Cisco CDP filtering

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
Akama
Posts: 2
Joined: Wed Oct 29, 2014 7:16 am

Cisco CDP filtering

Post by Akama » Wed Oct 29, 2014 7:22 am

Hello there!
The question is - is there any way to filter Cisco CDP protocol packets at the hub? Thanks a lot.

dajhorn
Posts: 137
Joined: Mon Mar 24, 2014 3:59 am

Re: Cisco CDP filtering

Post by dajhorn » Wed Oct 29, 2014 11:26 pm

Try this:

1. Open the virtual hub.
2. Click the Manage Access Lists button.
3. Click the New (IPv4) button.
4a. Choose"Discard".
4b. Disable "Applies to any Destination Address".
4c. Set the destination "MAC Address" field to 01-00-0c-cc-cc-cc.

This ACL rule should block CDP broadcast traffic.

Akama
Posts: 2
Joined: Wed Oct 29, 2014 7:16 am

Re: Cisco CDP filtering

Post by Akama » Thu Oct 30, 2014 7:24 am

Thank you greatly, but in my case this rule blocked all traffic. It seems I cannot do this through IP access list, because CDP is non-IP, but Layer-2 protocol

dajhorn
Posts: 137
Joined: Mon Mar 24, 2014 3:59 am

Re: Cisco CDP filtering

Post by dajhorn » Thu Oct 30, 2014 2:48 pm

> but in my case this rule blocked all traffic.

The default rule passes traffic, so that means the new rule was incorrectly created.

> It seems I cannot do this through IP access list, because CDP is non-IP, but Layer-2 protocol

As an alternative, try the "FilterNonIp" toggle in the Virtual Hub Extended Options list.

Post Reply