RE: vlan minimization

From: Church, Chuck (cchurch@wamnetgov.com)
Date: Fri Nov 14 2003 - 11:05:22 GMT-3


The fact that the switch won't send any VLAN 1 user traffic on the link is enough to stop any loop. The only traffic allowed out of the switch on VLAN 1 would be switch-originated: CDP, VTP, and the channel/trunk negotiation protocols. As long as it's a Cisco switch on the other end, they won't be propagated beyond there, so there's no chance of looping. An unmanaged switch might not understand CDP or VTP and may propagate it. Same with other vendor's managed switches. So I guess if you're going to use it, use it on every switch on your network. If you're network is mixed vendor, I think you're off not using it though...

Chuck Church
CCIE #8776, MCNE, MCSE
Wam!Net Government Services
13665 Dulles Technology Dr. Ste 250
Herndon, VA 20171
Office: 703-480-2569
Cell: 703-819-3495
cchurch@wamnetgov.com
PGP key: http://pgp.mit.edu:11371/pks/lookup?op=index&search=cchurch%40wamnetgov.com

-----Original Message-----
From: Ozgur Guler (Garanti Teknoloji) [mailto:OzgurG@garanti.com.tr]
Sent: Friday, November 14, 2003 2:30 AM
To: 'Ccielab (E-mail)
Subject: vlan minimization

hello group,

cco says
"To reduce the risk of spanning-tree loops or storms, you can disable VLAN 1
on any individual VLAN trunk port by removing VLAN 1 from the allowed list.
This is known as VLAN 1 minimization. VLAN 1 minimization disables VLAN 1 (the
default VLAN on all Cisco switch trunk ports) on an individual VLAN trunk
link. As a result, no user traffic, including spanning-tree advertisements, is
sent or received on VLAN 1. "
isnt that statement somewhat contradictory by itself...
it says "To reduce the risk of spanning-tree loops or storms"
then it says no user traffic, including spanning-tree advertisements, is sent
or received on VLAN 1.
afaik, blocking spanning tree advertisement is "a reason" for spt loops.
i would be happy if someone can shed some light on this one.

Ozgur

This message and attachments are confidential and intended solely for the
individual(s) stated in this
message.If you received this message although you are not the addressee you
are responsible to keep the
message confidential .The sender has no responsibility for the accuracy or
correctness of the
information in the message and its attachments.Our company shall have no
liability for any changes
or late receiving,loss of integrity and confidentiality,viruses and any
damages caused in
anyway to your computer system.

Bu mesaj ve ekleri mesajda gonderildigi belirtilen kisi/kisilere ozeldir ve
gizlidir.Bu mesajin muhatabi
olmamaniza ragmen tarafiniza ulasmis olmasi halinde mesaj iceriginin gizliligi
ve bu gizlilik yukumlulugune
uyulmasi zorunlulugu tarafiniz icin de soz konusudur.Mesaj ve eklerinde yer
alan bilgilerin dogrulugu ve
guncelligi konusunda gonderenin ya da sirketimizin herhangi bir sorumlulugu
bulunmamaktadir.Sirketimiz
mesajin ve bilgilerinin size degisiklige ugrayarak veya gec ulasmasindan,
butunlugunun ve gizliliginin
korunamamasindan, virus icermesinden ve bilgisayar sisteminize verebilecegi
herhangi bir zarardan
sorumlu tutulamaz.



This archive was generated by hypermail 2.1.4 : Fri Dec 12 2003 - 12:29:11 GMT-3