Skip to main content

Small Business and The Data Network.

The Network is important to businesses of all sizes.  In the not-too-distant past, the idea of a computer network, especially for a small business, was a novelty and while it would be nice, it was largely unnecessary.  Many transactions were done on paper.  Phones, and not email, was the primary way many businesses communicated with their customers. 

Email, online banking, credit card terminals and transactions, have all become critical for most every profession.  Even the smallest business relies on its network.  If you have a waiting room, customer WiFi may be even a critical component of keeping your customers coming back.  Yet, many small and medium-sized businesses don't take the network seriously until it isn't working or they have a compliance issue to deal with.  The stock cable modem router and an AP and switch from your local electronics store will do, right?

The truth of the matter is this approach is costing the business owner too much time and leaving them without certainty as to whether it's setup correctly or in a secure fashion.  The small business owner has plenty to do without worrying about making sure their customer WiFi isn't a security risk for the rest of their business.
Stop spending so much time tinkering with your business technology!  Focus on what you are in business to do.
A business, at any size, needs to be doing more than just "getting online."  Intrusion Prevention, Malware filtering, segmenting the business from their customer WiFi, all need to be considered.  These tools of the enterprise are accessible to anyone who knows where to look.  

So where do you look?  I  highly recommend that any business owner find a reputable company that can advise and design a solution that can give them the peace of mind they need.  Whether you are a realtor,  a tax accountant, or maybe a dentist, you are a professional at what you do.  You wouldn't recommend that your friends and family just go ahead and perform their own root canal until their business is a little bigger.  Find a professional for your network.  It will cost you a little more than the DIY approach, but it can bring the support system you need to your network. 

Just because you are going with a professional doesn't mean you need the latest enterprise solution either.  For a switch, firewall, and a couple APs, along with annual licensing you could easily spend upwards of $10k, but you don't have to.  There are a lot of options that are more suited to smaller businesses.  I personally like Cisco Meraki or Ubiquiti's Unifi.  There are trade-offs for both, but either solution can offer you a decent solution that includes wireless, VLANs to segment, firewalling, and IPS.  Both can include an easy to use video surveillance system too. 

Many local networking specialists can offer you a managed service too.  This means you can even structure your network as an operational (opex) expenditure instead of a capital (capex) expenditure and you get a built-in support contract with a service level agreement.  This is a great option of you want to go the full "hands-off' approach to your network. 

You should be a professional at your area of expertise, focus on bettering your business.  And you should find a professional for your network too. 

Comments

Popular posts from this blog

Firepower Threat Defense HA Upgrade

Upgrading an HA Pair of Firepower 2110s in FTD mode ~~~~~~~~~ UPDATE!!  ~~~~~~~~  As of FMC and FTD 7.0 this process is much more straightforward.  Readiness Check is now enabled for an HA pair of firewalls.  After pushing the update to the appliances, you can go into the upgrade screen and select both and do the "Check Readiness" button on both and wait for the results prior to doing the install.  ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ If you are like me you don't upgrade an FTD appliance often enough to remember the procedure. Today I installed the 6.3.0.1 update to an HA pair of FTD 6.3.0 2110s. This document assumes you have already updated the Firepower Management Center (FMC). Download Updates to the FMC From the FMC click on "System" then the "Updates" tab. If the update desired is not listed, click the "Download Updates" button. Push the update to the HA pair of devices Click the button on the far right marked "Push or Stag...

Nexus 7000 as a Collapsed Core/Distribution Switch

I work for a mid-sized business that continues to grow and utilizes a lot of bandwidth.  While we had a 6513 in our core that continued to operate just fine, it was beginning to show it's age.  We had maxed out the 10Gig capacity and really had need of chassis redundancy in our core.  We already had Nexus 5000's in our Data Center as well as Nexus 1000v in our virtual environments, however using Nexus as your core routers is a completely new challenge.  I had spent several weeks reading up on vPC limitations and the advantages Nexus 7000 has with certain FHRPs but actually doing it, after more than a decade of installing only Catalyst switches into the core of networks, was a new challenge.  This is my first, and perhaps last post but I think that an actual working design and configs may bring some value to those of you out there who, like me, have a little network know-how but little or no experience with Nexus. The image above is the actual design of ou...

Let's Encrypt for IIS with Win Acme

  I finally think I have my arms around using Win Acme for IIS to generate and renew site certificates for "Let's Encrypt."   I know this should be simple, but for some reason, I continue to mess it up by trying to make it more complicated than it is.   There are a lot of options in Win Acme, but I do not need to deal with most of them.     Win Acme can be found at:   https://www.win-acme.com/   More on Let's Encrypt:   https://letsencrypt.org/   Edit Site bindings in IIS.   Add both internal and external DNS names and ports.     Add the DNS Name in the hostname field.     Run Win Acme as administrator.     Work through the prompts for IIS (most of the default options should be fine).       Win Acme should create the certificates and replace the existing certificates in IIS with the  new...