show security flow sessions
will give you the active sessions if you can get on during the event. These include data on the packet flow for the sessions.
you can also restrict this using source-prefix if you want to narrow in on suspected targets.
show security flow sessions
will give you the active sessions if you can get on during the event. These include data on the packet flow for the sessions.
you can also restrict this using source-prefix if you want to narrow in on suspected targets.