I have a network architecture question that I can't
figure out. Here is what I need to accomplish:
I have a NT 4.0 domain. I need to integrate a vendor application that runs on two servers running Windows 2000 and requires Active Directory. Because of the
Active Directory requirement I cannot add the servers directly to my network and need to set them up as their own domain.
At the Central Office the broadband comes into the Ethernet0 port on the PIX and the Pix's Ethernet1 port connects to a Catalyst 2900 series switch. The router at the Central Office has just one ethernet port (no WIC-1ENET card) and that port connects to the same switch.
The Remote Sites connect back to the Central Office through Site-To-Site VPN's from their 1750's back to the PIX 506 and would need to be able to access the new vendor application in the new domain. The routers at the Remote sites have a WIC-1ENET card that is connected to a broadband modem and their on-board 10/100 port is connected to a switch.
Here is rough facsimile of my network setup:
Central Office:
Broadband Modem --> Pix 506-->
--> Catalyst 2924XL Switch
1750 Router-->
(192.168.1.x, 255.255.255.0)
Remote Site 1:
Broadband Modem ---> 1750 Router (192.168.2.x,255.255.255.0)
Remote Site 2:
Broadband Modem ---> 1750 Router (192.168.3.x,255.255.255.0)
RemoteSite 3:
Broadband Modem ---> 1750 Router (192.168.4.x,255.255.255.0)
Remote Site 4:
Broadband Modem ---> 1750 Router 192.168.5.x,255.255.255.0)
What I would like to do is add a router at my Central Office to the existing network, 192.168.1.x, and make it the 192.168.6.x network and place the new servers behind it. Because my Server Room and Phone Closet are in different locations at the Central Office, I would need to daisy-chain the new router for the 192.168.6.x network off an existing switch which has a 192.168.1.x. Assuming this is possible, how can I ensure all sites and the Central Office can access the new servers?
I just need someway to set these two servers off by themselves so they can have their own domain and still be accessible to the corporate network. I have never had to put a router behind another router and haven't the foggiest idea how to proceed. Is there a differnet solution and I'm just making this needlessly difficult for myself?
Thanks In Advance
figure out. Here is what I need to accomplish:
I have a NT 4.0 domain. I need to integrate a vendor application that runs on two servers running Windows 2000 and requires Active Directory. Because of the
Active Directory requirement I cannot add the servers directly to my network and need to set them up as their own domain.
At the Central Office the broadband comes into the Ethernet0 port on the PIX and the Pix's Ethernet1 port connects to a Catalyst 2900 series switch. The router at the Central Office has just one ethernet port (no WIC-1ENET card) and that port connects to the same switch.
The Remote Sites connect back to the Central Office through Site-To-Site VPN's from their 1750's back to the PIX 506 and would need to be able to access the new vendor application in the new domain. The routers at the Remote sites have a WIC-1ENET card that is connected to a broadband modem and their on-board 10/100 port is connected to a switch.
Here is rough facsimile of my network setup:
Central Office:
Broadband Modem --> Pix 506-->
--> Catalyst 2924XL Switch
1750 Router-->
(192.168.1.x, 255.255.255.0)
Remote Site 1:
Broadband Modem ---> 1750 Router (192.168.2.x,255.255.255.0)
Remote Site 2:
Broadband Modem ---> 1750 Router (192.168.3.x,255.255.255.0)
RemoteSite 3:
Broadband Modem ---> 1750 Router (192.168.4.x,255.255.255.0)
Remote Site 4:
Broadband Modem ---> 1750 Router 192.168.5.x,255.255.255.0)
What I would like to do is add a router at my Central Office to the existing network, 192.168.1.x, and make it the 192.168.6.x network and place the new servers behind it. Because my Server Room and Phone Closet are in different locations at the Central Office, I would need to daisy-chain the new router for the 192.168.6.x network off an existing switch which has a 192.168.1.x. Assuming this is possible, how can I ensure all sites and the Central Office can access the new servers?
I just need someway to set these two servers off by themselves so they can have their own domain and still be accessible to the corporate network. I have never had to put a router behind another router and haven't the foggiest idea how to proceed. Is there a differnet solution and I'm just making this needlessly difficult for myself?
Thanks In Advance