cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
610
Views
0
Helpful
2
Replies

SPAN port with port filter

Manuela85
Level 1
Level 1

Hello i need helping,

i woud filtring the vlans on dns traffic. It runs only this fail:

I see on my wireshark only: DNS Standard query. I need rx/tx traffic flow: DNS Standard query response fails on this config.

Configuration:

access-list 101 permit udp any any eq domain

monitor session 1 source vlan 500 - 501
monitor session 1 destination interface Gi1/0/11
monitor session 1 filter ip access-group 101

Without this command: monitor session 1 filter ip access-group 101 --> it runs! Its all traffic, its for my no a solution!

Thanks for helping!

2 Replies 2

Ganesh Hariharan
VIP Alumni
VIP Alumni
Hello i need helping,
i woud filtring the vlans on dns traffic. It runs only this fail:I see on my wireshark only: DNS Standard query. I need rx/tx traffic flow: DNS Standard query response fails on this config.
Configuration:
access-list 101 permit udp any any eq domain
monitor session 1 source vlan 500 - 501
monitor session 1 destination interface Gi1/0/11
monitor session 1 filter ip access-group 101
Without this command: monitor session 1 filter ip access-group 101 --> it runs! Its all traffic, its for my no a solution!
Thanks for helping!

Hi,

Rather applying ACL, take the traffic on the wireshark PC and apply filter for DNS traffic. Will that not help you.

-GI

No i will not filter on my wireshark. The wireshark is only a test device. After installation is a dns logger.