I have a Nexus 5000 Switch sat between 2 Routers on which I'm trying to configure Private Vlans. Vlan 1111 is configured as the Primary Vlan configured on the Upstream Port (Eth1/21) to Router A, Router A is configured with an IP address of 10.1.1.1/24
I'm then trying to configure a downstream port (Eth1/23) to act as the downstream trunk port to Router B, which is where I'm encountering issues. I have tried multiple configurations for a Private Vlan trunk, but I feel I coming across limitations in the way the 5000s run Private Vlans - The error below suggests that Community Vlans cannot be mapped to a Trunk Port.
5KSwitch(config-if)# switchport private-vlan association trunk 1111 1112 ERROR: Ethernet1/23 : Community vlan cannot be mapped on a secondary trunk port
Given that the above error seems to suggest that only isolated vlans can be mapped on a trunk port, I have tested using an isolated Vlan mapped to the Primary Vlan and whilst I'm able to trunk the isolated Vlan down the downstream trunk, I'm only able to create a single isolated per Primary Vlan which seems quite limited configuration wise, as given it being a trunk port, I'd like to send multiple Vlans down the link.
5KSwitch(config-vlan)# ex ERROR: Primary vlan 1111 cannot be associated with more than 1 isolated vlan. ERROR : cli_process_vlan_config_exit(295), command private-vlan association 1112-1114 FAILED Cannot run commands in the mode at this moment. Please try again. 5KSwitch(config)#
Switch Version is 7.2(0)N1(1)
Has anyone encountered similar issues - Were you able to implement a workaround?
To participate in this event, please use the button to ask your questions
* Note: The link to join the discussion will be activated on March 8
All the knowledge of these four experts at your disposal!
Cisco Software-Defined Wide Area Network (SD-WAN...
Community Live- ISR1100X-4G and ISR1100X-6G Platform Overview and Architecture
(Live event - Tuesday, 23 March, 2021 at 10:00 am Pacific/ 1:00 pm Eastern / 7:00 pm Paris)-
This event will have place on Tuesday 23rd, March 2021 at 10:00 hrs PDT&...
Cisco Secure Network Access is helping IT to bridge the gap between what is essential to the business and what the network delivers and to build the next-generation campus network for an unplugged and uninterrupted experience.
Learn more about how these w...
(view in My Videos)
Community Live- New Additions to the Catalyst 8000 Family
(Live event - Tuesday, 23 February, 2021 at 10:00 am Pacific/ 1:00 pm Eastern / 7:00 pm Paris)-
This event had place on Tuesday 23rd, February 2021 at 10:00 hrs PDT...
This event had place on Tuesday 23rd, February 2021 at 10hrs PDT
Designed for an intent-based network, the Cisco Catalyst 8000 Edge Platforms family offers best-in-class networking and security combined. The platforms, available in b...