Allow only VLANs 1 and 20 to traverse the trunk link.

Manually configure access ports that are not specifically intended for a trunk link.

Step 7.

In the local VLANs model, avoid VTP it is feasible to use manually allowed VLANs in a network on trunks.


Port Vlans allowed on trunk Et1 1 1,20 Port Vlans allowed and active in management domain Port Vlans in spanning tree forwarding state and not pruned Also notice that only VLANs 1 and 20 are allowed on the trunk.

For trunk ports, turn off DTP and configure it manually.

Following are some of the practices for VLAN design For the Local VLANs model, it is usually recommended to have only one to three VLANs per access module and, as discussed, limit those VLANs to a couple of access switches and the distribution switches.

1Q rather than ISL because it has better support for QoS and is a standard protocol.

Best Practices for VLANs and Trunking Usually, network designers design and implement the VLANs and their components depending on the business needs and requirements, but this section provides general best practices for implementing VLAN in a campus network.

Trunk configuration on SW1 SW1 config interface Ethernet 1 1 SW1 config if switchport trunk encapsulation dot1q SW1 config if switchport trunk allowed vlan 1,20 SW1 config if switchport mode trunk Trunk configuration on SW2 SW2 config interface Ethernet 1 2 SW2 config if switchport trunk encapsulation dot1q SW2 config if switchport trunk allowed vlan 1,20 SW2 config if switchport mode trunk If you do not explicitly allow VLANs to traverse the trunk, all traffic will be allowed to cross the link.

Verify that Ethernet 1 1 on SW1 is now trunking SW1 show interfaces trunk Port Mode Encapsulation Status Native vlan Et1 1 on 802.

Use any other VLAN except 1 to assign all the unused ports to it.

You have configured the link between SW1 and SW2 to carry data for both VLAN 1 and VLAN 20 PC2 ping 192.

Try to always have separate voice VLANs, data VLANs, management VLANs, native VLANs, black hole VLANs, and default VLANs VLAN 1.

