NOV – 22 - 2010
NOV- 22 - 2010 Kabul University Network Design KU-NTD Group Guide Teacher: Mosadiq Jalalzai Nov-22-2010
NOV- 22 - 2010
Last Design Problems And Solutions NOV – 22 - 2010
Problem 1: (Single point failure) Single point failure in the last design. Solution 1: Add three points redundancy links in the new design. ( Show figures ) NOV – 22 - 2010
NOV – 22 - 2010
NOV – 22 - 2010
NOV – 22 - 2010
Problem 2: ( Load ) Trunk port in the each switches configured (Load) Problem 2: ( Load ) Trunk port in the each switches configured (Load). Solution 2: We configured OSPF in each switches Layer 3 and default route. NOV – 22 - 2010
Problem 3: ( IP DHCP ) Last design each PC in the switches we set static IP address ,Default Gateway and DNS server. Solution 3: 1- Faculty Domain 2- KU Domain NOV – 22 - 2010
Faculty Domain : MoHE , Engineering , Literature ,Computer Science , ITCK …etc these faculty have domain and we must configure DHCP ,DNS server in each these faculty . NOV – 22 - 2010
KU Domain: We configured DHCP each switches in the faculties ,set DNS and Default gateway . NOV – 22 - 2010
Problem 4: (Proxy Server ) Last design have one Proxy Server in the NOC. Solution 4: New design we configure four Proxy Server in the NOC. 2 Proxy Server in the NOC for redundancy ( Show Figure ) NOV – 22 - 2010
Core Layer NOV – 22 - 2010
Problem 5: ( UPS ) Last design has UPS only in the NOC Problem 5: ( UPS ) Last design has UPS only in the NOC. Solution 5: For redundancy two UPS in the Server Farm and each faculty has one UPS. NOV – 22 - 2010
Problem 6: (Power Server Farm) Problem the power in the Server farm some devices is failure. Solution 6: We configure one Step Lizer for control power voltage and prevents from failure devices. NOV – 22 - 2010
Problem 7: (Topology SF) In the Server farm if one link is failed all the Network KU is down. Solution 7: Full Mesh Topology Design in the Server farm if one link is down another link is up. ( Show Figure ) NOV – 22 - 2010
Problem 8: (Redundancy Core) In the Core layer have Router and Switch if these devices failed all Network KU is down. Solution 8: In the core layer from two ISP we take Public IP ( Backup ). ( Show Figure ) NOV – 22 - 2010
NOV – 22 - 2010
Problem 9: ( Security ) Last design in each faculty no security firewall . Solution 9: Security Firewall for filtering in the new design we divided in three part it consist in: NOV – 22 - 2010
Part 1: We configure in the Core Layer Pix firewall. NOV – 22 - 2010
Part 2: Some faculties have domain we configure Share firewall. NOV – 22 - 2010
Part 3: Another faculties we configure ACL Firewall.
Problem 10 : ( Data Center ) Last Design doesn’t have Data Center Problem 10 : ( Data Center ) Last Design doesn’t have Data Center . Solution 10 : New design we have data center in the DC we have website and each students can create account (user name and password) ( Show Figure ) NOV – 22 - 2010
Data Center
Problem 11: (VOIP) Last design had VOIP just in the Server farm Problem 11: (VOIP) Last design had VOIP just in the Server farm. Solution 11: In new design each faculty has two IP Phone . Call manager + TFTP, DB Publisher ,call processing… NOV – 22 - 2010
Problem 12: (Video Conference) Last design don’t have Video conference Problem 12: (Video Conference) Last design don’t have Video conference . Solution 12: Video Conferencing is very important in the KU , We configure Video Conferencing in the some faculties. ( Show Figure ) NOV – 22 - 2010
Video conference
Video conference Video conferencing uses telecommunications of audio and video to bring people at different sites together for a meeting. We uses H.323 protocol we uses server AAA use database RPMS NOV – 22 - 2010
Video conference component Video input : video or webcam Video output: computer monitor , televisions or projector Audio input: microphones, CD/DVD player, cassette player, or any other source of PreAmp audio outlet. Audio output: usually loudspeakers associated with the display device or telephone Data transfer: analog or digital telephone network, LAN or Internet NOV – 22 - 2010
Configuration of VLAN New Design have three VLAN: 1 - Data VLAN Start up from VLAN 100 TO VLAN 121 2 - Management VLAN Only one VLAN 50 3 - VOIP & Video Conferencing Only one VLAN 200 NOV – 22 - 2010
Data VLAN Each Switches have different Data VLAN Data VLAN Each Switches have different Data VLAN. Start up from VLAN 100 T0 VLAN 121. Switch(config)#vlan 111 Switch(config-vlan)#name Veterinary Switch(config)#interface range fastEthernet 0/1-20 Switch(config-if-range)#switchport access vlan 111 Switch(config)#interface vlan 111 Switch(config-if)#ip address 10.1.255.254 255.255.0.0 NOV – 22 - 2010
Configuration of DHCP & DNS We configured DHCP in the Switch Configuration of DHCP & DNS We configured DHCP in the Switch . Like this: Switch(config)#ip dhcp pool Veterinary Switch(dhcp-config)#network 10.1.255.254 255.255.0.0 Switch(dhcp-config)#default-router 10.0.0.1 Switch(dhcp-config)#dns-server 10.0.0.5 Switch(dhcp-config)#ip dhcp excluded-address 10.1.0.1 10.1.255.253 NOV – 22 - 2010
Management VLAN Each faculty we must configured management VLAN All faculty have VLAN 50 for Management VLAN. Switch(config)#vlan 50 Switch(config-vlan)#name Management Switch(config)#interface vlan 50 Switch(config-if)#ip address 192.168.100.1 255.255.255.0 NOV – 22 - 2010
VOIP & Video conferencing VLAN All faculties we must configured VLAN 200 for VOIP and Video conferencing . Like this: Switch(config)#vlan 200 Switch(config-vlan)#name Veterinary Switch(config)#interface range fastEthernet 0/21-24 Switch(config-if-range)#switchport access vlan 200 Switch(config)#interface vlan 200 Switch(config-if)#ip address 10.200.0.1 255.255.0.0 NOV – 22 - 2010
NOV- 22 - 2010 Members of Group M.Baer Ataiee Zulmai Suhrabi Ali Riza Mahboob Soroush Jurat Akbar Andiesh Subhanullah Alimy Naheda Obidullah Mahdy Helay Nimatullah Khatera Amanuddin Manavi NOV – 22 - 2010
Thanks from your Attention ! NOV – 22 - 2010
Any Question ? NOV – 22 - 2010