01-24-2018 07:52 PM - edited 03-08-2019 01:33 PM
Hi,
I have a distribution switch
There are multiple vlan
vlan 10
10.0.10.1 /24
vlan 15
10.0.10.1 /24
vlan 11
10.0.11.1 /24
vlan 20
10.0.12.1 /24
vlan 25
10.0.25.1/24
I have connected one firewall (so i can monitor intervlan ) to the distribution switch .
vlan 25 and vlan 20 intervlan routing should handled by firewall . Any unknown route like internet ,servers in the core firewall will route back to distribution
Is it a good idea ,If yes how can i do that
Thanks
01-24-2018 08:06 PM
Hi,
One option could be to keep the distribution switch as layer-2, trunk the connection between the core and the firewall and move all the gateways for all vlans to the firewall. The other option would be to keep all the gateways on the distro switch and use a layer-3 link between the switch and the firewall.
HTH
01-24-2018 08:24 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide