Protected: Standard Network Setup



Number of Answers
 

Provide additional feedback

Article

vLAN:

20 - Guest 173.1/24

  • Configured to work with Facebook Wifi for the restaurant

30 - Admin 4.0/24

  • Can be changed to existing IP schemea in use.

40 - Toast 192.1/24

60 - IoT 186.1/24

  • TV's, Thermostats, Light Bulbs, Cable Boxes, Satelite boxes, etc on this network.

173 - DevmgmtNet (see SS , 10.*.*.1/24)

  • All devices, you will assign all network devices an IP on this network following the specs below.  By assign all of our offices with their own 10.*.*.* network, we can keep a VPN to all of their devices, to monitor without having to worry about IP conflicts.  It is important that we keep the IP assignments spreadsheet up to date.  That will end up in the CRM, but for now it's at )

Wireless Names

  • Restaurant-Guest
    • Configured to use less than 25% of the available bandwidth
    • All traffic is isolated, so that no traffic can see other traffic.
    • Can be locked to your Facebook, requiring a check in for free internet
    • Is locked out after a set period of time
    • Can be auto turned off at set times of the day, to avoid neighbors or parkers from using your free bandwidth at night
  • Restaurant-POS
    • vLAN is locked down to ensure PCI compliance
    • All wireless and physical connections are audited monthly for compliance.
    • Ports are specific to these vlans
  • Restaurant-IoT
    • This is the network for TV's, satellite boxes, Light Bulbs, Cable Boxes, Thermostats, etc go on.
    • Each item on this network is isolated with it's connection
  • Restaurant-Staff
    • Staff/Admin network
    • All printers, etc should be configured on this network, or plugged into  a port on the network designated as staff network.

Default Network Layout
1.1 - Gateway UDM
1.2 - Border Switch
1.3 - Switch
1.4 - AP Switch
1.5 - Switch
1.6 - Switch
1.7 - Switch
1.8 - Cloud Key
1.9 - LTE Device
1.10 - DVR
1.11 - AP01
1.12 - AP02
1.13 - AP03
1.14 - AP04
1.15 - AP05
1.16 - AP06
1.17 - AP07
1.18 - AP08
1.19 - AP09
1.20 - AP10
1.21 - Phone Base W60B, W70B
1.22 - Phone Base 2
1.23 - Phone Base 3
1.24 -
1.25 -
1.26 -
1.27 -
1.28 -
1.29 -
1.30 - Power UPS Device <-- Wifi

 

Switch Ports Default Setup:

01 - 03 - AP
04 - 14 - POS
15 - 20 - Admin
21 - 22 - IoT
23 -
24 - If 24 port switch, uplink to Dream Machine Port 8

Network Settings (dashboard settings)
IP, vLAN settings matching these specs.
Daily Backup Created - One downloaded to their folder in Gdrive
Add network names & passwords to CRM for Org
Ensure the 5 networks are consistent.  Have all sites post a PhoenixGeeks hidden SSID with the same password, so that the team can just connect when they are onsite at our clients places.
3 Teleport & VPN  Info Sent to toby@phoenixgeeks.us
Notifications Correct

Clients Related To This Knowledgebase

KB Graphics About This Topic

Other Knowledgebase Articles

Share This Knowledgebase Article

Protected: Standard Network Setup

Article

Clients Related To This Knowledgebase

vLAN:

20 - Guest 173.1/24

  • Configured to work with Facebook Wifi for the restaurant

30 - Admin 4.0/24

  • Can be changed to existing IP schemea in use.

40 - Toast 192.1/24

60 - IoT 186.1/24

  • TV's, Thermostats, Light Bulbs, Cable Boxes, Satelite boxes, etc on this network.

173 - DevmgmtNet (see SS , 10.*.*.1/24)

  • All devices, you will assign all network devices an IP on this network following the specs below.  By assign all of our offices with their own 10.*.*.* network, we can keep a VPN to all of their devices, to monitor without having to worry about IP conflicts.  It is important that we keep the IP assignments spreadsheet up to date.  That will end up in the CRM, but for now it's at )

Wireless Names

  • Restaurant-Guest
    • Configured to use less than 25% of the available bandwidth
    • All traffic is isolated, so that no traffic can see other traffic.
    • Can be locked to your Facebook, requiring a check in for free internet
    • Is locked out after a set period of time
    • Can be auto turned off at set times of the day, to avoid neighbors or parkers from using your free bandwidth at night
  • Restaurant-POS
    • vLAN is locked down to ensure PCI compliance
    • All wireless and physical connections are audited monthly for compliance.
    • Ports are specific to these vlans
  • Restaurant-IoT
    • This is the network for TV's, satellite boxes, Light Bulbs, Cable Boxes, Thermostats, etc go on.
    • Each item on this network is isolated with it's connection
  • Restaurant-Staff
    • Staff/Admin network
    • All printers, etc should be configured on this network, or plugged into  a port on the network designated as staff network.

Default Network Layout
1.1 - Gateway UDM
1.2 - Border Switch
1.3 - Switch
1.4 - AP Switch
1.5 - Switch
1.6 - Switch
1.7 - Switch
1.8 - Cloud Key
1.9 - LTE Device
1.10 - DVR
1.11 - AP01
1.12 - AP02
1.13 - AP03
1.14 - AP04
1.15 - AP05
1.16 - AP06
1.17 - AP07
1.18 - AP08
1.19 - AP09
1.20 - AP10
1.21 - Phone Base W60B, W70B
1.22 - Phone Base 2
1.23 - Phone Base 3
1.24 -
1.25 -
1.26 -
1.27 -
1.28 -
1.29 -
1.30 - Power UPS Device <-- Wifi

 

Switch Ports Default Setup:

01 - 03 - AP
04 - 14 - POS
15 - 20 - Admin
21 - 22 - IoT
23 -
24 - If 24 port switch, uplink to Dream Machine Port 8

KB Graphics About This Topic

Other Knowledgebase Articles

Share This Knowledgebase Article