background image

 

Corporate Headquarters

Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134-1706 
USA
http://www.cisco.com
Tel: 408 

526-4000

800 553-NETS (6387)

Fax: 408 

526-4100

Cisco Catalyst Blade Switch 3030 
Command Reference

Cisco IOS Release 12.2(25)SEE
March 2006

Customer Order Number: DOC-7817262=
Text Part Number: 78-17262-01

Summary of Contents for Catalyst 3030

Page 1: ...Drive San Jose CA 95134 1706 USA http www cisco com Tel 408 526 4000 800 553 NETS 6387 Fax 408 526 4100 Cisco Catalyst Blade Switch 3030 Command Reference Cisco IOS Release 12 2 25 SEE March 2006 Customer Order Number DOC 7817262 Text Part Number 78 17262 01 ...

Page 2: ... INABILITY TO USE THIS MANUAL EVEN IF CISCO OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES Any Internet Protocol IP addresses used in this document are not intended to be actual addresses Any examples command display output and figures included in the document are shown for illustrative purposes only Any use of actual IP addresses in illustrative content is unintentional and...

Page 3: ...stance xix Cisco Technical Support Documentation Website xix Submitting a Service Request xx Definitions of Service Request Severity xx Obtaining Additional Publications and Information xxi C H A P T E R 1 Using the Command Line Interface 1 1 CLI Command Modes 1 1 User EXEC Mode 1 2 Privileged EXEC Mode 1 3 Global Configuration Mode 1 3 Interface Configuration Mode 1 4 config vlan Mode 1 4 VLAN Co...

Page 4: ...2 27 channel group 2 28 channel protocol 2 31 class 2 32 class map 2 34 clear dot1x 2 36 clear eap 2 37 clear lacp 2 38 clear mac address table 2 39 clear mac address table move update 2 41 clear pagp 2 42 clear port security 2 43 clear spanning tree counters 2 45 clear spanning tree detected protocols 2 46 clear vmps statistics 2 47 clear vtp counters 2 48 define interface range 2 49 delete 2 51 ...

Page 5: ... 2 85 errdisable detect cause 2 87 errdisable recovery 2 89 exception crashinfo 2 91 flowcontrol 2 92 interface port channel 2 94 interface range 2 96 interface vlan 2 98 ip access group 2 100 ip address 2 102 ip dhcp snooping 2 104 ip dhcp snooping information option 2 105 ip dhcp snooping information option allow untrusted 2 107 ip dhcp snooping information option format remote id 2 109 ip dhcp ...

Page 6: ...acp port priority 2 142 lacp system priority 2 144 link state group 2 146 link state track 2 148 logging file 2 149 mac access group 2 151 mac access list extended 2 153 mac address table aging time 2 155 mac address table move update 2 156 mac address table notification 2 158 mac address table static 2 160 mac address table static drop 2 161 macro apply 2 163 macro description 2 166 macro global ...

Page 7: ...ld 2 207 mls qos srr queue output cos map 2 209 mls qos srr queue output dscp map 2 211 mls qos trust 2 213 mls qos vlan based 2 215 monitor session 2 217 mvr global configuration 2 222 mvr interface configuration 2 225 pagp learn method 2 228 pagp port priority 2 230 permit MAC access list configuration 2 232 police 2 235 police aggregate 2 237 policy map 2 239 port channel load balance 2 242 pri...

Page 8: ... show errdisable recovery 2 303 show etherchannel 2 305 show flowcontrol 2 308 show interfaces 2 310 show interfaces counters 2 318 show inventory 2 320 show ip dhcp snooping 2 321 show ip dhcp snooping binding 2 322 show ip igmp profile 2 324 show ip igmp snooping 2 325 show ip igmp snooping groups 2 328 show ip igmp snooping mrouter 2 330 show ip igmp snooping querier 2 332 show lacp 2 334 show ...

Page 9: ... 2 366 show mls qos maps 2 370 show mls qos queue set 2 373 show mls qos vlan 2 375 show monitor 2 376 show mvr 2 379 show mvr interface 2 381 show mvr members 2 383 show pagp 2 385 show parser macro 2 387 show policy map 2 390 show port security 2 392 show spanning tree 2 395 show storm control 2 401 show system mtu 2 403 show udld 2 404 show version 2 407 show vlan 2 409 show vlan access map 2 4...

Page 10: ...7 spanning tree mst hello time 2 458 spanning tree mst max age 2 459 spanning tree mst max hops 2 460 spanning tree mst port priority 2 462 spanning tree mst pre standard 2 464 spanning tree mst priority 2 465 spanning tree mst root 2 466 spanning tree port priority 2 468 spanning tree portfast global configuration 2 470 spanning tree portfast interface configuration 2 472 spanning tree transmit h...

Page 11: ... mac 2 520 traceroute mac ip 2 523 trust 2 525 udld 2 527 udld port 2 529 udld reset 2 531 vlan global configuration 2 532 vlan VLAN configuration 2 538 vlan access map 2 544 vlan database 2 546 vlan filter 2 550 vmps reconfirm privileged EXEC 2 552 vmps reconfirm global configuration 2 553 vmps retry 2 554 vmps server 2 555 vtp global configuration 2 557 vtp VLAN configuration 2 561 A P P E N D I...

Page 12: ...de Switch 3030 Debug Commands B 1 debug auto qos B 2 debug backup B 4 debug dot1x B 5 debug dtp B 7 debug eap B 8 debug etherchannel B 10 debug interface B 12 debug ip igmp filter B 14 debug ip igmp max groups B 15 debug ip igmp snooping B 16 debug lacp B 17 debug mac notification B 18 debug matm B 19 debug matm move update B 20 debug monitor B 21 debug mvrdbg B 22 debug nvram B 23 debug pagp B 24...

Page 13: ... port security B 44 debug platform qos acl tcam B 45 debug platform remote commands B 46 debug platform resource manager B 47 debug platform snmp B 48 debug platform span B 49 debug platform supervisor asic B 50 debug platform sw bridge B 51 debug platform tcam B 52 debug platform udld B 54 debug platform vlan B 55 debug pm B 56 debug port security B 58 debug qos manager B 59 debug spanning tree B...

Page 14: ... platform etherchannel C 5 show platform forward C 6 show platform ip igmp snooping C 8 show platform layer4op C 10 show platform mac address table C 11 show platform messaging C 12 show platform monitor C 13 show platform mvr table C 14 show platform pm C 15 show platform port asic C 16 show platform port security C 21 show platform qos C 22 show platform resource manager C 23 show platform snmp ...

Page 15: ...co IOS documentation set available from the Cisco com home page by selecting Technical Support Documentation Cisco IOS Software This guide does not provide procedures for configuring your switch For detailed configuration procedures see the software configuration guide for this release This guide does not describe system messages you might encounter For more information see the system message guid...

Page 16: ...Switch with the CLI Based Setup Program appendix in the hardware installation guide For device manager requirements see the System Requirements section in the release notes not orderable but available on Cisco com For upgrade information see the Downloading Software section in the release notes You can order printed copies of documents with a DOC xxxxxx number from the Cisco com sites and from the...

Page 17: ...n that is found on the Cisco website without being connected to the Internet Certain products also have PDF versions of the documentation available The Product Documentation DVD is available as a single unit or as a subscription Registered Cisco com users Cisco direct customers can order a Product Documentation DVD product number DOC DOCDVD or DOC DOCDVD SUB from Cisco Marketplace at this URL http...

Page 18: ... for Cisco products is available at this URL http www cisco com go psirt To see security advisories security notices and security responses as they are updated in real time you can subscribe to the Product Security Incident Response Team Really Simple Syndication PSIRT RSS feed Information about how to subscribe to the PSIRT RSS feed is found at this URL http www cisco com en US products products_...

Page 19: ...ial to find other means of encrypting the data Obtaining Technical Assistance Cisco Technical Support provides 24 hour a day award winning technical assistance The Cisco Technical Support Documentation website on Cisco com features extensive online support resources In addition if you have a valid Cisco service contract Cisco Technical Assistance Center TAC engineers provide telephone support If y...

Page 20: ...chsupport servicerequest For S1 or S2 service requests or if you do not have Internet access contact the Cisco TAC by telephone S1 or S2 service requests are those in which your production network is down or severely degraded Cisco engineers are assigned immediately to S1 and S2 service requests to help keep your business operations running smoothly To open a service request by telephone use one o...

Page 21: ...magazine for maximizing Internet and networking investments Each quarter Packet delivers coverage of the latest industry trends technology breakthroughs and Cisco products and solutions as well as network deployment and troubleshooting tips configuration examples customer case studies certification and training information and links to scores of in depth online resources You can access Packet maga...

Page 22: ...te for networking professionals to share questions suggestions and information about networking products and technologies with Cisco experts and other networking professionals Join a discussion at this URL http www cisco com discuss networking World class networking training is available from Cisco You can view current offerings at this URL http www cisco com en US learning index html ...

Page 23: ...lyst Blade Switch 3030 Debug Commands For information on the show platform commands see Appendix C Cisco Catalyst Blade Switch 3030 Show Platform Commands For more information on Cisco IOS Release 12 2 see the Cisco IOS Release 12 2 Command Summary For task oriented configuration steps see the software configuration guide for this release In this document IP refers to IP version 4 IPv4 CLI Command...

Page 24: ...sable command To enter global configuration mode enter the configure command Global configuration From privileged EXEC mode enter the configure command Switch config To exit to privileged EXEC mode enter the exit or end command or press Ctrl Z To enter interface configuration mode enter the interface configuration command Interface configuration From global configuration mode specify an interface ...

Page 25: ... Switch The supported commands can vary depending on the version of software in use To display a comprehensive list of commands enter a question mark at the prompt Switch To return to user EXEC mode enter the disable privileged EXEC command Global Configuration Mode Global configuration commands apply to features that affect the device as a whole Use the configure privileged EXEC command to enter ...

Page 26: ...guration file and you can save it to the switch startup configuration file by using the copy running config startup config privileged EXEC command The configurations of VLAN IDs 1 to 1005 are saved in the VLAN database if VTP is in transparent or server mode The extended range VLAN configurations are not saved in the VLAN database Enter the vlan vlan id global configuration command to access confi...

Page 27: ... configuration commands always follow a line command which defines a line number Use these commands to change terminal parameter settings line by line or for a range of lines Use the line vty line_number ending_line_number command to enter line configuration mode The new prompt means line configuration mode The following example shows how to enter line configuration mode for virtual terminal line ...

Page 28: ...1 6 Cisco Catalyst Blade Switch 3030 Command Reference 78 17262 01 Chapter 1 Using the Command Line Interface CLI Command Modes ...

Page 29: ...up keywords default Use the accounting methods that follow as the default list for accounting services start stop Send a start accounting notice at the beginning of a process and a stop accounting notice at the end of a process The start accounting record is sent in the background The requested user process begins regardless of whether or not the start accounting notice was received by the account...

Page 30: ...tart stop group radius Note The RADIUS authentication server must be properly configured to accept and log update or watchdog packets from the AAA client Related Commands radius Optional Enable RADIUS authorization tacacs Optional Enable TACACS accounting Release Modification 12 2 25 SEE This command was introduced Command Description aaa authentication dot1x Specifies one or more AAA methods for ...

Page 31: ...by the client The only method that is truly IEEE 802 1x compliant is the group radius method in which the client data is validated against a RADIUS authentication server If you specify group radius you must configure the RADIUS server by entering the radius server host global configuration command Use the show running config privileged EXEC command to display the configured lists of authentication...

Page 32: ...bles the AAA access control model For syntax information see the Cisco IOS Security Command Reference Release 12 2 Authentication Authorization and Accounting Authentication Commands show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management...

Page 33: ...rization parameters from the RADIUS servers in the default authorization list The authorization parameters are used by features such as per user ACLs or VLAN assignment to get parameters from the RADIUS servers Use the show running config privileged EXEC command to display the configured lists of authorization methods Examples This example shows how to configure the switch for user RADIUS authoriz...

Page 34: ...access map configuration mode use the match access map configuration command to define the match conditions for a VLAN map Use the action command to set the action that occurs when a packet matches the conditions The drop and forward parameters are not used in the no form of the command Examples This example shows how to identify and apply a VLAN access map vmap4 to VLANs 5 and 6 that causes the V...

Page 35: ...ume 1 of 3 Addressing and Services Release 12 2 IP Services Commands ip access list Creates a named access list For syntax information select Cisco IOS IP Command Reference Volume 1 of 3 Addressing and Services Release 12 2 IP Services Commands mac access list extended Creates a named MAC address access list match class map configuration Defines the match conditions for a VLAN map show vlan access...

Page 36: ... to point to the new software image after it is successfully downloaded overwrite Overwrite the software image in flash memory with the downloaded one reload Reload the system after successfully downloading the image unless the configuration has been changed and not been saved safe Keep the current software image do not delete it to make room for the new software image before the new image is down...

Page 37: ... you can remove the old image by using the delete privileged EXEC command For more information see the delete section on page 2 89 Use the overwrite option to overwrite the image on the flash device with the downloaded one If you specify the command without the overwrite option the download algorithm verifies that the new image is not the same as the one on the switch flash device If the images ar...

Page 38: ...30 Cisco IOS Commands archive download sw Related Commands Command Description archive tar Creates a tar file lists the files in a tar file or extracts the files from a tar file archive upload sw Uploads an existing image on the switch to a server delete Deletes a file or directory on the flash memory device ...

Page 39: ...he syntax for the local flash filesystem flash The syntax for the FTP ftp username password location directory tar filename tar The syntax for an HTTP server http username password hostname host ip directory image name tar The syntax for a secure HTTP server https username password hostname host ip directory image name tar The syntax for the Remote Copy Protocol RCP is rcp username location direct...

Page 40: ...ame tar is the tar file to display xtract source url flash file url dir file Extract files from a tar file to the local file system For source url specify the source URL alias for the local file system These options are supported The syntax for the local flash file system flash The syntax for the FTP ftp username password location directory tar filename tar The syntax for an HTTP server http usern...

Page 41: ...ytes cbs30x0 lanbasek9 mz 122 25 SEE info 219 bytes info ver 219 bytes This example shows how to display only the cbs30x0 lanbasek9 tar 122 25 SEE html directory and its contents Switch archive tar table flash cbs30x0 lanbasek9 tar 122 25 SEE tar cbs30x0 lanbasek9 tar 122 25 SEE html cbs30x0 lanbasek9 mz 122 25 SEE html directory cbs30x0 lanbasek9 mz 122 25 SEE html const htm 556 bytes cbs30x0 lan...

Page 42: ...se files are uploaded the software creates the tar file Image names are case sensitive version version_string Optional Specify the specific version string of the image to be uploaded destination url The destination URL alias for a local or network file system These options are supported The syntax for the local flash file system flash The syntax for the FTP ftp username password location directory...

Page 43: ...xamples This example shows how to upload the currently running image to a TFTP server at 172 20 140 2 Switch archive upload sw tftp 172 20 140 2 test image tar Related Commands Command Description archive download sw Downloads a new image to the switch archive tar Creates a tar file lists the files in a tar file or extracts the files from a tar file ...

Page 44: ...P Phone and automatically configure QoS for VoIP The QoS labels of incoming packets are trusted only when the telephone is detected cisco softphone Identify this port as connected to a device running the Cisco SoftPhone and automatically configure QoS for VoIP trust Identify this port as connected to a trusted switch or router and automatically configure QoS for VoIP The QoS labels of incoming pac...

Page 45: ...command line interface CLI An existing user configuration can cause the application of the generated commands to fail or to be overridden by the generated commands These actions occur without warning If all the generated commands are successfully applied any user entered configuration that was not overridden remains in the running configuration Any user entered configuration that was overridden ca...

Page 46: ...twork the switch trusts the CoS value for nonrouted ports in ingress packets the assumption is that traffic has already been classified by other edge devices The switch configures the ingress and egress queues on the port according to the settings in Table 2 2 and Table 2 3 You can enable auto QoS on static dynamic access and voice VLAN access and trunk ports When enabling auto QoS with a Cisco IP...

Page 47: ...bin SRR weights to an ingress queue mls qos srr queue input buffers Allocates the buffers between the ingress queues mls qos srr queue input cos map Maps CoS values to an ingress queue or maps CoS values to a queue and to a threshold ID mls qos srr queue input dscp map Maps DSCP values to an ingress queue or maps DSCP values to a queue and to a threshold ID mls qos srr queue input priority queue C...

Page 48: ...ilesystem file url no boot boothlpr Syntax Description Defaults No helper image is loaded Command Modes Global configuration Command History Usage Guidelines Filenames and directory names are case sensitive This command changes the setting of the BOOTHLPR environment variable For more information see Appendix A Cisco Catalyst Blade Switch 3030 Boot Loader Commands Related Commands filesystem Alias...

Page 49: ...le url no boot config file Syntax Description Defaults The default configuration file is flash config text Command Modes Global configuration Command History Usage Guidelines Filenames and directory names are case sensitive This command changes the setting of the CONFIG_FILE environment variable For more information see Appendix A Cisco Catalyst Blade Switch 3030 Boot Loader Commands Related Comma...

Page 50: ...k key on the console Command Modes Global configuration Command History Usage Guidelines When you enter this command you can interrupt the automatic boot process by pressing the Break key on the console after the flash file system is initialized Note Despite the setting of this command you can interrupt the automatic boot process at any time by pressing the MODE button on the switch front panel Th...

Page 51: ...ration Command History Usage Guidelines This variable is used only for internal development and testing Filenames and directory names are case sensitive This command changes the setting of the HELPER environment variable For more information see Appendix A Cisco Catalyst Blade Switch 3030 Boot Loader Commands Related Commands filesystem Alias for a flash file system Use flash for the system board ...

Page 52: ...rl no boot helper config file Syntax Description Defaults No helper configuration file is specified Command Modes Global configuration Command History Usage Guidelines This variable is used only for internal development and testing Filenames and directory names are case sensitive This command changes the setting of the HELPER_CONFIG_FILE environment variable For more information see Appendix A Cis...

Page 53: ...ults Manual booting is disabled Command Modes Global configuration Command History Usage Guidelines The next time you reboot the system the switch is in boot loader mode which is shown by the switch prompt To boot the system use the boot boot loader command and specify the name of the bootable image This command changes the setting of the MANUAL_BOOT environment variable For more information see A...

Page 54: ...t setting boot private config file filename no boot private config file Syntax Description Defaults The default configuration file is private config Command Modes Global configuration Command History Usage Guidelines Filenames are case sensitive Examples This example shows how to specify the name of the private configuration file to be pconfig Switch config boot private config file pconfig Related...

Page 55: ...h encountered subdirectory is completely searched before continuing the search in the original directory Command Modes Global configuration Command History Usage Guidelines Filenames and directory names are case sensitive If you are using the archive download sw privileged EXEC command to maintain system images you never need to use the boot system command The boot system command is automatically ...

Page 56: ... formed with another port group in either the active or passive mode auto Enable the Port Aggregation Protocol PAgP only if a PAgP device is detected Auto mode places a port into a passive negotiating state in which the port responds to PAgP packets it receives but does not start PAgP packet negotiation A channel is formed only with another port group in desirable mode When auto is enabled silent ...

Page 57: ...desirable mode silent is assumed The silent mode is used when the switch is connected to a device that is not PAgP capable and seldom if ever sends packets A example of a silent partner is a file server or a packet analyzer that is not generating traffic In this case running PAgP on a physical port prevents that port from ever becoming operational However it allows PAgP to operate to attach the po...

Page 58: ...ccess ports in VLAN 10 to channel 5 with the LACP mode active Switch configure terminal Switch config interface range gigabitethernet0 1 2 Switch config if range switchport mode access Switch config if range switchport access vlan 10 Switch config if range channel group 5 mode active Switch config if range end You can verify your settings by entering the show running config privileged EXEC command...

Page 59: ...u must use the channel group interface configuration command to configure the EtherChannel parameters The channel group command also can set the mode for the EtherChannel You cannot enable both the PAgP and LACP modes on an EtherChannel group PAgP and LACP are not compatible both ends of a channel must use the same protocol Examples This example shows how to specify LACP as the protocol that manag...

Page 60: ...ss command you enter policy map class configuration mode and these configuration commands are available exit exits policy map class configuration mode and returns to policy map configuration mode no returns a command to its default setting police defines a policer or aggregate policer for the classified traffic The policer specifies the bandwidth limitations and the action to take when the limits ...

Page 61: ...itch config pmap c set dscp 10 Switch config pmap c police 1000000 20000 exceed action policed dscp transmit Switch config pmap c exit You can verify your settings by entering the show policy map privileged EXEC command Related Commands Command Description class map Creates a class map to be used for matching packets to the class whose name you specify police Defines a policer for classified traff...

Page 62: ...globally named service policy applied on a per port basis After you are in quality of service QoS class map configuration mode these configuration commands are available description describes the class map up to 200 characters The show class map privileged EXEC command displays the description and the name of the class map exit exits from QoS class map configuration mode match configures classific...

Page 63: ...p class1 Switch config cmap match access group 103 Switch config cmap exit This example shows how to delete the class map class1 Switch config no class map class1 You can verify your settings by entering the show class map privileged EXEC command Related Commands Command Description class Defines a traffic classification match criteria through the police set and trust policy map class configuratio...

Page 64: ... interface by using the clear dot1x interface interface id command Examples This example shows how to clear all IEEE 8021 x information Switch clear dot1x all This example shows how to clear IEEE 8021 x information for the specified interface Switch clear dot1x interface gigabithethernet0 1 You can verify that the information was deleted by entering the show dot1x privileged EXEC command Related C...

Page 65: ...ear only the specific information by using the keywords Examples This example shows how to clear all EAP information Switch clear eap This example shows how to clear EAP session credential information for the specified profile Switch clear eap sessions credential type1 You can verify that the information was deleted by entering the show dot1x privileged EXEC command Related Commands credentials na...

Page 66: ...u can clear only the counters for the specified channel group by using the clear lacp channel group number counters command Examples This example shows how to clear all channel group information Switch clear lacp counters This example shows how to clear LACP traffic counters for group 4 Switch clear lacp 4 counters You can verify that the information was deleted by entering the show lacp counters ...

Page 67: ...ined Command Modes Privileged EXEC Command History Examples This example shows how to remove a specific MAC address from the dynamic address table Switch clear mac address table dynamic address 0008 0070 0007 You can verify that the information was deleted by entering the show mac address table privileged EXEC command dynamic Delete all dynamic MAC addresses dynamic address mac addr Optional Delet...

Page 68: ...able notification Enables the MAC address notification feature show mac address table Displays the MAC address table static and dynamic entries show mac address table notification Displays the MAC address notification settings for all interfaces or the specified interface snmp trap mac notification Enables the Simple Network Management Protocol SNMP MAC address notification trap on a specific inte...

Page 69: ...lts No default is defined Command Modes Privileged EXEC Command History Examples This example shows how to clear the mac address table move update related counters Switch clear mac address table move update You can verify that the information was cleared by entering the show mac address table move update privileged EXEC command Related Commands Release Modification 12 2 25 SEE This command was int...

Page 70: ...ers command or you can clear only the counters for the specified channel group by using the clear pagp channel group number counters command Examples This example shows how to clear all channel group information Switch clear pagp counters This example shows how to clear PAgP traffic counters for group 10 Switch clear pagp 10 counters You can verify that information was deleted by entering the show...

Page 71: ...ort security configured address 0008 0070 0007 all Delete all secure MAC addresses configured Delete configured secure MAC addresses dynamic Delete secure MAC addresses auto learned by hardware sticky Delete secure MAC addresses either auto learned or configured address mac addr Optional Delete the specified dynamic secure MAC address interface interface id Optional Delete all the dynamic secure M...

Page 72: ...e addresses from the address table Switch clear port security dynamic You can verify that the information was deleted by entering the show port security privileged EXEC command Related Commands Command Description switchport port security Enables port security on an interface switchport port security mac address mac address Configures secure MAC addresses switchport port security maximum value Con...

Page 73: ...Command History Usage Guidelines If the interface id is not specified spanning tree counters are cleared for all interfaces Examples This example shows how to clear spanning tree counters for all interfaces Switch clear spanning tree counters Related Commands interface interface id Optional Clear all spanning tree counters on the specified interface Valid interfaces include physical ports VLANs an...

Page 74: ... multiple spanning tree MST switch can also detect that a port is at the boundary of a region when it receives a legacy BPDU an MST BPDU Version 3 associated with a different region or a rapid spanning tree RST BPDU Version 2 However the switch does not automatically revert to the rapid PVST or the MSTP mode if it no longer receives IEEE 802 1D BPDUs because it cannot learn whether the legacy swit...

Page 75: ...and has no arguments or keywords Defaults No default is defined Command Modes Privileged EXEC Command History Examples This example shows how to clear VLAN Membership Policy Server VMPS statistics Switch clear vmps statistics You can verify that information was deleted by entering the show vmps statistics privileged EXEC command Related Commands Release Modification 12 2 25 SEE This command was in...

Page 76: ...x Description This command has no arguments or keywords Defaults No default is defined Command Modes Privileged EXEC Command History Examples This example shows how to clear the VTP counters Switch clear vtp counters You can verify that information was deleted by entering the show vtp counters privileged EXEC command Related Commands Release Modification 12 2 25 SEE This command was introduced Com...

Page 77: ...he interface range use this format type first interface last interface You must add a space between the first interface number and the hyphen when entering an interface range For example gigabitethernet 0 1 2 is a valid range gigabitethernet 0 1 2 is not a valid range Valid values for type and interface vlan vlan id where the VLAN ID is 1 to 4094 VLAN interfaces must have been configured with the ...

Page 78: ...ry before the comma The space after the comma is optional for example Examples This example shows how to create a multiple interface macro Switch config define interface range macro1 gigabitethernet0 1 2 Related Commands Command Description interface range Executes a command on multiple ports at the same time show running config Displays the current operating configuration including defined macros...

Page 79: ...or confirmation on destructive file operations For more information about this command see the Cisco IOS Command Reference for Release 12 1 Examples This example shows how to remove the directory that contains the old software image after a successful download of a new image Switch delete force recursive flash old image You can verify that the directory was removed by entering the dir filesystem p...

Page 80: ...If the source address for a packet matches the defined address non IP traffic from that address is denied host dst MAC addr dst MAC addr mask Define a destination MAC address and optional subnet mask If the destination address for a packet matches the defined address non IP traffic to that address is denied type mask Optional Use the Ethertype number of a packet with Ethernet II or SNAP encapsulat...

Page 81: ...dentify the protocol of the packet mask is a mask of don t care bits applied to the LSAP number before testing for a match mop console Optional Select EtherType DEC MOP Remote Console mop dump Optional Select EtherType DEC MOP Dump msdos Optional Select EtherType DEC MSDOS mumps Optional Select EtherType DEC MUMPS netbios Optional Select EtherType DEC Network Basic Input Output System NETBIOS vine...

Page 82: ...e software configuration guide for this release Examples This example shows how to define the named MAC extended access list to deny NETBIOS traffic from any source to MAC address 00c0 00a0 03fa Traffic matching this list is denied Switch config ext macl deny any host 00c0 00a0 03fa netbios This example shows how to remove the deny condition from the named MAC extended access list Switch config ex...

Page 83: ...cribes the sequence and authentication methods to be used to authenticate a user Before globally enabling IEEE 802 1x authentication on a switch remove the EtherChannel configuration from the interfaces on which IEEE 802 1x authentication and EtherChannel are configured If you are using a device running the Cisco Access Control Server ACS application for IEEE 802 1x authentication with EAP Transpa...

Page 84: ...dot1x critical global configuration Configures the parameters for the inaccessible authentication bypass feature on the switch dot1x guest vlan Enables and specifies an active VLAN as an IEEE 802 1x guest VLAN dot1x port control Enables manual control of the authorization state of the port show dot1x interface interface id Displays IEEE 802 1x status for the specified port ...

Page 85: ...onfigure the maximum number of authentication attempts allowed by the VLAN the change takes effect after the re authentication timer expires Examples This example shows how to set 2 as the maximum number of authentication attempts allowed before the port is moved to the restricted VLAN on port 3 Switch configure terminal Enter configuration commands one per line End with CNTL Z Switch config inter...

Page 86: ...ts Related Commands Command Description dot1x auth fail vlan vlan id Enables the optional restricted VLAN feature dot1x max reauth req count Sets the maximum number of times that the switch restarts the authentication process before a port changes to the unauthorized state show dot1x interface interface id Displays IEEE 802 1x status for the specified port ...

Page 87: ...lt might not detect any new hosts until the next re authentication attempt occurs If the supplicant fails authentication the port is moved to a restricted VLAN and an EAP success message is sent to the supplicant Because the supplicant is not notified of the actual authentication failure there might be confusion about this restricted network access An EAP success message is sent for these reasons ...

Page 88: ...While the restricted VLAN is inactive all authentication attempts are counted so that when the restricted VLAN becomes active the port is immediately placed in the restricted VLAN The restricted VLAN is supported only in single host mode the default port mode For this reason when a port is placed in a restricted VLAN the supplicant s MAC address is added to the MAC address table and any other MAC ...

Page 89: ...ake on LAN section in the Configuring IEEE 802 1x Port Based Authentication chapter in the software configuration guide Examples This example shows how to enable unidirectional control Switch config if dot1x control direction in This example shows how to enable bidirectional control Switch config if dot1x control direction both You can verify your settings by entering the show dot1x all privileged...

Page 90: ...this appears in the show dot1x all command output ControlDirection In If you enter the dot1x control direction in interface configuration command and the port cannot support this mode due to a configuration conflict this appears in the show dot1x all command output ControlDirection In Disabled due to port settings Related Commands Command Description show dot1x all interface interface id Displays ...

Page 91: ...at the switch sends an EAPOL Success message when the switch puts the critical port in the critical authentication state Use the recovery delay milliseconds keyword to set the recovery delay period during which the switch waits to re initialize a critical port when a RADIUS server that was unavailable becomes available The default recovery delay period is 1000 milliseconds A port can be re initial...

Page 92: ...tch 3030 Cisco IOS Commands dot1x critical global configuration Related Commands Command Description dot1x critical interface configuration Enables the inaccessible authentication bypass feature and configures the access VLAN for the feature show dot1x Displays IEEE 802 1x status for the specified port ...

Page 93: ...tch the type of port as follows If the critical port is an access port the VLAN must be an access VLAN If the critical port is a private VLAN host port the VLAN must be a secondary private VLAN If the critical port is a routed port you can specify a VLAN but this is optional If the client is running Windows XP and the critical port to which the client is connected is in the critical authentication...

Page 94: ...Switch configure terminal Enter configuration commands one per line End with CNTL Z Switch config interface gigabitethernet0 1 Switch config if dot1x critical Switch config if end Switch config end Switch You can verify your configuration by entering the show dot1x interface interface id privileged EXEC command Related Commands Command Description dot1x critical global configuration Configures the...

Page 95: ...ds The periodic re authentication is disabled The quiet period is 60 seconds The retransmission time is 30 seconds The maximum retransmission number is 2 times The host mode is single host The client timeout period is 30 seconds The authentication server timeout period is 30 seconds Command Modes Interface configuration Command History Examples This example shows how to reset the IEEE 802 1x param...

Page 96: ... authentication These users might be upgrading their systems for IEEE 802 1x authentication and some hosts such as Windows 98 systems might not be IEEE 802 1x capable When you enable a guest VLAN on an IEEE 802 1x port the switch assigns clients to a guest VLAN when it does not receive a response to its Extensible Authentication Protocol over LAN EAPOL request identity frame or when EAPOL packets ...

Page 97: ... server a RADIUS access request frame with a username and password based on the MAC address If authorization succeeds the switch grants the client access to the network If authorization fails the switch assigns the port to the guest VLAN if one is specified For more information see the Using IEEE 802 1x Authentication with MAC Authentication Bypass section in the Configuring IEEE 802 1x Port Based...

Page 98: ...ll hosts to be granted network access If the port becomes unauthorized re authentication fails or an Extensible Authentication Protocol over LAN EAPOL logoff message is received all attached clients are denied access to the network Before entering this command make sure that the dot1x port control interface configuration command is set to auto for the specified port Examples This example shows how...

Page 99: ...e Guidelines Use this command to initialize the IEEE 802 1x state machines and to set up a fresh environment for authentication After you enter this command the port status becomes unauthorized There is not a no form of this command Examples This example shows how to manually initialize a port Switch dot1x initialize interface gigabitethernet0 2 You can verify the unauthorized port status by enter...

Page 100: ...rt remains in the unauthorized state However if the client MAC address is added to the database the switch can use MAC authentication bypass to re authorize the port If the port is in the authorized state the port remains in this state until re authorization occurs If an EAPOL packet is detected on the interface during the lifetime of the link the switch determines that the device connected to tha...

Page 101: ...e shows how to enable MAC authentication bypass and to configure the switch to use EAP for authentication Switch config if dot1x mac auth bypass eap You can verify your settings by entering the show dot1x interface interface id privileged EXEC command Related Commands Command Description show dot1x interface interface id Displays IEEE 802 1x status for the specified port ...

Page 102: ... configuration Command History Usage Guidelines You should change the default value of this command only to adjust for unusual circumstances such as unreliable links or specific behavioral problems with certain clients and authentication servers Examples This example shows how to set 4 as the number of times that the switch restarts the authentication process before the port changes to the unautho...

Page 103: ...m number of times that the switch forwards an EAP frame assuming that no response is received to the authentication server before restarting the authentication process dot1x timeout tx period Sets the number of seconds that the switch waits for a response to an EAP request identity frame from the client before resending the request show dot1x interface interface id Displays IEEE 802 1x status for ...

Page 104: ... circumstances such as unreliable links or specific behavioral problems with certain clients and authentication servers Examples This example shows how to set 5 as the number of times that the switch sends an EAP frame from the authentication server to the client before restarting the authentication process Switch config if dot1x max req 5 You can verify your settings by entering the show dot1x in...

Page 105: ...o disable IEEE 802 1x authentication on the port When you configure IEEE 802 1x authentication on a port such as by entering the dot1x port control interface configuration command the switch automatically configures the port as an EEE 802 1x authenticator After the no dot1x pae interface configuration command is entered the Authenticator PAE operation is disabled Examples This example shows how to...

Page 106: ...amic mode can negotiate with its neighbor to become a trunk port If you try to enable IEEE 802 1x authentication on a dynamic port an error message appears and IEEE 802 1x authentication is not enabled If you try to change the mode of an IEEE 802 1x enabled port to dynamic an error message appears and the port mode is not changed Dynamic access ports If you try to enable IEEE 802 1x authentication...

Page 107: ...ion is disabled until the port is removed as a SPAN or RSPAN destination You can enable IEEE 802 1x authentication on a SPAN or RSPAN source port To globally disable IEEE 802 1x authentication on the switch use the no dot1x system auth control global configuration command To disable IEEE 802 1x authentication on a specific port or to return to the default setting use the no dot1x port control inte...

Page 108: ...an use this command to re authenticate a client without waiting for the configured number of seconds between re authentication attempts re authperiod and automatic re authentication Examples This example shows how to manually re authenticate the device connected to a port Switch dot1x re authenticate interface gigabitethernet0 1 Related Commands interface interface id Optional Module and port numb...

Page 109: ...imeout reauth period interface configuration command Examples This example shows how to disable periodic re authentication of the client Switch config if no dot1x reauthentication This example shows how to enable periodic re authentication and to set the number of seconds between re authentication attempts to 4000 seconds Switch config if dot1x reauthentication Switch config if dot1x timeout reaut...

Page 110: ...authentication exchange with the client The range is 1 to 65535 ratelimit period seconds Number of seconds that the switch ignores Extensible Authentication Protocol over LAN EAPOL packets from clients that have been successfully authenticated during this duration The range is 1 to 65535 reauth period seconds server Set the number of seconds between re authentication attempts The keywords have the...

Page 111: ... config if dot1x reauthentication Switch config if dot1x timeout reauth period 4000 This example shows how to enable periodic re authentication and to specify the value of the Session Timeout RADIUS attribute as the number of seconds between re authentication attempts Switch config if dot1x reauthentication Switch config if dot1x timeout reauth period server This example shows how to set 30 second...

Page 112: ...mands dot1x timeout Related Commands Command Description dot1x max req Sets the maximum number of times that the switch sends an EAP request identity frame before restarting the authentication process dot1x reauthentication Enables periodic re authentication of the client show dot1x Displays IEEE 802 1x status for all ports ...

Page 113: ... release notes Command Modes Interface configuration Command History Usage Guidelines For Gigabit Ethernet ports setting the port to auto has the same effect as specifying full if the attached device does not autonegotiate the duplex parameter Note Half duplex mode is supported on Gigabit Ethernet interfaces if the duplex mode is auto and the connected device is operating at half duplex However yo...

Page 114: ...etting to the negotiated value The duplex setting remains as configured on each end of the link which could result in a duplex setting mismatch You can configure the duplex setting when the speed is set to auto Caution Changing the interface speed and duplex mode configuration might shut down and re enable the interface during the reconfiguration For guidelines on setting the switch speed and dupl...

Page 115: ... pagp flap Syntax Description Command Default Detection is enabled for all causes Command Modes Global configuration Command History all Enable error detection for all error disabled causes dhcp rate limit Enable error detection for DHCP snooping dtp flap Enable error detection for the Dynamic Trunking Protocol DTP flapping gbic invalid Enable error detection for an invalid Gigabit Interface Conve...

Page 116: ...nterface is brought out of the error disabled state and allowed to retry the operation when all causes have timed out If you do not set a recovery mechanism you must enter the shutdown and then the no shutdown commands to manually recover an interface from the error disabled state Examples This example shows how to enable error disabled detection for the link flap error disabled cause Switch confi...

Page 117: ...tp flap Enable the timer to recover from the Dynamic Trunking Protocol DTP flap error disabled state gbic invalid Enable the timer to recover from an invalid Gigabit Interface Converter GBIC module error disabled state Note This error refers to an invalid small form factor pluggable SFP error disabled state link flap Enable the timer to recover from the link flap error disabled state loopback Enab...

Page 118: ...own and the no shutdown interface configuration commands If you enable the recovery for a cause the interface is brought out of the error disabled state and allowed to retry the operation again when all the causes have timed out Otherwise you must enter the shutdown and then the no shutdown commands to manually recover an interface from the error disabled state Examples This example shows how to e...

Page 119: ...d version that failed and a list of the processor registers The extended crashinfo file includes additional information that can help determine the cause of the switch failure Use the no exception crashinfo global configuration command to configure the switch to not create the extended crashinfo file Examples This example shows how to configure the switch to not create the extended crashinfo file ...

Page 120: ...nd desired keywords have the same result When you use the flowcontrol command to set a port to control traffic rates during congestion you are setting flow control on a port to one of these conditions receive on or desired The port cannot send pause frames but can operate with an attached device that is required to or is able to send pause frames The port can receive pause frames receive off Flow ...

Page 121: ...evice Remote Device Local Device Remote Device send off receive on send on receive on send on receive off send desired receive on send desired receive off send off receive on send off receive off Receives only Receives only Receives only Receives only Receives only Does not send or receive Sends and receives Sends only Sends and receives Sends only Receives only Does not send or receive send off r...

Page 122: ...the same as the port channel number or you can use a new number If you use a new number the channel group command dynamically creates a new port channel Only one port channel in a channel group is allowed Follow these guidelines when you use the interface port channel command If you want to use the Cisco Discovery Protocol CDP you must configure it only on the physical port and not on the port cha...

Page 123: ...mmand Description channel group Assigns an Ethernet port to an EtherChannel group show etherchannel Displays EtherChannel information for a channel show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands ...

Page 124: ... on existing VLAN switch virtual interfaces SVIs To display VLAN SVIs enter the show running config privileged EXEC command VLANs not displayed cannot be used in the interface range command The commands entered under interface range command are applied to all existing VLAN SVIs in the range All configuration changes made to an interface range are saved to NVRAM but the interface range itself is no...

Page 125: ...not specify both a macro and an interface range in the same command You can also specify a single interface in port range The command is then similar to the interface interface id global configuration command For more information about configuring interface ranges see the software configuration guide for this release Examples This example shows how to use the interface range command to enter inter...

Page 126: ...irst time that you enter the interface vlan vlan id command for a particular VLAN The vlan id corresponds to the VLAN tag associated with data frames on an ISL or IEEE 802 1Q encapsulated trunk or the VLAN ID configured for an access port If you delete a VLAN by entering the no interface vlan vlan id command the deleted interface is no longer visible in the output from the show interfaces privileg...

Page 127: ...new VLAN with VLAN ID 23 and to enter interface configuration mode Switch config interface vlan 23 Switch config if You can verify your setting by entering the show interfaces and show interfaces vlan vlan id privileged EXEC commands Related Commands Command Description show interfaces vlan vlan id Displays the administrative and operational status of all interfaces or the specified VLAN ...

Page 128: ...999 or extended access lists ranging from 100 to 199 and 2000 to 2699 You can use this command to apply an access list to a Layer 2 interface However note these limitations for port ACLs You can only apply ACLs in the inbound direction You can only apply one IP ACL and one MAC ACL per interface do not support logging if the log keyword is specified in the IP ACL it is ignored An IP ACL applied to ...

Page 129: ...ccess group 101 in You can verify your settings by entering the show ip interface show access lists or show ip access lists privileged EXEC command Related Commands Command Description access list Configures a numbered ACL For syntax information select Cisco IOS IP Command Reference Volume 1 of 3 Addressing and Services Release 12 2 IP Services Commands ip access list Configures a named ACL For sy...

Page 130: ...ill send an error message to the console You can use the optional keyword secondary to specify an unlimited number of secondary addresses Secondary addresses are treated like primary addresses except the system never generates datagrams other than routing updates with secondary source addresses IP broadcasts and ARP requests are handled properly as are interface routes in the IP routing table Note...

Page 131: ...ork Switch config interface vlan 1 Switch config if ip address 172 20 128 2 255 255 255 0 You can verify your settings by entering the show running config privileged EXEC command Related Commands Command Description show running config Displays the running configuration on the switch For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management C...

Page 132: ...age Guidelines For any DHCP snooping configuration to take effect you must globally enable DHCP snooping DHCP snooping is not active until you enable snooping on a VLAN by using the ip dhcp snooping vlan vlan id global configuration command Examples This example shows how to enable DHCP snooping Switch config ip dhcp snooping You can verify your settings by entering the show ip dhcp snooping user ...

Page 133: ...the port identifier vlan mod port from which the packet is received circuit ID suboption The switch forwards the DHCP request that includes the option 82 field to the DHCP server When the DHCP server receives the packet it can use the remote ID the circuit ID or both to assign IP addresses and implement policies such as restricting the number of IP addresses that can be assigned to a single remote...

Page 134: ...apter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands ip dhcp snooping information option Related Commands Command Description show ip dhcp snooping Displays the DHCP snooping configuration show ip dhcp snooping binding Displays the DHCP snooping binding information ...

Page 135: ...formation at the edge of your network You might also want to enable DHCP security features such as DHCP snooping on an aggregation switch However if DHCP snooping is enabled on the aggregation switch the switch drops packets with option 82 information that are received on an untrusted port and does not learn DHCP snooping bindings for connected devices on a trusted interface If the edge switch to ...

Page 136: ...switch to not check the option 82 information in untrusted packets from an edge switch and to accept the packets Switch config ip dhcp snooping information option allow untrusted You can verify your settings by entering the show ip dhcp snooping user EXEC command Related Commands Command Description show ip dhcp snooping Displays the DHCP snooping configuration show ip dhcp snooping binding Displa...

Page 137: ...es You must globally enable DHCP snooping by using the ip dhcp snooping global configuration command for any DHCP snooping configuration to take effect When the option 82 feature is enabled the default remote ID suboption is the switch MAC address This command allows you to configure either the switch hostname or a string of up to 63 ASCII characters but no spaces to be the remote ID Note If the h...

Page 138: ... Switch 3030 Cisco IOS Commands ip dhcp snooping information option format remote id Related Commands Command Description ip dhcp snooping vlan information option format type circuit id string Configures the option 82 circuit ID suboption show ip dhcp snooping Displays the DHCP snooping configuration ...

Page 139: ...egate DHCP traffic on multiple VLANs some of which might not be snooped in the switch and you will need to adjust the interface rate limits to a higher value If the rate limit is exceeded the interface is error disabled If you enabled error recovery by entering the errdisable recovery dhcp rate limit global configuration command the interface retries the operation again when all the causes have ti...

Page 140: ... Blade Switch 3030 Cisco IOS Commands ip dhcp snooping limit rate Related Commands Command Description errdisable recovery Configures the recover mechanism show ip dhcp snooping Displays the DHCP snooping configuration show ip dhcp snooping binding Displays the DHCP snooping binding information ...

Page 141: ...g trust is disabled Command Modes Interface configuration Command History Usage Guidelines Configure as trusted ports those that are connected to a DHCP server or to other switches or routers Configure as untrusted ports those that are connected to DHCP clients Examples This example shows how to enable DHCP snooping trust on a port Switch config if ip dhcp snooping trust You can verify your settin...

Page 142: ... in a DHCP packet that is received on untrusted ports matches the client hardware address in the packet Command Modes Global configuration Command History Usage Guidelines In a service provider network when a switch receives a packet from a DHCP client on an untrusted port it automatically verifies that the source MAC address and the DHCP client hardware address match If the addresses match the sw...

Page 143: ...CP snooping on a VLAN Examples This example shows how to enable DHCP snooping on VLAN 10 Switch config ip dhcp snooping vlan 10 You can verify your settings by entering the show ip dhcp snooping user EXEC command Related Commands vlan vlan range Specify a VLAN ID or a range of VLANs on which to enable DHCP snooping The range is 1 to 4094 You can enter a single VLAN ID identified by VLAN ID number ...

Page 144: ...nooping configuration to take effect When the option 82 feature is enabled the default circuit ID suboption is the switch VLAN and the port identifier in the format vlan mod port This command allows you to configure a string of ASCII characters to be the circuit ID Note When configuring a large number of circuit IDs on a switch consider the impact of lengthy character strings on the NVRAM or flash...

Page 145: ... Switch 3030 Cisco IOS Commands ip dhcp snooping vlan information option format type circuit id string Related Commands Command Description ip dhcp snooping information option format remote id Configures the option 82 remote ID suboption show ip dhcp snooping Displays the DHCP snooping configuration ...

Page 146: ... be applied to one or more switch port interfaces but one port can have only one profile applied to it Examples This example shows how to apply IGMP profile 22 to a port Switch config interface gigabitethernet0 2 Switch config if ip igmp filter 22 You can verify your setting by using the show running config privileged EXEC command and by specifying an interface Related Commands profile number The ...

Page 147: ...maximum groups for ports that belong to an EtherChannel group Follow these guidelines when configuring the IGMP throttling action If you configure the throttling action as deny and set the maximum group limitation the entries that were previously in the forwarding table are not removed but are aged out After these entries are aged out when the maximum number of entries is in the forwarding table t...

Page 148: ...n the maximum number of entries is in the forwarding table Switch config interface gigabitethernet0 1 Switch config if ip igmp max groups action replace You can verify your setting by using the show running config privileged EXEC command and by specifying an interface Related Commands Command Description show running config interface interface id Displays the running configuration on the switch in...

Page 149: ...ing these commands deny specifies that matching addresses are denied this is the default condition exit exits from igmp profile configuration mode no negates a command or resets to its defaults permit specifies that matching addresses are permitted range specifies a range of IP addresses for the profile This can be a single IP address or a range with a start and an end address When entering a rang...

Page 150: ... Cisco Catalyst Blade Switch 3030 Cisco IOS Commands ip igmp profile Related Commands Command Description ip igmp filter Applies the IGMP profile to the specified interface show ip igmp profile Displays the characteristics of all IGMP profiles or the specified IGMP profile number ...

Page 151: ...nd Modes Global configuration Command History Usage Guidelines When IGMP snooping is enabled globally it is enabled in all the existing VLAN interfaces When IGMP snooping is globally disabled it is disabled on all the existing VLAN interfaces VLAN IDs 1002 to 1005 are reserved for Token Ring and FDDI VLANs and cannot be used in IGMP snooping Examples This example shows how to globally enable IGMP ...

Page 152: ...mp snooping report suppression Enables IGMP report suppression show ip igmp snooping Displays the snooping configuration show ip igmp snooping groups Displays IGMP snooping multicast information show ip igmp snooping mrouter Displays the IGMP snooping router ports show ip igmp snooping querier Displays the configuration and operation information for the IGMP querier configured on a switch ...

Page 153: ...IGMP snooping is globally disabled IGMP snooping is disabled on all the existing VLAN interfaces VLAN IDs 1002 to 1005 are reserved for Token Ring and FDDI VLANs and cannot be used in IGMP snooping Configuring the leave timer on a VLAN overrides the global setting The IGMP configurable leave time is only supported on devices running IGMP Version 2 The configuration is saved in NVRAM Examples This ...

Page 154: ...ds Command Description ip igmp snooping Enables IGMP snooping on the switch or on a VLAN ip igmp snooping vlan immediate leave Enables IGMP Immediate Leave processing ip igmp snooping vlan mrouter Configures a Layer 2 port as a multicast router port ip igmp snooping vlan static Configures a Layer 2 port as a member of a group show ip igmp snooping Displays the IGMP snooping configuration ...

Page 155: ...ic from a multicast enabled device Command Modes Global configuration Command History vlan vlan id Optional Enable IGMP snooping and the IGMP querier function on the specified VLAN The range is 1 to 1001 and 1006 to 4094 address ip address Optional Specify a source IP address If you do not specify an IP address the querier tries to use the global IP address configured for the IGMP querier max resp...

Page 156: ...ed in IGMP snooping Examples This example shows how to globally enable the IGMP snooping querier feature Switch config ip igmp snooping querier This example shows how to set the IGMP snooping querier maximum response time to 25 seconds Switch config ip igmp snooping querier max response time 25 This example shows how to set the IGMP snooping querier interval time to 60 seconds Switch config ip igm...

Page 157: ... multicast router query to multicast devices When IGMP router suppression is enabled the default the switch sends the first IGMP report from all hosts for a group to all the multicast routers The switch does not send the remaining IGMP reports for the group to the multicast routers This feature prevents duplicate reports from being sent to the multicast devices If the multicast router query includ...

Page 158: ... Cisco Catalyst Blade Switch 3030 Cisco IOS Commands ip igmp snooping report suppression Related Commands Command Description ip igmp snooping Enables IGMP snooping on the switch or on a VLAN show ip igmp snooping Displays the IGMP snooping configuration of the switch or the VLAN ...

Page 159: ... the flooding stops after receiving 1 general query If you set the count to 7 the flooding of multicast traffic due to the TCN event lasts until 7 general queries are received Groups are relearned based on the general queries received during the TCN event Use the ip igmp snooping tcn query solicit global configuration command to enable the switch to send the global leave message whether or not it ...

Page 160: ...ands ip igmp snooping tcn Related Commands Command Description ip igmp snooping Enables IGMP snooping on the switch or on a VLAN ip igmp snooping tcn flood Specifies flooding on an interface as the IGMP snooping spanning tree TCN behavior show ip igmp snooping Displays the IGMP snooping configuration of the switch or the VLAN ...

Page 161: ... multicast traffic is flooded to all the ports until two general queries are received If the switch has many ports with attached hosts that are subscribed to different multicast groups the flooding might exceed the capacity of the link and cause packet loss You can change the flooding query count by using the ip igmp snooping tcn flood query count count global configuration command Examples This e...

Page 162: ...led Command Modes Global configuration Command History Usage Guidelines VLAN IDs 1002 to 1005 are reserved for Token Ring and FDDI VLANs and cannot be used in IGMP snooping You should configure the Immediate Leave feature only when there is a maximum of one receiver on every port in the VLAN The configuration is saved in NVRAM The Immediate Leave feature is supported only with IGMP Version 2 hosts...

Page 163: ...ption ip igmp snooping report suppression Enables IGMP report suppression show ip igmp snooping Displays the snooping configuration show ip igmp snooping groups Displays IGMP snooping multicast information show ip igmp snooping mrouter Displays the IGMP snooping router ports show ip igmp snooping querier Displays the configuration and operation information for the IGMP querier configured on a swit...

Page 164: ... reserved for Token Ring and FDDI VLANs and cannot be used in IGMP snooping The CGMP learn method is useful for reducing control traffic The configuration is saved in NVRAM vlan id Enable IGMP snooping and add the port in the specified VLAN as the multicast router port The range is 1 to 1001 and 1006 to 4094 interface interface id Specify the next hop interface to the multicast router The keywords...

Page 165: ...s CGMP Switch config ip igmp snooping vlan 1 mrouter learn cgmp You can verify your settings by entering the show ip igmp snooping privileged EXEC command Related Commands Command Description ip igmp snooping report suppression Enables IGMP report suppression show ip igmp snooping Displays the snooping configuration show ip igmp snooping groups Displays IGMP snooping multicast information show ip ...

Page 166: ...d History Usage Guidelines VLAN IDs 1002 to 1005 are reserved for Token Ring and FDDI VLANs and cannot be used in IGMP snooping The configuration is saved in NVRAM Examples This example shows how to statically configure a host on an interface Switch config ip igmp snooping vlan 1 static 0100 5e02 0203 interface gigabitethernet0 1 Configuring port gigabitethernet0 1 on group 0100 5e02 0203 You can ...

Page 167: ... ip igmp snooping report suppression Enables IGMP report suppression show ip igmp snooping Displays the snooping configuration show ip igmp snooping groups Displays IGMP snooping multicast information show ip igmp snooping mrouter Displays the IGMP snooping router ports show ip igmp snooping querier Displays the configuration and operation information for the IGMP querier configured on a switch ...

Page 168: ...f you do not specify a keyword the SSH server selects the latest SSH version supported by the SSH client For example if the SSH client supports SSHv1 and SSHv2 the SSH server selects SSHv2 The switch supports an SSHv1 or an SSHv2 server It also supports an SSHv1 client For more information about the SSH server and the SSH client see the software configuration guide for this release A Rivest Shamir...

Page 169: ...on information for the SSH server For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Security Command Reference Release 12 2 Other Security Features Secure Shell Commands show ssh Displays the status of the SSH server For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Security Command Re...

Page 170: ...iority comparisons a numerically lower value has a higher priority When there are more than eight ports in an LACP channel group the eight ports with the numerically lowest values highest priority values for LACP port priority are bundled into the channel group and the lower priority ports are put in hot standby mode If two or more ports have the same LACP port priority for example they are config...

Page 171: ...gigabitethernet0 1 Switch config if lacp port priority 1000 You can verify your settings by entering the show lacp channel group number internal privileged EXEC command Related Commands Command Description channel group Assigns an Ethernet port to an EtherChannel group lacp system priority Configures the LACP system priority show lacp channel group number internal Displays internal information for...

Page 172: ...standby mode Port priorities on the other switch the noncontrolling end of the link are ignored In priority comparisons numerically lower values have higher priority Therefore the system with the numerically lower value higher priority value for LACP system priority becomes the controlling system If both switches have the same LACP system priority for example they are both configured with the defa...

Page 173: ...lyst Blade Switch 3030 Cisco IOS Commands lacp system priority Related Commands Command Description channel group Assigns an Ethernet port to an EtherChannel group lacp port priority Configures the LACP port priority show lacp sys id Displays the system identifier that is being used by LACP ...

Page 174: ...can be associated with a single group consisting of multiple upstream interfaces These groups are referred to as link state groups The link state of the downstream interfaces are dependent on the link state of the upstream interfaces in the associated link state group If all of the upstream interfaces in a link state group are in a link down state then the associated downstream interfaces are forc...

Page 175: ...ng ports in an EtherChannel Switch configure terminal Switch config link state track 1 Switch config interface P01 Switch config if link state group 1 upstream Switch config if range interface range gigabitethernet0 1 gigabitethernet0 3 gigabitethernet0 5 Switch config if link state group 1 downstream Switch config if end You can verify your settings by entering the show running config privileged ...

Page 176: ...ow enable link state group 2 Switch config link state track 2 You can verify your settings by entering the show running config privileged EXEC command Related Commands number Optional Specify the link state group number The group number can be 1 or 2 the default is 1 Release Modification 12 2 25 SEE This command was introduced Command Description link state group Configures an interface as a membe...

Page 177: ...e path and name of the file that contains the log messages The syntax for the local flash file system flash max file size Optional Specify the maximum logging file size The range is 4096 to 2147483647 nomax Optional Specify the maximum file size of 2147483647 min file size Optional Specify the minimum logging file size The range is 1024 to 2147483647 severity level number Optional Specify the logg...

Page 178: ... you can use the more flash filename privileged EXEC command to display its contents The command rejects the minimum file size if it is greater than the maximum file size minus 1024 the minimum file size then becomes the maximum file size minus 1024 Specifying a level causes messages at that level and numerically lower levels to be displayed Examples This example shows how to save informational lo...

Page 179: ... an IP ACL and a MAC ACL to the interface You can apply no more than one IP access list and one MAC access list to the same Layer 2 interface If a MAC ACL is already configured on a Layer 2 interface and you apply a new MAC ACL to the interface the new ACL replaces the previously configured one If you apply an ACL to a Layer 2 interface on a switch and the switch has a VLAN map applied to a VLAN t...

Page 180: ...y entering the show mac access group privileged EXEC command You can see configured ACLs on the switch by entering the show access lists privileged EXEC command Related Commands Command Description show access lists Displays the ACLs configured on the switch show link state group Displays the MAC ACLs configured on the switch show running config Displays the running configuration on the switch For...

Page 181: ... named extended lists are used with VLAN maps and class maps You can apply named MAC extended ACLs to VLAN maps or to Layer 2 interfaces Entering the mac access list extended command enables the MAC access list configuration mode These configuration commands are available default sets a command to its default deny specifies packets to reject For more information see the deny MAC access list config...

Page 182: ...shows how to delete MAC named extended access list mac1 Switch config no mac access list extended mac1 You can verify your settings by entering the show access lists privileged EXEC command Related Commands Command Description deny MAC access list configuration permit MAC access list configuration Configures the MAC ACL in extended MAC access list configuration mode show access lists Displays the ...

Page 183: ...ntinuously increase the aging time to record the dynamic entries for a longer time Increasing the time can reduce the possibility of flooding when the hosts send again If you do not specify a specific VLAN this command sets the aging time for all VLANs Examples This example shows how to set the aging time to 200 seconds for all VLANs Switch config mac address table aging time 200 You can verify yo...

Page 184: ...cess switch to send the MAC address table move update messages if the primary link goes down and the standby link comes up You can configure the uplink switches to receive and process the MAC address table move update messages Examples This example shows how to configure an access switch to send MAC address table move update messages Switch configure terminal Switch conf mac address table move upd...

Page 185: ...ress table move update Related Commands Command Description clear mac address table move update Clears the MAC address table move update global counters debug matm move update Debugs the MAC address table move update message processing show mac address table move update Displays the MAC address table move update information on the switch ...

Page 186: ...ddress is added or an old address is deleted from the forwarding tables MAC notifications are generated only for dynamic and secure MAC addresses Events are not generated for self addresses multicast addresses or other static addresses When you configure the history size option the existing MAC address history table is deleted and a new table is created You enable the MAC address notification feat...

Page 187: ...0 Switch config mac address table notification history size 100 You can verify your settings by entering the show mac address table notification privileged EXEC command Related Commands Command Description clear mac address table notification Clears the MAC address notification global counters show mac address table notification Displays the MAC address notification settings on all interfaces or o...

Page 188: ...en a packet is received in VLAN 4 with this MAC address as its destination the packet is forwarded to the specified interface Switch config mac address table static c2f3 220a 12f4 vlan 4 interface gigabitethernet0 1 You can verify your setting by entering the show mac address table privileged EXEC command Related Commands mac addr Destination MAC address unicast or multicast to add to the address ...

Page 189: ... to the CPU are also not supported If you add a unicast MAC address as a static address and configure unicast MAC address filtering the switch either adds the MAC address as a static address or drops packets with that MAC address depending on which command was entered last The second command that you entered overrides the first command For example if you enter the mac address table static mac addr...

Page 190: ...3 220a 12f4 When a packet is received in VLAN 4 with this MAC address as its source or destination the packet is dropped Switch config mac address table static c2f3 220a 12f4 vlan 4 drop This example shows how to disable unicast MAC address filtering Switch config no mac address table static c2f3 220a 12f4 vlan 4 You can verify your setting by entering the show mac address table static privileged ...

Page 191: ...terface Keyword matching is case sensitive All matching occurrences of the keyword are replaced with the corresponding value Any full match of a keyword even if it is part of a larger string is considered a match and is replaced by the corresponding value Some macros might contain keywords that require a parameter value You can use the macro apply macro name command to display a list of any requir...

Page 192: ...es You can delete a macro applied configuration on an interface by entering the default interface interface id interface configuration command Examples After you have created a macro by using the macro name global configuration command you can apply it to an interface This example shows how to apply a user created macro called duplex to an interface Switch config if macro apply duplex To debug a m...

Page 193: ...face gigabitethernet0 4 Switch config if macro apply cisco desktop AVID 25 Related Commands Command Description macro description Adds a description about the macros that are applied to an interface macro global Applies a macro on a switch or applies and traces a macro on a switch macro global description Adds a description about the macros that are applied to the switch macro name Creates a macro...

Page 194: ... a single interface the description text will be from the last applied macro This example shows how to add a description to an interface Switch config if macro description duplex settings You can verify your settings by entering the show parser macro description privileged EXEC command Related Commands description text Enter a description about the macros that are applied to the specified interfac...

Page 195: ...cific to the switch Keyword matching is case sensitive All matching occurrences of the keyword are replaced with the corresponding value Any full match of a keyword even if it is part of a larger string is considered a match and is replaced by the corresponding value Some macros might contain keywords that require a parameter value You can use the macro global apply macro name command to display a...

Page 196: ... After you have created a new macro by using the macro name global configuration command you can apply it to a switch This example shows how see the snmp macro and how to apply the macro and set the hostname to test server and set the IP precedence value to 7 Switch show parser macro name snmp Macro name snmp Macro type customizable enable port security linkup and linkdown traps snmp server enable...

Page 197: ...acro apply Applies a macro on an interface or applies and traces a macro on an interface macro description Adds a description about the macros that are applied to an interface macro global description Adds a description about the macros that are applied to the switch macro name Creates a macro show parser macro Displays the macro definition for all macros or for the specified macro ...

Page 198: ...acros are applied on a switch the description text will be from the last applied macro This example shows how to add a description to a switch Switch config macro global description udld aggressive mode enabled You can verify your settings by entering the show parser macro description privileged EXEC command Related Commands description text Enter a description about the macros that are applied to...

Page 199: ...shown Macro names are case sensitive For example the commands macro name Sample Macro and macro name sample macro will result in two separate macros When creating a macro do not use the exit or end commands or change the command mode by using interface interface id This could cause commands that follow exit end or interface interface id to execute in a different command mode The no form of this co...

Page 200: ...e gigabitethernet0 1 Switch config if macro apply test WORD keyword to replace with a value e g VLANID MAX cr Switch config if macro apply test VLANID WORD Value of first keyword to replace Switch config if macro apply test VLANID 2 WORD keyword to replace with a value e g VLANID MAX cr Switch config if macro apply test VLANID 2 MAX WORD Value of second keyword to replace Related Commands Command ...

Page 201: ... must enter one access list name or number others are optional You can match packets against one or more access lists Matching any of the lists counts as a match of the entry In access map configuration mode use the match command to define the match conditions for a VLAN map applied to a VLAN Use the action command to set the action that occurs when the packet matches the conditions Packets are ma...

Page 202: ...6 You can verify your settings by entering the show vlan access map privileged EXEC command Related Commands Command Description access list Configures a standard numbered ACL For syntax information select Cisco IOS IP Command Reference Volume 1 of 3 Addressing and Services Release 12 2 IP Services Commands action Specifies the action to be taken if the packet matches an entry in an access control...

Page 203: ... keywords are equivalent access group acl index or name Number or name of an IP standard or extended access control list ACL or MAC ACL For an IP standard ACL the ACL index range is 1 to 99 and 1300 to 1999 For an IP extended ACL the ACL index range is 100 to 199 and 2000 to 2699 input interface interface id list Specify the physical ports to which the interface level class map in a hierarchical p...

Page 204: ...eate a class map called class3 which matches all the incoming traffic with IP precedence values of 5 6 and 7 Switch config class map class3 Switch config cmap match ip precedence 5 6 7 Switch config cmap exit This example shows how to delete the IP precedence match criteria and to classify traffic using acl1 Switch config class map class2 Switch config cmap match ip precedence 5 6 7 Switch config ...

Page 205: ...n you enable auto MDIX on an interface you must also set the interface speed and duplex to auto so that the feature operates correctly When auto MDIX and autonegotiation of speed and duplex is enabled on one or both of connected interfaces link up occurs even if the cable type straight through or crossover is incorrect Auto MDIX is supported on all 10 100 1000 Mbps interfaces and on 10 100 1000BAS...

Page 206: ...pter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands mdix auto Related Commands Command Description show controllers ethernet controller interface id phy Displays general information about internal registers of an interface including the operational state of auto MDIX ...

Page 207: ...licing No policy maps are configured The default port trust state on all ports is untrusted The default ingress and egress queue settings are in effect Command Modes Global configuration Command History Usage Guidelines QoS must be globally enabled to use QoS classification policing mark down or drop queueing and traffic shaping features You can create a policy map and attach it to a port before e...

Page 208: ...Cisco Catalyst Blade Switch 3030 Command Reference 78 17262 01 Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands mls qos Related Commands Command Description show mls qos Displays QoS information ...

Page 209: ...e aggregated for policing purposes The port ASIC device which controls more than one physical port supports 256 policers 255 policers plus 1 no policer The maximum number of policers supported per port is 64 Policers are allocated on demand by the software and are constrained by the hardware and ASIC boundaries You cannot reserve policers per port there is no guarantee that a port will be assigned...

Page 210: ... command or the mls qos aggregate policer global configuration command For more information see the software configuration guide for this release Examples This example shows how to define the aggregate policer parameters and how to apply the policer to multiple classes in a policy map Switch config mls qos aggregate policer agg_policer1 1000000 1000000 exceed action drop Switch config policy map p...

Page 211: ... incoming packet does not have a CoS value You also can assign a default CoS and DSCP value to all incoming packets by using the override keyword Use the override keyword when all incoming packets on certain ports deserve higher or lower priority than packets entering from other ports Even if a port is previously set to trust DSCP CoS or IP precedence this command overrides the previously configur...

Page 212: ...config if mls qos trust cos Switch config if mls qos cos 4 This example shows how to assign all the packets entering a port to the default port CoS value of 4 on a port Switch config interface gigabitethernet0 1 Switch config if mls qos cos 4 Switch config if mls qos cos override You can verify your settings by entering the show mls qos interface privileged EXEC command Related Commands Command De...

Page 213: ...p to the receiving port ingress mutation at the boundary of a quality of service QoS administrative domain With ingress mutation the new DSCP value overwrites the one in the packet and QoS handles the packet with this new value The switch sends the packet out the port with the new DSCP value You can configure multiple DSCP to DSCP mutation maps on ingress ports You apply the map only to DSCP trust...

Page 214: ...map name dscpmutation1 from the port and to reset the map to the default Switch config if no mls qos dscp mutation dscpmutation1 You can verify your settings by entering the show mls qos maps privileged EXEC command Related Commands Command Description mls qos map dscp mutation Defines the DSCP to DSCP mutation map mls qos trust Configures the port trust state show mls qos maps Displays QoS mappin...

Page 215: ...th a space The range is 0 to 63 dscp cos dscp list to cos Define the DSCP to CoS map For dscp list enter up to eight DSCP values with each value separated by a space The range is 0 to 63 Then enter the to keyword For cos enter a single CoS value to which the DSCP values correspond The range is 0 to 7 dscp mutation dscp mutation name in dscp to out dscp Define the DSCP to DSCP mutation map For dscp...

Page 216: ...hows the default DSCP to CoS map Table 2 8 shows the default IP precedence to DSCP map Table 2 6 Default CoS to DSCP Map CoS Value DSCP Value 0 0 1 8 2 16 3 24 4 32 5 40 6 48 7 56 Table 2 7 Default DSCP to CoS Map DSCP Value CoS Value 0 7 0 8 15 1 16 23 2 24 31 3 32 39 4 40 47 5 48 55 6 56 63 7 Table 2 8 Default IP Precedence to DSCP Map IP Precedence Value DSCP Value 0 0 1 8 2 16 3 24 4 32 5 40 6...

Page 217: ... Switch configure terminal Switch config mls qos map policed dscp 1 2 3 4 5 6 to 0 This example shows how to define the DSCP to CoS map DSCP values 20 21 22 23 and 24 are mapped to CoS 1 DSCP values 10 11 12 13 14 15 16 and 17 are mapped to CoS 0 Switch configure terminal Switch config mls qos map dscp cos 20 21 22 23 24 to 1 Switch config mls qos map dscp cos 10 11 12 13 14 15 16 17 to 0 This exa...

Page 218: ...2 01 Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands mls qos map Related Commands Command Description mls qos dscp mutation Applies a DSCP to DSCP mutation map to a DSCP trusted port show mls qos maps Displays quality of service QoS mapping information ...

Page 219: ...rding to the importance of the traffic for example give a large percentage of the buffer to the queue with the highest priority traffic To configure different classes of traffic with different characteristics use this command with the mls qos queue set output qset id threshold global configuration command Note The egress queue default settings are suitable for most situations You should change the...

Page 220: ... interface gigabitethernet0 1 Switch config if queue set 2 You can verify your settings by entering the show mls qos interface interface id buffers or the show mls qos queue set privileged EXEC command Related Commands Command Description mls qos queue set output threshold Configures the weighted tail drop WTD thresholds guarantees the availability of buffers and configures the maximum memory allo...

Page 221: ... a queue set which defines all the characteristics of the four egress queues per port The range is 1 to 2 queue id Specific queue in the queue set on which the command is performed The range is 1 to 4 drop threshold1 drop threshold2 Two WTD thresholds expressed as a percentage of the queue s allocated memory The range is 1 to 400 percent reserved threshold Amount of memory to be guaranteed reserve...

Page 222: ...imit whether it has consumed all of its maximum buffers over limit and whether the common pool is empty no free buffers or not empty free buffers If the queue is not over limit the switch can allocate buffer space from the reserved pool or from the common pool if it is not empty If there are no free buffers in the common pool or if the queue is over limit the switch drops the frame Examples This e...

Page 223: ... DSCP field in the incoming packet and the DSCP field in the outgoing packet is the same as that in the incoming packet By default DSCP transparency is disabled The switch modifies the DSCP field in an incoming packet and the DSCP field in the outgoing packet is based on the quality of service QoS configuration including the port trust setting policing and marking and the DSCP to DSCP mutation map...

Page 224: ...re the switch to change the DSCP value of the incoming IP packet Switch config mls qos Switch config mls qos rewrite ip dscp You can verify your settings by entering the show running config include rewrite privileged EXEC command Related Commands Command Description mls qos Enables QoS globally show mls qos Displays QoS information show running config include rewrite Displays the DSCP transparency...

Page 225: ...ty queue queue id bandwidth weight global configuration command Then SRR shares the remaining bandwidth with both ingress queues and services them as specified by the weights configured with the mls qos srr queue input bandwidth weight1 weight2 global configuration command You specify which ingress queue is the priority queue by using the mls qos srr queue input priority queue global configuration...

Page 226: ...4 4 You can verify your settings by entering the show mls qos interface interface id queueing or the show mls qos input queue privileged EXEC command Related Commands Command Description mls qos srr queue input buffers Allocates the buffers between the ingress queues mls qos srr queue input cos map Maps class of service CoS values to an ingress queue or maps CoS values to a queue and to a threshol...

Page 227: ...ent of the buffer space to ingress queue 2 Switch config mls qos srr queue input buffers 60 40 You can verify your settings by entering the show mls qos interface interface id buffers or the show mls qos input queue privileged EXEC command Related Commands percentage1 percentage2 Percentage of buffers allocated to ingress queues 1 and 2 The range is 0 to 100 Separate each value with a space Releas...

Page 228: ... 78 17262 01 Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands mls qos srr queue input buffers show mls qos input queue Displays ingress queue settings show mls qos interface buffers Displays quality of service QoS information Command Description ...

Page 229: ...rr queue input cos map Syntax Description Defaults Table 2 10 shows the default CoS input queue threshold map Command Modes Global configuration Command History queue queue id Specify a queue number For queue id the range is 1 to 2 cos1 cos8 Map CoS values to an ingress queue For cos1 cos8 enter up to eight values and separate each value with a space The range is 0 to 7 threshold threshold id cos1...

Page 230: ... values 4 and 5 to ingress queue 1 and to threshold ID 2 with a drop threshold of 70 percent Switch config mls qos srr queue input cos map queue 1 threshold 1 0 1 2 3 Switch config mls qos srr queue input cos map queue 1 threshold 2 4 5 Switch config mls qos srr queue input threshold 1 50 70 You can verify your settings by entering the show mls qos maps privileged EXEC command Related Commands Com...

Page 231: ...s srr queue input dscp map Syntax Description Defaults Table 2 11 shows the default DSCP input queue threshold map Command Modes Global configuration Command History queue queue id Specify a queue number For queue id the range is 1 to 2 dscp1 dscp8 Map DSCP values to an ingress queue For dscp1 dscp8 enter up to eight values and separate each value with a space The range is 0 to 63 threshold thresh...

Page 232: ...f 50 percent It maps DSCP values 20 to 26 to ingress queue 1 and to threshold 2 with a drop threshold of 70 percent Switch config mls qos srr queue input dscp map queue 1 threshold 1 0 1 2 3 4 5 6 Switch config mls qos srr queue input dscp map queue 1 threshold 2 20 21 22 23 24 25 26 Switch config mls qos srr queue input threshold 1 50 70 You can verify your settings by entering the show mls qos m...

Page 233: ...traffic which needs minimum delay and jitter The priority queue is guaranteed part of the bandwidth on the internal ring which reduces the delay and jitter under heavy network traffic on an oversubscribed ring when there is more traffic than the backplane can carry and the queues are full and dropping frames Shaped round robin SRR services the priority queue for its configured weight as specified ...

Page 234: ... bandwidth 4 4 You can verify your settings by entering the show mls qos interface interface id queueing or the show mls qos input queue privileged EXEC command Related Commands Command Description mls qos srr queue input bandwidth Assigns shaped round robin SRR weights to an ingress queue mls qos srr queue input buffers Allocates the buffers between the ingress queues mls qos srr queue input cos ...

Page 235: ...ceeded However packets assigned to threshold 2 continue to be queued and sent as long as the second threshold is not exceeded Each queue has two configurable explicit drop threshold and one preset implicit drop threshold full You configure the CoS to threshold map by using the mls qos srr queue input cos map global configuration command You configure the DSCP to threshold map by using the mls qos ...

Page 236: ...tween the ingress queues mls qos srr queue input cos map Maps class of service CoS values to an ingress queue or maps CoS values to a queue and to a threshold ID mls qos srr queue input dscp map Maps Differentiated Services Code Point DSCP values to an ingress queue or maps DSCP values to a queue and to a threshold ID mls qos srr queue input priority queue Configures the ingress priority queue and...

Page 237: ...ue output cos map Syntax Description Defaults Table 2 12 shows the default CoS output queue threshold map Command Modes Global configuration Command History queue queue id Specify a queue number For queue id the range is 1 to 4 cos1 cos8 Map CoS values to an egress queue For cos1 cos8 enter up to eight values and separate each value with a space The range is 0 to 7 threshold threshold id cos1 cos8...

Page 238: ...queue 1 to 50 and 70 percent of the allocated memory guarantees reserves 100 percent of the allocated memory and configures 200 percent as the maximum memory that this queue can have before packets are dropped Switch config mls qos srr queue output cos map queue 1 threshold 1 0 1 2 3 Switch config mls qos queue set output 1 threshold 1 50 70 100 200 Switch config interface gigabitethernet0 1 Switc...

Page 239: ...utput dscp map Syntax Description Defaults Table 2 13 shows the default DSCP output queue threshold map Command Modes Global configuration Command History queue queue id Specify a queue number For queue id the range is 1 to 4 dscp1 dscp8 Map DSCP values to an egress queue For dscp1 dscp8 enter up to eight values and separate each value with a space The range is 0 to 63 threshold threshold id dscp1...

Page 240: ... thresholds for queue 1 to 50 and 70 percent of the allocated memory guarantees reserves 100 percent of the allocated memory and configures 200 percent as the maximum memory that this queue can have before packets are dropped Switch config mls qos srr queue output dscp map queue 1 threshold 1 0 1 2 3 Switch config mls qos queue set output 1 threshold 1 50 70 100 200 Switch config interface gigabit...

Page 241: ...st DSCP or trust IP precedence and the incoming packet is a non IP packet the CoS to DSCP map is used to derive the corresponding DSCP value from the CoS value The CoS can be the packet CoS for trunk ports or the port default CoS for nontrunk ports If the DSCP is trusted the DSCP field of the IP packet is not modified However it is still possible that the CoS value of the packet is modified accord...

Page 242: ...usted state and apply the DSCP to DSCP mutation map if the DSCP values are different between the QoS domains Classification using a port trust state for example mls qos trust cos dscp ip precedence and a policy map for example service policy input policy map name are mutually exclusive The last one configured overwrites the previous configuration Examples This example shows how to configure a port...

Page 243: ...n a physical port if the port is to be specified in the secondary interface level of the hierarchical policy map When you configure hierarchical policing the hierarchical policy map is attached to the SVI and affects all traffic belonging to the VLAN The individual policer in the interface level traffic classification only affects the physical ports specified for that classification For detailed i...

Page 244: ...lyst Blade Switch 3030 Command Reference 78 17262 01 Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands mls qos vlan based Related Commands Command Description show mls qos interface Displays QoS information ...

Page 245: ...all local remote no monitor session session_number destination interface interface id encapsulation replicate ingress dot1q vlan vlan id isl untagged vlan vlan id vlan vlan id remote vlan vlan id no monitor session session_number filter vlan vlan id no monitor session session_number source interface interface id both rx tx vlan vlan id both rx tx remote vlan vlan id Syntax Description session_numb...

Page 246: ...1001 and 1006 to 4094 The RSPAN VLAN cannot be VLAN 1 the default VLAN or VLAN IDs 1002 to 1005 reserved for Token Ring and FDDI VLANs Optional Specify a series of interfaces or VLANs or separate a range of interfaces or VLANs from a previous range Enter a space before and after the comma Optional Specify a range of interfaces or VLANs Enter a space before and after the hyphen filter vlan vlan id ...

Page 247: ...pate in the EtherChannel group while it is as a SPAN destination You can monitor individual ports while they participate in an EtherChannel or you can monitor the entire EtherChannel bundle by specifying the port channel number as the RSPAN source interface A port used as a destination port cannot be a SPAN or RSPAN source nor can a port be a destination port for more than one session at a time Yo...

Page 248: ... vlan 100 304 This example shows how to configure RSPAN source session 1 to monitor multiple source interfaces and to configure the destination RSPAN VLAN 900 Switch config monitor session 1 source interface gigabitethernet0 1 Switch config monitor session 1 source interface port channel 2 tx Switch config monitor session 1 destination remote vlan 900 Switch config end This example shows how to co...

Page 249: ...ommand Description remote span Configures an RSPAN VLAN in vlan configuration mode show monitor Displays SPAN and RSPAN session information show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands ...

Page 250: ...e no form of this command to remove a statically configured IP multicast address or contiguous addresses or when no IP address is entered to remove all statically configured MVR IP multicast addresses count Optional Configure multiple contiguous MVR group addresses The range is 1 to 256 the default is 1 mode Optional Specify the MVR mode of operation The default is compatible mode compatible Set M...

Page 251: ... MVR is interoperating with Catalyst 2900 XL or Catalyst 3500 XL switches set the multicast mode to compatible When operating in compatible mode MVR does not support IGMP dynamic joins on MVR source ports MVR can coexist with IGMP snooping on a switch Examples This example shows how to enable MVR Switch config mvr Use the show mvr privileged EXEC command to display the current setting for maximum ...

Page 252: ...onfiguration Configures MVR ports show mvr Displays MVR global parameters or port parameters show mvr interface Displays the configured MVR interfaces with their type status and Immediate Leave configuration Also displays all MVR groups of which the interface is a member show mvr members Displays all ports that are members of an MVR multicast group if the group has no members its status is shown a...

Page 253: ...mmediate Leave feature of MVR on a port Use the no mvr immediate command to disable the feature type Optional Configure the port as an MVR receiver port or a source port The default port type is neither an MVR source nor a receiver port The no mvr type command resets the port as neither a source or a receiver port receiver Configure the port as a subscriber port that can only receive multicast dat...

Page 254: ...as received As soon as the leave message is received the receiver port is removed from multicast group membership which speeds up leave latency The Immediate Leave feature should be enabled only on receiver ports to which a single receiver device is connected The mvr vlan group command statically configures ports to receive multicast traffic sent to the IP multicast address A port statically confi...

Page 255: ...nfiguration Enables and configures multicast VLAN registration on the switch show mvr Displays MVR global parameters or port parameters show mvr interface Displays the configured MVR interfaces or displays the multicast groups to which a receiver port belongs Also displays all MVR groups of which the interface is a member show mvr members Displays all receiver ports that are members of an MVR mult...

Page 256: ...ty with devices that only support address learning by physical ports such as the Catalyst 1900 switch When the link partner to the switch is a physical learner we recommend that you configure the switch as a physical port learner by using the pagp learn method physical port interface configuration command and to set the load distribution method based on the source MAC address by using the port cha...

Page 257: ...therChannel Switch config if pagp learn method aggregation port You can verify your settings by entering the show running config privileged EXEC command or the show pagp channel group number internal privileged EXEC command Related Commands Command Description pagp port priority Selects a port over which all traffic through the EtherChannel is sent show pagp Displays PAgP channel group information...

Page 258: ... physical port keyword is provided in the command line interface CLI The pagp learn method and the pagp port priority interface configuration commands have no effect on the switch hardware but they are required for PAgP interoperability with devices that only support address learning by physical ports such as the Catalyst 1900 switch When the link partner to the switch is a physical learner we rec...

Page 259: ... Description pagp learn method Provides the ability to learn the source address of incoming packets show pagp Displays PAgP channel group information show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands ...

Page 260: ... mask Define a host MAC address and optional subnet mask If the source address for a packet matches the defined address non IP traffic from that address is denied host dst MAC addr dst MAC addr mask Define a destination MAC address and optional subnet mask If the destination address for a packet matches the defined address non IP traffic to that address is denied type mask Optional Use the Etherty...

Page 261: ...ess mask lsap lsap number mask Optional Use the LSAP number 0 to 65535 of a packet with 802 2 encapsulation to identify the protocol of the packet The mask is a mask of don t care bits applied to the LSAP number before testing for a match mop console Optional Select EtherType DEC MOP Remote Console mop dump Optional Select EtherType DEC MOP Dump msdos Optional Select EtherType DEC MSDOS mumps Opti...

Page 262: ...low NETBIOS traffic from any source to MAC address 00c0 00a0 03fa Traffic matching this list is allowed Switch config ext macl permit any host 00c0 00a0 03fa netbios This example shows how to remove the permit condition from the MAC named extended access list Switch config ext macl no permit any 00c0 00a0 03fa 0000 0000 0000 netbios This example permits all packets with Ethertype 0x4321 Switch con...

Page 263: ...C device which controls more than one physical port supports 256 policers 255 policers plus 1 no policer The maximum number of policers supported per port is 64 Policers are allocated on demand by the software and are constrained by the hardware and ASIC boundaries You cannot reserve policers per port There is no guarantee that a port will be assigned to any policer To return to policy map configu...

Page 264: ...lass class1 Switch config pmap c trust dscp Switch config pmap c police 1000000 20000 exceed action drop Switch config pmap c exit This example shows how to configure a policer which marks down the DSCP values with the values defined in policed DSCP map and sends the packet Switch config policy map policy2 Switch config pmap class class2 Switch config pmap c police 1000000 20000 exceed action poli...

Page 265: ...idelines The port ASIC device which controls more than one physical port supports 256 policers 255 policers plus 1 no policer The maximum number of policers supported per port is 64 Policers are allocated on demand by the software and are constrained by the hardware and ASIC boundaries You cannot reserve policers per port There is no guarantee that a port will be assigned to any policer You set ag...

Page 266: ...e agg_policer1 Switch config pmap c exit Switch config pmap class class2 Switch config pmap c set dscp 10 Switch config pmap c police aggregate agg_policer1 Switch config pmap c exit Switch config pmap class class3 Switch config pmap c trust dscp Switch config pmap c police aggregate agg_policer2 Switch config pmap c exit You can verify your settings by entering the show mls qos aggregate policer ...

Page 267: ...he classification match criteria for the specified class map For more information see the class section on page 2 47 description describes the policy map up to 200 characters exit exits policy map configuration mode and returns you to global configuration mode no removes a previously defined policy map rename renames the current policy map To return to global configuration mode use the exit comman...

Page 268: ...y map also cannot be added to the hierarchical policy map If you want these changes to occur the hierarchical policy map must first be removed from the SVI For more information about hierarchical policy maps see the Policing on SVIs section in the Configuring QoS chapter of the software configuration guide for this release Examples This example shows how to create a policy map called policy1 When ...

Page 269: ...ch config pmap class cm non int Switch config pmap c set dscp 7 Switch config pmap c service policy pm test int Switch config pmap class cm non int 2 Switch config pmap c set dscp 15 Switch config pmap c service policy pm test int Switch config pmap c end Switch config cmap exit Switch config interface vlan 10 Switch config if service policy input pm test pm 2 This example shows how to delete poli...

Page 270: ...ow to set the load distribution method to dst mac Switch config port channel load balance dst mac You can verify your setting by entering the show running config privileged EXEC command or the show etherchannel load balance privileged EXEC command dst ip Load distribution is based on the destination host IP address dst mac Load distribution is based on the destination host MAC address Packets to t...

Page 271: ...s Command Description interface port channel Accesses or creates the port channel show etherchannel Displays EtherChannel information for a channel show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands ...

Page 272: ...ty queue and it is serviced until empty before the other queues are serviced Follow these guidelines when the expedite queue is enabled or the egress queues are serviced based on their SRR weights If the egress expedite queue is enabled it overrides the SRR shaped and shared weights for queue 1 If the egress expedite queue is disabled and the SRR shaped and shared weights are configured the shaped...

Page 273: ...re 30 20 25 25 Switch config if no priority queue out You can verify your settings by entering the show mls qos interface interface id queueing or the show running config privileged EXEC command Related Commands Command Description show mls qos interface queueing Displays the queueing strategy SRR priority queueing the weights corresponding to the queues and the CoS to egress queue map srr queue b...

Page 274: ...tethernet0 1 Switch config if queue set 2 You can verify your settings by entering the show mls qos interface interface id buffers privileged EXEC command Related Commands qset id ID of the queue set Each port belongs to a queue set which defines all the characteristics of the four egress queues per port The range is 1 to 2 Release Modification 12 2 25 SEE This command was introduced Command Descr...

Page 275: ...y determines the default seconds value that is from 10 to 60 seconds Use the radius server retransmit retries global configuration command to specify the number of times the switch tries to reach the radius servers before considering the servers to be unavailable The switch dynamically determines the default tries value that is from 10 to 100 The seconds parameter is less than or equal to the numb...

Page 276: ...tries Specifies the number of times that the switch tries to reach the RADIUS servers before considering the servers to be unavailable For syntax information select Cisco IOS Security Command Reference Release 12 2 Server Security Protocols RADIUS Commands radius server timeout seconds Specifies the time in seconds during which the switch waits for a RADIUS server to respond before the IEEE 802 1x...

Page 277: ... Command Modes Global configuration Command History Usage Guidelines We recommend that you configure the UDP port for the RADIUS accounting server and the UDP port for the RADIUS authentication server to nondefault values ip address Specify the IP address of the RADIUS server acct port udp port Optional Specify the UDP port for the RADIUS accounting server The range is from 0 to 65536 auth port ud...

Page 278: ...ring Switch config radius server host 1 1 1 2 acct port 800 auth port 900 test username aaafail idle time 75 key abc123 You can verify your settings by entering the show running config privileged EXEC command Related Commands Command Description dot1x critical global configuration Configures the parameters for the inaccessible authentication bypass feature dot1x critical interface configuration En...

Page 279: ... vlan database privileged EXEC command If VLAN Trunking Protocol VTP is enabled the RSPAN feature is propagated by VTP for VLAN IDs that are lower than 1005 If the RSPAN VLAN ID is in the extended range you must manually configure intermediate switches those in the RSPAN VLAN between the source switch and the destination switch Before you configure the RSPAN remote span command use the vlan global...

Page 280: ...is example shows how to remove the RSPAN feature from a VLAN Switch config vlan 901 Switch config vlan no remote span You can verify your settings by entering the show vlan remote span user EXEC command Related Commands Command Description monitor session Enables Switched Port Analyzer SPAN and RSPAN monitoring on a port and configures a port as a source or destination port vlan global configurati...

Page 281: ...ion is disabled Command Modes Interface configuration Command History Usage Guidelines The RMON statistics collection command is based on hardware counters Examples This example shows how to collect RMON statistics for the owner root Switch config interface gigabitethernet0 1 Switch config if rmon collection stats 2 owner root You can verify your setting by entering the show rmon statistics privil...

Page 282: ...obal configuration Command History Usage Guidelines As a system administrator you can use the no service password recovery command to disable some of the functionality of the password recovery feature by allowing an end user to reset a password only by agreeing to return to the default configuration To use the password recovery procedure a user with physical access to the switch restarts the switc...

Page 283: ... enabled this message appears The system has been interrupted prior to initializing the flash file system The following commands will initialize the flash file system and finish loading the operating system software flash_init load_helper boot Note If you use the no service password recovery command to control end user access to passwords we recommend that you save a copy of the config file in a l...

Page 284: ...icy maps can be configured on physical ports or on SVIs When VLAN based quality of service QoS is disabled by using the no mls qos vlan based interface configuration command on a physical port you can configure a port based policy map on the port If VLAN based QoS is enabled by using the mls qos vlan based interface configuration command on a physical port the switch removes the previously configu...

Page 285: ...iguration commands one per line End with CNTL Z Switch config access list 101 permit ip any any Switch config class map cm 1 Switch config cmap match access 101 Switch config cmap exit Switch config exit Switch Switch Switch config t Enter configuration commands one per line End with CNTL Z Switch config class map cm interface 1 Switch config cmap match input g3 0 1 g3 0 2 Switch config cmap exit ...

Page 286: ...ing the show running config privileged EXEC command Related Commands Command Description policy map Creates or modifies a policy map that can be attached to multiple ports to specify a service policy show policy map Displays QoS policy maps show running config Displays the running configuration on the switch For syntax information select Cisco IOS Configuration Fundamentals Command Reference Relea...

Page 287: ...map class configuration command This setting appears as set ip precedence in the switch configuration The set command is mutually exclusive with the trust policy map class configuration command within the same policy map For the set dscp new dscp or the set ip precedence new precedence command you can enter a mnemonic name for a commonly used value For example you can enter the set dscp af11 comma...

Page 288: ...ing the show policy map privileged EXEC command Related Commands Command Description class Defines a traffic classification match criteria through the police set and trust policy map class configuration commands for the specified class map name police Defines a policer for classified traffic policy map Creates or modifies a policy map that can be attached to multiple ports to specify a service pol...

Page 289: ... privileged EXEC command Help text is provided for each prompt To access help text press the question mark key at a prompt To return to the privileged EXEC prompt without making changes and without running through the entire System Configuration Dialog press Ctrl C When you complete your changes the setup program shows you the configuration command script that was created during the setup session ...

Page 290: ...ork Management no yes Community string public Current interface summary Any interface listed with OK value NO does not have a valid configuration Interface IP Address OK Method Status Protocol Vlan1 172 20 135 202 YES NVRAM up up GigabitEthernet0 1 unassigned YES unset up up GigabitEthernet0 2 unassigned YES unset up down output truncated Port channel1 unassigned YES unset up down Enter interface ...

Page 291: ...ut saving this config 2 Save this configuration to nvram and exit Enter your selection 2 Related Commands Command Description show running config Displays the running configuration on the switch For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands show version Displays version information f...

Page 292: ...e if you enter exclude output the lines that contain output are not displayed but the lines that contain Output are displayed Examples This is an example of output from the show access lists command Switch show access lists Standard IP access list 1 10 permit 1 1 1 1 20 permit 2 2 2 2 30 permit any 40 permit 0 255 255 255 wildcard bits 12 0 0 0 name Optional Name of the ACL number Optional ACL num...

Page 293: ...me count 855 Drop All bytes count 94143 Drop And Log All frame count 0 Drop And Log All bytes count 0 Bridge Only All frame count 0 Bridge Only All bytes count 0 Bridge Only And Log All frame count 0 Bridge Only And Log All bytes count 0 Forwarding To CPU All frame count 0 Forwarding To CPU All bytes count 0 Forwarded All frame count 2121 Forwarded All bytes count 180762 Forwarded And Log All fram...

Page 294: ...unt 0 Bridge Only And Log All bytes count 0 Forwarding To CPU All frame count 0 Forwarding To CPU All bytes count 0 Forwarded All frame count 514434 Forwarded All bytes count 39048748 Forwarded And Log All frame count 0 Forwarded And Log All bytes count 0 Related Commands Command Description access list Configures a standard or extended numbered access list on the switch For syntax information sel...

Page 295: ... HTTP The show archive status command shows the progress of the download Expressions are case sensitive For example if you enter exclude output the lines that contain output are not displayed but the lines that contain Output are displayed Examples These are examples of output from the show archive status command Switch show archive status IDLE No upgrade in progress Switch show archive status LOA...

Page 296: ...tch 3030 Command Reference 78 17262 01 Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands show archive status Related Commands Command Description archive download sw Downloads a new image from a TFTP server to the switch ...

Page 297: ...ation and the user modifications To display information about the QoS configuration that might be affected by auto QoS use one of these commands show mls qos show mls qos maps cos dscp show mls qos interface interface id buffers queueing show mls qos maps cos dscp cos input q cos output q dscp cos dscp input q dscp output q show mls qos input queue show running config Examples This is an example o...

Page 298: ...map queue 2 threshold 2 49 50 51 52 53 54 55 56 mls qos srr queue input dscp map queue 2 threshold 2 57 58 59 60 61 62 63 mls qos srr queue input dscp map queue 2 threshold 3 24 25 26 27 28 29 30 31 mls qos srr queue input dscp map queue 2 threshold 3 40 41 42 43 44 45 46 47 mls qos srr queue output cos map queue 1 threshold 3 5 mls qos srr queue output cos map queue 2 threshold 3 3 6 7 mls qos sr...

Page 299: ...e interface GigabitEthernet0 5 switchport mode access switchport port security maximum 1999 speed 100 duplex full srr queue bandwidth share 10 10 60 20 srr queue bandwidth shape 10 0 0 0 mls qos trust device cisco phone mls qos trust cos auto qos voip cisco phone interface GigabitEthernet0 6 switchport trunk encapsulation dot1q switchport trunk native vlan 2 switchport mode access speed 10 srr que...

Page 300: ...re examples of output from the show auto qos interface interface id command when auto QoS is disabled on an interface Switch show auto qos interface gigabitethernet0 1 AutoQoS is disabled Related Commands Command Description auto qos voip Automatically configures QoS for VoIP within a QoS domain debug auto qos Enables debugging of the auto QoS feature ...

Page 301: ...put are displayed Examples This is an example of output from the show boot command Table 2 15 describes each field in the display Switch show boot BOOT path list flash cbs30x0 lanbase mz 122 25 SEE cbs30x0 lanbase mz 122 25 SEE bin Config file flash config text Private Config file flash private config Enable Break no Manual Boot yes HELPER path list NVRAM Config file buffer size 32768 begin Option...

Page 302: ... during booting is enabled or disabled If it is set to yes on or 1 you can interrupt the automatic boot process by pressing the Break key on the console after the flash file system is initialized Manual Boot Displays whether the switch automatically or manually boots If it is set to no or 0 the boot loader attempts to automatically boot the system If it is set to anything else you must manually bo...

Page 303: ...w class map command Switch show class map Class Map match all videowizard_10 10 10 10 id 2 Match access group name videowizard_10 10 10 10 Class Map match any class default id 0 Match any Class Map match all dscp5 id 3 Match ip dscp 5 Related Commands class map name Optional Display the contents of the specified class map begin Optional Display begins with the line that matches the expression excl...

Page 304: ...layed Examples This is a partial output example from the show controllers cpu interface command Switch show controllers cpu interface cpu queue frames retrieved dropped invalid hol block rpc 4523063 0 0 0 stp 1545035 0 0 0 ipc 1903047 0 0 0 routing protocol 96145 0 0 0 L2 protocol 79596 0 0 0 remote console 0 0 0 0 sw forwarding 5756 0 0 0 host 225646 0 0 0 broadcast 46472 0 0 0 cbt to spt 0 0 0 0...

Page 305: ...001E001E Fifo1 StartPtr 03A9BC00 ReadPtr 03A9BC60 WritePtrs 03A9BC60 Fifo_Flag 89800400 writeHeaderPtr 03A9BC60 Fifo2 StartPtr 038C8800 ReadPtr 038C88E0 WritePtrs 038C88E0 Fifo_Flag 88800200 writeHeaderPtr 038C88E0 Fifo3 StartPtr 03C30400 ReadPtr 03C30638 WritePtrs 03C30638 Fifo_Flag 89800400 writeHeaderPtr 03C30638 Fifo4 StartPtr 03AD5000 ReadPtr 03AD50A0 WritePtrs 03AD50A0 Fifo_Flag 89800400 wri...

Page 306: ... Cisco technical support representatives troubleshooting the switch Expressions are case sensitive For example if you enter exclude output the lines that contain output are not displayed but the lines that contain Output are displayed interface id The physical interface including type module and port number phy Optional Display the status of the internal registers on the switch physical layer devi...

Page 307: ...ol error frames 0 Excessive collisions 0 Late collisions 0 Invalid frames too large 0 VLAN discard frames 0 Valid frames too large 0 Excess defer frames 0 Invalid frames too small 0 64 byte frames 0 Valid frames too small 0 127 byte frames 0 255 byte frames 0 Too old frames 0 511 byte frames 0 Valid oversize frames 0 1023 byte frames 0 System FCS error frames 0 1518 byte frames 0 RxPortFifoFull dr...

Page 308: ... frame was sent VLAN discard frames The number of frames dropped on an interface because the CFI1 bit is set Excess defer frames The number of frames that are not sent after the time exceeds the maximum packet time 64 byte frames The total number of frames sent on an interface that are 64 bytes 127 byte frames The total number of frames sent on an interface that are from 65 to 127 bytes 255 byte f...

Page 309: ...total number of frames that are from 128 to 255 bytes 256 to 511 byte frames The total number of frames that are from 256 to 511 bytes 512 to 1023 byte frames The total number of frames that are from 512 to 1023 bytes 1024 to 1518 byte frames The total number of frames that are from 1024 to 1518 bytes Overrun frames The total number of overrun frames received on an interface Pause frames The numbe...

Page 310: ...0000 0000 0000 Reserved Register 1 0000 0000 0000 0000 Global Status 0000 0000 0000 0000 LED Control 0100 0001 0000 0000 Manual LED Override 0000 1000 0010 1010 Extended PHY Specific Control 0000 0000 0001 1010 Disable Receiver 1 0000 0000 0000 1011 Disable Receiver 2 1000 0000 0000 0100 Extended PHY Specific Status 1000 0100 1000 0000 Auto MDIX On AdminState 1 Flags 0x00052248 This is an example ...

Page 311: ...t asic statistics command Switch show controllers ethernet controller port asic statistics Switch 1 PortASIC 0 Statistics 0 RxQ 0 wt 0 enqueue frames 0 RxQ 0 wt 0 drop frames 4118966 RxQ 0 wt 1 enqueue frames 0 RxQ 0 wt 1 drop frames 0 RxQ 0 wt 2 enqueue frames 0 RxQ 0 wt 2 drop frames 0 RxQ 1 wt 0 enqueue frames 0 RxQ 1 wt 0 drop frames 296 RxQ 1 wt 1 enqueue frames 0 RxQ 1 wt 1 drop frames 28360...

Page 312: ...e 7 Drop Frames 0 Sup Queue 15 Drop Frames Switch 1 PortASIC 1 Statistics 0 RxQ 0 wt 0 enqueue frames 0 RxQ 0 wt 0 drop frames 52 RxQ 0 wt 1 enqueue frames 0 RxQ 0 wt 1 drop frames 0 RxQ 0 wt 2 enqueue frames 0 RxQ 0 wt 2 drop frames output truncated Related Commands Command Description show controllers cpu interface Displays the state of the CPU network ASIC and send and receive statistics for pa...

Page 313: ...r exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show controllers tcam command Switch show controllers tcam TCAM 0 Registers REV 00B30103 SIZE 00080040 ID 00000000 CCR 00000000_F0000020 RPID0 00000000_00000000 RPID1 00000000_00000000 RPID2 00000000_00000000 RPID3 00000000_00000000 asic Optional Disp...

Page 314: ...FFFFFFF GMR33 FF_FFFFFFFF_FFFFFFFF TCAM related PortASIC 1 registers LookupType 89A1C67D_24E35F00 LastCamIndex 0000FFE0 LocalNoMatch 000069E0 ForwardingRamBaseAddress 00022A00 0002FE00 00040600 0002FE00 0000D400 00000000 003FBA00 00009000 00009000 00040600 00000000 00012800 00012900 Related Commands Command Description show controllers cpu interface Displays the state of the CPU network ASIC and s...

Page 315: ...Switch show controllers utilization Port Receive Utilization Transmit Utilization Gi0 1 0 0 Gi0 2 0 0 output truncated Switch Receive Bandwidth Percentage Utilization 0 Switch Transmit Bandwidth Percentage Utilization 0 Switch Fabric Percentage Utilization 0 This is an example of output from the show controllers utilization command on a specific port Switch show controllers gigabitethernet0 1 util...

Page 316: ...usage of the switch which is the sum of the received traffic on all the ports divided by the switch receive capacity Transmit Bandwidth Percentage Utilization Displays the transmitted bandwidth usage of the switch which is the sum of the transmitted traffic on all the ports divided it by the switch transmit capacity Fabric Percentage Utilization Displays the average of the transmitted and received...

Page 317: ...nsitive For example if you enter exclude output the lines that contain output are not displayed but the lines that contain Output appear Examples This is an example of output from the show dot1x user EXEC command Switch show dot1x Sysauthcontrol Enabled Dot1x Protocol Version 2 Critical Recovery Delay 100 Critical EAPOL Disabled This is an example of output from the show dot1x all user EXEC comman...

Page 318: ...IZED Gi0 2 AUTH 00a0 c9b8 0072 AUTHORIZED Gi0 3 AUTH none UNAUTHORIZED This is an example of output from the show dot1x interface interface id user EXEC command Switch show dot1x interface gigabitethernet0 2 Dot1x Info for GigabitEthernet0 2 PAE AUTHENTICATOR PortControl AUTO ControlDirection In HostMode SINGLE_HOST ReAuthentication Disabled QuietPeriod 60 ServerTimeout 30 SuppTimeout 30 ReAuthPer...

Page 319: ... Empty Port Status AUTHORIZED Authorized By Guest Vlan Operational HostMode MULTI_HOST Vlan Policy 182 This is an example of output from the show dot1x interface interface id statistics command Table 2 19 describes the fields in the display Switch show dot1x interface gigabitethernet0 2 statistics Dot1x Authenticator Port Statistics for GigabitEthernet0 2 RxStart 0 RxLogoff 0 RxResp 1 RxRespID 1 R...

Page 320: ...han request identity frames that have been sent TxReqId Number of Extensible Authentication Protocol EAP request identity frames that have been sent TxTotal Number of Extensible Authentication Protocol over LAN EAPOL frames of any type that have been sent RxVersion Number of received packets in the IEEE 802 1x Version 1 format LastRxSrcMac Source MAC address carried in the most recently received E...

Page 321: ...ut from the show dtp interface command Switch show dtp interface gigabitethernet0 1 DTP information for GigabitEthernet0 1 TOS TAS TNS ACCESS AUTO ACCESS TOT TAT TNT NATIVE NEGOTIATE NATIVE Neighbor address 1 000943A7D081 Neighbor address 2 000000000000 Hello timer expiration sec state 1 RUNNING Access timer expiration sec state never STOPPED Negotiation timer expiration sec state never STOPPED Mu...

Page 322: ...d 0 packets dropped 0 nonegotiate 0 bad version 0 domain mismatches 0 bad TLVs 0 other 6320 packets output 6320 good 3160 native 3160 software encap isl 0 isl hardware native 0 output errors 0 trunk timeouts 1 link ups last link up on Mon Mar 01 1993 01 02 29 0 link downs Related Commands Command Description show interfaces trunk Displays interface trunking information ...

Page 323: ...rations When you use the show eap sessions privileged EXEC command with these keywords the command output shows this information None All active EAP sessions credentials name keyword The specified credentials profile interface interface id keyword The parameters for the specified interface method name keyword The specified EAP method transport name keyword The specified lower layer registrations D...

Page 324: ...smission count 0 max 2 Timer Authenticator ReqId Retransmit timeout 30s remaining 2s EAP handle 0x5200000A Credentials profile None Lower layer context ID 0x93000004 Eap profile name None Method context ID 0x00000000 Peer Identity None Start timeout s 1 Retransmit timeout s 30 30 Current ID 2 Available local methods None Role Authenticator Decision Fail Lower layer Dot1x AuthenticaInterface Gi0 2 ...

Page 325: ...ade Switch 3030 Cisco IOS Commands show eap Method context ID 0x00000000 Peer Identity None Start timeout s 1 Retransmit timeout s 30 30 Current ID 2 Available local methods None Related Commands Command Description clear eap Clears EAP session information for the switch or for the specified port ...

Page 326: ...t contain Output are displayed Note The show env all command does not display fan or temperature status for the switch Examples This is an example of output from the show env all command Switch show env all I O Bay 2 Runtime Status OK POST Result OK This is an example of output from the show env temperature command Switch sh env temperature TEMPERATURE is OK all Display both fan and temperature en...

Page 327: ...les This is an example of output from the show errdisable detect command Switch show errdisable detect ErrDisable Reason Detection status udld Enabled bpduguard Enabled security violatio Enabled channel misconfig Enabled psecure violation Enabled vmps Enabled loopback Enabled pagp flap Enabled dtp flap Enabled link flap Enabled gbic invalid Enabled dhcp rate limit Enabled unicast flood Enabled sto...

Page 328: ...mands Command Description errdisable detect cause Enables error disabled detection for a specific cause or all causes show errdisable flap values Displays error condition recognition information show errdisable recovery Displays error disabled recovery timer information show interfaces status Displays interface status or a list of interfaces in error disabled state ...

Page 329: ...ode access trunk or Port Aggregation Protocol PAgP flap changes occur during a 30 second interval or if 5 link state link up down changes occur during a 10 second interval ErrDisable Reason Flaps Time sec pagp flap 3 30 dtp flap 3 30 link flap 5 10 Expressions are case sensitive For example if you enter exclude output the lines that contain output are not displayed but the lines that contain Outpu...

Page 330: ...lated Commands Command Description errdisable detect cause Enables error disabled detection for a specific cause or all causes show errdisable detect Displays error disabled detection status show errdisable recovery Displays error disabled recovery timer information show interfaces status Displays interface status or a list of interfaces in error disabled state ...

Page 331: ...ot displayed but the lines that contain Output are displayed Examples This is an example of output from the show errdisable recovery command Switch show errdisable recovery ErrDisable Reason Timer Status udld Disabled bpduguard Disabled security violatio Disabled channel misconfig Disabled vmps Disabled pagp flap Disabled dtp flap Disabled link flap Enabled psecure violation Disabled gbic invalid ...

Page 332: ...ble reason Time left sec Gi0 2 link flap 279 Note Though visible in the output the unicast flood field is not valid Related Commands Command Description errdisable recovery Configures the recover mechanism variables show errdisable detect Displays error disabled detection status show errdisable flap values Displays error condition recognition information show interfaces status Displays interface s...

Page 333: ...hat contain output are not displayed but the lines that contain Output are displayed channel group number Optional Number of the channel group The range is 1 to 48 detail Display detailed EtherChannel information load balance Display the load balance or frame distribution scheme among ports in the port channel port Display EtherChannel port information port channel Display port channel information...

Page 334: ...0 Load 0x00 Protocol LACP Flags S Device is sending Slow LACPDUs F Device is sending fast LACPDU A Device is in active mode P Device is in passive mode Local information LACP port Admin Oper Port Port Port Flags State Priority Key Key Number State Gi0 1 SA bndl 32768 0x0 0x1 0x0 0x3D Age of the port in the current state 01d 20h 06m 04s Port channels in the group Port channel Po1 Primary Aggregator...

Page 335: ...channel command Switch show etherchannel 1 port channel Port channels in the group Port channel Po1 Primary Aggregator Age of the Port channel 01d 20h 24m 50s Logical slot port 10 1 Number of ports 2 HotStandBy port null Port state Port channel Ag Inuse Protocol LACP Ports in the Port channel Index Load Port EC state No of bits 0 00 Gi0 1 Active 0 0 00 Gi0 2 Active 0 Time since last port bundled 0...

Page 336: ...sitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show flowcontrol command Switch show flowcontrol Port Send FlowControl Receive FlowControl RxPause TxPause admin oper admin oper Gi0 1 Unsupp Unsupp off off 0 0 Gi0 2 desired off off off 0 0 Gi0 3 desired off off off 0 0 ...

Page 337: ...trol This is an example of output from the show flowcontrol interface interface id command Switch show flowcontrol gigabitethernet0 2 Port Send FlowControl Receive FlowControl RxPause TxPause admin oper admin oper Gi0 2 desired off off off 0 0 Related Commands Command Description flowcontrol Sets the receive flow control state for an interface ...

Page 338: ...capabilities switchport configuration or transceiver characteristics depending on preceding keyword of all interfaces on the switch The only valid module number is 1 This option is not available if you entered a specific interface ID counters Optional See the show interfaces counters command description Optional Display the administrative status and description set for an interface etherchannel Op...

Page 339: ...output are not displayed but the lines that contain Output are displayed Examples This is an example of output from the show interfaces command for an interface Switch show interfaces gigabitethernet0 2 GigabitEthernet0 2 is down line protocol is down Hardware is Gigabit Ethernet address is 0009 43a7 d085 bia 0009 43a7 d085 MTU 1500 bytes BW 10000 Kbit DLY 1000 usec reliability 255 255 txload 1 25...

Page 340: ...0 deferred 0 lost carrier 0 no carrier 0 PAUSE output 0 output buffer failures 0 output buffers swapped out This is an example of output from the show interfaces accounting command Switch show interfaces accounting Vlan1 Protocol Pkts In Chars In Pkts Out Chars Out IP 1094395 131900022 559555 84077157 Spanning Tree 283896 17033760 42 2520 ARP 63738 3825680 231 13860 Interface Vlan2 is disabled Vla...

Page 341: ...n interface configuration command Switch show interfaces gigabitethernet0 2 description Interface Status Protocol Description Gi0 2 up down Connects to Marketing This is an example of output from the show interfaces etherchannel command when port channels are configured on the switch Switch show interfaces etherchannel Port channel1 Age of the Port channel 03d 20h 17m 29s Logical slot port 10 1 Nu...

Page 342: ...isabled command It displays the status of interfaces in the error disabled state Switch show interfaces status err disabled Port Name Status Reason Gi0 2 err disabled dtp flap This is an example of output from the show interfaces switchport command for a port Table 2 20 describes the fields in the display Note Private VLANs are not supported in this release so those fields are not applicable Switc...

Page 343: ...erational status of the port In this display the port is in switchport mode Administrative Mode Operational Mode Displays the administrative and operational modes Administrative Trunking Encapsulation Operational Trunking Encapsulation Negotiation of Trunking Displays the administrative and operational encapsulation method and whether trunking negotiation is enabled Access Mode VLAN Displays the V...

Page 344: ...f output from the show interfaces interface id transceiver detail command Switch show interfaces gigabitethernet0 3 transceiver detail ITU Channel not available Wavelength not available Transceiver is externally calibrated mA milliamperes dBm decibels milliwatts N A not applicable high alarm high warning low warning low alarm A2D readouts if they differ are reported in parentheses The threshold va...

Page 345: ...ss or a dynamic access port switchport block Blocks unknown unicast or multicast traffic on an interface switchport backup interface Configures Flex Links a pair of Layer 2 interfaces that provide mutual backup switchport mode Configures the VLAN membership mode of a port switchport protected Isolates unicast multicast and broadcast traffic at Layer 2 from other protected ports on the same switch ...

Page 346: ...lines that contain Output are displayed Examples This is an example of partial output from the show interfaces counters command It displays all counters for the switch Switch show interfaces counters Port InOctets InUcastPkts InMcastPkts InBcastPkts Gi0 1 0 0 0 0 Gi0 2 0 0 0 0 output truncated interface id Optional ID of the physical interface including type module and port number errors Optional ...

Page 347: ... Other IP CDP GigabitEthernet0 7 Other IP CDP GigabitEthernet0 8 Other IP CDP GigabitEthernet0 9 Other IP CDP GigabitEthernet0 10 Other IP CDP GigabitEthernet0 11 Other IP Spanning Tree CDP GigabitEthernet0 12 Other IP GigabitEthernet0 13 Other IP GigabitEthernet0 14 Other IP GigabitEthernet0 15 Other IP GigabitEthernet0 16 Other IP Allocation failures 0 This is an example of output from the show ...

Page 348: ...e show inventory command Expressions are case sensitive For example if you enter exclude output the lines that contain output are not displayed but the lines that contain Output are displayed Examples This is example output from the show inventory command switch show inventory NAME 1 DESCR WS CBS3030 DEL PID WS CBS3030 DEL F VID V01 SN FSJC0523550 NAME GigabitEthernet0 13 DESCR 1000BaseSX SFP PID ...

Page 349: ...witch show ip dhcp snooping Switch DHCP snooping is enabled DHCP snooping is configured on following VLANs 40 42 Insertion of option 82 is enabled circuit id format vlan mod port remote id format string Option 82 on untrusted port is allowed Verification of hwaddr field is enabled Interface Trusted Rate limit pps GigabitEthernet0 1 yes unlimited GigabitEthernet0 2 yes unlimited Related Commands be...

Page 350: ...example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This example shows how to display the DHCP snooping binding entries for a switch Switch show ip dhcp snooping binding MacAddress IpAddress Lease sec Type VLAN Interface 01 02 03 04 05 06 10 1 2 150 9837 dhcp snooping 20 GigabitEthernet0 1 00 D0 B7 1B 35 DE 10 1 2 151 23...

Page 351: ...gabitEthernet0 2 Total number of bindings 1 This example shows how to display the DHCP snooping binding entries on VLAN 20 Switch show ip dhcp snooping binding vlan 20 MacAddress IpAddress Lease sec Type VLAN Interface 01 02 03 04 05 06 10 1 2 150 9747 dhcp snooping 20 GigabitEthernet0 1 00 00 00 00 00 02 10 1 2 151 65 dhcp snooping 20 GigabitEthernet0 2 Total number of bindings 2 Table 2 21 descr...

Page 352: ... with and without specifying a profile number If no profile number is entered the display includes all profiles configured on the switch Switch show ip igmp profile 40 IGMP Profile 40 permit range 233 1 1 1 233 255 255 255 Switch show ip igmp profile IGMP Profile 3 range 230 9 9 0 230 9 9 0 IGMP Profile 4 permit range 229 9 9 0 229 255 255 255 Related Commands profile number Optional The IGMP prof...

Page 353: ...ut appear Examples This is an example of output from the show ip igmp snooping vlan 1 command It shows snooping characteristics for a specific VLAN Switch show ip igmp snooping vlan 1 Global IGMP Snooping configuration IGMP snooping Enabled IGMPv3 snooping minimal Enabled Report suppression Enabled TCN solicit query Disabled TCN flood query count 2 Last Member Query Interval 1000 Vlan 1 groups Opt...

Page 354: ...nabled IGMPv2 immediate leave Disabled Explicit host tracking Enabled Multicast router learning mode pim dvmrp CGMP interoperability mode IGMP_ONLY Related Commands Command Description ip igmp snooping Enables IGMP snooping on the switch or on a VLAN ip igmp snooping last member query interval Enables the IGMP snooping configurable leave timer ip igmp snooping querier Enables the IGMP querier func...

Page 355: ...Cisco IOS Commands show ip igmp snooping show ip igmp snooping mrouter Displays IGMP snooping multicast router ports for the switch or for the specified multicast VLAN show ip igmp snooping querier Displays the configuration and operation information for the IGMP querier configured on a switch Command Description ...

Page 356: ...n or the multicast table VLAN IDs 1002 to 1005 are reserved for Token Ring and FDDI VLANs and cannot be used in IGMP snooping Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear count Optional Display the total number of entries for the specified command options instead of the actual entries dyn...

Page 357: ...It shows only the entries learned by IGMP snooping Switch show ip igmp snooping groups vlan 1 dynamic Vlan Group Type Version Port List 104 224 1 4 2 igmp v2 Gi0 1 Gi0 2 104 224 1 4 3 igmp v2 Gi0 1 Gi0 2 This is an example of output from the show ip igmp snooping groups vlan vlan id ip address command It shows the entries for the group with the specified IP address Switch show ip igmp snooping gro...

Page 358: ...ed in IGMP snooping When multicast VLAN registration MVR is enabled the show ip igmp snooping mrouter command displays MVR multicast router information and IGMP snooping information Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show ip igmp sn...

Page 359: ...ing Enables IGMP snooping on the switch or on a VLAN ip igmp snooping vlan mrouter Adds a multicast router port ip igmp snooping vlan static Statically adds a Layer 2 port as a member of a multicast group show ip igmp snooping Displays the IGMP snooping configuration of the switch or the VLAN show ip igmp snooping groups Displays IGMP snooping multicast information for the switch or for the specif...

Page 360: ...which the querier is learned in the Port field The show ip igmp snooping querier detail user EXEC command is similar to the show ip igmp snooping querier command However the show ip igmp snooping querier command displays only the device IP address most recently detected by the switch querier The show ip igmp snooping querier detail command displays the device IP address most recently detected by t...

Page 361: ...nabled admin version 2 source IP address 0 0 0 0 query interval sec 60 max response time sec 10 querier timeout sec 120 tcn query count 2 tcn query interval sec 10 Vlan 1 IGMP switch querier status elected querier is 1 1 1 1 on port Fa0 1 admin state Enabled admin version 2 source IP address 10 1 1 65 query interval sec 60 max response time sec 10 querier timeout sec 120 tcn query count 2 tcn quer...

Page 362: ...nnel group number option to specify a channel group for all keywords except sys id Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear channel group number Optional Number of the channel group The range is 1 to 48 counters Display traffic information internal Display internal information neighbo...

Page 363: ...nternal Flags S Device is requesting Slow LACPDUs F Device is requesting Fast LACPDUs A Device is in Active mode P Device is in Passive mode Channel group 1 LACP port Admin Oper Port Port Port Flags State Priority Key Key Number State Gi0 1 SA bndl 32768 0x3 0x3 0x4 0x3D Gi0 2 SA bndl 32768 0x3 0x3 0x5 0x3D Table 2 22 show lacp counters Field Descriptions Field Description LACPDUs Sent and Recv Th...

Page 364: ... priority to put ports s in standby mode when there is a hardware limitation that prevents all compatible ports from aggregating Admin Key Administrative key assigned to this port LACP automatically generates an administrative key value as a hexadecimal number The administrative key defines the ability of a port to aggregate with other ports A port s ability to aggregate with other ports is determ...

Page 365: ...rt State 32768 0x3 0x3C Partner s information Partner Partner Partner Port System ID Port Number Age Flags Gi0 2 32768 0007 eb49 5e80 0xD 15s SP LACP Partner Partner Partner Port Priority Oper Key Port State 32768 0x3 0x3C This is an example of output from the show lacp sys id command Switch show lacp sys id 32765 0002 4b29 3a00 The system identification is made up of the system priority and the s...

Page 366: ...the group number to display information specific to the group Enter the detail keyword to display detailed information about the group Examples This is an example of output from the show link state group 1 command Switch show link state group 1 Link State Group 1 Status Enabled Up This is an example of output from the show link state group detail command Switch show link state group detail Link St...

Page 367: ...s Command Description link state group Configures an interface as a member of a link state group link state track Enables a link state group show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference for Release 12 2 Cisco IOS File Management Commands Configuration File Commands ...

Page 368: ...ss group Interface GigabitEthernet0 1 Inbound access list is not set Interface GigabitEthernet0 2 Inbound access list is macl_e1 Interface GigabitEthernet0 3 Inbound access list is not set Interface GigabitEthernet0 4 Inbound access list is not set output truncated This is an example of output from the show mac access group interface gigabitethernet0 1 command Switch show mac access group interfac...

Page 369: ...de Switch 3030 Command Reference 78 17262 01 Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands show mac access group Related Commands Command Description mac access group Applies a MAC access group to an interface ...

Page 370: ...s an example of output from the show mac address table command Switch show mac address table Mac Address Table Vlan Mac Address Type Ports All 0000 0000 0001 STATIC CPU All 0000 0000 0002 STATIC CPU All 0000 0000 0003 STATIC CPU All 0000 0000 0009 STATIC CPU All 0000 0000 0012 STATIC CPU All 0180 c200 000b STATIC CPU All 0180 c200 000c STATIC CPU All 0180 c200 000d STATIC CPU All 0180 c200 000e ST...

Page 371: ...ng time in all VLANs or the specified VLAN show mac address table count Displays the number of addresses present in all VLANs or the specified VLAN show mac address table dynamic Displays dynamic MAC address table entries only show mac address table interface Displays the MAC address table information for the specified interface show mac address table notification Displays the MAC address notifica...

Page 372: ...his is an example of output from the show mac address table address command Switch show mac address table address 0002 4b28 c482 Mac Address Table Vlan Mac Address Type Ports All 0002 4b28 c482 STATIC CPU Total Mac Addresses for this criterion 1 mac address Specify the 48 bit MAC address the valid format is H H H interface interface id Optional Display information for a specific interface Valid in...

Page 373: ...r of addresses present in all VLANs or the specified VLAN show mac address table dynamic Displays dynamic MAC address table entries only show mac address table interface Displays the MAC address table information for the specified interface show mac address table notification Displays the MAC address notification settings for all interfaces or the specified interface show mac address table static ...

Page 374: ...ive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show mac address table aging time command Switch show mac address table aging time Vlan Aging Time 1 300 This is an example of output from the show mac address table aging time vlan 10 command Switch show mac address table a...

Page 375: ...or the specified MAC address show mac address table count Displays the number of addresses present in all VLANs or the specified VLAN show mac address table dynamic Displays dynamic MAC address table entries only show mac address table interface Displays the MAC address table information for the specified interface show mac address table notification Displays the MAC address notification settings ...

Page 376: ...e For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show mac address table count command Switch show mac address table count Mac Entries for Vlan 1 Dynamic Address Count 2 Static Address Count 0 Total Mac Addresses 2 vlan vlan id Optional Display the number of addresses for a s...

Page 377: ...lays the aging time in all VLANs or the specified VLAN show mac address table dynamic Displays dynamic MAC address table entries only show mac address table interface Displays the MAC address table information for the specified interface show mac address table notification Displays the MAC address notification settings for all interfaces or the specified interface show mac address table static Dis...

Page 378: ...m the show mac address table dynamic command Switch show mac address table dynamic Mac Address Table Vlan Mac Address Type Ports 1 0030 b635 7862 DYNAMIC Gi0 2 1 00b0 6496 2741 DYNAMIC Gi0 2 Total Mac Addresses for this criterion 2 address mac address Optional Specify a 48 bit MAC address the valid format is H H H available in privileged EXEC mode only interface interface id Optional Specify an in...

Page 379: ...ar VLAN show mac address table address Displays MAC address table information for the specified MAC address show mac address table aging time Displays the aging time in all VLANs or the specified VLAN show mac address table count Displays the number of addresses present in all VLANs or the specified VLAN show mac address table interface Displays the MAC address table information for the specified ...

Page 380: ...es that contain Output appear Examples This is an example of output from the show mac address table interface command Switch show mac address table interface gigabitethernet0 2 Mac Address Table Vlan Mac Address Type Ports 1 0030 b635 7862 DYNAMIC Gi0 2 1 00b0 6496 2741 DYNAMIC Gi0 2 Total Mac Addresses for this criterion 2 interface id Specify an interface type valid interfaces include physical p...

Page 381: ...plays the aging time in all VLANs or the specified VLAN show mac address table count Displays the number of addresses present in all VLANs or the specified VLAN show mac address table dynamic Displays dynamic MAC address table entries only show mac address table notification Displays the MAC address notification settings for all interfaces or the specified interface show mac address table static D...

Page 382: ...e move update Switch ID 010b 4630 1780 Dst mac address 0180 c200 0010 Vlans Macs supported 1023 8320 Default Current settings Rcv Off On Xmt Off On Max packets per min Rcv 40 Xmt 60 Rcv packet count 10 Rcv conforming packet count 5 Rcv invalid packet count 0 Rcv packet count this min 0 Rcv threshold exceed count 0 Rcv last sequence this min 0 Rcv last interface Po2 Rcv last src mac address 0003 fd...

Page 383: ...Blade Switch 3030 Cisco IOS Commands show mac address table move update Related Commands Command Description clear mac address table move update Clears the MAC address table move update counters mac address table move update receive transmit Configures MAC address table move update on the switch ...

Page 384: ...output do not appear but the lines that contain Output appear Examples This is an example of output from the show mac address table notification command Switch show mac address table notification MAC Notification Feature is Enabled on the switch Interval between Notification Traps 60 secs Number of MAC Addresses Added 4 Number of MAC Addresses Removed 4 Number of Notifications sent to NMS 3 Maximu...

Page 385: ...0 Port 1 Operation Deleted Vlan 2 MAC Addr 0000 0000 0002 Module 0 Port 1 Operation Deleted Vlan 2 MAC Addr 0000 0000 0003 Module 0 Port 1 Related Commands Command Description clear mac address table notification Clears the MAC address notification global counters show mac address table address Displays MAC address table information for the specified MAC address show mac address table aging time D...

Page 386: ...ss Table Vlan Mac Address Type Ports All 0100 0ccc cccc STATIC CPU All 0180 c200 0000 STATIC CPU All 0100 0ccc cccd STATIC CPU All 0180 c200 0001 STATIC CPU All 0180 c200 0004 STATIC CPU All 0180 c200 0005 STATIC CPU 4 0001 0002 0004 STATIC Drop 6 0001 0002 0007 STATIC Drop Total Mac Addresses for this criterion 8 address mac address Optional Specify a 48 bit MAC address the valid format is H H H ...

Page 387: ...ays MAC address table information for the specified MAC address show mac address table aging time Displays the aging time in all VLANs or the specified VLAN show mac address table count Displays the number of addresses present in all VLANs or the specified VLAN show mac address table dynamic Displays dynamic MAC address table entries only show mac address table interface Displays the MAC address t...

Page 388: ...tput from the show mac address table vlan 1 command Switch show mac address table vlan 1 Mac Address Table Vlan Mac Address Type Ports 1 0100 0ccc cccc STATIC CPU 1 0180 c200 0000 STATIC CPU 1 0100 0ccc cccd STATIC CPU 1 0180 c200 0001 STATIC CPU 1 0180 c200 0002 STATIC CPU 1 0180 c200 0003 STATIC CPU 1 0180 c200 0005 STATIC CPU 1 0180 c200 0006 STATIC CPU 1 0180 c200 0007 STATIC CPU Total Mac Add...

Page 389: ...he aging time in all VLANs or the specified VLAN show mac address table count Displays the number of addresses present in all VLANs or the specified VLAN show mac address table dynamic Displays dynamic MAC address table entries only show mac address table interface Displays the MAC address table information for the specified interface show mac address table notification Displays the MAC address no...

Page 390: ...Examples This is an example of output from the show mls qos command Switch show mls qos Qos is enabled This is an example of output from the show mls qos command when QoS is enabled and Differentiated Services Code Point DSCP transparency is disabled Switch show mls qos QoS is enabled QoS ip packet dscp rewrite is disabled Related Commands begin Optional Display begins with the line that matches t...

Page 391: ...lude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show mls qos aggregate policer command Switch show mls qos aggregate policer policer1 aggregate policer policer1 1000000 2000000 exceed action drop Not used by any policy map Related Commands aggregate policer name Optional Display the policer configuratio...

Page 392: ...For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show mls qos input queue command Switch show mls qos input queue Queue 1 2 buffers 90 10 bandwidth 4 4 priority 0 10 threshold1 100 100 threshold2 100 100 begin Optional Display begins with the line that matches the expression e...

Page 393: ... the ingress queues mls qos srr queue input cos map Maps assigned class of service CoS values to an ingress queue and assigns CoS values to a queue and to a threshold ID mls qos srr queue input dscp map Maps assigned Differentiated Services Code Point DSCP values to an ingress queue and assigns DSCP values to a queue and to a threshold ID mls qos srr queue input priority queue Configures the ingre...

Page 394: ...mls qos interface gigabitethernet0 1 GigabitEthernet0 1 trust state not trusted trust mode not trusted trust enabled flag ena COS override dis default COS 0 interface id Optional Display QoS information for the specified port Valid interfaces include physical ports buffers Optional Display the buffer allocation among the queues queueing Optional Display the queueing strategy shared or shaped and t...

Page 395: ...et0 2 The port is mapped to qset 1 The allocations between the queues are 25 25 25 25 This is an example of output from the show mls qos interface interface id queueing command The egress expedite queue overrides the configured shaped round robin SRR weights Switch show mls qos interface gigabitethernet0 2 queueing GigabitEthernet0 2 Egress Priority Queue enabled Shaped queue weights absolute 25 0...

Page 396: ... CoS value outgoing Number of packets sent for each CoS value Policer Inprofile Number of in profile packets for each policer Outofprofile Number of out of profile packets for each policer Command Description mls qos queue set output buffers Allocates buffers to a queue set mls qos queue set output threshold Configures the weighted tail drop WTD thresholds guarantees the availability of buffers an...

Page 397: ...e output dscp map Maps DSCP values to an egress queue or maps DSCP values to a queue and to a threshold ID policy map Creates or modifies a policy map priority queue Enables the egress expedite queue on a port queue set Maps a port to a queue set srr queue bandwidth limit Limits the maximum output on a port srr queue bandwidth shape Assigns the shaped weights and enables bandwidth shaping on the f...

Page 398: ...d1 column specifies the most significant digit in the DSCP The d2 row specifies the least significant digit in the DSCP The intersection of the d1 and d2 values provides the policed DSCP the CoS or the mutated DSCP value For example in the DSCP to CoS map a DSCP value of 43 corresponds to a CoS value of 5 cos dscp Optional Display class of service CoS to DSCP map cos input q Optional Display the C...

Page 399: ... maps command Switch show mls qos maps Policed dscp map d1 d2 0 1 2 3 4 5 6 7 8 9 0 00 01 02 03 04 05 06 07 08 09 1 10 11 12 13 14 15 16 17 18 19 2 20 21 22 23 24 25 26 27 28 29 3 30 31 32 33 34 35 36 37 38 39 4 40 41 42 43 44 45 46 47 48 49 5 50 51 52 53 54 55 56 57 58 59 6 60 61 62 63 Dscp cos map d1 d2 0 1 2 3 4 5 6 7 8 9 0 00 00 00 00 00 00 00 00 01 01 1 01 01 01 01 01 01 02 02 02 02 2 02 02 0...

Page 400: ...1 1 1 1 1 1 1 2 1 1 1 1 1 Dscp dscp mutation map Default DSCP Mutation Map d1 d2 0 1 2 3 4 5 6 7 8 9 0 00 01 02 03 04 05 06 07 08 09 1 10 11 12 13 14 15 16 17 18 19 2 20 21 22 23 24 25 26 27 28 29 3 30 31 32 33 34 35 36 37 38 39 4 40 41 42 43 44 45 46 47 48 49 5 50 51 52 53 54 55 56 57 58 59 6 60 61 62 63 Related Commands Command Description mls qos map Defines the CoS to DSCP map DSCP to CoS map ...

Page 401: ...mls qos queue set command Switch show mls qos queue set Queueset 1 Queue 1 2 3 4 buffers 25 25 25 25 threshold1 100 200 100 100 threshold2 100 200 100 100 reserved 50 50 50 50 maximum 400 400 400 400 Queueset 2 Queue 1 2 3 4 buffers 25 25 25 25 threshold1 100 200 100 100 threshold2 100 200 100 100 reserved 50 50 50 50 maximum 400 400 400 400 qset id Optional ID of the queue set Each port belongs t...

Page 402: ... Commands show mls qos queue set Related Commands Command Description mls qos queue set output buffers Allocates buffers to the queue set mls qos queue set output threshold Configures the weighted tail drop WTD thresholds guarantees the availability of buffers and configures the maximum memory allocation of the queue set ...

Page 403: ...clude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show mls qos vlan command Switch show mls qos vlan 10 Vlan10 Attached policy map for Ingress pm test pm 2 Related Commands vlan id Specify the VLAN ID of the SVI to display the policy maps The range is 1 to 4094 begin Optional Display begins with the line...

Page 404: ...itor session all command session Optional Display information about specified SPAN sessions session_number Specify the number of the SPAN or RSPAN session The range is 1 to 66 all Display all SPAN sessions local Display only local SPAN sessions range list Display a range of SPAN sessions where list is the range of valid sessions either a single session or a range of sessions described by two numbe...

Page 405: ... for the show monitor user EXEC command for local SPAN source session 1 Switch show monitor session 1 Session 1 Type Local Session Source Ports RX Only Gi0 1 Both Gi0 2 3 Gi0 5 6 Destination Ports Gi0 20 Encapsulation Replicate Ingress Disabled This is an example of output for the show monitor session all user EXEC command when ingress traffic forwarding is enabled Switch show monitor session all ...

Page 406: ...t Blade Switch 3030 Command Reference 78 17262 01 Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands show monitor Related Commands Command Description monitor session Starts or modifies a SPAN or RSPAN session ...

Page 407: ...ain Output appear Examples This is an example of output from the show mvr command Switch show mvr MVR Running TRUE MVR multicast VLAN 1 MVR Max Multicast Groups 256 MVR Current multicast groups 0 MVR Global query response time 5 tenths of sec MVR Mode compatible In the preceding display the maximum number of multicast groups is fixed at 256 The MVR mode is either compatible for interoperability wi...

Page 408: ...ast VLAN registration on the switch mvr interface configuration Configures MVR ports show mvr interface Displays the configured MVR interfaces status of the specified interface or all multicast groups to which the interface belongs when the interface and members keywords are appended to the command show mvr members Displays all ports that are members of an MVR multicast group or if there are no me...

Page 409: ...R group members in the VLAN appear Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show mvr interface command Switch show mvr interface Port Type Status Immediate Leave Gi0 1 SOURCE ACTIVE UP DISABLED Gi0 2 RECEIVER ACTIVE DOWN DISABLED interfac...

Page 410: ...BLED This is an example of output from the show mvr interface interface id members command Switch show mvr interface gigabitethernet0 2 members 239 255 0 0 DYNAMIC ACTIVE 239 255 0 1 DYNAMIC ACTIVE 239 255 0 2 DYNAMIC ACTIVE 239 255 0 3 DYNAMIC ACTIVE 239 255 0 4 DYNAMIC ACTIVE 239 255 0 5 DYNAMIC ACTIVE 239 255 0 6 DYNAMIC ACTIVE 239 255 0 7 DYNAMIC ACTIVE 239 255 0 8 DYNAMIC ACTIVE 239 255 0 9 D...

Page 411: ...ow mvr members command Switch show mvr members MVR Group IP Status Members 239 255 0 1 ACTIVE Gi0 1 d Gi0 5 s 239 255 0 2 INACTIVE None 239 255 0 3 INACTIVE None 239 255 0 4 INACTIVE None 239 255 0 5 INACTIVE None 239 255 0 6 INACTIVE None 239 255 0 7 INACTIVE None 239 255 0 8 INACTIVE None 239 255 0 9 INACTIVE None 239 255 0 10 INACTIVE None output truncated ip address Optional The IP multicast a...

Page 412: ...rs 239 255 0 2 239 255 003 22 ACTIVE Gi0 1 d Gi0 2 d Gi0 3 d Gi0 4 d Gi0 5 s Related Commands Command Description mvr global configuration Enables and configures multicast VLAN registration on the switch mvr interface configuration Configures MVR ports show mvr Displays the global MVR configuration on the switch show mvr interface Displays the configured MVR interfaces status of the specified inte...

Page 413: ...e if you enter exclude output the lines that contain output do not appear but the lines that contain Output are appear Examples This is an example of output from the show pagp 1 counters command Switch show pagp 1 counters Information Flush Port Sent Recv Sent Recv Channel group 1 Gi0 1 45 42 0 0 Gi0 2 45 41 0 0 channel group number Optional Number of the channel group The range is 1 to counters D...

Page 414: ...Partner PAgP Learning Group Port Flags State Timers Interval Count Priority Method Ifindex Gi0 1 SC U6 S7 H 30s 1 128 Any 16 Gi0 2 SC U6 S7 H 30s 1 128 Any 16 This is an example of output from the show pagp 1 neighbor command Switch show pagp 1 neighbor Flags S Device is sending Slow hello C Device is in Consistent state A Device is in Auto mode P Device learns on physical port Channel group 1 nei...

Page 415: ...fault macros varies depending on the switch platform and the software image running on the switch Switch show parser macro Total number of macros 6 Macro name cisco global Macro type default global Enable dynamic port error recovery for link state failures errdisable recovery cause link flap errdisable recovery interval 60 output truncated brief Optional Display the name of each macro description ...

Page 416: ...tput truncated Macro name cisco switch Macro type default interface macro keywords NVID Access Uplink to Distribution Do not apply to EtherChannel Port Group Define unique Native VLAN on trunk ports Recommended value for native vlan NVID should not be 1 switchport trunk native vlan NVID output truncated Macro name cisco router Macro type default interface macro keywords NVID Access Uplink to Distr...

Page 417: ...mmand Switch show parser macro description Global Macro s cisco global Interface Macro Description s Gi0 1 standard switch10 Gi0 2 this is test macro This is an example of output from the show parser description interface command Switch show parser macro description interface gigabitethernet0 2 Interface Macro Description Gi0 2 this is test macro Related Commands Command Description macro apply Ap...

Page 418: ...EC Command History Usage Guidelines Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show policy map command Switch show policy map Policy Map videowizard_policy2 class videowizard_10 10 10 10 set dscp 34 police 100000000 2000000 exceed action dr...

Page 419: ... Reference 78 17262 01 Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands show policy map Related Commands Command Description policy map Creates or modifies a policy map that can be attached to multiple ports to specify a service policy ...

Page 420: ...l the MAC addresses for an interface even if you have not enabled port security on it If you enter the vlan keyword the command displays the configured maximum and the current number of secure MAC addresses for all VLANs on the interface This option is visible only on interfaces that have the switchport mode set to trunk Expressions are case sensitive For example if you enter exclude output the li...

Page 421: ...olute SecureStatic address aging Disabled Security Violation count 0 This is an example of output from the show port security address command Switch show port security address Secure Mac Address Table Vlan Mac Address Type Ports Remaining Age mins 1 0006 0700 0800 SecureConfigured Gi0 2 1 Total Addresses in System excluding one mac per port 1 Max Addresses limit in System excluding one mac per por...

Page 422: ...rity Related Commands Command Description clear port security Deletes from the MAC address table a specific type of secure address or all the secure addresses on the switch or an interface switchport port security Enables port security on a port restricts the use of the port to a user defined group of stations and configures secure MAC addresses ...

Page 423: ...rtfast priority rootcost state begin exclude include expression show spanning tree mst configuration digest instance id detail interface interface id detail begin exclude include expression Syntax Description bridge group Optional Specify the bridge group number The range is 1 to 255 active detail Optional Display spanning tree information only on active interfaces available only in privileged EXE...

Page 424: ...ntil the port returns to the forwarding state or ceases to be designated instance id You can specify a single instance ID a range of IDs separated by a hyphen or a series of IDs separated by a comma The range is 1 to 4094 The display shows the number of currently configured instances interface interface id Optional Valid interfaces include physical ports VLANs and port channels The VLAN range is 1...

Page 425: ...tive VLAN0001 Spanning tree enabled protocol ieee Root ID Priority 32768 Address 0001 42e2 cdd0 Cost 3038 Port 24 GigabitEthernet0 1 Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec Bridge ID Priority 49153 priority 49152 sys id ext 1 Address 0003 fd63 9580 Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec Aging Time 300 Uplinkfast enabled Interface Role Sts Cost Prio Nbr Type Gi0 1 Root FW...

Page 426: ...32768 address 00d0 bbf5 c680 Designated port id is 128 25 designated path cost 19 Timers message age 2 forward delay 0 hold 0 Number of transitions to forwarding state 1 Link type is point to point by default BPDU sent 0 received 72364 output truncated This is an example of output from the show spanning tree interface interface id command Switch show spanning tree interface gigabitethernet0 1 Vlan...

Page 427: ...ng tree mst interface gigabitethernet0 1 GigabitEthernet0 1 of MST00 is root forwarding Edge port no default port guard none default Link type point to point auto bpdu filter disable default Boundary boundary STP bpdu guard disable default Bpdus sent 5 received 74 Instance role state cost prio vlans mapped 0 root FWD 200000 128 1 12 14 4094 This is an example of output from the show spanning tree ...

Page 428: ...through which the MST region configuration occurs spanning tree mst cost Sets the path cost for MST calculations spanning tree mst forward time Sets the forward delay time for all MST instances spanning tree mst hello time Sets the interval between hello BPDUs sent by root switch configuration messages spanning tree mst max age Sets the interval between messages that the spanning tree receives fro...

Page 429: ...de output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of a partial output from the show storm control command when no keywords are entered Because no traffic type keyword was entered the broadcast storm control settings appear Switch show storm control Interface Filter State Upper Lower Current Gi0 1 Forwarding 20 pps 10 pps 5 pp...

Page 430: ... the ID of the interface Filter State Displays the status of the filter Blocking Storm control is enabled and a storm has occurred Forwarding Storm control is enabled and no storms have occurred Inactive Storm control is disabled Upper Displays the rising suppression level as a percentage of total available bandwidth in packets per second or in bits per second Lower Displays the falling suppressio...

Page 431: ...he system jumbo MTU refers to Gigabit ports the system routing MTU refers to routed ports Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show system mtu command Switch show system mtu System MTU size is 1500 bytes System Jumbo MTU size is 1550 ...

Page 432: ...nk is bidirectional Table 2 26 describes the fields in this display Switch show udld gigabitethernet0 1 Interface gi0 1 Port enable administrative configuration setting Follows device default Port enable operational state Enabled Current bidirectional state Bidirectional Current operational state Advertisement Single Neighbor detected Message interval 60 Time out interval 5 Entry 1 Expiration time...

Page 433: ...ssages are sent from the local device Measured in seconds Time out interval The time period in seconds that UDLD waits for echoes from a neighbor device during the detection window Entry 1 Information from the first cache entry which contains a copy of echo information received from the neighbor Expiration time The amount of time in seconds remaining before this cache entry is aged out Device ID T...

Page 434: ...ommand Description udld Enables aggressive or normal mode in UDLD or sets the configurable message timer time udld port Enables UDLD on an individual interface or prevents a fiber optic interface from being enabled by the udld global configuration command udld reset Resets all interfaces shutdown by UDLD and permits traffic to begin passing through them again ...

Page 435: ...c1 Copyright c 1986 2006 by Cisco Systems Inc Compiled Sat 28 Jan 06 02 55 by antonino Image text base 0x00003000 data base 0x00A9CD8C ROM Bootstrap program is CBS30X0 boot loader BOOTLDR CBS30X0 Boot Loader CBS3030 HBOOT M Version 12 2 jidai loader release 100 alexv cbs3030 p2 uptime is 1 minute System returned to ROM by power on System image file is flash cbs30x0 lanbase mz 122 25 SEE bin cisco ...

Page 436: ... ethernet MAC Address 00 15 FA 7D 17 80 Motherboard assembly number 73 10292 03 Motherboard serial number FHH094400GN Model number WS CBS3030 DEL F System serial number FSJC0523550 Version ID V01 Hardware Board Revision Number 0x01 Switch Ports Model SW Version SW Image 1 16 WS CBS3030 DEL 12 2 25 SEE CBS30X0 LANBASE M Configuration register is 0xF ...

Page 437: ...s ports id vlan id Optional Display information about a single VLAN identified by VLAN ID number For vlan id the range is 1 to 4094 mtu Optional Display a list of VLANs and the minimum and maximum transmission unit MTU sizes configured on ports in the VLAN name vlan name Optional Display information about a single VLAN identified by VLAN name The VLAN name is an ASCII string from 1 to 32 character...

Page 438: ...escribes the fields in the display Switch show vlan VLAN Name Status Ports 1 default active Gi0 11 Gi0 13 Gi0 14 Gi0 15 Gi0 16 101 VLAN0101 active 102 VLAN0102 active 103 VLAN0103 active 104 VLAN0104 active 105 VLAN0105 active 106 VLAN0106 active 107 VLAN0107 active 108 VLAN0108 active 109 VLAN0109 active 110 VLAN0110 active 111 VLAN0111 active 112 VLAN0112 active 113 VLAN0113 active 114 VLAN0114 ...

Page 439: ... 100121 1500 0 0 122 enet 100122 1500 0 0 123 enet 100123 1500 0 0 VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2 124 enet 100124 1500 0 0 125 enet 100125 1500 0 0 126 enet 100126 1500 0 0 127 enet 100127 1500 0 0 128 enet 100128 1500 0 0 129 enet 100129 1500 0 0 130 enet 100130 1500 0 0 500 enet 100500 1500 0 0 1002 fddi 101002 1500 0 0 1003 tr 101003 1500 srb 0 0 1004 fdnet...

Page 440: ...8 Gi0 9 Gi0 10 Gi0 11 Gi0 12 Gi0 13 Gi0 14 Gi0 15 Gi0 16 Gi0 17 Gi0 18 VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2 1 enet 100001 1500 0 0 Remote SPAN VLAN Disabled Primary Secondary Type Ports RingNo Ring number for the VLAN if applicable BrdgNo Bridge number for the VLAN if applicable Stp Spanning Tree Protocol type used on the VLAN BrdgMode Bridging mode for this VLAN po...

Page 441: ... Commands Command Description switchport mode Configures the VLAN membership mode of a port vlan global configuration Enables VLAN configuration mode where you can configure VLANs 1 to 4094 vlan VLAN configuration Configures VLAN characteristics in the VLAN database Only available for normal range VLANs VLAN IDs 1 to 1005 Do not enter leading zeros ...

Page 442: ... output from the show vlan access map command Switch show vlan access map Vlan access map SecWiz 10 Match clauses ip address SecWiz_Gi0_3_in_ip ip address SecWiz_Fa10_3_in_ip Action forward Related Commands mapname Optional Name of a specific VLAN access map begin Optional Display begins with the line that matches the expression exclude Optional Display excludes lines that match the expression inc...

Page 443: ...ow vlan filter command Switch show vlan filter VLAN Map map_1 is filtering VLANs 20 22 Related Commands access map name Optional Display filtering information for the specified VLAN access map vlan vlan id Optional Display filtering information for the specified VLAN The range is 1 to 4094 begin Optional Display begins with the line that matches the expression exclude Optional Display excludes lin...

Page 444: ...s are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples This is an example of output from the show vmps command Switch show vmps VQP Client Status VMPS VQP Version 1 Reconfirm Interval 60 min Server Retry Count 3 VMPS domain server Reconfirmation status VMPS Action other statistics Optional Display V...

Page 445: ...e is forwarded to or from the workstation with that address broadcast or multicast frames are delivered to the workstation if the port has been assigned to a VLAN The client keeps the denied address in the address table as a blocked address to prevent more queries from being sent to the VMPS for each new packet received from this workstation The client ages the address if no new packets are receiv...

Page 446: ... Commands Command Description clear vmps statistics Clears the statistics maintained by the VQP client vmps reconfirm privileged EXEC Sends VQP queries to reconfirm all dynamic VLAN assignments with the VMPS vmps retry Configures the per server retry count for the VQP client vmps server Configures the primary VMPS and up to three secondary servers ...

Page 447: ... each field in the display Switch show vtp counters VTP statistics Summary advertisements received 0 Subset advertisements received 0 Request advertisements received 0 Summary advertisements transmitted 0 Subset advertisements transmitted 0 Request advertisements transmitted 0 Number of config revision errors 0 Number of config digest errors 0 Number of V1 summary errors 0 counters Display the VTP...

Page 448: ...this switch on its trunk ports Summary advertisements contain the management domain name the configuration revision number the update timestamp and identity the authentication checksum and the number of subset advertisements to follow Subset advertisements transmitted Number of subset advertisements sent by this switch on its trunk ports Subset advertisements contain all the information for one or...

Page 449: ...rtisements which causes the VTP database to become unsynchronized across the network Number of V1 summary errors Number of Version 1 errors Version 1 summary errors increment whenever a switch in VTP V2 mode receives a VTP Version 1 frame These errors mean that at least one neighboring switch is either running VTP Version 1 or VTP Version 2 with V2 mode disabled To solve this problem change the co...

Page 450: ...ch receives VTP advertisements and forwards them on all trunk ports except the one on which the advertisement was received VTP Domain Name Name that identifies the administrative domain for the switch VTP Pruning Mode Displays whether pruning is enabled or disabled Enabling pruning on a VTP server enables pruning for the entire management domain Pruning restricts flooded traffic to those trunk lin...

Page 451: ...n deleted suspended or shut down The port must first be a member of an active VLAN before it can be re enabled The shutdown command disables all functions on the specified interface This command also marks the interface as unavailable To see if an interface is disabled use the show interfaces privileged EXEC command An interface that has been shut down is shown as administratively down in the disp...

Page 452: ...command shuts down local traffic but the switch still advertises VTP information Examples This example shows how to shut down traffic on VLAN 2 Switch config shutdown vlan 2 You can verify your setting by entering the show vlan privileged EXEC command Related Commands vlan id ID of the VLAN to be locally shut down The range is 2 to 1001 VLANs defined as default VLANs under the VLAN Trunking Protoc...

Page 453: ...smit state change pim invalid pim message neighbor change rp mapping change port security trap rate rtr snmp authentication coldstart linkdown linkup warmstart storm control trap rate stpx inconsistency root inconsistency loop inconsistency syslog tty vlan membership vlancreate vlandelete vtp Syntax Description bridge newroot topologychange Optional Generate STP bridge MIB traps The keywords have ...

Page 454: ...e default is 0 no limit imposed a trap is sent at every occurrence rtr Optional Enable SNMP Response Time Reporter traps snmp authentication coldstart linkdown linkup warmstart Optional Enable SNMP traps The keywords have these meanings authentication Optional Enable authentication trap coldstart Optional Enable cold start trap linkdown Optional Enable linkdown trap linkup Optional Enable linkup t...

Page 455: ...e snmp server host global configuration command If no trap types are specified all trap types are sent When supported use the snmp server enable traps command to enable sending of traps or informs Note Informs are not supported in SNMPv1 To enable more than one type of trap you must enter a separate snmp server enable traps command for each trap type Examples This example shows how to send VTP tra...

Page 456: ...port Optional Configure the User Datagram Protocol UDP port number of the host to receive the traps The range is 0 to 65535 informs traps Optional Send SNMP traps or informs to this host version 1 2c 3 Optional Version of the SNMP used to send the traps These keywords are supported 1 SNMPv1 This option is not available with informs 2c SNMPv2C 3 SNMPv3 These optional keywords can follow the Version...

Page 457: ...ps config Send SNMP configuration traps copy config Send SNMP copy configuration traps entity Send SNMP entity traps envmon Send environmental monitor traps flash Send SNMP FLASH notifications hsrp Send SNMP Hot Standby Router Protocol HSRP traps ipmulticast Send SNMP IP multicast routing traps mac notification Send SNMP MAC notification traps msdp Send SNMP Multicast Source Discovery Protocol MSD...

Page 458: ...ifications are sent To configure the switch to send SNMP notifications you must enter at least one snmp server host command If you enter the command with no keywords all trap types are enabled for the host To enable multiple hosts you must enter a separate snmp server host command for each host You can specify multiple notification types in the command for each host If a local user is not associat...

Page 459: ...ined as comaccess Switch config snmp server enable traps Switch config snmp server host myhost cisco com comaccess snmp This example shows how to enable the switch to send all traps to the host myhost cisco com by using the community string public Switch config snmp server enable traps Switch config snmp server host myhost cisco com public You can verify your settings by entering the show running ...

Page 460: ...ommand History Usage Guidelines Even though you enable the notification trap for a specific interface by using the snmp trap mac notification command the trap is generated only when you enable the snmp server enable traps mac notification and the mac address table notification global configuration commands Examples This example shows how to enable the MAC notification trap when a MAC address is ad...

Page 461: ...notification Clears the MAC address notification global counters mac address table notification Enables the MAC address notification feature show mac address table notification Displays the MAC address notification settings for all interfaces or on the specified interface when the interface keyword is appended snmp server enable traps Sends the SNMP MAC notification traps when the mac notification...

Page 462: ...esignated switch When a switch receives an inferior BPDU it means that a link to which the switch is not directly connected an indirect link has failed that is the designated switch has lost its connection to the root switch If there are alternate paths to the root switch BackboneFast causes the maximum aging time on the interfaces on which it received the inferior BPDU to expire and allows a bloc...

Page 463: ...le spanning tree MST mode Caution Enabling BPDU filtering on an interface is the same as disabling spanning tree on it and can result in spanning tree loops You can globally enable BPDU filtering on all Port Fast enabled interfaces by using the spanning tree portfast bpdufilter default global configuration command You can use the spanning tree bpdufilter interface configuration command to override...

Page 464: ...nformation select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands spanning tree portfast global configuration Globally enables the BPDU filtering or the BPDU guard feature on Port Fast enabled interface or enables the Port Fast feature on all nontrunking interfaces spanning tree portfast interface configuration Ena...

Page 465: ...work to prevent an interface from being included in the spanning tree topology You can enable the BPDU guard feature when the switch is operating in the per VLAN spanning tree plus PVST rapid PVST or the multiple spanning tree MST mode You can globally enable BPDU guard on all Port Fast enabled interfaces by using the spanning tree portfast bpduguard default global configuration command You can us...

Page 466: ...formation select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands spanning tree portfast global configuration Globally enables the BPDU filtering or the BPDU guard feature on Port Fast enabled interfaces or enables the Port Fast feature on all nontrunking interfaces spanning tree portfast interface configuration Ena...

Page 467: ...st higher values represent higher costs If you configure an interface with both the spanning tree vlan vlan id cost cost command and the spanning tree cost cost command the spanning tree vlan vlan id cost cost command takes effect Examples This example shows how to set the path cost to 250 on a port Switch config interface gigabitethernet0 1 Switch config if spanning tree cost 250 This example sho...

Page 468: ...Commands spanning tree cost Related Commands Command Description show spanning tree interface interface id Displays spanning tree information for the specified interface spanning tree port priority Configures an interface priority spanning tree vlan priority Sets the switch priority for the specified spanning tree instance ...

Page 469: ...rs PM 4 ERR_DISABLE Channel misconfig error detected on chars putting chars in err disable state To show switch ports that are in the misconfigured EtherChannel use the show interfaces status err disabled privileged EXEC command To verify the EtherChannel configuration on a remote device use the show etherchannel summary privileged EXEC command on the remote device When a port is in the error disa...

Page 470: ...g Related Commands Command Description errdisable recovery cause channel misconfig Enables the timer to recover from the EtherChannel misconfiguration error disabled state show etherchannel summary Displays EtherChannel information for a channel as a one line summary per channel group show interfaces status err disabled Displays the interfaces in the error disabled state ...

Page 471: ...r the extended system ID VLAN identifier for the per VLAN spanning tree plus PVST and rapid PVST or as an instance identifier for the multiple spanning tree MST The spanning tree uses the extended system ID the switch priority and the allocated spanning tree MAC address to make the bridge ID unique for each VLAN or multiple spanning tree instance Support for the extended system ID affects how you ...

Page 472: ...ng tree extend system id Related Commands Command Description show spanning tree summary Displays a summary of spanning tree interface states spanning tree mst root Configures the MST root switch priority and timers based on the network diameter spanning tree vlan priority Sets the switch priority for the specified spanning tree instance ...

Page 473: ...ultiple spanning tree MST mode When root guard is enabled if spanning tree calculations cause an interface to be selected as the root port the interface transitions to the root inconsistent blocked state to prevent the customer s switch from becoming the root switch or being in the path to the root The root port provides the best path from the switch to the root switch When the no spanning tree gu...

Page 474: ...the VLANs associated with the specified port Switch config interface gigabitethernet0 2 Switch config if spanning tree guard root This example shows how to enable loop guard on all the VLANs associated with the specified port Switch config interface gigabitethernet0 2 Switch config if spanning tree guard loop You can verify your settings by entering the show running config privileged EXEC command ...

Page 475: ...terface configuration Command History Usage Guidelines You can override the default setting of the link type by using the spanning tree link type command For example a half duplex link can be physically connected point to point to a single interface on a remote switch running the Multiple Spanning Tree Protocol MSTP or the rapid per VLAN spanning tree plus rapid PVST protocol and be enabled for ra...

Page 476: ...ion clear spanning tree detected protocols Restarts the protocol migration process force the renegotiation with neighboring switches on all interfaces or on the specified interface show spanning tree interface interface id Displays spanning tree state information for the specified interface show spanning tree mst interface interface id Displays MST information for the specified interface ...

Page 477: ... guard is most effective when it is configured on the entire switched network When the switch is operating in PVST or rapid PVST mode loop guard prevents alternate and root ports from becoming designated ports and spanning tree does not send bridge protocol data units BPDUs on root or alternate ports When the switch is operating in MST mode BPDUs are not sent on nonboundary interfaces if the inter...

Page 478: ...d Commands Command Description show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands spanning tree guard loop Enables the loop guard feature on all the VLANs associated with the specified interface ...

Page 479: ...n can be active at any time All VLANs run PVST all VLANs run rapid PVST or all VLANs run MSTP When you enable the MST mode RSTP is automatically enabled Caution Changing spanning tree modes can disrupt traffic because all spanning tree instances are stopped for the previous mode and restarted in the new mode Examples This example shows to enable MST and RSTP on the switch Switch config spanning tr...

Page 480: ... 3030 Cisco IOS Commands spanning tree mode Related Commands Command Description show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands ...

Page 481: ...nds are available abort exits the MST region configuration mode without applying configuration changes exit exits the MST region configuration mode and applies all configuration changes instance instance id vlan vlan range maps VLANs to an MST instance The range for the instance id is 1 to 4094 The range for vlan range is 1 to 4094 You can specify a single VLAN identified by VLAN ID number a range...

Page 482: ...onfiguration mode map VLANs 10 to 20 to MST instance 1 name the region region1 set the configuration revision to 1 display the pending configuration apply the changes and return to global configuration mode Switch spanning tree mst configuration Switch config mst instance 1 vlan 10 20 Switch config mst name region1 Switch config mst revision 1 Switch config mst show pending Pending MST configurati...

Page 483: ... These are the IEEE default path cost values 1000 Mbps 20000 100 Mbps 200000 10 Mbps 2000000 Command Modes Interface configuration Command History Usage Guidelines When you configure the cost higher values represent higher costs Examples This example shows how to set a path cost of 250 on a port associated with instances 2 and 4 Switch config interface gigabitethernet0 2 Switch config if spanning ...

Page 484: ...ands spanning tree mst cost Related Commands Command Description show spanning tree mst interface interface id Displays MST information for the specified interface spanning tree mst port priority Configures an interface priority spanning tree mst priority Configures the switch priority for the specified spanning tree instance ...

Page 485: ...idelines Changing the spanning tree mst forward time command affects all spanning tree instances Examples This example shows how to set the spanning tree forwarding time to 18 seconds for all MST instances Switch config spanning tree mst forward time 18 You can verify your setting by entering the show spanning tree mst privileged EXEC command Related Commands seconds Length of the listening and le...

Page 486: ...tch recomputes the spanning tree topology The max age setting must be greater than the hello time setting Changing the spanning tree mst hello time command affects all spanning tree instances Examples This example shows how to set the spanning tree hello time to 3 seconds for all multiple spanning tree MST instances Switch config spanning tree mst hello time 3 You can verify your setting by enteri...

Page 487: ...BPDUs from the root switch within the specified interval the switch recomputes the spanning tree topology The max age setting must be greater than the hello time setting Changing the spanning tree mst max age command affects all spanning tree instances Examples This example shows how to set the spanning tree max age to 30 seconds for all multiple spanning tree MST instances Switch config spanning ...

Page 488: ...instance always sends a BPDU or M record with a cost of 0 and the hop count set to the maximum value When a switch receives this BPDU it decrements the received remaining hop count by one and propagates the decremented count as the remaining hop count in the generated M records A switch discards the BPDU and ages the information held for the interface when the count reaches 0 Changing the spanning...

Page 489: ...s Command Description show spanning tree mst Displays MST information spanning tree mst forward time Sets the forward delay time for all MST instances spanning tree mst hello time Sets the interval between hello BPDUs sent by root switch configuration messages spanning tree mst max age Sets the interval between messages that the spanning tree receives from the root switch ...

Page 490: ...on Command History Usage Guidelines You can assign higher priority values lower numerical values to interfaces that you want selected first and lower priority values higher numerical values that you want selected last If all interfaces have the same priority value the multiple spanning tree MST puts the interface with the lowest interface number in the forwarding state and blocks other interfaces ...

Page 491: ...te if a loop occurs Switch config interface gigabitethernet0 2 Switch config if spanning tree mst 20 22 port priority 0 You can verify your settings by entering the show spanning tree mst interface interface id privileged EXEC command Related Commands Command Description show spanning tree mst interface interface id Displays MST information for the specified interface spanning tree mst cost Sets t...

Page 492: ...spanning tree CIST runs on this interface Note If a switch port is connected to a switch running prestandard Cisco IOS software you must use the spanning tree mst pre standard interface configuration command on the port If you do not configure the port to send only prestandard BPDUs the Multiple STP MSTP performance might diminish When the port is configured to automatically detect prestandard nei...

Page 493: ... spanning tree mst instance id privileged EXEC command Related Commands instance id Range of spanning tree instances You can specify a single instance a range of instances separated by a hyphen or a series of instances separated by a comma The range is 0 to 4094 priority Set the switch priority for the specified spanning tree instance This setting affects the likelihood that the switch is selected...

Page 494: ...ause of the extended system ID support the switch sets the switch priority for the instance to 24576 if this value will cause this switch to become the root for the specified instance If any root switch for the specified instance has a switch priority lower than 24576 the switch sets its own priority to 4096 less than the lowest switch priority 4096 is the value of the least significant bit of a 4...

Page 495: ...4 Switch config spanning tree mst 10 root primary diameter 4 This example shows how to configure the switch as the secondary root switch for instance 10 with a network diameter of 4 Switch config spanning tree mst 10 root secondary diameter 4 You can verify your settings by entering the show spanning tree mst instance id privileged EXEC command Related Commands Command Description show spanning tr...

Page 496: ...spanning tree instance associated with VLAN 1 You can set the priority on a VLAN that has no interfaces assigned to it The setting takes effect when you assign the interface to the VLAN If you configure an interface with both the spanning tree vlan vlan id port priority priority command and the spanning tree port priority priority command the spanning tree vlan vlan id port priority priority comma...

Page 497: ...20 port priority 0 This example shows how to set the port priority value on VLANs 20 to 25 Switch config if spanning tree vlan 20 25 port priority 0 You can verify your settings by entering the show spanning tree interface interface id privileged EXEC command Related Commands Command Description show spanning tree interface interface id Displays spanning tree information for the specified interfac...

Page 498: ...PVST or the multiple spanning tree MST mode Use the spanning tree portfast bpdufilter default global configuration command to globally enable BPDU filtering on interfaces that are Port Fast enabled the interfaces are in a Port Fast operational state The interfaces still send a few BPDUs at link up before the switch begins to filter outbound BPDUs You should globally enable BPDU filtering on a swit...

Page 499: ...e a data packet loop and disrupt switch and network operation A Port Fast enabled interface moves directly to the spanning tree forwarding state when linkup occurs without waiting for the standard forward delay time You can override the spanning tree portfast default global configuration command by using the spanning tree portfast interface configuration command You can use the no spanning tree po...

Page 500: ...witch and network operation To enable Port Fast on trunk ports you must use the spanning tree portfast trunk interface configuration command The spanning tree portfast command is not supported on trunk ports You can enable this feature when the switch is operating in the per VLAN spanning tree plus PVST rapid PVST or the multiple spanning tree MST mode This feature affects all VLANs on the interfa...

Page 501: ...mmand Description show running config Displays the current operating configuration For syntax information select Cisco IOS Configuration Fundamentals Command Reference Release 12 2 File Management Commands Configuration File Management Commands spanning tree bpdufilter Prevents an interface from sending or receiving bridge protocol data units BPDUs spanning tree bpduguard Puts an interface in the ...

Page 502: ...d History Usage Guidelines Increasing the transmit hold count value can have a significant impact on CPU utilization when the switch is in rapid per VLAN spanning tree plus rapid PVST mode Decreasing this value might slow down convergence We recommend using the default setting Examples This example shows how to set the transmit hold count to 8 Switch config spanning tree transmit hold count 8 You ...

Page 503: ...able UplinkFast it is enabled for the entire switch and cannot be enabled for individual VLANs When UplinkFast is enabled the switch priority of all VLANs is set to 49152 If you change the path cost to a value less than 3000 and you enable UplinkFast or UplinkFast is already enabled the path cost of all interfaces and VLAN trunks is increased by 3000 if you change the path cost to 3000 or above th...

Page 504: ...ure are placed in the root inconsistent state blocked and prevented from reaching the forwarding state If you set the max update rate to 0 station learning frames are not generated so the spanning tree topology converges more slowly after a loss of connectivity Examples This example shows how to enable UplinkFast Switch config spanning tree uplinkfast You can verify your setting by entering the sh...

Page 505: ...tree instance The forwarding time specifies how long each of the listening and learning states last before the interface begins forwarding The range is 4 to 30 seconds hello time seconds Optional Set the interval between hello bridge protocol data units BPDUs sent by the root switch configuration messages The range is 1 to 10 seconds max age seconds Optional Set the interval between messages the s...

Page 506: ... command should be used only on backbone switches When you enter the spanning tree vlan vlan id root command the software checks the switch priority of the current root switch for each VLAN Because of the extended system ID support the switch sets the switch priority for the specified VLAN to 24576 if this value will cause this switch to become the root for the specified VLAN If any root switch fo...

Page 507: ...e secondary root switch for VLAN 10 with a network diameter of 4 Switch config spanning tree vlan 10 root secondary diameter 4 You can verify your settings by entering the show spanning tree vlan vlan id privileged EXEC command Related Commands Command Description show spanning tree vlan Displays spanning tree information spanning tree cost Sets the path cost for spanning tree calculations spannin...

Page 508: ... link which could result in a duplex setting mismatch If both ends of the line support autonegotiation we highly recommend the default autonegotiation settings If one interface supports autonegotiation and the other end does not do use the auto setting on the supported side but set the duplex and speed on the other side Caution Changing the interface speed and duplex mode configuration might shut ...

Page 509: ...iate at only 10 Mbps Switch config interface gigabitethernet0 1 Switch config if speed auto 10 This example shows how to set a port to autonegotiate at only 10 or 100 Mbps Switch config interface gigabitethernet0 1 Switch config if speed auto 10 100 You can verify your settings by entering the show interfaces privileged EXEC command Related Commands Command Description duplex Specifies the duplex ...

Page 510: ... idle 20 percent of the time The line rate drops to 80 percent of the connected speed These values are not exact because the hardware adjusts the line rate in increments of six Note The egress queue default settings are suitable for most situations You should change them only when you have a thorough understanding of the egress queues and if these settings do not meet your quality of service QoS s...

Page 511: ...ntiated Services Code Point DSCP values to an egress queue or maps DSCP values to a queue and to a threshold ID mls qos queue set output threshold Configures the weighted tail drop WTD thresholds guarantees the availability of buffers and configures the maximum memory allocation for the queue set queue set Maps a port to a queue set show mls qos interface queueing Displays QoS information srr queu...

Page 512: ...ing to smooth bursty traffic or to provide a smoother output over time The shaped mode overrides the shared mode If you configure a shaped queue weight to 0 by using the srr queue bandwidth shape interface configuration command this queue participates in shared mode The weight specified with the srr queue bandwidth shape command is ignored and the weights specified with the srr queue bandwidth sha...

Page 513: ...tch config if srr queue bandwidth share 4 4 4 4 You can verify your settings by entering the show mls qos interface interface id queueing privileged EXEC command Related Commands Command Description mls qos queue set output buffers Allocates buffers to a queue set mls qos srr queue output cos map Maps class of service CoS values to an egress queue or maps CoS values to a queue and to a threshold I...

Page 514: ...weights The bandwidth is guaranteed at this level but not limited to it For example if a queue empties and does not require a share of the link the remaining queues can expand into the unused bandwidth and share it among themselves If you configure a shaped queue weight to 0 by using the srr queue bandwidth shape interface configuration command this queue participates in SRR shared mode The weight...

Page 515: ...ng the show mls qos interface interface id queueing privileged EXEC command Related Commands Command Description mls qos queue set output buffers Allocates buffers to a queue set mls qos srr queue output cos map Maps class of service CoS values to an egress queue or maps CoS values to a queue and to a threshold ID mls qos srr queue output dscp map Maps Differentiated Services Code Point DSCP value...

Page 516: ...s as a percentage of total bandwidth of the port level Rising suppression level up to two decimal places The range is 0 00 to 100 00 Block the flooding of storm packets when the value specified for level is reached level low Optional Falling suppression level up to two decimal places The range is 0 00 to 100 00 This value must be less than or equal to the rising suppression value If you do not con...

Page 517: ... control configuration is specified the default action is to filter the traffic causing the storm and to send no SNMP traps Note When the storm control threshold for multicast traffic is reached all multicast traffic except control traffic such as bridge protocol data unit BDPU and Cisco Discovery Protocol CDP frames are blocked The trap and shutdown options are independent of each other level pps...

Page 518: ... the switch blocks only broadcast traffic For more information see the software configuration guide for this release Examples This example shows how to enable broadcast storm control with a 75 5 percent rising suppression level Switch config if storm control broadcast level 75 5 This example shows how to enable unicast storm control on a port with a 87 percent rising suppression level and a 65 per...

Page 519: ...es Command Modes Interface configuration Command History Usage Guidelines The no switchport access command resets the access mode VLAN to the appropriate default VLAN for the device The port must be in access mode before the switchport access vlan command can take effect An access port can be assigned to only one VLAN The VMPS server such as a Catalyst 6000 series switch must be configured before ...

Page 520: ...access ports Dynamic access ports can only be in one VLAN and do not use VLAN tagging Dynamic access ports cannot be configured as Members of an EtherChannel port group dynamic access ports cannot be grouped with any other port including other dynamic ports Source or destination ports in a static address entry Monitor ports Examples This example shows how to change a switched port interface that i...

Page 521: ...ve no Flex Links defined Preemption mode is off No preemption occurs Preemption delay is set to 35 seconds Command Modes Interface configuration Command History interface id Specify that the Layer 2 interface to act as a backup link to the interface being configured The interface can be a physical interface or port channel The port channel range is 1 to 48 mmu Configure the MAC move update MMU for...

Page 522: ... belongs to an EtherChannel However you can configure two port channels EtherChannel logical interfaces as Flex Links and you can configure a port channel and a physical interface as Flex Links with either the port channel or the physical interface as the active link If STP is configured on the switch Flex Links do not participate in STP in all valid VLANs If STP is not running be sure that there ...

Page 523: ...Chapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands switchport backup interface Related Commands Command Description show interfaces interface id switchport backup Displays the configured Flex Links and their status on the switch or for the specified interface ...

Page 524: ...ted ports If unknown multicast or unicast traffic is not blocked on a protected port there could be security issues Blocking unknown multicast or unicast traffic is not automatically enabled on protected ports you must explicitly configure it For more information about blocking packets see the software configuration guide for this release Examples This example shows how to block unknown multicast ...

Page 525: ...configuration Because spanning tree Port Fast is enabled you should enter the switchport host command only on ports that are connected to a single host Connecting other switches hubs concentrators or bridges to a fast start port can cause temporary spanning tree loops Enable the switchport host command to decrease the time that it takes to start up packet forwarding Examples This example shows how...

Page 526: ...f the interface connecting to it does not agree to the change When you enter dynamic auto mode the interface converts the link to a trunk link if the neighboring interface is set to trunk or desirable mode When you enter dynamic desirable mode the interface becomes a trunk interface if the neighboring interface is set to trunk desirable or auto mode access Set the port to access mode either static...

Page 527: ...port set to dynamic auto or dynamic desirable an error message appears and IEEE 802 1x is not enabled If you try to change the mode of an IEEE 802 1x enabled port to dynamic auto or dynamic desirable the port mode is not changed If you try to enable IEEE 802 1x on a dynamic access VLAN Query Protocol VQP port an error message appears and IEEE 802 1x is not enabled If you try to change an IEEE 802 ...

Page 528: ...onfigured by using the switchport mode access or the switchport mode trunk interface configuration command This command returns an error if you attempt to execute it in dynamic auto or desirable mode Internetworking devices that do not support DTP might forward DTP frames improperly and cause misconfigurations To avoid this you should turn off DTP by using the switchport no negotiate command to co...

Page 529: ...ss port depending on the mode set Switch config interface gigabitethernet0 1 Switch config if switchport nonegotiate You can verify your setting by entering the show interfaces interface id switchport privileged EXEC command Related Commands Command Description show interfaces switchport Displays the administrative and operational status of a switching port including port blocking and port protect...

Page 530: ...or the interface by entering a 48 bit MAC address You can add additional secure MAC addresses up to the maximum value configured vlan vlan id Optional On a trunk port only specify the VLAN ID and the MAC address If no VLAN ID is specified the native VLAN is used vlan access Optional On an access port only specify the VLAN as an access VLAN vlan voice Optional On an access port only specify the VLA...

Page 531: ...esses are dropped until you remove a sufficient number of secure MAC addresses to drop below the maximum value or increase the number of maximum allowable addresses You are not notified that a security violation has occurred Note We do not recommend configuring the protect mode on a trunk port The protect mode disables learning when any VLAN reaches its maximum limit even if the port has not reach...

Page 532: ...value is greater than the previous value the new value overrides the previously configured value If the new value is less than the previous value and the number of configured secure addresses on the interface exceeds the new value the command is rejected The switch does not support port security aging of sticky secure MAC addresses A security violation occurs when the maximum number of secure MAC ...

Page 533: ...shuts down the interface does not need to relearn these addresses If you do not save the sticky secure addresses they are lost If sticky learning is disabled the sticky secure MAC addresses are converted to dynamic secure addresses and are removed from the running configuration If you disable sticky learning and enter the switchport port security mac address sticky mac address interface configurat...

Page 534: ...ommand Description clear port security Deletes from the MAC address table a specific type of secure address or all the secure addresses on the switch or an interface show port security address Displays all the secure addresses configured on the switch show port security interface interface id Displays port security configuration for the switch or for the specified interface ...

Page 535: ... allow limited time access to particular secure addresses set the aging type as absolute When the aging time lapses the secure addresses are deleted To allow continuous access to a limited number of secure addresses set the aging type as inactivity This removes the secure address when it become inactive and other addresses can become secure To allow unlimited access to a secure address configure i...

Page 536: ...re addresses on the port Switch config interface gigabitethernet0 2 Switch config if switchport port security aging time 2 Switch config if switchport port security aging type inactivity Switch config if switchport port security aging static This example shows how to disable aging for configured secure addresses Switch config interface gigabitethernet0 2 Switch config if no switchport port securit...

Page 537: ...connected to the Cisco IP Phone to send the configuration to the Cisco IP Phone CDP is enabled by default globally and on all switch interfaces You should configure voice VLAN on switch access ports Before you enable voice VLAN we recommend that you enable quality of service QoS on the switch by entering the mls qos global configuration command and configure the port trust state to trust by enteri...

Page 538: ...hapter 2 Cisco Catalyst Blade Switch 3030 Cisco IOS Commands switchport priority extend Related Commands Command Description show interfaces Displays the administrative and operational status of a switching port switchport voice vlan Configures the voice VLAN on the port ...

Page 539: ...een protected ports on different switches you must configure the protected ports for unique VLANs on each switch and configure a trunk link between the switches A protected port is different from a secure port A protected port does not forward any traffic unicast multicast or broadcast to any other port that is also a protected port Data traffic cannot be forwarded between protected ports at Layer...

Page 540: ...30 Cisco IOS Commands switchport protected Related Commands Command Description show interfaces switchport Displays the administrative and operational status of a switching port including port blocking and port protection settings switchport block Prevents unknown multicast or unicast traffic on the interface ...

Page 541: ...tive VLAN IDs with a comma use a hyphen to designate a range of IDs remove removes the defined list of VLANs from those currently set instead of replacing the list Valid IDs are from 1 to 1005 extended range VLAN IDs are valid in some cases Note You can remove extended range VLANs from the allowed VLAN list but you cannot remove them from the pruning eligible list allowed vlan vlan list Set the li...

Page 542: ...ISL trunk and a different port on the same switch as an IEEE 802 1Q trunk If you enter the negotiate keywords and DTP negotiation does not resolve the encapsulation format ISL is the selected format The no form of the command resets the trunk encapsulation format to the default The no form of the encapsulation command resets the encapsulation format to the default Native VLANs All untagged traffic...

Page 543: ...hport trunk encapsulation dot1q This example shows how to configure VLAN 3 as the default for the port to send all untagged traffic Switch config interface gigabitethernet0 2 Switch config if switchport trunk native vlan 3 This example shows how to add VLANs 1 2 5 and 6 to the allowed list Switch config interface gigabitethernet0 2 Switch config if switchport trunk allowed vlan add 1 2 5 6 This ex...

Page 544: ... by entering the mls qos global configuration command and configure the port trust state to trust by entering the mls qos trust cos interface configuration command When you enter a VLAN ID the IP phone forwards voice traffic in IEEE 802 1Q frames tagged with the specified VLAN ID The switch puts IEEE 802 1Q voice traffic in the voice VLAN When you select dot1q none or untagged the switch puts the ...

Page 545: ...P phone If any type of port security is enabled on the access VLAN dynamic port security is automatically enabled on the voice VLAN You cannot configure static secure MAC addresses in the voice VLAN The Port Fast feature is automatically enabled when voice VLAN is configured When you disable voice VLAN the Port Fast feature is not automatically disabled Examples This example shows how to configure...

Page 546: ...the MTU on a per interface basis The size of frames that can be received by the switch CPU is limited to 1998 bytes regardless of the value entered with the system mtu command Although forwarded or routed frames are usually not received by the CPU some packets for example control traffic SNMP Telnet and routing protocols are sent to the CPU Because the switch does not fragment packets it drops swi...

Page 547: ...et the maximum jumbo packet size for Gigabit Ethernet ports operating at 1000 Mbps or greater to 1800 bytes Switch config system mtu jumbo 1800 Switch config exit Switch reload You can verify your setting by entering the show system mtu privileged EXEC command Related Commands Command Description show system mtu Displays the packet size set for 10 100 and Gigabit Ethernet ports ...

Page 548: ...pecify a multicast source or destination MAC address the physical path is not identified and an error message appears The traceroute mac command output shows the Layer 2 path when the specified source and destination addresses belong to the same VLAN If you specify source and destination addresses that belong to different VLANs the Layer 2 path is not identified and an error message appears If the...

Page 549: ...WS CBS3030 DEL 2 2 6 6 Gi0 2 auto auto Gi0 3 auto auto con5 WS C2950G 24 EI 2 2 5 5 Fa0 3 auto auto Gi0 1 auto auto con1 WS C3550 12G 2 2 1 1 Gi0 1 auto auto Gi0 2 auto auto con2 WS C3550 24 2 2 2 2 Gi0 2 auto auto Fa0 1 auto auto Destination 0000 0201 0201 found on con2 WS C3550 24 2 2 2 2 Layer 2 trace completed This example shows how to display the Layer 2 path by specifying the interfaces on t...

Page 550: ...000 0201 0601 0000 0301 0201 Error Source and destination macs are on different vlans Layer2 trace aborted This example shows the Layer 2 path when the destination MAC address is a multicast address Switch traceroute mac 0000 0201 0601 0100 0201 0201 Invalid destination mac address This example shows the Layer 2 path when source and destination switches belong to multiple VLANs Switch traceroute m...

Page 551: ...s ten The traceroute mac ip command output shows the Layer 2 path when the specified source and destination IP addresses are in the same subnet When you specify the IP addresses the switch uses Address Resolution Protocol ARP to associate the IP addresses with the corresponding MAC addresses and the VLAN IDs If an ARP entry exists for the specified IP address the switch uses the associated MAC add...

Page 552: ...o con5 WS C2950G 24 EI 2 2 5 5 Fa0 3 auto auto Gi0 1 auto auto con1 WS C3550 12G 2 2 1 1 Gi0 1 auto auto Gi0 2 auto auto con2 WS C3550 24 2 2 2 2 Gi0 2 auto auto Fa0 1 auto auto Destination 0000 0201 0201 found on con2 WS C3550 24 2 2 2 2 Layer 2 trace completed This example shows how to display the Layer 2 path by specifying the source and destination hostnames Switch traceroute mac ip con6 con2 ...

Page 553: ...cy map class configuration command within the same policy map If you specify trust cos QoS uses the received or default port CoS value and the CoS to DSCP map to generate a DSCP value for the packet If you specify trust dscp QoS uses the DSCP value from the ingress packet For non IP packets that are tagged QoS uses the received CoS value for non IP packets that are untagged QoS uses the default po...

Page 554: ...rt trust state to trust incoming DSCP values for traffic classified with class1 Switch config policy map policy1 Switch config pmap class class1 Switch config pmap c trust dscp Switch config pmap c police 1000000 20000 exceed action policed dscp transmit Switch config pmap c exit You can verify your settings by entering the show policy map privileged EXEC command Related Commands Command Descripti...

Page 555: ...on about normal and aggressive modes see the Understanding UDLD section in the software configuration guide for this release If you change the message time between probe packets you are making a trade off between the detection speed and the CPU load By decreasing the time you can make the detection response faster but increase the load on the CPU This command affects fiber optic interfaces only Us...

Page 556: ...ds to automatically recover from the UDLD error disabled state Examples This example shows how to enable UDLD on all fiber optic interfaces Switch config udld enable You can verify your setting by entering the show udld privileged EXEC command Related Commands Command Description show udld Displays UDLD administrative and operational status for all ports or the specified port udld port Enables UDL...

Page 557: ...modes of operation normal the default and aggressive In normal mode UDLD detects unidirectional links due to misconnected interfaces on fiber optic connections In aggressive mode UDLD also detects unidirectional links due to one way traffic on fiber optic and twisted pair links and due to misconnected interfaces on fiber optic links For information about normal and aggressive modes see the Configu...

Page 558: ...D error disabled state Examples This example shows how to enable UDLD on an port Switch config interface gigabitethernet0 1 Switch config if udld port This example shows how to disable UDLD on a fiber optic interface despite the setting of the udld global configuration command Switch config interface gigabitethernet0 1 Switch config if no udld port You can verify your settings by entering the show...

Page 559: ...or the same reason if the problem has not been corrected Examples This example shows how to reset all interfaces disabled by UDLD Switch udld reset 1 ports shutdown by UDLD were reset You can verify your setting by entering the show udld privileged EXEC command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show running config Displays the running...

Page 560: ...nfiguration command to put the switch in VTP transparent mode Extended range VLANs are not learned by VTP and are not added to the VLAN database but when VTP mode is transparent VTP mode and domain name and all VLAN configurations are saved in the running configuration and you can save them in the switch startup configuration file When you save the VLAN and VTP configurations in the startup config...

Page 561: ...kup CRF mode for this VLAN disable backup CRF mode for this VLAN the default bridge bridge number type specifies the logical distributed source routing bridge the bridge that interconnects all logical rings having this VLAN as a parent VLAN in FDDI NET Token Ring NET and TrBRF VLANs The range is 0 to 15 The default bridge number is 0 no source routing bridge for FDDI NET TrBRF and Token Ring NET V...

Page 562: ...cumented in IEEE 802 10 The range is 1 to 4294967294 and the number must be unique within the administrative domain The default value is 100000 plus the VLAN ID number shutdown shuts down VLAN switching on the VLAN This command takes effect immediately Other commands take effect when you exit config vlan mode state specifies the VLAN state active means the VLAN is operational the default suspend m...

Page 563: ...d Token Ring NET VTP v1 mode is enabled name vlan name media tr net state suspend active said said value mtu mtu size bridge bridge number stp type ieee ibm tb vlan1 tb vlan1 id tb vlan2 tb vlan2 id Token Ring bridge relay function TrBRF VTP v2 mode is enabled name vlan name media tr net state suspend active said said value mtu mtu size bridge bridge number stp type ieee ibm auto tb vlan1 tb vlan1...

Page 564: ...an mode and to save the new VLAN in the switch startup configuration file Switch config vtp mode transparent Switch config vlan 2000 Switch config vlan end Switch copy running config startup config You can verify your setting by entering the show vlan privileged EXEC command VTP v1 mode is enabled No VLAN can have an STP type set to auto This rule applies to Ethernet FDDI FDDI NET Token Ring and T...

Page 565: ...witch 3030 Cisco IOS Commands vlan global configuration Related Commands Command Description show vlan Displays the parameters for all configured VLANs or one VLAN if the VLAN ID or name is specified in the administrative domain vlan VLAN configuration Configures normal range VLANs in the VLAN database ...

Page 566: ...1 id tb vlan2 tb vlan2 id Extended range VLANs with VLAN IDs from 1006 to 4094 cannot be added or modified by using these commands To add extended range VLANs use the vlan global configuration command to enter config vlan mode Note The switch supports only Ethernet ports You configure only FDDI and Token Ring media specific characteristics for VLAN Trunking Protocol VTP global advertisements to ot...

Page 567: ...s required when defining a TrCRF The range is 0 to 1005 ring ring number Optional Specify the logical ring for an FDDI Token Ring or TrCRF VLAN The range is 1 to 4095 said said value Optional Enter the security association identifier SAID as documented in IEEE 802 10 The range is 1 to 4294967294 and the number must be unique within the administrative domain state suspend active Optional Specify th...

Page 568: ... vlan1 id tb vlan2 tb vlan2 id Token Ring concentrator relay function TrCRF VTP v2 mode is enabled vlan vlan id name vlan name media tokenring state suspend active said said value mtu mtu size ring ring number parent parent vlan id bridge type srb srt are are number ste ste number backupcrf enable disable tb vlan1 tb vlan1 id tb vlan2 tb vlan2 id Token Ring NET VTP v1 mode is enabled vlan vlan id ...

Page 569: ...en Ring VLANs the default is no type specified The tb vlan1 id and tb vlan2 id variables are zero no translational bridging Command Modes VLAN configuration VTP v2 mode is enabled and you are configuring a TrBRF VLAN media type Specify a bridge number Do not leave this field blank VTP v1 mode is enabled No VLAN can have an STP type set to auto This rule applies to Ethernet FDDI FDDI NET Token Ring...

Page 570: ...e VLAN is deleted Deleting VLANs automatically resets to zero any other parent VLANs and translational bridging parameters that see the deleted VLAN When the no vlan vlan id bridge form is used the VLAN source routing bridge number returns to the default 0 The vlan vlan id bridge command is used only for FDDI NET and Token Ring NET VLANs and is ignored in other VLAN types When the no vlan vlan id ...

Page 571: ... shows how to add an Ethernet VLAN with default media characteristics The default includes a vlan name of VLANxxx where xxxx represents four numeric digits including leading zeros equal to the VLAN ID number The default media option is ethernet the state option is active The default said value variable is 100000 plus the VLAN ID the mtu size variable is 1500 the stp type option is ieee When you en...

Page 572: ...mmand to specify the access lists for IP or non IP traffic to match and use the action command to set whether a match causes the packet to be forwarded or dropped In VLAN access map configuration mode these commands are available action sets the action to be taken forward or drop default sets a command to its defaults exit exits from VLAN access map configuration mode match sets the values to matc...

Page 573: ...nditions and actions to it If no other entries already exist in the map this will be entry 10 Switch config vlan access map vac1 Switch config access map match ip address acl1 Switch config access map action forward This example shows how to delete VLAN map vac1 Switch config no vlan access map vac1 Related Commands Command Description action Sets the action for the VLAN access map entry match acc...

Page 574: ...al configuration command to enter config vlan mode You can also configure VLAN IDs 1 to 1005 by using the vlan global configuration command To return to the privileged EXEC mode from the VLAN configuration mode enter the exit command Note This command mode is different from other modes because it is session oriented When you add delete or modify VLAN parameters the changes are not applied until yo...

Page 575: ... on the switch and remains in VLAN configuration mode show displays VLAN database information show changes vlan id displays the differences between the VLAN database on the switch and the proposed VLAN database for all normal range VLAN IDs 1 to 1005 or the specified VLAN ID 1 to 1005 show current vlan id displays the VLAN database on the switch or on a selected VLAN 1 to 1005 show proposed vlan i...

Page 576: ...ges DELETED VLAN ISL Id 4 Name VLAN0004 Media Type Ethernet VLAN 802 10 Id 100004 State Operational MTU 1500 MODIFIED VLAN ISL Id 7 Current State Operational Modified State Suspended This example shows how to display the differences between VLAN 7 in the current database and the proposed database Switch vlan show changes 7 MODIFIED VLAN ISL Id 7 Current State Operational Modified State Suspended T...

Page 577: ... Commands vlan database Related Commands Command Description show vlan Displays the parameters for all configured VLANs in the administrative domain shutdown vlan Shuts down suspends local traffic on the specified VLAN vlan global configuration Enters config vlan mode for configuring normal range and extended range VLANs ...

Page 578: ...y in the middle of the configuration process we recommend that you completely define the VLAN access map before applying it to a VLAN For more information about VLAN map entries see the software configuration guide for this release Examples This example applies VLAN map entry map1 to VLANs 20 and 30 Switch config vlan filter map1 vlan list 20 30 This example shows how to delete VLAN map entry mac1...

Page 579: ...ands vlan filter Related Commands Command Description show vlan access map Displays information about a particular VLAN access map or all VLAN access maps show vlan filter Displays information about all VLAN filters or about a particular VLAN or VLAN access map vlan access map Creates a VLAN map entry for VLAN packet filtering ...

Page 580: ... Privileged EXEC Command History Examples This example shows how to immediately send VQP queries to the VMPS Switch vmps reconfirm You can verify your setting by entering the show vmps privileged EXEC command and examining the VMPS Action row of the Reconfirmation Status section The show vmps command shows the result of the last time the assignments were reconfirmed either because the reconfirmati...

Page 581: ...Modes Global configuration Command History Examples This example shows how to set the VQP client to reconfirm dynamic VLAN entries every 20 minutes Switch config vmps reconfirm 20 You can verify your setting by entering the show vmps privileged EXEC command and examining information in the Reconfirm Interval row Related Commands interval Reconfirmation interval for VQP client queries to the VLAN M...

Page 582: ...ults The default retry count is 3 Command Modes Global configuration Command History Examples This example shows how to set the retry count to 7 Switch config vmps retry 7 You can verify your setting by entering the show vmps privileged EXEC command and examining information in the Server Retry Count row Related Commands count Number of attempts to contact the VLAN Membership Policy Server VMPS by...

Page 583: ...mary in a subsequent command When using the no form without specifying the ipaddress all configured servers are deleted If you delete all servers when dynamic access ports are present the switch cannot forward packets from new sources on these ports because it cannot query the VMPS Examples This example shows how to configure the server with IP address 191 10 49 20 as the primary VMPS server The s...

Page 584: ... server This example shows how to delete the server with IP address 191 10 49 21 Switch config no vmps server 191 10 49 21 You can verify your setting by entering the show vmps privileged EXEC command and examining information in the VMPS Domain Server row Related Commands Command Description show vmps Displays VQP and VMPS information ...

Page 585: ...N configurations You cannot configure VLANs on the switch When a VTP client starts up it does not send VTP advertisements until it receives advertisements to initialize its VLAN database server Place the switch in VTP server mode A switch in VTP server mode is enabled for VTP and sends advertisements You can configure VLANs on the switch The switch can recover all the VLAN information in the curre...

Page 586: ...ode and VLAN configuration for the first 1005 VLANs are selected by VLAN database information and VLANs greater than 1005 are configured from the switch configuration file The vtp file filename cannot be used to load a new database it renames only the file in which the existing database is stored Follow these guidelines when configuring a VTP domain name The switch is in the no management domain s...

Page 587: ...uration file If extended range VLANs are configured on the switch and you attempt to set the VTP mode to server or client you receive an error message and the configuration is not allowed VTP can be set to either server or client mode only when dynamic VLAN creation is disabled Follow these guidelines when setting a VTP password Passwords are case sensitive Passwords should match on all switches i...

Page 588: ...o specify the name of the interface providing the VTP updater ID for this device Switch config vtp interface gigabitethernet This example shows how to set the administrative domain for the switch Switch config vtp domain OurDomainName This example shows how to place the switch in VTP transparent mode Switch config vtp mode transparent This example shows how to configure the VTP domain password Swi...

Page 589: ...ements The password can be an ASCII string from 1 to 32 characters The password is case sensitive pruning Enable pruning in the VTP administrative domain VTP pruning causes information about each pruning eligible VLAN to be removed from VTP updates if there are no stations belonging to that VLAN v2 mode Enable VLAN Trunking Protocol VTP Version 2 in the administrative domains client Place the swit...

Page 590: ... VLAN configuration changes on a switch in server mode If the receiving switch is in server mode or transparent mode the switch configuration is not changed Switches in transparent mode do not participate in VTP If you make VTP or VLAN configuration changes on a switch in transparent mode the changes are not propagated to other switches in the network If you make a change to the VTP or VLAN config...

Page 591: ...ive Passwords should match on all switches in the same domain When the no vtp password form of the command is used the switch returns to the no password state Follow these guidelines when enabling VTP pruning If you enable pruning on the VTP server it is enabled for the entire management domain Only VLANs included in the pruning eligible list can be pruned Pruning is supported with VTP Version 1 a...

Page 592: ...an vtp password private Setting device VLAN database password to private This example shows how to enable pruning in the proposed new VLAN database Switch vlan vtp pruning Pruning switched ON This example shows how to enable v2 mode in the proposed new VLAN database Switch vlan vtp v2 mode V2 mode enabled You can verify your settings by entering the show vtp status privileged EXEC command Related ...

Page 593: ...g to set the system back to the default configuration With password recovery disabled the user can still interrupt the boot process and change the password but the configuration file config text and the VLAN database file vlan dat are deleted For more information see the Cisco Catalyst Blade Switch 3030 Software Configuration Guide for this release You can access the boot loader through a switch c...

Page 594: ...the information in the BOOT environment variable if any If you supply an image name for the file url variable the boot command attempts to boot the specified image When you set boot loader boot command options they are executed immediately and apply only to the current boot loader session These settings are not saved for the next boot operation Filenames and directory names are case sensitive Exam...

Page 595: ...nd Reference 78 17262 01 Appendix A Cisco Catalyst Blade Switch 3030 Boot Loader Commands boot Related Commands Command Description set Sets the BOOT environment variable to boot a specific image when the BOOT keyword is appended to the command ...

Page 596: ...les switch cat flash new images info flash env_vars version_suffix lanbase 122 25 SEE version_directory cbs30x0 lanbase mz 122 25 SEE image_name cbs30x0 lanbase mz 122 25 SEE bin ios_image_file_size 4590080 total_image_file_size 6185984 image_feature LAYER_2 SSH 3DES MIN_DRAM_MEG 128 image_family CBS30x0 info_end BAUD 57600 MANUAL_BOOT no Related Commands filesystem Alias for a flash file system U...

Page 597: ...ot contain control characters spaces deletes slashes quotes semicolons or colons If you are copying a file to a new directory the directory must already exist Examples This example show how to copy a file at the root switch copy flash test1 text flash test4 text File flash test1 text successfully copied to flash test4 text You can verify that the file was copied by entering the dir filesystem boot...

Page 598: ...es This example shows how to delete two files switch delete flash test2 text flash test5 text Are you sure you want to delete flash test2 text y n y File flash test2 text deleted Are you sure you want to delete flash test5 text y n y File flash test2 text deleted You can verify that the files were deleted by entering the dir flash boot loader command Related Commands filesystem Alias for a flash f...

Page 599: ...01 39 env_vars 9 drwx 768 Mar 01 2002 23 11 42 html 16 rwx 1037 Mar 01 2002 00 01 11 config text 14 rwx 1099 Mar 01 2002 01 14 05 homepage htm 22 rwx 96 Mar 01 2002 00 01 39 system_env_vars 17 drwx 192 Mar 06 2002 23 22 03 cbs30x0 lanbase mz 122 25 SEE 15998976 bytes total 6397440 bytes free Table A 1 describes the fields in the display filesystem Alias for a flash file system Use flash for the sy...

Page 600: ...yst Blade Switch 3030 Boot Loader Commands dir Related Commands 1644045 Size of the file date Last modification date env_vars Filename Table A 1 dir Field Descriptions continued Field Description Command Description mkdir Creates one or more directories rmdir Removes one or more directories ...

Page 601: ... no arguments or keywords Defaults The flash file system is automatically initialized during normal system operation Command Modes Boot loader Command History Usage Guidelines During the normal boot process the flash file system is automatically initialized Use this command to manually initialize the flash file system For example you use this command during the recovery procedure for a lost or for...

Page 602: ...ed file system and destroy all data in that file system format filesystem Syntax Description Command Modes Boot loader Command History Usage Guidelines Caution Use this command with care it destroys all data on the file system and renders your system unusable filesystem Alias for a flash file system Use flash for the system board flash device Release Modification 12 2 25 SEE This command was intro...

Page 603: ...tch power and then reconnect the power Examples This example shows how to perform an extensive file system check on flash memory switch fsck test flash test Optional Initialize the file system code and perform extra POST on flash memory An extensive nondestructive memory test is performed on every byte that makes up the file system f Optional Initialize the file system code and perform a fast file...

Page 604: ...lp Use the help boot loader command to display the available commands help Syntax Description This command has no arguments or keywords Command Modes Boot loader Command History Usage Guidelines You can also use the question mark to display a list of available boot loader commands Release Modification 12 2 25 SEE This command was introduced ...

Page 605: ...cription Defaults No helper files are loaded Command Modes Boot loader Command History Usage Guidelines The load_helper command searches for loadable files only if the HELPER environment variable is set Filenames and directory names are case sensitive filesystem Alias for a flash file system Use flash for the system board flash device file url Path directory and a list of loadable helper files to ...

Page 606: ...nt Total heap utilization is 22 percent Total bytes 0xa9068 692328 Bytes used 0x26888 157832 Bytes available 0x827e0 534496 Alternate heap utilization is 0 percent Total alternate heap bytes 0x6fd000 7327744 Alternate heap bytes used 0x0 0 Alternate heap bytes available 0x6fd000 7327744 Table A 2 describes the fields in the display Release Modification 12 2 25 SEE This command was introduced Table...

Page 607: ...o make a directory called Saved_Configs switch mkdir flash Saved_Configs Directory flash Saved_Configs created This example shows how to make two directories switch mkdir flash Saved_Configs1 flash Test Directory flash Saved_Configs1 created Directory flash Test created You can verify that the directory was created by entering the dir filesystem boot loader command Related Commands filesystem Alia...

Page 608: ... files switch more flash new images info flash env_vars version_suffix lanbase 122 25 SEE version_directory cbs30x0 lanbase mz 122 25 SEE image_name cbs30x0 lanbase mz 122 25 SEE bin ios_image_file_size 4590080 total_image_file_size 6185984 image_feature LAYER_2 SSH 3DES MIN_DRAM_MEG 128 image_family CBS3030 info_end BAUD 57600 MANUAL_BOOT no Related Commands filesystem Alias for a flash file syst...

Page 609: ...quotes semicolons or colons Filenames are limited to 45 characters the name cannot contain control characters spaces deletes slashes quotes semicolons or colons Examples This example shows a file named config text being renamed to config1 text switch rename flash config text flash config1 text You can verify that the file was renamed by entering the dir filesystem boot loader command Related Comma...

Page 610: ...witch clearing the processor registers and memory reset Syntax Description This command has no arguments or keywords Command Modes Boot loader Command History Examples This example shows how to reset the system switch reset Are you sure you want to reset the system y n y System resetting Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description boot Loads an...

Page 611: ... a directory you must first delete all the files in the directory The switch prompts you for confirmation before deleting each directory Examples This example shows how to remove a directory switch rmdir flash Test You can verify that the directory was deleted by entering the dir filesystem boot loader command Related Commands filesystem Alias for a flash file system Use flash for the system board...

Page 612: ...he automatic boot process by pressing the Break key on the console after the flash file system has initialized HELPER filesystem file url A semicolon separated list of loadable files to dynamically load during the boot loader initialization Helper files extend or patch the functionality of the boot loader PS1 prompt A string that is used as the command line prompt in boot loader mode CONFIG_FILE f...

Page 613: ...ile even if the value is a null string A variable that is set to a null string for example is a variable with a value Many environment variables are predefined and have default values Command Modes Boot loader Command History Usage Guidelines Environment variables are case sensitive and must be entered as documented Environment variables that have values are stored in flash memory outside of the f...

Page 614: ...le filesystem file url global configuration command The HELPER_CONFIG_FILE environment variable can also be set by using the boot helper config file filesystem file url global configuration command The boot loader prompt string PS1 can be up to 120 printable characters except the equal sign Examples This example shows how to change the boot loader prompt switch set PS1 loader loader You can verify...

Page 615: ...files switch type flash new images info flash env_vars version_suffix lanbasem 122 25 SEE version_directory cbs30x0 lanbase mz 122 25 SEE image_name cbs30x0 lanbase mz 122 25 SEE bin ios_image_file_size 4590080 total_image_file_size 6185984 image_feature LAYER_2 SSH 3DES MIN_DRAM_MEG 128 image_family CBS3030 info_end BAUD 57600 MANUAL_BOOT no Related Commands filesystem Alias for a flash file syst...

Page 616: ... initialized HELPER A semicolon separated list of loadable files to dynamically load during the boot loader initialization Helper files extend or patch the functionality of the boot loader PS1 A string that is used as the command line prompt in boot loader mode CONFIG_FILE Resets the filename that Cisco IOS uses to read and write a nonvolatile copy of the system configuration BAUD Resets the rate ...

Page 617: ...reset by using the no boot enable break global configuration command The HELPER environment variable can also be reset by using the no boot helper global configuration command The CONFIG_FILE environment variable can also be reset by using the no boot config file global configuration command The BOOTHLPR environment variable can also be reset by using the no boot boothlpr global configuration comm...

Page 618: ...display the boot loader version version Syntax Description This command has no arguments or keywords Command Modes Boot loader Command History Examples This example shows how to display the boot loader version switch version CBS30x0 Boot Loader CBS3030 HBOOT M Version 12 2 25 SEE Compiled Fri 18 Nov 05 00 35 by antonino switch Release Modification 12 2 25 SEE This command was introduced ...

Page 619: ...enabled only under the guidance of Cisco technical support staff Caution Because debugging output is assigned high priority in the CPU process it can render the system unusable For this reason use the debug commands only to troubleshoot specific problems or during troubleshooting sessions with Cisco technical support staff It is best to use the debug commands during periods of lower network traffi...

Page 620: ... when auto QoS is enabled Switch debug auto qos AutoQoS debugging is on Switch configure terminal Enter configuration commands one per line End with CNTL Z Switch config interface gigabitethernet0 1 Switch config if auto qos voip cisco phone 21 29 41 mls qos map cos dscp 0 8 16 26 32 46 48 56 21 29 41 mls qos 21 29 42 no mls qos srr queue input cos map 21 29 42 no mls qos srr queue output cos map ...

Page 621: ...e output dscp map queue 2 threshold 3 56 57 58 59 60 61 62 63 21 29 48 mls qos srr queue output dscp map queue 3 threshold 3 16 17 18 19 20 21 22 23 21 29 48 mls qos srr queue output dscp map queue 3 threshold 3 32 33 34 35 36 37 38 39 21 29 49 mls qos srr queue output dscp map queue 4 threshold 1 8 21 29 49 mls qos srr queue output dscp map queue 4 threshold 2 9 10 11 12 13 14 15 21 29 49 mls qos...

Page 622: ...C Command History Usage Guidelines The undebug backup command is the same as the no debug backup command Related Commands all Display all backup interface debug messages errors Display backup interface error or exception debug messages events Display backup interface event debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays inform...

Page 623: ...e in the command line help strings the redundancy keyword is not supported Command Default Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug dot1x command is the same as the no debug dot1x command all Display all IEEE 802 1x authentication debug messages errors Display IEEE 802 1x error debug messages events Display IEEE 802 1x event debug messages fe...

Page 624: ...rmation about the types of debugging that are enabled For syntax information see the Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show dot1x Displays IEEE 802 1xstatistics administrative status and operational status for the switch or for the specified ...

Page 625: ...sage aggregation debug messages all Display all DTP debug messages decision Display the DTP decision table debug messages events Display the DTP event debug messages oserrs Display DTP operating system related error debug messages packets Display DTP packet processing debug messages queue Display DTP packet queueing debug messages states Display DTP state transition debug messages timers Display D...

Page 626: ...ors events md5 packets peer sm Syntax Description Command Default Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug dot1x command is the same as the no debug dot1x command all Display all EAP debug messages authenticator Display authenticator debug messages errors Display EAP error debug messages events Display EAP event debug messages md5 Display EAP...

Page 627: ...Displays information about the types of debugging that are enabled For syntax information see the Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show eap Displays EAP registration and session information for the switch or for the specified port ...

Page 628: ...hannel all detail error event idb Syntax Description Note Though visible in the command line help strings the linecard keyword is not supported Defaults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines If you do not specify a keyword all debug messages appear The undebug etherchannel command is the same as the no debug etherchannel command all Optional Display a...

Page 629: ...iption show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show etherchannel Displays EtherChannel information for the channel ...

Page 630: ...isabled Command Modes Privileged EXEC Command History Usage Guidelines If you do not specify a keyword all debug messages appear The undebug interface command is the same as the no debug interface command interface id Display debug messages for the specified physical port identified by type switch number module number port for example gigabitethernet 0 2 null interface number Display debug message...

Page 631: ...tion show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show etherchannel Displays EtherChannel information for the channel ...

Page 632: ...s command has no arguments or keywords Defaults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug ip igmp filter command is the same as the no debug ip igmp filter command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging that are enabled F...

Page 633: ...iption This command has no arguments or keywords Defaults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug ip igmp max groups command is the same as the no debug ip igmp max groups command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging ...

Page 634: ...p igmp snooping command Related Commands group Optional Display IGMP snooping group activity debug messages management Optional Display IGMP snooping management activity debug messages querier Optional Display IGMP snooping querier debug messages router Optional Display IGMP snooping router activity debug messages timer Optional Display IGMP snooping timer event debug messages Release Modification...

Page 635: ... as the no debug lacp command Related Commands all Optional Display all LACP debug messages event Optional Display LACP event debug messages fsm Optional Display LACP finite state machine debug messages misc Optional Display miscellaneous LACP debug messages packet Optional Display LACP packet debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debu...

Page 636: ...Modes Privileged EXEC Command History Usage Guidelines The undebug mac notification command is the same as the no debug mac notification command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides a...

Page 637: ...abled Command Modes Privileged EXEC Command History Usage Guidelines The undebug matm command is the same as the no debug matm command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description debug platform matm Displays information about platform dependent MAC address management show debugging Displays information about the types of debugging that are enab...

Page 638: ...The undebug matm move update command is the same as the no debug matm move update command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description mac address table move update receive transmit Configures MAC address table move update feature on the switch show debugging Displays information about the types of debugging that are enabled For syntax informati...

Page 639: ...led SPAN error debug messages idb update Display SPAN interface description block IDB update trace debug messages info Display SPAN informational tracing debug messages list Display SPAN port and VLAN list tracing debug messages notifications Display SPAN notification debug messages platform Display SPAN platform tracing debug messages requests Display SPAN request debug messages snmp Display SPAN...

Page 640: ...s the no debug mvrdbg command Related Commands all Display all MVR activity debug messages events Display MVR event handling debug messages igmpsn Display MVR Internet Group Management Protocol IGMP snooping activity debug messages management Display MVR management activity debug messages ports Display MVR port debug messages Release Modification 12 2 25 SEE This command was introduced Command Des...

Page 641: ...words Defaults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug nvram command is the same as the no debug nvram command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2...

Page 642: ...the no debug pagp command Related Commands all Optional Display all PAgP debug messages event Optional Display PAgP event debug messages fsm Optional Display PAgP finite state machine debug messages misc Optional Display miscellaneous PAgP debug messages packet Optional Display PAgP packet debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debuggin...

Page 643: ...ry Usage Guidelines The undebug platform acl command is the same as the no debug platform acl command Related Commands all Display all ACL manager debug messages exit Display ACL exit related debug messages label Display ACL label related debug messages main Display the main or important ACL debug messages vacl Display VLAN ACL related debug messages vlmap Display ACL VLAN map related debug messag...

Page 644: ...and has no arguments or keywords Command Default Platform backup interface debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug platform backup interface command is the same as the no platform debug backup interface command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays informatio...

Page 645: ... about packets received by the broadcast queue cbt to spt q Display debug messages about packets received by the core based tree to shortest path tree cbt to spt queue cpuhub q Display debug messages about packets received by the CPU heartbeat queue host q Display debug messages about packets received by the host queue icmp q Display debug messages about packets received by the Internet Control Me...

Page 646: ...command is the same as the no debug platform cpu queues command Related Commands Command Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Manage...

Page 647: ...Guidelines The undebug platform dot1x command is the same as the no debug platform dot1x command Related Commands initialization Display IEEE 802 1x authentication initialization sequence debug messages interface configuration Display IEEE 802 1x interface configuration related debug messages rpc Display IEEE 802 1x remote procedure call RPC request debug messages Release Modification 12 2 25 SEE ...

Page 648: ...e Guidelines The undebug platform etherchannel command is the same as the no debug platform etherchannel command Related Commands init Display EtherChannel module initialization debug messages link up Display EtherChannel link up and link down related debug messages rpc Display EtherChannel remote procedure call RPC debug messages warnings Display EtherChannel warning debug messages Release Modifi...

Page 649: ...bug messages appear The undebug platform forw tcam command is the same as the no debug platform forw tcam command Related Commands adjustment Optional Display TCAM manager adjustment debug messages allocate Optional Display TCAM manager allocation debug messages audit Optional Display TCAM manager audit messages error Optional Display TCAM manager error messages move Optional Display TCAM manager ...

Page 650: ...ted Commands all Optional Display all DHCP debug messages error Optional Display DHCP error debug messages event Optional Display DHCP event debug messages packet Optional Display DHCP packet related debug messages rpc Optional Display DHCP remote procedure call RPC request debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show ip dhcp snooping Display...

Page 651: ...ent debug messages group Display IGMP snooping group debug messages mgmt Display IGMP snooping management debug messages pak ip address error ipopt leave query report rx svi tx Display IGMP snooping packet event debug messages The keywords have these meanings ip address IP address of the IGMP group error Display IGMP snooping packet error debug messages ipopt Display IGMP snooping IP bridging opti...

Page 652: ...snooping command is the same as the no debug platform ip igmp snooping command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description debug ip igmp snooping Displays information about platform independent IGMP snooping activity show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release...

Page 653: ...not supported Defaults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug platform led command is the same as the no debug platform led command Related Commands generic Display LED generic action debug messages signal Display LED signal bit map debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debuggin...

Page 654: ...disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug platform matm command is the same as the no debug platform matm command aging Display MAC address aging debug messages all Display all platform MAC address management event debug messages ec aging Display EtherChannel address aging related debug messages errors Display MAC address management error messages learning...

Page 655: ...debug matm Displays information about platform independent MAC address management show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management ...

Page 656: ...d Command Modes Privileged EXEC Command History Usage Guidelines The undebug platform messaging application command is the same as the no debug platform messaging application command Related Commands all Display all application messaging debug messages badpak Display bad packet debug messages cleanup Display clean up debug messages events Display event debug messages memerr Display memory error de...

Page 657: ...nterface crossover auto MDIX debug messages cablediag Display PHY cable diagnostic debug messages dual purpose Display PHY dual purpose event debug messages flcd configure ipc iter trace Display PHY FLCD debug messages The keywords have these meanings configure Display PHY configure debug messages ipc Display Interprocess Communication Protocol IPC debug messages iter Display iter debug messages t...

Page 658: ...and is the same as the no debug platform phy command Related Commands Command Description show debugging Displays information about the types of debugging that are enabled For syntax information see the Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management ...

Page 659: ...bug messages hpm events Display platform port manager event debug messages idb events Display interface descriptor block IDB related events debug messages if numbers Display interface number translation event debug messages ios events Display Cisco IOS event debug messages link status Display interface link detection event debug messages platform Display port manager function event debug messages ...

Page 660: ...d History Usage Guidelines The undebug platform pm command is the same as the no debug platform pm command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging that are enabled For syntax information see the Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Confi...

Page 661: ...ebugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug platform port asic command is the same as the no debug platform port asic command Related Commands interrupt Display port ASIC interrupt related function debug messages periodic Display port ASIC periodic function call debug messages read Display port ASIC read debug messages write Display port ASIC wri...

Page 662: ... platform port security command is the same as the no debug platform port security command Related Commands add Display secure address addition debug messages aging Display secure address aging debug messages all Display all port security debug messages delete Display secure address deletion debug messages errors Display port security error debug messages rpc Display remote procedure call RPC debu...

Page 663: ...orm qos acl tcam command is the same as the no debug platform qos acl tcam command Related Commands all Display all QoS and ACL TCAM QATM manager debug messages ctcam Display Cisco TCAM CTCAM related events debug messages errors Display QATM error related events debug messages labels Display QATM label related events debug messages mask Display QATM mask related events debug messages rpc Display Q...

Page 664: ...mmand has no arguments or keywords Defaults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug platform remote commands command is the same as the no debug platform remote commands command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging th...

Page 665: ...e no debug platform resource manager command Related Commands all Display all resource manager debug messages dm Display destination map debug messages erd Display equal cost route descriptor table debug messages errors Display error debug messages madmed Display the MAC address descriptor table and multi expansion descriptor table debug messages sd Display the station descriptor table debug messa...

Page 666: ...ion This command has no arguments or keywords Defaults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug platform snmp command is the same as the no debug platform snmp command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging that are enab...

Page 667: ...is command has no arguments or keywords Defaults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug platform span command is the same as the no debug platform span command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging that are enabled Fo...

Page 668: ...eged EXEC Command History Usage Guidelines The undebug platform supervisor asic command is the same as the no debug platform supervisor asic command Related Commands all Display all supervisor ASIC event debug messages errors Display the supervisor ASIC error debug messages receive Display the supervisor ASIC receive debug messages send Display the supervisor ASIC send debug messages Release Modif...

Page 669: ...and History Usage Guidelines The undebug platform sw bridge command is the same as the no debug platform sw bridge command Related Commands broadcast Display broadcast data debug messages control Display protocol packet debug messages multicast Display multicast data debug messages packet Display sent and received data debug messages unicast Display unicast data debug messages Release Modification...

Page 670: ...s no debug platform tcam read reg ssram tcam no debug platform tcam search no debug platform tcam write forw ram reg tcam Syntax Description log l2 acl input output local qos Display Layer 2 field based CAM look up type debug messages The keywords have these meanings acl input output Display input or output ACL look up debug messages local Display local forwarding look up debug messages qos Displa...

Page 671: ... Commands search Display supervisor initiated TCAM search results debug messages write forw ram reg tcam Display TCAM write debug messages The keywords have these meanings forw ram Display forwarding RAM write debug messages reg Display TCAM register write debug messages tcam Display TCAM write debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show deb...

Page 672: ...d EXEC Command History Usage Guidelines The undebug platform udld command is the same as the no debug platform udld command Related Commands all Optional Display all UDLD debug messages error Optional Display error condition debug messages rpc events messages Optional Display UDLD remote procedure call RPC debug messages The keywords have these meanings events Display UDLD RPC events messages Disp...

Page 673: ...Command History Usage Guidelines The undebug platform vlan command is the same as the no debug platform vlan command Related Commands errors Display VLAN error debug messages mvid Display mapped VLAN ID allocations and free debug messages rpc Display remote procedure call RPC debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays inf...

Page 674: ...tion Note Though visible in the command line help strings the scp and pvlan keywords are not supported Defaults Debugging is disabled Command Modes Privileged EXEC Command History all Display all PM debug messages assert Display assert debug messages card Display line card related events debug messages etherchnl Display EtherChannel related events debug messages hatable Display Host Access Table e...

Page 675: ...s the same as the no debug pm command Related Commands Command Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management ...

Page 676: ...ults Debugging is disabled Command Modes Privileged EXEC Command History Usage Guidelines The undebug port security command is the same as the no debug port security command Related Commands Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Releas...

Page 677: ...ileged EXEC Command History Usage Guidelines The undebug qos manager command is the same as the no debug qos manager command Related Commands all Display all QoS manager debug messages event Display QoS manager related event debug messages verbose Display QoS manager detailed debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays inf...

Page 678: ...messages bpdu Display spanning tree bridge protocol data unit BPDU debug messages bpdu opt Display optimized BPDU handling debug messages config Display spanning tree configuration change debug messages etherchannel Display EtherChannel support debug messages events Display spanning tree topology event debug messages exceptions Display spanning tree exception debug messages general Display general...

Page 679: ...ug spanning tree command Related Commands Command Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show spanning tree Displays spanni...

Page 680: ...EXEC Command History Usage Guidelines The undebug spanning tree backbonefast command is the same as the no debug spanning tree backbonefast command Related Commands detail Optional Display detailed BackboneFast debug messages exceptions Optional Display spanning tree BackboneFast exception debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debuggin...

Page 681: ...ommand History Usage Guidelines The undebug spanning tree bpdu command is the same as the no debug spanning tree bpdu command Related Commands receive Optional Display the nonoptimized path for received BPDU debug messages transmit Optional Display the nonoptimized path for sent BPDU debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Disp...

Page 682: ...d EXEC Command History Usage Guidelines The undebug spanning tree bpdu opt command is the same as the no debug spanning tree bpdu opt command Related Commands detail Optional Display detailed optimized BPDU handling debug messages packet Optional Display packet level optimized BPDU handling debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debuggi...

Page 683: ...ultiple spanning tree MST region and a single spanning tree region running Rapid Spanning Tree Protocol RSTP An MST region and a single spanning tree region running 802 1D An MST region and another MST region with a different configuration bpdu rx Debug the received MST bridge protocol data units BPDUs bpdu tx Debug the sent MST BPDUs errors Debug MSTP errors flush Debug the port flushing mechanis...

Page 684: ...ebug spanning tree mstp command Related Commands Command Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show spanning tree Displays...

Page 685: ...ng tree switch command all Display all spanning tree switch debug messages errors Display debug messages for the interface between the spanning tree software module and the port manager software module flush Display debug messages for the shim flush operation general Display general event debug messages helper Display spanning tree helper task debug messages Helper tasks handle bulk spanning tree ...

Page 686: ...nd Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show spanning tree Displays spanning tree state information ...

Page 687: ...nd Modes Privileged EXEC Command History Usage Guidelines The undebug spanning tree uplinkfast command is the same as the no debug spanning tree uplinkfast command Related Commands exceptions Optional Display spanning tree UplinkFast exception debug messages Release Modification 12 2 25 SEE This command was introduced Command Description show debugging Displays information about the types of debug...

Page 688: ... no debug sw vlan command badpmcookies Display debug messages for VLAN manager incidents of bad port manager cookies cfg vlan bootup cli Display config vlan debug messages The keywords have these meanings bootup Display messages when the switch is booting up cli Display messages when the command line interface CLI is in config vlan mode events Display debug messages for VLAN manager events ifs See...

Page 689: ... enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show vlan Displays the parameters for all configured VLANs or one VLAN if the VLAN name or ID is specified in the administrative domain show vtp Displays general informa...

Page 690: ... no debug sw vlan ifs command When selecting the file read operation Operation 1 reads the file header which contains the header verification word and the file version number Operation 2 reads the main body of the file which contains most of the domain and VLAN information Operation 3 reads type length version TLV descriptor structures Operation 4 reads TLV data open read write Display VLAN manage...

Page 691: ...rmation about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show vlan Displays the parameters for all configured VLANs or one VLAN if the VLAN name or ID is specified in the administra...

Page 692: ... History Usage Guidelines The undebug sw vlan notification command is the same as the no debug sw vlan notification command accfwdchange Display debug messages for VLAN manager notification of aggregated access interface spanning tree forward changes allowedvlancfgchange Display debug messages for VLAN manager notification of changes to the allowed VLAN configuration fwdchange Display debug messag...

Page 693: ... information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show vlan Displays the parameters for all configured VLANs or one VLAN if the VLAN name or ID is specified in the admin...

Page 694: ...ros in the VTP pruning code events Display debug messages for general purpose logic flow and detailed VTP messages generated by the VTP_LOG_RUNTIME macro in the VTP code packets Display debug messages for the contents of all incoming VTP packets that have been passed into the VTP code from the IOS VTP platform dependent layer except for pruning packets pruning packets xmit Display debug messages g...

Page 695: ...w debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show vtp Displays general information about VTP management domain status and counters ...

Page 696: ...eletions Processing of configuration commands Processing of link up and link down indications For debug udld packets these debugging messages appear General packet processing program flow on receipt of an incoming packet Indications of the contents of the various pieces of packets received such as type length versions TLVs as they are examined by the packet reception code Packet transmission attem...

Page 697: ...Commands Command Description show debugging Displays information about the types of debugging that are enabled For syntax information select Cisco IOS Release 12 2 Configuration Guides and Command References Cisco IOS Configuration Fundamentals Configuration Guide Release 12 2 System Management Troubleshooting and Fault Management show udld Displays UDLD administrative and operational status for a...

Page 698: ...no debug vqpc command Related Commands all Optional Display all VQP client debug messages cli Optional Display the VQP client command line interface CLI debug messages events Optional Display VQP client event debug messages learn Optional Display VQP client address learning debug messages packet Optional Display VQP client packet information debug messages Release Modification 12 2 25 SEE This com...

Page 699: ...Show Platform Commands This appendix describes the show platform privileged EXEC commands that have been created or changed for use with the switch These commands display information helpful in diagnosing and resolving internetworking problems and should be used only under the guidance of Cisco technical support staff ...

Page 700: ...e lines that contain Output appear interface interface id Display per interface ACL manager information for the specified interface The interface can be a physical interface or a VLAN label label number detail Display per label ACL manager information The label number range is 0 to 255 The keyword has this meaning detail Optional Display detailed ACL manager label information statistics asic numbe...

Page 701: ...while troubleshooting a problem Do not use this command unless a technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear interface id Optional Display backup information for all interfaces or the specified interface The interface can be a physical i...

Page 702: ...technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear config output Display the output of the last auto configuration application default Display whether or not the system is running the default configuration running Display a snapshot of the back...

Page 703: ...h a technical support representative while troubleshooting a problem Do not use this command unless a technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear flags Display EtherChannel port flags time stamps Display EtherChannel time stamps begin Op...

Page 704: ... 0 to 7 ip src ip dst ip Optional but required for IP packets Source and destination IP addresses in dotted decimal notation frag field Optional The IP fragment field for a fragmented IP packet The range is 0 to 65535 dscp dscp Optional Differentiated Services Code Point DSCP field in the IP header The range is 0 to 63 l4protocol id The numeric value of the Layer 4 protocol field in the IP header ...

Page 705: ... technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear Examples For examples of the show platform forward command output displays and what they mean see the Troubleshooting chapter of the software configuration guide for this release include Optio...

Page 706: ...P snooping counters flood vlan vlan id Display IGMP snooping flood information The keyword has this meaning vlan vlan id Optional Display flood information for the specified VLAN The range is 1 to 4094 group ip address Display the IGMP snooping multicast group information where ip address is the IP address of the group hardware Display IGMP snooping information loaded into hardware retry count loc...

Page 707: ...ines You should use this command only when you are working directly with a technical support representative while troubleshooting a problem Do not use this command unless a technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear ...

Page 708: ...nter exclude output the lines that contain output do not appear but the lines that contain Output appear acl Display access control list ACL Layer 4 operators information pacl port asic Display port ACL Layer 4 operators information The keyword has this meaning port asic Optional Port ASIC number qos port asic Display quality of service QoS Layer 4 operators information The keyword has this meanin...

Page 709: ... a technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear aging array Optional Display the MAC address table aging array hash table Optional Display the MAC address table hash table mac address mac address Optional Display the MAC address table MAC...

Page 710: ...t the lines that contain output do not appear but the lines that contain Output appear application incoming outgoing summary Display application message information The keywords have these meanings incoming Optional Display only information about incoming application messaging requests outgoing Optional Display only information about incoming application messaging requests summary Optional Display...

Page 711: ... support representative while troubleshooting a problem Do not use this command unless a technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear session session number Optional Display SPAN information for the specified SPAN session The range is 1 t...

Page 712: ...ld use this command only when you are working directly with a technical support representative while troubleshooting a problem Do not use this command unless a technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear begin Optional Display begins wit...

Page 713: ...ntain output do not appear but the lines that contain Output appear counters Display module counters information group masks Display EtherChannel group masks information idbs active idbs deleted idbs Display interface data block IDB information The keywords have these meanings active idbs Display active IDB information deleted idbs Display deleted and leaked IDB information if numbers Display inte...

Page 714: ... vlan id asic number asic number stats drop enqueue miscellaneous supervisor asic number port number asic number transmit port fifo queue supervisor sram asic number port number asic number vct asic number port number asic number version begin exclude include expression Syntax Description cpu queue map table asic number port number asic number Display the CPU queue map table entries The keywords h...

Page 715: ...the learning cache The keywords have these meanings asic number Optional Display information for the specified ASIC The range is 0 to 1 port number Optional Display information for the specified port and ASIC number The range is 0 to 27 where 0 is the supervisor and 1 to 25 are the ports mac info asic number port number asic number Display the contents of the MAC information register The keywords ...

Page 716: ...fer queue Display the buffer queue information port fifo Display the port FIFO information supervisor sram Display the supervisor static RAM SRAM information asic number Optional Display information for the specified ASIC The range is 0 to 1 port number Optional Display information for the specified port and ASIC number The range is 0 to 27 where 0 is the supervisor and 1 to 25 are the ports span ...

Page 717: ...range is 0 to 1 port number Optional Display information for the specified port and ASIC number The range is 0 to 27 where 0 is the supervisor and 1 to 25 are the ports vct asic number port number asic number Display the VLAN compression table entries for the specified ASIC or for the specified port and ASIC The keywords have these meanings asic number Optional Display information for the specifie...

Page 718: ...ou should use this command only when you are working directly with your technical support representative while troubleshooting a problem Do not use this command unless your technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear ...

Page 719: ...hen you are working directly with your technical support representative while troubleshooting a problem Do not use this command unless your technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear begin Optional Display begins with the line that matc...

Page 720: ...ve For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear label asic number Display QoS label maps for the specified ASIC Optional For asic number the range is 0 to 1 policer parameters asic number port alloc number asic number Display policer information The keywords have these meanings parameters asic number Display parameter ...

Page 721: ...ex The range is 0 to 65535 med index number Display the multi expansion descriptor table for the specified index The keyword has this meaning index number Optional Display the specified index The range is 0 to 65535 mod Display the resource manager module information msm hash table vlan vlan id mac address mac address vlan vlan id Display the MAC address descriptor table and the station descriptor...

Page 722: ...chnical support representative while troubleshooting a problem Do not use this command unless your technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear include Optional Display includes lines that match the specified expression expression Express...

Page 723: ...is command only when you are working directly with your technical support representative while troubleshooting a problem Do not use this command unless your technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear begin Optional Display begins with t...

Page 724: ...ess your technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear synchronization detail vlan vlan id Display spanning tree state synchronization information The keywords have these meanings detail Optional Display detailed spanning tree information ...

Page 725: ...hnical support representative while troubleshooting a problem Do not use this command unless your technical support representative asks you to do so Expressions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear vlan id Display spanning tree instance information for the specified VLAN The range is 1 to 409...

Page 726: ...e include expression show platform tcam table local asic number detail invalid index number detail invalid invalid num number detail invalid invalid invalid num number detail invalid invalid begin exclude include expression show platform tcam table mac address asic number detail invalid index number detail invalid invalid num number detail invalid invalid invalid num number detail invalid invalid ...

Page 727: ... all Display all the TCAM tables local Display the local table mac address Display the MAC address table qos Display the QoS table station Display the station table vlan list Display the VLAN list table usage Display the CAM and forwarding table usage asic number detail invalid index number detail invalid invalid num number detail invalid invalid invalid num number detail invalid invalid Display i...

Page 728: ...ssions are case sensitive For example if you enter exclude output the lines that contain output do not appear but the lines that contain Output appear misc Display miscellaneous VLAN module information mvid Display the mapped VLAN ID MVID allocation information prune Display the platform maintained pruning database refcount Display the VLAN lock module wise reference counts rpc receive transmit Di...

Page 729: ...28 allowed VLANs 2 513 apply command 2 547 archive download sw command 2 8 archive tar command 2 11 archive upload sw command 2 14 audience xv authentication failed VLAN See dot1x auth fail vlan auth fail max attempts See dot1x auth fail max attempts auth fail vlan See dot1x auth fail vlan authorization state of controlled port 2 78 autonegotiation of duplex mode 2 86 auto qos voip command 2 16 B ...

Page 730: ...54 A 1 broadcast storm control 2 488 C cat boot loader command A 4 caution description xvi channel group command 2 28 channel protocol command 2 31 Cisco SoftPhone auto QoS configuration 2 16 trusting packets sent from 2 213 class command 2 32 class map command 2 34 class maps creating 2 34 defining the match criteria 2 175 displaying 2 275 class of service See CoS clear dot1x command 2 36 clear e...

Page 731: ... tcam command B 31 debug platform ip dhcp command B 32 debug platform ip igmp snooping command B 33 debug platform led command B 35 debug platform matm command B 36 debug platform messaging application command B 38 debug platform phy command B 39 debug platform pm command B 41 debug platform port asic command B 43 debug platform port security command B 44 debug platform qos acl tcam command B 45 d...

Page 732: ...reauth req command 2 74 dot1x max req command 2 76 dot1x pae command 2 77 dot1x port control command 2 78 dot1x re authenticate command 2 80 dot1x reauthentication command 2 81 dot1x timeout command 2 82 dropping packets with ACL matches 2 6 DSCP to CoS map 2 187 DSCP to DSCP mutation map 2 187 DTP 2 499 DTP flap error detection for 2 87 error recovery timer 2 89 DTP negotiation 2 500 duplex comma...

Page 733: ... VLANs and allowed VLAN list 2 513 and pruning eligible list 2 513 configuring 2 532 extended system ID for STP 2 443 F file name VTP 2 557 files deleting 2 51 flash_init boot loader command A 9 Flex Links configuring 2 493 displaying 2 310 flowcontrol command 2 92 format boot loader command A 10 forwarding packets with ACL matches 2 6 forwarding results display C 6 frame forwarding information di...

Page 734: ...BIC error detection for 2 87 error recovery timer 2 89 ip access group command 2 100 ip address command 2 102 IP addresses setting 2 102 IP address matching 2 173 IP DHCP snooping See DHCP snooping ip dhcp snooping command 2 104 ip dhcp snooping information option allow untrusted command 2 107 ip dhcp snooping information option command 2 105 ip dhcp snooping information option format remote id co...

Page 735: ...access lists 2 52 MAC addresses displaying aging time 2 346 all 2 344 dynamic 2 350 MAC address table move updates 2 354 notification settings 2 356 number of addresses in a VLAN 2 348 per interface 2 352 per VLAN 2 360 static 2 358 static and dynamic entries 2 342 dynamic aging time 2 155 deleting 2 39 displaying 2 350 enabling MAC address notification 2 158 enabling MAC address table move update...

Page 736: ...t dscp map command 2 203 mls qos srr queue input priority queue command 2 205 mls qos srr queue input threshold command 2 207 mls qos srr queue output cos map command 2 209 mls qos srr queue output dscp map command 2 211 mls qos trust command 2 213 mls qos vlan based command 2 215 mode MVR 2 222 modes commands 1 1 monitor session command 2 217 more boot loader command A 16 MSTP displaying 2 396 in...

Page 737: ...aces 2 225 debug messages display B 22 displaying 2 379 displaying interface information 2 381 members displaying 2 383 mvr global configuration command 2 222 mvr interface configuration command 2 225 mvr vlan group command 2 226 N native VLANs 2 513 nonegotiate DTP messaging 2 500 nonegotiate speed 2 480 non IP protocols denying 2 52 forwarding 2 232 non IP traffic access lists 2 153 non IP traff...

Page 738: ...authenticating IEEE 802 1x enabled ports 2 80 resetting configurable IEEE 802 1x parameters 2 67 switch to authentication server retransmission time 2 82 switch to client frame retransmission number 2 74 to 2 76 switch to client retransmission time 2 82 port channel load balance command 2 242 Port Fast for spanning tree 2 472 port ranges defining 2 49 ports debugging B 56 ports protected 2 511 por...

Page 739: ...allocations 2 366 displaying CoS input queue threshold map 2 370 displaying DSCP input queue threshold map 2 370 displaying queueing strategy 2 366 displaying settings for 2 364 enabling the priority queue 2 205 mapping CoS values to a queue and threshold 2 201 mapping DSCP values to a queue and threshold 2 203 setting WTD thresholds 2 207 maps defining 2 187 2 201 2 203 2 209 2 211 displaying 2 3...

Page 740: ...2 275 show controllers cpu interface command 2 276 show controllers ethernet controller command 2 278 show controllers tcam command 2 285 show controller utilization command 2 287 show current command 2 547 show dot1x command 2 289 show dtp 2 293 show eap command 2 295 show env command 2 298 show errdisable detect command 2 299 show errdisable flap values command 2 301 show errdisable recovery com...

Page 741: ...orm port security command C 21 show platform qos command C 22 show platform resource manager command C 23 show platform snmp counters command C 25 show platform spanning tree command C 26 show platform stp instance command C 27 show platform tcam command C 28 show platform vlan command C 30 show policy map command 2 390 show port security command 2 392 show proposed command 2 547 show spanning tre...

Page 742: ...t interface configuration command 2 472 spanning tree port priority command 2 468 Spanning Tree Protocol See STP spanning tree transmit hold count command 2 474 spanning tree uplinkfast command 2 475 spanning tree vlan command 2 477 speed command 2 480 srr queue bandwidth limit command 2 482 srr queue bandwidth shape command 2 484 srr queue bandwidth share command 2 486 SSH configuring version 2 1...

Page 743: ...ports displaying 2 310 switchport trunk command 2 513 switchport voice vlan command 2 516 system message logging save message to flash 2 149 system mtu command 2 518 T tar files creating listing and extracting 2 11 traceroute mac command 2 520 traceroute mac ip command 2 523 trunking VLAN mode 2 498 trunk mode 2 498 trunk ports 2 498 trunks to non DTP device 2 499 trusted boundary for QoS 2 213 tr...

Page 744: ...guring 2 532 2 538 debug messages display ISL B 74 VLAN IOS file system error tests B 72 VLAN manager activity B 70 VTP B 76 displaying configurations 2 409 extended range 2 532 MAC addresses displaying 2 360 number of 2 348 media types 2 534 2 540 normal range 2 532 2 538 restarting 2 424 saving the configuration 2 532 shutting down 2 424 SNMP traps for VTP 2 426 2 429 suspending 2 424 variables ...

Page 745: ...561 file name 2 557 mode 2 557 2 561 password 2 557 2 561 counters display fields 2 420 displaying information 2 419 enabling pruning 2 557 2 561 Version 2 2 557 2 561 mode 2 557 2 561 pruning 2 557 2 561 saving the configuration 2 532 2 542 statistics 2 419 status 2 419 status display fields 2 421 vtp global configuration command 2 557 vtp VLAN configuration command 2 561 ...

Page 746: ...Index IN 18 Cisco Catalyst Blade Switch 3030 Command Reference 78 17262 01 ...

Reviews: