With the VLAN Membership Policy Server (VMPS) Configuration window, you can:
Dynamic VLAN membership assigns end stations to VLANs when needed. The switch functions as the VLAN Query Protocol (VQP) client that queries the VMPS, such as a Catalyst 5000 switch. The server must be configured before you configure a dynamic-access port for the connection to the end-station. (For more information about configuring and troubleshooting the Catalyst 5000 switch as the VMPS, see the Catalyst 5000 Series Software Configuration Guide; for information on configuring dynamic-access ports, see the VLAN Membership help file.)
Initially, the dynamic-access port does not belong to a VLAN. No traffic is forwarded to or from this port. When the client receives the first packet from a new host on its dynamic-access port, it uses VQP to send the source MAC address to the VMPS. The VMPS provides the VLAN name to which this port must be assigned. The VMPS can also send an access denied or a port shutdown response if the VLAN is illegal on the port.
Caution: Dynamic-access ports are designed to work with end stations. Loss of connectivity can occur if you connect dynamic-access ports to switches or routers.
Fields in the VMPS Info tab have the following meaning:
Field | Description |
VLAN Query Protocol Version | The VQP client sends only VQP version 1 requests to the VMPS for VLAN assignment. This field is read-only. |
Current VMPS | The address of the VMPS server currently responding to VQP client requests. If no secondary servers are configured, the current VMPS server address and the primary VMPS server address are the same. By default, no primary or secondary servers are configured. If the current server is not the primary server, the switch tries to contact the primary server every 5 minutes. If contact is reestablished, the primary server becomes the current server again. This field is read-only. |
Primary VMPS | The address of the primary VMPS server that responds to VQP client requests. By default, no primary servers are configured. This field is read-only. |
Number of Retries | Number of times a client repeats requests if the VMPS does not respond. The default number of retries is 3, but you can change it (see Setting VMPS Client Parameter). |
Reconfirmation Interval | Queries are periodically sent to reconfirm VLAN membership of addresses
already learned on the port. By default, these messages are sent every 60 minutes, but you
can change the interval (see Setting VMPS Client
Parameters). The following status messages are valid: - reconfirm in progress - reconfirm completed successfully - reconfirm failed because no VMPS responded - no VMPS configured - no dynamic port configured - no hosts on dynamic port - no reconfirmation has been done |
By default, the client queries the VMPS every 60 minutes to reconfirm all VLAN assignments. You can change the reconfirmation interval or reconfirm the assignments on demand.
To reconfirm dynamic VLAN membership, click Refresh in the Reconfirmation Membership section.
Before configuring the switch (VMPS client) for dynamic VLAN membership, you must first set up the VMPS server. For information on setting up and troubleshooting the server, see the Catalyst 5000 Series Software Configuration Guide or the appropriate documentation.
To configure the client for dynamic VLAN membership:
To remove a server from the list of designated VMPS servers:
Note: If you delete all servers when dynamic-access ports are present, the switch cannot forward packets from new sources on these ports because it cannot query the VMPS.