请教:
isolate-user-vlan在V7的设备里面叫什么的呀?
叫pvlan吗?看了一下好像又不太像,是否pvlan里面有很多个类型的?
是否其中就包含isolate-user-vlan这种类型吗?
isolate-user-vlan的V7配置命令是怎样的呀?
谢谢。
(0)
最佳答案
您好,V7对应的是Private VLAN
配置参考链接
H3C CR16000 系列核心路由器 配置指导-R7174-6W100_二层技术-以太网交换配置指导_VLAN配置-新华三集团-H3C
以trunk promiscuous模式举例
· Device B上的VLAN 5和VLAN 10为Primary VLAN,其上行端口GigabitEthernet3/0/1需要允许VLAN 5和VLAN 10的报文携带VLAN Tag通过。
· Device B的下行端口GigabitEthernet3/0/2允许Secondary VLAN 2通过,GigabitEthernet3/0/3允许Secondary VLAN 3通过,Secondary VLAN 2、3映射到Primary VLAN 5。
· Device B的下行端口GigabitEthernet3/0/6允许Secondary VLAN 6通过,GigabitEthernet3/0/8允许Secondary VLAN 8通过,Secondary VLAN 6、8映射到Primary VLAN 10。
· 从Device A看,下接的Device B只有VLAN 5和VLAN 10。
# 配置VLAN 5和VLAN 10为Primary VLAN。
[DeviceB] vlan 5
[DeviceB-vlan5] private-vlan primary
[DeviceB-vlan5] quit
[DeviceB] vlan 10
[DeviceB-vlan10] private-vlan primary
[DeviceB-vlan10] quit
# 创建Secondary VLAN 2、3、6、8。
[DeviceB] vlan 6
[DeviceB-vlan6] quit
[DeviceB] vlan 8
[DeviceB-vlan8] quit
# 配置Primary VLAN 5和Secondary VLAN 2、3的映射关系。
[DeviceB-vlan5] private-vlan secondary 2 to 3
[DeviceB-vlan5] quit
# 配置Primary VLAN 10和Secondary VLAN 6、8的映射关系。
[DeviceB-vlan10] private-vlan secondary 6 8
[DeviceB-vlan10] quit
# 配置上行端口GigabitEthernet3/0/1在VLAN 5和VLAN 10中工作在trunk promiscuous模式。
[DeviceB] interface gigabitethernet 3/0/1
[DeviceB-GigabitEthernet3/0/1] port link-mode bridge
[DeviceB-GigabitEthernet3/0/1] port private-vlan 5 10 trunk promiscuous
[DeviceB-GigabitEthernet3/0/1] quit
# 将下行端口GigabitEthernet3/0/2加入VLAN 2,GigabitEthernet3/0/3加入VLAN 3,并配置它们工作在host模式。
[DeviceB] interface gigabitethernet 3/0/2
[DeviceB-GigabitEthernet3/0/2] port link-mode bridge
[DeviceB-GigabitEthernet3/0/2] port access vlan 2
[DeviceB-GigabitEthernet3/0/2] port private-vlan host
[DeviceB-GigabitEthernet3/0/2] quit
[DeviceB] interface gigabitethernet 3/0/3
[DeviceB-GigabitEthernet3/0/3] port link-mode bridge
[DeviceB-GigabitEthernet3/0/3] port access vlan 3
[DeviceB-GigabitEthernet3/0/3] port private-vlan host
[DeviceB-GigabitEthernet3/0/3] quit
# 将下行端口GigabitEthernet3/0/6加入VLAN 6,GigabitEthernet3/0/8加入VLAN 8,并配置它们工作在host模式。
[DeviceB] interface gigabitethernet 3/0/6
[DeviceB-GigabitEthernet3/0/6] port link-mode bridge
[DeviceB-GigabitEthernet3/0/6] port access vlan 6
[DeviceB-GigabitEthernet3/0/6] port private-vlan host
[DeviceB-GigabitEthernet3/0/6] quit
[DeviceB] interface gigabitethernet 3/0/8
[DeviceB-GigabitEthernet3/0/8] port link-mode bridge
[DeviceB-GigabitEthernet3/0/8] port access vlan 8
[DeviceB-GigabitEthernet3/0/8] port private-vlan host
[DeviceB-GigabitEthernet3/0/8] quit
# 创建VLAN 5和VLAN 10。
[DeviceA-vlan5] quit
[DeviceA] vlan 10
[DeviceA-vlan10] quit
# 配置端口GigabitEthernet3/0/1为Hybrid端口,并允许VLAN 5和VLAN 10携带Tag通过。
[DeviceA] interface gigabitethernet 3/0/1
[DeviceA-GigabitEthernet3/0/1] port link-mode bridge
[DeviceA-GigabitEthernet3/0/1] port link-type hybrid
[DeviceA-GigabitEthernet3/0/1] port hybrid vlan 5 10 tagged
[DeviceA-GigabitEthernet3/0/1] quit
# 显示Device B上的Primary VLAN 5配置情况(Primary VLAN 10的显示结果类似,这里不再列出)。
[DeviceB] display private-vlan 5
Primary VLAN ID: 5
Secondary VLAN ID: 2-3
VLAN ID: 5
VLAN type: Static
Private VLAN type: Primary
Route interface: Not configured
Description: VLAN 0005
Name: VLAN 0005
Tagged ports:
GigabitEthernet3/0/1
Untagged ports:
GigabitEthernet3/0/2 GigabitEthernet3/0/3
VLAN ID: 2
VLAN type: Static
Private VLAN type: Secondary
Route interface: Not configured
Description: VLAN 0002
Name: VLAN 0002
Tagged ports:
GigabitEthernet3/0/1
Untagged ports:
GigabitEthernet3/0/2
VLAN ID: 3
VLAN type: Static
Private VLAN type: Secondary
Route interface: Not configured
Description: VLAN 0003
Name: VLAN 0003
Tagged ports:
GigabitEthernet3/0/1
Untagged ports:
GigabitEthernet3/0/3
可以看到,工作在trunk promiscuous模式的端口GigabitEthernet3/0/1以Tagged方式允许VLAN报文通过,工作在host模式的端口GigabitEthernet3/0/2和GigabitEthernet3/0/3以Untagged方式允许VLAN报文通过。
(0)
您好,请知:
以下是配置举例,请参考:
· Device B上的Primary VLAN 5包含上行端口GigabitEthernet1/0/5,并关联两个Secondary VLAN(VLAN 2和VLAN 3),其中,VLAN 2包含端口GigabitEthernet1/0/2,VLAN 3包含端口GigabitEthernet1/0/3。
· Device C上的Primary VLAN 6包含上行端口GigabitEthernet1/0/5,并关联两个Secondary VLAN(VLAN 3和VLAN 4),其中,VLAN 3包含端口GigabitEthernet1/0/3,VLAN 4包含端口GigabitEthernet1/0/4。
· 从Device A看,下接的Device B只有一个VLAN(VLAN 5),下接的Device C只有一个VLAN(VLAN 6)。
图3-2 组网图
下面只列出Device B和Device C的配置过程。
(1) 配置Device B
# 配置VLAN 5为Primary VLAN。
<DeviceB> system-view
[DeviceB] vlan 5
[DeviceB-vlan5] private-vlan primary
[DeviceB-vlan5] quit
# 创建Secondary VLAN 2、3。
[DeviceB] vlan 2 to 3
# 配置Primary VLAN 5和Secondary VLAN 2、3的映射关系。
[DeviceB] vlan 5
[DeviceB-vlan5] private-vlan secondary 2 to 3
[DeviceB-vlan5] quit
# 配置上行端口GigabitEthernet1/0/5在VLAN 5中工作在promiscuous模式。
[DeviceB] interface gigabitethernet 1/0/5
[DeviceB-GigabitEthernet1/0/5] port private-vlan 5 promiscuous
[DeviceB-GigabitEthernet1/0/5] quit
# 将下行端口GigabitEthernet1/0/2、GigabitEthernet1/0/3分别添加到VLAN 2、VLAN 3,并配置它们工作在host模式。
[DeviceB] interface gigabitethernet 1/0/2
[DeviceB-GigabitEthernet1/0/2] port access vlan 2
[DeviceB-GigabitEthernet1/0/2] port private-vlan host
[DeviceB-GigabitEthernet1/0/2] quit
[DeviceB] interface gigabitethernet 1/0/3
[DeviceB-GigabitEthernet1/0/3] port access vlan 3
[DeviceB-GigabitEthernet1/0/3] port private-vlan host
[DeviceB-GigabitEthernet1/0/3] quit
(2) 配置Device C
# 配置VLAN 6为Primary VLAN。
<DeviceC> system-view
[DeviceC] vlan 6
[DeviceC–vlan6] private-vlan primary
[DeviceC–vlan6] quit
# 创建Secondary VLAN 3、4。
[DeviceC] vlan 3 to 4
# 配置Primary VLAN 6和Secondary VLAN 3、4的映射关系。
[DeviceC] vlan 6
[DeviceC-vlan6] private-vlan secondary 3 to 4
[DeviceC-vlan6] quit
# 配置上行端口GigabitEthernet1/0/5在VLAN 6中工作在promiscuous模式。
[DeviceC] interface gigabitethernet 1/0/5
[DeviceC-GigabitEthernet1/0/5] port private-vlan 6 promiscuous
[DeviceC-GigabitEthernet1/0/5] quit
# 将下行端口GigabitEthernet1/0/3、GigabitEthernet1/0/4分别添加到VLAN 3、VLAN 4,并配置它们工作在host模式。
[DeviceC] interface gigabitethernet 1/0/3
[DeviceC-GigabitEthernet1/0/3] port access vlan 3
[DeviceC-GigabitEthernet1/0/3] port private-vlan host
[DeviceC-GigabitEthernet1/0/3] quit
[DeviceC] interface gigabitethernet 1/0/4
[DeviceC-GigabitEthernet1/0/4] port access vlan 4
[DeviceC-GigabitEthernet1/0/4] port private-vlan host
[DeviceC-GigabitEthernet1/0/4] quit
# 显示Device B上的Private VLAN配置情况(Device C的显示结果类似,这里不再列出)。
[DeviceB] display private-vlan
Primary VLAN ID: 5
Secondary VLAN ID: 2-3
VLAN ID: 5
VLAN type: Static
Private VLAN type: Primary
Route interface: Not configured
Description: VLAN 0005
Name: VLAN 0005
Tagged ports: None
Untagged ports:
GigabitEthernet1/0/2
GigabitEthernet1/0/3
GigabitEthernet1/0/5
VLAN ID: 2
VLAN type: Static
Private VLAN type: Secondary
Route interface: Not configured
Description: VLAN 0002
Name: VLAN 0002
Tagged ports: None
Untagged ports:
GigabitEthernet1/0/2
GigabitEthernet1/0/5
VLAN ID: 3
VLAN type: Static
Private VLAN type: Secondary
Route interface: Not configured
Description: VLAN 0003
Name: VLAN 0003
Tagged Ports: None
Untagged Ports:
GigabitEthernet1/0/3
GigabitEthernet1/0/5
可以看到,工作在promiscuous模式的端口GigabitEthernet1/0/5和工作在host模式的端口GigabitEthernet1/0/2和GigabitEthernet1/0/3均以Untagged方式允许VLAN报文通过。
(0)
非常感谢。
非常感谢。
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明