Follow

How To Take A Traceroute

What Happened?

Customers or the SOC require a traceroute to be collected for troubleshooting or information gathering purposes.

 

Environment

  • Silverline WAF

  • Silverline DDoS

 

Resolution/Answer

To take a Forward Traceroute (Client -> Silverline):

For Proxy Services:

      1. Run a traceroute from a client/user to your Silverline Proxy IP Address, Assigned DNS Name, or FQDN pointing towards your proxy.
        From Windows:
        tracert 107.x.x.x
        OR
        tracert X.X.gslb.f5silverline.com
        OR
        tracert example.com
        From macOS/Linux:
        traceroute 107.x.x.x
        OR
        traceroute X.X.gslb.f5silverline.com
        OR
        traceroute example.com
      2. Provide the output of the traceroute to the Silverline SOC

For Routed Services:

      1. Retrieve the IP for your allocated F5 Tunnel Endpoint from your router or in the Portal under Config > Routed Configuration > GRE Tunnel Management > Deployed
      2. Run a traceroute from client-side to the IP for your allocated F5 Tunnel Endpoint
        traceroute 107.x.x.x
      3. Provide the output of the traceroute to the Silverline SOC.

To take a Reverse Traceroute (Origin Server or Customer premise equipment (CPE) -> Silverline SNAT):

For Proxy Services:

      1. Retrieve an IP address from Silverline's SNAT Ranges for one of your enabled Scrubbing Centers/Regions. Please See What are the Silverline Subnets (SNAT) / IP Address ranges? for a complete list of our SNAT Ranges and instructions for filtering for a specific region.
      2.  Run a traceroute to the SNAT IP from your configured proxy backend or edge firewall
        From Windows:
        tracert 107.x.x.x
        From macOS/Linux:
        traceroute 107.x.x.x
      3. Provide the output of the traceroute to the Silverline SOC

For Routed Services:

      1. Retrieve the IP for your allocated F5 Tunnel Endpoint from your router or in the Portal under Config > Routed Configuration > GRE Tunnel Management > Deployed
      2. Run a traceroute from CPE to the specific Silverline F5 Tunnel Endpoint IP
        traceroute 107.x.x.x
      3. Provide the output of the traceroute to the Silverline SOC.

Additional Information

ROUTED NOTE: When taking traceroutes from routing devices, additional flags may be necessary to get a successful trace. If you are unsure, please consult the team responsible for defining your router configurations.

 

Related Content

Was this article helpful?
0 out of 0 found this helpful
Have more questions? Submit a request