TigerSwitch 10/100/1000
Page
TigerSwitch 10/100/1000 Management Guide
Trademarks
Limited Warranty
Limited Warranty
Contents
Viii
Contents
Contents
Contents
Xii
Command Line Interface
Using the Command Line Interface
Xiii
Xiv
Contents
Xvi
Xvii
Xviii
Xix
Contents
Xxi
Xxii
Xxiii
Xxiv
Index Appendix B Troubleshooting Inde-1 Glossary
Xxv
Xxvi
Key Features
Chapter Introduction
Lacp
Description of Software Features
Introduction
Description of Software Features
Introduction
Description of Software Features
Introduction
Description of Software Features
System Defaults
Function Parameter Default
Snmp
ARP
Hsrp
Introduction
Connecting to the Switch
Configuration Options
Initial Configuration
Required Connections
Initial Configuration
Console Connection
Basic Configuration
Remote Connections
Setting Passwords
Setting an IP Address
Manual Configuration
Dynamic Configuration
Basic Configuration
Enabling Snmp Management Access
Community Strings
Trap Receivers
Saving Configuration Settings
Managing System Files
Initial Configuration
Configuring the Switch
Using the Web Interface
Configuring the Switch
Navigating the Web Browser Interface
Home
Panel Display
Main Menu
Menu Description
Configures Secure Shell server settings
Mstp
Vlan
Configures Weighted Round Robin queueing 176
Igmp
Shows statistics for Icmp traffic, including 265
285
323
Displaying System Information
Basic Configuration
Main Board
Displaying Switch Hardware/Software Versions
CLI Specify the hostname, location and contact information
Management Software
Expansion Slots
CLI Use the following command to display version information
Displaying Bridge Extension Capabilities
Basic Configuration
Setting the Switch’s IP Address
Manual Configuration
Using DHCP/BOOTP
Basic Configuration
Managing Firmware
Downloading System Software from a Server
Basic Configuration
Saving or Restoring Configuration Settings
Downloading Configuration Settings from a Server
Basic Configuration
Configuring Event Logging
System Log Configuration
Flash. Range 0-7, Default
Level Argument Description
Remote Log Configuration
Basic Configuration
Displaying Log Messages
Set the logging trap
Error
Resetting the System
Setting the System Clock
Configuring Sntp
Setting the Time Zone
Simple Network Management Protocol
Setting Community Access Strings
Access Mode
Consoleconfig#snmp-server community spiderman rw3-147
Specifying Trap Managers and Trap Types
Configuring the Switch
Filtering Addresses for Snmp Client Access
User Authentication
Configuring the Logon Password
Access Level* Specifies the user level
Password Specifies the user password
User Name* The name of the user
Configuring Local/Remote Logon Authentication
Radius Settings
Tacacs Settings
User Authentication
Configuring Https
Https
Replacing the Default Secure-site Certificate
Secure-site Certificate on
Configuring the Secure Shell
Command Usage
Shown in the following example
Generating the Host Key Pair
Telnet sessions and SSH sessions
RSA
Configuring the SSH Server
SSH server includes basic settings for authentication
Configuring Port Security
Command Usage
Configuring the Switch
User Authentication
Configuring 802.1x Port Authentication
Displaying 802.1x Global Settings
Configuring the Switch
User Authentication
Configuring 802.1x Global Settings
Configuring Port Authorization Mode
Authorized
Displaying 802.1x Statistics
Parameter Description
Parameter Description
Filtering Management Access
Eapol EAP
Command Usage
User Authentication
Access Control Lists
Configuring Access Control Lists
Setting the ACL Name and Type
Configuring a Standard IP ACL
CLI This example creates a standard IP ACL named bill
Configuring an Extended IP ACL
Configuring the Switch
Access Control Lists
Configuring a MAC ACL
Command Usage
Configuring the Switch
Configuring ACL Masks
Specifying the Mask Type
Configuring an IP ACL Mask
This mask defines the fields to check in the IP header
Access Control Lists
Configuring the Switch
Configuring a MAC ACL Mask
This mask defines the fields to check in the packet header
Configuring the Switch
Binding a Port to an Access Control List
Command Attributes
Port Configuration
Displaying Connection Status
Web Click Port, Port Information or Trunk Information
Current status
CLI This example shows the connection status for Port
Configuring Interface Connections
Configuring the Switch
Port Configuration
Creating Trunk Groups
Statically Configuring a Trunk
Configuring the Switch
Enabling Lacp on Selected Ports
100
Configuring Lacp Parameters
101
102
103
104
You can display statistics for Lacp protocol messages
105
Displaying Lacp Settings and Status for the Local Side
106
107
Displaying Lacp Settings and Status for the Remote Side
108
109
110
Setting Broadcast Storm Thresholds
111
112
Configuring Port Mirroring
113
114
Configuring Rate Limits
115
Showing Port Statistics
116
117
Parameter Description
118
Etherlike Statistics
119
Rmon Statistics
120
121
Address Table Settings
Setting Static Addresses
122
CLI This example shows statistics for port
123
Displaying the Address Table
124
Changing the Aging Time
125
CLI This example sets the aging time to 400 seconds
Spanning Tree Algorithm Configuration
126
Displaying Global Settings
127
128
129
Instance
130
131
Configuring Global Settings
Global settings apply to the entire switch
Basic Configuration of Global Settings
132
133
Root Device Configuration
Configuration Settings for Rstp
Configuration Settings for Mstp
134
135
Displaying Interface Settings
136
137
138
STA Port Information only
139
Configuring Interface Settings
140
141
142
143
VLANs in MST Instance VLANs assigned this instance
MST ID
Vlan ID Vlan to assign to this selected MST instance. Range
144
145
Displaying Interface Settings for Mstp
146
147
Configuring Interface Settings for Mstp
148
149
150
Vlan Configuration
Overview
Priority tagging
151
Assigning Ports to VLANs
152
153
Forwarding Tagged/Untagged Frames
Enabling or Disabling Gvrp Global Setting
Displaying Basic Vlan Information
154
Maximum Number of Supported VLANs Maximum number
155
VLANs that can be configured on this switch
Displaying Current VLANs
156
157
Creating VLANs
158
Vlan ID of configured Vlan 1-4094, no leading zeroes
Adding Static Members to VLANs Vlan Index
159
CLI This example creates a new Vlan
160
Adding Static Members to VLANs Port Index
161
162
Configuring Vlan Behavior for Interfaces
163
164
165
166
Enabling Private VLANs
Configuring Private VLANs
167
168
Configuring Protocol-Based VLANs
Configuring Uplink and Downlink Ports
Create a protocol group for one or more protocols
Configuring Protocol Groups
169
170
Mapping Protocols to VLANs
171
172
Class of Service Configuration
Setting the Default Priority for Interfaces
173
Mapping CoS Values to Egress Queues
174
175
176
Selecting the Queue Mode
Setting the Service Weight for Traffic Classes
177
178
179
Mapping Layer 3/4 Priorities to CoS Values
Selecting IP Precedence/DSCP Priority
180
Mapping IP Precedence
181
182
Mapping Dscp Priority
183
184
185
Command Attributes
Mapping IP Port Priority
Mapping CoS Values to ACLs
186
187
Changing Priorities Based on ACL Rules
188
189
Multicast Filtering
190
Igmp Protocol
191
Layer 2 Igmp Snooping and Query
192
Configuring Igmp Snooping and Query Parameters
193
194
195
Displaying Interfaces Attached to a Multicast Router
196
Specifying Static Interfaces for a Multicast Router
197
Displaying Port Members of Multicast Services
198
Assigning Ports to Multicast Services
199
Layer 3 Igmp Query used with Multicast Routing
200
201
Vlan Interface Vlan interface bound to a primary IP address
202
203
204
205
Displaying Multicast Group Information
206
Configuring Domain Name Service
Configuring General DNS Server Parameters
207
208
Configuring Static DNS Host to Address Entries
209
210
211
Displaying the DNS Cache
212
Dynamic Host Configuration Protocol
213
Configuring Dhcp Relay Service
214
Configuring the Dhcp Server
215
Enabling the Server, Setting Excluded Addresses
216
Configuring Address Pools
217
Setting the Network Parameters
Setting the Host Parameters
218
Creating a New Address Pool
Setting the Optional Parameters
219
220
Configuring a Network Address Pool
221
Configuring a Host Address Pool
222
Displaying Address Bindings
CLI This example configures a host address pool
223
224
MAC
Configuring Router Redundancy
225
Virtual Router Redundancy Protocol
226
Configuring Vrrp Groups
227
Address Assignment
Virtual Router Priority
228
Preempting the Acting Master
229
230
231
232
233
234
Displaying Vrrp Global Statistics
235
Displaying Vrrp Group Statistics
236
Hot Standby Router Protocol
237
Configuring Hsrp Groups
238
239
Preempting the Master
240
241
242
243
244
245
246
Initial Configuration
IP Routing
IP Switching
247
248
Routing Protocols
249
Routing Path Management
OSPFv2 Dynamic Routing Protocol
Basic IP Interface Configuration
250
251
Configuring IP Routing Interfaces
252
253
254
Address Resolution Protocol
255
Proxy ARP
Basic ARP Configuration
256
Configuring Static ARP Addresses
257
258
Displaying Dynamically Learned ARP Entries
259
CLI This example shows all entries in the ARP cache
260
Displaying Local ARP Entries
261
Displaying ARP Statistics
262
IP Statistics
Displaying Statistics for IP Protocols
263
264
Web Click IP, Statistics, IP CLI See the example on
265
Icmp Statistics
266
Web Click IP, Statistics, Icmp CLI See the example on
267
UDP Statistics
Web Click IP, Statistics, UDP CLI See the example on
268
TCP Statistics
Web Click IP, Statistics, TCP CLI See the example on
Configuring Static Routes
269
270
Displaying the Routing Table
271
272
Configuring the Routing Information Protocol
273
Configuring General Protocol Settings
274
275
Global Settings
Timer Settings
276
Specifying Network Interfaces for RIP
Configuring Network Interfaces for RIP
277
Loopback Prevention
278
Specifying Receive and Send Protocol Types
Protocol Message Authentication
279
280
281
Displaying RIP Information and Statistics
282
283
Web Click Routing Protocol, RIP, Statistics
284
Configuring the Open Shortest Path First Protocol
285
286
287
Area Border Router 1 Indicates if this router connect
Directly to networks in two or
More areas. An area border
288
289
290
Configuring Ospf Areas
291
Aggregate a range of addresses into a
Single route. The backbone or any
292
Command Usage
293
294
Processor time. Instead, you can
295
These nodes, this wastes a lot of bandwidth
296
Ospf Interface List
Configuring Ospf Interfaces
297
Detail Interface Configuration
298
299
300
301
302
Configuring Virtual Links
303
304
Configuring Network Area Addresses
305
306
307
IP Address Summary address covering a range of addresses
Configuring Summary Addresses for External AS Routes
308
309
310
Redistributing External Routes
Configuring Nssa Settings
311
312
Area ID Identifier for an not-so-stubby area Nssa
313
Displaying Link State Database Information
314
315
316
Displaying Information on Border Routers
ID Neighbor’s router ID
317
Displaying Information on Neighbor Routers
318
Configuring Global Settings for Multicast Routing
Multicast Routing
319
Neighbors
320
Displaying the Multicast Routing Table
321
322
Configuring Dvmrp
323
Configuring Global Dvmrp Settings
324
325
326
Broadcasting periodically floods
327
328
Configuring Dvmrp Interface Settings
329
Dvmrp Interface Information
Dvmrp Interface Settings
330
You can display all the neighboring Dvmrp routers
331
Displaying Neighbor Information
332
CLI This example displays the only neighboring Dvmrp router
333
Displaying the Routing Table
Configuring PIM-DM
334
Configuring Global PIM-DM Settings
335
Configuring PIM-DM Interface Settings
336
337
338
339
Displaying Interface Information
340
You can display all the neighboring PIM-DM routers
341
342
Using the Command Line Interface
Accessing the CLI
Telnet Connection
Using the Command Line Interface
Entering Commands
This section describes how to enter CLI commands
Keywords and Arguments
Minimum Abbreviation
Command Completion
Getting Help on Commands
Showing Commands
Partial Keyword Lookup
Negating the Effect of Commands
Using Command History
Understanding Command Modes
Exec Commands
Configuration Commands
Console#configure Consoleconfig#
Mode Command Prompt
Command Line Processing
Keystroke Function
Command Groups
Command Group Description
MIB
Line Commands
Command Function Mode
Default Setting
Command Mode
Syntax Line console vty
Example
Related Commands
Syntax Login local no login
Login local
Line Configuration
No password is specified
Username 3-35 password
Syntax Password 0 7 password no password
CLI No timeout Telnet 10 minutes
Login 3-17password-thresh3-20
Syntax Exec-timeout seconds no exec-timeout
Default value is three attempts
To set the timeout to two minutes, enter this command
Syntax Password-thresh threshold no password-thresh
Default value is no silent-time
To set the silent time to 60 seconds, enter this command
Password-thresh3-20
Silent-time3-21
To specify 7 data bits, enter this command
Syntax Databits 7 8 no databits
Seven data bits per character Eight data bits per character
Data bits per character
To specify no parity, enter this command
Syntax Parity none even odd no parity
None No parity Even Even parity Odd Odd parity
No parity
Auto
To specify 57600 bps, enter this command
Syntax Speed bps no speed
Syntax Stopbits 1
Syntax Disconnect session-id
Syntax Show line console vty
Level
General Commands
Syntax Enable level
None
Disable Enable password
Normal Exec
Configure
This command restarts the system
Command
This command resets the entire system
This example shows how to reset the switch
This command returns to Privileged Exec mode
This command exits the configuration program
Any
System Management Commands
This example shows how to quit a CLI session
Device Designation Commands
Prompt
Hostname
Syntax Prompt string no prompt
User Access Commands
Username
Syntax Hostname name no hostname
Name The name of this host. Maximum length 255 characters
Username Access-level Password
Enable password
Default is level Default password is super
IP Filter Commands
Management
Show management
All addresses
Command Mode
Web Server Commands
Default Setting Command Mode
Ip http port
Syntax Ip http port port-numberno ip http port
Syntax No ip http server Default Setting
Syntax No ip http secure-server Default Setting
Ip http server
Ip http secure-server
Ip http secure-port3-44
Ip http secure-port
Https//deviceportnumber
Secure Shell Commands
Host Show users
System Management Commands
Ip ssh server
Syntax Ip ssh server no ip ssh server Default Setting
Disabled
Ip ssh timeout
Syntax Ip ssh timeout seconds no ip ssh timeout
Ip ssh crypto host-key generate 3-52 show ssh
Seconds
Show ip ssh
Ip ssh authentication-retries
Exec-timeout3-19 show ip ssh
Syntax Delete public-key username dsa rsa
Ip ssh server-key size
Delete public-key
Ip ssh crypto host-key generate
Syntax Ip ssh crypto host-key generate dsa rsa
Dsa DSA key type Rsa RSA key type
Generates both the DSA and RSA key pairs
Use this command to clear the host key from memory i.e. RAM
Ip ssh crypto zeroize
Ip ssh crypto zeroize 3-53 ip ssh save host-key3-54
Syntax Ip ssh crypto zeroize dsa rsa
Syntax Ip ssh save host-key dsa rsa
Ip ssh save host-key
Show ip ssh
Show ssh
Show public-key
Syntax Show public-key user username host
Username Name of an SSH user. Range 1-8 characters
Shows all public keys
Console#show public-key host Host
Logging on
Event Logging Commands
Syntax No logging on Default Setting
Logging history
Logging history 3-59 clear logging
Flash errors level 3 RAM warnings level 7
Logging host
Logging facility
Syntax No logging host hostipaddress
Hostipaddress The IP address of a syslog server
Syntax No logging facility type
This command clears messages from the log buffer
Logging trap
Clear logging
Syntax No logging trap level
Show logging
Syntax Clear logging flash ram
Flash and RAM
Show logging
Messages
Show logging sendmail
Smtp Alert Commands
Following example displays settings for the trap function
Logging sendmail host
Syntax No logging sendmail host ipaddress
Logging sendmail level
Syntax Logging sendmail level level
Logging sendmail source-email
Logging sendmail destination-email
Syntax Logging sendmail source-email email-address
Syntax No logging sendmail destination-email email-address
Syntax No logging sendmail Default Setting
Logging sendmail
Time Commands
Show logging sendmail
Syntax No sntp client Default Setting
Sntp client
Sntp server
Syntax
Sntp poll
Sntp client 3-71 sntp poll 3-73 show sntp
Sntp broadcast client
Sntp client
Show sntp
Clock timezone
This command sets the system clock
Calendar set
Show sntp
Calendar set hour min sec day month year month day year
This command displays the system clock
Show calendar
System Status Commands
Show startup-config
Show running-config
Show running-config3-79
Default Setting
Show startup-config3-78
This command displays system information
Show system
Show users
Show version
Jumbo frame
Frame Size Commands
Syntax No jumbo frame Default Setting
Flash/File Commands
None
Example
Delete filename
This command deletes a file or image
Filename Name of the configuration file or image name
FactoryDefaultConfig.cfg cannot be deleted
This command displays a list of files in flash memory
Syntax Dir boot-rom config opcode filename
Dir
Following example shows how to display all file information
File information is shown below
Syntax Boot system boot-romconfig opcode filename
Authentication Commands
Dir 3-89 whichboot
Local
Authentication Sequence
Authentication login
Username for setting the local user names and passwords
Radius Client
Syntax Radius-server port portnumber no radius-server port
Radius-server host
Radius-server port
Syntax Radius-server key keystring no radius-server key
Radius-server key
Radius-server retransmit
Radius-server timeout
Show radius-server
Hostipaddress IP address of a TACACS+ server
TACACS+ Client
Tacacs-server host
Tacacs-server port
Tacacs-server key
10.11.12.13
Syntax Tacacs-server port portnumber no tacacs-server port
Show tacacs-server
Syntax Tacacs-server key keystring no tacacs-server key
Max-mac-count
Port Security Commands
Port security
Status Disabled Action None Maximum Addresses
Interface Configuration Ethernet
103
802.1x Port Authentication
Authentication dot1x default
Dot1x default
Syntax Dot1x default Command Mode
Dot1x max-req
Syntax Dot1x max-req count no dot1x max-req
Dot1x port-control
Default Command Mode
Default
Dot1x re-authenticate
Syntax Dot1x re-authenticate interface
Dot1x operation-mode
Interface
Dot1x re-authentication
Dot1x timeout quiet-period
Syntax No dot1x re-authentication Command Mode
Unit This is device Port Port number
Dot1x timeout re-authperiod
Dot1x timeout tx-period
Interface
Show dot1x
Syntax Show dot1x statistics interface interface
Authenticator State Machine
Reauthentication State Machine
Unauthorized
Supplicant MAC address of authorized client
State Current state including initialize, reauthenticate
Access Control List Commands
Access Control Lists
Masks for Access Control Lists
IP ACLs
EXT-A
Access-list ip
Syntax No access-list ip standard extended aclname
Standard ACL
Permit, deny Ip access-group3-127 show ip access-list3-121
Syntax No permit deny any source bitmask host source
Access-list ip
No permit deny tcp
Extended ACL
120
Show ip access-list
Access-list ip mask-precedence
This command displays the rules for configured IP ACLs
Syntax Show ip access-list standard extended aclname
Syntax No access-list ip mask-precedence in out
Mask IP ACL 3-122 ip access-group3-127
Syntax No mask protocol
IP Mask
124
125
Show access-list ip mask-precedence
Syntax Show access-list ip mask-precedence in out
Mask IP ACL
Ip access-group
Syntax No ip access-group aclname in out
Show ip access-group
Map access-list ip
Show ip access-list3-121
This command shows the ports assigned to IP ACLs
Syntax Show map access-list ip interface
Show map access-list ip
Queue cos-map3-81 Show map access-list ip
Match access-list ip
Map access-list ip
Show marking
Show marking
Match access-list ip
MAC ACLs
Access-list mac
Syntax No access-list mac aclname
Permit, deny MAC ACL
Syntax No permit deny
No permit deny tagged-802.3
Vid vid vid-bitmask ethertype protocol protocol-bitmask
No permit deny tagged-eth2
Syntax Show mac access-list aclname
Show mac access-list
This command displays the rules for configured MAC ACLs
Access-list mac mask-precedence
Permit, deny Mac access-group3-142
MAC Mask
Mask MAC ACL 3-138 mac access-group3-142
Syntax No mask pktformat
139
140
This example creates an Egress MAC ACL
Show access-list mac mask-precedence
Syntax Show access-list mac mask-precedence in out
Show mac access-list3-136
Mac access-group
Syntax Mac access-group aclname in out
Show mac access-group
Map access-list mac
This command shows the ports assigned to MAC ACLs
Syntax No map access-list mac aclname cos cos-value
Show map access-list mac
Queue cos-map3-81 Show map access-list mac
Syntax Show map access-list mac interface
Output queues as shown below
Match access-list mac
Show access-list
Show access-group
This command shows the port assignments of ACLs
ACL Information
Snmp Commands
Privileged Executive
Snmp-server contact
Syntax Snmp-server contact string no snmp-server contact
Syntax Snmp-server location text no snmp-server location
Host Address None Snmp Version
Snmp-server enable traps
Issue authentication and link-up-down traps
No snmp ip filter ipaddress subnetmask
153
This command checks the status of Snmp communications
Dhcp Commands
Dhcp Client
Ip dhcp client-identifier
Text a text string. Range 1-15 characters
Interface Configuration Vlan
This command submits a Bootp or Dhcp client request
Ip dhcp restart client
Hex The hexadecimal value
Ip dhcp restart relay
Syntax Ip dhcp relay no ip dhcp relay Default Setting
Dhcp Relay
Ip dhcp relay server
Usage Guidelines
Dhcp Server
Ip dhcp excluded-address
Service dhcp
Syntax Service dhcp no service dhcp Default Setting
Dhcp address pools are not configured
Ip dhcp pool
All IP pool addresses may be assigned
Syntax Ip dhcp pool name no ip dhcp pool name
Within the range of a configured network address pool
Dhcp Pool Configuration
Network
Network 3-163 host
Default-router
Default-routeraddress1 address2 no default-router
Domain-name
Dns-server
Syntax Domain-name domain no domain-name
Dns-serveraddress1 address2 no dns-server
Syntax Next-server address no next-server address
Bootfile
Next-server
Bootfile
Netbios-name-server
Syntax Bootfile filename no bootfile
Next-server3-166
Netbios-node-type
Syntax Netbios-node-type type no netbios-node-type
Mixed Peer-to-peer Default Setting
Broadcast
Netbios-name-server3-167
Command Modes
Lease
Host
Lease days hoursminutes infinite no lease
Host address mask no host
Client-identifier
Client-identifier3-172hardware-address3-173
Hardware-address
Host
If no type is specified, the default protocol is Ethernet
Clear ip dhcp binding
Hardware-addresshardware-address type no hardware-address
Syntax Clear ip dhcp binding address
Syntax Show ip dhcp binding address
Show ip dhcp binding
Show ip dhcp binding
DNS Commands
No static entries
Ip host
No ip host name address1 address2 … address8
Syntax Clear host name
Clear host
Ip domain-name
Ip domain-list
Syntax Ip domain-name name no ip domain-name
Syntax No ip domain-list name
Server-address1- IP address of domain-name server
Ip name-server
Ip domain-name3-178
Ip domain-name3-178 ip domain-lookup3-182
Syntax No ip domain-lookup Default Setting
Ip domain-lookup
Show hosts
Ip domain-name3-178 ip name-server3-181
This command displays the configuration of the DNS server
This command displays entries in the DNS cache
Show dns
Show dns cache
This command clears all entries in the DNS cache
Clear dns cache
186
Interface Commands
To specify port 4, enter the following command
Port-channel channel-idRange
Vlan vlan-idRange
Syntax Description string no description
Interface Configuration Ethernet, Port Channel
Following example adds a description to port
Negotiation 3-4 capabilities
Syntax No negotiation
Following example configures port 11 to use autonegotiation
Capabilities 3-5speed-duplex3-3
Negotiation 3-4speed-duplex3-3
Flowcontrol
Syntax No flowcontrol Default Setting
Flow control enabled
Following example enables flow control on port
Syntax Combo-forced-mode mode no combo-forced-mode
Negotiation Capabilities flowcontrol, symmetric
Mode
Following example disables port
Syntax No shutdown Default Setting
All interfaces are enabled
This command clears statistics on an interface
Syntax Clear counters interface
Syntax Show interfaces status interface
This command displays the status for an interface
Following example clears statistics on port
Shows the status for all interfaces
This command displays interface statistics
Port-channel channel-idRange Default Setting
Syntax Show interfaces counters interface
Shows the counters for all interfaces
Syntax Show interfaces switchport interface
This example shows the configuration setting for port
Shows all interfaces
Mirror Port Commands
Interface ethernet unit/port source port
Interface Configuration Ethernet, destination port
This command displays mirror information
Unit Switch unit Port Port number
Syntax Show port monitor interface
Shows all sessions
Rate Limit Commands
Following shows mirroring configured from port 6 to port
Rate-limit
General Guidelines
Link Aggregation Commands
Guidelines for Creating Trunks
Syntax Channel-group channel-idno channel-group
Channel-id- Trunk index Range
Following example creates trunk 1 and then adds port
Syntax No lacp Default Setting
Current port will be added to this trunk
Command Usage
32768
Lacp admin-keyEthernet Interface
Syntax Lacp admin-key key no lacp admin-key
Interface Configuration Port Channel
Lacp port-priority
This command displays Lacp information
Port Channel all
Number of frames that carry the Slow Protocols Ethernet Type
Field Description
Lacp Port
Field Description
Address Table Commands
Address Table Commands
Action
Mac-address- MAC address
Vlan-id- Vlan ID Range
Mac-address- MAC address Mask Bits to match in the address
Unit This is device
Mac-address-table aging-time
Show mac-address-table aging-time
Spanning Tree Commands
Syntax Spanning-tree mode stp rstp no spanning-tree mode
Syntax No spanning-tree Default Setting
Spanning tree is enabled
Rstp
Spanning Tree Protocol
Spanning-tree forward-time
Spanning-tree hello-time
Spanning-tree priority
Long method
This command limits the maximum transmission rate for BPDUs
This example disables the spanning tree algorithm for port
Syntax Spanning-tree cost cost no spanning-tree cost
Maximum value for path cost is 65,535
Spanning-tree cost
Syntax No spanning-tree edge-port Default Setting
Spanning-tree portfast
Syntax No spanning-tree portfast Default Setting
Spanning-treeedge-port3-48
Spanning-tree link-type
Syntax Show spanning-tree interface mst instanceid
Port-channel channel-idRange Command Mode
Syntax Spanning-tree protocol-migration interface
Port-channel channel-idRange Default Setting
Mstp
Vlan database
Vlan Commands
Editing Vlan Groups
Vlan
By default only Vlan 1 exists and is active
Vlan Database Configuration
Syntax Interface vlan vlan-id
Configuring Vlan Interfaces
Interface vlan
Switchport mode
Syntax Switchport mode trunk hybrid no switchport mode
All ports are in hybrid mode with the Pvid set to Vlan
Shutdown
All frame types
Switchport acceptable-frame-types
Switchport acceptable-frame-types3-59
Switchport ingress-filtering
Syntax No switchport ingress-filtering Default Setting
Switchport native vlan
Switchport allowed vlan
Switchport forbidden vlan
No VLANs are included in the forbidden list
This command shows Vlan information
Displaying Vlan Information
Show vlan
Syntax Show vlan id vlan-idname vlan-name
Following example shows how to display information for Vlan
Shows all VLANs
Protocol-vlan protocol-group Configuring Groups
Protocol-vlan protocol-group Configuring Interfaces
No protocol groups are configured
Rarp
No protocol groups are mapped for any interface
Show protocol-vlan protocol-group
Syntax Show protocol-vlan protocol-group group-id
Group-id- Group identifier for a protocol group. Range
All protocol groups are displayed
Mapping for all interfaces is displayed
This shows protocol group 1 configured for IP over Ethernet
Show interfaces protocol-vlan protocol-group
Pvlan
Pvlan up-linkinterface-list down-linkinterface-listno pvlan
Show pvlan
Gvrp and Bridge Extension Commands
This command displays the configured private Vlan
Syntax No bridge-ext gvrp Default Setting
Bridge-ext gvrp
Show bridge-ext
Switchport gvrp
Syntax No switchport gvrp
Show gvrp configuration
This command shows if Gvrp is enabled
Syntax Show gvrp configuration interface
Shows both global and interface-specific configuration
Garp timer
Show garp timer
Syntax Show garp timer interface
Shows all Garp timers
Successfully
Priority Commands
Priority Commands Layer
Switchport priority default
Default Setting
Weighted Round Robin
Queue mode
Syntax Queue mode strict wrr no queue mode
Queue cos-map
Queue bandwidth weight1...weight4 no queue bandwidth
Queue bandwidth
Queue cos-mapqueueid cos1 ... cosn no queue cos-map
Show queue cos-map3-84
Show queue mode
This command shows the current queue mode
This command shows the class of service priority map
Show queue bandwidth
Show queue cos-map
Syntax Show queue cos-map interface
Priority Commands Layer 3
Syntax No map ip port
Consoleconfig#map ip port
Map ip port Interface Configuration
Map ip precedence Global Configuration
Syntax No map ip precedence Default Setting
List below shows the default priority mapping
Syntax No map ip dscp Default Setting
Map ip dscp Interface Configuration
Map ip dscp dscp-value cos cos-value no map ip dscp
Syntax Show map ip port interface
Use this command to show the IP port priority map
Show map ip port
Syntax Show map ip precedence interface
This command shows the IP precedence priority map
Show map ip precedence
Syntax Show map ip dscp interface
This command shows the IP Dscp priority map
Show map ip dscp
Command Mode
Multicast Filtering Commands
Igmp Snooping Commands
Syntax No ip igmp snooping Default Setting
Following example enables Igmp snooping
Ip igmp snooping
Ip igmp snooping version
Igmp Version
Show ip igmp snooping
Following configures the switch to use Igmp Version
This command shows the Igmp snooping configuration
Show mac-address-table multicast
Following shows the current Igmp snooping configuration
This command shows known multicast addresses
Ip igmp snooping querier
Igmp Query Commands Layer
Syntax No ip igmp snooping querier Default Setting
Ip igmp snooping query-count
Times
Following shows how to configure the query count to
Ip igmp snooping query-interval
Ip igmp snooping query-max-response-time
Ip igmp snooping query-max-response-time3-102
Seconds The report delay advertised in Igmp queries. Range
Switch must use IGMPv2 for this command to take effect
Ip igmp snooping router-port-expire-time
Static Multicast Routing Commands
No static multicast router ports are configured
Ip igmp snooping vlan mrouter
Syntax No ip igmp snooping vlan vlan-idmrouter interface
Syntax Show ip igmp snooping mrouter vlan vlan-id
Displays multicast router ports for all configured VLANs
Show ip igmp snooping mrouter
Ip igmp
Igmp Commands Layer
Syntax Ip igmp no ip igmp Default Setting
Ip igmp robustval
Ip igmp snooping 3-96 show ip igmp snooping
Syntax Ip igmp robustval robust-valueno ip igmp robustval
Robust-value- The robustness of this interface. Range
Ip igmp query-interval
Ip igmp max-resp-interval
Seconds The report delay for the last member query. Range
Ip igmp last-memb-query-interval
Ip igmp version Ip igmp query-interval3-109
Second
Ip igmp version
Syntax Ip igmp version 1 2 no ip igmp version
Use this command to delete entries from the Igmp cache
Show ip igmp interface
Clear ip igmp group
Syntax Show ip igmp interface vlan vlan-id
Displays information for all known groups
Show ip igmp groups
Deletes all entries in the cache if no options are selected
Following shows the Igmp groups currently active on Vlan
Ip address
IP Interface Commands
Basic IP Configuration
IP address Netmask
Ip default-gateway
Following example, the device is assigned an address in Vlan
Syntax Ip default-gateway gateway no ip default-gateway
Show ip interface
Ip default-gateway3-118
Show ip redirects
Ping
Syntax Ping host count countsize size
This command has no default for the host
Address Resolution Protocol ARP
No default entries
Arp
Arp ip-address hardware-address no arp ip-address
Arp-timeout
Syntax Arp-timeout seconds no arp-timeout
Clear arp-cache show arp
Seconds 20 minutes
This example clears all dynamic entries in the ARP cache
Clear arp-cache
Show arp
This example displays all entries in the ARP cache
Syntax Ip proxy-arp no ip proxy-arp Default Setting
Ip proxy-arp
IP Routing Commands
Ip routing
Global Routing Configuration
Syntax Ip routing no ip routing Default Setting
No static routes are configured
Ip route
Syntax Show ip route config address netmask
Clear ip route
Show ip route
Syntax Clear ip route network netmask
Show ip traffic
RIP, Ospf
Routing Information Protocol RIP
Syntax Router rip no router rip Command Mode
Router rip
Router Configuration
Timers basic
Timers basic update-seconds no timers basic
Network subnet-address no network subnet-address
No networks are specified
Neighbor
Version
Syntax Neighbor ip-addressno neighbor ip-address
No neighbors are defined
Syntax Version 1 2 no version
RIP Version
Ip rip receive version
Ip rip send version
Split-horizon
Ip split-horizon
Syntax Ip split-horizon poison-reverseno ip split-horizon
Ip rip authentication key
No authentication
Ip rip authentication mode
Text Indicates that a simple password will be used
This example sets the authentication mode to plain text
Show rip globals
Syntax Show ip rip configuration status peer
Show ip rip
Open Shortest Path First Ospf
Show ip rip status
Area nssa
Syntax Router ospf no router ospf Command Mode
Router ospf
Lowest interface address
Router-id
Router-idip-address no router-id
Compatible rfc1583
RFC 1583 compatible
Default-information originate
Timers spf
Timers spf spf-holdtime no timers spf
Area range
Area area-idrange ip-address netmask advertise not-advertise
Area default-cost
Default Setting Command Usage
Summary-address
Redistribute
Type-value
Network area
No area area-idstub summary
Area stub
Area area-idstub summary
No stub is configured
No Nssa is configured
Area nssa
159
Area virtual-link
161
This example creates a virtual link using MD5 authentication
Area-id None Router-id None
Ip ospf authentication
This example sets a password for the specified interface
Ip ospf authentication-key
No password
MD5 authentication is disabled
Ip ospf message-digest-key
Syntax Ip ospf cost cost no ip ospf cost
Ip ospf cost
Ip ospf dead-interval
Ip ospf hello-interval
Ip ospf priority
Syntax Ip ospf priority priority no ip ospf priority
Ip ospf transmit-delay
Ip ospf retransmit-interval
Show ip ospf
Show ip ospf border-routers
It is an router type
Show ip ospf database
Database database-summary Database external link-state-id
Following shows output for the show ip ospf database command
Examples
Following shows output when using the asbr-summarykeyword
175
Following shows output when using the external keyword
Following shows output when using the network keyword
Following shows output when using the router keyword
Link
Following shows output when using the summary keyword
Show ip ospf interface
Syntax Show ip ospf interface vlan vlan-id
Syntax Show ip ospf neighbor Command Mode
Show ip ospf neighbor
Show ip ospf summary-address
Use this command to display all summary address information
Syntax Show ip ospf summary-address Command Mode
Show ip ospf virtual-links
Multicast Routing Commands
Syntax Show ip ospf virtual-links Command Mode
187
186
General Multicast Routing Commands
Ip multicast-routing
Syntax Show ip mroute group-address source summary
Use this command to display the IP multicast routing table
Show ip mroute
Interfaces on which multicast subscribers have been
Dvmrp
Dvmrp Multicast Routing Commands
Router dvmrp
Syntax Router dvmrp no router dvmrp Command Mode
Probe-interval
Ip dvmrp Show router dvmrp
Syntax Probe-interval seconds
Seconds Interval before declaring a neighbor dead. Range
Nbr-timeout
Syntax Nbr-timeout seconds
Flash-update-interval
Syntax Flash-update-interval seconds
Report-interval
Syntax Report-interval seconds
Seconds Prune state lifetime. Range
Prune-lifetime
Syntax Prune-lifetime seconds
Ip-address- IP address of the default Dvmrp gateway
Default-gateway
Syntax Default-gateway ip-addressno default-gateway
Syntax Ip dvmrp no ip dvmrp Default Setting
Ip dvmrp
Ip dvmrp metric interface-metric no ip dvmrp metric
Ip dvmrp metric
Clear ip dvmrp route
Show router dvmrp
Dmvrp routes are shown in the following example
Default settings are shown in the following example
Show ip dvmrp route
Show ip dvmrp neighbor
PIM-DM Multicast Routing Commands
Show ip dvmrp interface
Syntax Router pim no router pim Default Setting
Router pim
Syntax Ip pim dense-mode no pim dense-mode Default Setting
Ip pim dense-mode
Seconds Interval between sending PIM hello messages. Range
Ip pim hello-interval
Syntax Ip pim hello-interval seconds no pim hello-interval
Seconds The hold time for PIM hello messages. Range
Ip pim hello-holdtime
Ip pim trigger-hello-interval
Ip pim join-prune-holdtime
Seconds The hold time for the prune state. Range
Ip pim graft-retry-interval
Seconds The time before resending a Graft. Range
Ip pim max-graft-retries
Show router pim
Use this command to display information about PIM neighbors
Show ip pim interface
Show ip pim neighbor
Syntax Show ip pim interface vlan-id
Router Redundancy Commands
Virtual Router Redundancy Protocol Commands
Vrrp ip
No virtual router groups are configured
Vrrp authentication
No key is defined
Vrrp priority
Syntax Vrrp group priority level no vrrp group priority
Vrrp timers advertise
Preempt Enabled Delay 0 seconds
Vrrp preempt
Use this command to display status information for Vrrp
Defaults
Show vrrp
Syntax Show vrrp brief group
Master
Show vrrp interface
Syntax Show vrrp interface vlan vlan-idbrief
221
Show vrrp group interface vlan interface counters
Show vrrp router counters
Show vrrp interface counters
Use this command to clear Vrrp system statistics
Clear vrrp router counters
Clear vrrp interface counters
Clear vrrp group interface interface counters
Console#clear vrrp 1 interface 1 counters Console#
Hot Standby Router Protocol Commands
Standby ip
Group number Virtual router groups none configured
Standby priority
Group number Priority
Standby authentication 3-230 standby track
Standby preempt
Group number Preempt Disabled Delay 0 seconds
Standby priority
Standby authentication
Group number String not defined
Standby timers
Group number Hellotime 3 seconds Holdtime 10 seconds
Standby track
Group number Interface priority
Use this command to display status information for Hsrp
Show standby
Syntax Show standby active init listen standby brief
Displays detailed information for each group
Priority Priority of this router May preempt
236
Show standby interface
238
Appendix a Software Specifications
Software Features
Management Features
DVMRP, PIM-DM
Groups 1, 2, 3, 9 Statistics, History, Alarm, Event
Standards
Bridge MIB RFC
Sntp RFC SSH Version Vrrp RFC
Management Information Bases
TCP MIB RFC Trap RFC UDP MIB RFC
Page
Appendix B Troubleshooting
Troubleshooting
Glossary-1
Glossary-2
Glossary-3
Glossary-4
Glossary-5
Glossary-6
Glossary-7
Glossary-8
Glossary-9
XModem
Glossary-10
Symbols Numerics
Index-1
Index-2
Index-3
Index-4
Index-5
STP 3-92,4-164STP Also see STA
Index-6
Page
For Technical SUPPORT, Call