This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Best practice for protecting a business centre with multiple clients

Hi all, we have taken on a business centre as a client. They have a draytek firewall that has a primary and secondary internet connection but there is no segregation of the network between clients. All clients connect into the same network switches on the same Lan. The firewall is doing DHCP.

We will need to set it so that each client in the business centre is on a separate virtual network  - segregated from each other.

The business centre won't be providing any firewall services for the clients except for the staff of the business centre.

The business centre will need to ensure internet connectivity for all clients fails over to the secondary broadband line

 

based on the above I'm trying to figure out the best plan and looking for our suggestions as we are new to Sophos.

We are planning to put in an XG firewall to protect the staff of the business centre and their PC's but for setting up separate logical networks for each client - should we use this device as well or what I'm thinking is maybe we should either

(i) get a separate router and just use it for segregation and setup VLANs and then get VLAN compatible switches and set the required VLAN tag on the relevant ports for each office on the commonly used switches.

or

(ii) get in a separate XG and just have it do routing and configure VLAN's for each office on it. Put each office on a separate VLAN and then get VLAN compatible switches and set the required VLAN tag on the relevant ports for each office on the commonly used switches.

 

Let me know what you think.

Pity Sophos don't do switches as well.

 

Thanks

Gerry



This thread was automatically locked due to age.
Parents
  • Hey  

    Thanks for reaching out with your inquiry! I'm sure our community members will have different answers based on their own experiences.

    IMO, I believe a question of this scope would best be directed to one of our many Sophos Partners/Resellers. They would be able to get you in touch with our Sales Engineers to assist you in making an informed decision for your needs and specific network environment. They can provide specific feedback in regards to your network, proof of concept, implementation, and pricing.

    Best,

Reply
  • Hey  

    Thanks for reaching out with your inquiry! I'm sure our community members will have different answers based on their own experiences.

    IMO, I believe a question of this scope would best be directed to one of our many Sophos Partners/Resellers. They would be able to get you in touch with our Sales Engineers to assist you in making an informed decision for your needs and specific network environment. They can provide specific feedback in regards to your network, proof of concept, implementation, and pricing.

    Best,

Children
No Data