Answer the question
In order to leave comments, you need to log in
How to connect the server (through a router or switch)?
Good day!
I'll start by thanking you for not passing by (even if you don't solve the problem).
To begin with, I want to buy such a mini-server HP ProLiant Micro-Server hard.rozetka.com.ua/hp_proliant_microserver_658553... .
Make it a web server (Apache, nginx, MySQL, php, phpmyadmin, etc.).
And launch several sites on the Internet.
What I have:
- Strength, hands, head
- Channel 1 Gb / s
- Electricity
- If possible, I can get an uninterruptible power supply
The essence of the question: I have a twisted pair cable coming into my apartment (it goes 1 Gb / s), it reaches the right room and all.
What should be placed directly in the apartment, right at the entrance (router, switch, router)?
- Tasks at home: to have a fast Wi-Fi (N standard) and several gigabit LAN ports.
I have a TP-LINK TL-WR1043ND (gigabit) router, but it does not pass more than 200 megabits through itself, that is, it somehow holds the 1GB / S standard, but actually 200 megabits. What do i do?
Buy a more expensive version of the router (I heard that the Asus RT-N66U passes through itself more than 800 megabits)?
Or how can I get out of this situation? It is not obligatory to use a router, the one that I have. Just find a rational solution.
Also interested in how to secure the server? I know that routers have SPI, firewalls, DDoS protection and more.
Thank you for your attention.
Answer the question
In order to leave comments, you need to log in
If you really have a channel to the world at 1Gb / s, which I don’t really believe in, then you can:
Option 1. Buy another modification of the server , which has two Ethernet ports, or buy an ethernet card and use the server also as a gateway to the Internet. The router will be used as an access point and a switch.
This is the most correct option, but the most laborious. It is also unlikely that you will be allowed to use gigabit completely, re-read the contract.
Option 2. Take another smarter router and use it to distribute the Internet. We also need to do port forwarding to the server (or DMZ). Since the server is not very powerful, the option is quite normal. The option is suitable when the server is not heavily loaded from the world.
Nuu ... look for routers that can natit 1 gigabit. And xs what kind of connection do you have there for the outside. Since natit dhcp is one thing, and RPPPoE is another. I can immediately say that the pieces of iron are not cheap in this class. You can plug the server directly into the network, raise ESXI on it. Deploy Kerio Control or Mikrotik And direct all traffic from them to other virtual machines. Again, you need to look how much you can push through in such a situation.
On the server, we raise the virtualization www.proxmox.com
In a separate virtual machine, we raise the soft router routeros\vyatta\
add_to_taste We start uplink through a separate network card, or in a separate vlan if there is a managed switch . We
connect the rest of the network users, wifi point and others through the switch.
It all depends on what type of authorization your provider has. In general, personally, in your situation, I would advise all routing, firewalls, DDoS protection, etc. destroy on the server. This router in Nata mode is rather sad, especially if pptp or pppoe. So, if you don’t buy anything, we install an alternative firmware with vlan support (for example, DD-WRT) on the router. Further, the scheme is as follows, for convenience, imagine that the Internet comes to port 1 of the router, the server is connected to port 2.
Internet -> nic1 (vlan 2 pvid) -> (vlan 2 tag) hp server (authorized on the server, got the Internet raised nat, DHCP, dns other, now we return the Internet to the router) -> vlan 1 pvid we bridge on the router with wlan (wifi in the speech of the bridge).
I hope I didn’t write very chaotically what such a perversion will give us:
1) We do not load the router with natom and authorization, in lan mode it works quite tolerably and will give a decent Internet speed to the server.
2) All the services we need are more flexibly configured on the server; it is more powerful and has more features.
3) We give the channel for Wi-Fi already from the server to the router, so we minimally load the router with "smart" tasks and it works for us as a gigabit switch + access point.
Well, in general, the second network is better and not to bathe.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question