From the course: Cisco CCNP Security SCOR v1.1 (350-701) Cert Prep

Unlock this course with a free trial

Join today to access over 24,800 courses taught by industry experts.

VLANs

VLANs

- [Instructor] VLANs are one of the most basic and well-known ways to implement Layer Two security. VLANs allow us to logically group devices into broadcast domains. If we take a typical Layer Two switch with no VLAN capabilities, every interface is going to be in the same broadcast domain and that means that any received broadcast messages would be forwarded out to all of the interfaces except for the interface on which the frame was received. VLANs allow us to administratively create separate broadcast domains and that gives us security and flexibility in our network design. These VLANs can span multiple switches with each VLAN acting as its own subnets. VLANs have two general types of connection links which we configure as interface modes on the switch. We can define an interface for either access mode or trunk mode. Access links can only belong to a single VLAN and carry traffic from a single VLAN. This is where we would see devices connected. You may also hear an access port…

Contents