Network Redesign

I was given an outdated network to theoretically upgrade. Above is the old network, and the featured image is my new network. I aimed to do a few things with this redesign: 

  1. I wanted to improve network security (Confidentiality, Integrity)
    1. I added firewalls to each building and to the internet access. This should stop/detect unwanted visitors 
    2. I added network visibility to each building, probably would want to implement Icinga or Cacti, as well as Splunk 
    3. I added EDR to each building
    4. Moved the data center connection to have firewalls going in and out.
    5. Changed from ring structure to mesh structure to reduce chance of data interception
    6. Added ISP to help with security between us and the WAN (Prevent DDOS, data breach, add firewalls etc)
  2. I added more failure points and redundancy to enhance reliability (Integrity) 
    1. I added double connections to each building 
    2. I added connections between each building as well as preserving the WAN
    3. Changed from ring structure to mesh structure to make sure network does not fail easily. 
  3. I wanted to speed up their LAN and WAN access (Availability)
    1. Changed to high speed connections
    2. Replaced hubs with switches to improve speed/connectivity between LAN
    3. Moved data center to be directly connected to the LAN and ISP. 
    4. Added WIFI routers in secure locations for easier device connection. 
  4. I wanted to make information more easily shared between buildings (Availability)
    1. Moved data center to connect to LAN, so all buildings can easily access
    2. Added redundancy, so data center can be accessed even if the ISP has connection issues.
    3. Connected each building to each other through LAN so each building isn’t reliant on WAN for connections. 
Their needs will be met by:
  • Data security: Concerns about hacking/data security should be lessened due to the above reasons
  • Modernized: They have high speed, secure, and monitored connections as well as increase internal reliability and connectivity. We also changed out all hubs for switches
  • Outages should be reduced due to redundancy. 
  • Sales team should have better internet access and secure internet access for social media content
  • We moved to a Cloud Microservices architecture to allow the manufacturing team to grow easier
  • Data center being connected to the internet should allow for connectivity from anywhere. This should also be improved by cloud microservices 
  • Disaster recovery should be improved by the connectivity and data center being present to monitor.