A -
B -
C -
D -
E -
F -
G -
H -
I -
J -
L -
M -
N -
P -
Q -
R -
S -
T -
U -
V -
Index
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
abort command 2-683
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 2-122
MAC, displaying 2-457
access list, IPv6 2-180
access map configuration mode 2-232
access mode 2-626
access ports 2-626
ACEs 2-79, 2-300
ACLs
deny 2-77
displaying 2-345
for non-IP protocols 2-212
IP 2-122
matching 2-232
on Layer 2 interfaces 2-122
permit 2-298
action command 2-5
address aliasing 2-281
aggregate-port learner 2-286
allowed VLANs 2-646
apply command 2-683
archive download-sw command 2-7
archive tar command 2-10
archive upload-sw command 2-13
arp access-list command 2-15
audience xix
authentication failed VLAN
See dot1x auth-fail vlan
auth-fail max-attempts
See dot1x auth-fail max-attempts
auth-fail vlan
See dot1x auth-fail vlan
authorization state of controlled port 2-99
autonegotiation of duplex mode 2-107
auto qos voip command 2-17
B
BackboneFast, for STP 2-561
backup interfaces
configuring 2-622
displaying 2-401
boot (boot loader) command A-2
boot boothlpr command 2-22
boot config-file command 2-23
boot enable-break command 2-24
boot helper command 2-25
boot helper-config file command 2-26
booting
Cisco IOS image 2-29
displaying environment variables 2-354
interrupting 2-24
manually 2-27
boot loader
accessing A-1
booting
Cisco IOS image A-2
helper image 2-25
directories
creating A-15
displaying a list of A-7
removing A-19
displaying
available commands A-12
memory heap utilization A-14
version A-26
environment variables
described A-20
displaying settings A-20
location of A-21
setting A-20
unsetting A-24
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-16, A-23
renaming A-17
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
loading helper images A-13
prompt A-1
resetting the system A-18
boot manual command 2-27
boot private-config-file command 2-28
boot system command 2-29
BPDU filtering, for spanning tree 2-562, 2-597
BPDU guard, for spanning tree 2-564, 2-597
broadcast storm control 2-615
C
candidate switches
See clusters
cat (boot loader) command A-4
caution, description xx
CDP, enabling protocol tunneling for 2-199
channel-group command 2-30
channel-protocol command 2-33
Cisco Network Assistant
See Network Assistant xx
Cisco SoftPhone
auto-QoS configuration 2-17
trusting packets sent from 2-272
class command 2-34
class-map command 2-36
class maps
creating 2-36
defining the match criteria 2-234
displaying 2-359
class of service
See CoS
clear ip arp inspection log command 2-38
clear ip arp inspection statistics command 2-39
clear ipc command 2-41
clear ip dhcp snooping database command 2-40
clear l2protocol-tunnel counters command 2-42
clear lacp command 2-43
clear mac address-table command 2-44, 2-46
clear pagp command 2-47
clear port-security command 2-48
clear spanning-tree counters command 2-50
clear spanning-tree detected-protocols command 2-51
clear vmps statistics command 2-52
clear vtp counters command 2-53
cluster commander-address command 2-54
cluster discovery hop-count command 2-56
cluster enable command 2-57
cluster holdtime command 2-59
cluster member command 2-60
cluster outside-interface command 2-62
cluster requirements xxi
cluster run command 2-63
clusters
adding candidates 2-60
binding to HSRP group 2-64
building manually 2-60
communicating with
devices outside the cluster 2-62
members by using Telnet 2-323
debug messages, display B-5
displaying
candidate switches 2-362
debug messages B-5
member switches 2-364
status 2-360
hop-count limit for extended discovery 2-56
HSRP standby groups 2-64
redundancy 2-64
SNMP trap 2-551
cluster standby-group command 2-64
cluster timer command 2-66
command modes defined 1-1
commands changed in Cisco IOS Release 12.2(20)SE 1-6
command switch
See clusters
configuration, initial
See getting started guide and hardware installation guide
configuration files
password recovery disable considerations A-1
specifying the name 2-23, 2-28
configuring multiple interfaces 2-118
config-vlan mode
commands 2-669
description 1-4
entering 2-668
summary 1-2
conventions
command xx
for examples xx
publication xx
text xx
copy (boot loader) command A-5
CoS
assigning default value to incoming packets 2-242
assigning to Layer 2 protocol packets 2-202
overriding the incoming value 2-242
CoS-to-DSCP map 2-246
CPU ASIC statistics, displaying 2-366
crashinfo files 2-113
D
debug auto qos command B-2
debug backup command B-4
debug cluster command B-5
debug dot1x command B-7
debug dtp command B-9
debug etherchannel command B-10
debug ilpower command B-12
debug interface command B-15
debug ip dhcp snooping command B-13
debug ip igmp filter command B-17
debug ip igmp max-groups command B-18
debug ip igmp snooping command B-19
debug ip verify source packet command B-14
debug lacp command B-20
debug mac-notification command B-21
debug matm command B-22
debug matm move update command B-23
debug monitor command B-24
debug mvrdbg command B-26
debug nvram command B-27
debug pagp command B-28
debug platform acl command B-29
debug platform backup interface command B-30
debug platform configuration command B-38
debug platform cpu-queues command B-31
debug platform device-manager command B-33
debug platform dot1x command B-34
debug platform etherchannel command B-35
debug platform fallback-bridging command B-36
debug platform forw-tcam command B-37
debug platform ip arp inspection command B-40
debug platform ip dhcp command B-41
debug platform ip igmp snooping command B-42
debug platform ip multicast command B-44
debug platform ip unicast command B-46
debug platform led command B-48
debug platform matm command B-49
debug platform messaging application command B-51
debug platform phy command B-52
debug platform pm command B-54
debug platform port-asic command B-56
debug platform port-security command B-57
debug platform qos-acl-tcam command B-58
debug platform remote-commands command B-59
debug platform resource-manager command B-60
debug platform snmp command B-61
debug platform span command B-62
debug platform supervisor-asic command B-63
debug platform sw-bridge command B-64
debug platform tcam command B-65
debug platform udld command B-68
debug platform vlan command B-69
debug pm command B-70
debug port-security command B-72
debug qos-manager command B-73
debug spanning-tree backbonefast command B-76
debug spanning-tree bpdu command B-77
debug spanning-tree bpdu-opt command B-78
debug spanning-tree command B-74
debug spanning-tree mstp command B-79
debug spanning-tree switch command B-81
debug spanning-tree uplinkfast command B-83
debug sw-vlan command B-84
debug sw-vlan ifs command B-86
debug sw-vlan notification command B-88
debug sw-vlan vtp command B-90
debug udld command B-92
debug vqpc command B-94
define interface-range command 2-67
delete (boot loader) command A-6
delete command 2-69
deny (ARP access-list configuration) command 2-70
deny (IPv6) command 2-72
deny command 2-77
detect mechanism, causes 2-108
device manager requirements xx
DHCP snooping
accepting untrusted packets from edge switch 2-147
enabling
on a VLAN 2-153
option 82 2-145, 2-147
trust on an interface 2-151
error recovery timer 2-110
rate limiting 2-149
DHCP snooping binding database
binding file, configuring 2-143
bindings
adding 2-141
deleting 2-141
displaying 2-418
clearing database agent statistics 2-40
database agent, configuring 2-143
displaying
binding entries 2-418
database agent status 2-420
renewing 2-327
dir (boot loader) command A-7
directories, deleting 2-69
documentation, related xx
document conventions xx
domain name, VTP 2-694, 2-698
dot1x auth-fail max-attempts 2-82
dot1x auth-fail vlan 2-84
dot1x command 2-80
dot1x control-direction command 2-86
dot1x critical command 2-88
dot1x default command 2-90
dot1x guest-vlan command 2-91
dot1x host-mode command 2-93
dot1x initialize command 2-95
dot1x max-req command 2-96, 2-97
dot1x multiple-hosts command 2-98
dot1x port-control command 2-99
dot1x re-authenticate command 2-101
dot1x re-authentication command 2-102
dot1x reauthentication command 2-103
dot1x timeout command 2-104
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-199
DSCP-to-CoS map 2-246
DSCP-to-DSCP-mutation map 2-246
DTP 2-627
DTP flap
error detection for 2-108
error recovery timer 2-110
DTP negotiation 2-631
dual IPv4 and IPv6 templates 2-292
duplex command 2-106
dynamic-access ports
configuring 2-620
restrictions 2-621
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-127
define 2-15
deny packets 2-70
display 2-349
permit packets 2-290
dynamic ARP inspection (continued)
clear
log buffer 2-38
statistics 2-39
display
ARP ACLs 2-349
configuration and operating state 2-414
log buffer 2-414
statistics 2-414
trust state and rate limit 2-414
enable per VLAN 2-137
error detection for 2-108
error recovery timer 2-110
log buffer
clear 2-38
configure 2-131
display 2-414
rate-limit incoming ARP packets 2-129
statistics
clear 2-39
display 2-414
trusted interface state 2-133
type of packet logged 2-138
validation checks 2-135
dynamic auto VLAN membership mode 2-626
dynamic desirable VLAN membership mode 2-626
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame
maximum number to send 2-97
response time before retransmitting 2-104
encapsulation methods 2-646
environment variables, displaying 2-354
errdisable detect cause command 2-108
errdisable recovery command 2-110
error conditions, displaying 2-392
error disable detection 2-108
error-disabled interfaces, displaying 2-401
EtherChannel
assigning Ethernet interface to channel group 2-30
creating port-channel logical interface 2-116
debug EtherChannel/PAgP, display B-10
debug platform-specific events, display B-35
displaying 2-396
enabling Layer 2 protocol tunneling for
LACP 2-200
PAgP 2-200
UDLD 2-200
interface information, displaying 2-401
LACP
clearing channel-group information 2-43
debug messages, display B-20
displaying 2-453
modes 2-30
port priority for hot-standby ports 2-203
restricting a protocol 2-33
system priority 2-205
load-distribution methods 2-308
PAgP
aggregate-port learner 2-286
clearing channel-group information 2-47
debug messages, display B-28
displaying 2-502
error detection for 2-108
error recovery timer 2-110
learn method 2-286
modes 2-30
physical-port learner 2-286
priority of interface for transmitted traffic 2-288
Ethernet controller, internal register display 2-368
Ethernet statistics, collecting 2-329
examples, conventions for xx
exception crashinfo command 2-113
exit command 2-683
extended discovery of candidate switches 2-56
extended-range VLANs
and allowed VLAN list 2-646
and pruning-eligible list 2-646
configuring 2-668
extended system ID for STP 2-570
F
fan information, displaying 2-388
file name, VTP 2-694
files, deleting 2-69
flash_init (boot loader) command A-9
Flex Links
configuring 2-622
displaying 2-401
flowcontrol command 2-114
format (boot loader) command A-10
forwarding packets, with ACL matches 2-5
forwarding results, display C-6
frame forwarding information, displaying C-6
front-end controller
counter and status information C-8
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-345
help (boot loader) command A-12
hierarchical policy maps 2-306
hop-count limit for clusters 2-56
host connection, port configuration 2-625
host ports, private VLANs 2-629
Hot Standby Router Protocol
See HSRP
HSRP
binding HSRP group to cluster 2-64
standby group 2-64
I
IEEE 802.1Q trunk ports and native VLANs 2-685
IEEE 802.1Q tunnel ports
configuring 2-626
displaying 2-381
limitations 2-627
IEEE 802.1x
and switchport modes 2-627
violation error recovery 2-110
See also port-based authentication
IEEE 802.1X Port Based Authentication
enabling guest VLAN supplicant 2-83
IGMP filters
applying 2-154
debug messages, display B-17
IGMP groups, setting maximum 2-155
IGMP maximum groups, debugging B-18
IGMP profiles
creating 2-157
displaying 2-422
IGMP snooping
adding ports as a static member of a group 2-173
displaying 2-423, 2-428, 2-430
enabling 2-159
enabling the configurable-leave timer 2-161
enabling the Immediate-Leave feature 2-170
flooding query count 2-167
interface topology change notification behavior 2-169
multicast table 1-6, 2-426
querier 2-163
query solicitation 2-167
IGMP snooping (continued)
report suppression 2-165
switch topology change notification behavior 2-167
images
See software images
Immediate-Leave feature, MVR 2-283
Immediate-Leave processing
IPv6 2-195
immediate-leave processing 2-170
initial configuration
See getting started guide and hardware installation guide
interface configuration mode 1-2, 1-4
interface port-channel command 2-116
interface range command 2-118
interface-range macros 2-67
interfaces
assigning Ethernet interface to channel group 2-30
configuring 2-106
configuring multiple 2-118
creating port-channel logical 2-116
debug messages, display B-15
disabling 2-549
displaying the MAC address table 2-469
restarting 2-549
interface speed, configuring 2-607
interface vlan command 2-120
internal registers, displaying 2-368, 2-377
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-108
error recovery timer 2-110
ip access-group command 2-122
ip address command 2-125
IP addresses, setting 2-125
IP address matching 2-232
ip arp inspection filter vlan command 2-127
ip arp inspection limit command 2-129
ip arp inspection log-buffer command 2-131
ip arp inspection trust command 2-133
ip arp inspection validate command 2-135
ip arp inspection vlan command 2-137
ip arp inspection vlan logging command 2-138
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 2-141
ip dhcp snooping command 2-140
ip dhcp snooping database command 2-143
ip dhcp snooping information option allow-untrusted command 2-147
ip dhcp snooping information option command 2-145
ip dhcp snooping limit rate command 2-149
ip dhcp snooping trust command 2-151
ip dhcp snooping verify command 2-152
ip dhcp snooping vlan command 2-153
ip igmp filter command 2-154
ip igmp max-groups command 2-155
ip igmp profile command 2-157
ip igmp snooping command 2-159
ip igmp snooping last-member-query-interval command 2-161
ip igmp snooping querier command 2-163
ip igmp snooping report-suppression command 2-165
ip igmp snooping tcn command 2-167
ip igmp snooping tcn flood command 2-169
ip igmp snooping vlan immediate-leave command 2-170
ip igmp snooping vlan mrouter command 2-171
ip igmp snooping vlan static command 2-173
IP multicast addresses 2-280
IP phones
auto-QoS configuration 2-17
trusting packets sent from 2-272
IP-precedence-to-DSCP map 2-246
ip source binding command 2-175
IP source guard
disabling 2-179
displaying
binding entries 2-432
configuration 2-434
dynamic binding entries only 2-418
enabling 2-179
static IP source bindings 2-175
ip ssh command 2-177
IPv6 access list
deny conditions 2-72
ipv6 access-list command 2-180
ipv6 mld snooping command 2-183
ipv6 mld snooping last-listener-query count command 2-185
ipv6 mld snooping last-listener-query-interval command 2-187
ipv6 mld snooping listener-message-suppression command 2-189
ipv6 mld snooping robustness-variable command 2-191
ipv6 mld snooping tcn command 2-193
ipv6 mld snooping vlan command 2-195
IPv6 SDM template 2-330
ipv6 traffic-filter command 2-197
ip verify source command 2-179
J
jumbo frames
See MTU
L
l2protocol-tunnel command 2-199
l2protocol-tunnel cos command 2-202
LACP
See EtherChannel
lacp port-priority command 2-203
lacp system-priority command 2-205
Layer 2 mode, enabling 2-618
Layer 2 protocol ports, displaying 2-450
Layer 2 protocol-tunnel
error detection for 2-108
error recovery timer 2-110
Layer 2 protocol tunnel counters 2-42
Layer 2 protocol tunneling error recovery 2-200
Layer 2 traceroute
IP addresses 2-659
MAC addresses 2-656
Layer 3 mode, enabling 2-618
line configuration mode 1-2, 1-5
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 2-108
error recovery timer 2-110
load_helper (boot loader) command A-13
load-distribution methods for EtherChannel 2-308
logging event power-inline-status command 2-207
logging file command 2-208
logical interface 2-116
loopback error
detection for 2-108
recovery timer 2-110
loop guard, for spanning tree 2-572, 2-576
M
mac access-group command 2-210
MAC access-groups, displaying 2-457
MAC access list configuration mode 2-212
mac access-list extended command 2-212
MAC access lists 2-77
MAC addresses
displaying
aging time 2-463
all 2-461
dynamic 2-467
MAC address-table move updates 2-471
notification settings 2-473
number of addresses in a VLAN 2-465
per interface 2-469
per VLAN 2-477
static 2-475
static and dynamic entries 2-459
dynamic
aging time 2-214
deleting 2-44
displaying 2-467
enabling MAC address notification 2-217
enabling MAC address-table move update 2-215
matching 2-232
static
adding and removing 2-219
displaying 2-475
dropping on an interface 2-220
tables 2-461
MAC address notification, debugging B-21
mac address-table aging-time 2-210, 2-232
mac address-table aging-time command 2-214
mac address-table move update command 2-215
mac address-table notification command 2-217
mac address-table static command 2-219
mac address-table static drop command 2-220
macro apply command 2-222
macro description command 2-225
macro global command 2-226
macro global description command 2-229
macro name command 2-230
macros
adding a description 2-225
adding a global description 2-229
applying 2-226
creating 2-230
displaying 2-504
interface range 2-67, 2-118
specifying parameter values 2-226
tracing 2-226
manual
audience xix
purpose of xix
maps
QoS
defining 2-246
displaying 2-487
VLAN
creating 2-680
defining 2-232
displaying 2-539
match (access-map configuration) command 2-232
match (class-map configuration) command 2-234
maximum transmission unit
See MTU
mdix auto command 2-236
MDL snooping
displaying 2-444
member switches
See clusters
memory (boot loader) command A-14
mkdir (boot loader) command A-15
MLD snooping
configuring 2-189, 2-191
configuring queries 2-185, 2-187
configuring topology change notification 2-193
displaying 2-442, 2-446, 2-448
enabling 2-183
MLD snooping on a VLAN
enabling 2-195
mls qos aggregate-policer command 2-240
mls qos command 2-238
mls qos cos command 2-242
mls qos dscp-mutation command 2-244
mls qos map command 2-246
mls qos queue-set output buffers command 2-250
mls qos queue-set output threshold command 2-252
mls qos rewrite ip dscp command 2-254
mls qos srr-queue input bandwidth command 2-256
mls qos srr-queue input buffers command 2-258
mls qos-srr-queue input cos-map command 2-260
mls qos srr-queue input dscp-map command 2-262
mls qos srr-queue input priority-queue command 2-264
mls qos srr-queue input threshold command 2-266
mls qos-srr-queue output cos-map command 2-268
mls qos srr-queue output dscp-map command 2-270
mls qos trust command 2-272
mls qos vlan-based command 2-274
mode, MVR 2-280
Mode button, and password recovery 2-333
modes, commands 1-1
monitor session command 2-275
more (boot loader) command A-16
MSTP
displaying 2-520, 2-521
interoperability 2-51
link type 2-574
MST region
aborting changes 2-580
applying changes 2-580
configuration name 2-580
configuration revision number 2-580
current or pending display 2-580
displaying 2-520, 2-521
MST configuration mode 2-580
VLANs-to-instance mapping 2-580
path cost 2-582
protocol mode 2-578
restart protocol migration process 2-51
root port
loop guard 2-572
preventing from becoming designated 2-572
restricting which can be root 2-572
root guard 2-572
root switch
affects of extended system ID 2-570
hello-time 2-585, 2-593
interval between BDPU messages 2-586
interval between hello BPDU messages 2-585, 2-593
max-age 2-586
maximum hop count before discarding BPDU 2-587
port priority for selection of 2-589
primary or secondary 2-593
switch priority 2-592
state changes
blocking to forwarding state 2-599
enabling BPDU filtering 2-562, 2-597
enabling BPDU guard 2-564, 2-597
enabling Port Fast 2-597, 2-599
forward-delay time 2-584
length of listening and learning states 2-584
rapid transition to forwarding 2-574
shutting down Port Fast-enabled ports 2-597
state information display 2-519
MTU
configuring size 2-653
displaying global setting 2-528
Multicase Listener Discovery
See MLD
multicast group address, MVR 2-283
multicast groups, MVR 2-281
Multicast Listener Discovery
See MLD
multicast router learning method 2-171
multicast router ports
IPv6 2-195
multicast router ports, configuring 2-171
multicast storm control 2-615
multicast VLAN, MVR 2-280
multicast VLAN registration
See MVR
multiple hosts on authorized port 2-93
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 2-281
configuring 2-280
configuring interfaces 2-283
debug messages, display B-26
displaying 2-496
displaying interface information 2-498
members, displaying 2-500
mvr (global configuration) command 2-280
mvr (interface configuration) command 2-283
mvr vlan group command 2-284
N
native VLANs 2-646
native VLAN tagging 2-685
Network Assistant requirements xx
nonegotiate
DTP messaging 2-631
nonegotiate, speed 2-607
non-IP protocols
denying 2-77
forwarding 2-298
non-IP traffic access lists 2-212
non-IP traffic forwarding
denying 2-77
permitting 2-298
normal-range VLANs 2-668, 2-674
note, description xx
no vlan command 2-668, 2-678
P
PAgP
See EtherChannel
pagp learn-method command 2-286
pagp port-priority command 2-288
password, VTP 2-694, 2-698
password-recovery mechanism, enabling and disabling 2-333
permit (ARP access-list configuration) command 2-290
permit (IPv6) command 2-292
permit (MAC access-list configuration) command 2-298
per-VLAN spanning-tree plus
See STP
physical-port learner 2-286
PID, displaying 2-413
PIM-DVMRP, as multicast router learning method 2-171
PoE
configuring the power budget 2-313
configuring the power management mode 2-310
displaying controller register values 2-375
displaying power management information 2-512
logging of status 2-207
police aggregate command 2-303
police command 2-301
policed-DSCP map 2-246
policy-map command 2-305
policy maps
applying to an interface 2-335, 2-340
creating 2-305
displaying 2-507
hierarchical 2-306
policers
displaying 2-480
for a single class 2-301
for multiple classes 2-240, 2-303
policed-DSCP map 2-246
traffic classification
defining the class 2-34
defining trust states 2-661
setting DSCP or IP precedence values 2-338
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 2-3
debug messages, display B-7
enabling IEEE 802.1x
globally 2-80
per interface 2-99
guest VLAN 2-91
host modes 2-93
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-95
manual control of authorization state 2-99
multiple hosts on authorized port 2-93
periodic re-authentication
enabling 2-103
time between attempts 2-104
quiet period between failed authentication exchanges 2-104
re-authenticating IEEE 802.1x-enabled ports 2-101
resetting configurable IEEE 802.1x parameters 2-90
switch-to-authentication server retransmission time 2-104
switch-to-client frame-retransmission number2-96to 2-97
switch-to-client retransmission time 2-104
port-channel load-balance command 2-308
Port Fast, for spanning tree 2-599
port ranges, defining 2-67
ports, debugging B-70
ports, protected 2-644
port security
aging 2-638
debug messages, display B-72
enabling 2-633
violation error recovery 2-110
port trust states for QoS 2-272
port types, MVR 2-283
power information, displaying 2-388
power inline command 2-310
power inline consumption command 2-313
Power over Ethernet
See PoE
priority-queue command 2-315
private-vlan command 2-317
private-vlan mapping command 2-320
private VLANs
association 2-642
configuring 2-317
configuring ports 2-629
displaying 2-534
host ports 2-629
mapping
configuring 2-642
displaying 2-401
promiscuous ports 2-629
privileged EXEC mode 1-2, 1-3
product identification information, displaying 2-413
promiscuous ports, private VLANs 2-629
protected ports, displaying 2-407
pruning
VLANs 2-646
VTP
displaying interface information 2-401
enabling 2-694, 2-698
pruning-eligible VLAN list 2-648
PVST+
See STP
Q
QoS
auto-QoS
configuring 2-17
debug messages, display 1-6, B-2
displaying 2-350
class maps
creating 2-36
defining the match criteria 2-234
displaying 2-359
defining the CoS value for an incoming packet 2-242
displaying configuration information 2-350, 2-479
DSCP transparency 2-254
DSCP trusted ports
applying DSCP-to-DSCP-mutation map to 2-244
defining DSCP-to-DSCP-mutation map 2-246
egress queues
allocating buffers 2-250
defining the CoS output queue threshold map 2-268
defining the DSCP output queue threshold map 2-270
displaying buffer allocations 2-483
displaying CoS output queue threshold map 2-487
displaying DSCP output queue threshold map 2-487
displaying queueing strategy 2-483
displaying queue-set settings 2-490
enabling bandwidth shaping and scheduling 2-611
enabling bandwidth sharing and scheduling 2-613
limiting the maximum output on a port 2-609
mapping a port to a queue-set 2-322
mapping CoS values to a queue and threshold 2-268
mapping DSCP values to a queue and threshold 2-270
setting maximum and reserved memory allocations 2-252
setting WTD thresholds 2-252
enabling 2-238
ingress queues
allocating buffers 2-258
assigning SRR scheduling weights 2-256
defining the CoS input queue threshold map 2-260
defining the DSCP input queue threshold map 2-262
displaying buffer allocations 2-483
displaying CoS input queue threshold map 2-487
displaying DSCP input queue threshold map 2-487
displaying queueing strategy 2-483
displaying settings for 2-481
enabling the priority queue 2-264
mapping CoS values to a queue and threshold 2-260
mapping DSCP values to a queue and threshold 2-262
setting WTD thresholds 2-266
maps
defining 2-246, 2-260, 2-262, 2-268, 2-270
displaying 2-487
policy maps
applying an aggregate policer 2-303
applying to an interface 2-335, 2-340
creating 2-305
defining policers 2-240, 2-301
displaying policers 2-480
displaying policy maps 2-507
hierarchical 2-306
policed-DSCP map 2-246
setting DSCP or IP precedence values 2-338
traffic classifications 2-34
trust states 2-661
port trust states 2-272
queues, enabling the expedite 2-315
statistics
in-profile and out-of-profile packets 2-483
packets enqueued or dropped 2-483
sent and received CoS values 2-483
sent and received DSCP values 2-483
trusted boundary for IP phones 2-272
VLAN-based 2-274
quality of service
See QoS
querytime, MVR 2-280
queue-set command 2-322
R
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
rcommand command 2-323
re-authenticating IEEE 802.1x-enabled ports 2-101
re-authentication
periodic 2-103
time between attempts 2-104
receiver ports, MVR 2-283
receiving flow-control packets 2-114
recovery mechanism
causes 2-110
display 2-356, 2-390, 2-394
timer interval 2-111
redundancy for cluster switches 2-64
remote-span command 2-325
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command A-17
renew ip dhcp snooping database command 2-327
requirements
cluster xxi
device manager xx
Network Assistant xx
reset (boot loader) command A-18
reset command 2-683
resource templates, displaying 2-514
restricted VLAN
See dot1x auth-fail vlan
rmdir (boot loader) command A-19
rmon collection stats command 2-329
root guard, for spanning tree 2-572
routed ports
IP addresses on 2-126
number supported 2-126
RSPAN
configuring 2-275
displaying 2-493
filter RSPAN traffic 2-275
remote-span command 2-325
sessions
add interfaces to 2-275
displaying 2-493
start new 2-275
S
sdm prefer command 2-330
SDM templates
allowed resources 2-331
displaying 2-514
dual IPv4 and IPv6 2-330
secure ports, limitations 2-635
sending flow-control packets 2-114
service password-recovery command 2-333
service-policy command 2-335
set (boot loader) command A-20
set command 2-338
setup command 2-340
setup express command 2-343
show access-lists command 2-345
show archive status command 2-348
show arp access-list command 2-349
show auto qos command 2-350
show boot command 2-354
show cable-diagnostics tdr command 2-356
show changes command 2-683
show class-map command 2-359
show cluster candidates command 2-362
show cluster command 2-360
show cluster members command 2-364
show controllers cpu-interface command 2-366
show controllers ethernet-controller command 2-368
show controllers power inline command 2-375
show controllers tcam command 2-377
show controller utilization command 2-379
show current command 2-683
show dot1q-tunnel command 2-381
show dot1x command 2-382
show dtp 2-386
show env command 2-388
show errdisable detect command 2-390
show errdisable flap-values command 2-392
show errdisable recovery command 2-394
show etherchannel command 2-396
show flowcontrol command 2-399
show interfaces command 2-401
show interfaces counters command 2-411
show inventory command 2-413
show ip arp inspection command 2-414
show ipc command 2-436
show ip dhcp snooping binding command 2-418
show ip dhcp snooping command 2-417
show ip dhcp snooping database command 2-420
show ip igmp profile command 2-422
show ip igmp snooping address command 2-444
show ip igmp snooping command 2-423, 2-442
show ip igmp snooping groups command 2-426
show ip igmp snooping mrouter command 2-428, 2-446
show ip igmp snooping querier command 2-430, 2-448
show ip source binding command 2-432
show ipv6 access-list command 2-440
show ip verify source command 2-434
show l2protocol-tunnel command 2-450
show lacp command 2-453
show mac access-group command 2-457
show mac address-table address command 2-461
show mac address-table aging time command 2-463
show mac address-table command 2-459
show mac address-table count command 2-465
show mac address-table dynamic command 2-467
show mac address-table interface command 2-469
show mac address-table move update command 2-471
show mac address-table notification command 2-46, 2-473, B-23
show mac address-table static command 2-475
show mac address-table vlan command 2-477
show mls qos aggregate-policer command 2-480
show mls qos command 2-479
show mls qos input-queue command 2-481
show mls qos interface command 2-483
show mls qos maps command 2-487
show mls qos queue-set command 2-490
show mls qos vlan command 2-492
show monitor command 2-493
show mvr command 2-496
show mvr interface command 2-498
show mvr members command 2-500
show pagp command 2-502
show parser macro command 2-504
show platform acl command C-2
show platform backup interface command C-3
show platform configuration command C-4
show platform etherchannel command C-5
show platform forward command C-6
show platform frontend-controller command C-8
show platform igmp snooping command C-9
show platform ip multicast command C-11
show platform ip unicast command C-12
show platform ipv6 unicast command C-16
show platform layer4op command C-18
show platform mac-address-table command C-19
show platform messaging command C-20
show platform monitor command C-21
show platform mvr table command C-22
show platform pm command C-23
show platform port-asic command C-24
show platform port-security command C-29
show platform qos command C-30
show platform resource-manager command C-31
show platform snmp counters command C-33
show platform spanning-tree command C-34
show platform stp-instance command C-35
show platform tcam command C-36
show platform vlan command C-39
show policy-map command 2-507
show port security command 2-509
show power inline command 2-512
show proposed command 2-683
show sdm prefer command 2-514
show setup express command 2-518
show spanning-tree command 2-519
show storm-control command 2-526
show system mtu command 2-528
show trust command 2-661
show udld command 2-529
show version command 2-532
show vlan access-map command 2-539
show vlan command 2-534
show vlan command, fields 2-536
show vlan filter command 2-540
show vmps command 2-541
show vtp command 2-544
shutdown command 2-549
shutdown threshold, Layer 2 protocol tunneling 2-199
shutdown vlan command 2-550
Smartports macros
See macros
SNMP host, specifying 2-555
SNMP informs, enabling the sending of 2-551
snmp-server enable traps command 2-551
snmp-server host command 2-555
snmp trap mac-notification command 2-559
SNMP traps
enabling MAC address notification trap 2-559
enabling the MAC address notification feature 2-217
enabling the sending of 2-551
SoftPhone
See Cisco SoftPhone
software images
deleting 2-69
downloading 2-7
upgrading 2-7
uploading 2-13
software version, displaying 2-532
source ports, MVR 2-283
SPAN
configuring 2-275
debug messages, display B-24
displaying 2-493
filter SPAN traffic 2-275
sessions
add interfaces to 2-275
displaying 2-493
start new 2-275
spanning 2-601
spanning-tree backbonefast command 2-561
spanning-tree bpdufilter command 2-562
spanning-tree bpduguard command 2-564
spanning-tree cost command 2-566
spanning-tree etherchannel command 2-568
spanning-tree extend system-id command 2-570
spanning-tree guard command 2-572
spanning-tree link-type command 2-574
spanning-tree loopguard default command 2-576
spanning-tree mode command 2-578
spanning-tree mst configuration command 2-580
spanning-tree mst cost command 2-582
spanning-tree mst forward-time command 2-584
spanning-tree mst hello-time command 2-585
spanning-tree mst max-age command 2-586
spanning-tree mst max-hops command 2-587
spanning-tree mst port-priority command 2-589
spanning-tree mst pre-standard command 2-591
spanning-tree mst priority command 2-592
spanning-tree mst root command 2-593
spanning-tree portfast (global configuration) command 2-597
spanning-tree portfast (interface configuration) command 2-599
spanning-tree port-priority command 2-595
Spanning Tree Protocol
See STP
spanning-tree transmit hold-count command 2-601
spanning-tree uplinkfast command 2-602
spanning-tree vlan command 2-604
speed command 2-607
srr-queue bandwidth limit command 2-609
srr-queue bandwidth shape command 2-611
srr-queue bandwidth share command 2-613
SSH, configuring version 2-177
static-access ports, configuring 2-620
statistics, Ethernet group 2-329
sticky learning, enabling 2-633
storm-control command 2-615
STP
BackboneFast 2-561
counters, clearing 2-50
debug messages, display
BackboneFast events B-76
MSTP B-79
optimized BPDUs handling B-78
spanning-tree activity B-74
switch shim B-81
transmitted and received BPDUs B-77
UplinkFast B-83
detection of indirect link failures 2-561
enabling protocol tunneling for 2-199
EtherChannel misconfiguration 2-568
extended system ID 2-570
path cost 2-566
protocol modes 2-578
root port
accelerating choice of new 2-602
loop guard 2-572
preventing from becoming designated 2-572
restricting which can be root 2-572
root guard 2-572
UplinkFast 2-602
root switch
affects of extended system ID 2-570, 2-605
hello-time 2-604
interval between BDPU messages 2-604
interval between hello BPDU messages 2-604
max-age 2-604
port priority for selection of 2-595
primary or secondary 2-604
switch priority 2-604
state changes
blocking to forwarding state 2-599
enabling BPDU filtering 2-562, 2-597
enabling BPDU guard 2-564, 2-597
enabling Port Fast 2-597, 2-599
enabling timer to recover from error state 2-110
forward-delay time 2-604
length of listening and learning states 2-604
shutting down Port Fast-enabled ports 2-597
state information display 2-519
VLAN options 2-592, 2-604
SVIs, creating 2-120
Switched Port Analyzer
See SPAN
switching characteristics
modifying 2-618
returning to interfaces 2-618
switchport access command 2-620
switchport backup interface command 2-622
switchport block command 2-624
switchport command 2-618
switchport host command 2-625
switchport mode command 2-626
switchport mode private-vlan command 2-629
switchport nonegotiate command 2-631
switchport port-security aging command 2-638
switchport port-security command 2-633
switchport priority extend command 2-640
switchport private-vlan command 2-642
switchport protected command 2-644
switchports, displaying 2-401
switchport trunk command 2-646
switchport voice vlan command 2-649
system env temperature threshold yellow command 2-651
system message logging 2-207
system message logging, save message to flash 2-208
system mtu command 2-653
system resource templates 2-330
T
tar files, creating, listing, and extracting 2-10
TDR, running 2-655
Telnet, using to communicate to cluster switches 2-323
temperature information, displaying 2-388
templates, system resources 2-330
test cable-diagnostics tdr command 2-655
traceroute mac command 2-656
traceroute mac ip command 2-659
trunking, VLAN mode 2-626
trunk mode 2-626
trunk ports 2-626
trunks, to non-DTP device 2-627
trusted boundary for QoS 2-272
trusted port states for QoS 2-272
tunnel ports, Layer 2 protocol, displaying 2-450
type (boot loader) command A-23
U
UDLD
aggressive mode 2-663, 2-665
debug messages, display B-92
enable globally 2-663
enable per interface 2-665
error recovery timer 2-110
message timer 2-663
normal mode 2-663, 2-665
reset a shutdown interface 2-667
status 2-529
udld command 2-663
udld port command 2-665
udld reset command 2-667
unicast storm control 2-615
UniDirectional Link Detection
See UDLD
unknown multicast traffic, preventing 2-624
unknown unicast traffic, preventing 2-624
unset (boot loader) command A-24
upgrading
software images 2-7
monitoring status of 2-348
upgrading information
See release notes
UplinkFast, for STP 2-602
user EXEC mode 1-2, 1-3
V
version (boot loader) command A-26
VLAN
enabling guest VLAN supplicant 2-83
vlan (global configuration) command 2-668
vlan (VLAN configuration) command 2-674
vlan access-map command 2-680
VLAN access map configuration mode 2-680
VLAN access maps
actions 2-5
displaying 2-539
VLAN-based QoS 2-274
VLAN configuration
rules 2-671, 2-676
saving 2-668, 2-678
VLAN configuration mode
commands
VLAN 2-674
VTP 2-698
description 1-5
entering 2-682
summary 1-2
vlan database command 2-682
vlan dot1q tag native command 2-685
vlan filter command 2-687
VLAN filters, displaying 2-540
VLAN ID range 2-668, 2-674
VLAN maps
applying 2-687
creating 2-680
defining 2-232
displaying 2-539
VLAN Query Protocol
See VQP
VLANs
adding 2-668
configuring 2-668, 2-674
debug messages, display
ISL B-88
VLAN IOS file system error tests B-86
VLAN manager activity B-84
VTP B-90
displaying configurations 2-534
extended-range 2-668
MAC addresses
displaying 2-477
number of 2-465
media types 2-671, 2-676
normal-range 2-668, 2-674
private 2-629
configuring 2-317
displaying 2-534
See also private VLANs
restarting 2-550
saving the configuration 2-668
shutting down 2-550
SNMP traps for VTP 2-553, 2-556
suspending 2-550
variables 2-674
VLAN Trunking Protocol
See VTP
VMPS
configuring servers 2-692
displaying 2-541
error recovery timer 2-111
reconfirming dynamic VLAN assignments 2-689
vmps reconfirm (global configuration) command 2-690
vmps reconfirm (privileged EXEC) command 2-689
vmps retry command 2-691
vmps server command 2-692
voice VLAN
configuring 2-649
setting port priority 2-640
VQP
and dynamic-access ports 2-621
clearing client statistics 2-52
displaying information 2-541
per-server retry count 2-691
reconfirmation interval 2-690
reconfirming dynamic VLAN assignments 2-689
VTP
changing characteristics 2-694
clearing pruning counters 2-53
configuring
domain name 2-694, 2-698
file name 2-694
mode 2-694, 2-698
password 2-694, 2-698
counters display fields 2-545
displaying information 2-544
enabling
pruning 2-694, 2-698
tunneling for 2-199
Version 2 2-694, 2-698
mode 2-694, 2-698
pruning 2-694, 2-698
saving the configuration 2-668, 2-678
statistics 2-544
status 2-544
status display fields 2-547
vtp (global configuration) command 2-694
vtp (VLAN configuration) command 2-698