Hi,
please excuse what is likely to be a pretty basic question for anyone that knows what they're doing, but I would really appreciate some help please . . . . .
I want to create a LAN that is segregated from the rest of the network which I guess is the whole point of VLANs but I am really struggling with the configuration to get it to work. At the moment, everything is on a single LAN. Apologies for the long post, but hopefully, the information below will describe the situation.
The basic hardware layout is . . . .
WAN Router, DrayTek 2865ax (1 WAN, 5 LAN ports)
Office Switch 4 ProCurve 1800-24G J9028B
Multiple PCs, port 24 connects to WAN Router Port 2
Office Switch 3 ProCurve 1800-24G J9028B
Multiple PCs, port 24 connects to WAN Router Port 3
Server Switch 2 HP 2910al-48G Switch (J9147A)
Multiple servers, Port 23 connects to Switch 1
Port 24 connects to WAN Router Port 5
Office Switch 1 ProCurve 1800-24G J9028B
Multiple PCs, Port 24 connects to upstream switch (2)
(It would be impractical to connect these switches using other than the current cables)
I want to segregate the traffic on switch 1 from the rest of the network. My thoughts are that I need to configure a dedicated VLAN where traffic passes through switches 1 and 2 and into WAN router port 5. Port 5 would have two LANs configured, the default for the rest of the network (LAN1) and a dedicated LAN for the VLAN traffic through the router (LAN2). LAN1 has rest of the network, including DHCP and DNS servers. LAN 2 will have a new IP subnet, with the router doing DHCP for the new LAN (though most of the devices will have fixed IPs anywway).
I am struggling to work out where I apply VLAN tags and the correct port configuration for the HP switches. I don't think that any configuration is required on switches 4 and 3, only on Switch 2 and possibly (?) switch 1.
Can anyone help me muddle my way through this please?
[Ideally, (and disregarding any security issues for the moment), I would allow the DrayTek router to pass traffic between the two LANs, i.e., inter LAN routing, so that I can access the Switch 1 and its devices when logged into the main network, but that is configuration in the DrayTek router than I think I understand.)
regards
Dave
-------------------------------------------