cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
959
Views
5
Helpful
6
Replies

Limint number of VLAN-s in QinQ

Branimir Turk
Level 1
Level 1

Hi everybody,

Is there any way to limit number of C(ustomer)-VLANs on QinQ tunnel port?

For example, only VLANS 10-20 are double tagged, all other traffic is dropped.

Thanks,

Branimir

1 Accepted Solution

Accepted Solutions

Giuseppe Larosa
Hall of Fame
Hall of Fame

Hello Branimir,

as far as I know this is not possible: you cannot choice what vlan-ids have to be tunneled and what should be filtered/stopped.

all vlan-tags presented to the dot1q tunnel interface are externally tagged with the service provider tag for this customer.

This is for forwarding efficiency.

see for example this chapter from config guide of C3750

http://www.cisco.com/en/US/docs/switches/lan/catalyst3750/software/release/12.2_44_se/configuration/guide/swtunnel.html#wp1010370

Hope to help

Giuseppe

View solution in original post

6 Replies 6

Giuseppe Larosa
Hall of Fame
Hall of Fame

Hello Branimir,

as far as I know this is not possible: you cannot choice what vlan-ids have to be tunneled and what should be filtered/stopped.

all vlan-tags presented to the dot1q tunnel interface are externally tagged with the service provider tag for this customer.

This is for forwarding efficiency.

see for example this chapter from config guide of C3750

http://www.cisco.com/en/US/docs/switches/lan/catalyst3750/software/release/12.2_44_se/configuration/guide/swtunnel.html#wp1010370

Hope to help

Giuseppe

Hi Giuseppe,

Thank you for the information.

Regards,

Branimir

guruprasadr
Level 7
Level 7

HI Branimir, [Pls RATE if HELPS]

Please let us know the requirement in detail.

Let us assume the Setup as:

BaseStation Switch==>Tunneling Switch ==> Core Switch ==> Edge RouterA.

Configuration for the QnQ Tag Interface at Tunneling Switch:

interface FastEthernet0/20

description For Edge RouterA

switchport access vlan 900

switchport mode dot1q-tunnel

speed 100

duplex full

no cdp enable

spanning-tree portfast trunk

spanning-tree bpdufilter enable

end

Note: VLAN 900 is the QnQ Tag VLAN ID.

BaseStation Switch <> Tunnelling Switch.

If the C(ustomer) VLANS eg: 30-40 are not allowed in the X-connected Interface towards the Tunneling Switch means; the VLANS are not Tagged and hence it is dropped.

Pls RATE if HELPS

Best Regards,

Guru Prasad R

Hi,

If i understood correctly, you are saying that i need to configure trunk port on BaseStation Switch with switchport allowed vlan 30-40.

Unfortunately BaseStation switch is not under my administration.

HI branimirturk, [Pls RATE if HELPS]

If you do not want VLAN Range 30 - 40 on QnQ path;

Don't allow VLAN 30 - 40 in the BaseStation Switch <> Tunnelling Switch.

Hope I am Informative.

Best Regards,

Guru Prasad R

Hi,

Thank you,

Branimir

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card