Professional Documents
Culture Documents
Router
-Act as intermediary node to connect multiple subnet
203.0.113.2/29
TIME ISP
203.0.113.0/24
Main Switch
-Act as distributer to forward packet to all switch
connected to it.
DMZ Switch
203.0.114.1/24
203.0.113.1/29
Router 1
203.0.113.9/25
203.0.113.10/25
Firewall
-To protect internal network being accessed by
unknown host and monitoring the packet sent from
internal
-Will automatically detect and block the anomalous
behaviour of the packet inbound outbound through
it.
Main Switch
203.0.113.12/25
203.0.113.11/25
Core Switch 1
Core Switch 2
IP Address
203.0.113.0/24
203.0.113.1/29
203.0.113.9/25
203.0.113.135/25
Subnet Mask
255.255.255.0
255.255.255.248
255.255.255.128
255.255.255.128
Ground Floor
Switch Admin
DMZ Switch
203.0.113.1/29
Router 1
203.0.113.9/25
203.0.113.10
203.0.113.13-203.0.113.23
Main Switch
-Administration PC could configure the server with the help of switches and router
-Any packet header with destination and source of ip address with the range of 203.0.113.13203.0.113.23 will be blocked by external firewall to make sure that there is no communication
between Administration Office PC with outsider.
Wireless Access Point(Each Floor Has 1)
Router 1
203.0.113.9/25
203.0.113.135-203.0.113.256
203.0.113.10
Main Switch
203.0.113.11
Core Switch 1
203.0.113.12
Core Switch 2
-To protect our internal network we use another firewall which is to protect any devices in internal
network being accessed by semi-trusted zone(DMZ) and untrusted zone(internet) devices.
-The firewall will block any address with range 203.0.113.135-203.0.113.256
2nd Floor
203.0.113.3/29
203.0.113.2/29
File Server
203.0.113.4/29
DMZ Switch
Mail Server
203.0.113.5/29
203.0.113.82-203.0.113.98
DHCP Server
203.0.113.65-203.0.113.81
Switch 1
203.0.113.48-203.0.113.64
Switch 1
203.0.113.12
203.0.113.32-203.0.113.47
Switch 1
Core Switch 2
203.0.113.29-203.0.113.31
Switch 1
-At 2nd Floor different switches are used because of different subnet which is internal and DMZ
-Each Lab has a switch become intermediate device to lighten the burden of traffic in the network.
Figure