Ensp typical small and medium enterprise network construction (with wireless)

Summary

The design plan is for a company's network construction, using a three-layer network of access layer, core layer, and aggregation layer. All switches at the access layer and aggregation layer run MSTP and VRRP protocols for redundant backup to protect equipment and link stability. Run ospf dynamic routing protocol to facilitate routing maintenance. Use dhcp to dynamically assign addresses, which is convenient for ip address management. The exit adopts firewall equipment to protect network security. At the same time, SNAT is done on the firewall to allow the company's internal network to access the external network. Doing DNAT on the firewall allows the external network to access the company server.

  • 1. Design ideas

  1. Each department is divided into a VLAN, and the departments can communicate with each other, and the departments can communicate with each other according to the ACL rules.

  1. The intranet uses a private network IP, and assigns a private network segment with a 24-bit mask length to each department to achieve Internet access.

    Guess you like

    Origin blog.csdn.net/w2685797168/article/details/129451716