11-02-2020 03:54 AM
Hello,
On a new GNS3 VSP switch running VOSS 8.2 all ports are members of vlan 4048 called onboarding-vlan.
Haven’t seen this before and I was wondering what it is being used for.
Thanks, Klaus
Solved! Go to Solution.
11-02-2020 07:45 AM
Hi Klaus
With release 8.2 we have introduced the first step of zero-touch-onboarding. With 8.3 we will be introducing the second step. Step 1 is a per device functionality, while 8.3 will be expanding it to be a network wide onboarding solution.
8.2 puts all ports by default into a private VLAN, with 8.3 this PVLAN is extended to be a network wide ETREE. The idea is that the ETREE is terminated at one switch that provides access to the network management segment (DHCP, DNS, XMC, XIQ, Radius...). In addition, in 8.3 all ports will be up by default. This means, that you can power up a device and then it will:
The reason for the PVLAN/ETREE is to ensure we don’t just create an onboarding flooding domain that includes all ports of the network, but a securely segmented onboarding segment where devices can only "see” the management segment and nothing else.
For details and a demo of this, please go to my Extreme vConnect session under the ITWarrior topic.
I hope this helps.
Roger
11-03-2020 05:59 AM
yes, that’s the one. Thanks for sharing.
Roger
11-03-2020 12:24 AM
09-27-2023 09:00 AM
Here is a link to YT as the above no longer works
https://www.youtube.com/watch?v=m35pzpsXtlc starting at minute 10
11-02-2020 10:49 PM
Hi Roger,
Sounds exciting.
Since my searches didn’t take me where I wanted would you mind sharing the link to your vConnect session?
Much appreciated,
Klaus