Private VLAN configuration examples
Promiscuous port configuration example
Network requirements
As shown in
On Device B, VLAN 5 is a primary VLAN that is associated with secondary VLANs 2 and 3.
•
Ten-GigabitEthernet 1/0/5 is in VLAN 5. Ten-GigabitEthernet 1/0/2 is in VLAN 2.
Ten-GigabitEthernet 1/0/1 is in VLAN 3.
On Device C, VLAN 6 is a primary VLAN that is associated with secondary VLANs 3 and 4.
•
Ten-GigabitEthernet 1/0/5 is in VLAN 6. Ten-GigabitEthernet 1/0/3 is in VLAN 3.
Ten-GigabitEthernet 1/0/4 is in VLAN 4.
Device A is aware of only VLAN 5 on Device B and VLAN 6 on Device C.
•
Figure 38 Network diagram
Configuration procedure
This example describes the configurations on Device B and Device C.
1.
Configure Device B:
# Configure VLAN 5 as a primary VLAN.
<DeviceB> system-view
[DeviceB] vlan 5
[DeviceB-vlan5] private-vlan primary
[DeviceB-vlan5] quit
# Create VLANs 2 and 3.
[DeviceB] vlan 2 to 3
# Configure the uplink port Ten-GigabitEthernet 1/0/5 as a promiscuous port of VLAN 5.
[DeviceB] interface ten-gigabitethernet 1/0/5
[DeviceB-Ten-GigabitEthernet1/0/5] port private-vlan 5 promiscuous
[DeviceB-Ten-GigabitEthernet1/0/5] quit
# Assign the downlink port Ten-GigabitEthernet 1/0/1 to VLAN 3, and configure the port as a
host port.
[DeviceB] interface ten-gigabitethernet 1/0/1
Figure
38, configure the private VLAN feature to meet the following requirements:
138