Cisco WS-CE500-24PC Administration Guide - Page 50

Multiple VLAN Subnets, > VLAN > Multiple VLAN Subnets - switch

Page 50 highlights

Networking Configuring the LAN 2 General mode is recommended if the port is connected to an unmanaged switch with a mix of VLAN-aware and VLAN-unaware devices. If you choose this option, also enter a PVID number for the port, and configure the VLAN Membership in the lower half of the page. - Trunk: The port is a member of a specified set of VLANs. All data going into and out of the port is tagged. Untagged data coming into the port is not forwarded, except for the default VLAN with PVID=1, which is untagged. Trunk mode is recommended if the port is connected to a VLAN-aware switch or router. If you choose this option, also configure the VLAN Membership in the lower half of the page. • PVID: If you chose Access or General mode, enter the Port VLAN ID to be used to forward or filter the untagged packets coming into port. STEP 4 In the VLAN Membership Configuration area, check the box for each VLAN that you want to associate with this port. STEP 5 Click Apply to save your settings. Multiple VLAN Subnets Typically, VLANs are isolated such that the traffic generated by any one of these networks is not seen by the others. However there are instances where you want to enable communication between VLANs. When you configure VLAN subnets, the security appliance routes traffic between VLANs and provides services such as a DHCP server for the members of each VLAN. STEP 1 Click Networking > VLAN > Multiple VLAN Subnets. The Multiple VLAN Subnets window opens. All VLANs from the Networking > LAN > Available VLANs page appear in the List of available Multiple VLAN Subnets table. The Multiple VLAN Subnet Configuration window opens. STEP 2 In the Multiple VLAN Subnet section of the page, enter the following settings: • IP Address: Enter the VLAN subnet IP address. • Subnet Mask: Enter the subnet mask for this VLAN. STEP 3 In the DHCP section of the page, choose the DHCP mode: Cisco SA500 Series Security Appliances Administration Guide 50

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240

Networking
Configuring the LAN
Cisco SA500 Series Security Appliances Administration Guide
50
2
General mode is recommended if the port is connected to an unmanaged
switch with a mix of VLAN-aware and VLAN-unaware devices.
If you choose this option, also enter a
PVID
number for the port, and
configure the
VLAN Membership
in the lower half of the page.
-
Trunk:
The port is a member of a specified set of VLANs. All data going
into and out of the port is tagged. Untagged data coming into the port is
not forwarded, except for the default VLAN with PVID=1, which is
untagged. Trunk mode is recommended if the port is connected to a
VLAN-aware switch or router.
If you choose this option, also configure the
VLAN Membership
in the
lower half of the page.
PVID
: If you chose Access or General mode, enter the Port VLAN ID to be
used to forward or filter the untagged packets coming into port.
STEP
4
In the
VLAN Membership Configuration
area, check the box for each VLAN that
you want to associate with this port.
STEP
5
Click
Apply
to save your settings.
Multiple VLAN Subnets
Typically, VLANs are isolated such that the traffic generated by any one of these
networks is not seen by the others. However there are instances where you want
to enable communication between VLANs. When you configure VLAN subnets, the
security appliance routes traffic between VLANs and provides services such as a
DHCP server for the members of each VLAN.
STEP 1
Click
Networking
> VLAN > Multiple VLAN Subnets
.
The Multiple VLAN Subnets window opens. All VLANs from the
Networking >
LAN > Available VLANs
page appear in the List of available Multiple VLAN
Subnets table.
The Multiple VLAN Subnet Configuration window opens.
STEP
2
In the
Multiple VLAN Subnet
section of the page, enter the following settings:
IP Address:
Enter the VLAN subnet IP address.
Subnet Mask:
Enter the subnet mask for this VLAN.
STEP
3
In the
DHCP
section of the page, choose the DHCP mode: