06-16-2009 10:16 AM - edited 03-06-2019 06:17 AM
I would like to lockdown our seperate vlans. Right now any vlan can ping any vlan and any host within... so obviously this is not a regular vlan configuration.
thanks.
06-16-2009 10:20 AM
Hi,
Each vlan has its own interface vlan at the core switch. Right? If yes,They can talk to each other via their gateway(int vlan). If you want to block talking between them,then you may think about ACL.
HTH,
Toshi
06-16-2009 11:51 AM
One way is through ACLs, the other way, if you are using a L3 capable switch, is to not create a SVI for the seperate VLans. I have a guest network vlan that I have set up that way. You will need to handle the routing at your gateway but it works well for me.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide