07-26-2006 04:24 AM - edited 03-03-2019 04:14 AM
Is it possible to have pc's split via a vlan, yet still on the same subnet, that can see each other ? I have a debate this morning, as there is no point doing that
07-26-2006 05:25 AM
Sorry, I don't understand.
Vlan is a broadcast domain.
Andrea
07-26-2006 05:30 AM
Sorry i dont understand.
Could you tell us what u wanna do exactly?
07-26-2006 05:40 AM
Hi carl,
I think you are talking about the Pvlan thing here. This is possible and you can do it using the Pvlan feature on the switches like 3750,4k and 6K's to have the vlan security at layer 2.
The link below might be handy for you.
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat3750/12225sed/scg/swpvlan.htm
HTH
-amit singh
07-26-2006 07:37 AM
so do many people use private vlans ? and do they have the same subnet but are in another vlan ? how does this work, i thought the idea with vlans was to route between them ?
07-26-2006 09:53 AM
PVLANs are very helpful in certain situations. There would be situations where you wouldn't want a host(s) to talk to another host(s) but would want it to communicate with some other host(s) in the same VLAN and this is where PVLANs can help.
An example would better explain the need for PVLAN.
Customer's DMZ is on vlan 10 and there are 3 servers in that vlan. Under normal circumstances if one of the servers is compromised then there's a good chance the other 2 servers could be compromised as well. Instead, if all 3 servers are on their own PVLAN then they couldn't talk to each other though they are on the same VLAN.
Hope that helps!!
Sundar
07-27-2006 01:26 AM
how would I get things in different pvlans to talk to each other ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide