Frame processing
Ingress processing ensures that the port accepts only frames with allowed VLAN values (untagged frames are assigned the native VLAN, which is implicitly allowed). At this point, all frames are now tagged with a valid VLAN.
The frame is sent to each egress port that can send the frame (because the frame tag value matches the native VLAN or an Allowed VLAN on the port).
Ingress port
For an untagged frame:
- The frame is tagged with the native VLAN and allowed to proceed.
- The Allowed VLAN list is ignored.
For a tagged frame:
- The tag VLAN value must match an Allowed VLAN or the native VLAN.
- The frame retains the VLAN tag and is allowed to proceed.
To control what types of frames are accepted by the port, use the following commands:
config switch interface
edit <interface>
set discard-mode <all-tagged | all-untagged | none>
end
Variable |
Description |
---|---|
all-tagged |
Tagged frames are discarded, and untagged frames can enter the switch. |
all-untagged |
Untagged frames are discarded, and tagged frames can enter the switch. |
none |
By default, all frames can enter the switch, and no frames are discarded. |
Egress port
All frames that arrive at an egress port are tagged frames.
If the frame tag value is on the Allowed VLAN list, the frame is sent out with the existing tag.
If the frame tag value is the native VLAN or on the Untagged VLAN list, the tag is stripped, and then the frame is sent out.
Otherwise, the frame is dropped.