CLI Guide

Table Of Contents
Layer 2 Switching Commands 893
User Guidelines
Do not configure private VLANs on ports configured with any of these
features:
Link Aggregation Control Protocol (LACP)
Multicast VLAN Registration (MVR)
Voice VLAN
It is recommended that the private VLAN host ports be configured as
spanning-tree portfast.
Command History
Syntax updated in version 6.6 firmware.
Example
console(config)#interface gigabitethernet 1/0/8
console(config-if-Gi1/0/8)#switchport mode private-vlan host
switchport private-vlan
Use the switchport private-vlan command in Interface Configuration mode
to define a private VLAN association for an isolated or community port or a
mapping for a promiscuous port.
Use the no form of the command to remove the private VLAN association or
mapping from the interface.
Syntax
switchport private-vlan {host-association primary-vlan-id secondary-vlan-id|
mapping primary-vlan-id {add|remove} secondary-vlan-list} | mapping
trunk primary-vlan-id { secondary-vlan-list | add secondary-vlan-list |
remove secondary-vlan-list } | trunk { native vlan vlan-if | allowed vlan vlan-
list } | association trunk primary-vlan-id secondary-vlan-id}
no switchport private-vlan {host-association|mapping | mapping trunk
primary-vlan-id | trunk allowed vlan-list | trunk native vlan vlan-id |
association trunk primary-vlan-id secondary-vlan-id}}
no switchport private-vlan mapping trunk
no switchport private-vlan trunk allowed vlan vlan-list