Nebula and CLI
Options
Hi everyone,
I would like to capture packets on CLI of a Nebula connected security appliance.
But when requesting the interface status, I do not get the configuration as shown in Nebula.
For example, here is how the USG Flex is configured in Nebula :
show interface all
And the answer is :
Nothing to do with the Nebula configuration.
What I need is troubleshooting an RDP remote connection on port 3389. I would like to see if the packets are well received by my WAN interface like this :
packet-trace interface wan port 3389
0 packets are captured event if the connection is successfull !
I have the same problem with ddns, nat rules, secure-policy rules, ... The CLI do not return the Nebula configuration but the default rules as if the apppliance would be in stand-alone mode.
What am I doing wrong ? Wrong command ? Wrong command context ?
Regards,
Sebastien
I would like to capture packets on CLI of a Nebula connected security appliance.
But when requesting the interface status, I do not get the configuration as shown in Nebula.
For example, here is how the USG Flex is configured in Nebula :
- wan1 : PPPoE (fixed public IP from ISP)
- lan1 : 192.168.10.0/24
- lan2 : disabled
show interface all
And the answer is :
Nothing to do with the Nebula configuration.
What I need is troubleshooting an RDP remote connection on port 3389. I would like to see if the packets are well received by my WAN interface like this :
packet-trace interface wan port 3389
0 packets are captured event if the connection is successfull !
I have the same problem with ddns, nat rules, secure-policy rules, ... The CLI do not return the Nebula configuration but the default rules as if the apppliance would be in stand-alone mode.
What am I doing wrong ? Wrong command ? Wrong command context ?
Regards,
Sebastien
0
Accepted Solution
-
The CLI on cloud mode is Router> show sdwan interface.
You can hit CLI Router> packet-trace interface eth0 extension-filter port 3389 to capture packets.
0
All Replies
-
The CLI on cloud mode is Router> show sdwan interface.
You can hit CLI Router> packet-trace interface eth0 extension-filter port 3389 to capture packets.
0
Categories
- All Categories
- 384 Beta Program
- 2.1K Nebula
- 117 Nebula Ideas
- 80 Nebula Status and Incidents
- 5.1K Security
- 79 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 909 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 209 Service & License
- 335 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 898 Nebula FAQ
- 415 Security FAQ
- 234 Switch FAQ
- 205 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 73 About Community
- 62 Security Highlight