05-26-2009 04:18 AM
Is possible to debug nat transactions on the ACE. I know that the commands show xlate or show nat-fabric exist. But is possible to use some command which is similar like debug ip nat trans like on the Cisco router? Or is other method for real-time debug the ip nat translations on the ACE? Thank you very much. Roman
Solved! Go to Solution.
05-26-2009 11:21 PM
There is no debug as the nating is done in a micro engine which has very limited functions.
You can however enable "logging fastpath" and send the log messages to a syslog server (mandatory) and you should get an entry for each connection coming in and the associated xlate.
Here is an example:
%ACE-6-302026: Built ICMP connection for faddr 4.20.98.115/39033 gaddr 199.87.8.250/8 laddr 10.129.200.145/0
Gilles.
05-26-2009 11:21 PM
There is no debug as the nating is done in a micro engine which has very limited functions.
You can however enable "logging fastpath" and send the log messages to a syslog server (mandatory) and you should get an entry for each connection coming in and the associated xlate.
Here is an example:
%ACE-6-302026: Built ICMP connection for faddr 4.20.98.115/39033 gaddr 199.87.8.250/8 laddr 10.129.200.145/0
Gilles.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide