05-16-2016 08:09 AM - edited 03-08-2019 05:46 AM
Hi all,
is there any way to filter cdp throught acces ports on catalyst switches? We have virus on site which is searching for other devices throught CDP protocol or Mikrotic neighbour.
If i block - MAC Protocol 800 ,packet type Boadcast in mikrotik Bridge, i can stop the UBIQUITY Virus.
Bud how to stop them throught catalyst switches on FTTA - fiber to the antenna sites?
We are using catalyst 3560x,2960s.... Lan BASE
Thank you
dave
Solved! Go to Solution.
05-16-2016 08:21 AM
Hi
Can you not turn off cdp per port basis or globally no cdp enable/ no cdp run until you remove thevirus
it uses 4224 TCP as well
05-17-2016 01:07 AM
To be honest never tried to block it like that , I seen the port on couple of websites as TCP 4224 bit it seems unofficial
Did you see this
if your device are Cisco switch you can apply mac access-list which will drop outgoing CDP packets , and because CDP use ARPA code 0x200 , mac access-list will contain : access-list 10 deny 0x2000
http://networkengineering.stackexchange.com/questions/8040/listen-only-stealth-cdp-on-ios
known port assignments and vulnerabilities
|
05-16-2016 08:21 AM
Hi
Can you not turn off cdp per port basis or globally no cdp enable/ no cdp run until you remove thevirus
it uses 4224 TCP as well
05-16-2016 11:23 AM
Hi Mark,
i dont think that is tcp.
I dont want to disable cdp on port i want to filted and deny it throught port fog eg with acl in catalyst.
linke filter rule in Mikrotik : MAC Protocol 800 ,packet type Boadcast - Drop
Dave
05-17-2016 01:07 AM
To be honest never tried to block it like that , I seen the port on couple of websites as TCP 4224 bit it seems unofficial
Did you see this
if your device are Cisco switch you can apply mac access-list which will drop outgoing CDP packets , and because CDP use ARPA code 0x200 , mac access-list will contain : access-list 10 deny 0x2000
http://networkengineering.stackexchange.com/questions/8040/listen-only-stealth-cdp-on-ios
known port assignments and vulnerabilities
|
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide