20-Floor Campus Network - SDWAN and Cisco Secure
About This Architecture
SD-WAN overlay with dual MPLS/ISP-2 paths and Cisco Secure Access cloud firewall protects a 20-floor campus LAN spanning three distribution zones. Traffic flows from Internet through Secure Access PoPs and SDWAN edges into active/standby Firewall-A/B, then to redundant Catalyst 9500 core switches managing six VLANs across 25 access switches per floor. This architecture delivers carrier-grade availability, granular segmentation for corporate, voice, wireless, management, IoT, and guest traffic, and cloud-native security without on-premises inspection bottlenecks. Fork and customize this diagram on Diagrams.so to model your own multi-floor topology, adjust VLAN counts, or swap Cisco components for alternative vendors. The three-tier distribution design with active/standby pairs at every layer ensures sub-second failover and zero single points of failure.
People also ask
How do you design a 20-floor enterprise campus network with SD-WAN, cloud firewall, and zero-trust security using Cisco Catalyst switches?
This diagram shows a three-tier Cisco architecture: SD-WAN edges with dual ISP/MPLS paths feed Cisco Secure Access cloud firewall and active/standby Catalyst 9500 cores, which distribute to three zones of Catalyst 9300 switches (floors 1–7, 8–14, 15–20), each feeding 25 Catalyst 9200 access switches per floor across corporate, voice, wireless, management, IoT, and guest VLANs. Active/standby pairs
- Domain:
- Networking
- Audience:
- Network architects designing enterprise campus networks with SD-WAN and zero-trust security
Generated by Diagrams.so — AI architecture diagram generator with native Draw.io output. Fork this diagram, remix it, or download as .drawio, PNG, or SVG.