Maybe this works:Anyone know how this is done, need port mirroring so i can run a filtering program.
Anyone know how this is done, need port mirroring so i can run a filtering program.
Ive created a guide and a YouTube video demonstrating it. Report back if it still dont workAm i missing something? I have the latest merlin firmware and this doesnt work for me. Thanks
Hi folks,
I have a question about this. Does this mirror all traffic through the router to the destination? (Hmmm... I hope that traffic to the destination doesn't get resent to the destination or it seems like it would result in an avalanche.)
My intended use is to monitor traffic to an IoT device (Orvibo S20.) The other strategy I can think of is to use a spare WiFi AP and insert a Wireshark tap between the spare AP and my primary router (RT-AC68W.) The spare AP would have NAT and DHCP disabled so they would forward to the primary router and I could easily identify the traffic to/from the S20. (I'm sure there is a proper term for this mode of operation but since I'm not certain I know the terminology I'll just describe it. ) This alternate setup would also have a lot less traffic to filter out.
I have the S20 blocked from Internet access in the primary router as I only use local commands to operate it. I'm pretty sure that it would connect to a cloud server from time to time in order to support control from remote devices. I wonder what else it might do that would expose my network to a security breach.
Thanks!
Thanks for the tip. I suppose the only "why not?" is that I was not aware of that (but I'm keen to learn) and I'd have to upgrade to Merlin firmware which seems like not a bad thing.For monitoring a single host, why not use tcpdump? tcpdump is very easy to install with entware.
As posted it will mirror all traffic. But you can specify -s or -d parameters to limit it to a particular source or destination.I have a question about this. Does this mirror all traffic through the router to the destination? (Hmmm... I hope that traffic to the destination doesn't get resent to the destination or it seems like it would result in an avalanche.)
Hello guys, first of all let me say hello to everybody for my first post in this forum.
I resume this very old discussion because I would like to know if this feature about port mirroring is still available in latest Merlin releases.
I'm ready to buy an RT-AC88U but I'm not sure this function is supported on latest FW.
Thanks to all.
modprobe xt_TEE
iptables -t mangle -A PREROUTING -s 192.168.1.99 -j TEE --gateway 192.168.1.238
iptables -t mangle -A POSTROUTING -d 192.168.1.99 -j TEE --gateway 192.168.1.238
To “mirror” L&LD, welcome! And thanks: I’d never heard of port mirroring until today. Assuming the router supports it, how do you plan to use it and why do you want to do this?Hello guys, first of all let me say hello to everybody for my first post in this forum.
I resume this very old discussion because I would like to know if this feature about port mirroring is still available in latest Merlin releases.
I'm ready to buy an RT-AC88U but I'm not sure this function is supported on latest FW.
Thanks to all.
"TEE" was added by Merlin back in November.Will this work on all ASUS devices supported by Merlin FW ?
Bear in mind that this isn't "real" port mirroring. It's only duplicating packets that are routed through the router. If you want to capture packets destined for the router itself you would be better off installing Entware and the tcpdump package.I need port mirroring in order to wireshark the traffic from ONT to router ....
maybe an RT-AC86U would be the better and cheaper choice with newer and faster hardware.I want to Trash my ISP (FTTH 1Gbit) Vodafone Station Revolution and substitute it with a good reliable ASUS Router and I am really puzzled in which one to chose.
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!