[2 days left] What’s wrong with your cloud strategy? Learn why multicloud solutions matter with Nimble Storage.Register Now

x
?
Solved

SNMP broadcasts across subnets

Posted on 2007-11-16
1
Medium Priority
?
818 Views
Last Modified: 2009-07-29
We recently installed a piece of software that discovers/manages the Neoware thin clients on our network.   It discovered the local thin clients successfully, but I had to make some modifications on our Cisco 3550 switch to enable the discovery broadcasts to cross to the other subnets.

First, I added a route on the computer with the management software pointing to the switch, then added the following on the switch (as suggested by NeoWare):
-------------------------------------
access-list 102 permit ip any any
access-list 152 permit ip any any
access-list 176 permit udp host 10.x.x.x any eq 161
access-list 176 deny ip any any
--------------------------------------
interface Ethernet1
ip access-group 102 in
ip access-group 152 out
ip directed-broadcast 176
--------------------------------------

I'm obviously skipping a lot of the config, but that's it in a nutshell, and it does the trick.   My question is: are there any drawbacks this?   There's ten subnets I'm looking across, connected via 10MB fiber, with only minimal (Citrix) data crossing, so there seems to be plenty of bandwidth; also, this entire setup is behind a firewall, so shouldn't be a security issue.

Again, we're not experiencing any problems, just want to make sure this won't cause us any problems in the future.
0
Comment
Question by:itatahh
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 29

Accepted Solution

by:
Jan Springer earned 750 total points
ID: 20301427
My standard is always "no ip directed-broadcast".

Do this:

access-list 102 permit udp host 10.x.x.x any eq 161
access-list 102 deny udp any any eq 161
<other statements here>
access-list 102 permit ip any any
0

Featured Post

Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

As dyndns has reduced the capabilities of the free service, I looked around for other free providers of Dynamic DNS service. After testing several I decided to move my DNS hosting to Hurricane Electric as then domains that require dynamic hostnam…
This article will show how Aten was able to supply easy management and control for Artear's video walls and wide range display configurations of their newsroom.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this video we outline the Physical Segments view of NetCrunch network monitor. By following this brief how-to video, you will be able to learn how NetCrunch visualizes your network, how granular is the information collected, as well as where to f…

649 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question