It is OK either way then.
Regards, Tyson Scott - CCIE #13513 R&S, Security, and SP Managing Partner / Sr. Instructor - IPexpert, Inc. Mailto: [email protected] Telephone: +1.810.326.1444, ext. 208 Live Assistance, Please visit: www.ipexpert.com/chat eFax: +1.810.454.0130 IPexpert is a premier provider of Self-Study Workbooks, Video on Demand, Audio Tools, Online Hardware Rental and Classroom Training for the Cisco CCIE (R&S, Voice, Security & Service Provider) certification(s) with training locations throughout the United States, Europe, South Asia and Australia. Be sure to visit our online communities at www.ipexpert.com/communities and our public website at www.ipexpert.com <http://www.ipexpert.com/> From: [email protected] [mailto:[email protected]] On Behalf Of Vybhav Ramachandran Sent: Sunday, October 10, 2010 1:07 AM To: OSL Security Subject: [OSL | CCIE_Security] Vol1 , Lab3A , Task 3.6 Hello All, Here the task requires us to RSPAN all the traffic between VLAN 4 and VLAN 5 ( essentially VLAN 45 traffic ) from CAT 3 and send it over to the IPS Gi 0/0 interface which is connected to the fa 0/15 interface of CAT4. Also we need to enable the IPS to send TCP resets on it's Gi 0/0 interface. The solution according to me would be Cat3# vlan 450 Cat3# remote-span Cat4# vlan 450 Cat4# remote-span Cat3# monitor session 1 source vlan 45 Cat3# monitor session 1 destionation remote vlan 450 Cat4# monitor session 1 source remote vlan 450 Cat4# monitor session 1 destination interface fa 0/15 ingress vlan 45 The DSG's solution is the same except for one line. Cat4# monitor session 1 source remote vlan 450 (my solution) Cat4# monitor session 1 source vlan 45, 450 ( IPX solution) Does anyone know why we have to again include VLAN 45 in the source? There are no VLAN 45 ports in CAT4 except fa 0/15 ( used for TCP resets ). Cheers, TacACK
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com
