From: Ozgur Guler (Garanti Teknoloji) (OzgurG@garanti.com.tr)
Date: Fri Nov 14 2003 - 05:42:46 GMT-3
i got your point.
but lets say we have a switch to switch port,
and the question asks "only allow vlan x and y over that trunk"
shoudnt one allow vlan 1 also, that case.
Ozgur
-----Original Message-----
From: Jay Hennigan [mailto:jay@west.net]
Sent: Friday, November 14, 2003 9:58 AM
To: Ozgur Guler (Garanti Teknoloji)
Cc: 'Ccielab (E-mail)
Subject: Re: vlan minimization
On Fri, 14 Nov 2003, Ozgur Guler (Garanti Teknoloji) wrote:
> cco says
> "To reduce the risk of spanning-tree loops or storms, you can disable VLAN 1
> on any individual VLAN trunk port by removing VLAN 1 from the allowed list.
> This is known as VLAN 1 minimization. VLAN 1 minimization disables VLAN 1 (the
> default VLAN on all Cisco switch trunk ports) on an individual VLAN trunk
> link. As a result, no user traffic, including spanning-tree advertisements, is
> sent or received on VLAN 1. "
> isnt that statement somewhat contradictory by itself...
> it says "To reduce the risk of spanning-tree loops or storms"
> then it says no user traffic, including spanning-tree advertisements, is sent
> or received on VLAN 1.
> afaik, blocking spanning tree advertisement is "a reason" for spt loops.
> i would be happy if someone can shed some light on this one.
By default, VLAN 1 is part of the trunk, and is also the default VLAN
for access on all ports not configured otherwise. If VLAN 1 is trunked
throughout the network, then spanning-tree recalculations may take place
whenever a port bounces that's part of VLAN 1.
By removing it from the trunk link, bouncing ports that are members of
the default VLAN will not propagate BPDUs (or any user traffic) over
the trunk. If you want user traffic to be trunked, the access ports must
be configured to be other than VLAN 1.
This message and attachments are confidential and intended solely for the individual(s) stated in this
message.If you received this message although you are not the addressee you are responsible to keep the
message confidential .The sender has no responsibility for the accuracy or correctness of the
information in the message and its attachments.Our company shall have no liability for any changes
or late receiving,loss of integrity and confidentiality,viruses and any damages caused in
anyway to your computer system.
Bu mesaj ve ekleri mesajda gonderildigi belirtilen kisi/kisilere ozeldir ve gizlidir.Bu mesajin muhatabi
olmamaniza ragmen tarafiniza ulasmis olmasi halinde mesaj iceriginin gizliligi ve bu gizlilik yukumlulugune
uyulmasi zorunlulugu tarafiniz icin de soz konusudur.Mesaj ve eklerinde yer alan bilgilerin dogrulugu ve
guncelligi konusunda gonderenin ya da sirketimizin herhangi bir sorumlulugu bulunmamaktadir.Sirketimiz
mesajin ve bilgilerinin size degisiklige ugrayarak veya gec ulasmasindan, butunlugunun ve gizliliginin
korunamamasindan, virus icermesinden ve bilgisayar sisteminize verebilecegi herhangi bir zarardan
sorumlu tutulamaz.
This archive was generated by hypermail 2.1.4 : Fri Dec 12 2003 - 12:29:11 GMT-3