Solved

Setting up a first VLAN

Posted on 2014-12-03
6
344 Views
Last Modified: 2014-12-03
I have a simple non-VLAN'ed network. I'd like to create a VLAN to carry guest traffic only. Do I need to create 2 VLAN's? one for the guest network and one for the corporate network? Or do I just create a VLAN for the guest network and leave the corporate network "untagged"? All my switches are managed and we have a SonicWall router so everything is VLAN capable but it's never been setup.

I know I will need to create trunk ports between the switches and access ports for everything else. Am I on the right track?

Thanks
Kent
0
Comment
Question by:fkoyer
  • 3
  • 3
6 Comments
 
LVL 11

Accepted Solution

by:
Miftaul earned 500 total points
ID: 40478648
By default all switch port are part of vlan1 in a managed switch. It's good to create two vlans, one for data and another for guest.

On the SonicWall, create a new virtual interface and tag that to your guest vlan.

You can them control the communication between vlans using firewall access rules if that's required.

You are right that between the switches, the connectivity has to be trunk. Also it's trunk port, that is connecting to SonicWall interface.
0
 
LVL 1

Author Comment

by:fkoyer
ID: 40478658
So you recommend creating two new VLANS and not using vlan1?

The guest traffic will only need to go through 2 switches to get to the router. But I have about 5 other switches. Do I need to setup the VLAN on all the switches or just the 2 that carry the guest traffic?

Thanks!
0
 
LVL 11

Expert Comment

by:Miftaul
ID: 40478681
yes, that is best practice.

No, you dont need to create the guest vlan on all the switches. Just make sure the guest vlan is present on the switch where guests are conecting and to the switches that guest vlan will pass to reach to the sonicwall.
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 
LVL 1

Author Comment

by:fkoyer
ID: 40478839
Excellent. I would still need to configure the corporate VLAN on all the switches, correct?
0
 
LVL 11

Expert Comment

by:Miftaul
ID: 40478847
yes. That is correct.
0
 
LVL 1

Author Comment

by:fkoyer
ID: 40478871
Thanks!
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Netgear switch to Cisco switch VLAN not passing traffic 8 33
L2 to EIGRP slow migration? 27 97
EIGRP Full Mesh 2 62
VirtualBOX on GNS3 11 94
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

911 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

24 Experts available now in Live!

Get 1:1 Help Now