< Home

firewall traffic-trace-source enable

Function

The firewall traffic-trace-source enable command enables traffic source tracing.

The undo firewall traffic-trace-source enable command disables traffic source tracing.

Format

firewall traffic-trace-source enable

undo firewall traffic-trace-source enable

Parameters

None

Views

System view

Default Level

3: Management level

Usage Guidelines

Only the USG6510E/6510E-POE, USG6530E, USG6515E/6550E/6560E/6580E, and USG6525E/6555E/6565E/6575E-B/6585E/6605E-B, USG6615E/6625E and USG6635E/6655Esupport this command.

By default, traffic source tracing is enabled.

CPU overload affects normal service processing. Traffic of various types increases the CPU usage abnormally. It is critical to trace such traffic for device maintenance and diagnosis.

The traffic source tracing function is used to trace the subsequent packets of heavy traffic and microburst traffic that cause high CPU usage. When the CPU usage reaches the specified threshold (min-value specified in the firewall session create-rate-control cpu-usage max-value min-value command) or microburst traffic occurs, traffic detection and source traffic tracing are triggered.

Example

# Disable traffic source tracing.

<sysname> system-view
[sysname] undo firewall traffic-trace-source enable
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >