<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to see geneve encapsualted header information in packet capture in VM-Series in the Public Cloud</title>
    <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/507479#M1602</link>
    <description>&lt;P&gt;you can enable capturing the GENEVE encapsulated traffic by running the following command in CLI:&lt;/P&gt;&lt;P&gt;&lt;EM&gt;debug dataplane packet-diag set capture encapsulation yes&lt;/EM&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 30 Jun 2022 17:29:36 GMT</pubDate>
    <dc:creator>bartpmika</dc:creator>
    <dc:date>2022-06-30T17:29:36Z</dc:date>
    <item>
      <title>How to see geneve encapsualted header information in packet capture</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/482441#M1528</link>
      <description>&lt;P&gt;How to see geneve encapsualted header information in packet capture&lt;/P&gt;</description>
      <pubDate>Mon, 25 Apr 2022 20:47:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/482441#M1528</guid>
      <dc:creator>Sephora_IT</dc:creator>
      <dc:date>2022-04-25T20:47:12Z</dc:date>
    </item>
    <item>
      <title>Re: How to see geneve encapsualted header information in packet capture</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/484035#M1532</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/22934"&gt;@Sephora_IT&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;from your post it is not clear how this is related to Palo Alto, however Wireshark is supporting GENEVE ever since version 2.0.0. The dissector is using default port UDP 6081. If you expand packet details, you should see details of encapsulated frame/packet.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kind Regards&lt;/P&gt;&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Sun, 01 May 2022 12:56:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/484035#M1532</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2022-05-01T12:56:12Z</dc:date>
    </item>
    <item>
      <title>Re: How to see geneve encapsualted header information in packet capture</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/504165#M1587</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/192693"&gt;@PavelK&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am guessing &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/22934"&gt;@Sephora_IT&lt;/a&gt;&amp;nbsp; question is related to the GENEVE encapsulation between GWLBe (endpoint) in AWS and VM-Series firewall.&lt;/P&gt;
&lt;P&gt;Unfortunately I don't believe it is possible to capture GENEVE encapsulation with packet capture on the firewall...Not sure if enabling "pre-parse match" could help, but it should be used only with low volume of traffic&lt;/P&gt;</description>
      <pubDate>Thu, 16 Jun 2022 11:45:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/504165#M1587</guid>
      <dc:creator>aleksandar.astardzhiev</dc:creator>
      <dc:date>2022-06-16T11:45:06Z</dc:date>
    </item>
    <item>
      <title>Re: How to see geneve encapsualted header information in packet capture</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/504457#M1596</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/70130"&gt;@aleksandar.astardzhiev&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I see. Thank you for input.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kind Regards&lt;/P&gt;&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jun 2022 09:55:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/504457#M1596</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2022-06-17T09:55:53Z</dc:date>
    </item>
    <item>
      <title>Re: How to see geneve encapsualted header information in packet capture</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/507479#M1602</link>
      <description>&lt;P&gt;you can enable capturing the GENEVE encapsulated traffic by running the following command in CLI:&lt;/P&gt;&lt;P&gt;&lt;EM&gt;debug dataplane packet-diag set capture encapsulation yes&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2022 17:29:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/507479#M1602</guid>
      <dc:creator>bartpmika</dc:creator>
      <dc:date>2022-06-30T17:29:36Z</dc:date>
    </item>
    <item>
      <title>Re: How to see geneve encapsualted header information in packet capture</title>
      <link>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/535285#M1847</link>
      <description>&lt;P&gt;&lt;FONT size="2"&gt;Thanks for the debug command, after enabling I can see the udp/6081 encapsulation in my captures.&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT size="2"&gt;Dan&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 03:36:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/vm-series-in-the-public-cloud/how-to-see-geneve-encapsualted-header-information-in-packet/m-p/535285#M1847</guid>
      <dc:creator>danedeen</dc:creator>
      <dc:date>2023-03-22T03:36:22Z</dc:date>
    </item>
  </channel>
</rss>

