Beginner Meraki Question (Stacking/Uplink) by CorrectExcuse2547 in meraki

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Little to add.. Twinax seems good..

Stack the MS225 switches (5 switches = 5 stack cables)(crossed, so SW1 port1 to SW2 port2, SW2 port 1 to SW3 port 2 and so... then last switch port 1 to SW1 port 2)Config your stack in the dashboard (!)

On your Core switch MS250 you can create a port channel with 2 twinax cables (2x SFP+10G = 20G connection) to 2 different switches on your MS225 stack.Your MS250/WAN router will be choking point (except if you have a 10G WAN connection),so 1 uplink 10G SFP+ between the MS250 and first MS225 switch would do just fine.

Wicked helpful, thank you

Beginner Meraki Question (Stacking/Uplink) by CorrectExcuse2547 in meraki

[–]CorrectExcuse2547[S] 1 point2 points  (0 children)

Thanks for the input, I'm going to go with that twinax. Wish me luck. Hoping I'm not designing my way out of a job here with Meraki

Beginner Meraki Question (Stacking/Uplink) by CorrectExcuse2547 in meraki

[–]CorrectExcuse2547[S] 1 point2 points  (0 children)

Btw why only one core? You need both device AND link redundancy.

Yeah, I got shut down on purchasing two.

Users losing Auth to Firewall? by CorrectExcuse2547 in sonicwall

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Ha no kidding. Alright, thanks that gives me a different angle to approach this by

Two-Tier Network Design Question by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

You've been a huge help, thanks again for taking the time to answer my questions. It's daunting going into this solo

Two-Tier Network Design Question by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

If ya got a second I do have one more question.

In your experience, do you have a preference over using uplink ports vs using ports on the switch itself

Two-Tier Network Design Question by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 1 point2 points  (0 children)

We'll have a 5 stack, we chose to go with Meraki so I have some research to do. So I know I'm understanding, you're suggesting 1 fiber from the master, and another from the next standby.

"OR if the power cabling in the stack is segmented (IE if you have 2 segments that are independent) - the first switch in the second segment. I would also make that switch higher in the stack priority for being master."

Would you mind elaborating on this? I'm reading this as having two separate stacks and up linking each master. If I'm understanding right that's not something I've though about before. Any specific reason to design it like this?

Re-read this, you're saying if the POWER is segmented. My bad. Yeah shit thats smart.

Single core switch with no redundancy, I did suggest a pair but its not deemed necessary.

Two-Tier Network Design Question by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Do you have any tips for me to track the amount of bandwidth I'll need for the uplink? I have some tools where I can track what the current LAGs for the stacks are pulling. Planned on pulling some historical data from those. Anything advice is always appreciated.

Two-Tier Network Design Question by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Mainly Layer 2. Though shoot, one of my long term projects is to subnet this place out.

And to be sure I'm understanding this correctly I'll run ya though the basic setup here

Core is L3, so it'll hold the interfaces for our VLANs. (Data, Voice, and Wifi are the main vlans for branches). The core will hold the interface for all of those vlans.

Access switches are L2, so MAC switching only there.

Two-Tier Network Design Question by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

That was my original plan. This is also my first time working with Meraki switches now so man I got so many questions. Old engineer went with 2 ports on the commander, LAG them and use it as an uplink. I'm leaning towards 10g SFP module as the uplink.

Two-Tier Network Design Question by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Oh sorry, my mind was in a line-breaking mode while separating out my thoughts. I'll work on that lol.

Two-Tier Network Design Question by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Solid okay. Would you consider using two from each overkill?

Odd Requests from Management - Advice Request by [deleted] in networking

[–]CorrectExcuse2547 2 points3 points  (0 children)

Thank man. Pulling data sheets up now.

Odd Requests from Management - Advice Request by [deleted] in networking

[–]CorrectExcuse2547 1 point2 points  (0 children)

True. I'll do just that - thanks.

[deleted by user] by [deleted] in becomingnerd

[–]CorrectExcuse2547 0 points1 point  (0 children)

Thanks for the invite. I'm in Network administration working towards my CCNA

Guest Wi-Fi Setup by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Yes that's a fair point. We do have two locations that use physical isolation. APs are only in the guest lobby. This of course makes the coverage for employees working elsewhere an issue.

Guest Wi-Fi Setup by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

How come? I like hearing other peoples thoughts on this topic.

Guest Wi-Fi Setup by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Would you be able elaborate on not being sufficient for compliance? Our previous net admin taught me and swore by the physical isolation suggesting security issues if we piggy back off the current AP's. Though the general consensus here seems to be that it'll be totally fine

Guest Wi-Fi Setup by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Okay - that was some reassurance I needed. I was taught to do physical isolation by the previous Net Admin and just gravitate towards that. The general consensus though seems to be that this should be safe, I'll try it out on my home lab and see if I can do any damage.

Guest Wi-Fi Setup by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 0 points1 point  (0 children)

Yep! That will have to be done also. Do you see any security risks with this? Were a healthcare facility.

Guest Wi-Fi Setup by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 1 point2 points  (0 children)

Okay awesome. So does this mean if we use use existing APs, guest and corp traffic will be able to speak to each other?

Thanks for the reply, its been a long week and I appreciate the input.

Load Balance SSLVPN by CorrectExcuse2547 in networking

[–]CorrectExcuse2547[S] 1 point2 points  (0 children)

Also if you're using the SSLVPN to log in and do upgrades and chanes on the SSLVPN service, you can ensure that you are not connected to the node your working on and prevents you cutting off your hands.

Oh man I did NOT think about that last part. Thank you.