![](https://pdfstore-manualsonline.prod.a.ki/pdfasset/c/53/c5389940-24a1-4c69-87eb-e19d572a9d0c/c5389940-24a1-4c69-87eb-e19d572a9d0c-bg1a.png)
VLANTagging
VLANTagging
FortiSwitch ports will process tagged and untagged Ethernet frames. Untagged frames do not carry any
VLANinformation.
Tagged frames include an additional header (the 802.1Q header) after the Source MAC address. This header
includes a VLANID.This allows the VLANvalue to be transmitted between switches.
The FortiSwitch provides port parameters to configure and manage VLAN tagging.
Native VLAN
You can configure a native VLANfor each port. The native VLAN is like a default VLANfor untagged incoming
packets. Outgoing packets for the native VLAN are sent as untagged frames.
The native VLANis assigned to any untagged packet arriving at an ingress port.
At an egress port, if the packet tag matches the native VLAN, the packet is sent out without the VLANheader.
Allowed VLANList
The Allowed VLANlist for each port specifies the VLAN tag values for which the port can transmit or receive
packets.
For a tagged packet arriving at an ingress port, the tag value must match a VLANon the Allowed VLANlist. The
native VLANis NOTan allowed value for an incoming tagged packet.
At an egress port, the packet tag must match the native VLAN or a VLANon the Allowed VLANlist.
26 FortiSwitchOS-3.2.0