Difference between revisions of "Packet Capture"

From Tech-Wiki
Jump to: navigation, search
 
Line 6: Line 6:
 
  # capture capture_name interface interface_name access-list capture_acl
 
  # capture capture_name interface interface_name access-list capture_acl
 
  # clear capture capture_name
 
  # clear capture capture_name
  # show capture capture_name
+
  # show capture capture_name | inc 1.1.1.1
 
  ! wget -O capture_name.pcap --user=asa_user --password=asa_password https://asa_ip/capture/capture_name/pcap
 
  ! wget -O capture_name.pcap --user=asa_user --password=asa_password https://asa_ip/capture/capture_name/pcap
 
  # no capture capture_name
 
  # no capture capture_name

Latest revision as of 18:27, 17 June 2019


Packet capture

(config)# access-list capture_acl extended permit ip host 1.1.1.1 host 2.2.2.2
(config)# access-list capture_acl extended permit ip host 2.2.2.2 host 1.1.1.1
# capture capture_name interface interface_name access-list capture_acl
# clear capture capture_name
# show capture capture_name | inc 1.1.1.1
! wget -O capture_name.pcap --user=asa_user --password=asa_password https://asa_ip/capture/capture_name/pcap
# no capture capture_name
# capture capturename interface outside match tcp host 2.2.2.2 any eq 443 
# show capture capturename
# capture capturename interface inside match ip 192.168.10.10 255.255.255.255 any
# no capture capturename interface inside