Solved

Cisco 3750 spanning tree portfast

Posted on 2011-02-25
8
1,643 Views
Last Modified: 2012-05-11
Let’s say I am configuring my fast Ethernet ports on a 3750

Some ports have the following configuration (Lets call this config1):
      interface FastEthernet1/1
      switchport access vlan 100
      spanning-tree portfast

Other ports have the following configuration (Lets call this config2)
interface FastEthernet1/6
      switchport access vlan 100

The following are my spanning tree commands:

spanning-tree mode rapid-pvst
spanning-tree etherchannel guard misconfig
spanning-tree extend system-id
spanning-tree uplinkfast
spanning-tree backbonefast


Questions:
1.      Does this mean that I can only plug Ethernet connections into config1?
2.      What happens if I plug an Ethernet cable into a port with config2?
3.      Can I just disable a port completely
4.      What if I wanted to connect a switch into a fast Ethernet port instead of a fiber port? Would I have to make that port a trunk port? If so will all inter VLAN routing work.


The reason for the question is that I have read articles that have told me not to plug cables into particular ports that do not have spanning tree portfast for fear of flooding, broadcast storms etc..
0
Comment
Question by:adimit
  • 2
  • 2
  • 2
  • +2
8 Comments
 
LVL 50

Accepted Solution

by:
Don Johnston earned 200 total points
Comment Utility
1. The 3750 is an Ethernet switch. You can't connect anything but ethernet to it.
2. After 30 seconds, the port will move to forwarding state.
3. Yes. In interface config mode issue the command "shutdown".
4. You wouldn't have to. But you could. If the port needed to carry more than one VLAN, it would have to be a trunk.
0
 
LVL 3

Assisted Solution

by:MrRude
MrRude earned 100 total points
Comment Utility
I don't understand question 1. it is an ethernet port so yes only ethernet will fit
2. It will take a little longer to come up to forwarding state
3. yes - shutdown command
4. Trinking port with spanning tree portfast disabled
0
 

Author Comment

by:adimit
Comment Utility
the reason for ?1 and 2 is that I have been told that I should not plug cables into ports not configured for spanning tree (see my last 2 lines in the original question). Is that true?
0
 
LVL 50

Assisted Solution

by:Don Johnston
Don Johnston earned 200 total points
Comment Utility
Spanning-tree can't really be disabled. It's on by default and unless you turn on portfast and BPDU-filter, you're fine.
0
Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

 
LVL 28

Assisted Solution

by:mikebernhardt
mikebernhardt earned 100 total points
Comment Utility
"spanning-tree portfast" doesn't turn on spanning tree, which is already on by default.

"spanning-tree portfast" bypasses the normal spanning tree listen-learn-forward mechanism so that hosts can come on line as soon as they are plugged into the port. It's good to use it on host ports. It should NEVER be used on trunk or uplink ports.

You can configure the fast ethernet port exactly the same you configure the fiber port with trunking and multiple vlans and it will work fine.
0
 
LVL 12

Assisted Solution

by:jjmartineziii
jjmartineziii earned 100 total points
Comment Utility
you should only enable portfast on access ports. this allows the port to "come up" faster than without it. Without it, a port can take up to 60 secs to go through the STP process
0
 

Author Comment

by:adimit
Comment Utility
Hello

I beleive the following summarizes what I was told. Let me know if I am wrong:

1)      If the port is not connected to any device –OR– its purpose in unknown –OR– the port is connected to another switch then “spanning-tree portfast” should NOT be set.
2)      If the port is connected to a server or a non-switch device, then it is safe to enable “spanning-tree portfast”
0
 
LVL 28

Expert Comment

by:mikebernhardt
Comment Utility
That's correct. Although if the port is not connected to any device then it really doesn't matter how the port is set. If I know that the purpose of the switch is primarily to support hosts/servers then I might turn it on on all user ports, connected or not.

There is a feature called "bpdu guard" which will shut down the port if it sees BPDUs entering a port that had portfast enabled. I think whether it's enabled by default depends on the model or version of software, but you can turn it on if it isn't already. That way you can turn on portfast everywhere (except uplinks) and if someone plugs in a little switch under their desk, the port will shut down until you turn off portfast.
0

Featured Post

Highfive Gives IT Their Time Back

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Suggested Solutions

The worst thing when starting a new job is when the previous Network Administrator left behind no documentation. How do you get into the devices? If you've been in this situation or just accidently mistyped your password, this article will hopefully…
I eventually solved a perplexing problem setting up telnet for a new switch.  I installed a new Cisco WS-03560X-24P switch connected to an existing Cisco 4506 running a WS-X4013-10GE Sup II-Plus. After configuring vlans and trunking,  I could no…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…
Polish reports in Access so they look terrific. Take yourself to another level. Equations, Back Color, Alternate Back Color. Write easy VBA Code. Tighten space to use less pages. Launch report from a menu, considering criteria only when it is filled…

728 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now