If I monitor a port with SPAN on a 6500 and the device is sending in traffic marked with DSCP values but the port is not configured to trust dscp or cos (mls qos is on globally) will I see the packets before they are rewritten with the dscp value the device is sending in or after they have been rewritten with a dscp value of 0?
Thanks in advance
You are welcome Nick.
The information comes from "CCIE R&S 4th Edition - Chapter 1" (http://www.ciscopress.com/bookstore/product.asp?isbn=1587059800)
We can also find the information at this non-cisco link : http://www.proprofs.com/flashcards/tableview.php?title=span-rspan
But I suppose the same information is given diffently on this Cisco link :
For example : A SPAN destination port that is copying traffic from a single egress SPAN source port sends only egress traffic to the network analyzer
(meaning after treatment of the packet).
Hope it helps.