I have been tasked with the job of redesigning our company network. To give a quick background, we went from about 60 people to over 215 in the last 2 years. The current network was designed for a small company and I don’t have much experience with larger networks. I want to make sure it is done right so we have room to grow. We are spread out over 2 buildings (building 1 and building 2, a 3rd may be added soon) which we do not own, we lease the space and are trying to constantly obtain new office space as tenants leave. Our company started on the 4th floor of building 1, we take up the entire floor which consists of about 80 users, office space, server room (main equipment room) and labs. In building 1 we take up most of the 1st floor (25 users, office space), most of the 3rd floor (40 users, labs and office space), and part of the 5th floor (10 users, labs and office space). In building 2, we have an admin area on the first floor with about 20 users and a lab area on the 4th floor with about 5 users. Some users are remote and some move around.
We currently have 3 networks, 192.168.0.0. 192.168.3.0 and 192.168.20.0. We are very low on IP addresses so I need to come up with a plan. This is what I have in mind but as I mentioned, I want this to be done correctly and be able to grow with the company. I have a Dell SonicWALL NSA 2600 that I plan to run DHCP off of. I have also added a 2nd one for failover. I plan to add a 16-port core fiber switch and have each “site” (floor) connect directly via fiber connection (we just had this added and fiber is connecting both building 1 and 2). On the SonicWALL, I was thinking of creating several VLANs. It would look something like this:
VLANs (VLAN ID is same as network #)
Static & Management – No DHCP – 192.168.0.0 – VLAN ID 1 – Servers, printers, AP’s, etc.
Wireless gets separate DHCP from AP. APs will have static IP on 192.168.0.0 network
Secure Lab Network - 10.1.10.0 - VLAN ID 100 (this must be completely separate)
Non-Secure Lab Network - 172.16.1.0 – VLAN ID 172
VoIP – 37 – 192.168.37.0 – VLAN ID 37
Building 1
1st Floor & Basement - 192.168.10.0 – VLAN ID 10
3rd Floor – 192.168.30.0 – VLAN ID 30
4th Floor – 192.168.40.0 – VLAN ID 40
5th Floor – 192.168.50.0 – VLAN ID 50
Building 2
1st Floor – 192.168.15.0 – VLAN ID 15
4th Floor – 192.168.45.0 – VLAN ID 45
All switches are Dell X1052P and would be configured for each VLAN to have the necessary VLANs they should communicate with. There are talks about adding a site in another state in the next few years. As I mentioned, the company is growing rapidly and I am looking for some suggestions. Hopefully I am on the right track and won’t need to completely rethink what I have thus far.