Index
A
aaa accounting dot1x command
2-1
aaa authentication dot1x command
2-3
aaa authorization network command
2-5, 2-28, 2-34, 2-36, 2-38, 2-40, 2-42, 2-131, 2-292, 2-474, B-7, B-35
AAA methods
2-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP
2-178
MAC, displaying
2-587
access list, IPv6
2-248
access map configuration mode
2-316
access mode
2-763
access ports
2-763
ACEs
2-116, 2-385
ACLs
deny
2-114
displaying
2-452
for non-IP protocols
2-296
IP
2-178
matching
2-316
on Layer 2 interfaces
2-178
permit
2-383
action command
2-6
address aliasing
2-366
aggregate-port learner
2-371
alarm command
2-12
alarm facility fcs-hysteresis command
2-8
alarm facility power-supply command
2-9
alarm facility temperature command
2-10
alarm IDs
2-13, 2-455
alarm profile
attaching to a port
2-14
creating
2-12
displaying
2-456
alarm profile (global configuration) command
2-12
alarm profile (interface configuration) command
2-14
alarm profile configuration mode
2-12
allowed VLANs
2-779
archive download-sw command
2-16
archive tar command
2-19
archive upload-sw command
2-22
arp access-list command
2-24
authentication command bounce-port ignore
2-26
authentication command disable-port ignore
2-27
authentication control-direction command
2-28
authentication event command
2-30
authentication failed VLAN
See dot1x auth-fail vlan
authentication fallback command
2-34
authentication host-mode command
2-36
authentication mac-move permit command
2-38
authentication open command
2-40
authentication order command
2-42
authentication periodic command
2-44
authentication port-control command
2-46
authentication priority command
2-48
authentication timer command
2-50
authentication violation command
2-52
auth-fail max-attempts
See dot1x auth-fail max-attempts
auth-fail vlan
See dot1x auth-fail vlan
auth open command
2-40
auth order command
2-42
authorization state of controlled port
2-148
auth timer command
2-50
autonegotiation of duplex mode
2-159
auto qos voip command
2-54
B
BackboneFast, for STP
2-693
backup interfaces
configuring
2-756
displaying
2-524
boot (boot loader) command
A-2
boot config-file command
2-58
boot helper command
2-59
boot helper-config file command
2-60
booting
Cisco IOS image
2-63
displaying environment variables
2-469
manually
2-61
boot loader
accessing
A-1
booting
Cisco IOS image
A-2
helper image
2-59
directories
creating
A-14
displaying a list of
A-7
removing
A-19
displaying
available commands
A-12
memory heap utilization
A-13
version
A-26
environment variables
described
A-20
displaying settings
A-20
location of
A-21
setting
A-20
unsetting
A-24
files
copying
A-5
deleting
A-6
displaying a list of
A-7
displaying the contents of
A-4, A-15, A-23
renaming
A-17
file system
formatting
A-10
initializing flash
A-9
running a consistency check
A-11
resetting the system
A-18
boot manual command
2-61
boot private-config-file command
2-62
boot system command
2-63
BPDU filtering, for spanning tree
2-694, 2-729
BPDU guard, for spanning tree
2-696, 2-729
broadcast storm control
2-747
C
candidate switches
See clusters
cat (boot loader) command
A-4
channel-group command
2-64
channel-protocol command
2-67
Cisco SoftPhone
auto-QoS configuration
2-54
trusting packets sent from
2-358
CISP
See Client Information Signalling Protocol
cisp
debug platform cisp command
B-35
cisp enable command
2-68
class command
2-69
class-map command
2-71
class maps
creating
2-71
defining the match criteria
2-318
displaying
2-475
class of service
See CoS
clear dot1x command
2-73
clear eap sessions command
2-74
clear errdisable interface
2-75
clear ip arp inspection log command
2-76
clear ip arp inspection statistics command
2-77
clear ipc command
2-80
clear ip dhcp snooping database command
2-78
clear ipv6 dhcp conflict command
2-81
clear l2protocol-tunnel counters command
2-82
clear lacp command
2-83
clear mac address-table command
2-84, 2-85
clear pagp command
2-86, 2-89
clear port-security command
2-87
clear spanning-tree counters command
2-90
clear spanning-tree detected-protocols command
2-91
clear vmps statistics command
2-92
clear vtp counters command
2-93
Client Information Signalling Protocol
2-68, 2-131, 2-474, B-7, B-35
cluster commander-address command
2-94
cluster discovery hop-count command
2-96
cluster enable command
2-97
cluster holdtime command
2-98
cluster member command
2-99
cluster outside-interface command
2-101
cluster run command
2-102
clusters
adding candidates
2-99
binding to HSRP group
2-103
building manually
2-99
communicating with
devices outside the cluster
2-101
members by using Telnet
2-414
debug messages, display
B-8
displaying
candidate switches
2-478
debug messages
B-8
member switches
2-480
status
2-476
hop-count limit for extended discovery
2-96
HSRP standby groups
2-103
redundancy
2-103
SNMP trap
2-684
cluster standby-group command
2-103
cluster timer command
2-105
command modes defined
1-1
command switch
See clusters
configuration files
password recovery disable considerations
A-1
specifying the name
2-58, 2-62
configuring multiple interfaces
2-174
config-vlan mode
commands
2-801
copy (boot loader) command
A-5
CoS
assigning default value to incoming packets
2-328
assigning to Layer 2 protocol packets
2-276
overriding the incoming value
2-328
CoS-to-DSCP map
2-332
CPU ASIC statistics, displaying
2-482
crashinfo files
2-166
critical VLAN
2-31
D
debug authentication
B-2
debug auto qos command
B-4
debug backup command
B-6
debug cisp command
B-7
debug cluster command
B-8
debug dot1x command
B-10
debug dtp command
B-11
debug eap command
B-12
debug etherchannel command
B-13
debug ilpower command
B-14
debug interface command
B-15
debug ip dhcp snooping command
B-16
debug ip igmp filter command
B-18
debug ip igmp max-groups command
B-19
debug ip igmp snooping command
B-20
debug ip verify source packet command
B-17
debug lacp command
B-21
debug lldp packets command
B-22
debug mac-notification command
B-23
debug matm command
B-24
debug matm move update command
B-25
debug monitor command
B-26
debug mvrdbg command
B-28
debug nmsp command
B-29
debug nvram command
B-30
debug pagp command
B-31
debug platform acl command
B-32
debug platform backup interface command
B-34
debug platform cisp command
B-35
debug platform configuration command
B-41
debug platform cpu-queues command
B-36
debug platform dot1x command
B-38
debug platform etherchannel command
B-39
debug platform forw-tcam command
B-40
debug platform ip arp inspection command
B-42
debug platform ip dhcp command
B-43
debug platform ip igmp snooping command
B-44
debug platform ip source-guard command
B-46
debug platform led command
B-47
debug platform matm command
B-48
debug platform messaging application command
B-49
debug platform phy command
B-50
debug platform pm command
B-52
debug platform port-asic command
B-54
debug platform port-security command
B-55
debug platform qos-acl-tcam command
B-56
debug platform remote-commands command
B-57
debug platform resource-manager command
B-58
debug platform snmp command
B-59
debug platform span command
B-60
debug platform supervisor-asic command
B-61
debug platform sw-bridge command
B-62
debug platform tcam command
B-63
debug platform udld command
B-65
debug platform vlan command
B-66
debug pm command
B-67
debug port-security command
B-69
debug qos-manager command
B-70
debug spanning-tree backbonefast command
B-73
debug spanning-tree bpdu command
B-74
debug spanning-tree bpdu-opt command
B-75
debug spanning-tree command
B-71
debug spanning-tree mstp command
B-76
debug spanning-tree switch command
B-78
debug spanning-tree uplinkfast command
B-80
debug sw-vlan command
B-81
debug sw-vlan ifs command
B-83
debug sw-vlan notification command
B-84
debug sw-vlan vtp command
B-86
debug udld command
B-88
debug vqpc command
B-90
defaultPort profile
2-13, 2-14
define interface-range command
2-106
delete (boot loader) command
A-6
delete command
2-108
deny (ARP access-list configuration) command
2-109
deny (IPv6) command
2-111
deny command
2-114
detect mechanism, causes
2-160
DHCP snooping
accepting untrusted packets from edge switch
2-206
enabling
on a VLAN
2-213
option 82
2-204, 2-206
trust on an interface
2-211
error recovery timer
2-163
rate limiting
2-210
DHCP snooping binding database
binding file, configuring
2-202
bindings
adding
2-200
deleting
2-200
displaying
2-541
clearing database agent statistics
2-78
database agent, configuring
2-202
displaying
binding entries
2-541
database agent status
2-544, 2-546
renewing
2-418
dir (boot loader) command
A-7
directories, deleting
2-108
domain name, VTP
2-814
dot1x auth-fail max-attempts
2-125
dot1x auth-fail vlan
2-127
dot1x command
2-123
dot1x control-direction command
2-129
dot1x credentials (global configuration) command
2-131
dot1x critical global configuration command
2-132
dot1x critical interface configuration command
2-134
dot1x default command
2-136
dot1x fallback command
2-137
dot1x guest-vlan command
2-138
dot1x host-mode command
2-140
dot1x initialize command
2-142
dot1x mac-auth-bypass command
2-143
dot1x max-reauth-req command
2-145
dot1x max-req command
2-146
dot1x pae command
2-147
dot1x port-control command
2-148
dot1x re-authenticate command
2-150
dot1x reauthentication command
2-151
dot1x supplicant force-multicast command
2-152
dot1x test eapol-capable command
2-153
dot1x test timeout command
2-154
dot1x timeout command
2-155
dot1x violation-mode command
2-157
dropping packets, with ACL matches
2-6
drop threshold, Layer 2 protocol tunneling
2-273
DSCP-to-CoS map
2-332
DSCP-to-DSCP-mutation map
2-332
DTP
2-764
DTP flap
error detection for
2-160
error recovery timer
2-163
DTP negotiation
2-766
dual-purpose uplink ports
selecting the type
2-322
duplex command
2-158
dynamic-access ports
configuring
2-752
restrictions
2-753
dynamic ARP inspection
ARP ACLs
apply to a VLAN
2-186
define
2-24
deny packets
2-109
display
2-460
permit packets
2-375
clear
log buffer
2-76
statistics
2-77
display
ARP ACLs
2-460
configuration and operating state
2-536
log buffer
2-536
statistics
2-536
trust state and rate limit
2-536
enable per VLAN
2-196
error detection for
2-160
log buffer
clear
2-76
configure
2-190
display
2-536
rate-limit incoming ARP packets
2-188
statistics
clear
2-77
display
2-536
trusted interface state
2-192
type of packet logged
2-197
validation checks
2-194
dynamic auto VLAN membership mode
2-763
dynamic desirable VLAN membership mode
2-763
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame
maximum number to send
2-146
response time before retransmitting
2-155
environmental alarms, displaying
2-458
environment variables, displaying
2-469
errdisable detect cause command
2-160
errdisable recovery command
2-163
error conditions, displaying
2-512
error disable detection
2-160
error-disabled interfaces, displaying
2-524
EtherChannel
assigning Ethernet interface to channel group
2-64
creating port-channel logical interface
2-172
debug EtherChannel/PAgP, display
B-13
debug platform-specific events, display
B-39
displaying
2-515
enabling Layer 2 protocol tunneling for
LACP
2-274
PAgP
2-274
UDLD
2-274
interface information, displaying
2-524
LACP
clearing channel-group information
2-83
debug messages, display
B-21
displaying
2-579
modes
2-64
port priority for hot-standby ports
2-277
restricting a protocol
2-67
system priority
2-279
load-distribution methods
2-393
PAgP
aggregate-port learner
2-371
clearing channel-group information
2-86
debug messages, display
B-31
displaying
2-634
error detection for
2-160
error recovery timer
2-163
learn method
2-371
modes
2-64
physical-port learner
2-371
priority of interface for transmitted traffic
2-373
Ethernet controller, internal register display
2-484
Ethernet statistics, collecting
2-435
exception crashinfo command
2-166
extended discovery of candidate switches
2-96
extended-range VLANs
and allowed VLAN list
2-779
and pruning-eligible list
2-779
configuring
2-800
extended system ID for STP
2-702
F
facility alarm relays, displaying
2-518
facility alarm status, displaying
2-519
fallback profile command
2-167
fallback profiles, displaying
2-520
FCS bit error rate
displaying
2-521
fluctuation threshold
2-8
setting
2-169
FCS hysteresis threshold
2-8
fcs-threshold command
2-169
file name, VTP
2-814
files, deleting
2-108
flash_init (boot loader) command
A-9
flexible authentication ordering
2-42
Flex Links
configuring
2-756
configuring preferred VLAN
2-758
displaying
2-524
flowcontrol command
2-170
format (boot loader) command
A-10
forwarding packets, with ACL matches
2-6
forwarding results, display
C-6
frame check sequence
See FCS
frame forwarding information, displaying
C-6
fsck (boot loader) command
A-11
G
global configuration mode
1-2, 1-3
H
hardware ACL statistics
2-452
help (boot loader) command
A-12
hierarchical policy maps
2-391
hop-count limit for clusters
2-96
host connection, port configuration
2-762
Hot Standby Router Protocol
See HSRP
HSRP
binding HSRP group to cluster
2-103
standby group
2-103
I
IEEE 802.1Q tunnel ports
displaying
2-499
limitations
2-764
IEEE 802.1x
and switchport modes
2-764
violation error recovery
2-163
See also port-based authentication
IEEE 802.1X Port Based Authentication
enabling guest VLAN supplicant
2-126, 2-137, 2-168
IGMP filters
applying
2-216
debug messages, display
B-18
IGMP groups, setting maximum
2-218
IGMP maximum groups, debugging
B-19
IGMP profiles
creating
2-220
displaying
2-549
IGMP snooping
adding ports as a static member of a group
2-236
displaying
2-550
enabling
2-222
enabling the configurable-leave timer
2-224
enabling the Immediate-Leave feature
2-233
flooding query count
2-230
interface topology change notification behavior
2-232
querier
2-226
query solicitation
2-230
report suppression
2-228
switch topology change notification behavior
2-230
images
See software images
Immediate-Leave feature, MVR
2-368
immediate-leave processing
2-233
Immediate-Leave processing, IPv6
2-269
interface configuration mode
1-2, 1-4
interface port-channel command
2-172
interface range command
2-174
interface-range macros
2-106
interfaces
assigning Ethernet interface to channel group
2-64
configuring
2-158
configuring multiple
2-174
creating port-channel logical
2-172
debug messages, display
B-15
disabling
2-681
displaying the MAC address table
2-598
restarting
2-681
interface speed, configuring
2-739
interface vlan command
2-176
internal registers, displaying
2-484, 2-493
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for
2-160
error recovery timer
2-163
ip access-group command
2-178
ip address command
2-181
IP addresses, setting
2-181
IP address matching
2-316
ip admission command
2-183
ip admission name proxy http command
2-184
ip arp inspection filter vlan command
2-186
ip arp inspection limit command
2-188
ip arp inspection log-buffer command
2-190
ip arp inspection trust command
2-192
ip arp inspection validate command
2-194
ip arp inspection vlan command
2-196
ip arp inspection vlan logging command
2-197
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command
2-200
ip dhcp snooping command
2-199
ip dhcp snooping database command
2-202
ip dhcp snooping information option allow-untrusted command
2-206
ip dhcp snooping information option command
2-204
ip dhcp snooping information option format remote-id command
2-208
ip dhcp snooping limit rate command
2-210
ip dhcp snooping trust command
2-211
ip dhcp snooping verify command
2-212
ip dhcp snooping vlan command
2-213
ip dhcp snooping vlan information option format-type circuit-id string command
2-214
ip igmp filter command
2-216
ip igmp max-groups command
2-218, 2-242, 2-244
ip igmp profile command
2-220
ip igmp snooping command
2-222
ip igmp snooping last-member-query-interval command
2-224
ip igmp snooping querier command
2-226
ip igmp snooping report-suppression command
2-228
ip igmp snooping tcn command
2-230
ip igmp snooping tcn flood command
2-232
ip igmp snooping vlan immediate-leave command
2-233
ip igmp snooping vlan mrouter command
2-234
ip igmp snooping vlan static command
2-236
IP multicast addresses
2-365
IP phones
auto-QoS configuration
2-54
trusting packets sent from
2-358
IP-precedence-to-DSCP map
2-332
ip source binding command
2-238
IP source guard
disabling
2-246
displaying
binding entries
2-557
configuration
2-558
dynamic binding entries only
2-541
enabling
2-246
static IP source bindings
2-238
ip ssh command
2-240
IPv6 access list, deny conditions
2-111
ipv6 access-list command
2-248
ipv6 address dhcp command
2-251
ipv6 dhcp client request vendor command
2-252
ipv6 dhcp ping packets command
2-253
ipv6 dhcp pool command
2-255
ipv6 dhcp server command
2-257
ipv6 mld snooping command
2-259
ipv6 mld snooping last-listener-query count command
2-261
ipv6 mld snooping last-listener-query-count command
2-261
ipv6 mld snooping last-listener-query-interval command
2-263
ipv6 mld snooping listener-message-suppression command
2-265
ipv6 mld snooping robustness-variable command
2-266
ipv6 mld snooping tcn command
2-268
ipv6 mld snooping vlan command
2-269
IPv6 SDM template
2-436
ipv6 traffic-filter command
2-271
ip verify source command
2-246
J
jumbo frames
See MTU
L
l2protocol-tunnel command
2-273
l2protocol-tunnel cos command
2-276
LACP
See EtherChannel
lacp port-priority command
2-277
lacp system-priority command
2-279
Layer 2 mode, enabling
2-750
Layer 2 protocol ports, displaying
2-576
Layer 2 protocol tunnel counters
2-82
Layer 2 protocol tunneling error recovery
2-274
Layer 2 traceroute
IP addresses
2-791
MAC addresses
2-788
Layer 3 mode, enabling
2-750
line configuration mode
1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for
2-160
error recovery timer
2-163
link state group command
2-285
link state track command
2-287
load-distribution methods for EtherChannel
2-393
location (global configuration) command
2-281
location (interface configuration) command
2-283
logging event command
2-288
logging event power-inline-status command
2-289
logging file command
2-290
logical interface
2-172
loopback error
detection for
2-160
recovery timer
2-163
loop guard, for spanning tree
2-704, 2-708
M
mab request format attribute 32 command
2-292
mac access-group command
2-294
MAC access list configuration mode
2-296
mac access-list extended command
2-296
MAC access lists
2-114
MAC addresses
disabling MAC address learning per VLAN
2-299
displaying
aging time
2-592
all
2-590
dynamic
2-596
MAC address-table move updates
2-601
notification settings
2-600, 2-603
number of addresses in a VLAN
2-594
per interface
2-598
per VLAN
2-607
static
2-605
static and dynamic entries
2-588
dynamic
aging time
2-298
deleting
2-84
displaying
2-596
enabling MAC address notification
2-303
enabling MAC address-table move update
2-301
matching
2-316
static
adding and removing
2-305
displaying
2-605
dropping on an interface
2-306
tables
2-590
MAC address notification, debugging
B-23
mac address-table aging-time
2-294
mac address-table aging-time command
2-298
mac address-table learning command
2-299
mac address-table move update command
2-301
mac address-table notification command
2-303
mac address-table static command
2-305
mac address-table static drop command
2-306
macro apply command
2-308
macro description command
2-311
macro global command
2-312
macro global description command
2-315
macros
adding a description
2-311
adding a global description
2-315
applying
2-312
displaying
2-636
interface range
2-106, 2-174
specifying parameter values
2-312
tracing
2-312
maps
QoS
defining
2-332
displaying
2-617
VLAN
creating
2-805
defining
2-316
displaying
2-672
match (access-map configuration) command
2-316
match (class-map configuration) command
2-318
maximum transmission unit
See MTU
mdix auto command
2-321
media-type command
2-322
member switches
See clusters
memory (boot loader) command
A-13
mkdir (boot loader) command
A-14
MLD snooping
configuring
2-265, 2-266
configuring queries
2-261, 2-263
configuring topology change notification
2-268
displaying
2-566, 2-568, 2-572
enabling
2-259
MLD snooping on a VLAN, enabling
2-269
mls qos aggregate-policer command
2-326
mls qos command
2-324
mls qos cos command
2-328
mls qos dscp-mutation command
2-330
mls qos map command
2-332
mls qos queue-set output buffers command
2-336
mls qos queue-set output threshold command
2-338
mls qos rewrite ip dscp command
2-340
mls qos srr-queue input bandwidth command
2-342
mls qos srr-queue input buffers command
2-344
mls qos-srr-queue input cos-map command
2-346
mls qos srr-queue input dscp-map command
2-348
mls qos srr-queue input priority-queue command
2-350
mls qos srr-queue input threshold command
2-352
mls qos-srr-queue output cos-map command
2-354
mls qos srr-queue output dscp-map command
2-356
mls qos trust command
2-358
mls qos vlan-based command
2-360
mode, MVR
2-365
modes, commands
1-1
monitor session command
2-361
more (boot loader) command
A-15
MSTP
displaying
2-655
interoperability
2-91
link type
2-706
MST region
aborting changes
2-712
applying changes
2-712
configuration name
2-712
configuration revision number
2-712
current or pending display
2-712
displaying
2-655
MST configuration mode
2-712
VLANs-to-instance mapping
2-712
path cost
2-714
protocol mode
2-710
restart protocol migration process
2-91
root port
loop guard
2-704
preventing from becoming designated
2-704
restricting which can be root
2-704
root guard
2-704
root switch
affects of extended system ID
2-702
hello-time
2-717, 2-725
interval between BDPU messages
2-718
interval between hello BPDU messages
2-717, 2-725
max-age
2-718
maximum hop count before discarding BPDU
2-719
port priority for selection of
2-721
primary or secondary
2-725
switch priority
2-724
state changes
blocking to forwarding state
2-731
enabling BPDU filtering
2-694, 2-729
enabling BPDU guard
2-696, 2-729
enabling Port Fast
2-729, 2-731
forward-delay time
2-716
length of listening and learning states
2-716
rapid transition to forwarding
2-706
shutting down Port Fast-enabled ports
2-729
state information display
2-654
MTU
configuring size
2-784
displaying global setting
2-662
Multicase Listener Discovery
See MLD
multicast group address, MVR
2-368
multicast groups, MVR
2-366
Multicast Listener Discovery
See MLD
multicast router learning method
2-234
multicast router ports, configuring
2-234
multicast router ports, IPv6
2-269
multicast storm control
2-747
multicast VLAN, MVR
2-365
multicast VLAN registration
See MVR
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing
2-366
configuring
2-365
configuring interfaces
2-368
debug messages, display
B-28
displaying
2-625
displaying interface information
2-627
members, displaying
2-629
mvr (global configuration) command
2-365
mvr (interface configuration) command
2-368
mvr vlan group command
2-369
N
native VLANs
2-779
nonegotiate, speed
2-739
nonegotiating DTP messaging
2-766
non-IP protocols
denying
2-114
forwarding
2-383
non-IP traffic access lists
2-296
non-IP traffic forwarding
denying
2-114
permitting
2-383
normal-range VLANs
2-800
notifies command
2-12
no vlan command
2-800
O
online diagnostics
displaying
configured boot-up coverage level
2-497
current scheduled tasks
2-497
event logs
2-497
supported test suites
2-497
test ID
2-497
test results
2-497
test statistics
2-497
global configuration mode
clearing health monitoring diagnostic test schedule
2-76
setting health monitoring diagnostic testing
2-76
setting up health monitoring diagnostic test schedule
2-76
health monitoring diagnostic tests, configuring
2-117
P
PAgP
See EtherChannel
pagp learn-method command
2-371
pagp port-priority command
2-373
password, VTP
2-815
permit (ARP access-list configuration) command
2-375
permit (IPv6) command
2-377
permit (MAC access-list configuration) command
2-383
per-VLAN spanning-tree plus
See STP
physical-port learner
2-371
PID, displaying
2-534
PIM-DVMRP, as multicast router learning method
2-234
PoE
configuring the power budget
2-398
configuring the power management mode
2-395
displaying controller register values
2-491
displaying power management information
2-644
logging of status
2-289
police aggregate command
2-388
police command
2-386
policed-DSCP map
2-332
policy-map command
2-390
policy maps
applying to an interface
2-441, 2-445
creating
2-390
displaying
2-639
hierarchical
2-391
policers
displaying
2-610
for a single class
2-386
for multiple classes
2-326, 2-388
policed-DSCP map
2-332
traffic classification
defining the class
2-69
defining trust states
2-793
setting DSCP or IP precedence values
2-443
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list
2-3
configuring violation modes
2-157
debug messages, display
B-10
enabling IEEE 802.1x
globally
2-123
per interface
2-148
guest VLAN
2-138
host modes
2-140
IEEE 802.1x AAA accounting methods
2-1
initialize an interface
2-142, 2-154
MAC authentication bypass
2-143
manual control of authorization state
2-148
PAE as authenticator
2-147
periodic re-authentication
enabling
2-151
time between attempts
2-155
quiet period between failed authentication exchanges
2-155
re-authenticating IEEE 802.1x-enabled ports
2-150
resetting configurable IEEE 802.1x parameters
2-136
switch-to-authentication server retransmission time
2-155
switch-to-client frame-retransmission number
2-145 to 2-146
switch-to-client retransmission time
2-155
test for IEEE 802.1x readiness
2-153
port-channel load-balance command
2-393
Port Fast, for spanning tree
2-731
port ranges, defining
2-106
ports, debugging
B-67
ports, protected
2-777
port security
aging
2-773
debug messages, display
B-69
enabling
2-768
violation error recovery
2-163
port trust states for QoS
2-358
port types, MVR
2-368
power inline command
2-395
power inline consumption command
2-398
Power over Ethernet
See PoE
power rps command (user EXEC)
2-400
power supply alarms, setting
2-9
primary temperature alarm
2-10
priority-queue command
2-402
private-vlan command
2-404
private-vlan mapping command
2-407
private VLANs
configuring
2-404
privileged EXEC mode
1-2, 1-3
product identification information, displaying
2-534
pruning
VLANs
2-779
VTP
displaying interface information
2-524
enabling
2-815
pruning-eligible VLAN list
2-780
PVST+
See STP
Q
QoS
auto-QoS
configuring
2-54
debug messages, display
B-4
displaying
2-465
class maps
creating
2-71
defining the match criteria
2-318
displaying
2-475
defining the CoS value for an incoming packet
2-328
displaying configuration information
2-465, 2-609
DSCP transparency
2-340
DSCP trusted ports
applying DSCP-to-DSCP-mutation map to
2-330
defining DSCP-to-DSCP-mutation map
2-332
egress queues
allocating buffers
2-336
defining the CoS output queue threshold map
2-354
defining the DSCP output queue threshold map
2-356
displaying buffer allocations
2-613
displaying CoS output queue threshold map
2-617
displaying DSCP output queue threshold map
2-617
displaying queueing strategy
2-613
displaying queue-set settings
2-620
enabling bandwidth shaping and scheduling
2-743
enabling bandwidth sharing and scheduling
2-745
limiting the maximum output on a port
2-741
mapping a port to a queue-set
2-409
mapping CoS values to a queue and threshold
2-354
mapping DSCP values to a queue and threshold
2-356
setting maximum and reserved memory allocations
2-338
setting WTD thresholds
2-338
enabling
2-324
ingress queues
allocating buffers
2-344
assigning SRR scheduling weights
2-342
defining the CoS input queue threshold map
2-346
defining the DSCP input queue threshold map
2-348
displaying buffer allocations
2-613
displaying CoS input queue threshold map
2-617
displaying DSCP input queue threshold map
2-617
displaying queueing strategy
2-613
displaying settings for
2-611
enabling the priority queue
2-350
mapping CoS values to a queue and threshold
2-346
mapping DSCP values to a queue and threshold
2-348
setting WTD thresholds
2-352
maps
defining
2-332, 2-346, 2-348, 2-354, 2-356
displaying
2-617
policy maps
applying an aggregate policer
2-388
applying to an interface
2-441, 2-445
creating
2-390
defining policers
2-326, 2-386
displaying policers
2-610
displaying policy maps
2-639
hierarchical
2-391
policed-DSCP map
2-332
setting DSCP or IP precedence values
2-443
traffic classifications
2-69
trust states
2-793
port trust states
2-358
queues, enabling the expedite
2-402
statistics
in-profile and out-of-profile packets
2-613
packets enqueued or dropped
2-613
sent and received CoS values
2-613
sent and received DSCP values
2-613
trusted boundary for IP phones
2-358
VLAN-based
2-360
quality of service
See QoS
querytime, MVR
2-365
queue-set command
2-409
R
radius-server dead-criteria command
2-410
radius-server host command
2-412
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
rcommand command
2-414
re-authenticating IEEE 802.1x-enabled ports
2-150
re-authentication
periodic
2-151
time between attempts
2-155
receiver ports, MVR
2-368
receiving flow-control packets
2-170
recovery mechanism
causes
2-163
display
2-75, 2-471, 2-511, 2-513
timer interval
2-164
redundancy for cluster switches
2-103
redundant power supply
See RPS
relay-major command
2-12
relay-minor command
2-12
remote-span command
2-416
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command
A-17
renew ip dhcp snooping database command
2-418
rep admin vlan command
2-420
rep block port command
2-421
rep lsl-age-timer command
2-424
rep preempt delay command
2-426
rep preempt segment command
2-428
rep segment command
2-429
rep stcn command
2-432
reset (boot loader) command
A-18
resource templates, displaying
2-649
restricted VLAN
See dot1x auth-fail vlan
rmdir (boot loader) command
A-19
rmon collection stats command
2-435
root guard, for spanning tree
2-704
routed ports
IP addresses on
2-182
number supported
2-182
RPS 2300
configuring
2-400
managing
2-400
RSPAN
configuring
2-361
displaying
2-623
filter RSPAN traffic
2-361
remote-span command
2-416
sessions
displaying
2-623
S
sdm prefer command
2-436
SDM templates
displaying
2-649
dual IPv4 and IPv6
2-436
secondary temperature alarm
2-10
secure ports, limitations
2-770
sending flow-control packets
2-170
service password-recovery command
2-439
service-policy command
2-441
set (boot loader) command
A-20
set command
2-443
setup command
2-445
setup express command
2-448
shell trigger command
2-450
show access-lists command
2-452
show alarm description port
2-455
show alarm description port command
2-455
show alarm profile command
2-456
show alarm settings command
2-458
show archive status command
2-459
show arp access-list command
2-460
show authentication command
2-461
show auto qos command
2-465
show boot command
2-469
show cable-diagnostics tdr command
2-471
show cisp command
2-474
show class-map command
2-475
show cluster candidates command
2-478
show cluster command
2-476
show cluster members command
2-480
show controllers cpu-interface command
2-482
show controllers ethernet-controller command
2-484
show controllers power inline command
2-491
show controllers tcam command
2-493
show controller utilization command
2-495
show dot1q-tunnel command
2-499
show dot1x command
2-500
show dtp
2-505
show eap command
2-507
show env command
2-509
show errdisable detect command
2-511
show errdisable flap-values command
2-512
show errdisable recovery command
2-513
show etherchannel command
2-515
show facility-alarm relay command
2-518
show facility-alarm status
2-518
show facility-alarm status command
2-519
show fallback profile command
2-520
show fcs threshold command
2-521
show flowcontrol command
2-523
show interface rep command
2-532
show interfaces command
2-524
show interfaces counters command
2-530
show interfaces rep command
2-532
show inventory command
2-534
show ip arp inspection command
2-536
show ipc command
2-560
show ip dhcp snooping binding command
2-541
show ip dhcp snooping command
2-540
show ip dhcp snooping database command
2-544, 2-546
show ip igmp profile command
2-549
show ip igmp snooping address command
2-568
show ip igmp snooping command
2-550, 2-566
show ip igmp snooping groups command
2-552
show ip igmp snooping mrouter command
2-554, 2-570
show ip igmp snooping querier command
2-555, 2-572
show ip source binding command
2-557
show ipv6 access-list command
2-563
show ipv6 dhcp conflict command
2-565
show ipv6 route updated
2-574
show ip verify source command
2-558
show l2protocol-tunnel command
2-576
show lacp command
2-579
show link state group command
2-585
show location
2-583
show mac access-group command
2-587
show mac address-table address command
2-590
show mac address-table aging time command
2-592
show mac address-table command
2-588
show mac address-table count command
2-594
show mac address-table dynamic command
2-596
show mac address-table interface command
2-598
show mac address-table learning command
2-600
show mac address-table move update command
2-601
show mac address-table notification command
2-85, 2-603, B-25
show mac address-table static command
2-605
show mac address-table vlan command
2-607
show mls qos aggregate-policer command
2-610
show mls qos command
2-609
show mls qos input-queue command
2-611
show mls qos interface command
2-613
show mls qos maps command
2-617
show mls qos queue-set command
2-620
show mls qos vlan command
2-622
show monitor command
2-623
show mvr command
2-625
show mvr interface command
2-627
show mvr members command
2-629
show nmsp command
2-631
show pagp command
2-634
show parser macro command
2-636
show platform acl command
C-2
show platform backup interface command
C-3
show platform configuration command
C-4
show platform etherchannel command
C-5
show platform forward command
C-6
show platform igmp snooping command
C-8
show platform layer4op command
C-9
show platform mac-address-table command
C-10
show platform messaging command
C-11
show platform monitor command
C-12
show platform mvr table command
C-13
show platform pm command
C-14
show platform port-asic command
C-15
show platform port-security command
C-19
show platform qos command
C-20
show platform resource-manager command
C-21
show platform snmp counters command
C-23
show platform spanning-tree command
C-24
show platform stp-instance command
C-25
show platform tcam command
C-26
show platform vlan command
C-29
show policy-map command
2-639
show port security command
2-641
show power inline command
2-644
show rep topology command
2-646
show sdm prefer command
2-649
show setup express command
2-651
show shell command
2-652
show spanning-tree command
2-654
show storm-control command
2-660
show system mtu command
2-662
show trust command
2-793
show udld command
2-663
show version command
2-666
show vlan access-map command
2-672
show vlan command
2-668
show vlan command, fields
2-669
show vlan filter command
2-673
show vmps command
2-674
show vtp command
2-676
shutdown command
2-681
shutdown threshold, Layer 2 protocol tunneling
2-273
shutdown vlan command
2-682
Smartports macros
See macros
SNMP host, specifying
2-688
SNMP informs, enabling the sending of
2-683
snmp-server enable traps command
2-683
snmp-server host command
2-688
snmp trap mac-notification change command
2-691
SNMP traps
enabling MAC address notification trap
2-691
enabling the MAC address notification feature
2-303
enabling the sending of
2-683
SoftPhone
See Cisco SoftPhone
software images
deleting
2-108
downloading
2-16
upgrading
2-16
uploading
2-22
software version, displaying
2-666
source ports, MVR
2-368
SPAN
configuring
2-361
debug messages, display
B-26
displaying
2-623
filter SPAN traffic
2-361
sessions
add interfaces to
2-361
displaying
2-623
start new
2-361
spanning-tree backbonefast command
2-693
spanning-tree bpdufilter command
2-694
spanning-tree bpduguard command
2-696
spanning-tree cost command
2-698
spanning-tree etherchannel command
2-700
spanning-tree extend system-id command
2-702
spanning-tree guard command
2-704
spanning-tree link-type command
2-706
spanning-tree loopguard default command
2-708
spanning-tree mode command
2-710
spanning-tree mst configuration command
2-712
spanning-tree mst cost command
2-714
spanning-tree mst forward-time command
2-716
spanning-tree mst hello-time command
2-717
spanning-tree mst max-age command
2-718
spanning-tree mst max-hops command
2-719
spanning-tree mst port-priority command
2-721
spanning-tree mst pre-standard command
2-723
spanning-tree mst priority command
2-724
spanning-tree mst root command
2-725
spanning-tree portfast (global configuration) command
2-729
spanning-tree portfast (interface configuration) command
2-731
spanning-tree port-priority command
2-727
Spanning Tree Protocol
See STP
spanning-tree transmit hold-count command
2-733
spanning-tree uplinkfast command
2-734
spanning-tree vlan command
2-736
speed command
2-739
srr-queue bandwidth limit command
2-741
srr-queue bandwidth share command
2-745
SSH, configuring version
2-240
static-access ports, configuring
2-752
statistics, Ethernet group
2-435
sticky learning, enabling
2-768
storm-control command
2-747
STP
BackboneFast
2-693
counters, clearing
2-90
debug messages, display
BackboneFast events
B-73
MSTP
B-76
optimized BPDUs handling
B-75
spanning-tree activity
B-71
switch shim
B-78
transmitted and received BPDUs
B-74
UplinkFast
B-80
detection of indirect link failures
2-693
EtherChannel misconfiguration
2-700
extended system ID
2-702
path cost
2-698
protocol modes
2-710
root port
accelerating choice of new
2-734
loop guard
2-704
preventing from becoming designated
2-704
restricting which can be root
2-704
root guard
2-704
UplinkFast
2-734
root switch
affects of extended system ID
2-702, 2-737
hello-time
2-736
interval between BDPU messages
2-736
interval between hello BPDU messages
2-736
max-age
2-736
port priority for selection of
2-727
primary or secondary
2-736
switch priority
2-736
state changes
blocking to forwarding state
2-731
enabling BPDU filtering
2-694, 2-729
enabling BPDU guard
2-696, 2-729
enabling Port Fast
2-729, 2-731
enabling timer to recover from error state
2-163
forward-delay time
2-736
length of listening and learning states
2-736
shutting down Port Fast-enabled ports
2-729
state information display
2-654
VLAN options
2-724, 2-736
SVIs, creating
2-176
SVI status calculation
2-754
Switched Port Analyzer
See SPAN
switching characteristics
modifying
2-750
returning to interfaces
2-750
switchport access command
2-752
switchport autostate exclude command
2-754
switchport backup interface command
2-756
switchport block command
2-760
switchport command
2-750
switchport host command
2-762
switchport mode command
2-763
switchport nonegotiate command
2-766
switchport port-security aging command
2-773
switchport port-security command
2-768
switchport priority extend command
2-775
switchport protected command
2-777
switchports, displaying
2-524
switchport trunk command
2-779
switchport voice vlan command
2-782
syslog command
2-12
system message logging
2-289
system message logging, save message to flash
2-290
system mtu command
2-784
system resource templates
2-436
T
tar files, creating, listing, and extracting
2-19
TDR, running
2-786
Telnet, using to communicate to cluster switches
2-414
temperature alarms, setting
2-10
templates, system resources
2-436
test cable-diagnostics tdr command
2-786
test relay command
2-787
traceroute mac command
2-788
traceroute mac ip command
2-791
trunking, VLAN mode
2-763
trunk mode
2-763
trunk ports
2-763
trunks, to non-DTP device
2-764
trusted boundary for QoS
2-358
trusted port states for QoS
2-358
tunnel ports, Layer 2 protocol, displaying
2-576
type (boot loader) command
A-23
U
UDLD
aggressive mode
2-795, 2-797
debug messages, display
B-88
enable globally
2-795
enable per interface
2-797
error recovery timer
2-163
message timer
2-795
normal mode
2-795, 2-797
reset a shutdown interface
2-799
status
2-663
udld command
2-795
udld port command
2-797
udld reset command
2-799
unicast storm control
2-747
UniDirectional Link Detection
See UDLD
unknown multicast traffic, preventing
2-760
unknown unicast traffic, preventing
2-760
unset (boot loader) command
A-24
upgrading
software images
downloading
2-16
monitoring status of
2-459
UplinkFast, for STP
2-734
user EXEC mode
1-2
V
version (boot loader) command
A-26
vlan (global configuration) command
2-800
vlan access-map command
2-805
VLAN access map configuration mode
2-805
VLAN access maps
actions
2-6
displaying
2-672
VLAN-based QoS
2-360
VLAN configuration
rules
2-803
saving
2-800
VLAN configuration mode
description
1-4
entering
2-800
summary
1-2
vlan filter command
2-807
VLAN filters, displaying
2-673
VLAN ID range
2-800
VLAN maps
applying
2-807
creating
2-805
defining
2-316
displaying
2-672
VLAN Query Protocol
See VQP
VLANs
adding
2-800
configuring
2-800
debug messages, display
ISL
B-84
VLAN IOS file system error tests
B-83
VLAN manager activity
B-81
VTP
B-86
displaying configurations
2-668
enabling guest VLAN supplicant
2-126, 2-137, 2-168
extended-range
2-800
MAC addresses
displaying
2-607
number of
2-594
media types
2-803
normal-range
2-800
private
configuring
2-404
restarting
2-682
saving the configuration
2-800
shutting down
2-682
SNMP traps for VTP
2-686
suspending
2-682
VLAN Trunking Protocol
See VTP
VMPS
configuring servers
2-812
displaying
2-674
error recovery timer
2-164
reconfirming dynamic VLAN assignments
2-809
vmps reconfirm (global configuration) command
2-810
vmps reconfirm (privileged EXEC) command
2-809
vmps retry command
2-811
vmps server command
2-812
voice VLAN
configuring
2-782
setting port priority
2-775
VQP
and dynamic-access ports
2-753
clearing client statistics
2-92
displaying information
2-674
per-server retry count
2-811
reconfirmation interval
2-810
reconfirming dynamic VLAN assignments
2-809
VTP
changing characteristics
2-814
clearing pruning counters
2-93
configuring
domain name
2-814
file name
2-814
mode
2-814
password
2-815
counters display fields
2-677
displaying information
2-676
enabling
pruning
2-815
Version 2
2-815
enabling per port
2-819
mode
2-814
pruning
2-815
saving the configuration
2-800
statistics
2-676
status
2-676
status display fields
2-679
vtp (global configuration) command
2-814
vtp interface configuration) command
2-819
vtp primary command
2-820