Solved

Cisco Switch

Posted on 2013-12-04
10
463 Views
Last Modified: 2013-12-10
I have new Cisco switch I'm adding to switching fabric. I have multiple VLAN configured on my network so VTP is in action and the trunk port is hard coded.
What do I have to do to make sure that switch does not disrupt the network by becoming a root switch or something other that can mess up the switching fabric setup?
0
Comment
Question by:SydNal2009
  • 3
  • 3
  • 2
  • +1
10 Comments
 
LVL 35

Accepted Solution

by:
Ernie Beek earned 163 total points
ID: 39695709
0
 
LVL 35

Assisted Solution

by:Ernie Beek
Ernie Beek earned 163 total points
ID: 39695715
0
 
LVL 12

Assisted Solution

by:Infamus
Infamus earned 225 total points
ID: 39696162
In addition to erniebeek's comment, you should back up vlan.dat file from current switch as well.

Also it is good idea to setup VTP password so that any new switch won't be joining the VTP domain automatically.
0
 
LVL 50

Assisted Solution

by:Don Johnston
Don Johnston earned 112 total points
ID: 39698238
What do I have to do to make sure that switch does not disrupt the network by becoming a root switch or something other that can mess up the switching fabric setup?
If you haven't configured root guard on the existing switches, raise the bridge priority of the new switch before connecting it to the existing network.
0
 

Author Comment

by:SydNal2009
ID: 39698265
What are the commands or steps to take to implement root guard?
0
Do You Know the 4 Main Threat Actor Types?

Do you know the main threat actor types? Most attackers fall into one of four categories, each with their own favored tactics, techniques, and procedures.

 
LVL 50

Expert Comment

by:Don Johnston
ID: 39698347
The command will depend on the platform. Configure the ports of the existing switches that should NOT  be root ports with the command:

spanning-tree rootguard

or

spanning-tree guard root

http://www.cisco.com/en/US/tech/tk389/tk621/technologies_tech_note09186a00800ae96b.shtml#ios2
0
 
LVL 12

Assisted Solution

by:Infamus
Infamus earned 225 total points
ID: 39698879
From reading  your question again, you mentioned about VTP and then asking about root switch.  Are you referring "root switch" as in STP or as "server" in VTP domain?
0
 

Author Comment

by:SydNal2009
ID: 39699031
Sorry if I was not clear. I meant to simply ask how do I prevent a new switch from becoming a root switch when you connect it to other switches on the network.
0
 
LVL 50

Expert Comment

by:Don Johnston
ID: 39699104
I thought your question was clear.
0
 
LVL 12

Expert Comment

by:Infamus
ID: 39699161
Thanks for the clarification.

You have your answers then.

Configure root guard as don mentioned and configure new switches as VTP client.
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

Suggested Solutions

The worst thing when starting a new job is when the previous Network Administrator left behind no documentation. How do you get into the devices? If you've been in this situation or just accidently mistyped your password, this article will hopefully…
I wrote this article to help simplify the process of combining multiple subnets. This can be used for route summarization also but there are other better ways to summarize routes, This article is a result of questions I participate in here at Ex…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

760 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

21 Experts available now in Live!

Get 1:1 Help Now