cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
329
Views
0
Helpful
1
Replies

Cisco 4500 VLAN, PVLAN

rraver
Level 1
Level 1

Everyone,

I am trying to seperate different ports into seperate VLANs. I want no vlan to talk to each other unless otherwise specifically stated. From my understanding, normal VLAN's can talk to each other unless you have a ACL on attached to the VLAN? Also, with PVLAN, if they are seperate secondary VLAN they can talk to each other as long as they are under the same primary VLAN? Again, controlled by ACL? Any help would be appreciated?

1 Reply 1

Prashanth Krishnappa
Cisco Employee
Cisco Employee

Devices in different VLANs cannot communicate with each other by default. To do this, you would need to configure layer 3 VLAN interfaces for each VLAN and enable inter vlan routing. If you do so, you will need to use ACLs to control traffic.

With PVLAN, you have concept of Isolated VLAN which is a secondary VLAN and members of Isolated VLAN cannot talk to any other device other than promiscuous port. The following page should help(written for 6500 but concept is the same)

http://www.cisco.com/warp/public/473/90.shtml