Solved

Setting up a first VLAN

Posted on 2014-12-03
6
348 Views
Last Modified: 2014-12-03
I have a simple non-VLAN'ed network. I'd like to create a VLAN to carry guest traffic only. Do I need to create 2 VLAN's? one for the guest network and one for the corporate network? Or do I just create a VLAN for the guest network and leave the corporate network "untagged"? All my switches are managed and we have a SonicWall router so everything is VLAN capable but it's never been setup.

I know I will need to create trunk ports between the switches and access ports for everything else. Am I on the right track?

Thanks
Kent
0
Comment
Question by:fkoyer
  • 3
  • 3
6 Comments
 
LVL 11

Accepted Solution

by:
Miftaul earned 500 total points
ID: 40478648
By default all switch port are part of vlan1 in a managed switch. It's good to create two vlans, one for data and another for guest.

On the SonicWall, create a new virtual interface and tag that to your guest vlan.

You can them control the communication between vlans using firewall access rules if that's required.

You are right that between the switches, the connectivity has to be trunk. Also it's trunk port, that is connecting to SonicWall interface.
0
 
LVL 1

Author Comment

by:fkoyer
ID: 40478658
So you recommend creating two new VLANS and not using vlan1?

The guest traffic will only need to go through 2 switches to get to the router. But I have about 5 other switches. Do I need to setup the VLAN on all the switches or just the 2 that carry the guest traffic?

Thanks!
0
 
LVL 11

Expert Comment

by:Miftaul
ID: 40478681
yes, that is best practice.

No, you dont need to create the guest vlan on all the switches. Just make sure the guest vlan is present on the switch where guests are conecting and to the switches that guest vlan will pass to reach to the sonicwall.
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 
LVL 1

Author Comment

by:fkoyer
ID: 40478839
Excellent. I would still need to configure the corporate VLAN on all the switches, correct?
0
 
LVL 11

Expert Comment

by:Miftaul
ID: 40478847
yes. That is correct.
0
 
LVL 1

Author Comment

by:fkoyer
ID: 40478871
Thanks!
0

Featured Post

Portable, direct connect server access

The ATEN CV211 connects a laptop directly to any server allowing you instant access to perform data maintenance and local operations, for quick troubleshooting, updating, service and repair.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Unifi AP 4 85
Internet Protocol Security question 3 94
NAT not working on trunk 6 37
How to enable specific Cisco Gigabit Switch port to operate with certain VLAN only ? 4 58
This article is a step by step guide on how to create a basic PTP link using Ubiquiti airOS devices. This guide can be used on the following Ubiquiti AirMAX devices. Nanostation, Bullets, AirBridge, Nanobeam, NanoBridge to name a few. Please review …
#Citrix #Citrix Netscaler #HTTP Compression #Load Balance
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

808 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question