Table Of Contents
Symbols - Numerics - A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W -
Index
Symbols
$ matches the end of a string 1-7
( ) in commands 1-11
* matches 0 or more sequences of a pattern 1-7
+ matches 1 or more sequences of a pattern 1-7
. matches any single character 1-7
? command 1-1
? matches 0 or 1 occurrence of a pattern 1-7
^ matches the beginning of a string 1-7
_ matches a comma (,), left brace ({), left parenthesis 1-7
" 1-10
Numerics
10-Gigabit Ethernet uplink
selecting 2-273
showing the mode 2-697, 2-699
802.1Q trunk ports and native VLANs 2-1123
802.1Q tunnel ports
configuring 2-1055
802.1S Multiple Spanning Tree
see MST
802.1X
configuring for multiple hosts 2-219
configuring for single host 2-219
configuring multiple domains 2-219
disabling port control 2-211
enabling port control 2-211
802.1X Critical Authentication
disabling on a port 2-213
disabling on a VLAN 2-216
EAPOL
disabling send success packets 2-214
enabling send success packets 2-214
enabling on a port 2-213
enabling on a VLAN 2-216
returning delay time to default setting 2-215
setting delay time on a port 2-215
802.1X critical authentication
configure parameters 2-25
802.1X critical recovery delay, configuring 2-25
802.1X Port Based Authentication
debugging 802.1X Port Based Authentication 2-150
displaying port based authentication 2-680
enabling accounting for authentication sessions 2-4
enabling authentication on the system 2-230
enabling guest VLAN 2-217
enabling guest VLAN supplicant 2-210, 2-218
enabling manual control of auth state 2-226
enabling periodic re-authentication of the client 2-229
initializing re-authentication of dot1x ports 2-228
initializing state machines 2-221
receive session termination message upon reboot 2-5
setting maximum number for EAP requests 2-224
setting the reauthentication timer 2-231
A
aaa authorization network command 2-212
abbreviating commands
context-sensitive help 1-1
Access Gateway Module
connecting to a module 2-22
connecting to a remote module 2-589
connecting to a specific remote module 2-618
access-group
displaying mac interface 2-820
show mode interface 2-553, 2-639, 2-906
access groups
IP 2-6, 2-206
access lists
clearing an access template 2-104
defining ARP 2-21
displaying ARP information 2-643
See also ACLs, MAC ACLs, and VACLs
access maps
applying with VLAN filter 2-1125
access-node-identifier, setting for the switch 2-556
access-policies, applying using host-mode 2-30
ACLs
access-group mode 2-6
balancing hardware regions 2-12
capturing control packets 2-8
determining ACL hardware programming 2-10
disabling hardware statistics 2-259
displaying mac access-group interface 2-820
enabling hardware statisctics 2-259
using ACL naming conventions for MAC ACLs 2-404
action clause
specifying drop or forward action in a VACL 2-13
addresses, configuring a maximum 2-530
adjacency
debugging the adjacency table 2-141
disabling the debug facility 2-141
displaying information about the adjacency table 2-640
displaying IPC table entries 2-141
aggregate policer
displaying information 2-907
aging time
displaying MAC address aging time 2-823
MAC address table 2-407, 2-409
alarms
displaying operational status 2-684
alternation
description 1-10
anchoring
description 1-10
ancp, show multicast 2-642
ANCP client
port identifier 2-16
remote server 2-17
set router to become 2-18
ARP
access list, displaying detailed information 2-643
defining access-lists 2-21
ARP inspection
enforce certain types of checking 2-295
ARP packet
deny based on DHCP bindings 2-185
permit based on DHCP bindings 2-508
authentication 2-25, 2-32
changing the control-direction 2-23
configure actions for events
configuring the actions 2-26
configuring port-control 2-36
enabling reauthentication 2-35
enabling Webauth fallback 2-29
host-mode configuration 2-30
setting priority of methods 2-38
setting the timer 2-40
setting username 2-1110
specifying the order of methods 2-33
using an MD5-type encryption method 2-1110
verifying MD5 signature 2-1112
verifying the checksum for Flash memory 2-1112
authentication control-direction command 2-23
authentication critical recovery delay command 2-25
authentication event command 2-26
authentication fallback command 2-29
authentication host-mode 2-30
authentication methods, setting priority 2-38
authentication methods, specifying the order of attempts 2-33
authentication open command 2-32
authentication order command 2-33
authentication periodic command 2-35
authentication port-control command 2-36
authentication priority command 2-38
authentication timer, setting 2-40
authentication timer command 2-40
authentication violation command 2-42
auth fail VLAN
enable on a port 2-210
set max number of attempts 2-209
Auth Manager
configuring
authentication timer 2-40
authorization state
enabling manual control 2-226
authorization state of a controlled port 2-226
automatic installation
displaying status 2-649
automatic medium-dependent interface crossover
See Auto-MDIX
Auto-MDIX
disabling 2-455
enabling 2-455
auto-negotiate interface speed
example 2-1025
auto-QoS
configuring for VoIP 2-64
displaying configuration 2-650
auto qos srnd4 command 2-52
average-packet-size (netflow-lite monitor submode) command 2-73
B
baby giants
displaying the system MTU setting 2-947
setting the maximum Layer 2 payload size 2-1082
BackboneFast
displaying debugging messages 2-172
displaying spanning tree status 2-930
enabling debugging 2-172
bandwidth command 2-75
bindings
store for DHCP snooping 2-307
BOOT environment variable
displaying information 2-653
bootflash
displaying information 2-651
BPDUs
debugging spanning tree activities 2-170
bridge protocol data units
See BPDUs
broadcast suppression level
configuring 2-1026, 2-1028
enabling 2-1026, 2-1028
C
cable diagnostics
TDR
displaying test results 2-654
testing conditions of copper cables 2-1086
call home
displaying information 2-656
e-mailing output 2-83
entering configuration submode 2-78
executing 2-83
manually send test message 2-86
receiving information 2-81
sending alert group message 2-84
submitting information 2-81
call home destination profiles
displaying 2-658
Catalyst 4507R 2-528
CDP
configuring tunneling encapsulation rate 2-389
displaying
neighbor information 2-661
enabling protocol tunneling for 2-384
set drop threshold for 2-387
CEF
displaying next-hop information 2-736
displaying VLAN configuration information 2-736
chassis
displaying
chassis MAC address ranges 2-817
current and peak traffic meter readings 2-817
percentage of backplane utilization 2-817
switching clock failure recovery mode 2-817
circuit-id
setting for an interface 2-558
circuit-id, setting for an interface VLAN range 2-559
cisco-desktop
macro apply 2-418
Cisco Express Forwarding
See CEF
cisco-phone
macro apply 2-420
cisco-router
macro apply 2-422
cisco-switch
macro apply 2-424
CISP
See Client Information Signalling Protocol
cisp enable command 2-91
class maps
creating 2-95
defining the match criteria 2-448
monitor capture 2-461
clear commands
clearing Gigabit Ethernet interfaces 2-102
clearing IGMP group cache entries 2-111
clearing interface counters 2-97
clearing IP access lists 2-104, 2-105
clearing IP ARP inspection statistics VLAN 2-106
clearing IP DHCP snooping database statistics 2-110
clearing MFIB counters and routes 2-114
clearing MFIB fastdrop entries 2-115
clearing PAgP channel information 2-124
clearing QoS aggregate counters 2-128
clearing VLAN interfaces 2-103
clear ip wccp command 2-116
clear netflow-lite exporter statistics command 2-121
clear netflow-lite monitor statistics interface command 2-122
clear nmsp statistics command 2-123
Client Information Signalling Protocol 2-212
Client Information Signalling Protocol, enabling 2-91
CLI string search
anchoring 1-10
expressions 1-7
filtering 1-6
multiple-character patterns 1-8
multipliers 1-9
parentheses for recall 1-11
searching outputs 1-6
single-character patterns 1-7
using 1-6
command 2-461
command modes
accessing privileged EXEC mode 1-5
exiting 1-5
understanding user EXEC and configuration modes 1-5
condition interface
debugging interface-related activities 2-143
condition vlan
debugging VLAN output 2-146
configuration, saving 1-11
configuring
root as secondary 2-1009
configuring a SPAN session to monitor
limit SPAN source traffic 2-474
configuring critical recovery 2-25
configuring forward delay 2-1005
configuring root as primary 2-1009
CoPP
attaching
policy map to control plane 2-616
displaying
policy-map class information 2-881
entering configuration mode 2-133
removing
service policy from control plane 2-616
CoS
assigning to Layer 2 protocol packets 2-386
cos (netflow-lite exporter submode) command 2-135
counter command 2-137
counters
clearing interface counters 2-97
critical authentication, configure 802.1X parameters 2-25
critical recovery, configuring 802.1X parameter 2-25
D
DAI
clear statistics 2-106
DBL
displaying qos dbl 2-908
debug commands
debugging backup events 2-142
debugging DHCP snooping events 2-155
debugging DHCP snooping messages 2-156
debugging EtherChannel/PAgP/shim 2-151
debugging IPC activity 2-154
debugging IP DHCP snooping security messages 2-157
debugging NVRAM activities 2-161
debugging PAgP activities 2-162
debugging port manager activities 2-165
debugging spanning tree activities 2-170
debugging spanning tree backbonefast 2-172
debugging spanning tree UplinkFast 2-175
debugging supervisor redundancy 2-169
debugging VLAN manager activities 2-176
displaying monitor activity 2-159
displaying the adjacency table 2-141
enabling debug dot1x 2-150
enabling debugging messages for ISL VLAN IDs 2-179
enabling debugging messages for VTP 2-180
enabling debugging of UDLD activity 2-181
enabling switch shim debugging 2-173
enabling VLAN manager file system error tests 2-177
limiting debugging output for VLANs 2-146
limiting interface debugging output 2-143
limiting output for debugging standby state changes 2-144
shortcut to the debug condition interface 2-153
debugging
activity monitoring 2-159
DHCP snooping events 2-155
DHCP snooping packets 2-156
IPC activities 2-154
IP DHCP snooping security packets 2-157
NVRAM activities 2-161
PAgP activities 2-162
PAgP shim 2-151
PM activities 2-165
PPPoE Intermediate Agent 2-167
spanning tree BackboneFast events 2-172
spanning tree switch shim 2-173
spanning tree UplinkFast events 2-175
VLAN manager activities 2-176
VLAN manager IOS file system error tests 2-177
VTP protocol debug messages 2-180
debug nmsp command 2-160
debug spanning tree switch 2-173
debug sw-vlan vtp 2-180
default form of a command, using 1-6
destination (netflow-lite exporter submode) command 2-187
detect mechanism, causes 2-246
device-sensor filter-list command 2-197
device-sensor filter-list dhcp command 2-200
device-sensor filter-spec command 2-202
device-sensor notify command 2-204
DHCP
clearing database statistics 2-110
DHCP bindings
configuring bindings 2-305
deny ARP packet based on matches 2-185
permit ARP packet based on matches 2-508
DHCP snooping
clearing binding entries 2-107
clearing database 2-109
displaying binding table 2-738
displaying configuration information 2-737
displaying status of DHCP database 2-742
displaying status of error detection 2-687
enabling DHCP globally 2-304
enabling IP source guard 2-346
enabling on a VLAN 2-314
enabling option 82 2-309, 2-311
enabling option-82 2-316
enabling rate limiting on an interface 2-312
enabling trust on an interface 2-313
establishing binding configuration 2-305
renew binding database 2-591
store generated bindings 2-307
diagnostic fpga soft-error recover command 2-206
diagnostic test
bootup packet memory 2-674
displaying attributes 2-668
display module-based results 2-670
running 2-208
show results for TDR 2-654
testing conditions of copper cables 2-1086
displaying error disable recovery 2-689
displaying inline power status 2-895
displaying monitoring activity 2-159
displaying PoE policing and monitoring status 2-903
displaying SEEPROM information
GBIC 2-700
displaying SPAN session information 2-947, 2-1028
document conventions 1-xxiv
document organization 1-xxiii
DoS
CoPP
attaching policy map to control plane 2-616
displaying policy-map class information 2-881
entering configuration mode 2-133
removing service policy from control plane 2-616
entering
CoPP configuration mode 2-133
DOS attack
protecting system's resources 2-290
dot1x credentials (global configuration) command 2-212
drop threshold, Layer 2 protocol tunneling 2-387
dscp (netflow-lite exporter submode command 2-233
DSCP rewrite for IP packets
enable 2-579
DTP flap
error detection for 2-246
dual-active detection (virtual switch) command 2-235
dual-active recovery ip address command 2-238
dual-capable port
selecting a connector 2-457
duplex mode
configuring autonegotiation on an interface 2-240
configuring full duplex on an interface 2-240
configuring half duplex on an interface 2-240
dynamic ARP inspection
error detection for 2-246
preventing 2-290
Dynamic Host Configuration Protocol
See DHCP
E
EAP
restarting authentication process 2-224
EDCS-587028 2-644, 2-817
EIGRP (Enhanced IGRP)
filters
routing updates, preventing 2-505
enabling
debugging for UDLD 2-181
voice VLANs 2-1042, 2-1043, 2-1045, 2-1047, 2-1048
enabling open access 2-32
environmental
alarms 2-684
displaying information 2-684
status 2-684
temperature 2-684
epm access control command 2-242
erase a file 2-243
errdisable detect cause command 2-246
error disable detection 2-246
clearing error disable on an interface 2-99
enabling error disable detection 2-99, 2-246
enabling per-VLAN on BPDU guard 2-246
error-disabled state
displaying 2-720
error disable recovery
configuring recovery mechanism variables 2-249
displaying recovery timer information 2-689
enabling ARP inspection timeout 2-249
specifying recovery cause 2-249
EtherChannel
assigning interfaces to EtherChannel groups 2-87
debugging EtherChannel 2-151
debugging PAgP shim 2-151
debugging spanning tree activities 2-170
displaying information for a channel 2-691
PAgP
error detection for 2-246
removing interfaces from EtherChannel groups 2-87
EtherChannel guard
detecting STP misconfiguration 2-995
Explicit Host Tracking
clearing the database 2-113
enabling per-VLAN 2-328
exporter (netflow-lite monitor submode) command 2-254
expressions
matching multiple expression occurrences 1-9
multiple-character patterns 1-8
multiplying pattern occurrence 1-11
single-character patterns 1-7
Extensible Authentication Protocol
See EAP
F
fallback profile, specifying 2-29
field replaceable unit (FRU)
displaying status information 2-684
filters
EIGRP
routing updates, preventing 2-505
Flash memory file system
displaying file system information 2-651
verifying checksum 2-1112
flow control
configuring a gigabit interface for pause frames 2-256
displaying per-interface statistics for flow control 2-695
G
GBIC
displaying SEEPROM information 2-700
generic-error-message, setting for the switch 2-556
Gigabit Ethernet interface
clearing the hardware logic 2-102
Gigabit Ethernet uplink
selecting 2-273
showing the mode 2-697, 2-699
global configuration mode
using 1-5
H
hardware module
resetting a module by toggling the power 2-266
hardware statistics
disabling 2-259
enabling 2-259
hardware uplink
selecting the mode 2-273
showing the mode 2-697, 2-699
helper addresses, IP 2-757
hot standby protocol
debugging 2-144
disabling debugging 2-144
limiting output 2-144
hw-module beacon command 2-260
hw-module module start command 2-261
hw-module module stop command 2-263
hw-module system max-port-num-mode 1/2 command 2-267
hw-module system max-port-num-mode 1/2 switch 1/2/all command 2-268
hw-module uplink mode command 2-271
I
identifier-string, setting for the switch 2-556
ID mapping, creating an ANCP client 2-16
IDPROMs
displaying SEEPROM information
chassis 2-700
clock module 2-700
fan trays 2-700
module 2-700
mux buffer 2-700
power supplies 2-700
supervisor engine 2-700
ifIndex persistence
clearing SNMP ifIndex commands 2-977
compress SNMP ifIndex table format 2-984
disabling globally 2-983
disabling on an interface 2-979
enabling globally 2-983
enabling on an interface 2-979
IGMP
applying filters for host joining on Layer 2 interfaces 2-318
clearing IGMP group cache entries 2-111
configuring frequency for IGMP host-query messages 2-321
creating an IGMP profile 2-320
displaying IGMP interface configuration information 2-744
displaying profiles 2-746
setting maximum group numbers 2-319
IGMP profiles
displaying 2-746
IGMP snooping
clearing the EHT database 2-113
configuring a Layer 2 interface as a group member 2-334
configuring a Layer 2 interface as a multicast router 2-332
configuring a static VLAN interface 2-334
displaying multicast information 2-753
displaying VLAN information 2-747, 2-751, 2-754
enabling 2-323
enabling immediate-leave processing 2-330
enabling on a VLAN 2-327
enabling per-VLAN Explicit Host Tracking 2-328
Immediate-Leave feature, MVR 2-483
informs
enabling 2-981
inline power
displaying inline power status 2-895
In Service Software Upgrade
See ISSU
inspection log
clearing log buffer 2-105
interface
displaying suppressed multicast bytes 2-711, 2-713
interface (virtual switch) command 2-281
interface capabilities
displaying 2-709
interface configuration mode
summary 1-5
interface link
display cable disconnect time 2-717
interfaces
configuring dot1q tunnel ports 2-1055
creating an interface-range macro 2-184
debugging output of interface related activities 2-143
displaying description 2-716
displaying error-disabled state 2-720
displaying information when tunneling is enabled 2-805
displaying status 2-716
displaying traffic for a specific interface 2-706
entering interface configuration mode 2-279, 2-281
executing a command on multiple ports in a range 2-284
selecting an interface to configure 2-279, 2-281
setting a CoS value for Layer 2 packets 2-386
setting drop threshold for Layer 2 packets 2-387
setting the interface type 2-1055
interface speed
configuring interface speed 2-1023
interface transceiver
displaying diagnostic data 2-724
internal VLAN allocation
configuring 2-1128
default setting 2-1128
displaying allocation information 2-961
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-246
IP address of remote ANCP server, setting 2-17
IP ARP
applying ARP ACL to VLAN 2-288
clearing inspection statistics 2-106
clearing status of log buffer 2-105
controlling packet logging 2-299
enabling dynamic inspection 2-297
limit rate of incoming requests 2-290
set per-port config trust state 2-294
showing status of dynamic ARP inspection 2-731
showing status of log buffer 2-734
IPC
debugging IPC activities 2-154
IP DHCP Snooping
See DHCP snooping
IP header validation
disabling 2-345
enabling 2-345
IP interfaces
displaying usability status 2-756
IP multicast
displaying multicast routing table information 2-762
IP multicast addresses 2-480
ip multicast multipath command 2-338
IP packets
enable DSCP rewrite 2-579
IP phone and standard desktop
enabling Cisco-recommended features 2-420
IP Port Security
enabling 2-346
IP source binding
adding or deleting 2-342
displaying bindingstagging 2-767
IP source guard
debugging messages 2-157
displaying configuration and filters 2-768
enabling on DHCP snooping 2-346
IPv4 statistics, enabling collection 2-137
IPv6 MLD
configuring queries 2-363, 2-365
configuring snooping last-listener-query-intervals 2-365
configuring snooping listener-message-suppression 2-367
configuring snooping robustness-variables 2-368
configuring tcn topology change notifications 2-370
counting snooping last-listener-queries 2-363
displaying information 2-781
displaying ports for a switch or VLAN 2-783
displaying querier information 2-784
enabling snooping 2-361
enabling snooping on a VLAN 2-371
IPv6 statistics, enabling collection 2-137
ip wccp check services all command 2-353
ip wccp command 2-350
ip wccp group-address command 2-350
ip wccp group-list command 2-350
ip wccp group-listen command 2-355
ip wccp password command 2-350, 2-352
ip wccp redirect command 2-357
ip wccp redirect exclude in command 2-359
ip wccp redirect-list command 2-350
ISSU
canceling process 2-373
configuring rollback timer 2-383
displaying capability 2-786
displaying client information 2-788
displaying compatibility matrix 2-790
displaying endpoint information 2-795
displaying entities 2-796
displaying FSM session 2-797
displaying messages 2-798
displaying negotiated 2-800
displaying rollback-timer 2-801
displaying session information 2-802
displaying software version 2-803
displaying state 2-803
forcing switchover to standby supervisor engine 2-381
loading new image 2-377
starting process 2-379
stopping rollback timer 2-375
J
Jumbo frames
enabling jumbo frames 2-479
L
LACP
deselecting channeling protocol 2-89
enabling LACP on an interface 2-89
setting channeling protocol 2-89
lacp port-priority command 2-391
lacp system-priority command 2-392
Layer 2
displaying ACL configuration 2-820
Layer 2 interface type
specifying a nontrunking, nontagged single VLAN interface 2-1055
specifying a trunking VLAN interface 2-1055
Layer 2 protocol ports
displaying 2-805
Layer 2 protocol-tunnel
error detection for 2-246
Layer 2 protocol tunneling error recovery 2-389
Layer 2 switching
enabling voice VLANs 2-1042, 2-1043, 2-1045, 2-1047, 2-1048
modifying switching characteristics 2-1042, 2-1043, 2-1045, 2-1047, 2-1048
Layer 2 traceroute
IP addresses 2-1091
Layer 3 interface, assign counters 2-137
Layer 3 switching
displaying information about an adjacency table 2-640
displaying port status 2-722
displaying status of native VLAN tagging 2-722
license right-to-use activate command 2-393
license right-to-use deactivate command 2-394
link flap
error detection for 2-246
link-status event messages
disabling
globally 2-396, 2-399
on an interface 2-397, 2-400
enabling
globally 2-396, 2-399
on an interface 2-397, 2-400
LLDP
enabling power negotiation 2-395
lldp tlv-select power-management command 2-395
log buffer
show status 2-734
logging
controlling IP ARP packets 2-299
loopback error
detection for 2-246
M
MAB, display information 2-817
MAB, enable and configure 2-402
mab command 2-402
MAC Access Control Lists
See MAC ACLs
MAC ACLs
defining extended MAC access list 2-404
displaying MAC ACL information 2-957
naming an ACL 2-404
mac-address (virtual switch) command 2-407
MAC addresses
disabling MAC address learning per VLAN 2-413
displaying
notification settings 2-242, 2-780, 2-831
MAC address filtering
configuring 2-417
disabling 2-417
enabling 2-417
MAC address learning on a VLAN, enabling 2-413
MAC address table
adding static entries 2-445
clearing dynamic entries 2-118, 2-120
configuring aging time 2-407, 2-409
displaying dynamic table entry information 2-827
displaying entry count 2-825
displaying information 2-821
displaying interface-based information 2-829
displaying multicast information 2-832
displaying notification information 2-834
displaying protocol-based information 2-836
displaying static table entry information 2-838
displaying the MAC address aging time 2-823
displaying VLAN-based information 2-841
enabling authentication bypass 2-222
enabling notifications 2-415
learning in the protocol buckets 2-410
removing static entries 2-445
mac address-table learning vlan command 2-413
MAC address tables
adding static entries 2-417
deleting secure or specific addresses 2-125
disabling IGMP snooping on static MAC addresses 2-417
removing static entries 2-417
mac-address-table static 2-417
MAC address unicast filtering
dropping unicast traffic 2-417
MAC authentication bypass (MAB), display information 2-817
MAC authorization bypass(MAB), enable and configure 2-402
macro
displaying descriptions 2-444
macro auto global processing command 2-426, 2-428, 2-431, 2-433, 2-435, 2-437, 2-439, 2-441, 2-843
macro auto monitor command 2-438
macro keywords
help strings 2-2
macros
adding a global description 2-444
cisco global 2-442
system-cpp 2-443
mapping secondary VLANs to MST instance 2-572
mapping VLAN(s) to an MST instance 2-277
match (class-map configuration) command 2-14, 2-189, 2-191, 2-193, 2-195, 2-448, 2-575, 2-1030, 2-1032, 2-1034, 2-1036, 2-1040
maximum transmission unit (MTU)
displaying the system MTU setting 2-947
setting the maximum Layer 2 payload size 2-1082
MD5
verifying MD5 signature 2-1112
message digest 5
See MD5
MFIB
clearing ip mfib counters 2-114
clearing ip mfib fastdrop 2-115
displaying all active MFIB routes 2-759
displaying MFIB fastdrop table entries 2-761
enabling IP MFIB fastdrops 2-337
MLD
configuring snooping last-listener-query-intervals 2-365
configuring snooping listener-message-suppression 2-367
configuring snooping robustness-variables 2-368
configuring topology change notifications 2-370
counting snooping last-listener-queries 2-363
enabling snooping 2-361
enabling snooping on a VLAN 2-371
MLD snooping
displaying 2-784
mode, MVR 2-480
modes
access-group 2-6
show access-group interface 2-553, 2-639, 2-906
switching between PVST+, MST, and Rapid PVST 2-1000
See also command modes
module password clearing 2-101
module reset
resetting a module by toggling the power 2-266
monitor capture {access-list | class-map} command 2-460
monitor capture mycap match command 2-467
monitor capture start command 2-469
--More-- prompt
filter 1-6
search 1-7
MST
designating the primary and secondary root 2-1009
displaying MST protocol information 2-935
displaying region configuration information 2-935
displaying spanning tree information 2-935
entering MST configuration submode 2-1003
setting configuration revision number 2-608
setting path cost and port priority for instances 2-1001
setting the forward delay timer for all instances 2-1005
setting the hello-time delay timer for all instances 2-1006
setting the max-age timer for all instances 2-1007
setting the MST region name 2-486
specifying the maximum number of hops 2-1008
switching between PVST+ and Rapid PVST 2-1000
using the MST configuration submode revision command 2-608
using the submode name command 2-486
MTU
displaying global MTU settings 2-947
multi-auth, setting 2-30
Multicase Listener Discovery
See MLD
multicast
enabling storm control 2-1028
show ancp 2-642
multicast/unicast packets
prevent forwarding 2-1054
Multicast Forwarding Information Base
See MFIB
multicast group address, MVR 2-483
multicast VLAN, MVR 2-480
multicast VLAN registration
See MVR
multi-domain, setting 2-30
multiple-character patterns 1-8
Multiple Spanning Tree
See MST
MVR
configuring 2-480
configuring interfaces 2-483
displaying 2-863
displaying interface information 2-864
members, displaying 2-866
mvr (global configuration) command 2-480
mvr (interface configuration) command 2-483
mvr vlan group command 2-484
N
native VLAN
controlling tagging of traffic 2-1075
displaying ports eligible for native tagging 2-959
displaying ports eligible for tagging 2-959
enabling tagging on 802.1Q trunk ports 2-1123
specifing the tagging of traffic 2-1076
NetFlow
enabling NetFlow statistics 2-340
including infer fields in routing statistics 2-340
netflow-lite exporter command 2-487
netflow-lite monitor command 2-489
netflow-lite sampler command 2-491
next-hop
displaying CEF VLAN information 2-736
nmsp attachment suppress command 2-494
nmsp command 2-493
no form of a command, using 1-6
NVRAM
debugging NVRAM activities 2-161
O
open access on a port, enabling 2-32
options timeout (netflow-lite exporter submode) command 2-252, 2-495
output
pattern searches 1-7
P
packet counters (statistics)
clear for PPPoE Intermediate Agent 2-127
packet counters, display for PPPoE Intermediate Agent 2-904
packet forwarding
prevent unknown packets 2-1054
packet memory failure
direct switch action upon detection 2-207
packet memory test
bootup, displaying results 2-674, 2-676
ongoing, displaying results 2-678
packet-offset (netflow-lite sampler submode) command 2-497
packet rate (netflow-lite sampler submode) command 2-499
packet-section size (netflow-lite sampler submode command 2-501
PACL
access-group mode 2-6
paging prompt
see --More-- prompt
PAgP
clearing port channel information 2-124
debugging PAgP activity 2-162
deselecting channeling protocol 2-89
displaying port channel information 2-876, 2-878
hot standby mode
returning to defaults 2-504
selecting ports 2-504
input interface of incoming packets
learning 2-503
returning to defaults 2-503
setting channeling protocol 2-89
parentheses 1-11
password
clearing on an intelligent line module 2-101
establishing enhanced password security 2-1110
setting username 2-1110
PBR
displaying route maps 1-xxiv
redistributing route maps 1-xxiv
PM activities
debugging 2-165
disabling debugging 2-165
PoE
error detection for 2-246
PoE policing
configure on an interface 2-541
PoE policing and monitoring
displaying status 2-903
police (percent) command 2-515
police (two rates) command 2-517, 2-519
police command 2-510
policing, configure PoE 2-541
policing and monitoring status
displaying PoE 2-903
Policy Based Routing
See PBR
policy maps
creating 2-523
marking 2-620
See also QoS, hierarchical policies
traffic classification
defining the class
defining trust states 2-1098
port, dual-capable
selecting the connector 2-457
Port Aggregation Protocol
See PAgP
port-based authentication
displaying debug messages 2-150
displaying statistics and status 2-680
enabling 802.1X 2-226
host modes 2-219
manual control of authorization state 2-226
periodic re-authentication
enabling 2-229
re-authenticating 802.1X-enabled ports 2-228
switch-to-client frame-retransmission number 2-224
port channel
accessing 2-283
creating 2-283
displaying information 2-876, 2-878
load distribution method
resetting to defaults 2-525
setting 2-525
port-channel standalone-disable command 2-527
port control, changing from unidirectional or bidirectional 2-23
port-control value, configuring 2-36
port range
executing 2-284
port security
debugging ports security 2-166
deleting secure or specific addresses 2-125
displaying settings for an interface or switch 2-889
enabling 2-1060
filter source IP and MAC addresses 2-346
setting action upon security violation 2-1060
setting the rate limit for bad packets 2-1060
sticky port 2-1060
Port Trust Device
displaying 2-909
port types, MVR 2-483
power efficient-ethernet auto command 2-533
power inline four-pair forced command 2-538
power inline logging global command 2-540
power negotiation through LLDP, enabling 2-395
power status
displaying inline power 2-895
displaying power status 2-895
power supply
configuring combined and redundant power on the Catalyst 4507R 2-528
configuring inline power 2-534
configuring power consumption 2-528
displaying the SEEPROM 2-700
setting inline power state 2-532
PPPoE Discovery
enable vendor-tag stripping on packetsPPPoE Server
enable vendor-tag stripping on Discovery packets 2-562
PPPoE Discovery packets, limit rate arriving on an interfsce 2-560
PPPoE Intermediate Agent
clear statistics (packet counters) 2-127
debugging 2-167
pppoe intermediate-agent
enable intermediate agent on a switch 2-552
enable on an interface VLAN range 2-555
enable PPPoE Intermediate Agent on an interface 2-553
enable vendor-tag stripping of Discovery packets 2-562
format-type (global) 2-556
limit rate of PPPoE Discovery packets 2-560
set circuit-id or remote-id for an interface 2-558
set circuit-id or remote-id for an interface VLAN range 2-559
set trust configuration on an interface 2-560, 2-561
PPPoE Intermediate Agent, display configuration and statistics (packet counters) 2-904
priority command 2-563
priority-queue command 2-139
Private VLAN
See PVLANs
privileged EXEC mode, summary 1-5
prompts
system 1-5
protocol tunneling
configuring encapsulation rate 2-389
disabling 2-384
displaying port information 2-805
enabling 2-384
setting a CoS value for Layer 2 packets 2-386
setting a drop threshold for Layer 2 packets 2-387
PVLANs
configuring isolated, primary, and community PVLANs 2-565
controlling tagging of native VLAN traffic 2-1075
disabling sticky-ARP 2-343
displaying map information for VLAN SVIs 2-719
displaying PVLAN information 2-965
enabling interface configuration mode 2-1055
enabling sticky-ARP 2-343
mapping VLANs to the same SVI 2-569
specifying host ports 2-1055
specifying promiscuous ports 2-1055
PVST+
switching between PVST and MST 2-1000
Q
QoS
account Layer 2 encapsulation 2-577
attaching a policy-map to an interface 2-611
automatic configuration 2-44, 2-48, 2-52, 2-56, 2-60, 2-64, 2-67
class maps
creating 2-95
defining the match criteria 2-448
clearing aggregate counters 2-128
configuring auto 2-64
defining a named aggregate policer 2-579
displaying aggregate policer information 2-907
displaying auto configuration 2-650
displaying class maps information 2-664
displaying configuration information 2-650
displaying configurations of policies 2-884
displaying policy map information 2-880, 2-887
displaying QoS information 2-906
displaying QoS map information 2-911
egress queue-sets
enabling the priority queue 2-139
enabling global configuration mode 2-56, 2-576
enabling per-VLAN QoS for a Layer 2 interface 2-581
hierarchical policies
average-rate traffic shaping on a class 2-633
bandwidth allocation for a class 2-75, 2-94
creating a service policy 2-614
marking 2-620
strict priority queueing (LLQ) 2-563
policy maps
creating 2-523
marking 2-620
traffic classifications
trust states 2-1098
setting the trust state 2-579
specifying flow-based match criteria 2-451
Supervisor Engine 6-E
setting CoS 2-622
setting DSCP 2-625
setting precedence values 2-628
setting QoS group identifiers 2-631
QoS CoS
configuring for tunneled Layer 2 protocol packets 2-386
quality of service
See QoS
querytime, MVR 2-480
question command 1-1
queueing information
displaying 2-909
queue limiting
configuring packet limits 2-581
R
Rapid PVST
switching between PVST and MST 2-1000
re-authenticating 802.1X-enabled ports 2-228
re-authentication
periodic 2-229
set the time 2-231
reauthentication, enabling 2-35
reboots
restoring bindings across 2-305
receiver ports, MVR 2-483
recovery mechanism
display 2-100, 2-689
redundancy
accessing the main CPU 2-583
changing from active to standby supervisor engine 2-587
displaying information 2-913
displaying ISSU config-sync failure information 2-917
displaying redundancy facility information 2-913
displaying RF client list 2-913
displaying RF operational counters 2-913
displaying RF states 2-913
enabling automatic synchronization 2-72
forcing switchover to standby supervisor engine 2-587
mismatched command listing 2-585
set the mode 2-458
synchronizing the route processor configurations 2-445
related documentation 1-xxiv
remote-id, setting for an interface 2-558
remote-id, setting for an interface VLAN range 2-559
remote SPAN
See RSPAN
renew commands
ip dhcp snooping database 2-591
rep admin vlan command 2-592
rep block port command 2-593
rep lsl-age-timer command 2-597
rep preempt delay command 2-599
rep preempt segment command 2-601
rep segment command 2-602
rep stcn command 2-605
resetting PVLAN trunk
setting switchport to trunk 2-1055
retry failed authentiation, configuring 2-26
rj45 connector, selecting the connector 2-457
ROM monitor mode
summary 1-6
Route Processor Redundancy
See redundancy
router, set to become ANCP client 2-18
RPF
disabling IPv4 exists-only checks 2-348
enabling IPv4 exists-only checks 2-348
RPR
set the redundancy mode 2-458
RSPAN
converting VLAN to RSPAN VLAN 2-590
displaying list 2-967
S
sampler (netflow-lite monitor submode) command 2-609
saving configuration changes 1-11
secure address, configuring 2-528
secure ports, limitations 2-1061
server (AAA) alive actions, configuring 2-26
server (AAA) dead actions, configuring 2-26
service-policy command (policy-map class) 2-614
session classification, defining 2-30
set the redundancy mode 2-458
sfp connector, selecting the connector 2-457
shape command 2-633
shell trigger command 2-637, 2-923
show ancp multicast 2-642
show authentication interface command 2-644
show authentication registration command 2-644
show authentication sessions command 2-644
show capture command 2-855
show commands
filtering parameters 1-7
searching and filtering 1-6
show platform commands 1-11
show device-sensor cache command 2-666
show interfaces (virtual switch) command 2-709
show interfaces counters (virtual switch) command 2-713
show ipv6 snooping counters command 2-780
show ip wccp command 2-771
show ip wccp detail command 2-771
show ip wccp view command 2-771
show license right-to-use command 2-811
show mab command 2-817
show mac address-table learning command 2-242, 2-831
show macro auto monitor device command 2-846, 2-848, 2-850
show monitor capture command 2-857, 2-859
show monitor capture file command 2-859
show mvr command 2-863
show mvr interface command 2-864
show mvr members command 2-866
show netflow-lite exporter command 2-868
show netflow-lite monitor command 2-870
show netflow-lite sampler command 2-872
show nmsp command 2-873
show pagp dual-active (virtual switch) command 2-878
show switch virtual (virtual switch) command 2-941
show vlan group command 2-960
show vlan mapping command 2-962
show vslp (virtual switch) command 2-970
Simple Network Management Protocol
See SNMP
single-character patterns
special characters 1-7
single-host, setting 2-30
slaveslot0
displaying information on the standby supervisor 2-926
slot0
displaying information about the system 2-928
SNMP
debugging spanning tree activities 2-170
ifIndex persistence
clearing SNMP ifIndex commands 2-977
compress SNMP ifIndex table format 2-984
disabling globally 2-983
disabling on an interface 2-979
enabling globally 2-983
enabling on an interface 2-979
informs
disabling 2-981
enabling 2-981
traps
configuring to send when storm occurs 2-1026
disabling 2-981
enabling 2-981
mac-notification
adding 1
removing 1
source (netflow-lite exporter submode) command 2-986
source ports, MVR 2-483
SPAN commands
configuring a SPAN session to monitor 2-474
displaying SPAN session information 2-947, 2-1028
SPAN enhancements
displaying status 2-855
Spanning Tree Protocol
See STP
SPAN session
displaying session information 2-855
filter ACLs 2-474
specify encap type 2-474
turn off host learning based on ingress packets 2-474
special characters
anchoring, table 1-10
SSO 2-458
standard desktop
enabling Cisco-recommended features 2-418
standard desktop and Cisco IP phone
enabling Cisco-recommended features 2-420
sticky address, configuring 2-529
sticky-ARP
disabling on PVLANs 2-343
enabling on PVLANs 2-343
sticky port
deleting 2-125
enabling security 2-1060
storm control
configuring for action when storm occurs 2-1026
disabling suppression mode 2-687
displaying settings 2-938
enabling 2-1026
enabling broadcast 2-1026, 2-1028
enabling multicast 2-1026, 2-1028
enabling suppression mode 2-687
enabling timer to recover from error disable 2-249
enabling unicast 2-1026, 2-1028
multicast, enabling 2-1028
setting high and low levels 2-1026
setting suppression level 2-687
STP
configuring link type for a port 2-998
configuring tunneling encapsulation rate 2-389
debugging all activities 2-170
debugging spanning tree activities 2-170
debugging spanning tree BackboneFast events 2-172
debugging spanning tree UplinkFast 2-175
detecting misconfiguration 2-995
displaying active interfaces only 2-930
displaying BackboneFast status 2-930
displaying bridge status and configuration 2-930
displaying spanning tree debug messages 2-170
displaying summary of interface information 2-930
enabling BPDU filtering by default on all PortFast ports 2-1014
enabling BPDU filtering on an interface 2-991
enabling BPDU guard by default on all PortFast ports 2-1016
enabling BPDU guard on an interface 2-993
enabling extended system ID 2-996
enabling loop guard as a default on all ports 2-999
enabling PortFast by default on all access ports 2-1017
enabling PortFast mode 2-1012
enabling protocol tunneling for 2-384
enabling root guard 2-997
enabling spanning tree BackboneFast 2-990
enabling spanning tree on a per VLAN basis 2-1021
enabling spanning tree UplinkFast 2-1019
setting an interface priority 2-1018
setting drop threshold for 2-387
setting pathcost 2-994
setting the default pathcost calculation method 2-1011
subinterface configuration mode, summary 1-6
SVI
creating a Layer 3 interface on a VLAN 2-286
switch (virtual switch) command 2-1042
switch convert mode (virtual switch) command 2-1043
switching characteristics
excluding from link-up calculation 2-1052
modifying 2-1052
returning to interfaces
capture function 2-1052
switchport 2-1076
switchport interfaces
displaying status of Layer 3 port 2-722
displaying status of native VLAN tagging 2-722
switchport vlan mapping command 2-1080
switch shim
debugging 2-173
disabling debugging 2-173
switch to router connection
enabling Cisco-recommended features 2-422
switch to switch connection
enabling Cisco-recommended features 2-424
switch virtual domain (virtual switch) command 2-1045
switch virtual interface
See SVI
switch virtual link (virtual switch) command 2-1047
sw-vlan 2-176
system prompts 1-5
T
Tab key
command completion 1-1
tables
characters with special meaning 1-7
mac access-list extended subcommands 2-404
multipliers 1-9
relationship between duplex and speed commands 2-1024
show cable-diagnostics tdr command output fields 2-655
show cdp neighbors detail field descriptions 2-663
show cdp neighbors field descriptions 2-662
show ip dhcp snooping command output 2-645, 2-817
show ip interface field descriptions 2-757
show policy-map control-plane field descriptions 2-883
show vlan command output fields 2-966
show vtp command output fields 2-974
special characters 1-9
special characters used for anchoring 1-10
speed command options 2-451, 2-1024
valid interface types 2-279, 2-281
TAC
displaying information useful to TAC 2-948
TCAM
debugging spanning tree activities 2-170
TDR
displaying cable diagnostic test results 2-654
test condition of copper cables 2-1086
temperature readings
displaying information 2-684
template data timeout (netflow-lite exporter submode) command 2-1084
timer information 2-689
traffic monitor
display status 2-817
traffic shaping
enable on an interface 2-635
transport udp (netflow-lite exporter submode) command 2-1094
transport udp load-share (netflow-lite exporter submode) command 2-1096
traps, enabling 2-981
trunk encapsulation
setting format 2-1076
trunk interfaces
displaying trunk interfaces information 2-729
trunk port, configuring VLAN mapping 2-1080
trunk ports, display VLAN mapping information 2-962
trust configuration, setting on an interface 2-560, 2-561
trust state
setting 2-294
ttl (netflow-lite exporter submode) command 2-1100
tunnel ports
displaying information about Layer 2 protocol 2-805
TX queues
allocating bandwidth 2-1102
returning to default values 2-1102
setting priority to high 2-1102
specifying burst size 2-1102
specifying traffic rate 2-1102
U
UDLD
displaying administrative and operational status 2-950
enabling by default on all fiber interfaces 2-1104
enabling on an individual interface 2-1106
preventing a fiber interface from being enabled 2-1106
resetting all shutdown ports 2-1108
setting the message timer 2-1104
Unidirectional Link Detection
See UDLD
unidirection port control, changing from bidirectional 2-23
unknown multicast traffic, preventing 2-1054
unknown unicast traffic, preventing 2-1054
user EXEC mode, summary 1-5
username
setting password and privilege level 2-1110
V
VACLs
access-group mode 2-6
applying VLAN access maps 2-1125
displaying VLAN access map information 2-957
specifying an action in a VLAN access map 2-13
specifying the match clause for a VLAN access-map sequence 2-446
using a VLAN filter 2-1125
VLAN
applying an ARP ACL 2-288
configuring 2-1114
configuring service policies 2-1119
converting to RSPAN VLAN 2-590
displaying CEF information 2-736
displaying CEF next-hop information 2-736
displaying information on switch interfaces 2-747, 2-751
displaying information on VLAN switch interfaces 2-754
displaying information sorted by group IP address 2-747, 2-751
displaying IP address and version information 2-747, 2-751
displaying Layer 2 VLAN information 2-953
displaying statistical information 2-853
displaying VLAN information 2-955
enabling dynamic ARP inspection 2-297
enabling Explicit Host Tracking 2-328
enabling guest per-port 2-217
enabling guest VLAN supplicant 2-210, 2-218
entering VLAN configuration mode 2-1119, 2-1121
native frames
enabling tagging on all 802.1Q trunk ports 2-1123
pruning the list for VTP 2-1076
setting the list of allowed 2-1076
VLAN, create or modify a group 2-1126
VLAN Access Control Lists
See VACLs
VLAN access map
See VACLs
VLAN database
resetting 2-607
VLAN debugging
limiting output 2-146
vlan group command 2-1126
VLAN groups, display VLANs mapped 2-960
VLAN link-up calculation
excluding a switch port 2-1052
including a switch port 2-1052
VLAN manager
debugging 2-176
disabling debugging 2-176
IOS file system error tests
debugging 2-177
disabling debugging 2-177
VLAN mapping
configuring 2-1080
displaying 2-962
VLAN mapping, configure on trunk port 2-1080
VLAN mapping on trunk ports, display information 2-962
VLAN Query Protocol
See VQP
VLAN query protocol (VQPC)
debugging 2-183
VLANs
clearing
counters 2-131
clearing hardware logic 2-103
configuring
internal allocation scheme 2-1128
displaying
internal VLAN allocation information 2-961
RSPAN VLANs 2-967
entering VLAN configuration mode 2-1121
VMPS
configuring servers 2-1132
reconfirming dynamic VLAN assignments 2-183, 2-1130
voice VLANs
enabling 2-1048
VoIP
configuring auto-QoS 2-64
VQP
per-server retry count 2-1131
reconfirming dynamic VLAN assignments 2-183, 2-1130
vrf (netflow-lite exporter submode) command 2-1134
VTP
configuring the administrative domain name 2-1139
configuring the device in VTP client mode 2-1138
configuring the device in VTP server mode 2-1142
configuring the device in VTP transparent mode 2-1143
configuring tunnel encapsulation rate 2-389
creating a VTP domain password 2-1140
displaying domain information 2-973
displaying statistics information 2-973
enabling protocol tunneling for 2-384
enabling pruning in the VLAN database 2-1141
enabling VTP version 2 mode 2-1144
modifying the VTP configuration storage file name 2-1137
set drop threshold for 2-387
VTP protocol code
activating debug messages 2-180
deactivating debug messages 2-180
W
Webauth fallback, enabling 2-29