Nebula and CLI
Options
Hi everyone,
I would like to capture packets on CLI of a Nebula connected security appliance.
But when requesting the interface status, I do not get the configuration as shown in Nebula.
For example, here is how the USG Flex is configured in Nebula :
show interface all
And the answer is :
Nothing to do with the Nebula configuration.
What I need is troubleshooting an RDP remote connection on port 3389. I would like to see if the packets are well received by my WAN interface like this :
packet-trace interface wan port 3389
0 packets are captured event if the connection is successfull !
I have the same problem with ddns, nat rules, secure-policy rules, ... The CLI do not return the Nebula configuration but the default rules as if the apppliance would be in stand-alone mode.
What am I doing wrong ? Wrong command ? Wrong command context ?
Regards,
Sebastien
I would like to capture packets on CLI of a Nebula connected security appliance.
But when requesting the interface status, I do not get the configuration as shown in Nebula.
For example, here is how the USG Flex is configured in Nebula :
- wan1 : PPPoE (fixed public IP from ISP)
- lan1 : 192.168.10.0/24
- lan2 : disabled
show interface all
And the answer is :
Nothing to do with the Nebula configuration.
What I need is troubleshooting an RDP remote connection on port 3389. I would like to see if the packets are well received by my WAN interface like this :
packet-trace interface wan port 3389
0 packets are captured event if the connection is successfull !
I have the same problem with ddns, nat rules, secure-policy rules, ... The CLI do not return the Nebula configuration but the default rules as if the apppliance would be in stand-alone mode.
What am I doing wrong ? Wrong command ? Wrong command context ?
Regards,
Sebastien
0
Accepted Solution
-
The CLI on cloud mode is Router> show sdwan interface.
You can hit CLI Router> packet-trace interface eth0 extension-filter port 3389 to capture packets.
0
All Replies
-
The CLI on cloud mode is Router> show sdwan interface.
You can hit CLI Router> packet-trace interface eth0 extension-filter port 3389 to capture packets.
0
Categories
- All Categories
- 396 Beta Program
- 2.1K Nebula
- 117 Nebula Ideas
- 81 Nebula Status and Incidents
- 5.1K Security
- 86 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 916 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 211 Service & License
- 337 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 2K FAQ
- 912 Nebula FAQ
- 419 Security FAQ
- 237 Switch FAQ
- 207 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 139 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 72 About Community
- 62 Security Highlight