JUNOSe 7.2.x Policy Management Configuration Guide
180 ! Logging Packet Mirroring Information
Logging Packet Mirroring Information
The JUNOSe software’s packet mirroring feature provides two secure methods of
capturing and displaying packet mirroring-related information. Both methods
ensure security by requiring the mirror-enable command to be enabled.
! Secure logging—Captures packet mirroring information to a local secure log on
the router.
! SNMP secure packet mirroring traps—Captures and reports packet mirroring
information to an external device; you can then use the privileged show mirror
trap and show snmp traps CLI commands to view secure trap configuration
information.
Using Secure Local Logs
By default, the JUNOSe software captures packet mirroring-related activity to a
secure local mirror log. No action is required on your part to enable or disable the
logging process; however, only authorized users can access the secure log.
The secure logging feature includes the following commands. The mirror-enable
command must be enabled to make the commands visible in the CLI.
! clear mirror log—Clears entries in the secure log
! show mirror log—Displays information in the secure log
clear mirror log
! Use to clear log entries related to packet mirroring.
! This command is visible only to authorized users—the mirror-enable
command must be enabled prior to using this command.
! Example
host1#clear mirror log
! There is no no version.
show mirror log
! Use to display failure messages and information for secure policies.
! This command and the output are visible only to authorized users—the
mirror-enable command must be enabled prior to using this command.
! All normal E-series system log messages are suppressed for packet
mirroring-related policy operations.
! Field descriptions
! Time—Day, date, and time of failure
! Mirror-ID—Unique identifier of the mirrored session
! Session-ID—Unique identifier of the user session