12-05-2011 11:33 PM - edited 03-07-2019 03:45 AM
Hi experts
here i have problem when i telnet from different switches to sonicwall gateway 10.10.10.1
here i have provided all possible attacehed files for the troubleshoot.
my network set up in short and dirty way
branch office(vlan99)-------------fibre-----------------L3switch(main office)--------sonicwallfirewall-----internet
when i try to ping and tracert to sonicwall gateway 10.10.10.1, here is the response
1. from L3switch ping fine traceroute not reaching gateway
2. from branch office i have 3 L2 switches all in vlan99
ping is fine traceroute not reaching gateway of sonicwall
below attached files i have provided the network diagram(the vlan inf. provided is wrong in the diagram)
can you please guide me on this..
THanks & regards
srikanth
12-06-2011 01:09 AM
Need support of u guys..
do i have to provide more information, other than above.
Thanks & regards
srikanth
12-06-2011 01:20 AM
Hi,
don't forget the traceroute in IOS is not implemented like in Windows.It is sending UDP packets with increasing TTL to a high port number and the destination should respond with a icmp port-unreachable message.
So the problem surely lies on the SonicWall device.
Regards.
Alain
12-06-2011 02:54 AM
Check SonicWall FW antispoofing.
12-06-2011 03:09 AM
Hi alain..
can you explain me this clearly i dint understand somehow in a technical way.
It is sending UDP packets with increasing TTL to a high port number and the destination should respond with a icmp port-unreachable message
Thanks & regards
srikanth
12-06-2011 03:48 AM
Hi,
Cisco uses the same implementation as Unix/linuxes
http://ccie20728.wordpress.com/2008/12/01/ciscos-traceroute-implementation/
Windows Implementation on the contrary only relies on icmp echo-requests to do the traceroute.
Regards.
Alain.
12-06-2011 04:04 AM
HI alain
thanks for the explanation
when i ping from L3 switch to Sonicwall . the packets are dropped and achieved 99% success.
Type escape sequence to abort.
Sending 1000, 100-byte ICMP Echos to 10.10.10.1, timeout is 2 seconds:
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!.!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!.!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!.!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!.!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!
Success rate is 99 percent (996/1000), round-trip min/avg/max = 1/1/51 ms
Switch#
and the reason behind this. sorry if im giving u pain.
thanks
srikanth
12-06-2011 04:53 AM
Hi,
Maybe icmp rate-limiting on the Soniwall.
Regards.
Alain
12-06-2011 05:30 AM
Need a little more troubleshooting information to help on this, please provide the following:
I am very intimately involved with Sonicwall and their quarks - this is most likely NOT a cisco issue, but a Sonicwall issue and sonicwall doesn't make things very easy to troubleshoot/fix....
Thanks,
Sean Brown (sean@sleepyshark.com)
voice: 212.760.1700 x7001
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide