问题描述在下面俩个地址中:
https://zhiliao.h3c.com/questions/dispcont/115764
https://zhiliao.h3c.com/questions/dispcont/115846
本篇接上俩篇继续观察现象,以及交代下一步操作
这次我开启了security-policy ip 也就是安全策略的debugging 进行观察,策略是通的,icmp包放行了,但就是ping不通
ping 112.50.255.13 Ping 112.50.255.13 (112.50.255.13): 56 data bytes, press CTRL_C to break
*Feb 24 18:22:35:720 2021 H3C_F1070 FILTER/7/PACKET: -COntext=1; The packet is permitted. Src-ZOne=Local, Dst-ZOne=Untrust;If-In=InLoopBack0(132), If-Out=Route-Aggregation1(139); Packet Info:Src-IP=112.50.255.14, Dst-IP=112.50.255.13, VPN-Instance=, Src-MacAddr=0000-0000-0000,Src-Port=8, Dst-Port=0, Protocol=ICMP(1), Application=ICMP(22742), SecurityPolicy=trust/local->untrust, Rule-ID=5.
Request time out
Request time out
Request time out
Request time out
Request time out
--- Ping statistics for 112.50.255.13 --- 5 packet(s) transmitted, 0 packet(s) received, 100.0% packet loss <H3C_F1070>%Feb 24 18:22:46:725 2021 H3C_F1070 PING/6/PING_STATISTICS: -COntext=1; Ping statistics for 112.50.255.13: 5 packet(s) transmitted, 0 packet(s) received, 100.0% packet loss.
(0)
最佳答案
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论