Huawei S3700-28TP-PWR-SI 02354133 User Manual

Product codes
02354133
Page of 60
The S3700 can also control the percentage of unknown unicast packets, multicast packets, and
broadcast packets on an interface.
3.1.4 VLAN
A local area network (LAN) can be divided into several logical LANs. Each logical LAN is a
broadcast domain, which is called a virtual LAN (VLAN). To put it simply, devices on a LAN
are logically grouped into different LAN segments, irrespective of their physical locations. In
this manner, VLANs isolate broadcast domains on a LAN.
Methods to Define VLANs
A physical LAN can be divided into several VLANs, and several physical LANs can be grouped
into a VLAN. Devices on a VLAN belong to the same broadcast domain and can communicate
with each other. Different VLANs are isolated from each other, so devices on different VLANs
cannot communicate with each other.
The S3700 supports the following methods to define VLANs:
l
Based on interfaces
After an interface is added to a VLAN, packets received by the interface are sent on the
VLAN.
l
Based on MAC addresses
VLAN members are defined according to source MAC addresses of packets. When an
interface of the S3700 receives a packet, the S3700 determines the VLAN ID of the packet
according to the source MAC address of the packet and sends the packet on the
corresponding VLAN.
l
Based on protocols
The S3700 determines the VLAN ID of a received packet according to the protocol (or
protocol suite) and encapsulation format of the packet.
l
Based on IP subnets
VLAN members are defined according to the source IP addresses and the subnet masks of
packets. When an interface of the S3700 receives a packet, the S3700 determines the VLAN
ID of the packet according to the source IP address of the packet and sends the packet on
the corresponding VLAN.
VLAN Aggregation
To implement communication between VLANs on the S3700, you need to configure VLANIF
interfaces and assign an IP address to each VLANIF interfaces. Therefore, this wastes IP
addresses when there are many VLANs. VLAN aggregation can solve this problem.
VLAN aggregation means that multiple VLANs are aggregated into a super-VLAN. The VLANs
that form the super-VLAN is called sub-VLANs.
MUX VLAN
The MUX VLAN function is used to isolate Layer 2 traffic between the interfaces of a VLAN.
For example, on an intranet, a user interface can communicate with a server interface, but the
user interfaces cannot communicate with each other.
This function involves a MUX VLAN and several subordinate VLANs. Subordinate VLANs
are classified into subordinate group VLANs and subordinate separate VLANs. Ports on
S3700HI Ethernet Switches
Product Description
3 Link Features
Issue 05 (2012-10-20)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
12