13-19
Catalyst2950 Desktop Switch Software Configuration Guide
78-11380-05
Chapter13 Configuring VLANs Configuring VLAN Trunks
Switch(config-if)# switchport mode dynamic desirable
Switch(config-if)# end
Defining the Allowed VLANs on a Trunk
By default, a trunk port sends traffic to and receives traffic from all VLANs. All VLAN IDs, 1 to 4094
when the EI is installed, and 1 to 1005 when the SI is installed, are allowed on e ach t runk. However, you
can remove VLANs from the allowed list, preventing traffic from those VLANs from passing over the
trunk. To restrict the traffic a trunk carries, use the switchport trunk allowed vlan remove vlan-list
interface configuration command to remove specific VLANs from the allowed list.
Note You cannot remove VLAN 1 or VLANs 1002 to 1005 from the allowed VLAN list.
A trunk port can become a member of a VLAN if the VLAN is enabled, if VTP knows of the VLAN,
and if the VLAN is in the allowed list for the port. When VTP detects a newly enabled VLAN and the
VLAN is in the allowed list for a trunk port, the trunk port automatically becomes a member of the
enabled VLAN. When VTP detects a new VLAN and the VLAN is not in the allowed list for a trunk
port, the trunk port does not become a member of the new VLAN.
Beginning in privileged EXEC mode, follow these steps to modify the allowed list of an 802.1Q trunk:
To return to the default allowed VLAN list of all VLANs, use the no switchport trunk allowed vlan
interface configuration command.
This example shows how to remove VLAN 2 from the allowed VLAN list:
Switch(config)# interface fastethernet0/1
Switch(config-if)# switchport trunk allowed vlan remove 2
Switch(config-if)# end
Switch#
Command Purpose
Step1 configure terminal Enter global configuration mode.
Step2 interface interface-id Enter interface configuration mode and the port to be configured.
Step3 switchport mode trunk Configure the interface as a VLAN trunk port.
Step4 switchport trunk allowed vlan {add |
all | except | remove} vlan-list (Optional) Configure the list of VLANs allowed on the trunk.
For explanations about using the add, all, except, and remove keywords,
refer to the command reference for this releas e.
The vlan-list parameter is either a single VLAN number from 1 to 4094
or a range of VLANs described by two VLAN numbers, the lower one
first, separated by a hyphen. Do not enter any spaces between
comma-separated VLAN parameters or in hyphen-specified ranges.
All VLANs are allowed by default. You cannot remove any of the default
VLANs (1 or 1002 to 1005) from a trunk.
Step5 end Return to privileged EXEC mode.
Step6 show interfaces interface-id switchport Verify your entries in the Trunking VLANs Enabled field of the display.
Step7 copy running-config startup-config (Optional) Save your entries in the configuration file.