cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
846
Views
4
Helpful
2
Replies

Enabling TCP Dump

navneet_78
Level 1
Level 1

What is the Difference between capturing traffic creating a Dummy ACL and running a TCP dump? And how do i create a TCP dump? Iam running a Cisco PIX Firewall Version 6.1(5).

Awaiting your reply.

Regards

Navneet

2 Replies 2

mmorris11
Level 4
Level 4

A logging acl will provide very limited info about the flow and nothing about the payload. TCP dumping is used by all traffic sniffing technologies to examine this information. AFAIK there is no way to do a tcpdump-like action on your version of PIX software, but on PIX/ASA 7.x the new "capture" command was introduced and provides many powerful ways of doing an "on box" packet trace.

http://www.cisco.com/en/US/customer/products/ps6120/products_command_reference_chapter09186a00806418b6.html#wp2019898

HTH pls rate!

Hi Morris,

Thanx for the reply.

Regards

Navneet

Review Cisco Networking products for a $25 gift card