TP-Link T1700G-28TQ T1700G-28TQ V1 CLI Reference Guide - Page 174
Port Isolation Commands
View all TP-Link T1700G-28TQ manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 174 highlights
Chapter 23 Port Isolation Commands Port Isolation provides a method of restricting traffic flow to improve the network security by forbidding the port to forward packets to the ports that are not on its forwarding port list. 23.1 port isolation Description The port isolation command is used to configure the forward port/LAG list of a port/LAG, so that this port/LAG can only communicate with the ports/LAGs on its list. To delete the corresponding configuration, please use no port isolation command. Syntax port isolation { [ gi-forward-list gi-forward-list ] [ po-forward-list po-forward-list ] } no port isolation Parameter gi-forward-list -- The list of Ethernet ports. po-forward-list -- The list of LAGs. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface ten-gigabitEthernet / interface range ten-gigabitEthernet / interface port-channel / interface range port-channel) Example Set port 1, 2, 4 and LAG 2 to the forward list of port 1/0/5: T1700G-28TQ(config)# interface gigabitEthernet 1/0/5 T1700G-28TQ(config-if)# port isolation gi-forward-list 1/0/1-2,1/0/4 po-forward-list 2 Set all Ethernet ports and LAGs to forward list of port 1/0/2, namely restore to the default setting: T1700G-28TQ(config)# interface gigabitEthernet 1/0/2 T1700G-28TQ(config-if)# no port isolation 160