Catalyst 2960 Switch Command Reference, 12.2(25)SEE
Downloads: This chapterpdf (PDF - 731.0 KB) The complete bookPDF (PDF - 6.26 MB) | Feedback


Table Of Contents

A - B - C - D - E - F - G - H - I - J - L - M - N - P - Q - R - S - T - U - V -



aaa accounting dot1x command 2-1

aaa authentication dot1x command 2-3

aaa authorization network command 2-5

AAA methods 2-3

abort command 2-568

access control entries

See ACEs

access control lists

See ACLs

access groups

IP 2-109

MAC, displaying 2-359

access mode 2-521

access ports 2-521

ACEs 2-65, 2-239


deny 2-63

displaying 2-275

for non-IP protocols 2-160

IP 2-109

on Layer 2 interfaces 2-109

permit 2-237

address aliasing 2-228

aggregate-port learner 2-233

allowed VLANs 2-535

apply command 2-568

archive download-sw command 2-6

archive tar command 2-9

archive upload-sw command 2-12

audience xv

authentication failed VLAN

See dot1x auth-fail vlan

auth-fail max-attempts

See dot1x auth-fail max-attempts

auth-fail vlan

See dot1x auth-fail vlan

authorization state of controlled port 2-88

autonegotiation of duplex mode 2-96

auto qos voip command 2-14


BackboneFast, for STP 2-458

backup interfaces

configuring 2-516

displaying 2-328

boot (boot loader) command A-2

boot boothlpr command 2-18

boot config-file command 2-19

boot enable-break command 2-20

boot helper command 2-21

boot helper-config file command 2-22


Cisco IOS image 2-25

displaying environment variables 2-283

interrupting 2-20

manually 2-23

boot loader

accessing A-1


Cisco IOS image A-2

helper image 2-21

boot loader (continued)


creating A-15

displaying a list of A-7

removing A-19


available commands A-12

memory heap utilization A-14

version A-26

environment variables

described A-20

displaying settings A-20

location of A-21

setting A-20

unsetting A-24


copying A-5

deleting A-6

displaying a list of A-7

displaying the contents of A-4, A-16, A-23

renaming A-17

file system

formatting A-10

initializing flash A-9

running a consistency check A-11

loading helper images A-13

prompt A-1

resetting the system A-18

boot manual command 2-23

boot private-config-file command 2-24

boot system command 2-25

BPDU filtering, for spanning tree 2-459, 2-493

BPDU guard, for spanning tree 2-461, 2-493

broadcast storm control 2-511


candidate switches

See clusters

cat (boot loader) command A-4

caution, description xvi

channel-group command 2-26

channel-protocol command 2-29

Cisco Network Assistant

See Network Assistant xvi

Cisco SoftPhone

auto-QoS configuration 2-14

trusting packets sent from 2-220

class command 2-30

class-map command 2-32

class maps

creating 2-32

defining the match criteria 2-180

displaying 2-287

class of service

See CoS

clear dot1x command 2-34

clear eap command 2-35

clear ip dhcp snooping database command 2-36

clear lacp command 2-37

clear mac address-table command 2-38, 2-39

clear pagp command 2-40

clear port-security command 2-41

clear spanning-tree counters command 2-43

clear spanning-tree detected-protocols command 2-44

clear vmps statistics command 2-45

clear vtp counters command 2-46

cluster commander-address command 2-47

cluster discovery hop-count command 2-49

cluster enable command 2-50

cluster holdtime command 2-52

cluster member command 2-53

cluster outside-interface command 2-55

cluster requirements xvi

cluster run command 2-56


adding candidates 2-53

binding to HSRP group 2-57

clusters (continued)

building manually 2-53

communicating with

devices outside the cluster 2-55

members by using Telnet 2-255

debug messages, display B-5


candidate switches 2-290

debug messages B-5

member switches 2-292

status 2-288

hop-count limit for extended discovery 2-49

HSRP standby groups 2-57

redundancy 2-57

SNMP trap 2-449

cluster standby-group command 2-57

cluster timer command 2-59

command modes defined 1-1

command switch

See clusters

configuration, initial

See getting started guide and hardware installation guide

configuration files

password recovery disable considerations A-1

specifying the name 2-19, 2-24

configuring multiple interfaces 2-106

config-vlan mode

commands 2-556

description 1-4

entering 2-555

summary 1-2


command xv

for examples xvi

publication xv

text xv

copy (boot loader) command A-5


assigning default value to incoming packets 2-190

overriding the incoming value 2-190

CoS-to-DSCP map 2-194

CPU ASIC statistics, displaying 2-294

crashinfo files 2-101


debug auto qos command B-2

debug backup command B-4

debug cluster command B-5

debug dot1x command B-7

debug dtp command B-8

debug eap command B-9

debug etherchannel command B-10

debug interface command B-12

debug ip dhcp snooping command B-11

debug ip igmp filter command B-13

debug ip igmp max-groups command B-14

debug ip igmp snooping command B-15

debug lacp command B-16

debug mac-notification command B-17

debug matm command B-18

debug matm move update command B-19

debug monitor command B-20

debug mvrdbg command B-21

debug nvram command B-22

debug pagp command B-23

debug platform acl command B-24

debug platform backup interface command B-25

debug platform cpu-queues command B-26

debug platform dot1x command B-28

debug platform etherchannel command B-29

debug platform forw-tcam command B-30

debug platform ip dhcp command B-31

debug platform ip igmp snooping command B-32

debug platform led command B-34

debug platform matm command B-35

debug platform messaging application command B-36

debug platform phy command B-37

debug platform pm command B-39

debug platform port-asic command B-41

debug platform port-security command B-42

debug platform qos-acl-tcam command B-43

debug platform resource-manager command B-44

debug platform snmp command B-45

debug platform span command B-46

debug platform supervisor-asic command B-47

debug platform sw-bridge command B-48

debug platform tcam command B-49

debug platform udld command B-51

debug platform vlan command B-52

debug pm command B-53

debug port-security command B-55

debug qos-manager command B-56

debug spanning-tree backbonefast command B-59

debug spanning-tree bpdu command B-60

debug spanning-tree bpdu-opt command B-61

debug spanning-tree command B-57

debug spanning-tree mstp command B-62

debug spanning-tree switch command B-64

debug spanning-tree uplinkfast command B-66

debug sw-vlan command B-67

debug sw-vlan ifs command B-69

debug sw-vlan notification command B-70

debug sw-vlan vtp command B-72

debug udld command B-74

debug vqpc command B-76

define interface-range command 2-60

delete (boot loader) command A-6

delete command 2-62

deny command 2-63

detect mechanism, causes 2-97

device manager requirements xvi

DHCP snooping

accepting untrusted packets from edge switch 2-120


DHCP snooping (continued)

on a VLAN 2-125

option 82 2-118, 2-120

trust on an interface 2-123

error recovery timer 2-99

rate limiting 2-122

DHCP snooping binding database

binding file, configuring 2-116


adding 2-114

deleting 2-114

displaying 2-339

clearing database agent statistics 2-36

database agent, configuring 2-116


binding entries 2-339

database agent status 2-341

renewing 2-259

dir (boot loader) command A-7

directories, deleting 2-62

documentation, related xvi

document conventions xv

domain name, VTP 2-575, 2-579

dot1x auth-fail max-attempts 2-68

dot1x auth-fail vlan 2-70

dot1x command 2-66

dot1x control-direction command 2-72

dot1x critical global configuration command 2-74

dot1x critical interface configuration command 2-76

dot1x default command 2-78

dot1x guest-vlan command 2-79

dot1x host-mode command 2-81

dot1x initialize command 2-82

dot1x mac-auth-bypass command 2-83

dot1x max-reauth-req command 2-85

dot1x max-req command 2-86

dot1x pae command 2-87

dot1x port-control command 2-88

dot1x re-authenticate command 2-90

dot1x reauthentication command 2-91

dot1x timeout command 2-92

DSCP-to-CoS map 2-194

DSCP-to-DSCP-mutation map 2-194

DTP 2-522

DTP flap

error detection for 2-97

error recovery timer 2-99

DTP negotiation 2-523

dual-purpose uplink ports

displaying configurable options 2-330

displaying the active media 2-334

selecting the type 2-184

duplex command 2-95

dynamic-access ports

configuring 2-514

restrictions 2-515

dynamic auto VLAN membership mode 2-521

dynamic desirable VLAN membership mode 2-521

Dynamic Host Configuration Protocol (DHCP)

See DHCP snooping

Dynamic Trunking Protocol



EAP-request/identity frame

maximum number to send 2-86

response time before retransmitting 2-92

environment variables, displaying 2-283

errdisable detect cause command 2-97

errdisable recovery command 2-99

error conditions, displaying 2-319

error disable detection 2-97

error-disabled interfaces, displaying 2-328


assigning Ethernet interface to channel group 2-26

creating port-channel logical interface 2-104

debug EtherChannel/PAgP, display B-10

EtherChannel (continued)

debug platform-specific events, display B-29

displaying 2-323

interface information, displaying 2-328


clearing channel-group information 2-37

debug messages, display B-16

displaying 2-353

modes 2-26

port priority for hot-standby ports 2-149

restricting a protocol 2-29

system priority 2-151

load-distribution methods 2-246


aggregate-port learner 2-233

clearing channel-group information 2-40

debug messages, display B-23

displaying 2-403

error detection for 2-97

error recovery timer 2-99

learn method 2-233

modes 2-26

physical-port learner 2-233

priority of interface for transmitted traffic 2-235

Ethernet controller, internal register display 2-296

Ethernet statistics, collecting 2-261

examples, conventions for xvi

exception crashinfo command 2-101

exit command 2-568

extended discovery of candidate switches 2-49

extended-range VLANs

and allowed VLAN list 2-535

and pruning-eligible list 2-535

configuring 2-555

extended system ID for STP 2-467


fan information, displaying 2-316

file name, VTP 2-575

files, deleting 2-62

flash_init (boot loader) command A-9

Flex Links

configuring 2-516

displaying 2-328

flowcontrol command 2-102

format (boot loader) command A-10

forwarding results, display C-5

frame forwarding information, displaying C-5

fsck (boot loader) command A-11


global configuration mode 1-2, 1-3


hardware ACL statistics 2-275

help (boot loader) command A-12

hop-count limit for clusters 2-49

host connection, port configuration 2-520

Hot Standby Router Protocol



binding HSRP group to cluster 2-57

standby group 2-57


IEEE 802.1x

and switchport modes 2-522

violation error recovery 2-99

See also port-based authentication

IEEE 802.1X Port Based Authentication

enabling guest VLAN supplicant 2-69

IGMP filters

applying 2-126

debug messages, display B-13

IGMP groups, setting maximum 2-127

IGMP maximum groups, debugging B-14

IGMP profiles

creating 2-129

displaying 2-343

IGMP snooping

adding ports as a static member of a group 2-145

displaying 2-344, 2-349, 2-351

enabling 2-131

enabling the configurable-leave timer 2-133

enabling the Immediate-Leave feature 2-142

flooding query count 2-139

interface topology change notification behavior 2-141

multicast table 2-347

querier 2-135

query solicitation 2-139

report suppression 2-137

switch topology change notification behavior 2-139


See software images

Immediate-Leave feature, MVR 2-230

immediate-leave processing 2-142

initial configuration

See getting started guide and hardware installation guide

interface configuration mode 1-2, 1-4

interface port-channel command 2-104

interface range command 2-106

interface-range macros 2-60


assigning Ethernet interface to channel group 2-26

configuring 2-95

configuring multiple 2-106

creating port-channel logical 2-104

debug messages, display B-12

interfaces (continued)

disabling 2-447

displaying the MAC address table 2-371

restarting 2-447

interface speed, configuring 2-503

interface vlan command 2-108

internal registers, displaying 2-296, 2-303

Internet Group Management Protocol


invalid GBIC

error detection for 2-97

error recovery timer 2-99

ip access-group command 2-109

ip address command 2-111

IP addresses, setting 2-111

IP DHCP snooping

See DHCP snooping

ip dhcp snooping binding command 2-114

ip dhcp snooping command 2-113

ip dhcp snooping database command 2-116

ip dhcp snooping information option allow-untrusted command 2-120

ip dhcp snooping information option command 2-118

ip dhcp snooping limit rate command 2-122

ip dhcp snooping trust command 2-123

ip dhcp snooping verify command 2-124

ip dhcp snooping vlan command 2-125

ip igmp filter command 2-126

ip igmp max-groups command 2-127

ip igmp profile command 2-129

ip igmp snooping command 2-131

ip igmp snooping last-member-query-interval command 2-133

ip igmp snooping querier command 2-135

ip igmp snooping report-suppression command 2-137

ip igmp snooping tcn command 2-139

ip igmp snooping tcn flood command 2-141

ip igmp snooping vlan immediate-leave command 2-142

ip igmp snooping vlan mrouter command 2-143

ip igmp snooping vlan static command 2-145

IP multicast addresses 2-227

IP phones

auto-QoS configuration 2-14

trusting packets sent from 2-220

IP-precedence-to-DSCP map 2-194

IP source guard


dynamic binding entries only 2-339

ip ssh command 2-147


jumbo frames




See EtherChannel

lacp port-priority command 2-149

lacp system-priority command 2-151

Layer 2 traceroute

IP addresses 2-546

MAC addresses 2-543

line configuration mode 1-2, 1-5

Link Aggregation Control Protocol

See EtherChannel

link flap

error detection for 2-97

error recovery timer 2-99

link state group command 2-153

link state track command 2-155

load_helper (boot loader) command A-13

load-distribution methods for EtherChannel 2-246

logging file command 2-156

logical interface 2-104

loopback error

detection for 2-97

recovery timer 2-99

loop guard, for spanning tree 2-468, 2-472


mac access-group command 2-158

MAC access-groups, displaying 2-359

MAC access list configuration mode 2-160

mac access-list extended command 2-160

MAC access lists 2-63

MAC addresses


aging time 2-365

all 2-363

dynamic 2-369

MAC address-table move updates 2-373

notification settings 2-375

number of addresses in a VLAN 2-367

per interface 2-371

per VLAN 2-379

static 2-377

static and dynamic entries 2-361


aging time 2-162

deleting 2-38

displaying 2-369

enabling MAC address notification 2-165

enabling MAC address-table move update 2-163


adding and removing 2-167

displaying 2-377

dropping on an interface 2-168

tables 2-363

MAC address notification, debugging B-17

mac address-table aging-time 2-158

mac address-table aging-time command 2-162

mac address-table move update command 2-163

mac address-table notification command 2-165

mac address-table static command 2-167

mac address-table static drop command 2-168

macro apply command 2-170

macro description command 2-173

macro global command 2-174

macro global description command 2-177

macro name command 2-178


adding a description 2-173

adding a global description 2-177

applying 2-174

creating 2-178

displaying 2-405

interface range 2-60, 2-106

specifying parameter values 2-174

tracing 2-174


audience xv

purpose of xv



defining 2-194

displaying 2-389

match (class-map configuration) command 2-180

maximum transmission unit


mdix auto command 2-182

media-type command 2-184

member switches

See clusters

memory (boot loader) command A-14

mkdir (boot loader) command A-15

mls qos aggregate-policer command 2-188

mls qos command 2-186

mls qos cos command 2-190

mls qos dscp-mutation command 2-192

mls qos map command 2-194

mls qos queue-set output buffers command 2-198

mls qos queue-set output threshold command 2-200

mls qos rewrite ip dscp command 2-202

mls qos srr-queue input bandwidth command 2-204

mls qos srr-queue input buffers command 2-206

mls qos-srr-queue input cos-map command 2-208

mls qos srr-queue input dscp-map command 2-210

mls qos srr-queue input priority-queue command 2-212

mls qos srr-queue input threshold command 2-214

mls qos-srr-queue output cos-map command 2-216

mls qos srr-queue output dscp-map command 2-218

mls qos trust command 2-220

mode, MVR 2-227

Mode button, and password recovery 2-264

modes, commands 1-1

monitor session command 2-222

more (boot loader) command A-16


displaying 2-417, 2-418, 2-419, 2-420, 2-421, 2-422

interoperability 2-44

link type 2-470

MST region

aborting changes 2-476

applying changes 2-476

configuration name 2-476

configuration revision number 2-476

current or pending display 2-476

displaying 2-417, 2-418, 2-419, 2-420, 2-421, 2-422

MST configuration mode 2-476

VLANs-to-instance mapping 2-476

path cost 2-478

protocol mode 2-474

restart protocol migration process 2-44

root port

loop guard 2-468

preventing from becoming designated 2-468

restricting which can be root 2-468

root guard 2-468

root switch

affects of extended system ID 2-467

hello-time 2-481, 2-489

interval between BDPU messages 2-482

interval between hello BPDU messages 2-481, 2-489

max-age 2-482

maximum hop count before discarding BPDU 2-483

port priority for selection of 2-485

primary or secondary 2-489

switch priority 2-488

state changes

blocking to forwarding state 2-495

enabling BPDU filtering 2-459, 2-493

enabling BPDU guard 2-461, 2-493

enabling Port Fast 2-493, 2-495

forward-delay time 2-480

length of listening and learning states 2-480

rapid transition to forwarding 2-470

shutting down Port Fast-enabled ports 2-493

state information display 2-416


configuring size 2-540

displaying global setting 2-429

multicast group address, MVR 2-230

multicast groups, MVR 2-228

multicast router learning method 2-143

multicast router ports, configuring 2-143

multicast storm control 2-511

multicast VLAN, MVR 2-227

multicast VLAN registration


multiple hosts on authorized port 2-81

Multiple Spanning Tree Protocol



and address aliasing 2-228

configuring 2-227

configuring interfaces 2-230

debug messages, display B-21

MVR (continued)

displaying 2-397

displaying interface information 2-399

members, displaying 2-401

mvr (global configuration) command 2-227

mvr (interface configuration) command 2-230

mvr vlan group command 2-231


native VLANs 2-535

Network Assistant requirements xvi


DTP messaging 2-523

nonegotiate, speed 2-503

non-IP protocols

denying 2-63

forwarding 2-237

non-IP traffic access lists 2-160

non-IP traffic forwarding

denying 2-63

permitting 2-237

normal-range VLANs 2-555, 2-561

note, description xvi

no vlan command 2-555, 2-565



See EtherChannel

pagp learn-method command 2-233

pagp port-priority command 2-235

password, VTP 2-575, 2-579

password-recovery mechanism, enabling and disabling 2-264

permit (MAC access-list configuration) command 2-237

per-VLAN spanning-tree plus


physical-port learner 2-233

PID, displaying 2-337

PIM-DVMRP, as multicast router learning method 2-143

police aggregate command 2-242

police command 2-240

policed-DSCP map 2-194

policy-map command 2-244

policy maps

applying to an interface 2-266, 2-270

creating 2-244

displaying 2-408


displaying 2-382

for a single class 2-240

for multiple classes 2-188, 2-242

policed-DSCP map 2-194

traffic classification

defining the class 2-30

defining trust states 2-548

setting DSCP or IP precedence values 2-268

Port Aggregation Protocol

See EtherChannel

port-based authentication

AAA method list 2-3

debug messages, display B-7

enabling IEEE 802.1x

globally 2-66

per interface 2-88

guest VLAN 2-79

host modes 2-81

IEEE 802.1x AAA accounting methods 2-1

initialize an interface 2-82

MAC authentication bypass 2-83

manual control of authorization state 2-88

multiple hosts on authorized port 2-81

PAE as authenticator 2-87

periodic re-authentication

enabling 2-91

time between attempts 2-92

port-based authentication (continued)

quiet period between failed authentication exchanges 2-92

re-authenticating IEEE 802.1x-enabled ports 2-90

resetting configurable IEEE 802.1x parameters 2-78

switch-to-authentication server retransmission time 2-92

switch-to-client frame-retransmission number2-85to 2-86

switch-to-client retransmission time 2-92

port-channel load-balance command 2-246

Port Fast, for spanning tree 2-495

port ranges, defining 2-60

ports, debugging B-53

ports, protected 2-534

port security

aging 2-530

debug messages, display B-55

enabling 2-525

violation error recovery 2-99

port trust states for QoS 2-220

port types, MVR 2-230

power information, displaying 2-316

priority-queue command 2-248

privileged EXEC mode 1-2, 1-3

product identification information, displaying 2-337

protected ports, displaying 2-333


VLANs 2-535


displaying interface information 2-328

enabling 2-575, 2-579

pruning-eligible VLAN list 2-536






configuring 2-14

debug messages, display B-2

displaying 2-279

class maps

creating 2-32

defining the match criteria 2-180

displaying 2-287

defining the CoS value for an incoming packet 2-190

displaying configuration information 2-279, 2-381

DSCP transparency 2-202

DSCP trusted ports

applying DSCP-to-DSCP-mutation map to 2-192

defining DSCP-to-DSCP-mutation map 2-194

egress queues

allocating buffers 2-198

defining the CoS output queue threshold map 2-216

defining the DSCP output queue threshold map 2-218

displaying buffer allocations 2-385

displaying CoS output queue threshold map 2-389

displaying DSCP output queue threshold map 2-389

displaying queueing strategy 2-385

displaying queue-set settings 2-392

enabling bandwidth shaping and scheduling 2-507

enabling bandwidth sharing and scheduling 2-509

limiting the maximum output on a port 2-505

mapping a port to a queue-set 2-250

mapping CoS values to a queue and threshold 2-216

mapping DSCP values to a queue and threshold 2-218

setting maximum and reserved memory allocations 2-200

setting WTD thresholds 2-200

enabling 2-186

ingress queues

allocating buffers 2-206

assigning SRR scheduling weights 2-204

ingress queues (continued)

defining the CoS input queue threshold map 2-208

defining the DSCP input queue threshold map 2-210

displaying buffer allocations 2-385

displaying CoS input queue threshold map 2-389

displaying DSCP input queue threshold map 2-389

displaying queueing strategy 2-385

displaying settings for 2-383

enabling the priority queue 2-212

mapping CoS values to a queue and threshold 2-208

mapping DSCP values to a queue and threshold 2-210

setting WTD thresholds 2-214


defining 2-194, 2-208, 2-210, 2-216, 2-218

displaying 2-389

policy maps

applying an aggregate policer 2-242

applying to an interface 2-266, 2-270

creating 2-244

defining policers 2-188, 2-240

displaying policers 2-382

displaying policy maps 2-408

policed-DSCP map 2-194

setting DSCP or IP precedence values 2-268

traffic classifications 2-30

trust states 2-548

port trust states 2-220

queues, enabling the expedite 2-248


in-profile and out-of-profile packets 2-385

packets enqueued or dropped 2-385

sent and received CoS values 2-385

sent and received DSCP values 2-385

trusted boundary for IP phones 2-220

quality of service

See QoS

querytime, MVR 2-227

queue-set command 2-250


radius-server dead-criteria command 2-251

radius-server host command 2-253

rapid per-VLAN spanning-tree plus


rapid PVST+


rcommand command 2-255

re-authenticating IEEE 802.1x-enabled ports 2-90


periodic 2-91

time between attempts 2-92

receiver ports, MVR 2-230

receiving flow-control packets 2-102

recovery mechanism

causes 2-99

display 2-285, 2-317, 2-321

timer interval 2-99

redundancy for cluster switches 2-57

remote-span command 2-257

Remote Switched Port Analyzer


rename (boot loader) command A-17

renew ip dhcp snooping database command 2-259


cluster xvi

device manager xvi

Network Assistant xvi

reset (boot loader) command A-18

reset command 2-568

resource templates, displaying 2-413

restricted VLAN

See dot1x auth-fail vlan

rmdir (boot loader) command A-19

rmon collection stats command 2-261

root guard, for spanning tree 2-468


configuring 2-222

displaying 2-395

filter RSPAN traffic 2-222

remote-span command 2-257


add interfaces to 2-222

displaying 2-395

start new 2-222


sdm prefer command 2-262

SDM templates

displaying 2-413

secure ports, limitations 2-527

sending flow-control packets 2-102

service password-recovery command 2-264

service-policy command 2-266

set (boot loader) command A-20

set command 2-268

setup command 2-270

setup express command 2-273

show access-lists command 2-275

show archive status command 2-278

show auto qos command 2-279

show boot command 2-283

show cable-diagnostics tdr command 2-285

show changes command 2-568

show class-map command 2-287

show cluster candidates command 2-290

show cluster command 2-288

show cluster members command 2-292

show controllers cpu-interface command 2-294

show controllers ethernet-controller command 2-296

show controllers tcam command 2-303

show controller utilization command 2-305

show current command 2-568

show dot1x command 2-307

show dtp 2-311

show eap command 2-313

show env command 2-316

show errdisable detect command 2-317

show errdisable flap-values command 2-319

show errdisable recovery command 2-321

show etherchannel command 2-323

show flowcontrol command 2-326

show interfaces command 2-328

show interfaces counters command 2-335

show inventory command 2-337

show ip dhcp snooping binding command 2-339

show ip dhcp snooping command 2-338

show ip dhcp snooping database command 2-341

show ip igmp profile command 2-343

show ip igmp snooping command 2-344

show ip igmp snooping groups command 2-347

show ip igmp snooping mrouter command 2-349

show ip igmp snooping querier command 2-351

show lacp command 2-353

show link state group command 2-357

show mac access-group command 2-359

show mac address-table address command 2-363

show mac address-table aging time command 2-365

show mac address-table command 2-361

show mac address-table count command 2-367

show mac address-table dynamic command 2-369

show mac address-table interface command 2-371

show mac address-table move update command 2-373

show mac address-table notification command 2-39, 2-375, B-19

show mac address-table static command 2-377

show mac address-table vlan command 2-379

show mls qos aggregate-policer command 2-382

show mls qos command 2-381

show mls qos input-queue command 2-383

show mls qos interface command 2-385

show mls qos maps command 2-389

show mls qos queue-set command 2-392

show mls qos vlan command 2-394

show monitor command 2-395

show mvr command 2-397

show mvr interface command 2-399

show mvr members command 2-401

show pagp command 2-403

show parser macro command 2-405

show platform acl command C-2

show platform backup interface command C-3

show platform etherchannel command C-4

show platform forward command C-5

show platform igmp snooping command C-7

show platform layer4op command C-9

show platform mac-address-table command C-10

show platform messaging command C-11

show platform monitor command C-12

show platform mvr table command C-13

show platform pm command C-14

show platform port-asic command C-15

show platform port-security command C-20

show platform qos command C-21

show platform resource-manager command C-22

show platform snmp counters command C-24

show platform spanning-tree command C-25

show platform stp-instance command C-26

show platform tcam command C-27

show platform vlan command C-30

show policy-map command 2-408

show port security command 2-410

show proposed command 2-568

show sdm prefer command 2-413

show setup express command 2-415

show spanning-tree command 2-416

show storm-control command 2-427

show system mtu command 2-429

show trust command 2-548

show udld command 2-430

show version command 2-433

show vlan command 2-435

show vlan command, fields 2-437

show vmps command 2-439

show vtp command 2-442

shutdown command 2-447

shutdown vlan command 2-448

Smartports macros

See macros

SNMP host, specifying 2-452

SNMP informs, enabling the sending of 2-449

snmp-server enable traps command 2-449

snmp-server host command 2-452

snmp trap mac-notification command 2-456

SNMP traps

enabling MAC address notification trap 2-456

enabling the MAC address notification feature 2-165

enabling the sending of 2-449


See Cisco SoftPhone

software images

deleting 2-62

downloading 2-6

upgrading 2-6

uploading 2-12

software version, displaying 2-433

source ports, MVR 2-230


configuring 2-222

debug messages, display B-20

displaying 2-395

filter SPAN traffic 2-222


add interfaces to 2-222

displaying 2-395

start new 2-222

spanning 2-497

spanning-tree backbonefast command 2-458

spanning-tree bpdufilter command 2-459

spanning-tree bpduguard command 2-461

spanning-tree cost command 2-463

spanning-tree etherchannel command 2-465

spanning-tree extend system-id command 2-467

spanning-tree guard command 2-468

spanning-tree link-type command 2-470

spanning-tree loopguard default command 2-472

spanning-tree mode command 2-474

spanning-tree mst configuration command 2-476

spanning-tree mst cost command 2-478

spanning-tree mst forward-time command 2-480

spanning-tree mst hello-time command 2-481

spanning-tree mst max-age command 2-482

spanning-tree mst max-hops command 2-483

spanning-tree mst port-priority command 2-485

spanning-tree mst pre-standard command 2-487

spanning-tree mst priority command 2-488

spanning-tree mst root command 2-489

spanning-tree portfast (global configuration) command 2-493

spanning-tree portfast (interface configuration) command 2-495

spanning-tree port-priority command 2-491

Spanning Tree Protocol


spanning-tree transmit hold-count command 2-497

spanning-tree uplinkfast command 2-498

spanning-tree vlan command 2-500

speed command 2-503

srr-queue bandwidth limit command 2-505

srr-queue bandwidth shape command 2-507

srr-queue bandwidth share command 2-509

SSH, configuring version 2-147

static-access ports, configuring 2-514

statistics, Ethernet group 2-261

sticky learning, enabling 2-525

storm-control command 2-511


BackboneFast 2-458

counters, clearing 2-43

debug messages, display

debug messages, display (continued)

BackboneFast events B-59


optimized BPDUs handling B-61

spanning-tree activity B-57

switch shim B-64

transmitted and received BPDUs B-60

UplinkFast B-66

detection of indirect link failures 2-458

EtherChannel misconfiguration 2-465

extended system ID 2-467

path cost 2-463

protocol modes 2-474

root port

accelerating choice of new 2-498

loop guard 2-468

preventing from becoming designated 2-468

restricting which can be root 2-468

root guard 2-468

UplinkFast 2-498

root switch

affects of extended system ID 2-467, 2-501

hello-time 2-500

interval between BDPU messages 2-500

interval between hello BPDU messages 2-500

max-age 2-500

port priority for selection of 2-491

primary or secondary 2-500

switch priority 2-500

state changes

blocking to forwarding state 2-495

enabling BPDU filtering 2-459, 2-493

enabling BPDU guard 2-461, 2-493

enabling Port Fast 2-493, 2-495

enabling timer to recover from error state 2-99

forward-delay time 2-500

length of listening and learning states 2-500

shutting down Port Fast-enabled ports 2-493

STP (continued)

state information display 2-416

VLAN options 2-488, 2-500

Switched Port Analyzer


switchport access command 2-514

switchport backup interface command 2-516

switchport block command 2-519

switchport host command 2-520

switchport mode command 2-521

switchport nonegotiate command 2-523

switchport port-security aging command 2-530

switchport port-security command 2-525

switchport priority extend command 2-532

switchport protected command 2-534

switchports, displaying 2-328

switchport trunk command 2-535

switchport voice vlan command 2-538

system message logging, save message to flash 2-156

system mtu command 2-540

system resource templates 2-262


tar files, creating, listing, and extracting 2-9

TDR, running 2-542

Telnet, using to communicate to cluster switches 2-255

temperature information, displaying 2-316

templates, SDM 2-262

templates, system resources 2-262

test cable-diagnostics tdr command 2-542

traceroute mac command 2-543

traceroute mac ip command 2-546

trunking, VLAN mode 2-521

trunk mode 2-521

trunk ports 2-521

trunks, to non-DTP device 2-522

trusted boundary for QoS 2-220

trusted port states for QoS 2-220

type (boot loader) command A-23



aggressive mode 2-550, 2-552

debug messages, display B-74

enable globally 2-550

enable per interface 2-552

error recovery timer 2-99

message timer 2-550

normal mode 2-550, 2-552

reset a shutdown interface 2-554

status 2-430

udld command 2-550

udld port command 2-552

udld reset command 2-554

unicast storm control 2-511

UniDirectional Link Detection


unknown multicast traffic, preventing 2-519

unknown unicast traffic, preventing 2-519

unset (boot loader) command A-24


software images 2-6

monitoring status of 2-278

upgrading information

See release notes

UplinkFast, for STP 2-498

user EXEC mode 1-2


version (boot loader) command A-26


enabling guest VLAN supplicant 2-69

vlan (global configuration) command 2-555

vlan (VLAN configuration) command 2-561

VLAN configuration

rules 2-558, 2-563

saving 2-555, 2-565

VLAN configuration mode


VLAN 2-561

VTP 2-579

description 1-4

entering 2-567

summary 1-2

vlan database command 2-567

VLAN ID range 2-555, 2-561

VLAN Query Protocol



adding 2-555

configuring 2-555, 2-561

debug messages, display

ISL B-70

VLAN IOS file system error tests B-69

VLAN manager activity B-67

VTP B-72

displaying configurations 2-435

extended-range 2-555

MAC addresses

displaying 2-379

number of 2-367

media types 2-558, 2-563

normal-range 2-555, 2-561

restarting 2-448

saving the configuration 2-555

shutting down 2-448

SNMP traps for VTP 2-450, 2-453

suspending 2-448

variables 2-561

VLAN Trunking Protocol



configuring servers 2-573

displaying 2-439

error recovery timer 2-99

reconfirming dynamic VLAN assignments 2-570

vmps reconfirm (global configuration) command 2-571

vmps reconfirm (privileged EXEC) command 2-570

vmps retry command 2-572

vmps server command 2-573

voice VLAN

configuring 2-538

setting port priority 2-532


and dynamic-access ports 2-515

clearing client statistics 2-45

displaying information 2-439

per-server retry count 2-572

reconfirmation interval 2-571

reconfirming dynamic VLAN assignments 2-570


changing characteristics 2-575

clearing pruning counters 2-46


domain name 2-575, 2-579

file name 2-575

mode 2-575, 2-579

password 2-575, 2-579

counters display fields 2-443

displaying information 2-442


pruning 2-575, 2-579

Version 2 2-575, 2-579

mode 2-575, 2-579

pruning 2-575, 2-579

saving the configuration 2-555, 2-565

statistics 2-442

status 2-442

status display fields 2-445

vtp (global configuration) command 2-575

vtp (VLAN configuration) command 2-579