Vlan communication between switchports

Unanswered Question
Dec 22nd, 2008
User Badges:

Hi,


Is it possible to block all communication between two switchports for a particular vlan and allow the same for all other vlans.


I want to block all traffic including ARP broadcasts for that particular vlan.


Regards,

Prakash

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Giuseppe Larosa Mon, 12/22/2008 - 05:11
User Badges:
  • Super Silver, 17500 points or more
  • Hall of Fame,

    Founding Member

Hello Prakash,


you can think to use private vlans


private vlans could help:

additional secondary vlans of type isolated or community can be used to allow device to gateway communication only.


see


http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.2SX/configuration/guide/pvlans.html


Hope to help

Giuseppe


prakashj Mon, 12/22/2008 - 05:17
User Badges:

Thanks Guisseppe...


But my switchports are connected to another switch and they are configured as trunk...hence we cannot use private vlans...also there are other vlans which needs full communication even to a default gateway.


The model of the switch is 3750. I tried configuring switchport protected but it stopped all communication between the ports. Also there is no option to configure switchport protected for a particular set of vlans.


Regards,

Prakash

Giuseppe Larosa Mon, 12/22/2008 - 06:36
User Badges:
  • Super Silver, 17500 points or more
  • Hall of Fame,

    Founding Member

Hello Prakash,

in this case you should change your network design adding new vlans and placing some users on each of them


Hope to help

Giuseppe


Actions

This Discussion