background image

 

 

 

 

 

 

 

 

 

FortiSwitch-548B 

Version  5.2.0.2 

Administration  Guide 

 

 

 

 

 

 

 

 

 

 

 

 

 

Summary of Contents for FortiSwitch-548B v. 5.2.0.2

Page 1: ...FortiSwitch 548B Version 5 2 0 2 Administration Guide...

Page 2: ...s of Fortinet Inc and other Fortinet names herein may also be trademarks of Fortinet All other product or company names may be trademarks of their respective owners Fortinet reserves the right to chan...

Page 3: ...tion and Quick Startup 13 3 1 Package Contents 13 3 2 Switch Installation 14 3 3 Installing the Switch in a Rack 15 3 4 Quick Starting the Switch 16 3 5 System Information Setup 17 4 Console and Telne...

Page 4: ...8 DHCP Snooping Commands 342 7 19 IP Source Guard IPSG Commands 350 7 20 Dynamic ARP Inspection DAI Command 353 7 21 Differentiated Service Command 360 7 22 ACL Command 389 7 23 IPv6 ACL Command 397 7...

Page 5: ...back Interface Commands 544 10 3 IPv6 Routing Commands 546 10 4 OSPFv3 Commands 566 10 5 RIPng Commands 597 10 6 Protocol Independent Multicast Dense Mode PIM DM Commands 602 10 7 Protocol Independent...

Page 6: ...is or any Fortinet technical document to techdoc fortinet com 1 3 Customer Service and Technical Support Fortinet Technical Support provides services designed to make sure that your Fortinet products...

Page 7: ...7 To learn about the training services that Fortinet provides visit the Fortinet Training Services web site at http campus training fortinet com or email them at training fortinet com...

Page 8: ...ower install on your system IEEE 802 3z and IEEE 802 3x compliant Flow Control for all 10 Gigabit ports Supports 802 1D STP 802 1S MSTP and 802 1w Rapid Spanning Tree for redundant back up bridge path...

Page 9: ...1 v 2 v 3 network management RMON support Supports Web based management CLI management support Fully configurable either in band or out of band control via RS 232 console serial connection Telnet remo...

Page 10: ...ange represents port activity status and it will be blinking if the port has an activity 2 4 LED Indicators The Status LED indicator represnts status of the switch The Power LED indicator represent po...

Page 11: ...t a computer or terminal to the serial console port or use Telnet to access the Switch The command line driven interface provides complete access to all switch management features 2 9 SNMP Based Manag...

Page 12: ...MD MIB RFC 2934 PIM MIB DVMRP STD MIB IANA RTPROTO MIB MULTICAST MIB FASTPATH ROUTING6 MIB IEEE8021 PAE MIB INVENTORY MIB MGMT SECURITY MIB QOS ACL MIB QOS COS MIB RFC 1907 SNMPv2 MIB RFC 2465 IPV6 MI...

Page 13: ...m that your package contains the following items One FortiSwitch 548B Layer 2 10 Gigabit Managed Switch Mounting kit 2 mounting brackets and screws Four rubber feet with adhesive backing One AC power...

Page 14: ...must have adequate space for ventilation and for accessing cable connectors 2 Set the Switch on a flat surface and check for proper ventilation Allow at least 5 cm 2 inches on each side of the Switch...

Page 15: ...ard 19 inch 48 3 cm racks Refer to the illustrations below 1 Use the supplied screws to attach a mounting bracket to each side of the Switch 2 Align the holes in the mounting bracket with the holes in...

Page 16: ...the login prompt appears The device initial state is called the default mode 4 When the prompt asks for operator login do the following Type the word admin in the login area Since a number of the Quic...

Page 17: ...t is a special type of port Admin Mode Selects the Port Control Administration State Physical Mode Selects the desired port speed and duplex mode Physical Status Indicates the port speed and duplex mo...

Page 18: ...an eight characters in length copy running config startup config filename This will save passwords and all other changes to the device If you do not save config all configurations will be lost when a...

Page 19: ...loading and the type of upload it is and confirms the upload is taking place For example If the user is using HyperTerminal the user must specify where the file is going to be received by the pc 3 5 6...

Page 20: ...up Factory Defaults Table 2 8 Quick Start up Factory Defaults Command Details clear config Enter yes when the prompt pops up to clear all the configurations made to the switch copy running config star...

Page 21: ...ng a terminal emulation program such as HyperTerminal which is automatically installed with Microsoft Windows to the RS 232 DCE console port of the Switch Switch management using the RS 232 DCE consol...

Page 22: ...le port is set for the following configuration Baud rate 11 520 Data width 8 bits Parity none Stop bits 1 Flow Control none A typical console connection is illustrated below Figure 3 1 Console Setting...

Page 23: ...Once you have set an IP address for your Switch you can use a Telnet program in a VT 100 compatible terminal mode to access and control the Switch Most of the screens are identical whether accessed fr...

Page 24: ...ent of the switch The help page covers many of the basic functions and features of the switch and its Web interface When you configure the switch for the first time from the console you can assign an...

Page 25: ...e IP address of your managed switch 2 Open your Web browser 3 Log in to the managed switch using the IP address the unit is currently configured with 4 Type the default user name of admin and default...

Page 26: ...s navigation through several menus The main navigation menu is on the left of every page and contains the screens that let you access all the commands and statistics the switch provides Main Menus Sys...

Page 27: ...nd Device Configuration Commands Forwarding Database see Device Configuration Commands L2MAC Address Logs see System Information and Statistics Commands Port see Device Configuration Commands Interfac...

Page 28: ...rt Security see Port Security Configuration Commands LLDP see LLDP Commands VTP see VTP Commands Link State see Link state Commands Port Backup see Port backup Commands FIP Snooping see FIP Snooping C...

Page 29: ...ands RIPv6 see RIPv6 Configuration Commands QoS ACL see ACL Commands Diffserv see Differentiated Services Commands Class of Service see Class of Service Commands IPv4 Multicast DVMRP see DVMRP Command...

Page 30: ...ollowed by values parameters or both Example 1 ip address ipaddr netmask gateway ip address is the command name ipaddr netmask are the required values for the command gateway is the optional value for...

Page 31: ...is 0 0 0 0 The interface IP address of 0 0 0 0 is invalid macaddr The MAC address format is six hexadecimal numbers separated by colons for example 00 06 29 32 81 40 areaid Area IDs may be entered in...

Page 32: ...r space bar command completion The value Err designates that the requested value was not internally accessible This should never happen and indicates that there is a case in the software that is not h...

Page 33: ...Mode Privileged Exec Display Message MAC Address A unicast MAC address for which the switch has forwarding and or filtering information The format is 6 two digit hexadecimal numbers that are separate...

Page 34: ...ks that keep the CPU busy Default Setting None Command Mode Privileged Exec Display Message The following shows example CLI display output for the command Memory Utilization Report status bytes free 1...

Page 35: ...ing of different protocol packages supported on switch This command displays captures only commands with settings configurations with values that differ from the default value The output is displayed...

Page 36: ...h May be up to 31 alpha numeric characters The factory default is blank System Contact The text used to identify a contact person for this switch May be up to 31 alphanumeric characters The factory de...

Page 37: ...lays the web server http port Web Server Java Mode Specifies if the switch should allow access to the Java applet in the header frame Enabled means the applet can be viewed The factory default is disa...

Page 38: ...mple if the release was 1 the version was 2 and the maintenance number was 4 the format would be 1 2 4 Operating Code Version The release version maintenance number of the code currently running on th...

Page 39: ...h 10 Giga information of switch 1 10 Gigabit Ethernet Compliance Codes Transceiver s compliance codes Vendor Name The SFP transceiver vendor name shall be the full name of the corporation a commonly a...

Page 40: ...ase was 1 the version was 2 and the maintenance number was 4 the format would be 1 2 4 Boot Rom Version The release version maintenance number of the boot ROM code currently running on the switch For...

Page 41: ...clude lines that match LINE Regular Expression 7 2 Device Configuration Commands 7 2 1 Interface 7 2 1 1 show interface status This command displays the Port monitoring information for the system Synt...

Page 42: ...status changes The factory default is enabled LACP Mode Displays whether LACP is enabled or disabled on this port Flow Control Mode Displays flow control mode The possible values are None This port is...

Page 43: ...including broadcast packets and multicast packets received Packets Received With Error The number of inbound packets that contained errors preventing them from being deliverable to a higher layer pro...

Page 44: ...length inclusive excluding framing bits but including FCS octets Packets Received 1522 Octets The total number of packets received that were longer than 1522 octets excluding framing bits but includi...

Page 45: ...and 150 ms Undersize Received The total number of packets received that were less than 64 octets in length with GOOD CRC excluding framing bits but including FCS octets Fragments Received The total nu...

Page 46: ...tal number of packets transmitted that had a length excluding framing bits but including FCS octets of between 64 and 1518 octets inclusive but had a bad FCS with an integral number of octets Tx Overs...

Page 47: ...ed that were directed to the broadcast address Note that this does not include multicast packets Receive Packets Discarded The number of inbound packets which were chosen to be discarded even though n...

Page 48: ...ge Broadcast Packets Received The total number of packets received that were directed to the broadcast address Note that this does not include multicast packets Packets Received With Error The number...

Page 49: ...the following command Instead it provides a command to set the speed of 10 Giga port to 1Gbps Use speed duplex 1000 to change the speed of 10 Giga port to 1G speed Syntax speed duplex 1000 no speed du...

Page 50: ...i The 10 Giga interfaces will not provide the following command Syntax negotiate no negotiate no This command disables automatic negotiation on a port Default Setting Enable Command Mode Interface Co...

Page 51: ...o This command removes the advertised capability with using parameter Default Setting 10 half duplex 10 full duplex 100 half duplex 100 full duplex and 1000 full duplex Command Mode Interface Config T...

Page 52: ...x storm control flowcontrol no storm control flowcontrol no This command disables 802 3x flow control for the switch Default Setting Disabled Command Mode Global Config This command enables 802 3x flo...

Page 53: ...low control only applies to full duplex mode ports Syntax storm control flowcontrol pfc no storm control flowcontrol pfc no This command disables Priority Flow Control for the specific interface Defau...

Page 54: ...s command removes the description of the port Default Setting None Command Mode Interface Config 7 2 1 12 mdi i The 10 Giga interface will not provide the following command This command is used to con...

Page 55: ...filtering information The format is 6 or 8 two digit hexadecimal numbers that are separated by colons for example 01 23 45 67 89 AB In an IVL system the MAC address will be displayed as 8 bytes In an...

Page 56: ...ess count The total learning mac addresses on the L2 MAC address Table Static Address User defined count The total user defined addresses on the L2 MAC address Table Total MAC Addresses in use This nu...

Page 57: ...m s own MAC address GMRP Learned The value of the corresponding instance was learned via GMRP and applies to Multicast Other The value of the corresponding instance does not fall into one of the other...

Page 58: ...entries in the Multicast Forwarding Database MFDB table Syntax show mac address table gmrp Default Setting None Command Mode Privileged Exec Display Message MAC Address A unicast MAC address for whic...

Page 59: ...vlanid all macaddr enter a MAC Address to display the table entry for the requested MAC address vlanid VLAN ID Range 1 3965 all This command displays the entire table Default Setting None Command Mode...

Page 60: ...DB high water mark Current Entries This displays the current number of entries in the Multicast Forwarding Database table 7 2 2 9 show mac addr table agetime This command displays the forwarding datab...

Page 61: ...iated with this VLAN as a convenience It can be up to 16 alphanumeric characters including blanks The default is blank VLAN ID 1 is always named Default This field is optional VLAN Type Type of VLAN w...

Page 62: ...allow the port to be dynamically registered in this VLAN via GVRP The port will not participate in this VLAN unless a join request is received on this port This is equivalent to registration normal i...

Page 63: ...iated with each VLAN The range of the VLAN ID is 1 to 3965 7 2 3 4 show vlan association subnet This command displays the VLAN associated with a specific configured IP Address and net mask If no IP Ad...

Page 64: ...interface switchport slot port all slot port Interface number all Display the entire table Default Setting None Command Mode Privileged Exec Display Message Interface Indicates by slot id and port num...

Page 65: ...ort 7 2 3 7 vlan database This command is used to enter VLAN Interface configuration mode Syntax vlan database Default Setting None Command Mode Global Config 7 2 3 8 vlan This command creates a new V...

Page 66: ...association mac This command associates a MAC address to a VLAN Syntax vlan association mac macaddr vlanid no vlan association mac macaddr macaddr enter a MAC Address to display the table entry for t...

Page 67: ...ge is 2 3965 Syntax vlan makestatic vlanid vlanid VLAN ID Range 2 3965 Default Setting None Command Mode VLAN database 7 2 3 13 protocol group This command attaches a vlanid to the protocol based VLAN...

Page 68: ...dmit All mode untagged frames or priority frames received on this interface are accepted and assigned the value of the interface VLAN ID for this port With either option VLAN tagged frames are forward...

Page 69: ...tchport ingress filtering no This command disables ingress filtering If ingress filtering is disabled frames received with VLAN IDs that do not match the VLAN membership of the receiving interface are...

Page 70: ...ative vlan vlanid vlanid VLAN ID Range 1 3965 no This command sets the VLAN ID per interface to 1 Default Setting 1 Command Mode Interface Config This command changes the VLAN ID for all interfaces Sy...

Page 71: ...ransmitted for this VLAN will be untagged remove The interface is removed from the member of this VLAN This is equivalent to registration forbidden Default Setting None Command Mode Interface Config T...

Page 72: ...ecific interface in a VLAN to disabled If tagging is disabled traffic is transmitted as untagged frames The ID is a valid VLAN identification number Default Setting Disabled Command Mode Interface Con...

Page 73: ...and no spaces and no zeros in between the range Use for range add VLAND ID to add remove VLAND ID to remove no Remove the list of forbidden VLANs Default Setting None Command Mode Interface Config 7...

Page 74: ...nly be associated with one group If adding an interface to a group causes any conflicts with protocols currently associated with the group this command will fail and the interface s will not be added...

Page 75: ...ill fail and the interface s will not be added to the group Syntax switchport protocol group all group name no switchport protocol group all group name group name a VLAN Group Name a character string...

Page 76: ...obal Config 7 2 4 Double VLAN commands 7 2 4 1 show dvlan tunnel dot1q tunnel This command is used without the optional parameters to display all interfaces enabled for Double VLAN Tunneling Use the o...

Page 77: ...tingany value in the range of 0 to 65535 7 2 4 2 switchport dvlan tunnel dot1q tunnel ethertype This command configures the ether type for specific interface The ether type may have the values of 802...

Page 78: ...l GMRP for the system GVRP Admin Mode This displays the administrative mode of GARP VLAN Registration Protocol GVRP for the system 7 2 5 2 show gvrp configuration This command displays Generic Attribu...

Page 79: ...o maintain registration There is an instance of this timer on a per Port per GARP participant basis The Leave All Period Timer is set to a random value in the range of LeaveAll Time to 1 5 LeaveAllTim...

Page 80: ...e Permissible values are 200 to 6000 centiseconds 2 to 60 seconds The factory default is 1000 centiseconds 10 seconds The finest granularity of specification is 1 centisecond 0 01 seconds Port GMRP Mo...

Page 81: ...enables GARP Multicast Registration Protocol GMRP on the system The default value is disabled Syntax bridge ext gmrp no bridge ext gmrp no This command disables GARP Multicast Registration Protocol G...

Page 82: ...Config 7 2 5 8 switchport gmrp This command enables GMRP Multicast Registration Protocol on a selected interface If an interface which has GMRP enabled is enabled for routing or is enlisted as a memb...

Page 83: ...t channel LAG membership is removed from an interface that has GMRP enabled Syntax switchport gmrp all no switchport gmrp all all All interfaces no This command disables GMRP Multicast Registration Pr...

Page 84: ...P Protocol Data Units PDUs registering or re registering membership for a VLAN or multicast group This command has an effect only when GVRP and GMRP are enabled The time is from 10 to 100 centiseconds...

Page 85: ...econds 0 6 seconds Default Setting 60 centiseconds 0 6 seconds Command Mode Interface Config This command sets the GVRP leave time for all ports Leave time is the time to wait after receiving an unreg...

Page 86: ...PDUs are generated per port to 1000 centiseconds 10 seconds Default Setting 1000 centiseconds 10 seconds Command Mode Interface Config This command sets how frequently Leave All PDUs are generated for...

Page 87: ...o ip igmp snooping Default Setting Disabled Command Mode Global Config 7 2 6 2 ip igmp snooping interfacemode The user can go to the CLI Global Interface Configuration Mode to set IGMP Snooping on one...

Page 88: ...mmand Mode Global Config Interface Config 7 2 6 4 ip igmp snooping groupmembershipinterval The user can go to the CLI Global Interface Configuration Mode to set the IGMP Group Membership Interval time...

Page 89: ...ue The range is 1 to 25 seconds Default Setting 10 Command Mode Global Config Interface Config 7 2 6 6 ip igmp snooping mcrtrexpiretime The user can go to the CLI Interface Global Interface Configurat...

Page 90: ...e vlanId disable multicast router attached mode for the interface or a VLAN Syntax ip igmp snooping mrouter interface vlanId no ip igmp snooping mrouter interface vlanId vlanid VLAN ID Range 1 3965 De...

Page 91: ...he IGMP Group Membership Interval time on a particular VLAN use the set igmpgroupmembership interval vlanid 2 3600 vlan configuration command Use the no set igmp groupmembership interval vlanid return...

Page 92: ...ar VLAN use the set igmp mcrtrexpiretime vlanid 0 3600 vlan configuration command Use the no set igmp mcrtrexpiretime vlanid to return to default value 0 Syntax set igmp mcrtrexpiretime vlanid 0 3600...

Page 93: ...e Exec Display Message When the optional arguments slot port or vlanid are not used the command displays the following information Admin Mode Indicates whether or not IGMP Snooping is active on the sw...

Page 94: ...nds that a switch will wait for a report from a particular group on a particular interface which is participating in the VLAN before deleting the interface from the entry This value may be configured...

Page 95: ...t Port Shows the interface on which multicast router information is being displayed 7 2 6 17 show ip igmp snooping static The user can go to the Privilege Exec to display IGMP snooping static informat...

Page 96: ...colons for example 01 00 5e 67 89 AB Type The type of entry which is either static added by the user or dynamic added to the table as a result of a learning process or protocol Description The text d...

Page 97: ...Mode to set IGMP snooping querier query interval use the ip igmp snooping querier query interval 1 1800 global configuration command Use the no ip igmp snooping querier query interval return to defaul...

Page 98: ...the no ip igmp snooping querier version return to default value zero Syntax ip igmp snooping querier version 1 2 no ip igmp snooping querier version 1 2 set IGMP version of the querier Default Settin...

Page 99: ...erier vlan 1 3965 address vlanid VLAN ID Range 1 3965 ip address ip address Default Setting 0 0 0 0 Command Mode Global Config 7 2 7 8 ip igmp snooping querier vlan election participate The user can g...

Page 100: ...sent IGMP Version Specify the IGMP protocol version used in periodic IGMP queries Querier Query Interval Specify the time interval in seconds between periodic queries sent by the snooping querier The...

Page 101: ...r detail This command display all of IGMP snooping querier information on the system Syntax show ip igmp snooping querier detail Command Mode Privilege Exec Display Information IGMP Snooping Querier M...

Page 102: ...the entry This value may be configured Max Response Time Interface on which MLD Snooping is enabled Multicast Router Present Expiration Time Displays the amount of time to wait before removing an int...

Page 103: ...e interface on which multicast router information is being displayed Multicast Router Attached Indicates whether multicast router is statically enabled on the interface VLAN ID Displays the list of VL...

Page 104: ...Display Message VLAN The VLAN ID used with the MAC address to fully identify packets you want L2Mcast Group MAC Address The MAC address of the L2Mcast Group in the format 33 33 xx xx xx xx Port List t...

Page 105: ...es that are designated for forwarding Fwd and filtering Flt 7 2 8 6 ipv6 mld snooping The user can go to the CLI Global Configuration Mode to set MLD Snooping on the system use the ipv6 mld snooping g...

Page 106: ...ration Mode to set MLD Snooping fast leave admin mode on a selected interface or all interfaces use the ipv6 mld snooping fast leave global interface configuration command Use the no ipv6 mld snooping...

Page 107: ...oping max response time return to default value 10 Syntax Ipv6 mld snooping max response time 1 65 no ipv6 mld snooping max response time Default Setting 10 Command Mode Global Config Interface Config...

Page 108: ...N Syntax Ipv6 mld snooping mrouter interface interface vlanId no ipv6 mld snooping mrouter interface vlanId Default Setting None Command Mode Interface Config 7 2 8 14 ipv6 mld snooping static The use...

Page 109: ...ve admin mode Syntax set mld fast leave vlanid no set mld fast leave vlanid Default Setting Disabled Command Mode VLAN Mode 7 2 8 17 set mld groupmembership interval The user can go to the CLI VLAN Co...

Page 110: ...10 Command Mode VLAN Mode 7 2 8 19 set ipv6 mld mcrtrexpiretime The user can go to the CLI Interface VLAN Configuration Mode to set the Multicast Router Present Expiration time on a particular VLAN us...

Page 111: ...ween periodic queries sent by the snooping querier The Query Interval must be a value in the range of 1 and 1800 The default value is 60 Querier Expiry Interval Specify the time interval in seconds af...

Page 112: ...Version Displays the operational MLD protocol version of the querier 7 2 9 3 show ipv6 mld snooping querier detail This command display all of MLD snooping querier information on the system Syntax sh...

Page 113: ...address ipv6 address global configuration command Use the ipv6 mld snooping querier address ipv6 address return to default value zero Syntax ipv6 mld snooping querier address ipv6 address no ipv6 mld...

Page 114: ...9 8 ipv6 mld snooping querier vlan The user can go to the CLI Global Configuration Mode to set MLD snooping querier vlan admin mode use the ipv6 mld snooping querier vlan 1 3965 global configuration...

Page 115: ...vlan election participate 1 3965 global configuration command Use the no ipv6 mld snooping querier vlan election participate 1 3965 return to disable Syntax ipv6 mld snooping querier vlan election pa...

Page 116: ...yntax show port channel logical slot port logical slot port The port channel interface number Default Setting None Command Mode Privileged Exec Display Message Log Intf The logical slot and the logica...

Page 117: ...field are Static indicating that the port channel is statically maintained and Dynamic indicating that the port channel is dynamically maintained Mbr Ports A listing of the ports that are members of...

Page 118: ...2 10 3 port channel adminmode all This command sets every configured port channel with the same administrative mode setting Syntax port channel adminmode all no port channel adminmode all no This comm...

Page 119: ...annel interfaces no This command disables link trap notifications for the port channel LAG The interface is a logical slot and port for a configured port channel The option all sets every configured p...

Page 120: ...st src mac src ip dst ip dst src ip no load balance src mac Sets the mode on the source MAC address dst mac Sets the mode on the destination MAC address dst src mac Sets the mode on the source and des...

Page 121: ...10 8 port channel system priority This command defines a system priority for the port channel LAG Syntax port channel system priority priority value priority value valid value 0 65535 Default Setting...

Page 122: ...s command disables Link Aggregation Control Protocol LACP on a port Default Setting Enabled Command Mode Interface Config This command enables Link Aggregation Control Protocol LACP on all ports Synta...

Page 123: ...te value of Link Aggregation Control Protocol LACP on a port Syntax lacp actor partner admin state individual longtimeout passive no lacp actor partner admin state individual longtimeout passive indiv...

Page 124: ...ce Config This command set actor partner system priority value of Link Aggregation Control Protocol LACP Syntax lacp actor partner system priority priority value no lacp actor partner system priority...

Page 125: ...ort to a port channel set the physical mode of the port See speed command Syntax channel group logical slot port logical slot port Port Channel Interface number Default Setting None Command Mode Inter...

Page 126: ...ort all logical slot port Port Channel Interface number all All members for specific Port Channel Default Setting None Command Mode Global Config 7 2 11 Storm Control 7 2 11 1 show storm control This...

Page 127: ...face number Mode Displays status of storm control multicast Level Displays level for storm control multicast Rate Displays rate for storm control multicast This command is used to display unicast stor...

Page 128: ...les broadcast storm recovery mode on the selected interface The threshold implementation follows a percentage pattern If the broadcast traffic on any Ethernet port exceeds the high threshold percentag...

Page 129: ...l interfaces Syntax storm control multicast no storm control multicast no This command disables multicast storm recovery mode on all interfaces Default Setting None Command Mode Global Config 7 2 11 4...

Page 130: ...l protect your network from broadcast storms by setting a threshold level for broadcast traffic on each port Syntax switchport broadcast packet rate 1 2 3 4 1 Threshold level represents 64 pps for 1G...

Page 131: ...represents all interfaces Note pps packet per second Default Setting Level 4 Command Mode Global Config 7 2 11 6 switchport multicast packet rate This command will protect your network from multicast...

Page 132: ...t all This command represents all interfaces Note pps packet per second Default Setting Level 4 Command Mode Global Config 7 2 11 7 switchport unicast packet rate This command will protect your networ...

Page 133: ...2084 pps for 10G port 3 Threshold level represents 256 pps for 1G Port or 3124 pps for 10G port 4 Threshold level represents 512 pps for 1G Port or 4167 pps for 10G port all This command represents a...

Page 134: ...cos map priority queue id no queue cos map queue id The queue id of the CoS priority queue Range 0 7 priority The CoS value that is mapped to the queue id Range 0 7 no Sets the CoS map to the default...

Page 135: ...session This command configures a probe port and a monitored port for monitor session port monitoring Use the source interface slot port parameter to specify the interface to monitor Use rx to monito...

Page 136: ...e mode of the session If enabled the probe port monitors all the traffic received and transmitted on the physical monitored port Syntax port monitor session session id mode no port monitor session ses...

Page 137: ...nk state group Use link state group to create a group Use no command to destroy the group Enable Disable a link state group Use link state group enable group id to enable individual group and use no c...

Page 138: ...tive port number 7 2 15 2 port backup Enable Disable the port backup admin mode Use port backup to enable the admin mode of function and use no command to disable the function Create Destroy the port...

Page 139: ...active or configured backup port Syntax port backup group 1 6 active backup no port backup group 1 6 active backup no This command disables port backup group function Command Mode Interface Config 7 2...

Page 140: ...longs ENode Name ID Name ID ENode MAC MAC address of the ENode 7 2 16 3 show fip snooping session This command displays all FIP snooping sessions for the entire system Syntax show fip snooping session...

Page 141: ...D ID number of the VLAN to which the FCF belongs FC MAP May FC Map value used by the FCF FCF MAC MAC address of the FCF Switch Name Name ID Fabric Name Name of the FCF 7 2 16 5 show fip snooping vlan...

Page 142: ...device re initializes with FIP If the feature is disabled snooping is removed and all programmed ACLs and internal data are cleaned up Syntax fip snooping no fip snooping no This command disables fip...

Page 143: ...ce Mode ETS mode 7 2 17 2 show queue ets scheduler type This command displays ETS function on specific interface for the entire system Syntax show queue ets scheduler type slot port slot port Interfac...

Page 144: ...ETS function on specific interface for the entire system Syntax show queue ets pg mapping slot port Default Setting None Command Mode Privileged Exec Display Message Interface Name of the interface to...

Page 145: ...Set ETS scheduler type to WRR WERR Set ETS scheduler type to WERR no This command restores the scheduler type to WERR Default Setting werr Command Mode Interface Config 7 2 17 7 queue ets weight This...

Page 146: ...ty 7 is assigned to IPC Syntax queue ets pg mapping lan san ipc 0 7 0 7 0 7 0 7 0 7 0 7 0 7 no queue ets pg mapping 0 7 Priority Id from 0 to 7 lan Sets ETS Priority Id to LAN priority group san Sets...

Page 147: ...field of Congestion Point Identifier of CNM payload outer TPID Displays Outer TPID for Congestion Notification Message CNM outer VLAN Displays Outer VLAN ID for Congestion Notification Message CNM out...

Page 148: ...to enable CN function no This command disables CN function on priority queue for specific interface Default Setting Disabled Command Mode Interface Config 7 2 18 4 congestion notify tag The user can...

Page 149: ...le handling congestion notification message Use the congestion notify enable global configuration command Use the no congestion notify enable to disable handling congestion notification message Syntax...

Page 150: ...tion notify CPID devid to configure device identifier to default value Syntax congestion notify CPID devid 0 16777215 no congestion notify CPID devid 0 16777215 This command sets the Device ID of CPID...

Page 151: ...0 65535 vlan 0 4095 no congestion notify outer CFI Dot1p TPID vlan 1 1 This command sets value of CNM s outer VLAN tag s CFI bits 1 7 This command sets value of CNM s outer VLAN tag s 802 1p bits 0 6...

Page 152: ...g sampled packet does not have CN TAG Use the congestion notify no generate global configuration command Use the no congestion notify no generate to keep generate CNM Syntax congestion notify no gener...

Page 153: ...tion Protocol Current Indicates which network protocol is being used The options are bootp dhcp none DHCP Client Identifier TEXT DCHP client identifier in TEXT mode for this switch DHCP Client Identif...

Page 154: ...ytes for physical and port channel LAG interfaces For the standard implementation the range of 1518 9216 is a valid integer between 1518 9216 Syntax mtu 1518 9216 no mtu 1518 9216 Max frame size Range...

Page 155: ...and Subnet Mask Default Setting IP address 0 0 0 0 Subnet Mask 0 0 0 0 Command Mode Interface Vlan Config Command Usage Once the IP address is set the VLAN ID s value will be assigned to management V...

Page 156: ...yntax ip address protocol bootp dhcp none bootp Obtains IP address from BOOTP dhcp Obtains IP address from DHCP none Obtains IP address by setting configuration Default Setting None Command Mode Inter...

Page 157: ...utes of inactivity on a Serial port connection after which the Switch will close the connection Any numeric value between 0 and 160 is allowed the factory default is 5 A value of 0 disables the timeou...

Page 158: ...ssful logon attempts exceeds the threshold set by the password threshold command Terminal Length The columns per page for terminal serial port 7 3 2 2 line console This command is used to enter Line c...

Page 159: ...fault Setting 5 Command Mode Line Config 7 3 2 5 password threshold This command is used to set the password instruction threshold limiting the number of failed login attempts Syntax password threshol...

Page 160: ...ngth 10 100 10 100 Columns per page Range 10 100 no This command sets the value to the default Default Setting 24 Command Mode Line Config 7 3 3 Telnet Session Commands 7 3 3 1 telnet This command est...

Page 161: ...om 0 to 160 The factory default is 5 Maximum Number of Remote Connection Sessions This object indicates the number of simultaneous remote connection sessions allowed The factory default is 5 Allow New...

Page 162: ...e indefinitely The time is a decimal value from 0 to 160 i Changing the timeout value for active sessions does not become effective until the session is reaccessed Any keystroke will also activate the...

Page 163: ...session Syntax terminal length 10 100 10 100 Columns per page Range 10 100 no This command sets the value to the default Default Setting 24 Command Mode Line Vty 7 3 3 7 maxsessions This command speci...

Page 164: ...all telnet sessions are droped Default Setting Enabled Command Mode Line Vty 7 3 3 9 sessions This command regulates new telnet sessions If sessions are enabled new telnet sessions can be established...

Page 165: ...error ends it Syntax telnet sessions no telnet sessions no This command disables new outbound telnet connections If disabled no new outbound telnet connection can be established Default Setting Enabl...

Page 166: ...fault Default Setting 5 Command Mode Global Config 7 3 3 13 show telnet This command displays the current outbound telnet settings Syntax show telnet Default Setting None Command Mode Privileged Exec...

Page 167: ...or 2 Default Setting None Command Mode Privileged Exec 7 3 4 2 sshc sessions This command regulates new outbound ssh connections If enabled new outbound ssh sessions can be established until it reach...

Page 168: ...4 sshc exec timeout This command sets the outbound ssh session timeout value in minute i Changing the timeout value for active sessions does not become effective until the session is reaccessed Any ke...

Page 169: ...dicates whether outbound ssh sessions will be allowed 7 3 5 SNMP Server Commands 7 3 5 1 show snmp This command displays SNMP community information Six communities are supported You can add change or...

Page 170: ...s This command displays trap conditions Configure which traps the switch should generate by enabling or disabling the trap condition If a trap condition is enabled and the condition is detected the sw...

Page 171: ...ame of the switch The range for name is from 1 to 31 alphanumeric characters Syntax snmp server sysname name name Range is from 1 to 31 alphanumeric characters Default Setting None Command Mode Global...

Page 172: ...he name can be up to 16 case sensitive characters i Community names in the SNMP community table must be unique If you make multiple entries using the same community name the first entry is kept and pr...

Page 173: ...mmunities are enabled by default The four undefined communities are disabled by default Command Mode Global Config This command sets a client IP mask for an SNMP community The address is the associate...

Page 174: ...th the client IP mask value to denote a range of IP addresses from which SNMP clients may use that community to access the device A value of 0 0 0 0 allows access from any IP address Otherwise this va...

Page 175: ...uthentication trap Syntax snmp server enable traps authentication no snmp server enable traps authentication no This command disables the Authentication trap Default Setting Enabled Command Mode Globa...

Page 176: ...erminal interface EIA 232 or telnet and there is an existing terminal interface session Syntax snmp server enable traps multiusers no snmp server enable traps multiusers no This command disables Multi...

Page 177: ...rx all if rx packet lsa all lsa maxage lsa originate overflow all lsdb overflow lsdb approaching overflow retransmit all packets virt packets rtb all rtb entry info state change all if state change n...

Page 178: ...aps and topology change notification traps Default Setting Enabled Command Mode Global Config 7 3 6 SNMP Trap Commands 7 3 6 1 show snmptrap This command displays SNMP trap receivers Trap messages are...

Page 179: ...r s status enabled or disabled and allows the administrator user to perform actions on this user entry Enable send traps to the receiver Disable do not send traps to the receiver Delete remove the tab...

Page 180: ...us traps for all interfaces Default Setting Disabled Command Mode Global Config 7 3 6 4 snmptrap name ipaddr ipaddr snmpversion This command adds an SNMP trap name The maximum length of the name is 16...

Page 181: ...is retained and processed All duplicate entries are ignored Syntax snmptrap ipaddr name ipaddr ipaddrnew name SNMP trap name ipaddr an original IP address ipaddrnew a new IP address Default Setting N...

Page 182: ...s The protocol level may have the values of SSL3 TSL1 or both SSL3 and TSL1 Hard timeout Display the hard timeout for secure HTTP sessions in hours Soft timeout Display the soft timeout for HTTP sessi...

Page 183: ...and the default is port 80 Syntax ip http port 1 65535 no ip http port 1 65535 HTTP Port value no This command is used to reset the http port to the default value Default Setting 80 Command Mode Globa...

Page 184: ...t the SSLT port where port can be 1 65535 and the default is port 443 Syntax ip http secure port portid no ip http secure port portid SSLT Port value no This command is used to reset the SSLT port to...

Page 185: ...el1 protocollevel2 no ip http secure protocol protocollevel1 protocollevel2 protocollevel1 2 The protocol level can be set to TLS1 SSL3 or to both TLS1 and SSL3 no This command is used to remove proto...

Page 186: ...ch Keys Present Indicates whether the SSH RSA and DSA key files are present on the device Key Generation in Progress Indicates whether RSA or DSA key files generation is currently in progress 7 3 8 2...

Page 187: ...the SSH connection session timeout value in minutes A session is active as long as the session has been idle for the value set A value of 0 indicates that a session remains active indefinitely The ti...

Page 188: ...mmand is used to delete the HTTPS certificate file from the device regardless of whether they are self signed or download from an outside source Default Setting None Command Mode Global Config 7 3 9 2...

Page 189: ...dentifier This command is used to specify the DCHP client identifier for this switch Use the no form to restore to default value Syntax ip dhcp client identifier text text hex hex no ip dhcp client id...

Page 190: ...ins IPv6 address by setting configuration Default Setting None Command Mode Interface Vlan Config 7 3 11 2 ipv6 dhcp restart This command is used to initiate a DHCPv6 client request by the network int...

Page 191: ...de Global Config 7 3 11 4 serviceport protocol dhcp6 restart This command is used to initiate a DHCPv6 client request by oob interface Syntax serviceport protocol dhcp6 restart Default Setting None Co...

Page 192: ...rver and removed from replies before they are forwarded to clients Requests Received The total number of BOOTP DHCP requests received from all clients since the last time the switch was reset Requests...

Page 193: ...nd Syntax show sflow pollers Default Setting None Command Mode Privilege Exec Display Message Poller Data Source The sFlowDataSource slot port for this sFlow sampler This agent will support Physical p...

Page 194: ...Flow datagrams IP Address The sFlow receiver IP address 7 3 13 4 show sflow samplers The user can go to the CLI Privilege Exec to get the sFlow sampling instances created on the switch use the show sf...

Page 195: ...size use the sflow maximum header 20 256 interface configuration command Use the no sflow maximum header return to default value 128 Syntax sflow sampler maxheadersize 20 256 no sflow sampler maxheade...

Page 196: ...ip address Syntax sflow receiver index ip ip no sflow receiver index ip Default Setting None Command Mode Global Config 7 3 13 9 set sflow receiver port The user can go to the CLI Global Configuratio...

Page 197: ...ex The user can go to the CLI Interface Configuration Mode to configure a new sFlow sampler instance use the sflow sampler index interface configuration command Use the no sflow sampler return to defa...

Page 198: ...s 0 0 0 0 Default Gateway The default gateway for this IP interface The factory default value is 0 0 0 0 IPv6 Administrative Mode Whether enabled or disabled Default value is enabled IPv6 Address Leng...

Page 199: ...s functioning properly While in STALE state the device takes no action until a packet is sent Delay More than ReachableTime milliseconds have elapsed since the last positive confirmation was received...

Page 200: ...ation for the switch manually Syntax serviceport protocol none bootp dhcp dhcp6 none Configure the network information for the switch manually bootp Periodically sends requests to a BootP server until...

Page 201: ...ured for the service port Default Setting None Command Mode Global Config 7 3 14 7 serviceport ipv6 gateway Use this command to configure IPv6 gateway i e Default routers information for the service p...

Page 202: ...ings for the common and internal spanning tree The following details are displayed Syntax show spanning tree Default Setting None Command Mode Privileged Exec Display Message Bridge Priority Configure...

Page 203: ...Root Path Cost The path cost to the regional root Associated FIDs List of forwarding database identifiers currently associated with this instance Associated VLANs List of VLAN IDs currently associate...

Page 204: ...ol Data Units received 7 4 1 3 show spanning tree vlan This command displays the association between a VLAN and a multiple spanning tree instance The 1 3965 corresponds to an existing VLAN ID Syntax s...

Page 205: ...he Designated Root for this multiple spanning tree instance Root Port Identifier Port to access the Designated Root for this multiple spanning tree instance Associated FIDs List of forwarding database...

Page 206: ...root for this port Designated Port Cost Path Cost offered to the LAN by the Designated Port Designated Bridge Bridge Identifier of the bridge with the Designated Port Designated Port Identifier Port o...

Page 207: ...int to point link CST Regional Root The regional root identifier in use for this port CST Port Cost The configured path cost for this port Transitions Into Loop Inconsistent State The count number of...

Page 208: ...anning Tree Adminmode Enabled or disabled Spanning Tree Forward BPDU Enabled or disabled Spanning Tree Version Version of 802 1 currently supported IEEE 802 1s IEEE 802 1w or IEEE 802 1d based upon th...

Page 209: ...rd Delay Configured value Bridge Hold Time Minimum time between transmission of Configuration Bridge Protocol Data Units BPDUs 7 4 2 Configuration Commands 7 4 2 1 spanning tree This command sets the...

Page 210: ...his command sets the Configuration Identifier Name for use in identifying the configuration that this switch is currently using The name is a string of at most 32 alphanumeric characters Syntax spanni...

Page 211: ...g 1 stp ST BPDUs are transmitted rather than MST BPDUs IEEE 802 1d functionality supported 2 rstp RST BPDUs are transmitted rather than MST BPDUs IEEE 802 1w functionality supported 3 mstp MST BPDUs a...

Page 212: ...a range of 1 to 10 with the value being less than or equal to Bridge Max Age 2 1 Syntax spanning tree hello time 1 10 no spanning tree hello time 1 10 hellotime value Range 1 10 no This command sets t...

Page 213: ...nternal spanning tree The max hops value is in a range of 1 to 127 Syntax spanning tree max hops 1 127 no spanning tree max hops 1 127 the Maximum hops value Range 1 127 no This command sets the Bridg...

Page 214: ...the deleted instance to the common and internal spanning tree The instance 1 4094 is a number that corresponds to the desired existing multiple spanning tree instance to be removed Default Setting Non...

Page 215: ...his command adds an association between a multiple spanning tree instance and a VLAN The VLAN will no longer be associated with the common and internal spanning tree The instance 0 4094 is a number th...

Page 216: ...ce then the configurations are done for that multiple spanning tree instance If however 0 defined as the default CIST ID is passed as the 1 4094 then the configurations are performed for the common an...

Page 217: ...token is specified this command sets the priority for this port within a specific multiple spanning tree instance or the common and internal spanning tree instance depending on the 1 4094 parameter to...

Page 218: ...auto edge no spanning tree auto edge no This command sets the auto edge for this port to disabled Default Setting Disabled Command Mode Interface Config 7 4 2 13 spanning tree edgeport This command s...

Page 219: ...onfig This command sets the Edgeport BPDU Filter enable disable parameter for sending receiving BPDUs on this switch This command only works on dot1d mode Syntax spanning tree edgeport bpdufilter no s...

Page 220: ...dufilter no spanning tree bpdufilter no This command sets the Edgeport BPDU Filter to the default value that is Disabled Default Setting Disabled Command Mode Interface Config This command sets the Ed...

Page 221: ...ot This command sets the Guard Mode parameter to a new value on this interface Syntax spanning tree guard loop none root no spanning tree guard loop This command sets the Guard Mode to loop guard on t...

Page 222: ...ged Exec Display Message Logging Client Local Port The port on the collector relay to which syslog messages are sent CLI Command Logging The mode for CLI command logging Console Logging The mode for c...

Page 223: ...s that are relayed 7 5 1 2 show logging buffered This command displays the message log maintained by the switch The message log contains system trace information Syntax show logging buffered Default S...

Page 224: ...itch reset 7 5 1 4 show logging hosts This command displays all configured logging hosts Syntax show logging hosts Default Setting None Command Mode Privileged Exec Display Message Index used for dele...

Page 225: ...red wrap no This command disables wrapping of in memory logging when full capacity reached Default Setting None Command Mode Global Config 7 5 2 2 logging console This command enables logging to the c...

Page 226: ...ymbolically through one of the following keywords emergency 0 alert 1 critical 2 error 3 warning 4 notice 5 informational 6 debug 7 no This command disables logging to the terminal monitor Default Set...

Page 227: ...integer from 0 to 7 or symbolically through one of the following keywords emergency 0 alert 1 critical 2 error 3 warning 4 notice 5 informational 6 debug 7 Default Setting None Command Mode Globla Con...

Page 228: ...nables syslog logging Syntax logging syslog no logging syslog no Disables syslog logging Default Setting None Command Mode Globla Config This command sets the local port number of the LOG client for l...

Page 229: ...configuration script to the switch The apply command backs up the running configuration and then starts applying the commands in the script file Application of the commands stops at the first failure...

Page 230: ...command lists all scripts present on the switch as well as the total number of files present Syntax script list Default Setting None Command Mode Privileged Exec Display Message Configuration Script...

Page 231: ...cript file Default Setting None Command Mode Privileged Exec 7 7 User Account Management Commands 7 7 1 Show Commands 7 7 1 1 show users This command displays the configured user names and their setti...

Page 232: ...ble to set and retrieve parameters on the system If the value is set to ReadOnly the SNMPv3 user will only be able to retrieve parameter information The SNMPv3 access mode may be different from the CL...

Page 233: ...the dash and underscore _ The username is not case sensitive Six user names can be defined This command changes the password of an existing operator User password should not be more than eight charact...

Page 234: ...Global Config 7 7 2 3 username snmpv3 authentication This command specifies the authentication protocol to be used for the specified login user The valid authentication protocols are none md5 or sha I...

Page 235: ...none is specified a key must not be provided The username is the login user name for which the specified encryption protocol will be used Syntax username snmpv3 encryption username none des key no us...

Page 236: ...s set the local user will not be able to reuse any password stored in password history when the local user changes his or her password Syntax passwords history 0 10 no passwords history 0 10 Number of...

Page 237: ...Global configuration command Use the no passwords min length return to default value 8 Syntax passwords min length 8 64 no passwords min length Default Setting 8 Command Mode Global Config 7 8 Securit...

Page 238: ...Privileged Exec Display Message Authentication Login List This displays the authentication login listname Method 1 This displays the first method in the specified authentication login list if any Meth...

Page 239: ...etting None Command Mode Privileged Exec Display Message Administrative mode Indicates whether authentication control on the switch is enabled or disabled VLAN Assignment Mode Indicates whether assign...

Page 240: ...value is expressed in seconds and will be in the range of 1 to 65535 Server Timeout The timer used by the authenticator on this port to timeout the authentication server The value is expressed in sec...

Page 241: ...number of EAPOL frames of any type that have been transmitted by this authenticator EAPOL Start Frames Received The number of EAPOL start frames that have been received by this authenticator EAPOL Lo...

Page 242: ...All interfaces Default Setting None Command Mode Privileged Exec Display Message Interface The interface whose configuration is displayed Control Mode The configured control mode for this port Possib...

Page 243: ...the RADIUS server when the client was authenticated This is a configured DiffServ policy name on the switch VLAN ID The VLAN assigned to the port VLAN Assigned The reason the VLAN identified in the V...

Page 244: ...ry Secret Configured Yes No Message Authenticator The message authenticator attribute configured for the radius server 7 8 1 11 show radius This command is used to display the various RADIUS configura...

Page 245: ...red RADIUS accounting mode accounting server and the statistics for the configured accounting server Syntax show radius accounting statistics ipaddr hostname ipaddr is an IP Address Default Setting No...

Page 246: ...uest packets sent to this server that have not yet timed out or received a response Timeouts The number of accounting timeouts to this server Unknown Types The number of RADIUS packets of unknown type...

Page 247: ...ckets received from this server Malformed packets include packets with an invalid length Bad authenticators or signature attributes or unknown types are not included as malformed access responses Bad...

Page 248: ...Command Mode Privileged Exec Display Message Port Security Administration Mode Port lock mode for the entire system This command shows the port security settings for a particular interface or all inte...

Page 249: ...dress This command shows the statically locked MAC addresses for port Syntax show port security static slot port Default Setting None Command Mode Privileged Exec Display Message MAC address Staticall...

Page 250: ...rd will be authenticated using the RADIUS server The value of reject indicates that the user is never authenticated The value of tacacs indicates that the user s ID and password will be authenticated...

Page 251: ...on login list Default Setting None Command Mode Global Config 7 8 2 3 username login This command assigns the specified authentication login list to the specified user for system login The username mu...

Page 252: ...ot port slot port is the desired interface number Default Setting None Command Mode Privileged Exec 7 8 3 2 dot1x default login This command assigns the authentication login list to use for non config...

Page 253: ...me listname an authentication login list Default Setting None Command Mode Global Config 7 8 3 4 dot1x system auth control This command is used to enable the dot1x authentication support on the switch...

Page 254: ...following force unauthorized The authenticator PAE unconditionally sets the controlled port to unauthorized force authorized The authenticator PAE unconditionally sets the controlled port to authoriz...

Page 255: ...the supplicant authenticator and the authentication server on a per supplicant basis Syntax dot1x port control auto force authorized force unauthorized mac based no dot1x port control no This command...

Page 256: ...ed the system should use the new one Syntax dot1x max user count no dot1x max user count maximum users Range 1 16 no This command sets the system will reset the maximum users to infinity Default Setti...

Page 257: ...ort in the guest vlan if configured The guest vlan timer is only relevant when guest vlan has been configured on that specific port reauth period Sets the value in seconds of the timer used by the aut...

Page 258: ...s of the timer used by the authenticator state machine on this port to the default values Depending on the token used the corresponding default values are set Default Setting guest vlan period 90 seco...

Page 259: ...o the default value that is the RADIUS accounting function is disabled Default Setting Disabled Command Mode Global Config 7 8 4 2 authorization network radius Use this command to enable the switch to...

Page 260: ...is used to set dead time to the default value Default Setting 255 Command Mode Global Config 7 8 4 5 radius server host This command is used to configure the RADIUS authentication and accounting serv...

Page 261: ...is a IP address or a hostname port Port number Range 1 65535 no This command is used to remove the configured RADIUS authentication server or the RADIUS accounting server If the auth token is used th...

Page 262: ...e transmitted when no response is received from the RADIUS server to the default value that is 10 Default Setting 10 Command Mode Global Config 7 8 4 8 radius server timeout This command sets the time...

Page 263: ...default for handling RADIUS requests The remaining configured servers are only used if the primary server cannot be reached A maximum of three servers can be configured on each client Only one of the...

Page 264: ...IP address or hostname of the TACACS server no This command is used to remove all of configuration Default Setting None Command Mode Global Config 7 8 5 2 tacacs key This command is used to configure...

Page 265: ...crypted the key string is encrypted Default Setting None Command Mode TACACS Host Config This command is used to configure the TACACS authentication host port Syntax port port number port number The v...

Page 266: ...eout timeout The connection timeout value Max timeout Range 1 to 30 no This command is used to reset the timeout value to the default value Default Setting 5 Command Mode Global Config This command is...

Page 267: ...nd sets the maximum of dynamically locked MAC addresses allowed on a specific port Syntax port security max dynamic 0 600 no port security max dynamic no This command resets the maximum of dynamically...

Page 268: ...port security mac address mac addr 1 3965 no port security mac address mac addr 1 3965 1 3965 VLAN ID mac addr The statically locked MAC address no This command removes a MAC address from the list of...

Page 269: ...hutdown no port security violation no This command restore violation mode to be default Default Setting None Command Mode Interface Config 7 9 CDP Cisco Discovery Protocol Commands 7 9 1 Show Commands...

Page 270: ...vice Id Identifies the device name in the form of a character string Local Interface The CDP neighbor information receiving port Holdtime The length of time a receiving device should hold CDP informat...

Page 271: ...h the CDP packet is sent Holdtime The length of time a receiving device should hold CDP information before discarding it Management Address The first address of IP address which can use management add...

Page 272: ...able CDP on a specified interface Syntax cdp run no cdp run no This command is used to disable CDP on a specified interface Default Setting Enabled Command Mode Interface Config This command is used t...

Page 273: ...time Range 5 254 no This command is used to reset the interval time to the default value Default Setting 60 Command Mode Global Config 7 9 2 4 cdp holdtime This command is used to configure the hold...

Page 274: ...ast transmit query in unicast mode Last Attempt Status Status of the last SNTP request in unicast mode or unsolicited message in broadcast mode Broadcast Count Current number of unsolicited broadcast...

Page 275: ...Reference ID Reference clock identifier of the server for the last received valid packet Server Mode SNTP Server mode Server Max Entries Total number of SNTP Servers allowed Server Current Entries To...

Page 276: ...P broadcast client back to its default value Default Setting 6 Command Mode Global Config 7 10 2 2 sntp client mode This command will enable Simple Network Time Protocol SNTP client mode and optionall...

Page 277: ...nt poll interval This command will set the poll interval for SNTP unicast clients in seconds Syntax sntp unicast client poll interval 6 10 no sntp unicast client poll interval 6 10 Polling interval It...

Page 278: ...cast client poll retry poll retry Polling retry in seconds The range is 0 to 10 no This command will reset the poll retry for SNTP unicast clients to its default value Default Setting The default valu...

Page 279: ...sets the time zone for the switch s internal clock Syntax sntp clock timezone name 0 12 0 59 before utc after utc name Name of the time zone usually an acronym Range 1 15 characters 0 12 Number of ho...

Page 280: ...fault value is 6 Command Mode Global Config 7 11 MAC Based Voice VLAN Commands 7 11 1 Show Commands 7 11 1 1 show voice vlan This command uses to display the configuration status of the Voice VLAN on...

Page 281: ...he Voice VLAN on the switch When the interface parameter is not specified only the global mode of the Voice VLAN is displayed Syntax show voice vlan interface unit slot port all Default Setting None C...

Page 282: ...ce vlan mac This command is used to add a voice device to a Voice VLAN Syntax voice vlan mac mac address mask mac mask priority priority id name voice name no voice vlan mac mac address mask mac mask...

Page 283: ...ne untagged no voice vlan vlan id Configure the IP phone to forward all voice traffic through the specified VLAN dot1p Configure th IP phone to use 802 1p priority tagging for voice traffic and to use...

Page 284: ...mand uses to display a summary of the current LLDP configuration Syntax show lldp Default Setting None Command Mode Privileged Exec Display Message Transmit Interval Shows how frequently the system tr...

Page 285: ...hether the interface receives LLDPDUs Notify Shows whether the interface sends remote data change notifications TLVs Shows whether the interface sends optional TLVs in the LLDPDUs The TLV codes can be...

Page 286: ...number of LLDP frames discarded on the port for any reason Errors The number of invalid LLDP frames received on the port Ageouts Total number of times a complete remote data entry was deleted for the...

Page 287: ...D field Chassis ID Identifies the chassis of the remote device Port ID Subtype Identifies the type of port on the remote device Port ID Shows the port number that transmitted the LLDPDU System Name Sh...

Page 288: ...iption Shows the port description associated with the interface 7 12 1 7 show lldp local device detail This command uses to display detailed information about the LLDP data a specific interface transm...

Page 289: ...lldp med Default Setting None Command Mode Privileged Exec Display Message Fast Start Repeat Count Specifies the number of LLDP PDUs that will be transmitted when the protocol is enabled The range is...

Page 290: ...ot port Privilege command Syntax show lldp med local device detail slot port slot port Displays a specific interface Default Setting None Command Mode Privileged Exec Display Message Network Policies...

Page 291: ...ice is a PoE device Device Type Specifies power device type Extended POE PSE Specifies if extended PSE TLV is present in LLDP frame Available Specifies available power sourcing equipment s power value...

Page 292: ...ed remote device detail The user can go to the CLI Privilege Exec to d display detailed information about remote devices that transmit current LLDP MED data to an interface on the system use the show...

Page 293: ...re Rev Specifies Firmware version of the remote device Software Rev Specifies Software version of the remote device Serial Num Specifies serial number of the remote device Mfg Name Specifies manufactu...

Page 294: ...d is used to configure how frequently the system sends remote data change notifications The interval seconds parameter is the number of seconds to wait between sending notifications The valid interval...

Page 295: ...terface Config 7 12 2 4 lldp transmit This command uses to enable the LLDP advertise capability Syntax lldp transmit no lldp transmit no This command is used to return the local data transmission capa...

Page 296: ...nd Use org spec to transmit the organization specific TLV Syntax lldp transmit tlv sys desc sys name sys cap port desc org spec no lldp transmit tlv sys desc sys name sys cap port desc org spec no Thi...

Page 297: ...r all timing parameters for local data transmission on ports enabled for LLDP to the default values Default Setting Interval seconds 30 Hold value 4 Reinit seconds 2 Command Mode Global Config 7 12 2...

Page 298: ...erface configuration command Use the no lldp med confignotification to disable notifications Syntax lldp med confignotification no lldp med confignotification Default Setting Disabled Command Mode Int...

Page 299: ...to the CLI Global Configuration Mode to set LLDP MED on all the ports use the lldp med all Global configuration command Use the no lldp med all to disable LLDP MED on all the ports Syntax lldp med al...

Page 300: ...r can go to the CLI Global Configuration Mode to set Type Length Values TLVs in the LLDP MED use the lldp med transmit tlv all capabilities ex pd ex pse inventory location network policy Global config...

Page 301: ...P Size Mode May be enabled or disabled The factory default is disabled Max ICMPv4 Pkt Size The range is 0 16384 The factory default is 512 Max ICMPv6 Pkt Size The range is 0 16384 The factory default...

Page 302: ...will be dropped if the mode is enabled Syntax dos control sipdip no dos control sipdip no This command disables Source IP Address Destination IP Address SIP DIP Denial of Service prevention Default S...

Page 303: ...This command disabled IP First Fragment Denial of Service protection Default Setting Disabled Command Mode Global Config 7 13 2 4 dos control tcpflag This command enables TCP Flag Denial of Service pr...

Page 304: ...control l4port applications such as RIP may experience packet loss which would render the application inoperable Syntax dos control l4port no dos control l4port no This command disables L4 Port Denia...

Page 305: ...opped if the mode is enabled Syntax dos control udpport no dos control udpport no This command disables the UDP L4 source destination port number Source UDP Port Destination UDP Port Denial of Service...

Page 306: ...16384 This command sets maximum ICMPv4 packet size no This command resets the Maximum ICMPv4 Packet Size Denial of Service protections to its default value Default Setting 512 Command Mode Global Con...

Page 307: ...ax dos control icmpfrag no dos control icmpfrag no This command disables the ICMP Fragment Denial of Service protection Default Setting Disabled Command Mode Global Config 7 13 2 12 dos control smacdm...

Page 308: ...ol tcpfinurgpsh no This command disables the TCP FIN and URG and PSH and SEQ 0 checking Denial of Service protections Default Setting Disabled Command Mode Global Config 7 13 2 14 dos control tcpsyn T...

Page 309: ...disables the TCP SYN FIN Denial of Service protection Default Setting Disabled Command Mode Global Config 7 13 2 16 dos control tcpoffset This command enables the TCP Fragment Offset Denial of Servic...

Page 310: ...7 14 1 Show Commands 7 14 1 1 show vtp counters This command displays the VTP packet statistics Syntax show vtp counters Default Setting None Command Mode Privileged Exec Display Message Summary adve...

Page 311: ...config revision errors Number of revision errors Number of config digest errors Number of MD5 digest errors 7 14 1 2 show vtp password This command displays the VTP domain password Syntax show vtp pa...

Page 312: ...bled By default all VTP version 2 switches operate in version 1 mode MD5 digest Displays the checksum values for the VTP domain status Configuration last modified Displays the time stamp of the last c...

Page 313: ...onfigures the string for domain name maximum length 32 bytes no This command resets the domain name to NULL The system disables the VTP for its initialization The maximum length of administrative doma...

Page 314: ...to default value Default Setting Server Command Mode Global Config 7 14 2 4 vtp version Use the no vtp version to reset the VTP version number to default value Syntax vtp version 1 2 no vtp version n...

Page 315: ...the adminstrative domain to permit pruning Syntax vtp pruning no vtp pruning no This command resets the pruning mode to default value Default Setting Disabled Command Mode Global Config 7 14 2 7 vtp t...

Page 316: ...tected Ports Commands 7 15 1 Show Commands 7 15 1 1 show switchport protected This command displays the status of all the interfaces including protected and unprotected interfaces Syntax show switchpo...

Page 317: ...ommands 7 15 2 1 switchport protected This command used to modify a protected port group name The groupid parameter identifies the set of protected ports Use the name name pair to assign a name to the...

Page 318: ...port as unprotected Default Setting None Command Mode Interface Config 7 16 Static MAC Filtering Commands 7 16 1 Show Commands 7 16 1 1 show mac address table static This command displays the Static...

Page 319: ...0F 01 80 C2 00 00 20 to 01 80 C2 00 00 21 and FF FF FF FF FF FF The vlanid parameter must identify a valid VLAN You can create up to 100 static MAC filters Syntax macfilter macaddr 1 3965 no macfilte...

Page 320: ...terfaces to the source filter set for the MAC filter with the MAC address of macaddr and vlanid You must specify the macaddr parameter as a 6 byte hexadecimal number in the format of b1 b2 b3 b4 b5 b6...

Page 321: ...cache Syntax clear arp Default Setting None Command Mode Privileged Exec 7 17 1 2 clear traplog This command clears the trap log Syntax clear traplog Default Setting None Command Mode Privileged Exec...

Page 322: ...formation Syntax clear logging buffered Default Setting None Command Mode Privileged Exec 7 17 1 5 clear config This command resets the configuration to the factory defaults without powering off the s...

Page 323: ...mand clears the stats for a specified slot port or for all the ports or for the entire switch based upon the argument Syntax clear counters slot port all slot port is the desired interface number all...

Page 324: ...Exec 7 17 1 9 clear cdp This command is used to clear the CDP neighbors information and the CDP packet counters Syntax clear cdp traffic traffic this command is used to clear the CDP packet counters D...

Page 325: ...ries from the Multicast Forwarding Database Syntax clear igmpsnooping Default Setting None Command Mode Privileged Exec 7 17 1 12 clear port channel This command clears all port channels LAGs Syntax c...

Page 326: ...d port or for all ports Syntax clear dot1x statistics all slot port slot port is the desired interface number all All interfaces Default Setting None Command Mode Privileged Exec 7 17 1 15 clear radiu...

Page 327: ...ost name to address mapping Syntax clear hosts Default Setting None Command Mode Privileged Exec 7 17 1 18 clear port security dynamic address This command is used to clear the Dynamic MAC address by...

Page 328: ...ype gateway are purged as well If interface keyword is specified he dymanic entries of that interface on the ARP cache Table are purged Syntax clear ip arp cache gateway interface slot port slot port...

Page 329: ...able passwd This command changes Privileged EXEC password Syntax enable passwd Default Setting None Command Mode Global Config 7 17 1 23 enable passwd encrypted This command allows the administrator t...

Page 330: ...istics This command will use to clear IPv6 statistics for all interfaces or for a specific interface including loopback and tunnel interfaces IPv6 statistics display in the output of the show ipv6 tra...

Page 331: ...trap log traplog A URL is specified for the destination The command can also be used to download the startup config or code image by specifying the source as a URL and destination as startup config or...

Page 332: ...rsa1 sshkey rsa2 sshkey dsa copy url sslpem root sslpem server sslpem dhweak sslpem dhstrong copy url script destfilename where url xmodem tftp ipaddr path file ftp user pass ipaddr path file destfil...

Page 333: ...de Privileged Exec This command upload or download the pre login banner file Syntax copy clibanner url copy url clibanner no clibanner url xmodem tftp ipaddr path file or ftp user pass ipaddr path fil...

Page 334: ...rom config configuration file opcode run time operation code Default Setting None Command Mode Privileged Exec Display Message Column Heading Description date The date that the file was created file n...

Page 335: ...d Mode Privileged Exec 7 17 7 ping 7 17 7 1 ping ipaddress host This command checks if another computer is on the network and listens for connections To use this command configure the switch for netwo...

Page 336: ...lity enabled and running on top of TCP IP The switch can be pinged from any IP workstation with which the switch is connected through the default VLAN VLAN 1 as long as there is a physical path betwee...

Page 337: ...size of the ping packet Syntax ping ipv6 interface slot port serviceport switchport tunnel tunnel id loopback loopback id link local address size datagram size slot port Specify the interface tunnel i...

Page 338: ...through the network on a hop by hop basis The ipv6 address hostname parameter must be a valid IPv6 address hostname Syntax traceroute ipv6 ipv6 address hostname initTtl initTtl maxTtl maxTtl interval...

Page 339: ...ss 1 31 1 12 2000 2099 hh mm ss hh in 24 hour format Range 0 23 mm Range 0 59 ss Range 0 59 1 31 Day of month Range 1 31 1 12 Month Range 1 12 2000 2099 Year 4 digit Range 2000 2099 Default Setting N...

Page 340: ...s used to activate global configuration mode Syntax configure Default Setting None Command Mode Privileged Exec 7 17 13 disconnect This command is used to close a telnet session Syntax disconnect 0 58...

Page 341: ...rompt_string Prompt string Default Setting Fortinet Command Mode Global Config 7 17 15 quit This command is used to exit a CLI session Syntax quit Default Setting None Command Mode Privileged Exec 7 1...

Page 342: ...DHCP messages and to build a bindings database of MAC address IP address VLAN ID port tuples that are considered authorized You can enable DHCP snooping globally and on specific VLANs and configure p...

Page 343: ...es server messages to the CPU so that DHCP snooping can learn the binding 7 18 1 Show Commands 7 18 1 1 show ip dhcp snooping This command displays the DHCP Snooping global configurations and per port...

Page 344: ...pe statically configured from the CLI or dynamically learned Lease Secs he remaining lease time for the entry 7 18 1 3 show ip dhcp snooping database This command displays the DHCP Snooping configurat...

Page 345: ...nts the number of DHCP release and Deny messages received on the different ports than learned previously DHCP Server Msgs Rec d Represents the number of DHCP server messages received on untrusted port...

Page 346: ...ress in the received DCHP message Syntax ip dhcp snooping verify mac address no ip dhcp snooping verify mac address no This command disables the verification of the source MAC address with the client...

Page 347: ...rite delay value to the default value Default Setting 300 seconds Command Mode Global Config 7 18 2 6 ip dhcp snooping database timeout This command configures the DHCP snooping bindings store timeout...

Page 348: ...t level is 1 second with a range of 1 to 15 seconds Syntax ip dhcp snooping limit rate pps burst interval seconds no ip dhcp snooping limit no This command sets the rate at which the DHCP Snooping mes...

Page 349: ...onfigures the port as untrusted Default Setting Disabled Command Mode Interface Config 7 18 2 11 ip dhcp snooping information option This command ip dhcp snooping information option enables the DHCP L...

Page 350: ...ed source IDs Similar to DHCP snooping this feature is enabled on a DHCP snooping untrusted Layer 2 port Initially all IP traffic on the port is blocked except for DHCP packets that are captured by th...

Page 351: ...verify source This command displays the IPSG interface and binding configurations on all ports Syntax show ip verify source interface slot port Default Setting None Command Mode Privileged Exec Displa...

Page 352: ...g VLAN VLAN for the entry Interface IP address of the interface in slot port format 7 19 2 Configuration Commands 7 19 2 1 ip verify source This command configures the IPSG source ID attribute to filt...

Page 353: ...nses are relayed DAI prevents these attacks by intercepting all ARP requests and responses Each of these intercepted packets is verified for valid MAC address to IP address bindings before the local A...

Page 354: ...HCP snooping binding database match failure ACL Drops The number of packets dropped due to ARP ACL rule match failure DHCP Permits The number of packets permitted due to DHCP snooping binding database...

Page 355: ...gured static on the VLAN 7 20 1 3 show ip arp inspection interfaces This command displays the Dynamic ARP Inspection configuration on all the DAI enabled interfaces An interface is said to be enabled...

Page 356: ...al validation checks like source mac validation destination mac validation and ip address validation on the received ARP packets Syntax ip arp inspection validate src mac dst mac ip no ip arp inspecti...

Page 357: ...separated VLAN ranges Default Setting Disabled Command Mode Global Config 7 20 2 4 ip arp inspection filter This command configures the ARP ACL used to filter invalid ARP packets on a list of comma s...

Page 358: ...This command configures the rate limit and burst interval values for an interface Configuring none for the limit means the interface is not rate limited for Dynamic ARP Inspections Syntax ip arp insp...

Page 359: ...ddress combination used in ARP packet validation Syntax permit ip host sender ip mac host sender mac no permit ip host sender ip mac host sender mac no This command deletes a rule for a valid IP and M...

Page 360: ...s are filtered and processed based on defined criteria The filtering criteria are defined by a class The processing is defined by a policy s attributes Policy attributes may be defined on a per class...

Page 361: ...f class type acl Regarding nested classes referred to here as class references a given class definition can contain at most one reference to another class which can be combined with other match criter...

Page 362: ...ass creation deletion and matching with the class match commands specifying layer 3 layer 2 and general match criteria The class match criteria are also known as class rules with a class definition co...

Page 363: ...nfig or Ipv6 Class Map Config when this command is successfully executed depending on the ipv4 ipv6 keyword specified Command Mode Global Config 7 21 2 2 no class map This command eliminates an existi...

Page 364: ...ied class definition a match condition whereby all packets are considered to belong to the class Syntax match any Default Setting None Command Mode Class Map Config Ipv6 Class Map Config 7 21 2 5 matc...

Page 365: ...es to the refclassname class match criteria must maintain this validity or the change attempt shall fail The total number of class rules formed by the complete reference class chain includes both pred...

Page 366: ...class definition a match condition based on the destination MAC address of a packet The address parameter is any layer 2 MAC address formatted as six two digit hexadecimal numbers separated by colons...

Page 367: ...ax match dstl4port portkey 0 65535 To specify the match condition as a single keyword the value for portkey is one of the supported port name keywords The currently supported portkey values are domain...

Page 368: ...ifies ethertype value Default Setting None Command Mode Class Map Config 7 21 2 12 match ip dscp This command adds to the specified class definition a match condition based on the value of the IP Diff...

Page 369: ...from 0 to 7 Syntax match ip precedence 0 7 i The ip dscp ip precedence and ip tos match conditions are alternative ways to specify a match criterion for the same Service Type field in the IP header b...

Page 370: ...ich bits of the IP Service Type field are checked Default Setting None Command Mode Class Map Config 7 21 2 15 match protocol This command adds to the specified class definition a match condition base...

Page 371: ...ff 07 23 ff fe dc i This command is not available on the Broadcom 5630x platform Syntax match source address mac address macmask address Specifies any layer 2 MAC address macmask Specifies a layer 2...

Page 372: ...umber is required The port number is an integer from 0 to 65535 To specify the match condition as a range two layer 4 port numbers are required and together they specify a contiguous port range Each p...

Page 373: ...None Command Mode IPv6 Class Map Config 7 21 2 21 match srcip6 This command adds to the specified class definition a match condition based on the source IP address of a packet Syntax match srcip6 sou...

Page 374: ...fServ CLI does not necessarily require that users associate only one traffic class to one policy In fact multiple traffic classes can be associated with a single policy each defining a particular trea...

Page 375: ...ibilities Drop 7 21 3 2 drop This command specifies that all packets for the associated traffic stream are to be dropped at ingress Syntax drop Command Mode Policy Class Map Config Incompatibilities A...

Page 376: ...21 3 5 conform color This command is used to enable color aware traffic policing and define the conform color class maps used Used in conjunction with the police command where the fields for the confo...

Page 377: ...of COS value is 0 to 7 Command Mode Policy Class Map Config Policy Type In Incompatibilities Drop Mark IP DSCP IP Precedence Police 7 21 3 7 class This command creates an instance of a class definitio...

Page 378: ...ated traffic stream with the specified IP DSCP value Syntax mark ip dscp value value is specified as either an integer from 0 to 63 or symbolically through one of the following keywords af11 af12 af13...

Page 379: ...value is required and is specified as an integer from 0 7 Syntax police simple 1 4294967295 1 128 conform action drop set prec transmit 0 7 set dscp transmit 0 63 set cos transmit 0 7 transmit violate...

Page 380: ...specific to the inbound traffic direction as indicated by the in parameter Syntax policy map policyname in no policy map policyname Command Mode Global Config Policy Type In 7 21 3 13 policy map rena...

Page 381: ...Syntax service policy in policy map name The command can be used in the Interface Config mode to attach a policy to a specific interface Alternatively the command can be used in the Global Config mod...

Page 382: ...map name is the name of an existing DiffServ policy Note that this command causes a service to remove its reference to the policy i This command effectively disables DiffServ on an interface in a par...

Page 383: ...ill only be displayed if they have been configured They will be displayed in the order entered by the user These are evaluated in accordance with the class type The possible Match Criteria fields are...

Page 384: ...Instance Table Size Current Max The current or maximum number of entries rows in the Policy Instance Table Policy Attribute Table Size Current Max The current or maximum number of entries rows in the...

Page 385: ...m to which a DiffServ policy has been attached The direction parameter is optional if specified only services in the indicated direction are shown Syntax show diffserv service brief in Default Setting...

Page 386: ...icing is in use for the class under this policy Policing Style This field denotes the style of policing if any used simple Committed Rate Kbps This field displays the committed rate used in simple pol...

Page 387: ...they were created Policy Type The policy type namely whether it is an inbound or outbound policy definition Class Members List of all class names associated with this policy 7 21 5 6 show policy map i...

Page 388: ...or disables the route reflector client A route reflector client relies on a route reflector to re advertise its routes to the entire AS The possible values for this field are enable and disable Syntax...

Page 389: ...s Displays the source MAC address for this rule Source MAC Mask Displays the source MAC mask for this rule Destination MAC Address Displays the destination MAC address for this rule Destination MAC Ma...

Page 390: ...he value is Inbound Interfaces Displays the list of interfaces slot port to which this MAC ACL is attached in a given direction VLANs VLAN s to which the MAC ACL applies 7 22 1 3 show ip access lists...

Page 391: ...destination port for this rule IP DSCP This field displays the IP DSCP value for this rule IP Precedence This field displays the IP Precedence value for this rule IP TOS This field displays the IP TO...

Page 392: ...cess Control List ACL identified by name consisting of classification fields defined for the Layer 2 header of an Ethernet frame The name parameter is a case sensitive alphanumeric string from 1 to 31...

Page 393: ...r currently in use for this interface and direction will be used This command specified in Interface Config mode only affects a single interface whereas the Global Config mode setting is applied to al...

Page 394: ...outer tag The assign queue parameter allows specification of a particular hardware queue for handling traffic that matches this rule The allowed queue id value is 0 n 1 where n is the number of user c...

Page 395: ...arameters The command specifies the TOS for an ACL rule depending on a match of precedence or DSCP values using the parameters tos tosmask dscp Default Setting None Command Mode Global Config 7 22 2 6...

Page 396: ...CL vlan id The associated VLAN ID of this ACL 1 4294967295 The sequence number of this ACL no This command removes a ACL by identifier or name from the interface or vlan in a given direction Default S...

Page 397: ...umeric string from 1 to 31 characters uniquely identifying the IP access list Syntax ip access list rename name newname Default Setting None Command Mode Global Config 7 23 IPv6 ACL Command 7 23 1 Sho...

Page 398: ...enable logging for the rule Assign Queue The queue identifier to which packets matching this rule are assigned Mirror Interface The slot port to which packets matching this rule are copied Redirect In...

Page 399: ...wname oldname current Access Control List name newname new Access Control List name Default Setting None Command Mode Global Config 7 23 2 3 deny permit IPv6 This command creates a new rule for the cu...

Page 400: ...attaches a specific IPv6 ACL identified by name to an interface or associates with a VLAN ID in a given direction The name parameter must be the name of an existing IPv6 ACL An optional sequence numb...

Page 401: ...upport independent per port class of service mappings If specified the 802 1p mapping table of the interface is displayed If omitted the most recent global configuration settings are displayed Syntax...

Page 402: ...lue Traffic Class Displays the queue mapping 7 24 1 3 show queue trust This command displays the current trust mode setting for a specific interface The slot port parameter is optional and is only val...

Page 403: ...erface This displays the slot port of the interface If displaying the global configuration this output line is replaced with a Global Config indication Interface Shaping Rate The maximum transmission...

Page 404: ...traffic class for a device Syntax queue cos map all 0 7 0 7 no queue cos map all 0 7 The range of queue priority is 0 to 7 0 7 The range of mapped traffic class is 0 to 7 no Reset to the default mapp...

Page 405: ...queue Syntax queue cos queue min bandwidth bw 0 bw 1 bw 6 no queue cos queue min bandwidth bw 0 bw 1 bw 6 Each Valid range is 0 to 100 in increments of 5 and the total sum is less than or equal to 100...

Page 406: ...queue id 0 queue id 1 queue id 6 no queue cos queue strict queue id 0 queue id 1 queue id 6 no This command restores the default weighted scheduler mode for each specified queue on a per port basis De...

Page 407: ...ments 5 no This command restores the default shaping rate value Default Setting None Command Mode Interface Config This command specifies the maximum transmission bandwidth limit for all interfaces Al...

Page 408: ...e configuration of the DNS server Syntax show dns Default Setting None Command Mode Privileged Exec Display Message Domain Lookup Status Enable or disable the IP Domain Naming System DNS based host na...

Page 409: ...TTL Time in seconds that this entry will remain in the DNS cache table Flag Indicates if this entry is reliable A value of 8 is not as reliable as a value of 10 7 25 2 Configuration Commands 7 25 2 1...

Page 410: ...mand defines the default domain name to be appended to incomplete host names i e host names passed from a client are not formatted with dotted notation Syntax ip domain name name no ip domain name nam...

Page 411: ...k with the specified name servers for a match If there is no domain name list the domain name specified with the ip domain name command is used If there is a domain name list the default domain name i...

Page 412: ...isables the IP Domain Naming System DNS based host name to address translation Default Setting None Command Mode Global Config 7 25 2 7 clear domain list This command clears all entries in the domain...

Page 413: ...clears all entries in the DNS cache table Syntax clear dns cache Default Setting None Command Mode Privileged Exec 7 25 2 10 clear dns counter This command clears the statistics of all entries in the...

Page 414: ...was configured into the unit Cache Size Is the maximum number of entries in the ARP table This value was configured into the unit Dynamic renew mode Displays whether the ARP component automatically a...

Page 415: ...into the unit Response time is measured in seconds Retries Is the maximum number of times an ARP request is retried This value was configured into the unit Cache Size Is the maximum number of entries...

Page 416: ...isting routing interface macaddr Is a MAC address for that device The format is 6 two digit hexadecimal numbers that are separated by colons for example 00 06 29 32 81 40 no This command deletes an AR...

Page 417: ...proxy arp no This command disables Local Proxy ARP on a router interface Default Setting Disabled Command Mode Interface Config 8 1 2 4 arp cachesize This command configures the maximum number of ent...

Page 418: ...they age out Default Setting Disabled Command Mode Global Config 8 1 2 6 arp purge This command causes the specified IP address to be removed from the ARP table Only entries of type dynamic or gateway...

Page 419: ...tries 0 10 The range of maximum request for retries is 0 to 10 no This command configures the default count of maximum request for retries Default Setting The default value is 4 Command Mode Global Co...

Page 420: ...rface slot port Default Setting None Command Mode Privileged Exec 8 2 IP Routing Commands 8 2 1 Show Commands 8 2 1 1 show ip brief This command displays all the summary information of the IP Syntax s...

Page 421: ...The possible values of this field are enable or disable This value was configured into the unit Forward Net Directed Broadcasts Displays whether forwarding of network directed broadcasts is enabled o...

Page 422: ...dress specifies the network for which the route is to be displayed and displays the best matching best route for the address The mask specifies the subnet mask for the given ip address When you use th...

Page 423: ...e path toward the destination Interface The outgoing router interface to use when forwarding traffic to the next destination 8 2 1 5 show ip route bestroutes This command displays router route table i...

Page 424: ...lls which protocol added the specified route The possibilities are local static OSPF or RIP Total Number of Routes The total number of routes for each next hop Next Hop Intf The outgoing router interf...

Page 425: ...n Interface The outgoing router interface to use when forwarding traffic to the next destination 8 2 1 8 show ip route ospf This command displays Open Shortest Path First OSPF routes The option all co...

Page 426: ...tables in the following format Code IP Address Mask Preference Metric via Next Hop Interface Code The codes for the routing protocols that created the routes IP Address Mask The IP Address and mask of...

Page 427: ...Next Hop The outgoing router IP address to use when forwarding traffic to the next router if any in the path toward the destination Interface The outgoing router interface to use when forwarding traf...

Page 428: ...age Local This field displays the local route preference value Static This field displays the static route preference value OSPF Intra This field displays the OSPF intra route preference value OSPF In...

Page 429: ...Disabled Command Mode Global Config 8 2 2 3 ip address This command configures an IP address on an interface The IP address may be a secondary IP address Syntax ip address ipaddr subnet mask secondar...

Page 430: ...delete all next hops to a destination static route If the optional nextHopRtr parameter is designated the next hop is deleted and if the optional precedence value is designated the precedence value of...

Page 431: ...new default precedence will only be applied to static routes created after invoking the ip route precedence command Syntax ip route precedence 1 255 1 255 Default precedence value of static routes Th...

Page 432: ...alue is ethernet Command Mode Interface Config Restrictions Routed frames are always Ethernet encapsulated when a frame is routed to a VLAN 8 3 Open Shortest Path First OSPF Commands 8 3 1 Show Comman...

Page 433: ...is enabled or disabled Enable implies that the router is an autonomous system border router The router automatically becomes an ASBR when it is configured to redistribute routes learnt from other pro...

Page 434: ...Always Shows whether default routes are always advertised Metric The metric of the routes being redistributed If the metric is not configured this field is blank Metric Type Shows whether the routes a...

Page 435: ...ntax show ip ospf area areaid Default Setting None Command Mode Privileged Exec User Exec Display Messages AreaID The area id of the requested OSPF area External Routing A number representing the exte...

Page 436: ...tion Originate Shows whether to advertise a default route into the NSSA Default Metric The metric value for the default route advertised into the NSSA Default Metric Type The metric type for the defau...

Page 437: ...router interface to use when forwarding traffic to the next hop 8 3 1 5 show ip ospf database This command displays information about the link state database when OSPF is enabled If you do not enter...

Page 438: ...e Command Mode Privileged Exec User Exec Display Messages Link Id A number that uniquely identifies an LSA that a router originates from all other self originated LSAs of the same LS type Adv Router T...

Page 439: ...f opaque AS LSAs in the database Total Number of entries for all areas 8 3 1 7 show ip ospf interface This command displays the information for the IFO object or virtual interface tables Syntax show i...

Page 440: ...uters The information below will only be displayed if OSPF is enabled OSPF Interface Type Broadcast LANs such as Ethernet and IEEE 802 5 take the value broadcast The OSPF Interface Type will be broadc...

Page 441: ...interface The information below will only be displayed if OSPF is enabled Syntax show ip ospf interface stats slot port Default Setting None Command Mode Privileged Exec User Exec Display Messages OSP...

Page 442: ...lticast addresses Wrong Authentication Type The number of packets discarded because the authentication type specified in the OSPF header does not match the authentication type configured on the ingres...

Page 443: ...rt the first step in creating an adjacency between the two neighboring routers the goal is to decide which router is the master and to decide upon the initial DD sequence number Exchange the router is...

Page 444: ...ation about the area ranges for the specified areaid The areaid identifies the OSPF area whose ranges are being displayed Syntax show ip ospf range areaid Default Setting None Command Mode Privileged...

Page 445: ...anged N a network LSA has changed SN a type 3 network summary LSA has changed SA a type 4 ASBR summary LSA has changed X a type 5 or type 7 external LSA has changed 8 3 1 13 show ip ospf stub table Th...

Page 446: ...area id of the requested OSPF area Neighbor Router ID The input neighbor Router ID Hello Interval The configured hello interval for the OSPF virtual interface Dead Interval The configured dead interv...

Page 447: ...terface Retransmit Interval The configured retransmit interval for the OSPF virtual interface Transit Delay The configured transit delay for the OSPF virtual interface 8 3 2 Configuration Commands 8 3...

Page 448: ...area id Default Setting Disabled Command Mode Router OSPF Config Mode 8 3 2 4 ip ospf area Use ip ospf area command to enable OSPFv2 and set the area ID of an interface The area id is an IP address f...

Page 449: ...y no 1583compatibility Default Setting Enabled Command Mode Router OSPF Config Mode 8 3 2 6 area default cost This command configures the default cost for the stub area You must specify the area ID an...

Page 450: ...nssa default info originate metric comparable noncomparable no area areaid nssa default info originate metric comparable noncomparable Default Setting None Command Mode Router OSPF Config Mode 8 3 2 9...

Page 451: ...ecified area id Syntax area areaid nssa translator role always candidate no area areaid nssa translator role always candidate Default Setting None Command Mode Router OSPF Config Mode 8 3 2 12 area ns...

Page 452: ...k Syntax area areaid range ipaddr subnetmask summarylink nssaexternallink advertise not advertise no area areaid range ipaddr subnetmask Default Setting None Command Mode Router OSPF Config Mode 8 3 2...

Page 453: ...the Router ID of the neighbor Syntax area areaid virtual link neighbor no area areaid virtual link neighbor Default Setting None Command Mode Router OSPF Config Mode 8 3 2 17 area virtual link authent...

Page 454: ...dead interval for the OSPF virtual interface on the virtual interface identified by areaid and neighbor The neighbor parameter is the Router ID of the neighbor Syntax area areaid virtual link neighbo...

Page 455: ...the neighbor Syntax area areaid virtual link neighbor retransmit interval seconds no area areaid virtual link neighbor retransmit interval Default Setting 5 Command Mode Router OSPF Config Mode 8 3 2...

Page 456: ...per second Mbps The reference bandwidth range is 1 4294967 Mbps The different reference bandwidth can be independently configured for OSPFv2 and OSPFv3 Use no auto cost command to set the reference ba...

Page 457: ...nt scopes Use no capability opaque command to disable opaque capability on the router Syntax capability opaque no capability opaque Default Setting Disabled Command Mode Router OSPF Config Mode 8 3 2...

Page 458: ...lished To drop all adjacencies with a specific router ID specify the neighbor s Router ID using the optional parameter neighbor id Syntax clear ip ospf neighbor neighbor id Default Setting None Comman...

Page 459: ...ol the advertisement of default routes no default information originate command is used to control the advertisement of default routes Syntax default information originate always metric 0 16777214 met...

Page 460: ...pe of OSPF can be intra inter or external All the external type routes are given the same preference value Syntax distance ospf intra area 1 255 inter area 1 255 external 1 255 no distance ospf intra...

Page 461: ...g Mode 8 3 2 36 external lsdb limit external lsdb limit command configures the external LSDB limit for OSPF If the value is 1 then there is no limit When the number of non default AS external LSAs in...

Page 462: ...no ip ospf authentication Default Setting None Command Mode Interface Config 8 3 2 38 ip ospf cost ip ospf cost command configures the cost on an OSPF interface The cost parameter has a range of 1 to...

Page 463: ...8 3 2 41 ip ospf network ip ospf network command to configure OSPF to treat an interface as a point to point rather than broadcast interface The broadcast option sets the OSPF network type to broadca...

Page 464: ...highest router priority Command Mode Interface Config 8 3 2 43 ip ospf retransmit interval ip ospf retransmit command sets the OSPF retransmit Interval for the specified interface The retransmit inter...

Page 465: ...f mtu ignore command disables OSPF maximum transmission unit MTU mismatch detection OSPF Database Description packets specify the size of the largest IP packet that can be sent without fragmentation o...

Page 466: ...ic connected metric 0 16777214 metric type 1 2 tag 0 4294967295 subnets no redistribute rip bgp static connected metric 0 16777214 metric type 1 2 tag 0 4294967295 subnets Default Setting metric unspe...

Page 467: ...Default Setting Disabled Command Mode Router OSPF Config Mode 8 3 2 50 passive interface passive interface command to set the interface or tunnel as passive It overrides the global passive mode that i...

Page 468: ...Exec User Exec Display Message Maximum Hop Count Is the maximum allowable relay agent hops Minimum Wait Time Seconds Is the minimum wait time Admin Mode Represents whether relaying of requests is ena...

Page 469: ...ay enable This command enables the forwarding of relay requests for BootP DHCP Relay on the system Syntax bootpdhcprelay enable no bootpdhcprelay enable no Disable the forwarding of relay requests for...

Page 470: ...the request as a factor in deciding whether to relay the request or not Syntax bootpdhcprelay minwaittime 0 100 no bootpdhcprelay minwaittime seconds The range of minimum wait time is 0 to 100 no Set...

Page 471: ...the metric will be set to infinity The default is simple Auto Summary Mode Select enable or disable from the pulldown menu If you select enable groups of adjacent routes will be summarized into single...

Page 472: ...ter RIP operation enable disable it This is a configured value Link State Indicates whether the RIP interface is up or down This is a configured value Authentication Type The RIP Authentication Type f...

Page 473: ...on The RIP version s used when sending updates on the specified interface The types are none RIP 1 RIP 1c RIP 2 Receive Version The RIP version s allowed when receiving updates from the specified inte...

Page 474: ...8 5 2 3 auto summary This command enables the RIP auto summarization mode Syntax auto summary no auto summary no This command disables the RIP auto summarization mode Default Setting Disabled Command...

Page 475: ...fault metric no This command is used to reset the default metric of distributed routes to its default value Default Setting Not configured Command Mode Router RIP Config 8 5 2 6 distance rip This comm...

Page 476: ...mple mode will be that a route is not advertised on the interface over which it is learned Poison mode will be that routes learned over this interface should be re advertised on the interface with a m...

Page 477: ...possible match options When you submit the command redistribute ospf match matchtype the match type or types specified are added to any match types presently being redistributed Internal routes are re...

Page 478: ...s command uses simple authentication for RIP authentication encrypt This command uses MD5 encryption for RIP authentication key 16 alpha numeric characters to be used for authentication key keyid a va...

Page 479: ...ion 1 compatibility mode which sends RIP version 2 formatted packets via broadcast rip2 for sending RIP version 2 using multicast or none to not allow any RIP control packets to be sent Syntax ip rip...

Page 480: ...ximum time allowed between sending router advertisements from the interface in seconds Min Int Displays the minimum advertise interval which is the minimum time allowed between sending router advertis...

Page 481: ...Mode Interface Config 8 6 2 3 ip irdp holdtime This commands configures the value in seconds of the holdtime field of the router advertisement sent from this interface Syntax ip irdp holdtime maxadver...

Page 482: ...ommand Mode Global Config 8 6 2 5 ip irdp minadvertinterval This command configures the minimum time in seconds allowed between sending router advertisements from the interface Syntax ip irdp minadver...

Page 483: ...em Syntax show ip vlan Default Setting None Command Mode Privileged Exec User Exec Display Message MAC Address used by Routing VLANs Is the MAC Address associated with the internal bridgerouter interf...

Page 484: ...ndancy Protocol VRRP Commands 8 8 1 Show Commands 8 8 1 1 show ip vrrp This command displays whether VRRP functionality is enabled or disabled It also displays some global parameters which are require...

Page 485: ...er separated by forward slashes VRID Represents the router ID of the virtual router IP Address Is the IP Address that was configured on the virtual router Mode Represents whether the virtual router is...

Page 486: ...he specific router State Represents the state Master backup of the specific virtual router 8 8 1 4 show ip vrrp interface stats This command displays the statistical information about each virtual rou...

Page 487: ...lid Type Packets Received Represents the total number of VRRP packets received by the virtual router with invalid type field Address List Errors Represents the total number of VRRP packets received fo...

Page 488: ...mmands also designates the configured virtual router IP address as a secondary IP address on an interface Syntax ip vrrp 1 255 ip addr secondary no ip vrrp 1 255 ip addr secondary 1 255 The range of v...

Page 489: ...the virtual router configured on a specified interface Syntax ip vrrp 1 255 authentication key no ip vrrp 1 255 authentication 1 255 The range of virtual router ID is 1 to 255 key A text password used...

Page 490: ...address owner is always master If the master has a priority less than 255 it is not the address owner and you configure the priority of another router in the group higher than the master s priority t...

Page 491: ...crement argument When the interface is up for IP protocol the priority will be incremented by the decrement value A VRRP configured interface can track more than one interface When a tracked interface...

Page 492: ...route to be tracked without giving the optional priority then the default priority will be set The default priority decrement is 10 The default priority decrement is changed using the decrement argume...

Page 493: ...Setting None Command Mode Privileged Exec User EXEC Admin Mode This field indicates whether DVMRP is enabled or disabled This is a configured value Display Message Admin Mode Enable or disable DVMRP f...

Page 494: ...Address This is the IP Address of the interface This Field is displayed only when DVMRP is operational on the interface Generation ID This is the Generation ID value for the interface This is used by...

Page 495: ...lities This shows the capabilities of neighbor Received Routes This shows the number of routes received from the neighbor Rcvd Bad Pkts This field displays the number of invalid packets received from...

Page 496: ...eld displays the network Mask for the prune source It should be all 1s or both the prune source and prune mask must match Expiry Time secs This field indicates the expiry time in seconds This is the t...

Page 497: ...to age out Up Time secs This field indicates the time when a specified route was learnt in seconds 9 1 2 Configuration Commands 9 1 2 1 ip dvmrp This command sets administrative mode of DVMRP in the...

Page 498: ...s network Default Setting 1 Command Mode Interface Config 9 2 Internet Group Management Protocol IGMP Commands This section provides a detailed explanation of the IGMP commands The commands are divide...

Page 499: ...displays the registered multicast groups on the interface in detail Syntax show ip igmp groups slot port detail slot port Valid slot and port number separated by forward slashes detail Display details...

Page 500: ...uld be an integer value or if there is no Version 2 host present Group Compatibilty Mode The group compatibility mode v1 v2 or v3 for this group on the specified interface 9 2 1 3 show ip igmp interfa...

Page 501: ...ip igmp interface membership This command displays the list of interfaces that have registered in the multicast group Syntax show ip igmp interface membership multiipaddr detail multiipaddr A multica...

Page 502: ...ber separated by forward slashes Default Setting None Command Mode Privileged Exec User EXEC Display Message Querier Status This field indicates the status of the IGMP router whether it is running in...

Page 503: ...ting Disabled Command Mode Global Config This command sets the administrative mode of IGMP on an interface to active Syntax ip igmp no ip igmp no This command sets the administrative mode of IGMP on a...

Page 504: ...d resets the number of Group Specific Queries to the default value Default Setting 2 Command Mode Interface Config 9 2 2 4 ip igmp last member query interval This command configures the Maximum Respon...

Page 505: ...Command Mode Interface Config 9 2 2 6 ip igmp query max response time This command configures the maximum response time interval for the specified interface which is the maximum query response time a...

Page 506: ...is 1 to 255 no This command sets the robustness value to default Default Setting 2 Command Mode Interface Config 9 2 2 8 ip igmp startup query count This command sets the number of Queries sent out on...

Page 507: ...d explanation of the MLD commands The commands are divided into the following different groups Show commands are used to display device settings statistics and other information Configuration commands...

Page 508: ...received for this multicast group address on that interface Filter Mode The filter mode of the multicast group on this interface The values it can take are include and exclude Version 1 Host Timer The...

Page 509: ...on is displayed if the operational mode of the MLD interface is enabled Querier Status This value indicates whether the interface is an MLD querier or non querier on the subnet it is associated with Q...

Page 510: ...nterval for the interface The query interval is the amount of time between the general queries sent when the router is the querier on that interface The range for query interval is 1 to 3600 seconds S...

Page 511: ...ry interval no Use this command to reset the last member query interval parameter of the interface to the default value Default Setting 1000 milliseconds Command Mode Interface Config 9 3 2 4 ipv6 mld...

Page 512: ...r can go to the CLI Privilege Configuration Mode to clear MLD counters on the system use the clear ipv6 mld counters slot port priviledge configuration command Syntax clear ipv6 mld counters slot port...

Page 513: ...ersion 1 2 The mld version number no This command resets the version of MLD for this interface The version is reset to the default value Default Setting 2 Command Mode Interface Config 9 4 Multicast C...

Page 514: ...arding Multicast Stream Entry Count This field displays the number of entries in the multicast table 9 4 1 2 show ip mcast boundary This command displays all the configured administrative scoped multi...

Page 515: ...ary Default Setting None Command Mode Privileged Exec User Exec Display Message If the detail parameter is specified the following fields are displayed Source IP This field displays the IP address of...

Page 516: ...ble details summary Display the multicast routing table summary Default Setting None Command Mode Privileged Exec User Exec Display Message If the detail parameter is specified the follow fields are d...

Page 517: ...Source IP This field displays the IP address of the multicast data source Group IP This field displays the IP address of the destination of the multicast packet Expiry Time secs This field displays t...

Page 518: ...wever the IP multicast mode configuration is stored in the multicast configuration file and is automatically enabled once IGMP is enabled Default Setting Disbaled Command Mode Global Config 9 4 2 2 ip...

Page 519: ...ast ttl threshold 0 255 no ip multicast ttl threshold 0 255 the TTL threshold no This command applies the default ttlthreshold to a routing interface The ttlthreshold is the TTL threshold which is to...

Page 520: ...m interface This command displays the interface information for PIM DM on the specified interface Syntax show ip pimdm interface slot port slot port Interface number Default Setting None Command Mode...

Page 521: ...Router This indicates the IP Address of the Designated Router for this interface 9 5 1 4 show ip pimdm neighbor This command displays the neighbor information for PIM DM on the specified interface Syn...

Page 522: ...ive mode of PIM DM in the router IGMP must be enabled before PIM DM can be enabled Default Setting Disabled Command Mode Global Config 9 5 2 2 ip pimdm This command sets administrative mode of PIM DM...

Page 523: ...IM enabled neighbors to the default value Default Setting 30 Command Mode Interface Config 9 6 Protocol Independent Multicast Sparse Mode PIM SM Commands 9 6 1 Show Commands 9 6 1 1 show ip pimsm This...

Page 524: ...dvertisement Syntax show ip pimsm bsr Default Setting None Command Mode Privileged Exec User Eexc Display Message BSR Address IP address of the BSR Uptime Length of time that this router has been up i...

Page 525: ...or the PIM SM router The interval is in seconds Neighbor Count This field indicates the neighbor count for the PIM SM interface Designated Route This field indicates the IP address of the Designated R...

Page 526: ...rphash group address group address the IP multicast group address Default Setting None Command Mode Privileged Exec User Exec Display Message RP The IP address of the RP for the group specified Origi...

Page 527: ...be enabled Default Setting Disbaled Command Mode Global Config 9 6 2 2 ip pimsm join prune interval This command is used to configure the global join prune interval for PIM SM router The join prune i...

Page 528: ...p pimsm spt threshold This command is used to configure the Data Threshold rate for the last hop router to switch to the shortest path The rate is specified in Kilobits per second The possible values...

Page 529: ...SM router The parameter rp address is the IP address of the RP The parameter group address is the group address supported by the RP The parameter group mask is the group mask for the group address De...

Page 530: ...r border This command is used to prevent bootstrap router BSR messages from being sent or received through an interface Syntax ip pimsm bsr border no ip pimsm bsr border no This command is used to dis...

Page 531: ...value was 24 only the first 24 bits of the group addresses matter This allows you to get one RP for multiple groups priority Priority of the candidate BSR The range is an integer from 0 to 255 The BS...

Page 532: ...he Source Specific Multicast SSM range Default Setting Disabled Command Mode Global Config 9 7 IGMP Proxy Commands The IGMP Proxy is used by IGMP Router IPv4 system to enable the system to issue IGMP...

Page 533: ...the Querier if any in the network attached to the upstream interface IGMP Proxy interface Older Version 1 Querier Timeout The interval used to timeout the older version 1 queriers Older Version 2 Que...

Page 534: ...ileged Exec User Exec Display Message Interface The interface number of the IGMP Proxy Group Address The IP address of the multicast group Last Reporter The IP address of host that last sent a members...

Page 535: ...s follows Ver Shows the IGMP version Query Rcvd Number of IGMP queries received Report Rcvd Number of IGMP reports received Report Sent Number of IGMP reports sent Leaves Rcvd Number of IGMP leaves re...

Page 536: ...erface Config 9 7 2 3 ip igmp proxy unsolicit rprt interval This command sets the unsolicited report interval for the IGMP Proxy router This command is valid only when you enable IGMP Proxy on the int...

Page 537: ...is enabled or not This is a configured value Operational Mode States whether the MLD Proxy is operationally enabled or not This is a status parameter Version The present MLD host version that is opera...

Page 538: ...he latest group membership query for this group Delay_Member interface is going to send a group membership report to respond to a group membership query for this group Filter Mode Possible values are...

Page 539: ...xpiry Time Time left before a source is deleted 9 8 1 4 show ipv6 mld proxy interface This command displays a detailed list of the host interface status parameters It displays the following parameters...

Page 540: ...d Mode Interface Config 9 8 2 2 ipv6 mld proxy reset status This command resets reset the host interface status parameters of the MLD Proxy router This command is only valid when you enable MLD Proxy...

Page 541: ...541 no ipv6 mld proxy unsolicit rprt interval no This command resets the unsolicited report interval of the MLD Proxy router to the default value Default Setting None Command Mode Interface Config...

Page 542: ...w Commands 10 1 1 1 show interface tunnel This command displays the parameters related to tunnel such as tunnel mode tunnel source address and tunnel destination address Syntax show interface tunnel 0...

Page 543: ...emoves the tunnel interface and associated configuration parameters for the specified tunnel interface Default Setting None Command Mode Global Config 10 1 2 2 tunnel source This command specifies the...

Page 544: ...mode is configured Syntax tunnel mode ipv6ip 6to4 Default Setting None Command Mode Interfacel Tunnel Mode 10 2 Loopback Interface Commands The commands in this section describe how to create delete...

Page 545: ...e number of packets received on this interface Sent Packets Shows the number of packets transmitted from this interface IPv6 Address Shows the IPv6 address of this interface If you specify a loopback...

Page 546: ...nds 10 3 1 1 show ipv6 brief This command displays the IPv6 status of forwarding mode and IPv6 unicast routing mode Syntax show ipv6 brief Default Setting None Command Mode Privileged Exec User Exec D...

Page 547: ...v6 Address Length Shows the IPv6 address and length on interfaces with IPv6 enabled If you specify an interface the following information also appears Routing Mode Shows whether IPv6 routing is enable...

Page 548: ...ation also appears IPv6 Prefix Shows the IPv6 prefix for the specified interface Preferred Lifetime Shows the amount of time the advertised prefix is a preferred prefix Valid Lifetime Shows the amount...

Page 549: ...ing None Command Mode Privileged Exec User Exec Display Message IPv6 Address Specifies the IPv6 address of neighbor MAC Address Specifies the MAC address of neighbor isRtr Specifies the router flag Ne...

Page 550: ...If you use the connected keyword for protocol the all option is not available because there are no best or non best connected routes Syntax show ipv6 route ipv6 address protocol ipv6 prefix ipv6 prefi...

Page 551: ...ct routes routes of REJECT type installed by any protocol are not redistributed by OSPF RIP Reject routes are supported in both OSPFv2 and OSPFv3 10 3 1 7 show ipv6 route preferences This command disp...

Page 552: ...different lengths Total Routes Shows the total number of routes in the routing table 10 3 1 9 show ipv6 vlan This command displays IPv6 VLAN routing interface addresses Syntax show ipv6 vlan Default...

Page 553: ...smit them to their destination Received Datagrams With Unknown Protocol Number of locally addressed datagrams received successfully but discarded because of an unknown or unsupported protocol This cou...

Page 554: ...met this discretionary discard criterion Fragments Created Number of output datagram fragments that have been generated as a result of fragmentation at this output interface Datagrams Successfully Fra...

Page 555: ...ransmitted Number of ICMP destination unreachable communication administratively prohibited messages sent ICMPv6 Time Exceeded Messages Transmitted Number of ICMP Time Exceeded messages sent by the in...

Page 556: ...limit This command defines the unicast hop count used in ipv6 packets originated by the node The value is also included in router advertisements Valid values for hops are 1 64 inclusive The default n...

Page 557: ...ou use this command the interface is automatically configured with a link local address You do not need to use this command if you configured an IPv6 global address on the interface Syntax ipv6 enable...

Page 558: ...fix length is 3ffe 1 1234 64 The optional eui 64 field designates that IPv6 processing on the interfaces was enabled using an EUI 64 interface ID in the low order 64 bits of the address If you use thi...

Page 559: ...ce slot port identifies direct static routes from point to point and broadcast interfaces and must be specified when using a link local address as the next hop A route with a preference of 255 cannot...

Page 560: ...when determining the best route Default Setting 1 Command Mode Global Config 10 3 2 9 ipv6 mtu This command sets the maximum transmission unit MTU size in bytes of IPv6 packets on an interface This co...

Page 561: ...v6 nd managed config flag no ipv6 nd managed config flag no This command resets the managed address configuration flag in router advertisements to the default value Default Setting False Command Mode...

Page 562: ...his command resets the other stateful configuration flag back to its default value in router advertisements sent from the interface Default Setting False Command Mode Interface Config 10 3 2 14 ipv6 n...

Page 563: ...etime to the default value Default Setting 1800 Command Mode Interface Config 10 3 2 16 ipv6 nd reachable time This command sets the router advertisement time to consider a neighbor reachable after ne...

Page 564: ...he IPv6 addresses configured on the interface where the RA is transmitted Addresses are configured using the ipv6 address interface configuration command Each prefix advertisement includes information...

Page 565: ...te limit is configured as a token bucket with two configurable parameters burst size and burst interval Syntax ipv6 icmp error interval burst interval burst size no ipv6 icmp error interval burst inte...

Page 566: ...lt values Default Setting None Command Mode Global Config 10 4 OSPFv3 Commands This section describes the commands you use to configure OSPFv3 which is a link state routing protocol that you use to ro...

Page 567: ...that have been originated LSAs Received Shows the number of link state advertisements received determined to be new instantiations External LSDB Limit Shows the maximum number of non default AS extern...

Page 568: ...er ID Router ID of the destination Cost Cost of using this route Area ID The area ID of the area from which this route is learned Next Hop Next hop toward the destination Next Hop Intf The outgoing ro...

Page 569: ...following OSPF NSSA specific information displays only if the area is configured as an NSSA Import Summary LSAs Shows whether to import summary LSAs into the NSSA Redistribute into NSSA Shows whether...

Page 570: ...network to display the network LSAs Use nssa external to display NSSA external LSAs Use prefix to display intra area Prefix LSAs Use router to display router LSAs Use unknown area unknown as or unkno...

Page 571: ...LSAs in the OSPFv3 link state database Inter area Prefix Total number of inter area prefix LSAs in the OSPFv3 link state database Inter area Router Total number of inter area router LSAs in the OSPFv...

Page 572: ...which the interface sends LSA Hello Interval Shows the frequency in seconds at which the interface sends Hello packets Dead Interval Shows the amount of time in seconds the interface waits before ass...

Page 573: ...rt number separated by forward slashes OSPF Admin Mode States whether OSPF is enabled or disabled on a router interface This is a configured value OSPF Area ID Represents the OSPF Area Id for the spec...

Page 574: ...total number of LSA acknowledged from this interface LSA Acks Sent The total number of LSAs acknowledged to this interface Sent Packets The number of OSPF packets transmitted on the interface Receive...

Page 575: ...rt Interface number Default Setting None Command Mode Privileged Exec User Exec Display Messages If you do not specify an IP address a table with the following columns displays for all neighbors or th...

Page 576: ...An integer value that indicates the optional OSPF capabilities supported by the neighbor These are listed in its Hello packets This enables received Hello Packets to be rejected i e neighbor relation...

Page 577: ...h Syntax show ipv6 ospf stub table Default Setting None Command Mode Privileged Exec User Exec Display Messages Area ID Is a 32 bit identifier for the created stub area Type of Service Is the type of...

Page 578: ...uthentication the interface performs on LSAs it receives State The OSPF Interface States are down loopback waiting point to point designated router and backup designated router This is the state of th...

Page 579: ...Mode Interface Config 10 4 2 2 ipv6 ospf areaid This command sets the OSPF area to which the specified router interface belongs The areaid is an IPv6 address formatted as a 4 digit dotted decimal numb...

Page 580: ...have not been seen before its neighbor routers declare that the router is down The value for the length of time must be the same for all routers attached to a common network This value should be some...

Page 581: ...router can accept the Database Description packet is rejected and the OSPF adjacency is not established Syntax ipv6 ospf mtu ignore no ipv6 ospf mtu ignore no This command enables the OSPF MTU mismatc...

Page 582: ...55 no ipv6 ospf priority no This command sets the default OSPF priority for the specified router interface Default Setting 1 which is the highest router priority Command Mode Interface Config 10 4 2 9...

Page 583: ...ts the estimated number of seconds it takes to transmit a link state update packet over this interface Valid values for seconds range from 1 to 3600 1 hour Syntax ipv6 ospf transmit delay seconds no i...

Page 584: ...n as an NSSA Syntax area areaid nssa no area areaid nssa areaid Area ID no This command disables nssa from the specified area id Default Setting None Command Mode Router OSPFv3 Config 10 4 2 14 area n...

Page 585: ...into the NSSA Default Setting None Command Mode Router OSPFv3 Config 10 4 2 15 area nssa no redistribute This command configures the NSSA ABR so that learned external routes will not be redistributed...

Page 586: ...or role always candidate no area areaid nssa translator role areaid Area ID always A value of always will cause the router to assume the role of the translator when it becomes a border router candidat...

Page 587: ...her summarylink or nssaexternallink and the advertising of the area range can be allowed or suppressed Syntax area areaid range ipv6 prefix prefix length summarylink nssaexternallink advertise not adv...

Page 588: ...id stub no area areaid stub areaid Area ID no This command deletes a stub area for the specified area ID Default Setting None Command Mode Router OSPFv3 Config 10 4 2 21 area stub no summary This comm...

Page 589: ...tication type is none Command Mode Router OSPFv3 Config 10 4 2 23 area virtual link dead interval This command configures the dead interval for the OSPF virtual interface on the virtual interface iden...

Page 590: ...ied by areaid and neighborid Default Setting 10 seconds Command Mode Router OSPFv3 Config 10 4 2 25 area virtual link retransmit interval This command configures the retransmit interval for the OSPF v...

Page 591: ...n the auto cost reference bandwidth and bandwidth commands give you control over the default link cost You can configure for OSPF an interface bandwidth that is independent of the actual link speed A...

Page 592: ...tric type The value of metric type is type 1 or type 2 no This command configures the default advertisement of default routes Default Setting Metric unspecified Type 2 Command Mode Router OSPFv3 Confi...

Page 593: ...c Syntax distance ospf intra inter type1 type2 preference no distance ospf intra inter type1 type2 preference The range for intra is 1 to 252 The range for inter is 2 to 253 The range for type1 is 3 t...

Page 594: ...Setting 0 Command Mode Router OSPFv3 Config 10 4 2 33 external lsdb limit This command configures the external LSDB limit for OSPF If the value is 1 then there is no limit When the number of non defa...

Page 595: ...Router OSPFv3 Config 10 4 2 35 passive interface default Use this command to enable global passive mode by default for all interfaces It overrides any interface level passive mode OSPF shall not form...

Page 596: ...2 tag 0 4294967295 no redistribute static connected metric metric type tag 0 16777215 The range of metric is 0 to 16777214 0 4294967295 The range of tag is 0 to 4294967295 Default Setting Metric is u...

Page 597: ...l 10 5 1 Show Commands 10 5 1 1 show ipv6 rip This command displays information relevant to the RIPng router Syntax show ipv6 rip Default Setting None Command Mode Privileged Exec Display Messages RIP...

Page 598: ...ts the default administrative mode of RIPng in the router active Syntax enable no enable no This command sets the administrative mode of RIPng in the router to inactive Default Setting Enabled Command...

Page 599: ...ault information originate no default information originate no This command is used to cancel the advertisement of default routes Default Setting Disabled Command Mode IPv6 Router RIP Config 10 5 2 5...

Page 600: ...plit horizon This command sets the RIPngplit horizon mode None mode will not use RIPngplit horizon mode Simple mode will be that a route is not advertised on the interface over which it is learned Poi...

Page 601: ...stribute routes from the specified source protocol routers Default Setting Metric not configured Command Mode IPv6 Router RIP Config 10 5 2 9 ipv6 rip timer The user can go to the CLI Global Configura...

Page 602: ...interface configuration command Use the no ipv6 rip passive interface return to the default value Syntax ipv6 rip passive interface no ipv6 rip passive interface no This command sets the RIPng timer t...

Page 603: ...or all interfaces or for the specified interface If no interface is specified configuration of all interfaces is displayed Syntax show ipv6 pimdm interface slot port all Default Setting None Command M...

Page 604: ...ulticast Routing Mode either across the router Global Config or on a particular router Interface Config Syntax ipv6 pimdm no ipv6 pimdm no Use this command to administratively disable PIM DM Multicast...

Page 605: ...Display Message Admin Mode Indicates whether PIM SM is enabled or disabled Data Threshold Rate Kbps The data threshold rate for the PIM SM router Register Threshold Rate Kbps The threshold rate for th...

Page 606: ...that is to be ANDed with the group address before the hash function is called This value is configured in the ip pimsm bsr candidate command Next Bootstrap Message In Time in hours minutes and seconds...

Page 607: ...border interface Possible values are enabled or disabled 10 7 1 4 show ipv6 pimsm neighbor This command displays the neighbor information for PIM SM on the specified interface Syntax show ipv6 pimsm...

Page 608: ...from the bootstrap router BSR If no RP is specified all active RPs are displayed Syntax show ipv6 pimsm rp mapping rp address Default Setting None Command Mode Privileged Exec User Exec Display Messag...

Page 609: ...spond to the same RP For example if this value was 24 only the first 24 bits of the group addresses matter This allows you to get one RP for multiple groups priority Priority of the candidate BSR The...

Page 610: ...ommand prevails over the RP learned by BSR Syntax ipv6 pimsm rp address rp address group address group mask override no ipv6 pimsm rp address rp address group address group mask no This command is use...

Page 611: ...imsm spt threshold no This command is used to set the Data Threshold rate for the RP router to the default value Default Setting 0 Command Mode Global Config 10 7 2 7 ipv6 pimsm ssm Use this command t...

Page 612: ...iority value for which a router is elected as the designated router DR Syntax ipv6 pimsm dr priority 0 2147483647 no ipv6 pimsm dr priority no Use this command to disable the interface from being the...

Page 613: ...lo interval This command is used to configure the PIM SM hello interval for the specified interface The hello interval range is 0 18000 is specified in seconds Syntax ipv6 pimsm hello interval 0 18000...

Page 614: ...manager Ping DHCP client DNS Relay SNTP system time defining system parameters including telnet session and console baud rate etc downloading switch module software and resetting the switch module sw...

Page 615: ...ution Protocol ARP dynamically maps physical MAC addresses to Internet IP addresses This panel displays the current contents of the ARP cache For each connection the following information is displayed...

Page 616: ...anufacturing part number Base MAC Address The burned in universally administered MAC address of this switch Hardware Version The hardware version of this switch It is divided into four parts The first...

Page 617: ...ADT7460_1 Fan 3 Status Status of Fan3 It could be active or inactive ADT7460_1 Fan 4 Status Status of Fan3 It could be active or inactive Back To Front Connected ADT7460 2 ADT7460_2 Fan 1 Status Stat...

Page 618: ...change code for the corporation Vendor Part Number Part number provided by SFP transceiver vendor Vendor Serial Number Serial number provided by vendor Vendor Revision Number Revision level for part n...

Page 619: ...may use up to 31 alpha numeric characters The factory default is blank System Contact Enter the contact person for this switch You may use up to 31 alpha numeric characters The factory default is blan...

Page 620: ...a DHCP request or do nothing None The factory default is None You cannot make this choice for both the network configuration protocol and the service port You will only be given the choices for Bootp...

Page 621: ...Ipv6 Address of a neighbor switch visible to the Service Port Mac Address The MacAddress of the neighboring switch isRtr true 1 if the neighbor machine is a router false 2 otherwise Neighbor State The...

Page 622: ...ia telnet SNMP based management Web based management Selection Criteria Network Configuration Protocol Current Specify what the switch should do following power up transmit a Bootp request transmit a...

Page 623: ...figurable Data Burned in MAC Address The burned in MAC address used for in band connectivity if you choose not to configure a locally administered address Command Buttons Submit Update the switch with...

Page 624: ...rd Timeout This field is used to set the hard timeout for HTTP sessions This timeout is unaffected by the activity level of the session The value must be in the range of 0 to 168 hours A value of zero...

Page 625: ...isconnected The default value is Enable Configurable Data Telnet Session Timeout minutes Specify how many minutes of inactivity should occur on a telnet session before the session is logged off You ma...

Page 626: ...meout Specifies the Outbound Telnet login inactivity timeout Default value is 5 Valid Range is 1 to 160 Command Buttons Submit Sends the updated configuration to the switch Configuration changes take...

Page 627: ...ult is 5 Entering 0 disables the timeout Password Threshold When the logon attempt threshold is reached on the console port the system interface becomes silent for a specified amount of time before al...

Page 628: ...of six Only a user with Read Write privileges may alter data on this screen and only one account may be created with Read Write privileges Selection Criteria User Name Selector You can use this scree...

Page 629: ...dmin account always has Read Write access and all other accounts have Read Only access SNMP v3 Access Mode Indicates the SNMPv3 access privileges for the user account The admin account always has Read...

Page 630: ...ny that should appear second in the selected authentication login list This is the method that will be used if the first method times out If you select a method that does not time out as the second me...

Page 631: ...ession Type Shows the type of session telnet serial or SSH Command Buttons Refresh Update the information on the page 11 2 3 14 Viewing Authentication List Summary Page Non Configurable Data Authentic...

Page 632: ...List until you specifically assign them to a different list A user that does not have an account configured on the switch is termed the default or non configured user If you assign the non configured...

Page 633: ...e user will be required to enter a new password following the first login after password expiration A value of 0 indicates that passwords never expire Password History The number of previous passwords...

Page 634: ...ulldown entry field Enabling ICMP Fragment DoS prevention causes the switch to drop ICMP Fragmented packets The factory default is disabled TCP Port Enable or disable this option by selecting the corr...

Page 635: ...this option by selecting the corresponding line on the pulldown entry field Enabling First Fragment DoS prevention causes the switch to drop packets that have a More fragment equal to 1 and coorperate...

Page 636: ...tion about entries in the forwarding database These entries are used by the transparent bridging function to determine how to forward a received frame Selection Criteria Filter Specify the entries you...

Page 637: ...ment the system MAC address which is identified with interface 0 1 Self the MAC address of one of the switch s physical interfaces Command Buttons Search Search for the specified MAC address Refresh R...

Page 638: ...er level message 1 with severity 7 debug on a system that is not stack and generated by component MSTP running in thread id 2110 on Aug 24 05 34 05 by line 318 of file mstp_api c This is the 237th mes...

Page 639: ...device attached to the host Selection Criteria Admin Status A log that is Disabled shall not log messages A log that is Enabled shall log messages Enable or Disable logging by selecting the correspon...

Page 640: ...ogged and the updated log is saved in FLASH memory the switch will be reset The log can hold at least 2 000 entries the actual number depends on the platform and OS and is erased when an attempt is ma...

Page 641: ...verity option by selecting the corresponding line on the pulldown entry field These severity levels have been enumerated below Emergency 0 system is unusable Alert 1 action must be taken immediately C...

Page 642: ...ia Admin Status A log that is Disabled shall not log messages to connected terminals A log that is Enabled shall log messages to connected terminals Enable or Disable logging by selecting the correspo...

Page 643: ...igured for each collector relay Enable Disable the operation of the syslog function by selecting the corresponding line on the pulldown entry field Configurable Data Local UDP Port This is the port on...

Page 644: ...the pulldown entry field The factory default is enabled Host Mode Selects the dot1x protocol host type Single host means accept only one user on this port Multi host means accept multi users on this...

Page 645: ...ol feature on the selected interface Configurable Data Maximum Frame Size The maximum Ethernet frame size the interface supports or is configured including Ethernet header CRC and payload 1518 to 9216...

Page 646: ...s a monitoring port Look at the Port Monitoring screens for more information LAG the port is a member of a Link Aggregation trunk Look at the LAG screens for more information STP Mode The Spanning Tre...

Page 647: ...ort will send a trap when link status changes ifIndex Indicates the ifIndex of the interface table entry associated with this port Flow Control Indicates the status of flow control on this port Packet...

Page 648: ...ffset Displays the bit offset value which corresponds to the port when the MIB object type PortList is used to manage in SNMP IfIndex Displays the interface index associated with the port Port Descipt...

Page 649: ...ated length Unknown is displayedif the cable length could not be determined The Cable Length is only displayed if the cable status is Normal This field is displayed after the Test Cable button has bee...

Page 650: ...and will receive all the traffic from configured mirrored port s Default value is blank Configurable Data Source Port s Specifies the source port s with directions as mirrored port s Traffic of the so...

Page 651: ...nabled or disabled The default value for this is Disabled Interface EtherType The two byte hex EtherType to be used as the first 16 bits of the DVlan tag 802 1Q Tag Commonly used tag representing 0x81...

Page 652: ...Tagging can be enabled or disabled The default value for this is Disabled Interface EtherType The two byte hex EtherType to be used as the first 16 bits of the DVlan tag 802 1Q Tag Commonly used tag...

Page 653: ...he version of this MIB Organization Broadcom Corp Revision 1 0 Agent Address The IP address associated with this agent Traffic Rate Summary Interval The maximum number of seconds between successive su...

Page 654: ...for setting a new value before the old one expires Allowed range is 0 to 4294967295 secs A value of zero sets the selected receiver configuration to its default values sFlow Receiver Maximum Datagram...

Page 655: ...urable Data Receiver Index The sFlowReceiver associated with this counter poller Allowed range is 1 to 8 Poller Interval The maximum number of seconds between successive samples of the counters associ...

Page 656: ...also expire Allowed range is 1 to 8 Sampling Rate The statistical sampling rate for packet sampling from this source A sampling rate of 1 counts all packets A sampling rate of 0 disables sampling Allo...

Page 657: ...directed to the broadcast address Note that this does not include multicast packets Discarded Packets Received Rate The number of inbound packets which were chosen to be discarded rates even though no...

Page 658: ...o free up buffer space Errors Transmitted Rate The errors transmitted rate of Single Multiple and Excessive Collisions Time Since Counters Last Cleared The elapsed time in days hours minutes and secon...

Page 659: ...and Client IP Mask parameters are 192 168 1 0 255 255 255 0 then any client whose IP address is 192 168 1 0 through 192 168 1 255 inclusive will be allowed access To allow access from only one station...

Page 660: ...ps to the receiver Configurable Data SNMP Community Name Enter the community string for the SNMP trap packet to be sent to the trap manager This may be up to 16 characters and is case sensitive IP Add...

Page 661: ...661 Non configurable Data Name The RFC number if applicable and the name of the MIB Description The RFC title or MIB description Command Buttons Refresh Update the data...

Page 662: ...cted to the broadcast address Note that this does not include multicast packets Receive Packets Discarded The number of inbound packets which were chosen to be discarded even though no errors had been...

Page 663: ...es Ever Used The largest number of VLANs that have been active on this switch since the last reboot Static VLAN Entries The number of presently active VLAN entries on this switch that have been create...

Page 664: ...ransmit Packet Errors The number of outbound packets that could not be transmitted because of errors Address Entries Currently in Use The total number of Forwarding Database Address Table entries now...

Page 665: ...total number of packets including bad packets received or transmitted that were between 1519 and 2047 octets in length inclusive excluding framing bits but including FCS octets Packets RX and TX 2048...

Page 666: ...e condition where any packet exceeds 20 ms The allowed range to detect jabber is between 20 ms and 150 ms Undersize Received The total number of packets received that were less than 64 octets in lengt...

Page 667: ...s The total number of packets transmitted that had a length excluding framing bits but including FCS octets of between 64 and 1518 octets inclusive but had a bad Frame Check Sequence FCS with an integ...

Page 668: ...tted from the selected port Time Since Counters Last Cleared The elapsed time in days hours minutes and seconds since the statistics for this port were last cleared Command Buttons Clear Counters Clea...

Page 669: ...ed with Errors The number of inbound packets that contained errors preventing them from being deliverable to a higher layer protocol Broadcast Packets Received The total number of good packets receive...

Page 670: ...screen with the present state of the data in the switch 11 2 10 Managing System Utilities 11 2 10 1 Saving All Configuration Changed Page Command Buttons Save Click this button to have configuration...

Page 671: ...efault values If you want the switch to retain the new values across a power cycle you must perform a save 11 2 10 4 Resetting the Passwords to Default Values Page Command Buttons Reset Select this bu...

Page 672: ...SSL Server Certificate File PEM Encoded SSL DH Weak Encryption Parameter PEM File SSL Diffie Hellman Weak Encryption Parameter File PEM Encoded SSL DH Strong Encryption Parameter PEM File SSL Diffie...

Page 673: ...Type Specify the type of file you want to upload The available options are Script Code CLI Banner Configuration Error Log Buffered Log and Trap Log The factory default is Error Log Protocol Mode Spec...

Page 674: ...file upload 11 2 10 7 Defining Configuration and Runtime Startup File Page Specify the file used to start up the system Selection Criteria Configuration File Configuration files Runtime File Run time...

Page 675: ...to copy a start up configuration file from the running configuration file on switch Configurable Data File Name Enter the name you want to give the file being copied You may enter up to 32 characters...

Page 676: ...st Name Configurable Data IP Address Enter the IP address of the station you want the switch to ping The initial value is blank The IP Address you enter is not retained across a power cycle Host Name...

Page 677: ...retained across a power cycle Datagram Size Enter the datagram size The valid range is 48 to 2048 Non Configurable Data Ping Output The reply result received from switch Command Buttons Submit This wi...

Page 678: ...er is not retained across a power cycle MaxTTL Enter the maximum TTL for the destination The initial value is default value The MaxTTL you enter is not retained across a power cycle InitTTL Enter the...

Page 679: ...Mode CDP administration mode which are Enable and Disable Slot Port Specifies the list of ports Configurable Data Hold Time the legal time period of a received CDP packet Transmit Interval the CDP pa...

Page 680: ...orm name of the device for example FSC the L2 Network Switch Port ID Identifies the port on which the CDP packet is sent Address The addresses of the interface that has sent the update Management Addr...

Page 681: ...age will be sent to any enabled SNMP Trap Receivers and a message will be written to the trap log Selection Criteria Authentication Enable or disable activation of authentication failure traps by sele...

Page 682: ...ed or disable activation of OSPFv3 traps by selecting the corresponding line on the pulldown entry field The factory default is disabled This field can be configured only if the OSPFv3 admin mode is e...

Page 683: ...shion A unicast client sends a request to a designated server at its unicast address and expects a reply from which it can determine the time and optionally the round trip delay and local clock offset...

Page 684: ...mode Allowed range is 1 to 30 Default value is 5 Unicast Poll Retry Specifies the number of times to retry a request to an SNTP server after the first time out before attempting to use the next config...

Page 685: ...m field equal to 0 in a message received from a server Server IP Address Specifies the IP address of the server for the last received valid packet If no message has been received from any server an em...

Page 686: ...h SNTP requests are to be sent Allowed range is 1 to 65535 Default value is 123 Priority Specifies the priority of this server entry in determining the sequence of servers to which SNTP requests will...

Page 687: ...ul and the system time was updated Request Timed Out A directed SNTP request timed out without receiving a response from the SNTP server Bad Date Encoded The time provided by the SNTP server is not va...

Page 688: ...ch but these changes will not be retained across a power cycle unless a save is performed 11 2 13 6 Configuring Time Zone Settings Page Simple Network Time Protocol SNTP allows the switch to set its i...

Page 689: ...local time zone after west of UTC Command Buttons Submit Send the updated screen to the switch Changes take effect on the switch but these changes will not be retained across a power cycle unless a s...

Page 690: ...the network portion of the address provided to the client will be based on this new domain Command Buttons Reset Send the updated screen to the switch perform the restart DHCP6 client 11 2 14 2 Confi...

Page 691: ...omain names IP has defined the concept of a domain name server which holds a cache or database of names mapped to IP addresses To map domain names to IP addresses you must first identify the host name...

Page 692: ...Data Domain Name Specifies the domain name Do not include the initial period that separates an unqualified name from the domain name This is a text string of up to 63 characters Command Buttons Submi...

Page 693: ...ifies the number of DNS Server responses since last agent reboots Command Buttons Submit Sends the updated configuration to the switch Configuration changes take effect immediately Delete Deletes the...

Page 694: ...Select IPv4 or IPv6 to configure the corresponding attributes Domain Specifies all the existing hosts along with an additional option Create When the user selects Create another text box Domain Name a...

Page 695: ...ory default is disabled MAC Address Validation Enables or disables the validation of sender MAC Address for DHCP Snooping The factory default is enabled Command Buttons Submit Applies the new configur...

Page 696: ...ctory default is disabled Logging Invalid Packets If it is Enabled DHCP snooping application logs invalid packets on this interface The factory default is disabled Rate Limit Specifies rate limit valu...

Page 697: ...to 3965 IP Address Specify valid IP Address for the binding rule Non configurable data Static Binding List Lists all the DHCP snooping static binding entries page by page Ex Page 1 displays first 15 a...

Page 698: ...inding entry into the database Submit Deletes selected static entries from the database ClearAll Deletes all DHCP Snooping binding entries Refresh Refresh the data on the screen with the present state...

Page 699: ...figuration is performed 11 3 1 6 DHCP Snooping Interface Statistics Page Selection Criteria Slot Port Select the un trusted and snooping enabled interface for which statistics to be displayed Non Conf...

Page 700: ...interface If IPSG Port Security is enabled then the packets will not be forwarded if the sender MAC Address is not in FDB table and it is not in DHCP snooping binding database To enforce filtering bas...

Page 701: ...first 15 static entries Page 2 displays Next 15 static entries Slot Port interface MAC Address MAC address VLAN ID VLAN id IP Address IP address Filter Type Filter Type Remove This is to be selected t...

Page 702: ...switch by selecting Enable or Disable from the pull down menu If you select Enable Sender MAC validation for the ARP packets will be enabled The factory default is disable Validate Destination MAC Cho...

Page 703: ...this object is set to Disable Dynamic ARP Inspection logging is disabled ARP ACL Name Name of ARP Access list A vlan can be configured to use this ARP ACL containing rules as the filter for ARP packet...

Page 704: ...s disable Rate Limit Specifies rate limit value for Dynamic ARP Inspection purpose If the incoming rate of ARP packets exceeds the value of this object for consecutively burst interval seconds ARP pac...

Page 705: ...you want to delete Non Configurable Data ARP ACL Name This will list all the configured ARP ACL List Command Buttons Add This is used to create New ARP ACL Delete This is used to delete the entries s...

Page 706: ...want to delete Command Buttons Add This is used to add new ACL Rule Submit This is used to delete the entries selected using checkbox under Remove field Refresh Refresh the data on the screen with th...

Page 707: ...0 0 4 loopback addresses 127 0 0 0 8 Forwarded Number of valid ARP packets forwarded by DAI Dropped Number of invalid ARP packets dropped by DAI Command Buttons Refresh Refresh the data on the screen...

Page 708: ...the values on the screen If you want the switch to retain the new values across a power cycle you must perform a save Delete Remove the currently selected filter Delete All Remove all configured filt...

Page 709: ...e in this VLAN unless it receives a GVRP request This is equivalent to registration normal in the IEEE 802 1Q standard Tagging Select the tagging behavior for this port in this VLAN The factory defaul...

Page 710: ...the switch to retain the new values across a power cycle you must perform a save Delete Delete this VLAN You are not allowed to delete the default VLAN 11 3 5 2 Viewing Port based VLAN Information Pa...

Page 711: ...ance with the IEEE 802 1Q VLAN standard The factory default is Admit All Ingress Filtering Specify how you want the port to handle tagged frames If you enable Ingress Filtering on the pull down menu a...

Page 712: ...d on this port are accepted and assigned the value of the Port VLAN ID for this port With either option VLAN tagged frames are forwarded in accordance to the 802 1Q VLAN specification Ingress Filterin...

Page 713: ...eptable Frame Types value of Admit All Frames All ports are configured with Ingress Filtering disabled All ports are configured to transmit only untagged frames GVRP is disabled on all ports and all d...

Page 714: ...group used for identification purposes It can be up to 32 alphanumeric characters long including blanks The default is blank This field is optional Protected Ports The selection list consists of physi...

Page 715: ...kets By default if you do not configure any port IEEE 802 1Q or protocol based VLANs untagged packets will be assigned to VLAN 1 You can override this behavior by defining either port based VLANs or p...

Page 716: ...work VLAN VLAN can be any number in the range of 1 to 3965 All the ports in the group will assign this VLAN ID to untagged packets received for the protocols you included in this group Slot Port s Sel...

Page 717: ...e screen with the latest information 11 3 8 Managing IP Subnet based VLAN 11 3 8 1 IP Subnet based VLAN Configuration Page IP Subnet to VLAN mapping is defined by configuring an entry in the IP Subnet...

Page 718: ...ing untagged packets to be assigned to a VLAN and thus classify traffic based on the source MAC address of the packet A MAC to VLAN mapping is defined by configuring an entry in the MAC to VLAN table...

Page 719: ...an be any number in the range of 1 to 3965 Command Buttons Submit Update the switch with the values on this screen If you want the switch to retain the new values across a power cycle you must perform...

Page 720: ...and causes the changes to take effect These changes will not be retained across a power cycle unless a save configuration is performed 11 3 10 2 Voice VLAN Configuration Page Selection Criteria MAC Ad...

Page 721: ...riority of the voice traffic the valid range is 0 to 7 Voice VLAN Name Use this field to specify the name of the voice device It is to help the device management Command Buttons Submit Update the swit...

Page 722: ...efault value None Allow the IP phone to use its own configuration to send untagged voice traffic VLAN ID Enter the Voice Vlan Id dot1p Configure Voice Vlan 802 1p priority tagging for voice traffic Un...

Page 723: ...lt is disabled Join Time centiseconds Specifies the time between the transmission of GARP PDUs registering or re registering membership for a VLAN or multicast group in centiseconds An instance of thi...

Page 724: ...It can take up to 10 seconds for GARP configuration changes to take effect Selection Criteria GVRP Mode Choose the GARP VLAN Registration Protocol administrative mode for the switch by selecting enab...

Page 725: ...VLAN or multicast group in centiseconds Enter a number between 10 and 100 0 1 to 1 0 seconds The factory default is 20 centiseconds 0 2 seconds An instance of this timer exists for each GARP participa...

Page 726: ...a user with Read Write access privileges may change the data on this screen Selection Criteria Admin Mode Select the administrative mode for IGMP Snooping for the switch from the pulldown menu The def...

Page 727: ...t interface from the group Enter a value between 1 and 3600 seconds The default is 260 seconds Max Response Time Specify the amount of time you want the switch to wait after sending a query on an inte...

Page 728: ...ng for the specified VLAN ID Group Membership Interval Sets the value for group membership interval of IGMP Snooping for the specified VLAN ID Valid range is Maximum Response Time 1 to 3600 Maximum Re...

Page 729: ...ange is 1 to 3599 Its value should be greater than group membership interval value Multicast Router Expiry Time Multicast Router Expiry Time of IGMP Snooping for the specified VLAN ID Valid range is 0...

Page 730: ...elect the interface for which you want to display the statistics Non Configurable Data Multicast Router Specifies for the selected interface whether multicast router is enable or disabled Command Butt...

Page 731: ...Update the switch with the values you entered 11 3 13 8 Viewing Multicast Router VLAN Statistics Page Selection Criteria Slot Port The select box lists all Slot Ports Select the interface for which yo...

Page 732: ...t Port s List the ports you want included into L2Mcast Group Command Buttons Submit Update the switch with the values on the screen If you want the switch to retain the new values across a power cycle...

Page 733: ...ddress in periodic IGMP queries This address is used when no address is configured on the VLAN on which query is being sent IGMP Version Specify the IGMP protocol version used in periodic IGMP queries...

Page 734: ...on and operates as the querier in that VLAN The other querier moves to non querier state Configurable Data VLAN ID Appears when New Entry is selected in VLAN ID selection list Specifies VLAN ID for wh...

Page 735: ...ified Vlan ID Refresh Reload the information on the page 11 3 14 4 IGMP Snooping Querier VLAN Status Page Non Configurable Data VLAN ID Specifies the VLAN ID on which IGMP Snooping Querier is administ...

Page 736: ...that are sent by the Snooping Querier Command Buttons Refresh Reload the information on the page 11 3 15 Managing MLD Snooping 11 3 15 1 Configuring MLD Snooping Global Configuration and Status Page U...

Page 737: ...x lists all physical VLAN and LAG interfaces Select the interface you want to configure Admin Mode Select the interface mode for the selected interface for MLD Snooping for the switch from the pulldow...

Page 738: ...le or disable the MLD Snooping Fast Leave Mode for the specified VLAN ID Configurable Data VLAN ID Appears when New Entry is selected in VLAN ID combo box Specifies VLAN ID for which pre configurable...

Page 739: ...ge is 1 to 65 Its value should be greater than group membership interval value Multicast Router Expiry Time Multicast Router Expiry Time of MLD Snooping for the specified VLAN ID Valid range is 0 to 3...

Page 740: ...s Refresh Re fetch the database and display it again starting with the first entry in the table 11 3 15 7 Configuring Multicast VLAN Configuration Page Selection Criteria Slot Port The select box list...

Page 741: ...Multicast Group Configuration Page Selection Criteria MAC Filter This is the list of MAC address and VLAN ID pairings for all configured L2 Mcast Groups To change the port mask s for an existing L2Mc...

Page 742: ...tus Page Use this panel to display information about entries in the L2Mcast Static Dynamic Groups These entries are used by the transparent bridging function to determine how to forward a received fra...

Page 743: ...ddress in periodic MLD queries This address is used when no address is configured on the VLAN on which query is being sent MLD Version Specify the MLD protocol version used in periodic MLD queries MLD...

Page 744: ...r state Configurable Data VLAN ID Appears when New Entry is selected in VLAN ID selection list Specifies VLAN ID for which MLD Snooping Querier is to be enabled User can also set pre configurable Snoo...

Page 745: ...D on which MLD Snooping Querier is administratively enabled and VLAN exists in the VLAN database Operational State Specifies the operational state of the MLD Snooping Querier on a VLAN It can be in an...

Page 746: ...be sent Administrative Mode Select enable or disable from the pull down menu When the Port Channel is disabled no traffic will flow and LACPDUs will be dropped but the links that form the Port Channel...

Page 747: ...new Port Channel is being created Link Status Indicates whether the Link is up or down Port Channel Members List of members of the Port Channel in Slot Port form Membership Conflicts Shows ports that...

Page 748: ...ticipating members of this Port Channel in Slot Port notation There can be a maximum of 8 ports assigned to a Port Channel Load Balance Indicates load balnace mode of port channel The possible values...

Page 749: ...d for forwarding Fwd and filtering Flt for the selected address Forwarding Slot Port s The resultant forwarding list is derived from combining all the forwarding interfaces and removing the interfaces...

Page 750: ...anagement Configured Network Configured and Network Assisted Slot Port s The list of interfaces that are designated for forwarding Fwd and filtering Flt Command Buttons Refresh Refresh the data on the...

Page 751: ...tch 11 3 18 5 Viewing Multicast Forwarding Database Statistics Page Non Configurable Data Max MFDB Entries The maximum number of entries that the Multicast Forwarding Database table can hold Most MFDB...

Page 752: ...the configuration currently being used The values allowed are between 0 and 65535 The default value is 0 Non Configurable Data Configuration digest key Identifier used to identify the configuration cu...

Page 753: ...4 seconds to 30 seconds The default value is 15 Spanning Tree Maximum Hops Configure the maximum number of hops for the Spanning tree Non Configurable Data Bridge identifier The bridge identifier for...

Page 754: ...highlighted on the list These can be selected or unselected for re configuring the association of VLANs to MST instances Non Configurable Data Bridge identifier The bridge identifier for the selected...

Page 755: ...hanges will not be retained across a power cycle unless a save configuration is performed Delete Deletes the selected MST instance All VLANs associated with the instance are associated with the CST Re...

Page 756: ...ues are Enable or Disable Configurable Data Port Priority The priority for a particular port within the CST The port priority is set in multiples of 16 For example if you attempt to set the priority t...

Page 757: ...or Disabled Point to point MAC Derived value of the point to point status CST Regional Root Bridge Identifier of the CST Regional Root It is made up using the bridge priority and the base MAC address...

Page 758: ...ociated with the port or LAG The possible values are Enable or Disable Port Forwarding State The Forwarding State of this port Port Role Each MST Bridge Port that is enabled is assigned a Port Role fo...

Page 759: ...smitted from the selected port RSTP BPDUs Received Number of RSTP BPDUs received at the selected port RSTP BPDUs Transmitted Number of RSTP BPDUs transmitted from the selected port MSTP BPDUs Received...

Page 760: ...iority to be mapped Command Buttons Submit Update the switch with the values on this screen If you want the switch to retain the new values across a power cycle you must perform a save 11 3 21 Managin...

Page 761: ...c MAC address Adds a MAC address to the list of statically locked MAC addresses for the selected interface VLAN ID Adds a corresponding VLAN ID for the MAC Address being added to the list of staticall...

Page 762: ...orresponding to the MAC address to be deleted from the Static list Command Buttons Submit Applies the new configuration and causes the changes to take effect These changes will not be retained across...

Page 763: ...as discarded at a locked port VLAN ID Displays the VLAN ID corresponding to the Last Violation MAC address 11 3 21 6 Clearing Port Security Dynamically Learned MAC Addresses Page Use this menu to clea...

Page 764: ...es the multiplier on Transmit Interval to assign TTL The range is from 2 to 10 Default value is 4 Re Initialization Delay Specifies the delay before re initialization The range is from 1 to 10 Default...

Page 765: ...n Specifies whether management address is transmitted in LLDP frames for the selected interface Optional TLV s System Name To include system name TLV in LLDP frames System Description To include syste...

Page 766: ...t Specifies the LLDP 802 1AB transmit mode of the interface Receive Specifies the LLDP 802 1AB receive mode of the interface Notify Specifies the LLDP 802 1AB notification mode of the interface Option...

Page 767: ...the remote systems because the information timeliness interval has expired Interface Specifies the slot port for the interfaces Transmit Total Specifies the number of LLDP frames transmitted by the L...

Page 768: ...Selection Criteria Interface Specifies the list of all the ports on which LLDP 802 1AB frames can be transmitted Non Configurable Data Chassis ID Subtype Specifies the string that describes the source...

Page 769: ...rt Specifies the MDI power support capabilities of the sending IEEE 802 3 LAN station PSE Power Pair Specifies which pair is powered Power Class Specifies the required power level required Link Aggreg...

Page 770: ...ent identifier assigned to the remote system Chassis ID Subtype Specifies the source of the chassis identifier Chassis ID Specifies the chassis component associated with the remote system Port ID Subt...

Page 771: ...he auto negotiation and speed capabilities of the PMD Operational MAU Type Specifies the current duplex and speed settings of the sending system Power Via MDI MDI Power Support Specifies the MDI power...

Page 772: ...age Configurable Data Fast Start Repeat Count Specifies the number of LLDP PDUs that will be transmitted when the protocol is enabled The range is from 1 to 10 Default value of fast repeat count is 3...

Page 773: ...nterface By enabling MED we will be effectively enabling the transmit and receive function of LLDP Config Notification Mode Specifies the LLDP MED topology notification mode for the selected interface...

Page 774: ...Specifies the LLDP MED mode is enabled or disabled on this interface Operational Status Specifies the LLDP MED TLVs are transmitted or not on this interface Notification Status Specifies the LLDP MED...

Page 775: ...cy type Inventory Specifies if inventory TLV is present in LLDP frames Hardware Revisions Specifies hardware version Firmware Revisions Specifies Firmware version Software Revisions Specifies Software...

Page 776: ...d capabilities that was received in MED TLV on this port Supported Capabilities Specifies supported capabilities that was received in MED TLV on this port Enabled Capabilities Specifies enabled capabi...

Page 777: ...f the remote device Software Revision Specifies Software version of the remote device Serial Number Specifies serial number of the remote device Manufacturer Name Specifies manufacturers name of the r...

Page 778: ...de Enable or disable the VTP pruning mode V2 Mode Enable or disable the VTP version 2 mode Trunkport Enable or disable the VTP trunkport for specified interface Configurable Data Domain Name Set the n...

Page 779: ...s Operating mode Displays VTP operating mode Domain Name Displays the name that identifies the administrative domain for the switch Pruning mode Displays VTP pruning mode V2 Mode Displays VTP version...

Page 780: ...sable from the pull down menu The factory default is disabled Upstream Choose the upstream port for a group Switch will monitor the link level of this port for rapidly fail over of redundant LAN ports...

Page 781: ...one group Two ports are acted as active and backup ports One of two ports will be active at a one time As configured active port is linkup the backup port will be disabled Otherwise if configured act...

Page 782: ...Submit Update the switch with the values on this screen If you want the switch to retain the new values across a power cycle you must perform a save Delete Delete this group 11 3 26 2 Configuring Por...

Page 783: ...ng admin mode is disabled Vlan ID Configure Vlans the FIP packets will be snooped Command Buttons Submit Send the updated configuration to the switch Configuration changes take effect immediately Thes...

Page 784: ...ID ENode MAC MAC address of the ENode 11 4 Routing Menu 11 4 1 Managing ARP Table 11 4 1 1 Creating ARP entries Use this panel to add an entry to the Address Resolution Protocol table Configurable Da...

Page 785: ...a valid integer which represents the number of seconds it will take for an ARP entry to age out The range for this field is 15 to 21600 seconds The default value for Age Time is 1200 seconds Response...

Page 786: ...l number of Entries in the ARP table Peak Total Entries Highest value reached by Total Entry Count This counter value is restarted whenever the ARP table Cache Size value is changed Active Static Entr...

Page 787: ...the forwarding of IP frames The default value is enable Non Configurable Data Default Time to Live The default value inserted into the Time To Live field of the IP header of datagrams originated by t...

Page 788: ...ceeded errors discovered in processing their IP options etc IpInAddrErrors The number of input datagrams discarded because the IP address in their IP header s destination field was not a valid address...

Page 789: ...terion Note that this includes any datagrams which a host cannot route because all of its default gateways are down IpReasmTimeout The maximum number of seconds which received fragments are held while...

Page 790: ...inability of IP to route the resultant datagram In some implementations there may be no types of error which contribute to this counter s value IcmpOutDestUnreachs The number of ICMP Destination Unre...

Page 791: ...Select the link layer encapsulation type for packets transmitted from the specified interface from the pulldown menu The possible values are Ethernet and SNAP The default is Ethernet Proxy Arp Select...

Page 792: ...epresenting the physical link data rate of the specified interface This data is valid only for physical interfaces and is measured in Megabits per second Mbps Command Buttons Submit Update the switch...

Page 793: ...state the router should wait before attempting to leave overflow state This allows the router to again originate non default AS external LSAs If you enter 0 the router will not leave Overflow State u...

Page 794: ...advertisements received that were determined to be new instantiations This number does not include newer instantiations of self originated LSAs Command Buttons Submit Send the updated configuration to...

Page 795: ...imit The valid range of values is 1 to 2147483647 Default Metric Sets a default for the metric of redistributed routes This field is blank if a default metric has not been configured The range of vali...

Page 796: ...hange in a router s link state database and to compare the link state databases of two routers This value is in hexadecimal New LSAs Originated The number of LSAs originated by this router LSAs Receiv...

Page 797: ...ress range The default type is Network Summary Advertisement Select enable or disable from the pulldown menu If you selected enable the address range will be advertised outside the area via a Network...

Page 798: ...atistics This panel displays statistics for the selected interface The information will be displayed only if OSPF is enabled Selection Criteria Slot Port Select the interface for which data is to be d...

Page 799: ...cket Source Not On Local Subnet The number of received packets discarded because the source IP address is not within a subnet configured on a local interface Virtual Link Not Found The number of recei...

Page 800: ...is interface by this router LS Requests Received The number of LS Requests received on this interface by this router LS Updates Sent The number of LS updates sent on this interface by this router LS U...

Page 801: ...ecified interface This specifies the estimated number of seconds it takes to transmit a link state update packet over the selected interface Valid values range from 1 to 3600 seconds 1 hour The defaul...

Page 802: ...e timers will be disabled and there will be no adjacencies associated with the interface Loopback In this state the router s interface to the network is looped back either in hardware or software The...

Page 803: ...ct the authentication method for the virtual link Submit Send the updated configuration to the switch Configuration changes take effect immediately These changes will not be retained across a power cy...

Page 804: ...2 bit integer in dotted decimal format that identifies the neighbor router Options The optional OSPF capabilities supported by the neighbor The neighbor s optional OSPF capabilities are also listed in...

Page 805: ...sequence number Neighbor conversations in this state or greater are called adjacencies Exchange In this state the router is describing its entire link state database by sending Database Description p...

Page 806: ...ype Age The time since the link state advertisement was first originated in seconds Sequence The sequence number field is a signed 32 bit integer It is used to detect old and duplicate link state adve...

Page 807: ...network This value should a multiple of the Hello Interval e g 4 Valid values range from 1 to 2147483647 The default is 40 Iftransit Delay Interval Enter the OSPF Transit Delay for the specified inte...

Page 808: ...Point to Point The interface is operational and is connected to the virtual link On entering this state the router attempts to form an adjacency with the neighboring router Hello Packets are sent to t...

Page 809: ...ust be the same for all routers attached to a common network and should be a multiple of the Hello Interval i e 4 Retransmit Interval The OSPF retransmit interval for the virtual link in units of seco...

Page 810: ...ed routes should be redistributed or not Distribute List Sets the Access List that filters the routes to be redistributed by the destination protocol Only permitted routes are redistributed If this co...

Page 811: ...for the given Source Route Display Unconfigured when not configured Metric Type The OSPF metric types of redistributed routes Tag The tag field in routes redistributed This field displays the tag if...

Page 812: ...resent the time since the client was powered up Packets will only be forwarded when the time stamp exceeds the minimum wait time Circuit ID Option Mode Select enable or disable from the pulldown menu...

Page 813: ...eived The total number of BOOTP DHCP requests received from all clients since the last time the switch was reset Requests Relayed The total number of BOOTP DHCP requests forwarded to the server since...

Page 814: ...ier The valid values are 1 to 15 Non Configurable Data Global Route Changes The number of route changes made to the IP Route Database by RIP This does not include the refresh of a route s age Global q...

Page 815: ...ate Whether the RIP interface is up or down Command Buttons Refresh Refresh the data on the screen with the present state of the data in the switch 11 4 5 3 Defining The Routing Interface s RIP Config...

Page 816: ...red with the same key Encrypt If you select Encrypt you will be prompted to enter both an authentication key and an authentication ID Encryption uses the MD5 Message Digest algorithm All routers on th...

Page 817: ...and Create Available Source This select box is a dynamic selector and would be populated by only those Source Routes that have not previously been configured for redistribution by RIP This select box...

Page 818: ...ute The source IP netmask in the access list rule is treated as a wildcard mask indicating which bits in the source IP address must match the destination address of the route Note that a 1 in the mask...

Page 819: ...and Buttons Refresh Displays the latest RIP Route Redistribution Configuration data 11 4 6 Managing Router Discovery 11 4 6 1 Configuring Router Discovery Selection Criteria Slot Port Select the route...

Page 820: ...the same subnet Higher numbered addresses are preferred You must enter an integer Command Buttons Submit Send the updated configuration to the switch Configuration changes take effect immediately The...

Page 821: ...dress The IP route prefix for the destination Subnet Mask Also referred to as the subnet network mask this indicates the portion of the IP interface address that identifies the attached network Protoc...

Page 822: ...bilities are one of the following Local Static Default OSPF Intra OSPF Inter OSPF Type 1 OSPF Type 2 RIP Next Hop Slot Port The outgoing router interface to use when forwarding traffic to the destinat...

Page 823: ...one of the following Local Static Default OSPF Intra OSPF Inter OSPF Type 1 OSPF Type 2 RIP Next Hop Slot Port The outgoing router interface to use when forwarding traffic to the destination Next Hop...

Page 824: ...referred to as the subnet network mask this indicates the portion of the IP interface address that identifies the attached network Next Hop IP Address The outgoing router IP address to use when forwa...

Page 825: ...t value is 1 The range is 1 to 255 OSPF Intra The OSPF intra route preference value in the router The default value is 110 The range is 1 to 255 The OSPF specification RFC 2328 requires that preferenc...

Page 826: ...t The interface assigned to the VLAN for routing MAC Address The MAC Address assigned to the VLAN Routing Interface Command Buttons Create Send the updated configuration to the switch Configuration ch...

Page 827: ...n the VLAN Routing Interface is first configured and must be entered on the IP Interface Configuration page Subnet Mask The configured Subnet Mask of the VLAN Routing Interface This will be 0 0 0 0 wh...

Page 828: ...empt the master router if it has a priority greater than the master virtual router s priority provided the master is not the owner of the virtual router IP address The default is enable Priority Enter...

Page 829: ...figured through tracking procss Command Buttons Submit Send the updated configuration to the switch Configuration changes take effect immediately These changes will not be retained across a power cycl...

Page 830: ...crement for the tracked interface The valid range is 1 254 default value is 10 Remove Removes the selected Tracking interface from the VRRP tracked list Non Configurable Data Slot Port The interface f...

Page 831: ...rity decrement for the tracked interface The valid range is 1 254 default value is 10 Non Configurable Data Slot Port The interface for which data is to be displayed Virtual Router ID The Virtual Rout...

Page 832: ...reachability of the tracked Route Command Buttons Add Proceed to the VRRP Track Route screen Submit Send the updated configuration to the router Configuration changes take effect immediately These ch...

Page 833: ...er of the virtual router IP address Disable if the Virtual Router is a backup router it will not preempt the master router even if its priority is greater Advertisement Interval secs the time in secon...

Page 834: ...esh Refresh the data on the screen with the present state of the data in the switch 11 4 9 9 Viewing Virtual Router Statistics Selection Criteria VRID and Slot Port Select the existing Virtual Router...

Page 835: ...RRP packets received by the virtual router with IP TTL Time To Live not equal to 255 Zero Priority Packets Received The total number of VRRP packets received by the virtual router with a priority of 0...

Page 836: ...red in the format prefix length The user also has the option to specify the 64 bit extended unique identifier EUI 64 Source Select the desired source Address or Interface If Address is selected the th...

Page 837: ...estination Address Command Buttons Refresh Refresh the page with the latest Tunnel entries 11 4 11 Managing Loopbacks 11 4 11 1 Configuring Loopbacks Configuration Page Loopback interfaces can be crea...

Page 838: ...secondary addresses has not been configured A primary address must be configured before secondary addresses can be added Secondary IP Address The secondary ip address for this interface in dotted deci...

Page 839: ...tor lists the two options for Guest VLAN Supplicant mode enable and disable The default value is disabled Command Buttons Submit Sends the updated screen to the switch and causes the changes to take e...

Page 840: ...number in the range of 0 and 65535 A quiet period value of 0 means that the authenticator state machine will never acquire a supplicant The default value is 60 Changing the value will not change the...

Page 841: ...ult value is 3600 Changing the value will not change the configuration until the Submit button is pressed Maximum Users Defines the maximum number of clients that can get authenticated on the port in...

Page 842: ...o unauthorized force authorized The authenticator PAE unconditionally sets the controlled port to authorized auto The authenticator PAE sets the controlled port mode to reflect the outcome of the auth...

Page 843: ...ximum requests value is the maximum number of times the authenticator state machine on this port will retransmit an EAPOL EAP Request Identity before timing out the supplicant The maximum requests val...

Page 844: ...of 1 to 16 Maximum Users Displays the maximum number of clients that can get authenticated on the port in the MAC based dot1x authentication mode This field is configurable The maximum users value is...

Page 845: ...of the authentication exchanges between the supplicant authenticator and the authentication server mac based The authenticator PAE sets the controlled port mode to reflect the outcome of the authentic...

Page 846: ...This displays the number of valid EAPOL frames of any type that have been received by this authenticator EAPOL Frames Transmitted This displays the number of EAPOL frames of any type that have been tr...

Page 847: ...hat have been received by this authenticator in which the frame type is not recognized Command Buttons Refresh Update the information on the page Clear All This button resets all statistics for all po...

Page 848: ...ys the time since the supplicant logged in The value is in seconds Filter ID The policy filter ID assigned by the authenticator to the supplicant device VLAN ID The VLAN ID assigned by the authenticat...

Page 849: ...es will not be retained across a power cycle unless a save is performed Refresh Update the information on the page 11 5 1 9 Defining each Port Access Privileges Page Selection Criteria Port Selects th...

Page 850: ...ry Page Non Configurable Data Port Displays the port in Slot Port format Users Displays the users that have access to the port Command Buttons Refresh Update the information on the page 11 5 2 Managin...

Page 851: ...rver is attempted A retransmit will not occur until the configured timeout value on that server has passed without a response from the RADIUS server Therefore the maximum delay in receiving a response...

Page 852: ...applied if this box is checked If the box is not checked anything entered in the Secret field will have no affect and will not be retained This field is only displayed if the user has READWRITE acces...

Page 853: ...ransmissions The number of RADIUS Access Request packets retransmitted to this server Access Accepts The number of RADIUS Access Accept packets including both valid and invalid packets that were recei...

Page 854: ...ion on the page 11 5 2 4 Defining RADIUS Accounting Server Configuration Page Selection Criteria Accounting Server IP Address Selects the accounting server for which data is to be displayed or configu...

Page 855: ...s performed Remove Remove the selected accounting server from the configuration This button is only available to READWRITE users These changes will not be retained across a power cycle unless a save i...

Page 856: ...erver Pending Requests Displays the number of RADIUS Accounting Request packets sent to this server that have not yet timed out or received a response Timeouts Displays the number of accounting timeou...

Page 857: ...ween the device and the TACACS server Encrypted When the secret string is encrypted this box need to be checked This field is only displayed if the user has READWRITE access Command Buttons Submit Sen...

Page 858: ...The range is between 1 30 Encrypted When the secret string is encrypted this box need to be checked This field is only displayed if the user has READWRITE access Command Buttons Submit Send the updat...

Page 859: ...web page is displayed The default value is enabled SSL Version 3 This field is used to enable or disable Secure Sockets Layer Version 3 0 The currently configured value is shown when the web page is d...

Page 860: ...SL Certificate files SSL must be administratively disabled Delete Used to delete the corresponding certificate if it is present 11 5 6 Defining Secure Shell Configuration 11 5 6 1 Configuring Secure S...

Page 861: ...the RSA host keys Note that to generate SSH key files SSH must be administratively disabled and there can be no active SSH sessions Generate DSA Host Key Begin generating the DSA host keys Note that...

Page 862: ...ields to be updated for the newly selected port All physical interfaces are valid IPv6 Prefix Specifies IPv6 prefix with prefix length for an interface When the selection is changed screen is refreshe...

Page 863: ...A value of 0 means interval is not specified for router Range of neighbor solicit interval is 1000 to 4294967295 Router Lifetime Interval Specifies router advertisement lifetime field sent from the i...

Page 864: ...licit mode is enabled interface is capable of ipv6 operation without a global address In this case an eui 64 based link local address is used This selector lists the two options for ipv6 mode enable a...

Page 865: ...865 11 6 4 Viewing IPv6 Interface Statistics Page...

Page 866: ...ams With Unknown Protocol The number of locally addressed datagrams received successfully but discarded because of an unknown or unsupported protocol This counter is incremented at the interface to wh...

Page 867: ...number of IPv6 datagrams that have been successfully fragmented at this output interface Datagrams Failed To Fragment The number of output datagrams that could not be fragmented at this interface Dat...

Page 868: ...discovered within ICMP such as a lack of buffers This value should not include errors discovered outside the ICMP layer such as the inability of IPv6 to route the resultant datagram In some implement...

Page 869: ...ociated with an interface IsRtr Specifies router flag Neighbor State Specifies the state of the neighbor cache entry Following are the states for dynamic entries in the IPv6 neighbor discovery cache I...

Page 870: ...ons Refresh Refreshes the screen with most recent data Clear IPv6 Neighbors Clear IPv6 neighbors on selected interface or all interfaces 11 6 6 Viewing IPv6 Static Neighbor Table Information Page Conf...

Page 871: ...t re enable OSPFv3 to have the change take effect The default value is 0 0 0 0 although this is not a valid Router ID OSPFv3 Admin Mode Select enable or disable from the pull down menu If you select e...

Page 872: ...configured then setting Default Information Originate back to disable will set the Always Metric and Metric Type values to default Always Sets the router advertise 0 when set to True Metric Specifies...

Page 873: ...er of link state advertisements currently in the link state database Maximum Number of LSAs The maximum number of LSAs that OSPF can store LSA High Water Mark The maximum size of the link state databa...

Page 874: ...Non Configurable Data Area ID The OSPFv3 area An Area ID is a 32 bit integer in dotted decimal format that uniquely identifies the area to which a router interface connects External Routing A definit...

Page 875: ...configuration to the switch Configuration changes take effect immediately These changes will not be retained across a power cycle unless a save is performed 11 6 7 3 Viewing OSPFv3 Stub Area Summary...

Page 876: ...e Data Area ID The OSPFv3 area IPv6 Prefix The IPv6 Prefix of an address range for the area LSDB Type The Link Advertisement type for the address range and area Advertisement The Advertisement mode fo...

Page 877: ...also used when retransmitting database descriptions and link state request packets Valid values range from 0 to 3600 seconds 1 hour The default is 5 seconds Hello Interval Enter the OSPFv3 hello inter...

Page 878: ...work LSA will contain links to all routers including the Designated Router itself attached to the network Backup Designated Router This router is itself the Backup Designated Router on the attached ne...

Page 879: ...OSPFv3 area to which the selected router interface belongs An OSPFv3 Area ID is a 32 bit integer in dotted decimal format that uniquely identifies the area to which the interface connects Area Border...

Page 880: ...figured on the ingress interface Invalid Destination Address The number of OSPFv3 packets discarded because the packet s destination IP address is not the address of the ingress interface and is not t...

Page 881: ...isplayed Neighbor Router ID Selects a specific neighbor router ID on the interface selected in the Slot Port selector Non Configurable Data Area ID A 32 bit integer in dotted decimal format representi...

Page 882: ...splay all valid interfaces Non Configurable Data Neighbor Router ID A 32 bit integer in dotted decimal format representing the Router ID of the neighbor on the selected Interface Priority The priority...

Page 883: ...R Summary AS external LS ID The Link State ID identifies the piece of the routing domain that is being described by the advertisement The value of the LS ID depends on the advertisement s LS type Age...

Page 884: ...r is down This parameter must be the same for all routers attached to a network This value should a multiple of the Hello Interval e g 4 Valid values range from 1 to 2147483647 The default is 40 Iftra...

Page 885: ...the Backup Designated Router on the attached network It will be promoted to Designated Router if the present Designated Router fails The router establishes adjacencies to all other routers attached t...

Page 886: ...update packet over this interface Command Buttons Refresh Refresh the data on the screen with the present state of the data in the switch 11 6 7 12 Configuring OSPFv3 Route Redistribution Configurati...

Page 887: ...hanges take effect immediately Delete Delete the entry of the Source Protocol selected as Configured Source from the list of Sources configured for OSPFv3 Route Redistribution 11 6 7 13 Viewing OSPFv3...

Page 888: ...ute Command Buttons Submit Send the updated configuration to the switch Configuration changes take effect immediately These changes will not be retained across a power cycle unless a save is performed...

Page 889: ...e is still a tie the route with the best route metric will be chosen To avoid problems with mismatched metrics you must configure different preference values for each of the protocols Configurable Dat...

Page 890: ...Non Configurable Data IPv6 Prefix Prefix Length Displays the Network Prefix and Prefix Length for the Configured Route Next Hop IP Displays the Next Hop IPv6 Address for the Configured Route Preferen...

Page 891: ...Disable Default Route Advertise Default Metric Sets a default for the metric of redistributed routes This field displays the default metric if one has already been set or blank if not configured earli...

Page 892: ...ailable Source Routes The valid values are Create Static Connected OSPF Available Source This select box is a dynamic selector and would be populated by only those Source Routes that have not previous...

Page 893: ...1 1 Configuring IP Access Control List Configuration Page An IP ACL consists of a set of rules which are matched sequentially against a packet When a packet meets the match criteria of a rule the spe...

Page 894: ...ximum number of IP ACLs Command Buttons Submit Send the updated configuration to the switch Configuration changes take effect immediately These changes will not be retained across a power cycle unless...

Page 895: ...elect an existing rule from the pulldown menu or select Create New Rule ACL as well as an option to add a new Rule New rules cannot be created if the maximum number of rules has been reached For each...

Page 896: ...ch criterion Source IP Address Enter an IP address using dotted decimal notation to be compared to a packet s source IP Address as a match criteria for the selected IP ACL rule Source Wildcard Mask Sp...

Page 897: ...l configuration Command Buttons Configure Configure the corresponding match criteria for the selected rule Delete Remove the currently selected Rule from the selected ACL These changes will not be ret...

Page 898: ...Rules The number of rules currently configured for the IPv6 ACL Direction The direction of packet traffic affected by the IPv6 ACL Direction can only be one of the following Inbound Slot Port s The in...

Page 899: ...minute report interval is used for the entire system A trap is not issued if the ACL rule hit count is zero for the current interval This field is visible for a Deny Action Assign Queue ID Specifies...

Page 900: ...sible values are DOMAIN ECHO FTP FTPDATA HTTP SMTP SNMP TELNET TFTP and WWW Each of these values translates into its equivalent port number which is used as both the start and end of the port range Th...

Page 901: ...has already been created Non Configurable Data Table Displays the current and maximum number of MAC ACLs Current Size The current number of MAC ACLs Max Size The maximum number of MAC ACLs Command Bu...

Page 902: ...traffic affected by the MAC ACL Valid Directions Inbound Slot Port s The interfaces to which the MAC ACL applies VLAN s VLAN s to which the MAC ACL applies Command Buttons Refresh Refresh the data on...

Page 903: ...entifier used to handle all packets matching this ACL rule Valid range of Queue Ids is 0 to 6 Mirror Interface Specifies the specific egress interface where the matching traffic stream is copied in ad...

Page 904: ...is considered to match the selected ACL Rule False Signifies that it is not mandatory for every packet to match the selected ACL Rule Command Buttons Configure Configure the corresponding match crite...

Page 905: ...number that is one greater than the highest sequence number currently in use for this interface and direction will be used Valid range is 1 to 4294967295 Non Configurable Data Slot Port Displays sele...

Page 906: ...access list using that sequence number If the sequence number is not specified by the user a sequence number that is one greater than the highest sequence number currently in use for this VLAN and dir...

Page 907: ...11 7 2 Managing Differentiated Services 11 7 2 1 Defining DiffServ Configuration Page Operation Packets are filtered and processed based on defined criteria The filtering criteria is defined by a cla...

Page 908: ...ber of configured services attached to the policies on specified interfaces out of the total allowed on the switch Command Buttons Submit Send the updated configuration to the switch Configuration cha...

Page 909: ...type Moreover a Remove Class Reference button appears on the screen that can be invoked to remove the current class reference Configurable Data Class Name This is a case sensitive alphanumeric string...

Page 910: ...es Class Type Displays types of the configured classes as all any or acl Class types are platform dependent Reference Class Displays name of the configured class of type All referenced by the specifie...

Page 911: ...field Configurable Data Policy Name This is a case sensitive alphanumeric string from 1 to 31 characters uniquely identifying a policy Non Configurable Data Policy Type In indicates the type is specif...

Page 912: ...on Page Selection Criteria Policy Selector This lists all the existing DiffServ policy names from which one can be selected Member Class List This lists all existing DiffServ classes currently defined...

Page 913: ...ely specifies an interface This is a list of all valid slot number and port number combinations in the system For Read Write users where All appears in the list select it to specify all interfaces Dir...

Page 914: ...ot Port Shows the Slot Port that uniquely specifies an interface Direction Shows that the traffic direction of this service interface is In Operational Status Shows the operational status of this serv...

Page 915: ...ce and direction and hence the attached policy if any Highlighting a member class name displays the statistical information for the policy class instance for the specified interface and direction Sele...

Page 916: ...ria based on Traffic Type selection as below VOIP sets match criteria to UDP protocol HTTP sets match criteria to HTTP destination port FTP sets match criteria to FTP destination port Telnet sets matc...

Page 917: ...where High sets policy to mark ipdscp ef Med sets policy to mark ipdscp af31 Low set policy to mark ipdscp be Configurable Data Ports to Include in Config List the ports which can be configured to su...

Page 918: ...value is trust dot1p Non Configurable Data Untrusted Traffic Class Displays traffic class i e queue to which all traffic is directed when in untrusted mode Valid Range is 0 to 7 Non IP Traffic Class...

Page 919: ...ify which internal traffic class to map the corresponding IP DSCP value Valid Range is 0 to 7 Non Configurable Data IP DSCP Value Specify the IP DiffServ Code Point DSCP Value Command Buttons Submit S...

Page 920: ...bmit Send the updated configuration to the switch Configuration changes take effect immediately These changes will not be retained across a power cycle unless a save is performed 11 7 4 4 Configuring...

Page 921: ...d Buttons Restore Defaults for All Queues Restores default settings for all queues on the selected interface Submit Send the updated configuration to the switch Configuration changes take effect immed...

Page 922: ...e a ETS configurable interfaces for setting Admin Mode Enable Disable Enhanced Transmission Selection function Enable Enable ETS start the ETS process and enable other configuration options Disable Di...

Page 923: ...SAN Weight The system s default ETS SAN Weight is 50 The valid ETS SAN Weight range is 1 to 99 and ETS LAN Weight plus ETS SAN Weight must equal to 100 Non Configurable Data Queue ID Specifies the que...

Page 924: ...number of sampled packet The system s default LSB field of CPID is using queue number of sampled packet CNM Generation Behavior Set Congestion Notification Message Generation Behavior Choose the CNM g...

Page 925: ...CNM The system s default Inner Packet Priority for CNM is 0 The valid dot1p range is 1 to 7 Inner Packet CFI for CNM Set Inner Packet CFI for Congestion Notification Message CNM The system s default I...

Page 926: ...f CN configurable interfaces Queue ID Specifies the ID of priority queues Mode Specifies the mode of priority queues CNM Count Counts the number of CN message generated by the congestion messaged queu...

Page 927: ...e Configuration Page Selection Criteria Slot Port Select the interface for which data is to be configured You must configure at least one router interface before you configure a DVMRP interface Otherw...

Page 928: ...able Protocol State The operational state of the DVMRP protocol on the selected interface either operational or non operational Local Address The IP address used as a source address in packets sent fr...

Page 929: ...ace Minor Version The DVMRP Minor Version for the specified neighbor on the selected interface Capabilities The DVMRP capabilities of the specified neighbor on the selected interface Received Routes T...

Page 930: ...ould expire at the upstream neighbor If no prune messages have been received from downstream neighbors this is set to value of the default prune lifetime timer otherwise it is set to the smallest rece...

Page 931: ...secs The time since the route represented by this entry was learned by the router Command Buttons Refresh Refresh the screen with the new data 11 8 2 Managing IGMP Protocol 11 8 2 1 Configuring IGMP G...

Page 932: ...on this interface Valid values are from 1 to 3600 The default value is 125 Query Max Response Time Enter the maximum query response time to be advertised in IGMPv2 queries on this interface in tenths...

Page 933: ...he operational state of IGMP on the selected interface Version The version of IGMP configured on the selected interface Query Interval The frequency at which IGMP host query packets are transmitted on...

Page 934: ...is the querier this will be zero Wrong Version Queries The number of queries that have been received on the selected interface with an IGMP version that does not match the IGMP version configured for...

Page 935: ...e this timer is non zero the local router ignores any IGMPv1 and IGMPv3 leave messages for this group that it receives on the selected interface This field is displayed only if the interface is config...

Page 936: ...be a IGMP routing interface This field is configurable only when interface mode is disabled Configurable Data Interface Mode Select enable or disable from the pulldown menu to set the administrative s...

Page 937: ...of membership in a group Default 1 second Version 1 Querier Timeout The older IGMP version 1 querier timeout value in seconds The Older Version Querier Interval is the time out for transitioning a hos...

Page 938: ...ilter mode Include Exclude None for the specified group on the IGMP Proxy interface Number of Sources The number of source hosts present in the selected multicast group Command Buttons Refresh Refresh...

Page 939: ...Configuring Multicast Global Configuration Page Selection Criteria Admin Mode Select enable or disable to set the administrative status of Multicast Forwarding in the router The default is disabled N...

Page 940: ...iguration changes take effect immediately These changes will not be retained across a power cycle unless a save is performed 11 8 3 3 Viewing Multicast MRoute Summary Page This screen displays selecte...

Page 941: ...entry matching the Source IP if entered and Group IP address Refresh Refresh the information on the screen with the present state of the data in the router 11 8 3 4 Configuring Multicast Static Routes...

Page 942: ...ied to the Source IP address RPF Address The IP address of the RPF neighbor Metric The link state cost of the path to the multicast source The range is 0 255 Slot Port The number of the incoming inter...

Page 943: ...tely These changes will not be retained across a power cycle unless a save is performed Delete Delete the selected administrative scoped boundary 11 8 3 7 Viewing Multicast Admin Boundary Configuratio...

Page 944: ...lot 0 is the base unit You must have configured at least one router interface before configuring or displaying data for a PIM DM interface otherwise an error message will be displayed Configurable Dat...

Page 945: ...Hello Interval secs The frequency at which PIM hello messages are transmitted on the selected interface IP Address The IP address of the selected interface Neighbor Count The number of PIM neighbors o...

Page 946: ...te in K bits second above which the Rendezvous Point router will switch to a source specific shortest path tree The valid values are from 0 to 2000 The default value is 0 Command Buttons Submit Send t...

Page 947: ...ation Page Configurable Data SSM Group Address Enter the source specific multicast group ip address SSM Group Mask Enter the source specific multicast group ip address mask Command Buttons Submit Send...

Page 948: ...value is 60 BSR Border Select enable or disable to set BSR border status on the selected interface DR Priority Enter the DR priority for the selected interface The valid values are from 0 to 214748364...

Page 949: ...ng before this PIM neighbor will be aged out Command Buttons Refresh Refresh the data on the screen with the present state of the data in the router 11 8 5 6 Configuring PIM SM Candidate RP Configurat...

Page 950: ...bmit Attempts to create the specified static RP IP Address for the PIM SM router Configuration changes take effect immediately These changes will not be retained across a power cycle unless a save is...

Page 951: ...deleted Command Buttons Submit Attempts to create the specified static RP IP Address for the PIM SM router Configuration changes take effect immediately These changes will not be retained across a po...

Page 952: ...status of MLD on the selected interface The default value is disable Version Enter the version to be configured on the selected interface Valid values are 1 to 2 The default value is 2 Query Interval...

Page 953: ...s will not be retained across a power cycle unless a save is performed 11 9 1 3 Viewing MLD Groups Summary Page Selection Criteria Group Address Indicates the address of the Mgmd members Non Configura...

Page 954: ...ximum query response time in milli seconds advertised in MLD queries on this interface Robustness The robustness parameter for the selected interface This variable allows tuning for the expected packe...

Page 955: ...eived The number of times a group membership has been added on this interface Number of Groups The current number of membership entries for the selected interface in the cache table Common Button Refr...

Page 956: ...elect enable or disable from the pulldown menu to set the administrative status of MLD Proxy on the selected interface The default is disable Routing MLD and Multicast global admin modes should be ena...

Page 957: ...Report Interval is the time between repetitions of a host s initial report of membership in a group Default 1 second Version 1 Querier Timeout The older MLD version 1 querier timeout value in seconds...

Page 958: ...erface Uptime The time elapsed since this entry was created State The state of the host entry A Host can be in one of the state Non member state does not belong to the group on the interface Delaying...

Page 959: ...ected interface Up Time Displays the up time since the entry was created in cache table State The state of the host entry A Host can be in one of the state Non member state does not belong to the grou...

Page 960: ...ect enable or disable from the pulldown menu to set the administrative status of PIM DM for the selected interface The default is disable Configurable Data Hello Interval Enter the number of seconds b...

Page 961: ...r IP The IP address of the PIM neighbor for which this entry contains information Uptime The time since this PIM neighbor last became a neighbor of the local router Expiry Time The minimum time remain...

Page 962: ...rce specific shortest path tree Register Threshold Rate The minimum source data rate in K bits second above which the Rendezvous Point router will switch to a source specific shortest path tree Comman...

Page 963: ...router The default is disable Hello Interval secs Enter the time in seconds between the transmission of which PIM Hello messages on this interface The valid values are from 0 to 18000 secs The defaul...

Page 964: ...ges are transmitted on the selected interface Join Prune Interval The frequency at which PIM Join Prune messages are transmitted on this PIM interface DR Priority Indicates the DR priority on the PIM...

Page 965: ...ete Attempts to remove the specified Candidate RP Address for the PIM SM router Configuration changes take effect immediately These changes will not be retained across a power cycle unless a save is p...

Page 966: ...es will not be retained across a power cycle unless a save is performed 11 9 3 8 Viewing PIM SM BSR Candidate Summary Page Non Configurable Data BSR Address Displays the IP address of the Elected BSR...

Page 967: ...iately These changes will not be retained across a power cycle unless a save is performed Command Buttons Submit Attempts to create the specified static RP IP Address for the PIM SM router Configurati...

Page 968: ...is source group are forwarded Up Time secs The time in seconds since the entry was created Expiry Time secs The time in seconds before this entry will age out and be removed from the table RPF Neighbo...

Page 969: ...www fortinet com...

Reviews: