How to configure VLAN VPN/TAG IN TAG/QinQ/ on TP-Link L2/L3 Managed Switches?

VLAN-VPN (Virtual Private Network) function, the implement of a simple and flexible Layer 2 VPN technology, allows the packets with VLAN tags of private networks to be encapsulated with VLAN tags of public networks at the network access terminal of the Internet Service Provider. And these packets will be transmitted with double-tag across the public networks.

Now let´s learn how to configure the VLAN VPN on L2/L3 Managed Switches by the following example:

 

Network Topology:

 

As we can see,VLAN 2 is the private network while VLAN 20 is the public network, we are going to achieve the purpose that two Terminals can communicate with each other. The Provider Edge(T-3700G) encapsulate the private network’s datagram with outer layer tag and packets transmitted with double tags in Public Network.

 

qinq10.png

 

Here we take T-3700G and TL-SL3428 as an example.

 

The connection of Side A is like the following and the Side B is the same as Side A,here we take Side A as an example to config:

qinq5.png

 

Configuration on TL-SL3428:

 

  1. Create VLAN 2 contains port 3 tagged and port 8 untagged.

QINQQQQQ1.png

 

 

2. Set the Link type of port 3 as General and port 8 as Access. The pvid is 2.

3428-1.PNG

 

3428-2.PNG

 

Configuration on T-3700G:

  1. Create VLAN 2 contains port 3 tagged and VLAN 20 contains port 3 untagged and port 8 tagged.

qinqiqnqiqq.png

 

2. Set the Link type of port 3 and port 8 as General. The pvid is 20.

3700-1.PNG

 

3700-2.PNG

 

3. Enable the VLAN VPN mode and select port 8 as Up-link port.

3700-3.PNG

 

4.Select the port 3 and enable it.

3700-4.PNG

 

 

Configuration of side B is the same as this side A.

 

Now, the network will work as described Purpose.

 

This Article Suits for:
TL-SG5428 , T2700G-28TQ , TL-SG5412F
User Application Requirement | Updated 10-23-2015 07:02:18 AM