Tp-Link T2600G-28MPS (TL-SG3424P) Руководство пользователя онлайн [128/379] 174195

Tp-Link T2600G-28MPS (TL-SG3424P) Руководство пользователя онлайн [128/379] 174195
will not performs the removing operation in the TC protect cycle. Such a mechanism prevents
the switch from frequently removing MAC address entries.
BPDU Protect
Ports of the switch directly connected to PCs or servers are configured as edge ports to
rapidly transit their states. When these ports receive BPDUs, the system automatically
configures these ports as non-edge ports and regenerates spanning trees, which may cause
network topology jitter. Normally these ports do not receive BPDUs, but if a user maliciously
attacks the switch by sending BPDUs, network topology jitter occurs.
To prevent this attack, MSTP provides BPDU protect function. With this function enabled on the
switch, the switch shuts down the edge ports that receive BPDUs and reports these cases to
the administrator. If a port is shut down, only the administrator can restore it.
BPDU Filter
BPDU filter function is to prevent BPDUs flood in the STP network. If a switch receives
malicious BPDUs, it forwards these BPDUs to the other switched in the network, which may
result in spanning trees being continuously regenerated. In this case, the switch occupying too
much CPU or the protocol status of BPDUs is wrong.
With BPDU filter function enabled, a port does not receive or forward BPDUs, but it sends out
its own BPDUs. Such a mechanism prevents the switch from being attacked by BPDUs so as to
guarantee generation the spanning trees correct.
Choose the menu Spanning TreeSTP SecurityPort Protect to load the following page.
Figure 7-10 Port Protect
The following entries are displayed on this screen:
116

Содержание

Скачать