VLAN TEXNOLOGIYASI VA UNING TARMOQ XAVFSIZLIGIDAGI ROLI VLAN TECHNOLOGY AND ITS ROLE IN NETWORK SECURITY
Keywords:
Kalit so'zlar: VLAN, IEEE 802.1Q, tarmoq xavfsizligi, kadrlarni teglashtirish, VLAN hopping, Switch Spoofing, Double Tagging, segmentatsiya, Private VLAN, mikrosegmentatsiya, Zero Trust, defense-in-depth.Abstract
Annotatsiya: Zamonaviy korporativ tarmoqlarda turli xavfsizlik talablariga ega
foydalanuvchilar va xizmatlarni bitta fizik infratuzilma doirasida mantiqiy ajratish
dolzarb muammoga aylangan. Ushbu maqolada Virtual Local Area Network (VLAN)
texnologiyasining nazariy asoslari, IEEE 802.1Q standarti asosidagi kadrlarni
teglashtirish mexanizmi hamda uning tarmoq xavfsizligidagi ahamiyati IMRAD
tuzilmasi asosida tadqiq etilgan. Tadqiqotda IEEE 802.1Q-2018 standarti, Cisco va
Juniper Networks rasmiy hujjatlari, shuningdek Imperva, Akamai, Infosec Institute
kabi xavfsizlik bo'yicha ilmiy-amaliy manbalar qiyosiy va tahliliy usullar yordamida
o'rganildi. Tadqiqot natijalari shuni ko'rsatdiki, VLAN broadcast domenlarini
kichraytirish, foydalanuvchi guruhlarini ajratish va Layer 2 darajasida xavfsizlik
siyosatlarini joriy qilish nuqtai nazaridan samarali yechim hisoblanadi. Shu bilan birga,
VLAN hopping, Switch Spoofing, Double Tagging va VTP zaifliklari kabi hujum
vektorlari texnologiyaning cheklovlarini ochib beradi. Muhokamada VLAN ning
mikrosegmentatsiya va Zero Trust modeli bilan qiyosiy tahlili keltirilgan. Xulosada
VLAN ni DHCP Snooping, Dynamic ARP Inspection, Private VLAN va DTP ni
o'chirish kabi qo'shimcha mexanizmlar bilan birgalikda qo'llash tavsiya etilgan.
References
ADABIYOTLAR RO'YXATI
1. IEEE Standards Association. IEEE 802.1Q-2018 - Standard for Local and
Metropolitan Area Networks - Bridges and Bridged Networks // IEEE. – 2018. – 1993
p.
2. Wikipedia. IEEE 802.1Q // Wikimedia Foundation. – 2024. – URL:
https://en.wikipedia.org/wiki/IEEE_802.1Q
3. Cisco Systems. What Is Network Segmentation? // Cisco Learn Center. – 2023. –
URL: https://www.cisco.com/site/us/en/learn/topics/security/what-is-network-
segmentation.html
4. Cisco Systems. Understand VLAN Trunk Protocol (VTP) // Cisco Technical
Documentation. – 2022. – URL: https://www.cisco.com/c/en/us/support/docs/lan-
switching/vtp/10558-21.html
5. Cisco Press. Inter-VLAN Routing using Layer 3 Switches // Cisco Press Articles. –
2021. – URL:
https://www.ciscopress.com/articles/article.asp?p=3089357
6. Cisco Systems. Configuring Dynamic ARP Inspection (DAI) // Cisco Catalyst 3850
Configuration Guide. – 2020. – 24 p.
7. Juniper Networks. Understanding Private VLANs (Junos OS) // Juniper
TechLibrary. – 2023. – URL:
https://www.juniper.net/documentation/us/en/software/junos/multicast-
l2/topics/topic-map/private-vlans-qfx-series.html
8. Imperva. What is VLAN Hopping: Risks, Attacks & Prevention // Imperva Learning
Center. – 2023. – URL: https://www.imperva.com/learn/availability/vlan-hopping/
9. JumpCloud. What Is a Double-Tagging Attack? // JumpCloud IT Index. – 2023. –
URL: https://jumpcloud.com/it-index/what-is-a-double-tagging-attack
10. JumpCloud. What Is a Private VLAN? // JumpCloud IT Index. – 2023. – URL:
https://jumpcloud.com/it-index/what-is-private-vlan
11. Infosec Institute. VLAN Network Segmentation and Security - Chapter Five //
Infosec Resources. – 2022. – URL:
https://www.infosecinstitute.com/resources/management-compliance-auditing/vlan-
network-chapter-5/
12. Akamai Technologies. Comparing the Benefits of Microsegmentation vs. VLANs
// Akamai Security Blog. – 2023. – URL:
https://www.akamai.com/blog/security/comparing-the-benefits-of-
microsegmentation-versus-vlans
13. Zero Networks. VLANs Are Not a Microsegmentation Strategy // Zero Networks
Blog. – 2023. – URL: https://zeronetworks.com/blog/vlans-are-not-a-
microsegmentation-strategy
14. NetworkAcademy.IO. InterVLAN Routing using Layer 3 Switch // CCNA Course
Materials. – 2023. – URL:
https://www.networkacademy.io/ccna/ethernet/intervlan-routing
15. ITU Online. Broadcast Domain: What It Is And Why It Matters // ITU Online Tech
Definitions. – 2023. – URL: https://www.ituonline.com/tech-
definitions/what-is-a-broadcast-domain/
16. Lightyear.ai. What are Broadcast Domains? // Lightyear Networking Tips. – 2023.