cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
14932
Views
10
Helpful
5
Replies

VLAN vs PVLAN

Mani kandan
Level 1
Level 1

Hi ,,

I am having the doubts about PVLAN ? What is the main difference between VLAN and PVLAN ?

2 Accepted Solutions

Accepted Solutions

cciepending
Level 1
Level 1

Hi

In reality, different VLANs normally map to different IP subnets. When we split a VLAN using PVLANs, hosts in different PVLANs still belong to the same IP subnet

View solution in original post

reza.horrieh
Level 1
Level 1

Hi

Mainly part of the answer that has been missed is that although users are in the same IP subnet (in terms of PVLAN) they can not reach each other through the local network!

If they need to reach each other they should go out and come in to the LAN!

PVLAN is mainly used in ISPs so that they can prevent their customers from accessing each other through the LAN while saving the address space!

If they would use normal VLANs it would need a huge amount of IP addresses to accommodate this goal.

Using PVLANs if you retrieve your IP address while connecting to an ISP you would surprisingly consider that your net mask is like /32 that is strange.

It is a trick you are in a subnet! You can not reach anywhere else on the subnet unless your gateway.

If you want to access other routers residing on your subnet you should access the through internet.

There is another way to accomplish the task of isolation two systems from accessing each other which is called Protected Port! But it is limited to the hosts on the same swich while PVLAN can do it on different switches.

Wish it would be helpfull!

Sent from Cisco Technical Support iPhone App

View solution in original post

5 Replies 5

cciepending
Level 1
Level 1

Hi

In reality, different VLANs normally map to different IP subnets. When we split a VLAN using PVLANs, hosts in different PVLANs still belong to the same IP subnet

Dear Saeed,

Thanks for u r replie ,,, feel good

reza.horrieh
Level 1
Level 1

Hi

Mainly part of the answer that has been missed is that although users are in the same IP subnet (in terms of PVLAN) they can not reach each other through the local network!

If they need to reach each other they should go out and come in to the LAN!

PVLAN is mainly used in ISPs so that they can prevent their customers from accessing each other through the LAN while saving the address space!

If they would use normal VLANs it would need a huge amount of IP addresses to accommodate this goal.

Using PVLANs if you retrieve your IP address while connecting to an ISP you would surprisingly consider that your net mask is like /32 that is strange.

It is a trick you are in a subnet! You can not reach anywhere else on the subnet unless your gateway.

If you want to access other routers residing on your subnet you should access the through internet.

There is another way to accomplish the task of isolation two systems from accessing each other which is called Protected Port! But it is limited to the hosts on the same swich while PVLAN can do it on different switches.

Wish it would be helpfull!

Sent from Cisco Technical Support iPhone App

Hi Reza,

Thanks for u r replies.. Clarity is good.

thanks reza .. perfect !

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card