01-04-2021 08:30 AM
Hi, Is there anyone who can help me out here to solve this case. plz its kind of urgent. any kind of suggestions or help in this regard will be highly appreciated. Thanks.
Company XYZ is a digital healthcare company in Berlin. They want to build a data center of their own. Company information and requirements are given below:
The company has approximately 2500 active windows users who will be managed by using on-prem active directory located in DC. These 2500 employees need to be connected to DC in a secure way from branch offices. There are 2 branch offices, each office can hold up to 1250 employees and each office has its own network setup with a firewall, few switches and some access points.
The company has 4 internet facing application servers in the DMZ zone, each server has 10 Gig Ethernet ports. Each server can serve up to 1 million requests per hour. Data generated from each request are stored in database servers (4 servers) located in the production zone. Production zone is only accessible from the DMZ zone. The company wants a solution where all servers will be utilized equally.
The company also has 4 local servers for AD, payroll and other internal systems. These servers are located in another zone at the DC and only accessible from branch offices.
For WAN connectivity, the company decided to use BGP. Besides, for redundancy purposes, they decided to add two general uplinks from different ISPs.
Now, design a basic high level network diagram for the Data Center considering the above conditions (with brief explanation of the following questions/requirements). Please keep in mind that you need to secure the traffic flow to the DC, as well as the DMZ zone. Traffic flow between different zones in DC must also be secured. All the network devices and connected links must be redundant with failover options. Please mention briefly what technologies you are going to use for redundancy configurations. What's your plan for the LB of DMZ and production servers? Also explain the traffic flow between different zones, maybe with arrow marks. Briefly explain how you will set up BGP (basic steps) with ISP and what’s your plan for failover uplinks?
Besides, please mention what type or model of network gears/devices you are going to use to build that DC (like model of Firewalls, routers, switches etc.), considering the information given above and briefly explain why you are choosing those devices?
Any kind of improvements or suggestions on the diagram will be greatly appreciated.
01-04-2021 08:57 AM
This is more like small project work, Contact Local Consultant or Cisco Partner can help with solution / build and trasfer.
There are many questions to ask - it would not be advise to publicly disclose some information which not required on the forums.
Other questions to be asked :
1. if some one give you diagram and BoM (how accurate is that, tey only give hypothicated information), do you have hands on experience to build
2. understand the technolgy
3. support your customer for ongoing issue while deploying and post deployment support.
01-04-2021 02:53 PM
Designing a DC is not something assigned to a novice.
If you are unsure how to design one, contact your Cisco AM/SE or get a systems integrator to do it.
01-04-2021 11:27 PM - edited 01-04-2021 11:27 PM
As @Leo Laohoo already mentioned, designing a DC is not something you do on cisco community.
However, you can start with baby steps: explore the current DC design best practices, what are the technological trends in DC, what are the best switches/routers/firewalls/LB for DC on the market, based on customer needs, and so on.
I would suggest you to start reading this first: https://www.cisco.com/c/en/us/products/collateral/switches/nexus-9000-series-switches/guide-c07-730115.html then continue from there.
Take care,
Sergiu
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide