<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Packet tracer - SOURCE PORT in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711512#M193117</link>
    <description>&lt;P&gt;Hi Friendzs,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Query is regarding packet tracer command. &lt;STRONG&gt;packet-tracer&lt;/STRONG&gt; &lt;B class="cCN_CmdName"&gt;input&lt;/B&gt;&lt;EM class="cCi_CmdItalic"&gt; &lt;/EM&gt;[&lt;EM class="cArgument"&gt;src_int&lt;/EM&gt;]&lt;EM class="cCi_CmdItalic"&gt; protocol src_addr src_port dest_addr dest_port &lt;/EM&gt;[&lt;B class="cCN_CmdName"&gt;detailed&lt;/B&gt;]&lt;/P&gt;&lt;P&gt;Eg -&amp;nbsp; &lt;STRONG&gt;packet-tracer&lt;/STRONG&gt; &lt;B class="cCN_CmdName"&gt;input&lt;/B&gt;&lt;EM class="cCi_CmdItalic"&gt; outside&amp;nbsp;tcp&lt;/EM&gt;&lt;EM class="cCi_CmdItalic"&gt;&amp;nbsp;192.168.10.1&amp;nbsp;0&amp;nbsp;172.17.190.24&amp;nbsp;443 &lt;/EM&gt;&lt;B class="cCN_CmdName"&gt;detailed&lt;/B&gt;&lt;/P&gt;&lt;P&gt;As I am not aware about source port and knows destination port only (i.e 443) I have executed the above packet tracer command&amp;nbsp; and getting output as DROP at implicit rule. this is leading to confusion from troubleshooting point of view..whether have applied correct ACL policy...understands un-proper source&amp;nbsp;port could be&amp;nbsp;one among reason for getting DROP(in implicit rule) in output.&lt;/P&gt;&lt;P&gt;Would like to know, as in my case...what should be the source port in case if network admin is not sure about it....however destination port is available. and what If both ports are unknown.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help to understand this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Rgds&lt;/P&gt;&lt;P&gt;***&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 06:22:38 GMT</pubDate>
    <dc:creator>netbeginner</dc:creator>
    <dc:date>2019-03-12T06:22:38Z</dc:date>
    <item>
      <title>Packet tracer - SOURCE PORT</title>
      <link>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711512#M193117</link>
      <description>&lt;P&gt;Hi Friendzs,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Query is regarding packet tracer command. &lt;STRONG&gt;packet-tracer&lt;/STRONG&gt; &lt;B class="cCN_CmdName"&gt;input&lt;/B&gt;&lt;EM class="cCi_CmdItalic"&gt; &lt;/EM&gt;[&lt;EM class="cArgument"&gt;src_int&lt;/EM&gt;]&lt;EM class="cCi_CmdItalic"&gt; protocol src_addr src_port dest_addr dest_port &lt;/EM&gt;[&lt;B class="cCN_CmdName"&gt;detailed&lt;/B&gt;]&lt;/P&gt;&lt;P&gt;Eg -&amp;nbsp; &lt;STRONG&gt;packet-tracer&lt;/STRONG&gt; &lt;B class="cCN_CmdName"&gt;input&lt;/B&gt;&lt;EM class="cCi_CmdItalic"&gt; outside&amp;nbsp;tcp&lt;/EM&gt;&lt;EM class="cCi_CmdItalic"&gt;&amp;nbsp;192.168.10.1&amp;nbsp;0&amp;nbsp;172.17.190.24&amp;nbsp;443 &lt;/EM&gt;&lt;B class="cCN_CmdName"&gt;detailed&lt;/B&gt;&lt;/P&gt;&lt;P&gt;As I am not aware about source port and knows destination port only (i.e 443) I have executed the above packet tracer command&amp;nbsp; and getting output as DROP at implicit rule. this is leading to confusion from troubleshooting point of view..whether have applied correct ACL policy...understands un-proper source&amp;nbsp;port could be&amp;nbsp;one among reason for getting DROP(in implicit rule) in output.&lt;/P&gt;&lt;P&gt;Would like to know, as in my case...what should be the source port in case if network admin is not sure about it....however destination port is available. and what If both ports are unknown.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help to understand this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Rgds&lt;/P&gt;&lt;P&gt;***&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:22:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711512#M193117</guid>
      <dc:creator>netbeginner</dc:creator>
      <dc:date>2019-03-12T06:22:38Z</dc:date>
    </item>
    <item>
      <title>Source port = 0 is invalid so</title>
      <link>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711513#M193118</link>
      <description>&lt;P&gt;Source port = 0 is invalid so we would not expect that to pass the packet-tracer.&lt;/P&gt;&lt;P&gt;Since most Windows systems will use ephemeral port numbers beginning with 1025 for outbound communications to servers on well-known port numbers, I typically use 1025 as my source port.&lt;/P&gt;&lt;P&gt;If both ports are unknown then you don't have enough information to form a proper packet-tracer query for a TCP connection or UDP flow. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 03 Aug 2015 19:10:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711513#M193118</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-08-03T19:10:38Z</dc:date>
    </item>
    <item>
      <title>Thanks Marvin, But port 0 is</title>
      <link>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711514#M193120</link>
      <description>&lt;P&gt;Thanks Marvin,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But port 0 is showing there in ASA syntax...&lt;/P&gt;&lt;P&gt;Further, you mean to say if I use port 1025 as source port....output will show all through...(If ACL applied correctly).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 03 Aug 2015 19:19:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711514#M193120</guid>
      <dc:creator>netbeginner</dc:creator>
      <dc:date>2015-08-03T19:19:02Z</dc:date>
    </item>
    <item>
      <title>What ACL are you trying to</title>
      <link>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711515#M193122</link>
      <description>&lt;P&gt;What ACL are you trying to test?&lt;/P&gt;</description>
      <pubDate>Mon, 03 Aug 2015 19:29:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711515#M193122</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-08-03T19:29:17Z</dc:date>
    </item>
    <item>
      <title>From Outside to Inside.With</title>
      <link>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711516#M193124</link>
      <description>&lt;P&gt;From Outside to Inside.&lt;/P&gt;&lt;P&gt;With destination port - 443, Source port is not known.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;packet-tracer&lt;/STRONG&gt; input&lt;EM&gt; outside&amp;nbsp;tcp&lt;/EM&gt;&lt;EM&gt;&amp;nbsp;192.168.10.1&amp;nbsp;0&amp;nbsp;172.17.190.24&amp;nbsp;443 &lt;/EM&gt;detailed&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regds&lt;/P&gt;&lt;P&gt;***&lt;/P&gt;</description>
      <pubDate>Tue, 04 Aug 2015 08:05:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711516#M193124</guid>
      <dc:creator>netbeginner</dc:creator>
      <dc:date>2015-08-04T08:05:53Z</dc:date>
    </item>
    <item>
      <title>ACL = Access List. Please</title>
      <link>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711517#M193128</link>
      <description>&lt;P&gt;ACL = Access List. Please provide the access-list you are trying to verify, not the packet-tracer command.&lt;/P&gt;</description>
      <pubDate>Tue, 04 Aug 2015 13:04:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/packet-tracer-source-port/m-p/2711517#M193128</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-08-04T13:04:23Z</dc:date>
    </item>
  </channel>
</rss>

