Table 125: Commands For Configuring Traffic Segmentation - Edge-Core ECS4660-28F Management Manual

Layer 3
Hide thumbs Also See for ECS4660-28F:
Table of Contents

Advertisement

C
P
ONFIGURING
ORT
traffic-segmentation
-
T
S
BASED
RAFFIC
EGMENTATION
If tighter security is required for passing traffic from different clients
through downlink ports on the local network and over uplink ports to the
service provider, port-based traffic segmentation can be used to isolate
traffic for individual clients.
Traffic belonging to each client is isolated to the allocated downlink ports.
But the switch can be configured to either isolate traffic passing across a
client's allocated uplink ports from the uplink ports assigned to other
clients, or to forward traffic through the uplink ports used by other clients,
allowing different clients to share access to their uplink ports where
security is less likely to be compromised.

Table 125: Commands for Configuring Traffic Segmentation

Command
traffic-segmentation
traffic-segmentation session
traffic-segmentation uplink/
downlink
traffic-segmentation
uplink-to-uplink
show traffic-segmentation
This command enables traffic segmentation. Use the no form to disable
traffic segmentation.
S
YNTAX
[no] traffic-segmentation
D
S
EFAULT
ETTING
Disabled
C
M
OMMAND
ODE
Global Configuration
C
U
OMMAND
SAGE
Traffic segmentation provides port-based security and isolation
between ports within the VLAN. Data traffic on the downlink ports can
only be forwarded to, and from, the designated uplink port(s). Data
cannot pass between downlink ports in the same segmented group, nor
to ports which do not belong to the same group.
Traffic segmentation and normal VLANs can exist simultaneously within
the same switch. Traffic may pass freely between uplink ports in
segmented groups and ports in normal VLANs.
– 1157 –
C
29
HAPTER
Configuring Port-based Traffic Segmentation
Function
Enables traffic segmentation
Creates a client session
Configures uplink/downlink ports for client sessions
Specifies whether or not traffic can be forwarded
between uplink ports assigned to different client
sessions
Displays the configured traffic segments
| General Security Measures
Mode
GC
GC
GC
GC
PE

Advertisement

Table of Contents
loading

Table of Contents