cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
129
Views
0
Helpful
5
Replies

cisco FTD command to know trying to connect application

suryaaa
Level 1
Level 1

Dear Team, 

 

Can anyone help me to to find a cli command on cisco FTD, I want to know if someone trying to open a application from PC, then how to check source ip tying to which destination ip & port. Actually i forgot. Some commands are there like listening or monitor the source ip & at that time end user when trying to open application then on firewall we can check all details application ip details try to communicate.

5 Replies 5

@suryaaa try the command "system support firewall-engine-debug" you can filter on the source IP and see the communication.

after entering this command its asking "Please specify an Ip protocol ", when I put IPV4 then its show error invalid protocol IPV4. Please help

@suryaaa that is optional, you can leave it blank (just press enter). Just enter the client IP (source IP), it will also prompt for the client port, server IP and server port, which you can also leave blank as well if you just want to filter from source.

 

 

I enter source ip address & keep blank server ip address. but nothing is showing after 2 hours. from source ip many application opening but nothing is showing.

Show conn <IP source>

This give you if host try connect to specific IP.

Note:- you can specify tcp/udp port

MHM

Review Cisco Networking for a $25 gift card