ā03-16-2016 04:09 AM - edited ā03-12-2019 12:29 AM
Hi
I am trying to setup a capture using type asp-drop to capture dropped traffic between a internal network and an external network and I need to monitor the drop for 24hrs. I am using the commands
capture cap1 type asp-drop all
match ip source subnet des subnet
The capture just matches everything so does not filter down to the match statement.
What could I be doing wrong
Thanks
ā03-16-2016 04:17 AM
Hi,
It should only show you drops
So what do you see except the defined
Regards,
Aditya
Please rate helpful posts.
ā03-16-2016 04:34 AM
Hi
It filters the asp-drop type, for example if i configure "capture cap1 type asp-drop acl-drop"
But displays results for all ip ranges (everthing) that is being dropped because of reason acl-drop, not just for the source and destination subnets what I have defined in the match statement.
Thanks
ā03-16-2016 04:51 AM
Hi,
Not sure but if I am doing it on my ASA I am able to filter it on the basis of subnet.
May I know what is the
Regards,
Aditya
Please rate helpful posts.
ā03-16-2016 05:09 AM
We access an external service which is based on 2 subnets, and some users have reported random freezes when using this external service. I just want to run a asp-drop from all internal subnets to the 2 external subnets and see if the firewalls are dropping anything.
I know the issue can be anywhere but just to ensure it is not the firewalls and to have some proof to say, ive got a capture running and it reports no drops, so the issue is elsewhere.
Thanks
ā03-16-2016 05:44 AM
Hi,
Then the idea of having asp drop captures filtered on the subnets make sense.
You would also be interested in the
Also, what ASA version are you
Regards,
Aditya
Please rate helpful posts.
ā03-16-2016 05:58 AM
Thanks Aditya
I am running ASA version 9.1(6)6
ā03-16-2016 07:03 AM
Hi,
Yes it would be a good idea to check with TAC but before
Regards,
Aditya
Please rate helpful posts.
ā03-16-2016 05:59 AM
I may check with TAC, as the configuration for the captures is not complex, but instead not giving the desired results
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide