Skip to content
Client login

Free Audit

Infrastructure

Switch / router configuration

Separating uses and documenting the configuration — because equipment left on factory settings is an open door and a future outage.

A switch or router out of the box works. That is precisely the problem: it works well enough that nobody configures it, and the consequences only appear later, as unexplained slowness or as an access nobody knew existed.

Two things are worth doing properly. The first is separating uses: till, workstations, cameras, guest Wi-Fi. A flat network means a compromised device sees everything else, and a camera flooding the network slows the till without the link being obvious.

The second is documentation. A configuration that exists only inside the equipment disappears with it: when it has to be replaced urgently, nobody knows how it was set, and a one-hour outage becomes a day.

So we configure while writing, and we export the configurations. That lets you replace equipment quickly, including without us, which is exactly what is needed on the day the equipment fails.

What we usually find

  • Your network equipment still has factory passwords.
  • Everything is on the same network: till, cameras, guests, workstations.
  • The configuration exists nowhere except inside the equipment.
  • The network slows at certain hours and nobody knows why.

What changes

  • Separated uses

    An incident on a camera or a guest no longer touches your till or your workstations.

  • Fast replacement

    An exported configuration puts a device back in service in minutes rather than in a day.

  • Slowness explained

    Traffic is visible by use, which turns "it is sometimes slow" into an identified cause.

What you get

  • Separation by use

    Distinct networks for the till, workstations, cameras and guests, with the rules for passing between them defined.

  • Passwords and access

    Named administration accounts, remote access closed by default, factory settings removed.

  • Traffic priorities

    Telephony and the till go ahead of video and downloads, which can be set rather than endured.

  • Exported configurations

    Saved outside the equipment, so a replacement is a matter of minutes.

  • Logging

    What happens is recorded, without which an incident is diagnosed by guesswork.

  • Documentation handed over

    Addressing plan, ports in use and rules applied, readable by another technician.

Is this the right fit for you?

This is for you if

  • You have several uses on one network: till, cameras, guests.
  • Your equipment has never been configured since installation.
  • You want to be able to replace a device without rebuilding its configuration.

This is not for you if

  • One router and three machines. There is little to separate and little to gain.
  • You only want new hardware with no configuration. We will refuse to deliver it that way.
  • You do not want documentation for confidentiality reasons. It is handed to you, not published.

What we commit to

  • Nothing is delivered on factory settings

    Equipment installed with its default password is an open door, and we do not put it into service that way.

  • The configuration is exported

    Saved outside the equipment and handed to you, because a configuration living only inside it dies with it.

  • You hold the administrator access

    We keep a copy, never exclusivity, on your own equipment.

What we find on arrival

Equipment left on factory configuration is the rule rather than the exception, particularly where the installation was done by the internet provider or a camera installer. The password is often the one printed on the label, and it is the same across the neighbourhood.

The flat network comes next. Till, cameras, workstations and customer Wi-Fi share the same space because nobody asked for anything else, and the day a camera starts saturating the link, the symptom presents as an internet connection problem.

Finally, the configuration is almost never saved anywhere but in the equipment. It is a silent loss: everything is fine until the day the device fails, and a one-hour outage becomes a full rebuild from memory.

Frequently asked questions

Do networks really need separating?

As soon as there are cameras, a till, or Wi-Fi open to the public, yes. It costs little at configuration time and stops a compromised device seeing everything.

Can we use the internet provider’s equipment?

Often yes for the connection, less so for the rest. We will tell you what your current equipment can genuinely do before proposing a purchase.

What happens if a device fails?

With an exported configuration, replacement takes minutes. Without one, it has to be rebuilt from memory, and that is where days are lost.

Should remote access be opened?

Only if it is needed, and then protected and logged. Remote access left open by default is one of the most used ways in.

Can you document an existing installation?

Yes, and it is often the first thing to do. Documenting before modifying avoids breaking something whose purpose nobody remembered.

Does the configuration belong to us?

Yes, entirely, exports included. You can hand it to any other technician without asking us for anything.

How to start

Tell us what network equipment you have and which uses share it.

We come back with what should be separated, what is open and should not be, and the configuration we would apply — documented and exported.

What we have written on this subject

Let us talk about your project

A free audit, no commitment: we look at your online presence and tell you what is holding it back.

  • Nothing is delivered on factory settings
  • The configuration is exported
  • You hold the administrator access

We measure how this site is used with Google Analytics, to learn which pages actually help. You can stop that measurement at any time from the footer. Cookie policy