Desktop switch kills routing

Desktop switch kills routing

Secure Home | Search | About
 General Computer Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Desktop switch kills routing nntp chip 11-30-2004
Posted by nntp chip on November 30, 2004, 10:19 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Hello all,



I run a network where three different lan:s are used. Between the
buildings at every site the traffic flows through tagged ports in layer-2
switches. (ASCII-art and switchmodels below) When traffic need to go
somewhere outside that site a layer-3 switch routes it onto a carrier
network kept separated from the three other vlan:s.

Enabled spanning-tree on all switches to kill off nasty loops.

So far so good.

Then some student connected a simple desktop-switch and made a loop within
that little switch. Somehow the spanning tree did not work correctly in
that situation. The entire student-vlan stopped dead. While searching for
what was going on, the administration people started complaining too; They
could reach the local servers, but remote servers and internet was
unreachable.

Set up lab to study things a little closer.

Found out that when one of the vlan:s was looping, the other vlan:s worked
within that site, but routing soon stopped in the layer-3 switch. The very
second i disconnected the offending desktop-switch everything went back to
normal again.


Any ideas how to stop this from happening and keep the routing going? The
admin-network Must Always Be Reachable, so I dont like the idea that some
lousy desktop-switch can wreak such havoc...

TIA

------------

layer-2 switches are D-Link DES-3526
layer-3 switches are D-Link DES-3326S, DGS-3324SR, DGS-3312SR




vlan-10: link-net that connect all sites togehter.
vlan-110: students
vlan-120: administration
vlan-130: public hotspots etc.


(carrier network)
|
| vlan-10
|
__|_________________
| |
| switch-1 (layer 3) |
|____________________|
|
|
| tagged link with vlans-110,120,130
|
________________|___
| |
| switch-2 (layer 2) |
|____________________|
| | | |
| | | |
110 120 130 |
| tagged link with vlans-110,120,130


Similar ThreadsPosted
Used Cisco Used Switch Used Cisco Router Used Cisco Switch At LinkWaves Corp August 16, 2006, 3:34 pm
Skype Based Remote Desktop & Netmeeting January 6, 2006, 2:55 am
Can I use a USB Thumb Drive to act as a key to allow access to files on a Desktop PC? June 5, 2006, 9:55 am
Secure Authentication for Remote Desktop Protocol July 18, 2007, 7:24 pm
AD authentication via Nortel 450 switch December 21, 2004, 1:17 pm
Concept of Route Once, Switch Many October 3, 2006, 4:30 pm
Computer Forensics - Shutdown or Switch-Off August 23, 2006, 10:47 am

The site map in XML format XML site map

Contact Us | Privacy Policy