Cisco Systems IPS 7.1 Home Security System User Manual


  Open as PDF
of 1042
 
17-31
Cisco Intrusion Prevention System CLI Sensor Configuration Guide for IPS 7.1
OL-19892-01
Chapter 17 Administrative Tasks for the Sensor
Displaying Statistics
To display a list of policies on the sensor, follow these steps:
Step 1 Log in to the CLI.
Step 2 Display the list of policies for anomaly detection.
sensor# list anomaly-detection-configurations
Anomaly Detection
Instance Size Virtual Sensor
ad0 255 vs0
temp 707 N/A
MyAD 255 N/A
ad1 141 vs1
sensor#
Step 3 Display the list of policies for event action rules.
sensor# list event-action-rules-configurations
Event Action Rules
Instance Size Virtual Sensor
rules0 112 vs0
rules1 141 vs1
sensor#
Step 4 Display the list of policies for signature definition.
sensor# list signature-definition-configurations
Signature Definition
Instance Size Virtual Sensor
sig0 336 vs0
sig1 141 vs1
sig2 141 N/A
sensor#
Displaying Statistics
Use the show statistics [analysis-engine | anomaly-detection | authentication | denied-attackers |
event-server | event-store | external-product-interface | global-correlation | host | logger |
network-access | notification | os-identification | sdee-server | transaction-server | virtual-sensor |
web-server] [clear] command to display statistics for each sensor application.
Use the show statistics {anomaly-detection | denied-attackers | os-identification | virtual-sensor}
[name | clear] command to display statistics for these components for all virtual sensors. If you provide
the virtual sensor name, the statistics for that virtual sensor only are displayed.
Note The clear option is not available for the analysis engine, anomaly detection, host, network access, or OS
identification applications.
For the IPS 4510 and IPS 4520, at the end of the command output, there are extra details for the Ethernet
controller statistics, such as the total number of packets received at the Ethernet controller, the total
number of packets dropped at the Ethernet controller under high load conditions, and the total packets
transmitted including the customer traffic packets and the internal keepalive packet count.