Vlan need not to communicate to one perticular Vlan

Answered Question
Feb 3rd, 2010

Hi,

I have a question on Vlan communications.

I have a scenario where in i have 5 Vlans ( Vlan 1,2,3,4,5) in my switch, and my requirment is that i don want the VLAN 3 and Vlan 4 to communicate to each other. where as all other vlans except Vlan3 should communicate to Vlan4 and vice versa  ....and all vlans except 4 should communicate to Vlan3 and vice-versa...

Please reply me with the logic and neccesary cammands.

Thanks

I have this problem too.
0 votes
Correct Answer by Jon Marshall about 6 years 11 months ago

azharuddininamdar wrote:

Hi Jon,

Thanks a ton for this info..

Can i implement the same using distribute list?

No, distribute lists are used primarily for filtering inbound or outbound routing updates. If you want to restrict traffic between vlans then acls are the way to go.

Jon

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Loading.
Jon Marshall Wed, 02/03/2010 - 17:02

azharuddininamdar wrote:

Hi,

I have a question on Vlan communications.

I have a scenario where in i have 5 Vlans ( Vlan 1,2,3,4,5) in my switch, and my requirment is that i don want the VLAN 3 and Vlan 4 to communicate to each other. where as all other vlans except Vlan3 should communicate to Vlan4 and vice versa  ....and all vlans except 4 should communicate to Vlan3 and vice-versa...

Please reply me with the logic and neccesary cammands.

Thanks

vlan 3 = 192.168.5.0/24

vlan 4 = 192.168.6.0/24

access-list 101 deny ip 192.168.5.0 0.0.0.255 192.168.6.0 0.0.0.255

access-list 101 permit ip 192.168.5.0 0.0.0.255 any

access-list 102 deny ip 192.168.6.0 0.0.0.255 192.168.5.0 0.0.0.255

access-list 102 permit ip 192.168.6.0 0.0.0.255 any

int vlan 3

ip access-group 101 in

int vlan 4

ip access-group 102 in

Jon

Correct Answer
Jon Marshall Wed, 02/03/2010 - 17:11

azharuddininamdar wrote:

Hi Jon,

Thanks a ton for this info..

Can i implement the same using distribute list?

No, distribute lists are used primarily for filtering inbound or outbound routing updates. If you want to restrict traffic between vlans then acls are the way to go.

Jon

Actions

This Discussion