user manual

Table Of Contents
CHAPTER 5
Configuring Private VLANs
This chapter contains the following sections:
Information About Private VLANs, page 37
Guidelines and Limitations for Private VLANs, page 42
Configuring a Private VLAN, page 42
Verifying the Private VLAN Configuration, page 47
Information About Private VLANs
A private VLAN (PVLAN) partitions the Ethernet broadcast domain of a VLAN into subdomains, allowing
you to isolate the ports on the switch from each other. A subdomain consists of a primary VLAN and one or
more secondary VLANs (see the following figure). All VLANs in a PVLAN domain share the same primary
VLAN. The secondary VLAN ID differentiates one subdomain from another. The secondary VLANs may
either be isolated VLANs or community VLANs. A host on an isolated VLAN can only communicate with
Cisco Nexus 3000 NX-OS Layer 2 Switching Configuration Guide, Release 5.0(3)U3(1)
OL-26590-01 37