140
3
-
11.5.2 Port
Isolation
Parameter
Description
Port Isolation provides for an apparatus and method to isolate ports on layer 2
switches on the same VLAN to restrict traffic flow. The apparatus comprises of a
switch that has plurality of ports. Each port is configured as a protected port or a
non
-
protected port. An address table memory stores an address table that has a
destination address and port number pair. A forwarding map generator creates a
forwarding map, which is responsive to a destination address of a data packet. The
method for isolating ports on a layer 2 switch is to configure each of the ports on
the layer 2 switch as a protected port or a non
-
protected port. A destination
address on an data packet is matched with a physical address on the layer 2 switch.
A forwarding map is generated for the data packet based upon the destination
address on the data packet. Then the data packet is sent to the plurality of ports
pursuant to the forwarding map generated, based upon whether the ingress port
was configured as a protected or non
-
protected port.
This page is used to enable or disable port isolation on ports in a private VLAN
A
port member of a VLAN can be isolated to other isolated ports on the same VLAN
and private VLAN.
Web Interface
To configure Port Isolation configuration in the web interface:
1.
Click VLAN, Port Isolation.
2.
Evoke which port want to enable Port Isolation.
3.
Click “Apply”.
Figure 3-11.5.2: The Port Isolation Configuration
Port Members:
A check box is provided for each port of a private VLAN. When
checked, the port isolation is enabled on that port. When unchecked, the port
isolation is disabled on that port. By default, port isolation is disabled on all ports.
Buttons:
Apply
– Click “Apply” to save changes.
Reset
-
Click “Reset” to undo any changes made locally and revert to
previously saved values.