
16-7
Cisco Nexus 1000V Troubleshooting Guide, Release 5.2(1)SV3(1.1)
OL-31593-01
Chapter 16 ACLs
Troubleshooting ACL Logging
Troubleshooting a Mismatched Configuration Between a VSM and a VEM
If syslog messages are not being sent and the flow information counters are invalid, the configuration
between a VSM and a VEM might be mismatched.
Modify any mismatched configurations by using the appropriate configuration command. If the problem
persists, enable acllog debugging on both the VSM and the VEM and retry the commands.
BEFORE YOU BEGIN
•
Log in to the CLI in EXEC mode.
PROCEDURE
Step 2
vemcmd show acllog config
Example:
switch# vemcmd show acllog config
switch #
Verifies ACL logging on the VEM.
Step 3
logging ip access-list cache max-deny-
flows
<num>
Example:
switch# logging ip access-list cache
max-deny- flows
<num>
switch #
Increases maximum flows to the desired value.
Command
Description
Command
Description
Step 1
show logging ip access-list status
Example:
switch# show logging ip access-list
status
switch #
Verifies that ACL logging is configured properly.
Step 2
vemcmd show acllog config
Example:
switch# vemcmd show acllog config
switch #
Verifies ACL logging on the VEM.