08-27-2013 06:29 AM - edited 03-07-2019 03:08 PM
Hello,
We had a SPAN session in our Cat6509E (VSS) where we mirrored 3 vlan. After we changed that SPAN session and we left only one VLAN, we noticed swith was still mirroring old vlan traffic. Is typical that behaviour? Can we reset it?
Best regards,
08-27-2013 12:20 PM
Hello Antonio,
Behavior you mentioned it not typical, switch reprogramm adjacency for SPAN session as soon you change a configuration for it. The reliable way to check if it's working correctly is to remove monitor session and configure it again
# no monitor session
# monitor session
Would you be so kind to capture the following outputs:
# show version
# show module
# show monitor detail
# show monitor session all
# show monitor session ingress replication-mode
# show monitor session egress replication-mode
08-28-2013 01:36 AM
After more than one hour, the span session started to work fine. It is really a strange behaviour.
xxxxxx#show version
Cisco IOS Software, s72033_rp Software (s72033_rp-ADVIPSERVICESK9_WAN-M), Version 12.2(33)SXJ2, RELEASE SOFTWARE (fc4)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Wed 14-Dec-11 19:51 by prod_rel_team
ROM: System Bootstrap, Version 12.2(17r)SX7, RELEASE SOFTWARE (fc1)
xxxxxx uptime is 41 weeks, 3 days, 16 hours, 21 minutes
Uptime for this control processor is 41 weeks, 3 days, 16 hours, 28 minutes
Time since MOLWN01 switched to active is 41 weeks, 3 days, 16 hours, 26 minutes
System returned to ROM by reload at 17:00:50 CET Sat Nov 10 2012 (SP by reload)
System restarted at 17:05:43 CET Sat Nov 10 2012
System image file is "sup-bootdisk:s72033-advipservicesk9_wan-mz.122-33.SXJ2.bin"
Host configuration file is "tftp://10.1.36.250/config.txt"
Last reload reason: bus error at PC 0x42DB1ED8, address 0x0
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
cisco WS-C6509-V-E (R7000) processor (revision 1.0) with 983008K/65536K bytes of memory.
Processor board ID FOX1504GKK2
SR71000 CPU at 600Mhz, Implementation 0x504, Rev 1.2, 512KB L2 Cache
Last reset from s/w reset
29 Virtual Ethernet interfaces
124 Gigabit Ethernet interfaces
48 Ten Gigabit Ethernet interfaces
1917K bytes of non-volatile configuration memory.
8192K bytes of packet buffer memory.
65536K bytes of Flash internal SIMM (Sector size 512K).
Configuration register is 0x2102
xxxxxx# show module
Mod Ports Card Type Model Serial No.
--- ----- -------------------------------------- ------------------ -----------
1 16 CEF720 16 port 10GE WS-X6716-10GE SAL1513A3TR
2 1 Application Control Engine Module ACE20-MOD-K9 SAL1445YUVN
3 4 WiSM 2 WLAN Service Module WS-SVC-WISM2-K9 SAL1531LMY9
4 6 Firewall Module WS-SVC-FWM-1 SAD114001MT
5 5 Supervisor Engine 720 10GE (Active) VS-S720-10G SAL1514AF23
6 5 Supervisor Engine 720 10GE (RPR-Warm) VS-S720-10G SAL1513AACC
7 1 Application Control Engine Module ACE30-MOD-K9 SAL1641PSCY
9 48 CEF720 48 port 10/100/1000mb Ethernet WS-X6748-GE-TX SAL1123QJ2D
Mod MAC addresses Hw Fw Sw Status
--- ---------------------------------- ------ ------------ ------------ -------
1 e05f.b974.b2a0 to e05f.b974.b2af 1.0 12.2(18r)S1 12.2(33)SXJ2 Ok
2 f866.f29a.8860 to f866.f29a.8867 2.6 ace2t_main_d A2(3.4) PwrDown
3 e05f.b994.6330 to e05f.b994.633f 1.0 12.2(18r)S1 12.2(33)SXJ2 Ok
4 001d.45f8.d364 to 001d.45f8.d36b 4.2 7.2(1) 4.1(6) Ok
5 8843.e18a.10f0 to 8843.e18a.10f7 4.0 8.5(4) 12.2(33)SXJ2 Ok
6 588d.09e6.0bcc to 588d.09e6.0bd3 4.0 8.5(4) 12.2(33)SXJ2 Ok
7 e05f.b9ab.5df2 to e05f.b9ab.5df9 1.0 ace2t_main_d A5(2.1) Ok
9 001b.53b5.60c0 to 001b.53b5.60ef 2.9 12.2(14r)S5 12.2(33)SXJ2 Ok
Mod Sub-Module Model Serial Hw Status
---- --------------------------- ------------------ ----------- ------- -------
1 Distributed Forwarding Card WS-F6700-DFC3C SAL1514AGT7 1.4 Ok
5 Policy Feature Card 3 VS-F6K-PFC3C SAL1513AARC 1.1 Ok
5 MSFC3 Daughterboard VS-F6K-MSFC3 SAL150989PR 5.1 Ok
6 Policy Feature Card 3 VS-F6K-PFC3C SAL15129K1Z 1.1 Ok
7/0 ACE Expansion Card 1 ACEMOD-EXPN-DC SAL1641PQHS 1.1 Ok
7/1 ACE Expansion Card 2 ACEMOD-EXPN-DC SAL1641PQHF 1.1 Ok
9 Centralized Forwarding Card WS-F6700-CFC SAL1006D3DW 2.1 Ok
Mod Online Diag Status
---- -------------------
1 Pass
2 Not Applicable
3 Pass
4 Pass
5 Pass
6 Pass
7 Pass
9 Pass
xxxxxx#show monitor detail
Session 3
---------
Type : Local Session
Description : -
Source Ports :
RX Only : None
TX Only : None
Both : None
Source VLANs :
RX Only : None
TX Only : None
Both : 64
Source RSPAN VLAN : None
Destination Ports : Gi1/9/26
Filter VLANs : None
Dest RSPAN VLAN : None
Source IP Address : None
Source IP VRF : None
Source ERSPAN ID : None
Destination IP Address : None
Destination IP VRF : None
Destination ERSPAN ID : None
Origin IP Address : None
IP QOS PREC : 0
IP TTL : 255
Egress SPAN Replication State:
Operational mode : Centralized
Configured mode : Centralized (default)
xxxxxx#show monitor session all
Session 1
---------
Type : Service Module Session
Modules allowed : 1-49
Modules active : 20,36
BPDUs allowed : Yes
Session 3
---------
Type : Local Session
Source VLANs :
Both : 64
Destination Ports : Gi1/9/26
Egress SPAN Replication State:
Operational mode : Centralized
Configured mode : Centralized (default)
xxxxxx#show monitor session egress replication-mode
Egress SPAN Replication Mode Session State:
-------------------------------------------
Session : 3
Session Type : Local Session
Operational mode : Centralized
Configured mode : Centralized/Default
Session : 1
Session Type : Unknown
Operational mode : Centralized
Configured mode : Centralized/Default
-------------------------------------------------------
Global Egress SPAN Replication Mode Capability:
Slot Egress Replication Capability
No LSPAN RSPAN ERSPAN
-------------------------------------------------------
17 Distributed Distributed Distributed
19 Distributed Distributed Distributed
20 Centralized Centralized Centralized
21 Distributed Distributed Distributed
22 Distributed Distributed Distributed
23 Distributed Distributed Distributed
25 Distributed Distributed Centralized
33 Distributed Distributed Distributed
35 Distributed Distributed Distributed
36 Centralized Centralized Centralized
37 Distributed Distributed Distributed
38 Distributed Distributed Distributed
39 Distributed Distributed Distributed
41 Distributed Distributed Centralized
08-28-2013 01:51 AM
Hello Antonio,
I can't see any session with configured source, what SPAN session are you reffering to? Did it become to work correcly by itself?
--
Best regards,
Dmitry Skotnikov
08-28-2013 02:09 AM
Hi,
This is is the SPAN session, before it had 3 vlans and It becomes to work correctly by itself after one hour and half.
Session 3
---------
Type : Local Session
Source VLANs :
Both : 64
Destination Ports : Gi1/9/26
Egress SPAN Replication State:
Operational mode : Centralized
Configured mode : Centralized (default)
10-25-2013 09:07 AM
Hi, was there a resolution for this issue after, I'd be keen to know , thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide