Catalyst security..

From: Darren Johnson (dazza_johnson@yahoo.co.uk)
Date: Mon Jan 21 2008 - 13:48:51 ARST


Hopefully this is a quick one. The Catalyst 3550s do not support
private-vlans, but Catalyst 3560s do. I think this is correct.

As a generalisation, private-vlans can prevent two hosts on the same subnet
and 'vlan' from communicating. For the 3550s to do something similar to this
concept, we use protected ports. Any ports within a VLAN that are protected
cannot communicate (without L3 router). Therefore, in concept the protected
ports feature with 3550s is similar to private-vlans with 3560s. In fact,
going a stage further it is more like an isolated-private-vlan.

Can someone confirm this or throw in there ideas?

Dazzler

P.S. one month today until my lab :-)

                



This archive was generated by hypermail 2.1.4 : Fri Feb 01 2008 - 10:38:00 ARST