[c-nsp] 7600 (RSP720) good for 1000 x DHCP server config?

Tom Hill tom at ninjabadger.net
Tue Jul 13 10:22:31 EDT 2021


On 05/07/2021 12:20, chiel wrote:
> I might going to use a 7600 with RSP720 to terminate 1000 users, where
> each user has a own vlan and L3. I will also be making a 1000 DHCP
> config, one for each vlan.
> 
> My question is will the RSP720 have no problem with a 1000 x a DHCP
> config? Because the DHCP will be handled by the CPU I guess? I guess
> this wont be an issue but just want to check.
> 
> Other then a couple of static routes and fiber termination the 7600 will
> not be doing anything else.

My main concern with terminating segments on a SUP/RSP720 (in any
situation) would be MLD messages, which are punted. Even
link-local/site-local configuration will produce MLD join/part messages
for the associated solicited-node multicast groups (to enable DAD). A
few kpps of MLD will shoot the CPU load up.

The risks here are that flapping L1 links cause rapid or repeated
up/down of device interfaces, or (in my case) spammers adding and
removing IPv6 addresses quickly to give different source IP6 addresses.

Granted that there's some detail missing on the exact nature of this
connectivity you're providing, but it is of course worth bearing in mind
that even if you're not provisioning IPv6 forwarding (you should) most
devices available today will have an expectation of IPv6 connectivity &
and therefore will (or at least *should*) come with an IPv6 stack
enabled by default, and many will configure multiple addresses.

Might not matter, but these devices are well beyond their sell-by-date
for these functions.

-- 
Tom


More information about the cisco-nsp mailing list