
Starting point
Users, servers and devices all sat in the same flat network. Broadcast traffic weighed on operations, and an incident on one device could have spread unchecked.
What we built
Analysis of the existing network, then a split into smaller, manageable segments using VLANs. Dedicated VLANs and subnets were created for user and device groups, assignments set cleanly, and communication between segments limited to what is actually needed.
Result
Access is controlled, broadcast domains are considerably smaller, and a security problem stays inside its segment instead of spreading across the network.
More references
Central camera system with network segmentation
Security staff access the cameras they are cleared for from one place, recordings are retained correctly, and video traffic no longer loads the data network. An incident in the camera segment does not spread to other segments.
Corporate ITDisaster recovery across two sites
Critical systems keep running at the second site in an emergency. Downtime and the risk of data loss are significantly reduced, and the dependency on a single site is gone.
Corporate ITPhysical servers virtualised (P2V)
The hardware dependency is gone. Backup, restore, migration and resource management now run through the virtualisation layer instead of hardware appointments.