how to configure more than one remote observing port on s5720

Created Mar 27, 2019 16:43:20Latest reply Mar 27, 2019 16:56:05 62 2 0 0
  Rewarded E Coins: 0 (problem resolved)

I'm working on configuring RSPAN on S5720, what I want to is configure two observe port on s5720 so that if one of the two ports which connect to the remote observer is blocked by the STP, the mirroring traffci could reach the  remote observer.
the problem is that when I configured the second observe port,  it will cover the previous one,can't I enable two observe-ports simultaneously?

  • x
  • convention:

chenhui  Admin   Created Mar 27, 2019 16:43:56 Helpful(0) Helpful(0)


You can add the interface to the observe the port by using the command observe-port xx interface-range { add | delete } yy.

Please check it.
  • x
  • convention:

Mohamed_Mostafa  Novice   Created Mar 27, 2019 16:56:05 Helpful(0) Helpful(0)

Thisis a reference example to your scenario :
( you can configure more observe ports with same scenario ) for Configuring Layer 2 Remote Port Mirroring&docid=EDOC1100064944


  1. Configure an observing port on SwitchA.

    # Configure GE1/0/2 of SwitchA as a Layer 2 remote observing port and bind the observing port to VLAN 10.

    <HUAWEI> system-view
    [HUAWEI] sysname SwitchA
    [SwitchA] observe-port 1 interface gigabitethernet 1/0/2 vlan 10     //Configure GE1/0/2 as Layer 2 remote observing port 1, and add it to VLAN 10.

    After the configuration is complete, the observing port forwards mirrored packets to VLAN 10 removing the need to add the observing port to the VLAN.

  2. Configure a mirrored port on SwitchA.

    # Configure GE1/0/1 of SwitchA as a mirrored port to copy the packets received by the mirrored port to the Layer 2 remote observing port.

    [SwitchA] interface gigabitethernet 1/0/1
    [SwitchA-GigabitEthernet1/0/1] port-mirroring to observe-port 1 inbound     //Mirror incoming traffic on GE1/0/1 to observing port 1.
    [SwitchA-GigabitEthernet1/0/1] return

  3. Create a VLAN on SwitchB and add ports to the VLAN.

    # Create VLAN 10 on SwitchB, disable MAC address learning in this VLAN, and add GE1/0/1 and GE1/0/2 to VLAN 10.

    icon-note.gif NOTE:

    Here, VLAN 10 is used for forwarding only mirrored packets. If VLAN 10 already exists and has learned MAC address entries, run the undo mac-address vlan vlan-id command in the system view to delete all MAC address entries in VLAN 10.

    <HUAWEI> system-view
    [HUAWEI] sysname SwitchB
    [SwitchB] vlan 10
    [SwitchB-vlan10] mac-address learning disable     //Disable MAC address learning in this VLAN.
    [SwitchB-vlan10] quit
    [SwitchB] interface gigabitethernet 1/0/1
    [SwitchB-GigabitEthernet1/0/1] port link-type access     //Set the link type of the interface on the monitoring device to access. The default link type of interfaces is not access.
    [SwitchB-GigabitEthernet1/0/1] port default vlan 10
    [SwitchB-GigabitEthernet1/0/1] quit
    [SwitchB] interface gigabitethernet 1/0/2
    [SwitchB-GigabitEthernet1/0/2] port link-type trunk     //Set the link type of the interface on the network side to trunk. The default link type of interfaces is not trunk.
    [SwitchB-GigabitEthernet1/0/2] port trunk allow-pass vlan 10
    [SwitchB-GigabitEthernet1/0/2] return

  4. Verify the configuration.

    # Check the observing port configuration.

    <SwitchA> display observe-port
      Index          : 1
      Untag-packet   : No
      Interface      : GigabitEthernet1/0/2
      Vlan           : 10

    # Check the mirrored port configuration.

    <SwitchA> display port-mirroring
      Observe-port 1 : GigabitEthernet1/0/2
           Mirror-port               Direction  Observe-port
      1    GigabitEthernet1/0/1      Inbound    Observe-port 1

This article contains more resources

You need to log in to download or view. No account?Register

  • x
  • convention:

Network & Security Engineer


You need to log in to reply to the post Login | Register

Notice:To ensure the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but not limited to politically sensitive content, content concerning pornography, gambling, drug abuse and trafficking, content that may disclose or infringe upon others' intellectual properties, including commercial secrets, trade marks, copyrights, and patents, and personal privacy. Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see“ Privacy Policy.”
If the attachment button is not available, update the Adobe Flash Player to the latest version!
Fast reply Scroll to top