Filter and Firewall
Left running head: 
Chapter name (automatic)
768
Beta Beta
OmniAccess 5740 Unified Services Gateway CLI Configuration Guide
Alcatel-Lucent
FIREWALL DEBUG COMMANDS
This section lists the debug commands in firewall.
T
O ENABLE/DISABLE DEBUGGING ON FIREWALL
Notes: 1.  saddr == source address
2.  daddr == destination address
3.  sport == source port
4.  dport == destination port
EXAMPLE
The example below enables debugging for the source IP 10.91.0.52
ALU# debug firewall selector saddr 10.91.0.52
The example below disables debugging for the source IP 10.91.0.52
ALU# no debug firewall selector saddr 10.91.0.52
Command (in SUM/CM) Description
debug firewall 
{session|filter|nat|attack|alg
|intrusion|selector [saddr 
<ip-address>|daddr <ip- 
address>|protocol <number> | 
sport <number>|dport 
<number>][output|permanent]| 
all [detail-level]}
Use this command to turn on debugging 
for specified firewall features. 
The “selector” keyword allows you to 
debug only selected traffic.
no debug firewall 
{session|filter|nat|attack|alg
|intrusion|selector [saddr 
<ip-address>|daddr <ip- 
address>|protocol <number> | 
sport <number>|dport 
<number>][output|permanent]| 
all [detail-level
]}
Use this command to turn off the 
debugging functionality.
The “selector” keyword allows you to 
turn off debugging only for selected 
traffic.