How to perform traffic capture by CLI
  Zyxel Employee
         
         
            
         
         
            
         
         
            
         1)Login by SSH or Console cable
2)Find the interface name you want to capture.
usgflex200h> show interface vrf main
3)
Peform the command to see output and the filter syntax similar to tcpdump
For example:
usgflex200h> cmd traffic-capture ge3 filter 'icmp'
usgflex200h> cmd traffic-capture ge3 filter 'arp and host 192.168.168.1'
usgflex200h> cmd traffic-capture ge3 filter 'arp or host 192.168.168.1'
Peform the command to save packets as files.
For example:
usgflex200h> cmd traffic-capture new ge3
usgflex200h> cmd traffic-capture list //list pcap file
usgflex200h> cmd traffic-capture export url ftp://[FTP server]/path username [username] password [password] [filename] //fetch pcap file by FTP,TFTP or SCP
usgflex200h> cmd traffic-capture flush //flush all pcap file
usgflex200h> cmd traffic-capture delete //delete the specific pcap file.
Categories
- All Categories
 - 439 Beta Program
 - 2.8K Nebula
 - 200 Nebula Ideas
 - 126 Nebula Status and Incidents
 - 6.3K Security
 - 499 USG FLEX H Series
 - 323 Security Ideas
 - 1.6K Switch
 - 84 Switch Ideas
 - 1.3K Wireless
 - 49 Wireless Ideas
 - 6.8K Consumer Product
 - 287 Service & License
 - 457 News and Release
 - 89 Security Advisories
 - 31 Education Center
 - 10 [Campaign] Zyxel Network Detective
 - 4.3K FAQ
 - 34 Documents
 - 34 Nebula Monthly Express
 - 85 About Community
 - 96 Security Highlight