07-29-2007 09:36 AM - edited 03-05-2019 05:33 PM
When creating a trunk link, I have a few questions:
VLAN1 always has to be a member of a trunk link, is this correct?
If so, why?
07-29-2007 10:11 AM
Hi,
Control plane traffic such as VTP, CDP, and PAgP protocols (and DTP in case of ISL - while DTP in case of 802.1q uses the native vlan) are tagged with VLAN 1 information.
HTH,
Mohammed Mahmoud.
07-29-2007 10:32 AM
Hi Wilson,
The reason VLAN 1 became a special VLAN is that L2 devices needed to have a default VLAN to assign to their ports, including their management port(s). In addition to that, many L2 protocols such as CDP, PAgP, and VTP needed to be sent on a specific VLAN on trunk links. For all these purposes VLAN 1 was chosen.
As a consequence, VLAN 1 may sometimes end up unwisely spanning the entire network if not appropriately pruned and, if its diameter is large enough, the risk of instability can increase significantly.
So as a generic security rule the network administrator should prune VLAN 1 from all the trunks and from all the access ports that don't require it (including not connected and shutdown ports). i.e. always need not be member of trunk link.
Rate if it does,
Rgs.
07-29-2007 12:04 PM
Thanks
07-29-2007 12:46 PM
Hi,
Can we use native VLAN which is administratively down ?
07-29-2007 12:53 PM
hi,
Do you mean that the interface vlan of the native vlan is admin down, then yes you can use the native vlan this has nothing to do with the vlan operation, but you won't be able to telnet to the switch for remote access using that interface, and if the switch was layer 3 you won't be able to do inter-VLAN routing for this VLAN.
HTH,
Mohammed Mahmoud.
07-29-2007 08:10 PM
Meenakshi,
In addition to Mohammed's post, a native vlan can be any dummy vlan on the switch. Just create a L2 vlan on the switch and do not create any SVI fot this.
-amit singh
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide