Understanding Private VLAN
HTML-код
- Опубликовано: 18 окт 2024
- PRIVATE VLAN:
• Private VLANs (PVLANs) can be implemented to prevent hosts within a VLAN from communicating directly.
• In order to increase security by separating devices into many small VLANs conflicts with the design goal of conserving the use of the available IP subnets. The Cisco private VLAN feature addresses this issue.
• Private VLANs allow a switch to separate ports as if they were on different VLANs, while consuming only a single subnet.
• A common place to implement private VLANs is in the service provider (SP).
• The SP can install a single router and a single switch. Then, the SP attaches devices from multiple customers to the switch. Private VLANs then allow the SP to use only a single subnet for the whole building, separating different customers' switch ports so that they cannot communicate directly, while supporting all customers with a single router and switch.
Primary (regular) VLANs are associated with secondary (private) VLANs.
A secondary VLAN can be one of two types:
• Isolated - Hosts associated with the VLAN can only reach the primary VLAN.
• Community - Hosts can communicate with the primary VLAN and other hosts within the secondary VLAN, but not with other secondary VLANs.
Note: PVLAN information is not communicated by VTP.
PVLAN ports are configured to operate in one of two modes:
• Promiscuous - Port attaches to a router, firewall, etc; can communicate with all hosts ( including isolated and community ports)
• Host - Can only communicate with a promiscuous port, or ports within the same community PVLAN
Excellent video. The trainer has explained the concept in a very simple way.
Definitely CCIE level explanation!!!!
Thank you so much Sir for making every things easy for us
Keep up the good work. It was easy to understand your tutorial. Do you also train people for CCIE?
Nice video, made it simple to understand. Thank you
Best explanation !!
Good explanation! Thank you!
Thanks Sir! It helps me a lot...
I want to join your channel membership but I am unable to proceed
i couldn't find the difference between the following
1. trunk port
2. secondary trunk port
3. promiscuous port
if you know please help me
hi sir, while doing sh int private vlan
in Type column it is still showing non-operational. I have tried it multiple times but it is not changing to isolated or community. How to troubleshoot?
what is the difference between protected and isolated VLAN ?
love you sir
thank you
@NOA Solutions: Can I get any video material about Check Point Firewall R77 on wards.
Hi sir, could you pls tell me on which software you perform all these labs?
this works on 3560 Physicla devics only
@@SIKANDARshaik sir could you please make a video for how to confugure gns3 for switching purpose and could you pls add a cisco switch image in description so that we can download it and perform all labs.
@@PCxGames ruclips.net/p/PLJqb_j53o7BjvTRKtWY05pn7iMU_EOoId
great thanks
Nice
superbbbbbbb.......