cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1238
Views
0
Helpful
6
Replies

Broadcast prevention on switch

tarnhundal
Level 1
Level 1

HI,

                 I am getting some broadcast problems at some sites with L2 and L3 switches.Actually at each site both L2 and L3 switches are connected with non-manageable switches or hubs , so i m getting to much broadcast packets on those interfaces. I have tried to stop this with storm-control feature and then with ACLs. In ACL i have denied 255.255.255.255 and even broadcast IP of those subnets but still the broadcast packets are coming with same pace. I have also tried flow control but no gain in it. Plz help me to sort out this issue.

Thanks

Taran

6 Replies 6

Ganesh Hariharan
VIP Alumni
VIP Alumni

HI,

                 I am getting some broadcast problems at some sites with L2 and L3 switches.Actually at each site both L2 and L3 switches are connected with non-manageable switches or hubs , so i m getting to much broadcast packets on those interfaces. I have tried to stop this with storm-control feature and then with ACLs. In ACL i have denied 255.255.255.255 and even broadcast IP of those subnets but still the broadcast packets are coming with same pace. I have also tried flow control but no gain in it. Plz help me to sort out this issue.

Thanks

Taran

Hi Taran,

Have you tried configuring storm-control broadcast on switch port, check out the below link for more information about the same :-

http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.1E/native/configuration/guide/storm.html

Hope to help !!

Ganesh.H

HI Ganesh,

                         I have tried this method but didnt get result. Even I set storm control for broadcast to 0.0.

thanks

Taran

Leo Laohoo
Hall of Fame
Hall of Fame

Get rid of your un-managed switch and hub.  It doesn't matter what commands you've got if these devices are there.  In the end, the broadcast can kill your switches.

Disable spanning-tree portfast and enable spanning-tree bpduguard enable.

portfast is not enabled on that int and there is hub . I dont think BPDU guard will help in this because hub doesnt send bpdu. plz let me know other solutions.

regards,

Taran

Enable port security and set for only 1 MAC address.

Thanks for reply. Actually the problem is I cant bind only one MAC because there may be more IP addresses because I have already given a IP pool to that LAN segment.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card