
Network Redesign

I was given an outdated network to theoretically upgrade. Above is the old network, and the featured image is my new network.
I aimed to do a few things with this redesign:
- I wanted to improve network security (Confidentiality, Integrity)
- I added firewalls to each building and to the internet access. This should stop/detect unwanted visitors
- I added network visibility to each building, probably would want to implement Icinga or Cacti, as well as Splunk
- I added EDR to each building
- Moved the data center connection to have firewalls going in and out.
- Changed from ring structure to mesh structure to reduce chance of data interception
- Added ISP to help with security between us and the WAN (Prevent DDOS, data breach, add firewalls etc)
- I added more failure points and redundancy to enhance reliability (Integrity)
- I added double connections to each building
- I added connections between each building as well as preserving the WAN
- Changed from ring structure to mesh structure to make sure network does not fail easily.
- I wanted to speed up their LAN and WAN access (Availability)
- Changed to high speed connections
- Replaced hubs with switches to improve speed/connectivity between LAN
- Moved data center to be directly connected to the LAN and ISP.
- Added WIFI routers in secure locations for easier device connection.
- I wanted to make information more easily shared between buildings (Availability)
- Moved data center to connect to LAN, so all buildings can easily access
- Added redundancy, so data center can be accessed even if the ISP has connection issues.
- Connected each building to each other through LAN so each building isn’t reliant on WAN for connections.
- Data security: Concerns about hacking/data security should be lessened due to the above reasons
- Modernized: They have high speed, secure, and monitored connections as well as increase internal reliability and connectivity. We also changed out all hubs for switches
- Outages should be reduced due to redundancy.
- Sales team should have better internet access and secure internet access for social media content
- We moved to a Cloud Microservices architecture to allow the manufacturing team to grow easier
- Data center being connected to the internet should allow for connectivity from anywhere. This should also be improved by cloud microservices
- Disaster recovery should be improved by the connectivity and data center being present to monitor.