Application or Software to detect or Block unmanaged swicthes

Ben Cannon ben at 6by7.net
Fri Jun 8 19:28:33 UTC 2018


I’ve got an easy way to do this, I confiscate ‘em ;)

As others have said, this is a management problem.  Untrustworthy parties shouldn’t have physical access to your trunk ports.

That said Layer 2 MAC ACLs should block everything and allow only your switches.

Also do you have lit trunk ports just floating in space?   You shouldn’t...


More information about the NANOG mailing list