3.2. Command ReferenceΒΆ
- 3.2.1. cmd
- 3.2.2. show
- 3.2.3. flush
- 3.2.4. system
- hostname
- cp-mask
- timezone
- date (state only)
- troubleshooting-report (state only)
- neighbor (deprecated)
- conntrack (deprecated)
- max-entries (deprecated)
- tcp-timeout-close (deprecated)
- tcp-timeout-close-wait (deprecated)
- tcp-timeout-established (deprecated)
- tcp-timeout-fin-wait (deprecated)
- tcp-timeout-last-ack (deprecated)
- tcp-timeout-max-retrans (deprecated)
- tcp-timeout-syn-recv (deprecated)
- tcp-timeout-syn-sent (deprecated)
- tcp-timeout-time-wait (deprecated)
- tcp-timeout-unacknowledged (deprecated)
- udp-timeout (deprecated)
- udp-timeout-stream (deprecated)
- network-stack
- installed-image (state only)
- 3.2.5. cloud-init
- 3.2.6. auth
- 3.2.7. aaa
- 3.2.8. vrf
- 3.2.9. ssh-server
- 3.2.10. dns
- 3.2.11. lldp
- 3.2.12. kpi
- 3.2.13. telegraf
- 3.2.14. tracker
- bfd
- type
- source
- address (mandatory)
- interface
- vrf (mandatory)
- echo-mode
- detection-multiplier
- desired-transmission-interval
- required-receive-interval
- desired-echo-transmission-interval
- discriminator (state only)
- state (state only)
- diagnostic (state only)
- last-down-time (state only)
- last-up-time (state only)
- session-down-count (state only)
- session-up-count (state only)
- control-packet-input-count (state only)
- control-packet-output-count (state only)
- echo-packet-input-count (state only)
- echo-packet-output-count (state only)
- zebra-notification-count (state only)
- remote (state only)
- negociated (state only)
- icmp
- bfd
- 3.2.15. nat
- 3.2.16. ntp
- 3.2.17. firewall
- ipv4 filter
- input
- forward
- output
- chain
- ipv4 mangle
- prerouting
- input
- forward
- output
- postrouting
- chain
- ipv4 raw
- prerouting
- output
- chain
- ipv4 address group
- ipv4 network group
- ipv6 filter
- input
- forward
- output
- chain
- ipv6 mangle
- prerouting
- input
- forward
- output
- postrouting
- chain
- ipv6 raw
- prerouting
- output
- chain
- ipv6 address group
- ipv6 network group
- ipv4 filter
- 3.2.18. network-port (state only)
- 3.2.19. interface
- bridge
- mtu
- promiscuous
- description
- enabled
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ethernet
- ipv4
- ipv6
- link-interface
- qos
- ingress
- egress
- counters (state only)
- gre
- mtu
- promiscuous
- description
- enabled
- local (mandatory)
- remote (mandatory)
- ttl
- tos
- link-interface
- link-vrf
- checksum
- sequence-number
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ipv4
- ipv6
- key
- qos
- ingress
- egress
- counters (state only)
- ipip
- mtu
- promiscuous
- description
- enabled
- local (mandatory)
- remote (mandatory)
- ttl
- tos
- link-interface
- link-vrf
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ipv4
- ipv6
- qos
- ingress
- egress
- counters (state only)
- lag
- mtu
- promiscuous
- description
- enabled
- mode (mandatory)
- xmit-hash-policy
- lacp-rate
- mii-link-monitoring
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ethernet
- ipv4
- ipv6
- link-interface
- qos
- ingress
- egress
- counters (state only)
- loopback
- mtu
- promiscuous
- description
- enabled
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ipv4
- ipv6
- ethernet
- qos
- ingress
- egress
- counters (state only)
- physical
- port (mandatory)
- mtu
- promiscuous
- description
- enabled
- rx-cp-protection
- tx-cp-protection
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ipv4
- ipv6
- ethernet
- qos
- ingress
- egress
- scheduler (config only)
- rate-limit
- scheduler (state only)
- core (state only)
- pq (state only)
- pb-dwrr (state only)
- counters (state only)
- svti
- mtu
- promiscuous
- description
- enabled
- svti-id (mandatory)
- link-vrf
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- link-interface (state only)
- ethernet
- ipv4
- ipv6
- qos
- ingress
- egress
- counters (state only)
- system-loopback (state only)
- mtu (state only)
- promiscuous (state only)
- description (state only)
- enabled (state only)
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ipv4 (state only)
- enabled (state only)
- address (state only)
- neighbor (state only)
- dhcp (state only)
- enabled (state only)
- timeout (state only)
- retry (state only)
- select-timeout (state only)
- reboot (state only)
- initial-interval (state only)
- dhcp-lease-time (state only)
- dhcp-client-identifier-ascii (state only)
- dhcp-client-identifier-hexa (state only)
- host-name (state only)
- request (state only)
- current-lease (state only)
- ipv6 (state only)
- counters (state only)
- veth
- mtu
- promiscuous
- description
- enabled
- link-interface (mandatory)
- link-vrf (mandatory)
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ipv4
- ipv6
- ethernet
- qos
- ingress
- egress
- counters (state only)
- vlan
- mtu
- promiscuous
- description
- enabled
- vlan-id (mandatory)
- link-interface (mandatory)
- protocol
- link-vrf
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ethernet
- ipv4
- ipv6
- qos
- ingress
- egress
- counters (state only)
- vxlan
- mtu
- promiscuous
- description
- enabled
- vni (mandatory)
- group
- local
- ttl
- tos
- link-interface
- link-vrf
- learning
- gbp
- dst
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- ethernet
- ipv4
- ipv6
- src-range
- qos
- ingress
- egress
- counters (state only)
- xvrf
- mtu
- promiscuous
- description
- enabled
- link-interface (mandatory)
- link-vrf (mandatory)
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- qos
- ingress
- egress
- counters (state only)
- bridge
- 3.2.20. qos
- class-mask (config only)
- policer (config only)
- shared-policer
- shaper (config only)
- scheduler (config only)
- class (config only)
- 3.2.21. vrrp
- global
- interface
- mtu
- promiscuous
- description
- enabled
- version
- link-interface (mandatory)
- garp-delay
- use-vmac
- vmac-xmit-base
- vrid (mandatory)
- priority
- init-state
- preempt
- preempt-delay
- advertisement-interval
- track-interface
- track
- track-fast-path
- notify-ha-group
- ifindex (state only)
- admin-status (state only)
- oper-status (state only)
- last-change (state only)
- state (state only)
- authentication
- track-ip (deprecated)
- unicast-peer
- virtual-address
- virtual-route
- counters (state only)
- ipv4 (state only)
- enabled (state only)
- address (state only)
- neighbor (state only)
- dhcp (state only)
- enabled (state only)
- timeout (state only)
- retry (state only)
- select-timeout (state only)
- reboot (state only)
- initial-interval (state only)
- dhcp-lease-time (state only)
- dhcp-client-identifier-ascii (state only)
- dhcp-client-identifier-hexa (state only)
- host-name (state only)
- request (state only)
- current-lease (state only)
- ipv6 (state only)
- ethernet (state only)
- 3.2.22. ike
- enabled
- pool
- certificate
- certificate-authority
- pre-shared-key
- logging
- global-options
- threads
- acquire-timeout
- sa-table-size
- sa-table-segments
- install-routes
- routing-table
- routing-table-prio
- retransmit-tries
- retransmit-timeout
- retransmit-base
- delete-rekeyed
- delete-rekeyed-delay
- make-before-break
- interface-use
- interface-ignore
- snmp
- mobike-prefer-best-path
- dos-protection
- sp-hash-ipv4
- sp-hash-ipv6
- ha
- ike-policy-template (config only)
- ipsec-policy-template (config only)
- start-action (config only)
- close-action (config only)
- dpd-action (config only)
- replay-window (config only)
- rekey-time (config only)
- life-time (config only)
- rand-time (config only)
- rekey-bytes (config only)
- life-bytes (config only)
- rand-bytes (config only)
- rekey-packets (config only)
- life-packets (config only)
- rand-packets (config only)
- encap-copy-dscp (config only)
- decap-copy-dscp (config only)
- encap-copy-df (config only)
- esp-proposal (config only)
- ah-proposal (config only)
- vpn
- description
- version
- local-address
- remote-address
- local-id
- remote-id
- certificate
- remote-ca-certificate
- vip-request
- vip-pool
- ike-policy
- ipsec-policy
- security-policy
- ike-sas (state only)
- task-processing (state only)
- counters (state only)
- ike-rekey-init (state only)
- ike-rekey-resp (state only)
- child-rekey (state only)
- invalid (state only)
- invalid-spi (state only)
- ike-init-in-req (state only)
- ike-init-in-resp (state only)
- ike-init-out-req (state only)
- ike-init-out-resp (state only)
- ike-auth-in-req (state only)
- ike-auth-in-resp (state only)
- ike-auth-out-req (state only)
- ike-auth-out-resp (state only)
- create-child-in-req (state only)
- create-child-in-resp (state only)
- create-child-out-req (state only)
- create-child-out-resp (state only)
- info-in-req (state only)
- info-in-resp (state only)
- info-out-req (state only)
- info-out-resp (state only)
- vpn-counters (state only)
- ike-rekey-init (state only)
- ike-rekey-resp (state only)
- child-rekey (state only)
- invalid (state only)
- invalid-spi (state only)
- ike-init-in-req (state only)
- ike-init-in-resp (state only)
- ike-init-out-req (state only)
- ike-init-out-resp (state only)
- ike-auth-in-req (state only)
- ike-auth-in-resp (state only)
- ike-auth-out-req (state only)
- ike-auth-out-resp (state only)
- create-child-in-req (state only)
- create-child-in-resp (state only)
- create-child-out-req (state only)
- create-child-out-resp (state only)
- info-in-req (state only)
- info-in-resp (state only)
- info-out-req (state only)
- info-out-resp (state only)
- ike-sa (state only)
- name (state only)
- version (state only)
- state (state only)
- local-address (state only)
- remote-address (state only)
- local-port (state only)
- remote-port (state only)
- initiator-spi (state only)
- responder-spi (state only)
- enc-alg (state only)
- auth-alg (state only)
- aead-alg (state only)
- prf-alg (state only)
- dh-group (state only)
- established-time (state only)
- rekey-time (state only)
- reauth-time (state only)
- udp-encap (state only)
- mobike (state only)
- local-vip (state only)
- remote-vip (state only)
- child-sa (state only)
- name (state only)
- state (state only)
- reqid (state only)
- protocol (state only)
- udp-encap (state only)
- mobike (state only)
- spi-in (state only)
- spi-out (state only)
- svti-id-in (state only)
- svti-id-out (state only)
- enc-alg (state only)
- auth-alg (state only)
- aead-alg (state only)
- dh-group (state only)
- esn (state only)
- bytes-in (state only)
- packets-in (state only)
- bytes-out (state only)
- packets-out (state only)
- installed-time (state only)
- rekey-time (state only)
- life-time (state only)
- local-ts (state only)
- remote-ts (state only)
- pool-lease (state only)
- 3.2.23. sflow
- 3.2.24. snmp
- 3.2.25. routing
- global
- ipv4-access-list
- ipv6-access-list
- logging
- ipv4-prefix-list
- ipv6-prefix-list
- route-map
- seq
- policy (mandatory)
- description
- call
- on-match
- match
- set
- seq
- bgp
- static
- interface
- bgp
- enabled
- as (mandatory)
- always-compare-med
- cluster-id
- coalesce-time
- deterministic-med
- ebgp-connected-route-check
- fast-external-failover
- graceful-shutdown
- log-neighbor-changes
- network-import-check
- route-reflector-allow-outbound-policy
- router-id
- neighbor-total-count (state only)
- bestpath
- client-to-client
- confederation
- dampening
- graceful-restart
- listen
- max-med
- packet-rw-quantum
- update-delay
- address-family
- ipv4-unicast
- ipv4-multicast
- ipv4-flowspec
- ipv4-vpn
- ipv6-unicast
- ipv6-multicast
- ipv6-labeled-unicast
- ipv6-vpn
- ipv6-flowspec (state only)
- neighbor-group
- remote-as
- capability
- capability-negotiate
- ebgp-multihop
- enforce-first-as
- enforce-multihop
- neighbor-description
- override-capability
- passive
- password
- solo
- strict-capability-match
- track
- check-control-plane-failure
- ttl-security-hops
- update-source
- remote-neighbor-group (state only)
- remote-router-id (state only)
- state (state only)
- min-time-btwn-advertisement (state only)
- last-reset (state only)
- bgp-connection (state only)
- connect-retry-timer (state only)
- estimated-rount-trip-time (state only)
- local-as
- shutdown
- timers
- address-family
- ipv4-unicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv4-multicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv4-labeled-unicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv4-flowspec
- ipv4-vpn
- enabled
- unsuppress-map
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- ipv6-unicast
- enabled
- nexthop-local-unchanged
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv6-multicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv6-labeled-unicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv6-flowspec
- ipv6-vpn
- enabled
- unsuppress-map
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- ipv4-unicast
- connections (state only)
- local-host (state only)
- remote-host (state only)
- nexthop (state only)
- thread (state only)
- message-statistics (state only)
- packet-wait-process (state only)
- packet-wait-written (state only)
- open-sent (state only)
- opens-received (state only)
- notifications-sent (state only)
- notifications-received (state only)
- updates-sent (state only)
- updates-received (state only)
- keepalives-sent (state only)
- keepalives-received (state only)
- route-refresh-sent (state only)
- route-refresh-received (state only)
- capability-sent (state only)
- capability-received (state only)
- total-sent (state only)
- total-received (state only)
- neighbor
- neighbor-group
- interface
- port
- remote-as
- capability
- capability-negotiate
- ebgp-multihop
- enforce-first-as
- enforce-multihop
- neighbor-description
- override-capability
- passive
- password
- solo
- strict-capability-match
- track
- check-control-plane-failure
- ttl-security-hops
- update-source
- remote-neighbor-group (state only)
- remote-router-id (state only)
- state (state only)
- min-time-btwn-advertisement (state only)
- last-reset (state only)
- bgp-connection (state only)
- connect-retry-timer (state only)
- estimated-rount-trip-time (state only)
- local-as
- shutdown
- timers
- address-family
- ipv4-unicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv4-multicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv4-labeled-unicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv4-flowspec
- ipv4-vpn
- enabled
- unsuppress-map
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- ipv6-unicast
- enabled
- nexthop-local-unchanged
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv6-multicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv6-labeled-unicast
- enabled
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- capability-orf-prefix-list
- unsuppress-map
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- default-originate
- ipv6-flowspec
- ipv6-vpn
- enabled
- unsuppress-map
- as-override
- send-community
- weight
- allowas-in
- attribute-unchanged
- route-server-client
- soft-reconfiguration-inbound
- route-reflector-client
- update-group-id (state only)
- sub-group-id (state only)
- packet-queue-length (state only)
- accepted-prefix (state only)
- addpath
- distribute-list
- maximum-prefix
- nexthop-self
- as-outbound-update
- filter-list
- prefix-list
- route-map
- ipv4-unicast
- connections (state only)
- local-host (state only)
- remote-host (state only)
- nexthop (state only)
- thread (state only)
- message-statistics (state only)
- packet-wait-process (state only)
- packet-wait-written (state only)
- open-sent (state only)
- opens-received (state only)
- notifications-sent (state only)
- notifications-received (state only)
- updates-sent (state only)
- updates-received (state only)
- keepalives-sent (state only)
- keepalives-received (state only)
- route-refresh-sent (state only)
- route-refresh-received (state only)
- capability-sent (state only)
- capability-received (state only)
- total-sent (state only)
- total-received (state only)
- ldp
- ospf
- rip
- ospf6
- ripng
- policy-based-routing
- rib (state only)
- ipv4-count (state only)
- ipv6-count (state only)
- ipv4-route (state only)
- ipv6-route (state only)
- global
- 3.2.26. DHCP
- 3.2.27. fast-path
- enabled
- port
- core-mask
- cp-protection
- crypto
- advanced
- limits
- fp-max-if
- fp-max-vrf
- ip4-max-addr
- ip4-max-route
- ip4-max-neigh
- ip6-max-addr
- ip6-max-route
- ip6-max-neigh
- pbr-max-rule
- filter4-max-rule
- filter6-max-rule
- filter4-max-ct
- filter6-max-ct
- filter-max-ipset
- filter-max-ipset-entry
- filter-bridge-max-rule
- vxlan-max-port
- vxlan-max-if
- vxlan-max-fdb
- reass4-max-queue
- reass6-max-queue
- ipsec-max-sp
- ipsec-max-sa
- ip-max-8-table
- filter-max-cache
- filter6-max-cache
- vlan-max-if
- macvlan-max-if
- gre-max-if
- svti-max-if
- linux-sync
- cpu-usage (state only)
- 3.2.28. logging