Table Of Contents
A - B - C - D - E - F - G - H - I - J - L - M - N - P - Q - R - S - T - U - V - W -
Index
A
aaa authentication command2-1
abort command2-367
access control entries
See ACEs
access control lists
See ACLs
Access Control Parameters
See ACPs
access groups
IP2-78
MAC
applying ACL to interface2-94
displaying2-197
access-list (IP extended) command2-3
access-list (IP standard) command2-6
access-list configuration mode
deny2-48
entering2-80
permit2-128
access ports2-323
ACEs2-52, 2-132
ACLs
IP
applying to interface2-78
deny2-48
displaying2-148, 2-189
permit2-128
ACLs (continued)
MAC
applying to interface2-94
deny2-51
displaying2-148
permit2-131
ACPs, displaying2-206
aggregate-port learner2-125
alarm commandA-6
alarm facility fcs-hysteresis commandA-2
alarm facility power-supply commandA-3
alarm facility temperature commandA-4
alarm IDsA-7, A-11
alarm profile
attaching to a portA-8
creatingA-6
displayingA-12
alarm profile (global configuration) commandA-6
alarm profile (interface configuration) commandA-8
alarm profile configuration modeA-6
allowed VLANs, setting2-336
apply command2-367
audiencexi
autonegotiation of duplex mode2-64
auto qos voip command2-8
B
BackboneFast, for STP2-269
booting, displaying environment variables2-152
boot private-config-file command2-11
BPDU filtering, for spanning tree2-270, 2-306
BPDU guard, for spanning tree2-272, 2-306
broadcast suppression level
configuring2-319
displaying2-237
broadcast traffic counters2-186
C
caution, descriptionxii
channel-group command2-12
channel-protocol command2-15
Cisco Technical Assistance Centerxvi
class command2-17
class-map command2-19
class maps
creating2-19
defining the match criteria2-104
displaying2-154
class of service
See CoS
clear interface command2-21
clear lacp command2-22
clear mac address-table command2-23
clear pagp command2-25
clear port-security dynamic command2-26
clear port-security sticky command2-27
clear spanning-tree counters command2-29
clear spanning-tree detected-protocols command2-30
clear vmps statistics command2-31
clear vtp counters command2-32
cluster commander-address command2-33
cluster discovery hop-count command2-35
cluster enable command2-36
cluster holdtime command2-37
cluster management-vlan command2-38
cluster member command2-39
cluster run command2-41
clusters
adding candidates2-39
binding to HSRP2-42
building manually2-39
communicating with members by using Telnet2-139
displaying
candidate switches2-158
member switches2-160
status2-156
heartbeat messages
duration after which switch declared down2-37
interval between2-44
hop-count limit for extended discovery2-35
HSRP standby groups2-42
redundancy2-42
SNMP trap2-261
cluster standby-group command2-42
cluster timer command2-44
command modes defined1-2
command switch
See clusters
configuration files, private2-11
configuring multiple interfaces2-76to 2-77
config-vlan mode
commands2-355
description1-4
entering2-354
summary1-2
conventions
commandxii
for examplesxii
publicationxii
textxii
CoS
default value, assigning to incoming packets2-106
incoming value, overriding2-106
priority queue, assigning values to2-386
priority queue mapping, displaying2-258
WRR bandwidth allocation, displaying2-257
WRR weights, assigning to CoS priority queues2-384
CoS-to-DSCP map
default2-108
defining2-108
cross-stack UplinkFast, for STP2-310
D
debug autoqos commandB-2
debug dot1x commandB-4
debug etherchannel commandB-5
debug pagp commandB-6
debug pm commandB-7
debug spanning-tree backbonefast commandB-11
debug spanning-tree bpdu commandB-12
debug spanning-tree bpdu-opt commandB-13
debug spanning-tree commandB-9
debug spanning-tree mstp commandB-14
debug spanning-tree switch commandB-16
debug spanning-tree uplinkfast commandB-18
debug sw-vlan commandB-19
debug sw-vlan ifs commandB-21
debug sw-vlan notification commandB-22
debug sw-vlan vtp commandB-23
debug udld commandB-25
defaultPort profileA-7, A-8
define interface-range command2-45
delete command2-47
deny (access-list configuration) command2-48
deny (MAC access-list configuration) command2-51
documentation
feedbackxv
obtaining
CD-ROMxiv
World Wide Webxiv
orderingxiv
relatedxiii
document conventionsxii
domain name, VTP2-374, 2-380
dot1x default command2-54
dot1x max-req command2-55
dot1x multiple-hosts command2-56
dot1x port-control command2-57
dot1x re-authenicate command2-59
dot1x re-authenication command2-60
dot1x timeout quiet-period command2-61
dot1x timeout re-authperiod command2-62
dot1x timeout tx-period command2-63
DSCP-to-CoS map
default2-108
defining2-108
DTP2-324
DTP flap, error recovery timer2-68
duplex command2-64
dynamic-access ports, configuring2-321
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame2-55, 2-63
environmental alarms, displayingA-14
environment variables, displaying2-152
errdisable detect command2-66
errdisable recovery command2-68
EtherChannel
assigning Ethernet interface to channel group2-12
creating port-channel logical interface2-75
debug messages, displayingB-5to B-6
displaying2-173
LACP, modes2-12
load-distribution methods2-137
PAgP
aggregate-port learner2-125
clearing channel-group information2-22, 2-25
debug messages, displayingB-6
displaying2-195, 2-220
error recovery timer2-68
learn method2-125
modes2-12
priority of interface for transmitted traffic2-127
Ethernet controller, internal register display2-162
Ethernet statistics, collecting2-143
examples, conventions forxii
exit command2-367
expedite queue, QoS2-384
extended discovery of candidate switches2-35
extended-range VLANs
and allowed VLAN list2-336
and pruning-eligible list2-336
configuring2-354
extended system ID for STP2-278
Extensible Authentication Protocol-request/identity frame
See EAP-request/identity frame
F
facility alarm relays, displayingA-18
facility alarm status, displayingA-19
fan information, displaying2-170
FCS bit error rate
displayingA-20
fluctuation thresholdA-2
settingA-9
FCS hysteresis thresholdA-2
fcs-threshold commandA-9
feedback to Cisco Systems, webxv
file name, VTP2-374
files, deleting2-47
flowcontrol command2-70
flow-control packets
receiving2-70
sending2-70
frame check sequence
See FCS
G
global configuration mode1-2, 1-4
H
heartbeat messages
duration after which switch declared dead2-37
interval between2-44
holdtime for clusters2-37
hop-count limit for clusters2-35
Hot Standby Router Protocol
See HSRP
HSRP
binding HSRP group to cluster2-42
standby group2-42
I
IDS, using with SPAN and RSPAN2-115
IEEE 802.1X commands
authentication methods2-1
debuggingB-4
displaying settings2-166
EAP-request/identity frame
response time2-63
sending2-55
manual control2-57
multiple hosts2-56
quiet state, setting2-61
re-authenticaton
initiating2-59
periodic2-60
re-authenticaton attempts, interval between2-62
resetting parameters2-54
IGMP snooping
adding ports statically2-90
configuration, displaying2-191
enabling2-83
Immediate-Leave processing2-87
MAC address tables2-202
multicast router ports, displaying2-193
multicast routers2-88
per VLAN2-86
source-only-learning2-84
Immediate-Leave feature, MVR2-119
Immediate-Leave processing2-87
interface command2-73
interface configuration mode1-2, 1-4
interface port-channel command2-75
interface range command2-76
interface-range macros2-45
interfaces
assigning Ethernet interface to channel group2-12
configuring2-64
configuring multiple2-76to 2-77
creating port-channel logical2-75
disabling2-259
restarting2-259
internal registers, displaying2-162
Intrusion Detection System
See IDS
invalid GBIC
error detection for2-66
error recovery timer2-68
ip access-group command2-78
ip access-list command2-80
ip address command2-82
ip addresses, setting2-82
ip igmp snooping command2-83
ip igmp snooping source-only-learning command2-84
ip igmp snooping vlan command2-86
ip igmp snooping vlan immediate-leave command2-87
ip igmp snooping vlan mrouter command2-88
ip igmp snooping vlan static command2-90
IP multicast addresses2-116
J
jumbo frames
displaying setting2-240
setting switch for2-341
L
LACP
See EtherChannel
lacp port-priority command2-92
lacp system-priority command2-93
Layer 2 traceroute
IP addresses2-346
MAC addresses2-343
line configuration mode1-3, 1-5
Link Aggregation Control Protocol
See EtherChannel
link flap
enable error detection for2-66
enable timer to recover from error state2-68
load-distribution methods for EtherChannel2-137
logical interface2-75
loop guard, for spanning tree2-280, 2-283
M
mac access-group command2-94
MAC access-list configuration mode
deny2-51
entering2-96
permit2-131
mac access-list extended command2-96
MAC ACLs
deny2-51
permit2-131
MAC addresses
and port security2-327
clearing notification global counters2-23
displaying
aging time2-199
dynamic2-199
multicast entries2-202
notification setting2-204
number of addresses2-199
per interface2-199
per VLAN2-199
secure2-224
static2-199
MAC addresses
dynamic
aging time2-98
deleting2-23
displaying2-199
enabling MAC address notification2-100
secure
adding2-327
displaying2-224
static
adding2-102
displaying2-199
sticky
configuring manually2-327
enabling sticky learning2-327
learning dynamically2-327
mac address-table aging-time command2-98
mac address-table notification command2-100
mac address-table static command2-102
MAC-named extended ACLs2-96
MAC notification feature
clearing global counters2-23
configuring2-100
enabling2-100
macros, interface range2-45
manual
audiencexi
purpose ofxi
maps, QoS
defining2-108
displaying2-210
masks
See ACPs
match (class-map configuration) command2-104
maximum transmission unit
See MTU
member switches
See clusters
mls qos cos command2-106
mls qos map command2-108
mls qos trust command2-110
mode, MVR2-116
monitor session command2-113
MSTP
displaying2-232
interoperability2-30
link type2-282
MST region
aborting changes2-287
applying changes2-287
configuration name2-287
configuration revision number2-287
current or pending display2-287
displaying2-232
MST configuration mode2-287
VLANs-to-instance mapping2-287
path cost2-289
protocol mode2-285
restart protocol migration process2-30
root port
loop guard2-280
preventing from becoming designated2-280
restricting which can be root2-280
root guard2-280
root switch
affects of extended system ID2-278
hello-time2-292, 2-302
interval between BDPU messages2-294
interval between hello BPDU messages2-292, 2-302
max-age2-294
maximum hop count before discarding BPDU2-296
port priority for selection of2-298
primary or secondary2-302
switch priority2-300
MSTP (continued)
state changes
blocking to forwarding state2-308
enabling BPDU filtering2-270, 2-306
enabling BPDU guard2-272, 2-306
enabling Port Fast2-306, 2-308
forward-delay time2-291
length of listening and learning states2-291
rapid transition to forwarding2-282
shutting down Port Fast-enabled ports2-306
state information display2-231
MTU
configuring size2-341
displaying global setting2-240
multicast groups
See IGMP snooping
multicast groups, MVR2-117
multicast router learning method2-88
multicast router ports, configuring2-88
multicast suppression level
configuring2-319
displaying2-237
enabling2-319
multicast traffic counters2-186
multicast VLAN, MVR2-117
multicast VLAN registration
See MVR
Multiple Spanning Tree Protocol
See MSTP
MVR
configuring2-116
configuring interfaces2-121
displaying2-214
Immediate Leave feature2-119
receiver port2-121
source port2-121
mvr command2-116
mvr group command2-117
mvr immediate command2-119
mvr type command2-121
mvr vlan group command2-123
N
native VLANs, configuring2-336
nonegotiate, speed2-317
normal-range VLANs2-354, 2-360
note, descriptionxii
notifies commandA-6
no vlan command2-354, 2-364
P
PAgP
See EtherChannel
pagp learn-method command2-125
pagp port-priority command2-127
password, VTP2-374, 2-378, 2-380
permit (access-list configuration) command2-128
permit (MAC access-list configuration) command2-131
PIM-DVMRP, as multicast router learning method2-88
police command2-133
policy-map command2-135
policy maps
applying to an interface2-145
creating2-135
displaying2-222
policers
displaying2-208
for a single class2-133
traffic classification
defining the class2-17
defining the trust states2-110
setting DSCP values2-146
Port Aggregation Protocol
See EtherChannel
port-channel load-balance command2-137
Port Fast, for spanning tree2-308
port ranges, defining2-45
ports, debug messages, displayB-7
port security
aging2-331
displaying2-224
enabling2-327
violation error recovery timer2-68
port trust states for QoS2-110
power supply alarms, settingA-3
power-supply dual commandA-10
power-supply modeA-10
primary temperature alarmA-4
private configuration files2-11
privileged EXEC mode1-2to 1-3
protected ports
displaying2-184
enabling2-335
pruning
VLANs2-336
VTP
displaying interface information2-179
enabling2-374, 2-378, 2-380
publications, relatedxiii
Q
QoS
ACPs, displaying2-206
automatic configuration2-8
class maps
creating2-19
defining the match criteria2-104
displaying2-154
configuration information, displaying2-208
QoS (continued)
defining the CoS value for an incoming packet2-106
displaying configuration information2-150
maps
defining2-108
displaying2-210
policers, displaying2-208
policy maps
applying to an interface2-145
creating2-135
defining policers2-133
displaying policy maps2-222
setting DSCP values2-146
traffic classifications2-17
port trust states2-110
queues
CoS-to-egress-queue map2-386
expedite2-384
WRR weights2-384
quality of service
See QoS
querytime, MVR2-116
R
Rapid Spanning Tree Protocol
See RSTP
rcommand command2-139
receiver port, MVR2-121
receiving flow-control packets2-70
recovery mechanism
causes2-68
displaying2-171
timer interval2-68
redundancy for cluster switches2-42
relay-major commandA-6
relay-minor commandA-6
remote-span command2-141
Remote Switched Port Analyzer
See RSPAN
reset command2-367
rmon collection stats command2-143
root guard, for spanning tree2-280
RPS status display2-227
RSPAN
and IDS2-115
configuring2-113
displaying2-212
remote-span command2-141
sessions
add interfaces to2-113
displaying2-212
start new2-113
S
secondary temperature alarmA-4
sending flow-control packets2-70
service-policy command2-145
set command2-146
show access-lists command2-148
show alarm description port commandA-11
show alarm profile commandA-12
show alarm settings commandA-14
show auto qos command2-150
show boot command2-152
show changes command2-367
show class-map command2-154
show cluster candidates command2-158
show cluster command2-156
show cluster members command2-160
show controllers ethernet-controller command2-162
show current command2-367
show dot1x command2-166
show env command2-170
show env power commandA-16
show env temperature commandA-16
show errdisable recovery command2-171
show etherchannel command2-173
show facility-alarm relay commandA-18
show facility-alarm status commandA-19
show fcs threhsold commandA-20
show file command2-176
show interfaces command2-179
show interfaces counters command2-186
show ip access-list command2-189
show ip igmp snooping command2-191
show ip igmp snooping mrouter command2-193
show lacp command2-195
show mac access-group command2-197
show mac-address-table command2-199
show mac-address-table multicast command2-202
show mac-address-table notification command2-204
show mls masks2-206
show mls qos interface command2-208
show mls qos maps command2-210
show monitor command2-212
show mvr command2-214
show mvr interface command2-216
show mvr members command2-218
show pagp command2-220
show policy-map command2-222
show port-security command2-224
show proposed command2-367
show rps command2-227
show running-config vlan command2-229
show spanning-tree command2-231
show storm-control command2-237
show system mtu command2-240
show udld command2-241
show version command2-244
show vlan command2-245
show vlan command fields2-246
show vmps command2-249
show vtp command2-252
show wrr-queue bandwidth command2-257
show wrr-queue cos-map command2-258
shutdown command2-259
shutdown vlan command2-260
SNMP host, specifying2-263
snmp-server enable traps command2-261
snmp-server host command2-263
snmp trap mac-notification command2-267
SNMP traps
enabling MAC address notification2-100
enabling MAC address notification traps2-261, 2-267
enabling the sending of traps2-261
software images, deleting2-47
software version, displaying2-244
source ports, MVR2-121
SPAN
and IDS2-115
configuring2-113
displaying2-212
sessions
add interfaces to2-113
displaying2-212
start new2-113
spanning-tree backbonefast command2-269
spanning-tree bpdufilter command2-270
spanning-tree bpduguard command2-272
spanning-tree cost command2-274
spanning-tree etherchannel command2-276
spanning-tree extend system-id command2-278
spanning-tree guard command2-280
spanning-tree link-type command2-282
spanning-tree loopguard default command2-283
spanning-tree mode command2-285
spanning-tree mst configuration command2-287
spanning-tree mst cost command2-289
spanning-tree mst forward-time command2-291
spanning-tree mst hello-time command2-292
spanning-tree mst max-age command2-294
spanning-tree mst max-hops command2-296
spanning-tree mst port-priority command2-298
spanning-tree mst priority command2-300
spanning-tree mst root command2-302
spanning-tree portfast (global configuration) command2-306
spanning-tree portfast (interface configuration) command2-308
spanning-tree port-priority command2-304
Spanning Tree Protocol
See STP
spanning-tree stack-port command2-310
spanning-tree uplinkfast command2-312
spanning-tree vlan command2-314
speed command2-317
static-access ports, configuring2-321
statistics, Ethernet group2-143
sticky learning, enabling2-327
storm control
broadcast, enabling2-319
displaying2-237
multicast, enabling2-319
unicast, enabling2-319
storm-control command2-319
STP
BackboneFast2-269
debug message display
BackboneFast eventsB-11
MSTPB-14
optimized BPDUs handlingB-13
spanning-tree activityB-9
switch shimB-16
transmitted and received BPDUsB-12
UplinkFastB-18
detection of indirect link failures2-269
EtherChannel misconfiguration2-276
extended system ID2-278
path cost2-274
protocol mode2-285
STP (continued)
root port
accelerating choice of new2-312
accelerating choice of new root in a stack2-310
cross-stack UplinkFast2-310
loop guard2-280
preventing from becoming designated2-280
restricting which can be root2-280
root guard2-280
UplinkFast2-312
root switch
affects of extended system ID2-278, 2-315
hello-time2-314
interval between BDPU messages2-314
interval between hello BPDU messages2-314
max-age2-314
port priority for selection of2-304
primary or secondary2-314
switch priority2-314
state changes
blocking to forwarding state2-308
enabling BPDU filtering2-270, 2-306
enabling BPDU guard2-272, 2-306
enabling Port Fast2-306, 2-308
enabling timer to recover from error state2-68
forward-delay time2-314
length of listening and learning states2-314
shutting down Port Fast-enabled ports2-306
state information display2-231
VLAN options2-300, 2-314
Switched Port Analyzer
See SPAN
switching characteristics
modifying2-325
returning to interfaces2-325
switchport access command2-321
switchport mode command2-323
switchport nonegotiate command2-325
switchport port-security aging command2-331
switchport port-security command2-327
switchport priority extend command2-333
switchport protected command2-335
switchports, displaying2-179
switchport trunk command2-336
switchport voice vlan command2-339
syslog commandA-6
system mtu command2-341
T
TACxvi
technical assistance
TACxvi
TAC websitexvi
toll-free telephone numbersxvi
Telnetting to cluster switches2-139
temperature alarms, settingA-4
test relay commandA-21
tips, descriptionxii
traceroute, Layer 2
See Layer 2 traceroute
traceroute mac command2-343
traceroute mac ip command2-346
trunk ports, configuring2-323
trunks, to non-DTP device2-324
trusted boundary for QoS2-110
U
UDLD
aggressive mode2-349, 2-351
debug messages, displayingB-25
enabling globally2-349
UDLD (continued)
enabling per interface2-351
error recovery timer2-68
message timer2-349
normal mode2-349, 2-351
resetting shutdown interfaces2-353
status2-241
udld (global interface) command2-349
udld (interface configuration) command2-351
udld reset command2-353
unicast suppression level
configuring2-319
displaying2-237
enabling2-319
unicast traffic counters2-186
UniDirectional Link Detection
See UDLD
UplinkFast, for STP2-312
URLs, Ciscoxiv
user EXEC mode1-2, 1-3
V
vlan (global configuration) command2-354
vlan (VLAN configuration) command2-360
VLAN configuration
rules2-358, 2-362
saving2-355, 2-364
VLAN configuration mode
commands
VLAN2-360
VTP2-380
entering2-366
summary1-3
vlan database command2-366
VLAN ID range2-354, 2-360
VLAN Query Protocol
See VQP
VLANs
adding2-354
configuring2-354, 2-360
debug message display
ISLB-22
VLAN IOS file system error testsB-21
VLAN manager activityB-19
VTPB-23
displaying configurations2-245
extended-range2-354
MAC addresses
displaying2-199
number of2-199
media types2-357, 2-362
normal-range2-354, 2-360
saving the configuration2-354
shutting down2-260
SNMP traps for VTP2-261, 2-264
variables2-360
VMPS
configuring servers2-372
reconfirming dynamic VLAN assignments2-370
vmps reconfirm (global configuration) command2-369
vmps reconfirm (privileged EXEC) command2-370
vmps retry command2-371
vmps server command2-372
voice VLAN
configuring2-339
setting port priority2-333
VQP
and dynamic-access ports2-322
clearing client statistics2-31
displaying information2-249
per-server retry count2-371
reconfirmation interval2-369
reconfirming dynamic VLAN assignments2-370
VTP
changing characteristics2-374
clearing pruning counters2-32
clearing VTP counters2-32
configuring
domain name2-374, 2-380
file name2-374
mode2-374, 2-380
password2-374, 2-378, 2-380
counters display fields2-253
displaying information2-252
enabling
pruning2-374, 2-378, 2-380
version 22-374, 2-378, 2-380
mode2-374, 2-380
pruning2-374, 2-378, 2-380
saving the configuration2-355, 2-364
status display fields2-254
vtp (global configuration) command2-374
vtp (privileged EXEC) command2-378
vtp (VLAN configuration) command2-380
W
World Wide Web, for providing feedbackxiv
WRR, assigning weights to egress queues2-384
wrr-queue bandwidth command2-384
wrr-queue cos-map command2-386