Table Of Contents
A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W -
Index
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 2-100
MAC, displaying 2-387
matching for QoS classification 2-198
access mode 2-532
access ports 2-532
ACEs 2-63, 2-233
ACLs
as match criteria for QoS classes 2-198
deny 2-61
displaying 2-292
for non-IP protocols 2-176
IP 2-100
on Layer 2 interfaces 2-100
permit 2-231
action command 2-5
address aliasing 2-219
aggregate policers
applying 2-238
creating 2-240
displaying 2-422
QoS 2-241
aggregate-port learner 2-225
allowed VLANs 2-548
archive download-sw command 2-7
archive tar command 2-10
archive upload-sw command 2-13
arp access-list command 2-15
attaching policy maps to interfaces 2-274
audience xvii
authorization state of controlled port 2-69
autonegotiation of duplex mode 2-77
B
backup interfaces
configuring 2-526
displaying 2-342
bandwidth, configuring for QoS 2-17
bandwidth command 2-17
boot (boot loader) command A-2
boot boothlpr command 2-20
boot config-file command 2-21
boot enable-break command 2-22
boot helper command 2-23
boot helper-config file command 2-24
booting
Cisco IOS image 2-27
displaying environment variables 2-297
interrupting 2-22
manually 2-25
boot loader
accessing A-1
booting
Cisco IOS image A-2
helper image 2-23
directories
creating A-15
displaying a list of A-7
removing A-19
displaying
available commands A-12
memory heap utilization A-14
version A-26
environment variables
described A-20
displaying settings A-20
location of A-21
setting A-20
unsetting A-24
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-16, A-23
renaming A-17
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
loading helper images A-13
prompt A-1
resetting the system A-18
boot manual command 2-25
boot private-config-file command 2-26
boot system command 2-27
BPDU filtering, for spanning tree 2-472, 2-510
BPDU guard, for spanning tree 2-474, 2-510
broadcast storm control 2-519
bundling characteristics, UNI 2-83
burst bytes, in QoS policers 2-234, 2-240
C
cat (boot loader) command A-4
caution, description xviii
CBWFQ, configuring 2-17
CDP, enabling protocol tunneling for 2-160
CFM 2-224
CFM as OAM protocol 2-224
channel-group command 2-28
channel-protocol command 2-32
child policy maps 2-276
class-based traffic shaping 2-290
class-based weighted fair queuing
See CBWFQ
class command 2-34
class-map command 2-36
class-map configuration mode 2-37
class maps
creating 2-36
defining the match criteria 2-199
displaying 2-301
matching in 2-36
class of service
See CoS
clear ip arp inspection log command 2-38
clear ip arp inspection statistics command 2-39
clear ipc command 2-41
clear ip dhcp snooping database statistics command 2-40
clear l2protocol-tunnel counters command 2-42
clear lacp command 2-43
clear mac address-table command 2-44, 2-45
clear pagp command 2-46
clear policer cpu uni counters command 2-47
clear port-security command 2-48
clear spanning-tree counters command 2-50
clear spanning-tree detected-protocols command 2-51
clear vmps statistics command 2-53
command modes defined 1-1
committed information rate in QoS policers 2-234, 2-240
configuration, initial
See also getting started guide and hardware installation guide
configuration files
password recovery disable considerations A-1
specifying the name 2-21, 2-26
configuring multiple interfaces 2-96
conform-action command 2-54
control-plane policer 2-47
control-plane policer information, displaying 2-423
control-plane security 2-243
control plane statistics, clearing 2-47
conventions
command xviii
for examples xviii
publication xviii
text xviii
copy (boot loader) command A-5
CoS
as match criteria for QoS groups 2-199
for QoS classification 2-279
setting value in policy maps 2-279
CoS value, assigning to Layer 2 protocol packets 2-163
CPU ASIC statistics, displaying 2-302
CPU protection policers, displaying C-21
D
debug backup command B-2
debug dot1x command B-3
debug etherchannel command B-4
debug interface command B-10
debug ip dhcp snooping command B-8
debug ip igmp filter command B-11
debug ip igmp max-groups command B-12
debug ip igmp snooping command B-13
debug ip verify source packet command B-9
debug lacp command B-14
debug mac-notification command B-15
debug matm command B-16
debug matm move update command B-17
debug monitor command B-18
debug mvrdbg command B-19
debug nvram command B-20
debug pagp command B-21
debug platform acl command B-22
debug platform backup interface command B-24
debug platform cfm command B-23
debug platform cpu-queues command B-25
debug platform dot1x command B-27
debug platform etherchannel command B-28
debug platform forw-tcam command B-29
debug platform ip arp inspection command B-30
debug platform ipc command B-38
debug platform ip dhcp command B-31
debug platform ip igmp snooping command B-32
debug platform ip multicast command B-34
debug platform led command B-39
debug platform matm command B-40
debug platform messaging application command B-41
debug platform phy command B-42
debug platform pm command B-44
debug platform policer cpu uni command B-46
debug platform port-asic command B-47
debug platform port-security command B-48
debug platform qos-acl-tcam command B-49
debug platform remote-commands command B-50
debug platform resource-manager command B-51
debug platform snmp command B-52
debug platform span command B-53
debug platform supervisor-asic command B-54
debug platform sw-bridge command B-55
debug platform tcam command B-56
debug platform udld command B-58
debug platform vlan command B-59
debug pm command B-60
debug port-security command B-62
debug qos-manager command B-63
debug spanning-tree bpdu command B-66
debug spanning-tree bpdu-opt command B-67
debug spanning-tree command B-64
debug spanning-tree mstp command B-68
debug spanning-tree switch command B-70
debug sw-vlan command B-72
debug sw-vlan ifs command B-74
debug sw-vlan notification command B-75
debug udld command B-77
debug vqpc command B-79
default
policer configuration
NNIs C-23
UNIs C-22
define interface-range command 2-56
delete (boot loader) command A-6
delete command 2-58
deny (ARP access-list configuration) command 2-59
deny command 2-61
detect mechanism, causes 2-78
DHCP snooping
accepting untrusted packets from edge switch 2-125
enabling
on a VLAN 2-131
option 82 2-123, 2-125
trust on an interface 2-129
error recovery timer 2-80
rate limiting 2-128
DHCP snooping binding database
binding file, configuring 2-121
bindings
adding 2-119
deleting 2-119
displaying 2-358
clearing database agent statistics 2-40
database agent, configuring 2-121
displaying
binding entries 2-358
database agent status 2-360
renewing 2-266
differentiated service code point
See DSCP
dir (boot loader) command A-7
directories, deleting 2-58
documentation, related xviii
document conventions xviii
domains, CFM 2-224
dot1x default command 2-64
dot1x host-mode command 2-65
dot1x initialize command 2-66
dot1x max-req command 2-67, 2-68
dot1x port-control command 2-69
dot1x re-authenticate command 2-71
dot1x reauthentication command 2-72
dot1x system-auth-control command 2-73
dot1x timeout command 2-74
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-160
DSCP
as match criteria for QoS groups 2-200, 2-206
for QoS traffic marking 2-281
setting in policy maps 2-281
dual-purpose uplink ports
selecting the type 2-211
duplex command 2-76
dynamic-access ports
configuring 2-524
restrictions 2-525
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-105
define 2-15
deny packets 2-59
display 2-296
permit packets 2-229
clear
log buffer 2-38
statistics 2-39
display
ARP ACLs 2-296
configuration and operating state 2-354
log buffer 2-354
statistics 2-354
trust state and rate limit 2-354
enable per VLAN 2-115
error detection for 2-78
error recovery timer 2-80
log buffer
clear 2-38
configure 2-109
display 2-354
rate-limit incoming ARP packets 2-107
statistics
clear 2-39
display 2-354
trusted interface state 2-111
type of packet logged 2-116
validation checks 2-113
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
E
EAP-request/identity frame
maximum number to send 2-68
response time before retransmitting 2-74
E-LMI mapping 2-83
environment variables, displaying 2-297
errdisable detect cause command 2-78
errdisable recovery command 2-80
error conditions, displaying 2-325
error disable detection 2-78
error-disabled interfaces, displaying 2-342
EtherChannel
assigning Ethernet interface to channel group 2-28
creating port-channel logical interface 2-94
debug EtherChannel/PAgP, display B-4
debug platform-specific events, display B-28
displaying 2-329
enabling Layer 2 protocol tunneling for
LACP 2-161
PAgP 2-161
UDLD 2-161
interface information, displaying 2-342
LACP
clearing channel-group information 2-43
debug messages, display B-14
displaying 2-381
modes 2-28
port priority for hot-standby ports 2-164
restricting a protocol 2-32
system priority 2-166
load-distribution methods 2-247
PAgP
aggregate-port learner 2-225
clearing channel-group information 2-46
debug messages, display B-21
displaying 2-418
error detection for 2-78
error recovery timer 2-80
learn method 2-225
modes 2-28
physical-port learner 2-225
priority of interface for transmitted traffic 2-227
Ethernet controller, internal register display 2-304
ethernet evc command 2-82
ethernet lmi ce-vlan map command 2-83, 2-85
Ethernet Local Management Interface
See E-LMI
Ethernet service
debugging B-6
displaying 2-332
Ethernet service instance 2-270
Ethernet service interfaces 2-336
Ethernet statistics, collecting 2-267
Ethernet UNI configuration 2-87
ethernet uni id command 2-89
Ethernet virtual connections
See EVCs
EVC configuration mode 2-82
EVCs 2-82
and VLANs 2-87
service instances 2-270
UNI counts 2-569
EVC service
point-to-multipoint 2-569
point-to-point 2-569
examples, conventions for xviii
exceed-action command 2-90
extended-range VLANs
and allowed VLAN list 2-548
configuring 2-573
extended system ID for STP 2-480
F
fan information, displaying 2-320
files, deleting 2-58
flash_init (boot loader) command A-9
Flex Links
configuring 2-526
displaying 2-342
flowcontrol command 2-92
format (boot loader) command A-10
forwarding packets, with ACL matches 2-5
forwarding results, display C-6
frame forwarding information, displaying C-6
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-292
help (boot loader) command A-12
host connection, port configuration 2-531
host ports, private VLANs 2-535
I
IEEE 802.1ag Connectivity Fault Management
See CFM
IEEE 802.1Q trunk ports and native VLANs 2-578
IEEE 802.1Q tunnel ports
configuring 2-532
displaying 2-315
limitations 2-533
IEEE 802.1x
and switchport modes 2-533
violation error recovery 2-80
See also port-based authentication
IGMP filters
applying 2-134
debug messages, display B-11
IGMP groups, setting maximum 2-135
IGMP maximum groups, debugging B-12
IGMP profiles
creating 2-137
displaying 2-362
IGMP snooping
adding ports as a static member of a group 2-152
displaying 2-363, 2-367, 2-369
enabling 2-139
enabling the configurable-leave timer 2-141
enabling the Immediate-Leave feature 2-149
flooding query count 2-147
interface topology change notification behavior 2-148
multicast table 2-365
querier 2-143
query solicitation 2-147
report suppression 2-145
switch topology change notification behavior 2-147
images
See software images
Immediate-Leave feature, MVR 2-221
immediate-leave processing 2-149
initial configuration
See also getting started guide and hardware installation guide
input policy maps
and ACL classification 2-198
and aggregate policers 2-241
commands not supported in 2-245
configuration guidelines 2-245
interface command 2-98
interface configuration mode 1-2, 1-4
interface port-channel command 2-94
interface range command 2-96
interface-range macros 2-56
interfaces
assigning Ethernet interface to channel group 2-28
configuring 2-76
configuring multiple 2-96
creating port-channel logical 2-94
debug messages, display B-10
disabling 2-461
displaying the MAC address table 2-399
restarting 2-461
interface speed, configuring 2-517
internal registers, displaying 2-304, 2-311
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-78
error recovery timer 2-80
ip address command 2-103
IP addresses, setting 2-103
IP address matching 2-196
ip arp inspection filter vlan command 2-105
ip arp inspection limit command 2-107
ip arp inspection log-buffer command 2-109
ip arp inspection trust command 2-111
ip arp inspection validate command 2-113
ip arp inspection vlan command 2-115
ip arp inspection vlan logging command 2-116
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 2-119
ip dhcp snooping command 2-118
ip dhcp snooping database command 2-121
ip dhcp snooping information option allow-untrusted command 2-125
ip dhcp snooping information option command 2-123
ip dhcp snooping information option format remote-id command 2-127
ip dhcp snooping limit rate command 2-128
ip dhcp snooping trust command 2-129
ip dhcp snooping verify command 2-130
ip dhcp snooping vlan command 2-131
ip dhcp snooping vlan information option format-type circuit-id string command 2-132
ip igmp filter command 2-134
ip igmp max-groups command 2-135
ip igmp profile command 2-137
ip igmp snooping command 2-139
ip igmp snooping last-member-query-interval command 2-141
ip igmp snooping querier command 2-143
ip igmp snooping report-suppression command 2-145
ip igmp snooping tcn command 2-147
ip igmp snooping tcn flood command 2-148
ip igmp snooping vlan immediate-leave command 2-149
ip igmp snooping vlan mrouter command 2-150
ip igmp snooping vlan static command 2-152
IP multicast addresses 2-218
IP precedence, as match criteria for QoS groups 2-202
ip source binding command 2-154
IP source guard
disabling 2-158
displaying
binding entries 2-371
configuration 2-373
enabling 2-158
static IP source bindings 2-154
IP source guard, displaying
dynamic binding entries 2-358
ip ssh command 2-156
ip verify source command 2-158
J
jumbo frames
See MTU
L
l2protocol-tunnel command 2-160
l2protocol-tunnel cos command 2-163
LACP
See EtherChannel
lacp port-priority command 2-164
lacp system-priority command 2-166
Layer 2 mode, enabling 2-522
Layer 2 protocol ports, displaying 2-379
Layer 2 protocol-tunnel
error detection for 2-78
error recovery timer 2-80
Layer 2 protocol tunnel counters 2-42
Layer 2 protocol tunneling error recovery 2-161
Layer 2 traceroute
IP addresses 2-562
MAC addresses 2-559
Layer 3 mode, enabling 2-522
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 2-78
error recovery timer 2-80
link state group command 2-168
link state track command 2-170
load_helper (boot loader) command A-13
load-distribution methods for EtherChannel 2-247
logging event command 2-171
logging file command 2-172
logical interface 2-94
loopback error
detection for 2-78
recovery timer 2-80
loop guard, for spanning tree 2-482, 2-486
M
mac access-group command 2-174
MAC access-groups, displaying 2-387
MAC access list configuration mode 2-176
mac access-list extended command 2-176
MAC access lists 2-61
MAC addresses
disabling MAC address learning per VLAN 2-179
displaying
aging time 2-393
all 2-391
dynamic 2-397
MAC address-table move updates 2-402
notification settings 2-401, 2-404
number of addresses in a VLAN 2-395
per interface 2-399
per VLAN 2-408
static 2-406
static and dynamic entries 2-389
dynamic
aging time 2-178
deleting 2-44
displaying 2-397
enabling MAC address notification 2-183
enabling MAC address-table move update 2-181
matching 2-196
static
adding and removing 2-185
displaying 2-406
dropping on an interface 2-186
tables 2-391
MAC address notification, debugging B-15
mac address-table aging-time 2-174, 2-196
mac address-table aging-time command 2-178
mac address-table learning command 2-179
mac address-table move update command 2-181
mac address-table notification command 2-183
mac address-table static command 2-185
mac address-table static drop command 2-186
macro description command 2-190
macro global command 2-191
macro global description command 2-193
macro name command 2-194
macros
adding a description 2-190
adding a global description 2-193
applying 2-191
creating 2-194
displaying 2-420
interface range 2-56, 2-96
specifying parameter values 2-191
tracing 2-191
maintenance end points 2-569
manual
audience xvii
purpose of xvii
mapping tables, QoS 2-555
maps
class
creating 2-36
VLAN
creating 2-576
defining 2-196
displaying 2-456
match access-group command 2-198
match cos command 2-199
match ip dscp command 2-200
match ip precedence command 2-202
match qos-group command 2-204
match vlan command 2-206
maximum transmission unit
See MTU
mdix auto command 2-209
media-type command 2-211
memory (boot loader) command A-14
mkdir (boot loader) command A-15
mode, MVR 2-218
modes, commands 1-1
monitor session command 2-213
more (boot loader) command A-16
MSTP
displaying 2-437
interoperability 2-51
link type 2-484
MST region
aborting changes 2-490
applying changes 2-490
configuration name 2-490
configuration revision number 2-490
current or pending display 2-490
displaying 2-437
MST configuration mode 2-490
VLANs-to-instance mapping 2-490
path cost 2-492
protocol mode 2-488
restart protocol migration process 2-51
root port
loop guard 2-482
preventing from becoming designated 2-482
restricting which can be root 2-482
root guard 2-482
root switch
affects of extended system ID 2-480
hello-time 2-495, 2-506
interval between BDPU messages 2-497
interval between hello BPDU messages 2-495, 2-506
max-age 2-497
maximum hop count before discarding BPDU 2-499
port priority for selection of 2-501
primary or secondary 2-506
switch priority 2-504
state changes
blocking to forwarding state 2-512
enabling BPDU filtering 2-472, 2-510
enabling BPDU guard 2-474, 2-510
enabling Port Fast 2-510, 2-512
forward-delay time 2-494
length of listening and learning states 2-494
rapid transition to forwarding 2-484
shutting down Port Fast-enabled ports 2-510
state information display 2-436
MTU
configuring size 2-552
displaying global setting 2-444
multicast group address, MVR 2-221
multicast groups, MVR 2-219
multicast router learning method 2-150
multicast router ports, configuring 2-150
multicast storm control 2-519
multicast VLAN, MVR 2-218
multicast VLAN registration
See MVR
multiple hosts on authorized port 2-65
Multiple Spanning Tree Protocol
See MSTP
multiplexing, UNI 2-87
MVR
and address aliasing 2-219
configuring 2-218
configuring interfaces 2-221
debug messages, display B-19
displaying 2-412
displaying interface information 2-414
members, displaying 2-416
mvr (global configuration) command 2-218
mvr (interface configuration) command 2-221
mvr vlan group command 2-222
N
native VLANs 2-548
native VLAN tagging 2-578
network node interface 2-249
nonegotiate, speed 2-517, 2-518
non-IP protocols
denying 2-61
forwarding 2-231
non-IP traffic access lists 2-176
non-IP traffic forwarding
denying 2-61
permitting 2-231
normal-range VLANs 2-573
note, description xviii
no vlan command 2-573
O
OAM protocol 2-224
oam protocol cfm svlan command 2-224
operation, administration, and maintenance protocol
See OAM
output policy maps
and QoS group classification 2-204
and traffic shaping 2-290
commands not supported in 2-245
configuration guidelines 2-245
priority in 2-254
queue limit in 2-261
P
PAgP
See EtherChannel
pagp learn-method command 2-225
pagp port-priority command 2-227
parent policy maps 2-277
password-recovery mechanism, enabling and disabling 2-272
permit (ARP access-list configuration) command 2-229
permit command 2-231
per-VLAN spanning-tree plus
See STP
physical-port learner 2-225
PID, displaying 2-352
PIM-DVMRP, as multicast router learning method 2-150
police
multiple conform actions for a class 2-54
multiple exceed actions for a class 2-90
with priority 2-234
police aggregate command 2-238
police command 2-234
policer aggregate command 2-240
policer configuration
default for NNIs C-23
default for UNIs C-22
policer cpu uni command 2-243
policers
aggregate 2-238, 2-240
for CPU protection 2-243
individual 2-234
policy-map class, configuring multiple actions 2-54, 2-90
policy-map class configuration mode 2-34
policy-map class police configuration mode 2-54, 2-236
policy-map command 2-244
policy-map configuration mode 2-244
policy maps
and CoS classification 2-199
and DSCP classification 2-200
and IP precedence classification 2-202
and policing 2-236
applying 2-274
applying to an interface 2-245, 2-274, 2-287
child 2-276
creating 2-244
displaying 2-425
hierarchical 2-276
parent 2-277
policers
for a single class 2-234
for multiple classes 2-238, 2-240, 2-243, 2-276
setting priority 2-253
setting QoS group identifier 2-285
traffic classification, defining 2-34
traffic marking
setting CoS values 2-279
setting DSCP values 2-281
setting IP precedence values 2-283
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 2-3
debug messages, display B-3
enabling 802.1x
globally 2-73
per interface 2-69
host modes 2-65
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-66
manual control of authorization state 2-69
multiple hosts on authorized port 2-65
periodic re-authentication
enabling 2-72
time between attempts 2-74
quiet period between failed authentication exchanges 2-74
re-authenticating 802.1x-enabled ports 2-71
resetting configurable 802.1x parameters 2-64
switch-to-authentication server retransmission time 2-74
switch-to-client frame-retransmission number2-67to 2-68
switch-to-client retransmission time 2-74
port-channel load-balance command 2-247
Port Fast, for spanning tree 2-512
port ranges, defining 2-56
ports, debugging B-60
ports, protected 2-546
port security
aging 2-542
debug messages, display B-62
enabling 2-538
violation error recovery 2-80
port shaping 2-291
port-type command 2-249
port types, MVR 2-221
power information, displaying 2-320
power-supply dual command 2-251
precedence
for QoS traffic marking 2-283
setting in policy maps 2-283
priority command 2-253
priority queuing, QoS 2-253
priority with police, QoS 2-253
private-vlan command 2-256
private-vlan mapping command 2-259
private VLANs
association 2-544
configuring 2-256
configuring ports 2-535
displaying 2-451
host ports 2-535
mapping
configuring 2-544
displaying 2-342
promiscuous ports 2-535
privileged EXEC mode 1-2, 1-3
product identification information, displaying 2-352
promiscuous ports, private VLANs 2-535
PVST+
See STP
Q
QoS
aggregate policers
applying 2-238
creating 2-240
displaying 2-422
class maps
creating 2-36
defining the match criteria 2-199
displaying 2-301
displaying statistics for 2-425, C-29
policy maps
applying an aggregate policer 2-238, 2-240, 2-243, 2-276
applying to an interface 2-274, 2-287
creating 2-244
defining policers 2-234
displaying policy maps 2-425
setting CoS values 2-279
setting DSCP values 2-281
setting IP precedence values 2-283
setting QoS group identifier 2-285
traffic classifications 2-34
table maps
configuring 2-555
displaying 2-445
QoS groups
as match criteria 2-204
for QoS traffic classification 2-285
setting in policy maps 2-285
QoS match criteria
ACLs 2-198
CoS value 2-199
DSCP value 2-200, 2-206
precedence value 2-202
QoS group number 2-204
quality of service
See QoS
querytime, MVR 2-218
queue-limit command 2-261
R
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
re-authenticating 802.1x-enabled ports 2-71
re-authentication
periodic 2-72
time between attempts 2-74
receiver ports, MVR 2-221
receiving flow-control packets 2-92
recovery mechanism
causes 2-80
display 2-299, 2-323, 2-327
timer interval 2-80
remote-span command 2-264
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command A-17
renew ip dhcp snooping database command 2-266
reset (boot loader) command A-18
resource templates, displaying 2-434
rmdir (boot loader) command A-19
rmon collection stats command 2-267
root guard, for spanning tree 2-482
routed ports
IP addresses on 2-104
number supported 2-104
RSPAN
configuring 2-213
displaying 2-410
filter RSPAN traffic 2-213
remote-span command 2-264
sessions
add interfaces to 2-213
displaying 2-410
start new 2-213
S
sdm prefer command 2-268
SDM templates
allowed resources 2-269
displaying 2-434
secure ports, limitations 2-540
sending flow-control packets 2-92
service instance command 2-270
service instances, displaying 2-334
service password-recovery command 2-272
service policy (policy-map class configuration) command 2-276
service-policy interface configuration command 2-274
service-policy policy-map class configuration command 2-276
set (boot loader) command A-20
set cos command 2-279
set dscp command 2-281
set precedence command 2-283
set qos-group command 2-285
setup command 2-287
SFPs, displaying information about 2-352
shape average command 2-290
show access-lists command 2-292
show aggregate-policer command 2-445
show archive status command 2-295
show arp access-list command 2-296
show boot command 2-297
show class-map command 2-301
show controllers cpu-interface command 2-302
show controllers ethernet-controller command 2-304
show controllers tcam command 2-311
show controllers utilization command 2-313
show controller utilization command 2-313
show dot1q-tunnel command 2-315
show dot1x command 2-317
show env command 2-320
show errdisable detect command 2-323
show errdisable flap-values command 2-325
show errdisable recovery command 2-327
show etherchannel command 2-329
show ethernet service evc command 2-332
show ethernet service instance command 2-334
show ethernet service interface command 2-336
show flowcontrol command 2-338
show idprom command 2-340
show interfaces command 2-342
show interfaces counters command 2-350
show inventory command 2-352
show ip arp inspection command 2-354
show ipc command 2-375
show ip dhcp snooping binding command 2-358
show ip dhcp snooping command 2-357
show ip dhcp snooping database command 2-360
show ip igmp profile command 2-362
show ip igmp snooping command 2-363
show ip igmp snooping command querier detail 2-369
show ip igmp snooping groups command 2-365
show ip igmp snooping mrouter command 2-367
show ip igmp snooping querier command 2-369
show ip igmp snooping querier detail command 2-369
show ip source binding command 2-371
show ip verify source command 2-373
show l2protocol-tunnel command 2-379
show lacp command 2-381
show link state group command 2-385
show mac access-group command 2-387
show mac address-table address command 2-391
show mac address-table aging time command 2-393
show mac address-table command 2-389
show mac address-table count command 2-395
show mac address-table dynamic command 2-397
show mac address-table interface command 2-399
show mac address-table learning command 2-401
show mac address-table move update command 2-402
show mac address-table notification command 2-45, 2-404, B-17
show mac address-table static command 2-406
show mac address-table vlan command 2-408
show monitor command 2-410
show mvr command 2-412
show mvr interface command 2-414
show mvr members command 2-416
show pagp command 2-418
show parser macro command 2-420
show platform acl command C-2
show platform cfm command C-3
show platform configuration command C-4
show platform etherchannel command C-5
show platform forward command C-6
show platform igmp snooping command C-8
show platform ipc trace command C-13
show platform ip multicast command C-10
show platform ip unicast command C-11
show platform layer4op command C-14
show platform mac-address-table command C-15
show platform messaging command C-16
show platform monitor command C-17
show platform mvr table command C-18
show platform pm command C-19
show platform policer cpu command C-21
show platform port-asic command C-24
show platform port-security command C-28
show platform qos command C-29
show platform resource-manager command C-32
show platform snmp counters command C-34
show platform spanning-tree synchronization command C-35
show platform stp-instance command C-36
show platform tcam command C-37
show platform vlan command C-40
show policer aggregate command 2-422
show policer cpu uni command 2-423
show policy-map command 2-425
show policy-map interface output fields 2-428
show port security command 2-429
show port-type command 2-432
show sdm prefer command 2-434
show spanning-tree command 2-436
show storm-control command 2-442
show system mtu command 2-444
show udld command 2-447
show version command 2-449
show vlan access-map command 2-456
show vlan command 2-451
show vlan command, fields 2-453
show vlan filter command 2-457
show vmps command 2-458
shutdown command 2-461
shutdown threshold, Layer 2 protocol tunneling 2-160
shutdown vlan command 2-462
SNMP host, specifying 2-466
SNMP informs, enabling the sending of 2-463
snmp-server enable traps command 2-463
snmp-server host command 2-466
snmp trap mac-notification command 2-470
SNMP traps
enabling MAC address notification trap 2-470
enabling the MAC address notification feature 2-183
enabling the sending of 2-463
software images
deleting 2-58
downloading 2-7
upgrading 2-7
uploading 2-13
software version, displaying 2-449
source ports, MVR 2-221
SPAN
configuring 2-213
debug messages, display B-18
displaying 2-410
filter SPAN traffic 2-213
sessions
add interfaces to 2-213
displaying 2-410
start new 2-213
spanning-tree bpdufilter command 2-472
spanning-tree bpduguard command 2-474
spanning-tree cost command 2-476
spanning-tree etherchannel command 2-478
spanning-tree extend system-id command 2-480
spanning-tree guard command 2-482
spanning-tree link-type command 2-484
spanning-tree loopguard default command 2-486
spanning-tree mode command 2-488
spanning-tree mst configuration command 2-490
spanning-tree mst cost command 2-492
spanning-tree mst forward-time command 2-494
spanning-tree mst hello-time command 2-495
spanning-tree mst max-age command 2-497
spanning-tree mst max-hops command 2-499
spanning-tree mst port-priority command 2-501
spanning-tree mst pre-standard command 2-503
spanning-tree mst priority command 2-504
spanning-tree mst root command 2-506
spanning-tree portfast (global configuration) command 2-510
spanning-tree portfast (interface configuration) command 2-512
spanning-tree port-priority command 2-508
Spanning Tree Protocol
See STP
spanning-tree vlan command 2-514
speed command 2-517
SSH, configuring version 2-156
static-access ports, configuring 2-524
statistics, Ethernet group 2-267
sticky learning, enabling 2-538
storm-control command 2-519
STP
counters, clearing 2-50
debug messages, display
MSTP B-68
optimized BPDUs handling B-67
spanning-tree activity B-64
switch shim B-70
transmitted and received BPDUs B-66
enabling protocol tunneling for 2-160
EtherChannel misconfiguration 2-478
extended system ID 2-480
path cost 2-476
protocol modes 2-488
root port
loop guard 2-482
preventing from becoming designated 2-482
restricting which can be root 2-482
root guard 2-482
root switch
affects of extended system ID 2-480, 2-515
hello-time 2-514
interval between BDPU messages 2-514
interval between hello BPDU messages 2-514
max-age 2-514
port priority for selection of 2-508
primary or secondary 2-514
switch priority 2-514
state changes
blocking to forwarding state 2-512
enabling BPDU filtering 2-472, 2-510
enabling BPDU guard 2-474, 2-510
enabling Port Fast 2-510, 2-512
enabling timer to recover from error state 2-80
forward-delay time 2-514
length of listening and learning states 2-514
shutting down Port Fast-enabled ports 2-510
state information display 2-436
VLAN options 2-504, 2-514
SVIs, creating 2-98
Switched Port Analyzer
See SPAN
switching characteristics
modifying 2-522
returning to interfaces 2-522
switchport access command 2-524
switchport backup interface command 2-526
switchport block command 2-529
switchport command 2-522
switchport host command 2-531
switchport mode command 2-532
switchport mode private-vlan command 2-535
switchport port-security aging command 2-542
switchport port-security command 2-538
switchport private-vlan command 2-544
switchport protected command 2-546
switchports, displaying 2-342
switchport trunk command 2-548
system env temperature threshold yellow command 2-550
system message logging, save message to flash 2-172
system mtu command 2-552
system resource templates 2-268
T
table-map command 2-555
table-map configuration mode 2-555
table maps
configuring 2-555
displaying 2-445
QoS 2-555
tar files, creating, listing, and extracting 2-10
TDR, running 2-557
temperature information, displaying 2-320
templates, system resources 2-268
test cable-diagnostics tdr command 2-557
traceroute mac command 2-559
traceroute mac ip command 2-562
traffic shaping, QoS 2-290
trunking, VLAN mode 2-532
trunk mode 2-532
trunk ports 2-532
tunnel ports, Layer 2 protocol, displaying 2-379
type (boot loader) command A-23
U
UDLD
aggressive mode 2-564, 2-566
debug messages, display B-77
enable globally 2-564
enable per interface 2-566
error recovery timer 2-80
message timer 2-564
normal mode 2-564, 2-566
reset a shutdown interface 2-568
status 2-447
udld command 2-564
udld port command 2-566
udld reset command 2-568
UNI
bundling and multiplexing 2-87
Ethernet 2-87
unicast storm control 2-519
uni count command 2-569
UniDirectional Link Detection
See UDLD
UNI ID, Ethernet 2-89
uni-vlan command 2-571
unknown multicast traffic, preventing 2-529
unknown unicast traffic, preventing 2-529
unset (boot loader) command A-24
upgrading
software images 2-7
monitoring status of 2-295
upgrading information
See release notes
user EXEC mode 1-2
user network interface 2-249
V
version (boot loader) command A-26
vlan access-map command 2-576
VLAN access map configuration mode 2-576
VLAN access maps
actions 2-5
displaying 2-456
vlan command 2-573
VLAN configuration mode
commands 2-573
description 1-4
entering 2-573
summary 1-2
vlan dot1q tag native command 2-578
vlan filter command 2-580
VLAN filters, displaying 2-457
VLAN ID range 2-573
VLAN maps
applying 2-580
creating 2-576
defining 2-196
displaying 2-456
VLAN Query Protocol
See VQP
VLANs
adding 2-573
configuring 2-573
debug messages, display
activation of B-75
VLAN IOS file system error tests B-74
VLAN manager activity B-72
displaying configurations 2-451
extended-range 2-573
MAC addresses
displaying 2-408
number of 2-395
normal-range 2-573
private 2-535
configuring 2-256
displaying 2-451
See also private VLANs
restarting 2-462
saving the configuration 2-573
shutting down 2-462
suspending 2-462
VMPS
configuring servers 2-585
displaying 2-458
error recovery timer 2-80
reconfirming dynamic VLAN assignments 2-582
vmps reconfirm (global configuration) command 2-583
vmps reconfirm (privileged EXEC) command 2-582
vmps retry command 2-584
vmps server command 2-585
VQP
and dynamic-access ports 2-525
clearing client statistics 2-53
displaying information 2-458
per-server retry count 2-584
reconfirmation interval 2-583
reconfirming dynamic VLAN assignments 2-582
VTP, enabling tunneling for 2-160
W
Weighted Tail Drop
See WTD
WTD, queue-limit command 2-261