cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1358
Views
20
Helpful
10
Replies

My switches communicate into the internet. What purpose is it for?

kolping-mw
Level 1
Level 1

and how can I deactivate it.

 

My switches are connecting to the following IPs and fail because we are using SSL interception so I can see this failed connections...

What is it for and where is it switched off?

 

IPs:

18.205.167.7
34.192.246.10
18.205.127.81
1 Accepted Solution

Accepted Solutions

 

  - They seem to be related to https://domain.glass/devicehelper.cisco.com    , from https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Plug-and-Play/solution/guidexml/b_pnp-solution-guide.html

  >...

  • Plug and Play Connect—Optional cloud component for automatic PNP server discovery if the DHCP or DNS methods are not available. The PNP Server is the backend part of the Cisco Network Plug and Play application in the APIC-EM. The Cisco network device contacts the Cisco Plug and Play Connect cloud service at devicehelper.cisco.com to obtain the IP address of the appropriate PNP server that is defined for your organization.

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

View solution in original post

10 Replies 10

marce1000
VIP
VIP

 

 - They all seem to be related to Amazon , use this tool to verify : https://whatismyipaddress.com/ip-lookup

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

I know, they belong to AWS. So that says absolutely nothing about their purpose. I assume that behind these IPs are AWS workloads from Cisco but I want to know what they do...


@kolping-mw wrote:

 I assume that behind these IPs are AWS workloads from Cisco but I want to know what they do...


Two options: 

  1. Packet capture the traffic; or
  2. Scream-Test:  Block the traffic and wait for someone to scream

2. is active. Because the switch can't establish connection because of our SSL decryption. That is why I know these connections...

1. would be an option if I would establish the connection (what I don't want to at the moment)

 

But the vendor should know what the devices do, so we will hopefully know from Cisco in a few time...


@kolping-mw wrote:

But the vendor should know what the devices do


In an "ideal" world, the vendor would know and experience have taught me that this is all but a fallacy.

 

  - They seem to be related to https://domain.glass/devicehelper.cisco.com    , from https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Plug-and-Play/solution/guidexml/b_pnp-solution-guide.html

  >...

  • Plug and Play Connect—Optional cloud component for automatic PNP server discovery if the DHCP or DNS methods are not available. The PNP Server is the backend part of the Cisco Network Plug and Play application in the APIC-EM. The Cisco network device contacts the Cisco Plug and Play Connect cloud service at devicehelper.cisco.com to obtain the IP address of the appropriate PNP server that is defined for your organization.

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

Interesting idea, that could fit. Will switch it off and see what it brings.

 

Interestingly in the host field there the proposal in settings is pnpserver but it actually uses devicehelper.cisco.com if you didn't configure it (can be seen under pnp sessions). In my eyes I think this is a bug because there is no reason to use another host than a configured one even if the service is enabled (which it is by default)...

Seems to fit. Didn't see these connections again after changing.

balaji.bandi
Hall of Fame
Hall of Fame

what switch model and IOS or XE running on this ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

SG350-10, firmware 2.5.8.15