My first attempt at a cisco port mirror. basically I have an IPS sensor on port 2 that needs to monitor the internet port on port 1. So I enter the commands to set it up. However, after I do this, my IPS cannot connect to the sensor on port 2.
Basically, I need port 1 and 2 to see each other - I don't want to resort to a hub
more info......
the IPS is 10.10.10.6, the sensor on port 2 is 10.10.10.5, the firewall is 10.10.10.1 on port 1
I used these commands:
monitor session 1 source int gig 0/1
monitor session 1 dest int gig 0/2 encap replicate
Am I screwing up here? thanks!
Basically, I need port 1 and 2 to see each other - I don't want to resort to a hub
more info......
the IPS is 10.10.10.6, the sensor on port 2 is 10.10.10.5, the firewall is 10.10.10.1 on port 1
I used these commands:
monitor session 1 source int gig 0/1
monitor session 1 dest int gig 0/2 encap replicate
Am I screwing up here? thanks!