01-24-2018 07:52 PM - edited 03-08-2019 01:33 PM
Hi,
I have a distribution switch
There are multiple vlan
vlan 10
10.0.10.1 /24
vlan 15
10.0.10.1 /24
vlan 11
10.0.11.1 /24
vlan 20
10.0.12.1 /24
vlan 25
10.0.25.1/24
I have connected one firewall (so i can monitor intervlan ) to the distribution switch .
vlan 25 and vlan 20 intervlan routing should handled by firewall . Any unknown route like internet ,servers in the core firewall will route back to distribution
Is it a good idea ,If yes how can i do that
Thanks
01-24-2018 08:06 PM
Hi,
One option could be to keep the distribution switch as layer-2, trunk the connection between the core and the firewall and move all the gateways for all vlans to the firewall. The other option would be to keep all the gateways on the distro switch and use a layer-3 link between the switch and the firewall.
HTH
01-24-2018 08:24 PM
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: