Network Management Configuration Guide, Cisco Catalyst IE9300 Rugged Series Switches

PDF

Network Management Configuration Guide, Cisco Catalyst IE9300 Rugged Series Switches

Configuration guidelines for VLAN mapping

Want to summarize with AI?

Log in

Use these guidelines when configuring VLAN mapping on Cisco Catalyst IE9300 switches to ensure correct traffic isolation and feature compatibility. This topic describes requirements for EtherChannels, S-VLAN setup, and control traffic processing, while highlighting restrictions for Selective QnQ and trunk port operations.


Guidelines for VLAN mapping

  • By default, no VLAN mapping is configured. Enable VLAN mapping only on the port-channel (EtherChannel) interface, not on individual member ports.

  • If the VLAN mapping is enabled on an EtherChannel, the configuration applies only to the EtherChannel interface.

  • If the VLAN mapping is enabled on an EtherChannel and a conflicting mapping is enabled on a member port, the port is removed from the EtherChannel.

  • Changing a member port’s mode of an EtherChannel from trunk removes it from the EtherChannel bundle.

  • Enable Layer 2 protocol tunneling or insert a BPDU filter for spanning tree to ensure consistent control traffic processing. For configurations, see Layer 2 NAT commands

  • Do not use default or user-configured native VLANs, or reserved VLANs in the 1002 to 1005 range, for VLAN mapping.

  • Private VLAN (PVLAN) is not supported when VLAN mapping is configured.

Guidelines for selective Q-in-Q:

  • Create the S-VLAN and add it to the trunk's allowed VLAN list before enabling Selective Q-in-Q.

  • When Selective Q-in-Q is enabled, Layer 2 protocol tunneling is supported for CDP, STP, LLDP, and VTP.

  • IP routing and IPSG are not supported on Selective Q-in-Q enabled ports.

Guidelines for Q-in-Q on a trunk port:

  • Create the S-VLAN and add it to the trunk's allowed VLAN list before enabling Q-in-Q on the trunk port.

  • When Q-in-Q is enabled on a trunk port, Layer 2 protocol tunneling is supported for CDP, STP, LLDP, and VTP.

  • Ingress SPAN, egress SPAN, and RSPAN are supported on trunk ports with Q-in-Q enabled.

  • SPAN filtering can be enabled to monitor only the traffic on the mapped VLAN (S-VLANs).

  • IGMP snooping is not supported on the C-VLAN when Q-in-Q is configured.