The tcpdump files that will be stored in the Equalizer file system will be in the following format:
tcpdump_objecttypeobjectname-tcp-pcap_MM_DD_YY_HH-MM{AM|PM}.tgz
where
objecttype
can be;
l
iface
- an interface
l
agr
- an aggregated interface
l
sv
- a server
l
vlan
- a vlan
l
cl
- a cluster
The time stamp in the file name is the time that the file was generated.
Foreground Feature
You also have the option of printing the output of a tcpdump capture to your screen, rather than to
a pcap, Using the
fg
command within the CLI syntax, this option you can capture one instance at a
time. In the example below, 10 packets are to be captured from a
cluster cl-http
.
eqcli > diags tcpdump fg count 10 capture cluster cl-http
tcpdump: Press Ctrl+C to quit.
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on wm0, link-type EN10MB (Ethernet), capture size 65535 bytes
12:33:35.312242 ARP, Request who-has 172.16.166.10 tell 172.16.128.1,
length 46
12:33:35.312253 ARP, Reply 172.16.166.10 is-at 00:90:0b:29:89:88 (oui
Unknown),
length 28
12:33:35.312342 IP 192.168.10.19.49749 > 172.16.166.10.http: Flags [S], seq
1452094800, win 5840, options [mss 1460,sackOK,TS val 6931863 ecr 0,nop,ws-
cale
6], length 0
12:33:35.312374 IP 172.16.166.10.http > 192.168.10.19.49749: Flags [S.],
seq
771217372, ack 1452094801, win 46417, options [mss 1460,nop,wscale
4,nop,nop,TS
val 1 ecr 6931863,sackOK,nop,nop], length 0
12:33:35.313494 IP 192.168.10.19.49750 > 172.16.166.10.http: Flags [S], seq
1451122556, win 5840, options [mss 1460,sackOK,TS val 6931863 ecr 0,nop,ws-
cale
6], length 0
12:33:35.313513 IP 172.16.166.10.http > 192.168.10.19.49750: Flags [S.],
seq
778147759, ack 1451122557, win 57213, options [mss 1460,nop,wscale
4,nop,nop,TS
val 1 ecr 6931863,sackOK,nop,nop], length 0
12:33:35.314834 IP 192.168.10.19.49752 > 172.16.166.10.http: Flags [S], seq
1457919162, win 5840, options [mss 1460,sackOK,TS val 6931863 ecr 0,nop,ws-
Copyright © 2014 Coyote Point Systems, A Subsidiary of Fortinet, Inc.
All Rights Reserved.
773
Equalizer Administration Guide
Summary of Contents for Equalizer GX Series
Page 18: ......
Page 32: ...Overview 32 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Page 42: ......
Page 52: ......
Page 64: ......
Page 72: ......
Page 76: ......
Page 228: ......
Page 238: ......
Page 476: ......
Page 492: ......
Page 530: ......
Page 614: ......
Page 626: ......
Page 638: ......
Page 678: ......
Page 732: ...Using SNMP Traps 732 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Page 754: ......
Page 790: ......
Page 804: ......
Page 842: ......
Page 866: ......