Secure network foundation

Posted on 2011-09-21
Last Modified: 2012-05-12
I am trying to complete this network solution build. The network consists of:
8 Mb shdsl from the ISP > cisco rv042 > (4x) cisco sf-200

The goal is to supply connectivity for the property staff (local & vpn), guests/reidents (wired/wifi). am considering swapping the rv042 for an cisco 871 and adding a cisco 5520 asa. Any recommendations.

Also, some residents carry their own wrt's etc, how do I effictively reduce any side effect of this.
Question by:CliffordJ
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
LVL 15

Expert Comment

by:Robert Sutton Jr
ID: 36571991
It looks like your top line has the capability to achieve what you want to do for you build. Although, Im not sure about how many users you are talking about, but the RV042 has a decent set of Firewall options available for your vpn setup. Furthermore, not sure which SF (24 or 48) model you have but should allow you enough for future capacity on users.
   If some users have their own SOHO type equipment, then it would be best to use an Ip address scheme other than the typical "" network in your equipment as to avoid VPN issues for your remote users. Hope this helps.

Author Comment

ID: 36573273
I am using sf-200 24's and 48. The property has about 60 rooms, plus a desire to implement wifi at key locations.
LVL 26

Assisted Solution

Soulja earned 125 total points
ID: 36574029
Is this a free service you are offering to the 60 rooms. This is the only reason I can understand using low grade equipment for this solution.  8mb internet connection for 60 rooms? That is not even worth providing. You really need to up that pipe drastically.  I don't see a reason for you to add a firewall and a router. Do one or the other.

I would get at least a 2800 series Cisco router, i.e. 2811, or just the ASA. If router, just use the Zone Based firewall feature set.
The switches may suffice for your purposes, but even 2960's would be better.
I would definitely increase the Internet to the highest you can get within your budget, as it seems that this solution is for using that connection.

Also, get some decent AP's. I personally like the Cisco WAP 4410n's.
Free NetCrunch network monitor licenses!

Only on Experts-Exchange: Sign-up for a free-trial and we'll send you your permanent license!

Here is what you get: 30 Nodes | Unlimited Sensors | No Time Restrictions | Absolutely FREE!

Act now. This offer ends July 14, 2017.


Author Comment

ID: 36921848
Waited for someon to comment

Accepted Solution

CliffordJ earned 0 total points
ID: 36921876
I had to find my own solution; using a cisco 2800 router would allow L3 network control and capabilities. Separate vlans for voice, data, guest, and admin. Additional vlans can be added for expansion.

Such a solution does indeed need a serious bandwidth source to accommodate for demand. Freer not, supply creates demand and demand requires supply.

For tight budgets, cisco offers metro and service provider grade equipment on their smb product line also. I recommend others not to make the mistake of taking on a project without first verifying that the client is just as committed as the contractor, otherwise you get scraps for your budget and a mission impossible.

Author Comment

ID: 36924542
I've requested that this question be closed as follows:

Accepted answer: 125 points for Soulja's comment http:/Q_27319242.html#36574029
Assisted answer: 0 points for CliffordJ's comment http:/Q_27319242.html#36921876

for the following reason:

There were a couple key points that were left unanswered and I have mentioned in brief.
LVL 26

Expert Comment

ID: 36924543
Object to closing comment of author and point assignment. The key points he mentions were "left unanswered" were never in his original question or asked until his final posting. I recommended the 2800 router in which the author states he is usings, so he did not "find his own solution".

Expert Comment

by:South Mod
ID: 36954241
Following an 'Objection' by Soulja (at to the intended closure of this question, it has been reviewed by at least one Moderator and is being closed as recommended by the Expert.
At this point I am going to re-start the auto-close procedure.
Thank you,
Community Support Moderator

Featured Post

Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Data center, now-a-days, is referred as the home of all the advanced technologies. In-fact, most of the businesses are now establishing their entire organizational structure around the IT capabilities.
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

717 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question