It is a good practise to put your servers in an isolated VLAN and I would recommend the following:
1 - Create a VLAN for your servers
2 - Add some Gig ports to this VLAN and connect your servers to these ports
3 - Create another VLAN for your workstations and place all their ports in this VLAN (don't use VLAN1 for any hosts and keep it only for management purposes).
4 - Enable IP routing on your switch
5 - Configure VLAN interfaces and assign IP addresses for them. These interfaces will be the gateway address for servers and PC's.
6 - Don't configure any access lists for now, keep all traffic flowing between the two VLANs for a while till you create an understanding of traffic patterns.
7 - After a while start creating ACL's and monitor the results.
That's all I can say in a simple way ..