Configuration Guide
242
Configuring VLAN-VPN
Configuration Example
4
Configuration Example
4.1 Network Requirements
Two divisions of the company are located in different areas and have to communicate
across an ISP network. A normal communication is required.
Figure 4-1 shows the network topology. Switches of the two divisions are connected to
customer networks VLAN 100 and VLAN 200 respectively. And they communicate across
ISP network VLAN 1050. Devices in the ISP network adopt TPID value 0x9100.
Figure 4-1
Network Topology
VLAN 100
VLAN 100
VLAN 200
VLAN 200
Switch 1
Uplink Port
Gi1/0/1 General
Gi1/0/2 General
Gi1/0/2 General
Uplink Port
Gi1/0/1 General
Switch 2
TPID=0x9100
VLAN 1050
4.2 Configuration Scheme
Users can configure VLAN-VPN on Switch 1 and Switch 2 to allow packets sent with double
VLAN tags, and thus ensure the communication between them. The general configuration
procedure is as follows:
1) Configure 802.1Q VLAN before VLAN-VPN configuration. Create ISP network VLAN
1050 on the switch, and add port1/0/1 tagged and port 1/0/2 untagged to the VLAN.
Create client network VLAN 100 and VLAN 200, and add port 1/0/2 tagged to both the
VLANs. Set the PVID of port 1/0/1 and port 1/0/2 as 1050.
2) Set port 1/0/1 as the VPN up-link port.
3) Enable the VPN feature globally, and set global TPID as 0x9100.
Summary of Contents for T2500G-10MPS
Page 1: ...User Guide T2500G 10MPS 1910012405 REV1 0 1 April 2018...
Page 24: ...Using the CLI 767 Appendix Default Parameters 773...
Page 145: ...Part 5 Monitoring Traffic CHAPTERS 1 Traffic Monitor 2 Appendix Default Parameters...
Page 172: ...Part 7 Configuring DDM CHAPTERS 1 Overview 2 DDM Configuration 3 Appendix Default Parameters...