This article discusses the information you should collect when troubleshooting issues related to the Application Firewall feature.
This article is intended to provide users with the commands/outputs from the SRX firewall that will help in troubleshooting issues with the following scenarios:
Collect the following information from the firewall:
request services application-identification download
request services application-identification download status
request services application-identification install
request services application-identification install status
show services application-identification version
show services application-identification application detail <name of the signature that fails in compilation>
clear services application-identification application-system-cache
show services application-identification application-system-cache
set security traceoptions flag all set security traceoptions file <name>
show services application-identification status show services application-identification statistics show services application-identification counters show security application-firewall rule-set all show security flow session application-firewall application-firewall-rule-set <app fw rule set name >