R0106-HP MSR Router Series Layer 3 - IP Services Command Reference(V7)
163
The acl acl-number option takes effect only for NAT session logging. With an ACL specified, only flows
matching the permit rule can trigger NAT session logs. If you do not specify an ACL, all flows processed
by NAT might trigger NAT session logs.
Examples
# Enable NAT logging.
<Sysname> system-view
[Sysname] nat log enable
Related commands
• display nat all
• display nat log
• nat log alarm
• nat log flow-active
• nat log flow-begin
• nat log flow-end
• nat log port-block-assign
• nat log port-block-withdraw
nat log flow-active
Use nat log flow-active to log active NAT flows and set the logging interval.
Use undo nat log flow-active to disable the logging function for active NAT flows.
Syntax
nat log flow-active time-value
undo nat log flow-active
Default
Logging for active NAT flows is disabled.
Views
System view
Predefined user roles
network-admin
Parameters
time-value: Specifies the interval for logging active NAT flows, in the range of 10 to 120 minutes.
Usage guidelines
This function helps track active NAT flows.
Logging for active flows takes effect only after you enable NAT logging.
Examples
# Enable logging for active NAT flows and set the logging interval to 10 minutes.
<Sysname> system-view
[Sysname] nat log flow-active 10