04-28-2016 03:01 AM - edited 03-08-2019 05:31 AM
Hi
Whether below config on catalyst 4500 switch is ok ? port type is access.
Do I need to remove switchport nonegotiate command or its ok ?
interface <<interface>>
description <connected to firewall>
switchport private-vlan mapping <<primary_vlan>> <<secondary_vlan>>
switchport mode private-vlan promiscuous
switchport nonegotiate
storm-control broadcast level 60.00
spanning-tree portfast
no shutdown
Thanks
04-28-2016 03:51 AM
Hi,
Config is ok.
Its ok If you keep switchport nonegotiate, it as its stops DTP negotiation.
-Sachin
04-28-2016 04:00 AM
whether promiscuous port automatically stops trunking and thatst why removing "switchport nonegotiate" will make no difference ?
04-28-2016 04:09 AM
You can remove it if you want DTP negotiation to be required, if you have trusted device at other end then remove it.
04-28-2016 04:10 AM
we have firewall at other end..
04-28-2016 04:21 AM
Remove switch port nonegotiation then
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide