infra:services:network:2025-rewamp
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| infra:services:network:2025-rewamp [2025/01/19 18:20] – [The plan] kfh | infra:services:network:2025-rewamp [2025/04/08 18:11] (current) – marcusramberg | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| - | # 2025 network rewamp | + | ====== |
| - | ## The plan | + | |
| + | |||
| + | ===== The plan ===== | ||
| + | |||
| < | < | ||
| raw | raw | ||
| Line 39: | Line 43: | ||
| </ | </ | ||
| - | ## Projects | + | ===== Projects |
| - | ### Edgerouter for DMZ routing | + | |
| + | ==== Edgerouter for DMZ routing | ||
| Pad: https:// | Pad: https:// | ||
| - | **Main points** | + | //Main points// |
| + | |||
| + | |||
| + | - Set up 2x Edgerouters behind Blix gw | ||
| + | - Bind Hackeriet' | ||
| + | - Use VRRP with dedicated internal keepalive network to move VIP | ||
| + | - Connect downstream core (pit-sw or UDM+sw-core, | ||
| + | - Use (R)STP to only keep one downstream link active | ||
| + | - Only route DMZ network | ||
| + | - Will not touch internal networks | ||
| + | - Separate link to each ER for sw management network | ||
| + | |||
| + | |||
| + | ==== Unifi Dream Machine for NAT and internal routing ==== | ||
| - | - Set up 2x Edgerouters behind Blix gw | ||
| - | - Bind Hackeriet' | ||
| - | - Use VRRP with dedicated internal keepalive network to move VIP | ||
| - | - Connect downstream core (pit-sw or UDM+sw-core, | ||
| - | - Use (R)STP to only keep one downstream link active | ||
| - | - Only route DMZ network | ||
| - | - Will not touch internal networks | ||
| - | - Separate link to each ER for sw management network | ||
| - | ### Unifi Dream Machine for NAT and internal routing | ||
| Pad: https:// | Pad: https:// | ||
| - | **Main points** | + | //Main points// |
| - Put up Unifi Dream Machine and dedicated L2 core switch | - Put up Unifi Dream Machine and dedicated L2 core switch | ||
/srv/hackeriet-wiki/dokuwiki/data/attic/infra/services/network/2025-rewamp.1737310813.txt.gz · Last modified: by kfh