Cisco Spanning Tree – Blocking L2 Loops Without STP

ciscospanning tree

I have a weird problem: I have a layer 2 network that does not pass STP BPDUs and cannot be configured to do so. I would like to establish multiple redundant connections to this network from my all-Cisco network, but if I do, I create a network loop. What would you recommend as an alternative to RSTP for Cisco switches that can shut down ports to block loops, but bring those ports up automatically if the primary goes down? Thanks!

Best Answer

If you're unable to use Spanning Tree Protocol (STP), I would recommend looking into Dynamic ARP Inspection (DAI).

If you set the DAI rate limit of ARP packets to the absolute lowest your network environment will support, it should cause a port with a layer 2 loop to go into an err-disable state.

Understanding and Configuring Dynamic ARP Inspection