netadmin65
Technical User
Here's the scenario:
I wish to separate traffic between departments (users on
their own specific VLAN), then restrict where each VLAN
can go (Finance can access their own VLAN, plus the
Domain Controller and e-mail servers, and the finance
server, BUT NOT, lets say, the RESEARCH server located on
another VLAN).
How would I go about setting this up?
Router on a stick and dot1q tagging? or private VLANs
on the switch? Also, would I need an ACL to restrict
VLAN traffic? I'm quite adept at learning something
once given initial direction as to how to proceed, but
I'm unsure what to do in this case.
Router is a 2621XM, switch is a 4506 with sup2.
Any help would be appreciated. Thanks...