Cisco Certified Support Technician (CCST) NetworkingNetwork AccessEasy
A network administrator is configuring a new switch in a small office. The administrator needs to ensure that devices connected to ports 1-8 are logically separated from devices connected to ports 9-16, even though they are on the same physical switch. Which network access technology should the administrator implement?
- ADHCP (Dynamic Host Configuration Protocol)
- BVPN (Virtual Private Network)
- CNAT (Network Address Translation)
- DVLANs (Virtual Local Area Networks)
Show answer & explanationAnswer & explanation
Correct answer: D. VLANs (Virtual Local Area Networks)
VLANs allow for the logical segmentation of a network into multiple broadcast domains, even when devices are connected to the same physical switch. This provides isolation and improves network management.
Why the other options are wrong
- A. DHCP dynamically assigns IP addresses to devices, but does not provide network segmentation.
- B. VPNs create secure, encrypted connections over public networks, not for internal network segmentation on a switch.
- C. NAT is used to translate private IP addresses to public IP addresses, not for internal network segmentation.
VLANs (Virtual Local Area Networks)
VLANs logically segment a single physical LAN into multiple broadcast domains. This allows devices on different VLANs to communicate only through a router, even if they are on the same switch.
- Provide logical segmentation of a network.
- Improve security and performance by reducing broadcast traffic.
- Allow for flexible network design without physical relocation of devices.
Memory trick: Virtual Lanes Isolate Network