Advice on setting up a new network for a small business
Posted on 2016-11-04
The company is moving into a new location and planning on putting in some new equipment.
I currently have a pfSense Firewall that has been working great for us for the past year after our SonicWall died and would like to keep it.
We've acquired for the new office the following equipment.
1 x ERPro-8 EdgeRouter 8-Port Advanced Network Router
3 x EdgeSwitch 48 Lite 48-Port Managed Network Switch
1 x Ubiquiti Networks EdgeSwitch ES-48-500W 48 Port PoE Gigabit Ethernet Switch
5 x Ubiquiti Networks UAP-AC-PRO-5 UniFi Access Point Enterprise Wi-Fi System
We will have 2 Fiber connections, a 1000/200 that will be used for general internet traffic and a 200/200 that will be used for a few Site to Site VPN and 10-15 VPN users.
I know that the EdgeRouter can also act as a UTM box, but I would really like to keep the pfSense box in place and have moved it from a Whitebox PC to a Dell PowerEdge 1950 III with Dual X5450 CPU's, 32GB RAM, (2) 73GB 15K drives for OS and (2) 146GB 15K drives for DATA and a Quad Intel I350-T4 PCI-E Network Adapter.
Our internal network will have about 100 PC's and 50-75 mobile, tablet, gaming devices.
What I'm trying to figure out is what would be the best solution for maximum throughout.
WAN <--> pfSense(NAT/Firewall/VPN/IDS) <--> EdgeRouter (as router only) <--> LAN (4-6 VLAN)
WAN <--> EdgeRouter (as router only) <--> pfSense(NAT/Firewall/VPN/IDS) <--> LAN (4-6 VLAN)
Or, do I ditch the EdgeRouter or pfSense and just have one? I'm still learning more about Networks and VLANs ramping up and fast as I can.
Any suggestions are greatly welcomed and truly appreciated.