Cisco 7604 Configuration Manual page 541

Ios software configuration guide
Hide thumbs Also See for 7604:
Table of Contents

Advertisement

Chapter 36
Configuring Denial of Service Protection
Monitoring Dropped Packets Using show tcam interface Command
PFC3B and PFC3BXL mode supports ACL hit counters in hardware. You can use the show tcam
interface command to display each entry in the ACL TCAM.
This example shows how to use the show tcam interface command to display the number of times the
entry was hit:
Router# show tcam interface fa5/2 acl in ip detail
-------------------------------------------------------------------------------------------------------------
DPort - Destination Port
I
- Inverted LOU
MRFM
- M -MPLS Packet
- R -Recirc. Flag
- F -Fragment Flag
- M -More Fragments
X
- XTAG
-------------------------------------------------------------------------------------------------------------
Interface: 1018
label: 1
protocol: IP
packet-type: 0
+-+-----+---------------+---------------+---------------+---------------+-------+---+----+-+---+--+---+---+
|T|Index|
Dest Ip Addr | Source Ip Addr|
+-+-----+---------------+---------------+---------------+---------------+------+---+----+-+---+--+---+---+
V 18396
0.0.0.0
M 18404
0.0.0.0
R rslt: L3_DENY_RESULT
V 36828
0.0.0.0
M 36836
0.0.0.0
R rslt: L3_DENY_RESULT (*)
Router#
You can also use the TTL and IP options counters to monitor the performance of the Layer 3 forwarding
engine.
This example shows how to use the show mls statistics command to display packet statistics and errors
associated with the Layer 3 forwarding engine:
Router# show mls statistics
Statistics for Earl in Module 6
L2 Forwarding Engine
Total packets Switched
L3 Forwarding Engine
Total packets L3 Switched
Total Packets Bridged
Total Packets FIB Switched
Total Packets ACL Routed
Total Packets Netflow Switched
Total Mcast Packets Switched/Routed
Total ip packets with TOS changed
Total ip packets with COS changed
Total non ip packets COS changed
Total packets dropped by ACL
Total packets dropped by Policing
OL-4266-08
SPort - Source Port
TOS
- TOS Value
TN
- T -Tcp Control
- N -Non-cachable
CAP
- Capture Flag
F-P
- FlowMask-Prior.
(*)
- Bank Priority
lookup_type: 0
DPort
0.0.0.0
P=0
0.0.0.0
0
rtr_rslt: L3_DENY_RESULT
0.0.0.0
P=0
0.0.0.0
0
rtr_rslt: L3_DENY_RESULT (*)
Cisco 7600 Series Router Cisco IOS Software Configuration Guide, Release 12.2SX
DoS Protection Configuration Guidelines and Restrictions
TCP-F - U -URG Pro
- Protocol
- A -ACK rtr
- Router
- P -PSH COD
- C -Bank Care Flag
- R -RST
- I -OrdIndep. Flag
- S -SYN
- D -Dynamic Flag
- F -FIN T
- V(Value)/M(Mask)/R(Result)
|
SPort
| TCP-F|Pro|MRFM|X|TOS|TN|COD|F-P|
P=0
------
0
P=0
------
0
: 25583421
: 25433414 @ 24 pps
: 937860
: 23287640
: 0
: 0
: 96727
: 2
: 2
: 0
: 33
: 0
0 ---- 0
0 -- --- 0-0
0 ---- 0
0
0 ---- 0
0 -- --- 0-0
0 ---- 0
0
36-25

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

761376067609-s7600 series

Table of Contents