trace_connection
Trace a conversation across every log source on its path and identify where connectivity stopped. Correlates Cisco ISE, IOS ACLs, Palo Alto sessions, and VNet flow logs for why A cannot reach B.
Instructions
Trace one conversation across every log source on its path and report where it stopped. Use this for 'why can't A reach B' questions. Correlates Cisco ISE identity, on-premises Cisco IOS ACLs, hub PaloAlto firewall sessions and VNet flow logs at both NICs.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| dst_ip | Yes | ||
| src_ip | Yes | ||
| dst_port | No | ||
| since_minutes | No |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| result | Yes |