Thursday, January 24, 2019

Beat practices for handing public IP space to customers?

What is the best practice for handing customers space on public networks? Historically, we have provided a single public IP on a public /24 VLAN while running VRRP on the gateway routers. To maximize security, I believe we should be handing out /29s on their own VLAN. However, VRRP only supports 255 unique VRIDs.

Question: With hundreds of customers needing public IPs, how should we support redundant gateways efficiently while also maintaining l2 security.



No comments:

Post a Comment