[c-nsp] debugging all incoming traffic on an interface

Adrian Chadd adrian at creative.net.au
Tue Sep 23 09:35:41 EDT 2008


On Tue, Sep 23, 2008, Wilkinson, Alex wrote:
>     0n Mon, Sep 22, 2008 at 06:52:21PM -0400, Jason Lixfeld wrote: 
> 
>     >Attaching a access-list 100 permit ip any any log-input to the
>     >interface and/or subinterface via ip access-group didn't show 
>     >anything - the interface counters
> 
> Curious ... since I dont have the luxury to play with cisco kit all day (jack of
> trades ...) can someone please give me a quick explanation as to how creating an
> ACL on an interface helps with debugging that interface ?

Assuming your platform is "compatible", it'll log stuff in the logging
area. Just sure you've got a larger logging buffer and its set to debug
(I think?) so it captures all of your packets.




Adrian



More information about the cisco-nsp mailing list