No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.

Knowledge Base

Troubleshooting by packet tracing (2)

Publication Date:  2012-12-17  |   Views:  448  |   Downloads:  0  |   Author:  l00118588  |   Document ID:  EKB1000021739


Issue Description

a customer's web server is unable to access, ping the server address did not passed.

Alarm Information


Handling Process

We can check the routing first,examined the route configuration and the routing that effective actually.
Uses "disp cur | inc ip rout" examines the static routing configuration,
Uses "disp ip routing" to examine the static routing and valid routing,
When the routing list item is very many, is takes a long time to find the aimed routing,  use the filtrate condition to screen the route, here we introduces another method to troubleshoot route question.
Config a acl
acl number 3330
rule 5 permit ip destination 0
Under user view
<usg2210>debug ip packet-trace acl 3330
<usg2210>t m
<usg2210>t d
and then the following output:
*0.114939110 USG2200 DEBUG/7/Debug_trace:
Datetime: 2012/12/13 15:38: 7
Debug type: CPU debug trace.
4996: 43990--> 2048,1, EthType:0x800, Len:84, MF:0, Offset:0.
packet passed valid check.  
receive from G0/0/0 zone:trust VFW<public>
search route (> in VFW<public>
no route, packet dropped.
by this infomation we can known the packet was discarded because of no routing. 

Root Cause

The reson that the server does not service may be the follow seasons:
it may be related to network link, network equipment, server etc,generally the suggestion step is check the network first, and then check the network equipment, gradually reduction scope, for example: check the route first, uses the ping determination route whether may reach, if cannot reach uses the tracert determination where route to interrupt, if the route may reach further confirmed the equipment again and access strategy of essential node. Essential node is NAT gateway, firewall and so on.


Using packet tracing can inspect the packet drop reason in equipment, it is suggested to use when troubleshooting the transmitting failed breakdown.