Checking system health using the CLI

Prev Next

Use the CLI commands in this topic to view health and status information about Intelligent Virtual Execution - Server appliance components. This topic describes selected commands that return system, hardware status, DTI network, and interface information. For a full list of commands and details about their usage and parameters, see the CLI Command Reference.

  • Monitor, Operator, or Admin access

  • Admin access for the show ipmi command

Note

The examples in this section are from a Network Security appliance, but they are representative of Trellix appliances as well.

To check appliance health:
  1. Go to CLI enable mode:

    hostname > enable
  2. Display detailed information about the system and the software running on it.

    hostname (config) # show version
    Product name:      VX [licensed]
    Product model:     FireEyeVX5500
    Product release:   VX (VX) 7.9.0.478838
    Build ID:          #478838
    Build date:        2016-07-16 21:28:16
    Build arch:        x86_64
    Built by:          root@vta412
    Version summary:   vx VX (VX) 7.9.0.478838 #478838 2016-07-16 21:28:16 x86_64 build@vta412:FireEye/7.9.x-inyo (eng)
    Content Version:   380.471
    Appliance ID:      nnnnnnnnnnnn
    Host ID:           nnnnnnnnnnnn
    System serial num: nnnnnnnnnnnn
    System UUID:       nnnnnnnn-nnnn-nnnn-nnnn-nnnnnnnnnnnn
    Uptime:            1h 8m 16.420s
    CPU load averages: 0.26 / 0.15 / 0.15
    Number of CPUs:    8
    System memory:     1736 MB used / 62804 MB free / 64540 MB total
    Swap:              0 MB used / 65536 MB free / 65536 MB total
  3. Display the IPMI configuration:

    hostname # show ipmi
    IPMI LAN Settings
    ----------------------------------------
    Admin Shut Down         : no
    Shut Down               : no
    IP Address Source       : Static Address
    IP Address              : 10.11.57.18
    Subnet Mask             : 255.255.255.0
    Default Gateway IP      : 10.11.57.1
    IPMI Firmware Installed
    -------------------------------
    Firmware Version:         2.67
    Device:                   1
    IPMI Version:             2.0
    IPMI Firmware Available For Update
    --------------------------------------------------------------------------
    New Firmware Version:     2.68
    New Firmware Filename:    FireEye_V268.bin
    Firmware Update Notice:
        IPMI firmware version 2.68 is available and recommended with this release.
        Check your current release notes for security fixes and update advisories
        The new version may be installed with the CLI command:
    
            ipmi firmware update latest
        Important notes:
    	* Refer to the user manual for general IPMI upgrade guidance
    	* Disruption of power during upgrade may result in system failure
    	* IPMI network and password settings and IPMI logs revert to factory defaults on upgrade
    	* Microsoft Desktop is the only officially supported IPMI browser environment
    	* In some cases a hardware cold power down might be required after upgrade
  4. Display overall system status:

    hostname * show system health
    Overall system feature status: Good
  5. Display information about the Dynamic Threat Intelligence (DTI) network:

    hostname # show fenet status
    Dynamic Threat Intelligence Service:
        Update source   : <online>
        Enabled         : yes  
        Download        : DTIUser@cloud.fireeye.com  
        Upload          : DTIUser@up-cloud.fireeye.com
        Mil             : DTIUser@mil-cloud.fireeye.com
    
      HTTP Proxy:
         Address        :
         Username       : 
         User-agent     :
    
    Request Session:
         Timeout        : 30   
         Retries        : 3
         Speed Time     : 60
         Max Time       : 14400
         Rate Limit     :
    
         Speed Limit    : 1
      
    Dynamic Threat Intelligence Lockdown:
    Enabled             : no
    Locked              : no
    Lock After          : 5 failed attempts
    
     UPDATES
                        Enabled   Notify  Scheduled   Last Updated At
                        -------   ------  ---------   -------------------
     Security contents: yes       no      every       2016/07/18 19:28:00
     Stats contents:    yes               none        2016/07/18 15:55:00
    
  6. Display status and traffic statistics for all interfaces:

    hostname # show interfaces
    Interface ether1 status:
       Comment:
       Admin up:           yes
       Link up:            yes
       DHCP running:       no
       IP address:         10.11.121.18
       Netmask:            255.255.255.0
       IPv6 enabled:       no
       Speed:              1000Mb/s (auto)
       Duplex:             full (auto)
       Interface type:     ethernet
       Interface ifindex:  4
       Interface source:   physical
       MTU:                1500
       HW address:         0C:C4:7A:31:C5:F8
     RX bytes:           1134539880          TX bytes:       12422478
       RX packets:         811980              TX packets:     127113
       RX mcast packets:   0                   TX discards:    0
       RX discards:        0                   TX errors:      0
       RX errors:          0                   TX overruns:    0
       RX overruns:        0                   TX carrier:     0
       RX frame:           0                   TX collisions:  0
                                               TX queue len:   1000
    Interface ether2 status:
       Comment:
       Admin up:           no
       Link up:            no
       DHCP running:       no
       IP address:
       Netmask:
       IPv6 enabled:       yes
       Autoconf enabled:   yes
       Autoconf route:     yes
       Autoconf privacy:   no
       DHCPv6 running:     no
       Speed:              (null)
       Duplex:             (null)
       Interface type:     ethernet
       MTU:                1500
       HW address:         0C:C4:7A:31:C5:F9
     RX bytes:           0                   TX bytes:       0
       RX packets:         0                   TX packets:     0
       RX mcast packets:   0                   TX discards:    0
       RX discards:        0                   TX errors:      0
       RX errors:          0                   TX overruns:    0
       RX overruns:        0                   TX carrier:     0
       RX frame:           0                   TX collisions:  0
                                               TX queue len:   1000
    Interface ether3 status:
       Comment:
       Admin up:           yes
       Link up:            no
       DHCP running:       no
       IP address:
       Netmask:
       IPv6 enabled:       yes
       Autoconf enabled:   yes
       Autoconf route:     yes
       Autoconf privacy:   no
       DHCPv6 running:     no
       Speed:              UNKNOWN
       Duplex:             UNKNOWN
       Interface type:     ethernet
       Interface ifindex:  2
       Interface source:   physical
       MTU:                1500
       HW address:         00:1B:21:7F:6F:A2
     RX bytes:           0                   TX bytes:       0
       RX packets:         0                   TX packets:     0
       RX mcast packets:   0                   TX discards:    0
       RX discards:        0                   TX errors:      0
       RX errors:          0                   TX overruns:    0
       RX overruns:        0                   TX carrier:     0
       RX frame:           0                   TX collisions:  0
                                               TX queue len:   1000
    Interface ether4 status:
       Comment:
       Admin up:           yes
       Link up:            no
       DHCP running:       no
       IP address:
       Netmask:
       IPv6 enabled:       yes
       Autoconf enabled:   yes
       Autoconf route:     yes
       Autoconf privacy:   no
       DHCPv6 running:     no
       Speed:              UNKNOWN
       Duplex:             UNKNOWN
       Interface type:     ethernet
       Interface ifindex:  3
       Interface source:   physical
       MTU:                1500
       HW address:         00:1B:21:7F:6F:A3
     RX bytes:           0                   TX bytes:       0
       RX packets:         0                   TX packets:     0
       RX mcast packets:   0                   TX discards:    0
       RX discards:        0                   TX errors:      0
       RX errors:          0                   TX overruns:    0
       RX overruns:        0                   TX carrier:     0
       RX frame:           0                   TX collisions:  0
    				           TX queue len:   1000