FXOS是思科FirePower系列的机框上的系统,上层可以跑ASA或FTD
下面是FXOS层面的一些show命令
1.1 机框信息
包含型号,序列号,电源 状态等
Firepower4110# show chassis detail Chassis:Chassis: 1User Label:Overall Status: OperableOper qualifier: N/AOperability: OperableConf State: OkAdmin State: AcknowledgedConn Path: AConn Status: AManaging Instance: AProduct Name: Cisco Firepower 4110 Security AppliancePID: FPR-4110-K9VID: V06Part Number: 68-100554-07Vendor: Cisco Systems IncModel: FPR-4110-K9Serial (SN): JMX2355OBDKHW Revision: 0Mfg Date: 2018-12-04T00:00:00.000Power State: OkThermal Status: OkSEEPROM operability status: OperableDynamic Reallocation: ChassisReserved Power Budget (W): 600PSU Capacity (W): 0PSU Line Mode: Lower LinePSU State: OkCurrent Task:
Firepower4110#
1.2 硬件信息
Firepower4110# show chassis inventory
Chassis PID Vendor Serial (SN) HW Revision
---------- --------------- ----------------- ----------- -----------1 FPR-4110-K9 Cisco Systems Inc JMX2302OBDK 0
1.3 运行状态
Firepower4110# show chassis environment
Chassis 1:Overall Status: OperableOperability: OperablePower State: OkThermal Status: Ok
1.4 矩阵状态
Firepower4110# show chassis fabric Locale:Chassis Id Name C Type Transport Side Slot Id Locale Type
---------- ---- ---------- ------------------------ --------- ----- ------- -------- ----1 A Mux To Host Ether Left 1 Server Lan1 A Mux Fabric Ether Left 1 Chassis Lan
Firepower4110#
1.5 电源状态
Firepower4110# show chassis psu
Chassis PSU Type Wattage (W) Overall Status
---------- ---------- ------- ----------- --------------1 1 DV 1100 Operable1 2 DV 1100 Operable
1.6 风扇状态
先进入chassis,再show fan-module
Firepower4110# scope chassis
server-FW-1 /chassis # show fan-module Fan Module:Tray Module Overall Status---------- ---------- --------------1 1 Operable1 2 Operable1 3 Operable1 4 Operable1 5 Operable1 6 Operable
1.7 报错信息
先进入chassis,再show fault
Firepower4110# scope chassis
server-FW-1 /chassis # show fault
Severity Code Last Transition Time ID Description
--------- -------- ------------------------ -------- -----------
Info F0461 2019-06-24T21:49:32.330 40021 Log capacity on Management Controller on server 1/1 is very-low
server-FW-1 /chassis # exit
Firepower4110#
1.8 进入local-mgmt里面的操作
server-FW-1# conn local-mgmt
server-FW-1(local-mgmt)#
1.8.1 查看管理接口
server-FW-1(local-mgmt)# show mgmt-port
eth0 Link encap:Ethernet HWaddr f8:0f:6f:a1:f0:39 inet addr:10.248.100.150 Bcast:10.248.100.255 Mask:255.255.255.128inet6 addr: fe80::fa0f:6fff:fea1:f039/64 Scope:LinkUP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1RX packets:123861834 errors:0 dropped:207 overruns:0 frame:0TX packets:16041367 errors:0 dropped:0 overruns:0 carrier:0collisions:0 txqueuelen:1000 RX bytes:2850402222 (2.6 GiB) TX bytes:1292197958 (1.2 GiB)server-FW-1(local-mgmt)#
1.8.2 ping
server-FW-1(local-mgmt)# ping 10.248.100.129
PING 10.248.100.129 (10.248.100.129) from 10.248.100.150 eth0: 56(84) bytes of data.
64 bytes from 10.248.100.129: icmp_seq=1 ttl=255 time=0.684 ms
64 bytes from 10.248.100.129: icmp_seq=2 ttl=255 time=0.722 ms
64 bytes from 10.248.100.129: icmp_seq=3 ttl=255 time=0.687 ms
^C
--- 10.248.100.129 ping statistics ---
3 packets transmitted, 3 received, 0% packet loss, time 45ms
rtt min/avg/max/mdev = 0.684/0.697/0.722/0.035 ms
1.9 FXOS中的命令
server-FW-1# conn fxos
server-FW-1(fxos)#
1.9.1 查看接口
server-FW-1(fxos)# show interface brief --------------------------------------------------------------------------------
Ethernet VLAN Type Mode Status Reason Speed Port
Interface Ch #
--------------------------------------------------------------------------------
Eth1/1 1 eth 1qtunl up none 10G(D) 10
Eth1/2 1 eth 1qtunl up none 10G(D) 10
Eth1/3 1 eth 1qtunl up none 10G(D) 10
Eth1/4 1 eth 1qtunl up none 10G(D) 10
Eth1/5 1 eth 1qtunl down SFP not inserted 10G(D) --
Eth1/6 1 eth 1qtunl down SFP not inserted 10G(D) --
Eth1/7 1 eth 1qtunl up none 1000(D) --
Eth1/8 1 eth 1qtunl up none 1000(D) --
Eth1/9 1 eth vntag up none 40G(D) --
Eth1/10 1 eth access down Administratively down 40G(D) --
Eth1/11 1 eth access down Administratively down 1000(D) --
Eth1/12 1 eth access down Administratively down 1000(D) ----------------------------------------------------------------------------------
Port-channel VLAN Type Mode Status Reason Speed Protocol
Interface
--------------------------------------------------------------------------------
Po10 1 eth 1qtunl up none a-10G(D) lacp
1.9.2 硬件信息
server-FW-1(fxos)# show inventory
NAME: "Chassis", DESCR: "Firepower 41xx Security Appliance"
PID: FPR-4110-SUP , VID: V06 , SN: JMX2302OBDKNAME: "Module 1", DESCR: "Firepower 41xx Supervisor"
PID: FPR-4110-SUP , VID: V06 , SN: JAD2249OBDJ