I need to re-address the entire company to a 10.x.x.x network. Management does not want double NATs for inside and outside, so we must change all IPs. Here is what I have to work with: 1200 users, 200 servers, 200 printers, and 100 misc IP devices. Equipments include: 6509 switch w/old MSM, 3640 router, PIX 515UR, and other lower performance gears... but all are Cisco. What is the best way to go about this with out too much additional investment?
My initial thoughts:
First create the new network with VLANs, route it with either the 3640, old MSM, or PIX, and NAT it on the PIX. Then I'll be free to move machines over to the new network and leave the stuborn ones to be fixed by our WEB apps people. The major problem is going to be performance. As I'm phasing this in, for some time, the users will be on the new network but still will be accessing many servers left on the old network and my 3640 router or the MSM may not handel this traffic which will most likely be more than 500Mb throughout the day.
Purchasing a new feature routing card for the 6509 may not pass the budget and leaving it to the 3640 will severly limit routing speeds to no more than 100Mb if that.
Instead of having the 3640 have to handle all the traffic, why not install a separate Layer 3 Switch like the 4908G-L3. It has 8 GB GBIC slots which you could use to tie into the existing network. Or the 2948G-L3 which has 2 GB ports and 48 10/100 Ethernet ports. With that you could create Etherchannel groups of 4 100MB ports for 800 MB full duplex routed VLAN links. I think the throughput on those Layer 3 switches are like 10 million packets per second and its done in hardware not software like your Router. It would also give you a path to migrate to GB ethernet backbone down the road. You might even be able to pick up a 2948G-L3 used.
Investing in a new modual or another L3 switch will solve it, however greatly discoursed by management at this time due to budget limits. Will have to go this way as a last resort if no other solution is possible.
Looks like we may very well need a MLS. The 2948G-L3 is comprabale in price to the WS-C3550-12G with 10G ports and 2 10/100s. I may just push for 3550 and use it to aggregate all our traffic. Of course, all those GBICs can get expensive.
Question We run asr9001 with XR 6.1.3, and we have a very long delay to
login w/ SSH 1 or 2 to the device compare to IOS device. After
investigation, the there is 1s delay between the client KEXDH_INIT and
the server (XR) KEXDH_REPLY. After debug ssh serv...
Introduction The purpose of this document is to demonstrate the Open
Shortest Path First (OSPF) behavior when the V-bit (Virtual-link bit) is
present in a non-backbone area. The V-bit is signaled in Type-1 LSA only
if the router is the endpoint of one or ...
Hi, I am seeing quite a few issues with patch install and wanted to
share my experience and workaround to this. Login to admin via CLI, then
access root with the “shell” command Issue “df –h” and you’ll probably
see the following directory full or nearly ...