300-320 · Question #543
A data center has several business partners who want to have their compute resources installed. The data center uses one VLAN to support vendor equipment and requires limited visibility and…
The correct answer is B. Private vlans. Private VLANs (PVLANs) allow multiple devices to share a single IP subnet and VLAN while controlling communication between them at Layer 2. Ports are categorized as isolated (cannot communicate with other isolated ports), community (can communicate within their community…
Question
A data center has several business partners who want to have their compute resources installed. The data center uses one VLAN to support vendor equipment and requires limited visibility and connectivity between vendor servers. Which segmentation concept satisfies theses requirements?
Options
- AIp NAT
- BPrivate vlans
- CLAN-toLAN VPN
- DProtected VLANs
How the community answered
(25 responses)- A4% (1)
- B92% (23)
- D4% (1)
Explanation
Private VLANs (PVLANs) allow multiple devices to share a single IP subnet and VLAN while controlling communication between them at Layer 2. Ports are categorized as isolated (cannot communicate with other isolated ports), community (can communicate within their community group), or promiscuous (can communicate with all ports, typically the uplink/gateway). By placing each vendor's server on an isolated or community port, you achieve the requirement of all devices being on one VLAN with limited or no direct connectivity between vendor servers. IP NAT changes IP addressing and is not a segmentation technology. LAN-to-LAN VPN connects separate networks. Protected VLANs is not a standard Cisco term; the feature is called Private VLANs.
Topics
Community Discussion
No community discussion yet for this question.