VLANs are for organizing traffic, not authorization of traffic.
Comment on Suggestions for Improving Linux Server Security: Beyond User Permissions and Groups?
matcha_addict@lemy.lol 3 weeks agoWhat’s the issue with VLAN?
just_another_person@lemmy.world 3 weeks ago
possiblylinux127@lemmy.zip 2 weeks ago
Only if you don’t set it up correctly. You should set which devices are allowed to set which vlans and then make sure client devices aren’t authorized to send or receive tagged packets.
You then combine that with a firewall only needed traffic allowed.
possiblylinux127@lemmy.zip 2 weeks ago
If you set it up incorrectly you can perform an attack called vlan hoping.
You also need to setup Firewall rules to properly isolate zones