cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1459
Views
0
Helpful
3
Replies

How to create a fake VLAN

rwamstutz
Level 1
Level 1

All, can you tell me how to create a fake VLAN, that if a end device was plugged into the switch, it wouldnt go anywhere?

3 Replies 3

royalblues
Level 10
Level 10

Create a VLAN but do not create any corresponding SVI for that VLAN.

THis way the VLANS will not have any gateway and will not work

Narayan

jphilope
Level 3
Level 3

If you are worried about someone plugging into an unused port on a switch and gaining access to your network, would it not be better, safer and more manageable to shut the interface? However, physical access is access. They can unplug any in use port and access the network. To do it differently, you would need a NAC.

Amit Singh
Cisco Employee
Cisco Employee

I agree with Narayan on this to create a vlan and donot create a corresponding SVI. Also, make sure that you donot assign any ports to Vlan1, which is default vlan and all the ports belong to it.

Please use the link for Vlan security and more info on this:

http://www.cisco.com/en/US/products/hw/switches/ps708/products_white_paper09186a008013159f.shtml

HTH,Please rate it it does.

-amit singh

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card