|
based on your drawing, you would put each of the "groups" on their own subnet. Engineering on subnet A, Marketing on subnet B etc. You would then group the ports together to form a logical network. at this point, the anyone on the engineering LAN would only be able to see users on the same LAN (IE floor 3 PC, floor 2 PC and floor 1 Server, in the engineering ellipse). The router in your diagramcan be programmed to:
allow users to pass from one logical network to another unfettered (which kind of defeats the purpose)
or
you can limit the types of traffic and requests (for example, you can program the router to only allow email requests/sends).
|