepare some high level network design documents. Can anyone shower some thoughts in it as how about doing this and if any there is a template for HDD so that it maybe useful.
    Also I believe in keeping information as transparent as possible to the readers of the document and need someone to explain in very simple terms if at all it is possible.
    Thanks a lot
    Vin

    Hi Vin,
    I would check the Cisco SBA and Validated Design Zone as a first pass.
    Lots of great design documents there.
    As for how I would create a high level design - keep it simple.  You just want an overview of the connectivity - e.g. for a dual-site head office with 100+ branch wan, I would only show a single branch site as a template.
    Every network is different, but the more documentation you write and read the more you will define your own style.
    Apologies I can't give you any of my customer's documentation - NDA's and everything!
    Regards, Ash,

  • Wireless Network Design

    What are best practices in consideration to wireless network design? I have a WLC 4400 and 1200 AP's that I want to deploy to replace my existing wireless network. I am researching the best network design for implementing a secured wireless infrastructure and also having a quest account for non employee's to logon to and surf the Internet. We also have WAN sites that need to be included in this design.
    Any help would be appreciated.

    Hi Tim,
    I just wanted to add a bit to the excellent info you have already received from Alejandro (nice work A!);
    Here some good "getting started" Cisco docs (and link to a video) which might help. This is a fair bit of reading :)
    Wireless LAN Design Guide
    http://www.cisco.com/web/about/ciscoitatwork/design_guides/dg-wlan.html
    Wireless Site Survey FAQ
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_q_and_a_item09186a00805e9a96.shtml
    Understanding the Lightweight Access Point Protocol (LWAPP)
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/ns337/networking_solutions_white_paper0900aecd802c18ee.shtml
    Deploying Cisco 440X Series Wireless LAN Controllers
    http://www.cisco.com/en/US/products/ps6366/prod_technical_reference09186a00806cfa96.html
    Cisco Wireless LAN Controller Configuration Guide, Release 4.0
    http://www.cisco.com/en/US/products/ps6366/products_configuration_guide_book09186a00806b0077.html
    WLC Video
    http://www.cisco.com/en/US/products/ps6366/index.html
    Lightweight Access Point FAQ
    http://www.cisco.com/en/US/products/ps6306/products_qanda_item09186a00806a4da3.shtml
    Lightweight AP (LAP) Registration to a Wireless LAN Controller (WLC)
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_tech_note09186a00806c9e51.shtml
    Here are some excellent overall scope ideas;
    Deploying High Capacity Wireless LANs
    http://www.cisco.com/en/US/products/ps6108/products_white_paper0900aecd8027a5f7.shtml
    Cisco Deploys Wireless LAN Technology to Increase Productivity
    http://www.cisco.com/web/about/ciscoitatwork/downloads/ciscoitatwork/pdf/Cisco_IT_Case_Study_WLAN_2004_print.pdf
    Design Principles for Voice Over WLAN
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/networking_solutions_white_paper0900aecd804f1a46.shtml
    Evaluating Interference in Wireless LANs: Recommended Practice
    http://www.cisco.com/application/pdf/en/us/guest/products/wireless/c2072/cdccont_0900aecd80554f8b.pdf
    I have attached some good "getting started" type Security docs). You may also want to engage your Cisco partner and Cisco SE to help you plan and implement this most important function of Wireless.
    Wireless LAN Security White Paper
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/ns386/networking_solutions_white_paper09186a00800b469f.shtml
    Five Steps to Securing Your Wireless LAN and Preventing Wireless Threats
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/ns386/networking_solutions_white_paper0900aecd8042e23b.shtml
    WLAN Security considerations (Part of WLAN SRND Guide)
    http://www.cisco.com/application/pdf/en/us/guest/netsol/ns178/c649/ccmigration_09186a00800d67eb.pdf
    Wireless LAN Security Solution
    http://www.cisco.com/en/US/netsol/ns339/ns395/ns176/ns178/netqa0900aecd801e3e59.html
    Wireless - Compare Products and Solutions
    http://www.cisco.com/en/US/products/hw/wireless/products_category_buyers_guide.html
    **Don't forget to check out the good books available from Cisco Press (link on this site)
    Hope this helps! And best of luck.
    Rob

  • Network Designs

    Hi all
    I wanted to know if someone can give me some adivce,I've started my own consulting company and I have a client who wants a network redesign and a
    Core network design.Both of these are for different sites and I wanted to know what questions should I ask the client and is there some books that I can
    read upon about network design that will give me a good feel on how to proceed. I have a good ideal already about the hardware that is needed at each layer, but the network I learned on was a large enterprise network and these are smaller networks and I really want to do a good job for this user so that
    I can get repeat business.Thanks in advance and have a great day and I look forward to your replies.

    1) you should ask is why does the client want a network redesign and what are they looking to achieve by doing this ie. no one does a network redesign just for the fun of it
    2)  based on the answers to the first question you need to see the existing network design and then work out why it does not meet the clients needs.
    3) probably as important as anything else is what budget is available for the redesign ie. consultancy for you and hardware budget.
    4)  what inhouse experience the client has. You can setup the loveliest shiny network but if the customer cannot then support it it is not particularly useful to them.
    5) future plans for expansion for the client
    6) the hardest part - application, traffic patterns, bandwidth requirements of the network. Make sure you at least identify the apps that the client makes their money from and design accordingly.
    Don't decide on hardware before the design. The design dictates the hardware design and not the other way around. If you already have an idea of the hardware you are going to use you either have answers to all the above or you are getting ahead of yourself
    A good place for design info are Cisco's design papers -
    www.cisco.com/go/srnd
    Jon

  • B2B network design example

    Hi Guys,
    can anyone give me an idea of how a B2B network design should look like? a url link to a desing example or a network diagram example will be appriciated.
    cheers

    This url might help....
    http://www.cisco.com/en/US/netsol/ns656/networking_solutions_design_guidances_list.html

  • How to setup a small office network

    Hello,
    I am looking to setup a small office network comprising 6 G4 macs (existing computers) that have been upgraded to the newest OS version. What is the best way to go about networking these computers together in terms of being able to share files, internet connection, access to peripherals and also implementing a firewall.
    Any suggestions or help would be greatly appreciated.
    Thank you

    1, Get a cable internet ISP account; depending on your service you should be able to secure a 5Mbps down and 2Mbps up on the cable e.g. Cox or Comcast.
    2. Get a good router. The mass market Linksys and Netgear routers aren't very good in terms of reliability. I use a ZyXEL P-330W router is the best I've ever seen. Its reliable and very efficient in terms of throughout. The Apple Airport Extreme is good.
    3. Set up the router to support UPnP. This way all computers will be able to share iChatAV video conferencing. If you enabled "port forwarding" only one Mac would be able to use iChatAV video conferencing.
    4. Set up your router for DHCP to dynamically issue Internet address to all your computers.
    5. Setup the wireless router for encryption such as WPA. This will encrypt wireless communication.
    6. Setup the wireless router for only your computers. You'll have to get the MAC/AirPort ID network addresses as expressed in terms of an xx:xx:xx:xx address. You can get this thru your Systems Preferences -> Network window -> AirPort (in the sidebar) -> Advanced button.
    7. If you have Ethernet in your office then skip steps 5 and 6 above.
    8. On each computer open up the System Preferences -> Sharing and check-off the File Sharing. Set your user access preferences appropriately.
    9. Get a Network enabled All-in-one printer and setup Printer Sharing options. Hook-it up to your network and add your printer by clicking on the "+" sign in your "Print and Fax" Preferences.
    10. Don't enable Apple Firewall on each Mac. The router will be the Firewall.
    Ok. That's the short-hand.. plug it all in and go!

  • Randomly monitor small office network

    Looking for a user-friendly, dummy-proof article on creating a small office network from a total of four Mac's (3 iMacs, one Air), allowing the administrator to randomly monitor without detection the real-time activities taking place on the other two machines. Triple points for iOS monitoring capabilities, as well

    Hello, rjbm_exact. 
    You definitely need a managed switch and a Cisco Small Business (200 or 300 series) can meet your requirements. You can setup separate VLAN to segregate user access level. Are you also looking at expanding your wireless (guest access)?
    Let me know if you need more assistance or e-mail ([email protected]) me directly. Kind regards. 

  • Small Office Network Setup Help

    Hi folks,
    We are renting a small office in a floor which consists of many offices. The way internet is distributed here is, they have a verizon fios router and a couple of unmanaged switch, from which cables are run to offices for internet. One of the port on a switch is dedicated to our office.
    In our office we have 6 computers and a network printer. The computers need to share files with each other and be able to print.
    We want to isolate our office network from others. When we use an unmanaged switch, the version router dhcp assigns ip addresses to computers and we are able to access the internet. The verizon local ip is: 192.168.1.xxx. But we can also see computers that are of other offices, which means they can see us.
    How do we create a separate network? Say we want to use  IP 192.168.10.XXX or 10.0.0.xxx. We just bought a 24 port managed (L2) switch.
    Thanks

    Hello, rjbm_exact. 
    You definitely need a managed switch and a Cisco Small Business (200 or 300 series) can meet your requirements. You can setup separate VLAN to segregate user access level. Are you also looking at expanding your wireless (guest access)?
    Let me know if you need more assistance or e-mail ([email protected]) me directly. Kind regards. 

  • Can not access CRM from outside the office network - Access denied You do not have sufficient access rights or privileges to perform this action.

    Hi,
    I can not access CRM from outside the office network - Access denied You do not have sufficient access rights or privileges to perform this action.  I can access CRM with same user id and password from our office inside the network.  I can get
    the page to give login details once I have login details I got below error. Please help me to solve this issue.  It was working before.
    Access denied You do not have sufficient access rights or privileges to perform this action. 
    Regards,
    Noushad
    [email protected]

    On Premise system Configured with AD FS server for claims-based authentication you need to update your host file with server url to access it from outside office network.
    Refer
    this on how to update host file.
    Regards, Saad

  • Ask the Expert: Hierarchical Network Design, Includes Core, Distribution, and Access

    Welcome to the Cisco® Support Community Ask the Expert conversation.  This is an opportunity to learn and ask questions about hierarchical network design. 
    Recommending a network topology is required for meeting a customer's corporate network design  needs in their business and technical goals and often consists of many interrelated components. The hierarchical design made this easier like "divide and conquer" the job and develop the design in layers.
    Network design experts have developed the hierarchical network design model to help to develop a topology in discrete layers. Each layer can be focused on specific functions, to select the right systems and features for the layer.
    A typical hierarchical topology is
    A core layer of high-end routers and switches that are optimized for availability and performance.
    A distribution layer of routers and switches that implement policies.
    An access layer that connects users via lower-end switches and wireless access points.
    Ahmad Manzoor is a Senior Pre-Sales Engineer at AGCN, Pakistan. He has more than 10 years of experience in first-rate management, commercial and technical skills in the field of data communication and services lifecycle—from solution design through sales pitch, designing RFPs, architecture, and solution—all with the goal toward winning projects (creating win/win situations) of obsolete solutions.  Ahmad also has vast experience in designing end-to-end data centers, from building infrastructure design to data communication and network Infrastructure design. He has worked for several large companies in Pakistan and United Arab Emirates markets; for example, National Engineer, WATEEN Telecom, Emircom, Infotech, Global Solutions, NETS International, Al-Aberah, and AGCN, also known as Getronics, Pakistan.
    Remember to use the rating system to let Ahmad know if he has given you an adequate response. 
    Because of the volume expected during this event, Ahmad might not be able to answer every question. Remember that you can continue the conversation in the  Solutions and Architectures under the sub-community Data Center & Virtualization, shortly after the event. This event lasts through August 15, 2014. Visit this forum often to view responses to your questions and the questions of other Cisco Support Community members.

    Dear Leo,
    We are discussing the following without any product line, discussing the concept of hierarchical design, which will help you to take decision which model is better for you Two Layer or Three Layer hierarchical model.  
    Two-Layer Hierarchy
    In many networks, you need only two layers to fulfill all of the layer functions—core and aggregation
    Only one zone exists within the core, and many zones are in the aggregation layer. Examine each of the layer functions to see where it occurs in a two-layer design:
    Traffic forwarding—Ideally, all interzone traffic forwarding occurs in the core. Traffic flows from each zone within the aggregation layer up the hierarchy into the network core and then back down the hierarchy into other aggregation zones.
    Aggregation—Aggregation occurs along the core/aggregation layer border, allowing only interzone traffic to pass between the aggregation and core layers. This also provides an edge for traffic engineering services to be deployed along.
    Routing policy—Routing policy is deployed along the edge of the core and the aggregation layers, generally as routes are advertised from the aggregation layer into the core.
    User attachment—User devices and servers are attached to zones within the aggregation layer. This separation of end devices into the aggregation permits the separation of traffic between traffic through a link and traffic to a link, or device. Typically, it is best not to mix transit and destination traffic in the same area of the network.
    Controlling traffic admittance—Traffic admittance control always occurs where user and server devices are attached to the network, which is in the aggregation layer. You can also place traffic admittance controls at the aggregation points exiting from the aggregation layer into the core of the network, but this is not common.
    You can see, then, how dividing the network into layers enables you to make each layer specialized and to hide information between the layers. For instance, the traffic admittance policy implemented along the edge of the aggregation layer is entirely hidden from the network core.
    You also use the core/aggregation layer edge to hide information about the topology of routing zones from each other, through summarization. Each zone within the aggregation layer should have minimal routing information, possibly just how to make it to the network core through a default route, and no information about the topology of the network core. At the same time, the zones within the aggregation layer should summarize their reachability information into as few routing advertisements as possible at their edge with the core and hide their topology information from the network core.
    Three-Layer Hierarchy
    A three-layer hierarchy divides these same responsibilities through zones in three vertical network layers,
    Traffic Forwarding—As with a two-layer hierarchy, all interzone traffic within a three- layer hierarchy should flow up the hierarchy, through the layers, and back down the hierarchy.
    Aggregation—A three-layer hierarchy has two aggregation points:
    At the edge of the access layer going into the distribution layer
    At the edge of the distribution layer going into the core
    At the edge of the access layer, you aggregate traffic in two places: within each access zone and flowing into the distribution layer. In the same way, you aggregate interzone traffic at the distribution layer and traffic leaving the distribution layer toward the network core. The distribution layer and core are ideal places to deploy traffic engineering within a network.
    Routing policy—The routing policy is deployed within the distribution layer in a three- layer design and along the distribution/core edge. You can also deploy routing policies along the access/distribution edge, particularly route and topology summarization, to hide information from other zones that are attached to the same distribution layer zone.
    User attachment—User devices and servers are attached to zones within the access layer. This separation of end devices into the access layer permits the separation of traffic between traffic through a link and traffic to a link, or device. Typically, you do not want to mix transit and destination traffic in the same area of the network.
    Controlling traffic admittance—Traffic admittance control always occurs where user and server devices are attached to the network, which is in the access layer. You can also place traffic admittance controls at the aggregation points along the aggregation/core edge.
    As you can see, the concepts that are applied to two- and three-layer designs are similar, but you have more application points in a three-layer design.
    Now the confusion takes place in our minds where do we use Two Layer and where the Three layer hierarchical model.
    Now we are discussing that How Many Layers to Use in Network Design?
    Which network design is better: two layers or three layers? As with almost all things in network design, it all depends. Examine some of the following factors involved in deciding whether to build a two- or three-layer network:
    Network geography—Networks that cover a smaller geographic space, such as a single campus or a small number of interconnected campuses, tend to work well as two-layer designs. Networks spanning large geographic areas, such as a country, continent, or even the entire globe, often work better as three layer designs.
    Network topology depth—Networks with a compressed, or flattened, topology tend to work better as two-layer hierarchies. For instance, service provider networks cover large geographic areas, but reducing number of hops through the network is critical in providing the services they sell; therefore, they are often built on a two-layer design. Networks with substantial depth in their topologies, however, tend to work better as three-layer designs.
    Network topology design—Highly meshed networks, with many requirements for interzone traffic flows, tend to work better as two-layer designs. Simplifying the hierarchy to two levels tends to focus the design elements into meshier zones. Networks that focus traffic flows on well-placed distributed resources, or centralized resources, such as a network with a large number of remote sites connecting to a number of centralized Data Centers, tend to work better as three-layer designs.
    Policy implementation—If policies of a network tend to focus on traffic engineering, two-layer designs tend to work better. Networks that attempt to limit access to resources attached to the network and other types of policies tend to work better as three-layer designs.
    Again, however, these are simple rules of thumb. No definitive way exists to decide whether a network should have two or three layers. Likewise, you cannot point to a single factor and say, “Because of this, the network we are working on should have three layers instead of two.”
    I hope that this helps you to understand the purposes of Two Layer & Three layer Hierarchical Model.
    Best regards,
    Ahmad Manzoor

Maybe you are looking for

  • Before a trip, my Mac Book Pro didn't shut down completely.

    When I arrived and opened the Mac, the clock was wiped out and showed 1, 1, 2000. Now my email has incoming dated March 25, 2014. Yes, Mac Mail. What can I do? I did my disk utility 3 times. Got some of the other functions corrected. The MacMail is s

  • WRV200 Web UI Inaccessible

    Is the web UI crash still a known issue in Firmware version 1.0.32.2? The web ui on my WRV200 intermittently becomes inaccessible.  It usually dies within a day or two, but sometimes it will stay up for a couple weeks. The router still responds to pi

  • Centering different size images in movieclip

    Hi, I'm trying to center different size images in a movieclip named "picture". The images load fine but they are not centered. Flash's registration is very limited when it comes to setting this. All the images are different sizes. I may get one to lo

  • After install of Acrobat 9.0 - Where do I find the serial number?

    When I installed my Acrobat 9.0 - it appeared to install correctly and I registered it.  However, I wanted to find my serial number from the software itself...just to see if I was running the correct version.  I can find the version, but I do not see

  • Installing OS X 10.5.6

    Hi I am trying to install OS X 10.5.6 onto my (older) computer with Powerpc G5 currently running 10.4.11 with 1.5GB SDRAM i am getting the report this cannot be installed on this computer but have been told it should can any one help with this