NSX CLI Guide

Networking

Associated Commands:

CLI Description Command

Clear a BFD session stats


Clear the statistics for the specified BFD session
clear bfd-session local-ip <ip46-address> remote-ip <ip46-address> stats

Clear BFD sessions stats


Clear the statistics for all BFD sessions.
clear bfd-sessions stats

Reset specific BGP neighbor session


Reset specific BGP neighbor session.
clear bgp <ip46-address>

Reset all BGP neighbor sessions


Reset all BGP neighbor sessions.
clear bgp neighbors

Clear IDS Engine Event stats


clear IDS Engine Event stats.
clear edgeids events stats

Clear the stats of a specific gateway interface


Clear the statistic counters for the specified gateway interface.
clear gateway interface <dpd-uuid-lrouter-port-arg> stats

Delete VLAN and/or bond network interface


Delete the specified VLAN network interface and all it's configuration, or the specified bond configuration, or both if a VLAN was configured over the bond. Users must configure an alternate interface for management.
clear interface <configurable-interface-name>

Remove network IP configuration from the interface


Remove all network configuration from the specified interface.
clear interface <configurable-interface-name> ip

Clear the interface plane


Clear the network interface plane configuration.
clear interface <configurable-interface-name> plane

Clear statistics of a specified pool


Clear the statistics for a specific load balancer and pool. In rare cases some of the counters may not be cleared and when that happens please try issuing the command again.
clear load-balancer <dlb-uuid-arg> pool <pool-arg> stats

Clear statistics of all pools


Clear the statistics for all pools of a specific load balancer. In rare cases some of the counters may not be cleared and when that happens please try issuing the command again.
clear load-balancer <dlb-uuid-arg> pools stats

Clear load balancer statistics


Clear the statistics for a specific load balancer.
clear load-balancer <dlb-uuid-arg> stats

Clear statistics of a specified virtual server


Clear the statistics for a specific load balancer and virtual server. In rare cases some of the counters may not be cleared and when that happens please try issuing the command again.
clear load-balancer <dlb-uuid-arg> virtual-server <vs-arg> stats

Clear statistics of all virtual servers


Clear the statistics for all virtual servers of a specific load balancer. In rare cases some of the counters may not be cleared and when that happens please try issuing the command again.
clear load-balancer <dlb-uuid-arg> virtual-servers stats

Clear statistics of a specified pool


Clear the statistics for a specific load balancer and pool. In rare cases some of the counters may not be cleared and when that happens please try issuing the command again.
clear load-balancer <lb-uuid-arg> pool <pool-uuid-arg> stats

Clear statistics of all pools


Clear the statistics for all pools of a specific load balancer. In rare cases some of the counters may not be cleared and when that happens please try issuing the command again.
clear load-balancer <lb-uuid-arg> pools stats

Clear load balancer statistics


Clear the statistics for a specific load balancer.
clear load-balancer <lb-uuid-arg> stats

Clear statistics of a specified virtual server


Clear the statistics for a specific load balancer and virtual server. In rare cases some of the counters may not be cleared and when that happens please try issuing the command again.
clear load-balancer <lb-uuid-arg> virtual-server <vs-uuid-arg> stats

Clear statistics of all virtual servers


Clear the statistics for all virtual servers of a specific load balancer. In rare cases some of the counters may not be cleared and when that happens please try issuing the command again.
clear load-balancer <lb-uuid-arg> virtual-servers stats

Clear load balancer performance profile settings


Clear load balancer performance profile parameter settings from edge.
clear load-balancer perf-profile

Clear the stats of a specific logical router interface


Clear the statistic counters for the specified logical router interface.
clear logical-router interface <dpd-uuid-lrouter-port-arg> stats

Reset specific OSPF neighbor session


Reset specific OSPF neighbor session.
clear ospf <ip-address>

Reset all OSPF neighbor sessions


Reset all OSPF neighbor sessions.
clear ospf neighbors

Clear all PIM BSM data & messages


Clear all PIM BSM data & messages.
clear pim bsr-data

Delete all TLS inspection cached certificates


Delete all TLS inspection cached certificates.
clear tls-inspection cached-certificates

Delete TLS inspection cached certificates


Delete TLS inspection cached certificates.
clear tls-inspection cached-certificates <certificate-id-string-arg>

Clear all TLS inspection error stats


Clear all TLS inspection error stats.
clear tls-inspection errors

Clear all TLS inspection traffic stats


Clear all TLS inspection traffic stats.
clear tls-inspection traffic-stats

Delete all packet capture sessions


Delete all packet capture sessions.
del all capture sessions

Delete packet capture session


Delete a packet capture session configuration.
del capture session <dpd-number-session-id-arg>

Delete a configured packet capture session


Delete a packet capture session configuration.
del capture session <dpd-number-session-id-arg>

Delete an interface from a packet capture session


Delete the specified interface from a packet capture session configuration. If you are only monitoring one interface, this deletes the monitoring session configuration.
del capture session <dpd-number-session-id-arg> interface <dpd-uuid-name-port-arg>

Delete an interface from a packet capture session


Delete the specified interface from a packet capture session configuration. If you are only monitoring one interface, this deletes the monitoring session configuration.
del capture session <dpd-number-session-id-arg> interface <variable-interface-name>

Delete a configured packet capture session


Delete a packet capture session configuration.
del capture session <esx-session-id-arg>

Delete packet capture session


Delete the specified packet capture session.
del capture session <session-id-arg>

Display packet capture result


Display the result of the specified packet capture session with the tcpdump command.
display capture session <session-id-arg>

Display packet capture result


Display packet capture result with command tcpdump.
display capture session <session-id-arg> parameters <capture-options-arg>

Writes IDPS filter specific statistics to /var/log/nsx-idps/filter_stats.txt


Writes IDPS filter specific statistics to /var/log/nsx-idps/filter_stats.txt
dump ids filter stats

Query all packet capture sessions


Display information for all packet capture sessions.
get all capture sessions

Display logical router BFD config


Display parameters defined in global logical router BFD
get bfd-config

Display info for a BFD session


Display information about the specified BFD session.
get bfd-session local-ip <ip46-address> remote-ip <ip46-address>

Display stats for a BFD session


Display statistics for the specified BFD session.
get bfd-session local-ip <ip46-address> remote-ip <ip46-address> stats

Display info about BFD sessions


Display information about BFD sessions.
get bfd-sessions

Display logical router BFD sessions


Display BFD sessions in a logical router
get bfd-sessions [stats]

Display BFD sessions stats


Display the BFD sessions statistics.
get bfd-sessions stats

Display all IPv4 & IPv6 BGP routes


Display all IPv4 & IPv6 BGP routes.
get bgp

Display detailed information about BGP IPv4 route


Display detailed information about BGP IPv4 route.
get bgp <network-address>

Display detailed information about BGP IPv6 route


Display detailed information about BGP IPv6 route.
get bgp <network6-address>

Display all BGP NLRI matching the community.


Display all BGP NLRI matching the community.
get bgp community { NO_EXPORT | NO_ADVERTISE | NO_EXPORT_SUBCONFED | AA:NN }

Display BGP EVPN routes


Display BGP EVPN routes.
get bgp evpn

Display BGP EVPN Ethernet Segment information


Display BGP EVPN Ethernet Segment information.
get bgp evpn es

Display BGP EVPN Ethernet Segment(ES) per EVPN instance(EVI) information


Display BGP EVPN Ethernet Segment(ES) per EVPN instance(EVI) information.
get bgp evpn es-evi

Display BGP EVPN overlay information for all RDs


Display BGP EVPN overlay information for all RDs.
get bgp evpn overlay

Display BGP EVPN VNI information


Display BGP EVPN VNI information.
get bgp evpn vni

Display all IPv4 BGP routes


Display all IPv4 BGP routes.
get bgp ipv4

Display all IPv6 BGP routes


Display all IPv6 BGP routes.
get bgp ipv6

Display all BGP NLRI matching the large-community.


Display all BGP NLRI matching the large-community.
get bgp large-community <bgp-large-community-arg>

Display all BGP neighbor information


Display all BGP neighbor information.
get bgp neighbor

Display information about a specific BGP neighbor


Display information about a specifie BGP neighbor.
get bgp neighbor <ip-address>

Display routes advertised to a BGP neighbor in internal debug context


Display routes advertised to a BGP neighbor in internal debug context
get bgp neighbor <ip-address> advertised-routes

Display routes advertised to a BGP neighbor


Display routes advertised to a BGP neighbor.
get bgp neighbor <ip-address> advertised-routes

Display routes learnt from a BGP neighbor


Display routes learnt from a BGP neighbor.
get bgp neighbor <ip-address> routes

Display routes learnt from a BGP neighbor in internal debug context


Display routes learnt from a BGP neighbor in internal debug context
get bgp neighbor <ip-address> routes

Display a specific BGP neighbor diagnostic information


Display a specific BGP neighbor diagnostic information.
get bgp neighbor <ip46-address> session-diagnostics

Display BGP neighbor diagnostic information


Display BGP neighbor diagnostic information.
get bgp neighbor session-diagnostics

Display summarized inter-sr neighbors information from the default VRF in internal debug context


Display summarized inter-sr neighbors information from the default VRF in internal debug context.
get bgp neighbor summary

Display summarized BGP neighbor information


Display summarized BGP neighbor information.
get bgp neighbor summary

Display summarized BGP neighbor information for a given address-family


Display summarized BGP neighbor information for a given address-family.
get bgp neighbor summary <address-family>

Display all IPv4 & IPv6 BGP routes of shadow VRF


Display all IPv4 & IPv6 BGP routes of shadow VRF.
get bgp vrfid <vrf-id>

Generate BGP/BFD diagnostic report


Generate BGP/BFD diagnostic report.
get bgp-bfd diagnostics report

Show all bridge ports configuration and state


Show all bridge ports configuration and state.
get bridge

Show bridge port configuration and state


Show bridge port configuration and state.
get bridge <dpd-uuid-l2bridge-port-arg>

Display high-availability history of bridge port


Display high-availability history of bridge port.
get bridge <dpd-uuid-l2bridge-port-arg> high-availability-history

Display mac-sync table on a bridge port


Display Mac Sync table on an bridge port.
get bridge <dpd-uuid-l2bridge-port-arg> mac-sync-table

Show bridge port configuration and state attached to specified logical-switch


Show bridge port configuration and state attached to specified logical-switch.
get bridge logical-switch <dpd-uuid-lswitch-arg>

Display mac-sync table on bridge ports


Display mac-sync table on bridge ports.
get bridge mac-sync-table

Show bridge ports whose attached logical-switch name matches the specified name


Show bridge ports whose attached logical-switch name matches the specified name.
get bridge name <bridge-lswitch-name-arg>

Display summary of bridge ports


Display summary of bridge ports.
get bridge summary

Show bridge ports configuration and state with specified vlan


Show bridge ports configuration and state with specified vlan.
get bridge vlan <vlan-id-arg>

Display a packet capture session


Display information about the specified packet capture session.
get capture session <dpd-number-session-id-arg>

Display a packet capture session


Display information about the specified packet capture session.
get capture session <esx-session-id-arg>

Query packet capture session


Display information for the specified packet capture session.
get capture session <session-id-arg>

Display packet capture sessions


Display configured packet capture sessions. Session 0 is reserved for captures started with the start capture interface <interface-name> command.
get capture sessions

Display packet capture sessions


Display configured packet capture sessions.
get capture sessions

Show dhcp ip pool


Display a specific DHCP IP pool.
get dhcp ip-pool <uuid-string-arg>

Show all dhcp ip pool


Display all DHCP IP pools.
get dhcp ip-pools

Show dhcp ip pools matched server uuid


Display DHCP IP pools which matched a specific server UUID.
get dhcp ip-pools server-uuid <uuid-string-arg>

Show DHCPv6 IP pool


Display a specific DHCPv6 IP pool.
get dhcp ipv6-ip-pool <uuid-string-arg>

Show all DHCPv6 IP pools


Display all DHCPv6 IP pools.
get dhcp ipv6-ip-pools

Show DHCPv6 IP pools matching server uuid


Display DHCPv6 IP pools which match a specific server UUID.
get dhcp ipv6-ip-pools server-uuid <uuid-string-arg>

Show all non-released DHCPv6 leases by search string


Display all non-released DHCPv6 leases by search string.
get dhcp ipv6-lease <string-arg>

Show all DHCPv6 leases by search string


Display all DHCPv6 leases(both released and non-released) by search string.
get dhcp ipv6-lease <string-arg> all

Show all non-released DHCPv6 leases


Display all non-released DHCPv6 leases.
get dhcp ipv6-leases

Show all DHCPv6 leases


Display all DHCPv6 leases.
get dhcp ipv6-leases all

Show DHCPv6 static binding


Display a specific DHCPv6 static binding.
get dhcp ipv6-static-binding <uuid-string-arg>

Show all DHCPv6 static bindings


Display all DHCPv6 static bindings.
get dhcp ipv6-static-bindings

Show DHCPv6 static bindings matching server uuid


Display DHCPv6 static bindings which match a specific server UUID.
get dhcp ipv6-static-bindings server-uuid <uuid-string-arg>

Show non-released DHCP lease


Display a specific DHCP lease. You can specify a DHCP server's UUID, or a MAC address, or an IP address.
get dhcp lease <string-arg>

Show DHCP lease


Display a specific DHCP lease. You can specify a DHCP server's UUID, or a MAC address, or an IP address.
get dhcp lease <string-arg> all

Show all non-released dhcp leases


Display all non-released DHCP leases.
get dhcp leases

Show all IP leases under a DHCP server/subnet


Display all IP leases under a DHCP server/subnet
get dhcp leases <dhcp-uuid-arg>

Show all dhcp leases


Display all DHCP leases.
get dhcp leases all

Display DHCP Server IPv6 Stats Entries


Display the DHCP Server IPv6 Stats Entries.
get dhcp server <uuid-string-arg> ipv6-stats

Display DHCP Server IPv4 Stats Entries


Display the DHCP Server IPv4 Stats Entries.
get dhcp server <uuid-string-arg> stats

Show logical dhcp server


Display a specific DHCP server. Optionally specify an argument to display only the status or the synchronization information.
get dhcp server <uuid> [status | sync]

Show all DHCP servers/subnets enabled with DHCP


Display all DHCP servers/subnets enabled with DHCP
get dhcp servers

Show all logical DHCP server


Display all DHCP servers. Optionally specify an argument to display only the status or the synchronization information.

If the edge node is the only member of the edge cluster, the STATUS property will be displayed as UNKNOWN when you call get dhcp servers status because HA (high availability) is not available.
get dhcp servers [status | sync]

Show dhcp static binding


Display a specific DHCP static binding.
get dhcp static-binding <uuid-string-arg>

Show all dhcp static binding


Display all DHCP static bindings.
get dhcp static-bindings

Show dhcp static bindings matched server uuid


Display a specific DHCP static bindings which matched a specific server UUID.
get dhcp static-bindings server-uuid <uuid-string-arg>

Show the dynamic IP pool usage for a DHCP server/subnet


Display the dynamic IP pool usage for a DHCP server/subnet
get dhcp stats <dhcp-uuid-arg>

Display DHCP server config for a host switch and dvport


Display DHCP server config for a host switch and dvport
get dhcp-server config <hs-name-arg> <dvport-id-arg> ipv4

Display DHCP server stats for a host switch and dvport


Display DHCP server stats for a host switch and dvport
get dhcp-server stats <hs-name-arg> <dvport-id-arg> ipv4

Display DNS Forwarder Cache Entries


Display the DNS Forwarder Cache Entries.
get dns-forwarder <uuid-string-arg> cache

Display DNS Forwarder Config


Display the DNS Forwarder Config.
get dns-forwarder <uuid-string-arg> config

Display DNS Forwarder Stats Entries


Display the DNS Forwarder Stats Entries.
get dns-forwarder <uuid-string-arg> stats

Display DNS Forwarder Status


Display DNS Forwarder Status
get dns-forwarder <uuid-string-arg> status

Display DNS Forwarder Entries


Display the DNS Forwarder Entries.
get dns-forwarder <uuid-string-arg> table

Live debugging DNS Forwarder


Live debugging the DNS Forwarder
get dns-forwarder <uuid> live-debug [server-ip <ip-address>] [lookup <hostname-or-ip-address>]

Display DNS Forwarder Cache Entries Per SR


Display the DNS Forwarder Cache Entries Per SR.
get dns-forwarder cache

Live debugging DNS forwarder


Live debugging the DNS Forwarder
get dns-forwarder live-debug [server-ip <ip-address>] [lookup <hostname-or-ip-address>]

Display DNS Forwarder Stats Entries Per SR


Display the DNS Forwarder Stats Entries Per SR.
get dns-forwarder stats

Display DNS Forwarder Status Per SR


Display the DNS Forwarder Entries Per SR.
get dns-forwarder status

Display DNS Forwarder Entries Per SR


Display the DNS Forwarder Entries Per SR.
get dns-forwarder table

Display DNS Forwarders Config


Display the DNS Forwarders Config.
get dns-forwarders config

Display DNS Forwarders Status


Display DNS Forwarder Status
get dns-forwarders status

Display NSX DPI Lib Log Level


Display NSX DPI Lib Log Level.
get dpi lib-dfw logging-level all

Display NSX DPI Log Level


Display NSX DPI Log Level.
get dpi logging-level

Display NSX DPI Statistics


Display NSX DPI Statistics.
get dpi stats

Get IDS Event Engine config stats


Get IDS Event Engine config stats.
get edgeids event-config stats

Get IDS Engine Event stats


Get IDS Engine Event stats.
get edgeids events stats

Display EVPN All VNIs ARP information


Display EVPN All VNIs ARP information.
get evpn arp

Display EVPN VNI ARP information


Display EVPN VNI ARP information.
get evpn arp ["<vni-value>"]

Display EVPN deployment Mode information


Display EVPN deployment Mode information.
get evpn deployment-mode

Display EVPN Ethernet Segment information


Display EVPN Ethernet Segment information.
get evpn es

Display particular EVPN Ethernet Segment information


Display particular EVPN Ethernet Segment information.
get evpn es <esi-arg>

Display EVPN VNI MAC information


Display EVPN VNI MAC information.
get evpn mac

Display EVPN VNI MAC information


Display EVPN VNI MAC information.
get evpn mac [<vni-value>]

Display router MACs for all VNIs


Display router MACs for all VNIs.
get evpn rmac

Display all EVPN VNI information


Display all EVPN VNI information.
get evpn vni

Display the specified firewall address set


Display the specified firewall address set for the logical router interface.
get firewall <dpd-uuid-firewall-port-arg> addrset name <string-arg>

Display all the firewall address sets


Display all the firewall address sets for the logical router interface.
get firewall <dpd-uuid-firewall-port-arg> addrset sets

Display the specified firewall attribute set


Display the specified firewall attribute set for the logical router interface.
get firewall <dpd-uuid-firewall-port-arg> attrset name <string-arg>

Display all the firewall attribute sets


Display all the firewall attribute sets for the logical router interface.
get firewall <dpd-uuid-firewall-port-arg> attrset sets

Display firewall connection information


Display the firewall connections on the specified logical router interface.
get firewall <dpd-uuid-firewall-port-arg> connection

Display firewall connection count


Display the firewall connection count.
get firewall <dpd-uuid-firewall-port-arg> connection count

Display firewall connection information


Display the firewall connections on the specified logical router interface.
get firewall <dpd-uuid-firewall-port-arg> connection raw

Display firewall connection state


Display the state of the firewall connections.
get firewall <dpd-uuid-firewall-port-arg> connection state

Display firewall interface statistics


Display firewall interface statistics for the specified logical router interface.
get firewall <dpd-uuid-firewall-port-arg> interface stats

Display firewall active/standby configuration


Display the active/standby configuration for the firewall on the specified logical router interface.
get firewall <dpd-uuid-firewall-port-arg> sync config

Display firewall synchronization statistics


Display the firewall synchronization statistics.
get firewall <dpd-uuid-firewall-port-arg> sync stats

Display the fixed timeouts for connection events


Display the fixed timeouts for connection events.
get firewall <dpd-uuid-firewall-port-arg> timeouts

Display specific firewall L7 profile info on given Logical Router UUID


Display specific firewall L7 profile information on given Logical Router UUID.
get firewall <dpd-uuid-lrouter-port-arg> l7-profile <uuid-string-arg>

Display specific firewall L7 profile entry stats info on given Logical Router UUID


Display specific firewall L7 profile entry stats information on given Logical Router UUID.
get firewall <dpd-uuid-lrouter-port-arg> l7-profile <uuid-string-arg> stats

Display all firewall L7 profiles info on given Logical Router UUID


Display all firewall L7 profiles information on given Logical Router UUID.
get firewall <dpd-uuid-lrouter-port-arg> l7-profiles

Display all firewall L7 profile entry stats info on given Logical Router UUID


Display all firewall L7 profile entry stats information on given Logical Router UUID.
get firewall <dpd-uuid-lrouter-port-arg> l7-profiles stats

Display IKE policy


Display IKE policy for the specified logical router interface.
get firewall <uuid> ike policy [<rule-id>]

Display firewall rules


Display firewall rules with expanded address sets for the specified logical router interface.
get firewall <uuid> ruleset [type <rule-type>] rules [<ruleset-detail>]

Display firewall rule statistics


Display firewall rule statistics for the specified logical router interface.
get firewall <uuid> ruleset [type <rule-type>] stats

Display firewall address sets


Display firewall address sets
get firewall <vif-uuid-arg> addrsets

Display firewall fqdn attribute of profiles


Display firewall fqdn attribute of profiles.
get firewall <vif-uuid-arg> fqdn

Display firewall attribute profiles


Display firewall attribute profiles.
get firewall <vif-uuid-arg> profile

Display firewall rules


Display firewall rules
get firewall <vif-uuid-arg> ruleset rules

Display firewall interfaces


Display the logical router or switch interfaces which have firewall rules.
get firewall [logical-switch <uuid>] interfaces

Display firewall addresses for the specified address set


Display firewall addresses for the specified address set.
get firewall addrset name <uuid-arg>

Display firewall address sets for the available virtual interface


Display firewall address sets for the available virtual interface.
get firewall addrset sets

Display firewall connection state


Display the state of the firewall connections in the VRF context.
get firewall connection state

Display firewall fqdn attribute of profiles


Display firewall fqdn attribute of profiles.
get firewall context-profile <context-profile-id-arg> fqdn

Display firewall fqdn attribute of profiles


Display firewall fqdn attribute of profiles.
get firewall context-profiles

Display firewall exclude interfaces


Display firewall exclude interfaces.
get firewall exclude

Get the firewall exclusion list


Display the firewall exclusion list.
get firewall exclude-list

Display firewall exclusion


Display firewall exclusions.
get firewall exclusion

Display firewall interface statistics


Display firewall interface statistics for the specified logical router interface in the VRF context.
get firewall interface stats

Display firewall interfaces


Display the logical router or switch interfaces which have firewall rules.
get firewall interfaces

Display firewall sync interfaces


Display sync configuration for logical router interfaces with firewall rules.
get firewall interfaces sync

Display firewall ipfix containers


Display firewall ipfix containers.
get firewall ipfix-containers

Display firewall ipfix filters


Display firewall ipfix filters.
get firewall ipfix-filters

Display firewall ipfix profile configuration


Display firewall ipfix profile configration.
get firewall ipfix-profiles

Display firewall ipfix statistics


Display firewall ipfix statistics.
get firewall ipfix-stats

Display specific firewall L7 profile info based on UUID


Display specific firewall L7 profile information based on UUID.
get firewall l7-profile <uuid-string-arg>

Display specific firewall L7 profile entry stats based on UUID


Display specific firewall L7 profile entry stats information based on UUID.
get firewall l7-profile <uuid-string-arg> stats

Display all firewall L7 profiles info


Display all firewall L7 profiles information.
get firewall l7-profiles

Display all firewall L7 profile entry stats


Display all firewall L7 profile entry stats information.
get firewall l7-profiles stats

Show DFW packet log file contents


Display the contents of the DFW packet log file.
get firewall packetlog

Show last lines of DFW packet log file contents


Display last lines of the DFW packet log file.
get firewall packetlog last <line-count-arg>

Display firewall rule statistics


Display firewall rule statistics.
get firewall rule-stats

Display total firewall rule statistics


Display total firewall rule statistics.
get firewall rule-stats total

Display the summary of firewall rules


Display the summary of firewall rules.
get firewall rules

Display the firewall status


Display the firewall status.
get firewall status

Get the firewall summary


Display the firewall summary.
get firewall summary

Display firewall active/standby configuration


Display the active/standby configuration for the firewall on the specified logical router interface.
get firewall sync config

Display firewall synchronization statistics


Display the firewall synchronization statistics in the VRF context.
get firewall sync stats

Display firewall threshold alarms


Display firewall threshold alarms.
get firewall threshold-alarms

Display firewall thresholds


Display firewall thresholds.
get firewall thresholds

Display firewall VIFs


Display firewall VIFs
get firewall vifs

Display firewall vsipioctl fqdn entries with no debug


Display firewall vsipioctl fqdn entries with no debug.
get firewall vsipioctl <vsip_commands> [<vsip_param>]

Display the MAC table or IP FIB


Display forwarding information for the current interface. If the interface is a switch port, the MAC address table is displayed. If the interface is a router interface, the IP forwarding table is displayed.
get forwarding

Display the forwarding table


Display the forwarding table for the logical router in the VRF context. Optionally specify a prefix to display only the entry that matches that network.
get forwarding [<prefix>]

Display a gateway


Display information about the specified gateway.
get gateway <dpd-uuid-lrouter-arg>

Display gateway BFD config


Display parameters defined in global gateway BFD
get gateway <dpd-uuid-lrouter-arg> bfd-config

Display IgmpSnooping Table of the Gateway


Display information about IGMP reports snooped in the Gateway
get gateway <dpd-uuid-lrouter-arg> igmp-snooping-table

Display IgmpSnooping Table of the Gateway


Display information about IGMP reports snooped in the Gateway filtered by multicast group
get gateway <dpd-uuid-lrouter-arg> igmp-snooping-table <ip-address>

Display a gateway's interfaces


Display interface information for the specified gateway.
get gateway <dpd-uuid-lrouter-arg> interfaces

Display the interface stats for a gateway


Display the interface statistics for the specified gateway.
get gateway <dpd-uuid-lrouter-arg> interfaces stats

Display the gateway multicast forwarding table


Display the multicast forwarding table for the specified gateway. The forwarding plane merges the mroutes from the control plane and from IGMP snooping to build out mfib. A (s,g) mroute displayed from the control plane may not be shown identically from the forwarding plane. When there are multiple matches from mfib lookup, the packet will be replicated to all valid outgoing interfaces for each matched entry.
get gateway <dpd-uuid-lrouter-arg> mfib

Display multicast forwarding entries matching a multicast group


Display multicast forwarding entries matching a multicast group for the specified gateway. The forwarding plane merges the mroutes from the control plane and from IGMP snooping to build out mfib. A (s,g) mroute displayed from the control plane may not be shown identically from the forwarding plane. When there are multiple matches from mfib lookup, the packet will be replicated to all valid outgoing interfaces for each matched entry.
get gateway <dpd-uuid-lrouter-arg> mfib <ip-address>

Display the gateway's neighbor table


Display the neighbor table for the specified gateway.
get gateway <dpd-uuid-lrouter-arg> neighbors

Display neighbors and stats for a gateway


Display the neighbor table and statistics for the specified gateway.
get gateway <dpd-uuid-lrouter-arg> neighbors stats

Display QoS config for a gateway


Display QoS config for the specified gateway.
get gateway <dpd-uuid-lrouter-arg> qos-config

Display stats for a gateway


Display statistics for the specified gateway.
get gateway <dpd-uuid-lrouter-arg> stats

Display a gateway's tenant context


Display tenant context information for the specified gateway.
get gateway <dpd-uuid-lrouter-arg> tenant-context

Display information about the specified Gateway


Display information about the specified Gateway.
get gateway <gateway-id>

Display the routing table for the specified Gateway


Display the routing table for the specified Gateway.
get gateway <gateway-id> <route-arg>

Display a specific IPv4 route on the specified Gateway


Display a specific IPv4 route on the specified Gateway.
get gateway <gateway-id> <route-arg> <network-address>

Display information about a specific interface on the specified Gateway


Display information about a specific interface on the specified Gateway
get gateway <gateway-id> interface <gateway-interface-id>

Display all interfaces on the specified gateway


Display all interfaces on the specified gateway.
get gateway <gateway-id> interfaces

Get all routing Config entities on the specified Service Gateway


Get all routing Config entities on the specified Service Gateway.
get gateway <gateway-id> routing-config

Display gateway high availability state history


Display the high availability state history for the specified logical router. Only service routers have a high availability status. Use the get gateway command to get a list of logical routers and their router types.
get gateway <nsxa-uuid-service-router-arg> high-availability history state

Display gateway high availability state history


Display the high availability state history for the specified logical router. Only service routers have a high availability status. Use the get gateway command to get a list of logical routers and their router types.
get gateway <nsxa-uuid-service-router-arg> high-availability history state details

Display the gateway high availability status


Display the high availability status for the specified gateway. Only service routers have a high availability status. Use the get gateway command to get a list of gateways and their router types.
get gateway <nsxa-uuid-service-router-arg> high-availability status

Display service groups of the gateway


Display the service groups state for the gateway
get gateway <nsxa-uuid-service-router-arg> service-groups

Display service groups of the gateway


Display the service groups state for the gateway
get gateway <nsxa-uuid-service-router-arg> service-groups details

Display a gateway


Display information about the specified gateway.
get gateway <uuid-arg>

Display forwarding information for a gateway


Display forwarding for the specified gateway.
get gateway <uuid-arg> forwarding

Display forwarding information for a gateway


Display forwarding for the specified gateway, filtered by prefix.
get gateway <uuid-arg> forwarding <network46-address>

Display forwarding information for a gateway


Display forwarding for the specified gateway filtered on prefix.
get gateway <uuid-arg> forwarding <network46-address>

Display IPv4 forwarding for a gateway


Display IPv4 forwarding for the specified gateway.
get gateway <uuid-arg> forwarding ipv4

Display IPv6 forwarding for a gateway


Display IPv6 forwarding for the specified gateway.
get gateway <uuid-arg> forwarding ipv6

Display Mcast Groups information for a gateway


Display Mcast Groups for the specified gateway.
get gateway <uuid-arg> igmp membership

Display Mcast Groups information for a gateway


Display Mcast Groups for the specified gateway.
get gateway <uuid-arg> igmp membership <ip-address>

Display a gateway interface


Display interface information for the specified gateway and port.
get gateway <uuid-arg> interface <uuid-arg>

Display interface instance for a gateway


Display information for the specified gateway instance.
get gateway <uuid-arg> interface <uuid-arg>

Display gateway interface instance policy table reference


Display policy table reference information for the specified gateway instance.
get gateway <uuid-arg> interface <uuid-arg> policy-table-ref

Display a gateway interface statistics


Display interface statistics for the specified gateway and port.
get gateway <uuid-arg> interface <uuid-arg> stats

Display interface instance stats for a gateway


Display interface instance stats for a gateway.
get gateway <uuid-arg> interface <uuid-arg> stats

Display a gateway interface statistics


Display interface statistics for the specified gateway and port.
get gateway <uuid-arg> interface <uuid-arg> stats <ip-version>

Display interface instance stats for a gateway (ipv4)


Display interface instance stats for a gateway (ipv4).
get gateway <uuid-arg> interface <uuid-arg> stats ipv4

Display interface instance stats for a gateway (ipv6)


Display interface instance stats for a gateway (ipv6).
get gateway <uuid-arg> interface <uuid-arg> stats ipv6

Display interfaces for a gateway


Display interface information for the specified gateway.
get gateway <uuid-arg> interfaces

Display neighbor for a gateway


Display neighbor information (ARP/ND cache) for the specified gateway, using IP or MAC.
get gateway <uuid-arg> neighbor <ipormac-address>

Display neighbors for a gateway


Display neighbor information (ARP cache) for the specified gateway.
get gateway <uuid-arg> neighbors

Display gateway BFD sessions


Display BFD sessions in a gateway
get gateway <uuid> bfd-sessions [stats]

Display the gateway forwarding table


Display the forwarding table for the specified gateway. Optionally specify a prefix to display only the entry that matches that network.
get gateway <uuid> forwarding [<prefix>]

Display gateway BFD config


Display parameters defined in global gateway BFD
get gateway bfd-config

Display gateway BFD sessions


Display BFD sessions in a gateway
get gateway bfd-sessions [stats]

Display the forwarding table


Display the forwarding table for the gateway in the VRF context. Optionally specify a prefix to display only the entry that matches that network.
get gateway forwarding [<prefix>]

Display the gateway high availability state history


Display the high availability state history for the gateway in the VRF context.
get gateway high-availability history state

Display the gateway high availability status


Display the high availability status for the gateway in the VRF context.
get gateway high-availability status

Display interface info for a gateway


Display interface information for the specified gateway.
get gateway interface <dpd-uuid-lrouter-port-arg>

Display ARP proxy table for a gateway port


Display ARP proxy for a gateway port.
get gateway interface <dpd-uuid-lrouter-port-arg> arp-proxy

Display interface-group info for gateway interface


Display interface-group info for gateway interface
get gateway interface <dpd-uuid-lrouter-port-arg> interface-groups high-availability

Display the neighbor table of the gateway interface


Display the neighbor table for the specified gateway interface.
get gateway interface <dpd-uuid-lrouter-port-arg> neighbors

Display shadow port mac list for gateway port


Display shadow port mac list for gateway port
get gateway interface <dpd-uuid-lrouter-port-arg> shadow-macs

Get the shadow port MAC address selected for specific IP address


Get the shadow port MAC address selected for specific IP address
get gateway interface <dpd-uuid-lrouter-port-arg> shadow-macs ip <ip46-address> (Deprecated)

Get the shadow port MAC address selected for specific source and destination IP addresses


Get the shadow port MAC address selected for specific source and destination IP addresses
get gateway interface <dpd-uuid-lrouter-port-arg> shadow-macs source-ip <ip46-address> dest-ip <ip46-address>

Display the gateway interface stats


Display statistics for the specified gateway interface.
get gateway interface <dpd-uuid-lrouter-port-arg> stats

Display a gateway's interfaces


Display interface information for the gateway in the VRF context.
get gateway interfaces

Display the gateway ports


Display information for all gateway interfaces.
get gateway interfaces

Display the gateway interface stats


Display statistics for all gateway interfaces.
get gateway interfaces stats

Display the interface statistics of the gateway


Display the interface statistics for the gateway in the VRF context.
get gateway interfaces stats

Display multicast forwarding table The forwarding plane merges the mroutes from the control plane and from IGMP snooping to build out mfib. A (s,g) mroute displayed from the control plane may not be shown identically from the forwarding plane. When there are multiple matches from mfib lookup, the packet will be replicated to all valid outgoing interfaces for each matched entry.


Display the multicast forwarding table for the gateway in the VRF context.
get gateway mfib

Display multicast forwarding entries matching a multicast group in VRF


Display multicast forwarding entries matching a multicast group for the specified gateway in the VRF context. The forwarding plane merges the mroutes from the control plane and from IGMP snooping to build out mfib. A (s,g) mroute displayed from the control plane may not be shown identically from the forwarding plane. When there are multiple matches from mfib lookup, the packet will be replicated to all valid outgoing interfaces for each matched entry.
get gateway mfib <ip-address>

Display the neighbors table


Display the neighbors table for all gateway interfaces.
get gateway neighbors

Display the gateway's neighbor table


Display the neighbor table for the gateway in the VRF context.
get gateway neighbors

Display specific IPv4 routes from all the Gateway


Display specific IPv4 routes from all the Gateway.
get gateway routes <network-address>

Display the gateway statistics


Display statistics for the gateway in the VRF context.
get gateway stats

Display a gateway's tenant context


Display tenant context information for the gateway in the VRF context.
get gateway tenant-context

Display a proximity routing policy table


Display information about the specified proximity routing policy table.
get gateway-policy-table <policy_table_id_arg_esx>

Display proximity gateway policy tables summary


Display information about proximity gateway policy tables on this hypervisor host.
get gateway-policy-tables

Display information about gateways asscociated with the VIF on this public cloud host


Display information about gateways asscociated with the VIF on this public cloud host.
get gateways

Display gateway summary


Display information about gateways on this hypervisor host.
get gateways

Display gateways


Display information about all gateways.
get gateways

Display gateways and stats


Display statistics for all gateways.
get gateways stats

Display TN TEP Groups for a Host switch


Display the TN TEP Groups configured for a specified host switch
get global-tep-group <hs-name-arg>

Display Global VTEP table


Display the Global VTEP table
get global-vtep-table <hs-name-arg>

Display info about GRE keepalive


Display information about GRE keepalive. For GRE tunnel information use tunnel-ports CLI.
get gre-keepalive

Display info for a GRE keepalive


Display information about the specified GRE keepalive.
get gre-keepalive local-ip <ip46-address> remote-ip <ip46-address>

Display stats for a GRE keepalive


Display statistics for the specified GRE keepalive.
get gre-keepalive local-ip <ip46-address> remote-ip <ip46-address> stats

Display stats for GRE keepalive


Display statistics for GRE keepalive only. For GRE tunnel stats use tunnel-ports CLI.
get gre-keepalive stats

Display the logical router high availability status


Display the high availability status for the logical router in the VRF context.
get high-availability status

Display NSX IDS Engine Fast Log setting


Display NSX IDS Engine Fast Log setting.
get ids engine alertlog

Display IDS Engine Fast Log setting


Display IDS Engine Fast Log setting.
get ids engine fastlog

Displays all IDS global stats


Displays all IDS global stats.
get ids engine global stats

Display IDS logging level


Displays the IDS logging level.
get ids engine logging-level

Display NSX IDS Engine Log Level


Display NSX IDS Engine Log Level.
get ids engine logging-level

Display IDS profiles


Displays the IDS profiles.
get ids engine profiles

Display NSX IDS Engine Profiles


Display NSX IDS Engine Profiles.
get ids engine profiles

Lists IDS profiles for a specified signature


Displays the IDS profiles for the specified signature.
get ids engine profiles signature <ids-sig-id-arg>

Display NSX IDS Engine Profile statistics


Display NSX IDS Engine Profile statistics.
get ids engine profilestats <profile-id>

Display NSX IDS Enginet Profile status


Display NSX IDS Engine Profile status
get ids engine profilestatus <profile-id>

Display NSX IDS Engine Rules


Display NSX IDS Engine Rules.
get ids engine rules

Get Signature Action for a particular RuleID, ProfileID, SignID


Get Signature Action for a particular RuleID, ProfileID, SignID
get ids engine signaction <rule-id> <profile-id> <sign-id>

Checks for membership and action for a signature-profile pair


Checks for membership and action for a signature-profile pair.
get ids engine signature <ids-sig-id-arg> profile <context-profile-id-arg> membership

Display NSX IDS Engine global statistics


Display NSX IDS Engine global statistics.
get ids engine stats

Display IDS Enable/Disable


Displays the IDS Enable/Disable Status.
get ids engine status

Display NSX IDS Engine Status


Display NSX IDS Engine Status.
get ids engine status

Get IDS Event Engine queue stats


Get IDS Event Engine queue stats.
get ids events queue stats

Get IDS Event Engine stats


Get IDS Event Engine stats.
get ids events stats

Display NSX IDPS filter specific statistics


Display NSX IDPS filter specific statistics.
get ids filter stats <filtername-arg>

Display NSX IDS Log Level


Display NSX IDS Log Level.
get ids logging-level

Display NSX IDS Profiles


Display NSX IDS Profiles.
get ids profiles

Display NSX IDS Rules


Display NSX IDS Rules.
get ids rules

Display NSX IDS Status


Display NSX IDS Status.
get ids status

Display IgmpSnooping Table


Display information about all IGMP reports snooped by the Edge
get igmp-snooping-table

Display IgmpSnooping Table


Display information about all IGMP reports snooped in the LR
get igmp-snooping-table

Display IgmpSnooping Table


Display information about all IGMP reports snooped in the LR
get igmp-snooping-table <multicast-ip-address>

Display IgmpSnooping Stats


Display statistics about IGMP reports snooped by the Edge
get igmp-snooping-table stats

Display network interface properties


Display information about the specified network interface.
get interface <edge-view-interface-name>

Display network interface properties


Display information about the specified network interface.
get interface <interface-name-arg>

Display the logical router interface-groups high availability status


Display the high availability status of interface-groups for the logical router in the VRF context.
get interface-groups high-availability

Display a logical router's interfaces


Display interface information for the logical router in the VRF context.
get interfaces

Display all network interface properties


Display information about all network interfaces.
get interfaces

Display the interface statistics of the logical router


Display the interface statistics for the logical router in the VRF context.
get interfaces stats

Display discovered bindings


Display discovered bindings.
get ip-discovery bindings

Display ip discovery bindings for a host switch and dvport


Display ip discovery bindings for a host switch and dvport.
get ip-discovery bindings <hs-name-arg> <dvport-id-arg>

Display ipv4 discovery bindings for a host switch and dvport


Display ipv4 discovery bindings for a host switch and dvport.
get ip-discovery bindings <hs-name-arg> <dvport-id-arg> ipv4

Display ipv6 discovery bindings for a host switch and dvport


Display ipv6 discovery bindings for a host switch and dvport.
get ip-discovery bindings <hs-name-arg> <dvport-id-arg> ipv6

Display discovered bindings for a given logical port


Display discovered bindings for a given logical port.
get ip-discovery bindings <logical-port>

Display discovered bindings for a given logical port and type


Display discovered bindings for a given logical port and type.
get ip-discovery bindings <logical-port> <ip-version>

Display ip-discovery config for all logical ports


Display ip-discovery profile for all logical ports.
get ip-discovery config

Display IP discovery config for a host switch and dvport


Display IP discovery config for a host switch and dvport.
get ip-discovery config <hs-name-arg> <dvport-id-arg>

Display ip-discovery config for a given logical port


Display ip-discovery config for a given logical port.
get ip-discovery config <logical-port>

Display ignore bindings list


Display ignore bindings list.
get ip-discovery ignore-list

Display ip discovery ignore list for a host switch and dvport


Display ip discovery ignore list for a host switch and dvport.
get ip-discovery ignore-list <hs-name-arg> <dvport-id-arg>

Display ignore bindings list for a given logical port


Display ignore bindings list for a given logical port.
get ip-discovery ignore-list <logical-port>

Display ignore bindings list for a given logical port and type


Display ignore bindings list for a given logical port and type.
get ip-discovery ignore-list <logical-port> <ip-version>

Display ip-discovery ignore list stats for all logical ports


Display ip-discovery ignore list stats for all logical ports.
get ip-discovery ignore-list stats

Display ip discovery ignore list stats for a host switch and dvport


Display ip discovery ignore list stats for a host switch and dvport.
get ip-discovery ignore-list stats <hs-name-arg> <dvport-id-arg>

Display ip-discovery ignore list stats for a given logical ports.


Display ip-discovery ignore list stats for a given logical ports.
get ip-discovery ignore-list stats <logical-port>

Display ip-discovery stats for all logical ports


Display ip-discovery stats for all logical ports.
get ip-discovery stats

Display ip discovery stats for a host switch and dvport


Display ip discovery stats for a host switch and dvport.
get ip-discovery stats <hs-name-arg> <dvport-id-arg>

Display ip-discovery stats for a given logical port


Display ip-discovery profile for a given logical port.
get ip-discovery stats <logical-port>

Display full information from CA Certificate


Display full information from a specific CA Certificate
get ipsecvpn ca-certificate <uuid-string-arg>

Display Subject Name from CA Certificates


Display Subject Name from all CA Certificates.
get ipsecvpn ca-certificates

Display full information from CA Certificates


Display full information from all CA Certificates.
get ipsecvpn ca-certificates verbose

Display complete information from Certificates


Display complete information from a specific Certifiate.
get ipsecvpn certificate <uuid-string-arg>

Display Subject Name from Certificates


Display Subject Names from all Certificates.
get ipsecvpn certificates

Display complete information from Certificates


Display complete information from all Certificates.
get ipsecvpn certificates verbose

Display all configured Dead Peer Detection profiles


Display all configured Dead Peer Detection profiles.
get ipsecvpn config dpd-profile

Display configured Dead Peer Detection profile


Display configured Dead Peer Detection profile.
get ipsecvpn config dpd-profile <uuid-string-arg>

Display all configured IKE profiles


Display all configured IKE profiles.
get ipsecvpn config ike-profile

Display configured IKE profile


Display configured IKE profile.
get ipsecvpn config ike-profile <uuid-string-arg>

Display all configured IPSec local endpoint profiles


Display all configured IPSec local endpoint profiles.
get ipsecvpn config local-endpoint

Display configured IPSec local endpoint profile


Display configured IPSec local endpoint profile.
get ipsecvpn config local-endpoint <uuid-string-arg>

Display CA-Certificates configured for IPsec Local Endpoint


Display all CA-Certificates for a specific IPsec Local Endpoint.
get ipsecvpn config local-endpoint <uuid-string-arg> ca-certificates

Display Certificate configured for IPsec Local Endpoint


Display Certificate for a specific IPsec Local Endpoint.
get ipsecvpn config local-endpoint <uuid-string-arg> certificate

Display CRL configured for IPsec Local Endpoint


Display all CRLs for a specific IPsec Local Endpoint.
get ipsecvpn config local-endpoint <uuid-string-arg> crls

Display all configured MultiPath Groups


Display all configured MultiPath Groups.
get ipsecvpn config multi-path-group

Display configured MultiPath Group


Display configured MultiPath Group.
get ipsecvpn config multi-path-group <uuid-string-arg>

Display all configured IPSec peer endpoint profiles


Display all configured IPSec peer endpoint profiles.
get ipsecvpn config peer-endpoint

Display configured IPSec peer endpoint profile


Display configured IPSec peer endpoint profile.
get ipsecvpn config peer-endpoint <uuid-string-arg>

Display IPSec Service configuration from NestDB


Display IPSec Servicce configuration from NestDB.
get ipsecvpn config service

Display all configured IPSec VPN sessions


Display all configured IPSec VPN sessions.
get ipsecvpn config session

Display a configured IPSec VPN session


Display a configured IPSec VPN session.
get ipsecvpn config session <uuid-string-arg>

Display a configured IPSec VPN session with specific endpoints


Display a configured IPSec VPN session with specific endpoints.
get ipsecvpn config session local-ip <ip46-address> remote-ip <ip46-address>

Display all configured IPSec tunnel profiles


Display all configured IPsec tunnel profiles.
get ipsecvpn config tunnel-profile

Display configured IPSec tunnel profile


Display configured IPSec tunnel profile.
get ipsecvpn config tunnel-profile <uuid-string-arg>

Display complete information from CRL certificate


Display complete information from a specific CRL certificate.
get ipsecvpn crl <uuid-string-arg>

Display Issuer Name from CRL Certificates


Display Issuer Name from all CRL certificates.
get ipsecvpn crls

Display complete information from CRL certificates


Display complete information from all CRL certificates.
get ipsecvpn crls verbose

Display all IKE SAs


Display all IKE SAs.
get ipsecvpn ikesa

Display all IKE security associations in active state


Display all IKE security associations in active state.
get ipsecvpn ikesa active

Display all IKE security associations in active state


Display all IKE security associations in active state.
get ipsecvpn ikesa active logical-router <uuid-string-arg>

Display IKE security association in active state on given Logical Router


Display IKE security association in active state on given Logical Router.
get ipsecvpn ikesa active logical-router <uuid-string-arg> sessionid <ipsec-vpn-session-id-arg>

Display IKE security association in active state


Display IKE security association in active state.
get ipsecvpn ikesa active sessionid <ipsec-vpn-session-id-arg>

Display all IKE SAs on given Logical Router


Display all IKE SAs on given Logical Router.
get ipsecvpn ikesa logical-router <uuid-string-arg>

Display an IKE SA on given Logical Router


Display an IKE SA on given Logical Router.
get ipsecvpn ikesa logical-router <uuid-string-arg> sessionid <ipsec-vpn-session-id-arg>

Display all IKE security associations in negotiating state


Display all IKE security associations in negotiating state.
get ipsecvpn ikesa negotiating

Display all IKE security associations in negotiating state


Display all IKE security associations in negotiating state.
get ipsecvpn ikesa negotiating logical-router <uuid-string-arg>

Display IKE security association in negotiating state


Display IKE security association in negotiating state.
get ipsecvpn ikesa negotiating logical-router <uuid-string-arg> sessionid <ipsec-vpn-session-id-arg>

Display IKE security association in negotiating state


Display IKE security association in negotiating state.
get ipsecvpn ikesa negotiating sessionid <ipsec-vpn-session-id-arg>

Display IKE SA with specific session id


Display an IKE SA.
get ipsecvpn ikesa sessionid <ipsec-vpn-session-id-arg>

Display all IPSec SAs from control plane


Display all IPSec SAs from control plane.
get ipsecvpn ipsecsa

Display all IPSec SAs from control plane on a LogicalRouter


Display all IPSec SAs from control plane.
get ipsecvpn ipsecsa logical-router <uuid-string-arg>

Display IPSec SA with specific rule id from control plane


Display IPSec SA with specific rule id from control plane.
get ipsecvpn ipsecsa logical-router <uuid-string-arg> ruleid <ipsec-vpn-rule-id-arg>

Display an IPSec SA with specific session id from control plane


Display an IPSec SA with specific session id from control plane.
get ipsecvpn ipsecsa logical-router <uuid-string-arg> sessionid <ipsec-vpn-session-id-arg>

Display IPSec SA with specific rule id from control plane


Display IPSec SA with specific rule id from control plane.
get ipsecvpn ipsecsa ruleid <ipsec-vpn-rule-id-arg>

Display an IPSec SA with specific session id from control plane


Display an IPSec SA with specific session id from control plane.
get ipsecvpn ipsecsa sessionid <ipsec-vpn-session-id-arg>

Display all active MultiPath Groups information


Display all active MultiPath Groups information.
get ipsecvpn multi-path-group

Display active MultiPath Group information


Display active MultiPath Group information.
get ipsecvpn multi-path-group <uuid-string-arg>

Display active MultiPath tunnels probe history information


Display active MultiPath tunnels probe history information.
get ipsecvpn multi-path-group <uuid-string-arg> probe history

Display active MultiPath group probe statistics


Display active MultiPath group probe statistics.
get ipsecvpn multi-path-group <uuid-string-arg> probe stats

Display active MultiPath Group verbose information


Display active MultiPath Group verbose information.
get ipsecvpn multi-path-group <uuid-string-arg> verbose

Display all active MultiPath tunnels probe history information


Display all active MultiPath tunnels probe history information.
get ipsecvpn multi-path-group probe history

Display all active MultiPath group probe statistics


Display all active MultiPath group probe statistics.
get ipsecvpn multi-path-group probe stats

Display all active MultiPath Groups verbose information


Display all active MultiPath Groups verbose information.
get ipsecvpn multi-path-group verbose

Display all IPSec VPN policy rules


Display all IPSec VPN policy rules.
get ipsecvpn policy

Display all IPSec VPN policy rules for a LogicalRouter


Display all IPSec VPN policy rules for a LogicalRouter.
get ipsecvpn policy logical-router <uuid-string-arg>

Display an IPSec policy rule for a LogicalRouter


Display an IPSec policy rule for a LogicalRouter.
get ipsecvpn policy logical-router <uuid-string-arg> rules <uuid-string-arg>

Display an IPSec policy rule


Display an IPSec policy rule.
get ipsecvpn policy rules <uuid-string-arg>

Display summary of IPSec VPN policy rules


Display summary of IPSec VPN policy rules.
get ipsecvpn policy summary

Display summary of IPSec VPN policy rules per logical router


Display summary of IPSec VPN policy rules per logical router
get ipsecvpn policy summary logical-router <uuid-string-arg>

Display all IPSec SAs present in Security Association Database(datapath)


Display all IPSec SAs present in Security Association Database(datapath).
get ipsecvpn sad

Display IPSec SA present in Security Association Database(datapath)


Display IPSec SA present in Security Association Database(datapath).
get ipsecvpn sad <uuid-string-arg>

Display IPSec SA present in Security Association Database(datapath)


Display IPSec SA present in Security Association Database(datapath).
get ipsecvpn sad logical-router <uuid-string-arg>

Display IPSec SA present in Security Association Database(datapath)


Display IPSec SA present in Security Association Database(datapath).
get ipsecvpn sad session <uuid-string-arg>

Display summary of all IPSec SAs present in Security Association Database(datapath)


Display summary of all IPSec SAs present in Security Association Database(datapath).
get ipsecvpn sad summary

Display all IPSec Services


Display all IPSec Services Information.
get ipsecvpn service

Display IPSec Service


Display IPSec Service Information.
get ipsecvpn service <uuid-string-arg>

Display detail information of a IPSec Service


Display all IPSec Service Information in detail.
get ipsecvpn service <uuid-string-arg> verbose

Display detail information of all IPSec Services


Display IPSec Service Information in detail.
get ipsecvpn service verbose

Display all IPSec VPN sessions


Display all IPSec VPN sessions.
get ipsecvpn session

Display specific IPSec VPN session


Display specific IPSec VPN session.
get ipsecvpn session <uuid-string-arg>

Display specific IPSec VPN session history


Display IPsec VPN session history using session uuid as the filter
get ipsecvpn session <uuid-string-arg> history

Display all IPSec VPN sessions in active state


Display all IPSec VPN sessions in active state.
get ipsecvpn session active

Display an IPSec VPN session in active state


Display an IPSec VPN session in active state.
get ipsecvpn session active <uuid-string-arg>

Display IPSec VPN session in active state for specific endpoints


Display IPSec VPN session in active state for specific endpoints.
get ipsecvpn session active local-ip <ip46-address> remote-ip <ip46-address>

Display an IPSec VPN session in active state


Display an IPSec VPN session in active state.
get ipsecvpn session active sessionid <ipsec-vpn-session-id-arg>

Display all IPsec VPN sessions in down state


Display all IPsec VPN sessions in down state.
get ipsecvpn session down

Display an IPsec VPN session in down state


Display an IPsec VPN session in down state.
get ipsecvpn session down <uuid-string-arg>

Display IPsec VPN session in down state for specific endpoints


Display IPsec VPN session in down state for specific endpoints.
get ipsecvpn session down local-ip <ip46-address> remote-ip <ip46-address>

Display an IPsec VPN session in down state


Display an IPsec VPN session in down state.
get ipsecvpn session down sessionid <ipsec-vpn-session-id-arg>

Display all IPsec VPN sessions history


Display all IPsec VPN sessions history.
get ipsecvpn session history

Display IPSec VPN session for specific endpoints


Display IPSec VPN session for specific endpoints.
get ipsecvpn session local-ip <ip46-address> remote-ip <ip46-address>

Display IPSec VPN session history for specific endpoints


Display IPSec VPN session history for specific endpoints.
get ipsecvpn session local-ip <ip46-address> remote-ip <ip46-address> history

Display all IPSec VPN sessions of Logical Router


Display all IPSec VPN sessions of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg>

Display specific IPSec VPN session of Logical Router


Display specific IPSec VPN session of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> <uuid-string-arg>

Display an IPsec VPN session in negotiating state of Logical Router


Display an IPsec VPN session in negotiating state of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> <uuid-string-arg> negotiating

Display all IPSec VPN sessions in active state of Logical Router


Display all IPSec VPN sessions in active state of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> active

Display an IPSec VPN session in active state of Logical Router


Display an IPSec VPN session in active state of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> active <uuid-string-arg>

Display IPSec VPN session in active state for specific endpoints of Logical Router


Display IPSec VPN session in active state for specific endpoints of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> active local-ip <ip46-address> remote-ip <ip46-address>

Display an IPSec VPN session in active state of Logical Router


Display an IPSec VPN session in active state of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> active sessionid <ipsec-vpn-session-id-arg>

Display all IPsec VPN sessions in down state of Logical Router


Display all IPsec VPN sessions in down state of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> down

Display an IPsec VPN session in down state of Logical Router


Display an IPsec VPN session in down state of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> down <uuid-string-arg>

Display IPsec VPN session in down state for specific endpoints of Logical Router


Display IPsec VPN session in down state for specific endpoints of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> down local-ip <ip46-address> remote-ip <ip46-address>

Display an IPsec VPN session in down state of Logical Router


Display an IPsec VPN session in down state of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> down sessionid <ipsec-vpn-session-id-arg>

Display IPSec VPN session history for a Logical Router


Display IPSec VPN session history for a Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> history

Display IPSec VPN session for specific endpoints on Logical Router


Display IPSec VPN session for specific endpoints on Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> local-ip <ip46-address> remote-ip <ip46-address>

Display IPSec VPN session history for specific endpoints on Logical Router


Display IPSec VPN session history for specific endpoints on Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> local-ip <ip46-address> remote-ip <ip46-address> history

Display all IPsec VPN sessions in negotiating state of Logical Router


Display all IPsec VPN sessions in negotiating state of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> negotiating

Display IPsec VPN session in negotiating state for specific endpoints


Display IPsec VPN session in negotiating state for specific endpoints.
get ipsecvpn session logical-router <uuid-string-arg> negotiating local-ip <ip46-address> remote-ip <ip46-address>

Display all IPSec VPN sessions of Logical Router


Display all IPSec VPN sessions of Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> sessionid <ipsec-vpn-session-id-arg>

Display IPSec VPN session history of a specific session for a Logical Router


Display IPSec VPN session history of a specific session for a Logical Router
get ipsecvpn session logical-router <uuid-string-arg> sessionid <ipsec-vpn-session-id-arg> history

Display IPSec VPN session status for a LogicalRouter


Display IPSec VPN session status for a Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> status

Display summary of all IPSec VPN sessions for a Logical Router


Display summary of all IPSec VPN sessions for a Logical Router.
get ipsecvpn session logical-router <uuid-string-arg> summary

Display all IPsec VPN sessions in negotiating state


Display all IPsec VPN sessions in negotiating state.
get ipsecvpn session negotiating

Display an IPsec VPN session in negotiating state


Display an IPsec VPN session in negotiating state.
get ipsecvpn session negotiating <uuid-string-arg>

Display IPsec VPN session in negotiating state for specific endpoints of Logical Router


Display IPsec VPN session in negotiating state for specific endpoints of Logical Router.
get ipsecvpn session negotiating local-ip <ip46-address> remote-ip <ip46-address>

Display an IPsec VPN session in negotiating state of Logical Router


Display an IPsec VPN session in negotiating state of Logical Router.
get ipsecvpn session negotiating logical-router <uuid-string-arg> sessionid <ipsec-vpn-session-id-arg>

Display an IPsec VPN session in negotiating state


Display an IPsec VPN session in negotiating state.
get ipsecvpn session negotiating sessionid <ipsec-vpn-session-id-arg>

Display all IPSec VPN sessions


Display all IPSec VPN sessions.
get ipsecvpn session sessionid <ipsec-vpn-session-id-arg>

Display IPsec VPN sessions history for specific session


Display IPsec VPN session history with sessionid as the filter
get ipsecvpn session sessionid <ipsec-vpn-session-id-arg> history

Display IPSec VPN session status


Display IPSec VPN session status.
get ipsecvpn session status

Display summary of all IPSec VPN sessions


Display summary of all IPSec VPN sessions.
get ipsecvpn session summary

Display summary of all IPSec IPv4 VPN sessions


Display summary of all IPSec IPv4 VPN sessions.
get ipsecvpn session summary ipv4

Display summary of all IPSec IPv6 VPN sessions


Display summary of all IPSec IPv6 VPN sessions.
get ipsecvpn session summary ipv6

Display all IPSec VPN synced sessions


Display all IPSec VPN synced sessions.
get ipsecvpn sync-session

Display specific IPSec VPN synced session


Display specific IPSec VPN synced session.
get ipsecvpn sync-session session-uuid <uuid-string-arg>

Display IPSec tunnel statistics and multipath statistics


Display IPSec SA tunnel statistics and multipath statistics.
get ipsecvpn tunnel multipath stats

Display IPSec tunnel statistics and multipath statistics.


Display IPSec tunnel statistics and multipath statistics.
get ipsecvpn tunnel multipath stats <uuid-string-arg>

Display all IPSec SA tunnel statistics


Display all IPSec SA tunnel statistics.
get ipsecvpn tunnel stats

Display IPSec SA tunnel statistics


Display IPSec SA tunnel statistics.
get ipsecvpn tunnel stats <ipsec-vpn-keypolicy-id-arg>

Display all IPSec VPN VTI Rules


Displays all IPSec VPN VTI Rules.
get ipsecvpn vti rules

Display an IPSec VPN VTI rule


Display an IPSec VPN VTI rule.
get ipsecvpn vti rules <uuid-string-arg>

Show L2VPN sessions configuration for a given L2VPN service


Display L2VPN sessions configuration for a given L2VPN service.
get l2vpn service <uuid-string-arg> sessions config

Show all L2VPN services configuration


Display all L2VPN services configuration.
get l2vpn services config

Display stretched logical switch behind L2VPN session


Display stretched logical switch behind L2VPN session.
get l2vpn session <dpd-uuid-l2vpn-session-arg> logical-switch <dpd-uuid-lswitch-arg>

Display remote macs learnt on L2VPN stretched logical-switch


Display remote macs learnt on L2VPN stretched logical-switch.
get l2vpn session <dpd-uuid-l2vpn-session-arg> logical-switch <dpd-uuid-lswitch-arg> remote-macs

Display stats for stretched logical-switch behind L2VPN session


Display stats for stretched logical-switch behind L2VPN session.
get l2vpn session <dpd-uuid-l2vpn-session-arg> logical-switch <dpd-uuid-lswitch-arg> stats

Display stretched logical switches behind given L2VPN session


Display stretched logical switches behind given L2VPN session.
get l2vpn session <dpd-uuid-l2vpn-session-arg> logical-switches

Display stats for specific L2VPN session


Display stats for L2VPN session
get l2vpn session <dpd-uuid-l2vpn-session-arg> stats

Display status of specific L2VPN session


Display status of specific L2VPN session.
get l2vpn session <dpd-uuid-l2vpn-session-arg> status

Display all L2VPN sessions


Display all L2VPN sessions information.
get l2vpn sessions

Show all L2VPN sessions configuration


Display all L2VPN sessions configuration.
get l2vpn sessions config

Display all L2VPN sessions on a logical-router


Display all L2VPN sessions information on a logical-router.
get l2vpn sessions logical-router <uuid-string-arg>

Display L2VPN sessions stats


Display L2VPN sessions stats
get l2vpn sessions stats

Display specified counter's detailed description.


Display specified counter's detailed description.
get livetrace datapath-stats module <mod_name_arg_esx> counter <ctr_name_arg_esx> description verbose

List all the counters with brief description for the specified module.


List all the counters with brief description for the specified module.
get livetrace datapath-stats module <mod_name_arg_esx> counters list

Display specified kernel module's detailed description.


Display specified kernel module's detailed description.
get livetrace datapath-stats module <mod_name_arg_esx> description verbose

List all the observability enabled kernel modules.


List all the observability enabled kernel modules with.
get livetrace datapath-stats modules list

Display all the counters for the specified livetrace session.


Display all the counters for the specified livetrace session.
get livetrace datapath-stats session <session-id> all

Display all counters for the specified livetrace session.


Display all counters for the specified livetrace session.
get livetrace datapath-stats session <session-id> all new

Display all drop counters of all modules for the specified livetrace session.


Display all drop counters of all modules for the specified livetrace session.
get livetrace datapath-stats session <session-id> drops

Display new drop counters for the specified livetrace session.


Display new drop counters of all modules for the specified livetrace session.
get livetrace datapath-stats session <session-id> drops new

Display all the counters for the specified livetrace session and module.


Display all the counters for the specified livetrace session and module.
get livetrace datapath-stats session <session-id> module <mod_name_arg_esx> all

Display all new counters for the specified livetrace session and module.


Display all new counters for the specified livetrace session and module.
get livetrace datapath-stats session <session-id> module <mod_name_arg_esx> all new

Display drop counters for the specified livetrace session and module.


Display drop counters for the specified livetrace session and module.
get livetrace datapath-stats session <session-id> module <mod_name_arg_esx> drops

Display new drop counters for the specified livetrace session and module.


Display new drop counters for the specified livetrace session and module.
get livetrace datapath-stats session <session-id> module <mod_name_arg_esx> drops new

List all the datapath-stats enabled livetrace sessions.


List all the datapath-stats enabled livetrace sessions.
get livetrace datapath-stats sessions list

Show load balancer


Display a specific load balancer.
get load-balancer <dlb-uuid-arg>

Show the error log for the specified load balancer


Display the error log file for a specific load balancer.
get load-balancer <dlb-uuid-arg> error-log

Show persistence tables of a specific load balancer


Display the persistence tables of a specific load balancer.
get load-balancer <dlb-uuid-arg> persistence-tables

Show statistics of the specified load balancer and pool


Display the statistics for a specific load balancer and pool.
get load-balancer <dlb-uuid-arg> pool <pool-arg> stats

Show load balancer pools.


Display the pools of a specific load balancer.
get load-balancer <dlb-uuid-arg> pools

Show statistics of all pools of the specified load balancer


Display the statistics for all the pools of a specific load balancer.
get load-balancer <dlb-uuid-arg> pools stats

Show load balancer sessions


Display sessions of load balancer.
get load-balancer <dlb-uuid-arg> sessions

Show load balancer verbose


Display stats for load balancer.
get load-balancer <dlb-uuid-arg> stats

Show load balancer verbose stats


Display verbose stats for load balancer.
get load-balancer <dlb-uuid-arg> stats verbose

Show status for the specified load balancer


Display the status of a specific load balancer.
get load-balancer <dlb-uuid-arg> status

Get hash selected backend server for the specified source IP traffic


Display the backend server IP address for the specified source IP traffic..
get load-balancer <dlb-uuid-arg> virtual-server <vs-arg> hash <ip46-address>

Show statistics of the specified load balancer and virtual server


Display the statistics for a specific load balancer and virtual server.
get load-balancer <dlb-uuid-arg> virtual-server <vs-arg> stats

Show verbose statistics of the specified load balancer and virtual server


Display verbose statistics for a specific load balancer and virtual server.
get load-balancer <dlb-uuid-arg> virtual-server <vs-arg> stats verbose

Show load balancer virtual servers


Display the virtual servers of a specific load balancer.
get load-balancer <dlb-uuid-arg> virtual-servers

Show statistics of all virtual servers of the specified load balancer


Display the statistics for all virtual servers of a specific load balancer.
get load-balancer <dlb-uuid-arg> virtual-servers stats

Show load balancer


Display a specific load balancer.
get load-balancer <lb-uuid-arg>

Show load balancer diagnosis information


Show load balancer diagnosis information
get load-balancer <lb-uuid-arg> diagnosis

Show the error log for the specified load balancer


Display the error log file for a specific load balancer.
get load-balancer <lb-uuid-arg> error-log

Follow the error log for the specified load balancer


Display the last 10 lines of the error log file for a specific load balancer and all new messages that are written to the log file.
get load-balancer <lb-uuid-arg> error-log follow

Show the error log with regular expression filter for the specified load balancer


Display error log messages containing strings that match the given regular expression pattern for a specific load balancer.
get load-balancer <lb-uuid-arg> error-log reg-filter <regex>

Show health check table of a specific load balancer


Display the health check table of a specific load balancer.
get load-balancer <lb-uuid-arg> health-check-table

Show HA state of a specific load balancer


Display the HA state of a specific load balancer.
get load-balancer <lb-uuid-arg> high-availability-state

Show a load balancer monitor


Display a specific load balancer monitor.
get load-balancer <lb-uuid-arg> monitor <monitor-uuid-arg>

Show a load balancer monitor status.


Show the health check table of a load balancer monitor.
get load-balancer <lb-uuid-arg> monitor <monitor-uuid-arg> status

Show load balancer monitors


Display the monitors for a specific load balancer.
get load-balancer <lb-uuid-arg> monitors

Show persistence tables of a specific load balancer


Display the persistence tables of a specific load balancer.
get load-balancer <lb-uuid-arg> persistence-tables

Show a load balancer pool


Display a specific load balancer pool.
get load-balancer <lb-uuid-arg> pool <pool-uuid-arg>

Display information about an LB pool


Display information about an LB pool.
get load-balancer <lb-uuid-arg> pool <pool-uuid-arg> snat-pools

Show statistics of the specified load balancer and pool


Display the statistics for a specific load balancer and pool.
get load-balancer <lb-uuid-arg> pool <pool-uuid-arg> stats

Show status for the given pool


Display the status of a specific load balancer and pool.
get load-balancer <lb-uuid-arg> pool <pool-uuid-arg> status

Show load balancer pools


Display the pools of a specific load balancer.
get load-balancer <lb-uuid-arg> pools

Show statistics of all pools of the specified load balancer


Display the statistics for all the pools of a specific load balancer.
get load-balancer <lb-uuid-arg> pools stats

Show status for all pools of the given load balancer


Display the status of all the pools of a specific load balancer.
get load-balancer <lb-uuid-arg> pools status

Show sessions of a specific load balancer


Display the sessions of a specific load balancer.
get load-balancer <lb-uuid-arg> session-tables

Get load balancer L4 session table


Get the load balancer L4 session table with the expiration time.
get load-balancer <lb-uuid-arg> session-tables l4

Get load balancer L7 session table


Get the load balancer L7 session table with the expiration time.
get load-balancer <lb-uuid-arg> session-tables l7

Get LB pool information, especially port usage


Get load-balancer snat pools' information.
get load-balancer <lb-uuid-arg> snat-pools

Show statistics for the specified load balancer


Display the statistics for a specific load balancer.
get load-balancer <lb-uuid-arg> stats

Show status for the specified load balancer


Display the status of a specific load balancer.
get load-balancer <lb-uuid-arg> status

Show a load balancer virtual server


Display a specific load balancer virtual server.
get load-balancer <lb-uuid-arg> virtual-server <vs-uuid-arg>

Show the access log for the specified load balancer and virtual server


Display the access log file for a specific load balancer and virtual server.
get load-balancer <lb-uuid-arg> virtual-server <vs-uuid-arg> access-log

Follow the access log for the specified virtual server of load balancer


Display the last 10 lines of the access log file for a specific virtual server of load balancer and all new messages that are written to the log file.
get load-balancer <lb-uuid-arg> virtual-server <vs-uuid-arg> access-log follow

Show the access log with regular expression filter for the specified load balancer


Display access log messages containing strings that match the given regular expression pattern for a specific load balancer.
get load-balancer <lb-uuid-arg> virtual-server <vs-uuid-arg> access-log reg-filter <regex>

Show load balancer rules


Display the load balancer rules for a specific load balancer and virtual server.
get load-balancer <lb-uuid-arg> virtual-server <vs-uuid-arg> lbrules

Show statistics of the specified load balancer and virtual server


Display the statistics for a specific load balancer and virtual server.
get load-balancer <lb-uuid-arg> virtual-server <vs-uuid-arg> stats

Show status for the given virtual server


Display the status of a specific load balancer virtual server.
get load-balancer <lb-uuid-arg> virtual-server <vs-uuid-arg> status

Show load balancer virtual servers


Display the virtual servers of a specific load balancer.
get load-balancer <lb-uuid-arg> virtual-servers

Show statistics of all virtual servers of the specified load balancer


Display the statistics for all virtual servers of a specific load balancer.
get load-balancer <lb-uuid-arg> virtual-servers stats

Show status for all virtual servers of the given load balancer


Display the status of all virtual servers of a specific load balancer.
get load-balancer <lb-uuid-arg> virtual-servers status

Show load balancer global verbose stats


Display global verbose stats for load balancer.
get load-balancer global stats

Get load balancer performance config


Get edge parameters configured by load balancer for performance.
get load-balancer perf-profile config

Show pool.


Display the information for pool.
get load-balancer pool <pool-arg>

Show a load balancer virtual server


Display a specific load balancer virtual server.
get load-balancer virtual-server <vs-arg>

Show the access log for the specified virtual server


Display the access log for the virtual server.
get load-balancer virtual-server <vs-arg> access-log

Show all load balancers


Display all load balancers.
get load-balancers

Show status for all load balancers


Display the status of all load balancers.
get load-balancers status

Display a logical router


Display information about the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> (Deprecated)

Display logical router BFD config


Display parameters defined in global logical router BFD
get logical-router <dpd-uuid-lrouter-arg> bfd-config (Deprecated)

Display all IPv4 & IPv6 BGP routes


Display all IPv4 & IPv6 BGP routes.
get logical-router <dpd-uuid-lrouter-arg> bgp

Display all BGP NLRI matching the community.


Display all BGP NLRI matching the community.
get logical-router <dpd-uuid-lrouter-arg> bgp community <bgp-community-arg>

Display BGP EVPN Ethernet Segment information


Display BGP EVPN Ethernet Segment information.
get logical-router <dpd-uuid-lrouter-arg> bgp evpn es

Display BGP EVPN Ethernet Segment(ES) per EVPN instance(EVI) information


Display BGP EVPN Ethernet Segment(ES) per EVPN instance(EVI) information.
get logical-router <dpd-uuid-lrouter-arg> bgp evpn es-evi

Display all BGP NLRI matching the large-community.


Display all BGP NLRI matching the large-community.
get logical-router <dpd-uuid-lrouter-arg> bgp large-community <bgp-large-community-arg>

Display all BGP neighbor information


Display all BGP neighbor information.
get logical-router <dpd-uuid-lrouter-arg> bgp neighbor

Display EVPN VNI ARP information


Display EVPN VNI ARP information.
get logical-router <dpd-uuid-lrouter-arg> evpn arp

Display EVPN Mode information


Display EVPN Mode information.
get logical-router <dpd-uuid-lrouter-arg> evpn deployment-mode

Display EVPN Ethernet Segment information


Display EVPN Ethernet Segment information.
get logical-router <dpd-uuid-lrouter-arg> evpn es

Display particular EVPN Ethernet Segment information


Display particular EVPN Ethernet Segment information.
get logical-router <dpd-uuid-lrouter-arg> evpn es <esi-arg>

Display EVPN VNI MAC information


Display EVPN VNI MAC information.
get logical-router <dpd-uuid-lrouter-arg> evpn mac

Display IgmpSnooping Table of the LR


Display information about IGMP reports snooped in the LR
get logical-router <dpd-uuid-lrouter-arg> igmp-snooping-table (Deprecated)

Display IgmpSnooping Table of the LR


Display information about IGMP reports snooped in the LR filtered by multicast group
get logical-router <dpd-uuid-lrouter-arg> igmp-snooping-table <multicast-ip-address> (Deprecated)

Display a logical router's interfaces


Display interface information for the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> interfaces (Deprecated)

Display the interface stats for a logical router


Display the interface statistics for the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> interfaces stats (Deprecated)

Display the logical router multicast forwarding table


Display the multicast forwarding table for the specified logical router. The forwarding plane merges the mroutes from the control plane and from IGMP snooping to build out mfib. A (s,g) mroute displayed from the control plane may not be shown identically from the forwarding plane. When there are multiple matches from mfib lookup, the packet will be replicated to all valid outgoing interfaces for each matched entry.
get logical-router <dpd-uuid-lrouter-arg> mfib (Deprecated)

Display multicast forwarding entries matching a multicast group


Display multicast forwarding entries matching a multicast group for the specified logical router. The forwarding plane merges the mroutes from the control plane and from IGMP snooping to build out mfib. A (s,g) mroute displayed from the control plane may not be shown identically from the forwarding plane. When there are multiple matches from mfib lookup, the packet will be replicated to all valid outgoing interfaces for each matched entry.
get logical-router <dpd-uuid-lrouter-arg> mfib <multicast-ip-address> (Deprecated)

Display multicast load-balancing selection for a logical router


Display the multicast load-balancing selection for the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> multicast load-balancing <multicast-ip-address>

Display the logical router's neighbor table


Display the neighbor table for the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> neighbor (Deprecated)

Display neighbors and stats for a logical router


Display the neighbor table and statistics for the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> neighbor stats (Deprecated)

Display OSPF information


Display OSPF information.
get logical-router <dpd-uuid-lrouter-arg> ospf

Display OSPF database summary


Display OSPF database summary.
get logical-router <dpd-uuid-lrouter-arg> ospf database

Display ASBR-Summary LSAs


Display ASBR-Summary LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database asbr-summary

Display ASBR-Summary LSAs


Display ASBR-Summary LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database asbr-summary <ip-address>

Display external LSAs


Display external LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database external

Display external LSAs


Display external LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database external <ip-address>

Display Network LSAs


Display Network LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database network

Display Network LSAs


Display Network LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database network <ip-address>

Display NSSA external LSAs


Display NSSA external LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database nssa-external

Display NSSA external LSAs


Display NSSA external LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database nssa-external <ip-address>

Display router LSAs


Display router LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database router

Display router LSAs


Display router LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database router <ip-address>

Display summary LSAs


Display summary LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database summary

Display summary LSAs


Display summary LSAs.
get logical-router <dpd-uuid-lrouter-arg> ospf database summary <ip-address>

Display OSPF Graceful Restart information


Display OSPF Graceful Restart information.
get logical-router <dpd-uuid-lrouter-arg> ospf graceful-restart

Display OSPF interface information


Display OSPF interface information.
get logical-router <dpd-uuid-lrouter-arg> ospf interface

Display OSPF neighbor list


Display OSPF neighbor list.
get logical-router <dpd-uuid-lrouter-arg> ospf neighbor

Display OSPF routes


Display OSPF routes.
get logical-router <dpd-uuid-lrouter-arg> ospf route

Show external summary addresses


Show external summary addresses.
get logical-router <dpd-uuid-lrouter-arg> ospf summary-address

Display QoS config for a logical router


Display QoS config for the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> qos-config (Deprecated)

Display all OSPF routes in RIB


Display all OSPF routes in RIB.
get logical-router <dpd-uuid-lrouter-arg> route ospf

Display stats for a logical router


Display statistics for the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> stats (Deprecated)

Display a logical router's tenant context


Display tenant context information for the specified logical router.
get logical-router <dpd-uuid-lrouter-arg> tenant-context

Display information about the specified logical router


Display information about the specified logical router.
get logical-router <logical-router-id> (Deprecated)

Display the routing table for the specified logical router


Display the routing table for the specified logical router.
get logical-router <logical-router-id> <route-arg> (Deprecated)

Display a specific IPv4 route on the specified logical router


Display a specific IPv4 route on the specified logical router.
get logical-router <logical-router-id> <route-arg> <network-address> (Deprecated)

Display information about a specific interface on the specified logical router


Display information about a specific interface on the specified logical router.
get logical-router <logical-router-id> interface <logical-router-interface-id> (Deprecated)

Display all interfaces on the specified logical router


Display all interfaces on the specified logical router.
get logical-router <logical-router-id> interfaces (Deprecated)

Get all routing Config entities on the specified Service Router


Get all routing Config entities on the specified Service Router.
get logical-router <logical-router-id> routing-config (Deprecated)

Display logical router high availability state history


Display the high availability state history for the specified logical router. Only service routers have a high availability status. Use the get logical-routers command to get a list of logical routers and their router types.
get logical-router <nsxa-uuid-service-router-arg> high-availability history state (Deprecated)

Display logical router high availability state history


Display the high availability state history for the specified logical router. Only service routers have a high availability status. Use the get logical-routers command to get a list of logical routers and their router types.
get logical-router <nsxa-uuid-service-router-arg> high-availability history state details (Deprecated)

Display the logical router high availability status


Display the high availability status for the specified logical router. Only service routers have a high availability status. Use the get logical-routers command to get a list of logical routers and their router types.
get logical-router <nsxa-uuid-service-router-arg> high-availability status (Deprecated)

Display logical router high availability status of interface-groups


Display the high availability status of interface-groups for the logical router
get logical-router <nsxa-uuid-service-router-arg> interface-groups high-availability

Display service groups of the service router


Display the service groups state for the service router
get logical-router <nsxa-uuid-service-router-arg> service-groups

Display service groups of the service router


Display the service groups state for the service router
get logical-router <nsxa-uuid-service-router-arg> service-groups details

Display a logical router


Display information about the specified logical router.
get logical-router <uuid-arg> (Deprecated)

Display forwarding information for a logical router


Display forwarding for the specified logical router.
get logical-router <uuid-arg> forwarding (Deprecated)

Display forwarding information for a logical router


Display forwarding for the specified logical router filtered on prefix.
get logical-router <uuid-arg> forwarding <network46-address> (Deprecated)

Display forwarding information for a logical router


Display forwarding for the specified logical router, filtered by prefix.
get logical-router <uuid-arg> forwarding <network46-address> (Deprecated)

Display IPv4 forwarding for a logical router


Display IPv4 forwarding for the specified logical router.
get logical-router <uuid-arg> forwarding ipv4 (Deprecated)

Display IPv6 forwarding for a logical router


Display IPv6 forwarding for the specified logical router.
get logical-router <uuid-arg> forwarding ipv6 (Deprecated)

Display Mcast Groups information for a logical router


Display Mcast Groups for the specified logical router.
get logical-router <uuid-arg> igmp membership (Deprecated)

Display Mcast Groups information for a logical router


Display Mcast Groups for the specified logical router.
get logical-router <uuid-arg> igmp membership <ip-address> (Deprecated)

Display interface instance for a logical router


Display information for the specified logical router instance.
get logical-router <uuid-arg> interface <uuid-arg> (Deprecated)

Display a logical router interface


Display interface information for the specified logical router and port.
get logical-router <uuid-arg> interface <uuid-arg> (Deprecated)

Display logical router interface instance policy table reference


Display policy table reference information for the specified logical router instance.
get logical-router <uuid-arg> interface <uuid-arg> policy-table-ref (Deprecated)

Display a logical router interface statistics


Display interface statistics for the specified logical router and port.
get logical-router <uuid-arg> interface <uuid-arg> stats (Deprecated)

Display interface instance stats for a logical router


Display interface instance stats for a logical router.
get logical-router <uuid-arg> interface <uuid-arg> stats (Deprecated)

Display a logical router interface statistics


Display interface statistics for the specified logical router and port.
get logical-router <uuid-arg> interface <uuid-arg> stats <ip-version> (Deprecated)

Display interface instance stats for a logical router (ipv4)


Display interface instance stats for a logical router (ipv4).
get logical-router <uuid-arg> interface <uuid-arg> stats ipv4 (Deprecated)

Display interface instance stats for a logical router (ipv6)


Display interface instance stats for a logical router (ipv6).
get logical-router <uuid-arg> interface <uuid-arg> stats ipv6 (Deprecated)

Display interfaces for a logical router


Display interface information for the specified logical router.
get logical-router <uuid-arg> interfaces (Deprecated)

Display Mcast router backplane IP for load-balancing a multicast group


Display Mcast router backplane IP for load-balancing a multicast group
get logical-router <uuid-arg> multicast load-balancing <ip-address>

Display neighbor for a logical router


Display neighbor information (ARP/ND cache) for the specified logical router, using IP or MAC.
get logical-router <uuid-arg> neighbor <ipormac-address> (Deprecated)

Display neighbors for a logical router


Display neighbor information (ARP cache) for the specified logical router.
get logical-router <uuid-arg> neighbors (Deprecated)

Display logical router BFD sessions


Display BFD sessions in a logical router
get logical-router <uuid> bfd-sessions [stats] (Deprecated)

Display BGP EVPN routes


Display BGP EVPN routes.
get logical-router <uuid> bgp evpn

Display BGP EVPN overlay information for all RDs


Display BGP EVPN overlay information for all RDs.
get logical-router <uuid> bgp evpn overlay

Display BGP EVPN VNI information


Display BGP EVPN VNI information.
get logical-router <uuid> bgp evpn vni

Display information about a specific BGP neighbor


Display information about a specific BGP neighbor.
get logical-router <uuid> bgp neighbor <ip-address>

Display routes advertised to a BGP neighbor


Display routes advertised to a BGP neighbor.
get logical-router <uuid> bgp neighbor <ip-address> advertised-routes

Display routes learnt from a BGP neighbor


Display routes learnt from a BGP neighbor.
get logical-router <uuid> bgp neighbor <ip-address> routes

Display a specific BGP neighbor diagnostic information


Display a specific BGP neighbor diagnostic information.
get logical-router <uuid> bgp neighbor <ip-address> session-diagnostics

Display BGP neighbor diagnostic information


Display BGP neighbor diagnostic information.
get logical-router <uuid> bgp neighbor session-diagnostics

Display summarized BGP neighbor information


Display summarized BGP neighbor information.
get logical-router <uuid> bgp neighbor summary

Display summarized BGP neighbor information for a given address-family


Display summarized BGP neighbor information for a given address-family.
get logical-router <uuid> bgp neighbor summary <address-family>

Generate BGP/BFD diagnostic report


Generate BGP/BFD diagnostic report.
get logical-router <uuid> bgp-bfd diagnostics report

Display EVPN VNI ARP information


Display EVPN VNI ARP information.
get logical-router <uuid> evpn arp [<vni-value>]

Display EVPN VNI MAC information


Display EVPN VNI MAC information.
get logical-router <uuid> evpn mac [<vni-value>]

Display router MACs for all VNIs


Display router MACs for all VNIs.
get logical-router <uuid> evpn rmac

Display all EVPN VNI information


Display all EVPN VNI information.
get logical-router <uuid> evpn vni

Display the logical router forwarding table


Display the forwarding table for the specified logical router. Optionally specify a prefix to display only the entry that matches that network.
get logical-router <uuid> forwarding [<prefix>] (Deprecated)

Display multicast routes


Display all the multicast learnt routes.
get logical-router <uuid> mroute <ip-address>

Display detailed information of an IPv4 route in RIB of a tier 0 logical router


Display the routing table for the specified logical router. You must specify a tier 0 service router in this command. Use the get logical-routers command to get a list of logical routers and their router types.

Optionally specify a prefix or IPv4 address to display only the route used for that network.

get logical-router <uuid> route [<prefix>]

Display detailed information of an IPv6 route in RIB of a tier 0 logical router


Display the routing table for the specified logical router. You must specify a tier 0 service router in this command. Use the get logical-routers command to get a list of logical routers and their router types.

Optionally specify a prefix or IPv6 address to display only the route used for that network.

get logical-router <uuid> route [<prefix>]

Display IPv4 BGP routes for a specified prefix in RIB


Display IPv4 BGP routes for a specified prefix in RIB.
get logical-router <uuid> route bgp [<prefix>]

Display IPv4 Connected routes for a specified prefix in RIB


Display IPv4 Connected routes for a specified prefix in RIB.
get logical-router <uuid> route connected [<prefix>]

Display IPv4 OSPF routes for a specified prefix in RIB


Display IPv4 OSPF routes for a specified prefix in RIB.
get logical-router <uuid> route ospf [<prefix>]

Display IPv4 Static routes for a specified prefix in RIB


Display IPv4 Static routes for a specified prefix in RIB.

get logical-router route static command also displays Tier 0 NAT, Tier 1 NAT, Tier 1 connected, Load balancer routes along with Tier 0 & Tier 1 static routes

get logical-router <uuid> route static [<prefix>]

Display the multicast HA role.


Display the multicast HA role. Active - Multicast is running in Active mode. Standby - Multicast is running in Standby mode. None - Multicast is not running.
get logical-router <uuid> route static [<prefix>]

Display all VRF VNI information


Display all VRF VNI information.
get logical-router <uuid> vrf vni

Display interface info for a logical router


Display interface information for the specified logical router.
get logical-router interface <dpd-uuid-lrouter-port-arg> (Deprecated)

Display ARP proxy table for a logical router port


Display ARP proxy for a logical router port.
get logical-router interface <dpd-uuid-lrouter-port-arg> arp-proxy (Deprecated)

Display interface-group info for logical router port


Display interface-group info for logical router port
get logical-router interface <dpd-uuid-lrouter-port-arg> interface-groups high-availability

Display the neighbor table of the logical router interface


Display the neighbor table for the specified logical router interface.
get logical-router interface <dpd-uuid-lrouter-port-arg> neighbor

Display shadow port mac list for lrouter port


Display shadow port mac list for lrouter port
get logical-router interface <dpd-uuid-lrouter-port-arg> shadow-macs (Deprecated)

Get the shadow port MAC address selected for specific IP address


Get the shadow port MAC address selected for specific IP address
get logical-router interface <dpd-uuid-lrouter-port-arg> shadow-macs ip <ip46-address> (Deprecated)

Get the shadow port MAC address selected for specific source and destination IP addresses


Get the shadow port MAC address selected for specific source and destination IP addresses
get logical-router interface <dpd-uuid-lrouter-port-arg> shadow-macs source-ip <ip46-address> dest-ip <ip46-address>

Display the logical router interface stats


Display statistics for the specified logical router interface.
get logical-router interface <dpd-uuid-lrouter-port-arg> stats (Deprecated)

Display the logical router ports


Display information for all logical router interfaces.
get logical-router interfaces (Deprecated)

Display the logical router interface stats


Display statistics for all logical router interfaces.
get logical-router interfaces stats (Deprecated)

Display the neighbor table


Display the neighbor table for all logical router interfaces.
get logical-router neighbor (Deprecated)

Display specific IPv4 routes from all the logical routers


Display specific IPv4 routes from all the logical routers.
get logical-router routes <network-address> (Deprecated)

Display a proximity routing policy table


Display information about the specified proximity routing policy table.
get logical-router-policy-table <policy_table_id_arg_esx>

Display proximity routing policy tables summary


Display information about proximity routing policy tables on this hypervisor host.
get logical-router-policy-tables

Display information about the specified logical router port.


Display information about the specified logical router port.
get logical-router-port <logical-router-interface-id>

Display logical router summary


Display information about logical routers on this hypervisor host.
get logical-routers (Deprecated)

Display logical routers


Display information about all logical routers.
get logical-routers (Deprecated)

Display information about all logical routers


Display information about all logical routers.
get logical-routers (Deprecated)

Display information about logical routers asscociated with the VIF on this public cloud host


Display information about logical routers asscociated with the VIF on this public cloud host.
get logical-routers (Deprecated)

Display logical routers and stats


Display statistics for all logical routers.
get logical-routers stats (Deprecated)

Display logical switch information


Display information about the specified logical switch.
get logical-switch <dpd-uuid-lswitch-arg> (Deprecated)

Display l2forwarder for a logical switch


Display the l2forwarder for the specified logical switch.
get logical-switch <dpd-uuid-lswitch-arg> l2forwarders (Deprecated)

Display mac table for a logical switch


Display the mac address table for the specified logical switch.
get logical-switch <dpd-uuid-lswitch-arg> mac-address-table (Deprecated)

Display mcast offload tunnel


Display mcast offload tunnel.
get logical-switch <dpd-uuid-lswitch-arg> mcast-offload-tunnel source <ip-address> group <multicast-ip-address>

Display neighbor(ARP/NDP) table for a logical switch


Display the ARP/NDP table for the specified logical switch.
get logical-switch <dpd-uuid-lswitch-arg> neighbor (Deprecated)

Display ports on a logical switch


Display port information for the specified logical switch.
get logical-switch <dpd-uuid-lswitch-arg> ports (Deprecated)

Display port statistics for a logical switch


Display port statistics for the specified logical switch.
get logical-switch <dpd-uuid-lswitch-arg> ports stats (Deprecated)

Display remote rtep-group mac addresses for a logical switch


Display remote rtep-group mac addresses for a logical switch.
get logical-switch <dpd-uuid-lswitch-arg> rtep-group-mac-address-table (Deprecated)

Display remote rtep-group mac addresses


Display remote rtep-group mac addresses.
get logical-switch <dpd-uuid-lswitch-arg> rtep-group-mac-address-table <rtep-group-id-arg> (Deprecated)

Display remote rtep-groups for a logical switch


Display remote rtep-groups for a logical switch
get logical-switch <dpd-uuid-lswitch-arg> rtep-groups (Deprecated)

Display tunnel information for a logical switch


Display the tunnel information for the specified logical switch.
get logical-switch <dpd-uuid-lswitch-arg> tunnel-ports (Deprecated)

Display VTEP table for a logical switch


Display the tunnel endpoint table for the specified logical switch.
get logical-switch <dpd-uuid-lswitch-arg> vtep-table (Deprecated)

Display information about a logical switch


Display information about the specified logical switch.
get logical-switch <ls-id-arg-kvm> (Deprecated)

Display ARP table for a logical switch


Display the ARP table for the specified logical switch.
get logical-switch <ls-id-arg-kvm> arp-table (Deprecated)

Display MAC table for a logical switch


Display the MAC table for the specified logical switch.
get logical-switch <ls-id-arg-kvm> mac-table (Deprecated)

Display ports on a logical switch


Display ports on the specified logical switch.
get logical-switch <ls-id-arg-kvm> ports (Deprecated)

Display VTEP table for a logical switch


Display the VTEP table for the specified logical switch.
get logical-switch <ls-id-arg-kvm> vtep (Deprecated)

Display information about a logical switch


Display information about the specified logical switch.
get logical-switch <ls_id_arg_esx> (Deprecated)

Display ARP table for a logical switch


Display the ARP table for the specified logical switch.
get logical-switch <ls_id_arg_esx> arp-table (Deprecated)

Display all the counters for the specified logical switch.


Display all the counters for the specified logical switch.
get logical-switch <ls_id_arg_esx> datapath-stats all

Display all counters for the specified logical switch.


Display all counters for the specified logical switch.
get logical-switch <ls_id_arg_esx> datapath-stats all new

Display all drop counters of all modules for the specified logical switch.


Display all drop counters of all modules for the specified logical switch.
get logical-switch <ls_id_arg_esx> datapath-stats drops

Display new drop counters for the specified logical switch.


Display new drop counters of all modules for the specified logical switch.
get logical-switch <ls_id_arg_esx> datapath-stats drops new

Display all the counters for the specified logical switch and module.


Display all the counters for the specified logical switch and module.
get logical-switch <ls_id_arg_esx> datapath-stats module <mod_name_arg_esx> all

Display all new counters for the specified logical switch and module.


Display all new counters for the specified logical switch and module.
get logical-switch <ls_id_arg_esx> datapath-stats module <mod_name_arg_esx> all new

Display drop counters for the specified logical switch and module.


Display drop counters for the specified logical switch and module.
get logical-switch <ls_id_arg_esx> datapath-stats module <mod_name_arg_esx> drops

Display new drop counters for the specified logical switch and module.


Display new drop counters for the specified logical switch and module.
get logical-switch <ls_id_arg_esx> datapath-stats module <mod_name_arg_esx> drops new

Display HW VTEP table for a logical switch


Display the HW VTEP table for the specified logical switch.
get logical-switch <ls_id_arg_esx> hw-vtep-table (Deprecated)

Display MAC table for a logical switch


Display the MAC table for the specified logical switch.
get logical-switch <ls_id_arg_esx> mac-table (Deprecated)

Display ND table for a logical switch


Display the ND table for the specified logical switch.
get logical-switch <ls_id_arg_esx> nd-table (Deprecated)

Display VTEP group information


Display VTEP groups for the specified logical switch
get logical-switch <ls_id_arg_esx> vtep-group (Deprecated)

Display VTEP table for a logical switch


Display the VTEP table for the specified logical switch.
get logical-switch <ls_id_arg_esx> vtep-table (Deprecated)

Display L2Forwarder high-availability history of a switch


Display L2Forwarder high-availability history of a switch
get logical-switch <nsxa-uuid-lswitch-arg> l2forwarders high-availability history state (Deprecated)

Display l2forwarder HA information of switch


Display l2forwarder configuration and HA information of switch
get logical-switch <nsxa-uuid-lswitch-arg> l2forwarders high-availability state (Deprecated)

Display the logical switch ports


Display port information for the specified logical switch.
get logical-switch <uuid-arg> ports (Deprecated)

Display the routing domain ID of a logical switch


Display the routing domain ID of a logical switch.
get logical-switch <uuid-arg> routing-domain-from-app

Display information about a logical switch


Display information about the specified logical switch. Use the get logical-switches command to get a list of all logical switches. You can use the VNI or UUID to specify the logical switch.
get logical-switch <vni-or-uuid-arg> (Deprecated)

Display local ARP table for a logical switch


Display local ARP table for the specified logical switch.
get logical-switch <vni-or-uuid-arg> arp-table (Deprecated)

Display ARP table for a logical switch for both local and remote records


Display the ARP table for the specified logical switch for both local and remote records.
get logical-switch <vni-or-uuid-arg> arp-table all (Deprecated)

Display ARP table for a logical switch for both local and remote records


Display the ARP table for the specified logical switch for both local and remote records
get logical-switch <vni-or-uuid-arg> arp-table all verbose (Deprecated)

Display ARP table for a logical switch for only remote records, show site id at column TransportNodeId


Display the ARP table for the specified logical switch for only remote records.
get logical-switch <vni-or-uuid-arg> arp-table remote (Deprecated)

Display ARP table for a logical switch for only remote records


Display the ARP table for the specified logical switch for only remote records.
get logical-switch <vni-or-uuid-arg> arp-table remote verbose (Deprecated)

Display local ARP table for a logical switch


Display local ARP table for the specified logical switch.
get logical-switch <vni-or-uuid-arg> arp-table verbose (Deprecated)

Display local MAC table for a logical switch


Display local MAC address table for the specified logical switch.
get logical-switch <vni-or-uuid-arg> mac-table (Deprecated)

Display MAC table for a logical switch for both local and remote mac records


Display the MAC address table for the specified logical switch for both local and remote mac records.
get logical-switch <vni-or-uuid-arg> mac-table all (Deprecated)

Display MAC table for a logical switch for both local and remote records


Display the MAC address table for the specified logical switch for both local and remote records.
get logical-switch <vni-or-uuid-arg> mac-table all verbose (Deprecated)

Display MAC table for a logical switch for only remote mac records


Display the MAC address table for the specified logical switch for only remote mac records.
get logical-switch <vni-or-uuid-arg> mac-table remote (Deprecated)

Display MAC table for a logical switch for only remote records


Display the MAC address table for the specified logical switch for only remote records.
get logical-switch <vni-or-uuid-arg> mac-table remote verbose (Deprecated)

Display local MAC table for a logical switch


Display local MAC address table for the specified logical switch.
get logical-switch <vni-or-uuid-arg> mac-table verbose (Deprecated)

Display the routing domain ID of a logical switch


Display the routing domain ID of a logical switch.
get logical-switch <vni-or-uuid-arg> routing-domain-from-pigeon

Display RTEP Group synced from remote site, the first row shows local RTEP Group.


Display RTEP Group synced from remote site
get logical-switch <vni-or-uuid-arg> rtep-group (Deprecated)

Display statistics information about the specified logical switch


Display statistics information about the specified logical switch.
get logical-switch <vni-or-uuid-arg> stats (Deprecated)

Display transport nodes which joined a given logical switch


Display transport nodes which joined a given logical switch.
get logical-switch <vni-or-uuid-arg> transport-node-table (Deprecated)

Display information about a logical switch


Display information about the specified logical switch and logical switch ports associated with it. Use the get logical-switches command to get a list of all logical switches. You can use the VNI or UUID to specify the logical switch.
get logical-switch <vni-or-uuid-arg> verbose (Deprecated)

Display all virtual tunnel end points related to the specified logical switch


Display all virtual tunnel end points related to the specified logical switch.
get logical-switch <vni-or-uuid-arg> vtep (Deprecated)

Display all virtual tunnel end points related to the specified logical switch


Display all virtual tunnel end points related to the specified logical switch.
get logical-switch <vni-or-uuid-arg> vtep verbose (Deprecated)

Display ports for a logical switch


Display port information for the specified logical switch.
get logical-switch port <dpd-uuid-lswitch-port-arg> (Deprecated)

Display stats for a logical switch port


Display statistics for the specified logical switch port.
get logical-switch port <dpd-uuid-lswitch-port-arg> stats (Deprecated)

Display logical switch ports


Display ports for all logical switches.
get logical-switch ports (Deprecated)

Display ports stats for all logical switches


Display port statistics for all logical switches.
get logical-switch ports stats (Deprecated)

Get logical switch local mac


Display a specific logical switch's local or remote MAC, ARP, or VTEP information.
get logical-switch {local | remote} {mac-cache | arp-cache | vtep-cache} <vni>

Display the logical switch port


Display information about the specified logical switch port.
get logical-switch-port <uuid-arg> (Deprecated)

Get logical switch port status


Display the status for logical switch ports on this hypervisor host.
get logical-switch-port status

Display logical switches


Display all logical switches on this host.
get logical-switches (Deprecated)

Display logical switches


Display information about all logical switches.
get logical-switches (Deprecated)

Display all logical switches associated with the VIF on this host


Display all logical switches associated with the VIF on this host.
get logical-switches (Deprecated)

Display specified counter's detailed description.


Display specified counter's detailed description.
get logical-switches datapath-stats module <mod_name_arg_esx> counter <ctr_name_arg_esx> description verbose

List all the counters with brief description for the specified module.


List all the counters with brief description for the specified module.
get logical-switches datapath-stats module <mod_name_arg_esx> counters list

Display specified kernel module's detailed description.


Display specified kernel module's detailed description.
get logical-switches datapath-stats module <mod_name_arg_esx> description verbose

List all the observability enabled kernel modules.


List all the observability enabled kernel modules with.
get logical-switches datapath-stats modules list

Display a summary of all logical switch statistics


Display a summary of all logical switch statistics.
get logical-switches stats (Deprecated)

Display external IP and internal IP of LSP


Display external IP and internal IP of LSP.
get lsp-eip-binding-under-ls <ls-uuid>

Show logical mdproxy server


Display a specific metadata proxy server.
get mdproxy server <uuid-string-arg>

Show all logical mdproxy server


Display all metadata proxy servers.
get mdproxy servers

Display multicast forwarding table


Display the multicast forwarding table for the logical router in the VRF context. The forwarding plane merges the mroutes from the control plane and from IGMP snooping to build out mfib. A (s,g) mroute displayed from the control plane may not be shown identically from the forwarding plane. When there are multiple matches from mfib lookup, the packet will be replicated to all valid outgoing interfaces for each matched entry.
get mfib

Display multicast forwarding entries matching a multicast group in VRF


Display multicast forwarding entries matching a multicast group for the specified logical router in the VRF context. The forwarding plane merges the mroutes from the control plane and from IGMP snooping to build out mfib. A (s,g) mroute displayed from the control plane may not be shown identically from the forwarding plane. When there are multiple matches from mfib lookup, the packet will be replicated to all valid outgoing interfaces for each matched entry.
get mfib <multicast-ip-address>

Display multicast routes


Display all the multicast learnt routes.
get mroute <ip-address>

Display load-balancing selection for multicast group in VRF


Display the load-balancing selection for a multicast group for the specified logical router in the VRF context.
get multicast load-balancing <multicast-ip-address>

Display all EIP binding config table entries


Display all EIP binding config table entries.
get nat eip-binding

Display EIP binding config table entries with matching eip table id


Display all EIP binding config entries with matching eip table id.
get nat eip-binding eip-table-id <uuid-string-arg>

Display EIP binding config table entries with specific ip and uuid


Display all EIP binding config table entries with ip and uuid.
get nat eip-binding eip-table-id <uuid-string-arg> ip <ip46-address>

Display all EIP binding fastpath table entries


Display all EIP binding fastpath table entries.
get nat eip-binding fastpath

Display EIP binding fastpath table entries with matching eip table id


Display all EIP binding fastpath table entries with matching eip table id.
get nat eip-binding fastpath eip-table-id <uuid-string-arg>

Display EIP binding fastpath table entries with specific ip and uuid


Display all EIP binding fastpath table entries with specific ip and uuid
get nat eip-binding fastpath eip-table-id <uuid-string-arg> ip <ip46-address>

Display EIP binding fastpath table entries with specific ip


Display all EIP binding fastpath table entries with ip.
get nat eip-binding fastpath ip <ip46-address>

Display EIP binding config table entries with specific ip


Display all EIP binding config table entries with ip.
get nat eip-binding ip <ip46-address>

Display the logical router's neighbor table


Display the neighbor table for the logical router in the VRF context.
get neighbor

Display OSPF information


Display OSPF information.
get ospf

Display OSPF database summary


Display OSPF database summary.
get ospf database

Display ASBR-Summary LSAs


Display ASBR-Summary LSAs.
get ospf database asbr-summary

Display ASBR-Summary LSAs


Display ASBR-Summary LSAs.
get ospf database asbr-summary <ip-address>

Display external LSAs


Display external LSAs.
get ospf database external

Display external LSAs


Display external LSAs.
get ospf database external <ip-address>

Display Network LSAs


Display Network LSAs.
get ospf database network

Display Network LSAs


Display Network LSAs.
get ospf database network <ip-address>

Display NSSA external LSAs


Display NSSA external LSAs.
get ospf database nssa-external

Display NSSA external LSAs


Display NSSA external LSAs.
get ospf database nssa-external <ip-address>

Display router LSAs


Display router LSAs.
get ospf database router

Display router LSAs


Display router LSAs.
get ospf database router <ip-address>

Display summary LSAs


Display summary LSAs.
get ospf database summary

Display summary LSAs


Display summary LSAs.
get ospf database summary <ip-address>

Display OSPF Graceful Restart information


Display OSPF Graceful Restart information.
get ospf graceful-restart

Display OSPF interface information


Display OSPF interface information.
get ospf interface

Display OSPF neighbor list


Display OSPF neighbor list.
get ospf neighbor

Display OSPF routes


Display OSPF routes.
get ospf route

Show external summary addresses


Show external summary addresses.
get ospf summary-address

Display the state of BSM message processing.


Display the state of BSM message processing. Enabled - BSM messages are processed. Disabled - BSM messages are ignored.
get pim bsm state

Display logical objects related to the specified logical port


Display logical objects related to the specified logical port.
get port <uuid-string-arg> [api-args]

Display Ports


Display information about all ports.
get ports

Display port information


Display port information on the current host.
get ports

Display info about redirection Policy


Display information about Redirection Policy
get redirection-policy

Display info about Redirection POlicy


Display information about Redirection Policy.
get redirection-policy <dpd-uuid-service-insertion-arg>

Display info about Redirection Policy BFD control status.


Display information about Redirection Policy BFD control status.
get redirection-policy bfd-ctrl

Display info about Redirection Policy flow programming table.


Display information about Redirection Policy flow programming table.
get redirection-policy flow-prog-table

Display info about Redirection Policy failed SPI.


Display information about Redirection Policy failed SPI.
get redirection-policy spi-fail-table

Display info about EW Redirection VRF to interface mapping.


Display information about EW Redirection VRF to interface mapping.
get redirection-policy vrf-to-intf

Display detailed information of an IPv6 route in RIB


Display detailed information of an IPv6 route in RIB. Specify a prefix or IPv6 address to display only the route used for that network.
get route [<prefix>]

Display detailed information of an IPv4 route in RIB


Display detailed information of an IPv4 route in RIB. Specify a prefix or IPv4 address to display only the route used for that network.
get route [<prefix>]

Display IPv4 BGP routes for a specified prefix in RIB


Display IPv4 BGP routes for a specified prefix in RIB.
get route bgp [<prefix>]

Display IPv4 Connected routes for a specified prefix in RIB


Display IPv4 Connected routes for a specified prefix in RIB.
get route connected [<prefix>]

Display all OSPF routes in RIB


Display all OSPF routes in RIB.
get route ospf

Display IPv4 OSPF routes for a specified prefix in RIB


Display IPv4 OSPF routes for a specified prefix in RIB.
get route ospf [<prefix>]

Display a specific IPv4 route or IPv6 routes for the prefix


Display the specified IPv4 route or IPv6 routes for the prefix.
get route prefix <cidr46-notation>

Display specific IPv4 or IPv6 routes for the prefix


Display specific IPv4 or IPv6 routes for the prefix.
get route prefix <cidr46-notation>

Display IPv4 Static routes for a specified prefix in RIB


Display IPv4 Static routes for a specified prefix in RIB.

get route static command also displays Tier 0 NAT, Tier 1 NAT, Tier 1 connected, Load balancer routes along with Tier 0 & Tier 1 static routes

get route static [<prefix>]

Display routes across Tier0 and all its associated VRFs


Display routes across Tier0 and all its associated VRFs.
get route vrf all <ip-version>

Display IPv4 routes


Display all configured IPv4 routes.
get routes

Display IPv4 and IPv6 routes


Display all configured IPv4 and IPv6 routes.
get routes

Display IPv4 or IPv6 routes


Display all configured IPv4 or IPv6 routes.
get routes <ip-address-type>

Display a routing domain


Display information about the specified routing domain.
get routing-domain <dpd-uuid-routing-domain-arg>

Display a routing domain mtep


Display mtep information about the specified routing domain.
get routing-domain <dpd-uuid-routing-domain-arg> mtep

Display a routing domain


Display information about the specified routing domain.
get routing-domain <uuid-arg>

Display information about all logical switches in a routing domains


Display information about all logical switches in a routing domains.
get routing-domain <uuid-arg> logical-switches-from-app

Display information about all logical switches in a routing domains


Display information about all logical switches in a routing domains.
get routing-domain <uuid-arg> logical-switches-from-pigeon

Display information about all logical switches in a routing domains


Display information about all logical switches in a routing domains.
get routing-domain <uuid-arg> stats

Display information about all routing domains


Display information about all routing domains.
get routing-domain <uuid-arg> vtep

Display routing domain


Display information about all routing domains.
get routing-domains

Display routing domain mtep


Display mtep information about all routing domains.
get routing-domains mtep

Display routing domains from the application


Display information about all routing domains.
get routing-domains-from-app

Display routing domains from Pigeon


Display information about all routing domains.
get routing-domains-from-pigeon

Display information of RTEP group


Display information about a RTEP group.
get rtep-group <rtep-group-id-arg>

Display RTEP group's stats


Display stats about a RTEP group.
get rtep-group <rtep-group-id-arg> stats

Display RTEP group information


Display information about all RTEP groups
get rtep-groups

Display RTEP groups' stats


Display stats about all RTEP groups.
get rtep-groups stats

Display RTEP information


Display information about all rtep tunnel endpoints.
get rteps

Display help information on runbook usage


Display help information on runbook usage.
get runbook <runbook-id-arg> help

Display runbook information


Display information of available runbooks on the current node.
get runbooks

Display segment information


Display information about the specified segment.
get segment <dpd-uuid-lswitch-arg>

Display l2forwarder for a segment


Display the l2forwarder for the specified segment.
get segment <dpd-uuid-lswitch-arg> l2forwarders

Display mac table for a segment


Display the mac address table for the specified segment.
get segment <dpd-uuid-lswitch-arg> mac-address-table

Display neighbor(ARP/NDP) table for a segment


Display the ARP/NDP table for the specified segment.
get segment <dpd-uuid-lswitch-arg> neighbor

Display ports on a segment


Display port information for the specified segment.
get segment <dpd-uuid-lswitch-arg> ports

Display port statistics for a segment


Display port statistics for the specified segment.
get segment <dpd-uuid-lswitch-arg> ports stats

Display remote rtep-group mac addresses for a segment


Display remote rtep-group mac addresses for a segment.
get segment <dpd-uuid-lswitch-arg> rtep-group-mac-address-table

Display remote rtep-group mac addresses


Display remote rtep-group mac addresses.
get segment <dpd-uuid-lswitch-arg> rtep-group-mac-address-table <rtep-group-id-arg>

Display remote rtep-groups for a segment


Display remote rtep-groups for a segment
get segment <dpd-uuid-lswitch-arg> rtep-groups

Display tunnel information for a segment


Display the tunnel information for the specified segment.
get segment <dpd-uuid-lswitch-arg> tunnel-ports

Display VTEP table for a segment


Display the tunnel endpoint table for the specified segment.
get segment <dpd-uuid-lswitch-arg> vtep-table

Display L2Forwarder high-availability history of a segment


Display L2Forwarder high-availability history of a segment
get segment <nsxa-uuid-lswitch-arg> l2forwarders high-availability history state

Display l2forwarder HA information of segment


Display l2forwarder configuration and HA information of segment
get segment <nsxa-uuid-lswitch-arg> l2forwarders high-availability state

Display information about a segment


Display information about the specified segment.
get segment <segment-id-arg-kvm>

Display ARP table for a segment


Display the ARP table for the specified segment.
get segment <segment-id-arg-kvm> arp-table

Display MAC table for a segment


Display the MAC table for the specified segment.
get segment <segment-id-arg-kvm> mac-table

Display ports on a segment


Display ports on the specified segment.
get segment <segment-id-arg-kvm> ports

Display VTEP table for a segment


Display the VTEP table for the specified segment.
get segment <segment-id-arg-kvm> vtep

Display information about a segment


Display information about the specified segment.
get segment <segment_id_arg_esx>

Display ARP table for a segment.


Display the ARP table for the specified segment.
get segment <segment_id_arg_esx> arp-table

Display all the counters for the specified segment.


Display all the counters for the specified segment.
get segment <segment_id_arg_esx> datapath-stats all

Display all counters for the specified segment.


Display all counters for the specified segment.
get segment <segment_id_arg_esx> datapath-stats all new

Display all drop counters of all modules for the specified segment.


Display all drop counters of all modules for the specified segment.
get segment <segment_id_arg_esx> datapath-stats drops

Display new drop counters for the specified segment.


Display new drop counters of all modules for the specified segment.
get segment <segment_id_arg_esx> datapath-stats drops new

Display all the counters for the specified segment and module.


Display all the counters for the specified segment and module.
get segment <segment_id_arg_esx> datapath-stats module <mod_name_arg_esx> all

Display all new counters for the specified segment and module.


Display all new counters for the specified segment and module.
get segment <segment_id_arg_esx> datapath-stats module <mod_name_arg_esx> all new

Display drop counters for the specified segment and module.


Display drop counters for the specified segment and module.
get segment <segment_id_arg_esx> datapath-stats module <mod_name_arg_esx> drops

Display new drop counters for the specified segment and module.


Display new drop counters for the specified segment and module.
get segment <segment_id_arg_esx> datapath-stats module <mod_name_arg_esx> drops new

Display HW VTEP table for a segment


Display the HW VTEP table for the specified segment.
get segment <segment_id_arg_esx> hw-vtep-table

Display MAC table for a segment.


Display the MAC table for the specified segment.
get segment <segment_id_arg_esx> mac-table

Display ND table for a segment


Display the ND table for the specified segment.
get segment <segment_id_arg_esx> nd-table

Display VTEP group information


Display VTEP groups for the specified segment
get segment <segment_id_arg_esx> vtep-group

Display VTEP table for a segment


Display the VTEP table for the specified segment.
get segment <segment_id_arg_esx> vtep-table

Display the segment ports


Display port information for the specified segment.
get segment <uuid-arg> ports

Display information about a Segment


Display information about the specified segment. Use the get segmentss command to get a list of all segments. You can use the VNI or UUID to specify the logical switch.
get segment <vni-or-uuid-arg>

Display local ARP table for a segment


Display local ARP table for the specified segment.
get segment <vni-or-uuid-arg> arp-table

Display ARP table for a segment for both local and remote records


Display the ARP table for the specified segment for both local and remote records.
get segment <vni-or-uuid-arg> arp-table all

Display ARP table for a segment for both local and remote records


Display the ARP table for the specified segment for both local and remote records
get segment <vni-or-uuid-arg> arp-table all verbose

Display ARP table for a Segment for only remote records, show site id at column TransportNodeId


Display the ARP table for the specified segment for only remote records.
get segment <vni-or-uuid-arg> arp-table remote

Display ARP table for a segment for only remote records


Display the ARP table for the specified segment for only remote records.
get segment <vni-or-uuid-arg> arp-table remote verbose

Display local ARP table for a segment


Display local ARP table for the specified segment.
get segment <vni-or-uuid-arg> arp-table verbose

Display local MAC table for a segment


Display local MAC address table for the specified Segment.
get segment <vni-or-uuid-arg> mac-table

Display MAC table for a segment for both local and remote mac records


Display the MAC address table for the specified segment for both local and remote mac records.
get segment <vni-or-uuid-arg> mac-table all

Display MAC table for a segment for both local and remote records


Display the MAC address table for the specified segment for both local and remote records.
get segment <vni-or-uuid-arg> mac-table all verbose

Display MAC table for a segment for only remote mac records


Display the MAC address table for the specified Segment for only remote mac records.
get segment <vni-or-uuid-arg> mac-table remote

Display MAC table for a segment for only remote records


Display the MAC address table for the specified segment for only remote records.
get segment <vni-or-uuid-arg> mac-table remote verbose

Display local MAC table for a segment


Display local MAC address table for the specified segment.
get segment <vni-or-uuid-arg> mac-table verbose

Display RTEP Group synced from remote site, the first row shows local RTEP Group.


Display RTEP Group synced from remote site
get segment <vni-or-uuid-arg> rtep-group

Display transport nodes which joined a given segment


Display transport nodes which joined a given segment.
get segment <vni-or-uuid-arg> transport-node-table

Display information about a segment


Display information about the specified Segment and segment ports associated with it. Use the get segments command to get a list of all segmentss. You can use the VNI or UUID to specify the segment.
get segment <vni-or-uuid-arg> verbose

Display all virtual tunnel end points related to the specified segment


Display all virtual tunnel end points related to the specified segment.
get segment <vni-or-uuid-arg> vtep

Display all virtual tunnel end points related to the specified segment


Display all virtual tunnel end points related to the specified segment.
get segment <vni-or-uuid-arg> vtep verbose

Display ports for a segment


Display port information for the specified segment.
get segment port <dpd-uuid-lswitch-port-arg>

Display stats for a segment port


Display statistics for the specified segment port.
get segment port <dpd-uuid-lswitch-port-arg> stats

Display segment ports


Display ports for all segments.
get segment ports

Display ports stats for all segments


Display port statistics for all segments.
get segment ports stats

Get segment local mac


Display a specific segment's local or remote MAC, ARP, or VTEP information.
get segment {local | remote} {mac-cache | arp-cache | vtep-cache} <vni>

Display the segment port


Display information about the specified segment port.
get segment-port <uuid-arg>

Get segment port status


Display the status for segment ports on this hypervisor host.
get segment-port status

Display all segment associated with the VIF on this host


Display all segment associated with the VIF on this host.
get segments

Display segments


Display information about all segments.
get segments

Display segments


Display all segments on this host.
get segments

Display statistics information about the specified segment


Display statistics information about the specified Segment.
get segments <vni-or-uuid-arg> stats

Display specified counter's detailed description.


Display specified counter's detailed description.
get segments datapath-stats module <mod_name_arg_esx> counter <ctr_name_arg_esx> description verbose

List all the counters with brief description for the specified module.


List all the counters with brief description for the specified module.
get segments datapath-stats module <mod_name_arg_esx> counters list

Display specified kernel module's detailed description.


Display specified kernel module's detailed description.
get segments datapath-stats module <mod_name_arg_esx> description verbose

List all the observability enabled kernel modules.


List all the observability enabled kernel modules.
get segments datapath-stats modules list

Display a summary of all segment statistics


Display a summary of all segment statistics.
get segments stats

Get the entire routing configuration


Display the entire routing configuration.
get service router config

Get redistribution configuration


Display the redistribution configuration.
get service router config redist

Get route maps configuration


Display the route map configuration.
get service router config route-maps

Display service groups of the service router


Display the service groups state for the service router
get service-groups

Display service groups of the service router


Display the service groups state for the service router
get service-groups details

Display info about Service Insertion


Display information about Service Insertion.
get service-insertion

Display info about Service Insertion


Display information about Service Insertion.
get service-insertion <dpd-uuid-service-insertion-arg>

Display info about NS Service Insertion BFD control status.


Display information about NS Service Insertion BFD control status.
get service-insertion bfd-ctrl

Display info about Service Insertion flow programming table.


Display information about Service Insertion flow programming table.
get service-insertion flow-prog-table

Display info about Service Insertion failed SPI.


Display information about Service Insertion failed SPI.
get service-insertion spi-fail-table

Display info about EW Service Insertion VRF to interface mapping.


Display information about EW Service Insertion VRF to interface mapping.
get service-insertion vrf-to-intf

Display spoof guard config for a host switch and dvport


Display spoof guard config for a host switch and dvport.
get spoof-guard config <hs-name-arg> <dvport-id-arg>

Display Spoof Guard config for a logical port


Displays Spoof Guard config for a logical port.
get spoof-guard config <logical-port>

Display spoof guard stats for a host switch and dvport


Display spoof guard stats for a host switch and dvport.
get spoof-guard stats <hs-name-arg> <dvport-id-arg>

Display Spoof Guard stats for a logical port


Displays Spoof Guard stats for a logical port.
get spoof-guard stats <logical-port>

Display spoof guard whitelist for a host switch and dvport


Display spoof guard whitelist for a host switch and dvport.
get spoof-guard whitelist <hs-name-arg> <dvport-id-arg>

Display Spoof Guard whitelist for a logical port


Displays Spoof Guard whitelist for a logical port.
get spoof-guard whitelist <logical-port>

Display the logical router statistics


Display statistics for the logical router in the VRF context.
get stats

Display the stats of all ifaces in the path


Display the statistics for all interfaces in the path.
get stats

Display Switch Security config for a host switch and dvport


Display Switch Security config for a host switch and dvport.
get switch-security config <hs-name-arg> <dvport-id-arg>

Display Switch Security stats for a host switch and dvport


Display Switch Security stats for a host switch and dvport.
get switch-security stats <hs-name-arg> <dvport-id-arg>

Display a logical router's tenant context


Display tenant context information for the logical router in the VRF context.
get tenant-context

Display transit gateway summary


Display information about transit gateways on this hypervisor host.
get tgws

Display Configured TGWs


Display information about all TGWs.
get tgws

Display transit gateway summary


Display information on transit gateway routers at policy path on this hypervisor host.
get tgws <policy-path-string-arg>

Display TLS inspection info


Display TLS inspection information.
get tls-inspection

Display TLS inspection action profile details


Display TLS inspection action profile details.
get tls-inspection action-profile <uuid-string-arg>

Display TLS inspection action profile info


Display TLS inspection action profile information.
get tls-inspection action-profiles

Display TLS inspection bypassed sites


Display TLS inspection bypassed sites and the reason.
get tls-inspection bypassed-sites lr-uuid <uuid>

Display TLS inspection bypassed sites


Display TLS inspection bypassed sites and the reason.
get tls-inspection bypassed-sites sr-uuid <uuid>

Display TLS inspection CA bundle details


Display TLS inspection CA bundle details.
get tls-inspection ca-bundle <uuid-string-arg>

Display TLS inspection CA bundle info


Display TLS inspection CA bundle information.
get tls-inspection ca-bundles

Show TLS Inspection Cached Certificate Details


Show TLS Inspection Cached Certificate Details.
get tls-inspection cached-certificate <certificate-id-string-arg>

Display TLS inspection cached certificates


Display TLS inspection cached certificates.
get tls-inspection cached-certificates

Show TLS Inspection Certificate Details


Show TLS Inspection Certificate Details.
get tls-inspection certificate <tls-certificate-id-arg>

Display TLS inspection CRL info


Display TLS inspection CRL information.
get tls-inspection crls

Display revoked certs of a TLS inspection CRL matching a serial number


Display revoked certs of a TLS inspection CRL matching a serial number.
get tls-inspection crls <crl-uuid> certificate-serial-number <certificate-serial-number>

Display revoked certs of a TLS inspection CRL of an issuer


Display revoked certs of a TLS inspection CRL of an issuer.
get tls-inspection crls <crl-uuid> issuer <issuer-SHA256>

Display the revoked cert of a TLS inspection CRL that matches the issuer hash and serial number


Display the revoked cert of a TLS inspection CRL that matches the issuer hash and serial number.
get tls-inspection crls <crl-uuid> issuer <issuer-SHA256> certificate-serial-number <certificate-serial-number>

Display the revoked cert of a TLS inspection CRL that matches the public key hash


Display the revoked cert of a TLS inspection CRL that matches the public key hash.
get tls-inspection crls <crl-uuid> public-key-hash <public-key-hash>

Display the revoked cert of a TLS inspection CRL that matches the subject SHA256 hash


Display the revoked cert of a TLS inspection CRL that matches the subject SHA256 hash.
get tls-inspection crls <crl-uuid> subject <subject-SHA256>

Display the revoked cert of a TLS inspection CRL that matches the subject and public key hash


Display the revoked cert of a TLS inspection CRL that matches the subject and public key hash.
get tls-inspection crls <crl-uuid> subject <subject-SHA256> public-key-hash <public-key-hash>

Display revoked certs of a TLS inspection CRL


Display revoked certs of a TLS inspection CRL.
get tls-inspection crls <uuid-string-arg>

Display TLS inspection global error stats


Display TLS inspection global error stats associated with the routers.
get tls-inspection errors

Display TLS inspection error stats


Display TLS inspection error stats associated with the routers.
get tls-inspection errors lr-uuid <uuid>

Display TLS inspection error stats


Display TLS inspection error stats associated with the routers.
get tls-inspection errors sr-uuid <uuid>

Display TLS inspection logging levels


Display TLS inspection logging levels.
get tls-inspection logging-level

Display TLS inspection rule stats


Display TLS inspection rule stats associated with the routers.
get tls-inspection rule-stats <lr-uuid|sr-uuid>

Display TLS inspection rule stats


Display TLS inspection rule stats associated with the routers.
get tls-inspection rule-stats <lr-uuid|sr-uuid> [<rule-id>]

Display TLS inspection rules brief


Display TLS inspection rules brief associated with the routers.
get tls-inspection rules brief <lr-uuid|sr-uuid>

Display TLS inspection rules brief


Display TLS inspection rules brief associated with the routers.
get tls-inspection rules brief <lr-uuid|sr-uuid> [<rule-id>]

Display TLS inspection status info


Display TLS inspection status information.
get tls-inspection status

Display TLS inspection traffic stats


Display TLS inspection traffic stats associated with the routers.
get tls-inspection traffic-stats lr-uuid <uuid>

Display TLS inspection traffic stats


Display TLS inspection traffic stats associated with the routers.
get tls-inspection traffic-stats sr-uuid <uuid>

Display information of a TN TEP group


Display information about a TN TEP group.
get tn-tep-group <tn-tep-group-id-arg>

Display TN TEP group information


Display information about all TN TEP groups
get tn-tep-groups

Display external IP mapping table entries on the host


Display external IP mapping table entries on the host
get transport-node external-ip

Display external IP mapping table entry on the host


Display external IP mapping table entry on the host
get transport-node external-ip <ip-address>

Display information about a tunnel port


Display information about the specified tunnel port.
get tunnel-port <dpd-uuid-tunnel-port-arg>

Display stats for a tunnel port


Display statistics for the specified tunnel port.
get tunnel-port <dpd-uuid-tunnel-port-arg> stats

Display tunnel ports


Display information about all tunnel ports e.g. Geneve, GRE, VxLAN
get tunnel-ports

Display stats for all tunnel ports


Display statistics for all tunnel ports e.g. Geneve, GRE, VxLAN
get tunnel-ports stats

Display Multicast Underlay subscriptions


Display all Multicast Groups the Edge joined in Underlay
get underlay-subscription

Display reputation and category info about URL


Display reputation and category info about URL
get url-classification <url-string-arg>

Display Configured VPCs


Display information about all VPCs.
get vpcs

Display vpc gateway summary


Display information about vpc gateway routers on this hypervisor host.
get vpcs

Display vpc gateway router summary


Display information on vpc gateway routers on this hypervisor host.
get vpcs <policy-path-string-arg>

Display vpc segment summary


Display information on subnet on this hypervisor host.
get vpcs <policy-path-string-arg> subnets

Display all VRF VNI information


Display all VRF VNI information.
get vrf vni

Display all VTEP records for specific VTEP GROUP


Display all VTEP records for specific VTEP GROUP
get vtep-group <int-arg> vtep

Display all VTEP records for specific VTEP GROUP


Display all VTEP records for specific VTEP GROUP
get vtep-group <int-arg> vteps-staleness-status

Display information of a VTEP group


Display information about a VTEP group.
get vtep-group <vtep-group-id-arg>

Display VTEP group information


Display information about all VTEP groups
get vtep-groups

Display VTEP information


Display information about all tunnel endpoints.
get vteps

Configure livetrace session.


Configure livetrace session.
livetrace config <action-type> <dpd-uuid-name-port-arg> protocol <proto-num> source-ip <network46-address> <l4-port-range-arg> dest-ip <network46-address> <l4-port-range-arg> timeout <time-out>

Configure livetrace session for ESP protocol with IP.


Configure livetrace session for ESP protocol with IP..
livetrace config <action-type> <dpd-uuid-name-port-arg> protocol <proto-num> source-ip <network46-address> dest-ip <network46-address> timeout <time-out>

Configure livetrace session for ESP protocol with SPI.


Configure livetrace session for ESP protocol with SPI..
livetrace config <action-type> <dpd-uuid-name-port-arg> protocol <proto-num> spi <spi-value> timeout <time-out>

Configure livetrace session for all packets.


Configure livetrace session for all packets.
livetrace config <action-type> <dpd-uuid-name-port-arg> protocol <proto-num> timeout <time-out>

Get live trace session information.


Retrieve live trace session information.
livetrace show

Display Nslookup DNS Forwarder result


Display Nslookup DNS Forwarder result.
nslookup dns-forwarder <hostname-or-ip-address> [[server-ip <ip-address>] [source-ip <ip-address>]]

Display Nslookup DNS Forwarder result


Display Nslookup DNS Forwarder result.
nslookup dns-forwarder <uuid> <hostname-or-ip-address> [server-ip <ip-address>] [source-ip <ip-address>]

Reset DHCP Server IPv6 Stats Entries


Reset the DHCP Server IPv6 Stats Entries.
reset dhcp server <uuid-string-arg> ipv6-stats

Reset DHCP Server IPv4 Stats Entries


Reset the DHCP Server IPv4 Stats Entries.
reset dhcp server <uuid-string-arg> stats

Clear DNS Forwarder cache


Clear the DNS Forwarder cache
reset dns-forwarder <uuid-string-arg> cache

Reset DNS Forwarder Stats and Display the Latest Entries


Reset the DNS Forwarder Stats Entries.
reset dns-forwarder <uuid-string-arg> stats

Clear DNS Forwarder Cache Per SR


Clear the DNS Forwarder Cache Per SR.
reset dns-forwarder cache

Reset DNS Forwarder Stats and Display Entries Per SR


Reset the DNS Forwarder Stats Entries Per SR.
reset dns-forwarder stats

Set the specified bridge port HA state to Active


Set the specified bridge port HA state to Active
set bridge <nsxa-uuid-lswitch-port-arg> state active

Display packet capture on session


Start a packet capture. You must have already configured the packet capture with the set capture session <session-number> interface <port-uuid-name> direction <direction> command in basic mode, or with the set capture session <session-number> direction <direction> command in path mode.

Use the get capture sessions command in basic mode to see all configured capture sessions.

set capture session <dpd-number-session-id-arg>

Monitor current port in a packet capture session


Configure a packet capture using the current interface in the path. You can change the current interface and run this command again to configure multiple interfaces on the same packet capture session.

Start the packet capture with the set capture session <session-number> command in either basic or path mode, or with the set capture session <session-number> [file <filename> [count <packet-count> [expression <expression> command in basic mode.

Use the get capture sesssions command in basic mode to see all configured capture sessions.

set capture session <dpd-number-session-id-arg> direction <capture-direction-arg>

Monitor a port in a packet capture session


Configure a packet capture using the specified interface. You can run this command multiple times to configure multiple interfaces on the same packet capture session.

To run the packet capture using this configuration, use the set capture session <session-number> [file <filename>] [count <packet-count>] [expression <expression>] command.

If you need to capture packets from only one interface, you can configure and run the packet capture with a single command: start capture interface <interface-name> [file <filename>] [count <packet-count>] [expression <expression>].

Use the get capture sessions command to see all configured capture sessions.

set capture session <dpd-number-session-id-arg> interface <variable-interface-name> direction <capture-direction-arg>

Start packet capture for the specified session


Start a packet capture. You must have already configured the packet capture with the set capture session <session-number> interface <port-uuid-name> direction <direction> command.

If you don't specify a file, the output displays on the terminal.

Type Control-C to end the packet capture.

You can filter the capture using tcpdump expressions. The expression must be the last argument of the command.

Use the get capture sessions command to see all configured capture sessions.

set capture session <session-number> [file <filename>] [count <packet-count>] [expression <expression>]

Start packet capture for the specified session


Start a packet capture. You must have already configured the packet capture with the set capture session <session-number> interface <port-uuid-name> direction <direction> command.

If you don't specify a file, the output displays on the terminal.

If file is specified, the file count can be specified to enable rotating capture files, where each file will be of size 100MB. Multiple files will be bundled into single tarfile.

Type Control-C to end the packet capture.

You can filter the capture using tcpdump expressions. The expression must be the last argument of the command.

Use the get capture sessions command to see all configured capture sessions.

set capture session <session-number> [file <filename>] [file-count <file-count>] [count <packet-count>] [expression <expression>]

Monitor a port on a certain core in a packet capture session


Configure a packet capture using the specified interface. You can run this command multiple times to configure multiple interfaces on the same packet capture session. On a LAG interface, LACP packets will also be captured when the direction of packet capture is ingress or dual.

To run the packet capture using this configuration, use the set capture session <session-number> [file <filename>] [count <packet-count>] [expression <expression>] command.

If you need to capture packets from only one interface, you can configure and run the packet capture with a single command: start capture interface <interface-name> [direction <direction>] [file <filename>] [count <packet-count>] [expression <expression>].

Use the get capture sessions command to see all configured capture sessions.

set capture session <session-number> interface <port-uuid-name> direction <capture-direction> [core <core-id>]

Configure NSX DPI Lib Log Level


Configure NSX DPI Lib Log Level.
set dpi lib-dfw logging-level <dpi-lib-log-level-arg>

Configure NSX DPI Log Level


Configure NSX DPI Log Level.
set dpi logging-level <dpi-log-level-arg>

Set peer configuration for firewall active/standby


Set the peer configuration for active/standby configuration. This configuration happens automatically when firewall rules are added to an active/standby logical router via the NSX Manager web interface or API.

This command should be used for advanced configuration or troubleshooting only.

If you manually configure the active/standby peer on an edge node, you must also configure its peer.

set firewall <dpd-uuid-firewall-port-arg> local-ip <ip-address> sync-peer <nsxa-uuid-lrouter-port-arg> sync-peer-ip <ip-address>

Set mode for firewall synchronization


Set the firewall synchronization mode for active/standby configuration. This configuration happens automatically when firewall rules are added to an active/standby logical router via the NSX Manager web interface or API.

This command should be used for advanced configuration or troubleshooting only.

If you manually configure the active/standby sync, you must correctly configure both edge nodes in the active/standby configuration. One node must be configured as primary and one as secondary. One node must be configured as active, and one as passive.

set firewall <dpd-uuid-firewall-port-arg> sync-rank <fw-primary-arg> sync-mode <fw-active-arg>

Configure NSX IDS Engine Fast Log.


Configure NSX IDS Engine Fast Log.
set ids engine alertlog <ids-eng-alertlog-arg>

Configure IDS Engine Fast Log.


Configure IDS Engine Fast Log.
set ids engine fastlog <ids-eng-fastlog-arg>

Configure NSX IDS Engine Log Level


Configure NSX IDS Engine Log Level.
set ids engine logging-level <ids-eng-log-level-arg>

Set IDS logging level


Sets the IDS logging level.
set ids engine logging-level <ids-logging-level-arg>

Clear IDS Event Engine stats


clear IDS Event Engine stats.
set ids events stats clear

Configure NSX IDS Log Level


Configure NSX IDS Log Level.
set ids logging-level <ids-log-level-arg>

Set the interface plane mode


Set the plane property of the interface and optionally configure the IP address. By default, the plane property is not configured, the dataplane component takes control of the interface for the data path and the interface is not visible to the Linux kernel. If plane is set to mgmt, it is reported as such to the management plane (MP) via MPA, and the corresponding interface is not consumed by the dataplane for dataplane operations and is available for configuration from the CLI. If it is set to debug, the dataplane does not consume the interface for dataplane operations and the interface is available for configuration from the CLI.

Optionally, you can configure the interface with a DHCP or static IP address. If you configure a static IP address, make sure an appropriate network route is also configured. You can use the optional gateway argument, or set a route using the set route command.

For NSX Manager or a controller, you cannot configure the plane property. You also cannot configure a DHCP or static IP address because both NSX Manager and a controller have a static IP address that is set at installation and cannot be changed.

set interface <interface-name> [ip <prefix-ipv46> [gateway <gateway-ip>] | dhcp] plane <plane>

Set network IP address and netmask


Configure a static IP address and netmask. Make sure an appropriate network route is also configured. You can use the optional gateway argument, or set a route using the set route command.

You cannot configure a static IP address for NSX Manager or a controller because their static IP address is set at installation and cannot be changed.

set interface <interface-name> ip <prefix-ipv46> [gateway <gateway-ip>]

Enable/disable rule log


Enable or disable rule log for a specific load balancer.
set load-balancer <lb-uuid-arg> rule-log <enabled-arg>

Enable/disable rule log


Enable or disable rule log for a specific pool.
set load-balancer <lb-uuid-arg> rule-log pool <pool-uuid-arg> <enabled-arg>

Enable/disable rule log


Enable or disable rule log for a specific virtual server.
set load-balancer <lb-uuid-arg> rule-log virtual-server <vs-uuid-arg> <enabled-arg>

Set load balancer performance profile


Apply edge parameters to accelerate load balancer performance.
set load-balancer perf-profile <perf-profile-type-arg>

Add IPv4 or IPv6 network route


Add IPv4 or IPv6 network route. You can also just set a gateway by specifying a prefix value of 0.0.0.0/0 for Ipv4 and ::/0 for Ipv6. Default value for the IPv6 route metric is 1024.
set route prefix <prefix> [gateway <gateway-ip>] [interface <interface-name>] [metric <ip-route-metric>]

Add IPv4 network route


Add IPv4 network route. You can also just set a gateway by specifying a prefix value of 0.0.0.0/0.
set route prefix <prefix> [gateway <gateway-ip>] [interface <interface-name>] [metric <ip-route-metric>]

Set TLS inspection logging level for all destinations


Set TLS inspection logging level for all destinations.
set tls-inspection logging-level <edge-service-logging-level-arg>

Set TLS inspection logging level for a destination


Set TLS inspection logging level for a destination.
set tls-inspection logging-level <edge-service-logging-level-arg> destination <dest-arg>

Show packet capture on dvfilter


Display a packet capture on a given dvfilter. To get a list of dvfilter names, enter start capture dvfilter followed by a space and the Tab key.
start capture dvfilter <esx-dvfilter-name-arg>

Start packet capture on given interface with multiple options and save to file


Start a packet capture on the specified interface in the given direction and core. If you do not specify a file, the output is displayed on the terminal. If file is specified, the file count can be specified to enable rotating capture files, where each file will be of size 100MB. Multiple files will be bundled into single tarfile. Type Control-C to end the packet capture. You can filter the capture using tcpdump expressions. The expression must be the last argument of the command. The expression is a keyword followed by a value. You can specify multiple keyword-value pairs.
start capture interface <interface-name> [direction <direction>] [core <core-id>] [snaplen <capture-snaplen-arg] [file <filename>] [file-count <file-count>] [expression <expression>]

Start packet capture on given interface with multiple options and save to file


Start a packet capture on the specified interface in the given direction. If you do not specify a file, the output is displayed on the terminal. Type Control-C to end the packet capture. You can filter the capture using tcpdump expressions. The expression must be the last argument of the command. The expression is a keyword followed by a value. You can specify multiple keyword-value pairs. The list of keywords and acceptable values are:

Keyword Value
ethtype Ethernet type in HEX format. 0x<ETHTYPE>
mac Source or destination MAC address
srcmac Source MAC address
dstmac Destination MAC address
ipproto IP protocol in HEX format. 0x<PROTO>
ip Source or destination IPv4 address
ip6 Source or destination IPv6 address
srcip Source IPv4 address
dstip Destination IPv4 address
srcip6 Source IPv6 address
dstip6 Destination IPv6 address
port Source or destination TCP port
srcport Source TCP port
dstport Destination TCP port
srcudpport Source UDP port
dstudpport Destination UDP port
vni VNI of the flow. When specified, the decoding offset for the remainder of the expression changes to the inner packet.
vlan VLAN ID

start capture interface <interface-name> [direction <direction>] [file <filename>] [count <packet-count>] [expression <expression>]

Start packet capture on node with given parameters


Start packet capture in standalone mode with given fcport.
start capture node <cap-node-id-arg> fcport <fcport-id-arg> direction <capture-direction-arg>

Start packet capture on node with given parameters


Start packet capture in standalone mode with given fcport.
start capture node <cap-node-id-arg> fcport <fcport-id-arg> direction <capture-direction-arg> parameters <capture-options-arg>

Start packet capture on node with given parameters


Start packet capture in steam mode with given fcport.
start capture node <cap-node-id-arg> fcport <fcport-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on node with given parameters


Start packet capture in steam mode with given fcport.
start capture node <cap-node-id-arg> fcport <fcport-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Start packet capture on node with given filter


Start packet capture in standalone mode with given filter.
start capture node <cap-node-id-arg> filter <filter-name-arg> stage <stage-type-arg>

Start packet capture on node with given filter


Start packet capture in standalone mode with given filter.
start capture node <cap-node-id-arg> filter <filter-name-arg> stage <stage-type-arg> parameters <capture-options-arg>

Start packet capture on node with given filter


Start packet capture in stream mode with given filter.
start capture node <cap-node-id-arg> filter <filter-name-arg> stage <stage-type-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on node with given filter


Start packet capture in stream mode with given filter.
start capture node <cap-node-id-arg> filter <filter-name-arg> stage <stage-type-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Start packet capture on node with given parameters


Start packet capture in standalone mode with given interface.
start capture node <cap-node-id-arg> interface <cap-interface-id-arg> direction <capture-direction-arg>

Start packet capture on node with given parameters


Start packet capture in standalone mode with given interface.
start capture node <cap-node-id-arg> interface <cap-interface-id-arg> direction <capture-direction-arg> parameters <capture-options-arg>

Start packet capture on node with given parameters


Start packet capture in stream mode with given interface.
start capture node <cap-node-id-arg> interface <cap-interface-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on node with given parameters


Start packet capture in stream mode with given interface.
start capture node <cap-node-id-arg> interface <cap-interface-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Start packet capture on node with given parameters


Start packet capture in standalone mode with given pnic.
start capture node <cap-node-id-arg> pnic <pnic-value-arg> direction <capture-direction-arg>

Start packet capture on node with given parameters


Start packet capture in standalone mode with given pnic.
start capture node <cap-node-id-arg> pnic <pnic-value-arg> direction <capture-direction-arg> parameters <capture-options-arg>

Start packet capture on node with given parameters


Start packet capture in steam mode with given pnic.
start capture node <cap-node-id-arg> pnic <pnic-value-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on node with given parameters


Start packet capture in steam mode with given pnic.
start capture node <cap-node-id-arg> pnic <pnic-value-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Start packet capture on ESXi node with given parameters


Start packet capture in standalone mode with given parameters.
start capture node <cap-node-id-arg> vdrport <vdrport-id-arg> direction <capture-direction-arg>

Start packet capture on ESXi node with given parameters


Start packet capture in standalone mode with given parameters.
start capture node <cap-node-id-arg> vdrport <vdrport-id-arg> direction <capture-direction-arg> parameters <capture-options-arg>

Start packet capture on ESXi node with given parameters


Start packet capture on ESXi node with given parameters.
start capture node <cap-node-id-arg> vdrport <vdrport-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on ESXi node with given parameters


Start packet capture on ESXi node with given parameters.
start capture node <cap-node-id-arg> vdrport <vdrport-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Start packet capture on node with given parameters


Start packet capture in standalone mode with given vif.
start capture node <cap-node-id-arg> vif <vif-id-arg> direction <capture-direction-arg>

Start packet capture on node with given parameters


Start packet capture in standalone mode with given vif.
start capture node <cap-node-id-arg> vif <vif-id-arg> direction <capture-direction-arg> parameters <capture-options-arg>

Start packet capture on node with given parameters


Start packet capture in stream mode with given vif.
start capture node <cap-node-id-arg> vif <vif-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on node with given parameters


Start packet capture in stream mode with given vif.
start capture node <cap-node-id-arg> vif <vif-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Start packet capture on ESXi node with given vmknic


Start packet capture in standalone mode on ESXi node with given vmknic.
start capture node <cap-node-id-arg> vmknic <vmknic-id-arg> direction <capture-direction-arg>

Start packet capture on ESXi node with given parameters


Start packet capture in standalone mode with given parameters.
start capture node <cap-node-id-arg> vmknic <vmknic-id-arg> direction <capture-direction-arg> parameters <capture-options-arg>

Start packet capture on ESXi node with given vmknic


Start packet capture on ESXi node with given vmknic.
start capture node <cap-node-id-arg> vmknic <vmknic-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on ESXi node with given vmknic


Start packet capture on ESXi node with given vmknic.
start capture node <cap-node-id-arg> vmknic <vmknic-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Start packet capture on ESXi node with given vmnic


Start packet capture in standalone mode on ESXi node with given vmnic.
start capture node <cap-node-id-arg> vmnic <vmnic-id-arg> direction <capture-direction-arg>

Start packet capture on ESXi node with given parameters


Start packet capture in standalone mode with given parameters.
start capture node <cap-node-id-arg> vmnic <vmnic-id-arg> direction <capture-direction-arg> parameters <capture-options-arg>

Start packet capture on ESXi node with given vmnic


Start packet capture on ESXi node with given vmnic.
start capture node <cap-node-id-arg> vmnic <vmnic-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on ESXi node with given vmnic


Start packet capture on ESXi node with given vmnic.
start capture node <cap-node-id-arg> vmnic <vmnic-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Start packet capture on ESXi node with given vnic


Start packet capture in standalone mode on ESXi node with given vnic.
start capture node <cap-node-id-arg> vnic <vnic-id-arg> direction <capture-direction-arg>

Start packet capture on ESXi node with given parameters


Start packet capture in standalone mode with given parameters.
start capture node <cap-node-id-arg> vnic <vnic-id-arg> direction <capture-direction-arg> parameters <capture-options-arg>

Start packet capture on ESXi node with given vnic


Start packet capture on ESXi node with given vnic.
start capture node <cap-node-id-arg> vnic <vnic-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg>

Start packet capture on ESXi node with given vnic


Start packet capture on ESXi node with given vnic.
start capture node <cap-node-id-arg> vnic <vnic-id-arg> direction <capture-direction-arg> stream-to <receiver-address-arg> port <receiver-port-arg> parameters <capture-options-arg>

Show packet capture on all interfaces


Display a packet capture on all available interfaces.
start capture trace

Start firewall synchronization for the logical router interface


Start firewall synchronization for the logical router interface. Synchronization happens automatically, but you can optionally start a bulk sync to more quickly synchronize a new or restarted standby router. The sync must be started from the primary router.
start firewall <dpd-uuid-firewall-port-arg> bulk-sync

Start a runbook invocation with multiple arguments specified


Start an invocation of a specified runbook. You can also pass arguments for the certain invocation. The specification of runbook parameters can vary as per individual runbook and can be found by command `get runbook help`. To specify a parameter "foo" with value "bar", the argument can be written in the following syntax: `--foo bar`
start invocation runbook <runbook-id> [runbook-arg <runbook-param>]

Stop packet capture


Stop packet capture by session id.
stop capture session <session-id-arg>

Stop firewall bulk synchronization for the logical router interface


Stop firewall bulk synchronization for the logical router interface.
stop firewall <dpd-uuid-firewall-port-arg> bulk-sync

Trace an injected packet


Trace the specified packet.
traceflow <dpd-uuid-name-port-arg> <dpd-string-base64-arg>

Enter VRF context mode.


This command enters VRF context mode. You can find VRF IDs with the get logical-routers command.
vrf <dpd-uuid-vrfid-lrouter-arg>

Total commands: 1033