Bridge GUI Guide: Network Configuration
110
External switches running in port-based VLAN modes require
that the Bridge use the VLAN mode
Disabled
.
VLAN Mode: Normal
In
Normal
VLAN Mode
, the Bridge passes the VLAN tag’s VLAN
ID exactly as it is received, while encrypting/decrypting the rest
of the data normally. The same tags are passed to and from the
clear and encrypted interfaces. Per port VLAN settings are
applied.
The Bridge can support up to 48 VLANs in
Normal
mode.
If the Bridge must support trunking between switches, bridging
between multiple Fortress Bridges, or an access point with
multiple SSIDs connected directly to the Bridge, use
Normal
mode.
As shown in Table 3.14,
Access
interfaces can receive and
transmit only untagged traffic. Traffic received on an
Access
interface is tagged internally with the ingress interface’s
Default
VLAN ID
, and this tag is removed again at egress.
Trunk
ports pass most tagged traffic with its tags unchanged,
except that traffic tagged with the same VLAN ID as the ingress
interface’s
Default VLAN ID
is sent untagged.
The Bridge’s Ethernet port
Switching Mode
and
Default VLAN ID
settings are covered in Section 3.7.6. Configuring these setting
for radio BSSs is described in Section 3.3.4.5
VLAN Mode: Translate
In
Translate
VLAN Mode
, the Bridge alters the VLAN ID in the
VLAN tag according to a
routing map
(or
translation table
) that
Table 3.14.
Normal
Mode VLAN Handling
received traffic
VLAN traffic handling
interface
Switching Mode
VLAN tagging
on ingress
internal
on egress
Access
untagged
accept
tag w/ ingress interface
Default VLAN ID
tag = egress interface
Default VLAN ID:
send untagged
tag
≠
egress interface
Default VLAN ID:
drop
tagged
drop
Trunk
untagged
accept
tag w/ ingress interface
Default VLAN ID
send untagged
tag = ingress interface
Default VLAN ID
accept
preserve tag
as received
send untagged
tag
≠
ingress interface
Default VLAN ID
and
is in
VLAN Active ID Table
accept
preserve tag
as received
send tagged as received
tag
≠
ingress interface
Default VLAN ID
and is
not
in
VLAN Active ID Table
drop