Comparing Networking Features
VLAN, PVLAN, and VXLAN are configurations that enable you to isolate network traffic.
A VLAN is a subdivision of a local area network at the datalink layer of the stack. A
PVLAN enables you to divide a VLAN into sub-VLANs. A VXLAN enables you to create a Layer
2 network on top of a Layer 3 network.
The following table compares VLAN, PVLAN, and VXLAN technologies with respect to how
you might want to isolate networks on your site.
Table 3 Feature Comparison: VLAN, PVLAN, and VXLAN
|
|
|
|
When to use
|
In local area networks that use switch technology
|
When VLANs are required to share the same IP subnet for better
isolation
|
In geographically dispersed data centers or in a cloud
environment
|
Network technology type
|
Layer 2
|
Layer 2
|
Overlay (Layer 2 over UDP)
|
Number of isolated networks
|
Up to 4094 with 12 bit VLAN IDs
|
More than regular VLANs with 12 bit VLAN IDs
|
Up to 16 million with 24 bit VXLAN IDs
|
Level of isolation
|
Divides the network into subnetworks without having to add
resources to the physical network environment
|
Divides a regular VLAN (primary) into sub-VLANs (secondary)
|
Creates a Layer 2 network over a Layer 3 network
|
Use with virtualization (zones)
|
Enables creation of multiple virtual networks within a single
network unit
|
Enables network isolation between zones which are in the same VLAN
without introducing any additional VLANs
|
Enables creation of multiple virtual networks between different
hosts on a Layer 3 network
|
Broadcast domain
|
Single broadcast domain partitioned by VLAN segments
|
Partitions one broadcast domain into multiple subdomains
|
Single broadcast domain partitioned by VXLAN segments
|
Overlapping IP addresses
|
Not supported
|
Not supported
|
Supported if the IP addresses are unique within a VXLAN
segment
|
Enabling IP multicast
|
Not required
|
Not required
|
Required
|
Configuration tool
|
dladm create-vlan
dladm create-vnic
|
dladm create-vlan
dladm create-vnic
|
dladm create-vxlan
|
|