Reference Guide
354 VLANs
Private VLAN
Private VLANs (PVLANs) provide Layer 2 isolation between ports that share
the same Broadcast domain, or in other words, they create a
point-to-multipoint Broadcast domain. The ports can be located anywhere in
the Layer 2 network, as opposed to protected ports which must be in the same
stack.
The switch ports can be members of a Private VLAN (PVLAN) in the
following membership types:
• Promiscuous ports that can communicate with all ports of the same
PVLAN, including the isolated ports of the same PVLAN.
• Isolated ports that have complete Layer 2-isolation from the other ports
within the same PVLAN, but not from the promiscuous ports. Isolated
ports can communicate with promiscuous ports.
The PVLAN entity is implemented by allocating the following VLANs per
PVLAN:
• Primary VLAN: Carries traffic from promiscuous ports.
• Isolated VLAN: Carries traffic from isolated ports.
To configure PVLANs:
1
Click
Switching
>
VLAN
>
Private VLAN
in the tree view to display the
Private VLAN: Summary
page.
The previously-defined private VLANs are displayed.
2
To query by
Associated Primary VLAN ID
, check that field, enter a VLAN
ID, and click
Query
. The associated VLANs are displayed.
3
To define a private VLAN, click
Assign,
and enter the fields:
–
Private VLAN ID
— Select a VLAN to be assigned.
–
Private VLAN Type
— Select one of the possible options:
•
Primary
— Traffic from promiscuous ports flow through this type
of VLAN. This is for the internet or shared servers.
•
Isolated
—Traffic from isolated ports flow through this type of
VLAN.










