398 | Private VLANs (PVLAN)w w w . d e l l . c o m | s u p p o r t . d e l l . c o m The results are:• The ports in community VLAN 4001 can communicate directly with each other and with promiscuousports.• The ports in community VLAN 4002 can communicate directly with each other and with promiscuousports.• The ports in isolated VLAN 4003 can only communicate with the promiscuous ports in the primaryVLAN 4000.• All the ports in the secondary VLANs (both community and isolated VLANs) can only communicatewith ports in the other secondary VLANs of that PVLAN over Layer 3, and only when you use the iplocal-proxy-arp command in the primary VLAN.In parallel, on S4810:• Te 0/3 is a promiscuous port and Te 0/25 is a PVLAN trunk port, assigned to the primary VLAN 4000.• Te 0/4-6 are host ports. Te 0/4 and Te 0/5 are assigned to the community VLAN 4001, while Te 0/6 isassigned to the isolated VLAN 4003.The results are:• The S4810 ports would have the same intra-switch communication characteristics as described abovefor the MXL 10/40GbE Switch.• For transmission between switches, tagged packets originating from host PVLAN ports in onesecondary VLAN and destined for host PVLAN ports in the other switch travel through thepromiscuous ports in the local VLAN 4000 and then through the trunk ports (0/25 in each switch).Inspecting the Private VLAN ConfigurationThe standard methods of inspecting configurations also apply in PVLANs:• Within INTERFACE and INTERFACE VLAN modes, to display the specific interface configuration,use the show config command.• To inspect the running-config, use the grep pipe option (show running-config | grep string). You candisplay a specific part of the running-config. Figure 22-6 shows the PVLAN parts of therunning-config from the switch in the topology diagram shown in Figure 22-3.Note: Even after you disable the ip-local-proxy-arp command (using the no ip-local-proxy-arp command) in asecondary VLAN, Layer 3 communication may happen between some secondary VLAN hosts until theARP timeout happens on those secondary VLAN hosts.