Index A
aaa accounting dot1x command 1-1
aaa authentication dot1x command 1-3
aaa authorization network command 1-5, 1-18, 1-24, 1-26, 1-28, 1-30, 1-32, 1-129, 1-270, 1-272, 1-273, 1-410, 1-7, 1-34
AAA methods 1-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 1-182
MAC, displaying 1-508
access mode 1-656
access ports 1-656
ACEs 1-116, 1-354
ACLs
deny 1-114
displaying 1-393
for non-IP protocols 1-277
IP 1-182
on Layer 2 interfaces 1-182
permit 1-353
address aliasing 1-333
aggregate-port learner 1-347
allowed VLANs 1-671
archive download-sw command 1-6
archive tar command 1-9
archive upload-sw command 1-12
arp access-list command 1-14
authentication command bounce-port ignore 1-16
authentication command disable-port ignore 1-17
authentication control-direction command 1-18
authentication event command 1-20
authentication failed VLAN
See dot1x auth-fail vlan
authentication fallback command 1-24
authentication host-mode command 1-26
authentication mac-move permit command 1-28
authentication open command 1-30
authentication order command 1-32
authentication periodic command 1-34
authentication port-control command 1-36
authentication priority command 1-38
authentication timer command 1-40
authentication violation command 1-42
auth-fail max-attempts
See dot1x auth-fail max-attempts
auth-fail vlan
See dot1x auth-fail vlan
auth open command 1-30
auth order command 1-32
authorization state of controlled port 1-147
auth timer command 1-40
autonegotiation of duplex mode 1-161
auto qos classify command 1-44
auto qos trust command 1-47
auto qos video command 1-50
auto qos voip command 1-53
B
BackboneFast, for STP 1-593
backup interfaces
configuring 1-649
displaying 1-454
boot (boot loader) command 1-2
boot config-file command 1-60
boot enable-break command 1-61
boot helper command 1-62
boot helper-config file command 1-63
booting
Cisco IOS image 1-66
displaying environment variables 1-406
interrupting 1-61
manually 1-64
boot loader
accessing 1-1
booting
Cisco IOS image 1-2
helper image 1-62
directories
creating 1-14
displaying a list of 1-7
removing 1-18
displaying
available commands 1-12
memory heap utilization 1-13
version 1-25
environment variables
described 1-19
displaying settings 1-19
location of 1-20
setting 1-19
unsetting 1-23
files
copying 1-5
deleting 1-6
displaying a list of 1-7
displaying the contents of 1-4, 1-15, 1-22
renaming 1-16
file system
formatting 1-10
initializing flash 1-9
running a consistency check 1-11
prompt 1-1
resetting the system 1-17
boot manual command 1-64
boot private-config-file command 1-65
boot system command 1-66
BPDU filtering, for spanning tree 1-594, 1-626
BPDU guard, for spanning tree 1-596, 1-626
broadcast storm control 1-644
C
candidate switches
See clusters
cat (boot loader) command 1-4
channel-group command 1-67
channel-protocol command 1-70
Cisco IP camera
auto-QoS configuration 1-50
Cisco SoftPhone
auto-QoS configuration 1-53
trusting packets sent from 1-326
Cisco Telepresence System
auto-QoS configuration 1-50
CISP
See Client Information Signalling Protocol
cisp
debug platform cisp command 1-34
cisp enable command 1-71
class command 1-72
class-map command 1-75
class maps
creating 1-75
defining the match criteria 1-289
displaying 1-411
class of service
See CoS
clear dot1x command 1-78
clear eap sessions command 1-79
clear errdisable interface 1-80
clear ip arp inspection log command 1-77
clear ip arp inspection statistics command 1-81
clear ip dhcp snooping database command 1-82
clear lacp command 1-84
clear mac address-table command 1-85, 1-87
clear nmsp statistics command 1-88
clear pagp command 1-89
clear port-security command 1-90
clear psp counter 1-92
clear psp counter command 1-92
clear spanning-tree counters command 1-93
clear spanning-tree detected-protocols command 1-94
clear vmps statistics command 1-95
clear vtp counters command 1-96
Client Information Signalling Protocol 1-71, 1-129, 1-410, 1-7, 1-34
cluster commander-address command 1-97
cluster discovery hop-count command 1-99
cluster enable command 1-100
cluster holdtime command 1-101
cluster member command 1-102
cluster outside-interface command 1-104
cluster run command 1-105
clusters
adding candidates 1-102
binding to HSRP group 1-106
building manually 1-102
communicating with
devices outside the cluster 1-104
members by using Telnet 1-376
debug messages, display 1-8
displaying
candidate switches 1-414
debug messages 1-8
member switches 1-416
status 1-412
hop-count limit for extended discovery 1-99
HSRP standby groups 1-106
redundancy 1-106
SNMP trap 1-583
cluster standby-group command 1-106
cluster timer command 1-108
command modes defined 1-1
command switch
See clusters
configuration files
password recovery disable considerations 1-1
specifying the name 1-60, 1-65
configuring multiple interfaces 1-178
config-vlan mode
commands 1-692
entering 1-691
copy (boot loader) command 1-5
CoS
assigning default value to incoming packets 1-296
overriding the incoming value 1-296
CoS-to-DSCP map 1-300
CPU ASIC statistics, displaying 1-418
crashinfo files 1-171
critical VLAN 1-22
D
debug authentication 1-2
debug auto qos command 1-4
debug backup command 1-6
debug cisp command 1-7
debug cluster command 1-8
debug dot1x command 1-10
debug dtp command 1-12
debug eap command 1-13
debug etherchannel command 1-14
debug ilpower command 1-15
debug interface command 1-16
debug ip dhcp snooping command 1-17
debug ip igmp filter command 1-19
debug ip igmp max-groups command 1-20
debug ip igmp snooping command 1-21
debug ip verify source packet command 1-18
debug lacp command 1-22
debug lldp packets command 1-23
debug mac-notification command 1-24
debug matm command 1-25
debug matm move update command 1-26
debug monitor command 1-27
debug mvrdbg command 1-28
debug nmsp command 1-29
debug nvram command 1-30
debug pagp command 1-31
debug platform acl command 1-32
debug platform backup interface command 1-33
debug platform cisp command 1-34
debug platform configuration command 1-39
debug platform cpu-queues command 1-35
debug platform dot1x command 1-36
debug platform etherchannel command 1-37
debug platform forw-tcam command 1-38
debug platform ip arp inspection command 1-40
debug platform ip dhcp command 1-41
debug platform ip igmp snooping command 1-42
debug platform ip source-guard command 1-44
debug platform led command 1-45
debug platform matm command 1-46
debug platform messaging application command 1-47
debug platform phy command 1-48
debug platform pm command 1-50
debug platform port-asic command 1-52
debug platform port-security command 1-53
debug platform qos-acl-tcam command 1-54
debug platform resource-manager command 1-55
debug platform snmp command 1-56
debug platform span command 1-57
debug platform supervisor-asic command 1-58
debug platform sw-bridge command 1-59
debug platform tcam command 1-60
debug platform udld command 1-62
debug platform vlan command 1-63
debug pm command 1-64
debug port-security command 1-66
debug qos-manager command 1-67
debug spanning-tree backbonefast command 1-70
debug spanning-tree bpdu command 1-71
debug spanning-tree bpdu-opt command 1-72
debug spanning-tree command 1-68
debug spanning-tree mstp command 1-73
debug spanning-tree switch command 1-75
debug spanning-tree uplinkfast command 1-77
debug sw-vlan command 1-78
debug sw-vlan ifs command 1-80
debug sw-vlan notification command 1-81
debug sw-vlan vtp command 1-82
debug udld command 1-84
debug vqpc command 1-86
define interface-range command 1-109
delete (boot loader) command 1-6
delete command 1-111
deny (ARP access-list configuration) command 1-112
deny command 1-114
detect mechanism, causes 1-163
DHCP snooping
accepting untrusted packets from edge switch 1-211
enabling
on a VLAN 1-216
option 82 1-210, 1-211
trust on an interface 1-214
error recovery timer 1-168
rate limiting 1-213
DHCP snooping binding database
binding file, configuring 1-208
bindings
adding 1-206
deleting 1-206
clearing database agent statistics 1-82
database agent, configuring 1-208
renewing 1-380
Digital Optical Monitoring
see DoM
dir (boot loader) command 1-7
directories, deleting 1-111
DoM
displaying supported transceivers 1-464
domain name, VTP 1-701
dot1x auth-fail max-attempts 1-124
dot1x auth-fail vlan 1-125
dot1x command 1-122
dot1x control-direction command 1-127
dot1x credentials (global configuration) command 1-129
dot1x critical global configuration command 1-130
dot1x critical interface configuration command 1-132
dot1x default command 1-134
dot1x fallback command 1-135
dot1x guest-vlan command 1-136
dot1x host-mode command 1-138
dot1x initialize command 1-140
dot1x mac-auth-bypass command 1-141
dot1x max-reauth-req command 1-143
dot1x max-req command 1-145
dot1x pae command 1-146
dot1x port-control command 1-147
dot1x re-authenticate command 1-149
dot1x reauthentication command 1-150
dot1x supplicant controlled transient command 1-151
dot1x supplicant force-multicast command 1-153
dot1x test eapol-capable command 1-154
dot1x test timeout command 1-155
dot1x timeout command 1-156
dot1x violation-mode command 1-159
DSCP-to-CoS map 1-300
DSCP-to-DSCP-mutation map 1-300
DTP 1-657
DTP flap
error detection for 1-163
error recovery timer 1-168
DTP negotiation 1-658
dual-purpose uplink ports
displaying configurable options 1-456
duplex command 1-160
dynamic-access ports
configuring 1-647
restrictions 1-647
dynamic ARP inspection
ARP ACLs
apply to a VLAN 1-189
define 1-14
deny packets 1-112
display 1-397
permit packets 1-351
clear
log buffer 1-77
statistics 1-81
display
ARP ACLs 1-397
configuration and operating state 1-468
log buffer 1-468
statistics 1-468
trust state and rate limit 1-468
enable per VLAN 1-199
log buffer
clear 1-77
configure 1-193
display 1-468
rate-limit incoming ARP packets 1-191
statistics
clear 1-81
display 1-468
trusted interface state 1-195
type of packet logged 1-200
validation checks 1-197
dynamic auto VLAN membership mode 1-656
dynamic desirable VLAN membership mode 1-656
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame
maximum number to send 1-145
response time before retransmitting 1-156
environment variables, displaying 1-406
epm access-control open 1-162
errdisable detect cause command 1-163
errdisable detect cause small-frame comand 1-165
errdisable recovery cause small-frame 1-167
errdisable recovery command 1-168
error conditions, displaying 1-446
error disable detection 1-163
error-disabled interfaces, displaying 1-454
EtherChannel
assigning Ethernet interface to channel group 1-67
creating port-channel logical interface 1-176
debug EtherChannel/PAgP, display 1-14
debug platform-specific events, display 1-37
displaying 1-449
interface information, displaying 1-454
LACP
clearing channel-group information 1-84
debug messages, display 1-22
displaying 1-500
modes 1-67
port priority for hot-standby ports 1-255
restricting a protocol 1-70
system priority 1-257
load-distribution methods 1-362
PAgP
aggregate-port learner 1-347
clearing channel-group information 1-89
debug messages, display 1-31
displaying 1-546
error detection for 1-163
error recovery timer 1-168
learn method 1-347
modes 1-67
physical-port learner 1-347
priority of interface for transmitted traffic 1-349
Ethernet controller, internal register display 1-420
Ethernet statistics, collecting 1-382
exception crashinfo command 1-171
extended discovery of candidate switches 1-99
extended-range VLANs
and allowed VLAN list 1-671
and pruning-eligible list 1-671
configuring 1-691
extended system ID for STP 1-602
F
fallback profile command 1-172
fallback profiles, displaying 1-452
file name, VTP 1-701
files, deleting 1-111
flash_init (boot loader) command 1-9
flexible authentication ordering 1-32
Flex Links
configuring 1-649
configuring preferred VLAN 1-651
displaying 1-454
flowcontrol command 1-174
format (boot loader) command 1-10
fsck (boot loader) command 1-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 1-393
help (boot loader) command 1-12
hierarchical policy maps 1-360
hop-count limit for clusters 1-99
host connection, port configuration 1-655
Hot Standby Router Protocol
See HSRP
HSRP
binding HSRP group to cluster 1-106
standby group 1-106
I
IEEE 802.1x
and switchport modes 1-657
violation error recovery 1-168
See also port-based authentication
IEEE 802.1X Port Based Authentication
enabling guest VLAN supplicant 1-124, 1-135, 1-173
IGMP filters
applying 1-219
debug messages, display 1-19
IGMP groups, setting maximum 1-220
IGMP maximum groups, debugging 1-20
IGMP profiles
creating 1-222
displaying 1-480
IGMP snooping
adding ports as a static member of a group 1-237
displaying 1-481
enabling 1-224
enabling the configurable-leave timer 1-226
enabling the Immediate-Leave feature 1-234
flooding query count 1-231
interface topology change notification behavior 1-233
querier 1-228
query solicitation 1-231
report suppression 1-230
switch topology change notification behavior 1-231
images
See software images
Immediate-Leave feature, MVR 1-335
immediate-leave processing 1-234
Immediate-Leave processing, IPv6 1-253
interface configuration mode 1-2, 1-4
interface port-channel command 1-176
interface range command 1-178
interface-range macros 1-109
interfaces
assigning Ethernet interface to channel group 1-67
configuring 1-160
configuring multiple 1-178
creating port-channel logical 1-176
debug messages, display 1-16
disabling 1-579
displaying the MAC address table 1-516
restarting 1-579
interface speed, configuring 1-636
interface vlan command 1-180
internal registers, displaying 1-420, 1-429
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 1-163
error recovery timer 1-168
ip access-group command 1-182
ip address command 1-184
IP addresses, setting 1-184
ip admission command 1-186
ip admission name proxy http command 1-187
ip arp inspection filter vlan command 1-189
ip arp inspection limit command 1-191
ip arp inspection log-buffer command 1-193
ip arp inspection trust command 1-195
ip arp inspection validate command 1-197
ip arp inspection vlan command 1-199
ip arp inspection vlan logging command 1-200
ip device tracking command 1-204
ip device tracking probe command 1-202
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 1-206
ip dhcp snooping command 1-205
ip dhcp snooping database command 1-208
ip dhcp snooping information option allow-untrusted command 1-211
ip dhcp snooping information option command 1-210
ip dhcp snooping limit rate command 1-213
ip dhcp snooping trust command 1-214
ip dhcp snooping verify command 1-215
ip dhcp snooping vlan command 1-216
ip dhcp snooping vlan information option format-type circuit-id string command 1-217
ip igmp filter command 1-219
ip igmp max-groups command 1-220
ip igmp profile command 1-222
ip igmp snooping command 1-224
ip igmp snooping last-member-query-interval command 1-226
ip igmp snooping querier command 1-228
ip igmp snooping report-suppression command 1-230
ip igmp snooping tcn command 1-231
ip igmp snooping tcn flood command 1-233
ip igmp snooping vlan immediate-leave command 1-234
ip igmp snooping vlan mrouter command 1-235
ip igmp snooping vlan static command 1-237
IP multicast addresses 1-332
IP phones
auto-QoS configuration 1-53
trusting packets sent from 1-326
IP-precedence-to-DSCP map 1-300
ip source binding command 1-239
IP source guard
disabling 1-242
enabling 1-242
static IP source bindings 1-239
ip ssh command 1-241
ipv6 mld snooping command 1-243
ipv6 mld snooping last-listener-query count command 1-245
ipv6 mld snooping last-listener-query-interval command 1-247
ipv6 mld snooping listener-message-suppression command 1-249
ipv6 mld snooping robustness-variable command 1-250
ipv6 mld snooping tcn command 1-252
ipv6 mld snooping vlan command 1-253
ip verify source command 1-242
J
jumbo frames
See MTU
L
LACP
See EtherChannel
lacp port-priority command 1-255
lacp system-priority command 1-257
Layer 2 traceroute
IP addresses 1-682
MAC addresses 1-679
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 1-163
error recovery timer 1-168
link state group command 1-259
link state track command 1-261
load-distribution methods for EtherChannel 1-362
location (global configuration) command 1-262
location (interface configuration) command 1-264
logging event command 1-266
logging event power-inline-status command 1-267
logging file command 1-268
logical interface 1-176
loopback error
detection for 1-163
recovery timer 1-168
loop guard, for spanning tree 1-604, 1-608
M
mab request format attribute 1 command 1-270
mab request format attribute 2 command 1-272
mab request format attribute 32 command 1-273
mac access-group command 1-275
MAC access-groups, displaying 1-508
MAC access list configuration mode 1-277
mac access-list extended command 1-277
MAC access lists 1-114
MAC addresses
disabling MAC address learning per VLAN 1-280
displaying
dynamic 1-515
notification settings 1-519
number of addresses in a VLAN 1-514
per interface 1-516
per VLAN 1-523
static 1-521
static and dynamic entries 1-509
dynamic
aging time 1-279
deleting 1-85
displaying 1-515
enabling MAC address notification 1-284
enabling MAC address-table move update 1-282
static
adding and removing 1-286
displaying 1-521
dropping on an interface 1-287
MAC address notification, debugging 1-24
mac address-table aging-time 1-275
mac address-table aging-time command 1-279
mac address-table learning command 1-280
mac address-table move update command 1-282
mac address-table notification command 1-284
mac address-table static command 1-286
mac address-table static drop command 1-287
macros
interface range 1-109, 1-178
maps
QoS
defining 1-300
match (class-map configuration) command 1-289
maximum transmission unit
See MTU
mdix auto command 1-291
member switches
See clusters
memory (boot loader) command 1-13
mkdir (boot loader) command 1-14
MLD snooping
configuring 1-249, 1-250
configuring queries 1-245, 1-247
configuring topology change notification 1-252
displaying 1-490
enabling 1-243
MLD snooping on a VLAN, enabling 1-253
mls qos aggregate-policer command 1-294
mls qos command 1-292
mls qos cos command 1-296
mls qos dscp-mutation command 1-298
mls qos map command 1-300
mls qos queue-set output buffers command 1-304
mls qos queue-set output threshold command 1-306
mls qos rewrite ip dscp command 1-308
mls qos srr-queue input bandwidth command 1-310
mls qos srr-queue input buffers command 1-312
mls qos-srr-queue input cos-map command 1-314
mls qos srr-queue input dscp-map command 1-316
mls qos srr-queue input priority-queue command 1-318
mls qos srr-queue input threshold command 1-320
mls qos-srr-queue output cos-map command 1-322
mls qos srr-queue output dscp-map command 1-324
mls qos trust command 1-326
mode, MVR 1-332
Mode button, and password recovery 1-383
modes, commands 1-1
monitor session command 1-328
more (boot loader) command 1-15
MSTP
displaying 1-557
interoperability 1-94
link type 1-606
MST region
aborting changes 1-610
applying changes 1-610
configuration name 1-610
configuration revision number 1-610
current or pending display 1-610
displaying 1-557
MST configuration mode 1-610
VLANs-to-instance mapping 1-610
path cost 1-612
protocol mode 1-609
restart protocol migration process 1-94
root port
loop guard 1-604
preventing from becoming designated 1-604
restricting which can be root 1-604
root guard 1-604
root switch
affects of extended system ID 1-602
hello-time 1-615, 1-622
interval between BDPU messages 1-616
interval between hello BPDU messages 1-615, 1-622
max-age 1-616
maximum hop count before discarding BPDU 1-617
port priority for selection of 1-619
primary or secondary 1-622
switch priority 1-621
state changes
blocking to forwarding state 1-628
enabling BPDU filtering 1-594, 1-626
enabling BPDU guard 1-596, 1-626
enabling Port Fast 1-626, 1-628
forward-delay time 1-614
length of listening and learning states 1-614
rapid transition to forwarding 1-606
shutting down Port Fast-enabled ports 1-626
state information display 1-556
MTU
configuring size 1-676
displaying global setting 1-564
Multicase Listener Discovery
See MLD
multicast group address, MVR 1-335
multicast groups, MVR 1-333
Multicast Listener Discovery
See MLD
multicast router learning method 1-235
multicast router ports, configuring 1-235
multicast router ports, IPv6 1-253
multicast storm control 1-644
multicast VLAN, MVR 1-332
multicast VLAN registration
See MVR
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 1-333
configuring 1-332
configuring interfaces 1-335
debug messages, display 1-28
displaying 1-537
displaying interface information 1-538
members, displaying 1-540
mvr (global configuration) command 1-332
mvr (interface configuration) command 1-335
mvr vlan group command 1-336
N
native VLANs 1-671
Network Admission Control Software Configuration Guide 1-186, 1-188
network-policy (global configuration) command 1-339
network-policy command 1-338
network-policy profile (network-policy configuration) command 1-340
nmsp attachment suppress command 1-343
nmsp command 1-342
no authentication logging verbose 1-344
no dot1x logging verbose 1-345
no mab logging verbose 1-346
nonegotiating DTP messaging 1-658
non-IP protocols
denying 1-114
forwarding 1-353
non-IP traffic access lists 1-277
non-IP traffic forwarding
denying 1-114
permitting 1-353
normal-range VLANs 1-691
no vlan command 1-691
O
online diagnostics
displaying
configured boot-up coverage level 1-433
current scheduled tasks 1-433
event logs 1-433
supported test suites 1-433
test ID 1-433
test results 1-433
test statistics 1-433
global configuration mode
clearing health monitoring diagnostic test schedule 1-81
clearing test-based testing schedule 1-119
setting health monitoring diagnostic testing 1-81
setting test-based testing 1-119
setting up health monitoring diagnostic test schedule 1-81
setting up test-based testing 1-119
health monitoring diagnostic tests, configuring 1-117
scheduled switchover
disabling 1-119
enabling 1-119
scheduling
enabling 1-119
removing 1-119
testing, starting 1-121
test interval, setting 1-119
P
PAgP
See EtherChannel
pagp learn-method command 1-347
pagp port-priority command 1-349
password, VTP 1-702
password-recovery mechanism, enabling and disabling 1-383
permit (ARP access-list configuration) command 1-351
permit (MAC access-list configuration) command 1-353
per-VLAN spanning-tree plus
See STP
physical-port learner 1-347
PIM-DVMRP, as multicast router learning method 1-235
PoE
configuring the power budget 1-366
configuring the power management mode 1-363
displaying controller register values 1-427
displaying power management information 1-551
logging of status 1-267
police aggregate command 1-358
police command 1-356
policed-DSCP map 1-300
policy-map command 1-360
policy maps
applying to an interface 1-385, 1-388
creating 1-360
hierarchical 1-360
policers
displaying 1-525
for a single class 1-356
for multiple classes 1-294, 1-358
policed-DSCP map 1-300
traffic classification
defining the class 1-72
defining trust states 1-684
setting DSCP or IP precedence values 1-386
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 1-3
configuring violation modes 1-159
debug messages, display 1-10
enabling IEEE 802.1x
globally 1-122
per interface 1-147
guest VLAN 1-136
host modes 1-138
IEEE 802.1x AAA accounting methods 1-1
initialize an interface 1-140, 1-155
MAC authentication bypass 1-141
manual control of authorization state 1-147
PAE as authenticator 1-146
periodic re-authentication
enabling 1-150
time between attempts 1-156
quiet period between failed authentication exchanges 1-156
re-authenticating IEEE 802.1x-enabled ports 1-149
resetting configurable IEEE 802.1x parameters 1-134
switch-to-authentication server retransmission time 1-156
switch-to-client frame-retransmission number 1-143 to 1-145
switch-to-client retransmission time 1-156
test for IEEE 802.1x readiness 1-154
port-channel load-balance command 1-362
Port Fast, for spanning tree 1-628
port ranges, defining 1-109
ports, debugging 1-64
ports, protected 1-669
port security
aging 1-665
debug messages, display 1-66
enabling 1-660
violation error recovery 1-168
port trust states for QoS 1-326
port types, MVR 1-335
power inline command 1-363
power inline consumption command 1-366
Power over Ethernet
See PoE
priority-queue command 1-368
privileged EXEC mode 1-2, 1-3
protected ports, displaying 1-458
pruning
VLANs 1-671
VTP
displaying interface information 1-454
enabling 1-702
pruning-eligible VLAN list 1-672
psp 1-370
psp command 1-370
PVST+
See STP
Q
QoS
auto-QoS
configuring 1-53
debug messages, display 1-4
auto-QoS trust
configuring 1-47
auto-QoS video
configuring 1-50
class maps
creating 1-75
defining the match criteria 1-289
displaying 1-411
defining the CoS value for an incoming packet 1-296
displaying configuration information 1-524
DSCP transparency 1-308
DSCP trusted ports
applying DSCP-to-DSCP-mutation map to 1-298
defining DSCP-to-DSCP-mutation map 1-300
egress queues
allocating buffers 1-304
defining the CoS output queue threshold map 1-322
defining the DSCP output queue threshold map 1-324
displaying buffer allocations 1-527
displaying CoS output queue threshold map 1-530
displaying DSCP output queue threshold map 1-530
displaying queueing strategy 1-527
displaying queue-set settings 1-533
enabling bandwidth shaping and scheduling 1-640
enabling bandwidth sharing and scheduling 1-642
limiting the maximum output on a port 1-638
mapping a port to a queue-set 1-371
mapping CoS values to a queue and threshold 1-322
mapping DSCP values to a queue and threshold 1-324
setting maximum and reserved memory allocations 1-306
setting WTD thresholds 1-306
enabling 1-292
ingress queues
allocating buffers 1-312
assigning SRR scheduling weights 1-310
defining the CoS input queue threshold map 1-314
defining the DSCP input queue threshold map 1-316
displaying buffer allocations 1-527
displaying CoS input queue threshold map 1-530
displaying DSCP input queue threshold map 1-530
displaying queueing strategy 1-527
displaying settings for 1-526
enabling the priority queue 1-318
mapping CoS values to a queue and threshold 1-314
mapping DSCP values to a queue and threshold 1-316
setting WTD thresholds 1-320
maps
defining 1-300, 1-314, 1-316, 1-322, 1-324
policy maps
applying an aggregate policer 1-358
applying to an interface 1-385, 1-388
creating 1-360
defining policers 1-294, 1-356
displaying policers 1-525
hierarchical 1-360
policed-DSCP map 1-300
setting DSCP or IP precedence values 1-386
traffic classifications 1-72
trust states 1-684
port trust states 1-326
queues, enabling the expedite 1-368
statistics
in-profile and out-of-profile packets 1-527
packets enqueued or dropped 1-527
sent and received CoS values 1-527
sent and received DSCP values 1-527
trusted boundary for IP phones 1-326
quality of service
See QoS
querytime, MVR 1-332
queue-set command 1-371
R
radius-server dead-criteria command 1-372
radius-server host command 1-374
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
rcommand command 1-376
re-authenticating IEEE 802.1x-enabled ports 1-149
re-authentication
periodic 1-150
time between attempts 1-156
receiver ports, MVR 1-335
receiving flow-control packets 1-174
recovery mechanism
causes 1-168
display 1-80, 1-408, 1-445, 1-447
timer interval 1-169
redundancy for cluster switches 1-106
remote-span command 1-378
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command 1-16
renew ip dhcp snooping database command 1-380
reset (boot loader) command 1-17
restricted VLAN
See dot1x auth-fail vlan
rmdir (boot loader) command 1-18
rmon collection stats command 1-382
root guard, for spanning tree 1-604
RSPAN
configuring 1-328
filter RSPAN traffic 1-328
remote-span command 1-378
S
scheduled switchover
disabling 1-119
enabling 1-119
secure ports, limitations 1-662
sending flow-control packets 1-174
service password-recovery command 1-383
service-policy command 1-385
set (boot loader) command 1-19
set command 1-386
setup command 1-388
setup express command 1-391
show access-lists command 1-393
show archive status command 1-396
show arp access-list command 1-397
show authentication command 1-398
show auto qos command 1-402
show boot command 1-406
show cable-diagnostics tdr command 1-408
show cisp command 1-410
show class-map command 1-411
show cluster candidates command 1-414
show cluster command 1-412
show cluster members command 1-416
show controllers cpu-interface command 1-418
show controllers ethernet-controller command 1-420
show controllers power inline command 1-427
show controllers tcam command 1-429
show controller utilization command 1-431
show dot1x command 1-436
show dtp 1-440
show eap command 1-441
show env command 1-444
show errdisable detect command 1-445
show errdisable flap-values command 1-446
show errdisable recovery command 1-447
show etherchannel command 1-449
show fallback profile command 1-452
show flowcontrol command 1-453
show interfaces command 1-454
show interfaces counters command 1-462
show interface transceivers command 1-464
show inventory command 1-467
show ip arp inspection command 1-468
show ip dhcp snooping binding command 1-473
show ip dhcp snooping command 1-472
show ip dhcp snooping database command 1-475, 1-477
show ip igmp profile command 1-480
show ip igmp snooping command 1-481, 1-490
show ip igmp snooping groups command 1-483
show ip igmp snooping mrouter command 1-485
show ip igmp snooping querier command 1-486
show ip source binding command 1-488
show ipv6 route updated 1-498
show ip verify source command 1-489
show lacp command 1-500
show link state group command 1-504
show mac access-group command 1-508
show mac address-table address command 1-511
show mac address-table aging time command 1-512
show mac address-table command 1-509
show mac address-table count command 1-514
show mac address-table dynamic command 1-515
show mac address-table interface command 1-516
show mac address-table move update command 1-518
show mac address-table notification command 1-87, 1-519, 1-26
show mac address-table static command 1-521
show mac address-table vlan command 1-523
show mls qos aggregate-policer command 1-525
show mls qos command 1-524
show mls qos input-queue command 1-526
show mls qos interface command 1-527
show mls qos maps command 1-530
show mls qos queue-set command 1-533
show mls qos vlan command 1-534
show monitor command 1-535
show mvr command 1-537
show mvr interface command 1-538
show mvr members command 1-540
show network-policy profile command 1-542
show nmsp command 1-543
show pagp command 1-546
show platform acl command 1-2
show platform backup interface command 1-3
show platform etherchannel command 1-4
show platform forward command 1-5
show platform frontend-controller command 1-7
show platform igmp snooping command 1-8
show platform ip unicast command 1-9
show platform layer4op command 1-10
show platform mac-address-table command 1-11
show platform messaging command 1-12
show platform monitor command 1-13
show platform mvr table command 1-14
show platform pm command 1-15
show platform port-asic command 1-16
show platform port-security command 1-20
show platform qos command 1-21
show platform resource-manager command 1-22
show platform snmp counters command 1-24
show platform spanning-tree command 1-25
show platform stp-instance command 1-26
show platform tcam command 1-27
show platform vlan command 1-29
show policy-map command 1-548
show port security command 1-549
show power inline command 1-551
show psp config 1-553
show psp config command 1-553
show psp statistics 1-554
show psp statistics command 1-554
show setup express command 1-555
show spanning-tree command 1-556
show storm-control command 1-562
show system mtu command 1-564
show trust command 1-684
show udld command 1-565
show version command 1-568
show vlan command 1-569
show vlan command, fields 1-570
show vmps command 1-572
show vtp command 1-574
shutdown command 1-579
shutdown vlan command 1-580
small violation-rate command 1-581
SNMP host, specifying 1-587
SNMP informs, enabling the sending of 1-583
snmp-server enable traps command 1-583
snmp-server host command 1-587
snmp trap mac-notification change command 1-591
SNMP traps
enabling MAC address notification trap 1-591
enabling the MAC address notification feature 1-284
enabling the sending of 1-583
SoftPhone
See Cisco SoftPhone
software images
deleting 1-111
downloading 1-6
upgrading 1-6
uploading 1-12
software version, displaying 1-568
source ports, MVR 1-335
SPAN
configuring 1-328
debug messages, display 1-27
filter SPAN traffic 1-328
sessions
add interfaces to 1-328
start new 1-328
spanning-tree backbonefast command 1-593
spanning-tree bpdufilter command 1-594
spanning-tree bpduguard command 1-596
spanning-tree cost command 1-598
spanning-tree etherchannel command 1-600
spanning-tree extend system-id command 1-602
spanning-tree guard command 1-604
spanning-tree link-type command 1-606
spanning-tree loopguard default command 1-608
spanning-tree mode command 1-609
spanning-tree mst configuration command 1-610
spanning-tree mst cost command 1-612
spanning-tree mst forward-time command 1-614
spanning-tree mst hello-time command 1-615
spanning-tree mst max-age command 1-616
spanning-tree mst max-hops command 1-617
spanning-tree mst port-priority command 1-619
spanning-tree mst pre-standard command 1-620
spanning-tree mst priority command 1-621
spanning-tree mst root command 1-622
spanning-tree portfast (global configuration) command 1-626
spanning-tree portfast (interface configuration) command 1-628
spanning-tree port-priority command 1-624
Spanning Tree Protocol
See STP
spanning-tree transmit hold-count command 1-630
spanning-tree uplinkfast command 1-631
spanning-tree vlan command 1-633
speed command 1-636
srr-queue bandwidth limit command 1-638
srr-queue bandwidth share command 1-642
SSH, configuring version 1-241
static-access ports, configuring 1-647
statistics, Ethernet group 1-382
sticky learning, enabling 1-660
storm-control command 1-644
STP
BackboneFast 1-593
counters, clearing 1-93
debug messages, display
BackboneFast events 1-70
MSTP 1-73
optimized BPDUs handling 1-72
spanning-tree activity 1-68
switch shim 1-75
transmitted and received BPDUs 1-71
UplinkFast 1-77
detection of indirect link failures 1-593
EtherChannel misconfiguration 1-600
extended system ID 1-602
path cost 1-598
protocol modes 1-609
root port
accelerating choice of new 1-631
loop guard 1-604
preventing from becoming designated 1-604
restricting which can be root 1-604
root guard 1-604
UplinkFast 1-631
root switch
affects of extended system ID 1-602, 1-634
hello-time 1-633
interval between BDPU messages 1-633
interval between hello BPDU messages 1-633
max-age 1-633
port priority for selection of 1-624
primary or secondary 1-633
switch priority 1-633
state changes
blocking to forwarding state 1-628
enabling BPDU filtering 1-594, 1-626
enabling BPDU guard 1-596, 1-626
enabling Port Fast 1-626, 1-628
enabling timer to recover from error state 1-168
forward-delay time 1-633
length of listening and learning states 1-633
shutting down Port Fast-enabled ports 1-626
state information display 1-556
VLAN options 1-621, 1-633
Switched Port Analyzer
See SPAN
switchport access command 1-647
switchport backup interface command 1-649
switchport block command 1-653
switchport host command 1-655
switchport mode command 1-656
switchport nonegotiate command 1-658
switchport port-security aging command 1-665
switchport port-security command 1-660
switchport priority extend command 1-667
switchport protected command 1-669
switchports, displaying 1-454
switchport trunk command 1-671
switchport voice vlan command 1-674
system message logging 1-267
system message logging, save message to flash 1-268
system mtu command 1-676
T
tar files, creating, listing, and extracting 1-9
TDR, running 1-678
Telnet, using to communicate to cluster switches 1-376
test cable-diagnostics tdr command 1-678
traceroute mac command 1-679
traceroute mac ip command 1-682
trunking, VLAN mode 1-656
trunk mode 1-656
trunk ports 1-656
trunks, to non-DTP device 1-657
trusted boundary for QoS 1-326
trusted port states for QoS 1-326
type (boot loader) command 1-22
U
UDLD
aggressive mode 1-686, 1-688
debug messages, display 1-84
enable globally 1-686
enable per interface 1-688
error recovery timer 1-168
message timer 1-686
normal mode 1-686, 1-688
reset a shutdown interface 1-690
status 1-565
udld command 1-686
udld port command 1-688
udld reset command 1-690
unicast storm control 1-644
UniDirectional Link Detection
See UDLD
unknown multicast traffic, preventing 1-653
unknown unicast traffic, preventing 1-653
unset (boot loader) command 1-23
upgrading
software images
downloading 1-6
monitoring status of 1-396
UplinkFast, for STP 1-631
user EXEC mode 1-2
V
version (boot loader) command 1-25
vlan (global configuration) command 1-691
VLAN configuration
rules 1-694
saving 1-691
VLAN configuration mode
description 1-4
summary 1-2
VLAN ID range 1-691
VLAN Query Protocol
See VQP
VLANs
adding 1-691
configuring 1-691
debug messages, display
ISL 1-81
VLAN IOS file system error tests 1-80
VLAN manager activity 1-78
VTP 1-82
displaying configurations 1-569
enabling guest VLAN supplicant 1-124, 1-135, 1-173
extended-range 1-691
MAC addresses
displaying 1-523
number of 1-514
media types 1-693
normal-range 1-691
restarting 1-580
saving the configuration 1-691
shutting down 1-580
SNMP traps for VTP 1-585, 1-588
suspending 1-580
VLAN Trunking Protocol
See VTP
VMPS
configuring servers 1-699
displaying 1-572
error recovery timer 1-169
reconfirming dynamic VLAN assignments 1-696
vmps reconfirm (global configuration) command 1-697
vmps reconfirm (privileged EXEC) command 1-696
vmps retry command 1-698
vmps server command 1-699
voice VLAN
configuring 1-674
setting port priority 1-667
VQP
and dynamic-access ports 1-647
clearing client statistics 1-95
displaying information 1-572
per-server retry count 1-698
reconfirmation interval 1-697
reconfirming dynamic VLAN assignments 1-696
VTP
changing characteristics 1-701
clearing pruning counters 1-96
configuring
domain name 1-701
file name 1-701
mode 1-701
password 1-702
counters display fields 1-575
displaying information 1-574
enabling
pruning 1-702
Version 2 1-702
enabling per port 1-706
mode 1-701
pruning 1-702
saving the configuration 1-691
statistics 1-574
status 1-574
status display fields 1-577
vtp (global configuration) command 1-701
vtp interface configuration) command 1-706
vtp primary command 1-707
Index
A
aaa accounting dot1x command 1-1
aaa authentication dot1x command 1-3
aaa authorization network command 1-5, 1-18, 1-24, 1-26, 1-28, 1-30, 1-32, 1-129, 1-270, 1-272, 1-273, 1-410, 1-7, 1-34
AAA methods 1-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 1-182
MAC, displaying 1-508
access mode 1-656
access ports 1-656
ACEs 1-116, 1-354
ACLs
deny 1-114
displaying 1-393
for non-IP protocols 1-277
IP 1-182
on Layer 2 interfaces 1-182
permit 1-353
address aliasing 1-333
aggregate-port learner 1-347
allowed VLANs 1-671
archive download-sw command 1-6
archive tar command 1-9
archive upload-sw command 1-12
arp access-list command 1-14
authentication command bounce-port ignore 1-16
authentication command disable-port ignore 1-17
authentication control-direction command 1-18
authentication event command 1-20
authentication failed VLAN
See dot1x auth-fail vlan
authentication fallback command 1-24
authentication host-mode command 1-26
authentication mac-move permit command 1-28
authentication open command 1-30
authentication order command 1-32
authentication periodic command 1-34
authentication port-control command 1-36
authentication priority command 1-38
authentication timer command 1-40
authentication violation command 1-42
auth-fail max-attempts
See dot1x auth-fail max-attempts
auth-fail vlan
See dot1x auth-fail vlan
auth open command 1-30
auth order command 1-32
authorization state of controlled port 1-147
auth timer command 1-40
autonegotiation of duplex mode 1-161
auto qos classify command 1-44
auto qos trust command 1-47
auto qos video command 1-50
auto qos voip command 1-53
B
BackboneFast, for STP 1-593
backup interfaces
configuring 1-649
displaying 1-454
boot (boot loader) command 1-2
boot config-file command 1-60
boot enable-break command 1-61
boot helper command 1-62
boot helper-config file command 1-63
booting
Cisco IOS image 1-66
displaying environment variables 1-406
interrupting 1-61
manually 1-64
boot loader
accessing 1-1
booting
Cisco IOS image 1-2
helper image 1-62
directories
creating 1-14
displaying a list of 1-7
removing 1-18
displaying
available commands 1-12
memory heap utilization 1-13
version 1-25
environment variables
described 1-19
displaying settings 1-19
location of 1-20
setting 1-19
unsetting 1-23
files
copying 1-5
deleting 1-6
displaying a list of 1-7
displaying the contents of 1-4, 1-15, 1-22
renaming 1-16
file system
formatting 1-10
initializing flash 1-9
running a consistency check 1-11
prompt 1-1
resetting the system 1-17
boot manual command 1-64
boot private-config-file command 1-65
boot system command 1-66
BPDU filtering, for spanning tree 1-594, 1-626
BPDU guard, for spanning tree 1-596, 1-626
broadcast storm control 1-644
C
candidate switches
See clusters
cat (boot loader) command 1-4
channel-group command 1-67
channel-protocol command 1-70
Cisco IP camera
auto-QoS configuration 1-50
Cisco SoftPhone
auto-QoS configuration 1-53
trusting packets sent from 1-326
Cisco Telepresence System
auto-QoS configuration 1-50
CISP
See Client Information Signalling Protocol
cisp
debug platform cisp command 1-34
cisp enable command 1-71
class command 1-72
class-map command 1-75
class maps
creating 1-75
defining the match criteria 1-289
displaying 1-411
class of service
See CoS
clear dot1x command 1-78
clear eap sessions command 1-79
clear errdisable interface 1-80
clear ip arp inspection log command 1-77
clear ip arp inspection statistics command 1-81
clear ip dhcp snooping database command 1-82
clear lacp command 1-84
clear mac address-table command 1-85, 1-87
clear nmsp statistics command 1-88
clear pagp command 1-89
clear port-security command 1-90
clear psp counter 1-92
clear psp counter command 1-92
clear spanning-tree counters command 1-93
clear spanning-tree detected-protocols command 1-94
clear vmps statistics command 1-95
clear vtp counters command 1-96
Client Information Signalling Protocol 1-71, 1-129, 1-410, 1-7, 1-34
cluster commander-address command 1-97
cluster discovery hop-count command 1-99
cluster enable command 1-100
cluster holdtime command 1-101
cluster member command 1-102
cluster outside-interface command 1-104
cluster run command 1-105
clusters
adding candidates 1-102
binding to HSRP group 1-106
building manually 1-102
communicating with
devices outside the cluster 1-104
members by using Telnet 1-376
debug messages, display 1-8
displaying
candidate switches 1-414
debug messages 1-8
member switches 1-416
status 1-412
hop-count limit for extended discovery 1-99
HSRP standby groups 1-106
redundancy 1-106
SNMP trap 1-583
cluster standby-group command 1-106
cluster timer command 1-108
command modes defined 1-1
command switch
See clusters
configuration files
password recovery disable considerations 1-1
specifying the name 1-60, 1-65
configuring multiple interfaces 1-178
config-vlan mode
commands 1-692
entering 1-691
copy (boot loader) command 1-5
CoS
assigning default value to incoming packets 1-296
overriding the incoming value 1-296
CoS-to-DSCP map 1-300
CPU ASIC statistics, displaying 1-418
crashinfo files 1-171
critical VLAN 1-22
D
debug authentication 1-2
debug auto qos command 1-4
debug backup command 1-6
debug cisp command 1-7
debug cluster command 1-8
debug dot1x command 1-10
debug dtp command 1-12
debug eap command 1-13
debug etherchannel command 1-14
debug ilpower command 1-15
debug interface command 1-16
debug ip dhcp snooping command 1-17
debug ip igmp filter command 1-19
debug ip igmp max-groups command 1-20
debug ip igmp snooping command 1-21
debug ip verify source packet command 1-18
debug lacp command 1-22
debug lldp packets command 1-23
debug mac-notification command 1-24
debug matm command 1-25
debug matm move update command 1-26
debug monitor command 1-27
debug mvrdbg command 1-28
debug nmsp command 1-29
debug nvram command 1-30
debug pagp command 1-31
debug platform acl command 1-32
debug platform backup interface command 1-33
debug platform cisp command 1-34
debug platform configuration command 1-39
debug platform cpu-queues command 1-35
debug platform dot1x command 1-36
debug platform etherchannel command 1-37
debug platform forw-tcam command 1-38
debug platform ip arp inspection command 1-40
debug platform ip dhcp command 1-41
debug platform ip igmp snooping command 1-42
debug platform ip source-guard command 1-44
debug platform led command 1-45
debug platform matm command 1-46
debug platform messaging application command 1-47
debug platform phy command 1-48
debug platform pm command 1-50
debug platform port-asic command 1-52
debug platform port-security command 1-53
debug platform qos-acl-tcam command 1-54
debug platform resource-manager command 1-55
debug platform snmp command 1-56
debug platform span command 1-57
debug platform supervisor-asic command 1-58
debug platform sw-bridge command 1-59
debug platform tcam command 1-60
debug platform udld command 1-62
debug platform vlan command 1-63
debug pm command 1-64
debug port-security command 1-66
debug qos-manager command 1-67
debug spanning-tree backbonefast command 1-70
debug spanning-tree bpdu command 1-71
debug spanning-tree bpdu-opt command 1-72
debug spanning-tree command 1-68
debug spanning-tree mstp command 1-73
debug spanning-tree switch command 1-75
debug spanning-tree uplinkfast command 1-77
debug sw-vlan command 1-78
debug sw-vlan ifs command 1-80
debug sw-vlan notification command 1-81
debug sw-vlan vtp command 1-82
debug udld command 1-84
debug vqpc command 1-86
define interface-range command 1-109
delete (boot loader) command 1-6
delete command 1-111
deny (ARP access-list configuration) command 1-112
deny command 1-114
detect mechanism, causes 1-163
DHCP snooping
accepting untrusted packets from edge switch 1-211
enabling
on a VLAN 1-216
option 82 1-210, 1-211
trust on an interface 1-214
error recovery timer 1-168
rate limiting 1-213
DHCP snooping binding database
binding file, configuring 1-208
bindings
adding 1-206
deleting 1-206
clearing database agent statistics 1-82
database agent, configuring 1-208
renewing 1-380
Digital Optical Monitoring
see DoM
dir (boot loader) command 1-7
directories, deleting 1-111
DoM
displaying supported transceivers 1-464
domain name, VTP 1-701
dot1x auth-fail max-attempts 1-124
dot1x auth-fail vlan 1-125
dot1x command 1-122
dot1x control-direction command 1-127
dot1x credentials (global configuration) command 1-129
dot1x critical global configuration command 1-130
dot1x critical interface configuration command 1-132
dot1x default command 1-134
dot1x fallback command 1-135
dot1x guest-vlan command 1-136
dot1x host-mode command 1-138
dot1x initialize command 1-140
dot1x mac-auth-bypass command 1-141
dot1x max-reauth-req command 1-143
dot1x max-req command 1-145
dot1x pae command 1-146
dot1x port-control command 1-147
dot1x re-authenticate command 1-149
dot1x reauthentication command 1-150
dot1x supplicant controlled transient command 1-151
dot1x supplicant force-multicast command 1-153
dot1x test eapol-capable command 1-154
dot1x test timeout command 1-155
dot1x timeout command 1-156
dot1x violation-mode command 1-159
DSCP-to-CoS map 1-300
DSCP-to-DSCP-mutation map 1-300
DTP 1-657
DTP flap
error detection for 1-163
error recovery timer 1-168
DTP negotiation 1-658
dual-purpose uplink ports
displaying configurable options 1-456
duplex command 1-160
dynamic-access ports
configuring 1-647
restrictions 1-647
dynamic ARP inspection
ARP ACLs
apply to a VLAN 1-189
define 1-14
deny packets 1-112
display 1-397
permit packets 1-351
clear
log buffer 1-77
statistics 1-81
display
ARP ACLs 1-397
configuration and operating state 1-468
log buffer 1-468
statistics 1-468
trust state and rate limit 1-468
enable per VLAN 1-199
log buffer
clear 1-77
configure 1-193
display 1-468
rate-limit incoming ARP packets 1-191
statistics
clear 1-81
display 1-468
trusted interface state 1-195
type of packet logged 1-200
validation checks 1-197
dynamic auto VLAN membership mode 1-656
dynamic desirable VLAN membership mode 1-656
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame
maximum number to send 1-145
response time before retransmitting 1-156
environment variables, displaying 1-406
epm access-control open 1-162
errdisable detect cause command 1-163
errdisable detect cause small-frame comand 1-165
errdisable recovery cause small-frame 1-167
errdisable recovery command 1-168
error conditions, displaying 1-446
error disable detection 1-163
error-disabled interfaces, displaying 1-454
EtherChannel
assigning Ethernet interface to channel group 1-67
creating port-channel logical interface 1-176
debug EtherChannel/PAgP, display 1-14
debug platform-specific events, display 1-37
displaying 1-449
interface information, displaying 1-454
LACP
clearing channel-group information 1-84
debug messages, display 1-22
displaying 1-500
modes 1-67
port priority for hot-standby ports 1-255
restricting a protocol 1-70
system priority 1-257
load-distribution methods 1-362
PAgP
aggregate-port learner 1-347
clearing channel-group information 1-89
debug messages, display 1-31
displaying 1-546
error detection for 1-163
error recovery timer 1-168
learn method 1-347
modes 1-67
physical-port learner 1-347
priority of interface for transmitted traffic 1-349
Ethernet controller, internal register display 1-420
Ethernet statistics, collecting 1-382
exception crashinfo command 1-171
extended discovery of candidate switches 1-99
extended-range VLANs
and allowed VLAN list 1-671
and pruning-eligible list 1-671
configuring 1-691
extended system ID for STP 1-602
F
fallback profile command 1-172
fallback profiles, displaying 1-452
file name, VTP 1-701
files, deleting 1-111
flash_init (boot loader) command 1-9
flexible authentication ordering 1-32
Flex Links
configuring 1-649
configuring preferred VLAN 1-651
displaying 1-454
flowcontrol command 1-174
format (boot loader) command 1-10
fsck (boot loader) command 1-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 1-393
help (boot loader) command 1-12
hierarchical policy maps 1-360
hop-count limit for clusters 1-99
host connection, port configuration 1-655
Hot Standby Router Protocol
See HSRP
HSRP
binding HSRP group to cluster 1-106
standby group 1-106
I
IEEE 802.1x
and switchport modes 1-657
violation error recovery 1-168
See also port-based authentication
IEEE 802.1X Port Based Authentication
enabling guest VLAN supplicant 1-124, 1-135, 1-173
IGMP filters
applying 1-219
debug messages, display 1-19
IGMP groups, setting maximum 1-220
IGMP maximum groups, debugging 1-20
IGMP profiles
creating 1-222
displaying 1-480
IGMP snooping
adding ports as a static member of a group 1-237
displaying 1-481
enabling 1-224
enabling the configurable-leave timer 1-226
enabling the Immediate-Leave feature 1-234
flooding query count 1-231
interface topology change notification behavior 1-233
querier 1-228
query solicitation 1-231
report suppression 1-230
switch topology change notification behavior 1-231
images
See software images
Immediate-Leave feature, MVR 1-335
immediate-leave processing 1-234
Immediate-Leave processing, IPv6 1-253
interface configuration mode 1-2, 1-4
interface port-channel command 1-176
interface range command 1-178
interface-range macros 1-109
interfaces
assigning Ethernet interface to channel group 1-67
configuring 1-160
configuring multiple 1-178
creating port-channel logical 1-176
debug messages, display 1-16
disabling 1-579
displaying the MAC address table 1-516
restarting 1-579
interface speed, configuring 1-636
interface vlan command 1-180
internal registers, displaying 1-420, 1-429
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 1-163
error recovery timer 1-168
ip access-group command 1-182
ip address command 1-184
IP addresses, setting 1-184
ip admission command 1-186
ip admission name proxy http command 1-187
ip arp inspection filter vlan command 1-189
ip arp inspection limit command 1-191
ip arp inspection log-buffer command 1-193
ip arp inspection trust command 1-195
ip arp inspection validate command 1-197
ip arp inspection vlan command 1-199
ip arp inspection vlan logging command 1-200
ip device tracking command 1-204
ip device tracking probe command 1-202
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 1-206
ip dhcp snooping command 1-205
ip dhcp snooping database command 1-208
ip dhcp snooping information option allow-untrusted command 1-211
ip dhcp snooping information option command 1-210
ip dhcp snooping limit rate command 1-213
ip dhcp snooping trust command 1-214
ip dhcp snooping verify command 1-215
ip dhcp snooping vlan command 1-216
ip dhcp snooping vlan information option format-type circuit-id string command 1-217
ip igmp filter command 1-219
ip igmp max-groups command 1-220
ip igmp profile command 1-222
ip igmp snooping command 1-224
ip igmp snooping last-member-query-interval command 1-226
ip igmp snooping querier command 1-228
ip igmp snooping report-suppression command 1-230
ip igmp snooping tcn command 1-231
ip igmp snooping tcn flood command 1-233
ip igmp snooping vlan immediate-leave command 1-234
ip igmp snooping vlan mrouter command 1-235
ip igmp snooping vlan static command 1-237
IP multicast addresses 1-332
IP phones
auto-QoS configuration 1-53
trusting packets sent from 1-326
IP-precedence-to-DSCP map 1-300
ip source binding command 1-239
IP source guard
disabling 1-242
enabling 1-242
static IP source bindings 1-239
ip ssh command 1-241
ipv6 mld snooping command 1-243
ipv6 mld snooping last-listener-query count command 1-245
ipv6 mld snooping last-listener-query-interval command 1-247
ipv6 mld snooping listener-message-suppression command 1-249
ipv6 mld snooping robustness-variable command 1-250
ipv6 mld snooping tcn command 1-252
ipv6 mld snooping vlan command 1-253
ip verify source command 1-242
J
jumbo frames
See MTU
L
LACP
See EtherChannel
lacp port-priority command 1-255
lacp system-priority command 1-257
Layer 2 traceroute
IP addresses 1-682
MAC addresses 1-679
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 1-163
error recovery timer 1-168
link state group command 1-259
link state track command 1-261
load-distribution methods for EtherChannel 1-362
location (global configuration) command 1-262
location (interface configuration) command 1-264
logging event command 1-266
logging event power-inline-status command 1-267
logging file command 1-268
logical interface 1-176
loopback error
detection for 1-163
recovery timer 1-168
loop guard, for spanning tree 1-604, 1-608
M
mab request format attribute 1 command 1-270
mab request format attribute 2 command 1-272
mab request format attribute 32 command 1-273
mac access-group command 1-275
MAC access-groups, displaying 1-508
MAC access list configuration mode 1-277
mac access-list extended command 1-277
MAC access lists 1-114
MAC addresses
disabling MAC address learning per VLAN 1-280
displaying
dynamic 1-515
notification settings 1-519
number of addresses in a VLAN 1-514
per interface 1-516
per VLAN 1-523
static 1-521
static and dynamic entries 1-509
dynamic
aging time 1-279
deleting 1-85
displaying 1-515
enabling MAC address notification 1-284
enabling MAC address-table move update 1-282
static
adding and removing 1-286
displaying 1-521
dropping on an interface 1-287
MAC address notification, debugging 1-24
mac address-table aging-time 1-275
mac address-table aging-time command 1-279
mac address-table learning command 1-280
mac address-table move update command 1-282
mac address-table notification command 1-284
mac address-table static command 1-286
mac address-table static drop command 1-287
macros
interface range 1-109, 1-178
maps
QoS
defining 1-300
match (class-map configuration) command 1-289
maximum transmission unit
See MTU
mdix auto command 1-291
member switches
See clusters
memory (boot loader) command 1-13
mkdir (boot loader) command 1-14
MLD snooping
configuring 1-249, 1-250
configuring queries 1-245, 1-247
configuring topology change notification 1-252
displaying 1-490
enabling 1-243
MLD snooping on a VLAN, enabling 1-253
mls qos aggregate-policer command 1-294
mls qos command 1-292
mls qos cos command 1-296
mls qos dscp-mutation command 1-298
mls qos map command 1-300
mls qos queue-set output buffers command 1-304
mls qos queue-set output threshold command 1-306
mls qos rewrite ip dscp command 1-308
mls qos srr-queue input bandwidth command 1-310
mls qos srr-queue input buffers command 1-312
mls qos-srr-queue input cos-map command 1-314
mls qos srr-queue input dscp-map command 1-316
mls qos srr-queue input priority-queue command 1-318
mls qos srr-queue input threshold command 1-320
mls qos-srr-queue output cos-map command 1-322
mls qos srr-queue output dscp-map command 1-324
mls qos trust command 1-326
mode, MVR 1-332
Mode button, and password recovery 1-383
modes, commands 1-1
monitor session command 1-328
more (boot loader) command 1-15
MSTP
displaying 1-557
interoperability 1-94
link type 1-606
MST region
aborting changes 1-610
applying changes 1-610
configuration name 1-610
configuration revision number 1-610
current or pending display 1-610
displaying 1-557
MST configuration mode 1-610
VLANs-to-instance mapping 1-610
path cost 1-612
protocol mode 1-609
restart protocol migration process 1-94
root port
loop guard 1-604
preventing from becoming designated 1-604
restricting which can be root 1-604
root guard 1-604
root switch
affects of extended system ID 1-602
hello-time 1-615, 1-622
interval between BDPU messages 1-616
interval between hello BPDU messages 1-615, 1-622
max-age 1-616
maximum hop count before discarding BPDU 1-617
port priority for selection of 1-619
primary or secondary 1-622
switch priority 1-621
state changes
blocking to forwarding state 1-628
enabling BPDU filtering 1-594, 1-626
enabling BPDU guard 1-596, 1-626
enabling Port Fast 1-626, 1-628
forward-delay time 1-614
length of listening and learning states 1-614
rapid transition to forwarding 1-606
shutting down Port Fast-enabled ports 1-626
state information display 1-556
MTU
configuring size 1-676
displaying global setting 1-564
Multicase Listener Discovery
See MLD
multicast group address, MVR 1-335
multicast groups, MVR 1-333
Multicast Listener Discovery
See MLD
multicast router learning method 1-235
multicast router ports, configuring 1-235
multicast router ports, IPv6 1-253
multicast storm control 1-644
multicast VLAN, MVR 1-332
multicast VLAN registration
See MVR
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 1-333
configuring 1-332
configuring interfaces 1-335
debug messages, display 1-28
displaying 1-537
displaying interface information 1-538
members, displaying 1-540
mvr (global configuration) command 1-332
mvr (interface configuration) command 1-335
mvr vlan group command 1-336
N
native VLANs 1-671
Network Admission Control Software Configuration Guide 1-186, 1-188
network-policy (global configuration) command 1-339
network-policy command 1-338
network-policy profile (network-policy configuration) command 1-340
nmsp attachment suppress command 1-343
nmsp command 1-342
no authentication logging verbose 1-344
no dot1x logging verbose 1-345
no mab logging verbose 1-346
nonegotiating DTP messaging 1-658
non-IP protocols
denying 1-114
forwarding 1-353
non-IP traffic access lists 1-277
non-IP traffic forwarding
denying 1-114
permitting 1-353
normal-range VLANs 1-691
no vlan command 1-691
O
online diagnostics
displaying
configured boot-up coverage level 1-433
current scheduled tasks 1-433
event logs 1-433
supported test suites 1-433
test ID 1-433
test results 1-433
test statistics 1-433
global configuration mode
clearing health monitoring diagnostic test schedule 1-81
clearing test-based testing schedule 1-119
setting health monitoring diagnostic testing 1-81
setting test-based testing 1-119
setting up health monitoring diagnostic test schedule 1-81
setting up test-based testing 1-119
health monitoring diagnostic tests, configuring 1-117
scheduled switchover
disabling 1-119
enabling 1-119
scheduling
enabling 1-119
removing 1-119
testing, starting 1-121
test interval, setting 1-119
P
PAgP
See EtherChannel
pagp learn-method command 1-347
pagp port-priority command 1-349
password, VTP 1-702
password-recovery mechanism, enabling and disabling 1-383
permit (ARP access-list configuration) command 1-351
permit (MAC access-list configuration) command 1-353
per-VLAN spanning-tree plus
See STP
physical-port learner 1-347
PIM-DVMRP, as multicast router learning method 1-235
PoE
configuring the power budget 1-366
configuring the power management mode 1-363
displaying controller register values 1-427
displaying power management information 1-551
logging of status 1-267
police aggregate command 1-358
police command 1-356
policed-DSCP map 1-300
policy-map command 1-360
policy maps
applying to an interface 1-385, 1-388
creating 1-360
hierarchical 1-360
policers
displaying 1-525
for a single class 1-356
for multiple classes 1-294, 1-358
policed-DSCP map 1-300
traffic classification
defining the class 1-72
defining trust states 1-684
setting DSCP or IP precedence values 1-386
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 1-3
configuring violation modes 1-159
debug messages, display 1-10
enabling IEEE 802.1x
globally 1-122
per interface 1-147
guest VLAN 1-136
host modes 1-138
IEEE 802.1x AAA accounting methods 1-1
initialize an interface 1-140, 1-155
MAC authentication bypass 1-141
manual control of authorization state 1-147
PAE as authenticator 1-146
periodic re-authentication
enabling 1-150
time between attempts 1-156
quiet period between failed authentication exchanges 1-156
re-authenticating IEEE 802.1x-enabled ports 1-149
resetting configurable IEEE 802.1x parameters 1-134
switch-to-authentication server retransmission time 1-156
switch-to-client frame-retransmission number 1-143 to 1-145
switch-to-client retransmission time 1-156
test for IEEE 802.1x readiness 1-154
port-channel load-balance command 1-362
Port Fast, for spanning tree 1-628
port ranges, defining 1-109
ports, debugging 1-64
ports, protected 1-669
port security
aging 1-665
debug messages, display 1-66
enabling 1-660
violation error recovery 1-168
port trust states for QoS 1-326
port types, MVR 1-335
power inline command 1-363
power inline consumption command 1-366
Power over Ethernet
See PoE
priority-queue command 1-368
privileged EXEC mode 1-2, 1-3
protected ports, displaying 1-458
pruning
VLANs 1-671
VTP
displaying interface information 1-454
enabling 1-702
pruning-eligible VLAN list 1-672
psp 1-370
psp command 1-370
PVST+
See STP
Q
QoS
auto-QoS
configuring 1-53
debug messages, display 1-4
auto-QoS trust
configuring 1-47
auto-QoS video
configuring 1-50
class maps
creating 1-75
defining the match criteria 1-289
displaying 1-411
defining the CoS value for an incoming packet 1-296
displaying configuration information 1-524
DSCP transparency 1-308
DSCP trusted ports
applying DSCP-to-DSCP-mutation map to 1-298
defining DSCP-to-DSCP-mutation map 1-300
egress queues
allocating buffers 1-304
defining the CoS output queue threshold map 1-322
defining the DSCP output queue threshold map 1-324
displaying buffer allocations 1-527
displaying CoS output queue threshold map 1-530
displaying DSCP output queue threshold map 1-530
displaying queueing strategy 1-527
displaying queue-set settings 1-533
enabling bandwidth shaping and scheduling 1-640
enabling bandwidth sharing and scheduling 1-642
limiting the maximum output on a port 1-638
mapping a port to a queue-set 1-371
mapping CoS values to a queue and threshold 1-322
mapping DSCP values to a queue and threshold 1-324
setting maximum and reserved memory allocations 1-306
setting WTD thresholds 1-306
enabling 1-292
ingress queues
allocating buffers 1-312
assigning SRR scheduling weights 1-310
defining the CoS input queue threshold map 1-314
defining the DSCP input queue threshold map 1-316
displaying buffer allocations 1-527
displaying CoS input queue threshold map 1-530
displaying DSCP input queue threshold map 1-530
displaying queueing strategy 1-527
displaying settings for 1-526
enabling the priority queue 1-318
mapping CoS values to a queue and threshold 1-314
mapping DSCP values to a queue and threshold 1-316
setting WTD thresholds 1-320
maps
defining 1-300, 1-314, 1-316, 1-322, 1-324
policy maps
applying an aggregate policer 1-358
applying to an interface 1-385, 1-388
creating 1-360
defining policers 1-294, 1-356
displaying policers 1-525
hierarchical 1-360
policed-DSCP map 1-300
setting DSCP or IP precedence values 1-386
traffic classifications 1-72
trust states 1-684
port trust states 1-326
queues, enabling the expedite 1-368
statistics
in-profile and out-of-profile packets 1-527
packets enqueued or dropped 1-527
sent and received CoS values 1-527
sent and received DSCP values 1-527
trusted boundary for IP phones 1-326
quality of service
See QoS
querytime, MVR 1-332
queue-set command 1-371
R
radius-server dead-criteria command 1-372
radius-server host command 1-374
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
rcommand command 1-376
re-authenticating IEEE 802.1x-enabled ports 1-149
re-authentication
periodic 1-150
time between attempts 1-156
receiver ports, MVR 1-335
receiving flow-control packets 1-174
recovery mechanism
causes 1-168
display 1-80, 1-408, 1-445, 1-447
timer interval 1-169
redundancy for cluster switches 1-106
remote-span command 1-378
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command 1-16
renew ip dhcp snooping database command 1-380
reset (boot loader) command 1-17
restricted VLAN
See dot1x auth-fail vlan
rmdir (boot loader) command 1-18
rmon collection stats command 1-382
root guard, for spanning tree 1-604
RSPAN
configuring 1-328
filter RSPAN traffic 1-328
remote-span command 1-378
S
scheduled switchover
disabling 1-119
enabling 1-119
secure ports, limitations 1-662
sending flow-control packets 1-174
service password-recovery command 1-383
service-policy command 1-385
set (boot loader) command 1-19
set command 1-386
setup command 1-388
setup express command 1-391
show access-lists command 1-393
show archive status command 1-396
show arp access-list command 1-397
show authentication command 1-398
show auto qos command 1-402
show boot command 1-406
show cable-diagnostics tdr command 1-408
show cisp command 1-410
show class-map command 1-411
show cluster candidates command 1-414
show cluster command 1-412
show cluster members command 1-416
show controllers cpu-interface command 1-418
show controllers ethernet-controller command 1-420
show controllers power inline command 1-427
show controllers tcam command 1-429
show controller utilization command 1-431
show dot1x command 1-436
show dtp 1-440
show eap command 1-441
show env command 1-444
show errdisable detect command 1-445
show errdisable flap-values command 1-446
show errdisable recovery command 1-447
show etherchannel command 1-449
show fallback profile command 1-452
show flowcontrol command 1-453
show interfaces command 1-454
show interfaces counters command 1-462
show interface transceivers command 1-464
show inventory command 1-467
show ip arp inspection command 1-468
show ip dhcp snooping binding command 1-473
show ip dhcp snooping command 1-472
show ip dhcp snooping database command 1-475, 1-477
show ip igmp profile command 1-480
show ip igmp snooping command 1-481, 1-490
show ip igmp snooping groups command 1-483
show ip igmp snooping mrouter command 1-485
show ip igmp snooping querier command 1-486
show ip source binding command 1-488
show ipv6 route updated 1-498
show ip verify source command 1-489
show lacp command 1-500
show link state group command 1-504
show mac access-group command 1-508
show mac address-table address command 1-511
show mac address-table aging time command 1-512
show mac address-table command 1-509
show mac address-table count command 1-514
show mac address-table dynamic command 1-515
show mac address-table interface command 1-516
show mac address-table move update command 1-518
show mac address-table notification command 1-87, 1-519, 1-26
show mac address-table static command 1-521
show mac address-table vlan command 1-523
show mls qos aggregate-policer command 1-525
show mls qos command 1-524
show mls qos input-queue command 1-526
show mls qos interface command 1-527
show mls qos maps command 1-530
show mls qos queue-set command 1-533
show mls qos vlan command 1-534
show monitor command 1-535
show mvr command 1-537
show mvr interface command 1-538
show mvr members command 1-540
show network-policy profile command 1-542
show nmsp command 1-543
show pagp command 1-546
show platform acl command 1-2
show platform backup interface command 1-3
show platform etherchannel command 1-4
show platform forward command 1-5
show platform frontend-controller command 1-7
show platform igmp snooping command 1-8
show platform ip unicast command 1-9
show platform layer4op command 1-10
show platform mac-address-table command 1-11
show platform messaging command 1-12
show platform monitor command 1-13
show platform mvr table command 1-14
show platform pm command 1-15
show platform port-asic command 1-16
show platform port-security command 1-20
show platform qos command 1-21
show platform resource-manager command 1-22
show platform snmp counters command 1-24
show platform spanning-tree command 1-25
show platform stp-instance command 1-26
show platform tcam command 1-27
show platform vlan command 1-29
show policy-map command 1-548
show port security command 1-549
show power inline command 1-551
show psp config 1-553
show psp config command 1-553
show psp statistics 1-554
show psp statistics command 1-554
show setup express command 1-555
show spanning-tree command 1-556
show storm-control command 1-562
show system mtu command 1-564
show trust command 1-684
show udld command 1-565
show version command 1-568
show vlan command 1-569
show vlan command, fields 1-570
show vmps command 1-572
show vtp command 1-574
shutdown command 1-579
shutdown vlan command 1-580
small violation-rate command 1-581
SNMP host, specifying 1-587
SNMP informs, enabling the sending of 1-583
snmp-server enable traps command 1-583
snmp-server host command 1-587
snmp trap mac-notification change command 1-591
SNMP traps
enabling MAC address notification trap 1-591
enabling the MAC address notification feature 1-284
enabling the sending of 1-583
SoftPhone
See Cisco SoftPhone
software images
deleting 1-111
downloading 1-6
upgrading 1-6
uploading 1-12
software version, displaying 1-568
source ports, MVR 1-335
SPAN
configuring 1-328
debug messages, display 1-27
filter SPAN traffic 1-328
sessions
add interfaces to 1-328
start new 1-328
spanning-tree backbonefast command 1-593
spanning-tree bpdufilter command 1-594
spanning-tree bpduguard command 1-596
spanning-tree cost command 1-598
spanning-tree etherchannel command 1-600
spanning-tree extend system-id command 1-602
spanning-tree guard command 1-604
spanning-tree link-type command 1-606
spanning-tree loopguard default command 1-608
spanning-tree mode command 1-609
spanning-tree mst configuration command 1-610
spanning-tree mst cost command 1-612
spanning-tree mst forward-time command 1-614
spanning-tree mst hello-time command 1-615
spanning-tree mst max-age command 1-616
spanning-tree mst max-hops command 1-617
spanning-tree mst port-priority command 1-619
spanning-tree mst pre-standard command 1-620
spanning-tree mst priority command 1-621
spanning-tree mst root command 1-622
spanning-tree portfast (global configuration) command 1-626
spanning-tree portfast (interface configuration) command 1-628
spanning-tree port-priority command 1-624
Spanning Tree Protocol
See STP
spanning-tree transmit hold-count command 1-630
spanning-tree uplinkfast command 1-631
spanning-tree vlan command 1-633
speed command 1-636
srr-queue bandwidth limit command 1-638
srr-queue bandwidth share command 1-642
SSH, configuring version 1-241
static-access ports, configuring 1-647
statistics, Ethernet group 1-382
sticky learning, enabling 1-660
storm-control command 1-644
STP
BackboneFast 1-593
counters, clearing 1-93
debug messages, display
BackboneFast events 1-70
MSTP 1-73
optimized BPDUs handling 1-72
spanning-tree activity 1-68
switch shim 1-75
transmitted and received BPDUs 1-71
UplinkFast 1-77
detection of indirect link failures 1-593
EtherChannel misconfiguration 1-600
extended system ID 1-602
path cost 1-598
protocol modes 1-609
root port
accelerating choice of new 1-631
loop guard 1-604
preventing from becoming designated 1-604
restricting which can be root 1-604
root guard 1-604
UplinkFast 1-631
root switch
affects of extended system ID 1-602, 1-634
hello-time 1-633
interval between BDPU messages 1-633
interval between hello BPDU messages 1-633
max-age 1-633
port priority for selection of 1-624
primary or secondary 1-633
switch priority 1-633
state changes
blocking to forwarding state 1-628
enabling BPDU filtering 1-594, 1-626
enabling BPDU guard 1-596, 1-626
enabling Port Fast 1-626, 1-628
enabling timer to recover from error state 1-168
forward-delay time 1-633
length of listening and learning states 1-633
shutting down Port Fast-enabled ports 1-626
state information display 1-556
VLAN options 1-621, 1-633
Switched Port Analyzer
See SPAN
switchport access command 1-647
switchport backup interface command 1-649
switchport block command 1-653
switchport host command 1-655
switchport mode command 1-656
switchport nonegotiate command 1-658
switchport port-security aging command 1-665
switchport port-security command 1-660
switchport priority extend command 1-667
switchport protected command 1-669
switchports, displaying 1-454
switchport trunk command 1-671
switchport voice vlan command 1-674
system message logging 1-267
system message logging, save message to flash 1-268
system mtu command 1-676
T
tar files, creating, listing, and extracting 1-9
TDR, running 1-678
Telnet, using to communicate to cluster switches 1-376
test cable-diagnostics tdr command 1-678
traceroute mac command 1-679
traceroute mac ip command 1-682
trunking, VLAN mode 1-656
trunk mode 1-656
trunk ports 1-656
trunks, to non-DTP device 1-657
trusted boundary for QoS 1-326
trusted port states for QoS 1-326
type (boot loader) command 1-22
U
UDLD
aggressive mode 1-686, 1-688
debug messages, display 1-84
enable globally 1-686
enable per interface 1-688
error recovery timer 1-168
message timer 1-686
normal mode 1-686, 1-688
reset a shutdown interface 1-690
status 1-565
udld command 1-686
udld port command 1-688
udld reset command 1-690
unicast storm control 1-644
UniDirectional Link Detection
See UDLD
unknown multicast traffic, preventing 1-653
unknown unicast traffic, preventing 1-653
unset (boot loader) command 1-23
upgrading
software images
downloading 1-6
monitoring status of 1-396
UplinkFast, for STP 1-631
user EXEC mode 1-2
V
version (boot loader) command 1-25
vlan (global configuration) command 1-691
VLAN configuration
rules 1-694
saving 1-691
VLAN configuration mode
description 1-4
summary 1-2
VLAN ID range 1-691
VLAN Query Protocol
See VQP
VLANs
adding 1-691
configuring 1-691
debug messages, display
ISL 1-81
VLAN IOS file system error tests 1-80
VLAN manager activity 1-78
VTP 1-82
displaying configurations 1-569
enabling guest VLAN supplicant 1-124, 1-135, 1-173
extended-range 1-691
MAC addresses
displaying 1-523
number of 1-514
media types 1-693
normal-range 1-691
restarting 1-580
saving the configuration 1-691
shutting down 1-580
SNMP traps for VTP 1-585, 1-588
suspending 1-580
VLAN Trunking Protocol
See VTP
VMPS
configuring servers 1-699
displaying 1-572
error recovery timer 1-169
reconfirming dynamic VLAN assignments 1-696
vmps reconfirm (global configuration) command 1-697
vmps reconfirm (privileged EXEC) command 1-696
vmps retry command 1-698
vmps server command 1-699
voice VLAN
configuring 1-674
setting port priority 1-667
VQP
and dynamic-access ports 1-647
clearing client statistics 1-95
displaying information 1-572
per-server retry count 1-698
reconfirmation interval 1-697
reconfirming dynamic VLAN assignments 1-696
VTP
changing characteristics 1-701
clearing pruning counters 1-96
configuring
domain name 1-701
file name 1-701
mode 1-701
password 1-702
counters display fields 1-575
displaying information 1-574
enabling
pruning 1-702
Version 2 1-702
enabling per port 1-706
mode 1-701
pruning 1-702
saving the configuration 1-691
statistics 1-574
status 1-574
status display fields 1-577
vtp (global configuration) command 1-701
vtp interface configuration) command 1-706
vtp primary command 1-707