R0106-HP MSR Router Series Layer 2 - LAN Switching Command Reference(V7)
45
When the setting is configured in Layer 2 Ethernet interface view, it takes effect on only the interface.
Examples
# Enable the root guard function for GigabitEthernet 2/1/1.
<Sysname> system-view
[Sysname] interface gigabitethernet 2/1/1
[Sysname-GigabitEthernet2/1/1] stp root-protection
Related commands
• stp edged-port
• stp loop-protection
stp tc-protection
Use stp tc-protection to enable the TC-BPDU attack guard function for the device.
Use undo stp tc-protection to disable the TC-BPDU attack guard function for the device.
Syntax
stp tc-protection
undo stp tc-protection
Default
The TC-BPDU attack guard function is enabled.
Views
System view
Predefined user roles
network-admin
Usage guidelines
With TC-BPDU guard, you can set the maximum number of immediate forwarding address entry flushes
that the device can perform every 10 seconds. For TC-BPDUs received that exceed the limit, the device
performs a forwarding address entry flush when the interval elapses. This prevents frequent flushing of
forwarding address entries.
Examples
# Disable the TC-BPDU attack guard function for the device.
<Sysname> system-view
[Sysname] undo stp tc-protection
Related commands
stp tc-protection threshold
stp tc-protection threshold
Use stp tc-protection threshold to configure the maximum number of forwarding address entry flushes
that the device can perform every 10 seconds.
Use undo stp tc-protection threshold to restore the default.










