< Home

(Optional) Configuring the E-Trunk Sequence Number Check Function

Context

If the master device in an E-Trunk fails, enabling the E-Trunk sequence number check function can prevent an attacker from attacking the backup device using E-Trunk packets obtained from the master device.

Procedure

  1. Run system-view

    The system view is displayed.

  2. Run e-trunk e-trunk-id

    The E-Trunk view is displayed.

  3. Run sequence enable

    The E-Trunk sequence number check function is enabled on the E-Trunk.

    By default, the E-Trunk sequence number check function is disabled.

    The sequence enable command must be run on both the master and backup devices in an E-Trunk. Otherwise, packets are dropped due to failure of the E-Trunk sequence number check, causing dual master devices in the E-Trunk.

Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >