SecureStack C2 Configuration Guide 8-1
8
802.1Q VLAN Configuration
ThischapterdescribestheSecureStackC2system’scapabilitiestoimplement802.1QvirtualLANs
(VLANs).
VLAN Configuration Summary
VirtualLANsallowthenetworkadministratortopartitionnetworktrafficintologicalgroupsand
controltheflowoftha ttrafficthroughthenetwork.Oncethetrafficand,ineffect,theusers
creatingthetraffic,areassignedtoaVLAN,thenbroadcast andmulticasttrafficiscontained
withintheVLANandusers
canbeallowedordeniedaccesstoanyofthenetwork’sresources.
Also,someoralloftheportsonthedevicecanbeconfiguredasGVRPports,whichenableframes
receivedwithaparticularVLANIDandprotocoltobetransmittedonalimitednumberofports.
Thiskeeps
thetrafficassociatedwithaparticularVLANandprotocolisola tedfromtheotherparts
ofthenetwork.
Port String Syntax Used in the CLI
ForinformationonhowtodesignateVLANsandportnumbersintheCLIsyntax,referto“Port
StringSyntaxUsedintheCLI”onpage 5‐2.
Creating a Secure Management VLAN
Bydefaultatstartup,thereisoneVLANconfiguredontheSecureStackC2device.ItisVLANID
1,theDEFAULTVLAN.Thedefaultcommunityname,whichdeterminesremoteaccessfor
SNMPmanagement,issetto“public”withread‐writeaccess.
For information about... Refer to page...
VLAN Configuration Summary 8-1
Viewing VLANs 8-2
Creating and Naming Static VLANs 8-4
Assigning Port VLAN IDs (PVIDs) and Ingress Filtering 8-6
Configuring the VLAN Egress List 8-12
Setting the Host VLAN 8-16
Enabling/Disabling GVRP (GARP VLAN Registration Protocol) 8-18
Note: The device can support up to 1024 802.1Q VLANs. The allowable range for VLAN IDs is 1
to 4093. As a default, all ports on the device are assigned to VLAN ID 1, untagged.