[c-nsp] Broadcast storm control

Saku Ytti saku+cisco-nsp at ytti.fi
Thu Nov 8 11:58:11 EST 2007


On (2007-11-08 10:18 +0000), Phil Mayers wrote:
 
> mls qos protocol arp police 10 pps per-mac
> 
> A single host can kick out thousands of ARP requests/sec and thus
> trigger the rate limiter which then stops all ARP requests on all
> interfaces :o(

Indeed, essentially you just ask box to fall over earlier. Other
bit silly toggles are box wide unknown unicast rate-limiter (PFC3C)
and most silly of them all CEF receive rate-limiter.

-- 
  ++ytti


More information about the cisco-nsp mailing list