I have configured SPAN between Juniper Firewall Connected Port (source) to Websense Server (Destination)
first issue : it always shows Protocol down (Monitoring) status on Gi 1/0/20,
second issue : few times i am not able to connect Websense server from network, where as from same switch its connected i am able to ping
here is configuraiton what i did.
monitor session 1 source port Gi 1/0/1
monitor session 1 destination port Gi 1/0/20 ingress untagged VLAN 1
What is the question?
SPAN'd ports will show as up/down(monitoring) because they aren't passing traffic, they simply receive. They behave differently because of the SPAN.
As far as the not able to connect bit, is it sporadic or predictable? Are you seeing CPU hits on the switch or server? What is the utilization like on the switchport?
Typically you should have a separate management port for the server than the same port that processes the traffic dump.
CPU hits on the switch or server was minor at that that when i face this problem only one user active on this swiched connected network
in same time i face same issue, and this will resolve temoprarly bu using no monitor session 1..... and again put full command, shut interface and again
no shut interface
Are you doing this span on the management interface of the server??
yes. its management interface,