Google Answers Logo
View Question
 
Q: Security Issues with Port-based VLANs ( No Answer,   1 Comment )
Question  
Subject: Security Issues with Port-based VLANs
Category: Computers > Security
Asked by: skyedog-ga
List Price: $50.00
Posted: 17 Mar 2004 21:09 PST
Expires: 16 Apr 2004 22:09 PDT
Question ID: 317841
Are there any security issues associated with port-based VLANs?  In
particular, if I want to connect some machines in a DMZ and some
others behind a firewall, with a router in between, to one physical
switch, will using two port-based VLANs for the two groups of machines
compromise the security-related efforts taken to isolate the two sets
of machines?
Answer  
There is no answer at this time.

Comments  
Subject: Re: Security Issues with Port-based VLANs
From: nereid-ga on 29 Mar 2004 01:35 PST
 
You have to check the vulnerabilities in the switch, to check if there
are related vulnerabilities to the VLAN (or you particular setup).
There are vulnerabilites associated with trunking and VLAN, under
certain conditions one machine could send TAG (802.11Q acting as
another switch), and jump over other VLAN. If everything is setup
properly yo will have no problem at all. Try to imagine every machine
have the capabilities to talk VLAN-tags like a switch and keep the
setup to protect from this.

Important Disclaimer: Answers and comments provided on Google Answers are general information, and are not intended to substitute for informed professional medical, psychiatric, psychological, tax, legal, investment, accounting, or other professional advice. Google does not endorse, and expressly disclaims liability for any product, manufacturer, distributor, service or service provider mentioned or any opinion expressed in answers or comments. Please read carefully the Google Answers Terms of Service.

If you feel that you have found inappropriate content, please let us know by emailing us at answers-support@google.com with the question ID listed above. Thank you.
Search Google Answers for
Google Answers  


Google Home - Answers FAQ - Terms of Service - Privacy Policy