Vlan configuration example, Network requirements, Configuration procedure – H3C Technologies H3C SecPath F1000-E User Manual
Page 58
33
Item Description
VLAN ID
Specify the VLAN to which the port belongs.
VLAN configuration example
NOTE:
In this configuration example, either Device A or Device B is the SecPath firewall.
Network requirements
As shown in
, GigabitEthernet 0/1 is a hybrid port with VLAN 100 as its PVID.
Assign GigabitEthernet 0/1 to VLAN 2 and VLANs 6 through 50 as an untagged member, and to VLAN
100 as a tagged member.
Figure 21 Network diagram
Configuration procedure
1.
Configure Device A:
NOTE:
Before making the following configurations, check whether GigabitEthernet 0/1 operates in router mode.
If yes, change its operating mode to bridge mode (to do that, select Device Management > Interface from
the navigation tree, and then find and select GigabitEthernet 0/1 to configure it accordingly); in addition,
specify the security zone to which GigabitEthernet 0/1 belongs when assigned to VLAN 2, VLANs 6 to
50, and VLAN 100.
# Create VLAN 2, VLANs 6 through 50, and VLAN 100.
•
Select Network > VLAN > VLAN from the navigation tree. On the page that appears, click Add and
make the following configurations, as shown in
Figure 22 Creating VLANs
•
Enter VLAN IDs 2, 6-50, and 100.
•
Click Apply.
# Configure VLAN 100 as the PVID of GigabitEthernet 0/1. By default, all ports are access ports and
their PVIDs are all VLAN 1.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS H3C SecBlade LB Cards H3C SecPath L1000-A Load Balancer