[nsp] ACL on trunk ports / hunting strange traffic

Bruce Pinsky bep at whack.org
Tue Dec 2 12:51:15 EST 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Sam Stickland wrote:

| Hi,
|
| Is if possible to do the equivilent of adding an ACL to a trunk port of a
| 6500? I've got a completely unused 2924 switch that is getting pushed about
| 400kbps from a port on a 6500 as of about five hours ago. The trunk port
| only allows two VLANs, and I've added ACLs to each of them to log any
| traffic to and from the swtiches only IP address.
|
| These ACLs are recording nothing interesting, but the MRTG graphs on the
| 6500's port still show the traffic.
|
| How should I go about working out what the traffic is.
|

Can you enable Netflow?

=========
bep

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (MingW32)

iD8DBQE/zNETE1XcgMgrtyYRAjUdAKCI3E/GjbGmPvW28K92lQpimMx9QwCg+Nxq
5iNTDjad5occCF7d3Sxar6E=
=CfPu
-----END PGP SIGNATURE-----



More information about the cisco-nsp mailing list