[Webinar] Streamline your web hosting managementRegister Today

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 452
  • Last Modified:

How to add a VLAN that can't access other VLANs?

I currently have a Cisco switched environment with 2 banks of stacked switches that act as the core switch for their respective location.  These are both configured as VTP servers.  They currently have a few VLANs configured that have access to each other.  How can I add a "Guest Network" VLAN that does not have access to the other VLANs and vice versa?

I need to be able to configure ports on any of the switches to be a member of this "Guest Network" VLAN, but I do not want it to be able to access any other VLANs as I stated above.  How do I configure that?

Thanks!
0
VIBT
Asked:
VIBT
2 Solutions
 
Rick_O_ShayCommented:
I had posted this earlier but it ended up in a case I never opened.

VLANs are isolated by design so if you don't allow routing between the Guest and other VLANs it should be isolated.
You probably want to he guest to get to the Internet so that most likely won't work.
Your other option is to manage the traffic flow using ACLs.
0
 
mat1458Commented:
Primarily by not configuring the "interface vlan xx" but only the "vlan xx". But as you probably want to be able to let the guests do anything else than talking to eachother you might need to tell us a bit more about your topology. Are there firewalls and if so do you have any free interfaces or do you trunk/tag the traffic towards the firewall?
0
 
VIBTAuthor Commented:
Thanks guys!  from your responses I believed that what I wanted to do was not possible with my limited Cisco knowledge and the limited time I had to implement.  I ended up implementing an additional physical switch that I was able to free up and kept the Guest Network physically separate from my internal LAN.

Thanks!
0

Featured Post

Hire Technology Freelancers with Gigs

Work with freelancers specializing in everything from database administration to programming, who have proven themselves as experts in their field. Hire the best, collaborate easily, pay securely, and get projects done right.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now