iptables tee packets from a mirrored interface
Objective: to copy/tee packets coming from eth1 and send to a destination IP via the eth0 management port
ServerA = eth1 (connected to a switch1 span port)
eth0 (connected to switch2 as management port)
(IP is 192.168.100.99)
ServerB destination IP = 192.168.100.100
1. I can received mirrored packets (e.g. DHCP,DNS) from eth1
2. Tried to tee using this command
iptables -t mangle -A PREROUTING -j TEE --gateway 192.168.100.100
192.168.100.100 can received those packets coming from 192.168.100.99 (e.g. ping/ssh etc)
Problem is we want to send the mirrored packets of eth1.
tcpdump eth0 we cannot even see the packets.
So is bridging the interfaces is the solution on this?
We tried to bridge it but our switch2 will have BPDU err disable everytime we bring eth0 & eth1 together. Is ebtables needed to filter this?
Appreciate your input on this. Thanks.
|