02-11-2009 02:39 AM - edited 03-06-2019 03:58 AM
Hi,
one switch, 10 acces ports in vlan 10, on P1 a pc with sniffer, on P2 a pc with "source packets", i monitor in tx on the ports P3-P10, to the P20 in witch is connected another sniffer.
A packet entering the P2 with a unknown mac address is flooded on all the ports. I see it on the P1 sniffer, and i will see once on the SPAN sniffer of 8 times?
Thanks
02-11-2009 02:53 AM
Hello Ciprian,
yes replications are possible SPAN for efficiency reasons doesn't track the frames.
Are you using as SPAN source vlan 10 or the 8 physical ports ?
Hope to help
Giuseppe
02-11-2009 03:19 AM
the SPAN is port bassed on TX
02-11-2009 09:14 AM
Hello Ciprian,
using Vlan 10 as source might be a way to see less copies of same unknown unicast frame but I'm not sure.
Hope to help
Giuseppe
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: