Every subscriber, live, from the forwarding plane.
Open any session and see what that subscriber is actually getting, right now: speed against their plan, whether IPv6 is working, how close they are to running out of CGNAT ports, the quality of their connection, what is being dropped and why, and whether protection has flagged them. It is read straight from bngxdpd, the XDP/eBPF forwarding plane, and refreshed every 1 to 5 seconds.
Session info · user-1042 · ppp374 · gw-north-01
LIVE · 1 s
user user-1042iface ppp374addr 100.64.0.12connected for 45 m
Download
12.4Mbit/s
Upload
1.8Mbit/s
Packets / s
1,960
Plan rate
300/ 300
Mbit/s down / up. Live use is 4% of plan.
IPv4 and IPv6
IPv6 share 49%
Download
51 / 49
Upload
52 / 48
IPv4IPv660-second history while the window is open
IPv6 in use. The subscriber's devices are using IPv6 right now.
This window is a faithful mock with an anonymised example session. Click a tab, or press 1 to 6 or g anywhere on this page, to open that view in the tour below.
1–5 srefresh, read live from the forwarding plane, not a cached copy
v4 | v6split live, with a plain status line for IPv6
Reversiblerate changes are previewed, time-limited and audited
It is the same picture an engineer gets from bngxdpctl show <interface> --watch on the gateway, but nobody needs a shell, and the desk sees it in plain words. One window, one subscriber, every question a support call raises.
01 / THE TOURSeven views. Press a key, see a different answer.
Each tab below is a mock of the real view, with the same layout and labels. The numbered pins match the notes beside it: hover or focus a note to light up what it describes.
Session info · user-1042 · ppp374
LIVE
Download 1
12.4Mbit/s
Upload
1.8Mbit/s
Plan down / up
300/ 300
Mbit/s
IPv4 and IPv6 2
IPv6 share 49%
Download
51 / 49
Upload
52 / 48
IPv4 2.1 GBIPv6 2.0 GBsince session start
IPv6 in use. The subscriber's devices are using IPv6 right now.3
Try another session:
NAT type
Full-Cone · EIF
Public IP
203.0.113.129
Blocks in use
3 of 16
Ports in use
202 of 1,152
Port map 1024–65535 2
Block 1 of 3 1
203.0.113.129 ports 1280–1407 · 128
TCP122 / 128
UDP24 / 128
ICMP0 / 128
Block 2 of 3 3
203.0.113.129 ports 20608–20735 · 128
TCP38 / 128
UDP9 / 128
ICMP1 / 128
Block 3 of 3
203.0.113.129 ports 47232–47359 · 128
TCP6 / 128
UDP2 / 128
ICMP0 / 128
New connections / s 1
14
Open translations
202
NAT type
Full-Cone · EIF
Protocol
Private port
Public address
Remote end 2
Packets down
Idle 3
TCP
50412
203.0.113.129:1283
any
18,204
0 s
UDP
41877
203.0.113.129:1301
any
9,511
1 s
TCP
50398
203.0.113.129:1288
any
2,047
3 s
UDP
60122
203.0.113.129:20611
any
640
12 s
TCP
49980
203.0.113.129:1395
any
112
27 s
High jitter1
Round-trip time
47 ms
Jitter 2
57 ms
Packet loss
0.08 %
Retransmits
312
DNS queries / answers 3
1,204 / 1,198
QUIC flows
9
Reason 1
Packets
Note
Rate limiter
0
Connection limit
0
New-connection rate (SYN)
0
UDP packets per second limit
0
limit 20,000 packets/s
Inactive session: IPv6 blocked
0
Upload protection
0
Firewall 2
not measured per subscriber
DDoS protection
not measured per subscriber
0 dropped for this session. Each zero above is a counter the gateway keeps for this subscriber and has read.3
Upload protection 1
Score 12 / 100
Quarantine
Not quarantined
Threat tier
0
Detectors 3
Port scanning: none Outgoing flood: none
Upload limits by category 2
Limit
Current
Dropped
New TCP connections / s
200
14
0
UDP packets / s
20,000
1,140
0
ICMP packets / s
50
0
0
DNS queries / s
100
3
0
1
02 / ON THE PHONEFour calls the desk takes every week, answered in one look
Session Info was built around the questions customers actually ask. Each one used to mean a shell on the gateway or an escalation. Now it is a tab.
Support call · IPv6
My IPv6 doesn't work.
IPv6 share0%
IPv6 addressnone
Delegated prefixnone
No IPv6 address on this session.
One look answers it. No address and no delegated prefix means the session never got IPv6, so look at provisioning or the router's IPv6 setting. If the card says "IPv6 in use" at 49%, IPv6 works and the problem is somewhere else.
Support call · CGNAT
Some sites won't load. New connections just hang.
Block 1 of 3 · TCP122 / 128
New connections / s14
Port pressure, in red. The CGNAT card shows a block nearly out of TCP ports before anyone guesses at DNS or the browser. The Flows tab then shows which mappings hold the ports and how fast new ones are opened.
Support call · Speed
I pay for 300 and it's slow.
Live download12.4 Mbit/s
Plan300 / 300
Experience70 · High jitter
RTT / jitter47 / 57 ms
Speed against plan, and how it feels. The subscriber is far below the cap, so the plan is not holding them back. Jitter is what they feel. The conversation moves from "run a speed test" to the real cause.
NOC · Abuse
Is this subscriber attacking someone?
Threat tier0
Port scanningnone
Outgoing floodnone
Upload protection drops0
Evidence before action. Protection shows the score, tier and detectors; Drops shows what was actually cut, and why. Disconnect the source of an outgoing flood, and leave a heavy but legitimate uploader alone.
03 / SAFE ACTIONSChange a subscriber's rate, and know it will change back
Admins can act from the same window: change the rate temporarily, restore the original or disconnect. Every action is tied to that exact session, and a temporary change can never be forgotten.
STEP 1
Preview
See exactly what will change, from what to what, before anything is applied.
STEP 2
Apply, time-limited
From 15 minutes up to 24 hours. Never open-ended.
STEP 3
Bound to the session
If the subscriber re-dials, the change is refused. It cannot land on the wrong session.
STEP 4
Ends by itself
The original rate comes back when time runs out, or press Restore at any point.
STEP 5
Audited
Who changed it, when, and why: on record, every time.
Rate change · user-1042 · ppp374
Pick a rate, a duration and a reason, then press Preview.This is a simulation on the page. Nothing is sent anywhere.
04 / HONEST READINGSReal readings. Never a fake zero.
A screen that prints 0 when it means "I did not measure this" will eventually be used to close a ticket that should have stayed open. Session Info says what it knows, and says plainly what it does not.
What many tools show
Just opened the window0.0 Mbit/s
Gateway-wide firewall counter0 drops
No IPv6 on the sessionIPv6: 0 B
Quality not sampled yetloss 0 %
What Session Info shows
Just opened the windowcollecting…
Gateway-wide firewall counternot measured per subscriber
No IPv6 on the sessionNo IPv6 address on this session
Quality not sampled yetnot measured yet
Download
collecting…
The gateway keeps a 60-second history only while this window is open.
"collecting…" until data exists
When you open a session, the tile says collecting… until the first real samples arrive, and only then shows a number and a sparkline. A blank screen and a confident zero look the same to a tired agent at the end of a shift. "collecting…" does not.
Unknown is never shown as healthy. If the gateway cannot be reached, the window says so and shows nothing else. If a counter only exists for the whole gateway, it says "not measured per subscriber". If the session has no IPv6 address, it says that, rather than showing an empty IPv6 bar.
See your own subscribers, live.
We will open Session Info on a gateway of yours and walk through the calls your desk takes most: IPv6, port pressure, speed and abuse. Bring a hard case.
About the examples. The windows on this page are interactive mocks that reproduce the layout and labels of NOC2 Session Info. The example session is anonymised: the username, interface, gateway name and addresses are placeholders, and all addresses come from documentation and shared address ranges. Live figures on this page are simulated in your browser around the example session's readings. Rate changes require an administrator role in NOC2.