All rights reserved. April 2000.
The information in this document is subject to change without notice. The statements,configurations,technical data,
and recommendations in this document are believed to be accurate and reliable, but are presented without express or
impliedwarranty. Users must take full responsibilityfor their applications of any products specifiedin this document.
The information in this documentis proprietaryto Nortel Networks NA Inc.
The software described in this documentis furnished under a license agreement and may only be used in accordance
with the terms of that license. A summary of the Software License is included in this document.
Trademarks
Passport and NORTEL NETWORKS are trademarks of Nortel Networks.
Bay Networks is a registeredtrademark of Nortel Networks.
Microsoft, MS, MS-DOS, Win32, Windows, and Windows NT are registeredtrademarks of Microsoft Corporation.
All other trademarks and registered trademarks are the property of their respective owners.
Restricted Rights Legend
Use, duplication, or disclosureby the United States Government is subject to restrictions as set forth in subparagraph
(c)(1)(ii) of the Rights in Technical Data and Computer Software clause at DFARS 252.227-7013.
Notwithstanding any other license agreement that may pertain to, or accompany the delivery of, this computer
software, the rights of the United States Government regarding its use, reproduction, and disclosure are as set forth in
the Commercial Computer Software-Restricted Rights clause at FAR 52.227-19.
Statement of Conditions
In the interest of improving internal design, operational function, and/or reliability,Nortel NetworksNA Inc. reserves
the right to make changes to the productsdescribed in this document without notice.
Nortel Networks NA Inc. does not assume any liability that may occur due to the use or application of the product(s)
or circuit layout(s) described herein.
SUCH PORTIONS OF THE SOFTWARE ARE PROVIDED “AS IS” AND WITHOUT ANY EXPRESS OR
IMPLIED WARRANTIES, I NCLUDING, WITHOUT LIMITATION, THE IMPLIED WARRANTIES OF
MERCHANTABILITY AND FITNESS FOR A PARTICULARPURPOSE.
In addition, the program and information contained herein are licensed only pursuant to a licenseagreementthat
containsrestrictions on use and disclosure (that may incorporate by referencecertain limitations and notices imposed
by third parties).
ii208967-B
Taiwan Requirements
Bureau of Standards, Metrology and Inspection (BSMI) Statement
Canada Requirements Only
Canadian Depar tment of Communications Radio Interference Regulations
This digital apparatus (Passport 8000 Seriesrouting switch) does not exceed the Class A limits for radio-noise
emissions from digital apparatusas set out in the Radio Interference Regulationsof the Canadian Department of
Communications.
Règlement sur le brouillage radioélectrique du ministère des Communications
Cet appareil numérique (Passport 8000 Series routing switch) respecte les limites de bruits radioélectriques visant les
appareils numériques de classeA prescrites dans le Règlement sur le brouillage radioélectrique du ministèredes
Communications du Canada.
Nortel Networks NA Inc. Software License Agreement
NOTICE: Please carefullyread this license agreement before copying or using the accompanying software or
installing the hardware unit with pre-enabled software (each of which is referred to as “Software” in this Agreement).
BY COPYING OR USING THE SOFTWARE, YOU ACCEPT ALL OF THE TERMS AND CONDITIONS OF
THIS LICENSE AGREEMENT. THE TERMS EXPRESSED IN THI S AGREEMENT ARE THE ONLY TERMS
UNDER WHICH NORTEL NETWORKS WILL PERMIT YOU TO USE THE SOFTWARE. If you d o not accept
these terms and conditions, return the product, unused and in the original shipping container, within 30 days of
purchase to obtain a credit for the full purchase price.
1. License Grant. Nortel Networks NA Inc. (“Nortel Networks”)grants the end user of the Software (“Licensee”) a
personal, nonexclusive,nontransferablelicense: a) to use the Softwareeither on a singlecomputeror, if applicable,on
a single authorized device identified by host ID, for which it was originallyacquired; b) to copy the Software solely
for backup purposes in support of authorized use of the Software; and c) to use and copy the associated user manual
solelyinsupportof authorized use of the Softwareby Licensee.This license applies to the Software only and does not
extend to Nortel Networks Agent software or other Nortel Networks software products. Nortel Networks Agent
software or other Nortel Networks software products are licensed for use under the terms of the applicableNortel
NetworksNAInc. Software LicenseAgreementthat accompanies such software and upon payment by the end user of
the applicable licensefees for such software.
2. Restrictions on use; reservation of rights. The Software and user manuals are protected under copyright laws.
Nortel Networks and/or its licensors retain all title and ownership in both the Software and user manuals, including
any revisionsmade by Nortel Networks or its licensors. The copyrightnotice must be reproducedand included with
any copy of any portion of the Software or user manuals. Licenseemay not modify, translate, decompile,disassemble,
use for any competitive analysis,reverse engineer, distribute, or create derivative works from the Software or user
manuals or any copy, in whole or in part. Except as expresslyprovided in this Agreement, Licensee may not copy or
transfer the Softwareor user manuals, in whole or in part. The Software and user manuals embody Nortel Networks’
and its licensors’confidentialand proprietary intellectual property. Licensee shall not sublicense, assign, or otherwise
disclose to any third party the Software, or any information about the operation,design,performance, or
implementation of the Software and user manuals that is confidentialto Nortel Networks and its licensors;however,
Licenseemay grantpermission to its consultants,subcontractors, and agents to use the Softwareat Licensee’s facility,
provided they have agreed to use the Softwareonlyin accordance with the terms of this license.
208967-Biii
3. Limited warranty. Nortel Networkswarrants each item of Software, as delivered by Nortel Networks and properly
installed and operatedon Nortel Networks hardware or other equipmentit is originally licensed for,to function
substantially as described in its accompanyinguser manual during its warranty period, which begins on the date
Software is first shipped to Licensee. If any item of Software fails to so function during its warranty period, as the sole
remedyNortelNetworks will at its discretion providea suitablefix, patch,or workaround for the problemthatmay be
included in a future Softwarerelease. Nortel Networks further warrants to Licensee that the media on which the
Software is providedwill be free from defects in materialsand workmanshipunder normal use for a period of 90 days
from the date Softwareis first shipped to Licensee. Nortel Networks will replacedefective media at no charge if it is
returned to Nortel Networks during the warranty period along with proof of the date of shipment. This warranty does
not apply if the media has been damaged as a result of accident, misuse, or abuse. The Licensee assumes all
responsibility for selection of the Softwareto achieve Licensee’s intended results and for the installation,use, and
resultsobtained from the Software. Nortel Networks does not warrant a) t hat the functions contained in the software
will meet the Licensee’s requirements,b) that the Software will operate in the hardware or softwarecombinationsthat
the Licensee may select,c) that the operation of the Software will be uninterruptedor error free, or d) that all defects
in the operation of the Software will be corrected. Nortel Networks is not obligated to remedy any Software defect
that cannotbe reproducedwiththelatest Softwarerelease. These warrantiesdo not applyto the Softwareif it has been
(i) altered, except by Nortel Networks or in accordance with its instructions; (ii) used in conjunctionwith another
vendor’s product,resulting in the defect; or (iii) damaged by improper environment,abuse,misuse, accident, or
negligence. THE FOREGOING WARRANTIES AND LIMITATIONS ARE EXCLUSIVE REMEDIES AND ARE
IN LIEU OF ALL OTHER WARRANTIES EXPRESS OR IMPLIED, INCLUDING WITHOUT LIMITATION
ANY WARRANTY OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE. Licensee is
responsible for the security of its own data and information and for maintaining adequateprocedures apart from the
Software to reconstruct lost or altered files,data, or programs.
4. Limitation of liability. IN NO EVENT WILLNORTEL NETWORKS OR ITS LICENSORS BE LIABLE FOR
ANY COST OF SUBSTITUTE PROCUREMENT;SPECIAL, INDIRECT,INCIDENTAL, OR CONSEQUENTIAL
DAMAGES; OR ANY DAMAGES RESULTING FROM INACCURATE OR LO ST DATA OR LOSS OF USE OR
PROFITS ARISING OUT OF OR IN CONNECTION W ITH THE PERFORMANCE OF T HE SOFTWARE, EVEN
IF NORTEL NETWORKS HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. IN NO EVENT
SHALL THE LIABILITY OF NORTEL NETWORKS RELATING TO THE SOFTWAREOR THIS AGREEMENT
EXCEED THE PRICE PAIDTO NORTEL NETWORKS FOR THE SOFTWARE LICENSE.
5. Government Licensees. This provision applies to all Software and documentation acquired directly or indirectly
by or on behalf of the United States Government. The Software and documentationare commercialproducts, licensed
on the open market at market prices, and were developed entirely at privateexpense and without the use of any U.S.
Government funds. The license to the U.S. Government is granted only with restrictedrights,and use, duplication,or
disclosure by the U.S. Government is subject to the restrictionsset forth in subparagraph(c)(1)of the Commercial
Computer Software––Restricted Rights clause of FAR 52.227-19 and the limitationsset out in this license for civilian
agencies, and subparagraph (c)(1)(ii) of the Rights in Technical Data and Computer Softwareclause of DFARS
252.227-7013, for agenciesof the Department of Defense or their successors, whichever is applicable.
6. Use of Software in the European Community.This provision applies to all Software acquiredfor use within the
European Community. If Licensee uses the Software within a country in the European Community, the Software
Directive enacted by the Council of European CommunitiesDirective dated 14 May, 1991, will apply to the
examination of the Software to facilitate interoperability. Licensee agrees to notify Nortel Networks of any such
intended examination of the Software and may procure support and assistance from Nortel Networks.
7. Termand termination.This license is effective until terminated; however, all of the restrictions with respect to
NortelNetworks’ copyrightin the Softwareand user manuals willceasebeingeffective at the date of expirationof the
Nortel Networks copyright; those restrictions relating to use and disclosure of Nortel Networks’confidential
information shall continue in effect.Licenseemay terminate this license at any time. The license will automatically
terminate if Licensee fails to comply with any of the terms and conditions of the license. Upon termination for any
reason, Licensee will immediately destroy or return to Nortel Networks the Software, user manuals, and all copies.
Nortel Networks is not liable to Licensee for damages in any form solely by reason of the termination of this license.
iv208967-B
8. Export and Re-export. Licensee agrees not to export, directly or indirectly, the Software or related technical data
or information without first obtainingany requiredexport licenses or other governmental approvals. Without limiting
the foregoing,Licensee, on behalf of itself and its subsidiaries and affiliates, agrees that it will not, without first
obtainingall export licenses and approvals required by the U.S. Government: (i) export, re-export, transfer, or divert
any such Software or technicaldata, or any direct product thereof, to any country to which such exports or re-exports
are restricted or embargoed under United States export control laws and regulations, or to any national or resident of
such restrictedor embargoed countries; or (ii) provide the Software or related technical data or informationto any
militaryend user or for any military end use, including the design,development, or production of any chemical,
nuclear, or biologicalweapons.
9. General. If any provision of this Agreement is held to be invalid or unenforceable by a court of competent
jurisdiction, the remainder of the provisions of this Agreement shall remain in full force and effect. This Agreement
will be governed by the laws of the state of California.
Should you have any questions concerning this Agreement, contact Nortel Networks, 4401 Great America Parkway,
P.O. Box 58185, Santa Clara, California 95054-8185.
LICENSEE ACKNOWLEDGES THAT LICENSEE HAS READ THIS AGREEMENT, UNDERSTANDS IT, AND
AGREES TO BE BOUND BY ITS TERMS AND CONDITIONS.LICENSEE FURTHER AGREES THAT THIS
AGREEMENT IS THE ENTIRE AND EXCLUSIVE AGREEMENT BETWEEN NORTEL NETWORKS AND
LICENSEE, WHICH SUPERSEDES ALL PRIOR ORAL AND WRITTEN AGREEMENTS AN D
COMMUNICATIONS BETWEEN THE PARTIES PERTAINING TO THE SUBJECT MATTER OF THIS
AGREEMENT. NO DIFFERENT OR ADDITIONAL TERMS WILL BE ENFORCEABLE AGAINST NORTEL
NETWORKS UNLESS NORTEL NETWORKS GIVES ITS EXPRESS WRITTEN CONSENT, INCLUDING AN
EXPRESS WAIVEROF THE TERMS OF THIS AGREEMENT.
208967-Bv
vi208967-B
Contents
Preface
Before You Begin ............................................................................................................xxii
Text Conventions ............................................................................................................ xxii
Related Publications ...................................................................................................... xxiii
How to Get Help ............................................................................................................xxvi
Chapter 1
IP Routing and ARP Commands
IP Routing Commands ...................................................................................................1-1
config ip Commands ................................................................................................1-1
show ip Commands ..................................................................................................1-4
show ip forwarding Command ........................................................................... 1-4
show ip interface Command ..............................................................................1-4
show ip route-discovery Command ...................................................................1-4
show ip route info Command .............................................................................1-5
show ip static-route info Command ...................................................................1-5
config ethernet <ports> ip Co mmands .....................................................................1-6
show ports i nfo ip Command .............................................................................1-8
Figure 8 -3.config ip traffic-filter create info Command O utput ...................................8-7
Figure 8 -4.config ip traffic-filter filter action info Command Output ...........................8-9
Figure 8 -5.config ip traffic-filter filter match info Command Output .........................8 -11
Figure 8 -6.config ip traffic-filter filter modify info Command Output ........................8-12
Figure 8-7.config ip traffic-filter global-set info Command Output ...........................8-13
Figure 8 -8.config ip traffic-filter set info Command Output ......................................8-14
Figure 8 -9.config ip traffic-filter traffic-profile info Command Output .......................8-18
Figure 8 -10. show ip traffic-filter destination Command Output ................................. 8 -20
Figure 8 -11. show ip traffic-filter global Command Output .........................................8 -21
Figure 8-12. show ip traffic-filter info global-set Command Output ............................8-22
Figure 8 -13. show ip traffic-filter info set Command Output ....................................... 8 -23
Figure 8 -14. show ip traffic-filter interface Command Output .....................................8-23
Figure 8 -15. show ip traffic-filter stats Command Output ...........................................8-24
Figure 8 -16. show ip traffic-filter traffic-profile Command Output ...............................8-25
xviii208967-B
Tables
Table 3-1.RIP Supply and Listen Settings and Switch Action ..................................3-6
Table A-1.CLI Command List ..................................................................................A-1
208967-Bxix
xx208967-B
Preface
The Nortel Networks™Passport™command line interface (CLI) is one method
used to c onfigure and manage a Passport 8000 Series switch. The CLI, as well as
the Passport Management Software graphical user interface (GUI), allows you to
set up, configure, and manage your Passport 8000 Series switch as a layer 2
(switching) or as a layer 3 (routing) device.
This guide provides information about using the features and capabilities of the
CLI commands to perform layer 3 (routing) network management operations on
Passport sw itches.
For general information about using the features and capabilities of the CLI
commands to perform layer 2 (switching) operations, refer to Re ference for thePassport 8000 Series Command Line Interface Switching Operations. For general
information a bout networking features in Passport products, refer to NetworkingConcepts for the Passport 8000 Series Switch. For information about using the
Passport M anagement Software Device Manager and VLAN Manager, refer to
Reference for the Passport 8000 Series Management Software Switching
Operations and Reference for the Passport 8000 Series Management Software
Routing Operations.
208967-Bxxi
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
Before You Begin
This guide is intended for network administrators with the following background:
•Basic knowledge of networks, Ethernet bridging, and IP routing
•Familiarity with networking concepts and terminology
•Basic knowledge of network topologies
Before using this guide, you must complete the following procedures. For a new
switch:
•Install the switch (see the installation guide that came with your router).
•Connect the r outer to the network (see Ge tting Started with thePassport 8600Management Software).
Text Conventions
angle brackets < >Indicate that you choose the text to enter based on the
description inside the brackets. Do not type the brackets
when entering the command.
Example: If the command syntax is:
ping <ip_address>, you enter:
ping 192.32.10.12
braces {}Indicate required elements in syntax descriptions where
there is m ore than one option. You must choose only one
of the options. Do not type the braces when entering the
command.
Example: If the command syntax is:
action <action choice> the options for
<action choice> are
brackets [ ]Indicate optional elements in syntax descriptions. Do not
type the brackets when entering the command.
Example: If the command syntax is:
show log [tail], you can enter either:
show log or show log tail.
xxii208967-B
italic textIndicates file and directory names, new terms, and book
screen textIndicates commands and system output, for example,
vertical line |Separates choices for command keywords and arguments.
Related Publications
Preface
titles.
prompts and system messages.
Example:
Passport-8600# show config verbose
Enter only one of the choices. Do not type the vertical line
when entering the command.
Example: If the command syntax is:
config cli more <true|false>, you must enter e ither:
config cli more true or config cli more false,but
not both.
For more information about using Passport M anagement S oftware or Passport
switches, refer to the following publications:
•Getting Started with the Passport 8600 Management Software
(part number 209663-B)
Outlines the procedures for installing and booting your Passport switch, as
well as instructions for installing the Passport Ma nagement Software.
•Using the Passport 8600 Modules (part number 207306-B)
Provides information about Passport 8600 modules, including descriptions of
their operational features, installation instructions, basic setup procedures,
and technical specifications.
•Installing the Passport 8010 Chassis (part num ber 204518-B)
Provides instructions in English and six other languages to install the Passport
8010 Chassis; includes technical specifications for the chassis.
208967-Bxxiii
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
•Installing the Passport 8001PS AC Pow er Supply (part number 204519-B)
Provides instructions on installing the Passport 8001PS AC Power S upply;
includes technical specifications for the power supply.
•Reference for the Passport 8000 Series Management Software SwitchingOperations (part num ber 207414-C)
Describes how to use Device Manager to configure and m anage layer 2
(switching) functions with the Passport switch, including procedures and
illustrations of pertinent screens.
•Reference for the Passport 8000 Series Command L ine Interface SwitchingOperations (part num ber 207308-C)
Describes how to use the CLI to configure and manage layer 2 (switching)
functions with the Passport switch, including procedures and illustrations of
pertinent commands.
•Reference for the Passport 8000 Series Management Software RoutingOperations (part num ber 207415-B)
Describes how to use Device Manager to configure and m anage layer 3
(routing) functions with the Passport switch, including procedures and
illustrations of pertinent screens.
•Networking Concepts for the Passport 8000 Series Switch
(part number 207307-C)
General information and description of how the Passport 8000 Series switch
handles various networking features such as VLANs, Multi-Link Trunking,
OSPF, RIP, IPX, and so forth.
xxiv208967-B
Preface
For more information about networking concepts, protocols, and topologies, you
may want to consult the following sources:
•RFC 951 (BootP)
•RFC 1058 (RIP version 1)
•RFC 1723 (RIP version 2)
•RFC 1389 (RIP 2 Management Information Base (MIB))
•RFC 1213 (Network Management of TC P/IP MIB II)
•RFC 1493 (Bridge MIB)
•RFC 1573 (IANA If Type)
•RFC 1643 (Ether-like MIB)
•RFC 2131 (DHCP)
•RFC 2338 (VRRP)
•RFCs 1271 and 1757 (RMON)
•RFC 1850 (OSPF MIB)
•RFCs 1253, 1583 and 2178 (OSPF)
•RFCs 2474 and 2475 (DiffServ)
•RFCs 2597 and 2598 (DiffServ Per Hop Behavior)
•RFC 1112 (IGMP version 1)
•RFC 2236 (IGMP version 2)
•IEEE 802.1D (Standard f or Spanning Tree P rotocol)
•IEEE 802.3 (Ethernet)
•IEEE 802.1Q (VLAN Tagging)
•Enterprise M IB (located on the Passport 8000 Se ries Software CD)
You ca n print selected technical manuals and release notes free, directly from the
Internet. Go to the support.baynetworks.com/library/tpubs/ Web address. Find the
product for which you need documentation.Then locate the specific category and
model or version for your hardware or software product. Using Adobe Acrobat
Reader,you can open the m anuals and release notes, search f or the sections you
need, and print them on most standard printers. Go to the Adobe Systems Web
address at www.adobe.com to download a free copy of Acrobat Reader.
You ca n purchase Nortel Networks documentation sets, CDs, and selected
technical publications at www1.fatbrain.com/documentation/nortel.
208967-Bxxv
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
How to Get Help
If you purchased a service contract for your Nortel Networks product from a
distributor or authorized reseller, contact the technical support staff for that
distributor or reseller for assistance.
If you purchased a NortelNetworks service program, contact one of the following
Nortel Networks Technical Solutions Centers:
Technical Solutions CenterTelephone
Billerica, MA800-2LANWAN or (800) 252-6926
Santa Clara, CA800-2LANWAN or (800) 252-6926
Valbonne, France33-4-92-96-69-68
Sydney, Australia61-2-9927-8800
Tokyo, Japan81-3-5740-1700
xxvi208967-B
This chapter describes the Run-Time CLI commands that are used to configure
layer 3 (routing) functions in the Passport 8000 Series switch. The chapter
includes sections about the following command groups used to configure routing
characteristics:
•IP Routing Commands
•IP ARP Commands
IP Routing Comma nds
The general IP routing commands allow you to enable and disable IP forwarding
(routing) on the switch, ports, and/or VLAN.
Chapter 1
IP Routing and ARP Commands
config ip Commands
The general config ip commands take the following syntax and format:
config ip
followed by:
infoDisplayscurrent default time-to-live characteristics
(Figure 1-1
default-ttl <seconds>Sets t he default time to live (ttl) value for a routed packet.
It is the maximum number of seconds before a packet is
discarded.
•<seconds> is a number between 1 and 255. The
208967-B1-1
).
default value of 255 is inserted in the ttl field
whenever one is not supplied in the datagram header.
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config ip
followed by:
forwarding disableDisables IP forwarding (routing) on the entire switch. IP
routing is disabled, allowing you to manage a Passport
switch over a network without forcing the switch t o also
perform routing.
forwarding enableEnables IP forwarding (routing) on the entire switch.
Default is enable.
forwarding infoDisplayswhether IP forwarding is enabled or disabled.
mroute infoDisplaysIP multicast route settings.
mroute interface
These commands are the more generic port-related IP routing commands. Other
port commands are included in the section dealing with the protocol or feature
(for example, DHCP).
In order for the
forwarding must be enabled on the switch; by default on the Passport 8000 Series
switch, forwarding is enabled.
The command uses the syntax:
config ip forwarding enable
The port commands require the parameter <ports> as the port or list of ports on
which you a re running the command {slot/port[-slot/port][, ...]}.
config ethernet <ports> ip commands to take effect, IP
1-6208967-B
IP Routing and ARP Commands
These commands take the following syntax a nd parameters:
config ethernet <ports> ip
followed by:
infoDisplays configured IP characteristics on the por t.
create <ipaddr/mask> <vid>
[mac_offset <value>]
delete <ipaddr>Deletes an IP address from a Brouter port.
Assigns an IP address to a port. Assigningan IP
address to a port creates a Brouter port (see
page 1-8
•<ipaddr/mask> is the IP addressand mask
•<vid> is the VLAN ID {1..4094}.
•[mac_offset <value>] is a user-assigned
).
{a.b.c.d}.
MAC address. This MAC address is in place of
the default MAC address.
Figure 1-7 isasampleoftheconfig ethernet ip info command.
To create a brouter port, configure a routed IP policy-based single-port VLAN.
You cr eate a br outer port by assigning a n IP address to a port and specifying a
VLAN ID for that port. Use the following command:
config ethernet <ports> ip create <ipaddr/mask> <vid>
1-8208967-B
IP Routing and ARP Commands
show ports info brouter-port Com m and
The
show ports info brouter-port command displays brouter port
information f or their associated VLANs.
This command uses the syntax:
show ports info brouter-port
Figure 1-9 is an example.
Passport-8610# show ports info brouter-port
PortVlan Id
===========
1/12
Figure 1-9.
vlan ip Commands
These commands are the general routing commands on the VLAN. Other VLAN
commands are included in the section dealing with the protocol or feature
(for example, DHCP).
config vlan ip Commands
The general
4094.
The commands take the following syntax and parameters:
config vlan <vid> ip
followed by:
infoDisplays VLAN routing characteristics.
create <ipaddr/mask>
[mac_offset <value>]
delete <ipaddr>Deletes the specified VLAN address.
show ports info brouter-port
config vlan ip commands require a VLAN ID <vid> from 1 to
Assigns an IP address and subnet mask to the VLAN.
•<ipaddr/mask> is the IP addressand mask
{a.b.c.d}.
•[mac_offset <value>] is a user-assignedMAC
address.This MAC address is in place of the
default MAC address.
Command Output
208967-B1-9
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
Figure 1-10 shows an example of the config vlan ip info command.
The Address Resolution Protocol (ARP) commands enable you to add and delete
static entries in the ARP table and to display the ARP table. The ARP table maps
MAC addresses to IP addresses. If you a dd an AR P entry for a VLAN, the VLAN
is associated with the MAC address you specify.When you display the A RP table,
all entries (static and dynamic) are displayed. B efore you can addan ARP entry to
a port or port-based VLAN, an IP address must already be assigned to the port or
VLAN and routing must already be enabled.
1-10208967-B
config ip arp Commands
The config ip arp commands configure ARP on the switch.
The commands take the following syntax and parameters:
config ip arp
followed by:
infoDisplays ARP characteristics.
add ports <value> ip
<value> mac <value>
[vlan <value>]
aging <minutes>Sets the length of time in seconds an entry
delete <ipaddr>Removes an entry from the ARP table.
IP Routing and ARP Commands
Adds a static entry to the ARP table.
•ports <value> are the port numbers,
shown as slot/por t.
•ip <value> is the IP address {a.b.c.d}.
•
mac <value>
address in the format
{0x00:0x00:0x00:0x00:0x00:0x00}.
•
vlan <value>
VLAN.
remains in the ARP table before timeout.
•<minutes> is a number between 1 and
32767.
•<ipaddr> is the IP address {a.b.c.d}.
is the 48-bit hardware MAC
is the name or number of a
208967-B1-11
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
Figure 1-12 shows a sample of the config ip arp info command.
Passport-8610# config ip arp info
Sub-Context:
Current Context:
aging : 360
delete : N/A
add :
ports - 1/30
ip - 10.10.40.142
mac - 00:e0:16:68:8c:00
vlan - 1
ports - 1/2
ip - 10.10.40.194
mac - 00:e0:16:7f:16:00
vlan - 1
Figure 1-12.
config ip arp info
show ip arp info Command
The show ip arp info command displays the ARP table.
The command uses the format:
show ip arp info [<ip address>] [-s <value>]
where:
[<ip address>] is the specific net IP address for the ta ble.
[-s <value>]
(a.b.c.d/x|a.b.c.d/x.x.x.x|default).
An example of the output from this command with no IP address or subnet
specified is shown in Figure 1-13
seconds.
161.69.100.255 ff:ff:ff:ff:ff:ff 21/1LOCAL2160
Total 4
Figure 1-13.
show ip arp info
Command Output
config ethernet <ports> ip arp Commands
These commands allow you to configure IP ARP on specific ports. The
commands require the parameter <ports> as the port or list of ports on which you
are running the command {slot/port[-slot/port][, ...]}.
config ethernet <ports> ip Comm ands
The
config ethernet <ports> ip com m ands take the following syntax a nd
parameters:
config ethernet <ports> ip
followed by:
arp-response disableDisables ARP responses on the port.
arp-response enableEnables ARP responses on the port .
arp-response infoDisplays ARP response status on the port.
proxy disableDisables proxy ARP on the port.
proxy enableEnables proxy ARP on the port, allowing a router
to answer a local ARP request for a remote
destination.
proxy infoDisplays ARP proxy status on the port.
208967-B1-13
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
Figure 1-14 shows a sample of the config ethernet <ports> ip
arp-response info
Passport-8610# config ethernet 9/2 ip arp-response info
Sub-Context:
Current Context:
command.
Port 9/2 :
Figure 1-14.
arp-response : enable
config ethernet ip arp-response info
Command Output
show ports info arp Command
The
show ports info arp command displays AR P information a bout the
specified port or for all ports.
The command uses the syntax:
This chapter describes the Run-Time CLI commands that are used to configure
DHCP and UDP functions in the Passport 8000 Series switch. The chapter
includes sections about the following command groups used to configure routing
characteristics:
•DHCP Relay Commands
•UDP Commands
DHCP Relay Commands
Dynamic Host Configuration Protocol (DHCP), an extension of the Bootstrap
Protocol ( BootP), is used to dynamically provide host configuration information
to the workstations. Use the port DHCP relay c ommands to set DHCP relay
behavior on a port and the VLAN DHC P commands to set DHC P relay behavior
on a VLAN.
Chapter 2
DHCP and UDP Commands
DHCP relay m ust be enabled on the path for port or VLAN configuration to take
effect.
208967-B2-1
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config ip dhcp-relay Commands
The config ip dhcp-relay commands allow you to view and configure DHCP
parameters globally.
The
config ip dhcp-relay commands use the f ollowing syntax and parameters:
config ip dhcp-relay
followed by:
infoDisplays current DHCP global configuration on the
switch.
create-fwd-path agent
<value> server <value>
[mode <value>] [state
<value>]
enable-fwd-path agent
<value> server <value>
delete-fwd-path agent
<value> server <value>
Configures the forwarding path f rom the client to the
server.
•agent <value> is t he IP address configured
on an interface (a locally configured IP address).
•server <value> is the IP address of the
DHCP server in the network. If this IP address
correspondsto the locally configured IP network,
the DHCP packet is broadcast out the interface.
•[mode <value>] is to forward BootP
messages only, DHCP messages only,or both
{bootp|dhcp|bootp_dhcp}.
•[state <value>] enablesor disables the
forwarding path.
Enables DHCP relaying on the path from the IP
address to the server.
•agent <value> is t he IP address configured
on an interface (a locally configured IP address).
•server <value> is the IP address of the
DHCP server in the network. If this IP address
correspondsto the locally configured IP network,
the DHCP packet is broadcast out the interface.
Deletes the f orwarding path from the client to the
server.
•agent <value> is t he IP address configured
on an interface (a locally configured IP address).
•server <value> is the IP address of the
DHCP server in the network.
2-2208967-B
config ip dhcp-relay
followed by:
DHCP and UDP Commands
disable-fwd-path agent
<value> server <value>
mode <mode> agent <value>
server <value>
show ip dhcp-relay Commands
show ip dhcp-relay fwd-path Command
The
show ip dhcp-relay fwd-path command displays DHCP routing
information, including interface, server, enabled or disabled, and mode (forward
BootP messages only, DHCP messages only, or both).
show ip dhcp-relay c ounters Command
Disables DHCP relay ing on the path from the IP
address to the server. This is the default.
•agent <value> is t he IP address configured
on an interface (a locally configured IP address).
•server <value> is the IP address of the
DHCP server in the network.
Modifies DHCP mode to f orward BootP messages
only, DHCP messages only,or both. The default is
both.
•<mode> is {bootp|dhcp|bootp_dhcp}.
•agent <value> is t he IP address configured
on an interface (a locally configured IP address).
•server <value> is the IP address of the
DHCP server in the network.
The
show ip dhcp-relay counters command displays DHCP counter
information, including the number of requests and the number of replies for each
interface.
shows an example of show ip dhcp-relay counters command.
Dchp
Command Output
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config ethernet <ports> ip dhcp-relay Commands
The config ethernet ip dhcp-relay commands allow you to view and
configure DHCP parameters on the specified port(s).The port commands require
the parameter <ports> as the port or list of ports on which you are running the
command {slot/port[-slot/port][, ...]}.
The commands use the following syntax and parameters:
config ethernet <ports> ip dhcp-relay
followed by:
infoDisplays current DHCP configuration on the port.
broadcast
<enable|disable>
disableDisables DHCP relaying on the port.This is the default
enableEnables DHCP relaying on the port.
max-hop <max-hop>Sets the maximum numberof hops beforea BootP/DHCP
min-sec <min-sec>Sets the minimum seconds c ount set for DHCP. If the
mode <mode>Sets DHCP mode to forward BootP messages only,
Sets whether or not the ser ver reply is sent as a
broadcast or unicast back to the end station.
state.
packet is discarded (1 to 16). The default is 4.
“secs” field in the BootP/DHCP packet header is greater
than this value, the switch relays or forwards the packet;
otherwise, the packet is dropped (0 to 65535). The
default is 0 seconds.
DHCP messages only, or both. The default is both.
Figure 2-2
shows a sample of the config ethernet ip dhcp-relay info
command.
Passport-8610# config ethernet 9/2 ip dhcp-relay info
Sub-Context:
Current Context:
Port 9/2 :
Figure 2-2.
2-4208967-B
dhcp-relay : enable
broadcast : disable
max-hop : 4
min-sec : 0
mode : both
config ethernet ip dh cp-rel ay info
Command Output
DHCP and UDP Commands
show ports dhcp-relay Commands
These commands display information about DHCP on the port.
show ports info dhcp-relay Command
The
show ports info dhcp-relay command displays the DHC P parametersfor
a specified port or all ports.
The command uses the format:
The config vlan <vid> ip dhcp-relay commands allow you to configure
DHCP routing on the VLAN. The c ommands require a VLAN ID <vid> from 1
to 4094.
The commands use the following syntax and parameters:
config vlan <vid> ip dhcp-relay
followed by:
infoDisplays DHCP characteristics on the VLAN.
broadcast <enable|disable>Sets whether or not the server reply is sent as a
broadcast back to the end station.
disableDisables DHCP relay ing on the VLAN. This is the
default state.
enableEnables DHCP relaying on the VLAN.
max-hop <max-hop>Sets t he maximum number of hops before the
BootP/DHCP packet is dropped (1 to 16).
min-sec <min-sec>Sets t he minimum seconds count for DHCP. If the
secs field in the packet header is greater than this
value, the switch forwards the packet; otherwise it
is dr opped (0 to 65535).
mode <mode>Sets DHCP mode to forward BootP m essages
only, DHCP messages only, or both. The default is
both.
===========
Port Stats Dhcp
=============
-------------
Command (Partial Output)
2-6208967-B
DHCP and UDP Commands
Figure 2-5 shows a sample of the config vlan ip dhcp-relay info command.
Passport-8610# config vlan 1 ip dhcp-relay info
Sub-Context:
Current Context:
dhcp-relay : disable
broadcast : disable
max-hop : 4
min-sec : 0
mode : both
Figure 2-5.
config vl an ip dhcp-relay info
Command Output
show vlan info dhcp-relay Command
The
show vlan info dhcp-relay command displays the DHCP parameters for
all VLANs or for the specified VLAN. The interface index (IF Index) is assigned
as the VLAN is created. Numbers 1 to 256 are ports; num bers above 257 are
VLANs.
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
UDP Commands
Some network applications, such as the NetBIOS name service, rely on a User
Data Protocol (UDP) broadcast to request a service or to locate a service. By
default, broadcasts a re not forwarded by a router. UDP broadcast forwarding is a
generalized mechanism for the router to selectively forward UDP broadcasts.
The basic procedure f or setting up UDP broadcast forwarding is:
•Use the
config ip udpfwd protocol commands to enter protocols in a
protocol table.
•Use the
config ip udpfwd portfwdlist commands to create and name the
port forward list and assign protocols and servers to the port forward list.
•Use the
config ip interface commands to apply the port forward list to the
appropriate interfaces.
The
config ip udpfwd info command displays the current UDP forwarding
configuration.
config ip udpfwd protocol Commands
The UDP forwarding protocol commands require the <udpport> parameter as the
UDP protocol port number {1. .65535}.
The commands use the following syntax:
config ip udpfwd protocol <udpport>
followed by:
create <protoname>Creates a new UDP pr otocol.
•<protoname> is the UDP protocol name {string}.
deleteDeletes a UDP port protocol.
infoDisplays created and/or deleted UDP protocols.
2-8208967-B
config ip udpfwd portfwdlist Commands
The UDP forwarding port forward list c ommands require the <fwdlistid>
parameter as the port f orwarding list num ber {1..1000}.
The commands use the following syntax and parameters:
config ip udpfwd portfwdlist <fwdlistid>
followed by:
infoDisplaysthe current configuration for the port
forward list ID.
add-portfwd <udpport>
<ipaddr>
createCreates a UDP port forwarding list.
deleteDeletesa port f orward list ID.
name <name>Assigns a name to the UDP port f orwarding list.
remove-portfwd <udpport>
<ipaddr>
Adds a UDP protocol port to the specified port
forwarding list.
•<udpport> is a UDP protocolport
•<ipaddr> is an IP address.
•<name> is {string}.
Removes a protocol port f orwarding entry and IP
address from the list.
•<udpport> is a UDP protocolport
•<ipaddr> is an IP address.
DHCP and UDP Commands
{1..65535}.
{1..65535}.
config ip udpfwd interface Commands
The UDP forwarding interface commands require an IP address <ipaddr> and
use the following syntax and pa rameters:
config ip udpfwd interface <ipaddr>
followed by:
infoDisplays the current configuration of the UDP
interface.
create <fwdlistid>Assigns a forwarding list ID {1..1000} to an interface
IP address.
deleteRemoves the forwarding list from the IP address.
208967-B2-9
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config ip udpfwd interface <ipaddr>
followed by:
maxttl <maxttl>Sets maximum time-to-live for the UDP broadcast
forwarded by the interface.
udpportfwdlist
<fwdlistid>
Changes the port forwarding list {1..1000}.
show ip udpfwd Commands
These commands display information about the UDP forwarding characteristics
of the switch.
show ip udpfwd interface info Command
The
show ip udpfwd interface info command displays information about the
UDP interface for all IP addresses or a specified IP address.
The command uses the syntax:
--------------------------------------------------------------------------1NewPIOne
37Time Service
49TACACS Service
53DNS
69TFTP
137NetBIOS NameSrv
138NetBIOS DataSrv
1024UserDefinedLab Prot
Figure 2-9.
show ip udpfwd protocol info
Udp Protocol Tbl
Command Output
2-12208967-B
This chapter describes the Run-Time CLI commands that are used to configure
RIP and OSPF layer 3 (routing) functions in the Passport 8000 Series switch. The
chapter includes sections about the following command groups used to configure
routing characteristics:
•RIP Commands
•OSPF Commands
RIP Commands
This section describes the commands used to configure Routing Information
Protocol (RIP) on the Passport 8000 Series switch. You configure RIP on a port or
on a VLAN, but you m ust enable it globally first.
Chapter 3
RIP and OSPF Commands
config ip rip Commands
The config ip rip commands allow you to enable or disable RIP globally on
the switch.
208967-B3-1
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
These commands are as follows:
config ip rip
followed by:
infoDisplays current RIP configuration settings.
disableGlobally disables R IP on the switch.
domain <ipaddr> <value>Changes the RIP interface configuration domain, the
value inserted into the routing domain field of all RIP
packets sent on this interface.
•<ipaddr> is the interface IP address {a.b.c.d}.
•<value> is the domain value {0 to 39321}.
enableGlobally enables RIP on the switch.
holddown <seconds>Sets the RIP holddown timer value, the length of time
(in s econds) that RIP will continue to advertise a
network after determining that it is unreachable.
•<seconds> is0to360,withadefaultof120.
updatetime <seconds>Sets RIP update timer, the time interval between RIP
updates.
•<seconds> is0to360,withadefaultof
30 seconds.
receive <ipaddr> mode
<value>
send <ipaddr> mode
<value>
Changes the RIPinterface receive configuration.
•<ipaddr> is the IP address of the interface.
•mode <value> indicates what RIP versions to
accept:
•rip1 =RIPversion1.
•rip2 =RIPversion2.
•rip1orrip2= receive in either RIP 1 or 2.
Changes the RIPinterface send configuration.
•<ipaddr> is the IP address of the interface.
•mode <value> indicates what RIP versions to
send:
•notsend = do not send
•rip1 =RIPversion1.
•rip2 =RIPversion2.
•rip1Compatible= receive in either RIP 1 or
2.
3-2208967-B
RIP and OSPF Commands
Figure 3-1 shows a sample of the config ip rip info command.
Passport-8610# config ip rip info
Sub-Context:
Current Context:
enable : false
holddown : 120
updatetime : 30
domain :
- 10.10.40.34
receive :
send :
-0
- 10.10.40.34
mode - rip1OrRip2
- 10.10.40.34
mode - rip1Compatible
Figure 3-1.
show ip rip Commands
These commands display information about the R IP configuration on the switch.
show ip rip info Com mand
The
show ip rip info command displays the RIP global status on the switch.
The config ethernet <ports> ip rip commands configure RIP on specified
ports. RIP must also be enabled globally for the commands to take e ffect. These
commands use the
entering the command in the form portlist {slot/port[-slot/port][, ...]}.
The port-based RIP commands have the following syntax and parameters:
config ethernet <ports> ip rip
followed by:
infoDisplays RIP characteristics on the port.
advertise-when-down
<enable|disable>
<ports> parameter to specify the ports for which you are
If enabled, the network on this interface is
advertised as up, even if the port is down.
The default is disabled.
Note: When you configure a port without any
link and enable advertise-when-down,it will
not advertise your route until the port is
active. Then t he route will be advertised
even when the link is down. To disable
advertising based on link status, this
parametershould be disabled.
3-4208967-B
RIP and OSPF Commands
config ethernet <ports> ip rip
followed by:
auto-aggr <enable|disable>Enables or disables automatic route
aggregation on the port. When enabled, the
router switch automatically aggregates
routes to their natural mask when they are
advertisedon an interface in a different class
network. The default is disable.
default-listen <enable|disable> Enables or disables RIP listen to accept the
default route via RIP.
default-supply <enable|disable> Enables or disables an adver tisement of a
default route only if one exists in the routing
table.
disableDisables RIP on the port. This setting is the
default.
enableEnables RIP on the por t.
listen <enable|disable>Configures whether or not the switch will
listen for a default route without l istening for
all routes.
manualtriggerAllows you to manually issue a RIP update.
poison <enable|disable>Sets whether or not RIP routes on the por t
learned from a neighbor are advertised back
to the neighbor.If disabled, split horizon is
invoked and IP routes learned from an
immediate neighbor are not advertised back
to the neighbor.If enabled, the RIP updates
sent to a neighbor from which a route is
learned are “poisoned” with a metric of 16.
Therefore, the receiver neighbor will ignore
this route because the metric 16 indicates
infinitehops in the network.
supply <enable|disable>Enablesor disables the switch to supply RIP
routes with including the default routes.
trigger <enable|disable>Enables or disables automatic triggered
updates for RIP.
208967-B3-5
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
Figure 3-4 shows a sample of the config ethernet ip rip info command.
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config vlan <vid> ip rip Commands
The config vlan <vid> ip rip commands allow you to set RIP parameters for
a VLAN, where <vid> is the VLAN ID (1 to 4094).
These commands have the following syntax and parameters:
config vlan <vid> ip rip
followed by:
infoDisplays RIP characteristics on the VLAN.
advertise-when-down
<enable|disable>
auto-aggr <enable|disable>Enables or disables automatic route aggregation
default-listen
<enable|disable>
default-supply
<enable|disable>
disableDisables RIP on the VLAN. This i s the default
enableEnables RIP on the VLAN.
listen <enable|disable>Configures whether or not the switch will listen for
manualtriggerAllows you to manually issue RIP updates.
If enabled,the network on this interface will be
advertised as up, even if the port is down. The
default is disabled.
Note: When you configure a port without any link
and enable advertise-when-down, it wi ll not
advertise your route until the port is active. Then
the route is advertised even when the link is down.
To disable advertising based on link status, this
parametershould be disabled.
on the VLAN. When enabled, the router switch
automatically aggregates routes to their natural
mask when they are advertised on an interface in
a different class network. The default i s disable.
AllowstheusertoenableordisablesettingRIP
listen to accept the default route via RIP.
Allows the user to send a default route only if one
existsin the routing table.
setting.
RIP routes.
3-8208967-B
RIP and OSPF Commands
config vlan <vid> ip rip
followed by:
poison <enable|disable>Sets whether or not RIP routes on the VLAN
learned from a neighbor are advertised back to the
neighbor. If disabl ed, split horizon is invoked and
IP routes learned from an immediate neighbor are
not advertised back to the neighbor. If enabled, the
RIP updates sent t o a neighbor from which a route
is l earned are “poisoned” wi th a metricof 16.
Therefore,the receiver neighbor ignores this route
becausethe metric 16 indicatesinfinitehops in the
network.
supply <enable|disable>Enables or disables the switch to supply RIP
updates.
trigger <enable|disable>Enables or disables automatic triggered updates
for RIP.
Refer to Table 3-1 on page 3-6 for actions resulting from RIP supply and listen
settings.
Figure 3-6
Passport-8610# config vlan 1 ip rip info
Sub-Context:
Current Context:
Figure 3-6.
208967-B3-9
shows a sample of the config vlan ip rip info command.
Routers use the Open Shortest Path First (OSPF) protocol to exchange network
topology information among themselves, providing each router with a map of the
network.
config ip ospf Commands
The following command groups are used to configure OSPF on the switch:
config ip ospf commands (this page)
•
config ip ospf host-route commands (page 3-12)
•
config ip ospf interface commands (page 3-13)
•
config ip ospf area commands(page 3-15)
•
config ip ospf area range commands (page 3-16)
•
3-10208967-B
RIP and OSPF Commands
•config ip ospf area virtual-interface commands (page 3-17)
config ip ospf Commands
Use the
config ip ospf commands to configure global O SPF parameters for
the Passport 8000 S eries switch as follows:
config ip ospf
followed by:
infoDisplaysthe current OSPF configuration on the
disableGlobally disables OSPF on the switch.
enableGlobally enables OSPF on the switch.
holddown <seconds>Sets the OSPF holddown timer value in seconds.
router-id <ipaddr>Sets the OSPF router ID IP address.
trap <enable|disable>Enables or disables issuing traps relating to OSPF.
Globally enables or disables the OSPF
administrative status. The default i s disable.
Enables or disables the OSPF Autonomous System
boundary router.
Enables or disables automatic creation of OSPF
virtual links when required.The default i s disable.
Sets the OSPF default metrics. The range is 1 to
65535.
•[ethernet <value>] is for the 10 Mb/s
Ethernet (default is 100).
•[fast-ethernet <value>] is the 100 Mb/s
(fast) Ethernet (default is 10).
•[gig-ethernet <value>] is the Gigabit (gig)
Ethernet (default is 1).
•<seconds> is the rangeof secondsfrom 3 to 60;
default is 10.
•<ipaddr> is the IP address.
208967-B3-11
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
Figure 3-8 shows a sample of the config ip ospf info command.
Passport-8610/config# ip ospf info
Sub-Context: bootconfig cli diag ethernet ip ipx log mlt rmon stg sys vlan
web-server qos
Current Context:
admin-state : disable
as-boundary-router : disable
default-metric :
ethernet - 100
fast-ethernet - 10
gig-ethernet - 1
auto-vlink : disable
holddown : 10
trap : disable
router_id : 45.57.240.0
enable : false
Figure 3-8.
config ip ospf info
Command Output
config ip ospf host-route Commands
Use the
config ip ospf host-route commands to configure OSPF host route
parameters for the Passport 8000 Series switch.
The syntax includes the IP a ddress
<ipaddr> of the host router and the following
parameters:
config ip ospf host-route <ipaddr>
followed by:
infoDisplaysthe current OSFP host-route configuration
on the switch.
createCreatesan OSPF host route for the IP address.
deleteDeletesan OSPF host route for the IP address.
metric <metric>Sets the metric (cost) for the host route.
•<metric> is between 1 and 65535.
3-12208967-B
config ip ospf interface Commands
RIP and OSPF Commands
These commands configure an OSPF interface where the interface
<ipaddr> is
represented by an IP address {a.b.c.d}.
The commands use the following syntax and parameters:
config ip ospf interface <ipaddr>
followed by:
infoDisplaysOSPF characteristics for the interface.
dead-interval <seconds>Sets the OSPF dead interval fo r the interface.
delete-message-digest-key
<md5-key-id>
Adds an md5 key to the interface. At most, two md5
keys can be configured to an interface. Multiple md5
key configurations are used for md5 transitions
without bri nging down an interface.
Sets the state (enabled or disabled) of the OSPF
interface.
•<ipaddr> is a dotted-decimalnotationtospecify
theareaname.
Note:The area name is not related to an I P address.
You can use any value for the OSPF area name
(for example,1.1.1.1 or 200.200.200.200).
Sets the authentication key for the OSPF interface.
•<authentication-key> is a string that
specifiesthe key in up to eight characters.
Sets the OSPF authentication type for the interface.
•<auth-type> is none, simple password, or
MD5 authentication.If simple, all OSPF updates
receivedby the interface must contain the
authentication key specified by the
authentication-key
contain the md5 key.
•<seconds> is the number of seconds the
switch’s OSPF neighbors should wait before
assuming that this OSPF router is down. The
range is from 1 to 2147483647. This value must
be at least four times t he hellointerval value.
The default is 40.
Deletesthe specified md5 keyID from the configured
md5 keys.
command. If MD5, they must
interface
208967-B3-13
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config ip ospf interface <ipaddr>
followed by:
hello-interval <seconds>Sets the OSPF hello interval for the interface.
•<seconds> is the number of seconds between
hello packets sent on this interface. The range is
1 to 65535. The default is 10.
Note: When you change the Hello interval values,
you m ust save the configuration file and reboot the
switch for the values to be restored and checked for
consistency.
metric <metric>Sets the OSPF metric for the interface. The switch
advertises the metric in router link advertisements.
•<metric> is the range 0 to 65535.
poll-interval <seconds>Sets the polling interval for the OSPF interface in
seconds.
•<seconds> is between 1 and 2147483647.
priority <priority>Sets the OSPF priority for the interface during the
election process for the designated router. The
interface with the highest priority number is the
designated router. The interface with the
second-highestpriority becomes the backup
designated router. If the priority is 0, the interface
cannot become either the designated router or a
backup. The priority is used only during election of
the designated router and backup designatedrouter.
The range is 0 to 255. The default is 1.
retransmit-interval
<seconds>
transit-delay <seconds>Sets the transit delay time for the OSPF interface,
Sets the retransmit interval for the OSPF interface,
the number of seconds between link-state
advertisementretransmissions.
•<seconds> is between 1 and 3600.
the estimated time in seconds it takes to transmit a
link-state update packet over the interface.
•<seconds> is between 1 and 3600.
3-14208967-B
RIP and OSPF Commands
Figure 3-9 shows a sample of the config ip ospf interface info command.
Passport-8610/config/ip/ospf/interface/130.1.1.1# info
Sub-Context:
Current Context:
add-message-digest-key :
admin-status : enabled
authentication-key : password
authentication-type : simple
delete-message-digest-key : N/A
hello-interval : 10
dead-interval : 40
poll-interval : 120
retransmit-interval : 5
transit-delay : 1
area : 1.1.1.1
metric : 200
priority : 1
Figure 3-9.
config i p ospf interface info
Command Output
config ip ospf area Commands
The
config ip ospf area commands allow you to control the OSPF area
parameters, where <ipaddr> is the address of an OSPF area. Use dotted-decimal
notation to specify the area name. You can use any value for the OSPF area name
(for example, 1.1.1.1 or 200.200.200.200).
The commands use the following syntax and parameters:
config ip ospf area <ipaddr>
followed by:
infoDisplaysOSPF area characteristics.
createCreates an OSPF area.
deleteDeletes an OSPF area.
import-summaries <true|false> Sets the area’s support for importing summary
advertisements into a stub area. This field
should be used only if the area stub is set to
true.
nssa <true|false>Set s a not so stubby area (true or false).
An NSSA prevents flooding of normal route
advertisements into the area by replacing them
with a default route.
208967-B3-15
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config ip ospf area <ipaddr>
followed by:
stub <true|false>Set s the import external option for this area to
be stub or not {true|false}. A stub area has only
one exit point (router interface) out of the area.
stub-metric <stub-metric>Stub default metric for this stub area, which i s
the cost from 0 to 16777215. This is the metric
value applied at the indicated type of service.
Figure 3-10 shows the config ip ospf area info command.
Passport-8610# config ip ospf area 1.0.0.0 info
Sub-Context:
Current Context:
create :
delete : N/A
import-summaries : true
nssa : false
stub : false
stub-metric : 1
Figure 3-10.
config ip ospf area info
Command Output
config ip ospf area range Commands
The
config ip ospf area range commands allow you to control the OSPF area
range parameters, where <ipaddr> is the identification of an OSPF area and
<ipaddr/mask> is the IP address and subnet mask of the range.
The commands use the following syntax and parameters:
config ip ospf area <ipaddr> range <ipaddr/mask>
followed by:
create advertise-mode
<value> lsa-type <value>
deleteDeletes an OSPF area range.
infoDisplays information about the OSPF area range
3-16208967-B
Creates an OSPF area range with the specified IP
address and advertising mode.
settings.
RIP and OSPF Commands
config ip ospf area virtual-interface Commands
The
config ip ospf area virtual-interface c ommands allow you to
configure an OSPF area virtual interface. All of the commands have the following
two required parameters:
<ipaddr> is the identification of an OSPF area in dotted-decimal notation.
•
You ca n use any value for the OSPF area name (for example, 1.1.1.1 or
200.200.200.200).
virtual-interface <nbr> is the OSPF router ID of the neighbor.
•
The commands use the following syntax and parameters
config ip ospf area <ipaddr> virtual-interface <nbr>
followed by:
infoDisplays current OSPF area virtual interface
createCreates a virtual interface area identifier.
dead-interval <seconds>Sets the dead interval for the virtual interface, the
deleteDeletes the virtual interface.
Adds an md5 key to the interface. At most, two
md5 keys can be configured to an interface.
Multiple md5 key configurationsare used for md5
transitions without bringing down an interface.
Sets t he authentication key.
•<authentication-key> is a string that
specifiesthe key in up to eight characters.
Sets t he OSPF authentication type for the OSPF
area.
•<auth-type> is none,simple password, or
MD5 authentication. If simple, all OSPF
updates receivedby the interface must contain
the authentication key specified by the
authentication-key
must contain the md5 key.
number of seconds that a router’s hello packets
have not been seen before its neighbors declare
the r outer down.
•<seconds> is between 1 and 214783647.
This value must be at least four times the hello
interval value. The default is 60.
:
area
command. If MD5, they
208967-B3-17
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config ip ospf area <ipaddr> virtual-interface <nbr>
followed by:
delete-message-digest-key
<md5-key-id>
hello-interval <seconds>Sets t he hello interval on the virtual interface
retransmit-interval
<seconds>
transit-delay <seconds>Sets t he transmit delay for the virtual interface, the
Deletes the specified md5 key ID fromthe
configuredmd5 keys.
for the length of time (in seconds) between the
hello packets that the routersends on the
interface.
•<seconds> is between 1 and 65535.
The default is 10.
Sets the retransmit interval for the virtual interface,
the number of seconds between link-state
advertisementretransmissions.
•<seconds> is between 1 and 3600
estimatednumber of seconds it takes to transmit a
link-state update over the interface.
•<seconds> is between 1 and 3600
.
.
Note: Both sides of the OSPF connection m ust use the same authentication
type and key.
3-18208967-B
RIP and OSPF Commands
show ip ospf Commands
These commands display the switch OSPF parameters.
show ip ospf area Com m and
The
show ip ospf area command displays the OSPF area parameters.
show ip ospf lsdb command displays the OSPF link state database (lsdb)
table.
The command ha s the following format:
show ip ospf lsdb [area <value>] [lsatype <value>] [lsid <value>]
[adv_rtr <value>] [detail]
You ca n optionally specify an area string, link state advertisement type (0 to 5),
link state ID, or advertising router. Adding detail to the command provides more
details.
The port-based OSPF commands set OSPF parameters for a specific port. The
parameter <ports> specifies the ports for which you are entering the comm and in
the form portlist {slot/port[-slot/port][, ...]}.
The
config ethernet <ports> ip ospf commands use the following syntax
and parameters:
config ethernet <ports> ip ospf
followed by:
infoDisplays OSPF characteristics on the por t.
advertise-when-down
<enable|disable>
area <ipaddr>Sets the OSPF identification number for the
authentication-key <string>Sets the authentication key for the port
authentication-type <auth-type> Sets the OSPF authentication type for the
disableDisables OSPF on the por t.
If enabled, the network on this interface is
advertised as up, even if the port is down.
The default is disabled.
Note: When you configure a port without any
link and enable advertise-when-down,the
routeis not advertised until the port is active.
Then the route is advertised evenwhen the
link is down. To disable advertisingbased on
link status, this parameter should be
disabled.
area, typically formatted as an IP address.
(OSPF interface).
•<string> specifiesthekeyasasimple
port: none, simple password, or MD5
authentication. If simple, all OSPF updates
received by the interface must contain the
authentication key specified by the
authentication-key
must contain the md5 key.
RIP and OSPF Commands
password with eight characters.
area
command. If MD5, they
208967-B3-27
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config ethernet <ports> ip ospf
followed by:
dead-interval <seconds>Sets the router OSPF dead interval—the
number of seconds the switch’s OSPF
neighborsshould wait before assuming that
the OSPF router is down.
•<seconds> is a value from 1 to
2147836437;the default is 40. The value
must be at leastfour times the hello
interval.
enableEnables OSPF on the port.
hello-interval <seconds>SetstheOSPFhellointerval,whichisthe
number of seconds between hello packets
sent on this interface.
•<seconds> is a value from 1 to 65535.
The default is 10.
metric <cost>Sets the OSPF metric associated with this
interface and advertised in router link
advertisements.
•<cost> is i n the range from 0 to 65535;
the default is 0.
priority <integer>Sets the OSPF priority for the port during the
election process for the designated router.
The port with the highest priority number is
the best candidate for the designated r outer.
If you set the pr iority to 0, the port cannot
become either the designated r outer or a
backup designated router.
•<integer> is between 0 and 255.
The default i s 1.
Note: Both sides of the OSPF connection m ust use the same authentication
type and key.
3-28208967-B
RIP and OSPF Commands
Figure 3-22 shows a sample of the config ethernet ip ospf info command.
Passport-8610# config ethernet 9/2 ip ospf info
Sub-Context:
Current Context:
Port 9/2 :
advertise-when-down : disable
ospf : enable
hello-interval : 10
dead-interval : 40
priority : 1
metric : 0
authentication-type : none
authentication-key :
area : 1.0.0.0
Figure 3-22.
config ethernet ip osp f info
Command Output
show ports ospf Commands
These commands display OSPF parameters and statistics for a port or all ports.
show ports error ospf Command
The
show ports error ospf command displays extended information about
OSPF errors for the specified port or for all ports.
The command uses the syntax:
show ports stats ospf extended command displays extended OSPF
information a bout the specified port or for all ports.
The command uses the syntax:
show ports stats interface extended [<ports>]
config vlan <vid> ip ospf Commands
The config vlan <vid> ip ospf commands set OSPF parameters for the
specified VLAN (
The commands use the following syntax and parameters:
config vlan <vid> ip ospf
followed by:
infoDisplays OSPF characteristics on theVLAN.
advertise-when-down
<enable|disable>
area <ipaddr>Sets the OSPF interface area ID for the VLAN.
<vid> is 1 to 4094).
If enabled,the network on this interface is advertised
as up, even if no ports in the VLAN are active. The
default is disabled. Note: When you create a VLAN
with no active ports and enable advertise-when-down,
the route is not advertised until a port is active. Then
the route is advertised even when the link is down. To
disableadvertising based on link status, disable this
parameter.
208967-B3-31
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config vlan <vid> ip ospf
followed by:
authentication-key
<string>
authentication-type
<auth-type>
disableDisables OSPF on the VLAN.
dead-interval <seconds>Sets the OSPF dead interval f or the VLAN, the number
enableEnables OSPF on the VLAN.
hello-interval <seconds> Sets the OSPF hello interval for the VLAN, the number
metric <cost>Sets the OSPF metric for the VLAN. The switch
priority <integer>Sets the OSPF priority for the VLAN during the election
Sets the authorization key for the VLAN.
•<string> is key of a string with up to eight
characters.
Sets t he OSPF authentication type for the VLAN.
•<auth-type> is none,simple password, or MD5
authentication. If simple, all OSPF updates
receivedby the VLAN must contain the
authentication key specified by the
authentication-key
contain the md5 key.
of seconds the switch’sOSPF neighbors s hould wait
before assuming that this OSPF router is down.
•<seconds> is the range from 1 to 2147483647.
This value must be at least four times the hello
interval value. The default is 40.
of seconds between hello packets sent on this VLAN.
•<seconds> is the range 1 to 65535. The default is
10.
advertises the metric in router link advertisements.
•<seconds> is the range 0 to 65535. The default is
0.
process for the designated router. The VLAN with the
highest priority number is the best candidate for the
designatedrouter.If the priority is 0, the VLAN cannot
become either the designated router or a backup. The
priority is used only during election of the designated
router and backup designated router.
•<integer> is the range 0 to 255. The default is 1.
command. If MD5, they must
area
Note: Both sides of the OSPF connection m ust use the same authentication
type and key.
3-32208967-B
RIP and OSPF Commands
Figure 3-26 shows the output of the config vlan ip ospf info command.
Passport-8610# config vlan 2 ip ospf info
Sub-Context: clear config dump monitor show test trace
Current Context:
advertise-when-down : disable
ospf : enable
hello-interval : 10
dead-interval : 40
priority : 1
authentication-type : none
authentication-key :
metric : 10
area : 0.0.0.0
Figure 3-26.
config vlan ip ospf info
Command Output
show vlan info ospf Com mand
The
show vlan info ospf command shows the OSPF parameters configured for
all VLANs or the specified VLAN.
The command uses the syntax:
This chapter describes the Run-Time CLI commands that are used to configure
VRRP layer 3 (r outing) f unctions in the Passport 8000 Series switch.
VRRP Commands
Virtual Router Redundancy Protocol (VRRP) is designed to eliminate an inherent
failure in the static default routed environment by introducing a logical IP address
shared between two or more routers connecting the subnet to the enterprise
network.
Chapter 4
VRRP Commands
config ethernet <ports> ip vrrp Commands
The config ethernet <ports> ip vrrp <vrid> commands allow you to set
VRRP on a port. These c ommands use the following parameters:
<ports> specify the ports for which you are entering the command in the
•
form portlist {slot/port[-slot/port][, ...]}.
<vrid> is the virtual r outer ID (1 to 255), a number that uniquely identifies a
•
virtual router on a given VRRP router. The virtual router acts as the default
router for one or m ore assigned addresses.
208967-B4-1
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
The commands use the following syntax and parameters:
config ethernet <ports> ip vrrp <vrid>
followed by:
infoDisplays the current port VRRP configuration.
address <ipaddr>Sets the IP address of the virtual router interface.
adver-int <seconds>Sets the advertising interval (in seconds), the t ime
interval between sending VRRP advertisement
messages. The value must be the same on all
participating routers. The range is 1 to 255, and
the default is 1.
critical-ip <ipaddr>Sets the criticalIP address for VRRP. This address
is an IP interface on the local router configured so
that a change in its state causes a role switch in
the vir t ual router (for example, from master to
backup in case the interface went down).
deleteDeletes VRRP from the port.
disableDisables VRRP on the port.
enableEnables VRRP on the port.
priority <prio>Sets the port VRRP priority (1 to 254) value to be
used by thisVRRP router. The default is 100. The
value 255 is assigned to the router that owns the
IP address associated with the vir t ual router.
Figure 4-1
Passport-8610# config ethernet 3/2 ip vrrp 1 info
Sub-Context:
Current Context:
Port 3/2 :
Figure 4-1.
shows the config ethernet ip vrrp info command.
address : 10.10.40.10
adver-int : 1
critical-ip : 10.10.40.15
delete : N/A
vrrp : enable
priority : 100
config ethernet ports ip vrrp info
Command Output
4-2208967-B
show port vrrp Commands
The following commands display port VRRP configuration and statistics.
show ports info vrrp main Command
The
show ports info vrrp main command displays basic VRRP configuration
information a bout the specified port or for all ports.
The command uses the syntax:
show ports info vrrp main [<ports>]
show ports info vrrp extended Command
The
show ports info vrrp extended command displays extended VRRP
configuration information about the specified port or for a ll ports.
The command uses the syntax:
show ports info vrrp extended [<ports>]
Figure 4-2 is a sample output, a nd in it, the Master_IPaddris the IP address of the
show ports stats vrrp command displays VRRP information about the
specified port or for all ports.
The command uses the syntax:
show ports stats vrrp [<ports>]
208967-B4-3
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
config vlan <vid> ip vrrp Commands
The config vlan <vid> ip vrrp <vrid> commands allow you to set VRRP
on a VLAN using these r equired pa rameters:
<vid> is the VLAN ID (1 to 4094).
•
<vrid> is the virtual router ID (1 to 255), a number that uniquely identifies a
•
virtual router on a given VRRP router. The virtual router acts as the default
router for one or m ore assigned addresses.
The VLAN VRRP commands use the following syntax and parameters:
config vlan <vid> ip vrrp <vrid>
followed by:
infoDisplays the current VLAN VRRP settings.
address <ipaddr>Sets the IP address of the virtual router interface.
adver-int <seconds>Sets the advertisinginterval(inseconds),thetime interval
between sending advertisement messages.
•<seconds> is the range 1 to 255, and the default is 1.
critical-ip <ipaddr>Sets the critical IP address for VRRP. This address is an
IP interface on the local router configuredso that a
change in its state causes a role switch in the virtual
router (for example, from master to backup in case the
interface went down).
deleteDeletes the VRRP from the VLAN.
disableDisables the VRRP on the VLAN.
enableEnables VRRP on the VLAN.
priority <prio>Sets the port VRRP priority value to be used bythis
VRRP router.
•<prio> is between 1 and 254. The default is 100.
The value 255 is assigned to the router that owns the
IP address associated with the virtual router.
Figure 4-3
shows a sample of the config vlan ip vrrp info command.
4-4208967-B
Passport-8610# config vlan 2 ip vrrp 1 info
Sub-Context:
Current Context:
address : 100.100.100.1
adver-int : 1
critical-ip : 0.0.0.0
delete : N/A
vrrp enable : disable
priority : 100
VRRP Com mands
Figure 4-3.
config vl an ip vrrp info
Command Output
show vlan vrrp Commands
Two show commands display VLAN VRRP information.
show vlan info vrrp main Command
The
show vlan info vrrp main command displays the basic VRRP
configuration for all VLANs on the switch or f or the specified VLAN.
The command uses the syntax:
These commands display information about VRRP as configured on the switch.
show ip vrrp info Comm and
The
show ip vrrp info command displays VRRP informationon the interface.
If a virtual router ID or an IP address is entered, the information will be displayed
only for that VRID or that interface; if not, all VRRP interfaces are listed.
show ip vrrp stats command displays counter information for the
specified VRRP or all VRRP interfaces. You must enter a VRID (virtual router
ID) and an IP address.
This command uses the format:
show ip vrrp stats <vrid> <ipaddr>
208967-B4-7
This chapter describes the Run-Time CLI commands that are used to configure
multicasting functions in the Passport 8000 Series switch. The chapter includes
sections about the f ollowing command groups used to configure routing
characteristics:
•IP Multicast Commands
•DVMRP Commands
•Layer 3 IGMP Commands
IP Multicast Comm ands
Chapter 5
IP Multicast Commands
The IP multicast commands allow you to configure and view IP multicasting
parameters on the switch.
config ip mroute Commands
The commands to configure multicast routing on the switch take the following
syntax and format, where <ipaddr> is the multicast route interface IP address:
config ip mroute
followed by:
infoDisplays information about the multicast route.
interface <ipaddr> infoDisplays information about the multicast route
interface.
mroute interface
<ipaddr> ttl <ttl>
208967-B5-1
Sets t he default time-to-livethreshold for the multicast
route interface.
Reference for the Pas s port 8000 S eries Command Line Interface Routing Operations
show ip mroute Commands
These commands display information about the m ulticast route(s) set up on the
switch.
show ip mroute interface Command
The
show ip mroute interface command displays information a bout the
Distance Vector M ulticast Routing Protocol (DVMRP) is used between routers to
exchangetheir multicast routing information. The protocol can beconfigured on a
VLAN, but it must be enabled globally in order to take effect.
config ip dvmrp Commands
These commands are the global DVMRP commands.
config ip dvmrp Commands
The
config ip dvmrp commands use the following syntax and parameters:
config ip dvmrp
followed by:
infoDisplays DVMRP settings on the switch.
disableGlobally disables DVMRP on the switch.
enableGlobally enables DVMRPon the switch.
Command (Partial Output)
5-4208967-B
Loading...
+ hidden pages
You need points to download manuals.
1 point = 1 manual.
You can buy points or you can get point for every manual you upload.