cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
277
Views
0
Helpful
3
Replies

NO Communicaction in Vlan IPs

cisco.net
Level 1
Level 1

Dear Freinds,

Stuck up with a scenerio where i have many IPs / IP pool configured in a single Vlan (for eg:- Vlan 10) or single broadcast domain. and i need/want that no IPs/IP Pool can communicate to any other Ips in Vlan 10. What need to be done to fulfill this.

Regards

3 Replies 3

lamav
Level 8
Level 8

Hi:

You can use the traditional method for isolating a vlan by using ACLs. You would apply an ACL to the layer 3 interface for vlan 10.

Alternatively, you can place the vlan in a VRF, which would isolate other VRFs from it.

HTH

Victor

cisco_lad2004
Level 5
Level 5

Jimmy,

this is a job for private vlans, PVLANs will ensure hosts do not communicate together at Layer 2...this means you still need to have an ACL to take care of Layer 3 communication.

http://www.cisco.com/en/US/docs/switches/lan/catalyst4500/12.2/31sga/configuration/guide/pvlans.html

HTH

Sam

Sam:

I must have misunderstood. I thought he was trying to block inter-vlan communications, not inter-host (intra-vlan) within vlan 10.

Thanks

Review Cisco Networking products for a $25 gift card