Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Upgrading?? Optimal switch configuration.

Status
Not open for further replies.

bigdog175

IS-IT--Management
Nov 7, 2000
41
US
I have a 62 seat operation that is being upgrading from a mess of dasiy chained hubs and switches. Everything is being cabled to a central location. I'm now trying to decide on how to best configure switches for optimal through put, expandabilty. 2 servers and highbandwidth dedicated internet access. All users have high bandwith needs, either to the servers or inet. I'm thinking of using 4 x 2950T switches stacking the 1000baset-t ports and connecting servers to 1000base-T. I also have a DMZ with 5 servers, thinking of putting them on a VLAN off 1 of the switches or should I dedicate a seperate switch for the DMZ? Any suggestions, tips, all input is welcome. Thanks
 
With spanning tree on, I would do this with 1000Base SX Fiber GBICs

Switch 1 is plugged into Switch 2 & 4
Switch 2 is plugged into Switch 1 & 3
Switch 3 is plugged into Switch 2 & 4
Switch 4 is plugged into Switch 3 & 1

This will give you the redundancy and 1000 full duplex.

If you want a different VLAN, you will have to have the switch they are on have a router attached or the switch be a layer3 switch. I would recommend the (1) 3550 and (3) 2950 switches in this case. Then just through the servers off a vlan and the workstations off another vlan.
 
Thanks for the input, but I have another thought. There will be a PIX 515 UR in place wouldn't I be able to access the DMZ on the other VLAN via the firewall? eg internal network on VLAN1 172.16.x.x and DMZ on VLAN2 192.168.1.x both connected to switch 1: Internal PC -> switch -> firewall -> DMZ -> switch -> mail server and vice versa?? Then increase priority on the ports connected to the firewall to high.
 
Just plug the DMZ port of the firewall onto the DMZ vlan. If those are the only two VLAN's than don't get the 3550.

-Bad Dos
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top