202-10088-01, March
 Technical Support
 Canadian Department of Communications Compliance Statement
 202-10088-01, March
 Contents
 Chapter Command Line Interface Structure
 202-10088-01, March
 202-10088-01, March
 202-10088-01, March
 202-10088-01, March
 Pre-login Banner
 System Log Syslog
 User Account Commands
 202-10088-01, March
 100
 202-10088-01, March
 202-10088-01, March
 Chapter Security Commands
 202-10088-01, March
 202-10088-01, March
 Chapter Routing Commands
 Xxii
 202-10088-01, March
 Chapter Quality of Service QoS Commands
 202-10088-01, March
 202-10088-01, March
 Chapter Managing Switch Stacks
 Appendix a Is CLI Mapping Appendix B Cabling Guidelines
 Contents
 Xxx Contents
 Audience
Why the Document was Created
How to Use This Document
 Typographical Conventions
Special Message Formats
 About This Guide
 About This Guide
 Switch Management Overview
Scope
 Comparing Switch Management Methods
 Chapter Administration Console Interface
Set Up Your Switch Using Direct Console Access
 Connection Description
 Connection Settings
 Administration Console Interface
 Chapter Web-Based Management Interface
 How to Log In to the Managed Switch
Web Based Management Overview
 Login window opens
 Web-Based Management Utility Features
System Information
 Interactive Switch Image
Interactive switch image
 Menus
Main Menus
 Management
Switch
Secondary Menus
 System-Wide Popup Menus
Routing
Traffic Management
Smart Wizard
 Port-Specific Popup Menus
 Web-Based Management Interface
 CLI Command Format
Command
 Parameters
Values
 Conventions
Macaddr
 Annotations
 Quick Starting the Switch
Chapter Quick Start up
 Quick Start up Physical Port Data
System Info and System Setup
Quick Start up Software Version Information
 Quick Start up User Account Management
Quick Start up IP Address
 Quick Start up IP Address
 Quick Start up Uploading from Switch to Out-of-Band PC Only
Xmodem
 Quick Start up Factory Defaults
Quick Start up Downloading from Tftp Server
 Chapter Mode-based CLI
 Enter the ip dhcp pool
 Mode-based Topology
Correct
 Mode-based Command Hierarchy
Command prompt shown at this level is
 Figuration mode to configure the QoS policy map
 Flow of Operation
Invalid input detected at ‘’ marker
 Support for No Form
No Form of a Command
Behavior of Command Help ?
 Mode-based CLI
 Chapter Switching Commands
System Information and Statistics Commands
 Show hardware
Show arp switch
Show eventlog
 Show interface
 Show interface ethernet
 Packets Received
 Packets Received with MAC Errors
Packets Received Successfully
 Received Packets not forwarded
 Packets Transmitted Octets
 Transmit Discards
Transmit Errors
Packets Transmitted Successfully
 Protocol Statistics
 Dot1x Statistics
 Switching Commands
 Show logging
Show mac-addr-table
 Show running-config
Show msglog
 Snmp-server
System Management Commands
Show sysinfo
 No transport input telnet
Telnet
Transport input telnet
 Session-limit
Session-timeout
Transport output telnet
 No session-timeout
Bridge aging-time
Seconds
No bridge aging-time
 Mtu
Network javamode
Network mac-address
No mtu
 No network mac-type
Network mac-type
Network parms
 Telnetcon timeout
Network protocol
Telnetcon maxsessions
No telnetcon maxsessions
 Serial timeout
No telnetcon timeout
No serial timeout
Serial baudrate
 Serviceport ip
Serviceport protocol
Set prompt
Show telnet
 Show forwardingdb agetime
Show network
 Show telnetcon
Java Mode
Format Mode
 Show serviceport
Show serial
 Snmp Community Commands
Show snmpcommunity
Client IP Address
Client IP Mask
 Show snmptrap
Show trapflags
 Snmp-server community
No snmp-server community
 Snmp-server community ipaddr
Snmp-server community ipmask
No snmp-server community ipaddr
No snmp-server community ipmask
 Snmp-server community mode
No snmp-server community mode
Snmp-server community ro
Snmp-server community rw
 Snmp-server enable traps
Snmp-server enable traps bcaststorm
Snmp-server enable traps linkmode
No snmp-server enable traps
 Snmp-server enable traps multiusers
Snmp-server enable traps stpmode
No snmp-server enable traps linkmode
No snmp-server enable traps stpmode
 Snmptrap mode
No snmptrap mode
Snmptrap
Snmptrap ipaddr
 Snmp trap link-status
Snmp trap link-status all
No snmp trap link-status
No snmp trap link-status all
 Management Vlan Command
System Configuration Commands
Network mgmtvlan
Addport
 Deleteport Interface Config
Deleteport Global Config
Auto-negotiate all
No auto-negotiate
 No macfilter
Macfilter
Macfilter adddest
 Macfilter adddest all
Macfilter addsrc
No macfilter adddest
No macfilter adddest all
 Macfilter addsrc all
Monitor session
No macfilter addsrc
No macfilter addsrc all
 Monitor session mode
No monitor session mode
Shutdown
No monitor session
 Shutdown all
Speed all
No shutdown
100f 10h 10f
 Storm-control broadcast
100h
100f
No storm-control broadcast
 No storm-control flowcontrol
Storm-control flowcontrol
Show mac-address-table multicast
 Show mac-address-table static
Show mac-address-table staticfiltering
 Show port
Show mac-address-table stats
Show monitor
 Show port protocol
 Virtual LAN Vlan Commands
Show storm-control
Vlan
No vlan
 Vlan acceptframe
Vlan ingressfilter
No vlan acceptframe
No vlan ingressfilter
 Vlan makestatic
Vlan name
Vlan participation
No vlan name
 Vlan participation all
Vlan port acceptframe all
Exclude
Auto
 Vlan port ingressfilter all
Vlan port pvid all
No vlan port acceptframe all
No vlan port ingressfilter all
 Vlan port tagging all
Vlan protocol group
Vlan protocol group add protocol
No vlan port tagging all
 Vlan protocol group remove
Protocol group
No vlan protocol group add protocol
No protocol group
 Protocol vlan group
Protocol vlan group all
No protocol vlan group
No protocol vlan group all
 Vlan pvid
Vlan tagging
Show vlan
No vlan pvid
 Configured
Vlan Name
Vlan Type
Current
 Port Vlan ID
Show vlan brief
Show vlan port
 Ingress Filtering
System Utility Commands
Traceroute
 Clear config
Enable passwd
Clear counters
Clear igmpsnooping
 Clear port-channel
Clear traplog
Clear vlan
Logout
 Ping
Reload
Copy
Formatreload
 Pre-login Banner
 CLI Command Logging
Configuration Scripting
Logging cli-command
No logging cli-command Format
 Configscript apply
Configscript delete
Configscript list
Configscript show
 Configscript validate
System Log Syslog
 Logging buffered
Logging buffered wrap
Logging console
No logging buffered
 Logging history
Logging host
No logging console
No logging history
 Logging host remove
Logging port
Logging syslog
No logging port
 Show logging history
Client Local Port
 Admin Status
Show logging buffered
Show logging hosts
Severity Level Filter
 Sntp client mode
Simple Network Time Protocol Sntp
Sntp broadcast client poll-interval
Host Status
 Sntp client mode
Sntp client port
Sntp unicast client poll-interval
No sntp client port
 Sntp unicast client poll-timeout
No sntp unicast client poll-timeout
Sntp unicast client poll-retry
Sntp multicast client poll-interval
 Sntp server
Show sntp
 Show sntp client
Show sntp server
 Disconnect
User Account Commands
Show loginsession
 Show users
Connection From
Idle Time
Session Time
 Users name
Users passwd
No users name
No users passwd
 Users snmpv3 accessmode
Users snmpv3 authentication
No users snmpv3 accessmode
No users snmpv3 authentication
 No users snmpv3 encryption
Dhcp Server Commands
Users snmpv3 encryption
 Client-identifier
Client-name
No client-identifier
No client-name
 Default-router
No default-router
Dns-server
Hardware-address
 Host
Ip dhcp excluded-address
No hardware-address
No host
 Defaultnone
Ip dhcp ping packets
Ip dhcp pool
No ip dhcp excluded-address
 Lease
Network
No ip dhcp pool
No lease
 Service dhcp
Bootfile
No service dhcp
No bootfile
 Ip dhcp bootp automatic
No ip dhcp bootp automatic
Domain-name
Ip dhcp conflict logging
 Netbios-name-server
Netbios-node-type
No netbios-name-server
No ip dhcp conflict logging
 No netbios-node-type
Next-server
Option
No next-server
 No option
Show ip dhcp global configuration
Show ip dhcp binding
 Show ip dhcp pool configuration
Show ip dhcp server statistics
 Show ip dhcp conflict
 Provisioning Ieee 802.1p Commands
Clear ip dhcp binding
Clear ip dhcp server statistics
Clear ip dhcp conflict
 Classofservice dot1pmapping
Show classofservice dot1pmapping
Vlan port priority all
Vlan priority
 No set garp timer join
Garp Commands
Set garp timer join
 Set garp timer join all
Set garp timer leave
No set garp timer join all
No set garp timer leave
 Set garp timer leave all
Set garp timer leaveall
No set garp timer leave all
No set garp timer leaveall
 Set garp timer leaveall all
No set garp timer leaveall all
Gmrp Admin Mode
Gvrp Admin Mode
 Garp Vlan Registration Protocol Gvrp Commands
Set gvrp adminmode
No set gvrp adminmode
Set gvrp interfacemode
 Show gvrp configuration
Set gvrp interfacemode all
 Garp Multicast Registration Protocol Gmrp Commands
Set gmrp adminmode
Port Gmrp Mode
No set gmrp adminmode
 Set gmrp interfacemode
Set gmrp interfacemode all
No set gmrp interfacemode
No set gmrp interfacemode all
 Show gmrp configuration
Show mac-address-table gmrp
 Internet Group Management Protocol Igmp Commands
Set igmp
 No set igmp groupmembership-interval
Set igmp groupmembership-interval
No set igmp
 Set igmp interfacemode all
Set igmp maxresponse
No set igmp interfacemode all
No set igmp maxresponse
 Format Mode Admin Mode
Set igmp mcrtrexpiretime
Show igmpsnooping
No set igmp mcrtrexpiretime
 Igmp Snooping per Vlan
Show mac-address-table igmpsnooping
 Set igmp groupmembershipinterval
No set igmp groupmembershipinterval
 No set igmp mcrtexpiretime
Set igmp mcrtexpiretime
Set igmp fast-leave
 No set igmp fast-leave
 Port-channel staticcapability
Link Aggregation LAG/Port-Channel 802.3AD Commands
Fast Leave Mode
 Port lacpmode
Port lacpmode all
No port-channel staticcapability
No port lacpmode
 Port-channel adminmode all
No port-channel adminmode
Port-channel
Port-channel linktrap
 Port-channel name
Show port-channel brief
 Show port-channel
 Spanning Tree STP Commands
Spanning-tree max-hops
Spanning-tree
No spanning-tree max-hops
 Spanning-tree configuration name
Spanning-tree configuration revision
No spanning-tree configuration name
No spanning-tree
 No spanning-tree configuration revision
Spanning-tree edgeport
Spanning-tree forceversion
No spanning-tree edgeport
 Spanning-tree forward-time
Spanning-tree hello-time
No spanning-tree forceversion
No spanning-tree forward-time
 No spanning-tree max-age
Spanning-tree max-age
Spanning-tree mst
 Cost auto external-cost auto port-priorty
No spanning-tree mst
 Spanning-tree mst instance
Spanning-tree mst priority
No spanning-tree mst instance
No spanning-tree mst priority
 Spanning-tree port mode
No spanning-tree port mode
Spanning-tree mst vlan
No spanning-tree mst vlan
 Spanning-tree port mode all
Spanning-tree bpdumigrationcheck
 Show spanning-tree
 Port mode
Show spanning-tree interface
 Show spanning-tree mst detailed
Show spanning-tree mst port detailed
 Port Priority
Port Forwarding State
Port Role
Port Path Cost
 Show spanning-tree mst port summary
Show spanning-tree mst summary
CST Regional Root
CST Port Cost
 Show spanning-tree summary
Show spanning-tree vlan
 Switching Commands 133
 Mode
 Root Port Identifier Root Port Max Age
Topology Change
Designated Root Root Path Cost
 Root Port Bridge Forward Delay Derived value
Bridge Forward Delay
CST Regional Root Regional Root Path Cost
Bridge Identifier Bridge Max Age
 STP BPDUs Transmitted
RST BPDUs Transmitted
Mstp BPDUs Transmitted Mstp BPDUs Received
MST Instance ID Port Identifier Port Priority
 Configured value indicating if this port is an edge port
 No port-security
Port Security
Port-security
 Port-security max-dynamic
Port-security max-static
No port-security max-dynamic
No port-security max-static
 Snmp-server enable traps violation
No snmp-server enable traps violation
Port-security mac-address
Port-security mac-address move
 Show port-security static
Show port-security
Show port-security dynamic
 Show port-security violation
Port Based Network Access Control Ieee 802.1X Commands
Authentication login
 Dot1x defaultlogin
No authentication login
Clear dot1x statistics
Clear radius statistics
 Dot1x login
Dot1x initialize
Dot1x max-req
No dot1x max-req
 No dot1x port-control
Dot1x port-control
Dot1x port-control All
 Dot1x re-authenticate
Dot1x re-authentication
No dot1x re-authentication
Dot1x system-auth-control
 Dot1x timeout
No dot1x system-auth-control
 No dot1x timeout
Dot1x user
Show radius accounting
No dot1x user
 Show authentication
 Show authentication users
Show dot1x
Method
User
 Control Mode
Supplicant Timeout
Server Timeout
Protocol Version
 Control Direction
 Show users authentication
Users defaultlogin
Users login
Show dot1x users
 Remote Authentication Dial In User Service Radius Commands
Radius accounting mode
No radius accounting mode
Radius server host
 No radius server host
 Default10
Radius server key
Radius server msgauth
Radius server primary
 Radius server timeout
No radius server timeout
Show radius
No radius server retransmit
 Show radius statistics
 Secure Shell SSH Commands
Access Accepts
Access Rejects
Access Challenges
 Show ip ssh
Hypertext Transfer Protocol Http Commands
Ip ssh protocol
 Ip http secure-port
Ip http secure-protocol
Ip http secure-server
No ip http secure-port
 Http Mode
Ip http server
Show ip http
No ip http server
 Security Commands
 No arp
Address Resolution Protocol ARP Commands
Arp
 Ip proxy-arp
Arp cachesize
No ip proxy-arp
No arp cachesize
 Arp dynamicrenew
Arp purge
Arp resptime
No arp dynamicrenew
 Arp timeout
No arp timeout
Arp retries
Clear arp-cache
 Show arp
Age Time seconds
Retries
Cache Size
 Routing
IP Routing
Show arp brief
 Ip routing
Ip address
No routing
No ip routing
 Ip route default
Ip route
No ip address
No ip route
 No ip route default
Defaultenabled
Ip route distance
Ip forwarding
 Ip netdirbcast
Ip mtu
No ip forwarding
No ip netdirbcast
 Show ip brief
Show ip interface
 Show ip interface brief
Show ip route
 Show ip route bestroutes
Show ip route entry
Protocol
Next Hop Intf
 Show ip route preferences
Show ip stats
Next Hop Interface
Preference
 Bootp/DHCP Relay Commands
Bootpdhcprelay cidoptmode
No bootpdhcprelay cidoptmode
Encapsulation
 Bootpdhcprelay minwaittime
Bootpdhcprelay enable
Bootpdhcprelay maxhopcount
 Bootpdhcprelay serverip
Show bootpdhcprelay
 Router Discovery Protocol Commands
Ip irdp
Ip irdp address
No ip irdp
 Ip irdp holdtime
Ip irdp maxadvertinterval
No ip irdp address
No ip irdp holdtime
 Ip irdp minadvertinterval
Ip irdp preference
Show ip irdp
No ip irdp minadvertinterval
 Virtual LAN Routing Commands
Vlan routing
 Routing Information Protocol RIP Commands
Enable RIP
Show ip vlan
Logical Interface
 Auto-summary
Default-information originate RIP
Ip rip
 Default-metric RIP
No default-information originate RIP
No default-metric RIP
Distance rip
 Ip rip authentication
No default-information originate
Distribute-list out
No distribute-list out
 No ip rip authentication
Ip rip receive version
Ip rip send version
No ip rip receive version
 Hostroutesaccept
Split-horizon
No ip rip send version
No hostroutesaccept
 Redistribute
Show ip rip
Format for other source protocol
No redistribute
 RIP Mode
Show ip rip interface brief
Send Version
Receive Version
 Show ip rip interface
 Access Control List ACL Commands
Mac access-list extended name
 Denypermit srcmac srcmacmask dstmac dstmacmask
Mac access-list extended rename name newname
No mac access-list extended name
 Mac access-group name inout sequence
 No mac access-group name inout
Show mac access-list name
Show mac access-lists
 Access-list
 Show ip access-lists
Ip access-group
Ip access-group all
 Destination IP Mask
Differentiated Services DiffServ Commands
Source IP Mask
 Diffserv
 Class Commands
Service Levels
No diffserv
Traffic Classification
 No class-map
 Class-map rename
Match ethertype
Match secondary-cos
Match secondary-vlan
 Match any
Match class-map
 Match cos
Match destination-address mac
 Match dstip
Match dstl4port
 Match ip dscp
Match ip precedence
 Match ip tos
Match protocol
 Match srcl4port
Match source-address mac
Match srcip
 Policy Commands
Match vlan
 Mark secondary-cos
Assign-queue
Drop
 Redirect
Conform-color
Bandwidth kbps
Policy Type
 Class
Incompatibilities
Bandwidth percent
 Expedite kbps
Expedite percent
 Mark cos
Policy Type Mark ip-dscp
 Police-simple
Policy Type Incompatibilities
Mark ip-precedence
 Police-single-rate
 Police-two-rate
 Randomdrop
Policy-map
Policy-map rename
 Shape average
Shape peak
 Service Commands
Service-policy
 Show Commands
No service-policy
 Show class-map
Class Name
Class Type
Match Criteria
 Show diffserv
 Assign Queue
Show policy-map
Conform COS
 Policy Name
Mark IP Dscp
Mark IP Precedence
Policing Style
 Shaping Average
Exceed Action
Bandwidth
 Show diffserv service
Class Members
Direction
Operational Status
 Show diffserv service brief
DiffServ Mode
Policy Details
OperStatus
 11-38 Quality of Service QoS Commands
 Show service-policy
Sent Octets/Packets
Dir
Offered Packets
 Classofservice ip-dscp-mapping
Class of Service CoS Commands
Classofservice dot1p-mapping
 Classofservice ip-precedence-mapping
Classofservice trust
No classofservice trust
Cos-queue max-bandwidth
 No cos-queue max-bandwidth
Cos-queue min-bandwidth
Cos-queue random-detect
No cos-queue min-bandwidth
 Cos-queue strict
Random-detect
No cos-queue strict
No random-detect
 Random-detect exponential-weighting-constant
Random-detect queue-parms
Tail-drop queue-parms
No random-detect queue-parms
 Show classofservice dot1p-mapping
Traffic-shape
 Show interfaces cos-queue
Show classofservice ip-precedence-mapping
Show classofservice trust
 Show interfaces random-detect
 Show interfaces tail-drop-threshold
Fig indication
 Drop precedence level for this queue, from 1 to p. The spe
 11-50 Quality of Service QoS Commands
 Chapter Managing Switch Stacks
Understanding Switch Stacks
 Switch Stack Membership
 Managing Switch Stacks 12-3
 Interconnect Ports 51 As shown
 Stack Master Election and Re-Election
Stack Member Numbers
 Switch Stack Offline Configuration
Stack Member Priority Values
 Managing Switch Stacks 12-7
 Switch Stack Configuration Files
Switch Stack Software Compatibility Recommendations
Incompatible Software and Stack Member Image Upgrades
 Switch Stack Management Connectivity
Switch Stack Configuration Scenarios
Connectivity to the Switch Stack Through Console Ports
Connectivity to the Switch Stack Through Telnet
 Stacking Recommendations
 Initial installation and Power-up of a Stack
General Practices
 Replacing a Stack Member with a New Unit
Removing a Unit from the Stack
Adding a Unit to an Operating Stack
 Renumbering Stack Members
 Merging Two Operational Stacks
Moving a Master to a Different Unit in the Stack
Removing a Master Unit from an Operating Stack
 Preconfiguration
Upgrading Firmware
 Migration of Configuration With a Firmware Upgrade
Code Mismatch
 Appendix a Is CLI Mapping
 Config acl rule action aclid Rulenum permit/deny
 Exec
 Is CLI Mapping
 Config diffserv policy police style Policy-Cla Police-simple
 Is CLI Mapping
 Show diffserv class summary Privileged Exec User
 Class-Ma Match not cos Config
 Class-Ma Match not ip precedence Config
 Routing Show arp switch Privileged
 Is CLI Mapping
 Is CLI Mapping
 Vlan
 Router No enable
 Is CLI Mapping
 Is CLI Mapping
 Config Router No auto-summary
 Router No split-horizon
 7300S Series L3 Switch CLI Command Mode Syntax
 Config snmptrap ipaddr Global
 Config telnet maxsessions Privileged Remotecon maxsessions
 Is CLI Mapping
 Global No spanning-tree configuration name Config
 Config spanningtree bridge priority Removed 61440
 Interface No spanning-tree mst mstid cost Config
 Config syslocation location Global Snmp-server location loc
 Transfer download path path
 Show loginsession Privileged
 Show vlan summary Privileged Show vlan brief Exec User
 Show mfdb gmrp Privileged Show mac-address-table gmrp
 Config lag create name Global Port-channel name
 Global Deleteport logical slot/port all Config
 Is CLI Mapping
 Config protocol vlan add groupid
 Privileged No set gvrp adminmode
 Is CLI Mapping
 Security Show users authentication Privileged
 Is CLI Mapping
 Security Show radius server summary Privileged
 Is CLI Mapping
 All detail slot/port statistics
 Is CLI Mapping
 Appendix B Cabling Guidelines
Fast Ethernet Cable Guidelines
 Category 5 Cable Specifications
Category 5 Cable
 Specifications Category 5 Cable Requirements
Twisted Pair Cables
 Patch Panels and Cables
4illustrates crossover twisted pair cable
 Using 1000BASE-T Gigabit Ethernet over Category 5 Cable
Cabling
Length
Return Loss
 Patch Cables
RJ-45 Plug and RJ-45 Connectors
Near End Cross Talk Next
 PIN Normal Assignment on Uplink Assignment on Ports 1 to
 Conclusion
 Appendix C Glossary
Numeric
 See Area Border Router on
 See Autonomous System Boundary Router on
 Packet sent to all devices on a network
 See Command Line Interface on
 See Differentiated Services on
 Computer, printer, or server that is connected to a network
 See Generic Attribute Registration Protocol on
 See Garp Multicast Registration Protocol on
 Internet Control Message Protocol
 See Local Area Network on
 Megabits per second
 See Multi-Protocol Label Switching on
 See Multiplexing on
 See Open Systems Interconnection on
 Set of rules for communication between devices on a network
 See Routing Information Protocol on
 See Resource Reservation Setup Protocol on
 See Simple Network Management Protocol on
 See TLS on
 See Virtual Local Area Network on
 Wins