Quantcast
Channel: All ScreenOS Firewalls (NOT SRX) posts
Viewing all articles
Browse latest Browse all 2577

Check if packet is hitting fw when troubleshooting for new policy

$
0
0

Hi 

 

When we add new policy and troubleshooting if something is not working as expected, i want to know if the packet is hitting FW.

In Cisco ASA, there is gui monitoring logging is available so we know if the packet is coming.

 

In SSG, if I do " get session src-ip xx", it doesn't show if there is no correct policy is placed in right?

 

My understanding is Once we have correct policy, then, session is established.

 

So, is there good way to detect if packet flow, i know there is tcp dump and get capture file (set ffilter src-ip...) but want to know if there is other better way.

 

Thanks


Viewing all articles
Browse latest Browse all 2577

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>