<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Can you sniff traffic from in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621578#M1027756</link>
    <description>&lt;P&gt;Can you sniff traffic from your sensing interfaces? See anything?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Then at least we can figure out if it's a policy issue or a network setup issue.&lt;/P&gt;</description>
    <pubDate>Thu, 12 Mar 2015 14:14:15 GMT</pubDate>
    <dc:creator>adhogan</dc:creator>
    <dc:date>2015-03-12T14:14:15Z</dc:date>
    <item>
      <title>Virtual 3DS on ESXi</title>
      <link>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621577#M1027753</link>
      <description>&lt;P&gt;We're trying to get a new Sourcefire solution up and running. &amp;nbsp;We're using the virtual servers rather than physical installed onto an ESXi 5.1 host.&lt;/P&gt;&lt;P&gt;We're running the 3DS in passive mode so we have 3 network adapters configured, 1 for management, 1 for internal traffic and 1 for external traffic (2 separate physical&amp;nbsp;switches handle each). &amp;nbsp;&lt;/P&gt;&lt;P&gt;I've configured the two physical switches to mirror from port X to port Y and connected 2 physical network ports on the ESXi host to each port Y on the physical switch. &amp;nbsp;&lt;/P&gt;&lt;P&gt;I've created two separate vSwitches with each physical network port confgured in each, so vmnic2 is on vSwitch External and vmnic3 is on vSwitch Internal. &amp;nbsp;vmnic2 is connected to Port Y on physical switch 1 and vmnic3 is connected to Port Y on physical switch2.&lt;/P&gt;&lt;P&gt;Each vSwitch and PortGroup has been configured to accept promiscuous accept MAC address changes and Accept Forged transmits.&lt;/P&gt;&lt;P&gt;With all this configured and from what I can find out this is how it needs to be configured, I'm not seeing any traffic on the 3DS. &amp;nbsp;The Defence Center is showing no traffic and no connections.&lt;/P&gt;&lt;P&gt;Has anyone got any suggestions on what I've missed or how this is supposed to be configured?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 12:38:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621577#M1027753</guid>
      <dc:creator>mk-brown</dc:creator>
      <dc:date>2019-03-12T12:38:33Z</dc:date>
    </item>
    <item>
      <title>Can you sniff traffic from</title>
      <link>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621578#M1027756</link>
      <description>&lt;P&gt;Can you sniff traffic from your sensing interfaces? See anything?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Then at least we can figure out if it's a policy issue or a network setup issue.&lt;/P&gt;</description>
      <pubDate>Thu, 12 Mar 2015 14:14:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621578#M1027756</guid>
      <dc:creator>adhogan</dc:creator>
      <dc:date>2015-03-12T14:14:15Z</dc:date>
    </item>
    <item>
      <title>How do I check if I can sniff</title>
      <link>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621579#M1027759</link>
      <description>&lt;P&gt;How do I check if I can sniff traffic? &amp;nbsp;I'm not seeing anything when I do a show itraffic-statistics on the 3DS.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;update: I found out how to do a tcpdump from the command line of the 3DS and it's definitely receiving traffic from the mirrored switch port, so it must be a configuration issue, so passing onto the contractor doing that to fix.&lt;/P&gt;</description>
      <pubDate>Fri, 13 Mar 2015 04:46:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621579#M1027759</guid>
      <dc:creator>mk-brown</dc:creator>
      <dc:date>2015-03-13T04:46:26Z</dc:date>
    </item>
    <item>
      <title>http://www.cisco.com/c/en/us</title>
      <link>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621580#M1027763</link>
      <description>&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/sourcefire-firepower-8000-series-appliances/117778-technote-sourcefire-00.html&lt;/P&gt;</description>
      <pubDate>Fri, 13 Mar 2015 12:10:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/virtual-3ds-on-esxi/m-p/2621580#M1027763</guid>
      <dc:creator>adhogan</dc:creator>
      <dc:date>2015-03-13T12:10:53Z</dc:date>
    </item>
  </channel>
</rss>

