Private-Vlan Isolated - HP FlexNetwork 5130 HI series Command Reference Manual

Layer 2 - lan switching
Table of Contents

Advertisement

[Sysname] vlan 4
[Sysname-vlan4] private-vlan community
Related commands

private-vlan isolated

private-vlan isolated
Use private-vlan isolated to isolate ports in a secondary VLAN at Layer 2.
Use undo private-vlan isolated to restore the default.
Syntax
private-vlan isolated
undo private-vlan isolated
Default
Ports in the same secondary VLAN can communicate with each other at Layer 2.
Views
VLAN view
Predefined user roles
network-admin
Usage guidelines
The private-vlan isolated command takes effect when the following conditions exist:
The secondary VLAN is associated with a primary VLAN.
The ports are configured as host or trunk secondary ports of the secondary VLAN.
If you assign the downlink ports to a secondary VLAN configured with this command, the downlink
ports are isolated from each other at Layer 2.
The private-vlan isolated command is mutually exclusive with the primary VLAN, super VLAN, and
sub-VLAN configurations.
Examples
This example shows how to meet the following requirements:
VLAN 4 is a secondary VLAN, and it is associated with primary VLAN 2.
GigabitEthernet 1/0/1 is a promiscuous port of VLAN 2.
GigabitEthernet 1/0/2 and GigabitEthernet 1/0/3 are host ports of VLAN 4.
GigabitEthernet 1/0/2 and GigabitEthernet 1/0/3 are isolated at Layer 2 in secondary VLAN 4.
# Configure VLAN 2 as a primary VLAN and associate it with secondary VLAN 4.
<Sysname> system-view
[Sysname] vlan 2
[Sysname-vlan2] private-vlan primary
[Sysname-vlan2]private-vlan secondary 4
[Sysname-vlan4] quit
# Configure GigabitEthernet 1/0/1 as a promiscuous port of VLAN 2.
[Sysname] interface gigabitethernet 1/0/1
[Sysname-GigabitEthernet1/0/1] port private-vlan 2 promiscuous
[Sysname-GigabitEthernet1/0/1] quit
219

Advertisement

Table of Contents
loading

Table of Contents