Resolution of network diskless networking solutions for Internet cafes with hundreds of machines

Source: Internet
Author: User
Tags secure vpn

How does one implement the network Networking Solution for Internet cafes with 100 machines?

For Internet cafes with 100 machines, a server should be used to guide about 50 workstations to set up a service area dedicated to surfing the Internet and video; another server directs the other 50 workstations to set up a dedicated game-based service area, where all PCs start in diskless mode.

In terms of Internet access, you can choose to access through two ADSL lines, each line serves as the Internet access exit of the two workstation. For vswitches on trunk lines, you can use vswitches with two Gigabit modules. vswitches can be divided into 802.1Q-based VLANs and port-based VLANs, in practice, VLAN must be set for this solution. You can select 24 common switches for vswitches and working groups. For the entire network structure, I believe that the overall system performance is stable and reliable, the upgrade space is large, and the two aspects of surfing the Internet and online games are taken into account to the maximum extent.

Main Network Equipment: 2 ADSL Modem and 2 ordinary SOHO broadbandVroOr a dual-WAN port Broadband Router, one network-managed gigabit switch, and five 24 common switches.

Networking of the diskless Networking Solution for Internet cafes with 100 machines

1. The optical fiber is directly connected to the Internet cafe, and then a optical fiber transceiver is used to convert the optical signal into a 10 M/M electrical signal. Optical fiber is used for access, featuring fast speed, good stability, low obstacle rate, and strong anti-interference ability.

2. A vro serves as the gateway of a LAN. This vro must meet the needs of Internet cafes in terms of its functions and performance. It is a hardware device dedicated to route forwarding and address ing, it is times more efficient than the computer host, and has excellent stability. The router must have dual Ethernet ports: one is connected to the optical fiber transceiver, and the other is connected to the switch. The connection media are network cables. Vro serves as a gateway with strong routing and forwarding capabilities, good stability, and high security. This ensures that machines in the LAN can access the internet securely without any worries and stay online for a long time.

3. Use a vswitch for internal LAN interconnection. Compared with the shared bus bandwidth of a hub, a vswitch uses an exclusive bandwidth, which far exceeds the Hub's function and performance. Vswitches greatly increase network utilization, reduce internal LAN conflicts, and increase internet access speed. The switch plays a greater role, especially when many machines run simultaneously.

Settings in LAN

The establishment of LAN is mainly about software settings. The following describes how to set up LAN. First, the Internet cafe also sets up a network based on the designed network, vswitches, and vrouters. Note the following when creating a network.

Correct use of bridge Devices

A bridge device is a network device used for the same network segment. If a bridge device is not properly used, the server prompts that the current network segment number should be the network segment number of the other party. Therefore, it is important to set network parameters to distinguish between "routing" and "bridge" Devices correctly.

Vswitch Configuration

Vswitches in the optical fiber access environment have good performance and strong compatibility. In addition to compatibility between vswitches in Internet cafes, the network compatibility and Stability of Internet cafes must also be ensured, it effectively solves the contradiction between the stability and reliability of the network system and the performance, and shields attacks from viruses and illegal intrusions.

In this article, we recommend that you set the speed and duplex mode of the switch port to be the same as that of the NIC. Otherwise, the speed may be extremely slow when a large amount of traffic load data is transmitted. Then, the TCP/IP attribute is set. If there are many Internet cafes on the machine, it is impossible for each machine to set the IP address. Therefore, the IP address is automatically obtained. Next, we need to configure a Broadband Router. The router of the Internet cafe is a very important device. Once the router of the device encounters a problem, the network of the Internet cafe will be paralyzed.

In the IE Address Bar, enter the gateway address in winipcfg, the WEB configuration IP address of the Broadband Router, and enter the user name and password. The initial value is admin to enter the configuration interface of the Broadband Router, select the "Setup Wizard" and set it step by step. When the "PPPoE" option is selected, enter the "User Name" and "Password" for the ADSL dial-up Internet access )", all the way to "Next)", you can connect to the Internet with a multi-host shared Broadband Router. This is only to meet the basic Internet functions, for Internet cafes, more must ensure the stability and health of the network. More advanced functions are required.

Advanced router function settings

Vro is a very important device in the network environment. In different network application environments, choosing a proper vro is often an important factor that determines the success or failure of network construction. When Internet cafes use fiber-optic access, you need to use a router that can connect to the fiber-optic network to ensure that the fiber-optic access to Internet cafes.

MAC functions of vro functions:

If a Broadband Router with a MAC address is used, write the MAC address on the NIC to the router, so that the server can verify the MAC address and obtain the broadband access authentication. MAC address control mainly has two functional settings.

1. Connection Control settings. You can use it to set which computers are allowed or prohibited from accessing the vro or Internet;

2. Bind the MAC address to the IP address. Binding is to prevent users from changing their IP addresses at will, or users who can use a MAC address obtain different IP addresses each time, which may cause an APR attack to the Internet cafe.

Vro function-Dynamic Host Configuration Protocol DHCP Function

Dynamic Host Configuration Protocol DHCP, Dynamic Host Configuration Protocol) is a Protocol for dynamically assigning and configuring IP addresses to clients on TCP/IP networks. The configuration parameters provided by DHCP to the client computer in the TCP/IP network are composed of two basic parts: one is to send dedicated configuration information to the client, and the other is the IP address assigned to the client. DHCP works in the customer/Server mode. When a DHCP server is used, the IP addresses used for Dynamic Allocation in the network will be managed in a unified manner, solving the address conflict problem, and the network administrator can avoid the trivial matters of manual setting and allocation of IP addresses. DHCP can automatically allocate IP addresses to customer workstations that log on to the TCP/IP network.

Vro functions-VPN Functions

Virtual Private Network (VPC) is a new network technology that provides us with a way to securely remotely access private networks within an enterprise through public networks. We know that a network connection usually consists of three parts: client, transmission medium, and server. VPN also consists of these three parts. The difference is that VPN connections use tunnels as transmission channels. VPN can use the Internet Public Network to establish a private network with autonomy. A secure VPN includes tunneling, encryption, authentication, access control, and review technology. For enterprise users, this function is very important, which not only saves money, but also ensures enterprise information security.

Vro functions-DMZ Functions

DMZ is a buffer zone between a non-security system and a security system to solve the problem that the external network cannot access the internal network server after the firewall is installed. Some public server facilities, such as FTP servers and forums, can be placed in this small network area. At the same time, it can protect the internal network more effectively, because it has an additional level than the general firewall solution. DMZ is mainly used to reduce the risks caused by the provision of services to untrusted customers. DMZ can separate public hosts from local network facilities. Most broadband routers can only enable the DMZ function for a single PC, and some more functional broadband routers can set up multiple PCs to provide the DMZ function.

Router functions-firewall functions

The firewall can scan its network data to filter out attack information. The firewall can also disable unused ports to prevent hacker attacks. In addition, it can also disable outbound information of specific ports and prohibit access from special sites. For Internet cafes, firewall is very important. When purchasing a router, pay attention to the firewall function of the router.

There are many designs for Internet cafe networking solutions. This article is only applicable to small-sized Internet cafes. You need to pay attention to other details.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.