I've used the "debug ip packet detail list#" for years on the routers. Is there a similar command on the ASA?
Look at the capture command on the ASA. It is pretty neat and I believe you will find what you are looking for in this command. It captures packets flowing through the ASA. It allows you to use access lists to control what it will capture.