cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1277
Views
0
Helpful
2
Replies

guard root on VPC port-channel

Amafsha1
Level 2
Level 2

Hello, I'm trying to find an article that explains configuring root guard on VPC port-channels...which I cannot find anything on. 

I have a switch that connects to 2 nexus vpc peer link core switches via VPC (picture attached).  I want to make sure that this switch A does not become the root for any VLAN ever.  From my understanding, i should configure root guard on the interfaces trunks off the cores that connect to Switch A.  Are there any caveats for doing this on VPC port-channels?  So I go into Nexus A and configure the following:

 

 

conf t

int po12

spann tree guard root

 

then I repeat the same in the other Nexus B correct?

 

Thank you

2 Replies 2

marce1000
VIP
VIP

 

 = The correct way is still to assign correct bridge priority to the intended root bridge (albeid per vlan or not) , stay away from root guard, controlled network management is better.

M.



-- ' 'Good body every evening' ' this sentence was once spotted on a logo at the entrance of a Weight Watchers Club !

Reza Sharifi
Hall of Fame
Hall of Fame

Hi,

I agree that you should just make sure that nexus-a is the root for all vlans and nexus-b is the backup root to all vlans and leave the other switch at default stp priority. No need for guard root.

HTH

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card