Administrator Guide
Dell(conf)#monitor session 0
Dell(conf-mon-sess-0)#flow-based enable
Dell(conf)#
ip access-list ext testflow
Dell(config-ext-nacl)#seq 5 permit icmp any any count bytes monitor
Dell(config-ext-nacl)#seq 10 permit ip 102.1.1.0/24 any count bytes monitor
Dell(config-ext-nacl)#seq 15 deny udp any any count bytes
Dell(config-ext-nacl)#seq 20 deny tcp any any count bytes
Dell(config-ext-nacl)#exit
Dell(conf)#interface gig 1/1
Dell(conf-if-gi-1/1)#
ip access-group testflow in
Dell(conf-if-gi-1/1)#show config
!
interface GigabitEthernet 1/1
ip address 10.11.1.254/24
ip access-group testflow in
shutdown
Dell(conf-if-gi-1/1)#exit
Dell(conf)#do show ip accounting access-list testflow
!
Extended Ingress IP access list testflow on GigabitEthernet 1/1
Total cam count 4
seq 5 permit icmp any any monitor count bytes (0 packets 0 bytes)
seq 10 permit ip 102.1.1.0/24 any monitor count bytes (0 packets 0 bytes)
seq 15 deny udp any any count bytes (0 packets 0 bytes)
seq 20 deny tcp any any count bytes (0 packets 0 bytes)
Dell(conf)#do show monitor session 0
SessionID Source Destination Direction Mode Type
--------- ------ ----------- --------- ---- ----
0 Gi 1/1 Gi 1/2 rx interface Flow-based
Remote Port Mirroring
Remote Port Mirroring is supported on the MXL Switch platform.
While local port monitoring allows you to monitor trac from one or more source ports by directing it to a destination port on the
same switch/router, remote port mirroring allows you to monitor Layer 2 and Layer 3 ingress or egress or both ingressing or
egressing trac on multiple source ports on dierent switches and forward the mirrored trac to multiple destination ports on
dierent switches. Remote port mirroring helps network administrators monitor and analyze trac to troubleshoot network problems
in a time-saving and ecient way.
In a remote-port mirroring session, monitored trac is tagged with a VLAN ID and switched on a user-dened, non-routable L2
VLAN. The VLAN is reserved in the network to carry only mirrored trac, which is forwarded on all egress ports of the VLAN. Each
intermediate switch that participates in the transport of mirrored trac must be congured with the reserved L2 VLAN. Remote
port monitoring supports mirroring sessions in which multiple source and destination ports are distributed across multiple switches
Remote Port Mirroring Example
Remote port mirroring uses the analyzers shown in the aggregation network in Site A.
The VLAN trac on monitored links from the access network is tagged and assigned to a dedicated L2 VLAN. Monitored links are
congured in two source sessions shown with orange and green circles. Each source session uses a separate reserved VLAN to
transmit mirrored packets (mirrored source-session trac is shown with an orange or green circle with a blue border).
The reserved VLANs transport the mirrored trac in sessions (blue pipes) to the destination analyzers in the local network. Two
destination sessions are shown: one for the reserved VLAN that transports orange-circle trac; one for the reserved VLAN that
transports green-circle trac.
596
Port Monitoring