cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
288
Views
0
Helpful
1
Replies

securing a vlan

bkastor
Level 1
Level 1

I saw the other post, so I am trying to find a solution for this...

I have two 3640's coming into two 6509's. I want to avoid using a hub to get into the two firewalls. I would like to come off the 1 3640 e0 and into the 6509. The 6509 would have two ports in an unsecured vlan. One comming from the 3640 and one going to the firewall(outside). Is anyone doing this and if so, are people using VACL's or ACL's or mac based ACL's??? Boss doesn't want traffic from the internet hitting a switch that also has internal things hanging off it. I have tried to explain that they are different vlans... but he would be more convinced to hear someone else is doing it.

Thanks,

bk

1 Reply 1

rfroom
Cisco Employee
Cisco Employee

VLANs are secure in this since that traffic must cross a router to get between the VLANs, unless the VLANs are bridged somehow. Many customers use seperate VLANs to seperate private and public traffic.

I have heard of customers using ACLs and VACLs for additional security.