# LAN installation and Cisco configuration in Tashkent

> We design and install corporate networks in Tashkent: Cat6 structured cabling, Cisco and MikroTik switching, VLANs, site-to-site VPN and seamless Wi-Fi.

Source: https://i7team.uz/en/services/networks-cisco
Provider: i7 Team, Tashkent, Uzbekistan

A local network is not «running some cable». It is a cabling system that outlives three generations of hardware, an addressing scheme you can extend without rebuilding, and Wi-Fi that does not drop a call between the meeting room and the corridor. We design, install and configure networks in Tashkent end to end.

## What building a network actually involves

We take a site from survey to handover: walking the premises with a floor plan, counting workstations, siting the comms cabinet, noting where there is a suspended ceiling and where we will be chasing walls.

The design exposes awkward parts early — the far warehouse at 118 metres needs fibre, not copper. We do not leave site until every link is tested.

- Survey and written scope
- Design: routes, bill of materials, port map, PoE budget
- Cabling: trays, conduit, outlets, patch panels
- Comms cabinet build and earthing
- Switch, router and access point configuration
- Link testing and as-built documentation

## Cabling: category, length, acceptance

For a new office we specify Cat6 as the working minimum and Cat6a where a link carries 10 Gbit/s — riser backbones, the server room. Cat5e we quote only on a hard budget, saying plainly it is a five-to-seven-year answer.

The governing constraint is physical, not commercial: TIA-568 allows 90 metres of permanent link from patch panel to outlet, plus ten metres total for patch cords. Anything longer is an intermediate distribution point or fibre.

Every link is labelled at both ends and tested with a cable analyser against its category — insertion loss, NEXT, delay, wire map — and the report goes to you. It is the part most often skipped, and a year later it separates «the network is slow» from «the network works».

- Screened cable where the route runs beside mains
- OS2 or OM4 fibre between floors and buildings

## Cisco, MikroTik, Ubiquiti — what goes where

The three vendors play different roles: Cisco for predictability and support, MikroTik for flexibility at sensible money, Ubiquiti when dozens of access points need one console.

Cisco Catalyst earns its price at the core of a large office or a production site: stacking, redundancy, mature diagnostics. MikroTik CCR and CRS cover routing, VPN and link aggregation for far less, but need an engineer who reads RouterOS, not a setup wizard.

Grey imports deserve a separate word. Plenty of Cisco kit on the Tashkent market has questionable provenance: the device works, but licences and updates are unavailable and vendor support will not open a case. We either source through an official channel with a verifiable warranty, or say outright that an item is used and back it with our own warranty and a spare.

## VLANs, routing and site-to-site VPN

A flat network where accounting, guest Wi-Fi, IP cameras and access-control panels share one broadcast domain is not a saving — it is a postponed incident. We split segments across VLANs and permit only what the business needs.

Between offices we build site-to-site tunnels: IPsec IKEv2 where both ends run corporate hardware and interoperability matters, WireGuard where speed and simplicity matter more. One detail people forget: a tunnel eats part of the MTU, and without correct MSS clamping traffic fails silently — mail flows fine while 1C over RDP keeps dropping. We prove it under load, not with a ping.

- Segmentation: office, guest, servers, cameras, access control, VoIP
- IPsec IKEv2 and WireGuard between branches
- Failover that tests real reachability, not just link state
- 802.1X and RADIUS where port-level admission control is needed

## Corporate Wi-Fi with seamless roaming

«Wi-Fi with roaming» is a property of the radio design, not of an access point. The client device decides when to switch; our job is to make that decision fast and well-timed.

In practice: 802.11k, 802.11v and 802.11r enabled, one SSID and identical security on every AP, cell overlap at roughly −65 dBm, low data rates disabled so clients stop clinging to a distant AP, and 40 MHz rather than 80 MHz channels on 5 GHz once the APs interfere with each other. In dense Tashkent buildings, where 2.4 GHz shows twenty neighbouring networks, that is the difference between a call that holds and one that dies by the lift.

## One cabling system for network, access control and CCTV

We do networks, access control and CCTV, which changes the design at the calculation stage rather than the sales stage. An IP camera, a door controller and an access point draw from the same switch, whose PoE budget is finite.

The arithmetic clients are rarely shown: a typical 24-port switch has a PoE budget of around 370 W. Twelve cameras at 8–12 W, six Wi-Fi 6 APs needing up to 30 W each under 802.3at, and a couple of PoE locks — the headroom is gone. You learn that either in the design or on site, when the cameras start rebooting in a loop.

## Common questions

### How long does a network installation take?

Floor area matters less than access and the state of the premises. An office of 20–30 workstations with a suspended ceiling and finished electrics takes a few working days. The same space needing wall chasing, landlord approval and work only after 18:00 stretches two or three times longer. We commit to dates after the survey.

### What do we need to provide?

A floor plan in any form — an architect's drawing or a photo of the fire evacuation plan both work. How many workstations you will have in a year, not only today. A spot for the comms cabinet with a socket and ventilation. And the contact who can approve drilling into walls: in leased space that is usually the real bottleneck.

### Who owns the equipment and the configurations?

The equipment is yours from delivery, with the manufacturer's warranty documents. Configurations, the addressing scheme, administrator passwords, the port map and test reports are handed over as as-built documentation. We do not hold a network hostage: change contractor and the next engineer understands it in an hour, not a week.

### What happens after handover?

Our warranty covers the installation and cabling; active equipment is covered by the manufacturer or supplier. After that you choose: call-outs on request, or a support contract with switch and link monitoring, scheduled checks and an agreed response time. With no in-house sysadmin the second is usually cheaper — downtime costs more than the fee.

### We already have Cat5e — can we keep it?

Often you can. We run the existing links through an analyser and show which hold their category and which do not. Cat5e genuinely carries a gigabit over working distances, and replacing sound links for a line in a specification is pointless. What needs replacing is specific bad links: crushed, with untwisted pairs, or run against mains cable.

### What drives the cost?

Route length and installation method — tray above a suspended ceiling is cheaper than chasing concrete. Cable category and how much of the run is fibre. The class of active equipment: the gap between MikroTik and Cisco Catalyst is a multiple, not a margin. And working hours: a live office at night costs more than an empty shell.

## Related services

- [CCTV design and installation in Tashkent](https://i7team.uz/en/services/video-surveillance)
- [Access control systems](https://i7team.uz/en/services/access-control)
- [IT outsourcing and support](https://i7team.uz/en/services/it-outsourcing)

## We will visit the site and price it properly

Tell us what the space is, how many workstations and when you need to be live. We survey the site in Tashkent and come back with a route plan, a bill of materials and a costing that shows every line — including the parts we suggest you skip.

Get in touch: info@i7team.uz · +998 77 372 21 12 · https://i7team.uz/en/contact
