Hi,
I have a problem with ftp filtering. It's not permanent problem. I want to
trace the filter Discards and Forwards.
I'm using conlog to trace the output of filter debug. The console.log seems
to be corrupt (missing lines or changed sequence).
How can I get the whole trace?

I'm using the following fdon1.ncf:
unload conlog
load conlog max=1000
set filter debug = on
Set IP Forward Filter Debug=0
Set IP Discard Filter Debug=0
Set TCP Forward Filter Debug=1
Set TCP Discard Filter Debug=1
Set UDP Forward Filter Debug=0
Set UDP Discard Filter Debug=1
Set ICMP Forward Filter Debug=0
Set ICMP Discard Filter Debug=1
Set SKIP Forward Filter Debug=0
Set SKIP Discard Filter Debug=0
Set Others Forward Filter Debug=0
Set Others Discard Filter Debug=0
Set Route Filter Debug=0
Set Route Allow Filter Debug=0
Set Route Deny Filter Debug=0

a subsequence of console .log is

************************************************** **************************
**


Dynamic rule from "Exceptions" list
Protocol Type=(UDP)
Source Interface Type=(BOARD_NETWORK) Destination Interface
Type=(BOARD_NETWOR
K)
Source Address=(192.168.181.10) Destination Address=(192.168.181.9)
Source Interface Number=(6) Destination Interface Number=(6)
Source Port Range=(123-123) Destination Port
Range=(123-123)
Source TOS=(NTP) Destination TOS=(NTP)
Source Group Name=(None) Destination Group Name=(None)
Source Group ID=(0) Destination Group ID=(0)
Source Remote System ID=(None) Destination Remote System ID=(None)
Source Circuit=(0) Destination Circuit=(60349)

************************************************** **************************
**
OUTBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(SYN ACK)
Source Address=(192.168.181.17) Destination Address=(192.168.181.22)
Source Port=(21) Destination Port=(11000)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Interface=(7) Destination Interface=(7)
Source Circuit=(24512) Destination Circuit=(24512)
Source GroupID=(0) Destination GroupID=(0)


Forward filter rule from "Exceptions" list
Filter Protocol Type=(TCP)
Source Interface Type=(BOARD_NETWORK) Destination Interface
Type=(BOARD_NETWOR
K)
Source Address=(192.168.181.17) Destination Address=(192.168.181.22)
Source Interface Number=(7) Destination Interface Number=(7)
Source Port Range=(21-21) Destination Port
Range=(11000-11000)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Group Name=(None) Destination Group Name=(None)
Source Group ID=(0) Destination Group ID=(0)
Source Remote System ID=(None) Destination Remote System ID=(None)
Source Circuit=(0) Destination Circuit=(24512)

************************************************** **************************
**
K)
Source Address=(192.168.181.22) Destination Address=(192.168.181.17)
Source Interface Number=(7) Destination Interface Number=(7)
Source Port Range=(1-65535) Destination Port Range=(21-21)
Source TOS=(Dynamic) Destination TOS=(ftp-control)
Source Group Name=(None) Destination Group Name=(None)
Source Group ID=(0) Destination Group ID=(0)
Source Remote System ID=(None) Destination Remote System ID=(None)
Source Circuit=(0) Destination Circuit=(0)

************************************************** **************************
**



************************************************** **************************
**
OUTBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(SYN)
Source Address=(192.168.183.247) Destination
Address=(192.168.183.245)
Source Port=(31525) Destination Port=(21)
Source TOS=(Dynamic) Destination TOS=(ftp-control)
Source Interface=(3) Destination Interface=(3)
Source Circuit=(43638) Destination Circuit=(43638)
Source GroupID=(0) Destination GroupID=(0)

Filter for the above packet does not exist in filter database.
INBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(SYN ACK)
Source Address=(192.168.183.245) Destination
Address=(192.168.183.247)
Source Port=(21) Destination Port=(31525)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Interface=(3) Destination Interface=(3)
Source Circuit=(43638) Destination Circuit=(0)
Source GroupID=(0) Destination GroupID=(0)

Filter for the above packet does not exist in filter database.



************************************************** **************************
**
OUTBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(ACK)
Source Address=(192.168.183.247) Destination
Address=(192.168.183.245)
Source Port=(31525) Destination Port=(21)
Source TOS=(Dynamic) Destination TOS=(ftp-control)
Source Interface=(3) Destination Interface=(3)
Source Circuit=(43638) Destination Circuit=(43638)
Source GroupID=(0) Destination GroupID=(0)

Filter for the above packet does not exist in filter database.
OUTBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(PSH ACK)
Source Address=(192.168.181.17) Destination Address=(192.168.181.22)
Source Port=(21) Destination Port=(11000)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Interface=(7) Destination Interface=(7)
Source Circuit=(24512) Destination Circuit=(24512)
Source GroupID=(0) Destination GroupID=(0)


Forward filter rule from "Exceptions" list
Filter Protocol Type=(TCP)
Source Interface Type=(BOARD_NETWORK) Destination Interface
Type=(BOARD_NETWOR
K)
Source Address=(192.168.181.17) Destination Address=(192.168.181.22)
Source Interface Number=(7) Destination Interface Number=(7)
Source Port Range=(21-21) Destination Port
Range=(11000-11000)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Group Name=(None) Destination Group Name=(None)
Source Group ID=(0) Destination Group ID=(0)
Source Remote System ID=(None) Destination Remote System ID=(None)
Source Circuit=(0) Destination Circuit=(24512)

************************************************** **************************
**
K)
Source Address=(192.168.181.22) Destination Address=(192.168.181.17)
Source Interface Number=(7) Destination Interface Number=(7)
Source Port Range=(1-65535) Destination Port Range=(21-21)
Source TOS=(Dynamic) Destination TOS=(ftp-control)
Source Group Name=(None) Destination Group Name=(None)
Source Group ID=(0) Destination Group ID=(0)
Source Remote System ID=(None) Destination Remote System ID=(None)
Source Circuit=(0) Destination Circuit=(0)

************************************************** **************************
**



************************************************** **************************
**
OUTBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(PSH ACK)
Source Address=(192.168.183.247) Destination
Address=(192.168.183.245)
Source Port=(31525) Destination Port=(21)
Source TOS=(Dynamic) Destination TOS=(ftp-control)
Source Interface=(3) Destination Interface=(3)
Source Circuit=(43638) Destination Circuit=(43638)
Source GroupID=(0) Destination GroupID=(0)

Filter for the above packet does not exist in filter database.
OUTBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(PSH ACK)
Source Address=(192.168.181.17) Destination Address=(192.168.181.22)
Source Port=(21) Destination Port=(11000)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Interface=(7) Destination Interface=(7)
Source Circuit=(24512) Destination Circuit=(24512)
Source GroupID=(0) Destination GroupID=(0)


Forward filter rule from "Exceptions" list
Filter Protocol Type=(TCP)
Source Interface Type=(BOARD_NETWORK) Destination Interface
Type=(BOARD_NETWOR
K)
Source Address=(192.168.181.17) Destination Address=(192.168.181.22)
Source Interface Number=(7) Destination Interface Number=(7)
Source Port Range=(21-21) Destination Port
Range=(11000-11000)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Group Name=(None) Destination Group Name=(None)
Source Group ID=(0) Destination Group ID=(0)
Source Remote System ID=(None) Destination Remote System ID=(None)
Source Circuit=(0) Destination Circuit=(24512)

************************************************** **************************
**
K)
Source Address=(192.168.181.22) Destination Address=(192.168.181.17)
Source Interface Number=(7) Destination Interface Number=(7)
Source Port Range=(1-65535) Destination Port Range=(21-21)
Source TOS=(Dynamic) Destination TOS=(ftp-control)
Source Group Name=(None) Destination Group Name=(None)
Source Group ID=(0) Destination Group ID=(0)
Source Remote System ID=(None) Destination Remote System ID=(None)
Source Circuit=(0) Destination Circuit=(0)

************************************************** **************************
**



************************************************** **************************
**
OUTBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(PSH ACK)
Source Address=(192.168.183.247) Destination
Address=(192.168.183.245)
Source Port=(31525) Destination Port=(21)
Source TOS=(Dynamic) Destination TOS=(ftp-control)
Source Interface=(3) Destination Interface=(3)
Source Circuit=(43638) Destination Circuit=(43638)
Source GroupID=(0) Destination GroupID=(0)

Filter for the above packet does not exist in filter database.
OUTBOUND packet to "Forward"
Protocol Type=(TCP) Protocol Flag=(PSH ACK)
Source Address=(192.168.181.17) Destination Address=(192.168.181.22)
Source Port=(21) Destination Port=(11000)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Interface=(7) Destination Interface=(7)
Source Circuit=(24512) Destination Circuit=(24512)
Source GroupID=(0) Destination GroupID=(0)


Forward filter rule from "Exceptions" list
Filter Protocol Type=(TCP)
Source Interface Type=(BOARD_NETWORK) Destination Interface
Type=(BOARD_NETWOR
K)
Source Address=(192.168.181.17) Destination Address=(192.168.181.22)
Source Interface Number=(7) Destination Interface Number=(7)
Source Port Range=(21-21) Destination Port
Range=(11000-11000)
Source TOS=(ftp-control) Destination TOS=(Dynamic)
Source Group Name=(None) Destination Group Name=(None)
Source Group ID=(0) Destination Group ID=(0)
Source Remote System ID=(None) Destination Remote System ID=(None)
Source Circuit=(0) Destination Circuit=(24512)

Thanks, Klaus