Table Of Contents
A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W -
Index
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 2-91
MAC, displaying 2-346
matching for QoS classification 2-180
access mode 2-485
access ports 2-485
ACEs 2-62, 2-209
ACLs
as match criteria for QoS classes 2-180
deny 2-60
displaying 2-263
for non-IP protocols 2-160
IP 2-91
on Layer 2 interfaces 2-91
permit 2-207
action command 2-5
address aliasing 2-196
aggregate policers
applying 2-213
creating 2-215
displaying 2-379
QoS 2-216
aggregate-port learner 2-201
allowed VLANs 2-501
archive download-sw command 2-7
archive tar command 2-10
archive upload-sw command 2-13
arp access-list command 2-15
attaching policy maps to interfaces 2-246
audience xv
authorization state of controlled port 2-68
autonegotiation of duplex mode 2-76
B
backup interfaces
configuring 2-480
displaying 2-305
bandwidth, configuring for QoS 2-17
bandwidth command 2-17
boot (boot loader) command A-2
boot boothlpr command 2-20
boot config-file command 2-21
boot enable-break command 2-22
boot helper command 2-23
boot helper-config file command 2-24
booting
Cisco IOS image 2-27
displaying environment variables 2-268
interrupting 2-22
manually 2-25
boot loader
accessing A-1
booting
Cisco IOS image A-2
helper image 2-23
directories
boot loader (continued)
creating A-15
displaying a list of A-7
removing A-19
displaying
available commands A-12
memory heap utilization A-14
version A-26
environment variables
described A-20
displaying settings A-20
location of A-21
setting A-20
unsetting A-24
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-16, A-23
renaming A-17
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
loading helper images A-13
prompt A-1
resetting the system A-18
boot manual command 2-25
boot private-config-file command 2-26
boot system command 2-27
BPDU filtering, for spanning tree 2-428, 2-464
BPDU guard, for spanning tree 2-430, 2-464
broadcast storm control 2-473
burst bytes, in QoS policers 2-210, 2-215
C
cat (boot loader) command A-4
caution, description xvi
CBWFQ, configuring 2-17
CDP, enabling protocol tunneling for 2-148
channel-group command 2-28
channel-protocol command 2-32
child policy maps 2-248
class-based traffic shaping 2-261
class-based weighted fair queuing
See CBWFQ
class command 2-34
class-map command 2-36
class-map configuration mode 2-36
class maps
creating 2-36
defining the match criteria 2-181
displaying 2-272
matching in 2-36
class of service
See CoS
clear ip arp inspection log command 2-38
clear ip arp inspection statistics command 2-39
clear ipc command 2-41
clear ip dhcp snooping database statistics command 2-40
clear l2protocol-tunnel counters command 2-42
clear lacp command 2-43
clear mac address-table command 2-44
clear pagp command 2-45
clear policer cpu uni counters command 2-46
clear port-security command 2-47
clear spanning-tree counters command 2-49
clear spanning-tree detected-protocols command 2-50
clear vmps statistics command 2-52
command modes defined 1-1
committed information rate in QoS policers 2-210, 2-215
configuration, initial
See also getting started guide and hardware installation guide
configuration files
password recovery disable considerations A-1
specifying the name 2-21, 2-26
configuring multiple interfaces 2-87
conform-action command 2-53
control-plane policer 2-46
control-plane policer information, displaying 2-380
control-plane security 2-218
control plane statistics, clearing 2-46
conventions
command xvi
for examples xvi
publication xvi
text xvi
copy (boot loader) command A-5
CoS
as match criteria for QoS groups 2-181
for QoS classification 2-250
setting value in policy maps 2-250
CoS value, assigning to Layer 2 protocol packets 2-151
CPU ASIC statistics, displaying 2-273
CPU protection policers, displaying C-18
D
debug backup command B-2
debug dot1x command B-3
debug etherchannel command B-4
debug interface command B-8
debug ip dhcp snooping command B-6
debug ip igmp filter command B-9
debug ip igmp max-groups command B-10
debug ip igmp snooping command B-11
debug ip verify source packet command B-7
debug lacp command B-12
debug mac-notification command B-13
debug matm command B-14
debug monitor command B-15
debug mvrdbg command B-16
debug nvram command B-17
debug pagp command B-18
debug platform acl command B-19
debug platform backup interface command B-20
debug platform cpu-queues command B-21
debug platform dot1x command B-23
debug platform etherchannel command B-24
debug platform forw-tcam command B-25
debug platform ip arp inspection command B-26
debug platform ipc command B-34
debug platform ip dhcp command B-27
debug platform ip igmp snooping command B-28
debug platform ip multicast command B-30
debug platform led command B-35
debug platform matm command B-36
debug platform messaging application command B-37
debug platform phy command B-38
debug platform pm command B-40
debug platform policer cpu uni command B-42
debug platform port-asic command B-43
debug platform port-security command B-44
debug platform qos-acl-tcam command B-45
debug platform remote-commands command B-46
debug platform resource-manager command B-47
debug platform snmp command B-48
debug platform span command B-49
debug platform supervisor-asic command B-50
debug platform sw-bridge command B-51
debug platform tcam command B-52
debug platform udld command B-54
debug platform vlan command B-55
debug pm command B-56
debug port-security command B-58
debug qos-manager command B-59
debug spanning-tree bpdu command B-62
debug spanning-tree bpdu-opt command B-63
debug spanning-tree command B-60
debug spanning-tree mstp command B-64
debug spanning-tree switch command B-66
debug sw-vlan command B-68
debug sw-vlan ifs command B-70
debug sw-vlan notification command B-71
debug udld command B-73
debug vqpc command B-75
define interface-range command 2-55
delete (boot loader) command A-6
delete command 2-57
deny (ARP access-list configuration) command 2-58
deny command 2-60
detect mechanism, causes 2-77
DHCP snooping
accepting untrusted packets from edge switch 2-116
enabling
on a VLAN 2-121
option 82 2-114, 2-116
trust on an interface 2-119
error recovery timer 2-79
rate limiting 2-118
DHCP snooping binding database
binding file, configuring 2-112
bindings
adding 2-110
deleting 2-110
displaying 2-320
clearing database agent statistics 2-40
database agent, configuring 2-112
displaying
binding entries 2-320
database agent status 2-322
renewing 2-239
differentiated service code point
See DSCP
dir (boot loader) command A-7
directories, deleting 2-57
documentation, related xvi
document conventions xvi
dot1x default command 2-63
dot1x host-mode command 2-64
dot1x initialize command 2-65
dot1x max-req command 2-66, 2-67
dot1x port-control command 2-68
dot1x re-authenticate command 2-70
dot1x reauthentication command 2-71
dot1x system-auth-control command 2-72
dot1x timeout command 2-73
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-148
DSCP
as match criteria for QoS groups 2-182
for QoS traffic marking 2-252
setting in policy maps 2-252
duplex command 2-75
dynamic-access ports
configuring 2-478
restrictions 2-479
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-96
define 2-15
deny packets 2-58
display 2-267
permit packets 2-205
clear
log buffer 2-38
statistics 2-39
display
ARP ACLs 2-267
configuration and operating state 2-316
log buffer 2-316
statistics 2-316
trust state and rate limit 2-316
enable per VLAN 2-106
error detection for 2-77
error recovery timer 2-79
log buffer
clear 2-38
configure 2-100
display 2-316
rate-limit incoming ARP packets 2-98
statistics
dynamic ARP inspection (continued)
clear 2-39
display 2-316
trusted interface state 2-102
type of packet logged 2-107
validation checks 2-104
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
E
EAP-request/identity frame
maximum number to send 2-67
response time before retransmitting 2-73
environment variables, displaying 2-268
errdisable detect cause command 2-77
errdisable recovery command 2-79
error conditions, displaying 2-294
error disable detection 2-77
error-disabled interfaces, displaying 2-305
EtherChannel
assigning Ethernet interface to channel group 2-28
creating port-channel logical interface 2-85
debug EtherChannel/PAgP, display B-4
debug platform-specific events, display B-24
displaying 2-298
enabling Layer 2 protocol tunneling for
LACP 2-149
PAgP 2-149
UDLD 2-149
interface information, displaying 2-305
LACP
clearing channel-group information 2-43
debug messages, display B-12
displaying 2-342
modes 2-28
port priority for hot-standby ports 2-152
restricting a protocol 2-32
system priority 2-154
load-distribution methods 2-222
PAgP
aggregate-port learner 2-201
clearing channel-group information 2-45
debug messages, display B-18
displaying 2-375
error detection for 2-77
error recovery timer 2-79
learn method 2-201
modes 2-28
physical-port learner 2-201
priority of interface for transmitted traffic 2-203
Ethernet controller, internal register display 2-275
Ethernet statistics, collecting 2-241
examples, conventions for xvi
exceed-action command 2-81
extended-range VLANs
and allowed VLAN list 2-501
configuring 2-521
extended system ID for STP 2-436
F
fan information, displaying 2-291
files, deleting 2-57
flash_init (boot loader) command A-9
Flex Links
configuring 2-480
displaying 2-305
flowcontrol command 2-83
format (boot loader) command A-10
forwarding packets, with ACL matches 2-5
forwarding results, display C-5
frame forwarding information, displaying C-5
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-263
help (boot loader) command A-12
host connection, port configuration 2-484
host ports, private VLANs 2-488
I
IEEE 802.1Q trunk ports and native VLANs 2-526
IEEE 802.1Q tunnel ports
configuring 2-485
displaying 2-286
limitations 2-486
IEEE 802.1x
and switchport modes 2-486
violation error recovery 2-79
See also port-based authentication
IGMP filters
applying 2-122
debug messages, display B-9
IGMP groups, setting maximum 2-123
IGMP maximum groups, debugging B-10
IGMP profiles
creating 2-125
displaying 2-324
IGMP snooping
adding ports as a static member of a group 2-141
displaying 2-325, 2-329, 2-331
enabling 2-127
enabling the configurable-leave timer 2-129
enabling the Immediate-Leave feature 2-138
flooding query count 2-135
interface topology change notification behavior 2-137
multicast table 2-327
querier 2-131
query solicitation 2-135
report suppression 2-133
switch topology change notification behavior 2-135
images
See software images
Immediate-Leave feature, MVR 2-198
immediate-leave processing 2-138
initial configuration
See also getting started guide and hardware installation guide
input policy maps
and ACL classification 2-180
and aggregate policers 2-216
commands not supported in 2-220
configuration guidelines 2-220
interface command 2-89
interface configuration mode 1-2, 1-4
interface port-channel command 2-85
interface range command 2-87
interface-range macros 2-55
interfaces
assigning Ethernet interface to channel group 2-28
configuring 2-75
configuring multiple 2-87
creating port-channel logical 2-85
debug messages, display B-8
disabling 2-417
displaying the MAC address table 2-358
restarting 2-417
interface speed, configuring 2-471
internal registers, displaying 2-275, 2-282
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-77
error recovery timer 2-79
ip address command 2-94
IP addresses, setting 2-94
IP address matching 2-178
ip arp inspection filter vlan command 2-96
ip arp inspection limit command 2-98
ip arp inspection log-buffer command 2-100
ip arp inspection trust command 2-102
ip arp inspection validate command 2-104
ip arp inspection vlan command 2-106
ip arp inspection vlan logging command 2-107
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 2-110
ip dhcp snooping command 2-109
ip dhcp snooping database command 2-112
ip dhcp snooping information option allow-untrusted command 2-116
ip dhcp snooping information option command 2-114
ip dhcp snooping limit rate command 2-118
ip dhcp snooping trust command 2-119
ip dhcp snooping verify command 2-120
ip dhcp snooping vlan command 2-121
ip igmp filter command 2-122
ip igmp max-groups command 2-123
ip igmp profile command 2-125
ip igmp snooping command 2-127
ip igmp snooping last-member-query-interval command 2-129
ip igmp snooping querier command 2-131
ip igmp snooping report-suppression command 2-133
ip igmp snooping tcn command 2-135
ip igmp snooping tcn flood command 2-137
ip igmp snooping vlan immediate-leave command 2-138
ip igmp snooping vlan mrouter command 2-139
ip igmp snooping vlan static command 2-141
IP multicast addresses 2-195
IP precedence, as match criteria for QoS groups 2-184
ip source binding command 2-143
IP source guard
disabling 2-147
displaying
binding entries 2-333
configuration 2-334
enabling 2-147
static IP source bindings 2-143
IP source guard, displaying
dynamic binding entries 2-320
ip ssh command 2-145
ip verify source command 2-147
J
jumbo frames
See MTU
L
l2protocol-tunnel command 2-148
l2protocol-tunnel cos command 2-151
LACP
See EtherChannel
lacp port-priority command 2-152
lacp system-priority command 2-154
Layer 2 mode, enabling 2-476
Layer 2 protocol ports, displaying 2-340
Layer 2 protocol-tunnel
error detection for 2-77
error recovery timer 2-79
Layer 2 protocol tunnel counters 2-42
Layer 2 protocol tunneling error recovery 2-149
Layer 2 traceroute
IP addresses 2-512
MAC addresses 2-509
Layer 3 mode, enabling 2-476
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 2-77
error recovery timer 2-79
load_helper (boot loader) command A-13
load-distribution methods for EtherChannel 2-222
logging file command 2-156
logical interface 2-85
loopback error
detection for 2-77
recovery timer 2-79
loop guard, for spanning tree 2-438, 2-442
M
mac access-group command 2-158
MAC access-groups, displaying 2-346
MAC access list configuration mode 2-160
mac access-list extended command 2-160
MAC access lists 2-60
MAC addresses
disabling MAC address learning per VLAN 2-163
displaying
aging time 2-352
all 2-350
dynamic 2-356
notification settings 2-360, 2-361
number of addresses in a VLAN 2-354
per interface 2-358
per VLAN 2-365
static 2-363
static and dynamic entries 2-348
dynamic
aging time 2-162
deleting 2-44
displaying 2-356
enabling MAC address notification 2-165
matching 2-178
static
adding and removing 2-167
displaying 2-363
dropping on an interface 2-168
tables 2-350
MAC address notification, debugging B-13
mac address-table aging-time 2-158, 2-178
mac address-table aging-time command 2-162
mac address-table learning command 2-163
mac address-table notification command 2-165
mac address-table static command 2-167
mac address-table static drop command 2-168
macro description command 2-172
macro global command 2-173
macro global description command 2-175
macro name command 2-176
macros
adding a description 2-172
adding a global description 2-175
applying 2-173
creating 2-176
displaying 2-377
interface range 2-55, 2-87
specifying parameter values 2-173
tracing 2-173
manual
audience xv
purpose of xv
mapping tables, QoS 2-506
maps
VLAN
creating 2-524
defining 2-178
displaying 2-413
match access-group command 2-180
match cos command 2-181
match ip dscp command 2-182
match ip precedence command 2-184
match qos-group command 2-186
maximum transmission unit
See MTU
mdix auto command 2-188
memory (boot loader) command A-14
mkdir (boot loader) command A-15
mode, MVR 2-195
modes, commands 1-1
monitor session command 2-190
more (boot loader) command A-16
MSTP
displaying 2-394
interoperability 2-50
link type 2-440
MST region
aborting changes 2-446
applying changes 2-446
configuration name 2-446
configuration revision number 2-446
current or pending display 2-446
displaying 2-394
MST configuration mode 2-446
VLANs-to-instance mapping 2-446
path cost 2-448
protocol mode 2-444
restart protocol migration process 2-50
root port
loop guard 2-438
preventing from becoming designated 2-438
restricting which can be root 2-438
root guard 2-438
root switch
affects of extended system ID 2-436
hello-time 2-451, 2-460
interval between BDPU messages 2-453
interval between hello BPDU messages 2-451, 2-460
max-age 2-453
maximum hop count before discarding BPDU 2-455
port priority for selection of 2-457
primary or secondary 2-460
switch priority 2-459
state changes
blocking to forwarding state 2-466
enabling BPDU filtering 2-428, 2-464
enabling BPDU guard 2-430, 2-464
enabling Port Fast 2-464, 2-466
forward-delay time 2-450
length of listening and learning states 2-450
rapid transition to forwarding 2-440
shutting down Port Fast-enabled ports 2-464
state information display 2-393
MTU
configuring size 2-504
displaying global setting 2-400
multicast group address, MVR 2-198
multicast groups, MVR 2-196
multicast router learning method 2-139
multicast router ports, configuring 2-139
multicast storm control 2-473
multicast VLAN, MVR 2-195
multicast VLAN registration
See MVR
multiple hosts on authorized port 2-64
Multiple Spanning Tree Protocol
See MSTP
MVR
and address aliasing 2-196
configuring 2-195
configuring interfaces 2-198
debug messages, display B-16
displaying 2-369
displaying interface information 2-371
members, displaying 2-373
mvr (global configuration) command 2-195
mvr (interface configuration) command 2-198
mvr vlan group command 2-199
N
native VLANs 2-501
native VLAN tagging 2-526
network node interface 2-224
nonegotiate, speed 2-471, 2-472
non-IP protocols
denying 2-60
forwarding 2-207
non-IP traffic access lists 2-160
non-IP traffic forwarding
denying 2-60
permitting 2-207
normal-range VLANs 2-521
note, description xvi
no vlan command 2-521
O
output policy maps
and QoS group classification 2-186
and traffic shaping 2-261
commands not supported in 2-220
configuration guidelines 2-220
priority in 2-227
queue limit in 2-234
P
PAgP
See EtherChannel
pagp learn-method command 2-201
pagp port-priority command 2-203
parent policy maps 2-248
password-recovery mechanism, enabling and disabling 2-244
permit (ARP access-list configuration) command 2-205
permit command 2-207
per-VLAN spanning-tree plus
See STP
physical-port learner 2-201
PID, displaying 2-315
PIM-DVMRP, as multicast router learning method 2-139
police
multiple conform actions for a class 2-53
multiple exceed actions for a class 2-81
with priority 2-210
police aggregate command 2-213
police command 2-210
policer aggregate command 2-215
policer cpu uni command 2-218
policers
aggregate 2-213, 2-215
for CPU protection 2-218
individual 2-210
policy-map class, configuring multiple actions 2-53, 2-81
policy-map class configuration mode 2-34
policy-map class police configuration mode 2-53, 2-212
policy-map command 2-219
policy-map configuration mode 2-219
policy maps
and CoS classification 2-181
and DSCP classification 2-182
and IP precedence classification 2-184
and policing 2-211
applying 2-246
applying to an interface 2-220, 2-246, 2-258
child 2-248
creating 2-219
displaying 2-382
hierarchical 2-248
parent 2-248
policers
for a single class 2-210
for multiple classes 2-213, 2-215, 2-218, 2-248
setting priority 2-226
setting QoS group identifier 2-256
policy maps (continued)
traffic classification, defining 2-34
traffic marking
setting CoS values 2-250
setting DSCP values 2-252
setting IP precedence values 2-254
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 2-3
debug messages, display B-3
enabling 802.1x
globally 2-72
per interface 2-68
host modes 2-64
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-65
manual control of authorization state 2-68
multiple hosts on authorized port 2-64
periodic re-authentication
enabling 2-71
time between attempts 2-73
quiet period between failed authentication exchanges 2-73
re-authenticating 802.1x-enabled ports 2-70
resetting configurable 802.1x parameters 2-63
switch-to-authentication server retransmission time 2-73
switch-to-client frame-retransmission number2-66to 2-67
switch-to-client retransmission time 2-73
port-channel load-balance command 2-222
Port Fast, for spanning tree 2-466
port ranges, defining 2-55
ports, debugging B-56
ports, protected 2-499
port security
aging 2-495
debug messages, display B-58
enabling 2-491
violation error recovery 2-79
port shaping 2-262
port-type command 2-224
port types, MVR 2-198
power information, displaying 2-291
precedence
for QoS traffic marking 2-254
setting in policy maps 2-254
priority command 2-226
priority queuing, QoS 2-226
priority with police, QoS 2-226
private-vlan command 2-229
private-vlan mapping command 2-232
private VLANs
association 2-497
configuring 2-229
configuring ports 2-488
displaying 2-408
host ports 2-488
mapping
configuring 2-497
displaying 2-305
promiscuous ports 2-488
privileged EXEC mode 1-2, 1-3
product identification information, displaying 2-315
promiscuous ports, private VLANs 2-488
PVST+
See STP
Q
QoS
aggregate policers
applying 2-213
creating 2-215
displaying 2-379
class maps
creating 2-36
QoS (continued)
defining the match criteria 2-181
displaying 2-272
displaying statistics for 2-382, C-28
policy maps
applying an aggregate policer 2-213, 2-215, 2-218, 2-248
applying to an interface 2-246, 2-258
creating 2-219
defining policers 2-210
displaying policy maps 2-382
setting CoS values 2-250
setting DSCP values 2-252
setting IP precedence values 2-254
setting QoS group identifier 2-256
traffic classifications 2-34
table maps
configuring 2-506
displaying 2-401
QoS groups
as match criteria 2-186
for QoS traffic classification 2-256
setting in policy maps 2-256
QoS match criteria
ACLs 2-180
CoS value 2-181
DSCP value 2-182
precedence value 2-184
QoS group number 2-186
quality of service
See QoS
querytime, MVR 2-195
queue-limit command 2-234
R
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
re-authenticating 802.1x-enabled ports 2-70
re-authentication
periodic 2-71
time between attempts 2-73
receiver ports, MVR 2-198
receiving flow-control packets 2-83
recovery mechanism
causes 2-79
display 2-270, 2-292, 2-296
timer interval 2-79
remote-span command 2-237
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command A-17
renew ip dhcp snooping database command 2-239
reset (boot loader) command A-18
resource templates, displaying 2-391
rmdir (boot loader) command A-19
rmon collection stats command 2-241
root guard, for spanning tree 2-438
routed ports
IP addresses on 2-95
number supported 2-95
RSPAN
configuring 2-190
displaying 2-367
filter RSPAN traffic 2-190
remote-span command 2-237
sessions
add interfaces to 2-190
displaying 2-367
start new 2-190
S
sdm prefer command 2-242
SDM templates
allowed resources 2-242
displaying 2-391
secure ports, limitations 2-492
sending flow-control packets 2-83
service password-recovery command 2-244
service policy (policy-map class configuration) command 2-248
service-policy interface configuration command 2-246
service-policy policy-map class configuration command 2-248
set (boot loader) command A-20
set cos command 2-250
set dscp command 2-252
set precedence command 2-254
set qos-group command 2-256
setup command 2-258
SFPs, displaying information about 2-315
shape average command 2-261
show access-lists command 2-263
show aggregate-policer command 2-401
show archive status command 2-266
show arp access-list command 2-267
show boot command 2-268
show class-map command 2-272
show controllers cpu-interface command 2-273
show controllers ethernet-controller command 2-275
show controllers tcam command 2-282
show controllers utilization command 2-284
show controller utilization command 2-284
show dot1q-tunnel command 2-286
show dot1x command 2-288
show env command 2-291
show errdisable detect command 2-292
show errdisable flap-values command 2-294
show errdisable recovery command 2-296
show etherchannel command 2-298
show flowcontrol command 2-301
show idprom command 2-303
show interfaces command 2-305
show interfaces counters command 2-313
show inventory command 2-315
show ip arp inspection command 2-316
show ipc command 2-336
show ip dhcp snooping binding command 2-320
show ip dhcp snooping command 2-319
show ip dhcp snooping database command 2-322
show ip igmp profile command 2-324
show ip igmp snooping command 2-325
show ip igmp snooping command querier detail 2-331
show ip igmp snooping groups command 2-327
show ip igmp snooping mrouter command 2-329
show ip igmp snooping querier command 2-331
show ip igmp snooping querier detail command 2-331
show ip source binding command 2-333
show ip verify source command 2-334
show l2protocol-tunnel command 2-340
show lacp command 2-342
show mac access-group command 2-346
show mac address-table address command 2-350
show mac address-table aging time command 2-352
show mac address-table command 2-348
show mac address-table count command 2-354
show mac address-table dynamic command 2-356
show mac address-table interface command 2-358
show mac address-table learning command 2-360
show mac address-table notification command 2-361
show mac address-table static command 2-363
show mac address-table vlan command 2-365
show monitor command 2-367
show mvr command 2-369
show mvr interface command 2-371
show mvr members command 2-373
show pagp command 2-375
show parser macro command 2-377
show platform acl command C-2
show platform configuration command C-3
show platform etherchannel command C-4
show platform forward command C-5
show platform igmp snooping command C-7
show platform ipc trace command C-12
show platform ip multicast command C-9
show platform ip unicast command C-10
show platform layer4op command C-13
show platform mac-address-table command C-14
show platform messaging command C-15
show platform monitor command C-16
show platform mvr table command C-17
show platform pm command C-21
show platform policer cpu command C-18
show platform port-asic command C-23
show platform port-security command C-27
show platform qos command C-28
show platform resource-manager command C-31
show platform snmp counters command C-33
show platform spanning-tree synchronization command C-34
show platform stp-instance command C-35
show platform tcam command C-36
show platform vlan command C-39
show policer aggregate command 2-379
show policer cpu uni command 2-380
show policy-map command 2-382
show policy-map interface output fields 2-385
show port security command 2-386
show port-type command 2-389
show sdm prefer command 2-391
show spanning-tree command 2-393
show storm-control command 2-398
show system mtu command 2-400
show udld command 2-403
show version command 2-406
show vlan access-map command 2-413
show vlan command 2-408
show vlan command, fields 2-410
show vlan filter command 2-414
show vmps command 2-415
shutdown command 2-417
shutdown threshold, Layer 2 protocol tunneling 2-148
shutdown vlan command 2-418
SNMP host, specifying 2-422
SNMP informs, enabling the sending of 2-419
snmp-server enable traps command 2-419
snmp-server host command 2-422
snmp trap mac-notification command 2-426
SNMP traps
enabling MAC address notification trap 2-426
enabling the MAC address notification feature 2-165
enabling the sending of 2-419
software images
deleting 2-57
downloading 2-7
upgrading 2-7
uploading 2-13
software version, displaying 2-406
source ports, MVR 2-198
SPAN
configuring 2-190
debug messages, display B-15
displaying 2-367
filter SPAN traffic 2-190
sessions
add interfaces to 2-190
displaying 2-367
start new 2-190
spanning-tree bpdufilter command 2-428
spanning-tree bpduguard command 2-430
spanning-tree cost command 2-432
spanning-tree etherchannel command 2-434
spanning-tree extend system-id command 2-436
spanning-tree guard command 2-438
spanning-tree link-type command 2-440
spanning-tree loopguard default command 2-442
spanning-tree mode command 2-444
spanning-tree mst configuration command 2-446
spanning-tree mst cost command 2-448
spanning-tree mst forward-time command 2-450
spanning-tree mst hello-time command 2-451
spanning-tree mst max-age command 2-453
spanning-tree mst max-hops command 2-455
spanning-tree mst port-priority command 2-457
spanning-tree mst priority command 2-459
spanning-tree mst root command 2-460
spanning-tree portfast (global configuration) command 2-464
spanning-tree portfast (interface configuration) command 2-466
spanning-tree port-priority command 2-462
Spanning Tree Protocol
See STP
spanning-tree vlan command 2-468
speed command 2-471
SSH, configuring version 2-145
static-access ports, configuring 2-478
statistics, Ethernet group 2-241
sticky learning, enabling 2-491
storm-control command 2-473
STP
counters, clearing 2-49
debug messages, display
MSTP B-64
optimized BPDUs handling B-63
spanning-tree activity B-60
switch shim B-66
transmitted and received BPDUs B-62
enabling protocol tunneling for 2-148
EtherChannel misconfiguration 2-434
extended system ID 2-436
path cost 2-432
protocol modes 2-444
root port
loop guard 2-438
preventing from becoming designated 2-438
restricting which can be root 2-438
root guard 2-438
root switch
affects of extended system ID 2-436, 2-469
hello-time 2-468
interval between BDPU messages 2-468
interval between hello BPDU messages 2-468
max-age 2-468
port priority for selection of 2-462
primary or secondary 2-468
switch priority 2-468
state changes
blocking to forwarding state 2-466
enabling BPDU filtering 2-428, 2-464
enabling BPDU guard 2-430, 2-464
enabling Port Fast 2-464, 2-466
enabling timer to recover from error state 2-79
forward-delay time 2-468
length of listening and learning states 2-468
shutting down Port Fast-enabled ports 2-464
state information display 2-393
VLAN options 2-459, 2-468
SVIs, creating 2-89
Switched Port Analyzer
See SPAN
switching characteristics
modifying 2-476
returning to interfaces 2-476
switchport access command 2-478
switchport backup interface command 2-480
switchport block command 2-482
switchport command 2-476
switchport host command 2-484
switchport mode command 2-485
switchport mode private-vlan command 2-488
switchport port-security aging command 2-495
switchport port-security command 2-491
switchport private-vlan command 2-497
switchport protected command 2-499
switchports, displaying 2-305
switchport trunk command 2-501
system env temperature threshold yellow command 2-503
system message logging, save message to flash 2-156
system mtu command 2-504
system resource templates 2-242
T
table-map command 2-506
table-map configuration mode 2-506
table maps
configuring 2-506
displaying 2-401
QoS 2-506
tar files, creating, listing, and extracting 2-10
TDR, running 2-508
temperature information, displaying 2-291
templates, system resources 2-242
test cable-diagnostics tdr command 2-508
traceroute mac command 2-509
traceroute mac ip command 2-512
traffic shaping, QoS 2-261
trunking, VLAN mode 2-485
trunk mode 2-485
trunk ports 2-485
tunnel ports, Layer 2 protocol, displaying 2-340
type (boot loader) command A-23
U
UDLD
aggressive mode 2-514, 2-516
debug messages, display B-73
enable globally 2-514
enable per interface 2-516
error recovery timer 2-79
message timer 2-514
normal mode 2-514, 2-516
reset a shutdown interface 2-518
status 2-403
udld command 2-514
udld port command 2-516
udld reset command 2-518
unicast storm control 2-473
UniDirectional Link Detection
See UDLD
uni-vlan command 2-519
unknown multicast traffic, preventing 2-482
unknown unicast traffic, preventing 2-482
unset (boot loader) command A-24
upgrading
software images 2-7
monitoring status of 2-266
upgrading information
See release notes
user EXEC mode 1-2
user network interface 2-224
V
version (boot loader) command A-26
vlan access-map command 2-524
VLAN access map configuration mode 2-524
VLAN access maps
actions 2-5
displaying 2-413
vlan command 2-521
VLAN configuration mode
commands 2-521
description 1-4
entering 2-521
summary 1-2
vlan dot1q tag native command 2-526
vlan filter command 2-528
VLAN filters, displaying 2-414
VLAN ID range 2-521
VLAN maps
applying 2-528
creating 2-524
defining 2-178
displaying 2-413
VLAN Query Protocol
See VQP
VLANs
adding 2-521
configuring 2-521
debug messages, display
activation of B-71
VLAN IOS file system error tests B-70
VLAN manager activity B-68
displaying configurations 2-408
extended-range 2-521
MAC addresses
displaying 2-365
number of 2-354
normal-range 2-521
private 2-488
configuring 2-229
displaying 2-408
See also private VLANs
restarting 2-418
saving the configuration 2-521
shutting down 2-418
suspending 2-418
VMPS
configuring servers 2-533
displaying 2-415
error recovery timer 2-79
reconfirming dynamic VLAN assignments 2-530
vmps reconfirm (global configuration) command 2-531
vmps reconfirm (privileged EXEC) command 2-530
vmps retry command 2-532
vmps server command 2-533
VQP
and dynamic-access ports 2-479
clearing client statistics 2-52
displaying information 2-415
per-server retry count 2-532
reconfirmation interval 2-531
reconfirming dynamic VLAN assignments 2-530
VTP, enabling tunneling for 2-148
W
Weighted Tail Drop
See WTD
WTD, queue-limit command 2-234