Jump to content
Калькуляторы

HP: Loopback protection и Loopback Detection разные вещи?

На моделях постарше есть опция Security > Loopback Detection

 

На серии 1910 есть только Network > MSTP > Port Setup > Protection:

 

Edged Port, Root Protection, Loop Protection

 

Loop Protection - Enable the loop guard function.

 

By keeping receiving BPDUs from the upstream device, a device can maintain the state of the root port and other blocked ports. These BPDUs may get lost because of network congestion or unidirectional link failures. The device will re-elect a root port, and blocked ports may transit to the forwarding state, causing loops in the network. The loop guard function is used to address such a problem.

 

===

 

Топология сети звезда, колец нет, при включении Loop Protection и подключении новых портов (клиенты, не коммутаторы с BPDU) иногда возникает запись "Instance 0's port GigabitEthernet1/0/23 detected a topology change." и отрубаются другие порты.

 

Т.е. судя по описанию Loopback protection и Loopback Detection это разные вещи. И Loop Protection это именно защита от кольца в кольцевой топологии, а если дебил решит две соседние розетки соединить патч-кордом, она не поможет?

 

Другие виды "защиты" так же бесмысленны?

 

Edged Port

Set the port as an edge port.

 

Some ports of access layer devices are directly connected to PCs or file servers, which cannot generate BPDUs. You can set these ports as edge ports to achieve fast transition for these ports.

 

HP recommends that you enable the BPDU guard function in conjunction with the edged port function to avoid network topology changes when the edge ports receive configuration BPDUs.

 

Root Protection

Enable the root guard function.

 

Configuration errors or attacks may result in configuration BPDUs with their priorities higher than that of a root bridge, which causes a new root bridge to be elected and network topology change to occur. The root guard function is used to address such a problem.

 

UPD: На серии 1910 опция Loopback Detection тоже есть, однако ее можно найти только в SSH после перехода в system-view. Интересно, почему ее убрали из вэб морды?

Edited by amper

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.