Hirschmann MACH 1000 Reference Manual Download Page 336

336

4.13 SNTP - Simple Network Time Protocol

CLI L2P

Release 7.0 05/2011

SNTP Client Local Time Offset

Show SNTP Client Local Time Offset (in minutes).

SNTP Client Primary Server IP Address

Show SNTP Client Primary Server IP Address (a.b.c.d).

SNTP Client Secondary Server IP Address

Show SNTP Client Secondary Server IP Address (a.b.c.d).

SNTP Client Threshold to Server Time

Show SNTP Client Threshold to Server Time (in milliseconds).

SNTP Operation Global

Show SNTP Operation Global (Disabled or Enabled).

SNTP Operation Server

Show SNTP Operation Server (Disabled or Enabled).

SNTP Operation Client

Show SNTP Operation Client (Disabled or Enabled).

SNTP Status

Show SNTP Status

SNTP Time

Show SNTP Time (yyyy-mm-dd hh:mm:ss).

SNTP System Time

Show SNTP system Time (yyyy-mm-dd hh:mm:ss).

4.13.2 show sntp anycast

This command shows all SNTP anycast configuration settings.

Format

show sntp anycast [address|transmit-interval|vlan]

Mode

Privileged EXEC and User EXEC

Summary of Contents for MACH 1000

Page 1: ...t HAC Support belden com CLI L2P Release 7 0 05 2011 Reference Manual Command Line Interface Industrial ETHERNET Gigabit Switch RS20 RS30 RS40 RSB20 MS20 MS30 RSR20 RSR30 MACH100 MACH 1000 PowerMICE M...

Page 2: ...nd user license agreement on the enc losed CD applies The performance features described here are binding only if they have been expressly guaranteed in the contract This publication has been created...

Page 3: ...Mode based CLI 41 3 1 Mode based Topology 42 3 2 Mode based Command Hierarchy 43 3 3 Flow of Operation 45 3 4 No Form of a Command 47 3 4 1 Support for No Form 47 3 4 2 Behavior of Command Help 47 4...

Page 4: ...p 77 4 2 2 debug tcpdump start cpu 77 4 2 3 debug tcpdump start cpu filter 78 4 2 4 debug tcpdump stop 78 4 2 5 debug tcpdump filter show 79 4 2 6 debug tcpdump filter list 79 4 2 7 debug tcpdump filt...

Page 5: ...digital input 103 4 6 14digital output 105 4 6 15show digital input 108 4 6 16show digital input config 109 4 6 17show digital input all 110 4 6 18show digital input slot input 111 4 6 19show digital...

Page 6: ...r community mode 142 4 6 56snmp server community ro 143 4 6 57snmp server community rw 143 4 6 58snmp server location 143 4 6 59snmp server sysname 144 4 6 60snmp server enable traps 145 4 6 61snmp se...

Page 7: ...nds 171 4 9 1 addport 171 4 9 2 adminmode 172 4 9 3 auto negotiate 173 4 9 4 cable crossing 174 4 9 5 auto negotiate all 175 4 9 6 media module remove 175 4 9 7 deleteport 176 4 9 8 deleteport all 176...

Page 8: ...et igmp static query port 205 4 9 44set igmp groupmembershipinterval 206 4 9 45set igmp interfacemode 207 4 9 46set igmp lookup interval unknown 208 4 9 47set igmp lookup resp time unknown 208 4 9 48s...

Page 9: ...9 84storm control egress limiting 244 4 9 85storm control ingress limiting 244 4 9 86storm control ingress mode 244 4 9 87storm control broadcast port related 245 4 9 88storm control egress limit 245...

Page 10: ...75 4 10 10users snmpv3 authentication 276 4 10 11 users snmpv3 encryption 277 4 11 System Utilities 279 4 11 1address conflict 279 4 11 2cablestatus 280 4 11 3clear eventlog 280 4 11 4traceroute 280 4...

Page 11: ...sis tx hold mult 308 4 12 9show lldp config chassis tx interval 308 4 12 10show lldp config port 309 4 12 11show lldp config port tlv 310 4 12 12show lldp med 311 4 12 13show lldp med interface 312 4...

Page 12: ...t desc 330 4 12 46lldp tlv port vlan 331 4 12 47lldp tlv gmrp 331 4 12 48lldp tlv igmp 331 4 12 49lldp tlv portsec 332 4 12 50lldp tlv ptp 332 4 12 51lldp tlv protocol 332 4 12 52lldp tlv sys cap 333...

Page 13: ...on 356 4 14 8ptp sync lower bound 357 4 14 9ptp sync upper bound 357 4 14 10ptp v1 preferred master 358 4 14 11ptp v1 re initialize 358 4 14 12ptp v1 subdomain name 359 4 14 13ptp v1 sync interval 360...

Page 14: ...376 4 15 4inlinepower Interface Config 377 4 15 5clear inlinepower 377 4 16 PoE Power over Ethernet Plus 379 4 16 1show inlinepower slot 379 4 16 2inlinepower budget slot 380 4 16 3inlinepower thresh...

Page 15: ...ion 411 5 1 14spanning tree edgeport 412 5 1 15spanning tree forceversion 413 5 1 16spanning tree forward time 414 5 1 17spanning tree guard loop 415 5 1 18spanning tree guard none 416 5 1 19spanning...

Page 16: ...5 5 2 ring coupling 456 5 5 3 ring coupling config 457 5 5 4 ring coupling net coupling 458 5 5 5 ring coupling operation 458 5 5 6 ring coupling port 459 5 5 7 ring coupling redundancy mode 459 5 6 P...

Page 17: ...pool delete 481 5 9 Sub Ring Commands 483 5 9 1 show sub ring 483 5 9 2 sub ring id mode 485 5 9 3 sub ring id operation 486 5 9 4 sub ring id protocol 486 5 9 5 sub ring id port 487 5 9 6 sub ring id...

Page 18: ...ver key 515 6 1 26radius server msgauth 515 6 1 27radius server primary 516 6 1 28radius server retransmit 517 6 1 29radius server timeout 518 6 1 30show radius accounting 519 6 1 31show authenticatio...

Page 19: ...Content CLI L2P Release 7 0 05 2011 19 8 Glossary 545 9 Index 563 10 Further support 573...

Page 20: ...Content 20 CLI L2P Release 7 0 05 2011...

Page 21: ...e CLI L2P Release 7 0 05 2011 21 1 Command Structure The Command Line Interface CLI syntax conventions and terminology are described in this section Each CLI command is illustrated using the structure...

Page 22: ...rms is the command name D ipaddr netmask are the required values for the command D gateway is the optional value for the command U Example 2 snmp server location loc D snmp server location is the comm...

Page 23: ...ces indicate that a parameter must be chosen from the list of choices 1 1 3 Values macaddr The MAC address format is six hexadeci mal numbers separated by colons for example 00 06 29 32 81 40 areaid A...

Page 24: ...Command Structure 24 1 1 Format CLI L2P Release 7 0 05 2011 operator can use the logical slot port to configure the link aggregation...

Page 25: ...y strings are not valid user defined strings Command completion finishes spelling the command when enough letters of a command are typed to uniquely identify the command word The command may be execut...

Page 26: ...ability The exclamation point character flags the beginning of a com ment The comment flag character can begin a word anywhere on the command line and all input following this character is ignored An...

Page 27: ...haracter Ctrl H display command history or retrieve a command Ctrl U X delete to beginning of line Ctrl K delete to end of line Ctrl W delete previous word Ctrl T transpose previous character Ctrl P g...

Page 28: ...f the configuration parameter not having the special meaning they usually have Character plain Meaning when entered in the CLI Begin of a comment and the rest of the line will be ignored Begin or end...

Page 29: ...the beginning of the script System Version At the beginning of the script Tab 4 Commands in Privileged Exec mode Command Note snmp server location snmp server contact snmp server community snmp server...

Page 30: ...crambled secret is v1 scrambled secret without the quotes they were added for readability v1 denotes the scrambling method v1 in this case the value of the scrambled secret is a 64 digit hex string Th...

Page 31: ...and Structure CLI L2P Release 7 0 05 2011 1 1 Format 31 D string must not be longer than 64 hex digits D string must only contain the digits 0 9 and the characters A F or a f D string length must be e...

Page 32: ...Command Structure 32 1 1 Format CLI L2P Release 7 0 05 2011...

Page 33: ...Quick Start up CLI L2P Release 7 0 05 2011 33 2 Quick Start up The CLI Quick Start up details procedures to quickly become acquainted with the software...

Page 34: ...ault mode D When the prompt asks for operator login execute the following steps D Type the word admin in the login area Since a number of the Quick Setup commands require administrator account rights...

Page 35: ...up Software Version Information D Quick Start up Physical Port Data D Quick Start up User Account Management D Quick Start up IP Address D Quick Start up Uploading from Switch to Out of Band PC Only X...

Page 36: ...Link Trap Determines whether or not to send a trap when link status changes LACP Mode Displays whether LACP is enabled or disabled on this port Table 9 Quick Start up Physical Port Data Command Detail...

Page 37: ...onfirmed password match a message will be displayed User password should not be more than eight characters in length Make sure that the passwords of the users differ from each other If two or more use...

Page 38: ...ress used for in band connectivity Network Configurations Protocol BOOTP DHCP Indicates which network protocol is being used Default is DHCP Network Configurations Protocol HiDiscovery Indicates the s...

Page 39: ...leName The nvram startup config option downloads the configuration file using tftp and system image option downloads the code file Table 12 Quick Start up Downloading from TFTP Server Command Details...

Page 40: ...Quick Start up 40 2 2 System Info and System Setup CLI L2P Release 7 0 05 2011...

Page 41: ...nter the enable command Hirschmann Product To exit to the User Exec mode enter exit or press Ctrl Z VLAN Mode From the Privileged User Exec mode enter the vlan database command Hirschmann Product Vlan...

Page 42: ...lt on a mode concept where the commands are available according to the interface Some of the modes are depicted in the following figure Fig 1 Mode based CLI User Exec Enable Privileged Exec Interface...

Page 43: ...a limited set of commands The command prompt shown at this level is Command Prompt Hirschmann Product Privileged Exec Mode To have access to the full suite of commands the operator must enter the Pri...

Page 44: ...The command prompt at this level is Command Prompt Hirschmann Product Interface slot port The resulting prompt for the interface configuration command entered in the Global Configuration mode is show...

Page 45: ...attempts to execute the com mand show arpp brief then the output message would be Hirschmann Product exec show sspanning tree Hirschmann Product Invalid input detected at mark er If the operator has...

Page 46: ...ovided For optional pa rameters the command tree extends till the mandatory parameters and the optional parameters make the leaf of the branch However the call back function is associated with the nod...

Page 47: ...erface configuration command re verses the shutdown of an interface Use the command without the keyword no to re enable a disabled feature or to enable a feature that is disabled by default 3 4 2 Beha...

Page 48: ...Mode based CLI 48 3 4 No Form of a Command CLI L2P Release 7 0 05 2011...

Page 49: ...nsfer or save configuration and informational files to and from the switch D Clear commands clear some e g the clear arp table switch command which clears the agent s ARP table or all e g the clear co...

Page 50: ...d Statistics Commands 4 1 1 show address conflict This command displays address conflict settings Format show address conflict Mode Privileged EXEC and User EXEC 4 1 2 show arp switch This command dis...

Page 51: ...show bridge address learning Mode Privileged EXEC and User EXEC 4 1 4 show bridge address relearn detect This command displays the Bridge Address Relearn Detection setting and the Bridge Address Rele...

Page 52: ...Privileged EXEC and User EXEC 4 1 6 show bridge duplex mismatch detect This command displays the Bridge Duplex Mismatch Detection setting Enabled or Disabled Format show bridge duplex mismatch detect...

Page 53: ...bridge framesize This command displays the maximum size of frame packet size setting Format show bridge framesize Mode Privileged EXEC and User EXEC 4 1 9 show bridge vlan learning This command displ...

Page 54: ...Global Config bridge framesize 1522 Configure 1522 as maximum size of frame bridge framesize 1632 1 Configure 1632 1 as maximum size of frame 1 On MACH 4000 MACH100 MACH 1000 and PowerMICE 1552 4 1 1...

Page 55: ...ctive link status of at least one port With the switch the indication of link status can be masked by the management for each port Link status is not monitored in the delivery condition the loss of Re...

Page 56: ...Information and Statistics Com CLI L2P Release 7 0 05 2011 4 1 13 show authentication This command displays users assigned to authentication login lists Format show authentication users listname Mode...

Page 57: ...s error messages from the system The event log is not cleared on a system reset Format show eventlog Mode Privileged EXEC and User EXEC File The file in which the event originated Line The line number...

Page 58: ...e number of inbound packets that contained errors preventing them from being deliverable to a higher layer protocol Broadcast Packets Received The total number of packets received that were directed t...

Page 59: ...Without Error The total number of packets transmitted out of the interface Broadcast Packets Transmitted The total number of packets that higher level protocols requested to be transmitted to the Broa...

Page 60: ...ernet segment on a scale of 0 to 100 percent Packets Received 64 Octets The total number of packets includ ing bad packets received that were 64 octets in length excluding framing bits but including F...

Page 61: ...ood packets received that were directed to a multicast address Note that this number does not include packets directed to the broadcast address Broadcast Packets Received The total number of good pack...

Page 62: ...3x Pause Frames Received A count of MAC Control frames received on this interface with an opcode indicating the PAUSE oper ation This counter does not increment when the interface is operating in hal...

Page 63: ...bits but including FCS octets Packets Transmitted 128 255 Octets The total number of packets including bad packets transmitted that were between 128 and 255 octets in length inclusive excluding frami...

Page 64: ...CS with an integral number of octets Oversized The total number of frames that exceeded the max per mitted frame size This counter has a max increment rate of 815 counts per sec at 10 Mb s Underrun Er...

Page 65: ...egistrations The number of times attempted GMRP registrations could not be completed STP BPDUs Transmitted Spanning Tree Protocol Bridge Protocol Data Units sent STP BPDUs Received Spanning Tree Proto...

Page 66: ...A possible reason for discarding a packet could be to free up buffer space Octets Transmitted The total number of octets transmitted out of the interface including framing characters Packets Transmitt...

Page 67: ...ANs that have been active on this switch since the last reboot Static VLAN Entries The number of presently active VLAN entries on this switch that have been created statically Dynamic VLAN Entries The...

Page 68: ...t Mode Privileged EXEC and User EXEC 4 1 18 show logging This command displays the trap log maintained by the switch The trap log contains a maximum of 256 entries that wrap Format show logging buffer...

Page 69: ...r table gmrp on page 219 Format show mac addr table macaddr 1 4042 all Mode Privileged EXEC and User EXEC Mac Address A unicast MAC address for which the switch has forwarding and or filtering informa...

Page 70: ...tors the device status Manual This command gives you the option of remote switching the signal contact Signal contact monitor Displays the possible monitored events and which of them are moni tored th...

Page 71: ...ntact is currently closed open The signal contact is currently open Signal contact trap enabled A trap is sent if the signal contact state changes disabled No trap is sent if the signal contact state...

Page 72: ...e The output is displayed in the script format which can be used to configure another switch with the same configuration Format show running config all scriptname Mode Privileged EXEC all Show all the...

Page 73: ...ha numeric characters The factory default is blank System Contact Text used to identify a contact person for this switch May be up to 31 alpha numeric characters The factory default is blank System Up...

Page 74: ...ate The backup operating system s software build date Backplane Hardware Revision The hardware s revision number Backplane Hardware Description The hardware s device description Serial Number Backplan...

Page 75: ...Number of the media modul if available SFP Information SFP Part ID SFP type if available SFP Serial No of the SFP module if available SFP Supported yes no SFP Temperature C F SFP Tx Pwr SFP transmit p...

Page 76: ...4 1 24 show temperature This command displays the lower and upper temperature limit for sending a trap Note The command is available for RS20 RS30 RS40 MS20 MS30 RSR20 RSR30 MACH100 MACH 1000 PowerMIC...

Page 77: ...mp command Format debug tcpdump help Mode Privileged EXEC 4 2 2 debug tcpdump start cpu Run diagnostics commands With the TCP dump you run a packet analyzer for capturing network traffic This command...

Page 78: ...This command starts a capture on the CPU interface with the options and expressions in the filter file Format debug tcpdump start cpu filter capturefilter Mode Privileged EXEC 4 2 4 debug tcpdump stop...

Page 79: ...k traffic This command shows a saved filter file stored in flash memory Format debug tcpdump filter show capturefilter Mode Privileged EXEC 4 2 6 debug tcpdump filter list Run diagnostics commands Wit...

Page 80: ...4 2 7 debug tcpdump filter delete Run diagnostics commands With the TCP dump you run a packet analyzer for capturing network traffic This command removes a saved filter file from the flash memory For...

Page 81: ...gement VLAN Commands 81 4 3 Management VLAN Com mands 4 3 1 network mgmt_vlan This command configures the Management VLAN ID If you enter the VLAN ID 0 the agent can be accessed by all VLANs Default 1...

Page 82: ...ds are divided into these different groups D Configuration Commands are used to configure features and options of the switch For every configuration command there is a show command that will display t...

Page 83: ...lable on platforms that support priority to traffic class mapping on a per port basis and the number of available traffic classes may vary with the platform Format classofservice dot1p mapping userpri...

Page 84: ...f42 af43 be cs0 cs1 cs2 cs3 cs4 cs5 cs6 cs7 ef Format classofservice ip dscp mapping ipdscp trafficclass Mode Global Config ipdscp Enter the IP DSCP value in the range of 0 to 63 or an IP DSCP keyword...

Page 85: ...cording to the DSCP mapping and VLAN mapping table PowerMICE MACH 1000 MACH 4000 the a fix mapping table see Reference Manual Web based Management for further details Format classofservice trust dot1p...

Page 86: ...specific interface The slot port parameter is required on platforms that support priority to traffic class mapping on a per port basis Platforms that support priority to traffic class mapping on a pe...

Page 87: ...rnal traffic class es for the global configuration settings Format show classofservice ip dscp mapping slot port Mode Privileged EXEC The following information is repeated for each user priority IP DS...

Page 88: ...of the inter face is displayed If omitted the most recent global configuration settings are displayed Format show classofservice trust slot port Mode Privileged EXEC Class of Service Trust Mode The c...

Page 89: ...into the device The range for the priority is 0 7 Any subsequent per port configuration will override this configuration setting Format vlan port priority all priority Mode Global Config 4 4 8 vlan pr...

Page 90: ...ports which are configured as core ports This command is available for the RS20 RS30 RS40 RSB20 MS20 MS30 RSR20 RSR30 MACH100 MACH104 MACH1000 MACH1040 MACH4002 24G 48G XG OCTOPUS OS20 OS30 devices De...

Page 91: ...R20 RSR30 MACH100 MACH104 MACH1000 MACH1040 MACH4002 24G 48G XG OCTOPUS OS20 OS30 devices Default Disabled Format mode dvlan tunnel access core Mode Interface Config access Configure this port as a cu...

Page 92: ...RSR30 MACH100 MACH104 MACH1000 MACH1040 MACH4002 24G 48G XG OCTOPUS OS20 OS30 devices Format show dvlan tunnel interface slot port all Modes Privileged EXEC User EXEC slot port Enter an interface in s...

Page 93: ...t of link aggregations static LAGs on the device By default the static capability for all link aggregations is disabled Default disabled Format link aggregation staticcapability Mode Global Config U n...

Page 94: ...ield displays whether or not the device has static capability enabled For each link aggregation the following information is displayed Name This field displays the name of the link aggregation Link St...

Page 95: ...lues for port should be a valid decimal integer in the range of 0 to 65535 where the default value is 23 If debug is used the current telnet options enabled is displayed The optional line parameter se...

Page 96: ...ssions available If sessions are disabled no new telnet sessions are established An established session remains active until the session is ended or an abnormal network error ends the session Default...

Page 97: ...eous outbound telnet sessions allowed If disabled no new outbound telnet session can be established An established session remains active until the session is ended or an abnormal network error ends i...

Page 98: ...ber of simultaneous outbound telnet sessions A value of 0 indicates that no outbound telnet session can be established Default 4 Format session limit 0 5 Mode Line Config U no session limit This comma...

Page 99: ...sets the telnet session timeout value to the default The timeout value unit of time is minutes Format no session timeout Mode Line Config 4 6 6 bridge address learning To enable you to observe the da...

Page 100: ...sabled Format bridge address relearn detect operation disable enable Mode Global Config 4 6 8 bridge address relearn detect threshold This command defines the value of relearned addresses to signal ad...

Page 101: ...ing database address aging timeout in seconds Default 30 Format bridge aging time 10 630 Mode Global Config Seconds The seconds parameter must be within the range of 10 to 630 sec onds U no bridge agi...

Page 102: ...Bridge Duplex Mismatch Detection Reasons for Duplex Mismatch can be A local port is configured to fix full duplex A port is configured to auto negotiation and has negotiated HalfDuplex Mode Duplex Mi...

Page 103: ...Format bridge vlan learning independent shared Mode Global Config 4 6 13 digital input This command configures the MICE IO Module digital inputs Format digital input admin state enable disable refres...

Page 104: ...all digital inputs slot input Configure the IO Module event logging for a single digital input disable Disable event logging for digital input status changes enable Enable event logging for digital in...

Page 105: ...Enable the IO Module digital outputs admin state refresh interval This command configures the IO Module digital outputs refresh interval Each output configured for input mirroring is refreshed input...

Page 106: ...r digital output status changes snmp trap This command enables or disables the sending of SNMP traps in case of output status changes for one or all digital outputs Default disable The trap will be se...

Page 107: ...roring for a single digital output The slot value determines the IO module slot number on the device with the selected IP address disable Disable the IO Module mirroring for a single digital output fr...

Page 108: ...Enabled Refresh Interval s Show the IO Module digital inputs Refresh Interval in seconds Value range 1 10 Digital Input Information Input Show numbers of the IO Module digital input Possible values ex...

Page 109: ...the IO Module digital inputs global configuration Format show digital input config Mode Global Config Digital Input System Information Admin State Show the IO Module digital inputs Admin State Possib...

Page 110: ...guration for all inputs value Show the IO Module value for all inputs Digital Input Information Input Show numbers of the IO Module digital input Possible values example 1 1 1 2 1 3 1 4 3 1 3 2 3 3 3...

Page 111: ...ne input config Show the IO Module configuration for one input value Show the IO Module value for one input Digital Input slot input Value Show the value of the IO Module digital input Possible values...

Page 112: ...digital outputs Refresh Interval in seconds Value range 1 10 Retry Count Show the value of the IO Module digital outputs Retry count Value range 1 10 Digital output Information Output Show numbers of...

Page 113: ...1 3 1 4 3 1 3 2 3 3 3 4 4 6 20 show digital output config This command shows the IO Module digital outputs global configuration Format show digital output config Mode Global Config Digital output Syst...

Page 114: ...e IO Module digital output Possible values example 1 1 1 2 1 3 1 4 3 1 3 2 3 3 3 4 Value Show the value of the IO Module digital outputs Possible values Not available High Low Log Event Show if Event...

Page 115: ...Module value for one output Digital output slot output Value Show the value of the IO Module digital output Possible values Not available High Low Invalid Digital output slot output Log Event Show if...

Page 116: ...in state disable Disables the EtherNet IP function on this device Note the relevant MIB objects are still accessible enable Enables the EtherNet IP function on this device 4 6 24 network javascriptmod...

Page 117: ...CLI Commands Base CLI L2P Release 7 0 05 2011 4 6 Management Commands 117 Format no network javascriptmode Mode Privileged EXEC...

Page 118: ...with parameter index or at the next free index if you enter the command without parameter index Format network mgmt access add index Mode Global Config index Index of the entry in the range 1 16 4 6...

Page 119: ...le telnet enable disable ssh enable disable Mode Global Config index Index of the entry in the range 1 16 ip Configure IP address which should have access to management mask Configure network mask to...

Page 120: ...lobal Config enable Enable the restricted management access function globally disable Disable the restricted management access function globally 4 6 29 network mgmt access status This command is used...

Page 121: ...on protocol to be used If you modify this value change is effective immediately after you saved your changes The parameter bootp indicates that the switch periodically sends requests to a Bootstrap Pr...

Page 122: ...e of the following keywords af11 af12 af13 af21 af22 af23 af31 af32 af33 af41 af42 af43 be cs0 cs1 cs2 cs3 cs4 cs5 cs6 cs7 ef Default 0 for both values Format network priority dot1p vlan 0 7 ip dscp i...

Page 123: ...led information you can find in the User Manual Industrial Protocols Default depends on the order code standard disable Format profinetio admin state enable disable Mode Global Config Admin state disa...

Page 124: ...nutes without console activity A value of 0 indicates that a console can be connected in definitely The time range is 0 to 160 Default 5 Format serial timeout 0 160 Mode Line Config U no serial timeou...

Page 125: ...ommand changes the name of the prompt The length of name may be up to 64 alphanumeric characters Format set prompt prompt string Mode Privileged EXEC 4 6 36 show ethernet ip This command displays the...

Page 126: ...IP address of the interface The factory default value is 0 0 0 0 Subnet Mask The IP subnet mask for this interface The factory default value is 0 0 0 0 Default Gateway The default gateway for this IP...

Page 127: ...ork mgmt access Mode Privileged EXEC and User EXEC Operation Indicates whether the opeartion for RMA is enabled or not The options are Enabled Disabled ID Index of the entry for restricted management...

Page 128: ...or not The options are Yes No SSH Indicates whether SSH is allowed to have management access or not The options are Yes No Active Indicates whether the feature is active or not The options are x 4 6 3...

Page 129: ...in Timeout minutes Specifies the time in minutes of inactivity on a Serial port connection after which the Switch will close the connection Any numeric value between 0 and 160 is allowed the factory d...

Page 130: ...ers Each row of this table must contain a unique community name Client IP Address An IP address or portion thereof from which this device will accept SNMP packets with the associated community The req...

Page 131: ...ode Privileged EXEC SNMP Trap Name The community string of the SNMP trap packet sent to the trap man ager This may be up to 32 alphanumeric characters This string is case sensitive IP Address The IP a...

Page 132: ...number of minutes a remote connection session is allowed to remain inactive before being logged off May be specified as a number from 1 to 160 The factory default is 5 Maximum Number of Outbound Telne...

Page 133: ...number of minutes a remote connection ses sion is allowed to remain inactive before being logged off May be specified as a number from 1 to 160 The factory default is 4 Maximum Number of Remote Telnet...

Page 134: ...assis functionality of the switch will be sent These functions include the signal contacts the ACA temperature limits exceeded changes in the module map addition or removal of SFP modules status of po...

Page 135: ...ther spanning tree traps will be sent 4 6 47 snmp access global This command configures the global SNMP access setting for all SNMP versions Format snmp access global disable enable read only Mode Glo...

Page 136: ...Enable or disable SNMP access by v1 v2 Enable or disable SNMP access by v2 4 6 49 snmp access version v3 encryption Use this command to activate deactivate SNMPv3 data encryption Format snmp access ve...

Page 137: ...e name and the physical location of the switch and the organization responsible for the network The range for name location and contact is from 0 to 64 alphanumeric characters Default None Format snmp...

Page 138: ...be unique When making multiple entries using the same community name the first entry is kept and processed and all duplicate entries are ignored Default Two default community names Public and Private...

Page 139: ...ormat snmp server contact con Mode Global Config con Enter system contact up to 63 characters in length If the name contains spaces enclose it in quotation marks U no snmp server contact This command...

Page 140: ...clients may use that community to access the device A value of 0 0 0 0 allows access from any IP address Otherwise this value is ANDed with the mask to determine the range of allowed client IP address...

Page 141: ...ice A value of 255 255 255 255 will allow access from only one station and will use that machine s IP address for the client IP Address A value of 0 0 0 0 will allow access from any IP address The nam...

Page 142: ...munity cannot manage the switch until the Status is changed back to Enable Default The default private and public communities are enabled by default The four undefined communities are disabled by defa...

Page 143: ...alled public Format snmp server community ro name Mode Global Config 4 6 57 snmp server community rw This command restricts access to switch information The access mode is read write also called priva...

Page 144: ...CLI Commands Base 144 4 6 Management Commands CLI L2P Release 7 0 05 2011 4 6 59 snmp server sysname This command configures the system name Format snmp server sysname system name Mode Global Config...

Page 145: ...0 snmp server enable traps This command enables the Authentication Trap Flag Default enabled Format snmp server enable traps Mode Global Config U no snmp server enable traps This command disables the...

Page 146: ...contacts the ACA temperature limits exceeded changes in the module map addition or removal of SFP modules status of power supply has changed and the LLDP and SNTP features May be enabled or disabled D...

Page 147: ...HiPER Ring and the Redundant Coupling will tell you with these traps when the main line has become inoperative or returned May be enabled or disabled Default enabled Default enabled Format snmp serve...

Page 148: ...hen en abled link traps are sent only if the Link Trap flag setting associated with the port is enabled see snmp trap link status command Default enabled Format snmp server enable traps linkmode Mode...

Page 149: ...a Multiple User Trap is sent when a user logs in to the terminal interface EIA 232 serial port or telnet and there is an existing terminal interface session Default enabled Format snmp server enable...

Page 150: ...traps are enabled a Port Security Trap is sent if a port security event occurs applies to MAC IP Port Security as well as to 802 1X Port Security Default enabled Format snmp server enable traps port s...

Page 151: ...the sending of new root traps and topology change notification traps Default enabled Format snmp server enable traps stpmode Mode Global Config U no snmp server enable traps stpmode This command disab...

Page 152: ...The maximum length of name is 32 case sensitive alphanumeric characters Default The default name for the six undefined community names is Delete Format snmptrap name ipaddr snmpversion snmpv1 Mode Glo...

Page 153: ...of name is 32 case sensitive alphanumeric characters Note IP addresses in the SNMP trap receiver table must be unique If you make multiple entries using the same IP address the first entry is retaine...

Page 154: ...Enabled trap receiv ers are active able to receive traps Disabled trap receivers are inactive not able to receive traps Format snmptrap mode name ipaddr Mode Global Config U no snmptrap mode This comm...

Page 155: ...ptrap snmpversion This command configures SNMP trap version for a specified community Format snmptrap snmpversion name ipAddr snmpv1 snmpv2 Mode Global Config name Enter the community name ipAaddr Ent...

Page 156: ...gure the number of remote telnet connections allowed Default 5 Format telnetcon maxsessions 0 5 Mode Privileged EXEC U no telnetcon maxsessions This command sets the maximum number of telnet connectio...

Page 157: ...for the value set The time is a decimal value from 1 to 160 Default 5 Format telnetcon timeout 1 160 Mode Privileged EXEC U no telnetcon timeout This command sets the telnet connection session timeou...

Page 158: ...statistics and other in formation D Configuration Commands configure features and options of the device For every configuration command there is a show command that displays the configuration setting...

Page 159: ...of in memory logging when full capacity reached Otherwise when full capacity is reached logging stops Default wrap Format logging buffered wrap Mode Privileged EXEC U no logging buffered wrap This com...

Page 160: ...I command Logging feature The Command Logging component enables the switch software to log all Command Line Interface CLI commands issued on the system Default disabled Format logging cli command Mode...

Page 161: ...warning 4 notice 5 informational 6 debug 7 Default disabled alert Format logging console severitylevel 0 7 Mode Global Config severitylevel 0 7 Enter Logging Severity Level emergency 0 alert 1 critic...

Page 162: ...ty to be logged is 0 This is the highest level and will result in all other messages of lower levels not being logged 1 alert Minimum severity to be logged is 1 2 critical Minimum severity to be logge...

Page 163: ...st reconfigure hostindex hostaddress Mode Global Config 4 7 7 logging host remove The Logging Host Index to be removed Format logging host remove hostindex Mode Global Config 4 7 8 logging snmp reques...

Page 164: ...Global Config 4 7 10 logging snmp requests get severity With this command you can define the severity level of logging SNMP GET requests Default Disabled Format logging snmp requests get severity leve...

Page 165: ...level of logging SNMP SET requests Default Disabled Format logging snmp requests set severity level 0 7 Mode Global Config level 0 7 Enter Logging Severity Level emergency 0 alert 1 critical 2 error...

Page 166: ...and enables syslog logging Default disabled Format logging syslog Mode Global Config U no logging syslog This command disables syslog logging Format no logging syslog 4 7 13 logging syslog port Enter...

Page 167: ...transfer the configuration script to and from the switch Scripts are intended to be used on systems with default configuration but users are not prevented from applying scripts on systems with non def...

Page 168: ...he switch Format script delete scriptname all Mode Privileged EXEC 4 8 3 script list This command lists all scripts present on the switch as well as the remaining available space Format script list ac...

Page 169: ...he format of display is Line no Line contents 4 8 5 script validate This command validates a script file by parsing each line in the script file where scriptname is the name of the script to validate...

Page 170: ...CLI Commands Base 170 4 8 Scripting Commands CLI L2P Release 7 0 05 2011...

Page 171: ...addport This command adds one port to the Link Aggregation LAG The given inter face is a logical slot and port number of a configured Link Aggregation Note Before adding a port to a Link Aggregation s...

Page 172: ...whole Link Aggregation as one single port Note Before adding a port to a Link Aggregation set the physical mode of the port See speed command Format adminmode Mode Interface Config U no adminmode Thi...

Page 173: ...4 9 3 auto negotiate This command enables automatic negotiation on a port The default value is enable Format auto negotiate Mode Interface Config U no auto negotiate This command disables automatic ne...

Page 174: ...sing settings are irrelevant for a certain port if auto negotiate is enabled for this port Note The cable crossing function is available for the RS20 RS30 RS40 MS20 MS30 RSR20 RSR30 MACH 1000 PowerMIC...

Page 175: ...lt value is enable Format auto negotiate all Mode Global Config U no auto negotiate all This command disables automatic negotiation on all ports Format no auto negotiate all Mode Global Config 4 9 6 m...

Page 176: ...configured link aggregation Note This command has to be issued in the member port s interface config mode Format deleteport logical slot port Mode Interface Config 4 9 8 deleteport all This command de...

Page 177: ...80 C2 00 00 20 to 01 80 C2 00 00 21 and FF FF FF FF FF FF The vlanid parameter must identify a valid VLAN 1 to 4042 Up to 100 static MAC filters may be created Format macfilter macaddr vlanid Mode Gl...

Page 178: ...b2 b3 b4 b5 b6 The vlanid parameter must identify a valid VLAN 1 4042 Format macfilter adddest macaddr vlanid Mode Interface Config U no macfilter adddest This command removes a port from the destina...

Page 179: ...3 b4 b5 b6 The vlanid parameter must identify a valid VLAN 1 to 4042 Format macfilter adddest all macaddr vlanid Mode Global Config U no macfilter adddest all This command removes all ports from the d...

Page 180: ...tion interface slot port Mode Global Config destination Configure the probe interface mode Enable Disable port mirroring session Note does not affect the source or destination interfaces source Config...

Page 181: ...ffic received and transmitted on the physical monitored port It is not necessary to disable port monitoring before modifying the probe and moni tored ports Default disabled Format monitor session sess...

Page 182: ...than one source port to the session It is possible to add remove ports to from an active session Note The device supports a maximum of one session The maximum number of source ports is 8 Ports configu...

Page 183: ...ported 4 9 15 link aggregation This command configures a new Link Aggregation LAG and generates a logical slot port number for the Link Aggregation Display this number using the show link aggregation...

Page 184: ...ery con figured Link Aggregation with the same administrative mode setting Format link aggregation adminmode all Mode Global Config U no link aggregation adminmode This command disables a Link Aggrega...

Page 185: ...h the same administrative mode setting Default enabled Format link aggregation linktrap logical slot port all Mode Global Config U no link aggregation linktrap This command disables link trap notifica...

Page 186: ...link aggregation LAG The interface is a logical slot port for a configured link aggregation and name is an alpha numeric string up to 15 characters This command is used to modify the name that was as...

Page 187: ...g threshold Mode Global Config index Enter the index of the RMON alarm mib variable Enter the MIB variable rising threshold Enter the rising threshold for the RMON alarm falling threshold Enter the fa...

Page 188: ...enable This command enables an RMON alarm Format rmon alarm enable index Mode Global Config index Enter the index of the RMON alarm 4 9 22 rmon alarm disable This command disables an RMON alarm Format...

Page 189: ...ig index Enter the index of the RMON alarm mib variable Enter the MIB variable 4 9 24 rmon alarm modify thresholds This command modifies the thresholds of an RMON alarm Format rmon alarm modify index...

Page 190: ...de Global Config index Enter the index of the RMON alarm interval Enter the interval for the RMON alarm 4 9 26 rmon alarm modify sample type This command modifies the sample type of an RMON alarm Form...

Page 191: ...the startup alarm of an RMON alarm Format rmon alarm modify index startup alarm rising falling risingorfalling Mode Global Config index Enter the index of the RMON alarm rising Start up alarm if the v...

Page 192: ...Global Config index Enter the index of the RMON alarm rising event index Enter the index for the rising event for the RMON alarm 4 9 29 rmon alarm modify falling event This command modifies the falli...

Page 193: ...or a VLAN or multicast group This command has an effect only when GVRP is enabled The time is from 10 to 100 centiseconds The value 20 centiseconds is 0 2 seconds Default 20 Format set garp timer join...

Page 194: ...to assert registration for the same attribute in order to maintain uninterrupted service time is 20 to 600 centiseconds The value 60 centi seconds is 0 6 seconds Note This command has an effect only w...

Page 195: ...ort and per GARP participation The time may range from 200 to 6000 cen tiseconds The value 1000 centiseconds is 10 seconds Note This command has an effect only when GVRP is enabled Default 1000 Format...

Page 196: ...P Multicast Registration Protocol GMRP on the system The default value is disable Format set gmrp adminmode Mode Privileged EXEC and Global Config U no set gmrp adminmode This command disables GARP Mu...

Page 197: ...tion LAG membership is removed from an interface that has GARP enabled Default enabled Format set gmrp interfacemode Mode Interface Config U no set gmrp interfacemode This command disables GARP Multi...

Page 198: ...link aggregation LAG GARP functionality will be disabled on that interface GARP functionality will subsequently be re en abled if routing is disabled and link aggregation LAG membership is re moved f...

Page 199: ...n Protocol feature Forward All Groups for all ports Default disabled Format set gmrp forward all groups Mode Interface Config Global Config U no set gmrp forward all groups This command disables the G...

Page 200: ...terface configuration D Validation of the IP header checksum as well as the IGMP header check sum and discarding of the frame upon checksum error D Maintenance of the forwarding table entries based on...

Page 201: ...mmands 201 4 9 38 set igmp This command enables IGMP Snooping on a selected interface Default enabled Format set igmp Mode Interface Config U no set igmp This command disables IGMP Snooping on a selec...

Page 202: ...efault 260 Format set igmp aging time unknown 3 3600 Mode Global Config 4 9 40 set igmp automatic mode If enabled this port is allowed to be set as static query port automatically if the LLDP protocol...

Page 203: ...ia IGMP Snooping The pur pose is that an interface e g a HIPER Ring s ring port may need to forward all such frames even if no reports have been received on it This enables fast er recovery from ring...

Page 204: ...o handle unknown multicast frames This command is available for MS20 MS30 Format set igmp forward unknown discard flood query ports Mode Global Config discard Unknown multicast frames will be discarde...

Page 205: ...any queries The purpose is that a port may need to forward such frames even if no queries have been received on it e g if a router is connected to the interface that sends no queries Default disabled...

Page 206: ...r a report from a particular group on a particular inter face before deleting the interface from the entry This value must be greater than the IGMP Maximum Response time value The range is 3 to 3 600...

Page 207: ...ber of a link aggregation LAG IGMP Snooping functionality will be disabled on that interface IGMP Snooping functionality will subse quently be re enabled if routing is disabled or link aggregation LAG...

Page 208: ...e Global Config 2 3599 Enter the IGMP Snooping lookup response time for unknown multi cast frames unit seconds min 2 max 3 599 default 125 4 9 47 set igmp lookup resp time unknown This command configu...

Page 209: ...ge If the switch re ceives a report in response to the query within the maxresponse time then the multicast group is not deleted This value must be less than the IGMP Query Interval time value The ran...

Page 210: ...ault value is 10 seconds Default 10 Format set igmp querier max response time 1 3598 Mode Global Config Note The IGMP Snooping max response time was also set It is always the same value as the IGMP Qu...

Page 211: ...erier s administrative status enable or disable Default disable Format set igmp querier status enable disable Mode Global Config 4 9 52 set igmp querier tx interval Configure the IGMP Snooping Querier...

Page 212: ...s or disables the addition of query ports to multicast fil ter portmasks The setting can be enable or disable Default Disable Format set igmp query ports to filter enable disable Mode Global Config en...

Page 213: ...enable Mode Global Config selftest ramtest disable Disable the ramtest selftest ramtest enable Enable the ramtest This is the default 4 9 55 selftest reboot on error Enable or disable a restart due t...

Page 214: ...4 9 56 show garp This command displays Generic Attributes Registration Protocol GARP in formation Format show garp Mode Privileged EXEC and User EXEC GMRP Admin Mode This displays the administrative...

Page 215: ...time to wait after receiving an unregister request for an attribute before deleting the attribute Current attributes are a VLAN or multicast group This may be considered a buffer time for another sta...

Page 216: ...onds The finest granularity of specifica tion is 1 centisecond 0 01 seconds Port GMRP Mode Indicates the GMRP administrative mode for the port It may be enabled or disabled If this parameter is disabl...

Page 217: ...displays the IGMP Group Membership Interval This is the amount of time a switch will wait for a report for a particular group on a particular interface before it sends a query on that interface This v...

Page 218: ...nsmit Interval This displays the IGMP Snooping Querier s transmit interval in seconds Querier Max Response Time This displays the IGMP Snooping Querier s maximum response time in seconds Querier Proto...

Page 219: ...orwarding and or filtering information The format is 6 or 8 two digit hexadecimal num bers that are separated by colons for example 01 23 45 67 89 AB In an IVL system the MAC address will be displayed...

Page 220: ...ess for which the switch has forwarding and or filtering information The format is two digit hexadecimal numbers that are separated by colons for example 01 23 45 67 89 AB Type This displays the type...

Page 221: ...ation The format is two digit hexadecimal numbers that are separated by colons for example 01 23 45 67 89 AB Type This displays the type of the entry Static entries are those that are configured by th...

Page 222: ...ntered a vlan must also be entered and the Static MAC Filter information will be displayed only for that MAC address and VLAN Format show mac filter table static macaddr vlanid all Mode Privileged EXE...

Page 223: ...ss for which the switch has forwarding and or fil tering information The format is 6 or 8 two digit hexadecimal num bers that are separated by colons for example 01 23 45 67 89 AB Type This displays t...

Page 224: ...and User EXEC Total Entries This displays the total number of entries that can possibly be in the Multicast Forwarding Database table Most MFDB Entries Ever Used This displays the largest number of e...

Page 225: ...tings Session Number Session Number Enter 1 for the Session Number Port Monitor Mode indicates whether the Port Monitoring feature is enabled or disabled The possible values are enable and disable Pro...

Page 226: ...is a monitoring port Look at the Port Monitoring screens to find out more information LA Mbr this port is a member of a Link Aggregation LAG Probe this port is a probe port Admin Mode Indicates the Po...

Page 227: ...s VLAN Prio This object displays the port VLAN priority 4 9 67 show link aggregation This command displays an overview of all link aggregations LAGs on the switch Format show link aggregation logical...

Page 228: ...sting of the ports that are members of this link aggregation LAG in slot port notation There can be a maximum of eight ports assigned to a given link aggregation LAG Port Speed Speed of the link aggre...

Page 229: ...ion Format show rmon alarm Mode Privileged EXEC and User EXEC 4 9 69 show selftest This command displays switch configuration information Format show selftest Mode Privileged EXEC and User EXEC Ramtes...

Page 230: ...ed or disabled The factory default is disabled Ingress Limiter Mode MACH 4000 and PowerMICE only Sets the global mode for the ingress limiter The factory default is Broadcasts only Egress Broadcast Li...

Page 231: ...sts only Ingress Limit Shows the ingress rate limit The factory default is 0 Egress Broadcast Limit Shows the egress broadcast rate limit The factory default is 0 Egress Limit all traffic RS20 RS30 RS...

Page 232: ...ivalent to registration fixed in the IEEE 802 1Q standard Exclude This port is never a member of this VLAN This is equiv alent to registration forbidden in the IEEE 802 1Q standard Autodetect Specifie...

Page 233: ...EC and User EXEC VLAN ID There is a VLAN Identifier vlanid associated with each VLAN The range of the VLAN ID is 1 to 4042 VLAN Name A string associated with this VLAN as a convenience It can be up to...

Page 234: ...ames or priority tagged frames received on this port are accepted and assigned the value of the Port VLAN ID for this port With either option VLAN tagged frames are forwarded in accordance to the 802...

Page 235: ...oice vlan Use this command to display the current global Voice VLAN Administrative Mode Voice VLAN is a feature used to automatically separate voice and data traffic on a port by VLAN and or priority...

Page 236: ...all valid interfaces Format show voice vlan interface slot port all Mode Privileged EXEC slot port Indicates a specific physical interface all Indicates all valid interfaces Interface Displays the ph...

Page 237: ...011 4 9 Device Configuration Commands 237 4 9 77 shutdown This command disables a port Default enabled Format shutdown Mode Interface Config U no shutdown This command enables a port Format no shutdow...

Page 238: ...mands CLI L2P Release 7 0 05 2011 4 9 78 shutdown all This command disables all ports Default enabled Format shutdown all Mode Global Config U no shutdown all This command enables all ports Format no...

Page 239: ...n the Link Up Down Flag is enabled See snmp server enable traps linkmode command Format snmp trap link status Mode Interface Config U no snmp trap link status This command disables link status traps b...

Page 240: ...nly when the Link Up Down Flag is enabled see snmp server enable traps linkmode Format snmp trap link status all Mode Global Config U no snmp trap link status all This command disables link status tra...

Page 241: ...to transmit RST or MST BPDUs The all option enables BPDU migration check on all interfaces Format spanning tree bpdumigrationcheck slot port all Mode Global Config U no spanning tree bpdumigrationchec...

Page 242: ...sets the speed and duplex setting for the interface Format speed 100 10 half duplex full duplex 1000 full duplex Mode Interface Config Acceptable values are 1000f 1000BASE T full duplex 100h 100BASE...

Page 243: ...torm control broadcast This command enables the egress broadcast limiter globally Format storm control broadcast Mode Global Config U no storm control broadcast This command disables the egress broadc...

Page 244: ...ting disable enable Mode Global Config 4 9 85 storm control ingress limiting This command enables or disables the ingress limiter globally Format storm control ingress limiting disable enable Mode Glo...

Page 245: ...n 0 no limit default 0 no limit Format storm control broadcast max broadcast rate Mode Interface Config 4 9 88 storm control egress limit Sets the egress rate limit in kbit s 0 means no limit RS20 RS3...

Page 246: ...ase 7 0 05 2011 4 9 90 storm control ingress mode This command sets the frame type for the ingress limiter to All BC BC MC BC MC uUC RS20 RS30 RS40 MS20 MS30 OCTO PUS only Format storm control ingress...

Page 247: ...te This command only applies to full duplex mode ports Default disabled Format storm control flowcontrol Mode Interface Config Global Config U no storm control flowcontrol This command disables 802 3x...

Page 248: ...or the port Note This command only applies to full duplex mode ports Default enabled Format storm control flowcontrol Mode Interface Config U no storm control flowcontrol per port This command disable...

Page 249: ...e ID is a valid VLAN identification number ID 1 is reserved for the default VLAN VLAN range is 1 4042 Format vlan 1 4042 Mode VLAN database U no vlan This command deletes an existing VLAN The ID is a...

Page 250: ...ctive of the Port VLAN ID setting in the VLAN Port dialog Note for PowerMICE MACH100 MACH 1000 and MACH 4000 In transparency mode devices ignore received vlan tags Set the vlan mem bership of the port...

Page 251: ...With either option VLAN tagged frames are forwarded in ac cordance with the IEEE 802 1Q VLAN Specification Default Admit All Format vlan acceptframe vlanonly all Mode Interface Config U no vlan accep...

Page 252: ...252 4 9 Device Configuration Commands CLI L2P Release 7 0 05 2011 4 9 96 vlan database This command switches into the global VLAN mode Default Admit All Format vlan database Mode Privileged EXEC...

Page 253: ...interface are admitted and forwarded to ports that are members of that VLAN Default disabled Format vlan ingressfilter Mode Interface Config U no vlan ingressfilter This command disables ingress filte...

Page 254: ...a valid VLAN identification number ID range is 1 4042 Default The name for VLAN ID 1 is always Default The name for other VLANs is defaulted to a blank string Format vlan name 1 4042 newname Mode VLAN...

Page 255: ...icipation exclude include auto 1 4042 Mode Interface Config Participation options are include The interface is always a member of this VLAN This is equivalent to registration fixed exclude The interfa...

Page 256: ...lude auto 1 4042 Mode Global Config Participation options are include The interface is always a member of this VLAN This is equivalent to registration fixed exclude The interface is never a member of...

Page 257: ...With either option VLAN tagged frames are forwarded in ac cordance with the IEEE 802 1Q VLAN Specification Default Admit All Format vlan port acceptframe all vlanonly all Mode Global Config U no vlan...

Page 258: ...face are admitted and forwarded to ports that are members of that VLAN Default disabled Format vlan port ingressfilter all Mode Global Config U no vlan port ingressfilter all This command disables ing...

Page 259: ...103vlan port pvid all This command changes the VLAN ID for all interface Default 1 Format vlan port pvid all 1 4042 Mode Global Config U no vlan port pvid all This command sets the VLAN ID for all in...

Page 260: ...tag ging is disabled traffic is transmitted as untagged frames The ID is a valid VLAN identification number Format vlan port tagging all 1 4042 Mode Global Config U no vlan port tagging all This comm...

Page 261: ...ion Commands 261 4 9 105vlan pvid This command changes the VLAN ID per interface Default 1 Format vlan pvid 1 4042 Mode Interface Config U no vlan pvid This command sets the VLAN ID per interface to 1...

Page 262: ...mes If tagging is disabled traffic is transmitted as untagged frames The ID is a valid VLAN identification number Format vlan tagging 1 4042 Mode Interface Config U no vlan tagging This command config...

Page 263: ...ate voice and data traffic on a port by VLAN and or priority A primary benefit of using Voice VLAN is to ensure that the sound quality of an IP phone is safeguarded from deteriorating when the data tr...

Page 264: ...priority Format voice vlan id dot1p priority Mode Interface Config id Enter the Voice VLAN ID dot1p Configure Voice VLAN 802 1p priority tagging for voice traffic priority The priority tag range is 0...

Page 265: ...agging for voice traffic Format voice vlan dot1p priority Mode Interface Config priority Configure Voice VLAN 802 1p priority tagging for voice traffic The priority tag range is 0 7 4 9 110voice vlan...

Page 266: ...o set Voice VLAN Authentication Mode If disabled VOIP devices which are detected via LLDP med will have access to the Voice VLAN without authentication Default Enabled Format voice vlan auth enabled d...

Page 267: ...t Management Commands 267 4 10 User Account Management Commands These commands manage user accounts 4 10 1 disconnect This command closes a telnet session Format disconnect sessionID all Mode Privileg...

Page 268: ...he name the user will use to login using the serial port or Telnet A new user may be added to the switch by entering a name in a blank entry The user name may be up to 8 characters and is not case sen...

Page 269: ...Shows whether the operator is able to change parameters on the switch Read Write or is only able to view them Read Only As a factory default the admin user has Read Write access and the user has Read...

Page 270: ...when attempting to log in to the system This setting is overridden by the authentication login list assigned to a specific user if the user is config ured locally If this value is not configured user...

Page 271: ...en assigning a list to the admin account include an authentica tion method that allows administrative access even when remote authentication is unavailable use authentication login listname method1 me...

Page 272: ...eadwrite Format users access username readonly readwrite Mode Global Config username Enter a name up to 32 alphanumeric characters in length readonly Enter the access mode as readonly readwrite Enter...

Page 273: ...o eight characters in length The name may be com prised of alphanumeric characters as well as the dash and underscore _ The username is not case sensitive Six user names can be defined Format users na...

Page 274: ...sensitive When a password is changed a prompt will ask for the former password If none press enter Note Make sure that the passwords of the users differ from each other If two or more users try to ch...

Page 275: ...e applies The default is readwrite for admin user readonly for all other users Default admin readwrite other readonly Format users snmpv3 accessmode username readonly readwrite Mode Global Config U no...

Page 276: ...ion password and therefore must be at least eight characters in length The username is the login user name associated with the authentication pro tocol Default no authentication Format users snmpv3 au...

Page 277: ...ompted for the key When using the des protocol the user login password is also used as the snmpv3 encryption password and therefore must be at least eight characters in length If none is specified a k...

Page 278: ...278 4 10 User Account Management Commands CLI L2P Release 7 0 05 2011...

Page 279: ...the agent s IP address with other devices IP addresses in the network Format address conflict detection mode active only disable enable passive only ongoing detection disable enable Mode Global Confi...

Page 280: ...e CLI displays the end of this operation Format clear eventlog Mode Privileged EXEC 4 11 4 traceroute This command is used to discover the routes that packets actually take when traveling to their des...

Page 281: ...0 05 2011 4 11 System Utilities 281 Format traceroute ipaddr port Mode Privileged EXEC 4 11 5 clear arp table switch This command clears the agent s ARP table cache Format clear arp table switch Mode...

Page 282: ...lear config factory This command resets the whole configuration to the factory defaults Confi guration data and scripts stored in nonvolatile memory will also be deleted Format clear config factory Mo...

Page 283: ...IPER Ring configuration deletes it Format clear hiper ring Mode Privileged EXEC 4 11 10clear igmpsnooping This command clears the tables managed by the IGMP Snooping function and will attempt to delet...

Page 284: ...contains the learned MAC addresses Note this command does not affect the MAC filtering table Format clear mac addr table Mode Privileged EXEC 4 11 12clear pass This command resets all user passwords...

Page 285: ...signal contact This command clears the signal contact output configuration Switches the signal contact 1 s mode to auto and its manual setting to open Switches the signal contact 2 s mode to manual an...

Page 286: ...ase 7 0 05 2011 4 11 15clear traplog This command clears the trap log Format clear traplog Mode Privileged EXEC 4 11 16clear ring coupling This command clears the ring coupling configuration Format cl...

Page 287: ...If the function is enabled and the connection to the switch is interrupted for longer than the time specified in timeout s the switch then loads the last configuration saved Format config watchdog adm...

Page 288: ...sourcefilename nvram capturefilter targetfilename copy aca sfp white list sourcefilename nvram sfp white list copy nvram backup image system image copy nvram clibanner url copy nvram capture aca capt...

Page 289: ...name length may be max 20 characters including extension cli or CLI targetfilename Filename on the switch s NVRAM Filename length may be max 20 characters including extension cli U copy aca capturefi...

Page 290: ...sfp white list Use this command to load the SFP white list file from a TFTP server Note In order to delete the SFP white list file from the flash memory use the command clear sfp white list The clear...

Page 291: ...e of source capture filter expressions file U copy nvram errorlog url Uploads Errorlog file url Uploads Error log file using tftp ip filepath fileName U copy nvram script sourcefilename aca script tar...

Page 292: ...rap log file using tftp ip filepath fileName U copy system running config nvram startup config Copies system config file Save the running configuration to NVRAM U copy system running config url Copies...

Page 293: ...isplayed see above Note See that the the CLI banner file you created has the following properties Use ASCII format character codes 0x20 0x7F n and t as C like sequences Do not use regular expressions...

Page 294: ...lename Downloads Configuration Script file using tftp ip filepath fileName destfilename Filename length may be max 20 characters including extension cli or CLI U copy url nvram startup config Download...

Page 295: ...elease 7 0 05 2011 4 11 System Utilities 295 U clear sfp white list Use this command to delete the SFP white list file from the flash memory Note The clear config factory command deletes the SFP white...

Page 296: ...t device status monitor aca removal all connection error hiper ring module removal power supply 1 power supply 2 power supply 3 1 power supply 3 2 power supply 4 1 power supply 4 2 ring coupling tempe...

Page 297: ...en the device status changes its state enable enables sending traps disable disables sending traps 4 11 22logout This command closes the current telnet connection or resets the current se rial connect...

Page 298: ...onnected through the default VLAN VLAN 1 as long as there is a physical path between the switch and the workstation The terminal interface sends three pings to the target station Format ping ipaddr Mo...

Page 299: ...e state closed open trap disable enable Mode Global Config Contact No Selection of the signal contact 1 signal contact 1 2 signal contact 2 all signal contact 1 and signal contact 2 mode Selection of...

Page 300: ...t for the temperature limit is C Celsius the minimum value is 99 the maximum value is 99 The default for the lower limit is 0 for the upper limit it is 70 Note To give the temperature in Fahrenheit us...

Page 301: ...that the reset should proceed A successful reset is indicated by the LEDs on the switch Format reboot delay seconds Mode Privileged EXEC seconds The number of seconds after which the switch will rebo...

Page 302: ...he flash memory and then it resets If a warm start is not possible the device automatically executes a cold start Reset means that all network connections are terminated and the boot code executes The...

Page 303: ...a reload is sceduled for the device If sceduled the command displays the number of seconds after which the switch will reload Format show reload Modes Privileged EXEC User Exec seconds The number of s...

Page 304: ...304 4 11 System Utilities CLI L2P Release 7 0 05 2011...

Page 305: ...ommands show and configure the LLDP parameters in compliance with IEEE 802 1 AB 4 12 1 show lldp This command shows all LLDP settings Format show lldp Mode Privileged EXEC and User EXEC 4 12 2 show ll...

Page 306: ...ncerning the entire device Format show lldp config chassis Mode Privileged EXEC and User EXEC 4 12 4 show lldp config chassis admin state Display the LLDP IEEE802 1AB functionality on this device If d...

Page 307: ...minimum notification trap interval unit seconds Format show lldp config chassis notification interval Mode Privileged EXEC and User EXEC 4 12 6 show lldp config chassis re init delay Display the LLDP...

Page 308: ...User EXEC 4 12 8 show lldp config chassis tx hold mult Display the LLDP transmit hold multiplier a time to live value expressed as a multiple of the LLDP Message Tx Interval tx interval Format show l...

Page 309: ...ser EXEC admin state Display the port s LLDP admin state if LLDP IEEE802 1AB frames will be transmitted and or received fdb mode Display the port s LLDP FDB mode hm mode Display the port s LLDP Hirsch...

Page 310: ...n Display the port s LLDP TLV inclusion of Link Aggregation mac phy config state Display the port s LLDP TLV inclusion of MAC Phy Cfg State max frame size Display the port s LLDP TLV inclusion of Max...

Page 311: ...LDP TLV inclusion of System Name vlan name Display the port s LLDP TLV inclusion of VLAN Name 4 12 12show lldp med Use this command to display a summary of the current LLDP MED global configuration Fo...

Page 312: ...leged EXEC unit slot port Indicates a specific physical interface all Indicates all valid LLDP interfaces Interface Displays the physical interface Link Displays the link status Value range Up Down co...

Page 313: ...es a specific physical interface Interface Displays the physical interface Network Policies Displays the Network Policies 4 12 15show lldp med remote device Use this command to display the summary inf...

Page 314: ...detailed information about remote devices that transmit current LLDP MED data to an interface on the system Format show lldp med remote device detail slot port Mode Privileged EXEC Local Interface Di...

Page 315: ...utputs Port Autoneg Supported Port Autoneg Enabled Port Autoneg Advertized Capabilities and Port Operational MAU Type inlinepower Displays the remote port s Power over Ethernet capabilities PoE IEEE 8...

Page 316: ...splay the remote data s VLAN information only group command outputs Port VLAN ID Membership VLAN IDs and their respective names 4 12 18lldp Enable disable the LLDP IEEE802 1AB functionality on this de...

Page 317: ...ate Configure the LLDP IEEE802 1AB functionality on this device If disabled the LLDP protocol will become inactive but the LLDP MIBs can still be accessed D off Disable the LLDP IEEE802 1AB functional...

Page 318: ...tification interval Mode Global Config Notification interval Configure the LLDP minimum notification interval the minimum time after a notification trap has been sent until a new trap can be sent unit...

Page 319: ...ay the delay between successive LLDP frame transmissions unit seconds min 1 sec max 8192 sec default 2 sec 4 12 23lldp config chassis tx hold mult Configure the LLDP transmit hold multiplier a time to...

Page 320: ...ssis tx interval tx interval Mode Global Config Tx interval Configure the interval at which LLDP frames are transmitted on behalf of this LLDP agent unit seconds min 5 sec max 32768 sec default 30 sec...

Page 321: ...nsmitted to and or received from the standard IEEE multicast address 01 80 c2 00 00 0e The default setting is tx and rx Format lldp admin state tx only rx only tx and rx off Mode Interface Config 4 12...

Page 322: ...max neighbors Configure the port s LLDP max no of neighbors min 1 max 50 default 10 Format lldp max neighbors 1 50 Mode Interface Config 4 12 30lldp med LLDP for Media Endpoint Devices LLDP MED is an...

Page 323: ...d to enable MED By enabling MED you will be effectively enabling the transmit and receive function of LLDP Default Enabled Format lldp med Mode Interface Config U no lldp med Use this command to disab...

Page 324: ...Disabled Format lldp med confignotification Mode Interface Config U no lldp med confignotification Use this command to disable notifications Format no lldp med confignotification Mode Interface Confi...

Page 325: ...fast start repeat count Default 3 Format lldp med faststartrepeatcount count Mode Global Config count The number of LLDP PDUs that will be transmitted when the product is enabled The range is 1 to 10...

Page 326: ...ery Protocol Data Units LLDPDUs Default By default the capabilities and network policy TLVs are included Format lldp med transmit tlv capabilities network policy Mode Interface Config capabilities Inc...

Page 327: ...Protocol Data Units LLDPDUs Default By default the capabilities and network policy TLVs are included Format lldp med transmit tlv all capabilities network policy Mode Global Config capabilities Inclu...

Page 328: ...off on Mode Interface Config 4 12 38lldp tlv link aggregation Configure the port s LLDP TLV inclusion of Link Aggregation on or off default on Format lldp tlv link aggregation off on Mode Interface C...

Page 329: ...n Format lldp tlv max frame size off on Mode Interface Config 4 12 41lldp tlv mgmt addr Configure the port s LLDP TLV inclusion of Management Address on or off default on Format lldp tlv mgmt addr off...

Page 330: ...n Format lldp tlv pnio alias off on Mode Interface Config 4 12 44lldp tlv pnio mrp Configure the port s LLDP TLV inclusion of PROFINET IO MRP on or off default on Format lldp tlv pnio mrp off on Mode...

Page 331: ...off default on Format lldp tlv port vlan off on Mode Interface Config 4 12 47lldp tlv gmrp Configure the port s LLDP TLV inclusion of GMRP on or off default on Format lldp tlv gmrp off on on Mode Int...

Page 332: ...fault on Format lldp tlv portsec off on on Mode Interface Config 4 12 50lldp tlv ptp Configure the port s LLDP TLV inclusion of PTP on or off default on Format lldp tlv ptp off on on Mode Interface Co...

Page 333: ...t on Format lldp tlv sys cap off on Mode Interface Config 4 12 53lldp tlv sys desc Configure the port s LLDP TLV inclusion of System Description on or off default on Format lldp tlv sys desc off on Mo...

Page 334: ...hysical ports only Format name descriptive name Mode Interface Config descriptive name Enter a descriptive name for the current interface physical ports only Max length is 20 characters Note If it con...

Page 335: ...rver Anycast Address a b c d SNTP Server Anycast Transmit Interval Show SNTP Anycast Transmit Interval in seconds SNTP Server Anycast VLAN Show SNTP Server Anycast VLAN SNTP Server Disable if Timesour...

Page 336: ...w SNTP Client Threshold to Server Time in milliseconds SNTP Operation Global Show SNTP Operation Global Disabled or Enabled SNTP Operation Server Show SNTP Operation Server Disabled or Enabled SNTP Op...

Page 337: ...how sntp client This command shows all SNTP anycast configuration settings Format show sntp client accept broadcast disable after sync offset request interval server primary secondary threshold Mode P...

Page 338: ...server IP addresses server secondary Show the SNTP Client s redundant server IP addresses server threshold Show the SNTP Client s threshold in milliseconds 4 13 4 show sntp operation This command sho...

Page 339: ...EXEC disable if local Show if the server will be disabled if the time is running from the local clock and not synchronized to an external time source 4 13 6 show sntp status This command shows the SNT...

Page 340: ...ntp time This command shows time and date Format show sntp time sntp system Mode Privileged EXEC and User EXEC sntp Show the current SNTP date and UTC time system Show the local system s current date...

Page 341: ...t 0 0 0 0 none Format sntp anycast address IPAddress Mode Global Config U no sntp anycast address Set the SNTP server s anycast destination IP Address to 0 0 0 0 Format no sntp anycast address Mode Gl...

Page 342: ...essages default 1 Format sntp anycast vlan 1 4042 Mode Global Config 4 13 12sntp client accept broadcast Enable Disable that the SNTP Client accepts SNTP broadcasts Format sntp client accept broadcast...

Page 343: ...s synchro nised to a server Format sntp client disable after sync on off Mode Global Config off Do not disable SNTP client when it is synchronised to a time server on Disable SNTP client as soon as it...

Page 344: ...efault 30 Format sntp client request interval 1 3600 Mode Global Config 4 13 16no sntp client server Disable the SNTP client servers Format no sntp client server Mode Global Config 4 13 17sntp client...

Page 345: ...CLI L2P Release 7 0 05 2011 4 13 SNTP Simple Network Time Protocol 345 U no sntp client server primary Disable the primary SNTP client server Format no sntp client server primary Mode Global Config...

Page 346: ...t server secondary Set the SNTP Client s secondary server IP Address default 0 0 0 0 none Format sntp client server secondary IP Address Mode Global Config U no sntp client server secondary Disable th...

Page 347: ...er value in milliseconds The switch obtains the server timer as soon as the deviation to the server time is above this threshold Format sntp client threshold milliseconds Mode Global Config Millisecon...

Page 348: ...ation Enable Disable the SNTP function Format sntp operation on off client on off server on off Mode Global Config client Enable or disable SNTP Client server Enable or disable SNTP Server U no sntp o...

Page 349: ...it is not synchronized to a time server itself Format sntp server disable if local on off Mode Global Config off Enable the SNTP Server even if it is not synchronized to a time server itself on Disabl...

Page 350: ...350 4 13 SNTP Simple Network Time Protocol CLI L2P Release 7 0 05 2011...

Page 351: ...mmands show and configure the PTP IEEE 1588 parameters The operation parameter is available for all devices All other parameters are additionally available for MS20 MS30 MACH 1040 MACH 104 and PowerMI...

Page 352: ...how which PTP clock mode is currently configured PTP Global Sync Upper Bound Show the upper bound for the PTP clock synchronization status unit nanoseconds PTP Global Sync Lower Bound Show the lower b...

Page 353: ...ows the PTP IEEE 1588 port configuration settings depending on the currently configured clock mode Format show port slot port all Mode Privileged EXEC and User EXEC slot port Show the port related PTP...

Page 354: ...how the device s offset from the master unit nanoseconds PTP Status Max Offset Absolute Show the device s maximum offset absolute unit nanoseconds PTP Status Delay To Master Show the device s delay to...

Page 355: ...ode Set the clock mode to v2 Simple Mode This is a client only mode without hardware support The device only accepts PTPv2 sync or follow_up messages and sets the time directly No BMC algorithm will r...

Page 356: ...he trans parent clock mode one step as described in the IEEE1588 2008 PTPv2 standard 4 14 7 ptp operation Enable or disable the Precision Time Protocol IEEE 1588 The default is disable Format ptp oper...

Page 357: ...t 30 Note the lower bound always has to be smaller than the upper bound Format ptp sync lower bound 0 999999999 Mode Global Config 4 14 9 ptp sync upper bound Configure the upper bound for the PTP clo...

Page 358: ...ks Format ptp v1 preferred master true false Mode Global Config true The local switch shall be regarded as a preferred master clock false The local switch shall not be regarded as a preferred master c...

Page 359: ...only applied after the re initialize command or after a re boot if the configuration was saved Format ptp v1 subdomain name subdomain name Mode Global Config subdomain name Enter a PTP subdomain name...

Page 360: ...Valid values are sec 1 sec 2 sec 8 sec 16 and sec 64 Default is sec 2 Note changes are only applied after the re initialize command or after a reboot if the configuration was saved Format ptp v1 sync...

Page 361: ...ngs Configure the priority1 value 0 255 for the BMC as described in IEEE1588 2008 Format ptp v2bc priority1 0 255 Mode Global Config 4 14 15ptp v2bc priority2 Configure the PTPv2 Boundary Clock IEEE15...

Page 362: ...v2bc domain 0 255 Mode Global Config 4 14 17ptp v2bc utc offset Configure the PTPv2 Boundary Clock IEEE1588 2008 specific settings Configure the current UTC offset in seconds Format ptp v2bc utc offs...

Page 363: ...d untagged Format ptp v2bc vlan none 0 4042 Mode Interface Config 4 14 20ptp v2bc vlan priority Configure the PTPv2 Boundary Clock IEEE1588 2008 specific settings Use this command to configure the VLA...

Page 364: ...ad is high disable During a synchronization interval there is only one synchronization run 4 14 22ptp v1 operation Enable or disable the sending and receiving processing of PTP synchronization message...

Page 365: ...roni zation messages Format ptp v2bc operation disable enable Mode Interface Config enable Port sends and receives processes PTP synchronization messages disable Port blocks PTP synchronization messag...

Page 366: ...announce timeout 2 10 Mode Interface Config 4 14 26ptp v2bc sync interval Configure the Sync Interval in seconds 0 5 1 2 Format ptp v2bc sync interval 0 5 1 2 Mode Interface Config 4 14 27ptp v2bc de...

Page 367: ...ormat ptp v2bc pdelay interval 1 2 4 8 16 32 Mode Interface Config 4 14 29ptp v2bc network protocol Configure the network protocol ieee802_3 udp_ipv4 of the transparent clock Format ptp v2bc network p...

Page 368: ...nterface Config 4 14 32ptp v2tc asymmetry Specifies the asymmetrie in nanoseconds of the link connected to this port 1000000000 Format ptp v2tc asymmetry value in ns Mode Interface Config 4 14 33ptp v...

Page 369: ...management of the transparent clock disable for fast packet rates Format ptp v2tc management enable disable Mode Global Config 4 14 35ptp v2tc multi domain mode Configure the PTPv2 Transparent Clock I...

Page 370: ...2_3 udp_ipv4 of the transparent clock Format ptp v2tc network protocol ieee802_3 udp_ipv4 Mode Global Config 4 14 37ptp v2tc operation Enable or disable the sending and receiving processing of PTP syn...

Page 371: ...rface Config 4 14 39ptp v2tc primary domain Configure the PTPv2 Transparent Clock IEEE1588 2008 specific settings Configure the primary domain for syntonization of the transparent clock Format ptp v2t...

Page 372: ...configure the VLAN in which PTP packets are send With a value of none all packets are send untagged Format ptp v2tc vlan none 0 4042 Mode Global Config 4 14 42ptp v2tc vlan priority Configure the PTP...

Page 373: ...tp v2tc sync local clock Configure the PTPv2 Transparent Clock IEEE1588 2008 specific settings Use the command to enable or disable synchronisation of the local clock only valid if syntonization is en...

Page 374: ...374 4 14 PTP Precision Time Protocol CLI L2P Release 7 0 05 2011...

Page 375: ...thernet IEEE 802 3af parameters 4 15 1 show inlinepower This command shows global Inline Power settings PoE Format show inlinepower Mode Privileged EXEC and User EXEC 4 15 2 show inlinepower port This...

Page 376: ...ble trap disable enable threshold 1 99 Mode Global Config admin mode Configure the global Inline Power administrative setting enable or disable default enable trap Configure the Inline Power notificat...

Page 377: ...disable default enable priority Configure the Inline Power priority for this port In case of power scar city inline power on ports configured with the lowest priority is dropped first Possible values...

Page 378: ...378 4 15 PoE Power over Ethernet CLI L2P Release 7 0 05 2011...

Page 379: ...w inlinepower slot This command shows the PoE configuration settings and states per slot Format show inlinepower slot slot all Mode Privileged EXEC and User EXEC Slot For MACH102 devices with M1 8TP R...

Page 380: ...ed the device will send a trap if the power threshold exceeds or falls below the power limit or if the PoE power supply is switched on off on one or more ports Power Threshold Power threshold in per c...

Page 381: ...Mode Global Config Slot For MACH102 devices with M1 8TP RJ45 PoEP media modules Slot Slot number of the PoE module valid range 1 2 For MACH104 16TX PoEP devices Slot 1 4 16 4 inlinepower trap slot Co...

Page 382: ...382 4 16 PoE Power over Ethernet Plus CLI L2P Release 7 0 05 2011...

Page 383: ...configuration and therefore not keep the port in disabled state after reload reboot To enable the action if a port state occurs D enable the port monitor globally D enable the port monitor on the port...

Page 384: ...lay if Port Monitor function is enabled or disabled Condition crc fragment interval seconds Display the condition of the CRC fragment interval in seconds Condition crc fragment count Display the condi...

Page 385: ...rt Monitor is enabled or disabled Link Flap Display if Link Flap is enabled or disabled Crc Fragment Display if CRC Fragment is enabled or disabled Active Condition Display the active condition for th...

Page 386: ...ode Display if Port Monitor is enabled or disabled Link Flap Display if Link Flap is enabled or disabled Crc Fragment Display if CRC Fragment is enabled or disabled Active Condition Display the active...

Page 387: ...ls Crc_fragments in last interval Display the CRC fragments in last interval Crc_fragments total Display the CRC fragments total 4 17 5 show port monitor link flap Use this command to display the Link...

Page 388: ...his command does not reset the port disable states Default Disable Format port monitor enable disable Mode Global Config 4 17 7 port monitor Interface Config Use this command to enable or disable the...

Page 389: ...ount 1 100 interval 1 180 Mode Global Config count Configure the Link Flap counter Default 5 Value range 1 100 interval Configure the measure interval in seconds for Link Flap detection Default 10 sec...

Page 390: ...fragment counter and interval for crc fragment detection Default Disable Format port monitor condition crc fragment count 1 1000000 interval 5 180 Mode Global Config count Configure the crc fragment c...

Page 391: ...able disable Mode Interface Config 4 17 12port monitor action Use this command to configure the Port Monitor action disable a port or send a trap Note Disable the Port Monitor action will reset the po...

Page 392: ...392 4 17 Port monitor CLI L2P Release 7 0 05 2011...

Page 393: ...of the Switching commands The commands are divided into two functional groups D Show commands display spanning tree settings statistics and other information D Configuration Commands configure feature...

Page 394: ...CLI Commands Switching 394 CLI L2P Release 7 0 05 2011...

Page 395: ...dge Identifier The bridge identifier for the CST CST Classical Spanning Tree IEEE 802 1d It is made up using the bridge priority and the base MAC address of the bridge Time Since Topology Change in se...

Page 396: ...priority and the base MAC address of the bridge Regional Root Path Cost Path Cost to the CST Regional Root Associated FIDs List of forwarding database identifiers currently associated with this insta...

Page 397: ...dia Redundancy Protocol mode Enabled Disabled Rstp Mrp configuration error Configuration error in Rapid spanning tree mrp Media Redundancy Protocol No Yes 5 1 2 show spanning tree interface This comma...

Page 398: ...ng Tree Protocol Bridge Protocol Data Units received MSTP BPDUs Transmitted Multiple Spanning Tree Protocol Bridge Protocol Data Units sent MSTP BPDUs Received Multiple Spanning Tree Protocol Bridge P...

Page 399: ...y Change in Progress Value of the Topology Change parameter for the multiple spanning tree instance Designated Root Identifier of the Regional Root for this multiple spanning tree instance Root Path C...

Page 400: ...ed EXEC and User EXEC MST Instance ID Valid value 0 Port Identifier Port priority as a two digit hex number followed by the port number as a two digit hex number Port Priority Decimal number Port Forw...

Page 401: ...e CST Port Role The role of the specified interface within the CST Port Path Cost The configured path cost for the specified interface Designated Root Identifier of the designated root for this port w...

Page 402: ...erived value of the edge port status True if operating as an edge port false otherwise Point To Point MAC Status Derived value indicating if this port is part of a point to point link CST Regional Roo...

Page 403: ...the mstid then the status summary is displayed for one or all ports within the common and internal spanning tree Format show spanning tree mst port summary mstid slot port all Mode Privileged EXEC and...

Page 404: ...d parameters for the specified multiple spanning tree instance The following details are displayed Format show spanning tree mst summary Mode Privileged EXEC and User EXEC MST Instance ID Valid value...

Page 405: ...ummary Mode Privileged EXEC and User EXEC Spanning Tree Adminmode Enabled or disabled Spanning Tree Version Version of 802 1 currently supported IEEE 802 1Q 2005 IEEE 802 1D 2004 based upon the Force...

Page 406: ...ree instance The vlanid corresponds to an existing VLAN ID 1 4042 Format show spanning tree vlan vlanid Mode Privileged EXEC and User EXEC vlanid Enter a VLAN identifier 1 4042 VLAN Identifier The VLA...

Page 407: ...spanning tree operational mode to enabled Default disabled Format spanning tree Mode Global Config U no spanning tree This command sets the spanning tree operational mode to disabled While disabled th...

Page 408: ...ithin the common and internal spanning tree This will allow this port to transition to Forwarding State without delay Format spanning tree auto edgeport Mode Interface Config U no spanning tree auto e...

Page 409: ...ard This command sets the BPDU Bridge Protocol Data Units Guard on the switch to enabled Default disabled Format spanning tree bpduguard Mode Global Config U no spanning tree bpduguard This command se...

Page 410: ...that this switch is currently using The name is a string of at most 32 characters Default The base MAC address displayed using hexadecimal notation as specified in IEEE 802 standard Format spanning tr...

Page 411: ...rently using The Configu ration Identifier Revision Level is a number in the range of 0 to 65535 Default 0 Format spanning tree configuration revision 0 65535 Mode Global Config U no spanning tree con...

Page 412: ...ort within the common and internal spanning tree This will allow this port to transition to Forwarding State without delay Format spanning tree edgeport Mode Interface Config U no spanning tree edgepo...

Page 413: ...are transmitted 802 1Q 2005 functionality supported D 802 1s ST BPDUs are transmitted 802 1Q 2005 functionality supported D 802 1w RST BPDUs are transmitted 802 1Q 2005 functionality supported Defaul...

Page 414: ...ing tree The forward time value is in seconds within a range of 4 to 30 with the value being greater than or equal to Bridge Max Age 2 1 Default 15 Format spanning tree forward time 4 30 Mode Global C...

Page 415: ...ning tree guard loop This command enables loop guard and disables root guard guard on an interface Default disabled Format spanning tree guard loop Mode Interface Config U no spanning tree guard This...

Page 416: ...ning tree guard none This command disables root guard and disables loop guard guard on an interface Default disabled Format spanning tree guard none Mode Interface Config U no spanning tree guard This...

Page 417: ...panning tree guard root This command enables root guard and disables loop guard on an interface Default disabled Format spanning tree guard root Mode Interface Config U no spanning tree guard This com...

Page 418: ...hellotime value is in whole seconds within a range of 1 to 2 with the value being less than or equal to Bridge Max Age 2 1 Default 2 Format spanning tree hello time 1 2 Mode Interface Config Global Co...

Page 419: ...nd sets the bridge hold count parameter Default disabled Format spanning tree hold count 1 40 Mode Global Config 1 40 Enter the bridge parameter for hold count as an integer in the range 1 40 U no spa...

Page 420: ...anning tree The max age value is in seconds within a range of 6 to 40 with the value being less than or equal to 2 times Bridge Forward Delay 1 Default 20 Format spanning tree max age 6 40 Mode Global...

Page 421: ...new value for the common and internal spanning tree The max hops value is an integer within a range of 1 to127 Format spanning tree max hops 1 127 Mode Global Config U no spanning tree max hops This...

Page 422: ...ding on the mstid parameter The pathcost can be specified as a number in the range of 1 to 200000000 or auto If auto is specified the pathcost value will be set based on Link Speed If the port priorit...

Page 423: ...command sets the path cost for this port within a multiple spanning tree instance or the common and internal spanning tree instance depending on the mstid parameter to the default value i e a pathcos...

Page 424: ...n is a number within a range of 0 to 61440 The twelve least significant bits will be masked according to the 802 1s specification This will cause the priority to be rounded down to the next lower vali...

Page 425: ...onds to an existing VLAN ID 1 4042 This command accepts the value 0 for the mstid Format spanning tree mst vlan mstid vlanid Mode Global Config U no spanning tree mst vlan This command removes an asso...

Page 426: ...creates a MST instance Format spanning tree mst instance 1 4094 Mode Global Config 1 4094 Enter a multiple spanning tree instance identifier U no spanning tree mst instance This command removes a MST...

Page 427: ...his command sets the Administrative Switch Port State for this port to enabled Default disabled Format spanning tree port mode Mode Interface Config U no spanning tree port mode This command sets the...

Page 428: ...is command sets the Administrative Switch Port State for all ports to enabled Default disabled Format spanning tree port mode all Mode Global Config U no spanning tree port mode all This command sets...

Page 429: ...command sets the spanning tree mrp Media Redundancy Protocol mode to enabled Default disabled Format spanning tree stp mrp mode Mode Global Config U no spanning tree stp mrp mode This command sets th...

Page 430: ...5 1 31 spanning tree tcnguard This command enables tcn guard on an interface Default disabled Format spanning tree guard tcnguard Mode Interface Config U no spanning tree tcnguard This command disabl...

Page 431: ...ucture of up to 50 switches typically transforms back to a line type configuration within 150 ms maxi mum 500 ms 5 2 1 show mrp This command displays the settings and states of the MRP Ring The follow...

Page 432: ...and User EXEC advanced mode Show the switch s advanced mode setting for the given MRP domain domain id Show the given MRP domain s ID info Show status information for the given MRP domain Note the inf...

Page 433: ...0 05 2011 5 2 MRP 433 port primary Show the primary port for the given MRP domain port secondary Show the secondary port for the given MRP domain summary Show a summary for the given MRP domain vlan S...

Page 434: ...mode Enable or disable the switch s advanced mode for the given MRP domain manager priority Configure the given MRP domain s manager priority 0 65535 mode Configure the switch s MRP mode for the given...

Page 435: ...t port nota tion primary Specify the switch s primary port for the given MRP domain secondary Specify the switch s secondary port for the given MRP domain vlan Enter the VLAN for the given MRP domain...

Page 436: ...e disabled Default n a not set Format mrp new domain domain id default domain Mode Global Config domain id Enter a new MRP domain id Format 16 bytes in decimal notation example 1 2 3 4 5 6 7 8 9 10 11...

Page 437: ...can decide whether a configuration of the ring clients is possible or not Format arc manager enable disable client enable disable checkOnly check configure Mode Global Config client Configure the ARC...

Page 438: ...ettings Display the Client Settings for the current ARC configuration Admin Status Display if the ARC client is enabled or disabled MAC address of the ARC Manager Display the MAC address of the ARC Cl...

Page 439: ...is open Already Configured Loop Source Multiple RM Configuration failed Port not in full duplex mode ARC not supported by the ring devices Last Check result Display the Result of the last check Nr Di...

Page 440: ...Commands Switching 440 5 2 MRP CLI L2P Release 7 0 05 2011 Error Configuration failed MRP Warning Port not in full duplex mode Port1 1 1 Half Port2 1 2 Full Warning ARC not supported by the ring devi...

Page 441: ...structures Within such a ring topology network compo nents supporting the HIPER Ring are connected with each other via their ring ports Exactly one redundancy manager assumes control of the ring These...

Page 442: ...vileged EXEC and User EXEC info Display the information about the HIPER Ring configuration cabling mode Display the HIPER Ring mode settings port Display the HIPER Ring s primary and secondary port pr...

Page 443: ...R Ring 443 5 3 2 hiper ring Configure the HIPER Ring Press Enter for a list of valid commands and their recommended order Format hiper ring Mode Global Config U no hiper ring Clear the HIPER Ring conf...

Page 444: ...n of Ring Manager D ring switch Set the switch s HIPER Ring mode to Ring Switch D rs Abbreviation of Ring Switch Default none Format hiper ring mode ring manager ring switch rm rs Mode Global Config 5...

Page 445: ...n a not set Format hiper ring port secondary secondary ring port Mode Global Config secondary ring port Enter the switch s secondary HIPER Ring port slot port 5 3 6 hiper ring recovery delay Defines t...

Page 446: ...CLI Commands Switching 446 5 3 HIPER Ring CLI L2P Release 7 0 05 2011...

Page 447: ...rk structures Within such a ring topology network components supporting the Fast HIPER Ring are connected with each other via their ring ports Exactly one redundancy manager assumes control of the rin...

Page 448: ...setting Display the HIPER Ring mode administrative settings Mode of Switch real operating state Display the HIPER Ring operation mode Ring Name Display theFast HIPER Ring s name Number of nodes in the...

Page 449: ...ormation for the given Fast HIPER Ring ID mode Display the switch s mode for the given Fast HIPER Ring ID operation Display the switch s operative setting for the given Fast HIPER Ring ID Note in case...

Page 450: ...manager ring switch rm rs operation disable enable port primary secondary slot port ring name ring name nodes 1 n vlan 0 4042 delete id current id new id id default id Mode Global Config current id Sp...

Page 451: ...Fast HIPER Ring ID ring name Set a ring name for the given Fast HIPER Ring ID nodes Specify the number of nodes in the ring for the given Fast HIPER Ring ID vlan Specify the VLAN for the given Fast H...

Page 452: ...CLI Commands Switching 452 5 4 Fast HIPER Ring CLI L2P Release 7 0 05 2011...

Page 453: ...e switch in the redundant line and the switch in the main line inform each other about their operating states by using control frames via the ethernet or via the control line Note For redundancy secur...

Page 454: ...ls are displayed on execution of the command Format show ring coupling config info net coupling operation partner ip port all control local partner redundancy mode Mode Privileged EXEC and User EXEC c...

Page 455: ...ay the switch s Ring Coupling ports all local partner only takes effect in dual configurations control only takes effect in outband configurations redundancy mode Display the Ring Coupling s redundanc...

Page 456: ...ling of HIPER Rings network segments This command if called without arguments lists the available subcommands their recommended order and tips how to set up a new configuration Format ring coupling Mo...

Page 457: ...d coupling port is on a remote switch local switch is master communication over dedicated control port D dual slave inband Configure the Ring Coupling s basic setting to dual slave inband 2nd coupling...

Page 458: ...type configuration D ring only if you wish to couple a HIPER Ring Default none Format ring coupling net coupling network ring only Mode Global Config 5 5 5 ring coupling operation Configure the Ring C...

Page 459: ...er Enter the Ring Coupling s partner coupling port in single mode configuration Default none Format ring coupling port control local partner slot port Mode Global Config 5 5 7 ring coupling redundancy...

Page 460: ...CLI Commands Switching 460 5 5 Redundant Coupling CLI L2P Release 7 0 05 2011...

Page 461: ...tect the network from unauthorized access 5 6 1 show port sec mode Display the MAC IP Based Port Security global setting for all ports Format show port sec mode Mode Privileged EXEC and User EXEC 5 6...

Page 462: ...e taken if port security is violated at this port D none No action is taken if port security is violated at this port D port disable The port is disabled for traffic if port security is violated D tra...

Page 463: ...the allowed IP source address for this port format nnn nnn nnn nnn nnn decimal number 0 255 up to 10 Format port sec allowed ip IP Address 1 IP Address 2 IP Address 10 Mode Interface Config 5 6 6 por...

Page 464: ...5 up to 50 Format port sec allowed ip remove IP Address 1 IP Address 2 IP Address 50 Mode Interface Config 5 6 8 port sec allowed mac Enter the allowed MAC source address for this port format nn nn nn...

Page 465: ...digit m decimal digit 1 48 up to 50 Format port sec allowed mac add MAC Address 1 MAC Address 2 MAC Address 50 Mode Interface Config 5 6 10 port sec allowed mac remove Enter the allowed MAC source add...

Page 466: ...port sec Clear the MAC IP Based Port Security by setting each port s security action applied when port security is violated to None Additionally the global mode is set to MAC Based Note This does not...

Page 467: ...f the switch For every configuration command there is a show command that will display the configuration setting D Show commands are used to display switch settings statistics and other information D...

Page 468: ...ble option 82 globally Default enable dhcp relay opt82 man id Manual Remote ID Configure the DCHP Relay s Option 82 Manual Value for the Remote ID Type only effective if Remote ID is set to other Defa...

Page 469: ...will reduce the load in your network Disable this parameter if a Non Hirschmann DHCP client is con nected to this port these devices send normal broadcast DHCP requests this enables the relaying of D...

Page 470: ...CLI Commands Switching 470 5 7 DHCP Relay Commands CLI L2P Release 7 0 05 2011...

Page 471: ...ese different groups D Configuration Commands are used to configure features and options of the switch For every configuration command there is a show command that will display the configuration setti...

Page 472: ...l modify 1 mode interface 1 1 Hirschmann PowerMICE Config dhcp server pool modify 1 mode mac 00 80 63 12 34 56 Hirschmann PowerMICE Config dhcp server pool modify 1 option gateway 192 168 0 1 Hirschma...

Page 473: ...3 5 8 2 show dhcp server Display DHCP Server global and interface information Format show dhcp server Mode Privileged EXEC and User EXEC 5 8 3 show dhcp server operation Display DHCP Server global inf...

Page 474: ...HP port related settings for all ports show dhcp server port slot port Display the DCHP port related settings for the specified port only 5 8 5 show dhcp server pool Display DHCP server pool informati...

Page 475: ...5 8 6 dhcp server operation Enable or disable the DHCP server globally Default disable Format dhcp server operation disable enable Mode Interface Config dhcp server operation disable Disable the DHCP...

Page 476: ...a single IP address static or with an IP range dynamic Format dhcp server pool add id static ipaddr dynamic start ipaddr end ipaddr Mode Global Config dhcp server pool add id static ipaddr Add a pool...

Page 477: ...ace all 1 Set pool to all interfaces dhcp server pool modify id mode interface slot port 1 Set pool to a specific interface dhcp server pool modify id mode mac none 1 Use none to remove the mode dhcp...

Page 478: ...se none to remove the mode dhcp server pool modify id mode remoteid remoteid 1 Enter remoteid in xx xx xx format dhcp server pool modify id mode circuitid none 1 Use none to remove the mode dhcp serve...

Page 479: ...d option configpath url Enter the configpath URL in tftp servername or ip file format dhcp server pool modify id option gateway ipaddr Default gateway Enter the gateway IP address dhcp server pool mod...

Page 480: ...y leasetime seconds Mode Global Config 5 8 11 dhcp server pool modify id hirschmann de vice Set this pool to Hirschmann devices only or to all devices Format dhcp server pool modify id hirschmann devi...

Page 481: ...l enable Enable a specific pool Format dhcp server pool enable id Mode Global Config 5 8 13 dhcp server pool disable Disable a specific pool Format dhcp server pool disable id Mode Global Config 5 8 1...

Page 482: ...CLI Commands Switching 482 5 8 DHCP Server Commands CLI L2P Release 7 0 05 2011...

Page 483: ...ting D Show commands are used to display switch settings statistics and other information 5 9 1 show sub ring Display sub ring information for all sub rings or detailed information for a specific sub...

Page 484: ...ve setting may become Disabled protocol Display the switch s protocol setting for the given Sub Ring ID Note in case of configuration problems this value may differ from the administrative setting may...

Page 485: ...r or redundant manager Format sub ring id mode manager redundant manager single manager Mode Global Config id Specify the Sub Ring ID whose settings you want to configure manager Switch is manager for...

Page 486: ...e Sub Ring ID whose settings you want to configure enable Enable the switch for the given Sub Ring ID disable Disable the switch for the given Sub Ring ID 5 9 4 sub ring id protocol Set MRP or FHR as...

Page 487: ...to configure slot port Specify the port in slot port notation 5 9 6 sub ring id ring name Set a ring name for the given Sub Ring ID Format sub ring id ring name ring name Mode Global Config id Specify...

Page 488: ...7 0 05 2011 5 9 7 sub ring id vlan Specify the VLAN for the given Sub Ring ID Format sub ring id vlan 0 4042 Mode Global Config id Specify the Sub Ring ID whose settings you want to configure 0 4042 E...

Page 489: ...t domainID Mode Global Config id sub ring id Specify the Sub Ring ID whose settings you want to configure id Enter an MRP domainID for the given Sub Ring ID The ID has to be 16 bytes long and contain...

Page 490: ...ll ids Delete all existing Sub Ring IDs id Delete the given Sub Ring ID Format a number in the range 1 2147483647 231 1 An ID of 0 is invalid 5 9 10 sub ring new ring Create a new Sub Ring ID The conf...

Page 491: ...ing Package Use the security commands to configure security settings for login users and port users The commands are divided into these different groups D Show commands are used to display device sett...

Page 492: ...CLI Commands Security 492 CLI L2P Release 7 0 05 2011...

Page 493: ...thentication login list The maximum number of authentication login methods is three The possible method values are local radius and reject The value of local indicates that the user s locally stored I...

Page 494: ...e D The login list name is invalid or does not match an existing authentication login list D The specified authentication login list is assigned to any user or to the non configured user for any compo...

Page 495: ...authorization network radius Mode Privileged EXEC U no authorization network radius Use this command to disable the switch to accept VLAN assignment by the RADIUS server Format no authorization networ...

Page 496: ...XEC 6 1 5 dot1x defaultlogin This command assigns the authentication login list to use for non configured users for 802 1X port security This setting is over ridden by the authentication login list as...

Page 497: ...ynamically when a RADIUS assigned VLAN does not exist in the switch Default disabled Format dot1x dynamic vlan enable Mode Global Config U no dot1x dynamic vlan enable Use this command to disable the...

Page 498: ...terface The command specifies an active VLAN as an IEEE 802 1x guest VLAN The range is 1 to the maximum VLAN ID supported by the platform Format dot1x guest vlan vlan id Mode Interface Config vlan id...

Page 499: ...fied port is auto If the control mode is not auto an error will be returned Format dot1x initialize slot port Mode Privileged EXEC 6 1 9 dot1x login This command assigns the specified authentication l...

Page 500: ...ass This command enables the MAC authorized bypass on that interface Default disabled Format dot1x mac auth bypass Mode Interface Config U no dot1x mac auth bypass This command disables the MAC author...

Page 501: ...APOL EAP Request Identity frame be fore timing out the supplicant The count value must be in the range 1 10 Default 2 Format dot1x max req count Mode Interface Config U no dot1x max req This command s...

Page 502: ...n interface when MAC based 802 1X authentication is enabled on the port The count value is in the range 1 16 and the default value is 16 Default 16 Format dot1x max users count Mode Interface Config U...

Page 503: ...t to authorized Thus the port is always opened D auto The authenticator PAE sets the controlled port mode to reflect the outcome of the authentication exchanges between the supplicant au thenticator a...

Page 504: ...authorized Thus the ports are always opend D auto The authenticator PAE sets the controlled port mode to reflect the outcome of the authentication exchanges between the supplicant authenticator and t...

Page 505: ...e control mode is not auto an error will be returned Format dot1x re authenticate slot port Mode Privileged EXEC 6 1 16 dot1x re authentication This command enables re authentication of the supplicant...

Page 506: ...n the switch This command is available for the RS20 RS30 RS40 RSB20 MS20 MS30 RSR20 RSR30 MACH100 MACH 1000 PowerMICE MACH 4000 OCTOPUS devices Default disabled Format dot1x safe vlan Mode Global Conf...

Page 507: ...witch By default the authentication support is disabled While disabled the dot1x configuration is retained and can be changed but is not activated Default disabled Format dot1x system auth control Mod...

Page 508: ...The quiet period must be a value in the range 0 65535 D tx period Sets the value in seconds of the timer used by the authenticator state machine on this port to determine when to send an EAPOL EAP Re...

Page 509: ...ommand sets the value in seconds of the timer used by the authenticator state machine on this port to the default values Depending on the token used the corresponding default values are set Format no...

Page 510: ...nd placing the port in the guest vlan if configured The guest vlan timer is only relevant when guest vlan has been configured on that specific port Default guest vlan period 90 seconds Default 90 Form...

Page 511: ...pported VLAN ID The unauthenticated VLAN must be statically configured in the VLAN database to be operational By default the unauthenticated VLAN is 0 i e invalid and not operational Default 0 Format...

Page 512: ...list of users with access to the specified port or all ports The user parameter must be a configured user Format dot1x user user slot port all Mode Global Config U no dot1x user This command removes...

Page 513: ...s used to enable the RADIUS accounting function Default disabled Format radius accounting mode Mode Global Config U no radius accounting mode This command is used to set the RADIUS accounting function...

Page 514: ...ngle accounting server can be configured If an accounting server is currently configured it must be removed from the configuration using the no form of the command before this command succeeds If the...

Page 515: ...ct token is used the shared secret will be configured for the RADIUS authentication or RADIUS accounting server The IP address provided must match a previously configured server When this command is e...

Page 516: ...igured servers are only used if the primary server cannot be reached A maximum of three servers can be configured on each client Only one of these servers can be configured as the primary If a primary...

Page 517: ...is received from the RADIUS server The retries value is an integer in the range of 1 to 15 Default 4 Format radius server retransmit retries Mode Global Config U no radius server retransmit This comma...

Page 518: ...DIUS server if no response is received The timeout value is an integer in the range of 1 to 30 Default 6 Format radius server timeout seconds Mode Global Config U no radius server timeout This command...

Page 519: ...t in use by the RADIUS accounting server Secret Configured Yes or No If the optional token statistics ipaddr is included the statistics for the configured RADIUS accounting server are displayed The IP...

Page 520: ...rs and unknown types are not included as malformed accounting responses Bad Authenticators The number of RADIUS Accounting Response packets containing invalid authenticators received from this account...

Page 521: ...t show authentication Mode Privileged EXEC and User EXEC Authentication Login List This displays the authentication login listname Method 1 This displays the first method in the specified authenticati...

Page 522: ...tication login list If the login is assigned to non configured users the user default will appear in the user column Format show authentication users listname Mode Privileged EXEC and User EXEC User T...

Page 523: ...e used the global dot1x configuration summary is displayed Administrative mode Indicates whether authentication control on the switch is enabled or disabled VLAN Assignment Mode Indicates whether the...

Page 524: ...The only possible value is 1 corresponding to the first version of the dot1x specification PAE Capabilities The port access entity PAE functionality of this port Possible values are Authenticator or S...

Page 525: ...licant The value is expressed in seconds and will be in the range of 1 and 65535 Server Timeout The timer used by the authenticator on this port to timeout the authentication server The value is expre...

Page 526: ...of Maximum Users Unauthenticated VLAN ID Display the value of Unauthenticated VLAN ID Session Timeout Display the value of Session Timeout Session Termination Action Display the value of Session Term...

Page 527: ...frames that have been received by this authenticator EAP Response Frames Received The number of valid EAP response frames other than resp id frames that have been received by this authenticator EAP Re...

Page 528: ...7 0 05 2011 6 1 34 show dot1x users This command displays 802 1X port security user information for locally con figured users Format show dot1x users slot port Mode Privileged EXEC and User EXEC User...

Page 529: ...ce Display the Logical Interface Interface Display the Interface User Name Display the User Name Supp MAC Address Display the Supp MAC Address Session Time Display the Session Time Value range Vlan Id...

Page 530: ...he configured server currently in use for authentication Number of configured servers The configured IP address of the authentication server Max number of retransmits The configured value of the maxim...

Page 531: ...se other listed fields are displayed Invalid Server Addresses The number of RADIUS Access Response packets received from unknown addresses Server IP Address Round Trip Time The time interval in hundre...

Page 532: ...ngth Bad authenticators or signature attributes or unknown types are not included as malformed access responses Bad Authenticators The number of RADIUS Access Response packets containing invalid authe...

Page 533: ...thentication login list assigned to the default user Format show users authentication Mode Privileged EXEC User This field lists every user that has an authentication login list assigned System Login...

Page 534: ...ace from all CLI web and telnet sessions will be blocked until the authentication is complete Note that the login list associated with the admin user can not be changed to prevent accidental lockout f...

Page 535: ...port This command is used to set the sslt port where port can be 1 65535 and the default is port 443 Default 443 Format ip http secure port portid Mode Privileged EXEC U no ip http secure port This c...

Page 536: ...elease 7 0 05 2011 6 2 2 ip http secure protocol This command is used to set protocol levels versions The protocol level can be set to TLS1 SSL3 or to both TLS1 and SSL3 Default SSL3 and TLS1 Format i...

Page 537: ...nter face When access is disabled the user cannot login to the switch s Web server Disabling the Web interface takes effect immediately All interfaces are ef fected Default enabled Format ip http serv...

Page 538: ...d EXEC and User EXEC Secure Server Administrative Mode This field indicates whether the administrative mode of secure HTTP is enabled or disabled Secure Protocol Level The protocol level may have the...

Page 539: ...ns The VLAN example below demonstrates a simple VLAN configuration If a single port is a member of VLANs 2 3 and 4 the port expects to see traffic tagged with either VLAN 2 3 or 4 The PVID Port Virtua...

Page 540: ...lude 4 exit interface 0 6 vlan participation include 4 exit create VLAN 9 vlan database vlan 9 exit config interface 0 1 vlan participation include 9 exit interface 0 2 vlan participation include 9 ex...

Page 541: ...ncern D The network card configuration for devices on Project A must be set to tag all traffic with VLAN 2 D The network card configuration for devices on Project B must be set to tag all traffic with...

Page 542: ...Appendix VLAN Example 542 7 1 SOLUTION 1 CLI L2P Release 7 0 05 2011...

Page 543: ...for devices on Project A B and C should be set to NOT tag traffic To take care of these untagged frames configure the following D vlan pvid 2 in interface 0 1 D vlan pvid 2 in interface 0 2 D vlan pv...

Page 544: ...Appendix VLAN Example 544 7 2 SOLUTION 2 CLI L2P Release 7 0 05 2011...

Page 545: ...t spanning tree in place it is possible that both connections may be simultaneously live which could result in an endless loop of traffic on the LAN 802 1P The IEEE protocol designator for Local Area...

Page 546: ...he machine This enables the workstation to boot without requiring a hard or floppy disk drive Bridge Protocol Data Unit BPDU is the IEEE 802 1D MAC Bridge Management protocol that is the standard impl...

Page 547: ...oids simple priority tagging and depends on more complex policy or rule statements to determine how to forward a given network packet An analogy is made to travel services in which a person can choose...

Page 548: ...ing device is capable of sending data much faster than the receiving device can receive it There are many flow control mechanisms One of the most common flow control protocols for asynchronous communi...

Page 549: ...ovides a generic attribute dissemination capability that is used by participants in GARP Applications called GARP Participants to register and de register attribute values with other GARP Participants...

Page 550: ...ssages addressed to a specific multicast group All hosts conforming to Level 2 of the IP Multicasting specification require IGMP IP See Internet Protocol on page 550 IP Multicasting Sending out data t...

Page 551: ...e packet sequence in a message In the Open Systems Interconnection OSI communication model IP is in Layer 3 the Networking Layer The most widely used version of IP today is IP version 4 IPv4 However I...

Page 552: ...and are connected by less than 1 000 feet of cable A typical LAN might interconnect computers and peripherals on a single floor or in a single building LANs can be connected together but if modems and...

Page 553: ...over a TCP IP network such as the Internet These standards IP Multicast and Mbone will allow users to easily join multicast groups Note that multicasting refers to sending a message to a select group...

Page 554: ...rent packets are assigned to corresponding Labeled Switch Paths LSPs where Label Switch Routers LSRs place outgoing labels on the packets With these LSPs network operators can divert and route traffic...

Page 555: ...l packets and another port where those packets will be sent A packet bound for or heading away from the first port will be forwarded onto the second port as well The administrator places a protocol an...

Page 556: ...e 556 S SDL Synchronous Data Link Simple Network Management Protocol SNMP is the protocol governing network management and the monitoring of network devices and their functions It is not necessarily l...

Page 557: ...MM Small Outline Dual Inline Memory Module SRAM Static Random Access Memory STP Spanning Tree Protocol See 802 1D on page 545 for more information T TBI Ten Bit Interface Telnet A character based UNIX...

Page 558: ...etwork W WAN See Wide Area Network on page 558 Web Also known as World Wide Web WWW or W3 An Internet client server system to distribute information based upon the hypertext transfer protocol HTTP Wid...

Page 559: ...ion Xmodem can be implemented either in software or in hardware Many modems and almost all communications software packages support Xmodem However it is useful only at relatively slow data transmissio...

Page 560: ...Glossary 560 CLI L2P Release 7 0 05 2011...

Page 561: ...ear pass 284 clear port sec 466 clear radius statistics 496 clear ring coupling 286 clear sfp white list 295 clear signal contact 285 clear traplog 286 clear vlan 287 Competence Center 573 config comm...

Page 562: ...tal output 105 disconnect 267 dot1x defaultlogin 496 dot1x dynamic vlan enable 497 dot1x guest vlan 498 dot1x initialize 499 dot1x login 499 dot1x mac auth bypass 500 dot1x max req 501 dot1x max users...

Page 563: ...ptp 332 lldp tlv sys cap 333 lldp tlv sys desc 333 lldp tlv sys name 333 lldp tlv vlan name 334 logging buffered 158 logging buffered wrap 159 logging cli command 160 logging console 161 logging host...

Page 564: ...v2bc domain 362 ptp v2bc network protocol 367 ptp v2bc operation 365 ptp v2bc pdelay interval 367 ptp v2bc priority1 361 ptp v2bc priority2 361 ptp v2bc sync interval 366 ptp v2bc utc offset 362 ptp v...

Page 565: ...ice trust 88 show commands show inventory 214 215 217 219 220 221 223 224 493 show lags summary 227 show loginsession 268 show port 226 show stats switch detailed 58 60 66 show switchconfig 229 230 23...

Page 566: ...how sntp server 338 show sntp status 339 show sntp time 340 show spanning tree 395 show spanning tree brief 396 show spanning tree interface 397 show spanning tree mst detailed 398 show spanning tree...

Page 567: ...torm control broadcast 243 storm control broadcast port related 245 storm control egress limit 245 storm control egress limiting 244 storm control flowcontrol 247 storm control flowcontrol per port 24...

Page 568: ...priority 89 vlan pvid 261 vlan tagging 262 vlan0 transparent mode 250 VLANs adding 249 changing the name of 254 deleting 249 details 231 frame acceptance mode 251 252 257 IDs 259 261 ingress filterin...

Page 569: ...Index CLI L2P Release 7 0 05 2011 571...

Page 570: ...Index 572 CLI L2P Release 7 0 05 2011...

Page 571: ...excellent products alone do not guarantee a successful customer relationship Only comprehensive service makes a difference worldwide In the current global competition scenario the Hirschmann Competenc...

Page 572: ......

Reviews: