[c-nsp] RSPAN and 3550
Alexey Luckyanchikov
alexl at alkar.net
Tue Sep 14 15:21:11 EDT 2004
On Tue, 14 Sep 2004, Voll, Scott wrote:
VS> What vlan is f0/3 (your source port) in?
4093.
VS> -----Original Message-----
VS> From: Alexey Luckyanchikov [mailto:alexl at alkar.net]
VS> Sent: Tuesday, September 14, 2004 11:05 AM
VS> To: cisco-nsp at puck.nether.net
VS> Subject: Re: [c-nsp] RSPAN and 3550
VS>
VS> On Tue, 14 Sep 2004, Voll, Scott wrote:
VS>
VS> VS> Have you made sure all switches have vlan 107 active? I know I have
VS> had
VS> VS> to play with the vlans in order for them to come up. You can always
VS> VS> turn off RSPAN and see if you have end to end connectivity then turn
VS> it
VS> VS> back on.
VS>
VS> Yes, I sure that all switches have vlan 107 active:
VS> 3550-1#sh vlan id 107
VS>
VS> VLAN Name Status Ports
VS> ---- -------------------------------- ---------
VS> -------------------------------
VS> 107 RSPAN active Fa0/2, Fa0/23, Gi0/1
VS> [...skip...]
VS> Remote SPAN VLAN
VS> ----------------
VS> Enabled
VS>
VS> 3550-2#sh vlan id 107
VS>
VS> VLAN Name Status Ports
VS> ---- -------------------------------- ---------
VS> -------------------------------
VS> 107 RSPAN active Gi0/1
VS> [...skip...]
VS> Remote SPAN VLAN
VS> ----------------
VS> Enabled
VS>
VS> 3508-1#sh vlan id 107
VS> VLAN Name Status Ports
VS> ---- -------------------------------- ---------
VS> -------------------------------
VS> 107 RSPAN active
VS>
VS> 3508-2#sh vlan id 107
VS> VLAN Name Status Ports
VS> ---- -------------------------------- ---------
VS> -------------------------------
VS> 107 RSPAN active
VS>
VS> I have pc-router connected to 3550-1. I tried to make more simple scheme
VS> -
VS> add RSPAN vlan to router's trunk port and see traffic on RSPAN vlan
VS> throw tcpdump. Result was the same - no traffic :(
VS>
VS> VS> -----Original Message-----
VS> VS> From: Alexey Luckyanchikov [mailto:alexl at alkar.net]
VS> VS> Sent: Tuesday, September 14, 2004 8:19 AM
VS> VS> To: cisco-nsp at puck.nether.net
VS> VS> Subject: [c-nsp] RSPAN and 3550
VS> VS>
VS> VS> I need to setup RSPAN session between two 3550. Network topology:
VS> VS> +------+ GigaStack +------+ LX/LH +------+ GigaStack +------+
VS> VS> |3550-1|-----------|3508-1|-------|3508-2|-----------|3550-2|
VS> VS> +------+ +------+ +------+ +------+
VS> VS>
VS> VS> 3550-1 and 3550-2 are in vtp transparent mode, all 3508 - in
VS> separate
VS> VS> vtp domain (server and client).
VS> VS>
VS> VS> 3550-1 configured as RSPAN source, 3550-2 - as RSPAN destination. I
VS> VS> see packets on reflector port, but 3550-1 does not transmit any
VS> VS> packets in RSPAN vlan to 3508-1:
VS> VS> 3508-1#sh mac-address-table int gi0/5 vlan 107
VS> VS>
VS> VS> 3508-1#
VS> VS>
VS> VS> vlan 107 allowed on trunk between 3550-1 and 3508-1, all switches
VS> have
VS> VS> vlan 107 in their vlan databases.
VS> VS> Any suggestions how to fix this issue?
VS> VS>
VS> VS> 3550-1 configuration:
VS> VS> vlan 107
VS> VS> remote-span
VS> VS> !
VS> VS> monitor session 1 source interface Fa0/3
VS> VS> monitor session 1 destination remote vlan 107 reflector-port Fa0/18
VS> VS> !
VS> VS> interface FastEthernet0/3
VS> VS> switchport access vlan 4093
VS> VS> switchport mode access
VS> VS> switchport block multicast
VS> VS> switchport port-security
VS> VS> switchport port-security maximum 2
VS> VS> switchport port-security aging time 5
VS> VS> switchport port-security violation restrict
VS> VS> switchport port-security aging type inactivity
VS> VS> load-interval 30
VS> VS> speed 100
VS> VS> duplex full
VS> VS> storm-control broadcast level 5.00
VS> VS> no cdp enable
VS> VS> spanning-tree portfast
VS> VS> !
VS> VS> interface FastEthernet0/18
VS> VS> switchport mode access
VS> VS> load-interval 30
VS> VS> no cdp enable
VS> VS> spanning-tree portfast
VS> VS> !
VS> VS> interface GigabitEthernet0/1
VS> VS> description 3508-1
VS> VS> switchport trunk encapsulation dot1q
VS> VS> switchport trunk allowed vlan 1-400,700,1000
VS> VS> switchport mode trunk
VS> VS> load-interval 30
VS> VS>
VS> VS>
VS> VS> 3550-2 configuration:
VS> VS> vlan 107
VS> VS> remote-span
VS> VS> !
VS> VS> monitor session 1 destination interface Fa0/14
VS> VS> monitor session 1 source remote vlan 107
VS> VS> !
VS> VS> interface FastEthernet0/14
VS> VS> switchport mode access
VS> VS> no ip address
VS> VS> load-interval 30
VS> VS> no cdp enable
VS> VS> spanning-tree portfast
VS> VS> !
VS> VS> interface GigabitEthernet0/1
VS> VS> description 3508-2
VS> VS> switchport trunk encapsulation dot1q
VS> VS> switchport mode trunk
VS> VS> no ip address
VS> VS> load-interval 30
--
Sincerely,
Alexey Luckyanchikov
More information about the cisco-nsp
mailing list