0% found this document useful (0 votes)
81 views5 pages

Trine University Network Design Proposal

This network design proposal for Trine University's Indiana campus aims to enhance connectivity, security, and scalability through VLAN segmentation for various departments and a structured IP address distribution. Key components include Cisco routers, switches, firewalls, and servers to ensure efficient communication and robust security. The design outlines specific devices, their functionalities, and estimated costs to support the network infrastructure.

Uploaded by

swetha
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
81 views5 pages

Trine University Network Design Proposal

This network design proposal for Trine University's Indiana campus aims to enhance connectivity, security, and scalability through VLAN segmentation for various departments and a structured IP address distribution. Key components include Cisco routers, switches, firewalls, and servers to ensure efficient communication and robust security. The design outlines specific devices, their functionalities, and estimated costs to support the network infrastructure.

Uploaded by

swetha
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd

Network Design Project

Network Design
Project
Raghul Anandakrishnan

Department of Information Studies


Network Design Project
2

ABSTRACT

This network design proposal for Trine University's Indiana campus outlines a plan to

efficiently enhance connectivity, security, and scalability. The design includes VLAN-based

segmentation for departments (Engineering, Nursing, IT, Finance, Staffing, and

Management), IP address distribution, core and departmental switches, firewalls, wireless

access points, and VoIP solutions. Key components include Cisco routers, switches, and

wireless access points, alongside DNS, DHCP, file, and VoIP servers. The network proposed

here ensures efficient communication, robust security, and scalable infrastructure to meet

future growth and operational needs.

NETWORK DIAGRAM
Network Design Project
3

IP ADDRESS DISTRIBUTION

For the IP Address Distribution we have used Class B private address space: `[Link]/16`.

Which provides flexibility and scalability and each department and function will be assigned

its own subnet for improved traffic management, security, and segmentation.

We have four academic departments and two Management departments. The Academic

departments are Engineering, Nursing, IT, Finance. The management departments are

Staffing, and Management. Each Academic and Management departments are assigned

separate IP Address distributions.

DEPARTMENT IP_SUBNET

Engineering [Link]/24

Nursing [Link]/24

IT [Link]/24

Finance [Link]/24

Staffing [Link]/24

Management [Link]/24

VLAN Configuration

VLAN configuration is a critical aspect of network design which provides isolation,


enhancements to the network performance, scalability, and security [Link] enable
organisations to build efficient, secure and reliable network infrastructures.

In the part of the network configuration we have named each department with its own

network VLAN configuration. With the setup of VLAN it's easy to manage as the logical

segmentation of each department is done through VLAN tagging in a secure manner.


Network Design Project
4

DEPARTMENT VLAN_NAME

Engineering ENG_VLAN

Nursing NUR_VLAN

IT IT_VLAN

Finance FIN_VLAN

Staffing STAFF_VLAN

Management MGMT_VLAN

NETWORK DEVICES

Any network needs a proper setup of network devices. We have compiled a few devices

which are very effective and have the potential to manage any kind of traffic and maintain

security of the data transmitted.

For a good network the main few devices are the Firewall, Switch, Routers and Servers

Firewall:- Firewall we used in this network setup is Cisco ASA 5506-X

The functionality of this firewall model is it provides perimeter security, VPN connectivity,

inspection of network and threat protection.

Cost of this Firewall in the market is estimated at $500 to $700

Routers:- Routers used in the network setup is Cisco ISR 4431 Router

The functionality of this router is it can act as a layer 3 device and also supports routing

between VLANs, WAN connectivity with the speed of 500 Mbps throughput, 4x GE ports.

Cost of this is router is market is estimated at $3000 to $4200 Each


Network Design Project
5

Switch:- The Switches that are used in this network setup is Cisco Catalyst 9300 Series

Switches (Layer 3), These switches are robust and can support VLANs, routing, stacking, and

Layer 3 traffic with the 48 GE ports, support for PoE (Power over Ethernet), 1G/10G uplinks.

They cost up $5500 each

Access Points:- All the Access Points used in the network setup are the Cisco Catalyst

2960 X Series (Layer 2) for the departmental level network distribution which provides

secured network access to the devices at the departments. These AP’s are 24 or 48 ports with

1GBPS and they cost $2000

Wireless Access Points:- The Wireless Access points used in the network setup are Cisco

Meraki MR44 they provide wifi 6 access and cost $1000

Network Servers and Applications

DNS/DHCP Server are used to Manage IP address assignments and hostname resolutions ,

the model used in this network setup is Windows Server 2022. Its Licensing cost for

Windows Server is $1,000, open-source options (Linux) are free.

File and Application Servers used in the network model is Dell PowerEdge R540, which

has specifications of Dual Intel Xeon CPUs with 128 GB RAM and 4 TB storage so it can

host file large storage with internal web applications, and databases for departments. They

cost $6,000 per server.

Common questions

Powered by AI

The chosen devices like Cisco ASA 5506-X Firewalls ($500-$700), Cisco ISR 4431 Routers ($3000-$4200), and Cisco Catalyst 9300 Series Switches ($5500 each) offer robust features such as VLAN support, high throughput, and advanced security functions. These features ensure that the network can handle current demands and scale efficiently for future expansion. While these devices are costly, their long-term benefits in providing stable, secure, and scalable networking make them cost-effective investments .

Primary network devices used include Firewalls (Cisco ASA 5506-X) providing perimeter security and threat protection; Routers (Cisco ISR 4431) enabling Layer 3 routing and VLAN interconnectivity; Switches (Cisco Catalyst 9300) supporting VLANs, routing, and PoE; and Servers handling DNS, DHCP, file storage, and applications essential for network and operational management .

The Cisco Catalyst 2960 X Series access points, with their Layer 2 functionality and 24 or 48 ports, offer reliable and secure connectivity within departments, supporting data-intensive applications and maintaining consistent network performance. Their capability to handle up to 1Gbps ensures minimal network congestion, although their Layer 2 nature may limit advanced functions like routing .

Windows Server 2022, used for DNS/DHCP services, streamlines IP management and hostname resolution, enhancing network efficiency by automating address assignments. Dell PowerEdge R540 servers, equipped with Dual Intel Xeon CPUs, substantial RAM, and storage, enable handling of large data loads and the hosting of various internal applications, thereby optimizing departmental workflows and ensuring consistent application performance .

Cisco Meraki MR44 wireless access points, priced at $1000, offer benefits such as support for WiFi 6, which provides faster speeds and efficiency, especially in high-density environments. However, challenges may include initial capital investment, complexity in management, and potential need for additional configuration and integration with existing network security features .

With a cost of $6,000 per unit, Dell PowerEdge R540 servers promise high performance with Dual Intel Xeon CPUs, 128 GB RAM, and 4 TB storage, suitable for extensive file and application hosting. They offer robust performance capabilities and ensure efficient handling of departmental databases and applications, justifying the cost through their ability to sustain heavy workloads and support network operations .

VLANs contribute to security and performance by enabling logical segmentation of the network, which isolates departmental traffic for better management and reduced collision domains, enhancing security by restricting unauthorized access. VLAN configuration aids in efficient traffic management, leading to improved network performance through easier troubleshooting and streamlined data flow .

Using Class B private address space (172.16.0.0/16) allows for substantial IP address allocations per department, providing flexibility and scalability essential for accommodating potential future growth and changes without reconfiguring the entire network. This choice supports improved traffic isolation and management across academic and management departments .

VLAN tagging in Trine University's network allows for segregating network traffic at the switch level by associating ports with specific VLANs. This segregation is crucial for enhancing security as it limits broadcast domains, reduces the risk of unauthorized data access, and simplifies the monitoring and management of network traffic by restricting it to relevant segments .

Scalability is ensured by using VLANs for departmental segmentation, which allows for easier adjustments and additions in the network. The use of Class B IP address space accommodates growth without requiring major overhauls. The robust Cisco Catalyst 9300 switches and ISR 4431 routers support high data throughput and future upgrades, ensuring that the infrastructure can expand to meet increased demands .

You might also like