The following example creates two groups. Group 1 is in community mode, and Group 2 is in isolated mode.
- Create VLAN 200.
- Select Switching > VLAN > Basic > VLAN Configuration.
A screen similar to the following displays.
- Enter the following information:
- In the VLAN ID field, enter 200.
- In the VLAN Name field, enter VLAN200.
- In the VLAN Type field, select Static.
- Click Add.
- Select Switching > VLAN > Basic > VLAN Configuration.
- Add ports 1/0/6, 1/0/7, 1/0/16, and 1/0/17 to VLAN 200.
- Select Switching > VLAN > Advanced > VLAN Membership.
A screen similar to the following displays.
- Under VLAN Membership, in the VLAN ID list, select 200.
- Click Unit 1. The ports display.
- Click the gray boxes under ports 6, 7, 16 and 17 until U displays.
The U specifies that the egress packet is untagged for the port.
- Click Apply.
- Select Switching > VLAN > Advanced > VLAN Membership.
- Specify the PVID on ports 1/0/6, 1/0/7, 1/0/16, and 1/0/17.
- Select Switching > VLAN > Advanced > Port PVID Configuration.
A screen similar to the following displays.
- Under PVID Configuration, scroll down and select the Interface 1/0/6,1/0/7,1/0/16, and 1/0/17 check boxes.
- In the PVID (1 to 4093) field, enter 200.
- In the Acceptable Frame Type list, select Admit All.
- Click Apply to save the settings.
- Select Switching > VLAN > Advanced > Port PVID Configuration.
- Create a private group, group1.
- Select Security > Traffic Control > Private Group VLAN > Private Group VLAN > Private Group Configuration.
A screen similar to the following displays.
- In the Group Name field, enter group1.
- In the Group ID field, enter 1.
- In the Group Mode list, select community.
- Click Add.
- Select Security > Traffic Control > Private Group VLAN > Private Group VLAN > Private Group Configuration.
- Add port 6 and 7 to group1.
- Select Security > Traffic Control > Private Group VLAN >Private Group Membership.
A screen similar to the following displays.
- In the Group ID list, select 1.
- Click Unit 1. The ports display.
- Click the gray boxes under ports 6 and 7.
A check mark displays in each box. - Click Apply.
- Select Security > Traffic Control > Private Group VLAN >Private Group Membership.
- Create a private group, group2.
- Select Security > Traffic Control > Private Group VLAN > Private Group Configuration.
A screen similar to the following displays.
- In the Group Name field, enter group2.
- In the Group ID field, enter 2.
- In the Group Mode field, select isolated.
- Click Add.
- Select Security > Traffic Control > Private Group VLAN > Private Group Configuration.
- Add ports 16 and 17 to group2.
- Select Security > Traffic Control > Private Group VLAN > Private Group VLAN > Private Group Membership.
A screen similar to the following displays.
b. In the Group ID list, select 2.
- Click Unit 2. The ports display.
- Click the gray boxes under ports 16 and 17, and a check mark displays in each box.
- Click Apply.
- Select Security > Traffic Control > Private Group VLAN > Private Group VLAN > Private Group Membership.
For more information, see the following support articles:
- What are private VLAN groups and how do they work with my managed switch?
- How do I create a private VLAN group using CLI commands on my managed switch?
This article applies to the following managed switches and their respective firmware:
- M5300 - firmware version 10.0.0.x
-
- M5300-28G (GSM7228S)
- M5300-5G (GSM7252S)
- M5300-28G3 (GSM7328Sv2h2)
- M5300-52G3 (GSM7352Sv2h2)
- M5300-28G_POE+ (GSM7228PSv1h2)
- M5300-52G-POE+ (GSM7252PSv1h2)
- M5300-28GF3 (GSM7328FSv2)
- M4100 - firmware version 10.0.1.x
-
- M4100-26G (GSM7224v2h2)
- M4100-50G (GSM7248v2h2)
- M4100-26G-POE (GSM7226Pv1h1)
- M4100-50G-POE+ (GSM7248Pv1h1)
- M4100-26G-POE (FSM7226Pv1h1)
- M4100-50-POE (FSM7250Pv1h1)
- M4100-D12G (GSM5212v1h1)
- M4100-D10-POE (FSM5210Pv1h1)
- M7100 - firmware version 10.0.1.x
-
- M7100-24X (XSM7224)
- XSM7224S - firmware version 9.0.1.x