I have read through other conversations, I think I am configuring everything exactly like I should, but I still don't see traffic from the source pc in my trace file. I have a 2950 with version 12.1(13)EA1b--that has the source port configured and a reflector-port, which is not hooked up to anything. Then I have a 3560 with version 12.2(24)SEB4 that has a port set up as the destination port. I know my RSPAN VLAN works because I tried it out before, but not on a switch that requires a reflector port. When I read about reflector ports, it said that it had to have its loopback set. What does that mean? My destination port appears to be working because I can't ping out or anything on it. And the reflector-port on the 2950 is blinking, so I am thinking it is at least attempting to work. Any ideas on what I am doing wrong?
Thanks, I do have it as my source. The weird thing is, I get a bunch of broadcast/multicast traffic, just not unicast from my pc. I tried setting it up as both, then as tx, but nothing works. Very annoying :)
I didn't have the destination port on my 4506 set to access vlan 200! It is fixed now.
One other note that someone might find interesting is that you can't use RSPAN if you are trying to monitor a port on the same switch that the sniffer is attached to. You must use SPAN instead. I imagine it is because RSPAN floods the trunks with the RSPAN VLAN traffic and RSPAN can't bypass the trunks to give a local port the mirror but any better/correct explanation is more than welcome!
Glad you got it working. I redid the config on mine, I let it capture for about 20 minutes and I saw the unicast traffic. Don't know what I did wrong the first time. But I think RSPAN is very cool. Now I just need to learn how to read the trace files :)
Hi everyone, I would like to thank you in advance for any help you can provide a newcomer like myself!
Im studying the 100-105 book by Odom and am currently on the topic of Port security. I purchased a used 2960 and I'm trying to follow a...
While deploying a number of 18xx/2802/3802 model access points (APs), which run AP-COS as their operating platform. It can be observed on some occasions that while many of their access points were able to join the fabric WLC withou...
I am going to design and build an LAN network under a tunnel underground with long distance between the switches.
I will have 2 Catalyst switches and 8 Industrial IE3000, and they will be connected with fiber.
For now I am planning on use Layer-2 s...