[66044] in North American Network Operators' Group
Re: Trace and Ping with Record Option on Cisco Routers
daemon@ATHENA.MIT.EDU (Chris Griffin)
Mon Dec 22 18:08:08 2003
From: Chris Griffin <cgriffin@ufl.edu>
To: Danny.Andaluz@triaton-na.com
Cc: nanog@merit.edu
In-Reply-To: <4B20A7A7604CD4119D3C00508BC828560291C117@BBGEXC01>
Date: Mon, 22 Dec 2003 18:07:30 -0500
Errors-To: owner-nanog-outgoing@merit.edu
I believe source routing must be permitted in order for the record route
to function. Otherwise the packet is dropped.
Chris
On Mon, 2003-12-22 at 16:45, Danny.Andaluz@triaton-na.com wrote:
> Hey, Group.
>
> In my production network, I'm trying to do some extended traces and
> pings with the record option turned on to see what route my
> packets take going and returning. It's not working. If I do
> the extended traceroute or ping without the record option, it works
> fine. There is a firewall (PIX) a few hops in front of the
> destination I'm trying to record the route for. What part of ICMP is
> this that needs to be opened on the firewall to allow this to come
> back? First time I'm coming across this.
>
> Thanks,
> Danny
>
>