Forum Discussion

Amit_Grover_171's avatar
Amit_Grover_171
Icon for Nimbostratus rankNimbostratus
Aug 20, 2015

Is there any way to check regular packets in one VS and pool-member without using tcpdump

Hi,

 

Is there any way out to see regular logs on inbound VS and its pool-member without using tcpdumps.

 

/Regards Amit Grover

 

4 Replies

  • Without capturing the traffic, I think your best bet would be to use an iRule to log whatever specific data you're wanting to the ltm log. You could log things like client ip, pool member, headers, payload data.

     

  • If I may add, never fear tcpdump. This is a great tool to know and use as a network admin. But to simply check that a VIP or pool members are sending/receiving traffic, you can looks at the stats of each in the GUI or in the shell with TMSH.

    tmsh show ltm virtual [virtual name]
    

    or

    tmsh show ltm pool [pool name]
    
  • Thanks Michael,

     

    Can you please confirm if I'll use Logging in I rule to print logs on F5 LTM which is in production.Will that create any performance issues.

     

    /Regards Amit Grover

     

  • Thanks Kevin,

     

    I am not fearing from tcpdump :) but my concern is on traffic(In and out) analysis for particular VS as statistic are not having enough information who is hitting and what F5 VS is doing.

     

    I can not run tcpdump all the time in production. What i understand is I can use Logging in I-rule (but not sure whether it will effect performance of F5).

     

    /Regards Amit Grover