Vswitch port image configuration parameters that meet the networking requirements

Source: Internet
Author: User

The vswitch port image configuration parameters that meet the networking requirements are still a strange word for many friends. What does it do? What is its role? Let's take a look at these questions.

"Environment switch port image configuration parameters 』
◆ PC1 is connected to port E0/1 of vswitch, IP address 1.1.1.1/24
◆ PC2 is connected to port E0/2 of vswitch, IP address 2.2.2.2/24
◆ E0/24 indicates the uplink port of the vswitch. The Server is connected to the port image of the vswitch and configured with port E0/8. The port is used as the mirror port.

"Networking requirements 』
◆ Use server to monitor the service packets of two PCs through the vswitch port image configuration function.
◆ Configuration based on different image methods:
◆ Port-Based Image
◆ Stream-Based Image

Data configuration procedure "port Image Data Process" port-based images completely copy incoming and outgoing data packets from the mirrored ports to the mirror ports for traffic observation or fault locating.

Vswitch port image configuration such as 3026]

Vswitch port image configurations such as S2008/S2016/S2026/S2403H/S3026 support port-based images. There are two methods:
◆ Configure image observation) port [SwitchA] monitor-port e0/8
◆ Configure the mirrored port [SwitchA] port mirror Ethernet 0/1 to Ethernet 0/2
◆ You can define the image and the port [SwitchA] port mirror Ethernet 0/1 to Ethernet 0/2 observing-port Ethernet 0/8 at a time.

8016 vswitch port image Configuration]

◆ Assume that port 8016 of the vswitch is configured as E1/0/15, port E1/0/0, and Port 1/0/15 is set as the observation port configured for the vswitch port image. [SwitchA] port monitor ethernet 1/0/15

◆ Set Port 1/0/0 as the port to be mirrored, and image the input and output data. [SwitchA] port bonding ing ethernet 1/0/0 both ethernet 1/0/15 can also mirror the input and output data through two different ports.

◆ Set E1/0/15 and E2/0/0 as image observation ports.) port [SwitchA] port monitor ethernet 1/0/15

◆ Set Port 1/0/0 as the mirrored port, and use E1/0/15 and E2/0/0 to mirror the input and output data respectively. [SwitchA] port bonding ing gigabitethernet 1/0/0 ingress ethernet 1/0/15 [SwitchA] port bonding ing gigabitethernet 1/0/0 egress ethernet 2/0/0

The flow image-based data process. The flow image-based switch port image configuration is used to mirror certain streams. Each connection has two data streams, for the vswitch port image configuration, the two data streams must be mirrored separately.

3500/3026 E/3026F/3050]

[Vswitch port image configuration based on layer-3 stream 〗
◆ Define an extended access control list [SwitchA] acl num 100
◆ Define a rule message source address as 1.1.1.1/32 to all destination addresses [SwitchA-acl-adv-101] rule 0 permit ip source 1.1.1.1 0 destination any
◆ Define a rule message source address as the destination address of all source addresses 1.1.1.1/32 [SwitchA-acl-adv-101] rule 1 permit ip source any destination 1.1.1.1 0
◆ Mirror the packets meeting the preceding ACL rules to E0/8 port [SwitchA] mirrored-to ip-group 100 interface e0/8

[Vswitch port image configuration based on L2 stream 〗
◆ Define an ACL [SwitchA] acl num 200
◆ Define a rule to send data packets from E0/1 to all other ports [SwitchA] rule 0 permit ingress interface Ethernet0/1 egress interface Ethernet0/2
◆ Define a data packet from all other ports to E0/1 [SwitchA] rule 1 permit ingress interface Ethernet0/2 egress interface Ethernet0/1
◆ Mirror data packets that match the preceding ACL to E0/8 [SwitchA] mirrored-to link-group 200 interface e0/8

5516/6506/6503/6506 R]

Currently, these three products support mirroring the port image configuration of the incoming switch.
◆ Define the Image port [SwitchA] monitor-port Ethernet 3/0/2
◆ Define the port [SwitchA] using ing-port Ethernet 3/0/1 inbound

Vswitch port image configuration supplementary instructions]
◆ Images generally support high-speed port mirroring and low-speed ports. For example, a m port can be mirrored to a m port, but not vice versa.
◆ 8016 supports cross-board port mirroring.
◆ Test and verify that the corresponding packets of the mirrored port can be seen through the tool software on the observation port, and traffic observation or fault locating can be performed.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.