Switching

Expand all | Collapse all

Question on storm control

  • 1.  Question on storm control

     
    Posted 10-28-2020 00:55

    Hi everyone.

     

    https://www.juniper.net/documentation/en_US/junos/topics/concept/rate-limiting-storm-control-understanding.html

    According to the documentation above:

    "A traffic storm is generated when messages are broadcast on a network and each message prompts a receiving node to respond by broadcasting its own messages on the network."

     

    Can someone please give me an example of such a message?

     

    Also, can such a storm happen if we have STP to prevent topology loops?

     

    Thanks,

    Deepak



  • 2.  Re: Question on storm control

    Posted 10-28-2020 03:43

    Hello,

     

    The best example I can see - ARP broadcast (and all related to these issues)

     

    https://www.juniper.net/documentation/en_US/junos/topics/topic-map/using-storm-control-to-prevent-network-outages.html

     

    This is not always triggered by L2 Loop - so the STP is not a key factor in here.

     

    BR



  • 3.  Re: Question on storm control

     
    Posted 10-28-2020 23:31

    Thanks Andrei.

     

    But receiving devices don't respond to ARPs with their own broadcast messages. I'm trying to figure out this sentence from the documentation.

    "each message prompts a receiving node to respond by broadcasting its own messages on the network."

     

    --Deepak



  • 4.  Re: Question on storm control

    Posted 10-29-2020 03:20

    Hello

     

    https://ijcsi.org/papers/IJCSI-8-2-456-460.pdf

     

    This is one of the documents that describe them.

     

    The ARP storm is just one of the possible reasons. 

     

    BR,

    Andrei

     

     



  • 5.  Re: Question on storm control

     
    Posted 11-02-2020 05:24

    https://computer.howstuffworks.com/lan-switch13.htm

     

    This may explain to you how a broadcast can be generated unintentionally and this will not happen on a converged STP topology. On a converged STP it can be a DOS kind of attack using crafted ARP packets to chock the BW of intended gateway of host.

     

    If this solves your problem, please mark this post as "Accepted Solution".
    If you think that my answer was helpful, please spend some Kudos.

     

    Thanks

    Amit