Mark,

>
> My concern with telnet is that there will be a large load if the switch is 
> rebooted and a lot of clients connect at the same time?
>
> Presumably telnet/ssh does not need to be enabled if I use the 
> linkup/linkdown snmp traps rather than port security mode?
>

Telnet/SSH is suboptimal because of speed but mainly because we need to 
use an interface meant for humans (error-handling problems and lots of 
back and forth).

We never recommend using linkup/linkdown traps on more than a handful of 
switches. One booting PC tends to generate 2-3 linkup events and 2-3 
linkdown events. On each of the linkups PacketFence needs to reserve a 
thread polling the switch in SNMP to see the MAC address appear in the 
MAC detection VLAN. There are mechanism to remove duplicated traps but 
it is still way more work than getting a port-security trap with the MAC 
already in there.

Bottomline is: If the switch is rebooted, linkup/linkdown will cause 
greater load than port-security even if using Telnet for authorization.

Also, on the Telnet vs SSH, telnet is lighter than SSH on the switch.

> I have a few of these and also some 3Com 5500G and 4800G - the software on 
> those is very similar to the 4200G so I am hoping to get it to work with all 
> of them.
>
> Sadly, HP bought 3Com out last year and I suspect these will go end-of-life 
> shortly, if they haven't already - so I doubt HP will be of much help.
>

For access products I think you are right, in the long term they'll go 
end-of-life but I've heard that the 3Com stuff is pretty good for the 
core and that they might keep the core products around.

I'll email you in private with some pricing for development/testing on 
the modules to improve them. Usually we aim that the vendor pays for 
that but I'll let you know anyway since you don't seem to have a lever 
on them unfortunately.

Have a good one!
-- 
Olivier Bilodeau
[email protected]  ::  +1.514.447.4918 *115  ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence 
(www.packetfence.org)

------------------------------------------------------------------------------
Index, Search & Analyze Logs and other IT data in Real-Time with Splunk 
Collect, index and harness all the fast moving IT data generated by your 
applications, servers and devices whether physical, virtual or in the cloud.
Deliver compliance at lower cost and gain new business insights. 
Free Software Download: http://p.sf.net/sfu/splunk-dev2dev
_______________________________________________
Packetfence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to