• Ports in the primary VLAN are trusted ports by default.

  • The following features cannot be configured on a secondary VLAN:

    • DHCP snooping

    • DHCPv6 snooping

    • DHCP relay

    • DHCP server

    • DHCP client

    • DHCP server IPv4/IPv6 address configuration

    • IPv4/IPv6 gateway address configuration

    • Static IP binding in the DHCP binding database

    When you configure any of these features on a primary VLAN, the configuration automatically applies to all secondary VLANs associated with that primary VLAN.

  • You can use the show dhcp-snooping binding private-vlan command to show DHCP snooping information for primary and secondary VLANs in the PVLAN.