The diagnostics flowmirror allows you to set up a mirror from a chosen source port or LAG and mirror it to a destination port. It can also be mirrored to eth2 on the CPU for the purpose of tcpdump captures or wireshark remote captures.
.png?Policy=eyJTdGF0ZW1lbnQiOlt7IlJlc291cmNlIjoiaHR0cHM6Ly9kemY4dnF2MjRlcWhnLmNsb3VkZnJvbnQubmV0L3VzZXJmaWxlcy80MTcwMy81NDk1Mi9ja2ZpbmRlci9pbWFnZXMvcXUvMjAyNi9pbWFnZSgxMCkucG5nIiwiQ29uZGl0aW9uIjp7IkRhdGVMZXNzVGhhbiI6eyJBV1M6RXBvY2hUaW1lIjoxNzcxMDMzMjkwfX19XX0_&Signature=mzBanmsgj-jXX9aspQUT0OvjxgAaiXTA5x19KGlgolQ9~jdw~F5lruQ-Tx-ral6bNAOCK0qGKUcecY4FUgK7RNvlDdroWaLVdmWgwqFFAmMZregcW1vwYom~6uBHn~UxNrfwB3sGh9umnm7v~5FGI64v~Rx2c2EnH4HTN99JulTGYrQD48UCslIYIg7mfrCrxU~uOODGj9eWuR-5hBjL5d8IwTM3eXwjCQQdJoaSTlfV~DVslqjfllbix1f9Nl82R5UyR1EDx~1x-pCPv2uPLBYs2xhakg7HqhIIGANgOmeyzK2sKqdPeZYowPI5z5gghWWBrBMqYcctgZHy24HjEg__&Key-Pair-Id=K2TK3EG287XSFC)
Diagnostics Flowmirror Attributes
| Attribute | Values | Default | Req | Description |
|---|---|---|---|---|
| Flowmirror | Action to mirror traffic over to a CPU or uplink port for monitoring purposes. | |||
| Enable | Enable | disable | Whether to enable or disable flowmirroring. | ||
| Dir | ngress | egress | both | Both | Y | Which directions to monitor. ingress – incoming packet monitor. egress – outgoing packet monitor both – monitor both ingress and egress packets |
| Net-interface | NET1..NET12 | N/A | Y | When using an Uplink NET as the source, this specifies the name of the NET interface to mirror. |
| NNI-interface | SFP1-1-1.. SFP1-1-4 QSFP1-2-1.. QSFP1-2-6 |
N/A | Y | When using a single port as a mirror source, this specifies the name of the NET interface to mirror. |
| Pon-interface | MDS1-1-1.. MDS1-1-16 |
N/A | Y | When using a PON port as the mirror source, this specifies the name of the PON port to mirror. |
| Target | CPU | SFP1-1-1.. SFP1-1-4 | QSFP1-2-1.. QSFP1-2-6 |
N/A | Y | Default is CPU when using the mirror for tcpdump or rpcap. When doing a mirror for external monitoring with a security appliance or directly capturing, you can specify a target port to send the traffic to. |
| Vlan | <vlan id> | any | Can mirror a single vlan 1..4095 or use any to monitor all vlans. | ||
This example will mirror the uplink NET1 interface into the CPU.
MDS1-ESUA# tolt diagnostics flowmirror dir both
net-interface NET1 vlan any <enter>
action-success true
reason
MDS1-ESUA# _
|
This example will mirror the PON interface into the CPU.
MDS1-ESUA# tolt diagnostics flotmirror dir both pon-interface mds1-1-1 vlan any <enter>
action-success true
reason
MDS1-ESUA# _
|
This example will mirror a single uplink interface into the CPU.
MDS1-ESUA# tolt diagnostics flotmirror nni-interface mds1-1-1 dir both
net-interface NET1 vlan any <enter>
action-success true
reason
MDS1-ESUA# _
|
This example will disable Flowmiroring.
Action – disable
MDS1-ESUA# tolt diagnostics disable <enter>
action-success true
reason
MDS1-ESUA# _
|