[c-nsp] 2960S vlan ACL eating some L2 transit packets!?

Chuck Church chuckchurch at gmail.com
Mon Jan 13 14:59:31 EST 2014


Is there a bug that is setting the Ethernet broadcast bit accidentally
internally?

Chuck

-----Original Message-----
From: cisco-nsp [mailto:cisco-nsp-bounces at puck.nether.net] On Behalf Of
Patrick M. Hausen
Sent: Monday, January 13, 2014 2:16 PM
To: Gert Doering
Cc: cisco-nsp at puck.nether.net
Subject: Re: [c-nsp] 2960S vlan ACL eating some L2 transit packets!?

Hi, Gert,

Am 13.01.2014 um 17:36 schrieb Gert Doering <gert at greenie.muc.de>:
> Question 1: is that documented anywhere?  ACLs on "interface vlan X" on
>            a layer2-only switch used to only apply to management traffic,
>            never ever to transit traffic

http://www.cisco.com/en/US/docs/switches/lan/catalyst2960/software/release/1
2.2_55_se/configuration/guide/2960scg.pdf

Looks to me like you are correct. pp. 31-18 ff.

Bug?

Best regards
Patrick M. Hausen
Leiter Netzwerke und Sicherheit
--
punkt.de GmbH * Kaiserallee 13a * 76133 Karlsruhe Tel. 0721 9109 0 * Fax
0721 9109 100
info at punkt.de       http://www.punkt.de
Gf: Jürgen Egeling      AG Mannheim 108285







More information about the cisco-nsp mailing list