HI,,
- The vlan 1 is security hole, I advise to move it for example 99!
- Use L3 switch if it is possible to route the VLANs!
- if you want to separate a VLAN us vrf-lite:
http://networkers-online.com/blog/2009/02/vrf-lite/ http://packetlife.net/blog/2009/apr/30/intro-vrf-lite/- Always disable tfe cdp on PC ports
- ALway shutdown the ports that you don't use