Concept Guide

Table Of Contents
Table 120. VLAN Membership and MAC Synchronization With VLT Nodes in PVLAN (continued)
VLT LAG Mode PVLAN Mode of VLT VLAN ICL VLAN
Membership
Mac
Synchronization
Peer1 Peer2 Peer1 Peer2
Trunk Access Primary/Normal Secondary No No
Configuring a VLT VLAN or LAG in a PVLAN
You can configure the VLT peers or nodes in a private VLAN (PVLAN). Because the VLT LAG interfaces are terminated on
two different nodes, PVLAN configuration of VLT VLANs and VLT LAGs are symmetrical and identical on both the VLT peers.
PVLANs provide Layer 2 isolation between ports within the same VLAN. A PVLAN partitions a traditional VLAN into subdomains
identified by a primary and secondary VLAN pair. With VLT being a Layer 2 redundancy feature, support for configuration of VLT
nodes in a PVLAN enables Layer 2 security functionalities to be achieved. This section describe how to configure a VLT VLAN or
a VLT LAG (VLTi link) and assign that VLT interface to a PVLAN.
Creating a VLT LAG or a VLT VLAN
1. Configure the port channel for the VLT interconnect on a VLT switch and enter interface configuration mode
CONFIGURATION mode
interface port-channel id-number.
Enter the same port-channel number configured with the peer-link port-channel command as described in Enabling
VLT and Creating a VLT Domain.
NOTE: To be included in the VLTi, the port channel must be in Default mode (no switchport or VLAN assigned).
2. Remove an IP address from the interface.
INTERFACE PORT-CHANNEL mode
no ip address
3. Add one or more port interfaces to the port channel.
INTERFACE PORT-CHANNEL mode
channel-member interface
interface: specify one of the following interface types:
For a 1-GigabitEthernet interface, enter the keyword GigabitEthernet then the slot/port information.
For a 10-Gigabit Ethernet interface, enter the keyword TenGigabitEthernet then the slot/port information.
4. Ensure that the port channel is active.
INTERFACE PORT-CHANNEL mode
no shutdown
5. To configure the VLT interconnect, repeat Steps 14 on the VLT peer switch.
6. Enter VLT-domain configuration mode for a specified VLT domain.
CONFIGURATION mode
vlt domain domain-id
The range of domain IDs is from 1 to 1000.
7. Enter the port-channel number that acts as the interconnect trunk.
VLT DOMAIN CONFIGURATION mode
peer-link port-channel id-number
8. (Optional) To configure a VLT LAG, enter the VLAN ID number of the VLAN where the VLT forwards packets received on
the VLTi from an adjacent peer that is down.
VLT DOMAIN CONFIGURATION mode
peer-link port-channel id-number peer-down-vlan vlan interface number
Virtual Link Trunking (VLT)
955