JUNIPER 路由器常用维护命令讲解
Juniper DX常用维护命令
Juniper DX常用维护命令1.使用CONFIGURE命令完成对ETH0的配置2.使用HTTP://IP地址:8090登陆设备;admin / admin3.通过WEB界面来对EHT2进行配置:admin---network---4.在SHARE SETTING里可设置DEFAULT GA TEW AY,DNSNAME,DNSIP 5.在services里可配置负载均衡和加速:Cluster:对HTTP和HTTPS来实现负载均衡和加速Forward:对非HTTP协议实现SSL终结和负载均衡SLB:对TCP/UDP协议实现负载均衡Redirector:实现重定向服务6.点击NEW CLUSTER7.ADMIN-----FAILOVER,配置FAILOVER服务在配置failover服务时,要注意以下三个关键参数:1.Failover: Enabled 启用failover服务2.Discovery Interface: ether2 选择侦听对端DX状态的物理端口3.Static Peers: 配置对端DX地址以及监听对端DX的端口IP Address 10.126.1.27Listen Port 9500List file 显示证书文件名SHOW FILE 《文件名》显示证书文件的内容CAPTURE FILE 《文件名》创建证书文件Show boot显示OSSet boot <1或2>选择使用哪个OS启动Install (机器上有UPGRADE FILE 的相应文件,并开启FTTP服务)常用命令:Show capacity 1 每几秒一次,显示CPU,MEM的利用率Show netstat 1看流量ERR不能出现数字,有的话就是接口的匹配问题Show ether 2看断口的MEDIA是什么?Set ether 0 + tab或问号media (数字)Show server status看状态没有FAILOVER的情况,可能FAILOVER与异常1.Show server status2.Tsdump 向TFTP送数据3.Show system debug4.Show failover stats; show activen stats5.Set failover disable6.Set activen disable7.Set server down8.Write9.Set failover enable10.Set activen enable11.Set server upCluster 如果起用STICKY,那么在做ACTIVEN的时候要ENABLE STICKYSYNC同步的时候:1.手工修改DX2上的FAILOVER参数2.先DISABLE FORCE MASTER(防止切换)3.增加FAILOVER PEER:IP OF ANOTHER DX4.SHOW SYNC GROUP (名字)5.SHOW ACTIVEN BLADETSDUMPtcpdumpApplication layer:Show cluster cisapp-http (stats –(http io)Show server stats (io http ssl )dx2% show cluster cisapp-http sticky clientip entriesThere are 3253 sticky entries, it may take a long time to display all the entries Are you sure you want to continue (y/n)? [n] yTotal entries: 3251Timeout IdleClient Sticky Target (sec) (sec)--------------------------------------------------------10.148.0.10 10.137.249.3 3660 90210.148.0.13 10.137.249.3 3660 244010.136.128.16 10.137.249.67 3660 310.148.0.18 10.137.249.62 3660 298010.148.0.19 10.137.249.63 3660 510.148.0.21 10.137.249.66 3660 242910.148.0.23 10.137.249.64 3660 710.148.0.29 10.137.249.5 3660 179810.148.0.31 10.137.249.66 3660 24010.148.0.32 10.137.249.67 3660 23910.148.0.34 10.137.249.6 3660 124610.148.0.38 10.137.249.5 3660 27510.148.0.39 10.137.249.63 3660 109610.148.0.40 10.137.249.64 3660 23810.148.0.41 10.137.249.65 3660 010.148.0.45 10.137.249.67 3660 57010.148.0.51 10.137.249.4 3660 710.148.0.53 10.137.249.5 3660 2310.148.0.59 10.137.249.63 3660 39710.148.0.63 10.137.249.68 3660 257310.148.0.74 10.137.249.6 3660 2610.148.0.82 10.137.249.5 3660 31010.148.0.92 10.137.249.4 3660 15610.148.0.99 10.137.249.64 3660 1010.147.128.104 10.137.249.6 3660 2810.147.128.108 10.137.249.3 3660 7510.137.128.134 10.137.249.63 3660 155110.147.129.147 10.137.249.65 3660 18110.147.129.155 10.137.249.5 3660 1210.147.129.159 10.137.249.68 3660 200810.147.129.177 10.137.249.4 3660 010.137.129.203 10.137.249.64 3660 58910.137.129.205 10.137.249.4 3660 229710.147.129.209 10.137.249.68 3660 172710.147.129.216 10.137.249.67 3660 237510.147.129.217 10.137.249.5 3660 192310.147.129.220 10.137.249.3 3660 241110.147.129.223 10.137.249.3 3660 16810.147.129.225 10.137.249.68 3660 108 10.147.129.227 10.137.249.6 3660 1923 10.147.129.228 10.137.249.62 3660 2219 10.147.129.232 10.137.249.63 3660 1756 10.147.129.233 10.137.249.66 3660 105 10.147.129.234 10.137.249.3 3660 6 10.147.129.235 10.137.249.66 3660 4 10.147.129.239 10.137.249.65 3660 931 10.147.129.241 10.137.249.62 3660 193 10.147.129.243 10.137.249.67 3660 125dx2% show server stats ioIO Statistics - server listenBytes In (Req from Clients) 23.84GBBytes Out (Resp to Clients) 149.97GBCurrent Client Connections 1.50KTotal Client Connections 6.08MRefused Client Connections 34Client IP Sticky To Dead Target 447Client IP Sticky To Deleted Target 54IO Statistics - server service allBytes In (Resp from Servers) 276.47GBBytes Out (Req to Servers) 26.41GBClient IP Sticky To Down Target Service 1.38KIO Statistics - server physical target allCurrent Active Server Conns 58Current Idle Server Conns 233Total Server Connections 33.55MTotal Server Connections Failures 380.65KConsecutive Connection Successes 19.58MConsecutive Connection Failures 334.57KTotal SSL Successes 0 Total SSL Failures 0Maximum Connection Limit Reached 0 Passed Connect Health Chks (Server OK) 2.67MFailed Connect Health Chks (Server Down) 64.68K Passed Request Health Chks (Server OK) 286.57KFailed Request Health Chks (Server Down) 40dx2% show cluster cisapp-http stats ioIO Statistics - cluster cisapp-http listenCurrent State UpBytes In (Req from Clients) 5.70GBBytes Out (Resp to Clients) 33.77GBCurrent Client Connections 1.21KTotal Client Connections 1.39MRefused Client Connections 0Client IP Sticky To Deleted Target 0Client IP Sticky To Dead Target 1IO Statistics - cluster cisapp-http service allBytes In (Resp from Servers) 64.56GBBytes Out (Req to Servers) 6.31GBClient IP Sticky To Down Target Service 0IO Statistics - cluster cisapp-http physical target allCurrent Active Server Conns 24Current Idle Server Conns 53Total Server Connections 24.27MTotal Server Connections Failures 185.45KConsecutive Connection Successes 17.80MConsecutive Connection Failures 167.49KTotal SSL Successes 0 Total SSL Failures 0Maximum Connection Limit Reached 0Passed Connect Health Chks (Server OK) 0Failed Connect Health Chks (Server Down) 29.28KPassed Request Health Chks (Server OK) 87.23KFailed Request Health Chks (Server Down) 0dx1% tcpdump -i ether2Byte counter will be refeshed after 16KB chunks are read.^Ctes processed: 884736Closing tcpdump...Done.Successfully wrote 'tcpdump.0802190435-67' (866KB)dx1% copy tcpdump tcpdump.0802190435-67 tftp://10.137.249.52/tcpdumptestnegotiated TFTP blocksize is 8192 bytes...Done. 887148 bytes transferred.dx1% show tcpdumpdx1% copy tcpdump tcpdump.0802190435-67 tftp://X.X.X.X/filenameAvailable files:tcpdump.0802190435-67 (866KB)Usage: show tcpdump [<tcpdump file>] [-s <keyfile>]dx1% show tcpdump tcpdump.0802190435-6719:04:25.875748 10.137.249.60.22 > 10.136.33.72.3758: P 4022673374:4022673394(20) ack 355801474 win 58400 (DF) [tos 0x10]19:04:25.993984 10.137.249.64.7028 > 10.137.249.60.45048: F 408258459:408258459(0) ack 2621470207 win 2044 <nop,nop,timestamp 1819819:04:25.994012 10.137.249.60.45048 > 10.137.249.64.7028: . ack 1 win 56967 <nop,nop,timestamp 903590 1819827395> (DF)19:04:25.994058 10.137.249.60.45048 > 10.137.249.64.7028: F 1:1(0) ack 1 win 56967 <nop,nop,timestamp 903590 1819827395> (DF)19:04:25.994106 10.137.249.60.45317 > 10.137.249.64.7028: S 1519898316:1519898316(0) win 57344 <mss 1460,nop,nop,sackOK,nop,wscale19:04:25.994233 10.137.249.64.7028 > 10.137.249.60.45048: . ack 2 win 2044 <nop,nop,timestamp 1819827395 903590> (DF)19:04:25.994238 10.137.249.64.7028 > 10.137.249.60.45317: S 463799572:463799572(0) ack 1519898317 win 5792 <mss 1460,sackOK,timesta19:04:25.994258 10.137.249.60.45317 > 10.137.249.64.7028: . ack 1 win 57344 <nop,nop,timestamp 903590 1819827395> (DF)19:04:25.994606 10.137.249.64.7028 > 10.137.249.60.45263: F 453024392:453024392(0) ack 516116623 win 1448 <nop,nop,timestamp 18198219:04:25.994616 10.137.249.60.45263 > 10.137.249.64.7028: . ack 1 win 57343 <nop,nop,timestamp 903590 1819827396> (DF)19:04:25.994650 10.137.249.60.45263 > 10.137.249.64.7028: F 1:1(0) ack 1 win 57343 <nop,nop,timestamp 903590 1819827396> (DF)19:04:25.994683 10.137.249.60.45318 > 10.137.249.64.7028: S 877407194:877407194(0) win 57344 <mss 1460,nop,nop,sackOK,nop,wscale 0,19:04:25.994732 10.137.249.64.7028 > 10.137.249.60.45262: F 447649295:447649295(0) ack 4009036855 win 1448 <nop,nop,timestamp 1819819:04:25.994736 10.137.249.64.7028 > 10.137.249.60.45263: . ack 2 win 1448 <nop,nop,timestamp 1819827396 903590> (DF)19:04:25.994746 10.137.249.60.45262 > 10.137.249.64.7028: . ack 1 win 57343 <nop,nop,timestamp 903590 1819827396> (DF)19:04:25.994766 10.137.249.60.45262 > 10.137.249.64.7028: F 1:1(0) ack 1 win 57343 <nop,nop,timestamp 903590 1819827396> (DF)19:04:25.994786 10.137.249.60.45319 > 10.137.249.64.7028: S 3792145687:3792145687(0) win 57344 <mss 1460,nop,nop,sackOK,nop,wscale19:04:25.994856 10.137.249.64.7028 > 10.137.249.60.45318: S 452566851:452566851(0) ack 877407195 win 5792 <mss 1460,sackOK,timestam19:04:25.994861 10.137.249.64.7028 > 10.137.249.60.45262: . ack 2 win 1448 <nop,nop,timestamp 1819827396 903590> (DF)19:04:25.994872 10.137.249.60.45318 > 10.137.249.64.7028: . ack 1 win 57344 <nop,nop,timestamp 903590 1819827396> (DF)19:04:25.994981 10.137.249.64.7028 > 10.137.249.60.45319: S 452116455:452116455(0) ack 3792145688 win 5792 <mss 1460,sackOK,timesta19:04:25.994991 10.137.249.60.45319 > 10.137.249.64.7028: . ack 1 win 57344 <nop,nop,timestamp 903590 1819827396> (DF)19:04:26.090673 10.136.33.72.3758 > 10.137.249.60.22: . ack 20 win 15600 (DF)。
juniper日常维护和故障响应
应急处理-Debug
****** 997629.0: <Trust/trust> packet received [60]****** ipid = 5359(14ef), @03c9f550 packet passed sanity check. trust:192.168.100.205/4608->172.27.10.251/512,1(8/0)<Root> chose interface trust as incoming nat if. search route to (trust, 192.168.100.205->172.27.10.251) in vr trust-vr for vsd-0/flag-0/ifp-null [Dest] 2.route 172.27.10.251->0.0.0.0, to untrust routed (172.27.10.251, 0.0.0.0) from trust (trust in 0) to untrust policy search from zone 2-> zone 1 No SW RPC rule match, search HW rule Permitted by policy 9 No src xlate choose interface untrust as outgoing phy if no loop on ifp untrust. session application type 0, name None, timeout 60sec service lookup identified service 0. Session (id:818) created for first pak 1 route to 172.27.10.251 arp entry found for 172.27.10.251 nsp2 wing prepared, ready cache mac in the session flow got session. flow session id 818 post addr xlation: 192.168.100.205->172.27.10.251.
Juniper华为H3C设备维护通用命令
Juniper华为H3C设备维护通用命令Juniper_华为_H3C设备维护常用命令1、[Router&Swithc]华为/H3C设备常规巡检命令#系统时间display clock#系统以及各单板软件版本display version#设备温度display environment#日志信息display logbuffer#单板运行状态display device#电源状态display device#风扇状态display device#CPU占用状态display cpu-usage#内存占用率display memory limit#接口流量display interface#接口、链路状态display interface#地址分配display current-configuration interface##路由扩散display current-configuration | include ospf#OSPF(Open Shortest Path First)配置display router id#路由信息display ip routing-table#端口统计数据display ip interface#当前配置文件display current-configuration#保存配置文件display saved-configuration端口使用状态display interface GigabitEthernet/T en-GigabitEthernet brief VLAN使用状态display ip interface brief2、脚本—华为display versiondis patch-informationdisplay clockdis dustproofdis frame-typedis healthdisplay cpu-usagedisplay memorydisplay memory limitdisplay devicedisplay device manuinfodisplay powerdisplay fandisplay voltagedir cfcard2:/dir cfcard:display device pic-statusdis switchover statedisplay environmentdisplay interfacedisplay logbufferdis alarmdis bootrom ethernetdisplay current-configurationdisplay current-configuration interface#display router iddisplay ip routing-tabledisplay ip interfacedisplay ip interface briefdisplay current-configurationdisplay saved-configurationdisplay diagnostic-information3、脚本—华为NE40edisplay version 查看VRP版本等信息dis patch-information 查看版本补丁display clock 查看时钟dis dustproof 防尘网信息Dis frame-type 显示NE40E机框类型dis health 显示系统资源的使用情况display cpu-usage 查看1分钟CPU利用率display memory 查看内存使用情况display memory limitdisplay device 查看母板信息display device manuinfodisplay power 查看电源状态display fan 查看风扇状态display voltage 查看板卡电压dir cfcard2:/ 查看设备crash信息dir cfcard: 查看设备cf卡信息display device pic-status 查看子卡型号,序列号(NE40E NE80E) dis switchover state 查看引擎HA情况display environmentdisplay interface 查看接口状态display logbuffer 查看日志dis alarm 查看设备告警dis bootrom ethernet 查看设备bootrom信息display current-configuration查看当前配置display current-configuration interface# 查看设备当前接口配置display router id 查看设备路由IDdisplay ip routing-table 查看设备路由display ip interface 查看设备接口情况display ip interface brief 查看设备接口状态display current-configuration 查看设备当前配置display saved-configuration 查看设备内存配置(相当show start)display diagnostic-information 抓取设备完整信息相对于show tech二、JUNIPER设备常用维护巡检命令1、脚本—JUNIPERshow system uptimeshow version detailshow chassis hardware detailshow chassis environment //显示设备的环境信息,包括温度、风扇状况、电源状况、路由引擎状况。
juniper基本维护命令
show interfaces extensive 查看接口详细信息
show interfaces queue 查看接口的列队统计信息
show interfaces terse 显示接口概要信息
show route <destination> exact detail warding-table destination <destination> 查看某条路由的转发表信息
show ethernet-switching table 显示以太网媒体访问控制列表
run show route forwarding-table 查看转发表
rollback number 配置回滚
show vlans 查看vlan信息
clear interfaces statistics 清除接口的统计计数器
show route 查看路由表
show route summary 显示路由表的汇总信息
show forwarding-options 查看dhcp中继信息
show | display set 查看所有配置(转化为set命令)
show system 查看系统信息
Display brief outputshow interfaces diagnostics optics 查看光口模块信息
show interfaces descriptions 显示接口描述信息
show interfaces brief 查看接口简要信息
show chassis environmen 显示设备的环境信息,包括温度,风扇状态,电源状态,路由因引擎状态等
show chassis alarms 查看系统当前警告
Juniper设备常规操作与维护
J u n i p e r设备常规操作与维护内部编号:(YUUT-TBBY-MMUT-URRUY-UOOY-DBUYI-0128)J u n i p e r设备常规操作与维护1.设备操作1.1.单机设备关机因为主控板上有大容量硬盘,为防止强行断电关机造成硬件故障,要求设备关机必须按照下面的步骤进行操作:1.管理终端连接 console口。
2.使用具有足够权限的用户名和密码登陆CLI命令行界面。
3.在提示符下输入下面的命令:> request system halt…The operating system has halted.Please press any key to reboot(除非需要重启设备,此时不要敲任何键,否则设备将进行重启)4.等待console输出上面提示信息后,确认操作系统已停止运行,关闭机箱背后电源模块电源。
1.2.单机设备重启重启必须按照下面的步骤进行操作:1.管理终端连接console口。
2.使用具有足够权限的用户名和密码登陆CLI命令行界面。
3.在提示符下输入下面的命令:> request system reboot4.等待console设备的输出,操作系统已经重新启动。
1.3.单机操作系统升级操作系统软件升级必须按照下面的步骤进行操作:1.管理终端连接console口,便于升级过程中查看设备重启和软件加载状态。
2.升级前,执行下面的命令备份旧的软件及设定:> request system snapshot3.加载新的OS软件:>输入用户名密码后,通过get命令下载os,ftp> lsftp> binftp> getOS的默认下载目录为登录用户的主目录/var/home/username4.升级新下载的 OS>request system software add no-validate no-copy reboot5.软件加载成功后,设备将自动重启,重启完成后检查系统当前软件版本号:> show system software也可以在防火墙上开启FTP service,通过客户端用put方式将OS软件上传至防火墙。
Juniper路由器配置命令介绍
Juniper路由器配置命令介绍Juniper路由器配置命令介绍⒈系统配置命令⑴ `set system hostname`:设置设备的主机名。
⑵ `set system domn-name`:设置设备的域名。
⑶ `set system login user`:设置设备的登录用户信息。
⒉接口配置命令⑴ `set interfaces interface-name unit logical-unit-number family inet address ip-address/subnet-mask`:配置接口的IP地址和子网掩码。
⑵ `set interfaces interface-name unit logical-unit-number family inet6 address ipv6-address/prefix-length`:配置接口的IPv6地址和前缀长度。
⑶ `set interfaces interface-name unit logical-unit-number vlan-id vlan-tagged`:配置接口的VLAN标签。
⒊路由配置命令⑴ `set routing-options static route destination next-hop`:配置静态路由。
⑵ `set protocols ospf area area-id`:配置OSPF路由协议。
⒋安全配置命令⑴ `set security zones security-zone zone-nameinterfaces interface-name`:将接口分配给安全区域。
⑵ `set security policies from-zone source-zone to-zone destination-zone policy policy-name then permit`:配置安全策略以允许数据流动。
⒌ VPN配置命令⑴ `set security ike proposal proposal-name authentication-method pre-shared-keys`:配置IKE提议的预共享密钥认证方法。
juniper命令注解
juniper命令注解netscreen 设备管理配置netscreen 设备管理配置8实例分析:NETSCREEN 现有配置1.1时间设定set clock dst-off /自动调整时间关set clock ntp /设置NTP时间同步set clock timezone 9 /设置时区set vrouter trust-vr sharable /设置虑拟路由器trust-vr可以为其他VSYS系统共享1.2路由导出及自定义服务设定unset vrouter "trust-vr" auto-route-export /禁止路由器trust-vr的路由自动导出set service "CVS" protocol tcp src-port 0-65535 dst-port 2401-2401/自定义CVS服务协议为TCP 源端口为0-65535 目地端口为24011.3认证的设定set auth-server "Local" id 0 /设置认证SERVER为本地认证set auth-server "Local" server-name "Local" /设置本地认证SERVER名为LOCAL set auth default auth server "Local" /设置默认认证服务器为LOCAL1.4管理员的设定set admin name "netscreen" /设置管理员用户名set admin password "XXXXXX" /设置管理员密码set admin user "livedoorcn" password "XXXXXXX" privilege "all"/添加管理员用户livedoorcn及其权限为R-W1.5管理IP的设定set admin manager-ip xxx.174.65.0 255.255.255.0 /设置管理IPset admin manager-ip 10.0.71.136 255.255.255.255 /设置管理IPset admin manager-ip xxx.xxx.xxx.141 255.255.255.192 /设置管理IPset admin manager-ip xxx.xxx.xxx.246 255.255.255.255 /设置管理IPset admin manager-ip 10.0.71.139 255.255.255.255 /设置管理IPset admin manager-ip xxx.xxx.xxx.0 255.255.255.0 /设置管理IP1.6SSH及区域设定set admin scs password disable username netscreen /禁止用户的SSH密码认证set admin scs password disable username livedoorcn /禁止用户的SSH密码认证set admin auth timeout 10 /设置认证时间超时set admin auth server "Local" /设置管理认证服务器set zone "Trust" vrouter "trust-vr" /设置信任区域set zone "Untrust" vrouter "trust-vr" /设置非信任区域set zone "VLAN" vrouter "trust-vr" /设置VLAN区域set zone "Trust" tcp-rst /设置TRUST安全区超时回应RESET信息set zone "Untrust" block /封锁同一安全区中主机之间的信息流unset zone "Untrust" tcp-rst /设置UNTRUST安全区超时不回应RESET信息set zone "MGT" block /封锁同一安全区中主机之间的信息流set zone "VLAN" block /封锁同一安全区中主机之间的信息流set zone "VLAN" tcp-rst /设置TRUST安全区超时回应RESET信息1.7网络攻击保护选项的设定set zone "Trust" screen alarm-without-drop /设置告警但并不丢弃数据包set zone "Trust" screen icmp-flood /设置ICMP泛洪攻击保护set zone "Trust" screen udp-flood /设置UDP泛洪攻击保护set zone "Trust" screen winnuke /设置winnuke攻击保护set zone "Trust" screen port-scan /设置端口扫描攻击保护set zone "Trust" screen ip-sweep /设置IP地址扫描攻击保护set zone "Trust" screen tear-drop /设置tear-drop攻击保护set zone "Trust" screen syn-flood /设置SYN 泛滥攻击保护(DOS)set zone "Trust" screen ip-spoofing /设置IP欺骗攻击保护set zone "Trust" screen ping-death /设置PING-DEATH攻击保护set zone "Trust" screen ip-filter-src /设置禁示使用松散源路由或严格源路由选项set zone "Trust" screen land /设置陆地攻击保护set zone "Trust" screen tcp-no-flag /设置TCP无标志保护set zone "Trust" screen unknown-protocol /设置未知协议保护set zone "Trust" screen ip-bad-option /设置BAD选项保护set zone "Trust" screen ip-record-route /设置记录路由保护set zone "Trust" screen ip-timestamp-opt /设置时间戳保护set zone "Trust" screen ip-security-opt /设置IP安全选项保护(已不用)set zone "Trust" screen ip-loose-src-route /设置松散源路由(记录)set zone "Trust" screen ip-strict-src-route /设置严格源路由(记录)set zone "Trust" screen ip-stream-opt /设置IP选项流ID(费弃选项)set zone "Trust" screen icmp-large /设置icmp大包保护set zone "Trust" screen syn-fin /设置操作系统set zone "Trust" screen fin-no-ack /设置FIN但无ACK标志保护set zone "Trust" screen limit-session source-ip-based /设置源IP会话限制set zone "Trust" screen syn-ack-ack-proxy /设置同步代理泛滥保护set zone "Trust" screen block-frag /设置IP封包的碎片保护set zone "Trust" screen limit-session destination-ip-based /设置目的IP会话限制set zone "Untrust" screen tear-dropset zone "Untrust" screen syn-floodset zone "Untrust" screen ping-deathset zone "Untrust" screen ip-filter-srcset zone "Untrust" screen landset zone "V1-Untrust" screen tear-dropset zone "V1-Untrust" screen syn-floodset zone "V1-Untrust" screen ping-deathset zone "V1-Untrust" screen ip-filter-srcset zone "V1-Untrust" screen landset zone "Trust" screen limit-session destination-ip-based 1280 /设置目的IP会话限制1.8接口的设定set interface "trust" zone "Trust" /将接口trust绑定到trust安全区域set interface "untrust" zone "Untrust" /将接口untrust绑定到untrust安本区域unset interface vlan1 ip /没有设定VLAN IP地址set interface trust ip 10.0.71.1/24 /设置trust接口IP地址set interface trust nat /设置trust接口工作模式set interface untrust ip xxx.xxx.xxx.131/26 /设置untrust接口IP地址set interface untrust route /设置untrust接口工作模式set interface untrust gateway xxx.xxx.xxx.129 /设置untrust接口网关unset interface vlan1 bypass-others-ipsec /阻止NetScreen 设备通过IPSec信息流unset interface vlan1 bypass-non-ip /阻止所有非IP和非ARP 单点传送信息流set interface trust ip manageable /设置trust接口为可管理接口set interface untrust ip manageable /设置untrust接口为可管理接口set interface untrust manage ping /允许untrust接口PINGset interface untrust manage ssh /允许untrust接口可以SSH 管理set interface untrust manage web /允许untrust接口可以WEB 管理1.9MIP地址映射的设定set interface "untrust" mip xxx.xxx.xxx.135 host 10.0.71.135 netmask 255.255.255.255 vrouter "trust-vr" /设置MIP映射地址以下类同:set interface "untrust" mip xxx.xxx.xxx.133 host 10.0.71.133 netmask 255.255.255.255 vrouter "trust-vr"set interface "untrust" mip xxx.xxx.xxx.134 host 10.0.71.134 netmask 255.255.255.255 vrouter "trust-vr"set interface "untrust" mip xxx.xxx.xxx.136 host 10.0.71.136 netmask 255.255.255.255 vrouter "trust-vr"set interface "untrust" mip xxx.xxx.xxx.139 host 10.0.71.139 netmask 255.255.255.255 vrouter "trust-vr"set interface "untrust" mip xxx.xxx.xxx.140 host 10.0.71.140 netmask 255.255.255.255 vrouter "trust-vr"set interface "untrust" mip xxx.xxx.xxx.132 host 10.0.71.132 netmask 255.255.255.255 vrouter "trust-vr"set interface "untrust" mip xxx.xxx.xxx.142 host 10.0.71.142 netmask 255.255.255.255 vrouter "trust-vr"set interface "untrust" mip xxx.xxx.xxx.143 host 10.0.71.143 netmask 255.255.255.255 vrouter "trust-vr"。
JUNIPER 路由器常用维护命令讲解
JUNIPER 路由器常用维护命令讲解JUNIPER 路由器常用维护命令讲解。
1、登录路由器在维护路由器之前,首先需要登录到路由器的命令行界面。
可以通过以下命令登录:```login```2、查看接口状态为了了解路由器接口的状态,可以使用以下命令:```show interfaces```该命令将显示所有接口的详细状态信息,如接口名称、协议状态、速率和使用量等。
3、配置接口如果需要配置某个接口,可以使用以下命令:```edit interfaces <interface-name>```进入特定接口的编辑模式后,可以配置该接口的各种参数,如IP地质、子网掩码、带宽等。
4、查看路由表查看路由表可以帮助我们了解路由器的路由选择信息。
可以使用以下命令:```show route```该命令将显示路由表中的所有路由项,包括目的网络、下一跳地质、接口等。
5、配置静态路由如果需要手动添加一个静态路由,可以使用以下命令:```edit routing-optionsset static route <destination-network> next-hop <next-hop-address>```其中,`<destination-network>`表示目的网络地质,`<next-hop-address>`表示下一跳地质。
6、查看系统日志系统日志可以提供路由器的运行状态和事件信息。
可以使用以下命令查看:```show log```该命令将显示系统日志中的最新事件,如接口状态改变、路由器重启等。
7、保存配置在配置完成后,为了使配置生效并持久化保存,可以使用以下命令:```commit```该命令将提交当前的配置更改并将其保存到路由器的配置文件中。
附件:本文档未涉及附件。
法律名词及注释:1、接口:路由器的物理接口或逻辑接口,用于与其他网络设备连接和通信。
Juniper路由器配置命令介绍
Juniper路由器配置命令介绍Juniper路由器配置命令介绍目录1、简介2、配置基础命令2.1 进入操作模式2.2 配置系统参数2.3 设置管理接口2.4 配置路由表3、高级配置命令3.1 OSPF配置3.2 BGP配置3.3 VRF配置3.4 MPLS配置4、安全配置命令4.1 配置防火墙4.2 配置安全策略4.3 配置VPN4.4 配置ACL5、故障排查命令5.1 显示命令5.2 路由故障排查5.3 硬件故障排查5.4 访问控制故障排查6、性能优化命令6.1 接口配置6.2 QoS配置6.3 缓存配置6.4 动态路由配置1、简介Juniper路由器是一种支持多种网络协议的高性能路由器。
本文档介绍了Juniper路由器的配置命令,并根据功能分类进行了细化。
2、配置基础命令2.1 进入操作模式- login:登录路由器- cli:进入命令行操作模式- configure:进入配置操作模式2.2 配置系统参数- set system hostname <hostname>:设置路由器主机名- set system domn-name <domn-name>:设置路由器域名- set system time-zone <time-zone>:设置时区- set system name-server <ip-address>:设置DNS服务器2.3 设置管理接口- set interfaces <interface> unit <unit> family inet address <ip-address/mask>:配置管理接口的IP地质- set interfaces <interface> unit <unit> family inet address dhcp:使用DHCP分配管理接口的IP地质2.4 配置路由表- set routing-options static route <destination> next-hop <next-hop>:配置静态路由- set routing-options router-id <id>:配置路由器ID- set protocols ospf area <area> interface <interface>:配置接口与OSPF区域的关联3、高级配置命令3.1 OSPF配置- set protocols ospf area <area> interface <interface>:配置接口与OSPF区域的关联- show ospf neighbor:显示OSPF邻居信息- show ospf route:显示OSPF路由表3.2 BGP配置- set protocols bgp group <group-name> neighbor<neighbor-address>:配置BGP邻居- set protocols bgp group <group-name> family <family>:配置BGP邻居的地质族- show bgp neighbor:显示BGP邻居信息- show bgp summary:显示BGP邻居摘要信息3.3 VRF配置- set routing-instances <instance-name> interface<interface>:配置接口与VRF的关联- set routing-instances <instance-name> routing-options static route <destination> next-hop <next-hop>:配置静态路由3.4 MPLS配置- set protocols mpls interface <interface>:启用接口的MPLS功能- set protocols mpls label-switched-path <LSP-name> to <destination-address> : 配置LSP的路径4、安全配置命令4.1 配置防火墙- set security policies from-zone <from-zone> to-zone <to-zone> policy <policy-name> match <match-conditions> then permit/deny:配置安全策略4.2 配置安全策略- set security zones security-zone <zone-name> address-book address <address-name> <ip-address>:配置地质对象- set security zones security-zone <zone-name> host-inbound-traffic system-services <services>:配置允许进入防火墙的服务4.3 配置VPN- set security ike proposal <proposal-name> authentication-method <method>:配置IKE提议- set security ike gateway <gateway-name> ike-policy <policy-name>:配置IKE网关- set security ipsec vpn <vpn-name> bind-interface<interface>:绑定VPN到接口4.4 配置ACL- set firewall family inet filter <filter-name> term <term-name> from protocol <protocol>:配置ACL规则- set firewall family inet filter <filter-name> term <term-name> then accept/discard:配置ACL规则动作5、故障排查命令5.1 显示命令- show interfaces <interface> detl:显示接口详细信息- show route <destination> : 显示路由信息- show chassis hardware:显示硬件信息5.2 路由故障排查- show bgp summary:显示BGP邻居摘要信息- show ospf neighbor:显示OSPF邻居信息- show route protocol <protocol>:显示指定协议的路由5.3 硬件故障排查- show chassis hardware:显示硬件信息- show log messages:显示系统日志消息- request support information:收集支持信息文件5.4 访问控制故障排查- show security policies from-zone <from-zone> to-zone <to-zone> policy <policy-name>:显示安全策略信息- show security zones interfaces:显示接口与安全域的关联信息6、性能优化命令6.1 接口配置- set interfaces <interface> mtu <mtu-size>:设置接口MTU大小- set interfaces <interface> description <description>:设置接口描述6.2 QoS配置- set class-of-service interfaces <interface> unit<unit> scheduler-map <map-name>:为接口配置调度器映射- set class-of-service scheduler-maps <map-name> forwarding-class <forwarding-class> scheduler <scheduler-name>:配置调度器映射6.3 缓存配置- set forwarding-options cache hit-cache-size <size>:设置缓存大小- set forwarding-options cache timeout <timeout-value>:设置缓存超时时间6.4 动态路由配置- set protocols ospf area <area> interface <interface> passive:将接口设置为OSPF被动接口- set routing-instances <instance-name> interface <interface> passive:将接口设置为VRF被动接口附件:无法律名词及注释:无。
JUNIPER路由器中常用命令总结
JUNIPER路由器中常⽤命令总结前些⽇⼦认真看了⼀下Juniper路由器的⼀些命令。
在这⾥总结⼀下。
⽅便以后使⽤Juniper路由器的命令主要分为两个部分,⼀个是operational,主要是复杂查看⽬前⽹络的配置情况(只能查看,不能修改。
感觉权限⽐较低);另⼀个是configuration,主要⽤来查看和修改配置(感觉权限⾼⼀些)。
刚进⼊到Juniper路由器时,默认进⼊的是operation,输⼊edit命令之后,就进⼊到了[edit]⽬录下,也就是进⼊了configuration。
基础配置命令(如未说明则在[edit]⽬录下)1、配置主机名字:set system host-name router12、配置域名: set system domain-name 3、配置fxp0接⼝(以太⽹中通过这个接⼝进⾏路由器的配置)。
Set interfaces fxp0 unit 0 family inet address 192.168.15.1/2 44、配置备份路由器:set system backup-router 192.168.15.25、配置DNS服务器:set system name-server 192.168.15.36、配置root⽤户的密码:set system root-authentication plain-text-password(密码中不可以全是⼤写、全是⼩写、全是数字)7、设置ntp服务器: set system ntp server 192.168.2.28、提交修改:commit9、查看提交是否合法: commit check10、在当天特定时间进⾏提交 commit at 22:4511、在特定⽇期的特定时间提交: commit at “2005-02-26 10:45”12、取消commit的操作 clear system commit13、为了避免提交带来意外的损害采⽤:commit confirmed,会在10分钟以后⾃动回滚14、与14相同,但在⼀分钟以后⾃动回滚:commit confirmed 115、提交信息,并同步到备份路由器上: commit synchronize配置服务:1、设置ssh服务:set system services ssh2、配置ftp服务: set system services ftp3、删除ftp服务: delete system services ftp权限设置:1、设置root⽤户ssh登录的密码:set system root-authentication ssh password2、禁⽌root⽤户使⽤ssh登录:[edit system ] set services ssh root-login deny3、设置密码要求:[edit system login] set password maximun-length 20 set password minimum-length 8 set password mi nimum-changes 24、设置密码加密算法:set system login password formate md55、查看⾃⼰的权限,以及可以设置的权限: show cli authorization进⼊与退出命令:1、Edit2、修改root的配置:configure3、避免多⼈修改导致设置丢失采⽤ configure exclusive4、查看⽬前修改区域有谁在线:[edit]status(只能看见⽐你先登录的⼈,后⾯登录的信息看不见)5、强制要求别⼈下线:request system logout user mike6、进⼊到根⽬录 top7、退出configuration 模块:quit8、退出configuration模块:exit configuration-mode9、提交并退出:commit and-quit10、退出当前⽬录:exit11、进⼊到某⽬录 edit ⽬录名字查看命令:1、查看当前⽬录地下的设置 [edit]show2、查看你设置的命令 show | display set3、查看你新增的命令 show | compare(+表⽰你增加的命令,-表⽰你删除的命令。
Juniper路由器操作及维护手册
Juniper路由器操作及维护手册Juniper路由器操作及维护手册1.简介1.1 路由器概述1.2 本手册目的1.3 免责声明2.路由器基础知识2.1 路由器工作原理2.2 网络拓扑结构2.3 路由器的功能和特性3.路由器操作3.1 登录路由器3.2 接口配置3.3 静态路由配置3.4 动态路由配置3.5 ARP管理3.6 VLAN配置3.7 ACL配置3.8 VPN配置4.路由器维护4.1 硬件维护①清理设备②更换硬件组件4.2 软件维护①系统升级②配置备份与恢复4.3 故障排除①日志查看②路由器诊断工具③常见故障解决方法5.附件5.1 路由器配置示例5.2 路由器硬件规格6.法律名词及注释6.1 路由器:网络设备,用于在多个网络之间转发数据包。
6.2 VLAN:虚拟局域网,将多个物理局域网划分为多个逻辑上的局域网。
6.3 ACL:访问控制列表,用于控制网络流量的进出。
6.4 VPN:虚拟专用网,通过公共网络建立安全的连接,提供私密性和认证。
【附件】路由器配置示例:接口配置示例:接口名称:eth0/0IP地质.192.16①子网掩码.255.255.255.0默认网关.192.16②54静态路由配置示例:目标网络.192.168.2.0/24下一跳.192.16②动态路由配置示例:路由协议:OSPF区域:0.0.0.0网络.192.168.1.0/24【法律名词及注释】1.路由器:根据 IP 地质和端口号决定数据包的转发路径的网络设备。
2.VLAN:为了减少网络堆积和保证网络安全性,采用的一种网络分割技术。
3.ACL:通过配置路由器或交换机的端口,限制网络上的数据流,以保证网络能够正常运行并提供安全保护。
4.VPN:利用非专用的公共网络构建一个安全的、可靠的通信链路,实现远程办公和远程联网。
Juniper路由器常用命令表
Juniper路由器常用命令表Juniper路由器常用命令表:1·登录与基本操作1·1 连接与登录1·2 登录后的基本操作1·3 退出登录2·系统操作与管理2·1 系统状态与信息查看2·2 系统配置与修改2·3 系统重启与关机2·4 用户管理3·接口配置3·1 物理接口3·1·1 接口状态查看与设置3·1·2 接口带宽与速率限制设置3·2 逻辑接口3·2·1 VLAN接口配置3·2·2 Loopback接口配置4·路由配置4·1 静态路由配置4·2 动态路由配置4·2·1 OSPF配置4·2·2 BGP配置4·2·3 RIP配置5·安全配置5·1 防火墙配置5·1·1 基本防火墙规则配置5·1·2 会话表与连接追踪配置5·1·3 防火墙日志配置5·2 虚拟专用网络(VPN)配置5·2·1 IPsec VPN配置5·2·2 SSL VPN配置6·网络服务配置6·1 DHCP服务配置6·2 DNS服务配置6·3 NAT配置7·系统诊断与故障处理7·1 接口故障排查7·2 路由故障排查7·3 防火墙故障排查7·4 网络连通性测试7·5 系统日志与告警查看附:本文档涉及附件附件:无注释:本文所涉及的法律名词及注释1·路由器:一种计算机网络设备,用于在局域网或广域网之间转发数据包。
2·VLAN:虚拟局域网,将一组逻辑上的设备或用户分组,形成一个局域网。
Juniper路由器常用命令表
user id为2001;
class为high
设置telnet和ftp服务
Line vty 0 4
#set services telnet
设置telnet服务
ip ftp
# set services ftp
设置ftp服务
#set system services telnet connection-limit 5
client的配置
# set ntp boot-server202.96.103.37
ntp server配置
此处只能写ip不能为主机名
SNMP配置
#set snmp community keepalive authorization read-only
SNMP配置
端口数据设置
Interface
#edit interfaces
限制telnet的最大连接数5
syslog服务配置
# set syslog user * any emergency
#set system syslog host202.96.103.73any any
所有syslog信息都写到远程主机
#set system syslog file messages any notice
>show chassis alarms
查看设备告警信息
sh environment all
>show chassis environment
查看详细的硬件温度及状态信息
# run show chassis fpc pic-status
查看办卡信息
show controller intfc
Juniper路由器配置命令介绍
Juniper路由器配置命令介绍本文档是关于Juniper路由器配置命令的介绍,旨在帮助用户快速了解和使用Juniper路由器的各种命令。
以下是文档的详细内容。
第一章:登录和基本配置1.登录Juniper路由器- 进入路由器的命令行界面- 输入用户名和密码进行登录2.基本配置命令- 配置路由器的主机名- 配置管理接口的IP地质- 设置路由器的时钟- 保存配置更改第二章:接口配置1.配置物理接口- 激活和禁用接口- 配置接口IP地质- 配置接口子网掩码- 配置接口速率和双工模式- 配置接口上的ACL(访问控制列表)2.配置逻辑接口- 配置VLAN接口- 配置子接口- 配置隧道接口第三章:路由配置1.配置静态路由- 添加静态路由- 删除静态路由- 配置默认路由- 查看路由表2.配置动态路由- 配置OSPF(开放最短路径优先)协议 - 配置BGP(边界网关协议)协议- 配置RIP(路由信息协议)协议第四章:安全配置1.配置防火墙规则- 添加入站规则- 添加出站规则- 配置地质转换(NAT)2.配置VPN- 配置IPSec VPN- 配置SSL VPN第五章:监控和故障排除1.监控命令- 查看接口状态- 查看路由器 CPU 和内存使用情况 - 查看硬盘使用情况2.故障排除命令- 执行连通性测试- 查看日志信息- 跟踪路由本文档涉及附件:附件1:Juniper路由器配置示例文件(示例配置文件,供参考使用)本文所涉及的法律名词及注释:1.ACL(访问控制列表):用于控制网络流量的一种机制,可以限制特定源IP地质或目的IP地质的访问权限。
2.OSPF(开放最短路径优先):一种用于动态路由选择的内部网关协议,使用最短路径优先算法确定最佳路由。
3.BGP(边界网关协议):一种用于在互联网自治系统之间交换路由信息的外部网关协议。
4.RIP(路由信息协议):一种用于在小型网络中交换路由信息的距离矢量路由协议。
Juniper路由器维护操作手册-T1600
Juniper路由器日常维护操作手册T16002014年4月目录1。
总体概述41.1。
文档简介41.2。
文档术语42.软件操作52.1.通过Console线缆连接路由器52.2.设备关闭62。
3。
设备重启72.4。
路由引擎切换72.5.JUNOS升级72.6.密码恢复83。
T1600简介103。
1.T1600结构103.1.1。
设备描述103.1.2.可更换部件(FRU)113。
1.3。
部件的冗余性123。
2.硬件组件结构123.2.1。
机箱133.2。
2。
FPC143。
2.3。
PIC163.2。
4。
SIB163.2。
5。
Host Subsystem163。
2。
6.路由引擎(Routing Engine)173.2.7。
控制板(Control Board)183。
2。
8.Craft Interface193。
2。
9.CIP203。
2.10。
SCG213.2.11.电源模块223。
2。
12。
冷却系统244.硬件组件故障检查254。
1。
使用故障检查资源254。
2。
FPC和PIC故障检查284.3。
电源系统故障检查294。
4。
冷却系统故障检查305.设备日常维护315。
1。
日常维护步骤315。
2.Host Subsystem的维护315。
3。
FPC和PIC的维护335.4。
SIB的维护355.5.电源模块的维护365。
6。
冷却系统的维护375.7。
空气过滤器的维护376。
硬件组件更换386。
1。
各组件需要的工具396.2。
更换CIP和路由引擎端口连接线396。
3.更换路由引擎端口连接线426.4。
更换冷却系统456.5.更换风扇盘456.6。
更换空气过滤器496.7。
更换Craft Interface536。
8。
更换主机子系统部件556。
9。
更换控制板(CB)576.10。
更换PC Card596.11.更换路由引擎(RE)616.12。
更换SCG646.13。
更换SIB666.14.更换包转发引擎部件686。
- 1、下载文档前请自行甄别文档内容的完整性,平台不提供额外的编辑、内容补充、找答案等附加服务。
- 2、"仅部分预览"的文档,不可在线预览部分如存在完整性等问题,可反馈申请退款(可完整预览的文档不适用该条件!)。
- 3、如文档侵犯您的权益,请联系客服反馈,我们会尽快为您处理(人工客服工作时间:9:00-18:30)。
中国电信CN2网络Juniper设备常用维护命令手册V1.0(Release)Maintained By Kevin YangCorporate HeadquartersJuniper Networks ,Inc.1194 North Mathilda AvenueSunnyvale, California 94089-1206 USAPhone: 888-JUNIPER (888-586-4737)1-408-745-2000Fax: 1-408-745-2100目录前言 5设备端口5 文档目的 5 使用人员 5 内容范围 5 假设与告诫 相关文献6 运行状态维护命令7 show chassis alarms7 show chassis environment7 show chassis environment pem 9 show chassis environment sib 10 show chassis environment fpc 11 show chassis sibs12 show chassis fabric topology 13 show version16 show chassis hardware detail 16 show chassis fpc19 show chassis fpc detail 20 show chassis fpc pic ‐status22 show chassis pic fpc ‐slot <fpc> pic ‐slot <pic> 23 show chassis rouging ‐engine24 s how chassis feb (只适用于M120)26 show chassis feb detail (只适用于M120)27 show chassis fpc ‐feb ‐connectivity (只适用于M120) 28 show ntp status 29 状态维护命令30 show interfaces descriptions 30 show interfaces terse31 show interfaces diagnostics optics 32 show interfaces extensive 34 show interfaces queue40clear interfaces statist 4 ics 4路由r soft ‐inbound <neighbor> 6MPL <destination> 7其它协议状态维护命令46 show route <destination> 46 show route summary47 show route <destination> exact detail49 show route forwarding ‐table destination <destination> 51 show isis hostname 52 show isis adjacency 53 show isis interface 54 show isis database55 show configuration protocol isis 57 show bgp summary58 show bgp neighbor <neighbor ‐address>59 show route advertising ‐protocol bgp <neighbor> | match 62 show route receive ‐protocol bgp <neighbor> | match 62 show bgp receive ‐protocol bgp <neighbor> all63 show route protocol bgp <destination> exact detail 64 show route protocol bgp aspath ‐regex <aspath ‐regex> 66 clear bgp neighbor <neighbor > 67 clear bgp neighbor soft <neighbor>67 clear bgp neighbo 8 S 相关维护命令69 show mpls lsp69 clear mpls lsp name <name> 71 show mpls interface 71 show rsvp interface 72 show ldp interface 73 show ldp neighbor 74 show ldp session 75 show ldp database75 clear ldp neighbor <neighbor> 77 clear ldp session 7 相关维护命令78 show system storage 78 request chassis pic offline 79 request chassis pic online 79 request chassis fpc offline 80 request chassis fpc online 80 request chassis cb offline 80 request chassis cb online 81 request chassis sib offline 81 request chassis sib online81 request chassis routing ‐engine master switch82 request routing ‐engine login other ‐routing ‐engine82request system halt 82 request system reboot83 request system software add 83 request system snapshot 4 8故障show pfe statistics traffic 89信息收集命令85 request support information 85 show log messages 86 show log chassisd86 show chassis hardware detail | no ‐more 87前言文档目的本文档是瞻博网络公司(Juniper)工程师为中国电信CN2 网络维护人员编写的维护常用命令手册使用人员本文档资料主要面向负责中国电信CN2的网络维护技术人员内容范围本文档包含Juniper路由器设备软硬件状态,配置状态,连接状态,负载状态,路由协议, QoS 状态,运行状态记录情况,故障信息收集等方面的常用命令 假设与告诫假设阅读本文档的技术人员拥有本文中描述的Juniper路由产品的安装和运行经 验,并了解配置、升级和故障排除的基本程序。
如需进一步了解Juniper路由器操作命令和配置,请参阅下述相关英文版文献,如本文中文内容与英文版文献有抵触之处,以英文版文献描述为准相关文献[1] JUNOS 8.5 Software Document/techpubs/software/junos/junos85/index.html设备运行状态维护命令show chassis alarms命令功能:察看当前系统的告警命令举例:> show chassis alarms1 alarms currently activeAlarm time Class Description2009-01-06 11:07:33 CST Major Host 0 ECC single bit parity error关键字段说明:Alarm time 报警发生的日期和时间Class 报警级别(Major 表示严重,Minor表示轻微) Description 报警的内容show chassis environment命令功能:显示设备的环境信息,包括温度、风扇状态、电源状态、路由引擎状态等命令举例:Bottom Left Rear fan OK Spinning at normal speedBottom Right Front fan OK Spinning at normal speedBottom Right Middle fan OK Spinning at normal speedBottom Right Rear fan OK Spinning at normal speedFourth Blower from top OK Spinning at normal speedBottom Blower OK Spinning at normal speedMiddle Blower OK Spinning at normal speedTop Blower OK Spinning at normal speedSecond Blower from top OK Spinning at normal speedMisc CIP OKSPMB 0 OKSPMB 1 OK关键字段说明:Class 类别 (温度、风扇和其它)Item 条目列表Status 运行状态Measurement 温度和风扇的转速show chassis environment pem命令功能:显示电源模块的环境状态信息,包括温度、电压、电流、功率、负载等 (电流和功率只适用于T-Series路由器)命令举例:> show chassis environment pemPEM 0 status:State OnlineTemperature 26 degrees C / 78 degrees FDC Input: OKDC Output Voltage Current Power LoadFPC 0 55250 1325 73 9FPC 1 55858 1331 74 9FPC 2 55550 1212 67 8FPC 3 55758 1143 63 8FPC 4 55858 831 46 6FPC 5 55916 1006 56 7FPC 6 55775 2056 114 15FPC 7 55775 162 9 1SCG/CB/SIB 55391 425 23 1PEM 1 status:State OnlineTemperature 27 degrees C / 80 degrees F DC Input: OKDC Output Voltage Current Power LoadFPC 0 55308 1181 65 8FPC 1 55758 1200 66 8FPC 2 55758 1268 70 9FPC 3 55791 1262 70 9FPC 4 55691 943 52 6FPC 5 55691 1231 68 9FPC 6 55533 2162 120 16FPC 7 55900 156 8 1SCG/CB/SIB 55325 350 19 1关键字段说明:State 运行状态Temperature 电源模块的温度DC Input 直流电输入状态DC Output 直流电输出 (根据不同的板卡)Voltage 输出电压Current 输出电流Power 输出功率Load 负载大小(百分比)show chassis environment sib命令功能:显示交换接口板SIB的环境状态信息,包括温度、电压等命令举例:> show chassis environment sib 0SIB 0 status:State OnlineTemperature 37 degrees C / 98 degrees F PowerGROUND 0 mV1.8 V 1799 mV2.5 V 2495 mV3.3 V 3321 mV1.8 V bias 1789 mV3.3 V bias 3269 mV5.0 V bias 4986 mV8.0 V bias 7213 mV关键字段说明:State 运行状态Temperature 电源模块的温度Power 电压偏差show chassis environment fpc命令功能:显示FPC板的环境状态信息,包括温度、电压等命令举例:> show chassis environment fpc 0FPC 0 status:State OnlineTemperature Top 41 degrees C / 105 degrees F Temperature Bottom 26 degrees C / 78 degrees F Temperature MMB0 35 degrees C / 95 degrees F Temperature MMB1 29 degrees C / 84 degrees F Power1.8 V 1794 mV2.5 V 2514 mV3.3 V 3339 mV5.0 V 5040 mV1.8 V bias 1794 mV3.3 V bias 3296 mV5.0 V bias 4981 mV8.0 V bias 7670 mVBus Revision 40关键字段说明:State 运行状态Temperature Top FPC顶部的温度Temperature Bottom FPC底部温度Temperature MMB0 FPC MMB0的温度Temperature MMB1 FPC MMB1的温度Power 电压偏差show chassis sibs命令功能:察看SIB板(交换接口板,即交换矩阵)的状态命令举例:> show chassis sibsSlot State Uptime0 Online 88 days, 9 hours, 29 minutes, 35 seconds1 Online 88 days, 9 hours, 29 minutes, 36 seconds2 Online 88 days, 9 hours, 29 minutes, 36 seconds3 Spare4 Online 88 days, 9 hours, 29 minutes, 35 seconds关键字段说明:Slot SIB板槽位State 状态,如果是online或Spare则正常,如果是check或 offline则不正常Uptime 自上次online 迄今为止的时间show chassis fabric topology命令功能:察看交换矩阵的拓扑及状态命令举例:> show chassis fabric topologyfchip (mode)in-links state out-links state------------------------------------------------------------------Sib #0 :---------SIB0_F0 (F3S):FPC0_T->SIB0_F0,00 UP SIB0_F0,00->FPC3_B UPFPC0_B->SIB0_F0,01 UP SIB0_F0,01->FPC3_T UPFPC1_T->SIB0_F0,02 UP SIB0_F0,02->FPC2_B UPFPC1_B->SIB0_F0,03 UP SIB0_F0,03->FPC2_T UPFPC2_T->SIB0_F0,04 UP SIB0_F0,04->FPC1_B UPFPC2_B->SIB0_F0,05 UP SIB0_F0,05->FPC1_T UPFPC3_T->SIB0_F0,06 UP SIB0_F0,06->FPC0_B UPFPC3_B->SIB0_F0,07 UP SIB0_F0,07->FPC0_T UPFPC4_T->SIB0_F0,08 UP SIB0_F0,08->FPC7_B UPFPC4_B->SIB0_F0,09 UP SIB0_F0,09->FPC7_T UPFPC5_T->SIB0_F0,10 UP SIB0_F0,10->FPC6_B UPFPC6_T->SIB0_F0,12 UP SIB0_F0,12->FPC5_B UP FPC6_B->SIB0_F0,13 UP SIB0_F0,13->FPC5_T UP FPC7_T->SIB0_F0,14 RESET SIB0_F0,14->FPC4_B UP FPC7_B->SIB0_F0,15 UP SIB0_F0,15->FPC4_T UPSib #1 :---------SIB1_F0 (F3S):FPC0_T->SIB1_F0,00 UP SIB1_F0,00->FPC3_B UP FPC0_B->SIB1_F0,01 UP SIB1_F0,01->FPC3_T UP FPC1_T->SIB1_F0,02 UP SIB1_F0,02->FPC2_B UP FPC1_B->SIB1_F0,03 UP SIB1_F0,03->FPC2_T UP FPC2_T->SIB1_F0,04 UP SIB1_F0,04->FPC1_B UP FPC2_B->SIB1_F0,05 UP SIB1_F0,05->FPC1_T UP FPC3_T->SIB1_F0,06 UP SIB1_F0,06->FPC0_B UP FPC3_B->SIB1_F0,07 UP SIB1_F0,07->FPC0_T UP FPC4_T->SIB1_F0,08 UP SIB1_F0,08->FPC7_B UP FPC4_B->SIB1_F0,09 UP SIB1_F0,09->FPC7_T UP FPC5_T->SIB1_F0,10 UP SIB1_F0,10->FPC6_B UP FPC5_B->SIB1_F0,11 UP SIB1_F0,11->FPC6_T UP FPC6_T->SIB1_F0,12 UP SIB1_F0,12->FPC5_B UP FPC6_B->SIB1_F0,13 UP SIB1_F0,13->FPC5_T UP FPC7_T->SIB1_F0,14 RESET SIB1_F0,14->FPC4_B UP FPC7_B->SIB1_F0,15 UP SIB1_F0,15->FPC4_T UPSib #2 :---------SIB2_F0 (F3S):FPC0_T->SIB2_F0,00 UP SIB2_F0,00->FPC3_B UP FPC0_B->SIB2_F0,01 UP SIB2_F0,01->FPC3_T UP FPC1_T->SIB2_F0,02 UP SIB2_F0,02->FPC2_B UP FPC1_B->SIB2_F0,03 UP SIB2_F0,03->FPC2_T UP FPC2_T->SIB2_F0,04 UP SIB2_F0,04->FPC1_B UP FPC2_B->SIB2_F0,05 UP SIB2_F0,05->FPC1_T UP FPC3_T->SIB2_F0,06 UP SIB2_F0,06->FPC0_B UP FPC3_B->SIB2_F0,07 UP SIB2_F0,07->FPC0_T UP FPC4_T->SIB2_F0,08 UP SIB2_F0,08->FPC7_B UP FPC4_B->SIB2_F0,09 UP SIB2_F0,09->FPC7_T UP FPC5_T->SIB2_F0,10 UP SIB2_F0,10->FPC6_B UP FPC5_B->SIB2_F0,11 UP SIB2_F0,11->FPC6_T UP FPC6_T->SIB2_F0,12 UP SIB2_F0,12->FPC5_B UP FPC6_B->SIB2_F0,13 UP SIB2_F0,13->FPC5_T UP FPC7_T->SIB2_F0,14 RESET SIB2_F0,14->FPC4_B UPSib #3 :---------SIB3_F0 (F3S):FPC0_T->SIB3_F0,00 UP SIB3_F0,00->FPC3_B UP FPC0_B->SIB3_F0,01 UP SIB3_F0,01->FPC3_T UP FPC1_T->SIB3_F0,02 UP SIB3_F0,02->FPC2_B UP FPC1_B->SIB3_F0,03 UP SIB3_F0,03->FPC2_T UP FPC2_T->SIB3_F0,04 UP SIB3_F0,04->FPC1_B UP FPC2_B->SIB3_F0,05 UP SIB3_F0,05->FPC1_T UP FPC3_T->SIB3_F0,06 UP SIB3_F0,06->FPC0_B UP FPC3_B->SIB3_F0,07 UP SIB3_F0,07->FPC0_T UP FPC4_T->SIB3_F0,08 UP SIB3_F0,08->FPC7_B UP FPC4_B->SIB3_F0,09 UP SIB3_F0,09->FPC7_T UP FPC5_T->SIB3_F0,10 UP SIB3_F0,10->FPC6_B UP FPC5_B->SIB3_F0,11 UP SIB3_F0,11->FPC6_T UP FPC6_T->SIB3_F0,12 UP SIB3_F0,12->FPC5_B UP FPC6_B->SIB3_F0,13 UP SIB3_F0,13->FPC5_T UP FPC7_T->SIB3_F0,14 RESET SIB3_F0,14->FPC4_B UP FPC7_B->SIB3_F0,15 UP SIB3_F0,15->FPC4_T UPSib #4 :---------SIB4_F0 (F3S):FPC0_T->SIB4_F0,00 UP SIB4_F0,00->FPC3_B UP FPC0_B->SIB4_F0,01 UP SIB4_F0,01->FPC3_T UP FPC1_T->SIB4_F0,02 UP SIB4_F0,02->FPC2_B UP FPC1_B->SIB4_F0,03 UP SIB4_F0,03->FPC2_T UP FPC2_T->SIB4_F0,04 UP SIB4_F0,04->FPC1_B UP FPC2_B->SIB4_F0,05 UP SIB4_F0,05->FPC1_T UP FPC3_T->SIB4_F0,06 UP SIB4_F0,06->FPC0_B UP FPC3_B->SIB4_F0,07 UP SIB4_F0,07->FPC0_T UP FPC4_T->SIB4_F0,08 UP SIB4_F0,08->FPC7_B UP FPC4_B->SIB4_F0,09 UP SIB4_F0,09->FPC7_T UP FPC5_T->SIB4_F0,10 UP SIB4_F0,10->FPC6_B UP FPC5_B->SIB4_F0,11 UP SIB4_F0,11->FPC6_T UP FPC6_T->SIB4_F0,12 UP SIB4_F0,12->FPC5_B UP FPC6_B->SIB4_F0,13 UP SIB4_F0,13->FPC5_T UP FPC7_T->SIB4_F0,14 RESET SIB4_F0,14->FPC4_B UP FPC7_B->SIB4_F0,15 UP SIB4_F0,15->FPC4_T UP关键字段说明:In-link 交换矩阵中接收端链路Out-link 交换矩阵中发送端链路State 状态,如果出现fault则表示正常show version命令功能:显示主机名、设备型号和软件版本命令举例:> show versionHostname: 2-RE1Model: t640JUNOS Base OS boot [8.5-20081017.0]JUNOS Base OS Software Suite [8.5-20081017.0]JUNOS Kernel Software Suite [8.5-20081017.0]JUNOS Crypto Software Suite [8.5-20081017.0]JUNOS Packet Forwarding Engine Support (M/T Common) [8.5-20081017.0]JUNOS Packet Forwarding Engine Support (T-Series) [8.5-20081017.0]JUNOS Online Documentation [8.5-20081017.0]JUNOS Routing Software Suite [8.5-20081017.0]关键字段说明:Hostname 设备主机名Model 设备型号[] 方括号里是JUNOS软件版本,例如8.5-20081017.0show chassis hardware detail命令功能:察看设备的硬件清单、类型、序列号等信息命令举例:> show chassis hardware detailHardware inventory:Item Version Part number Serial number DescriptionChassis 67705 T640Midplane REV 03 710-005608 RB1631 T640 BackplaneFPM GBUS REV 09 710-002901 RA3668 T640 FPM BoardFPM Display REV 05 710-002897 RA3763 FPM DisplayCIP REV 06 710-002895 JA7568 T-series CIPPEM 0 Rev 11 740-002595 QJ19404 Power Entry Module PEM 1 Rev 11 740-002595 QJ19461 Power Entry Module SCG 0 REV 11 710-003423 JC7437 T640 Sonet Clock Gen. SCG 1 REV 11 710-003423 HY1169 T640 Sonet Clock Gen. Routing Engine 0 REV 07 740-008883 P11123901831 RE-4.0ad0 245 MB SanDisk SDCFB-256 116912G2904E0553 Compact Flashad1 28615 MB FUJITSU MHT2030AR NN6QT4B14JUM Hard DiskRouting Engine 1 REV 07 740-008883 P11123901893 RE-4.0ad0 245 MB SanDisk SDCFB-256 115215K2304Q3326 Compact Flashad1 28615 MB FUJITSU MHT2030AR NN6QT4B14JSF Hard DiskCB 0 REV 16 710-002728 HW3143 T-series Control Board CB 1 REV 16 710-002728 HY2751 T-series Control Board FPC 0 REV 11 710-010154 HX6099 E-FPC Type 3CPU REV 05 710-010169 HY2979 FPC CPU-EnhancedPIC 0 REV 08 750-009450 JF5130 1x STM-64 SM I-64.2PIC 1 REV 17 750-005499 HX5802 1x STM-64 SM LRPIC 2 REV 17 750-005499 HX5805 1x STM-64 SM LRPIC 3 REV 17 750-005499 JF5146 1x STM-64 SM LRMMB 0 REV 04 710-010171 JF2799 MMB-5M3-288mbitMMB 1 REV 04 710-010171 JF2801 MMB-5M3-288mbitFPC 1 REV 11 710-010154 HX9327 E-FPC Type 3CPU REV 05 710-010169 HX5788 FPC CPU-EnhancedPIC 0 REV 17 750-005499 JF5145 1x STM-64 SM LRPIC 1 REV 08 750-009450 JB8179 1x STM-64 SM I-64.2PIC 2 REV 08 750-009450 JA0055 1x STM-64 SM I-64.2PIC 3 REV 08 750-009450 HZ4368 1x STM-64 SM I-64.2MMB 0 REV 04 710-010171 HZ9765 MMB-5M3-288mbitMMB 1 REV 04 710-010171 HZ9756 MMB-5M3-288mbitFPC 2 REV 11 710-010154 JB1087 E-FPC Type 3CPU REV 05 710-010169 HX9282 FPC CPU-EnhancedPIC 0 REV 17 750-005499 HX5808 1x STM-64 SM LRPIC 1 REV 09 750-009553 HZ0693 4x STM-16 SDHXcvr 0 REV 01 740-011785 P6M0LMZ SFP-SRXcvr 1 REV 01 740-011785 P6N134X SFP-SRXcvr 2 REV 01 740-011785 P6M0LW2 SFP-SRXcvr 3 REV 01 740-011785 P6M0LBB SFP-SRPIC 2 REV 09 750-009553 JB9567 4x STM-16 SDHXcvr 0 REV 01 740-011787 P6P2GPT SFP-LRXcvr 1 REV 01 740-011787 P6A1067 SFP-LRXcvr 2 REV 01 740-011787 P6P2JA8 SFP-LRXcvr 3 REV 01 740-011787 P6P2H4U SFP-LRPIC 3 REV 09 750-009553 JB8529 4x STM-16 SDHXcvr 0 REV 01 740-011785 P6N0TPS SFP-SRXcvr 1 REV 01 740-011787 789520D00070 SFP-LRMMB 0 REV 04 710-010171 JE0245 MMB-5M3-288mbitMMB 1 REV 04 710-010171 JE0253 MMB-5M3-288mbitFPC 3 REV 11 710-010154 HW9461 E-FPC Type 3CPU REV 05 710-010169 JB0694 FPC CPU-EnhancedPIC 0 REV 12 750-007141 JC7550 10x 1GE(LAN), 1000 BASE Xcvr 0 REV 01 740-011782 P6S14Z0 SFP-SXXcvr 1 REV 01 740-011782 P6S14YZ SFP-SXXcvr 2 REV 01 740-011612 840016D00468 SFP-LHXcvr 3 REV 01 740-011612 840016D00462 SFP-LHXcvr 4 NON-JNPR LW210083340518 SFP-LHPIC 1 REV 23 750-005499 NC7415 1x OC-192 SM LRPIC 2 REV 23 750-005499 NA6264 1x OC-192 SM LRPIC 3 REV 15 750-009450 NE9121 1x OC-192 SM SR2MMB 0 REV 04 710-010171 HW9516 MMB-5M3-288mbitMMB 1 REV 04 710-010171 HX9537 MMB-5M3-288mbitFPC 4 REV 06 710-013560 WN7447 E2-FPC Type 3CPU REV 04 710-013563 WN6678 FPC CPU-EnhancedPIC 0 REV 08 750-012793 WN0917 1x 10GE(LAN/WAN) IQ2Xcvr 0 REV 01 740-014290 KCJ0116 XFP-10G-ERMMB 0 REV 07 710-010171 WN6351 MMB-5M3-288mbitMMB 1 REV 07 710-010171 WN6422 MMB-5M3-288mbitFPC 5 REV 06 710-013560 WR7062 E2-FPC Type 3CPU REV 04 710-013563 WR0915 FPC CPU-EnhancedPIC 0 REV 09 750-012793 WR4935 1x 10GE(LAN/WAN) IQ2Xcvr 0 REV 01 740-014279 T08C54627 XFP-10G-LRMMB 0 REV 07 710-010171 WR0691 MMB-5M3-288mbitMMB 1 REV 07 710-010171 WR0711 MMB-5M3-288mbitFPC 6 REV 14 710-010845 DM3432 FPC Type 4CPU REV 06 710-011481 DM1909 FPC CPU-EnhancedPIC 0 REV 16 750-012518 DL2812 4x OC-192 SONET XFPMMB 0 REV 01 710-016606 DL2973 ST-MMBFPC 7 REV 08 710-010233 HZ3882 E-FPC Type 1CPU REV 05 710-010169 HZ1077 FPC CPU-EnhancedPIC 0 REV 04 750-011209 JB4517 Adaptive Services-IIMMB 1 REV 03 710-008923 JA9320 MMB 3M 288-bitSPMB 0 REV 10 710-003229 HW4789 T-series Switch CPUSPMB 1 REV 10 710-003229 HZ9267 T-series Switch CPUSIB 0 REV 08 750-012835 WT1330 SIB-I8-F16 2.0SIB 1 REV 08 750-012835 WT1319 SIB-I8-F16 2.0SIB 2 REV 08 750-012835 WT1331 SIB-I8-F16 2.0SIB 3 REV 08 750-012835 WT1298 SIB-I8-F16 2.0SIB 4 REV 08 750-012835 WT1296 SIB-I8-F16 2.0Fan Tray 0 Front Top Fan TrayFan Tray 1 Front Bottom Fan TrayFan Tray 2 Rear Fan Tray关键字段说明:Item 板卡列表Version 硬件版本Part Number 器件号码Serial Number 板卡序列号Description 板卡类型描述show chassis fpc命令功能:察看FPC(Flexible PIC Concentrator)板卡的状态、温度、CPU利用率、内存利用率等信息命令举例:> show chassis fpcTemp CPU Utilization (%) Memory Utilization (%)Slot State (C) Total Interrupt DRAM (MB) Heap Buffer0 Online 26 3 0 256 37 491 Online 26 3 0 256 37 492 Online 26 6 0 256 37 503 Online 27 5 0 256 37 494 Online 26 3 0 1024 7 495 Online 26 2 0 10247 496 Online 33 5 0 1024 9 497 Online 23 1 0 256 29 49关键字段说明:Slot FPC槽位号State 状态,如果是非Online状态,则表示异常 Temp 温度CPU Utilization FPC的CPU利用率,百分比表示Total 总共的CPU利用率Interrupt 中断的CPU利用率Memory Utilization FPC的内存利用率,百分比表示DRAM (MB) FPC的动态内存(DRAM)大小,单位为MB Heap 动态内存的利用率Buffer 缓存的利用率show chassis fpc detail命令功能:察看FPC板卡的状态、温度、内存大小、启动时间等信息命令举例:> show chassis fpc detailSlot 0 information:State OnlineTemperature 26 degrees C / 78 degrees FTotal CPU DRAM 256 MBTotal SRAM 72 MBTotal SDRAM 1280 MBStart time 2008-12-19 01:12:34 CSTUptime 88 days, 10 hours, 9 minutes, 58 seconds Slot 1 information:State OnlineTemperature 26 degrees C / 78 degrees FTotal CPU DRAM 256 MBTotal SRAM 72 MBTotal SDRAM 1280 MBStart time 2008-12-19 01:12:37 CSTUptime 88 days, 10 hours, 9 minutes, 55 seconds Slot 2 information:State OnlineTemperature 26 degrees C / 78 degrees FTotal CPU DRAM 256 MBTotal SRAM 72 MBTotal SDRAM 1280 MBStart time 2008-12-19 01:12:39 CSTUptime 88 days, 10 hours, 9 minutes, 53 seconds Slot 3 information:State OnlineTemperature 27 degrees C / 80 degrees FTotal CPU DRAM 256 MBTotal SRAM 72 MBTotal SDRAM 1280 MBStart time 2008-12-19 01:12:41 CSTUptime 88 days, 10 hours, 9 minutes, 51 seconds Slot 4 information:State OnlineTemperature 26 degrees C / 78 degrees FTotal CPU DRAM 1024 MBTotal SRAM 72 MBTotal SDRAM 1280 MBStart time 2008-12-19 01:12:57 CSTUptime 88 days, 10 hours, 9 minutes, 35 seconds Slot 5 information:State OnlineTemperature 26 degrees C / 78 degrees FTotal CPU DRAM 1024 MBTotal SRAM 72 MBTotal SDRAM 1280 MBStart time 2008-12-19 01:12:59 CSTUptime 88 days, 10 hours, 9 minutes, 33 seconds Slot 6 information:State OnlineTemperature 33 degrees C / 91 degrees FTotal CPU DRAM 1024 MBTotal SRAM 64 MBTotal SDRAM 1280 MBStart time 2008-12-19 01:12:55 CSTUptime 88 days, 10 hours, 9 minutes, 37 seconds Slot 7 information:State OnlineTemperature 23 degrees C / 73 degrees FTotal CPU DRAM 256 MBTotal SRAM 36 MBTotal SDRAM 384 MBStart time 2008-12-19 01:12:52 CSTUptime 88 days, 10 hours, 9 minutes, 40 seconds关键字段说明:State 状态,如果是非Online状态,则表示异常Temperature 温度Total CPU DRAM FPC的动态内存(DRAM)大小,单位为MBTotal SRAM FPC的静态内存的大小,单位为MBTotal SDRAM FPC的共享内存的大小,单位为MBStart time FPC启动时间Uptime 自上次Online,迄今为止的时间show chassis fpc pic‐status命令功能:察看PIC(Physical Interface Card)的状态列表命令举例:> show chassis fpc pic-statusSlot 0 Online E-FPC Type 3PIC 0 Online 1x STM-64 SM I-64.2PIC 1 Online 1x STM-64 SM LRPIC 2 Online 1x STM-64 SM LRPIC 3 Online 1x STM-64 SM LRSlot 1 Online E-FPC Type 3PIC 0 Online 1x STM-64 SM LRPIC 1 Online 1x STM-64 SM I-64.2PIC 2 Online 1x STM-64 SM I-64.2PIC 3 Online 1x STM-64 SM I-64.2Slot 2 Online E-FPC Type 3PIC 0 Online 1x STM-64 SM LRPIC 1 Online 4x STM-16 SDHPIC 2 Online 4x STM-16 SDHPIC 3 Online 4x STM-16 SDHSlot 3 Online E-FPC Type 3PIC 0 Online 10x 1GE(LAN), 1000 BASEPIC 1 Online 1x OC-192 SM LRPIC 2 Online 1x OC-192 SM LRPIC 3 Online 1x OC-192 SM SR2Slot 4 Online E2-FPC Type 3PIC 0 Online 1x 10GE(LAN/WAN) IQ2Slot 5 Online E2-FPC Type 3PIC 0 Online 1x 10GE(LAN/WAN) IQ2Slot 6 Online FPC Type 4PIC 0 Online 4x OC-192 SONET XFPSlot 7 Online E-FPC Type 1PIC 0 Online Adaptive Services-II关键字段说明:Slot FPC槽位PIC PIC槽位Online PIC卡状态,如果不是Online状态,则表示异常show chassis pic fpc‐slot <fpc> pic‐slot <pic>命令功能:察看PIC(Physical Interface Card)的类型、状态、版本、Online时间等信息命令举例:> show chassis pic fpc-slot 0 pic-slot 0FPC slot 0, PIC slot 0 information:Type 1x STM-64 SM I-64.2ASIC type D4P chipState OnlinePIC version 2.8Uptime 88 days, 10 hours, 22 minutes, 46 seconds关键字段说明:Type PIC类型State 状态Uptime 自上次Online,迄今为止的时间show chassis rouging‐engine命令功能:察看路由引擎(RE)的状态、主备关系、温度、CPU利用率、内存利用率、型号、启动时间等信息命令举例:> show chassis routing-engineRouting Engine status:Slot 0:Current state BackupElection priority Master (default)Temperature 37 degrees C / 98 degrees FCPU temperature 38 degrees C / 100 degrees FDRAM 2048 MBMemory utilization 15 percentCPU utilization:User 0 percentBackground 0 percentKernel 0 percentInterrupt 0 percentIdle 99 percentModel RE-4.0Serial ID P11123901831Start time 2008-12-19 01:13:17 CSTUptime 88 days, 10 hours, 26 minutes, 46 secondsRouting Engine status:Slot 1:Current state MasterElection priority Backup (default)Temperature 36 degrees C / 96 degrees FCPU temperature 38 degrees C / 100 degrees FDRAM 2048 MBMemory utilization 47 percentCPU utilization:User 1 percentBackground 1 percentKernel 5 percentInterrupt 0 percentIdle 92 percentModel RE-4.0Serial ID P11123901893Start time 2008-12-18 23:42:41 CSTUptime 88 days, 11 hours, 57 minutes, 33 secondsLoad averages: 1 minute 5 minute 15 minute0.19 0.17 0.08关键字段说明:Slot RE槽位号Current State 当前主备状态,Master表示主用,Backup表示备份 Election Priority 启动时主备选举的优先权Temperature 温度CPU Temperature CPU温度DRAM 内存大小,单位为MBMemory Utilization 内存利用率,百分比表示CPU Utilization CPU利用率,百分比表示Idle CPU空闲的时间百分比,如果小于10%,表示异常Model 路由引擎的型号Serial ID 路由引擎的序列号Start time 路由引擎的启动时间Uptime 路由引擎自上次启动,迄今为止的时间Load Average 路由引擎负荷大小,在最近1分钟、5分钟和15分钟s how chassis feb (只适用于M120)命令功能:察看M120路由器的FEB(Forwarding Engine Board)转发引擎板的状态、温度、CPU 利用率、内存利用率等信息命令举例:> show chassis febTemp CPU Utilization (%) Memory Utilization (%)Slot State (C) Total Interrupt DRAM (MB) Heap Buffer0 Empty1 Empty2 Online 26 1 0 512 15 603 Online 29 1 0 512 15 604 Empty5 Empty关键字段说明:Slot FPC槽位号State 状态,如果是非Online状态,则表示异常Temp 温度CPU Utilization FEB的CPU利用率,百分比表示Total 总共的CPU利用率Interrupt 中断的CPU利用率Memory Utilization FEB的内存利用率,百分比表示DRAM (MB) FEB的动态内存(DRAM)大小,单位为MBHeap 动态内存的利用率Buffer 缓存的利用率show chassis feb detail (只适用于M120)命令功能:察看M120路由器的FEB板的状态、温度、内存大小、启动时间等信息命令举例:> show chassis feb detailSlot 2 information:State OnlineIntake temperature 26 degrees C / 78 degrees FExhaust A temperature 28 degrees C / 82 degrees FExhaust B temperature 31 degrees C / 87 degrees FTotal CPU DRAM 512 MBTotal DDR DRAM 1024 MBTotal RLDRAM 64 MBStart time: 2008-12-11 00:25:34 CSTUptime: 96 days, 11 hours, 41 minutes, 18 seconds Slot 3 information:State OnlineIntake temperature 29 degrees C / 84 degrees FExhaust A temperature 29 degrees C / 84 degrees FExhaust B temperature 29 degrees C / 84 degrees FTotal CPU DRAM 512 MBTotal DDR DRAM 1024 MBTotal RLDRAM 64 MBStart time: 2008-12-11 00:25:36 CSTUptime: 96 days, 11 hours, 41 minutes, 16 seconds关键字段说明:State 状态,如果是非Online状态,则表示异常Intake Temperature 进风口温度Exhaust A Temperature 出风口A的温度Exhaust B Temperature 出风口B的温度Total CPU DRAM FEB的动态内存(DRAM)大小,单位为MBTotal DDR DRAM FEB的双速率内存的大小,单位为MBTotal RLDRAM FEB的低延迟内存的大小,单位为MBStart time FEB启动时间Uptime 自上次Online,迄今为止的时间show chassis fpc‐feb‐connectivity (只适用于M120) 命令功能:察看M120路由器FPC板与FEB板的对应关系命令举例:> show chassis fpc-feb-connectivityFPC FPC type FPC state Connected FEB FEB state Link status0 Empty 0 Empty1 Empty 1 Empty2 Type 1 Online 2 Online OK3 Type 1 Online 3 Online OK4 Empty 4 Empty5 Empty 5 Empty关键字段说明:FPC FPC槽位FPC type FPC类型,有类型一、二、三等FPC state FPC状态Connected FEB FPC对应的FEB槽位号FEB state FEB状态Link status FPC与FEB之间连路的状态show ntp status命令功能:察看NTP(网络时钟协议)的状态命令举例:> show ntp statusstatus=06f4 leap_none, sync_ntp, 15 events, event_peer/strat_chg,version="ntpd 4.2.0-a Fri Oct 17 07:19:28 UTC 2008 (1)",processor="i386", system="JUNOS8.5-20081017.0", leap=00, stratum=4,precision=-20, rootdelay=307.597, rootdispersion=84.345, peer=6964,refid=59.43.0.6,reftime=cd6999a4.ab17644e Tue, Mar 17 2009 11:38:12.668, poll=10,clock=cd69a233.51b5985f Tue, Mar 17 2009 12:14:43.319, state=4,offset=-13.622, frequency=57.833, jitter=4.748, stability=0.025关键字段说明:Sync_ntp 表示与NTP服务器已同步,如果没有此输出,则表示异常 Stratum 设备的NTP时钟层次Precision 设备的时钟精度Reftime 当前参考时间端口状态维护命令show interfaces descriptions命令功能:显示接口描述列表命令举例:> show interfaces descriptionsInterface Admin Link Descriptionso-0/0/0.0 up up To 2 10G(S-64N2005CN2)so-0/1/0.0 up down To 2 10G::NoResourceso-0/2/0.0 up up To 2 10G(S-64N2005CN2);so-0/3/0.0 up up To 2 10G(S-64N2003CN2)so-1/0/0.0 up up To 2 10G-1so-1/1/0.0 up up To 2 10G-1so-1/2/0.0 up up To BJ-BJ-JA-C-3.163 10G-1::AS4134so-1/3/0.0 up up To MAN 10G-1::AS4847::BeiJingso-2/0/0.0 up up To 2 10G-1so-2/1/0.0 up up To 2 2.5G(S-16N0003CN2)so-2/1/1.0 up up To 2 2.5G(S-16N0002CN2)so-2/1/2.0 up up To 2 2.5G(S-16N0002CN2)so-2/1/3.0 up up To 2 2.5G(S-16N0004CN2) so-2/2/0.0 up up To 2 2.5G(S-16N0001CN2) so-2/2/1.0 up down To 2 2.5G::NoResource so-2/2/2.0 up up To 2 2.5G(S-16N0005CN2) so-2/2/3.0 up up To 2 2.5G-1so-2/3/0.0 up up To 2 2.5G-1so-2/3/1.0 up up To 2 2.5G-2ge-3/0/0.0 up up To 2 GE-1ge-3/0/1.0 up up To 2 GE-1ge-3/0/2.0 up up To 2 GE-1ge-3/0/3.0 up up To 2 GE-1ge-3/0/4.0 up up To DNS GE-1::AS64996::BeiJingxe-4/0/0.0 up up To CDN 10G-1::AS64569::BeiJingxe-5/0/0 up up To BJ-BJ-JA-CC-C7609-1 10GEgr-7/0/0.10 up up to_Route Exp(2006-02-24)(linyh);gr-7/0/0.20 down up to_myFreeBSD(2006-01-10)(wanglq)gr-7/0/0.40 up up To Zhong-Ying NMC-RE linyhlo0.0 up up For Global Routing关键字段说明:Interface 接口名Admin 接口管理状态Link 接口物理链路状态Description 接口描述show interfaces terse命令功能:显示接口概要信息命令举例:> show interfaces terseInterface Admin Link Proto Local Remote so-0/0/0 up upso-0/0/0.0 up up inet 59.43.17.1/30isomplsso-0/1/0 up downso-0/1/0.0 up down inet 59.43.17.5/30isompls关键字段说明:Interface 接口名Admin 接口管理状态Link 接口物理链路状态。