Здравствуйте!
Обнаружили странный глюк на свитче 3200-28f A1 ревизии.
Не отрабатывает правило deny на порту
Код:
config limited_multicast_addr ports 26 access deny
мультикаст как работал, так и продолжает
причем есть еще один глюк: ПК подписывается на каналы, даже если убрать из конфига mcast_filter_profile и range с айпишниками
на C1 ревизии все работает отлично
подскажите куда копать? прошивка самая свежая, которую только нашел на ftp
DES-3200-28F:5#sh swi
Command: show switch
Device Type : DES-3200-28F Fast Ethernet Switch
MAC Address : 34-08-04-60-1C-70
IP Address : xxx.xxx.xxx.xxx
VLAN Name : MGMT
Subnet Mask : xxx.xxx.xxx.xxx
Default Gateway : xxx.xxx.xxx.xxx
Boot PROM Version : Build 1.00.B004
Firmware Version : Build 1.86.B006
Hardware Version : A1
Serial Number : PVCA1B1000213
System Name :
System Location :
System Uptime : 2 days, 18 hours, 36 minutes, 14 seconds
System Contact :
Spanning Tree : Disabled
GVRP : Disabled
IGMP Snooping : Enabled
VLAN Trunk : Disabled
802.1X : Disabled
Telnet : Enabled (TCP 23)
Web : Enabled (TCP 80)
RMON : Disabled
SSH : Disabled
SSL : Disabled
CLI Paging : Enabled
Syslog Global State: Disabled
Dual Image : Supported
Password Encryption Status : Disabled
настройки свитча
DES-3200-28F:5#sh conf cur incl "mcast"
Command: show config current_config include "mcast"
create mcast_filter_profile profile_id 1 profile_name basic
config mcast_filter_profile profile_id 1 add 234.0.1.1-234.0.1.100
config max_mcast_group ports 1-28 max_group 1024
config max_mcast_group ports 1-28 action drop
config max_mcast_group ports 1-28 ipv6 max_group 1024
config max_mcast_group ports 1-28 ipv6 action drop
DES-3200-28F:5#sh conf cur incl "limited"
Command: show config current_config include "limited"
config limited_multicast_addr ports 1-25 add profile_id 1
config limited_multicast_addr ports 26 access deny
DES-3200-28F:5#sh conf cur incl "igmp_sno"
Command: show config current_config include "igmp_sno"
enable igmp_snooping
config igmp_snooping data_driven_learning max_learned_entry 56
enable igmp_snooping multicast_vlan
create igmp_snooping multicast_vlan IPTV 55
config igmp_snooping multicast_vlan IPTV state enable
config igmp_snooping multicast_vlan IPTV add member_port 1-26
config igmp_snooping multicast_vlan IPTV add untag_source_port 27-28
config igmp_snooping vlan_name default state disable fast_leave disable report_suppression disable
config igmp_snooping data_driven_learning vlan_name default aged_out disable
config igmp_snooping querier all query_interval 125 max_response_time 10 robustness_variable 2 last_member_query_interval 1 state disable version 3
config igmp_snooping vlan_name IPTV fast_leave disable report_suppression disable
config igmp_snooping data_driven_learning vlan_name IPTV aged_out disable