No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


CX11x, CX31x, CX710 (Earlier Than V6.03), and CX91x Series Switch Modules V100R001C10 Configuration Guide 12

The documents describe the configuration of various services supported by the CX11x&CX31x&CX91x series switch modules The description covers configuration examples and function configurations.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuration Examples

Configuration Examples

This section provides configuration examples of Ethernet interfaces, including the networking requirements, configuration roadmap, operation procedure, and configuration files.

Example for Configuring Interface Isolation

Networking Requirements

As show in Figure 4-9, Server1, Server2, and Server3 belong to VLAN 10. Server1 and Server2 are not allowed to communicate with each other in VLAN10, but they are allowed to communicate with Server3.

Figure 4-9 Networking diagram of interface isolation configuration

Configuration Roadmap

The configuration roadmap is as follows:

  1. Add the interfaces to the specified VLAN.

  2. By default, interfaces are isolated at Layer 2 but can communicate at Layer 3. You can add interfaces to an isolation group to implement Layer 2 isolation between these interfaces.


  1. Create VLAN 10 on Switch, and add interfaces to VLAN 10.

    <HUAWEI> system-view
    [~HUAWEI] sysname Switch
    [*HUAWEI] commit
    [~Switch] vlan 10
    [*Switch-vlan10] quit
    [*Switch] interface 10ge 1/17/1
    [*Switch-10GE1/17/1] port default vlan 10
    [*Switch-10GE1/17/1] quit
    [*Switch] interface 10ge 1/17/2
    [*Switch-10GE1/17/2] port default vlan 10
    [*Switch-10GE1/17/2] quit
    [*Switch] interface 10ge 1/17/3
    [*Switch-10GE1/17/3] port default vlan 10
    [*Switch-10GE1/17/3] quit
    [*Switch] commit

  2. Configure interface isolation.

    # Configure interface isolation for 10GE1/17/1.

    [~Switch] interface 10ge 1/17/1
    [~Switch-10GE1/17/1] port-isolate enable group 1
    [*Switch-10GE1/17/1] quit
    [*Switch] commit

    # Configure interface isolation for 10GE1/17/2.

    [~Switch] interface 10ge 1/17/2
    [~Switch-10GE1/17/2] port-isolate enable group 1
    [*Switch-10GE1/17/2] quit
    [*Switch] commit

  3. Verify the configuration.

    # Server1 and Server2 cannot communicate with each other.

    # Server1 and Server3 can communicate with each other.

    # Server2 and Server3 can communicate with each other.

Configuration Files

Configuration files of Switch

sysname Switch
vlan batch 10
interface 10GE1/17/1
 port default vlan 10 
 port-isolate enable group 1
interface 10GE1/17/2
 port default vlan 10 
 port-isolate enable group 1
interface 10GE1/17/3
 port default vlan 10 
Updated: 2019-08-09

Document ID: EDOC1000041694

Views: 58395

Downloads: 3621

Average rating:
This Document Applies to these Products
Related Version
Related Documents
Previous Next