440
|
Private VLAN (PVLAN)
www.dell.com | support.dell.com
Private VLAN Concepts
Primary VLAN
:
The
primary VLAN
is the base VLAN and can have multiple secondary VLANs. There are two types of
secondary VLAN —
community VLAN
and
isolated VLAN
:
•
A primary VLAN can have any number of community VLANs and isolated VLANs.
•
Private VLANs block all traffic to isolated ports except traffic from promiscuous ports. Traffic
received from an isolated port is forwarded only to promiscuous ports or trunk ports.
Community VLAN
:
A community VLAN is a secondary VLAN of the primary VLAN:
•
Ports in a community VLAN can talk to each other. Also, all ports in a community VLAN can talk
to all
promiscuous ports
in the primary VLAN and vice-versa.
•
Devices on a community VLAN can communicate with each other via member ports, while
devices in an isolated VLAN cannot.
Isolated VLAN
:
An isolated VLAN is a secondary VLAN of the primary VLAN:
•
Ports in an isolated VLAN cannot talk to each other. Servers would be mostly connected to
isolated VLAN ports.
•
Isolated ports can talk to promiscuous ports in the primary VLAN, and vice-versa.
Port types
:
•
Community
port:
A
community port
is, by definition, a port that belongs to a community VLAN
and is allowed to communicate with other ports in the same community VLAN and with
promiscuous ports.
•
Isolated
port:
An
isolated port
is, by definition, a port that, in Layer 2, can only communicate
with promiscuous ports that are in the same PVLAN.
•
Promiscuous port:
A
promiscuous port
is, by definition, a port that is allowed to communicate
with any other port type.
•
Trunk port
: A
trunk port
, by definition, carries VLAN traffic across switches:
•
A trunk port in a PVLAN is always tagged.
•
Primary or secondary VLAN traffic is carried by the trunk port in tagged mode. The tag on the
packet helps identify the VLAN to which the packet belongs.
•
A trunk port can also belong to a regular VLAN (non-private VLAN).
ip local-proxy-arp
Enable/disable Layer 3 communication between secondary VLANs in a private VLAN.
Syntax
[
no
]
ip local-proxy-arp
To disable Layer 3 communication between secondary VLANs in a private VLAN, use the
no ip
local-proxy-arp
command in INTERFACE VLAN mode for the primary VLAN.
Summary of Contents for Force10 MXL Blade
Page 80: ...80 Control and Monitoring w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 142: ...142 Access Control Lists ACL w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 146: ...146 Bare Metal Provisioning w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 152: ...152 Content Addressable Memory CAM w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 186: ...186 Data Center Bridging w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 204: ...204 Dynamic Host Configuration Protocol DHCP w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 216: ...216 FIP Snooping w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 226: ...226 GARP VLAN Registration GVRP w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 234: ...234 Internet Group Management Protocol IGMP w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 330: ...330 iSCSI Optimization w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 354: ...354 Layer 2 w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 370: ...370 Link Layer Discovery Protocol LLDP w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 384: ...384 Multiple Spanning Tree Protocol MSTP w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 438: ...438 Port Monitoring w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 448: ...448 Private VLAN PVLAN w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 490: ...490 Quality of Service QoS w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 518: ...518 Remote Monitoring RMON w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 530: ...530 Rapid Spanning Tree Protocol RSTP w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 570: ...570 Security w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 578: ...578 sFlow w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 620: ...620 Stacking Commands w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 654: ...654 Uplink Failure Detection UFD w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 693: ...Debugging and Diagnostics 693 ...
Page 694: ...694 Debugging and Diagnostics w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 712: ...712 Index w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 713: ...Index 713 ...
Page 714: ...714 Index w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 715: ...Index 715 ...
Page 716: ...716 Index w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 717: ...Index 717 ...
Page 718: ...718 Index w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 728: ...728 Command Index w w w d e l l c o m s u p p o r t d e l l c o m write 78 write memory 25 ...
Page 729: ...Command Index 729 ...
Page 730: ...730 Command Index w w w d e l l c o m s u p p o r t d e l l c o m ...
Page 731: ...Command Index 731 ...
Page 732: ...732 Command Index w w w d e l l c o m s u p p o r t d e l l c o m ...