Private VLAN Commands
The commands dedicated to supporting the Private VLANs feature are:
Table 37-1. Private VLAN Commands
Task
Enable/disable Layer 3 communication between
secondary VLANs.
Set the mode of the selected VLAN to
community, isolated, or primary.
Map secondary VLANs to the selected primary
VLAN.
Display type and status of PVLAN interfaces.
Display PVLANs and/or interfaces that are part
of a PVLAN.
Display primary-secondary VLAN mapping.
Set the PVLAN mode of the selected port.
Note: Secondary VLANs are Layer 2 VLANs, so even if they are operationally down while primary VLANs
are operationally up, Layer 3 traffic will still be transmitted across secondary VLANs.
The outputs of the following commands are augmented in FTOS 7.8.1.0 to provide PVLAN data:
•
: See the IP Routing Commands chapter in the FTOS Command Line Reference.
show arp
•
: See the Layer 2 Commands chapter in the FTOS Command Line Reference.
show vlan
Command Syntax
[no] ip local-proxy-arp
Note: Even after ip-local-proxy-arp is disabled
(no ip-local-proxy-arp) in a secondary VLAN,
Layer 3 communication may happen between
some secondary VLAN hosts, until the ARP
timeout happens on those secondary VLAN
hosts.
[ no ]
{ community |
private-vlan mode
isolated | primary }
[
no] private-vlan mapping secondary-vlan
vlan-list
show interfaces private-vlan
]
interface
[
show vlan private-vlan
community
|
|
interface
isolated
primary
]
interface interface
show vlan private-vlan mapping
switchport mode private-vlan
}
promiscuous | trunk
Command Mode
INTERFACE VLAN
INTERFACE VLAN
INTERFACE VLAN
[ interface
EXEC
EXEC Privilege
|
EXEC
|
EXEC Privilege
|
primary_vlan
EXEC
EXEC Privilege
{
INTERFACE
host |
Private VLANs (PVLAN) | 797