<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Connection status in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/connection-status/m-p/841047#M974187</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The flags should help you deteremine whether the connection was initiated from inside or outside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In your scenario the connection was initiated from outside based on the flag B.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;UFROB --&amp;gt; (B) indicates initial SYN from outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show conn detail would show the flags information.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sundar&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 28 Sep 2007 18:15:25 GMT</pubDate>
    <dc:creator>sundar.palaniappan</dc:creator>
    <dc:date>2007-09-28T18:15:25Z</dc:date>
    <item>
      <title>Connection status</title>
      <link>https://community.cisco.com/t5/network-security/connection-status/m-p/841046#M974179</link>
      <description>&lt;P&gt;Hi, need help&lt;/P&gt;&lt;P&gt;In my firewall i have no rule play in inside interface for outbound traffic but i have a rule play for inbound traffic in outside interface saying that from my particular branch network can access my server through SMTP.Just i wanted to know the connections.. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But i use the command sh conn state data_out | grep 172.30.x.x,It showing the details given bellow &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TCP out 172.x.x.x:1198 in 172.30.x.x:25 idle 8:40:06 Bytes 630 flags UFROB &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if i use the command sh conn state data_in | grep 172.30.x.x also, It showing the details same given bellow &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TCP out 172.x.x.x:1198 in 172.30.x.x:25 idle 8:40:06 Bytes 630 flags UFROB &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kinldy provide me information..there is no difference in the above connection status in and out inforamtion. Y is it so?..Then how can find which source is generating traffic? &lt;/P&gt;&lt;P&gt;Data_in==inbound conn &lt;/P&gt;&lt;P&gt;Data_out=outbund conn... &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 11:18:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/connection-status/m-p/841046#M974179</guid>
      <dc:creator>sureshkum</dc:creator>
      <dc:date>2019-03-11T11:18:14Z</dc:date>
    </item>
    <item>
      <title>Re: Connection status</title>
      <link>https://community.cisco.com/t5/network-security/connection-status/m-p/841047#M974187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The flags should help you deteremine whether the connection was initiated from inside or outside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In your scenario the connection was initiated from outside based on the flag B.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;UFROB --&amp;gt; (B) indicates initial SYN from outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show conn detail would show the flags information.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sundar&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Sep 2007 18:15:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/connection-status/m-p/841047#M974187</guid>
      <dc:creator>sundar.palaniappan</dc:creator>
      <dc:date>2007-09-28T18:15:25Z</dc:date>
    </item>
  </channel>
</rss>

