10-28-2006 12:40 PM - edited 03-05-2019 12:30 PM
Hello,
I would like to configure a "private-vlan trunk promiscuous" on a 4500 and I would like to connect the trunk to a PIX firewall. So the PIX will have multiple VLANs interfaces and each of these interfaces will be the layer 3 interface of a primary-vlan.
I think that it is possible with the version 12.2.(31) SG but I can not succeed to configure it. How do you specify which primary vlan is allowed in the trunk ?
Regards,
Alain.
11-02-2006 11:47 AM
When you configure a Layer 2 interface as a PVLAN promiscuous port note that secondary_vlan_list parameter cannot contain spaces.Refer the following URL for more information
11-02-2006 01:25 PM
Hello,
I have found the solution, it is:
<--
vlan 350
private-vlan primary
private-vlan association 351
!
vlan 351
private-vlan isolated
!
vlan 367
private-vlan primary
private-vlan association 368
!
vlan 368
private-vlan isolated
!
interface GigabitEthernet3/9
switchport private-vlan trunk allowed vlan 1,350,367
switchport private-vlan mapping trunk 350 351
switchport private-vlan mapping trunk 367 368
switchport mode private-vlan trunk promiscuous
!
-->
Regards,
Alain.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide