- 2 Catalyst 6509 with Sup1A/MSFC/PFC interconnected with each other (HSRP configured for client's high availability). This switches acts as part of our backbone;
- Several clients connected to Catalysts (most of them with physical redundancy);
Recently, our entire infrastructure has been affected with an attack originated in one of the clients (HSRP flapping, slow networks, etc...). I can't confirm what kind of attack we was dealing but this attack generated 100Mbps of traffic into the infrastructure (note that the uplink of this client is one 100Mbps port of the switch). When we disabled the ports that connect the backbone to the client's switch, everything has normalized!
So, here goes my question:
- Applying QoS strategies (such as policing) to drop traffic on problematic or suspiscious ports can be considered a "best practice" for this situation? Or what can be done to reduce the impacts in situations like this?
Just to make things easier, we don't have budget to implement any hardware and/or software this time...
On 18th December 2020, Cisco announced the latest IOS XE release - Cisco IOS XE Bengaluru 17.4.1a
The first one in the Cisco IOS XE Bengaluru release series, IOS XE 17.4.1a unlocks various routing features and enhancements comprehensively c...
This event had place on Tuesday 19th, January 2021 at 10hrs PDT
In this session attendees received an introduction to Software Defined-WAN (SD-WAN) and the importance of control connections, and learn how to configure devices us...
(view in My Videos)
Community Live- May the SD-WAN Force Be With You
This event took place on Tuesday 19th, January 2021 at 10:00hrs PDT
In this session attendees received an introduction to Software Defined-WAN (SD-WAN) and the importance of ...
Cisco Champion Radio · S8|E3 The Cisco DNA Center Machine Reasoning Engine
Machine Reasoning is a new category of AI/ML that you will soon hear a lot about. It saves your IT team time by automating complex and tedious networking tasks. It can also...
To participate in this event, please use the button to ask your questions
In this session attendees will receive an introduction to Software Defined-WAN (SD-WAN) and the importance of control connections, and learn how to configure devices usi...