Use the commands in this section to view the list of defined access group rules and the access groups that are mapped to the rules.
To view access group rules and groups:
Log in to the Central Management System CLI.
Go to CLI enable mode.
cm-hostname > enableTo view a specific group:
cm-hostname # show aaa authorization access-group group <group name>To view all groups:
cm-hostname # show aaa authorization access-groups
Examples
The following example shows information about the nx-alerts access group.
cm-01 # show aaa authorization access-groups group nx-alerts
AAA Authorization access-groups Rules : Enabled
-----------------------------------------------------------
# Group: nx-alerts
-----------------------------------------------------------
# Rule Statements
-----------------------------------------------------------
#1 Not Match Alert Severity: minor
Match Appliance Name: nx2500-01
#2 Match Appliance Name: nx4500-03
Match Alert Source IP: 10.1.2.0/24The following example shows information about all access groups.
cm-01 # show aaa authorization access-groups
AAA Authorization access-groups Rules : Enabled
-----------------------------------------------------------
# Group: nx-alerts
-----------------------------------------------------------
# Rule Statements
-----------------------------------------------------------
#1 Not Match Alert Severity: minor
Match Appliance Name: nx2500-01
#2 Match Appliance Name: nx4500-03
Match Alert Source IP: 10.1.2.0/24
-----------------------------------------------------------
# Group: ex-alerts Description : Central Region EX
-----------------------------------------------------------
# Rule Statements
-----------------------------------------------------------
#1 Match Alert Source IP: 172.1.2.0/24
#2 Match Alert Tag: dll