The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
access control lists
access-group
show mode interface 2-383
access groups
IP 2-167
MAC, displaying 2-573
matching for QoS classification 2-311
access list, IPv6 2-244
access mode 2-730
access-node-identifier, setting for the switch 2-386
access ports 2-730
ACLs
as match criteria for QoS classes 2-311
deny 2-93
displaying 2-450
for non-IP protocols 2-289
IP 2-167
on Layer 2 interfaces 2-167
permit 2-356
action command 2-5
address aliasing 2-336
aggregate interval burst-cycles command 2-9
aggregate interval command 2-7
aggregate policers
applying 2-369
creating 2-364
displaying 2-605
QoS 2-366
aggregate-port learner 2-345
alarm-contact command 2-11
alarm-contact status, displaying 2-484
allowed VLANs 2-746
archive download-sw command 2-13
archive tar command 2-16
archive upload-sw command 2-19
arp (boot loader) command A-2
arp access-list command 2-21
attaching policy maps to interfaces 2-431
authorization state of controlled port 2-111
autonegotiation of duplex mode 2-123
B
backup interfaces
configuring 2-723
displaying 2-506
bandwidth, configuring for QoS 2-23
bandwidth command 2-23
boot (boot loader) command A-3
boot config-file command 2-27
boot enable-break command 2-28
boot helper command 2-29
boot helper-config file command 2-30
booting
Cisco IOS image 2-33
displaying environment variables 2-455
interrupting 2-28
manually 2-31
boot loader
accessing A-1
booting
Cisco IOS image A-3
helper image 2-29
directories
creating A-18
displaying a list of A-8
removing A-22
displaying
available commands A-13
memory heap utilization A-14
version A-29
environment variables
described A-23
displaying settings A-23
location of A-24
setting A-23
unsetting A-27
files
copying A-6
deleting A-7
displaying a list of A-8
displaying the contents of A-5, A-19, A-26
renaming A-20
file system
formatting A-11
initializing flash A-10
running a consistency check A-12
prompt A-1
resetting the system A-21
boot manual command 2-31
boot private-config-file command 2-32
boot system command 2-33
BPDU filtering, for spanning tree 2-668, 2-706
BPDU guard, for spanning tree 2-670, 2-706
broadcast storm control 2-716
bundling characteristics, UNI 2-139
burst bytes, in QoS policers 2-360, 2-365
C
cat (boot loader) command A-5
CBWFQ, configuring 2-23
CDP, enabling protocol tunneling for 2-269
CFM 2-344
CFM as OAM protocol 2-344
channel-group command 2-34
channel-protocol command 2-38
child policy maps 2-433
circuit-id
setting for an interface 2-388
circuit-id, setting for an interface VLAN range 2-389
class-based traffic shaping 2-448
class-based weighted fair queuing
class command 2-40
class-map command 2-42
class-map configuration mode 2-42
class maps
creating 2-42
defining the match criteria 2-312, 2-314
displaying 2-459
matching in 2-42
class of service
clear ip arp inspection log command 2-44
clear ip arp inspection statistics command 2-45
clear ipc command 2-48
clear ipv6 dhcp conflict command 2-49
clear l2protocol-tunnel counters command 2-50
clear lacp command 2-51
clear logging onboard command 2-52
clear mac address-table command 2-53, 2-54
clear policer cpu uni-eni counters command 2-56
clear port-security command 2-57
clear spanning-tree counters command 2-60
clear spanning-tree detected-protocols command 2-61
clear vmps statistics command 2-63
command modes defined 1-1
committed information rate in QoS policers 2-360, 2-364
configuration files
password recovery disable considerations A-1
specifying the name 2-27, 2-32
configuring multiple interfaces 2-163
conform-action command 2-64
control-plane policer 2-56
control-plane policer information, displaying 2-606
control-plane security 2-371
control plane statistics, clearing 2-56
copy (boot loader) command A-6
copy logging onboard module command 2-66
CoS
as match criteria for QoS groups 2-312
for QoS classification 2-435
setting value in policy maps 2-435
CoS value, assigning to Layer 2 protocol packets 2-272
CPU ASIC statistics, displaying 2-460
CPU protection policers, displaying C-24
cpu traffic qos cos command 2-68
cpu traffic qos dscp command 2-72
cpu traffic qos precedence command 2-77
cpu traffic qos qos-group command 2-80
D
DC power supply 2-380
debug backup command B-2
debug dot1x command B-3
debug dying-gasp command B-4
debug etherchannel command B-5
debug interface command B-8
debug ip dhcp snooping command B-9
debug ip igmp filter command B-10
debug ip igmp max-groups command B-11
debug ip igmp snooping command B-12
debug ip sla error twamp connection command B-13
debug ip sla error twamp control reflector command B-15
debug ip sla error twamp control server command B-17
debug ip sla error twamp session command B-19
debug ip sla trace twamp connection command B-21
debug ip sla trace twamp control reflector command B-23
debug ip sla trace twamp control server command B-25
debug ip sla trace twamp session command B-27
debug ip verify source packet command B-29
debug lacp command B-30
debug mac-notification command B-31
debug matm command B-32
debug matm move update command B-33
debug monitor command B-34
debug mvrdbg command B-35
debug nvram command B-36
debug pagp command B-37
debug platform acl command B-38
debug platform backup interface command B-39
debug platform cfm command B-40
debug platform cpu-queues command B-41
debug platform dot1ad command B-43
debug platform dot1x command B-44
debug platform etherchannel command B-45
debug platform forw-tcam command B-46
debug platform ip arp inspection command B-47
debug platform ipc command B-56
debug platform ip dhcp command B-48
debug platform ip igmp snooping command B-49
debug platform ip multicast command B-51
debug platform ip source-guard command B-53
debug platform led command B-57
debug platform matm command B-58
debug platform messaging application command B-59
debug platform phy command B-60
debug platform pm command B-62
debug platform policer cpu uni-eni command B-64
debug platform port-asic command B-65
debug platform port-security command B-66
debug platform qos-acl-tcam command B-67
debug platform qos-manager command B-68
debug platform remote-commands command B-69
debug platform rep command B-70
debug platform resource-manager command B-71
debug platform snmp command B-72
debug platform span command B-73
debug platform supervisor-asic command B-74
debug platform sw-bridge command B-75
debug platform tcam command B-76
debug platform udld command B-78
debug platform vlan command B-79
debug pm command B-80
debug port-security command B-82
debug qos-manager command B-84
debug rep command B-83
debug spanning-tree bpdu command B-87
debug spanning-tree bpdu-opt command B-88
debug spanning-tree command B-85
debug spanning-tree mstp command B-89
debug spanning-tree switch command B-91
debug sw-vlan command B-93
debug sw-vlan ifs command B-94
debug sw-vlan notification command B-95
debug udld command B-97
debug vqpc command B-99
default policer configuration
NNIs C-26
UNIs C-25
define interface-range command 2-82
delete (boot loader) command A-7
delete command 2-84
deny (ARP access-list configuration) command 2-85
deny (IPv6) command 2-87
deny command 2-93
detect mechanism, causes 2-126
DHCP snooping
accepting untrusted packets from edge switch 2-192
enabling
on a VLAN 2-198
trust on an interface 2-196
error recovery timer 2-128
rate limiting 2-195
DHCP snooping binding database
binding file, configuring 2-188
bindings
adding 2-186
deleting 2-186
displaying 2-527
clearing database agent statistics 2-46
database agent, configuring 2-188
displaying
binding entries 2-527
database agent status 2-529, 2-531
renewing 2-407
diagnostic monitor command 2-96
diagnostic schedule test command 2-98
diagnostic start test command 2-100
differentiated service code point
Digital Optical Monitoring
dir (boot loader) command A-8
directories, deleting 2-84
distribution command 2-102
DoM
displaying supported transceivers 2-518, 2-658, 2-659
domains, CFM 2-344
dot1x default command 2-104
dot1x host-mode command 2-105
dot1x initialize command 2-107
dot1x max-req command 2-108, 2-110
dot1x port-control command 2-111
dot1x re-authenticate command 2-113
dot1x reauthentication command 2-114
dot1x supplicant force-multicast command 2-115
dot1x system-auth-control command 2-116
dot1x test eapol-capable command 2-117
dot1x test timeout command 2-118
dot1x timeout command 2-119
dot1x violation-mode command 2-121
drop eligibility indicator 2-437
drop eligibility indicator bit 2-314
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-269
DSCP
as match criteria for QoS groups 2-316, 2-322
for QoS traffic marking 2-439
setting in policy maps 2-439
dual IPv4 and IPv6 templates 2-351
dual-purpose uplink ports, selecting the type 2-329
duplex command 2-122
dying-gasp command 2-124
dynamic-access ports
configuring 2-721
restrictions 2-722
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-172
define 2-21
deny packets 2-85
display 2-454
permit packets 2-349
clear
log buffer 2-44
statistics 2-45
display
ARP ACLs 2-454
configuration and operating state 2-522
log buffer 2-522
statistics 2-522
trust state and rate limit 2-522
enable per VLAN 2-181
error detection for 2-126
error recovery timer 2-128
log buffer
clear 2-44
configure 2-176
display 2-522
rate-limit incoming ARP packets 2-174
statistics
clear 2-45
display 2-522
trusted interface state 2-178
type of packet logged 2-182
validation checks 2-179
Dynamic Host Configuration Protocol (DHCP)
E
EAP-request/identity frame
maximum number to send 2-110
response time before retransmitting 2-119
E-LMI
enabling 2-137
mapping 2-139
environment variables, displaying 2-455
errdisable detect cause command 2-126
errdisable recovery command 2-128
error conditions, displaying 2-488
error disable detection 2-126
error-disabled interfaces, displaying 2-506
EtherChannel
assigning Ethernet interface to channel group 2-34
creating port-channel logical interface 2-161
debug EtherChannel/PAgP, display B-5
debug platform-specific events, display B-45
displaying 2-492
enabling Layer 2 protocol tunneling for
LACP 2-270
PAgP 2-270
UDLD 2-270
interface information, displaying 2-506
LACP
clearing channel-group information 2-51
debug messages, display B-30
displaying 2-560
modes 2-34
port priority for hot-standby ports 2-273
restricting a protocol 2-38
system priority 2-275
load-distribution methods 2-376
PAgP
aggregate-port learner 2-345
clearing channel-group information 2-55
debug messages, display B-37
displaying 2-601
error detection for 2-126
error recovery timer 2-128
learn method 2-345
modes 2-34
physical-port learner 2-345
priority of interface for transmitted traffic 2-347
Ethernet controller, internal register display 2-462
ethernet dot1ad command 2-134
ethernet evc command 2-136
ethernet lmi ce-vlan map command 2-137, 2-139
ethernet lmi command 2-137
ethernet lmi global command 2-137
Ethernet Local Management Interface
ethernet loopback interface configuration command 2-141
ethernet loopback privileged EXEC command 2-144
ethernet oam remote-failure command 2-146
Ethernet service
debugging B-6
displaying 2-497
Ethernet service instance 2-427
Ethernet service interfaces 2-500
Ethernet statistics, collecting 2-423
Ethernet UNI configuration 2-148
ethernet uni id command 2-150
Ethernet virtual connections
ethernet y1731 delay command 2-130
ethernet y1731 loss command 2-132
EVC configuration mode 2-136
EVCs 2-136
and VLANs 2-148
service instances 2-427
UNI counts 2-769
EVC service
point-to-multipoint 2-769
point-to-point 2-769
exceed-action command 2-151
extended-range VLANs
and allowed VLAN list 2-746
configuring 2-775
extended system ID for STP 2-676
external alarms, configuring 2-11
F
failure logging data
clearing 2-52
copying 2-66
fan information, displaying 2-484
files, deleting 2-84
flash_init (boot loader) command A-10
Flex Links
configuring 2-723
configuring preferred VLAN 2-725
displaying 2-506
flowcontrol command 2-153
format (boot loader) command A-11
forwarding packets, with ACL matches 2-5
forwarding results, display C-8
frame consecutive command 2-155
frame forwarding information, displaying C-8
frame interval command 2-156
frequency (IP SLA) command 2-157
front-end controller counter and status information C-10
fsck (boot loader) command A-12
G
generic-error-message, setting for the switch 2-386
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-450
health-monitoring diagnostic testing 2-96
help (boot loader) command A-13
history interval command 2-158
host connection, port configuration 2-729
host ports, private VLANs 2-733
hw-module module logging onboard command 2-159
I
identifier-string, setting for the switch 2-386
IEEE 802.1ag Connectivity Fault Management
IEEE 802.1Q trunk ports and native VLANs 2-780
IEEE 802.1Q tunnel ports
configuring 2-730
displaying 2-479
limitations 2-731
IEEE 802.1x
and switchport modes 2-731
violation error recovery 2-128
See also port-based authentication
IGMP filters
applying 2-201
debug messages, display B-10
IGMP groups, setting maximum 2-203
IGMP maximum groups, debugging B-11
IGMP profiles
creating 2-205
displaying 2-534
IGMP snooping
adding ports as a static member of a group 2-220
displaying 2-535, 2-539, 2-540
enabling 2-207
enabling the configurable-leave timer 2-209
enabling the Immediate-Leave feature 2-217
flooding query count 2-215
interface topology change notification behavior 2-216
multicast table 2-537
querier 2-211
query solicitation 2-215
report suppression 2-213
switch topology change notification behavior 2-215
images
Immediate-Leave feature, MVR 2-338
immediate-leave processing 2-217
Immediate-Leave processing, IPv6 2-265
input policy maps
and ACL classification 2-311
and aggregate policers 2-366
commands not supported in 2-374
configuration guidelines 2-374
interface command 2-165
interface configuration mode 1-2, 1-4
interface port-channel command 2-161
interface range command 2-163
interface-range macros 2-82
interfaces
assigning Ethernet interface to channel group 2-34
configuring 2-122
configuring multiple 2-163
creating port-channel logical 2-161
debug messages, display B-8
disabling 2-653
displaying the MAC address table 2-583
restarting 2-653
interface speed, configuring 2-714
internal registers, displaying 2-462, 2-469
Internet Group Management Protocol
invalid GBIC
error detection for 2-126
error recovery timer 2-128
ip address command 2-170
IP addresses, setting 2-170
IP address matching 2-309
ip arp inspection filter vlan command 2-172
ip arp inspection limit command 2-174
ip arp inspection log-buffer command 2-176
ip arp inspection trust command 2-178
ip arp inspection validate command 2-179
ip arp inspection vlan command 2-181
ip arp inspection vlan logging command 2-182
IP DHCP snooping
ip dhcp snooping binding command 2-186
ip dhcp snooping command 2-185
ip dhcp snooping database command 2-188
ip dhcp snooping information option allow-untrusted command 2-192
ip dhcp snooping information option command 2-190
ip dhcp snooping information option format remote-id command 2-194
ip dhcp snooping limit rate command 2-195
ip dhcp snooping trust command 2-196
ip dhcp snooping verify command 2-197
ip dhcp snooping vlan command 2-198
ip dhcp snooping vlan information option format-type circuit-id string command 2-199
ip igmp filter command 2-201
ip igmp max-groups command 2-203, 2-238, 2-240
ip igmp profile command 2-205
ip igmp snooping command 2-207
ip igmp snooping last-member-query-interval command 2-209
ip igmp snooping querier command 2-211
ip igmp snooping report-suppression command 2-213
ip igmp snooping tcn command 2-215
ip igmp snooping tcn flood command 2-216
ip igmp snooping vlan immediate-leave command 2-217
ip igmp snooping vlan mrouter command 2-218
ip igmp snooping vlan static command 2-220
IP multicast addresses 2-335
IP precedence, as match criteria for QoS groups 2-318
ip sla command 2-222
ip sla reaction-configuration command 2-224
ip sla responder twamp command 2-227
ip sla schedule command 2-229
ip sla server twamp command 2-232
ip source binding command 2-234
IP source guard
disabling 2-242
displaying
binding entries 2-546
configuration 2-547
enabling 2-242
static IP source bindings 2-234
IP source guard, displaying dynamic binding entries 2-527
ip ssh command 2-236
IPv6 access list, deny conditions 2-87
ipv6 access-list command 2-244
ipv6 address dhcp command 2-246
ipv6 dhcp client request vendor command 2-247
ipv6 dhcp ping packets command 2-248
ipv6 dhcp pool command 2-249
ipv6 dhcp server command 2-252
ipv6 mld snooping command 2-254
ipv6 mld snooping last-listener-query count command 2-256
ipv6 mld snooping last-listener-query-interval command 2-258
ipv6 mld snooping listener-message-suppression command 2-260
ipv6 mld snooping robustness-variable command 2-261
ipv6 mld snooping tcn command 2-263
ipv6 mld snooping vlan command 2-265
IPv6 SDM template 2-424
ipv6 traffic-filter command 2-267
ip verify source command 2-242
J
jumbo frames
L
l2protocol-tunnel command 2-269
l2protocol-tunnel cos command 2-272
LACP
lacp port-priority command 2-273
lacp system-priority command 2-275
Layer 2 mode, enabling 2-719
Layer 2 protocol ports, displaying 2-558
Layer 2 protocol-tunnel
error detection for 2-126
error recovery timer 2-128
Layer 2 protocol tunnel counters 2-50
Layer 2 protocol tunneling error recovery 2-271
Layer 2 traceroute
IP addresses 2-762
MAC addresses 2-759
Layer 3 mode, enabling 2-719
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
link flap
error detection for 2-126
error recovery timer 2-128
link state group command 2-277
link state track command 2-279
load-distribution methods for EtherChannel 2-376
location (global configuration) command 2-280
location (interface configuration) command 2-282
logging event command 2-284
logging file command 2-285
logical interface 2-161
loopback error
detection for 2-126
recovery timer 2-128
loop guard, for spanning tree 2-678, 2-682
M
mac access-group command 2-287
MAC access-groups, displaying 2-573
MAC access list configuration mode 2-289
mac access-list extended command 2-289
MAC access lists 2-93
MAC addresses
disabling MAC address learning per VLAN 2-292
displaying
aging time 2-577
all 2-576
dynamic 2-581
MAC address-table move updates 2-586
notification settings 2-585, 2-587
number of addresses in a VLAN 2-579
per interface 2-583
per VLAN 2-591
static 2-589
static and dynamic entries 2-574
dynamic
aging time 2-291
deleting 2-53
displaying 2-581
enabling MAC address notification 2-296
enabling MAC address-table move update 2-294
matching 2-309
static
adding and removing 2-298
displaying 2-589
dropping on an interface 2-299
tables 2-576
MAC address notification, debugging B-31
mac address-table aging-time 2-287, 2-309
mac address-table aging-time command 2-291
mac address-table learning command 2-292
mac address-table move update command 2-294
mac address-table notification command 2-296
mac address-table static command 2-298
mac address-table static drop command 2-299
macro description command 2-303
macro global command 2-304
macro global description command 2-306
macro name command 2-307
macros
adding a description 2-303
adding a global description 2-306
applying 2-304
creating 2-307
displaying 2-603
specifying parameter values 2-304
tracing 2-304
maintenance end points 2-769
mapping tables, QoS 2-755
maps
class
creating 2-42
VLAN
creating 2-778
defining 2-309
displaying 2-646
match access-group command 2-311
match cos command 2-312
match dot1ad dei command 2-314
match ip dscp command 2-316
match ip precedence command 2-318
match qos-group command 2-320
match vlan command 2-322
max-delay command 2-325
maximum transmission unit
mdix auto command 2-327
ME 34000EG-2CS switch policers C-24
ME 3400E-24TS switch policers C-24
ME 3400EG-12CS switch policers C-24
media-type command 2-329
memory (boot loader) command A-14
mgmt_clr (boot loader) command A-15
mgmt_init (boot loader) command A-16, A-17
mkdir (boot loader) command A-18
MLD snooping
configuring queries 2-256, 2-258
configuring topology change notification 2-263
enabling 2-254
MLD snooping on a VLAN, enabling 2-265
mode, MVR 2-335
modes
show access-group interface 2-383
modes, commands 1-1
monitor session command 2-331
more (boot loader) command A-19
MSTP
displaying 2-627
interoperability 2-61
link type 2-680
MST region
aborting changes 2-686
applying changes 2-686
configuration name 2-686
configuration revision number 2-687
current or pending display 2-687
displaying 2-627
MST configuration mode 2-686
VLANs-to-instance mapping 2-686
path cost 2-688
protocol mode 2-684
restart protocol migration process 2-61
root port
loop guard 2-678
preventing from becoming designated 2-678
restricting which can be root 2-678
root guard 2-678
root switch
affects of extended system ID 2-676
interval between BDPU messages 2-693
interval between hello BPDU messages 2-691, 2-702
max-age 2-693
maximum hop count before discarding BPDU 2-695
port priority for selection of 2-697
primary or secondary 2-702
switch priority 2-700
state changes
blocking to forwarding state 2-709
enabling BPDU filtering 2-668, 2-706
enabling BPDU guard 2-670, 2-706
enabling Port Fast 2-706, 2-709
forward-delay time 2-690
length of listening and learning states 2-690
rapid transition to forwarding 2-680
shutting down Port Fast-enabled ports 2-706
state information display 2-626
MTU
configuring size 2-752
displaying global setting 2-634
multicast group address, MVR 2-338
multicast groups, MVR 2-336
Multicast Listener Discovery
multicast router learning method 2-218
multicast router ports, configuring 2-218
multicast router ports, IPv6 2-265
multicast storm control 2-716
multicast VLAN, MVR 2-336
multicast VLAN registration
multiple hosts on authorized port 2-105
Multiple Spanning Tree Protocol
multiplexing, UNI 2-148
MVR
and address aliasing 2-336
configuring 2-335
configuring interfaces 2-338
debug messages, display B-35
displaying 2-595
displaying interface information 2-597
members, displaying 2-599
mvr (global configuration) command 2-335
mvr (interface configuration) command 2-338
mvr vlan group command 2-339
N
native VLANs 2-746
native VLAN tagging 2-780
network node interface 2-378
no authentication logging verbose 2-341
no dot1x logging verbose 2-342
no mab logging verbose 2-343
nonegotiate, speed 2-714, 2-715
non-IP protocols
denying 2-93
forwarding 2-356
non-IP traffic access lists 2-289
non-IP traffic forwarding
denying 2-93
permitting 2-356
normal-range VLANs 2-775
no vlan command 2-775
O
OAM PDUs 2-146
OAM protocol 2-344
oam protocol cfm svlan command 2-344
on-board failure logging, displaying 2-569
on-board failure logging, enabling 2-159
online diagnostics
enabling
scheduling 2-98
global configuration mode
clearing test-based testing schedule 2-98
setting test-based testing 2-98
setting up test-based testing 2-98
removing scheduling 2-98
scheduled switchover
disabling 2-98
enabling 2-98
setting test interval 2-98
starting testing 2-100
online diagnostic tests, displaying results 2-475
online diagnostic tests, starting 2-100
operation, administration, and maintenance protocol
output policy maps
and QoS group classification 2-320
and traffic shaping 2-448
commands not supported in 2-374
configuration guidelines 2-374
priority in 2-394
queue limit in 2-401
P
packet counters, display for PPPoE Intermediate Agent 2-619
PAgP
pagp learn-method command 2-345
pagp port-priority command 2-347
parent policy maps 2-433
password-recovery mechanism, enabling and disabling 2-429
permit (ARP access-list configuration) command 2-349
permit (IPv6) command 2-351
permit command 2-356
per-VLAN spanning-tree plus
physical-port learner 2-345
PID, displaying 2-521
PIM-DVMRP, as multicast router learning method 2-218
police
multiple conform actions for a class 2-64
multiple exceed actions for a class 2-151
multiple violate actions for a class 2-773
with priority 2-359
police aggregate command 2-369
police command 2-359
policer aggregate command 2-364
policer configuration
default for NNIs C-26
default for UNIs C-25
policer cpu uni command 2-371
policers
for CPU protection 2-371
individual 2-359
policy-map class, configuring multiple actions 2-64, 2-151, 2-773
policy-map class configuration mode 2-40
policy-map class police configuration mode 2-64, 2-362
policy-map command 2-373
policy-map configuration mode 2-373
policy maps
and CoS classification 2-312
and DSCP classification 2-316
and IP precedence classification 2-318
and policing 2-362
applying 2-431
applying to an interface 2-374, 2-431, 2-445
child 2-433
creating 2-373
displaying 2-609
hierarchical 2-433
parent 2-433
policers
for a single class 2-359
for multiple classes 2-364, 2-369, 2-371, 2-433
setting priority 2-393
setting QoS group identifier 2-443
traffic classification, defining 2-40
traffic marking
setting CoS values 2-435
setting DSCP values 2-437, 2-439
setting IP precedence values 2-441
Port Aggregation Protocol
port-based authentication
AAA method list 2-3
configuring violation modes 2-121
debug messages, display B-3
enabling 802.1x
globally 2-116
per interface 2-111
host modes 2-105
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-107, 2-118
manual control of authorization state 2-111
multiple hosts on authorized port 2-105
periodic re-authentication
enabling 2-114
time between attempts 2-119
quiet period between failed authentication exchanges 2-119
re-authenticating 802.1x-enabled ports 2-113
resetting configurable 802.1x parameters 2-104
switch-to-authentication server retransmission time 2-119
switch-to-client frame-retransmission number2-108to 2-110
switch-to-client retransmission time 2-119
test for IEEE 802.1x readiness 2-117
port-channel load-balance command 2-376
Port Fast, for spanning tree 2-709
port ranges, defining 2-52, 2-66, 2-82
ports, debugging B-80
ports, protected 2-744
port security
aging 2-740
debug messages, display B-82
enabling 2-736
violation error recovery 2-128
port shaping 2-449
port-type command 2-378
port types, MVR 2-338
power information, displaying 2-484
power-supply alarm indications, configuring 2-380
power-supply dual command 2-380
power-supply status, displaying 2-484
PPPoE Discovery
enable vendor-tag stripping on packetsPPPoE Server
enable vendor-tag stripping on Discovery packets 2-392
PPPoE Discovery packets, limit rate arriving on an interfsce 2-390
pppoe intermediate-agent
enable intermediate agent on a switch 2-382
enable on an interface VLAN range 2-385
enable PPPoE Intermediate Agent on an interface 2-383
enable vendor-tag stripping of Discovery packets 2-392
format-type (global) 2-386
limit rate of PPPoE Discovery packets 2-390
set circuit-id or remote-id for an interface 2-388
set circuit-id or remote-id for an interface VLAN range 2-389
set trust configuration on an interface 2-390, 2-391
PPPoE Intermediate Agent, display configuration and statistics (packet counters) 2-619
precedence
for QoS traffic marking 2-441
setting in policy maps 2-441
priority command 2-393
priority queuing, QoS 2-393
priority with police, QoS 2-393
private-vlan command 2-396
private-vlan mapping command 2-399
private VLANs
association 2-742
configuring 2-396
configuring ports 2-733
displaying 2-641
host ports 2-733
mapping
configuring 2-742
displaying 2-506
promiscuous ports 2-733
product identification information, displaying 2-521
promiscuous ports, private VLANs 2-733
PVST+
Q
QoS
aggregate policers
applying 2-369
creating 2-364
displaying 2-605
class maps
creating 2-42
defining the match criteria 2-312, 2-314
displaying 2-459
conform actions, configuring 2-65
displaying statistics for 2-609, C-33
exceed actions, configuring 2-152
policy maps
applying an aggregate policer 2-364, 2-369, 2-371, 2-433
applying to an interface 2-431, 2-445
creating 2-373
defining policers 2-359
displaying policy maps 2-609
setting CoS values 2-435
setting DSCP values 2-437, 2-439
setting IP precedence values 2-441
setting QoS group identifier 2-443
traffic classifications 2-40
table maps
configuring 2-755
displaying 2-635
violate actions, configuring 2-774
QoS groups
as match criteria 2-320
for QoS traffic classification 2-443
setting in policy maps 2-443
QoS match criteria
ACLs 2-311
CoS value 2-312
precedence value 2-318
QoS group number 2-320
quality of service
querytime, MVR 2-335
queue-limit command 2-401
R
rapid per-VLAN spanning-tree plus
rapid PVST+
re-authenticating 802.1x-enabled ports 2-113
re-authentication
periodic 2-114
time between attempts 2-119
receiver ports, MVR 2-338
receiving flow-control packets 2-153
recovery mechanism
causes 2-128
timer interval 2-129
remote-id, setting for an interface 2-388
remote-id, setting for an interface VLAN range 2-389
remote-span command 2-405
Remote Switched Port Analyzer
rename (boot loader) command A-20
renew ip dhcp snooping database command 2-407
rep admin vlan command 2-408
rep block port command 2-409
rep lsl-age-timer command 2-413
rep preempt delay command 2-415
rep preempt segment command 2-417
rep segment command 2-418
rep stcn command 2-421
reset (boot loader) command A-21
resource templates, displaying 2-624
rmdir (boot loader) command A-22
rmon collection stats command 2-423
root guard, for spanning tree 2-678
routed ports
IP addresses on 2-171
number supported 2-171
RSPAN
configuring 2-331
displaying 2-593
filter RSPAN traffic 2-331
remote-span command 2-405
sessions
add interfaces to 2-331
displaying 2-593
start new 2-331
S
scheduled switchover
disabling 2-98
enabling 2-98
scheduling diagnostic tests 2-98
sdm prefer command 2-424
SDM templates
allowed resources 2-425
displaying 2-624
dual IPv4 and IPv6 2-424
secure ports, limitations 2-738
sending flow-control packets 2-153
service instance command 2-427
service instances, displaying 2-498
service password-recovery command 2-429
service policy (policy-map class configuration) command 2-433
service-policy interface configuration command 2-431
service-policy policy-map class configuration command 2-433
set (boot loader) command A-23
set cos command 2-435
set dot1ad dei command 2-437
set dscp command 2-439
set precedence command 2-441
set qos-group command 2-443
setup command 2-445
SFPs, displaying information about 2-521
shape average command 2-448
show access-lists command 2-450
show aggregate-policer command 2-634
show archive status command 2-453
show arp access-list command 2-454
show boot command 2-455
show class-map command 2-459
show controllers cpu-interface command 2-460
show controllers ethernet-controller command 2-462
show controllers tcam command 2-469
show controllers utilization command 2-471
show controller utilization command 2-471
show cpu traffic qos command 2-473
show diagnostic command 2-475
show dot1q-tunnel command 2-479
show dot1x command 2-480
show dying-gasp packets command 2-483
show env command 2-484
show errdisable detect command 2-486
show errdisable flap-values command 2-488
show errdisable recovery command 2-490
show etherchannel command 2-492
show ethernet loopback command 2-495
show ethernet service evc command 2-497
show ethernet service instance command 2-498
show ethernet service interface command 2-500
show flowcontrol command 2-502
show idprom command 2-504
show interface rep command 2-516
show interfaces command 2-506
show interfaces counters command 2-514
show interfaces rep command 2-516
show interface transceivers command 2-518
show inventory command 2-521
show ip arp inspection command 2-522
show ipc command 2-549
show ip dhcp snooping binding command 2-527
show ip dhcp snooping command 2-526
show ip dhcp snooping database command 2-529, 2-531
show ip igmp profile command 2-534
show ip igmp snooping command 2-535
show ip igmp snooping command querier detail 2-540
show ip igmp snooping groups command 2-537
show ip igmp snooping mrouter command 2-539
show ip igmp snooping querier command 2-540
show ip igmp snooping querier detail command 2-540
show ip sla standards command 2-542
show ip sla twamp connection 2-473
show ip sla twamp connection command 2-543
show ip sla twamp session command 2-545
show ip source binding command 2-546
show ipv6 access-list command 2-553
show ipv6 dhcp conflict command 2-555
show ipv6 route updated command 2-556
show ip verify source command 2-547
show l2protocol-tunnel command 2-558
show lacp command 2-560
show link state group command 2-564
show location command 2-566
show logging onboard command 2-569
show mac access-group command 2-573
show mac address-table address command 2-576
show mac address-table aging time command 2-577
show mac address-table command 2-574
show mac address-table count command 2-579
show mac address-table dynamic command 2-581
show mac address-table interface command 2-583
show mac address-table learning command 2-585
show mac address-table move update command 2-586
show mac address-table notification command 2-54, 2-587, B-33
show mac address-table static command 2-589
show mac address-table vlan command 2-591
show monitor command 2-593
show mvr command 2-595
show mvr interface command 2-597
show mvr members command 2-599
show pagp command 2-601
show parser macro command 2-603
show platform acl command C-2
show platform backup interface command C-3
show platform cfm command C-4
show platform configuration command C-5
show platform dl command C-6
show platform etherchannel command C-7
show platform forward command C-8
show platform frontend-controller command C-10
show platform igmp snooping command C-11
show platform ipc trace command C-14
show platform ip multicast command C-12
show platform ip unicast command C-13
show platform ipv6 unicast command C-15
show platform l2pt dm command C-17
show platform layer4op command C-18, C-40
show platform mac-address-table command C-19
show platform messaging command C-20
show platform monitor command C-21
show platform mvr table command C-22
show platform pm command C-23
show platform policer cpu command C-24
show platform port-asic command C-28
show platform port-security command C-32
show platform qos command C-33
show platform resource-manager command C-36
show platform snmp counters command C-38
show platform spanning-tree synchronization command C-39
show platform stp-instance command C-41
show platform tcam command C-42
show platform vlan command C-44
show platform vlan mapping command C-45
show policer aggregate command 2-605
show policer cpu uni-eni command 2-606
show policy-map command 2-609
show policy-map interface output fields 2-612
show port security command 2-614
show port-type command 2-617
show rep topology command 2-621
show sdm prefer command 2-624
show spanning-tree command 2-626
show storm-control command 2-632
show system mtu command 2-634
show udld command 2-636
show version command 2-639
show vlan access-map command 2-646
show vlan command 2-641
show vlan command, fields 2-643
show vlan filter command 2-647
show vlan mapping command 2-648
show vmps command 2-650
shutdown command 2-653
shutdown threshold, Layer 2 protocol tunneling 2-269
shutdown vlan command 2-654
SNMP host, specifying 2-660
SNMP informs, enabling the sending of 2-656
snmp mib rep trap-rate command 2-655
snmp-server enable traps command 2-656
snmp-server host command 2-660
snmp trap mac-notification change command 2-664
SNMP traps
enabling MAC address notification trap 2-664
enabling the MAC address notification feature 2-296
enabling the sending of 2-656
software images
deleting 2-84
downloading 2-13
upgrading 2-13
uploading 2-19
software version, displaying 2-639
source ports, MVR 2-338
SPAN
configuring 2-331
debug messages, display B-34
displaying 2-593
filter SPAN traffic 2-331
sessions
add interfaces to 2-331
displaying 2-593
start new 2-331
spanning-tree bpdufilter command 2-666, 2-668
spanning-tree bpduguard command 2-670
spanning-tree cost command 2-672
spanning-tree etherchannel command 2-674
spanning-tree extend system-id command 2-676
spanning-tree guard command 2-678
spanning-tree link-type command 2-680
spanning-tree loopguard default command 2-682
spanning-tree mode command 2-684
spanning-tree mst configuration command 2-686
spanning-tree mst cost command 2-688
spanning-tree mst forward-time command 2-690
spanning-tree mst hello-time command 2-691
spanning-tree mst max-age command 2-693
spanning-tree mst max-hops command 2-695
spanning-tree mst port-priority command 2-697
spanning-tree mst pre-standard command 2-699
spanning-tree mst priority command 2-700
spanning-tree mst root command 2-702
spanning-tree portfast (global configuration) command 2-706
spanning-tree portfast (interface configuration) command 2-709
spanning-tree port-priority command 2-704
Spanning Tree Protocol
spanning-tree vlan command 2-711
speed command 2-714
SSH, configuring version 2-236
static-access ports, configuring 2-721
statistics, Ethernet group 2-423
sticky learning, enabling 2-736
storm-control command 2-716
STP
counters, clearing 2-60
debug messages, display
MSTP B-89
optimized BPDUs handling B-88
spanning-tree activity B-85
switch shim B-91
transmitted and received BPDUs B-87
enabling on ENIs 2-666
enabling protocol tunneling for 2-269
EtherChannel misconfiguration 2-674
extended system ID 2-676
path cost 2-672
protocol modes 2-684
root port
loop guard 2-678
preventing from becoming designated 2-678
restricting which can be root 2-678
root guard 2-678
root switch
affects of extended system ID 2-676, 2-712
hello-time 2-711
interval between BDPU messages 2-711
interval between hello BPDU messages 2-711
max-age 2-711
port priority for selection of 2-704
primary or secondary 2-711
switch priority 2-711
state changes
blocking to forwarding state 2-709
enabling BPDU filtering 2-668, 2-706
enabling BPDU guard 2-670, 2-706
enabling Port Fast 2-706, 2-709
enabling timer to recover from error state 2-128
forward-delay time 2-711
length of listening and learning states 2-711
shutting down Port Fast-enabled ports 2-706
state information display 2-626
SVIs, creating 2-165
Switched Port Analyzer
switching characteristics
modifying 2-719
returning to interfaces 2-719
switchport access command 2-721
switchport backup interface command 2-723
switchport block command 2-727
switchport command 2-719
switchport host command 2-729
switchport mode command 2-730
switchport mode private-vlan command 2-733
switchport port-security aging command 2-740
switchport port-security command 2-736
switchport private-vlan command 2-742
switchport protected command 2-744
switchports, displaying 2-506
switchport trunk command 2-746
switchport vlan mapping command 2-748
system env temperature threshold yellow command 2-751
system message logging, save message to flash 2-285
system mtu command 2-752
system resource templates 2-424
T
table-map command 2-755
table-map configuration mode 2-755
table maps
configuring 2-755
displaying 2-635
QoS 2-755
tar files, creating, listing, and extracting 2-16
TDR, running 2-757
temperature information, displaying 2-484
temperature status, displaying 2-484
templates, system resources 2-424
test cable-diagnostics tdr command 2-757
traceroute mac command 2-759
traceroute mac ip command 2-762
traffic shaping, QoS 2-448
trunking, VLAN mode 2-730
trunk mode 2-730
trunk ports 2-730
trust configuration, setting on an interface 2-390, 2-391
tunnel ports, Layer 2 protocol, displaying 2-558
type (boot loader) command A-26
U
UDLD
debug messages, display B-97
enable globally 2-764
enable per interface 2-766
error recovery timer 2-128
message timer 2-764
reset a shutdown interface 2-768
status 2-636
udld command 2-764
udld port command 2-766
udld reset command 2-768
UNI
bundling and multiplexing 2-148
Ethernet 2-148
unicast storm control 2-716
uni count command 2-769
UniDirectional Link Detection
UNI ID, Ethernet 2-150
uni-vlan command 2-771
unknown multicast traffic, preventing 2-727
unknown unicast traffic, preventing 2-727
unset (boot loader) command A-27
upgrading
software images 2-13
monitoring status of 2-453
user EXEC mode 1-2
user network interface 2-378
V
version (boot loader) command A-29
violate-action command 2-773
vlan access-map command 2-778
VLAN access map configuration mode 2-778
VLAN access maps
actions 2-5
displaying 2-646
vlan command 2-775
VLAN configuration mode
commands 2-775
description 1-4
entering 2-775
summary 1-2
vlan dot1q tag native command 2-780
vlan filter command 2-782
VLAN filters, displaying 2-647
VLAN ID range 2-775
VLAN ID translation
VLAN mapping
configuring 2-748
described 2-749
displaying 2-648
VLAN maps
applying 2-782
creating 2-778
defining 2-309
displaying 2-646
VLAN Query Protocol
VLANs
adding 2-775
configuring 2-775
debug messages, display
activation of B-95
VLAN IOS file system error tests B-94
VLAN manager activity B-93
displaying configurations 2-641
extended-range 2-775
MAC addresses
displaying 2-591
number of 2-579
normal-range 2-775
private 2-733
configuring 2-396
displaying 2-641
restarting 2-654
saving the configuration 2-775
shutting down 2-654
suspending 2-654
VMPS
configuring servers 2-787
displaying 2-650
error recovery timer 2-129
reconfirming dynamic VLAN assignments 2-784
vmps reconfirm (global configuration) command 2-785
vmps reconfirm (privileged EXEC) command 2-784
vmps retry command 2-786
vmps server command 2-787
VQP
and dynamic-access ports 2-722
clearing client statistics 2-63
displaying information 2-650
per-server retry count 2-786
reconfirmation interval 2-785
reconfirming dynamic VLAN assignments 2-784
VTP
enabling
tunneling for 2-269
W
Weighted Tail Drop
WTD, queue-limit command 2-401