Table Of Contents
A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W -
Index
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
See ACEs
access control lists
See ACLs
access groups
IP 2-114
MAC, displaying 2-425
matching for QoS classification 2-216
access mode 2-580
access ports 2-580
ACEs 2-66, 2-250
ACLs
as match criteria for QoS classes 2-216
deny 2-64
displaying 2-320
for non-IP protocols 2-194
IP 2-114
on Layer 2 interfaces 2-114
permit 2-248
action command 2-5
address aliasing 2-236
aggregate policers
applying 2-255
creating 2-257
displaying 2-460
QoS 2-258
aggregate-port learner 2-242
allowed VLANs 2-596
archive download-sw command 2-7
archive tar command 2-10
archive upload-sw command 2-13
arp access-list command 2-15
attaching policy maps to interfaces 2-302
authorization state of controlled port 2-73
autonegotiation of duplex mode 2-85
B
backup interfaces
configuring 2-573
displaying 2-370
bandwidth, configuring for QoS 2-17
bandwidth command 2-17
boot (boot loader) command A-2
boot config-file command 2-20
boot enable-break command 2-21
boot helper command 2-22
boot helper-config file command 2-23
booting
Cisco IOS image 2-26
displaying environment variables 2-325
interrupting 2-21
manually 2-24
boot loader
accessing A-1
booting
Cisco IOS image A-2
helper image 2-22
directories
creating A-14
displaying a list of A-7
removing A-18
displaying
available commands A-12
memory heap utilization A-13
version A-25
environment variables
described A-19
displaying settings A-19
location of A-20
setting A-19
unsetting A-23
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-15, A-22
renaming A-16
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
prompt A-1
resetting the system A-17
boot manual command 2-24
boot private-config-file command 2-25
boot system command 2-26
BPDU filtering, for spanning tree 2-518, 2-556
BPDU guard, for spanning tree 2-520, 2-556
broadcast storm control 2-566
bundling characteristics, UNI 2-97
burst bytes, in QoS policers 2-251, 2-257
C
cat (boot loader) command A-4
CBWFQ, configuring 2-17
CDP, enabling protocol tunneling for 2-174
CFM 2-241
CFM as OAM protocol 2-241
channel-group command 2-27
channel-protocol command 2-31
child policy maps 2-304
class-based traffic shaping 2-318
class-based weighted fair queuing
See CBWFQ
class command 2-33
class-map command 2-35
class-map configuration mode 2-35
class maps
creating 2-35
defining the match criteria 2-217
displaying 2-329
matching in 2-35
class of service
See CoS
clear ip arp inspection log command 2-37
clear ip arp inspection statistics command 2-38
clear ipc command 2-41
clear l2protocol-tunnel counters command 2-42
clear lacp command 2-43
clear mac address-table command 2-44, 2-45
clear pagp command 2-46, 2-50
clear policer cpu uni-eni counters command 2-47
clear port-security command 2-48
clear spanning-tree counters command 2-51
clear spanning-tree detected-protocols command 2-52
clear vmps statistics command 2-54
command modes defined 1-1
committed information rate in QoS policers 2-251, 2-257
configuration files
password recovery disable considerations A-1
specifying the name 2-20, 2-25
configuring multiple interfaces 2-110
conform-action command 2-55
control-plane policer 2-47
control-plane policer information, displaying 2-461
control-plane security 2-260
control plane statistics, clearing 2-47
copy (boot loader) command A-5
CoS
as match criteria for QoS groups 2-217
for QoS classification 2-307
setting value in policy maps 2-307
CoS value, assigning to Layer 2 protocol packets 2-177
CPU ASIC statistics, displaying 2-330
CPU protection policers, displaying C-20
cpu traffic qos 2-57
D
debug backup command B-2
debug dot1x command B-3
debug etherchannel command B-4
debug interface command B-9
debug ip dhcp snooping command B-7
debug ip igmp filter command B-10
debug ip igmp max-groups command B-11
debug ip igmp snooping command B-12
debug ip verify source packet command B-8
debug lacp command B-13
debug mac-notification command B-14
debug matm command B-15
debug matm move update command B-16
debug monitor command B-17
debug mvrdbg command B-18
debug nvram command B-19
debug pagp command B-20
debug platform acl command B-21
debug platform backup interface command B-23
debug platform cfm command B-22
debug platform cpu-queues command B-24
debug platform dot1x command B-26
debug platform etherchannel command B-27
debug platform forw-tcam command B-28
debug platform ip arp inspection command B-29
debug platform ipc command B-37
debug platform ip dhcp command B-30
debug platform ip igmp snooping command B-31
debug platform ip multicast command B-33
debug platform led command B-38
debug platform matm command B-39
debug platform messaging application command B-40
debug platform phy command B-41
debug platform pm command B-43
debug platform policer cpu uni-eni command B-45
debug platform port-asic command B-46
debug platform port-security command B-47
debug platform qos-acl-tcam command B-48
debug platform remote-commands command B-49
debug platform rep command B-50
debug platform resource-manager command B-51
debug platform snmp command B-52
debug platform span command B-53
debug platform supervisor-asic command B-54
debug platform sw-bridge command B-55
debug platform tcam command B-56
debug platform udld command B-58
debug platform vlan command B-59
debug pm command B-60
debug port-security command B-62
debug qos-manager command B-64
debug rep command B-63
debug spanning-tree bpdu command B-67
debug spanning-tree bpdu-opt command B-68
debug spanning-tree command B-65
debug spanning-tree mstp command B-69
debug spanning-tree switch command B-71
debug sw-vlan command B-73
debug sw-vlan ifs command B-74
debug sw-vlan notification command B-75
debug udld command B-77
debug vqpc command B-79
default policer configuration
NNIs C-22
UNIs C-21
define interface-range command 2-59
delete (boot loader) command A-6
delete command 2-61
deny (ARP access-list configuration) command 2-62
deny command 2-64
detect mechanism, causes 2-86
DHCP snooping
accepting untrusted packets from edge switch 2-139
enabling
on a VLAN 2-145
option 82 2-137, 2-139
trust on an interface 2-143
error recovery timer 2-90
rate limiting 2-142
DHCP snooping binding database
binding file, configuring 2-135
bindings
adding 2-133
deleting 2-133
displaying 2-391
clearing database agent statistics 2-39
database agent, configuring 2-135
displaying
binding entries 2-391
database agent status 2-393, 2-395
renewing 2-283
differentiated service code point
See DSCP
Digital Optical Monitoring
see DoM
dir (boot loader) command A-7
directories, deleting 2-61
DoM
displaying supported transceivers 2-382
domains, CFM 2-241
dot1x default command 2-67
dot1x host-mode command 2-68
dot1x initialize command 2-70
dot1x max-req command 2-71, 2-72
dot1x port-control command 2-73
dot1x re-authenticate command 2-75
dot1x reauthentication command 2-76
dot1x system-auth-control command 2-77
dot1x test eapol-capable command 2-78
dot1x test timeout command 2-79
dot1x timeout command 2-80
dot1x violation-mode command 2-82
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-174
DSCP
as match criteria for QoS groups 2-218, 2-224
for QoS traffic marking 2-309
setting in policy maps 2-309
dual-purpose uplink ports, selecting the type 2-229
duplex command 2-84
dynamic-access ports
configuring 2-571
restrictions 2-572
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-119
define 2-15
deny packets 2-62
display 2-324
permit packets 2-246
clear
log buffer 2-37
statistics 2-38
display
ARP ACLs 2-324
configuration and operating state 2-386
log buffer 2-386
statistics 2-386
trust state and rate limit 2-386
enable per VLAN 2-129
error detection for 2-86
error recovery timer 2-90
log buffer
clear 2-37
configure 2-123
display 2-386
rate-limit incoming ARP packets 2-121
statistics
clear 2-38
display 2-386
trusted interface state 2-125
type of packet logged 2-130
validation checks 2-127
Dynamic Host Configuration Protocol (DHCP)
See DHCP snooping
E
EAP-request/identity frame
maximum number to send 2-72
response time before retransmitting 2-80
E-LM
mapping 2-97
E-LMI
enabling 2-95
environment variables, displaying 2-325
errdisable detect cause command 2-86
errdisable detect cause small-frame comand 2-88
errdisable recovery cause small-frame 2-93
errdisable recovery command 2-90
error conditions, displaying 2-353
error disable detection 2-86
error-disabled interfaces, displaying 2-370
EtherChannel
assigning Ethernet interface to channel group 2-27
creating port-channel logical interface 2-108
debug EtherChannel/PAgP, display B-4
debug platform-specific events, display B-27
displaying 2-357
enabling Layer 2 protocol tunneling for
LACP 2-175
PAgP 2-175
UDLD 2-175
interface information, displaying 2-370
LACP
clearing channel-group information 2-43
debug messages, display B-13
displaying 2-416
modes 2-27
port priority for hot-standby ports 2-178
restricting a protocol 2-31
system priority 2-180
load-distribution methods 2-264
PAgP
aggregate-port learner 2-242
clearing channel-group information 2-46
debug messages, display B-20
displaying 2-456
error detection for 2-86
error recovery timer 2-90
learn method 2-242
modes 2-27
physical-port learner 2-242
priority of interface for transmitted traffic 2-244
ethermet lmi ce command 2-95
Ethernet controller, internal register display 2-332
ethernet evc command 2-94
ethernet lim global command 2-95
ethernet lmi ce-vlan map command 2-97, 2-99
ethernet lmi command 2-95
Ethernet Local Management Interface
See E-LMI
Ethernet service
debugging B-5
displaying 2-360
Ethernet service instance 2-298
Ethernet service interfaces 2-364
Ethernet statistics, collecting 2-295
Ethernet UNI configuration 2-101
ethernet uni id command 2-103
Ethernet virtual connections
See EVCs
EVC configuration mode 2-94
EVCs 2-94
and VLANs 2-101
service instances 2-298
UNI counts 2-617
EVC service
point-to-multipoint 2-617
point-to-point 2-617
exceed-action command 2-104
extended-range VLANs
and allowed VLAN list 2-596
configuring 2-621
extended system ID for STP 2-526
F
fan information, displaying 2-348
files, deleting 2-61
flash_init (boot loader) command A-9
Flex Links
configuring 2-573
configuring preferred VLAN 2-575
displaying 2-370
flowcontrol command 2-106
format (boot loader) command A-10
forwarding packets, with ACL matches 2-5
forwarding results, display C-6
frame forwarding information, displaying C-6
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-320
help (boot loader) command A-12
host connection, port configuration 2-579
host ports, private VLANs 2-583
I
IEEE 802.1ag Connectivity Fault Management
See CFM
IEEE 802.1Q trunk ports and native VLANs 2-626
IEEE 802.1Q tunnel ports
configuring 2-580
displaying 2-344
limitations 2-581
IEEE 802.1x
and switchport modes 2-581
violation error recovery 2-90
See also port-based authentication
IGMP filters
applying 2-148
debug messages, display B-10
IGMP groups, setting maximum 2-150
IGMP maximum groups, debugging B-11
IGMP profiles
creating 2-152
displaying 2-398
IGMP snooping
adding ports as a static member of a group 2-167
displaying 2-399, 2-403, 2-405
enabling 2-154
enabling the configurable-leave timer 2-156
enabling the Immediate-Leave feature 2-164
flooding query count 2-162
interface topology change notification behavior 2-163
multicast table 2-401
querier 2-158
query solicitation 2-162
report suppression 2-160
switch topology change notification behavior 2-162
images
See software images
Immediate-Leave feature, MVR 2-238
immediate-leave processing 2-164
input policy maps
and ACL classification 2-216
and aggregate policers 2-258
commands not supported in 2-262
configuration guidelines 2-262
interface command 2-112
interface configuration mode 1-2, 1-4
interface port-channel command 2-108
interface range command 2-110
interface-range macros 2-57, 2-59
interfaces
assigning Ethernet interface to channel group 2-27
configuring 2-84
configuring multiple 2-110
creating port-channel logical 2-108
debug messages, display B-9
disabling 2-501
displaying the MAC address table 2-437
restarting 2-501
interface speed, configuring 2-564
internal registers, displaying 2-332, 2-339, 2-343
Internet Group Management Protocol
See IGMP
invalid GBIC
error detection for 2-86
error recovery timer 2-90
ip address command 2-117
IP addresses, setting 2-117
IP address matching 2-214
ip arp inspection filter vlan command 2-119
ip arp inspection limit command 2-121
ip arp inspection log-buffer command 2-123
ip arp inspection trust command 2-125
ip arp inspection validate command 2-127
ip arp inspection vlan command 2-129
ip arp inspection vlan logging command 2-130
IP DHCP snooping
See DHCP snooping
ip dhcp snooping binding command 2-133
ip dhcp snooping command 2-132
ip dhcp snooping database command 2-135
ip dhcp snooping information option allow-untrusted command 2-139
ip dhcp snooping information option command 2-137
ip dhcp snooping information option format remote-id command 2-141
ip dhcp snooping limit rate command 2-142
ip dhcp snooping trust command 2-143
ip dhcp snooping verify command 2-144
ip dhcp snooping vlan command 2-145
ip dhcp snooping vlan information option format-type circuit-id string command 2-146
ip igmp filter command 2-148
ip igmp max-groups command 2-150
ip igmp profile command 2-152
ip igmp snooping command 2-154
ip igmp snooping last-member-query-interval command 2-156
ip igmp snooping querier command 2-158
ip igmp snooping report-suppression command 2-160
ip igmp snooping tcn command 2-162
ip igmp snooping tcn flood command 2-163
ip igmp snooping vlan immediate-leave command 2-164
ip igmp snooping vlan mrouter command 2-165
ip igmp snooping vlan static command 2-167
IP multicast addresses 2-235
IP precedence, as match criteria for QoS groups 2-220
ip source binding command 2-169
IP source guard
disabling 2-173
displaying
binding entries 2-407
configuration 2-408
enabling 2-173
static IP source bindings 2-169
IP source guard, displaying dynamic binding entries 2-391
ip ssh command 2-171
ip verify source command 2-173
J
jumbo frames
See MTU
L
l2protocol-tunnel command 2-174
l2protocol-tunnel cos command 2-177
LACP
See EtherChannel
lacp port-priority command 2-178
lacp system-priority command 2-180
Layer 2 mode, enabling 2-569
Layer 2 protocol ports, displaying 2-414
Layer 2 protocol-tunnel
error detection for 2-86
error recovery timer 2-90
Layer 2 protocol tunnel counters 2-42
Layer 2 protocol tunneling error recovery 2-175
Layer 2 traceroute
IP addresses 2-610
MAC addresses 2-607
Layer 3 mode, enabling 2-569
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
See EtherChannel
link flap
error detection for 2-86
error recovery timer 2-90
link state group command 2-182
link state track command 2-184
load-distribution methods for EtherChannel 2-264
location (global configuration) command 2-185
location (interface configuration) command 2-187
logging event command 2-189
logging file command 2-190
logical interface 2-108
loopback error
detection for 2-86
recovery timer 2-90
loop guard, for spanning tree 2-528, 2-532
M
mac access-group command 2-192
MAC access-groups, displaying 2-425
MAC access list configuration mode 2-194
mac access-list extended command 2-194
MAC access lists 2-64
MAC addresses
disabling MAC address learning per VLAN 2-197
displaying
aging time 2-431
all 2-429
dynamic 2-435
MAC address-table move updates 2-440
notification settings 2-439, 2-442
number of addresses in a VLAN 2-433
per interface 2-437
per VLAN 2-446
static 2-444
static and dynamic entries 2-427
dynamic
aging time 2-196
deleting 2-44
displaying 2-435
enabling MAC address notification 2-201
enabling MAC address-table move update 2-199
matching 2-214
static
adding and removing 2-203
displaying 2-444
dropping on an interface 2-204
tables 2-429
MAC address notification, debugging B-14
mac address-table aging-time 2-192, 2-214
mac address-table aging-time command 2-196
mac address-table learning command 2-197
mac address-table move update command 2-199
mac address-table notification command 2-201
mac address-table static command 2-203
mac address-table static drop command 2-204
macro description command 2-208
macro global command 2-209
macro global description command 2-211
macro name command 2-212
macros
adding a description 2-208
adding a global description 2-211
applying 2-209
creating 2-212
displaying 2-458
interface range 2-59, 2-110
specifying parameter values 2-209
tracing 2-209
maintenance end points 2-617
mapping tables, QoS 2-603
maps
class
creating 2-35
VLAN
creating 2-624
defining 2-214
displaying 2-497
match access-group command 2-216
match cos command 2-217
match ip dscp command 2-218
match ip precedence command 2-220
match qos-group command 2-222
match vlan command 2-224
maximum transmission unit
See MTU
mdix auto command 2-227
media-type command 2-229
memory (boot loader) command A-13
mkdir (boot loader) command A-14
mode, MVR 2-235
modes, commands 1-1
monitor session command 2-231
more (boot loader) command A-15
MSTP
displaying 2-477
interoperability 2-52
link type 2-530
MST region
aborting changes 2-536
applying changes 2-536
configuration name 2-536
configuration revision number 2-537
current or pending display 2-537
displaying 2-477
MST configuration mode 2-536
VLANs-to-instance mapping 2-536
path cost 2-538
protocol mode 2-534
restart protocol migration process 2-52
root port
loop guard 2-528
preventing from becoming designated 2-528
restricting which can be root 2-528
root guard 2-528
root switch
affects of extended system ID 2-526
hello-time 2-541, 2-552
interval between BDPU messages 2-543
interval between hello BPDU messages 2-541, 2-552
max-age 2-543
maximum hop count before discarding BPDU 2-545
port priority for selection of 2-547
primary or secondary 2-552
switch priority 2-550
state changes
blocking to forwarding state 2-559
enabling BPDU filtering 2-518, 2-556
enabling BPDU guard 2-520, 2-556
enabling Port Fast 2-556, 2-559
forward-delay time 2-540
length of listening and learning states 2-540
rapid transition to forwarding 2-530
shutting down Port Fast-enabled ports 2-556
state information display 2-476
MTU
configuring size 2-600
displaying global setting 2-484
multicast group address, MVR 2-238
multicast groups, MVR 2-236
multicast router learning method 2-165
multicast router ports, configuring 2-165
multicast storm control 2-566
multicast VLAN, MVR 2-235
multicast VLAN registration
See MVR
multiple hosts on authorized port 2-68
Multiple Spanning Tree Protocol
See MSTP
multiplexing, UNI 2-101
MVR
and address aliasing 2-236
configuring 2-235
configuring interfaces 2-238
debug messages, display B-18
displaying 2-450
displaying interface information 2-452
members, displaying 2-454
mvr (global configuration) command 2-235
mvr (interface configuration) command 2-238
mvr vlan group command 2-239
N
native VLANs 2-596
native VLAN tagging 2-626
network node interface 2-266
nonegotiate, speed 2-564, 2-565
non-IP protocols
denying 2-64
forwarding 2-248
non-IP traffic access lists 2-194
non-IP traffic forwarding
denying 2-64
permitting 2-248
normal-range VLANs 2-621
no vlan command 2-621
O
OAM PDUs 2-99
OAM protocol 2-241
oam protocol cfm svlan command 2-241
operation, administration, and maintenance protocol
See OAM
output policy maps
and QoS group classification 2-222
and traffic shaping 2-318
commands not supported in 2-262
configuration guidelines 2-262
priority in 2-271
queue limit in 2-278
P
PAgP
See EtherChannel
pagp learn-method command 2-242
pagp port-priority command 2-244
parent policy maps 2-305
password-recovery mechanism, enabling and disabling 2-300
permit (ARP access-list configuration) command 2-246
permit command 2-248
per-VLAN spanning-tree plus
See STP
physical-port learner 2-242
PID, displaying 2-385
PIM-DVMRP, as multicast router learning method 2-165
police
multiple conform actions for a class 2-55
multiple exceed actions for a class 2-104
with priority 2-251
police aggregate command 2-255
police command 2-251
policer aggregate command 2-257
policer configuration
default for NNIs C-22
default for UNIs C-21
policer cpu uni command 2-260
policers
aggregate 2-255, 2-257
for CPU protection 2-260
individual 2-251
policy-map class, configuring multiple actions 2-55, 2-104
policy-map class configuration mode 2-33
policy-map class police configuration mode 2-55, 2-253
policy-map command 2-261
policy-map configuration mode 2-261
policy maps
and CoS classification 2-217
and DSCP classification 2-218
and IP precedence classification 2-220
and policing 2-253
applying 2-302
applying to an interface 2-262, 2-302, 2-315
child 2-304
creating 2-261
displaying 2-463
hierarchical 2-304
parent 2-305
policers
for a single class 2-251
for multiple classes 2-255, 2-257, 2-260, 2-304
setting priority 2-270
setting QoS group identifier 2-313
traffic classification, defining 2-33
traffic marking
setting CoS values 2-307
setting DSCP values 2-309
setting IP precedence values 2-311
Port Aggregation Protocol
See EtherChannel
port-based authentication
AAA method list 2-3
configuring violation modes 2-82
debug messages, display B-3
enabling 802.1x
globally 2-77
per interface 2-73
host modes 2-68
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-70, 2-79
manual control of authorization state 2-73
multiple hosts on authorized port 2-68
periodic re-authentication
enabling 2-76
time between attempts 2-80
quiet period between failed authentication exchanges 2-80
re-authenticating 802.1x-enabled ports 2-75
resetting configurable 802.1x parameters 2-67
switch-to-authentication server retransmission time 2-80
switch-to-client frame-retransmission number2-71to 2-72
switch-to-client retransmission time 2-80
test for IEEE 802.1x readiness 2-78
port-channel load-balance command 2-264
Port Fast, for spanning tree 2-559
port ranges, defining 2-57, 2-59
ports, debugging B-60
ports, protected 2-594
port security
aging 2-590
debug messages, display B-62
enabling 2-586
violation error recovery 2-90
port shaping 2-319
port-type command 2-266
port types, MVR 2-238
power information, displaying 2-348
power-supply dual command 2-268
precedence
for QoS traffic marking 2-311
setting in policy maps 2-311
priority command 2-270
priority queuing, QoS 2-270
priority with police, QoS 2-270
private-vlan command 2-273
private-vlan mapping command 2-276
private VLANs
association 2-592
configuring 2-273
configuring ports 2-583
displaying 2-492
host ports 2-583
mapping
configuring 2-592
displaying 2-370
promiscuous ports 2-583
privileged EXEC mode 1-2, 1-3
product identification information, displaying 2-385
promiscuous ports, private VLANs 2-583
PVST+
See STP
Q
QoS
aggregate policers
applying 2-255
creating 2-257
displaying 2-460
class maps
creating 2-35
defining the match criteria 2-217
displaying 2-329
displaying statistics for 2-463, C-28
policy maps
applying an aggregate policer 2-255, 2-257, 2-260, 2-304
applying to an interface 2-302, 2-315
creating 2-261
defining policers 2-251
displaying policy maps 2-463
setting CoS values 2-307
setting DSCP values 2-309
setting IP precedence values 2-311
setting QoS group identifier 2-313
traffic classifications 2-33
table maps
configuring 2-603
displaying 2-485
QoS groups
as match criteria 2-222
for QoS traffic classification 2-313
setting in policy maps 2-313
QoS match criteria
ACLs 2-216
CoS value 2-217
DSCP value 2-218, 2-224
precedence value 2-220
QoS group number 2-222
quality of service
See QoS
querytime, MVR 2-235
queue-limit command 2-278
R
rapid per-VLAN spanning-tree plus
See STP
rapid PVST+
See STP
re-authenticating 802.1x-enabled ports 2-75
re-authentication
periodic 2-76
time between attempts 2-80
receiver ports, MVR 2-238
receiving flow-control packets 2-106
recovery mechanism
causes 2-90
display 2-327, 2-351, 2-355
timer interval 2-91
remote-span command 2-281
Remote Switched Port Analyzer
See RSPAN
rename (boot loader) command A-16
renew ip dhcp snooping database command 2-283
rep admin vlan command 2-284
rep block port command 2-285
rep lsl-age-timer command 2-288
rep preempt delay command 2-289
rep preempt segment command 2-291
rep segment command 2-292
rep stcn command 2-294
reset (boot loader) command A-17
resource templates, displaying 2-474
rmdir (boot loader) command A-18
rmon collection stats command 2-295
root guard, for spanning tree 2-528
routed ports
IP addresses on 2-118
number supported 2-118
RSPAN
configuring 2-231
displaying 2-448
filter RSPAN traffic 2-231
remote-span command 2-281
sessions
add interfaces to 2-231
displaying 2-448
start new 2-231
S
sdm prefer command 2-296
SDM templates
allowed resources 2-297
displaying 2-474
secure ports, limitations 2-587
sending flow-control packets 2-106
service instance command 2-298
service instances, displaying 2-362
service password-recovery command 2-300
service policy (policy-map class configuration) command 2-304
service-policy interface configuration command 2-302
service-policy policy-map class configuration command 2-304
set (boot loader) command A-19
set cos command 2-307
set dscp command 2-309
set precedence command 2-311
set qos-group command 2-313
setup command 2-315
SFPs, displaying information about 2-385
shape average command 2-318
show access-lists command 2-320
show aggregate-policer command 2-485
show archive status command 2-323
show arp access-list command 2-324
show boot command 2-325
show class-map command 2-329
show controllers cpu-interface command 2-330
show controllers ethernet-controller command 2-332
show controllers tcam command 2-339
show controllers utilization command 2-341
show controller utilization command 2-341
show cpu traffic qos 2-343
show dot1q-tunnel command 2-344
show dot1x command 2-345
show env command 2-348
show errdisable detect command 2-351
show errdisable flap-values command 2-353
show errdisable recovery command 2-355
show etherchannel command 2-357
show ethernet service evc command 2-360
show ethernet service instance command 2-362
show ethernet service interface command 2-364
show flowcontrol command 2-366
show idprom command 2-368
show interface rep command 2-380
show interfaces command 2-370
show interfaces counters command 2-378
show interfaces rep command 2-380
show interface transceivers command 2-382
show inventory command 2-385
show ip arp inspection command 2-386
show ipc command 2-410
show ip dhcp snooping binding command 2-391
show ip dhcp snooping command 2-390
show ip dhcp snooping database command 2-393, 2-395
show ip igmp profile command 2-398
show ip igmp snooping command 2-399
show ip igmp snooping command querier detail 2-405
show ip igmp snooping groups command 2-401
show ip igmp snooping mrouter command 2-403
show ip igmp snooping querier command 2-405
show ip igmp snooping querier detail command 2-405
show ip source binding command 2-407
show ip verify source command 2-408
show l2protocol-tunnel command 2-414
show lacp command 2-416
show link state group command 2-420
show location 2-422
show location command 2-422
show mac access-group command 2-425
show mac address-table address command 2-429
show mac address-table aging time command 2-431
show mac address-table command 2-427
show mac address-table count command 2-433
show mac address-table dynamic command 2-435
show mac address-table interface command 2-437
show mac address-table learning command 2-439
show mac address-table move update command 2-440
show mac address-table notification command 2-45, 2-442, B-16
show mac address-table static command 2-444
show mac address-table vlan command 2-446
show monitor command 2-448
show mvr command 2-450
show mvr interface command 2-452
show mvr members command 2-454
show pagp command 2-456
show parser macro command 2-458
show platform acl command C-2
show platform cfm command C-3
show platform configuration command C-4
show platform etherchannel command C-5
show platform forward command C-6
show platform igmp snooping command C-8
show platform ipc trace command C-13
show platform ip multicast command C-10
show platform ip unicast command C-11
show platform layer4op command C-14
show platform mac-address-table command C-15
show platform messaging command C-16
show platform monitor command C-17
show platform mvr table command C-18
show platform pm command C-19
show platform policer cpu command C-20
show platform port-asic command C-23
show platform port-security command C-27
show platform qos command C-28
show platform resource-manager command C-31
show platform snmp counters command C-33
show platform spanning-tree synchronization command C-34
show platform stp-instance command C-35
show platform tcam command C-36
show platform vlan command C-39
show policer aggregate command 2-460
show policer cpu uni-eni command 2-461
show policy-map command 2-463
show policy-map interface output fields 2-466
show port security command 2-467
show port-type command 2-470
show rep topology command 2-472
show sdm prefer command 2-474
show spanning-tree command 2-476
show storm-control command 2-482
show system mtu command 2-484
show udld command 2-487
show version command 2-490
show vlan access-map command 2-497
show vlan command 2-492
show vlan command, fields 2-494
show vlan filter command 2-498
show vmps command 2-499
shutdown command 2-501
shutdown threshold, Layer 2 protocol tunneling 2-174
shutdown vlan command 2-502
small violation-rate command 2-503
SNMP host, specifying 2-510
SNMP informs, enabling the sending of 2-506
snmp mib rep trap-rate command 2-505
snmp-server enable traps command 2-506
snmp-server host command 2-510
snmp trap mac-notification command 2-514
SNMP traps
enabling MAC address notification trap 2-514
enabling the MAC address notification feature 2-201
enabling the sending of 2-506
software images
deleting 2-61
downloading 2-7
upgrading 2-7
uploading 2-13
software version, displaying 2-490
source ports, MVR 2-238
SPAN
configuring 2-231
debug messages, display B-17
displaying 2-448
filter SPAN traffic 2-231
sessions
add interfaces to 2-231
displaying 2-448
start new 2-231
spanning-tree bpdufilter command 2-516, 2-518
spanning-tree bpduguard command 2-520
spanning-tree cost command 2-522
spanning-tree etherchannel command 2-524
spanning-tree extend system-id command 2-526
spanning-tree guard command 2-528
spanning-tree link-type command 2-530
spanning-tree loopguard default command 2-532
spanning-tree mode command 2-534
spanning-tree mst configuration command 2-536
spanning-tree mst cost command 2-538
spanning-tree mst forward-time command 2-540
spanning-tree mst hello-time command 2-541
spanning-tree mst max-age command 2-543
spanning-tree mst max-hops command 2-545
spanning-tree mst port-priority command 2-547
spanning-tree mst pre-standard command 2-549
spanning-tree mst priority command 2-550
spanning-tree mst root command 2-552
spanning-tree portfast (global configuration) command 2-556
spanning-tree portfast (interface configuration) command 2-559
spanning-tree port-priority command 2-554
Spanning Tree Protocol
See STP
spanning-tree vlan command 2-561
speed command 2-564
SSH, configuring version 2-171
static-access ports, configuring 2-571
statistics, Ethernet group 2-295
sticky learning, enabling 2-586
storm-control command 2-566
STP
counters, clearing 2-51
debug messages, display
MSTP B-69
optimized BPDUs handling B-68
spanning-tree activity B-65
switch shim B-71
transmitted and received BPDUs B-67
enabling on ENIs 2-516
enabling protocol tunneling for 2-174
EtherChannel misconfiguration 2-524
extended system ID 2-526
path cost 2-522
protocol modes 2-534
root port
loop guard 2-528
preventing from becoming designated 2-528
restricting which can be root 2-528
root guard 2-528
root switch
affects of extended system ID 2-526, 2-562
hello-time 2-561
interval between BDPU messages 2-561
interval between hello BPDU messages 2-561
max-age 2-561
port priority for selection of 2-554
primary or secondary 2-561
switch priority 2-561
state changes
blocking to forwarding state 2-559
enabling BPDU filtering 2-518, 2-556
enabling BPDU guard 2-520, 2-556
enabling Port Fast 2-556, 2-559
enabling timer to recover from error state 2-90
forward-delay time 2-561
length of listening and learning states 2-561
shutting down Port Fast-enabled ports 2-556
state information display 2-476
VLAN options 2-550, 2-561
SVIs, creating 2-112
Switched Port Analyzer
See SPAN
switching characteristics
modifying 2-569
returning to interfaces 2-569
switchport access command 2-571
switchport backup interface command 2-573
switchport block command 2-577
switchport command 2-569
switchport host command 2-579
switchport mode command 2-580
switchport mode private-vlan command 2-583
switchport port-security aging command 2-590
switchport port-security command 2-586
switchport private-vlan command 2-592
switchport protected command 2-594
switchports, displaying 2-370
switchport trunk command 2-596
system env temperature threshold yellow command 2-598
system message logging, save message to flash 2-190
system mtu command 2-600
system resource templates 2-296
T
table-map command 2-603
table-map configuration mode 2-603
table maps
configuring 2-603
displaying 2-485
QoS 2-603
tar files, creating, listing, and extracting 2-10
TDR, running 2-605
temperature information, displaying 2-348
templates, system resources 2-296
test cable-diagnostics tdr command 2-605
traceroute mac command 2-607
traceroute mac ip command 2-610
traffic shaping, QoS 2-318
trunking, VLAN mode 2-580
trunk mode 2-580
trunk ports 2-580
tunnel ports, Layer 2 protocol, displaying 2-414
type (boot loader) command A-22
U
UDLD
aggressive mode 2-612, 2-614
debug messages, display B-77
enable globally 2-612
enable per interface 2-614
error recovery timer 2-90
message timer 2-612
normal mode 2-612, 2-614
reset a shutdown interface 2-616
status 2-487
udld command 2-612
udld port command 2-614
udld reset command 2-616
UNI
bundling and multiplexing 2-101
Ethernet 2-101
unicast storm control 2-566
uni count command 2-617
UniDirectional Link Detection
See UDLD
UNI ID, Ethernet 2-103
uni-vlan command 2-619
unknown multicast traffic, preventing 2-577
unknown unicast traffic, preventing 2-577
unset (boot loader) command A-23
upgrading
software images 2-7
monitoring status of 2-323
user EXEC mode 1-2
user network interface 2-266
V
version (boot loader) command A-25
vlan access-map command 2-624
VLAN access map configuration mode 2-624
VLAN access maps
actions 2-5
displaying 2-497
vlan command 2-621
VLAN configuration mode
commands 2-621
description 1-4
entering 2-621
summary 1-2
vlan dot1q tag native command 2-626
vlan filter command 2-628
VLAN filters, displaying 2-498
VLAN ID range 2-621
VLAN maps
applying 2-628
creating 2-624
defining 2-214
displaying 2-497
VLAN Query Protocol
See VQP
VLANs
adding 2-621
configuring 2-621
debug messages, display
activation of B-75
VLAN IOS file system error tests B-74
VLAN manager activity B-73
displaying configurations 2-492
extended-range 2-621
MAC addresses
displaying 2-446
number of 2-433
normal-range 2-621
private 2-583
configuring 2-273
displaying 2-492
See also private VLANs
restarting 2-502
saving the configuration 2-621
shutting down 2-502
suspending 2-502
VMPS
configuring servers 2-633
displaying 2-499
error recovery timer 2-90
reconfirming dynamic VLAN assignments 2-630
vmps reconfirm (global configuration) command 2-631
vmps reconfirm (privileged EXEC) command 2-630
vmps retry command 2-632
vmps server command 2-633
VQP
and dynamic-access ports 2-572
clearing client statistics 2-54
displaying information 2-499
per-server retry count 2-632
reconfirmation interval 2-631
reconfirming dynamic VLAN assignments 2-630
VTP, enabling tunneling for 2-174
W
Weighted Tail Drop
See WTD
WTD, queue-limit command 2-278