Table Of Contents
A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W -
Index
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 2-84
MAC, displaying 2-303
matching for QoS classification 2-154
access mode 2-441
access ports 2-441
ACEs 2-55, 2-181
ACLs
as match criteria for QoS classes 2-154
deny 2-53
displaying 2-231
for non-IP protocols 2-136
IP 2-84
on Layer 2 interfaces 2-84
permit 2-179
action command 2-5
address aliasing 2-170
aggregate policers
applying 2-186
creating 2-188
displaying 2-335
QoS 2-189
aggregate-port learner 2-175
allowed VLANs 2-456
archive download-sw command 2-7
archive tar command 2-10
archive upload-sw command 2-13
attaching policy maps to interfaces 2-214
audience xv
authorization state of controlled port 2-61
autonegotiation of duplex mode 2-69
B
bandwidth, configuring for QoS 2-15
bandwidth command 2-15
boot (boot loader) command A-2
boot boothlpr command 2-18
boot config-file command 2-19
boot enable-break command 2-20
boot helper command 2-21
boot helper-config file command 2-22
booting
Cisco IOS image 2-25
displaying environment variables 2-235
interrupting 2-20
manually 2-23
boot loader
accessing A-1
booting
Cisco IOS image A-2
helper image 2-21
directories
creating A-15
displaying a list of A-7
removing A-19
displaying
available commands A-12
memory heap utilization A-14
version A-26
environment variables
described A-20
displaying settings A-20
location of A-21
setting A-20
unsetting A-24
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-16, A-23
renaming A-17
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
loading helper images A-13
prompt A-1
resetting the system A-18
boot manual command 2-23
boot private-config-file command 2-24
boot system command 2-25
BPDU filtering, for spanning tree 2-384, 2-422
BPDU guard, for spanning tree 2-386, 2-422
broadcast storm control 2-431
burst bytes, in QoS policers 2-182, 2-188
C
cat (boot loader) command A-4
caution, description xvi
CBWFQ, configuring 2-15
channel-group command 2-26
channel-protocol command 2-30
child policy maps 2-216
class-based traffic shaping 2-229
class-based weighted fair queuing
See CBWFQ
class command 2-32
class-map command 2-34
class-map configuration mode 2-35
class maps
creating 2-34
defining the match criteria 2-155
displaying 2-239
matching in 2-34
class of service
See CoS
clear lacp command 2-38
clear mac address-table command 2-39
clear pagp command 2-40
clear policer cpu uni counters command 2-41
clear port-security command 2-42
clear spanning-tree counters command 2-44
clear spanning-tree detected-protocols command 2-45
clear vmps statistics command 2-47
command modes defined 1-1
committed information rate in QoS policers 2-182, 2-188
configuration, initial
See also getting started guide and hardware installation guide
configuration files
password recovery disable considerations A-1
specifying the name 2-19, 2-24
configuring multiple interfaces 2-80
conform-action command 2-48
control-plane policer 2-41
control-plane policer information, displaying 2-336
control-plane security 2-191
control plane statistics, clearing 2-41
conventions
command xv
for examples xvi
publication xv
text xv
copy (boot loader) command A-5
CoS
as match criteria for QoS groups 2-155
for QoS classification 2-218
setting value in policy maps 2-218
CPU ASIC statistics, displaying 2-240
CPU protection policers, displaying C-16
D
debug dot1x command B-2
debug etherchannel command B-3
debug interface command B-5
debug ip dhcp snooping command B-4
debug ip igmp filter command B-6
debug ip igmp max-groups command B-7
debug ip igmp snooping command B-8
debug lacp command B-9
debug mac-notification command B-10
debug matm command B-11
debug monitor command B-12
debug mvrdbg command B-13
debug nvram command B-14
debug pagp command B-15
debug platform acl command B-16
debug platform cpu-queues command B-17
debug platform dot1x command B-19
debug platform etherchannel command B-20
debug platform forw-tcam command B-21
debug platform ip dhcp command B-22
debug platform ip igmp snooping command B-23
debug platform led command B-25
debug platform matm command B-26
debug platform messaging application command B-27
debug platform phy command B-28
debug platform pm command B-30
debug platform policer cpu uni command B-32
debug platform port-asic command B-33
debug platform port-security command B-34
debug platform qos-acl-tcam command B-35
debug platform remote-commands command B-36
debug platform resource-manager command B-37
debug platform snmp command B-38
debug platform span command B-39
debug platform supervisor-asic command B-40
debug platform sw-bridge command B-41
debug platform tcam command B-42
debug platform udld command B-44
debug platform vlan command B-45
debug pm command B-46
debug port-security command B-48
debug qos-manager command B-49
debug spanning-tree bpdu command B-52
debug spanning-tree bpdu-opt command B-53
debug spanning-tree command B-50
debug spanning-tree mstp command B-54
debug spanning-tree switch command B-56
debug sw-vlan command B-58
debug sw-vlan ifs command B-60
debug sw-vlan notification command B-61
debug udld command B-63
debug vqpc command B-65
default policer configuration
NNIs C-18
UNIs C-17
define interface-range command 2-50
delete (boot loader) command A-6
delete command 2-52
deny command 2-53
detect mechanism, causes 2-70
DHCP snooping
accepting untrusted packets from edge switch 2-95
enabling
on a VLAN 2-101
option 82 2-93, 2-95
trust on an interface 2-99
error recovery timer 2-72
rate limiting 2-98
DHCP snooping binding database
binding file, configuring 2-91
bindings
adding 2-89
deleting 2-89
displaying 2-283
clearing database agent statistics 2-36
database agent, configuring 2-91
displaying
binding entries 2-283
database agent status 2-285, 2-287
renewing 2-210
differentiated service code point
See DSCP
dir (boot loader) command A-7
directories, deleting 2-52
documentation, related xvi
document conventions xv
dot1x default command 2-56
dot1x host-mode command 2-57
dot1x initialize command 2-58
dot1x max-req command 2-59, 2-60
dot1x port-control command 2-61
dot1x re-authenticate command 2-63
dot1x reauthentication command 2-64
dot1x system-auth-control command 2-65
dot1x timeout command 2-66
dropping packets, with ACL matches 2-5
DSCP
as match criteria for QoS groups 2-156
for QoS traffic marking 2-220
setting in policy maps 2-220
duplex command 2-68
dynamic-access ports
configuring 2-436
restrictions 2-437
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
E
EAP-request/identity frame
maximum number to send 2-60
response time before retransmitting 2-66
environment variables, displaying 2-235
errdisable detect cause command 2-70
errdisable recovery command 2-72
error conditions, displaying 2-259
error disable detection 2-70
error-disabled interfaces, displaying 2-270
EtherChannel
assigning Ethernet interface to channel group 2-26
creating port-channel logical interface 2-78
debug EtherChannel/PAgP, display B-3
debug platform-specific events, display B-20
displaying 2-263
interface information, displaying 2-270
LACP
clearing channel-group information 2-38
debug messages, display B-9
displaying 2-299
modes 2-26
port priority for hot-standby ports 2-127
restricting a protocol 2-30
system priority 2-129
load-distribution methods 2-195
PAgP
aggregate-port learner 2-175
clearing channel-group information 2-40
debug messages, display B-15
displaying 2-331
error detection for 2-70
error recovery timer 2-72
learn method 2-175
modes 2-26
physical-port learner 2-175
priority of interface for transmitted traffic 2-177
Ethernet controller, internal register display 2-242
Ethernet statistics, collecting 2-211
examples, conventions for xvi
exceed-action command 2-74
extended-range VLANs
and allowed VLAN list 2-456
configuring 2-475
extended system ID for STP 2-392
F
fan information, displaying 2-256
files, deleting 2-52
flash_init (boot loader) command A-9
flowcontrol command 2-76
format (boot loader) command A-10
forwarding packets, with ACL matches 2-5
forwarding results, display C-5
frame forwarding information, displaying C-5
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-231
help (boot loader) command A-12
host connection, port configuration 2-440
host ports, private VLANs 2-443
I
IEEE 802.1x
and switchport modes 2-441
violation error recovery 2-72
See also port-based authentication
IGMP filters
applying 2-104
debug messages, display B-6
IGMP groups, setting maximum 2-106
IGMP maximum groups, debugging B-7
IGMP profiles
creating 2-108
displaying 2-290
IGMP snooping
adding ports as a static member of a group 2-123
displaying 2-291, 2-295, 2-297
enabling 2-110
enabling the configurable-leave timer 2-112
enabling the Immediate-Leave feature 2-120
flooding query count 2-118
interface topology change notification behavior 2-119
multicast table 2-293
querier 2-114
query solicitation 2-118
report suppression 2-116
switch topology change notification behavior 2-118
images
See software images
Immediate-Leave feature, MVR 2-172
immediate-leave processing 2-120
initial configuration
See also getting started guide and hardware installation guide
input policy maps
and ACL classification 2-154
and aggregate policers 2-189
commands not supported in 2-193
configuration guidelines 2-193
interface command 2-83
interface configuration mode 1-2, 1-4
interface port-channel command 2-78
interface range command 2-80
interface-range macros 2-50
interfaces
assigning Ethernet interface to channel group 2-26
configuring 2-68
configuring multiple 2-80
creating port-channel logical 2-78
debug messages, display B-5
disabling 2-373
displaying the MAC address table 2-315
restarting 2-373
interface speed, configuring 2-429
internal registers, displaying 2-242, 2-249
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-70
error recovery timer 2-72
ip address command 2-86
IP addresses, setting 2-86
IP address matching 2-152
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 2-89
ip dhcp snooping command 2-88
ip dhcp snooping database command 2-91
ip dhcp snooping information option allow-untrusted command 2-95
ip dhcp snooping information option command 2-93
ip dhcp snooping information option format remote-id command 2-97
ip dhcp snooping limit rate command 2-98
ip dhcp snooping trust command 2-99
ip dhcp snooping verify command 2-100
ip dhcp snooping vlan command 2-101
ip dhcp snooping vlan information option format-type circuit-id string command 2-102
ip igmp filter command 2-104
ip igmp max-groups command 2-106
ip igmp profile command 2-108
ip igmp snooping command 2-110
ip igmp snooping last-member-query-interval command 2-112
ip igmp snooping querier command 2-114
ip igmp snooping report-suppression command 2-116
ip igmp snooping tcn command 2-118
ip igmp snooping tcn flood command 2-119
ip igmp snooping vlan immediate-leave command 2-120
ip igmp snooping vlan mrouter command 2-121
ip igmp snooping vlan static command 2-123
IP multicast addresses 2-169
IP precedence, as match criteria for QoS groups 2-158
IP source guard, displaying dynamic binding entries 2-283
ip ssh command 2-125
J
jumbo frames
See MTU
L
LACP
See EtherChannel
lacp port-priority command 2-127
lacp system-priority command 2-129
Layer 2 traceroute
IP addresses 2-466
MAC addresses 2-463
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 2-70
error recovery timer 2-72
load_helper (boot loader) command A-13
load-distribution methods for EtherChannel 2-195
logging event command 2-131
logging file command 2-132
logical interface 2-78
loopback error
detection for 2-70
recovery timer 2-72
loop guard, for spanning tree 2-394, 2-398
M
mac access-group command 2-134
MAC access-groups, displaying 2-303
MAC access list configuration mode 2-136
mac access-list extended command 2-136
MAC access lists 2-53
MAC addresses
displaying
aging time 2-309
all 2-307
dynamic 2-313
notification settings 2-317
number of addresses in a VLAN 2-311
per interface 2-315
per VLAN 2-321
static 2-319
static and dynamic entries 2-305
dynamic
aging time 2-138
deleting 2-39
displaying 2-313
enabling MAC address notification 2-139
matching 2-152
static
adding and removing 2-141
displaying 2-319
dropping on an interface 2-142
tables 2-307
MAC address notification, debugging B-10
mac address-table aging-time 2-134, 2-152
mac address-table aging-time command 2-138
mac address-table notification command 2-139
mac address-table static command 2-141
mac address-table static drop command 2-142
macro description command 2-146
macro global command 2-147
macro global description command 2-149
macro name command 2-150
macros
adding a description 2-146
adding a global description 2-149
applying 2-147
creating 2-150
displaying 2-333
interface range 2-50, 2-80
specifying parameter values 2-147
tracing 2-147
manual
audience xv
purpose of xv
mapping tables, QoS 2-460
maps
class
creating 2-34
VLAN
creating 2-478
defining 2-152
displaying 2-369
match access-group command 2-154
match cos command 2-155
match ip dscp command 2-156
match ip precedence command 2-158
match qos-group command 2-160
maximum transmission unit
See MTU
mdix auto command 2-162
memory (boot loader) command A-14
mkdir (boot loader) command A-15
mode, MVR 2-169
modes, commands 1-1
monitor session command 2-164
more (boot loader) command A-16
MSTP
displaying 2-350
interoperability 2-45
link type 2-396
MST region
aborting changes 2-402
applying changes 2-402
configuration name 2-402
configuration revision number 2-402
current or pending display 2-402
displaying 2-350
MST configuration mode 2-402
VLANs-to-instance mapping 2-402
path cost 2-404
protocol mode 2-400
restart protocol migration process 2-45
root port
loop guard 2-394
preventing from becoming designated 2-394
restricting which can be root 2-394
root guard 2-394
root switch
affects of extended system ID 2-392
hello-time 2-407, 2-418
interval between BDPU messages 2-409
interval between hello BPDU messages 2-407, 2-418
max-age 2-409
maximum hop count before discarding BPDU 2-411
port priority for selection of 2-413
primary or secondary 2-418
switch priority 2-416
state changes
blocking to forwarding state 2-424
enabling BPDU filtering 2-384, 2-422
enabling BPDU guard 2-386, 2-422
enabling Port Fast 2-422, 2-424
forward-delay time 2-406
length of listening and learning states 2-406
rapid transition to forwarding 2-396
shutting down Port Fast-enabled ports 2-422
state information display 2-349
MTU
configuring size 2-458
displaying global setting 2-357
multicast group address, MVR 2-172
multicast groups, MVR 2-170
multicast router learning method 2-121
multicast router ports, configuring 2-121
multicast storm control 2-431
multicast VLAN, MVR 2-169
multicast VLAN registration
See MVR
multiple hosts on authorized port 2-57
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 2-170
configuring 2-169
configuring interfaces 2-172
debug messages, display B-13
displaying 2-325
displaying interface information 2-327
members, displaying 2-329
mvr (global configuration) command 2-169
mvr (interface configuration) command 2-172
mvr vlan group command 2-173
N
native VLANs 2-456
network node interface 2-197
nonegotiate, speed 2-429, 2-430
non-IP protocols
denying 2-53
forwarding 2-179
non-IP traffic access lists 2-136
non-IP traffic forwarding
denying 2-53
permitting 2-179
normal-range VLANs 2-475
note, description xvi
no vlan command 2-475
O
output policy maps
and QoS group classification 2-160
and traffic shaping 2-229
commands not supported in 2-193
configuration guidelines 2-193
priority in 2-200
queue limit in 2-205
P
PAgP
See EtherChannel
pagp learn-method command 2-175
pagp port-priority command 2-177
parent policy maps 2-216
password-recovery mechanism, enabling and disabling 2-212
permit command 2-179
per-VLAN spanning-tree plus
See STP
physical-port learner 2-175
PID, displaying 2-280
PIM-DVMRP, as multicast router learning method 2-121
police
multiple conform actions for a class 2-48
multiple exceed actions for a class 2-74
with priority 2-182
police aggregate command 2-186
police command 2-182
policer aggregate command 2-188
policer configuration
default for NNIs C-18
default for UNIs C-17
policer cpu uni command 2-191
policers
aggregate 2-186, 2-188
for CPU protection 2-191
individual 2-182
policy-map class, configuring multiple actions 2-48, 2-74
policy-map class configuration mode 2-32
policy-map class police configuration mode 2-48, 2-184
policy-map command 2-192
policy-map configuration mode 2-192
policy maps
and CoS classification 2-155
and DSCP classification 2-156
and IP precedence classification 2-158
and policing 2-184
applying 2-214
applying to an interface 2-193, 2-214, 2-226
child 2-216
creating 2-192
displaying 2-338
hierarchical 2-216
parent 2-216
policers
for a single class 2-182
for multiple classes 2-186, 2-188, 2-191, 2-216
setting priority 2-199
setting QoS group identifier 2-224
traffic classification, defining 2-32
traffic marking
setting CoS values 2-218
setting DSCP values 2-220
setting IP precedence values 2-222
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 2-3
debug messages, display B-2
enabling 802.1x
globally 2-65
per interface 2-61
host modes 2-57
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-58
manual control of authorization state 2-61
multiple hosts on authorized port 2-57
periodic re-authentication
enabling 2-64
time between attempts 2-66
quiet period between failed authentication exchanges 2-66
re-authenticating 802.1x-enabled ports 2-63
resetting configurable 802.1x parameters 2-56
switch-to-authentication server retransmission time 2-66
switch-to-client frame-retransmission number2-59to 2-60
switch-to-client retransmission time 2-66
port-channel load-balance command 2-195
Port Fast, for spanning tree 2-424
port ranges, defining 2-50
ports, debugging B-46
ports, protected 2-454
port security
aging 2-450
debug messages, display B-48
enabling 2-446
violation error recovery 2-72
port shaping 2-230
port-type command 2-197
port types, MVR 2-172
power information, displaying 2-256
precedence
for QoS traffic marking 2-222
setting in policy maps 2-222
priority command 2-199
priority queuing, QoS 2-199
priority with police, QoS 2-199
private-vlan command 2-202
private VLANs
association 2-452
configuring 2-202
configuring ports 2-443
displaying 2-364
host ports 2-443
mapping
configuring 2-452
promiscuous ports 2-443
privileged EXEC mode 1-2, 1-3
product identification information, displaying 2-280
promiscuous ports, private VLANs 2-443
PVST+
See STP
Q
QoS
aggregate policers
applying 2-186
creating 2-188
displaying 2-335
class maps
creating 2-34
defining the match criteria 2-155
displaying 2-239
displaying statistics for 2-338, C-24
policy maps
applying an aggregate policer 2-186, 2-188, 2-191, 2-216
applying to an interface 2-214, 2-226
creating 2-192
defining policers 2-182
displaying policy maps 2-338
setting CoS values 2-218
setting DSCP values 2-220
setting IP precedence values 2-222
setting QoS group identifier 2-224
traffic classifications 2-32
table maps
configuring 2-460
displaying 2-358
QoS groups
as match criteria 2-160
for QoS traffic classification 2-224
setting in policy maps 2-224
QoS match criteria
ACLs 2-154
CoS value 2-155
DSCP value 2-156
precedence value 2-158
QoS group number 2-160
quality of service
See QoS
querytime, MVR 2-169
queue-limit command 2-205
R
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
re-authenticating 802.1x-enabled ports 2-63
re-authentication
periodic 2-64
time between attempts 2-66
receiver ports, MVR 2-172
receiving flow-control packets 2-76
recovery mechanism
causes 2-72
display 2-237, 2-257, 2-261
timer interval 2-72
remote-span command 2-208
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command A-17
renew ip dhcp snooping database command 2-210
reset (boot loader) command A-18
rmdir (boot loader) command A-19
rmon collection stats command 2-211
root guard, for spanning tree 2-394
RSPAN
configuring 2-164
displaying 2-323
filter RSPAN traffic 2-164
remote-span command 2-208
sessions
add interfaces to 2-164
displaying 2-323
start new 2-164
S
SDM templates
displaying 2-347
secure ports, limitations 2-448
sending flow-control packets 2-76
service password-recovery command 2-212
service policy (policy-map class configuration) command 2-216
service-policy interface configuration command 2-214
service-policy policy-map class configuration command 2-216
set (boot loader) command A-20
set cos command 2-218
set dscp command 2-220
set precedence command 2-222
set qos-group command 2-224
setup command 2-226
SFPs, displaying information about 2-280
shape average command 2-229
show access-lists command 2-231
show aggregate-policer command 2-358
show archive status command 2-234
show boot command 2-235
show class-map command 2-239
show controllers cpu-interface command 2-240
show controllers ethernet-controller command 2-242
show controllers tcam command 2-249
show controllers utilization command 2-251
show controller utilization command 2-251
show dot1x command 2-253
show env command 2-256
show errdisable detect command 2-257
show errdisable flap-values command 2-259
show errdisable recovery command 2-261
show etherchannel command 2-263
show flowcontrol command 2-266
show idprom command 2-268
show interfaces command 2-270
show interfaces counters command 2-278
show inventory command 2-280
show ip dhcp snooping binding command 2-283
show ip dhcp snooping command 2-282
show ip dhcp snooping database command 2-285, 2-287
show ip igmp profile command 2-290
show ip igmp snooping command 2-291
show ip igmp snooping command querier detail 2-297
show ip igmp snooping groups command 2-293
show ip igmp snooping mrouter command 2-295
show ip igmp snooping querier command 2-297
show ip igmp snooping querier detail command 2-297
show lacp command 2-299
show mac access-group command 2-303
show mac address-table address command 2-307
show mac address-table aging time command 2-309
show mac address-table command 2-305
show mac address-table count command 2-311
show mac address-table dynamic command 2-313
show mac address-table interface command 2-315
show mac address-table notification command 2-317
show mac address-table static command 2-319
show mac address-table vlan command 2-321
show monitor command 2-323
show mvr command 2-325
show mvr interface command 2-327
show mvr members command 2-329
show pagp command 2-331
show parser macro command 2-333
show platform acl command C-2
show platform configuration command C-3
show platform etherchannel command C-4
show platform forward command C-5
show platform igmp snooping command C-7
show platform layer4op command C-9
show platform mac-address-table command C-10
show platform messaging command C-11
show platform monitor command C-12
show platform mvr table command C-13
show platform pm command C-14
show platform policer cpu command C-16
show platform port-asic command C-19
show platform port-security command C-23
show platform qos command C-24
show platform resource-manager command C-27
show platform snmp counters command C-29
show platform spanning-tree synchronization command C-30
show platform stp-instance command C-31
show platform tcam command C-32
show platform vlan command C-35
show policer aggregate command 2-335
show policer cpu uni command 2-336
show policy-map command 2-338
show policy-map interface output fields 2-341
show port security command 2-342
show port-type command 2-345
show sdm prefer command 2-347
show spanning-tree command 2-349
show storm-control command 2-355
show system mtu command 2-357
show udld command 2-360
show version command 2-362
show vlan access-map command 2-369
show vlan command 2-364
show vlan command, fields 2-366
show vlan filter command 2-370
show vmps command 2-371
shutdown command 2-373
shutdown vlan command 2-374
SNMP host, specifying 2-378
SNMP informs, enabling the sending of 2-375
snmp-server enable traps command 2-375
snmp-server host command 2-378
snmp trap mac-notification command 2-382
SNMP traps
enabling MAC address notification trap 2-382
enabling the MAC address notification feature 2-139
enabling the sending of 2-375
software images
deleting 2-52
downloading 2-7
upgrading 2-7
uploading 2-13
software version, displaying 2-362
source ports, MVR 2-172
SPAN
configuring 2-164
debug messages, display B-12
displaying 2-323
filter SPAN traffic 2-164
sessions
add interfaces to 2-164
displaying 2-323
start new 2-164
spanning-tree bpdufilter command 2-384
spanning-tree bpduguard command 2-386
spanning-tree cost command 2-388
spanning-tree etherchannel command 2-390
spanning-tree extend system-id command 2-392
spanning-tree guard command 2-394
spanning-tree link-type command 2-396
spanning-tree loopguard default command 2-398
spanning-tree mode command 2-400
spanning-tree mst configuration command 2-402
spanning-tree mst cost command 2-404
spanning-tree mst forward-time command 2-406
spanning-tree mst hello-time command 2-407
spanning-tree mst max-age command 2-409
spanning-tree mst max-hops command 2-411
spanning-tree mst port-priority command 2-413
spanning-tree mst pre-standard command 2-415
spanning-tree mst priority command 2-416
spanning-tree mst root command 2-418
spanning-tree portfast (global configuration) command 2-422
spanning-tree portfast (interface configuration) command 2-424
spanning-tree port-priority command 2-420
Spanning Tree Protocol
See STP
spanning-tree vlan command 2-426
speed command 2-429
SSH, configuring version 2-125
static-access ports, configuring 2-436
statistics, Ethernet group 2-211
sticky learning, enabling 2-446
storm-control command 2-431
STP
counters, clearing 2-44
debug messages, display
MSTP B-54
optimized BPDUs handling B-53
spanning-tree activity B-50
switch shim B-56
transmitted and received BPDUs B-52
EtherChannel misconfiguration 2-390
extended system ID 2-392
path cost 2-388
protocol modes 2-400
root port
loop guard 2-394
preventing from becoming designated 2-394
restricting which can be root 2-394
root guard 2-394
root switch
affects of extended system ID 2-392, 2-427
hello-time 2-426
interval between BDPU messages 2-426
interval between hello BPDU messages 2-426
max-age 2-426
port priority for selection of 2-420
primary or secondary 2-426
switch priority 2-426
state changes
blocking to forwarding state 2-424
enabling BPDU filtering 2-384, 2-422
enabling BPDU guard 2-386, 2-422
enabling Port Fast 2-422, 2-424
enabling timer to recover from error state 2-72
forward-delay time 2-426
length of listening and learning states 2-426
shutting down Port Fast-enabled ports 2-422
state information display 2-349
VLAN options 2-416, 2-426
Switched Port Analyzer
See SPAN
switching characteristics
modifying 2-434
returning to interfaces 2-434
switchport access command 2-436
switchport block command 2-438
switchport command 2-434
switchport host command 2-440
switchport mode command 2-441
switchport mode private-vlan command 2-443
switchport port-security aging command 2-450
switchport port-security command 2-446
switchport private-vlan command 2-452
switchport protected command 2-454
switchports, displaying 2-270
switchport trunk command 2-456
system message logging, save message to flash 2-132
system mtu command 2-458
T
table-map command 2-460
table-map configuration mode 2-460
table maps
configuring 2-460
displaying 2-358
QoS 2-460
tar files, creating, listing, and extracting 2-10
TDR, running 2-462
temperature information, displaying 2-256
test cable-diagnostics tdr command 2-462
traceroute mac command 2-463
traceroute mac ip command 2-466
traffic shaping, QoS 2-229
trunking, VLAN mode 2-441
trunk mode 2-441
trunk ports 2-441
type (boot loader) command A-23
U
UDLD
aggressive mode 2-468, 2-470
debug messages, display B-63
enable globally 2-468
enable per interface 2-470
error recovery timer 2-72
message timer 2-468
normal mode 2-468, 2-470
reset a shutdown interface 2-472
status 2-360
udld command 2-468
udld port command 2-470
udld reset command 2-472
unicast storm control 2-431
UniDirectional Link Detection
See UDLD
uni-vlan command 2-473
unknown multicast traffic, preventing 2-438
unknown unicast traffic, preventing 2-438
unset (boot loader) command A-24
upgrading
software images 2-7
monitoring status of 2-234
upgrading information
See release notes
user EXEC mode 1-2
user network interface 2-197
V
version (boot loader) command A-26
vlan access-map command 2-478
VLAN access map configuration mode 2-478
VLAN access maps
actions 2-5
displaying 2-369
vlan command 2-475
VLAN configuration mode
commands 2-475
description 1-4
entering 2-475
summary 1-2
vlan filter command 2-480
VLAN filters, displaying 2-370
VLAN ID range 2-475
VLAN maps
applying 2-480
creating 2-478
defining 2-152
displaying 2-369
VLAN Query Protocol
See VQP
VLANs
adding 2-475
configuring 2-475
debug messages, display
activation of B-61
VLAN IOS file system error tests B-60
VLAN manager activity B-58
displaying configurations 2-364
extended-range 2-475
MAC addresses
displaying 2-321
number of 2-311
normal-range 2-475
private 2-443
configuring 2-202
displaying 2-364
See also private VLANs
restarting 2-374
saving the configuration 2-475
shutting down 2-374
suspending 2-374
VMPS
configuring servers 2-485
displaying 2-371
error recovery timer 2-72
reconfirming dynamic VLAN assignments 2-482
vmps reconfirm (global configuration) command 2-483
vmps reconfirm (privileged EXEC) command 2-482
vmps retry command 2-484
vmps server command 2-485
VQP
and dynamic-access ports 2-437
clearing client statistics 2-47
displaying information 2-371
per-server retry count 2-484
reconfirmation interval 2-483
reconfirming dynamic VLAN assignments 2-482
W
Weighted Tail Drop
See WTD
WTD, queue-limit command 2-205