EasyManuals Logo
Home>TP-Link>Switch>TL-SG5412F

TP-Link TL-SG5412F User Manual

TP-Link TL-SG5412F
257 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #79 background imageLoading...
Page #79 background image
Private VLAN ado
pts Layer 2 VLAN structure. A Private VLAN consists of a Primary VLAN and a
Secondary VLAN, providing a mechanism for achieving layer-2-separation between ports. For
uplink devices, all the packets received from the downstream are without VLAN tags. Uplink
devices need to identify Primary VLANs but not Secondary VLANs. Therefore, they can save
VLAN resources without considering the VLAN configuration in the lower layer. Meanwhile, the
service provider can assign each user an individual Secondary VLAN, so that users are separated
at the Layer 2 level.
Private VLAN technology is mainly used in campus or enterprise networks to achieve user
layer-2-separation and to save VLAN resources of uplink devices.
The Elements of a Private VLAN
Primary VLAN: A Private VLAN has one Primary VLAN and one Secondary VLAN. Primary VLAN
is the user VLAN uplink device can identify but it is not the actual VLAN the end user is in. Every
port in a private VLAN is a member of the primary VLAN. The primary VLAN carries unidirectional
traffic downstream from the promiscuous ports to the host ports and to other promiscuous ports.
Secondary VLAN: .Secondary VLAN is the actual VLAN the end user is in. Secondary VLANs are
associated with a primary VLAN, and are used to carry traffic from hosts to uplink devices.
Promiscuous: A promiscuous port connects to and communicates with the uplink device. The
PVID of the promiscuous port is the same with the Primary VLAN ID. One promiscuous port can
only join to one Primary VLAN.
Host: A host port connects to and communicates with terminal device. The PVID of the host port is
the same as the Secondary VLAN ID. One host port can only belong to one Private VLAN.
Features of Private VLAN
1. A Private VLAN contains one Primary VLAN and one Secondary VLAN.
2. A VLAN can not be set as the Primary VLAN and Secondary VLAN simultaneously.
3. A Secondary VLAN can only join one private VLAN.
4. A Primary VLAN can be associated with multi-Secondary VLANs to create multi-Private
VLANs.
Private VLAN Implementation
To hide Secondary VLANs from uplink devices and save VLAN resources, Private VLAN
containing one Primary VLAN and one Secondary VLAN requires the following characteristics:
Packets from different Secondary VLANs can be forwarded to the uplink device via
promiscuous port and carry no corresponding Secondary VLAN information.
Packets from Primary VLANs can be sent to end users via host port and carry no Primary
VLAN information.
Private VLAN is designed to save VLAN resource by means of Port configuration synchronization
among the MAC address tables of VLANs and MAC address duplication. To achieve these
requirements described above, the following two aspects are required:
1) Create Private VLAN: A Private VLAN includes one Primary VLAN and one Secondary VLAN,
the PVID of the promiscuous port is equal to the Primary VLAN ID and the PVID of the host
port is the same as the corresponding Secondary VLAN ID, moreover, the egress rule of all
ports is untag by default, that is, only those untagged packets can be forwarded, but you can
modify the egress rule on VLAN802.1Q VLANVLAN Config page.
70

Table of Contents

Other manuals for TP-Link TL-SG5412F

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the TP-Link TL-SG5412F and is the answer not in the manual?

TP-Link TL-SG5412F Specifications

General IconGeneral
MAC address table8000 entries
Jumbo frames supportYes
Maximum data transfer rate1 Gbit/s
Supported data transfer rates10, 100, 1000Mbps
Fan0
Wi-FiNo
DiagnosticsVCT
Management platformSNMP, RMON, WEB/CLI/Telnet
Authentication method802.1X, Radius
Packet transfer speed17.99Mpps
Connectivity technologyWired
Networking standardsIEEE 802.1D, IEEE 802.1p, IEEE 802.1Q, IEEE 802.1s, IEEE 802.1w, IEEE 802.1x, IEEE 802.3, IEEE 802.3ab, IEEE 802.3ad, IEEE 802.3i, IEEE 802.3u, IEEE 802.3x, IEEE 802.3z
Ethernet LAN data rates10, 100, 1000 Mbit/s
Copper ethernet cabling technology1000BASE-T, 100BASE-TX, 10BASE-T
DHCP featuresDHCP client
Security algorithmsSSH, SSL/TLS
Switch typeManaged
Switch layerL2
Console portRJ-45
Fiber optic connectorSFP
SFP/SFP+ slots quantity12
Basic switching RJ-45 Ethernet ports quantity4
Fiber ethernet cabling technology100BASE-FX
AC input voltage100 - 240 V
AC input frequency50 - 60 Hz
Stackable-
Form factor1U
CertificationCE, FCC
Product colorBlack
Compatible operating systemsWindows 98SE, NT, 2000, XP, Vista, Windows 7\\r MAC OS\\r NetWare\\r UNIX\\r Linux
Storage temperature (T-T)-40 - 70 °C
Operating temperature (T-T)0 - 40 °C
Storage relative humidity (H-H)5 - 90 %
Operating relative humidity (H-H)10 - 90 %
Weight and Dimensions IconWeight and Dimensions
Depth260 mm
Width440 mm
Height44 mm

Related product manuals