3.2. Command ReferenceΒΆ
- 3.2.1. cmd
 - 3.2.2. show
 - 3.2.3. flush
 - 3.2.4. system
- hostname
 - cp-mask
 - timezone
 - date (state only)
 - troubleshooting-report (state only)
 - neighbor (deprecated)
 - conntrack (deprecated)
- max-entries (deprecated)
 - tcp-timeout-close (deprecated)
 - tcp-timeout-close-wait (deprecated)
 - tcp-timeout-established (deprecated)
 - tcp-timeout-fin-wait (deprecated)
 - tcp-timeout-last-ack (deprecated)
 - tcp-timeout-max-retrans (deprecated)
 - tcp-timeout-syn-recv (deprecated)
 - tcp-timeout-syn-sent (deprecated)
 - tcp-timeout-time-wait (deprecated)
 - tcp-timeout-unacknowledged (deprecated)
 - udp-timeout (deprecated)
 - udp-timeout-stream (deprecated)
 
 - network-stack
 - installed-image (state only)
 
 - 3.2.5. cloud-init
 - 3.2.6. auth
 - 3.2.7. aaa
 - 3.2.8. vrf
 - 3.2.9. ssh-server
 - 3.2.10. dns
 - 3.2.11. lldp
 - 3.2.12. kpi
 - 3.2.13. telegraf
 - 3.2.14. tracker
- bfd
- type
 - source
 - address (mandatory)
 - interface
 - vrf (mandatory)
 - echo-mode
 - detection-multiplier
 - desired-transmission-interval
 - required-receive-interval
 - desired-echo-transmission-interval
 - discriminator (state only)
 - state (state only)
 - diagnostic (state only)
 - last-down-time (state only)
 - last-up-time (state only)
 - session-down-count (state only)
 - session-up-count (state only)
 - control-packet-input-count (state only)
 - control-packet-output-count (state only)
 - echo-packet-input-count (state only)
 - echo-packet-output-count (state only)
 - zebra-notification-count (state only)
 - remote (state only)
 - negociated (state only)
 
 - icmp
 
 - bfd
 - 3.2.15. nat
 - 3.2.16. ntp
 - 3.2.17. firewall
- ipv4 filter
- input
 - forward
 - output
 - chain
 
 - ipv4 mangle
- prerouting
 - input
 - forward
 - output
 - postrouting
 - chain
 
 - ipv4 raw
- prerouting
 - output
 - chain
 
 - ipv4 address group
 - ipv4 network group
 - ipv6 filter
- input
 - forward
 - output
 - chain
 
 - ipv6 mangle
- prerouting
 - input
 - forward
 - output
 - postrouting
 - chain
 
 - ipv6 raw
- prerouting
 - output
 - chain
 
 - ipv6 address group
 - ipv6 network group
 
 - ipv4 filter
 - 3.2.18. network-port (state only)
 - 3.2.19. interface
- bridge
- mtu
 - promiscuous
 - description
 - enabled
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ethernet
 - ipv4
 - ipv6
 - link-interface
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - gre
- mtu
 - promiscuous
 - description
 - enabled
 - local (mandatory)
 - remote (mandatory)
 - ttl
 - tos
 - link-interface
 - link-vrf
 - checksum
 - sequence-number
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ipv4
 - ipv6
 - key
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - ipip
- mtu
 - promiscuous
 - description
 - enabled
 - local (mandatory)
 - remote (mandatory)
 - ttl
 - tos
 - link-interface
 - link-vrf
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ipv4
 - ipv6
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - lag
- mtu
 - promiscuous
 - description
 - enabled
 - mode (mandatory)
 - xmit-hash-policy
 - lacp-rate
 - mii-link-monitoring
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ethernet
 - ipv4
 - ipv6
 - link-interface
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - loopback
- mtu
 - promiscuous
 - description
 - enabled
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ipv4
 - ipv6
 - ethernet
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - physical
- port (mandatory)
 - mtu
 - promiscuous
 - description
 - enabled
 - rx-cp-protection
 - tx-cp-protection
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ipv4
 - ipv6
 - ethernet
 - qos
- ingress
 - egress
- scheduler (config only)
 - rate-limit
 - scheduler (state only)
- core (state only)
 - pq (state only)
 - pb-dwrr (state only)
 
 
 
 - counters (state only)
 
 - svti
- mtu
 - promiscuous
 - description
 - enabled
 - svti-id (mandatory)
 - link-vrf
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - link-interface (state only)
 - ethernet
 - ipv4
 - ipv6
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - system-loopback (state only)
- mtu (state only)
 - promiscuous (state only)
 - description (state only)
 - enabled (state only)
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ipv4 (state only)
- enabled (state only)
 - address (state only)
 - neighbor (state only)
 - dhcp (state only)
- enabled (state only)
 - timeout (state only)
 - retry (state only)
 - select-timeout (state only)
 - reboot (state only)
 - initial-interval (state only)
 - dhcp-lease-time (state only)
 - dhcp-client-identifier-ascii (state only)
 - dhcp-client-identifier-hexa (state only)
 - host-name (state only)
 - request (state only)
 - current-lease (state only)
 
 
 - ipv6 (state only)
 - counters (state only)
 
 - veth
- mtu
 - promiscuous
 - description
 - enabled
 - link-interface (mandatory)
 - link-vrf (mandatory)
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ipv4
 - ipv6
 - ethernet
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - vlan
- mtu
 - promiscuous
 - description
 - enabled
 - vlan-id (mandatory)
 - link-interface (mandatory)
 - protocol
 - link-vrf
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ethernet
 - ipv4
 - ipv6
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - vxlan
- mtu
 - promiscuous
 - description
 - enabled
 - vni (mandatory)
 - group
 - local
 - ttl
 - tos
 - link-interface
 - link-vrf
 - learning
 - gbp
 - dst
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - ethernet
 - ipv4
 - ipv6
 - src-range
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 - xvrf
- mtu
 - promiscuous
 - description
 - enabled
 - link-interface (mandatory)
 - link-vrf (mandatory)
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - qos
- ingress
 - egress
 
 - counters (state only)
 
 
 - bridge
 - 3.2.20. qos
- class-mask (config only)
 - policer (config only)
 - shared-policer
 - shaper (config only)
 - scheduler (config only)
 - class (config only)
 
 - 3.2.21. vrrp
- global
 - interface
- mtu
 - promiscuous
 - description
 - enabled
 - version
 - link-interface (mandatory)
 - garp-delay
 - use-vmac
 - vmac-xmit-base
 - vrid (mandatory)
 - priority
 - init-state
 - preempt
 - preempt-delay
 - advertisement-interval
 - track-interface
 - track
 - track-fast-path
 - notify-ha-group
 - ifindex (state only)
 - admin-status (state only)
 - oper-status (state only)
 - last-change (state only)
 - state (state only)
 - authentication
 - track-ip (deprecated)
 - unicast-peer
 - virtual-address
 - virtual-route
 - counters (state only)
 - ipv4 (state only)
- enabled (state only)
 - address (state only)
 - neighbor (state only)
 - dhcp (state only)
- enabled (state only)
 - timeout (state only)
 - retry (state only)
 - select-timeout (state only)
 - reboot (state only)
 - initial-interval (state only)
 - dhcp-lease-time (state only)
 - dhcp-client-identifier-ascii (state only)
 - dhcp-client-identifier-hexa (state only)
 - host-name (state only)
 - request (state only)
 - current-lease (state only)
 
 
 - ipv6 (state only)
 - ethernet (state only)
 
 
 - 3.2.22. ike
- enabled
 - pool
 - certificate
 - certificate-authority
 - pre-shared-key
 - logging
 - global-options
- threads
 - acquire-timeout
 - sa-table-size
 - sa-table-segments
 - install-routes
 - routing-table
 - routing-table-prio
 - retransmit-tries
 - retransmit-timeout
 - retransmit-base
 - delete-rekeyed
 - delete-rekeyed-delay
 - make-before-break
 - interface-use
 - interface-ignore
 - snmp
 - mobike-prefer-best-path
 - dos-protection
 - sp-hash-ipv4
 - sp-hash-ipv6
 
 - ha
 - ike-policy-template (config only)
 - ipsec-policy-template (config only)
- start-action (config only)
 - close-action (config only)
 - dpd-action (config only)
 - replay-window (config only)
 - rekey-time (config only)
 - life-time (config only)
 - rand-time (config only)
 - rekey-bytes (config only)
 - life-bytes (config only)
 - rand-bytes (config only)
 - rekey-packets (config only)
 - life-packets (config only)
 - rand-packets (config only)
 - encap-copy-dscp (config only)
 - decap-copy-dscp (config only)
 - encap-copy-df (config only)
 - esp-proposal (config only)
 - ah-proposal (config only)
 
 - vpn
- description
 - version
 - local-address
 - remote-address
 - local-id
 - remote-id
 - certificate
 - remote-ca-certificate
 - vip-request
 - vip-pool
 - ike-policy
 - ipsec-policy
 - security-policy
 
 - ike-sas (state only)
 - task-processing (state only)
 - counters (state only)
- ike-rekey-init (state only)
 - ike-rekey-resp (state only)
 - child-rekey (state only)
 - invalid (state only)
 - invalid-spi (state only)
 - ike-init-in-req (state only)
 - ike-init-in-resp (state only)
 - ike-init-out-req (state only)
 - ike-init-out-resp (state only)
 - ike-auth-in-req (state only)
 - ike-auth-in-resp (state only)
 - ike-auth-out-req (state only)
 - ike-auth-out-resp (state only)
 - create-child-in-req (state only)
 - create-child-in-resp (state only)
 - create-child-out-req (state only)
 - create-child-out-resp (state only)
 - info-in-req (state only)
 - info-in-resp (state only)
 - info-out-req (state only)
 - info-out-resp (state only)
 
 - vpn-counters (state only)
- ike-rekey-init (state only)
 - ike-rekey-resp (state only)
 - child-rekey (state only)
 - invalid (state only)
 - invalid-spi (state only)
 - ike-init-in-req (state only)
 - ike-init-in-resp (state only)
 - ike-init-out-req (state only)
 - ike-init-out-resp (state only)
 - ike-auth-in-req (state only)
 - ike-auth-in-resp (state only)
 - ike-auth-out-req (state only)
 - ike-auth-out-resp (state only)
 - create-child-in-req (state only)
 - create-child-in-resp (state only)
 - create-child-out-req (state only)
 - create-child-out-resp (state only)
 - info-in-req (state only)
 - info-in-resp (state only)
 - info-out-req (state only)
 - info-out-resp (state only)
 
 - ike-sa (state only)
- name (state only)
 - version (state only)
 - state (state only)
 - local-address (state only)
 - remote-address (state only)
 - local-port (state only)
 - remote-port (state only)
 - initiator-spi (state only)
 - responder-spi (state only)
 - enc-alg (state only)
 - auth-alg (state only)
 - aead-alg (state only)
 - prf-alg (state only)
 - dh-group (state only)
 - established-time (state only)
 - rekey-time (state only)
 - reauth-time (state only)
 - udp-encap (state only)
 - mobike (state only)
 - local-vip (state only)
 - remote-vip (state only)
 - child-sa (state only)
- name (state only)
 - state (state only)
 - reqid (state only)
 - protocol (state only)
 - udp-encap (state only)
 - mobike (state only)
 - spi-in (state only)
 - spi-out (state only)
 - svti-id-in (state only)
 - svti-id-out (state only)
 - enc-alg (state only)
 - auth-alg (state only)
 - aead-alg (state only)
 - dh-group (state only)
 - esn (state only)
 - bytes-in (state only)
 - packets-in (state only)
 - bytes-out (state only)
 - packets-out (state only)
 - installed-time (state only)
 - rekey-time (state only)
 - life-time (state only)
 - local-ts (state only)
 - remote-ts (state only)
 
 
 - pool-lease (state only)
 
 - 3.2.23. sflow
 - 3.2.24. snmp
 - 3.2.25. routing
- global
- ipv4-access-list
 - ipv6-access-list
 - logging
 - ipv4-prefix-list
 - ipv6-prefix-list
 - route-map
- seq
- policy (mandatory)
 - description
 - call
 - on-match
 - match
 - set
 
 
 - seq
 - bgp
 
 - static
 - interface
 - bgp
- enabled
 - as (mandatory)
 - always-compare-med
 - cluster-id
 - coalesce-time
 - deterministic-med
 - ebgp-connected-route-check
 - fast-external-failover
 - graceful-shutdown
 - log-neighbor-changes
 - network-import-check
 - route-reflector-allow-outbound-policy
 - router-id
 - neighbor-total-count (state only)
 - bestpath
 - client-to-client
 - confederation
 - dampening
 - graceful-restart
 - listen
 - max-med
 - packet-rw-quantum
 - update-delay
 - address-family
- ipv4-unicast
 - ipv4-multicast
 - ipv4-flowspec
 - ipv4-vpn
 - ipv6-unicast
 - ipv6-multicast
 - ipv6-labeled-unicast
 - ipv6-vpn
 - ipv6-flowspec (state only)
 
 - neighbor-group
- remote-as
 - capability
 - capability-negotiate
 - ebgp-multihop
 - enforce-first-as
 - enforce-multihop
 - neighbor-description
 - override-capability
 - passive
 - password
 - solo
 - strict-capability-match
 - track
 - check-control-plane-failure
 - ttl-security-hops
 - update-source
 - remote-neighbor-group (state only)
 - remote-router-id (state only)
 - state (state only)
 - min-time-btwn-advertisement (state only)
 - last-reset (state only)
 - bgp-connection (state only)
 - connect-retry-timer (state only)
 - estimated-rount-trip-time (state only)
 - local-as
 - shutdown
 - timers
 - address-family
- ipv4-unicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv4-multicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv4-labeled-unicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv4-flowspec
 - ipv4-vpn
- enabled
 - unsuppress-map
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 
 - ipv6-unicast
- enabled
 - nexthop-local-unchanged
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv6-multicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv6-labeled-unicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv6-flowspec
 - ipv6-vpn
- enabled
 - unsuppress-map
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 
 
 - ipv4-unicast
 - connections (state only)
 - local-host (state only)
 - remote-host (state only)
 - nexthop (state only)
 - thread (state only)
 - message-statistics (state only)
- packet-wait-process (state only)
 - packet-wait-written (state only)
 - open-sent (state only)
 - opens-received (state only)
 - notifications-sent (state only)
 - notifications-received (state only)
 - updates-sent (state only)
 - updates-received (state only)
 - keepalives-sent (state only)
 - keepalives-received (state only)
 - route-refresh-sent (state only)
 - route-refresh-received (state only)
 - capability-sent (state only)
 - capability-received (state only)
 - total-sent (state only)
 - total-received (state only)
 
 
 - neighbor
- neighbor-group
 - interface
 - port
 - remote-as
 - capability
 - capability-negotiate
 - ebgp-multihop
 - enforce-first-as
 - enforce-multihop
 - neighbor-description
 - override-capability
 - passive
 - password
 - solo
 - strict-capability-match
 - track
 - check-control-plane-failure
 - ttl-security-hops
 - update-source
 - remote-neighbor-group (state only)
 - remote-router-id (state only)
 - state (state only)
 - min-time-btwn-advertisement (state only)
 - last-reset (state only)
 - bgp-connection (state only)
 - connect-retry-timer (state only)
 - estimated-rount-trip-time (state only)
 - local-as
 - shutdown
 - timers
 - address-family
- ipv4-unicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv4-multicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv4-labeled-unicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv4-flowspec
 - ipv4-vpn
- enabled
 - unsuppress-map
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 
 - ipv6-unicast
- enabled
 - nexthop-local-unchanged
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv6-multicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv6-labeled-unicast
- enabled
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - capability-orf-prefix-list
 - unsuppress-map
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 - default-originate
 
 - ipv6-flowspec
 - ipv6-vpn
- enabled
 - unsuppress-map
 - as-override
 - send-community
 - weight
 - allowas-in
 - attribute-unchanged
 - route-server-client
 - soft-reconfiguration-inbound
 - route-reflector-client
 - update-group-id (state only)
 - sub-group-id (state only)
 - packet-queue-length (state only)
 - accepted-prefix (state only)
 - addpath
 - distribute-list
 - maximum-prefix
 - nexthop-self
 - as-outbound-update
 - filter-list
 - prefix-list
 - route-map
 
 
 - ipv4-unicast
 - connections (state only)
 - local-host (state only)
 - remote-host (state only)
 - nexthop (state only)
 - thread (state only)
 - message-statistics (state only)
- packet-wait-process (state only)
 - packet-wait-written (state only)
 - open-sent (state only)
 - opens-received (state only)
 - notifications-sent (state only)
 - notifications-received (state only)
 - updates-sent (state only)
 - updates-received (state only)
 - keepalives-sent (state only)
 - keepalives-received (state only)
 - route-refresh-sent (state only)
 - route-refresh-received (state only)
 - capability-sent (state only)
 - capability-received (state only)
 - total-sent (state only)
 - total-received (state only)
 
 
 
 - ldp
 - ospf
 - rip
 - ospf6
 - ripng
 - policy-based-routing
 - rib (state only)
- ipv4-count (state only)
 - ipv6-count (state only)
 - ipv4-route (state only)
 - ipv6-route (state only)
 
 
 - global
 - 3.2.26. DHCP
 - 3.2.27. fast-path
- enabled
 - port
 - core-mask
 - cp-protection
 - crypto
 - advanced
 - limits
- fp-max-if
 - fp-max-vrf
 - ip4-max-addr
 - ip4-max-route
 - ip4-max-neigh
 - ip6-max-addr
 - ip6-max-route
 - ip6-max-neigh
 - pbr-max-rule
 - filter4-max-rule
 - filter6-max-rule
 - filter4-max-ct
 - filter6-max-ct
 - filter-max-ipset
 - filter-max-ipset-entry
 - filter-bridge-max-rule
 - vxlan-max-port
 - vxlan-max-if
 - vxlan-max-fdb
 - reass4-max-queue
 - reass6-max-queue
 - ipsec-max-sp
 - ipsec-max-sa
 - ip-max-8-table
 - filter-max-cache
 - filter6-max-cache
 - vlan-max-if
 - macvlan-max-if
 - gre-max-if
 - svti-max-if
 
 - linux-sync
 - cpu-usage (state only)
 
 - 3.2.28. logging