Solved

SNMP broadcasts across subnets

Posted on 2007-11-16
1
795 Views
Last Modified: 2009-07-29
We recently installed a piece of software that discovers/manages the Neoware thin clients on our network.   It discovered the local thin clients successfully, but I had to make some modifications on our Cisco 3550 switch to enable the discovery broadcasts to cross to the other subnets.

First, I added a route on the computer with the management software pointing to the switch, then added the following on the switch (as suggested by NeoWare):
-------------------------------------
access-list 102 permit ip any any
access-list 152 permit ip any any
access-list 176 permit udp host 10.x.x.x any eq 161
access-list 176 deny ip any any
--------------------------------------
interface Ethernet1
ip access-group 102 in
ip access-group 152 out
ip directed-broadcast 176
--------------------------------------

I'm obviously skipping a lot of the config, but that's it in a nutshell, and it does the trick.   My question is: are there any drawbacks this?   There's ten subnets I'm looking across, connected via 10MB fiber, with only minimal (Citrix) data crossing, so there seems to be plenty of bandwidth; also, this entire setup is behind a firewall, so shouldn't be a security issue.

Again, we're not experiencing any problems, just want to make sure this won't cause us any problems in the future.
0
Comment
Question by:itatahh
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 28

Accepted Solution

by:
Jan Springer earned 250 total points
ID: 20301427
My standard is always "no ip directed-broadcast".

Do this:

access-list 102 permit udp host 10.x.x.x any eq 161
access-list 102 deny udp any any eq 161
<other statements here>
access-list 102 permit ip any any
0

Featured Post

Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Unmanaged Switches for Optimized Network Speeds 7 68
VLAN Question 13 80
2960 not recognizing subinterface configuraton of 5510 11 69
Auto Qos question 1 56
I see many questions here on Experts Exchange regarding switch port configurations and trunks. This article is meant for beginners in the subject to help to get basic knowledge about Virtual Local Area Network (VLAN (http://en.wikipedia.org/wiki/Vir…
Network ports are the threads that hold network communication together. They are an essential part of networking that can be easily ignore or misunderstood, my goals is to show those who don't have a strong network foundation how network ports opera…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

739 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question