28-15
Catalyst 3750 Switch Software Configuration Guide
OL-8550-02
Chapter 28 Configuring SPAN and RSPAN
Configuring SPAN and RSPAN
Creating a Local SPAN Session and Configuring Incoming Traffic
Beginning in privileged EXEC mode, follow these steps to create a SPAN session, to specify the source
ports or VLANs and the destination ports, and to enable incoming traffic on the destination port for a
network security device (such as a Cisco IDS Sensor Appliance).
For details about the keywords not related to incoming traffic, see the
“Creating a Local SPAN Session”
section on page 28-12
.
Command
Purpose
Step 1
configure terminal
Enter global configuration mode.
Step 2
no monitor session
{
session_number
|
all
|
local
|
remote
}
Remove any existing SPAN configuration for the session.
Step 3
monitor session
session_number
source
{
interface
interface-id |
vlan
vlan-id
} [
,
|
-
]
[
both
|
rx
|
tx
]
Specify the SPAN session and the source port (monitored port).
Step 4
monitor session
session_number
destination
{
interface
interface-id
[, | -]
[
encapsulation replicate]
[
ingress
{
dot1q
vlan
vlan-id
| isl | untagged vlan
vlan-id
|
vlan
vlan-id
}]}
Specify the SPAN session, the destination port, the packet
encapsulation, and the ingress VLAN and encapsulation.
For
session_number
, specify the session number entered in Step 3.
For
interface-id
, specify the destination port. The destination
interface must be a physical port; it cannot be an EtherChannel, and
it cannot be a VLAN.
(Optional) [
,
|
-
] Specify a series or range of interfaces. Enter a space
before and after the comma or hyphen.
(Optional) Enter
encapsulation replicate
to specify that the
destination interface replicates the source interface encapsulation
method. If not selected, the default is to send packets in native form
(untagged).
Enter
ingress
with keywords to enable forwarding of incoming
traffic on the destination port and to specify the encapsulation type:
•
dot1q vlan
vlan-id—
Accept incoming packets with IEEE
802.1Q encapsulation with the specified VLAN as the default
VLAN.
•
isl
—
Forward ingress packets with ISL encapsulation.
•
untagged vlan
vlan-id
or
vlan
vlan-id—
Accept incoming
packets with untagged encapsulation type with the specified
VLAN as the default VLAN.
Step 5
end
Return to privileged EXEC mode.
Step 6
show monitor
[
session
session_number
]
show running-config
Verify the configuration.
Step 7
copy running-config startup-config
(Optional) Save the configuration in the configuration file.
Содержание 3750G - Catalyst Integrated Wireless LAN Controller
Страница 80: ...1 28 Catalyst 3750 Switch Software Configuration Guide OL 8550 02 Chapter 1 Overview Where to Go Next ...
Страница 606: ...27 8 Catalyst 3750 Switch Software Configuration Guide OL 8550 02 Chapter 27 Configuring UDLD Displaying UDLD Status ...
Страница 670: ...31 18 Catalyst 3750 Switch Software Configuration Guide OL 8550 02 Chapter 31 Configuring SNMP Displaying SNMP Status ...
Страница 1048: ...41 20 Catalyst 3750 Switch Software Configuration Guide OL 8550 02 Chapter 41 Configuring MSDP Monitoring and Maintaining MSDP ...
Страница 1086: ...43 26 Catalyst 3750 Switch Software Configuration Guide OL 8550 02 Chapter 43 Troubleshooting Using the crashinfo Files ...
Страница 1104: ...B 4 Catalyst 3750 Switch Software Configuration Guide OL 8550 02 Appendix B Supported MIBs Using FTP to Access the MIB Files ...