Table Of Contents
A - B - C - D - E - F - G - H - I - J - L - M - N - P - Q - R - S - T - U - V -
Index
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
aaa authorization network command 2-5
AAA methods 2-3
abort command 2-663
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 2-124
MAC, displaying 2-437
access mode 2-616
access ports 2-616
ACEs 2-71, 2-280
ACLs
deny 2-69
displaying 2-328
for non-IP protocols 2-200
IP 2-124
on Layer 2 interfaces 2-124
permit 2-278
address aliasing 2-269
aggregate-port learner 2-274
allowed VLANs 2-631
apply command 2-663
archive copy-sw command 2-6
archive download-sw command 2-9
archive tar command 2-12
archive upload-sw command 2-15
authentication failed VLAN
See dot1x auth-fail vlan
auth-fail max-attempts
See dot1x auth-fail max-attempts
auth-fail vlan
See dot1x auth-fail vlan
authorization state of controlled port 2-96
autonegotiation of duplex mode 2-106
auto qos voip command 2-17
B
BackboneFast, for STP 2-543
backup interfaces
configuring 2-610
displaying 2-386
boot (boot loader) command A-2
boot auto-copy-sw command 2-22
boot config-file command 2-23
boot enable-break command 2-24
boot helper command 2-25
boot helper-config file command 2-26
booting
Cisco IOS image 2-29
displaying environment variables 2-336
interrupting 2-24
manually 2-27
boot loader
accessing A-1
booting
Cisco IOS image A-2
helper image 2-25
bootloader (continued)
directories
creating A-15
displaying a list of A-7
removing A-19
displaying
available commands A-12
memory heap utilization A-13
version A-26
environment variables
described A-20
displaying settings A-20
location of A-21
setting A-20
unsetting A-24
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-16, A-23
renaming A-17
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
prompt A-1
resetting the system A-18
boot manual command 2-27
boot private-config-file command 2-28
boot system command 2-29
BPDU filtering, for spanning tree 2-544, 2-579
BPDU guard, for spanning tree 2-546, 2-579
broadcast storm control 2-600
C
candidate switches
See clusters
cat (boot loader) command A-4
channel-group command 2-31
channel-protocol command 2-34
Cisco SoftPhone
auto-QoS configuration 2-17
trusting packets sent from 2-261
class command 2-35
class-map command 2-37
class maps
creating 2-37
defining the match criteria 2-222
displaying 2-340
class of service
See CoS
clear dot1x command 2-39
clear eap sessions command 2-40
clear errdisable interface 2-41
clear ip dhcp snooping database command 2-42
clear lacp command 2-44
clear mac address-table command 2-45, 2-46
clear pagp command 2-47
clear port-security command 2-48
clear spanning-tree counters command 2-50
clear spanning-tree detected-protocols command 2-51
clear vmps statistics command 2-52
clear vtp counters command 2-53
cluster commander-address command 2-54
cluster discovery hop-count command 2-56
cluster enable command 2-57
cluster holdtime command 2-58
cluster member command 2-59
cluster outside-interface command 2-61
cluster run command 2-62
clusters
adding candidates 2-59
binding to HSRP group 2-63
building manually 2-59
communicating with
devices outside the cluster 2-61
members by using Telnet 2-304
clusters (continued)
debug messages, display B-5
displaying
candidate switches 2-343
debug messages B-5
member switches 2-345
status 2-341
hop-count limit for extended discovery 2-56
HSRP standby groups 2-63
redundancy 2-63
SNMP trap 2-533
cluster standby-group command 2-63
cluster timer command 2-65
command modes defined 1-2
command switch
See clusters
configuration files
password recovery disable considerations A-1
specifying the name 2-23, 2-28
configuring multiple interfaces 2-121
config-vlan mode
commands 2-652
description 1-4
entering 2-651
summary 1-3
copy (boot loader) command A-5
CoS
assigning default value to incoming packets 2-231
overriding the incoming value 2-231
CoS-to-DSCP map 2-235
CPU ASIC statistics, displaying 2-347
crashinfo files 2-114
D
debug auto qos command B-2
debug backup command B-4
debug cluster command B-5
debug dot1x command B-7
debug dtp command B-8
debug eap command B-9
debug etherchannel command B-10
debug ilpower command B-12
debug interface command B-13
debug ip dhcp snooping command B-15
debug ip igmp filter command B-16
debug ip igmp max-groups command B-17
debug ip igmp snooping command B-18
debug lacp command B-19
debug mac-notification command B-20
debug matm command B-21
debug matm move update command B-22
debug monitor command B-23
debug mvrdbg command B-25
debug nvram command B-26
debug pagp command B-27
debug platform acl command B-28
debug platform backup interface command B-29
debug platform cli-redirection main command B-30
debug platform configuration command B-31, B-37
debug platform cpu-queues command B-32
debug platform dot1x command B-34
debug platform etherchannel command B-35
debug platform forw-tcam command B-36
debug platform ip dhcp command B-39
debug platform ip igmp snooping command B-40
debug platform led command B-42
debug platform matm command B-43
debug platform messaging application command B-45
debug platform phy command B-47
debug platform pm command B-49
debug platform port-asic command B-51
debug platform port-security command B-52
debug platform qos-acl-tcam command B-53
debug platform resource-manager command B-54
debug platform snmp command B-55
debug platform span command B-56
debug platform stack-manager command B-57
debug platform supervisor-asic command B-58
debug platform sw-bridge command B-59
debug platform tcam command B-60
debug platform udld command B-62
debug platform vlan command B-63
debug pm command B-64
debug port-security command B-66
debug qos-manager command B-67
debug spanning-tree backbonefast command B-70
debug spanning-tree bpdu command B-71
debug spanning-tree bpdu-opt command B-72
debug spanning-tree command B-68
debug spanning-tree mstp command B-73
debug spanning-tree switch command B-75
debug spanning-tree uplinkfast command B-77
debug sw-vlan command B-78
debug sw-vlan ifs command B-80
debug sw-vlan notification command B-81
debug sw-vlan vtp command B-83
debug udld command B-85
debug vqpc command B-87
define interface-range command 2-66
delete (boot loader) command A-6
delete command 2-68
deny command 2-69
detect mechanism, causes 2-107
DHCP snooping
accepting untrusted packets from edge switch 2-138
enabling
on a VLAN 2-143
option 82 2-136, 2-138
trust on an interface 2-141
error recovery timer 2-112
rate limiting 2-140
DHCP snooping binding database
binding file, configuring 2-134
bindings
adding 2-132
deleting 2-132
displaying 2-400
clearing database agent statistics 2-42
database agent, configuring 2-134
displaying
binding entries 2-400
database agent status 2-403, 2-405
renewing 2-311
dir (boot loader) command A-7
directories, deleting 2-68
domain name, VTP 2-670, 2-674
dot1x auth-fail max-attempts 2-74
dot1x auth-fail vlan 2-76
dot1x command 2-72
dot1x control-direction command 2-78
dot1x critical global configuration command 2-80
dot1x critical interface configuration command 2-82
dot1x default command 2-84
dot1x fallback command 2-85
dot1x guest-vlan command 2-86
dot1x host-mode command 2-88
dot1x initialize command 2-90
dot1x mac-auth-bypass command 2-91
dot1x max-reauth-req command 2-93
dot1x max-req command 2-94
dot1x pae command 2-95
dot1x port-control command 2-96
dot1x re-authenticate command 2-98
dot1x reauthentication command 2-99
dot1x test eapol-capable command 2-100
dot1x test timeout command 2-101
dot1x timeout command 2-102
dot1x violation-mode command 2-104
DSCP-to-CoS map 2-235
DSCP-to-DSCP-mutation map 2-235
DTP 2-617
DTP flap
error detection for 2-107
error recovery timer 2-112
DTP negotiation 2-618
dual-purpose uplink ports
displaying configurable options 2-389
displaying the active media 2-393
selecting the type 2-225
duplex command 2-105
dynamic-access ports
configuring 2-608
restrictions 2-609
dynamic auto VLAN membership mode 2-616
dynamic desirable VLAN membership mode 2-616
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
Dynamic Trunking Protocol
See DTP
E
EAP-request/identity frame
maximum number to send 2-94
response time before retransmitting 2-102
environment variables, displaying 2-336
errdisable detect cause command 2-107
errdisable detect cause small-frame comand 2-109
errdisable recovery cause small-frame 2-111
errdisable recovery command 2-112
error conditions, displaying 2-375
error disable detection 2-107
error-disabled interfaces, displaying 2-386
EtherChannel
assigning Ethernet interface to channel group 2-31
creating port-channel logical interface 2-119
debug EtherChannel/PAgP, display B-10
debug platform-specific events, display B-35
displaying 2-379
EtherChannel (continued)
interface information, displaying 2-386
LACP
clearing channel-group information 2-44
debug messages, display B-19
displaying 2-428
modes 2-31
port priority for hot-standby ports 2-183
restricting a protocol 2-34
system priority 2-185
load-distribution methods 2-287
PAgP
aggregate-port learner 2-274
clearing channel-group information 2-47
debug messages, display B-27
displaying 2-483
error detection for 2-107
error recovery timer 2-112
learn method 2-274
modes 2-31
physical-port learner 2-274
priority of interface for transmitted traffic 2-276
Ethernet controller, internal register display 2-349
Ethernet statistics, collecting 2-313
exception crashinfo command 2-114
exit command 2-663
extended discovery of candidate switches 2-56
extended-range VLANs
and allowed VLAN list 2-631
and pruning-eligible list 2-631
configuring 2-651
extended system ID for STP 2-552
F
fallback profile command 2-115
fallback profiles, displaying 2-382
fan information, displaying 2-371
file name, VTP 2-670
files, deleting 2-68
flash_init (boot loader) command A-9
Flex Links
configuring 2-610
configuring preferred VLAN 2-612
displaying 2-386
flowcontrol command 2-117
format (boot loader) command A-10
forwarding results, display C-5
frame forwarding information, displaying C-5
front-end controller, counter and status information C-7
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-4
H
hardware ACL statistics 2-328
help (boot loader) command A-12
hierarchical policy maps 2-285
hop-count limit for clusters 2-56
host connection, port configuration 2-615
Hot Standby Router Protocol
See HSRP
HSRP
binding HSRP group to cluster 2-63
standby group 2-63
I
IEEE 802.1x
and switchport modes 2-617
violation error recovery 2-112
See also port-based authentication
IEEE 802.1X Port Based Authentication
enabling guest VLAN supplicant 2-75, 2-85, 2-116
IGMP filters
applying 2-144
debug messages, display B-16
IGMP groups, setting maximum 2-146
IGMP maximum groups, debugging B-17
IGMP profiles
creating 2-148
displaying 2-408
IGMP snooping
adding ports as a static member of a group 2-165
displaying 2-409, 2-414, 2-416
enabling 2-150
enabling the configurable-leave timer 2-152
enabling the Immediate-Leave feature 2-161
flooding query count 2-158
interface topology change notification behavior 2-160
multicast table 2-412
querier 2-154
query solicitation 2-158
report suppression 2-156
switch topology change notification behavior 2-158
images
See software images
Immediate-Leave feature, MVR 2-271
immediate-leave processing 2-161
Immediate-Leave processing, IPv6 2-181
interface configuration mode 1-2, 1-4
interface port-channel command 2-119
interface range command 2-121
interface-range macros 2-66
interfaces
assigning Ethernet interface to channel group 2-31
configuring 2-105
configuring multiple 2-121
creating port-channel logical 2-119
debug messages, display B-13
disabling 2-529
displaying the MAC address table 2-449
restarting 2-529
interface speed, configuring 2-589
interface vlan command 2-123
internal registers, displaying 2-349, 2-358
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-107
error recovery timer 2-112
ip access-group command 2-124
ip address command 2-126
IP addresses, setting 2-126
ip admission command 2-128
ip admission name proxy http command 2-129
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 2-132
ip dhcp snooping command 2-131
ip dhcp snooping database command 2-134
ip dhcp snooping information option allow-untrusted command 2-138
ip dhcp snooping information option command 2-136
ip dhcp snooping limit rate command 2-140
ip dhcp snooping trust command 2-141
ip dhcp snooping verify command 2-142
ip dhcp snooping vlan command 2-143
ip igmp filter command 2-144
ip igmp max-groups command 2-146
ip igmp profile command 2-148
ip igmp snooping command 2-150
ip igmp snooping last-member-query-interval command 2-152
ip igmp snooping querier command 2-154
ip igmp snooping report-suppression command 2-156
ip igmp snooping tcn command 2-158
ip igmp snooping tcn flood command 2-160
ip igmp snooping vlan immediate-leave command 2-161
ip igmp snooping vlan mrouter command 2-163
ip igmp snooping vlan static command 2-165
IP multicast addresses 2-268
IP phones
auto-QoS configuration 2-17
trusting packets sent from 2-261
IP-precedence-to-DSCP map 2-235
IP source guard
displaying
dynamic binding entries only 2-400
ip ssh command 2-167
ipv6 mld snooping command 2-169
ipv6 mld snooping last-listener-query count command 2-171
ipv6 mld snooping last-listener-query-interval command 2-173
ipv6 mld snooping listener-message-suppression command 2-175
ipv6 mld snooping robustness-variable command 2-177
ipv6 mld snooping tcn command 2-179
ipv6 mld snooping vlan command 2-181
IPv6 SDM template 2-314
J
jumbo frames
See MTU
L
LACP
See EtherChannel
lacp port-priority command 2-183
lacp system-priority command 2-185
Layer 2 traceroute
IP addresses 2-642
MAC addresses 2-639
line configuration mode 1-3, 1-5
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 2-107
error recovery timer 2-112
link state group command 2-191
link state track command 2-193
load-distribution methods for EtherChannel 2-287
location (global configuration) command 2-187
location (interface configuration) command 2-189
logging event command 2-194
logging event power-inline-status command 2-195
logging file command 2-196
logical interface 2-119
loopback error
detection for 2-107
recovery timer 2-112
loop guard, for spanning tree 2-554, 2-558
M
mac access-group command 2-198
MAC access-groups, displaying 2-437
MAC access list configuration mode 2-200
mac access-list extended command 2-200
MAC access lists 2-69
MAC addresses
disabling MAC address learning per VLAN 2-203
displaying
aging time 2-443
all 2-441
dynamic 2-447
MAC address-table move updates 2-452
notification settings 2-451, 2-454
number of addresses in a VLAN 2-445
per interface 2-449
per VLAN 2-458
static 2-456
static and dynamic entries 2-439
MAC addresses (continued)
dynamic
aging time 2-202
deleting 2-45
displaying 2-447
enabling MAC address notification 2-207
enabling MAC address-table move update 2-205
persistent stack 2-597
static
adding and removing 2-209
displaying 2-456
dropping on an interface 2-210
tables 2-441
MAC address notification, debugging B-20
mac address-table aging-time 2-198
mac address-table aging-time command 2-202
mac address-table learning command 2-203
mac address-table move update command 2-205
mac address-table notification command 2-207
mac address-table static command 2-209
mac address-table static drop command 2-210
macro apply command 2-212
macro description command 2-215
macro global command 2-216
macro global description command 2-219
macro name command 2-220
macros
adding a description 2-215
adding a global description 2-219
applying 2-216
creating 2-220
displaying 2-485
interface range 2-66, 2-121
specifying parameter values 2-216
tracing 2-216
maps
QoS
defining 2-235
displaying 2-468
match (class-map configuration) command 2-222
maximum transmission unit
See MTU
mdix auto command 2-224
media-type command 2-225
member switches
See clusters
memory (boot loader) command A-13
mkdir (boot loader) command A-15
MLD snooping
configuring 2-175, 2-177
configuring queries 2-171, 2-173
configuring topology change notification 2-179
displaying 2-418, 2-420, 2-422, 2-424
enabling 2-169
MLD snooping on a VLAN, enabling 2-181
mls qos aggregate-policer command 2-229
mls qos command 2-227
mls qos cos command 2-231
mls qos dscp-mutation command 2-233
mls qos map command 2-235
mls qos queue-set output buffers command 2-239
mls qos queue-set output threshold command 2-241
mls qos rewrite ip dscp command 2-243
mls qos srr-queue input bandwidth command 2-245
mls qos srr-queue input buffers command 2-247
mls qos-srr-queue input cos-map command 2-249
mls qos srr-queue input dscp-map command 2-251
mls qos srr-queue input priority-queue command 2-253
mls qos srr-queue input threshold command 2-255
mls qos-srr-queue output cos-map command 2-257
mls qos srr-queue output dscp-map command 2-259
mls qos trust command 2-261
mode, MVR 2-268
Mode button, and password recovery 2-316
modes, commands 1-2
monitor session command 2-263
more (boot loader) command A-16
MSTP
displaying 2-502
interoperability 2-51
link type 2-556
MST region
aborting changes 2-562
applying changes 2-562
configuration name 2-562
configuration revision number 2-562
current or pending display 2-562
displaying 2-502
MST configuration mode 2-562
VLANs-to-instance mapping 2-562
path cost 2-564
protocol mode 2-560
restart protocol migration process 2-51
root port
loop guard 2-554
preventing from becoming designated 2-554
restricting which can be root 2-554
root guard 2-554
root switch
affects of extended system ID 2-552
hello-time 2-567, 2-575
interval between BDPU messages 2-568
interval between hello BPDU messages 2-567, 2-575
max-age 2-568
maximum hop count before discarding BPDU 2-569
port priority for selection of 2-571
primary or secondary 2-575
switch priority 2-574
MSTP (continued)
state changes
blocking to forwarding state 2-581
enabling BPDU filtering 2-544, 2-579
enabling BPDU guard 2-546, 2-579
enabling Port Fast 2-579, 2-581
forward-delay time 2-566
length of listening and learning states 2-566
rapid transition to forwarding 2-556
shutting down Port Fast-enabled ports 2-579
state information display 2-501
MTU
configuring size 2-636
displaying global setting 2-512
Multicase Listener Discovery
See MLD
multicast group address, MVR 2-271
multicast groups, MVR 2-269
Multicast Listener Discovery
See MLD
multicast router learning method 2-163
multicast router ports, configuring 2-163
multicast router ports, IPv6 2-181
multicast storm control 2-600
multicast VLAN, MVR 2-268
multicast VLAN registration
See MVR
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 2-269
configuring 2-268
configuring interfaces 2-271
debug messages, display B-25
displaying 2-477
displaying interface information 2-479
members, displaying 2-481
mvr (global configuration) command 2-268
mvr (interface configuration) command 2-271
mvr vlan group command 2-272
N
native VLANs 2-631
Network Admission Control Software Configuration Guide 2-128, 2-130
nonegotiate, speed 2-589
nonegotiating DTP messaging 2-618
non-IP protocols
denying 2-69
forwarding 2-278
non-IP traffic access lists 2-200
non-IP traffic forwarding
denying 2-69
permitting 2-278
normal-range VLANs 2-651, 2-656
no vlan command 2-651, 2-660
P
PAgP
See EtherChannel
pagp learn-method command 2-274
pagp port-priority command 2-276
password, VTP 2-670, 2-674
password-recovery mechanism, enabling and disabling 2-316
permit (MAC access-list configuration) command 2-278
per-VLAN spanning-tree plus
See STP
physical-port learner 2-274
PID, displaying 2-398
PIM-DVMRP, as multicast router learning method 2-163
PoE
configuring the power budget 2-292
configuring the power management mode 2-289
displaying controller register values 2-356
PoE (continued)
displaying power management information 2-493
logging of status 2-195
monitoring power 2-294
policing power consumption 2-294
police aggregate command 2-283
police command 2-281
policed-DSCP map 2-235
policy-map command 2-285
policy maps
applying to an interface 2-318, 2-323
creating 2-285
displaying 2-488
hierarchical 2-285
policers
displaying 2-461
for a single class 2-281
for multiple classes 2-229, 2-283
policed-DSCP map 2-235
traffic classification
defining the class 2-35
defining trust states 2-644
setting DSCP or IP precedence values 2-321
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 2-3
configuring violation modes 2-104
debug messages, display B-7
enabling IEEE 802.1x
globally 2-72
per interface 2-96
guest VLAN 2-86
host modes 2-88
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-90, 2-101
MAC authentication bypass 2-91
manual control of authorization state 2-96
PAE as authenticator 2-95
port-based authentication (continued)
periodic re-authentication
enabling 2-99
time between attempts 2-102
quiet period between failed authentication exchanges 2-102
re-authenticating IEEE 802.1x-enabled ports 2-98
resetting configurable IEEE 802.1x parameters 2-84
switch-to-authentication server retransmission time 2-102
switch-to-client frame-retransmission number2-93to 2-94
switch-to-client retransmission time 2-102
test for IEEE 802.1x readiness 2-100
port-channel load-balance command 2-287
Port Fast, for spanning tree 2-581
port ranges, defining 2-66
ports, debugging B-64
ports, protected 2-629
port security
aging 2-625
debug messages, display B-66
enabling 2-620
violation error recovery 2-112
port trust states for QoS 2-261
port types, MVR 2-271
power information, displaying 2-371
power inline command 2-289
power inline consumption command 2-292
power inline police command 2-294
Power over Ethernet
See PoE
priority-queue command 2-297
priority value, stack member 2-509, 2-603
privileged EXEC mode 1-2, 1-3
product identification information, displaying 2-398
protected ports, displaying 2-391
pruning
VLANs 2-631
VTP
displaying interface information 2-386
enabling 2-670, 2-674
pruning-eligible VLAN list 2-632
PVST+
See STP
Q
QoS
auto-QoS
configuring 2-17
debug messages, display B-2
displaying 2-332
class maps
creating 2-37
defining the match criteria 2-222
displaying 2-340
defining the CoS value for an incoming packet 2-231
displaying configuration information 2-332, 2-460
DSCP transparency 2-243
DSCP trusted ports
applying DSCP-to-DSCP-mutation map to 2-233
defining DSCP-to-DSCP-mutation map 2-235
egress queues
allocating buffers 2-239
defining the CoS output queue threshold map 2-257
defining the DSCP output queue threshold map 2-259
displaying buffer allocations 2-464
displaying CoS output queue threshold map 2-468
displaying DSCP output queue threshold map 2-468
displaying queueing strategy 2-464
displaying queue-set settings 2-471
QoS (continued)
egress queues (continued)
enabling bandwidth shaping and scheduling 2-593
enabling bandwidth sharing and scheduling 2-595
limiting the maximum output on a port 2-591
mapping a port to a queue-set 2-299
mapping CoS values to a queue and threshold 2-257
mapping DSCP values to a queue and threshold 2-259
setting maximum and reserved memory allocations 2-241
setting WTD thresholds 2-241
enabling 2-227
ingress queues
allocating buffers 2-247
assigning SRR scheduling weights 2-245
defining the CoS input queue threshold map 2-249
defining the DSCP input queue threshold map 2-251
displaying buffer allocations 2-464
displaying CoS input queue threshold map 2-468
displaying DSCP input queue threshold map 2-468
displaying queueing strategy 2-464
displaying settings for 2-462
enabling the priority queue 2-253
mapping CoS values to a queue and threshold 2-249
mapping DSCP values to a queue and threshold 2-251
setting WTD thresholds 2-255
maps
defining 2-235, 2-249, 2-251, 2-257, 2-259
displaying 2-468
QoS (continued)
policy maps
applying an aggregate policer 2-283
applying to an interface 2-318, 2-323
creating 2-285
defining policers 2-229, 2-281
displaying policers 2-461
displaying policy maps 2-488
hierarchical 2-285
policed-DSCP map 2-235
setting DSCP or IP precedence values 2-321
traffic classifications 2-35
trust states 2-644
port trust states 2-261
queues, enabling the expedite 2-297
statistics
in-profile and out-of-profile packets 2-464
packets enqueued or dropped 2-464
sent and received CoS values 2-464
sent and received DSCP values 2-464
trusted boundary for IP phones 2-261
quality of service
See QoS
querytime, MVR 2-268
queue-set command 2-299
R
radius-server dead-criteria command 2-300
radius-server host command 2-302
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
rcommand command 2-304
re-authenticating IEEE 802.1x-enabled ports 2-98
re-authentication
periodic 2-99
time between attempts 2-102
receiver ports, MVR 2-271
receiving flow-control packets 2-117
recovery mechanism
causes 2-112
display 2-41, 2-338, 2-373, 2-377
timer interval 2-112
redundancy for cluster switches 2-63
reload command 2-306
remote command 2-308
remote-span command 2-309
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command A-17
renew ip dhcp snooping database command 2-311
reset (boot loader) command A-18
reset command 2-663
resource templates, displaying 2-498
restricted VLAN
See dot1x auth-fail vlan
rmdir (boot loader) command A-19
rmon collection stats command 2-313
root guard, for spanning tree 2-554
RSPAN
configuring 2-263
displaying 2-474
filter RSPAN traffic 2-263
remote-span command 2-309
sessions
displaying 2-474
S
SDM mismatch mode 2-510
sdm prefer command 2-314
SDM templates
displaying 2-498
dual IPv4 and IPv6 2-314
secure ports, limitations 2-622
sending flow-control packets 2-117
service password-recovery command 2-316
service-policy command 2-318
session command 2-320
set (boot loader) command A-20
set command 2-321
setup command 2-323
setup express command 2-326
show access-lists command 2-328
show archive status command 2-331
show auto qos command 2-332
show boot command 2-336
show cable-diagnostics tdr command 2-338
show changes command 2-663
show class-map command 2-340
show cluster candidates command 2-343
show cluster command 2-341
show cluster members command 2-345
show controllers cpu-interface command 2-347
show controllers ethernet-controller command 2-349
show controllers power inline command 2-356
show controllers tcam command 2-358
show controller utilization command 2-360
show current command 2-663
show dot1x command 2-362
show dtp 2-366
show eap command 2-368
show env command 2-371
show errdisable detect command 2-373
show errdisable flap-values command 2-375
show errdisable recovery command 2-377
show etherchannel command 2-379
show fallback profile command 2-382
show flowcontrol command 2-384
show interfaces command 2-386
show interfaces counters command 2-395
show inventory command 2-398
show ip dhcp snooping binding command 2-400
show ip dhcp snooping command 2-399
show ip dhcp snooping database command 2-403, 2-405
show ip igmp profile command 2-408
show ip igmp snooping address command 2-420
show ip igmp snooping command 2-409, 2-418
show ip igmp snooping groups command 2-412
show ip igmp snooping mrouter command 2-414, 2-422
show ip igmp snooping querier command 2-416, 2-424
show ipv6 route updated 2-426
show lacp command 2-428
show link state group command 2-435
show location 2-432
show mac access-group command 2-437
show mac address-table address command 2-441
show mac address-table aging time command 2-443
show mac address-table command 2-439
show mac address-table count command 2-445
show mac address-table dynamic command 2-447
show mac address-table interface command 2-449
show mac address-table learning command 2-451
show mac address-table move update command 2-452
show mac address-table notification command 2-46, 2-454, B-22
show mac address-table static command 2-456
show mac address-table vlan command 2-458
show mls qos aggregate-policer command 2-461
show mls qos command 2-460
show mls qos input-queue command 2-462
show mls qos interface command 2-464
show mls qos maps command 2-468
show mls qos queue-set command 2-471
show mls qos vlan command 2-473
show monitor command 2-474
show mvr command 2-477
show mvr interface command 2-479
show mvr members command 2-481
show pagp command 2-483
show parser macro command 2-485
show platform acl command C-2
show platform backup interface command C-3
show platform etherchannel command C-4
show platform forward command C-5
show platform frontend-controller command C-7
show platform igmp snooping command C-8
show platform layer4op command C-10
show platform mac-address-table command C-11
show platform messaging command C-12
show platform monitor command C-13
show platform mvr table command C-14
show platform pm command C-15
show platform port-asic command C-16
show platform port-security command C-21
show platform qos command C-22
show platform resource-manager command C-23
show platform snmp counters command C-25
show platform spanning-tree command C-26
show platform stack-manager command C-28
show platform stp-instance command C-27
show platform tb command C-30
show platform tcam command C-32
show platform vlan command C-34
show policy-map command 2-488
show port security command 2-490
show power inline command 2-493
show proposed command 2-663
show sdm prefer command 2-498
show setup express command 2-500
show spanning-tree command 2-501
show storm-control command 2-507
show switch command 2-509
show system mtu command 2-512
show trust command 2-644
show udld command 2-513
show version command 2-516
show vlan command 2-518
show vlan command, fields 2-519
show vmps command 2-521
show vtp command 2-524
shutdown command 2-529
shutdown vlan command 2-530
small violation-rate command 2-531
Smartports macros
See macros
SNMP host, specifying 2-537
SNMP informs, enabling the sending of 2-533
snmp-server enable traps command 2-533
snmp-server host command 2-537
snmp trap mac-notification command 2-541
SNMP traps
enabling MAC address notification trap 2-541
enabling the MAC address notification feature 2-207
enabling the sending of 2-533
SoftPhone
See Cisco SoftPhone
software images
copying 2-6
deleting 2-68
downloading 2-9
upgrading 2-6, 2-9
uploading 2-15
software version, displaying 2-516
source ports, MVR 2-271
SPAN
configuring 2-263
debug messages, display B-23
displaying 2-474
filter SPAN traffic 2-263
sessions
add interfaces to 2-263
displaying 2-474
start new 2-263
spanning-tree backbonefast command 2-543
spanning-tree bpdufilter command 2-544
spanning-tree bpduguard command 2-546
spanning-tree cost command 2-548
spanning-tree etherchannel command 2-550
spanning-tree extend system-id command 2-552
spanning-tree guard command 2-554
spanning-tree link-type command 2-556
spanning-tree loopguard default command 2-558
spanning-tree mode command 2-560
spanning-tree mst configuration command 2-562
spanning-tree mst cost command 2-564
spanning-tree mst forward-time command 2-566
spanning-tree mst hello-time command 2-567
spanning-tree mst max-age command 2-568
spanning-tree mst max-hops command 2-569
spanning-tree mst port-priority command 2-571
spanning-tree mst pre-standard command 2-573
spanning-tree mst priority command 2-574
spanning-tree mst root command 2-575
spanning-tree portfast (global configuration) command 2-579
spanning-tree portfast (interface configuration) command 2-581
spanning-tree port-priority command 2-577
Spanning Tree Protocol
See STP
spanning-tree transmit hold-count command 2-583
spanning-tree uplinkfast command 2-584
spanning-tree vlan command 2-586
speed command 2-589
srr-queue bandwidth limit command 2-591
srr-queue bandwidth share command 2-595
SSH, configuring version 2-167
stack-mac persistent timer command 2-597
stack member
access 2-320
number 2-509, 2-606
priority value 2-603
provisioning 2-604
reloading 2-306
stacks, switch
MAC address 2-597
provisioning a new member 2-604
reloading 2-306
stack member access 2-320
stacks, switch (continued)
stack member number 2-509, 2-606
stack member priority value 2-509, 2-603
static-access ports, configuring 2-608
statistics, Ethernet group 2-313
sticky learning, enabling 2-620
storm-control command 2-600
STP
BackboneFast 2-543
counters, clearing 2-50
debug messages, display
BackboneFast events B-70
MSTP B-73
optimized BPDUs handling B-72
spanning-tree activity B-68
switch shim B-75
transmitted and received BPDUs B-71
UplinkFast B-77
detection of indirect link failures 2-543
EtherChannel misconfiguration 2-550
extended system ID 2-552
path cost 2-548
protocol modes 2-560
root port
accelerating choice of new 2-584
loop guard 2-554
preventing from becoming designated 2-554
restricting which can be root 2-554
root guard 2-554
UplinkFast 2-584
root switch
affects of extended system ID 2-552, 2-587
hello-time 2-586
interval between BDPU messages 2-586
interval between hello BPDU messages 2-586
max-age 2-586
port priority for selection of 2-577
primary or secondary 2-586
switch priority 2-586
STP (continued)
state changes
blocking to forwarding state 2-581
enabling BPDU filtering 2-544, 2-579
enabling BPDU guard 2-546, 2-579
enabling Port Fast 2-579, 2-581
enabling timer to recover from error state 2-112
forward-delay time 2-586
length of listening and learning states 2-586
shutting down Port Fast-enabled ports 2-579
state information display 2-501
VLAN options 2-574, 2-586
Switched Port Analyzer
See SPAN
switchport access command 2-608
switchport backup interface command 2-610
switchport block command 2-614
switchport host command 2-615
switchport mode command 2-616
switchport nonegotiate command 2-618
switchport port-security aging command 2-625
switchport port-security command 2-620
switchport priority extend command 2-627
switchport protected command 2-629
switchports, displaying 2-386
switchport trunk command 2-631
switchport voice vlan command 2-634
switch priority command 2-603
switch provision command 2-604
switch renumber command 2-606
system message logging 2-195
system message logging, save message to flash 2-196
system mtu command 2-636
system resource templates 2-314
T
tar files, creating, listing, and extracting 2-12
TDR, running 2-638
Telnet, using to communicate to cluster switches 2-304
temperature information, displaying 2-371
templates, SDM 2-314
templates, system resources 2-314
test cable-diagnostics tdr command 2-638
test relay 2-639
traceroute mac command 2-639
traceroute mac ip command 2-642
trunking, VLAN mode 2-616
trunk mode 2-616
trunk ports 2-616
trunks, to non-DTP device 2-617
trusted boundary for QoS 2-261
trusted port states for QoS 2-261
type (boot loader) command A-23
U
UDLD
aggressive mode 2-646, 2-648
debug messages, display B-85
enable globally 2-646
enable per interface 2-648
error recovery timer 2-112
message timer 2-646
normal mode 2-646, 2-648
reset a shutdown interface 2-650
status 2-513
udld command 2-646
udld port command 2-648
udld reset command 2-650
unicast storm control 2-600
UniDirectional Link Detection
See UDLD
unknown multicast traffic, preventing 2-614
unknown unicast traffic, preventing 2-614
unset (boot loader) command A-24
upgrading
software images
copying 2-6
downloading 2-9
monitoring status of 2-331
UplinkFast, for STP 2-584
user EXEC mode 1-2, 1-3
V
version (boot loader) command A-26
version mismatch mode 2-510
vlan (global configuration) command 2-651
vlan (VLAN configuration) command 2-656
VLAN configuration
rules 2-654, 2-658
saving 2-651, 2-660
VLAN configuration mode
commands
VLAN 2-656
VTP 2-674
description 1-5
entering 2-662
summary 1-3
vlan database command 2-662
VLAN ID range 2-651, 2-656
VLAN Query Protocol
See VQP
VLANs
adding 2-651
configuring 2-651, 2-656
debug messages, display
ISL B-81
VLAN IOS file system error tests B-80
VLAN manager activity B-78
VTP B-83
displaying configurations 2-518
enabling guest VLAN supplicant 2-75, 2-85, 2-116
extended-range 2-651
VLANs (continued)
MAC addresses
displaying 2-458
number of 2-445
media types 2-653, 2-658
normal-range 2-651, 2-656
restarting 2-530
saving the configuration 2-651
shutting down 2-530
SNMP traps for VTP 2-535, 2-538
suspending 2-530
variables 2-656
VLAN Trunking Protocol
See VTP
VM mode 2-510
VMPS
configuring servers 2-668
displaying 2-521
error recovery timer 2-112
reconfirming dynamic VLAN assignments 2-665
vmps reconfirm (global configuration) command 2-666
vmps reconfirm (privileged EXEC) command 2-665
vmps retry command 2-667
vmps server command 2-668
voice VLAN
configuring 2-634
setting port priority 2-627
VQP
and dynamic-access ports 2-609
clearing client statistics 2-52
displaying information 2-521
per-server retry count 2-667
reconfirmation interval 2-666
reconfirming dynamic VLAN assignments 2-665
VTP
changing characteristics 2-670
clearing pruning counters 2-53
VTP (continued)
configuring
domain name 2-670, 2-674
file name 2-670
mode 2-670, 2-674
password 2-670, 2-674
counters display fields 2-525
displaying information 2-524
enabling
pruning 2-670, 2-674
Version 2 2-670, 2-674
mode 2-670, 2-674
pruning 2-670, 2-674
saving the configuration 2-651, 2-660
statistics 2-524
status 2-524
status display fields 2-527
vtp (global configuration) command 2-670
vtp (VLAN configuration) command 2-674