Community discussions

MikroTik App
 
Spike
just joined
Topic Author
Posts: 3
Joined: Sun Sep 11, 2016 1:44 pm

CRS226-24G-2S+ problem with mirroring

Tue Sep 20, 2016 1:59 pm

Hello , acquired CRS226-24G-2S +, and faced with such a problem . Сreated ACL rule for traffic mirroring , everything worked .
Then mirroring enabled outgoing traffic on a port . And the mirror fell. After switching off the mirroring port mirroring for ACL does not restore.
What could be the problem? Possible failure in the hardware or the software of the problem.
I tried on all versions of RouterOS

P.S. at ACL mirroring restores only after you restart the device.
name: switch1
                                                     type: QCA-8519
                                              bridge-type: customer-vid-used-as-lookup-vid
                      drop-if-no-vlan-assignment-on-ports: 
  drop-if-invalid-or-src-port-not-member-of-vlan-on-ports: 
                                 unknown-vlan-lookup-mode: svl
                                     forward-unknown-vlan: no
                          use-svid-in-one2one-vlan-lookup: no
                          use-cvid-in-one2one-vlan-lookup: yes
                                      mac-level-isolation: yes
                                    multicast-lookup-mode: dst-ip-and-vid-for-ipv4
                         override-existing-when-ufdb-full: no
                                      unicast-fdb-timeout: 5m
                                          ingress-mirror0: ether2-slave-Mirror,unmodified
                                          ingress-mirror1: sfp-sfpplus1-slave-local,analyzer-configured
                                     ingress-mirror-ratio: 1/1
                                           egress-mirror0: ether2-slave-Mirror,modified
                                           egress-mirror1: sfp-sfpplus1-slave-local,analyzer-configured
                                      egress-mirror-ratio: 1/1
                                                 fdb-uses: mirror1
                                                vlan-uses: mirror1
                        mirror-egress-if-ingress-mirrored: no
                                 mirror-tx-on-mirror-port: no
                             mirrored-packet-qos-priority: 0
                          mirrored-packet-drop-precedence: green
                           bypass-vlan-ingress-filter-for: 
                         bypass-ingress-port-policing-for: 
                      bypass-l2-security-check-filter-for:
ACL
0   table=egress invert-match=no dst-ports=microtik-gw dst-l3-port=53 custom-fields="" mac-protocol=ip ip-protocol=udp action=forward 
     attack-filter-bypass=no ingress-vlan-filter-bypass=no egress-vlan-filter-bypass=no isolation-filter-bypass=no mirror-to=mirror0 

 1   table=egress invert-match=no dst-ports=microtik-gw dst-l3-port=80 custom-fields="" mac-protocol=ip ip-protocol=tcp action=forward 
     attack-filter-bypass=no ingress-vlan-filter-bypass=no egress-vlan-filter-bypass=no isolation-filter-bypass=no mirror-to=mirror0
So everything worked.

After adding a port mirroring
name="ether11-nas-7" ingress-customer-tpid=0x8100 egress-customer-tpid=0x8100 ingress-service-tpid=0x88A8 egress-service-tpid=0x88A>
     learn=yes drop-secure-static-mac-move=no drop-dynamic-mac-move=no allow-unicast-loopback=no allow-multicast-loopback=no 
     action-on-static-station-move=forward drop-when-ufdb-entry-src-drop=yes isolation-leakage-profile=29 vlan-type=network-port 
     allow-fdb-based-vlan-translate=no allow-mac-based-service-vlan-assignment-for=all allow-mac-based-customer-vlan-assignment-for=all 
     filter-untagged-frame=no filter-priority-tagged-frame=no filter-tagged-frame=no egress-vlan-tag-table-lookup-key=egress-vid 
     egress-vlan-mode=unmodified ingress-mirror-to=none ingress-mirroring-according-to-vlan=no egress-mirror-to=mirror1 
     qos-scheme-precedence=ingress-acl-based,sa-based,da-based,dscp-based,protocol-based,vlan-based,pcp-based default-customer-pcp=0 
     default-service-pcp=0 pcp-propagation-for-initial-pcp=no egress-pcp-propagation=no dscp-based-qos-dscp-to-dscp-mapping=yes 
     pcp-or-dscp-based-qos-change-dei=no pcp-or-dscp-based-qos-change-pcp=no pcp-or-dscp-based-qos-change-dscp=no 
     pcp-based-qos-drop-precedence-mapping=0-15:green pcp-based-qos-dscp-mapping=0-15:0 pcp-based-qos-dei-mapping=0-15:0 
     pcp-based-qos-pcp-mapping=0-15:0 pcp-based-qos-priority-mapping=0-15:0 priority-to-queue=0-15:0,1:1,2:2,3:3 
     per-queue-scheduling=wrr-group0:1,wrr-group0:2,wrr-group0:4,wrr-group0:8,wrr-group0:16,wrr-group0:32,wrr-group0:64,wrr-group0:128 
     custom-drop-counter-includes="" queue-custom-drop-counter0-includes="" queue-custom-drop-counter1-includes="" 
     policy-drop-counter-includes="" 
All the mirror lost

Who is online

Users browsing this forum: No registered users and 62 guests