Here's my setup:
l3sw1 has vlan interfaces configured for VLAN100 and VLAN200 and is routing between the two.
Each server is on the same VLAN (200) and needs to reach r1 and beyond.
However, I dont want the servers to be able to communicate with each other.
I dont believe private VLAN's will work here and I think MAC access lists would be possible but get quite messy with many hosts on VLAN 200.
Are there any other options?