04-05-2004 07:57 AM - edited 03-02-2019 02:48 PM
I have created access-list log/access-group so I can see all the packets coming through the serial interface. I also can see it using 'sh log' command.
How can I debug a interface that would allow me to see all the packets going through it?
Thanks
04-05-2004 02:52 PM
you can use debug ip packet, I would not recommend using this unless you are matching it against an ACL . It can bring your box down in a matter of seconds if not used with caution
04-05-2004 05:35 PM
I believe only process-switched packets (i.e., not fast- or CEF-switched) are shown in 'debug ip packet'.
04-05-2004 07:48 PM
Create an access-list to match a particular source destination pair or destination address/port or source address/port combination that you want to watch in the debug.
Use debug ip packet
Usually the above method is recommended rather than using a full "debug ip packet", coz it can kill the router in a production environment.
Check this link.
http://www.cisco.com/en/US/tech/tk801/tk379/technologies_tech_note09186a008017874c.shtml
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide