[c-nsp] Lot of input errors on a NPE-G1 interface

Saku Ytti saku at ytti.fi
Thu May 24 05:28:29 EDT 2012


On (2012-05-24 10:56 +0200), Peter Rathlev wrote:

> connecting to anything that does not create a L2 loop, i.e. a bridge. We
> use Portfast and BPDU Guard on all links towards routers. That also

This is incredibly dangerous. Leak one BPDU from one customer EVPN
somewhere, and all customers are down in PE facing that metro.
PE<->Metro definitely should be BPDUfilter.

On customer ports, BPDUguard is apt, which you can enable per default for
edge/portfast ports, so you only need to configure porfast.

-- 
  ++ytti


More information about the cisco-nsp mailing list