cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1252
Views
0
Helpful
6
Replies

Broadcast prevention on switch

tarnhundal
Level 1
Level 1

HI,

                 I am getting some broadcast problems at some sites with L2 and L3 switches.Actually at each site both L2 and L3 switches are connected with non-manageable switches or hubs , so i m getting to much broadcast packets on those interfaces. I have tried to stop this with storm-control feature and then with ACLs. In ACL i have denied 255.255.255.255 and even broadcast IP of those subnets but still the broadcast packets are coming with same pace. I have also tried flow control but no gain in it. Plz help me to sort out this issue.

Thanks

Taran

6 Replies 6

Ganesh Hariharan
VIP Alumni
VIP Alumni

HI,

                 I am getting some broadcast problems at some sites with L2 and L3 switches.Actually at each site both L2 and L3 switches are connected with non-manageable switches or hubs , so i m getting to much broadcast packets on those interfaces. I have tried to stop this with storm-control feature and then with ACLs. In ACL i have denied 255.255.255.255 and even broadcast IP of those subnets but still the broadcast packets are coming with same pace. I have also tried flow control but no gain in it. Plz help me to sort out this issue.

Thanks

Taran

Hi Taran,

Have you tried configuring storm-control broadcast on switch port, check out the below link for more information about the same :-

http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.1E/native/configuration/guide/storm.html

Hope to help !!

Ganesh.H

HI Ganesh,

                         I have tried this method but didnt get result. Even I set storm control for broadcast to 0.0.

thanks

Taran

Leo Laohoo
Hall of Fame
Hall of Fame

Get rid of your un-managed switch and hub.  It doesn't matter what commands you've got if these devices are there.  In the end, the broadcast can kill your switches.

Disable spanning-tree portfast and enable spanning-tree bpduguard enable.

portfast is not enabled on that int and there is hub . I dont think BPDU guard will help in this because hub doesnt send bpdu. plz let me know other solutions.

regards,

Taran

Enable port security and set for only 1 MAC address.

Thanks for reply. Actually the problem is I cant bind only one MAC because there may be more IP addresses because I have already given a IP pool to that LAN segment.

Review Cisco Networking products for a $25 gift card