Cisco 3560 question about VLANs and routing.

May 03, 2007 2 Replies

I have a 3560 with multiple VLANs, IP routing is enabled between VLANs - all works well. The default gateway on the 3560 is set to my firewalls IP address, and internet traffic is correctly routed.



Is it possible to isolate one of the VLANs so that it is not routed with the others, but still have internet traffic on the isolated VLAN routed to the default gateway?


Put an ACL on the VLAN interface ('in') that denies traffic destined to other VLANs, with a permit ip any any on the end. This will block communications to your other networks, and allow what you want.

Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required