FXOS是思科FirePower系列的机框上的系统,上层可以跑ASA或FTD
下面是FXOS层面的一些show命令
1.1 机框信息
包含型号,序列号,电源 状态等
Firepower4110# show chassis detail
Chassis:
Chassis: 1
User Label:
Overall Status: Operable
Oper qualifier: N/A
Operability: Operable
Conf State: Ok
Admin State: Acknowledged
Conn Path: A
Conn Status: A
Managing Instance: A
Product Name: Cisco Firepower 4110 Security Appliance
PID: FPR-4110-K9
VID: V06
Part Number: 68-100554-07
Vendor: Cisco Systems Inc
Model: FPR-4110-K9
Serial (SN): JMX2355OBDK
HW Revision: 0
Mfg Date: 2018-12-04T00:00:00.000
Power State: Ok
Thermal Status: Ok
SEEPROM operability status: Operable
Dynamic Reallocation: Chassis
Reserved Power Budget (W): 600
PSU Capacity (W): 0
PSU Line Mode: Lower Line
PSU State: Ok
Current Task:
Firepower4110#
1.2 硬件信息
Firepower4110# show chassis inventory
Chassis PID Vendor Serial (SN) HW Revision
---------- --------------- ----------------- ----------- -----------
1 FPR-4110-K9 Cisco Systems Inc JMX2302OBDK 0
1.3 运行状态
Firepower4110# show chassis environment
Chassis 1:
Overall Status: Operable
Operability: Operable
Power State: Ok
Thermal Status: Ok
1.4 矩阵状态
Firepower4110# show chassis fabric
Locale:
Chassis Id Name C Type Transport Side Slot Id Locale Type
---------- ---- ---------- ------------------------ --------- ----- ------- -------- ----
1 A Mux To Host Ether Left 1 Server Lan
1 A Mux Fabric Ether Left 1 Chassis Lan
Firepower4110#
1.5 电源状态
Firepower4110# show chassis psu
Chassis PSU Type Wattage (W) Overall Status
---------- ---------- ------- ----------- --------------
1 1 DV 1100 Operable
1 2 DV 1100 Operable
1.6 风扇状态
先进入chassis,再show fan-module
Firepower4110# scope chassis
server-FW-1 /chassis # show fan-module
Fan Module:
Tray Module Overall Status
---------- ---------- --------------
1 1 Operable
1 2 Operable
1 3 Operable
1 4 Operable
1 5 Operable
1 6 Operable
1.7 报错信息
先进入chassis,再show fault
Firepower4110# scope chassis
server-FW-1 /chassis # show fault
Severity Code Last Transition Time ID Description
--------- -------- ------------------------ -------- -----------
Info F0461 2019-06-24T21:49:32.330 40021 Log capacity on Management Controller on server 1/1 is very-low
server-FW-1 /chassis # exit
Firepower4110#
1.8 进入local-mgmt里面的操作
server-FW-1# conn local-mgmt
server-FW-1(local-mgmt)#
1.8.1 查看管理接口
server-FW-1(local-mgmt)# show mgmt-port
eth0 Link encap:Ethernet HWaddr f8:0f:6f:a1:f0:39
inet addr:10.248.100.150 Bcast:10.248.100.255 Mask:255.255.255.128
inet6 addr: fe80::fa0f:6fff:fea1:f039/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:123861834 errors:0 dropped:207 overruns:0 frame:0
TX packets:16041367 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:2850402222 (2.6 GiB) TX bytes:1292197958 (1.2 GiB)
server-FW-1(local-mgmt)#
1.8.2 ping
server-FW-1(local-mgmt)# ping 10.248.100.129
PING 10.248.100.129 (10.248.100.129) from 10.248.100.150 eth0: 56(84) bytes of data.
64 bytes from 10.248.100.129: icmp_seq=1 ttl=255 time=0.684 ms
64 bytes from 10.248.100.129: icmp_seq=2 ttl=255 time=0.722 ms
64 bytes from 10.248.100.129: icmp_seq=3 ttl=255 time=0.687 ms
^C
--- 10.248.100.129 ping statistics ---
3 packets transmitted, 3 received, 0% packet loss, time 45ms
rtt min/avg/max/mdev = 0.684/0.697/0.722/0.035 ms
1.9 FXOS中的命令
server-FW-1# conn fxos
server-FW-1(fxos)#
1.9.1 查看接口
server-FW-1(fxos)# show interface brief
--------------------------------------------------------------------------------
Ethernet VLAN Type Mode Status Reason Speed Port
Interface Ch #
--------------------------------------------------------------------------------
Eth1/1 1 eth 1qtunl up none 10G(D) 10
Eth1/2 1 eth 1qtunl up none 10G(D) 10
Eth1/3 1 eth 1qtunl up none 10G(D) 10
Eth1/4 1 eth 1qtunl up none 10G(D) 10
Eth1/5 1 eth 1qtunl down SFP not inserted 10G(D) --
Eth1/6 1 eth 1qtunl down SFP not inserted 10G(D) --
Eth1/7 1 eth 1qtunl up none 1000(D) --
Eth1/8 1 eth 1qtunl up none 1000(D) --
Eth1/9 1 eth vntag up none 40G(D) --
Eth1/10 1 eth access down Administratively down 40G(D) --
Eth1/11 1 eth access down Administratively down 1000(D) --
Eth1/12 1 eth access down Administratively down 1000(D) --
--------------------------------------------------------------------------------
Port-channel VLAN Type Mode Status Reason Speed Protocol
Interface
--------------------------------------------------------------------------------
Po10 1 eth 1qtunl up none a-10G(D) lacp
1.9.2 硬件信息
server-FW-1(fxos)# show inventory
NAME: "Chassis", DESCR: "Firepower 41xx Security Appliance"
PID: FPR-4110-SUP , VID: V06 , SN: JMX2302OBDK
NAME: "Module 1", DESCR: "Firepower 41xx Supervisor"
PID: FPR-4110-SUP , VID: V06 , SN: JAD2249OBDJ