hit counter script

Limitations With Other Features - Cisco ME 3400G-2CS - Ethernet Access Switch Software Configuration Manual

Ethernet access switch
Hide thumbs Also See for ME 3400G-2CS - Ethernet Access Switch:
Table of Contents

Advertisement

Chapter 12
Configuring Private VLANs

Limitations with Other Features

When configuring private VLANs, remember these limitations with other features:
In some cases, the configuration is accepted with no error messages, but the commands have no effect.
Note
78-17058-01
When IGMP snooping is enabled on the switch (the default), the switch supports no more than 20
private-VLAN domains.
A private VLAN cannot be a UNI isolated or UNI community VLAN. For more information about
UNI VLANs, see
Chapter 11, "Configuring VLANs."
Do not configure a remote SPAN (RSPAN) VLAN as a private-VLAN primary or secondary VLAN.
For more information about SPAN, see
Do not configure private-VLAN ports on interfaces configured for these other features:
dynamic-access port VLAN membership
PAgP (only NNIs)
LACP (only NNIs)
Multicast VLAN Registration (MVR)
A private-VLAN port cannot be a secure port, and an NNI should not be configured as a protected
port.
You can configure 802.1x port-based authentication on a private-VLAN port, but do not configure
IEEE 802.1x with port security on private-VLAN ports.
A private-VLAN host or promiscuous port cannot be a SPAN destination port. If you configure a
SPAN destination port as a private-VLAN port, the port becomes inactive.
If you configure a static MAC address on a promiscuous port in the primary VLAN, you must add
the same static address to all associated secondary VLANs. If you configure a static MAC address
on a host port in a secondary VLAN, you must add the same static MAC address to the associated
primary VLAN. When you delete a static MAC address from a private-VLAN port, you must remove
all instances of the configured MAC address from the private VLAN.
Note
Dynamic MAC addresses learned in one VLAN of a private VLAN are replicated in the
associated VLANs. For example, a MAC address learned in a secondary VLAN is replicated
in the primary VLAN. When the original dynamic MAC address is deleted or aged out, the
replicated addresses are removed from the MAC address table.
Configure Layer 3 VLAN interfaces (SVIs) only for primary VLANs.
Chapter 24, "Configuring SPAN and RSPAN."
Cisco ME 3400 Ethernet Access Switch Software Configuration Guide
Configuring Private VLANs
12-9

Advertisement

Table of Contents
loading

Table of Contents