NETGEAR and the NETGEAR logo are registered trademarks, and ProSafe is a trademark of NETGEAR, Inc.
Microsoft, Windows, and Wi ndow s NT are registered trademar ks of Microsoft Corporation.
Other brand and product names are registered trademarks or trademarks of their respective holders. Portions of this
document are copyright Intoto, Inc.
October 2008
Statement of Conditions
In the interest of improving internal design, operational function, and/or reliability, NETGEAR reserves the right to
make changes to the products described in this document without notice.
NETGEAR does not assume any liability that may occur due to the use or application of the product(s) or circuit
layout(s) described herein.
EN 55 022 Declaration of Conformance
This is to certify that the ProSafe 7200RS Series Layer-2 Managed Stackable Switch is shielded against the generation of
radio interference in accordance with the application of Council Directive 89/336/EEC, Article 4a. Conformity is
declared by the application of EN 55 022 Class B (CISPR 22).
Certificate of the Manufacturer/Importer
It is hereby certified that the ProSafe 7200RS Series Layer-2 Managed Stackable Switch has been suppressed
in accordance with the conditions set out in the BMPT-AmtsblVfg 243/1991 and Vfg 46/1992. The operation of some
equipment (for example, test transmitters) in accordance with the regulations may, however, be subject to certain
restrictions. Please refer to the notes in the operating instructions.
The Federal Office for Telecommunications Approvals has been notified of the placing of this equipment on the market
and has been granted the right to test the series for compliance with the regulations.
Bestätigung des Herstellers/Importeurs
Es wird hiermit bestätigt, daß dasProSafe 7200RS Series Layer-2 Managed Stackable Switch gemäß der im BMPTAmtsblVfg 243/1991 und Vfg 46/1992 aufgeführten Bestimmungen entstört ist. Das vorschriftsmäßige Betreiben
einiger Geräte (z.B. Testsender) kann jedoch gewissen Beschränkungen unterliegen. Lesen Sie dazu bitte die
Anmerkungen in der Betriebsanleitung.
Das Bundesamt für Zulassungen in der Telekommunikation wurde davon unterrichtet, daß dieses Gerät auf den Markt
gebracht wurde und es ist berechtigt, die Serie auf die Erfüllung der Vorschriften hin zu überprüfen.
Voluntary Control Council for Interference (VCCI) Statement
This equipment is in the Class B category (information equipment to be used in a residential area or an adjacent area
thereto) and conforms to the standards set by the Voluntary Control Council for Interference by Data Processing
Equipment and Electronic Office Machines aimed at preventing radio interference in such residential areas. When used
near a radio or TV receiver, it may become the cause of radio interference. Read instructions for correct handling.
ii
v1.0, October 2008
Page 3
Product and Publication Details
Model Number:FSM7226RS
Publication Date:October 2008
Product Family:managed switch
Product Name:ProSafe 7200RS Series Layer-2 Managed Stackable Switch
Home or Business Product:Business
Language:English
Publication Part Number:202-10455-01
Publication Version Number1.0
v1.0, October 2008
iii
Page 4
iv
v1.0, October 2008
Page 5
Contents
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2
Stackable Switches with Static Routing, Software Version 7.3
19.2.1 show ip helper-addre ss .......................... .... ... ....................................... ... .. 19-3
Appendix A
Command Changes from Release 3 to Release 5
v1.0, October 2008
xxv
Page 26
xxvi
v1.0, October 2008
Page 27
This chapter introduces the Command Line Interface Reference for the ProSafe 7200RS
Series Layer-2 Stackable Switches with Static Routing, Software Version 7.3. It describes
the command-line interface (CLI) commands used to view and configure the 7200RS
Series Stackable Switch software. You can access the CLI by using a direct connection to
the serial port or by using telnet or SSH over a remote network connection.
1.1 Audience
This document is for system administrators who configure and operate systems using
7200RS Series Stackable Switch software. Software engineers who integrate 7200RS
Series Stackable Switch software into their hardware platform can also benefit from a
description of the configuration options.
This document assumes that the reader has an understanding of the 7200RS Series
Stackable Switch software base and has read the appropriate specification for the relevant
networking device platform. It also assumes that the reader has a basic knowledge of
Ethernet and networking concepts.
Chapter 1
About This Manual
1.2 Scope
This manual is written for the 7200RS Series Stackable Switch according to these
specifications:
Table 1-1. Manual Specifications
Product ProSafe 7200RS Series Layer-2 Managed Stackable Switch
Manual Part Number202-10455-01
Manual Publication DateOctober 2008
About This Manual1-1
v1.0, October 2008
Page 28
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Note: Product updates are available on the NETGEAR Web site at
http://kbserver.netgear.com/products/.
1.3 Typographical Conventions
This guide uses the following typographical conventions:
Table 1-2. Typographical conventions
ItalicEmphasis, books, CDs, file and server names, extensions
Bold User input, IP addresses, GUI screen text
FixedCommand prompt, CLI text, code.
ItalicURL link
1.4 Special Message Formats
This guide uses the following formats to highlight special messages:
Note: This format is used to highlight of importance or special interest.
Tip: A time-saving or resource-saving procedural step.
Warning: This is a warning of possible damage to the equipment or software
malfunction.
1-2About This Manual
v1.0, October 2008
Page 29
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Danger: Ignoring this type of warning could result in personal injury or death.
1.5 How to Use This Manual
The HTML version of this manual includes the following:
•Buttons and for browsing forwards or backwards through the manual
one page at a time.
•A button that displays the table of contents and possibly an button.
Double-click on a link in the table of contents or index to navigate directly to where
the topic is described in the manual.
•A button to access the full NETGEAR, Inc. online knowledge base for the
product model.
•Links to PDF versions of the full manual and individual chapters.
1.6 How to Print this Manual
To print this manual, choose one of the following options.
•Printing a Page in the HTML View.
Each page in the HTML version of the manual is dedicated to a major topic. Use the
Print button on the browser toolbar to print the page contents.
•Printing a Chapter.
Use the PDF of This Chapter link at the top left of any page.
–Click the PDF of This Chapter link at the top right of any page in the chapter you
want to print. The PDF version of the chapter you were viewing opens in a
browser window.
Your computer must have the free Adobe Acrobat reader installed in order to view
and print PDF files. The Acrobat reader is available on the Adobe Web site at
http://www.adobe.com.
About This Manual1-3
v1.0, October 2008
Page 30
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
–Click the print icon in the window toolbar.
Tip: If your printer supports printing of two or more pages on a single sheet
of paper, you can save paper and printer ink by clicking the printer
Properties button and increasing the number of pages per sheet.
•Printing the Full Manual.
Use the Complete PDF Manual link at the top left of any page.
–Click the Complete PDF Manual link at the top left of any page in the manual.
The PDF version of the complete manual opens in a browser window.
–Click the print icon in the window toolbar.
Tip: If your printer supports printing of two or more pages on a single sheet
of paper, you can save paper and printer ink by clicking the printer
Properties button and increasing the number of pages per sheet.
1.7 Revision History
Table 1-3 lists the revision history of this manual.
Table 1-3. Revision History of This Manual
Document Part
Number
202-10455-011.0October 2008Document for version 7.3 software release
1-4About This Manual
VersionPublication Date Change Description
v1.0, October 2008
Page 31
Chapter 2
Overview
The 7200RS Series Stackable Switch software has two purposes:
•Assist attached hardware in switching frames, based on Layer 2, 3, or 4 information
contained in the frames.
•Provide a complete device management portfolio to the network administrator.
The 7200RS Series Stackable Switchs suppo rt the sa m e co mm an ds , ex ce p t in these ca s es
Table 2-1. Exceptions to Feature Support Among the 7200RS Series Switches
Commands
Routing14XX XX
Stacking16XX
Documented
in Chapter
2.1 Product Concept
Fast Ethernet and Gigabit Ethernet switching continues to evolve from high-end backbone
applications to desktop switching applications. The price of the technology continues to
decline, while performance and feature sets continue to improve. Devices that are capable
of switching Layers 2, 3, and 4 are increasingly in demand. 7200RS Series Stackable
Switch software provides a flexible solution to these ever-increasing needs.
The exact functionality provided by each networking device on which the 7200RS Series
Stackable Switch software base runs varies depending upon the platform and requirements
of NETGEAR.
7200RS Series Stackable Switch software includes a set of comprehensive management
functions for managing both the switch and the network. You can manage the 7200RS
Series Stackable Switch software by using one of the following three methods:
•Web-based
•VT100 interface
Switch Model
FSM726E FSM7226RS FSM7250RS GSM7224R GSM7248R
Overview2-1
v1.0, October 2008
Page 32
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
•Simple Network Management Protocol (SNMP)
Each of the management methods enables you to configure, manage, and control the
software locally or remotely using in-band or out-of-band mechanisms. Management is
standards-based, with configuration parameters and a private MIB providing control for
functions not completely specified in the MIBs.
2.2 Using the Command-Line Interface
The command-line interface (CLI) is a text-based way to manage and monitor the system.
You can access the CLI by using a direct serial connection or by using a remote logical
connection with telnet or SSH.
This section describes the CLI syntax, conventions, and modes. It contains the following
topics:
•Section 2.2.1 “Command Syntax” on page 2
•Section 2.2.2 “Command Conventions” on page 3
•Section 2.2.3 “Unit-Slot-Port Naming Convention” on page 5
•Section 2.2.4 “Using the “No” Form of a Command” on page 5
•Section 2.2.5 “Command Modes” on page 6
•Section 2.2.6 “Entering CLI Commands” on page 8
•Section 2.2.7 “Using CLI Help” on page 10
•Section 2.2.8 “Accessing the CLI” on page 11
2.2.1 Command Syntax
A command is one or more words that might be followed by one or more parameters.
Parameters can be required or optional values.
Some commands, such as
Other commands, such as
command. You must type the parameter values in a specific order, and optional parameters
follow required parameters. The following example describes the
command syntax:
Format
•network parms is the command name.
2-2Overview
show network or clear vlan, do not require parameters.
network parms, require that you supply a value after the
network parms
network parms <ipaddr> <netmask> [gateway]
v1.0, October 2008
Page 33
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
•<ipaddr> and <netmask> are parameters and represent requ ired values that you must
enter after you type the command keywords.
•
[gateway] is an optional parameter, so you are not required to enter a value in place
of the parameter.
The CLI Command Reference lists each command by the command name and provides a
brief description of the command. Each command reference also contains the following
information:
•Format shows the command keywords and the required and optional parameters.
•Mode identifies the command mode you must be in to access the command.
•Default shows the default value, if any, of a configurable setting on the device.
The
show commands also contain a description of the information that the command
displays.
2.2.2 Command Conventions
In this document, the command name is in bold font. Parameters are in italic font. You
must replace the parameter name with an appropriate value, which might be a name or
number. Parameters are order dependent.
The parameters for a command might include mandatory values, optional values, or
keyword choices. Table 2-2 describes the conventions this document uses to distinguish
between value types.
Table 2-2. Parameter Conventions
SymbolExampleDescription
<> angle brackets<value>Indicates that you must enter a value in
place of the brackets and text inside them.
[] square brackets[value]Indicates an optional parameter that you
can enter in place of the brackets and text
inside them.
{} curly braces{choice1 | choice2}Indicates that you must select a
parameter from the list of choices.
| Vertical barschoice1 | choice2Separates the mutually exclusive choices.
[{}] Braces within
square brackets
Overview2-3
[{choice1} choice2}]Indicate a choice within an optional
element.
v1.0, October 2008
Page 34
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
2.2.2.1 Common Parameter Values
Parameter values might be names (strings) or numbers. To use spaces as part of a name
parameter, enclose the name value in double quotes. For example, the expression “System
Name with Spaces” forces the system to accept the spaces. Empty strings (“ ”) are not
valid user-defined strings. Table 2-3 describes common parameter values and value
formatting.
Table 2-3. Parameter Descriptions
ParameterDescription
ipaddrThis parameter is a valid IP address. You can enter the IP address
in the following formats:
a (32 bits)
a.b (8.24 bits)
a.b.c (8.8.16 bits)
a.b.c.d
In addition to these formats, the CLI accepts decimal, hexidecimal
and octal formats through the following input formats (where n is
any valid hexidecimal, octal or decimal number):
0xn (CLI assumes hexidecimal format)
0n (CLI assumes octal format with leading zeros)
n (CLI assumes decimal format)
macaddrThe MAC address format is six hexadecimal numbers separated by
colons, for example 00:06:29:32:81:40.
areaid Enter area IDs in dotted-decimal notation (for example, 0.0.0.1). An
area ID of 0.0.0.0 is reserved for the backbone. Area IDs have the
same format as IP addresses but are distinct from IP addresses.
You can use the IP network number of the sub-netted network for
the area ID.
routeridEnter the value of <routerid> in dotted-decimal notation, such as
0.0.0.1. A router ID of 0.0.0.0 is invalid.
Interface or unit/slot/portValid slot and port number separated by forward slashes. For
example, 0/1 represents slot number 0 and port number 1.
Logical InterfaceLogical slot and port number. This is applicable in the case of a
port-channel (LAG). You can use the logical unit/slot/port to
configure the port-channel.
Character stringsUse double quotation marks to identify character strings, for
example, “System Name with Spaces”. An empty string (“”) is not
valid.
(8.8.8.8)
2-4Overview
v1.0, October 2008
Page 35
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
2.2.3 Unit-Slot-Port Naming Convention
7200RS Series Stackable Switch software references physical entities such as cards and
ports by using a Unit-Slot-Port (USP) naming convention. The software also uses this
convention to identify certain logical entities, such as port-channel interfaces.
The slot number has two uses. In the case of physical ports, it identifies the card
containing the ports. In the case of logical and CPU ports it also identifies the type of
interface or port.
Table 2-4. Type of Slots
Slot T y peDescription
Physical slot numbers Physical slot numbers begin with zero, and are allocated up to the
CPU slot numbersThe CPU slots immediately follow the logical slots.
The port identifies the specific physical port or logical interface being managed on a given
slot.
Table 2-5. Type of Ports
Port TypeDescription
Physical PortsThe physical ports for each slot are numbered sequentially starting
from zero. For example, port one will be “0/1” with slot number
always as zero.
Logical InterfacesPort-channel or Link Aggregation Group (LAG) interfaces are
logical interfaces that are only used for bridging functions.
VLAN routing interfaces are only used for routing functions.
CPU portsCPU ports are handled by the driver as one or more physical
entities located on physical slots.
2.2.4 Using the “No” Form of a Command
The no keyword is a specific form of an existing command and does not represent a new
or distinct command. Almost every configuration command has a
the
no form to reverse the action of a command or reset a value back to the default. For
example, the
Use the command without the keyword
no shutdown configuration command reverses the shutdown of an interface.
no to re-enable a disabled feature or to enable a
feature that is disabled by default.
Only the configuration commands are available in the
Overview2-5
no form.
no form. In general, use
v1.0, October 2008
Page 36
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
2.2.5 Command Modes
The CLI groups commands into modes according to the command function. Each of the
command modes supports specific 7200RS Series Stackable Switch software commands.
The commands in one mode are not available until you switch to that particular mode,
with the exception of the User EXEC mode commands. You can execute the User EXEC
mode commands in the Privileged EXEC mode.
The command prompt changes in each command mode to help you identify the current
mode. Table 2-6 describes the command modes and the prompts visible in that mode.
Table 2-6. CLI Command Modes
Command ModePromptMode Description
User EXEC
Privileged EXEC
Global Config
VLAN Config
Interface Config
Line Config
Policy Map Config
Switch>
Switch#
Switch (Config)#
Switch (Vlan)#
Switch (Interface <unit/slot/
port>)#
Switch (line)#
Switch (Config policy-map)#
Contains a limited set of
commands to view basic system
information.
Allows you to issue any EXEC
command, enter the VLAN
mode, or enter the Global
Configuration mode.
Groups general setup commands
and permits you to make
modifications to the running
configuration.
Groups all the VLAN commands.
Allows you to enable or modify
the operation of an interface and
provides access to the router
interface configuration
commands.
Use this mode to set up a
physical port for a specific logical
connection operation.
Allows you to configure various
telnet settings and the console
interface.
Allows you to access the QoS
Policy-Map configuration mode
to configure the QoS Policy-Map.
2-6Overview
v1.0, October 2008
Page 37
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Table 2-6. CLI Command Modes (continued)
Command ModePromptMode Description
Policy Class Config
Class Map Config
Tacacs Config
MAC Access-list
Config
DHCP Pool Config
Stack Global
Config Mode
Switch (Config policy-class-map)#
Switch (Config class-map)#
Switch (Tacacs)#
Switch (Config mac-access-list)#
Switch (Config dhcp-pool)#
Switch (Config stack)#
Consists of class creation,
deletion, and matching
commands. The class match
commands specify Layer 2,
Layer 3, and general match
criteria.
Allows you to access the QoS
Class-Map configuration mode to
configure QoS class maps.
Allows you to access the Tacacs
configuration commands.
Allows you to create a MAC
Access-List and to enter the
mode containing Mac AccessList configuration commands.
Allows you to access the DHCP
Pool configuration.
Allows you to access the Stack
Global Config Mode.
Table 2-7 explains how to enter or exit each command mode.
Table 2-7. CLI Mode Access and Exit
Command ModeAccess MethodExit or Access Previous Mode
User EXECThis is the first level of access. To exit, enter logout.
Privileged EXECFrom the User EXEC mode, enter
enable.
Global ConfigFrom the Privileged EXEC mode, enter
configure.
VLAN ConfigFrom the Privileged EXEC mode, enter
vlan database.
Interface Config From the Global Config mode, enter
interface <unit/slot/port>.
Line ConfigFrom the Global Config mode, enter
lineconfig.
Overview2-7
v1.0, October 2008
To exit to the User EXEC mode, enter
exit or press Ctrl-Z.
To exit to the Privileged EXEC mode,
enter exit, or press Ctrl-Z.
To exit to the Privileged EXEC mode,
enter exit, or press Ctrl-Z.
To exit to the Global Config mode,
enter exit. To return to the Privileged
EXEC mode, enter Ctrl-Z.
To exit to the Global Config mode,
enter exit. To return to the Privileged
EXEC mode, enter Ctrl-Z.
Page 38
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Table 2-7. CLI Mode Access and Exit (continued)
Command ModeAccess MethodExit or Access Previous Mode
Policy-Map
Config
Policy-Class-Map
Config
Class-Map
Config
Tacacs
Config
MAC Access-list
Config
DHCP Pool
Config
Stack Global
Config Mode
From the Global Config mode, enter
policy-map.
From the Policy Map mode enter
class.
From the Global Config mode, enter
class-map.
From the Global Config mode, enter
tacacs-server host <ipaddress|hostname>.
From the Global Config mode enter
mac access-list extended
<name>.
From the Global Config mode, enter
ip dhcp pool
From the Global Config mode, enter the
stack command.
<name>.
To exit to the Global Config mode,
enter exit. To return to the Privileged
EXEC mode, enter Ctrl-Z.
To exit to the Policy Map mode, enter
exit. To return to the Privileged
mode, enter Ctrl-Z.
EXEC
To exit to the Global Config mode,
enter exit. To return to the Privileged
EXEC mode, enter Ctrl-Z.
To exit to the Global Config mode,
enter exit. To return to the Privileged
EXEC mode, enter Ctrl-Z.
To exit to the Global Config mode,
enter exit. To return to the Privileged
EXEC mode, enter Ctrl-Z.
To exit to the Global Config mode,
enter exit. To return to the Privileged
EXEC mode, enter Ctrl-Z.
To exit to the Global Config mode,
enter the exit command. To return
to the Privileged EXEC mode, enter
Ctrl-Z.
2.2.6 Entering CLI Commands
The 7200RS Series Stackable Switch supports several features to help you enter
commands.
2.2.6.1 Command Completion and Abbreviation
Command completion finishes spelling the command when you type enough letters of a
command to uniquely identify the command keyword. Once you have entered enough
letters, press the SPACEBAR or TAB key to complete the word.
Command abbreviation allows you to execute a command when you type enough letters of
a command to uniquely identify the command. You must enter all of the required
keywords and parameters before you enter the command.
2-8Overview
v1.0, October 2008
Page 39
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
2.2.6.2 CLI Error Messages
If you enter a command and the system is unable to execute it, an error message appears.
Table 2-8 describes the most common CLI error messages.
Table 2-8. CLI Error Messages
Message TextDescription
% Invalid input detected at '^'
marker.
Command not found / Incomplete
command. Use ? to list commands.
Ambiguous commandIndicates that you did not enter enough letters to
Indicates that you entered an incorrect or
unavailable command. The carat (^) shows
where the invalid text is detected. This message
also appears if any of the parameters or values
are not recognized.
Indicates that you did not enter the required
keywords or values.
uniquely identify the command.
2.2.6.3 CLI Line-Editing Conventions
Table 2-9 describes the key combinations you can use to edit commands or increase the
speed of command entry. You can access this list from the CLI by entering
help from the
User or Privileged EXEC modes.
Table 2-9. CLI Editing Conventions
Key SequenceDescription
DEL or BackspaceDelete previous character
Ctrl-AGo to beginning of line
Ctrl-EGo to end of line
Ctrl-FGo forward one character
Ctrl-BGo backward one character
Ctrl-DDelete current character
Ctrl-U, XDelete to beginning of line
Ctrl-KDelete to end of line
Ctrl-WDelete previous word
Ctrl-TTranspose previous character
Ctrl-PGo to previous line in history buffer
Ctrl-RRewrites or pastes the line
Ctrl-NGo to next line in history buffer
Ctrl-YPrints last deleted character
Ctrl-QEnables serial flow
Overview2-9
v1.0, October 2008
Page 40
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Table 2-9. CLI Editing Conventions
Key SequenceDescription
Ctrl-SDisables serial flow
Ctrl-ZReturn to root command prompt
Tab, <SPACE>Command-line completion
ExitGo to next lower command prompt
?List available commands, keywords, or parameters
2.2.7 Using CLI Help
Enter a question mark (?) at the command prompt to display the commands available in
the current mode.
(switch) >?
enable Enter into user privilege mode.
help Display help for various special keys.
logout Exit this session. Any unsaved changes are lost.
ping Send ICMP echo packets to a specified IP address.
show Display switch options and settings.
Enter a question mark (?) after each word you enter to display available command
keywords or parameters.
(switch) #network ?
javamode Enable/Disable.
parms Configure Network Parameters of the router.
protocol Select DHCP, BootP, or None as the network config
protocol.
mgmt_vlan Configure the Management VLAN ID of the switch.
If the help output shows a parameter in angle brackets, you must replace the parameter
with a value.
(switch) #network parms ?
<ipaddr> Enter the IP Address.
If there are no additional command keywords or parameters, or if additional parameters
are optional, the following message appears in the output:
<cr> Press Enter to execute the command
2-10Overview
v1.0, October 2008
Page 41
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
You can also enter a question mark (?) after typing one or more characters of a word to list
the available command or parameters that begin with the letters, as shown in the following
example:
(switch) #show m?
mac-addr-table mac-address-table monitor
2.2.8 Accessing the CLI
You can access the CLI by using a direct console connection or by using a telnet or SSH
connection from a remote management host.
For the initial connection, you must use a direct connection to the console port. You
cannot access the system remotely until the system has an IP address and subnet mask.
You can set the network configuration information manually, or you can configure the
system to accept these settings from a BOOTP or DHCP server on your network. For more
information, see Section 3.1 “Network Interface Commands” on page 1.
Overview2-11
v1.0, October 2008
Page 42
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
2-12Overview
v1.0, October 2008
Page 43
Chapter 3
Administrative Access Commands
This section describes the management access and basic port configuration commands
available in the 7200RS Series Stackable Switch CLI.
This section contains the following topics:
•Section 3.1 “Network Interface Commands” on page 1
•Section 3.3 “Console Port Access Commands” on page 6
•Section 3.4 “Telnet Commands” on page 9
•Section 3.5 “Secure Shell (SSH) Command” on page 14
•Section 3.6 “Hypertext Transfer Protocol (HTTP) Commands” on page 16
•Section 3.7 “User Account Commands” on page 22
The commands in this section are divided into two functional groups:
•Show commands display switch settings, statistics, and other information.
•Configuration commands configure features and options of the switch. For every
configuration command, there is a show command that displays the configuration
setting.
To manage the device by using SNMP, see “SNMP Commands” in Chapter 10.
3.1 Network Interface Commands
This section describes the commands you use to configure a logical interface for
management access.
3.1.1 enable
This command gives you access to the Privileged EXEC mode. From the Privileged
EXEC mode, you can configure the network interface.
Format
Mode User EXEC
Administrative Access Commands3-1
enable
v1.0, October 2008
Page 44
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.1.2 network parms (parameter)
This command sets the IP Address, subnet mask and gateway of the device. The IP
Address and the gateway must be on the same subnet.
This command sets the Management VLAN ID to the default.
Format
no network mgmt_vlan
Mode Privileged EXEC
3.1.4 network protocol
This command specifies the network configuration protocol to be used. If you modify this
value, change is effective immediately. If you modify this value, the change is effective
immediately. If you use the
BootP server until a response is received. If you use the
periodically sends requests to a DHCP server until a response is received. If you use the
none parameter, you must configure the network information for the switch manually.
Default none
Format
Mode Privileged EXEC
bootp parameter, the switch periodically sends requests to a
network protocol {none | bootp | dhcp}
dhcp parameter, the switch
3-2Administrative Access Commands
v1.0, October 2008
Page 45
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.1.5 show network
This command displays configuration settings associated with the switch's network
interface. The network interface is the logical interface used for in-band connectivity with
the switch via any of the switch's front panel ports. The configuration parameters
associated with the switch's network interface do not affect the configuration of the front
panel ports through which traffic is switched or routed.
Format
show network
Modes Privileged EXEC
User EXEC
IP Address The IP address of the interface. The factory default value is
0.0.0.0
Subnet Mask The IP subnet mask for this interface. The factory default
value is 0.0.0.0
Default Gateway The default gateway for this IP interface. The factory default
value is 0.0.0.0
Burned In MAC
Address The burned in MAC address used for in-band connectivity.
Locally
Administered
MAC Address If desired, a locally administered MAC address can be con-
figured for in-band connectivity. To take effect, 'MAC
Address Type' must be set to 'Locally Administered'. Enter
the address as twelve hexadecimal digits (6 bytes) with a
colon between each byte. Bit 1 of byte 0 must be set to a 1
and bit 0 to a 0, i.e. byte 0 should have the following mask
'xxxx xx10'. The MAC address used by this bridge when it
must be referred to in a unique fashion. It is recommended
that this be the numerically smallest MAC address of all ports
that belong to this bridge. However it is only required to be
unique. When concatenated with dot1dStpPriority a unique
BridgeIdentifier is formed which is used in the Spanning Tree
Protocol.
MAC Address
Type Specifies which MAC address should be used for in-band
connectivity. The choices are the burned in or the Locally
Administered address. The factory default is to use the
burned in MAC address.
Administrative Access Commands3-3
v1.0, October 2008
Page 46
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Network
Configuration
Protocol Current Indicates which network protocol is being used. The options
are bootp | dhcp | none.
Java Mode Specifies if the switch should allow access to the Java applet
in the header frame. Enabled means the applet can be viewed.
The factory default is disabled.
Web Mode Specifies if the switch should allow access to the Web Inter-
face.
3.2 Configuring the Switch Management CPU (ezconfig)
Format ezconfig
Mode Privileged EXEC
To manage the switch via the web GUI or telnet, an IP address needs to be assigned to the
switch management CPU. Whereas there are CLI commands that can be used to do this,
ezconfig simplifies the task. The tool is applicable to all NETGEAR 7000-series managed
switches, and allows you to configure the following parameters:
1. The administrator’s user password and administrator-enable password
2. Management CPU IP address and network mask
3. System name and location information
The tool is interactive and uses questions to guide you through the steps required to
perform its task. At the end of the session, it will ask you if you want to save the changed
information. To see exactly what has been changed by ezconfig at the end of the session,
use the show running-config command.
To perform any switch configuration o t her than the items listed above, use other CLI
commands or the Web GUI.
3-4Administrative Access Commands
v1.0, October 2008
Page 47
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
The following is an example of an ezconfig session.
NETGEAR EZ Configuration Utility
-------------------------------Hello and Welcome!
This utility will walk you thru assigning the IP address for the switch
management CPU. It will allow you to save the changes at the end. After
the session, simply use the newly assigned IP address to access the Web
GUI using any public domain Web browser.
Admin password not defined. Do you want to change the password?
(Y/N/Q) y
Enter new password:********
Confirm new password:********
Password Changed!
The 'enable' password required for switch configuration via the command
line interface is currently not configured. Do you wish to change it (Y/
N/Q)? y
Enter new password:********
Confirm new password:********
Password Changed!
Would you like to assign an IP address now (Y/N/Q)? y
IP Address: 10.10.10.1
Subnet mask: 255.255.255.0
Gateway address: 10.10.10.10
Do you want to assign switch name and location information (Y/N/Q)? y
System Name: testunit1
System Location: testlab
System Contact: Bud Lightyear
Administrative Access Commands3-5
v1.0, October 2008
Page 48
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
There are changes detected, do you wish to save the changes permanently
(Y/N)? y
The configuration changes have been saved succesfully. Please enter
'show running-config' to see the final configuration.
Thanks for using EzConfig!
3.3 Console Port Access Commands
This section describes the commands you use to configure the console port. You can use a
serial cable to connect a management host directly to the console port of the switch.
3.3.1 configuration
This command gives you access to the Global Config mode. From the Global Config
mode, you can configure a variety of system settings, including user accounts. From the
Global Config mode, you can enter other command modes, including Line Config mode.
Format
Mode Privileged EXEC
configuration
3.3.2 lineconfig
This command gives you access to the Line Config mode, which allows you to configure
various telnet settings and the console port.
Format
Mode Global Config
3-6Administrative Access Commands
lineconfig
v1.0, October 2008
Page 49
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.3.3 serial baudrate
This command specifies the communication rate of the terminal interface. The supported
rates are 1200, 2400, 4800, 9600, 19200, 38400, 57600, 115200.
Default 9600
Format
Mode Line Config
3.3.3.1 no serial baudrate
This command sets the communication rate of the terminal interface.
This command specifies the maximum connect time (in minutes) without console activity .
A value of 0 indicates that a console can be connected indefinitely. The time range is 0 to
160.
Default 5
Format
Mode Line Config
3.3.4.1 no serial timeout
This command sets the maximum connect time (in minutes) without console activity.
Format
Mode Line Config
no serial baudrate
serial timeout <0-160>
no serial timeout
Administrative Access Commands3-7
v1.0, October 2008
Page 50
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.3.5 show serial
This command displays serial communication settings for the switch.
Format
Modes Privileged EXEC
Serial Port Login
Timeout
(minutes) Specifies the time, in minutes, of inactivity on a Serial port
Baud Rate (bps) The default baud rate at which the serial port will try to con-
Character Size
(bits) The number of bits in a character. The number of bits is
Flow Control Whether Hardware Flow-Control is enabled or disabled.
Stop Bits The number of Stop bits per character. The number of Stop
Parity Type The Parity Method used on the Serial Port. The Parity
show serial
User EXEC
connection, after which the Switch will close the connection.
Any numeric value between 0 and 160 is allowed, the factory
default is 5. A value of 0 disables the timeout.
nect. The available values are 1200, 2400, 4800, 9600,
19200, 38400,57600, and 1 15200 b aud. The factory defau lt is
9600 baud.
always 8.
Hardware Flow Control is always disabled.
bits is always 1.
Method is always None.
3-8Administrative Access Commands
v1.0, October 2008
Page 51
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.4 Telnet Commands
This section describes the commands you use to configure and view telnet settings. You
can use telnet to manage the device from a remote management host.
3.4.1 telnet
This command establishes a new outbound telnet connection to a remote host. The host
value must be a valid IP address. Valid values for port should be a valid decimal integer in
the range of 0 to 65535, where the default value is 23. If [debug] is used, the current telnet
options enabled is displayed. The optional line parameter sets the outbound telnet
operational mode as ‘linemode’, where by default, the operational mode is ‘character
mode’. The noecho option disables local echo.
Format
Modes Privileged EXEC
telnet <host> <port> [debug] [line] [noecho]
User EXEC
3.4.2 transport input telnet
This command regulates new telnet sessions. If sessions are enabled, new telnet sessions
can be established until there are no more sessions available. If sessions are disabled, no
new telnet sessions are established. An established session remains active until the session
is ended or an abnormal network error ends the session.
Default enabled
Format
Mode Line Config
3.4.2.1 no transport input telnet
This command disables telnet sessions. If sessions are disabled, no new telnet sessions are
established.
Format
Mode Line Config
Administrative Access Commands3-9
transport input telnet
no transport input telnet
v1.0, October 2008
Page 52
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.4.3 transport output telnet
This command regulates new outbound telnet connections. If enabled, new outbound
telnet sessions can be established until it reaches the maximum number of simultaneous
outbound telnet sessions allowed. If disabled, no new outbound telnet session can be
established. An established session remains active until the session is ended or an
abnormal network error ends it.
Default enabled
Format
transport output telnet
Mode Line Config
3.4.3.1 no transport output telnet
This command disables new outbound telnet connections. If disabled, no new outbound
telnet connection can be established.
Format
no transport output telnet
Mode Line Config
3.4.4 session-limit
This command specifies the maximum number of simultaneous outbound telnet sessions.
A value of 0 indicates that no outbound telnet session can be established.
Default 5
Format
session-limit <0-5>
Mode Line Config
3.4.4.1 no session-limit
This command sets the maximum number of simultaneous outbound telnet sessions to the
default value.
Format
no session-limit
Mode Line Config
3-10Administrative Access Commands
v1.0, October 2008
Page 53
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.4.5 session-timeout
This command sets the telnet session timeout value.The timeout value unit of time is
minutes. A value of 0 indicates that a session remains active indefinitely.
Default 0
Format
session-timeout <0-160>
Mode Line Config
3.4.5.1 no session-timeout
This command sets the telnet session timeout value to the default. The timeout value unit
of time is minutes.
Format
no session-timeout
Mode Line Config
3.4.6 telnetcon maxsessions
This command specifies the maximum number of telnet connection sessions that can be
established. A value of 0 indicates that no telnet connection can be established. The range
is 0 to 5.
Default 5
Format
telnetcon maxsessions <0-5>
Mode Privileged EXEC
3.4.6.1 no telnetcon maxsessions
This command sets the maximum number of telnet connection sessions that can be
established to the default value.
Format
no telnetcon maxsessions
Mode Privileged EXEC
Administrative Access Commands3-11
v1.0, October 2008
Page 54
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.4.7 telnetcon timeout
This command sets the telnet connection session timeout value, in minutes. A session is
active as long as the session has not been idle for the value you set, which ranges from 1160 minutes.
Note: Changing the timeout value for active sessions does not become effective
until the session is reaccessed. Also, any keystroke activates the new
timeout duration.
Default 5
Format
Mode Privileged EXEC
3.4.7.1 no telnetcon timeout
This command sets the telnet connection session timeout value to the default.
Note: Changing the timeout value for active sessions does not become effective
until the session is reaccessed. Also, any keystroke activates the new
timeout duration.
telnetcon timeout <1-160>
Format
no telnetcon timeout
Mode Privileged EXEC
3.4.8 show telnet
This command displays the current outbound telnet settings.
Format
Modes Privileged EXEC
Outbound Telnet
Login Timeout Indicates the number of minutes an outbound telnet session is
3-12Administrative Access Commands
show telnet
User EXEC
allowed to remain inactive before being logged off.
v1.0, October 2008
Page 55
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Maximum Number
of Outbound
Telnet Sessions Indicates the number of simultaneous outbound telnet con-
nections allowed.
Allow New
Outbound Telnet
Sessions Indicates whether outbound telnet sessions are allowed.
3.4.9 show telnetcon
This command displays telnet settings.
Format
show telnetcon
Modes Privileged EXEC
User EXEC
Remote
Connection Login
Timeout
(minutes) This object indicates the number of minutes a remote connec-
tion session is allowed to remain inactive before being logged
off. May be specified as a number from 1 to 160. The factory
default is 5.
Maximum Number
of Remote
Connection
Sessions This object indicates the number of simultaneous remote con-
nection sessions allowed. The factory default is 5.
Allow New Telnet
Sessions Indicates that new telnet sessions will not be allowed when
set to no. The factory default value is yes.
Administrative Access Commands3-13
v1.0, October 2008
Page 56
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.5 Secure Shell (SSH) Command
This section describes the commands you use to configure SSH access to the switch. Use
SSH to access the switch from a remote management host.
Note: The system allows a maximum of 5 SSH sessions.
3.5.1 ip ssh
This command is used to enable SSH.
Default disabled
Format
Mode Privileged EXEC
3.5.1.1 no ip ssh
This command is used to disable SSH.
Format
Mode Privileged EXEC
3.5.2 ip ssh protocol
This command is used to set or remove protocol levels (or versions) for SSH. Either SSH1
(1), SSH2 (2), or both SSH 1 and SSH 2 (1 and 2) can be set.
Default 1 and 2
Format
Mode Privileged EXEC
ip ssh
no ip ssh
ip ssh protocol [1] [2]
3-14Administrative Access Commands
v1.0, October 2008
Page 57
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.5.3 sshcon maxsessions
This command specifies the maximum number of SSH connection sessions that can be
established. A value of 0 indicates that no ssh connection can be established. The range is
0 to 5.
Default 5
Format
Mode Privileged EXEC
3.5.3.1 no sshcon maxsessions
This command sets the maximum number of allowed SSH connection sessions to the
default value.
Format
Mode Privileged EXEC
3.5.4 sshcon timeout
This command sets the SSH connection session timeout value, in minutes. A session is
active as long as the session has been idle for the value set. The time is a decimal value
from 1 to 160.
Changing the timeout value for active sessions does not become effective until the session
is re accessed. Also, any keystroke activates the new timeout duration.
Default 5
Format
Mode Privileged EXEC
sshcon maxsessions <0-5>
no sshcon maxsessions
sshcon timeout <1-160>
3.5.4.1 no sshcon timeout
This command sets the SSH connection session timeout value, in minutes, to the default.
Changing the timeout value for active sessions does not become effective until the session
is re accessed. Also, any keystroke activates the new timeout duration.
Format
no sshcon timeout
Mode Privileged EXEC
Administrative Access Commands3-15
v1.0, October 2008
Page 58
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.5.5 show ip ssh
This command displays the ssh settings.
Format
Mode Privileged EXEC
Administrative
Mode This field indicates whether the administrative mode of SSH
Protocol Level The protocol level may have the values of version 1, version
Connections This field specifies the current SSH connections.
show ip ssh
is enabled or disabled.
2 or both versions 1 and version 2.
3.6 Hypertext Transfer Protocol (HTTP) Commands
This section describes the commands you use to configure HTTP access to the switch.
Access to the switch by using a Web browser is enabled by default. Everything you can
view and configure by using the CLI is also available by using the Web.
3.6.1 ip http secure-port
This command is used to set the SSL port where port can be 1-65535 and the default is
port 443.
Default 443
Format
Mode Privileged EXEC
3.6.1.1 no ip http secure-port
This command is used to reset the SSL port to the default value.
Format
Mode Privileged EXEC
3-16Administrative Access Commands
ip http secure-port <portid>
no ip http secure-port
v1.0, October 2008
Page 59
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.6.2 ip http secure-protocol
This command is used to set protocol levels (versions). The protocol level can be set to
TLS1, SSL3 or to both TLS1 and SSL3.
Default SSL3 and TLS1
Format
ip http secure-protocol [SSL3] [TLS1]
Mode Privileged EXEC
3.6.3 ip http secure-server
This command is used to enable the secure socket layer for secure HTTP.
Default disabled
Format
Mode Privileged EXEC
3.6.3.1 no ip http secure-server
This command is used to disable the secure socket layer for secure HTTP.
ip http secure-server
Format
no ip http secure-server
Mode Privileged EXEC
3.6.4 ip http server
This command enables access to the switch through the Web interface. When access is
enabled, you can login to the switch from the Web interface. When access is disabled, you
cannot login to the switch's Web server. Disabling the Web interface takes effect
immediately and affects all interfaces.
Default enabled
Format
Mode Privileged EXEC
3.6.4.1 no ip http server
This command disables access to the switch through the Web interface. When access is
disabled, you cannot login to the switch's Web server.
Format
Mode Privileged EXEC
Administrative Access Commands3-17
ip http server
no ip http server
v1.0, October 2008
Page 60
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.6.5 ip http java
This command enables the Web Java mode. The Java mode applies to both secure and
unsecure Web connections.
Default enabled
Format
ip http java
Mode Privileged EXEC
3.6.5.1 no ip http java
This command disables the Web Java mode. The Java mode applies to both secure and
unsecure Web connections.
Format
no ip http java
Mode Privileged EXEC
3.6.6 ip http session hard-timeout
Configures the hard timeout for un-secure HTTP sessions in hours. Configuring this value
to zero will give an infinite hard-timeout. When this timeout expires, the user will be
forced to re-authenticate. This timer begins on initiation of the web session and is
unaffected by the activity level of the connection.
Default 24
Format
Mode Privileged EXEC
ip http session hard-timeout <0-168>
3.6.6.1 no ip http session hard-timeout
Restores the hard timeout for un-secure HTTP sessions to the default value
Format
no ip http session hard-timeout
Mode Privileged EXEC
3.6.7 ip http session maxsessions
This command limits the number of allowable un-secure HTTP sessions. Zero is the
configurable minimum.
Default 16
Format
Mode Privileged EXEC
3-18Administrative Access Commands
ip http session maxsessions <0-16>
v1.0, October 2008
Page 61
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.6.7.1 no ip http session maxsessions
Restores the the number of allowable un-secure HTTP sessions to the default value.
Format
no ip http session maxsessions
Mode Privileged EXEC
3.6.8 ip http session soft-timeout
Configures the soft timeout for un-secure HTTP sessions in minutes. Configuring this
value to zero will give an infinite soft-timeout. When this timeout expires the user will be
forced to re-authenticate. This timer begins on initiation of the Web session and is restarted with each access to the switch.
Default 60
Format
ip http session soft-timeout <0-60>
Mode Privileged EXEC
3.6.8.1 no ip http session soft-timeout
Resets the soft timeout for un-secure HTTP sessions to the default value.
Format
no ip http session soft-timeout
Mode Privileged EXEC
3.6.9 ip http secure-session hard-timeout
Configures the hard timeout for secure HTTP sessions in hours. When this timeout
expires, the user is forced to re-authenticate. This timer begins on initiation of the Web
session and is unaffected by the activity level of the connection. The secure-session hard
timeout cannot be set to zero (infinite).
Default 24
Format
Mode Privileged EXEC
3.6.9.1 no ip http secure-session hard-timeout
Resets the hard timeout for secure HTTP sessions to the default value
ip http secure-session hard-timeout <1-168>
Format
no ip http secure-session hard-timeout
Mode Privileged EXEC
Administrative Access Commands3-19
v1.0, October 2008
Page 62
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.6.10 ip http secure-session maxsessions
This command limits the number of secure HTTP sessions. Zero is the configurable
minimum.
Default 16
Format
ip http secure-session maxsessions <0-16>
Mode Privileged EXEC
3.6.10.1 no ip http secure-session maxsessions
Restores the the number of allowable secure HTTP sessions to the default value.
Format
no ip http secure-session maxsessions
Mode Privileged EXEC
3.6.11 ip http secure-session soft-timeout
Configures the soft timeout for secure HTTP sessions in minutes. When this timeout
expires the user will be forced to re-authenticate. This timer begins on initiation of the
Web session and is re-started with each access to the switch. The secure-session soft
timeout cannot be set to zero (infinite).
Default 60
Format
ip http secure-session soft-timeout <1-60>
Mode Privileged EXEC
3.6.11.1 no ip http secure-session soft-timeout
Resets the soft timeout for secure HTTP sessions to the default value.
Format
no ip http secure-session soft-timeout
Mode Privileged EXEC
3.6.12 network javamode
This command specifies whether or not the switch should allow access to the Java applet
in the header frame of the Web interface. When access is enabled, the Java applet can be
viewed from the Web interface. When access is disabled, the user cannot view the Java
applet.
Default enabled
Format
3-20Administrative Access Commands
network javamode
v1.0, October 2008
Page 63
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Mode Privileged EXEC
3.6.12.1 no network javamode
This command disallows access to the Java applet in the header frame of the Web
interface. When access is disabled, the user cannot view the Java applet.
Format
no network javamode
Mode Privileged EXEC
3.6.13 show ip http
This command displays the http settings for the switch.
Format
Mode Privileged EXEC
HTTP Mode
(Unsecure) Indicates the unsecure administrative mode.
Java Mode The java applet administrative mode, which applies to both
Maximum
Allowable HTTP
Sessions The number of allowable unsecure HTTP sessions.
HTTP Session
Hard Timeout The hard timeout for unsecure HTTP sessions in hours.
HTTP Session
Soft Timeout The soft timeout for unsecure HTTP sessions in minutes.
HTTP Mode
(Secure) The secure HTTP server administrative mode.
Secure Port The secure HTTP server port number.
Secure Port
Protocol Level(s) The protocol level may have the values SSL3, TSL1, or both
Maximum
Allowable HTTPS
Sessions The number of allowable secure HTTP sessions.
HTTPS Session
Hard Timeout The hard timeout for secure HTTP sessions in hours.
HTTPS Session
Soft Timeout The soft timeout for secure HTTP sessions in minutes.
show ip http
secure and unsecure web connections.
SSL3 and TSL1.
Administrative Access Commands3-21
v1.0, October 2008
Page 64
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.7 User Account Commands
This section describes the commands you use to add, manage, and delete system users.
The 7200RS Series Stackable Switch has two default users: admin and guest. The admin
user can view and configure system settings, and the guest user can view settings.
Note: You cannot delete the admin user, and there is only one user allowed with
read/write privileges. You can configure up to five read-only users on the
system.
3.7.1 users name
This command adds a new user account, if space permits. The account <username> can be
up to eight characters in length. You can use alphanumeric characters as well as the dash
(‘-’) and underscore (‘_’). The
You can define up to six user names.
Format
Mode Global Config
<username> is not case-sensitive.
users name <username>
3.7.1.1 no users name
This command removes a user account.
Format
no users name <username>
Mode Global Config
Note: You cannot delete the “admin” user account.
3-22Administrative Access Commands
v1.0, October 2008
Page 65
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.7.2 users passwd
Use this command to change a password. Passwords are a maximum of eight
alphanumeric characters. If a user is authorized for authentication or encryption is
enabled, the password length must be at least eight alphanumeric characters. The
username and password are not case-sensitive. When you change a password, a prompt
asks for the old password. If there is no password, press enter.
Default no password
Format
Mode Global Config
3.7.2.1 no users passwd
This command sets the password of an existing user to blank. When you change a
password, a prompt asks for the old password. If there is no password, press enter.
Format
Mode Global Config
users passwd <username>
no users passwd <username>
3.7.3 users snmpv3 accessmode
This command specifies the snmpv3 access privileges for the specified login user. The
valid accessmode values are
name for which the specified access mode applies. The default is
“admin” user and
readonly for all other users
Default admin - readwrite; other - readonly
Format
Mode Global Config
3.7.3.1 no users snmpv3 accessmode
This command sets the snmpv3 access privileges for the specified user as readwrite for
the “admin” user and readonly for all other users. The
for which the specified access mode will apply.
Format
Mode Global Config
Administrative Access Commands3-23
readonly or readwrite. The <username>is the login user
readwrite for the
users snmpv3 accessmode <username> {readonly |
readwrite}
<username> value is the user name
no users snmpv3 accessmode <username>
v1.0, October 2008
Page 66
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.7.4 users snmpv3 authentication
This command specifies the authentication protocol to be used for the specified user. The valid authentication
protocols are none, md5 or sha. If you specify md5 or sha, the login password is also used as
the snmpv3 authentication password and therefore must be at least eight characters in
length. The
Default no authentication
Format
Mode Global Config
3.7.4.1 no users snmpv3 authentication
This command sets the authentication protocol to be used for the specified user to none.
The
<username> is the user name for which the specified authentication protocol is used.
<username> is the user name associated with the authentication protocol.
This command specifies the encryption protocol used for the specified user . The valid
encryption protocols are
If you select
key
must be 8 to 64 characters long. If you select the des protocol but do not provide a
des, you can specify the required key on the command line. The encryption
key, the user is prompted for the key. When you use the
is also used as the snmpv3 encryption password, so it must be a minimum of eight
characters. If you select
The
<username> value is the login user name associated with the specified encryption.
Default no encryption
Format
Mode Global Config
des or none.
none, you do not need to provide a key.
users snmpv3 encryption <username> {none |
des[key]}
des protocol, the login password
3-24Administrative Access Commands
v1.0, October 2008
Page 67
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
3.7.5.1 no users snmpv3 encryption
This command sets the encryption protocol to none. The
name for which the specified encryption protocol will be used.
Format
Mode Global Config
3.7.6 show loginsession
This command displays current telnet and serial port connections to the switch.
Format
Mode Privileged EXEC
ID Login Session ID
User Name The name the user will use to login using the serial port or
Connection From IP address of the Telnet client machine or EIA-232 for the
Idle Time Time this session has been idle.
Session Time Total time this session has been connected.
Session Type Shows the type of session, which can be HTTP, HTTPS, tel-
<username> is the login user
no users snmpv3 encryption <username>
show loginsession
Telnet.
serial port connection.
net, serial, or SSH
3.7.7 show users
This command displays the configured user names and their settings. This command is
only available for users with Read/Write privileges.
SNMP is available on the system.
Format show users
Mode Privileged EXEC
User Name The name the user enters to login using the serial port, Telnet
or Web.
Access Mode Shows whether the user is able to change parameters on the
switch (Read/Write) or is only able to view them (Read
Only). As a factory default, the “admin” user has Read/Write
Administrative Access Commands3-25
v1.0, October 2008
The SNMPv3 fields will only be displayed if
Page 68
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
access and the “guest” has Read Only access. There can only
be one Read/Write user and up to five Read Only users.
SNMPv3 Access
Mode This field displays the SNMPv3 Access Mode. If the value is
ReadWrite, the SNMPv3 user is able to set and
set to
retrieve parameters on the system. If the value is set to
dOnly,
the SNMPv3 user is only able to retrieve parameter
Rea-
information. The SNMPv3 access mode may be different
than the CLI and Web access mode.
SNMPv3
Authentication This field displays the authentication protocol to be used for
the specified login user.
SNMPv3
Encryption This field displays the encryption protocol to be used for the
specified login user.
3.7.8 disconnect
This command closes a telnet session.
Format
disconnect {<sessionID> | all}
Mode Privileged EXEC
3-26Administrative Access Commands
v1.0, October 2008
Page 69
Chapter 4
Port and System Setup Commands
This section describes general port and system setup commands available in the 7200RS
Series Stackable Switch CLI.
This section contains the following topics:
•Section 4.1 “Port Configuration Commands” on page 1
•Section 4.2 “Pre-login Banner and System Prompt Commands” on page 10
•Section 4.3 “Simple Network Time Protocol (SNTP) Commands” on page 11
•Section 4.4 “MAC Address and MAC Database Commands” on page 17
•Section 4.5 “DNS Client Commands” on page 24
The commands in this section are in one of three functional groups:
•Show commands display switch settings, statistics, and other information.
•Configuration commands configure features and options of the switch. For every
configuration command, there is a show command that displays the configuration
setting.
•Copy commands transfer or save configuration and informational files to and from the
switch.
4.1 Port Configuration Commands
This section describes the commands you use to view and configure port settings.
4.1.1 interface
This command gives you access to the Interface Config mode, which allows you to enable
or modify the operation of an interface.
Format
Mode Global Config
Port and System Setup Commands4-1
interface <unit/slot/port>
v1.0, October 2008
Page 70
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.1.2 interface range
This command gives you access to a range of port interfaces, allowing the same port
configuration to be applied to a set of ports.
Format
Mode Global Config
4.1.3 interface vlan
This command gives you access to to the vlan virtual interface mode, which allows certain
port configurations (for example, the IP address) to be applied to the VLAN interface.
Type a question mark (?) after entering the interface configuration mode to see the
available options.
Format
Mode Global Config
4.1.4 interface lag
This command gives you access to the LAG (link aggregation, or port channel) virtual
interface, which allows certain port configurations to be applied to the LAG interface.
Type a question mark (?) after entering the interface configuration mode to see the
available options.
Note: The IP address cannot be assigned to a LAG virtual interface. The interface
must be put under a VLAN group and an IP address assigned to the VLAN
group.
interface range <unit/slot/port>-<unit/slot/port>
interface vlan <vlan id>
Format
Mode Global Config
interface lag <lag id>
4.1.5 auto-negotiate
This command enables automatic negotiation on a port.
Default enabled
Format
Mode Interface Config
4-2Port and System Setup Commands
auto-negotiate
v1.0, October 2008
Page 71
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.1.5.1 no auto-negotiate
This command disables automatic negotiation on a port.
Note: Automatic sensing is disabled when automatic negotiation is disabled.
Format
Mode Interface Config
4.1.6 auto-negotiate all
This command enables automatic negotiation on all ports. The default value is enable.
Format
Mode Global Config
4.1.6.1 no auto-negotiate all
This command disables automatic negotiation on all ports.
Format
Mode Global Config
4.1.7 description
Use this command to create an alpha-numeric description of th e port. The length can be up
to 64 characters.
Format
Mode Interface Config
no auto-negotiate
auto-negotiate all
no auto-negotiate all
description <description>
Port and System Setup Commands4-3
v1.0, October 2008
Page 72
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.1.8 mtu
This command sets the maximum transmission unit (MTU) size, in bytes, for physical and
port-channel (LAG) interfaces. For the standard implementation, the MTU size is a valid
integer between 1522 - 9216 for tagged packets and a valid integer between 1518 - 9216
for untagged packets.
Note: To receive and process packets, the Ethernet MTU must include any extra
bytes that Layer-2 headers might require. To configure the IP MTU size,
which is the maximum size of the IP packet (IP Header + IP payload), see
Section 14.2.8 “ip mtu” on page 10.
Default 1518 (untagged)
Format
Mode Interface Config
4.1.8.1 no mtu
This command sets the default MTU size (in bytes) for the interface.
Format
Mode Interface Config
4.1.9 shutdown
This command disables a port.
Note: You can use the shutdown command on physical and port-channel (LAG)
Default enabled
Format
Mode Interface Config
mtu <1518-9216>
no mtu
interfaces, but not on VLAN routing interfaces.
shutdown
4-4Port and System Setup Commands
v1.0, October 2008
Page 73
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.1.9.1 no shutdown
This command enables a port.
Note: You can use the no shutdown command on physical and port-channel
(LAG) interfaces, but not on VLAN routing interfaces.
Format
Mode Interface Config
4.1.10 shutdown all
This command disables all ports.
Note: You can use the shutdown command on physical and port-channel (LAG)
interfaces, but not on VLAN routing interfaces.
Default enabled
Format
Mode Global Config
4.1.10.1 no shutdown all
This command enables all ports.
Note: You can use the shutdown command on physical and port-channel (LAG)
interfaces, but not on VLAN routing interfaces.
no shutdown
shutdown all
Format
no shutdown all
Mode Global Config
4.1.11 speed
This command sets the speed and duplex setting for the interface.
Format
Mode Interface Config
Port and System Setup Commands4-5
speed {<100 | 10> <half-duplex | full-duplex>}
v1.0, October 2008
Page 74
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Acceptable values are:
100h 100BASE-T half duplex
100f 100BASE-T full duplex
10h 10BASE-T half duplex
10f 10BASE-T full duplex
4.1.12 speed all
This command sets the speed and duplex setting for all interfaces.
Format
Mode Global Config
Acceptable values are:
100h 100BASE-T half-duplex
100f 100BASE-T full duplex
10h 10BASE-T half duplex
10f 10BASE-T full duplex
speed all {<100 | 10> <half-duplex | full-duplex>}
4.1.13 monitor session
This command configures a probe port and a monitored port for monitor session (port
monitoring). To enable port monitoring, you must add a source inte rface, destination
interface, and enable the mode. If enabled, the probe port monitors all the traffic received
and transmitted on the physical monitored port.
Note: When a port is defined as the probe port (destination interface), the
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.1.13.1 no monitor session
This command removes the monitor session (port monitoring) designation from the source
probe port, the destination monitored port and all VLANs. Once the port is removed from
the VLAN, the user must manually add the port to any desired VLANs.
Note: This command sets the monitor session (port monitoring) mode to disable
and removes the source and destination interfaces.
Format
no monitor session <session-id>
Mode Global Config
4.1.14 no monitor
This command removes all the source ports and a destination port and restores the default
value for mirroring session mode for all the configured sessions.
Note: This is a stand-alone “no” command. This command does not have a
“normal” form.
Default enabled
Format
no monitor
Mode Global config
4.1.15 show monitor session
This command displays the port monitoring information for the system. The <sessionid>
parameter is an integer.
Format
Mode Privileged EXEC
Session ID The session identifying number.
show monitor session <sessionid>
Admin Mode Indicates whether the Port Monitoring feature is enabled or
disabled. The possible values are enable and disable.
Probe Port The interface configured as the probe port.
Mirrored Port
Port and System Setup Commands4-7
The interface configured as the mirrored port.
v1.0, October 2008
Page 76
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.1.16 show port
This command displays port information.
Format
Mode Privileged EXEC
Interface Valid slot and port number separated by forward slashes.
Type If not blank, this field indicates that this port is a special type
Probe - this port is a probe port.
Admin Mode Selects the Port control administration state. The port must be
Physical Mode Selects the desired port speed and duplex mode. If auto-nego-
Physical Status Indicates the port speed and duplex mode.
show port {<unit/slot/port> | all}
of port. The possible values are:
Mon - this port is a monitoring port. Look at the Port Moni-
toring screens to find out more information.
Lag - this port is a member of a port-channel (LAG).
enabled in order for it to be allowed into the network. - May
be enabled or disabled. The factory default is enabled.
tiation support is selected, then the duplex mode and speed is
set from the auto-negotiation process. Note that the maximum capability of the port (full duplex -100M) is advertised.
Otherwise, this object determines the port's duplex mode and
transmission rate. The factory default is Auto.
Link Status Indicates whether the Link is up or down.
Link Trap This object determines whether or not to send a trap when
link status changes. The factory default is enabled.
LACP Mode Displays whether LACP is enabled or disabled on this port.
4.1.17 show port description
This command displays the port description for every port
Format
Mode Privileged EXEC
Interface Valid slot and port number separated by forward slashes.
Description Shows the port description configured via the “description”
4-8Port and System Setup Commands
show port description <unit/slot/port>
command
v1.0, October 2008
Page 77
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.1.18 show port protocol
This command displays the Protocol-Based VLAN information for either the entire
system, or for the indicated group.
Format
Mode Privileged EXEC
Group Name This field displays the group name of an entry in the Proto-
Group ID This field displays the group identifier of the protocol group.
Protocol(s) This field indicates the type of protocol(s) for this group.
VLAN This field indicates the VLAN associated with this Protocol
Interface(s) This field lists the unit/slot/port interface(s) that are associ-
4.1.19 show port status
This command displays the output with current port attributes and operational status.
Format
Mode Privileged Exec
Interface Valid slot and port number separated by forward slashes.
Media Type “Copper” or “Fiber” for combo port.
STP Mode Indicate the spanning tree mode of the port.
Physical Mode Either “Auto” or fixed speed and duplex mode.
Physical Status The actual speed and duplex mode
show port protocol {<groupid> | all}
col-based VLAN table.
Group.
ated with this Protocol Group.
show port status {<unit/slot/port> | all}
Link Status Whether the link is Up or Down.
Loop Status Whether the port is in loop state or not.
Partner Flow
Control Whether the remote side is using flow control or not.
Port and System Setup Commands4-9
v1.0, October 2008
Page 78
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.2 Pre-login Banner and System Prompt Commands
This section describes the commands you use configure the pre-login banner and the
system prompt. The pre-login banner is the text that displays before you login at the
prompt.
4.2.1 copy
The copy command includes the option to upload or down load the CLI Bann er to or from
the switch. You can specify local URLs by using TFTP, Xmodem, Ymodem, or Zmodem.
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.3.8 sntp server
This command configures an SNTP server (a maximum of three). The optional priority
can be a value of 1-3, the version a value of 1-4, and the port id a value of 1-65535.
Format
Mode Global Config
4.3.8.1 no sntp server
This command deletes an server from the configured SNTP servers.
Format
Mode Global Config
4.3.9 show sntp
This command is used to display SNTP settings and status.
Format
Mode Privileged EXEC
Last Update Time Time of last clock update.
Last Attempt
Time Time of last transmit query (in unicast mode).
Last Attempt
Status Status of the last SNTP request (in unicast mode) or unsolic-
Broadcast Count Current number of unsolicited broadcast messages that have
sntp server <ipaddress> [<priority> [<version>
[<portid>]]]
no sntp server remove <ipaddress>
show sntp
ited message (in broadcast mode).
been received and processed by the SNTP client since last
reboot.
Multicast Count Current number of unsolicited multicast messages that have
been received and processed by the SNTP client since last
reboot
4.3.10 show sntp client
This command is used to display SNTP client settings.
Format
Mode Privileged EXEC
4-14Port and System Setup Commands
show sntp client
v1.0, October 2008
Page 83
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Client Supported
Modes Supported SNTP Modes (Broadcast, Unicast, or Multicast).
SNTP Version The highest SNTP version the client supports
Port SNTP Client Port
Client Mode Configured SNTP Client Mode
Poll Interval Poll interval value for SNTP clients in seconds as a power of
two.
Poll Timeout Poll timeout value in seconds for SNTP clients.
Poll Retry Poll retry value for SNTP clients.
4.3.11 show sntp server
This command is used to display SNTP server settings and configured servers.
Format
show sntp server
Mode Privileged EXEC
Server IP
Address IP Address of configured SNTP Server
Server Type Address Type of Server.
Server Stratum Claimed stratum of the server for the last received valid
packet.
Server Reference
ID Reference clock identifier of the server for the last received
valid packet.
Server Mode SNTP Server mode.
Server Max
Entries Total number of SNTP Servers allowed.
Server Current
Entries Total number of SNTP configured.
For each configured server:
IP Address IP Address of configured SNTP Server.
Address Type Address Type of configured SNTP server.
Priority IP priority type of the configured server.
Version SNTP Version number of the server. The protocol version
used to query the server in unicast mode.
Port and System Setup Commands4-15
v1.0, October 2008
Page 84
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Port Server Port Number
Last Attempt
Time Last server attempt time for the specified server.
Last Attempt
Status Last server attempt status for the server.
Total Unicast
Requests Number of requests to the server.
Failed Unicast
Requests Number of failed requests from server.
4.3.12 clock timezone
When using SNTP/NTP time servers to update the switch’s clock, the time data received
from the server is based on Coordinated Universal Time (UTC) which is the same as
Greenwich Mean Time (GMT). This may not be the time zone in which the switch is
located. Use the clock timezone command to configure a time zone specifying the number
of hours and optionally the number of minutes difference from UTC. To set the switch
clock to UTC, use the no form of the command.
Zone name A name to associate with the time zone
Hours-offset Number of hours difference with UTC
Minutes-offset Number of minutes difference with UTC
Mode Global Config
Default
4-16Port and System Setup Commands
[no] clock timezone
v1.0, October 2008
Page 85
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.4 MAC Address and MAC Database Commands
This section describes the commands you use to configure and view information about the
system MAC address and the MAC address table.
4.4.1 network mac-address
This command sets locally administered MAC addresses. The following rules apply:
•Bit 6 of byte 0 (called the U/L bit) indicates whether the address is universally
administered (b'0') or locally administered (b'1').
•Bit 7 of byte 0 (called the I/G bit) indicates whether the destination address is an
individual address (b'0') or a group address (b'1').
•The second character, of the twelve character macaddr, must be 2, 6, A or E.
A locally administered address must have bit 6 On (b'1') and bit 7 Off (b'0').
Format
Mode Privileged EXEC
4.4.2 network mac-type
This command specifies whether the switch uses the burned in MAC address or the
locally-administered MAC address.
Default burnedin
Format
Mode Privileged EXEC
4.4.2.1 no network mac-type
This command resets the value of MAC address to its default.
Format no network mac-type
Mode Privileged EXE
network mac-address <macaddr>
network mac-type {local | burnedin}
Port and System Setup Commands4-17
v1.0, October 2008
Page 86
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.4.3 macfilter
This command adds a static MAC filter entry for the MAC address <macaddr> on the
VLAN <vlanid>. The <macaddr> parameter must be specified as a 6-byte hexadecimal
number in the format of b1:b2:b3:b4:b5:b6.
The restricted MAC Addresses are: 00:00:00:00:00:00, 01:80:C2:00:00:00 to
01:80:C2:00:00:0F, 01:80:C2:00:00:20 to 01:80:C2:00:00:21, and FF:FF:FF:FF:FF:FF.
The <vlanid> parameter must identify a valid VLAN.
Up to 100 static MAC filters may be created.
Format macfilter
Mode Global Config
4.4.3.1 no macfilter
This command removes all filtering restrictions and the static MAC filter entry for the
MAC address <macaddr> on the VLAN <vlanid>. The <macaddr> parameter must be
specified as a 6-byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6.
The <vlanid> parameter must identify a valid VLAN.
<macaddr> <vlanid>
Format no macfilter
<macaddr> <vlanid>
Mode Global Config
4.4.4 macfilter adddest
This command adds the interface to the destination filter set for the MAC filter with the
given <macaddr> and VLAN of <vlanid>. The <macaddr> parameter must be specified as
a 6-byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6.
The <vlanid> parameter must identify a valid VLAN.
Format macfilter adddest
Mode Interface Config
4-18Port and System Setup Commands
<macaddr> <vlanid>
v1.0, October 2008
Page 87
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.4.4.1 no macfilter adddest
This command removes a port from the destination filter set for the MAC filter with the
given <macaddr> and VLAN of <vlanid>. The <macaddr> parameter must be specified as
a 6-byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6.
The <vlanid> parameter must identify a valid VLAN.
Format no macfilter adddest
<macaddr> <vlanid>
Mode Interface Config
4.4.5 macfilter adddest all
This command adds all interfaces to the destination filter set for the MAC filter with the
given <macaddr> and VLAN of <vlanid>. The <macaddr> parameter must be specified
as a 6-byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6.
The <vlanid> parameter must identify a valid VLAN.
Format macfilter adddest
Mode Global Config
4.4.5.1 no macfilter adddest all
This command removes all ports from the destination filter set for the MAC filter with the
given <macaddr> and VLAN of <vlanid>. The <macaddr> parameter must be specified
as a 6-byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6.
The <vlanid> parameter must identify a valid VLAN.
Format no macfilter adddest all
Mode Global Config
4.4.6 macfilter addsrc
This command adds the interface to the source filter set for the MAC filter with the MAC
address of <macaddr> and VLAN of <vlanid>. The <macaddr> parameter must be
specified as a 6-byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6.
The <vlanid> parameter must identify a valid VLAN.
Format
Mode Interface Config
all
macfilter addsrc <macaddr> <vlanid>
Port and System Setup Commands4-19
v1.0, October 2008
Page 88
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.4.6.1 no macfilter addsrc
This command removes a port from the source filter set for the MAC filter with the MAC
address of <macaddr> and VLAN of <vlanid>. The <macaddr> parameter must be
specified as a 6-byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6.
The <vlanid> parameter must identify a valid VLAN.
Format
no macfilter addsrc <macaddr> <vlanid>
Mode Interface Config
4.4.7 macfilter addsrc all
This command adds all interfaces to the source filter set for the MAC filter with the MAC
address of <macaddr> and <vlanid>. You must specify the <macaddr> parameter as a 6byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6. The <vlanid> parameter
must identify a valid VLAN.
Format
Mode Global Config
4.4.7.1 no macfilter addsrc all
macfilter addsrc all
This command removes a port from the source filter set for the MAC filter with the MAC
address of <macaddr> and VLAN of <vlanid>. The <macaddr> parameter must be
specified as a 6-byte hexadecimal number in the format of b1:b2:b3:b4:b5:b6.
The <vlanid> parameter must identify a valid VLAN.
Format
no macfilter addsrc all
Mode Global Config
4-20Port and System Setup Commands
v1.0, October 2008
Page 89
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.4.8 bridge aging-time
This command configures the forwarding database address aging timeout in seconds. In an
IVL system, the
Default 300
Format
Mode Global Config
[fdbid | all] parameter is required.
bridge aging-time <10-1,000,000> [fdbid | all]
Seconds The
Forwarding
Database ID The forwarding database ID (
4.4.8.1 no bridge aging-time
This command sets the forwarding database address aging timeout to 300 seconds. In an
IVL system, the
[fdbid | all] parameter is required.
Format
Mode Global Config
Forwarding
Database ID Fdbid (Forwarding database ID) indicates which forwarding
<seconds> parameter must be within the range of 10 to
1,000,000 seconds.
fdbid) indicates which for-
warding database's aging timeout is being configured. Use
all option to configure the agetime of all forwarding
the
databases.
no bridge aging-time [fdbid | all]
database's aging timeout is being configured. All is used to
configure all forwarding database's agetime.
Port and System Setup Commands4-21
v1.0, October 2008
Page 90
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.4.9 show forwardingdb agetime
This command displays the timeout for address aging. In an IVL system, the [fdbid |
all] parameter is required.
Default all
Format
show forwardingdb agetime [fdbid | all]
Mode Privileged EXEC
Forwarding DB
ID Forwarding database ID indicates the forwarding database
whose aging timeout is to be shown. The all option is used to
display the aging timeouts associated with all forwarding
databases.
Agetime In an IVL system, this parameter displays the address aging
timeout for the associated forwarding database.
4.4.10 show mac-address-table multicast
This command displays the Multicast Forwarding Database (MFDB) information. If you
enter the command with no parameter, the entire table is displayed. You can display the
table entry for one MAC Address by specifying the MAC address as an optional
parameter.
Format
Mode Privileged EXEC
show mac-address-table multicast <macaddr>
MAC Address A multicast MAC address for which the switch has forward-
ing and or filtering information. The format is two-digit hexadecimal numbers separated by colons, for example
01:23:45:67:89:AB. In an IVL system the MAC address will
be displayed as a MAC address and VLAN ID combination
of 8 bytes.
Type This displays the type of the entry. Static entries are those that
are configured by the end user. Dynamic entries are added to
the table as a result of a learning process or protocol.
Component The component that is responsible for this entry in the Multi-
cast Forwarding Database. Possible values are IGMP Snooping, GMRP, and Static Filtering.
Description The text description of this multicast table entry.
4-22Port and System Setup Commands
v1.0, October 2008
Page 91
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
Interfaces The list of interfaces that are designated for forwarding
(Fwd:) and filtering (Flt:).
Forwarding
Interfaces The resultant forwarding list is derived from combining all
the component’s forwarding interfaces and removing the
interfaces that are listed as the static filtering interfaces.
4.4.11 show mac-address-table static
This command displays the Static MAC Filtering information for all Static MAC Filters. If
you select
value for
Static MAC Filter information only for that MAC address and VLAN.
<all>, all the Static MAC Filters in the system are displayed. If you supply a
<macaddr>, you must also enter a value for <vlanid>, and the system displays
Format
show mac-address-table static {<macaddr> <vlanid>
| all}
Mode Privileged EXEC
MAC Address Is the MAC Address of the static MAC filter entry.
VLAN ID Is the VLAN ID of the static MAC filter entry.
Source Port(s) Indicates the source port filter set's slot and port(s).
Destination
Port(s) Indicates the destination port filter set's slot and port(s).
4.4.12 show mac-address-table stats
This command displays the Multicast Forwarding Database (MFDB) statistics.
Format
Mode Privileged EXEC
Total Entries Displays the total number of entries that can possibly be in
Most MFDB
Entries Ever
Used Displays the largest number of entries that have been present
Current Entries Displays the current number of entries in the MFDB.
Port and System Setup Commands4-23
show mac-address-table stats
the Multicast Forwarding Database table.
in the Multicast Forwarding Database table. This value is also
known as the MFDB high-water mark.
v1.0, October 2008
Page 92
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.5 DNS Client Commands
The Domain Name System (DNS) is an Internet directory service. DNS is used to translate
domain names to IP addresses. A DNS Client (often referred to as a resolver) uses a
defined protocol to obtain resource data from name servers on its network.
The DNS Client component must be globally enabled or disabled. When the client is
enabled, it provides a hostname lookup service to other components in the switch. The
client contacts one or more DNS servers to resolve a hostname to an IP address. The DNS
servers list is configured by providing an IP address for each DNS name server, and server
precedence is determined by the order in which the servers are added to this list. A default
domain name can be configured, which defines the domain to use when performing a
lookup on an unqualified hostname. Static hostname-to-address mappings can be added
and removed from the local cache.
The DNS client supports 128 entries in the DNS cache. Any applica tion component
requiring a DNS lookup may request services from the DNS client. When the DNS client
is administratively disabled the local cache is purged. Changes to the name server
configuration do not affect the cache. If a stacking switchover occurs, the new Master unit
begins with a cleared cache.
The following applications support domain name in addition to the IP address format:
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.5.1 ip domain-lookup
To enable the IP Domain Naming System (DNS)-based host name-to-address translation,
use the ip domain-lookup global configuration command. T o disable the DNS, use the no
form of this command
Format
[no] ip domain-lookup
Mode Global Config
Default enabled
4.5.2 ip domain-name
T o define a d efault domain name (<name>) that the software uses to complete unqualified
host names (names without a dotted-decimal domain name), use the ip domain-name
global configuration command. To remove default domain name, use the no form of this
command.
Default domain used to complete unqualified host names. Do not include the initial period
that separates an unqualified name from the domain name.
<name> is a string of 1 to 255 characters.
Format
Mode Global Config
ip domain-name name
no ip domain-name
4.5.3 ip name-server
T o set the available name servers, use the ip name-server global configuration command.
<server-address> is IP addresses of the name server. Up to 8 servers can be defined in one
command, or by using multiple commands.
the order they were entered.
Format
To remove a name server, use the no form of this command.
[no] ip name-server server-address1 [server-address2
server-address8]
Mode Global Config
Port and System Setup Commands4-25
v1.0, October 2008
The preference of the servers is determined by
Page 94
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
4.5.4 ip host
To define static host name <name> to IP address <address> mapping in the host cache,
use the ip host global configuration command. The <name> string is from 1 to 255
characters. To remove the name-to-address mapping, use the no form of this command.
Format
Mode Global Config
[no] ip host name address
4.5.5 clear host
To delete entries from the host name-to-address cache, use the clear host Privileged
EXEC command
Format clear host [name | *]
Mode Privileged EXEC Mode
.
4.5.6 show hosts
To display the default domain name, a list of name server hosts, the static and the cached
list of host names and addresses, use the show hosts EXEC command.
Format
Mode Privileged EXEC Mode
show hosts [name]
4-26Port and System Setup Commands
v1.0, October 2008
Page 95
Chapter 5
Spanning Tree Protocol Commands
This section describes the spanning tree protocol (STP) commands available in the
7200RS Series Stackable Switch CLI. STP helps prevent network loops, duplicate
messages, and network instability.
The STP Commands section includes the following topics:
•Section 5.1 “STP Configuration Commands” on page 1
•Section 5.2 “STP Show Commands” on page 10
The commands in this section are in one of two functional groups:
•Show commands display switch settings, statistics, and other information.
•Configuration commands configure features and options of the switch. For every
configuration command, there is a show command that displays the configuration
setting.
5.1 STP Configuration Commands
This section describes the commands you use to configure Spanning Tree Protocol (STP).
Note: STP is enabled by default. If STP is disabled, the system does not generate
BPDU messages.
5.1.1 spanning-tree
This command sets the spanning-tree operational mode to enabled.
Default enabled
Format
Mode Global Config
Spanning Tree Protocol Commands5-1
spanning-tree
v1.0, October 2008
Page 96
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
5.1.1.1 no spanning-tree
This command sets the spanning-tree operational mode to disabled. While disabled, the
spanning-tree configuration is retained and can be changed, but is not activated.
Format
no spanning-tree
Mode Global Config
5.1.2 spanning-tree bpdumigrationcheck
This command enables BPDU migration check on a given interface. The all option
enables BPDU migration check on all interfaces.
This command disables BPDU migration check on a given interface. The all option
disables BPDU migration check on all interfaces.
Format
no spanning-tree bpdumigrationcheck {<unit/slot/
port> | all}
Mode Global Config
5.1.3 spanning-tree configuration name
This command sets the Configuration Identifier Name for use in identifying the
configuration that this switch is currently using. The
characters.
Default base MAC address in hexadecimal notation
Format
Mode Global Config
5.1.3.1 no spanning-tree configuration name
spanning-tree configuration name <name>
<name> is a string of up to 32
This command resets the Configuration Identifier Name to its default.
Format
no spanning-tree configuration name
Mode Global Config
5-2Spanning Tree Protocol Commands
v1.0, October 2008
Page 97
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
5.1.4 spanning-tree configuration revision
This command sets the Configuration Identifier Revision Level for use in identifying the
configuration that this switch is currently using. The Configuration Identifier Revision
Level is a number in the range of 0 to 65535.
Default 0
Format
spanning-tree configuration revision <0-65535>
Mode Global Config
5.1.4.1 no spanning-tree configuration revision
This command sets the Configuration Identifier Revision Level for use in identifying the
configuration that this switch is currently using to the default value, i.e. 0.
Format
no spanning-tree configuration revision
Mode Global Config
5.1.5 spanning-tree edgeport
This command specifies that this port is an Edge Port within the common and internal
spanning tree. This allows this port to transition to Forwarding State without delay.
Format
Mode Interface Config
5.1.5.1 no spanning-tree edgeport
This command specifies that this port is not an Edge Port within the common and internal
spanning tree.
Format
Mode Interface Config
spanning-tree edgeport
no spanning-tree edgeport
5.1.6 spanning-tree edgeport all
This command specifies that every port is an Edge Port within the common and internal
spanning tree. This allows all ports to transition to Forwarding State without delay.
Format
Mode Global Config
Spanning Tree Protocol Commands5-3
spanning-tree edgeport all
v1.0, October 2008
Page 98
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
5.1.6.1 no spanning-tree edgeport all
This command disables Edge Port mode for all ports within the common and internal
spanning tree.
Format
spanning-tree edgeport all
Mode Global Config
5.1.7 spanning-tree forceversion
This command sets the Force Protocol Version parameter to a new value. The Force
Protocol Version can be one of the following:
•802.1d - ST BPDUs are transmitted rather than MST BPDUs (IEEE 802.1d
functionality supported)
•802.1w - RST BPDUs are transmitted rather than MST BPDUs (IEEE 802.1w
functionality supported)
•802.1s - MST BPDUs are transmitted (IEEE 802.1s functionality supported)
Default 802.1s
Format
Mode Global Config
spanning-tree forceversion <802.1d | 802.1w |
802.1s>
5.1.7.1 no spanning-tree forceversion
This command sets the Force Protocol Version parameter to the default value, i.e. 802.1s.
Format
no spanning-tree forceversion
Mode Global Config
5.1.8 spanning-tree forward-time
This command sets the Bridge Forward Delay parameter to a new value for the common
and internal spanning tree. The forward-time value is in seconds within a range of 4 to 30,
with the value being greater than or equal to “(Bridge Max Age / 2) + 1”.
Default 15
Format
Mode Global Config
5-4Spanning Tree Protocol Commands
spanning-tree forward-time <4-30>
v1.0, October 2008
Page 99
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
5.1.8.1 no spanning-tree forward-time
This command sets the Bridge Forward Delay parameter for the common and internal
spanning tree to the default value of 15.
Format
no spanning-tree forward-time
Mode Global Config
5.1.9 spanning-tree hello-time
This command sets the Admin Hello Time parameter to a new value for the common and
internal spanning tree. The hello time
10, with the value being less than or equal to (Bridge Max Age / 2) - 1.
Default 2
<value> is in whole seconds within a range of 1 to
Format
spanning-tree hello-time <1-10>
Mode Interface Config
5.1.9.1 no spanning-tree hello-time
This command sets the admin Hello Time parameter for the common and internal
spanning tree to the default value.
Format
no spanning-tree hello-time
Mode Interface Config
5.1.10 spanning-tree max-age
This command sets the Bridge Max Age parameter to a new value for the common and
internal spanning tree. The max-age value is in seconds within a range of 6 to 40, with the
value being less than or equal to 2 x (Bridge Forward Delay - 1).
Default 20
Format
Mode Global Config
5.1.10.1 no spanning-tree max-age
This command sets the Bridge Max Age parameter for the common and internal spanning
tree to the default value of 20.
Format
Mode Global Config
spanning-tree max-age <6-40>
no spanning-tree max-age
Spanning Tree Protocol Commands5-5
v1.0, October 2008
Page 100
Command Line Interface Reference for the ProSafe 7200RS Series Layer-2 Stackable Switches
5.1.11 spanning-tree max-hops
This command sets the MSTP Max Hops parameter to a new value for the common and
internal spanning tree. The max-hops value is a range from 1 to 127.
Default 20
Format
spanning-tree max-hops <1-127>
Mode Global Config
5.1.11.1 no spanning-tree max-hops
This command sets the Bridge Max Hops parameter for the common and internal spanning
tree to the default value.
Format
no spanning-tree max-hops
Mode Global Config
5.1.12 spanning-tree mst
This command sets the Path Cost or Port Priority for this port within the multiple spanning
tree instance or in the common and internal spanning tree. If you specify an
parameter that corresponds to an existing multiple spanning tree instance, the
configurations are done for that multiple spanning tree instance. If you specify 0 (defined
as the default CIST ID) as the
<mstid>, the configurations are done for the common and
internal spanning tree instance.
<mstid>
If you specify the cost option, the command sets the path cost for this port within a
multiple spanning tree instance or the common and internal spanning tree instance,
depending on the
<mstid> parameter. You can set the path cost as a number in the range of
1 to 200000000 or auto. If you select auto the path cost value is set based on Link Speed.
If you specify the external-cost option, this command sets the external-path cost for MST
instance ‘0’ i.e. CIST instance. You can set the external cost as a number in the range of 1
to 200000000 or auto. If you specify auto, the ex ternal path cost v alue is set based on Li nk
Speed.
If you specify the port-priority option, this command sets the priority for this port within
a specific multiple spanning tree instance or the common and internal spanning tree
instance, depending on the
<mstid> parameter. The port-priority value is a number in the
range of 0 to 240 in increments of 16.
Default cost: auto; external-cost: auto; port-priority: 128
Format