Table Of Contents
A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W -
Index
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 2-89
MAC, displaying 2-309
matching for QoS classification 2-159
access mode 2-452
access ports 2-452
ACEs 2-55, 2-186
ACLs
as match criteria for QoS classes 2-159
deny 2-53
displaying 2-237
for non-IP protocols 2-141
IP 2-89
on Layer 2 interfaces 2-89
permit 2-184
action command 2-5
address aliasing 2-175
aggregate policers
applying 2-191
creating 2-193
displaying 2-341
QoS 2-194
aggregate-port learner 2-180
allowed VLANs 2-467
archive download-sw command 2-7
archive tar command 2-10
archive upload-sw command 2-13
attaching policy maps to interfaces 2-220
audience xv
authorization state of controlled port 2-61
autonegotiation of duplex mode 2-71
B
bandwidth, configuring for QoS 2-15
bandwidth command 2-15
boot (boot loader) command A-2
boot boothlpr command 2-18
boot config-file command 2-19
boot enable-break command 2-20
boot helper command 2-21
boot helper-config file command 2-22
booting
Cisco IOS image 2-25
displaying environment variables 2-241
interrupting 2-20
manually 2-23
boot loader
accessing A-1
booting
Cisco IOS image A-2
helper image 2-21
directories
creating A-14
displaying a list of A-7
removing A-18
boot loader
displaying
available commands A-12
memory heap utilization A-13
version A-25
environment variables
described A-19
displaying settings A-19
location of A-20
setting A-19
unsetting A-23
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-15, A-22
renaming A-16
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
prompt A-1
resetting the system A-17
boot manual command 2-23
boot private-config-file command 2-24
boot system command 2-25
BPDU filtering, for spanning tree 2-394, 2-432
BPDU guard, for spanning tree 2-396, 2-432
broadcast storm control 2-442
burst bytes, in QoS policers 2-187, 2-193
C
cat (boot loader) command A-4
caution, description xvi
CBWFQ, configuring 2-15
channel-group command 2-26
channel-protocol command 2-30
child policy maps 2-222
class-based traffic shaping 2-235
class-based weighted fair queuing
See CBWFQ
class command 2-32
class-map command 2-34
class-map configuration mode 2-35
class maps
creating 2-34
defining the match criteria 2-160
displaying 2-245
matching in 2-34
class of service
See CoS
clear lacp command 2-38
clear mac address-table command 2-39
clear pagp command 2-40
clear policer cpu uni-eni counters command 2-41
clear port-security command 2-42
clear spanning-tree counters command 2-44
clear spanning-tree detected-protocols command 2-45
clear vmps statistics command 2-47
command modes defined 1-1
committed information rate in QoS policers 2-187, 2-193
configuration, initial
See also getting started guide and hardware installation guide
configuration files
password recovery disable considerations A-1
specifying the name 2-19, 2-24
configuring multiple interfaces 2-85
conform-action command 2-48
control-plane policer 2-41
control-plane policer information, displaying 2-342
control-plane security 2-196
control plane statistics, clearing 2-41
conventions
command xvi
for examples xvi
publication xvi
text xvi
copy (boot loader) command A-5
CoS
as match criteria for QoS groups 2-160
for QoS classification 2-224
setting value in policy maps 2-224
CPU ASIC statistics, displaying 2-246
CPU protection policers, displaying C-16
D
debug dot1x command B-2
debug etherchannel command B-3
debug interface command B-4
debug ip igmp filter command B-5
debug ip igmp max-groups command B-6
debug ip igmp snooping command B-7
debug lacp command B-8
debug mac-notification command B-9
debug matm command B-10
debug monitor command B-11
debug mvrdbg command B-12
debug nvram command B-13
debug pagp command B-14
debug platform acl command B-15
debug platform cpu-queues command B-16
debug platform dot1x command B-18
debug platform etherchannel command B-19
debug platform forw-tcam command B-20
debug platform ip dhcp command B-21
debug platform ip igmp snooping command B-22
debug platform led command B-24
debug platform matm command B-25
debug platform messaging application command B-26
debug platform phy command B-27
debug platform pm command B-29
debug platform policer cpu uni-eni command B-31
debug platform port-asic command B-32
debug platform port-security command B-33
debug platform qos-acl-tcam command B-34
debug platform remote-commands command B-35
debug platform resource-manager command B-36
debug platform snmp command B-37
debug platform span command B-38
debug platform supervisor-asic command B-39
debug platform sw-bridge command B-40
debug platform tcam command B-41
debug platform udld command B-43
debug platform vlan command B-44
debug pm command B-45
debug port-security command B-47
debug qos-manager command B-48
debug spanning-tree bpdu command B-51
debug spanning-tree bpdu-opt command B-52
debug spanning-tree command B-49
debug spanning-tree mstp command B-53
debug spanning-tree switch command B-55
debug sw-vlan command B-57
debug sw-vlan ifs command B-58
debug sw-vlan notification command B-59
debug udld command B-61
debug vqpc command B-63
default
policer configuration
NNIs C-18
UNIs C-17
define interface-range command 2-50
delete (boot loader) command A-6
delete command 2-52
deny command 2-53
detect mechanism, causes 2-72
DHCP snooping
accepting untrusted packets from edge switch 2-100
enabling
on a VLAN 2-106
option 82 2-98, 2-100
trust on an interface 2-104
error recovery timer 2-77
rate limiting 2-103
DHCP snooping binding database
binding file, configuring 2-96
bindings
adding 2-94
deleting 2-94
displaying 2-289
clearing database agent statistics 2-36
database agent, configuring 2-96
displaying
binding entries 2-289
database agent status 2-291, 2-293
renewing 2-215
differentiated service code point
See DSCP
dir (boot loader) command A-7
directories, deleting 2-52
documentation, related xvi
document conventions xvi
dot1x default command 2-56
dot1x host-mode command 2-57
dot1x initialize command 2-58
dot1x max-req command 2-59, 2-60
dot1x port-control command 2-61
dot1x re-authenticate command 2-63
dot1x reauthentication command 2-64
dot1x system-auth-control command 2-65
dot1x test eapol-capable command 2-66
dot1x test timeout command 2-67
dot1x timeout command 2-68
dropping packets, with ACL matches 2-5
DSCP
as match criteria for QoS groups 2-161
for QoS traffic marking 2-226
setting in policy maps 2-226
duplex command 2-70
dynamic-access ports
configuring 2-447
restrictions 2-448
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
E
EAP-request/identity frame
maximum number to send 2-60
response time before retransmitting 2-68
environment variables, displaying 2-241
errdisable detect cause command 2-72
errdisable detect cause small-frame comand 2-74
errdisable recovery cause small-frame 2-76
errdisable recovery command 2-77
error conditions, displaying 2-265
error disable detection 2-72
error-disabled interfaces, displaying 2-276
EtherChannel
assigning Ethernet interface to channel group 2-26
creating port-channel logical interface 2-83
debug EtherChannel/PAgP, display B-3
debug platform-specific events, display B-19
displaying 2-269
interface information, displaying 2-276
LACP
clearing channel-group information 2-38
debug messages, display B-8
displaying 2-305
modes 2-26
port priority for hot-standby ports 2-132
restricting a protocol 2-30
system priority 2-134
EtherChannel
load-distribution methods 2-200
PAgP
aggregate-port learner 2-180
clearing channel-group information 2-40
debug messages, display B-14
displaying 2-337
error detection for 2-72
error recovery timer 2-77
learn method 2-180
modes 2-26
physical-port learner 2-180
priority of interface for transmitted traffic 2-182
Ethernet controller, internal register display 2-248
Ethernet statistics, collecting 2-217
examples, conventions for xvi
exceed-action command 2-79
extended-range VLANs
and allowed VLAN list 2-467
configuring 2-486
extended system ID for STP 2-402
F
fan information, displaying 2-262
files, deleting 2-52
flash_init (boot loader) command A-9
flowcontrol command 2-81
format (boot loader) command A-10
forwarding packets, with ACL matches 2-5
forwarding results, display C-5
frame forwarding information, displaying C-5
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-237
help (boot loader) command A-12
host connection, port configuration 2-451
host ports, private VLANs 2-454
I
IEEE 802.1x
and switchport modes 2-453
violation error recovery 2-77
See also port-based authentication
IGMP filters
applying 2-109
debug messages, display B-5
IGMP groups, setting maximum 2-111
IGMP maximum groups, debugging B-6
IGMP profiles
creating 2-113
displaying 2-296
IGMP snooping
adding ports as a static member of a group 2-128
displaying 2-297, 2-301, 2-303
enabling 2-115
enabling the configurable-leave timer 2-117
enabling the Immediate-Leave feature 2-125
flooding query count 2-123
interface topology change notification behavior 2-124
multicast table 2-299
querier 2-119
query solicitation 2-123
report suppression 2-121
switch topology change notification behavior 2-123
images
See software images
Immediate-Leave feature, MVR 2-177
immediate-leave processing 2-125
initial configuration
See also getting started guide and hardware installation guide
input policy maps
and ACL classification 2-159
and aggregate policers 2-194
commands not supported in 2-198
configuration guidelines 2-198
interface command 2-88
interface configuration mode 1-2, 1-4
interface port-channel command 2-83
interface range command 2-85
interface-range macros 2-50
interfaces
assigning Ethernet interface to channel group 2-26
configuring 2-70
configuring multiple 2-85
creating port-channel logical 2-83
debug messages, display B-4
disabling 2-379
displaying the MAC address table 2-321
restarting 2-379
interface speed, configuring 2-440
internal registers, displaying 2-248, 2-255
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-72
error recovery timer 2-77
ip address command 2-91
IP addresses, setting 2-91
IP address matching 2-157
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 2-94
ip dhcp snooping command 2-93
ip dhcp snooping database command 2-96
ip dhcp snooping information option allow-untrusted command 2-100
ip dhcp snooping information option command 2-98
ip dhcp snooping information option format remote-id command 2-102
ip dhcp snooping limit rate command 2-103
ip dhcp snooping trust command 2-104
ip dhcp snooping verify command 2-105
ip dhcp snooping vlan command 2-106
ip dhcp snooping vlan information option format-type circuit-id string command 2-107
ip igmp filter command 2-109
ip igmp max-groups command 2-111
ip igmp profile command 2-113
ip igmp snooping command 2-115
ip igmp snooping last-member-query-interval command 2-117
ip igmp snooping querier command 2-119
ip igmp snooping report-suppression command 2-121
ip igmp snooping tcn command 2-123
ip igmp snooping tcn flood command 2-124
ip igmp snooping vlan immediate-leave command 2-125
ip igmp snooping vlan mrouter command 2-126
ip igmp snooping vlan static command 2-128
IP multicast addresses 2-174
IP precedence, as match criteria for QoS groups 2-163
IP source guard, displaying dynamic binding entries 2-289
ip ssh command 2-130
J
jumbo frames
See MTU
L
LACP
See EtherChannel
lacp port-priority command 2-132
lacp system-priority command 2-134
Layer 2 traceroute
IP addresses 2-477
MAC addresses 2-474
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 2-72
error recovery timer 2-77
load-distribution methods for EtherChannel 2-200
logging event command 2-136
logging file command 2-137
logical interface 2-83
loopback error
detection for 2-72
recovery timer 2-77
loop guard, for spanning tree 2-404, 2-408
M
mac access-group command 2-139
MAC access-groups, displaying 2-309
MAC access list configuration mode 2-141
mac access-list extended command 2-141
MAC access lists 2-53
MAC addresses
displaying
aging time 2-315
all 2-313
dynamic 2-319
notification settings 2-323
number of addresses in a VLAN 2-317
per interface 2-321
per VLAN 2-327
static 2-325
static and dynamic entries 2-311
MAC addresses
dynamic
aging time 2-143
deleting 2-39
displaying 2-319
enabling MAC address notification 2-144
matching 2-157
static
adding and removing 2-146
displaying 2-325
dropping on an interface 2-147
tables 2-313
MAC address notification, debugging B-9
mac address-table aging-time 2-139, 2-157
mac address-table aging-time command 2-143
mac address-table notification command 2-144
mac address-table static command 2-146
mac address-table static drop command 2-147
macro description command 2-151
macro global command 2-152
macro global description command 2-154
macro name command 2-155
macros
adding a description 2-151
adding a global description 2-154
applying 2-152
creating 2-155
displaying 2-339
interface range 2-50, 2-85
specifying parameter values 2-152
tracing 2-152
manual
audience xv
purpose of xv
mapping tables, QoS 2-471
maps
class
creating 2-34
VLAN
creating 2-489
defining 2-157
displaying 2-374
match access-group command 2-159
match cos command 2-160
match ip dscp command 2-161
match ip precedence command 2-163
match qos-group command 2-165
maximum transmission unit
See MTU
mdix auto command 2-167
memory (boot loader) command A-13
mkdir (boot loader) command A-14
mode, MVR 2-174
modes, commands 1-1
monitor session command 2-169
more (boot loader) command A-15
MSTP
displaying 2-355
interoperability 2-45
link type 2-406
MST region
aborting changes 2-412
applying changes 2-412
configuration name 2-412
configuration revision number 2-413
current or pending display 2-413
displaying 2-355
MST configuration mode 2-412
VLANs-to-instance mapping 2-412
path cost 2-414
protocol mode 2-410
restart protocol migration process 2-45
MSTP
root port
loop guard 2-404
preventing from becoming designated 2-404
restricting which can be root 2-404
root guard 2-404
root switch
affects of extended system ID 2-402
hello-time 2-417, 2-428
interval between BDPU messages 2-419
interval between hello BPDU messages 2-417, 2-428
max-age 2-419
maximum hop count before discarding BPDU 2-421
port priority for selection of 2-423
primary or secondary 2-428
switch priority 2-426
state changes
blocking to forwarding state 2-435
enabling BPDU filtering 2-394, 2-432
enabling BPDU guard 2-396, 2-432
enabling Port Fast 2-432, 2-435
forward-delay time 2-416
length of listening and learning states 2-416
rapid transition to forwarding 2-406
shutting down Port Fast-enabled ports 2-432
state information display 2-354
MTU
configuring size 2-469
displaying global setting 2-362
multicast group address, MVR 2-177
multicast groups, MVR 2-175
multicast router learning method 2-126
multicast router ports, configuring 2-126
multicast storm control 2-442
multicast VLAN, MVR 2-174
multicast VLAN registration
See MVR
multiple hosts on authorized port 2-57
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 2-175
configuring 2-174
configuring interfaces 2-177
debug messages, display B-12
displaying 2-331
displaying interface information 2-333
members, displaying 2-335
mvr (global configuration) command 2-174
mvr (interface configuration) command 2-177
mvr vlan group command 2-178
N
native VLANs 2-467
network node interface 2-202
nonegotiate, speed 2-440, 2-441
non-IP protocols
denying 2-53
forwarding 2-184
non-IP traffic access lists 2-141
non-IP traffic forwarding
denying 2-53
permitting 2-184
normal-range VLANs 2-486
note, description xvi
no vlan command 2-486
O
output policy maps
and QoS group classification 2-165
and traffic shaping 2-235
commands not supported in 2-198
configuration guidelines 2-198
output policy maps
priority in 2-205
queue limit in 2-210
P
PAgP
See EtherChannel
pagp learn-method command 2-180
pagp port-priority command 2-182
parent policy maps 2-222
password-recovery mechanism, enabling and disabling 2-218
permit command 2-184
per-VLAN spanning-tree plus
See STP
physical-port learner 2-180
PID, displaying 2-286
PIM-DVMRP, as multicast router learning method 2-126
police
multiple conform actions for a class 2-48
multiple exceed actions for a class 2-79
with priority 2-187
police aggregate command 2-191
police command 2-187
policer aggregate command 2-193
policer configuration
default for NNIs C-18
default for UNIs C-17
policer cpu uni command 2-196
policers
aggregate 2-191, 2-193
for CPU protection 2-196
individual 2-187
policy-map class, configuring multiple actions 2-48, 2-79
policy-map class configuration mode 2-32
policy-map class police configuration mode 2-48, 2-189
policy-map command 2-197
policy-map configuration mode 2-197
policy maps
and CoS classification 2-160
and DSCP classification 2-161
and IP precedence classification 2-163
and policing 2-189
applying 2-220
applying to an interface 2-198, 2-220, 2-232
child 2-222
creating 2-197
displaying 2-344
hierarchical 2-222
parent 2-222
policers
for a single class 2-187
for multiple classes 2-191, 2-193, 2-196, 2-222
setting priority 2-204
setting QoS group identifier 2-230
traffic classification, defining 2-32
traffic marking
setting CoS values 2-224
setting DSCP values 2-226
setting IP precedence values 2-228
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 2-3
debug messages, display B-2
enabling 802.1x
globally 2-65
per interface 2-61
host modes 2-57
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-58, 2-67
manual control of authorization state 2-61
multiple hosts on authorized port 2-57
periodic re-authentication
enabling 2-64
time between attempts 2-68
port-based authentication
quiet period between failed authentication exchanges 2-68
re-authenticating 802.1x-enabled ports 2-63
resetting configurable 802.1x parameters 2-56
switch-to-authentication server retransmission time 2-68
switch-to-client frame-retransmission number2-59to 2-60
switch-to-client retransmission time 2-68
test for IEEE 802.1x readiness 2-66
port-channel load-balance command 2-200
Port Fast, for spanning tree 2-435
port ranges, defining 2-50
ports, debugging B-45
ports, protected 2-465
port security
aging 2-461
debug messages, display B-47
enabling 2-457
violation error recovery 2-77
port shaping 2-236
port-type command 2-202
port types, MVR 2-177
power information, displaying 2-262
precedence
for QoS traffic marking 2-228
setting in policy maps 2-228
priority command 2-204
priority queuing, QoS 2-204
priority with police, QoS 2-204
private-vlan command 2-207
private VLANs
association 2-463
configuring 2-207
configuring ports 2-454
displaying 2-369
host ports 2-454
private VLANs
mapping
configuring 2-463
promiscuous ports 2-454
privileged EXEC mode 1-2, 1-3
product identification information, displaying 2-286
promiscuous ports, private VLANs 2-454
PVST+
See STP
Q
QoS
aggregate policers
applying 2-191
creating 2-193
displaying 2-341
class maps
creating 2-34
defining the match criteria 2-160
displaying 2-245
displaying statistics for 2-344, C-24
policy maps
applying an aggregate policer 2-191, 2-193, 2-196, 2-222
applying to an interface 2-220, 2-232
creating 2-197
defining policers 2-187
displaying policy maps 2-344
setting CoS values 2-224
setting DSCP values 2-226
setting IP precedence values 2-228
setting QoS group identifier 2-230
traffic classifications 2-32
table maps
configuring 2-471
displaying 2-363
QoS groups
as match criteria 2-165
for QoS traffic classification 2-230
setting in policy maps 2-230
QoS match criteria
ACLs 2-159
CoS value 2-160
DSCP value 2-161
precedence value 2-163
QoS group number 2-165
quality of service
See QoS
querytime, MVR 2-174
queue-limit command 2-210
R
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
re-authenticating 802.1x-enabled ports 2-63
re-authentication
periodic 2-64
time between attempts 2-68
receiver ports, MVR 2-177
receiving flow-control packets 2-81
recovery mechanism
causes 2-77
display 2-243, 2-263, 2-267
timer interval 2-77
remote-span command 2-213
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command A-16
renew ip dhcp snooping database command 2-215
reset (boot loader) command A-17
rmdir (boot loader) command A-18
rmon collection stats command 2-217
root guard, for spanning tree 2-404
RSPAN
configuring 2-169
displaying 2-329
filter RSPAN traffic 2-169
remote-span command 2-213
sessions
add interfaces to 2-169
displaying 2-329
start new 2-169
S
SDM templates
displaying 2-353
secure ports, limitations 2-459
sending flow-control packets 2-81
service password-recovery command 2-218
service policy (policy-map class configuration) command 2-222
service-policy interface configuration command 2-220
service-policy policy-map class configuration command 2-222
set (boot loader) command A-19
set cos command 2-224
set dscp command 2-226
set precedence command 2-228
set qos-group command 2-230
setup command 2-232
SFPs, displaying information about 2-286
shape average command 2-235
show access-lists command 2-237
show aggregate-policer command 2-363
show archive status command 2-240
show boot command 2-241
show class-map command 2-245
show controllers cpu-interface command 2-246
show controllers ethernet-controller command 2-248
show controllers tcam command 2-255
show controllers utilization command 2-257
show controller utilization command 2-257
show dot1x command 2-259
show env command 2-262
show errdisable detect command 2-263
show errdisable flap-values command 2-265
show errdisable recovery command 2-267
show etherchannel command 2-269
show flowcontrol command 2-272
show idprom command 2-274
show interfaces command 2-276
show interfaces counters command 2-284
show inventory command 2-286
show ip dhcp snooping binding command 2-289
show ip dhcp snooping command 2-288
show ip dhcp snooping database command 2-291, 2-293
show ip igmp profile command 2-296
show ip igmp snooping command 2-297
show ip igmp snooping command querier detail 2-303
show ip igmp snooping groups command 2-299
show ip igmp snooping mrouter command 2-301
show ip igmp snooping querier command 2-303
show ip igmp snooping querier detail command 2-303
show lacp command 2-305
show location 2-309
show mac access-group command 2-309
show mac address-table address command 2-313
show mac address-table aging time command 2-315
show mac address-table command 2-311
show mac address-table count command 2-317
show mac address-table dynamic command 2-319
show mac address-table interface command 2-321
show mac address-table notification command 2-323
show mac address-table static command 2-325
show mac address-table vlan command 2-327
show monitor command 2-329
show mvr command 2-331
show mvr interface command 2-333
show mvr members command 2-335
show pagp command 2-337
show parser macro command 2-339
show platform acl command C-2
show platform configuration command C-3
show platform etherchannel command C-4
show platform forward command C-5
show platform igmp snooping command C-7
show platform layer4op command C-9
show platform mac-address-table command C-10
show platform messaging command C-11
show platform monitor command C-12
show platform mvr table command C-13
show platform pm command C-14
show platform policer cpu command C-16
show platform port-asic command C-19
show platform port-security command C-23
show platform qos command C-24
show platform resource-manager command C-27
show platform snmp counters command C-29
show platform spanning-tree synchronization command C-30
show platform stp-instance command C-31
show platform tcam command C-32
show platform vlan command C-35
show policer aggregate command 2-341
show policer cpu uni-eni command 2-342
show policy-map command 2-344
show policy-map interface output fields 2-347
show port security command 2-348
show port-type command 2-351
show sdm prefer command 2-353
show spanning-tree command 2-354
show storm-control command 2-360
show system mtu command 2-362
show udld command 2-365
show version command 2-367
show vlan access-map command 2-374
show vlan command 2-369
show vlan command, fields 2-371
show vlan filter command 2-375
show vmps command 2-377
shutdown command 2-379
shutdown vlan command 2-380
small violation-rate command 2-381
SNMP host, specifying 2-386
SNMP informs, enabling the sending of 2-383
snmp-server enable traps command 2-383
snmp-server host command 2-386
snmp trap mac-notification command 2-390
SNMP traps
enabling MAC address notification trap 2-390
enabling the MAC address notification feature 2-144
enabling the sending of 2-383
software images
deleting 2-52
downloading 2-7
upgrading 2-7
uploading 2-13
software version, displaying 2-367
source ports, MVR 2-177
SPAN
configuring 2-169
debug messages, display B-11
displaying 2-329
filter SPAN traffic 2-169
sessions
add interfaces to 2-169
displaying 2-329
start new 2-169
spanning-tree bpdufilter command 2-392, 2-394
spanning-tree bpduguard command 2-396
spanning-tree cost command 2-398
spanning-tree etherchannel command 2-400
spanning-tree extend system-id command 2-402
spanning-tree guard command 2-404
spanning-tree link-type command 2-406
spanning-tree loopguard default command 2-408
spanning-tree mode command 2-410
spanning-tree mst configuration command 2-412
spanning-tree mst cost command 2-414
spanning-tree mst forward-time command 2-416
spanning-tree mst hello-time command 2-417
spanning-tree mst max-age command 2-419
spanning-tree mst max-hops command 2-421
spanning-tree mst port-priority command 2-423
spanning-tree mst pre-standard command 2-425
spanning-tree mst priority command 2-426
spanning-tree mst root command 2-428
spanning-tree portfast (global configuration) command 2-432
spanning-tree portfast (interface configuration) command 2-435
spanning-tree port-priority command 2-430
Spanning Tree Protocol
See STP
spanning-tree vlan command 2-437
speed command 2-440
SSH, configuring version 2-130
static-access ports, configuring 2-447
statistics, Ethernet group 2-217
sticky learning, enabling 2-457
storm-control command 2-442
STP
counters, clearing 2-44
debug messages, display
MSTP B-53
optimized BPDUs handling B-52
spanning-tree activity B-49
switch shim B-55
transmitted and received BPDUs B-51
enabling on ENIs 2-392
EtherChannel misconfiguration 2-400
extended system ID 2-402
path cost 2-398
protocol modes 2-410
STP
root port
loop guard 2-404
preventing from becoming designated 2-404
restricting which can be root 2-404
root guard 2-404
root switch
affects of extended system ID 2-402, 2-438
hello-time 2-437
interval between BDPU messages 2-437
interval between hello BPDU messages 2-437
max-age 2-437
port priority for selection of 2-430
primary or secondary 2-437
switch priority 2-437
state changes
blocking to forwarding state 2-435
enabling BPDU filtering 2-394, 2-432
enabling BPDU guard 2-396, 2-432
enabling Port Fast 2-432, 2-435
enabling timer to recover from error state 2-77
forward-delay time 2-437
length of listening and learning states 2-437
shutting down Port Fast-enabled ports 2-432
state information display 2-354
VLAN options 2-426, 2-437
Switched Port Analyzer
See SPAN
switching characteristics
modifying 2-445
returning to interfaces 2-445
switchport access command 2-447
switchport block command 2-449
switchport command 2-445
switchport host command 2-451
switchport mode command 2-452
switchport mode private-vlan command 2-454
switchport port-security aging command 2-461
switchport port-security command 2-457
switchport private-vlan command 2-463
switchport protected command 2-465
switchports, displaying 2-276
switchport trunk command 2-467
system message logging, save message to flash 2-137
system mtu command 2-469
T
table-map command 2-471
table-map configuration mode 2-471
table maps
configuring 2-471
displaying 2-363
QoS 2-471
tar files, creating, listing, and extracting 2-10
TDR, running 2-473
temperature information, displaying 2-262
test cable-diagnostics tdr command 2-473
traceroute mac command 2-474
traceroute mac ip command 2-477
traffic shaping, QoS 2-235
trunking, VLAN mode 2-452
trunk mode 2-452
trunk ports 2-452
type (boot loader) command A-22
U
UDLD
aggressive mode 2-479, 2-481
debug messages, display B-61
enable globally 2-479
enable per interface 2-481
error recovery timer 2-77
message timer 2-479
UDLD
normal mode 2-479, 2-481
reset a shutdown interface 2-483
status 2-365
udld command 2-479
udld port command 2-481
udld reset command 2-483
unicast storm control 2-442
UniDirectional Link Detection
See UDLD
uni-vlan command 2-484
unknown multicast traffic, preventing 2-449
unknown unicast traffic, preventing 2-449
unset (boot loader) command A-23
upgrading
software images 2-7
monitoring status of 2-240
upgrading information
See release notes
user EXEC mode 1-2
user network interface 2-202
V
version (boot loader) command A-25
vlan access-map command 2-489
VLAN access map configuration mode 2-489
VLAN access maps
actions 2-5
displaying 2-374
vlan command 2-486
VLAN configuration mode
commands 2-486
description 1-4
entering 2-486
summary 1-2
vlan filter command 2-491
VLAN filters, displaying 2-375
VLAN ID range 2-486
VLAN maps
applying 2-491
creating 2-489
defining 2-157
displaying 2-374
VLAN Query Protocol
See VQP
VLANs
adding 2-486
configuring 2-486
debug messages, display
activation of B-59
VLAN IOS file system error tests B-58
VLAN manager activity B-57
displaying configurations 2-369
extended-range 2-486
MAC addresses
displaying 2-327
number of 2-317
normal-range 2-486
private 2-454
configuring 2-207
displaying 2-369
See also private VLANs
restarting 2-380
saving the configuration 2-486
shutting down 2-380
suspending 2-380
VMPS
configuring servers 2-496
displaying 2-377
error recovery timer 2-77
reconfirming dynamic VLAN assignments 2-493
vmps reconfirm (global configuration) command 2-494
vmps reconfirm (privileged EXEC) command 2-493
vmps retry command 2-495
vmps server command 2-496
VQP
and dynamic-access ports 2-448
clearing client statistics 2-47
displaying information 2-377
per-server retry count 2-495
reconfirmation interval 2-494
reconfirming dynamic VLAN assignments 2-493
W
Weighted Tail Drop
See WTD
WTD, queue-limit command 2-210