show policy service-path—Determine the next-hop information for an IP packet that a vEdge router sends out a service-side interface (on vEdge routers only). You identify the IP packet by specifying fields in the IP header. You can use this command when using application-aware routing, to determine that path taken by the packets associated with a DPI application.
show policy service-path vpn-id vpn-id interface interface-name source-ip ip-address dest-ip ip-address protocol number source-port port-number dest-port port-number [all | app application-name | dscp value]
- All Possible Paths
Display all possible paths for a packet.
- Destination IP Address and Port Number
- dest-ip ip-address
IP address and port number of the remote end of the IPsec tunnel.
- DPI Application
- app application-name
Display the packets associated with the specified DPI application.
- DSCP Value
- dscp value
DSCP value being used on the IPsec tunnel.
Range: 0 through 63
- interface interface-name
Name of the local interface being used for the IPsec tunnel.
- protocol number
Number of the protocol being used on the IPsec tunnel.
- Source IP Address and Port Number
- source-ip ip-address
IP address and port number of the local end of the IPsec tunnel.
- vpn-id vpn-id
Identifier of the service VPN.
The output fields are self-explanatory.
vEdge# show policy service-path vpn 0 interface ge0/0 source-ip 18.104.22.168 dest-ip 22.214.171.124 protocol 1 source-port 1 dest-port 1 all Number of possible next hops: 1 Next Hop: Svc_GRE Source: 10.1.15.15 Destination: 10.1.16.16
Command introduced in Viptela Software Release 15.1.
all and app options added in Release 15.3.