Здравствуйте!
Возможно ли одновременно использовать Mac Notification совместно с IP-MAC Binding?
Нет ли каких-либо ограничений?
Я попытался включить, и в трапах Mac Notification получил очень много "флудящих" маков.
В частности, на DES-3028:
Код:
2.50.B08
config mac_notification interval 120 historysize 500
enable mac_notification
config mac_notification ports 1-24 enable
config mac_notification ports 25-28 disable
disable address_binding dhcp_snoop
enable address_binding trap_log
config address_binding ip_mac ports 1-24 state enable loose allow_zeroip enable forward_dhcppkt enable
config address_binding ip_mac ports 1-28 mode arp stop_learning_threshold 500
config address_binding dhcp_snoop max_entry ports 1-24 limit no_limit
config address_binding ip_mac ports 25-28 state disable allow_zeroip disable forward_dhcppkt enable
config address_binding dhcp_snoop max_entry ports 25-28 limit 5
На 24 порту заблокированный мак: 00:1b:11:6b:4f:c0
В трапах Mac notification сыпется:
Код:
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:54:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
2010-07-19 09:56:48 ip 10.90.90.90 sw 1 port 24 mac 00:1b:11:6b:4f:c0 delete
Под 40 записей в 2 минуты.
Вероятно, в те моменты, когда от данного IP есть трафик.
Если поменять привязку на strict, трапы с этим маком все равно будут сыпаться.
Похожая картина и на 3526/3550. Но там флуд - записи не просто delete, а сначала insert, затем delete. И не только для заблокированных маков.