show logging debug analyse statistics
- brief
- Analyzes the current boot logs on the active unit and provides a brief summary of key statistics.
- module
- Displays the logs of a specified module or list of modules (separated by commas). Enter all to include all modules.
- sub-module
- Displays the logs of a specified sub-module or list of sub-modules (separated by commas) belonging to the module. Enter all if multiple modules are specified. If only a single module is specified, then specify a single sub-module or list of sub-modules (separated by commas) belonging to the module.
- severity
- Specifies the severity level or list of severity levels (separated by commas) by which logs are displayed. Enter all to include all severity levels.
Privileged EXEC mode
Before retrieving logs, configure the logmgr fetch command to
collect and display a concise summary of log analysis from the specified remote
unit.
The show logging debug analyse
statistics command displays the following information:
| Output field | Description |
|---|---|
| Log-string | The string of each log entry. |
| Repeat Count | The number of repeated log entries. |
| First Occurence | Indicates the initial timestamp associated with each recurring log entry. |
| Last Occurence | Indicates the last recorded timestamp for each repeated log entry. |
The show logging debug analyse
statistics brief command displays the following information:
| Output field | Description |
|---|---|
| Module | Name of the module. |
| Submodule | Name of the sub-module. |
| Repeat Logs Count | Number of the repeated log. |
The following example displays a detailed summary of the log analysis.
device# show log debug analyse statistics security all all == Repetitive Logs for "security" module "security_sub" submodule == 1. Log-string: " ddos_attack:ddos_ts_walk_port_table: break" Repeat Count: 2 First Occurrence: Jun 23 21:05:54:689804 Last Occurrence: Jun 23 21:05:54:919518 2. Log-string: " ddos_attack:ddos_ts_walk_port_table: distribute request " Repeat Count: 2 First Occurrence: Jun 23 21:05:54:689302 Last Occurrence: Jun 23 21:05:54:916485 3. Log-string: " ddos_attack:ddos_tuplespace_walk_callback: out_is_walk_started = 1 out_last_walked_portid = 65535" Repeat Count: 4 First Occurrence: Jun 23 21:05:54:689913 Last Occurrence: Jun 23 21:05:55:281086 4. Log-string: " ddos_attack:ddos_ts_walk_port_table: else curr_portid = 65535" Repeat Count: 2 First Occurrence: Jun 23 21:05:55:042279 Last Occurrence: Jun 23 21:05:55:281008 5. Log-string: " ddos_attack:ddos_ts_walk_port_table: get global config" Repeat Count: 2 First Occurrence: Jun 23 21:05:54:689206 Last Occurrence: Jun 23 21:05:54:916406 6. Log-string: " ddos_attack:ddos_ts_walk_port_table: rate_limit = 0 L4_filters.over_mac_multicast = 0 L4_filters.syn_fin = 0 L4_filters.syn_rst =0 L4_filters.zero_flags =0 L4_filters.fin_urg_psh =0 L4_filters.port_zero = 0 L4_filters.tcp_all = 0 L4_filters.icmp_fra" Repeat Count: 2 First Occurrence: Jun 23 21:05:54:689264 Last Occurrence: Jun 23 21:05:54:916449 == Repetitive Logs for "security" module "dhcpsnoop" submodule == 1. Log-string: " config:ssrf_lib_event_handler:Recvd event:128 src app=93 dest app:8a" Repeat Count: 3 First Occurrence: Jun 23 21:05:52:120815 Last Occurrence: Jun 23 21:07:40:916285 2. Log-string: " config:ssrf_lib_event_handler:Recvd event:2 src app=13 dest app:b" Repeat Count: 6 First Occurrence: Jun 23 21:05:54:076479 Last Occurrence: Jun 23 21:06:00:407485 3. Log-string: " config:ssrf_lib_event_handler:Recvd event:128 src app=13 dest app:87" Repeat Count: 4 First Occurrence: Jun 23 21:05:53:309100 Last Occurrence: Jun 24 21:14:13:369173 4. Log-string: " config:ssrf_lib_event_handler:167 ipmacbinding task can ignore this scp event. As SSRF task directly sends itc on to this function." Repeat Count: 3 First Occurrence: Jun 23 21:05:53:314607 Last Occurrence: Jun 23 21:07:40:944645 5. Log-string: " config:ssrf_lib_event_handler:Recvd event:2 src app=13 dest app:87" Repeat Count: 7 First Occurrence: Jun 23 21:05:53:304084 Last Occurrence: Jun 23 21:06:00:487223 6. Log-string: " config:ssrf_lib_event_handler:Recvd event:128 src app=13 dest app:8b" Repeat Count: 4 First Occurrence: Jun 23 21:05:53:311969 Last Occurrence: Jun 23 21:07:52:331528 7. Log-string: " config:ssrf_lib_event_handler:Recvd event:128 src app=13 dest app:b" Repeat Count: 3 First Occurrence: Jun 23 21:05:53:310690 Last Occurrence: Jun 23 21:07:40:922400 8. Log-string: " config:ssrf_lib_event_handler:Recvd event:128 src app=13 dest app:8a" Repeat Count: 3 First Occurrence: Jun 23 21:05:53:314503 Last Occurrence: Jun 23 21:07:40:944515 ......
device# show log debug analyse statistics brief all all all +-----------------+---------------------------+--------------------+ | Unit 2 | +-----------------+---------------------------+--------------------+ | Module | Submodule | Repeat Logs Count | +-----------------+---------------------------+--------------------+ | platform | link | 1 | | platform | plm | 109 | | platform | sil | 5 | | platform | hmond | 7 | | platform | dom | 10 | | platform | tpm | 1 | | infra | stacking | 4 | | infra | cfg_sync_lib | 1 | | infra | qos | 7 | | infra | logmgr_proc | 3 | | infra | conf_archive | 1 | | infra | capm | 32 | | infra | ssave | 3 | | infra | os-pkt-intf | 11 | | infra | file-mgr | 41 | | infra | dnld-mgr | 42 | | infra | port_profile | 6 | | l2 | fdb | 2 | | l3 | ippm_debug_logs | 2 | | l3 | watcher_debug_logs | 2 | | security | security_sub | 6 | | security | dhcpsnoop | 11 | | management | nms_sub | 3 | | management | clish | 9 | | management | cli_dict | 10 | | management | clam | 4 | | management | dhcpv4_client | 2 | | management | manager | 1 | | management | plugin | 15 | | management | aaa | 2 | | management | snmpd_traps | 1 | | management | cfg_par | 2 | | management | fi_syslog | 4 | | management | sshd | 5 | | management | console | 1 | | management | ntp | 2 | | management | license | 1 | | management | ssl_svc | 5 | | management | rmonagentd | 3 | | management | mgmt | 2 | | management | dhcpv6_client | 1 | | fi_debug | debug_logs | 10 | +-----------------+---------------------------+--------------------+
The following example displays a
brief summary of log analysis from all remote units after configuring the
logmgr
fetch command.
device# logmgr fetch all all all all <---output omitted--->
device# show log debug analyse statistics brief all all all all +-----------------+---------------------------+--------------------+ | Unit 1 | +-----------------+---------------------------+--------------------+ | Module | Submodule | Repeat Logs Count | +-----------------+---------------------------+--------------------+ | platform | plm | 109 | | platform | sil | 5 | | platform | hmond | 27 | | platform | dom | 3 | | infra | stacking | 6 | | infra | qos | 18 | | infra | capm | 32 | | infra | os-pkt-intf | 195 | | infra | file-mgr | 46 | | infra | port_profile | 6 | | infra | mirror | 5 | | l2 | vlan | 1 | | l2 | fdb | 2 | | security | dhcpsnoop | 7 | | security | admtm | 1 | | management | cli_dict | 7 | | management | clam | 5 | | management | dhcpv4_client | 4 | | management | plugin | 24 | | management | snmpd_traps | 1 | | management | cfg_par | 22 | | management | fi_syslog | 3 | | management | console | 1 | | management | ntp | 1 | | management | license | 2 | | management | ssl_svc | 5 | | management | mgmt | 2 | | fi_debug | debug_logs | 9 | +-----------------+---------------------------+--------------------+ +-----------------+---------------------------+--------------------+ | Unit 2 | +-----------------+---------------------------+--------------------+ | Module | Submodule | Repeat Logs Count | +-----------------+---------------------------+--------------------+ | platform | link | 1 | | platform | plm | 109 | | platform | sil | 5 | | platform | hmond | 7 | | platform | dom | 10 | | platform | tpm | 1 | | infra | stacking | 4 | | infra | cfg_sync_lib | 1 | | infra | qos | 7 | | infra | logmgr_proc | 3 | | infra | conf_archive | 1 | | infra | capm | 32 | | infra | ssave | 3 | | infra | os-pkt-intf | 11 | | infra | file-mgr | 41 | | infra | dnld-mgr | 42 | | infra | port_profile | 6 | | l2 | fdb | 2 | | l3 | ippm_debug_logs | 2 | | l3 | watcher_debug_logs | 2 | | security | security_sub | 6 | | security | dhcpsnoop | 11 | | management | nms_sub | 3 | | management | clish | 9 | | management | cli_dict | 10 | | management | clam | 4 | | management | dhcpv4_client | 2 | | management | manager | 1 | | management | plugin | 15 | | management | aaa | 2 | | management | snmpd_traps | 1 | | management | cfg_par | 2 | | management | fi_syslog | 4 | | management | sshd | 5 | | management | console | 1 | | management | ntp | 2 | | management | license | 1 | | management | ssl_svc | 5 | | management | rmonagentd | 3 | | management | mgmt | 2 | | management | dhcpv6_client | 1 | | fi_debug | debug_logs | 10 | +-----------------+---------------------------+--------------------+
| Release version | Command history |
|---|---|
| 10.0.10h_cd1 | This command was introduced. |