cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
302
Views
10
Helpful
2
Replies

How to monitor firewall is droping UDP packets?

amitsb7
Beginner
Beginner

Can you tell me the command I can use to see how many packets are getting droped on my pix.

2 Replies 2

jwalker
Participant
Participant

This command is 'show asp drop'. It will tell you all of the various reasons PIX/ASAs dropped packets. This info can be quite useful during troubleshooting because it can allow you to quickly ascertain a potential issue.

If you want to test whether specific traffic is getting through, create a capture like below.

define interesting traffic

access-list cap1 extended permit ip 1.1.1.1 255.255.255.255 2.2.2.2 255.255.255.255

create and apply capture

cap cap1 access-list cap1 interface outside

view capture

sho cap cap1

download capture (open w/ Ethereal)

https:///capture/cap1/pcap

*** Please rate if this helps ***

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers