DOWN 1000 MBit/sUP 100 MBit/s |+-------+---------+| Modem || Bridg-Mod |+-------+---------+ | 1GbE |+-------+---------+| OPNsense || Firewall |+--+---+---+---+--+ | | | | +------------+ - - - - - Mail | | | | VLAN-100 | + - - - - - WEB | | | +------------------10GbE SFP+---+ Server + - - - - - Cloud | | | | + - - - - - NAS | | | +------------+ - - - - - PLEX | | | +------------+ | | | VLAN-60 | +-----1GbE--Laser-Printer | | +----------------------10GbE SFP+---+ PC-Tower | | | | +---2.5GbE--Foto-Printer | | +------------+ | | +------------+-----------TV | | VLAN-40 | +-----------TV-Box | +------------------------------2.5GbE---+ Switch +-----------SONOS | | +-----------HUE | +---------------+ +------------+ | VLAN-20 | | +------2.5GbE---+ Switch PoE | | | +---+-------+---+ | | +------------+----------Laptop | | | +----------Smartphone | +------2.5GbE---+ UG AP WLAN +----------* GAST * | | +----------Kaffee | +------------+----------Netatmo | +------------+----------LS BAD | | +----------LS Bastel +--------------2.5GbE---+ OG AP WLAN +----------LS Schlafzimmer | +----------Smartphone +------------+
DOWN 1000 MBit/sUP 100 MBit/s |+-------+-------+| Modem || Bridg-Mod |+-------+-------+ | 1GbE |+-------+-------+| OPNsense || Firewall |+-------+-------+ | 2.5GbE |+-------+-------------------+| Ubiquiti || Switch Enterprise 8 || 10 Port || PoE || Level 3 |+---+---+---+---+---+---+---+| | | | | | | || | | | | | | | +------------+ - - - - - Mail| | | | | | | | VLAN-100 | + - - - - - WEB| | | | | | | +-----10GbE SFP+---+ Server + - - - - - Cloud| | | | | | | | + - - - - - NAS| | | | | | | +------------+ - - - - - PLEX| | | | | | | +------------+-----------Laptop| | | | | | | VLAN-80 | +-----------Smartphone| | | | | | +-------------2.5GbE---+ UG AP WLAN +-----------* GAST *| | | | | | | +-----------Kaffee| | | | | | +------------+-----------Netatmo| | | | | | +------------+-----------LS BAD| | | | | | VLAN-80 | +-----------LS Bastel| | | | | +-----------------2.5GbE---+ OG AP WLAN +-----------LS Schlafzimmer| | | | | | +-----------Smartphone | | | | | +------------+| | | | | +------------+| | | | | VLAN-60 | +-----1GbE--Laser-Printer | | | | +-----------------10GbE SFP+---+ PC-Tower || | | | | +---2.5GbE--Foto-Printer | | | | +------------+| | | | +------------+| | | | VLAN-40 | || | | +---------------------------1GbE---+ TV || | | | | | | | +------------+| | | +------------+| | | VLAN-40 | || | +-------------------------------1GbE---+ TV-Box || | | || | +------------+| | +------------+| | VLAN-20 | | | +-----------------------------------1GbE---+ Sonos || | || +------------+ | +------------+| VLAN-10 | |+---------------------------------------1GbE---+ HUE | | | +------------+
Also: Erst logisch segmentieren, dann verteilen. Und diese beiden Aufgaben liegen dann jeweils bei der Firewall und bei Level-3-Switch bzw, Unifi-APs (via Unifi-Controller).