Net Optics Director manual View filters, Udp

Page 34

Director

Network Port 5

Protocol =

TCP

+ Monitor Port 1

Protocol =

UDP

￿lter add in_ports=n1.5 ip_proto=6 action=redir redir_ports=m.1 ￿lter add in_ports=n1.5 ip_proto=17 action=redir redir_ports=m.1

Figure 29: Logical OR filter connection

View filters

To view a list of all pending filters, enter filter list. To view the active filters, enter filter running.

Net Optics> filter list

Filter #1

src_mac=00:00:00:00:00:00 dst_mac=00:00:00:00:00:00 src_ip=0.0.0.0/255.255.255.255,dst_ip=0.0.0.0/255.255.255.255,ip_proto=0000 l4_src_port=0000,l4_dst_port=0000,vlan=0000,action=redir

in_ports=t1.01 redir_ports=t1.02

Filter #2

src_mac=00:00:00:00:00:00 dst_mac=00:00:00:00:00:00 src_ip=0.0.0.0/255.255.255.255,dst_ip=0.0.0.0/255.255.255.255,ip_proto=0000 l4_src_port=0000,l4_dst_port=0000,vlan=0000,action=redir

in_ports=t1.02 redir_ports=t1.01

Filter #3

src_mac=00:00:00:00:00:00 dst_mac=00:00:00:00:00:00 src_ip=0.0.0.0/255.255.255.255,dst_ip=0.0.0.0/255.255.255.255,ip_proto=0000 l4_src_port=0000,l4_dst_port=0000,vlan=0000,action=redir in_ports=n1.01,n1.02,n1.03,n1.04

redir_ports=m.01,m.10

IPv4 filter resource utilization: 2%

Net Optics>

Figure 30: Filter list command

Tip!____________________________________________________________________________________________________

The ID number (Filter #) shown above each filter in the filter list is the ID that applies for filter del id=<id> and filter ins id=<id> commands, because all three commands act on the pending filter list. Do not use the IDs in a filter running list as the reference for filter del or filter ins commands.

________________________________________________________________________________________________________

30

Image 34
Contents Data Monitoring Switch Trademarks and Copyrights Contents Appendix a Chapter Configuring Filters Using the CLIChapter Appendix BChapter Introduction Monitor port Filtering Key FeaturesEase of Use Passive, Secure TechnologyAbout this Guide DescriptionDirector Architecture Director internal architectureUSB port Director ManagementTypical Application Network LinksMonitoring Tools 10 Gigabit in-line network connection using a network Tap In-line Monitoring of 10 Gigabit LinksMonitor Port LEDs Power LEDsDirector Front Panel DNM / Network Port LEDsDirector Rear Panel XFPChapter Installing Director Plan the Installation Unpack and Inspect the Director deviceInstall SFP and XFP Monitor port Modules Install Director Network ModulesRack Mount the Director device Connect Power to Director Connect the local CLI InterfaceTip Connect the remote CLI InterfaceBaud Data bits No parity 1 stop bit No flow control To connect the CLI for remote use over the Management portLog into the CLI To log into the CLIChange Director Password Configure Director using the CLITo change the login password To assign a new Manager IP address to Director To change the port modeAssign a New Manager IP Address Change Port ModesSave and Load Director Configurations Set the Current Date and TimeUsing the CLI Help Command To view CLI help informationUsing the CLI Command History Buffer Show name show running, factory, default, or file nameConnect Span Ports to Director To connect a Span portConnect Director With In-line Network Links To connect an in-line network linkCheck the Installation Configure a Matrix Switch connection in DirectorConnect Monitoring Tools to Director Chapter Configuring Filters Using the CLI SyntaxEnter filter commit. The switch connection is activated Copy Traffic From Any Network Port to Any Monitor PortRegenerate Traffic to Any Set of Monitor Ports Lter add inports=n1.1 action=redir redirports=m.3-m.5Create Filters To create a filter that selects IPv4 packets by protocolCreate Complex Filters Logical and filter connectionView filters UDPWork with configurable 10 Gigabit ports Configurable 10 Gigabit XFP ports used as Network portsXFP Port Protocol = Monitor Port Understand filter interactions CAMFlow diagram now looks as follows Exclusive filters N1.1 ipproto=UDP action=drop N1.1 m.1To change the Director filter configuration Understand pending and active filtersFilter running command Enter filter list to view the pending filter list Filter capacity Inports=n1.1-n1.7 Ipproto=6 Vlan=100 Redirports=m.1-m.5,m.10Daisy-chaining Multiple Director Chassis Appendix a Director Specifications Specifications, chassisCertifications Specifications, DNMEnvironmental Available ModelsAppendix B Command Line Interface Command Sub-Command Arguments Example and description CommitFilter discard Image Quit User add name=bob pw=bob-pw priv=3 Filter parameters Director Filter Parameters Qual Value Example Description Vlan=128Appendix C Protocol Numbers Num Keyword ProtocolMobile L2TP Limitations on Warranty and Liability By Net Optics, Inc. All Rights Reserved