Dell 5324 Tacacs-server key, Tacacs-server timeout, Following example specifies a TACACS+ host

Page 328

w w w . d e l l . c o m s u p p o r t . d e l l . c o m

If no host-specific timeout, key or source values are specified, the global values apply to each host.

Example

The following example specifies a TACACS+ host.

Console (config)# tacacs-server host 172.16.1.1

tacacs-server key

The tacacs-server key Global Configuration mode command sets the authentication encryption key used for all TACACS+ communications between the device and the TACACS+ daemon. To disable the key, use the no form of this command.

Syntax

tacacs-server key key-string no tacacs-server key

key-string—Specifies the authentication and encryption key for all TACACS communications between the device and the TACACS server. This key must match the encryption used on the TACACS daemon. (Range: 0 - 128 characters)

Default Configuration

Empty string

Command Mode

Global Configuration mode

User Guidelines

There are no user guidelines for this command.

Examples

The following example sets the authentication encryption key.

Console (config)# tacacs-server key dell-s

tacacs-server timeout

The tacacs-server timeout Global Configuration mode command sets the timeout value. To restore the default, use the no form of this command.

Syntax

tacacs-server timeout timeout

no tacacs-server timeout

328

TACACS Commands

Image 328
Contents CLI Reference Guide Aug Contents Using the CLI Address Table Commands Clock Ethernet Configuration Commands Igmp Snooping Commands Lacp Commands Management ACL Port Monitor Commands Rmon Commands Spanning-Tree Commands SSH Commands Syslog Commands Tacacs Commands Vlan Commands 32 802.1x Commands 382 Page Command Groups Command GroupsIntroduction Configures Tacacs commands Configures and reports on Spanning Tree protocolConfigures commands related to 802.1x security protocol AAA Commands Address Table CommandsConfigures an external time source for Configures the system to automatically switchDefines an authentication key for Simple Displays statically created entries in the bridgeConfiguration and Image Files Commands Ethernet Configuration Commands Displays the backup configuration file contentsGvrp Commands Igmp Snooping Commands Defines a default gateway routerIP Addressing Sets an IP addressDeletes entries from the host name-to-address Line CommandsCache Lldp Commands Sets the line for automatic baud rate detectionManagement ACL Commands PHY Diagnostics CommandsPort Monitor Commands Port Channel CommandsQoS Commands Radius Commands Enables each port trust stateRmon Commands Snmp CommandsSpanning Tree Commands MST Overrides the default link-type setting SSH CommandsSets the default path cost method Syslog Commands Tacacs Commands System Management CommandsReloads the operating system User Interface Commands Vlan CommandsSwitches the mode to debug Disables the default Vlan functionalityReserves a Vlan as the internal usage Vlan of an InterfaceWeb Server Commands 802.1x Commands Command Description Access ModeCommand Groups Command Modes GC Global Configuration ModeDevice Notification operation IC Interface Configuration Mode SntpFrame, from the client, before resending the request An Extensible Authentication Protocol EAP request/identityReserves a Vlan as the internal usage Vlan of an interface Enables the Simple Network Time Protocol Sntp client on an LC Line Configuration ModeCommand Description MA Management Access-level Mode PE Privileged User Exec ModeVlan SP SSH Public Key Mode UE User Exec ModeCommand Modes VC Vlan Configuration Mode W . d e l l . c o m s u p p o r t . d e l l . c o m CLI Command Modes Using the CLIIntroduction User Exec Mode Privileged Exec ModeGlobal Configuration Mode Exit End Ctrl+ZStarting the CLI Entering Commands Editing FeaturesConsoleconfig# username admin password smith Terminal Command Buffer Negating the Effect of CommandsCommand Completion Config#interface ethernetCLI Command Conventions Keyboard ShortcutsItalic font EnterUsing the CLI AAA Commands Aaa authentication loginDefault Configuration Command ModeFollowing example configures authentication login Aaa authentication enableExample Login authentication Console config# aaa authentication enable default enableEnable authentication Console config-line#login authentication defaultConsole config-line#enable authentication default Ip http authenticationFollowing example configures the http authentication Show authentication methods Ip https authenticationFollowing example configures https authentication Syntax Show authentication methods Default Configuration This command has no default configurationPrivileged Exec mode Following example displays the authentication configurationConsole# show authentication methods PasswordSyntax Password password encrypted No password No password is required Enable passwordFollowing example specifies a password secret on a line Show users accounts UsernameNo user is defined Syntax Show users accounts Default Configuration Console# show users accountsAAA Commands Interface configuration Vlan mode Address Table CommandsBridge address Disabled. All multicast addresses are flooded to all ports This example, bridge multicast filtering is enabledConsole config# bridge multicast filtering Bridge multicast filteringExamples No multicast addresses are definedFollowing example registers the MAC address Bridge multicast forbidden address Command ModesNo forbidden addresses are defined Disable forward-all on the specified interface Bridge multicast forward-allBridge multicast forbidden forward-all This example all multicast packets on port g8 are forwardedBridge aging-time SyntaxSyntax Clear bridge Clear bridgeConsole# clear bridge Interface Configuration Ethernet, port-channel mode Disabled No port securityPort security Console config-if#port security routed secure-address Port security routed secure-addressShow bridge address-table Mac-address-Specify a MAC address in the formatPort-channel-number-A valid port-channel number Show bridge address-table static Console# show bridge address-tableShow bridge address-table count Console# show bridge address-table staticSyntax Show bridge address-table count vlan vlan Vlan -Specific VlanShow bridge multicast address-table Console# show bridge address-table countConsole # show bridge multicast address-table Console # show bridge multicast address-table format ipShow bridge multicast filtering Show ports securitySyntax Show bridge multicast filtering vlan-id Vlanid-A valid Vlan ID valueConsole # show ports security Clock Clock setClock source Syntax Clock source sntp No clock sourceNo external clock source Clock timezoneConsole# clock source sntp Clock summer-time Sntp authentication-key No authentication key is definedConsoleconfig# sntp authentication-key 8 md5 ClkKey Sntp authenticateSyntax Sntp authenticate No sntp authenticate Sntp client poll timer Following example authenticates keySntp trusted-key Not trustedConsole config# sntp client poll timer Sntp broadcast client enableConsole config# sntp broadcast client enable Sntp anycast client enable Sntp client enable interfaceConsole config-if#sntp anycast client enable Syntax Sntp client enable No sntp client enableConsole config# sntp unicast client enable Sntp unicast client enable101 Console config# sntp unicast client poll Sntp unicast client pollSntp server Syntax Sntp unicast client poll no sntp unicast client pollSyntax Show clock detail Show clock103 Console# show clock 104Show sntp configuration Syntax Show sntp configurationConsole# show sntp configuration 105Show sntp status Syntax Show sntp statusFollowing example shows the status of the Sntp 106107 Clock Configuration and Image Files Delete startup-configConsole# delete startup-config CopyUnderstanding Invalid Combinations of Source and Destination 110Storing the Running or Startup Configuration on a Server Copy Character DescriptionsCopying image file from a Server to Flash Memory 111Boot system Syntax Boot system image-1 image-2Console# boot system image-1 112Show running-config Syntax Show running-config sort typeSort type defaults to interface if unspecified 113Console# show running-config no spanning-tree Show startup-configSyntax Show startup-config sort type 114 115 Console# show startup-config no spanning-tree Show backup-configSyntax Show backup-config 116 Console# show backup-config software version 117Show bootvar Syntax Show bootvar Default ConfigurationConsole# show bootvar 118Interface ethernet Ethernet Configuration CommandsInterface range ethernet Syntax Shutdown No shutdown Default Configuration Interface is enabledFollowing example disables port g5 ShutdownDescription SpeedSyntax Description string No description Syntax Speed 100 1000 No speedSyntax Duplex half full No duplex Duplex122 Consoleconfig# interface ethernet g5 Syntax Negotiation No negotiation Default ConfigurationNegotiation FlowcontrolMdix Syntax Flowcontrol auto on off No flowcontrolSyntax Mdix on auto No mdix 124Back-pressure Syntax Back-pressure No back-pressure Default Configuration125 Clear counters Port jumbo-frame126 Show interfaces configuration Set interface activeConsole# clear counters ethernet g1 Console# set interface active ethernet g5Interfaces configuration 128Show interfaces status 129130 Console# show interfaces statusShow interfaces description 131Console# show interfaces description ethernet g1 Show interfaces counters132 133 Console# show interfaces countersFollowing example displays counters for port g1 Console# show interfaces counters ethernet g1Following table describes the fields shown in the display 134135 Ieee Std .3, 2000 Edition, sectionShow ports jumbo-frame Syntax Show ports jumbo-frame Default Configuration136 Port storm-control broadcast enable Consoleconfig# port storm-control include-multicastPort storm-control include-multicast Console# show ports jumbo-frameBroadcast storm control is disabled Consoleconfig-if#port storm-control broadcast enableDefault storm control broadcast rate is Port storm-control broadcast rateConsoleconfig-if#port storm-control broadcast rate Following example displays the storm control configurationShow ports storm-control Syntax Show ports storm-control interface140 Gvrp Commands Gvrp enable globalGvrp enable interface Syntax Gvrp enable No gvrp enable Default ConfigurationFollowing example enables Gvrp on ethernet g8 Garp timer142 Gvrp vlan-creation-forbid By default, dynamic Vlan creation is enabled143 Console config-if#gvrp vlan-creation-forbid Console config-if#gvrp registration-forbidGvrp registration-forbid Clear gvrp statisticsConsole# clear gvrp statistics ethernet g8 Show gvrp configuration145 Show gvrp statistics Console# show gvrp configuration146 Show gvrp error-statistics Following example shows Gvrp statistics information147 Console# show gvrp statisticsFollowing example displays Gvrp statistics information Console# show gvrp-error statistics148 Igmp Snooping Commands Ip igmp snooping GlobalIp igmp snooping Interface 149Ip igmp snooping host-time-out Ip igmp snooping mrouter150 Ip igmp snooping mrouter-time-out Console config-if#ip igmp snooping host-time-out151 Console config-if#ip igmp snooping mrouter-time-out Default leave-time-out configuration is 10 secondsConsole config-if#ip igmp snooping leave-time-out Ip igmp snooping leave-time-outShow ip igmp snooping interface Show ip igmp snooping mrouterConsole # show ip igmp snooping mrouter Show ip igmp snooping groups Example displays Igmp snooping informationConsole # show ip igmp snooping interface 154Console # show ip igmp snooping groups Example shows Igmp snooping information155 Igmp Snooping Commands IP Addressing Commands Clear host dhcpIp address Console# clear host dhcpInterface configuration Ethernet, VLAN, port-channel Ip address dhcpNo IP address is defined for interfaces 158Ip default-gateway Syntax Ip default-gateway ip-address No ip default-gatewayNo default gateway is defined 159Show ip interface Following example defines an ip default gateway160 Console# show ip interface Arp161 Console config# arp 198.133.219.232 00000c400fbc ethernet Arp timeoutClear arp-cache Syntax Show arp Default Configuration Show arpConsole# clear arp-cache Following example displays entries in the ARP tableIp domain-lookup Ip domain-nameSyntax Ip domain-lookup No ip domain-lookup Syntax Ip domain-name name No ip domain-nameIp name-server Ip hostNo name server addresses are specified Following example sets the available name serverClear host Syntax Ip host name address No ip host nameNo host is defined Syntax Clear host nameDefault Configuration Command Mode Show hostsSyntax Show hosts name 167168 Lacp Commands Lacp system-priorityLacp port-priority Syntax Lacp port-priority value No lacp port-priorityLacp timeout Syntax Lacp timeout long short No lacp timeoutDefault port timeout value is long 170Show lacp ethernet Show lacp port-channelConsole# show lacp ethernet g1 statistics Syntax Show lacp port-channel portchannelnumberConsole# show lacp port-channel 172Line Commands LineSyntax Line console telnet ssh Syntax Speed bpsExec-timeout Syntax Autobaud No autobaud Default ConfigurationAutobaud 174Syntax Exec-timeout minutes seconds No exec-timeout Show lineSyntax Show line console telnet ssh 175Following example displays the line configuration Terminal historyTerminal history size Console# show line consoleMaximum for the sum of all buffers is 177Line Commands Lldp Commands Lldp enable globalLldp enable interface SyntaxLldp timer Interface configuration EthernetSyntax Lldp timer seconds No lldp timer Default 30 secondsLldp reinit-delay Default ConfiguraitonLldp hold-multiplier Syntax Lldp hold-multiplier number No lldp hold-multiplierLldp tx-delay Syntax Lldp reinit-delay seconds No lldp reinit-delaySyntax Lldp tx-delay seconds No lldp tx-delay Parameters Default value is 2 secondsLldp optional-tlv Lldp management-addressUsage Guidelines No optional TLV is transmittedClear lldp rx 184Show lldp configuration Syntax Show lldp configuration ethernet interfaceSwitch# show lldp configuration Show lldp localShow lldp neighbors 186Switch# show lldp neighbors ethernet g1 Switch# show lldp neighbors187 Lldp Commands Management access-list Name-The access list name using up to 32 charactersManagement ACL 189Permit management Console config# management access-class mlist190 Deny management Management Access-list Configuration mode191 Management access-class 192Show management access-list Show management access-classSyntax Show management access-list name Console# show management access-listConsole# show management access-class Syntax Show management access-class Default Configuration194 PHY Diagnostics Commands Test copper-port tdrShow copper-ports tdr Console# test copper-port tdr g3Show copper-ports cable-length Syntax Show copper-ports cable-length interfacePort must be active and working in 1000M 196Console# show copper-ports cable-length Show fiber-ports optical-transceiver197 198 Console# show fiber-ports optical-transceiver199 Console# show fiber-ports optical-transceiver detailedPHY Diagnostics Commands Port Channel Commands Console config# interface port-channelInterface port-channel Interface range port-channelConsole config# interface range port-channel Channel-groupPort is not assigned to any port-channel 202Console config-if#channel-group 1 mode on Port channel load balanceShow interfaces port-channel Syntax Show interfaces port-channel port-channel-number204 Port Monitor Commands Default is both rx and txInterface Configuration mode Port monitorShow ports monitor Syntax Show ports monitor Default Configuration206 Console# show ports monitor 207Port Monitor Commands Qos QoS CommandsShow qos Wrr-queue cos-map Following example displays a QoS mode210 Interface Configuration Ethernet, port channel mode Wrr-queue bandwidthFollowing example maps CoS 3 to queue 211Following example assigns WRR weights to egress queues Priority-queue out num-of-queuesAll queues are expedite queues 212Console config# priority-queue out num-of-queues Show qos interfaceFollowing example sets queue 4, 3 to be expedite queues 213Console# show qos interface ethernet g1 queuing Qos map dscp-queue214 Syntax Qos trust cos dscp No qos trust Qos trust Global215 Syntax Qos trust No qos trust Default Configuration Syntax Qos cos default-cos No qos cos 216Qos trust Interface Qos cosSyntax Show qos map dscp-queue Show qos map217 Following example displays the Dscp port-queue map Console# show qos map Dscp-queue mapFollowing table describes the fields used above D1 x 10 + D2 = Value of DscpRadius Commands By default, no Radius host is specifiedRadius-server host Ip-address-IP address of the Radius server hostTimeout Default is an empty stringRadius-server key Syntax Radius-server key key-string No radius-server keyConsole config# radius-server retransmit Radius-server retransmitRadius-server source-ip 221Console config# radius-server timeout Radius-server timeout222 Console config# radius-server deadtime Syntax Show radius-servers Default ConfigurationRadius-server deadtime Show radius-servers224 Following example displays the Radius server settingsConsole# show radius-servers Rmon Commands Show rmon statisticsConsole# show rmon statistics ethernet g1 225226 Field DescriptionRmon collection history 227Console config-if#rmon collection history 1 interval Show rmon collection historyFollowing example displays all Rmon group statistics Console# show rmon collection historyShow rmon history 229230 Console# show rmon history 5 errorsConsole# show rmon history 5 throughput Console# show rmon history 5 other 231Rmon alarm 232Show rmon alarm-table 233Show rmon alarm Syntax Show rmon alarm-table Default ConfigurationConsole# show rmon alarm-table Syntax Show rmon alarm numberConsole# show rmon alarm Following example displays Rmon 1 alarms235 Rmon event 236Following example configures an event with the trap index Syntax Show rmon events Default ConfigurationShow rmon events Following example displays the Rmon event tableShow rmon log Console# show rmon eventsSyntax Show rmon log event Event-Event index. Range 0Console# show rmon log Following example displays the Rmon logging table239 Console config# rmon table-size history Rmon table-sizeHistory table size is Log table size is 240Snmp Commands There are no default communities definedSnmp-server community No snmp-server community community ip-addressDefault Setting Default and DefaultSuper views existsSnmp-server view 242Product specific Snmp-server filter243 Snmp-server contact Snmp-server locationIncluded Syntax Snmp-server contact text No snmp-server contactSnmp-server enable traps Console config# snmp-server enable trapsSyntax Snmp-server location text No snmp-server location 245Snmp-server trap authentication Console config# snmp-server trap authenticationSnmp-server host 246Snmp-server set 247Snmp-server group 248Console config# snmp-server group user-groupv3 priv read Snmp-server userNo group entry exists Router context is translated to context in the MIB250 Following example configures a new Snmp Version 3 user Console config# snmp-server userSnmp-server v3-host 251Snmp-server engineID local Following example configures an SNMPv3 host252 Syntax Show snmp engineID Default Setting Consoleconfig # snmp-server engineID local defaultShow snmp engineid 253Syntax Show snmp Default Configuration Show snmpConsole# sh snmp 254Syntax Show snmp views viewname Show snmp views255 Syntax Show snmp groups groupname Show snmp groups256 Syntax Show snmp filters filtername Show snmp filters257 Syntax Show snmp users username Show snmp users258 259 Snmp Commands Spanning-Tree Commands Spanning-tree modeSyntax Spanning-tree No spanning-tree Default Configuration Spanning-treeConsoleconfig# spanning-tree mode rstp Consoleconfig# spanning-tree forward-timeSpanning-tree forward-time Seconds-Time in seconds. Range 4Spanning-tree hello-time 263Spanning-tree max-age Consoleconfig# spanning-tree hello-time264 Spanning-tree disable Consoleconfig# spanning-tree max-ageConsoleconfig# spanning-tree priority Spanning-tree priorityFollowing example disables spanning-tree on g5 Spanning-tree costSyntax Spanning-tree cost cost No spanning-tree cost Cost-The port path cost Range 1 200,000,000Consoleconfig-if#spanning-tree port-priority Spanning-tree port-prioritySpanning-tree portfast 267Consoleconfig-if#spanning-tree portfast Consoleconfig-if#spanning-tree link-type sharedSpanning-tree link-type 268Default number of hops is Console config # spanning-tree mst 1 prioritySpanning-tree mst priority Spanning-tree mst max-hopsConsole config # spanning-tree mst max-hops Consoleconfig-if#spanning-tree mst 1 port-prioritySpanning-tree mst port-priority 270Spanning-tree mst configuration Spanning-tree mst costInterface Long Short 271Syntax Spanning-tree mst configuration Default Setting Instance mstSyntax Instance instance-id add remove vlan vlan-range 272Name mst Revision mstSyntax Name string Syntax Revision value No revisionDefault configuration revision number is Following example sets the configuration revision toShow mst Syntax Show current pendingSyntax Exit Default Setting Syntax Abort Default SettingExit mst Abort mstSpanning-tree pathcost method Spanning-tree bpduConsole# spanning-tree pathcost method long 276Consoleconfig# spanning-tree bpdu flooding Clear spanning-tree detected-protocolsSyntax Spanning-tree bpdu filtering flooding 277Show spanning-tree Console# clear spanning-tree detected-protocols ethernet g1Following example displays spanning-tree information 278279 Console# show spanning-tree280 281 282 283 284 285 Console# show spanning-tree mst-configuration 286287 288 289 Spanning-tree mst mstp-rstp 290Consoleconfig# spanning-tree mst mstp-rstp Root guard is disabledInterface configuration Ethernet, port-channel Spanning-tree guard rootConsoleconfig-if#spanning-tree guard root Following example enable root guard on port g8292 Ip ssh port SSH CommandsIp ssh server Syntax Crypto key generate dsa Default Configuration Console config# crypto key generate dsaCrypto key generate dsa Crypto key generate rsaSyntax Crypto key generate rsa Default Configuration Console config# crypto key generate rsaIp ssh pubkey-auth 295Crypto key pubkey-chain ssh Consoleconfig# crypto key pubkey-chain sshUser-key Syntax Key-string row key-string Key-string297 Show ip ssh Syntax Show ip ssh Default Configuration298 Following example displays the SSH server configuration Show crypto key mypubkeySyntax Show crypto key mypubkey rsa dsa Rsa-RSA key Dsa-DSA key300 Show crypto key pubkey-chain sshConsole# show crypto key mypubkey rsa Console# show crypto key pubkey-chain ssh Following example displays the SSH public called bobConsole# show crypto key pubkey-chain ssh username bob 301SSH Commands Syslog Commands Syntax Logging on no logging on Default ConfigurationLogging on LoggingDefault is informational Logging consoleAs described in the field descriptions Syntax Logging console level No logging consoleDefault level is informational Logging bufferedLogging buffered size Syntax Logging buffered level No logging bufferedConsole config# logging buffered size Syntax Clear logging Default ConfigurationClear logging Console# clear loggingSyntax Clear logging file Default Configuration Logging fileClear logging file Syntax Logging file level No logging fileSyntax Show logging Default Configuration Show loggingFollowing example clears messages from the logging file Console# clear logging fileSyntax Show logging file Default Configuration Show logging fileConsole# show logging 309Show syslog-servers Syntax Show syslog-servers Default Configuration310 Console# show syslog-servers Following example displays the syslog server settings311 Syslog Commands Timeout timeout-The default is 2000 milliseconds System ManagementPing 313Following example displays a ping to IP address Traceroute314 315 316 Telnet Special Telnet Command characters317 Keywords Table 318Ports Table 319Following command switches to another open Telnet session ResumeSyntax Resume connection 320Reload HostnameShow sessions Show usersConsole# show users Exec mode Show systemConsole show sessions Syntax Show systemShow version Following example displays the system informationSyntax Show version 324 Console show systemAsset-tag Syntax Asset-tag tag No asset-tagTag-The device asset tag. Range 1- 16 characters 325Syntax Show system id Default Configuration Show system idConsole show system id 326Tacacs Commands Tacacs-server hostNo Tacacs host is specified 327Tacacs-server timeout Following example sets the authentication encryption keyTacacs-server key Following example specifies a TACACS+ hostTacacs-server source-ip Console config# tacacs-server timeout329 Show tacacs Syntax Show tacacs ip-addressIp-address-Name or IP address of the host Console# show tacacsDisable EnableUser Interface Login ConfigureSyntax Login Default Configuration Syntax ConfigureExitconfiguration Syntax Exit Default ConfigurationAll command modes 333Syntax End Default Configuration ExitEXECEnd Following example closes an active terminal sessionSyntax Help Default Configuration Syntax History No history Default ConfigurationHelp HistorySyntax History size number-of-commands No history size Syntax Debug-mode Default ConfigurationHistory size Debug-modeShow history Syntax Show history Default Configuration337 Syntax Show privilege Default Configuration Show privilegeConsole# show history Console# show privilegeVlan database Vlan CommandsVlan Interface vlan Default-vlan disableConsole# vlan database Syntax Interface range vlan vlan-range all Interface range vlan341 Switchport access vlan NameSyntax Name string no name 342Console config-if#switchport access vlan Switchport trunk allowed vlan343 Switchport trunk native vlan Switchport general allowed vlanConsole config-if#switchport trunk allowed vlan add 2,5-8 Console config-if#switchport trunk native vlanSwitchport general pvid 345Ingress filtering is enabled Switchport general ingress-filtering disable346 Switchport general acceptable-frame-type tagged-only Switchport forbidden vlanAll frame types are accepted at ingress All VLANs allowedConsole config-if#switchport forbidden vlan add Map protocol protocols-groupFollowing example maps protocol ip-arp to the group named 348Switchport general map protocols-group vlan Ip internal-usage-vlanVlan-id-VLAN ID of the internal usage VLAN.Range Valid Vlan 349Console config# ip internal-usage-vlan Show vlanSyntax Show vlan tag vlan-id name vlan-name Following example displays all Vlan informationShow vlan internal usage Syntax Show vlan internal usage Default Configuration351 Syntax Show vlan protocols-groups Default Configuration Show vlan protocols-groupsConsole# show vlan internal usage Following example displays protocols-groups informationConsole# show vlan protocols-groups Show interfaces switchport353 Console# show interface switchport ethernet g1 Switchport modeSyntax Switchport mode customer access trunk general 354 Switchport customer vlan No switchport modeNo Vlan is configured Vlan-id- Vlan ID of the customer356 Web Server Ip http serverIp http port Syntax Ip http port port-number No ip http portDefault for the device is disabled Ip https serverIp https port Syntax Ip https port port-number No ip https portCrypto certificate generate Following example configures the https port number to359 Console enable# crypto certificate generate key-generate Crypto certificate requestCertificate and the SSL RSA key pairs do not exist Following example regenerates a Https certificateConsole# crypto certificate 1 request 361Crypto certificate import Syntax Crypto certificate number importNumber-Specifies the certificate number. Range 1 362Consoleconfig# crypto certificate 1 import Ip https certificateCertificate number 363Console config# ip https certificate Crypto certificate export pkcs12Syntax Crypto certificate number export pkcs12 364365 Following example exports the certificate and RSA keysConsole# crypto certificate 1 export pkcs12 Crypto certificate import pkcs12 Syntax Crypto certificate number import pkcs12 passphraseFollowing example imports the certificate and RSA keys 366367 Show crypto certificate mycertificate Syntax Show crypto certificate mycertificate numberFollowing example displays the certificate Console# show crypto certificate mycertificateShow ip https Show ip httpConsole# show ip http Console# show ip https 370802.1x Commands Aaa authentication dot1xConsole config# aaa authentication dot1x default none Method1 method2...-At least one from the following tableFollowing example enables 802.1x globally Console config# dot1x system-auto-controlDot1x system-auto-control Dot1x port-controlDot1x re-authentication Console config-if#dot1x port-control autoSyntax Dot1x re-authentication No dot1x re-authentication 373Dot1x timeout re-authperiod Dot1x re-authenticateConsole config-if#dot1x re-authentication Console config-if#dot1x timeout re-authperiodConsole# dot1x re-authenticate ethernet g8 Dot1x timeout quiet-period375 Console config-if#dot1x timeout quiet-period Dot1x timeout tx-period376 Dot1x timeout supp-timeout Dot1x max-reqSyntax Dot1x max-req count No dot1x max-req 377Dot1x timeout server-timeout 378Console config# dot1x timeout server-timeout Show dot1xSyntax Show dot1x ethernet interface 379380 Console# show dot1x ethernet g3Show dot1x users Syntax Show dot1x users username usernameUsername-Supplicant username Range 1- 160 characters Following example displays 802.1X usersSyntax Show dot1x statistics ethernet interface Show dot1x statistics382 Switch# show dot1x statistics ethernet g1 383User should be authorized to access the Vlan Dot1x auth-not-reqSyntax Dot1x auth-not-req no dot1x auth-not-req 384Dot1x multiple-hosts Dot1x single-host-violationSyntax Dot1x multiple-hosts no dot1x multiple-hosts 385Show dot1x advanced Forward trapSyntax Show dot1x advanced ethernet interface 386Switch# show dot1x advanced ethernet g1 Switch# show dot1x advanced387 Console# show dot1x advanced ethernet g1 388
Related manuals
Manual 72 pages 22.37 Kb

5324 specifications

The Dell 5324 is a high-performance network switch that is designed to meet the demands of modern enterprise networking. This switch represents a blend of advanced features aimed at enhancing network efficiency, reliability, and scalability, which are crucial for businesses looking to optimize their infrastructure.

One of the standout features of the Dell 5324 is its Layer 3 routing capabilities. It supports static routing and various dynamic routing protocols, including RIP, OSPF, and BGP, allowing for efficient data transfer across complex networks. This capability is particularly beneficial for organizations that require robust inter-VLAN routing and seamless connectivity with multiple network segments.

The Dell 5324 comes equipped with 24 Gigabit Ethernet ports, which provide ample connectivity options for devices within the network. Additionally, it includes four 10 Gigabit SFP+ ports, enabling users to integrate high-speed uplinks easily. This flexibility allows businesses to expand their network as demand grows without the need for a completely new setup.

Power over Ethernet (PoE) support is another significant advantage of the Dell 5324, as it enables the switch to deliver both data and power to connected devices through a single Ethernet cable. This feature is particularly useful for powering IP phones, security cameras, and Wi-Fi access points, simplifying the overall cabling and ensuring a neater installation.

Furthermore, the Dell 5324 offers advanced security features that help protect the network from unauthorized access and potential threats. It includes features such as 802.1X port-based authentication, MAC address filtering, and VLAN segmentation, ensuring that only authorized devices can connect to the network.

The user-friendly web-based interface alongside command-line interface (CLI) access enhances manageability, allowing network administrators to monitor performance, configure settings, and troubleshoot issues with ease. In addition, the switch supports network automation protocols, which can streamline management tasks and improve efficiency.

The industrial-grade design of the Dell 5324 ensures its reliability in various environments, making it a suitable choice for data centers and enterprise networks alike. With its combination of performance, scalability, and security features, the Dell 5324 stands out as a capable solution for organizations looking to improve their network infrastructure. Its capabilities make it a versatile addition for businesses aiming for a robust and future-ready networking environment.