I know this is old but I just found this thread because I was having the same issue. I walked into a client where they used vlan 1 for production because it was easy and they didn't know any better. Now, I'm implementing a management vlan & a guest...