We all want a management network or at least a management VLAN. Regarding those who say they have none, actually they do have a VLAN for management, it is probably just shared with ordinary users (i. e. it is not dedicated). But most IT people prefer a dedicated VLAN that is not used for other kind of traffic and preferably not reachable for users.
In this article we use this definition:
a management VLAN or management network is a dedicated segment for network management traffic which can be used for:
- administering your network devices (aka device access: switches, routers, firewalls via telnet, ssh, https etc.)
- collecting monitoring information (syslog, SNMP etc.)
- hosting syslog, monitoring and management servers (Nagios, Tivoli, Cisco Prime etc.)
- AAA traffic (RADIUS or TACACS+ to Cisco ACS/ISE)