monitor session
monitor session
Use the monitor session global configuration command on the switch stack or on a standalone switch
to start a new Switched Port Analyzer (SPAN) session or Remote SPAN (RSPAN) source or destination
session, to enable ingress traffic on the destination port for a network security device (such as a Cisco
IDS Sensor Appliance), to add or delete interfaces or VLANs to or from an existing SPAN or RSPAN
session, and to limit (filter) SPAN source traffic to specific VLANs. Use the no form of this command
to remove the SPAN or RSPAN session or to remove source or destination interfaces or filters from the
SPAN or RSPAN session. For destination interfaces, the encapsulation replicate keywords are ignored
with the no form of the command.
Syntax Description
session_number
destination
interface interface-id
encapsulation replicate
ingress
dot1q vlan vlan-id
isl
Catalyst 3750 Switch Command Reference
2-188
monitor session session_number destination {interface interface-id [, | -] [encapsulation
replicate] [ingress {dot1q vlan vlan-id | isl | untagged vlan vlan-id | vlan vlan-id}]} | {remote
vlan vlan-id}
monitor session session_number filter vlan vlan-id [, | -]
monitor session session_number source {interface interface-id [, | -] [both | rx | tx]} | {vlan
vlan-id [, | -] [both | rx | tx]}| {remote vlan vlan-id}
no monitor session {session_number | all | local | remote}
no monitor session session_number destination {interface interface-id [, | -] [encapsulation
replicate] [ingress {dot1q vlan vlan-id | isl | untagged vlan vlan-id | vlan vlan-id}]} | {remote
vlan vlan-id}
no monitor session session_number filter vlan vlan-id [, | -]
no monitor session session_number source {interface interface-id [, | -] [both | rx | tx]} | {vlan
vlan-id [, | -] [both | rx | tx]} | {remote vlan vlan-id}
Specify the session number identified with the SPAN or RSPAN session.
The range is 1 to 66.
Specify the SPAN or RSPAN destination. A destination must be a physical
port.
Specify the destination or source interface for a SPAN or RSPAN session.
Valid interfaces are physical ports (including type, stack member, module,
and port number). For source interface, port channel is also a valid
interface type, and the valid range is 1 to 12.
(Optional) Specify that the destination interface replicates the source
interface encapsulation method. If not selected, the default is to send
packets in native form (untagged).
Note
(Optional) Enable ingress traffic forwarding.
Specify ingress forwarding using 802.1Q encapsulation with the specified
VLAN as the default VLAN for ingress traffic.
Specify ingress forwarding using ISL encapsulation.
Chapter 2
Entering these keywords is valid only for local SPAN; for RSPAN,
the RSPAN VLAN ID overwrites the original VLAN ID; therefore
packets are always sent untagged.
Catalyst 3750 Switch Cisco IOS Commands
78-16181-01