DCN_SI_SSG520M_FW:SSG520(M)-> set ffilt src-ip 10.121.0.246 filter added DCN_SI_SSG520M_FW:SSG520(M)-> DCN_SI_SSG520M_FW:SSG520(M)-> DCN_SI_SSG520M_FW:SSG520(M)-> debug flow basic DCN_SI_SSG520M_FW:SSG520(M)-> debug flow drop DCN_SI_SSG520M_FW:SSG520(M)-> ping 10.2.0.3 from eth0/3 Type escape sequence to abort Sending 5, 100-byte ICMP Echos to 10.2.0.3, timeout is 1 seconds from ethernet0/3 ..... Success Rate is 0 percent (0/5) DCN_SI_SSG520M_FW:SSG520(M)-> ping 192.168.169.188 from eth0/3 Type escape sequence to abort Sending 5, 100-byte ICMP Echos to 192.168.169.188, timeout is 1 seconds from ethernet0/3 ..... Success Rate is 0 percent (0/5) DCN_SI_SSG520M_FW:SSG520(M)-> trace 192.168.169.188 from eth0/3 Type escape sequence to escape Send ICMP echos to 192.168.169.188, timeout is 2 seconds, maximum hops are 32, trace from ethernet0/3 1 * * * 2 * Trace aborted DCN_SI_SSG520M_FW:SSG520(M)-> DCN_SI_SSG520M_FW:SSG520(M)-> trace 10.2.0.3 from eth0/3 Type escape sequence to escape Send ICMP echos to 10.2.0.3, timeout is 2 seconds, maximum hops are 32, trace from ethernet0/3 1 * * * 2 Trace aborted DCN_SI_SSG520M_FW:SSG520(M)-> DCN_SI_SSG520M_FW:SSG520(M)-> undebug all DCN_SI_SSG520M_FW:SSG520(M)-> unset ffilt filter 0 removed DCN_SI_SSG520M_FW:SSG520(M)-> DCN_SI_SSG520M_FW:SSG520(M)-> get db stream ****** 47747.0: packet received [68]****** ipid = 61929(f1e9), @0291c314 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f1e9:10.121.0.246->224.0.0.5,89 => ethernet0/3(68) flag 0x40008890, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47749.0: packet received [128]****** ipid = 4430(114e), @0291c124 self:10.121.0.246/3908->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/3908->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 0 for 10.2.0.3 add route 307 for 10.2.0.3 to route cache table [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 18670, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47750.0: packet received [128]****** ipid = 20237(4f0d), @0291c124 self:10.121.0.246/4008->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/4008->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 307 for 10.2.0.3 [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 18570, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47751.0: packet received [128]****** ipid = 13313(3401), @0291c124 self:10.121.0.246/4108->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/4108->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 307 for 10.2.0.3 [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 18470, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47752.0: packet received [128]****** ipid = 16337(3fd1), @0291c124 self:10.121.0.246/4208->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/4208->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 307 for 10.2.0.3 [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 18370, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47753.0: packet received [128]****** ipid = 31458(7ae2), @0291c124 self:10.121.0.246/4308->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/4308->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 307 for 10.2.0.3 [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 18270, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47757.0: packet received [68]****** ipid = 61999(f22f), @0291c314 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f22f:10.121.0.246->224.0.0.5,89 => ethernet0/3(68) flag 0x40008890, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47762.0: packet received [128]****** ipid = 3303(0ce7), @0291c124 self:10.121.0.246/4708->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/4708->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 0 for 192.168.169.188 add route 309 for 192.168.169.188 to route cache table [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 17870, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47763.0: packet received [128]****** ipid = 12943(328f), @0291c124 self:10.121.0.246/4808->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/4808->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 0 for 192.168.169.188 add route 309 for 192.168.169.188 to route cache table [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 17770, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47764.0: packet received [128]****** ipid = 12784(31f0), @0291c124 self:10.121.0.246/5208->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/5208->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 309 for 192.168.169.188 [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 17370, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47765.0: packet received [128]****** ipid = 21105(5271), @0291c124 self:10.121.0.246/5308->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/5308->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 309 for 192.168.169.188 [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 17270, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47766.0: packet received [128]****** ipid = 30551(7757), @0291c124 self:10.121.0.246/5408->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/5408->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 309 for 192.168.169.188 [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 17170, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47767.0: packet received [68]****** ipid = 62083(f283), @0291c124 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f283:10.121.0.246->224.0.0.5,89 => ethernet0/3(68) flag 0x40008890, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47775.0: packet received [92]****** ipid = 573(023d), @0291c124 self:10.121.0.246/5808->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/5808->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 0 for 192.168.169.188 add route 309 for 192.168.169.188 to route cache table [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 56655, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47777.0: packet received [68]****** ipid = 62198(f2f6), @0291c124 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f2f6:10.121.0.246->224.0.0.5,89 => ethernet0/3(68) flag 0x40008890, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47777.0: packet received [92]****** ipid = 13235(33b3), @0291c124 self:10.121.0.246/5908->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/5908->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 309 for 192.168.169.188 [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 56555, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47779.0: packet received [92]****** ipid = 27879(6ce7), @0291bf34 self:10.121.0.246/6008->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/6008->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 0 for 192.168.169.188 add route 309 for 192.168.169.188 to route cache table [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 56455, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47781.0: packet received [92]****** ipid = 28446(6f1e), @0291bf34 self:10.121.0.246/6108->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/6108->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 0 for 192.168.169.188 add route 309 for 192.168.169.188 to route cache table [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 56355, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47783.0: packet received [92]****** ipid = 7665(1df1), @0291bf34 self:10.121.0.246/6208->192.168.169.188/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/6208->192.168.169.188/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->192.168.169.188) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 0 for 192.168.169.188 add route 309 for 192.168.169.188 to route cache table [ Dest] 309.route 192.168.169.188->203.113.136.9, to tunnel.3 routed (x_dst_ip 192.168.169.188) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 192.168.169.188, port 56255, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 29/0/0x1 Permitted by policy 29 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47787.0: packet received [68]****** ipid = 62268(f33c), @0291c124 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f33c:10.121.0.246->224.0.0.5,89 => ethernet0/3(68) flag 0x40008890, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47797.0: packet received [68]****** ipid = 62354(f392), @0291bf34 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f392:10.121.0.246->224.0.0.5,89 => ethernet0/3(68) flag 0x40008890, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47797.0: packet received [92]****** ipid = 2715(0a9b), @0291bf34 self:10.121.0.246/6908->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/6908->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 0 for 10.2.0.3 add route 307 for 10.2.0.3 to route cache table [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 55555, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47799.0: packet received [92]****** ipid = 17324(43ac), @0291c124 self:10.121.0.246/7008->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/7008->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 307 for 10.2.0.3 [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 55455, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47799.0: packet received [84]****** ipid = 62366(f39e), @0291c124 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f39e:10.121.0.246->224.0.0.5,89 => ethernet0/3(84) flag 0x40008880, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47799.0: packet received [84]****** ipid = 62368(f3a0), @0291c124 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f3a0:10.121.0.246->224.0.0.5,89 => ethernet0/3(84) flag 0x40008880, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47799.0: packet received [84]****** ipid = 62370(f3a2), @0291c124 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f3a2:10.121.0.246->224.0.0.5,89 => ethernet0/3(84) flag 0x40008880, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47799.0: packet received [1344]****** ipid = 62372(f3a4), @02ed11f4 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f3a4:10.121.0.246->224.0.0.5,89 => ethernet0/3(1344) flag 0x40008880, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end. ****** 47801.0: packet received [92]****** ipid = 193(00c1), @0291c124 self:10.121.0.246/7108->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/7108->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 307 for 10.2.0.3 [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 55355, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47803.0: packet received [92]****** ipid = 23458(5ba2), @0291c124 self:10.121.0.246/7208->10.2.0.3/1024,1(8/0) flow_decap_vector IPv4 process ethernet0/3:10.121.0.246/7208->10.2.0.3/1024,1(8/0) no session found flow_first_sanity_check: in , out chose interface ethernet0/3 as incoming nat if. flow_first_routing: in , out search route to (ethernet0/3, 10.121.0.246->10.2.0.3) in vr trust-vr for vsd-0/flag-0/ifp-null cached route 307 for 10.2.0.3 [ Dest] 307.route 10.2.0.3->203.113.136.9, to tunnel.3 routed (x_dst_ip 10.2.0.3) from ethernet0/3 (ethernet0/3 in 0) to tunnel.3 policy search from zone 101-> zone 1 policy_flow_search policy search nat_crt from zone 101-> zone 1 RPC Mapping Table search returned 0 matched service(s) for (vsys Root, ip 10.2.0.3, port 55255, proto 1) No SW RPC rule match, search HW rule swrs_search_ip: policy matched id/idx/action = 25/4/0x9 Permitted by policy 25 No src xlate NHTB entry search found: vpn VTP_TO_VTN tif tunnel.3 nexthop 203.113.136.9 tunnelid 0x16, flag 0x0, status 4 matched tunnel-id <0x00000000> packet dropped, no way(tunnel) out POLL_DROP_PAK: vlist 0x197f800, 0x197f800 ****** 47807.0: packet received [68]****** ipid = 62400(f3c0), @0291c124 flow_self_vector2: send pack with current vid =0, enc_size:0 handle raw/no_session packet. send no session packet flow_if_ip_send_fwd: switch vectors: packet src 10.121.0.246, dst 224.0.0.5 **** jump to packet:10.121.0.246->224.0.0.5 skipping pre-frag no more encapping needed send out through normal path. flow_ip_send: f3c0:10.121.0.246->224.0.0.5,89 => ethernet0/3(68) flag 0x40008890, vlan 0 multicast 224.0.0.5 01005e000005 packet send. packet send out to 01005e000005 through ethernet0/3 **** pak processing end.