[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

[linux-security] Re: A switch? A router? What am I looking for??



>imho, a vlan is a device to manipulate broadcast domains (and by
>implication collision domains) and again *not* a security device.  The
>"best" use of vlans is when you have distributed users and want to share
>resources among just those users, e.g. engineering is IP network X, sales
>is IP network Y, but their cubes are distributed among half a dozen floors

Oh yes they are. Swiss military for example accepts a non-routed VLAN as a
secure subnet (in an ATM LANE environment). VLANs are/will be a vital part
of our LAN-security (especially combined with a MAC-based VLAN-policy).

Greets,
Remo
-----------------------------------------------------
Fatum favet volenti. (anon)
-----------------------------------------------------
Remo Pini ++++++++++++++++++++++++ T: +41 1 350 28 88
Pini Computer Trading +++++++++++ N: +41 79 216 15 51
http://www.rpini.com/ +++++++++ Email: rp rpini com
-----------------------------------------------------
[mod: Remo, get rid of those non-ascii chars in your .sig. --REW]



[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]