Hello! This will be a bit messy and all over the place.
This thread like my network is very organically grown over time.
Current state of the setup:
It is a mess, let me explain:
- The “NAS” is actually 4 devices running BeeGFS
- Yes, I have landline phone via VoiP/SIP and would like to keep that working
- The link from the router to the CRS309 is management only, to keep the NASes and Server off the interwebs (because shitbox router can not do VLANs or other useful features…)
- My computer and my secondary are in both networks so they can see the Scope, NAS and have Internet
My integrated Services Box (Modem/Router/Switch/etc.) is acting up a bit. I bought it when money was tight.
Problem is that DHCP is not working right, or not at all depending on moon phase or whatever.
My current workaround is to have the SFP+ switch be the brain of the operation providing DNS and DHCP for the Network with static IP between it and the router.
Only devices with SFP ports currently have network access!
Thoughts for resolving this:
-
SIP: Buy one of those VoiP to analogue adapter boxes, 20€, easy
-
Modem:: Is technically working fine in the box I have, so I will use that unless it needs replacing
-
Router: I could either get a Firewall Appliance or Router to take care of this. Having a device with proper VLAN support would also make the existing setup less of a PITA to keep working
What to buy?
Phone should be as easy as using something like the Grandstream HT-801, point it at my ISPs VoiP-Server and go.
Having a Router or Firewall with some “pro” features would be great for home-lab purposes.
The Cisco C927-4p in the V/ADSL + WAN variety would be great since it would be drop-in replacement for the device causing this headache.
Alternatively, Sophos has the XGS 87 which would take its spot behind the existing router, and enable me to directly take Fiber from the ISP when that happens some time this or next year.
The cheapest route would be to keep the shitbox as a modem, plunk a Mikrotik CRS109 after it and go through all the config (like NAT, DHCP, DNS, etc.). Like the XGS 87, this would also make me ready for “direct-fiber™”.
Clear advantage in this is living with just one brand of stuff, so I will get faster dealing with inevitable problems.
My only gripe with this option is that MikroTik is not always on top of their security.
@felixthecat and @HaaStyleCat mentioned OPNsense and the appliances with it ready to run on it. I would need the 6 port model, or get another switch (which I would rather avoid). The FW6A-model in the configuration I think I want comes out at roughly the same price as the Cisco and Sophos options.
There is a poll to vote in over here in the poll thread. Has all except the OPNsense options to vote on.
So, what to do?