Hi,
"Himura" <> wrote in message
news: oups.com...
> Hi Guys,
>
> I am trying to re-design a network for the company I work for but dont
> quite have the right idea's, so I hope you guys can help me out. Ok...
> The network currently consists of a single PIX 515 and the ISP border
> router, I have been asked to enable the network to be ready for a
> global MPLS network and to connect various internal subnet's together -
> there are 2 distinct networks currently. I understand that I need a
> layer 3 device somewhere to do the routing. I was going to use a Cisco
> layer 3 switch, as all interconnects are either FE@100mbps or some type
> of RJ-45 presented MPLS WAN link, on the internal LAN sitting between
> the LAN and the PIX.
>
will you have direct links between your networks and enable MPLS on your own
network (why?) or will your provider make MPLS VPN for interconnecting your
networks through their MPLS cloud? In later case the only thing you need to
be concerned with is how routing will be done. Think of providers MPLS cloud
as a single router where all your networks are connected to. So you will
need to make routing between your networks via this single "virtual" router
of the provider (yes, even there are many routers on the provider network
you won't see them). Most of the work will actually be done by the provider
and will be transparent for you.
> I have just realised that the PIX has various entries for different
> internal hosts allowing certain ports that would quite clearly not work
> if I put that switch on the inside between it and the internal hosts. I
> was planning on leaving the internal IP address scheme as is, and
> re-designing from the switches external interface outwards, therefore
> altering the PIX's internal IP address.
>
It's rather difficult to visualize your current and future networks based
just on the description. Do you have a network diagram (in ASCII format)?
By the way, if it's your provider who will make MPLS VPN for you, what's
name of it?
Kind regards,
iLya
|