[c-nsp] backup with STP

Gert Doering gert at greenie.muc.de
Wed Sep 28 09:14:37 EDT 2005


Hi,

On Wed, Sep 28, 2005 at 04:06:27PM +0300, Andris Zarins wrote:
> Second - completely agree with Aivars - don't run any kind of STP with
> devices NOT under your control. Interoperability is only one of problems
> you might face, perhaps even not the most painful one. Imagine that
> under some conditions, customer starts telling your network, that his
> device is the root bridge, and if your network believes it, I guess that
> might mean somewhat like 'dead end'... 

Well, of course you'll only run STP with the customer equipment for 
those VLANs that their stuff is on - so all they can do is hose their
own VLAN.

Running an open trunk with all internal VLANs toward customer equipment
is much more dangerous than just STP issues.

gert
-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             gert at greenie.muc.de
fax: +49-89-35655025                        gert at net.informatik.tu-muenchen.de


More information about the cisco-nsp mailing list