show bottracker sigmatch

Prev Next

This command displays bot tracker signature match results on a Network Security appliance.

This command is not supported on SmartVision Edition appliances, which are Network Security appliances with SmartVision Edition appliance licenses. The SmartVision Edition sensor is also called Trellix Network Security, SmartVision Edition.

Syntax

show bottracker sigmatch

Parameters

None

Example

The following example displays current bot tracker signature match results.

hostname (config) # show bottracker sigmatch
Bottracker sigmatch status  : Enabled 
   rcv_pkts                 :    161743
       tcp                  :    160944
       udp                  :       791
       discard              :         0
   whitelisted (Policy)     :         3
       Domain               :         3
   whitelisted (IOC)        :         0
       IP		    :	      0
       Domain		    :	      0
   Applications detected    :         0
       Client apps          :         0
       Service apps         :         0
       Payload apps         :         0
   alert                    :         0
       IOC                  :         0
       Sigmatch             :         0
           IPS              :         0
   Events Filtered          :         0
   Events Suppressed        :         0
   Events                   :         0
   log                      :         0
   

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Network Security: Before Release 8.0. The command output was enhanced to include the number of bot tracker signature match results for whitelisted domains in Release 8.3.0. Application statistics were added in output results in Release 9.1.2.