beautypg.com

Clearing the acl statistics – Brocade Multi-Service IronWare Security Configuration Guide (Supporting R05.6.00) User Manual

Page 234

background image

216

Multi-Service IronWare Security Configuration Guide

53-1003035-02

ACL accounting

4

Table 31

describes the output parameters of the show ipv6 access-list accounting ethernet

command.

Syntax: show ipv6 access-list accounting ethernet [slot/port | ve ve-number] in | out

[policy-based-routing]

Use ethernet slot/port to display a report for a physical interface.

Use ve ve-number to display a report for the ports that are included in a virtual routing interface.
For example, if ports 1/2, 1/4, and 1/6 are all members of ve 2, the report includes information for
all three ports.

Use the in parameter to display statistics for incoming traffic; out for outgoing traffic.

The policy-based-routing parameter limits the display to policy based routing accounting
information.

Clearing the ACL statistics

Statistics on the ACL account report can be cleared:

When a software reload occurs

When the ACL is bound to or unbound from an interface

When you enter the clear ipv6 access-list command, as in the following example.

Brocade(config)# clear ipv6 access-list all

Syntax: clear ipv6 access-list all | ethernet slot/port | ve ve-num

Enter all to clear all statistics for all ACLs.

Use ethernet slot/port to clear statistics for ACLs a physical port.

Use ve ve-number to clear statistics for all ACLs bound to ports that are members of a virtual
routing interface.

NOTE

Because IPv6 rate limiting is not supported on the Brocade NetIron CES 2000 and Brocade NetIron
CER 2000 devices, the counts displayed in the accounting mode represent the number of packets
that matched the IPv6 ACL.

TABLE 31

Output of the show ipv6 access-list accounting ethernet command

Field

Description

IPv6 ACL

Shows the name of the IPv6 traffic filter for the collected statistics.

Collecting IPv6 ACL accounting
for interface

Shows the interface for which the ACL accounting information is collected and
specifies whether or not the collection is successful.

#

Shows the index of the IPv6 ACL entry, starting with 0, followed by the permit or
deny condition defined for that ACL entry. (The first entry created for an ACL is
assigned the index 0. The index of the subsequent entries created are
incremented by 1.)

deny enable-accounting ahp

Shows the name of the matching clause in the ACL.

Hit count

Shows the number of matching frames for each sample interval and the
accumulated value since the last clear or rebind action.