Ok, so today is ZERO day. We are moving forward with our fiber conversion and I would really like to keep my job. This is a continuation from this abandoned post.
Here are the details. We are starting with 4 sites.
Site A is the center point and where all servers and internet are located. We have a Cisco 2821 router (configs posited below). This site will have traffic on VLANS, 1(native),10 , 20 and 30.
Site B is a security critical site. We have a Cisco 2811 router (configs posted below). This site will be on his very own VLAN 100, and should be able to access VLAN30
Site C is part of VLAN20, and should be able to access VLAN 30, and certain resources on VLAN 100.
Site D is part of VLAN 20 and only needs access to VLAN 30
VLAN 1 native
VLAN 10 Management <------should be able to access everything
VLAN 20 Basic Users
VLAN 30 Servers
VLAN 40 High Security
Like I said above. This is only a starting point. We have several other sites that will either be part of VLAN20 or on there very own VLAN. I firegure once I get these 4 up and talking the rest will fall in to place as needed.
Please see my diagram and the configs that I will post in comments below