Thanks Martin.

Can the CISCO 877 Router (with build-in ADSL modem) act as firewall also? It has 4 ports but only one is used now. The router's password is controlled by M1 because we have no System Administrator. From your suggestion, I shall buy another wifi router+switch connects to one port of CISCO 877 and then connect a 24-port switch to the wifi router+switch and do the same for staff sub-net. In this case the 2 sub-nets are isolated by the wifi router+switch and the result is the PCs in student/public sub-net cannot access server and PCs in staff sub-net and vice versa. Is my understanding correct?

Shall I worry about the speed accessing Internet will be slower due to one additional router being added as I notice the wifi speed is always much slower than the fixed line connection (I use http://www.bandwidthplace.com/ to test speed and the wireless speed is normally 50% slower). What is the normal delay expected when one additional router is added? The wifi router+switch we are using now is Linksys WRT310N. Any suggestion of better make and model?

TIA

Lim Hua Eng

Martin Bähr wrote:
On Wed, Apr 28, 2010 at 12:00:40PM +0800, helim wrote:
Currently my office LAN setup is one common network for both office staff and the PCs in Computer Lab. We also have a Linksys WRT310N wireless router which is only for staff but we want to install another wireless router for students. The broadband is provided by M1 Connect (originally by Qala which was acquired by M1 last year) with 2MBPS fix IP with CISCO 877 router with ADSL function. I would like to re-configure the LAN to separate into 2 sub-nets such that the staff's sub-net is better protected from potential access by students or visitors. Can any experienced network experts provide some advice? Thank you very much.

does not seem to complicated (in theory), you need to physically seperate
the two networks and put a firewall between them.

how easy the physical seperation is depends on your office layout.

in general:

internet---firewall(cisco)---wifi router+switch---lab computers
                |
     wifi router+switch
                |
         staff computers

i have a similar (more complex) setup using linux and iptables

greetings, martin.


_______________________________________________
LUGS Mailing list - [email protected]
List FAQ: http://wiki.lugs.org.sg/LugsMailingListFaq
Info page: http://www.lugs.org.sg/mailman/listinfo/slugnet
To unsubscribe send an empty email to: [email protected]

Reply via email to