# Network Topology Diagram
**Current diagram saved:** `_attachments/network-topology-diagram.png`
## Three-Location Network Architecture
The RAT network infrastructure connects three physical locations:
### FTMA Building (Entry Point)
- **SFP Panel** - Fiber optic connection point
- **Patch Panel** - Copper patch connections
- **Cisco Internet Switches** - WAN entry and initial routing
### IDF Room (Distribution Hub)
**Main switching and routing location**
- **SFP Panel** → Connected to Machine Room via fiber
- **Patch Panel** → Local copper connections
- **Ubiquiti Gigabit Network Switch (Dante)** → Dedicated Dante audio network
- Connected to 850 D1-16 (or 900 D1-16? - needs verification)
- **Cisco 3850 Switch** (primary)
- **Cisco 3850 Switch (internet)** - WAN-facing switch
- **Cisco 3850 Switch** (tertiary) - Purpose unclear
- **Ubiquiti Router** - Primary router (likely public/private network boundary)
**Fiber connections to Machine Room:**
- 850 D1-15 and D1-16 noted in diagram
- 900 D1-16 and D1-18 also mentioned (conflicting labeling - needs physical verification)
### Machine Room (Equipment Location)
**High-bandwidth equipment and storage**
- **Dante Uplink** → To Dante network in IDF Room
- **NDI** connection → Video over IP
- **Internet Uplink** → High-speed internet connection
- **NAS** → Network-attached storage (connects to Computer and SSL)
- **Computer** → Connected to NAS
- **SSL** console → Connected to NAS
- **Netgear 10 Gigabit Switch** → High-speed switching for audio/video equipment
### Legacy Equipment Section
Equipment that may be in use or being phased out:
- **PoE Switch**
- **D-Link Web Switch**
- **SSL Switch**
## Key Infrastructure Questions
### 1. SFP Label Discrepancy
**Issue:** Diagram shows conflicting labels
- IDF Room connections labeled: 850 D1-15 and 850 D1-16
- Annotation states: "850 D1-15 and D1-16 are in machine room. I think 850 D1-16 is mislabeled as 900 D1-16"
- Another annotation: "900 D1-16 and D1-18 are in machine room. I think 850 D1-16 is mislabeled as 900 D1-16"
**Action needed:** Physical verification of actual fiber labels in both IDF Room and Machine Room
### 2. Public/Private Network Boundary
**Question:** Where does internet transition from public to private?
**Hypothesis:** Ubiquiti Router in IDF Room is the boundary point
- **Upstream (public):** Cisco Internet Switches handle WAN connection
- **Downstream (private):** All IDF Room and Machine Room equipment on private network
**Needs confirmation:**
- Router configuration review
- IP address scheme documentation
- NAT/firewall rules verification
### 3. Cisco 3850 Switch Roles
**Three Cisco 3850 switches in IDF Room:**
1. One labeled "internet" - Likely upstream to WAN
2. Two others - Purpose unclear (redundancy? VLANs? separate network segments?)
**Action needed:**
- Document port assignments for each switch
- Identify inter-switch connections
- Determine if running spanning tree or stacking protocol
### 4. 10G Connectivity
**Netgear M4300-52G-PoE+ specs:**
- 2 x 10G Ethernet Ports
- 2 x 10G SFP+ Ports
**Question:** How are these being used?
- SFP+ to IDF Room via fiber?
- Direct connections to NAS?
- Dante network uplinks?
## Network Segments (Hypothesis)
Based on equipment, likely network segments:
1. **WAN Segment** - Cisco Internet Switches to Ubiquiti Router
2. **Management Network** - Switch management interfaces
3. **Dante Audio Network** - Isolated on Ubiquiti Dante switch
4. **General Infrastructure** - NAS, computers, SSL console
5. **High-Speed Production** - 10G connections for media transfer
**Needs verification:** VLAN configuration, IP schemes, routing between segments
## Diagram Reference
![[network-topology-diagram.png]]
## Next Steps
1. Physical site survey - verify all equipment locations and labels
2. Document IP address schemes for each segment
3. Review switch configurations - port assignments, VLANs, routing
4. Resolve SFP labeling discrepancy
5. Create detailed connection map with cable IDs
6. Document the public/private network boundary explicitly