Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- gw# packet-tracer input inside icmp 192.168.0.2 0 8 216.x.x.34 detailed
- Phase: 1
- Type: ROUTE-LOOKUP
- Subtype: input
- Result: ALLOW
- Config:
- Additional Information:
- in 216.x.x.34 255.255.255.255 identity
- Phase: 2
- Type: ACCESS-LIST
- Subtype:
- Result: ALLOW
- Config:
- Implicit Rule
- Additional Information:
- Forward Flow based lookup yields rule:
- in id=0xacf4cf60, priority=120, domain=permit, deny=false
- hits=5805, user_data=0x0, cs_id=0x0, reverse, flags=0x0, protocol=1
- src ip/id=0.0.0.0, mask=0.0.0.0, icmp-type=0
- dst ip/id=0.0.0.0, mask=0.0.0.0, icmp-code=0, dscp=0x0
- input_ifc=inside, output_ifc=identity
- Phase: 3
- Type: IP-OPTIONS
- Subtype:
- Result: ALLOW
- Config:
- Additional Information:
- Forward Flow based lookup yields rule:
- in id=0xacf4f398, priority=0, domain=inspect-ip-options, deny=true
- hits=4191762, user_data=0x0, cs_id=0x0, reverse, flags=0x0, protocol=0
- src ip/id=0.0.0.0, mask=0.0.0.0, port=0
- dst ip/id=0.0.0.0, mask=0.0.0.0, port=0, dscp=0x0
- input_ifc=inside, output_ifc=any
- Phase: 4
- Type: INSPECT
- Subtype: np-inspect
- Result: ALLOW
- Config:
- Additional Information:
- Forward Flow based lookup yields rule:
- in id=0xacf4e160, priority=66, domain=inspect-icmp, deny=false
- hits=5803, user_data=0xacf4d778, cs_id=0x0, use_real_addr, flags=0x0, protocol=1
- src ip/id=0.0.0.0, mask=0.0.0.0, icmp-type=0
- dst ip/id=0.0.0.0, mask=0.0.0.0, icmp-code=0, dscp=0x0
- input_ifc=inside, output_ifc=identity
- Phase: 5
- Type: INSPECT
- Subtype: np-inspect
- Result: ALLOW
- Config:
- Additional Information:
- Forward Flow based lookup yields rule:
- in id=0xacf4ef70, priority=66, domain=inspect-icmp-error, deny=false
- hits=30735, user_data=0xacf4e588, cs_id=0x0, use_real_addr, flags=0x0, protocol=1
- src ip/id=0.0.0.0, mask=0.0.0.0, icmp-type=0
- dst ip/id=0.0.0.0, mask=0.0.0.0, icmp-code=0, dscp=0x0
- input_ifc=inside, output_ifc=any
- Phase: 6
- Type: FLOW-CREATION
- Subtype:
- Result: ALLOW
- Config:
- Additional Information:
- New flow created with id 4500848, packet dispatched to next module
- Module information for forward flow ...
- snp_fp_tracer_drop
- snp_fp_inspect_ip_options
- snp_fp_inspect_icmp
- snp_fp_adjacency
- snp_fp_fragment
- snp_ifc_stat
- Module information for reverse flow ...
- Result:
- input-interface: inside
- input-status: up
- input-line-status: up
- output-interface: NP Identity Ifc
- output-status: up
- output-line-status: up
- Action: allow
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement