Re: [j-nsp] Multicast through a switch

2018-01-09 Thread adamv0025
Are you sure about the IGMP membership reports not being sent by the receivers (even if queried)? I mean having a static IGMP group configured at the GW for the L2 domain is one thing, but the receivers(hosts) should be capable of sending reports which in turn can be snooped by the L2 devices in th

Re: [j-nsp] Multicast through a switch

2018-01-09 Thread Olivier Benghozi
This is a bug, not a feature :P > On 9 janv. 2018 at 11:00, Gert Doering wrote : > > Well. Sort of. EX3300 manages to apply IGMP-snooping logic to 224.0.0.x > multicast, which by definition is link-local and is not(!) IGMP-queried > for - thus breaking EIGRP routing, for example. And annoying

[j-nsp] Sampling on WAN MPLS

2018-01-09 Thread james list
Dear experts, a customer of mine is asking to have visibilty (netflow) on its infrastructure among its two DC (hence to detect any WAN ip4 traffic flow which could exhaust the bandwidth). Its infrastructure is done with an MPLS/VPLS core using MX hence the WAN (aggregated) has only MPLS family ac

Re: [j-nsp] Multicast through a switch

2018-01-09 Thread Gert Doering
Hi, On Tue, Jan 09, 2018 at 10:54:08AM +0100, Alexander Marhold wrote: > And the behavior is the same for all enterprise switches when they support > IGMP-snooping ( not only EX3300) Well. Sort of. EX3300 manages to apply IGMP-snooping logic to 224.0.0.x multicast, which by definition is link-l

Re: [j-nsp] Multicast through a switch

2018-01-09 Thread Alexander Marhold
Turning off IGMP-snooping means that every MC will be sent out on all interfaces within the same vlan. ( like broadcast) Turning OFF is needed when you have a pure Layer2 Multicast environment und you cannot turn on any multicast Querier. or irb-interface with PIM enabled, or ( every vendor ha

Re: [j-nsp] [c-nsp] Meltdown and Spectre

2018-01-09 Thread Sebastian Becker
No … only a one time password. My password does not leave my computer. But again. Yes, you can construct something that might be a risk. But the users (by intention very limited amount) cannot run unsigned code (a Gert described already). So in the moment we are waiting for the vendors and than

Re: [j-nsp] Multicast through a switch

2018-01-09 Thread Gert Doering
Hi On Mon, Jan 08, 2018 at 03:51:22PM -0600, Chris Adams wrote: > Now we're trying to pass the feed through a VLAN to a new connection > through a switch (a VLAN on a trunk from our router to a VLAN on another > trunk to the transport carrier), but we're not sure how to get the > switch to pass th