About show tech command
Hi everyone, I'm doing a performance report, I have the output of show tech command, I'm considering the cpu and memory information for my performance report, but Im not sure about the normal operation, there is some parameter for a normal operation?, for example a router 2900, and whitch commands also I have to considering fomr my performance report?, I want a good inform for my lab, any help is welcome.
Thanks in advance.
I think that you're talking about the output interpreter
https://www.cisco.com/pcgi-bin/Support/OutputInterpreter/home.pl
cheers.
Similar Messages
-
IPS Tech Tip - "show tech" command part 2 - IPS dev team webinar
Hi Folks,
The IPS product management and development team would like to invite you to this 30-40 minute webinar followed by Q&A sessions. These will be recorded and put on this forum as well. We hope you can attend.
-Robert
Robert Albach invites you to attend a Web seminar using WebEx. This event requires registration.
Topic: Cisco IPS Tech Tips - show tech part 2
Host: Robert Albach
This month's Cisco IPS Tech Tip will continue December's show tech command discussion. The show tech command holds a wealth of information regarding your IPS's performance and status. Cisco IPS development team members will continue to talk about what all this information means to you and then answers your questions.
Date and Time:
January 27, 2011 10:00 am, Central Standard Time (Chicago, GMT-06:00)
To register for the online event
1. Go to https://cisco.webex.com/ciscosales/onstage/g.php?d=202882129&t=a&EA=ralbach%40cisco.com&ET=85576c2dbfd6dca4b756de40b6728a2b&ETR=5d7e40b0e38f564be0a8bd55114369fc&RT=MiM3&p
2. Click "Register".
3. On the registration form, enter your information and then click "Submit".
Once the host approves your registration, you will receive a confirmation email message with instructions on how to join the event.Sadly we did not get the recording done. The presentation and the example pcaps however are on this forum now.
-Robert -
Cisco IPS Tech Tips: 2010 Dec 16 - show tech commands
Robert Albach invites you to attend a Web seminar using WebEx. This event requires registration.
IPS Tech Tips are monthly webinars lasting approximately 30 minutes with question and answer to follow. This month’s event will focus on the “show tech” command and its potential relevance to your IPS operation.
Topic: Cisco IPS Tech Tip 2010 Dec 16 - Show Tech
Host: Robert Albach
Date and Time:
December 16, 2010 10:00 am, Central Standard Time (Chicago, GMT-06:00)
To register for the online event
1. Go to https://cisco.webex.com/ciscosales/onstage/g.php?d=205452108&t=a&EA=ralbach%40cisco.com&ET=72ce549014a807001ae666a6d82dcc7c&ETR=6ff5ff3ebf442ab68017b906c9ead1a7&RT=MiM3&p
2. Click "Register".
3. On the registration form, enter your information and then click "Submit".
Once the host approves your registration, you will receive a confirmation email message with instructions on how to join the event.
For assistance
You can contact Robert Albach at:
[email protected]
http://www.webex.com
IMPORTANT NOTICE: This WebEx service includes a feature that allows audio and any documents and other materials exchanged or viewed during the session to be recorded. By joining this session, you automatically consent to such recordings. If you do not consent to the recording, discuss your concerns with the meeting host prior to the start of the recording or do not join the session. Please note that any such recordings may be subject to discovery in the event of litigation.The recordings and the presentation slides are placed here on the Cisco Support Community. I think if you roll the threads back some you will see the prior month's Tech Tips (then called Tech Talks) posted.
This one will be posted a few days after the event.
-Robert -
Cable modem link slowness w ISA570 and CLI "show tech" equivalent
Hi, I'm helping out a non profit that has a Mediacom 100mbs link, they get 90+ Speed connected directly to the cable modem, but anywhere past the ISA570 they only get 50-60mbs. They have switched cables, added a separate port, tried different PCs, results are the same, 50-60 mbs max.
Also it's their understanding the ISA570 can't do CLI, so how can they get the equivalent of a 'show tech' command to a file to send offsite for troubleshooting,
Thanks.
JimHello,
There is something similar to show tech on the ISA.
Log into the web GUI, go to Device Management >> Cisco Services & Support >> Send Diagnostics. At the bottom of that page is a Download button that will collect the config file, the logs, and some debug outputs into a zip file. You can use this to troubleshoot the device, although I usually prefer to be on the live device itself to look at things.
Before you dig too deep into those however, what kind of security services do you currently have enabled on the ISA? I was looking over the datasheet and while the SPI is capable of ~500mbps, when you start to enable the various security services those speeds start to drop.
If we look at the UTM (Unified Threat Management) throughput measures, that is at about 75mbps, which is fairly close to what you are getting. I would go through and disable the various security services one at a time and test your speed. My guess would be either A/V or IPS is slowing your connection down. It may be one or a combination of these services causing the slowdown. You can disable those options, or just explain that the extra security will cost a bit of speed.
Hope that helps a bit,
Christopher Ebert - Advanced Network Support Engineer
Cisco Small Business Support Center
*please rate helpful posts* -
Cisco IPS Tech Tips: 2010 Dec. 16 - Show Tech Part 1 Recording
Hi Cisco IPS Users,
I've attached the recording from our last Tech Tips regarding the "show tech" command. We hope that you will find this of value in the operation of your Cisco IPS.
As always feel free to leave comments on the content or future subjects you would like to see us address.
The continuation of this discussion will take place today (Jan 27th).
Thanks,
-Robert
Robert Albach
IPS Product Management
[email protected]The recordings and the presentation slides are placed here on the Cisco Support Community. I think if you roll the threads back some you will see the prior month's Tech Tips (then called Tech Talks) posted.
This one will be posted a few days after the event.
-Robert -
folks
i need to pass on the contents of a show tech command but its very long!
does anyone know how i can output this to a file and then tftp the file to somewhere else?
thanks to anyone taking the time to replyCertain platforms allow you to redirect sh tech to a TFTP server and flash devices. This is an example from a CAT4500 running 12.2(25)EWA5
Switch#sh tech-support | redirect ?
bootflash: Uniform Resource Locator
cat4000_flash: Uniform Resource Locator
ftp: Uniform Resource Locator
http: Uniform Resource Locator
nvram: Uniform Resource Locator
rcp: Uniform Resource Locator
slot0: Uniform Resource Locator
tftp: Uniform Resource Locator
Switch#sh tech-support | redirect -
Question about ACE show Conn command (tcp duration)
Hello,
I was checking connections and noticed that I would see the initial connection, but after a short time the connection quits showing up in the counters and the “show conn” command. However the user is still up and working.
This is the command I used:
sho conn serverfarm STAGING-HTTPS detail
The output shows all the connection info from source to destination, and in the ESTABLISHED state.
However, after maybe 2~3 minutes, when I up arrow I don't see any connection info. The web page is still up. If I refresh the web page, I do see the connections come in.
Can someone kindly point me to a document or provide an answer on how long should the connection be stored before they are flushed?
Config profile:
4 real servers
HTTPS protocol
Leastconn for predictor
sticky based on src/dst IP
Thanks,
RamanRaman,
If you would play with a sniffer capture, you could answer the question yourself.
If the browser loads a flash object or a java applet, once it is loaded, you can still work on the page but there is no data transfer.
with a sniffer tool you could see the browser closing the connections.
The default TCP idle timeout on ACE is 1 hour.
Gilles. -
Spotlight lists items and shows preview images. BUT what about showing the path/location address of an item in my computer.
Especially important if I've put the item in the wrong folder and what to locate it without multi-steps. iMac OS X 10.5 was more useful.
Old OSX Spotlight function automatically displayed path/location within the machine: e.g. desktop/folder/sub-folder/item.
Can I make Spotlight show the path?Press option-command and the path is displayed at the bottom of the little preview window. Press command-return and the enclosing folder opens.
-
Clarification on the SHOW TOP command
Does anyone know much about the Show Top command? I am trying to get specs on the bandwidth utilization of a port. When
I do the Top command it tells me a percent of utilization. However it looks to be too low. I verified the util using a traffic generator test set and it has results of almost double the util. that the Top command stated. So my thoughts are that if the port is set for 100/Full then the Top stats for Util show only half Dux. Is this so??? I think that I need to double the Top results for util and that will be the true Util for the port. Can anyone verify this????you are kind of correct, that it will look like a half duplex utilization because process actually bundles the TX AND rx into the same counter and it also looks at the full duplex bandwidth when calculating the % utilization. So a GE port is really 2000Mbps full-duplex. so, from the traffic generator you are sending at line rate of 1 Gig, the TOP will see that as 50% utilization. Does that make sense. This is how I understand it.
-
Hi
I need to understand, what does RMAN use to read configuration info in case of No Recovery catalog.
We all know that it read from Control file about backup information.
But, when my database is in NOMOUNT mode, I connect to rman target /
Then I run show all; command.
It displays RMAN configuration, Where is this information stored?
Any idea?
Thanks in advanceHi,
Did you compare the output of the <show all ;> commands in nomount and mount (or open) mode?
In nomount you get the defaults :
RMAN configuration parameters are:
CONFIGURE RETENTION POLICY TO REDUNDANCY 1; # default
CONFIGURE BACKUP OPTIMIZATION OFF; # default
CONFIGURE DEFAULT DEVICE TYPE TO DISK; # default
CONFIGURE CONTROLFILE AUTOBACKUP OFF; # default
CONFIGURE CONTROLFILE AUTOBACKUP FORMAT FOR DEVICE TYPE DISK TO '%F'; # default
CONFIGURE DEVICE TYPE DISK PARALLELISM 1 BACKUP TYPE TO BACKUPSET; # default
CONFIGURE DATAFILE BACKUP COPIES FOR DEVICE TYPE DISK TO 1; # default
CONFIGURE ARCHIVELOG BACKUP COPIES FOR DEVICE TYPE DISK TO 1; # default
CONFIGURE MAXSETSIZE TO UNLIMITED; # default
CONFIGURE ENCRYPTION FOR DATABASE OFF; # default
CONFIGURE ENCRYPTION ALGORITHM 'AES128'; # default
CONFIGURE ARCHIVELOG DELETION POLICY TO NONE; # default
In mount mode you get the actual settings:
using target database control file instead of recovery catalog
RMAN configuration parameters are:
CONFIGURE RETENTION POLICY TO REDUNDANCY 1; # default
CONFIGURE BACKUP OPTIMIZATION OFF; # default
CONFIGURE DEFAULT DEVICE TYPE TO DISK; # default
CONFIGURE CONTROLFILE AUTOBACKUP ON;
CONFIGURE CONTROLFILE AUTOBACKUP FORMAT FOR DEVICE TYPE DISK TO '%F'; # default
CONFIGURE DEVICE TYPE DISK PARALLELISM 1 BACKUP TYPE TO BACKUPSET; # default
CONFIGURE DATAFILE BACKUP COPIES FOR DEVICE TYPE DISK TO 1; # default
CONFIGURE ARCHIVELOG BACKUP COPIES FOR DEVICE TYPE DISK TO 1; # default
CONFIGURE CHANNEL DEVICE TYPE DISK FORMAT '/backup/DB10G/%U';
CONFIGURE MAXSETSIZE TO UNLIMITED; # default
CONFIGURE ENCRYPTION FOR DATABASE OFF; # default
CONFIGURE ENCRYPTION ALGORITHM 'AES128'; # default
CONFIGURE ARCHIVELOG DELETION POLICY TO NONE; # default
CONFIGURE SNAPSHOT CONTROLFILE NAME TO '/u01/appl/ora102/product/10.2.0/dbs/snapcf_DB10G.f'; # default
Regards,
Tycho -
Confused about mpls mtu command
hi,
i confuse about mpls mtu command
test platforms are 76 pfc3b,mpls,gigabit sip400 spa interface
if i didn't config mpls mtu command ,using default,ping command is successful,if more than 1496 packets, i can see fragment from show ip traffic.
if i config mpls mtu override 1504,ping command is sucessful too. there is fragment too when i use 1501 byte packet.
if i config mpls mtu override 1524 byte.
ping command failed if i use packet more than 1500, , all packet are droped,even 1501 byte.only 1500 byte packet can success.
all config above interface mtu is 1500.
this confused me.
why i use default 1500 interace mtu, mpls mtu override 1504 ,ping packet can fragment,ping success, but i use mpls mtu override 1524, i can see fragment in show ip traffic,but ping command failed. i can't see packet in destination router,how this work.
thank you!
juntopology is simple
7609-1--sip GE spa----7609-2--pos---7609-3--flexwan E1-----7604-1--ge--ce
i config mpls mtu 1524 between 7609-1 and 7609-2 . and keep interface mtu 1500 default.
ping packet from 7609-1 to 7604-1 loopback 0.
ping 1500 byte packet is ok, but ping 1501 byte packet is totally lost.then i config mtu 1524 between 7604-1 and 7609-3, it is useless,notwork, i can't see packet coming from 7609-1 on 7604-1.
but i add config mtu 1524 between 7609-1 and 7609-2. config mtu 1500 between 7604-1 and 7609-3,ping 1501 bytes from 7609-1 to 7604-1 loopback0 is ok. but i can see fragment from show ip traffic command in 7609-3.
i have a question, why we need mpls mtu command. if we don't change interface mtu,just only config mpls mtu 1524, it doesn't work, if we just change mpls mtu,how it work in the ios. if we config interface mtu 1524,interface mtu size is big enough, it seems mpls mtu command is useless, we don't need mpls mtu command, just interface mtu 1524 is ok.
why we need mpls mtu command. we just only change interface mtu is enough.
thank you!
jun -
"Show Diag" command on 3750 IOS 12.1(19)EA1c
Hi,
I'm trying to run the "show diag" command on a 3750 with IOS 12.1(19)EA1c and the command is not recongised. I'm in enable mode and cannot find an equivalent command.
I need to do this as the Cisco Software Advisor is asking for a copy of the output.
Any pointers gladly recived.
Cheers,
GarethHi,
The tool you need is the "Feature Navigator" which can be found here:
http://tools.cisco.com/ITDIT/CFN/jsp/index.jsp
Launch the tool by selecting "Search by Feature"
Searching for "802.1x" gives a list of all those features, select "Wake on LAN support" (for example) and click add, then continue.
The platform box gives a list of all platforms that support the feature, so select 3750.
The lowest feature set is IP Base (you might have something else but worth checking this first as it's the lowest feature set)
This gives a list of about 20 versions of software which support the feature so you can see you need at least 12.2(25)SEC to get this particular feature.
The process is pretty much the same for any feature. If you know the actual command you need (in this case it's "dot1x control-direction" then you could get the same info by just looking it up in the latest command reference as that will also tell you when the feature first appeared.
Finally, if you just want a list of features for a particular release then use the same link and choose search by platform, but be aware this will be a *long* list.
HTH
Andrew. -
Privilege mode disable the show logging command
any one pls advice how to disable the show logging command through the privilege
Pls see this link,
http://www.cisco.com/en/US/tech/tk59/technologies_tech_note09186a00800949d5.shtml
Regards,
~JG
Do rate helpful posts -
Using ACS to deny show tech-support
I am trying to deny the show tech-support command using Cisco Secure ACS command authorization sets (picture included). All other deny commands are working (is show running-config) but no matter what I do the show tech is un-successful. Any ideas?
Do you have these authorization commands configured?
aaa new-model
aaa authentication login default group tacacs+ local
aaa authorization exec default group tacacs+ local
aaa authorization commands 0 default group tacacs+ local
aaa authorization commands 1 default group tacacs+ local
aaa authorization commands 15 default group tacacs+ local
tacacs-server host 10.1.1.1 key cisco123
Debug aaa author should display:
AAA/AUTHOR/CMD: tty2 (2846421758) user='switchuser'
AAA/AUTHOR/CMD (2846421758): send AV service=shell
AAA/AUTHOR/CMD (2846421758): send AV cmd=show
AAA/AUTHOR/CMD (2846421758): send AV cmd-arg=tech-support
AAA/AUTHOR/CMD (2846421758): send AV cmd-arg=
AAA/AUTHOR/CMD (2846421758): found list "default"
AAA/AUTHOR/CMD (2846421758): Method=tacacs+ (tacacs+)
AAA/AUTHOR/TAC+: (2846421758): user=switchuser
AAA/AUTHOR/TAC+: (2846421758): send AV service=shell
AAA/AUTHOR/TAC+: (2846421758): send AV cmd=show
AAA/AUTHOR/TAC+: (2846421758): send AV cmd-arg=tech-support
AAA/AUTHOR/TAC+: (2846421758): send AV cmd-arg=
TAC+: Using default tacacs server-group "tacacs+" list.
TAC+: Opening TCP/IP to 10.1.1.1/49 timeout=5
TAC+: Opened TCP/IP handle 0x2E8FEA4 to 10.1.1.1/49
TAC+: 10.1.1.1 (2846421758) AUTHOR/START queued
TAC+: (2846421758) AUTHOR/START processed
TAC+: (-1448545538): received author response status = FAIL
Make sure to modify the original ACS Shell Command Authorization...
deny tech-support instead of deny tech. -
ACE 20 Modular - show tech too large
Hi
A Client sent me a show tech of this ACE 20, is inserted into a VSS, but this file is very large, the reason is a command "show acl-merge merged-list vlan 93".. Somebody can tell me is this information is normal, or not, I think that is possible attack point to the farm server. the service is up, in the other ace20. the symptom is can not reach the VIP of the service.
`show acl-merge merge vlan 93 in`
All ACEs in merged list 5 Total:6377 Non-redundant:5608
Priority:164, Lineno:0, ACE-id:61470 Action:PERMIT, Path-id:0x81/0x0/0x0:6/0[6/]
Pmap:0x5, Log:FALSE/FALSE[FALSE][FALSE], Interval:0/0[0][0]
Hash1:0x0 Hash2:0x0
Generated:TRUE, need-to-add-in-comp:NO_ACT_NEEDED, redundant:FALSE
Parent:: feature:SECURITY ace-lineno:8 ACL priority:0[G:0,P:0,C:0,ACL:0]
Parent:: feature:TO CP ace-lineno:2 ACL priority:16779265[G:0,P:1,C:8,ACL:1]
Feature:SECURITY Policy:1[1][1] sec-level:0x0 Intratype:SKIP
Feature:TO CP Policy:1[1][1] sec-level:0x0 Intratype:TERMINATE
Intertype:TERMINATE
IP address SRC:0.0.0.0/0.0.0.0 DST:172.23.98.20/255.255.255.255
Ports SRC:RANGE 8 8 DST:RANGE 0 0
Protocol:1
Hit Count:0 Active:TRUE Timerange:0
Priority:326, Lineno:0, ACE-id:61471 Action:PERMIT, Path-id:0x81/0x0/0x0:6/0[6/]
Pmap:0x5, Log:FALSE/FALSE[FALSE][FALSE], Interval:0/0[0][0]
Hash1:0x0 Hash2:0x0
Generated:TRUE, need-to-add-in-comp:NO_ACT_NEEDED, redundant:FALSE
Parent:: feature:SECURITY ace-lineno:8 ACL priority:0[G:0,P:0,C:0,ACL:0]
Parent:: feature:TO CP ace-lineno:2 ACL priority:16781313[G:0,P:1,C:16,ACL:1]
Feature:SECURITY Policy:1[1][1] sec-level:0x0 Intratype:SKIP
Feature:TO CP Policy:1[1][1] sec-level:0x0 Intratype:TERMINATE
Intertype:TERMINATE
IP address SRC:0.0.0.0/0.0.0.0 DST:165.183.93.51/255.255.255.255
Ports SRC:RANGE 8 8 DST:RANGE 0 0
Protocol:1
Hit Count:0 Active:TRUE Timerange:0
Priority:487, Lineno:0, ACE-id:61472 Action:PERMIT, Path-id:0x81/0x0/0x0:6/0[6/]
Pmap:0x5, Log:FALSE/FALSE[FALSE][FALSE], Interval:0/0[0][0]
Hash1:0x0 Hash2:0x0
Generated:TRUE, need-to-add-in-comp:NO_ACT_NEEDED, redundant:FALSE
Parent:: feature:SECURITY ace-lineno:8 ACL priority:0[G:0,P:0,C:0,ACL:0]
Parent:: feature:TO CP ace-lineno:2 ACL priority:16783361[G:0,P:1,C:24,ACL:1]
Feature:SECURITY Policy:1[1][1] sec-level:0x0 Intratype:SKIP
Feature:TO CP Policy:1[1][1] sec-level:0x0 Intratype:TERMINATE
Intertype:TERMINATE
IP address SRC:0.0.0.0/0.0.0.0 DST:165.183.93.51/255.255.255.255
Ports SRC:RANGE 8 8 DST:RANGE 0 0
Protocol:1
Hit Count:0 Active:TRUE Timerange:0
Priority:647, Lineno:0, ACE-id:61473 Action:PERMIT, Path-id:0x81/0x0/0x0:6/0[6/]
Pmap:0x5, Log:FALSE/FALSE[FALSE][FALSE], Interval:0/0[0][0]
Hash1:0x0 Hash2:0x0
Generated:TRUE, need-to-add-in-comp:NO_ACT_NEEDED, redundant:FALSE
Parent:: feature:SECURITY ace-lineno:8 ACL priority:0[G:0,P:0,C:0,ACL:0]
Parent:: feature:TO CP ace-lineno:2 ACL priority:16785409[G:0,P:1,C:32,ACL:1]
Feature:SECURITY Policy:1[1][1] sec-level:0x0 Intratype:SKIP
Feature:TO CP Policy:1[1][1] sec-level:0x0 Intratype:TERMINATE
Intertype:TERMINATE
IP address SRC:0.0.0.0/0.0.0.0 DST:165.183.93.61/255.255.255.255
Ports SRC:RANGE 8 8 DST:RANGE 0 0
Protocol:1
Hit Count:0 Active:TRUE Timerange:0Hi.
We reboot the ACE20, and let one contex in this module.. The services is OK now, but my only doub is why the show tech-support is too large and appear the out of command show acl-merge merged-list vlan 93, with a lot of line..
I try to run command "show tech-support" again and submit.
Maybe you are looking for
-
ITunes 12.1.2 and iOS 8.3 artist bug
In my iTunes Library on my Mac (iTunes is updated to the newest version) it seems that everything is correct concerning the names of the artists, album artists, song titles, album titles and so on (on every album). I only have music purchased on the
-
How to changing char. values and create new lines in C_TH_DATA
Hi experts, we need to distribute the cost of some sender costcenters to the corresponding receiver costcenters. We have already created a DSO and maintained this with the sender and receiver costcenter. We use this lookup table later in the execute
-
Why is AVCHD 25p clips imported in as 25i ?
Hi there, On the video recorder, I set my video settings to 1920 x 1080 25p. When I ingest in FCPX, I selected "create optimized media". Then in the browser, when i select the clip & goto the info tab, it says my clip is 1920 x 1080 25i. But in the c
-
Hi there! Im H.Lecture from India!I would like to know when the Logic Pro 7.2 Upgrade is available in India? Regards....
-
FF5.0 How to hide the underline on menu accelerator characters ?
N.B. I'm not referring to the underlining of links which is useful.. I think the accelerator character underline is ugly & distracting so how do I turn it off please ? Thank you