Hostname is NZRCWLG System Time:Thu Feb 27 11:55:39 NZT 2014 No crash information available. Reboot Cause: User reboot. show syslocation Location not configured show version Aruba Operating System Software. ArubaOS (MODEL: Aruba650), Version 6.1.3.11 Website: http://www.arubanetworks.com Copyright (c) 2002-2013, Aruba Networks, Inc. Compiled on 2013-12-05 at 22:31:27 PST (build 41171) by p4build ROM: System Bootstrap, Version CPBoot 1.1.0.0 (build 28907) Built: 2011-06-24 13:46:56 Built by: p4build@re_client_28907 Switch uptime is 36 minutes 3 seconds Reboot Cause: User reboot. Supervisor Card Processor XLS 408 (revision B1) with 888M bytes of memory. 32K bytes of non-volatile configuration memory. 256M bytes of Supervisor Card System flash (model=NAND 256MB). show boot Config File: default.cfg Boot Partition: PARTITION 1 show interface mgmt command is not supported on this platform show interface vlan 1 VLAN1 is up line protocol is up Hardware is CPU Interface, Interface address is 00:1A:1E:21:DE:F0 (bia 00:1A:1E:21:DE:F0) Description: 802.1Q VLAN Internet address is 192.168.0.248 255.255.255.0 IPv6 is enabled, link-local address is fe80::1a:1e00:121:def0 IPv6 Router Advertisements are disabled Routing interface is enable, Forwarding mode is enable Directed broadcast is disabled, BCMC Optimization disabled ProxyARP disabled Suppress ARP enable Encapsulation 802, loopback not set MTU 1500 bytes Last clearing of "show interface" counters 0 day 0 hr 36 min 3 sec link status last changed 0 day 0 hr 33 min 13 sec Proxy Arp is disabled for the Interface show roleinfo switchrole:master show image version ---------------------------------- Partition : 0:0 (/dev/mtdblock9) Software Version : ArubaOS 6.1.3.11 (Digitally Signed - Production Build) Build number : 41171 Label : 41171 Built on : Thu Dec 5 22:31:27 PST 2013 ---------------------------------- Partition : 0:1 (/dev/mtdblock10) **Default boot** Software Version : ArubaOS 6.1.3.11 (Digitally Signed - Production Build) Build number : 41171 Label : 41171 Built on : Thu Dec 5 22:31:27 PST 2013 show country Country:NZ Model:Aruba650 Hardware:Unrestricted show country trail 2012-07-26_10-52-44: Upgrade: domain US Thu Jul 26 13:02:48 2012: Setting hardware to unrestricted domain show switches All Switches ------------ IP Address Name Location Type Version Status Configuration State Config Sync Time (sec) Config ID ---------- ---- -------- ---- ------- ------ ------------------- ---------------------- --------- 192.168.0.248 NZRCWLG Building1.floor1 master 6.1.3.11_41171 up UPDATE SUCCESSFUL 0 12 show switches remote-node All Remote-Nodes ---------------- IP Address MAC Hostname Version Status Profile Configuration State RN Config ID Uptime ---------- --- -------- ------- ------ ------- ------------------- ------------ ------ 192.168.0.248 00:1a:1e:21:de:f0 NZRCWLG 6.1.3.11_41171 up N/A UPDATE SUCCESSFUL 5 0d 0h 36m show master-local stats Missed -> HB Req from Local(s) ------------------------------ IP Address HB Req HB Resp Cfg Terminate Peer Reset Total Missed Last Sent Missed Last Synced/Last Missed ---------- ------ ------- ------------- ---------- ------------ ---------------- ----------------------- show audit-trail Feb 27 11:22:40 cli[1465]: SYSTEM: timezone clock changed from Thu Feb 27 11:22:40 NZT 2014 to Thu Feb 27 11:22:40 NZT 2014 Feb 27 11:25:42 webui[1458]: USER: admin has logged in from 192.168.0.50. Feb 27 11:27:55 webui[1458]: USER: admin has logged in from 192.168.0.50. Feb 27 11:54:19 webui[1458]: copy flash: "aruba" flash: "aruba27thfeb" show keys all Licensed Features ----------------- Feature Status ------- ------ Access Points 32 Remote Access Points 32 MUXes Unlimited External Servers Unlimited xSec Users Unlimited CIM Users Unlimited Ortronics Access Points 0 Contexts Unlimited Outdoor Mesh Access Points 64 3rd-party Remote APs Unlimited RF Protect 0 Voice Service Module Unlimited VPN Server Module 512 xSec Module 0 Indoor Mesh Access Points 64 120abg Upgrade 0 121abg Upgrade 0 124abg Upgrade 0 125abg Upgrade 0 Application-Acceleration Remote APs Unlimited Next Generation Policy Enforcement Firewall Module 32 Advanced Cryptography 0 Service provider AP 0 WLAN Switch ENABLED RF Protect DISABLED RF Director ENABLED Policy Enforcement Firewall ENABLED Remote APs ENABLED External Services Interface ENABLED Client Integrity Module ENABLED Auto Radio Resource Alloc ENABLED Adaptive Radio Management ENABLED VPN Server ENABLED Wired 802.1X ENABLED Secure Access ENABLED Wired Grid Points ENABLED xSec Module DISABLED MMC AP DISABLED Netgear AP DISABLED Voice Services Module ENABLED Remote AP VPN Termination ENABLED Ortronics AP DISABLED Mesh Point APs ENABLED Location API DISABLED Mesh Visualization DISABLED AP Developers Module DISABLED Power Over Ethernet ENABLED Internal Test Functions DISABLED Public Access DISABLED Application Acceleration DISABLED Centralized Encryption DISABLED Policy Enforcement Firewall for VPN users DISABLED Content Security DISABLED Advanced Cryptography DISABLED Service Provider Access Point DISABLED L2/L3 Switching DISABLED show license verbose License Table ------------- Key Installed Expires Flags Service Type --- --------- ------- ----- ------------ Z+Vc4rG/-feTNl7Lk-55bqelxp-C0M8DprR-ugItSfI0-knw 2012-07-27 Never E Power Over Ethernet 07:07:35 rRfxwbvp-OIrZk3jL-eymjL3HR-9esQcyr+-ekQBVIQN-yuc 2014-01-09 Never E Access Points: 32 08:18:44 UKFydOdW-ahMrXlys-RLWaSPTk-z0kDNNaB-Ti+MJ4Mp-nyQ 2014-01-09 Never E Next Generation Policy Enforcement Firewall Module: 32 08:19:59 License Entries: 3 Flags: A - auto-generated; E - enabled; R - reboot required to activate show license-usage user debug User License Debug ------------------ Name Value ---- ----- License Usage 0 Station Total 0 Station AP entries 0 Station Bridge users 0 Station VPN entries 0 Station VPN users 0 Station xSec users 0 show inventory System Serial# : AR0009953 SC Assembly# : 2010056B (Rev:03.00) SC Serial# : F02217211 (Date:07/24/12) Main Assembly# : 2010041D (Rev:03.00) Main Serial# : F02217545 (Date:07/24/12) Chassis Assembly# : 3510023 (Rev:01.00) Chassis Serial# : AR0009953 (Date:07/24/12) HW MAC Addr : 00:1A:1E:21:DE:F0 to 00:1A:1E:21:DE:FF CPLD Version : (Rev: 1.3) Aruba650 Card Temperatures : : Card Temperature 28 C : CPU Temperature 60 C Aruba650 Fan Tachometers : : Chassis Fan A 6486 RPM : Chassis Fan B 6400 RPM : Chassis Fan C 6575 RPM Aruba650 Card Voltages : : CPU_V1 2500mV 2532 mV : CPU_V2 1800mV 1800 mV : CPU_V3 1000mV 976 mV : CPU_V4 900mV 918 mV : CPU_V5 5000mV 5034 mV : CPU_V6 3300mV 3270 mV : MAIN_V1 5000mV 5034 mV : MAIN_V2 3300mV 3276 mV : MAIN_V3 1900mV 1930 mV : MAIN_V4 1500mV 1502 mV : MAIN_V5 1200mV 1196 mV : MAIN_V6 2500mV 2526 mV show slots Slots ------ Slot Status Card Type ---- ------ --------- 1 Present A650 show processes %CPU S PID PPID VSZ RSS F NI START TIME EIP CMD 0.3 S 1 0 4376 572 4 0 11:19 00:00:07 2aca9dfc init 0.0 S 2 1 0 0 1 - 11:19 00:00:00 00000000 [migration/0] 0.0 S 3 1 0 0 1 19 11:19 00:00:01 00000000 [ksoftirqd/0] 0.0 S 4 1 0 0 1 - 11:19 00:00:00 00000000 [migration/1] 0.0 S 5 1 0 0 1 19 11:19 00:00:00 00000000 [ksoftirqd/1] 0.0 S 6 1 0 0 1 - 11:19 00:00:00 00000000 [migration/2] 0.0 S 7 1 0 0 1 19 11:19 00:00:00 00000000 [ksoftirqd/2] 0.0 S 8 1 0 0 1 -5 11:19 00:00:00 00000000 [events/0] 0.0 S 9 1 0 0 1 -5 11:19 00:00:00 00000000 [events/1] 0.0 S 10 1 0 0 1 -5 11:19 00:00:00 00000000 [events/2] 0.0 S 11 1 0 0 1 -5 11:19 00:00:00 00000000 [khelper] 0.0 S 12 1 0 0 1 -5 11:19 00:00:00 00000000 [kthread] 0.0 S 19 12 0 0 1 -5 11:19 00:00:00 00000000 [kblockd/0] 0.0 S 20 12 0 0 1 -5 11:19 00:00:00 00000000 [kblockd/1] 0.0 S 21 12 0 0 1 -5 11:19 00:00:00 00000000 [kblockd/2] 0.0 S 24 12 0 0 1 -5 11:19 00:00:00 00000000 [khubd] 0.0 S 77 12 0 0 1 0 11:19 00:00:00 00000000 [pdflush] 0.0 S 78 12 0 0 1 0 11:19 00:00:00 00000000 [pdflush] 0.0 S 80 12 0 0 1 -5 11:19 00:00:00 00000000 [aio/0] 0.0 S 81 12 0 0 1 -5 11:19 00:00:00 00000000 [aio/1] 0.0 S 82 12 0 0 1 -5 11:19 00:00:00 00000000 [aio/2] 0.0 S 79 1 0 0 1 0 11:19 00:00:00 00000000 [kswapd0] 0.0 S 723 12 0 0 1 -5 11:19 00:00:00 00000000 [sp_packet_bh/0] 0.0 S 724 12 0 0 1 -5 11:19 00:00:00 00000000 [sp_packet_bh/1] 0.0 S 725 12 0 0 1 -5 11:19 00:00:00 00000000 [sp_packet_bh/2] 0.0 S 736 1 0 0 1 0 11:19 00:00:00 00000000 [mtdblockd] 1.7 S 830 1 0 0 1 19 11:20 00:00:37 00000000 [jffs2_gcd_mtd3] 0.0 S 889 1 2504 384 4 - 11:20 00:00:00 2ac0b4a4 /mswitch/bin/watchdog enable 0 0.0 S 893 1 2504 384 4 - 11:20 00:00:00 2ac0b4a4 /mswitch/bin/watchdog enable 1 0.0 S 897 1 2504 384 4 - 11:20 00:00:00 2ac0b4a4 /mswitch/bin/watchdog enable 2 0.0 S 973 1 4376 636 4 0 11:20 00:00:00 2aca9fd0 /bin/sh /mswitch/bin/syslogd_start 0.0 S 976 973 6716 1508 4 0 11:20 00:00:00 2ad21094 /mswitch/bin/syslogd -x -r -n -m 0 -f /mswitch/conf/syslog.conf 0.6 S 1393 1 0 0 1 19 11:21 00:00:14 00000000 [jffs2_gcd_mtd1] 0.7 S 1394 1 0 0 1 19 11:21 00:00:14 00000000 [jffs2_gcd_mtd2] 0.0 S 1415 1 7016 1680 4 0 11:21 00:00:00 2afef094 /mswitch/bin/nanny /mswitch/bin/nanny_list 0 0.0 S 1422 1415 4376 628 4 0 11:21 00:00:00 2aca9fd0 /bin/sh /mswitch/bin/dbstart 0.0 S 1426 1422 4376 680 4 0 11:21 00:00:00 2aca9fd0 /bin/sh /mswitch/mysql/bin/safe_mysqld --pid-file=/var/mysql/mysql.pid 0.0 S 1455 1426 19804 3608 0 0 11:21 00:00:00 2b0370f8 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 1.4 S 1458 1415 32448 18648 4 0 11:21 00:00:29 2b3f6094 /mswitch/bin/arci-cli-helper 0.0 S 1463 1455 19804 3608 1 0 11:21 00:00:00 2b034390 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1464 1463 19804 3608 5 0 11:21 00:00:00 2af9c478 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 1.8 S 1465 1415 38444 24700 4 0 11:21 00:00:38 2b187eac /mswitch/bin/fpcli 0.0 S 1467 1415 8444 1568 4 0 11:21 00:00:00 2b014094 /mswitch/bin/packet_filter 0.0 S 1468 1415 11432 2404 4 0 11:21 00:00:00 2b1c2094 /mswitch/bin/certmgr 0.0 S 1469 1415 7252 984 0 0 11:21 00:00:00 2af4b094 /mswitch/bin/soed 0.0 S 1470 1415 4816 952 4 0 11:21 00:00:00 2ad63094 /mswitch/bin/cryptoPOST 0.0 S 1485 1415 4632 948 4 0 11:21 00:00:00 2ad1a094 /mswitch/bin/sbConsoled 0 0.0 S 1512 1415 5536 1152 0 0 11:21 00:00:00 2ae61094 /mswitch/bin/msgHandler -g 0.0 S 1538 1415 5156 1032 0 0 11:21 00:00:00 2ada6094 /mswitch/bin/pubsub 1.7 S 1565 1415 40344 25224 4 0 11:21 00:00:34 2b439094 /mswitch/bin/cfgm 0.0 S 1570 1463 19804 3608 5 0 11:21 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1571 1415 8776 1676 4 0 11:21 00:00:00 2b058094 /mswitch/bin/syslogdwrap 0.0 S 1572 1415 14028 2364 4 0 11:21 00:00:00 2b3f5094 /mswitch/bin/aaa 0.0 S 1573 1463 19804 3608 5 0 11:21 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1574 1415 74632 21780 0 0 11:21 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1575 1574 74632 21780 1 0 11:21 00:00:00 2b300390 /mswitch/bin/fpapps 0.8 S 1576 1575 74632 21780 5 0 11:21 00:00:16 2b3030f8 /mswitch/bin/fpapps 0.0 S 1578 1415 8412 1824 4 0 11:21 00:00:00 2b023094 /mswitch/bin/pim 0.0 S 1579 1415 13652 2424 0 0 11:21 00:00:00 2b3b9094 /mswitch/bin/licensemgr 0.0 S 1580 1463 19804 3608 5 0 11:21 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1591 1415 13476 5792 4 0 11:21 00:00:00 2b0de094 /mswitch/bin/l2tpd -D 0.0 S 1592 1415 11520 2036 4 0 11:21 00:00:00 2b121094 /mswitch/bin/pptpd -f 0.0 S 1593 1415 18220 5440 4 0 11:21 00:00:01 2b3c0094 /mswitch/bin/isakmpd 0.1 S 1594 1415 20096 3744 4 0 11:21 00:00:03 2b4de0f8 /mswitch/bin/wms -l 5 0.0 S 1595 1463 19804 3608 5 0 11:21 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1596 1594 20096 3744 1 0 11:21 00:00:00 2b4db390 /mswitch/bin/wms -l 5 0.0 S 1597 1596 20096 3744 1 0 11:21 00:00:00 2b4de0f8 /mswitch/bin/wms -l 5 0.0 S 1598 1596 20096 3744 1 0 11:21 00:00:00 2b34588c /mswitch/bin/wms -l 5 0.4 S 1599 1463 19804 3608 5 0 11:21 00:00:08 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1600 1415 13296 3084 4 0 11:21 00:00:00 2b3ce094 /mswitch/bin/profmgr 0.0 S 1601 1415 11004 1568 0 0 11:21 00:00:00 2b2bb094 /mswitch/bin/rfm 0.1 S 1602 1415 27444 8428 4 0 11:21 00:00:02 2b47a094 /mswitch/bin/auth 0.0 S 1603 1415 24088 5080 4 0 11:21 00:00:01 2b5c00f8 /mswitch/bin/stm 0.0 S 1604 1415 7004 1136 4 0 11:21 00:00:00 2af41094 /mswitch/bin/rtpa 0.0 S 1605 1415 13984 2572 4 0 11:21 00:00:00 2b3b4094 /mswitch/bin/udbserver 0.0 S 1607 1415 8708 1824 4 0 11:21 00:00:00 2af9c094 /mswitch/bin/dhcpdwrap 0.0 S 1608 1463 19804 3608 5 0 11:21 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1609 1415 6844 1148 4 0 11:21 00:00:00 2ae78094 /mswitch/bin/radvdwrap 0.0 S 1610 1415 11556 2272 4 0 11:21 00:00:00 2b24d094 /mswitch/bin/mobileip 0.0 S 1611 1463 19804 3608 5 0 11:21 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1612 1415 10192 1932 4 0 11:21 00:00:00 2b1c6094 /mswitch/bin/phonehome 0.1 S 1613 1415 8000 1456 0 0 11:21 00:00:02 2b023094 /mswitch/bin/hwMon 0.0 S 1614 1415 5000 1048 4 0 11:21 00:00:00 2ad324a4 /mswitch/bin/sbHeartbeat 0.0 S 1619 1415 13528 2800 4 0 11:21 00:00:00 2b20b094 /mswitch/bin/snmpd 0.0 S 1622 1415 13348 3644 4 0 11:21 00:00:00 2b20b094 /mswitch/bin/trapd 0.0 S 1623 1415 9844 1596 4 0 11:21 00:00:00 2b16a094 /mswitch/bin/ntpwrap 0.0 S 1626 1415 10940 1948 4 0 11:21 00:00:00 2b077094 /mswitch/bin/dbsync 0.0 S 1634 1415 11280 1908 4 0 11:21 00:00:00 2b290094 /mswitch/bin/slb 0.0 S 1637 1415 4376 600 4 0 11:21 00:00:00 2ace4500 /sbin/klogd -n 0.0 S 1640 1415 5540 1104 4 0 11:21 00:00:00 2ae7e094 /mswitch/bin/resolvwrap 0.0 S 1643 1575 74632 21780 5 0 11:21 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1646 1415 9552 1940 4 0 11:21 00:00:00 2b048094 /etc/ssh/sshd -D -f /etc/ssh/sshd_config 0.0 S 1647 1415 12120 1948 4 0 11:21 00:00:00 2b362094 /mswitch/bin/cts 0.0 S 1648 1415 7132 816 0 0 11:21 00:00:00 2adbf4a4 /mswitch/bin/dbbk periodic-backup 10800 0.0 S 1649 1463 19804 3608 5 0 11:21 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1650 1415 8768 1244 0 0 11:21 00:00:00 2b015094 /mswitch/bin/qpdq 0.0 S 1651 1575 74632 21780 5 0 11:21 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1652 1415 8688 1444 4 0 11:21 00:00:00 2ae86094 /mswitch/bin/httpd_wrap 0.0 S 1653 1575 74632 21780 5 0 11:21 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1654 1575 74632 21780 5 0 11:21 00:00:00 2b1484b0 /mswitch/bin/fpapps 0.0 S 1655 1575 74632 21780 5 0 11:21 00:00:00 2b1484b0 /mswitch/bin/fpapps 0.0 S 1656 1415 7272 1180 4 0 11:21 00:00:00 2af85094 /mswitch/bin/misc-proc 0.0 S 1657 1415 8400 1556 4 0 11:21 00:00:00 2afd0094 /mswitch/bin/msghh 0.0 S 1658 1415 11184 2112 4 0 11:21 00:00:00 2b203094 /mswitch/bin/ospf 0.0 S 1659 1415 3576 896 4 0 11:21 00:00:00 2ac16094 /usr/sbin/dnsmasq -d -o 0.0 S 1660 1415 13392 2264 0 0 11:21 00:00:00 2b217094 /mswitch/bin/sambaWrapper 0.1 S 1663 1415 2276 680 4 -4 11:21 00:00:02 2ac16094 /sbin/udevd 0.0 D 1666 1415 5016 864 0 0 11:21 00:00:00 2ad5c450 /mswitch/bin/pb_int 0.0 S 1669 1415 4376 696 4 0 11:21 00:00:00 2aca9fd0 /bin/sh /usr/sbin/mem_mon -v -t 5 0.0 S 1674 1463 19804 3608 5 0 11:21 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1676 1415 7696 1384 0 0 11:21 00:00:00 2afe1094 /mswitch/bin/util_proc 0.0 S 1679 1415 2236 500 4 0 11:21 00:00:00 2ac16094 /mswitch/bin/pktTraceLogd 0 0.0 S 1682 1415 11528 1992 4 0 11:21 00:00:00 2b0fe094 /mswitch/bin/cpsec 0.0 S 1683 1415 9088 1572 4 0 11:21 00:00:00 2b0ee094 /mswitch/bin/spectrum 0.0 S 1696 1463 19804 3608 5 0 11:22 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1701 1575 74632 21780 5 0 11:22 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1702 1575 74632 21780 5 0 11:22 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1703 1575 74632 21780 5 0 11:22 00:00:00 2b1484b0 /mswitch/bin/fpapps 0.0 S 1704 1575 74632 21780 5 0 11:22 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1705 1575 74632 21780 5 0 11:22 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1706 1575 74632 21780 5 0 11:22 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1707 1575 74632 21780 5 0 11:22 00:00:00 2b1484b0 /mswitch/bin/fpapps 0.0 S 1708 1575 74632 21780 5 0 11:22 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1709 1575 74632 21780 5 0 11:22 00:00:00 2b1484b0 /mswitch/bin/fpapps 0.0 S 1710 1575 74632 21780 5 0 11:22 00:00:00 2b147ee8 /mswitch/bin/fpapps 0.0 S 1711 1575 74632 21780 5 0 11:22 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 1712 1575 74632 21780 5 0 11:22 00:00:00 2b14288c /mswitch/bin/fpapps 0.0 S 3181 1575 74632 21780 5 0 11:22 00:00:00 2b3030f8 /mswitch/bin/fpapps 0.0 S 3188 1623 9980 5676 4 0 11:22 00:00:00 2b16a094 /mswitch/bin/ntpd -g -L 0.0 S 3315 1607 9744 2092 4 0 11:22 00:00:00 2ae7f0f8 /mswitch/bin/dhcpd -f -lf /tmp/dhcpd.lease eth1 -m nonhosp-mode 0.0 S 3316 3315 9744 2092 1 0 11:22 00:00:00 2ae7c390 /mswitch/bin/dhcpd -f -lf /tmp/dhcpd.lease eth1 -m nonhosp-mode 0.0 S 3317 3316 9744 2092 1 0 11:22 00:00:00 2ae7f0f8 /mswitch/bin/dhcpd -f -lf /tmp/dhcpd.lease eth1 -m nonhosp-mode 0.0 S 3344 1463 19804 3608 5 0 11:22 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.3 S 3351 1652 20316 4904 4 0 11:22 00:00:06 2b804094 /mswitch/apache/bin/httpd -DFOREGROUND -DSSL 0.0 S 3372 1603 24088 5080 1 0 11:22 00:00:00 2b5bd390 /mswitch/bin/stm 0.0 S 3373 3372 24088 5080 1 0 11:22 00:00:00 2b5c00f8 /mswitch/bin/stm 0.0 S 3374 3372 24088 5080 1 0 11:22 00:00:00 2b2f788c /mswitch/bin/stm 0.0 S 3415 1463 19804 3608 5 0 11:22 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3481 1463 19804 3608 5 0 11:25 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3695 1463 19804 3608 5 0 11:27 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3696 1463 19804 3608 5 0 11:27 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3697 1463 19804 3608 5 0 11:27 00:00:00 2ac61698 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 4616 1669 4244 396 4 0 11:51 00:00:00 2acaa4a4 sleep 300 0.0 S 4778 1422 4244 396 4 0 11:55 00:00:00 2acaa4a4 sleep 10 0.0 R 4782 1465 3872 944 0 0 11:55 00:00:00 2ac20084 ps --user nobody -N -wo %cpu,state,pid,ppid,vsz,rss,flags,nice,start_time,time,eip,cmd show process monitor statistics Process Monitoring Action:Log Message Process Monitor Statistics -------------------------- Name State Restarts Allowed Restarts Timeout Value Timeout Chances Time Started ---- ----- ---------------- -------- ------------- --------------- ------------ /mswitch/bin/dbstart PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:31 2014 /mswitch/bin/arci-cli-helper PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:31 2014 /mswitch/bin/fpcli PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:31 2014 /mswitch/bin/packet_filter PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:31 2014 /mswitch/bin/certmgr PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:32 2014 /mswitch/bin/cryptoPOST PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:32 2014 /mswitch/bin/sbConsoled PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:32 2014 /mswitch/bin/pubsub PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:33 2014 /mswitch/bin/cfgm PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:33 2014 /mswitch/bin/syslogdwrap PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:33 2014 /mswitch/bin/aaa PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:33 2014 /mswitch/bin/fpapps PROCESS_RUNNING 0 0 240 4 Thu Feb 27 11:21:33 2014 /mswitch/bin/pim PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:34 2014 /mswitch/bin/licensemgr PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:34 2014 /mswitch/bin/l2tpd PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:34 2014 /mswitch/bin/pptpd PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:34 2014 /mswitch/bin/isakmpd PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:34 2014 /mswitch/bin/wms PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:35 2014 /mswitch/bin/profmgr PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:35 2014 /mswitch/bin/auth PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:35 2014 /mswitch/bin/stm PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:35 2014 /mswitch/bin/rtpa PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:36 2014 /mswitch/bin/udbserver PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:36 2014 /mswitch/bin/dhcpdwrap PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:36 2014 /mswitch/bin/radvdwrap PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:36 2014 /mswitch/bin/mobileip PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:36 2014 /mswitch/bin/phonehome PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:37 2014 /mswitch/bin/hwMon PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:37 2014 /mswitch/bin/snmpd PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:37 2014 /mswitch/bin/trapd PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:37 2014 /mswitch/bin/ntpwrap PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:38 2014 /mswitch/bin/dbsync PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:38 2014 /mswitch/bin/slb PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:38 2014 /mswitch/bin/resolvwrap PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:38 2014 /mswitch/bin/cts PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:39 2014 /mswitch/bin/httpd_wrap PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:39 2014 /mswitch/bin/misc-proc PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:40 2014 /mswitch/bin/msghh PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:40 2014 /mswitch/bin/ospf PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:41 2014 /mswitch/bin/sambaWrapper PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:41 2014 /mswitch/bin/util_proc PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:42 2014 /mswitch/bin/cpsec PROCESS_RUNNING 8 0 240 4 Thu Feb 27 11:21:42 2014 /mswitch/bin/spectrum PROCESS_RUNNING - 0 240 4 Thu Feb 27 11:21:43 2014 show cpuload user 0.1%, system 0.0%, idle 99.9% show cpuload current top2 - 11:55:40 up 36 min, 0 users, load average: 1.09, 1.04, 0.93 Tasks: 175 total, 4 running, 171 sleeping, 0 stopped, 0 zombie Cpu(s): 3.1%us, 2.4%sy, 0.0%ni, 94.5%id, 0.0%wa, 0.0%hi, 0.0%si, 0.0%st Mem:  386032k total, 308548k used, 77484k free, 0k buffers Swap: 0k total, 0k used, 0k free, 156672k cached   PID USER PR NI VIRT RES SHR S %CPU %MEM TIME+ COMMAND   1599 root 17 0 19804 3608 2012 S 23 0.9 0:09.11 mysqld   4788 root 15 0 3860 1048 772 R 15 0.3 0:00.20 top2   1594 root 15 0 20096 3744 2164 S 7 1.0 0:03.59 wms   1 root 16 0 4376 572 480 S 0 0.1 0:07.80 init   2 root RT 0 0 0 0 S 0 0.0 0:00.01 migration/0   3 root 34 19 0 0 0 S 0 0.0 0:01.03 ksoftirqd/0   4 root RT 0 0 0 0 S 0 0.0 0:00.03 migration/1   5 root 34 19 0 0 0 S 0 0.0 0:00.00 ksoftirqd/1   6 root RT 0 0 0 0 S 0 0.0 0:00.02 migration/2   7 root 34 19 0 0 0 S 0 0.0 0:00.01 ksoftirqd/2   8 root 10 -5 0 0 0 S 0 0.0 0:00.00 events/0   9 root 10 -5 0 0 0 S 0 0.0 0:00.12 events/1   10 root 10 -5 0 0 0 S 0 0.0 0:00.02 events/2   11 root 14 -5 0 0 0 S 0 0.0 0:00.25 khelper   12 root 10 -5 0 0 0 S 0 0.0 0:00.00 kthread   19 root 13 -5 0 0 0 S 0 0.0 0:00.00 kblockd/0   20 root 13 -5 0 0 0 S 0 0.0 0:00.00 kblockd/1  show memory Memory (Kb): total: 386032, used: 284012, free: 102020 show memory ecc Overall ECC Errors: Correctable ECC Errors:0 Uncorrectable ECC Errors: 0 ECC Errors since last reboot: Correctable ECC Errors:0 Uncorrectable ECC Errors: 0 show memory debug 130444 memory snapshot: Thu Feb 27 11:55:41 2014 ========================================= Memory (Kb): total: 386032, free: 101628 25224 /mswitch/bin/cfgm 21780 /mswitch/bin/fpapps 8428 /mswitch/bin/auth 5792 /mswitch/bin/l2tpd -D 5440 /mswitch/bin/isakmpd 5080 /mswitch/bin/stm 3744 /mswitch/bin/wms -l 5 3084 /mswitch/bin/profmgr 2800 /mswitch/bin/snmpd 2572 /mswitch/bin/udbserver 2272 /mswitch/bin/mobileip 2112 /mswitch/bin/ospf 2036 /mswitch/bin/pptpd -f 1948 /mswitch/bin/dbsync 1908 /mswitch/bin/slb 1824 /mswitch/bin/pim Querying excessively large apps auth : 8/18M (cur/typical) 0M over stm : 4/25M (cur/typical) 0M over wms : 3/18M (cur/typical) 0M over cfgm : 24/22M (cur/typical) 2M over fpapps : 21/20M (cur/typical) 1M over profmgr : 3/ 8M (cur/typical) 0M over isakmpd : 5/ 6M (cur/typical) 0M over l2tpd : 5/ 8M (cur/typical) 0M over mobileip : 2/ 4M (cur/typical) 0M over ospf : 2/ 4M (cur/typical) 0M over pim : 1/ 2M (cur/typical) 0M over pptpd : 1/ 5M (cur/typical) 0M over dbsync : 1/ 3M (cur/typical) 0M over slb : 1/ 4M (cur/typical) 0M over snmpd : 2/ 5M (cur/typical) 0M over udbserver: 2/ 4M (cur/typical) 0M over No excessively large files found under /tmp ============== Process Output ============== %CPU S PID PPID VSZ RSS START CMD 1.7 S 1565 1415 40344 25224 11:21 cfgm 1.8 S 1465 1415 38508 24700 11:21 fpcli 0.0 S 1574 1415 74632 21780 11:21 fpapps 0.0 S 1575 1574 74632 21780 11:21 fpapps 0.8 S 1576 1575 74632 21780 11:21 fpapps 0.0 S 1643 1575 74632 21780 11:21 fpapps 0.0 S 1651 1575 74632 21780 11:21 fpapps 0.0 S 1653 1575 74632 21780 11:21 fpapps 0.0 S 1654 1575 74632 21780 11:21 fpapps 0.0 S 1655 1575 74632 21780 11:21 fpapps 0.0 S 1701 1575 74632 21780 11:22 fpapps 0.0 S 1702 1575 74632 21780 11:22 fpapps 0.0 S 1703 1575 74632 21780 11:22 fpapps 0.0 S 1704 1575 74632 21780 11:22 fpapps 0.0 S 1705 1575 74632 21780 11:22 fpapps 0.0 S 1706 1575 74632 21780 11:22 fpapps 0.0 S 1707 1575 74632 21780 11:22 fpapps 0.0 S 1708 1575 74632 21780 11:22 fpapps 0.0 S 1709 1575 74632 21780 11:22 fpapps 0.0 S 1710 1575 74632 21780 11:22 fpapps 0.0 S 1711 1575 74632 21780 11:22 fpapps 0.0 S 1712 1575 74632 21780 11:22 fpapps 0.0 S 3181 1575 74632 21780 11:22 fpapps 1.4 S 1458 1415 32448 18648 11:21 arci-cli-helper 0.1 S 1602 1415 27444 8428 11:21 auth 0.0 S 1591 1415 13476 5792 11:21 l2tpd -D 0.0 S 3188 1623 9980 5676 11:22 ntpd -g -L 0.0 S 1593 1415 18220 5440 11:21 isakmpd 0.0 S 1603 1415 24088 5080 11:21 stm 0.0 S 3372 1603 24088 5080 11:22 stm 0.0 S 3373 3372 24088 5080 11:22 stm 0.0 S 3374 3372 24088 5080 11:22 stm 0.3 S 3351 1652 20316 4904 11:22 apache/bin/httpd -DFOREGROUND -DSSL 0.1 S 1594 1415 20096 3744 11:21 wms -l 5 0.0 S 1596 1594 20096 3744 11:21 wms -l 5 0.0 S 1597 1596 20096 3744 11:21 wms -l 5 0.0 S 1598 1596 20096 3744 11:21 wms -l 5 0.0 S 1622 1415 13348 3644 11:21 trapd 0.0 S 1455 1426 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1463 1455 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1464 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1570 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1573 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1580 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1595 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.4 R 1599 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1608 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1611 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1649 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1674 1463 19804 3608 11:21 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1696 1463 19804 3608 11:22 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3344 1463 19804 3608 11:22 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3415 1463 19804 3608 11:22 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3481 1463 19804 3608 11:25 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3695 1463 19804 3608 11:27 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3696 1463 19804 3608 11:27 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 3697 1463 19804 3608 11:27 mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 0.0 S 1600 1415 13296 3084 11:21 profmgr 0.0 S 1619 1415 13528 2800 11:21 snmpd 0.0 S 1605 1415 13984 2572 11:21 udbserver 0.0 S 1579 1415 13652 2424 11:21 licensemgr 0.0 S 1468 1415 11432 2404 11:21 certmgr 0.0 S 1572 1415 14028 2364 11:21 aaa 0.0 S 1610 1415 11556 2272 11:21 mobileip 0.0 S 1660 1415 13392 2264 11:21 sambaWrapper 0.0 S 1658 1415 11184 2112 11:21 ospf 0.0 S 3315 1607 9744 2092 11:22 dhcpd -f -lf /tmp/dhcpd.lease eth1 -m nonhosp-mode 0.0 S 3316 3315 9744 2092 11:22 dhcpd -f -lf /tmp/dhcpd.lease eth1 -m nonhosp-mode 0.0 S 3317 3316 9744 2092 11:22 dhcpd -f -lf /tmp/dhcpd.lease eth1 -m nonhosp-mode 0.0 S 1592 1415 11520 2036 11:21 pptpd -f 0.0 S 1682 1415 11528 1992 11:21 cpsec 0.0 S 1626 1415 10940 1948 11:21 dbsync 0.0 S 1647 1415 12120 1948 11:21 cts 0.0 S 1646 1415 9552 1940 11:21 /etc/ssh/sshd -D -f /etc/ssh/sshd_config 0.0 S 1612 1415 10192 1932 11:21 phonehome 0.0 S 1634 1415 11280 1908 11:21 slb 0.0 S 1578 1415 8412 1824 11:21 pim 0.0 S 1607 1415 8708 1824 11:21 dhcpdwrap 0.0 S 1415 1 7016 1680 11:21 nanny bin/nanny_list 0 0.0 S 1571 1415 8776 1676 11:21 syslogdwrap 0.0 S 1623 1415 9844 1596 11:21 ntpwrap 0.0 S 1683 1415 9088 1572 11:21 spectrum 0.0 S 1467 1415 8444 1568 11:21 packet_filter 0.0 S 1601 1415 11004 1568 11:21 rfm 0.0 S 1657 1415 8400 1556 11:21 msghh 0.0 S 976 973 6716 1508 11:20 syslogd -x -r -n -m 0 -f conf/syslog.conf 0.1 S 1613 1415 8000 1456 11:21 hwMon 0.0 S 1652 1415 8688 1444 11:21 httpd_wrap 0.0 S 1676 1415 7696 1384 11:21 util_proc 0.0 S 1650 1415 8768 1244 11:21 qpdq 0.0 S 1656 1415 7272 1180 11:21 misc-proc 0.0 S 1512 1415 5536 1152 11:21 msgHandler -g 0.0 S 1609 1415 6844 1148 11:21 radvdwrap 0.0 S 1604 1415 7004 1136 11:21 rtpa 0.0 S 1640 1415 5540 1104 11:21 resolvwrap 0.0 S 1614 1415 5000 1048 11:21 sbHeartbeat 0.0 S 1538 1415 5156 1032 11:21 pubsub 0.0 S 1469 1415 7252 984 11:21 soed 0.0 R 4821 4790 3808 980 11:55 ps --user nobody -N -wo %cpu,state,pid,ppid,vsz,rss,start_time,cmd --sort=-rss 0.0 S 1470 1415 4816 952 11:21 cryptoPOST 0.0 S 1485 1415 4632 948 11:21 sbConsoled 0 0.0 S 1659 1415 3576 896 11:21 /usr/sbin/dnsmasq -d -o 0.0 D 1666 1415 5016 864 11:21 pb_int 0.0 S 1648 1415 7132 816 11:21 dbbk periodic-backup 10800 0.0 S 1669 1415 4376 696 11:21 /bin/sh /usr/sbin/mem_mon -v -t 5 0.0 S 1426 1422 4376 680 11:21 /bin/sh mysql/bin/safe_mysqld --pid-file=/var/mysql/mysql.pid 0.1 S 1663 1415 2276 680 11:21 /sbin/udevd 0.0 S 4790 4789 4376 656 11:55 /bin/sh /usr/sbin/mem_mon 0.0 S 973 1 4376 636 11:20 /bin/sh syslogd_start 0.0 S 1422 1415 4376 628 11:21 /bin/sh dbstart 0.0 S 1637 1415 4376 600 11:21 /sbin/klogd -n 2.0 S 4789 1465 4376 596 11:55 sh -c mem_mon 0.3 S 1 0 4376 572 11:19 init 0.0 S 4822 4790 4440 552 11:55 sed -e s/\/mswitch\/bin\/// 0.0 S 4823 4790 4440 548 11:55 sed -e s/\/mswitch\/// 0.0 S 1679 1415 2236 500 11:21 pktTraceLogd 0 0.0 S 4616 1669 4244 396 11:51 sleep 300 2.0 S 4786 1422 4244 396 11:55 sleep 10 0.0 S 889 1 2504 384 11:20 watchdog enable 0 0.0 S 893 1 2504 384 11:20 watchdog enable 1 0.0 S 897 1 2504 384 11:20 watchdog enable 2 0.0 S 2 1 0 0 11:19 [migration/0] 0.0 S 3 1 0 0 11:19 [ksoftirqd/0] 0.0 S 4 1 0 0 11:19 [migration/1] 0.0 S 5 1 0 0 11:19 [ksoftirqd/1] 0.0 S 6 1 0 0 11:19 [migration/2] 0.0 S 7 1 0 0 11:19 [ksoftirqd/2] 0.0 S 8 1 0 0 11:19 [events/0] 0.0 S 9 1 0 0 11:19 [events/1] 0.0 S 10 1 0 0 11:19 [events/2] 0.0 S 11 1 0 0 11:19 [khelper] 0.0 S 12 1 0 0 11:19 [kthread] 0.0 S 19 12 0 0 11:19 [kblockd/0] 0.0 S 20 12 0 0 11:19 [kblockd/1] 0.0 S 21 12 0 0 11:19 [kblockd/2] 0.0 S 24 12 0 0 11:19 [khubd] 0.0 S 77 12 0 0 11:19 [pdflush] 0.0 S 78 12 0 0 11:19 [pdflush] 0.0 S 80 12 0 0 11:19 [aio/0] 0.0 S 81 12 0 0 11:19 [aio/1] 0.0 S 82 12 0 0 11:19 [aio/2] 0.0 S 79 1 0 0 11:19 [kswapd0] 0.0 S 723 12 0 0 11:19 [sp_packet_bh/0] 0.0 S 724 12 0 0 11:19 [sp_packet_bh/1] 0.0 S 725 12 0 0 11:19 [sp_packet_bh/2] 0.0 S 736 1 0 0 11:19 [mtdblockd] 1.7 S 830 1 0 0 11:20 [jffs2_gcd_mtd3] 0.6 S 1393 1 0 0 11:21 [jffs2_gcd_mtd1] 0.7 S 1394 1 0 0 11:21 [jffs2_gcd_mtd2] ====================== File System Disk Space ====================== Filesystem 1k-blocks Used Available Use% Mounted on /dev/mtdblock11 159744 59032 100712 37% /flash none 307200 1780 305420 1% /tmp /dev/mtdblock9 51200 25152 26048 49% /mnt/img0 /dev/mtdblock10 51200 25280 25920 49% /mnt/img1 ================== Memory Statistics ================== MemTotal: 386032 kB MemFree: 76796 kB Buffers: 0 kB Cached: 156740 kB SwapCached: 0 kB Active: 162756 kB Inactive: 108540 kB HighTotal: 147456 kB HighFree: 540 kB LowTotal: 238576 kB LowFree: 76256 kB SwapTotal: 0 kB SwapFree: 0 kB Dirty: 0 kB Writeback: 0 kB Mapped: 145060 kB Slab: 22640 kB CommitLimit: 193016 kB Committed_AS: 329644 kB PageTables: 2816 kB VmallocTotal: 1015800 kB VmallocUsed: 876 kB VmallocChunk: 1014888 kB ================ File Space Usage ================ 0 /home 0 /.ssh 0 /mnt 10616 /usr 75360 /mswitch 132 /dev 32 /scripts 13532 /sbin 10560 /bin 17444 /lib 0 /log 2756 /etc 0 /fstmp 12 /root 130444 ================================= Kernel Slab Allocator Statistics ================================= slabinfo - version: 2.1 # name : tunables : slabdata ip_fib_alias 13 113 32 113 1 : tunables 120 60 8 : slabdata 1 1 0 ip_fib_hash 13 113 32 113 1 : tunables 120 60 8 : slabdata 1 1 0 rpc_buffers 8 8 2048 2 1 : tunables 24 12 8 : slabdata 4 4 0 rpc_tasks 8 20 192 20 1 : tunables 120 60 8 : slabdata 1 1 0 rpc_inode_cache 0 0 480 8 1 : tunables 54 27 8 : slabdata 0 0 0 xfrm6_tunnel_spi 0 0 64 59 1 : tunables 120 60 8 : slabdata 0 0 0 fib6_nodes 11 113 32 113 1 : tunables 120 60 8 : slabdata 1 1 0 ip6_dst_cache 14 34 224 17 1 : tunables 120 60 8 : slabdata 2 2 0 ndisc_cache 1 24 160 24 1 : tunables 120 60 8 : slabdata 1 1 0 RAWv6 7 12 672 6 1 : tunables 54 27 8 : slabdata 2 2 0 UDPv6 4 6 640 6 1 : tunables 54 27 8 : slabdata 1 1 0 tw_sock_TCPv6 3 30 128 30 1 : tunables 120 60 8 : slabdata 1 1 0 request_sock_TCPv6 0 0 128 30 1 : tunables 120 60 8 : slabdata 0 0 0 TCPv6 12 15 1248 3 1 : tunables 24 12 8 : slabdata 5 5 0 UNIX 261 261 448 9 1 : tunables 54 27 8 : slabdata 29 29 0 tcp_bind_bucket 17 203 16 203 1 : tunables 120 60 8 : slabdata 1 1 0 inet_peer_cache 3 59 64 59 1 : tunables 120 60 8 : slabdata 1 1 0 secpath_cache 0 0 128 30 1 : tunables 120 60 8 : slabdata 0 0 0 xfrm_dst_cache 0 0 288 13 1 : tunables 54 27 8 : slabdata 0 0 0 ip_dst_cache 10 30 256 15 1 : tunables 120 60 8 : slabdata 2 2 0 arp_cache 5 24 160 24 1 : tunables 120 60 8 : slabdata 1 1 0 RAW 7 7 512 7 1 : tunables 54 27 8 : slabdata 1 1 0 UDP 104 104 512 8 1 : tunables 54 27 8 : slabdata 13 13 0 tw_sock_TCP 0 0 96 40 1 : tunables 120 60 8 : slabdata 0 0 0 request_sock_TCP 0 0 64 59 1 : tunables 120 60 8 : slabdata 0 0 0 TCP 8 21 1120 7 2 : tunables 24 12 8 : slabdata 3 3 0 flow_cache 0 0 96 40 1 : tunables 120 60 8 : slabdata 0 0 0 uhci_urb_priv 0 0 40 92 1 : tunables 120 60 8 : slabdata 0 0 0 cfq_ioc_pool 0 0 48 78 1 : tunables 120 60 8 : slabdata 0 0 0 cfq_pool 0 0 96 40 1 : tunables 120 60 8 : slabdata 0 0 0 crq_pool 0 0 48 78 1 : tunables 120 60 8 : slabdata 0 0 0 deadline_drq 0 0 56 67 1 : tunables 120 60 8 : slabdata 0 0 0 as_arq 4 59 64 59 1 : tunables 120 60 8 : slabdata 1 1 0 jffs2_inode_cache 2092 2175 24 145 1 : tunables 120 60 8 : slabdata 15 15 0 jffs2_node_frag 21691 21844 28 127 1 : tunables 120 60 8 : slabdata 172 172 0 jffs2_raw_node_ref 92084 92162 16 203 1 : tunables 120 60 8 : slabdata 454 454 0 jffs2_tmp_dnode 0 0 36 101 1 : tunables 120 60 8 : slabdata 0 0 0 jffs2_raw_inode 32 56 68 56 1 : tunables 120 60 8 : slabdata 1 1 0 jffs2_raw_dirent 0 0 40 92 1 : tunables 120 60 8 : slabdata 0 0 0 jffs2_full_dnode 22147 22736 16 203 1 : tunables 120 60 8 : slabdata 112 112 0 jffs2_i 746 747 424 9 1 : tunables 54 27 8 : slabdata 83 83 0 nfs_write_data 36 40 480 8 1 : tunables 54 27 8 : slabdata 5 5 0 nfs_read_data 32 36 448 9 1 : tunables 54 27 8 : slabdata 4 4 0 nfs_inode_cache 0 0 672 6 1 : tunables 54 27 8 : slabdata 0 0 0 nfs_page 0 0 64 59 1 : tunables 120 60 8 : slabdata 0 0 0 fat_inode_cache 0 0 440 9 1 : tunables 54 27 8 : slabdata 0 0 0 fat_cache 0 0 20 169 1 : tunables 120 60 8 : slabdata 0 0 0 ext2_inode_cache 0 0 496 8 1 : tunables 54 27 8 : slabdata 0 0 0 journal_handle 0 0 20 169 1 : tunables 120 60 8 : slabdata 0 0 0 journal_head 0 0 52 72 1 : tunables 120 60 8 : slabdata 0 0 0 revoke_table 0 0 12 254 1 : tunables 120 60 8 : slabdata 0 0 0 revoke_record 0 0 16 203 1 : tunables 120 60 8 : slabdata 0 0 0 ext3_inode_cache 0 0 512 8 1 : tunables 54 27 8 : slabdata 0 0 0 dnotify_cache 0 0 20 169 1 : tunables 120 60 8 : slabdata 0 0 0 eventpoll_pwq 0 0 36 101 1 : tunables 120 60 8 : slabdata 0 0 0 eventpoll_epi 0 0 96 40 1 : tunables 120 60 8 : slabdata 0 0 0 inotify_event_cache 0 0 28 127 1 : tunables 120 60 8 : slabdata 0 0 0 inotify_watch_cache 2 101 36 101 1 : tunables 120 60 8 : slabdata 1 1 0 kioctx 0 0 192 20 1 : tunables 120 60 8 : slabdata 0 0 0 kiocb 0 0 128 30 1 : tunables 120 60 8 : slabdata 0 0 0 fasync_cache 0 0 16 203 1 : tunables 120 60 8 : slabdata 0 0 0 shmem_inode_cache 581 600 480 8 1 : tunables 54 27 8 : slabdata 75 75 0 posix_timers_cache 0 0 104 37 1 : tunables 120 60 8 : slabdata 0 0 0 uid_cache 1 59 64 59 1 : tunables 120 60 8 : slabdata 1 1 0 sgpool-128 32 32 3072 2 2 : tunables 24 12 8 : slabdata 16 16 0 sgpool-64 32 35 1536 5 2 : tunables 24 12 8 : slabdata 7 7 0 sgpool-32 32 35 768 5 1 : tunables 54 27 8 : slabdata 7 7 0 sgpool-16 32 40 384 10 1 : tunables 54 27 8 : slabdata 4 4 0 sgpool-8 32 40 192 20 1 : tunables 120 60 8 : slabdata 2 2 0 scsi_io_context 0 0 104 37 1 : tunables 120 60 8 : slabdata 0 0 0 blkdev_ioc 0 0 28 127 1 : tunables 120 60 8 : slabdata 0 0 0 blkdev_queue 17 20 976 4 1 : tunables 54 27 8 : slabdata 5 5 0 blkdev_requests 4 21 184 21 1 : tunables 120 60 8 : slabdata 1 1 0 biovec-(256) 256 256 3072 2 2 : tunables 24 12 8 : slabdata 128 128 0 biovec-128 256 260 1536 5 2 : tunables 24 12 8 : slabdata 52 52 0 biovec-64 256 260 768 5 1 : tunables 54 27 8 : slabdata 52 52 0 biovec-16 256 260 192 20 1 : tunables 120 60 8 : slabdata 13 13 0 biovec-4 256 295 64 59 1 : tunables 120 60 8 : slabdata 5 5 0 biovec-1 256 406 16 203 1 : tunables 120 60 8 : slabdata 2 2 0 bio 256 280 96 40 1 : tunables 120 60 8 : slabdata 7 7 0 sock_inode_cache 558 558 448 9 1 : tunables 54 27 8 : slabdata 62 62 0 skbuff_fclone_cache 0 0 448 9 1 : tunables 54 27 8 : slabdata 0 0 0 skbuff_head_cache 731 986 224 17 1 : tunables 120 60 8 : slabdata 58 58 0 file_lock_cache 0 0 104 37 1 : tunables 120 60 8 : slabdata 0 0 0 proc_inode_cache 940 940 392 10 1 : tunables 54 27 8 : slabdata 94 94 0 sigqueue 105 135 144 27 1 : tunables 120 60 8 : slabdata 5 5 0 radix_tree_node 3976 3976 276 14 1 : tunables 54 27 8 : slabdata 284 284 0 bdev_cache 1 7 512 7 1 : tunables 54 27 8 : slabdata 1 1 0 sysfs_dir_cache 3540 3680 40 92 1 : tunables 120 60 8 : slabdata 40 40 0 mnt_cache 22 30 128 30 1 : tunables 120 60 8 : slabdata 1 1 0 inode_cache 7260 7260 376 10 1 : tunables 54 27 8 : slabdata 726 726 0 dentry_cache 10527 10527 132 29 1 : tunables 120 60 8 : slabdata 363 363 300 filp 2640 2640 160 24 1 : tunables 120 60 8 : slabdata 110 110 360 names_cache 10 10 4096 1 1 : tunables 24 12 8 : slabdata 10 10 0 idr_layer_cache 107 116 136 29 1 : tunables 120 60 8 : slabdata 4 4 0 buffer_head 0 0 56 67 1 : tunables 120 60 8 : slabdata 0 0 0 mm_struct 132 135 448 9 1 : tunables 54 27 8 : slabdata 15 15 0 vm_area_struct 4884 4884 88 44 1 : tunables 120 60 8 : slabdata 111 111 120 fs_cache 177 177 64 59 1 : tunables 120 60 8 : slabdata 3 3 0 files_cache 122 126 448 9 1 : tunables 54 27 8 : slabdata 14 14 0 signal_cache 220 220 384 10 1 : tunables 54 27 8 : slabdata 22 22 0 sighand_cache 130 130 3104 2 2 : tunables 24 12 8 : slabdata 65 65 0 task_struct 207 207 1328 3 1 : tunables 24 12 8 : slabdata 69 69 0 anon_vma 1868 2030 16 203 1 : tunables 120 60 8 : slabdata 10 10 0 size-262144(DMA) 0 0 262144 1 64 : tunables 1 1 0 : slabdata 0 0 0 size-262144 0 0 262144 1 64 : tunables 1 1 0 : slabdata 0 0 0 size-131072(DMA) 0 0 131072 1 32 : tunables 8 4 0 : slabdata 0 0 0 size-131072 1 1 131072 1 32 : tunables 8 4 0 : slabdata 1 1 0 size-65536(DMA) 0 0 65536 1 16 : tunables 8 4 0 : slabdata 0 0 0 size-65536 1 1 65536 1 16 : tunables 8 4 0 : slabdata 1 1 0 size-32768(DMA) 0 0 32768 1 8 : tunables 8 4 0 : slabdata 0 0 0 size-32768 6 7 32768 1 8 : tunables 8 4 0 : slabdata 6 7 0 size-16384(DMA) 0 0 16384 1 4 : tunables 8 4 0 : slabdata 0 0 0 size-16384 5 5 16384 1 4 : tunables 8 4 0 : slabdata 5 5 0 size-8192(DMA) 0 0 8192 1 2 : tunables 8 4 0 : slabdata 0 0 0 size-8192 449 449 8192 1 2 : tunables 8 4 0 : slabdata 449 449 0 size-4096(DMA) 0 0 4096 1 1 : tunables 24 12 8 : slabdata 0 0 0 size-4096 658 660 4096 1 1 : tunables 24 12 8 : slabdata 658 660 0 size-2048(DMA) 0 0 2048 2 1 : tunables 24 12 8 : slabdata 0 0 0 size-2048 130 130 2048 2 1 : tunables 24 12 8 : slabdata 65 65 0 size-1024(DMA) 0 0 1024 4 1 : tunables 54 27 8 : slabdata 0 0 0 size-1024 116 116 1024 4 1 : tunables 54 27 8 : slabdata 29 29 0 size-512(DMA) 0 0 512 8 1 : tunables 54 27 8 : slabdata 0 0 0 size-512 573 704 512 8 1 : tunables 54 27 8 : slabdata 88 88 0 size-256(DMA) 0 0 256 15 1 : tunables 120 60 8 : slabdata 0 0 0 size-256 180 180 256 15 1 : tunables 120 60 8 : slabdata 12 12 0 size-192(DMA) 0 0 192 20 1 : tunables 120 60 8 : slabdata 0 0 0 size-192 816 820 192 20 1 : tunables 120 60 8 : slabdata 41 41 0 size-128(DMA) 0 0 128 30 1 : tunables 120 60 8 : slabdata 0 0 0 size-128 810 810 128 30 1 : tunables 120 60 8 : slabdata 27 27 0 size-96(DMA) 0 0 96 40 1 : tunables 120 60 8 : slabdata 0 0 0 size-96 952 960 96 40 1 : tunables 120 60 8 : slabdata 24 24 0 size-64(DMA) 0 0 64 59 1 : tunables 120 60 8 : slabdata 0 0 0 size-32(DMA) 0 0 32 113 1 : tunables 120 60 8 : slabdata 0 0 0 size-64 1766 1829 64 59 1 : tunables 120 60 8 : slabdata 31 31 0 size-32 3401 4181 32 113 1 : tunables 120 60 8 : slabdata 37 37 0 kmem_cache 150 150 128 30 1 : tunables 120 60 8 : slabdata 5 5 0 ==================== Netstat Information ==================== Proto Recv-Q Send-Q Local Address Foreign Address State =============================== Large Files above 750K under / =============================== 2232 /bin/smbclient 1260 /bin/smbcontrol 1456 /bin/smbspool 1196 /bin/smbstatus 784 /bin/tcpdump 1752 /lib/libarci.so 1292 /lib/libc-2.3.6.so 4096 /lib/libcmdtree.so 1380 /lib/libcrypto.so.0.9.8 856 /lib/libm-2.3.6.so 896 /lib/libstdc++.so.6.0.3 1772 /mswitch/apache/bin/httpd 1540 /mswitch/bin/arci-cli-helper 3476 /mswitch/bin/auth 2336 /mswitch/bin/cfgm 3488 /mswitch/bin/fpapps 1540 /mswitch/bin/fpcli 1844 /mswitch/bin/isakmpd 872 /mswitch/bin/mobileip 2668 /mswitch/bin/sapd 2004 /mswitch/bin/snmpd 3096 /mswitch/bin/sos.grenache.elf 3048 /mswitch/bin/stm 1252 /mswitch/bin/trapd 1312 /mswitch/bin/wms 1132 /mswitch/conf/dbupgrade.sql 1392 /mswitch/mysql/libexec/mysqld 972 /mswitch/webui/jscripts/monitor/MFramework-single.js 976 /mswitch/webui/switch/SSHTermApplet-signed.jar 888 /sbin/fsck.ext2 2396 /sbin/mdk_client.out 1776 /sbin/nmbd 5776 /sbin/smbd 2016 /usr/bin/7za 752 /usr/lib/libcups.so.2 ==================================== Files in /tmp directory (in blocks) ==================================== 4 RebootCause 4 ap_type 0 apfc 0 auth_restart 8 authtmpcert 4 boardname 4 bootcmd 0 certmgr 0 cli-helper.sock 4 cliWebCfgData.cfg 4 countryCode 4 cpu 0 cups 4 current_default_partition 4 dbbk-periodic.pid 0 dbsync 0 dbupdated 8 deviceCertLib.log.debug 4 dhcp_vlan 4 dhcpd.lease 4 dram_ecc_err_cnt 4 ecdsa.der 4 ecdsakey.dat 4 ecdsakey.der 0 fieldCertTmp 0 fieldPrivKeys 0 fipspipe 4 fl_cfg 4 gapdb_upgrade_log 4 grenache_switch_ip 4 http_log_level 4 httpd_wrkr.pid 0 ike_restart 0 integrity_check_out 4 l2Cfg.txt 0 l2tppipe 4 lic_cb 4 localtime 4 log.bin 32 mem_mon_last_poll 28 mem_mon_once 4 msgh_debug_counters 0 msghdlr_comm 0 mysql.sock 4 name 0 nanny 0 nastmp 0 phm 16 pretemp.cfg 4 profmgr_ids 4 profmgr_pid 0 radvd.conf 4 ramfs_size 0 samba 0 sap_dnlded 4 serial 4 snmpstart 4 snmptrapstart 0 soedInternalOnly 0 spectrum_unix_sock 0 sshclicomm 4 ssl_scache 0 stm_restart 4 swkey 0 syslogcmd 0 syslogcmdfp 0 tempCertKey 16 tmp.cfg 4 tpmCertPresent 4 tpmKeyHandles.bin 4 uii.cache 0 usb 4 usb_status ===================================================== Memory Usage (Kbytes) of All processes on the system ===================================================== 25224 /mswitch/bin/cfgm 24704 /mswitch/bin/fpcli 21780 /mswitch/bin/fpapps 18648 /mswitch/bin/arci-cli-helper 8428 /mswitch/bin/auth 5792 /mswitch/bin/l2tpd -D 5676 /mswitch/bin/ntpd -g -L 5440 /mswitch/bin/isakmpd 5080 /mswitch/bin/stm 4904 /mswitch/apache/bin/httpd -DFOREGROUND -DSSL 3744 /mswitch/bin/wms -l 5 3644 /mswitch/bin/trapd 3608 /mswitch/mysql/libexec/mysqld --basedir=/mswitch/mysql --datadir=/var/mysql --big-tables --pid-file=/var/mysql/mysql.pid 3084 /mswitch/bin/profmgr 2800 /mswitch/bin/snmpd 2572 /mswitch/bin/udbserver 2424 /mswitch/bin/licensemgr 2404 /mswitch/bin/certmgr 2364 /mswitch/bin/aaa 2272 /mswitch/bin/mobileip 2264 /mswitch/bin/sambaWrapper 2112 /mswitch/bin/ospf 2092 /mswitch/bin/dhcpd -f -lf /tmp/dhcpd.lease eth1 -m nonhosp-mode 2036 /mswitch/bin/pptpd -f 1992 /mswitch/bin/cpsec 1948 /mswitch/bin/dbsync 1948 /mswitch/bin/cts 1940 /etc/ssh/sshd -D -f /etc/ssh/sshd_config 1932 /mswitch/bin/phonehome 1908 /mswitch/bin/slb 1824 /mswitch/bin/pim 1824 /mswitch/bin/dhcpdwrap 1680 /mswitch/bin/nanny /mswitch/bin/nanny_list 0 1676 /mswitch/bin/syslogdwrap 1596 /mswitch/bin/ntpwrap 1572 /mswitch/bin/spectrum 1568 /mswitch/bin/rfm 1568 /mswitch/bin/packet_filter 1556 /mswitch/bin/msghh 1508 /mswitch/bin/syslogd -x -r -n -m 0 -f /mswitch/conf/syslog.conf 1456 /mswitch/bin/hwMon 1444 /mswitch/bin/httpd_wrap 1384 /mswitch/bin/util_proc 1244 /mswitch/bin/qpdq 1180 /mswitch/bin/misc-proc 1152 /mswitch/bin/msgHandler -g 1148 /mswitch/bin/radvdwrap 1136 /mswitch/bin/rtpa 1104 /mswitch/bin/resolvwrap 1048 /mswitch/bin/sbHeartbeat 1032 /mswitch/bin/pubsub RSZ CMD 984 /mswitch/bin/soed 952 /mswitch/bin/cryptoPOST 948 /mswitch/bin/sbConsoled 0 916 ps --user nobody -N -wo rsz,cmd 896 /usr/sbin/dnsmasq -d -o 864 /mswitch/bin/pb_int 816 /mswitch/bin/dbbk periodic-backup 10800 696 /bin/sh /usr/sbin/mem_mon -v -t 5 680 /sbin/udevd 680 /bin/sh /mswitch/mysql/bin/safe_mysqld --pid-file=/var/mysql/mysql.pid 656 /bin/sh /usr/sbin/mem_mon 636 /bin/sh /mswitch/bin/syslogd_start 628 /bin/sh /mswitch/bin/dbstart 600 /sbin/klogd -n 596 sh -c mem_mon 572 init 500 sort -r 500 /mswitch/bin/pktTraceLogd 0 436 uniq 396 sleep 300 396 sleep 10 384 /mswitch/bin/watchdog enable 2 384 /mswitch/bin/watchdog enable 1 384 /mswitch/bin/watchdog enable 0 0 [sp_packet_bh/2] 0 [sp_packet_bh/1] 0 [sp_packet_bh/0] 0 [pdflush] 0 [mtdblockd] 0 [migration/2] 0 [migration/1] 0 [migration/0] 0 [kthread] 0 [kswapd0] 0 [ksoftirqd/2] 0 [ksoftirqd/1] 0 [ksoftirqd/0] 0 [khubd] 0 [khelper] 0 [kblockd/2] 0 [kblockd/1] 0 [kblockd/0] 0 [jffs2_gcd_mtd3] 0 [jffs2_gcd_mtd2] 0 [jffs2_gcd_mtd1] 0 [events/2] 0 [events/1] 0 [events/0] 0 [aio/2] 0 [aio/1] 0 [aio/0] show storage Filesystem Size Used Available Use% Mounted on /dev/mtdblock11 156.0M 57.7M 98.3M 37% /flash none 300.0M 1.7M 298.3M 1% /tmp /dev/mtdblock9 50.0M 24.6M 25.4M 49% /mnt/img0 /dev/mtdblock10 50.0M 24.7M 25.3M 49% /mnt/img1 show iostat cpu 20320 213 15444 613883 0 0 224 0 cpu0 5903 91 3178 207464 0 0 122 0 cpu1 7883 69 5060 203611 0 0 40 0 cpu2 6534 53 7206 202808 0 0 62 0 intr 650187 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 433326 216758 77 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 26 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ctxt 1587704 btime 1393456775 processes 4889 procs_running 1 procs_blocked 0 show datapath acl 2700 Datapath ACL 2700 Entries ----------------------- Flags: P - permit, L - log, E - established, M/e - MAC/etype filter S - SNAT, D - DNAT, R - redirect, r - reverse redirect m - Mirror I - Invert SA, i - Invert DA, H - high prio, O - set prio A - Disable Scanning, T - set TOS, 4 - IPv4, 6 - IPv6 C - Classify Media ---------------------------------------------------------------- 1: any any 6 0-65535 1723-1723 P4 2: any any 17 0-65535 1701-1701 P4 3: any any 6 0-65535 23-23 4 4: any any 6 0-65535 8084-8084 4 5: any any 6 0-65535 3306-3306 4 6: any any 17 0-65535 8209-8209 4 hits 611 7: any any 6 0-65535 8211-8211 4 8: any any 6 0-65535 2300-2300 P4 9: any any 6 0-65535 2323-2323 P4 10: any any 6 0-65535 8211-8211 P4 11: any any 6 0-65535 21-22 P4 12: any any 6 0-65535 17-17 P4 13: any any 17 0-65535 514-514 P4 hits 4 14: any any 50 0-65535 0-65535 P4 15: any any 17 0-65535 8200-8200 P4 16: any any 112 0-65535 0-65535 P4 17: any any 89 0-65535 0-65535 P4 18: any any 2 0-65535 0-65535 P4 19: any any 17 0-65535 1702-1702 P4 20: any any 17 0-65535 500-500 P4 21: any any 17 0-65535 4500-4500 P4 22: any any 4 0-65535 0-65535 P4 23: any any 47 0-65535 0-65535 P4 hits 136 24: any any 6 0-65535 80-80 P4 25: any any 6 0-65535 443-443 P4 26: any any 6 0-65535 4343-4343 P4 hits 1169 27: any any 6 0-65535 8080-8083 P4 28: any any 6 0-65535 8088-8088 P4 29: any any 6 0-65535 8888-8888 P4 30: any any 6 0-65535 636-636 P4 31: any any 6 0-65535 389-389 P4 32: any any 6 0-65535 5080-5080 P4 33: any any 17 0-65535 1645-1645 P4 34: any any 17 0-65535 1812-1813 P4 35: any any 17 0-65535 8211-8211 P4 36: any any 17 0-65535 53-53 P4 37: any any 17 0-65535 67-68 P4 38: any any 17 0-65535 69-69 P4 39: any any 17 0-65535 123-123 P4 40: any any 17 0-65535 3799-3799 P4 41: any any 17 0-65535 161-161 P4 42: any any 17 0-65535 5060-5060 P4 43: any any 17 0-65535 8209-8209 P4 hits 10 44: any any 17 0-65535 434-434 P4 45: any any 1 0-65535 1024-65535 P4 46: any any any 46 hits 677 show datapath acl 2701 Datapath ACL 2701 Entries ----------------------- Flags: P - permit, L - log, E - established, M/e - MAC/etype filter S - SNAT, D - DNAT, R - redirect, r - reverse redirect m - Mirror I - Invert SA, i - Invert DA, H - high prio, O - set prio A - Disable Scanning, T - set TOS, 4 - IPv4, 6 - IPv6 C - Classify Media ---------------------------------------------------------------- 1: any any 6 0-65535 1723-1723 P4 2: any any 17 0-65535 1701-1701 P4 3: any any 6 0-65535 23-23 P4 4: any any 6 0-65535 8084-8084 4 5: any any 6 0-65535 3306-3306 4 6: any any 17 0-65535 8209-8209 4 hits 707 7: any any 6 0-65535 8211-8211 4 8: any any 6 0-65535 2300-2300 P4 9: any any 6 0-65535 2323-2323 P4 10: any any 6 0-65535 8211-8211 P4 11: any any 6 0-65535 21-22 P4 12: any any 6 0-65535 17-17 P4 13: any any 17 0-65535 514-514 P4 hits 18 14: any any 50 0-65535 0-65535 P4 15: any any 17 0-65535 8200-8200 P4 16: any any 112 0-65535 0-65535 P4 17: any any 89 0-65535 0-65535 P4 18: any any 2 0-65535 0-65535 P4 hits 1 19: any any 17 0-65535 1702-1702 P4 20: any any 17 0-65535 500-500 P4 21: any any 17 0-65535 4500-4500 P4 hits 28 22: any any 4 0-65535 0-65535 P4 23: any any 47 0-65535 0-65535 P4 hits 64 24: any any 6 0-65535 80-80 P4 hits 12 25: any any 6 0-65535 443-443 P4 26: any any 6 0-65535 4343-4343 P4 hits 1497 27: any any 6 0-65535 8080-8083 P4 28: any any 6 0-65535 8088-8088 P4 29: any any 6 0-65535 8888-8888 P4 30: any any 6 0-65535 636-636 P4 31: any any 6 0-65535 389-389 P4 32: any any 6 0-65535 5080-5080 P4 33: any any 17 0-65535 1645-1645 P4 34: any any 17 0-65535 1812-1813 P4 35: any any 17 0-65535 8211-8211 P4 36: any any 17 0-65535 53-53 P4 37: any any 17 0-65535 67-68 P4 hits 12 38: any any 17 0-65535 69-69 P4 39: any any 17 0-65535 123-123 P4 40: any any 17 0-65535 3799-3799 P4 41: any any 17 0-65535 161-161 P4 42: any any 17 0-65535 5060-5060 P4 43: any any 17 0-65535 8209-8209 P4 hits 6 44: any any 17 0-65535 434-434 P4 45: any any 1 0-65535 1024-65535 P4 46: any any any 46 hits 175 show datapath acl 2702 Datapath ACL 2702 Entries ----------------------- Flags: P - permit, L - log, E - established, M/e - MAC/etype filter S - SNAT, D - DNAT, R - redirect, r - reverse redirect m - Mirror I - Invert SA, i - Invert DA, H - high prio, O - set prio A - Disable Scanning, T - set TOS, 4 - IPv4, 6 - IPv6 C - Classify Media ---------------------------------------------------------------- show datapath application counters Datapath Application Statistics ------------------------------- NAPT Allocation Failures 0 NAT Allocation Failures 0 NAT TCP Sequence Failures 0 ICMP Errors Received 0 ICMP Errors Denied 0 ICMP Errors Fragmented 0 ICMP Errors Generated 0 FTP Active Requests 0 FTP Passive Requests 0 FTP Active Retransmissions 0 FTP Passive Retransmissions 0 FTP Active/Passive Denied 0 FTP Data Session Race 0 RTSP Requests 0 RTSP Retransmissions 0 TCP Stray packets drops 0 Media Classified Data 0 Media Classified Voice 0 Media Classified Video 0 Max RTCP count 0 Media Allocation Failure 0 IPv6 Extended Header Drop 0 show datapath bridge counters Datapath Bridge Table Statistics -------------------------------- Current Entries 24 High Water Mark 25 Maximum Entries 65535 Total Entries 26 Allocation Failures 0 Max link length 1 show datapath bridge table Datapath Bridge Table Entries ----------------------------- Flags: P - Permanent, D - Deny, R - Route, M - Mobile, X - Xsec, A - Auth MAC VLAN Assigned VLAN Destination Flags ----------------- ---- ------------- ----------- ----- 78:2B:CB:F4:25:CC 1 1 1/4 00:1A:1E:00:00:00 3 3 local P 00:1A:1E:00:00:00 2 2 local P 00:1A:1E:00:00:00 1 1 local P 00:20:DA:00:70:04 1 1 local P 00:20:DA:00:70:04 2 2 local P 00:20:DA:00:70:04 3 3 local P 01:80:C2:00:00:00 4095 4095 local P 01:80:C2:00:00:02 4095 4095 local P 00:1A:1E:21:DE:F0 4095 4095 local P 00:1A:1E:21:DE:F0 1 1 local P 00:1A:1E:21:DE:F0 3 3 local P 00:1A:1E:21:DE:F0 2 2 local P 01:80:C2:00:00:00 1 1 local P 01:80:C2:00:00:02 1 1 local P 01:80:C2:00:00:00 2 2 local P 01:80:C2:00:00:02 2 2 local P 01:80:C2:00:00:00 3 3 local P 01:80:C2:00:00:02 3 3 local P 6C:F3:7F:C4:5E:B7 1 1 1/1 6C:F3:7F:C4:5E:C2 1 1 1/0 00:20:DA:00:70:04 4095 4095 local P 00:1A:1E:00:00:00 4095 4095 local P show datapath bwm table Datapath Bandwidth Management Table Entries ------------------------------------------- Contract Types : 0 - CP Dos 1 - Configured contracts 2 - Internal contracts ----------------------------------------------- Flags: Q - No drop, P - No shape(Only Policed), T - Auto tuned --- -------- --------- ---------- ----------- ----------------- Cont Avail Queued/Pkts Type Id Bits/sec Policed Bytes Bytes Flags ---- ---- --------- ---------- ------- ------------ ----- 0 1 20000000 0 78125 0/0 0 2 4000000 0 15625 0/0 0 3 320000000 0 1250000 0/0 0 4 4000000 0 15625 0/0 0 5 2000128 0 7813 0/0 0 6 2000128 0 7813 0/0 0 7 2000128 0 7813 0/0 show datapath crypto counters Datapath Crypto Statistics -------------------------- Crypto Accelerator Present Crypto Cores In Use 1 Crypto Cores Total 4 Crypto Requests Total 12722 Crypto Requests Queued 0 Crypto Requests Failed 0 Crypto Timeouts 0 Crypto NoCoreFree 0 Crypto BadNPlus 0 Crypto SendNPlusFailed 0 IPSec Encryption Failures 0 IPSec Decryption Failures 0 IPSec Decryption Loops 0 IPSec Decryption BufFail 0 IPSec Decr SPI(client) ERR 0 IPSec Decrypt SA Not Ready 0 IPSec Frag Failures 0 IPSec Bad Pad Length 0 IPSec Invalid TCP Index 0 IPSec Invalid Length 0 IPSec Invalid Head-Room 0 IPSec Invalid Tail-Romm 0 IPSec Invalid Protocol 0 PPTP Encryption Failures 0 PPTP Decryption Failures 0 WEP Encryption Failures 0 WEP Decryption Failures 0 WEP No Key (not serious) 0 WEP Encryption Boundary Check Failed: 0 WEP Encryption Station Not Ready: 0 WEP Encryption Buffer Alloc Failure: 0 WEP Encryption VOQ Drop: 0 WEP Encryption HwError: 0 WEP Decryption CRC Failure: 0 WEP Decryption Tag Frame: 0 WEP Decryption Wrong Station Type: 0 WEP Decryption Bad Length: 0 WEP Decryption Station Not Ready: 0 WEP Decryption Boundary Check Failed: 0 WEP Decryption WiFi Fragment CRC Failure: 0 WEP Decryption WiFi Frag Buffer Alloc Failure: 0 WEP Decryption WiFi Fragment Bad Length: 0 WEP Decryption Minimum WiFi Fragments: 0 WEP Decryption Invalid QOS WiFi Fragment: 0 WEP Decryption Boundary WiFi Fragment Boundary Check Failed: 0 WEP Decryption VOQ Drop: 0 WEP Decryption HwError: 0 TKIP Encryptions 0,0,0,0 TKIP Encryption Failures 0 TKIP Decryptions 0,0,0,0 TKIP Decryption Failures 0 TKIP MIC Failures 0 TKIP Decrypt Bad Counter 0,0,0,0 TKIP P1Key Not Ready 0 TKIP Serialized 0 TKIP Drops 0 TKIP Encryption Response Mismatch: 0 TKIP Encryption Boundary Check Failed: 0 TKIP Encryption Bad Length: 0 TKIP Encryption Bad EType: 0 TKIP Encryption Station Not Ready: 0 TKIP Encryption Buffer Allocation Failure: 0 TKIP Decryption CRC Failure: 0 TKIP Decryption Wrong Station Type: 0 TKIP Decryption Bad Length: 0 TKIP Decryption Boundary Check Failed: 0 TKIP Decryption Invalid QOS Frame: 0 TKIP Decryption Invalid Replay Counter: 0 TKIP Decryption Tagged Frame: 0 TKIP Encryption VOQ Drop: 0 TKIP Decryption VOQ Drop: 0 TKIP Encryption HwError: 0 TKIP Decryption HwError: 0 AESCCM Encryption Failures 0 AESCCM Decryption Failures 0 AESCCM Serialized 1 AESCCM Drops 0 AESCCM Encryption Boundary Check Failed: 0 AESCCM Encryption Bad Length: 0 AESCCM Encryption Bad EType: 0 AESCCM Encryption Station Not Ready: 0 AESCCM Encryption Buffer Alloc Failure: 0 AESCCM Encryption Response Mismatch: 0 AESCCM Encryption VOQ Drop: 0 AESCCM Encryption HwError: 0 AESCCM Decryption Wrong Station Type: 0 AESCCM Decryption Bad Length: 0 AESCCM Decryption Station Not Ready: 0 AESCCM Decryption Boundary Check Failed: 0 AESCCM Decryption Invalid QOS Frame: 0 AESCCM Decryption Invalid Replay Counter: 0 AESCCM Decryption Tagged Frame: 0 AESCCM Decryption Wifi Reassembly Failure: 0 AESCCM Decryption Wifi Jumbo Frame: 0 AESCCM Decryption Invalid QOS WiFi Fragment: 0 AESCCM Decryption WiFi Frag Buffer Alloc Failure: 0 AESCCM Decryption Invalid Replay Counter: 0 AESCCM Decryption Minimum WiFi Fragments: 0 AESCCM Decryption WiFi Fragment Boundary Check Failed: 0 AESCCM Decryption Buffer Alloc Failure: 0 AESCCM Decryption VOQ Drop: 0 AESCCM Decryption HwError: 0 AESCCM Decryption Mic Failure: 0 AESGCM Wifi Encryption Failures 0 AESGCM Wifi Decryption Failures 0 AESGCM Wifi Serialized 0 AESGCM Wifi Drops 0 AESGCM GCM SUBKEY H HW Fails 0 AESGCM GCM SUBKEY H Wifi Set Fails 0 AESGCM GCM SUBKEY H IPSec Set Fails 0 WEP CRC Entries Used 0 WEP CRC Alloc Failures 0 WEP CRC Sending 0 WEP CRC Sent 0 WEP CRC Bad Send 0 WEP CRC Unknown 0 Max Crypto HW Queues 0 Crypto HW Queues Used 0 Crypto HW Queue Alloc Fail 0 XSEC Encryption Failures 0 XSEC Decryption Failures 0 DOT1X Term Buffers 256 DOT1X Term Buffers Free 256 DOT1X Term Failures 0 DOT1X Term NAKs 0 DOT1X Term Resends 0 DOT1X Term Succeeded 0 DOT1X Bad Certificates 0 L2TP Hellos Sent 0 L2TP Hello Timeouts 0 IKE Rate 0 AESCCM Encryptions 214,0,0,0 AESCCM Decryptions 745,0,0,0 AESCCM Decrypt Bad Counter 0,0,0,0 AESGCM Encryptions 0,0,0,0 AESGCM Decryptions 0,0,0,0 AESGCM Wifi Decrypt Bad Counter 0,0,0,0 RSA Queued: 0 RSA Requests: 0 RSA Request Failed: 0 RSA Transmits: 0 RSA Microcode Error: 0 RSA DMA Error: 0 RSA Memory Read Error: 0 RSA Undefined Type Error: 0 RSA Undefined Func Error: 0 RSA VOQ Drop: 0 RSA HwError: 0 show datapath debug dma counters Datapath DMA Statistics ----------------------- Queue CP Full NP Full ----------------------- 0 0 0 1 0 0 2 0 0 3 0 0 show datapath debug trace-buffer Datapath Trace Buffer Entries: LTcpInit( 1b2) 0x0 0x100 0x10ba0b68 0x10 0x8 0xf0 LTcpInit( 1b2) 0x0 0x100 0x10ba0b78 0x10 0x8 0xf0 CLIInit( 46) 0x0 0x100 0x0 0x0 0x0 0x0 FileStrt( 81) 0x0 0x0 0x0 0x34d65c 0x0 0x560 FileDone( 7f) 0x0 0x0 0x0 0x0 0x0 0x34d65c FileStrt( 81) 0x0 0x1 0x0 0x599b5c 0x0 0x560 FileDone( 7f) 0x0 0x0 0x0 0x0 0x0 0x599b5c FileStrt( 81) 0x0 0x2 0x0 0x3add6c 0x0 0x560 FileDone( 7f) 0x0 0x0 0x0 0x0 0x0 0x3add6c FileStrt( 81) 0x0 0x3 0x0 0x3b2d24 0x0 0x560 FileDone( 7f) 0x0 0x0 0x0 0x0 0x0 0x3b2d24 MacAddr( c4) 0x0 0x0 0x0 0x0 0x1a1e21 0xdef00000 MacAddr( c4) 0x0 0x0 0x0 0x0 0x1a1e21 0xdef00000 MacAddr( c4) 0x0 0x0 0x0 0x0 0x1a1e21 0xdef00000 MacAddr( c4) 0x0 0x0 0x0 0x0 0x1a1e21 0xdef00000 MacAddr( c4) 0x0 0x0 0x0 0x0 0x1a1e21 0xdef00000 FireWall( 82) 0x0 0x3 0x0 0x0 0x0 0x1 FireWall( 82) 0x0 0x2e 0x0 0x0 0x0 0x1 FireWall( 82) 0x0 0x3d 0x0 0x640000 0x0 0x1 FireWall( 82) 0x0 0x29 0x0 0x0 0x0 0x1 FireWall( 82) 0x0 0x29 0x0 0x0 0x0 0x1 FireWall( 82) 0x0 0x29 0x0 0x0 0x0 0x1 FireWall( 82) 0x0 0x29 0x0 0x0 0x0 0x1 FireWall( 82) 0x0 0x3d 0x0 0x640000 0x0 0x1 BriDELMe( 3b) 0x0 0x20a3 0xd4b 0x1 0x0 0x0 RAddFail( 119) 0x0 0x20a3 0xc0a800f8 0x1a1e21 0xdef00001 0x3 CPDNSok( 4d) 0x0 0x0 0x0 0x0 0x0 0x0 CPDNSok( 4d) 0x0 0x1 0xc0a800f8 0x37 0x1f 0x0 IPMcst( a9) 0x0 0x0 0x0 0x1 0x0 0x0 IPMcst( a9) 0x0 0x0 0x0 0x2 0x0 0x0 IPMcst( a9) 0x0 0x0 0x0 0x3 0x0 0x0 Dot1X( 66) 0x0 0x0 0x0 0x0 0x0 0x1 WiredDOT1X( 241) 0x0 0x0 0x0 0x0 0x0 0x1 WiredDOT1X( 241) 0x0 0xff 0x1 0x1004 0x0 0x9 WiredDOT1X( 241) 0x0 0xff 0x2 0x1084 0x0 0x8 WiredDOT1X( 241) 0x0 0xff 0x3 0x1084 0x0 0x8 CPDNSok( 4d) 0x0 0x1 0x7f000001 0x22 0xa 0x0 CPDNSok( 4d) 0x0 0x1 0x0 0x22 0xa 0x0 CPDNSok( 4d) 0x0 0x1 0xc0a800f8 0x37 0x1f 0x0 CPDNSok( 4d) 0x0 0x1 0x0 0x37 0x1f 0x0 CPDNSok( 4d) 0x0 0x1 0xc0a800f8 0x37 0x1f 0x0 CPDNSok( 4d) 0x0 0x1 0x0 0x37 0x1f 0x0 CPDNSok( 4d) 0x0 0x1 0xc0a800f8 0x37 0x1f 0x0 CPDNSok( 4d) 0x0 0x1 0x0 0x37 0x1f 0x0 CPDNSok( 4d) 0x0 0x1 0xc0a800f8 0x37 0x1f 0x0 CPDNSok( 4d) 0x0 0x1 0x0 0x37 0x1f 0x0 RAddFail( 119) 0x0 0x20a3 0xc0a896fb 0x1a1e21 0xdef00002 0x3 RAddFail( 119) 0x0 0x20a3 0xc0a896fb 0x1a1e21 0xdef00002 0x3 BriDELMe( 3b) 0x0 0x20a3 0x4b4 0x2 0x0 0x0 BriDELMe( 3b) 0x0 0x20a3 0x2830 0x2 0x0 0x0 show datapath frame counters Datapath Frame Statistics ------------------------- Allocated Frames 773 IP Datagrams Fragmented 0 IP Fragmentation Failures 0 IP Reassembled Datagrams 339 IP Reassembly overlaps 0 IP Reassembly Failures 0 Unknown Unicast 35 Invalid IP headers Received 0 IPv6 Datagrams Fragmented 0 IPv6 Fragmentation Failures 0 IPv6 Reassembled Datagrams 0 IPv6 Reassembly overlaps 0 IPv6 Reassembly Failures 0 Invalid IPv6 headers Received 0 Too many IPv6 ext. headers 0 BPDUs Received 0 LAPDUs Received 0 Runts Received 0 WIFI Frames Re-Assembled 0 WIFI Re-Assembly Failures 0 WIFI AMSDU 0 WIFI AMSDU De-aggregated 0 WIFI AMSDU De-agg Failures 0 WIFI Jumbo Denied 0 xSec Frames Re-Assembled 0 xSec Re-Assembly Failures 0 Station Not Data Ready 0 Association Throttle 0 CP Policed Frames 0 ARP Request Spoofs 0 ARP Reply Spoofs 0 Gratuitous ARP Spoofs 0 Frame Denied IPIP Loop 0 IKE Throttle 0 RTP Sampling 0 EOP zero frames 0 IP spoofs 0 No tailroom DDMO Drops 0 Frame Length Failures 0 Invalid ingress frames 0 Invalid opcode 0 Invalid Acl 0 Invalid Port 0 Invalid Slot 0 Heartbeats dropped by FP 0 Heartbeats sent to SP 0 NAE Transmit Failures 0 SLOT 0 SLOT 1 SLOT 2 SLOT 3 ------------------------------------------------------------- Rx Frames 0 10937 0 0 Rx Failures 0 0 0 0 Rx Underflows 0 0 0 0 Rx Overflows 0 0 0 0 Tx Frames 2950 2857 0 0 Tx Failures 0 0 0 0 Tx Underflows 0 0 0 0 Tx Overflows 0 0 0 0 Descr Failures 0 0 0 0 Alloc Failures 0 0 0 0 Dot1d Discards 0 896 0 0 Dot1Q Discards 0 0 0 0 Denied Frames 0 68 0 0 Policed Frames 0 0 0 0 show datapath hardware counters Hardware accelarator not present show datapath hardware statistics Hardware accelarator not present show datapath ip-reassembly counters Datapath IP Reassembly Table Statistics ----+-----------+-----------+-----------+-----------+-----------+ |Current |High |Max |Total |Allocation | Cpu |Entries |Water-Mark |Entries |Entries |Failures | ----+-----------+-----------+-----------+-----------+-----------+ 0 |0 |0 |0 |0 |0 | 1 |0 |0 |0 |0 |0 | show datapath lag table Datapath Trunk (Port-Channel) Table ----------------------------------- Port-Channel Ports Hash Distribution ------------ ------ ----------------- show datapath maintenance counters Datapath Maintenance Statistics ------------------------------- Buffer Underruns 0 BWM Buffer Exhaustion 0 Buffer Alloc Failure 0 Tunnel Bufs cleaned 0 Station Bufs cleaned 0 Tun Buf delayed frees 0 Stn Buf delayed frees 0 Tunnel Route Failures 0 ECC Errors 0 PCI Errors 0 Length Errors 0 Memory Size 0 MB Memory Speed 0 MHz show datapath message-queue counters Datapath Message Queue Statistics --------------------------------- Cpu--> 3 4 5 6 Opcode HighPrio LowPrio HighPrio LowPrio HighPrio LowPrio HighPrio LowPrio ------------------------------------------------------------------------------- BRIDGE 00000ff0 00000009 00000559 00000006 0000054d 00000001 ROUTE 00000086 00000008 0000002e 00000002 0000002d SESSION 00000001 00000360 000001a4 000001be FORWARD 00001560 00000007 HELLO 000007e9 000007e9 000007e9 000007e9 ARP 00000006 00000034 00000006 00000034 WIFI 000000c6 ALLOC 0000001b 0000000c 00000009 8021X 00000002 ACL 0000000a 0000000a ACE 00000025 00000025 USER 0000001a 0000001a VLAN 0000003a 0000003a MCAST 00000002 00000002 PORT 00000055 00000055 MAC 00000030 00000030 TUNNEL 00000032 00000032 LAG 00000018 00000018 VPN 00000004 00000004 PHY 00000004 00000004 NAT 00000003 00000003 USER_TMO 00000002 00000002 ACESTATS 0000013d 0000013d FORWUNEN 00000002 00000001 STATS 00000030 00000032 VPN_CLEA 00000001 00000001 AUTH 00000002 00000002 CPDNS 0000000a 0000000a FIREWALL 00000040 00000040 FILE 00003078 00003078 GETNEXT 0000008e 0000008e STATION2 00000003 00000003 AESCCMKE 00000009 00000009 PIM 00000008 00000008 SESSIONP 00000265 SERVICE 00000001 00000001 STATS2 000007e9 000007e9 8021XTER 0000000a 0000000a RAND 00000002 00000002 IKEDPD 00000001 00000001 ACE2 000000b8 000000b8 ACL2 00000004 00000004 USER2 00000010 00000010 SRC_BRID 00000005 00000001 00000002 ACK_CP 000032fc GRENACHE 00000025 HOST_DOM 00000002 00000002 RSA_MOD_ 00000008 00000008 STP 00000002 00000002 VIA_SSL_ 00000001 00000001 WIRED_AU 00000001 00000001 BULK_ACL 00000005 00000005 BULK_ACE 00000020 00000020 IPV6 00000004 00000004 SET_EPOC 00000002 00000002 Cpu--> 7 Opcode HighPrio LowPrio ------------------------------------------------------------------------------- RAW/FREE 00000097 BRIDGE 0000054a 00000002 ROUTE 0000000c 0000002b SESSION 000001b6 HELLO 000007e9 ALLOC 00000006 FORWUNEN 00000001 SRC_BRID 00000002 show datapath nat table Datapath NAT Table Entries -------------------------- Pool SIP Start SIP End DIP ---- --------------- --------------- --------------- 0 192.168.0.248 192.168.0.248 192.168.0.248 1 0.0.0.0 0.0.0.0 0.0.0.0 show datapath port Datapath Port Table Entries --------------------------- Flags: Q - trunk, T - trusted, B - blocked, L - LAG M - tunneled node, X - xSec Port PVID Ingress ACL Egress ACL Session ACL Flags ---- ---- ----------- ---------- ----------- ----- 1/0 1 0 0 0 T 1/1 1 0 0 0 T 1/2 2 0 0 0 TB 1/3 3 0 0 0 TB 1/4 1 0 0 0 T 1/5 1 0 0 0 TB 1/6 1 0 0 0 TB 1/7 1 0 0 0 TB Port Entries: 8 show datapath route counters Datapath Route Table Statistics ------------------------------- Current Entries 4 High Water Mark 5 Maximum Entries 2047 Total Entries 6 Allocation Failures 0 Max link length 0 DHCP RC refresh 0 show datapath route verbose Route Table Entries ------------------- Flags: L - Local, P - Permanent, T - Tunnel, I - IPsec, M - Mobile, A - ARP, D - Drop Route VerNum Index [RTV RTI] IP Mask Gateway Cost VLAN Flags RTV RTI --------------- --------------- --------------- ---- ---- ------- --------- 240.0.0.0 248.0.0.0 0.0.0.0 0 0 D 4 3 0.0.0.0 0.0.0.0 192.168.0.250 1 0 5 4 192.168.0.0 255.255.255.0 192.168.0.248 0 1 L 2 1 127.0.0.0 255.0.0.0 0.0.0.0 0 0 D 3 2 show datapath route-cache counters Datapath Route Cache Statistics ------------------------------- Current Entries 9 High Water Mark 11 Maximum Entries 32767 Total Entries 12 Allocation Failures 0 Max link length 1 Stale Regular/Perm 0/2 Stale Refreshed (Update/Delete) 2/0 DHCP RC refresh 0 show datapath route-cache verbose Route Cache Entries ------------------- Flags: L - local, P - Permanent, T - Tunnel, I - IPsec, M - Mobile, A - ARP, D - Drop R - Routed across vlan Parent Route: VerNum Index [PRTV PRTI] IP MAC VLAN Flags PRTV PRTI --------------- ----------------- ----------- ------- --------- 192.168.0.248 00:1A:1E:21:DE:F0 1 LP 0 0 192.168.0.253 6C:F3:7F:C4:5E:B7 1 A 2 1 192.168.0.254 6C:F3:7F:C4:5E:C2 1 A 2 1 192.168.0.50 78:2B:CB:F4:25:CC 1 A 2 1 192.168.150.5 00:00:00:00:00:00 tunnel 9 PT 5 0 192.168.150.6 00:00:00:00:00:00 tunnel 11 PT 5 0 127.1.0.1 00:1A:1E:21:DE:F0 0 LP 0 0 show datapath session counters Datapath Session Table Statistics --------------------------------- Current Entries 22 High Water Mark 100 Maximum Entries 65535 Total Entries 915 Allocation Failures 0 Duplicate Entries 0 Cross linked Entries 0 No Reverse Entries 0 Max link length 1 Aged Entries 887 Stale Entries 0 show datapath session table Datapath Session Table Entries ------------------------------ Flags: F - fast age, S - src NAT, N - dest NAT D - deny, R - redirect, Y - no syn H - high prio, P - set prio, T - set ToS C - client, M - mirror, V - VOIP Q - Real-Time Quality analysis I - Deep inspect, U - Locally destined E - Media Deep Inspect, G - media signal u - User Index Source IP Destination IP Prot SPort DPort Cntr Prio ToS Age Destination TAge UsrIdx UsrVer Flags -------------- -------------- ---- ----- ----- ---- ---- --- --- ----------- ---- ------ ------ ----- 192.168.150.5 192.168.0.248 17 8209 8209 0/0 0 0 0 tunnel 10 265 4 4 FC 192.168.150.6 192.168.0.248 17 8209 8209 0/0 0 0 0 tunnel 12 28 6 6 FC 192.168.0.248 192.168.150.5 47 0 0 0/0 0 0 0 tunnel 10 75e 1 1 F 192.168.0.248 192.168.150.6 47 0 0 0/0 0 0 0 tunnel 12 75e 1 1 F 192.168.0.253 192.168.0.248 17 49152 4500 0/0 0 0 0 1/1 766 0 0 FC 192.168.0.254 192.168.0.248 17 49152 4500 0/0 0 0 0 1/0 766 0 0 FC 192.168.0.50 192.168.0.248 6 50868 4343 0/0 0 0 1 1/4 20 0 0 FC 192.168.0.50 192.168.0.248 6 50864 4343 0/0 0 0 1 1/4 30 0 0 C 192.168.0.50 192.168.0.248 6 50867 4343 0/0 0 0 1 1/4 20 0 0 FC 192.168.150.5 192.168.0.248 17 21641 2 0/0 0 0 1 tunnel 10 2 4 4 FC 192.168.150.6 192.168.0.248 17 42916 2 0/0 0 0 1 tunnel 12 1e 6 6 FC 192.168.150.6 192.168.0.248 17 42919 2 0/0 0 0 1 tunnel 12 13 6 6 FC 192.168.150.6 192.168.0.248 17 42921 2 0/0 0 0 0 tunnel 12 3 6 6 FC 192.168.0.248 192.168.0.254 17 4500 49152 0/0 0 0 14 1/0 766 1 1 F 192.168.0.248 192.168.0.253 17 4500 49152 0/0 0 0 14 1/1 766 1 1 F 192.168.0.248 192.168.0.50 6 4343 50864 0/0 0 0 0 1/4 30 1 1 192.168.0.248 192.168.0.50 6 4343 50867 0/0 0 0 1 1/4 20 1 1 F 192.168.0.248 192.168.0.50 6 4343 50868 0/0 0 0 1 1/4 20 1 1 F 192.168.150.6 192.168.0.248 47 0 0 0/0 0 0 0 tunnel 12 75e 6 6 FC 192.168.150.5 192.168.0.248 47 0 0 0/0 0 0 0 tunnel 10 75e 4 4 FC 192.168.0.248 192.168.150.6 17 8209 8209 0/0 0 0 0 tunnel 12 28 1 1 F 192.168.0.248 192.168.150.5 17 8209 8209 0/0 0 0 0 tunnel 10 265 1 1 F show datapath session ipv6 Datapath Session Table Statistics --------------------------------- Current Entries 0 High Water Mark 0 Maximum Entries 65535 Total Entries 0 Allocation Failures 0 Duplicate Entries 0 Cross linked Entries 0 No Reverse Entries 0 Max link length 0 Aged Entries 0 Stale Entries 0 Datapath Session Table Entries ------------------------------ Flags: F - fast age, S - src NAT, N - dest NAT D - deny, R - redirect, Y - no syn H - high prio, P - set prio, T - set ToS C - client, M - mirror, V - VOIP I - Deep inspect, U - Locally destined u - User Index Source IP Destination IP Prot SPort DPort Cntr Prio ToS Age Destination TAge UsrIdx UsrVer Flags --------- -------------- ---- ----- ----- ---- ---- --- --- ----------- ---- ------ ------ ----- show datapath station table Datapath Station Table Entries ------------------------------ Flags: W - WEP, T - TKIP, A - AESCCM, M - WMM N - .11n client S - AMSDU, G - AESGCM MAC BSSID VLAN Bad Decrypts Bad Encrypts Cpu Qsz RSN cap Aid Flags ----------------- ----------------- ---- ------------ ------------ --- ---------- ------- ----- show datapath tunnel counters Datapath Tunnel Table Statistics -------------------------------- Current Entries 22 Pending Deletes 0 High Water Mark 22 Maximum Entries 8191 Total Entries 22 Allocation Failures 0 Max link length 1 show datapath tunnel table Datapath Tunnel Table Entries ----------------------------- Flags: E - Ether encap, I - Wi-Fi encap, R - Wired tunnel, F - IP fragment OK W - WEP, K - TKIP, A - AESCCM, G - AESGCM, M - no mcast src filtering S - Single encrypt, U - Untagged, X - Tunneled node, 1(cert-id) - 802.1X Term-PEAP 2(cert-id) - 802.1X Term-TLS, T - Trusted, L - No looping, d - Drop Bcast/Mcast, D - Decrypt tunnel, a - Reduce ARP packets in the air, e - EAPOL only C - Prohibit new calls, P - Permanent, m - Convert multicast n - Don't convert IPv6 Mcast RA to Ucast, s - Split tunnel # Source Destination Prt Type MTU VLAN Acls BSSID Decaps Encaps Heartbeats Cpu QSz Flags --- -------------- -------------- --- ---- ---- ---- ------------------- ----------------- ---------- ---------- ---------- --- --- ----- 15 192.168.0.248 192.168.150.6 47 9000 1200 0 0 0 0 0 6C:F3:7F:C4:5E:B7 1932 0 1932 5 0 TE 13 192.168.0.248 192.168.150.5 47 9000 1200 0 0 0 0 0 6C:F3:7F:C4:5E:C2 1933 0 1933 6 0 TE 19 192.168.0.248 192.168.150.6 47 8200 1200 2 0 0 49 0 6C:F3:7F:C5:EB:78 66 0 0 6 16 IMASPa 16 192.168.0.248 192.168.150.5 47 8210 1200 3 0 0 49 0 6C:F3:7F:C5:EC:29 0 0 0 5 16 IMASPa 20 192.168.0.248 192.168.150.6 47 8210 1200 3 0 0 49 0 6C:F3:7F:C5:EB:79 0 0 0 7 16 IMASPa 14 192.168.0.248 192.168.150.5 47 8200 1200 2 0 0 49 0 6C:F3:7F:C5:EC:28 813 216 0 6 16 IMASPa 21 192.168.0.248 192.168.150.6 47 8300 1200 2 0 0 49 0 6C:F3:7F:C5:EB:70 33 0 0 5 16 IMASPa 18 192.168.0.248 192.168.150.5 47 8310 1200 3 0 0 49 0 6C:F3:7F:C5:EC:21 0 0 0 6 16 IMASPa 22 192.168.0.248 192.168.150.6 47 8310 1200 3 0 0 49 0 6C:F3:7F:C5:EB:71 0 0 0 6 16 IMASPa 17 192.168.0.248 192.168.150.5 47 8300 1200 2 0 0 49 0 6C:F3:7F:C5:EC:20 33 0 0 7 16 IMASPa 9 SPI44381800out 192.168.0.254 50 IPSE 1500 0 routeDest 0000 0 4706 12 SPIAC306700 in 192.168.0.248 50 IPSE 1500 0 routeDest 0000 3362 0 11 SPIEAECEC00out 192.168.0.253 50 IPSE 1500 0 routeDest 0000 0 4734 10 SPI2C7A1C00 in 192.168.0.248 50 IPSE 1500 0 routeDest 0000 3817 0 show datapath tunnel heartbeat Datapath Tunnel Table Entries ----------------------------- Flags: E - Ether encap, I - Wi-Fi encap, R - Wired tunnel, F - IP fragment OK W - WEP, K - TKIP, A - AESCCM, G - AESGCM, M - no mcast src filtering S - Single encrypt, U - Untagged, X - Tunneled node, 1(cert-id) - 802.1X Term-PEAP 2(cert-id) - 802.1X Term-TLS, T - Trusted, L - No looping, d - Drop Bcast/Mcast, D - Decrypt tunnel, a - Reduce ARP packets in the air, e - EAPOL only C - Prohibit new calls, P - Permanent, m - Convert multicast n - Don't convert IPv6 Mcast RA to Ucast, s - Split tunnel # Source Destination Prt MTU Acls BSSID Decaps Encaps Heartbeats Seqnum Missed Outoforder Cpu QSz Flags --- -------------- -------------- --- ---- ------------------- ----------------- ---------- ---------- ---------- ------ ------ ---------- --- --- ----- 15 192.168.0.248 192.168.150.6 47 1200 0 0 0 0 6C:F3:7F:C4:5E:B7 1932 0 1932 1940 0 0 5 0 TE 13 192.168.0.248 192.168.150.5 47 1200 0 0 0 0 6C:F3:7F:C4:5E:C2 1933 0 1933 1941 0 0 6 0 TE show datapath user counters Datapath User Table Statistics ------------------------------ Current Entries(L2) 0 Current Entries(L3-v4) 7 Current Entries(L3-v6) 0 Total Current Entries(L2,L3) 7 Pending Deletes 0 High Water Mark 9 Maximum Entries 8191 Total Entries 9 Allocation Failures 0 Max link length 1 Aggregated User Entry Statistics -------------------------------- Current Entries 7 High Water Mark 8 Alloc Failures 0 Maximum Entries 1023 Total Entries 8 Invalid/Denied V4 Users 151 Invalid/Denied V6 Users 0 Force Delete(IPIP) 0 Mac Mismatch 0 User L2 add fail 0 User L3 add fail 0 User L2 del fail 0 User L3 del fail 0 Pending User del High 2 show datapath user table Datapath User Table Entries --------------------------- Flags: P - Permanent, W - WEP, T- TKIP, A - AESCCM, G - AESGCM, V - ProxyArp for User, X - ProxyARP to User, N - VPN, L - local, Y - Any IP user, R - Routed user, M - Media Capable, S - Src NAT with VLAN IP, E - L2 Enforced, F - IPIP Force Delete, O - VOIP user IP MAC ACLs Contract Location Age Sessions Vernum Flags --------------- ----------------- ------- --------- -------- ----- --------- ------ ----- 192.168.0.248 00:1A:1E:21:DE:F0 2700/0 0/0 0 4 0/65535 1 PL 192.168.0.253 00:00:00:00:00:00 1/0 0/0 0 42 0/65535 7 N 192.168.0.254 00:00:00:00:00:00 1/0 0/0 0 42 0/65535 5 N 192.168.150.251 00:1A:1E:21:DE:F0 2700/0 0/0 0 1898 0/65535 2 PL 192.168.150.5 00:00:00:00:00:00 4/0 0/0 0 1 3/65535 4 L 192.168.150.6 00:00:00:00:00:00 4/0 0/0 0 6 5/65535 6 L 192.168.200.251 00:1A:1E:21:DE:F0 2700/0 0/0 0 1898 0/65535 3 PL show datapath user ipv6 Datapath IPv6 User Table Entries -------------------------------- Flags: P - Permanent, W - WEP, T- TKIP, A - AESCCM, G - AESGCM, V - ProxyArp for User, X - ProxyARP to User, N - VPN, L - local, Y - Any IP user, R - Routed user, M - Media Capable, S - Src NAT with VLAN IP, E - L2 Enforced, O - VOIP user IP MAC ACLs Contract Location Age Sessions Vernum Flags -- --- ---- -------- -------- --- -------- ------ ----- show datapath utilization Datapath Network Processor Utilization ------+---------+---------+----------+ | Cpu utilization during past | Cpu | 1 Sec 4 Secs 64 Secs | ------+---------+---------+----------+ 3 | 0% | 0% | 0% | 4 | 0% | 0% | 0% | 5 | 0% | 0% | 0% | 6 | 0% | 0% | 0% | 7 | 0% | 0% | 0% | show datapath vlan table Datapath VLAN Table Entries --------------------------- Flags: N - Nat Inside, M - Route Multicast, R - Routing S - Snoop MLD, G - Snoop IGMP, P - Proxy IGMP B - BCMC Optimization, A - Proxy ARP, U - Suppress ARP 1(cert-id) - 8021X Term-PEAP, 2(cert-id) - 8021X Term-TLS VLAN Flags Ports ---- ------------ ----- 1 RU 1/0, 1/1, 1/4, 1/5, 1/6, 1/7 2 RU 1/2 3 RU 1/3 4095 RU 2/0, 2/1, 2/2, 2/3, 2/4, 2/5, 2/6, 2/7 show datapath vlan-mcast table Datapath VLAN Multicast Entries -------------------------------- VLAN Destinations ---- ------------ 1 1/0, 1/1, 1/4 show datapath route ipv6 IPv6 Route Table Entries ------------------------ Flags: L - Local, P - Permanent, T - Tunnel, I - IPsec, M - Mobile, A - ARP, D - Drop Prefix Gateway Cost VLAN Flags ------------------------------------------- ---------------------------------------- ---- ---- ---------------- show datapath tunnel ipv6 Datapath Tunnel Table Entries ----------------------------- Flags: E - Ether encap, I - Wi-Fi encap, R - Wired tunnel, F - IP fragment OK W - WEP, K - TKIP, A - AESCCM, M - no mcast src filtering S - Single encrypt, U - Untagged, X - MUX, 1 - 802.1X Term T - Trusted, L - No looping, d - Drop Bcast/Mcast, D - Decrypt tunnel a - Reduce ARP packets in the air, e - EAPOL only C - Prohibit new calls, P - Permanent, m - Convert multicast, n - Don't convert IPv6 Mcast RA to Ucast # Source Destination Prt Type MTU VLAN Acls BSSID Decaps Encaps Heartbeats Cpu QSz Flags --- ------------------------------------- --------------------------------------- --- ---- ---- ---- ------------------- ----------------- ---------- ---------- ---------- --- --- ----- show datapath exthdr Datapath IPv6 Default/Global EH types denied -------------------------------------------- show datapath ipv6-mcast % Incomplete command. show datapath ipv6-mcast group Datapath IPv6 Multicast Entries ----------------------------- Source Group --------------------------------------- --------------------------------------- show datapath ipv6-mcast destination Datapath IP Multicast Entries ----------------------------- Flags: m - Dyn Mcast Optimization Enable Source Group VLAN Destination Flags --------------------------------------- --------------------------------------- ---- ------------- ----- show datapath route-cache ipv6 Neighbor/Route Cache Entries ---------------------------- Flags: L - local, P - Permanent, T - Tunnel, I - IPsec, M - Mobile, A - ARP, D - Drop R - Routed across vlan IP MAC VLAN Flags --------------------------------------- ----------------- ----------- ---------------- fe80::1a:1e00:121:def0 00:1A:1E:21:DE:F0 1 LP fe80::1a:1e0f:ff21:def0 00:1A:1E:21:DE:F0 0 LP show netexthdr default Extended Header type(s) Denied ------------------------------ show netstat Active Internet connections (servers and established) Proto Recv-Q Send-Q Local Address Foreign Address State tcp 0 0 0.0.0.0:3306 0.0.0.0:* LISTEN tcp 0 0 0.0.0.0:17 0.0.0.0:* LISTEN tcp 0 0 0.0.0.0:8211 0.0.0.0:* LISTEN tcp 0 0 0.0.0.0:53 0.0.0.0:* LISTEN tcp 0 0 0.0.0.0:23 0.0.0.0:* LISTEN tcp 0 0 0.0.0.0:8088 0.0.0.0:* LISTEN tcp 0 0 0.0.0.0:1723 0.0.0.0:* LISTEN tcp 0 0 127.0.0.1:2300 0.0.0.0:* LISTEN tcp 0 0 :::9000 :::* LISTEN tcp 0 0 :::80 :::* LISTEN tcp 0 0 :::8080 :::* LISTEN tcp 0 0 :::8081 :::* LISTEN tcp 0 0 :::8084 :::* LISTEN tcp 0 0 :::53 :::* LISTEN tcp 0 0 :::22 :::* LISTEN tcp 0 0 :::4343 :::* LISTEN tcp 0 0 :::1111 :::* LISTEN tcp 0 0 :::23 :::* LISTEN tcp 0 0 :::443 :::* LISTEN tcp 0 0 ::ffff:192.168.0.2:4343 ::ffff:192.168.0.:50859 TIME_WAIT tcp 0 0 ::ffff:192.168.0.2:4343 ::ffff:192.168.0.:50867 TIME_WAIT tcp 0 0 ::ffff:192.168.0.2:4343 ::ffff:192.168.0.:50864 ESTABLISHED tcp 0 0 ::ffff:192.168.0.2:4343 ::ffff:192.168.0.:50868 TIME_WAIT udp 0 0 127.0.0.1:32768 0.0.0.0:* udp 0 0 127.0.0.1:32769 0.0.0.0:* udp 0 0 0.0.0.0:514 0.0.0.0:* udp 0 0 127.0.0.1:32771 0.0.0.0:* udp 0 0 127.0.0.1:32772 0.0.0.0:* udp 0 0 127.0.0.1:32773 0.0.0.0:* udp 0 0 127.0.0.1:32774 0.0.0.0:* udp 0 0 127.0.0.1:32775 0.0.0.0:* udp 0 0 127.0.0.1:32776 0.0.0.0:* udp 0 0 127.0.0.1:32777 0.0.0.0:* udp 0 0 127.0.0.1:32778 0.0.0.0:* udp 0 0 127.0.0.1:32779 0.0.0.0:* udp 0 0 127.0.0.1:32780 0.0.0.0:* udp 0 0 127.0.0.1:32781 0.0.0.0:* udp 0 0 127.0.0.1:32782 0.0.0.0:* udp 0 0 127.0.0.1:32783 0.0.0.0:* udp 0 0 0.0.0.0:32784 0.0.0.0:* udp 0 0 127.0.0.1:8465 0.0.0.0:* udp 0 0 127.0.0.1:32786 0.0.0.0:* udp 0 0 0.0.0.0:4500 0.0.0.0:* udp 0 0 192.168.0.248:32789 0.0.0.0:* udp 0 0 127.0.0.1:32790 0.0.0.0:* udp 0 0 127.0.0.1:32791 0.0.0.0:* udp 0 0 127.0.0.1:32792 0.0.0.0:* udp 0 0 127.0.0.1:32793 0.0.0.0:* udp 0 0 0.0.0.0:32794 0.0.0.0:* udp 0 0 127.0.0.1:32795 0.0.0.0:* udp 0 0 0.0.0.0:161 0.0.0.0:* udp 0 0 127.0.0.1:8227 0.0.0.0:* udp 0 0 0.0.0.0:1701 0.0.0.0:* udp 0 0 127.0.0.1:8360 0.0.0.0:* udp 0 0 127.0.0.1:8232 0.0.0.0:* udp 0 0 127.0.0.1:8361 0.0.0.0:* udp 0 0 127.0.0.1:8233 0.0.0.0:* udp 0 0 127.0.0.1:8362 0.0.0.0:* udp 0 0 127.0.0.1:8364 0.0.0.0:* udp 0 0 0.0.0.0:53 0.0.0.0:* udp 0 0 127.0.0.1:8375 0.0.0.0:* udp 0 0 0.0.0.0:67 0.0.0.0:* udp 0 0 0.0.0.0:67 0.0.0.0:* udp 0 0 127.0.0.1:8401 0.0.0.0:* udp 0 0 127.0.0.1:8402 0.0.0.0:* udp 0 0 127.0.0.1:8415 0.0.0.0:* udp 0 0 127.0.0.1:8417 0.0.0.0:* udp 0 0 0.0.0.0:500 0.0.0.0:* udp 0 0 192.168.0.248:123 0.0.0.0:* udp 0 0 127.0.0.3:123 0.0.0.0:* udp 0 0 127.0.0.2:123 0.0.0.0:* udp 0 0 127.0.0.1:123 0.0.0.0:* udp 0 0 0.0.0.0:123 0.0.0.0:* udp 0 0 :::514 :::* udp 0 0 :::8209 :::* udp 0 0 :::8211 :::* udp 0 0 :::53 :::* raw 0 0 0.0.0.0:1 0.0.0.0:* 7 raw 0 0 0.0.0.0:1 0.0.0.0:* 7 raw 0 0 0.0.0.0:89 0.0.0.0:* 7 raw 0 0 :::58 :::* 7 Active UNIX domain sockets (servers and established) Proto RefCnt Flags Type State I-Node Path unix 2 [ ] DGRAM 4863 /tmp/.sock/9341.sock unix 2 [ ] DGRAM 5385 /tmp/.sock/8404.sock unix 2 [ ] DGRAM 5387 /tmp/.sock/9404.sock unix 2 [ ] DGRAM 5392 /tmp/.sock/8445.sock unix 2 [ ] DGRAM 5394 /tmp/.sock/9445.sock unix 2 [ ] DGRAM 5397 /tmp/.sock/8446.sock unix 2 [ ] DGRAM 5399 /tmp/.sock/9446.sock unix 2 [ ] DGRAM 4633 /tmp/.sock/8370.sock unix 2 [ ] DGRAM 5402 /tmp/.sock/8441.sock unix 2 [ ] DGRAM 10779 /tmp/.sock/8222.sock unix 2 [ ] DGRAM 4635 /tmp/.sock/9370.sock unix 2 [ ] DGRAM 5404 /tmp/.sock/9441.sock unix 2 [ ] DGRAM 10781 /tmp/.sock/9222.sock unix 2 [ ] DGRAM 4894 /tmp/.sock/8231.sock unix 3 [ ] STREAM CONNECTED 10783 /var/profmgr/sapm unix 2 [ ] DGRAM 4896 /tmp/.sock/9231.sock unix 2 [ ] DGRAM 10788 /tmp/.sock/8456.sock unix 2 [ ] DGRAM 4900 /tmp/.sock/8405.sock unix 2 [ ] DGRAM 4902 /tmp/.sock/9405.sock unix 2 [ ] DGRAM 10790 /tmp/.sock/9456.sock unix 2 [ ] DGRAM 4905 /tmp/.sock/8409.sock unix 3 [ ] STREAM CONNECTED 10794 /var/profmgr/voice unix 2 [ ] DGRAM 4907 /tmp/.sock/9409.sock unix 2 [ ACC ] STREAM LISTENING 4655 /tmp/mysql.sock unix 2 [ ] DGRAM 4914 /tmp/.sock/8214.sock unix 2 [ ] DGRAM 4916 /tmp/.sock/9214.sock unix 2 [ ] DGRAM 4660 /tmp/.sock/8235.sock unix 2 [ ACC ] STREAM LISTENING 10805 /mswitch/apache/logs/cgisock unix 2 [ ] DGRAM 4918 /tmp/.sock/8420.sock unix 2 [ ] DGRAM 4662 /tmp/.sock/9235.sock unix 2 [ ] DGRAM 4920 /tmp/.sock/9420.sock unix 2 [ ] DGRAM 4665 /tmp/.sock/8220.sock unix 2 [ ] DGRAM 4667 /tmp/.sock/9220.sock unix 2 [ ] DGRAM 4926 /tmp/.sock/8345.sock unix 2 [ ] DGRAM 4670 /tmp/.sock/8388.sock unix 3 [ ] STREAM CONNECTED 10816 /var/profmgr/wms unix 2 [ ] DGRAM 4928 /tmp/.sock/9345.sock unix 2 [ ] DGRAM 4672 /tmp/.sock/9388.sock unix 2 [ ] DGRAM 4930 /tmp/.sock/8419.sock unix 2 [ ] DGRAM 4932 /tmp/.sock/9419.sock unix 2 [ ] DGRAM 4677 /tmp/.sock/8343.sock unix 3 [ ] STREAM CONNECTED 10822 /var/profmgr/cpsec unix 2 [ ] DGRAM 4679 /tmp/.sock/9343.sock unix 2 [ ] DGRAM 5450 /tmp/.sock/8448.sock unix 2 [ ] DGRAM 4939 /tmp/.sock/8460.sock unix 2 [ ] DGRAM 4941 /tmp/.sock/9460.sock unix 2 [ ] DGRAM 5453 /tmp/.sock/9448.sock unix 2 [ ] DGRAM 10831 /tmp/spectrum_unix_sock unix 2 [ ] DGRAM 4696 /tmp/.sock/8400.sock unix 2 [ ] DGRAM 4698 /tmp/.sock/9400.sock unix 2 [ ] DGRAM 4956 /tmp/.sock/8344.sock unix 2 [ ] DGRAM 4958 /tmp/.sock/9344.sock unix 2 [ ACC ] STREAM LISTENING 4706 /tmp/fipspipe unix 2 [ ] DGRAM 3688 /tmp/syslogcmd unix 2 [ ] DGRAM 4716 /tmp/.sock/8348.sock unix 2 [ ] DGRAM 4974 /tmp/.sock/8481.sock unix 2 [ ] DGRAM 4718 /tmp/.sock/9348.sock unix 2 [ ] DGRAM 4976 /tmp/.sock/9481.sock unix 2 [ ] DGRAM 10611 /tmp/.sock/8390.sock unix 2 [ ] DGRAM 10613 /tmp/.sock/9390.sock unix 2 [ ] DGRAM 4981 /tmp/.sock/8383.sock unix 2 [ ] DGRAM 4983 /tmp/.sock/9383.sock unix 3 [ ] STREAM CONNECTED 10616 /var/profmgr/msghh unix 2 [ ] DGRAM 4730 /tmp/msghdlr_comm unix 2 [ ] DGRAM 4988 /tmp/.sock/8359.sock unix 3 [ ] STREAM CONNECTED 10621 /var/profmgr/util_proc unix 2 [ ] DGRAM 4990 /tmp/.sock/9359.sock unix 2 [ ] DGRAM 4734 /tmp/.sock/8210.sock unix 2 [ ] DGRAM 5504 /tmp/.sock/8442.sock unix 2 [ ] DGRAM 5506 /tmp/.sock/9442.sock unix 2 [ ] DGRAM 5508 /tmp/.sock/8449.sock unix 3 [ ] STREAM CONNECTED 10629 /var/profmgr/auth unix 2 [ ] DGRAM 5510 /tmp/.sock/9449.sock unix 2 [ ] DGRAM 4998 /tmp/.sock/8437.sock unix 3 [ ] STREAM CONNECTED 10632 /var/profmgr/auth_xr unix 2 [ ] DGRAM 5000 /tmp/.sock/9437.sock unix 3 [ ] STREAM CONNECTED 10634 /var/profmgr/auth unix 2 [ ] DGRAM 10123 /tmp/.sock/8464.sock unix 2 [ ] DGRAM 5515 /tmp/.sock/8453.sock unix 2 [ ] DGRAM 5517 /tmp/.sock/9453.sock unix 2 [ ] DGRAM 4749 /tmp/.sock/8378.sock unix 2 [ ] DGRAM 10125 /tmp/.sock/9464.sock unix 2 [ ] DGRAM 5520 /tmp/.sock/8455.sock unix 2 [ ] DGRAM 5008 /tmp/.sock/8366.sock unix 2 [ ] DGRAM 4752 /tmp/.sock/9378.sock unix 2 [ ] DGRAM 5522 /tmp/.sock/9455.sock unix 2 [ ] DGRAM 5010 /tmp/.sock/9366.sock unix 2 [ ] DGRAM 5424 @/org/kernel/udev/udevd unix 2 [ ] DGRAM 5025 /tmp/.sock/8237.sock unix 2 [ ] DGRAM 4770 /tmp/.sock/8226.sock unix 2 [ ] DGRAM 5027 /tmp/.sock/9237.sock unix 2 [ ] DGRAM 4772 /tmp/.sock/9226.sock unix 2 [ ] DGRAM 5286 /tmp/.sock/8377.sock unix 44 [ ] DGRAM 3750 /dev/log unix 2 [ ] DGRAM 5543 /tmp/.sock/8458.sock unix 2 [ ] DGRAM 5288 /tmp/.sock/9377.sock unix 2 [ ] DGRAM 5545 /tmp/.sock/9458.sock unix 2 [ ] DGRAM 4778 /tmp/.sock/8407.sock unix 2 [ ACC ] STREAM LISTENING 5547 /tmp/cli-helper.sock unix 2 [ ] DGRAM 4780 /tmp/.sock/9407.sock unix 3 [ ] STREAM CONNECTED 10669 /var/profmgr/password_policy_aaa unix 2 [ ] DGRAM 5037 /tmp/.sock/8236.sock unix 2 [ ] DGRAM 5039 /tmp/.sock/9236.sock unix 2 [ ] DGRAM 5296 /tmp/.sock/8384.sock unix 2 [ ] DGRAM 4784 /tmp/.sock/8372.sock unix 2 [ ] DGRAM 5298 /tmp/.sock/9384.sock unix 2 [ ] DGRAM 4786 /tmp/.sock/9372.sock unix 2 [ ] DGRAM 5562 /tmp/.sock/8379.sock unix 2 [ ] DGRAM 5050 /tmp/.sock/8440.sock unix 2 [ ] DGRAM 4795 /tmp/.sock/8212.sock unix 2 [ ] DGRAM 5564 /tmp/.sock/9379.sock unix 2 [ ] DGRAM 5053 /tmp/.sock/9440.sock unix 2 [ ] DGRAM 4797 /tmp/.sock/9212.sock unix 2 [ ] DGRAM 5315 /tmp/.sock/8392.sock unix 2 [ ] DGRAM 5317 /tmp/.sock/9392.sock unix 2 [ ] DGRAM 4806 /tmp/.sock/8385.sock unix 2 [ ] DGRAM 4808 /tmp/.sock/9385.sock unix 2 [ ] DGRAM 4810 /tmp/.sock/8416.sock unix 2 [ ] DGRAM 5323 /tmp/.sock/8380.sock unix 2 [ ] DGRAM 4812 /tmp/.sock/9416.sock unix 2 [ ] DGRAM 5325 /tmp/.sock/9380.sock unix 2 [ ACC ] STREAM LISTENING 10703 /tmp/sshclicomm unix 2 [ ] DGRAM 5327 /tmp/.sock/8355.sock unix 2 [ ] DGRAM 5329 /tmp/.sock/9355.sock unix 2 [ ] DGRAM 5075 /tmp/.sock/8224.sock unix 2 [ ] DGRAM 5077 /tmp/.sock/9224.sock unix 2 [ ] DGRAM 5079 /tmp/.sock/8421.sock unix 2 [ ] DGRAM 4823 /tmp/.sock/8389.sock unix 2 [ ] DGRAM 5081 /tmp/.sock/9421.sock unix 2 [ ] DGRAM 4825 /tmp/.sock/9389.sock unix 3 [ ] STREAM CONNECTED 10715 /var/profmgr/http_wrap unix 2 [ ACC ] STREAM LISTENING 10206 /var/profmgr/profmgr unix 2 [ ] DGRAM 5086 /tmp/.sock/8459.sock unix 2 [ ACC ] STREAM LISTENING 10208 /var/profmgr/profmgr_xr unix 2 [ ] DGRAM 5088 /tmp/.sock/9459.sock unix 3 [ ] STREAM CONNECTED 10220 /var/profmgr/localdb unix 3 [ ] STREAM CONNECTED 10223 /var/profmgr/password_policy_userdb unix 2 [ ] DGRAM 5361 /tmp/.sock/8413.sock unix 2 [ ] DGRAM 4850 /tmp/.sock/8342.sock unix 2 [ ] DGRAM 5363 /tmp/.sock/9413.sock unix 2 [ ACC ] STREAM LISTENING 10740 /tmp/l2tppipe unix 2 [ ] DGRAM 4852 /tmp/.sock/9342.sock unix 2 [ ] DGRAM 4861 /tmp/.sock/8341.sock unix 2 [ ] DGRAM 12695 unix 3 [ ] STREAM CONNECTED 11779 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 11778 unix 3 [ ] STREAM CONNECTED 11777 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 11776 unix 3 [ ] STREAM CONNECTED 11775 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 11774 unix 3 [ ] STREAM CONNECTED 10911 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 10910 unix 3 [ ] STREAM CONNECTED 10844 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 10843 unix 3 [ ] STREAM CONNECTED 10824 /var/profmgr/profmgr unix 3 [ ] STREAM CONNECTED 10818 /var/profmgr/profmgr unix 3 [ ] STREAM CONNECTED 10798 /var/profmgr/profmgr unix 2 [ ] DGRAM 10786 unix 3 [ ] STREAM CONNECTED 10785 /var/profmgr/profmgr unix 2 [ ] DGRAM 10777 unix 3 [ ] STREAM CONNECTED 10721 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 10720 unix 3 [ ] STREAM CONNECTED 10717 /var/profmgr/profmgr unix 3 [ ] STREAM CONNECTED 10671 /var/profmgr/profmgr unix 2 [ ] DGRAM 10650 unix 3 [ ] STREAM CONNECTED 10636 /var/profmgr/profmgr unix 3 [ ] STREAM CONNECTED 10637 /var/profmgr/profmgr_xr unix 3 [ ] STREAM CONNECTED 10631 /var/profmgr/profmgr unix 3 [ ] STREAM CONNECTED 10623 /var/profmgr/profmgr unix 3 [ ] STREAM CONNECTED 10618 /var/profmgr/profmgr unix 2 [ ] DGRAM 10594 unix 3 [ ] STREAM CONNECTED 10225 /var/profmgr/profmgr unix 3 [ ] STREAM CONNECTED 10222 /var/profmgr/profmgr unix 2 [ ] DGRAM 7644 unix 2 [ ] DGRAM 7258 unix 2 [ ] DGRAM 5557 unix 2 [ ] DGRAM 5556 unix 2 [ ] DGRAM 5555 unix 2 [ ] DGRAM 5554 unix 2 [ ] DGRAM 5553 unix 2 [ ] DGRAM 5552 unix 2 [ ] DGRAM 5551 unix 3 [ ] STREAM CONNECTED 5542 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 5541 unix 2 [ ] DGRAM 5537 unix 2 [ ] DGRAM 5536 unix 2 [ ] DGRAM 5535 unix 2 [ ] DGRAM 5534 unix 2 [ ] DGRAM 5533 unix 2 [ ] DGRAM 5532 unix 2 [ ] DGRAM 5531 unix 2 [ ] DGRAM 5530 unix 2 [ ] DGRAM 5529 unix 2 [ ] DGRAM 5528 unix 2 [ ] DGRAM 5527 unix 2 [ ] DGRAM 5526 unix 3 [ ] STREAM CONNECTED 5503 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 5502 unix 2 [ ] DGRAM 5429 unix 2 [ ] DGRAM 5421 unix 3 [ ] STREAM CONNECTED 5375 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 5374 unix 2 [ ] DGRAM 5349 unix 2 [ ] DGRAM 5311 unix 2 [ ] DGRAM 5085 unix 2 [ ] DGRAM 5018 unix 3 [ ] STREAM CONNECTED 4986 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 4985 unix 3 [ ] STREAM CONNECTED 4972 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 4971 unix 3 [ ] STREAM CONNECTED 4874 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 4873 unix 3 [ ] STREAM CONNECTED 4871 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 4870 unix 2 [ ] DGRAM 4859 unix 2 [ ] DGRAM 4856 unix 3 [ ] STREAM CONNECTED 4830 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 4829 unix 2 [ ] DGRAM 4791 unix 2 [ ] DGRAM 4790 unix 3 [ ] STREAM CONNECTED 4789 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 4788 unix 2 [ ] DGRAM 4782 unix 2 [ ] DGRAM 4776 unix 3 [ ] STREAM CONNECTED 4775 /tmp/mysql.sock unix 3 [ ] STREAM CONNECTED 4774 unix 2 [ ] DGRAM 4694 unix 2 [ ] DGRAM 4682 unix 2 [ ] DGRAM 4674 unix 2 [ ] DGRAM 4659 show netstat stats Ip: 5585 total packets received 0 forwarded 0 incoming packets discarded 4491 incoming packets delivered 4833 requests sent out 902 reassemblies required 216 packets reassembled ok 33 fragments received ok Icmp: 9 ICMP messages received 0 input ICMP message failed. ICMP input histogram: destination unreachable: 7 echo replies: 2 7 ICMP messages sent 0 ICMP messages failed ICMP output histogram: destination unreachable: 7 Tcp: 1 active connections openings 170 passive connection openings 0 failed connection attempts 18 connection resets received 1 connections established 2510 segments received 3965 segments send out 0 segments retransmited 0 bad segments received. 1 resets sent Udp: 1790 packets received 5 packets to unknown port received. 0 packet receive errors 854 packets sent TcpExt: ArpFilter: 0 68 TCP sockets finished time wait in fast timer 70 delayed acks sent 5 delayed acks further delayed because of locked socket 1420 packets directly received from backlog 232 packets header predicted 2 packets header predicted and directly queued to user TCPPureAcks: 714 TCPHPAcks: 702 TCPRenoRecovery: 0 TCPSackRecovery: 0 TCPSACKReneging: 0 TCPFACKReorder: 0 TCPSACKReorder: 0 TCPRenoReorder: 0 TCPTSReorder: 0 TCPFullUndo: 0 TCPPartialUndo: 0 TCPDSACKUndo: 0 TCPLossUndo: 0 TCPLoss: 0 TCPLostRetransmit: 0 TCPRenoFailures: 0 TCPSackFailures: 0 TCPLossFailures: 0 TCPFastRetrans: 0 TCPForwardRetrans: 0 TCPSlowStartRetrans: 0 TCPTimeouts: 0 TCPRenoRecoveryFail: 0 TCPSackRecoveryFail: 0 TCPSchedulerFailed: 0 TCPRcvCollapsed: 0 TCPDSACKOldSent: 0 TCPDSACKOfoSent: 0 TCPDSACKRecv: 0 TCPDSACKOfoRecv: 0 TCPAbortOnSyn: 0 TCPAbortOnData: 0 TCPAbortOnClose: 0 TCPAbortOnMemory: 0 TCPAbortOnTimeout: 0 TCPAbortOnLinger: 0 TCPAbortFailed: 0 TCPMemoryPressures: 0 show firewall Global firewall policies ------------------------ Policy Action Rate Slot/Port ------ ------ ---- --------- Enforce TCP handshake before allowing data Disabled Prohibit RST replay attack Disabled Deny all IP fragments Disabled Prohibit IP Spoofing Enabled Monitor ping attack Disabled Monitor TCP SYN attack Disabled Monitor IP sessions attack Disabled Deny inter user bridging Disabled Log all received ICMP errors Disabled Per-packet logging Disabled Session mirror destination Disabled Stateful SIP Processing Enabled Allow tri-session with DNAT Disabled Disable FTP server No GRE call id processing Disabled Session Idle Timeout Disabled Broadcast-filter ARP Disabled WMM content enforcement Disabled Session VOIP Timeout Disabled Stateful H.323 Processing Enabled Stateful SCCP Processing Enabled Only allow local subnets in user table Disabled Monitor/police CP attacks Disabled Rate limit CP untrusted ucast traffic Enabled 20 Mbps Rate limit CP untrusted mcast traffic Enabled 4 Mbps Rate limit CP trusted ucast traffic Enabled 320 Mbps Rate limit CP trusted mcast traffic Enabled 4 Mbps Rate limit CP route traffic Enabled 2 Mbps Rate limit CP session mirror traffic Enabled 2 Mbps Rate limit CP auth process traffic Enabled 2 Mbps Deny inter user traffic Disabled Prohibit ARP Spoofing Disabled Stateful VOCERA Processing Enabled Stateful UA Processing Enabled Enforce bw contracts for broadcast traffic Disabled Multicast automatic shaping Disabled Clear Sessions on Role Update Disabled Enforce TCP Sequence numbers Disabled AMSDU Enabled Session mirror IPSEC Disabled show firewall-cp CP firewall policies -------------------- Protocol Start Port End Port Permit/Deny hits contract -------- ---------- -------- ----------- ---- -------- show firewall-cp internal CP firewall policies -------------------- Protocol Start Port End Port Permit/Deny hits contract -------- ---------- -------- ----------- ---- -------- 6 1723 1723 Permit 0 17 1701 1701 Permit 0 6 23 23 Deny 0 6 8084 8084 Deny 0 6 3306 3306 Deny 0 17 8209 8209 Permit 611 6 8211 8211 Permit 0 6 2300 2300 Permit 0 6 2323 2323 Permit 0 6 8211 8211 Permit 0 6 21 22 Permit 0 6 17 17 Permit 0 17 514 514 Permit 4 50 0 65535 Permit 0 17 8200 8200 Permit 0 112 0 65535 Permit 0 89 0 65535 Permit 0 2 0 65535 Permit 0 17 1702 1702 Permit 0 17 500 500 Permit 0 17 4500 4500 Permit 0 4 0 65535 Permit 0 47 0 65535 Permit 136 6 80 80 Permit 0 6 443 443 Permit 0 6 4343 4343 Permit 1169 6 8080 8083 Permit 0 6 8088 8088 Permit 0 6 8888 8888 Permit 0 6 636 636 Permit 0 6 389 389 Permit 0 6 5080 5080 Permit 0 17 1645 1645 Permit 0 17 1812 1813 Permit 0 17 8211 8211 Permit 0 17 53 53 Permit 0 17 67 68 Permit 0 17 69 69 Permit 0 17 123 123 Permit 0 17 3799 3799 Permit 0 17 161 161 Permit 0 17 5060 5060 Permit 0 17 8209 8209 Permit 10 17 434 434 Permit 0 1 1024 65535 Permit 0 0 0 65535 Deny 677 show ipv6 firewall Global IPv6 Packet Processing is Disabled Global IPv6 firewall policies ----------------------------- Policy Action Rate Slot/Port ------ ------ ---- --------- Monitor ping attack Disabled Monitor TCP SYN attack Disabled Monitor IPv6 sessions attack Disabled Deny inter user bridging Disabled Deny all IPv6 fragments Disabled Per-packet logging Disabled Enforce TCP handshake before allowing data Disabled Prohibit RST replay attack Disabled Session Idle Timeout Disabled Session mirror destination Disabled Prohibit IPv6 Spoofing Disabled Enable IPv6 Stateful Firewall Enabled Extension header parse length Enabled 100 bytes show ip access-list brief Access list table (4 - IPv4, 6 - IPv6) -------------------------------------- Name Type Use Count Roles ---- ---- --------- ----- allow-diskservices session(4) allow-printservices session(4) allowall session(46) 3 default-vpn-role default-via-role authenticated ap-acl session(4) 1 ap-role ap-uplink-acl session(4) captiveportal session(4) 2 guest-logon logon captiveportal6 session(6) 2 guest-logon logon citrix-acl session(4) control session(4) 1 ap-role cplogout session(4) dhcp-acl session(4) 2 voice guest dns-acl session(4) 2 voice guest h323-acl session(4) 1 voice http-acl session(4) 1 guest https-acl session(4) 1 guest icmp-acl session(4) 2 voice guest logon-control session(4) 2 guest-logon logon noe-acl session(4) 1 voice ra-guard session(6) sip-acl session(4) 1 voice skinny-acl session(4) 1 voice srcnat session(4) stateful-dot1x session(4) svp-acl session(4) 1 voice sys-ap-acl session (not editable)(4) 1 sys-ap-role sys-control session (not editable)(4) 1 sys-ap-role tftp-acl session(4) 1 voice v6-allowall session(6) 2 default-vpn-role authenticated v6-dhcp-acl session(6) 1 guest v6-dns-acl session(6) 1 guest v6-http-acl session(6) 1 guest v6-https-acl session(6) 1 guest v6-icmp-acl session(6) 1 guest v6-logon-control session(6) 2 guest-logon logon validuser session(46) validuserethacl eth vmware-acl session(4) vocera-acl session(4) 1 voice vpnlogon session(4) 1 logon show rights RoleTable --------- Name ACL Bandwidth ACL List Type ---- --- --------- -------- ---- ap-role 4 Up: No Limit,Dn: No Limit control/,ap-acl/ System authenticated 49 Up: No Limit,Dn: No Limit allowall/,v6-allowall/ User default-via-role 48 Up: No Limit,Dn: No Limit allowall/ User default-vpn-role 46 Up: No Limit,Dn: No Limit allowall/,v6-allowall/ User guest 3 Up: No Limit,Dn: No Limit http-acl/,https-acl/,dhcp-acl/,icmp-acl/,dns-acl/,v6-http-acl/,v6-https-acl/,v6-dhcp-acl/,v6-icmp-acl/,v6-dns-acl/ User guest-logon 6 Up: No Limit,Dn: No Limit logon-control/,captiveportal/,v6-logon-control/,captiveportal6/ User logon 1 Up: No Limit,Dn: No Limit logon-control/,captiveportal/,vpnlogon/,v6-logon-control/,captiveportal6/ User stateful-dot1x 5 Up: No Limit,Dn: No Limit System sys-ap-role 7 Up: No Limit,Dn: No Limit sys-control/,sys-ap-acl/ System (not editable) voice 47 Up: No Limit,Dn: No Limit sip-acl/,noe-acl/,svp-acl/,vocera-acl/,skinny-acl/,h323-acl/,dhcp-acl/,tftp-acl/,dns-acl/,icmp-acl/ User show acl hits User Role ACL Hits ------------------ Role Policy Src Dst Service Action Dest/Opcode New Hits Total Hits Index ---- ------ --- --- ------- ------ ----------- -------- ---------- ----- ap-role control any any svc-sec-papi permit 13 16 8305 ap-role ap-acl any any svc-gre permit 0 2 8311 ap-role ap-acl any any svc-syslog permit 5 9 8312 authenticated allowall any any any permit 47 47 8154 Port Based Session ACL ---------------------- Policy Src Dst Service Action Dest/Opcode New Hits Total Hits Index ------ --- --- ------- ------ ----------- -------- ---------- ----- validuser 169.254.0.0 255.255.0.0 any any deny 151 151 7978 validuser any any any permit 1 1 7979 Port ACL Hits ------------- ACL ACE New Hits Total Hits Index --- --- -------- ---------- ----- show acl acl-table AclTable -------- ACL Type ACE Index Rule Count Ace Count Name Applied --- ---- --------- ---------- --------- ---- ------- 1 role 329 26 27 logon 0 2 session 42 3 4 validuser 0 3 role 207 10 11 guest 28 4 role 365 16 17 ap-role 0 5 role 0 0 1 stateful-dot1x 0 6 role 307 21 22 guest-logon 0 7 role 393 19 20 sys-ap-role 0 8 session 1 9 10 sys-control 0 9 session 382 10 11 sys-ap-acl 0 10 session 413 2 3 stateful-dot1x 0 11 session 123 3 4 ap-uplink-acl 0 12 ether-type 22 1 2 validuserethacl 0 13 session 24 1 2 v6-icmp-acl 0 14 session 26 10 11 control 0 15 session 37 4 5 allow-diskservices 0 16 session 46 1 2 v6-https-acl 0 17 session 48 1 2 vocera-acl 0 18 session 50 5 6 vmware-acl 0 19 session 56 1 2 icmp-acl 0 20 session 58 1 2 v6-dhcp-acl 0 21 session 300 6 7 captiveportal 0 22 session 67 1 2 v6-dns-acl 0 23 session 69 2 3 allowall 0 24 session 72 1 2 https-acl 0 25 session 74 2 3 sip-acl 0 26 session 77 2 3 citrix-acl 0 27 session 80 1 2 ra-guard 0 28 session 82 1 2 dns-acl 0 29 session 84 1 2 v6-allowall 0 30 session 86 1 2 tftp-acl 0 31 session 88 1 2 skinny-acl 0 32 session 90 1 2 srcnat 0 33 session 92 5 6 vpnlogon 0 34 session 98 5 6 logon-control 0 35 session 104 3 4 allow-printservices 0 36 session 356 1 2 cplogout 0 37 session 110 1 2 v6-http-acl 0 38 session 112 1 2 http-acl 0 39 session 114 1 2 dhcp-acl 0 40 session 116 6 7 captiveportal6 0 41 session 127 1 2 noe-acl 0 42 session 129 2 3 svp-acl 0 43 session 358 6 7 ap-acl 0 44 session 139 4 5 v6-logon-control 0 45 session 144 2 3 h323-acl 0 46 role 164 3 4 default-vpn-role 0 47 role 168 13 14 voice 0 48 role 182 2 3 default-via-role 0 49 role 218 3 4 authenticated 0 Total ACE entries in use = 272 Total free ACE entries = 7664 Free ACE entries at the bottom = 7520 Next ACE entry to use = 416 (table 1) Ace entries reused 1 times ACL count 44, tunnel acl 0 show port status Port Status ----------- Slot-Port PortType adminstate operstate poe Trusted SpanningTree PortMode --------- -------- ---------- --------- --- ------- ------------ -------- 1/0 GE Enabled Up Enabled Yes Disabled Access 1/1 GE Enabled Up Enabled Yes Disabled Access 1/2 GE Enabled Down Enabled Yes Disabled Access 1/3 GE Enabled Down Enabled Yes Disabled Access 1/4 GE Enabled Up N/A Yes Disabled Access 1/5 GE Enabled Down N/A Yes Disabled Access 1/6 GE Enabled Down N/A Yes Disabled Access 1/7 GE Enabled Down N/A Yes Disabled Access show port link-event Slot/Port UP DOWN Slot/Port UP DOWN --------- -- ---- --------- -- ---- 1 / 0 2 1 1 / 1 2 1 1 / 2 0 0 1 / 3 0 0 1 / 4 1 0 1 / 5 0 0 1 / 6 0 0 1 / 7 0 0 show port stats Port Statistics --------------- Port PacketsIn PacketsOut BytesIn BytesOut InputErrorBytes OutputErrorBytes CRCErrors ---- --------- ---------- ------- -------- --------------- ---------------- --------- GE 1/0 3919 3372 1209113 545196 0 0 0 GE 1/1 3463 3278 1221936 526174 0 0 0 GE 1/2 0 0 0 0 0 0 0 GE 1/3 0 0 0 0 0 0 0 GE 1/4 3660 4082 558403 3117642 0 0 0 GE 1/5 0 0 0 0 0 0 0 GE 1/6 0 0 0 0 0 0 0 GE 1/7 0 0 0 0 0 0 0 show poe PoE Status ---------- Port Status Voltage(mV) Current(mA) Power (mW) ---- ------ ----------- ----------- ---------- GE 1/0 On 54911 103 5600 GE 1/1 On 54975 102 5600 GE 1/2 Off N/A N/A N/A GE 1/3 Off N/A N/A N/A GE 1/4 Off N/A N/A N/A GE 1/5 Off N/A N/A N/A GE 1/6 Off N/A N/A N/A GE 1/7 Off N/A N/A N/A Total Power Usage: 11200 (mW) show mac-address-table Dynamic Address Count: 0 Static Address (User-defined) Count: 0 System Self Address Count: 0 Total MAC Addresses : 8 Maximum MAC addresses : 8 MAC Address Table ------------------ Destination Address Address Type VLAN Destination Port ------------------- ------------ ---- ---------------- 00:1a:1e:00:00:00 Mgmt 1 vlan 1 00:1a:1e:21:de:f0 Mgmt 1 vlan 1 00:1a:1e:00:00:00 Mgmt 2 vlan 2 00:1a:1e:21:de:f0 Mgmt 2 vlan 2 00:1a:1e:00:00:00 Mgmt 3 vlan 3 00:1a:1e:21:de:f0 Mgmt 3 vlan 3 00:1a:1e:00:00:00 Mgmt 4095 vlan 4095 00:1a:1e:21:de:f0 Mgmt 4095 vlan 4095 show arp Protocol Address Hardware Address Interface Internet 192.168.0.254 6C:F3:7F:C4:5E:C2 vlan1 Internet 192.168.0.50 78:2B:CB:F4:25:CC vlan1 Internet 192.168.0.253 6C:F3:7F:C4:5E:B7 vlan1 show ip interface brief Interface IP Address / IP Netmask Admin Protocol vlan 1 192.168.0.248 / 255.255.255.0 up up vlan 2 192.168.150.251 / 255.255.255.0 up down vlan 3 192.168.200.251 / 255.255.255.0 up down loopback unassigned / unassigned up up mgmt unassigned / unassigned down down show interface loopback loopback interface is up line protocol is up Hardware is Ethernet, address is 00:1A:1E:21:DE:F0 IPv6 link-local address is fe80::1a:1e0f:ff21:def0/64 show interface mgmt command is not supported on this platform show ip route Codes: C - connected, O - OSPF, R - RIP, S - static M - mgmt, U - route usable, * - candidate default Gateway of last resort is Imported from DHCP to network 0.0.0.0 at cost 10 Gateway of last resort is Imported from CELL to network 0.0.0.0 at cost 10 Gateway of last resort is Imported from PPPOE to network 0.0.0.0 at cost 10 Gateway of last resort is 192.168.0.250 to network 0.0.0.0 at cost 1 S* 0.0.0.0/0 [1/0] via 192.168.0.250* C 192.168.0.0 is directly connected, VLAN1 show ip ospf OSPF is currently disabled Number of areas configured in this router is 0 show ip ospf interface OSPF is disabled show ip ospf neighbor OSPF is disabled show ip ospf database OSPF is disabled show vlan VLAN CONFIGURATION ------------------ VLAN Description Ports AAA Profile ---- ----------- ----- ----------- 1 Default GE1/0-1 GE1/4-7 Pc0-7 N/A 2 VLAN0002 GE1/2 NZRC_Private-aaa_prof 3 VLAN0003 GE1/3 NZRC_Public-aaa_prof show vlan mapping Vlan Mapping Table ------------------ VLAN Name Pool Status Assignment Type VLAN IDs --------- ----------- --------------- -------- Private Enabled Hash 2 Public Enabled Hash 3 show interface counters Port InOctets InUcastPkts InMcastPkts InBcastPkts GE1/0 1223883 3890 12 34 GE1/1 1240712 3437 12 34 GE1/4 558403 2509 679 472 Port OutOctets OutUcastPkts OutMcastPkts OutBcastPkts GE1/0 546746 2952 158 269 GE1/1 527724 2859 158 268 GE1/4 3117642 3998 2 82 show wms general General Attributes ------------------ Key Value --- ----- poll-interval 60000 poll-retries 3 ap-ageout-interval 30 adhoc-ap-ageout-interval 5 sta-ageout-interval 30 learn-ap disable persistent-neighbor enable propagate-wired-macs enable learn-system-wired-macs disable stat-update enable collect-stats disable classification-server-ip 0.0.0.0 rtls-port 8000 wms-on-master enable event-correlation disabled event-correlation-quiet-time 900 use-db enable calc-poll-interval 60000 Switch IP 192.168.0.248 Is Master enable Minutes Tick 32 show wms system System Configuration -------------------- Key Value --- ----- max-threshold 0 max-rbtree-entries 0 max-system-wm 1000 system-wm-update-interval 8 System State ------------- Key Value --- ----- Max Threshold 25000 Current Threshold 209 Total AP Count 173 Total STA Count 90 MAX RB-tree Count 50000 Total Tree Count 222 Poll Count(Max) 3(4) Learned OUIs for Deployed APs ------------------------------ OUI --- 6c:f3:7f:00:00:00 show wms counters Counters -------- Name Value ---- ----- DB Reads 1758 DB Writes 4224 Probe Table DB Reads 5 Probe Table DB Writes 4 AP Table DB Reads 694 AP Table DB Writes 2841 STA Table DB Reads 387 STA Table DB Writes 773 Probe STA Table DB Reads 667 Probe STA Table DB Writes 730 Probe Register 4 Probe State Update 87 Set RAP Type 163 Probe Event Message V2 147 Probe AP Type 8 AP Message V3 177 Next Probe Poll 91 STA message V2 292 Probe-table 4 Probe-list 4 Gateway Macs 0 Registered OUIs 32 Propagated Eth Macs 2 Potential Router Macs 0 AP G-table 155 AP A-table 18 Total AP Count 173 AP Add Count 196 AP Delete Count 23 STA G-table 243 STA A-table 20 Total STA Count 90 STA Add Count 130 STA Delete Count 40 STA Update Count 0 Sta-Probe table: STA 262 Sta-Probe table: Probe 222 AP state RB-tree 149 STA state RB-tree 73 AP stats RB-tree 0 STA stats RB-tree 0 Channel stats RB-tree 0 Total Tree Count 222 MAX RB-tree Count 50000 Max Count Exceeded - APs 0 Max Count Exceeded - STAs 0 show ap global acl-table STM ACL Table ------------- ACL Type ACE Index Ace Count Name --- ---- --------- --------- ---- 1 role 8265 27 logon 2 session 7978 4 validuser 3 role 8143 11 guest 4 role 8301 17 ap-role 5 role 7936 1 stateful-dot1x 6 role 8243 22 guest-logon 7 role 8329 20 sys-ap-role 8 session 7937 10 sys-control 9 session 8318 11 sys-ap-acl 10 session 8349 3 stateful-dot1x 11 session 8059 4 ap-uplink-acl 12 session 7958 2 validuserethacl 13 session 7960 2 v6-icmp-acl 14 session 7962 11 control 15 session 7973 5 allow-diskservices 16 session 7982 2 v6-https-acl 17 session 7984 2 vocera-acl 18 session 7986 6 vmware-acl 19 session 7992 2 icmp-acl 20 session 7994 2 v6-dhcp-acl 21 session 8236 7 captiveportal 22 session 8003 2 v6-dns-acl 23 session 8005 3 allowall 24 session 8008 2 https-acl 25 session 8010 3 sip-acl 26 session 8013 3 citrix-acl 27 session 8016 2 ra-guard 28 session 8018 2 dns-acl 29 session 8020 2 v6-allowall 30 session 8022 2 tftp-acl 31 session 8024 2 skinny-acl 32 session 8026 2 srcnat 33 session 8028 6 vpnlogon 34 session 8034 6 logon-control 35 session 8040 4 allow-printservices 36 session 8292 2 cplogout 37 session 8046 2 v6-http-acl 38 session 8048 2 http-acl 39 session 8050 2 dhcp-acl 40 session 8052 7 captiveportal6 41 session 8063 2 noe-acl 42 session 8065 3 svp-acl 43 session 8294 7 ap-acl 44 session 8075 5 v6-logon-control 45 session 8080 3 h323-acl 46 role 8100 4 default-vpn-role 47 role 8104 14 voice 48 role 8118 3 default-via-role 49 role 8154 4 authenticated Total ACE entries in use = 271 show ap database long AP Database ----------- Name Group AP Type IP Address Status Flags Switch IP Wired MAC Address Serial # Slot/Port FQLN Outer IP User ---- ----- ------- ---------- ------ ----- --------- ----------------- -------- --------- ---- -------- ---- 6c:f3:7f:c4:5e:b7 NZRCWLG 105 192.168.150.6 Up 32m:56s Rc2 192.168.0.248 6c:f3:7f:c4:5e:b7 BT0123979 1/1 N/A 192.168.0.253 6c:f3:7f:c4:5e:c2 NZRCWLG 105 192.168.150.5 Up 32m:56s Rc2 192.168.0.248 6c:f3:7f:c4:5e:c2 BT0123990 1/0 N/A 192.168.0.254 Flags: U = Unprovisioned; N = Duplicate name; G = No such group; L = Unlicensed I = Inactive; H = Using 802.11n license; D = Dirty or no config X = Maintenance Mode; P = PPPoE AP; B = Built-in AP R = Remote AP; R- = Remote AP requires Auth; C = Cellular RAP; c = CERT-based RAP; 1 = 802.1x authenticated AP; 2 = Using IKE version 2 M = Mesh node; Y = Mesh Recovery Total APs:2 show ap bss-table fm (forward mode): T-Tunnel, S-Split, D-Decrypt Tunnel, B-Bridge (s-standard, p-persistent, b-backup, a-always) Aruba AP BSS Table ------------------ bss ess s/p ip phy type ch/EIRP/max-EIRP cur-cl ap name in-t(s) tot-t mtu acl-state acl fm --- --- --- -- --- ---- ---------------- ------ ------- ------- ----- --- --------- --- -- 6c:f3:7f:c5:eb:78 NZRC_Private 1/1 192.168.150.6 a-HT ap 100+/18/22 0 6c:f3:7f:c4:5e:b7 0 32m:14s 1200 - 49 T 6c:f3:7f:c5:eb:79 NZRC_Public 1/1 192.168.150.6 a-HT ap 100+/18/22 0 6c:f3:7f:c4:5e:b7 0 32m:14s 1200 - 49 T 6c:f3:7f:c5:ec:20 NZRC_Private 1/0 192.168.150.5 g-HT ap 1/15/22 0 6c:f3:7f:c4:5e:c2 0 32m:14s 1200 - 49 T 6c:f3:7f:c5:ec:21 NZRC_Public 1/0 192.168.150.5 g-HT ap 1/15/22 0 6c:f3:7f:c4:5e:c2 0 32m:14s 1200 - 49 T 6c:f3:7f:c5:eb:70 NZRC_Private 1/1 192.168.150.6 g-HT ap 11/15/22 0 6c:f3:7f:c4:5e:b7 0 32m:14s 1200 - 49 T 6c:f3:7f:c5:ec:28 NZRC_Private 1/0 192.168.150.5 a-HT ap 48-/16/22 0 6c:f3:7f:c4:5e:c2 0 32m:16s 1200 - 49 T 6c:f3:7f:c5:eb:71 NZRC_Public 1/1 192.168.150.6 g-HT ap 11/15/22 0 6c:f3:7f:c4:5e:b7 0 32m:14s 1200 - 49 T 6c:f3:7f:c5:ec:29 NZRC_Public 1/0 192.168.150.5 a-HT ap 48-/16/22 0 6c:f3:7f:c4:5e:c2 0 32m:15s 1200 - 49 T Channel followed by "*" indicates channel selected due to unsupported configured channel. "Spectrum" followed by "^" indicates Local Spectrum Override in effect. Num APs:8 Num Associations:0 show ap debug counters AP Counters ----------- Name Group IP Address Configs Sent Configs Acked AP Boots Sent AP Boots Acked Bootstraps (Total) Reboots ---- ----- ---------- ------------ ------------- ------------- -------------- ------------------ ------- 6c:f3:7f:c4:5e:b7 NZRCWLG 192.168.150.6 7 7 0 0 1 (1 ) 1 6c:f3:7f:c4:5e:c2 NZRCWLG 192.168.150.5 2 2 0 0 1 (1 ) 1 Total APs :2 show ap debug client-mgmt-counters Counters -------- Name Value ---- ----- AP State Request 2 AP Stats Update Message 124 3087 13 AP Radio and Client Stats Update 64 VoIP Available Bandwidth Message 18 Tunnel VLAN Membership 2 802.11 Management Message 1 3138 12 802.11 Association Request Notification 1 ARM Update 142 ARM Propagate 61 ARM Neighbor Assigned 5 AP Message 8 STA Message 4 3146 1 AP Message Response 8 sapcp 198 Received stale Entries 0 Received stale Entries in Deauth 1 Processed stale Entries in Deauth 1 Stale entry error - BSS not found 0 Stale entry error - STA not found in Deauth 0 Stale entry error - failed to clear STA in Deauth 0 Stale entry error - Deauth bad length 0 Stale entry error - special handling 0 show ap essid ESSID Summary ------------- ESSID APs Clients VLAN(s) Encryption ----- --- ------- ------- ---------- NZRC_Private 2 0 2 WPA2 PSK AES NZRC_Public 2 0 3 WPA2 PSK AES Num ESSID:2 show ap active Active AP Table --------------- Name Group IP Address 11g Clients 11g Ch/EIRP/MaxEIRP 11a Clients 11a Ch/EIRP/MaxEIRP AP Type Flags Uptime Outer IP ---- ----- ---------- ----------- ------------------- ----------- ------------------- ------- ----- ------ -------- 6c:f3:7f:c4:5e:c2 NZRCWLG 192.168.150.5 0 AP:HT:1/15/22 0 AP:HT:48-/16/22 105 R2a 32m:56s 192.168.0.254 6c:f3:7f:c4:5e:b7 NZRCWLG 192.168.150.6 0 AP:HT:11/15/22 0 AP:HT:100+/18/22 105 R2a 32m:56s 192.168.0.253 Flags: a = Reduce ARP packets in the air; A = Enet1 in active/standby mode; B = Battery Boost On; C = Cellular; D = Disconn. Extra Calls On; d = Drop Mcast/Bcast On; E = Wired AP enabled; K = 802.11K Enabled; n = Don't convert IPv6 Mcast RA to Ucast L = Client Balancing Enabled; M = Mesh; N = 802.11b protection disabled; P = PPPOE; R = Remote AP; X = Maintenance Mode; 1 = 802.1x authenticated AP; F = AP failed 802.1x authentication;2 = Using IKE version 2; Channel followed by "*" indicates channel selected due to unsupported configured channel. "Spectrum" followed by "^" indicates Local Spectrum Override in effect. Num APs:2 show ap spectrum monitors List of Spectrum Monitors ------------------------- AP name Group AP Type Phy Band Channel Mode Client IP Subscribe Time ------- ----- ------- --- ---- ------- ---- --------- -------------- Num Spectrum Monitors: 0 Current Time: 2014-02-27 11:55:47 AM show ap mesh active Total APs :0 show ap mesh topology long Total APs :0 (R): Recovery AP. (N): 11N Enabled. For Portals 'Uplink Age' equals uptime. show ap association Flags: W: WMM client, A: Active, K: 802.11K client, B: Band Steerable PHY Details: HT: High throughput; 20: 20MHz; 40: 40MHz ss: spatial streams Association Table ----------------- Name bssid mac auth assoc aid l-int essid vlan-id tunnel-id phy assoc. time num assoc Flags ---- ----- --- ---- ----- --- ----- ----- ------- --------- --- ----------- --------- ----- Num Clients:0 show ap image version AP Image Versions On Controller ------------------------------- 6.1.3.11(p4build@cartman)#41171 Thu Dec 5 22:08:39 PST 2013 Access Points Image Version --------------------------- AP Running Image Version String Flash (Production) Image Version String Flash (Provisioning/Backup) Image Version String Matches Num Matches Num Mismatches Bad Checksums Bad Provisioning Checksums Image Load Status -- ---------------------------- --------------------------------------- ------------------------------------------------ ------- ----------- -------------- ------------- -------------------------- ----------------- 192.168.150.6 6.1.3.11(p4build@cartman)#41171 Thu Dec 5 22:08:39 PST 2013 6.1.3.11(p4build@cartman)#41171 Thu Dec 5 22:08:39 PST 2013 Yes 1 0 0 1 Done 192.168.150.5 6.1.3.11(p4build@cartman)#41171 Thu Dec 5 22:08:39 PST 2013 6.1.3.11(p4build@cartman)#41171 Thu Dec 5 22:08:39 PST 2013 Yes 1 0 0 1 Done Total APs:2 show gap-debug GAP Master LMS Table -------------------- IP Master Cookie Master Seq LMS Cookie LMS Seq Activity Status Msg In Prog -- ------------- ---------- ---------- ------- -------- ------ ----------- 192.168.0.248 0.0.0.0,530e7749 0 0.0.0.0,00000000 0 -- up no 192.168.0.251 192.168.0.248,530e7782 0 0.0.0.0,00000000 0 -- down no show ap wmm-flow WMM Flow Table -------------- AP Name ESSID Client Description ------- ----- ------ ----------- Num Flows:0 show aaa authentication all Auth Method Statistics ---------------------- Method Success Failures ------ ------- -------- VPN 2 0 show aaa authentication-server all Auth Server Table ----------------- Name Type FQDN IP addr AuthPort AcctPort Status Requests ---- ---- ---- ------- -------- -------- ------ -------- Internal Local n/a 192.168.0.248 n/a n/a Enabled 2 show aaa authentication-server radius statistics RADIUS Server Statistics ------------------------ Server Acct Rq Raw Rq PAP Rq CHAP Rq MSCHAP Rq MSCHAPv2 Rq Mismatch Rsp Bad Auth Acc Rej Acct Rsp Chal Ukn Rsp Tmout AvgRspTm Tot Rq Tot Rsp Uptime SEQ ------ ------- ------ ------ ------- --------- ----------- ------------ -------- --- --- -------- ---- ------- ----- -------- ------ ------- ------ --- *AvgRspTm is in msec, Uptime is in d:h:m, SEQ is in Total/Free Orphaned requests = 0 show aaa authentication-server tacacs statistics TACACS Server Statistics ------------------------ Statistics ---------- Accounting Requests Authentication Start Requests Authorization Requests Authentication Responses(Pass) Authentication Responses(Fail) Authorization Responses(Pass) Authorization Responses(Fail) Accounting Responses(Pass) Accounting Responses(Fail) Total Login Successes Total Login Failures Timeouts AvgRespTime (ms) Uptime (d:h:m) show aaa authentication-server ldap statistics LDAP Server Statistics ---------------------- Server Login Requests Login Success Login Failure Login Timeout Total Unbind Requests - Reason: Timeout AvgRespTime (ms) Uptime (d:h:m) ------ -------------- ------------- ------------- ------------- --------------------- ------------------- ---------------- -------------- show aaa bandwidth-contracts Bandwidth Contracts ------------------- Contract Id Rate (bits/second) -------- -- ------------------ Total contracts = 0 Per-user contract total = 4096 Per-user contract usage = 0 show aaa radius-attributes Dictionary ---------- Attribute Value Type Vendor Id --------- ----- ---- ------ -- MS-CHAP-NT-Enc-PW 6 String Microsoft 311 Suffix 1004 String Revoke-Text 316 String WISPr-Session-Term-End-Of-Day 10 Integer WISPr 14122 WISPr-Redirection-URL 4 String WISPr 14122 Menu 1001 String Acct-Session-Time 46 Integer Framed-AppleTalk-Zone 39 String Connect-Info 77 String Acct-Ouput-Packets 48 Integer Aruba-Location-Id 6 String Aruba 14823 Service-Type 6 Integer Rad-Length 310 Integer CHAP-Password 3 String WISPr-Bandwidth-Min-Down 6 Integer WISPr 14122 Aruba-Template-User 8 String Aruba 14823 Event-Timestamp 55 Date Login-Service 15 Integer Exec-Program-Wait 1039 String Tunnel-Password 69 String Framed-IP-Netmask 9 IP Addr Acct-Output-Gigawords 53 Integer MS-CHAP-CPW-2 4 String Microsoft 311 DB-Entry-State 318 String Acct-Tunnel-Packets-Lost 86 Integer Tunnel-Connection-Id 68 String Session-Timeout 27 Integer MS-CHAP-Domain 10 String Microsoft 311 MS-CHAP-LM-Enc-PW 5 String Microsoft 311 ARAP-Password 70 String CHAP-Challenge 60 String NAS-IP-Address 4 IP Addr ARAP-Security-Data 74 String Called-Station-Id 30 String Crypt-Password 1006 String Idle-Timeout 28 Integer Framed-Route 22 String Expiration 21 Date Acct-Terminate-Cause 49 Integer Aruba-User-Role 1 String Aruba 14823 Rad-Code 300 String Framed-IP-Address 8 IP Addr Server-Group 313 String Framed-Routing 10 Integer Huntgroup-Name 221 String Tunnel-Medium-Type 65 Integer Aruba-Port-Id 7 String Aruba 14823 Aruba-Priv-Admin-User 3 Integer Aruba 14823 User-Vlan 319 String ARAP-Features 71 String Callback-Id 20 String MS-BAP-Usage 13 String Microsoft 311 Tunnel-Assignment-Id 82 String Class 25 String MS-CHAP-Error 2 String Microsoft 311 Acct-Status-Type 40 Integer Framed-Protocol 7 Integer MS-Link-Utilization-Threshold 14 String Microsoft 311 Strip-User-Name 1035 Integer Digest-Response 206 String Acct-Output-Octets 43 Integer WISPr-Location-Name 2 String WISPr 14122 Port-Limit 62 Integer Acct-Delay-Time 41 Integer Aruba-User-Vlan 2 Integer Aruba 14823 MS-MPPE-Recv-Key 17 String Microsoft 311 Hint 1040 String ARAP-Zone-Access 72 Integer Acct-Authentic 45 Integer MS-CHAP-Response 1 String Microsoft 311 Termination-Menu 1002 String WISPr-Session-Term-Time 9 String WISPr 14122 MS-CHAP-CPW-1 3 String Microsoft 311 State 24 String User-Name 1 String Acct-Session-Id 44 String Callback-Number 19 String MS-MPPE-Encryption-Policy 7 String Microsoft 311 Fall-Through 1036 Integer Framed-Compression 13 Integer Prefix 1003 String Simultaneous-Use 1034 Integer Domain-Name 302 String Message-Auth 80 String NAS-Identifier 32 String MS-CHAP-MPPE-Keys 12 String Microsoft 311 Connect-Rate 1007 Integer Tunnel-Server-Auth-Id 91 String Tunnel-Type 64 Integer Aruba-Essid-Name 5 String Aruba 14823 Tunnel-Server-Endpoint 67 String Login-LAT-Port 63 Integer WISPr-Billing-Class-Of-Service 11 Integer WISPr 14122 MS-CHAP-Challenge 11 String Microsoft 311 Aruba-AP-Group 10 String Aruba 14823 encryption-type 308 String Acct-Input-Packets 47 Integer WISPr-Logoff-URL 3 String WISPr 14122 AP-Group 314 String Error-Cause 101 Integer ARAP-Security 73 Integer Acct-Input-Octets 42 Integer MS-RAS-Version 18 String Microsoft 311 MS-MPPE-Send-Key 16 String Microsoft 311 Termination-Action 29 Integer Framed-MTU 12 Integer essid 304 String Password-Retry 75 Integer Calling-Station-Id 31 String Full-Name 315 String dhcp-option-77 312 String Acct-Input-Gigawords 52 Integer Framed-AppleTalk-Network 38 Integer Login-LAT-Service 34 String WISPr-Bandwidth-Max-Down 8 Integer WISPr 14122 MS-RAS-Vendor 9 String Microsoft 311 Add-Port-To-IP-Address 1037 Integer Server-Name 301 String Acct-Link-Count 51 Integer MS-CHAP2-Success 26 String Microsoft 311 MS-Filter 22 String Microsoft 311 Rad-Id 309 String Tunnel-Client-Auth-Id 90 String NAS-Port-Type 61 Integer Login-IP-Host 14 IP Addr Aruba-Framed-IPv6-Address 11 String Aruba 14823 Exec-Program 1038 String WISPr-Bandwidth-Min-Up 5 Integer WISPr 14122 location 307 String Aruba-Named-User-Vlan 9 String Aruba 14823 Group 1005 String AP-Name 317 String Acct-Multi-Session-Id 50 String Login-LAT-Node 35 String NAS-Port-Id 5 Integer Aruba-Admin-Role 4 String Aruba 14823 Rad-Authenticator 303 String Prompt 76 Integer Framed-AppleTalk-Link 37 Integer WISPr-Location-ID 1 String WISPr 14122 MS-CHAP2-CPW 27 String Microsoft 311 Filter-Id 11 String MS-CHAP2-Response 25 String Microsoft 311 Auth-Type 1000 Integer User-Category 1029 String EAP-Message 79 String MS-Link-Drop-Time-Limit 15 String Microsoft 311 Group-Name 1030 String macaddr 306 String Tunnel-Private-Group-Id 81 String Tunnel-Client-Endpoint 66 String Framed-IPX-Network 23 IP Addr WISPr-Bandwidth-Max-Up 7 Integer WISPr 14122 MS-MPPE-Encryption-Types 8 String Microsoft 311 bssid 305 String Reply-Message 18 String Password 2 String Tunnel-Preference 83 Integer Vendor-Specific 26 String Login-TCP-Port 16 Integer show aaa authentication-server internal statistics Internal Database Server Statistics ----------------------------------- PAP Requests 0 PAP Accepts 0 PAP Rejects 0 MSCHAPv2 Requests 0 MSCHAPv2 Accepts 0 MSCHAPv2 Rejects 0 Mismatch Response 0 Query Requests 2 Query Responses 2 Update Requests 0 Update Responses 0 Users Expired 0 Unknown Response 0 Timeouts 0 AvgRespTime (ms) 11 Uptime (d:h:m) 0:0:33 SEQ first/last/free 3,2,255 show aaa derivation-rules server-group Server Groups ------------- Name Servers Rules hits Out-of-service ---- ------- ----- ---- -------------- default 1 1 2 internal 1 1 0 show aaa derivation-rules user user rule groups ---------------- Name References Rules Hits ---- ---------- ----- ---- show aaa server-group summary Server Groups ------------- Name Servers Rules hits Out-of-service ---- ------- ----- ---- -------------- default 1 1 2 internal 1 1 0 show aaa authentication captive-portal customization Captive-Portal Customization ---------------------------- Profile Customized ------- ---------- default No show aaa state configuration Authentication State -------------------- Name Value ---- ----- Switch IP 192.168.0.248 Switch IPv6 Master IP 192.168.0.248 Switch Role master Current/Max/Total IPv4 Users 4/5/5 Current/Max/Total IPv6 Users 0/0/0 Current/Max/Total User Entries 4/5/5 Current/Max/Total Stations 0/1/1 Current/AP/Bridge Stations 0/0/0 Pending Station Deletes 0 Captive Portal Users 0 802.1x Users 0 VPN Users 2 MAC Users 0 Stateful 802.1x Users 0 Tunneled users 0 Configured user roles 10 Configured session ACL 38 Configured destinations 9 Configured services 91 Configured Auth servers 1 Auth server in service 1 Radius server timeouts 0 Successful authentications -------------------------- Web MAC VPN 802.1x Krb RadAcct SecureID Stateful-802.1x Management --- --- --- ------ --- ------- -------- --------------- ---------- 0 0 2 0 0 0 0 0 0 Failed authentications ---------------------- Web MAC VPN 802.1x Krb RadAcct SecureID Stateful-802.1x Management --- --- --- ------ --- ------- -------- --------------- ---------- 0 0 0 0 0 0 0 0 0 Idled users = 1 fast age = Disabled Bandwith contracts = 0/0 IP takeovers = 0 Ping/SYN/Sess/CP attacks = 0/0/0/0 show aaa state messages PAPI Messages ------------- Msg ID Name Since last Read Total ------ ---- --------------- ----- 7062 Set switch ip6 0 1 5004 set master ip 0 2 7005 Set switch ip 0 1 5006 lms list from CFGM 0 2 7007 Set VLAN ip 0 1 63 userdb user query 0 2 RAW socket Messages ------------------- Msg ID Name Since last Read Total ------ ---- --------------- ----- 18 ip up 0 2 33 captive portal config 0 1 59 TACACS ACCT config for cli 0 1 60 TACACS ACCT config for web 0 1 66 raw user query req 0 2 86 Walled Garden config 0 1 Sibyte Messages --------------- Opcode Name Sent Since Last Read Sent Total Recv Since Last Read Recv Total ------ ---- -------------------- ---------- -------------------- ---------- 4 session 1 1 0 0 15 acl 0 10 0 0 16 ace 0 37 0 0 17 user 7 26 0 0 21 mac 0 3 0 0 42 nat 0 3 0 0 43 user tmout 13 15 13 13 54 ace stats 271 542 0 0 56 forw unenc 2 2 0 0 64 auth 1 3 1 1 94 aesccm key 1 9 0 0 106 service 0 1 0 0 111 dot1x term 0 10 0 0 114 rand 0 2 0 0 126 eapkey 2 2 4 4 155 0 1 0 0 158 0 1 0 0 161 0 5 0 0 162 0 32 0 0 182 0 5 0 5 show aaa state ap-group AP Group Table -------------- Name ID ---- -- default 2 nzrcwlg 1 show aaa web admin-port https port = 4343 http port = 8888 show aaa authentication vpn VPN Authentication Profile List ------------------------------- Name References Profile Status ---- ---------- -------------- default 0 default-cap 0 Predefined default-rap 0 Predefined (changed) Total:3 show aaa authentication vpn default VPN Authentication Profile "default" ------------------------------------ Parameter Value --------- ----- Server Group default Check certificate common name against AAA server Enabled show aaa authentication vpn default-cap VPN Authentication Profile "default-cap" (Predefined) ----------------------------------------------------- Parameter Value --------- ----- Server Group internal Check certificate common name against AAA server Enabled show aaa authentication vpn default-rap VPN Authentication Profile "default-rap" (Predefined (changed)) --------------------------------------------------------------- Parameter Value --------- ----- Server Group default Check certificate common name against AAA server Enabled show dot1x ap-table AP Table -------- MAC IP Essid Type AP name AP Group Vlan Enc Stations Forwarding-Mode Profile Acl --- -- ----- ---- ------- -------- ---- --- -------- --------------- ------- --- 6c:f3:7f:c5:ec:29 192.168.150.5 NZRC_Public AP 6c:f3:7f:c4:5e:c2 NZRCWLG 3 WPA2-PSK-AES 0 FORWARD_TUNNEL_80211 NZRC_Public-aaa_prof/dot1x_prof-dmx37 49 6c:f3:7f:c5:ec:28 192.168.150.5 NZRC_Private AP 6c:f3:7f:c4:5e:c2 NZRCWLG 2 WPA2-PSK-AES 0 FORWARD_TUNNEL_80211 NZRC_Private-aaa_prof/dot1x_prof-bej19 49 01:80:c2:00:00:03 Wired - 0 default 0 6c:f3:7f:c5:eb:78 192.168.150.6 NZRC_Private AP 6c:f3:7f:c4:5e:b7 NZRCWLG 2 WPA2-PSK-AES 0 FORWARD_TUNNEL_80211 NZRC_Private-aaa_prof/dot1x_prof-bej19 49 6c:f3:7f:c5:eb:79 192.168.150.6 NZRC_Public AP 6c:f3:7f:c4:5e:b7 NZRCWLG 3 WPA2-PSK-AES 0 FORWARD_TUNNEL_80211 NZRC_Public-aaa_prof/dot1x_prof-dmx37 49 6c:f3:7f:c5:ec:21 192.168.150.5 NZRC_Public AP 6c:f3:7f:c4:5e:c2 NZRCWLG 3 WPA2-PSK-AES 0 FORWARD_TUNNEL_80211 NZRC_Public-aaa_prof/dot1x_prof-dmx37 49 6c:f3:7f:c5:ec:20 192.168.150.5 NZRC_Private AP 6c:f3:7f:c4:5e:c2 NZRCWLG 2 WPA2-PSK-AES 0 FORWARD_TUNNEL_80211 NZRC_Private-aaa_prof/dot1x_prof-bej19 49 6c:f3:7f:c5:eb:70 192.168.150.6 NZRC_Private AP 6c:f3:7f:c4:5e:b7 NZRCWLG 2 WPA2-PSK-AES 0 FORWARD_TUNNEL_80211 NZRC_Private-aaa_prof/dot1x_prof-bej19 49 6c:f3:7f:c5:eb:71 192.168.150.6 NZRC_Public AP 6c:f3:7f:c4:5e:b7 NZRCWLG 3 WPA2-PSK-AES 0 FORWARD_TUNNEL_80211 NZRC_Public-aaa_prof/dot1x_prof-dmx37 49 Num APs: 9 show dot1x supplicant-info list-all 802.1x User Information ----------------------- MAC Name Auth AP-MAC Enc-Key/Type Auth-Mode EAP-Type Remote ------------ -------- ---- ------ ------------------- ----------- --------- ------ Station Entries: 0 show dot1x supplicant-info statistics 802.1x Statistics ----------------- Mac Name AP Auth-Succs Auth-Fails Auth-Tmout Re-Auths Supp-Naks UKeyRotations MKeyRotations --- ---- -- ---------- ---------- ---------- -------- --------- ------------- ------------- Total: 0 0 0 0 0 0 0 Station Entries: 0 show dot1x counters 802.1x Counters AP Sync Request...................1 Up.............................8 Resps..........................8 Enet Resps.....................0 Acl............................13 Station Up.............................1 Down...........................1 EAP RX Pkts........................2 TX Pkts........................2 WPA2 Message-1......................1 Message-2......................1 Message-3......................1 Message-4......................1 show vpdn l2tp configuration Enabled Hello timeout: 60 seconds DNS primary server: 0.0.0.0 DNS secondary server: 0.0.0.0 WINS primary server: 0.0.0.0 WINS secondary server: 0.0.0.0 PPP client authentication methods: PAP IP LOCAL POOLS: NZRC_Private: 192.168.150.5 - 192.168.150.240 NZRC_Public: 192.168.200.5 - 192.168.200.240 show vpdn l2tp local pool IP addresses used in pool NZRC_Private 192.168.150.5-192.168.150.6 IP addresses used in pool NZRC_Public 2 IPs used - 470 IPs free - 472 IPs configured IP pool allocations / de-allocations - L2TP: 0/0 IKE: 2/0 show vpdn pptp configuration Enabled Hello timeout: 60 seconds DNS primary server: 0.0.0.0 DNS secondary server: 0.0.0.0 WINS primary server: 0.0.0.0 WINS secondary server: 0.0.0.0 PPP client authentication methods: MSCHAPv2 MPPE Configuration 128 bit encryption enabled IP LOCAL POOLS: show vpdn pptp local pool 0 IPs used - 0 IPs free - 0 IPs configured IP pool allocations / de-allocations - PPTP: 0/0 show vpdn tunnel l2tp % No active L2TP Tunnel L2TP Statistics: IPSEC Deletes: 0 IPSEC Sync-Deletes: 0 Hello Timeouts: 0 show vpn-dialer default-dialer -------------- Attribute Value --------- ----- PPTP disabled L2TP enabled DNETCLEAR disabled WIREDNOWIFI disabled PAP disabled CHAP enabled MSCHAP enabled MSCHAPV2 enabled CACHE-SECURID disabled IKESECS 28800 IKEENC 3DES IKEGROUP TWO IKEHASH SHA IKEAUTH PRE-SHARE IKEPASSWD ******** IPSECSECS 7200 IPSECGROUP GROUP2 IPSECENC ESP-3DES IPSECAUTH ESP-SHA-HMAC SECURID_NEWPINMODE disabled show crypto dp Datapath debug output sent to CRYPTO logs. show crypto dynamic-map Crypto Map Template"default-dynamicmap" 10000 IKE Version: 1 lifetime: [300 - 86400] seconds, no volume limit PFS (Y/N): N Transform sets={ default-transform, default-aes } Crypto Map Template"default-ikev2-dynamicmap" 10000 IKE Version: 2 IKEv2 Policy: 10006 lifetime: [300 - 86400] seconds, no volume limit PFS (Y/N): N Transform sets={ default-1st-ikev2-transform, default-3rd-ikev2-transform } Crypto Map Template"default-rap-ipsecmap" 10001 IKE Version: 2 IKEv2 Policy: 10006 lifetime: [300 - 86400] seconds, no volume limit PFS (Y/N): N Transform sets={ default-rap-transform } show crypto ipsec sa IPSEC SA (V2) Active Session Information ----------------------------------- Initiator IP Responder IP SPI(IN/OUT) Flags Start Time Inner IP ------------ ------------ ---------------- ----- --------------- -------- 192.168.0.253 192.168.0.248 ac306700/eaecec00 UT2 Feb 27 11:23:27 192.168.150.6 192.168.0.254 192.168.0.248 2c7a1c00/44381800 UT2 Feb 27 11:23:27 192.168.150.5 Flags: T = Tunnel Mode; E = Transport Mode; U = UDP Encap L = L2TP Tunnel; N = Nortel Client; C = Client; 2 = IKEv2 Total IPSEC SAs: 2 show crypto ipsec transform-set Transform set default-transform: { esp-3des esp-sha-hmac } will negotiate = { Transport, Tunnel } Transform set default-ml-transform: { esp-3des esp-sha-hmac } will negotiate = { Transport, Tunnel } Transform set default-boc-bm-transform: { esp-3des esp-sha-hmac } will negotiate = { Transport, Tunnel } Transform set default-cluster-transform: { esp-aes256 esp-sha-hmac } will negotiate = { Transport, Tunnel } Transform set default-1st-ikev2-transform: { esp-aes256 esp-sha-hmac } will negotiate = { Transport, Tunnel } Transform set default-3rd-ikev2-transform: { esp-aes128 esp-sha-hmac } will negotiate = { Transport, Tunnel } Transform set default-gcm256: { esp-aes256-gcm esp-null-hmac } will negotiate = { Transport, Tunnel } Transform set default-gcm128: { esp-aes128-gcm esp-null-hmac } will negotiate = { Transport, Tunnel } Transform set default-rap-transform: { esp-aes256 esp-sha-hmac } will negotiate = { Transport, Tunnel } Transform set default-aes: { esp-aes256 esp-sha-hmac } will negotiate = { Transport, Tunnel } show crypto isakmp groupname IKE Aggressive groupname = changeme show crypto isakmp key ISAKMP Local Pre-Shared keys configured for ANY FQDN ----------------------------------------------------- Key --- ISAKMP Local Pre-Shared keys configured by FQDN ------------------------------------------------ FQDN of the host Key ---------------- --- ISAKMP Local Pre-Shared keys configured by Address --------------------------------------------------- IP address of the host Subnet Mask Length Key ---------------------- ------------------ --- ISAKMP Global Pre-Shared keys configured by Address ---------------------------------------------------- IP address of the host Subnet Mask Length Key ---------------------- ------------------ --- show crypto isakmp policy ISAKMP ENABLED Protection suite priority 20 Version 1 encryption algorithm: AES - Advanced Encryption Standard (256 bit keys) hash algorithm: Secure Hash Algorithm 160 authentication method: Pre-Shared Key Diffie-Hellman Group: #2 (1024 bit) lifetime: [300 - 86400] seconds, no volume limit Default protection suite 10001 Version 1 encryption algorithm: 3DES - Triple Data Encryption Standard (168 bit keys) hash algorithm: Secure Hash Algorithm 160 authentication method: Pre-Shared Key Diffie-Hellman Group: #2 (1024 bit) lifetime: [300 - 86400] seconds, no volume limit Default RAP Certificate protection suite 10002 Version 1 encryption algorithm: AES - Advanced Encryption Standard (256 bit keys) hash algorithm: Secure Hash Algorithm 160 authentication method: Rivest-Shamir-Adelman Signature Diffie-Hellman Group: #2 (1024 bit) lifetime: [300 - 86400] seconds, no volume limit Default RAP PSK protection suite 10003 Version 1 encryption algorithm: AES - Advanced Encryption Standard (256 bit keys) hash algorithm: Secure Hash Algorithm 160 authentication method: Pre-Shared Key Diffie-Hellman Group: #2 (1024 bit) lifetime: [300 - 86400] seconds, no volume limit Default RAP IKEv2 RSA protection suite 10004 Version 2 encryption algorithm: AES - Advanced Encryption Standard (256 bit keys) hash algorithm: Secure Hash Algorithm 160 authentication method: Rivest-Shamir-Adelman Signature PRF method: hmac-sha1 Diffie-Hellman Group: #2 (1024 bit) lifetime: [300 - 86400] seconds, no volume limit Default Cluster PSK protection suite 10005 Version 1 encryption algorithm: AES - Advanced Encryption Standard (256 bit keys) hash algorithm: Secure Hash Algorithm 160 authentication method: Pre-Shared Key Diffie-Hellman Group: #2 (1024 bit) lifetime: [300 - 86400] seconds, no volume limit Default IKEv2 RSA protection suite 10006 Version 2 encryption algorithm: AES - Advanced Encryption Standard (128 bit keys) hash algorithm: Secure Hash Algorithm 96 authentication method: Rivest-Shamir-Adelman Signature PRF method: hmac-sha1 Diffie-Hellman Group: #2 (1024 bit) lifetime: [300 - 86400] seconds, no volume limit Default IKEv2 PSK protection suite 10007 Version 2 encryption algorithm: AES - Advanced Encryption Standard (128 bit keys) hash algorithm: Secure Hash Algorithm 96 authentication method: Pre-Shared Key PRF method: hmac-sha1 Diffie-Hellman Group: #2 (1024 bit) lifetime: [300 - 86400] seconds, no volume limit Default Suite-B 128bit ECDSA protection suite 10008 Version 2 encryption algorithm: AES - Advanced Encryption Standard (128 bit keys) hash algorithm: Secure Hash Algorithm 256-128 authentication method: ECDSA-256 Signature PRF method: hmac-sha2-256 Diffie-Hellman Group: Random ECP Group (256 bit) lifetime: [300 - 86400] seconds, no volume limit Default Suite-B 256 bit ECDSA protection suite 10009 Version 2 encryption algorithm: AES - Advanced Encryption Standard (256 bit keys) hash algorithm: Secure Hash Algorithm 384-192 authentication method: ECDSA-384 Signature PRF method: hmac-sha2-384 Diffie-Hellman Group: Random ECP Group (384 bit) lifetime: [300 - 86400] seconds, no volume limit show crypto isakmp sa ISAKMP SA Active Session Information ------------------------------------ Initiator IP Responder IP Flags Start Time Private IP ------------ ------------ ----- --------------- ---------- 192.168.0.254 192.168.0.248 r-v2-c-R Feb 27 11:23:27 192.168.150.5 192.168.0.253 192.168.0.248 r-v2-c-R Feb 27 11:23:27 192.168.150.6 Flags: i = Initiator; r = Responder m = Main Mode; a = Agressive Mode v2 = IKEv2 p = Pre-shared key; c = Certificate/RSA Signature; e = ECDSA Signature x = XAuth Enabled; y = Mode-Config Enabled; E = EAP Enabled 3 = 3rd party AP; C = Campus AP; R = RAP V = VIA; S = VIA over TCP Total ISAKMP SAs: 2 show crypto isakmp stats Switch IP = 192.168.0.248 Main Mode Initiator exchanges started/completed = 0/0 Main Mode Responder exchanges started/completed = 0/0 Aggr Mode Initiator exchanges started/completed = 0/0 Aggr Mode Responder exchanges started/completed = 0/0 Quick Mode Initiator exchanges started/completed = 0/0 Quick Mode Responder exchanges started/completed = 0/0 XAuth Type1 Responder exchanges started/completed = 0/0 XAuth Type2 Responder exchanges started/completed = 0/0 XAuth Authentication Pass/Fail = 0/0 Mode-Config Responder exchanges started/completed = 2/0 Mode-Config Authentication Pass/Fail = 0/0 XAuth Protocol Errors Bad-Packets/Quick-mode-fail = 0/0 IP Pool Alloc/Free/Free-NoSa Alloc-Error/Free-Error = 0/0/0/0/0 IP External Pool Alloc/Alloc-Error = 0/0 Authentication State Errors No-SA/No-Msg/No-Exch = 0/0/0 Auth Msgs Reqs/Rcvd/AP-Down/Idle-timeout/IP-down = 2/2/0/0/0 Auth Msg Errors Not-Ready/Reqs-Throttled/IP-UP-err/Recv-err/Rcv-NoState = 0/0/0/0/0 IKE->Auth Msgs IP-up/IP-down = 0/0 Cert-Revocation Msgs Reqs/Rcvd/Pass/Revoked = 0/0/0/0 Cert-Revocation Msg Errors Reqs-Throttled/Send-err/Recv-err/Rcv-NoState = 0/0/0/0 UDB Msgs Reqs-Throttled/Req-sent/Req-send-errors/Resp-rcvd/Rcv-NoState = 0/0/0/0/0 ACR License Msgs Request/Delete/Req-errors/Resp-rcvd/Resp-error = 0/0/0/0/0 Allow/Fail 0/0 Limit:0 SA delete Requests = 0 Phase1 SAs Current/Max/Total = 0/0/0 Phase1 Completed SAs Current/Max/Total = 0/0/0 Phase2 SAs Current/Max/Total = 0/0/0 Phase2 Completed SAs Current/Max/Total = 0/0/0 IKEv2 SA Rate-Limit Cfg-Rate/Permit/Drop/Current-Rate = 10/4/0/1 VPN Sessions Total/RAPs/CAPs/Master-Local/Redun/Cluster/L2TP = 0/0/0/0/0/0/0 VPN License Limits Total/Platform/Current/Violation = 512/512/0/0 CPSEC : OFF on_msgs:1 off_msgs:1 notready:0 denied_drop:0 Cluster : Role/Num-Cfgd-Members NONE/0 Cluster Pubsub: Init->None/None->Root/Root->None 1/0/0 Cluster Pubsub: None->Member/Member-IPChange/Member->None 0/0/0 Cluster Pubsub Replies: None/Member/Root/NotReady 3/0/0/0 CFGM triggers: Master/Local/Redund/Failed/Total = 134/0/0/3/137 Redundancy changes: Standby/Master/Ignored/Config = 0/0/0/0 tunnel:n config:n VLAN changes: Requests/Inserts/Modifies/Deletes = 10/3/0/0 VLAN errors: Insert/Bind/Delete/No-change = 0/0/10/27 VRIP changes: Adds/Modifies/Deletes = 0/0/0 Masterip Requests/Replies = 1/3 SwitchIP Requests/Replies = 10/1 FPAPPS TX messages: Tunnel-Up/Tunnel-Down = 0/0 FPAPPS TX messages: cfg-map-add/cfg-map-del = 0/0 FPAPPS TX messages: Peer-map-add/Peer-map-del = 0/0 FPAPPS TX messages: SwitchIP-mapadd/SwitchIP-mapdel = 0/0 FPAPPS TX messages: New-SwitchIP-map-adds = 0 Datapath To Control DPD Triggers Received = 0 DPD Initiate Reqs-Sent/Re-Sent/Replies-Rcvd/Dropped = 0/0/0/0 DPD Responder Reqs-Rcvd/Reqs-Dropped/Replies-Sent = 0/0/0 DPD peers detected as Dead/P1_SA/P2_SA = 0/0/0 L2TP tunnel events received: Add/Delete = 0/0 L2TP Delete tunnel events sent: Success/Fail = 0/0 L2TP IPSEC-list sent: Success/Fail = 1/0 RAP PSK stats IKE SA: Bad = 0 Route Trigger events sent: Add/Delete = 0/0 Route Table w/Gateway events sent: Add/Delete = 0/0 Route Cache events sent: Add-Success/Fail = 0/0 Delete-Success/Fail = 0/0 CP ARP events sent: Delete/Fail = 0/0 CP Route events sent: Add-Success/Fail =0/0 Delete-Success/Fail = 0/2 Garbage SA deletions: ISAKMP-SA/IPSec-SA = 0/0 Rcvd Cert-chain: Verified/Failed = 0/0 Rcvd Cert-chain error: Invalid ID and pubkey = 0 Rcvd Cert-chain error: no username(mode-cfg only) = 0 Cert-chain error in encryption/decryption = 0/0 Cert-chain error in sig-len/hash-len/hash = 0/0/0 Hash Encode Attempts/Errors = 0/0 Hash Decode Attempts/Errors = 0/0 Cert-manager registration: Started/Completed = 0/0 Cert-manager errors: Cert-Not-found/No-reply = 0/0 IKE To CPFW DST-NAT messages sent/retries/failed = 0/0/0 Control To Datapath SA Adds/Failed Adds = 4/0 Control To Datapath SA Deletions/Failed Deletions = 0/0 IKE - Datapath DH1 request/errors response/errors = 2/0 2/0 IKE - Datapath DH2 request/errors response/errors = 2/0 2/0 IKE - Datapath RSA/DH Generic Response success/errors = 8/0 IKE - Datapath RSA sign1 request/errors response/errors = 2/0 2/0 IKE - Datapath RSA sign2 request/errors response/errors = 2/0 2/0 IKE - Datapath RSA 2048 sign request/errors response/errors = 0/0 0/0 Datapath To Control IKE Triggers Received/Ignored = 0/0 Timers Current/Max/Total = 5/9/992 SA Soft timers Current/Max/Total = 0/0/0 SA Hard timers Current/Max/Total = 0/0/0 NAT-T Timers Current/Max/Total = 0/0/0 IKE Fragment Reassembly Success/Timeout = 0/0 IKE Rcvd Fragments Current/Max/Total = 0/0/0 IKE Rcvd Fragments Duplicates/Errors = 0/0 IKE Sent Fragments Current/Max/Total = 0/0/0 IKE Packets Fragmented/Retransmitted = 0/0 IKE Messages Current/Max/Total = 0/0/0 Message Payloads Current/Max/Total = 0/0/0 Message Timers Current/Max/Total = 0/0/0 IKE Msg-Errors Duplicate/Invalid/Decrypt-Error/PSK = 0/0/0/0 IKE Msg-Errors Dec-NoSa/NoKS/InvExch = 0/0/0 IKE Exchanges Current/Max/Total = 0/0/0 Exchange Timers Current/Max/Total = 0/0/0 SOS IKE packets TX/RX = 0/0 UDP ESP pkts:0 NATT-Keepalives:0 Virtual Transports Current/Max/Total = 4/4/4 Reinits:0 Drops:0 UDP Transports Current/Max/Total = 8/8/8 Cloned Transports Virt/Enc/UDP/SOS-enc/SOS/s2s/Fail = 0/0/0/0/0/0/0 IKE - IPSecSPI Collisions/Fails/Adds/Dels/AddFails/DelFails = 0/0/2/0/0/0 IKEv2 - IKE_SA Initiator exchanges started/completed = 0/0 IKEv2 - IKE_SA Responder exchanges started/completed = 2/2 IKEv2 - IPSEC_SA Initiator exchanges started/completed = 0/0 IKEv2 - IPSEC_SA Responder exchanges started/completed = 2/2 IKEv2 - Informational started/completed = 0/2 IKEv2 - Delete started/completed = 0/0 IKEv2 - EAP exchanges started/completed = 0/0 IKEv2 - EAP Authentication Pass/Fail = 0/0 IKEv2 - EAP Unsupported Authentication Requests = 0 IKEv2 - IKE SAs In-Use/Free/Total = 2/0/2 IKEv2 - IKE Completed SAs Current/Max/Total = 2/2/2 IKEv2 - IPSEC SAs In-Use/Free/Total = 2/0/2 IKEv2 - IPSEC Completed SAs Current/Max/Total = 2/2/2 IKEv2 - VPN Sessions Total/RAPs/CAPs/Master-Local/Redun/Cluster = 2/2/0/0/0/0 IKEv2 - DPD Initiate Reqs-Sent/Re-Sent/Replies-Rcvd/Dropped = 0/0/0/0 IKEv2 - DPD Responder Reqs-Rcvd/Reqs-Dropped/Replies-Sent = 0/0/0 IKEv2 - DPD peers detected as Dead = 0 IKEv2 - Timers Current/Max/Total = 2/2/2 IKEv2 - Hash-table Add:8 Free(attempt:0 good:0 nobuck:0) IKEv2 - IKE_SA hash-table Alloc/Free = 6/0 IKEv2 - IPSEC_SA hash-table Alloc/Free = 2/0 IKEv2 - IKE_SA deletions Alloc-Fail=Delete/Idle/Duplicate = 0=0/0/0 IKEv2 - IKE_SA deletions UnAuthenticated In/Out/InitFail = 0/0/0 IKEv2 - IKE_SA deletions Expired/Child/NoExch/Rekey = 0/0/0/0 IKEv2 - IKE_SA deletions Our-Deletion/Peer-Deletion = 0/0 IKEv2 - IKE_SA deletions Pending Auth/UDB/CertMgr = 0/0/0 IKEv2 - IKE_SA deletions Fail Rekey/NewSa/OldSa/IncompleteSA = 0/0/0/0 IKEv2 - IKE_SA deletions UnAuth/Update/Event/Init/Contact = 0/0/0/0/0 show crypto l2tp ^ % Invalid input detected at '^' marker. show crypto map Crypto Map "GLOBAL-MAP" 10000 ipsec-isakmp Crypto Map Template"default-dynamicmap" 10000 IKE Version: 1 lifetime: [300 - 86400] seconds, no volume limit PFS (Y/N): N Transform sets={ default-transform, default-aes } Crypto Map "GLOBAL-IKEV2-MAP" 10000 ipsec-isakmp Crypto Map Template"default-rap-ipsecmap" 10001 IKE Version: 2 IKEv2 Policy: 10006 lifetime: [300 - 86400] seconds, no volume limit PFS (Y/N): N Transform sets={ default-rap-transform } show station-table Station Entry ------------- MAC Name Role Age(d:h:m) Auth AP name Essid Phy Remote Profile ------------ ------ ---- ---------- ---- ------- ----- --- ------ ------- Station Entries: 0 show station-table verbose Station Entry ------------- MAC Name Role Age(d:h:m) Auth AP name Essid Phy Remote Profile ------------ ------ ---- ---------- ---- ------- ----- --- ------ ------- Station Entries: 0 show user-table Users ----- IP MAC Name Role Age(d:h:m) Auth VPN link AP name Roaming Essid/Bssid/Phy Profile Forward mode Type ---------- ------------ ------ ---- ---------- ---- -------- ------- ------- --------------- ------- ------------ ---- User Entries: 0/0 show user-table verbose Users ----- IP MAC Name Role Age(d:h:m) Auth VPN link AP name Roaming Essid/Bssid/Phy Profile Forward mode Type Server Vlan Bwm ---------- ------------ ------ ---- ---------- ---- -------- ------- ------- --------------- ------- ------------ ---- ------ ---- --- 192.168.0.253 00:00:00:00:00:00 logon 00:00:32 VPN N/A tunnel 1 192.168.0.254 00:00:00:00:00:00 logon 00:00:32 VPN N/A tunnel 1 192.168.150.5 00:00:00:00:00:00 6c:f3:7f:c4:5e:c2 ap-role 00:00:32 VPN 192.168.0.254 N/A tunnel Internal 1 192.168.150.6 00:00:00:00:00:00 6c:f3:7f:c4:5e:b7 ap-role 00:00:32 VPN 192.168.0.253 N/A tunnel Internal 1 User Entries: 4/4 show ip mobile global IP Mobility information: *** WARNING ***: Mobility service is disabled (router mobile) Switch IP: 192.168.0.248 Proxy DHCP: Maximum 25 BOOTP Messages per transaction Maximum 60 seconds allowed per DHCP transaction Holds Proxy DHCP state 5 seconds after transaction completion Terminate Proxy DHCP on aggressive transactionID change disabled Ignore DHCP option in BOOTP messages disabled Proxy Mobile IP: Trigger mobility on station association is enabled Standalone AP support is disabled Logging of mobility trail is enabled Station Trail: Maximum 10 entries, Timeout 600 seconds Maximum 10 mobility events/sec Roaming for authenticated stations only is enabled Blocking DHCP Release from stations is disabled Refresh Station Stale IP is disabled Re-Homing for Voice Capable Client is disabled Hold host entry after connectivity loss for 60 seconds Sessions with no mobility possible kept for 180 seconds Home Agent: Timestamps allowed difference 7 seconds 5000 maximum bindings allowed Foreign Agent: Requested lifetime 40 seconds Registration requests retransmits 3 max, interval 1000 msec 5000 maximum visitors allowed Revocation: Registration Revocation retransmits 3 max, interval 1000 msec Encapsulation supported: IPIP show ip mobile domain *** WARNING ***: Mobility service is disabled (router mobile) Mobility Domains:, 1 domain(s) ------------------------------ Domain name default Home Agent Table, 0 subnet(s) show ip mobile active-domains *** WARNING ***: Mobility service is disabled (router mobile) Active Mobility Domain(s) Total: 0 Active Mobility Domain is not configured , "default" domain is used show ip mobile hat *** WARNING ***: Mobility service is disabled (router mobile) Active Home Agent Table (HAT) ----------------------------- Home Agent Table, 0 subnet(s) show ip mobile host *** WARNING ***: Mobility service is disabled (router mobile) Mobile Host List, 0 host(s) --------------------------- show ip mobile visitor *** WARNING ***: Mobility service is disabled (router mobile) Foreign Agent Visitor list, 0 host(s) ------------------------------------- show ip mobile binding *** WARNING ***: Mobility service is disabled (router mobile) Home Agent Binding list, 0 host(s) ---------------------------------- show ip mobile tunnel *** WARNING ***: Mobility service is disabled (router mobile) Mobile Tunnels: 0 tunnel(s) --------------------------- show ip mobile traffic *** WARNING ***: Mobility service is disabled (router mobile) IP Mobility traffic: -------------------- Proxy DHCP: Sessions 0: Success 0, Timeout 0, Terminate 0, Active 0 BOOTP total messages 0: Handled 0, Forwarded 0, Dropped 0 BOOTP Requests 0: DISCOVER 0, REQUEST 0 RELEASE 0, DECLINE 0, INFORM 0 NO-OPTION 0 BOOTP Replies 0: OFFER 0, ACK 0, NAK 0 No Mobility ESS BOOTP Req 0, Reply 0 Handled 0: Relayed 0 Forwarded 0 Dropped 0 (relayed) Home switch Home vlan Req/Reply 0/0, foreign vlan Req/Reply 0/0 Req Relayed to HA 0, Reply Received from HA 0 Reply Relayed to FA 0, Req Received from FA 0 (forwarded) BOOTP Replies no session 0, Requests not from wi-fi tunnel 0 (dropped) Excluded clients 0, Packets rate exceeded 0 Bad frames 0, BOOTP non DHCP 0, Home VLAN not found 0 Remote switch relay failure 0, relay receive Dropped 0 Unexpected frames from client 0, from Remote switch 0 DHCP release Blocked 0 Discovery Started 0, Failed 0 Discovery success 0, HA local 0, HA remote 0 HA not found for client IP 0 DHCP IPC Fail 0 Proxy Mobile IP: Received 0 packets Handled 0, Forwarded 0, Dropped 0 APIPA subnet 0, Excluded OUI 0, Trusted port 0 No src IP 0, Broadcast ignored 0, Unexpected packets 0 Mobility events ignored busy 0, Sibyte Callback error 0 MSG TMO Proxy 0 HA 0 FA 0 New stations with no mobility provided 0 Moves to foreign switch 0, Home returns 0 Inter VLAN moves 0, Intra VLAN moves 0 Proxy Sessions 0, New user from FA 0, Local moves 0 Events exceeded 0, IP changes 0, No association 0 HA not found for station IP 0, No home VLAN found 0 Sta Del Auth 0, ESSID change 0, Stale expired 0 Admin 0 No Mobility ESS deletes 0 , Trail Expired 1 Threshold Expired 0 Sibyte Failure: Bridge add/del 0/0 Route add/del 0/0 CB Race 0 Data-Ready: Entries 0, Msgs Rcv 0, Ack 0, Drop 0, Requested 0 AUTH: APIPA Update 0 L2 Miss 0 Auth IPC: Create 0 Success 0 Failed 0 Update 0 Success 0 Failed 0 Delete 0 Success 0 Failed 0, IPC Send Fail 0 Done 0, Bad Len 0, IP mismatch 0, Unknown IP 0 Validate Visitor 0, Invalid Visitor 0 Del: Proxy 0, HA 0, FA 0, ForceDel: 0 Success 0 Fail 0 Move: INTRA 0, INTER 0 Update: HA 0, FA 0 MIP Internal state mismatch HA 0, FA 0 MIP-Auth Status Mismatch Proxy 0, HA 0, FA 0 MIP-Auth Status Unknown Proxy 0, HA 0, FA 0 MIP-Auth Status MAC Unknown Proxy 0, HA 0, FA 0 MIP-Auth Status AAA Profile Unknown Proxy 0, HA 0, FA 0 MIP-Auth Status Not Ok Proxy 0, HA 0, FA 0 STM: Mux Tunnel(s) 0 De-auth 0(staleIP) 0(Roamed Away) BackHome 0 Rem Blacklist Client 0 IPC Fail 0 Pim Notification 0, MCG Query 0 Response 0 Discard 0 IPC Fail 0 VRRP State Init:0, Backup:0 Master:0 Unknown:0 VRRP failover Binding purge:0, VRRP Delete:0 Home Agent Registrations: Register Requests 0, Replied 0 Accepted 0, Denied 0, Ignored 0 Unspecified 0, Unknown HA address 0 Voice Re-Homing Denied 0 Administrative prohibited 0, No resource 0 Authentication failed MN-HA 0, FA-HA 0 Bad identification 0, Malformed 0 Too many bindings 0, Bindings expired 0 Discovery Requests 0, Sibyte Callback/Tunnel Error 0/0 Discovery Replies with session 0, BlackList 0, No Session 0 Sibyte Failure: Bridge add 0 Route add/del 0/0 CB Race 0 Foreign Agent Registrations: Register Requests 0, Replies 0, Register retransmits 0 Accepted 0, Denied 0, Ignored 0 Duplicate 0 Unspecified 0, Unknown HA address 0 Voice Re-Homing Denied 0 Administrative prohibited 0, No resource 0 Authentication failed MN-HA 0, FA-HA 0 Bad identification 0, Malformed 0 Too many bindings 0, Sibyte Callback/Tunnel error 0/0 Discovery started 0, Requests 0, Replies 0 Discovery Replies with session 0, With no session 0 Discovery no HA had a session 0, HA BlackList session 0 Discovery assign Local HA 0, Remote HA 0, can't assign 0 Sibyte Failure: Bridge add/del 0/0 Route add/del 0/0 CB Race 0 AAA Add 0/0 Upd 0/0 Done 0/0 Del 0/0 Mismatch 0 Registration Revocations: Sent Revocation requests 0, Recv replies 0 Recv Revocation requests 0, Sent replies 0 Ignored requests 0, ACKs 0 show ip dhcp database DHCP enabled # NZRCWLG subnet 192.168.0.0 netmask 255.255.255.0 { default-lease-time 259200; max-lease-time 259200; option vendor-class-identifier "ArubaAP"; option vendor-encapsulated-options "192.168.0.248"; option routers 192.168.0.251; range 192.168.0.1 192.168.0.247; range 192.168.0.249 192.168.0.250; range 192.168.0.252 192.168.0.254; authoritative; } show ip dhcp statistics Network Name 192.168.0.0/24 Free leases 249 Active leases 3 Expired leases 0 Abandoned leases 0 show ipv6 ra status IPv6 RA Status -------------- VlanId State Prefix(es) ------ ----- ---------- show ip radius source-interface Global radius client source IP address = 0.0.0.0 Per-server client source IP addresses: show ip igmp config IGMP Config ----------- Name Value ---- ----- robustness-variable 2 query-interval 125 query-response-interval 100 startup-query-interval 31 startup-query-count 2 last-member-query-interval 10 last-member-query-count 2 version-1-router-present-timeout 400 max-members-per-group 300 quick-client-convergence enabled show ip igmp interface IGMP Interface Table -------------------- VLAN Addr Netmask MAC Address IGMP Snooping Querier Querier-dest IGMP Proxy ---- ---- ------- ----------- ---- -------- ------- ------------ ---------- 1 192.168.0.248 255.255.255.0 00:1a:1e:21:de:f0 disabled disabled unknown unknown disabled 2 192.168.150.251 255.255.255.0 00:1a:1e:21:de:f0 disabled disabled unknown unknown disabled 3 192.168.200.251 255.255.255.0 00:1a:1e:21:de:f0 disabled disabled unknown unknown disabled show ip igmp group IGMP Group Table ---------------- Group Members ----- ------- show ip igmp proxy-group IGMP Proxy Group Table ---------------------- VLAN Addr Group Num Members ---- ---- ----- ----------- show ip igmp proxy-mobility-group MIP Group Table --------------- Group Members ----- ------- show ip igmp counters IGMP Statistics --------------- Name Value ---- ----- received-total 0 received-queries 0 received-v1-reports 0 received-v2-reports 0 received-leaves 0 received-unknown-types 0 len-errors 0 checksum-errors 0 not-vlan-dr 0 transmitted-queries 0 forwarded 0 show ip igmp proxy-stats IGMP Proxy Statistics --------------------- Name Value ---- ----- received-queries-upstream 0 received-upstream-reports 0 received-upstream-leaves 0 transmitted-upstream-reports 0 transmitted-upstream-leaves 0 show ip igmp proxy-mobility-stats IGMP Mobility Multicast Statistics ---------------------------------- Name Value ---- ----- received-mobileip-joins 0 received-mobileip-leaves 0 received-mobileip-intra-move 0 received-mobileip-inter-move 0 received-mobileip-client-away 0 received-mobileip-back-home 0 received-mip-query-db 0 received-mip-query-foreign-db 0 received-mip-query-home-db 0 received-mobileip-add-visitor 0 transmitted_mip_replies 0 show datapath ip-mcast group Datapath IP Multicast Entries ----------------------------- Source Group --------------- --------------- show datapath ip-mcast destination Datapath IP Multicast Entries ----------------------------- Flags: m - Dyn Mcast Optimization Enable Source Group VLAN Destination Flags --------------- --------------- ---- ------------- ----- show ipv6 mld group MLD Group Table --------------- Group Members ----- ------- show ipv6 mld config MLD Config ---------- Name Value ---- ----- robustness-variable 2 query-interval 125 query-response-interval 100 show ipv6 mld counters MLD Statistics -------------- Name Value ---- ----- received-total 0 received-queries 0 received-v1-reports 0 received-leaves 0 received-unknown-types 0 len-errors 0 checksum-errors 0 not-vlan-dr 0 transmitted-queries 0 forwarded 0 show ipv6 mld interface MLD Interface Table ------------------- VLAN Snooping Querier ---- -------- ------- 1 disabled :: 2 disabled :: 3 disabled :: show datapath ipv6-mcast group Datapath IPv6 Multicast Entries ----------------------------- Source Group --------------------------------------- --------------------------------------- show datapath ipv6-mcast destination Datapath IP Multicast Entries ----------------------------- Flags: m - Dyn Mcast Optimization Enable Source Group VLAN Destination Flags --------------------------------------- --------------------------------------- ---- ------------- ----- show ipv6 interface VLAN1 is up line protocol is up IPv6 is enabled, link-local address is fe80::1a:1e00:121:def0 IPv6 Router Advertisements are disabled VLAN2 is up line protocol is down IPv6 is enabled, link-local address is fe80::1a:1e00:221:def0 IPv6 Router Advertisements are disabled VLAN3 is up line protocol is down IPv6 Router Advertisements are disabled IPv6 is disabled loopback is up line protocol is up IPv6 is enabled, link-local address is fe80::1a:1e0f:ff21:def0 mgmt is down line protocol is down IPv6 is disabled show ipv6 route Codes: C - connected, O - OSPF, R - RIP, S - static M - mgmt, U - route usable, * - candidate default show ipv6 neighbors IPv6 Neighbors -------------- IPv6 Address Age Link-layer Addr State Interface ------------ --- --------------- ----- --------- show local-userdb User Summary ------------ Name Password Role E-Mail Enabled Expiry Status Sponsor-Name Remote-IP Grantor-Name ---- -------- ---- ------ ------- ------ ------ ------------ --------- ------------ David ******** guest Yes Active 0.0.0.0 admin User Entries: 1 show local-userdb-ap AP-entry Details ---------------- Name AP-Group AP-Name Full-Name Authen-Username Revoke-Text AP_Authenticated Description Date-Added Enabled Remote-IP ---- -------- ------- --------- --------------- ----------- ---------------- ----------- ---------- ------- --------- 6c:f3:7f:c4:5e:c2 NZRCWLG 6c:f3:7f:c4:5e:c2 Provisioned Thu Jan 23 22:31:10 2014 Yes 0.0.0.0 6c:f3:7f:c4:5e:b7 NZRCWLG 6c:f3:7f:c4:5e:b7 Provisioned Thu Jan 23 22:20:32 2014 Yes 0.0.0.0 AP Entries: 2 show local-userdb-remote-node Remote-Node-entry Details ------------------------- Name Remote-Node-Profile ---- ------------------- Remote-Node Entries: 0 show mux config ^ % Invalid input detected at '^' marker. show mux state ^ % Invalid input detected at '^' marker. show spanning-tree Spanning-Tree is disabled show spantree Spanning-Tree is disabled show trunk Trunk Port Table ----------------- Port Vlans Allowed Vlans Active Native Vlan ---- ------------- ------------ ----------- show vrrp show loginsessions Session Table ------------- ID User Name User Role Connection From Idle Time Session Time -- --------- --------- --------------- --------- ------------ 1 admin root 192.168.0.50 00:00:10 00:27:54 show auth-tracebuf Auth Trace Buffer ----------------- Feb 27 11:23:30 ap-up * 6c:f3:7f:c5:ec:28 - - wpa2 psk aes Feb 27 11:23:32 ap-up * 6c:f3:7f:c5:ec:29 - - wpa2 psk aes Feb 27 11:23:33 ap-up * 6c:f3:7f:c5:ec:20 - - wpa2 psk aes Feb 27 11:23:33 ap-up * 6c:f3:7f:c5:ec:21 - - wpa2 psk aes Feb 27 11:23:33 ap-up * 6c:f3:7f:c5:eb:78 - - wpa2 psk aes Feb 27 11:23:33 ap-up * 6c:f3:7f:c5:eb:79 - - wpa2 psk aes Feb 27 11:23:33 ap-up * 6c:f3:7f:c5:eb:70 - - wpa2 psk aes Feb 27 11:23:33 ap-up * 6c:f3:7f:c5:eb:71 - - wpa2 psk aes Feb 27 11:28:34 station-up * 08:11:96:e3:14:d0 6c:f3:7f:c5:ec:28 - - wpa2 psk aes Feb 27 11:28:34 station-data-ready * 08:11:96:e3:14:d0 00:00:00:00:00:00 2 - Feb 27 11:28:34 wpa2-key1 <- 08:11:96:e3:14:d0 6c:f3:7f:c5:ec:28 - 117 Feb 27 11:28:34 wpa2-key2 -> 08:11:96:e3:14:d0 6c:f3:7f:c5:ec:28 - 119 Feb 27 11:28:34 wpa2-key3 <- 08:11:96:e3:14:d0 6c:f3:7f:c5:ec:28 - 151 Feb 27 11:28:34 wpa2-key4 -> 08:11:96:e3:14:d0 6c:f3:7f:c5:ec:28 - 95 Feb 27 11:29:55 station-down * 08:11:96:e3:14:d0 6c:f3:7f:c5:ec:28 - - show ap license-usage AP Licenses ----------- Type Number ---- ------ AP Licenses 32 PEF Licenses 32 Overall AP License Limit 32 AP Usage -------- Type Count ---- ----- CAPs 0 RAPs 2 Tunneled nodes 0 Total APs 2 Remaining AP Capacity --------------------- Type Number ---- ------ CAPs 15 RAPs 30 show ap vlan-usage VLAN Usage Table ---------------- VLAN ID Clients ------- ------- show ap arm state AP-6c:f3:7f:c4:5e:c2:192.168.150.5:1:15:22-Edge:enable : Client Density:0 Neighbor Data ------------- Name IP Address SNR Assignment Neighbor Density ---- ---------- --- ---------- ---------------- 6c:f3:7f:c4:5e:b7 192.168.150.6 0 11/15 0 AP-6c:f3:7f:c4:5e:c2:192.168.150.5:48:16:22-Edge:enable : Client Density:0 Neighbor Data ------------- Name IP Address SNR Assignment Neighbor Density ---- ---------- --- ---------- ---------------- 6c:f3:7f:c4:5e:b7 192.168.150.6 58 100/18 0 AP-6c:f3:7f:c4:5e:b7:192.168.150.6:11:15:22-Edge:enable : Client Density:0 Neighbor Data ------------- Name IP Address SNR Assignment Neighbor Density ---- ---------- --- ---------- ---------------- 6c:f3:7f:c4:5e:c2 192.168.150.5 62 1/15 0 AP-6c:f3:7f:c4:5e:b7:192.168.150.6:100:18:22-Edge:enable : Client Density:0 Neighbor Data ------------- Name IP Address SNR Assignment Neighbor Density ---- ---------- --- ---------- ---------------- 6c:f3:7f:c4:5e:c2 192.168.150.5 60 48/16 0 show ap band-steering-clients 5GHz Capable Clients:0 show database synchronize Last synchronization time: Not synchronized since last reboot Periodic synchronization is disabled Synchronization includes RF plan data show snmp inform stats Inform queue size is 250 SNMP INFORM STATS ----------------- HOST PORT INFORMS-INQUEUE OVERFLOW TOTAL INFORMS ---- ---- --------------- -------- ------------- show voice client-status Voice Client(s) Status ---------------------- Client(IP) Client(MAC) Client Name ALG Server(IP) Registration State Call Status BSSID ESSID AP Name Flags ---------- ----------- ----------- --- ---------- ------------------ ----------- ----- ----- ------- ----- Num Clients:0 Flags: V - Visitor, W - Wired, R - Remote show voice call-counter System Wide Voice Call Counters ------------------------------- Total Call Originated Call Terminated Active Success Failed Blocked Aborted Forwarded ----- --------------- --------------- ------ ------- ------ ------- ------- --------- 0 0 0 0 0 0 0 0 0 show voice prioritization ^ % Invalid input detected at '^' marker. show voice statistics cac CAC counters and statistics --------------------------- Name Value ---- ----- Dropped SIP INVITE 0 Sent SIP status 480 0 Sent SIP status 486 0 Sent SIP status 503 0 show voice statistics tspec TSPEC Enforcement statistics ---------------------------- Name Value ---- ----- TSPEC ADDTS Request 0 TSPEC accepted 0 TSPEC denied due to CAC 0 TSPEC enforcement timer events 0 Calls established within enforcement period 0 TSPEC deleted after enforcement period 0 show tpm cert-info subject= /CN=AR0009953::00:1a:1e:21:de:f0 issuer= /DC=com/DC=arubanetworks/DC=ca4/CN=DEVICE-CA4 serial=440FE0ED000000049882 notBefore=Jul 26 04:58:56 2012 GMT notAfter=Jul 21 04:58:56 2032 GMT show tpm errorlog Could not find any Error Logs for TPM and Certificates. show control-plane-security Control Plane Security Profile ------------------------------ Parameter Value --------- ----- Control Plane Security Disabled Auto Cert Provisioning Disabled Auto Cert Allow All Enabled Auto Cert Allowed Addresses N/A show cluster-config Cluster Role ------------ None ---- Cluster IPSEC Controllers -------------------------- Cluster IPSEC Controllers (Certificates) ----------------------------------------- MAC address of the Peer's Certificate Cert-Type CA cert Server cert ------------------------------------- --------- ------- ----------- show whitelist-db cpsec-status Entries in Whitelist database Total entries: 0 Approved entries: 0 Unapproved entries: 0 Certified entries: 0 Certified hold entries: 0 Revoked entries: 0 Marked for deletion entries: 0 show whitelist-db cpsec Control-Plane Security Whitelist-entry Details ---------------------------------------------- MAC-Address Enable State Cert-Type Description Revoke Text Last Updated ----------- ------ ----- --------- ----------- ----------- ------------ Total Entries: 0 show whitelist-db cpsec-local-switch-list Registered Local Switch Details ------------------------------- Active MAC-Address IP-Address Sequence Number Remote Sequence Number NULL Update Count Local Purge Remote Purge Remote Last-Seq ------ ----------- ---------- --------------- ---------------------- ----------------- ----------- ------------ --------------- Total Entries: 0 show whitelist-db cpsec-master-switch-list Registered Master Switch Details -------------------------------- Active MAC-Address IP-Address Sequence Number Remote Sequence Number NULL Update Count Local Purge Remote Purge Remote Last-Seq ------ ----------- ---------- --------------- ---------------------- ----------------- ----------- ------------ --------------- Total Entries: 0 show whitelist-db cpsec-seq Sequence Number Details ----------------------- Table Name Current Seq Number ---------- ------------------ cpsec_whitelist 36 show cluster-switches SWITCH-IP CLUSTER-ROLE ----------------------------- Certificates ------------ SWITCH-IP MAC-ADDRESS CLUSTER-ROLE --------------------------------------------------------- show aaa fqdn-server-names Auth Server FQDN names ---------------------- FQDN IP Address Refcount ---- ---------- -------- show remote-node running-config remote-node config-id 6 show remote-node license-usage Remote Node AP License Usage (license limit: 32) ------------------------------------------------ MAC Address IP Address AP Lic. Used PEF Lic. Used RF Protect Lic. Used Last update (secs. ago) ----------- ---------- ------------ ------------- -------------------- ----------------------- Total AP Licenses Used :0 Total PEF Licenses Used :0 Total RF Protect Licenses Used :0 show crypto-local pki CRL CRLs ---- Name Original Filename Reference Count Expired -------------- ----------------- --------------- ------- show crypto-local pki trustpoint ^ % Invalid input detected at '^' marker. show crypto-local pki service-ocsp-responder OCSP Responder Service is disabled show crypto-local pki ocsp-client-stats OCSP Client Statistics ---------------------- Total Requests = 0 Requests Sent = 0 Total Responses = 0 Verified Responses = 0 Unverified Responses = 0 Good = 0 Revoked = 0 Unknown = 0 Timed out = 0 Hash Table Current Entries = 0 Max Entries = 0 Cleanup Counter = 66 Last Cleanup = Thu Feb 27 11:55:31 2014 show crypto-local pki OCSPResponderCert Certificates ------------ Name Original Filename Reference Count Expired -------------- ----------------- --------------- ------- show crypto-local pki OCSPSignerCert Certificates ------------ Name Original Filename Reference Count Expired -------------- ----------------- --------------- ------- show datapath debug eap counters Datapath EAP termination Statistics ----------------------------------- Memory used (bytes) = 21664 Memory allocs = 12369 Memory frees = 12315 Memory alloc failures = 0 EAP sessions created = 0 EAP sessions deleted = 0 Minimum EAP session time (msec) = 0 Average EAP session time (msec) = 0 Maximum EAP session time (msec) = 0 Current EAP sessions = 0 Identity requests sent = 0 Certs sent to auth = 0 Cert responses received from auth = 0 sbeth allocs = 0 sbeth alloc errors = 0 Cert verify successes = 0 Cert verify failures = 0 HW keyexchange requests sent = 0 HW keyexchange responses received = 0 Invalid station after HW response = 0 Invalid stations = 0 Station lookup failures = 0 TLS user query requests sent to auth = 0 TLS user query responses from auth = 0 Messages with invalid length = 0 MPPE keys sent to auth = 0 EAP successes sent to auth = 0 MSCHAPv2 requests sent to auth = 0 MSCHAPv2 responses from auth = 0 MSCHAPv2 auth successes = 0 MSCHAPv2 auth failures = 0 MSCHAPv2 auth failure retries = 0 GTC requests sent to auth = 0 GTC responses from auth = 0 GTC auth successes = 0 GTC auth failures = 0 GTC auth next pin mode = 0 Total PEAP packets transmitted = 0 PEAP Identity responses = 0 PEAP NAKs = 0 Identity responses = 0 NAKs = 0 Total EAP successes = 0 Total EAP failures = 0 Retransmits = 0 Peer timeouts = 0 Auth timeouts = 0 Retransmit timeouts = 0 Restart requests = 0 EAP Indication errors = 0 Suite-B invalid public key curves = 0 Suite-B invalid TLS versions = 0 Suite-B invalid prime curves = 0 Suite-B invalid signature algos = 0 Suite-B invalid ciphers = 0 Incomplete Cert Msgs = 0 show profile-errors Invalid Profiles ---------------- Profile Error ------- ----- show aaa authentication dot1x 802.1X Authentication Profile List ---------------------------------- Name References Profile Status ---- ---------- -------------- default 1 default-psk 1 Predefined (editable) dot1x_prof-bej19 1 dot1x_prof-dmx37 1 Total:4 show dot1x certificates details Certficate Hash table entries ----------------------------- Dot1x certificate table entries ------------------------------- show vlan-assignment VLAN Assignment --------------- VLAN #CLIENTS ---- -------- 2 0 3 0 show ipc forwarding-statistics IPC Forwarding Statistics (Thu Feb 27 11:55:32 2014) ---------------------------------------------------- Destination Forwarded Packets Forwarded Bytes Dropped Packets Dropped Bytes ----------- ----------------- --------------- --------------- ------------- Station Management Low Priority 330 556687 0 0 Authentication 1 1540 0 0 WMS Low Priority 705 653258 0 0 SAPM 306 37669 0 0 Authentication ACK 6 6294 0 0 User Database Server 2 5990 0 0 STM 2 330 0 0 AMAPI SNMP trap client 152 22755 0 0 show usb USB Device Table ---------------- Address Product Vendor ProdID Serial Type Profile State ------- ------- ------ ------ ------ ---- ------- ----- show usb verbose T: Bus=03 Lev=00 Prnt=00 Port=00 Cnt=00 Dev#= 1 Spd=12 MxCh= 1 B: Alloc= 0/900 us ( 0%), #Int= 0, #Iso= 0 D: Ver= 1.10 Cls=09(hub ) Sub=00 Prot=00 MxPS=64 #Cfgs= 1 P: Vendor=0000 ProdID=0000 Rev= 2.06 S: Manufacturer=Linux 2.6.16 ohci_hcd S: Product=XLS OHCI Host Controller S: SerialNumber=ohci-xls C:* #Ifs= 1 Cfg#= 1 Atr=c0 MxPwr= 0mA I: If#= 0 Alt= 0 #EPs= 1 Cls=09(hub ) Sub=00 Prot=00 Driver=hub E: Ad=81(I) Atr=03(Int.) MxPS= 2 Ivl=255ms T: Bus=02 Lev=00 Prnt=00 Port=00 Cnt=00 Dev#= 1 Spd=12 MxCh= 1 B: Alloc= 0/900 us ( 0%), #Int= 0, #Iso= 0 D: Ver= 1.10 Cls=09(hub ) Sub=00 Prot=00 MxPS=64 #Cfgs= 1 P: Vendor=0000 ProdID=0000 Rev= 2.06 S: Manufacturer=Linux 2.6.16 ohci_hcd S: Product=XLS OHCI Host Controller S: SerialNumber=ohci-xls C:* #Ifs= 1 Cfg#= 1 Atr=c0 MxPwr= 0mA I: If#= 0 Alt= 0 #EPs= 1 Cls=09(hub ) Sub=00 Prot=00 Driver=hub E: Ad=81(I) Atr=03(Int.) MxPS= 2 Ivl=255ms T: Bus=01 Lev=00 Prnt=00 Port=00 Cnt=00 Dev#= 1 Spd=480 MxCh= 2 B: Alloc= 0/800 us ( 0%), #Int= 1, #Iso= 0 D: Ver= 2.00 Cls=09(hub ) Sub=00 Prot=01 MxPS=64 #Cfgs= 1 P: Vendor=0000 ProdID=0000 Rev= 2.06 S: Manufacturer=Linux 2.6.16 ehci_hcd S: Product=XLS EHCI Host Controller S: SerialNumber=ehci-xls C:* #Ifs= 1 Cfg#= 1 Atr=c0 MxPwr= 0mA I: If#= 0 Alt= 0 #EPs= 1 Cls=09(hub ) Sub=00 Prot=00 Driver=hub E: Ad=81(I) Atr=03(Int.) MxPS= 2 Ivl=256ms T: Bus=01 Lev=01 Prnt=01 Port=00 Cnt=01 Dev#= 2 Spd=480 MxCh= 4 D: Ver= 2.00 Cls=09(hub ) Sub=00 Prot=02 MxPS=64 #Cfgs= 1 P: Vendor=05e3 ProdID=0610 Rev=32.94 S: Product=USB2.0 Hub C:* #Ifs= 1 Cfg#= 1 Atr=e0 MxPwr=100mA I: If#= 0 Alt= 0 #EPs= 1 Cls=09(hub ) Sub=00 Prot=01 Driver=hub E: Ad=81(I) Atr=03(Int.) MxPS= 1 Ivl=256ms I: If#= 0 Alt= 1 #EPs= 1 Cls=09(hub ) Sub=00 Prot=02 Driver=hub E: Ad=81(I) Atr=03(Int.) MxPS= 1 Ivl=256ms show usb ports /dev/usb: ttyACM0 ttyACM1 ttyACM10 ttyACM11 ttyACM12 ttyACM13 ttyACM14 ttyACM15 ttyACM16 ttyACM17 ttyACM18 ttyACM19 ttyACM2 ttyACM20 ttyACM21 ttyACM22 ttyACM23 ttyACM24 ttyACM25 ttyACM26 ttyACM27 ttyACM28 ttyACM29 ttyACM3 ttyACM30 ttyACM31 ttyACM4 ttyACM5 ttyACM6 ttyACM7 ttyACM8 ttyACM9 show cellular profile Cellular Profile Table ---------------------- Name Vend Prod Serial Dialer Tty Driver Priority Modeswitch ---- ---- ---- ------ ------ --- ------ -------- ---------- Novatel_U720 1410 2110 evdo_us ttyUSB0 option default Novatel_U727 1410 4100 evdo_us ttyUSB0 option default Kyocera_KPC680 0c88 180a evdo_us ttyUSB0 option default Sierra_Compass_597 1199 0023 evdo_us ttyUSB0 sierra default Pantech_UM175 106c 3714 evdo_us ttyUSB1 option default Sierra_USBConn_881 1199 6856 gsm_us ttyUSB0 option default USBConn_Mercury_C885 1199 6880 gsm_us ttyUSB3 option default Globetrotter_Icon322 0af0 d033 gsm_us ttyHS3 hso default ZTE_MF626 19d2 0031 vivo_br ttyUSB2 option default ZTE_MF668 19d2 0017 gsm_us ttyUSB1 option default Novatel_U760 1410 6000 evdo_us ttyUSB0 option default Huawei_E220_E272 12d1 1003 gsm_asia ttyUSB0 option default ZTE_MF626_668_MS 19d2 2000 eject sr0 Default cellular priority: 100 show uplink Uplink Manager: Disabled Uplink Management Table ----------------------- Id Uplink Type Properties Priorty State Status -- ----------- ---------- ------- ----- ------ show uplink config Uplink Manager: Disabled Default Wired Priority: 200 Default Cellular Priority: 100 show uplink connection show uplink stats No output available show usb-storage USB Disk Table -------------- Device Name Device Alias Num of Partitions Size Mounted partitions ----------- ------------ ----------------- ---- ------------------ show network-storage status Network attached service is disabled show network-storage shares NAS Shares ---------- Disk Name Partition Name Folder Name Share Name Share Path Share Mode Status --------- -------------- ----------- ---------- ---------- ---------- ------ show network-storage users NAS Users --------- Share Name Machine Connected at ---------- ------- ------------ show network-printer config Network Printer Settings ------------------------ Config Parameter Value ---------------- ----- MaxClients 10 MaxClientsPerHost 10 MaxJobs 500 show network-printer status Networked Printer Status ------------------------ Printer Name Printer Alias Status Comment ------------ ------------- ------ ------- show tpm cert-info subject= /CN=AR0009953::00:1a:1e:21:de:f0 issuer= /DC=com/DC=arubanetworks/DC=ca4/CN=DEVICE-CA4 serial=440FE0ED000000049882 notBefore=Jul 26 04:58:56 2012 GMT notAfter=Jul 21 04:58:56 2032 GMT show tpm errorlog Could not find any Error Logs for TPM and Certificates. show control-plane-security Control Plane Security Profile ------------------------------ Parameter Value --------- ----- Control Plane Security Disabled Auto Cert Provisioning Disabled Auto Cert Allow All Enabled Auto Cert Allowed Addresses N/A show cluster-config Cluster Role ------------ None ---- Cluster IPSEC Controllers -------------------------- Cluster IPSEC Controllers (Certificates) ----------------------------------------- MAC address of the Peer's Certificate Cert-Type CA cert Server cert ------------------------------------- --------- ------- ----------- show whitelist-db cpsec-status Entries in Whitelist database Total entries: 0 Approved entries: 0 Unapproved entries: 0 Certified entries: 0 Certified hold entries: 0 Revoked entries: 0 Marked for deletion entries: 0 show whitelist-db cpsec Control-Plane Security Whitelist-entry Details ---------------------------------------------- MAC-Address Enable State Cert-Type Description Revoke Text Last Updated ----------- ------ ----- --------- ----------- ----------- ------------ Total Entries: 0 show whitelist-db cpsec-local-switch-list Registered Local Switch Details ------------------------------- Active MAC-Address IP-Address Sequence Number Remote Sequence Number NULL Update Count Local Purge Remote Purge Remote Last-Seq ------ ----------- ---------- --------------- ---------------------- ----------------- ----------- ------------ --------------- Total Entries: 0 show whitelist-db cpsec-master-switch-list Registered Master Switch Details -------------------------------- Active MAC-Address IP-Address Sequence Number Remote Sequence Number NULL Update Count Local Purge Remote Purge Remote Last-Seq ------ ----------- ---------- --------------- ---------------------- ----------------- ----------- ------------ --------------- Total Entries: 0 show whitelist-db cpsec-seq Sequence Number Details ----------------------- Table Name Current Seq Number ---------- ------------------ cpsec_whitelist 36 show cluster-switches SWITCH-IP CLUSTER-ROLE ----------------------------- Certificates ------------ SWITCH-IP MAC-ADDRESS CLUSTER-ROLE --------------------------------------------------------- show log errorlog all Feb 27 11:21:33 |fpapps| DispAddInput failed Feb 27 11:21:33 |fpapps| Reboot Cause: User reboot. Feb 27 11:21:40 |fpapps| poe download start Feb 27 11:22:31 |nanny| Received the PAPI_APP_SPAWN_PROC Message Feb 27 11:22:35 |certmgr| Received unknown message Feb 27 11:22:37 |certmgr| Received unknown message Feb 27 11:22:49 |stm| Unexpected stm (Station management) runtime error at data_path_handler, 642, data_path_handler: recv - Network is down Large files under /tmp====================== No excessively large files found under /tmp show running-config Building Configuration... version 6.1 enable secret "******" hostname "NZRCWLG" clock timezone NZT 12 location "Building1.floor1" controller config 12 ip NAT pool dynamic-srcnat 0.0.0.0 0.0.0.0 ip access-list eth validuserethacl permit any ! netservice svc-snmp-trap udp 162 netservice svc-netbios-dgm udp 138 netservice svc-pcoip2-tcp tcp 4172 netservice svc-dhcp udp 67 68 netservice svc-smb-tcp tcp 445 netservice svc-https tcp 443 netservice svc-ike udp 500 netservice svc-l2tp udp 1701 netservice svc-syslog udp 514 netservice svc-citrix tcp 2598 netservice svc-pptp tcp 1723 netservice svc-ica tcp 1494 netservice svc-telnet tcp 23 netservice svc-sccp tcp 2000 netservice svc-sec-papi udp 8209 netservice svc-tftp udp 69 netservice svc-kerberos udp 88 netservice svc-sip-tcp tcp 5060 netservice svc-netbios-ssn tcp 139 netservice svc-lpd tcp 515 netservice svc-pop3 tcp 110 netservice svc-adp udp 8200 netservice svc-cfgm-tcp tcp 8211 netservice svc-noe udp 32512 netservice svc-http-proxy3 tcp 8888 netservice svc-pcoip-tcp tcp 50002 netservice svc-pcoip-udp udp 50002 netservice svc-dns udp 53 netservice svc-msrpc-tcp tcp 135 139 netservice svc-rtsp tcp 554 netservice svc-http tcp 80 netservice svc-vocera udp 5002 netservice svc-h323-tcp tcp 1720 netservice svc-h323-udp udp 1718 1719 netservice svc-nterm tcp 1026 1028 netservice svc-sip-udp udp 5060 netservice svc-http-proxy2 tcp 8080 netservice svc-papi udp 8211 netservice svc-noe-oxo udp 5000 alg noe netservice svc-ftp tcp 21 netservice svc-natt udp 4500 netservice svc-svp 119 netservice svc-microsoft-ds tcp 445 netservice svc-gre 47 netservice svc-smtp tcp 25 netservice svc-smb-udp udp 445 netservice svc-sips tcp 5061 netservice svc-netbios-ns udp 137 netservice svc-esp 50 netservice svc-ipp-tcp tcp 631 netservice svc-bootp udp 67 69 netservice svc-snmp udp 161 netservice svc-v6-dhcp udp 546 547 netservice svc-pcoip2-udp udp 4172 netservice svc-icmp 1 netservice svc-ntp udp 123 netservice svc-msrpc-udp udp 135 139 netservice svc-ssh tcp 22 netservice svc-ipp-udp udp 631 netservice svc-http-proxy1 tcp 3128 netservice svc-v6-icmp 58 netservice svc-vmware-rdp tcp 3389 netexthdr default ! time-range night-hours periodic weekday 18:01 to 23:59 weekday 00:00 to 07:59 ! time-range weekend periodic weekend 00:00 to 23:59 ! time-range working-hours periodic weekday 08:00 to 18:00 ! time-range night-hours periodic weekday 18:01 to 23:59 weekday 00:00 to 07:59 ! time-range weekend periodic weekend 00:00 to 23:59 ! time-range working-hours periodic weekday 08:00 to 18:00 ! ip access-list session allow-diskservices any any svc-netbios-dgm permit any any svc-netbios-ssn permit any any svc-microsoft-ds permit any any svc-netbios-ns permit ! ip access-list session control user any udp 68 deny any any svc-icmp permit any any svc-dns permit any any svc-papi permit any any svc-sec-papi permit any any svc-cfgm-tcp permit any any svc-adp permit any any svc-tftp permit any any svc-dhcp permit any any svc-natt permit ! ip access-list session v6-icmp-acl ipv6 any any svc-v6-icmp permit ! ip access-list session validuser network 169.254.0.0 255.255.0.0 any any deny any any any permit ipv6 any any any permit ! ip access-list session vocera-acl any any svc-vocera permit queue high ! ip access-list session v6-https-acl ipv6 any any svc-https permit ! ip access-list session vmware-acl any any svc-vmware-rdp permit tos 46 dot1p-priority 6 any any svc-pcoip-tcp permit tos 46 dot1p-priority 6 any any svc-pcoip-udp permit tos 46 dot1p-priority 6 any any svc-pcoip2-tcp permit tos 46 dot1p-priority 6 any any svc-pcoip2-udp permit tos 46 dot1p-priority 6 ! ip access-list session icmp-acl any any svc-icmp permit ! ip access-list session captiveportal user alias controller svc-https dst-nat 8081 user any svc-http dst-nat 8080 user any svc-https dst-nat 8081 user any svc-http-proxy1 dst-nat 8088 user any svc-http-proxy2 dst-nat 8088 user any svc-http-proxy3 dst-nat 8088 ! ip access-list session v6-dhcp-acl ipv6 any any svc-v6-dhcp permit ! ip access-list session allowall any any any permit ipv6 any any any permit ! ip access-list session v6-dns-acl ipv6 any any svc-dns permit ! ip access-list session sip-acl any any svc-sip-udp permit queue high any any svc-sip-tcp permit queue high ! ip access-list session https-acl any any svc-https permit ! ip access-list session dns-acl any any svc-dns permit ! ip access-list session ra-guard ipv6 user any icmpv6 rtr-adv deny ! ip access-list session citrix-acl any any svc-citrix permit tos 46 dot1p-priority 6 any any svc-ica permit tos 46 dot1p-priority 6 ! ip access-list session allow-printservices any any svc-lpd permit any any svc-ipp-tcp permit any any svc-ipp-udp permit ! ip access-list session logon-control user any udp 68 deny any any svc-icmp permit any any svc-dns permit any any svc-dhcp permit any any svc-natt permit ! ip access-list session vpnlogon user any svc-ike permit user any svc-esp permit any any svc-l2tp permit any any svc-pptp permit any any svc-gre permit ! ip access-list session srcnat user any any src-nat ! ip access-list session skinny-acl any any svc-sccp permit queue high ! ip access-list session tftp-acl any any svc-tftp permit ! ip access-list session v6-allowall ipv6 any any any permit ! ip access-list session cplogout user alias controller svc-https dst-nat 8081 ! ip access-list session captiveportal6 ipv6 user alias controller6 svc-https captive ipv6 user any svc-http captive ipv6 user any svc-https captive ipv6 user any svc-http-proxy1 captive ipv6 user any svc-http-proxy2 captive ipv6 user any svc-http-proxy3 captive ! ip access-list session dhcp-acl any any svc-dhcp permit ! ip access-list session http-acl any any svc-http permit ! ip access-list session v6-http-acl ipv6 any any svc-http permit ! ip access-list session ap-uplink-acl any any udp 68 permit any any svc-icmp permit any host 224.0.0.251 udp 5353 permit ! ip access-list session ap-acl any any svc-gre permit any any svc-syslog permit any user svc-snmp permit user any svc-snmp-trap permit user any svc-ntp permit user alias controller svc-ftp permit ! ip access-list session svp-acl any any svc-svp permit queue high user host 224.0.1.116 any permit ! ip access-list session noe-acl any any svc-noe permit queue high ! ip access-list session h323-acl any any svc-h323-tcp permit queue high any any svc-h323-udp permit queue high ! ip access-list session v6-logon-control ipv6 user any udp 68 deny ipv6 any any svc-v6-icmp permit ipv6 any any svc-v6-dhcp permit ipv6 any any svc-dns permit ! vpn-dialer default-dialer ike authentication PRE-SHARE ****** ! user-role ap-role access-list session control access-list session ap-acl ! user-role default-vpn-role access-list session allowall access-list session v6-allowall ! user-role voice access-list session sip-acl access-list session noe-acl access-list session svp-acl access-list session vocera-acl access-list session skinny-acl access-list session h323-acl access-list session dhcp-acl access-list session tftp-acl access-list session dns-acl access-list session icmp-acl ! user-role default-via-role access-list session allowall ! user-role guest-logon captive-portal "default" access-list session logon-control access-list session captiveportal access-list session v6-logon-control access-list session captiveportal6 ! user-role guest access-list session http-acl access-list session https-acl access-list session dhcp-acl access-list session icmp-acl access-list session dns-acl access-list session v6-http-acl access-list session v6-https-acl access-list session v6-dhcp-acl access-list session v6-icmp-acl access-list session v6-dns-acl ! user-role stateful-dot1x ! user-role authenticated access-list session allowall access-list session v6-allowall ! user-role logon access-list session logon-control access-list session captiveportal access-list session vpnlogon access-list session v6-logon-control access-list session captiveportal6 ! ! interface mgmt shutdown ! dialer group evdo_us init-string ATQ0V1E0 dial-string ATDT#777 ! dialer group gsm_us init-string AT+CGDCONT=1,"IP","ISP.CINGULAR" dial-string ATD*99# ! dialer group gsm_asia init-string AT+CGDCONT=1,"IP","internet" dial-string ATD*99***1# ! dialer group vivo_br init-string AT+CGDCONT=1,"IP","zap.vivo.com.br" dial-string ATD*99# ! vlan 2 wired aaa-profile "NZRC_Private-aaa_prof" vlan 3 wired aaa-profile "NZRC_Public-aaa_prof" vlan-name Private pool vlan Private 2 vlan-name Public pool vlan Public 3 no spanning-tree interface gigabitethernet 1/0 description "GE1/0" trusted trusted vlan 1-4094 ! interface gigabitethernet 1/1 description "GE1/1" trusted trusted vlan 1-4094 ! interface gigabitethernet 1/2 description "GE1/2" trusted trusted vlan 1-4094 switchport access vlan 2 ! interface gigabitethernet 1/3 description "GE1/3" trusted trusted vlan 1-4094 switchport access vlan 3 ! interface gigabitethernet 1/4 description "GE1/4" trusted trusted vlan 1-4094 ! interface gigabitethernet 1/5 description "GE1/5" trusted trusted vlan 1-4094 ! interface gigabitethernet 1/6 description "GE1/6" trusted trusted vlan 1-4094 ! interface gigabitethernet 1/7 description "GE1/7" trusted trusted vlan 1-4094 ! interface vlan 1 ip address 192.168.0.248 255.255.255.0 ! interface vlan 2 ip address 192.168.150.251 255.255.255.0 ! interface vlan 3 ip address 192.168.200.251 255.255.255.0 ! ip default-gateway 192.168.0.250 no uplink wired vlan 1 uplink disable ap mesh-recovery-profile cluster RecoveryMSZ3yVx4C/bne1qd wpa-hexkey ee593d1afcb644bfbfb573a6ae32dfdf42faba1ac54020eb97732a859585b5553a3ab0d66f6af427b65b9d6fe28d309fb8b740b6d35ed1a60a4eed4a8183080abd388b9ae569282ba124e2a7ea321db7 crypto isakmp policy 20 encryption aes256 ! crypto ipsec transform-set default-boc-bm-transform esp-3des esp-sha-hmac crypto ipsec transform-set default-rap-transform esp-aes256 esp-sha-hmac crypto ipsec transform-set default-aes esp-aes256 esp-sha-hmac crypto dynamic-map default-dynamicmap 10000 set transform-set "default-transform" "default-aes" ! crypto isakmp eap-passthrough eap-tls crypto isakmp eap-passthrough eap-peap crypto isakmp eap-passthrough eap-mschapv2 ip local pool "NZRC_Private" 192.168.150.5 192.168.150.240 ip local pool "NZRC_Public" 192.168.200.5 192.168.200.240 vpdn group l2tp ! ip dhcp pool NZRCWLG default-router 192.168.0.251 lease 3 0 0 0 network 192.168.0.0 255.255.255.0 authoritative ! service dhcp ! vpdn group pptp ! tunneled-node-address 0.0.0.0 adp discovery enable adp igmp-join enable adp igmp-vlan 0 voice rtcp-inactivity disable voice sip-midcall-req-timeout disable ap ap-blacklist-time 3600 ssh mgmt-auth username/password mgmt-user admin root f1a009c7018c9e1d0ea596fd5f86cb08d72784b6f3449db57c no database synchronize database synchronize rf-plan-data ip mobile domain default ! ip igmp ! ipv6 mld ! no firewall attack-rate cp 1024 ipv6 firewall ext-hdr-parse-len 100 ! firewall cp ! firewall cp packet-capture-defaults tcp disable udp disable sysmsg disable other disable ! ip domain lookup ! country NZ aaa authentication mac "default" ! aaa authentication dot1x "default" ! aaa authentication dot1x "dot1x_prof-bej19" ! aaa authentication dot1x "dot1x_prof-dmx37" ! aaa server-group "default" auth-server Internal set role condition role value-of ! aaa profile "default" ! aaa profile "NZRC_Private-aaa_prof" initial-role "authenticated" authentication-dot1x "dot1x_prof-bej19" ! aaa profile "NZRC_Public-aaa_prof" initial-role "authenticated" authentication-dot1x "dot1x_prof-dmx37" ! aaa authentication captive-portal "default" ! aaa authentication wispr "default" ! aaa authentication vpn "default" ! aaa authentication vpn "default-rap" ! aaa authentication mgmt ! aaa authentication stateful-ntlm "default" ! aaa authentication stateful-kerberos "default" ! aaa authentication stateful-dot1x ! aaa authentication wired ! web-server ! papi-security ! guest-access-email ! voice logging ! voice dialplan-profile "default" ! voice real-time-config ! voice sip ! aaa password-policy mgmt ! control-plane-security no cpsec-enable ! ids wms-general-profile poll-retries 3 ! ids wms-local-system-profile ! valid-network-oui-profile ! ap system-profile "default" ! ap regulatory-domain-profile "default" country-code NZ valid-11g-channel 1 valid-11g-channel 6 valid-11g-channel 11 valid-11a-channel 36 valid-11a-channel 40 valid-11a-channel 44 valid-11a-channel 48 valid-11a-channel 52 valid-11a-channel 56 valid-11a-channel 60 valid-11a-channel 64 valid-11a-channel 100 valid-11a-channel 104 valid-11a-channel 108 valid-11a-channel 112 valid-11a-channel 116 valid-11a-channel 132 valid-11a-channel 136 valid-11a-channel 140 valid-11a-channel 149 valid-11a-channel 153 valid-11a-channel 157 valid-11a-channel 161 valid-11a-channel 165 valid-11g-40mhz-channel-pair 1-5 valid-11g-40mhz-channel-pair 7-11 valid-11a-40mhz-channel-pair 36-40 valid-11a-40mhz-channel-pair 44-48 valid-11a-40mhz-channel-pair 52-56 valid-11a-40mhz-channel-pair 60-64 valid-11a-40mhz-channel-pair 100-104 valid-11a-40mhz-channel-pair 108-112 valid-11a-40mhz-channel-pair 132-136 valid-11a-40mhz-channel-pair 149-153 valid-11a-40mhz-channel-pair 157-161 ! ap wired-ap-profile "default" ! ap enet-link-profile "default" ! ap mesh-ht-ssid-profile "default" ! ap mesh-cluster-profile "default" ! ap wired-port-profile "default" ! ap mesh-radio-profile "default" ! ids general-profile "default" ! ids unauthorized-device-profile "default" ! ids profile "default" ! rf arm-profile "arm-maintain" assignment maintain no scanning ! rf arm-profile "arm-scan" ! rf arm-profile "default" ! rf optimization-profile "default" ! rf event-thresholds-profile "default" ! rf am-scan-profile "default" ! rf dot11a-radio-profile "default" ! rf dot11a-radio-profile "rp-maintain-a" arm-profile "arm-maintain" ! rf dot11a-radio-profile "rp-monitor-a" mode am-mode ! rf dot11a-radio-profile "rp-scan-a" arm-profile "arm-scan" ! rf dot11g-radio-profile "default" ! rf dot11g-radio-profile "rp-maintain-g" arm-profile "arm-maintain" ! rf dot11g-radio-profile "rp-monitor-g" mode am-mode ! rf dot11g-radio-profile "rp-scan-g" arm-profile "arm-scan" ! wlan dot11k-profile "default" ! wlan voip-cac-profile "default" ! wlan ht-ssid-profile "default" ! wlan ht-ssid-profile "NZRC_Private-htssid_prof" ! wlan ht-ssid-profile "NZRC_Public-htssid_prof" ! wlan edca-parameters-profile station "default" ! wlan edca-parameters-profile ap "default" ! wlan ssid-profile "default" ! wlan ssid-profile "NZRC_Private-ssid_prof" essid "NZRC_Private" opmode wpa2-psk-aes wpa-passphrase 8bb7c16b6c7d53192023e5232882f1fb75e677def12ba685 ht-ssid-profile "NZRC_Private-htssid_prof" ! wlan ssid-profile "NZRC_Public-ssid_prof" essid "NZRC_Public" opmode wpa2-psk-aes wpa-passphrase c92a7545921f987b187ab18b84abe9d66d38866a009e03a7 ht-ssid-profile "NZRC_Public-htssid_prof" ! wlan virtual-ap "default" ! wlan virtual-ap "NZRC_Private-vap_prof" aaa-profile "NZRC_Private-aaa_prof" ssid-profile "NZRC_Private-ssid_prof" vlan 2 ! wlan virtual-ap "NZRC_Public-vap_prof" aaa-profile "NZRC_Public-aaa_prof" ssid-profile "NZRC_Public-ssid_prof" vlan 3 ! ap provisioning-profile "default" ! ap-group "default" ! ap-group "NZRCWLG" virtual-ap "NZRC_Private-vap_prof" virtual-ap "NZRC_Public-vap_prof" ! logging level warnings security subcat ids logging level warnings security subcat ids-ap snmp-server enable trap process monitor log network-printer max-jobs 500 network-printer max-clients-per-host 10 network-printer max-clients 10 end