ZXR10 2900 Series User Manual
PVLAN Configuration
PVLAN Overview
PVLAN
(Private VLAN) is a port-based VLAN. It consists of many
promiscuous ports and isolated ports. Isolated ports can not ac-
cess each other, but isolated ports and promiscuous ports can ac-
cess each other.
ZXR10 2920/2928/2952/2936-FI supports 4 PVLANs. Each PVLAN
supports a promiscuous port. There is no restriction for isolated
ports number, but they can not be gigabit ports.
PVLAN permits the user to access server, but the direct inter-ac-
cess between users is not permitted. Therefore, the configuration
only takes effect on a whole PVLAN area (the shared and isolated
ports exist together). The promiscuous and isolated ports are nec-
essary to be configured, otherwise, the configuration of PVLAN will
be invalid.
Basic Configuration of PVLAN
To configure PVLAN, perform the following steps.
Command
Function
zte(cfg)#
set pvlan session
<
1-4
>
add
promiscuous
{
port
<
portid
>|
trunk
<
trunki
d
>}
isolate-port
<
portlist
>
This adds the isolate
ports and promiscuous
ports into PVLAN
instance.
zte(cfg)#
set pvlan session
<
1-4
>
delete
isolate-port
<
portlist
>
This deletes the isolate
ports from PVLAN
instance. When only
one isolated port exists,
this port can not be
deleted.
zte(cfg)#
set pvlan session
<
1-4
>
modify
promiscuous
{
port
<
portid
>|
trunk
<
trunkid
>}
This modifies the uplink
port in PVLAN instance.
zte(cfg)#
set pvlan session
<
1-4
>
clear-config
This clears PVLAN
session configuration.
zte(cfg)#
show pvlan
This views PVLAN
configuration.
PVLAN Configuration Example
1. Example 1
84
Confidential and Proprietary Information of ZTE CORPORATION