10-07-2009 05:23 AM
hi,
I'm migrating all my cisco PIX used as VPN peers by Cisco ISR routers.
I would like to refind a bit same information.
does it exist something like "sh conn" on routers ? to see all connections : udp, tcp, icmp.. ?
if you know how to get that, I'm interested.
thanks
regards
Nicolas
10-07-2009 05:37 AM
Nicolas,
show ip nat translations
Below are sub-options as well.
global Display entries in Global/Dest Table - NVI
icmp Show ICMP entries
pptp Show PPTP entries
tcp Show TCP entries
udp Show UDP entries
verbose Show extra information
vrf Display entries of VRF instance
| Output modifiers
10-07-2009 05:41 AM
hi,
thanks, but like I said before I use ISR only as VPN peers, so there is none nat
Nicolas
10-07-2009 05:52 AM
Sorry about that. Try enabling IP Accounting. That should give you the connections you're looking for. I'm not 100% sure it will give you the port numbers though.
10-07-2009 05:58 AM
Netflow will give it to you as well, but the ports numbers are in hex which is a bit of a pain.
10-07-2009 06:01 AM
thanks that works well on my tunnel interfaces
you are right, there is no port indication :-( (if you have an idea)
but it's not real time traffic, right ? it keeps history :-(
it's better than nothing, but I try to find better
thx
Nicolas
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: