[c-nsp] 2948G replacement?

Gert Doering gert at greenie.muc.de
Mon Aug 30 18:07:20 EDT 2004


Hi,

On Mon, Aug 30, 2004 at 01:37:21PM -0700, matthew zeier wrote:
> I have a handful of 2948Gs that cause me no end of grief, mostly because 
> they can't handle inbound DDoS or, in odd cases, because STP fails and a 
> trunk that should be blocking starts fowarding and takes the switch down 
> with it.

Is that a 2948G or a 2948G-L3?  

If it's a 2948G, why is it affecte by DDoS?  The management VLAN should
not be reachable by the outside world, so DDoSes should not be able to
affect the 2948G at all.

Our experience with the 2948G was very good (standard rock solid CatOS
switch, albeit lacking IGMP snooping), while the 2948G-L3 is just pure and
solid crap.

These days, we use 2950Gs for smaller L2-only LANs and are quite happy
with them.

gert

-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             gert at greenie.muc.de
fax: +49-89-35655025                        gert at net.informatik.tu-muenchen.de


More information about the cisco-nsp mailing list