Preventing Inter-VLAN communication - Layer 3 Switches
What would be the best approach to stop communication between two vlans on a 3550 L3 switch?
Would I have to use VLAN maps and or Router ACLs...? This is one of those things I've never fully understood as the CCNA level books were always based around L2 switches and ROAS..
Thanks
Would I have to use VLAN maps and or Router ACLs...? This is one of those things I've never fully understood as the CCNA level books were always based around L2 switches and ROAS..
Thanks
Getting There ...
Lab Equipment: Using Cisco CSRs and 4 Switches currently
Lab Equipment: Using Cisco CSRs and 4 Switches currently
Comments
-
xnx Member Posts: 464 ■■■□□□□□□□Thanks, for once I didn't read up properly and I just found this:
Catalyst 3550 Multilayer Switch Software Configuration Guide, Rel. 12.2(25)SEB - Configuring Network Security with ACLs [Cisco Catalyst 3550 Series Switches] - Cisco
It explains everything pretty well.Getting There ...
Lab Equipment: Using Cisco CSRs and 4 Switches currently -
tomtom1 Member Posts: 375VACL's are for traffic within the VLAN. In this case, as already mentioned you need to put ACL's on the SVI.
-
xnx Member Posts: 464 ■■■□□□□□□□Thanks, yeah I now understand how VLAN maps apply to traffic within a VLAN and can be used to prevent communication between two hosts on the same VLAN.Getting There ...
Lab Equipment: Using Cisco CSRs and 4 Switches currently -
tomtom1 Member Posts: 375mesho_emad wrote: »i want to know also
-
Dieg0M Member Posts: 861wrong. easiest and best way is to put them in separate VRF'sFollow my CCDE journey at www.routingnull0.com
-
OfWolfAndMan Member Posts: 923 ■■■■□□□□□□
Agreed.:study:Reading: Lab Books, Ansible Documentation, Python Cookbook 2018 Goals: More Ansible/Python work for Automation, IPSpace Automation Course [X], Build Jenkins Framework for Network Automation [] -
xnx Member Posts: 464 ■■■□□□□□□□Thanks, I guess SVI ACLs would be the best approach for a School network - it has 3560s; obviously outdated equipment?
I'll be working on a school network and one day hope to convert one to a Staff/Students/Management VLAN setup where the VLANs are completely isolated.Getting There ...
Lab Equipment: Using Cisco CSRs and 4 Switches currently