cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
294
Views
0
Helpful
1
Replies

Private vlans

namissha
Level 1
Level 1

As we know that isolated vlans cannot talk to eah other and moreover the the host in a same isolated vlan does not talk to each other.

But we have a promiscous port which allows isolated host to talk to each other.

If we would not associate the isolated vlan to promiscous it would not be able to go to internet.

How we could achieve this that we donot want isolate vlan to talk to each other and they should reach internet as well.

Is there a concept of route filtering which we need to do or any other config with which we could be able tpo acheive this????

1 Reply 1

IAN WHITMORE
Level 4
Level 4

You didn't mention the hardware but yes it is possible.

Take a look at VLAN access control lists or VACLs.

Example:

http://www.cisco.com/en/US/products/hw/switches/ps700/products_tech_note09186a008013565f.shtml

HTH;

Ian

Review Cisco Networking for a $25 gift card