Hi All,
I am using proctorlabs to run some tests on private vlans and on
switchport protected command.
My scenario is as follows:
R1 Fa0/1 --- Fa0/1 Cat2 fa0/2 --- Gi0/1 R2
Fa0/6 --- Fa0/0 R6
Fa0/7 --- Fa0/0 R7
Fa0/8 -- Fa0/0 R8
Router interfaces are in 10.1.2.x/24 network where x is routers number.
Tasks:
- Routers (R2,R6,R7,R8) should be in the same VLAN.
- R2 and R6 should talk to each other but they should not be able to
talk to R7 and R8.
- R7 and R8 should be able to talk to each other and also to other
devices in the same vlan (when they will be added in the future).
First without any settings on Cat2 I have run ping from R1 to other
routers and it was successfull.
My suggested solution. Put switchport protected on fa0/2 and fa0/6 so
they should be able to talk to each other via Layer 3 device (R1).
Put R7 and R8 in community private-vlan so they can talk to each
other but not to R2 and R6.
Is that logic correct?
Thanks for all comments.
Regards,
Lukasz
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit
www.ipexpert.com
Are you a CCNP or CCIE and looking for a job? Check out
www.PlatinumPlacement.com
http://onlinestudylist.com/mailman/listinfo/ccie_rs