Example 11 is an inline flow mapping based solution on GigaVUE-HC2. Example 11 has a single, unprotected inline network, a single inline tool, a rule-based map (VLAN 100) from the inline network to bypass, and a shared collector from the inline network to the inline tool. Traffic on VLAN 100 will not be inspected by the inline tool, while the remaining traffic will be inspected by the inline tool (through the bypass).
Step
Description
Command
- Configure inline network aliases, port type (inline-network), and administratively enable inline network ports.
(config) # port 7/2/x1 alias iN1
(config) # port iN1 type inline-network
(config) # port iN1 params admin enable
(config) # port 7/2/x20 alias iN2
(config) # port iN2 type inline-network
(config) # port iN2 params admin enable
- Configure inline network.
(config) # inline-network alias inNet pair net-a iN1 and net-b iN2
- Configure inline tool ports, port type (inline-tool), and administratively enable inline tool ports.
(config) # port 7/2/x2 alias iT1
(config) # port iT1 type inline-tool
(config) # port iT1 params admin enable
(config) # port 7/2/x15 alias iT2
(config) # port iT2 type inline-tool
(config) # port iT2 params admin enable
- Configure inline tool and enable it.
(config) # inline-tool alias inTool pair tool-a iT1 and tool-b iT2
(config) # inline-tool alias inTool enable
- Enable default heartbeat.
(config) # inline-tool alias inTool heart-beat
- Configure rule-based map, from inline network to bypass.
(config) # map alias inMap2
(config map alias inMap2) # type inline byRule
(config map alias inMap2) # from inNet
(config map alias inMap2) # to bypass
(config map alias inMap2) # rule add pass vlan 100
(config map alias inMap2) # exit
(config) #
- Add a shared collector, from inline network to inline tool.
(config) # map-scollector alias scoll2
(config map-scollector alias scoll2) # from inNet
(config map-scollector alias scoll2) # collector inTool
(config map-scollector alias scoll2) # exit
(config) #
- Configure the path of the traffic to inline tool.
(config) # inline-network alias inNet traffic-path to-inline-tool
- Display the configuration for this example.
(config) # show map
'업무이야기 > 패킷전달플랫폼' 카테고리의 다른 글
Gigamon Inline Flow Mapping Based Solution D (0) | 2021.01.17 |
---|---|
Gigamon Inline Flow Mapping Based Solution C (0) | 2021.01.17 |
Gigamon Inline Flow Mapping Based Solution A (0) | 2021.01.17 |
Gigamon Inline Network Group (Many-to-Many) (0) | 2021.01.17 |
Gigamon Inline Network Group (Many-to-One) (0) | 2021.01.17 |