<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Shared Vlan tagging on DP in ONTAP Discussions</title>
    <link>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157452#M35741</link>
    <description>&lt;P&gt;In general, not a good idea to mix Tagged VLANs and access ports in the same Broadcast-Domain&lt;/P&gt;
&lt;P&gt;i.e. Broadcast-Domain Default with ports of e0M and a0a-77&lt;/P&gt;
&lt;P&gt;When using VLANs, I tend to not use the native VLAN on the IFGRP and try to get the network team to make the native VLAN something they do not use. Then use Tagged VLANs all the way.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For the Intercluster LIFs, I see people have those run on the same address space as MGMT. I tend to use Intercluster LIFs for just that. Make MGMT a separate VLAN or a different physical port&lt;/P&gt;</description>
    <pubDate>Wed, 01 Jul 2020 14:59:34 GMT</pubDate>
    <dc:creator>TMACMD</dc:creator>
    <dc:date>2020-07-01T14:59:34Z</dc:date>
    <item>
      <title>Shared Vlan tagging on DP</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157451#M35740</link>
      <description>&lt;P&gt;Hi. Is it advisable to tag Management Vlan on the port hosting the Intercluster LIF's ? I remember I came across this somewhere (probably in one of technical reports) that doing this exposes the replication traffic. Can somebody please help me guided in the correct direction?&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 11:02:50 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157451#M35740</guid>
      <dc:creator>not_a_Lone_wolf</dc:creator>
      <dc:date>2025-06-04T11:02:50Z</dc:date>
    </item>
    <item>
      <title>Re: Shared Vlan tagging on DP</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157452#M35741</link>
      <description>&lt;P&gt;In general, not a good idea to mix Tagged VLANs and access ports in the same Broadcast-Domain&lt;/P&gt;
&lt;P&gt;i.e. Broadcast-Domain Default with ports of e0M and a0a-77&lt;/P&gt;
&lt;P&gt;When using VLANs, I tend to not use the native VLAN on the IFGRP and try to get the network team to make the native VLAN something they do not use. Then use Tagged VLANs all the way.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For the Intercluster LIFs, I see people have those run on the same address space as MGMT. I tend to use Intercluster LIFs for just that. Make MGMT a separate VLAN or a different physical port&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jul 2020 14:59:34 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157452#M35741</guid>
      <dc:creator>TMACMD</dc:creator>
      <dc:date>2020-07-01T14:59:34Z</dc:date>
    </item>
    <item>
      <title>Re: Shared Vlan tagging on DP</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157453#M35742</link>
      <description>&lt;P&gt;Thanks a lot&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="UserName lia-user-name lia-user-rank-NetApp-A-Team lia-component-message-view-widget-author-username"&gt;&lt;A id="link_0" class="lia-link-navigation lia-page-link lia-user-name-link" href="https://community.netapp.com/t5/user/viewprofilepage/user-id/65619" target="_self"&gt;&lt;SPAN class="login-bold"&gt;TMAC_CTG&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;.The insights share are really informative. I also read in a NetApp's document that using Mgmt Vlan on Snap ports exposes the data replication traffic. Is this true?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="UserName lia-user-name lia-user-rank-NetApp-A-Team lia-component-message-view-widget-author-username"&gt;&lt;SPAN&gt;I would like to ask one more thing, if the Snap ports (physical, no ifgrps) on B (destination)are configured to host Intercluster Lifs for Clusters A&amp;nbsp; and if it's required&amp;nbsp; to set up a cascade from B-C, then would the following work: hosting an intercluster lif on a tagged VLAN on B(physical, no ifgrps) for customer's VLAN ? Assuming it's in the same ipspace to that of the customer's?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jul 2020 15:45:55 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157453#M35742</guid>
      <dc:creator>not_a_Lone_wolf</dc:creator>
      <dc:date>2020-07-01T15:45:55Z</dc:date>
    </item>
    <item>
      <title>Re: Shared Vlan tagging on DP</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157454#M35743</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For the first question, sounds reasonable. You should check the "firewall policy show" output. Different LIFs have different policies assigned.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For SnapMirror to work, you must have at least 1 (prefer 2) LIFs on each node of the source and destination controllers. Since you are going A-&amp;gt; B -&amp;gt; C and they way you phrase it I suspect A cannot talk to C then what you ultimately need to do is this:&lt;/P&gt;
&lt;P&gt;1. Setup SnapMirror on LIFs from A-&amp;gt;B&lt;/P&gt;
&lt;P&gt;2. Create a NEW IPSPACE on B for Intercluster LIFs from B to C.&lt;/P&gt;
&lt;P&gt;3. Create the LIFs on B in the new IPSPACE&lt;/P&gt;
&lt;P&gt;4. Create the LIFs on C&amp;nbsp; (standard IPSPACE should be OK)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For the replication to work, it require basically a full-mesh PING. So A would need to PING B.&lt;/P&gt;
&lt;P&gt;B however, since it talks to A and C would need to be able to PING A and C. By putting in different IPSPACES, B would need to ping all A nodes or Ping all C nodes and it can because they are in different IPspaces. Then A does not need to worry about C.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hopefully that makes a little sense!&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jul 2020 15:59:15 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157454#M35743</guid>
      <dc:creator>TMACMD</dc:creator>
      <dc:date>2020-07-01T15:59:15Z</dc:date>
    </item>
    <item>
      <title>Re: Shared Vlan tagging on DP</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157455#M35744</link>
      <description>&lt;P&gt;Thanks a ton&amp;nbsp;&lt;SPAN class="login-bold"&gt;&lt;A id="link_2" class="lia-link-navigation lia-page-link lia-user-name-link" href="https://community.netapp.com/t5/user/viewprofilepage/user-id/65619" target="_self"&gt;TMAC_CTG&lt;/A&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jul 2020 16:09:08 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Shared-Vlan-tagging-on-DP/m-p/157455#M35744</guid>
      <dc:creator>not_a_Lone_wolf</dc:creator>
      <dc:date>2020-07-01T16:09:08Z</dc:date>
    </item>
  </channel>
</rss>

