our customer has 18 tenants in a building which share a common it infrastructure. Each tenant should be able to access the common resource telephone system and internet. The tenant networks should be separated.
What I did:
a vlan for each tenant with an ip address as a tenant gateway
ipforwarding for all vlans
Is there a possibility to separate the tenant networks, without for each tenant a traffik deny for all other tenants to place?
Switch: X460 G2, FW: 18.104.22.168
Thanks in advance
Thanks pascal for your replay.
I have private vlan "inet" configured create private-vlan InetPriv configure private-vlan InetPriv add networkv "Inet"
If I then try to add a tenant vlan as "non-isolated" configure private-vlan InetPriv add subscriber "ForIB" non-isolated
I get the error "Subscriber VLAN can not have ip address Configured"
This IP address I need, but nevertheless the routing for this tenant works?