Re: switchport protected

From: Scott Morris <smorris_at_ine.com>
Date: Mon, 01 Feb 2010 16:06:12 -0500

 Do you have to have any client-to-client communications? If no, then
you're good. If yes, then it's not. :) The older switches may not
have the best security controls for you if you are trying to filter a
single type of traffic.

Scott Morris, CCIEx4 (R&S/ISP-Dial/Security/Service Provider) #4713,

JNCIE-M #153, JNCIS-ER, CISSP, et al.

JNCI-M, JNCI-ER

evil_at_ine.com

Internetwork Expert, Inc.

http://www.InternetworkExpert.com

Toll Free: 877-224-8987

Outside US: 775-826-4344

Knowledge is power.

Power corrupts.

Study hard and be Eeeeviiiil......

Jack wrote:

  Old 3500 XL switches do not have DHCP snooping.
  I was wondering if we set "sw prot" on all client ports, will it
  address the DHCP bogie server problem? What is the drawback of
  setting all client ports to protected mode?

  Thanks,
  Jack

  Blogs and organic groups at http://www.ccie.net

  _______________________________________________________________________
  Subscription information may be found at:
  http://www.groupstudy.com/list/CCIELab.html

Blogs and organic groups at http://www.ccie.net
Received on Mon Feb 01 2010 - 16:06:12 ART

This archive was generated by hypermail 2.2.0 : Mon Mar 01 2010 - 06:28:35 ART