trademarks may be trademarks of their respective owners.
2017 - 06
Rev. A00
Contents
1 About this Guide...........................................................................................................................................33
Related Documents......................................................................................................................................................... 33
Accessing the Command Line........................................................................................................................................34
The do Command............................................................................................................................................................ 39
Entering and Editing Commands................................................................................................................................... 40
Filtering show Command Outputs..................................................................................................................................41
Example of the grep Keyword...................................................................................................................................41
Multiple Users in Conguration Mode...........................................................................................................................42
Serial Console.............................................................................................................................................................45
Accessing the CLI Interface and Running Scripts Using SSH....................................................................................46
Entering CLI commands Using an SSH Connection..............................................................................................46
Executing Local CLI Scripts Using an SSH Connection........................................................................................46
Conguring a Host Name................................................................................................................................................47
Accessing the System Remotely....................................................................................................................................47
Accessing the System Remotely..............................................................................................................................47
Congure the Management Port IP Address.........................................................................................................48
Congure a Management Route..............................................................................................................................48
Conguring a Username and Password..................................................................................................................48
Conguring the Enable Password..................................................................................................................................49
Copy Files to and from the System......................................................................................................................... 49
Mounting an NFS File System..................................................................................................................................50
Save the Running-Conguration..............................................................................................................................52
Congure the Overload Bit for a Startup Scenario............................................................................................... 52
Managing the File System.............................................................................................................................................. 56
Enabling Software Features on Devices Using a Command Option......................................................................... 56
Verify Software Images Before Installation...................................................................................................................57
Using HTTP for File Transfers........................................................................................................................................ 58
Creating a Custom Privilege Level...........................................................................................................................60
Removing a Command from EXEC Mode...............................................................................................................61
Moving a Command from EXEC Privilege Mode to EXEC Mode........................................................................ 61
Allowing Access to CONFIGURATION Mode Commands.....................................................................................61
Allowing Access to Dierent Modes........................................................................................................................ 61
Applying a Privilege Level to a Username............................................................................................................... 63
Applying a Privilege Level to a Terminal Line.......................................................................................................... 63
Audit and Security Logs............................................................................................................................................64
Conguring Logging Format ...................................................................................................................................65
Display the Logging Buer and the Logging Conguration..................................................................................66
Setting Up a Secure Connection to a Syslog Server.............................................................................................66
Sending System Messages to a Syslog Server......................................................................................................68
Restrictions for Tracking Login Activity...................................................................................................................68
Log Messages in the Internal Buer..............................................................................................................................72
Conguration Task List for System Log Management.......................................................................................... 72
Disabling System Logging............................................................................................................................................... 72
Sending System Messages to a Syslog Server............................................................................................................ 73
Conguring a UNIX System as a Syslog Server.....................................................................................................73
Changing System Logging Settings...............................................................................................................................73
Display the Logging Buer and the Logging Conguration........................................................................................ 74
Conguring a UNIX Logging Facility Level.................................................................................................................... 74
Enabling Timestamp on Syslog Messages.................................................................................................................... 76
File Transfer Services.......................................................................................................................................................76
Conguration Task List for File Transfer Services.................................................................................................. 77
Enabling the FTP Server........................................................................................................................................... 77
Conguring FTP Server Parameters........................................................................................................................77
Denying and Permitting Access to a Terminal Line................................................................................................ 78
Conguring Login Authentication for Terminal Lines.............................................................................................79
Contents
4
Setting Timeout for EXEC Privilege Mode...................................................................................................................80
Using Telnet to get to Another Network Device...........................................................................................................81
EAP over RADIUS......................................................................................................................................................85
Related Conguration Tasks..................................................................................................................................... 86
Important Points to Remember......................................................................................................................................86
Conguring MAC addresses for a do1x Prole.............................................................................................................89
Conguring the Static MAB and MAB Prole .............................................................................................................89
Conguring a Quiet Period after a Failed Authentication......................................................................................91
Forcibly Authorizing or Unauthorizing a Port............................................................................................................... 92
Re-Authenticating a Port................................................................................................................................................93
Conguring Dynamic VLAN Assignment with Port Authentication.......................................................................... 95
Guest and Authentication-Fail VLANs.......................................................................................................................... 96
Conguring a Guest VLAN....................................................................................................................................... 96
Conguring an Authentication-Fail VLAN...............................................................................................................96
6 Access Control List (ACL) VLAN Groups and Content Addressable Memory (CAM)....................................98
Optimizing CAM Utilization During the Attachment of ACLs to VLANs...................................................................98
Guidelines for Conguring ACL VLAN Groups.............................................................................................................99
Conguring ACL VLAN Groups and Conguring FP Blocks for VLAN Parameters................................................99
Allocating FP Blocks for VLAN Processes.................................................................................................................. 102
7 Access Control Lists (ACLs)....................................................................................................................... 104
IP Access Control Lists (ACLs).....................................................................................................................................105
Implementing ACLs on Dell Networking OS..........................................................................................................106
Important Points to Remember.................................................................................................................................... 108
Conguration Task List for Route Maps................................................................................................................ 108
Conguring Match Routes.......................................................................................................................................110
Conguring Set Conditions.......................................................................................................................................111
Congure a Route Map for Route Redistribution..................................................................................................112
Congure a Route Map for Route Tagging............................................................................................................ 113
IP Fragment Handling..................................................................................................................................................... 114
IP Fragments ACL Examples....................................................................................................................................114
Congure a Standard IP ACL.........................................................................................................................................115
Conguring a Standard IP ACL Filter......................................................................................................................116
Congure an Extended IP ACL...................................................................................................................................... 117
Conguring Filters with a Sequence Number........................................................................................................117
Conguring Filters Without a Sequence Number................................................................................................. 118
Congure Layer 2 and Layer 3 ACLs............................................................................................................................ 119
Assign an IP ACL to an Interface..................................................................................................................................120
Applying an IP ACL.........................................................................................................................................................120
IP Prex Lists.................................................................................................................................................................. 123
Conguration Task List for Prex Lists.................................................................................................................. 123
Resequencing an ACL or Prex List.......................................................................................................................127
Logging of ACL Processes............................................................................................................................................ 129
Guidelines for Conguring ACL Logging................................................................................................................130
Flow-Based Monitoring Support for ACLs...................................................................................................................131
Behavior of Flow-Based Monitoring....................................................................................................................... 131
How BFD Works.............................................................................................................................................................134
Session State Changes............................................................................................................................................139
Important Points to Remember.................................................................................................................................... 139
Congure BFD for Physical Ports...........................................................................................................................140
Congure BFD for Static Routes.............................................................................................................................141
Congure BFD for OSPF.........................................................................................................................................144
Congure BFD for OSPFv3.....................................................................................................................................148
Congure BFD for IS-IS............................................................................................................................................151
Congure BFD for BGP...........................................................................................................................................153
Congure BFD for VRRP.........................................................................................................................................160
Autonomous Systems (AS)...........................................................................................................................................165
Sessions and Peers.........................................................................................................................................................167
Establish a Session................................................................................................................................................... 167
Best Path Selection Criteria....................................................................................................................................169
Local Preference........................................................................................................................................................171
AS Path...................................................................................................................................................................... 174
Next Hop....................................................................................................................................................................174
Advertise IGP Cost as MED for Redistributed Routes........................................................................................ 175
Ignore Router-ID in Best-Path Calculation............................................................................................................ 176
Four-Byte AS Numbers............................................................................................................................................176
AS4 Number Representation.................................................................................................................................. 176
AS Number Migration...............................................................................................................................................178
BGP4 Management Information Base (MIB)........................................................................................................ 179
Important Points to Remember.............................................................................................................................. 179
Conguring BGP Fast Fall-Over.............................................................................................................................188
Filtering on an AS-Path Attribute........................................................................................................................... 193
Regular Expressions as Filters.................................................................................................................................195
Conguring IP Community Lists............................................................................................................................. 197
Conguring an IP Extended Community List........................................................................................................198
Filtering Routes with Community Lists..................................................................................................................199
Manipulating the COMMUNITY Attribute............................................................................................................200
Changing MED Attributes....................................................................................................................................... 201
Changing the LOCAL_PREFERENCE Attribute.................................................................................................. 201
Conguring the local System or a Dierent System to be the Next Hop for BGP-Learned Routes............ 202
Contents
7
Changing the WEIGHT Attribute...........................................................................................................................203
Storing Last and Bad PDUs.....................................................................................................................................215
Test CAM Usage............................................................................................................................................................226
QoS CAM Region Limitation...................................................................................................................................229
11 Control Plane Policing (CoPP).................................................................................................................. 230
Congure Control Plane Policing.................................................................................................................................. 231
Conguring CoPP for Protocols............................................................................................................................ 232
Conguring CoPP for CPU Queues...................................................................................................................... 234
CoPP for OSPFv3 Packets.....................................................................................................................................235
Conguring CoPP for OSPFv3.............................................................................................................................. 238
DHCP Packet Format and Options.............................................................................................................................. 241
Assign an IP Address using DHCP...............................................................................................................................243
Congure the System to be a DHCP Server..............................................................................................................244
Conguring the Server for Automatic Address Allocation..................................................................................245
Contents
8
Specifying a Default Gateway................................................................................................................................ 246
Congure a Method of Hostname Resolution......................................................................................................246
Using DNS for Address Resolution........................................................................................................................246
Using NetBIOS WINS for Address Resolution......................................................................................................247
Debugging the DHCP Server................................................................................................................................. 247
Using DHCP Clear Commands...............................................................................................................................248
Congure the System to be a Relay Agent................................................................................................................ 248
Congure the System to be a DHCP Client...............................................................................................................250
Conguring the DHCP Client System...................................................................................................................250
DHCP Client on a Management Interface.............................................................................................................251
DHCP Client Operation with Other Features....................................................................................................... 252
Congure the System for User Port Stacking (Option 230)....................................................................................253
Enabling IP Source Address Validation..................................................................................................................260
DHCP MAC Source Address Validation.................................................................................................................261
ECMP for Flow-Based Anity..................................................................................................................................... 263
Conguring the Hash Algorithm............................................................................................................................ 263
Enabling Deterministic ECMP Next Hop.............................................................................................................. 263
Conguring the Hash Algorithm Seed.................................................................................................................. 264
Link Bundle Monitoring................................................................................................................................................. 264
Managing ECMP Group Paths...............................................................................................................................265
Creating an ECMP Group Bundle..........................................................................................................................265
Modifying the ECMP Group Threshold................................................................................................................ 265
14 FIPS Cryptography...................................................................................................................................267
Preparing the System....................................................................................................................................................267
Enabling FIPS Mode...................................................................................................................................................... 268
Monitoring FIPS Mode Status......................................................................................................................................268
Disabling FIPS Mode..................................................................................................................................................... 269
15 Force10 Resilient Ring Protocol (FRRP)................................................................................................... 270
Ring Status................................................................................................................................................................271
Important FRRP Points........................................................................................................................................... 272
Important FRRP Concepts..................................................................................................................................... 273
Creating the FRRP Group....................................................................................................................................... 274
Conguring the Control VLAN...............................................................................................................................275
Conguring and Adding the Member VLANs.......................................................................................................276
Setting the FRRP Timers........................................................................................................................................ 277
Clearing the FRRP Counters.................................................................................................................................. 277
Viewing the FRRP Conguration........................................................................................................................... 277
Viewing the FRRP Information...............................................................................................................................277
Sample Conguration and Topology............................................................................................................................ 278
Important Points to Remember................................................................................................................................... 280
Related Conguration Tasks....................................................................................................................................281
Enabling GVRP on a Layer 2 Interface........................................................................................................................282
Congure a GARP Timer.............................................................................................................................................. 283
17 High Availability (HA)............................................................................................................................... 285
Automatic and Manual Stack Unit Failover.......................................................................................................... 285
Synchronization between Management and Standby Units..............................................................................286
Forcing a Stack Unit Failover................................................................................................................................. 286
Manually Synchronizing Management and Standby Units..................................................................................287
Pre-Conguring a Stack Unit Slot................................................................................................................................287
Removing a Provisioned Logical Stack Unit............................................................................................................... 288
Software Component Health Monitoring............................................................................................................. 289
System Health Monitoring......................................................................................................................................289
Failure and Event Logging.......................................................................................................................................289
IGMP Version 2.........................................................................................................................................................291
IGMP Version 3........................................................................................................................................................293
Related Conguration Tasks...................................................................................................................................296
Selecting an IGMP Version........................................................................................................................................... 297
Adjusting Query and Response Timers.................................................................................................................298
Preventing a Host from Joining a Group.................................................................................................................... 299
Removing a Group-Port Association.....................................................................................................................303
Specifying a Port as Connected to a Multicast Router...................................................................................... 304
Conguring the Switch as Querier........................................................................................................................304
Fast Convergence after MSTP Topology Changes...................................................................................................305
Egress Interface Selection (EIS) for HTTP and IGMP Applications........................................................................305
Enabling and Disabling Management Egress Interface Selection......................................................................306
Handling of Management Route Conguration................................................................................................... 307
Handling of Switch-Initiated Trac....................................................................................................................... 308
Handling of Switch-Destined Trac......................................................................................................................308
Handling of Transit Trac (Trac Separation).................................................................................................... 309
Mapping of Management Applications and Trac Type.....................................................................................309
Behavior of Various Applications for Switch-Initiated Trac .............................................................................310
Behavior of Various Applications for Switch-Destined Trac ............................................................................ 311
Interworking of EIS With Various Applications......................................................................................................312
Designating a Multicast Router Interface....................................................................................................................312
Resetting an Interface to its Factory Default State....................................................................................................317
Enabling Energy Ecient Ethernet.............................................................................................................................. 318
Enabling a Physical Interface........................................................................................................................................323
Conguration Task List for Physical Interfaces.................................................................................................... 324
Contents
11
Overview of Layer Modes.......................................................................................................................................324
Important Points to Remember............................................................................................................................. 326
Port Channel Interfaces................................................................................................................................................330
Port Channel Denition and Standards..................................................................................................................331
Port Channel Benets..............................................................................................................................................331
Port Channel Implementation................................................................................................................................. 331
Interfaces in Port Channels.................................................................................................................................... 332
Conguration Tasks for Port Channel Interfaces.................................................................................................332
Creating a Port Channel..........................................................................................................................................332
Adding a Physical Interface to a Port Channel.....................................................................................................333
Reassigning an Interface to a New Port Channel................................................................................................ 334
Conguring the Minimum Oper Up Links in a Port Channel.............................................................................. 335
Adding or Removing a Port Channel from a VLAN............................................................................................. 335
Assigning an IP Address to a Port Channel.......................................................................................................... 336
Deleting or Disabling a Port Channel..................................................................................................................... 337
Load Balancing Through Port Channels................................................................................................................ 337
Changing the Hash Algorithm................................................................................................................................338
Dening Interface Range Macros................................................................................................................................. 341
Dene the Interface Range.....................................................................................................................................341
Choosing an Interface-Range Macro..................................................................................................................... 341
Monitoring and Maintaining Interfaces........................................................................................................................342
Maintenance Using TDR.........................................................................................................................................343
Link Dampening..............................................................................................................................................................343
Important Points to Remember..............................................................................................................................343
Enabling Link Dampening........................................................................................................................................344
Link Bundle Monitoring................................................................................................................................................. 345
Using Ethernet Pause Frames for Flow Control........................................................................................................346
Congure the MTU Size on an Interface....................................................................................................................347
Auto-Negotiation on Ethernet Interfaces...................................................................................................................348
Setting the Speed of Ethernet Interfaces............................................................................................................ 348
Set Auto-Negotiation Options............................................................................................................................... 350
IP Addresses...................................................................................................................................................................359
Conguration Tasks for IP Addresses......................................................................................................................... 359
Assigning IP Addresses to an Interface.......................................................................................................................359
Resolution of Host Names............................................................................................................................................363
Enabling Dynamic Resolution of Host Names............................................................................................................364
Specifying the Local System Domain and a List of Domains................................................................................... 364
Conguring DNS with Traceroute............................................................................................................................... 365
Conguration Tasks for ARP........................................................................................................................................ 366
ARP Learning via Gratuitous ARP................................................................................................................................367
Enabling ARP Learning via Gratuitous ARP................................................................................................................ 367
ARP Learning via ARP Request................................................................................................................................... 367
Conguration Tasks for ICMP...................................................................................................................................... 369
Important Points to Remember..............................................................................................................................370
Conguring a Broadcast Address................................................................................................................................ 370
Congurations Using UDP Helper................................................................................................................................ 371
UDP Helper with Broadcast-All Addresses..................................................................................................................371
UDP Helper with Subnet Broadcast Addresses......................................................................................................... 372
UDP Helper with Congured Broadcast Addresses.................................................................................................. 372
UDP Helper with No Congured Broadcast Addresses............................................................................................373
Path MTU Discovery.....................................................................................................................................................382
IPv6 Neighbor Discovery of MTU Packets...........................................................................................................383
Conguration Task List for IPv6 RDNSS.................................................................................................................... 383
Conguring the IPv6 Recursive DNS Server....................................................................................................... 383
Debugging IPv6 RDNSS Information Sent to the Host ..................................................................................... 384
Secure Shell (SSH) Over an IPv6 Transport.............................................................................................................. 385
Conguration Tasks for IPv6........................................................................................................................................ 386
Adjusting Your CAM-Prole....................................................................................................................................386
Assigning an IPv6 Address to an Interface........................................................................................................... 387
Assigning a Static IPv6 Route................................................................................................................................ 387
Conguring Telnet with IPv6..................................................................................................................................388
SNMP over IPv6......................................................................................................................................................388
Conguring IPv6 RA Guard.......................................................................................................................................... 392
Conguring IPv6 RA Guard on an Interface.........................................................................................................393
Monitoring IPv6 RA Guard......................................................................................................................................394
Application of Quality of Service to iSCSI Trac Flows......................................................................................397
14
Contents
Information Monitored in iSCSI Trac Flows....................................................................................................... 397
Detection and Auto-Conguration for Dell EqualLogic Arrays........................................................................... 398
Conguring Detection and Ports for Dell Compellent Arrays............................................................................. 398
Synchronizing iSCSI Sessions Learned on VLT-Lags with VLT-Peer.................................................................399
Enable and Disable iSCSI Optimization.................................................................................................................399
Conguration Tasks for IS-IS..................................................................................................................................408
Conguring the Distance of a Route......................................................................................................................415
Changing the IS-Type............................................................................................................................................... 416
Setting the Overload Bit.........................................................................................................................................420
Maximum Values in the Routing Table...................................................................................................................422
Change the IS-IS Metric Style in One Level Only................................................................................................422
Leaks from One Level to Another..........................................................................................................................424
25 Link Aggregation Control Protocol (LACP)...............................................................................................427
Introduction to Dynamic LAGs and LACP...................................................................................................................427
Important Points to Remember..............................................................................................................................427
Creating a LAG.........................................................................................................................................................429
Conguring the LAG Interfaces as Dynamic........................................................................................................429
Setting the LACP Long Timeout............................................................................................................................430
Monitoring and Debugging LACP..........................................................................................................................430
Contents
15
Shared LAG State Tracking...........................................................................................................................................431
Conguring Shared LAG State Tracking................................................................................................................431
Important Points about Shared LAG State Tracking...........................................................................................433
Congure a LAG on ALPHA................................................................................................................................... 433
Manage the MAC Address Table................................................................................................................................. 442
Clearing the MAC Address Table........................................................................................................................... 442
Setting the Aging Time for Dynamic Entries........................................................................................................442
Conguring a Static MAC Address........................................................................................................................443
Displaying the MAC Address Table........................................................................................................................443
MAC Learning Limit.......................................................................................................................................................443
Setting the MAC Learning Limit.............................................................................................................................444
mac learning-limit Dynamic.....................................................................................................................................444
mac learning-limit mac-address-sticky................................................................................................................. 444
mac learning-limit station-move............................................................................................................................ 445
mac learning-limit no-station-move...................................................................................................................... 445
Setting Station Move Violation Actions................................................................................................................ 446
Recovering from Learning Limit and Station Move Violations........................................................................... 446
Disabling MAC Address Learning on the System.................................................................................................447
NIC Teaming................................................................................................................................................................... 447
FEFD State Changes...............................................................................................................................................452
Enabling FEFD on an Interface...............................................................................................................................453
Protocol Data Units................................................................................................................................................. 456
TIA Organizationally Specic TLVs........................................................................................................................ 459
Related Conguration Tasks...................................................................................................................................463
Important Points to Remember............................................................................................................................. 463
Disabling and Undoing LLDP..................................................................................................................................465
Enabling LLDP on Management Ports........................................................................................................................465
16
Contents
Disabling and Undoing LLDP on Management Ports..........................................................................................465
Viewing the LLDP Conguration................................................................................................................................. 466
Viewing Information Advertised by Adjacent LLDP Agents......................................................................................467
Conguring Transmit and Receive Mode....................................................................................................................469
Conguring the Time to Live Value............................................................................................................................. 469
Limitations of the NLB Feature.................................................................................................................................... 477
Microsoft Clustering......................................................................................................................................................477
Enable and Disable VLAN Flooding .............................................................................................................................477
Conguring a Switch for NLB ..................................................................................................................................... 477
Enabling a Switch for Multicast NLB.....................................................................................................................478
Related Conguration Tasks....................................................................................................................................481
Manage the Source-Active Cache.............................................................................................................................. 486
Viewing the Source-Active Cache.........................................................................................................................486
Limiting the Source-Active Cache.........................................................................................................................486
Clearing the Source-Active Cache........................................................................................................................ 487
Enabling the Rejected Source-Active Cache........................................................................................................487
Accept Source-Active Messages that Fail the RFP Check......................................................................................487
Limiting the Source-Active Messages from a Peer....................................................................................................491
Preventing MSDP from Caching a Local Source........................................................................................................491
Preventing MSDP from Caching a Remote Source.................................................................................................. 492
Preventing MSDP from Advertising a Local Source..................................................................................................492
Logging Changes in Peership States...........................................................................................................................493
Terminating a Peership..................................................................................................................................................493
MSDP with Anycast RP................................................................................................................................................495
Spanning Tree Variations.............................................................................................................................................. 503
Congure Multiple Spanning Tree Protocol................................................................................................................503
Related Conguration Tasks...................................................................................................................................504
Enable Multiple Spanning Tree Globally...................................................................................................................... 504
Adding and Removing Interfaces.................................................................................................................................504
Creating Multiple Spanning Tree Instances................................................................................................................505
Interoperate with Non-Dell Bridges.............................................................................................................................506
Changing the Region Name or Revision..................................................................................................................... 507
Modifying Global Parameters....................................................................................................................................... 507
Modifying the Interface Parameters........................................................................................................................... 508
Conguring an EdgePort..............................................................................................................................................509
Flush MAC Addresses after a Topology Change........................................................................................................ 510
Enabling IP Multicast......................................................................................................................................................516
Track IPv4 and IPv6 Routes...................................................................................................................................535
Set Tracking Delays................................................................................................................................................. 536
Tracking a Layer 2 Interface................................................................................................................................... 536
Tracking a Layer 3 Interface................................................................................................................................... 537
Track an IPv4/IPv6 Route......................................................................................................................................539
Autonomous System (AS) Areas........................................................................................................................... 544
Area Types................................................................................................................................................................ 545
Networks and Neighbors........................................................................................................................................546
Router Priority and Cost.........................................................................................................................................549
OSPF with Dell Networking OS...................................................................................................................................550
Fast Convergence (OSPFv2, IPv4 Only)..............................................................................................................552
Multi-Process OSPFv2 with VRF..........................................................................................................................552
Applying cost for OSPFv3......................................................................................................................................568
Assigning IPv6 Addresses on an Interface........................................................................................................... 569
Assigning Area ID on an Interface..........................................................................................................................569
Assigning OSPFv3 Process ID and Router ID Globally........................................................................................569
Assigning OSPFv3 Process ID and Router ID to a VRF......................................................................................570
Conguring a Default Route....................................................................................................................................571
OSPFv3 Authentication Using IPsec..................................................................................................................... 574
Conguration Task List for Policy-based Routing......................................................................................................583
Create a Redirect List..............................................................................................................................................584
Create a Rule for a Redirect-list.............................................................................................................................584
Apply a Redirect-list to an Interface using a Redirect-group............................................................................. 586
Related Conguration Tasks...................................................................................................................................594
Conguring a Static Rendezvous Point......................................................................................................................595
Conguring a Designated Router................................................................................................................................ 596
Creating Multicast Boundaries and Domains............................................................................................................. 596
Important Points to Remember..............................................................................................................................597
Related Conguration Tasks...................................................................................................................................598
Use PIM-SSM with IGMP Version 2 Hosts................................................................................................................598
Conguring PIM-SSM with IGMPv2.................................................................................................................... 599
Electing an RP using the BSR Mechanism.................................................................................................................600
Enabling RP to Server Specic Multicast Groups...............................................................................................600
37 Power over Ethernet (PoE)..................................................................................................................... 602
Conguring PoE or PoE+..............................................................................................................................................602
Upgrading the PoE Controller................................................................................................................................ 603
Manage Ports using Power Priority and Power Budget...........................................................................................604
Determine the Power Priority................................................................................................................................ 604
Set the Threshold Limit for the PoE Power Budget........................................................................................... 605
Manage Power Priorities........................................................................................................................................ 606
Power Allocation to Ports.......................................................................................................................................606
Power Allocation to Additional Ports.....................................................................................................................607
Suspend Power Delivery on a Port..............................................................................................................................607
Restore Power Delivery on a Port............................................................................................................................... 608
Display the Power Details............................................................................................................................................. 608
38 Port Monitoring.......................................................................................................................................609
Important Points to Remember................................................................................................................................... 609
Port Monitoring.............................................................................................................................................................. 610
Conguring Port Monitoring......................................................................................................................................... 612
Remote Port Mirroring...................................................................................................................................................615
Remote Port Mirroring Example............................................................................................................................. 615
20
Contents
Conguring Remote Port Mirroring........................................................................................................................616
Conguring the Sample Remote Port Mirroring...................................................................................................618
Encapsulated Remote Port Monitoring....................................................................................................................... 621
ERPM Behavior on a typical Dell Networking OS .....................................................................................................623
Decapsulation of ERPM packets at the Destination IP/ Analyzer..................................................................... 623
Port Monitoring on VLT.................................................................................................................................................624
VLT Non-fail over Scenario.....................................................................................................................................624
RPM over VLT Scenarios........................................................................................................................................625
Using the Private VLAN Commands...........................................................................................................................628
Creating a Primary VLAN....................................................................................................................................... 630
Creating a Community VLAN..................................................................................................................................631
Creating an Isolated VLAN...................................................................................................................................... 631
Congure Per-VLAN Spanning Tree Plus....................................................................................................................637
Related Conguration Tasks................................................................................................................................... 637
Modifying Global PVST+ Parameters..........................................................................................................................640
Conguring an EdgePort.............................................................................................................................................. 642
PVST+ in Multi-Vendor Networks............................................................................................................................... 642
Enabling PVST+ Extend System ID............................................................................................................................. 642
41 Quality of Service (QoS).......................................................................................................................... 646
Create a QoS Policy................................................................................................................................................ 654
DSCP Color Maps......................................................................................................................................................... 660
Creating a DSCP Color Map...................................................................................................................................661
Displaying DSCP Color Maps................................................................................................................................. 662
Displaying a DSCP Color Policy Conguration .................................................................................................... 662
Weighted Random Early Detection..............................................................................................................................663
Applying a WRED Prole to Trac........................................................................................................................665
Displaying Default and Congured WRED Proles..............................................................................................665
Displaying WRED Drop Statistics...........................................................................................................................665
Pre-Calculating Available QoS CAM Space................................................................................................................666
Conguring Weights and ECN for WRED ..................................................................................................................667
Global Service Pools With WRED and ECN Settings..........................................................................................668
Conguring WRED and ECN Attributes..................................................................................................................... 669
Guidelines for Conguring ECN for Classifying and Color-Marking Packets.........................................................669
Sample conguration to mark non-ecn packets as “yellow” with Multiple trac class..................................670
Classifying Incoming Packets Using ECN and Color-Marking............................................................................670
Sample conguration to mark non-ecn packets as “yellow” with single trac class......................................672
Applying Layer 2 Match Criteria on a Layer 3 Interface............................................................................................673
Applying DSCP and VLAN Match Criteria on a Service Queue............................................................................... 674
Classifying Incoming Packets Using ECN and Color-Marking..................................................................................675
Guidelines for Conguring ECN for Classifying and Color-Marking Packets......................................................... 676
Sample conguration to mark non-ecn packets as “yellow” with Multiple trac class........................................ 677
Sample conguration to mark non-ecn packets as “yellow” with single trac class............................................ 677
42 Routing Information Protocol (RIP)......................................................................................................... 679
Setting the RMON Alarm....................................................................................................................................... 693
Conguring an RMON Event................................................................................................................................. 693
Related Conguration Tasks...................................................................................................................................696
Important Points to Remember................................................................................................................................... 696
RSTP and VLT.......................................................................................................................................................... 697
Conguring Interfaces for Layer 2 Mode....................................................................................................................697
Enabling Rapid Spanning Tree Protocol Globally........................................................................................................698
Adding and Removing Interfaces................................................................................................................................. 700
Modifying Global Parameters....................................................................................................................................... 700
Enabling SNMP Traps for Root Elections and Topology Changes..................................................................... 702
Conguring an EdgePort.............................................................................................................................................. 703
Conguring Fast Hellos for Link State Detection.......................................................................................................704
Conguration Task List for AAA Authentication.................................................................................................. 709
Obscuring Passwords and Keys....................................................................................................................................712
Conguration Task List for Privilege Levels...........................................................................................................713
Conguration Task List for RADIUS....................................................................................................................... 718
Conguration Task List for TACACS+................................................................................................................... 722
Protection from TCP Tiny and Overlapping Fragment Attacks............................................................................... 725
Enabling SCP and SSH..................................................................................................................................................725
Using SCP with SSH to Copy a Software Image.................................................................................................726
Removing the RSA Host Keys and Zeroizing Storage ........................................................................................727
Conguring When to Re-generate an SSH Key ..................................................................................................727
Conguring the SSH Server Key Exchange Algorithm....................................................................................... 728
Conguring the HMAC Algorithm for the SSH Server....................................................................................... 728
Conguring the SSH Server Cipher List...............................................................................................................729
VTY Line and Access-Class Conguration................................................................................................................. 732
VTY Line Local Authentication and Authorization............................................................................................... 733
VTY Line Remote Authentication and Authorization...........................................................................................733
Overview of RBAC...................................................................................................................................................735
User Roles.................................................................................................................................................................737
AAA Authentication and Authorization for Roles.................................................................................................740
Role Accounting....................................................................................................................................................... 743
Display Information About User Roles................................................................................................................... 743
Two Factor Authentication (2FA).................................................................................................................................745
Conguring the System to Drop Certain ICMP Reply Messages............................................................................ 746
47 Service Provider Bridging.........................................................................................................................748
Important Points to Remember..............................................................................................................................749
Creating Access and Trunk Ports.......................................................................................................................... 750
Enable VLAN-Stacking for a VLAN........................................................................................................................751
Conguring the Protocol Type Value for the Outer VLAN Tag........................................................................... 751
Conguring Dell Networking OS Options for Trunk Ports................................................................................... 751
VLAN Stacking in Multi-Vendor Networks........................................................................................................... 753
VLAN Stacking Packet Drop Precedence...................................................................................................................757
Enabling Drop Eligibility............................................................................................................................................757
Honoring the Incoming DEI Value..........................................................................................................................758
Marking Egress Packets with a DEI Value............................................................................................................758
Dynamic Mode CoS for VLAN Stacking.....................................................................................................................759
Mapping C-Tag to S-Tag dot1p Values...................................................................................................................760
Important Points to Remember..............................................................................................................................766
Enabling and Disabling sFlow on an Interface............................................................................................................ 766
sFlow Show Commands................................................................................................................................................767
Displaying Show sFlow Global................................................................................................................................768
Displaying Show sFlow on an Interface.................................................................................................................768
Displaying Show sFlow on a Stack-unit................................................................................................................ 769
Changing the Polling Intervals......................................................................................................................................769
sFlow on LAG ports....................................................................................................................................................... 770
Important Points to Remember...............................................................................................................................771
SNMPv3 Compliance With FIPS..................................................................................................................................773
Conguration Task List for SNMP................................................................................................................................774
Related Conguration Tasks....................................................................................................................................774
Important Points to Remember....................................................................................................................................775
Set up SNMP................................................................................................................................................................. 775
Creating a Community.............................................................................................................................................775
Setting Up User-Based Security (SNMPv3)........................................................................................................775
Conguring Contact and Location Information using SNMP...................................................................................778
Subscribing to Managed Object Value Updates using SNMP..................................................................................778
Enabling a Subset of SNMP Traps...............................................................................................................................779
Enabling an SNMP Agent to Notify Syslog Server Failure........................................................................................ 781
Copy Conguration Files Using SNMP........................................................................................................................782
Copying a Conguration File...................................................................................................................................783
Copying Conguration Files via SNMP................................................................................................................. 784
Copying the Startup-Cong Files to the Running-Cong.................................................................................. 785
Copying the Startup-Cong Files to the Server via FTP....................................................................................785
Copying the Startup-Cong Files to the Server via TFTP................................................................................. 785
Copy a Binary File to the Startup-Conguration................................................................................................. 786
Additional MIB Objects to View Copy Statistics..................................................................................................786
Obtaining a Value for MIB Objects.........................................................................................................................787
MIB Support for Power Monitoring............................................................................................................................. 787
MIB Support to Display the Available Memory Size on Flash...................................................................................788
Viewing the Available Flash Memory Size.............................................................................................................788
MIB Support to Display the Software Core Files Generated by the System..........................................................789
Viewing the Software Core Files Generated by the System..............................................................................789
SNMP Support for WRED Green/Yellow/Red Drop Counters................................................................................790
MIB Support to Display the Available Partitions on Flash..........................................................................................791
Viewing the Available Partitions on Flash.............................................................................................................. 791
MIB Support to Display Egress Queue Statistics.......................................................................................................792
Contents
25
MIB Support to Display Egress Queue Statistics.......................................................................................................792
Viewing the ECMP Group Count Information...................................................................................................... 792
MIB Support for entAliasMappingTable ..................................................................................................................... 795
Viewing the entAliasMappingTable MIB................................................................................................................795
MIB Support for LAG.................................................................................................................................................... 796
Viewing the LAG MIB.............................................................................................................................................. 797
Manage VLANs using SNMP....................................................................................................................................... 797
Creating a VLAN...................................................................................................................................................... 797
Assigning a VLAN Alias............................................................................................................................................797
Displaying the Ports in a VLAN.............................................................................................................................. 798
Add Tagged and Untagged Ports to a VLAN....................................................................................................... 799
Managing Overload on Startup....................................................................................................................................800
Enabling and Disabling a Port using SNMP................................................................................................................800
Fetch Dynamic MAC Entries using SNMP..................................................................................................................801
MAC Addressing on Stacks.....................................................................................................................................812
High Availability on Stacks.......................................................................................................................................816
Management Access on Stacks............................................................................................................................. 817
Important Points to Remember.................................................................................................................................... 818
Create a Stack.......................................................................................................................................................... 818
Add Units to an Existing Stack............................................................................................................................... 821
Split a Stack..............................................................................................................................................................823
Assigning Unit Numbers to Units in an Stack.......................................................................................................824
Creating a Virtual Stack Unit on a Stack...............................................................................................................824
Displaying Information about a Stack....................................................................................................................825
Inuencing Management Unit Selection on a Stack........................................................................................... 828
Managing Redundancy on a Stack........................................................................................................................829
Resetting a Unit on a Stack....................................................................................................................................829
Verify a Stack Conguration........................................................................................................................................ 830
Displaying the Status of Stacking Ports............................................................................................................... 830
26
Contents
Removing a Unit from a Stack......................................................................................................................................831
Troubleshoot a Stack.....................................................................................................................................................833
Recover from Stack Link Flaps.............................................................................................................................. 833
Recover from a Card Problem State on a Stack..................................................................................................833
Related Conguration Tasks...................................................................................................................................838
Important Points to Remember................................................................................................................................... 838
Conguring Interfaces for Layer 2 Mode....................................................................................................................839
Enabling Spanning Tree Protocol Globally...................................................................................................................840
Adding an Interface to the Spanning Tree Group...................................................................................................... 842
Modifying Global Parameters....................................................................................................................................... 842
Enabling SNMP Traps for Root Elections and Topology Changes...........................................................................848
Conguring Spanning Trees as Hitless........................................................................................................................848
54 System Time and Date.............................................................................................................................859
Network Time Protocol.................................................................................................................................................859
Congure the Network Time Protocol..................................................................................................................860
Disabling NTP on an Interface................................................................................................................................862
Conguring a Source IP Address for NTP Packets.............................................................................................862
Dell Networking OS Time and Date.............................................................................................................................865
Conguration Task List .......................................................................................................................................... 865
Setting the Time and Date for the Switch Software Clock............................................................................... 865
Setting the Timezone..............................................................................................................................................865
Set Daylight Saving Time........................................................................................................................................866
Setting Daylight Saving Time Once.......................................................................................................................866
Conguring a Tunnel......................................................................................................................................................869
Conguring a Tunnel Interface..................................................................................................................................... 870
How Uplink Failure Detection Works............................................................................................................................874
UFD and NIC Teaming...................................................................................................................................................875
Important Points to Remember....................................................................................................................................875
Clearing a UFD-Disabled Interface...............................................................................................................................877
Get Help with Upgrades............................................................................................................................................... 882
VLANs and Port Tagging.............................................................................................................................................. 885
Creating a Port-Based VLAN.................................................................................................................................885
Assigning Interfaces to a VLAN............................................................................................................................. 886
Assigning an IP Address to a VLAN.......................................................................................................................888
Enabling Null VLAN as the Default VLAN...................................................................................................................889
59 Virtual Link Trunking (VLT)...................................................................................................................... 890
Layer-2 Trac in VLT Domains...............................................................................................................................894
VLT on Core Switches............................................................................................................................................ 895
Congure Virtual Link Trunking.................................................................................................................................... 897
Important Points to Remember..............................................................................................................................897
Primary and Secondary VLT Peers.........................................................................................................................901
RSTP and VLT.......................................................................................................................................................... 901
VLT and Stacking.....................................................................................................................................................902
VLT and IGMP Snooping........................................................................................................................................ 902
VLT Port Delayed Restoration................................................................................................................................903
PIM-Sparse Mode Support on VLT.......................................................................................................................903
Verifying a VLT Conguration.......................................................................................................................................934
Reconguring Stacked Switches as VLT....................................................................................................................940
Specifying VLT Nodes in a PVLAN..............................................................................................................................940
Association of VLTi as a Member of a PVLAN..................................................................................................... 941
MAC Synchronization for VLT Nodes in a PVLAN............................................................................................... 941
PVLAN Operations When One VLT Peer is Down...............................................................................................942
PVLAN Operations When a VLT Peer is Restarted.............................................................................................942
Interoperation of VLT Nodes in a PVLAN with ARP Requests..........................................................................942
Scenarios for VLAN Membership and MAC Synchronization With VLT Nodes in PVLAN............................ 942
Conguring a VLT VLAN or LAG in a PVLAN............................................................................................................ 944
Contents
29
Creating a VLT LAG or a VLT VLAN......................................................................................................................944
Associating the VLT LAG or VLT VLAN in a PVLAN...........................................................................................945
Proxy ARP Capability on VLT Peer Nodes..................................................................................................................946
Working of Proxy ARP for VLT Peer Nodes......................................................................................................... 946
VLT Nodes as Rendezvous Points for Multicast Resiliency......................................................................................947
Conguring VLAN-Stack over VLT..............................................................................................................................947
IPv6 Peer Routing in VLT Domains Overview.............................................................................................................951
Synchronization of IPv6 ND Entries in a VLT Domain......................................................................................... 951
Synchronization of IPv6 ND Entries in a Non-VLT Domain................................................................................ 952
Tunneling IPv6 ND in a VLT Domain......................................................................................................................952
Sample Conguration of IPv6 Peer Routing in a VLT Domain........................................................................... 953
Creating a Non-Default VRF Instance...................................................................................................................970
Assigning an Interface to a VRF..............................................................................................................................971
Assigning a Front-end Port to a Management VRF............................................................................................. 971
Assigning an OSPF Process to a VRF Instance...................................................................................................972
Conguring VRRP on a VRF Instance...................................................................................................................972
Conguring a Static Route......................................................................................................................................973