Document every VLAN with its ID, name, purpose, and subnet. Use consistent VLAN IDs across all switches. Don't use VLAN for user traffic. Set a dedicated native VLAN that carries nothing else. Limit trunk allowed VLANs to only what's needed. Disable unused ports or assign them to a black-hole VLAN. Disable VTP or use VTP version with password protection. Review VLAN assignments quarterly.
##### ###### ##### ### # # ### # # ###### ## ## ## ## ## ## ## # # # # # ## ##### #### ##### # # # # # # # #### ## # ## ## ## ## # # # # # ## ## # ###### ## ### # ### # ######
$ curl repovive.com/roadmaps/network-design/switching-and-vlans/vlan-best-practices
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░███████████████████████████████████████████████████████████████████████████████████