Show ICMP packet information for pings to the
Cisco Adaptive Security Appliance interfaces
|
debug icmp trace
|
We strongly recommend that you disable debug messages
once you have completed your troubleshooting. To disable ICMP debug messages,
use the
no debug icmp trace command.
|
Show messages relating to the certificate validation
between
IM and Presence Service/Cisco Adaptive Security Appliance or
Cisco Adaptive Security Appliance/external domain
|
debug crypto ca
|
You can increase log level on the Cisco Adaptive Security Appliance by adding the log
level parameter to this command, for example:
debug crypto ca 3
|
debug crypto ca messages
|
Displays only debug messages for input and output
messages
|
debug crypto ca transactions
|
Displays only debug messages for transactions
|
Show the SIP messages sent through
Cisco Adaptive Security Appliance
|
debug sip
|
|
Send log messages to a buffer (for later viewing)
|
terminal monitor
|
|
Enable system log messages
|
logging on
|
We strongly recommend that you disable system log
messages once you have completed your troubleshooting. To disable system log
messages, use the
no logging on command.
|
Send system log messages to a buffer
|
logging buffer debug
|
|
Set system log messages to be sent to Telnet or SSH
sessions
|
logging monitor debug
|
|
Designate a (syslog) server to receive the system log
messages
|
logging host interface_name ip_address
|
- The interface_name
argument specifies the
Cisco Adaptive Security Appliance interface through which you access the syslog server.
- The ip_address
argument specifies the IP address of the syslog server.
|
Ping the Interfaces
|
ping
|
Refer to the Troubleshooting section of the
Cisco Security Appliance Command Line Configuration Guide for details on
pinging the
Cisco Adaptive Security Appliance interfaces, and also pinging between hosts on different
interfaces to ensure that the traffic can pass successfully through the
Cisco Adaptive Security Appliance.
You can also ping an interface in ASDM by choosing
.
Note
|
You cannot ping the public
IM and Presence Service IP address. However the MAC
address of the Cisco Adaptive Security Appliance outside interface should appear in the ARP table (arp
–a).
|
|
Trace the route of a packet
|
traceroute
|
You can also trace the route of a packet in ASDM, choose
.
|
Trace the life span of a packet through the
Cisco Adaptive Security Appliance
|
packet-tracer
|
You can also trace the life span of a packet in ASDM
, choose .
|