
Switched Environments
Monitored-Circuit VRRP in Switched Environments
When you use
To solve this problem, you can take either of the following actions:
Replace the switch with a hub.
Disable MAC address caching on the switch or on the switch ports that the security platforms are connected to.
If it is not possible to disable the MAC address caching, you may be able to set the address aging value to a number low enough that the addresses age out every second or two. This causes additional overhead on the switch, so you should determine whether this is a viable option for the model of switch you are running.
Another issue is sometimes seen with switches using the spanning tree protocol. This protocol was created to prevent Layer 2 loops across multiple bridges. If
If possible, turn off
VRRPv2 in Switched Environments
In the event that you have two interfaces on a switch that are on different VLANs and each has a VRID that is the same as the other, the system can fail. Duplicate VRIDs create duplicate MAC addresses, which will probably confuse the switch.
Nokia Network Voyager for IPSO 4.0 Reference Guide | 205 |