Cisco ASA 5505 Configuration Manual page 1699

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Chapter 76
Troubleshooting
Specify the minimum and maximum TTL values for the first probes. The minimum default is one, but it
Step 6
can be set to a higher value to suppress the display of known hops. The maximum default is 30. The
traceroute terminates when the packet reaches the destination or when the maximum value is reached.
Check the Specify source interface or IP address check box. Choose the source interface or IP address
Step 7
for the packet trace from the drop-down list. This IP address must be the IP address of one of the
interfaces. In transparent mode, it must be the management IP address of the adaptive security appliance.
Check the Reverse Resolve check box to have the output display the names of hops encountered if name
Step 8
resolution is configured. Leave this check box unchecked to have the output display IP addresses.
Check the Use ICMP check box to specify the use of ICMP probe packets instead of UDP probe packets.
Step 9
Click Trace Route to start the traceroute.
Step 10
The Traceroute Output area displays detailed messages about the traceroute results.
Click Clear Output to start a new traceroute.
Step 11
Tracing Packets with Packet Tracer
The packet tracer tool provides packet tracing for packet sniffing and network fault isolation, as well as
detailed information about the packets and how they are processed by the adaptive security appliance. If
a configuration command did not cause the packet to drop, the packet tracer tool provides information
about the cause in an easily readable manner.
In addition, you can trace the lifespan of a packet through the adaptive security appliance to see whether
the packet is operating correctly with the packet tracer tool. This tool lets you do the following:
To open the packet tracer, perform the following steps:
In the main ASDM application window, choose Tools > Packet Tracer.
Step 1
The Cisco ASDM Packet Tracer dialog box appears.
Choose the source interface for the packet trace from the drop-down list.
Step 2
Specify the protocol type for the packet trace. Available protocol types include ICMP, IP, TCP, and UDP.
Step 3
Step 4
Enter the source address for the packet trace in the Source IP Address field.
Step 5
Choose the source port for the packet trace from the drop-down list.
Step 6
Enter the destination IP address for the packet trace in the Destination IP Address field.
Step 7
Choose the destination port for the packet trace from the drop-down list.
Click Start to trace the packet.
Step 8
The Information Display Area shows detailed messages about the packet trace.
OL-20339-01
Debug all packet drops in a production network.
Verify the configuration is working as intended.
Show all rules applicable to a packet, along with the CLI commands that caused the rule addition.
Show a time line of packet changes in a data path.
Inject tracer packets into the data path.
Cisco ASA 5500 Series Configuration Guide using ASDM
Testing Your Configuration
76-7

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents