On Monday 30 May 2011 17:06:01 Tanstaafl wrote: > On 2011-05-29 8:28 AM, Volker Armin Hemmann wrote: > > so - why don't you get a router that ONLY does the routing and a nice > > good switch where you can tag the vlans? > > Money/knowledge level? I don't know how to do it, so I was looking for > something that will work that I can do myself, that is affordable. > > > Because if someone takes over your router it does not matter that you > > have different vlans, they can access everything. > > And the same would apply if they got access to the switch too, right? ;) >
since the switch will be in its own managment vlan, it won't be possible. > > But if the router is on a different vlan than the internal network, > > they have to take over the switch - which will be in a vlan > > inaccessible from any active device - to get into the other vlans. > > If this is something that can be done with not a lot of money/expertise, > can you point me to some How-To that walk me through it? the manuals of switches with vlan tagging are pretty easy. On alcatels its boils down to klicking around in a web interface ;)