<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How safe to use VLAN 1 if it's not spannning or any device on it in Cloud Networking Platform</title>
    <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459312#M13720</link>
    <description>&lt;P&gt;That's what I thought. Thks&lt;/P&gt;</description>
    <pubDate>Fri, 05 Jan 2024 20:04:32 GMT</pubDate>
    <dc:creator>Domntr05</dc:creator>
    <dc:date>2024-01-05T20:04:32Z</dc:date>
    <item>
      <title>How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459303#M13711</link>
      <description>&lt;P&gt;Hi Guys, &lt;/P&gt;&lt;P&gt; I have a question about the best practice around not using VLAN 1. I have VLAN 1 untagged in all trunks between MX and switches with the following. &lt;/P&gt;&lt;P&gt;* Do not have any devices.&lt;/P&gt;&lt;P&gt;* Don't have any DHCP configured. &lt;/P&gt;&lt;P&gt;* Don't have any VLAN interface created. &lt;/P&gt;&lt;P&gt;* VLAN 1 is not spanning anywhere except in these trunk ports between MX and switches&lt;/P&gt;&lt;P&gt;* Don't have any management traffic (Have separate VLAN for that)&lt;/P&gt;&lt;P&gt;* None of the edge ports contain VLAN 1&lt;/P&gt;&lt;P&gt;I have run packet capture with this design then I run another one using VLAN 5 same scenario, since the untagged VLAN is untagged I couldn't see any difference from VLAN 1 to VLAN 5. &lt;/P&gt;&lt;P&gt; Should I worry about anything related to security here? , Let me know if I am missing anything. &lt;/P&gt;</description>
      <pubDate>Sat, 22 Apr 2023 17:56:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459303#M13711</guid>
      <dc:creator>SahadSalmiT</dc:creator>
      <dc:date>2023-04-22T17:56:18Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459304#M13712</link>
      <description>&lt;P&gt;Not using VLAN1 is just a good practice recommendation as it is the default VLAN of any switch, but it does not mean that it cannot be used or that network security is at risk. Security goes much further than a simple VLAN.&lt;/P&gt;&lt;P&gt;If possible, avoid using it, but if you do, that's fine, it's not the end of the world.&lt;/P&gt;</description>
      <pubDate>Sat, 22 Apr 2023 18:31:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459304#M13712</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2023-04-22T18:31:10Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459305#M13713</link>
      <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/51406"&gt;@alessandrodematos&lt;/A&gt; Thanks for your reply, do you know any list of security problems that might occur if I used VLAN 1? I am just curious to know the wisdom behind it. &lt;/P&gt;</description>
      <pubDate>Sat, 22 Apr 2023 20:05:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459305#M13713</guid>
      <dc:creator>SahadSalmiT</dc:creator>
      <dc:date>2023-04-22T20:05:16Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459306#M13714</link>
      <description>&lt;P&gt;Unfortunately not, but you can Google it and analyze by your self.&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.oreilly.com/library/view/cisco-lan-switching/1587050897/1587050897_ch04lev1sec8.html#:~:text=VLAN%201%20contains%20control%20plane,(NMP)%20of%20the%20supervisor" target="_blank" rel="nofollow noopener noreferrer"&gt;https://www.oreilly.com/library/view/cisco-lan-switching/1587050897/1587050897_ch04lev1sec8.html#:~:text=VLAN%201%20contains%20control%20plane,(NMP)%20of%20the%20supervisor&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Sat, 22 Apr 2023 21:13:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459306#M13714</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2023-04-22T21:13:58Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459307#M13715</link>
      <description>&lt;P&gt;The main reasons vlan 1 is considered a potential security risk is because it is the default vlan on switches.&lt;/P&gt;&lt;P&gt;This means that if you have any enabled and unconfigured ports on a switch, someone can plug in with immediate access to vlan 1.&lt;/P&gt;&lt;P&gt;Additionally vlan 1 is used to exchange control plane data for some protocols (especially legacy protocols) as it was guaranteed to exist on every switch.&lt;/P&gt;&lt;P&gt;Placing user traffic on this vlan introduces additional variables that could impact the control plane traffic.&lt;/P&gt;</description>
      <pubDate>Sat, 22 Apr 2023 22:00:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459307#M13715</guid>
      <dc:creator>Brash</dc:creator>
      <dc:date>2023-04-22T22:00:36Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459308#M13716</link>
      <description>&lt;P&gt;Thanks, &lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/64504"&gt;@Brash&lt;/A&gt; , if it's still vulnerable to the scenario in question? &lt;/P&gt;</description>
      <pubDate>Sat, 22 Apr 2023 23:16:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459308#M13716</guid>
      <dc:creator>SahadSalmiT</dc:creator>
      <dc:date>2023-04-22T23:16:59Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459309#M13717</link>
      <description>&lt;P&gt;I wouldn't worry about it.  In Meraki land, spanning tree protocols only use the untagged VLAN.  They need that to flow to let spanning tree form properly.&lt;/P&gt;</description>
      <pubDate>Sun, 23 Apr 2023 20:01:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459309#M13717</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2023-04-23T20:01:14Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459310#M13718</link>
      <description>&lt;P&gt;Guys, Meraki best practice lists that VLAN 1 should be allowed on a trunk between a Catalyst and MS Meraki switch. Please see picture below.&lt;/P&gt;&lt;P&gt;However, Cisco best practice recommends to remove VLAN 1 from trunks. I have it removed and it seemed to work fine. So, what are your recommendations?&lt;/P&gt;&lt;P&gt;Thank you in advance,&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Domntr05_0-1704459906372.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/266338i100C57DF5DB60773/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 05 Jan 2024 13:18:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459310#M13718</guid>
      <dc:creator>Domntr05</dc:creator>
      <dc:date>2024-01-05T13:18:03Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459311#M13719</link>
      <description>&lt;P&gt;I disagree, I prefer to avoid VLAN 1 whenever possible.&lt;/P&gt;</description>
      <pubDate>Fri, 05 Jan 2024 19:59:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459311#M13719</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2024-01-05T19:59:51Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459312#M13720</link>
      <description>&lt;P&gt;That's what I thought. Thks&lt;/P&gt;</description>
      <pubDate>Fri, 05 Jan 2024 20:04:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459312#M13720</guid>
      <dc:creator>Domntr05</dc:creator>
      <dc:date>2024-01-05T20:04:32Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459313#M13721</link>
      <description>&lt;P&gt;Meraki switches use VLAN 1 to send and receive BPDU's for STP.&lt;/P&gt;&lt;P&gt;If you block VLAN 1 on the link between the Catalyst and Meraki switches, they won't see each other in the STP topology.&lt;/P&gt;</description>
      <pubDate>Fri, 05 Jan 2024 20:07:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459313#M13721</guid>
      <dc:creator>Brash</dc:creator>
      <dc:date>2024-01-05T20:07:14Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459314#M13722</link>
      <description>&lt;P&gt;You can simply change the default VLAN.&lt;/P&gt;</description>
      <pubDate>Fri, 05 Jan 2024 20:08:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459314#M13722</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2024-01-05T20:08:53Z</dc:date>
    </item>
    <item>
      <title>Re: How safe to use VLAN 1 if it's not spannning or any device on it</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459315#M13723</link>
      <description>&lt;P&gt;You meant to create a Management vlan and use it as Native and listed in allowed?&lt;/P&gt;</description>
      <pubDate>Fri, 05 Jan 2024 20:12:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/how-safe-to-use-vlan-1-if-it-s-not-spannning-or-any-device-on-it/m-p/5459315#M13723</guid>
      <dc:creator>Domntr05</dc:creator>
      <dc:date>2024-01-05T20:12:55Z</dc:date>
    </item>
  </channel>
</rss>

