Hi, yes, that is a standard deployment. It is also possible to have a second link between vlan 1 and vlan 200 as a backup path.
Here is a live config:
interface FastEthernet0/2
switchport access vlan 100
switchport mode access
spanning-tree portfast
end
interface FastEthernet0/5
switchport access vlan 200
switchport mode access
spanning-tree portfast
The switch should be running Per-Vlan STP for this to work, else it thinks there is a loop.
'spanning-tree bpdufilter enable' or equivalent might also help in some cases where its not possible e.g. where both inside and outside vlan is on the same trunk port
interface FastEthernet0/5
description Single-NIC-ESXi
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 30,101
switchport mode trunk
spanning-tree portfast trunk
spanning-tree bpdufilter enable