cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
225
Views
5
Helpful
1
Replies

Restricting a port to communicate

jijeshk82
Level 1
Level 1

I have a 2950 cisco switch in my office. The reqirement what I need is I want to restrict the system connected to 2nd port to communicate with all other ports, and the communication must takeplace viceversa,i.e all ports of switch must be able to communicate with the 2nd. If any one is having any idea about it without creating a vlan please give me the information.

1 Reply 1

konigl
Level 7
Level 7

Without creating a VLAN? Hmmm....

It depends what protocols you are using. What kind of restrictions do you want?

One way you could do this for TCP/IP, if you also have a Cisco router connected to that LAN, is to configure a secondary IP address on the router's LAN interface. Then assign the device on the 2nd switch port an IP address in that secondary IP subnet. Now, all communications between the device on the 2nd switch port and all the other devices on the same VLAN have to go through the router to talk to each other.

An advantage of doing this is, you can use access control lists to restrict what kind of traffic is allowed to pass between the rest of your network and the device on the 2nd switch port. The disadvantage is, performance through the router may be very slow depending on what kind of router you use.

Now, if your switch was a 3550 instead of a 2950, you could route between the two IP subnets if you create a secondary IP address on the switch's VLAN interface and enable IP routing within the 3550. This way you would get full-wire-speed performance.

Hope this helps.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: