just to follow up and close this case.
the feature works perfectly and the config as mentioned in my first post turns out to be correct.
its a little bit embarassing: was all our (or the clients server admins)fault, the dhcp server was not conneced to port 1/10 but to another untrusted port...
thanks a lot 007barney!! the advantages for slt/smlt you bring into the equation make a lot more sense to me than the up to now to me mentioned "somehow faster failover".
and i learned that what we really are looking into is slt (1 link to each core) - the local nortel people always talked...
your mentioning a "management port". i assume you have configured a mgmt ip, which in fact is the vlan1 ip addr. i believe nortel does not support secondary ip's on older releases.
can you attach your config and the exact error message?
thanks a lot for your answers so far, andy88
unfortunately the edge devices (45xx) do not support dhcp snooping. so my intention was to at least enforce it on the core to limit a possible "attack" to a single edge segment.
do you know of any nortel documentation with a good description of...
this stack represents the core. the server is connected directly to 1/10. the users are connecting from other switches which are connected via vlan-trunks (which run over dmlt trunks on ports 1/22,2/22 - 1/23,2/23 - 1/24,2/24).
i currently don't have access to the switches. will post asap. in the meantime what i remember from this commands outputs:
show ip dhcp-snooping:
- showed that it is globally enabled and enabled on vlan 10
show ip dhcp-snooping interface 1/1-1/24:
- showed port 1/10 trusted all other...
thanks for your answer hungryhouse.
i totally unerstand were smlt is superior over a spt based solution. but i want to compare the use of only two 55xx switches in the core either in an smlt or stack configuration. nortel keeps telling that "somehow" (they do not go into detail how, thats what...
Anybody has any experience with dhcp snooping on 5520? i activated it but it apparently completely blocks dhcp? or we do not understand the feature?
description:
- dhcp snooping enabled on vlan 10
- dhcp server on port 1/10
- port 1/10 trusted, all other ports untrusted
- as soon as we enable...
for a small lan (ca. 100 devices) based on a 55xx core and 45xx access the local nortel reps recommend the implementation of a cluster+smlt core based on two 55xx. i'd prefer a stack+d/mlt with the same two 55xx.
nortel argumentation:
- smlt for high availability, <1s failover times
- vrrp for...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.