I'm working on our co-location setup and I'm getting ready to make some upgrades and I'm not quite sure what the best solution is. Here is what I have now:
- a block of 32 IPs from provider
- one firewall in front of all of my devices
- one unmanaged switch connecting everything
- 3 web servers and one database server
What I would like to do is replace unmanaged switch with one 3560G switch and separate my three web servers into different VLANs or private VLANs. Database would have to be accessed from all of those three servers. My question is what would be a better solution: separating everything using VLANs and doing inter-vlan routing or using private VLANs? Down the road I plan to add another switch for redundancy. In addition I plan to replace two of the web servers with clusters behind ACE appliances. Any suggestions or recommendations would be more than welcomed.