Cisco ASA Series Cli Configuration Manual page 932

Software version 9.0 for the services module
Hide thumbs Also See for ASA Series:
Table of Contents

Advertisement

Monitoring the ASA Integrated with Cisco TrustSec
Note
peer peer_addr
sgt value
address ipv4_addr
[netmask mask]
address
ipv6_addr[/prefix]
brief
detail
Output:
This example shows detailed information about the each IP-SGT mapped entry in the IP-SGT mapping
database, including whether the entry is activated. Entries are activated when they are used in a security
policy or a security group object.
hostname# show cts sxp sgt-map detail
Total number of IP-SGT mappings : 3
SGT
IPv4
Peer IP
Ins Num
Status
SGT
IPv4
Peer IP
Ins Num
Status
SGT
IPv6
Peer IP
Ins Num
Status
This example summarizes of the mapping information from IP-SGT mapping database:
hostname# show cts sxp sgt-map brief
Total number of IP-SGT mappings : 3
SGT, IPv4: 7, 2.2.2.1
SGT, IPv4: 7, 3.3.3.0
SGT, IPv6: 7, FE80::A8BB:CCFF:FE00:110
Cisco ASA Series CLI Configuration Guide
1-28
The show cts sgt-map command displays the IP-SGT Manager entries in control path; while the
show cts sxp sgt-map command displays more detailed information like instance number and
peer IP address.
Displays only IP-SGT mappings ipv4_addr peer IP address.
Displays only IP-SGT mappings ipv4_addr the SGT.
Displays only IP-SGT mappings included in the specified IPv4
address or subnet.
Displays only IP-SGT mappings included in the specified IPv6
address or subnet.
Displays only the summary.
Displays details, such as the security group name.
: STBU(7)
: 2.2.2.1
: 2.2.2.1
: 1
: Active
: STBU(7)
: 2.2.2.0
: 3.3.3.1
: 1
: Inactive
: 6
: 1234::A8BB:CCFF:FE00:110
: 2.2.2.1
: 1
: Active
Chapter 1
Configuring the ASA to Integrate with Cisco TrustSec

Advertisement

Table of Contents
loading

Table of Contents