Cisco Systems OL-4387-02 manual Monitoring the Parallel Express Forwarding Engine, 12-3

Page 85

Chapter 12 Monitoring and Maintaining SSG

Monitoring the Parallel Express Forwarding Engine

Monitoring the Parallel Express Forwarding Engine

To monitor the parallel express forwarding (PXF) engine, use the following commands in privileged EXEC mode:

Command

Purpose

 

 

Router# clear pxf interface [interface rp]

Clears PXF counters for the specified interface or for the route

 

processor (RP). If you do not specify an interface, the PXF counters

 

for all interfaces are cleared.

 

 

Router# clear pxf statistics {ip drop

Clears the specified PXF statistics.

diversion}

 

 

 

Router# show pxf cpu access-lists [security

Displays memory information for ACLs.

QoS]

 

 

 

Router# show pxf cpu buffers

Displays the number of output buffers of each size available for the

 

PXF engine.

 

 

Router# show pxf cpu cef ip-prefix[mask]

Displays the current Cisco Express Forwarding (CEF) table stored

 

in PXF memory.

 

 

Router# show pxf cpu cef memory

Displays the PXF memory usage of the current CEF table.

 

 

Router# show pxf cpu context

Displays the current and historical loads on the PXF engine. The

 

first section displays the number of contexts of each type that have

 

entered the PXF engine since it was last reloaded.

 

 

Router# show pxf cpu mroute

Displays the current multicast routing table stored in PXF memory.

 

 

Router# show pxf cpu queue interface

Displays the output queue statistics for an interface. If you do not

 

specify an interface, the route processor queue statistics display.

 

 

Router# show pxf cpu schedule

Displays the rates at which each interface gets packets from the

 

PXF engine.

 

 

Router# show pxf cpu statistics [drop diversion

Displays statistical information about the PXF engine, since the

ip]

engine was most recently loaded. If you do not specify a parameter,

 

information is displayed for all parameters.

 

 

Router# show pxf cpu subblocks interface

Displays the status and PXF-related parameters for the interface.

 

 

Router# show pxf interface [interface rp]

Displays PXF counters for a specific interface or the route

[detail]

processor (RP). If you do not specify an interface, PXF counters

 

are displayed for all interfaces.

 

 

Router# show pxf microcode

Displays the version of microcode that is running on the PXF

 

engine and how long it has been running.

 

 

Router# show pxf statistics {ip diversion

Displays PXF statistics that you specify.

drop [detail]}

 

 

 

For more information about PXF commands, refer to the Cisco 10000 Series Router Command Quick

Reference Guide.

 

Cisco 10000 Series Router Service Selection Gateway Configuration Guide

 

OL-4387-02

12-3

 

 

 

Image 85
Contents Corporate Headquarters Copyright 2004, Cisco Systems, Inc All rights reserved Iii N T E N T SConfiguration Example for SSG AutoDomain Configuration Example for SSG Open Garden Configuration of VPI/VCI Static Binding to a Service Profile Vii SSG UnconfigViii Audience About This GuideDocument Organization Document Conventions Obtaining Documentation Related DocumentationCisco.com Obtaining Technical Assistance Documentation FeedbackDocumentation CD-ROM Ordering DocumentationOpening a TAC Case Cisco TAC WebsiteTAC Case Priority Definitions XiiiXiv Obtaining Additional Publications and InformationService Selection Gateway Service Selection Gateway OverviewSSG Topology Example Access Protocols Default NetworkSSG Restrictions Supported SSG FeaturesService Selection Gateway Overview SSG Restrictions SSG Architecture Model SSG PrerequisitesService Selection Gateway Overview SSG Architecture Model OL-4387-02 Limitations and Restrictions Scalability and PerformanceScalability and Performance Limitations and Restrictions Single Host Logon SSG Logon and LogoffPrerequisites for Single Host Logon SSG Autologoff Configuration of SSG AutologoffRestrictions for SSG Autologoff Configuration Example for SSG Autologoff SSG Prepaid Idle TimeoutExample 3-1 SSG Autologoff Using ARP Ping Example 3-2 SSG Autologoff Using Icmp PingService Reauthorization Service AuthorizationPrerequisites for SSG Prepaid Idle Timeout Restrictions for SSG Prepaid Idle TimeoutConfiguration of SSG Prepaid Idle Timeout Configuration Example for SSG Prepaid Idle TimeoutExample 3-5 SSG Service-Specific TCP Redirect SSG Session and Idle TimeoutExample 3-7 SSG Threshold Volume Example 3-6 SSG Threshold TimeSSG Full Username Radius Attribute Authentication and AccountingRestrictions for SSG Full Username Radius Attribute Example 4-1 Radius Freeware Format ExampleRadius Accounting Records Account Login and LogoutExample 4-3 Radius Accounting-Start Record Example 4-4 Radius Accounting-Stop RecordService Connection and Termination Authentication and Accounting Radius Accounting Records PPP Terminated Aggregation Service Selection MethodsPTA-Multidomain Restrictions for PTA-MD Web Service SelectionSesm and SSG Performance OL-4387-02 SSG AutoDomain Service ConnectionConfiguration Example for SSG AutoDomain Configuration of SSG AutoDomainRestrictions for SSG AutoDomain Example 6-2 AutoDomain Exclude Profile SSG VSA Format Example 6-1 SSG AutoDomainExample 6-3 AutoDomain Exclude File Format SSG Prepaid Configuration of SSG PrepaidRestrictions for SSG Prepaid SSG Open Garden Configuration Example for SSG PrepaidConfiguration Example for SSG Open Garden Configuration of SSG Open GardenSSG Port-Bundle Host Key Restrictions for SSG Open GardenRestrictions for SSG Port-Bundle Host Key Configuration of SSG Port-Bundle Host Key Mutually Exclusive Service SelectionExclude Networks Prerequisites for SSG Port-Bundle Host KeyConfiguration of Mutually Exclusive Service Selection OL-4387-02 Downstream Access Control List Service ProfilesService Authentication Type Upstream Access Control ListDomain Name Full UsernameService Description Service-Defined CookieService Mode Service Next-Hop GatewayType of Service Cached Service ProfilesService Profile Example Example 7-1 Service ProfileConfiguration of Cached Service Profiles OL-4387-02 SSG Hierarchical Policing Overview SSG Hierarchical PolicingSSG Hierarchical Policing Token Bucket Scheme Restrictions for SSG Hierarchical Policing SSG Hierarchical Policing ConfigurationExample 8-2 Enabling Per-Session Policing on a Router Configuration Examples for SSG Hierarchical PolicingOL-4387-02 Transparent Passthrough Interface ConfigurationFor example Access Side InterfacesMulticast Protocols on SSG Interfaces Configuration of Transparent PassthroughNetwork Side Interfaces Restrictions of Transparent PassthroughConfiguration of Multicast Protocols on SSG Interfaces SSG TCP Redirect Redirection for Unauthenticated Users10-1 10-2 Redirection for Unauthorized Services10-3 Initial CaptivationRestrictions for SSG TCP Redirect Configuration of SSG TCP RedirectPrerequisites for SSG TCP Redirect 10-4Example 10-1 Binding a Server Group to a Port 10-5Example 10-2 Limiting Redirected TCP Sessions 10-6 Configuring SSG TCP Redirect10-7 Configuration Examples for SSG TCP RedirectExample 10-3 Defining a Captive Portal Server Group Example 10-4 Defining Network ListsExample 10-5 Defining Port Lists 10-8VPI/VCI Static Binding to a Service Profile Miscellaneous SSG Features11-1 Configuration of Radius Virtual Circuit Logging AAA Server Group Support for Proxy ServicesRadius Virtual Circuit Logging 11-211-3 Packet FilteringUpstream Access Control List-inacl Downstream Access Control List-outaclRestrictions for Packet Filtering 11-4Configuration of Packet Filtering SSG UnconfigConfiguration Example for Packet Filtering Restrictions for SSG UnconfigConfiguration of SSG Unconfig Prerequisites for SSG UnconfigConfiguration Examples for SSG Unconfig 11-6Service Translation SSG Enhancements for Overlapping Services11-7 11-8 11-9 Restrictions for Service Translation11-10 Configuration of Service Translation11-11 Expansion of Service IDs11-12 Network Sets12-1 Monitoring and Maintaining SSGPer-Service Statistics Troubleshooting RadiusRestrictions for Per-Service Statistics 12-212-3 Monitoring the Parallel Express Forwarding Engine12-4 Figure A-1 SSG Example Topology SSG Configuration ExampleUsername cisco password 0 cisco clock timezone PST Example A-1 Cisco 10000 Router SSG ConfigurationSsg accounting interval 300 ssg profile-cache Full-duplex Peer default ip address pool SSG-POOL Exec-timeout 0 0 password lab SSG Implementation Notes SSG Feature Implementation NotesMpls Also see the Restrictions for SSG TCP Redirect section on OL-4387-02 GL-1 O S S a R YGL-2 GL-3 GL-4 GL-5 GL-6 IN-1 D EIN-2 DSL G-1IN-3 ISP G-2 L2TPIN-4 RadiusIN-5 Reauthorizing prepaidIN-6 TCPIN-7 VRF G-5 VSAIN-8