Table Of Contents
Numerics - A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - X -
Index
Numerics
802.1Q tunnel ports
and QoS guidelines 2-226, 2-255
configuring 2-609
displaying 2-379
limitations 2-610
802.1x
and switchport modes 2-610
See also port-based authentication
violation error recovery 2-96
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
abort command 2-667
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 2-114
MAC, displaying 2-440
access lists
IP 2-114
on Layer 2 interfaces 2-114
access map configuration mode 2-213
access mode 2-609
access ports 2-609
ACEs 2-71, 2-282
ACLs
deny 2-69
displaying 2-353
for non-IP protocols 2-191
matching 2-213
permit 2-280
action command 2-5
address aliasing 2-269
aggregate-port learner 2-276
allowed VLANs 2-627
Any Transport over MPLS
See AToM
apply command 2-667
archive download-sw command 2-7
archive tar command 2-9
archive upload-sw command 2-12
arp access-list command 2-13
AToM, debug messages B-24
audience xix
authentication failed VLAN
See dot1x auth-fail vlan
auth-fail max-attempts
See dot1x auth-fail max-attempts
auth-fail vlan
See dot1x auth-fail vlan
authorization state of controlled port 2-85
autonegotiation of duplex mode 2-92
auto-QoS
See QoS
auto qos voip command 2-15
B
BackboneFast, for STP 2-546
backup interfaces
configuring 2-605
displaying 2-400
bandwidth command 2-20
boot (boot loader) command A-2
boot boothlpr command 2-23
boot config-file command 2-24
boot enable-break command 2-25
boot helper command 2-26
boot helper-config file command 2-27
booting
displaying environment variables 2-362
interrupting 2-25
IOS image 2-30
manually 2-28
boot loader
accessing A-1
booting
helper image 2-26
IOS image A-2
directories
creating A-16
displaying a list of A-7
removing A-20
displaying
available commands A-12
memory heap utilization A-14
version A-27
environment variables
described A-21
displaying settings A-21
location of A-23
setting A-21
unsetting A-25
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-17, A-24
renaming A-18
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
loading helper images A-13
prompt A-1
resetting the system A-19
boot manual command 2-28
boot private-config-file command 2-29
boot system command 2-30
BPDU filtering, for spanning tree 2-547, 2-581
BPDU guard, for spanning tree 2-549, 2-581
broadcast storm control 2-598
bundling characteristics, UNI 2-99
C
candidate switches
See clusters
cat (boot loader) command A-4
caution, description xx
CDP, enabling protocol tunneling for 2-174
CFM 2-275
CFM as OAM protocol 2-275
channel-group command 2-31
channel-protocol command 2-35
Cisco SoftPhone
auto-QoS configuration 2-15
class command 2-36
class-map command 2-40
class maps
creating 2-40
defining the match criteria 2-215
displaying 2-364
class of service
See CoS
clear ip arp inspection log command 2-42
clear ip arp inspection statistics command 2-43
clear ip dhcp snooping database command 2-44
clear l2protocol-tunnel counters command 2-45
clear lacp command 2-46
clear mac address-table command 2-47, 2-48
clear pagp command 2-49
clear spanning-tree counters command 2-50
clear spanning-tree detected-protocols command 2-51
clear vmps statistics command 2-52
clear vtp counters command 2-53
cluster commander-address command 2-54
cluster discovery hop-count command 2-56
cluster enable command 2-57
cluster holdtime command 2-58
cluster member command 2-59
cluster outside-interface command 2-61
cluster run command 2-62
clusters
adding candidates 2-59
binding to HSRP group 2-63
building manually 2-59
communicating with
devices outside the cluster 2-61
members by using Telnet 2-328
debug messages, display B-5
displaying
candidate switches 2-367
debug messages B-5
member switches 2-369
status 2-365
hop-count limit for extended discovery 2-56
HSRP standby groups 2-63
redundancy 2-63
SNMP trap 2-537
cluster standby-group command 2-63
cluster timer command 2-65
command modes defined 1-1
command switch
See clusters
configuration, initial
See hardware installation guide
configuration files
password recovery disable considerations A-1
specifying the name 2-24, 2-29
configuring multiple interfaces 2-110
config-vlan mode
commands 2-653
description 1-4
entering 2-652
summary 1-2
conventions
command xx
for examples xx
publication xx
text xx
copy (boot loader) command A-5
CoS
assigning default value to incoming packets 2-224
assigning to Layer 2 protocol packets 2-178
overriding the incoming value 2-224
CoS-to-DSCP map 2-229
CPU ASIC statistics, displaying 2-371
D
debug autoqos command B-2
debug backup command B-4
debug cluster command B-5
debug dot1x command B-7
debug dtp command B-8
debug etherchannel command B-9
debug interface command B-12
debug ip dhcp snooping command B-14
debug ip igmp filter command B-15
debug ip igmp max-groups command B-16
debug ip igmp snooping command B-17
debug ip verify source packet command B-18
debug lacp command B-19
debug mac-notification command B-20
debug matm command B-21
debug matm move update command B-22
debug monitor command B-23
debug mpls atom command B-24
debug mpls l2transport vlan command B-25
debug mvrdbg command B-26
debug nvram command B-27
debug pagp command B-28
debug platform acl command B-29
debug platform backup interface command B-31
debug platform cfm command B-30
debug platform cpu-queues command B-32
debug platform dot1x command B-34
debug platform etherchannel command B-35
debug platform fallback-bridging command B-36
debug platform forw-tcam command B-37
debug platform ip arp inspection command B-38
debug platform ip igmp snooping command B-39
debug platform ip multicast command B-41
debug platform ip unicast command B-43
debug platform led command B-45
debug platform matm command B-46
debug platform messaging command B-47
debug platform phy command B-48
debug platform pm command B-49
debug platform port-asic command B-51
debug platform port-security command B-52
debug platform qos-acl-tcam command B-53
debug platform remote-commands command B-54
debug platform resource-manager command B-55
debug platform snmp command B-56
debug platform span command B-57
debug platform supervisor-asic command B-58
debug platform sw-bridge command B-59
debug platform tcam command B-60
debug platform udld command B-63
debug platform vlan command B-64
debug pm command B-65
debug port-security command B-67
debug qos-manager command B-68
debug spanning-tree backbonefast command B-71
debug spanning-tree bpdu command B-72
debug spanning-tree bpdu-opt command B-73
debug spanning-tree command B-69
debug spanning-tree mstp command B-74
debug spanning-tree switch command B-76
debug spanning-tree uplinkfast command B-78
debug sw-vlan command B-79
debug sw-vlan ifs command B-81
debug sw-vlan notification command B-82
debug sw-vlan vtp command B-84
debug udld command B-86
debug vqpc command B-88
debug xconnect command B-89
default template 2-334
define interface-range command 2-66
delete (boot loader) command A-6
delete command 2-68
deny (ARP access-list configuration) command 2-72
deny command 2-69
detect mechanism, causes 2-94
DHCP snooping
accepting untrusted packets from edge switch 2-139
enabling
on a VLAN 2-145
option 82 2-137, 2-139
trust on an interface 2-143
rate limiting 2-142
DHCP snooping binding database
binding file, configuring 2-135
bindings
adding 2-133
deleting 2-133
clearing database agent statistics 2-44
database agent, configuring 2-135
displaying
database agent status 2-418
renewing 2-332
dir (boot loader) command A-7
directories, deleting 2-68
documentation
related xx
document conventions xx
domain name, VTP 2-676, 2-680
domains, CFM 2-275
dot1x auth-fail max-attempts 2-74
dot1x auth-fail vlan 2-76
dot1x default command 2-78
dot1x guest-vlan command 2-79
dot1x host-mode command 2-81
dot1x initialize command 2-82
dot1x max-req command 2-83, 2-84
dot1x port-control command 2-85
dot1x re-authenticate command 2-87
dot1x reauthentication command 2-88
dot1x system-auth-control command 2-89
dot1x timeout command 2-90
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-174
DSCP-to-CoS map 2-229
DSCP-to-DSCP-mutation map 2-229
DTP 2-610
DTP flap
error detection for 2-94
error recovery timer 2-96
dual-level policy maps 2-298
duplex command 2-92
dynamic-access ports
configuring 2-603
restrictions 2-604
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-119
define 2-13
deny packets 2-72
display 2-357
permit packets 2-283
clear
log buffer 2-42
statistics 2-43
display
ARP ACLs 2-357
configuration and operating state 2-412
log buffer 2-412
statistics 2-412
trust state and rate limit 2-412
enable per VLAN 2-129
error detection for 2-96
log buffer
clear 2-42
configure 2-123
display 2-412
rate-limit incoming ARP packets 2-121
statistics
clear 2-43
display 2-412
trusted interface state 2-125
type of packet logged 2-130
validation checks 2-127
dynamic auto VLAN membership mode 2-609
dynamic desirable VLAN membership mode 2-609
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame
maximum number to send 2-84
response time before retransmitting 2-90
E-LMI mapping 2-99
encapsulation methods 2-627
environment variables, displaying 2-362
EoMPLS
configuring 2-263, 2-684
displaying 2-481
errdisable detect cause command 2-94
errdisable recovery command 2-96
error conditions, displaying 2-388
error disable detection 2-94
error-disabled interfaces, displaying 2-400
EtherChannel
assigning Ethernet interface to channel group 2-31
creating port-channel logical interface 2-108
debug EtherChannel/PAgP, display B-9
debug platform-specific events, display B-35
displaying 2-392
enabling Layer 2 protocol tunneling for
LACP 2-175
PAgP 2-175
UDLD 2-175
interface information, displaying 2-400
LACP
clearing channel-group information 2-46
debug messages, display B-19
displaying 2-434
modes 2-31
port priority for hot-standby ports 2-179
restricting a protocol 2-35
system priority 2-181
load-distribution methods 2-301
PAgP
aggregate-port learner 2-276
clearing channel-group information 2-49
debug messages, display B-28
displaying 2-491
error detection for 2-94
error recovery timer 2-96
learn method 2-276
modes 2-31
physical-port learner 2-276
priority of interface for transmitted traffic 2-278
Ethernet controller, internal register display 2-373
ethernet evc command 2-98
ethernet lmi ce-vlan map command 2-99, 2-101
Ethernet Local Management Interface
See E-LMI
Ethernet over MPLS
See EoMPLS
Ethernet over multiprotocol label switching
See EoMPLS
Ethernet service
debugging B-10
displaying 2-395
Ethernet service instance 2-336
Ethernet service interfaces 2-398
Ethernet statistics, collecting 2-333
Ethernet UNI configuration 2-103
ethernet uni id command 2-105
Ethernet virtual connections
See EVCs
EVC configuration mode 2-98
EVCs 2-98
and VLANs 2-103
service instances 2-336
UNI counts 2-650
EVC service
point-to-multipoint 2-650
point-to-point 2-650
examples, conventions for xx
exit command, VLAN database mode 2-667
extended discovery of candidate switches 2-56
extended-range VLANs
and allowed VLAN list 2-628
and pruning-eligible list 2-628
configuring 2-652
extended system ID for STP 2-555
F
fan information, displaying 2-385
file name, VTP 2-676
files, deleting 2-68
flash_init (boot loader) command A-9
Flex Links
configuring 2-605
displaying 2-400
flowcontrol command 2-106
format (boot loader) command A-10
forwarding packets, with ACL matches 2-5
forwarding results, display C-6
frame forwarding information, displaying C-6
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-353
help (boot loader) command A-12
hop-count limit for clusters 2-56
host connection, port configuration 2-608
host ports, private VLANs 2-612
HSRP
binding HSRP group to cluster 2-63
standby group 2-63
I
IEEE 802.1ag Connectivity Fault Management
See CFM
IEEE 802.1X Port Based Authentication
enabling guest VLAN supplicant 2-75
IGMP filters
applying 2-148
debug messages, display B-15
IGMP groups, setting maximum 2-149
IGMP maximum groups, debugging B-16
IGMP profiles
creating 2-151
displaying 2-420
IGMP snooping
adding ports as a static member of a group 2-162
displaying 2-421, 2-425, 2-427
enabling the Immediate-Leave feature 2-159
multicast table 2-423
querier 2-155
report suppression 2-157
images
See software images
Immediate-Leave feature, MVR 2-271
immediate-leave processing 2-159
import map command 2-170
initial configuration
See hardware installation guide
interface configuration mode 1-2, 1-4
interface port-channel command 2-108
interface range command 2-110
interface-range macros 2-66
interfaces
assigning Ethernet interface to channel group 2-31
configuring 2-92
configuring multiple 2-110
creating port-channel logical 2-108
debug messages, display B-12
disabling 2-535
displaying the MAC address table 2-452
restarting 2-535
interface speed, configuring 2-590
interface vlan command 2-112
internal registers, displaying 2-373, 2-377
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-94
error recovery timer 2-96
ip access-group command 2-114
ip address command 2-117
IP addresses, setting 2-117
IP address matching 2-213
ip arp inspection filter vlan command 2-119
ip arp inspection limit command 2-121
ip arp inspection log-buffer command 2-123
ip arp inspection trust command 2-125
ip arp inspection validate command 2-127
ip arp inspection vlan command 2-129
ip arp inspection vlan logging command 2-130
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 2-133
ip dhcp snooping command 2-132
ip dhcp snooping database command 2-135
ip dhcp snooping information option allow-untrusted command 2-139
ip dhcp snooping information option command 2-137
ip dhcp snooping information option format remote-id command 2-141
ip dhcp snooping limit rate command 2-142
ip dhcp snooping trust command 2-143
ip dhcp snooping verify command 2-144
ip dhcp snooping vlan command 2-145
ip dhcp snooping vlan information option format-type circuit-id string command 2-146
ip igmp filter command 2-148
ip igmp max-groups command 2-149
ip igmp profile command 2-151
ip igmp snooping command 2-153
ip igmp snooping querier command 2-155
ip igmp snooping report-suppression command 2-157
ip igmp snooping vlan immediate-leave command 2-159
ip igmp snooping vlan mrouter command 2-160
ip igmp snooping vlan static command 2-162
IP multicast addresses 2-268
IP phones
auto-QoS configuration 2-15
trusting packets sent from 2-254
IP-precedence-to-DSCP map 2-229
ip source binding command 2-164
IP source guard
disabling 2-168
displaying
binding entries 2-429
configuration 2-430
enabling 2-168
static IP source bindings 2-164
ip ssh command 2-166
ip verify source command 2-168
ip vrf (global configuration) command 2-169
ip vrf (interface configuration) command 2-172
J
jumbo frames
See MTU
L
l2protocol-tunnel command 2-174
l2protocol-tunnel cos command 2-178
label distribution protocol
See LDP
LACP
See EtherChannel
lacp port-priority command 2-179
lacp system-priority command 2-181
Layer 2 mode, enabling 2-601
Layer 2 protocol ports, displaying 2-432
Layer 2 protocol tunnel
and EtherChannels 2-175
CoS 2-178
counters, clearing 2-45
error detection for 2-94
error recovery 2-176
error recovery timer 2-96
setting thresholds for 2-176
Layer 2 traceroute
IP addresses 2-641
MAC addresses 2-638
Layer 3 mode, enabling 2-601
LDP
destination 2-263
holdtime 2-265
line configuration mode 1-2, 1-5
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 2-94
error recovery timer 2-96
link state group command 2-183
link state track command 2-185
load_helper (boot loader) command A-13
load-distribution methods for EtherChannel 2-301
logging event command 2-186
logging file command 2-187
logical interface 2-108
loopback error
detection for 2-94
recovery timer 2-96
loop guard, for spanning tree 2-556, 2-560
M
mac access-group command 2-189
MAC access-groups, displaying 2-440
MAC access list configuration mode 2-191
mac access-list extended command 2-191
MAC access lists 2-69
MAC addresses
disabling MAC address learning per VLAN 2-194
displaying
aging time 2-446
all 2-444
dynamic 2-450
Layer 2 multicast entries 2-457
MAC address-table move updates 2-455
notification settings 2-454, 2-459
number of addresses in a VLAN 2-448
per interface 2-452
per VLAN 2-463
static 2-461
static and dynamic entries 2-442
dynamic
aging time 2-193
deleting 2-47
displaying 2-450
enabling MAC address notification 2-198
enabling MAC address-table move update 2-196
matching 2-213
static
adding and removing 2-200
displaying 2-461
dropping on an interface 2-201
tables 2-444
MAC address notification, debugging B-20
mac address-table aging-time 2-189, 2-213
mac address-table aging-time command 2-193
mac address-table learning command 2-194
mac address-table move update 2-196
mac address-table move update command 2-196
mac address-table notification command 2-198
mac address-table static command 2-200
mac address-table static drop command 2-201
macro description command 2-206
macro global command 2-207
macro global description command 2-210
macro name command 2-211
macros
adding a description 2-206
adding a global description 2-210
applying 2-207
creating 2-211
displaying 2-493
specifying parameter values 2-207
tracing 2-207
macros, interface range 2-66, 2-110
maintenance end points 2-650
manual
audience xix
purpose of xix
maps
QoS
defining 2-229
displaying 2-473
VLAN
creating 2-664
defining 2-213
displaying 2-525
match (access-map configuration) command 2-213
match (class-map configuration) command 2-215
maximum transmission unit
See MTU
mdix auto command 2-218
member switches
See clusters
memory (boot loader) command A-14
mkdir (boot loader) command A-16
mls qos aggregate-policer command 2-222
mls qos command 2-220
mls qos cos command 2-224
mls qos dscp-mutation command 2-226
mls qos enhanced command 2-228
mls qos map command 2-229
mls qos queue-set output buffers command 2-232
mls qos queue-set output threshold command 2-234
mls qos srr-queue input bandwidth command 2-238
mls qos srr-queue input buffers command 2-240
mls qos-srr-queue input cos-map command 2-242
mls qos srr-queue input dscp-map command 2-244
mls qos srr-queue input priority-queue command 2-246
mls qos srr-queue input threshold command 2-248
mls qos-srr-queue output cos-map command 2-250
mls qos srr-queue output dscp-map command 2-252
mls qos trust command 2-254
mls qos vlan-based command 2-257
mode, MVR 2-268
Mode button, and password recovery 2-337
modes, commands 1-1
monitor session command 2-258
more (boot loader) command A-17
MPLS
MTU 2-266
VCs 2-263, 2-684
mpls l2transport route command 2-263, 2-481
mpls ldp holdtime command 2-265
mpls mtu command 2-266
MSTP
displaying 2-506, 2-507
interoperability 2-51
link type 2-558
MST region
aborting changes 2-564
applying changes 2-564
configuration name 2-564
configuration revision number 2-564
current or pending display 2-564
displaying 2-506, 2-507
MST configuration mode 2-564
VLANs-to-instance mapping 2-564
path cost 2-566
protocol mode 2-562
restart protocol migration process 2-51
root port
loop guard 2-556
preventing from becoming designated 2-556
restricting which can be root 2-556
root guard 2-556
root switch
affects of extended system ID 2-555
hello-time 2-569, 2-577
interval between BDPU messages 2-570
interval between hello BPDU messages 2-569, 2-577
max-age 2-570
maximum hop count before discarding BPDU 2-571
port priority for selection of 2-574
primary or secondary 2-577
switch priority 2-576
state changes
blocking to forwarding state 2-583
enabling BPDU filtering 2-547, 2-581
enabling BPDU guard 2-549, 2-581
enabling Port Fast 2-581, 2-583
forward-delay time 2-568
length of listening and learning states 2-568
rapid transition to forwarding 2-558
shutting down Port Fast-enabled ports 2-581
state information display 2-505
MTU
configuring size 2-636
displaying global setting 2-514
for MPLS 2-266
mulit-VRF CE 2-169, 2-172
multicast group address, MVR 2-271
multicast groups, MVR 2-269
multicast router learning method 2-160
multicast router ports, configuring 2-160
multicast storm control 2-598
multicast VLAN, MVR 2-268
multicast VLAN registration
See MVR
multiple hosts on authorized port 2-81
Multiple Spanning Tree Protocol
See MSTP
multiplexing, UNI 2-103
multi VPN routing/forwarding instances in customer edge devices
See multi-VRF CE
MVR
and address aliasing 2-269
configuring 2-268
configuring interfaces 2-271
debug messages, display B-26
displaying 2-485
displaying interface information 2-487
members, displaying 2-489
mvr (global configuration) command 2-268
mvr (interface configuration) command 2-271
mvr vlan group command 2-272
N
native VLANs 2-627
nonegotiate
DTP messaging 2-614
nonhierarchical single-level policy maps 2-298
non-IP protocols
denying 2-69
forwarding 2-280
non-IP traffic
access lists 2-191
denying 2-69
permitting 2-280
normal-range VLANs 2-652, 2-658
note, description xx
no vlan command 2-652, 2-662
O
OAM protocol 2-275
oam protocol cfm svlan command 2-275
operation, administration, and maintenance protocol
See OAM
P
PAgP
See EtherChannel
pagp learn-method command 2-276
pagp port-priority command 2-278
password, VTP 2-676, 2-680
password-recovery mechanism, enabling and disabling 2-337
permit (ARP access-list configuration) command 2-283
permit command 2-280
per-VLAN spanning-tree plus
See STP
physical-port learner 2-276
PID, displaying 2-411
PIM-DVMRP, as multicast router learning method 2-160
police aggregate command 2-287
police cir command 2-289
police cir percent command 2-293
police command 2-285
policed-DSCP map 2-229
policers
aggregate 2-222, 2-287
displaying 2-466
policed-DSCP map 2-229
single-rate ingress 2-285
two-rate hierarchical 2-289, 2-293
policy-map command 2-297
policy maps
applying to an interface 2-339
creating 2-297
displaying 2-496
dual-level 2-298
marking 2-344
nonhierarchical and single-level 2-298
See also policers
See also QoS, hierarchical policies
traffic classification
defining the class 2-36
defining trust states 2-643
Port Aggregation Protocol
See EtherChannel
port-based authentication
802.1x AAA accounting methods 2-1
AAA method list 2-3
debug messages, display B-7
enabling 802.1x
globally 2-89
per interface 2-85
guest VLAN 2-79
host modes 2-81
initialize an interface 2-82
manual control of authorization state 2-85
multiple hosts on authorized port 2-81
periodic re-authentication
enabling 2-88
time between attempts 2-90
quiet period between failed authentication exchanges 2-90
re-authenticating 802.1x-enabled ports 2-87
resetting configurable 802.1x parameters 2-78
statistics and status display 2-380
switch-to-authentication server retransmission time 2-90
switch-to-client frame-retransmission number 2-83, 2-84
switch-to-client retransmission time 2-90
port-channel load-balance command 2-301
Port Fast, for spanning tree 2-583
port ranges, defining 2-66
ports, debugging B-65
ports, protected 2-626
port security
aging 2-620
debug messages, display B-67
enabling 2-616
violation error recovery 2-96
port trust states for QoS 2-254
port types, MVR 2-271
power information, displaying 2-385
priority command 2-303
priority-queue command 2-305
private-vlan command 2-307
private-vlan mapping command 2-310
private VLANs
association 2-624
configuring 2-307
configuring ports 2-612
displaying 2-520
host ports 2-612
mapping
configuring 2-624
promiscuous ports 2-612
privileged EXEC mode 1-2, 1-3
product identification information, displaying 2-411
promiscuous ports, private VLANs 2-612
protected ports, displaying 2-405
pruning
VLANs 2-627
VTP
displaying interface information 2-400
enabling 2-676, 2-680
pruning-eligible VLAN list 2-629
PVST+
See STP
Q
QoS
and 802.1Q tunneling guidelines 2-216, 2-226, 2-255
applying bandwidth to only one ES port 2-228
auto-QoS
configuring 2-15
debug messages, display 1-5, B-2
displaying 2-358
class maps
creating 2-40
defining the match criteria 2-215
displaying 2-364
defining the CoS value for an incoming packet 2-224
displaying configuration information 2-358, 2-465
DSCP trusted ports
applying DSCP-to-DSCP-mutation map to 2-226
defining DSCP-to-DSCP-mutation map 2-229
egress queues
displaying queue-set settings 2-478
egress queue-sets
allocating buffers 2-232
defining the CoS output queue threshold map 2-250
defining the DSCP output queue threshold map 2-252
displaying buffer allocations 2-469
displaying CoS output queue threshold map 2-473
displaying DSCP output queue threshold map 2-473
displaying queueing strategy 2-469
displaying queue-set settings 2-476
enabling bandwidth shaping and scheduling 2-594
enabling bandwidth sharing and scheduling 2-596
enabling the priority queue 2-305
limiting the maximum output on a port 2-592
mapping a port to a queue-set 2-314
mapping CoS values to a queue and threshold 2-250
mapping DSCP values to a queue and threshold 2-252
setting maximum and reserved memory allocations 2-234
setting WTD thresholds 2-234
SRR and priority queue interaction 2-305
enabling 2-220
hierarchical policies
applying to an interface 2-339
average-rate traffic shaping on a class 2-351
bandwidth allocation for a class 2-20
class-based weighted fair queueing 2-20, 2-37
creating a service policy 2-342
displaying 2-496
DSCP-based WRED 2-318
IP precedence-based WRED 2-325
marking 2-344
strict priority queueing (LLQ) 2-303
tail drop 2-312
two-rate policers 2-289, 2-293
WRED 2-315
WRED average queue size calculation 2-322
ingress queues
allocating buffers 2-240
assigning SRR scheduling weights 2-238
defining the CoS input queue threshold map 2-242
defining the DSCP input queue threshold map 2-244
displaying buffer allocations 2-469
displaying CoS input queue threshold map 2-473
displaying DSCP input queue threshold map 2-473
displaying queueing strategy 2-469
displaying settings for 2-467
enabling the priority queue 2-246
mapping CoS values to a queue and threshold 2-242
mapping DSCP values to a queue and threshold 2-244
setting WTD thresholds 2-248
maps
defining 2-229, 2-242, 2-244, 2-250, 2-252
displaying 2-473
policy maps
applying an aggregate policer 2-287
applying to an interface 2-339
creating 2-297
defining aggregate policers 2-222
defining single-rate ingress policers 2-285
displaying policers 2-466
displaying policy maps 2-496
dual-level 2-298
hierarchical on non-ES ports 2-298
marking 2-344
policed-DSCP map 2-229
traffic classifications 2-36
trust states 2-643
port trust states 2-254
statistics
in-profile and out-of-profile packets 2-469
packets enqueued or dropped 2-469
sent and received CoS values 2-469
sent and received DSCP values 2-469
trusted boundary for IP phones 2-254
VLAN-based 2-257
quality of service
See QoS
querytime, MVR 2-268
queue-limit command 2-312
queue-set command 2-314
R
random-detect command 2-315
random-detect dscp command 2-318
random-detect exponential-weighting-constant command 2-322
random-detect precedence command 2-325
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
rcommand command 2-328
re-authenticating 802.1x-enabled ports 2-87
re-authentication
periodic 2-88
time between attempts 2-90
receiver ports, MVR 2-271
receiving flow-control packets 2-106
recovery mechanism
causes 2-96
display 2-386, 2-390
timer interval 2-96
redundancy for cluster switches 2-63
remote-span command 2-330
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command A-18
renew ip dhcp snooping database command 2-332
reset (boot loader) command A-19
reset command 2-667
resource templates, displaying 2-502
restricted VLAN
See dot1x auth-fail vlan
rmdir (boot loader) command A-20
rmon collection stats command 2-333
root guard, for spanning tree 2-556
route distinguisher 2-170
routed ports
IP addresses on 2-118
number supported 2-118
route-target command 2-170
routing template 2-334
RSPAN
configuring 2-258
displaying 2-479
filter RSPAN traffic 2-258
sessions
add interfaces to 2-258
displaying 2-479
start new 2-258
VLAN 2-330
S
sdm prefer command 2-334
secure ports, limitations 2-617
sending flow-control packets 2-106
service instance command 2-336
service instances, displaying 2-396
service password-recovery command 2-337
service-policy command (interface configuration) 2-339
service-policy command (policy-map class) 2-342
set (boot loader) command A-21
set command 2-344
setup command 2-346
setup express command 2-349
shape command 2-351
show access-lists command 2-353
show archive status command 2-356
show arp access-list command 2-357
show auto qos command 2-358
show boot command 2-362
show changes command 2-667
show class-map command 2-364
show cluster candidates command 2-367
show cluster command 2-365
show cluster members command 2-369
show controllers cpu-interface command 2-371
show controllers ethernet-controller command 2-373
show controllers tcam command 2-377
show current command 2-667
show dot1q-tunnel command 2-379
show dot1x command 2-380
show dtp command 2-383
show env command 2-385
show errdisable detect command 2-386
show errdisable flap-values command 2-388
show errdisable recovery command 2-390
show etherchannel command 2-392
show ethernet service evc command 2-395
show ethernet service instance command 2-396
show ethernet service interface command 2-398
show interfaces command 2-400
show interfaces counters command 2-408
show inventory command 2-411
show ip arp inspection command 2-412
show ip dhcp snooping binding command 2-416
show ip dhcp snooping command 2-415
show ip dhcp snooping database command 2-418
show ip igmp profile command 2-420
show ip igmp snooping command 2-421
show ip igmp snooping groups command 2-423
show ip igmp snooping mrouter command 2-425
show ip igmp snooping querier command 2-427
show ip source binding command 2-429
show ip verify source command 2-430
show l2protocol-tunnel command 2-432
show lacp command 2-434
show link state group command 2-438
show mac access-group command 2-440
show mac address-table address command 2-444
show mac address-table aging time command 2-446
show mac address-table command 2-442
show mac address-table count command 2-448
show mac address-table dynamic command 2-450
show mac address-table interface command 2-452
show mac address-table learning command 2-454
show mac address-table move update 2-455
show mac address-table move update command 2-455
show mac address-table multicast command 2-457
show mac address-table notification command 2-48, 2-459, B-22
show mac address-table static command 2-461
show mac address-table vlan command 2-463
show mls qos aggregate-policer command 2-466
show mls qos command 2-465
show mls qos input-queue command 2-467
show mls qos interface command 2-469
show mls qos maps command 2-473
show mls qos queue-set command 2-476
show monitor command 2-479
show mvr command 2-485
show mvr interface command 2-487
show mvr members command 2-489
show pagp command 2-491
show parser macro command 2-493
show platform acl command C-2
show platform cfm command C-3
show platform configuration command C-4
show platform etherchannel command C-5
show platform forward command C-6
show platform igmp snooping command C-8
show platform ipc trace command C-14
show platform ip multicast command C-10
show platform ip policy command C-11
show platform ip unicast command C-12
show platform layer4op command C-15
show platform mac-address-table command C-16
show platform messaging command C-17
show platform monitor command C-18
show platform mvr table command C-19
show platform pm command C-20
show platform port-asic command C-22
show platform port-security command C-26
show platform qos command C-27
show platform resource-manager command C-28
show platform snmp counters command C-30
show platform spanning-tree command C-31
show platform stp-instance command C-32
show platform tb command C-33
show platform tcam command C-34
show platform vlan command C-37
show policy-map command 2-496
show port security command 2-499
show proposed command 2-667
show sdm prefer command 2-502
show setup express command 2-504
show spanning-tree command 2-505
show storm-control command 2-512
show system mtu command 2-514
show trust command 2-643
show udld command 2-515
show version command 2-518
show vlan access-map command 2-525
show vlan command 2-520
show vlan command, fields 2-522
show vlan filter command 2-526
show vmps command 2-527
show vtp command 2-530
shutdown command 2-535
shutdown threshold, Layer 2 protocol tunneling 2-174
shutdown vlan command 2-536
Smartports macros
See macros
SNMP host, specifying 2-540
SNMP informs, enabling the sending of 2-537
snmp-server enable traps command 2-537
snmp-server host command 2-540
snmp trap mac-notification command 2-544
SNMP traps
enabling MAC address notification trap 2-544
enabling the MAC address notification feature 2-198
enabling the sending of 2-537
SoftPhone
See Cisco SoftPhone
software images
deleting 2-68
downloading 2-7
upgrading 2-7
uploading 2-12
software version, displaying 2-518
source ports, MVR 2-271
SPAN
configuring 2-258
debug messages, display B-23
displaying 2-479
filter SPAN traffic 2-258
sessions
add interfaces to 2-258
displaying 2-479
start new 2-258
spanning-tree backbonefast command 2-546
spanning-tree bpdufilter command 2-547
spanning-tree bpduguard command 2-549
spanning-tree cost command 2-551
spanning-tree etherchannel command 2-553
spanning-tree extend system-id command 2-555
spanning-tree guard command 2-556
spanning-tree link-type command 2-558
spanning-tree loopguard default command 2-560
spanning-tree mode command 2-562
spanning-tree mst configuration command 2-564
spanning-tree mst cost command 2-566
spanning-tree mst forward-time command 2-568
spanning-tree mst hello-time command 2-569
spanning-tree mst max-age command 2-570
spanning-tree mst max-hops command 2-571
spanning-tree mst port-priority command 2-574
spanning-tree mst pre-standard command 2-573
spanning-tree mst priority command 2-576
spanning-tree mst root command 2-577
spanning-tree portfast (global configuration) command 2-581
spanning-tree portfast (interface configuration) command 2-583
spanning-tree port-priority command 2-579
Spanning Tree Protocol
See STP
spanning-tree uplinkfast command 2-585
spanning-tree vlan command 2-587
speed command 2-590
srr-queue bandwidth limit command 2-592
srr-queue bandwidth shape command 2-594
srr-queue bandwidth share command 2-596
SSH, configuring version 2-166
static-access ports, configuring 2-603
statistics, Ethernet group 2-333
sticky learning, enabling 2-616
storm-control command 2-598
STP
BackboneFast 2-546
counters, clearing 2-50
debug messages, display
BackboneFast events B-71
MSTP B-74
optimized BPDUs handling B-73
spanning-tree activity B-69
switch shim B-76
transmitted and received BPDUs B-72
UplinkFast B-78
detection of indirect link failures 2-546
enabling protocol tunneling for 2-174
EtherChannel misconfiguration 2-553
extended system ID 2-555
path cost 2-551
protocol modes 2-562
root port
accelerating choice of new 2-585
loop guard 2-556
preventing from becoming designated 2-556
restricting which can be root 2-556
root guard 2-556
UplinkFast 2-585
root switch
affects of extended system ID 2-555, 2-588
hello-time 2-587
interval between BDPU messages 2-587
interval between hello BPDU messages 2-587
max-age 2-587
port priority for selection of 2-579
primary or secondary 2-587
switch priority 2-587
state changes
blocking to forwarding state 2-583
enabling BPDU filtering 2-547, 2-581
enabling BPDU guard 2-549, 2-581
enabling Port Fast 2-581, 2-583
enabling timer to recover from error state 2-96
forward-delay time 2-587
length of listening and learning states 2-587
shutting down Port Fast-enabled ports 2-581
state information display 2-505
VLAN options 2-576, 2-587
SVIs, creating 2-112
Switched Port Analyzer
See SPAN
switching characteristics
modifying 2-601, 2-614
returning to interfaces 2-601, 2-614
switchport access command 2-603
switchport backup interface command 2-605
switchport block command 2-607
switchport command 2-601
switchport host command 2-608
switchport mode command 2-609
switchport mode private-vlan command 2-612
switchport nonegotiate command 2-614
switchport port-security aging command 2-620
switchport port-security command 2-616
switchport priority extend command 2-622
switchport private-vlan command 2-624
switchport protected command 2-626
switchports, displaying 2-400
switchport trunk command 2-627
switchport vlan mapping command 2-631
switchport voice vlan command 2-634
system message logging, save message to flash 2-187
system mtu command 2-636
system resource templates 2-334
T
tar files, creating, listing, and extracting 2-9
Telnetting to cluster switches 2-328
temperature information, displaying 2-385
templates, system resources 2-334
traceroute mac command 2-638
traceroute mac ip command 2-641
trunking, VLAN mode 2-609
trunk mode 2-609
trunk ports 2-609
trunks, to non-DTP device 2-610
trusted boundary for QoS 2-254
trusted port states for QoS 2-254
tunneling
drop threshold 2-176
PAgP, LACP, and UDLD packets 2-175
shutdown threshold 2-176
tunnel ports, Layer 2 protocol, displaying 2-432
type (boot loader) command A-24
U
UDLD
aggressive mode 2-645, 2-647
debug messages, display B-86
enable globally 2-645
enable per interface 2-647
error recovery timer 2-96
message timer 2-645
normal mode 2-645, 2-647
reset a shutdown interface 2-649
status 2-515
udld (global configuration) command 2-645
udld (interface configuration) command 2-647
udld reset command 2-649
UNI
bundling and multiplexing 2-103
Ethernet 2-103
unicast storm control 2-598
uni count command 2-650
UniDirectional Link Detection
See UDLD
UNI ID, Ethernet 2-105
unknown multicast traffic, preventing 2-607
unknown unicast traffic, preventing 2-607
unset (boot loader) command A-25
upgrading
software images
monitoring status of 2-356
upgrading, software images 2-7
upgrading information
See release notes xx
UplinkFast, for STP 2-585
user EXEC mode 1-2
V
VCs
assigning interfaces to 1-5, 2-684
configuring 2-263
MPLS, displaying 2-481
version (boot loader) command A-27
virtual circuits
See VCs
VLAN
enabling guest VLAN supplicant 2-75
vlan (global configuration) command 2-652
vlan (VLAN configuration) command 2-658
vlan access-map command 2-664
VLAN access map configuration mode 2-664
VLAN access maps
actions 2-5
displaying 2-525
VLAN-based QoS 2-257
VLAN configuration
rules 2-655, 2-660
saving 2-652, 2-662
VLAN configuration mode
commands
VLAN 2-658
VTP 2-680
description 1-4
entering 2-666
summary 1-2
vlan database command 2-666
vlan filter command 2-669
VLAN filters, displaying 2-526
VLAN ID range 2-652, 2-658
VLAN mapping
command 2-632
VLAN maps
applying 2-669
creating 2-664
defining 2-213
displaying 2-525
VLAN Query Protocol
See VQP
VLANs
adding 2-652
configuring 2-652, 2-658
debug messages, display
ISL B-82
VLAN IOS file system error tests B-81
VLAN manager activity B-79
VTP B-84
displaying configurations 2-520
extended-range 2-652
MAC addresses
displaying 2-463
number of 2-448
media types 2-655, 2-660
normal-range 2-652, 2-658
private 2-612
configuring 2-307
displaying 2-520
See also private VLANs
restarting 2-536
saving the configuration 2-652
shutting down 2-536
SNMP traps for VTP 2-538, 2-541
suspending 2-536
variables 2-658
VLAN template 2-334
VLAN Trunking Protocol
See VTP
VMPS
configuring servers 2-674
displaying 2-527
error recovery timer 2-96
reconfirming dynamic VLAN assignments 2-671
vmps reconfirm (global configuration) command 2-672
vmps reconfirm (privileged EXEC) command 2-671
vmps retry command 2-673
vmps server command 2-674
voice VLAN
configuring 2-634
setting port priority 2-622
VPN routing/forwarding table
See VRF
VQP
and dynamic-access ports 2-604
clearing client statistics 2-52
displaying information 2-527
per-server retry count 2-673
reconfirmation interval 2-672
reconfirming dynamic VLAN assignments 2-671
VRF
associating to an interface 2-172
configuring 2-169
VTP
changing characteristics 2-676
clearing pruning counters 2-53
configuring
domain name 2-676, 2-680
file name 2-676
mode 2-676, 2-680
password 2-676, 2-680
counters display fields 2-531
displaying information 2-530
enabling
pruning 2-676, 2-680
tunneling for 2-174
version 2 2-676, 2-680
mode 2-676, 2-680
pruning 2-676, 2-680
saving the configuration 2-652, 2-662
statistics 2-530
status 2-530
status display fields 2-533
vtp (global configuration) command 2-676
vtp (VLAN configuration) command 2-680
X
xconnect command 2-684