> Where is the access list that is going to prevent cross talk between the > subnets ? Otherwise rogueware on one tenants computer will attack the > other tenants. Simply splitting each tenant onto its own vlan is ncie but > its a far cry from secure if you tie the subnets into a router that is > happy to pass traffic between the vlans !!
Ah. Wasn't sure if the VLANs were sufficient to isolate the tenants and so had only recently started boning up on ACLs. Will come back around to that once I firm up the rest of my design -- thanks for the heads up! _______________________________________________ cisco-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/
