How to implement backup and restore in an enterprise

As a follow up to the best practice design for networks, here is an addition for backup and restores. The diagram above shows how to do backup and restores in an enterprise. The traffic does not flow through firewalls or across a live production interface. The backup and restores are done on separate NICs installed in the servers.
  • Use is made of Cisco switch protected ports.
  • The backup and restore VLANs are non-routed.
  • Assign a supernet, e.g. 172.18.x.x /16 and subnet it down to /23 per VLAN. Bin (or nul route) these addresses on all firewalls and network choke points and core routers.