Configuring Bpdu Protection For Spanning-Tree Instance Interfaces - Juniper ACX1000 Configuration Manual

Junos os; acx series universal access router
Hide thumbs Also See for ACX1000:
Table of Contents

Advertisement

ACX Series Universal Access Router Configuration Guide
Related
Documentation

Configuring BPDU Protection for Spanning-Tree Instance Interfaces

424
You can configure BPDU protection on individual interfaces or on all the edge ports of
the bridge.
Configuring BPDU Protection for Spanning-Tree Instance Interfaces on page 424
Configuring BPDU Protection on All Edge Ports on page 425
Understanding Root Protection for Spanning-Tree Instance Interfaces in a Layer 2
Switched Network on page 429
Understanding VPLS Multihomed Layer 2 Ring and MPLS Infrastructure
On the ACX Series routers, MX Series routers, and EX Series switches, you can configure
BPDU protection to ignore BPDU received on interfaces where none should be expected.
If a BPDU is received on a blocked interface, the interface is disabled and stops forwarding
frames. By default, all BPDUs are accepted and processed on all interfaces.
To configure BPDU protection for individual spanning-tree instance interfaces:
Enable BPDU protection on a specific spanning-tree instance interface:
1.
[edit]
user@host# edit protocols layer2-control bpdu-block
user@host# set interface interface (aex | (ge-fpc/pic/port | xe-fpc/pic/port)
If a BPDU is received on the interface, the system will disable the interface and stop
forwarding frames out the interface until the bridging process is restarted.
(Optional) Configure the amount of time the system waits before automatically
2.
unblocking this interface after it has received a BPDU:
[edit protocols layer2-contorl bpdu-block interface interface-name]
user@host# set disable-timeout seconds
The range of the seconds option value is from 10 through 3600 seconds (one hour).
A seconds option value of
interface is blocked until the interface is cleared).
Verify the configuration of BPDU blocking for individual interfaces:
3.
[edit]
interfaces {
ge-fpc/pic/port { # VLAN encapsulation on a Gigabit Ethernet.
encapsulation (ethernet-bridge | ethernett-vpls | extended-vlan-bridge |
extended-vlan-vpls | vlan-bridge| vlan-vpls);
}
xe-fpc/pic/port { # VLAN encapsulation on 10-Gigabit Ethernet.
encapsulation (ethernet-bridge | ethernett-vpls | extended-vlan-bridge |
extended-vlan-vpls | vlan-bridge| vlan-vpls);
}
is allowed, but this results in the default behavior (the
0
Copyright © 2017, Juniper Networks, Inc.

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Acx5048Acx5096Acx500Acx1100Acx2000Acx2100 ... Show all

Table of Contents