[c-nsp] Cisco noob -- design guidance request

David L. West nntp at deskoptional.com
Sun Sep 2 10:20:07 EDT 2007


> Where is the access list that is going to prevent cross talk between the
> subnets ?  Otherwise rogueware on one tenants computer will attack the
> other tenants. Simply splitting each tenant onto its own vlan is ncie but
> its a far cry from secure if you tie the subnets into a router that is
> happy to pass traffic between the vlans !!

Ah. Wasn't sure if the VLANs were sufficient to isolate the tenants and so 
had only recently started boning up on ACLs. Will come back around to that 
once I firm up the rest of my design -- thanks for the heads up!





More information about the cisco-nsp mailing list