a.
Session number (1) and (optional) alphanumeric name
b.
Exit port (any port on the switch except a monitored interface used to mirror traffic)
IMPORTANT:
Hewlett Packard Enterprise strongly discourages connecting a mirroring exit port to
a network because doing so can result in serious network performance problems. Only connect
an exit port to a network analyzer, IDS, or other network edge device that has no connection to
other network resources.
2.
Enter the
mirror-port port number
command to configure the session.
3.
Determine the traffic to be selected for mirroring by any of the following methods and the appropriate
configuration level (mesh and switch).
4.
Enter the
monitor
command to assign one or more source interfaces to the session.
After you complete step 4, the switch begins mirroring traffic to the configured exit port.
The following commands configure mirroring for a local session in which the mirroring source and destination are
on the same switch.
• The
mirror
command identifies the destination in a mirroring session.
• The
interface
and
vlan
commands identify the mirroring source, including source interface, traffic
direction, and traffic-selection criteria for a specified session.
NOTE:
With no
allow-v2-modules
specified in the configuration of a switch with V3 modules on KB
firmware, Egress VLAN ACLs do not filter mirrored traffic. You must use a port ACL to filter mirrored
traffic.
Local mirroring sessions
Syntax
[no] mirror-port <
EXIT-PORT-#
>
Description
Configure local mirroring sessions.
Parameters and options
mirror-port <EXIT-PORT-#>
When used with
mirror-port <EXIT-PORT-#>
command, removes the mirroring session and any
mirroring source previously assigned to that session by the following commands.
Traffic-direction criteria
interface monitor all
Syntax
[no] [interface
<PORT> |<TRUNK>
] monitor
Mirror policy for inbound traffic
406
Aruba 2930F / 2930M Management and Configuration Guide
for ArubaOS-Switch 16.08