Using a smart switch as a sniffer/tap

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Using a smart switch as a sniffer/tap

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Using a smart switch as a sniffer/tap
Using a smart switch as a sniffer/tap
2020-01-09 08:42:19
Model: TL-SG105E  
Hardware Version:
Firmware Version:

I have a TL-SG105E smart switch and I want to use it to sniff a network path. So, I am configuring one of 5 ports as a mirror port, so that it spits out everything received from other ports (in this scenario only 2 of them used in order to separate a path). I connect the mirror port to an additional network interface on my computer to capture everything by Wireshark. That works fine! Furthermore, I can access the web-server of the switch through this interface (192.168.*) to check the port statistics etc.

The only problem:

This switch forwards packets incoming from mirror port to the other ports i.e. it creates a connection between my second network interface (192.168.*) and the rest network i.e. path, which I am just trying to sniff. Is there an easy way to prohibit that? or do I need a special tap hardware for this use case? If I use the port-based VLAN in order to isolate the mirror port, mirroring stops working.

Regards & thanks to you!

  0      
  0      
#1
Options
1 Reply
Re:Using a smart switch as a sniffer/tap
2020-01-10 01:39:00
If you create a new 802.1Q VLAN like VLAN 10, then put your mirror port to VLAN 10 and change PVID to 10. Check if can isolate the mirror port.
  0  
  0  
#2
Options