Then mirroring enabled outgoing traffic on a port . And the mirror fell. After switching off the mirroring port mirroring for ACL does not restore.
What could be the problem? Possible failure in the hardware or the software of the problem.
I tried on all versions of RouterOS
P.S. at ACL mirroring restores only after you restart the device.
Code: Select all
name: switch1
type: QCA-8519
bridge-type: customer-vid-used-as-lookup-vid
drop-if-no-vlan-assignment-on-ports:
drop-if-invalid-or-src-port-not-member-of-vlan-on-ports:
unknown-vlan-lookup-mode: svl
forward-unknown-vlan: no
use-svid-in-one2one-vlan-lookup: no
use-cvid-in-one2one-vlan-lookup: yes
mac-level-isolation: yes
multicast-lookup-mode: dst-ip-and-vid-for-ipv4
override-existing-when-ufdb-full: no
unicast-fdb-timeout: 5m
ingress-mirror0: ether2-slave-Mirror,unmodified
ingress-mirror1: sfp-sfpplus1-slave-local,analyzer-configured
ingress-mirror-ratio: 1/1
egress-mirror0: ether2-slave-Mirror,modified
egress-mirror1: sfp-sfpplus1-slave-local,analyzer-configured
egress-mirror-ratio: 1/1
fdb-uses: mirror1
vlan-uses: mirror1
mirror-egress-if-ingress-mirrored: no
mirror-tx-on-mirror-port: no
mirrored-packet-qos-priority: 0
mirrored-packet-drop-precedence: green
bypass-vlan-ingress-filter-for:
bypass-ingress-port-policing-for:
bypass-l2-security-check-filter-for:
Code: Select all
0 table=egress invert-match=no dst-ports=microtik-gw dst-l3-port=53 custom-fields="" mac-protocol=ip ip-protocol=udp action=forward
attack-filter-bypass=no ingress-vlan-filter-bypass=no egress-vlan-filter-bypass=no isolation-filter-bypass=no mirror-to=mirror0
1 table=egress invert-match=no dst-ports=microtik-gw dst-l3-port=80 custom-fields="" mac-protocol=ip ip-protocol=tcp action=forward
attack-filter-bypass=no ingress-vlan-filter-bypass=no egress-vlan-filter-bypass=no isolation-filter-bypass=no mirror-to=mirror0
After adding a port mirroring
Code: Select all
name="ether11-nas-7" ingress-customer-tpid=0x8100 egress-customer-tpid=0x8100 ingress-service-tpid=0x88A8 egress-service-tpid=0x88A>
learn=yes drop-secure-static-mac-move=no drop-dynamic-mac-move=no allow-unicast-loopback=no allow-multicast-loopback=no
action-on-static-station-move=forward drop-when-ufdb-entry-src-drop=yes isolation-leakage-profile=29 vlan-type=network-port
allow-fdb-based-vlan-translate=no allow-mac-based-service-vlan-assignment-for=all allow-mac-based-customer-vlan-assignment-for=all
filter-untagged-frame=no filter-priority-tagged-frame=no filter-tagged-frame=no egress-vlan-tag-table-lookup-key=egress-vid
egress-vlan-mode=unmodified ingress-mirror-to=none ingress-mirroring-according-to-vlan=no egress-mirror-to=mirror1
qos-scheme-precedence=ingress-acl-based,sa-based,da-based,dscp-based,protocol-based,vlan-based,pcp-based default-customer-pcp=0
default-service-pcp=0 pcp-propagation-for-initial-pcp=no egress-pcp-propagation=no dscp-based-qos-dscp-to-dscp-mapping=yes
pcp-or-dscp-based-qos-change-dei=no pcp-or-dscp-based-qos-change-pcp=no pcp-or-dscp-based-qos-change-dscp=no
pcp-based-qos-drop-precedence-mapping=0-15:green pcp-based-qos-dscp-mapping=0-15:0 pcp-based-qos-dei-mapping=0-15:0
pcp-based-qos-pcp-mapping=0-15:0 pcp-based-qos-priority-mapping=0-15:0 priority-to-queue=0-15:0,1:1,2:2,3:3
per-queue-scheduling=wrr-group0:1,wrr-group0:2,wrr-group0:4,wrr-group0:8,wrr-group0:16,wrr-group0:32,wrr-group0:64,wrr-group0:128
custom-drop-counter-includes="" queue-custom-drop-counter0-includes="" queue-custom-drop-counter1-includes=""
policy-drop-counter-includes=""