You can view or configure settings for the 10 Gbps monitoring ports.
Task
- Go to Devices → <Admin Domain Name> → Devices → <Device_Name> → Setup → Physical Ports.
-
Double-click on the row of the monitoring port that displays the Connector Type as
XFP. The
Monitoring Port Details window is displayed.
Configure Monitoring Port window 
Note
The speed is automatically set to 10 Gbps on the 10 Gigabit Ethernet ports. However, you can specify whether the modules are Trellix Certified. Since the speed is set automatically, the Auto Negotiate option is not applicable.
-
Select the
State as either
Enabled (on) or
Disabled (off). The
Link displays
Up (on) or
Down (off) accordingly.
Note
If your Link displays as Down and your State is Enabled, there may be a problem. Check the system faults in the Faults tab in Logs page for more information.
-
Select a
Mode from the following:
Caution
Your device cabling must match the selected operating mode for correct system functionality. Improper deployment may result in system faults, including missed attacks and system failure.
- Inline Fail Open - Active
- Inline Fail Open - Passive
-
Inline Fail Closed
Note
Inline fail-open and Inline fail-closed are determined by how the port cables are connected. Fail-open operation for GE ports requires use of the optional Bypass Switch provided in the Gigabit Optical Fail-Open Bypass Kit (sold separately). You should not select the Inline Fail Open option if the optional external Bypass Switch is not present.
- SPAN or Hub
-
Tap
For FE ports configured in Tap mode, select External if using an external tap, or Internal if using the internal tap feature. GE ports can only be configured for External Tap mode.
Caution
If FE ports fail when configured in Internal Tap Mode, traffic will continue to pass. However, your device will experience some latency that may block traffic upto a minute before the passthru is established.
If a port is functioning as part of a Port Pair, the Peer Port is listed. For example, if port 1A is configured for Tap mode, port 1B is listed as the Peer Port. All ports are wire-matched internally with a single peer, for example 1A-1B make up a port pair. However, 1A-2B cannot be a port pair. - Select Placement of your network where the current port is connected: Inside Network or Outside Network. This step applies to Tap or Inline modes only.
-
Wherever applicable, select a
Response Port.The following choices are available:
- This Port: Respond out of the detection port to the segment. This is selected by default for Inline and SPAN operating modes.
- R1: Sends responses through a R1 port
- R2: Sends responses through a R2 port
Tip
You can assign a response port to more than one device monitoring port. However, knowing where your response ports are connected in the network will make for the best response system.
- Click Save to save changes. A window is displayed to confirm the changes. Click OK to confirm changes.