At home I generally set all switches with a native VLAN of the main LAN and tagged to the guest LAN. I know this is probably not optimal, but I'm wondering how bad it really is? I get that it probably ...
Setup an access list on the router allowing them to communicate in the first place. If that is the 4500 set it up there.
I’ve seen private virtual LANs (PVLANs) described as a way to isolate DMZ servers from each other by restricting traffic between switch ports. Cisco’s PVLANs allow ports to be promiscuous, isolated or ...