You are configuring a CGNAT rule for branch internet access and want to verify which access-list entry will match traffic before translation. Which information is shown by the CGNAT ACL command?
A.
Rule ID, category, precedence, VRF, source IP, and destination IP
The correct answer is A . Versa CGNAT troubleshooting documentation shows the command show cgnat acl info <tenant-id> for viewing CGNAT access lists used for traffic matching. The example output includes columns such as ACL handle , RuleId , Category , Precedence , VRF , Source IP , and Destination IP . It also shows tenant ID and total filters.
This command is useful when a CGNAT rule exists in configuration but sessions are not being translated. By checking the ACL output, the administrator can confirm whether the correct source prefix, destination prefix, VRF, and rule precedence are actually programmed in the dataplane. If the wrong VRF or subnet is shown, the rule may never match the intended traffic.
System uptime and CPU usage are operational health indicators. SLA metrics are SD-WAN path-quality values. BGP AS path and local preference are routing attributes. None of these directly show CGNAT access-list match programming.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit