To view information about the Threat-Centric NAC adapters, use the show container command in EXEC mode.
The output of this command provides statistical information about the vulnerability assessment scans, when the adapters were
created, how long the adapters were running, and their current statuses. You can further view information about each of the
adapters in detail based on the container name or ID.
show container
tc-nac {adapters | all | inspect {container-id
container-id | container-name
container-name} | stats {container-id
container-id | container-name
container-name}} |}
Syntax Description
tc-nac
|
Displays
information about the Threat-Centric NAC adapters.
|
all
|
When used with TC NAC, lists all the adapters that are available in Cisco ISE, including the container name and ID.
When used with Wi-Fi Setup, displays the Wi-Fi container setup information.
|
adapters
|
Lists
the TC NAC adapters that are configured in Cisco ISE. Lists the container ID
and name, the time when the adapter was created and how long the adapter has
been running, and the current status of the adapter.
|
inspect{container-id
container-id |
container-name
container-name}
|
Lists
detailed information about the specific adapter.
|
stats {container-id
container-id |
container-name
container-name}
|
Provides
statistical information about the specific adapter.
|
>
|
Redirects output to a file.
|
|
|
Output modifier variables:
-
begin—Matched pattern.
Supports up to 80 alphanumeric characters.
-
count—Count the number of
lines in the output. Add number after the word count.
|—Output modifier variables
for count.
-
end—End with line that
matches. Supports up to 80 alphanumeric characters.
-
exclude—Exclude lines that
match. Supports up to 80 alphanumeric characters.
-
include—Include lines that
match. Supports up to 80 alphanumeric characters.
-
last—Display last few lines
of output. Add number after the word last. Supports up to 80 lines to display.
Default 10.
|—Output modifier variables
for last.
|
Command Default
No default behavior or values.
Command History
Release
|
Modification
|
2.2.0.470
|
This command was introduced.
|
3.1
|
This command no longer includes Wi-Fi configurations.
|
Usage Guidelines
To view
information about the Threat-Centric NAC adapters, use the
show
container command.
Example
1
ise/admin# show container tc-nac adapters
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
63b8904f41c6 irf-adapter-nexpose "/opt/CSCOcpm/vaservi" 19 hours ago Up 19 hours nexpose
8389f7e249cf irf-adapter-tenable "/opt/CSCOcpm/vaservi" 2 days ago Up 2 days tenable
ise/admin#
Example
2
ise/admin# show container tc-nac all
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
63b8904f41c6 irf-adapter-nexpose "/opt/CSCOcpm/vaservi" 19 hours ago Up 19 hours nexpose
8389f7e249cf irf-adapter-tenable "/opt/CSCOcpm/vaservi" 2 days ago Up 2 days tenable
41921c1539bf irf-core-engine:2.2.6 "/bin/sh -c 'npm star" 3 days ago Up 3 days 127.0.0.1:3000->3000/tcp irf-core-engine-runtime
c4f6ff3cf628 irf-rabbitmq:2.2.6 "/docker-entrypoint.s" 3 days ago Up 3 days 4369/tcp, 5671-5672/tcp, 15671-15672/tcp, 25672/tcp irf-rabbitmq-runtime
e682a5a5ad69 irf-mongo:2.2.6 "/entrypoint.sh mongo" 3 days ago Up 3 days 27017/tcp irf-mongo-runtime
ise/admin#
Example
3
ise/admin# show container tc-nac inspect container-name nexpose
[
{
"Id": "63b8904f41c6ce2a58660d38eb3500104038e650e4e3365e21e0a536a1ba3044",
"Created": "2016-09-22T11:38:03.146141316Z",
"Path": "/opt/CSCOcpm/vaservice/nexposeadapter/bin/nexposeadaptercontrol.sh",
"Args": [
"start",
"http://irf-core-engine-runtime:3000/api/adapter/instance/register",
"07bc6aee-fb9f-4845-86cb-886c7c095188"
],
"State": {
"Status": "running",
"Running": true,
"Paused": false,
"Restarting": false,
"OOMKilled": false,
"Dead": false,
"Pid": 23433,
"ExitCode": 0,
"Error": "",
"StartedAt": "2016-09-22T11:38:05.609439645Z",
"FinishedAt": "0001-01-01T00:00:00Z"
},
"Image": "06ba3230bd64872b988f4506e7fffddc8c6374c7ece285555ee1cc57743ea7e0",
"ResolvConfPath": "/opt/docker/runtime/containers/63b8904f41c6ce2a58660d38eb3500104038e650e4e3365e21e0a536a1ba3044/resolv.conf",
"HostnamePath": "/opt/docker/runtime/containers/63b8904f41c6ce2a58660d38eb3500104038e650e4e3365e21e0a536a1ba3044/hostname",
"HostsPath": "/opt/docker/runtime/containers/63b8904f41c6ce2a58660d38eb3500104038e650e4e3365e21e0a536a1ba3044/hosts",
"LogPath": "/opt/docker/runtime/containers/63b8904f41c6ce2a58660d38eb3500104038e650e4e3365e21e0a536a1ba3044/
63b8904f41c6ce2a58660d38eb3500104038e650e4e3365e21e0a536a1ba3044-json.log",
"Name": "/nexpose",
"RestartCount": 0,
"Driver": "devicemapper",
"ExecDriver": "native-0.2",
"MountLabel": "",
"ProcessLabel": "",
"AppArmorProfile": "",
"ExecIDs": [
"d76578aa48118167d9d029037fcb2e56aa7dce8672b8991a736617a6d6879750"
],
.
.
.
"NetworkSettings": {
"Bridge": "",
"SandboxID": "9873fb92f86e665039a6de15bfe057bc3fd341f7b39acedee57cbd89b3f56ce0",
"HairpinMode": false,
"LinkLocalIPv6Address": "",
"LinkLocalIPv6PrefixLen": 0,
"Ports": {},
"SandboxKey": "/var/run/docker/netns/9873fb92f86e",
"SecondaryIPAddresses": null,
"SecondaryIPv6Addresses": null,
"EndpointID": "",
"Gateway": "",
"GlobalIPv6Address": "",
"GlobalIPv6PrefixLen": 0,
"IPAddress": "",
"IPPrefixLen": 0,
"IPv6Gateway": "",
"MacAddress": "",
"Networks": {
"irf-internal-nw": {
"EndpointID": "8999c12319144cfd66a4e99be40f7fbc228779e43f2a7f20c48867b8b3ca7a49",
"Gateway": "169.254.1.1",
"IPAddress": "169.254.1.6",
"IPPrefixLen": 24,
"IPv6Gateway": "",
"GlobalIPv6Address": "",
"GlobalIPv6PrefixLen": 0,
"MacAddress": "02:42:a9:fe:01:06"
}
}
}
}
]
Example
4
ise/admin# show container tc-nac stats container-name nexpose
CONTAINER CPU % MEM USAGE / LIMIT MEM % NET I/O BLOCK I/O
nexpose 0.07% 327.9 MB / 12.43 GB 2.64% 4.501 MB / 2.446 MB 106.4 MB / 21.27 MB