Solved

Manage all my networks from the same place

Posted on 2011-09-14
2
303 Views
Last Modified: 2012-05-12
Hi,
I was just wondering if there is any risk to have a management networks to connect different equipment from different networks.

Let me explain
If a have 3 different  networks connected to 3 different routers( or switches).
-A 192.168.1.0 Management: 10.10.10.1 port 15
-B  10.20.15.1  Management :10.10.10.2 port 15
-C 192.168.4.0 Management: 10.10.10.3 Port 15

If I connect the 3 port management on the same switch, to be able to manage all my networks from the same place, is there any risk to mix my A,B ,C networks?

Thx.

0
Comment
Question by:techspeciali
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 22

Expert Comment

by:Matt V
ID: 36538315
There is a small risk if the access lists allow the local networks on each device to talk to the management network.

Normally you will want to stop the LAN interface from talking to the management interface to prevent someone jumping through the management switch to attack another location if they happen to breach the first location.
0
 
LVL 22

Accepted Solution

by:
eeRoot earned 125 total points
ID: 36547237
If the VLAN is routed, then traffic could use it to cross between networks.  You can set up a non-routed VLAN with nothing but the network devices in it. It's called out of band management

http://www.ciscopress.com/articles/article.asp?p=358549
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Getting hacked is no longer a matter or "if you get hacked" — the 2016 cyber threat landscape is now titled "when you get hacked." When it happens — will you be proactive, or reactive?
Arrow Electronics was searching for a KVM  (Keyboard/Video/Mouse) switch that could display on one single monitor the current status of all units being tested on the rack.
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
There's a multitude of different network monitoring solutions out there, and you're probably wondering what makes NetCrunch so special. It's completely agentless, but does let you create an agent, if you desire. It offers powerful scalability …
Suggested Courses
Course of the Month7 days, 3 hours left to enroll

623 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question