XabiX
Occasional Visitor
Hello SNB friends,
I have been reading a lot around but most of the time, I don't find a similar network to get the best ideas on how to setup my home network. Usually companies will have a network architect and security guru that would be able to help
Here is what I had in mind:
		
		
	
	
		
	 
MANY THANKS
XabiX
				
			I have been reading a lot around but most of the time, I don't find a similar network to get the best ideas on how to setup my home network. Usually companies will have a network architect and security guru that would be able to help
Here is what I had in mind:
- The OverTheBox it's a service to agregate several internet lines in one big pipe towards the internet. More on https://www.ovhtelecom.fr/overthebox/ (in French).
 - My switch is an Ubiquiti ES-24-lite which I was planning to segment with VLANs in WAN, CAM and LAN switches
 - I am planning to install a Pfsense VM on Virtualbox to replace the Asus AC87u that I am using today . So Pfsense will do the routing & FW while the Asus will do the AP.
 - Note the Host as only one NIC so I was thinking to use VLANs on the switch and on each server: NAS, OTB and Pfsense to separate the "physical' interfaces.
 
- Is this OK or too complex to have separate networks behind operators boxes? In other words should I flatten the networks and rely on the OTB to send it all (DMZ) to the Pfsense which will then route on the same LAN to other devices.
 - I am concern of the security of my NAS (host) in WAN network. I did put it there for CAMs to record the video streams. Otherwise I may have to put the CAMs and the NAS in the LAN side behind the Pfsense? then I can do a VPN from any public client to the Pfsense to get access to the LAN network
 - An alternative to simplify is to keep using the AC87u instead of the PSense (it can do VPNs etc... but I was concerned of is capability to sustain capacity/stability. Besides VLANs are not easily with the Asus merling fw manageable)?
 
MANY THANKS
XabiX
			
				Last edited: 
			
		
	
								
								
									
	
								
							
							
	