Monitoring IPv6
This section explains how to set an IPv6 statistics baseline and use the show commands to view your IPv6 configuration, monitor IPv6 interfaces and statistics, and view IPv6 neighbors. Many of these show commands also contain Neighbor Discovery information.
System Event Logs
To troubleshoot and monitor IPv6, use the following system event logs:
- ipv6GeneralIPv6 general information
- ipv6InterfaceIPv6 interface events
- ipv6ProfileMgrIPv6 profile manager events
- ipv6RouteTableIPv6 routing table events
- ipv6TrafficIPv6 frame transmit and receive events
For more information about using event logs, see the JUNOSe System Event Logging Reference Guide.
Establishing a Baseline
IPv6 statistics are stored in system counters. The only way to reset the system counters is to reboot the system. You can, however, establish a baseline for IPv6 statistics by setting a group of reference counters to zero (0).
baseline ipv6
- Use to set a baseline for IPv6 statistics.
- The router implements the baseline by reading and storing the statistics at the time the baseline is set and then subtracting this baseline whenever baseline-relative statistics are retrieved.
- Use the udp keyword to set a baseline for UDP statistics
- Use the delta keyword with IPv6 show commands to specify that baselined statistics are to be shown.
- Example
host1#baseline ipv6There is no no version baseline ipv6 interface
host1#baseline ipv6 interface atm 2/0.100There is no no version. baseline tcp
- Use to set a statistics baseline for all (both IPv4 and IPv6) TCP statistics or for only IPv4 or IPv6 statistics.
- The router implements the baseline by reading and storing the statistics at the time the baseline is set and then subtracting this baseline whenever baseline-relative statistics are retrieved.
- Use the ipv6 keyword to implement a baseline for only IPv6 statistics.
- Use the delta keyword with IP show commands to specify that baselined statistics are to be shown.
- Example 1
host1#baseline tcpExample 2 host1#baseline ipv6 tcpThere is no no version. IPv6 show Commands
You can monitor the following aspects of IPv6 using show ipv6 commands:
You can use the output filtering feature of the show command to include or exclude lines of output based on a text string that you specify. See JUNOSe System Basics Configuration Guide, Chapter 2, Command-Line Interface, for details.
show ipv6
host1#show ipv6Ipv6 Unicast Routing: EnabledDefault hop limit: not specifiedNumber of interfaces: 2Default interface source address/mask: fe80::90:1a00:210:fd0/128show ipv6 address
- Use to display detailed or summary information for a particular IPv6 address or interface or for all interfaces.
- The default for the show ipv6 interface command is all interface types and all interfaces.
- Use brief or detail keywords with the show ipv6 interface command to display different levels of information.
- Field descriptions
- DescriptionOptional description for the interface or address specified
- Network ProtocolsNetwork protocols configured on this interface
- Link local addressLocal IPv6 address of this interface
- Internet addressExternal address of this interface
- IPv6 statistics Rcvd:
- local destinationFrames with this router as their destination
- hdr errorsNumber of packets containing header errors
- addr errorsNumber of packets containing addressing errors
- unkn protoNumber of packets received containing unknown protocols
- discardsNumber of discarded packets
- generatedNumber of packets generated
- no routesNumber of packets that could not be routed
- discardsNumber of packets that could not be routed that were discarded
- totalTotal number of received packets
- errorsError packets received
- destination unreachPackets received with destination unreachable
- admin unreachPackets received because the destination was administratively unreachable (for example, the packet encountered a firewall filter)
- parameter problemPackets received with parameter errors
- time exceededPackets received with time-to-live exceeded
- pkt too bigNumber of packet-too-big messages received that indicate a packet was too large to forward because of the allowed MTU size
- redirectsReceived packet redirects
- echo requestsEcho request (ping) packets
- echo repliesEcho replies received
- rtr solicitsNumber of received router solicitations
- rtr advertisementsNumber of received router advertisements
- neighbor solicitsNumber of received neighbor solicitations
- neighbor advertisementsNumber or received neighbor advertisements
- Group membership (queries, responses, reductions)Number of queries, responses, and reduction requests received from within a group to which the interface is assigned
- totalTotal number of received packets
- errorsError packets received
- destination unreachPackets received with destination unreachable
- admin unreachPackets sent because the destination was administratively unreachable (for example, due to a firewall filter)
- parameter problemPackets received with parameter errors
- time exceededPackets received with time-to-live exceeded
- pkt too bigNumber of packet-too-big messages sent because a received packet was too large to forward because of the allowed MTU size
- redirectsReceived packet redirects
- echo requestsEcho request (ping) packets
- echo repliesEcho replies received
- rtr solicitsNumber of sent router solicitations
- rtr advertisementsNumber of sent router advertisements
- neighbor solicitsNumber of sent neighbor solicitations
- neighbor advertisementsNumber of sent neighbor advertisements
- Group membership (queries, responses, reductions)Number of queries, responses, and reduction requests sent to a group of which the interface is assigned
- Operational MTUValue of the MTU
- Administrative MTUValue of the MTU if it has been administratively overridden using the configuration
- Operational speedSpeed of the interface
- Administrative speedValue of the speed if it has been administratively overridden using the configuration
- Creation typeMethod by which the interface was created (static or dynamic)
- ND reachable timeAmount of time (in milliseconds) that the neighbor is expected to remain reachable
- ND duplicate address detection attemptsNumber of times that the router attempts to determine a duplicate address
- ND neighbor solicitation retransmission intervalInterval in which the router retransmits neighbor solicitations
- ND proxyIndicates whether the router will reply to solicitations on behalf of a known neighbor
- ND RA source link layerIndicates whether the RA includes the link layer
- ND RA intervalInterval (in seconds) of the neighbor discovery router advertisement
- ND RA lifetimeLifetime (in seconds) of the neighbor discovery router advertisement
- ND RA managed flagState of the neighbor discovery router advertisement managed flag
- ND RA other config flagState of the neighbor discovery router advertisement other config flag
- ND RA advertising prefixesConfigured advertisement prefixes for neighbor discovery router advertisement
- In Received Packets, BytesTotal number of packets and bytes received on this interface
- Unicast Packets, BytesUnicast packets and bytes received on the IPv6 interface; link-local received multicast packets (non-multicast-routed frames) are counted as unicast packets
- Multicast Packets, BytesMulticast packets and bytes received on the IPv6 interface which are then multicast-routed are counted as multicast packets
- In Policed PacketsPackets that were received and dropped because of rate limits
- In Invalid Source Address PacketsPackets received with invalid source address (for example, spoofed packets)
- In Error PacketsNumber of packets received with errors
- In Discarded PacketsPackets received that were discarded for reasons other than rate limits, errors, and invalid source address
- Unicast Packets, BytesUnicast packets and bytes that were sent from this interface
- Multicast Routed Packets, BytesMulticast packets and bytes that were sent from this interface
- Out Scheduler Dropped Packets, BytesNumber of outbound packets and bytes dropped by the scheduler
- Out Policed Packets, BytesNumber of outbound packets and bytes dropped because of rate limits
- Out Discarded PacketsNumber of outbound packets that were discarded for reasons other than those dropped by the scheduler and those dropped because of rate limits
- rate-limit-profileName of profile
- classifier-group entryEntry index
- CommittedNumber of packets and bytes conforming to the committed access rate
- ConformedNumber of packets and bytes that exceed the committed access rate but conform to the peak access rate
- ExceededNumber of packets and bytes exceeding the peak access rate
- Queue lengthNumber of bytes in queue
- Dropped committed packets, bytesTotal number of committed packets and bytes dropped by this interface
- Dropped conformed packets, bytesTotal number of conformed packets and bytes dropped by this interface
- Dropped exceeded packets, bytesTotal number of exceeded packets and bytes dropped by this interface
host1#show ipv6 address 5:1:1::2FastEthernet9/1.5 line protocol VlanSub is up, ipv6 is upDescription: IPv6 interface in Virtual Router Hop5Network Protocols: IPv6Link local address: fe80::90:1a00:740:31ceInternet address: 5:1:1::2/64Operational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticND reachable time is 3600000 millisecondsND duplicate address detection attempts is 100ND neighbor solicitation retransmission interval is 1000 millisecondsND proxy is enabledND RA source link layer is advertisedND RA interval is 200 seconds, lifetime is 1800 secondsND RA managed flag is disabled, other config flag is disabledND RA advertising prefixes configured on interfaceIn Received Packets 12, Bytes 1260Unicast Packets 5, Bytes 588Multicast Packets 7, Bytes 672In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 21, Bytes 2352Unicast Packets 21, Bytes 2352Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 8, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 8queue 0: traffic class best-effort, bound to ipv6 FastEthernet9/1.5Queue length 0 bytesForwarded packets 4, bytes 680Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0Example 2 host1#show ipv6 address detail 5:1:1::2FastEthernet9/1.5 line protocol VlanSub is up, ipv6 is upDescription: IPv6 interface in Virtual Router Hop5Network Protocols: IPv6Link local address: fe80::90:1a00:740:31ceInternet address: 5:1:1::2/64IPv6 statistics:Rcvd: 0 local destination0 hdr errors, 0 addr errors0 unkn proto, 0 discardsSent: 0 generated, 0 no routes, 0 discardsICMPv6 statistics:Rcvd: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 echo requests3 echo repliesSent: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 5 echo requests0 echo repliesOperational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticND reachable time is 3600000 millisecondsND duplicate address detection attempts is 100ND neighbor solicitation retransmission interval is 1000 millisecondsND proxy is enabledND RA source link layer is advertisedND RA interval is 200 seconds, lifetime is 1800 secondsND RA managed flag is disabled, other config flag is disabledND RA advertising prefixes configured on interfaceICMPv6 statistics:Rcvd: 12 total, 0 errors0 rtr solicits, 7 rtr advertisements1 neighbor solicits, 1 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsSent: 31 total, 0 errors0 rtr solicits, 16 rtr advertisements5 neighbor solicits, 5 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsIn Received Packets 12, Bytes 1260Unicast Packets 5, Bytes 588Multicast Packets 7, Bytes 672In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 22, Bytes 2480Unicast Packets 22, Bytes 2480Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 8, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 8queue 0: traffic class best-effort, bound to ipv6 FastEthernet9/1.5Queue length 0 bytesForwarded packets 4, bytes 680Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0Example 3 host1#show ipv6 interfacenull0 line protocol IpLoopback is up, ipv6 is upNetwork Protocols: IPv6Link local address: fe80::90:1a00:740:1d44Unnumbered Interface: Corresponding Numbered Interface not specified orremovedOperational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticNeighbor Discovery is disabledIn Received Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Packets 0, Bytes 0In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 0, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 0FastEthernet9/1.5 line protocol VlanSub is up, ipv6 is upDescription: IPv6 interface in Virtual Router Hop5Network Protocols: IPv6Link local address: fe80::90:1a00:740:31ceInternet address: 5:1:1::2/64Operational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticND reachable time is 3600000 millisecondsND duplicate address detection attempts is 100ND neighbor solicitation retransmission interval is 1000 millisecondsND proxy is enabledIn Received Packets 13, Bytes 1356Unicast Packets 5, Bytes 588Multicast Packets 8, Bytes 768In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 22, Bytes 2480Unicast Packets 22, Bytes 2480Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 8, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 8queue 0: traffic class best-effort, bound to ipv6 FastEthernet9/1.5Queue length 0 bytesForwarded packets 4, bytes 680Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0FastEthernet9/0.6 line protocol VlanSub is up, ipv6 is upDescription: IPv6 interface in Virtual Router Hop6Network Protocols: IPv6Link local address: fe80::90:1a00:740:31cdInternet address: 6:1:1::1/64Operational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticND reachable time is 3600000 millisecondsND duplicate address detection attempts is 100ND neighbor solicitation retransmission interval is 1000 millisecondsND proxy is enabledND RA source link layer is advertisedND RA interval is 200 seconds, lifetime is 1800 secondsND RA managed flag is disabled, other config flag is disabledND RA advertising prefixes configured on interfaceIn Received Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Packets 0, Bytes 0In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 8, Bytes 768Unicast Packets 8, Bytes 768Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 5, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 5queue 0: traffic class best-effort, bound to ipv6 FastEthernet9/0.6Queue length 0 bytesForwarded packets 0, bytes 0Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0loopback5 line protocol IpLoopback is up, ipv6 is upNetwork Protocols: IPv6Link local address: fe80::90:1a00:740:1d44Internet address: 10:1:1:0:290:1aff:fe40:1d44/64 (eui-64)Operational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticNeighbor Discovery is disabledIn Received Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Packets 0, Bytes 0In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 0, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 0IPv6 policy input ipv6InPol25rate-limit-profile Rlp2Mb classifier-group clgA entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile Rlp8MbCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesIPv6 policy output ipv6PolOut2rate-limit-profile RlpOutA classifier-group clgB entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile RlpOutBCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesIPv6 policy local-input ipv6PolLocIn5rate-limit-profile Rlp1Mb classifier-group clgC entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile Rlp5MbCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesqueue 0: traffic class best-effort, bound to ipv6 FastEthernet9/0.6Queue length 0 bytesForwarded packets 0, bytes 0Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0Example 4 host1#show ipv6 interface FastEthernet 9/0.6FastEthernet9/0.6 line protocol VlanSub is up, ipv6 is upDescription: IPv6 interface in Virtual Router Hop6Network Protocols: IPv6Link local address: fe80::90:1a00:740:31cdInternet address: 6:1:1::1/64Operational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticND reachable time is 3600000 millisecondsND duplicate address detection attempts is 100ND neighbor solicitation retransmission interval is 1000 millisecondsND proxy is enabledND RA source link layer is advertisedND RA interval is 200 seconds, lifetime is 1800 secondsND RA managed flag is disabled, other config flag is disabledND RA advertising prefixes configured on interfaceIn Received Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Packets 0, Bytes 0In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 8, Bytes 768Unicast Packets 8, Bytes 768Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 5, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 5queue 0: traffic class best-effort, bound to ipv6 FastEthernet9/0.6Queue length 0 bytesForwarded packets 0, bytes 0Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0IPv6 policy input ipv6InPol25rate-limit-profile Rlp2Mb classifier-group clgA entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile Rlp8MbCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesIPv6 policy output ipv6PolOut2rate-limit-profile RlpOutA classifier-group clgB entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile RlpOutBCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesIPv6 policy local-input ipv6PolLocIn5rate-limit-profile Rlp1Mb classifier-group clgC entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile Rlp5MbCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesqueue 0: traffic class best-effort, bound to ipv6 FastEthernet9/0.6Queue length 0 bytesForwarded packets 0, bytes 0Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0Example 5 host1#show ipv6 interface detailnull0 line protocol IpLoopback is up, ipv6 is upNetwork Protocols: IPv6Link local address: fe80::90:1a00:740:1d44Unnumbered Interface: Corresponding Numbered Interface not specified orremovedIPv6 statistics:Rcvd: 0 local destination0 hdr errors, 0 addr errors0 unkn proto, 0 discardsSent: 0 generated, 0 no routes, 0 discardsICMPv6 statistics:Rcvd: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 echo requests0 echo repliesSent: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 echo requests0 echo repliesOperational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticNeighbor Discovery is disabledICMPv6 statistics:Rcvd: 0 total, 0 errors0 rtr solicits, 0 rtr advertisements0 neighbor solicits, 0 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsSent: 0 total, 0 errors0 rtr solicits, 0 rtr advertisements0 neighbor solicits, 0 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsIn Received Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Packets 0, Bytes 0In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 0, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 0FastEthernet9/1.5 line protocol VlanSub is up, ipv6 is upDescription: IPv6 interface in Virtual Router Hop5Network Protocols: IPv6Link local address: fe80::90:1a00:740:31ceInternet address: 5:1:1::2/64IPv6 statistics:Rcvd: 0 local destination0 hdr errors, 0 addr errors0 unkn proto, 0 discardsSent: 0 generated, 0 no routes, 0 discardsICMPv6 statistics:Rcvd: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 echo requests3 echo repliesSent: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 5 echo requests0 echo repliesOperational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticND reachable time is 3600000 millisecondsND duplicate address detection attempts is 100ND neighbor solicitation retransmission interval is 1000 millisecondsND proxy is enabledND RA source link layer is advertisedND RA interval is 200 seconds, lifetime is 1800 secondsND RA managed flag is disabled, other config flag is disabledND RA advertising prefixes configured on interfaceICMPv6 statistics:Rcvd: 13 total, 0 errors0 rtr solicits, 8 rtr advertisements1 neighbor solicits, 1 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsSent: 31 total, 0 errors0 rtr solicits, 16 rtr advertisements5 neighbor solicits, 5 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsIn Received Packets 13, Bytes 1356Unicast Packets 5, Bytes 588Multicast Packets 8, Bytes 768In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 22, Bytes 2480Unicast Packets 22, Bytes 2480Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 8, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 8queue 0: traffic class best-effort, bound to ipv6 FastEthernet9/1.5Queue length 0 bytesForwarded packets 4, bytes 680Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0FastEthernet9/0.6 line protocol VlanSub is up, ipv6 is upDescription: IPv6 interface in Virtual Router Hop6Network Protocols: IPv6Link local address: fe80::90:1a00:740:31cdInternet address: 6:1:1::1/64IPv6 statistics:Rcvd: 0 local destination0 hdr errors, 0 addr errors0 unkn proto, 0 discardsSent: 0 generated, 0 no routes, 0 discardsICMPv6 statistics:Rcvd: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 echo requests0 echo repliesSent: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 echo requests0 echo repliesOperational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticND reachable time is 3600000 millisecondsND duplicate address detection attempts is 100ND neighbor solicitation retransmission interval is 1000 millisecondsND proxy is enabledND RA source link layer is advertisedND RA interval is 200 seconds, lifetime is 1800 secondsND RA managed flag is disabled, other config flag is disabledND RA advertising prefixes configured on interfaceICMPv6 statistics:Rcvd: 0 total, 0 errors0 rtr solicits, 0 rtr advertisements0 neighbor solicits, 0 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsSent: 13 total, 0 errors0 rtr solicits, 9 rtr advertisements2 neighbor solicits, 2 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsIn Received Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Packets 0, Bytes 0In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 8, Bytes 768Unicast Packets 8, Bytes 768Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 5, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 5queue 0: traffic class best-effort, bound to ipv6 FastEthernet9/0.6Queue length 0 bytesForwarded packets 0, bytes 0Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0loopback5 line protocol IpLoopback is up, ipv6 is upNetwork Protocols: IPv6Link local address: fe80::90:1a00:740:1d44Internet address: 10:1:1:0:290:1aff:fe40:1d44/64 (eui-64)IPv6 statistics:Rcvd: 0 local destination0 hdr errors, 0 addr errors0 unkn proto, 0 discardsSent: 0 generated, 0 no routes, 0 discardsICMPv6 statistics:Rcvd: 0 local destination0 hdr errors, 0 addr errors0 unkn proto, 0 discardsSent: 0 generated, 0 no routes, 0 discardsICMPv6 statistics:Rcvd: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 echo requests0 echo repliesSent: 0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 echo requests0 echo repliesOperational MTU 1500 Administrative MTU 0Operational speed 100000000 Administrative speed 0Creation type StaticNeighbor Discovery is disabledICMPv6 statistics:Rcvd: 0 total, 0 errors0 rtr solicits, 0 rtr advertisements0 neighbor solicits, 0 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsSent: 0 total, 0 errors0 rtr solicits, 0 rtr advertisements0 neighbor solicits, 0 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductions0 redirectsIn Received Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Packets 0, Bytes 0In Total Dropped Packets 0, Bytes 0In Policed Packets 0In Invalid Source Address Packets 0In Error Packets 0In Discarded Packets 0Out Forwarded Packets 0, Bytes 0Unicast Packets 0, Bytes 0Multicast Routed Packets 0, Bytes 0Out Total Dropped Packets 0, Bytes 0Out Scheduler Dropped Packets 0, Bytes 0Out Policed Packets 0Out Discarded Packets 0IPv6 policy input ipv6InPol25rate-limit-profile Rlp2Mb classifier-group clgA entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile Rlp8MbCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesIPv6 policy output ipv6PolOut2rate-limit-profile RlpOutA classifier-group clgB entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile RlpOutBCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesIPv6 policy local-input ipv6PolLocIn5rate-limit-profile Rlp1Mb classifier-group clgC entry 1Committed: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesrate-limit-profile Rlp5MbCommitted: 0 packets, 0 bytesConformed: 0 packets, 0 bytesExceeded: 0 packets, 0 bytesqueue 0: traffic class best-effort, bound to ipv6 FastEthernet9/0.6Queue length 0 bytesForwarded packets 0, bytes 0Dropped committed packets 0, bytes 0Dropped conformed packets 0, bytes 0Dropped exceeded packets 0, bytes 0Example 6 host1#show ipv6 interface briefInterface IPv6-Address Status Protocol Description---------------------- -------------------- ------- -------- ------------------null0 Unnumbered up upFastEthernet9/1.5 5:1:1::2/64 up up IPv6 interface inVirtual Router Hop5FastEthernet9/0.6 6:1:1::1/64 up up IPv6 interface inVirtual Router Hop6loopback5 10:1:1:0:290:1aff:fe up up40:1d44/64show ipv6 forwarding-table slot
- Use to display details on the forwarding table for a specific line module only when IPv6 is configured on the router. These details include the memory used by each virtual router configured on the line module and free memory available on the module.
- The Load Errors field records any failed routing table distribution attempt as an error. Attempts can fail for many reasons during normal operation; a failed attempt does not necessarily indicate a problem. It is normal to see many Load Errors per day.
- If the Status field does not indicate Valid, then the routing table distribution has failed constantly for that VR. It is normal and appropriate behavior for the Status field to indicate Valid while the Load Error field increases daily.
- Field descriptions
- Free MemoryAmount of routing table memory free on the line module, in kilobytes
- Virtual RouterName of the virtual routers configured on the line module
- Memory (KB)Amount of routing table memory consumed by the virtual router, in kilobytes
- Load ErrorsCount of errors made while loading the routing table on the line module
- StatusWhether the routing table for the virtual router is valid
host1#show ipv6 forwarding-table slot 9Free Memory = 32766 KB (99.99%)Virtual Router Memory(KB) Load Errors Status-------------------------------- -------------- ------------- --------------default - - Not Resident1 2 0 Validshow ipv6 neighbors
- Use to display IPv6 Neighbor Discovery cache information static entries, dynamic entries, or both.
- Use the static keyword to display only static entries
- Use the dynamic keyword to display only dynamic entries
- Use the summary keyword to display summary information
- Field descriptions
- InterfaceNeighbor interface
- IPv6-AddressIPv6 address for the interface
- TypeType of interface (dynamic, static)
- Hardware AddrLayer 2 address of the interface
- StateState of the interface (delay, incomplete, probe, reachable, stale)
- AgeAmount of time (in seconds) since the router contacted the neighbor
- By typeList by neighbor type (global, link-local, anycast, and unknown)
- By stateList by neighbor state (reachable, incomplete, stale, probe, delay, an init)
- IPv6 address conflictsNumber of conflicts during or after duplicate address detection resolution
host1#show ipv6 neighborsInterface IPv6-Address Type Hardware Addr State Age---------------------- -------------------- ------- -------------- ----- -----FastEthernet4/1 1::1 dynamic 0090.1a40.05e5 reach 3host1#show ipv6 neighbors summaryTotal IPv6 neighbors: 7By type: 5 global, 2 link-local, 0 anycast, 0 unknownBy state: 5 reachable, 0 incomplete, 2 stale, 0 probe, 0 delay, 0 initIPv6 address conflicts: 0 during DAD resolution, 0 after DAD resolutionshow ipv6 profile
- IPv6 profileProfile name
- Unnumbered interfaceSpecifier for the unnumbered interface or none if the interface is numbered
- RouterRouter name
- Access Route AdditionEnabled or disabled
- Source-Address ValidationEnabled or disabled
- Administrative MTUMTU size
host1#show ipv6 profile fooIPv6 profile : fooUnnumbered interface on : loopback 0Router : r1Access Route Addition : EnabledSource-Address Validation : DisabledAdministrative MTU : 0show ipv6 protocols
- Local router IDRouter ID of the local router
- Local ASAS number of local router
- Administrative stateAdministrative state of the protocol
- Operational stateOperational state of the protocol
- Shutdown in overload stateStatus of shutdown in an overload state
- Default local preferenceDefault value for local preference
- IGP synchronizationIndicates whether synchronization is enabled or disabled
- Default originateIndicates whether network 0.0.0.0 is redistributed into BGP
- Auto summaryStatus of autosummary
- Always compare MEDStatus of always compare MED
- Compare MED within confederationStatus of compare MED within a confederation
- Advertise inactive routesStatus of Advertise inactive routes
- Advertise best external router to internal peersStatus of Advertise best external router to internal peers
- Enforce first ASStatus of Enforce first AS
- Missing MED as worstStatus of Missing MED as worst
- Route flap dampeningStatus of route dampening
- Log neighbor changesStatus of Log neighbor changes
- Fast External FalloverStatus of Fast External Fallover
- Maximum received AS-path lengthMaximum AS-path length received
- BGP administrative distancesExternal, internal, and local BGP administrative distances
- Client-to-client reflectionWhether client-to-client reflection is configured
- Cluster IDCluster IDs
- Route-target filterStatus of Route-target filter
- Default IPv4-unicastStatus of Default IPv4-unicast
- Local-RIB versionRIB version
- Local-FIB versionFIB version
- Neighbor(s)BGP neighbors (if configured)
- Networks for which routing is occurring
- Aggregate Generation for Unicast Routes
host1#show ipv6 protocolsRouting Protocol is "bgp 100"Local router ID 1.1.1.1, local AS 100Administrative state is StartOperational state is UpShutdown in overload state is disabledDefault local preference is 100IGP synchronization is enabledDefault originate is disabledAuto summary is enabledAlways compare MED is disabledCompare MED within confederation is disabledAdvertise inactive routes is disabledAdvertise best external route to internal peers is disabledEnforce first AS is disabledMissing MED as worst is disabledRoute flap dampening is disabledLog neighbor changes is disabledFast External Fallover is disabledNo maximum received AS-path lengthBGP administrative distances are 20 (ext), 200 (int), and 200 (local)Client-to-client reflection is enabledCluster ID is 1.1.1.1Route-target filter is enabledDefault IPv4-unicast is enabledLocal-RIB version 8. FIB version 8.Neighbor(s):No neighbors are configuredRouting for Networks:Aggregate Generation for Unicast Routes:Example 2 host1#show ipv6 protocols summarybgp 100show ipv6 redistribute
- ToProtocol that routes are distributed into
- FromProtocol that routes are distributed from
- statusRedistribution status
- route map nameName of the route map
host1#show ipv6 redistributeTo bgp, From static is enabled with route map fooTo bgp, From connected is enabled without a route mapshow ipv6 route
- Use to display the current state of the routing table, including routes not used for forwarding.
- You can display all routes, a specific route, detailed information about all or a specific route, or summary counters for the routing table.
- Field descriptions
- TypeProtocol type (possible route types include: Bgp, Connect, Idrp, Igrp, Invalid, Isis, Ndisc, Ospf, Other, Rip, Static)
- Dst (or Distance)Administrative distance for the route
- Met (or Metric)Number of hops
- Intf (or Interface)Interface type and interface specifier
- NextHopThe configured next hop address for this interface
- IfIndexAn autogenerated value for the next hop interface
host1#show ipv6 routePrefix/Length Type Dst/Met Intf-------------------------------- ------- ------- --------------------1::/16 Connect 0/0 loopback15::/64 Connect 0/0 ATM4/0.156::/64 Static 1/0 ATM4/0.152003::/16 Static 1/0 ATM4/0.15Example 2 host1#show ipv6 route summaryUnicast routes:8 total routes, 576 bytes in route entries0 isis routes0 rip routes3 static routes2 connected routes1 bgp routes0 ospf routes2 other internal routes0 access routes0 internally created access host routesLast route added/deleted: 2::4/128 by BGPAt MON FEB 04 2008 14:18:25 UTCUnicast routes used only for Multicast RPF check:0 total routes, 0 bytes in route entries0 isis routes0 rip routes0 static routes0 connected routes0 bgp routes0 ospf routes0 other internal routes0 access routes0 internally created access host routes0 mbgp routes0 dvmrp routesLast route added/deleted: null by InvalidAt MON FEB 04 2008 14:18:04 UTCMPLS tunnel routes (not used for forwarding):3 total routes, 216 bytes in route entries1 bgp tunnel routes1 ldp tunnel routes1 rsvp tunnel routesLast route added/deleted: 2::4/128 by BGP TunnelAt MON FEB 04 2008 14:18:26 UTCExample 3 host1#show ipv6 route 5::/64 detail5::/64 Type:local Distance:0 Metric:0NextHop: 1::2 IntfIndex 10007 Intf ATM4/0.15show ipv6 routers
- Use to display IPv6 router advertisement information received.
- Use the conflicts keyword to display router advertisements that differ from the advertisements configured
- Field descriptions
- RouteRouter for which this information applies
- HopsNumber of hops that the router uses in router advertisements
- LifetimeLifetime (in seconds) of the neighbor discovery router advertisement
- AddrFlagState of the neighbor discovery router advertisement managed flag
- OtherFlagState of the neighbor discovery router advertisement other config flag
- Reachable timeAmount of time (in milliseconds) that the neighbor is expected to remain reachable
- Retransmit timeInterval in which the router retransmits neighbor solicitations
- PrefixIPv6 network number to include in router advertisements
- AutoconfigWhen present, indicates that local host links use the specified prefix for IPv6 autoconfiguration
- Valid lifetimeAmount of time in seconds that the router advertises the IPv6 prefix as valid
- preferred lifetimeAmount of time in seconds that the router advertises the specified IPv6 prefix as preferred
host1#show ipv6 routersRouter FE80::83B3:60A4 on FastEthernet2/0, last update 3 minHops 0, Lifetime 6000 sec, AddrFlag=0, OtherFlag=0Reachable time 0 msec, Retransmit time 0 msecPrefix 3FFE:C00:8007::800:207C:4E37/96 autoconfigValid lifetime -1, preferred lifetime -1Router FE80::290:27FF:FE8C:B709 on FastEthernet2/1, last update 0 minHops 64, Lifetime 1800 sec, AddrFlag=0, OtherFlag=0Reachable time 0 msec, Retransmit time 0 msecExample 2 host1#show ipv6 routers conflictsRouter FE80::203:FDFF:FE34:7039 on FastEthernet1/0, last update 1 min, CONFLICTHops 64, Lifetime 1800 sec, AddrFlag=0, OtherFlag=0Reachable time 0 msec, Retransmit time 0 msecPrefix 2003::/64 onlink autoconfigValid lifetime -1, preferred lifetime -1show ipv6 static
- Use to display the status of static routes in the routing table.
- You can specify an IP mask that filters specific routes.
- Field descriptions
- PrefixIP address prefix
- LengthPrefix length
- Next HopIP address of the next hop
- DstAdministrative distance of the route
- MetNumber of hops
- InterfaceInterface type and interface specifier
host1#show ipv6 staticPrefix/Length NextHop Dst/Met Interface------------------------ ------------------------ ------- --------------------6::/64 5::2 1/0 ATM4/0.152003::/16 5::1 1/0 ATM4/0.15show ipv6 traffic
- totalTotal number of packets received
- local destinationNumber of packets received with this router as their destination
- hdr errorsNumber of packets containing header errors
- addr errorsNumber of packets containing addressing errors
- unkn protoNumber of packets received containing unknown protocols
- discardsNumber of discarded packets
- forwardedNumber of packets forwarded
- generatedNumber of packets generated
- out discNumber of packets that could not be routed that were discarded
- totalTotal number of received packets
- errorsError packets received
- destination unreachPackets received with destination unreachable
- admin unreachPackets received because the destination was administratively unreachable (for example, the packet encountered a firewall filter)
- parameter problemPackets received with parameter errors
- time exceededPackets received with time-to-live exceeded
- pkt too bigNumber of packet-too-big messages received that indicate a packet was too large to forward because of the allowed MTU size
- redirectsReceived packet redirects
- echo requestsEcho request (ping) packets
- echo repliesEcho replies received
- rtr solicitsNumber of received router solicitations
- rtr advertisementsNumber of received router advertisements
- neighbor solicitsNumber of received neighbor solicitations
- neighbor advertisementsNumber of received neighbor advertisements
- Group membership (queries, responses, reductions)Number of queries, responses, and reduction requests received from within a group to which the interface is assigned
- totalTotal number of received packets
- errorsError packets received
- destination unreachPackets received with destination unreachable
- admin unreachPackets sent because the destination was administratively unreachable (for example, due to a firewall filter)
- parameter problemPackets received with parameter errors
- time exceededPackets received with time-to-live exceeded
- pkt too bigNumber of packet-too-big messages sent because a received packet was too large to forward because of the allowed MTU size
- redirectsReceived packet redirects
- echo requestsEcho request (ping) packets
- echo repliesEcho replies received
- rtr solicitsNumber of sent router solicitations
- rtr advertisementsNumber of sent router advertisements
- neighbor solicitsNumber of sent neighbor solicitations
- neighbor advertisementsNumber of sent neighbor advertisements
- Group membership (queries, responses, reductions)Number of queries, responses, and reduction requests sent to a group to which the interface is assigned
- totalTotal number of received packets
- checksum errorsChecksum error packets received
- no portNo port error packets received
host1#show ipv6 trafficIPv6 statistics:Rcvd: 0 total, 0 local destination0 hdr errors, 0 addr errors0 unkn proto, 0 discardsSent: 0 forwarded, 0 generated0 out discMcast: 0 received 0 forwardedRoutes: 7 in routing tableICMPv6 statistics:Rcvd: 0 total, 0 errors0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 redirects0 echo requests, 0 echo replies0 rtr solicits, 0 rtr advertisements0 neighbor solicits, 0 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductionsSent: 3 total, 0 errors0 destination unreach, 0 admin unreach, 0 parameter problem0 time exceeded, 0 pkt too big, 0 redirects0 echo requests, 0 echo replies0 rtr solicits, 0 rtr advertisements2 neighbor solicits, 1 neighbor advertisementsGroup membership: 0 queries, 0 responses, 0 reductionsUDP Statistics:Rcvd: 0 total, 0 checksum errors, 0 no portSent: 0 total, 0 errorsshow ipv6 udp statistics
host1#show ipv6 udp statisticsUDP Statistics:Rcvd: 0 total, 0 checksum errors, 0 no portSent: 0 total, 0 errorsshow license ipv6
host1#show license ipv6Ipv6 license is ipv6_licenseshow tcp statistics
- Use to display all TCP statistics (both IPv4 and IPv6).
- Baselining is supported for this command.
- Use the ip keyword to display only IPv4 statistics.
- Use the ipv6 keyword to display only IPv6 statistics.
- Use the brief keyword to display summary information or the detailed keyword to display extensive information.
- Use the diagnostic keyword to display diagnostic information collected on the TCP statistics in addition to the detailed information. This command shows information only for the connections that are active within the context of the VR in which you issue the command.
- Field descriptions
- attemptedNumber of outgoing TCP connections attempted
- acceptedNumber of incoming TCP connections accepted
- establishedNumber of TCP connections established
- total pktsTotal number of packets received
- in-sequence pktsNumber of packets received in sequence
- bytesNumber of bytes received
- chksum err pktsNumber of checksum error packets received
- authentication err pktsNumber of authentication error packets received
- bad offset pktsNumber of bad offset packets received
- short pktsNumber of short packets received
- duplicate pktsNumber of duplicate packets received
- out of order pktsNumber of packets received out of order
- total pktsTotal number of packets sent
- data pktsNumber of data packets sent
- bytesNumber of bytes sent
- retransmitted pktsNumber of packets retransmitted
- retransmitted bytesNumber of bytes retransmitted
- Source address/port local portShows the 32 most recent TCP connection attempts that were rejected, including the remote node's IP or IPv6 address and port, the local port for the connection attempt, and the number of identical attempts that have been received on that port in a row. The reason for rejection is not given. This information may be useful in tracking down DoS attacks.
- # connection-reqs rejectedTotal number of connection attempts that have been rejected
- # connection-reqs pendingCurrent number of connection attempts that are pending, awaiting additional data from the peer
- # sonewconn calls that failNumber of calls to sonewconn that have failed. This statistic often indicates that either a socket connection limit has been reached or that there was no memory to hold the socket data structures.
- Local addrLocal address of the TCP connection
- Local portLocal port number of the TCP connection
- Remote addrRemote address of the TCP connection
- Remote portRemote port number of the TCP connection
- StateCurrent state of the TCP connection
- AuthenticationAuthentication status of the TCP connection
- total pktsTotal number of packets sent on the TCP connection
- data pktsNumber of data packets sent on the TCP connection
- bytesNumber of bytes sent on the TCP connection
- retransmitted pktsNumber of packets retransmitted on the TCP connection
- retransmitted bytesNumber of bytes retransmitted on the TCP connection
- total pktsTotal number of packets received on the TCP connection
- in-sequence pktsNumber of packets received in sequence on the TCP connection
- bytesNumber of bytes received on the TCP connection
- chksum err pktsNumber of checksum error packets received on the TCP connection
- bad offset pktsNumber of bad offset packets received on the TCP connection
- short pktsNumber of short packets received on the TCP connection
- duplicate pktsNumber of duplicate packets received on the TCP connection
- out of order pktsNumber of packets received out of order on the TCP connection
- Diagnostics: PRU_ Operations countersNumber of calls for each of the indicated PRU_operations within the TCP service API. These are per-connection statistics.
- Wildcard MatchesNumber of packets received that matched this TCP connection due to wildcard matching. Matching is expected for listening server connections, such as Telnet, but is not expected for established connections. This is a per-connection statistic.
- Rcv'd Packets after connection closedNumber of packets received on the connection after the connection has been closed (and before the data structure gets removed). This is a per-connection statistic.
- Connect request rejectedNumber of times an incoming connection request was not approved. This is a per-connection statistic.
- Connect request approval pendingNumber of times that an incoming connection request was held pending, waiting for a subsequent packet. This is a per-connection statistic.
- New soconnect failedNumber of times a SONEWCONN() was tried on a listening connection and failed. This is a per-connection statistic.
- # Write-WakeupsNumber of times a "write wakeup" occurred on the connection. This is a per-connection statistic.
- # Read wakeupsNumber of times a "read wakeup" occurred on the connection. This is a per-connection statistic.
- # receives after closeNumber of packets received with data after the connection entered the close-wait state. This is a per-connection statistic.
- Retransmit timerCurrent value of the retransmit timer
- Persistence timerCurrent value of the persistence timer
- Keepalive timerCurrent value of the keepalive timer
- 2MSL timerCurrent value of the 2MSL (max segment lifetime) timer
- tcpDisconnect()sNumber of times BsdTcp::tcpDisconnect() was called. This is a per-connection statistic.
- keep T/O pre-estabNumber of times the keepalive timer expired before the connection reached the established state. This is a per-connection statistic.
- tcpkeeptimeo_idleNumber of times the keepalive timer popped, but no keepalive was sent because of connection idle-time considerations. This is a per-connection statistic.
- TCP Connection Event Log (most recent at bottom)Event log for the TCP connection. It shows the last 32 events that occurred on the connection. The most recent event is at the bottom of the list. This is per-connection data.
The following events can be recorded:
The keepalive timer popped. An 8-bit argument that describes how the timer was handled:
- RSTs ackedNumber of RSTs received and then acknowledged by the TCP stack.
- Bogus RSTsNumber of RSTs that were judged to be invalid (that is, their timer expired) and therefore ignored
- SYNs ackedNumber of SYNs received and then acknowledged by the TCP stack.
- Bogus SYNsNumber of RSTs that were judged to be invalid (that is, their timer expired) and therefore ignored
- Data Insertions rejectedNumber of packets received and dropped because they are believed to have been inserted by an attacker
- PMTUDStatus of path MTU discovery on the virtual router: enabled or disabled
- Administrative Minimum MTUMinimum MTU that is enabled on any connection; a value of "none" indicates that the minimum is zero (0)
- Administrative Maximum MTUMaximum MTU that is enabled on any connection; a value of "none" indicates that the maximum is 65535
- Timer 1Amount of time the virtual router waits after receiving an ICMP Too Big message before attempting to increase the path MTU
- Timer 2Amount of time the virtual router waits after successfully increasing the MTU before attempting to increase it more
- # ICMP TooBigsNumber of ICMP Too Big messages that the router has received. When PMTU is disabled, this counter does not increase.
- # ICMP TooBigs for unk. connectionNumber of ICMP Too Big messages that the router has received for TCP connections that do not exist. When PMTU is disabled, this counter does not increase.
- PMTU Increase AttemptsNumber of attempts the router has made to increase the PMTU
- Black Hole Detect ThresholdNumber of successive transmissions that must occur on a connection before that connection treats retransmissions as indications that something is wrong
- Override MSSMSS that is advertised to peers, overriding the MSS that is derived from the interface MTU. This line does not appear in the output if you do not set the value.
- PMTUStatus of MTU/MSS on this virtual router: enabled or disabled
- MSS in effectMSS currently being used for transmission to the peer. This number changes while various network events occur to cause the router to increase or decrease its estimate of the MSS.
- Calculated MSS to peerMSS that path MTU discovery has calculated (if PMTUD is enabled) to the peer
- MSS received from peerMSS that the peer received in a TCP MSS option. If no option is received, the value is zero (0).
- Application set MSSMSS that an application might have set for the connection
- Xmit Interface MSSMSS for the interface used to transmit packets to the peer; calculated as the interface MTU minus the size of the TCP and IP headers.
- MSS Sent to PeerMSS that has been advertised to the peer
- "ICMP DestUn, Frag Req'd and DF Set" messagesNumber of ICMP "Destination Unreachable: Fragmentation Required and DF set" messages that the router has received
- Number of attempts to increase PMTUNumber of times the router has attempted to increase the PMTU by probing with a packet that is larger than the known MTU
- Time to next increase attemptAmount of time, in seconds, until the router retries to increase the MTU
- Black Hole Detection StateState of the black hole detection mechanism: none, detecting, probable, or unknown
- Buffers OutstandingNumber of buffers currently on the connection reordering queue
- High WaterMost buffers that have ever been on the connection reordering queue
- Buffers discardedNumber of buffers that were discarded because keeping them would have exceeded the connection maximum
- TCP PAWS is [enabled/disabled]Status of the TCP PAWS option; enabled indicates that PAWS is functioning normally (default mode) for TCP segments; disabled indicates that PAWS is disabled for TCP segments
host1#show ipv6 tcp statisticsTCP Global Statistics:Connections: 7358 attempted, 4 accepted, 7362 established0 dropped, 14718 closedRcvd: 75923 total pkts, 53608 in-sequence pkts, 3120303 bytes0 chksum err pkts, 0 authentication err pkts, 0 bad offset pkts0 short pkts, 0 duplicate pkts, 0 out of order pktsSent: 82352 total pkts, 44404 data pkts, 657095 bytes34 retransmitted pkts, 487 retransmitted bytesTCP Session Statistics:Local addr: 0.0.0.0, Local port: 23Remote addr: 0.0.0.0, Remote port: 0State: LISTEN Authentication: NoneRcvd: 4 total pkts, 0 in-sequence pkts, 0 bytes0 chksum err pkts, 0 bad offset pkts, 0 short pkts0 duplicate pkts, 0 out of order pktsSent: 0 total pkts, 0 data pkts, 0 bytes0 retransmitted pkts, 0 retransmitted bytesLocal addr: 192.168.1.250, Local port: 23Remote addr: 10.10.0.77, Remote port: 2170State: ESTABLISHED Authentication: NoneRcvd: 61 total pkts, 34 in-sequence pkts, 41 bytes0 chksum err pkts, 0 bad offset pkts, 0 short pkts0 duplicate pkts, 0 out of order pktsSent: 64 total pkts, 45 dataLocal addr: 192.168.1.250, Local port: 23Remote addr: 10.10.0.77, Remote port: 2170State: ESTABLISHED Authentication: NoneRcvd: 61 total pkts, 34 in-sequence pkts, 41 bytes0 chksum err pkts, 0 bad offset pkts, 0 short pkts0 duplicate pkts, 0 out of order pktsSent: 64 total pkts, 45 data pkts, 2304 bytes0 retransmitted pkts, 0 retransmitted bytesLocal addr: 192.168.1.250, Local port: 23Remote addr: 192.168.1.139, Remote port: 1038State: ESTABLISHED Authentication: NoneRcvd: 295 total pkts, 159 in-sequence pkts, 299 bytes0 chksum err pkts, 0 bad offset pkts, 0 short pkts0 duplicate pkts, 0 out of order pktsSent: 281 total pkts, 210 data pkts, 3089 bytes0 retransmitted pkts, 0 retransmitted bytesExample 2Additional fields displayed by diagnostic keyword host1#show tcp statistics diagnostic...Global Diagnostic DataUnknown Connection logSource address/port -> local port128.127.126.125/124 -> 8080 count: 3111.111.111.111/222 -> 3333 count: 4# connection-reqs rejected: 0# connection-reqs pending: 0# sonewconn calls that fail: 0...Diagnostics:PRU_ Operations counters:PRU_ATTACH: 0PRU_DETACH: 0PRU_BIND: 1PRU_LISTEN: 1PRU_CONNECT: 0PRU_ACCEPT: 0PRU_DISCONNECT: 0PRU_SHUTDOWN: 0PRU_RCVD: 0PRU_SEND: 0PRU_ABORT: 0PRU_CONTROL: 0PRU_SENSE: 0PRU_RCVOOB: 0PRU_SENDOOB: 0PRU_SOCKADDR: 0PRU_PEERADDR: 0PRU_CONNECT2: 0PRU_FASTTIMO: 0PRU_SLOWTIMO: 0PRU_PROTORCV: 0PRU_PROTOSEND: 0Wildcard Matches: 2Rcv'd Packets after connection closed: 0Connect request rejected: 0Connect request approval pending 0New soconnect failed 0# Write-Wakeups: 0# Read wakeups 0# receives after close 0Retransmit timer: 0Persistance timer: 0Keepalive timer: 02MSL timer: 0tcpDisconnect()s: 0keep T/O pre-estab: 0tcpkeeptimeo_idle: 0...TCP Connection Event Log (most recent at bottom)TCPS_ELOG_PRU_ATTACHTCPS_ELOG_PRU_BINDExample 3Additional fields displayed by detailed keyword host1#show tcp statistics detailed...RST/SYN-Ack Protection is: ENABLEDRSTs acked: 0...Bogus RSTs: 0SYNs acked: 0...Bogus SYNs: 0Data Insertions rejected: 0PMTUD Information: PMTUD: ENABLEDAdministrative Minimum MTU: 512Administrative Maximum MTU: noneTimer 1: 10 minutesTimer 2: 2 minutes# ICMP TooBigs: 0# ICMP TooBigs for unk. connection: 0PMTU Increase Attempts: 17Black Hole Detect Threshold: 50 retransmissions...MTU/MSS InformationENABLED on this connectionMSS in effect: 536Calculated MSS to peer: 536MSS received from peer: 0Application set MSS: 0Xmit Interface MSS: 0MSS Sent to Peer: 0"ICMP DestUn, Frag Req'd and DF Set" messages: 0Number of attempts to increase PMTU: 0Time to next increase attempt: 0 secondsBlack Hole Detection State: none...Out-of-order Packet Queue InformationBuffers Outstanding: 25High Water: 28Buffers discarded: 15...TCP-Paws is disabled