Answer1 :
you can use the command : " get session " and/or "get session | include X.X.X.X"
X.X.X.X: is the source or destination ip addresses
Answer2:
let's say that you have the below policy :
from ip-1 to ip-2 then permit & source nat using dip 5
that means that when ip1 tries to access ip2 it will be permitted & source natting will happen
src ip1 dst ip2 will translated to src natted-ip1 dst ip2
But what if ip2 tried to access ip1 using the natted ip ( src ip2 dst natted-ip1 ) ? the access will not be permitted
But if you have this command "dip interface-ip incoming" the access will be permitted
This is used only with Voip tarffic ( H.323 , SIP , ....... ) & cannot be used with non VOIP traffic
************** Click on the button saying " Accept as Solution" if My Post solved your problem **************