
B-69
Monitoring and Analyzing Switch Operation
Traffic Mirroring
Remote Mirroring Destination Using a VLAN Interface
and an ACL for Mirroring Criteria
In the network shown in figure B-33, the system operator has connected a
traffic analyzer to port A15 (in VLAN 30) on switch D, and wants to monitor
the Telnet traffic to the server at 10.10.30.153 from the workstations on
switches A and B. The operator does this by configuring remote mirroring
sessions on these two switches, and a mirroring destination on switch D.
(Telnet traffic to the server from sources on switch C is not of interest, and
routing is enabled on switches C and D.)
Figure B-33. Example Topology for Remote Mirroring from a VLAN Interface
The operator does the following:
1.
On switch D, configure a mirroring destination using port A15 In VLAN 30
as the exit port.
2.
Configure switches A and B with mirroring sessions to the destination
interface on switch D. Use a randomly selected UDP port number of 9300.
(For information on selecting UDP port numbers to use for remote
mirroring, refer to the syntax description on page B-45.) You can use the
same random UDP port number on different interfaces because the
identity of the mirroring source is the combination of the unique interface
identity and the UDP port number, and not the UDP port number alone.
3.
Configure an ACL on switches A and B to select inbound Telnet traffic
intended for the server at 10.10.30.153.
4.
Using the ACLs to select the traffic to mirror, configure mirroring sessions
for Telnet traffic entering switches A and B on VLANs 10 and 20. (Because
the sessions are on different switches, you can use the same session
number for both sessions if you want to.)
VLAN 10
10.10.10.119
Traffic
Analyzer
Switch A
A15
VLAN 20
10.10.20.145
VLAN 10
10.10.10.1
VLAN 20
10.10.20.1
VLAN 30
10.10.30.1
VLAN 30
10.10.30.2
VLAN 40
10.10.40.1
10.10.30.153
Switch B
Switch C
Switch D
Server
A10
3500-5400-6200-8200-MCG-Jan08-K_13_01.book Page 69 Monday, January 28, 2008 10:04 AM
Содержание 3500yl Series
Страница 2: ......
Страница 26: ...xxiv 3500 5400 6200 8200 MCG Jan08 K_13_01 book Page xxiv Monday January 28 2008 10 04 AM...
Страница 730: ...20 Index 3500 5400 6200 8200 MCG Jan08 K_13_01 book Page 20 Monday January 28 2008 10 04 AM...
Страница 731: ......
Страница 732: ...Copyright 2005 2008 Hewlett Packard Development Company L P January 2008 Manual Part Number 5992 3059...