show ssl proxy sessioninfo |
The set sslLogging <enable/disable> <verbose/info/error> <number of packets> <source IP> <destination IP> command is used to enable or disable SSL logging.
Parameter | Description |
|---|---|
| To enable or disable the session logging. |
| Three different types of logging mode are supported. |
| Number of packets to dump in |
| Source IP address of session logging. |
| Destination IP address of session logging. |
Tip
If the destination IP address is set to
0.0.0.0, session logging will be enabled/disabled across all destinations.After running traffic run between source IP and destination IP, execute
show ssl proxy sessioninfo. For more information, see show ssl proxy sessioninfo.
Sample output:
IntruDbg#> set sslLogging enable verbose 4 1.1.1.9 0.0.0.0
*********************************************************************
WARNING enabling this command can slow down sensor performance
Each sibyte will dump 4 ctrl packets
Please monitor sensor.dbg for logs
Command executed sucessfully
*********************************************************************Tip
Trellix recommends disabling the SSL session logging after the troubleshooting process.
Applicable to:
NS9600 (standalone and stack), NS9500 (standalone), NS7600, NS7500, NS3600, VM600-SSL, VM600-VSS-SSL, and VM5000-SSL Sensors