Prerequisites
201
• Understanding Private VLANs
8
• Cisco Systems' Private VLANs: Scalable Security in a Multi-Client Environment
9
• Private VLAN (PVLAN) on vNetwork Distributed Switch - Concept Overview (1010691)
10
16.25.2. Prerequisites
• Use a PVLAN supported switch.
See Private VLAN Catalyst Switch Support Matrix
11
for more information.
• All the layer 2 switches, which are PVLAN-aware, are connected to each other, and one of them is
connected to a router. All the ports connected to the host would be configured in trunk mode. Open
Management VLAN, Primary VLAN (public) and Secondary Isolated VLAN ports. Configure the
switch port connected to the router in PVLAN promiscuous trunk mode, which would translate an
isolated VLAN to primary VLAN for the PVLAN-unaware router.
Note that only Cisco Catalyst 4500 has the PVLAN promiscuous trunk mode to connect both normal
VLAN and PVLAN to a PVLAN-unaware switch. For the other Catalyst PVLAN support switch,
connect the switch to upper switch by using cables, one each for a PVLAN pair.
• Configure private VLAN on your physical switches out-of-band.
• Before you use PVLAN on XenServer and KVM, enable Open vSwitch (OVS).
Note
OVS on XenServer and KVM does not support PVLAN natively. Therefore, CloudPlatform
managed to simulate PVLAN on OVS for XenServer and KVM by modifying the flow table.
16.25.3. Creating a PVLAN-Enabled Guest Network
1. Log in to the CloudPlatform UI as administrator.
2. In the left navigation, choose Infrastructure.
3. On Zones, click View More.
4. Click the zone to which you want to add a guest network.
5. Click the Physical Network tab.
6. Click the physical network you want to work with.
7. On the Guest node of the diagram, click Configure.
8. Click the Network tab.
8
http://www.cisco.com/en/US/docs/switches/lan/catalyst3750/software/release/12.2_25_see/configuration/guide/
swpvlan.html#wp1038379
9
http://tools.ietf.org/html/rfc5517
10
http://kb.vmware.com
11
http://www.cisco.com/en/US/products/hw/switches/ps708/products_tech_note09186a0080094830.shtml