Command map

show anomaly observe

Show the behavioral anomaly incident lifecycle, newest first.

Ze command

Registry path
show anomaly observe
Usage
show anomaly observe
Mode
Read-only
Wire method
ze-show:anomaly-observe
Backends
any backend
Task support
optional: the MCP call is synchronous, which is the default
Subcommands
none: this command takes no subcommand
Pipes, always
json, ndjson, table, text, yaml, raw, no-more, save
Pipes, when the answer has rows
match, count, first, last, display, fill
Pipes, while streaming
log
Pipes, local process only
save

Description

Per incident: the source entity, cohort, fired features with their
deviation z-scores, combined score, severity, start time, end time, and whether
it is still active. Finalized incidents stay in the list, so this shows a
finished incident's duration, which `show anomaly detect` cannot.

Arguments

No command-specific arguments listed.

Mapping status

No vendor equivalent has been curated yet for this Ze command.

Juniper Junos MX

No equivalent is listed for this vendor yet.

Cisco IOS XR

No equivalent is listed for this vendor yet.

Nokia SR OS

No equivalent is listed for this vendor yet.

VyOS

No equivalent is listed for this vendor yet.