Network Planning

The KVM hosts in this setup has 4 network interfaces each. These interfaces are meant to be used in the following networks:

Some of the domains will only have access to one of these network devices, some of the domains will have access to several of them.

Internal Network

This is the network we really want to protect. This is where our critical data is. From here there will be access to the internet.

Guest Network

Guests will have internet access, but will not have access to the internal network.

Internet Access

Public access to the system.

Network Monitoring

Goal is that all traffic on all networks is mirrored to this network. This way the entire network can be monitored and possible threats can be identified before they become a real problem.

