|
|
Subject:
Security Issues with Port-based VLANs
Category: Computers > Security Asked by: skyedog-ga List Price: $50.00 |
Posted:
17 Mar 2004 21:09 PST
Expires: 16 Apr 2004 22:09 PDT Question ID: 317841 |
Are there any security issues associated with port-based VLANs? In particular, if I want to connect some machines in a DMZ and some others behind a firewall, with a router in between, to one physical switch, will using two port-based VLANs for the two groups of machines compromise the security-related efforts taken to isolate the two sets of machines? |
|
There is no answer at this time. |
|
Subject:
Re: Security Issues with Port-based VLANs
From: nereid-ga on 29 Mar 2004 01:35 PST |
You have to check the vulnerabilities in the switch, to check if there are related vulnerabilities to the VLAN (or you particular setup). There are vulnerabilites associated with trunking and VLAN, under certain conditions one machine could send TAG (802.11Q acting as another switch), and jump over other VLAN. If everything is setup properly yo will have no problem at all. Try to imagine every machine have the capabilities to talk VLAN-tags like a switch and keep the setup to protect from this. |
If you feel that you have found inappropriate content, please let us know by emailing us at answers-support@google.com with the question ID listed above. Thank you. |
Search Google Answers for |
Google Home - Answers FAQ - Terms of Service - Privacy Policy |