cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
367
Views
0
Helpful
1
Replies

IDSM2 and VACLs to capture monitored traffic

Hi all,

I am configuring an IDSM2 module in a cat6500 siwtch running CatOS. I configured some VACLs to capture traffic to send it to the data port of the IDSM2 but I started to have connectivity issues with the vlans I mapped to the VACLs. As far as I know the VACLs with the capture option do not block or affect the traffic flow, is this correct?

Regards

1 Accepted Solution

Accepted Solutions

ovt
Level 4
Level 4

Yes, but the VACL has implicit "deny any" at the end, so you'd use:

set security acl acl-name permit ip any any

otherwise all other traffic will be blocked.

View solution in original post

1 Reply 1

ovt
Level 4
Level 4

Yes, but the VACL has implicit "deny any" at the end, so you'd use:

set security acl acl-name permit ip any any

otherwise all other traffic will be blocked.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card