•
A switch can have one or more primary VLANs, and it can have none.
•
A primary VLAN has one or more secondary VLANs.
•
A primary VLAN and each of its secondary VLANs decrement the available number of VLAN IDs in the switch.
•
A primary VLAN has one or more promiscuous ports.
•
A primary VLAN might have one or more trunk ports, or none.
•
Secondary VLAN
— a subdomain of the primary VLAN.
•
There are two types of secondary VLAN — community VLAN and isolated VLAN.
PVLAN port types include:
•
Community port
— a port that belongs to a community VLAN and is allowed to communicate with other ports in the same community
VLAN and with promiscuous ports.
•
Host port
— in the context of a private VLAN, is a port in a secondary VLAN:
•
The port must first be assigned that role in INTERFACE mode.
•
A port assigned the host role cannot be added to a regular VLAN.
•
Isolated port
— a port that, in Layer 2, can only communicate with promiscuous ports that are in the same PVLAN.
•
Promiscuous port
— a port that is allowed to communicate with any other port type in the PVLAN:
•
A promiscuous port can be part of more than one primary VLAN.
•
A promiscuous port cannot be added to a regular VLAN.
•
Trunk port
— carries traffic between switches:
•
A trunk port in a PVLAN is always tagged.
•
In tagged mode, the trunk port carries the primary or secondary VLAN traffic. The tag on the packet helps identify the VLAN to
which the packet belongs.
•
A trunk port can also belong to a regular VLAN (non-private VLAN).
Each of the port types can be any type of physical Ethernet port, including port channels (LAGs).
Using the Private VLAN Commands
To use the PVLAN feature, use the following commands.
•
Enable/disable Layer 3 communication between secondary VLANs.
INTERFACE VLAN mode
[no] ip local-proxy-arp
NOTE:
Even after you disable
ip-local-proxy-arp
(
no ip-local-proxy-arp
) in a secondary VLAN, Layer 3
communication may happen between some secondary VLAN hosts, until the address resolution protocol (ARP) timeout
happens on those secondary VLAN hosts.
•
Set the mode of the selected VLAN to community, isolated, or primary.
INTERFACE VLAN mode
[no] private-vlan mode {community | isolated | primary}
•
Map secondary VLANs to the selected primary VLAN.
INTERFACE VLAN mode
[no] private-vlan mapping secondary-vlan
vlan-list
•
Display type and status of PVLAN interfaces.
EXEC mode or EXEC Privilege mode
show interfaces private-vlan [interface
interface
]
•
Display PVLANs and/or interfaces that are part of a PVLAN.
EXEC mode or EXEC Privilege mode
Private VLANs (PVLAN)
617
Содержание S3048-ON
Страница 1: ...Dell Configuration Guide for the S3048 ON System 9 11 2 5 ...
Страница 137: ...0 Gi 1 1 Gi 1 2 rx Flow N A N A 0 0 No N A N A yes Access Control Lists ACLs 137 ...
Страница 142: ...Figure 10 BFD Three Way Handshake State Changes 142 Bidirectional Forwarding Detection BFD ...
Страница 241: ...Dell Control Plane Policing CoPP 241 ...
Страница 287: ... RPM Synchronization GARP VLAN Registration Protocol GVRP 287 ...
Страница 428: ...Figure 53 Inspecting the LAG Configuration 428 Link Aggregation Control Protocol LACP ...
Страница 429: ...Figure 54 Inspecting Configuration of LAG 10 on ALPHA Link Aggregation Control Protocol LACP 429 ...
Страница 432: ...Figure 56 Inspecting a LAG Port on BRAVO Using the show interface Command 432 Link Aggregation Control Protocol LACP ...
Страница 433: ...Figure 57 Inspecting LAG 10 Using the show interfaces port channel Command Link Aggregation Control Protocol LACP 433 ...
Страница 477: ...Figure 73 Configuring Interfaces for MSDP Multicast Source Discovery Protocol MSDP 477 ...
Страница 478: ...Figure 74 Configuring OSPF and BGP for MSDP 478 Multicast Source Discovery Protocol MSDP ...
Страница 479: ...Figure 75 Configuring PIM in Multiple Routing Domains Multicast Source Discovery Protocol MSDP 479 ...
Страница 483: ...Figure 77 MSDP Default Peer Scenario 2 Multicast Source Discovery Protocol MSDP 483 ...
Страница 484: ...Figure 78 MSDP Default Peer Scenario 3 484 Multicast Source Discovery Protocol MSDP ...
Страница 634: ...protocol spanning tree pvst no disable vlan 300 bridge priority 4096 634 Per VLAN Spanning Tree Plus PVST ...
Страница 745: ...Figure 104 Single and Double Tag TPID Match Service Provider Bridging 745 ...
Страница 746: ...Figure 105 Single and Double Tag First byte TPID Match 746 Service Provider Bridging ...