Dell CLI Ref Guide

538
www.dell.com | support.dell.com Dell™ PowerConnect™ 3500 Series CLI Reference Guide

Transcript of Dell CLI Ref Guide

Dell PowerConnect 3500 Series

CLI Reference Guide

w w w. d e l l . c o m | s u p p o r t . d e l l . c o m

Notes and CautionsNOTE: A NOTE indicates important information that helps you make better use of your computer. CAUTION: A CAUTION indicates either potential damage to hardware or loss of data and tells you how to avoid theproblem.

____________________Information in this document is subject to change without notice. 2008 Dell Inc. All rights reserved. Reproduction of these materials in any manner whatsoever without the written permission of Dell Inc. is strictly forbidden. Trademarks used in this text: Dell, the DELL logo, and PowerConnect are trademarks of Dell Inc. Microsoft, Windows, and Windows Server are either trademarks or registered trademarks of Microsoft Corporation in the United States and/or other countries. Other trademarks and trade names may be used in this document to refer to either the entities claiming the marks and names or their products. Dell Inc. disclaims any proprietary interest in trademarks and trade names other than its own. December 2008 Rev. A01

ContentsNotes and Cautions. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

2

1

Using the CLI .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

2525 25 26 27 27 28 29 30 31 31 31 32 32 32

CLI Command Modes .

Introduction . . . . . . . . . . . . . . . . . . . . . . . . . . . . . User EXEC Mode . . . . . . . . . . . . . . . . . . . . . . . . . . Privileged EXEC Mode . . . . . . . . . . . . . . . . . . . . . . . Global Configuration Mode . . . . . . . . . . . . . . . . . . . . . Interface Configuration Mode and Specific Configuration Modes Starting the CLI . Editing Features Setup Wizard .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Terminal Command Buffer . . . . Negating the Effect of Commands Command Completion . . . . . . . Keyboard Shortcuts . . . . . . . . CLI Command Conventions . . . .

2

Command GroupsIntroduction Command Groups AAA Commands ACL Commands .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

3333 33 35 35 36 37 38 39 40 Contents

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Address Table Commands

Clock Commands Commands

Configuration and Image Files Commands DHCP Snooping Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Ethernet Configuration Commands

3

GVRP Commands .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

41 41 42 43 44 44 45 45 46 46 47 47 48 48 48 49 50 50 51 53 53 54 55 55 56 57 57 59

IGMP Snooping Commands IP Addressing Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

IPv6 Addressing Commands . LACP Commands . Line Commands Line Commands LLDP Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Login Banner Commands

Management ACL Commands PHY Diagnostics Commands .

Power-over-Ethernet Commands Port Channel Commands . Port Monitor Commands . QoS Commands.

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

RADIUS Commands RMON Commands SNMP Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Spanning Tree Commands . SSH Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Syslog Commands

System Management Commands TACACS Commands TIC Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Tunnel Commands

User Interface Commands VLAN Commands .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Voice VLAN Commands

4

Contents

Web Server Commands 802.1x Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

59 60

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

3

Command Modes

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

6363 68 72 72 72 73 73 76 76 78 79 79

GC (Global Configuration) Mode .

IC (Interface Configuration) Mode . LC (Line Configuration) Mode

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

MA (Management Access-level) Mode . MC (MST Configuration) Mode ML (MAC Access-List) Mode PE (Privileged EXEC) Mode SP (SSH Public Key) Mode. UE (User EXEC) Mode

. . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

VC (VLAN Configuration) Mode

IPAL (IP-Access List Configuration) Mode

MAL (MAC-Access List Configuration) Mode .

4

AAA Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

8181 82 83 84 85 86 87 88 89

aaa authentication login .

aaa authentication enable . login authentication

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

enable authentication ip http authentication

ip https authentication .

show authentication methods . password .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

enable password .

Contents

5

username .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

89

5

ACL Commands .ip access-list . permit (IP) deny (IP)

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

9191 91 93 95 96 97 98 99 99

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

mac access-list permit (MAC) . deny (MAC) . service-acl .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show access-lists

show interfaces access-lists

6

Address Table Commandsbridge address . bridge multicast filtering bridge multicast address

. . . . . . . . . . . . . . . . . . . . . .

101101 102 102 104 105 105 106 107 108 109 110 110 111

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

bridge multicast forbidden address . bridge multicast unregistered . bridge multicast forward-all .

. . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

bridge multicast forbidden forward-all bridge aging-time clear bridge port security

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

port security mode . port security max.

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

port security routed secure-address

6

Contents

show bridge address-table

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

112 113 114 115 117 118 119 120 122

show bridge address-table static show bridge address-table count

show bridge multicast address-table . show bridge multicast filtering

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show bridge multicast address-table static show bridge multicast filtering show ports security

. . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show ports security addresses

7

Clock

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

125125 126 126 127 128 129 130 131 131 132 132 133 134 135 135 137

clock set

clock source

clock timezone .

clock summer-time.

sntp authentication-key sntp authenticate. sntp trusted-key

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

sntp client poll timer .

sntp broadcast client enable sntp anycast client enable . sntp client enable

. . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

sntp client enable (Interface) sntp unicast client enable . sntp unicast client poll. sntp server

. . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show clock .

Contents

7

show sntp configuration . show sntp status .

. . . . . . . . . . . . . . . . . . . . . . . . . . .

138 139

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

8

Configuration and Image Files.copy delete .

. . . . . . . . . . . . . . . . . . .

141141 144 144 145 146 147 148 149 150 152

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

delete startup-config . dir .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

more

rename

boot system .

show running-config . show startup-config show bootvar .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

9

DHCP Snooping .ip dhcp snooping . ip dhcp snooping vlan

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

153153 153 154 155 155 156 157 157 158 159 160

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ip dhcp snooping trust .

ip dhcp snooping information option allowed-untrusted . ip dhcp snooping verify

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ip dhcp snooping database

ip dhcp snooping database update-freq . ip dhcp snooping binding

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

clear ip dhcp snooping database show ip dhcp snooping

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show ip dhcp snooping binding .

8

Contents

10 Ethernet Configuration Commandsinterface ethernet interface range ethernet . shutdown .

. . . . . . . . . . . . . . . .

163163 163 164 165 166 166 167 168 168 169 170 170 171 172 174 176 177 179 180 181 182

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

description . speed . duplex

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

negotiation . flowcontrol . mdix

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

back-pressure clear counters

set interface active

show interfaces advertise .

show interfaces configuration. show interfaces status .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show interfaces description . show interfaces counters

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

port storm-control include-multicast port storm-control broadcast enable port storm-control broadcast rate . show ports storm-control

. . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . .

11 GVRP Commands.gvrp enable (Global) gvrp enable (Interface) . garp timer

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

183183 183 184

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Contents

9

gvrp vlan-creation-forbid gvrp registration-forbid clear gvrp statistics

. . . . . . . . . . . . . . . . . . . . . . . . . . .

185 186 186 187 188 189

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show gvrp configuration . show gvrp statistics

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show gvrp error-statistics .

12 IGMP Snooping Commandsip igmp snooping (Global) ip igmp snooping (Interface) . ip igmp snooping mrouter

. . . . . . . . . . . . . . . . . . . . .

191191 191 192 193 193 194 195 196 197 198 199

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ip igmp snooping host-time-out

ip igmp snooping mrouter-time-out ip igmp snooping leave-time-out ip igmp snooping querier enable

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ip igmp snooping querier address . show ip igmp snooping mrouter . show ip igmp snooping interface show ip igmp snooping groups

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . .

13 IP Addressing Commandsip address

. . . . . . . . . . . . . . . . . . . . . .

201201 202 203 203 204 205

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ip address dhcp

ip default-gateway . show ip interface arp

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

arp timeout .

10

Contents

clear arp-cache show arp

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

206 206 207 208 208 209 210 210 211

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ip domain-lookup ip domain-name ip name-server . ip host

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

clear host .

clear host dhcp . show hosts .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

14 IPv6 Addressingipv6 enable .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

213213 214 214 215 216 217 218 219 220 220 221 224 225 226 227 228

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ipv6 address autoconfig ipv6 icmp error-interval

show ipv6 icmp error-interval . ipv6 address

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ipv6 address link-local. ipv6 unreachables

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ipv6 default-gateway ipv6 mld join-group ipv6 mld version

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show ipv6 interface show IPv6 route

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ipv6 nd dad attempts . ipv6 host

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ipv6 neighbor . ipv6 set mtu .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Contents

11

show ipv6 neighbors . clear ipv6 neighbors .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

229 230

15 LACP Commands .lacp system-priority lacp port-priority . lacp timeout

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

231231 231 232 233 236

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show lacp ethernet

show lacp port-channel

16 Line Commands .line speed .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

237237 238 238 239 240 240 241 242 242

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

autobaud

exec-timeout . history

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

history size .

terminal history

terminal history size show line .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

17 Management ACL

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

245245 247 248 249 249

management access-list . permit (Management) deny (Management)

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

management access-class

show management access-list

12

Contents

show management access-class

. . . . . . . . . . . . . . . . . . . . . . .

250

18 LLDP Commands .lldp enable (global) lldp enable (interface) . lldp timer .

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

251251 251 252 253 254 255 255 256 257 258 259 259 260 261 262 263 265

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

lldp hold-multiplier lldp reinit-delay lldp tx-delay

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

lldp optional-tlv

lldp management-address . lldp med enable

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

lldp med network-policy (global)

lldp med network-policy (interface) . lldp med location. clear lldp rx

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show lldp configuration

show lldp med configuration show lldp local .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show lldp neighbors .

19 Login Bannerbanner exec banner login banner motd exec-banner login-banner

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

267267 269 271 273 273

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Contents

13

motd-banner show banner

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

274 275

20 PHY Diagnostics Commands .test copper-port tdr. show copper-ports tdr

. . . . . . . . . . . . . . . . . . . .

277277 278 278

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show copper-ports cable-length

21 Power over Ethernet Commands .power inline power inline powered-device . power inline priority .

. . . . . . . . . . . . . . . . .

281281 281 282 283 284 284

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

power inline usage-threshold . power inline traps enable show power inline .

. . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

22 Port Channel Commandsinterface port-channel .

. . . . . . . . . . . . . . . . . . . . . . .

291291 291 292 293

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

interface range port-channel channel-group

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show interfaces port-channel .

23 Port Monitor Commandsport monitor show ports monitor

. . . . . . . . . . . . . . . . . . . . . . .

295295 296

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

14

Contents

24 QoS Commands .qos show qos .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

299299 299 300 301 301 302 303 305 306 307 307 308

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

priority-queue out num-of-queues . traffic-shape

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

rate-limit (Ethernet) wrr-queue cos-map show qos interface .

qos map dscp-queue . qos trust (Global) .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

qos trust (Interface) qos cos .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show qos map

25 RADIUS Commands .radius-server host radius-server key

. . . . . . . . . . . . . . . . . . . . . . . . . .

311311 312 313 314 314 315 316 316

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

radius-server retransmit . radius-server source-ip

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

radius-server source-ipv6 radius-server timeout

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

radius-server deadtime show radius-servers .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

26 RMON Commands .show rmon statistics . rmon collection history

. . . . . . . . . . . . . . . . . . . . . . . . . . .

319319 321

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Contents

15

show rmon collection history show rmon history rmon alarm .

. . . . . . . . . . . . . . . . . . . . . . . . .

322 323 326 328 329 330 331 333 334

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show rmon alarm-table show rmon alarm . rmon event

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show rmon events show rmon log

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

rmon table-size .

27 SNMP Commands .snmp-server community snmp-server view

. . . . . . . . . . . . . . . . . . . . . . . . . . .

335335 336 338 340 341 343 343 344 346 348 348 349 349 350 352 353

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

snmp-server group . snmp-server user .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

snmp-server engineID local . snmp-server enable traps snmp-server filter snmp-server host .

. . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

snmp-server v3-host

snmp-server trap authentication snmp-server contact . snmp-server location snmp-server set show snmp .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show snmp engineid . show snmp views

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

16

Contents

show snmp groups . show snmp filters show snmp users.

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

353 355 356

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

28 Spanning-Tree Commands .spanning-tree spanning-tree mode

. . . . . . . . . . . . . . . . . . . . .

357357 357 358 359 360 360 361 361 362 363 364 364 365 366 366 367 368 369 369 370 371 372

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

spanning-tree forward-time . spanning-tree hello-time spanning-tree max-age spanning-tree priority spanning-tree disable spanning-tree cost .

. . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

spanning-tree port-priority spanning-tree portfast . spanning-tree link-type

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

spanning-tree pathcost method spanning-tree bpdu

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

clear spanning-tree detected-protocols spanning-tree mst priority .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

spanning-tree mst max-hops

spanning-tree mst port-priority spanning-tree mst cost.

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

spanning-tree mst configuration instance (mst) name (mst)

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

revision (mst) .

Contents

17

show (mst) exit (mst)

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

372 373 374 375 389

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

abort (mst)

show spanning-tree

spanning-tree guard root

29 SSH Commands.ip ssh port ip ssh server

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

391391 391 392 393 393 394 395 396 398 399 400

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

crypto key generate dsa . crypto key generate rsa ip ssh pubkey-auth .

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

crypto key pubkey-chain ssh user-key

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

key-string .

show ip ssh .

show crypto key mypubkey

show crypto key pubkey-chain ssh

30 Syslog Commands .logging on logging

. . . . . . . . . . . . . . . . . . . . . . . . . . .

401401 401 403 404 404 405 406

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

logging console logging buffered

logging buffered size . clear logging . logging file .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

18

Contents

clear logging file . aaa logging .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

406 407 407 408 409 411 412

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

file-system logging .

management logging . show logging .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show logging file.

show syslog-servers .

31 System Management .ping . traceroute telnet

. . . . . . . . . . . . . . . . . . . . . . . . .

415415 417 420 423 423 424 425 425 426 427 428 429 430 431 432 433 434

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

resume reload .

hostname .

service cpu-utilization . stack master stack reload show stack . show users .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show sessions show system

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show version . asset-tag

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show system id .

show cpu utilization

Contents

19

32 TACACS+ Commands .tacacs-server host . tacacs-server key

. . . . . . . . . . . . . . . . . . . . . . . . .

435435 436 437 437 438

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

tacacs-server timeout

tacacs-server source-ip show tacacs

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

33 TIC Commandspassword-aging

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

441441 442 442 443 444 445 446 446 447 447 448 450 451

passwords min-length .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

passwords aging . passwords history

passwords history hold-time passwords lockout .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

aaa login-history file . set username active set line active

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

set enable-password active .

show passwords configuration show users login-history show users accounts

. . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

34 Tunnel

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

453453 453 454 455

interface tunnel

tunnel mode ipv6ip . tunnel isatap router tunnel source .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

20

Contents

tunnel isatap query-interval .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

456 457 458 458

tunnel isatap solicitation-interval . tunnel isatap robustness . show ipv6 tunnel .

. . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

35 User Interface .enable disable login

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

461461 461 462 463 463 464 464 465 466 467 468

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

configure .

exit (Configuration) exit end

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

help .

terminal datadump . show history

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show privilege .

36 VLAN Commands.vlan database vlan .

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

469469 469 470 471 471 472 473 473

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

interface vlan.

interface range vlan name

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

switchport access vlan

switchport trunk allowed vlan. switchport trunk native vlan .

. . . . . . . . . . . . . . . . . . . . . . . . .

Contents

21

switchport general allowed vlan switchport general pvid

. . . . . . . . . . . . . . . . . . . . . . .

474 475 476 476 477 478 479 479 480 481 482 483 484 484 485 486 487

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

switchport general ingress-filtering disable

switchport general acceptable-frame-type tagged-only . switchport forbidden vlan switchport mode .

. . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

switchport customer vlan switchport protected .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

map protocol protocols-group .

switchport general map protocols-group vlan ip internal-usage-vlan . mac-to-vlan

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show vlan mac-to-vlan. show vlan

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show vlan protocols-groups . show vlan internal usage

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show interfaces switchport

37 Voice VLAN.voice vlan id

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

493493 493 495 496 496 497 498

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

voice vlan oui-table voice vlan cos

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

voice vlan aging-timeout voice vlan enable voice vlan secure show voice vlan

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

22

Contents

38 Web Server.ip http server . ip http port

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

501501 501 502 503 503 504 505 506 508 509 510 511 512

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ip http exec-timeout ip https server ip https port .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

ip https exec-timeout

crypto certificate generate crypto certificate request crypto certificate import . ip https certificate

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show crypto certificate mycertificate . show ip http

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show ip https .

39 802.1x Commands

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

515515 516 516 517 518 519 519 520 521 522 522

aaa authentication dot1x

dot1x system-auth-control . dot1x port-control

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

dot1x re-authentication

dot1x timeout re-authperiod . dot1x re-authenticate

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

dot1x timeout quiet-period . dot1x timeout tx-period dot1x max-req

. . . . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

dot1x timeout supp-timeout

dot1x timeout server-timeout

Contents

23

dot1x send-async-request-id show dot1x .

. . . . . . . . . . . . . . . . . . . . . . . . .

523 524 527 528 530 530 531 532 533 534 534 535 536 537

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

show dot1x users

show dot1x statistics

ADVANCED FEATURES . dot1x auth-not-req

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

dot1x multiple-hosts .

dot1x single-host-violation dot1x guest-vlan

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

dot1x guest-vlan enable . dot1x mac-authentication

dot1x traps mac-authentication failure dot1x radius-attributes vlan show dot1x advanced

. . . . . . . . . . . . . . . . . . . . . . . . . .

. . . . . . . . . . . . . . . . . . . . . . . . . . . . .

24

Contents

Using the CLIThis chapter describes how to start using the CLI and describes the command editing features to assist in using the CLI.

CLI Command ModesIntroductionTo assist in configuring the device, the Command Line Interface (CLI) is divided into different command modes. Each command mode has its own set of specific commands. Entering a question mark "?" at the system prompt (console prompt) displays a list of commands available for that particular command mode. From each mode a specific command is used to navigate from one command mode to another. The standard order to access the modes is as follows: User EXEC mode, Privileged EXEC mode, Global Configuration mode, and Interface Configuration mode. The following figure illustrates the command mode access path.

Using the CLI

25

When starting a session, the initial mode is the User EXEC mode. Only a limited subset of commands are available in the User EXEC mode. This level is reserved for tasks that do not change the configuration. To enter the next level, the Privileged EXEC mode, a password is required. The Privileged EXEC mode gives access to commands that are restricted on User EXEC mode and provides access to the device Configuration mode. The Global Configuration mode manages the device configuration on a global level. The Interface Configuration mode configures specific interfaces in the device.

User EXEC ModeAfter logging into the device, the user is automatically in the User EXEC command mode unless the user is defined as a privileged user. In general, the User EXEC commands allow the user to perform basic tests, and list system information. The user-level prompt consists of the device host name followed by the angle bracket (>). Console>

26

Using the CLI

The default host name is Console unless it was changed using the hostname command in the Global Configuration mode.

Privileged EXEC ModePrivileged access is password protected to prevent unauthorized use because, many of the privileged commands set operating system parameters. The password is not displayed on the screen and is case sensitive. Privileged users enter directly into the Privileged EXEC mode. To enter the Privileged EXEC mode from the User EXEC mode, perform the following steps: 1 At the prompt enter the enable command and press . A password prompt appears. 2 Enter the password and press . The password is displayed as *. The Privileged EXEC mode prompt is displayed. The Privileged EXEC mode prompt consists of the device host name followed by #. Console# To return from the Privileged EXEC mode to the User EXEC mode, use the disable command. The following example illustrates how to access the Privileged EXEC mode and return to the User EXEC mode: Console> enable Enter Password: ****** Console# Console# disable Console> The exit (mst) command is used to return from any mode to the previous mode except when returning to the User EXEC mode from the Privileged EXEC mode. For example, the exit command is used to return from the Interface Configuration mode to the Global Configuration mode.

Global Configuration ModeGlobal Configuration mode commands apply to features that affect the system as a whole, rather than just a specific interface. The configure Privileged EXEC mode command is used to enter the Global Configuration mode.

Using the CLI

27

To enter the Global Configuration mode, at the Privileged EXEC mode prompt enter the command configure and press . The Global Configuration mode prompt is displayed. The Global Configuration mode prompt consists of the device host name followed by (config) and #. Console(config)# To return from the Global Configuration mode to the Privileged EXEC mode, the user can use one of the following commands: exit end Ctrl+Z

The following example illustrates how to access the Global Configuration mode and return to the Privileged EXEC mode: Console# Console# configure Console(config)# exit Console#

Interface Configuration Mode and Specific Configuration ModesInterface Configuration mode commands modify specific interface operations. The following are the Interface Configuration modes: Line Interface Contains commands to configure the management connections. These include commands such as line timeout settings, etc. The Line Commands Global Configuration mode is used to enter the Line Configuration command mode. VLAN Database Contains commands to create a VLAN as a whole. The vlan database Global Configuration mode command is used to enter the VLAN Database Interface Configuration mode. Management Access List Contains commands to define management access-lists. The management access-list Global Configuration mode command is used to enter the Management Access List Configuration mode. Ethernet Contains commands to manage port configuration. The interface ethernet Global Configuration mode command is used to enter the Interface Configuration mode to configure an Ethernet type interface. Port Channel Contains commands to configure port-channels, for example, assigning ports to a port-channel. Most of these commands are the same as the commands in the Ethernet interface mode, and are used to manage the member ports as a single entity. The interface port-channel Global Configuration mode command is used to enter the Port Channel Interface Configuration mode.

28

Using the CLI

SSH Public Key-chain Contains commands to manually specify other device SSH public keys. The crypto key pubkey-chain ssh Global Configuration mode command is used to enter the SSH Public Key-chain Configuration mode. QoS Contains commands related to service definitions. The qos Global Configuration mode command is used to enter the QoS services configuration mode. MAC Access-List Configures conditions required to allow traffic based on MAC addresses. The IPAL (IP-Access List Configuration) Mode Global Configuration mode command is used to enter the MAC access-list configuration mode.

Starting the CLIThe device can be managed over a direct connection to the device console port or via a Telnet connection. The device is managed by entering command keywords and parameters at the prompt. Using the device command-line interface (CLI) is very similar to entering commands on a UNIX system. If access is via a Telnet connection, ensure that the device has a defined IP address, corresponding management access is granted, and the workstation used to access the device is connected to the device prior to using CLI commands. NOTE: The following steps are for use on the console line only. To start using the CLI, perform the following steps: 1 Connect the DB9 null-modem or cross over cable to the RS-232 serial port of the device to the RS-232 serial port of the terminal or computer running the terminal emulation application. NOTE: The default data rate, for Ryan, is 115,200 (Console port on unit shows a default data rate of 9600).a b c d

Set the data format to 8 data bits, 1 stop bit, and no parity. Set Flow Control to none. Under Properties, select VT100 for Emulation mode. Select Terminal keys for Function, Arrow, and Ctrl keys. Ensure that the setting is for Terminal keys (not Windows keys).

CAUTION: When using HyperTerminal with Microsoft Windows 2000, ensure that Windows 2000 ServicePack 2 or later is installed. With Windows 2000 Service Pack 2, the arrow keys function properly in HyperTerminals VT100 emulation. Go to www.microsoft.com for information on Windows 2000 service packs.

For more information, see Dell PowerConnect 3500 Series User's Guide. 2 Enter the following commands to begin the configuration procedure: Console> enable Console# configure Console(config)#

Using the CLI

29

3 Configure the device and enter the necessary commands to complete the required tasks. 4 When finished, exit the session with the exit command. When a different user is required to log onto the system, use the login Privileged EXEC mode command. This effectively logs off the current user and logs on the new user.

Editing FeaturesEntering Commands A CLI command is a series of keywords and arguments. Keywords identify a command, and arguments specify configuration parameters. For example, in the command show interfaces status ethernet 1/e11, show, interfaces and status are keywords, ethernet is an argument that specifies the interface type, and 1/e11 specifies the port. To enter commands that require parameters, enter the required parameters after the command keyword. For example, to set a password for the administrator, enter: Console(config)# username admin password alansmith When working with the CLI, the command options are not displayed. The command is not selected from a menu, but is manually entered. To see what commands are available in each mode or within an interface configuration, the CLI provides a method of displaying the available commands, the command syntax requirements and in some instances, parameters required to complete the command. The standard command to request help is the character ?. There are two instances where help information can be displayed: Keyword lookup The character ? is entered in place of a command. A list of all valid commands and corresponding help messages are is displayed. Partial keyword lookup If a command is incomplete and or the character ? is entered in place of a parameter. The matched keyword or parameters for this command are displayed.

To assist in using the CLI, there is an assortment of editing features. The following features are described: Terminal Command Buffer Command Completion Keyboard Shortcuts

Copying and Pasting Text Up to 100 lines of text (i.e., commands) can be copied and pasted into the device. NOTE: This editing features are for Telnet only. NOTE: It is the users responsibility to ensure that the text copied into the device consists of legal commands only.

30

Using the CLI

When copying and pasting commands from a configuration file, make sure that the following conditions exist: A device Configuration mode has been accessed. The commands contain no encrypted data, like encrypted passwords or keys. Encrypted data cannot be copied and pasted into the device.

Setup WizardThe CLI supports a Setup Wizard. This is an easy-to-use user interface which quickly guides the user in setting up basic device information, so that the device can be easily managed from a Web Based Interface. Refer to the Getting Started Guide and User Guide for more information on the Setup Wizard.

Terminal Command BufferEvery time a command is entered in the CLI, it is recorded on an internally managed Command History buffer. Commands stored in the buffer are maintained on a First In First Out (FIFO) basis. These commands can be recalled, reviewed, modified, and reissued. This buffer is not preserved across device resets.Keyword Up-arrow key Ctrl+P Down-arrow key Description Recalls commands in the history buffer, beginning with the most recent command. Repeats the key sequence to recall successively older commands. Returns to more recent commands in the history buffer after recalling commands with the up-arrow key. Repeating the key sequence will recall successively more recent commands.

By default, the history buffer system is enabled, but it can be disabled at any time. For information about the command syntax to enable or disable the history buffer, see history. There is a standard default number of commands that are stored in the buffer. The standard number of 10 commands can be increased to 216. By configuring 0, the effect is the same as disabling the history buffer system. For information about the command syntax for configuring the command history buffer, see history size. To display the history buffer, see show history.

Negating the Effect of CommandsFor many configuration commands, the prefix keyword no can be entered to cancel the effect of a command or reset the configuration to the default value. This guide describes the negation effect for all applicable commands.

Using the CLI

31

Command CompletionAn appropriate error message displays if the entered command is incomplete or invalid; or has missing or invalid parameters. This assists in entering the correct command.

Keyboard ShortcutsThe CLI has a range of keyboard shortcuts to assist in editing the CLI commands. The following table describes the CLI shortcuts.Keyboard Key Up-arrow key Down-arrow key Description Recalls commands from the history buffer, beginning with the most recent command. Repeat the key sequence to recall successively older commands. Returns the most recent commands from the history buffer after recalling commands with the up arrow key. Repeating the key sequence will recall successively more recent commands. Moves the cursor to the beginning of the command line. Moves the cursor to the end of the command line. Returns back to the Privileged EXEC mode from any configuration mode. Deletes one character left to the cursor position.

Ctrl+A Ctrl+E Ctrl+Z / End Backspace key

CLI Command ConventionsWhen entering commands there are certain command entry standards that apply to all commands. The following table describes the command conventions.Convention [] {} Description In a command line, square brackets indicate an optional entry. In a command line, curly brackets indicate a selection of compulsory parameters separated by the | character. One option must be selected. For example, flowcontrol {auto|on|off} means that for the flowcontrol command either auto, on or off must be selected. Indicates a parameter. Indicates an individual key on the keyboard. For example, indicates the Enter key. Any combination of keys pressed simultaneously on the keyboard. Indicates system messages and prompts appearing on the console. When a parameter is required to define a range of ports or parameters and all is an option, the default for the command is all when no parameters are defined. For example, the command interface range port-channel has the option of either entering a range of channels, or selecting all. When the command is entered without a parameter, it automatically defaults to all.

Italic font Ctrl+F4 Screen Display all

32

Using the CLI

Command GroupsIntroductionThe Command Language Interface (CLI) is a network management application operated through an ASCII terminal without the use of a Graphical User Interface (GUI) driven software application. By directly entering commands, you achieve greater configuration flexibility. The CLI is a basic command-line interpreter similar to the UNIX C shell. You can configure and maintain a device by entering commands from the CLI, which is based solely on textual input and output; you enter commands using a terminal keyboard and the textual output displays via a terminal monitor. You can access the CLI from a VT100 terminal connected to the console port of the device or through a Telnet connection from a remote host. The first time you use the CLI from the console a Setup Wizard is invoked. The Setup Wizard guides you in setting up a minimum configuration, so that the device can be managed from the Web Based Interface. Refer to the Getting Started Guide and User Guide for more information on the Setup Wizard. This guide describes how the Command Line Interface (CLI) is structured, describes the command syntax, and describes the command functionality. This guide also provides information for configuring the PowerConnect device, details the procedures, and provides configuration examples. Basic installation configuration is described in the Users Guide and must be completed before using this document.

Command GroupsThe system commands can be broken down into functional groups as shown below.Command Group AAA Commands ACL Commands Address Table Commands Clock Commands Description Configures connection security including authorization and passwords. Configures ACL on the device. Configures bridging Address Tables. Configures clock commands on the device.

Configuration and Image Files Commands Manages the device configuration files. DHCP Snooping Commands Configuring DHCP snooping on the device.

Command Groups

33

Ethernet Configuration GVRP Commands IGMP Snooping Commands IP Addressing Commands IPv6 Addressing Commands LACP Commands Line Commands LLDP Commands Login Banner Commands Management ACL Commands PHY Diagnostics Commands Power-over-Ethernet Commands Port Channel Commands Port Monitor Commands QoS Commands RADIUS Commands RMON Commands SNMP Commands Spanning Tree Commands SSH Commands Syslog Commands System Management Commands TACACS Commands TIC Commands Tunnel Commands User Interface Commands VLAN Commands Voice VLAN Commands

Configures all port configuration options for, example ports, storm control, and auto-negotiation. Configures and displays GVRP configuration and information. Configures IGMP snooping and displays IGMP configuration and IGMP information. Configures and manages IP addresses on the device. Configures and manages IPv6 addresses on the device. Configures and displays LACP information. Configures the console and remote Telnet connection. Configures and displays LLDP information. Cofigures customizable login banners on the device. Configures and displays management access-list information. Diagnoses and displays the interface status. Configure Power over Ethernet setings on the device. Configures and displays Port Channel information. Monitors activity on specific target ports. Configures and displays QoS information. Configures and displays RADIUS information. Displays RMON statistics. Configures SNMP communities, traps and displays SNMP information. Configures and reports on Spanning Tree protocol. Configures SSH authentication. Manages and displays syslog messages. Configures the device clock, name and authorized users. Configures TACACS+ commands. Configures and displays TIC information. Configures tunnel routing configurations. Describes user commands used for entering CLI commands. Configures VLANs and displays VLAN information. Configures Voice VLANs and displays VLAN information. Configures Web based access to the device.

802.1x Commands

Configures commands related to 802.1x security protocol.

34

Command Groups

AAA CommandsCommand Group aaa authentication login aaa authentication enable login authentication enable authentication ip http authentication ip https authentication show authentication methods password enable password username Description Defines login authentication. Defines authentication method lists for accessing higher privilege levels. Specifies the login authentication method list for a remote telnet or console. Access Mode Global Configuration Global Configuration Line Configuration

Specifies the authentication method list when accessing a Line higher privilege level from a remote telnet or console. Configuration Specifies authentication methods for HTTP server users. Global Configuration Specifies authentication methods for HTTPS server users. Global Configuration Displays information about the authentication methods. Privileged EXEC Specifies a password on a line. Sets a local password to control access to normal and privilege levels. Establishes a username-based authentication system. Line Configuration Global Configuration Global Configuration

ACL CommandsCommand Group ip access-list permit (IP) deny (IP) mac access-list permit (MAC) Description Creates Layer 2 ACLs. Permits traffic if the conditions defined in the permit statement match. Denies traffic if the conditions defined in the deny statement match. Creates Layer 2 ACLs. Set permit conditions for a MAC access list Access Mode Global Configuration IP Access-List Configuration IP Access-List Configuration Global Configuration MAC Access-List Configuration

Command Groups

35

deny (MAC) service-acl show access-lists show interfaces accesslists

Denies traffic if the conditions defined in the deny statement match Sets the default ace action to permit or deny. Applies an ACL to the input interface. Displays ACLs defined on the device.

MAC Access-List Configuration Interface Configuration Privileged EXEC Privileged EXEC

Address Table CommandsCommand Group bridge address bridge multicast filtering bridge multicast address bridge multicast forbidden address bridge multicast unregistered bridge multicast forwardall bridge multicast forbidden forward-all bridge aging-time clear bridge port security port security mode port security max Description Adds a static MAC-layer station source address to the bridge table. Enables filtering of Multicast addresses. Registers MAC-layer Multicast addresses to the bridge table, and adds static ports to the group. Forbids adding a specific Multicast address to specific ports. Configures the forwarding state of unregistered multicast addresses. Enables forwarding all Multicast frames on a port. Forbids a port from becoming a forward-all Multicast port. Sets the Address Table aging time. Removes any learned entries from the forwarding database. Disables new address learning/forwarding on an interface. Configures the port security learning mode. Configures the maximum number of addresses that may be learned on the port while the port is in port security mode. Access Mode Interface (VLAN) Configuration Global Configuration Interface (VLAN) Configuration Interface (VLAN) Configuration Interface Configuration Interface (VLAN) Configuration Interface (VLAN) Configuration Global Configuration Privileged EXEC Interface Configuration Interface Configuration Interface Configuration

36

Command Groups

port security routed secure-address show bridge address-table show bridge address-table static show bridge address-table count show bridge multicast address-table show bridge multicast address-table static show bridge multicast filtering show ports security show ports security addresses

Adds MAC-layer secure addresses to a routed port. Displays all entries in the bridge-forwarding database. Displays statically created entries in the bridgeforwarding database. Displays the number of addresses present in the bridge-forwarding database. Displays all entries in the bridge-forwarding database. Displays the statically configured multicast addresses. Displays the Multicast filtering configuration. Displays the port-lock status. Displays current dynamic addresses in locked ports.

Interface Configuration Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC

Clock CommandsCommand Group clock set clock source clock timezone clock summer-time sntp authentication-key sntp authenticate sntp trusted-key Description Manually sets the system clock. Configures an external time source for the system clock. Sets the time zone for display purposes. Configures the system to automatically switch to summer time (daylight saving time). Defines an authentication key for Simple Network Time Protocol (SNTP). Grants authentication for received Network Time Protocol (NTP) traffic from servers. Authenticates the identity of a system to which Simple Network Time Protocol (SNTP) will synchronize. Sets the polling time for the Simple Network Time Protocol (SNTP) client. Access Mode Privileged EXEC Global Configuration Global Configuration Global Configuration Global Configuration Global Configuration Global Configuration

sntp client poll timer

Global Configuration

Command Groups

37

sntp broadcast client enable sntp anycast client enable sntp client enable

Enables the Simple Network Time Protocol (SNTP) Broadcast clients. Enables Anycast clients. Enables the Simple Network Time Protocol (SNTP) Broadcast and Anycast client on an interface. Enables the Simple Network Time Protocol (SNTP) client on an interface. Enables the device to use the Simple Network Time Protocol (SNTP) to request and accept Simple Network Time Protocol (SNTP) traffic from servers. Enables polling for the Simple Network Time Protocol (SNTP) predefined Unicast clients. Configures the device to use the Simple Network Time Protocol (SNTP) to request and accept Simple Network Time Protocol (SNTP) traffic from a server. Displays the time and date from the system clock. Shows the configuration of the Simple Network Time Protocol (SNTP). Shows the status of the Simple Network Time Protocol (SNTP).

Global Configuration Global Configuration Global Configuration

sntp client enable (Interface) sntp unicast client enable

Interface Configuration Global Configuration

sntp unicast client poll sntp server

Global Configuration Global Configuration

show clock show sntp configuration show sntp status

User EXEC Privileged EXEC Privileged EXEC

Configuration and Image Files CommandsCommand Group copy delete delete startup-config dir more rename boot system Description Copies files from a source to a destination. Deletes a file from a Flash memory device. Deletes the startup-config file. Displays a list of files on a flash file system. Displays a file. Renames a file. Specifies the system image that the device loads at startup. Access Mode Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC

38

Command Groups

show running-config show startup-config show bootvar

Displays the contents of the currently running configuration file. Displays the startup configuration file contents. Displays the active system image file that the device loads at startup.

Privileged EXEC Privileged EXEC Privileged EXEC

DHCP Snooping CommandsCommand Group ip dhcp snooping ip dhcp snooping vlan ip dhcp snooping trust ip dhcp snooping information option allowed-untrusted ip dhcp snooping verify ip dhcp snooping database ip dhcp snooping database update-freq ip dhcp snooping binding clear ip dhcp snooping database show ip dhcp snooping show ip dhcp snooping binding Description Globally enables DHCP snooping Enables DHCP snooping on a VLAN. Configures a port as trusted for DHCP snooping purposes. Configures a switch to accept DHCP packets with option-82 information from an untrusted port. Configures a switch to accept DHCP packets with option-82 information from an untrusted port. Configures the DHCP snooping binding file. Configures the update frequency of the DHCP snooping binding file. Configures the update frequency of the DHCP snooping binding file. Clears the DHCP snooping binding database. Displays the DHCP snooping configuration. Displays the DHCP snooping binding database and configuration information for all interfaces on a switch. Access Mode Global Configuration Global Configuration Interface Configuration Global Configuration Global Configuration Global Configuration Global Configuration Privileged EXEC Privileged EXEC EXEC User EXEC

Command Groups

39

Ethernet Configuration CommandsCommand Group interface ethernet interface range ethernet shutdown description speed duplex negotiation flowcontrol mdix back-pressure clear counters set interface active show interfaces advertise show interfaces configuration show interfaces status show interfaces description show interfaces counters port storm-control include-multicast port storm-control broadcast enable port storm-control broadcast rate show ports storm-control Description Enters the interface configuration mode to configure an Ethernet type interface. Enters the interface configuration mode to configure multiple Ethernet type interfaces. Disables interfaces. Adds a description to an interface. Configures the speed of a given Ethernet interface when not using auto-negotiation. Configures the full/half duplex operation of a given Ethernet interface when not using auto-negotiation. Enables auto-negotiation operation for the speed and duplex parameters of a given interface. Configures the Flow Control on a given interface. Enables automatic crossover on a given interface. Enables Back Pressure on a given interface. Access Mode Global Configuration Global Configuration Interface Configuration Interface Configuration Interface Configuration Interface Configuration Interface Configuration Interface Configuration Interface Configuration Interface Configuration Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Interface Configuration Interface Configuration Interface Configuration Privileged User EXEC

Clears statistics on an interface.Reactivates an interface that was suspended by the system. Displays auto negotiation advertisement data. Displays the configuration for all interfaces. Displays the status for all interfaces. Displays the description for all interfaces. Displays traffic seen by the physical interface. Enables the device to count Multicast packets with Broadcast packets. Enables Broadcast storm control. Configures the maximum Broadcast rate. Displays the storm control configuration.

40

Command Groups

GVRP CommandsCommand Group gvrp enable (Global) gvrp enable (Interface) garp timer gvrp vlan-creation-forbid gvrp registration-forbid clear gvrp statistics show gvrp configuration show gvrp statistics show gvrp error-statistics Description Enables GVRP globally. Enables GVRP on an interface. Adjusts the GARP application join, leave, and leaveall GARP timer values. Enables or disables dynamic VLAN creation. De-registers all VLANs, and prevents dynamic VLAN registration on the port. Clears all the GVRP statistics information. Displays GVRP configuration information. Displays GVRP statistics. Displays GVRP error statistics. Mode Global Configuration Interface Configuration Interface Configuration Interface Configuration Interface Configuration Privileged EXEC User EXEC User EXEC User EXEC

IGMP Snooping CommandsCommand Group ip igmp snooping (Global) ip igmp snooping (Interface) ip igmp snooping mrouter ip igmp snooping host-time-out ip igmp snooping mrouter-timeout ip igmp snooping leave-time-out ip igmp snooping querier enable ip igmp snooping querier address show ip igmp snooping mrouter show ip igmp snooping interface show ip igmp snooping groups Description Enables Internet Group Management Protocol (IGMP) snooping. Enables Internet Group Management Protocol (IGMP) snooping on a specific VLAN. Enables automatic learning of Multicast router ports. Configures the host-time-out. Configures the mrouter-time-out. Configures the leave-time-out. Enables Internet Group Management Protocol (IGMP) querier on a specific VLAN Defines the source IP address that the IGMP Snooping querier uses. Displays information on dynamically learned Multicast router interfaces. Displays IGMP snooping configuration. Displays Multicast groups learned by IGMP snooping. Access Mode Global Configuration Interface (VLAN) Interface (VLAN) Interface (VLAN) Interface (VLAN) Interface (VLAN) Interface (VLAN) Interface (VLAN) User EXEC User EXEC User EXEC

Command Groups

41

IP Addressing CommandsCommand Group ip address ip address dhcp ip default-gateway show ip interface arp arp timeout clear arp-cache show arp ip domain-lookup ip domain-name ip name-server ip host clear host clear host dhcp Description Sets an IP address. Acquires an IP address on an interface from the DHCP server. Defines a default gateway (router). Displays the usability status of interfaces configured for IP . Adds a permanent entry in the ARP cache. Configures how long an entry remains in the ARP cache. Deletes all dynamic entries from the ARP cache. Displays entries in the ARP table. Enables the IP Domain Naming System (DNS)based host name-to-address translation. Defines a default domain name that the software uses to complete unqualified host names. Sets the available name servers. Defines static host name-to-address mapping in the host cache. Deletes entries from the host name-to-address cache. Deletes entries from the host name-to-address mapping received from Dynamic Host Configuration Protocol (DHCP). Displays the default domain name, a list of name server hosts, the static and cached list of host names and addresses. Access Mode Interface Configuration Interface Configuration Global Configuration Privileged EXEC Global Configuration Global Configuration Privileged EXEC Privileged EXEC Global Configuration Global Configuration Global Configuration Global Configuration Privileged EXEC Privileged EXEC

show hosts

Privileged EXEC

42

Command Groups

IPv6 Addressing CommandsCommand Group ipv6 enable ipv6 address autoconfig ipv6 icmp error-interval show ipv6 icmp errorinterval ipv6 address ipv6 address link-local ipv6 unreachables Description Enables IPv6 processing on an interface. Enables automatic configuration of IPv6 addresses using stateless autoconfiguration on an interface. Configures the rate limit interval and bucket size parameters for IPv6 ICMP error messages. Displays the IPv6 ICMP error interval setting Configures an IPv6 address for an interface. Configures an IPv6 link-local address for an interface. Enables the generation of Internet Control Message Protocol for IPv6 (ICMPv6) unreachable messages for any packets arriving on a specified interface. Defines an IPv6 default gateway. Configures Multicast Listener Discovery (MLD) reporting for a specified group. Changes the Multicast Listener Discovery Protocol (MLD) version. Displays the usability status of interfaces configured for IPv6. Displays the current state of the IPv6 routing table. Configures the number of consecutive neighbor solicitation messages that are sent on an interface while duplicate address detection is performed on the unicast IPv6 addresses of the interface. Defines a static host name-to-address mapping in the host name cache. Configures a static entry in the IPv6 neighbor discovery cache. Sets the MTU size of IPv6 packets sent on an interface. Displays IPv6 neighbor discovery cache information. Deletes all entries in the IPv6 neighbor discovery cache, except static entries. Access Mode Interface Configuration Interface Configuration Global Configuration Privileged EXEC Interface Configuration Interface Configuration Interface Configuration

ipv6 default-gateway ipv6 mld join-group ipv6 mld version show ipv6 interface show IPv6 route ipv6 nd dad attempts

Global Configuration Interface Configuration Interface Configuration Privileged EXEC Privileged EXEC Interface Configuration

ipv6 host ipv6 neighbor ipv6 set mtu show ipv6 neighbors clear ipv6 neighbors

Global Configuration Global Configuration Privileged EXEC Privileged EXEC Privileged EXEC

Command Groups

43

LACP CommandsCommand Group lacp system-priority lacp port-priority lacp timeout show lacp ethernet show lacp port-channel Description Configures the system LACP priority. Configures the priority value for physical ports. Assigns an administrative LACP timeout. Displays LACP information for Ethernet ports. Displays LACP information for a port-channel. Access Mode Global Configuration Interface Configuration Interface Configuration Privileged EXEC Privileged EXEC

Line CommandsCommand Group line speed autobaud exec-timeout history history size terminal history terminal history size show line Description Identifies a specific line for configuration and enters the line configuration command mode. Configures the baud rate of the line. Configures the line for automatic baud rate detection (autobaud). Configures the interval that the system waits until user input is detected. Enables the command history function. Configures the command history buffer size for a particular line. Enables the command history function for the current terminal session. Configures the command history buffer size for the current terminal session. Displays line parameters. Access Mode Global Configuration Line Configuration Line Configuration Line Configuration Line Configuration Line Configuration User EXEC User EXEC User EXEC

44

Command Groups

Line CommandsCommand Group line speed autobaud exec-timeout show line terminal history terminal history size Description Identifies a specific line for configuration and enters the Line Configuration command mode. Sets the line baud rate. Sets the line for automatic baud rate detection. Configures the interval that the system waits until user input is detected. Displays line parameters. Enables the command history function for the current terminal session. Cand history buffer size for the current terminal session. Access Mode Global Configuration Line Configuration Line Configuration Line Configuration User EXEC User EXEC User EXEC

LLDP CommandsCommand Group lldp enable (global) lldp enable (interface) lldp timer lldp hold-multiplier lldp reinit-delay lldp tx-delay Description Enables Link Layer Discovery Protocol (LLDP). Enables LLDP on an interface. Specifies how often the software sends LLDP updates. Specifies the amount of time the receiving device should hold a LLDP packet before discarding it. Specifies the minimum time an LLDP port will wait before reinitializing LLDP transmission. Specifies the delay between successive LLDP frame transmissions initiated by value/status changes in the LLDP local systems MIB. Specifies which optional TLVs from the basic set should be transmitted. Specifies the management address that would be advertised from an interface. Enables LLDP Media Endpoint Discovery (MED) on an interface. Defines LLDP MED network policy. Access Mode Global configuration Interface configuration (Ethernet) Global configuration Global configuration Global configuration Global configuration

lldp optional-tlv lldp managementaddress lldp med enable lldp med networkpolicy (global)

Interface configuration (Ethernet) Interface configuration (Ethernet) Interface configuration (Ethernet) Global configuration

Command Groups

45

lldp med networkpolicy (interface) lldp med location clear lldp rx show lldp configuration show lldp med configuration show lldp local show lldp neighbors

Attaches a LLDP MED network policy to a port.

Interface configuration (Ethernet) Interface configuration (Ethernet)

Restarts the LLDP RX state machine and clears the neighbors table. Displays the LLDP configuration. Displays the Link Layer Discovery Protocol (LLDP) Media Endpoint Discovery (MED) configuration. Displays the Link Layer Discovery Protocol (LLDP) information that is advertised from a specific port. Displays information about discovered neighboring devices using Link Layer Discovery Protocol (LLDP)

Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC Privileged EXEC

Login Banner CommandsCommand Group banner exec banner login banner motd exec-banner login-banner motd-banner show banner Description Specifies and enables a message to be displayed when an EXEC process is created. Enables a message to be displayed before the username and password login prompts. Specifi