How do I open ports on ASA 5505?

Unanswered Question
Aug 3rd, 2010

Hello,


I am new to the Cisco model so excuse my lack of wisdom with this product.  I work for a small rural Hospital and we need to FTP a report once a month to a clearing house.  Problem is I can't FTP their site, I can others but not theres.  I was told that it was because I didn't have the correct ports open for their transmission.  I was told that I needed 20,21,22 (possibly) and all ports above 1023 available.  I thought I had that setup through my ASDM configuration but I still can't get connected.  If I try to trace the packet it works fine on the inside test but if I run it from outside it always goes back to the implicit rule to block IP.  What am I missing?  I can provide screen shots of what ever is needed.  I know the site works as I was able to connect to it from my home last night.


Thanks for your help!

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Rahul Govindan Tue, 08/03/2010 - 09:35

hi are you using passive or active ftp. From what i understand, you have the hosts on the inside and the ftp server on the outside. Try issuing the command fixup protocol ftp 21 on the command line of the ASA an test the connection if possible. You could provide the config if that does not work.

pershingit Tue, 08/03/2010 - 12:02

Passive, yes have a workstation on the inside of my ASA that needs to ftp to a server on the outside to transmit.  I can transmit to our web server via ftp without issue but this particular site has more structure so when it's trying to reply back it's traffic is being blocked.  Hope that makes sense.

Allen P Chen Tue, 08/03/2010 - 10:12

Hello,


In looking at the packet tracer screenshot, I believe the parameters are incorrect.  You are trying to get a host behind the inside interface of the ASA to access a host on the outside via FTP, correct?  If so, the source interface should be in the inside interface, not the outside interface.  Also, the source port should be a random port about 1024, with the destination port at 21.


Please give that a try and provide the packet tracer output.

pershingit Tue, 08/03/2010 - 12:08

Ok knowing it is a passive connection how does that change things?


Thanks!

Nagaraja Thanthry Tue, 08/03/2010 - 13:10

Hello,


If it is passive, I don't see any reason why it should not be working. Can

you please put captures on the firewall and see what is happening when you

establish the FTP session?


access-list cap permit ip any host any


capture capin access-list cap interface inside

capture capout access-list cap interface outside


once these lines are put into the firewall, establish a FTP session. Once it

fails, collect the outputs:


show capture capin


show capture capout


Please post those outputs here so we can try to identify the root cause.


Regards,


NT

Magnus Mortensen Tue, 08/03/2010 - 14:13

Scott, can you please post the output of "show service-policy" from the ASA. I want to see how the inspections are configured. The FTP inspection should kick in here unless it is something like sFTP (encrypted).   - Magnus

pershingit Wed, 08/04/2010 - 07:26

How do I go about doing that, I am very new to the ASA/Cisco world.


Thanks!

Nagaraja Thanthry Wed, 08/04/2010 - 18:24

Hello,


If you are using command line, then you can copy the commands as it is. If you are using ASDM, then you cna go to tools --> command line --> multiple lines and paste all the commands I had mentioned and then run the test.


Hope this helps.


Regards,


NT

pershingit Fri, 08/06/2010 - 06:43

NT

I followed your directions and here is the list you asked for.


217 packets captured

1: 07:33:40.806720 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2981: P 1201258463:1201258868(405) ack 2466803114 win 8192

2: 07:33:40.938336 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539176805:2539178018(1213) ack 9461028 win 8192

3: 07:33:41.047696 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2981: P 1201258868:1201258905(37) ack 2466803114 win 8192

4: 07:33:41.048200 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2981: F 1201258905:1201258905(0) ack 2466803151 win 8192

5: 07:33:41.048322 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2981: . ack 2466803152 win 8192

6: 07:33:41.157065 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539178018:2539178199(181) ack 9461028 win 8192

7: 07:33:41.572556 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539178199:2539178380(181) ack 9461028 win 8192

8: 07:33:41.933469 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539178380:2539178529(149) ack 9461028 win 8192

9: 07:33:42.141395 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539178529:2539178907(378) ack 9461028 win 8192

10: 07:33:42.559739 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539178907:2539179056(149) ack 9461028 win 8192

11: 07:33:42.670772 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539179056:2539180316(1260) ack 9461028 win 8192

12: 07:33:42.671489 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539180316:2539180637(321) ack 9461028 win 8192

13: 07:33:42.797520 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539180637:2539180983(346) ack 9461028 win 8192

14: 07:33:43.016341 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539180983:2539181164(181) ack 9461028 win 8192

15: 07:33:43.242144 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539181164:2539181345(181) ack 9461028 win 8192

16: 07:33:44.790074 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539181345:2539181526(181) ack 9461028 win 8192

17: 07:33:45.263597 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539181526:2539181707(181) ack 9461028 win 8192

18: 07:33:45.665340 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539181707:2539181856(149) ack 9461028 win 8192

19: 07:33:45.859849 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539181856:2539182926(1070) ack 9461028 win 8192

20: 07:33:46.078807 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539182926:2539183304(378) ack 9461028 win 8192

21: 07:33:46.297271 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539183304:2539183666(362) ack 9461028 win 8192

22: 07:33:47.130120 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539816182:3539817442(1260) ack 248762417 win 8192

23: 07:33:47.130181 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539817442:3539818702(1260) ack 248762417 win 8192

24: 07:33:47.131462 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539818702:3539819707(1005) ack 248762417 win 8192

25: 07:33:47.679545 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539183666:2539183847(181) ack 9461028 win 8192

26: 07:33:47.828372 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539183847:2539184028(181) ack 9461028 win 8192

27: 07:33:48.117959 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539184028:2539184209(181) ack 9461028 win 8192

28: 07:33:48.265916 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539184209:2539184390(181) ack 9461028 win 8192

29: 07:33:48.825564 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539184390:2539184587(197) ack 9461028 win 8192

30: 07:33:49.031492 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539184587:2539184949(362) ack 9461028 win 8192

31: 07:33:50.205174 802.1Q vlan#1 P0 10.10.2.254.514 > 10.10.2.125.514: udp 126

32: 07:33:50.205342 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539184949:2539185098(149) ack 9461028 win 8192

33: 07:33:52.075237 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539185098:2539185279(181) ack 9461028 win 8192

34: 07:33:52.306258 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539185279:2539185460(181) ack 9461028 win 8192

35: 07:33:52.444267 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539185460:2539185641(181) ack 9461028 win 8192

36: 07:33:53.819995 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539185641:2539185822(181) ack 9461028 win 8192

37: 07:33:54.295272 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539185822:2539185971(149) ack 9461028 win 8192

38: 07:33:54.499958 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539185971:2539186695(724) ack 9461028 win 8192

39: 07:33:54.718621 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539186695:2539187057(362) ack 9461028 win 8192

40: 07:33:54.937314 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539187057:2539187238(181) ack 9461028 win 8192

41: 07:33:55.380305 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539187238:2539187419(181) ack 9461028 win 8192

42: 07:33:55.921842 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539187419:2539187568(149) ack 9461028 win 8192

43: 07:33:56.140465 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539187568:2539188324(756) ack 9461028 win 8192

44: 07:33:56.359173 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539188324:2539188505(181) ack 9461028 win 8192

45: 07:33:57.130318 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539819707:3539820967(1260) ack 248762417 win 8192

46: 07:33:57.130379 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539820967:3539822227(1260) ack 248762417 win 8192

47: 07:33:57.131295 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539822227:3539823216(989) ack 248762417 win 8192

48: 07:33:57.494298 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539188505:2539188686(181) ack 9461028 win 8192

49: 07:33:57.593887 802.1Q vlan#1 P0 10.10.2.254.514 > 10.10.2.125.514: udp 126

50: 07:33:57.671580 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539188686:2539188835(149) ack 9461028 win 8192

51: 07:33:57.890319 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539188835:2539189016(181) ack 9461028 win 8192

52: 07:33:58.366756 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539189016:2539189197(181) ack 9461028 win 8192

53: 07:33:58.546480 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539189197:2539189378(181) ack 9461028 win 8192

54: 07:33:58.765249 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539189378:2539190102(724) ack 9461028 win 8192

55: 07:33:59.108713 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539190102:2539190283(181) ack 9461028 win 8192

56: 07:33:59.312117 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539190283:2539190464(181) ack 9461028 win 8192

57: 07:33:59.530856 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539190464:2539190645(181) ack 9461028 win 8192

58: 07:34:00.113778 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539190645:2539190826(181) ack 9461028 win 8192

59: 07:34:00.296401 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539190826:2539191023(197) ack 9461028 win 8192

60: 07:34:01.436958 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539191023:2539191204(181) ack 9461028 win 8192

61: 07:34:01.873123 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539191204:2539191385(181) ack 9461028 win 8192

62: 07:34:02.208698 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539191385:2539191566(181) ack 9461028 win 8192

63: 07:34:02.963741 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539191566:2539191747(181) ack 9461028 win 8192

64: 07:34:03.450248 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539191747:2539191928(181) ack 9461028 win 8192

65: 07:34:03.601195 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539191928:2539192109(181) ack 9461028 win 8192

66: 07:34:03.796192 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539192109:2539192471(362) ack 9461028 win 8192

67: 07:34:04.738349 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539192471:2539192620(149) ack 9461028 win 8192

68: 07:34:04.889877 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539192620:2539193344(724) ack 9461028 win 8192

69: 07:34:05.631284 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539193344:2539193525(181) ack 9461028 win 8192

70: 07:34:06.046979 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539193525:2539193674(149) ack 9461028 win 8192

71: 07:34:06.202305 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539193674:2539194052(378) ack 9461028 win 8192

72: 07:34:06.755332 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539194052:2539194233(181) ack 9461028 win 8192

73: 07:34:07.130410 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539823216:3539824476(1260) ack 248762417 win 8192

74: 07:34:07.130471 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539824476:3539825736(1260) ack 248762417 win 8192

75: 07:34:07.132027 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539825736:3539826725(989) ack 248762417 win 8192

76: 07:34:07.174826 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539194233:2539194414(181) ack 9461028 win 8192

77: 07:34:07.338773 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539194414:2539194595(181) ack 9461028 win 8192

78: 07:34:07.610991 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539194595:2539194776(181) ack 9461028 win 8192

79: 07:34:08.349270 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539194776:2539194957(181) ack 9461028 win 8192

80: 07:34:08.734977 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539194957:2539195154(197) ack 9461028 win 8192

81: 07:34:08.943722 802.1Q vlan#1 P0 10.10.2.254.514 > 10.10.2.125.514: udp 126

82: 07:34:08.943844 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539195154:2539195303(149) ack 9461028 win 8192

83: 07:34:09.155219 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539195303:2539195500(197) ack 9461028 win 8192

84: 07:34:09.657894 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539195500:2539195681(181) ack 9461028 win 8192

85: 07:34:10.127648 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539195681:2539195862(181) ack 9461028 win 8192

86: 07:34:10.248903 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539195862:2539196059(197) ack 9461028 win 8192

87: 07:34:10.467627 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539196059:2539196208(149) ack 9461028 win 8192

88: 07:34:10.551302 802.1Q vlan#1 P0 10.10.2.216 > 10.10.2.125: icmp: echo reply

89: 07:34:10.686365 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539196208:2539196357(149) ack 9461028 win 8192

90: 07:34:11.451743 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539196357:2539196506(149) ack 9461028 win 8192

91: 07:34:11.670634 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539196506:2539196884(378) ack 9461028 win 8192

92: 07:34:11.889282 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539196884:2539197230(346) ack 9461028 win 8192

93: 07:34:12.108057 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539197230:2539197773(543) ack 9461028 win 8192

94: 07:34:12.359051 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539197773:2539197954(181) ack 9461028 win 8192

95: 07:34:12.545595 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539197954:2539198268(314) ack 9461028 win 8192

96: 07:34:12.764288 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539198268:2539198960(692) ack 9461028 win 8192

97: 07:34:13.013335 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539198960:2539199141(181) ack 9461028 win 8192

98: 07:34:13.984247 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539199141:2539199290(149) ack 9461028 win 8192

99: 07:34:14.186071 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539199290:2539200014(724) ack 9461028 win 8192

100: 07:34:14.795613 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539200014:2539200211(197) ack 9461028 win 8192

101: 07:34:14.951671 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539200211:2539200392(181) ack 9461028 win 8192

102: 07:34:15.831911 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539200392:2539200573(181) ack 9461028 win 8192

103: 07:34:16.045377 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539200573:2539200754(181) ack 9461028 win 8192

104: 07:34:16.264070 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539200754:2539201100(346) ack 9461028 win 8192

105: 07:34:16.482839 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539201100:2539201462(362) ack 9461028 win 8192

106: 07:34:17.130608 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539826725:3539827985(1260) ack 248762417 win 8192

107: 07:34:17.130669 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539827985:3539829245(1260) ack 248762417 win 8192

108: 07:34:17.131829 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539829245:3539830250(1005) ack 248762417 win 8192

109: 07:34:18.315016 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539201462:2539201643(181) ack 9461028 win 8192

110: 07:34:18.439918 802.1Q vlan#1 P0 10.10.2.254 > 10.10.2.125: icmp: echo reply

111: 07:34:18.439964 802.1Q vlan#1 P0 10.10.2.254 > 10.10.2.125: icmp: echo reply

112: 07:34:18.440147 802.1Q vlan#1 P0 10.10.2.254 > 10.10.2.125: icmp: echo reply

113: 07:34:18.451377 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539201643:2539201941(298) ack 9461028 win 8192

114: 07:34:20.671260 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539201941:2539202090(149) ack 9461028 win 8192

115: 07:34:20.857545 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539202090:2539202287(197) ack 9461028 win 8192

116: 07:34:21.101404 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539202287:2539202484(197) ack 9461028 win 8192

117: 07:34:21.295043 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539202484:2539202681(197) ack 9461028 win 8192

118: 07:34:21.513675 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539202681:2539203027(346) ack 9461028 win 8192

119: 07:34:21.754309 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539203027:2539203208(181) ack 9461028 win 8192

120: 07:34:22.111169 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539203208:2539203405(197) ack 9461028 win 8192

121: 07:34:24.246706 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539203405:2539203602(197) ack 9461028 win 8192

122: 07:34:24.357327 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539203602:2539203783(181) ack 9461028 win 8192

123: 07:34:24.576065 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539203783:2539203964(181) ack 9461028 win 8192

124: 07:34:24.794728 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539203964:2539204145(181) ack 9461028 win 8192

125: 07:34:25.948650 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539204145:2539204326(181) ack 9461028 win 8192

126: 07:34:26.133187 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539204326:2539204507(181) ack 9461028 win 8192

127: 07:34:26.325926 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539204507:2539204853(346) ack 9461028 win 8192

128: 07:34:26.544664 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539204853:2539205034(181) ack 9461028 win 8192

129: 07:34:26.763372 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539205034:2539205380(346) ack 9461028 win 8192

130: 07:34:27.130715 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539830250:3539831510(1260) ack 248762417 win 8192

131: 07:34:27.130776 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539831510:3539832770(1260) ack 248762417 win 8192

132: 07:34:27.131646 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539832770:3539833775(1005) ack 248762417 win 8192

133: 07:34:28.072490 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539205380:2539205529(149) ack 9461028 win 8192

134: 07:34:28.185201 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539205529:2539206221(692) ack 9461028 win 8192

135: 07:34:28.403909 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539206221:2539206402(181) ack 9461028 win 8192

136: 07:34:28.622541 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539206402:2539206583(181) ack 9461028 win 8192

137: 07:34:28.867875 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539206583:2539206764(181) ack 9461028 win 8192

138: 07:34:29.522250 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539206764:2539206945(181) ack 9461028 win 8192

139: 07:34:29.850450 802.1Q vlan#1 P0 10.10.2.254.514 > 10.10.2.125.514: udp 126

140: 07:34:29.850587 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539206945:2539207094(149) ack 9461028 win 8192

141: 07:34:30.044461 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539207094:2539207275(181) ack 9461028 win 8192

142: 07:34:31.089244 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539207275:2539207472(197) ack 9461028 win 8192

143: 07:34:31.247500 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539207472:2539207669(197) ack 9461028 win 8192

144: 07:34:31.568650 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539207669:2539207834(165) ack 9461028 win 8192

145: 07:34:31.684977 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539207834:2539207999(165) ack 9461028 win 8192

146: 07:34:32.329710 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539207999:2539208196(197) ack 9461028 win 8192

147: 07:34:32.860947 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539208196:2539208377(181) ack 9461028 win 8192

148: 07:34:32.997308 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539208377:2539208558(181) ack 9461028 win 8192

149: 07:34:33.216099 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539208558:2539208920(362) ack 9461028 win 8192

150: 07:34:33.599181 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539208920:2539209085(165) ack 9461028 win 8192

151: 07:34:33.762915 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539209085:2539209234(149) ack 9461028 win 8192

152: 07:34:34.076885 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539209234:2539209431(197) ack 9461028 win 8192

153: 07:34:34.165869 802.1Q vlan#1 P0 10.10.2.254.514 > 10.10.2.125.514: udp 126

154: 07:34:34.200368 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539209431:2539210320(889) ack 9461028 win 8192

155: 07:34:34.756766 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539210320:2539210501(181) ack 9461028 win 8192

156: 07:34:36.020018 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539210501:2539210650(149) ack 9461028 win 8192

157: 07:34:36.169012 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539210650:2539211028(378) ack 9461028 win 8192

158: 07:34:36.387766 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539211028:2539211225(197) ack 9461028 win 8192

159: 07:34:36.606444 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539211225:2539211752(527) ack 9461028 win 8192

160: 07:34:36.825183 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539211752:2539212098(346) ack 9461028 win 8192

161: 07:34:37.130898 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539833775:3539835035(1260) ack 248762417 win 8192

162: 07:34:37.130959 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539835035:3539836295(1260) ack 248762417 win 8192

163: 07:34:37.132378 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539836295:3539837284(989) ack 248762417 win 8192

164: 07:34:37.480733 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539212098:2539212295(197) ack 9461028 win 8192

165: 07:34:37.700098 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539212295:2539212476(181) ack 9461028 win 8192

166: 07:34:37.918897 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539212476:2539213381(905) ack 9461028 win 8192

167: 07:34:38.137611 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539213381:2539214641(1260) ack 9461028 win 8192

168: 07:34:38.356442 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539214641:2539215633(992) ack 9461028 win 8192

169: 07:34:38.575089 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539215633:2539215963(330) ack 9461028 win 8192

170: 07:34:39.551332 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539215963:2539216144(181) ack 9461028 win 8192

171: 07:34:39.684245 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539216144:2539216293(149) ack 9461028 win 8192

172: 07:34:39.887420 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539216293:2539216490(197) ack 9461028 win 8192

173: 07:34:40.106302 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539216490:2539217033(543) ack 9461028 win 8192

174: 07:34:40.324995 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539217033:2539217214(181) ack 9461028 win 8192

175: 07:34:40.543673 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539217214:2539217874(660) ack 9461028 win 8192

176: 07:34:40.762381 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539217874:2539218055(181) ack 9461028 win 8192

177: 07:34:41.177618 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539218055:2539218204(149) ack 9461028 win 8192

178: 07:34:41.309233 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539218204:2539218401(197) ack 9461028 win 8192

179: 07:34:41.528003 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539218401:2539218976(575) ack 9461028 win 8192

180: 07:34:41.887100 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539218976:2539219157(181) ack 9461028 win 8192

181: 07:34:42.555559 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539219157:2539219306(149) ack 9461028 win 8192

182: 07:34:42.731087 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539219306:2539220557(1251) ack 9461028 win 8192

183: 07:34:42.949810 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539220557:2539220919(362) ack 9461028 win 8192

184: 07:34:43.168600 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539220919:2539221510(591) ack 9461028 win 8192

185: 07:34:43.387278 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539221510:2539222037(527) ack 9461028 win 8192

186: 07:34:43.606047 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539222037:2539222218(181) ack 9461028 win 8192

187: 07:34:44.017897 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539222218:2539222399(181) ack 9461028 win 8192

188: 07:34:44.197758 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539222399:2539222548(149) ack 9461028 win 8192

189: 07:34:44.371547 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539222548:2539223107(559) ack 9461028 win 8192

190: 07:34:44.590301 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539223107:2539223304(197) ack 9461028 win 8192

191: 07:34:45.223636 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539223304:2539223469(165) ack 9461028 win 8192

192: 07:34:45.355953 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539223469:2539223831(362) ack 9461028 win 8192

193: 07:34:45.574585 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539223831:2539224422(591) ack 9461028 win 8192

194: 07:34:45.964030 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539224422:2539224603(181) ack 9461028 win 8192

195: 07:34:46.121423 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539224603:2539224965(362) ack 9461028 win 8192

196: 07:34:46.340222 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539224965:2539225146(181) ack 9461028 win 8192

197: 07:34:46.558931 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539225146:2539225492(346) ack 9461028 win 8192

198: 07:34:46.777669 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539225492:2539226365(873) ack 9461028 win 8192

199: 07:34:46.996393 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539226365:2539227073(708) ack 9461028 win 8192

200: 07:34:47.131020 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539837284:3539838544(1260) ack 248762417 win 8192

201: 07:34:47.131081 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539838544:3539839804(1260) ack 248762417 win 8192

202: 07:34:47.132195 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2926: P 3539839804:3539840809(1005) ack 248762417 win 8192

203: 07:34:47.215122 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539227073:2539227451(378) ack 9461028 win 8192

204: 07:34:47.433891 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539227451:2539228324(873) ack 9461028 win 8192

205: 07:34:47.652523 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539228324:2539228489(165) ack 9461028 win 8192

206: 07:34:47.871369 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539228489:2539229032(543) ack 9461028 win 8192

207: 07:34:48.379985 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539229032:2539229213(181) ack 9461028 win 8192

208: 07:34:48.663417 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539229213:2539229410(197) ack 9461028 win 8192

209: 07:34:49.269379 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539229410:2539229559(149) ack 9461028 win 8192

210: 07:34:49.402521 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539229559:2539230661(1102) ack 9461028 win 8192

211: 07:34:49.671824 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539230661:2539230810(149) ack 9461028 win 8192

212: 07:34:49.839876 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.2924: P 2539230810:2539230975(165) ack 9461028 win 8192

213: 07:34:49.859986 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.3007: S 2946830453:2946830453(0) ack 50794500 win 8192 10.10.2.125.3007: . ack 50795223 win 7963

217 packets shown



Result of the command: "show capture capout"


0 packet captured

0 packet shown


Hope that is what you were wanting to see.


Thanks!


Scott T

pershingit Fri, 08/06/2010 - 07:17

In the copy and paste I did from your previous email on the first line I changed the all statement (it didn't like that) to my personal ip address of 10.10.2.125.


Is that what you are looking for?


Scott

Nagaraja Thanthry Fri, 08/06/2010 - 08:16

Hello,


I am not sure why I posted that access-list. My apologies. Can you please

change the access-list as below and capture again:


no cap capin

no cap capout

clear configure access-li cap

access-list cap permit ip any host any


capture capin access-list cap interface inside

capture capout access-list cap interface outside


Once this is done, please rerun the test and post the outputs.


Regards,


NT

pershingit Fri, 08/06/2010 - 09:54

Here you go hope that helps.




Result of the command: "show capture capin"


253 packets captured

1: 10:45:03.333906 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4383: P 1631152414:1631152547(133) ack 1152984638 win 8192

2: 10:45:03.453727 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4383: P 1631152547:1631152584(37) ack 1152984638 win 8192

3: 10:45:03.454306 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4383: F 1631152584:1631152584(0) ack 1152984675 win 8192

4: 10:45:03.454352 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4383: . ack 1152984676 win 8192

5: 10:45:03.562974 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455493137:455494382(1245) ack 3776373837 win 8192

6: 10:45:03.781804 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455494382:455494728(346) ack 3776373837 win 8192

7: 10:45:04.007522 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455494728:455495436(708) ack 3776373837 win 8192

8: 10:45:04.327848 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455495436:455495633(197) ack 3776373837 win 8192

9: 10:45:04.437935 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455495633:455496506(873) ack 3776373837 win 8192

10: 10:45:04.656658 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455496506:455496852(346) ack 3776373837 win 8192

11: 10:45:04.755835 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455496852:455498112(1260) ack 3776373837 win 8192

12: 10:45:04.756522 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455498112:455498939(827) ack 3776373837 win 8192

13: 10:45:04.984736 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455498939:455499136(197) ack 3776373837 win 8192

14: 10:45:05.203648 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455499136:455500323(1187) ack 3776373837 win 8192

15: 10:45:05.422280 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455500323:455501047(724) ack 3776373837 win 8192

16: 10:45:05.600921 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455501047:455502307(1260) ack 3776373837 win 8192

17: 10:45:05.601607 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455502307:455503567(1260) ack 3776373837 win 8192

18: 10:45:05.609847 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455503567:455504827(1260) ack 3776373837 win 8192

19: 10:45:05.611494 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455504827:455506087(1260) ack 3776373837 win 8192

20: 10:45:05.646527 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455506087:455507347(1260) ack 3776373837 win 8192

21: 10:45:05.647198 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455507347:455508196(849) ack 3776373837 win 8192

22: 10:45:05.677790 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455508196:455509456(1260) ack 3776373837 win 8192

23: 10:45:05.678446 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455509456:455509942(486) ack 3776373837 win 8192

24: 10:45:05.735160 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455509942:455511202(1260) ack 3776373837 win 8192

25: 10:45:05.735817 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455511202:455511342(140) ack 3776373837 win 8192

26: 10:45:05.973902 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455511342:455511688(346) ack 3776373837 win 8192

27: 10:45:06.187841 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455511688:455512822(1134) ack 3776373837 win 8192

28: 10:45:06.298293 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455512822:455514082(1260) ack 3776373837 win 8192

29: 10:45:06.299468 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455514082:455514664(582) ack 3776373837 win 8192

30: 10:45:06.515995 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455514664:455515255(591) ack 3776373837 win 8192

31: 10:45:06.734611 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455515255:455515436(181) ack 3776373837 win 8192

32: 10:45:07.423714 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455515436:455515585(149) ack 3776373837 win 8192

33: 10:45:07.719033 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455515585:455515782(197) ack 3776373837 win 8192

34: 10:45:10.212238 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455515782:455515963(181) ack 3776373837 win 8192

35: 10:45:10.833132 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809428474:2809429734(1260) ack 1108453567 win 8192

36: 10:45:10.833208 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809429734:2809430994(1260) ack 1108453567 win 8192

37: 10:45:10.834307 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809430994:2809431999(1005) ack 1108453567 win 8192

38: 10:45:11.231494 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455515963:455516112(149) ack 3776373837 win 8192

39: 10:45:11.309432 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455516112:455517372(1260) ack 3776373837 win 8192

40: 10:45:11.310622 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455517372:455517624(252) ack 3776373837 win 8192

41: 10:45:11.437446 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455517624:455518151(527) ack 3776373837 win 8192

42: 10:45:11.671763 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455518151:455518332(181) ack 3776373837 win 8192

43: 10:45:11.984293 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455518332:455519056(724) ack 3776373837 win 8192

44: 10:45:12.312560 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455519056:455520316(1260) ack 3776373837 win 8192

45: 10:45:12.531192 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455520316:455520850(534) ack 3776373837 win 8192

46: 10:45:12.765554 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455520850:455521590(740) ack 3776373837 win 8192

47: 10:45:12.968669 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455521590:455522314(724) ack 3776373837 win 8192

48: 10:45:13.187414 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455522314:455523022(708) ack 3776373837 win 8192

49: 10:45:13.515506 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455523022:455523895(873) ack 3776373837 win 8192

50: 10:45:13.843523 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455523895:455524241(346) ack 3776373837 win 8192

51: 10:45:15.983591 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455524241:455524422(181) ack 3776373837 win 8192

52: 10:45:16.249651 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455524422:455524784(362) ack 3776373837 win 8192

53: 10:45:16.468344 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455524784:455524965(181) ack 3776373837 win 8192

54: 10:45:16.687082 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455524965:455525146(181) ack 3776373837 win 8192

55: 10:45:17.158011 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455525146:455525327(181) ack 3776373837 win 8192

56: 10:45:17.452750 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455525327:455525508(181) ack 3776373837 win 8192

57: 10:45:18.114312 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455525508:455525689(181) ack 3776373837 win 8192

58: 10:45:18.327604 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455525689:455525870(181) ack 3776373837 win 8192

59: 10:45:18.558900 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455525870:455526019(149) ack 3776373837 win 8192

60: 10:45:18.765097 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455526019:455526594(575) ack 3776373837 win 8192

61: 10:45:19.093241 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455526594:455527854(1260) ack 3776373837 win 8192

62: 10:45:19.311934 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455527854:455528239(385) ack 3776373837 win 8192

63: 10:45:19.530734 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455528239:455529499(1260) ack 3776373837 win 8192

64: 10:45:19.749381 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455529499:455529836(337) ack 3776373837 win 8192

65: 10:45:20.078441 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455529836:455530182(346) ack 3776373837 win 8192

66: 10:45:20.405618 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455530182:455530544(362) ack 3776373837 win 8192

67: 10:45:20.833269 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809431999:2809433259(1260) ack 1108453567 win 8192

68: 10:45:20.833330 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809433259:2809434519(1260) ack 1108453567 win 8192

69: 10:45:20.834093 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809434519:2809435524(1005) ack 1108453567 win 8192

70: 10:45:20.932843 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455530544:455530725(181) ack 3776373837 win 8192

71: 10:45:21.061825 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455530725:455530906(181) ack 3776373837 win 8192

72: 10:45:21.389643 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455530906:455531103(197) ack 3776373837 win 8192

73: 10:45:21.718071 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455531103:455532253(1150) ack 3776373837 win 8192

74: 10:45:21.936810 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455532253:455532434(181) ack 3776373837 win 8192

75: 10:45:22.264909 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455532434:455532961(527) ack 3776373837 win 8192

76: 10:45:22.608595 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455532961:455533504(543) ack 3776373837 win 8192

77: 10:45:22.811725 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455533504:455534244(740) ack 3776373837 win 8192

78: 10:45:23.139915 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455534244:455534425(181) ack 3776373837 win 8192

79: 10:45:23.579895 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455534425:455534606(181) ack 3776373837 win 8192

80: 10:45:24.055890 802.1Q vlan#1 P0 10.10.2.254.514 > 10.10.2.125.514: udp 126

81: 10:45:24.056042 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455534606:455534755(149) ack 3776373837 win 8192

82: 10:45:24.342893 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455534755:455535628(873) ack 3776373837 win 8192

83: 10:45:24.910597 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455535628:455535825(197) ack 3776373837 win 8192

84: 10:45:25.217853 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455535825:455536171(346) ack 3776373837 win 8192

85: 10:45:25.436607 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455536171:455536533(362) ack 3776373837 win 8192

86: 10:45:25.669765 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455536533:455536895(362) ack 3776373837 win 8192

87: 10:45:25.983378 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455536895:455537076(181) ack 3776373837 win 8192

88: 10:45:26.311507 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455537076:455537257(181) ack 3776373837 win 8192

89: 10:45:26.530276 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455537257:455537454(197) ack 3776373837 win 8192

90: 10:45:26.801121 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455537454:455537635(181) ack 3776373837 win 8192

91: 10:45:27.346844 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455537635:455537832(197) ack 3776373837 win 8192

92: 10:45:27.874878 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455537832:455538013(181) ack 3776373837 win 8192

93: 10:45:28.061382 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455538013:455538194(181) ack 3776373837 win 8192

94: 10:45:28.389521 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455538194:455538886(692) ack 3776373837 win 8192

95: 10:45:28.733253 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455538886:455539067(181) ack 3776373837 win 8192

96: 10:45:29.045682 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455539067:455539807(740) ack 3776373837 win 8192

97: 10:45:29.303725 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455539807:455541067(1260) ack 3776373837 win 8192

98: 10:45:29.304412 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455541067:455541074(7) ack 3776373837 win 8192

99: 10:45:29.483114 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455541074:455541436(362) ack 3776373837 win 8192

100: 10:45:30.261201 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455541436:455541617(181) ack 3776373837 win 8192

101: 10:45:30.467505 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455541617:455541979(362) ack 3776373837 win 8192

102: 10:45:30.833437 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809435524:2809436784(1260) ack 1108453567 win 8192

103: 10:45:30.833498 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809436784:2809438044(1260) ack 1108453567 win 8192

104: 10:45:30.834856 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809438044:2809439049(1005) ack 1108453567 win 8192

105: 10:45:30.949871 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455541979:455542176(197) ack 3776373837 win 8192

106: 10:45:31.123711 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455542176:455542538(362) ack 3776373837 win 8192

107: 10:45:31.342374 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455542538:455542719(181) ack 3776373837 win 8192

108: 10:45:31.754202 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455542719:455542900(181) ack 3776373837 win 8192

109: 10:45:31.889236 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455542900:455543081(181) ack 3776373837 win 8192

110: 10:45:32.217411 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455543081:455543262(181) ack 3776373837 win 8192

111: 10:45:32.436119 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455543262:455543608(346) ack 3776373837 win 8192

112: 10:45:32.764303 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455543608:455543789(181) ack 3776373837 win 8192

113: 10:45:33.243670 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455543789:455543970(181) ack 3776373837 win 8192

114: 10:45:33.650051 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455543970:455544151(181) ack 3776373837 win 8192

115: 10:45:33.857850 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455544151:455544332(181) ack 3776373837 win 8192

116: 10:45:34.371547 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455544332:455544513(181) ack 3776373837 win 8192

117: 10:45:34.404703 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455544513:455544694(181) ack 3776373837 win 8192

118: 10:45:34.673503 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455544694:455544875(181) ack 3776373837 win 8192

119: 10:45:34.951580 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455544875:455545237(362) ack 3776373837 win 8192

120: 10:45:35.279648 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455545237:455545961(724) ack 3776373837 win 8192

121: 10:45:35.596282 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455545961:455546142(181) ack 3776373837 win 8192

122: 10:45:35.630231 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455546142:455547402(1260) ack 3776373837 win 8192

123: 10:45:35.630903 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455547402:455548133(731) ack 3776373837 win 8192

124: 10:45:35.826510 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455548133:455549393(1260) ack 3776373837 win 8192

125: 10:45:35.865067 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455549393:455550653(1260) ack 3776373837 win 8192

126: 10:45:35.865769 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455550653:455550965(312) ack 3776373837 win 8192

127: 10:45:36.154655 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455550965:455551854(889) ack 3776373837 win 8192

128: 10:45:36.482702 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455551854:455552956(1102) ack 3776373837 win 8192

129: 10:45:37.445319 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455552956:455553137(181) ack 3776373837 win 8192

130: 10:45:38.282776 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455553137:455553302(165) ack 3776373837 win 8192

131: 10:45:38.560655 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455553302:455553467(165) ack 3776373837 win 8192

132: 10:45:39.367244 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455553467:455553664(197) ack 3776373837 win 8192

133: 10:45:39.608534 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455553664:455553861(197) ack 3776373837 win 8192

134: 10:45:39.874481 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455553861:455554026(165) ack 3776373837 win 8192

135: 10:45:40.091807 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455554026:455554223(197) ack 3776373837 win 8192

136: 10:45:40.833559 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809439049:2809440309(1260) ack 1108453567 win 8192

137: 10:45:40.833620 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809440309:2809441569(1260) ack 1108453567 win 8192

138: 10:45:40.834643 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809441569:2809442574(1005) ack 1108453567 win 8192

139: 10:45:41.183202 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455554223:455554372(149) ack 3776373837 win 8192

140: 10:45:41.404291 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455554372:455555261(889) ack 3776373837 win 8192

141: 10:45:41.724236 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455555261:455555458(197) ack 3776373837 win 8192

142: 10:45:41.951122 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455555458:455555820(362) ack 3776373837 win 8192

143: 10:45:42.169836 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455555820:455556001(181) ack 3776373837 win 8192

144: 10:45:42.388529 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455556001:455556379(378) ack 3776373837 win 8192

145: 10:45:42.732246 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455556379:455557087(708) ack 3776373837 win 8192

146: 10:45:42.935422 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455557087:455557284(197) ack 3776373837 win 8192

147: 10:45:43.154151 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455557284:455557465(181) ack 3776373837 win 8192

148: 10:45:43.482290 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455557465:455557992(527) ack 3776373837 win 8192

149: 10:45:43.810306 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455557992:455559062(1070) ack 3776373837 win 8192

150: 10:45:44.138420 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455559062:455559243(181) ack 3776373837 win 8192

151: 10:45:44.466513 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455559243:455559589(346) ack 3776373837 win 8192

152: 10:45:44.794667 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455559589:455559786(197) ack 3776373837 win 8192

153: 10:45:45.054913 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455559786:455559967(181) ack 3776373837 win 8192

154: 10:45:45.341458 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455559967:455560313(346) ack 3776373837 win 8192

155: 10:45:45.669627 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455560313:455560659(346) ack 3776373837 win 8192

156: 10:45:46.013350 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455560659:455561335(676) ack 3776373837 win 8192

157: 10:45:46.461157 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455561335:455561516(181) ack 3776373837 win 8192

158: 10:45:46.669551 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455561516:455561697(181) ack 3776373837 win 8192

159: 10:45:46.982004 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455561697:455561878(181) ack 3776373837 win 8192

160: 10:45:47.447532 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455561878:455562027(149) ack 3776373837 win 8192

161: 10:45:47.629194 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455562027:455563287(1260) ack 3776373837 win 8192

162: 10:45:47.630018 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455563287:455563512(225) ack 3776373837 win 8192

163: 10:45:47.747535 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455563512:455563693(181) ack 3776373837 win 8192

164: 10:45:47.966273 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455563693:455564598(905) ack 3776373837 win 8192

165: 10:45:48.185003 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455564598:455564944(346) ack 3776373837 win 8192

166: 10:45:48.766439 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455564944:455565125(181) ack 3776373837 win 8192

167: 10:45:48.950603 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455565125:455565652(527) ack 3776373837 win 8192

168: 10:45:49.169379 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455565652:455566014(362) ack 3776373837 win 8192

169: 10:45:49.454306 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455566014:455566195(181) ack 3776373837 win 8192

170: 10:45:49.716241 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455566195:455566376(181) ack 3776373837 win 8192

171: 10:45:50.044339 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455566376:455567265(889) ack 3776373837 win 8192

172: 10:45:50.796513 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455567265:455567446(181) ack 3776373837 win 8192

173: 10:45:50.833727 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809442574:2809443834(1260) ack 1108453567 win 8192

174: 10:45:50.833788 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809443834:2809445094(1260) ack 1108453567 win 8192

175: 10:45:50.835451 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4357: P 2809445094:2809446099(1005) ack 1108453567 win 8192

176: 10:45:51.652187 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455567446:455567627(181) ack 3776373837 win 8192

177: 10:45:52.239398 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455567627:455567808(181) ack 3776373837 win 8192

178: 10:45:52.578140 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455567808:455567957(149) ack 3776373837 win 8192

179: 10:45:52.887908 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4355: P 455567957:455568894(937) ack 3776373837 win 8192

180: 10:45:53.437690 802.1Q vlan#1 P0 10.10.2.254.443 > 10.10.2.125.4386: S 1934499216:1934499216(0) ack 2990701453 win 8192 10.10.2.125.4388: . ack 2458491757 win 7963

253 packets shown



Result of the command: "show capture capout"


0 packet captured

0 packet shown

Nagaraja Thanthry Tue, 08/03/2010 - 10:48

Hello,


Most likely the server you are trying to access is using Active FTP. If you have a spare public IP address, could you please try the following:


on the firewall:


static (inside,outside) netmask 255.255.255.255


class-map inspection_default
match default-inspection-traffic

policy-map global_policy
class inspection_default
  inspect ftp

service-policy global_policy global

Once these commands are configured, then try to access the server and see if it works.

Alternatively, you can ask the remote server administrators if they are using active FTP or passive FTP.

Hope this helps.

Regards,

NT

Magnus Mortensen Sat, 08/07/2010 - 22:21

Scott,

     I just took a second look at the .doc you provided at the start. The screen shot you posted shows a packet tracer attempt of a packet:


- coming in the outside interface

- coming from source 150.199.100.225 port 21

- destined to 204.13.92.99 on port 21


This traffic flow doesn't make too much sense as you would never see packets to *and* from port 21...


The implicit rule error you are seeing in the output is becuase you are testing a packet coming in destined to  204.13.92.99. A packet destined to  204.13.92.99 would never come *in" the outside interface since  204.13.92.99 is the FTP you are trying to get to on the internet. THe 'implicit rule' you are hitting is the firewall denying traffic from hairpinning on the outside interface (if a packet came 'in' the outside destined to  204.13.92.99, the firewall would have to bounce it right back out the outside interface toward you ISP wouldn't it... )


In order to get a valid packet tracer output please select the following options in the GUI:


Interface: INSIDE

Source IP: (the IP address of the machine your are FTP'ing *from* (get this from 'ipconfig' on the machine)

Source Port: 12345

Destination IP:  204.13.92.99

Destination Port: 21


Or you can get this from the CLI with the following:


packet input inside tcp 12345  204.13.92.99 21 detailed


- Magnus

Actions

This Discussion