Follow this procedure to truncate a packet to conform to the length required by your analysis tools.
device(config)#
device(config)# ip access-list acl3-ipv4 device(config-ip-acl)# seq 12 permit ip any any count
Note
A listener policy supports only one IPv4 ACL, IPv6 ACL, or MAC ACL.device(config)# listener-policy lp-3 18 device(config-listener-policy)# match ip access-list acl3-ipv4 device(config-listener-policy)# truncate 512 device(config-listener-policy)# description "truncate ip packets lp"
Note
An egress can be associated with only one listener policy.device(config)# egress e3 device(config-egress)# set listener-policy lp-3 18 device(config-egress)# description DirectTool device(config-egress)# precedence 1 interface ethernet 2/14
device(config)# egress-group eg_5 device(config-egress-group)# description e-group_5 device(config-egress-group)# set egress e3
Note
A route-map policy supports only one match-ACL per layer.device(config)# route-map R2 10 device(config-route-map)# match ip access-list acl3-ipv4 device(config-route-map)# set egress-group eg_5 device(config-route-map)# forward-action permit
Note
An ingress group can be associated with only one route map.device(config)# ingress-group TAP_TRAFFIC device(config-ingress-group)# set route-map R2
Note
In the following example, traffic is coming in on slot/port number 2/3.interface ethernet 2/3 description From_TAP set ingress-group TAP_TRAFFIC no shutdown
Note
In the following example, traffic is leaving on slot/port number 2/14.interface ethernet 2/14 speed 40000 description To_Tool no shutdown