Using Port Based VLANs to isolate security zones

Using Port Based VLANs to isolate security zones

Secure Home | Search | About
 Networking Firewalls    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Using Port Based VLANs to isolate security zones pgmanno 02-29-2008
Posted by pgmanno on February 29, 2008, 3:55 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hello All,

Here's the situation:
I want to use an HP 4208vl (http://www.hp.com/rnd/products/switches/
ProCurve_Switch_4200vl_Series/overview.htm) fully loaded with GigE
ports as the "core" switch in my network. I want to define multiple
port based VLANs on this switch. One VLAN would be LAN
(workstations), another would be Perimeter Network (web server/ftp
server), another would be Core infrastructure (Domain Controllers,
etc...), another VLAN for an iSCSI subnet, and a final VLAN for other
building services (Building Management, etc...). I would not allow
routing between any of the VLANs. I would have a SonicWall PRO 3060
or something similar to handle traffic filtering between VLANs.

I just want to know if this is a good idea or not and if it is common
practice. If it is not a good idea, please suggest an alternative.

Thanks,
Paul.

Similar ThreadsPosted
configuring IP range for zones September 19, 2007, 3:26 pm
Avaya / Lucent firewalls : parsing of multiple ruleset zones December 22, 2004, 6:15 am
Port Translation based on Source Address November 7, 2004, 11:09 pm
Cisco Announces Industry's First Network-Based, Standards- Based Rapid Channel-Change..... December 26, 2006, 11:41 am
what are 'host -based' vs OS-based firewalls? May 25, 2005, 3:54 pm
PIX and VLANs March 5, 2007, 5:57 pm
VLANs/VPN on PIX 506e September 2, 2006, 5:58 am
VLANS in a DMZ - good idea? January 26, 2005, 5:40 am
VLANs over Geographical Boundaries April 27, 2006, 8:05 pm
port 6112 closed due to security"? March 15, 2005, 6:43 pm

The site map in XML format XML site map

Contact Us | Privacy Policy