Security - Private VLANs

แชร์
ฝัง

ความคิดเห็น • 8

  • @nonameforyou5862
    @nonameforyou5862 4 ปีที่แล้ว

    Is it possible to use your ASA as your default gateway for multiple subnets, and apply a vlan tag to each subnet, connect it to a trunk interface on the switch, then have the switch break out each of those vlan tags into "sub-vlans"? I can get this to work in my lab ONLY when using a directly IP'd interface to the router, without using trunk/802.1q - it's just a promiscuous mode switchport mapped to a primary vlan. Seems like an extreme limitation to me but maybe I'm doing something wrong.
    Also - if the answer is that you cannot do trunking to a "router-on-a-stick" like mentioned above, what would be the alternative? Would you have to put layer3 on the switch?
    Thanks!

    • @RobRikerTechChannel
      @RobRikerTechChannel  4 ปีที่แล้ว

      Yeah, ASA can do sub interfaces. Use the "vlan 10" config model and not "encap dot1q 10" like a router. I don't think the switches I'm using in EVE support the separate VLAN options.

  • @gjbm1782
    @gjbm1782 3 ปีที่แล้ว

    Do you know if there's a way to expand the pvlan config to a switch that doesn't support pvlan? Does works with both vlan and pvlan traffic?

  • @olegcaraman1599
    @olegcaraman1599 4 ปีที่แล้ว

    Many thanks for your tutorial.
    By the way, private VLANS works for me in EVE-NG. I am using i86bi-linux-l2-adventerprisek9-15.2d.bin

    • @RobRikerTechChannel
      @RobRikerTechChannel  4 ปีที่แล้ว

      Ok, I'm using IOSv-L2. I tried it out and it failed to work. I have physical switches for testing it out.

  • @anonymoususer6786
    @anonymoususer6786 6 หลายเดือนก่อน

    Seriously need to review/edit your videos ahead of time. Very sloppy and inconsistent, also you’re struggling to stay on point. Simple = better. Keep it simple and flowing consistent.

    • @RobRikerTechChannel
      @RobRikerTechChannel  6 หลายเดือนก่อน

      If you don't like my content, then move on.