Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

IDS Module in C6K


We have two cat6k in the core with a layer 3 routed link between. The design is such that if an uplink fails the vlan on the msfc goes down, this is due to the vlans being unique on each switch in the network.

My question is though when we install the ids module it has a trunk connected to each vlan and this keeps the msfc interface up during a link failure. Is there a way to have another vlan that is a span destination and then put the ids port in that vlan without having it trunk ??

  • Other Security Subjects

Re: IDS Module in C6K

Yes, I think this is possible. Check out the following URL

Cisco Employee

Re: IDS Module in C6K

You could try using the RSPAN functionality. You would span the traffic to the RSPAN then configure the IDSM port as an RSPAN destination port.

You would then need to clear all vlans from the IDSM's trunk port except the one RSPAN vlan.

This widget could not be displayed.