Cisco Cisco ASA 5510 Adaptive Security Appliance Leaflet

Page of 1264
 
9-22
Cisco ASA Series 명령 참조 , S 명령
  
9      show isakmp ipsec-over-tcp stats through show mroute 명령                
  show local-host
UDP flow count/limit = 0/unlimited
Xlate:
TCP PAT from inside:10.1.1.91/4984 to outside:192.150.49.1/1024 flags ri
Conn:
TCP outside:192.150.49.10/21 inside:10.1.1.91/4984 flags UI Interface outside: 1 active, 1 
maximum active, 0 denied
다음 예에서는 최소 4개의 UDP 연결이 있고 TCP 동시 연결 수가 1~10개인 모든 호스트를 보여 
줍니다.
ciscoasa# show local-host connection udp 4 tcp 1-10 
Interface mng: 0 active, 3 maximum active, 0 denied 
Interface INSIDE: 4 active, 5 maximum active, 0 denied 
local host: <10.1.1.11>, 
TCP flow count/limit = 1/unlimited TCP embryonic count to host = 0 TCP intercept 
watermark = unlimited UDP flow count/limit = 4/unlimited 
Xlate: 
Global 192.168.1.24 Local 10.1.1.11 Conn: UDP out 192.168.1.10:80 in 
10.1.1.11:1730 idle 0:00:21 bytes 0 flags - UDP out 192.168.1.10:80 in 
10.1.1.11:1729 idle 0:00:22 bytes 0 flags - UDP out 192.168.1.10:80 in 
10.1.1.11:1728 idle 0:00:23 bytes 0 flags - UDP out 192.168.1.10:80 in 
10.1.1.11:1727 idle 0:00:24 bytes 0 flags - TCP out 192.168.1.10:22 in 
10.1.1.11:27337 idle 0:01:55 bytes 2641 flags UIO Interface OUTSIDE: 3 active, 5 
maximum active, 0 denied 
다음 예에서는 brief 옵션을 사용하여 로컬 호스트 주소 및 연결 카운터를 보여 줍니다.
ciscoasa# show local-host connection udp 2 
Interface mng: 0 active, 3 maximum active, 0 denied 
Interface INSIDE: 4 active, 5 maximum active, 0 denied 
local host: <10.1.1.11>, 
TCP flow count/limit = 1/unlimited 
TCP embryonic count to host = 0 
TCP intercept watermark = unlimited UDP flow count/limit = 4/unlimited 
Interface OUTSIDE: 3 active, 5 maximum active, 0 denied 
다음 예에서는 brief 및 connection 옵션을 사용할 때의 출력을 보여 줍니다.
ciscoasa# show local-host brief 
Interface inside: 1 active, 1 maximum active, 0 denied
Interface outside: 1 active, 1 maximum active, 0 denied
Interface mgmt: 5 active, 6 maximum active, 0 denied
ciscoasa# show local-host connection  
Interface inside: 1 active, 1 maximum active, 0 denied
Interface outside: 1 active, 1 maximum active, 0 denied
Interface mgmt: 5 active, 6 maximum active, 0 denied
관련 명령
명령
설명
clear local-host
show local-host
 명령에서 표시하는 로컬 호스트에서 네트워크 연결을 해
제합니다. 
nat
네트워크를 전역 IP 주소 풀에 연결합니다.