On 9/26/05, Stephan A. Rickauer <[EMAIL PROTECTED]> wrote: > Bill Marquette wrote: > > Any chance the em's are on a switch doing spanning tree? Or that the > > fxp port (on the master is set to port fast)? Sounds like STP locking > > out the em ports on the master to me. > > Hit. Each firewall's em interface is connected to one switch per machine > with two separate VLAN's. The switches are interconnected by a 'trunk'. > > I guess the general problem here is two machines appear with one mac > address at the same time on both switches, right? How can one solve that?
The problem is that the switch will hold down the port to learn what traffic is coming out of it to ensure that you don't introduce a loop. Either turning STP off on the port or changing the port to STP port fast should eliminate the delay, leaving you of course with the risk that someone will plug a switch into those ports and somehow create a loop :) --Bill