This command displays various management (control path) configurations. Details include information about ports, packet logging, alert throttle, layer configuration, TACAS, ACL, NTP, latency monitor, and GTI proxy. This command has no parameters.
Syntax:
show mgmtcfg
Sample Output:
IntruDbg#> show mgmtcfg FAILOVERGRP CFG FailoverAction DISABLED PeerIPaddr 0 HeartbeatTime 5 HeartbeatRetryCnt 3 FailoverMode STANDALONE FailopenAction DISABLED INTF PORT 0 EnableInternalTap TRUE INTF PORT 1 EnableInternalTap TRUE INTF PORT 2 EnableInternalTap TRUE INTF PORT 3 EnableInternalTap TRUE INTF PORT 4 EnableInternalTap TRUE INTF PORT 5 EnableInternalTap TRUE INTF PORT 6 EnableInternalTap TRUE INTF PORT 7 EnableInternalTap TRUE INTF PORT 8 EnableInternalTap TRUE INTF PORT 9 EnableInternalTap TRUE INTF PORT 10 EnableInternalTap TRUE INTF PORT 11 EnableInternalTap TRUE INTF PORT 12 EnableInternalTap TRUE INTF PORT 13 EnableInternalTap TRUE INTF PORT 14 EnableInternalTap TRUE INTF PORT 15 EnableInternalTap TRUE INTF PORT 16 EnableInternalTap TRUE INTF PORT 17 EnableInternalTap TRUE INTF PORT 18 EnableInternalTap TRUE INTF PORT 19 EnableInternalTap TRUE INTF PORT 20 EnableInternalTap TRUE INTF PORT 21 EnableInternalTap TRUE INTF PORT 22 EnableInternalTap TRUE INTF PORT 23 EnableInternalTap TRUE INTF PORT 24 EnableInternalTap TRUE INTF PORT 25 EnableInternalTap TRUE INTF PORT 26 EnableInternalTap TRUE INTF PORT 27 EnableInternalTap TRUE INTF PORT 28 EnableInternalTap TRUE INTF PORT 29 EnableInternalTap TRUE INTF PORT 30 EnableInternalTap TRUE INTF PORT 31 EnableInternalTap TRUE INTF PORT 32 EnableInternalTap TRUE INTF PORT 33 EnableInternalTap TRUE Packet Logging CFG ServerIP 127.0.0.1 ServerPort 8503 Encryption ENABLED ServerV6IP Alert Throttle CFG Threshold 1 Interval 120 Action DISABLED Global Threshold 10 LAYER2 CFG Mode ENABLED Duration 10 Threshold 1 OccurrenceCnt 0 FirstTimeIdx 0 LastTimeIdx 0 OccurrenceTime[0] 0 OccurrenceTime[1] 0 OccurrenceTime[2] 0 OccurrenceTime[3] 0 OccurrenceTime[4] 0 OccurrenceTime[5] 0 OccurrenceTime[6] 0 OccurrenceTime[7] 0 OccurrenceTime[8] 0 OccurrenceTime[9] 0 RebootCount 0 TACACS CFG Authentication Disabled Traffic Encryption Enabled Authorization Disabled ACL CFG Alert Throttle MaxIp Pair 10 Alert Throttle Interval 120 Alert Throttle Action Enabled Alert Throttle Threshold 5 Alert Direct to Syslog 1 NMS CFG NMS User Write Access Status : Enabled No NMS IPv4 Addresses are configured. No NMS IPv6 Addresses are configured. No NMS User's are configured. MPE CFG [Configured MPE details] MPE Server IP address = 0.0.0.0 MPE Anonymous Port = 8443 MPE Listen Port = 0 MPE Trusted Port = 8444 MPE Anonymous URI = /nac/certrequest MPE Trusted URI = /nac/engine MPE Connection Failure Timeout = 32 MNAC Agent GUID Port = 8444 MNAC OS Capability = 0 MNAC TTL Config = 131074 EZ-LOG-ALERT-THROTTLE CFG Max IP Pair 10 Throttle Interval 120 Throttle Action Enabled Throttle Threshold 5 Alert Direct to Syslog 1 SGAP CFG Auth channel timeout 50 SGAP status config 1 PERFORMANCE ALERT CFG Perf Alert Status 1 Perf Alert Parameters 63800000 Perf Alert Duration 3 THRESHOLD BASED ALARM CFG Alarm Status 1 Alarm Duration 1 Number of Alarm Entries 3 Alarm Index : 1 Alarm Sample Type : 0 Alarm Raising Threshold : 90 Alarm Falling Threshold : 70 Alarm Startup Type : 1 Alarm Description : High Usage Alarm Sample Type Index : 0 0 0 0 0 0 0 0 Alarm Index : 3 Alarm Sample Type : 2 Alarm Raising Threshold : 90 Alarm Falling Threshold : 70 Alarm Startup Type : 1 Alarm Description : High Usage Alarm Sample Type Index : 0 0 0 0 0 0 0 0 Alarm Index : 12 Alarm Sample Type : 1 Alarm Raising Threshold : 90 Alarm Falling Threshold : 70 Alarm Startup Type : 1 Alarm Description : High Usage Alarm Sample Type Index : 0 0 0 0 0 0 0 0 MISCELLANEOUS CFG Console Timeout = 0 SSH Inactive Timeout = 300 Aux Port Status = Enabled Auditlog Status = Enabled Auditlogtomgr Status = Enabled Mgmt Autorecovery Status = Enabled Host Persistence Config 1 Artemis Threshold Config 1 Datapath attack detection monitor action = Ignored Pdf Cache = Enabled Flash Cache = Enabled Msas Cache = Enabled GAM Cache = Enabled SSH Password Authentication = Enabled Miscellaneous Flags 3145742 GAM auto update enable 0x1 GAM auto update time interval 90 TIS channel sleep interval 375 Sensor cert migrate action 2 Audit logging failure response : continue-inspection SCP CFG SCP IPv4 = 10.213.222.66 NTP CFG NTP Server1 IPv4 0.0.0.0 NTP Server1 IPv6 = :: POLL 6 AUTH DISABLE NTP Server2 IPv4 0.0.0.0 NTP Server2 IPv6 = :: POLL 6 AUTH DISABLE GTI Proxy CFG GTI Proxy Host = webgateway.itm.mcafee.com GTI Proxy Port = 9090 GTI Proxy Username = "" GTI Proxy Host Type = 2 GTI Private Cloud IP Address Type = IPv4 GTI Private Cloud IP Address = 0.0.0.0 GTI Private Cloud Connection Config = DISABLED GTI Private Cloud Certificate Status = Not present NTBA CFG IP Address type = 4 Server IPv4 = 0.0.0.0 Server Port = 8505 Connection config = 2 Channel Encryption = 1 TIS CFG IP Address type = 4 Server IPv4 = 0.0.0.0 Server Port = 8505 Connection config = 2 Channel Encryption = 1 TIS Profile/User Name = nsp TIS Profile/User Id = 2 IVX CFG IVX Primary Cluster Configuration: IVX Broker 1: IP Address type : IPv4 Server IPv4 : 10.213.2.35 Connection config : ENABLED IVX UserName : admin Certificate validation : DISABLED Authentication Status : Successful Proxy for IVX Communication : DISABLED IVX Broker 2: IP Address type : IPv4 Server IPv4 : 10.213.2.54 Connection config : ENABLED IVX UserName : admin Certificate validation : DISABLED Authentication Status : Successful Proxy for IVX Communication : DISABLED IVX Broker 3: IP Address type : IPv4 Server IPv4 : 10.213.2.209 Connection config : ENABLED IVX UserName : admin Certificate validation : DISABLED Authentication Status : Successful Proxy for IVX Communication : DISABLED IVX Broker 4: IP Address type : IPv4 Server IPv4 : 10.213.2.210 Connection config : ENABLED IVX UserName : admin Certificate validation : DISABLED Authentication Status : Successful Proxy for IVX Communication : DISABLED IVX Broker 5: IP Address type : IPv4 Server IPv4 : 10.213.2.214 Connection config : ENABLED IVX UserName : admin Certificate validation : DISABLED Authentication Status : Successful Proxy for IVX Communication : DISABLED RADIUS CFG Authentication Disabled Primary RADIUS Server IPv4 Address: 0.0.0.0 Primary RADIUS Server Authentication Port: 1812 Primary RADIUS Server Accounting Port: 1813 Primary RADIUS Server Connection Timeout: 6 Backup RADIUS Server IPv4 Address: 0.0.0.0 Backup RADIUS Server Authentication Port: 1812 Backup RADIUS Server Accounting Port: 1813 Backup RADIUS Server Connection Timeout: 6 INSIGHTS TELEMETRY CFG Status : Disabled TenantId : Primary Manager GUID : x-x-x-x Secondary Manager GUID :
Applicable to:
NS-series Sensors