On Apr 19, 2009, at 5:12 AM, Paul Vixie wrote:

many colo facilities now use one customer per vlan due to this concern?

Haven't most major vendors for years offered features in their switches which mitigate ARP-spoofing, provide per-port layer-2 isolation on a sub-VLAN basis, as well as implementing layer-3 anti- spoofing on a per-switchport basis (i.e., BCP38 on a per-switchport basis)?

-----------------------------------------------------------------------
Roland Dobbins <rdobb...@cisco.com> // +852.9133.2844 mobile

  Our dreams are still big; it's just the future that got small.

                   -- Jason Scott


Reply via email to