[c-nsp] SPAN limitations on already-mirrored traffic

Dumitru Ciobarcianu cisco-nsp at lnx.ro
Thu Nov 27 03:50:35 EST 2014


On 11/27/2014 08:06 AM, Pierre Emeriaud wrote:
> 2014-11-26 21:11 GMT+01:00 Dumitru Ciobarcianu <cisco-nsp at lnx.ro>:
>> The vlan ids are present on the "converter" switch ?
> No, and this is not really an option. I want the switch to act as a
> tap, mirroring the traffic regardless of the vlans.

Then configure both ports (incoming and outgoing) as dot1q-tunnel (QnQ) 
ports.
The switch will act as a "conduit", encapsulating incoming packets 
regardless of the vid and decapsulating them on the way out.

"Should work" (TM)

>> Alternatively you can set the incoming port as dot1q-tunnel port and it
>> will accept the packets regardless of the vid.
> I'll try this as well as disabling mac learning.

The switch will flood the unknown destinations anyway.


Dumitru



More information about the cisco-nsp mailing list