<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Macsec on mirror port in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4301366#M1079035</link>
    <description>&lt;P&gt;hello, thanks for your replies, there is a typo in my original question, the question should be:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is it possible to apply macsec to RSPAN ports on the cisco switches?&lt;/P&gt;&lt;P&gt;the topology is:&lt;/P&gt;&lt;P&gt;there are two switches, SW1 and SW2, the traffic on SW1 needs to be forwarded to the wireshark device that is connected to SW2, i have configured the RSPAN on both switches and i can now see the traffic on the wireshark, so my question now is can the mirrored traffic between SW1 and SW2 be encrypted with macsec?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
    <pubDate>Thu, 04 Mar 2021 12:29:50 GMT</pubDate>
    <dc:creator>LionKin1984</dc:creator>
    <dc:date>2021-03-04T12:29:50Z</dc:date>
    <item>
      <title>Macsec on mirror port</title>
      <link>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4300635#M1078967</link>
      <description>&lt;P&gt;&lt;STRONG&gt;hello&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Can macsec be applied to span/mirror port on the switches?&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Thanks&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Mar 2021 11:12:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4300635#M1078967</guid>
      <dc:creator>LionKin1984</dc:creator>
      <dc:date>2021-03-03T11:12:06Z</dc:date>
    </item>
    <item>
      <title>Re: Macsec on mirror port</title>
      <link>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4300662#M1078969</link>
      <description>&lt;P&gt;You can use a netflow to see the traffic for macsec tags.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;if you use a span/mirror to capture the packet but if the lin is&amp;nbsp; encrypted (if you configured the encryption). you wont be ableto see it as they are encrypted. just like IPsec. &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;you question is specific &lt;STRONG&gt;Can macsec be applied to span/mirror port on the switches&lt;/STRONG&gt;,&lt;/P&gt;
&lt;P&gt;I am not sure to this one let see what others have to say on this.&lt;/P&gt;</description>
      <pubDate>Wed, 03 Mar 2021 14:34:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4300662#M1078969</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2021-03-03T14:34:58Z</dc:date>
    </item>
    <item>
      <title>Re: Macsec on mirror port</title>
      <link>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4300741#M1078980</link>
      <description>&lt;PRE&gt;Can macsec be applied to span/mirror port on the switches?&lt;/PRE&gt;
&lt;P&gt;Cisco TrustSec and Cisco SAP are meant only for switch-to-switch links and are not supported on switch ports connected to end hosts, such as PCs or IP phones&lt;STRONG&gt;.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Between MACsec-capable devices, packets are encrypted on egress from the sending device, decrypted on ingress to the receiving device, and in the clear within the devices.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Mar 2021 14:31:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4300741#M1078980</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-03-03T14:31:22Z</dc:date>
    </item>
    <item>
      <title>Re: Macsec on mirror port</title>
      <link>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4301366#M1079035</link>
      <description>&lt;P&gt;hello, thanks for your replies, there is a typo in my original question, the question should be:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is it possible to apply macsec to RSPAN ports on the cisco switches?&lt;/P&gt;&lt;P&gt;the topology is:&lt;/P&gt;&lt;P&gt;there are two switches, SW1 and SW2, the traffic on SW1 needs to be forwarded to the wireshark device that is connected to SW2, i have configured the RSPAN on both switches and i can now see the traffic on the wireshark, so my question now is can the mirrored traffic between SW1 and SW2 be encrypted with macsec?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Thu, 04 Mar 2021 12:29:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/macsec-on-mirror-port/m-p/4301366#M1079035</guid>
      <dc:creator>LionKin1984</dc:creator>
      <dc:date>2021-03-04T12:29:50Z</dc:date>
    </item>
  </channel>
</rss>

