re: Blocking VTP traffic

From: Todd.Osterberg@compucom.com
Date: Thu Apr 21 2005 - 18:55:04 GMT-3


?
So, I lab'd up this discussion (config below) and didn't get the desired
results.

sw1 (gig0/1) ------ sw2 (gig0/1)

Both switches are set to vtp server w/ vtp domain name of cisco. Once the
intial config was done, I then created vlans on each switch to test that VTP
was working properly. Once this was happy, I applied the mac access-group to
sw1. I then created more vlans on sw2 and they were propogated to sw1. I've
tried using the hex value and decimal value for the vtp ethertype but it vtp
is still propogating. I've also tried using the 0100.000c.cccc
destination mac with the same results. Any ideas what I am missing?

TIA,

Todd

sw1
------
mac access-list extended block-vtp
 deny any any 0x2003 0x0
 permit any any

interface GigabitEthernet0/1
 mac access-group block-vtp in



This archive was generated by hypermail 2.1.4 : Tue May 03 2005 - 07:55:06 GMT-3