Sanity check for my new network

I’m moving to a new condo with fibre internet and in-wall cabling, and am trying to map out my new network setup. I would love to get a second opinion on how the network is laid out. I’ll be replacing my current Netgate SG-1100 PfSense box with a mini-PC that’ll have Proxmox and a virtualized PfSense (first time doing that), and I’ll be upgrading to 2.5Gb ethernet as well.

Here’s my port diagram of the networking closet. Green is SFP+/10Gb, orange is 2.5Gb ethernet, blue is 1Gb ethernet.

Would love to hear opinions on if you think this makes sense, or if you think there’s a better way to lay this out.

If you are running new cables I would run two lines to each point, then have them in a LACP LAGG, doesn’t look like you have enough ports but it’s a once only activity and doesn’t cost that much more. If you need to add additional lines later it’s much more hassle.

Personally, I have several ports on my router, but I have those in a LAGG into my switch passing all the vlans. I find this to be the most effective for me as I don’t have much traffic and if something fails then I have some redundancy.

This is all in one network closet, so I can run whatever cables I want to each of the devices in there (if that’s what you’re referring to), but the wiring in the walls was done when the building was constructed, and I likely won’t be running new wall lines.

In terms of least hassle I think LAGGs are convenient, I have them between switches also. None have failed, but if a cable did I will have a second line, if I ever saturate one line there is a second. Pretty easy to setup for not much effort.

How fast is the fibre connecttion from the ISP? The current setup will limit NAS throughput at a maximum of 2.5G. Why not take the 10G from the NAS and connect it to the 10G on the Switch that should provide more bandwidth to multiple clients at 2.5G speeds. Theoretically 4 clients could access the NAS at full 2.5G speed. Also change the two 2.5G from pfSense to LAGG to the Switch for redundant connection. Improve WiFI by connecting the USW-Lite directly to the 2.5G Switch no need to route your wifi traffic most likely.

@Steve1

  • Fibre from the ISP is 1-3Gb (gonna start with 1Gb, and maybe go higher at a later date)
  • Moving the 10G to NAS->switch is a good idea. I had moved it to pfSense->switch, but this is a better setup
  • Based on neogrid’s/your recommendations, I’ll be LAGGing the pfSense 2.5G ports and moving the USW-Lite to the 2.5G switch

Thanks! Updated layout below: