Index A
aaa accounting dot1x command 1-1
aaa authentication dot1x command 1-3
aaa authorization network command 1-5, 1-18, 1-24, 1-26, 1-29, 1-31, 1-33, 1-130, 1-271, 1-273, 1-274, 1-410, 1-7, 1-34
AAA methods 1-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 1-183
MAC, displaying 1-508
access mode 1-657
access ports 1-657
ACEs 1-117, 1-355
ACLs
deny 1-115
displaying 1-393
for non-IP protocols 1-278
IP 1-183
on Layer 2 interfaces 1-183
permit 1-354
address aliasing 1-334
aggregate-port learner 1-348
allowed VLANs 1-672
archive download-sw command 1-6
archive tar command 1-9
archive upload-sw command 1-12
arp access-list command 1-14
authentication command bounce-port ignore 1-16
authentication command disable-port ignore 1-17
authentication control-direction command 1-18
authentication event command 1-20
authentication failed VLAN
See dot1x auth-fail vlan
authentication fallback command 1-24
authentication host-mode command 1-26
authentication mac-move permit command 1-29
authentication open command 1-31
authentication order command 1-33
authentication periodic command 1-35
authentication port-control command 1-37
authentication priority command 1-39
authentication timer command 1-41
authentication violation command 1-43
auth-fail max-attempts
See dot1x auth-fail max-attempts
auth-fail vlan
See dot1x auth-fail vlan
auth open command 1-31
auth order command 1-33
authorization state of controlled port 1-148
auth timer command 1-41
autonegotiation of duplex mode 1-162
auto qos classify command 1-45
auto qos trust command 1-48
auto qos video command 1-51
auto qos voip command 1-54
B
BackboneFast, for STP 1-593
backup interfaces
configuring 1-650
displaying 1-454
boot (boot loader) command 1-2
boot config-file command 1-61
boot enable-break command 1-62
boot helper command 1-63
boot helper-config file command 1-64
booting
Cisco IOS image 1-67
displaying environment variables 1-406
interrupting 1-62
manually 1-65
boot loader
accessing 1-1
booting
Cisco IOS image 1-2
helper image 1-63
directories
creating 1-14
displaying a list of 1-7
removing 1-18
displaying
available commands 1-12
memory heap utilization 1-13
version 1-25
environment variables
described 1-19
displaying settings 1-19
location of 1-20
setting 1-19
unsetting 1-23
files
copying 1-5
deleting 1-6
displaying a list of 1-7
displaying the contents of 1-4, 1-15, 1-22
renaming 1-16
file system
formatting 1-10
initializing flash 1-9
running a consistency check 1-11
prompt 1-1
resetting the system 1-17
boot manual command 1-65
boot private-config-file command 1-66
boot system command 1-67
BPDU filtering, for spanning tree 1-594, 1-626
BPDU guard, for spanning tree 1-596, 1-626
broadcast storm control 1-644
C
candidate switches
See clusters
cat (boot loader) command 1-4
channel-group command 1-68
channel-protocol command 1-71
Cisco IP camera
auto-QoS configuration 1-51
Cisco SoftPhone
auto-QoS configuration 1-54
trusting packets sent from 1-327
Cisco Telepresence System
auto-QoS configuration 1-51
CISP
See Client Information Signalling Protocol
cisp
debug platform cisp command 1-34
cisp enable command 1-72
class command 1-73
class-map command 1-76
class maps
creating 1-76
defining the match criteria 1-290
displaying 1-411
class of service
See CoS
clear dot1x command 1-79
clear eap sessions command 1-80
clear errdisable interface 1-81
clear ip arp inspection log command 1-78
clear ip arp inspection statistics command 1-82
clear ip dhcp snooping database command 1-83
clear lacp command 1-85
clear mac address-table command 1-86, 1-88
clear nmsp statistics command 1-89
clear pagp command 1-90
clear port-security command 1-91
clear psp counter 1-93
clear psp counter command 1-93
clear spanning-tree counters command 1-94
clear spanning-tree detected-protocols command 1-95
clear vmps statistics command 1-96
clear vtp counters command 1-97
Client Information Signalling Protocol 1-72, 1-130, 1-410, 1-7, 1-34
cluster commander-address command 1-98
cluster discovery hop-count command 1-100
cluster enable command 1-101
cluster holdtime command 1-102
cluster member command 1-103
cluster outside-interface command 1-105
cluster run command 1-106
clusters
adding candidates 1-103
binding to HSRP group 1-107
building manually 1-103
communicating with
devices outside the cluster 1-105
members by using Telnet 1-377
debug messages, display 1-8
displaying
candidate switches 1-414
debug messages 1-8
member switches 1-416
status 1-412
hop-count limit for extended discovery 1-100
HSRP standby groups 1-107
redundancy 1-107
SNMP trap 1-583
cluster standby-group command 1-107
cluster timer command 1-109
command modes defined 1-1
command switch
See clusters
configuration files
password recovery disable considerations 1-1
specifying the name 1-61, 1-66
configuring multiple interfaces 1-179
config-vlan mode
commands 1-694
entering 1-693
copy (boot loader) command 1-5
CoS
assigning default value to incoming packets 1-297
overriding the incoming value 1-297
CoS-to-DSCP map 1-301
CPU ASIC statistics, displaying 1-418
crashinfo files 1-172
critical VLAN 1-22
D
debug authentication 1-2
debug auto qos command 1-4
debug backup command 1-6
debug cisp command 1-7
debug cluster command 1-8
debug dot1x command 1-10
debug dtp command 1-12
debug eap command 1-13
debug etherchannel command 1-14
debug ilpower command 1-15
debug interface command 1-16
debug ip dhcp snooping command 1-17
debug ip igmp filter command 1-19
debug ip igmp max-groups command 1-20
debug ip igmp snooping command 1-21
debug ip verify source packet command 1-18
debug lacp command 1-22
debug lldp packets command 1-23
debug mac-notification command 1-24
debug matm command 1-25
debug matm move update command 1-26
debug monitor command 1-27
debug mvrdbg command 1-28
debug nmsp command 1-29
debug nvram command 1-30
debug pagp command 1-31
debug platform acl command 1-32
debug platform backup interface command 1-33
debug platform cisp command 1-34
debug platform configuration command 1-39
debug platform cpu-queues command 1-35
debug platform dot1x command 1-36
debug platform etherchannel command 1-37
debug platform forw-tcam command 1-38
debug platform ip arp inspection command 1-40
debug platform ip dhcp command 1-41
debug platform ip igmp snooping command 1-42
debug platform ip source-guard command 1-44
debug platform led command 1-45
debug platform matm command 1-46
debug platform messaging application command 1-47
debug platform phy command 1-48
debug platform pm command 1-50
debug platform port-asic command 1-52
debug platform port-security command 1-53
debug platform qos-acl-tcam command 1-54
debug platform resource-manager command 1-55
debug platform snmp command 1-56
debug platform span command 1-57
debug platform supervisor-asic command 1-58
debug platform sw-bridge command 1-59
debug platform tcam command 1-60
debug platform udld command 1-62
debug platform vlan command 1-63
debug pm command 1-64
debug port-security command 1-66
debug qos-manager command 1-67
debug spanning-tree backbonefast command 1-70
debug spanning-tree bpdu command 1-71
debug spanning-tree bpdu-opt command 1-72
debug spanning-tree command 1-68
debug spanning-tree mstp command 1-73
debug spanning-tree switch command 1-75
debug spanning-tree uplinkfast command 1-77
debug sw-vlan command 1-78
debug sw-vlan ifs command 1-80
debug sw-vlan notification command 1-81
debug sw-vlan vtp command 1-82
debug udld command 1-84
debug vqpc command 1-86
define interface-range command 1-110
delete (boot loader) command 1-6
delete command 1-112
deny (ARP access-list configuration) command 1-113
deny command 1-115
detect mechanism, causes 1-164
DHCP snooping
accepting untrusted packets from edge switch 1-212
enabling
on a VLAN 1-217
option 82 1-211, 1-212
trust on an interface 1-215
error recovery timer 1-169
rate limiting 1-214
DHCP snooping binding database
binding file, configuring 1-209
bindings
adding 1-207
deleting 1-207
clearing database agent statistics 1-83
database agent, configuring 1-209
renewing 1-381
Digital Optical Monitoring
see DoM
dir (boot loader) command 1-7
directories, deleting 1-112
DoM
displaying supported transceivers 1-464
domain name, VTP 1-703
dot1x auth-fail max-attempts 1-125
dot1x auth-fail vlan 1-126
dot1x command 1-123
dot1x control-direction command 1-128
dot1x credentials (global configuration) command 1-130
dot1x critical global configuration command 1-131
dot1x critical interface configuration command 1-133
dot1x default command 1-135
dot1x fallback command 1-136
dot1x guest-vlan command 1-137
dot1x host-mode command 1-139
dot1x initialize command 1-141
dot1x mac-auth-bypass command 1-142
dot1x max-reauth-req command 1-144
dot1x max-req command 1-146
dot1x pae command 1-147
dot1x port-control command 1-148
dot1x re-authenticate command 1-150
dot1x reauthentication command 1-151
dot1x supplicant controlled transient command 1-152
dot1x supplicant force-multicast command 1-154
dot1x test eapol-capable command 1-155
dot1x test timeout command 1-156
dot1x timeout command 1-157
dot1x violation-mode command 1-160
DSCP-to-CoS map 1-301
DSCP-to-DSCP-mutation map 1-301
DTP 1-658
DTP flap
error detection for 1-164
error recovery timer 1-169
DTP negotiation 1-659
dual-purpose uplink ports
displaying configurable options 1-456
duplex command 1-161
dynamic-access ports
configuring 1-647
restrictions 1-648
dynamic ARP inspection
ARP ACLs
apply to a VLAN 1-190
define 1-14
deny packets 1-113
display 1-397
permit packets 1-352
clear
log buffer 1-78
statistics 1-82
display
ARP ACLs 1-397
configuration and operating state 1-468
log buffer 1-468
statistics 1-468
trust state and rate limit 1-468
enable per VLAN 1-200
log buffer
clear 1-78
configure 1-194
display 1-468
rate-limit incoming ARP packets 1-192
statistics
clear 1-82
display 1-468
trusted interface state 1-196
type of packet logged 1-201
validation checks 1-198
dynamic auto VLAN membership mode 1-657
dynamic desirable VLAN membership mode 1-657
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame
maximum number to send 1-146
response time before retransmitting 1-157
environment variables, displaying 1-406
epm access-control open 1-163
errdisable detect cause command 1-164
errdisable detect cause small-frame comand 1-166
errdisable recovery cause small-frame 1-168
errdisable recovery command 1-169
error conditions, displaying 1-446
error disable detection 1-164
error-disabled interfaces, displaying 1-454
EtherChannel
assigning Ethernet interface to channel group 1-68
creating port-channel logical interface 1-177
debug EtherChannel/PAgP, display 1-14
debug platform-specific events, display 1-37
displaying 1-449
interface information, displaying 1-454
LACP
clearing channel-group information 1-85
debug messages, display 1-22
displaying 1-500
modes 1-68
port priority for hot-standby ports 1-256
restricting a protocol 1-71
system priority 1-258
load-distribution methods 1-363
PAgP
aggregate-port learner 1-348
clearing channel-group information 1-90
debug messages, display 1-31
displaying 1-546
error detection for 1-164
error recovery timer 1-169
learn method 1-348
modes 1-68
physical-port learner 1-348
priority of interface for transmitted traffic 1-350
Ethernet controller, internal register display 1-420
Ethernet statistics, collecting 1-382
exception crashinfo command 1-172
extended discovery of candidate switches 1-100
extended-range VLANs
and allowed VLAN list 1-672
and pruning-eligible list 1-672
configuring 1-693
extended system ID for STP 1-602
F
fallback profile command 1-173
fallback profiles, displaying 1-452
file name, VTP 1-703
files, deleting 1-112
flash_init (boot loader) command 1-9
flexible authentication ordering 1-33
Flex Links
configuring 1-650
configuring preferred VLAN 1-652
displaying 1-454
flowcontrol command 1-175
format (boot loader) command 1-10
fsck (boot loader) command 1-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 1-393
help (boot loader) command 1-12
hierarchical policy maps 1-361
hop-count limit for clusters 1-100
host connection, port configuration 1-656
Hot Standby Router Protocol
See HSRP
HSRP
binding HSRP group to cluster 1-107
standby group 1-107
I
IEEE 802.1x
and switchport modes 1-658
violation error recovery 1-169
See also port-based authentication
IEEE 802.1X Port Based Authentication
enabling guest VLAN supplicant 1-125, 1-136, 1-174
IGMP filters
applying 1-220
debug messages, display 1-19
IGMP groups, setting maximum 1-221
IGMP maximum groups, debugging 1-20
IGMP profiles
creating 1-223
displaying 1-480
IGMP snooping
adding ports as a static member of a group 1-238
displaying 1-481
enabling 1-225
enabling the configurable-leave timer 1-227
enabling the Immediate-Leave feature 1-235
flooding query count 1-232
interface topology change notification behavior 1-234
querier 1-229
query solicitation 1-232
report suppression 1-231
switch topology change notification behavior 1-232
images
See software images
Immediate-Leave feature, MVR 1-336
immediate-leave processing 1-235
Immediate-Leave processing, IPv6 1-254
interface configuration mode 1-2, 1-4
interface port-channel command 1-177
interface range command 1-179
interface-range macros 1-110
interfaces
assigning Ethernet interface to channel group 1-68
configuring 1-161
configuring multiple 1-179
creating port-channel logical 1-177
debug messages, display 1-16
disabling 1-579
displaying the MAC address table 1-516
restarting 1-579
interface speed, configuring 1-636
interface vlan command 1-181
internal registers, displaying 1-420, 1-429
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 1-164
error recovery timer 1-169
ip access-group command 1-183
ip address command 1-185
IP addresses, setting 1-185
ip admission command 1-187
ip admission name proxy http command 1-188
ip arp inspection filter vlan command 1-190
ip arp inspection limit command 1-192
ip arp inspection log-buffer command 1-194
ip arp inspection trust command 1-196
ip arp inspection validate command 1-198
ip arp inspection vlan command 1-200
ip arp inspection vlan logging command 1-201
ip device tracking command 1-205
ip device tracking probe command 1-203
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 1-207
ip dhcp snooping command 1-206
ip dhcp snooping database command 1-209
ip dhcp snooping information option allow-untrusted command 1-212
ip dhcp snooping information option command 1-211
ip dhcp snooping limit rate command 1-214
ip dhcp snooping trust command 1-215
ip dhcp snooping verify command 1-216
ip dhcp snooping vlan command 1-217
ip dhcp snooping vlan information option format-type circuit-id string command 1-218
ip igmp filter command 1-220
ip igmp max-groups command 1-221
ip igmp profile command 1-223
ip igmp snooping command 1-225
ip igmp snooping last-member-query-interval command 1-227
ip igmp snooping querier command 1-229
ip igmp snooping report-suppression command 1-231
ip igmp snooping tcn command 1-232
ip igmp snooping tcn flood command 1-234
ip igmp snooping vlan immediate-leave command 1-235
ip igmp snooping vlan mrouter command 1-236
ip igmp snooping vlan static command 1-238
IP multicast addresses 1-333
IP phones
auto-QoS configuration 1-54
trusting packets sent from 1-327
IP-precedence-to-DSCP map 1-301
ip source binding command 1-240
IP source guard
disabling 1-243
enabling 1-243
static IP source bindings 1-240
ip ssh command 1-242
ipv6 mld snooping command 1-244
ipv6 mld snooping last-listener-query count command 1-246
ipv6 mld snooping last-listener-query-interval command 1-248
ipv6 mld snooping listener-message-suppression command 1-250
ipv6 mld snooping robustness-variable command 1-251
ipv6 mld snooping tcn command 1-253
ipv6 mld snooping vlan command 1-254
ip verify source command 1-243
J
jumbo frames
See MTU
L
LACP
See EtherChannel
lacp port-priority command 1-256
lacp system-priority command 1-258
Layer 2 traceroute
IP addresses 1-684
MAC addresses 1-681
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 1-164
error recovery timer 1-169
link state group command 1-260
link state track command 1-262
load-distribution methods for EtherChannel 1-363
location (global configuration) command 1-263
location (interface configuration) command 1-265
logging event command 1-267
logging event power-inline-status command 1-268
logging file command 1-269
logical interface 1-177
loopback error
detection for 1-164
recovery timer 1-169
loop guard, for spanning tree 1-604, 1-608
M
mab request format attribute 1 command 1-271
mab request format attribute 2 command 1-273
mab request format attribute 32 command 1-274
mac access-group command 1-276
MAC access-groups, displaying 1-508
MAC access list configuration mode 1-278
mac access-list extended command 1-278
MAC access lists 1-115
MAC addresses
disabling MAC address learning per VLAN 1-281
displaying
dynamic 1-515
notification settings 1-519
number of addresses in a VLAN 1-514
per interface 1-516
per VLAN 1-523
static 1-521
static and dynamic entries 1-509
dynamic
aging time 1-280
deleting 1-86
displaying 1-515
enabling MAC address notification 1-285
enabling MAC address-table move update 1-283
static
adding and removing 1-287
displaying 1-521
dropping on an interface 1-288
MAC address notification, debugging 1-24
mac address-table aging-time 1-276
mac address-table aging-time command 1-280
mac address-table learning command 1-281
mac address-table move update command 1-283
mac address-table notification command 1-285
mac address-table static command 1-287
mac address-table static drop command 1-288
macros
interface range 1-110, 1-179
maps
QoS
defining 1-301
match (class-map configuration) command 1-290
maximum transmission unit
See MTU
mdix auto command 1-292
member switches
See clusters
memory (boot loader) command 1-13
mkdir (boot loader) command 1-14
MLD snooping
configuring 1-250, 1-251
configuring queries 1-246, 1-248
configuring topology change notification 1-253
displaying 1-490
enabling 1-244
MLD snooping on a VLAN, enabling 1-254
mls qos aggregate-policer command 1-295
mls qos command 1-293
mls qos cos command 1-297
mls qos dscp-mutation command 1-299
mls qos map command 1-301
mls qos queue-set output buffers command 1-305
mls qos queue-set output threshold command 1-307
mls qos rewrite ip dscp command 1-309
mls qos srr-queue input bandwidth command 1-311
mls qos srr-queue input buffers command 1-313
mls qos-srr-queue input cos-map command 1-315
mls qos srr-queue input dscp-map command 1-317
mls qos srr-queue input priority-queue command 1-319
mls qos srr-queue input threshold command 1-321
mls qos-srr-queue output cos-map command 1-323
mls qos srr-queue output dscp-map command 1-325
mls qos trust command 1-327
mode, MVR 1-333
Mode button, and password recovery 1-383
modes, commands 1-1
monitor session command 1-329
more (boot loader) command 1-15
MSTP
displaying 1-557
interoperability 1-95
link type 1-606
MST region
aborting changes 1-610
applying changes 1-610
configuration name 1-610
configuration revision number 1-610
current or pending display 1-610
displaying 1-557
MST configuration mode 1-610
VLANs-to-instance mapping 1-610
path cost 1-612
protocol mode 1-609
restart protocol migration process 1-95
root port
loop guard 1-604
preventing from becoming designated 1-604
restricting which can be root 1-604
root guard 1-604
root switch
affects of extended system ID 1-602
hello-time 1-615, 1-622
interval between BDPU messages 1-616
interval between hello BPDU messages 1-615, 1-622
max-age 1-616
maximum hop count before discarding BPDU 1-617
port priority for selection of 1-619
primary or secondary 1-622
switch priority 1-621
state changes
blocking to forwarding state 1-628
enabling BPDU filtering 1-594, 1-626
enabling BPDU guard 1-596, 1-626
enabling Port Fast 1-626, 1-628
forward-delay time 1-614
length of listening and learning states 1-614
rapid transition to forwarding 1-606
shutting down Port Fast-enabled ports 1-626
state information display 1-556
MTU
configuring size 1-678
displaying global setting 1-564
Multicase Listener Discovery
See MLD
multicast group address, MVR 1-336
multicast groups, MVR 1-334
Multicast Listener Discovery
See MLD
multicast router learning method 1-236
multicast router ports, configuring 1-236
multicast router ports, IPv6 1-254
multicast storm control 1-644
multicast VLAN, MVR 1-333
multicast VLAN registration
See MVR
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 1-334
configuring 1-333
configuring interfaces 1-336
debug messages, display 1-28
displaying 1-537
displaying interface information 1-538
members, displaying 1-540
mvr (global configuration) command 1-333
mvr (interface configuration) command 1-336
mvr vlan group command 1-337
N
native VLANs 1-672
Network Admission Control Software Configuration Guide 1-187, 1-189
network-policy (global configuration) command 1-340
network-policy command 1-339
network-policy profile (network-policy configuration) command 1-341
nmsp attachment suppress command 1-344
nmsp command 1-343
no authentication logging verbose 1-345
no dot1x logging verbose 1-346
no mab logging verbose 1-347
nonegotiating DTP messaging 1-659
non-IP protocols
denying 1-115
forwarding 1-354
non-IP traffic access lists 1-278
non-IP traffic forwarding
denying 1-115
permitting 1-354
normal-range VLANs 1-693
no vlan command 1-693
O
online diagnostics
displaying
configured boot-up coverage level 1-433
current scheduled tasks 1-433
event logs 1-433
supported test suites 1-433
test ID 1-433
test results 1-433
test statistics 1-433
global configuration mode
clearing health monitoring diagnostic test schedule 1-82
clearing test-based testing schedule 1-120
setting health monitoring diagnostic testing 1-82
setting test-based testing 1-120
setting up health monitoring diagnostic test schedule 1-82
setting up test-based testing 1-120
health monitoring diagnostic tests, configuring 1-118
scheduled switchover
disabling 1-120
enabling 1-120
scheduling
enabling 1-120
removing 1-120
testing, starting 1-122
test interval, setting 1-120
P
PAgP
See EtherChannel
pagp learn-method command 1-348
pagp port-priority command 1-350
password, VTP 1-704
password-recovery mechanism, enabling and disabling 1-383
permit (ARP access-list configuration) command 1-352
permit (MAC access-list configuration) command 1-354
per-VLAN spanning-tree plus
See STP
physical-port learner 1-348
PIM-DVMRP, as multicast router learning method 1-236
PoE
configuring the power budget 1-367
configuring the power management mode 1-364
displaying controller register values 1-427
displaying power management information 1-551
logging of status 1-268
police aggregate command 1-359
police command 1-357
policed-DSCP map 1-301
policy-map command 1-361
policy maps
applying to an interface 1-385, 1-388
creating 1-361
hierarchical 1-361
policers
displaying 1-525
for a single class 1-357
for multiple classes 1-295, 1-359
policed-DSCP map 1-301
traffic classification
defining the class 1-73
defining trust states 1-686
setting DSCP or IP precedence values 1-386
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 1-3
configuring violation modes 1-160
debug messages, display 1-10
enabling IEEE 802.1x
globally 1-123
per interface 1-148
guest VLAN 1-137
host modes 1-139
IEEE 802.1x AAA accounting methods 1-1
initialize an interface 1-141, 1-156
MAC authentication bypass 1-142
manual control of authorization state 1-148
PAE as authenticator 1-147
periodic re-authentication
enabling 1-151
time between attempts 1-157
quiet period between failed authentication exchanges 1-157
re-authenticating IEEE 802.1x-enabled ports 1-150
resetting configurable IEEE 802.1x parameters 1-135
switch-to-authentication server retransmission time 1-157
switch-to-client frame-retransmission number 1-144 to 1-146
switch-to-client retransmission time 1-157
test for IEEE 802.1x readiness 1-155
port-channel load-balance command 1-363
Port Fast, for spanning tree 1-628
port ranges, defining 1-110
ports, debugging 1-64
ports, protected 1-670
port security
aging 1-666
debug messages, display 1-66
enabling 1-661
violation error recovery 1-169
port trust states for QoS 1-327
port types, MVR 1-336
power inline command 1-364
power inline consumption command 1-367
Power over Ethernet
See PoE
priority-queue command 1-369
privileged EXEC mode 1-2, 1-3
protected ports, displaying 1-458
pruning
VLANs 1-672
VTP
displaying interface information 1-454
enabling 1-704
pruning-eligible VLAN list 1-673
psp 1-371
psp command 1-371
PVST+
See STP
Q
QoS
auto-QoS
configuring 1-54
debug messages, display 1-4
auto-QoS trust
configuring 1-48
auto-QoS video
configuring 1-51
class maps
creating 1-76
defining the match criteria 1-290
displaying 1-411
defining the CoS value for an incoming packet 1-297
displaying configuration information 1-524
DSCP transparency 1-309
DSCP trusted ports
applying DSCP-to-DSCP-mutation map to 1-299
defining DSCP-to-DSCP-mutation map 1-301
egress queues
allocating buffers 1-305
defining the CoS output queue threshold map 1-323
defining the DSCP output queue threshold map 1-325
displaying buffer allocations 1-527
displaying CoS output queue threshold map 1-530
displaying DSCP output queue threshold map 1-530
displaying queueing strategy 1-527
displaying queue-set settings 1-533
enabling bandwidth shaping and scheduling 1-640
enabling bandwidth sharing and scheduling 1-642
limiting the maximum output on a port 1-638
mapping a port to a queue-set 1-372
mapping CoS values to a queue and threshold 1-323
mapping DSCP values to a queue and threshold 1-325
setting maximum and reserved memory allocations 1-307
setting WTD thresholds 1-307
enabling 1-293
ingress queues
allocating buffers 1-313
assigning SRR scheduling weights 1-311
defining the CoS input queue threshold map 1-315
defining the DSCP input queue threshold map 1-317
displaying buffer allocations 1-527
displaying CoS input queue threshold map 1-530
displaying DSCP input queue threshold map 1-530
displaying queueing strategy 1-527
displaying settings for 1-526
enabling the priority queue 1-319
mapping CoS values to a queue and threshold 1-315
mapping DSCP values to a queue and threshold 1-317
setting WTD thresholds 1-321
maps
defining 1-301, 1-315, 1-317, 1-323, 1-325
policy maps
applying an aggregate policer 1-359
applying to an interface 1-385, 1-388
creating 1-361
defining policers 1-295, 1-357
displaying policers 1-525
hierarchical 1-361
policed-DSCP map 1-301
setting DSCP or IP precedence values 1-386
traffic classifications 1-73
trust states 1-686
port trust states 1-327
queues, enabling the expedite 1-369
statistics
in-profile and out-of-profile packets 1-527
packets enqueued or dropped 1-527
sent and received CoS values 1-527
sent and received DSCP values 1-527
trusted boundary for IP phones 1-327
quality of service
See QoS
querytime, MVR 1-333
queue-set command 1-372
R
radius-server dead-criteria command 1-373
radius-server host command 1-375
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
rcommand command 1-377
re-authenticating IEEE 802.1x-enabled ports 1-150
re-authentication
periodic 1-151
time between attempts 1-157
receiver ports, MVR 1-336
receiving flow-control packets 1-175
recovery mechanism
causes 1-169
display 1-81, 1-408, 1-445, 1-447
timer interval 1-170
redundancy for cluster switches 1-107
remote-span command 1-379
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command 1-16
renew ip dhcp snooping database command 1-381
reset (boot loader) command 1-17
restricted VLAN
See dot1x auth-fail vlan
rmdir (boot loader) command 1-18
rmon collection stats command 1-382
root guard, for spanning tree 1-604
RSPAN
configuring 1-329
filter RSPAN traffic 1-329
remote-span command 1-379
S
scheduled switchover
disabling 1-120
enabling 1-120
secure ports, limitations 1-663
sending flow-control packets 1-175
service password-recovery command 1-383
service-policy command 1-385
set (boot loader) command 1-19
set command 1-386
setup command 1-388
setup express command 1-391
show access-lists command 1-393
show archive status command 1-396
show arp access-list command 1-397
show authentication command 1-398
show auto qos command 1-402
show boot command 1-406
show cable-diagnostics tdr command 1-408
show cisp command 1-410
show class-map command 1-411
show cluster candidates command 1-414
show cluster command 1-412
show cluster members command 1-416
show controllers cpu-interface command 1-418
show controllers ethernet-controller command 1-420
show controllers power inline command 1-427
show controllers tcam command 1-429
show controller utilization command 1-431
show dot1x command 1-436
show dtp 1-440
show eap command 1-441
show env command 1-444
show errdisable detect command 1-445
show errdisable flap-values command 1-446
show errdisable recovery command 1-447
show etherchannel command 1-449
show fallback profile command 1-452
show flowcontrol command 1-453
show interfaces command 1-454
show interfaces counters command 1-462
show interface transceivers command 1-464
show inventory command 1-467
show ip arp inspection command 1-468
show ip dhcp snooping binding command 1-473
show ip dhcp snooping command 1-472
show ip dhcp snooping database command 1-475, 1-477
show ip igmp profile command 1-480
show ip igmp snooping command 1-481, 1-490
show ip igmp snooping groups command 1-483
show ip igmp snooping mrouter command 1-485
show ip igmp snooping querier command 1-486
show ip source binding command 1-488
show ipv6 route updated 1-498
show ip verify source command 1-489
show lacp command 1-500
show link state group command 1-504
show mac access-group command 1-508
show mac address-table address command 1-511
show mac address-table aging time command 1-512
show mac address-table command 1-509
show mac address-table count command 1-514
show mac address-table dynamic command 1-515
show mac address-table interface command 1-516
show mac address-table move update command 1-518
show mac address-table notification command 1-88, 1-519, 1-26
show mac address-table static command 1-521
show mac address-table vlan command 1-523
show mls qos aggregate-policer command 1-525
show mls qos command 1-524
show mls qos input-queue command 1-526
show mls qos interface command 1-527
show mls qos maps command 1-530
show mls qos queue-set command 1-533
show mls qos vlan command 1-534
show monitor command 1-535
show mvr command 1-537
show mvr interface command 1-538
show mvr members command 1-540
show network-policy profile command 1-542
show nmsp command 1-543
show pagp command 1-546
show platform acl command 1-2
show platform backup interface command 1-3
show platform etherchannel command 1-4
show platform forward command 1-5
show platform frontend-controller command 1-7
show platform igmp snooping command 1-8
show platform ip unicast command 1-9
show platform layer4op command 1-10
show platform mac-address-table command 1-11
show platform messaging command 1-12
show platform monitor command 1-13
show platform mvr table command 1-14
show platform pm command 1-15
show platform port-asic command 1-16
show platform port-security command 1-20
show platform qos command 1-21
show platform resource-manager command 1-22
show platform snmp counters command 1-24
show platform spanning-tree command 1-25
show platform stp-instance command 1-26
show platform tcam command 1-27
show platform vlan command 1-29
show policy-map command 1-548
show port security command 1-549
show power inline command 1-551
show psp config 1-553
show psp config command 1-553
show psp statistics 1-554
show psp statistics command 1-554
show setup express command 1-555
show spanning-tree command 1-556
show storm-control command 1-562
show system mtu command 1-564
show trust command 1-686
show udld command 1-565
show version command 1-568
show vlan command 1-569
show vlan command, fields 1-570
show vmps command 1-572
show vtp command 1-574
shutdown command 1-579
shutdown vlan command 1-580
small violation-rate command 1-581
SNMP host, specifying 1-587
SNMP informs, enabling the sending of 1-583
snmp-server enable traps command 1-583
snmp-server host command 1-587
snmp trap mac-notification change command 1-591
SNMP traps
enabling MAC address notification trap 1-591
enabling the MAC address notification feature 1-285
enabling the sending of 1-583
SoftPhone
See Cisco SoftPhone
software images
deleting 1-112
downloading 1-6
upgrading 1-6
uploading 1-12
software version, displaying 1-568
source ports, MVR 1-336
SPAN
configuring 1-329
debug messages, display 1-27
filter SPAN traffic 1-329
sessions
add interfaces to 1-329
start new 1-329
spanning-tree backbonefast command 1-593
spanning-tree bpdufilter command 1-594
spanning-tree bpduguard command 1-596
spanning-tree cost command 1-598
spanning-tree etherchannel command 1-600
spanning-tree extend system-id command 1-602
spanning-tree guard command 1-604
spanning-tree link-type command 1-606
spanning-tree loopguard default command 1-608
spanning-tree mode command 1-609
spanning-tree mst configuration command 1-610
spanning-tree mst cost command 1-612
spanning-tree mst forward-time command 1-614
spanning-tree mst hello-time command 1-615
spanning-tree mst max-age command 1-616
spanning-tree mst max-hops command 1-617
spanning-tree mst port-priority command 1-619
spanning-tree mst pre-standard command 1-620
spanning-tree mst priority command 1-621
spanning-tree mst root command 1-622
spanning-tree portfast (global configuration) command 1-626
spanning-tree portfast (interface configuration) command 1-628
spanning-tree port-priority command 1-624
Spanning Tree Protocol
See STP
spanning-tree transmit hold-count command 1-630
spanning-tree uplinkfast command 1-631
spanning-tree vlan command 1-633
speed command 1-636
srr-queue bandwidth limit command 1-638
srr-queue bandwidth share command 1-642
SSH, configuring version 1-242
static-access ports, configuring 1-647
statistics, Ethernet group 1-382
sticky learning, enabling 1-661
storm-control command 1-644
STP
BackboneFast 1-593
counters, clearing 1-94
debug messages, display
BackboneFast events 1-70
MSTP 1-73
optimized BPDUs handling 1-72
spanning-tree activity 1-68
switch shim 1-75
transmitted and received BPDUs 1-71
UplinkFast 1-77
detection of indirect link failures 1-593
EtherChannel misconfiguration 1-600
extended system ID 1-602
path cost 1-598
protocol modes 1-609
root port
accelerating choice of new 1-631
loop guard 1-604
preventing from becoming designated 1-604
restricting which can be root 1-604
root guard 1-604
UplinkFast 1-631
root switch
affects of extended system ID 1-602, 1-634
hello-time 1-633
interval between BDPU messages 1-633
interval between hello BPDU messages 1-633
max-age 1-633
port priority for selection of 1-624
primary or secondary 1-633
switch priority 1-633
state changes
blocking to forwarding state 1-628
enabling BPDU filtering 1-594, 1-626
enabling BPDU guard 1-596, 1-626
enabling Port Fast 1-626, 1-628
enabling timer to recover from error state 1-169
forward-delay time 1-633
length of listening and learning states 1-633
shutting down Port Fast-enabled ports 1-626
state information display 1-556
VLAN options 1-621, 1-633
Switched Port Analyzer
See SPAN
switchport access command 1-647
switchport backup interface command 1-650
switchport block command 1-654
switchport host command 1-656
switchport mode command 1-657
switchport nonegotiate command 1-659
switchport port-security aging command 1-666
switchport port-security command 1-661
switchport priority extend command 1-668
switchport protected command 1-670
switchports, displaying 1-454
switchport trunk command 1-672
switchport voice vlan command 1-675
system message logging 1-268
system message logging, save message to flash 1-269
system mtu command 1-678
T
tar files, creating, listing, and extracting 1-9
TDR, running 1-680
Telnet, using to communicate to cluster switches 1-377
test cable-diagnostics tdr command 1-680
traceroute mac command 1-681
traceroute mac ip command 1-684
trunking, VLAN mode 1-657
trunk mode 1-657
trunk ports 1-657
trunks, to non-DTP device 1-658
trusted boundary for QoS 1-327
trusted port states for QoS 1-327
type (boot loader) command 1-22
U
UDLD
aggressive mode 1-688, 1-690
debug messages, display 1-84
enable globally 1-688
enable per interface 1-690
error recovery timer 1-169
message timer 1-688
normal mode 1-688, 1-690
reset a shutdown interface 1-692
status 1-565
udld command 1-688
udld port command 1-690
udld reset command 1-692
unicast storm control 1-644
UniDirectional Link Detection
See UDLD
unknown multicast traffic, preventing 1-654
unknown unicast traffic, preventing 1-654
unset (boot loader) command 1-23
upgrading
software images
downloading 1-6
monitoring status of 1-396
UplinkFast, for STP 1-631
user EXEC mode 1-2
V
version (boot loader) command 1-25
vlan (global configuration) command 1-693
VLAN configuration
rules 1-696
saving 1-693
VLAN configuration mode
description 1-4
summary 1-2
VLAN ID range 1-693
VLAN Query Protocol
See VQP
VLANs
adding 1-693
configuring 1-693
debug messages, display
ISL 1-81
VLAN IOS file system error tests 1-80
VLAN manager activity 1-78
VTP 1-82
displaying configurations 1-569
enabling guest VLAN supplicant 1-125, 1-136, 1-174
extended-range 1-693
MAC addresses
displaying 1-523
number of 1-514
media types 1-695
normal-range 1-693
restarting 1-580
saving the configuration 1-693
shutting down 1-580
SNMP traps for VTP 1-585, 1-588
suspending 1-580
VLAN Trunking Protocol
See VTP
VMPS
configuring servers 1-701
displaying 1-572
error recovery timer 1-170
reconfirming dynamic VLAN assignments 1-698
vmps reconfirm (global configuration) command 1-699
vmps reconfirm (privileged EXEC) command 1-698
vmps retry command 1-700
vmps server command 1-701
voice VLAN
configuring 1-675
setting port priority 1-668
VQP
and dynamic-access ports 1-648
clearing client statistics 1-96
displaying information 1-572
per-server retry count 1-700
reconfirmation interval 1-699
reconfirming dynamic VLAN assignments 1-698
VTP
changing characteristics 1-703
clearing pruning counters 1-97
configuring
domain name 1-703
file name 1-703
mode 1-703
password 1-704
counters display fields 1-575
displaying information 1-574
enabling
pruning 1-704
Version 2 1-704
enabling per port 1-708
mode 1-703
pruning 1-704
saving the configuration 1-693
statistics 1-574
status 1-574
status display fields 1-577
vtp (global configuration) command 1-703
vtp interface configuration) command 1-708
vtp primary command 1-709
Index
A
aaa accounting dot1x command 1-1
aaa authentication dot1x command 1-3
aaa authorization network command 1-5, 1-18, 1-24, 1-26, 1-29, 1-31, 1-33, 1-130, 1-271, 1-273, 1-274, 1-410, 1-7, 1-34
AAA methods 1-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 1-183
MAC, displaying 1-508
access mode 1-657
access ports 1-657
ACEs 1-117, 1-355
ACLs
deny 1-115
displaying 1-393
for non-IP protocols 1-278
IP 1-183
on Layer 2 interfaces 1-183
permit 1-354
address aliasing 1-334
aggregate-port learner 1-348
allowed VLANs 1-672
archive download-sw command 1-6
archive tar command 1-9
archive upload-sw command 1-12
arp access-list command 1-14
authentication command bounce-port ignore 1-16
authentication command disable-port ignore 1-17
authentication control-direction command 1-18
authentication event command 1-20
authentication failed VLAN
See dot1x auth-fail vlan
authentication fallback command 1-24
authentication host-mode command 1-26
authentication mac-move permit command 1-29
authentication open command 1-31
authentication order command 1-33
authentication periodic command 1-35
authentication port-control command 1-37
authentication priority command 1-39
authentication timer command 1-41
authentication violation command 1-43
auth-fail max-attempts
See dot1x auth-fail max-attempts
auth-fail vlan
See dot1x auth-fail vlan
auth open command 1-31
auth order command 1-33
authorization state of controlled port 1-148
auth timer command 1-41
autonegotiation of duplex mode 1-162
auto qos classify command 1-45
auto qos trust command 1-48
auto qos video command 1-51
auto qos voip command 1-54
B
BackboneFast, for STP 1-593
backup interfaces
configuring 1-650
displaying 1-454
boot (boot loader) command 1-2
boot config-file command 1-61
boot enable-break command 1-62
boot helper command 1-63
boot helper-config file command 1-64
booting
Cisco IOS image 1-67
displaying environment variables 1-406
interrupting 1-62
manually 1-65
boot loader
accessing 1-1
booting
Cisco IOS image 1-2
helper image 1-63
directories
creating 1-14
displaying a list of 1-7
removing 1-18
displaying
available commands 1-12
memory heap utilization 1-13
version 1-25
environment variables
described 1-19
displaying settings 1-19
location of 1-20
setting 1-19
unsetting 1-23
files
copying 1-5
deleting 1-6
displaying a list of 1-7
displaying the contents of 1-4, 1-15, 1-22
renaming 1-16
file system
formatting 1-10
initializing flash 1-9
running a consistency check 1-11
prompt 1-1
resetting the system 1-17
boot manual command 1-65
boot private-config-file command 1-66
boot system command 1-67
BPDU filtering, for spanning tree 1-594, 1-626
BPDU guard, for spanning tree 1-596, 1-626
broadcast storm control 1-644
C
candidate switches
See clusters
cat (boot loader) command 1-4
channel-group command 1-68
channel-protocol command 1-71
Cisco IP camera
auto-QoS configuration 1-51
Cisco SoftPhone
auto-QoS configuration 1-54
trusting packets sent from 1-327
Cisco Telepresence System
auto-QoS configuration 1-51
CISP
See Client Information Signalling Protocol
cisp
debug platform cisp command 1-34
cisp enable command 1-72
class command 1-73
class-map command 1-76
class maps
creating 1-76
defining the match criteria 1-290
displaying 1-411
class of service
See CoS
clear dot1x command 1-79
clear eap sessions command 1-80
clear errdisable interface 1-81
clear ip arp inspection log command 1-78
clear ip arp inspection statistics command 1-82
clear ip dhcp snooping database command 1-83
clear lacp command 1-85
clear mac address-table command 1-86, 1-88
clear nmsp statistics command 1-89
clear pagp command 1-90
clear port-security command 1-91
clear psp counter 1-93
clear psp counter command 1-93
clear spanning-tree counters command 1-94
clear spanning-tree detected-protocols command 1-95
clear vmps statistics command 1-96
clear vtp counters command 1-97
Client Information Signalling Protocol 1-72, 1-130, 1-410, 1-7, 1-34
cluster commander-address command 1-98
cluster discovery hop-count command 1-100
cluster enable command 1-101
cluster holdtime command 1-102
cluster member command 1-103
cluster outside-interface command 1-105
cluster run command 1-106
clusters
adding candidates 1-103
binding to HSRP group 1-107
building manually 1-103
communicating with
devices outside the cluster 1-105
members by using Telnet 1-377
debug messages, display 1-8
displaying
candidate switches 1-414
debug messages 1-8
member switches 1-416
status 1-412
hop-count limit for extended discovery 1-100
HSRP standby groups 1-107
redundancy 1-107
SNMP trap 1-583
cluster standby-group command 1-107
cluster timer command 1-109
command modes defined 1-1
command switch
See clusters
configuration files
password recovery disable considerations 1-1
specifying the name 1-61, 1-66
configuring multiple interfaces 1-179
config-vlan mode
commands 1-694
entering 1-693
copy (boot loader) command 1-5
CoS
assigning default value to incoming packets 1-297
overriding the incoming value 1-297
CoS-to-DSCP map 1-301
CPU ASIC statistics, displaying 1-418
crashinfo files 1-172
critical VLAN 1-22
D
debug authentication 1-2
debug auto qos command 1-4
debug backup command 1-6
debug cisp command 1-7
debug cluster command 1-8
debug dot1x command 1-10
debug dtp command 1-12
debug eap command 1-13
debug etherchannel command 1-14
debug ilpower command 1-15
debug interface command 1-16
debug ip dhcp snooping command 1-17
debug ip igmp filter command 1-19
debug ip igmp max-groups command 1-20
debug ip igmp snooping command 1-21
debug ip verify source packet command 1-18
debug lacp command 1-22
debug lldp packets command 1-23
debug mac-notification command 1-24
debug matm command 1-25
debug matm move update command 1-26
debug monitor command 1-27
debug mvrdbg command 1-28
debug nmsp command 1-29
debug nvram command 1-30
debug pagp command 1-31
debug platform acl command 1-32
debug platform backup interface command 1-33
debug platform cisp command 1-34
debug platform configuration command 1-39
debug platform cpu-queues command 1-35
debug platform dot1x command 1-36
debug platform etherchannel command 1-37
debug platform forw-tcam command 1-38
debug platform ip arp inspection command 1-40
debug platform ip dhcp command 1-41
debug platform ip igmp snooping command 1-42
debug platform ip source-guard command 1-44
debug platform led command 1-45
debug platform matm command 1-46
debug platform messaging application command 1-47
debug platform phy command 1-48
debug platform pm command 1-50
debug platform port-asic command 1-52
debug platform port-security command 1-53
debug platform qos-acl-tcam command 1-54
debug platform resource-manager command 1-55
debug platform snmp command 1-56
debug platform span command 1-57
debug platform supervisor-asic command 1-58
debug platform sw-bridge command 1-59
debug platform tcam command 1-60
debug platform udld command 1-62
debug platform vlan command 1-63
debug pm command 1-64
debug port-security command 1-66
debug qos-manager command 1-67
debug spanning-tree backbonefast command 1-70
debug spanning-tree bpdu command 1-71
debug spanning-tree bpdu-opt command 1-72
debug spanning-tree command 1-68
debug spanning-tree mstp command 1-73
debug spanning-tree switch command 1-75
debug spanning-tree uplinkfast command 1-77
debug sw-vlan command 1-78
debug sw-vlan ifs command 1-80
debug sw-vlan notification command 1-81
debug sw-vlan vtp command 1-82
debug udld command 1-84
debug vqpc command 1-86
define interface-range command 1-110
delete (boot loader) command 1-6
delete command 1-112
deny (ARP access-list configuration) command 1-113
deny command 1-115
detect mechanism, causes 1-164
DHCP snooping
accepting untrusted packets from edge switch 1-212
enabling
on a VLAN 1-217
option 82 1-211, 1-212
trust on an interface 1-215
error recovery timer 1-169
rate limiting 1-214
DHCP snooping binding database
binding file, configuring 1-209
bindings
adding 1-207
deleting 1-207
clearing database agent statistics 1-83
database agent, configuring 1-209
renewing 1-381
Digital Optical Monitoring
see DoM
dir (boot loader) command 1-7
directories, deleting 1-112
DoM
displaying supported transceivers 1-464
domain name, VTP 1-703
dot1x auth-fail max-attempts 1-125
dot1x auth-fail vlan 1-126
dot1x command 1-123
dot1x control-direction command 1-128
dot1x credentials (global configuration) command 1-130
dot1x critical global configuration command 1-131
dot1x critical interface configuration command 1-133
dot1x default command 1-135
dot1x fallback command 1-136
dot1x guest-vlan command 1-137
dot1x host-mode command 1-139
dot1x initialize command 1-141
dot1x mac-auth-bypass command 1-142
dot1x max-reauth-req command 1-144
dot1x max-req command 1-146
dot1x pae command 1-147
dot1x port-control command 1-148
dot1x re-authenticate command 1-150
dot1x reauthentication command 1-151
dot1x supplicant controlled transient command 1-152
dot1x supplicant force-multicast command 1-154
dot1x test eapol-capable command 1-155
dot1x test timeout command 1-156
dot1x timeout command 1-157
dot1x violation-mode command 1-160
DSCP-to-CoS map 1-301
DSCP-to-DSCP-mutation map 1-301
DTP 1-658
DTP flap
error detection for 1-164
error recovery timer 1-169
DTP negotiation 1-659
dual-purpose uplink ports
displaying configurable options 1-456
duplex command 1-161
dynamic-access ports
configuring 1-647
restrictions 1-648
dynamic ARP inspection
ARP ACLs
apply to a VLAN 1-190
define 1-14
deny packets 1-113
display 1-397
permit packets 1-352
clear
log buffer 1-78
statistics 1-82
display
ARP ACLs 1-397
configuration and operating state 1-468
log buffer 1-468
statistics 1-468
trust state and rate limit 1-468
enable per VLAN 1-200
log buffer
clear 1-78
configure 1-194
display 1-468
rate-limit incoming ARP packets 1-192
statistics
clear 1-82
display 1-468
trusted interface state 1-196
type of packet logged 1-201
validation checks 1-198
dynamic auto VLAN membership mode 1-657
dynamic desirable VLAN membership mode 1-657
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame
maximum number to send 1-146
response time before retransmitting 1-157
environment variables, displaying 1-406
epm access-control open 1-163
errdisable detect cause command 1-164
errdisable detect cause small-frame comand 1-166
errdisable recovery cause small-frame 1-168
errdisable recovery command 1-169
error conditions, displaying 1-446
error disable detection 1-164
error-disabled interfaces, displaying 1-454
EtherChannel
assigning Ethernet interface to channel group 1-68
creating port-channel logical interface 1-177
debug EtherChannel/PAgP, display 1-14
debug platform-specific events, display 1-37
displaying 1-449
interface information, displaying 1-454
LACP
clearing channel-group information 1-85
debug messages, display 1-22
displaying 1-500
modes 1-68
port priority for hot-standby ports 1-256
restricting a protocol 1-71
system priority 1-258
load-distribution methods 1-363
PAgP
aggregate-port learner 1-348
clearing channel-group information 1-90
debug messages, display 1-31
displaying 1-546
error detection for 1-164
error recovery timer 1-169
learn method 1-348
modes 1-68
physical-port learner 1-348
priority of interface for transmitted traffic 1-350
Ethernet controller, internal register display 1-420
Ethernet statistics, collecting 1-382
exception crashinfo command 1-172
extended discovery of candidate switches 1-100
extended-range VLANs
and allowed VLAN list 1-672
and pruning-eligible list 1-672
configuring 1-693
extended system ID for STP 1-602
F
fallback profile command 1-173
fallback profiles, displaying 1-452
file name, VTP 1-703
files, deleting 1-112
flash_init (boot loader) command 1-9
flexible authentication ordering 1-33
Flex Links
configuring 1-650
configuring preferred VLAN 1-652
displaying 1-454
flowcontrol command 1-175
format (boot loader) command 1-10
fsck (boot loader) command 1-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 1-393
help (boot loader) command 1-12
hierarchical policy maps 1-361
hop-count limit for clusters 1-100
host connection, port configuration 1-656
Hot Standby Router Protocol
See HSRP
HSRP
binding HSRP group to cluster 1-107
standby group 1-107
I
IEEE 802.1x
and switchport modes 1-658
violation error recovery 1-169
See also port-based authentication
IEEE 802.1X Port Based Authentication
enabling guest VLAN supplicant 1-125, 1-136, 1-174
IGMP filters
applying 1-220
debug messages, display 1-19
IGMP groups, setting maximum 1-221
IGMP maximum groups, debugging 1-20
IGMP profiles
creating 1-223
displaying 1-480
IGMP snooping
adding ports as a static member of a group 1-238
displaying 1-481
enabling 1-225
enabling the configurable-leave timer 1-227
enabling the Immediate-Leave feature 1-235
flooding query count 1-232
interface topology change notification behavior 1-234
querier 1-229
query solicitation 1-232
report suppression 1-231
switch topology change notification behavior 1-232
images
See software images
Immediate-Leave feature, MVR 1-336
immediate-leave processing 1-235
Immediate-Leave processing, IPv6 1-254
interface configuration mode 1-2, 1-4
interface port-channel command 1-177
interface range command 1-179
interface-range macros 1-110
interfaces
assigning Ethernet interface to channel group 1-68
configuring 1-161
configuring multiple 1-179
creating port-channel logical 1-177
debug messages, display 1-16
disabling 1-579
displaying the MAC address table 1-516
restarting 1-579
interface speed, configuring 1-636
interface vlan command 1-181
internal registers, displaying 1-420, 1-429
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 1-164
error recovery timer 1-169
ip access-group command 1-183
ip address command 1-185
IP addresses, setting 1-185
ip admission command 1-187
ip admission name proxy http command 1-188
ip arp inspection filter vlan command 1-190
ip arp inspection limit command 1-192
ip arp inspection log-buffer command 1-194
ip arp inspection trust command 1-196
ip arp inspection validate command 1-198
ip arp inspection vlan command 1-200
ip arp inspection vlan logging command 1-201
ip device tracking command 1-205
ip device tracking probe command 1-203
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 1-207
ip dhcp snooping command 1-206
ip dhcp snooping database command 1-209
ip dhcp snooping information option allow-untrusted command 1-212
ip dhcp snooping information option command 1-211
ip dhcp snooping limit rate command 1-214
ip dhcp snooping trust command 1-215
ip dhcp snooping verify command 1-216
ip dhcp snooping vlan command 1-217
ip dhcp snooping vlan information option format-type circuit-id string command 1-218
ip igmp filter command 1-220
ip igmp max-groups command 1-221
ip igmp profile command 1-223
ip igmp snooping command 1-225
ip igmp snooping last-member-query-interval command 1-227
ip igmp snooping querier command 1-229
ip igmp snooping report-suppression command 1-231
ip igmp snooping tcn command 1-232
ip igmp snooping tcn flood command 1-234
ip igmp snooping vlan immediate-leave command 1-235
ip igmp snooping vlan mrouter command 1-236
ip igmp snooping vlan static command 1-238
IP multicast addresses 1-333
IP phones
auto-QoS configuration 1-54
trusting packets sent from 1-327
IP-precedence-to-DSCP map 1-301
ip source binding command 1-240
IP source guard
disabling 1-243
enabling 1-243
static IP source bindings 1-240
ip ssh command 1-242
ipv6 mld snooping command 1-244
ipv6 mld snooping last-listener-query count command 1-246
ipv6 mld snooping last-listener-query-interval command 1-248
ipv6 mld snooping listener-message-suppression command 1-250
ipv6 mld snooping robustness-variable command 1-251
ipv6 mld snooping tcn command 1-253
ipv6 mld snooping vlan command 1-254
ip verify source command 1-243
J
jumbo frames
See MTU
L
LACP
See EtherChannel
lacp port-priority command 1-256
lacp system-priority command 1-258
Layer 2 traceroute
IP addresses 1-684
MAC addresses 1-681
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 1-164
error recovery timer 1-169
link state group command 1-260
link state track command 1-262
load-distribution methods for EtherChannel 1-363
location (global configuration) command 1-263
location (interface configuration) command 1-265
logging event command 1-267
logging event power-inline-status command 1-268
logging file command 1-269
logical interface 1-177
loopback error
detection for 1-164
recovery timer 1-169
loop guard, for spanning tree 1-604, 1-608
M
mab request format attribute 1 command 1-271
mab request format attribute 2 command 1-273
mab request format attribute 32 command 1-274
mac access-group command 1-276
MAC access-groups, displaying 1-508
MAC access list configuration mode 1-278
mac access-list extended command 1-278
MAC access lists 1-115
MAC addresses
disabling MAC address learning per VLAN 1-281
displaying
dynamic 1-515
notification settings 1-519
number of addresses in a VLAN 1-514
per interface 1-516
per VLAN 1-523
static 1-521
static and dynamic entries 1-509
dynamic
aging time 1-280
deleting 1-86
displaying 1-515
enabling MAC address notification 1-285
enabling MAC address-table move update 1-283
static
adding and removing 1-287
displaying 1-521
dropping on an interface 1-288
MAC address notification, debugging 1-24
mac address-table aging-time 1-276
mac address-table aging-time command 1-280
mac address-table learning command 1-281
mac address-table move update command 1-283
mac address-table notification command 1-285
mac address-table static command 1-287
mac address-table static drop command 1-288
macros
interface range 1-110, 1-179
maps
QoS
defining 1-301
match (class-map configuration) command 1-290
maximum transmission unit
See MTU
mdix auto command 1-292
member switches
See clusters
memory (boot loader) command 1-13
mkdir (boot loader) command 1-14
MLD snooping
configuring 1-250, 1-251
configuring queries 1-246, 1-248
configuring topology change notification 1-253
displaying 1-490
enabling 1-244
MLD snooping on a VLAN, enabling 1-254
mls qos aggregate-policer command 1-295
mls qos command 1-293
mls qos cos command 1-297
mls qos dscp-mutation command 1-299
mls qos map command 1-301
mls qos queue-set output buffers command 1-305
mls qos queue-set output threshold command 1-307
mls qos rewrite ip dscp command 1-309
mls qos srr-queue input bandwidth command 1-311
mls qos srr-queue input buffers command 1-313
mls qos-srr-queue input cos-map command 1-315
mls qos srr-queue input dscp-map command 1-317
mls qos srr-queue input priority-queue command 1-319
mls qos srr-queue input threshold command 1-321
mls qos-srr-queue output cos-map command 1-323
mls qos srr-queue output dscp-map command 1-325
mls qos trust command 1-327
mode, MVR 1-333
Mode button, and password recovery 1-383
modes, commands 1-1
monitor session command 1-329
more (boot loader) command 1-15
MSTP
displaying 1-557
interoperability 1-95
link type 1-606
MST region
aborting changes 1-610
applying changes 1-610
configuration name 1-610
configuration revision number 1-610
current or pending display 1-610
displaying 1-557
MST configuration mode 1-610
VLANs-to-instance mapping 1-610
path cost 1-612
protocol mode 1-609
restart protocol migration process 1-95
root port
loop guard 1-604
preventing from becoming designated 1-604
restricting which can be root 1-604
root guard 1-604
root switch
affects of extended system ID 1-602
hello-time 1-615, 1-622
interval between BDPU messages 1-616
interval between hello BPDU messages 1-615, 1-622
max-age 1-616
maximum hop count before discarding BPDU 1-617
port priority for selection of 1-619
primary or secondary 1-622
switch priority 1-621
state changes
blocking to forwarding state 1-628
enabling BPDU filtering 1-594, 1-626
enabling BPDU guard 1-596, 1-626
enabling Port Fast 1-626, 1-628
forward-delay time 1-614
length of listening and learning states 1-614
rapid transition to forwarding 1-606
shutting down Port Fast-enabled ports 1-626
state information display 1-556
MTU
configuring size 1-678
displaying global setting 1-564
Multicase Listener Discovery
See MLD
multicast group address, MVR 1-336
multicast groups, MVR 1-334
Multicast Listener Discovery
See MLD
multicast router learning method 1-236
multicast router ports, configuring 1-236
multicast router ports, IPv6 1-254
multicast storm control 1-644
multicast VLAN, MVR 1-333
multicast VLAN registration
See MVR
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 1-334
configuring 1-333
configuring interfaces 1-336
debug messages, display 1-28
displaying 1-537
displaying interface information 1-538
members, displaying 1-540
mvr (global configuration) command 1-333
mvr (interface configuration) command 1-336
mvr vlan group command 1-337
N
native VLANs 1-672
Network Admission Control Software Configuration Guide 1-187, 1-189
network-policy (global configuration) command 1-340
network-policy command 1-339
network-policy profile (network-policy configuration) command 1-341
nmsp attachment suppress command 1-344
nmsp command 1-343
no authentication logging verbose 1-345
no dot1x logging verbose 1-346
no mab logging verbose 1-347
nonegotiating DTP messaging 1-659
non-IP protocols
denying 1-115
forwarding 1-354
non-IP traffic access lists 1-278
non-IP traffic forwarding
denying 1-115
permitting 1-354
normal-range VLANs 1-693
no vlan command 1-693
O
online diagnostics
displaying
configured boot-up coverage level 1-433
current scheduled tasks 1-433
event logs 1-433
supported test suites 1-433
test ID 1-433
test results 1-433
test statistics 1-433
global configuration mode
clearing health monitoring diagnostic test schedule 1-82
clearing test-based testing schedule 1-120
setting health monitoring diagnostic testing 1-82
setting test-based testing 1-120
setting up health monitoring diagnostic test schedule 1-82
setting up test-based testing 1-120
health monitoring diagnostic tests, configuring 1-118
scheduled switchover
disabling 1-120
enabling 1-120
scheduling
enabling 1-120
removing 1-120
testing, starting 1-122
test interval, setting 1-120
P
PAgP
See EtherChannel
pagp learn-method command 1-348
pagp port-priority command 1-350
password, VTP 1-704
password-recovery mechanism, enabling and disabling 1-383
permit (ARP access-list configuration) command 1-352
permit (MAC access-list configuration) command 1-354
per-VLAN spanning-tree plus
See STP
physical-port learner 1-348
PIM-DVMRP, as multicast router learning method 1-236
PoE
configuring the power budget 1-367
configuring the power management mode 1-364
displaying controller register values 1-427
displaying power management information 1-551
logging of status 1-268
police aggregate command 1-359
police command 1-357
policed-DSCP map 1-301
policy-map command 1-361
policy maps
applying to an interface 1-385, 1-388
creating 1-361
hierarchical 1-361
policers
displaying 1-525
for a single class 1-357
for multiple classes 1-295, 1-359
policed-DSCP map 1-301
traffic classification
defining the class 1-73
defining trust states 1-686
setting DSCP or IP precedence values 1-386
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 1-3
configuring violation modes 1-160
debug messages, display 1-10
enabling IEEE 802.1x
globally 1-123
per interface 1-148
guest VLAN 1-137
host modes 1-139
IEEE 802.1x AAA accounting methods 1-1
initialize an interface 1-141, 1-156
MAC authentication bypass 1-142
manual control of authorization state 1-148
PAE as authenticator 1-147
periodic re-authentication
enabling 1-151
time between attempts 1-157
quiet period between failed authentication exchanges 1-157
re-authenticating IEEE 802.1x-enabled ports 1-150
resetting configurable IEEE 802.1x parameters 1-135
switch-to-authentication server retransmission time 1-157
switch-to-client frame-retransmission number 1-144 to 1-146
switch-to-client retransmission time 1-157
test for IEEE 802.1x readiness 1-155
port-channel load-balance command 1-363
Port Fast, for spanning tree 1-628
port ranges, defining 1-110
ports, debugging 1-64
ports, protected 1-670
port security
aging 1-666
debug messages, display 1-66
enabling 1-661
violation error recovery 1-169
port trust states for QoS 1-327
port types, MVR 1-336
power inline command 1-364
power inline consumption command 1-367
Power over Ethernet
See PoE
priority-queue command 1-369
privileged EXEC mode 1-2, 1-3
protected ports, displaying 1-458
pruning
VLANs 1-672
VTP
displaying interface information 1-454
enabling 1-704
pruning-eligible VLAN list 1-673
psp 1-371
psp command 1-371
PVST+
See STP
Q
QoS
auto-QoS
configuring 1-54
debug messages, display 1-4
auto-QoS trust
configuring 1-48
auto-QoS video
configuring 1-51
class maps
creating 1-76
defining the match criteria 1-290
displaying 1-411
defining the CoS value for an incoming packet 1-297
displaying configuration information 1-524
DSCP transparency 1-309
DSCP trusted ports
applying DSCP-to-DSCP-mutation map to 1-299
defining DSCP-to-DSCP-mutation map 1-301
egress queues
allocating buffers 1-305
defining the CoS output queue threshold map 1-323
defining the DSCP output queue threshold map 1-325
displaying buffer allocations 1-527
displaying CoS output queue threshold map 1-530
displaying DSCP output queue threshold map 1-530
displaying queueing strategy 1-527
displaying queue-set settings 1-533
enabling bandwidth shaping and scheduling 1-640
enabling bandwidth sharing and scheduling 1-642
limiting the maximum output on a port 1-638
mapping a port to a queue-set 1-372
mapping CoS values to a queue and threshold 1-323
mapping DSCP values to a queue and threshold 1-325
setting maximum and reserved memory allocations 1-307
setting WTD thresholds 1-307
enabling 1-293
ingress queues
allocating buffers 1-313
assigning SRR scheduling weights 1-311
defining the CoS input queue threshold map 1-315
defining the DSCP input queue threshold map 1-317
displaying buffer allocations 1-527
displaying CoS input queue threshold map 1-530
displaying DSCP input queue threshold map 1-530
displaying queueing strategy 1-527
displaying settings for 1-526
enabling the priority queue 1-319
mapping CoS values to a queue and threshold 1-315
mapping DSCP values to a queue and threshold 1-317
setting WTD thresholds 1-321
maps
defining 1-301, 1-315, 1-317, 1-323, 1-325
policy maps
applying an aggregate policer 1-359
applying to an interface 1-385, 1-388
creating 1-361
defining policers 1-295, 1-357
displaying policers 1-525
hierarchical 1-361
policed-DSCP map 1-301
setting DSCP or IP precedence values 1-386
traffic classifications 1-73
trust states 1-686
port trust states 1-327
queues, enabling the expedite 1-369
statistics
in-profile and out-of-profile packets 1-527
packets enqueued or dropped 1-527
sent and received CoS values 1-527
sent and received DSCP values 1-527
trusted boundary for IP phones 1-327
quality of service
See QoS
querytime, MVR 1-333
queue-set command 1-372
R
radius-server dead-criteria command 1-373
radius-server host command 1-375
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
rcommand command 1-377
re-authenticating IEEE 802.1x-enabled ports 1-150
re-authentication
periodic 1-151
time between attempts 1-157
receiver ports, MVR 1-336
receiving flow-control packets 1-175
recovery mechanism
causes 1-169
display 1-81, 1-408, 1-445, 1-447
timer interval 1-170
redundancy for cluster switches 1-107
remote-span command 1-379
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command 1-16
renew ip dhcp snooping database command 1-381
reset (boot loader) command 1-17
restricted VLAN
See dot1x auth-fail vlan
rmdir (boot loader) command 1-18
rmon collection stats command 1-382
root guard, for spanning tree 1-604
RSPAN
configuring 1-329
filter RSPAN traffic 1-329
remote-span command 1-379
S
scheduled switchover
disabling 1-120
enabling 1-120
secure ports, limitations 1-663
sending flow-control packets 1-175
service password-recovery command 1-383
service-policy command 1-385
set (boot loader) command 1-19
set command 1-386
setup command 1-388
setup express command 1-391
show access-lists command 1-393
show archive status command 1-396
show arp access-list command 1-397
show authentication command 1-398
show auto qos command 1-402
show boot command 1-406
show cable-diagnostics tdr command 1-408
show cisp command 1-410
show class-map command 1-411
show cluster candidates command 1-414
show cluster command 1-412
show cluster members command 1-416
show controllers cpu-interface command 1-418
show controllers ethernet-controller command 1-420
show controllers power inline command 1-427
show controllers tcam command 1-429
show controller utilization command 1-431
show dot1x command 1-436
show dtp 1-440
show eap command 1-441
show env command 1-444
show errdisable detect command 1-445
show errdisable flap-values command 1-446
show errdisable recovery command 1-447
show etherchannel command 1-449
show fallback profile command 1-452
show flowcontrol command 1-453
show interfaces command 1-454
show interfaces counters command 1-462
show interface transceivers command 1-464
show inventory command 1-467
show ip arp inspection command 1-468
show ip dhcp snooping binding command 1-473
show ip dhcp snooping command 1-472
show ip dhcp snooping database command 1-475, 1-477
show ip igmp profile command 1-480
show ip igmp snooping command 1-481, 1-490
show ip igmp snooping groups command 1-483
show ip igmp snooping mrouter command 1-485
show ip igmp snooping querier command 1-486
show ip source binding command 1-488
show ipv6 route updated 1-498
show ip verify source command 1-489
show lacp command 1-500
show link state group command 1-504
show mac access-group command 1-508
show mac address-table address command 1-511
show mac address-table aging time command 1-512
show mac address-table command 1-509
show mac address-table count command 1-514
show mac address-table dynamic command 1-515
show mac address-table interface command 1-516
show mac address-table move update command 1-518
show mac address-table notification command 1-88, 1-519, 1-26
show mac address-table static command 1-521
show mac address-table vlan command 1-523
show mls qos aggregate-policer command 1-525
show mls qos command 1-524
show mls qos input-queue command 1-526
show mls qos interface command 1-527
show mls qos maps command 1-530
show mls qos queue-set command 1-533
show mls qos vlan command 1-534
show monitor command 1-535
show mvr command 1-537
show mvr interface command 1-538
show mvr members command 1-540
show network-policy profile command 1-542
show nmsp command 1-543
show pagp command 1-546
show platform acl command 1-2
show platform backup interface command 1-3
show platform etherchannel command 1-4
show platform forward command 1-5
show platform frontend-controller command 1-7
show platform igmp snooping command 1-8
show platform ip unicast command 1-9
show platform layer4op command 1-10
show platform mac-address-table command 1-11
show platform messaging command 1-12
show platform monitor command 1-13
show platform mvr table command 1-14
show platform pm command 1-15
show platform port-asic command 1-16
show platform port-security command 1-20
show platform qos command 1-21
show platform resource-manager command 1-22
show platform snmp counters command 1-24
show platform spanning-tree command 1-25
show platform stp-instance command 1-26
show platform tcam command 1-27
show platform vlan command 1-29
show policy-map command 1-548
show port security command 1-549
show power inline command 1-551
show psp config 1-553
show psp config command 1-553
show psp statistics 1-554
show psp statistics command 1-554
show setup express command 1-555
show spanning-tree command 1-556
show storm-control command 1-562
show system mtu command 1-564
show trust command 1-686
show udld command 1-565
show version command 1-568
show vlan command 1-569
show vlan command, fields 1-570
show vmps command 1-572
show vtp command 1-574
shutdown command 1-579
shutdown vlan command 1-580
small violation-rate command 1-581
SNMP host, specifying 1-587
SNMP informs, enabling the sending of 1-583
snmp-server enable traps command 1-583
snmp-server host command 1-587
snmp trap mac-notification change command 1-591
SNMP traps
enabling MAC address notification trap 1-591
enabling the MAC address notification feature 1-285
enabling the sending of 1-583
SoftPhone
See Cisco SoftPhone
software images
deleting 1-112
downloading 1-6
upgrading 1-6
uploading 1-12
software version, displaying 1-568
source ports, MVR 1-336
SPAN
configuring 1-329
debug messages, display 1-27
filter SPAN traffic 1-329
sessions
add interfaces to 1-329
start new 1-329
spanning-tree backbonefast command 1-593
spanning-tree bpdufilter command 1-594
spanning-tree bpduguard command 1-596
spanning-tree cost command 1-598
spanning-tree etherchannel command 1-600
spanning-tree extend system-id command 1-602
spanning-tree guard command 1-604
spanning-tree link-type command 1-606
spanning-tree loopguard default command 1-608
spanning-tree mode command 1-609
spanning-tree mst configuration command 1-610
spanning-tree mst cost command 1-612
spanning-tree mst forward-time command 1-614
spanning-tree mst hello-time command 1-615
spanning-tree mst max-age command 1-616
spanning-tree mst max-hops command 1-617
spanning-tree mst port-priority command 1-619
spanning-tree mst pre-standard command 1-620
spanning-tree mst priority command 1-621
spanning-tree mst root command 1-622
spanning-tree portfast (global configuration) command 1-626
spanning-tree portfast (interface configuration) command 1-628
spanning-tree port-priority command 1-624
Spanning Tree Protocol
See STP
spanning-tree transmit hold-count command 1-630
spanning-tree uplinkfast command 1-631
spanning-tree vlan command 1-633
speed command 1-636
srr-queue bandwidth limit command 1-638
srr-queue bandwidth share command 1-642
SSH, configuring version 1-242
static-access ports, configuring 1-647
statistics, Ethernet group 1-382
sticky learning, enabling 1-661
storm-control command 1-644
STP
BackboneFast 1-593
counters, clearing 1-94
debug messages, display
BackboneFast events 1-70
MSTP 1-73
optimized BPDUs handling 1-72
spanning-tree activity 1-68
switch shim 1-75
transmitted and received BPDUs 1-71
UplinkFast 1-77
detection of indirect link failures 1-593
EtherChannel misconfiguration 1-600
extended system ID 1-602
path cost 1-598
protocol modes 1-609
root port
accelerating choice of new 1-631
loop guard 1-604
preventing from becoming designated 1-604
restricting which can be root 1-604
root guard 1-604
UplinkFast 1-631
root switch
affects of extended system ID 1-602, 1-634
hello-time 1-633
interval between BDPU messages 1-633
interval between hello BPDU messages 1-633
max-age 1-633
port priority for selection of 1-624
primary or secondary 1-633
switch priority 1-633
state changes
blocking to forwarding state 1-628
enabling BPDU filtering 1-594, 1-626
enabling BPDU guard 1-596, 1-626
enabling Port Fast 1-626, 1-628
enabling timer to recover from error state 1-169
forward-delay time 1-633
length of listening and learning states 1-633
shutting down Port Fast-enabled ports 1-626
state information display 1-556
VLAN options 1-621, 1-633
Switched Port Analyzer
See SPAN
switchport access command 1-647
switchport backup interface command 1-650
switchport block command 1-654
switchport host command 1-656
switchport mode command 1-657
switchport nonegotiate command 1-659
switchport port-security aging command 1-666
switchport port-security command 1-661
switchport priority extend command 1-668
switchport protected command 1-670
switchports, displaying 1-454
switchport trunk command 1-672
switchport voice vlan command 1-675
system message logging 1-268
system message logging, save message to flash 1-269
system mtu command 1-678
T
tar files, creating, listing, and extracting 1-9
TDR, running 1-680
Telnet, using to communicate to cluster switches 1-377
test cable-diagnostics tdr command 1-680
traceroute mac command 1-681
traceroute mac ip command 1-684
trunking, VLAN mode 1-657
trunk mode 1-657
trunk ports 1-657
trunks, to non-DTP device 1-658
trusted boundary for QoS 1-327
trusted port states for QoS 1-327
type (boot loader) command 1-22
U
UDLD
aggressive mode 1-688, 1-690
debug messages, display 1-84
enable globally 1-688
enable per interface 1-690
error recovery timer 1-169
message timer 1-688
normal mode 1-688, 1-690
reset a shutdown interface 1-692
status 1-565
udld command 1-688
udld port command 1-690
udld reset command 1-692
unicast storm control 1-644
UniDirectional Link Detection
See UDLD
unknown multicast traffic, preventing 1-654
unknown unicast traffic, preventing 1-654
unset (boot loader) command 1-23
upgrading
software images
downloading 1-6
monitoring status of 1-396
UplinkFast, for STP 1-631
user EXEC mode 1-2
V
version (boot loader) command 1-25
vlan (global configuration) command 1-693
VLAN configuration
rules 1-696
saving 1-693
VLAN configuration mode
description 1-4
summary 1-2
VLAN ID range 1-693
VLAN Query Protocol
See VQP
VLANs
adding 1-693
configuring 1-693
debug messages, display
ISL 1-81
VLAN IOS file system error tests 1-80
VLAN manager activity 1-78
VTP 1-82
displaying configurations 1-569
enabling guest VLAN supplicant 1-125, 1-136, 1-174
extended-range 1-693
MAC addresses
displaying 1-523
number of 1-514
media types 1-695
normal-range 1-693
restarting 1-580
saving the configuration 1-693
shutting down 1-580
SNMP traps for VTP 1-585, 1-588
suspending 1-580
VLAN Trunking Protocol
See VTP
VMPS
configuring servers 1-701
displaying 1-572
error recovery timer 1-170
reconfirming dynamic VLAN assignments 1-698
vmps reconfirm (global configuration) command 1-699
vmps reconfirm (privileged EXEC) command 1-698
vmps retry command 1-700
vmps server command 1-701
voice VLAN
configuring 1-675
setting port priority 1-668
VQP
and dynamic-access ports 1-648
clearing client statistics 1-96
displaying information 1-572
per-server retry count 1-700
reconfirmation interval 1-699
reconfirming dynamic VLAN assignments 1-698
VTP
changing characteristics 1-703
clearing pruning counters 1-97
configuring
domain name 1-703
file name 1-703
mode 1-703
password 1-704
counters display fields 1-575
displaying information 1-574
enabling
pruning 1-704
Version 2 1-704
enabling per port 1-708
mode 1-703
pruning 1-704
saving the configuration 1-693
statistics 1-574
status 1-574
status display fields 1-577
vtp (global configuration) command 1-703
vtp interface configuration) command 1-708
vtp primary command 1-709