Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win


Benefits of VLANs

Posted on 2009-05-13
Medium Priority
Last Modified: 2012-08-13
I am trying to convert a currently fully switched, flat network over to a VLAN deployment with a Layer 3 HP ProCurve switch at the core. There are approximately 600 nodes on this network.

I would appreciate somebody informing me what the actual benefits of deploying VLANs, rather than simply plugging devices together in a switched fashion, would be for the network, bandwidth and any other factors you can think of.

Thanks :-)
Question by:tigermatt
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
LVL 21

Assisted Solution

from_exp earned 560 total points
ID: 24374116
you can separate broadcast domains.
So you can have servers vlan, workstations vlan, etc.
so any L2 problems in workstation vlan (misconfigured ip, broadcast storms, etc) will not affect servers.
LVL 21

Assisted Solution

from_exp earned 560 total points
ID: 24374129
again, it is a good practice, to separate test and development from rest of production network, SAN network (if iSCSI), management vlan, etc

Assisted Solution

Jitpar earned 320 total points
ID: 24374333
VLAN is a way of micro-segmenting a L2 / L3 topology into separate broadcast domains. Each VLAN is a separate broadcast domain, ie: all broadcasts are seen by devices within the same VLAN.
Inter-VLAN communication is restricted, requires a L3 routing device to communicate between broadcast domains.  
Couple of Benefits listed below
1. Saves excessive usage of physical connectivity
2. One link can pass all different broadcast seggregated packets to respective destinations
3. By using VTP further, we can also sync between devices making one as server and other clients. Updates will be sent automatically and devices will remain in sync upon any change recorded amongst them.
4. Different Vlans can be segmented across different deppt. for eg marketing and sales in the same building can be put under  tow seperate vlans. Both networks will remain seperate though using the same devices to flow.
5. Bandwidth is saved a lot as well. Further you can use etherchannels to segment the bandwidth for better flow of packets.
LVL 10

Assisted Solution

ngravatt earned 280 total points
ID: 24375853
segregating traffic has security benefits.

user departments and server functions should be in different IP address ranges.  

marketing on vlan x and engineering on vlan y
production servers on vlan a and development servers on vlan b

when setting up firewalls or monitoring devices or access lists, you can limit access (provide security) to these networks separately.

Accepted Solution

ludo_friend earned 840 total points
ID: 24382843
I generally group computers in my organisaton into small groups (vlans) based on thier department. this enables much simpler l3 filtering as I can filter by interface or subnet. this also gives you the ability to filter (ACL) what can pass between the vlans (i.e. marketing doesn't need to talk to accounts, IT needs to talk to everything). You'll be glad you did when a virus manages to get past your protections and only manages to infect 6 marketing computers rather then everything.
this has obvious security advantages, as well as the ability to set different qos for each vlan.
at 600 nodes, you're not quiet large enough to worry about broadcast storms and the likes, but I would be starting to segregate your network into smaller subnets and vlans more for its security and management advantages.
I also use it to section off development and production servers from eachother.
hope I've helped.

Featured Post

Ask an Anonymous Question!

Don't feel intimidated by what you don't know. Ask your question anonymously. It's easy! Learn more and upgrade.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Tired of waiting for your show or movie to load?  Are buffering issues a constant problem with your internet connection?  Check this article out to see if these simple adjustments are the solution for you.
WARNING:   If you follow the instructions here, you will wipe out your VTP and VLAN configurations.  Make sure you have backed up your switch!!! I recently had some issues with a few low-end Cisco routers (RV325) and I opened a case with Cisco TA…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

618 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question