Blue Wire
Tell us about your project
FR | EN

Complete infrastructure overhaul for a food industry group

Having worked with this group for several years on the design of management and support tools, our Infrastructure team was called upon extensively for a complete overhaul of the IT architecture of this 250-strong organisation.

Intro : Having worked with this group for several years on the design of management and support tools, our Infrastructure team was called upon extensively for a complete overhaul of the IT architecture of this 250-strong organisation.
  • Project study including a review of the existing setup

  • Requirements analysis for approximately 70 staff equipped with IT tools across 3 sites in France and Luxembourg.

  • Deployment, at three branches, of virtualisation servers built around Microsoft 2019 Server Standard (Hyper-V role) with pools (system and VM storage on 2 x 1 TB SSDs in RAID 1)

  • Deployment, at three branches, of an iSCSI data storage pool (4 x 2 TB disks in RAID 5)

  • At each branch, for each server, creation of 3 VMs (firewall, Active Directory, file server), together with the backup strategy for these.

  • Deployment of dedicated OVH servers across two separate data centres :

    • A dedicated virtualisation server built around Microsoft 2019 Server Standard (Hyper-V role)

    • A dedicated backup and Hyper-V server built around Microsoft 2019 Server Standard (Hyper-V role)

  • Firewall configuration :

    • Design and implementation of the network architecture and the inter-site IPSEC links

    • Implementation of the security policy rules on each firewall

    • Set-up of a roaming VPN for remote workers

  • Complete rebuild of the Active Directory architecture, including:

    • Implementation of a new Active Directory security policy

    • Creation of the GPOs (group policies) for the deployment of: printers, shared folders, various access rights, VPN, software and configuration scripts, and so on…

    • Creation of the security groups

    • Migration of the users and their allocation to the security groups in order to assign rights

    • Implementation of single sign-on with Microsoft Azure and Office 365 synchronisation

  • On the dedicated OVH servers, implementation of :

    • Firewall configuration :

      • Design and implementation of the network architecture and the inter-site IPSEC links

      • Implementation of the security policy rules on each firewall

      • Set-up of a roaming VPN for remote workers

      • Implementation of a reverse proxy for the web servers, with certificates issued by a recognised certification authority.

    • Application servers and remote desktop

      • SQL and application servers

      • Set-up of a TSE (Remote Desktop) server :

      • Deployment of remote applications

      • Recovery, transfer and reconfiguration of the various web servers

      • Implementation of the backup strategy

    • File server configuration :

      • Configuration of the shared folders and set-up of NTFS permissions based on the associated security groups

      • Set-up of DFS (Distributed File System) folders

      • Implementation of the backup strategy

  • Production of full documentation covering the infrastructure

All our news

Read next

All our news