05-06-2009 09:08 AM - edited 03-06-2019 05:34 AM
Is anyone aware of a command in 3750 IOS that would allow testing packet flow though ACLs? I'm thinking of something that would operate like Packet Tracer in the ASA products.
05-06-2009 10:54 AM
Dave,
Do you want to test outbound acls with router/switch generating traffic?
Toshi
05-06-2009 11:00 AM
Just want to test traffice going from one vlan to another through ACLs
05-06-2009 11:06 AM
Dave,
You mean, you want to use the switch to test traffic from one vlan to another. Do you mean outbound ACLs? Let's say vlan 10 going to vlan 20. There is an outbound ACL applied on the interface of vlan20. Right? And you are going to test it by using extend ping or something like that on the switch. Right?
Toshi
05-06-2009 11:08 AM
Yes, would like more that just ping, would like to specify the protocol and port along with souce and destination.
05-06-2009 11:19 AM
Dave,
First of all, you can test by using the following commands.
We are going to test tcp/80 on host 20.20.20.2 on vlan 20 by using a source address as a gateway of vlan 10.
SW#telnet 20.20.20.2 80 /source-interface vlan 10
The problem is that you want to check/block/petmet it with outbound ACLs on vlan20 (for example). Right?
Toshi
05-15-2020 09:11 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide