02-18-2021 09:59 AM
HI everyone,
Hope you are all doing well. I have one scenario here...
##########################################
Core switch (with VTP Domain server) -- Switch 1 -- switch 2
+
Sniffer
##########################################
Switch 1 has existing SPAN setup so the traffic (those are voice traffic from VOIP phone) from Switch 1 be mirrored to the sniffer (our server) which is also connected on switch1. This settings has been running in the past 10 years.
Now we have a new building and try to expand the network. So we add switch 2 in the new building. We also want the traffic n be able to be mirrored to the sniffer server back connectedon switch 1. Therefore we try to implement RSPAN so we expect all traffic from all devices on both switch1 and switch2 can be mirrored to the server. However, the tech support said we could only the mirror traffic from the device on switch 2 to the server. But he said the traffic from the device on switch 1 cannot.
May I ask if this is feasible? If not true, If so what is the configuration settings? Or what is other possible solutions? Our two switches are in VTP domain..so the support told me the reserved vlan will have to be created on the core switch, which is the VTP domain server.
Thank you for your help in advance.
Bobson
02-18-2021 10:27 AM
Just thinking - If the sniffer has 2 interfaces you can connect both to Switch 1, so 2 can have 2 sources and 2 destinations, is this works for you?
02-18-2021 10:31 AM
02-18-2021 11:56 AM
Not sure about your config but general guidelines here below link : ( that is the reason I have suggested 2 interfaces in the Server ) - that is durable, if you keen to have sniffed the traffic as part of compliance, getting a new interface, not a big task I see here.
02-18-2021 12:08 PM
02-18-2021 03:32 PM
yes, i was about to suggest that also one of the approaches, you can also move the sniff point to exit network, so you can able to capture all device information. since we are not sure how your network (i only thinking this option is feasible to you ?)
In this sense - all the VLAN are stretched to all switches and connected.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide