Wednesday, April 7, 2021

Is VLAN isolation by an ISP secure from other customers?

We're currently using Comcast to connect 2 branch offices via a VPN tunnel. One side is a small office with just a couple devices (where this new serviceis being proposed), and the other side is our main office (has its own Internet separate from this). A new local ISP opened up partnering with a broadband coop in our downtown area. They are offering fiber at the same speed (with much faster upload speed) for half the price as Comcast. We're interested. However we're also government and have some security concerns due to the nature of the data and locations being connected via this tunnel.

The service is a /24 and they will be using VLAN isolation to secure our service from other customers. How secure is this? There will be potentially 235 other devices on the network separated by just VLAN rules. Comcast at least segments to just the range / number of public IPs we need. It seems significantly more secure this way.

Any thoughts or suggestions welcome.



No comments:

Post a Comment