cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Bookmark
|
Subscribe
|
623
Views
0
Helpful
1
Replies

PSPF, switchport protected and VACL

ruben.montes
Level 1
Level 1

Hello,

I don't want wireless clients to be able to see each other, so I have configured PSPF in the APs, but this only prevents this situation to the users that are associates to the same AP. I know that I could configure 'switchport protected' in the ports of the switchs where the APs are located to achieve this... Is this alright?

I've digged into the Cisco documentation and I haven't seen support for this command in platforms 6500 and 4500. Do you know if this is correct? Any idea if this command would be supported in these platforms in the future?

For the moment, and if I am right, I cannot configure this feature in the switches, so I wouldn't be able to prevent wireless clients in different APs to see each other...

I'm thinking in a workaround that is configure VACL in the L3 VLAN interface to prevent this behaviour? Anyone has tested this solution? Do you think is a good solution in the absence of the 'switchport protected' command?

Thanks in advance

1 Reply 1

p.krane
Level 3
Level 3

The switchport protected command is not supported in Cat 4500, you can use the private VLAN feature to achieve the same purpose as switchport protected command.

Review Cisco Networking for a $25 gift card