Supported Platforms
Related Documentation
- SRX Series
- show security flow session
- Additional Information
- Flow-Based Processing Feature Guide for Security Devices
show security flow session extensive node
Syntax
Release Information
Command introduced in Release 8.5 of Junos OS; node options added in Release 9.0 of Junos OS. Filter options added in Release 10.2 of Junos OS.
Description
Display information about all currently active security sessions on the device for the specified node options in extensive mode.
Options
node—(Optional) For chassis cluster configurations, display session information on a specific node.
- node-id —Identification number of the node. It can be 0 or 1.
- all—Display information about all nodes.
- local—Display information about the local node.
- primary—Display information about the primary node.
Required Privilege Level
view
Related Documentation
- SRX Series
- show security flow session
- Additional Information
- Flow-Based Processing Feature Guide for Security Devices
List of Sample Output
show security flow session extensive node 0show security flow session extensive node 1
show security flow session extensive node all
show security flow session extensive node local
show security flow session extensive node primary
Output Fields
Table 1 lists the output fields for the show security flow session extensive node command. Output fields are listed in the approximate order in which they appear.
Table 1: show security flow session extensive node Output Fields
Field Name | Field Description |
---|---|
Session ID | Number that identifies the session. You can use this ID to get additional information about the session. |
Status | Session status. |
State | Session state. |
Flag | Internal flag depicting the state of the session, used for debugging purposes. |
Policy name | Policy that permitted the traffic. |
Source NAT pool | The name of the source pool where NAT is used. |
Maximum timeout | Maximum session timeout. |
Current timeout | Remaining time for the session unless traffic exists in the session. |
Start time | Time when the session was created, offset from the system start time. |
Duration | Length of time for which the session is active. |
In | Incoming flow (source and destination IP addresses, application protocol, interface, session token, flag, route, gateway, tunnel, port sequence, FIN sequence, FIN state, packets and bytes). |
Out | Reverse flow (source and destination IP addresses, application protocol, interface, session token, flag, route, gateway, tunnel, port sequence, FIN sequence, FIN state, packets and bytes). |
Total sessions | Total number of sessions. |
Sample Output
show security flow session extensive node 0
root@antbert> show security flow session extensive
node 0
node0: -------------------------------------------------------------------------- Flow Sessions on FPC3 PIC1: Total sessions: 0 Flow Sessions on FPC4 PIC0: Session ID: 160000011, Status: Normal, State: Backup Flag: 0x10000042 Policy name: default-policy/2 Source NAT pool: Null, Application: junos-ftp/1 Maximum timeout: 1800, Current timeout: 13946 Session State: Valid Start time: 2021, Duration: 469 In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, Interface: reth1.0, Session token: 0x180, Flag: 0x0x2621 Route: 0x0, Gateway: 1.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 0, Bytes: 0 Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, Interface: reth2.0, Session token: 0x1c0, Flag: 0x0x2620 Route: 0x0, Gateway: 2.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 0, Bytes: 0 Total sessions: 1 Flow Sessions on FPC4 PIC1: Total sessions: 0
show security flow session extensive node 1
root@antbert> show security flow session extensive
node 1
node1: -------------------------------------------------------------------------- Flow Sessions on FPC3 PIC1: Total sessions: 0 Flow Sessions on FPC4 PIC0: Session ID: 160000272, Status: Normal, State: Active Flag: 0x8000042 Policy name: default-policy/2 Source NAT pool: Null, Application: junos-ftp/1 Maximum timeout: 1800, Current timeout: 1756 Session State: Valid Start time: 2023, Duration: 473 In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, Interface: reth1.0, Session token: 0x180, Flag: 0x0x2621 Route: 0x84863c2, Gateway: 1.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 69, Bytes: 3024 Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, Interface: reth2.0, Session token: 0x1c0, Flag: 0x0x2620 Route: 0x84843c2, Gateway: 2.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 62, Bytes: 4002 Total sessions: 1 Flow Sessions on FPC4 PIC1: Total sessions: 0
show security flow session extensive node all
root@antbert> show security flow session extensive
node all
node0: -------------------------------------------------------------------------- Flow Sessions on FPC3 PIC1: Total sessions: 0 Flow Sessions on FPC4 PIC0: Session ID: 160000011, Status: Normal, State: Backup Flag: 0x10000042 Policy name: default-policy/2 Source NAT pool: Null, Application: junos-ftp/1 Maximum timeout: 1800, Current timeout: 13936 Session State: Valid Start time: 2021, Duration: 478 In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, Interface: reth1.0, Session token: 0x180, Flag: 0x0x2621 Route: 0x0, Gateway: 1.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 0, Bytes: 0 Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, Interface: reth2.0, Session token: 0x1c0, Flag: 0x0x2620 Route: 0x0, Gateway: 2.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 0, Bytes: 0 Total sessions: 1 Flow Sessions on FPC4 PIC1: Total sessions: 0 node1: -------------------------------------------------------------------------- Flow Sessions on FPC3 PIC1: Total sessions: 0 Flow Sessions on FPC4 PIC0: Session ID: 160000272, Status: Normal, State: Active Flag: 0x8000042 Policy name: default-policy/2 Source NAT pool: Null, Application: junos-ftp/1 Maximum timeout: 1800, Current timeout: 1750 Session State: Valid Start time: 2023, Duration: 479 In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, Interface: reth1.0, Session token: 0x180, Flag: 0x0x2621 Route: 0x84863c2, Gateway: 1.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 69, Bytes: 3024 Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, Interface: reth2.0, Session token: 0x1c0, Flag: 0x0x2620 Route: 0x84843c2, Gateway: 2.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 62, Bytes: 4002 Total sessions: 1 Flow Sessions on FPC4 PIC1: Total sessions: 0
show security flow session extensive node local
root@antbert> show security flow session extensive
node local
node0: -------------------------------------------------------------------------- Flow Sessions on FPC3 PIC1: Total sessions: 0 Flow Sessions on FPC4 PIC0: Session ID: 160000011, Status: Normal, State: Backup Flag: 0x10000042 Policy name: default-policy/2 Source NAT pool: Null, Application: junos-ftp/1 Maximum timeout: 1800, Current timeout: 13930 Session State: Valid Start time: 2021, Duration: 484 In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, Interface: reth1.0, Session token: 0x180, Flag: 0x0x2621 Route: 0x0, Gateway: 1.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 0, Bytes: 0 Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, Interface: reth2.0, Session token: 0x1c0, Flag: 0x0x2620 Route: 0x0, Gateway: 2.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 0, Bytes: 0 Total sessions: 1 Flow Sessions on FPC4 PIC1: Total sessions: 0
show security flow session extensive node primary
root@antbert> show security flow session extensive
node primary
node0: -------------------------------------------------------------------------- Flow Sessions on FPC3 PIC1: Total sessions: 0 Flow Sessions on FPC4 PIC0: Session ID: 160000011, Status: Normal, State: Backup Flag: 0x10000042 Policy name: default-policy/2 Source NAT pool: Null, Application: junos-ftp/1 Maximum timeout: 1800, Current timeout: 13924 Session State: Valid Start time: 2021, Duration: 490 In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, Interface: reth1.0, Session token: 0x180, Flag: 0x0x2621 Route: 0x0, Gateway: 1.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 0, Bytes: 0 Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, Interface: reth2.0, Session token: 0x1c0, Flag: 0x0x2620 Route: 0x0, Gateway: 2.0.0.100, Tunnel: 0 Port sequence: 0, FIN sequence: 0, FIN state: 0, Pkts: 0, Bytes: 0 Total sessions: 1 Flow Sessions on FPC4 PIC1: Total sessions: 0
Published: 2014-10-19
Supported Platforms
Related Documentation
- SRX Series
- show security flow session
- Additional Information
- Flow-Based Processing Feature Guide for Security Devices