154
Name: VLAN 0005
Tagged ports:
GigabitEthernet1/0/1
Untagged ports:
GigabitEthernet1/0/2 GigabitEthernet1/0/3
VLAN ID: 2
VLAN type: Static
Private VLAN type: Secondary
Route interface: Not configured
Description: VLAN 0002
Name: VLAN 0002
Tagged ports:
GigabitEthernet1/0/1
Untagged ports:
GigabitEthernet1/0/2
VLAN ID: 3
VLAN type: Static
Private VLAN type: Secondary
Route interface: Not configured
Description: VLAN 0003
Name: VLAN 0003
Tagged ports:
GigabitEthernet1/0/1
Untagged ports:
GigabitEthernet1/0/3
The output shows that:
• The trunk promiscuous port GigabitEthernet 1/0/1 is a tagged member of primary VLAN 5 and
secondary VLANs 2 and 3.
• The host port GigabitEthernet 1/0/2 is an untagged member of primary VLAN 5 and secondary
VLAN 2.
• The host port GigabitEthernet 1/0/3 is an untagged member of primary VLAN 5 and secondary
VLAN 3.
Trunk promiscuous and trunk secondary port configuration
example
Network requirements
As shown in Figure 46, configure the private VLAN feature to meet the following requirements:
• VLANs 10 and 20 are primary VLANs on Device A. The uplink port GigabitEthernet 1/0/5 on
Device A permits the packets from VLANs 10 and 20 to pass through tagged.
• VLAN 11, VLAN 12, VLAN 21, and VLAN 22 are secondary VLANs on Device A.
{ The downlink port GigabitEthernet 1/0/2 permits the packets from VLAN 11 and VLAN 21 to
pass through tagged.
{ The downlink port GigabitEthernet 1/0/1 permits VLAN 22.
{ The downlink port GigabitEthernet 1/0/3 permits VLAN 12.