cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1700
Views
0
Helpful
0
Replies

CSCvz02374 - Add feature to mitigate ARPs flooded for unused IP's

Clent_Kesey
Level 1
Level 1

Some of our older downstream equipment is getting hammered with broadcast by ARPs from our Nexus HSRP pair. These ARPs are unused IPs in our DHCP pools (that several outside sources are probably scanning). We'd like to have the ability to limit the number of times the Nexus can ARP for an address downstream into this older access network. Similar to the "ip arp suppression timeout" timer but being able to apply to non VXLAN (regular switching) traffic . 

 

Between the HSRP pair, we see 8 ARPs (4 per router) within a 8 second period. Not a huge number but when this happens on several hundred unused IPs within a short period, it causes a lot of broadcast traffic downstream. 

 

Could anyone else benefit from this arp suppression timer

 

0 Replies 0