- show cts
- show cts credentials
- show cts environment-data
- show cts interface
- show cts pacs
- show cts role-based access-list
- show cts role-based counters
- show cts role-based enable
- show cts role-based policy
- show cts role-based sgt-map
- show cts sxp
- show cts sxp connection
- show running-config cts
- show running-config dot1x
- show startup-config cts
- show startup-config dot1x
Show Commands
This chapter describes the Cisco NX-OS TrustSec show commands.
show cts
To display the global Cisco TrustSec configuration, use the show cts command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec global configuration:
Related Commands
|
|
---|---|
show cts credentials
To display the Cisco TrustSec device credentials configuration, use the show cts credentials command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec credentials configuration:
Related Commands
|
|
---|---|
show cts environment-data
To display the global Cisco TrustSec environment data, use the show cts environment-data command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
The Cisco NX-OS device downloads the Cisco TrustSec environment data from the ACS after you have configured the Cisco TrustSec credentials for the device and configured authentication, authorization, and accounting (AAA).
Examples
This example shows how to display the Cisco TrustSec environment data:
Related Commands
|
|
---|---|
show cts interface
To display the Cisco TrustSec information for interfaces, use the show cts interface command.
show cts interface { all | ethernet slot /[QSFP-module/] port | vethernet veth-num }
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
You must enable the Cisco Virtual Machine on the switch by using the feature-set virtualization command to see the vethernet keyword.
Examples
This example shows how to display the Cisco TrustSec configuration for a specific interface:
This example shows how to display the Cisco TrustSec configuration for all interfaces:
Related Commands
|
|
---|---|
show cts pacs
To display the Cisco TrustSec protect access credentials (PACs) provisioned by EAP-FAST, use the show cts pacs command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec global configuration:
Related Commands
|
|
---|---|
show cts role-based access-list
To display the global Cisco TrustSec security group access control list (SGACL) configuration, use the show cts role-based access-list command.
show cts role-based access-list [ list-name ]
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec SGACL configuration:
Related Commands
|
|
---|---|
show cts role-based counters
To display the configuration status of role-based access control list (RBACL) statistics and list the statistics for all RBACL policies, use the show cts role-based counters command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
To use this command, you must enable the Cisco TrustSec feature using the feature cts command. You must also enable Cisco TrustSec counters using the cts role-based counters enable command.
Examples
This example shows how to display the configuration status of RBACL statistics:
Related Commands
|
|
---|---|
Clears the RBACL statistics so that all counters are reset to 0. |
|
show cts role-based enable
To display the Cisco TrustSec security group access control list (SGACL) enable status for VLANs, use the show cts role-based enable command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec SGACL enforcement status:
Related Commands
|
|
---|---|
Enables role-based access control list (RBACL) enforcement on VLANs. |
show cts role-based policy
To display the global Cisco TrustSec security group access control list (SGACL) policies, use the show cts role-based policy command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec SGACL policies:
Related Commands
|
|
---|---|
show cts role-based sgt-map
To display the global Cisco TrustSec Security Group Tag (SGT) mapping configuration, use the show cts role-based sgt-map command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec SGT mapping configuration:
Related Commands
|
|
---|---|
show cts sxp
To display the Cisco TrustSec Security Group Tag (SGT) Exchange Protocol (SXP) configuration, use the show cts sxp command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec SXP configuration:
Related Commands
|
|
---|---|
show cts sxp connection
To display the Cisco TrustSec Security Group Tag (SGT) Exchange Protocol (SXP) connections information, use the show cts sxp connection command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec Security Group Tag (SGT) Exchange Protocol (SXP) connections information:
Related Commands
|
|
---|---|
show running-config cts
To display the Cisco TrustSec configuration in the running configuration, use the show running-config cts command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec configuration in the running configuration:
Related Commands
|
|
---|---|
Copies the running configuration information to the startup configuration file. |
|
show running-config dot1x
To display 802.1X configuration information in the running configuration, use the show running-config dot1x command.
show running-config dotx1 [ all ]
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
You must enable the 802.1X feature by using the feature dot1x command before using this command.
Examples
This example shows how to display the configured 802.1X information in the running configuration:
Related Commands
|
|
---|---|
Copies the running system configuration information to the startup configuration file. |
|
show startup-config cts
To display the Cisco TrustSec configuration information in the startup configuration, use the show startup-config cts command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
Examples
This example shows how to display the Cisco TrustSec information in the startup configuration:
Related Commands
|
|
---|---|
Copies the running configuration information to the startup configuration file. |
show startup-config dot1x
To display 802.1X configuration information in the startup configuration, use the show startup-config dot1x command.
Syntax Description
Command Default
Command Modes
Command History
|
|
Usage Guidelines
You must enable the 802.1X feature by using the feature dot1x command before using this command.
Examples
This example shows how to display the 802.1X information in the startup configuration:
Related Commands
|
|
---|---|
Copies the running configuration information to the startup configuration file. |