PG1X

My Knowledge Base

User Tools

Site Tools


tech:network:cisco:span-rspan:span-rspan

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
tech:network:cisco:span-rspan:span-rspan [2019/11/11 08:21]
wnoguchi
tech:network:cisco:span-rspan:span-rspan [2019/11/12 08:22] (current)
wnoguchi
Line 191: Line 191:
 ===== Local SPAN Lab ===== ===== Local SPAN Lab =====
  
-  * SW1+  * SW1
  
 <​code>​ <​code>​
Line 202: Line 202:
 </​code>​ </​code>​
  
-  * SW1+  * SW1
  
 <​code>​ <​code>​
Line 213: Line 213:
 </​code>​ </​code>​
  
-  * SW1+  * SW1
  
 <​code>​ <​code>​
Line 226: Line 226:
 to monitor 802.1Q tag, see [[tech:​network:​wireshark:​capture-ieee802.1q-frame-with-wireshark:​capture-ieee802.1q-frame-with-wireshark]] to monitor 802.1Q tag, see [[tech:​network:​wireshark:​capture-ieee802.1q-frame-with-wireshark:​capture-ieee802.1q-frame-with-wireshark]]
  
-  * SW1+  * SW1
  
 <​code>​ <​code>​
Line 237: Line 237:
 </​code>​ </​code>​
  
-  * SW1+  * SW1
  
 <​code>​ <​code>​
Line 248: Line 248:
 </​code>​ </​code>​
  
-  * SW1+  * SW1
  
 <​code>​ <​code>​
 configure terminal configure terminal
 ! !
-monitor session 1 source ​vlan 128+monitor session 1 source ​interface FastEthernet 1/0/1 
 +monitor session 1 destination interface FastEthernet 1/0/11, FastEthernet 1/0/12 
 +
 +end 
 +</​code>​ 
 + 
 +  * ✔SW1 
 + 
 +<​code>​ 
 +configure terminal 
 +
 +monitor session 1 source interface FastEthernet 1/0/1
 monitor session 1 destination interface FastEthernet 1/0/11, FastEthernet 1/0/12 encapsulation replicate monitor session 1 destination interface FastEthernet 1/0/11, FastEthernet 1/0/12 encapsulation replicate
 ! !
Line 259: Line 270:
 </​code>​ </​code>​
  
 +  * ✔SW1(filter vlan)
  
-===== Remote SPAN(RSPAN) Lab =====+<​code>​ 
 +configure terminal 
 +
 +monitor session 1 source interface FastEthernet 1/0/1 
 +monitor session 1 filter vlan 1 , 128 - 129 
 +monitor session 1 destination interface FastEthernet 1/0/12 encapsulation replicate 
 +
 +end 
 +</​code>​
  
-++++ SW1 Configuration ​|+  * ✔SW1(filter vlan) 
 + 
 +<​code>​ 
 +configure terminal 
 +
 +monitor session 1 source interface FastEthernet 1/0/1 
 +monitor session 1 filter vlan 1 , 128 , 130 
 +monitor session 1 destination interface FastEthernet 1/0/12 
 +
 +end 
 +</​code>​ 
 + 
 +++++ SW1 Console Log |
  
   * SW1   * SW1
 +
 +<​code>​
 +SW1(config)#​do sh run | i monitor
 +monitor session 1 source interface Fa1/0/1
 +monitor session 1 filter vlan 1 , 128 , 130
 +monitor session 1 destination interface Fa1/0/12
 +SW1(config)#​do sh monitor
 +Session 1
 +---------
 +Type                   : Local Session
 +Source Ports           : ​
 +    Both               : Fa1/0/1
 +Destination Ports      : Fa1/0/12
 +    Encapsulation ​     : Native
 +          Ingress ​     : Disabled
 +Filter VLANs           : 1,128,130
 +
 +
 +SW1(config)#​
 +SW1(config)#​monitor session 1 destination int f1/0/12 encapsulation rep
 +SW1(config)#​$sion 1 destination int f1/0/12 encapsulation replicate ​
 +SW1(config)#​do sh monit
 +SW1(config)#​do sh monitor ​
 +Session 1
 +---------
 +Type                   : Local Session
 +Source Ports           : ​
 +    Both               : Fa1/0/1
 +Destination Ports      : Fa1/0/12
 +    Encapsulation ​     : Replicate
 +          Ingress ​     : Disabled
 +Filter VLANs           : 1,128,130
 +
 +
 +SW1(config)#​
 +</​code>​
 +
 +++++
 +
 +===== Remote SPAN(RSPAN) Lab =====
 +
 +  * ✔SW1
  
 <​code>​ <​code>​
Line 279: Line 353:
 </​code>​ </​code>​
  
-+++++RSPAN seems to be not work ''​encapsulation replicate'',​ any tags stripped. 
 + 
 +  * ✔SW2 
 + 
 +<​code>​ 
 +configure terminal 
 +
 +vlan 999 
 + ​remote-span 
 +exit 
 +
 +monitor session 1 source remote vlan 999 
 +monitor session 1 destination interface FastEthernet 1/0/12 encapsulation replicate 
 +
 +end 
 +</​code>​
  
-++++ SW2 Configuration ​|+++++ SW2 mis-configuration ​|
  
   * SW2   * SW2
Line 300: Line 389:
 ++++ ++++
  
-++++ SW3 Configuration ​|+++++ SW3 mis-configuration ​|
  
   * SW3   * SW3
Line 319: Line 408:
 ++++ ++++
  
 +++++ SW2 Configuration Log |
 +
 +  * SW2
 +
 +<​code>​
 +SW2#conf t
 +Enter configuration commands, one per line.  End with CNTL/Z.
 +SW2(config)#​vl
 +SW2(config)#​vlan 999
 +SW2(config-vlan)#​remo
 +SW2(config-vlan)#​remote-span ​
 +SW2(config-vlan)#​exit
 +SW2(config)#​moni
 +SW2(config)#​monitor sess
 +SW2(config)#​monitor session 1 sou
 +SW2(config)#​monitor session 1 source remo
 +SW2(config)#​monitor session 1 source remote vl
 +SW2(config)#​monitor session 1 source remote vlan 999
 +SW2(config)#​moint
 +SW2(config)#​monito
 +SW2(config)#​monitor ses
 +SW2(config)#​monitor session 1 des
 +SW2(config)#​monitor session 1 destination remo
 +SW2(config)#​monitor session 1 destination remote vl
 +SW2(config)#​monitor session 1 destination remote vlan 999
 +% RSPAN VLAN already exists as source. The same session cannnot have RSPAN VLAN both as source and destination
 +SW2(config)#​do sh run | i monitor
 +monitor session 1 source remote vlan 999 
 +SW2(config)#​monitor session 1 destination remote vlan 999
 +% RSPAN VLAN already exists as source. The same session cannnot have RSPAN VLAN both as source and destination
 +SW2(config)#​
 +</​code>​
 +
 +<​code>​
 +SW2(config)#​vlan 999
 +SW2(config-vlan)#​remo
 +SW2(config-vlan)#​remote-span ​
 +SW2(config-vlan)#​exit
 +SW2(config)#​
 +*Mar  1 01:​25:​52.131:​ %LINK-3-UPDOWN:​ Interface FastEthernet1/​0/​12,​ changed state to up
 +*Mar  1 01:​25:​53.138:​ %LINEPROTO-5-UPDOWN:​ Line protocol on Interface FastEthernet1/​0/​12,​ changed state to up
 +SW2(config)#​reo
 +SW2(config)#​reosl
 +SW2(config)#​moni ​
 +SW2(config)#​monitor se
 +SW2(config)#​monitor session 1 sou
 +SW2(config)#​monitor session 1 source remo
 +SW2(config)#​monitor session 1 source remote vl
 +SW2(config)#​monitor session 1 source remote vlan 999
 +SW2(config)#​moni
 +SW2(config)#​monitor se
 +SW2(config)#​monitor session 1 des
 +SW2(config)#​monitor session 1 destination int
 +SW2(config)#​monitor session 1 destination interface f1/0/12 en
 +SW2(config)#​monitor session 1 destination interface f1/0/12 encapsulation rep
 +SW2(config)#​$sion 1 destination interface f1/0/12 encapsulation replicate ​
 +SW2(config)#​no monitor session 1 destination interface f1/0/12 encapsulation r$
 +SW2(config)#​$session 1 destination interface f1/​0/​12 ​                        
 +% All or part of the specified port(s) are not the destination port of the SPAN session. Command rejected.
 +SW2(config)#​monitor session 1 destination interface f1/​0/​12 ​  
 +SW2(config)#​do sh run | i monitor
 +monitor session 1 destination interface Fa1/0/12
 +monitor session 1 source remote vlan 999 
 +SW2(config)#​
 +*Mar  1 01:​35:​43.184:​ %LINEPROTO-5-UPDOWN:​ Line protocol on Interface FastEthernet1/​0/​23,​ changed state to down
 +SW2(config)#​
 +*Mar  1 01:​35:​44.199:​ %LINK-3-UPDOWN:​ Interface FastEthernet1/​0/​23,​ changed state to down
 +SW2(config)#​
 +*Mar  1 01:​35:​48.419:​ %LINK-3-UPDOWN:​ Interface FastEthernet1/​0/​23,​ changed state to up
 +SW2(config)#​
 +*Mar  1 01:​35:​50.440:​ %LINEPROTO-5-UPDOWN:​ Line protocol on Interface FastEthernet1/​0/​23,​ changed state to up
 +SW2(config)#​vlan 998        ​
 +SW2(config-vlan)#​remo
 +SW2(config-vlan)#​remote-span ​
 +SW2(config-vlan)#​exit
 +SW2(config)#​do sh vlan bri
 +
 +VLAN Name                             ​Status ​   Ports
 +---- -------------------------------- --------- -------------------------------
 +1    default ​                         active ​   Fa1/0/1, Fa1/0/2, Fa1/0/4
 +                                                Fa1/0/5, Fa1/0/6, Fa1/0/7
 +                                                Fa1/0/8, Fa1/0/9, Fa1/0/10
 +                                                Fa1/0/11, Fa1/0/13, Fa1/0/14
 +                                                Fa1/0/15, Fa1/0/16, Fa1/0/17
 +                                                Fa1/0/18, Fa1/0/19, Fa1/0/20
 +                                                Fa1/0/21, Fa1/0/22, Gi1/0/1
 +                                                Gi1/0/2
 +128  VLAN0128 ​                        ​active ​   ​
 +129  VLAN0129 ​                        ​active ​   ​
 +130  VLAN0130 ​                        ​active ​   ​
 +998  VLAN0998 ​                        ​active ​   ​
 +999  VLAN0999 ​                        ​active ​   ​
 +1002 fddi-default ​                    ​act/​unsup ​
 +1003 token-ring-default ​              ​act/​unsup ​
 +1004 fddinet-default ​                 act/​unsup ​
 +1005 trnet-default ​                   act/​unsup ​
 +SW2(config)#​moni
 +SW2(config)#​monitor se
 +SW2(config)#​monitor session 1 de
 +SW2(config)#​monitor session 1 destination remo
 +SW2(config)#​monitor session 1 destination remote vl
 +SW2(config)#​monitor session 1 destination remote vlan 998
 +% Session - 1 is a not a Remote Source session. Can't add RSPAN VLAN as destination
 +SW2(config)#​do sh vlan brief
 +
 +VLAN Name                             ​Status ​   Ports
 +---- -------------------------------- --------- -------------------------------
 +1    default ​                         active ​   Fa1/0/1, Fa1/0/2, Fa1/0/4
 +                                                Fa1/0/5, Fa1/0/6, Fa1/0/7
 +                                                Fa1/0/8, Fa1/0/9, Fa1/0/10
 +                                                Fa1/0/11, Fa1/0/13, Fa1/0/14
 +                                                Fa1/0/15, Fa1/0/16, Fa1/0/17
 +                                                Fa1/0/18, Fa1/0/19, Fa1/0/20
 +                                                Fa1/0/21, Fa1/0/22, Gi1/0/1
 +                                                Gi1/0/2
 +128  VLAN0128 ​                        ​active ​   ​
 +129  VLAN0129 ​                        ​active ​   ​
 +130  VLAN0130 ​                        ​active ​   ​
 +998  VLAN0998 ​                        ​active ​   ​
 +999  VLAN0999 ​                        ​active ​   ​
 +1002 fddi-default ​                    ​act/​unsup ​
 +1003 token-ring-default ​              ​act/​unsup ​
 +1004 fddinet-default ​                 act/​unsup ​
 +1005 trnet-default ​                   act/​unsup ​
 +SW2(config)#​do sh run | sec vlan
 +vlan internal allocation policy ascending
 +vlan 128-130 ​
 +vlan 998
 + ​remote-span
 +vlan 999
 + ​remote-span
 +monitor session 1 source remote vlan 999 
 +SW2(config)#​monitor session 1 destination remote ?       
 +  vlan  Remote SPAN destination RSPAN VLAN
 +
 +SW2(config)#​monitor session 1 destination remote v
 +SW2(config)#​monitor session 1 destination remote vlan ?
 +  <​1006-4094> ​ Remote SPAN destination extended RSPAN VLAN number
 +  <​2-1001> ​    ​Remote SPAN destination RSPAN VLAN number
 +
 +SW2(config)#​monitor session 1 destination re                  ​
 +SW2(config)#​monitor session 1 destination remote vl
 +SW2(config)#​monitor session 1 destination remote vlan 998
 +% Session - 1 is a not a Remote Source session. Can't add RSPAN VLAN as destination
 +SW2(config)#​
 +</​code>​
 +
 +++++
 +
 +  - [[https://​community.cisco.com/​t5/​switching/​rspan-limiting-vlan-sources/​td-p/​2049464|RSPAN... limiting VLAN sources?!? - Cisco Community]]
 +  - [[https://​community.cisco.com/​t5/​routing/​rspan-over-multiple-switches/​td-p/​613469|Solved:​ RSPAN over multiple switches - Cisco Community]]
 +
 +SW2 rejected multiple switch RSPAN...
 +
 +<​code>​
 +Fa1/0/1 - SW1 - SW2 - SW3 - Wireshark
 +</​code>​
 +
 +Let's reference CCO(cisco.com)
 +
 +  - [[https://​www.cisco.com/​c/​en/​us/​td/​docs/​ios-xml/​ios/​lanswitch/​command/​lsw-cr-book/​lsw-m1.html#​wp3062797913|Cisco IOS LAN Switching Command Reference - mac address-group through revision [Support] - Cisco]]
  
 ===== References ===== ===== References =====
tech/network/cisco/span-rspan/span-rspan.1573428068.txt.gz · Last modified: 2019/11/11 08:21 by wnoguchi