Network Router User Manual

Table Of Contents
SmartSwitch Router User Reference Manual 287
Chapter 20: Security Configuration Guide
Creating a Port-Based VLAN for Layer-4 Bridging
The ports to be used in Layer-4 Bridging must all be on the same VLAN. To create a port-
based VLAN, enter the following command in Configure mode:
For example, to create a port-based VLAN called “blue” with an ID of 21, enter the
following command in Configure Mode:
Placing the Ports on the Same VLAN
Once you have created a VLAN for the ports to be used in layer-4 bridging, you add those
ports to the VLAN. To add ports to a VLAN, enter the following command in Configure
Mode:
To add the ports in the example in Figure 25 on page 286, to the blue VLAN you would
enter the following command:
Enabling Layer-4 Bridging on the VLAN
After adding the ports to the VLAN, you enable Layer-4 Bridging on the VLAN. To do
this, enter the following command in Configure Mode:.
For example, to enable Layer-4 Bridging on the blue VLAN:
Creating ACLs to Specify Selection Criteria for Layer-4 Bridging
Access control lists (ACLs) specify the kind of filtering to be done for Layer-4 Bridging.
Create a port-based VLAN.
vlan create <vlan-name> port-based id <num>
ssr(config)# vlan create blue port-based id 21
Add ports to a VLAN. vlan add ports <port-list> to <vlan-name>
ssr(config)# vlan add ports et.1.1,et.1.2,et.1.3 to blue
Enable Layer 4 bridging. vlan enable l4-bridging on <vlan-name>
ssr(config)# vlan enable l4-bridging on blue