Cisco Cisco ASA 5580 Adaptive Security Appliance Leaflet

Page of 1214
 
3-89
思科 ASA 系列命令参考,命令
 
 3       show as-path-access-list  show auto-update 命令
  show asp drop
Syslogs:
    None
----------------------------------------------------------------
Name: invalid-vxlan-segment-id
Invalid VXLAN segment-id:
    This counter is incremented when the security appliance sees an invalid VXLAN 
segment-id attached to a flow.
Recommendation:
    No.
Syslogs:
    None.
----------------------------------------------------------------
Name: no-valid-nve-ifc
No valid NVE interface:
    This counter is incremented when the security appliance fails to identify the NVE 
interface of a VNI interface for a flow.
Recommendation:
    Verify that the nve is configured for all interfaces.
Syslogs:
    None.
----------------------------------------------------------------
Name: invalid-peer-nve
Invalid peer NVE:
    This counter is incremented when the security appliance fails to get IP and MAC 
address of a peer NVE for a flow.
Recommendation:
    Verify that peer nve is configured or learned for the nve.
Syslogs:
    None.
----------------------------------------------------------------
Name: vxlan-encap-error
Fail to encap with VXLAN:
    This counter is incremented when the security appliance fails to encapsulate a packet 
with VXLAN for a flow.
Recommendation:
    No.
Syslogs:
    None.
----------------------------------------------------------------
Name: sfr-request
SFR requested to terminate the flow:
    The SFR requested to terminate the flow.The actions bit 0 is set.
Recommendation:
    Review SFR policies for any such rule denying the flow.