Default Vlan; Pvlan - Zte ZXR10 5900 Series User Manual

All gigabit-port intelligent routing switch
Hide thumbs Also See for ZXR10 5900 Series:
Table of Contents

Advertisement

It connects two devices that can identify VLAN tags and car-
ries several VLAN's services. It transmits tagged frames only
to several VLANs. The most common trunk link is the one be-
tween two VLAN switches.
3. Hybrid Link
It transmits both tagged and untagged frames. For a given
VLAN, however, it only transmits frames of the same type.

Default VLAN

ZXR10 5900/5200 has a default VLAN initially, which has the fol-
lowing features:
VLAN ID as 1
VLAN name as VLAN0001
All ports included
Untagged by default on all ports

PVLAN

To improve network security, messages among different users shall
be separated. The traditional method is to assign a VLAN to each
user. The method has obvious limitation, which can be seen from
the following aspects:
1. At present, IEEE 802.1Q standard supports utmost 4094
VLANs, which limits the number of users and network expan-
sion.
2. Each VLAN corresponds to one IP subnet, so vast divided sub-
nets will cause the waste of IP addresses.
3. Planning and management to a mass of VLANs and IP subnets
is extremely complicated.
PVLAN (Private VLAN) technology is developed to solve these prob-
lems.
PVLAN divides the ports in VLAN into three types: the port con-
necting to the user is called Isolate Port, the port connecting to a
group of users that need interconnection and intercommunication
is called Community Port and the port connecting to the upstream
router is called Promiscuous Port. The isolated port communicates
with the promiscuous port only, but not with any other isolated
port or community port. Community port can communicate with
promiscuous port and any other community port, but not with iso-
lated port. Thus ports in the same VLAN are separated. The user
who connects with isolated port can only communicate with its
default gateway, the user who connects community port can in-
terconnect and intercommunicate. Network security is ensured.
ZXR10 5900/5200 supports 20 PVLAN groups, each group having
customized isolated ports and at most 256 isolated ports, 16 com-
munity ports and 8 promiscuous ports.
Confidential and Proprietary Information of ZTE CORPORATION
Chapter 1 VLAN Configuration
3

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents