I need to packet capture all traffic for a specific vlan configured on an etherchannel trunk interface (on a NEXUS 5548).
A local span was successfully configured, however there appears to be no option to filter a specific vlan for the monitor session and therefore all traffic is being captured. Online documentation seems to suggest there is a way to filter a vlan - however i cannot see the option on the CLI (i am unsure if the filtering applies only to remote span, and not local span).
Anyone know of a way to filter vlans for a monitor session, or know a work-around? I am currently capturing the whole VLAN which is not really what i wanted (and may also forward too much traffic)
current config is simply :-
monitor session 1
source vlan 123
destination interface Ethernet1/1
Below is an output from the CLI menu (within the monitor session sub menu) - as u can see there is no filter vlan option. I cannot see anywhere else to add a filter option for an etherchannel trunk interface?
At the moment the monitor session is currently set to monitor the whole vlan123, however i want to monitor only vlan 123 on a specific etherchannel trunk interface.
sw_hostname(config-monitor)# ? description Session description (max 32 characters) destination Destination configuration mtu Set the MTU size for SPAN packets no Negate a command or set its defaults shut Shut a monitor session source Source configuration end Go to exec mode exit Exit from command interpreter pop Pop mode from stack or restore from name push Push current mode to stack or save it under name where Shows the cli context you are in