Customer has VoIP Phones. Users will plug both ports into wall jacks causing a loop. Looking for solution
Can you please tell me what switch you are using? If it is one that runs XOS as the operating system then you can use a feature called ELRP. It works similar to STP but it is not as configuration detailed. It is essentially two commands.
If it is EOS based or if there is a mixture then STP is a better fit.
Let us know
I tried to edit the original, but it wouldn't allow it...
The customer has Enterasys B5s with 6.71-6.81 code
More information - BPDUs are not passed through the phone. The VoIP VLAN is untagged as is the Data VLAN.
The data ports shows the same MAC address as the phone port.
Does anyone know of a way via CLI or Policy Manager to disable a port when it detects a duplicate MAC address in the filtering database on an edge port?
Normally we would use STP with edgeguard, but since the BPDUs are not passing across the phone, it doesn't help.
you cannot generally prevent all layer 2 loops in the presence of buggy or malicious gear, like the VoIP phones filtering BPDUs. Every loop detection protocol can be filtered out.
You should consider mitigating the effect of loops by using rate limiting for broadcast, multicast, and unknown unicast traffic. The B5 (and other EOS switches) have two mechanisms for this: