This article explains the output from 'show services application-identification application-system-cache' command on the SRX CLI.
'show services application-identification application-system-cache'
How to use the command, 'show services application-identification application-system-cache'.
'show services application-identification application-system-cache'.
According to the AppSecure Services Feature Guide for Security Devices , "Application system cache (ASC) saves the mapping between an application type and the corresponding destination IP address, destination port, protocol type, and service. By default, the ASC saves the mapping information for 3600 seconds. However, you can configure the cache timeout value by using the CLI." The application port mappings are saved in the ASC (hash table). Ideally, the mappings generated by one SPU should be exposed to all other SPU's immediately through CP. As this process takes time, both the central ASC and local ASC (per SPU) will be maintained to improve the chance of matching.
labroot@SRX240> show services application-identification application-system-cache Application System Cache Configurations: application-cache: on nested-application-cache: on cache-unknown-result: on cache-entry-timeout: 3600 seconds pic: 0/0 Logical system name: 0 IP address: 66.235.148.128 Port: 443 Protocol: TCP Application: SSL Encrypted: Yes Classification Path: IP:TCP:SSL Logical system name: 0 IP address: 54.231.73.2 Port: 443 Protocol: TCP Application: SSL:AMAZON_AWS Encrypted: Yes Classification Path: IP:TCP:SSL:AMAZON_AWS Logical system name: 0 IP address: 216.58.201.163 Port: 443 Protocol: UDP Application: UNSPECIFIED-ENCRYPTED Encrypted: Yes Classification Path: IP:UDP:UNSPECIFIED-ENCRYPTED Logical system name: 0 IP address: 54.231.73.51 Port: 443 Protocol: TCP Application: SSL:AMAZON_AWS Encrypted: Yes Classification Path: IP:TCP:SSL:AMAZON_AWS Logical system name: 0 IP address: 54.174.192.202 Port: 80 Protocol: TCP Application: HTTP Encrypted: No Classification Path: IP:TCP:HTTP