On Thu, 23 Jun 2011, Mark Smith wrote:
Hub-and-spoke or point-to-point reachability is what they want. If it is possible to enforce a hub-or-spoke topology on an Ethernet LAN by preventing the 1-to-many or 1-to-any capability, in effect making it an NBMA link-layer, or creating a point-to-point topology via VLANs, then Ethernet is the best choice because it is both cheap and ubiquitous.
Yes, this has been a very successful model for high speed residential connectivity (ETTH) the past 10 years.
And yes, you have to protect the users from each other, so they don't do MITM-attacks on each other. This requires some kind of limitation of traffic they can send to each other using L2, and full L2 isolation is of course the best.
-- Mikael Abrahamsson email: swm...@swm.pp.se -------------------------------------------------------------------- IETF IPv6 working group mailing list ipv6@ietf.org Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6 --------------------------------------------------------------------