3-13
User Guide for the Catalyst Express 500 Switches
OL-8122-01
Chapter 3 Customization
Isolate Traffic and Users through VLANs
An added benefit to using VLANs is that it reduces the amount of administrative
effort required to constantly examine requests to network resources.
Note that a key concept about VLANs is that they isolate parts of your network.
Therefore, devices that are attached to the switch ports in the same VLAN
(network users in the same VLAN) can communicate only with each other and can
share the same data.
Devices attached to switch ports in different VLANs cannot communicate with
each other through the switch. Inter-VLAN communication requires a router or
Layer 3 switch. The router or Layer 3 switch must be configured to allow routing
across VLANs (inter-VLAN routing), and additional security policies must be set.
If your network is also using a DHCP server, ensure that the server is accessible
to devices in all VLANs.
Figure 3-6 is an example network using VLANs based on different network traffic
and network users. Organizing a network around these factors helps define the
size and membership of the VLANs in the network.
Figure 3-6 VLANs in a Catalyst Express Network