ScreenOS Firewalls (NOT SRX)
Reply
Contributor
tobesatdegobah
Posts: 22
Registered: ‎03-24-2009
0

Newbie to ffilter and snoop

Can you use wildcards in ffilter and snoop. ie can I run snoop and pipe to include traffic from a  specific subnet, not a specific address?

 

many thanks

Super Contributor
mehdi
Posts: 240
Registered: ‎08-19-2008
0

Re: Newbie to ffilter and snoop

Hi Tob

 

i don't think you can use wildcards with snoop^filter and ffilter, i know we can use  snoop filter with opetion src & dst ip , tcp , interface ...etc try CLI command 

# snoop filter ?

 

 or with ffilter try CLI command 

# ffilter ? 

 

and after that you can "debug flow basic" or try also  ? different option .

 

if you need more help 

 

Regard 

**If this reply solved your problem click on Kudos **
Kind Regard
http://www.linkedin.com/in/mkhitmane
personal mail: mehdi.khitmane@gmail.com
Trusted Expert Trusted Expert
Trusted Expert
WL
Posts: 789
Registered: ‎07-26-2008
0

Re: Newbie to ffilter and snoop

Hi

 

This is a pretty comprehensive guide for debugging from Andy :

http://kb.juniper.net/index?page=content&id=KB12208

 

And no, we cant wild-card for the filters

****pls click the button " Accept as Solution" if my post helped to solve your problem****
Copyright© 1999-2013 Juniper Networks, Inc. All rights reserved.