Netstat operator commands (DISPLAY TCPIP,,NETSTAT)

Table 1 lists the new and updated Communications Server IP Netstat operator command DISPLAY TCPIP,,NETSTAT. See Table 1 for the other Communications Server IP operator command entries.

See z/OS V2R1.0 Communications Server: IP System Administrator's Commands for more detailed information about the Communications Server IP operator commands.

All parameters in the following table are for the DISPLAY TCPIP,,NETSTAT operator command.

Table 1. Summary of new and changed Communications Server Netstat operator commands (DISPLAY TCPIP,,NETSTAT)
Parameters Release Description Reason for change
ACCESS,NETWORK V2R1 The report displays the setting of the new CACHEALL, CACHEPERMIT, and CACHESAME parameters on the NETACCESS statement. Improve auditing of NetAccess rules
ALL V2R1 Added new StartDate and StartTime fields. These fields provide the date and time for the last of one of the following events:
  • UDP bind
  • TCP bind
  • TCP listen
  • TCP connection establishment
Socket establishment time for Netstat ALL/-A
V2R1 Displays the names of the routing policy rule and the policy-based routing table used by IP routing for an IPv6 connection. IPv6 support for policy-based routing
V2R1
  • Displays Shared Memory Communications through Remote Direct Memory Access (SMC-R) information for TCP connections.
  • Accepts a new SMCID filter to display only the TCP connections associated with a specific SMC-R link group or SMC-R link identifier.
Shared Memory Communications over Remote Direct Memory Access
V1R13 The output line that begins with the Last Touched field is now displayed after the output lines for the Bytes, Segments, and Dgram In and Out counters Release update
V1R13 Report is enhanced to display the following indicators:
  • An indicator of whether a TCP connection's send data flow is stalled, SendStalled
  • An indicator of whether a TCP server is experiencing a potential connection flood attack, ConnectionFlood
Expanded Intrusion Detection Services
ALL (continued) V1R12 Added new fields Ancillary Input Queue and BulkDataIntfName for TCP connections that are using the QDIO inbound workload queueing function. Performance improvements for streaming bulk data
V1R12 Displays the new TCP trusted connection flag (TcpTrustedPartner), which indicates that the partner security credentials of a partner within a sysplex or subplex have been retrieved using the SIOCGPARTNERINFO ioctl, or that the SIOCSPARTNERINFO ioctl has been successfully issued or inherited from the listener socket. Trusted TCP connections
ALLCONN V2R1 Accepts a new SMCID filter to display only the TCP connections that are associated with a specific SMC-R link group or SMC-R link identifier. Shared Memory Communications over Remote Direct Memory Access
ARp V1R13 Displays ARP cache information for an IQDX interface HiperSockets optimization for intraensemble data networks
CONFIG V2R1 Added the following fields to the TCP CONFIGURATION TABLE section:
  • TimeWaitInterval
  • RetransmitAttempt
  • ConnectTimeOut
  • ConnectInitInterval
  • Nagle
  • KeepAliveProbes
  • KAProbeInterval
  • QueuedRTT
  • FRRThreshold
  • DefltMaxSndBufSize
Enhanced TCP protocol configuration options and default settings
V2R1 The QDIOAccel indicator reflects "Yes" or "SD only" when IP Security is operational. IP Security introduces additional reasons that QDIOAccel might run in the "SD only" mode. QDIO acceleration coexistence with IP filtering
V2R1 The SELECTIVEACK field is added to the TCP CONFIGURATION TABLE section. TCP support for selective acknowledgements
CONFIG (continued) V2R1 This report displays information about the EPHEMERALPORTS parameter on TCPCONFIG and UDPCONFIG. User control of Ephmeral Port Ranges
V2R1 This report displays information about the SOURCEVIPAINTERFACE parameter on IPCONFIG. IPv4 INTERFACE statement for HiperSockets and Static VIPAs
V2R1
  • Displays new SMCR parameter information in the GLOBALCONFIG section.
  • New SmcrGrpStats field in the Type 119 portion of the SMF parameters section indicates whether SMC-R link group statistics records (SMF subtype 41) are collected.
  • New SmcrLnkEvent field in the Type 119 portion of the SMF parameters section indicates whether the following SMF records are collected:
    • SMC-R link start (SMF subtype 42)
    • SMC-R link end (SMF subtype 43)
Shared Memory Communications over Remote Direct Memory Access
V1R13 New field AutoIQDX added to the Global Configuration section HiperSockets optimization for intraensemble data networks
V1R13
  • Displays whether checksum offload is globally enabled for IPv4 or IPv6 OSA-Express QDIO interfaces.
  • Displays whether segmentation offload is globally enabled for IPv4 or IPv6 OSA-Express QDIO interfaces.
OSA-Express4S QDIO IPv6 checksum and segmentation offload
V1R13 The IgRedirect field in the IPv6 Configuration Table section of the report is enhanced. A value of Yes can now indicate that Intrusion Detection Services (IDS) policy is in effect to detect and discard ICMP Redirects. Expanded Intrusion Detection Services
CONFIG (continued) V1R12 New OSMSecClass field added to the IPv6 Configuration section to display the setting of the OSMSECCLASS parameter from the IPCONFIG6 profile statement. z/OS Communications Server in an ensemble
V1R12 Displays the setting of the NOJOIN subparameter from the GLOBALCONFIG SYSPLEXMONITOR profile statement, which indicates whether the TCP/IP stack joins the sysplex group during stack initialization. Control joining the sysplex XCF group
V1R12
  • The SMF parameters section displays the setting of the new DVIPA and NODVIPA parameters.
  • The Network Monitor Configuration Information section displays the setting of the new DVIPA and NODVIPA subparameters for the SMFSERVICE parameter.
SMF event records for sysplex events
V1R12 The Network Monitor Configuration Information section displays the setting of the new CSMAIL, NOCSMAIL, CSSMTP and NOCSSMTP subparameters for the SMFSERVICE parameter. Management data for CSSMTP
CONN V2R1 Accepts a new SMCID filter to display only the TCP connections that are associated with a specific SMC-R link group or SMC-R link identifier. Shared Memory Communications over Remote Direct Memory Access
DEFADDRT V1R12 New report to display default address selection policy table. Configurable default address selection policy table
DEvlinks V2R1 Displays an IP address of 0.0.0.0 for IPAQENET interfaces that are defined with the TEMPIP parameter. Enable DHCP clients on OSA Interfaces
V2R1
  • Displays Shared Memory Communications over Remote Direct Memory Access information for OSD interfaces.
  • Accepts a new SMCID filter to display only the devices that are associated with a specific SMC-R link group or SMC-R link identifier.
  • Accepts a new SMC modifier to display detailed SMC-R information about active RNIC interfaces and their associated SMC-R links and link groups.
Shared Memory Communications over Remote Direct Memory Access
V2R1
  • This report displays information about IPv4 HiperSockets interfaces that are configured with the INTERFACE statement for IPAQIDIO.
  • This report displays the datapath address and TRLE name for IPAQIDIO6 interfaces, and IPAQIDIO interfaces defined by the INTERFACE statement.
  • This report displays information about IPv4 static VIPA interfaces that are configured with the INTERFACE statement for VIRTUAL.
  • The INTFNAME/-K filter accepts a HiperSockets TRLE name that allows for the display of all interfaces for a HiperSockets TRLE.
IPv4 INTERFACE statement for HiperSockets and Static VIPAs
DEvlinks V1R13
  • Displays whether checksum offload is enabled for an IPAQENET or IPAQENET6 interface.
  • Displays whether segmentation offload is enabled for an IPAQENET or IPAQENET6 interface.
OSA-Express4S QDIO IPv6 checksum and segmentation offload
V1R13 Displays information about IQDX interfaces. HiperSockets optimization for intraensemble data networks
V1R12
  • Added a ChpidType field for IPAQENET and IPAQENET6 interfaces.
  • Displays information about intraensemble data network and intranode management network interfaces.
z/OS Communications Server in an ensemble
V1R12
  • Moved the InbPerf field from the right column to the left column on a new line.
  • Added the WorkloadQueueing field to indicate whether inbound workload queueing is enabled for IPAQENET or IPAQENET6 interfaces. This field is only displayed when InbPerf is Dynamic.
Performance improvements for sysplex distributor connection routing
HOme V2R1 Displays a flag value of I/Internal for IPAQENET interfaces that are defined with the TEMPIP parameter. Enable DHCP clients on OSA Interfaces
V2R1 The INTFNAME/-K filter accepts a HiperSockets TRLE name that allows for the display of all interfaces for a HiperSockets TRLE. IPv4 INTERFACE statement for HiperSockets and Static VIPAs
IDS V1R13 Report is enhanced to display the following items:
  • The ICMPv6 scan rule name in the Scan Detection section
  • Information about new attack types
  • The number of TCP servers under a potential connection flood attack, ServersInConnFlood
  • The number of TCP connections whose send data flow is stalled, TCPStalledConns
  • The percentage of TCP connections whose send data flow is stalled, TCPStalledConnsPct
  • An indicator of whether a TCP server is experiencing a potential connection flood attack, ConnFlood in the Intrusion Detection Services TCP Port List section
  • Both IPv4 and IPv6 addresses in the IP address fields
Expanded Intrusion Detection Services
V1R13 Report is enhanced to display information about new attack types. Intrusion Detection Services support for Enterprise Extender
ND V1R13 Displays neighbor cache information for an IQDX interface. HiperSockets optimization for intraensemble data networks
PORTLIST V2R1 Displays a new flag to indicate whether the port or the port range is disabled for SMC-R. Shared Memory Communications over Remote Direct Memory Access
ROUTe V2R1 When the PR=ALL or PR=prname modifier is used to display a policy-based routing table, IPv6 routes are included in the report. IPv6 support for policy-based routing
V1R12
  • Support is added for a new modifier, RADV, to display all of the IPv6 routes created based on information received in router advertisement messages.
  • Default routes learned from IPv6 router advertisements are displayed with a metric of 1 when the router advertisement indicated a preference of high, 2 when the router advertisement indicated a preference of medium, or 3 when the router advertisement indicated a preference of low. In past releases, these routes were always displayed with a metric of 1.
Enhancements to IPv6 router advertisement
SRCIP V1R12 The report is changed to display JOBNAME entries with a source of PUBLICADDRS. Configurable default address selection policy table
STATS V2R1 Displays a new SMCR statistics section. The SMC-R statistics are displayed when no PROTOCOL modifier is specified, or when PROTOCOL=TCP is specified as the modifier value. Shared Memory Communications over Remote Direct Memory Access
V2R1 This report displays statistics about the usage of ephemeral ports for both TCP and UDP. User control of Ephmeral Port Ranges
V1R13 Report is enhanced to display the following information:
  • The number of TCP connections whose send data flow is stalled, Current Stalled Connections
  • The number of TCP servers under a potential connection flood attack, Current Servers in Connection Flood
Expanded Intrusion Detection Services
V1R12 Added new field, Segments Received on OSA Bulk Queues, which indicates the total number of segments received for all TCP connections using the bulk data ancillary input queue of the QDIO inbound workload queueing function. Performance improvements for streaming bulk data
TTLS V2R1 Reports are updated to show four-character cipher code, TLSv1.2 protocol, and new policy attributes AT-TLS support for TLS v1.2 and related features
VDPT V1R12 The section of the report containing the Dynamic VIPA Destination Port Table for non-z/OS targets can now show IPv6 non-z/OS distribution targets. Extend sysplex distributor support for DataPower for IPv6
V1R12

In the display for a distributed DVIPA, the distribution method is no longer displayed in the Flg field. The distribution method is now displayed in a new DistMethod field. The DistMethod field is not included in the short format display unless the DETAIL parameter is used.

The Flg field can now indicate the HotStandby target state, active (V or Active) or backup (K or Backup) depending on whether the Short or Long format display is used.

If the new distribution method HotStandby is displayed, a new SrvType field indicates the server type (Preferred or Backup).

Sysplex distributor support for hot-standby server
VIPADCFG V1R13 The new SAF name field is displayed if the SAF parameter is configured on the VIPARANGE statement. Improved security granularity for VIPARANGE DVIPAs
V1R12 The new IPv6 prefix length field is shown if it was configured. If used with DETAIL, a new value ENCAP can be displayed in the routing type (RtgType) field. ENCAP indicates that IPv6 routing encapsulation is used to forward requests. Extend sysplex distributor support for DataPower for IPv6
V1R12

In the display for a distributed DVIPA, the distribution method is no longer displayed in the Flg field. The distribution method is now displayed in a new DistMethod field. The DistMethod field is not included in the short format display unless the DETAIL parameter is used.

If the new distribution method HotStandby is displayed, a new SrvType field indicates the server type, Preferred or Backup. If the server type is Backup, the Rank of the backup is also displayed.

If the distribution method is the new HOTSTANDBY distribution method and the DETAIL parameter is specified, the settings for AUTOSWITCHBACK and HEALTHSWITCH are also displayed.

Sysplex distributor support for hot-standby server
VIPADyn V2R1 When displaying information about DVIPAs with an origin of VIPARANGE IOCTL, an additional field indicates if the DVIPA was created with affinity. Affinity for application-instance DIVPAs