Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

show security flow session extensive node

Syntax

show security flow session extensive node (node-id | all | local | primary)

Release Information

Command introduced in Release 8.5 of Junos OS; node options added in Release 9.0 of Junos OS. Filter options added in Release 10.2 of Junos OS.

Description

Display information about all currently active security sessions on the device for the specified node options in extensive mode.

Options

node—(Optional) For chassis cluster configurations, display session information on a specific node.

  • node-id —Identification number of the node. It can be 0 or 1.
  • all—Display information about all nodes.
  • local—Display information about the local node.
  • primary—Display information about the primary node.

Required Privilege Level

view

List of Sample Output

show security flow session extensive node 0
show security flow session extensive node 1
show security flow session extensive node all
show security flow session extensive node local
show security flow session extensive node primary

Output Fields

Table 1 lists the output fields for the show security flow session extensive node command. Output fields are listed in the approximate order in which they appear.

Table 1: show security flow session extensive node Output Fields

Field Name

Field Description

Session ID

Number that identifies the session. You can use this ID to get additional information about the session.

Status

Session status.

State

Session state.

Flag

Internal flag depicting the state of the session, used for debugging purposes.

Policy name

Policy that permitted the traffic.

Source NAT pool

The name of the source pool where NAT is used.

Maximum timeout

Maximum session timeout.

Current timeout

Remaining time for the session unless traffic exists in the session.

Start time

Time when the session was created, offset from the system start time.

Duration

Length of time for which the session is active.

In

Incoming flow (source and destination IP addresses, application protocol, interface, session token, flag, route, gateway, tunnel, port sequence, FIN sequence, FIN state, packets and bytes).

Out

Reverse flow (source and destination IP addresses, application protocol, interface, session token, flag, route, gateway, tunnel, port sequence, FIN sequence, FIN state, packets and bytes).

Total sessions

Total number of sessions.

Sample Output

show security flow session extensive node 0

root@antbert> show security flow session extensive node 0
node0:
--------------------------------------------------------------------------

Flow Sessions on FPC3 PIC1:
Total sessions: 0

Flow Sessions on FPC4 PIC0:

Session ID: 160000011, Status: Normal, State: Backup
Flag: 0x10000042
Policy name: default-policy/2
Source NAT pool: Null, Application: junos-ftp/1
Maximum timeout: 1800, Current timeout: 13946
Session State: Valid
Start time: 2021, Duration: 469
   In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, 
    Interface: reth1.0, 
    Session token: 0x180, Flag: 0x0x2621
    Route: 0x0, Gateway: 1.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 0, Bytes: 0
   Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, 
    Interface: reth2.0,                 
    Session token: 0x1c0, Flag: 0x0x2620
    Route: 0x0, Gateway: 2.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 0, Bytes: 0
Total sessions: 1

Flow Sessions on FPC4 PIC1:
Total sessions: 0

show security flow session extensive node 1

root@antbert> show security flow session extensive node 1
node1:
--------------------------------------------------------------------------

Flow Sessions on FPC3 PIC1:
Total sessions: 0

Flow Sessions on FPC4 PIC0:

Session ID: 160000272, Status: Normal, State: Active
Flag: 0x8000042
Policy name: default-policy/2
Source NAT pool: Null, Application: junos-ftp/1
Maximum timeout: 1800, Current timeout: 1756
Session State: Valid
Start time: 2023, Duration: 473
   In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, 
    Interface: reth1.0, 
    Session token: 0x180, Flag: 0x0x2621
    Route: 0x84863c2, Gateway: 1.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 69, Bytes: 3024
   Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, 
    Interface: reth2.0,                 
    Session token: 0x1c0, Flag: 0x0x2620
    Route: 0x84843c2, Gateway: 2.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 62, Bytes: 4002
Total sessions: 1

Flow Sessions on FPC4 PIC1:
Total sessions: 0

show security flow session extensive node all

root@antbert> show security flow session extensive node all
node0:
--------------------------------------------------------------------------

Flow Sessions on FPC3 PIC1:
Total sessions: 0

Flow Sessions on FPC4 PIC0:

Session ID: 160000011, Status: Normal, State: Backup
Flag: 0x10000042
Policy name: default-policy/2
Source NAT pool: Null, Application: junos-ftp/1
Maximum timeout: 1800, Current timeout: 13936
Session State: Valid
Start time: 2021, Duration: 478
   In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, 
    Interface: reth1.0, 
    Session token: 0x180, Flag: 0x0x2621
    Route: 0x0, Gateway: 1.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 0, Bytes: 0
   Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, 
    Interface: reth2.0,                 
    Session token: 0x1c0, Flag: 0x0x2620
    Route: 0x0, Gateway: 2.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 0, Bytes: 0
Total sessions: 1

Flow Sessions on FPC4 PIC1:
Total sessions: 0

node1:
--------------------------------------------------------------------------

Flow Sessions on FPC3 PIC1:
Total sessions: 0

Flow Sessions on FPC4 PIC0:

Session ID: 160000272, Status: Normal, State: Active
Flag: 0x8000042
Policy name: default-policy/2
Source NAT pool: Null, Application: junos-ftp/1
Maximum timeout: 1800, Current timeout: 1750
Session State: Valid
Start time: 2023, Duration: 479
   In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, 
    Interface: reth1.0, 
    Session token: 0x180, Flag: 0x0x2621
    Route: 0x84863c2, Gateway: 1.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 69, Bytes: 3024
   Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, 
    Interface: reth2.0, 
    Session token: 0x1c0, Flag: 0x0x2620
    Route: 0x84843c2, Gateway: 2.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 62, Bytes: 4002
Total sessions: 1

Flow Sessions on FPC4 PIC1:
Total sessions: 0

show security flow session extensive node local

root@antbert> show security flow session extensive node local
node0:
--------------------------------------------------------------------------

Flow Sessions on FPC3 PIC1:
Total sessions: 0

Flow Sessions on FPC4 PIC0:

Session ID: 160000011, Status: Normal, State: Backup
Flag: 0x10000042
Policy name: default-policy/2
Source NAT pool: Null, Application: junos-ftp/1
Maximum timeout: 1800, Current timeout: 13930
Session State: Valid
Start time: 2021, Duration: 484
   In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, 
    Interface: reth1.0, 
    Session token: 0x180, Flag: 0x0x2621
    Route: 0x0, Gateway: 1.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 0, Bytes: 0
   Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, 
    Interface: reth2.0,                 
    Session token: 0x1c0, Flag: 0x0x2620
    Route: 0x0, Gateway: 2.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 0, Bytes: 0
Total sessions: 1

Flow Sessions on FPC4 PIC1:
Total sessions: 0

show security flow session extensive node primary

root@antbert> show security flow session extensive node primary
node0:
--------------------------------------------------------------------------

Flow Sessions on FPC3 PIC1:
Total sessions: 0

Flow Sessions on FPC4 PIC0:

Session ID: 160000011, Status: Normal, State: Backup
Flag: 0x10000042
Policy name: default-policy/2
Source NAT pool: Null, Application: junos-ftp/1
Maximum timeout: 1800, Current timeout: 13924
Session State: Valid
Start time: 2021, Duration: 490
   In: 1.0.0.100/53036 --> 2.0.0.100/21;tcp, 
    Interface: reth1.0, 
    Session token: 0x180, Flag: 0x0x2621
    Route: 0x0, Gateway: 1.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 0, Bytes: 0
   Out: 2.0.0.100/21 --> 1.0.0.100/53036;tcp, 
    Interface: reth2.0,                 
    Session token: 0x1c0, Flag: 0x0x2620
    Route: 0x0, Gateway: 2.0.0.100, Tunnel: 0
    Port sequence: 0, FIN sequence: 0, 
    FIN state: 0, 
    Pkts: 0, Bytes: 0
Total sessions: 1

Flow Sessions on FPC4 PIC1:
Total sessions: 0

Published: 2014-10-19

Supported Platforms

Published: 2014-10-19