- Community Home
- >
- Networking
- >
- Legacy
- >
- Switches, Hubs, Modems
- >
- Re: Rogue Switches
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Forums
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-29-2008 08:30 AM
тАО02-29-2008 08:30 AM
Rogue Switches
I was wondering what everyone else what doing to fight the battle of employees or contractors bringing in their own switches and hooking them up to the network.
Thanks
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-29-2008 04:52 PM
тАО02-29-2008 04:52 PM
Re: Rogue Switches
Your best option is 802.1X, but it's not so simple to implement.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-02-2008 06:37 AM
тАО03-02-2008 06:37 AM
Re: Rogue Switches
I agree with Matt, Port Security is your best solution with one MAC address that can be learned dynamically.
802.1x can also help but its not meant to that purpose.
Deploying port security is easy :
http://cdn.procurve.com/training/Manuals/3500-5400-6200-8200-ASG-Jan08-14-PortSecurity.pdf
Good Luck !!!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-03-2008 04:24 AM
тАО03-03-2008 04:24 AM
Re: Rogue Switches
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО03-03-2008 08:31 AM
тАО03-03-2008 08:31 AM
Re: Rogue Switches
Port security requires support for DHCP snooping or some other mechanism for the switch to learn MAC addresses.
It will seem to work most of the time but there will be intermittant problems that are difficult to troubleshoot. You can try to mask the issue by changing timers but you can't guarantee a fix.
In my opinion, limiting the number of MAC addresses on a port should be kept separate from eavesdrop protection.
casevh