Quantcast
Channel: All SRX Services Gateway posts
Viewing all articles
Browse latest Browse all 17645

Re: monitor policer stats in SRX1400, 12.1X44 using simple-filter

$
0
0

Hello.

 

Seems we can't use the same commands when using simple-filters...

 

 

SRX1400> show policer ?
Possible completions:<[Enter]>            Execute this command<policer>            Policer name
  __auto_policer_template_1__
  __auto_policer_template_2__
  __auto_policer_template_3__
  __auto_policer_template_4__
  __auto_policer_template_5__
  __auto_policer_template_6__
  __auto_policer_template_7__
  __auto_policer_template_8__
  __auto_policer_template__
  __default_arp_policer__
  logical-system       Name of logical system, or 'all'
  |                    Pipe through a command

SRX1400> show policer
Policers:
Name                                                Bytes              Packets
__default_arp_policer__                                                      0
__policer_tmpl__-term                                                        0
__policer_tmpl__-fc0                                                         0
__policer_tmpl__-fc0                                                         0
__policer_tmpl__-fc1                                                         0
__policer_tmpl__-fc0                                                         0
__policer_tmpl__-fc1                                                         0
__policer_tmpl__-fc2                                                         0
__policer_tmpl__-fc0                                                         0
__policer_tmpl__-fc1                                                         0
__policer_tmpl__-fc2                                                         0
__policer_tmpl__-fc3                                                         0
__policer_tmpl__-fc0                                                         0
__policer_tmpl__-fc1                                                         0
__policer_tmpl__-fc2                                                         0
__policer_tmpl__-fc3                                                         0
__policer_tmpl__-fc4                                                         0
__policer_tmpl__-fc0                                                         0
__policer_tmpl__-fc1                                                         0
__policer_tmpl__-fc2                                                         0
__policer_tmpl__-fc3                                                         0
__policer_tmpl__-fc4                                                         0
__policer_tmpl__-fc5                                                         0
__policer_tmpl__-fc0                                                         0
__policer_tmpl__-fc1                                                         0
__policer_tmpl__-fc2                                                         0
__policer_tmpl__-fc3                                                         0
__policer_tmpl__-fc4                                                         0
__policer_tmpl__-fc5                                                         0
__policer_tmpl__-fc6                                                         0
__policer_tmpl__-fc0                                                         0
__policer_tmpl__-fc1                                                         0
__policer_tmpl__-fc2                                                         0
__policer_tmpl__-fc3                                                         0
__policer_tmpl__-fc4                                                         0
__policer_tmpl__-fc5                                                         0
__policer_tmpl__-fc6                                                         0
__policer_tmpl__-fc7                                                         0

SRX1400>

 

 

SRX1400> show firewall filter ?
Possible completions:<filtername>         Filter name
  __default_bpdu_filter__
  application          Owner application
  counter              Counter name
  logical-system       Name of logical system, or 'all'
  version              Show filter version installed

SRX1400> show firewall filter RATE-LIMIT

SRX1400>

 

 

SRX1400> show interfaces reth0.1111 extensive
  Logical interface reth0.1111 (Index 135) (SNMP ifIndex 604) (Generation 302)
    Description: ge-0/0/0  Untrust  Untrust-VR
    Flags: SNMP-Traps 0x0 VLAN-Tag [ 0x8100.1111 ]  Encapsulation: ENET2
    Statistics        Packets        pps         Bytes          bps
    Bundle:
        Input :    3587290025        641 3059840850913      5319904
        Output:    3386878381        638 1892231967294      3494480
    Link:
      ge-4/0/0.1111
        Input :       5985682          0    5668365120            0
        Output:       4487528          0    2342814816            0
      ge-0/0/0.1111
        Input :    3581304343        641 3054172485793      5319904
        Output:    3382390853        638 1889889152478      3494480
    Marker Statistics:   Marker Rx     Resp Tx   Unknown Rx   Illegal Rx
      ge-4/0/0.1111               0           0            0            0
      ge-0/0/0.1111               0           0            0            0
    Security: Zone: Untrust
    Allowed host-inbound traffic : ping
    Flow Statistics :
    Flow Input statistics :
      Self packets :                     485
      ICMP packets :                     41128
      VPN packets :                      0
      Multicast packets :                0
      Bytes permitted by policy :        2933684790039
      Connections established :          17070
    Flow Output statistics:
      Multicast packets :                0
      Bytes permitted by policy :        1793169437535
    Flow error statistics (Packets dropped due to):
      Address spoofing:                  0
      Authentication failed:             0
      Incoming NAT errors:               0
      Invalid zone received packet:      0
      Multiple user authentications:     0
      Multiple incoming NAT:             0
      No parent for a gate:              0
      No one interested in self packets: 0
      No minor session:                  0
      No more sessions:                  0
      No NAT gate:                       0
      No route present:                  749
      No SA for incoming SPI:            0
      No tunnel found:                   0
      No session for a gate:             0
      No zone or NULL zone binding       0
      Policy denied:                     340408
      Security association not active:   0
      TCP sequence number out of window: 51482
      Syn-attack protection:             0
      User authentication errors:        0
    Protocol inet, MTU: 1500, Generation: 385, Route table: 10
      Flags: Sendbcast-pkt-to-re, Is-Primary, Sample-input, Sample-output
      Addresses, Flags: Is-Default Is-Preferred Is-Primary
        Destination: 2.2.2.0/30, Local: 2.2.2.2, Broadcast: 2.2.2.3, Generation: 188
    Protocol multiservice, MTU: Unlimited, Generation: 386, Route table: 10
      Policer: Input: __default_arp_policer__


SRX1400>

 

 

 

Thanks,

Sam


Viewing all articles
Browse latest Browse all 17645

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>