When setting up a subinterface for a VLAN...
What do you set the security level at for the actual interface?
As seen below, I've managed to do two different things.Intially I didn't know what I was doing...bet you hear that alot.
1) Ethernet0/1 the actual port and a subinterface on that port becomes VLAN 100.
Probably not supposed to do that, it is working. But they both have different security levels, does one step on the other?
2) Ethernet0/3 physical port has no security set, however VLANs 2 and 6 both have different security levels.
I have had it set that the physical port has a security level set, but I find that confusing-- wouldn't that interfere with the security levels on the subinterfaces below it?
ip address 220.127.116.11 255.255.255.224
ip address XXX.XXX.3.254 255.255.255.0
ip address XX.XX.1.10 255.255.255.0
no ip address
ip address XXX.XXX.30.254 255.255.255.0
ip address XXX.XXX.112.254 255.255.255.0
Really what is the best way this should be setup? And do security levels on the physical interface affect the security levels on the subinterfaces?
Thank you so much!