Перейти к основному содержимому
Версия: v2.2.x

Средства администрирования

pfcmd

pfcmd — это интерфейс командной строки для большинства функциональных возможностей AxelNAC. При выполнении без аргументов команда pfcmd возвращает основное справочное сообщение со всеми основными опциями:

Usage:
pfcmd <command> [options]

Commands
cache | manage the cache subsystem
checkup | perform a sanity checkup and report any problems
class | view security event classes
configreload | reload the configution
connectionprofileconfig | query/modify connection profile configuration parameters
fingerbank | Fingerbank related commands
fixpermissions | fix permissions on pf tree
floatingnetworkdeviceconfig | query/modify floating network devices configuration parameters
generatedockeriptables | generate and apply the rules for docker images
generatemariadbconfig | generate the MariaDB configuration
generatemonitconfig | generate the monit configuration
generatesyslogconfig | generate the syslog configuration
help | show help for pfcmd commands
import | bulk import of information into the database
ipmachistory | IP/MAC history
locationhistorymac | Switch/Port history
locationhistoryswitch | Switch/Port history
networkconfig | query/modify network configuration parameters
node | manipulate node entries
pfconfig | interact with pfconfig
pfcron | run pfcron tasks
pfqueue | query/modify pfqueue tasks and counters
reload | rebuild fingerprint or security events tables without restart
service | start/stop/restart and get PF daemon status
switchconfig | query/modify switches.conf configuration parameters
version | output version information
security_event | manipulate security events
security_eventconfig | query/modify security_events.conf configuration parameters

Please view "pfcmd help <command>" for details on each option

Например, опция просмотра узлов показывает всю информацию, содержащуюся в таблице базы данных узлов для указанного MAC-адреса:

# /usr/local/pf/bin/pfcmd node view 52:54:00:12:35:02
mac|pid|detect_date|regdate|unregdate|status|user_agent|computername|notes|last_arp|last_dhcp|switch|port|vlan|dhcp_fingerprint
52:54:00:12:35:02|1|2008-10-23 17:32:16||||unreg||||2008-10-23 21:12:21|||||