Traffic Mirroring
Allows you to monitor traffic to detect threats or troubleshoot
problems
Advantages
•
Allows you to monitor traffic from the local switch or from multiple
remote switches
•
Eliminates the need for a monitoring port on every switch
•
Reduces the number of necessary security appliances
Stations
*Intrusion detection system (IDS)/ Intrusion prevention system (IPS)
Network
2
Selected traffic is mirrored
to another switch.
1
2
3
4
5
6
7
L i n k
M o d e
U s e o n l y o n e ( T o r M ) f o r e a c h D u a l - P e r s o n a l i t y P o r t
1
2
3
4
5
6
7
L i n k
M o d e
U s e o n l y o n e ( T o r M ) f o r e a c h D u a l - P e r s o n a l i t y P o r t
1
8
9
1 0
1 1
1 2
1 3
1 4
L i n k
M o d e
T
1 5
M
T
1 6
M
1
8
9
1 0
1 1
1 2
1 3
1 4
L i n k
T
M o d e
1 5
M
T
1 6
M
G i g - T / G B I C
h p p r o c u r v e
G i g - T / G B I C
h p p r o c u r v e
x l m o d u l e
xl
x l m o d u l e
xl
J 4 9 0 7 A
8
1 0 / 1 0 0 / 1 0 0 0 - T P o r t s ( 1 - 1 4 , 1 5 T , 1 6 T ) - p o r t s a r e I E E E A u t o M D I / M D I - X
1 4
D u a l - P e r s o n a l i t y P o r t s : 1 0 / 1 0 0 / 1 0 0 0 - T ( T ) o r M i n i - G B I C ( M )
m o d u l e
J 4 9 0 7 A
8
1 0 / 1 0 0 / 1 0 0 0 - T P o r t s ( 1 - 1 4 , 1 5 T , 1 6 T ) - p o r t s a r e I E E E A u t o M D I / M D I - X
1 4
D u a l - P e r s o n a l i t y P o r t s : 1 0 / 1 0 0 / 1 0 0 0 - T ( T ) o r M i n i - G B I C ( M )
m o d u l e
1
Traffic is selected based
5400zl Switch
on port, VLAN, or ACL.
IDS/IPS*
3
Destination switch
forwards mirrored
traffic to IDS/IPS.
3500yl Switch
3