44

Packet Flow Explore

This chapter covers how to use the packet flow explore feature.

44.1 Packet Flow Explore

Use this to get a clear picture on how the ZyWALL determines where to forward a packet and how to change the source IP address of the packet according to your current settings. This function provides you a summary of all your routing and SNAT settings and helps troubleshoot the related problems.

44.2 Packet Flow Explore Commands

The following table lists the commands that you can use to have the ZyWALL display routing and SNAT related settings.

Table 201 Packet Flow Explore Commands

COMMAND

DESCRIPTION

show route order

Displays the order of routing related functions the ZyWALL checks for packets.

 

Once a packet matches the criteria of a routing rule, the ZyWALL takes the

 

corresponding action and does not perform any further flow checking.

 

 

show system snat order

Displays the order of SNAT related functions the ZyWALL checks for packets.

 

Once a packet matches the criteria of an SNAT rule, the ZyWALL uses the

 

corresponding source IP address and does not perform any further flow

 

checking.

 

 

show system route policy-route

Displays activated policy routes.

show system route nat-1-1

Displays activated 1-to-1 NAT rules.

show system route site-to-site-vpn

Displays activated site-to-site VPN rules.

show system route dynamic-vpn

Displays activated dynamic VPN rules.

show system route default-wan-

Displays the default WAN trunk settings.

trunk

 

show ip route static-dynamic

Displays activated static-dynamic routes.

show system snat policy-route

Displays activated policy routes which use SNAT.

show system snat nat-1-1

Displays activated NAT rules which use SNAT.

show system snat nat-loopback

Displays activated activated NAT rules which use SNAT with NAT loopback

 

enabled.

 

 

show system snat default-snat

Displays the default WAN trunk settings.

 

333

ZyWALL (ZLD) CLI Reference Guide