Cts Role-Based Monitor - Cisco Catalyst 3650 series Command Reference Manual

Cisco ios xe everest 16.5.1a
Hide thumbs Also See for Catalyst 3650 series:
Table of Contents

Advertisement

cts role-based monitor

To enable role-based (security-group) access list monitoring, use the cts role-based monitor command in
global configuration mode. To remove role-based access list monitoring, use the no form of this command.
cts role-based monitor {all | permissions | {default | from {sgt | unknown}} to {sgt | unknown} [ipv4]}
no cts role-based monitor {all | permissions | {default | from {sgt | unknown}} to {sgt | unknown} [ipv4]}
Syntax Description
all
permissions
default
from
sgt
unknown
ipv4
Command Default
Role-based access control monitoring is not enabled.
Command Modes
Global configuration (config)
Command History
Release
Cisco IOS XE Denali 16.3.1
Usage Guidelines
Use the cts role-based monitor all command to enable the global monitor mode. If the cts role-based monitor
all command is configured, the output of the show cts role-based permissions command displays monitor
mode for all configured policies as true.
Examples
The following examples shows how to configure SGACL monitor from a source tag to a destination tag:
Switch(config)# cts role-based monitor permissions from 10 to 11
Monitors permissions for all source tags to all destination tags.
Monitors permissions from a source tags to a destination tags.
Monitors the default permission list.
Specifies the source group tag for filtered traffic.
Security Group Tag (SGT). Valid values are from 2 to 65519.
Specifies an unknown source or destination group tag (DST).
(Optional) Specifies the IPv4 protocol.
Modification
This command was introduced.
Command Reference, Cisco IOS XE Everest 16.5.1a (Catalyst 3650 Switches)
cts role-based monitor
735

Advertisement

Table of Contents
loading

Table of Contents