H3C S7500 Series Operation Manual page 738

Hide thumbs Also See for S7500 Series:
Table of Contents

Advertisement

Operation Manual – Mirroring
H3C S7500 Series Ethernet Switches
Table 1-4 Combined application of ACLs on LPUs other than type A.
Apply all rules in an IP type ACL
Apply one rule in an IP type ACL
Apply all rules in a link type ACL
Apply one rule in a link type
Apply all rules in a user-defined ACL
Apply one rule in a user-defined ACL
Apply one rule in an IP type ACL and one
rule in a Link type ACL simultaneously
Note:
To define a destination port for mirroring, you can also enter the port view of the
specified port directly to execute the mirroring-group group-id monitor-port
command. Refer to corresponding command manual for detail.
III. Configuration example
1)
Network requirements:
GigabitEthernet 2/0/1 on the switch is connected to the 10.1.1.1/24 network
segment.
Mirror the packets from the 10.1.1.1/24 network segment to GigabitEthernet 2/0/4,
the destination port.
2)
Configuration procedure:
<H3C> system-view
[H3C] acl number 2000
[H3C-acl-basic-2000] rule permit source 10.1.1.1 0.0.0.255
[H3C-acl-basic-2000] rule deny source any
[H3C-acl-basic-2000] quit
[H3C] mirroring-group 3 local
[H3C] mirroring-group 3 monitor-port GigabitEthernet 2/0/4
[H3C] interface GigabitEthernet 2/0/1
[H3C-GigabitEthernet2/0/1] qos
[H3C-qosb-GigabitEthernet2/0/1] mirrored-to inbound ip-group 2000 interface
GigabitEthernet 2/0/4
Combination mode
Chapter 1 Mirroring Configuration
Form of acl-rule
ip-group { acl-number | acl-name }
ip-group { acl-number | acl-name } rule
rule-id
link-group { acl-number | acl-name }
link-group { acl-number | acl-name }
rule rule-id
user-group { acl-number | acl-name }
user-group { acl-number | acl-name }
rule rule-id
ip-group { acl-number | acl-name } rule
rule-id link-group { acl-number |
acl-name } rule rule-id
1-15

Advertisement

Table of Contents
loading

Table of Contents