Here is an example.. Vlan 83 is the promiscuous VLAN, I left in a port on vlan 230 that has a host on it.
!
no file verify auto
!
spanning-tree mode pvst
spanning-tree extend system-id
spanning-tree vlan 83,100-101,210,230,248-250 priority 24576
!
vlan internal allocation policy ascending
!
vlan 83
name DMZ_VLAN
private-vlan primary
private-vlan association 100-101,210,230,248
!
vlan 100
name hinfwe-vlan
private-vlan community
!
vlan 101
name hinneo-vlan
private-vlan community
!
vlan 210
name IPASS
private-vlan community
!
vlan 230
name DNS-GSS
private-vlan community
!
vlan 248
name ADP-Internal
private-vlan community
!
!
!
!
interface GigabitEthernet1/0/1
description GSS-01 83.200
switchport private-vlan host-association 83 230
switchport mode private-vlan host
no logging event link-status
speed 100
duplex full
no snmp trap link-status
spanning-tree portfast
spanning-tree guard root
!
interface GigabitEthernet1/0/24
description Firewall_Uplink
switchport access vlan 83
switchport private-vlan mapping 83 100-101,210,230,248-250
switchport mode private-vlan promiscuous
speed 1000
duplex full
spanning-tree portfast
spanning-tree guard root
HTH
CHris