CTR 8500-8300 3 - 1 VLAN Config November2015 260-668256-008
CTR 8500-8300 3 - 1 VLAN Config November2015 260-668256-008
VLAN
Version 3.1
260-668256-008
Copyright & Terms of Use
November 2015
This documentation incorporates features and functions provided with CTR 8540 and CTR 8300 for software
release 3.1
Copyright © 2015 by Aviat Networks, Inc.
All rights reserved. No part of this publication may be reproduced, transmitted, transcribed, stored in a
retrieval system, or translated into any language or computer language, in any form or by any means, elec-
tronic, magnetic, optical, chemical, manual or otherwise, without the prior written permission of Aviat Net-
works Inc. To request permission, contact [email protected].
Warranty
Aviat Networks makes no representation or warranties with respect to the contents hereof and specifically dis-
claims any implied warranties or merchantability or fitness for any particular purpose. Further, Aviat Net-
works reserves the right to revise this publication and to make changes from time to time in the content
hereof without obligation of Aviat Networks to notify any person of such revision or changes.
Safety Recommendations
The following safety recommendations must be considered to avoid injuries to persons and/or damage to the
equipment:
1. Installation and Service Personnel: Installation and service must be carried out by authorized personnel who
have the technical training and experience necessary to be aware of any hazardous operations during install-
ation and service, and of measures to avoid any danger to themselves, to any other personnel, and to the equip-
ment.
2. Access to the Equipment: Access to the equipment in use must be restricted to service personnel only.
3. Safety Norms: Recommended safety norms are detailed in the Health and Safety sections of this guide.
Local safety regulations must be used if mandatory. Safety instructions in this guide should be used in addi-
tion to the local safety regulations. In the case of conflict between safety instructions stated in this guide and
those indicated in local regulations, mandatory local norms will prevail. Should local regulations not be man-
datory, then the safety norms in this guide will prevail.
4. Service Personnel Skill: Service personnel must have received adequate technical training on tele-
communications and in particular on the equipment this guide refers to.
Trademarks
All trademarks are the property of their respective owners.
End User License Agreement and Open Source
By using this product you agree to the terms of the CTR 8540 End User License Agreement; to view this, log
into a CTR 8540 or CTR 8300 using the CLI command window and enter the CLI command “show EULA”.
The CTR 8540 and CTR 8300 use free and open source software components, which can be viewed by using
the CLI command “show system acknowledgments”. This command also details the licenses associated with
each component and describes the methods available to acquire the open source software.
II AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
WEEE Directive
In accordance with the WEEE Directive (2012/19/EU), CTR 8540, CTR 8312, and CTR 8311 are marked with the
following symbol:
This symbol indicates that this equipment should be collected separately for the purposes of recovery and/or
recycling.
For information about collection and recycling of Aviat Networks equipment please contact your local Aviat
Networks sales office. If you purchased your product via a distributor please contact the distributor for inform-
ation regarding collection and recovery/recycling.
More information on the WEEE Directive is available at our website:
http://www.aviatnetworks.com/products/compliance/weee/.
(WEEE is the acronym for Waste Electrical and Electronic Equipment)
RoHS Directive
CTR 8540, CTR 8312, and CTR 8311 meet the requirements of ROHS directive 2011/65/EU.
IV AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
The CTR 8540, CTR 8312, or CTR 8311 with an ODU 600, ODU 600sp, or ODU 300hp radio is classified under the
R&TTE Directive 99/5/EC as a class 2.8 radio (microwave fixed link) product.
Point-to-point radio relay equipment is intended to be used for:
- Interconnecting private and public networks.
- Interconnecting mobile base stations back to the PSTN point of presence (POP).
For details of where the equipment is intended to be used, see the country matrix below.
- AVIAT NETWORKS intends to market this equipment where a cross (X) is shown in the table below.
- The information contained in this table has been gathered from the relevant government authorities and
relates only to European countries participating in the R&TTE directive.
It s h ou l d b e n oted th at a l i c en s e to op er ate th i s eq u i p men t i s l i kel y to b e n ec es s ar y, an d
th e ap p r op r i ate r eg u l ator y ad mi n i s tr ati on s h ou l d b e c on tac ted .
VI AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Table of Contents
Copyright & Terms of Use i
Aviat Networks Technical & Sales Support ii
Product Compliance Notes iii
International Use of 5.8GHz iii
WEEE Directive iii
RoHS Directive iii
Declaration of Conformity, R&TTE Directive, 1999/5/EC iii
Table of Contents vii
X AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Acronyms
This table lists acronyms used in this document.
Table 1-1. Acronyms
Acronym Explanation
BPDU Bridge Protocol Data Unit
ACL Access Control list
CBS Controlled Burst Size
CEP Customer Edge Port
CIR Controlled Information Rate
CNP Customer Network Port
COS Class of Service
CVID Customer VLAN Id
C-VLAN Customer VLAN
DEI Drop Eligible Indicator
DSCP Differentiated Services Code Point
EBS Excess Burst Size
EIR Excess Information Rate
E-LAN Multipoint to Multipoint connectivity
E-LINE Point to Point connectivity
FID Filtering Identifier
GARP Generic Attribute Registration Protocol
GMRP GARP Multicast Registration Protocol
References
l CTR 8500/8300 CLI Reference Guide.
Document Conventions
Table 1-2. Document Conventions
Convention Usage
Code CLI commands
2 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
General Configurations
The following table provides the access and exit methods to various general configuration
modes.
Table 1-3. General Configurations
Command Mode Access Method Prompt Exit method
User EXEC This is the initial mode to aos> The logout method is used.
start a session.
Privileged EXEC Use the enable com- aos# Use the command disable
mand to enter the Priv- to return from the Privileged
ileged EXEC mode. EXEC mode to User EXEC
mode, the disable command
is used.
Global Configuration Enter Privileged EXEC aos(config)# Use the command exit to
mode and use the com- log out of the Global Con-
mand configure ter- figuration Mode, and the
minal to enter the command end to log out of
Global Configuration the Privileged EXEC mode.
Mode.
Interface Con- In Global Configuration aos(config-if) Use the command exit to
figuration Mode, use the command # log out of the Global Con-
command interface figuration Mode, and the
<interface- command end to log out of
type><interface- the Privileged EXEC mode.
id>to enter the Inter-
face Configuration Mode.
VLAN Configuration The Global Configuration aos(config- Use the command exit to
Mode command VLAN vlan)# log out of the Global Con-
<VLANid>, is used to figuration Mode, and the
enter the VLAN con- command end to log out of
figuration mode the Privileged EXEC mode.
Aviat Networks VLAN logically segments the shared media LAN, forming virtual workgroups. It
redefines and optimizes the basic Transparent Bridging functionality such as learning, for-
warding, filtering and flooding.
4 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Configuring Guidelines
Follow these configuration guidelines:
l VLAN is enabled in the switch by default. GVRP and GMRP must be disabled prior to
disabling VLAN.
l The default VLAN - VLAN 1- cannot be deleted in the switch.
l The default L3 interface - interface VLAN 1 - can be deleted in the switch.
l If port GVRP state is disabled, but global GVRP status is enabled, then GVRP is
disabled on the current port. GVRP packets received on that port will be discarded
and GVRP registrations from other ports will not be propagated on this port.
l GARP cannot be started if VLAN is shutdown.
l GARP cannot be shutdown, if GVRP and/or GMRP are enabled.
l Mapping of a forwarding database identifier (FID) to VLANs is successful only when
the VLAN learning mode is hybrid.
l To configure a static unicast/multicast MAC address in the forwarding database, the
VLAN must have been configured and member ports must have been configured for
the specified VLAN.
l Bridge-mode status cannot be set to provider mode, if the protocol/MAC based VLAN
is enabled.
l You cannot configure a port as trunk if the port is an untagged member of a VLAN.
l Leave Timer must be two times greater than Join Timer, and Leaveall Timer must be
greater than Leave Timer. For GARP timers: Leave Timer must be two times greater
than Join Timer, and Leaveall Timer must be greater than Leave Timer.
l The following require provider base bridge mode, which is not supported in this
release:
l To enable Dot1q-tunneling status, Bridge Mode must be set to
'provider'.
l To enable the Dot1q-tunnel status on the port, the port mode must be
set with the type 'access'.
l To enable Dot1q tunneling on a port 802.1X (PNAC), port control
must be force-authorized.
l BPDU tunneling on the port cannot be set; if Dot1q tunnel status is
disabled.
Default Configurations
Table 2-1. Default Configurations
Feature Default Setting
VLAN Module status Enable
Default VLAN Id configured in the 1
switch
6 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
I f there are Provi der Bri dges, the defaul t confi gurati ons and confi gurati on
gui del i nes are provi ded i n the rel evant subsecti on of the documentati on.
8 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
aos# sh VLAN
Switch default
VLAN database
-------------
VLAN ID : 1
Member Ports : Gi0/1, Gi0/2, Gi0/3, Gi0/4,
Gi0/5, Gi0/6
Gi0/7, Gi0/8, Gi0/9, Gi0/10,
Gi0/11, Gi0/12, Prot1
10 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Enabling VLANs
A VLAN can be made active in two ways:
l By adding a member port to a VLAN (refer section Configuring Static VLAN) or
l By using the VLAN active command.
Procedure
1. Enter the Global Configuration Mode.
aos#configure terminal
2. Configure VLAN 2 in the switch.
aos(config)# VLAN 2
3. Execute the following command to enable VLAN.
aos(config-VLAN)# VLAN active
I f the VLAN acti ve command i s used wi thout confi guri ng the member
ports, then VLAN wi l l have zero member ports.
Procedure
12 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the Global Configuration Mode.
aos#configure terminal
2. Configure VLAN 2 in the switch.
aos(config)# VLAN 2
3. Configure a static VLAN entry with the required type of ports.
aos(config-VLAN)#ports gigabitethernet 0/2
untagged gigabitethernet 0/2
4. Exit from the Config-VLAN mode.
aos(config-VLAN)#exit
5. Configure static Multicast MAC address in the forwarding database.
aos(config)# mac-address-table static multicast
01:02:03:04:05:06 VLAN 2 recv-port
gigabitethernet 0/1 interface gigabitethernet
0/2
6. View the configuration details by executing the following show command.
aos# sh mac-address table static multicast
Static Multicast Table
----------------------
VLAN : 2
Mac Address : 01:02:03:04:05:06
Receive Port : Gi0/1
Member Ports : Gi0/2
Forbidden Ports :
Status : Permanent
------------------------------------------------
Total Mac Addresses displayed: 1
14 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Fid : 2
VLANs : 2,
----------------------------
Fid : 3
VLANs : 3,
----------------------------
Fid : 4
VLANs : 4,
----------------------------
Fid : 5
VLANs : 5,
----------------------------
Fid : 6
VLANs : 6,
----------------------------
--------
--------
--------
--------
----------------------------
Fid : 4094
VLANs : 4094
----------------------------
6. Execute the following command to configure the learning type.
aos(config)# VLAN learning mode svl
7. Exit from the configuration mode.
aos(config)# end
Procedure
1. Execute the following commands to shutdown GARP and spanning tree.
aos(config)# set gvrp disable
aos(config)# set gmrp disable
aos(config)# shutdown garp
aos(config)# shutdown spanning-tree
2. Configure the bridge mode of the Switch.
aos(config)# bridge-mode provider
3. Enable GARP and spanning tree.
aos(config)# no shutdown garp
aos(config)# set gvrp enable
aos(config)# set gmrp enable
aos(config)# spanning-tree mode mst
aos# show VLAN device info
VLAN device configurations
--------------------------
VLAN Status : Enabled
VLAN Oper status : Enabled
Gvrp status : Enabled
Gmrp status : Enabled
Gvrp Oper status : Enabled
Gmrp Oper status : Enabled
Mac-VLAN Status : Disabled
Protocol-VLAN Status : Enabled
Bridge Mode : Provider
Bridge
Traffic Classes : Enabled
VLAN Operational Learning Mode : IVL
Version number : 1
Max VLAN id : 4094
Max supported VLANs : 1024
16 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Execute the following commands to enable tunneling of STP BPDUs.
2. Enter the Global Configuration Mode.
aos# configure terminal
3. Configure the VLAN port mode.
aos(config-if)# switchport mode access
4. Enable Dot1q-tunneling on the specified interface.
aos(config-if)# switchport mode Dot1q-tunnel
5. Disable spanning tree on the specified interface.
aos(config-if)#spanning-tree disable
6. Enable tunneling of STP BPDUs on the interface.
aos(config-if)# l2protocol-tunnel stp
7. View the configuration details by executing the following show command.
aos# show l2protocol-tunnel
COS for Encapsulated STP Packet : 7
Port Protocol Encapsulation Counter
Decapsulation Counter
---- -------- --------------------- -----------
----------
Gi0/1 stp 0 0
Gi0/1 gvrp 0 0
18 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Execute the following commands to configure the maximum number of traffic
classes supported on a port.
2. Enter the Global Configuration Mode.
aos# configure terminal
3. Enter the Interface Configuration Mode.
aos(config)# interface gigabitethernet 0/2
4. Configure the maximum number of traffic classes that can be supported on a port.
aos(config-if)# VLAN max-traffic-class 4
5. View the configuration information by executing the following show command.
aos# show VLAN traffic-classes port
gigabitethernet 0/2
Traffic Class table
---------------------
Port Priority Traffic Class
----- --------- -------------
Gi0/2 0 1
Gi0/2 1 0
Gi0/2 2 0
Gi0/2 3 1
Gi0/2 4 2
Gi0/2 5 2
Gi0/2 6 3
Gi0/2 7 3
Procedure
1. Execute the following commands to map a priority to a traffic class.
2. Enter the Global Configuration Mode.
aos# configure terminal
3. Enter the Interface Configuration Mode.
aos(config)# interface gigabitethernet 0/2
4. Map the priority to traffic class.
aos(config-if)# VLAN map-priority 7 traffic-
class 1
5. View the configuration information by executing the following show command.
aos# show VLAN traffic-classes port
gigabitethernet 0/2
Traffic Class table
---------------------
Port Priority Traffic Class
----- --------- -------------
Gi0/2 0 1
Gi0/2 1 0
Gi0/2 2 0
Gi0/2 3 1
Gi0/2 4 2
Gi0/2 5 2
Gi0/2 6 3
Gi0/2 7 1
20 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Execute the following commands to configure the acceptable frame type for the
port.
2. Enter the Global Configuration Mode.
aos# configure terminal
3. Enter the Interface Configuration Mode and configure the frame type of the port as
“tagged” for that interface.
aos(config)# interface gigabitethernet 0/2
aos(config-if)# switchport acceptable-frame-type
tagged
4. View the configuration information by executing the following show command.
aos# show VLAN port config port gigabitethernet
0/2
VLAN Port configuration table
-------------------------------
Port Gi0/2
Port VLAN ID : 1
Port Acceptable Frame Type : Admit Only
VLAN Tagged
Port Ingress Filtering : Disabled
Port Mode : Hybrid
Port Gvrp Status : Enabled
Port Gmrp Status : Enabled
Port Gvrp Failed Registrations : 0
Gvrp last pdu origin :
00:00:00:00:00:00
Port Restricted VLAN Registration : Disabled
Port Restricted Group Registration : Disabled
Mac Based Support : Disabled
Port-and-Protocol Based Support : Enabled
Default Priority : 0
--------------------------------------------------
--
When set to “tagged”, the devi ce wi l l di scard untagged and pri ori ty tagged
frames recei ved on the port and wi l l process onl y the VLAN tagged frames.
Procedure
1. Execute the following commands to enable ingress filtering on a port.
2. Enter the Global Configuration Mode.
aos# configure terminal
3. Enter the Interface Configuration Mode and enable ingress filtering for that inter-
face.
aos(config)# interface gigabitethernet 0/1
aos(config-if)# switchport ingress-filter
4. View the configuration details by executing the following show command.
aos# show VLAN port config port gigabitethernet
0/1
VLAN Port configuration table
-------------------------------
Port Gi0/1
Port VLAN ID : 1
Port Acceptable Frame Type : Admit All
Port Ingress Filtering : Enabled
Port Mode : Hybrid
Port Gvrp Status : Enabled
Port Gmrp Status : Enabled
Port Gvrp Failed Registrations : 0
Gvrp last pdu origin :
00:00:00:00:00:00
Port Restricted VLAN Registration : Disabled
Port Restricted Group Registration : Disabled
Mac Based Support : Disabled
Port-and-Protocol Based Support : Enabled
Default Priority : 0
--------------------------------------------------
---
22 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Execute the following commands to change filtering utility criteria on a port.
2. Enter the Global Configuration Mode.
aos# configure terminal
3. Enter the Interface Configuration Mode and change filtering utility criteria for that
interface.
aos(config)# interface gigabitethernet 0/1
aos(config-if)# switchport filtering-utility-
criteria enhanced
4. View the configuration details by executing the following show command.
aos# show vlan port config port gigabitethernet
0/1
Vlan Port configuration table
-------------------------------
Port Gi0/1
Port Vlan ID : 1
Port Acceptable Frame Type : Admit All
Port Ingress Filtering : Disabled
Port Mode : Hybrid
Port Gvrp Status : Enabled
Port Gmrp Status : Enabled
Port Gvrp Failed Registrations : 0
Gvrp last pdu origin :
00:00:00:00:00:00
Port Restricted Vlan Registration : Disabled
Port Restricted Group Registration : Disabled
Mac Based Support : Disabled
Port-and-Protocol Based Support : Enabled
Default Priority : 0
Tunnel Status : Disabled
Dot1x Protocol Tunnel Status : Peer
LACP Protocol Tunnel Status : Peer
Spanning Tree Tunnel Status : Peer
GVRP Protocol Tunnel Status : Peer
GMRP Protocol Tunnel Status : Peer
IGMP Protocol Tunnel Status : Peer
Filtering Utility Criteria : Enhanced
Procedure
1. Execute the following commands in switch A to configure static multicast MAC
Address.
2. Enter the Global Configuration Mode.
aos#configure terminal
3. Configure wildcard entry with the required egress ports.
aos(config)# wildcard mac-address
00:01:02:03:04:05 interface gigabitethernet 0/1
4. View the configured WildCard entry by executing the following show command.
aos# show wildcard mac-address 00:01:02:03:04:05
Wild Card Entries:
------------------
Mac Address Ports
----------- -------------------
00:01:02:03:04:05 Gi0/1
24 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
I n thi s document, the term Dot1ad Bri dges refers to Provi der Edge Bri dge
and Provi der Core Bri dge. The term Q-i n-Q Bri dges refers to Provi der
Bri dge.
IP_ADDRESS =10.0.0.1
IP_MASK =255.0.0.0
INTERFACE =Slot0/1
MGMT_PORT =NO
RM_INTERFACE =NONE
PIM_MODE =2
BRIDGE_MODE =3
SNOOP_FORWARD_MODE =2
SAVE_FLAG =1
RES_FLAG =0
RES_OPTION =1
RES_FILE_NAME =iss.conf
CONSOLE_CLI =1
26 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Spanning Tree must be in shut down state.
2. GARP Module must be in shut down state. GVRP and GMRP protocols must be in
disabled state.
3. Ethernet CFM has to be stopped. Use these commands to stop Ethernet CFM:
configure terminal
!
shutdown spanning-tree
set gvrp disable
set gmrp disable
shutdown garp
no ethernet cfm start
bridge-mode provider-edge
!
end
4. After changing the bridge mode, the above modules (STP, GARP) are started.
5. Enter the Global Configuration mode.
aos#configure terminal
6. Shutdown Spanning tree.
aos(config)# shutdown spanning-tree
7. Disable the GVRP module.
aos(config)# set gvrp disable
8. Disable the GMRP module.
aos(config)# set gmrp disable
9. Shutdown the GARP module.
aos(config)# shutdown garp
10. Change the bridge mode to provider-core bridge.
aos(config)# bridge-mode provider-core
aos(config)# end
11. View the current bridge mode of the switch by executing the following command
aos# show vlan device info
Vlan device configurations
--------------------------
Vlan Status : Enabled
Vlan Oper status : Enabled
28 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the Global Configuration mode.
aos#configure terminal
2. Enter the interface configuration mode.
aos(config)# interface gigabitethernet 0/1
3. Configure the bridge port type for port 1 as customerNetworkPort (Port-based).
aos(config-if)#bridge port-type
customerNetworkPort port-based
aos(config-if)#end
4. View the port type configuration for port 1 by executing the following command.
aos#show provider-bridge port config port
gigabitethernet 0/1
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/1
Port Type : Customer
Network Port(Port-Based)
Dot1x Protocol Tunnel Status : Peer
LACP Protocol Tunnel Status : Peer
Spanning Tree Tunnel Status : Tunnel
GVRP Protocol Tunnel Status : Tunnel
GMRP Protocol Tunnel Status : Tunnel
IGMP Protocol Tunnel Status : Tunnel
Service Vlan Classification : PVID
30 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the Global Configuration mode.
aos#configure terminal
2. Enter the interface configuration mode.
aos(config)# interface gigabitethernet 0/2
3. Configure the bridge port type for port 2 as customer Edge Port.
aos(config-if)# bridge port-type
customerEdgePort
4. Configure the CVID Registration table to create a Provider Edge Port for service
VLAN 2.
aos(config-if)#switchport customer-vlan 5
service-vlan 2 untagged-pep false untagged-cep
true
aos(config-if)#end
5. View the CVID Registration table by executing the following command.
aos# sh service vlan cvlan
Switch - default
Service Vlan Classification
-------------------------------
32 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Prerequisites
A Provider Edge Port is made operationally up only if the following conditions are met:
l Customer Edge Port of the corresponding C-VLAN component is operationally
up.
l S-VLAN corresponding to this Provider Edge Port is active.
Procedure
1. Execute the following commands
2. Enter the Global Configuration mode.
aos#configure terminal
3. Enter the switch configuration mode.
aos(config)# switch default
4. Enter the VLAN 2 configuration mode.
aos(config-switch)# vlan 2
5. Configure the VLAN 2 as active.
aos(config-switch-vlan)# vlan active
aos(config-switch-vlan)#end
6. View the operational status of provider edge port by executing the following com-
mand.
aos# show provider-bridge pep configuration
Provider Edge Port configuration
-------------------------------------
Switch - default
Port Gi0/2
Service VLAN-ID : 2
Port VLAN-ID : 5
Acceptable Frame Type : Admit all
Ingress Filtering : Disabled
Default Priority : 0
COS Preservation : Disabled
Oper status : Up
--------------------------------------------------
--
Procedure
1. Execute the following commands.
2. Enter the Global Configuration mode
aos#configure terminal
3. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/2
4. Configure the PVID for Provider Edge Port as 10
aos(config-if)# service-vlan 2 pvid 10
5. Configure the default user priority for Provider Edge Port as 5
34 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
36 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the global configuration mode
aos# config terminal
2. Enter the switch configuration mode
aos(config)# switch default
3. Enter the VLAN 2 configuration mode
aos(config-switch)# vlan 2
4. Configure the Member ports for the Service VLAN 2. Note that this must be a
VLAN without an IP address.
aos(config-switch-vlan)# ports gigabitethernet
0/1,0/2 untagged gigabitethernet 0/2
aos(config-switch-vlan)# end
5. View the service VLAN by executing the following command
aos#sh vlan brief
aos# sh vlan id 2
Switch default
Vlan database
-------------
Vlan ID : 1
Member Ports : None
Untagged Ports : None
Forbidden Ports : None
Name :
Status : Permanent
Egress Ethertype: 0x88a8
ServiceType : E-LAN
MacLearning Status : Disabled
MacLearning Oper-Status: Disabled
--------------------------------------------------
--
Vlan ID : 3
Member Ports : Gi0/1, Gi0/2
Untagged Ports : Gi0/2
Forbidden Ports : None
Name :
Status : Permanent
Egress Ethertype: 0x88a8
38 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
ServiceType : E-LAN
MacLearning Status : Disabled
MacLearning Oper-Status: Enabled
A Provi der Network Port (PNP) i s not confi gured as untagged port of a S-
VLAN.
S-VLAN Component Spanning Tree is a Multiple Instance Spanning Tree or a Rapid Spanning
Tree.
A S-VLAN Spanning Tree is viewed as:
aos# show spanning-tree
Switch default
Root Id Priority 32768
Address 00:01:02:03:04:01
Cost 0
Port 0 [0]
This bridge is the root
Max age 20 Sec, forward delay 15
Sec
MST00
40 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
42 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
6P2D : 0 0 1 1 3 2 3 2 5 4 5 4
6 6 7 7
5P3D : 1 0 1 0 3 2 3 2 5 4 5 4
6 6 7 7
Port Gi0/2
-----------
DropEligible: 0 0DE 1 1DE 2 2DE 3 3DE 4 4DE 5 5DE
6 6DE 7 7DE
Priority :
--------------------------------------------------
----
8POD : 0 0 1 1 2 2 3 3 4 4 5 5
6 6 7 7
7P1D : 0 0 1 1 2 2 3 3 5 4 5 4
6 6 7 7
6P2D : 0 0 1 1 3 2 3 2 5 4 5 4
6 6 7 7
5P3D : 1 0 1 0 3 2 3 2 5 4 5 4
6 6 7 7
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
3. Configure the PCP Decoding table by executing the following command
aos(config-if)# pcp-decoding 8POD pcp 7 priority
6 drop-eligible false
aos(config-if)# end
4. View the PCP decoding table by executing the following command
aos# show provider-bridge pcp decoding
Pcp Decoding Table
-------------------------------------
Switch - default
Port Gi0/1
-----------
PCP : 0 1 2 3 4 5 6 7
----------------------------------------------
8POD : 0 1 2 3 4 5 1 2 2 3 3
4 4 6 5 6 6 7 7
7P1D : 0 0 1 1 2 2 3 3 5 4 5 4 6
6 7 7
6P2D : 0 0 1 1 3 2 3 2 5 4 5 4
6 6 7 7
5P3D : 1 0 1 0 3 2 3 2 5 4 5 4
6 6 7 7x 7
5P3D : 0DE 0 2DE 2 4DE 4 6 7
Port Gi0/2
-----------
PCP : 0 1 2 3 4 5 6 7
----------------------------------------------
8POD : 0 1 2 3 4 5 6 7
7P1D : 0 1 2 3 4DE 4 6 7
6P2D : 0 1 2DE 2 4DE 4 6 7
5P3D : 0DE 0 2DE 2 4DE 4 6 7
44 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
-----------------------------------
Switch - default
Port : Gi0/2 Service VLAN-ID : 2
Receive Priority Regenerated Priority
----------------- ---------------------
0 0
1 1
2 2
3 3
4 4
5 2
6 6
7 7
Procedure
When Use DEI is set to true on a port:
1. Packets sent with drop_eligible true has USE_DEI bit in the VLANVLAN tag set.
2. Packets received on this port with USER_DEI filed in the VLANVLAN tag set are
considered as packets with drop_eligible true.
3. Default value of Use DEI is false.
4. To configure Use DEI, execute the following commands
5. Enter the global configuration mode
aos# configure terminal
6. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
7. Configure the use-dei variable for the port 1 as `true` by executing the following
command
aos(config-if)# switchport provider-bridge use-
dei true
aos(config-if)#end
8. View the provider bridge port configuration by executing the following command
aos# show provider-bridge port config port
gigabitethernet 0/1
Switch - default
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/1
46 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
3. Configure the VLAN Translation table by executing the following command
aos(config-if)# switchport service vlan mapping
20 2
aos(config-if)#end
4. View the VID Translation table by executing the following command
aos# show service vlan mapping
Switch - default
Service Vlan Mapping
-------------------------
Port Gi0/1
-----------
Local service vlan Relay service vlan
20 2
5. VLAN Translation table is enabled or disabled on a per port basis. By default, it is
enabled on PNP and CNP (S-Tagged).
6. Enter the global configuration mode
aos# configure terminal
7. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
8. Disabling the VID Translation table on port 1
aos(config-if)# set switchport service vlan swap
disable
aos(config-if)#end
9. View the VID Translation status for the port by executing the following command
aos# show provider-bridge port config port
gigabitethernet 0/1
48 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Switch - default
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/1
Port Type : Provider
Network Port
Service Vlan Classification : PVID
Ingress EtherType : 0x88a8
Egress EtherType : 0x88a8
EtherType Swap Status : Disable
Service Vlan Translation Status : Disable
Require Drop Encoding : False
Use_Dei : False
PCP Selection Row : 8P0D
Unicast Mac Learning Status : Enable
Unicast Mac Learning Limit : 150
50 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
3. Configure the STP protocol tunnel status for Port 1 as `peer`
aos(config-if)#l2protocol-peer stp
4. Configure the GVRP protocol tunnel status for Port 1 as `tunnel`
aos(config-if)#l2protocol-tunnel gvrp
5. Configure the GMRP protocol tunnel status for Port 1 as `discard`
aos(config-if)#l2protocol-discard gmrp
aos(config-if)#end
6. View the protocol tunnel status by executing the following command
aos# sh provider-bridge port config port gi 0/2
Switch - default
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/2
52 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the switch configuration mode
aos(config)# switch default
3. Configure the GMRP protocol tunnel Mac address as 01:22:33:44:55:66
aos(config-switch)# gmrp-tunnel-address
01:22:33:44:55:66
aos(config-switch)#end
4. View the protocol tunnel mac address by executing the following command
aos# show l2protocol tunnel-mac-address
VLAN tunnel MAC address
--------------------------
Switch - default
--------------------------
Dot1x tunnel MAC address : 01:00:0c:cd:cd:d3
LACP tunnel MAC address : 01:00:0c:cd:cd:d4
STP tunnel MAC address : 01:00:0c:cd:cd:d0
GVRP tunnel MAC address : 01:00:0c:cd:cd:d1
GMRP tunnel MAC address : 01:22:33:44:55:66
54 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
3. Configure the unicast mac learning status as `disable` Note that you can only set
unicast-mac learning on a VLAN, not on an interface.
aos(config-if)# switchport unicast-mac learning
disable
4. Configure the unicast mac learning limit as `40`
aos(config-if)# switchport unicast-mac learning
limit 40
aos(config-if)#end
5. View the unicast mac learning status and limit by executing the following com-
mand
aos# show provider-bridge port config port
gigabitethernet 0/1
Switch - default
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/1
Port Type : Provider Network
Port
Service Vlan Classification : PVID
Ingress EtherType : 0x88a8
Egress EtherType : 0x88a8
EtherType Swap Status : Disable
Service Vlan Translation Status: Disable
Require Drop Encoding : False
Use_Dei : False
PCP Selection Row : 8P0D
Unicast Mac Learning Status : Disable
Unicast Mac Learning Limit : 40
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the switch configuration mode
aos(config)#switch default
3. Configure the multicast mac limit as 4
aos(config-switch)# multicast-mac limit 4
aos(config-switch)# end
56 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
3. Configure the ether type swap table by executing the following command
aos(config-if)# switchport Dot1q ethertype
mapping 0x88a1 0x88a8
aos(config-if)# end
4. View the ether type swap table
aos# show ethertype mapping
Switch - default
EtherType Mapping
-----------------------
Port Gi0/1
-----------
Local EtherType Relay EtherType
0x88a1 0x88a8
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
3. Configure the bridge port type as Customer Edge Port
aos(config-if)# bridge port-type
CustomerEdgePort
4. Configure the Customer VLAN PVID as 10 for Port 1
aos(config-if)# switchport dot1q customer vlan
10
5. Configure the Customer VLAN classification status as `disable`
aaos(config-if)# switchport dot1q customer vlan
disable
% Customer VLAN can not be di sabl ed on a customerEdgePort.
6. View the provider bridge port configurations by executing the following command
aos# show provider-bridge port config port
gigabitethernet 0/1
Switch - default
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/1
Port Type : Customer Edge
Port
Dot1x Protocol Tunnel Status : Peer
LACP Protocol Tunnel Status : Peer
Spanning Tree Tunnel Status : Peer
GVRP Protocol Tunnel Status : Discard
GMRP Protocol Tunnel Status : Discard
IGMP Protocol Tunnel Status : Discard
Service Vlan Classification : Customer Vlan
Ingress EtherType : 0x88a8
Egress EtherType : 0x8100
EtherType Swap Status : Disable
Service Vlan Translation Status : Disable
58 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Configuring S-VLAN
A S-VLAN is configured to provide two different service types, E-LINE and E-LAN.
E-LINE is defined as “point-to-point” service offered to a customer. E-LAN is defined as “mul-
tipoint-multipoint” service offered to a customer.
By default, the S-VLAN has a service type as “E-LAN”. If a service type is configured as ”E-
LINE”, then the VLAN is not allowed to have more than two member ports.
Procedure
1. Enter the global configuration mode
aos# configure terminal
2. Enter the switch configuration mode
aos(config)# switch default
3. Enter the VLAN 2 configuration mode
aos(config-switch)# vlan 2
4. Configure the service type for the VLAN 2 as `E-LINE`
aos(config-switch-vlan)# service-type e-line
aos(config-switch-vlan)# end
5. View the service type of the S-VLAN by executing the following command
aos# sh vlan
Switch default
Vlan database
-------------
Vlan ID : 1
Member Ports : None
Untagged Ports : None
Forbidden Ports : None
Name :
Status : Permanent
ServiceType : E-LAN
MacLearning Status : Enabled
--------------------------------------------------
--
Vlan ID : 2
Member Ports : Gi0/1, Gi0/2
Untagged Ports : None
Forbidden Ports : None
Name :
Status : Permanent
ServiceType : E-LINE
60 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the global configuration mode
aos#configure terminal
2. Enter the interface configuration mode
aos(config)#interface gigabitethernet 0/1
3. Configure the ingress Ether type for the Port 1 as 0x8899
aos# sh vlan port config port gi 0/2
Switch default
VLAN Port configuration table
-----------------------------------------
Port Gi0/2
Bridge Port Type : Provider Network Port
Port Vlan ID : 1
Port Acceptable Frame Type : Admit All
Port Mac Learning Status : Enabled
Port Ingress Filtering : Disabled
Port Mode : Hybrid
Port Gvrp Status : Disabled
Port Gmrp Status : Disabled
Port Gvrp Failed Registrations : 2
Gvrp last pdu origin : 00:00:00:00:00:00
Port Restricted Vlan Registration : Disabled
Port Restricted Group Registration : Unknown
Mac Based Support : Disabled
Subnet Based Support : Disabled
Port-and-Protocol Based Support : Enabled
Default Priority : 0
Filtering Utility Criteria : Default
62 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Procedure
1. Enter the global configuration mode
aos#configure terminal
2. Enter the interface configuration mode
aos(config)# interface gigabitethernet 0/1
3. Configure the bridge port type for port 1 as Proprietary Customer Edge Port
aos(config-if)# bridge port-type
propCustomerEdgeport
Configure the Service VLAN classification method
as `CvlanSrcMac`
aos(config-if)# switchport service vlan classify
VLAN cVLANSrcMac
4. Configure the CVLAN Source Mac address classification table by executing the fol-
lowing command
aos(config-if)# switchport service vlan 2
customer vlan 5 SrcMac 00:11:22:33:22:11
aos(config-if)#end
5. View the provider edge port configuration by executing the following command
aos# show provider-bridge port config port
gigabitethernet 0/1
Switch - default
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/1
Port Type : Prop
Customer Edge Port
Dot1x Protocol Tunnel Status : Peer
LACP Protocol Tunnel Status : Peer
Spanning Tree Tunnel Status : Tunnel
GVRP Protocol Tunnel Status : Tunnel
GMRP Protocol Tunnel Status : Tunnel
IGMP Protocol Tunnel Status : Tunnel
64 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
68 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Configuration Guidelines
l Configuration of static unicast entry.
l Configuration of VLAN.
Default Configurations
1. Execute the following commands in Switch1:
At Switch1:
2. Enter into the Global configuration mode
aos# configure terminal
3. Configure VLAN 2 in the switch
aos(config)# vlan 2
4. Configure the static VLAN entry with the required ports
aos(config-vlan)# ports gigabitethernet 0/1-3
5. Exit from VLAN configuration mode
aos(config-vlan)# exit
6. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
7. Make the interface up
aos(config-if)# no shutdown
8. Exit from Interface configuration mode
aos(config-if)# exit
9. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/2
10. Make the interface up
aos(config-if)# no shutdown
11. Exit from Interface configuration mode
aos(config-if)# exit
12. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/3
13. Make the interface up
aos(config-if)# no shutdown
14. Exit from Interface configuration mode
aos(config-if)# exit
15. Configure the static unicast entry
aos(config)# mac-address-table static unicast
00:11:22:33:44:0b vlan 2 recv-port
gigabitethernet 0/1 interface gigabitethernet
0/2
70 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Configuration Guidelines
l Configuration of static unicast entry.
l Configuration of forward-unregistered entry.
l Configuration of VLAN.
Default Configurations
l Configure the Forward-Unregistered static ports as none.
l Configure the Forward-All static ports as none.
Procedure
1. Execute the following commands in Switch1:
At Switch1:
2. Enter into the Global configuration mode
aos# configure terminal
3. Configure VLAN 2 in the switch
aos(config)# vlan 2
4. Configure the static VLAN entry with the required ports
aos(config-vlan)# ports gigabitethernet 0/1-3
5. Exit from VLAN configuration mode
aos(config-vlan)# exit
6. Enter into Interface configuration mode
aos(config)# interface gigabitethernet 0/1
7. Make the interface up
aos(config-if)# no shutdown
8. Exit from Interface configuration mode
aos(config-if)# exit
9. Enter into Interface configuration mode
aos(config)# interface gigabitethernet 0/2
10. Make the interface up
aos(config-if)# no shutdown
11. Exit from Interface configuration mode
aos(config-if)# exit
12. Enter into Interface configuration mode
aos(config)# interface gigabitethernet 0/3
13. Make the interface up
aos(config-if)# no shutdown
14. Exit from Interface configuration mode
aos(config-if)# exit
15. Configure the static multicast entry
aos(config)# mac-address-table static multicast
01:02:02:02:02:02 vlan 2 recv-port
gigabitethernet 0/1 interface gigabitethernet
0/3
16. Exit from the Global configuration mode
aos(config)# exit
----
17. View the static multicast information by executing the following command:
aos# show mac-address-table static multicast
Static Multicast Table
----------------------
Vlan : 2
Mac Address : 01:02:02:02:02:02
Receive Port : Gi0/1
Member Ports : Gi0/3
Status : Permanent
------------------------------------------------
Total Mac Addresses displayed: 1
18. View the created VLAN.
aos# show vlan id 2
Vlan database
-------------------
Vlan ID : 2
Member Ports : Gi0/1, Gi0/2, Gi0/3
Untagged Ports : None
Forbidden Ports : None
Name :
Status : Permanent
--------------------------------------------------
--
19. After spanning topology settlement, send the tagged (VLAN 2) multicast data
packet to Host C from Host A.
72 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Classifying VLAN
VLAN is classified as follows:
1. PVID Based Classification
2. Port and MAC Based Classification
3. Port and Protocol Based Classification
Configuration Guidelines
1. Configure VLAN.
2. Configure PVID for ports.
Procedure
1. Execute the following commands in the switches:
At Switch1:
2. Enter into the Global configuration mode
aos# configure terminal
3. Configure VLAN 1 in the switch
aos(config)# vlan 1
4. Configure the static VLAN entry with the required ports
aos(config-vlan)# ports gigabitethernet 0/1-3
untagged gigabitethernet 0/1-3
5. Exit from VLAN configuration mode
aos(config-vlan)# exit
6. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
7. Make the interface up
aos(config-if)# no shutdown
8. Exit from Interface configuration mode
aos(config-if)# exit
9. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/2
10. Make the interface up
aos(config-if)# no shutdown
11. Exit from Interface configuration mode
aos(config-if)# exit
12. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/3
13. Make the interface up
aos(config-if)# no shutdown
14. Exit from Interface configuration mode
aos(config-if)# exit
15. Configure VLAN 2 in the switch
aos(config)# vlan 2
16. Configure the static VLAN entry with the required ports
aos(config-vlan)# ports gigabitethernet 0/1-2
17. Return to Privileged EXEC mode
aos(config-vlan)# end
18. Configure the PVID for the Interface P1 as VLAN 2.
19. Enter into the Global configuration mode
aos# configure terminal
20. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
21. Set the PVID as 2 for the interface
aos(config-if)# switchport pvid 2
22. Return to Privileged EXEC mode
aos(config-if)# end
23. View the VLAN related configurations by executing the following commands:
aos# show vlan
Vlan database
-------------------
Vlan ID : 1
Member Ports : Gi0/1, Gi0/2, Gi0/3
Untagged Ports : Gi0/1, Gi0/2, Gi0/3
Forbidden Ports : None
Name :
Status : Permanent
--------------------------------------------------
--
Vlan ID : 2
Member Ports : Gi0/1, Gi0/2
Untagged Ports : None
Forbidden Ports : None
Name :
Status : Permanent
--------------------------------------------------
--
aos# show vlan port config port gigabitethernet
0/1
Vlan Port configuration table
--------------------------------------
74 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Port Gi0/1
Port Vlan ID : 2
Port Acceptable Frame Type : Admit All
Port Ingress Filtering : Disabled
Port Mode : Hybrid
Port Gvrp Status : Enabled
Port Gmrp Status : Enabled
Port Gvrp Failed Registrations : 0
Gvrp last pdu origin :
00:00:00:00:00:00
Port Restricted Vlan Registration : Disabled
Port Restricted Group Registration: Disabled
Mac Based Support : Disabled
Port-and-Protocol Based Support : Enabled
Default Priority : 0
--------------------------------------------------
---
24. Unicast packets are reached only to Host B as a tagged VLAN2 packet that is
sent by Host A.
Configuration Guidelines
1. Configure VLAN.
2. Configure Mac map entry for Port and Mac based classification.
Procedure
1. Execute the following commands in the switches:
At Switch1:
2. Enter into the Global configuration mode
aos# configure terminal
3. Configure VLAN 1 in the switch
aos(config)# vlan 1
4. Configure the static VLAN entry with the required ports
aos(config-vlan)# ports gigabitethernet 0/1-3
untagged gigabitethernet 0/1-3
5. Exit from VLAN configuration mode
aos(config-vlan)# exit
6. Configure VLAN 2 in the switch
aos(config)# vlan 2
76 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Configuration Guidelines
1. Configure VLAN.
2. Configure protocol-group entry for Port and Protocol based classification.
Procedure
1. Execute the following commands in the switches:
At Switch1:
2. Enter into the Global configuration mode
aos# configure terminal
3. Configure VLAN 1 in the switch
aos(config)# vlan 1
4. Configure the static VLAN entry with the required ports
78 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
28. ARP packets (Unknown Host) from Host A are classified as VLAN 2 packets and
the packets are forwarded only to Host B.
80 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Configuration Guidelines
1. Configuration of VLAN.
2. Configuration of PVID for the interfaces.
3. Configuration of Acceptable Frame Types.
Procedure
1. Execute the following commands in the Switch1:
At Switch1:
2. Enter into the Global configuration mode
aos# configure terminal
3. Configure VLAN 1 in the switch
aos(config)# vlan 1
4. Configure the static VLAN entry with the required ports
aos(config-vlan)# ports gigabitethernet 0/1-2
untagged gigabitethernet 0/1-2
5. Return from VLAN Configuration mode
aos(config-vlan)# exit
6. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
7. Make the interface up
aos(config-if)# no shutdown
8. Set PVID as VLAN 1
aos(config-if)# switchport pvid 1
9. Return from Interface configuration mode
aos(config-if)# exit
10. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/2
11. Make the interface up.
aos(config-if)# no shutdown
12. Set PVID as VLAN 2.
aos(config-if)# switchport pvid 1
13. Return to Privileged EXEC mode
aos(config-if)# end
14. Wait for around 30 seconds (topology settlement), to initiate ping from Host A
to Host B, which is successful.
15. Configure the Acceptable Frame Type for port P1.
At Switch1:
16. Enter into the Global configuration mode
aos# configure terminal
17. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
18. Configure the Acceptable Frame Type
aos(config-if)# switchport acceptable-frame-type
tagged
19. Return to Privileged EXEC mode
aos(config-vlan)# end
20. View the VLAN related configurations by executing the following commands:
aos# show vlan
Vlan database
-------------------
Vlan ID : 1
Member Ports : Gi0/1, Gi0/2
Untagged Ports : Gi0/1, Gi0/2
Forbidden Ports : None
Name :
Status : Permanent
--------------------------------------------------
--
aos# show vlan port config port gigabitethernet
0/1
Vlan Port configuration table
-------------------------------
Port Gi0/1
Port Vlan ID : 1
Port Acceptable Frame Type : Admit Only Vlan
Tagged
Port Ingress Filtering : Disabled
Port Mode : Hybrid
Port Gvrp Status : Enabled
Port Gmrp Status : Enabled
Port Gvrp Failed Registrations : 0
Gvrp last pdu origin :
00:00:00:00:00:00
Port Restricted Vlan Registration: Disabled
Port Restricted Group Registration: Disabled
Mac Based Support : Disabled
Port-and-Protocol Based Support :Enabled
Default Priority : 0
82 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
------------------------------------------------
21. Once the Acceptable Frame Type is configured as Admit OnlyVLAN Tagged, the
ping fails (as ping packets are untagged) from Host A to Host B.
Configuration Guidelines
1. Configuration of VLAN.
2. Configuration of PVID for the interfaces.
3. Configuration of Ingress filtering.
Procedure
1. Execute the following commands in Switch1:
At Switch1:
2. Enter into the Global configuration mode
aos# configure terminal
3. Configure VLAN 2 in the switch
aos(config)# vlan 2
4. Configure the static VLAN entry with the required ports
aos(config-vlan)# ports gigabitethernet 0/2
untagged gigabitethernet 0/2
5. Return from VLAN Configuration mode
aos(config-vlan)# exit
6. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
7. Make the interface up
aos(config-if)# no shutdown
8. Set PVID as VLAN 2
aos(config-if)# switchport pvid 2
9. Return from Interface configuration mode
aos(config-if)# exit
10. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/2
11. Make the interface up
aos(config-if)# no shutdown
12. Set PVID as VLAN 2
aos(config-if)# switchport pvid 2
13. Return to Privileged EXEC mode
aos(config-if)# end
14. Wait for around 30 seconds (topology settlement) to initiate ping from Host A to
Host B, and the ARP packet reaches Host B.
15. Enable Ingress filtering in port P1 as follows:
84 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
At Switch1:
16. Enter into the Global configuration mode
aos# configure terminal
17. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
18. Configure the Ingress filter
aos(config-if)# switchport ingress-filter
19. Return to Privileged EXEC mode
aos(config-vlan)# end
20. View the VLAN related configurations by executing the following commands:
aos# show vlan
Vlan database
-------------------
Vlan ID : 2
Member Ports : Gi0/2
Untagged Ports : Gi0/2
Forbidden Ports : None
Name :
Status : Permanent
--------------------------------------------
aos# show vlan port config port gigabitethernet
0/1
Vlan Port configuration table
-------------------------------
Port Gi0/1
Port Vlan ID : 2
Port Acceptable Frame Type : Admit All
Port Ingress Filtering : Enabled
Port Mode : Hybrid
Port Gvrp Status : Enabled
Port Gmrp Status : Enabled
Port Gvrp Failed Registrations : 0
Gvrp last pdu origin :
00:00:00:00:00:00
Port Restricted Vlan Registration : Disabled
Port Restricted Group Registration: Disabled
Mac Based Support : Disabled
Port-and-Protocol Based Support : Enabled
Default Priority : 0
--------------------------------------------------
---
21. The APR packet reaches Host B, when the Ingress filtering is enabled.
86 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Configuration Guidelines
1. Configure C-VLAN based Service Interface (Configure Customer Edge Port) and
Port based Service Interface (configuration of Customer Network Port (Port-Based) as
follows:
2. Configure the C-VLAN based service using C-VID registration table.
3. Configure the Port based service by setting PVID for the Customer Network Port
(Port-Based).
4. Configuration of S-VLAN.
Default Configurations
By default, all ports are configured as “Provider Network Port” in PB1 and PB2.
Procedure
1. Configure P1 of PB1 as Customer Edge Port and Configure P1 of PB2 as Customer
Network Port (Port-Based).
At Switch PB1
2. Enter into the Global configuration mode.
aos# configure terminal
3. Enter into the Interface configuration mode.
aos# interface gigabitethernet 0/1
4. Configure the port P1 as Customer Edge Port
aos(config-if)# bridge port-type
customerEdgePort
5. Exit from the Global configuration mode
aos(config-if)#end
At Switch PB2
6. Enter into the Global configuration mode
aos# configure terminal
7. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
8. Configure the port P1 as Customer Edge Port
aos(config-if)# bridge port-type
customerNetworkPort port-based
9. Exit from the Global configuration mode
88 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
aos(config-if)#end
10. Configure the S-VLAN 2 with member ports as P1, P2 and untagged port as P1 in
both PB1 and PB2.
At Switch PB1
11. Enter into the Global configuration mode
aos# configure terminal
12. Enter into the VLAN configuration mode
aos(config)# vlan 2
13. Configure the port P1, P2 as member ports and P1 as untagged port for S-VLAN 2
aos(config-vlan)# ports gigabitethernet0/1,0/2
untagged gigabitethernet0/1
14. Exit from the VLAN configuration mode
aos(config-vlan)#end
At Switch PB2
15. Enter into the Global configuration mode
aos# configure terminal
16. Enter into the VLAN configuration mode
aos(config)# vlan 2
17. Configure the port P1, P2 as member ports and P1 as untagged port for S-VLAN 2
aos(config-vlan)# ports gigabitethernet0/1,0/2
untagged gigabitethernet0/1
18. Exit from the VLAN configuration mode
aos(config-vlan)#end
19. Configure the CVID Registration table for providing C-VLAN based service
At Switch PB1
20. Enter into the Global configuration mode
aos# configure terminal
21. Enter into the Interface configuration mode
aos(config)# interface gigabitethernet 0/1
22. Configure the CVID Registration table for S-VLAN 2 and C-VLAN 2.
aos(config-if)# switchport customer-vlan 2
service-vlan 2
23. Exit from the Interface configuration mode
aos(config-if)#end
24. Configure the VLAN 2 with member ports as P1, P2 with untagged ports as P1 in
both CB1 and CB2.
At Switch CB1
25. Enter into the Global configuration mode
aos# configure terminal
26. Enter into the VLAN configuration mode
aos(config)# vlan 2
27. Configure the port P1, P2 as member ports and untagged member port as P2 for
VLAN2
90 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
At Switch PB1
46. View the configured port types by executing the following command:
aos# show provider-bridge port config port
gigabitethernet 0/1
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/1
Port Type : Customer Edge
Port
Dot1x Protocol Tunnel Status : Peer
LACP Protocol Tunnel Status : Peer
Spanning Tree Tunnel Status : Peer
GVRP Protocol Tunnel Status : Discard
GMRP Protocol Tunnel Status : Discard
IGMP Protocol Tunnel Status : Discard
Service Vlan Classification : Customer Vlan
Ingress EtherType : 0x88a8
Egress EtherType : 0x8100
EtherType Swap Status : Disable
Service Vlan Translation Status : Disable
Require Drop Encoding : False
Use_Dei : False
PCP Selection Row : 8P0D
Unicast Mac Learning Status : Enable
Unicast Mac Learning Limit : 150
Customer Vlan : 1
Customer Vlan Status : Enabled
-------------------------------------------
47. View the VLAN configurations by executing the following command:
aos# show vlan
Vlan database
-------------
Vlan ID : 1
Member Ports :
Untagged Ports : None
Forbidden Ports : None
Name :
Status : Permanent
ServiceType : E-LAN
MacLearning Status : Enabled
--------------------------------------------------
--
Vlan ID : 2
Member Ports : Gi0/1, Gi0/2
Untagged Ports : Gi0/1
Forbidden Ports : None
Name :
Status : Permanent
ServiceType : E-LAN
MacLearning Status : Enabled
--------------------------------------------------
---
48. View the C-VLAN based service configuration by executing the following com-
mand
aos# show service vlan cvlan
Service Vlan Classification
---------------------------------------
Service Vlan Port Customer Vlan Untag-pep Untag-
cep Relay CVlan Id SVLAN Pri Type SVLAN Priority
----------- --------------------------------------
---
2 Gi0/1 2 False
False 2 NONE NA
At Switch PB2
49. View the configured port types by executing the following command:
aos# show provider-bridge port config port
gigabitethernet 0/1
Provider Bridge Port configuration table
-----------------------------------------
Port Gi0/1
Port Type : Customer
Network Port(Port-Based)
Dot1x Protocol Tunnel Status : Peer
LACP Protocol Tunnel Status : Peer
Spanning Tree Tunnel Status : Tunnel
GVRP Protocol Tunnel Status : Tunnel
GMRP Protocol Tunnel Status : Tunnel
IGMP Protocol Tunnel Status : Tunnel
Service Vlan Classification : PVID
Ingress EtherType : 0x88a8
Egress EtherType : 0x88a8
EtherType Swap Status : Disable
92 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:03:02:03:04:01
Max age is 20 sec, forward delay
is 15 sec
Name Role State Cost Prio
Type
94 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Cost 400000
Port 1 [Gi0/1]
Max age 20 Sec, forward delay 15
Sec
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:04:02:03:04:01
Max age is 20 sec, forward delay
is 15 sec
Name Role State Cost Prio
Type
---- ---- ----- ---- ---- ----
--
Gi0/1 Root Forwarding 200000 128
SharedLan
Gi0/2 Designated Forwarding 200000 128
SharedLan
96 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
Configuration Guidelines
1. Configuration of VID Translation table.
2. Configuration of Port based Service by setting PVID for the Customer Network Port
Port-Based.
3. Configuration of S-VLAN.
Default Configurations
By default, all the ports are configured, as “Provider Network Port” in PB1 and PB2 and Local
VID is equal to Relay VID in the VID Translation table.
Procedure
1. Configure port P1 in PB1 and PB2 as “Customer Network Port (Port-Based)”.
At Switch PB1
aos# configure terminal
aos#(config) interface gigabitethernet 0/1
aos(config-if)# bridge port-type
customerNetworkPort port-based
aos(config-if)#end
At Switch PB2
aos# configure terminal
aos#(config) interface gigabitethernet 0/1
aos(config-if)# bridge port-type
customerNetworkPort port-based
aos(config-if)#end
2. Create VLAN 2 with member ports as P1, P2 and untagged member ports as P1 in
PB1. Note that you can only do this for a VLAN without an IP address.
At Switch PB1
aos# configure terminal
aos# vlan 2
aos(config-vlan)# ports gigabitethernet 0/1,0/2
untagged gigabitethernet 0/1
aos(config-vlan)#end
3. Create VLAN 3 with member ports as P1, P2 and untagged member ports as P1 in
PB1.
At Switch PB1
aos# configure terminal
aos(config)# vlan 3
aos(config-vlan)# ports gigabitethernet 0/1,0/2
untagged gigabitethernet 0/1
aos(config-vlan)#end
4. Configure the VID Translation table for port P2 in PB1 as Local VID-3, Relay VID-
2.
At Switch PB1
aos# configure terminal
aos(config)# interface gigabitethernet 0/2
5. Configure the VID Translation table for port P2 as Local VID-3, Relay VID-2.
aos(config-if)# switchport service vlan mapping
3 2
aos(config-if)#end
In CB1 and CB2 do the following:
1. Create VLAN 2 with member ports as P1, P2, with p2 as untagged member port
2. Configure the PVID for port P2 as VLAN 2.
At switch CB1
aos# configure terminal
aos(config)# vlan 2
aos(config-vlan)#ports gigabitethernet 0/1,0/2
untagged gigabitethernet 0/2
aos(config-vlan)#exit
aos(config)# interface gigabitethernet 0/2
aos(config-if)#switchport pvid 2
aos(config-if)#end
At switch CB2
aos# configure terminal
aos(config)# vlan 2
aos(config-vlan)#ports gigabitethernet 0/1,0/2
untagged gigabitethernet 0/2
aos(config-vlan)#exit
aos(config)# interface gigabitethernet 0/2
aos(config-if)#switchport pvid 2
aos(config-if)#end
3. Configure the PVID for port P1 as VLAN 2 in PB1 and also configure the PVID for
port P1 as VLAN 3 in PB2.
At switch PB1
aos# configure terminal
aos(config)# interface gigabitethernet 0/1
aos(config-if)#switchport pvid 2
aos(config-if)#end
At switch PB2
aos# configure terminal
aos(config)# interface gigabitethernet 0/1
aos(config-if)#switchport pvid 3
aos(config-if)#end
4. Verify the configuration of VID Translation table by executing the following com-
mand:
98 AVIAT NETWORKS
VLAN CONFIGURATION FOR CTR 8300 AND 8500
At Switch PB1
aos# show service vlan mapping
Service VLAN Mapping
-------------------------
Port Gi0/2
-----------
Local service VLAN Relay service VLAN 2
5. Verify whether, the customer network has been settled properly by executing the
following command:
At Switch CB1
aos# show spanning-tree
Root Id Priority 32768
Address 00:03:02:03:04:01
Cost 0
Port 0 [0]
This bridge is the root
Max age 20 Sec, forward delay 15
Sec
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:03:02:03:04:01
Max age is 20 sec, forward delay
is 15 sec
Name Role State Cost Prio
Type
---- ---- ----- ---- ----
----
Gi0/1 Designated Forwarding 200000 128
SharedLan
Gi0/2 Designated Forwarding 200000 128
SharedLan
At Switch CB2
aos# show spanning-tree
Root Id Priority 32768
Address 00:03:02:03:04:01
Cost 200000
Port 1 [Gi0/1]
Max age 20 Sec, forward delay 15
Sec
MST00
Configuration Guidelines
1. Configure port types.
2. Configure PCP Encoding and Decoding table.
3. Configure S-VLAN.
Default Configurations
1. All ports are Provider Network ports by default.
Procedure
1. Configure Port P1 as Customer Network Port (Port-Based).
At Switch PB1
aos# configure terminal
aos(config)# interface gigabitethernet 0/1
aos(config-if)# bridge port-type
customerNetworkPort port-based
aos(config-if)# end
2. Configure the PCP selection row for port P1 and P2 as 7P1D.
At Switch PB1
aos# configure terminal
aos(config)# interface gigabitethernet 0/1
3. Configure the PCP selection row for port P1 as 7P1D.
aos(config-if)# switchport provider-bridge pcp-
selection-row 7P1D
aos(config-if)# exit
aos(config)# interface gigabitethernet 0/2
4. Configure the PCP selection row for port P2 as 7P1D.
aos(config-if)# switchport provider-bridge pcp-
selection-row 7P1D
aos(config-if)# end
5. Configure the PCP decoding table for the received PCP value 5 to be decoded as pri-
ority 6 and drop-eligible true in Port P1 of PB1.
At Switch PB1
aos# configure terminal
aos(config)# interface gigabitethernet 0/1
6. Configure the PCP decoding table for the Port P1 as PCP - 5, Priority – 6 and DE -
True.
5P3D : 1 0 1 0 3 2 3 2 5 4 5 4 6 6
7 7
11. Create VLAN 2 with member ports as P1 and P2.
At Switch PB1
aos# configure terminal
aos(config)# vlan 2
aos(config-vlan)# ports gigabitethernet 0/1,0/2
aos(config-vlan)# end
12. Send a VLAN 2 tagged packet with priority as 5 from Host A to port P1 of PB1.
13. Verify that the packet is sent out with VLAN 2 tag and priority 5 on port P2 of
PB1.
Configuration Guidelines
1. Configure port types.
2. Configure S-VLAN.
3. Configure PEP configurations.
4. Configure Service Priority Regeneration table configuration.
Default Configurations
1. All ports are Provider Network ports by default.
2. Provider Edge Port has the following default values:
3. PVID – CVID of the first customer VLAN assigned to this service.
4. User Priority – 0
5. Acceptable Frame Types – AdmitAll
6. Enable Ingress Filtering – Disabled.
7. Service Priority Regeneration table has receive-priority equal to regenerated pri-
ority.
Procedure
1. Configure port P1 as Customer Edge Port.
At Switch PB1
aos# configure terminal
aos(config)# interface gigabitethernet 0/1
aos(config-if)# bridge port-type
customerEdgePort
aos(config-if)# no shutdown
aos(config-if)# exit
aos(config)# interface gigabitethernet 0/2
aos(config-if)# no shutdown
aos(config-if)# exit
2. Configure the S-VLAN membership.
At Switch PB1
aos# configure terminal
aos(config)# vlan 2
1 1
2 3
3 3
4 4
5 5
6 6
7 7
A unicast C-VLAN 2 tagged packet with priority 2 that is sent from Host A reaches Host B as a
double tagged packet with priority in the outertag as 3”.
Configuration Guidelines
1. Configure the ports as customer ports (access ports).
2. Disable Spanning Tree on port, where STP tunneling is required.
3. Set the STP tunneling.
4. Disable GVRP on port, where GVRP tunneling is required.
5. Set the GVRP tunneling.
6. Configure the service interfaces.
7. Configure the S-VLAN.
Default Configurations
1. All ports are configured as “Provider Network ports” by default.
Procedure
1. Configure port P1 of PB1 as Customer Edge Port and port P1 of PB2 as Customer
Network Port (Port-Based).
At Switch PB1
aos# configure terminal
aos# interface gigabitethernet 0/1
aos(config-if)# bridge port-type
customerEdgePort
aos(config-if)#end
At Switch PB2
aos# configure terminal
aos# interface gigabitethernet 0/1
aos(config-if)# bridge port-type
customerNetworkPort port-based
aos(config-if)#end
2. Create VLAN 2 with member ports as P1, P2 and untagged member port as P1 in
both PB1 and PB2 bridges.
At Switch PB1
aos# configure terminal
aos(config)# vlan 2
11. Create the VLAN 2 with member port as P2 and untagged member port as P2 in
both CB1 and CB2. Also configure the PVID of the port P2 as VLAN 2 in CB1 and
CB2.
At Switch CB1
aos# configure terminal
aos(config)# vlan 2
aos(config-vlan)#ports gigabitethernet 0/2
untagged gigabitethernet 0/2
aos(config-vlan)# exit
aos(config)#interface gigabitethernet 0/2
aos(config-if)#switchport pvid 2
aos(config-if)#end
At Switch CB2
aos# configure terminal
aos(config)# vlan 2
aos(config-vlan)#ports gigabitethernet 0/2
untagged gigabitethernet 0/2
aos(config-vlan)# exit
aos(config)#interface gigabitethernet 0/2
aos(config-if)#switchport pvid 2
aos(config-if)#end
12. Now, the VLAN 2 is learnt on the port P1 of CB1 and CB2, and port P1 is the root
port of the Customer Network-Spanning Tree.
At Switch PB1
13. Verify that the Customer Spanning Tree is disabled.
aos# show customer spanning-tree
Port [Gi0/1] Root Id Priority 0
Address 00:00:00:00:00:00
Cost 0
Root Ports
Hello Time 2 Sec, Max Age 20 Sec,
Forward Delay 15 Sec
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:03:02:03:04:01
Max age is 20 sec, forward delay
is 15 sec
Name Role State Cost Prio
Type
---- ---- ----- ---- ---- ---
---
Gi0/1 Designated Forwarding 200000 128
SharedLan
Gi0/2 Designated Forwarding 200000 128
SharedLan
Verify the VLAN configuration by executing the
following command:
aos# show vlan
VLAN database
-------------
VLAN ID : 1
Member Ports : Gi0/1, Gi0/2, Gi0/3, Gi0/4,
Gi0/5, Gi0/6
Gi0/7, Gi0/8, Gi0/9, Gi0/10,
Gi0/11, Gi0/12
Gi0/13, Gi0/14, Gi0/15,
Gi0/16, Gi0/17, Gi0/18
Gi0/19, Gi0/20, Gi0/21,
Gi0/22, Gi0/23, Gi0/24
Untagged Ports : Gi0/1, Gi0/2, Gi0/3, Gi0/4,
Gi0/5, Gi0/6
Gi0/7, Gi0/8, Gi0/9, Gi0/10,
Gi0/11, Gi0/12
Gi0/13, Gi0/14, Gi0/15,
Gi0/16, Gi0/17, Gi0/18
Gi0/19, Gi0/20, Gi0/21,
Gi0/22, Gi0/23, Gi0/24
Forbidden Ports : None
Name :
Status : Permanent
--------------------------------------------------
--
VLAN ID : 2
Member Ports : Gi0/1, Gi0/2
Untagged Ports : Gi0/2
Forbidden Ports : None
Name :
Status : Permanent
At Switch CB2
16. Verify the spanning tree port roles and states by executing the following com-
mand:
aos# show spanning-tree
Root Id Priority 32768
Address 00:03:02:03:04:01
Cost 200000
Port 1 [Gi0/1]
Max age 20 Sec, forward delay 15
Sec
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:04:02:03:04:01
Max age is 20 sec, forward delay
is 15 sec
Name Role State Cost Prio
Type
---- ---- ----- ---- ----
----
Gi0/1 Root Forwarding 200000 128
SharedLan
Gi0/2 Designated Forwarding 200000 128
SharedLan
Verify the VLAN configuration by executing the
following command:
aos# show VLAN
VLAN database
-------------
VLAN ID : 1
Member Ports : Gi0/1, Gi0/2, Gi0/3, Gi0/4,
Gi0/5, Gi0/6
Configuration Guidelines
1. Disable Spanning Tree on port where STP tunneling is required.
2. Disable GVRP on port where GVRP tunneling is required.
3. Set the STP tunneling and GVRP tunneling.
4. Configure S-VLAN
Default Configurations
All bridges AOS1, AOS2, AOS3 and ISS4 will be configured as customer bridges.
Procedure
1. Create VLAN 2 with member ports as P1, P2 and untagged member port as P1 in
both AOS1 and AOS2 bridges.
At Switch AOS1
aos# configure terminal
aos(config)# vlan 2
aos(config-vlan)# ports gigabitethernet 0/1,0/2
untagged gigabitethernet 0/1
aos(config-vlan)#end
At Switch AOS2
aos# configure terminal
aos(config)# vlan 2
aos(config-vlan)# ports gigabitethernet 0/1,0/2
untagged gigabitethernet 0/1
aos(config-vlan)#end
2. Configure the port PVID of P1 in AOS1 and AOS2 as VLAN 2.
At Switch AOS1
aos# configure terminal
aos(config)# interface gigabitethernet 0/1
aos(config-if)# switchport pvid 2
aos(config-if)#end
At Switch AOS2
aos# configure terminal
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:01:02:03:04:01
Switch default
Root Id Priority 32768
Address 00:01:02:03:04:01
Cost 200000
Port 2 [Gi0/2]
Max age 20 Sec, forward delay 15
Sec
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:02:02:03:04:01
Max age is 20 sec, forward delay
is 15 sec
Name Role State Cost Prio
Type
---- ---- ----- ---- ---- -
----
Gi0/1 Disabled Forwarding 200000 128
SharedLan
Gi0/2 Root Forwarding 200000 128
SharedLan
17. Execute the following show command to view that the STP and GVRP protocol
tunnel status is configured as ’tunnel’ in AOS2.
aos# show vlan port config port gigabitethernet
0/1
Switch default
Vlan Port configuration table
-------------------------------
Port Gi0/1
Port Vlan ID : 1
Port Acceptable Frame Type : Admit All
Port Ingress Filtering : Disabled
Port Mode : Hybrid
Port Gvrp Status : Enabled
Port Gmrp Status : Enabled
Port Gvrp Failed Registrations : 0
Gvrp last pdu origin :
00:00:00:00:00:00
Port Restricted Vlan Registration : Disabled
Port Restricted Group Registration : Disabled
VLAN ID : 1
Member Ports : Gi0/1, Gi0/2
Untagged Ports : Gi0/1, Gi0/2
Forbidden Ports : None
Name :
Status : Permanent
--------------------------------------------------
--
VLAN ID : 2
Member Ports : Gi0/1, Gi0/2
Untagged Ports : Gi0/1
Forbidden Ports : None
Name :
Status : Permanent
At Switch ISS4
20. Verify that the Spanning tree has settled in ISS4 by tunneling of STP packets by
executing the following command.
aos# show spanning-tree
Switch default
Root Id Priority 32768
Address 00:03:02:03:04:01
Cost 200000
Port 2 [Gi0/2]
Max age 20 Sec, forward delay 15
Sec
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:04:02:03:04:01
Max age is 20 sec, forward delay
is 15 sec
Name Role State Cost Prio
Type
---- ---- ----- ---- ----
----
Gi0/1 Root Forwarding 200000 128
SharedLan
Gi0/2 Designated Forwarding 200000 128
SharedLan
21. Execute the following show command to verify whether VLAN learning happened
properly in ISS4.
aos# show vlan
VLAN database
-------------
VLAN ID : 1
Member Ports : Gi0/1, Gi0/2
Untagged Ports : Gi0/1, Gi0/2
Forbidden Ports : None
Name :
Status : Permanent
--------------------------------------------------
--
VLAN ID : 2
Member Ports : Gi0/1, Gi0/2
Untagged Ports : Gi0/1
Forbidden Ports : None
Name :
Status : Permanent
Configuration Guidelines
1. Configuring bridge modes.
2. Configuring the port type of the port that is connected to a Q-in-Q bridge as Pro-
prietary Provider Network Port.
3. Configuring the S-VLAN.
Default Configurations
1. All ports are configured as “Provider Network Ports” by default.
Proceudre
1. ”Configure port P1 of PB1 and PB2 as “Proprietary Provider Network Port”.
At switch PB1
aos#configure terminal
aos(config)# interface gigabitethernet 0/1
aos(config-if)# bridge port-type
propProviderNetworkPort
aos(config-if)# end
At switch PB2
aos#configure terminal
aos(config)# interface gigabitethernet 0/1
aos(config-if)# bridge port-type
propProviderNetworkPort
aos(config-if)# end
2. Configure VLAN 2 with member ports as P1 and untagged member ports as P1 in
CB1 and CB2. Also configure the PVID of port P2 as VLAN 2.
At Switch CB1
aos(config)# vlan 2
aos(config-vlan)# ports gigabitethernet 0/1,0/2
untagged gigabitethernet 0/2
aos(config-vlan)# exit
aos(config)# interface gigabitethernet 0/1
aos(config-if)# switchport pvid 2
aos(config-if)# end
At Switch CB2
aos(config)# vlan 2
aos(config-vlan)# ports gigabitethernet 0/1,0/2
untagged gigabitethernet 0/2
aos(config-vlan)# exit
aos(config)# interface gigabitethernet 0/2
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:03:02:03:04:01
Max age is 20 sec, forward delay
is 15 sec
Name Role State Cost Prio
Type
---- ---- ----- ---- ---- --
--
Gi0/1 Root Forwarding 200000 128
SharedLan
Gi0/2 Designated Forwarding 200000 128
SharedLan
At Switch CB2
aos# show spanning-tree
Root Id Priority 32768
Address 00:01:02:03:04:01
Cost 400000
Port 1 [Gi0/1]
Max age 20 Sec, forward delay 15
Sec
MST00
MST00 is executing the mstp compatible Multiple
Spanning Tree Protocol
Bridge Id Priority 32768
Address 00:04:02:03:04:01
ServiceType : E-LAN
MacLearning Status : Enabled
--------------------------------------------------
--
Vlan ID : 2
Member Ports : Gi0/1, Gi0/2
Untagged Ports : None
Forbidden Ports : None
Name :
Status : Dynamic Gvrp
ServiceType : E-LAN
MacLearning Status : Enabled
Configuration Guidelines
1. Configuration of bridge modes.
2. Configuration of Unicast Mac status and Unicast Mac limit.
3. Configuration of S-VLAN.
Default Configurations
1. All ports are configured as “Provider Network Ports” by default.
Procedure
1. Configure the Unicast Mac status as “disabled” for port P1 of PB1. Note that uni-
cast-mac learning can only be set on a VLAN.
aos#configure terminal
aos(config)# vlan 2
2. Disable the Unicast Mac Learning status.
aos(config-if)# switchport unicast-mac learning
disable
aos(config)#end
3. Send five unicast packets of different sources from P1 of HA to P1 of PB1.
4. Verify that the Mac address is not learnt on the port P1 using the following com-
mand:
At Switch PB1
aos#show mac-address-table
VLAN Mac Address Type Ports
---- ----------- ---- -----
Total Mac Addresses displayed: 0
5. Configure the Unicast Mac Learning status as enabled for port P1 of PB1. Also con-
figure the Unicast Mac Limit for port P1 as 5.
At Switch PB1
aos#configure terminal
Configuration Guidelines
1. Configuration of bridge modes.
2. Configuration of Multicast Mac status and Multicast Mac limit.
3. Configuration of S-VLAN.
Default Configurations
1. All ports are ”Provider Network Ports” by default.
Procedure
1. Configure the Unicast Mac status as “disabled” for VLAN 2 of PB1.
aos#configure terminal
aos(config)# vlan 2
2. Disable the Unicast Mac Learning status for VLAN 2
aos(config-vlan)# set unicast-mac learning
enable
aos(config-vlan)#end
3. Send five unicast packets of different sources from P1 of HA to P1 of PB1.
4. Verify that the Mac address is not learnt on the port P1 using the following com-
mand:
At Switch PB1
aos#show mac-address-table
Vlan Mac Address Type Ports
---- ----------- ---- -----
Total Mac Addresses displayed: 0
5. Configure the Unicast Mac Learning status as enabled for VLAN 2 of PB1 and also
configure the Unicast Mac Limit for VLAN 2 as 5.
At Switch PB1
aos#configure terminal
aos(config)# vlan 2
6. Enable the Unicast Mac Learning status for VLAN 2.
aos(config-vlan)# set unicast-mac learning
enable
7. Enable the Unicast Mac Learning limit as 5 for port P1.
aos(config-vlan)# vlan unicast-mac learning
limit 5
aos(config-vlan)# end
8. Send 10 unicast packets of different sources from P1 of HA to P1 of PB1.
At Switch PB1
l To transmit the tunneled Customer STP and GVRP packets, the destination Mac
address is changed as per the administrator configuration.