Re: Single domain two IP subnets



Why not VLANs? I admit this isn't my strongest area, but I thought that
was one thing VLANs could do... I bow to your expertise.

IMHO, VLANs would be the way to go. Otherwise the separation between subnets
is purely logical. Anybody could just change their IP address, or introduce
a laptop with an IP address on another subnet and be connected. VLANs
contain broadcasts and prevent any kind of connection between subnets other
than through the router (which can be locked down as tightly as local
management sees fit). If I were designing this for a client, I would
probably sell them managed layer-2 switches for subnets B-D and a layer-3
switch for Subnet A. Traffic from the other subnets could be trunked through
the uplink port and routed at the L-3 switch. Quick to set up, central
management, fewer devices to configure, plus L-3 switches will forward
gigabit traffic at wire-speed unlike plain vanilla routers.

....kurt


.



Relevant Pages

  • Re: Single domain two IP subnets
    ... VLANs would be the way to go. ... subnets in IP are far more than purely logical. ... VLANs switches, and switches in general, by many people. ... both Routers and Bridges -- we can call the features something ...
    (microsoft.public.win2000.dns)
  • Re: Vlans and nieghborhood
    ... If you do not have a domain, you will not be able to browse across subnets. ... NetBIOS should NOT be blocked as browsing is a NetBIOS function. ... DNS is functional between vlans, ... UNC pathing between the vlans ...
    (microsoft.public.win2000.networking)
  • Re: Setting up sites in AD 2003
    ... You create 2 subnets. ... On the DHCP question, we are still talking one domain, right? ... > I am in the middle of a migration from Win2k to win2k3 AD. ... > to set up the sites as to mirror the vlans so the security is the same. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Heirarchal network question
    ... >>about establishing seperate DHCP and NAT domains within the router. ... > VLANs are more an ethernet concept than a TCPIP concept. ... > Is there a reason why you need different subnets at the TCPIP level if you ... DHCP and NAT capability. ...
    (comp.os.vms)
  • Re: Can Cisco Pix be used as a router and a firewall?
    ... :subnets or vlans and to also be a firewall between those 2 subnets or ... The PIX 501 does not support more than inside + outside ... on the same interface going back again. ...
    (comp.security.firewalls)