- Management VLAN switches → 109 - Puerto 47 stack: trunk, native VLAN 109 - SVI stack bcn01-lab-stack01: VLAN 109, 10.2.55.2/24, GW 10.2.55.1 - MX puerto 7: trunk, native VLAN 109 - Firewall: allow MANAGEMENT → internet (primera regla) - Puerto 1 eqt-lab-st01-sw01: VLAN 110 (SERVERS)
16 lines
503 B
HCL
16 lines
503 B
HCL
# Configuración de puertos LAN del firewall MX
|
|
# port_id: número del puerto físico en el MX
|
|
# type: "trunk" o "access"
|
|
# vlan: VLAN nativa (untagged) en trunk, o VLAN de acceso en access
|
|
appliance_ports = [
|
|
{
|
|
# Puerto 7: trunk hacia el stack de switches
|
|
# VLAN nativa 109 (MANAGEMENT), permite todas las VLANs
|
|
port_id = "7"
|
|
enabled = true
|
|
type = "trunk"
|
|
vlan = 109 # MANAGEMENT - VLAN nativa (untagged)
|
|
allowed_vlans = "all"
|
|
},
|
|
]
|