100% found this document useful (3 votes)
963 views30 pages

Enterprise Network Design Overview

We use latest encryption technique to encrypt the data in Image, Audio and Video .Now,we can transfer the data more securely.

Uploaded by

Deepak Kumar
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
100% found this document useful (3 votes)
963 views30 pages

Enterprise Network Design Overview

We use latest encryption technique to encrypt the data in Image, Audio and Video .Now,we can transfer the data more securely.

Uploaded by

Deepak Kumar
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.

ENTERPRISE NETWORK DESIGN

Submitted in partial fulfillment of the requirements for the award of degree of

BACHELOR OF ENGINEERING

IN

COMPUTER SCIENCE &ENGINEERING

Submitted to:

[Link] Bansal

Submitted by:
Deepak Kumar
16BCS2367

DEPARTMENT OF COMPUTER SCIENCE & ENGINEERING

Chandigarh University, Gharuan


Dec 2018
Acknowledgement

I want to thank my project mentor Er. Vasudha Bansal for the trust, the insightful discussion,
offering valuable advice, for your support during the period of the project, and especially for
your patience and guidance during the writing process. My sincere thanks and appreciation to
the Chandigarh University,Gharuan for granting me opportunity to study for a Bachelor’s
degree.

DEEPAK KUMAR

I
Abstract

The aim of this project was enterprise network design and implementation and the
introduction of a suitable network for most enterprise around the world. The following
project focused on three main parts: security, quality, and safety. The project has been
provided with different utilities to introduce a network with a high security level for the
enterprise. All of these utilities have been configured to provide a secure environment for the
entire network and to prevent hackers from entering sensitive departments like the flight
management and service providers departments. Improving the performance of any network
requires a high quality of techniques and services which help to improve the general task of
the network. The technical services that have been placed in the enterprise’s network are a
Dynamic Host Configuration Protocol (DHCP) server, a Domain Name System (DNS) server
,a Web Server and a cabling system. These tools can increase the performance of the network
in general and provide a stable internet service for the Enterprise Traffic Control System by
using internet service providers The internet service providers’ role was to provide the
enterprise management department, which helps to provide communication with different
department of another enterprise network system to outside the local [Link] the internet
connectivity wi-fi access system has been established in network design and setup password
to enhance security in network [Link], for employees’ personal information safety, the
web server has been placed in the local network, which provides a secure environment for
any network’s element.

II
List of Figures

Figure No. Title Page No.

1. Three-tier Network Design Model 7

2. Two-tier Network Design Model 8


3. Typical Modular Enterprise Campus Architecture 9
4. Network Connectivity without core vs with core 10
5. UML Diagram 12
6. UML Diagram 13

7. Picture of Cisco Packet Tracer 15

8. Figure of ISP network 16

9. Figure of Branch1 16

10. Figure of Branch2 17

11. Figure of connectivity between routers 18

12. Figure of DHCP Server 18

13. Figure of Branch3 19

14. Figure of Branch4 20

15. Picture of devices accessing wifi 21

16. Screenshot of VLAN Configuration 22

Table of Contents
III
Sr No. Topic Page No.

1. Introduction 1-3

2. SRS 4-5

3. Architecture Diagram 6-13

4. Project Methodology 14

5. Screen Shots 15-21

6. Conclusion and Future Scope 22

7. Reference 23

IV
INTRODUCTION

A enterprise network, or data network, is a digital telecommunications network which allows


nodes to share resources. In computer networks, computing devices exchange data with each
other using connections (data links) between nodes. These data links are established over
cable media such as wires or optic cables, or wireless media such as WiFi.

Computer networks support an enormous number of applications and services such as access
to the World Wide Web, digital video, digital audio, shared use of application and storage
servers, printers, and fax machines, and use of email and instant messaging applications as
well as many others. Computer networks differ in the transmission medium used to carry
their signals, communications protocols to organize network traffic, the network's size,
topology, traffic control mechanism and organizational intent. The best-known computer
network is the Internet.

Technology plays many different roles to protect and represent a high quality of services for
enterprise. Computer networking is the most crucial part of modern enterprise because this
new technology takes the most important responsibilities, rather than people doing the tasks
as in previous decades. The following thesis sheds light on three main parts which are
improved during the practical work: security, quality, and safety.

There is a tendency to discount the network as just simple plumbing, to think that all you
have to consider is the size and the length of the pipes or the speeds and feeds of the links,
and to dismiss the rest as unimportant. Just as the plumbing in a large stadium or high rise has
to be designed for scale, purpose, redundancy, protection from tampering or denial of
operation, and the capacity to handle peak loads, the network requires similar consideration.
As users depend on the network to access the majority of the information they need to do
their jobs and to transport their voice or video with reliability, the network must be able to
provide resilient, intelligent transport. The reliable network design also needs to incorporate
versatility in order to address the changing needs of an organization.

1
Here are some key concepts that you should address when creating a reliable and versatile
network design.
The network should be:
• Self-healing
• Self-defending
• Self-optimizing
• Self-aware
Self-healing To keep your network continuously on and available, pay attention to the high
availability concepts for both a resilient wired switching infrastructure and also for the
wireless infrastructure that integrates with it. Resiliency is not only based on the component
redundancy and how interconnections are made in the modular campus design but also what
capabilities can enhance that physical resiliency. For example, can you detect and react to RF
interference and mitigate its impact in your wireless access network? Can equipment be
removed from the network and connectivity for people to information be maintained without
[Link] is enhanced by avoiding network impacts to begin with, as described
with the next set of capabilities.
Self-defending To protect the organization and its users from disruptions to their
productivity, avoiding the disruptions before they begin is the surest way to keep network
services available. There are a range of capabilities to help with this task. For the wired
infrastructure, the basic set of Catalyst Infrastructure Security Features include many
capabilities to keep intentional and unintentional disruptions from impacting the network,
which can be augmented all the way to using enhanced policies through TrustSec
segmentation. Once the network can defend itself appropriately, the next step is to optimize
itself, as described with the next group of capabilities.
Self-optimizing To adapt to changing needs, beyond the limits of just the basic published
standards, is a key requirement for more advanced networks. Basic standards don’t address a
specific organization’s intent for how devices should behave on their network. Mobile phones
may have personal uses, but need to have priority access to a limited shared RF resource for
the applications that are important to a function of an organization. When choosing from the
spectrum of capabilities available, networks with mission critical capabilities can be created
that are able to address these needs.
Self-aware To drive change through insight into network activity, the best networks can
report insight into traffic that they transport and how it relates to an organization’s mission.
Application visibility from both wired and wireless devices using NetFlow, Network Based

2
Application Recognition (NBAR) and other capabilities, can give insight into how users
interact with applications and other users on the network. Besides just reporting information,
capabilities such as wireless hyperlocation and analytics enable organizations to provide
location-specific services to the users. So in essence the network can provide information for
how the users are using the network while at the same time provide or advertise services
based on a user’s access to the network.
The capabilities highlighted in these categories are a small sample of the capabilities that are
increasingly available as you make your design choices across the spectrum from the
foundation to the mission-critical design options, as shown below, for each campus network
within the appropriate topology sizing choice.

A enterprise network, campus area network, corporate area network or CAN is a computer
network made up of an interconnection of local area networks (LANs) within a limited
geographical area. The networking equipments (switches, routers) and transmission media
(optical fiber, copper plant, Cat5 cabling etc.) are almost entirely owned by the campus tenant
/ owner: an enterprise, university, government [Link] or Company network design
often interconnect a variety of buildings, including administrative buildings, academic
buildings, university libraries, campus or student centers, residence halls, gymnasiums, and
other outlying structures, like conference centers, technology centers, and training institutes.
Early examples include the Huawei Network Design, ,CIOE Network Design .

The range of END is 1 km to 5 km. If two buildings have the same domain and they are
connected with a network, then it will be considered as END only. Though the END is
mainly used for corporate campuses so the data link will be high [Link] this project focuses
on implementing a ENTERPRISE Network design keeping the logical and physical
parameters of the organization(client) in mind. Create a well developed secured network
design . Then dividing it into small subnets for each particular blocks , sections to provide
client an enhanced,optimized network topology .Then for security here
firewalls,authentication passwords,authorization, sessions are [Link] the complete
network is operated by The Admin only who will operate it through a server room.
Also here we have make use of Network Topology, Frame-Relay, DHCP, Routing protocols,
VLANS, TELNET etc.

3
SYSTEM REQUIREMENT SPECIFICATION

[Link]

1.1 PURPOSE
Computer networks support an enormous number of applications and services such as access
to the World Wide Web, digital video, digital audio, shared use of application and storage
servers, printers, and fax machines, and use of email and instant messaging applications as
well as many others. Computer networks differ in the transmission medium used to carry
their signals, communications protocols to organize network traffic, the network's size,
topology, traffic control mechanism and organizational intent.

1.2 SCOPE
• This network is designed for enterprise or organization.
• The network design provide communication between different branches of enterprise or
organization.
• The transfer of data from one branch to another is easy.
• The network design provide secure internet connectivity.
• It introduce telnet function i.e. any of employee can access another employee pc remotely
In entire network.

2. OVERALL DESCRIPTION

2.1 PROJECT FEATURES


• It provides dynamic and responsive infrastructure.
• It provides scability in network i.e. re-architecture and re-cabling is easy and less costly.
• The network design provide integratability i.e. compute,storage,networking,applications
and all the surrounding pc is capable of frictionless coordination.
• It provides secure data transfer and secure internet connectivity.

4
2.2 Operating Environment

• Cisco Packet Tracer for Windows and Linux users.


• GNS3 for MAC users.

[Link] REQUIREMENTS SPECIFICATIONS

3.1 SYSTEM FEATURES

•Secure Internet Connectivity


•Real Time Response
•Reliable Connection
•End to End Connection

4. COMPATIBILITY REQUIREMENT

• Cisco Packet Tracer with compatible device(Laptop,PC)

• RAM should be 4GB or more.

5
ARCHITECTURE DIAGRAM

Enterprise campus: Hierarchical design models

The hierarchical network design model breaks the complex flat network into multiple smaller
and more manageable networks. Each level or tier in the hierarchy is focused on a specific set
of roles. This design approach offers network designers a high degree of flexibility to
optimize and select the right network hardware, software, and features to perform specific
roles for the different network layers.

A typical hierarchical enterprise campus network design includes the following three layers:

■ Core layer: Provides optimal transport between sites and high-performance routing. Due
the criticality of the core layer, the design principles of the core should provide an appropriate
level of resilience that offers the ability to recover quickly and smoothly after any network
failure event with the core block.

■ Distribution layer: Provides policy-based connectivity and boundary control between the
access and core layers.

■ Access layer: Provides workgroup/user access to the network. The two primary and
common hierarchical design architectures of enterprise campus networks are the three-tier
and two-tier layers models.

Three-tier model

This design model, illustrated in Figure 3-1 , is typically used in large enterprise
campus networks, which are constructed of multiple functional distribution layer blocks.

6
Two-tier model

This design model, illustrated in Figure 3-2 , is more suitable for small to medium-
size campus networks (ideally not more than three functional disruption blocks to be
interconnected), where the core and distribution functions can be combined into one
layer, also known as collapsed core- distribution architecture .

7
The term functional distribution block refers to any block in the campus network that has its
own distribution layer such as user access block, WAN block, or data center block

Enterprise campus: modularity

By applying the hierarchical design model across the multiple functional blocks of
the enterprise campus network, a more scalable and modular campus architecture
(commonly referred to as building blocks) can be achieved. This modular enterprise campus
architecture offers a high level of design flexibility that makes it more responsive to
evolving business needs. As highlighted earlier in this book, modular design makes the
network more scalable and manageable by promoting fault domain isolation and more
deterministic traffic patterns. As a result, network changes and upgrades can be performed in
a controlled and staged manner, allowing greater stability and flexibility in the maintenance
and operation of the campus network. Figure 3-3 depicts a typical campus network along
with the different functional modules as part of the modular enterprise architecture design.

8
Note: Within each functional block of the modular enterprise architecture, to achieve the
optimal structured design, you should apply the same hierarchal network design principle.

A separate core provides the capability to scale the size of the enterprise campus network in a
structured fashion that minimizes overall complexity when the size of the network grows
(multiple campus distribution blocks) and the number of interconnections tying the multiple
enterprise campus functional blocks increases significantly (typically leads to physical and
control plane complexities), as exemplified in Figure 3-4 . In other words, not every design
requires a separate core.

9
Besides the previously mentioned technical considerations, as a network designer you should
always aim to provide a business-driven network design with a future vision based on the
principle “build today with tomorrow in mind.” Taking this principle into account, one of the
primary influencing factors with regard to selecting two-tier versus three-tier network
architecture is the type of site or network (remote branch, regional HQ, secondary or main
campus), which will help you, to a certain extent, identify the nature of the site and its
potential future scale (from a network design point of view).

For instance, it is rare that a typical (small to medium-size) remote site requires a three-
tier architecture even when future growth is considered. In contrast, a regional HQ site or a
secondary campus network of an enterprise can have a high potential to grow significantly in
size (number of users and number of distribution blocks). Therefore, a core layer or three-tier
architecture can be a feasible option here. This is from a hypothetical design point of view;
the actual answer must always align with the business goals and plans (for example if the
enterprise is planning to merge or acquire any new business); it can also derive from the
projected percentage of the yearly organic business growth.

Again, as a network designer, you can decide based on the current size and the
projected growth, taking into account the type of the targeted site, business nature,
priorities, and design constraints such as cost. For example, if the business priority is to
expand without spending extra on buying additional network hardware platforms (reduce
capital expenditure [capex]), in this case the cost savings is going to be a design constraint
and a business priority, and the network designer in this type of scenario must find an

10
alternative design solution such as the collapsed architecture (two-tier model) even
though technically it might not be the optimal solution.

That being said, sometimes (when possible) you need to gain the support from the
business first, to drive the design in the right direction. By highlighting and explaining to the
IT leaders of the organization the extra cost and challenges of operating a network that was
either not designed optimally with regard to their projected business expansion plans, or the
network was designed for yesterday’s requirements and it will not be capable enough to
handle today’s requirements.

Consequently, this may help to influence the business decision as the additional cost needed
to consider three-tier architecture will be justified to the business in this case (long-term
operating expenditure [opex] versus short-term capex). In other words, sometimes businesses
focus only on the solution capex without considering that opex can probably cost them more
on the long run if the solution was not architected and designed properly to meet their current
and future requirements.

11
12
13
PROJECT METHODOLOGY

Step 1:- Create a block diagram of enterprise consist of all physical components of enterprise.

Step 2:- Place routers in various sections so to divide network into small subnets.

Step 3:- Place network providers for each subnets i.e. Switches and connect it with respective
routers.

Step 4:- Connect hosts to each switch.

Step 5:-Connect enterprise router with ISP router.

Step 6:-Configure wifi access system with username and password.

Step 7:-Add and Configure VLAN and TELNET in network.

Step 8:- Now create a central device to control everything.

Step 9:- Configure hosts, switches, routers by giving them static ip or use DHCP servers.

Step 10:- Now add various routing protocols Eigrp, Router Rip, Ospf etc.

14
SCREEN SHOTS
Cisco Packet Tracer:-

Packet Tracer is a cross-platform visual simulation tool designed by Cisco Systems that
allows users to create network topologies and imitate modern computer networks. The
software allows users to simulate the configuration of Cisco routers and switches using a
simulated command line interface. Packet Tracer makes use of a drag and drop user interface,
allowing users to add and remove simulated network devices as they see fit. The software is
mainly focused towards Certified Cisco Network Associate Academy students as an
educational tool for helping them learn fundamental CCNA concepts. Previously students
enrolled in a CCNA Academy program could freely download and use the tool free of charge
for educational use. Since August 2018 with version 7.2 it is free to everyone.

15
A DHCP Server is a network server that automatically provides and assigns IP addresses,
default gateways and other network parameters to client devices. It relies on the standard
protocol known as Dynamic Host Configuration Protocol or DHCP to respond to broadcast
queries by clients.

16
17
18
19
20
21
Router Configuration:-

22
23
CONCLUSION AND FUTURE SCOPE

Enterprise networks will need to be able to dynamically respond to user demands for high-
performance applications and rich media content on any device. By leveraging programmable
switching/computing chips, companies will be able to support changing switching protocols
and facilitate complex data processing, without impairing network availability.

Networks were traditionally designed for speed rather than flexibility, but that will no longer
suffice when flexible cloud-based services are becoming the norm. To gain greater agility and
flexibility, companies need to transform from traditional, static, equipment-centric network
planning, deployment, and management to a dynamic, on-demand approach that will enable
them to rapidly expand or change services to meet business demands.

All the IT resources and content should be available to the faculty and students from their
desk as well as anywhere-anytime basis over the campus. To achieve the same, the
universities/colleges/institutions need to establish Campus network at their campuses. It is
very helpful for the universities/colleges and institutions to work from any block/building and
receive the same speed of data transfer.

A typical enterprise network or campus area network is a computer network made up of an


interconnection of local area networks (LANs) within a limited geographical area. The
networking equipments (switches, routers, firewalls, IPSs) and transmission media (optical
fiber, copper cable) are used to interconnect & communicate among all devices connected.

In a enterprise, its campus area network is likely to interconnect a variety of campus


buildings, including administrative buildings, branch buildings, cafeteria, guest house,
gymnasiums, and other outlying structures, like conference centers, technology centers and
residential blocks.

All buildings, blocks, centers, residential complex, are connected through high speed fiber
optical cable and all nodes inside a building are connected through UTP copper cable support
gigabits speed. Seminar halls, conference rooms and common areas in the campus are Wi-Fi
enabled through deployment of secured 802.11 based wireless access points with centralized
authentication to allow secure network access through laptops and wi-fi enabled devices.
Internet & all applications/services are deployed at central locations from where employee
access them using their desktops & laptops anytime from anywhere in the campus.

24
REFERENCE

[Link]

[Link]

[Link]

[Link]

[Link]

[Link]

25

Common questions

Powered by AI

A self-healing network ensures continuity and availability by proactively managing high availability in both wired and wireless infrastructures . It involves component redundancy and strategic interconnection within the modular campus design . Self-healing networks detect and react to issues such as RF interference, enabling them to mitigate impacts without significant interruption. This process not only keeps the network available but allows for uninterrupted connectivity even if equipment is removed or experiences failure .

Choosing between two-tier and three-tier network architectures involves strategic considerations like site type, projected growth, and business priorities . A two-tier architecture, suitable for small to medium-sized networks, offers cost savings and reduced complexity by combining core and distribution functions . In contrast, a three-tier model provides separate core, distribution, and access layers, suitable for larger sites with potential for significant growth. Key factors include the current size, anticipated expansion, cost constraints, and alignment with business goals like mergers or increased user loads, where a three-tier might be necessary for robust scalability .

The hierarchical design model enhances network scalability and management by breaking down a complex flat network into smaller, more manageable networks . It offers flexibility by allowing the network designer to optimize and select the appropriate network hardware, software, and features according to specific roles for different network layers. This model, through the core, distribution, and access layers, provides a structured approach that minimizes complexity when scaling . This structured approach promotes fault domain isolation, more deterministic traffic patterns, and ensures that network changes and upgrades can be performed in a controlled and staged manner, maintaining network stability and flexibility .

The core layer is essential in a three-tier hierarchical network design as it provides optimal transport between sites and enables high-performance routing . Its criticality necessitates design principles that ensure resilience and rapid recovery from network failure events. The core layer supports scalability by offering a separate infrastructure that minimizes complexity as the network grows, particularly when the number of distribution blocks and interconnections increase . This layer is fundamental to managing overall complexity and maintaining streamlined network operations in large enterprise setups .

A modular network design in an enterprise campus provides several advantages such as scalability, manageability, and design flexibility . It breaks down the network into functional blocks like user access, WAN, and data center blocks, allowing each to be independently managed and scaled . This design reduces overall complexity, facilitates upgrades, and controls changes in a staged manner, thus enhancing stability in network operation. It also aligns with evolving business needs by supporting manageable and isolated fault domains .

DHCP contributes to network management by automatically providing and assigning IP addresses, default gateways, and other network parameters to client devices . This process eliminates the need for manual IP configuration, reduces errors, and ensures seamless network connectivity. DHCP is essential in maintaining dynamic and scalable network environments, as it allows new devices to join and configure themselves automatically .

It is important for enterprise network designs to consider future growth and scalability to ensure that the network can accommodate increasing demands without requiring complete redesigns . As businesses grow, network load and user numbers increase, which can strain existing infrastructure if poorly planned. A scalable design facilitates cost-effective expansions, maintains operational efficiency, and minimizes disruptions during upgrades. Moreover, aligning network design with projected business expansion plans prepares organizations for future scale and technology requirements, avoiding unnecessary operational and capital expenses in the long run .

Self-defending capabilities protect enterprise networks by preventing disruptions before they occur. Features like the Catalyst Infrastructure Security include tools that protect against both intentional and unintentional disruptions . TrustSec segmentation and enhanced policy enforcement enable networks to control access and minimize security threats. By incorporating self-defending capabilities, networks ensure continuous service availability and protect users from productivity losses due to network disruptions .

VLANs enhance enterprise network security and efficiency by segmenting the network into smaller, isolated virtual networks. This segmentation controls broadcast domains and limits the range of data packets, which reduces unnecessary traffic and enhances efficiency . Security is improved by restricting sensitive data access to specific VLANs, minimizing exposure to network-wide threats. Additionally, VLANs support the division of network resources logically rather than physically, which simplifies management and enhances both network security and operational efficiency .

A self-aware network provides insight into network activity by using tools such as NetFlow and Network-Based Application Recognition (NBAR). These capabilities allow the network to report on traffic it transports and how it relates to the organization's mission. Additional features like wireless hyperlocation and analytics enable the provision of location-specific services. By offering these insights, self-aware networks enable organizations to understand user interaction with applications and adapt network resources accordingly, thus optimizing overall network performance .

ENTERPRISE NETWORK DESIGN 
Submitted in partial fulfillment of the requirements for the award of degree of
I  
 
 
                         Acknowledgement 
 
 I want to thank my project mentor Er. Vasudha Bansal for the trust,
II  
 
                                         
 Abstract 
 
The aim of this project was enterprise network design and i
III  
 
 List of Figures 
 
Figure No. 
Title 
Page No. 
1. 
Three-tier Network Design Model 
          7 
2. 
Two-tier N
IV  
 
 
Sr No. 
                        Topic 
       Page No. 
1. 
Introduction 
1-3 
2. 
              SRS 
4-5 
3.
1  
 
INTRODUCTION 
 
 
A enterprise network, or data network, is a digital telecommunications network which allows 
node
2  
 
Here are some key concepts that you should address when creating a reliable and versatile 
network design.  
The ne
3  
 
Application Recognition (NBAR) and other capabilities, can give insight into how users 
interact with applications
4  
 
                       
 SYSTEM REQUIREMENT SPECIFICATION 
1.INTRODUCTION 
1.1  PURPOSE 
Computer networks support
5  
 
 
2.2 Operating Environment 
• Cisco Packet Tracer for Windows and Linux users. 
• GNS3 for MAC users. 
 
3.FUNCTIO

You might also like