Broadcast Domain Isolation
Definition
Broadcast isolation restricts the number of computers a host can contact on their LAN.
Synonyms: Network Segmentation.How it works
Software Defined Networking, or other network encapsulation technologies intercept host broadcast traffic then route it to a specified destination per a configured policy.
This can be implemented within hypervisors, networking hardware (WAPs, switches, routers), or virutal hardware.
Considerations
This technique is highly dependent on network infrastructure and networking requirements.
Artifact Relationships:
This defensive technique is related to specific artifacts. Click the artifact node for more information.
References
The following references were used to develop the Broadcast Domain Isolation knowledge-base article.
(Note: the consideration of references does not imply specific functionality exists in an offering.)