<type>-<function>-<location>-<number>
| Component | Description | Examples |
|---|
| type | Device/resource type | srv, clt, sw, fw, tpl |
| function | Primary function | dc, pve, jump, pki |
| location | Site identifier | zrh (Zürich) |
| number | Sequential number | 01, 02, 03 |
| Prefix | Description | Example |
|---|
| srv | Server (physical or virtual) | srv-dc-zrh-01 |
| clt | Client workstation | clt-admin-zrh-01 |
| sw | Network switch | sw-core-zrh-01 |
| fw | Firewall/Gateway | fw-edge-zrh-01 |
| tpl | Template | tpl-ws2025-zrh-01 |
| Code | Description | Example |
|---|
| dc | Domain Controller (Forest Root) | srv-dc-zrh-01 |
| dcc | Domain Controller (Child Domain) | srv-dcc-zrh-01 |
| pve | Proxmox VE Host | srv-pve-zrh-01 |
| rca | Root Certificate Authority | srv-rca-zrh-01 |
| ica | Issuing Certificate Authority | srv-ica-zrh-01 |
| pki | PKI Web Repository | srv-pki-zrh-01 |
| jump | Jump Host / Bastion | srv-jump-zrh-01 |
| file | File Server | srv-file-zrh-01 |
| sql | SQL Server | srv-sql-zrh-01 |
| rpi | Raspberry Pi | srv-rpi-zrh-01 |
| Code | Description | Example |
|---|
| core | Core/Aggregation Switch | sw-core-zrh-01 |
| dist | Distribution Switch | sw-dist-zrh-01 |
| edge | Edge Firewall | fw-edge-zrh-01 |
Format: zrh-<purpose>-v<id>
| VLAN ID | Name | Description |
|---|
| 1 | zrh-default-v1 | Default (UniFi devices) |
| 10 | zrh-mgmt-v10 | Management |
| 20 | zrh-san-v20 | Storage (SAN) |
| 30 | zrh-srv-v30 | Servers |
| 40 | zrh-clt-v40 | Clients |
| 50 | zrh-dmz-v50 | DMZ |
| 60 | zrh-vpn-v60 | VPN |
Format: po-<remote-host>-<number>
| On Device | LAG Name | Connected To |
|---|
| sw-core-zrh-01 | po-pve01-01 | srv-pve-zrh-01 |
| sw-core-zrh-01 | po-pve02-01 | srv-pve-zrh-02 |
| sw-core-zrh-01 | po-edge01-01 | fw-edge-zrh-01 |
| srv-pve-zrh-01 | po-core01-01 | sw-core-zrh-01 |
| Type | FQDN | NetBIOS |
|---|
| Forest Root | microsoftlab.ch | MSLAB |
| Child Domain | corp.microsoftlab.ch | CORP |
| Zone | Replication | Purpose |
|---|
| microsoftlab.ch | Forest | Forest Root Domain |
| corp.microsoftlab.ch | Forest | Child Domain |
│ └── OU=Service Accounts
Format: VLAN * 10 + sequential number
| VLAN | VM ID Range | Examples |
|---|
| 30 (Servers) | 300-399 | 300 (DC), 305 (Child DC), 310 (Root CA) |
| 40 (Clients) | 400-499 | 400 (Admin Client), 490 (Template) |
300-309: Domain Controllers
310-319: PKI Infrastructure
330-339: Database Servers
340-349: Application Servers
360-369: Modern Server Collection
370-379: Management & Jump Hosts
390-399: Server Templates
490-499: Client Templates
Format: FW_<ACTION>_<SOURCE>_<DESTINATION>_<SERVICE>
Examples:
FW_ALLOW_ZRH-DC-ZRH-01_DNS_EGRESS - Allow DC DNS to external
FW_DENY_ZRH-SRV-V30_Internet_EGRESS - Block Server VLAN to Internet