cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
969
Views
0
Helpful
1
Replies

correlating a flow from client to the VIP and from the VIP to the server

axfalk
Level 1
Level 1

Hi,

we need to look at a flow from a client to a server that is traversing a VIP on the ACE. So, we pulled the sniffer traces between the client and the VIP and also between the VIP and the back-end server. How do we find the same flow on these sniffer traces?

Thanks.

_ greg

1 Reply 1

Kanwaljeet Singh
Cisco Employee
Cisco Employee

Hi Greg,

If ACE is just forwarding the client request the you should see the client port and IP at the backend. If ACE is doing NAT then you can try and filter on the basis of time stamps or information in HTTP header like specific client cookie but mostly when you have different front end and back end streams then time stamps are your best option. Normally during TS taking simultaneous output of "show conn" also helps in corelating front end and backend connection. You can take connection ID and see the corresponding backend stream and vice versa

show np x me-stats "-c -vvv"--->where x is NP 1 or 2 or 3 or 4 depending upon the specific connection output in show conn.

Regards,

Kanwal

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: