This article describes how to configure a VLAN on a NETGEAR fully managed switch.
Note: The steps and screenshots in this article apply to NETGEAR fully managed switches running firmware version 11 and later firmware versions.
To configure a VLAN on a fully managed switch:
Step 1. Log in to the fully managed switch:
- Launch a web browser and enter the IP address of the switch in the address field of your web browser.
The login page displays. - Click the Main UI Login button.
The main UI login page displays in a new tab. - Enter admin as the user name and enter one of the following passwords:
- Enter your local device password.
The first time that you log in, no password is required. However, you then must specify
a local device password to use each subsequent time that you log in. - If you are managing the switch through the Engage controller, enter the site password
for the Engage site to which the switch is onboarded. - If, in addition to the main UI, you are also managing the switch through the Insight Cloud Portal
or Insight app, enter the Insight network password for the Insight network to which the switch is added.
4. Click the Login button.
The System Information page displays.
Step 2. Create a VLAN:
- Select Switching > VLAN > Advanced > VLAN Configuration.
The VLAN Configuration page displays. - In the VLAN ID field, type the ID of the VLAN that you want to create.
In this example, we are adding VLAN 10.

- Click the Add button.
Your settings are saved.
Step 3. Add ports to the VLAN:
- Select Switching > VLAN > Advanced > VLAN Membership.
The VLAN Membership page displays. - From the VLAN ID menu, select the VLAN ID that you want to edit.
- Select the boxes for the ports that must be added to the VLAN.
You can mark a port as untagged or tagged:
- Ports that connect to client devices such as computer must be marked as untagged (U).
Such as port is also known as an access port. - Ports on which traffic for multiple VLANs is passed to and from other VLAN aware devices
must be marked as tagged (T). Such as port is also known as a trunk port.
In this example, we are adding ports 5, 6, 7, 8, 9, and 10 as untagged members of VLAN 10 and
we are adding port 28 as a tagged member of VLAN 10.

4. Click the Apply button.
Your settings are saved.
Step 4. For each port added as untagged in the previous step, remove the port from VLAN 1:
- Remain on the same page.
- From the VLAN ID menu, select 1.
- Clear the boxes for ports 5, 6, 7, 8, 9, and 10.

- Click the Apply button.
Your settings are saved.
Step 5. Configure the port PVID settings for untagged ports:
- Select Switching > VLAN > Advanced > Port PVID Configuration.
The PVID Configuration page displays. - For each port marked as untagged in Step 3, set the PVID of the port to the VLAN ID of the VLAN
to which the port was assigned. You do this by selecting 5, 6, 7, 8, 9, and 10 and entering 10 in the PVID field.

- Click the Apply button.
Your settings are saved.