Re: Restart: VLAN question...
- From: Geir Holmavatn <geir055@xxxxxxxxxxx>
- Date: Mon, 28 Aug 2006 18:50:48 +0200
Bod43@xxxxxxxxxxxxx wrote:
anoop wrote:
Hi,
It looks to me as if you want:-
NO VLANS - well one on each switch
i.e. the default.
On the Domain Controller switch:-
Configure all ports except the Domain Controller as PVE
Configure the Domain Controller port as the uplink
On the Internet switch:-
In order to prevent classes talking to each other
when more than one is pluggeg into the internet
you do the same thing on the Internet switch.
i.e. Firewal port PVE
Nothing else
Done.
Can both the domain controller switch and the internet switch be combined into one SRW2016? Domain range: Port 1-6 with uplink Port 8 and Internet range: Port 9-14 and uplink port 16? Or will this cause unexpected side effects?
This will allow the following.
All PCs/printers will be able to talk to the DC
No PCs will be able to talk to another class
No PCs will be able to talk to the internet
PCs within a class will be able to talk to each other.
Then you can plug in the Internet cable to class
room switches as you require.
Is that what you want?
Yeah, exactly.
However, in another forum one guy wrote:
PVE's are used between like switches to extend your VLAN topology across your switch topology so if you had 2 or more SRW2016s, they can all be combined to make it look like you had on really big SRW2016 that had 32 ports or more that you can then split up into separate VLANs. It does not apply here to the specific scenario that you want a solution to. And per the parameters that you gave, this feature does not work with non-linksys, non-PVE capable switches, so the 2 unmanaged switches fitting into the non-linksys, non-PVE capable catagory will not work.
The only think left though is that you mentioned
"subnets". I think you didn't mean it.
All workstation computers, the domain controller and the router's LAN address are on the same subnet.
I bet you have a central printer:-(((
Yes, several.
A professional level solution to this
would be to put each PC on a different subnet and
change the firewall permissions as required to
permit/deny access.
The classes consist almost always of different students (with different subject choices) so this will be very difficult to manage.
regards geir
.
- Follow-Ups:
- Re: Restart: VLAN question...
- From: Bod43
- Re: Restart: VLAN question...
- From: anoop
- Re: Restart: VLAN question...
- References:
- VLAN question...
- From: Geir Holmavatn
- Re: Restart: VLAN question...
- From: anoop
- Re: Restart: VLAN question...
- From: Geir Holmavatn
- Re: Restart: VLAN question...
- From: anoop
- Re: Restart: VLAN question...
- From: Bod43
- VLAN question...
- Prev by Date: Re: Restart: VLAN question...
- Next by Date: MPLS vs VLAN and 802.1q tags for QOS
- Previous by thread: Re: Restart: VLAN question...
- Next by thread: Re: Restart: VLAN question...
- Index(es):
Relevant Pages
|