+7 (916) 741 5495
support@netams.com

                         english   

 

service acl-server


acl-server . netflow, ulog libpcap , .. "", . "-" - . Cisco, PC- netflow, (/) data-source libpcap.

acl-server NeTAMS 3.3.0 (build 2710). Cisco RSH . :
  • () NeTAMS
USER HOST, IP-.

Cisco:
no ip rcmd domain-lookup
ip rcmd rsh-enable
ip rcmd remote-host netams 192.168.0.10  root enable
!
ip flow-export source FastEthernet0/1
ip flow-export version 5
ip flow-export destination 192.168.0.10 20001
!
access-list 100 dynamic NETAMS deny   ip any any
access-list 100 permit ip any any
!
interface FastEthernet0/1
 ip address 192.168.0.1 255.255.255.0
 ip access-group 100 in
!
IP- 192.168.0.1, fa0/1 , 192.168.0.10 UNIX- NeTAMS. netflow .
, RSH , . IP-, , "" , .

acl-server (access-lists) Cisco, ( ). 100, NETAMS. , DENY, ALLOW. , , - (IP-) . , "" .

acl-server:

hostname AAAA [NN]
IP- , . NN - TCP-, RSH ( 514).

direction { src|dst }
, (src dst) access-template IP- . access-group . , :

interface FastEthernet0/1
  ip access-group 100 in

"direction src" IP- 192.168.0.10 :
access-template 100 NETAMS host 192.168.0.10 any

, "direction dst" :
access-template 100 NETAMS host any 192.168.0.10

:
clear access-template 100 NETAMS ...


dynamic-name AAAA
( NETAMS)

acl-number NNN [cisco]
access-list ( 100), : 180. "cisco" , Cisco, - ( , ).

delay NNN
( ). 300 ( ).

set-uptime NNN
uptime , . NNN - , .

debug aclserver
aclserver ( main, acl-server).



acl-server, Cisco:
#NeTAMS version 3.3.0 (build 2710) compiled by root@localhost
#configuration built Sun Sep 18 04:15:20 2005
#begin
...
service acl-server 0
hostname 192.168.0.1
direction src
dynamic-name NETAMS
acl-number 100 cisco
delay 100

#end
debug aclserver:
|aclserver: acl server checking every 10 seconds
|aclserver: known: 1, remote uptime: CISCO2 6 5 9 15 4094100 
|aclserver: queue u=0F8AEA flag=0 sp_now=0
|aclserver: queue u=03A4C4 flag=0 sp_now=0
|aclserver: message ip=192.168.0.11 action=REMOVE
|aclserver: message ip=192.168.0.12 action=REMOVE
|aclserver: messages processed: 2, failed: 0
|aclserver: acl server checking every 10 seconds
|aclserver: known: 4094102, remote uptime: CISCO26 5 9 15 4094160 
|aclserver: messages processed: 0, failed: 0
|aclserver: acl server checking every 10 seconds
|aclserver: known: 4094162, remote uptime: CISCO26 5 9 15 4094160 
|aclserver: messages processed: 0, failed: 0
:
  • , ds-list.
  • "" , accessl-list - deny, - allow, .
  • linux, freebsd, solaris, acl-server .

[an error occurred while processing this directive]