Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 22 Feb 2011 07:20:36 -0500
From:      "kevin" <k@kevinkevin.com>
To:        "'Tom Judge'" <tom@tomjudge.com>
Cc:        freebsd-net@freebsd.org, 'Nikos Vassiliadis' <nvass@gmx.com>
Subject:   RE: Bridging + VLANS + RSTP / MSTP
Message-ID:  <003f01cbd28a$ea03d2b0$be0b7810$@com>
In-Reply-To: <4D5FFE9C.30005@tomjudge.com>
References:  <000c01cbcf94$35e76e20$a1b64a60$@com> <4D5FAC16.7080207@gmx.com>	<00a201cbd03f$2bdc3540$83949fc0$@com> <4D5FD91F.20704@gmx.com>	<4D5FDCF1.6050909@gmx.com> <00a501cbd04f$2276b5b0$67642110$@com> <4D5FFE9C.30005@tomjudge.com>

next in thread | previous in thread | raw e-mail | index | archive | help
>There is a also the caveat:  The switch will probably _not_ forward the STP
BPDU's from one port to another. 

You were correct -- my initial testing confirmed this. Would the same issue
arise if I employed a gateway IP on the /bridge/ instead, and used CARP as a
failover mechanism? The firewall no longer becomes transparent pass
through/firewall. I have not done carp with bridges and I'm not 100% certain
the same STP forwarding problems wouldn't arise, even with an IP assigned.

Such as :

[switch 1 (vlan 1)]
   |       |
 [fw1 gw1] -- CARP -- [fw2 gw1]
   |       |
[switch 1 (vlan 2)]


Thanks,

Kevin





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?003f01cbd28a$ea03d2b0$be0b7810$>