
C
HAPTER
39
| VLAN Commands
Configuring Private VLANs
– 822 –
C
OMMAND
M
ODE
VLAN Configuration
C
OMMAND
U
SAGE
Private VLANs are used to restrict traffic to ports within the same
community, and channel traffic passing outside the community through
promiscuous ports. When using community VLANs, they must be
mapped to an associated “primary” VLAN that contains promiscuous
ports.
Port membership for private VLANs is static. Once a port has been
assigned to a private VLAN, it cannot be dynamically moved to another
VLAN via GVRP.
Private VLAN ports cannot be set to trunked mode. (See the
E
XAMPLE
Console(config)#vlan database
Console(config-vlan)#private-vlan 2 primary
Console(config-vlan)#private-vlan 3 community
Console(config)#
private vlan
association
Use this command to associate a primary VLAN with a secondary (i.e.,
community) VLAN. Use the
no
form to remove all associations for the
specified primary VLAN.
S
YNTAX
private-vlan
primary-vlan-id
association
{
secondary-vlan-id
|
add
secondary-vlan-id
|
remove
secondary-vlan-id
}
no private-vlan
primary-vlan-id
association
primary-vlan-id
- ID of primary VLAN. (Range: 2-4094, no leading
zeroes).
secondary-vlan-id
- ID of secondary (i.e, community) VLAN.
(Range: 2-4094, no leading zeroes).
D
EFAULT
S
ETTING
None
C
OMMAND
M
ODE
VLAN Configuration
C
OMMAND
U
SAGE
Secondary VLANs provide security for group members. The associated
primary VLAN provides a common interface for access to other network
resources within the primary VLAN (e.g., servers configured with
promiscuous ports) and to resources outside of the primary VLAN (via
promiscuous ports).
Summary of Contents for DG-FS4528P
Page 2: ......
Page 4: ......
Page 148: ...CHAPTER 5 Simple Network Management Protocol Configuring SNMPv3 Groups 148 ...
Page 389: ...CHAPTER 17 VoIP Traffic Configuration Configuring Telephony OUI 389 ...
Page 515: ...CHAPTER 22 System Management Commands UPnP 515 TTL 20 Console ...
Page 972: ......
Page 973: ...DG FS4528P ...