Dell PC6224, PC6248, PC6224F, PC6224P, PC6248P User Manual

Page 1
Dell PowerConnect 6200 Series System
CLI Reference Guide
Regulatory Models: PC6224, PC6248, PC6224P, PC6248P, and PC6224F
Page 2
Notes
NOTE: A NOTE indicates important information that helps you make better use of
your computer.
_________________
Information in this publication is subject to change without notice. © 2011 Dell Inc. All rights reserved.
Reproduction of these materials in any manner whatsoever without the written permission of Dell Inc. is strictly forbidden.
Trademarks used in this text: Dell™, the DELL logo, PowerConnect™, OpenManage™ are trademarks of Dell Inc. Microsoft are either trademarks or registered trademarks of Microsoft Corporation in the United States and/or other countries. sFlow trademark of Cisco Systems.
Other trademarks and trade names may be used in this publication to refer to either the entities claiming the marks and names or their products. Dell Inc. disclaims any proprietary interest in trademarks and trade names other than its own.
®
is a registered trademark of InMon Corporation. Cisco® is a registered
®
, Windows®, Windows Server®, MS-DOS® and Windows Vista®
Regulatory Models: PC6224, PC6248, PC6224P, PC6248P, and PC6224F
March 2011 Rev. A06
Page 3
Contents
1 Command Groups . . . . . . . . . . . . . . . . . . 59
Introduction . . . . . . . . . . . . . . . . . . . . . . . 59
Command Groups
Mode Types . . . . . . . . . . . . . . . . . . . . . . . 64
Layer 2 Commands
Layer 3 Commands . . . . . . . . . . . . . . . . . . . . 94
Utility Commands . . . . . . . . . . . . . . . . . . . . 120
. . . . . . . . . . . . . . . . . . . . 59
. . . . . . . . . . . . . . . . . . . . 65
2 Using the CLI . . . . . . . . . . . . . . . . . . . . . 139
Introduction . . . . . . . . . . . . . . . . . . . . . . . 139
Entering and Editing CLI Commands. . . . . . . . . . . 139
CLI Command Modes . . . . . . . . . . . . . . . . . . 145
Starting the CLI
Using CLI Functions and Tools. . . . . . . . . . . . . . 169
. . . . . . . . . . . . . . . . . . . . . . 158
3 AAA Commands . . . . . . . . . . . . . . . . . . . 191
aaa authentication dot1x . . . . . . . . . . . . . . . . 192
aaa authentication enable
. . . . . . . . . . . . . . . . 193
Contents 3
Page 4
aaa authentication login . . . . . . . . . . . . . . . . 194
aaa authorization network default radius
. . . . . . . 196
enable authentication . . . . . . . . . . . . . . . . . 197
enable password . . . . . . . . . . . . . . . . . . . . 198
ip http authentication
ip https authentication
. . . . . . . . . . . . . . . . . 199
. . . . . . . . . . . . . . . . . 200
login authentication . . . . . . . . . . . . . . . . . . 201
password (Line Configuration)
. . . . . . . . . . . . . 202
password (User EXEC) . . . . . . . . . . . . . . . . . 202
show authentication methods . . . . . . . . . . . . . 203
show users accounts
. . . . . . . . . . . . . . . . . 205
show users login-history . . . . . . . . . . . . . . . 206
username. . . . . . . . . . . . . . . . . . . . . . . . 207
4 ACL Commands . . . . . . . . . . . . . . . . . . . 209
4 Contents
access-list . . . . . . . . . . . . . . . . . . . . . . . 210
deny | permit . . . . . . . . . . . . . . . . . . . . . . 211
ip access-group
no ip access-group
. . . . . . . . . . . . . . . . . . . . 213
. . . . . . . . . . . . . . . . . . . 213
mac access-group . . . . . . . . . . . . . . . . . . . 214
mac access-list extended
mac access-list extended rename
. . . . . . . . . . . . . . . 216
. . . . . . . . . . 217
Page 5
show ip access-lists. . . . . . . . . . . . . . . . . . . 218
show mac access-list
. . . . . . . . . . . . . . . . . . 219
5 Address Table Commands . . . . . . . . . . . 221
bridge address . . . . . . . . . . . . . . . . . . . . . . 222
bridge aging-time . . . . . . . . . . . . . . . . . . . . 223
bridge multicast address
bridge multicast filtering . . . . . . . . . . . . . . . . 225
bridge multicast forbidden address . . . . . . . . . . . 226
bridge multicast forbidden forward-unregistered
bridge multicast forward-all . . . . . . . . . . . . . . 228
bridge multicast forward-unregistered . . . . . . . . . 228
clear bridge
. . . . . . . . . . . . . . . . . . . . . . . 229
port security . . . . . . . . . . . . . . . . . . . . . . . 230
port security max . . . . . . . . . . . . . . . . . . . . 231
. . . . . . . . . . . . . . . . 223
. . . 227
show bridge address-table
. . . . . . . . . . . . . . . 232
show bridge address-table count . . . . . . . . . . . . 233
show bridge address-table static
show bridge multicast address-table
. . . . . . . . . . . . 234
. . . . . . . . . . 235
show bridge multicast filtering . . . . . . . . . . . . . 236
show ports security
show ports security addresses
. . . . . . . . . . . . . . . . . . . 237
. . . . . . . . . . . . . 238
Contents 5
Page 6
6 CDP Interoperability Commands . . . . . . 241
clear isdp counters . . . . . . . . . . . . . . . . . . 242
clear isdp table. . . . . . . . . . . . . . . . . . . . . 242
isdp advertise-v2. . . . . . . . . . . . . . . . . . . . 243
isdp enable
. . . . . . . . . . . . . . . . . . . . . . . 243
isdp holdtime. . . . . . . . . . . . . . . . . . . . . . 244
isdp timer. . . . . . . . . . . . . . . . . . . . . . . . 245
show isdp
. . . . . . . . . . . . . . . . . . . . . . . 246
show isdp entry . . . . . . . . . . . . . . . . . . . . 247
show isdp interface . . . . . . . . . . . . . . . . . . 249
show isdp neighbors
. . . . . . . . . . . . . . . . . . 251
show isdp traffic . . . . . . . . . . . . . . . . . . . . 252
7 DHCP Layer 2 Relay Commands. . . . . . . 255
dhcp l2relay (Global Configuration) . . . . . . . . . . 256
dhcp l2relay (Interface Configuration)
dhcp l2relay circuit-id . . . . . . . . . . . . . . . . . 257
dhcp l2relay remote-id
. . . . . . . . . . . . . . . . . 258
. . . . . . . . . 256
6 Contents
dhcp l2relay trust
. . . . . . . . . . . . . . . . . . . . 259
dhcp l2relay vlan . . . . . . . . . . . . . . . . . . . . 259
Page 7
8 DHCP Snooping Commands . . . . . . . . . . 261
clear ip dhcp snooping statistics . . . . . . . . . . . . 262
ip dhcp snooping. . . . . . . . . . . . . . . . . . . . . 262
ip dhcp snooping binding . . . . . . . . . . . . . . . . 263
ip dhcp snooping database
. . . . . . . . . . . . . . . 264
ip dhcp snooping database write-delay . . . . . . . . 265
ip dhcp snooping limit . . . . . . . . . . . . . . . . . . 266
ip dhcp snooping log-invalid
. . . . . . . . . . . . . . 267
ip dhcp snooping trust . . . . . . . . . . . . . . . . . . 267
ip dhcp snooping verify mac-address . . . . . . . . . . 268
show ip dhcp snooping
. . . . . . . . . . . . . . . . . 269
show ip dhcp snooping binding . . . . . . . . . . . . . 270
show ip dhcp snooping database . . . . . . . . . . . . 271
show ip dhcp snooping interfaces
. . . . . . . . . . . 272
show ip dhcp snooping statistics . . . . . . . . . . . . 273
9 Dynamic ARP Inspection
Commands . . . . . . . . . . . . . . . . . . . . . . . 275
arp access-list . . . . . . . . . . . . . . . . . . . . . . 276
clear counters ip arp inspection
ip arp inspection filter
. . . . . . . . . . . . . . . . . . 277
. . . . . . . . . . . . 276
ip arp inspection limit . . . . . . . . . . . . . . . . . . 278
Contents 7
Page 8
ip arp inspection trust . . . . . . . . . . . . . . . . . 279
ip arp inspection validate
. . . . . . . . . . . . . . . 280
ip arp inspection vlan . . . . . . . . . . . . . . . . . 281
permit ip host mac host . . . . . . . . . . . . . . . . 282
show arp access-list
show ip arp inspection ethernet
. . . . . . . . . . . . . . . . . . 282
. . . . . . . . . . . . 283
show ip arp inspection statistics . . . . . . . . . . . 285
show ip arp inspection vlan
. . . . . . . . . . . . . . 287
10 Ethernet Configuration Commands . . . . 289
clear counters . . . . . . . . . . . . . . . . . . . . . 290
description . . . . . . . . . . . . . . . . . . . . . . . 290
duplex
. . . . . . . . . . . . . . . . . . . . . . . . . 291
flowcontrol . . . . . . . . . . . . . . . . . . . . . . . 292
interface ethernet . . . . . . . . . . . . . . . . . . . 293
8 Contents
interface range ethernet
. . . . . . . . . . . . . . . . 293
mtu . . . . . . . . . . . . . . . . . . . . . . . . . . . 294
negotiation
show interfaces advertise
. . . . . . . . . . . . . . . . . . . . . . . 295
. . . . . . . . . . . . . . . 296
show interfaces configuration. . . . . . . . . . . . . 297
show interfaces counters
show interfaces description
. . . . . . . . . . . . . . . 299
. . . . . . . . . . . . . . 302
Page 9
show interfaces detail . . . . . . . . . . . . . . . . . . 303
show interfaces status
. . . . . . . . . . . . . . . . . 307
show statistics ethernet . . . . . . . . . . . . . . . . . 310
show storm-control . . . . . . . . . . . . . . . . . . . 314
shutdown
speed
. . . . . . . . . . . . . . . . . . . . . . . . . 316
. . . . . . . . . . . . . . . . . . . . . . . . . . . 316
storm-control broadcast . . . . . . . . . . . . . . . . . 317
storm-control multicast
. . . . . . . . . . . . . . . . . 318
storm-control unicast . . . . . . . . . . . . . . . . . . 319
11 GVRP Commands . . . . . . . . . . . . . . . . . . 321
clear gvrp statistics . . . . . . . . . . . . . . . . . . . 322
garp timer
gvrp enable (global) . . . . . . . . . . . . . . . . . . . 324
gvrp enable (interface) . . . . . . . . . . . . . . . . . 324
. . . . . . . . . . . . . . . . . . . . . . . . 322
gvrp registration-forbid
. . . . . . . . . . . . . . . . . 325
gvrp vlan-creation-forbid . . . . . . . . . . . . . . . . 326
show gvrp configuration
show gvrp error-statistics
. . . . . . . . . . . . . . . . . 327
. . . . . . . . . . . . . . . . 328
show gvrp statistics . . . . . . . . . . . . . . . . . . . 330
Contents 9
Page 10
12 IGMP Snooping Commands . . . . . . . . . . 333
ip igmp snooping (global) . . . . . . . . . . . . . . . 334
ip igmp snooping (interface). . . . . . . . . . . . . . 334
ip igmp snooping host-time-out . . . . . . . . . . . . 335
ip igmp snooping leave-time-out
. . . . . . . . . . . 336
ip igmp snooping mrouter-time-out . . . . . . . . . . 337
show ip igmp snooping groups . . . . . . . . . . . . 338
show ip igmp snooping interface
. . . . . . . . . . . 339
show ip igmp snooping mrouter . . . . . . . . . . . . 340
ip igmp snooping (VLAN). . . . . . . . . . . . . . . . 341
ip igmp snooping fast-leave
. . . . . . . . . . . . . . 341
ip igmp snooping groupmembership-interval . . . . . 342
ip igmp snooping maxresponse . . . . . . . . . . . . 343
ip igmp snooping mcrtrexpiretime
. . . . . . . . . . 344
13 IGMP Snooping Querier Commands . . . 347
ip igmp snooping querier . . . . . . . . . . . . . . . 348
ip igmp snooping querier election participate
. . . . 349
10 Contents
ip igmp snooping querier query-interval
. . . . . . . 350
ip igmp snooping querier timer expiry . . . . . . . . 351
Page 11
ip igmp snooping querier version . . . . . . . . . . . . 351
show igmp snooping querier
. . . . . . . . . . . . . . 352
14 IP Addressing Commands . . . . . . . . . . . 355
clear host . . . . . . . . . . . . . . . . . . . . . . . . 356
ip address . . . . . . . . . . . . . . . . . . . . . . . . 356
ip address dhcp
ip address vlan . . . . . . . . . . . . . . . . . . . . . . 358
ip default-gateway. . . . . . . . . . . . . . . . . . . . 359
ip domain-lookup
ip domain-name . . . . . . . . . . . . . . . . . . . . . 360
ip host . . . . . . . . . . . . . . . . . . . . . . . . . . 361
ip name-server
ipv6 address . . . . . . . . . . . . . . . . . . . . . . . 363
ipv6 enable . . . . . . . . . . . . . . . . . . . . . . . . 364
. . . . . . . . . . . . . . . . . . . . . 357
. . . . . . . . . . . . . . . . . . . . 360
. . . . . . . . . . . . . . . . . . . . . . 362
ipv6 gateway
. . . . . . . . . . . . . . . . . . . . . . . 365
show arp switch . . . . . . . . . . . . . . . . . . . . . 366
show hosts
show ip helper-address
. . . . . . . . . . . . . . . . . . . . . . . . 367
. . . . . . . . . . . . . . . . . 368
show ip interface management . . . . . . . . . . . . . 369
Contents 11
Page 12
15 IPv6 Access List Commands . . . . . . . . . 371
{deny | permit} . . . . . . . . . . . . . . . . . . . . . 372
ipv6 access-list . . . . . . . . . . . . . . . . . . . . 374
ipv6 access-list rename . . . . . . . . . . . . . . . . 375
ipv6 traffic-filter
show ipv6 access-lists. . . . . . . . . . . . . . . . . 377
. . . . . . . . . . . . . . . . . . . . 376
16 IPv6 MLD Snooping Querier
Commands . . . . . . . . . . . . . . . . . . . . . . . 381
ipv6 mld snooping querier . . . . . . . . . . . . . . . 382
ipv6 mld snooping querier (VLAN mode) . . . . . . . 382
ipv6 mld snooping querier address
ipv6 mld snooping querier election participate. . . . 384
ipv6 mld snooping querier query-interval . . . . . . . 385
ipv6 mld snooping querier timer expiry
show ipv6 mld snooping querier. . . . . . . . . . . . 386
. . . . . . . . . . 383
. . . . . . . . 385
17 iSCSI Optimization Commands. . . . . . . . 389
iscsi enable . . . . . . . . . . . . . . . . . . . . . . 390
12 Contents
show iscsi
. . . . . . . . . . . . . . . . . . . . . . . 391
Page 13
18 LACP Commands . . . . . . . . . . . . . . . . . . 393
lacp port-priority . . . . . . . . . . . . . . . . . . . . . 394
lacp system-priority . . . . . . . . . . . . . . . . . . . 394
lacp timeout . . . . . . . . . . . . . . . . . . . . . . . 395
show lacp ethernet
. . . . . . . . . . . . . . . . . . . 396
show lacp port-channel . . . . . . . . . . . . . . . . . 398
19 Link Dependency Commands . . . . . . . . 401
link-dependency group . . . . . . . . . . . . . . . . . 402
no link-dependency group
add ethernet . . . . . . . . . . . . . . . . . . . . . . . 403
add port-channel. . . . . . . . . . . . . . . . . . . . . 404
no add port-channel
depends-on ethernet. . . . . . . . . . . . . . . . . . . 405
no depends-on ethernet . . . . . . . . . . . . . . . . . 406
depends-on port-channel
no depends-on port-channel . . . . . . . . . . . . . . 407
show link-dependency
. . . . . . . . . . . . . . . . 402
. . . . . . . . . . . . . . . . . . . 404
. . . . . . . . . . . . . . . . 406
. . . . . . . . . . . . . . . . . 408
20 LLDP Commands . . . . . . . . . . . . . . . . . . 411
clear lldp remote-data . . . . . . . . . . . . . . . . . . 412
clear lldp statistics . . . . . . . . . . . . . . . . . . . 412
Contents 13
Page 14
lldp med . . . . . . . . . . . . . . . . . . . . . . . . 413
lldp med confignotification
. . . . . . . . . . . . . . 414
lldp med faststartrepeatcount . . . . . . . . . . . . . 414
lldp med transmit-tlv . . . . . . . . . . . . . . . . . . 415
lldp notification
lldp notification-interval
. . . . . . . . . . . . . . . . . . . . 416
. . . . . . . . . . . . . . . . 417
lldp receive. . . . . . . . . . . . . . . . . . . . . . . 418
lldp timers
. . . . . . . . . . . . . . . . . . . . . . . 418
lldp transmit . . . . . . . . . . . . . . . . . . . . . . 420
lldp transmit-mgmt . . . . . . . . . . . . . . . . . . . 420
lldp transmit-tlv
. . . . . . . . . . . . . . . . . . . . 421
show lldp . . . . . . . . . . . . . . . . . . . . . . . . 422
show lldp interface . . . . . . . . . . . . . . . . . . 423
show lldp local-device
. . . . . . . . . . . . . . . . 424
show lldp med . . . . . . . . . . . . . . . . . . . . . 426
14 Contents
show lldp med interface . . . . . . . . . . . . . . . . 426
show lldp med local-device
. . . . . . . . . . . . . . 428
show lldp med remote-device . . . . . . . . . . . . . 430
show lldp remote-device . . . . . . . . . . . . . . . 433
show lldp statistics
. . . . . . . . . . . . . . . . . . 435
Page 15
21 Port Channel Commands . . . . . . . . . . . . 439
channel-group . . . . . . . . . . . . . . . . . . . . . . 440
interface port-channel . . . . . . . . . . . . . . . . . . 441
interface range port-channel . . . . . . . . . . . . . . 441
hashing-mode
. . . . . . . . . . . . . . . . . . . . . . 442
no hashing-mode . . . . . . . . . . . . . . . . . . . . 443
show interfaces port-channel . . . . . . . . . . . . . . 444
show statistics port-channel
. . . . . . . . . . . . . . 445
22 Port Monitor Commands . . . . . . . . . . . . 449
monitor session . . . . . . . . . . . . . . . . . . . . . 450
show monitor session . . . . . . . . . . . . . . . . . . 451
23 QoS Commands . . . . . . . . . . . . . . . . . . . 453
assign-queue. . . . . . . . . . . . . . . . . . . . . . . 455
class . . . . . . . . . . . . . . . . . . . . . . . . . . . 455
class-map . . . . . . . . . . . . . . . . . . . . . . . . 456
class-map rename
. . . . . . . . . . . . . . . . . . . . 457
classofservice dot1p-mapping . . . . . . . . . . . . . 458
classofservice ip-dscp-mapping
classofservice trust
. . . . . . . . . . . . . . . . . . . 460
. . . . . . . . . . . . 459
conform-color . . . . . . . . . . . . . . . . . . . . . . 461
Contents 15
Page 16
cos-queue min-bandwidth. . . . . . . . . . . . . . . 461
cos-queue strict
. . . . . . . . . . . . . . . . . . . . 462
diffserv . . . . . . . . . . . . . . . . . . . . . . . . . 463
drop. . . . . . . . . . . . . . . . . . . . . . . . . . . 464
mark cos
mark ip-dscp
. . . . . . . . . . . . . . . . . . . . . . . . 465
. . . . . . . . . . . . . . . . . . . . . . 465
mark ip-precedence . . . . . . . . . . . . . . . . . . 466
match class-map
. . . . . . . . . . . . . . . . . . . . 467
match cos . . . . . . . . . . . . . . . . . . . . . . . 468
match destination-address mac . . . . . . . . . . . . 469
match dstip
. . . . . . . . . . . . . . . . . . . . . . . 470
match dstip6 . . . . . . . . . . . . . . . . . . . . . . 471
match dstl4port . . . . . . . . . . . . . . . . . . . . . 471
match ethertype
. . . . . . . . . . . . . . . . . . . . 472
match ip6flowlbl . . . . . . . . . . . . . . . . . . . . 473
16 Contents
match ip dscp . . . . . . . . . . . . . . . . . . . . . 474
match ip precedence
. . . . . . . . . . . . . . . . . . 475
match ip tos . . . . . . . . . . . . . . . . . . . . . . 475
match protocol . . . . . . . . . . . . . . . . . . . . . 476
match source-address mac
. . . . . . . . . . . . . . 477
match srcip . . . . . . . . . . . . . . . . . . . . . . . 478
Page 17
match srcip6 . . . . . . . . . . . . . . . . . . . . . . . 479
match srcl4port
. . . . . . . . . . . . . . . . . . . . . 480
match vlan . . . . . . . . . . . . . . . . . . . . . . . . 481
mirror. . . . . . . . . . . . . . . . . . . . . . . . . . . 481
police-simple
policy-map
. . . . . . . . . . . . . . . . . . . . . . 482
. . . . . . . . . . . . . . . . . . . . . . . . 483
redirect. . . . . . . . . . . . . . . . . . . . . . . . . . 484
service-policy
. . . . . . . . . . . . . . . . . . . . . . 485
show class-map . . . . . . . . . . . . . . . . . . . . . 486
show classofservice dot1p-mapping . . . . . . . . . . 488
show classofservice ip-dscp-mapping
. . . . . . . . . 490
show classofservice trust . . . . . . . . . . . . . . . . 493
show diffserv. . . . . . . . . . . . . . . . . . . . . . . 494
show diffserv service interface ethernet in
. . . . . . . 495
show diffserv service interface port-channel in . . . . 496
show diffserv service brief . . . . . . . . . . . . . . . 497
show interfaces cos-queue
. . . . . . . . . . . . . . . 498
show policy-map . . . . . . . . . . . . . . . . . . . . 500
show policy-map interface . . . . . . . . . . . . . . . 501
show service-policy
. . . . . . . . . . . . . . . . . . . 502
traffic-shape . . . . . . . . . . . . . . . . . . . . . . . 504
Contents 17
Page 18
24 RADIUS Commands . . . . . . . . . . . . . . . . 505
aaa accounting network default start-stop group radius
. . . . . . . . . . . . . . . . . . . . . . 506
acct-port
. . . . . . . . . . . . . . . . . . . . . . . . 506
auth-port . . . . . . . . . . . . . . . . . . . . . . . . 507
deadtime . . . . . . . . . . . . . . . . . . . . . . . . 508
key
. . . . . . . . . . . . . . . . . . . . . . . . . . . 509
msgauth . . . . . . . . . . . . . . . . . . . . . . . . 509
name . . . . . . . . . . . . . . . . . . . . . . . . . . 510
primary
. . . . . . . . . . . . . . . . . . . . . . . . . 511
priority . . . . . . . . . . . . . . . . . . . . . . . . . 511
radius-server deadtime . . . . . . . . . . . . . . . . 512
radius-server host
. . . . . . . . . . . . . . . . . . . 513
radius-server key . . . . . . . . . . . . . . . . . . . 514
radius-server retransmit . . . . . . . . . . . . . . . . 515
radius-server source-ip
. . . . . . . . . . . . . . . . 515
radius-server timeout . . . . . . . . . . . . . . . . . 516
18 Contents
retransmit
show radius-servers
. . . . . . . . . . . . . . . . . . . . . . . 517
. . . . . . . . . . . . . . . . . . 518
show radius-servers statistics . . . . . . . . . . . . 521
Page 19
source-ip . . . . . . . . . . . . . . . . . . . . . . . . . 525
timeout
. . . . . . . . . . . . . . . . . . . . . . . . . . 525
usage. . . . . . . . . . . . . . . . . . . . . . . . . . . 526
25 Spanning Tree Commands . . . . . . . . . . . 529
clear spanning-tree detected-protocols . . . . . . . . 531
exit (mst)
. . . . . . . . . . . . . . . . . . . . . . . . . 531
instance (mst) . . . . . . . . . . . . . . . . . . . . . . 532
name (mst) . . . . . . . . . . . . . . . . . . . . . . . . 533
revision (mst)
. . . . . . . . . . . . . . . . . . . . . . . 534
show spanning-tree . . . . . . . . . . . . . . . . . . . 534
show spanning-tree summary . . . . . . . . . . . . . . 542
spanning-tree
. . . . . . . . . . . . . . . . . . . . . . 544
spanning-tree auto-portfast . . . . . . . . . . . . . . . 545
spanning-tree bpdu flooding . . . . . . . . . . . . . . 545
spanning-tree bpdu-protection
. . . . . . . . . . . . . 546
spanning-tree cost. . . . . . . . . . . . . . . . . . . . 547
spanning-tree disable
spanning-tree forward-time
. . . . . . . . . . . . . . . . . . 548
. . . . . . . . . . . . . . . 549
spanning-tree guard . . . . . . . . . . . . . . . . . . . 550
spanning-tree loopguard
spanning-tree max-age
. . . . . . . . . . . . . . . . 550
. . . . . . . . . . . . . . . . . 551
Contents 19
Page 20
spanning-tree max-hops . . . . . . . . . . . . . . . . 552
spanning-tree mode
. . . . . . . . . . . . . . . . . . 553
spanning-tree mst 0 external-cost. . . . . . . . . . . 553
spanning-tree mst configuration . . . . . . . . . . . 554
spanning-tree mst cost
spanning-tree mst port-priority
. . . . . . . . . . . . . . . . . 555
. . . . . . . . . . . . 556
spanning-tree mst priority . . . . . . . . . . . . . . . 557
spanning-tree portfast
. . . . . . . . . . . . . . . . . 558
spanning-tree portfast bpdufilter default . . . . . . . 559
spanning-tree portfast default . . . . . . . . . . . . . 560
spanning-tree port-priority
. . . . . . . . . . . . . . 560
spanning-tree priority . . . . . . . . . . . . . . . . . 561
spanning-tree tcnguard . . . . . . . . . . . . . . . . 562
spanning-tree transmit hold-count
. . . . . . . . . . 563
26 Switchport Voice Commands. . . . . . . . . 565
27 TACACS+ Commands . . . . . . . . . . . . . . . 569
20 Contents
show switchport voice. . . . . . . . . . . . . . . . . 566
switchport voice detect auto
. . . . . . . . . . . . . 568
key . . . . . . . . . . . . . . . . . . . . . . . . . . . 570
port . . . . . . . . . . . . . . . . . . . . . . . . . . . 570
Page 21
priority . . . . . . . . . . . . . . . . . . . . . . . . . . 571
show tacacs
. . . . . . . . . . . . . . . . . . . . . . . 572
tacacs-server host . . . . . . . . . . . . . . . . . . . . 573
tacacs-server key . . . . . . . . . . . . . . . . . . . . 573
tacacs-server timeout
timeout
. . . . . . . . . . . . . . . . . . . . . . . . . . 575
. . . . . . . . . . . . . . . . . . 574
28 VLAN Commands . . . . . . . . . . . . . . . . . . 577
dvlan-tunnel ethertype. . . . . . . . . . . . . . . . . . 579
interface vlan
interface range vlan . . . . . . . . . . . . . . . . . . . 580
mode dvlan-tunnel . . . . . . . . . . . . . . . . . . . . 581
name
protocol group . . . . . . . . . . . . . . . . . . . . . . 583
protocol vlan group . . . . . . . . . . . . . . . . . . . 584
. . . . . . . . . . . . . . . . . . . . . . 579
. . . . . . . . . . . . . . . . . . . . . . . . . . . 582
protocol vlan group all
. . . . . . . . . . . . . . . . . . 585
show dvlan-tunnel . . . . . . . . . . . . . . . . . . . . 586
show dvlan-tunnel interface
show interfaces switchport
. . . . . . . . . . . . . . 586
. . . . . . . . . . . . . . . 587
show port protocol. . . . . . . . . . . . . . . . . . . . 591
show switchport protected
show vlan
. . . . . . . . . . . . . . . . . . . . . . . . 593
. . . . . . . . . . . . . . . 592
Contents 21
Page 22
show vlan association mac . . . . . . . . . . . . . . 594
show vlan association subnet
. . . . . . . . . . . . . 595
switchport access vlan . . . . . . . . . . . . . . . . 596
switchport forbidden vlan . . . . . . . . . . . . . . . 596
switchport general acceptable-frame-type tagged-only
switchport general allowed vlan
. . . . . . . . . . . . . . . . . . . . . . . 597
. . . . . . . . . . . 598
switchport general ingress-filtering disable . . . . . 599
switchport general pvid . . . . . . . . . . . . . . . . 600
switchport mode
. . . . . . . . . . . . . . . . . . . . 601
switchport protected. . . . . . . . . . . . . . . . . . 602
switchport protected name . . . . . . . . . . . . . . 603
switchport trunk allowed vlan
. . . . . . . . . . . . . 604
vlan . . . . . . . . . . . . . . . . . . . . . . . . . . . 604
vlan association mac . . . . . . . . . . . . . . . . . 605
22 Contents
vlan association subnet
. . . . . . . . . . . . . . . . 606
vlan database . . . . . . . . . . . . . . . . . . . . . 607
vlan makestatic
vlan protocol group
. . . . . . . . . . . . . . . . . . . . 608
. . . . . . . . . . . . . . . . . . 608
vlan protocol group add protocol . . . . . . . . . . . 609
vlan protocol group name
. . . . . . . . . . . . . . . 611
Page 23
vlan protocol group remove . . . . . . . . . . . . . . . 612
vlan routing
. . . . . . . . . . . . . . . . . . . . . . . 613
29 Voice VLAN Commands . . . . . . . . . . . . . 615
voice vlan . . . . . . . . . . . . . . . . . . . . . . . . 616
voice vlan (Interface) . . . . . . . . . . . . . . . . . . 616
voice vlan data priority
. . . . . . . . . . . . . . . . . 617
show voice vlan . . . . . . . . . . . . . . . . . . . . . 618
30 802.1x Commands . . . . . . . . . . . . . . . . . 621
dot1x mac-auth-bypass . . . . . . . . . . . . . . . . . 622
dot1x max-req
dot1x max-users . . . . . . . . . . . . . . . . . . . . . 623
dot1x port-control . . . . . . . . . . . . . . . . . . . . 624
dot1x re-authenticate
. . . . . . . . . . . . . . . . . . . . . . 622
. . . . . . . . . . . . . . . . . . 625
dot1x re-authentication . . . . . . . . . . . . . . . . . 626
dot1x system-auth-control. . . . . . . . . . . . . . . . 627
dot1x timeout guest-vlan-period
. . . . . . . . . . . . 627
dot1x timeout quiet-period . . . . . . . . . . . . . . . 628
dot1x timeout re-authperiod
dot1x timeout server-timeout
. . . . . . . . . . . . . . . 629
. . . . . . . . . . . . . . 630
dot1x timeout supp-timeout . . . . . . . . . . . . . . . 631
Contents 23
Page 24
dot1x timeout tx-period . . . . . . . . . . . . . . . . 632
show dot1x
. . . . . . . . . . . . . . . . . . . . . . . 633
show dot1x clients. . . . . . . . . . . . . . . . . . . 636
show dot1x ethernet . . . . . . . . . . . . . . . . . . 638
show dot1x statistics
show dot1x users
. . . . . . . . . . . . . . . . . 640
. . . . . . . . . . . . . . . . . . . 642
dot1x guest-vlan . . . . . . . . . . . . . . . . . . . . 643
dot1x unauth-vlan
. . . . . . . . . . . . . . . . . . . 644
show dot1x advanced . . . . . . . . . . . . . . . . . 645
radius-server attribute 4 . . . . . . . . . . . . . . . . 647
31 ARP Commands . . . . . . . . . . . . . . . . . . . 649
arp . . . . . . . . . . . . . . . . . . . . . . . . . . . 650
arp cachesize . . . . . . . . . . . . . . . . . . . . . 650
arp dynamicrenew . . . . . . . . . . . . . . . . . . . 651
24 Contents
arp purge
. . . . . . . . . . . . . . . . . . . . . . . . 652
arp resptime . . . . . . . . . . . . . . . . . . . . . . 653
arp retries
arp timeout
. . . . . . . . . . . . . . . . . . . . . . . 654
. . . . . . . . . . . . . . . . . . . . . . . 655
clear arp-cache . . . . . . . . . . . . . . . . . . . . 655
clear arp-cache management
. . . . . . . . . . . . . 656
Page 25
ip proxy-arp . . . . . . . . . . . . . . . . . . . . . . . 657
show arp
. . . . . . . . . . . . . . . . . . . . . . . . . 657
32 DHCP and BOOTP Relay Commands . . . 659
bootpdhcprelay cidridoptmode . . . . . . . . . . . . . 660
bootpdhcprelay maxhopcount . . . . . . . . . . . . . . 661
bootpdhcprelay minwaittime
. . . . . . . . . . . . . . 661
bootpdhcprelay cidridoptmode . . . . . . . . . . . . . 662
show bootpdhcprelay . . . . . . . . . . . . . . . . . . 663
33 DHCPv6 Commands . . . . . . . . . . . . . . . . 665
clear ipv6 dhcp. . . . . . . . . . . . . . . . . . . . . . 666
dns-server . . . . . . . . . . . . . . . . . . . . . . . . 666
domain-name . . . . . . . . . . . . . . . . . . . . . . 667
ipv6 dhcp pool
. . . . . . . . . . . . . . . . . . . . . . 668
ipv6 dhcp relay . . . . . . . . . . . . . . . . . . . . . . 669
ipv6 dhcp relay-agent-info-opt . . . . . . . . . . . . . 670
ipv6 dhcp relay-agent-info-remote-id-subopt
. . . . . . 671
ipv6 dhcp server . . . . . . . . . . . . . . . . . . . . . 671
prefix-delegation
service dhcpv6
. . . . . . . . . . . . . . . . . . . . 672
. . . . . . . . . . . . . . . . . . . . . . 673
show ipv6 dhcp . . . . . . . . . . . . . . . . . . . . . 674
Contents 25
Page 26
show ipv6 dhcp binding . . . . . . . . . . . . . . . . 675
show ipv6 dhcp interface
. . . . . . . . . . . . . . . 676
show ipv6 dhcp pool . . . . . . . . . . . . . . . . . . 678
show ipv6 dhcp statistics . . . . . . . . . . . . . . . 678
34 DVMRP Commands . . . . . . . . . . . . . . . . 681
ip dvmrp . . . . . . . . . . . . . . . . . . . . . . . . 682
ip dvmrp metric. . . . . . . . . . . . . . . . . . . . . 682
ip dvmrp trapflags . . . . . . . . . . . . . . . . . . . 683
show ip dvmrp
show ip dvmrp interface . . . . . . . . . . . . . . . . 685
show ip dvmrp neighbor . . . . . . . . . . . . . . . . 685
show ip dvmrp nexthop
show ip dvmrp prune . . . . . . . . . . . . . . . . . . 687
show ip dvmrp route . . . . . . . . . . . . . . . . . . 688
. . . . . . . . . . . . . . . . . . . . . 684
. . . . . . . . . . . . . . . . 686
35 IGMP Commands . . . . . . . . . . . . . . . . . . 689
26 Contents
ip igmp . . . . . . . . . . . . . . . . . . . . . . . . . 690
ip igmp last-member-query-count . . . . . . . . . . . 690
ip igmp last-member-query-interval
ip igmp query-interval
. . . . . . . . . . . . . . . . . 692
. . . . . . . . . . 691
ip igmp query-max-response-time . . . . . . . . . . 693
Page 27
ip igmp robustness. . . . . . . . . . . . . . . . . . . . 694
ip igmp startup-query-count
. . . . . . . . . . . . . . . 694
ip igmp startup-query-interval. . . . . . . . . . . . . . 695
ip igmp version. . . . . . . . . . . . . . . . . . . . . . 696
show ip igmp
show ip igmp groups
. . . . . . . . . . . . . . . . . . . . . . . 697
. . . . . . . . . . . . . . . . . . . 698
show ip igmp interface . . . . . . . . . . . . . . . . . 699
show ip igmp interface membership
. . . . . . . . . . 700
show ip igmp interface stats . . . . . . . . . . . . . . 701
36 IGMP Proxy Commands . . . . . . . . . . . . . 703
ip igmp-proxy . . . . . . . . . . . . . . . . . . . . . . 704
ip igmp-proxy reset-status
ip igmp-proxy unsolicited-report-interval . . . . . . . 705
show ip igmp-proxy . . . . . . . . . . . . . . . . . . . 706
. . . . . . . . . . . . . . . 704
show ip igmp-proxy interface
. . . . . . . . . . . . . . 707
show ip igmp-proxy groups . . . . . . . . . . . . . . . 708
show ip igmp-proxy groups detail
. . . . . . . . . . . 709
Contents 27
Page 28
37 IP Helper Commands . . . . . . . . . . . . . . . 711
clear ip helper statistics . . . . . . . . . . . . . . . . 712
ip helper-address (global configuration) . . . . . . . 712
ip helper-address (interface configuration) . . . . . . 714
ip helper enable
. . . . . . . . . . . . . . . . . . . . 716
show ip helper-address . . . . . . . . . . . . . . . . 717
show ip helper statistics. . . . . . . . . . . . . . . . 718
38 IP Routing Commands . . . . . . . . . . . . . . 721
encapsulation . . . . . . . . . . . . . . . . . . . . . 722
ip address . . . . . . . . . . . . . . . . . . . . . . . 722
ip mtu . . . . . . . . . . . . . . . . . . . . . . . . . . 723
ip netdirbcast
ip route . . . . . . . . . . . . . . . . . . . . . . . . . 725
ip route default . . . . . . . . . . . . . . . . . . . . . 726
ip route distance
ip routing . . . . . . . . . . . . . . . . . . . . . . . . 728
routing
. . . . . . . . . . . . . . . . . . . . . . 724
. . . . . . . . . . . . . . . . . . . . 727
. . . . . . . . . . . . . . . . . . . . . . . . . 729
28 Contents
show ip brief
. . . . . . . . . . . . . . . . . . . . . . 730
show ip interface . . . . . . . . . . . . . . . . . . . 730
show ip protocols
. . . . . . . . . . . . . . . . . . . 732
Page 29
show ip route . . . . . . . . . . . . . . . . . . . . . . 734
show ip route preferences
. . . . . . . . . . . . . . . 735
show ip route summary . . . . . . . . . . . . . . . . . 736
show ip stats . . . . . . . . . . . . . . . . . . . . . . . 737
vlan routing
. . . . . . . . . . . . . . . . . . . . . . . 739
39 IPv6 MLD Snooping Commands. . . . . . . 741
ipv6 mld snooping immediate-leave . . . . . . . . . . 742
ipv6 mld snooping groupmembership-interval . . . . . 743
ipv6 mld snooping maxresponse
ipv6 mld snooping mcrtexpiretime . . . . . . . . . . . 744
ipv6 mld snooping (Global) . . . . . . . . . . . . . . . 745
ipv6 mld snooping (Interface)
ipv6 mld snooping (VLAN) . . . . . . . . . . . . . . . . 746
show ipv6 mld snooping . . . . . . . . . . . . . . . . . 747
. . . . . . . . . . . . 743
. . . . . . . . . . . . . . 746
show ipv6 mld snooping groups
. . . . . . . . . . . . . 749
40 IPv6 Multicast Commands . . . . . . . . . . . 751
ipv6 pimsm (Global config) . . . . . . . . . . . . . . . 752
ipv6 pimsm (VLAN Interface config)
ipv6 pimsm bsr-border
. . . . . . . . . . . . . . . . . . 753
ipv6 pimsm bsr-candidate . . . . . . . . . . . . . . . . 754
. . . . . . . . . . . 752
Contents 29
Page 30
ipv6 pimsm dr-priority . . . . . . . . . . . . . . . . . 755
ipv6 pimsm hello-interval
. . . . . . . . . . . . . . . 755
ipv6 pimsm join-prune-interval . . . . . . . . . . . . 756
ipv6 pimsm register-threshold . . . . . . . . . . . . . 757
ipv6 pimsm rp-address
ipv6 pimsm rp-candidate
. . . . . . . . . . . . . . . . . 757
. . . . . . . . . . . . . . . . 758
ipv6 pimsm spt-threshold . . . . . . . . . . . . . . . 759
ipv6 pimsm ssm
. . . . . . . . . . . . . . . . . . . . 760
show ipv6 pimsm . . . . . . . . . . . . . . . . . . . . 760
show ipv6 pimsm bsr . . . . . . . . . . . . . . . . . . 762
show ipv6 pimsm interface
. . . . . . . . . . . . . . 763
show ipv6 pimsm neighbor . . . . . . . . . . . . . . 764
show ipv6 pimsm rphash. . . . . . . . . . . . . . . . 765
show ipv6 pimsm rp mapping
. . . . . . . . . . . . . 765
41 IPv6 Routing Commands . . . . . . . . . . . . 767
30 Contents
clear ipv6 neighbors . . . . . . . . . . . . . . . . . . 769
clear ipv6 statistics
ipv6 address
. . . . . . . . . . . . . . . . . . 769
. . . . . . . . . . . . . . . . . . . . . . 770
ipv6 enable . . . . . . . . . . . . . . . . . . . . . . . 771
ipv6 forwarding
ipv6 host
. . . . . . . . . . . . . . . . . . . . 772
. . . . . . . . . . . . . . . . . . . . . . . . 773
Page 31
ipv6 mld last-member-query-count . . . . . . . . . . . 774
ipv6 mld last-member-query-interval
. . . . . . . . . . 774
ipv6 mld-proxy . . . . . . . . . . . . . . . . . . . . . . 775
ipv6 mld-proxy reset-status . . . . . . . . . . . . . . . 776
ipv6 mld-proxy unsolicit-rprt-interval
ipv6 mld query-interval
. . . . . . . . . . . . . . . . . 777
. . . . . . . . . . 776
ipv6 mld query-max-response-time . . . . . . . . . . . 778
ipv6 mld router
. . . . . . . . . . . . . . . . . . . . . . 779
ipv6 mtu . . . . . . . . . . . . . . . . . . . . . . . . . 779
ipv6 nd dad attempts. . . . . . . . . . . . . . . . . . . 780
ipv6 nd managed-config-flag
. . . . . . . . . . . . . . 781
ipv6 nd ns-interval . . . . . . . . . . . . . . . . . . . . 782
ipv6 nd other-config-flag . . . . . . . . . . . . . . . . 783
ipv6 nd prefix
. . . . . . . . . . . . . . . . . . . . . . . 784
ipv6 nd ra-interval . . . . . . . . . . . . . . . . . . . . 785
ipv6 nd ra-lifetime . . . . . . . . . . . . . . . . . . . . 786
ipv6 nd reachable-time
. . . . . . . . . . . . . . . . . 787
ipv6 nd suppress-ra . . . . . . . . . . . . . . . . . . . 788
ipv6 pimdm . . . . . . . . . . . . . . . . . . . . . . . . 788
ipv6 pimdm hello-interval
. . . . . . . . . . . . . . . . 789
ipv6 route. . . . . . . . . . . . . . . . . . . . . . . . . 790
Contents 31
Page 32
ipv6 route distance. . . . . . . . . . . . . . . . . . . 791
ipv6 unicast-routing
. . . . . . . . . . . . . . . . . . 792
ping ipv6 . . . . . . . . . . . . . . . . . . . . . . . . 792
ping ipv6 interface . . . . . . . . . . . . . . . . . . . 793
show ipv6 brief
show ipv6 interface
. . . . . . . . . . . . . . . . . . . . . 795
. . . . . . . . . . . . . . . . . . 795
show ipv6 mld groups . . . . . . . . . . . . . . . . . 797
show ipv6 mld interface
. . . . . . . . . . . . . . . . 800
show ipv6 mld-proxy . . . . . . . . . . . . . . . . . . 803
show ipv6 mld-proxy groups. . . . . . . . . . . . . . 804
show ipv6 mld-proxy groups detail
. . . . . . . . . . 805
show ipv6 mld-proxy interface . . . . . . . . . . . . 808
show ipv6 mld traffic. . . . . . . . . . . . . . . . . . 809
show ipv6 neighbors
. . . . . . . . . . . . . . . . . . 810
show ipv6 pimdm . . . . . . . . . . . . . . . . . . . . 811
32 Contents
show ipv6 pimdm interface . . . . . . . . . . . . . . 812
show ipv6 pimdm neighbor
. . . . . . . . . . . . . . 813
show ipv6 route . . . . . . . . . . . . . . . . . . . . 814
show ipv6 route preferences . . . . . . . . . . . . . 815
show ipv6 route summary
. . . . . . . . . . . . . . . 816
show ipv6 traffic . . . . . . . . . . . . . . . . . . . . 817
Page 33
show ipv6 vlan . . . . . . . . . . . . . . . . . . . . . . 819
traceroute ipv6
. . . . . . . . . . . . . . . . . . . . . . 820
42 Loopback Interface Commands. . . . . . . 823
interface loopback. . . . . . . . . . . . . . . . . . . . 824
show interfaces loopback . . . . . . . . . . . . . . . . 824
43 Multicast Commands . . . . . . . . . . . . . . . 827
ip mcast boundary . . . . . . . . . . . . . . . . . . . . 829
ip mroute . . . . . . . . . . . . . . . . . . . . . . . . . 829
ip multicast. . . . . . . . . . . . . . . . . . . . . . . . 830
ip multicast ttl-threshold
ip pimsm . . . . . . . . . . . . . . . . . . . . . . . . . 832
ip pimsm bsr-border . . . . . . . . . . . . . . . . . . . 833
ip pimsm bsr-candidate
. . . . . . . . . . . . . . . . 831
. . . . . . . . . . . . . . . . . 833
ip pimsm dr-priority . . . . . . . . . . . . . . . . . . . 834
ip pimsm hello-interval . . . . . . . . . . . . . . . . . 835
ip pimsm join-prune-interval
. . . . . . . . . . . . . . 836
ip pimsm register-threshold . . . . . . . . . . . . . . . 836
ip pimsm rp-address
ip pimsm rp-candidate
. . . . . . . . . . . . . . . . . . . 837
. . . . . . . . . . . . . . . . . . 838
ip pimsm spt-threshold . . . . . . . . . . . . . . . . . 839
Contents 33
Page 34
ip pimsm ssm . . . . . . . . . . . . . . . . . . . . . . 839
show bridge multicast address-table count
. . . . . 840
show ip mcast . . . . . . . . . . . . . . . . . . . . . 841
show ip mcast boundary . . . . . . . . . . . . . . . . 842
show ip mcast interface
show ip mcast mroute
. . . . . . . . . . . . . . . . 843
. . . . . . . . . . . . . . . . . 844
show ip mcast mroute group. . . . . . . . . . . . . . 845
show ip mcast mroute source
. . . . . . . . . . . . . 846
show ip mcast mroute static. . . . . . . . . . . . . . 847
show ip pimsm bsr . . . . . . . . . . . . . . . . . . . 848
show ip pimsm interface
. . . . . . . . . . . . . . . . 849
show ip pimsm rphash . . . . . . . . . . . . . . . . . 850
show ip pimsm rp mapping . . . . . . . . . . . . . . 851
44 OSPF Commands . . . . . . . . . . . . . . . . . . 853
34 Contents
area default-cost . . . . . . . . . . . . . . . . . . . . 856
area nssa . . . . . . . . . . . . . . . . . . . . . . . . 856
area nssa default-info-originate
area nssa no-redistribute
. . . . . . . . . . . . 857
. . . . . . . . . . . . . . . 858
area nssa no-summary . . . . . . . . . . . . . . . . . 859
area nssa translator-role
area nssa translator-stab-intv
. . . . . . . . . . . . . . . . 860
. . . . . . . . . . . . . 860
Page 35
area range . . . . . . . . . . . . . . . . . . . . . . . . 861
area stub
. . . . . . . . . . . . . . . . . . . . . . . . . 862
area stub no-summary . . . . . . . . . . . . . . . . . . 863
area virtual-link . . . . . . . . . . . . . . . . . . . . . 864
area virtual-link authentication
area virtual-link dead-interval
. . . . . . . . . . . . . 865
. . . . . . . . . . . . . 866
area virtual-link hello-interval . . . . . . . . . . . . . 867
area virtual-link retransmit-interval
. . . . . . . . . . 868
area virtual-link transmit-delay . . . . . . . . . . . . . 869
auto-cost . . . . . . . . . . . . . . . . . . . . . . . . . 870
bandwidth
. . . . . . . . . . . . . . . . . . . . . . . . 871
capability opaque . . . . . . . . . . . . . . . . . . . . 871
clear ip ospf . . . . . . . . . . . . . . . . . . . . . . . 872
default-information originate
. . . . . . . . . . . . . . 873
default-metric . . . . . . . . . . . . . . . . . . . . . . 874
distance ospf . . . . . . . . . . . . . . . . . . . . . . . 875
distribute-list out
. . . . . . . . . . . . . . . . . . . . 876
enable . . . . . . . . . . . . . . . . . . . . . . . . . . 877
exit-overflow-interval . . . . . . . . . . . . . . . . . . 877
external-lsdb-limit
. . . . . . . . . . . . . . . . . . . . 878
ip ospf area. . . . . . . . . . . . . . . . . . . . . . . . 879
Contents 35
Page 36
ip ospf authentication . . . . . . . . . . . . . . . . . 880
ip ospf cost
. . . . . . . . . . . . . . . . . . . . . . . 881
ip ospf dead-interval . . . . . . . . . . . . . . . . . . 881
ip ospf hello-interval . . . . . . . . . . . . . . . . . . 882
ip ospf mtu-ignore
ip ospf network
. . . . . . . . . . . . . . . . . . . 883
. . . . . . . . . . . . . . . . . . . . . 884
ip ospf priority . . . . . . . . . . . . . . . . . . . . . 885
ip ospf retransmit-interval
. . . . . . . . . . . . . . . 886
ip ospf transmit-delay . . . . . . . . . . . . . . . . . 886
maximum-paths . . . . . . . . . . . . . . . . . . . . 887
network area
. . . . . . . . . . . . . . . . . . . . . . 888
nsf . . . . . . . . . . . . . . . . . . . . . . . . . . . 889
nsf helper. . . . . . . . . . . . . . . . . . . . . . . . 890
nsf helper strict-lsa-checking
. . . . . . . . . . . . . 891
nsf restart-interval . . . . . . . . . . . . . . . . . . . 892
36 Contents
passive-interface default . . . . . . . . . . . . . . . 893
passive-interface
. . . . . . . . . . . . . . . . . . . 894
redistribute . . . . . . . . . . . . . . . . . . . . . . . 894
router-id . . . . . . . . . . . . . . . . . . . . . . . . 896
router ospf
. . . . . . . . . . . . . . . . . . . . . . . 896
show ip ospf . . . . . . . . . . . . . . . . . . . . . . 897
Page 37
show ip ospf abr . . . . . . . . . . . . . . . . . . . . . 903
show ip ospf area
. . . . . . . . . . . . . . . . . . . . 903
show ip ospf asbr . . . . . . . . . . . . . . . . . . . . 905
show ip ospf database . . . . . . . . . . . . . . . . . . 906
show ip ospf database database-summary
show ip ospf interface
. . . . . . . . . . . . . . . . . . 911
. . . . . . . 909
show ip ospf interface brief . . . . . . . . . . . . . . . 913
show ip ospf interface stats
. . . . . . . . . . . . . . . 913
show ip ospf neighbor . . . . . . . . . . . . . . . . . . 914
show ip ospf range. . . . . . . . . . . . . . . . . . . . 918
show ip ospf statistics
. . . . . . . . . . . . . . . . . . 918
show ip ospf stub table . . . . . . . . . . . . . . . . . 919
show ip ospf virtual-link. . . . . . . . . . . . . . . . . 920
show ip ospf virtual-link brief
. . . . . . . . . . . . . . 921
timers spf. . . . . . . . . . . . . . . . . . . . . . . . . 922
1583compatibility . . . . . . . . . . . . . . . . . . . . 923
45 OSPFv3 Commands . . . . . . . . . . . . . . . . 925
area default-cost. . . . . . . . . . . . . . . . . . . . . 928
area nssa. . . . . . . . . . . . . . . . . . . . . . . . . 928
area nssa default-info-originate
area nssa no-redistribute
. . . . . . . . . . . . 929
. . . . . . . . . . . . . . . . 930
Contents 37
Page 38
area nssa no-summary . . . . . . . . . . . . . . . . . 931
area nssa translator-role
. . . . . . . . . . . . . . . . 932
area nssa translator-stab-intv . . . . . . . . . . . . . 933
area range . . . . . . . . . . . . . . . . . . . . . . . 934
area stub
area stub no-summary
. . . . . . . . . . . . . . . . . . . . . . . . 935
. . . . . . . . . . . . . . . . . 936
area virtual-link . . . . . . . . . . . . . . . . . . . . 936
area virtual-link dead-interval
. . . . . . . . . . . . . 937
area virtual-link hello-interval . . . . . . . . . . . . 938
area virtual-link retransmit-interval. . . . . . . . . . 939
area virtual-link transmit-delay
. . . . . . . . . . . . 940
default-information originate . . . . . . . . . . . . . 941
default-metric . . . . . . . . . . . . . . . . . . . . . 942
distance ospf
. . . . . . . . . . . . . . . . . . . . . . 942
enable . . . . . . . . . . . . . . . . . . . . . . . . . 943
38 Contents
exit-overflow-interval . . . . . . . . . . . . . . . . . 944
external-lsdb-limit
. . . . . . . . . . . . . . . . . . . 945
ipv6 ospf . . . . . . . . . . . . . . . . . . . . . . . . 946
ipv6 ospf areaid . . . . . . . . . . . . . . . . . . . . 946
ipv6 ospf cost
. . . . . . . . . . . . . . . . . . . . . . 947
ipv6 ospf dead-interval. . . . . . . . . . . . . . . . . 948
Page 39
ipv6 ospf hello-interval . . . . . . . . . . . . . . . . . 949
ipv6 ospf mtu-ignore
. . . . . . . . . . . . . . . . . . . 950
ipv6 ospf network . . . . . . . . . . . . . . . . . . . . 950
ipv6 ospf priority . . . . . . . . . . . . . . . . . . . . . 951
ipv6 ospf retransmit-interval
ipv6 ospf transmit-delay
. . . . . . . . . . . . . . 952
. . . . . . . . . . . . . . . . . 953
ipv6 router ospf . . . . . . . . . . . . . . . . . . . . . 954
maximum-paths
. . . . . . . . . . . . . . . . . . . . . 954
nsf . . . . . . . . . . . . . . . . . . . . . . . . . . . . 955
nsf helper . . . . . . . . . . . . . . . . . . . . . . . . 956
nsf helper strict-lsa-checking
. . . . . . . . . . . . . . 957
nsf restart-interval. . . . . . . . . . . . . . . . . . . . 958
passive-interface . . . . . . . . . . . . . . . . . . . . 959
passive-interface default
. . . . . . . . . . . . . . . . 960
redistribute. . . . . . . . . . . . . . . . . . . . . . . . 960
router-id . . . . . . . . . . . . . . . . . . . . . . . . . 961
show ipv6 ospf
. . . . . . . . . . . . . . . . . . . . . . 962
show ipv6 ospf abr . . . . . . . . . . . . . . . . . . . . 966
show ipv6 ospf area . . . . . . . . . . . . . . . . . . . 967
show ipv6 ospf asbr
. . . . . . . . . . . . . . . . . . . 968
show ipv6 ospf database . . . . . . . . . . . . . . . . 969
Contents 39
Page 40
show ipv6 ospf database database-summary . . . . . 972
show ipv6 ospf interface
. . . . . . . . . . . . . . . . 973
show ipv6 ospf interface brief . . . . . . . . . . . . . 974
show ipv6 ospf interface stats. . . . . . . . . . . . . 975
show ipv6 ospf interface vlan
show ipv6 ospf neighbor
. . . . . . . . . . . . . 977
. . . . . . . . . . . . . . . . 978
show ipv6 ospf range . . . . . . . . . . . . . . . . . 980
show ipv6 ospf stub table
. . . . . . . . . . . . . . . 980
show ipv6 ospf virtual-link . . . . . . . . . . . . . . 981
show ipv6 ospf virtual-link brief . . . . . . . . . . . . 982
46 PIM-DM Commands . . . . . . . . . . . . . . . . 985
ip pimdm . . . . . . . . . . . . . . . . . . . . . . . . 986
show ip pimdm . . . . . . . . . . . . . . . . . . . . . 986
show ip pimdm interface . . . . . . . . . . . . . . . 987
47 PIM-SM Commands . . . . . . . . . . . . . . . . 989
40 Contents
show ip pimdm neighbor
. . . . . . . . . . . . . . . . 988
ip pimsm . . . . . . . . . . . . . . . . . . . . . . . . 990
ip pimsm spt-threshold
ip pim-trapflags
. . . . . . . . . . . . . . . . . 990
. . . . . . . . . . . . . . . . . . . . 991
show ip pimsm . . . . . . . . . . . . . . . . . . . . . 992
Page 41
show ip pimsm interface . . . . . . . . . . . . . . . . 992
show ip pimsm neighbor
. . . . . . . . . . . . . . . . 993
show ip pimsm rphash. . . . . . . . . . . . . . . . . . 994
48 Router Discovery Protocol
Commands . . . . . . . . . . . . . . . . . . . . . . . 997
ip irdp . . . . . . . . . . . . . . . . . . . . . . . . . . 998
ip irdp address . . . . . . . . . . . . . . . . . . . . . . 998
ip irdp holdtime
. . . . . . . . . . . . . . . . . . . . . 999
ip irdp maxadvertinterval . . . . . . . . . . . . . . . 1000
ip irdp minadvertinterval . . . . . . . . . . . . . . . 1001
ip irdp multicast
. . . . . . . . . . . . . . . . . . . . 1002
ip irdp preference . . . . . . . . . . . . . . . . . . . 1003
show ip irdp . . . . . . . . . . . . . . . . . . . . . . 1004
49 Routing Information Protocol
Commands . . . . . . . . . . . . . . . . . . . . . . 1007
auto-summary . . . . . . . . . . . . . . . . . . . . . 1008
default-information originate
. . . . . . . . . . . . . 1008
default-metric . . . . . . . . . . . . . . . . . . . . . 1009
distance rip
distribute-list out
. . . . . . . . . . . . . . . . . . . . . . 1010
. . . . . . . . . . . . . . . . . . . 1010
enable . . . . . . . . . . . . . . . . . . . . . . . . . 1011
Contents 41
Page 42
hostroutesaccept. . . . . . . . . . . . . . . . . . . . 1012
ip rip
. . . . . . . . . . . . . . . . . . . . . . . . . . 1013
ip rip authentication . . . . . . . . . . . . . . . . . . 1013
ip rip receive version . . . . . . . . . . . . . . . . . 1014
ip rip send version
redistribute
. . . . . . . . . . . . . . . . . . . 1015
. . . . . . . . . . . . . . . . . . . . . . . 1016
router rip . . . . . . . . . . . . . . . . . . . . . . . . 1017
show ip rip
. . . . . . . . . . . . . . . . . . . . . . . 1018
show ip rip interface. . . . . . . . . . . . . . . . . . 1019
show ip rip interface brief . . . . . . . . . . . . . . . 1020
split-horizon
. . . . . . . . . . . . . . . . . . . . . . 1021
50 Tunnel Interface Commands . . . . . . . . 1023
interface tunnel . . . . . . . . . . . . . . . . . . . . 1024
show interfaces tunnel . . . . . . . . . . . . . . . . 1024
tunnel destination
tunnel mode ipv6ip. . . . . . . . . . . . . . . . . . . 1026
tunnel source
. . . . . . . . . . . . . . . . . . . 1025
. . . . . . . . . . . . . . . . . . . . . . 1027
51 Virtual LAN Routing Commands. . . . . . 1029
42 Contents
show ip vlan . . . . . . . . . . . . . . . . . . . . . . 1030
Page 43
52 Virtual Router Redundancy
Protocol Commands . . . . . . . . . . . . . . 1031
ip vrrp . . . . . . . . . . . . . . . . . . . . . . . . . 1032
ip vrrp authentication
. . . . . . . . . . . . . . . . . 1033
ip vrrp ip . . . . . . . . . . . . . . . . . . . . . . . . 1034
ip vrrp mode . . . . . . . . . . . . . . . . . . . . . . 1035
ip vrrp preempt
. . . . . . . . . . . . . . . . . . . . . 1035
ip vrrp priority . . . . . . . . . . . . . . . . . . . . . 1036
ip vrrp timers advertise . . . . . . . . . . . . . . . . 1037
ip vrrp track interface
. . . . . . . . . . . . . . . . . 1038
ip vrrp track ip route . . . . . . . . . . . . . . . . . . 1039
show ip vrrp . . . . . . . . . . . . . . . . . . . . . . 1040
show ip vrrp interface
. . . . . . . . . . . . . . . . . 1041
show ip vrrp interface brief . . . . . . . . . . . . . . 1042
show ip vrrp interface stats . . . . . . . . . . . . . . 1043
53 Autoconfig Commands . . . . . . . . . . . . 1045
boot host auto-save . . . . . . . . . . . . . . . . . . 1046
boot host dhcp . . . . . . . . . . . . . . . . . . . . . 1046
boot host retry-count
show boot
. . . . . . . . . . . . . . . . . . . . . . . 1048
. . . . . . . . . . . . . . . . . . 1047
Contents 43
Page 44
54 Captive Portal Commands . . . . . . . . . . 1049
authentication timeout . . . . . . . . . . . . . . . . . 1051
captive-portal . . . . . . . . . . . . . . . . . . . . . 1051
enable . . . . . . . . . . . . . . . . . . . . . . . . . 1052
http port
. . . . . . . . . . . . . . . . . . . . . . . . . 1053
https port . . . . . . . . . . . . . . . . . . . . . . . . 1053
show captive-portal . . . . . . . . . . . . . . . . . . 1054
show captive-portal status
. . . . . . . . . . . . . . 1055
block . . . . . . . . . . . . . . . . . . . . . . . . . . 1056
configuration . . . . . . . . . . . . . . . . . . . . . . 1057
enable
. . . . . . . . . . . . . . . . . . . . . . . . . 1057
group . . . . . . . . . . . . . . . . . . . . . . . . . . 1058
interface . . . . . . . . . . . . . . . . . . . . . . . . 1059
locale
. . . . . . . . . . . . . . . . . . . . . . . . . . 1059
name . . . . . . . . . . . . . . . . . . . . . . . . . . 1060
protocol. . . . . . . . . . . . . . . . . . . . . . . . . 1061
redirect
. . . . . . . . . . . . . . . . . . . . . . . . . 1061
redirect-url . . . . . . . . . . . . . . . . . . . . . . . 1062
44 Contents
session-timeout
verification
. . . . . . . . . . . . . . . . . . . . 1062
. . . . . . . . . . . . . . . . . . . . . . . 1063
captive-portal client deauthenticate . . . . . . . . . 1064
Page 45
show captive-portal client status . . . . . . . . . . . 1064
show captive-portal configuration client status
. . . 1066
show captive-portal interface client status . . . . . 1067
show captive-portal interface configuration
. . . . . . . . . . . . . . . . . . . . . . . . . . 1069
status
clear captive-portal users . . . . . . . . . . . . . . . 1070
no user
. . . . . . . . . . . . . . . . . . . . . . . . . 1070
show captive-portal user . . . . . . . . . . . . . . . 1071
user group . . . . . . . . . . . . . . . . . . . . . . . 1072
user name
. . . . . . . . . . . . . . . . . . . . . . . 1073
user password . . . . . . . . . . . . . . . . . . . . . 1073
user session-timeout . . . . . . . . . . . . . . . . . 1074
show captive-portal configuration
. . . . . . . . . . 1075
show captive-portal configuration interface . . . . . 1076
show captive-portal configuration locales . . . . . . 1077
show captive-portal configuration status
. . . . . . . 1078
show trapflags captive-portal . . . . . . . . . . . . . 1079
user group
user group moveusers
. . . . . . . . . . . . . . . . . . . . . . . 1080
. . . . . . . . . . . . . . . . . 1081
user group name . . . . . . . . . . . . . . . . . . . . 1082
Contents 45
Page 46
55 Clock Commands . . . . . . . . . . . . . . . . . 1083
show clock. . . . . . . . . . . . . . . . . . . . . . . 1083
show sntp configuration . . . . . . . . . . . . . . . . 1084
show sntp status . . . . . . . . . . . . . . . . . . . . 1085
sntp authenticate
. . . . . . . . . . . . . . . . . . . . 1086
sntp authentication-key . . . . . . . . . . . . . . . . 1087
sntp broadcast client enable . . . . . . . . . . . . . 1088
sntp client poll timer
. . . . . . . . . . . . . . . . . . 1088
sntp server . . . . . . . . . . . . . . . . . . . . . . . 1089
sntp trusted-key . . . . . . . . . . . . . . . . . . . . 1090
sntp unicast client enable
. . . . . . . . . . . . . . . 1091
clock timezone hours-offset . . . . . . . . . . . . . . 1092
no clock timezone . . . . . . . . . . . . . . . . . . . 1092
clock summer-time recurring
. . . . . . . . . . . . . 1093
clock summer-time date . . . . . . . . . . . . . . . . 1094
no clock summer-time . . . . . . . . . . . . . . . . . 1095
show clock
. . . . . . . . . . . . . . . . . . . . . . . 1096
56 Configuration and Image File
Commands . . . . . . . . . . . . . . . . . . . . . . 1099
46 Contents
boot system. . . . . . . . . . . . . . . . . . . . . . . 1100
clear config. . . . . . . . . . . . . . . . . . . . . . . 1100
Page 47
copy . . . . . . . . . . . . . . . . . . . . . . . . . . 1101
delete backup-config
. . . . . . . . . . . . . . . . . 1104
delete backup-image . . . . . . . . . . . . . . . . . 1105
delete startup-config . . . . . . . . . . . . . . . . . 1106
filedescr
script apply
. . . . . . . . . . . . . . . . . . . . . . . . 1106
. . . . . . . . . . . . . . . . . . . . . . . 1107
script delete . . . . . . . . . . . . . . . . . . . . . . 1108
script list
. . . . . . . . . . . . . . . . . . . . . . . . 1108
script validate . . . . . . . . . . . . . . . . . . . . . 1110
show backup-config . . . . . . . . . . . . . . . . . . 1111
show bootvar
. . . . . . . . . . . . . . . . . . . . . . 1112
show dir . . . . . . . . . . . . . . . . . . . . . . . . 1113
show running-config. . . . . . . . . . . . . . . . . . 1114
show startup-config
. . . . . . . . . . . . . . . . . . 1115
update bootcode . . . . . . . . . . . . . . . . . . . . 1117
57 Denial of Service Commands . . . . . . . 1119
dos-control firstfrag . . . . . . . . . . . . . . . . . . 1120
dos-control icmp
dos-control l4port . . . . . . . . . . . . . . . . . . . 1121
dos-control sipdip
dos-control tcpflag
. . . . . . . . . . . . . . . . . . . . 1120
. . . . . . . . . . . . . . . . . . . 1122
. . . . . . . . . . . . . . . . . . 1123
Contents 47
Page 48
dos-control tcpfrag. . . . . . . . . . . . . . . . . . . 1123
ip icmp echo-reply
. . . . . . . . . . . . . . . . . . . 1124
ip icmp error-interval . . . . . . . . . . . . . . . . . 1125
ip unreachables . . . . . . . . . . . . . . . . . . . . 1126
ip redirects
ipv6 icmp error-interval
. . . . . . . . . . . . . . . . . . . . . . . 1126
. . . . . . . . . . . . . . . . 1127
ipv6 unreachables . . . . . . . . . . . . . . . . . . . 1128
show dos-control
. . . . . . . . . . . . . . . . . . . 1128
58 Line Commands . . . . . . . . . . . . . . . . . . 1131
exec-timeout . . . . . . . . . . . . . . . . . . . . . . 1132
history . . . . . . . . . . . . . . . . . . . . . . . . . 1132
history size
line . . . . . . . . . . . . . . . . . . . . . . . . . . . 1134
show line . . . . . . . . . . . . . . . . . . . . . . . . 1135
. . . . . . . . . . . . . . . . . . . . . . . 1133
59 Management ACL Commands . . . . . . . 1137
48 Contents
speed
. . . . . . . . . . . . . . . . . . . . . . . . . . 1136
deny (management) . . . . . . . . . . . . . . . . . . 1138
management access-class
management access-list
. . . . . . . . . . . . . . 1139
. . . . . . . . . . . . . . . . 1140
permit (management) . . . . . . . . . . . . . . . . . 1141
Page 49
show management access-class . . . . . . . . . . . 1143
show management access-list
. . . . . . . . . . . . 1144
60 Password Management
Commands . . . . . . . . . . . . . . . . . . . . . . 1145
passwords aging. . . . . . . . . . . . . . . . . . . . 1146
passwords history
. . . . . . . . . . . . . . . . . . . 1146
passwords lock-out . . . . . . . . . . . . . . . . . . 1147
passwords min-length
. . . . . . . . . . . . . . . . . 1148
show passwords configuration . . . . . . . . . . . . 1149
61 PHY Diagnostics Commands . . . . . . . . 1151
show copper-ports cable-length . . . . . . . . . . . 1152
show copper-ports tdr
show fiber-ports optical-transceiver . . . . . . . . . 1154
test copper-port tdr . . . . . . . . . . . . . . . . . . 1155
. . . . . . . . . . . . . . . . . 1153
62 Power Over Ethernet Commands . . . . 1157
power inline . . . . . . . . . . . . . . . . . . . . . . 1158
power inline legacy . . . . . . . . . . . . . . . . . . 1158
power inline powered-device
power inline priority
. . . . . . . . . . . . . . . . . . 1160
. . . . . . . . . . . . . 1159
Contents 49
Page 50
power inline traps . . . . . . . . . . . . . . . . . . . 1161
power inline usage-threshold
. . . . . . . . . . . . . 1161
show poe-firmware-version . . . . . . . . . . . . . . 1162
show power inline . . . . . . . . . . . . . . . . . . . 1163
show power inline ethernet
. . . . . . . . . . . . . . 1164
63 RMON Commands . . . . . . . . . . . . . . . . 1167
rmon alarm . . . . . . . . . . . . . . . . . . . . . . . 1168
rmon collection history . . . . . . . . . . . . . . . . 1169
rmon event
show rmon alarm. . . . . . . . . . . . . . . . . . . . 1172
show rmon alarm-table . . . . . . . . . . . . . . . . 1174
show rmon collection history
show rmon events . . . . . . . . . . . . . . . . . . . 1176
show rmon history . . . . . . . . . . . . . . . . . . . 1177
. . . . . . . . . . . . . . . . . . . . . . . 1171
. . . . . . . . . . . . . 1175
64 Serviceability Tracing Packet
Commands
50 Contents
show rmon log
. . . . . . . . . . . . . . . . . . . . . 1181
show rmon statistics. . . . . . . . . . . . . . . . . . 1182
. . . . . . . . . . . . . . . . . . . . . . 1187
debug arp . . . . . . . . . . . . . . . . . . . . . . . . 1189
debug auto-voip
. . . . . . . . . . . . . . . . . . . . 1189
Page 51
debug clear . . . . . . . . . . . . . . . . . . . . . . 1190
debug console
. . . . . . . . . . . . . . . . . . . . . 1190
debug dot1x . . . . . . . . . . . . . . . . . . . . . . 1191
debug igmpsnooping. . . . . . . . . . . . . . . . . . 1192
debug ip acl
debug ip dvmrp
. . . . . . . . . . . . . . . . . . . . . . 1192
. . . . . . . . . . . . . . . . . . . . . 1193
debug ip igmp . . . . . . . . . . . . . . . . . . . . . 1194
debug ip mcache
. . . . . . . . . . . . . . . . . . . . 1195
debug ip pimdm . . . . . . . . . . . . . . . . . . . . 1195
debug ip pimsm . . . . . . . . . . . . . . . . . . . . 1196
debug ip vrrp
. . . . . . . . . . . . . . . . . . . . . . 1197
debug ipv6 mcache . . . . . . . . . . . . . . . . . . 1198
debug ipv6 mld . . . . . . . . . . . . . . . . . . . . . 1198
debug ipv6 pimdm
. . . . . . . . . . . . . . . . . . . 1199
debug ipv6 pimsm . . . . . . . . . . . . . . . . . . . 1200
debug isdp . . . . . . . . . . . . . . . . . . . . . . . 1201
debug lacp
. . . . . . . . . . . . . . . . . . . . . . . 1201
debug mldsnooping . . . . . . . . . . . . . . . . . . 1202
debug ospf . . . . . . . . . . . . . . . . . . . . . . . 1203
debug ospfv3
. . . . . . . . . . . . . . . . . . . . . . 1203
debug ping . . . . . . . . . . . . . . . . . . . . . . . 1204
Contents 51
Page 52
debug rip . . . . . . . . . . . . . . . . . . . . . . . . 1205
debug sflow
. . . . . . . . . . . . . . . . . . . . . . 1205
debug spanning-tree . . . . . . . . . . . . . . . . . . 1206
show debugging . . . . . . . . . . . . . . . . . . . . 1207
65 sFlow Commands . . . . . . . . . . . . . . . . . 1209
sflow destination. . . . . . . . . . . . . . . . . . . . 1210
sflow polling . . . . . . . . . . . . . . . . . . . . . . 1211
sflow polling (Interface Mode) . . . . . . . . . . . . 1212
sflow sampling
sflow sampling (Interface Mode) . . . . . . . . . . . 1214
show sflow agent . . . . . . . . . . . . . . . . . . . 1215
show sflow destination
show sflow polling. . . . . . . . . . . . . . . . . . . 1217
show sflow sampling . . . . . . . . . . . . . . . . . 1218
. . . . . . . . . . . . . . . . . . . . . 1213
. . . . . . . . . . . . . . . . 1216
66 SNMP Commands . . . . . . . . . . . . . . . . 1221
52 Contents
show snmp . . . . . . . . . . . . . . . . . . . . . . . 1222
show snmp engineID. . . . . . . . . . . . . . . . . . 1223
show snmp filters
show snmp groups
. . . . . . . . . . . . . . . . . . . 1224
. . . . . . . . . . . . . . . . . . . 1225
show snmp users . . . . . . . . . . . . . . . . . . . . 1226
Page 53
show snmp views . . . . . . . . . . . . . . . . . . . 1227
show trapflags
. . . . . . . . . . . . . . . . . . . . . 1229
snmp-server community . . . . . . . . . . . . . . . . 1230
snmp-server community-group . . . . . . . . . . . . 1232
snmp-server contact
snmp-server enable traps
. . . . . . . . . . . . . . . . . . 1233
. . . . . . . . . . . . . . . 1234
snmp-server enable traps authentication. . . . . . . 1235
snmp-server engineID local
. . . . . . . . . . . . . . 1236
snmp-server filter . . . . . . . . . . . . . . . . . . . 1237
snmp-server group . . . . . . . . . . . . . . . . . . . 1239
snmp-server host
. . . . . . . . . . . . . . . . . . . 1240
snmp-server location . . . . . . . . . . . . . . . . . 1242
snmp-server user . . . . . . . . . . . . . . . . . . . 1243
snmp-server view
. . . . . . . . . . . . . . . . . . . 1244
snmp-server v3-host . . . . . . . . . . . . . . . . . . 1246
67 SSH Commands . . . . . . . . . . . . . . . . . . 1249
crypto key generate dsa . . . . . . . . . . . . . . . . 1250
crypto key generate rsa
crypto key pubkey-chain ssh . . . . . . . . . . . . . 1251
ip ssh port
. . . . . . . . . . . . . . . . . . . . . . . 1252
ip ssh pubkey-auth
. . . . . . . . . . . . . . . . 1250
. . . . . . . . . . . . . . . . . . . 1253
Contents 53
Page 54
ip ssh server . . . . . . . . . . . . . . . . . . . . . . 1254
key-string
. . . . . . . . . . . . . . . . . . . . . . . . 1254
show crypto key mypubkey . . . . . . . . . . . . . . 1256
show crypto key pubkey-chain ssh . . . . . . . . . . 1257
show ip ssh
user-key
. . . . . . . . . . . . . . . . . . . . . . . 1259
. . . . . . . . . . . . . . . . . . . . . . . . 1260
68 Syslog Commands . . . . . . . . . . . . . . . . 1261
clear logging . . . . . . . . . . . . . . . . . . . . . . 1262
clear logging file
description . . . . . . . . . . . . . . . . . . . . . . . 1263
level . . . . . . . . . . . . . . . . . . . . . . . . . . 1264
logging cli-command
logging . . . . . . . . . . . . . . . . . . . . . . . . . 1265
logging buffered . . . . . . . . . . . . . . . . . . . . 1266
. . . . . . . . . . . . . . . . . . . . 1262
. . . . . . . . . . . . . . . . . 1264
54 Contents
logging console
. . . . . . . . . . . . . . . . . . . . 1267
logging facility . . . . . . . . . . . . . . . . . . . . . 1268
logging file
logging on
. . . . . . . . . . . . . . . . . . . . . . . 1268
. . . . . . . . . . . . . . . . . . . . . . . 1269
logging snmp . . . . . . . . . . . . . . . . . . . . . . 1270
logging web-session
port
. . . . . . . . . . . . . . . . . . . . . . . . . . . 1271
. . . . . . . . . . . . . . . . . . 1271
Page 55
show logging. . . . . . . . . . . . . . . . . . . . . . 1272
show logging file
. . . . . . . . . . . . . . . . . . . 1274
show syslog-servers. . . . . . . . . . . . . . . . . . 1275
69 System Management Commands . . . . 1277
asset-tag . . . . . . . . . . . . . . . . . . . . . . . . 1279
banner motd
banner motd acknowledge . . . . . . . . . . . . . . 1280
clear checkpoint statistics . . . . . . . . . . . . . . 1281
cut-through mode
hostname. . . . . . . . . . . . . . . . . . . . . . . . 1283
initiate failover. . . . . . . . . . . . . . . . . . . . . 1283
member
movemanagement . . . . . . . . . . . . . . . . . . . 1285
no standby . . . . . . . . . . . . . . . . . . . . . . . 1286
. . . . . . . . . . . . . . . . . . . . . . 1279
. . . . . . . . . . . . . . . . . . . 1282
. . . . . . . . . . . . . . . . . . . . . . . . . 1284
nsf
. . . . . . . . . . . . . . . . . . . . . . . . . . . 1288
ping. . . . . . . . . . . . . . . . . . . . . . . . . . . 1288
. . . . . . . . . . . . . . . . . . . . . . . . . 1290
reload
set description
. . . . . . . . . . . . . . . . . . . . . 1291
show boot-version . . . . . . . . . . . . . . . . . . . 1292
show checkpoint statistics
show cut-through mode
. . . . . . . . . . . . . . 1292
. . . . . . . . . . . . . . . . 1293
Contents 55
Page 56
show memory cpu . . . . . . . . . . . . . . . . . . . 1294
show nsf
. . . . . . . . . . . . . . . . . . . . . . . . 1295
show process cpu . . . . . . . . . . . . . . . . . . . 1296
show sessions . . . . . . . . . . . . . . . . . . . . . 1299
show stack-port
show stack-port counters
. . . . . . . . . . . . . . . . . . . . 1300
. . . . . . . . . . . . . . . 1301
show stack-port diag . . . . . . . . . . . . . . . . . 1303
show stack-standby
. . . . . . . . . . . . . . . . . . 1305
show supported switchtype . . . . . . . . . . . . . . 1306
show switch . . . . . . . . . . . . . . . . . . . . . . 1308
show system
. . . . . . . . . . . . . . . . . . . . . . 1314
show system id . . . . . . . . . . . . . . . . . . . . . 1316
show tech-support . . . . . . . . . . . . . . . . . . . 1317
show users
. . . . . . . . . . . . . . . . . . . . . . . 1319
show version . . . . . . . . . . . . . . . . . . . . . . 1320
56 Contents
stack . . . . . . . . . . . . . . . . . . . . . . . . . . 1321
stack-port
. . . . . . . . . . . . . . . . . . . . . . . 1322
standby . . . . . . . . . . . . . . . . . . . . . . . . . 1323
switch priority . . . . . . . . . . . . . . . . . . . . . 1323
switch renumber
. . . . . . . . . . . . . . . . . . . . 1324
Page 57
telnet . . . . . . . . . . . . . . . . . . . . . . . . . . 1325
traceroute
. . . . . . . . . . . . . . . . . . . . . . . 1327
70 Telnet Server Commands. . . . . . . . . . . 1331
ip telnet server disable . . . . . . . . . . . . . . . . 1332
ip telnet port . . . . . . . . . . . . . . . . . . . . . . 1332
show ip telnet
. . . . . . . . . . . . . . . . . . . . . 1333
71 User Interface Commands. . . . . . . . . . 1335
enable . . . . . . . . . . . . . . . . . . . . . . . . . 1336
end . . . . . . . . . . . . . . . . . . . . . . . . . . . 1336
exit
. . . . . . . . . . . . . . . . . . . . . . . . . . . 1337
quit . . . . . . . . . . . . . . . . . . . . . . . . . . . 1338
72 Web Server Commands . . . . . . . . . . . . 1339
common-name . . . . . . . . . . . . . . . . . . . . . 1340
country
. . . . . . . . . . . . . . . . . . . . . . . . . 1340
crypto certificate generate
crypto certificate import
crypto certificate request
. . . . . . . . . . . . . . 1341
. . . . . . . . . . . . . . . . 1342
. . . . . . . . . . . . . . . 1344
duration . . . . . . . . . . . . . . . . . . . . . . . . 1345
ip http port
. . . . . . . . . . . . . . . . . . . . . . . 1345
Contents 57
Page 58
ip http server . . . . . . . . . . . . . . . . . . . . . . 1346
ip https certificate
. . . . . . . . . . . . . . . . . . . 1347
ip https port. . . . . . . . . . . . . . . . . . . . . . . 1347
ip https server . . . . . . . . . . . . . . . . . . . . . 1348
key-generate
location
. . . . . . . . . . . . . . . . . . . . . . 1349
. . . . . . . . . . . . . . . . . . . . . . . . . 1350
organization-unit . . . . . . . . . . . . . . . . . . . . 1350
show crypto certificate mycertificate
. . . . . . . . . 1351
show ip http . . . . . . . . . . . . . . . . . . . . . . 1352
show ip https . . . . . . . . . . . . . . . . . . . . . . 1353
state
. . . . . . . . . . . . . . . . . . . . . . . . . . 1355
58 Contents
Page 59
1

Command Groups

Introduction

The Command Line Interface (CLI) is a network management application operated through an ASCII terminal without the use of a Graphic User Interface (GUI) driven software application. By directly entering commands, the user has greater configuration flexibility. The CLI is a basic command-line interpreter similar to the UNIX C shell.
A switch can be configured and maintained by entering commands from the CLI, which is based solely on textual input and output with commands being entered by a terminal keyboard and the output displayed as text via a terminal monitor. The CLI can be accessed from a console terminal connected to an EIA/TIA-232 port or through a Telnet session.
This guide describes how the CLI is structured, describes the command syntax, and describes the command functionality.
This guide also provides information for configuring the PowerConnect switch, details the procedures, and provides configuration examples. Basic installation configuration is described in the completed before using this document.
User’s Guide
and must be

Command Groups

The system commands can be broken down into three sets of functional groups, Layers 2, Layer 3, and Utility.
Table 1-1. System Command Groups
Command Group Description
Layer 2 Commands
AAA Configures connection security including authorization
and passwords.
ACL Configures and displays ACL information.
Command Groups 59
Page 60
Table 1-1. System Command Groups
Command Group Description
Address Table Configures bridging address tables.
CDP Interoperability Configures Cisco Discovery Protocol (CDP).
DHCP l2 Relay Enables the Layer 2 DHCP Relay agent for an interface.
DHCP Snooping Configures DHCP snooping and whether an interface is
trusted for filtering.
Dynamic ARP Inspection Configures for rejection of invalid and malicious ARP
packets.
Ethernet Configuration Configures all port configuration options for example
ports, storm control, port speed and auto-negotiation.
GVRP Configures and displays GVRP configuration and
information.
IGMP Snooping Configures IGMP snooping and displays IGMP
configuration and IGMP information.
IGMP Snooping Querier Configures IGMP Snooping Querier and displays IGMP
Snooping Querier information.
IP Addressing Configures and manages IP addresses on the switch.
IPv6 ACL Configures and displays ACL information for IPv6.
IPv6 MLD Snooping Configures IPv6 MLD Snooping.
IPv6 MLD Snooping Querier
iSCSI Optimization Configures special treatment for traffic between iSCSI
LACP Configures and displays LACP information.
Link Dependency Configures and displays link dependency information.
LLDP Configures and displays LLDP information.
Port Channel Configures and displays Port channel information.
Port Monitor Monitors activity on specific target ports.
QoS Configures and displays QoS information.
Radius Configures and displays RADIUS information.
Configures IPv6 Snooping Querier and displays IPv6 Snooping Querier information.
initiators and target systems and allows the switch to automatically discover Dell EqualLogic arrays via LLDP.
(continued)
60 Command Groups
Page 61
Table 1-1. System Command Groups
Command Group Description
Spanning Tree Configures and reports on Spanning Tree protocol.
Switchport Voice Configures the Auto VoIP feature.
TACACS+ Configures and displays TACACS+ information.
VLAN Configures VLANs and displays VLAN information.
Voice VLAN Configures voice VLANs and displays voice VLAN
information
802.1x Configures and displays commands related to 802.1x security protocol.
Layer 3 Commands
ARP (IPv4) Manages Address Resolution Protocol functions.
DHCP and BOOTP Relay (IPv4)
DHCPv6 Configures IPv6 DHCP functions.
DVMRP (Mcast) Configures DVMRP operations.
IGMP (Mcast) Configures IGMP operations.
IGMP Proxy (Mcast) Manages IGMP Proxy on the system.
IP Helper Configures relay of UDP packets.
IP Routing (IPv4) Configures IP routing and addressing.
IPv6 Multicast Manages IPv6 Multicasting on the system.
IPv6 Routing Configures IPv6 routing and addressing.
Loopback Interface (IPv6)
Multicast (Mcast) Manages Multicasting on the system.
OSPF (IPv4)_ Manages shortest path operations.
OSPFv3 (IPv6) Manages IPv6 shortest path operations.
PIM-DM (Mcast) Configures PIM-DM operations.
PIM-SM (Mcast) Configures PIM-SM operations.
Manages DHCP/BOOTP operations on the system.
Manages Loopback configurations.
(continued)
Command Groups 61
Page 62
Table 1-1. System Command Groups
Command Group Description
Router Discovery Protocol (IPv4)
Routing Information Protocol (IPv4)
Tunnel Interface (IPv6) Managing tunneling operations.
Virtual LAN Routing (IPv4)
Virtual Router Redundancy (IPv4)
Utility Commands
Auto Config Automatically configures switch when a configuration file
Captive Portal Blocks clients from accessing network until user
Clock Configures the system clock.
Configuration and Image Files
Denial of Service Provides several Denial of Service options.
Line Configures the console, SSH, and remote Telnet
Management ACL Configures and displays management access-list
Password M a n agement Provides password management.
PHY Diagnostics Diagnoses and displays the interface status.
Power Over E t hernet (PoE)
RMON Can be configured through the CLI and displays RMON
Serviceability Tracing Controls display of debug output to serial port or telnet
sFlow Configures sFlow monitoring.
Manages router discovery operations.
Configures RIP activities.
Controls virtual LAN routing.
Manages router redundancy on the system.
is not found.
verification is established.
Manages the switch configuration files.
connection.
information.
Configures PoE and displays PoE information.
information.
console.
(continued)
62 Command Groups
Page 63
Table 1-1. System Command Groups
Command Group Description
SNMP Configures SNMP communities, traps and displays SNMP
information.
SSH Configures SSH authentication.
Syslog Manages and displays syslog messages.
System Management Configures the switch clock, name and authorized users.
Telnet Server Configures Telnet service on the switch and displays
Teln e t in f or mati on.
User Interface Describes user commands used for entering CLI
commands.
Web Server Configures web-based access to the switch.
(continued)
Command Groups 63
Page 64

Mode Types

The tables on the following pages use these abbreviations for Command Mode names.
ARPA — ARP ACL Configuration
CC — Crypto Configuration
CP — Captive Portal Configuration
CPI — Captive Portal Instance
CMC — Class-Map Configuration
GC — Global Configuration
IC — Interface Configuration
IP — IP Access List Configuration
•KC Key Chain
•KE Key
L — Logging
LC — Line Configuration
MA — Management Access-level
MC — MST Configuration
ML — MAC-ACL Configuration
PE — Privileged EXEC
PM — Policy Map Configuration
PCGC — Policy Map Global Configuration
PCMC — Policy Class Map Configuration
•R Radius
RIP — Router RIP Configuration
RC — Router Configuration
ROSPF — Router Open Shortest Path First
ROSV3 — Router Open Shortest Path First Version 3
SG — Stack Global Configuration
SP — SSH Public Key
64 Command Groups
Page 65
•SK SSH Public Key-chain
TC — TACACS Configuration
UE — User EXEC
VLAN — VLAN Configuration
v6ACL — IPv6 Access List Configuration
•v6CMC
v6DP — IPv6 DHCP Pool Configuration

Layer 2 Commands

AAA
Command Description Mode*
aaa authentication dot1x Specifies one or more authentication,
authorization and accounting (AAA) methods for use on interfaces running IEEE 802.1X.
aaa authentication enable Defines authentication method lists for
accessing higher privilege levels.
aaa authentication login Defines login authentication. GC
aaa authorization network default radius
enable authentication Specifies the authentication method list when
enable password Sets a local password to control access to the
ip http authentication Specifies authentication methods for http. GC
ip https authentication Specifies authentication methods for https. GC
login authentication Specifies the login authentication method list
password Specifies a password on a line. LC
password Specifies a user password UE
Enables the switch to accept VLAN assignment by the RADIUS server.
accessing a higher privilege level from a remote telnet or console.
normal level.
for a remote telnet or console.
GC
GC
GC
LC
GC
LC
Command Groups 65
Page 66
Command Description Mode*
show authentication methods
show user accounts Displays information about the local user
show users login-history Displays information about login histories of
username Establishes a username-based authentication
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Shows information about authentication methods
database
users
system.
PE
PE
PE
GC
ACL
Command Description Mode*
access-list Creates an Access Control List (ACL) that is
identified by the parameter
deny|permit The deny command denies traffic if the
conditions defined in the deny statement are matched. The permit command allows traffic if the conditions defined in the permit statement are matched.
ip access-group Attaches a specified access-control list to an
interface.
ip access-group <name> out
mac access-group Attaches a specific MAC Access Control List
mac access-list extended Creates the MAC Access Control List (ACL)
mac access-list extended rename
Applies an IP based egress ACL on an Ethernet interface or a group of interfaces.
(ACL) to an interface in a given direction.
identified by the
Renames the existing MAC Access Control List (ACL) name.
name
accesslistnumber.
parameter.
GC
ML
GC or IC
IC
GC or IC
GC
GC
66 Command Groups
Page 67
Command Description Mode*
show ip access-lists Displays an Access Control List (ACL) and all
of the rules that are defined for the ACL.
show mac access-list Displays a MAC access list and all of the rules
that are defined for the ACL.
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
PE
PE

Address Table

Command Description Mode*
bridge address Adds a static MAC-layer station source address
to the bridge table.
bridge aging-time Sets the address table aging time. GC
bridge multicast address Registers MAC-layer Multicast addresses to the
bridge table, and adds static ports to the group.
bridge multicast filtering Enables filtering of Multicast addresses. GC
bridge multicast forbidden address
bridge multicast forbidden forward-unregistered
bridge multicast forward-all Enables forwarding of all Multicast packets on a
bridge multicast forward­unregistered
clear bridge Removes any learned entries from the
port security Disables new address learning on an interface. IC
port security max Configures the maximum addresses that can be
show bridge address-table Displays dynamically created entries in the
show bridge address-table count
Forbids adding a specific Multicast address to specific ports.
Forbids a port to be a forwarding-unregistered­multicast-addresses port.
port.
Enables the forwarding of unregistered multicast addresses
forwarding database.
learned on the port while the port is in port security mode.
bridge-forwarding database.
Displays the number of addresses present in the Forwa rd in g D atabase .
IC
IC
IC
IC
IC
IC
PE
IC
PE
PE
Command Groups 67
Page 68
Command Description Mode*
show bridge address-table static
show bridge multicast address-table
show bridge multicast filtering
show ports security Displays the port-lock status. PE
show ports security addresses
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Displays statically created entries in the bridge­forwarding database.
Displays Multicast MAC address table information.
Displays the Multicast filtering configuration. PE
Displays current dynamic addresses in locked ports.
PE
PE
PE

CDP Interoperability

Command Description Mode*
clear isdp counters Clears the ISDP counters. PE
clear isdp table Clears entries in the ISDP table. PE
isdp advertise-v2 Enables the sending of ISDP version 2 packets
from the device.
isdp enable Enables ISDP on the switch. GC/IC
isdp holdtime Configures the hold time for ISDP packets that
the switch transmits.
isdp timer Sets period of time between sending new ISDP
packets.
show isdp Displays global ISDP settings. PE
show isdp interface Displays ISDP settings for the specified
interface.
show isdp entry Displays ISDP entries. PE
show isdp neighbors Displays the list of neighboring devices. PE
show isdp traffic Displays ISDP statistics. PE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
GC
GC
GC
PE
68 Command Groups
Page 69

DHCP l2 Relay

Command Description Mode*
dhcp l2relay Enables the Layer 2 DHCP Relay agent for an
interface.
dhcp l2relay circuit-id Enables user to set the DHCP Option 82
Circuit ID for a VLAN.
dhcp l2relay remote-id Enables user to set the DHCP Option 82
Remote ID for a VLAN.
dhcp l2relay vlan Enables the L2 DHCP Relay agent for a set of
VLANs.
dhcp l2relay trust Configures an interface to trust a received
DHCP Option 82.
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
GC/IC
GC
GC
GC
IC

DHCP Snooping

Command Description Mode*
clear ip dhcp snooping binding
clear ip dhcp snooping statistics
ip dhcp snooping Enables DHCP snooping globally or on a
ip dhcp snooping binding Configures a static DHCP Snooping binding. GC
ip dhcp snooping database Configures the persistent location of the DHCP
ip dhcp snooping database write-delay
ip dhcp snooping limit Controls the maximum rate of DHCP
ip dhcp snooping log­invalid
Clears all DHCP Snooping entries. PE
clears all DHCP Snooping statistics. PE
GC/IC
specific VLAN.
GC
snooping database.
Configures the interval in seconds at which the DHCP Snooping database will be stored in persistent storage.
messages.
Enables logging of DHCP messages filtered by the DHCP Snooping application.
GC
IC
IC
Command Groups 69
Page 70
Command Description Mode*
ip dhcp snooping trust Configure a port as trusted for DHCP snooping. IC
ip dhcp snooping verify mac-address
show ip dhcp snooping Displays the DHCP snooping global and per
show ip dhcp snooping binding
show ip dhcp snooping database
show ip dhcp snooping interfaces
show ip dhcp snooping statistics
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Enables the verification of the source MAC address with the client MAC address in the received DHCP message.
port configuration.
Displays the DHCP snooping binding entries. PE
Displays the DHCP snooping configuration related to the database persistence.
Displays the DHCP Snooping status of the interfaces.
Displays the DHCP snooping filtration statistics.
GC
PE
PE
PE
PE

Dynamic ARP Inspection

Command Description Mode*
arp access-list Creates an ARP ACL. GC
clear counters ip arp inspection
ip arp inspection filter Configures the ARP ACL to be used for a single
ip arp inspection limit Configures the rate limit and burst interval
ip arp inspection trust Configures an interface as trusted for Dynamic
ip arp inspection validate Enables additional validation checks like source
Resets the statistics for Dynamic ARP Inspection on all VLANs.
VLAN or a range of VLANs to filter invalid ARP packets.
values for an interface.
ARP Inspection.
MAC address validation, destination MAC address validation or IP address validation on the received ARP packets.
PE
GC
IC
IC
GC
70 Command Groups
Page 71
Command Description Mode*
ip arp inspection vlan Enables Dynamic ARP Inspection on a single
VLAN or a range of VLANs.
permit ip host mac host Configures a rule for a valid IP address and
MAC address combination used in ARP packet validation.
show arp access-list Displays the configured ARP ACLs with the
rules.
show ip arp inspection ethernet
show ip arp inspection statistics
show ip arp inspection vlan Displays the Dynamic ARP Inspection
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Displays the Dynamic ARP Inspection configuration on all the DAI enabled interfaces.
Displays the statistics of the ARP packets processed by Dynamic ARP Inspection.
configuration on all the VLANs in the given VLAN range.
GC
ARPA
PE
PE
PE
PE

Ethernet Configuration

Command Description Mode*
clear counters Clears statistics on an interface. PE
description Adds a description to an interface. IC
duplex Configures the full/half duplex operation of a
given Ethernet interface when not using auto­negotiation.
flowcontrol Configures the flow control on a given interface. GC
interface ethernet Enters the interface configuration mode to
configure an Ethernet type interface.
interface range ethernet Enters the interface configuration mode to
configure multiple Ethernet type interfaces.
mtu Enables jumbo frames on an interface by
adjusting the maximum size of a packet or maximum transmission unit (MTU).
IC
GC
GC
IC
Command Groups 71
Page 72
Command Description Mode*
negotiation Enables auto-negotiation operation for the
speed and duplex parameters of a given interface.
show interfaces advertise Displays information about auto negotiation
advertisement.
show interfaces configuration
show interfaces counters Displays traffic seen by the physical interface. UE
show interfaces description Displays the description for all configured
show interfaces detail Displays the detail for all configured interfaces. UE
show interfaces status Displays the status for all configured interfaces. UE
show statistics ethernet Displays statistics for one port or for the entire
show storm-control Displays the storm control configuration. PE
shutdown Disables interfaces. IC
speed Configures the speed of a given Ethernet
storm-control broadcast Enables Broadcast storm control. IC
storm-control multicast Enables the switch to count Multicast packets
storm-control unicast Enables Unicast storm control. IC
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Displays the configuration for all configured interfaces.
interfaces.
switch.
interface when not using auto-negotiation.
together with Broadcast packets.
IC
PE
UE
UE
PE
IC
IC

GVRP

Command Description Mode*
clear gvrp statistics Clears all the GVRP statistics information. PE
garp timer Adjusts the GARP application join, leave, and
leaveall GARP timer values.
gvrp enable (global) Enables GVRP globally. GC
72 Command Groups
IC
Page 73
Command Description Mode*
gvrp enable (interface) Enables GVRP on an interface. IC
gvrp registration-forbid De-registers all VLANs, and prevents dynamic
VLAN registration on the port.
gvrp vlan-creation-forbid Enables or disables dynamic VLAN creation. IC
show gvrp configuration Displays GVRP configuration information,
IC
PE
including timer values, whether GVRP and dynamic VLAN creation is enabled, and which ports are running GVRP
show gvrp error-statistics Displays GVRP error statistics. UE
show gvrp statistics Displays GVRP statistics. UE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.

IGMP Snooping

Command Description Mode*
ip igmp snooping (Global) In Global Config mode, Enables Internet
Group Management Protocol (IGMP) snooping.
ip igmp snooping (Interface)
ip igmp snooping host­time-out
ip igmp snooping leave­time-out
ip igmp snooping mrouter­time-out
show ip igmp snooping groups
show ip igmp snooping interface
show ip igmp snooping mrouter
Enables Internet Group Management Protocol (IGMP) snooping on a specific VLAN.
Configures the host-time-out. IC
Configures the leave-time-out. IC
Configures the mrouter-time-out. IC
Displays Multicast groups learned by IGMP snooping.
Displays IGMP snooping configuration. PE
Displays information on dynamically learned Multicast router interfaces.
GC
IC
UE
PE
Command Groups 73
Page 74
Command Description Mode*
ip igmp snooping (VLAN) In VLAN Config mode, enables IGMP snooping
on a particular VLAN or on all interfaces participating in a VLAN.
ip igmp snooping fast-leave Enables or disables IGMP Snooping fast-leave
mode on a selected VLAN.
ip igmp snooping groupmembership-interval
ip igmp snooping maxresponse
ip igmp snooping mcrtrexpiretime
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Sets the IGMP Group Membership Interval time on a VLAN.
Sets the IGMP Maximum Response time on a particular VLAN.
Sets the Multicast Router Present Expiration time.
VLAN
VLAN
VLAN
VLAN
VLAN

IGMP Snooping Querier

Command Description Mode*
ip igmp snooping querier Enables/disables IGMP Snooping Querier on
the system (Global Configuration mode) or on a VLAN.
ip igmp snooping querier election participate
ip igmp snooping querier query-interval
ip igmp snooping querier timer expiry
ip igmp snooping querier version
show igmp snooping querier
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Enables the Snooping Querier to participate in the Querier Election process when it discovers the presence of another Querier in the VLAN.
Sets the IGMP Querier Query Interval time. GC
Sets the IGMP Querier timer expiration period. GC
Sets the IGMP version of the query that the snooping switch is going to send periodically.
Displays IGMP Snooping Querier information. PE
GC, VLAN
VLAN
GC
74 Command Groups
Page 75

IP Addressing

Command Description Mode*
clear host Deletes entries from the host name-to-address
cache
helper address Enable forwarding User Datagram Protocol
(UDP) Broadcast packets received on an interface.
ip address Sets a management IP address on the switch. GC
ip address dhcp Acquires an IP address on an interface from the
DHCP server.
ip address vlan Sets the management VLAN. GC
ip default-gateway Defines a default gateway (router). GC
ip domain-lookup Enables IP DNS-based host name-to-address
translation.
ip domain-name Defines a default domain name to complete
unqualified host names.
ip host Configures static host name-to-address
mapping in the host cache.
ip name-server Configures available name servers. GC
ipv6 address Set the IPv6 address of the management
interface.
ipv6 enable Enable IPv6 on the management interface. GC
ipv6 gateway Configures an IPv6 gateway for the
management interface.
show arp switch Displays
show hosts Displays the default domain name, a list of
name server hosts, static and cached list of host names and addresses.
show ip helper-address Displays the ip helper addresses configuration. PE
show ip interface management
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Displays the management IP interface information.
the entries in the ARP table.
PE
IC
GC
GC
GC
GC
GC
GC
PE
UE
PE
Command Groups 75
Page 76

IPv6 ACL

Command Description Mode*
{deny | permit} Creates a new rule for the current IPv6 access
list.
ipv6 access-list Creates an IPv6 Access Control List (ACL)
consisting of classification fields defined for the IP header of an IPv6 frame.
ipv6 access-list rename Changes the name of an IPv6 ACL. GC
ipv6 traffic-filter Attaches a specific IPv6 ACL to an interface or
associates it with a VLAN ID in a given direction.
show ipv6 access-lists Displays an IPv6 access list (and the rules
defined for it).
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
v6AC L
GC
GC
IC
PE

IPv6 MLD Snooping

Command Description Mode*
ipv6 mld snooping immediate-leave
ipv6 mld snooping groupmembership-interval
ipv6 mld snooping maxresponse
ipv6 mld snooping mcrtexpiretime
ipv6 mld snooping (Global) Enables MLD Snooping on the system (Global
ipv6 mld snooping (Interface)
ipv6 mld snooping (VLAN) Enables MLD Snooping on a particular VLAN
Enables or disables MLD Snooping immediate­leave admin mode on a selected interface or VLAN.
Sets the MLD Group Membership Interval time on a VLAN or interface.
Sets the MLD Maximum Response time for an interface or VLAN.
Sets the Multicast Router Present Expiration time.
Config Mode).
Enables MLD Snooping on an interface. IC
and all interfaces participating in that VLAN.
IC
VLAN
IC
VLAN
IC
VLAN
IC
GC
VLAN
76 Command Groups
Page 77
Command Description Mode*
show ipv6 mld snooping Displays MLD Snooping information. PE
show ipv6 mld snooping groups
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Displays the MLD Snooping entries in the MFDB table.
PE

IPv6 MLD Snooping Querier

Command Description Mode*
ipv6 mld snooping querier Enables MLD Snooping Querier on the system
or on a VLAN.
ipv6 mld snooping querier address
ipv6 mld snooping querier election participate
ipv6 mld snooping querier query-interval
ipv6 mld snooping querier timer expiry
show ipv6 mld snooping querier
show ipv6 mld snooping groups
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Sets the global MLD Snooping Querier address on the system or on a VLAN.
Enables the Snooping Querier to participate in the Querier Election process when it discovers the presence of another Querier in the VLAN.
Sets the MLD Querier Query Interval time. GC
Sets the MLD Querier timer expiration period. GC
Displays MLD Snooping Querier information. PE
Displays the MLD Snooping entries in the MFDB table.
GC
VLAN
GC
VLAN
VLAN
PE

iSCSI Optimization

Command Description Mode*
iscsi enable Globally enables iSCSI awareness. GC
show iscsi Displays the iSCSI settings. PE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Command Groups 77
Page 78

LACP

Command Description Mode*
lacp port-priority Configures the priority value for physical ports. IC
lacp system-priority Configures the system LACP priority. GC
lacp timeout Assigns an administrative LACP timeout. IC
show lacp ethernet Displays LACP information for Ethernet ports. PE
show lacp port-channel Displays LACP information for a port-channel. PE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.

Link Dependency

Command Description Mode*
link-dependency group Enters the link-dependency mode to
configure a link-dependency group.
no link-dependency group
add ethernet Adds member Ethernet port(s) to the
no add ethernet Removes member Ethernet port(s)
add port-channel Adds member port-channels to the
no add port-channel Removes member port-channels from
depends-on ethernet Adds the dependent Ethernet ports list. Link Dependency
no depends-on ethernet Removes the dependent Ethernet ports
depends-on port­channel
Removes the configuration for a link­dependency group.
dependency list.
from the dependency list.
dependency list.
the dependency list.
list.
Adds the dependent port-channels list. Link Dependency
GC
GC
Link Dependency
Link Dependency
Link Dependency
Link Dependency
Link Dependency
78 Command Groups
Page 79
Command Description Mode*
no depends-on port­channel
show link-dependency Shows the link dependencies configured
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Removes the dependent port-channels list.
on a particular group.
Link Dependency
PE

LLDP

Command Description Mode*
clear lldp remote data Deletes all data from the remote data table. PE
clear lldp statistics Resets all LLDP statistics. PE
lldp notification Enables remote data change notifications. IC
lldp notification-interval Limits how frequently remote data change
notifications are sent.
lldp receive Enables the LLDP receive capability. IC
lldp timers Sets the timing parameters for local data
transmission on ports enabled for LLDP.
lldp transmit Enables the LLDP advertise capability. IC
lldp transmit-mgmt Specifies that transmission of the local system
management address information in the LLDPDUs is included.
lldp transmit-tlv Specifies which optional TLVs in the 802.1AB
basic management set will be transmitted in the LLDPDUs.
show lldp Displays the current LLDP configuration
summary.
show lldp connections Displays the current LLDP remote data. PE
show lldp interface Displays the current LLDP interface state. PE
show lldp local-device Displays the LLDP local data PE
show lldp remote-device Displays the LLDP remote data PE
GC
GC
IC
IC
PE
Command Groups 79
Page 80
Command Description Mode*
show lldp statistics Displays the current LLDP traffic statistics. PE
lldp med Enables/disables LLDP-MED on an interface. IC
lldp med transmit-tlv Spwcifies which optional TLVs in the LLDP
MED set are transmitted in the LLDPDUs.
lldp med faststartrepeatcount
lldp med confignotification Enables sending the topology change
show lldp med Displays a summary of the current LLDP MED
show lldp med interface Displays a summary of the current LLDP MED
show lldp med remote­device
show lldp med local-device Displays the advertised LLDP local data. PE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Sets the value of the fast start repeat count. GC
notifications.
configuration.
configuration for a specific interface.
Displays the current LLDP MED remote data. PE
IC
IC
PE
PE

Port Channel

Command Description Mode*
channel-group Associates a port with a port-channel. IC
interface port-channel Enters the interface configuration mode of a
specific port-channel.
interface range port­channel
hashing-mode Sets the hashing algorithm on trunk ports. IC
no hashing-mode Sets the hashing algorithm on trunk ports to
Enters the interface configuration mode to configure multiple port-channels.
default (3).
GC
GC
(port­channel )
IC (port­channel )
80 Command Groups
Page 81
Command Description Mode*
show interfaces port­channel
show statistics port-channel Displays port-channel statistics. PE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Displays port-channel information. PE

Port Monitor

Command Description Mode*
monitor session Configures a port monitoring session. GC
show monitor session Displays the port monitoring status. PE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
QoS
Command Description Mode*
assign-queue Modifies the queue ID to which the associated
traffic stream is assigned.
class Creates an instance of a class definition within
the specified policy for the purpose of defining treatment of the traffic class through subsequent policy attribute statements.
class-map Defines a new DiffServ class of type
match-any,
only
class-map rename Changes the name of a DiffServ class. GC
classofservice dotlp­mapping
classofservice ip-dscp­mapping
classofservice trust Sets the class of service trust mode of an
Maps an 802.1p priority to an internal traffic class for a switch.
Maps an IP DSCP value to an internal traffic class.
interface.
or
match-all
match-access-group
is available in the CLI.
match-all
. For now,
,
PCM C
PMC
GC
GC and IC
GC
GC and IC
Command Groups 81
Page 82
Command Description Mode*
conform-color Specifies for each outcome, the only possible
actions are drop, setdscp-transmit, set-prec­transmit, or transmit
cos-queue min-bandwidth Specifies the minimum transmission bandwidth
for each interface queue.
cos-queue strict Activates the strict priority scheduler mode for
each specified queue.
diffserv Sets the DiffServ operational mode to active. GC
drop Use the drop policy-class-map configuration
command to specify that all packets for the associated traffic stream are to be dropped at ingress.
mark cos Marks all packets for the associated traffic
stream with the specified class of service value in the priority field of the 802.1p header.
mark ip-dscp Marks all packets for the associated traffic
stream with the specified IP DSCP value.
mark ip-precedence Marks all packets for the associated traffic
stream with the specified IP precedence value.
match class-map Adds add to the specified class definition the
set of match conditions defined for another class.
match cos Adds to the specified class definition a match
condition for the Class of Service value.
match destination-address mac
match dstip Adds to the specified class definition a match
match dstip6 adds to the specified class definition a match
Adds to the specified class definition a match condition based on the destination MAC address of a packet.
condition based on the destination IP address of a packet.
condition based on the destination IPv6 address of a packet.
PCM C
GC and IC
GC and IC
PCM C
PCM C
PCM C
PCM C
CMC
CMC
CMC
CMC
v6CM C
82 Command Groups
Page 83
Command Description Mode*
match dstl4port Adds to the specified class definition a match
condition based on the destination layer 4 port of a packet using a single keyword, or a numeric notation.
match ethertype Adds to the specified class definition a match
condition based on the value of the ethertype.
match ip6flowlbl Adds to the specified class definition a match
condition based on the IPv6 flow label of a packet.
match ip dscp Adds to the specified class definition a match
condition based on the value of the IP DiffServ Code Point (DSCP) field in a packet.
match ip precedence Adds to the specified class definition a match
condition based on the value of the IP.
match ip tos Adds to the specified class definition a match
condition based on the value of the IP TOS field in a packet.
match protocol Adds to the specified class definition a match
condition based on the value of the IP Protocol field in a packet using a single keyword notation or a numeric value notation.
match source-address mac Adds to the specified class definition a match
condition based on the source MAC address of the packet.
match srcip Adds to the specified class definition a match
condition based on the source IP address of a packet.
match srcip6 Adds to the specified class definition a match
condition based on the source IPv6 address of a packet.
match srcl4port Adds to the specified class definition a match
condition based on the source layer 4 port of a packet using a single keyword, a numeric notation, or a numeric range notation.
CMC
CMC
v6CM C
CMC
CMC
CMC
CMC
CMC
CMC
v6CM C
CMC
Command Groups 83
Page 84
Command Description Mode*
match vlan Adds to the specified class definition a match
condition based on the value of the layer 2 VLAN Identifier field.
mirror Mirrors all the data that matches the class
defined to the destination port specified
police-simple Establishes the traffic policing style for the
specified class.
policy-map Establishes a new DiffServ policy GC
redirect Specifies that all incoming packets for the
associated traffic stream are redirected to a specific egress interface (physical port or port­channel).
service-policy Attaches a policy to an interface in a particular
direction.
show class-map Displays all configuration information for the
specified class.
show classofservice dotlp­mapping
show classofservice ip-dscp­mapping
show classofservice trust Displays the current trust mode setting for a
show diffserv Displays the DiffServ General Status
show diffserv service interface ethernet in
show diffserv service interface port-channel in
show diffserv service brief Displays all interfaces in the system to which a
show interfaces cos-queue Displays the class-of-service queue
Displays the current Dot1p (802.1p) priority mapping to internal traffic classes for a specific interface.
Displays the current IP DSCP mapping to internal traffic classes for a specific interface.
specific interface.
information.
Displays policy service information for the specified interface and direction.
Displays policy service information for the specified interface and direction.
DiffServ policy has been attached.
configuration for the specified interface.
CMC
PCM C
PCM C
PCM C
GC and IC
PE
PE
PE
PE
PE
PE
PE
PE
PE
84 Command Groups
Page 85
Command Description Mode*
show policy-map Displays all configuration information for the
specified policy.
show policy-map interface Displays policy-oriented statistics information
for the specified interface and direction
show service-policy Displays a summary of policy-oriented statistics
information for all interfaces in the specified direction.
traffic-shape Specifies the maximum transmission
bandwidth limit for the interface as a whole.
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
PE
PE
PE
GC and IC

Radius

Command Description Mode*
aaa accounting network default start-stop group radius
auth-port
deadtime Improves Radius response times when a server is
key
msgauth Enables the message authenticator attribute to
name Assigns a name to a RADIUS server. R
primary Specifies that a configured server should be the
priority Specifies the order in which the servers are to be
Enables RADIUS accounting on the switch. GC
Sets the port number for authentication requests of the designated radius server
unavailable by causing the unavailable server to be skipped.
Sets the authentication and encryption key
R
.
R
R
for all RADIUS communications between the switch and the RADIUS daemon
be used for the RADIUS Authenticating server being configured.
primary server in the group of authentication servers which have the same server name.
used, with 0 being the highest priority.
.
R
R
R
Command Groups 85
Page 86
Command Description Mode*
radius-server deadtime Improves RADIUS response times when servers
are unavailable. Causes the unavailable servers to be skipped.
radius-server host Specifies a RADIUS server host. GC
radius-server key Sets the authentication and encryption key for
all RADIUS communications between the switch and the RADIUS daemon.
radius-server retransmit Specifies the number of times the software
searches the list of RADIUS server hosts.
radius-server source-ip Specifies the source IP address used for
communication with RADIUS servers.
radius-server timeout Sets the interval for which a switch waits for a
server host to reply
retransmit Specifies the number of times the software
searches the list of RADIUS server hosts before stopping the search.
show radius-servers Displays the RADIUS server settings. PE
show radius-servers statistics
source-ip Specifies the source IP address to be used for
timeout Sets the timeout value in seconds for the
usage Specifies the usage type of the server. R
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Shows the statistics for an authentication or accounting server.
communication with RADIUS servers.
designated radius server.
GC
GC
GC
GC
GC
R
PE
R
R

Spanning Tree

Command Description Mode*
clear spanning-tree detected-protocols
exit (mst) Exits the MST configuration mode and applies
86 Command Groups
Restarts the protocol migration process on all interfaces or on the specified interface.
configuration changes.
PE
MC
Page 87
Command Description Mode*
instance (mst) Maps VLANs to an MST instance. MC
name (mst) Defines the MST configuration name. MC
revision (mst) Defines the configuration revision number. MC
show spanning-tree Displays spanning tree configuration. PE
show spanning-tree summary
spanning tree Enables spanning-tree functionality. GC
spanning-tree auto-portfast Sets the port to auto portfast mode. IC
spanning-tree bpdu Defines the bridge protocol data unit (BPDU)
spanning-tree bpdu flooding
spanning-tree bpdu­protection
spanning-tree cost Configures the spanning tree path cost for a
spanning-tree disable Disables spanning tree on a specific port. IC
spanning-tree forward-time Configures the spanning tree bridge forward
spanning-tree guard Selects whether loop guard or root guard is
spanning-tree link-type Overrides the default link-type setting. IC
spanning-tree loopguard Enables loop guard on all ports. GC
spanning-tree max-age Configures the spanning tree bridge maximum
spanning-tree max-hops Sets the MSTP Max Hops parameter to a new
spanning-tree mode Configures the spanning tree protocol. GC
Displays spanning tree settings and parameters for the switch.
handling when spanning tree is disabled on an interface.
Allows flooding of BPDUs received on nonspanning-tree ports to all other non­spanning-tree ports.
Enables BPDU protection on a switch. GC
port.
time.
enabled on an interface.
age.
value for the common and internal spanning tree.
PE
GC
GC
IC
GC
IC
GC
GC
Command Groups 87
Page 88
Command Description Mode*
spanning-tree mst configuration
spanning-tree mst 0 external-cost
spanning-tree mst cost Configures the path cost for multiple spanning
spanning-tree mst port­priority
spanning-tree mst priority Configures the switch priority for the specified
spanning-tree pathcost method
spanning-tree portfast Enables PortFast mode. IC
spanning-tree portfast bpdufilter default
spanning-tree portfast default
spanning-tree port-priority Configures port priority. IC
spanning-tree priority Configures the spanning tree priority. GC
spanning-tree tcnguard Prevents a port from propagating topology
spanning-tree transmit hold-count
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Enables configuring an MST region by entering the multiple spanning-tree (MST) mode.
Sets the external cost for the common spanning tree.
tree (MST) calculations.
Configures port priority. IC
spanning tree instance.
Configures the spanning tree default pathcost method
Discards BPDUs received on spanningtree ports in portfast mode.
Enables Portfast mode on all ports. GC
change notifications.
Set the maximum number of BPDUs that a bridge is allowed to send within a hello time window (2 seconds).
GC
IC
IC
GC
GC
GC
IC
GC
88 Command Groups
Page 89

Switchport Voice

Command Description Mode*
switchport voice detect auto
show switchport voice Displays the status of auto-voip on an interface
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Enables the VoIP Profile on all the interfaces of the switch.
or all interfaces.
GC/IC
PE

TACACS+

Command Description Mode*
key Specifies the authentication and encryption key
for all TACACS communications between the device and the TACACS server.
port Specifies a server port number. TC
priority Specifies the order in which servers are used. TC
show tacacs Displays TACACS+ server settings and
statistics.
tacacs-server host Specifies a TACACS+ server host. GC
tacacs-server key Sets the authentication and encryption key for
all TACACS+ communications between the switch and the TACACS+ daemon.
tacacs-server timeout Sets the interval for which the switch waits for a
server host to reply.
timeout Specifies the timeout value in seconds. TC
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
TC
PE
GC
GC

VLAN

Command Description Mode*
dvlan-tunnel ethertype Configures the EtherType for the interface. GC
interface vlan Enters the interface configuration (VLAN)
mode.
Command Groups 89
GC
Page 90
Command Description Mode*
interface range vlan Enters the interface configuration mode to
configure multiple VLANs.
mode dvlan-tunnel Enables Double VLAN tunneling on the
specified interface
name Configures a name to a VLAN. IC
protocol group Attaches a
identified by
protocol vlan group Adds the physical unit/port interface to the
protocol-based VLAN identified by
protocol vlan group all Adds all physical unit/port interfaces to the
protocol-based VLAN identified by
show dvlan-tunnel Displays all interfaces enabled for Double
VLAN Tunneling.
show dvlan-tunnel interface Displays detailed information about Double
VLAN Tunneling for the specified interface.
show interfaces switchport Displays switchport configuration. PE
show port protocol Displays the Protocol-Based VLAN information
for either the entire system or for the indicated group
show switchport protected Displays protected group/port information. PE
show vlan Displays VLAN information. PE
show vlan association mac Displays the VLAN associated with a specific
configured MAC address.
show vlan association subnet
switchport access vlan Configures the VLAN ID when the interface is
switchport forbidden vlan Forbids adding specific VLANs to a port. IC
switchport general acceptable-frame-type tagged-only
Displays the VLAN associated with a specific configured IP subnet.
in access mode.
Discards untagged frames at ingress. IC
vlanid
to the protocol-based VLAN
groupid
.
groupid
groupid
GC
IC
VLAN
IC
.
GC
.
PE
PE
PE
PE
PE
IC
90 Command Groups
Page 91
Command Description Mode*
switchport general allowed vlan
switchport general ingress­filtering disable
switchport general pvid Configures the PVID when the interface is in
switchport mode Configures the VLAN membership mode of a
switchport protected Sets the port to Protected mode. IC
switchport protected name Configures a name for a protected group GC
switchport trunk allowed vlan
vlan Creates a VLAN. VLAN
vlan association mac Associates a MAC address to a VLAN. VLAN
vlan association subnet Associates an IP subnet to a VLAN VLAN
vlan database Enters the VLAN database configuration mode. GC
vlan makestatic Changes a dynamically created VLAN to a static
vlan protocol group Adds protocol-based VLAN groups to the
vlan protocol group add protocol
vlan protocol group name Adds a group name to the protocol-based VLAN
vlan protocol group remove Removes the protocol-base VLAN group
vlan routing Enable routing on a VLAN. PE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Adds or removes VLANs from a port in General mode.
Disables port ingress filtering. IC
general mode.
port.
Adds or removes VLANs from a port in general mode.
VLAN.
system.
Adds a protocol to the protocol-based VLAN identified by
identified by
identified by
groupid
groupid
groupid
.
.
.
IC
IC
IC
IC
VLAN
GC
GC
GC
GC
Command Groups 91
Page 92

Voice VLAN

Command Description Mode*
voice vlan Enables the voice VLAN capability on the
switch.
voice vlan Enables the voice VLAN capability on the
interface
voice vlan data priority Trusts or not trusts the data traffic arriving on
the voice VLAN port.
show voice vlan Displays various properties of the voice VLAN. PE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
GG
IC
IC

802.1x

Command Description Mode*
dot1x mac-auth-bypass Enables MAB on an interface. IC
dot1x max-req Sets the maximum number of times the switch
sends an EAP-request frame to the client before restarting the authentication process.
dot1x max-users Sets the maximum number of clients supported
on the port when MAC-based 802.1X authentication is enabled on the port.
dot1x port-control Enables manual control of the authorization
state of the port.
dot1x re-authenticate Manually initiates a re-authentication of all
802.1x-enabled ports or a specified 802.1X enabled port.
dot1x re-authentication Enables periodic re-authentication of the client. IC
dot1x system-auth-control Enables 802.1X globally. GC
dot1x timeout quiet-period Sets the number of seconds the switch remains
in the quiet state following a failed authentication attempt
dot1x timeout re­authperiod
Sets the number of seconds between re­authentication attempts.
IC
IC
IC
PE
IC
IC
92 Command Groups
Page 93
Command Description Mode*
dot1x timeout server­timeout
dot1x timeout supp­timeout
dot1x timeout tx-period Sets the number of seconds the switch waits for
show dot1x Displays 802.1X status for the switch or the
show dot1x clients Displays detailed information about the users
show dot1x ethernet Shows the status of MAC Authentication
show dot1x statistics Displays 802.1X statistics for the specified
show dot1x users Displays active 802.1X authenticated users for
dot1x guest-vlan Sets the guest VLAN on a port. IC
dot1x unauth-vlan Specifies the unauthenticated VLAN on a port. IC
dot1x guest-vlan Defines a guest VLAN. IC
show dot1x advanced Displays 802.1X advanced features for the
radius-server attribute 4 Sets the network access server (NAS) IP address
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Sets the number of seconds the switch waits for a response from the authentication server before resending the request.
Sets the number of seconds the switch waits for a response to an EAP-request frame from the client before retransmitting the request.
a response to an EAP-request/identify frame from the client before resending the request.
specified interface.
who have successfully authenticated on the system or on a specified port.
Bypass.
interface.
the switch.
switch or specified interface.
for the RADIUS server.
IC
IC
IC
PE
PE
PE
PE
PE
PE
GC
Command Groups 93
Page 94

Layer 3 Commands

ARP (IPv4)

Command Description Mode*
arp Creates an Address Resolution Protocol (ARP)
entry.
arp cachesize Configures the maximum number of entries in
the ARP cache.
arp dynamicrenew Enables the ARP component to automatically
renew dynamic ARP entries when they age out.
arp purge Causes the specified IP address to be removed
from the ARP cache.
arp resptime
arp retries Configures the ARP count of maximum request
arp timeout Configures the ARP entry age-out time. GC
clear arp-cache Removes all ARP entries of type dynamic from
clear arp-cache management
ip proxy-arp Enables proxy ARP on a router interface. IC
show arp Displays the Address Resolution Protocol (ARP)
show arp brief Displays the brief Address Resolution Protocol
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Configures the ARP request response timeout.
for retries.
the ARP cache.
Removes all entries from the ARP cache learned from the management port.
cache.
(ARP) table information.
GC
GC
GC
PE
GC
GC
PE
PE
PE
PE
94 Command Groups
Page 95

DHCP and BOOTP Relay (IPv4)

Command Description Mode*
bootpdhcprelay cidridoptmode
bootpdhcprelay maxhopcount
bootpdhcprelay minwaittime
show bootpdhcprelay Shows the the BootP/DHCP Relay information. GC
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Enables the circuit ID option and remote agent ID mode for BootP/DHCP Relay on the system.
Configures the maximum allowable relay agent hops for BootP/DHCP Relay on the system.
Configures the minimum wait time in seconds for BootP/DHCP Relay on the system.
GC
GC
GC

DHCPv6

Command Description Mode*
clear ipv6 dhcp Clears DHCPv6 statistics for all interfaces or for
a specific interface.
dns-server Sets the ipv6 DNS server address which is
provided to a DHCPv6 client by the DHCPv6 server.
domain-name Sets the DNS domain name which is provided
to a DHCPv6 client by the DHCPv6 server.
ipv6 dhcp pool Enters IPv6 DHCP Pool Configuration mode. GC
ipv6 dhcp relay Configures an interface for DHCPv6 relay
functionality.
ipv6 dhcp relay-agent-info­opt
ipv6 dhcp relay-agent-info­remote-id-subopt
ipv6 dhcp server Configures DHCPv6 server functionality on an
prefix-delegation Defines Multiple IPv6 prefixes within a pool for
Configures a number to represent the DHCPv6 Relay Agent Information Option.
Configures a number to represent the DHCPv6 the “remote-id” sub-option.
interface.
distributing to specific DHCPv6 Prefix delegation clients.
PE
v6DP
v6DP
IC
GC
GC
IC
v6DP
Command Groups 95
Page 96
Command Description Mode*
service dhcpv6 Enables DHCPv6 configuration on the router. GC
show ipv6 dhcp Displays the DHCPv6 server name and status. PE
show ipv6 dhcp binding Displays the configured DHCP pool. PE
show ipv6 dhcp interface Displays DHCPv6 information for all relevant
interfaces or a specified interface.
show ipv6 dhcp pool Displays the configured DHCP pool. PE
show ipv6 dhcp statistics Displays the DHCPv6 server name and status. UE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
UE

DVMRP

Command Description Mode*
ip dvmrp S
ip dvmrp metric Configures the metric for an interface. IC
ip dvmrp trapflags Enables the DVMRP trap mode. GC
show ip dvmrp Displays the system-wide information for
show ip dvmrp interface Displays the interface information for DVMRP
show ip dvmrp neighbor Displays the neighbor information for DVMRP. PE
show ip dvmrp nexthop D
show ip dvmrp prune Displays the table that lists the router’s
show ip dvmrp route Displays the multicast routing information for
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
ets the administrative mode of DVMRP in the
router to active.
DVMRP.
on the specified interface.
isplays the next hop information on outgoing interfaces for routing multicast datagrams.
upstream prune information.
DVMRP.
GC IC
PE
PE
PE
PE
PE
96 Command Groups
Page 97

IGMP

Command Description Mode*
ip igmp Sets the administrative mode of IGMP in the
system to active.
ip igmp last-member-query­count
ip igmp last-member-query­interval
ip igmp query-interval Configures the query interval for the specified
ip igmp query-max­response-time
ip igmp robustness Configures the robustness that allows tuning
ip igmp startup-query-count Sets the number of queries sent out on
ip igmp startup-query­interval
ip igmp version Configures the version of IGMP for an
show ip igmp Displays system-wide IGMP information. PE
show ip igmp groups Displays the registered multicast groups on the
show ip igmp interface Displays the IGMP information for the
Sets the number of Group-Specific Queries sent before the router assumes that there are no local members on the interface.
Configures the Maximum Response Time inserted in Group-Specific Queries which are sent in response to Leave Group messages.
interface. The query interval determines how fast IGMP Host-Query packets are transmitted on this interface.
Configures the maximum response time interval for the specified interface.
of the interface.
startup— at intervals equal to the startup query interval for the interface.
Sets the interval between general queries sent at startup on the interface.
interface.
interface.
specified interface.
GC
IC
IC
IC
IC
IC
IC
IC
IC
PE
PE
Command Groups 97
Page 98
Command Description Mode*
show ip igmp interface membership
show ip igmp interface stats Displays the IGMP statistical information for
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Displays the list of interfaces that have registered in the multicast group.
the interface.
PE
PE

IGMP Proxy

Command Description Mode*
ip igmp-proxy Enables the IGMP Proxy on the router. IC
ip igmp-proxy reset-status Resets the host interface status parameters of
the IGMP Proxy router.
ip igmp-proxy unsolicited­report-interval
show ip igmp-proxy Displays a summary of the host interface status
show ip igmp-proxy interface
show ip igmp-proxy groups Displays a table of information about multicast
show ip igmp-proxy groups detail
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
Sets the unsolicited report interval for the IGMP Proxy router.
parameters.
Displays a detailed list of the host interface status parameters.
groups that IGMP Proxy reported.
Displays complete information about multicast groups that IGMP Proxy has reported.
IC
IC
PE
PE
PE
PE

IP Helper

Command Description Mode*
clear ip helper statistics Resets (to 0) the statistics displayed in show ip
helper statistics.
ip helper-address (global configuration)
ip helper-address (interface configuration)
Configures the relay of certain UDP broadcast packets received on any interface.
Configures the relay of certain UDP broadcast packets received on a specific interface.
98 Command Groups
PE
GC
IC
Page 99
Command Description Mode*
ip helper enable Enables relay of UDP packets. GC
show ip helper-address Displays the IP helper address configuration. PE
show ip helper statistics Displays the number of DHCP and other UDP
packets processed and relayed by the UDP relay agent.
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
PE

IP Routing

Command Description Mode*
encapsulation Configures the link layer encapsulation type for
the packet.
ip address Configures an IP address on an interface. IC
ip mtu Sets the IP Maximum Transmission Unit
(MTU) on a routing interface.
ip netdirbcast E
nables the forwarding of network-directed
broadcasts.
ip route Configures a static route. Use the no form of
the command to delete the static route.
ip route default Configures the default route. Use the no form
of the command to delete the default route.
ip route distance Sets the default distance (preference) for static
routes.
ip routing Globally enables IPv4 routing on the router. GC
routing Enables IPv4 and IPv6 routing for an interface. IC
show ip brief Displays all the summary information of the IP. PE
show ip interface Displays all pertinent information about the IP
interface.
show ip protocols Displays the parameters and current state of the
active routing protocols.
show ip route Displays the routing table. PE
IC
IC
IC
GC
GC
GC
PE
PE
Command Groups 99
Page 100
Command Description Mode*
show ip route preferences Displays detailed information about the route
preferences.
show ip route summary Shows the number of all routes, including best
and non-best routes.
show ip stats Displays IP statistical information UE
*NOTE: For the meaning of each Mode abbreviation, see "Mode Types" on page 64.
PE
PE

IPv6 Multicast

Command Description Mode*
ipv6 pimsm (Global config) Administratively enables PIMSM for IPv6
multicast routing.
ipv6 pimsm (VLAN Interface config)
ipv6 pimsm bsr-border Prevents bootstrap router (BSR) messages from
ipv6 pimsm bsr-candidate Configures the router to announce its
ipv6 pimsm dr-priority Sets the priority value for which a router is
ipv6 pimsm hello-interval Configures the PIM-SM Hello Interval for the
ipv6 pimsm join-prune­interval
ipv6 pimsm register­threshold
ipv6 pimsm rp-address Statically configures the RP address for one or
ipv6 pimsm rp-candidate Configures the router to advertise itself as a
Administratively enables PIM-SM multicast routing mode on a particular IPv6 router interface.
being sent or received through an interface.
candidacy as a bootstrap router (BSR).
elected as the designated router (DR).
specified interface.
Configures the interface join/prune interval for the PIM-SM router
Configure the Register Threshold rate for the RP router to switch to the shortest path.
more multicast groups.
PIM candidate rendezvous point (RP) to the bootstrap router (BSR).
GC
IC
IC
GC
IC
IC
IC
GC
GC
GC
100 Command Groups
Loading...