No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

NE40E V800R010C00 Feature Description - NAT and IPv6 Transition 01

Rate and give feedback :
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Flow Elogs Format

Flow Elogs Format

Flow elogs are sent in binary format by the NAT device in centralized and distributed NAT deployment mode.

V1 Format (NAT444)

Table 7-25  Description of log syntax fields

Field

Description

Length in Bytes

version

Version number. The value is 0x10.

1

log_type

Log type. The value is fixed to 0x04.

1

count

Number of flow records in an existing packet.

2

unix_sec

Number of seconds since January 1, 1970, 00:00 (UTC).

4

flow_sequence

Sequence number of a packet (5-bit NAT instance type + 24-bit sequence number).

4

Cpu-id

CPU ID of a service board.

4bit

Instance-type

Instance type:
  • 1: NAT444
  • 2: DS-Lite

4bit

instance_id

ID of a NAT instance.

1

slot

Slot ID of a service board.

1

Reserved

Reserved field, which is 0.

1

prot

Type of the protocol running on the IP network.

1

operator

Operation string.

1

ip_ver

IP version number.

1

tos_ipv4

IP ToS.

1

sip

Source IP address.

4

natsip

IP address after NAT is implemented.

4

dip

Destination IP address.

4

natdip

Destination IP address after NAT is implemented.

4

sport

Source port number.

2

natsport

Source port number after NAT is implemented.

2

dport

Destination port number.

2

natdport

Destination port number after NAT is implemented.

2

stime

Start time of a flow.

4

etime

End time of a flow.

4

inpkt

Number of user-to-network flow packets.

4

inbyte

Number of bytes of user-to-network flow packets.

4

outpkt

Number of network-to-user flow packets.

4

outbyte

Number of bytes of network-to-user flow packets.

4

svpn

Source VPN ID.

2

dvpn

Destination VPN ID.

2

pad1

Reserved.

4

pad2

Reserved.

4

Example flow elog in V1 format (NAT444):

Figure 7-3  Example flow elog in V1 format (NAT444)

V2 Format (NAT444and DS-Lite)

Table 7-26  Description of log syntax fields

Field

Description

Length in Bytes

version

Version number. The value is 0x01.

1

log_type

Log type:
  • 0x14: NAT444 logs
  • 0x14: DS-Lite logs

1

count

Number of flow records in an existing packet.

2

unix_sec

Number of seconds since January 1, 1970, 00:00 (UTC).

4

flow_sequence

Sequence number of a packet (5-bit NAT instance type + 24-bit sequence number).

4

Cpu-id

CPU ID of a service board.

4bit

Instance-type

Instance type:
  • 1: NAT444
  • 2: DS-Lite

4bit

instance_id

ID of a NAT instance.

1

slot

Slot ID of a service board.

1

Reserved

Reserved field, which is 0.

1

prot

Type of the protocol running on the IP network:
  • TCP
  • UCP
  • ICMP

1

operator

Operation string. (This field is not in use.)

1

ip_ver

IP version number. (This field is not in use.)

1

tos_ipv4

IP ToS. (This field is not in use.)

1

sip

Source IP address before NAT/DS-Lite is implemented.

4

natsip

Source IP address after NAT/DS-Lite is implemented.

4

dip

Destination IP address before NAT/DS-Lite is implemented.

4

natdip

Destination IP address after NAT/DS-Lite is implemented.

4

sport

Source port number before NAT/DS-Lite is implemented.

2

natsport

Source port number after NAT/DS-Lite is implemented.

2

dport

Destination port number before NAT/DS-Lite is implemented.

2

natdport

Destination port number after NAT/DS-Lite is implemented.

2

stime

Start time of a flow.

4

etime

End time of a flow.

4

inpkt

Number of user-to-network flow packets. (This field is not in use.)

4

inbyte

Number of bytes of user-to-network flow packets. (This field is not in use.)

4

outpkt

Number of network-to-user flow packets. (This field is not in use.)

4

outbyte

Number of bytes of network-to-user flow packets. (This field is not in use.)

4

svpn

Source VPN ID.

2

dvpn

Destination VPN ID.

2

pad1

Reserved.

4

pad2

Reserved.

4

instanceID

ID of a DS-Lite instance.

2

usEncapSultionType

Encapsulation type in DS-Lite mode:
  • For an IPinIP tunnel, the value is 4.
  • For a GRE tunnel, value is 47.

2

stIpv6SrcAddr

Source IP address of an IPv6 tunnel in DS-Lite mode.

16

stIpv6DestAddr

Destination IP address of an IPv6 tunnel in DS-Lite mode.

16

Example flow elog in V2 format (NAT444):

Figure 7-4  Example flow elog in V2 format (NAT444)

NAT64 Logs in V2 Format

Table 7-27  Description of log syntax fields
Field Value Length in Bytes

version

Version number, fixed at 0x10.

1

log_type

NAT64 log type, fixed at 0x15.

1

count

Number of flow records in the current packet.

2

unix_sec

Number of seconds from 00:00, January 1, 1970 to the time the packet was generated.

4

flow_sequence

Packet sequence number, in the format of a 5-bit instance type value + a 24-bit sequence number.

4

Cpu-id

CPU ID of a service board.

4bit

Instance-type

NAT64 instance type, fixed at 5.

4bit

Instance-id

NAT64 instance ID.

1

slot

Slot ID of a service board.

1

Reserved

Reserved field, fixed at 0.

1

prot

Type of protocol over IP.

1

ip_ver

IP version number. (This field is not in use.)

1

flag

Flag field, fixed at 0x03. (This field is not in use.)

1

res

Reserved. (This field is not in use.)

1

stIP6SourceIP

Source IP6 address before NAT64 processing.

16

stIP6DestIP

Destination IP6 address before NAT64 processing.

16

sport

Source port number before NAT64 processing.

2

dport

Destination port number before NAT64 processing.

2

stime

Date and time when the flow started.

4

etime

Date and time when the flow ended.

4

inpkt

Number of forward flow packets. (This field is not in use.)

4

inbyte

Number of forward flow bytes. (This field is not in use.)

4

outpkt

Number of reverse flow packets. (This field is not in use.)

4

outbyte

Number of reverse flow bytes. (This field is not in use.)

4

svpn

Source VPN ID.

2

dvpn

Destination VPN ID.

2

natsport

Source port number after NAT64 processing.

2

natdport

Destination port number after NAT64 processing.

2

natsip

Source IPv4 address after NAT64 processing.

4

natdip

Destination IPv4 address after NAT64 processing

4

TunnelID

Tunnel ID. (This field is not in use.)

4

pad2

Reserved. (This field is not in use.)

2

pad3

Reserved. (This field is not in use.)

4

pad3

Reserved. (This field is not in use.)

4

Download
Updated: 2018-07-04

Document ID: EDOC1100027155

Views: 19796

Downloads: 67

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next