Comware

 View Only
  • 1.  Access list between vlans

    Posted Feb 17, 2016 03:19 PM

    Hello,

    I have a HP 2920-24g with 10gb ethernet module + 10gb SFP module, I configured two vlans, vlan 1 (Default) and Vlan 2 (San_vlan). Vlans are on the same subnet.

    In Vlan 1 i have port 1 to 24 untagged

    In vlan 2 I have port 3, 5, A1, A2, B1 tagged

    I want to permit all Vlan 2 to go to Vlan1 but deny Vlan1 to go to vlan 2 except port 3 and 5.

    right now I have have to put vlan2 ports in vlan 1 to gain access what is in vlan2 but vlan1 can access witch I dont want.

    Should I use access list to do what I want? Any suggestion are welcome.

    Thank you !


    #ACLs


  • 2.  RE: Access list between vlans

    Posted Feb 18, 2016 02:55 AM

    Since you're using a single subnet on multiple VLANs, the private VLAN function seems to me like the way to go.



  • 3.  RE: Access list between vlans

    Posted Feb 18, 2016 11:26 AM

    interesting! 

    I'm trying to find documentation about private vlan but i cant really find any that explain how to configure private vlan. CAn you give me some hints.

    Thanks!



  • 4.  RE: Access list between vlans

    Posted Feb 18, 2016 11:37 AM

    never mind, i finally find some documentations.

    thanks for your help!