<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="fr">
	<id>https://wiki.mophete.org/index.php?action=history&amp;feed=atom&amp;title=VLANs</id>
	<title>VLANs - Historique des versions</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.mophete.org/index.php?action=history&amp;feed=atom&amp;title=VLANs"/>
	<link rel="alternate" type="text/html" href="https://wiki.mophete.org/index.php?title=VLANs&amp;action=history"/>
	<updated>2026-06-28T15:20:56Z</updated>
	<subtitle>Historique des versions pour cette page sur le wiki</subtitle>
	<generator>MediaWiki 1.45.3</generator>
	<entry>
		<id>https://wiki.mophete.org/index.php?title=VLANs&amp;diff=7&amp;oldid=prev</id>
		<title>Admin : Page créée avec « = Plan d’adressage IP = **TOC**  == Navigation rapide ==  * 📋 Vue d&#039;ensemble * 🔀 Détail par VLAN * ⚙️ Plages DHCP * 🔍 DNS local * 🚪 Ports exposés * 🛡️ Règles et conventions * 📝 Historique des modifications  ---  == &lt;span id=&quot;Vue_d&#039;ensemble&quot;&gt;&lt;/span&gt;📋 Vue d&#039;ensemble ==  {| class=&quot;... »</title>
		<link rel="alternate" type="text/html" href="https://wiki.mophete.org/index.php?title=VLANs&amp;diff=7&amp;oldid=prev"/>
		<updated>2026-05-12T09:47:32Z</updated>

		<summary type="html">&lt;p&gt;Page créée avec « = Plan d’adressage IP = **TOC**  == Navigation rapide ==  * &lt;a href=&quot;#Vue_d&amp;#039;ensemble&quot;&gt;📋 Vue d&amp;#039;ensemble&lt;/a&gt; * &lt;a href=&quot;#Détail_par_VLAN&quot;&gt;🔀 Détail par VLAN&lt;/a&gt; * &lt;a href=&quot;#Plages_DHCP&quot;&gt;⚙️ Plages DHCP&lt;/a&gt; * &lt;a href=&quot;#DNS_local&quot;&gt;🔍 DNS local&lt;/a&gt; * &lt;a href=&quot;#Ports_exposés&quot;&gt;🚪 Ports exposés&lt;/a&gt; * &lt;a href=&quot;#Règles_et_conventions&quot;&gt;🛡️ Règles et conventions&lt;/a&gt; * &lt;a href=&quot;#Historique_des_modifications&quot;&gt;📝 Historique des modifications&lt;/a&gt;  ---  == &amp;lt;span id=&amp;quot;Vue_d&amp;#039;ensemble&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;📋 Vue d&amp;#039;ensemble ==  {| class=&amp;quot;... »&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Nouvelle page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;= Plan d’adressage IP =&lt;br /&gt;
**TOC**&lt;br /&gt;
&lt;br /&gt;
== Navigation rapide ==&lt;br /&gt;
&lt;br /&gt;
* [[#Vue_d&amp;#039;ensemble|📋 Vue d&amp;#039;ensemble]]&lt;br /&gt;
* [[#Détail_par_VLAN|🔀 Détail par VLAN]]&lt;br /&gt;
* [[#Plages_DHCP|⚙️ Plages DHCP]]&lt;br /&gt;
* [[#DNS_local|🔍 DNS local]]&lt;br /&gt;
* [[#Ports_exposés|🚪 Ports exposés]]&lt;br /&gt;
* [[#Règles_et_conventions|🛡️ Règles et conventions]]&lt;br /&gt;
* [[#Historique_des_modifications|📝 Historique des modifications]]&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;Vue_d&amp;#039;ensemble&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;📋 Vue d&amp;#039;ensemble ==&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! VLAN&lt;br /&gt;
! Nom&lt;br /&gt;
! Sous-réseau&lt;br /&gt;
! Masque&lt;br /&gt;
! Passerelle&lt;br /&gt;
! DHCP dynamique&lt;br /&gt;
! Réservations statiques&lt;br /&gt;
&lt;br /&gt;
| ! Usage                                          |&lt;br /&gt;
| ------------------------------------------------ |&lt;br /&gt;
| 1                                                |&lt;br /&gt;
| Infra                                            |&lt;br /&gt;
| 192.168.1.0/24                                   |&lt;br /&gt;
| 255.255.255.0                                    |&lt;br /&gt;
| 192.168.1.1                                      |&lt;br /&gt;
| 192.168.1.100 → 192.168.1.199                    |&lt;br /&gt;
| 192.168.1.2 → 192.168.1.99                       |&lt;br /&gt;
| Infrastructure, hyperviseurs, équipements réseau |&lt;br /&gt;
| -                                                |&lt;br /&gt;
| 20                                               |&lt;br /&gt;
| DMZ                                              |&lt;br /&gt;
| 192.168.20.0/24                                  |&lt;br /&gt;
| 255.255.255.0                                    |&lt;br /&gt;
| 192.168.20.1                                     |&lt;br /&gt;
| 192.168.20.100 → 192.168.20.199                  |&lt;br /&gt;
| 192.168.20.2 → 192.168.20.99                     |&lt;br /&gt;
| Services exposés et reverse proxy                |&lt;br /&gt;
| -                                                |&lt;br /&gt;
| 30                                               |&lt;br /&gt;
| Datastore                                        |&lt;br /&gt;
| 192.168.30.0/24                                  |&lt;br /&gt;
| 255.255.255.0                                    |&lt;br /&gt;
| 192.168.30.1                                     |&lt;br /&gt;
| Désactivé                                        |&lt;br /&gt;
| 192.168.30.2 → 192.168.30.254                    |&lt;br /&gt;
| Stockage, sauvegardes, trafic interne            |&lt;br /&gt;
| -                                                |&lt;br /&gt;
| 40                                               |&lt;br /&gt;
| Servitude                                        |&lt;br /&gt;
| 192.168.40.0/24                                  |&lt;br /&gt;
| 255.255.255.0                                    |&lt;br /&gt;
| 192.168.40.1                                     |&lt;br /&gt;
| 192.168.40.100 → 192.168.40.199                  |&lt;br /&gt;
| 192.168.40.2 → 192.168.40.99                     |&lt;br /&gt;
| IoT, imprimantes, équipements secondaires        |&lt;br /&gt;
| }                                                |&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;Détail_par_VLAN&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;🔀 Détail par VLAN ==&lt;br /&gt;
&lt;br /&gt;
=== VLAN 1 — Infra ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! IP&lt;br /&gt;
! Nom d’hôte&lt;br /&gt;
! Rôle&lt;br /&gt;
&lt;br /&gt;
| ! État                 |&lt;br /&gt;
| ---------------------- |&lt;br /&gt;
| 192.168.1.1            |&lt;br /&gt;
| opnsense.local         |&lt;br /&gt;
| Passerelle / Firewall  |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| 192.168.1.2            |&lt;br /&gt;
| proxmox01.local        |&lt;br /&gt;
| Hyperviseur principal  |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| 192.168.1.3            |&lt;br /&gt;
| proxmox02.local        |&lt;br /&gt;
| Hyperviseur secondaire |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| 192.168.1.10           |&lt;br /&gt;
| adguard.local          |&lt;br /&gt;
| DNS / DHCP / Filtrage  |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| 192.168.1.20           |&lt;br /&gt;
| ha.local               |&lt;br /&gt;
| Home Assistant         |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| 192.168.1.30           |&lt;br /&gt;
| unifi.local            |&lt;br /&gt;
| Contrôleur Wi‑Fi       |&lt;br /&gt;
| Production             |&lt;br /&gt;
| }                      |&lt;br /&gt;
&lt;br /&gt;
=== VLAN 20 — DMZ ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! IP&lt;br /&gt;
! Nom d’hôte&lt;br /&gt;
! Rôle&lt;br /&gt;
&lt;br /&gt;
| ! État              |&lt;br /&gt;
| ------------------- |&lt;br /&gt;
| 192.168.20.1        |&lt;br /&gt;
| opnsense-dmz.local  |&lt;br /&gt;
| Passerelle VLAN DMZ |&lt;br /&gt;
| Production          |&lt;br /&gt;
| -                   |&lt;br /&gt;
| 192.168.20.10       |&lt;br /&gt;
| reverseproxy.local  |&lt;br /&gt;
| Reverse Proxy HTTPS |&lt;br /&gt;
| Production          |&lt;br /&gt;
| -                   |&lt;br /&gt;
| 192.168.20.20       |&lt;br /&gt;
| wg-gateway.local    |&lt;br /&gt;
| Serveur WireGuard   |&lt;br /&gt;
| Production          |&lt;br /&gt;
| -                   |&lt;br /&gt;
| 192.168.20.30       |&lt;br /&gt;
| web01.local         |&lt;br /&gt;
| Serveur Web interne |&lt;br /&gt;
| Préproduction       |&lt;br /&gt;
| }                   |&lt;br /&gt;
&lt;br /&gt;
=== VLAN 30 — Datastore ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! IP&lt;br /&gt;
! Nom d’hôte&lt;br /&gt;
! Rôle&lt;br /&gt;
&lt;br /&gt;
| ! État                 |&lt;br /&gt;
| ---------------------- |&lt;br /&gt;
| 192.168.30.1           |&lt;br /&gt;
| opnsense-storage.local |&lt;br /&gt;
| Passerelle stockage    |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| 192.168.30.10          |&lt;br /&gt;
| truenas.local          |&lt;br /&gt;
| NAS principal          |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| 192.168.30.20          |&lt;br /&gt;
| backup.local           |&lt;br /&gt;
| Sauvegarde distante    |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| 192.168.30.30          |&lt;br /&gt;
| iscsi01.local          |&lt;br /&gt;
| Cible iSCSI            |&lt;br /&gt;
| Production             |&lt;br /&gt;
| }                      |&lt;br /&gt;
&lt;br /&gt;
=== VLAN 40 — Servitude ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! IP&lt;br /&gt;
! Nom d’hôte&lt;br /&gt;
! Rôle&lt;br /&gt;
&lt;br /&gt;
| ! État                  |&lt;br /&gt;
| ----------------------- |&lt;br /&gt;
| 192.168.40.1            |&lt;br /&gt;
| opnsense-iot.local      |&lt;br /&gt;
| Passerelle IoT          |&lt;br /&gt;
| Production              |&lt;br /&gt;
| -                       |&lt;br /&gt;
| 192.168.40.10           |&lt;br /&gt;
| printer01.local         |&lt;br /&gt;
| Imprimante réseau       |&lt;br /&gt;
| Production              |&lt;br /&gt;
| -                       |&lt;br /&gt;
| 192.168.40.20           |&lt;br /&gt;
| camera01.local          |&lt;br /&gt;
| Caméra IP               |&lt;br /&gt;
| Production              |&lt;br /&gt;
| -                       |&lt;br /&gt;
| 192.168.40.30           |&lt;br /&gt;
| bambu-a1.local          |&lt;br /&gt;
| Imprimante 3D Bambu Lab |&lt;br /&gt;
| Production              |&lt;br /&gt;
| }                       |&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;Plages_DHCP&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;⚙️ Plages DHCP ==&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! VLAN&lt;br /&gt;
! DHCP activé&lt;br /&gt;
! Plage dynamique&lt;br /&gt;
! Réservations statiques&lt;br /&gt;
&lt;br /&gt;
| ! Durée de bail                 |&lt;br /&gt;
| ------------------------------- |&lt;br /&gt;
| Infra                           |&lt;br /&gt;
| Oui                             |&lt;br /&gt;
| 192.168.1.100 → 192.168.1.199   |&lt;br /&gt;
| 192.168.1.2 → 192.168.1.99      |&lt;br /&gt;
| 24 heures                       |&lt;br /&gt;
| -                               |&lt;br /&gt;
| DMZ                             |&lt;br /&gt;
| Oui                             |&lt;br /&gt;
| 192.168.20.100 → 192.168.20.199 |&lt;br /&gt;
| 192.168.20.2 → 192.168.20.99    |&lt;br /&gt;
| 24 heures                       |&lt;br /&gt;
| -                               |&lt;br /&gt;
| Datastore                       |&lt;br /&gt;
| Non                             |&lt;br /&gt;
| N/A                             |&lt;br /&gt;
| Toutes les IP fixes             |&lt;br /&gt;
| N/A                             |&lt;br /&gt;
| -                               |&lt;br /&gt;
| Servitude                       |&lt;br /&gt;
| Oui                             |&lt;br /&gt;
| 192.168.40.100 → 192.168.40.199 |&lt;br /&gt;
| 192.168.40.2 → 192.168.40.99    |&lt;br /&gt;
| 12 heures                       |&lt;br /&gt;
| }                               |&lt;br /&gt;
&lt;br /&gt;
=== Réservations importantes ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
! Adresse MAC&lt;br /&gt;
! IP réservée&lt;br /&gt;
! Nom d’hôte&lt;br /&gt;
&lt;br /&gt;
| ! Commentaire     |&lt;br /&gt;
| ----------------- |&lt;br /&gt;
| AA:BB:CC:DD:EE:01 |&lt;br /&gt;
| 192.168.1.20      |&lt;br /&gt;
| ha.local          |&lt;br /&gt;
| Home Assistant    |&lt;br /&gt;
| -                 |&lt;br /&gt;
| AA:BB:CC:DD:EE:02 |&lt;br /&gt;
| 192.168.40.30     |&lt;br /&gt;
| bambu-a1.local    |&lt;br /&gt;
| Imprimante 3D     |&lt;br /&gt;
| -                 |&lt;br /&gt;
| AA:BB:CC:DD:EE:03 |&lt;br /&gt;
| 192.168.30.10     |&lt;br /&gt;
| truenas.local     |&lt;br /&gt;
| NAS principal     |&lt;br /&gt;
| }                 |&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;DNS_local&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;🔍 DNS local ==&lt;br /&gt;
&lt;br /&gt;
=== Enregistrements A ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Nom DNS&lt;br /&gt;
! Type&lt;br /&gt;
! IP cible&lt;br /&gt;
&lt;br /&gt;
| ! Description      |&lt;br /&gt;
| ------------------ |&lt;br /&gt;
| opnsense.local     |&lt;br /&gt;
| A                  |&lt;br /&gt;
| 192.168.1.1        |&lt;br /&gt;
| Firewall principal |&lt;br /&gt;
| -                  |&lt;br /&gt;
| adguard.local      |&lt;br /&gt;
| A                  |&lt;br /&gt;
| 192.168.1.10       |&lt;br /&gt;
| DNS principal      |&lt;br /&gt;
| -                  |&lt;br /&gt;
| ha.local           |&lt;br /&gt;
| A                  |&lt;br /&gt;
| 192.168.1.20       |&lt;br /&gt;
| Home Assistant     |&lt;br /&gt;
| -                  |&lt;br /&gt;
| truenas.local      |&lt;br /&gt;
| A                  |&lt;br /&gt;
| 192.168.30.10      |&lt;br /&gt;
| NAS principal      |&lt;br /&gt;
| -                  |&lt;br /&gt;
| proxy.local        |&lt;br /&gt;
| A                  |&lt;br /&gt;
| 192.168.20.10      |&lt;br /&gt;
| Reverse Proxy      |&lt;br /&gt;
| }                  |&lt;br /&gt;
&lt;br /&gt;
=== Enregistrements CNAME ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Alias&lt;br /&gt;
! Type&lt;br /&gt;
! Destination&lt;br /&gt;
&lt;br /&gt;
| ! Description        |&lt;br /&gt;
| -------------------- |&lt;br /&gt;
| home.local           |&lt;br /&gt;
| CNAME                |&lt;br /&gt;
| ha.local             |&lt;br /&gt;
| Alias Home Assistant |&lt;br /&gt;
| -                    |&lt;br /&gt;
| nas.local            |&lt;br /&gt;
| CNAME                |&lt;br /&gt;
| truenas.local        |&lt;br /&gt;
| Alias NAS            |&lt;br /&gt;
| -                    |&lt;br /&gt;
| dns.local            |&lt;br /&gt;
| CNAME                |&lt;br /&gt;
| adguard.local        |&lt;br /&gt;
| Alias DNS            |&lt;br /&gt;
| -                    |&lt;br /&gt;
| vpn.local            |&lt;br /&gt;
| CNAME                |&lt;br /&gt;
| wg-gateway.local     |&lt;br /&gt;
| Alias WireGuard      |&lt;br /&gt;
| }                    |&lt;br /&gt;
&lt;br /&gt;
=== Configuration AdGuard ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
! Paramètre&lt;br /&gt;
&lt;br /&gt;
| ! Valeur           |&lt;br /&gt;
| ------------------ |&lt;br /&gt;
| DNS primaire       |&lt;br /&gt;
| 192.168.1.10       |&lt;br /&gt;
| -                  |&lt;br /&gt;
| DNS secondaire     |&lt;br /&gt;
| 1.1.1.1            |&lt;br /&gt;
| -                  |&lt;br /&gt;
| Domaine local      |&lt;br /&gt;
| local              |&lt;br /&gt;
| -                  |&lt;br /&gt;
| Blocage publicités |&lt;br /&gt;
| Activé             |&lt;br /&gt;
| -                  |&lt;br /&gt;
| DNS-over-HTTPS     |&lt;br /&gt;
| Activé             |&lt;br /&gt;
| }                  |&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;Ports_exposés&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;🚪 Ports exposés ==&lt;br /&gt;
&lt;br /&gt;
=== NAT entrant ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Service&lt;br /&gt;
! WAN Port&lt;br /&gt;
! Protocole&lt;br /&gt;
! Destination interne&lt;br /&gt;
! Port interne&lt;br /&gt;
&lt;br /&gt;
| ! Description       |&lt;br /&gt;
| ------------------- |&lt;br /&gt;
| WireGuard           |&lt;br /&gt;
| 51820               |&lt;br /&gt;
| UDP                 |&lt;br /&gt;
| 192.168.20.20       |&lt;br /&gt;
| 51820               |&lt;br /&gt;
| Accès VPN distant   |&lt;br /&gt;
| -                   |&lt;br /&gt;
| HTTPS               |&lt;br /&gt;
| 443                 |&lt;br /&gt;
| TCP                 |&lt;br /&gt;
| 192.168.20.10       |&lt;br /&gt;
| 443                 |&lt;br /&gt;
| Reverse proxy HTTPS |&lt;br /&gt;
| -                   |&lt;br /&gt;
| HTTP → HTTPS        |&lt;br /&gt;
| 80                  |&lt;br /&gt;
| TCP                 |&lt;br /&gt;
| 192.168.20.10       |&lt;br /&gt;
| 80                  |&lt;br /&gt;
| Redirection web     |&lt;br /&gt;
| }                   |&lt;br /&gt;
&lt;br /&gt;
=== Ports internes principaux ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Service&lt;br /&gt;
! Port&lt;br /&gt;
! Protocole&lt;br /&gt;
! Hôte&lt;br /&gt;
&lt;br /&gt;
| ! VLAN           |&lt;br /&gt;
| ---------------- |&lt;br /&gt;
| DNS              |&lt;br /&gt;
| 53               |&lt;br /&gt;
| TCP/UDP          |&lt;br /&gt;
| adguard.local    |&lt;br /&gt;
| Infra            |&lt;br /&gt;
| -                |&lt;br /&gt;
| Home Assistant   |&lt;br /&gt;
| 8123             |&lt;br /&gt;
| TCP              |&lt;br /&gt;
| ha.local         |&lt;br /&gt;
| Infra            |&lt;br /&gt;
| -                |&lt;br /&gt;
| SMB              |&lt;br /&gt;
| 445              |&lt;br /&gt;
| TCP              |&lt;br /&gt;
| truenas.local    |&lt;br /&gt;
| Datastore        |&lt;br /&gt;
| -                |&lt;br /&gt;
| iSCSI            |&lt;br /&gt;
| 3260             |&lt;br /&gt;
| TCP              |&lt;br /&gt;
| iscsi01.local    |&lt;br /&gt;
| Datastore        |&lt;br /&gt;
| -                |&lt;br /&gt;
| WireGuard        |&lt;br /&gt;
| 51820            |&lt;br /&gt;
| UDP              |&lt;br /&gt;
| wg-gateway.local |&lt;br /&gt;
| DMZ              |&lt;br /&gt;
| }                |&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;Virtualisation&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;🖥️ Virtualisation VMware ==&lt;br /&gt;
&lt;br /&gt;
=== Infrastructure ESXi / vCenter ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Équipement&lt;br /&gt;
! IP&lt;br /&gt;
! VLAN&lt;br /&gt;
! Hostname&lt;br /&gt;
! Rôle&lt;br /&gt;
&lt;br /&gt;
| ! État                 |&lt;br /&gt;
| ---------------------- |&lt;br /&gt;
| vCenter                |&lt;br /&gt;
| 192.168.1.50           |&lt;br /&gt;
| Infra                  |&lt;br /&gt;
| vcenter.local          |&lt;br /&gt;
| Gestion VMware vSphere |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| ESXi 01                |&lt;br /&gt;
| 192.168.1.51           |&lt;br /&gt;
| Infra                  |&lt;br /&gt;
| esx01.local            |&lt;br /&gt;
| Hyperviseur principal  |&lt;br /&gt;
| Production             |&lt;br /&gt;
| -                      |&lt;br /&gt;
| ESXi 02                |&lt;br /&gt;
| 192.168.1.52           |&lt;br /&gt;
| Infra                  |&lt;br /&gt;
| esx02.local            |&lt;br /&gt;
| Hyperviseur secondaire |&lt;br /&gt;
| Production             |&lt;br /&gt;
| }                      |&lt;br /&gt;
&lt;br /&gt;
=== Machines virtuelles ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! VM&lt;br /&gt;
! IP&lt;br /&gt;
! VLAN&lt;br /&gt;
! Hostname&lt;br /&gt;
! OS&lt;br /&gt;
! Fonction&lt;br /&gt;
&lt;br /&gt;
| ! État                        |&lt;br /&gt;
| ----------------------------- |&lt;br /&gt;
| OPNsense                      |&lt;br /&gt;
| 192.168.1.1                   |&lt;br /&gt;
| Infra                         |&lt;br /&gt;
| opnsense.local                |&lt;br /&gt;
| FreeBSD                       |&lt;br /&gt;
| Firewall / Routage            |&lt;br /&gt;
| Production                    |&lt;br /&gt;
| -                             |&lt;br /&gt;
| AdGuard Home                  |&lt;br /&gt;
| 192.168.1.10                  |&lt;br /&gt;
| Infra                         |&lt;br /&gt;
| adguard.local                 |&lt;br /&gt;
| Debian                        |&lt;br /&gt;
| DNS / DHCP                    |&lt;br /&gt;
| Production                    |&lt;br /&gt;
| -                             |&lt;br /&gt;
| Home Assistant                |&lt;br /&gt;
| 192.168.1.20                  |&lt;br /&gt;
| Infra                         |&lt;br /&gt;
| ha.local                      |&lt;br /&gt;
| Home Assistant OS             |&lt;br /&gt;
| Domotique                     |&lt;br /&gt;
| Production                    |&lt;br /&gt;
| -                             |&lt;br /&gt;
| TrueNAS                       |&lt;br /&gt;
| 192.168.30.10                 |&lt;br /&gt;
| Datastore                     |&lt;br /&gt;
| truenas.local                 |&lt;br /&gt;
| TrueNAS SCALE                 |&lt;br /&gt;
| NAS / Stockage                |&lt;br /&gt;
| Production                    |&lt;br /&gt;
| -                             |&lt;br /&gt;
| Reverse Proxy                 |&lt;br /&gt;
| 192.168.20.10                 |&lt;br /&gt;
| DMZ                           |&lt;br /&gt;
| reverseproxy.local            |&lt;br /&gt;
| Ubuntu Server                 |&lt;br /&gt;
| Proxy HTTPS                   |&lt;br /&gt;
| Production                    |&lt;br /&gt;
| -                             |&lt;br /&gt;
| WireGuard                     |&lt;br /&gt;
| 192.168.20.20                 |&lt;br /&gt;
| DMZ                           |&lt;br /&gt;
| wg-gateway.local              |&lt;br /&gt;
| Debian                        |&lt;br /&gt;
| VPN distant                   |&lt;br /&gt;
| Production                    |&lt;br /&gt;
| -                             |&lt;br /&gt;
| Docker Host                   |&lt;br /&gt;
| 192.168.1.60                  |&lt;br /&gt;
| Infra                         |&lt;br /&gt;
| docker01.local                |&lt;br /&gt;
| Ubuntu Server                 |&lt;br /&gt;
| Hébergement containers Docker |&lt;br /&gt;
| Production                    |&lt;br /&gt;
| }                             |&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;Docker&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;🐳 Infrastructure Docker ==&lt;br /&gt;
&lt;br /&gt;
=== Hôtes Docker ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Hôte&lt;br /&gt;
! IP&lt;br /&gt;
! VLAN&lt;br /&gt;
! OS&lt;br /&gt;
&lt;br /&gt;
| ! Fonction              |&lt;br /&gt;
| ----------------------- |&lt;br /&gt;
| docker01.local          |&lt;br /&gt;
| 192.168.1.60            |&lt;br /&gt;
| Infra                   |&lt;br /&gt;
| Ubuntu Server           |&lt;br /&gt;
| Docker Engine principal |&lt;br /&gt;
| }                       |&lt;br /&gt;
&lt;br /&gt;
=== Containers Docker ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Container&lt;br /&gt;
! Stack&lt;br /&gt;
! Hôte Docker&lt;br /&gt;
! VLAN&lt;br /&gt;
! Port exposé&lt;br /&gt;
! Description&lt;br /&gt;
&lt;br /&gt;
| ! État                    |&lt;br /&gt;
| ------------------------- |&lt;br /&gt;
| nginx-proxy-manager       |&lt;br /&gt;
| reverse-proxy             |&lt;br /&gt;
| docker01.local            |&lt;br /&gt;
| DMZ                       |&lt;br /&gt;
| 80, 443, 81               |&lt;br /&gt;
| Reverse proxy HTTPS       |&lt;br /&gt;
| Production                |&lt;br /&gt;
| -                         |&lt;br /&gt;
| portainer                 |&lt;br /&gt;
| administration            |&lt;br /&gt;
| docker01.local            |&lt;br /&gt;
| Infra                     |&lt;br /&gt;
| 9443                      |&lt;br /&gt;
| Gestion Docker            |&lt;br /&gt;
| Production                |&lt;br /&gt;
| -                         |&lt;br /&gt;
| grafana                   |&lt;br /&gt;
| monitoring                |&lt;br /&gt;
| docker01.local            |&lt;br /&gt;
| Infra                     |&lt;br /&gt;
| 3000                      |&lt;br /&gt;
| Supervision graphique     |&lt;br /&gt;
| Production                |&lt;br /&gt;
| -                         |&lt;br /&gt;
| influxdb                  |&lt;br /&gt;
| monitoring                |&lt;br /&gt;
| docker01.local            |&lt;br /&gt;
| Infra                     |&lt;br /&gt;
| 8086                      |&lt;br /&gt;
| Base métriques            |&lt;br /&gt;
| Production                |&lt;br /&gt;
| -                         |&lt;br /&gt;
| watchtower                |&lt;br /&gt;
| maintenance               |&lt;br /&gt;
| docker01.local            |&lt;br /&gt;
| Infra                     |&lt;br /&gt;
| Aucun                     |&lt;br /&gt;
| Mise à jour automatique   |&lt;br /&gt;
| Production                |&lt;br /&gt;
| -                         |&lt;br /&gt;
| uptime-kuma               |&lt;br /&gt;
| monitoring                |&lt;br /&gt;
| docker01.local            |&lt;br /&gt;
| Infra                     |&lt;br /&gt;
| 3001                      |&lt;br /&gt;
| Supervision disponibilité |&lt;br /&gt;
| Production                |&lt;br /&gt;
| -                         |&lt;br /&gt;
| redis                     |&lt;br /&gt;
| applications              |&lt;br /&gt;
| docker01.local            |&lt;br /&gt;
| Infra                     |&lt;br /&gt;
| 6379                      |&lt;br /&gt;
| Cache mémoire             |&lt;br /&gt;
| Production                |&lt;br /&gt;
| -                         |&lt;br /&gt;
| postgres                  |&lt;br /&gt;
| applications              |&lt;br /&gt;
| docker01.local            |&lt;br /&gt;
| Datastore                 |&lt;br /&gt;
| 5432                      |&lt;br /&gt;
| Base PostgreSQL           |&lt;br /&gt;
| Production                |&lt;br /&gt;
| }                         |&lt;br /&gt;
&lt;br /&gt;
=== Réseaux Docker ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Réseau Docker&lt;br /&gt;
! Type&lt;br /&gt;
! Sous-réseau&lt;br /&gt;
&lt;br /&gt;
| ! Usage                     |&lt;br /&gt;
| --------------------------- |&lt;br /&gt;
| proxy_net                   |&lt;br /&gt;
| bridge                      |&lt;br /&gt;
| 172.18.0.0/24               |&lt;br /&gt;
| Reverse proxy               |&lt;br /&gt;
| -                           |&lt;br /&gt;
| monitoring_net              |&lt;br /&gt;
| bridge                      |&lt;br /&gt;
| 172.19.0.0/24               |&lt;br /&gt;
| Monitoring interne          |&lt;br /&gt;
| -                           |&lt;br /&gt;
| backend_net                 |&lt;br /&gt;
| bridge                      |&lt;br /&gt;
| 172.20.0.0/24               |&lt;br /&gt;
| Communications applicatives |&lt;br /&gt;
| }                           |&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;Règles_et_conventions&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;🛡️ Règles et conventions ==&lt;br /&gt;
&lt;br /&gt;
=== Convention de nommage ===&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
! Élément&lt;br /&gt;
&lt;br /&gt;
| ! Convention                |&lt;br /&gt;
| --------------------------- |&lt;br /&gt;
| Hyperviseurs                |&lt;br /&gt;
| proxmoxXX.local             |&lt;br /&gt;
| -                           |&lt;br /&gt;
| Serveurs applicatifs        |&lt;br /&gt;
| appXX.local                 |&lt;br /&gt;
| -                           |&lt;br /&gt;
| Stockage                    |&lt;br /&gt;
| nasXX.local / truenas.local |&lt;br /&gt;
| -                           |&lt;br /&gt;
| Équipements réseau          |&lt;br /&gt;
| switchXX.local / apXX.local |&lt;br /&gt;
| }                           |&lt;br /&gt;
&lt;br /&gt;
=== Règles réseau ===&lt;br /&gt;
&lt;br /&gt;
* Le VLAN Datastore n’a pas d’accès Internet direct.&lt;br /&gt;
* Les flux inter‑VLAN sont filtrés par OPNsense.&lt;br /&gt;
* Tous les services exposés sont placés dans la DMZ.&lt;br /&gt;
* Les équipements IoT sont isolés dans le VLAN Servitude.&lt;br /&gt;
* Les accès d’administration sont limités au VLAN Infra.&lt;br /&gt;
&lt;br /&gt;
---&lt;br /&gt;
&lt;br /&gt;
== &amp;lt;span id=&amp;quot;Historique_des_modifications&amp;quot;&amp;gt;&amp;lt;/span&amp;gt;📝 Historique des modifications ==&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;wikitable sortable&amp;quot;&lt;br /&gt;
! Date&lt;br /&gt;
! Auteur&lt;br /&gt;
&lt;br /&gt;
| ! Modification                           |&lt;br /&gt;
| ---------------------------------------- |&lt;br /&gt;
| 2026-05-12                               |&lt;br /&gt;
| Administrateur                           |&lt;br /&gt;
| Création initiale du plan d’adressage IP |&lt;br /&gt;
| -                                        |&lt;br /&gt;
| 2026-05-12                               |&lt;br /&gt;
| Administrateur                           |&lt;br /&gt;
| Ajout des VLANs DMZ et Datastore         |&lt;br /&gt;
| }                                        |&lt;/div&gt;</summary>
		<author><name>Admin</name></author>
	</entry>
</feed>