Clearing the acl statistics – Brocade Multi-Service IronWare Security Configuration Guide (Supporting R05.6.00) User Manual
Page 234
![background image](/manuals/361632/234/background.png)
216
Multi-Service IronWare Security Configuration Guide
53-1003035-02
ACL accounting
4
describes the output parameters of the show ipv6 access-list accounting ethernet
command.
Syntax: show ipv6 access-list accounting ethernet [slot/port | ve ve-number] in | out
[policy-based-routing]
Use ethernet slot/port to display a report for a physical interface.
Use ve ve-number to display a report for the ports that are included in a virtual routing interface.
For example, if ports 1/2, 1/4, and 1/6 are all members of ve 2, the report includes information for
all three ports.
Use the in parameter to display statistics for incoming traffic; out for outgoing traffic.
The policy-based-routing parameter limits the display to policy based routing accounting
information.
Clearing the ACL statistics
Statistics on the ACL account report can be cleared:
•
When a software reload occurs
•
When the ACL is bound to or unbound from an interface
•
When you enter the clear ipv6 access-list command, as in the following example.
Brocade(config)# clear ipv6 access-list all
Syntax: clear ipv6 access-list all | ethernet slot/port | ve ve-num
Enter all to clear all statistics for all ACLs.
Use ethernet slot/port to clear statistics for ACLs a physical port.
Use ve ve-number to clear statistics for all ACLs bound to ports that are members of a virtual
routing interface.
NOTE
Because IPv6 rate limiting is not supported on the Brocade NetIron CES 2000 and Brocade NetIron
CER 2000 devices, the counts displayed in the accounting mode represent the number of packets
that matched the IPv6 ACL.
TABLE 31
Output of the show ipv6 access-list accounting ethernet command
Field
Description
IPv6 ACL
Shows the name of the IPv6 traffic filter for the collected statistics.
Collecting IPv6 ACL accounting
for interface
Shows the interface for which the ACL accounting information is collected and
specifies whether or not the collection is successful.
#
Shows the index of the IPv6 ACL entry, starting with 0, followed by the permit or
deny condition defined for that ACL entry. (The first entry created for an ACL is
assigned the index 0. The index of the subsequent entries created are
incremented by 1.)
deny enable-accounting ahp
Shows the name of the matching clause in the ACL.
Hit count
Shows the number of matching frames for each sample interval and the
accumulated value since the last clear or rebind action.