Solved

Command to show current connection on a Cisco PIX 501?

Posted on 2007-11-24
4
5,792 Views
Last Modified: 2010-04-21
Hi there.

I want to know the current connections from the LAN to the internet in the PIX 501, getting this info:

1. Origin IP
2. Destiny IP
3. Bandwidth usage

And that's it!

Thanks!
0
Comment
Question by:CaLoFs79
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
4 Comments
 
LVL 11

Expert Comment

by:bsharath
ID: 20344942
0
 

Author Comment

by:CaLoFs79
ID: 20344947
Not really, I have the manual. I configured already.
But now I just want to check the connections.
0
 
LVL 36

Accepted Solution

by:
grblades earned 250 total points
ID: 20345115
The PIX does not keep track of the bandwidth usage for each connection. The nearest it does is show the number of bytes transferred.

The most usefull command is probably 'show conn' :-
show conn
6 in use, 6 most used
             TCP out 209.165.201.1:80 in 10.3.3.4:1404 idle 0:00:00 Bytes 11391
             TCP out 209.165.201.1:80 in 10.3.3.4:1405 idle 0:00:00 Bytes 3709
             TCP out 209.165.201.1:80 in 10.3.3.4:1406 idle 0:00:01 Bytes 2685
             TCP out 209.165.201.1:80 in 10.3.3.4:1407 idle 0:00:01 Bytes 2683
             TCP out 209.165.201.1:80 in 10.3.3.4:1403 idle 0:00:00 Bytes 15199
             TCP out 209.165.201.1:80 in 10.3.3.4:1408 idle 0:00:00 Bytes 2688
             UDP out 209.165.201.7:24 in 10.3.3.4:1402 idle 0:01:30
             UDP out 209.165.201.7:23 in 10.3.3.4:1397 idle 0:01:30
             UDP out 209.165.201.7:22 in 10.3.3.4:1395 idle 0:01:30

'show xlate detail' gives some more detail about the direction of the traffic :-
3 in use, 3 most used
Flags: D - DNS, d - dump, I - identity, i - inside, n - no random,
       o - outside, r - portmap, s - static
TCP PAT from inside:10.1.1.15/1026 to outside:192.150.49.1/1024 flags ri
UDP PAT from inside:10.1.1.15/1028 to outside:192.150.49.1/1024 flags ri
ICMP PAT from inside:10.1.1.15/21505 to outside:192.150.49.1/0 flags ri
0
 

Author Closing Comment

by:CaLoFs79
ID: 31410836
Thanks
0

Featured Post

Visualize your virtual and backup environments

Create well-organized and polished visualizations of your virtual and backup environments when planning VMware vSphere, Microsoft Hyper-V or Veeam deployments. It helps you to gain better visibility and valuable business insights.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
CCNP Exam question 6 39
Can't access router with user and pass 10 109
Cisco VOIP Question 1 70
Copying out Cisco backups from SolarWinds 13 122
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
PRTG Network Monitor lets you monitor your bandwidth usage, so you know who is using up your bandwidth, and what they're using it for.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

710 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question