- Community Home
- >
- Networking
- >
- Legacy
- >
- Switches, Hubs, Modems
- >
- Re: 2910 ip routing
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-10-2011 07:36 AM
12-10-2011 07:36 AM
2910 ip routing
When i enable ip routing on a 2910al switch every vlans comunicate each others, as a stupid hub.
The first versions of this switch allow to define by ip rip the vlans we want to communicate to, instead of full vlan open ports.
Anyway i suppose when you forbid a port on vlan port assigment it could not reach these vlan. But it does.
So why creating vlans, if then become full opened when we give it an ip address?
What is the way to deny some vlans to others, and leave others accessible?
Thanks in advance
pedro
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-12-2011 08:12 AM
12-12-2011 08:12 AM
Re: 2910 ip routing
Hi,
if you enable ip routing feature on the switch it automatically provides routing to the networks in its routing table. So if you create some VLANs, give them the IP address, these VLANs are as local networks and are presented in routing table so switch will provide routing between them.
If you want to limit traffic between VLANs you have to create access control lists (ACLs) on routing device. ACL allows to setup the rules and to filter the specific traffic on the switch. But I'm afraid and think that 2910 has only port based ACLs and that is not ideal to filter traffic between VLAN interfaces as routed ACLs in other models of switches.
And why create VLANs? It is not only to isolate traffic for security reasons. By creating VLANs you divide the network to smaller L2 domains, reduce broadcast domains, etc.
Regards,
Jan