Chapter 20: Security Configuration Guide

Creating a Port-Based VLAN for Layer-4 Bridging

The ports to be used in Layer-4 Bridging must all be on the same VLAN. To create a port- based VLAN, enter the following command in Configure mode:

Create a port-based VLAN.

vlan create <vlan-name>port-based id <num>

For example, to create a port-based VLAN called “blue” with an ID of 21, enter the following command in Configure Mode:

ssr(config)# vlan create blue port-based id 21

Placing the Ports on the Same VLAN

Once you have created a VLAN for the ports to be used in layer-4 bridging, you add those ports to the VLAN. To add ports to a VLAN, enter the following command in Configure Mode:

Add ports to a VLAN.

vlan add ports <port-list> to <vlan-name>

To add the ports in the example in Figure 25 on page 286, to the blue VLAN you would enter the following command:

ssr(config)# vlan add ports et.1.1,et.1.2,et.1.3 to blue

Enabling Layer-4 Bridging on the VLAN

After adding the ports to the VLAN, you enable Layer-4 Bridging on the VLAN. To do this, enter the following command in Configure Mode:.

Enable Layer 4 bridging.

vlan enable l4-bridging on <vlan-name>

For example, to enable Layer-4 Bridging on the blue VLAN:

ssr(config)# vlan enable l4-bridging on blue

Creating ACLs to Specify Selection Criteria for Layer-4 Bridging

Access control lists (ACLs) specify the kind of filtering to be done for Layer-4 Bridging.

SmartSwitch Router User Reference Manual

287

Page 313
Image 313
Cabletron Systems 9032578-05 manual Creating a Port-Based Vlan for Layer-4 Bridging, Placing the Ports on the Same Vlan