Sunday, January 25, 2015

Lab Update 01-25-15

It's been a while since I posted an overall update on my lab. Since I have moved, I have taken the move as an opportunity to change some architecture. 


My lab as of 01/25/15







































I haven't added any significant equipment. I've mostly only moved things around for my CCNP SWITCH studies and other conveniences. From top to bottom:


Device/Model
Type
Role
Note
TRENDnet TC-P24C6
Patch Panel
Cable Termination

Cisco ASA5505
Firewall
Firewall Testing

Custom Build Router
Router/Firewall
Internet Gateway

Cisco WS-C3750-48TS
Multilayer Switch
Core Switch 1
HSRP
Cisco WS-C3750-48TS
Multilayer Switch
Core Switch 2
Supermicro Server
Server
DHCP, FTP, ESXi Management

ASUS Server
Server
ESXi Hypervisor
·         RADIUS
·         Domain Controllers
·         DNS (Load Balanced)
·         VCenter
·         Test Servers

Cisco WS-C3750-48TS
Multilayer Switch
Distribution Switch 1
HSRP
Cisco WS-C3750-48TS
Multilayer Switch
Distribution Switch 2
Cisco WS-C2960-24TT-L
Layer 2 Switch
Access Switch

Cyclades AlterPath ACS32
Access Server
Terminal Access Server

Cisco C2811
Router
N/A (Disconnected)

Cisco C2851
Router
N/A (Disconnected)

Cisco C2821
Router
N/A (Disconnected)

Cisco C2821
Router
N/A (Disconnected)

APC AP7900
Switched PDU
Rack Power




My topology has changed somewhat as I implement DNS in much more of my lab functions as well as my home network use. Both "core" switches use HSRP for HA and are redundantly connected to my internet gateway using OSPF (as the ASBR) and point-to-point (/31) connections for link redundancy. This is also how I connect my Distribution Switches back to the Core while summarizing routes of course. The Core is used to support some of my home network stuff (TVs, consoles, APs, etc.). Of course, this would normally NEVER be the case (to connect end devices to the Core), but this is a lab, not a production network. So I use my Cores for shared purposes; home network and lab. From Distribution below is exclusively used for CCNP lab purposes. The only time hosts are connected are for testing. I hope to add another Layer 2 access switch behind the Distribution switches for increased STP study. The Catalyst 2960-24TT-Ls are pretty cheap on ebay for layer 2 only operation/study.

Most of my routing equipment is disconnected at the moment to help me focus on my CCNP SWITCH studies, which by the way I had to go back and purchase the v2.0 study material for! I'm hoping that by March or April, I will be ready to take my CCNP SWITCH test. 

Other changes have seen me retire PPTP as my primary Remote Access VPN connection method in favor of the more secure certificate based OpenVPN. 

Things I would love to see integrated in my lab in the future include:
  • Gigabit switching (Cisco GbE equipment is still pricey, even on ebay)
  • PoE (Power over Ethernet)
  • New APs (more so for home network flexibility)
  • IPS and/or Next Gen Firewall
  • NAS - Build or Buy? (Looks pretty expensive to build)
  • Another ASA for more VPN practice (you can never get enough of that)

My lab will continue to grow and be an integral part of my studies as well as my home network and I will continue to update this blog as changes occur. 

No comments:

Post a Comment