Cisco Systems N3KC3048TP1GE Primary and Secondary VLANs in Private VLANs, Private VLAN Ports

Models: N3KC3064TFAL3 N3KC3048TP1GE

1 164
Download 164 pages 5.98 Kb
Page 52
Image 52
Primary and Secondary VLANs in Private VLANs

Configuring Private VLANs

Primary and Secondary VLANs in Private VLANs

the associated promiscuous port in its primary VLAN. Hosts on community VLANs can communicate among themselves and with their associated promiscuous port but not with ports in other community VLANs.

Figure 3: Private VLAN Domain

Note You must first create the VLAN before you can convert it to a PVLAN, either primary or secondary.

Primary and Secondary VLANs in Private VLANs

A private VLAN domain has only one primary VLAN. Each port in a private VLAN domain is a member of the primary VLAN; the primary VLAN is the entire private VLAN domain.

Secondary VLANs provide isolation between ports within the same private VLAN domain. The following two types are secondary VLANs within a primary VLAN:

Isolated VLANsPorts within an isolated VLAN cannot communicate directly with each other at the Layer 2 level.

Community VLANsPorts within a community VLAN can communicate with each other but cannot communicate with ports in other community VLANs or in any isolated VLANs at the Layer 2 level.

Private VLAN Ports

The three types of PVLAN ports are as follows:

 

Cisco Nexus 3000 NX-OS Layer 2 Switching Configuration Guide, Release 5.0(3)U3(1)

38

OL-26590-01

Page 52
Image 52
Cisco Systems N3KC3048TP1GE, N3KC3064TFAL3 manual Primary and Secondary VLANs in Private VLANs, Private VLAN Ports