nanog mailing list archives

Re: external L2 ethernet connections


From: Adam Davenport <adam () choopa com>
Date: Fri, 20 Feb 2009 09:59:00 -0500

If you're using a Cisco device on your side, you'll likely want to disable MOP as well:

http://www.ciscotaccc.com/kaidara-advisor/lanswitching/showcase?case=K20523308

Adam Davenport / adam () choopa com
www.choopa.com / 1.866.2.CHOOPA



Joe Maimon wrote:
Does anyone have a best practice list of things to disable/filter/turn off on ethernet ports l2 connected to other AS's

cdp
stp
switchport negotiate
vtp
if trunking, limit vlans, no vlan1

So on so forth.

Switches do so many darn things all by themselves, as any packet capture shows.

Thanks,

Joe




Current thread: