7-52
Cisco TrustSec Configuration Guide
OL-22192-01
Chapter 7 Cisco TrustSec Command Summary
clear cts role-based counters
clear cts role-based counters
To reset Security Group ACL statistic counters, use the the clear cts role-basedcounters command in
EXEC or Privileged EXEC mode.
clear cts role-based counters default [ipv4 | ipv6]
clear cts role-based counters from {sgt_num | unknown} [ipv4 | ipv6 | to {sgt_num | unknown}
[ipv4 | ipv6]]
clear cts role-based counters to {sgt_num | unknown} [ipv4 | ipv6 | ]
clear cts role-based counters [ipv4 | ipv6]
Syntax Description
Command Modes EXEC (>); Privileged EXEC (#)
Supported User Roles Administrator
Command History
Usage Guidelines Use the clear cts role-based counters command to clear the Security Group ACL (SGACL)
enforcement counters within the scope you specify. The show cts role-based counters tabulates the
statistics accumulated since the last clear command was issued, as shown in Example 7-1.
Example 7-1 Tabulated SGACL Output from show role-based counters
router# show cts role-based counters
Role-based counters
From To SW-Denied HW-Denied SW-Permitted HW_Permitted
2 5 129 89762 421 7564328
3 5 37 123456 1325 12345678
3 7 0 65432 325 2345678
default Default policy counters
from Specifies the source security group
ipv4 Specifies security groups on IP version 4 networks
ipv6 Specifies security groups on IP version 6 networks
to Specifies the destination security group
sgt_num (0–65533) Specifies the Security Group Tag number
unknown Specifies all Source Groups
Release Modification
12.2(50) SY This command was introduced on the Catalyst 6500 Series Switches.