06-30-2022 07:59 AM
My department is looking for implementing private VLANs on Firepower 2000 and 4000 series.
Is this feature available or supported on FTD/FMC?
Thanks in advance for the reply.
Solved! Go to Solution.
06-30-2022 08:27 AM
Adding to what @Rob Ingram correctly noted, even the firewall models that support onboard switching (like the Cisco Secure Firewall 1010) do not support private VLANs.
PVLAN is mostly a technology that has been abandoned in favor of other segmentation or microsegmentation techniques. I have seen them in use in production once in over 30 years of experience working with hundreds of customer networks.
06-30-2022 08:07 AM
@PiotrB Private VLANs are a function of switches, not the firewalls.
You can segment networks (VLANs) behind the Firewall, but filtering traffic within the VLAN would not be routed via the Firewall.
06-30-2022 08:27 AM
Adding to what @Rob Ingram correctly noted, even the firewall models that support onboard switching (like the Cisco Secure Firewall 1010) do not support private VLANs.
PVLAN is mostly a technology that has been abandoned in favor of other segmentation or microsegmentation techniques. I have seen them in use in production once in over 30 years of experience working with hundreds of customer networks.
11-10-2024 08:38 AM
Marvin,
Can you go into a little more detail on the "segmentation or microsegmentation techniques" ?
VR
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide