Table Of Contents
clear console-output through clear xlate Commands
clear console-output
clear counters
clear crashinfo
clear crypto accelerator statistics
clear crypto ca crls
clear [crypto] ipsec sa
clear crypto protocol statistics
clear dhcpd
clear dhcprelay statistics
clear dns-hosts cache
clear failover statistics
clear fragment
clear gc
clear igmp counters
clear igmp group
clear igmp traffic
clear interface
clear ip audit count
clear ip verify statistics
clear ipsec sa
clear ipv6 access-list counters
clear ipv6 mld traffic
clear ipv6 neighbors
clear ipv6 traffic
clear isakmp sa
clear local-host
clear logging asdm
clear logging buffer
clear mac-address-table
clear memory delayed-free-poisoner
clear memory profile
clear mfib counters
clear module recover
clear ospf
clear pc
clear pclu
clear pim counters
clear pim reset
clear pim topology
clear priority-queue statistics
clear resource usage
clear route
clear service-policy
clear service-policy inspect gtp
clear service-policy inspect radius-accounting
clear shun
clear startup-config errors
clear sunrpc-server active
clear traffic
clear uauth
clear url-block block statistics
clear url-cache statistics
clear url-server
clear wccp
clear xlate
clear console-output through clear xlate Commands
clear console-output
To remove the currently captured console output, use the clear console-output command in privileged EXEC mode.
clear console-output
Syntax Description
This command has no arguments or keywords.
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
•
|
•
|
•
|
•
|
Command History
Release
|
Modification
|
Preexisting
|
This command was preexisting.
|
Examples
The following example shows how to remove the currently captured console output:
hostname# clear console-output
Related Commands
Command
|
Description
|
console timeout
|
Sets the idle timeout for a console connection to the security appliance.
|
show console-output
|
Displays the captured console output.
|
show running-config console timeout
|
Displays the idle timeout for a console connection to the security appliance.
|
clear counters
To clear the protocol stack counters, use the clear counters command in global configuration mode.
clear counters [all | context context-name | summary | top N ] [detail] [protocol protocol_name
[:counter_name]] [ threshold N]
Syntax Description
all
|
(Optional) Clears all filter details.
|
context context-name
|
(Optional) Specifies the context name.
|
:counter_name
|
(Optional) Specifies a counter by name.
|
detail
|
(Optional) Clears detailed counters information.
|
protocol protocol_name
|
(Optional) Clears the counters for the specified protocol.
|
summary
|
(Optional) Clears the counter summary.
|
threshold N
|
(Optional) Clears the counters at or above the specified threshold. The range is 1 through 4294967295.
|
top N
|
(Optional) Clears the counters at or above the specified threshold. The range is 1 through 4294967295.
|
Defaults
clear counters summary detail
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Global configuration
|
•
|
•
|
•
|
•
|
•
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
This example shows how to clear the protocol stack counters:
hostname(config)# clear counters
Related Commands
Command
|
Description
|
show counters
|
Displays the protocol stack counters.
|
clear crashinfo
To delete the contents of the crash file in Flash memory, enter the clear crashinfo command in privileged EXEC mode.
clear crashinfo
Syntax Description
This command has no arguments or keywords.
Defaults
No default behaviors or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
•
|
•
|
—
|
•
|
Command History
Release
|
Modification
|
Preexisting
|
This command was preexisting.
|
Usage Guidelines
This command has no usage guidelines.
Examples
The following command shows how to delete the crash file:
hostname# clear crashinfo
Related Commands
crashinfo force
|
Forces a crash of the security appliance.
|
crashinfo test
|
Tests the ability of the security appliance to save crash information to a file in Flash memory.
|
show crashinfo
|
Displays the contents of the crash file stored in Flash memory.
|
clear crypto accelerator statistics
To clear the the global and accelerator-specific statistics from the crypto accelerator MIB, use the clear crypto accelerator statistics command in global configuration and privileged EXEC modes.
clear crypto accelerator statistics
Syntax Description
This command has no keywords or variables.
Defaults
No default behavior or values.
Command Modes
The following table shows the mode in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Global configuration
|
•
|
•
|
•
|
—
|
—
|
Privileged EXEC
|
•
|
•
|
•
|
—
|
—
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
The following example entered in global configuration mode, displays crypto accelerator statistics:
hostname(config)# clear crypto accelerator statistics
Related Commands
Command
|
Description
|
clear crypto protocol statistics
|
Clears the protocol-specific statistics in the crypto accelerator MIB.
|
show crypto accelerator statistics
|
Displays the global and accelerator-specific statistics in the crypto accelerator MIB.
|
show crypto protocol statistics
|
Displays the protocol-specific statistics from the crypto accelerator MIB.
|
clear crypto ca crls
To remove the CRL cache of all CRLs associated with a specified trustpoint or to remove the CRL cache of all CRLs, use the clear crypto ca crls command in global configuration.
clear crypto ca crls [trustpointname]
Syntax Description
trustpointname
|
(Optional) The name of a trustpoint. If you do not specify a name, this command clears all CRLs cached on the system.
|
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Global configuration
|
•
|
•
|
•
|
•
|
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
The following example issued in global configuration mode, removes all of the CRL cache from all CRLs from the security appliance:
hostname(config)# clear crypto ca crls
Related Commands
Command
|
Description
|
crypto ca crl request
|
Downloads the CRL based on the CRL configuration of the trustpoint.
|
show crypto ca crls
|
Displays all cached CRLs or CRLs cached for a specified trustpoint.
|
clear [crypto] ipsec sa
To remove the IPSec SA counters, entries, crypto maps or peer connections, use the clear [crypto] ipsec sa command in global configuration mode. To clear all IPSec SAs, use this command without arguments.
clear [crypto] ipsec sa [counters | entry {hostname | IP address} {esp | ah} {SPI}| map {map name}
| peer {hostname | IP address}]
Be careful when using this command.
Syntax Description
ah
|
Authentication header.
|
counters
|
Clears all IPSec per SA statistics.
|
entry
|
Deletes the tunnel that matches the specified IP address/hostname, protocol and SPI value.
|
esp
|
Encryption security protocol.
|
hostname
|
Identified a hostname assigned to an IP address.
|
IP address
|
Identifies an IP address.
|
map
|
Deletes all tunnels associated with the specified crypto map as identified by map name.
|
map name
|
An alphanumeric string that identifies a crypto map. Max 64 characters.
|
peer
|
Deletes all IPSec SAs to a peer as identified by the specified hostname or IP address.
|
SPI
|
Identifies the Security Parameters Index (a hexidecimal number).
|
| |
|
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Global configuration
|
•
|
—
|
•
|
—
|
—
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
The following example, issued in global configuration mode, removes all of the IPSec SAs from the security appliance:
hostname(config)# clear ipsec sa
The next example, issued in global configuration mode, deletes SAs with a peer IP address of 10.86.1.1.
hostname(config)# clear ipsec peer 10.86.1.1
hostname(config)#
Related Commands
Command
|
Description
|
clear configure crypto map
|
Clears all or specified crypto maps from the configuration.
|
clear configure isakmp
|
Clears all ISAKMP policy configuration.
|
show ipsec sa
|
Displays information about IPSec SAs, including counters, entry, map name, peer IP address and hostname.
|
show running-config crypto
|
Displays the entire crypto configuration, including IPSec, crypto maps, dynamic crypto maps, and ISAKMP.
|
clear crypto protocol statistics
To clear the protocol-specific statistics in the crypto accelerator MIB, use the clear crypto protocol statistics command in global configuration or privileged EXEC modes.
clear crypto protocol statistics protocol
Syntax Description
protocol
|
Specifies the name of the protocol for which you want to clear statistics. Protocol choices are as follows:
ikev1—Internet Key Exchange version 1.
ipsec—IP Security Phase-2 protocols.
ssl—Secure Socket Layer.
other—Reserved for new protocols.
all—All protocols currently supported.
In online help for this command, other protocols may appear that will be supported in future releases.
|
Defaults
No default behavior or values.
Command Modes
The following table shows the mode in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Global configuration
|
•
|
•
|
•
|
—
|
—
|
Privileged EXEC
|
•
|
•
|
•
|
—
|
—
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
The following example entered in global configuration mode, clears all crypto accelerator statistics:
hostname(config)# clear crypto protocol statistics all
Related Commands
Command
|
Description
|
clear crypto accelerator statistics
|
Clears the global and accelerator-specific statistics in the crypto accelerator MIB.
|
show crypto accelerator statistics
|
Displays the global and accelerator-specific statistics from the crypto accelerator MIB.
|
show crypto protocol statistics
|
Displays the protocol-specific statistics in the crypto accelerator MIB.
|
clear dhcpd
To clear the DHCP server bindings and statistics, use the clear dhcp command.
clear dhcpd {binding [IP_address] | statistics}
Syntax Description
binding
|
Clears all the client address bindings.
|
IP_address
|
Clears the binding for the specified IP address.
|
statistics
|
Clears statistical information counters.
|
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Global configuration
|
•
|
•
|
•
|
•
|
—
|
Command History
Release
|
Modification
|
Preexisting
|
This command was preexisting.
|
Usage Guidelines
If you include the optional IP address in the clear dhcpd binding command, only the binding for that IP address is cleared.
To clear all of the DHCP server commands, use the clear configure dhcpd command.
Examples
The following example shows how to clear the dhcpd statistics:
hostname(config)# clear dhcpd statistics
Related Commands
Command
|
Description
|
clear configure dhcpd
|
Removes all DHCP server settings.
|
show dhcpd
|
Displays DHCP binding, statistic, or state information.
|
clear dhcprelay statistics
To clear the DHCP relay statistic counters, use the clear dhcprelay statistics command in privileged EXEC mode.
clear dhcprelay statistics
Syntax Description
This command has no arguments or keywords.
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
—
|
•
|
•
|
—
|
Command History
Release
|
Modification
|
Preexisting
|
This command was preexisting.
|
Usage Guidelines
The clear dhcprelay statistics command only clears the DHCP relay statistic counters. To clear the entire DHCP relay configuration, use the clear configure dhcprelay command.
Examples
The following example shows how to clear the DHCP relay statistics:
hostname# clear dhcprelay statistics
Related Commands
Command
|
Description
|
clear configure dhcprelay
|
Removes all DHCP relay agent settings.
|
debug dhcprelay
|
Displays debug information for the DHCP relay agent.
|
show dhcprelay statistics
|
Displays DHCP relay agent statistic information.
|
show running-config dhcprelay
|
Displays the current DHCP relay agent configuration.
|
clear dns-hosts cache
To clear the DNS cache, use the clear dns-hosts cache command in privileged EXEC mode. This command does not clear static entries you added with the name command.
clear dns-hosts cache
Syntax Description
This command has no arguments or keywords.
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
•
|
•
|
•
|
—
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
The following example clears the DNS cache:
hostname# clear dns-hosts cache
Related Commands
Command
|
Description
|
dns domain-lookup
|
Enables the security appliance to perform a name lookup.
|
dns name-server
|
Configures a DNS server address.
|
dns retries
|
Specifies the number of times to retry the list of DNS servers when the security appliance does not receive a response.
|
dns timeout
|
Specifies the amount of time to wait before trying the next DNS server.
|
show dns-hosts
|
Shows the DNS cache.
|
clear failover statistics
To clear the failover statistic counters, use the clear failover statistics command in privileged EXEC mode.
clear failover statistics
Syntax Description
This command has no arguments or keywords.
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
•
|
•
|
•
|
•
|
Command History
Release
|
Modification
|
Preexisting
|
This command was introduced.
|
Usage Guidelines
This command clears the statistics displayed with the show failover statistics command and the counters in the Stateful Failover Logical Update Statistics section of the show failover command output. To remove the failover configuration, use the clear configure failover command.
Examples
The following example shows how to clear the failover statistic counters:
hostname# clear failover statistics
Related Commands
Command
|
Description
|
debug fover
|
Displays failover debug information.
|
show failover
|
Displays information about the failover configuration and operational statistics.
|
clear fragment
To clear the operational data of the IP fragment reassembly module, enter the clear fragment command in privileged EXEC mode. This command clears either the currently queued fragments that are waiting for reassembly (if the queue keyword is entered) or clears all IP fragment reassembly statistics (if the statistics keyword is entered). The statistics are the counters, which tell how many fragments chains were successfully reassembled, how many chains failed to be reassembled, and how many times the maximum size was crossed resulting in overflow of the buffer.
clear fragment {queue | statistics} [interface]
Syntax Description
interface
|
(Optional) Specifies the security appliance interface.
|
queue
|
Clears the IP fragment reassembly queue.
|
statistics
|
Clears the IP fragment reassembly statistics.
|
Defaults
If an interface is not specified, the command applies to all interfaces.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
•
|
•
|
•
|
—
|
Command History
Release
|
Modification
|
7.0(1)
|
The command was separated into two commands, clear fragment and clear configure fragment, to separate clearing of the configuration data from the operational data.
|
Examples
This example shows how to clear the operational data of the IP fragment reassembly module:
hostname# clear fragment queue
Related Commands
Command
|
Description
|
clear configure fragment
|
Clears the IP fragment reassembly configuration and resets the defaults.
|
fragment
|
Provides additional management of packet fragmentation and improves compatibility with NFS.
|
show fragment
|
Displays the operational data of the IP fragment reassembly module.
|
show running-config fragment
|
Displays the IP fragment reassembly configuration.
|
clear gc
To remove the garbage collection process statistics, use the clear gc command in privileged EXEC mode.
clear gc
Syntax Description
This command has no arguments or keywords.
Defaults
No default behaviors or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
•
|
•
|
—
|
•
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
The following example shows how to remove the garbage collection process statistics:
Related Commands
Command
|
Description
|
show gc
|
Displays the garbage collection process statistics.
|
clear igmp counters
To clear all IGMP counters, use the clear igmp counters command in privileged EXEC mode.
clear igmp counters [if_name]
Syntax Description
if_name
|
The interface name, as specified by the nameif command. Including an interface name with this command causes only the counters for the specified interface to be cleared.
|
This command has no arguments or keywords.
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
—
|
•
|
—
|
—
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
The following example clears the IGMP statistical counters:
hostname# clear igmp counters
Related Commands
Command
|
Description
|
clear igmp group
|
Clears discovered groups from the IGMP group cache.
|
clear igmp traffic
|
Clears the IGMP traffic counters.
|
clear igmp group
To clear discovered groups from the IGMP group cache, use the clear igmp command in privileged EXEC mode.
clear igmp group [group | interface name]
Syntax Description
group
|
IGMP group address. Specifying a particular group removes the specified group from the cache.
|
interface name
|
Interface name, as specified by the namif command. When specified, all groups associated with the interface are removed.
|
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
—
|
•
|
—
|
—
|
Command History
Release
|
Modification
|
Preexisting
|
This command was preexisting.
|
Usage Guidelines
If you do not specify a group or an interface, all groups are cleared from all interfaces. If you specify a group, only the entries for that group are cleared. If you specify an interface, then all groups on that interface are cleared. If you specify both a group and an interface, only the specified groups on the specified interface are cleared.
This command does not clear statically configured groups.
Examples
The following example shows how to clear all discovered IGMP groups from the IGMP group cache:
hostname# clear igmp group
Related Commands
Command
|
Description
|
clear igmp counters
|
Clears all IGMP counters.
|
clear igmp traffic
|
Clears the IGMP traffic counters.
|
clear igmp traffic
To clear the IGMP traffic counters, use the clear igmp traffic command in privileged EXEC mode.
clear igmp traffic
Syntax Description
This command has no arguments or keywords.
Defaults
No default behavior or values.
Command Modes
The following table shows the modes in which you can enter the command:
Command Mode
|
Firewall Mode
|
Security Context
|
Routed
|
Transparent
|
Single
|
Multiple
|
Context
|
System
|
Privileged EXEC
|
•
|
—
|
•
|
—
|
—
|
Command History
Release
|
Modification
|
7.0(1)
|
This command was introduced.
|
Examples
The following example clears the IGMP statistical traffic counters:
hostname# clear igmp traffic
Related Commands
Command
|
Description
|
clear igmp group
|
Clears discovered groups from the IGMP group cache.
|
clear igmp counters
|
Clears all IGMP counters.
|
clear interface
To clear interface statistics, use the clear interface command in privileged EXEC mode.
clear interface [physical_interface[.subinterface] | mapped_name | interface_name]
Syntax Description
interface_name
|
(Optional) Identifies the interface name set with the nameif command.
|
mapped_name
|
(Optional) In multiple context mode, identifies the mapped name if it was assigned using the allocate-interface command.
|
physical_interface
|