My current setup, is one "server", around 30 IoT devices (e.g. switches, outlets, TVs, game consoles, etc.), 10-15 "trusted" devices (laptops, phones, tablets), and 4 cameras (all for 5 people). Right now, the various devices are all on their own, respective VLAN ("Main", IoT, Video), and I'm doing router-on-a-stick from my Ubiquiti EdgeSwitch 16 (which apparently doesn't do L3 very well) to a Ubiquiti EdgeRouter 4, over a 1-gig connection between the two. Thus far, the router doesn't seem to be bogged down or anything.
I've recently added 4 actual servers, a 15-bay enclosure and drives, and a Brocade ICX6610. One server is TrueNAS hooked to the external enclosure, one is for serving things (e.g. Plex/Jellyfin, NZBGet, Sonarr, Radarr, etc.). Of the other two, ONE is going to be an OPNSense machine, and I'm not sure what to do with the other one (Windows AD?). The EdgeSwitch 16 will be replaced by the Brocade ICX6610, and the EdgeRouter 4 will be replaced by the OPNSense machine, with a 10-gig connection between it and the Brocade.
Part of me wants to keep router-on-a-stick, like I have it now, but I realize that I won't learn anything new, nor will I be taking full advantage of what my newly-acquired switch is "good" at (better than my old one, anyway). The other part of me wants to lean on the capabilities of the switch. So, do I go full inter-VLAN, or keep with router-on-a-stick?
The other thing I'm wondering about, is, if I go the inter-VLAN route, how much do I punt to the switch? Do I run DHCP on the switch? Are there any good guides to doing this sort of thing?
I've recently added 4 actual servers, a 15-bay enclosure and drives, and a Brocade ICX6610. One server is TrueNAS hooked to the external enclosure, one is for serving things (e.g. Plex/Jellyfin, NZBGet, Sonarr, Radarr, etc.). Of the other two, ONE is going to be an OPNSense machine, and I'm not sure what to do with the other one (Windows AD?). The EdgeSwitch 16 will be replaced by the Brocade ICX6610, and the EdgeRouter 4 will be replaced by the OPNSense machine, with a 10-gig connection between it and the Brocade.
Part of me wants to keep router-on-a-stick, like I have it now, but I realize that I won't learn anything new, nor will I be taking full advantage of what my newly-acquired switch is "good" at (better than my old one, anyway). The other part of me wants to lean on the capabilities of the switch. So, do I go full inter-VLAN, or keep with router-on-a-stick?
The other thing I'm wondering about, is, if I go the inter-VLAN route, how much do I punt to the switch? Do I run DHCP on the switch? Are there any good guides to doing this sort of thing?