Our Clients
Great customer service is something we truly value and consider vital to a great relationship. For over a decade we have been helping companies large and small continue in excellence.
Recent Projects
2022 Q3
- Network Documentation/Best Practices Audit – A large municipal network requested Groundwork0 to perform an audit of their existing network that included security, best practices and documentation. We identified several misconfigured switches, switches with no security, and overhauled the network documentation from scratch.
- Migrated a large county municipality from an old obsolete wireless network to a new state of the art Extreme Wireless network including complete documentation of over 350 access points installation locations.
- Configured a beta public park wireless network for a large city municipality to provide underserved citizens with public wireless along with special events.
2022 Q2
- VPN: A local sheriff’s department wanted to automate the programming and updates of their (300+) Motorola radios. In the past they would have to go to a specific location to have the unit updated. Groundwork0 deployed wireless access points across the County at 10 locations where the radios where most prevalent. We connected all 10 of these locations via private VPN network which allows for a single point of management and a single avenue into the secure State Radio Network (via private VPN to MSP in one location). This network saved the County hundreds of hours annually of labor (officers no longer had to drive for their radio updates).
- NAC: Groundwork0 began implementation and testing of a NAC solution for a local County. Working with County IT staff we deployed, installed and did the initial configuration of an Extreme NAC appliance. We worked with County staff defining and testing specific policies for device groups (printers, phones, cameras, authorized PC’s, etc). We deployed Certificates on County’s AD authorized PC’s and configured local switches to utilize 802.1x to verify end station Certificates. Depending on end station identification we could apply filters, VLAN assignment, and various security policies to devices being added to the network.
2022 Q1
- Worked with a City to implement Azure Cloud Based MFA (Multi Factor Authentication) for VPN access. Due to Covid as much as 60% of the workforce was working offsite. GW0 implemented a training plan and implementation schedule for the MFA rollout. Worked with the help desk to assist with setup, implementation and end user support. This greatly increased the security of the network and saved the City thousands in insurance fees.
- Implemented redundant connections for a medical provider. Customer had traditional ATT circuits for communication between sites. Groundwork0 implemented a Firewall/VPN at each location and connected to a local ISP for Internet service. We configured the network to automatically failover to the VPN connection when the ATT ASE circuit went down.
- Setup a dual-homed connection for the Water Department to Oracle Cloud. We configured the primary connection to advertise the Oracle routes as a /16 network and the secondary connection to advertise as a /15 (less specific). When the primary connection failed traffic would resume over the secondary connection in less than 2 seconds. This project involved route redistribution and policy maps to avoid routing loops.
- Groundwork0 engineers worked closely with a city to re-route multiple sub-optimal network daisy chain connections to provide improved network reliability and reduced data segment congestion. With these improvements, network availability and performance has significantly increased due to LAN segments now being independent of one another and taking optimal layer 2 paths.
______________________________
2021 Q4
- Deployed a remote access solution that would allow Public Safety Officers to securely access recorded voice and radio communications related to 911. Groundwork0 implemented a VPN solution/Firewall solution that would allow PS Officers secure access to the NICE recording system. Groundwork0 implemented, tested and trained the customer’s staff on the use and operation of this system.
- Implemented redundant paths to Oracle Cloud. Our Engineers implemented a secondary VPN connection to the Oracle Cloud for additional performance and redundancy. We implemented a primary and secondary connection both using SR/OSPF for routing. We utilized route maps/filters to avoid issues with asynchronous and out-of-sequence routing.
- Implemented a Palo Alto FW solution for a networking company in Detroit. Customer required a complete security solution that included remote access with AD authentication, content filtering, and virus protection. This solution included deep-packet inspection that moved beyond traditional port/protocol inspection and blocking; we implemented application-level inspection, intrusion prevention and implemented protections against a variety of attacks.
2021 Q3
- Emergency upgrades of VMware platforms at multiple clients with zero downtime or interruption in service.
- Replaced large county Metropolitan Area Network that consisted of 10Gig links between six hub sites in a large ring format (spanning tree for redundancy). We replaced this design with a new Extreme VSP backbone with all core switches dual homed to the primary and secondary data centers. New design provided redundancy at L1/L2 (sub second failover in SPB v. 60 seconds utilizing STP), L3 (implemented VRRP and ISIS routing protocol). This new design also provided significant improvements in performance (dedicated 40Gig for each location v. 10Gig shared between them all).
- Implemented dual factor authentication for VPN authentication for a number of customers. We worked with the customer, testing and deploying the new procedures/policy. Customer saved hundreds of thousands in insurance charges by implementing this simple security procedure for its remote access customers.
- Custom notification system. Customer wanted to have custom alerts associated with their Solarwinds network management platform. GW0 created custom alerts for high temperature, UPS battery status, and generator operating status (an alert was sent out whenever the generator was activated).
- Implemented a remote access solution for a Sheriff’s Department. Sheriff wanted to be able to share local online interviews with authorized personnel. We implemented a remote access solution (authenticated by AD) that allowed remote users to access these archived interviews.
2021 Q2
- Saved local municipality thousands of dollars a month by managing their ATT ASE OnDemand network and fine tuning speeds.
- Move customer from cable to fiber to allow for online streaming of events.
- Deployed Motorola Radio Programming SSID for multiple clients to allow for over the air radio updates.
- Developed and deployed Windows-based RDP/Thin-client remote work solution.
2021 Q1
- Stood up two vaccination site networks in less than 12 hours.
- Immediately remedy FortiNet vulnerabilities as found by CISA for multiple clients.
- Project managed and replaced over 130+ sites from ASE Classic to ASE OnDemand for customer to have more control over VLANs and circuit speeds and overhaul routing.
- Replaced and configured customers critical public safety communications switch in less than one hour after notification that site was down.
______________________________
2020 Q4
- Police InCar Video Precinct access point refresh.
- Installed indoor WiFi to over a dozen precincts.
- Set up of multiple COVID testing centers with wireless Internet.
- Firewall consolidation project. Moved interfaces/policies off an outdated Firewall and moved them to our NAT FW.
2020 Q3
- Designed, configured, and installed network for 30+ satellite election locations for wireless and security encompassing early in-person absentee voting and ballot drop boxes consisting of cellular and wired internet.
- Overhauled 36 firehouse networks including wireless, routing, drops, and phones across large municipality.
2020 Q2
- Designed new network for field cameras and equipment that separated data from the rest of the customers network based on Extreme virtual routing and FortiGate firewall filtering.
- Redesigned/deployed backup solution for large healthcare customer.
- Configured user-based web filtering for large healthcare customer.
- Network Documentation/Best Practices Audit – A large municipal network requested Groundwork0 to perform an audit of their existing network that included security, best practices and documentation. We identified several misconfigured switches, switches with no security, and overhauled the network documentation.
- Network Management: Created custom notifications (page/email) for customer who wanted notification of when one of their UPS’s went on battery. We also created reports including battery health, run time averages, and power forecasts.
- Deployed a 16 AP solution designed for a classroom environment including 70 new tablets/devices on the network. We limited user traffic, increased performance for instructor projectors and planned for growth (in capacity and client density).
- Installed a Cisco wireless solution to provide coverage for a COVID-19 testing center for a large municipality.
- Migrated a customer’s backend from a hosted mail solution to Office 365. This included migrating user mailboxes in conjunction with Rackspace and shifting users data to O365. All users now have easy access to their mail and Office apps from wherever they need to work.
- Worked with current customer to evaluate existing shares and migrate their entire system to the cloud using Sharepoint and OneDrive. Users now have access to their critical files as if they were on the local network, enabling VPN-less work from home.
- Deployed a WAN load balancing ISP solution to figure skating club for use streaming events where higher upload speeds was not an option.
- Designed a completely redundant core network solution for large expo hall to prevent outages.
- Migrated essential (non-dispatch) personnel to work from home. Groundwork0 worked with the customer to deploy an MFA solution leveraging our new partnership with DUO Security to secure their remote desktop sessions.
2020 Q1
- Replaced single firewall with new HA FortiGates, audited configuration, make recommendations on clean-up.
- Assist customer in finding root cause of VRRP issues on the network.
- Help customer solve a routing issue with their network vendor in establishing switch/UPS management networks.
- Install 23 IDF fiber runs for a large warehouse facility.
- Install 500+ network drops for a large office building rehab.
______________________________
2019 Q4
- Created DR in a box! Setup and tested a new SPB node for client that allows immediate deployment of all applications/VLAN’s accross public medium (Cable modem, wifi hotspot, etc.).
- Created custom Solarwinds monitor to notify SQL Applications team when SQLServer/SQLClient processes were unloaded/stopped.
- Implemented NAC via. 802.1x authentication for switches located in ‘public’ places. This ensured that authorized clients were put in the customer secure VLAN, non-authorized clients were put in a ‘public’ VLAN with no access to local secured resources.
- Planned implemented and trained customer on new phone system.
- Continued fiber network build out for client bringing four new sites online connecting to headend with 10G optics.
- Consulted on temporary WiFi deployment for major outdoor events on the riverfront. Proposed network will provide public and private internet service to vendors and attendees for two weeks.
2019 Q3
- Migrated web and email domains to new names with zero interruption in service for the customer. (TCF Center).
- Turned up BGP with multiple ISP to propagate public IP Addresses to the internet and add provide redundancy of publicly accessible systems.
- Revamped network and server alerting to alert specific groups of people on outages and service interruptions.
2019 Q2
- Planned and executed an email migration from Groupwise to Office 365, including reconciling the two user account bases into one Azure-AD implementation. For 10,000 user accounts.
- Enabled 2-Factor authentication for VPN access.
- Enabled 2-Factor authentication for firewall management.
2019 Q1
- Designed and deployed a network and VPN in a box solution for building outages and emergency turn-ups.
- Deployed 40+ access points for large municipality maintenance facility to provide updates to smart busses.
- Supported local ice arena for national championship figure skating.
______________________________
2018 Q4
- Installed outdoor Extreme access points to provide public WiFi at Rosa Parks bus station.
- Designed and implemented 10Gig redundant backbone between primary and secondary data centers.
- Implemented vendor VPN and security policies for sharing applications/data between government agencies. This included but was not limited to real-time video, security access and public Internet.
- Moving and granting access to various AD-enabled resources such as printers, file servers, and application servers.
- Implemented a large-scale wireless solution that included AD authentication, guest wireless and micro segmentation.
- Rebuilding the Wide Area Networking to support a multi-site Active Directory design.
- Rebuilding the DNS environments for both organizations to facilitate the migration.
- Redesigning Active Directory structure and Group Policy to reflect the needs to both organizations residing under one parent.
- Setup multiple VPN’s between customer servers and networks to resolve PCI compliance issues.
- Replaced over 100 Access points in 14-story building. Configured and tested new system and provided customer with heat maps to document signal strength.
2018 Q3
- Designed/Implemented CAD Dispatch virtual environment for healthcare provider.
- Performed trouble shooting & diagnostics for Polycom video arraignment system for local Courthouse.
- Documented/Labeled private fiber network multiple WAN locations.
- Cleaned up active directory to eliminate invalid email addresses in advance of a Azure implementation.
- Help to price install & test new ISP circuits for multiple sites throughout organization.
- Created sandbox test environment to preview capabilities & best configuration options in advance of firmware upgrade core enterprise switches.
2018 Q2
- Designed new WAN solution for local healthcare provider.
- Designed/Implemented 75 seat VoIP phone system for local manufacturing company.
- Designed/Implemented CAD Dispatch virtual environment for healthcare provider.
- Installed Cradlepoint modem cellular VPN solution for a customer that was working out of a construction trailer at a remote construction site. Leasing a temporary circuit was not an option in this situation & our Cellular modem was a perfect alternative.
- Designed/Implemented new network monitoring/management platform for local manufacturing company.
- Expanded/Upgraded a Cisco wireless solution for a local manufacturing company.
2018 Q1
- Migrated JunOS firewall to a Fortigate solution. This new firewall implemented remote access (VPN Services), content filtering, application control & site-to-site VPN’s.
- Installed Cradlepoint modem to provide cellular WiFi for a customer that was working out of a construction trailer at a remote construction site. Leasing a temporary circuit was not an option in this situation & our Cellular modem was a perfect alternative.
- Replaced 15+ handset legacy phone system with new Avaya IP Office Cloud phone system at a local ice skating/training facility.
- Installed over 60 Axis 1080p HD cameras, for 11 new Project Green Light Customers, throughout the City of Detroit.
- Designed, tested & implemented test bed for 802.1x NAS solution for a local County. This included certificate based authentication, VLAN assignment depending on credentials. Devices that failed authentication would be isolated to a ‘vendor’ VLAN with no access to County resources (Internet only).
- Migrated JunOS firewall to a Fortigate solution. This new firewall implemented remote access (VPN Services), content filtering, application control & site-to-site VPN’s.
- Replaced 15+ handset legacy phone system with new Avaya IP Office Cloud phone system at a local ice skating/training facility.
- Installed over 60 Axis 1080p HD cameras, for 11 new Project Green Light Customers, throughout the City of Detroit.
______________________________
2017 Q4
- Installed over 50 Avaya access points at recreation centers throughout City to allow free WiFi access to citizens that use the centers.
- Consulted/Installed over 50 new Extreme switches throughout at multiple locations throughout City. The new Extreme switches replaced & existing Cisco infrastructure.
- Installed/Configured managed SolarWinds monitoring & alerting for network & server equipment at local exhibition hall (NPM, Netflow & Configuration Manager).
- Designed/Installed QNAP NAS server to backup surveillance video for a local police department.
- Installed/Configured new domain controller including active directory, file, & print server for local ice skating facility.
- Complete network overhaul for Local Manufacturing Co. Replaced the seven year old core switch with Extreme solution. This added redundancy (MLT, VRRP, SPB & dual run IDF’s) & performance (10Gig). We also replaced the old Motorola wireless solution with a Cisco Wireless solution. Configured Solarwinds for network monitoring & capacity planning.
- Designed, tested, & implemented test bed for 802.1x NAS solution for Washtenaw County. This included certificate-based authentication, VLAN assignment depending on credentials. Devices that failed authentication would be isolated to a ‘vendor’ VLAN with no access to Washtenaw resources (Internet only).