background image

Huawei Technologies Proprietary 

 

 

HUAWEI 

 

 

1. Getting Started 

 

2. Port 

 

3. VLAN 

 

4. Network Protocol 

 

5. Routing Protocol 

 

6. Multicast Protocol 

 

7. QoS/ACL 

 

8. STP 

 

9. Security 

 

10. Reliability 

 

11. System Management 

 

12. PoE 

 

13. Appendix 

 

Quidway S6500 Series Ethernet Switches 

Command Manual 

Release 3000 Series 

  

Summary of Contents for Quidway S6500 Series

Page 1: ...etting Started 2 Port 3 VLAN 4 Network Protocol 5 Routing Protocol 6 Multicast Protocol 7 QoS ACL 8 STP 9 Security 10 Reliability 11 System Management 12 PoE 13 Appendix Quidway S6500 Series Ethernet Switches Command Manual Release 3000 Series ...

Page 2: ...and service If you purchase the products from the sales agent of Huawei Technologies Co Ltd please contact our sales agent If you purchase the products from Huawei Technologies Co Ltd directly Please feel free to contact our local office customer care center or company headquarters Huawei Technologies Co Ltd Address Administration Building Huawei Technologies Co Ltd Bantian Longgang District Shenz...

Page 3: ...bridge Tellwin Inmedia VRP DOPRA iTELLIN HUAWEI OptiX C C08iNET NETENGINE OptiX iSite U SYS iMUSE OpenEye Lansway SmartAX infoX and TopEng are trademarks of Huawei Technologies Co Ltd All other trademarks and trade names mentioned in this manual are the property of their respective holders Notice The information in this manual is subject to change without notice Every effort has been made in the p...

Page 4: ...installation Quidway S6500 Series Ethernet Switches Operation Manual It is used for assisting the users in data configurations and typical applications Organization Quidway S6500 Series Ethernet Switches Command Manual consists of the following parts z Getting Started Introduces the commands used for accessing the Ethernet Switch z Port Introduces the commands used for configuring Ethernet port an...

Page 5: ...z System Management Introduces the commands used for system management and maintenance z PoE Introduces the commands used for PoE configuration z Appendix Includes all the commands in this command manual which are arranged alphabetically Intended Audience The manual is intended for the following readers z Network engineers z Network administrators z Customers who are familiar with network fundamen...

Page 6: ...items are grouped in square brackets and separated by vertical bars Many or none can be selected A line starting with the sign is comments III GUI conventions Convention Description Button names are inside angle brackets For example click the OK button Window names menu items data table and field names are inside square brackets For example pop up the New User window Multi level menus are separate...

Page 7: ... the primary mouse button twice continuously and quickly without moving the pointer Drag Press and hold the primary mouse button and move the pointer to a certain position VI Symbols Eye catching symbols are also used in the manual to highlight the points worthy of special attention during the operation They are defined as follows Caution Warning Means reader be extremely careful during the operat...

Page 8: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual Getting Started ...

Page 9: ...rol 1 7 1 1 9 free user interface 1 7 1 1 10 header 1 8 1 1 11 history command max size 1 10 1 1 12 idle timeout 1 10 1 1 13 language mode 1 11 1 1 14 lock 1 12 1 1 15 modem 1 12 1 1 16 modem auto answer 1 13 1 1 17 modem timer answer 1 13 1 1 18 parity 1 14 1 1 19 protocol inbound 1 15 1 1 20 quit 1 15 1 1 21 return 1 16 1 1 22 screen length 1 16 1 1 23 send 1 17 1 1 24 service type 1 17 1 1 25 s...

Page 10: ...r Using authentication mode none command you can configure no authentication This command with the password parameter indicates to perform local password authentication that is you need to configure a login password using the set authentication password cipher simple password command This command with the scheme parameter indicates to perform authentication of local or remote username and password...

Page 11: ...mand automatically This command is usually used to configure the telnet command on the terminal which will connect the user to a designated device automatically By default auto run is disabled Caution z If you execute this command the user interface can no longer be used to perform routine configurations on the local system Therefore use caution when using this command z Ensure that you will be ab...

Page 12: ... command privilege view command you can restore the default command priority The command levels include visit monitoring system and management which are identified as 0 through 3 respectively The network administrator can customize the command levels as needed Example Configure the precedence of the command interface in system view as 0 Quidway command privilege level 0 view system interface 1 1 4...

Page 13: ...ry command View Any view Parameter None Description Using display history command command you can view the saved history commands For the related command see history command max size Example Display history commands Quidway display history command sys quit display his 1 1 6 display user interface Syntax display user interface type number number summary View Any view Parameter type Specifies the ty...

Page 14: ...is active F Current user interface is active and work in async mode Idx Absolute index of user interface Type Type and relative index of user interface Privi The privilege of user interface Auth The authentication mode of user interface Int The physical location of UIs A Authentication use AAA N Current UI need not authentication P Authentication use current UI s password Table 1 1 Output descript...

Page 15: ...se totally UI s name User interface name 1 1 7 display users Syntax display users all View Any view Parameter all Display the information of all user interfaces Description Using display users command you can view the information of the user interface Example Display the information of the current user interface Quidway display users UI Delay Type Ipaddress Username F 0 AUX 0 00 00 00 Table 1 3 Ou...

Page 16: ...ontrol hardware none software undo flow control View User interface view Parameter hardware Configures to perform hardware flow control none Configures no flow control software Configures to perform software flow control Description Using flow control command you can configure the flow control mode on AUX Console port Using undo flow control command you can restore the default flow control mode Th...

Page 17: ...ace 0 Quidway free user interface 1 After the command is executed user interface 1 will be disconnected It will not be connected to the switch until you log in via the user interface 1 for the next time 1 1 10 header Syntax header shell incoming login text undo header shell incoming login View System view Parameter login Login information in case of authentication It is displayed before the user i...

Page 18: ... identifying header type You can judge whether the initial character can be used as the header contents this way 1 If there is only one character in the first line and it is used as the identifier this initial character pairs with the ending character and is not the header contents 2 If there are many characters in the first line but the initial and ending characters are different this initial cha...

Page 19: ...e header contents Hello Welcome Quidway 1 1 11 history command max size Syntax history command max size value undo history command max size View User interface view Parameter value Defines the size of the history buffer ranging from 0 to 256 By default the size is 10 that is 10 history commands can be saved Description Using history command max size command you can configure the size of the histor...

Page 20: ...mand you can restore the default idle timeout idle timeout 0 means disabling idle timeout By default idle timeout is set to 10 minutes Example Configure the timeout value to 1 minute on the AUX user interface Quidway ui aux0 idle timeout 1 0 1 1 13 language mode Syntax language mode chinese english View User view Parameter chinese Configures the language environment of command line interface as Ch...

Page 21: ...ating it Example Lock the current user interface Quidway lock Password xxxx Again xxxx 1 1 15 modem Syntax modem call in both undo modem call in both View User interface view Parameter call in Configures to allow call in both Configures to allow call in and call out Description Using modem command you can configure the call in and call out attributes of the Modem Using undo modem command you can c...

Page 22: ...auto answer Syntax modem auto answer undo modem auto answer View User interface view Parameter none Description Using modem auto answer command you can configure the answer mode as auto answer Using undo modem auto answer command you can configure the answer mode as manual answer By default the mode is set to manual answer This command can only be performed in AUX user interface view Example Confi...

Page 23: ...n AUX user interface view Example Set the timer answer of AUX 0 to 45s Quidway ui aux0 modem timer answer 45 1 1 18 parity Syntax parity even mark none odd space undo parity View User interface view Parameter even Configures to perform even parity mark Configures to perform mark parity none Configures not to perform parity odd Configures to perform odd parity space Configures to perform space pari...

Page 24: ...und command you can configure the protocols supported by a designated user interface By default the user interface supports Telnet and SSH protocols For the related commands see user interface vty Example Configure SSH protocol supported by VTY0 user interface Quidway ui vty0 protocol inbound ssh 1 1 20 quit Syntax quit View Any view Parameter none Description Using quit command you can return to ...

Page 25: ...om system view Quidway quit Quidway 1 1 21 return Syntax return View System view or above Parameter none Description Using return command you can return to user view from a view other than user view Combination key Ctrl Z performs the same function with the return command For the related command see quit Example Return to user view from system view Quidway return Quidway 1 1 22 screen length Synta...

Page 26: ...on the terminal screen The screen length 0 command is used to disable this function Example Configure the lines that can be displayed on a screen as 20 lines Quidway ui aux0 screen length 20 1 1 23 send Syntax send all number type number View User view Parameter all Configures to send message to all user interfaces type Specifies the user interface type which can be aux or vty number Specifies the...

Page 27: ...ype command to cancel the setting Commands are classified into four levels namely visit level monitoring level system level and management level They are introduced as follows z Visit level Commands of this level involve command of network diagnosis tool such as ping and tracert command of switch between different language environments of user interface language mode and telnet command etc The ope...

Page 28: ...vel settings on the user interface By default ping tracert and telnet are at visit level 0 display and debugging are at monitoring level 1 all the configuration commands are at system level 2 and FTP TFTP and commands for file system operations are at management level 3 Example Configure the user zbr to use commands at level 0 after logon Quidway local user zbr Quidway luser zbr service type telne...

Page 29: ...assword must be 24 digits and in encrypted text for example _ TT8F Y 5SQ Q MAF4 1 Description Using set authentication password command you can configure the password for local authentication Using undo set authentication password command you can cancel local authentication password The password in plain text is required when performing authentication regardless whether the configuration is plain ...

Page 30: ... confirm before executing this command on any legal user interface Example Disable terminal service on the vty user interface 0 to 4 after logging in to the Ethernet switch via user interface 0 Quidway user interface vty 0 4 Quidway ui vty0 4 undo shell The following message will be displayed on the Telnet terminal after logon Disable ui vty0 4 are you sure Y N 1 1 27 speed Syntax speed speed valu...

Page 31: ... interface view Parameter 1 Sets 1 stop bit 1 5 Sets 1 5 stop bits 2 Sets 2 stop bits Description Using stopbits command you can configure the stop bits on the AUX Console port Using undo stopbits command you can restore the default stop bits This command can only be performed in AUX user interface view By default the value is 1 Example Configure 2 stop bits on the AUX Console port Quidway ui aux0...

Page 32: ...imple cipher password undo super password level level View System view Parameter level User level ranging from 1 to 3 The default value is 3 i e do not specify user level It means the password to be set is used for entering level 3 simple Configure to display password in plain text cipher Configure to display password in encrypted text password If the authentication is in the simple mode the passw...

Page 33: ... encrypted text Example Configure the password to zbr for changing the user from the current level to level 3 Quidway super password level 3 simple zbr 1 1 31 sysname Syntax sysname text undo sysname View System view Parameter text Specifies the hostname with a character string ranging from 1 to 30 characters The default name is Quidway Description Using sysname command you can configure the hostn...

Page 34: ...name Specifies the host name of the remote switch It is configured using the ip host command ip address Specifies the IP address of the remote switch service port Designates the TCP port on the remote switch providing Telnet service ranging from 0 to 65535 Description Using telnet command you can log in to another switch from the current one via telnet for remote management To terminate the Telnet...

Page 35: ...type Specifies the user interface type which can be aux or vty first number Specifies the number of the first user interface to be configured last number Specifies the number of the last user interface to be configured Description Using user interface command you can enter single user interface view or multiple user interface views to configure the corresponding user interfaces Example Enter user ...

Page 36: ... For the users using AAA RADIUS HWTACACS authentication the commands they can use are determined by the user level settings For example if a use is set to level 3 and the command level on the VTY 0 user interface is level 1 he or she can only use the commands of level 3 or lower when logging into the switch from the VTY 0 user interface z For the users using RSA public key authentication the comma...

Page 37: ...Command Manual Getting Started Quidway S6500 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Huawei Technologies Proprietary 1 28 undo Undo a command or set to its default status ...

Page 38: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual Port ...

Page 39: ...opback detection per vlan enable 1 12 1 1 14 jumboframe enable 1 13 1 1 15 mdi 1 13 1 1 16 multicast suppression 1 14 1 1 17 port access vlan 1 15 1 1 18 port hybrid pvid vlan 1 16 1 1 19 port hybrid vlan 1 16 1 1 20 port link type 1 17 1 1 21 port trunk permit vlan 1 18 1 1 22 port trunk pvid vlan 1 19 1 1 23 reset counters interface 1 19 1 1 24 shutdown 1 20 1 1 25 speed 1 21 1 1 26 vlan vpn ena...

Page 40: ...y ii 2 1 8 display lacp system id 2 6 2 1 9 lacp enable 2 7 2 1 10 lacp port priority 2 7 2 1 11 lacp system priority 2 8 2 1 12 link aggregation 2 9 2 1 13 link aggregation group description 2 9 2 1 14 link aggregation group mode 2 10 2 1 15 port link aggregation group 2 10 2 1 16 reset lacp statistics 2 11 ...

Page 41: ...es from 1 to 100 for 100Mbit s port from 1 to 1000 for 1000Mbit s port in Mbit s pps pps Specifies the maximum packets per second of the broadcast traffic z For 100M Ethernet port ranging from 1 to 148 810 pps z For 1000M Ethernet port ranging from 1 to 262 143pps Description Using broadcast suppression command you can configure the broadcast traffic size enabled on current port Using undo broadca...

Page 42: ...e format of interface_name interface_type interface_num For more information see the parameter item for the interface command agg id1 Source aggregation group ID ranging from 1 to 384 The port with minimum port number is the source port interface_list Destination port list interface_list1 interface_type interface_num interface_name to interface_type interface_num interface_name 1 10 1 10 indicates...

Page 43: ...and you can cancel the port description character string By default the port description character string is null Example Configure the description character string of Ethernet port Ethernet1 0 1 as lanswitch interface Quidway Ethernet1 0 1 description lanswitch interface 1 1 4 display interface Syntax display interface interface_type interface_type interface_num interface_name View Any view Param...

Page 44: ...MT_ETHNT_2 Hardware address is 00e0 fc00 0010 The Maximum Transmit Unit is 1500 Media type is twisted pair loopback not set Port hardware type is 100_BASE_TX 100Mbps speed mode full duplex mode Link speed type is autonegotiation link duplex type is autonegotiation Flow control is not enabled The Maximum Frame Length is 1536 Broadcast MAX ratio 100 Allow jumbo frame to pass PVID 1 Mdi type auto Por...

Page 45: ...de full duplex mode Link speed type is autonegotiation link duplex type is autonegotiation Both the duplex mode and the rate are set to auto negotiation The rate of 100Mbps and the mode of full duplex are adopted after negotiating with its peer Flow control is not enabled Port flow control state The Maximum Frame Length Maximum length of the Ethernet frames that can pass through the port Broadcast...

Page 46: ...dcasts 0 multicasts 0 pauses Output 0 output errors underruns buffer failures aborts 0 deferred 0 collisions 0 late collisions lost carrier no carrier The statistics information of input output packets and errors on this port indicates that the item doesn t supported by the switch 1 1 5 display port Syntax display port hybrid trunk View Any view Parameter hybrid Display Hybrid port Trunk Display T...

Page 47: ...splay port vlan vpn Syntax display port vlan vpn View Any view Parameter none Description Using display port vlan vpn command you can view the ports on which VLAN VPN has been enabled and the VLAN ID of the VLAN VPN Example Display the related information of the port VLAN VPN feature Quidway display port vlan vpn Ethernet1 0 1 VLAN VPN status enabled VLAN VPN VLAN 1 Ethernet1 0 2 VLAN VPN status e...

Page 48: ...uplex attribute Description Using duplex command you can configure the full duplex half duplex attribute of the Ethernet port Using undo duplex command you can restore the duplex attribute of the port to default auto negotiation mode By default the duplex attribute is auto For the related command see speed Example Configure the Ethernet port Ethernet1 0 1 as auto negotiation attribute Quidway Ethe...

Page 49: ...s slot number specifies the LPU slot number of the port For S6506 it ranges from 1 to 6 For S6506R it ranges from 2 to 7 subslot number specifies the sub slot number of the port For the slot without subslot the subslot number is fixed as 0 For the slot with subslot the subslot number ranges from 1 to 4 according to how many ports a subslot provides port number specifies the port number on the LPU ...

Page 50: ...ts control over the operating status of the port when the loopback detection function is enabled and lookback is found on a Trunk or Hybrid port When this function is enabled and loopback is detected on a Trunk or Hybrid port the system begins to control the operating status of the port When this function is disabled and loopback is found the system just reports a Trap message but has no control o...

Page 51: ...on enable command you can disable the port loopback detection The loopback detection of the specified port functions only after port loopback detection is enabled in system view and Ethernet port view By default port loopback detection is disabled For the related command see display loopback detection Example Enable the port loopback detection Quidway system view System View return to User View wi...

Page 52: ...on Example Configure the detection interval for the external loopback condition of each port to 10 seconds Quidway system view System View return to User View with Ctrl Z Quidway loopback detection interval time 10 Quidway 1 1 13 loopback detection per vlan enable Syntax loopback detection per vlan enable undo loopback detection per vlan enable View Ethernet port view Parameter none Description Us...

Page 53: ...enable jumboframe value undo jumboframe enable View Ethernet port view Parameter jumboframe value Size of jumbo frame permitted to pass through in the range of 1536 bytes to 9216 bytes Description Using jumboframe enable command you can permit jumbo frame to pass through the current Ethernet port Using undo jumboframe enable command you can forbid jumbo frame to pass through By default the jumbo f...

Page 54: ... 10 100 1000Base T ports S6500 series Switches only support auto auto sensing If you set some other type you will see the prompt Operation not supported Example Configure the network cable type of Ethernet port Ethernet1 0 1 as auto Quidway Ethernet1 0 1 mdi auto 1 1 16 multicast suppression Syntax multicast suppression ratio bandwidth mbps value kbps kbps value pps max pps undo multicast suppress...

Page 55: ...lticast is maintained in a proper range Using undo multicast suppression command you can restore the default multicast traffic enabled on port as 100 i e 100 multicast traffic is allowed to pass through Note that Currently type A LPUs of S6500 series switch LS81FT48A LS81FM24A LS81FS24A LS81GB8UA LS81GT8UA do not support the configuration of multicast traffic suppression Example Enable 20 multicas...

Page 56: ...d undo port hybrid pvid View Ethernet port view Parameter vlan_id VLAN ID defined in IEEE802 1Q ranging from1 to 4094 and the default vlan_id is 1 Description Using port hybrid pvid vlan command you can configure the default VLAN ID of the hybrid port Using undo port hybrid pvid command you can restore the default VLAN ID of the hybrid port The default VLAN ID of local hybrid port shall be consist...

Page 57: ...VLAN Using undo port hybrid vlan command you can cancel the hybrid port from the specified VLAN Hybrid port can belong to multiple VLANs If the port hybrid vlan vlan_id_list tagged untagged command is used for many times the VLANs carried by the hybrid port is the set of vlan_id_list This command can be used on condition that the VLAN specified with vlan_id must have been existed For the related c...

Page 58: ...runk port Quidway Ethernet1 0 1 port link type trunk 1 1 21 port trunk permit vlan Syntax port trunk permit vlan vlan_id_list all undo port trunk permit vlan vlan_id_list all View Ethernet port view Parameter vlan_id_list vlan_id_list vlan_id1 to vlan_id2 1 10 is the VLAN range joined by the trunk port It can be discrete The vlan_id ranges from 1 to 4094 1 10 indicates that the former parameter ca...

Page 59: ...efault vlan_id is 1 Description Using port trunk pvid vlan command you can configure the default VLAN ID of trunk port Using undo port trunk pvid command you can restore the default VLAN ID of the port The default VLAN ID of local trunk port should be consistent with that of the peer one otherwise the packet cannot be properly transmitted For the related command see port link type Example Configur...

Page 60: ...mation information of all ports on the switch will be cleared If only the port type is specified all the information on the ports of this type will be cleared If both port type and port number are specified the information on the designated port will be cleared Note that after 802 1X is enabled the port information cannot be reset Example Reset statistical information on Ethernet port Ethernet1 0 ...

Page 61: ... The speed on the port is 1000Mbps 10000 The speed on the port is 10000Mbps auto The port speed is in peer auto negotiation status Description Using speed command you can configure the port speed Using undo speed command you can restore the default speed By default the speed is auto For the related command see duplex Example Configure Ethernet port Ethernet1 0 1 port speed as 10Mbps Quidway Ethern...

Page 62: ...ion Using vlan vpn enable command you can enable port VLAN VPN Using undo vlan vpn command you can disable port VLAN VPN Note that if anyone of GVRP GMRP STP NTDP and 802 1x has been enabled on a port VLAN VPN cannot be enabled on it By default the port VLAN VPN is disabled Example Enable VLAN VPN on Ethernet1 0 1 Quidway Ethernet1 0 1 vlan vpn enable ...

Page 63: ...or undo debugging link aggregation error View User view Parameter None Description Using debugging link aggregation error command you can enable link aggregation errors debugging Using undo debugging link aggregation error command you can disable link aggregation errors debugging Example Enable link aggregation errors debugging Quidway debugging link aggregation error 2 1 2 debugging link aggregat...

Page 64: ...er interface name to interface type interface num interface name View User view Parameter interface interface_type interface_ num interface_name to interface_type interface_ num interface_name Specifies ports You can specify multiple sequential ports with the to parameter instead of specifying only one port interface_name specifies port name in the format of interface_name interface_type interface...

Page 65: ...the to parameter instead of specifying only one port interface_name specifies port name in the format of interface_name interface_type interface_num interface_type specifies port type and interface_num port number For more information see the parameter item for the interface command actor churn Debugging actor churn state machine mux Debugging MUX state machine partner churn Debugging partner chur...

Page 66: ...tion Group Type D Dynamic S Static M Manual Loadsharing Type Shar Loadsharing NonS Non Loadsharing Actor ID 0x8000 00e0 fcff ff04 AL AL Partner ID Select Standby Share Master ID Type Ports Ports Type Port 1 D 0x8000 00e0 fcff ff01 1 0 NonS Ethernet4 0 1 10 M none 1 0 NonS Ethernet4 0 2 20 S 0x8000 00e0 fcff ff01 1 0 NonS Ethernet4 0 3 2 1 6 display link aggregation verbose Syntax display link aggr...

Page 67: ...gationType Static Loadsharing Type NonS Aggregation Descripiton myagg1 System ID 0x8000 00e0 fcff ff04 Port Status S Selected T sTandby Local Port Status Priority Flag Oper Key Ethernet4 0 3 S 32768 0x3d 3 Remote Actor Partner Priority Flag Oper Key SystemID Ethernet4 0 3 2 32768 0x3d 3 0x8000 00e0 fcff ff01 2 1 7 display link aggregation interface Syntax display link aggregation interface interfa...

Page 68: ...dicate the actual state of the peer system Example Display detailed link aggregation information of manual link aggregation group Quidway display link aggregation interface ethernet1 0 1 Ethernet1 0 1 Attached AggID 1 Local Port Priority 32768 Oper key 1 Flag 0x00 Remote System ID 0x0 0000 0000 0000 Port Number 0 Port Priority 0 Oper key 0 Flag 0x00 Display detailed link aggregation information of...

Page 69: ...ated command see link aggregation Example Display local system ID Quidway display lacp system id Actor System ID 0x8000 00e0 fc00 0100 2 1 9 lacp enable Syntax lacp enable undo lacp enable View Ethernet port view Parameter None Description Using lacp enable command you can enable LACP Using lacp enable command you can disable LACP Example Enable LACP at Ethernet1 0 1 Quidway Ethernet1 0 1 lacp ena...

Page 70: ...e display link aggregation verbose and display link aggregation interface Example Set port priority as 64 Quidway Ethernet1 0 1 lacp port priority 64 2 1 11 lacp system priority Syntax lacp system priority system priority value undo lacp system priority View System view Parameter system priority value System priority ranging from 0 to 65535 By default it is 32768 Description Using lacp system prio...

Page 71: ...e link aggregation command to set a group of ports to be link group with an auto assigned group number You can use the ink aggregation group mode and port link aggregation group commands to accomplish this task By default load sharing is carried out z Based on IP addresses for IP packets z Based on MAC addresses for non IP packets Example Add the ports Ethernet1 0 1 through Ethernet1 0 4 to the li...

Page 72: ...egation group 22 Quidway link aggregation group 22 description myal1 2 1 14 link aggregation group mode Syntax link aggregation group agg id mode manual static undo link aggregation group agg id View System view Parameter agg id Aggregation group ID in the range of 1 to 384 manual Manual aggregation group static Static aggregation group Description Using link aggregation group agg id mode command ...

Page 73: ...22 2 1 16 reset lacp statistics Syntax reset lacp statistics interface interface type interface number interface name to interface type interface num interface name View User view Parameter interface interface_type interface_ num interface_name to interface_type interface_ num interface_name Specifies ports You can specify multiple sequential ports with the to parameter instead of specifying only ...

Page 74: ...l Port Quidway S6500 Series Ethernet Switches Chapter 2 Link Aggregation Configuration Commands Huawei Technologies Proprietary 2 12 Example Clear LACP statistics at all Ethernet ports Quidway reset lacp statistics ...

Page 75: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual VLAN ...

Page 76: ...Commands 1 8 1 3 1 display protocol vlan interface 1 8 1 3 2 display protocol vlan vlan 1 9 1 3 3 port hybrid protocol vlan vlan 1 9 1 3 4 protocol vlan vlan slot 1 10 1 3 5 protocol vlan 1 12 Chapter 2 GARP GVRP Configuration Commands 2 1 2 1 GARP Configuration Commands 2 1 2 1 1 display garp statistics 2 1 2 1 2 display garp timer 2 2 2 1 3 garp timer 2 2 2 1 4 garp timer leaveall 2 4 2 1 5 rese...

Page 77: ...aximum packets per second of the broadcast traffic on VLAN ranging from 1 to 148 800 pps Description Using broadcast suppression command you can configure the broadcast traffic size enabled on current VLAN Using undo broadcast suppression command you can restore the default broadcast traffic enabled on current VLAN By default all broadcast traffic is allowed to pass through that is no broadcast su...

Page 78: ... description Syntax description string text undo description View VLAN view VLAN interface view Parameter string Description character string of current VLAN It ranges from 1 to 32 characters The default description character string of current VLAN is VLAN ID of the VLAN e g VLAN 0001 text Description character text of current VLAN interface It ranges from 1 to 80 characters The default descriptio...

Page 79: ...ub net mask description character string and MTU etc With vlan id specified only the information about the specified VLAN interface will be displayed If no vlan id is specified the information about all the existing VLAN interfaces will be displayed For the related command see interface vlan interface Example Display related information about VLAN interface 1 Quidway display interface vlan interfa...

Page 80: ...een enable on this VLAN i e whether the route interface exists If it exists display primary IP address and mask VLAN description the broadcast suppression ratio and the ports VLAN contains If parameter is not specified information of the VLAN that has been created is displayed If the parameter dynamic or static is selected information of VLAN created dynamically or statically by the system is disp...

Page 81: ... display interface vlan interface Example Enter VLAN interface 1 view of VLAN interface Quidway interface vlan interface 1 1 1 6 name Syntax name string undo name View VLAN view Parameter string The name of the current VLAN which consists of 1 to 32 characters By default it is the VLAN ID of the current VLAN e g VLAN 0001 Description Using name command you can name the current VLAN Using undo name...

Page 82: ...parameters and protocols of VLAN interface are set well Or when the VLAN interface fails the interface can be shut down first and then restarted in this way the interface may be restored to normal status Shutting down or starting VLAN interface will not take any effect on any Ethernet port of this VLAN Example Restart interface after shutting down the interface Quidway Vlan interface1 shutdown Qui...

Page 83: ...e_numis interface number and interface_name is interface name For their meanings and value range read Parameter of Port in this document The interface number after keyword to must be larger than or equal to the port number before to 1 10 Representing the repeatable times of parameters 1 is the minimal and 10 is the maximal Description Using port command you can add one port or one group of ports t...

Page 84: ...pe specifies port type and interface_num port number all Displays the protocol information of all ports Description Using the display protocol vlan interface command you can view the protocol information and protocol index configured on the specific port to which you can refer when you use the protocol based VLAN and add delete a protocol For the related commands see display interface Example Disp...

Page 85: ...ich you can refer when you use the protocol based VLAN and add delete a protocol For the related commands see display vlan Example Display the protocol information and protocol index configured on the VLANs from VLAN10 to VLAN20 Quidway display protocol vlan vlan 10 to 20 VLAN ID 10 VLAN Type Protocol based VLAN Protocol Index Protocol Type 1 IP 101 120 34 0 24 2 IP 104 232 43 0 24 3 IPX ETH II 4 ...

Page 86: ...ased VLAN Note that only the Hybrid port supports this feature at present The port must belong to the VLAN before you associate it with the protocol based VLAN Otherwise it cannot be associated with the VLAN For the related commands see display protocol vlan interface Example Associate Ethernet1 0 1 with protocols 0 to 6 in VLAN 3 Quidway Ethernet1 0 1 port hybrid protocol vlan vlan 3 0 to 6 1 3 4...

Page 87: ...d and the command see Table 1 2 Table 1 2 The relationship between the card and the command Command description A type card Card except A type one Create the association between a card and a specific protocol based VLAN in system view not support support only to all IP protocol and subnet IP protocol Create the association between an port and a protocol based VLAN in Ethernet port view support sup...

Page 88: ... EthernetII protocol based VLAN etype_id is the Ethernet type of the incoming packet ranging from 600 to FFFF llc dsap dsap_id ssap ssap_id ssap ssap_id Logical link control protocol based VLAN dsap_id is the destination service access point ranging from 0 to FF ssap_id is source service access point ranging from 0 to FF snap etype etype_id SNAP Sub Network Access Protocol based protocol etype_id ...

Page 89: ...the protocol vlan command you can configure a certain protocol type for the specified VLAN Using the undo protocol vlan command you can cancel this configuration Note that the format of mode llc dsap ff ssap ff is the same as that of ipx raw and the system first matches ipx raw so the configuration of vlan type protocol mode llc dsap ff ssap ff does not function For the related commands see displa...

Page 90: ... and value range read command parameters description of Port in this document 1 10 Representing the repeatable times of parameters 1 is the minimal and 10 is the maximal Description Using display garp statistics command you can view the GARP statistics information including the number of received sent packet and the number of discarded packet by GVRP GMRP etc Example Display the GARP statistics in...

Page 91: ...value range read command parameters description of Port in this document 1 10 Representing the repeatable times of parameters 1 is the minimal and 10 is the maximal Description Using display garp timer command you can view the value of GARP timer including Hold timer Join timer Leave timer and LeaveAll timer For the related command see garp timer garp timer leaveall Example Show GARP timer on Ethe...

Page 92: ...Join timer should be no less than the doubled value of Hold timer z the value of Leave timer should be greater than the doubled value of Join timer and smaller than the Leaveall timer value z the minimal value of Join timer is 10 centiseconds z By default Hold timer is 10 centiseconds Join timer is 20 centiseconds Leave timer is 60 centiseconds Description Using garp timer command you can configur...

Page 93: ...After every GARP application entity is started the LeaveAll timer will be started simultaneously The GARP application entity will send LeaveAll message after the timer times out to make other application entities re register all attribute information on themselves Then the LeaveAll timer is started and the new cycle begins For the related command see display garp timer Example Set GARP LeaveAll ti...

Page 94: ...onfiguration Command 2 2 1 display gvrp statistics Syntax display gvrp statistics interface interface list View Any view Parameter interface list List of Ethernet port to be displayed expressed as interface list interface_type interface_num interface_name to interface_type interface_num interface_name 1 10 interface_type is interface type interface_num is interface number and interface_name is int...

Page 95: ...P Failed Registrations 0 GVRP Last Pdu Origin 0000 0000 0000 GVRP Registration Type Normal 2 2 2 display gvrp status Syntax display gvrp status View Any view Parameter none Description Using display gvrp status command you can view the global status information about GVRP Example Display the global status information about GVRP Quidway display gvrp status GVRP is enabled 2 2 3 gvrp Syntax gvrp und...

Page 96: ...tatus Example Enable global GVRP Quidway gvrp 2 2 4 gvrp registration Syntax gvrp registration fixed forbidden normal undo gvrp registration View Ethernet port view Parameter fixed Enable to create or register VLAN on the port manually and disable to register or deregister VLAN dynamically forbidden Deregisters all VLANs except VLAN 1 and disables to create or register any other VLAN on the port n...

Page 97: ...dway S6500 Series Ethernet Switches Chapter 2 GARP GVRP Configuration Commands Huawei Technologies Proprietary 2 8 Example Set the GVRP registration type of Ethernet1 0 1 as fixed Quidway Ethernet1 0 1 gvrp registration fixed ...

Page 98: ... supervlan id View Any view Parameter supervlan id ID of Super VLAN range from 1 to 4094 Description Using display supervlan command you can view the mapping relationship between Super VLAN and Sub VLAN and the ports identified mapping relationship super VLAN and sub VLAN For the related commands see supervlan subvlan Example view the mapping relationship between Super VLAN and Sub VLAN Quidway di...

Page 99: ...N Type static It is a Sub VLAN Route Interface not configured Description VLAN 0003 Name VLAN 0003 Broadcast MAX ratio 100 Tagged Ports none Untagged Ports Ethernet0 3 VLAN ID 4 VLAN Type static It is a Sub VLAN Route Interface not configured Description VLAN 0004 Name VLAN 0004 Broadcast MAX ratio 100 Tagged Ports none Untagged Ports Ethernet0 4 VLAN ID 5 VLAN Type static It is a Sub VLAN Route I...

Page 100: ...l the mapping relationship between sub VLAN and super VLAN Note that z The sub VLAN must exist before you creat mapping between the sub VLAN and the super VLAN z After creating mapping between the sub VLAN and the super VLAN you can still add or delete Ethernet ports to from the sub VLAN z When using the undo subvlan command without parameter you can remove the mapping between the specific super V...

Page 101: ...logies Proprietary 3 4 View VLAN view Parameter None Description Using supervlan commmand you can set current VLAN to super VLAN Using undo supervlan commmand you can cancel the super VLAN type of current VLAN For the related commands see display supervlan Example Set the VLAN 2 to super VLAN Quidway vlan2 supervlan ...

Page 102: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual Network Protocol ...

Page 103: ...2 6 2 1 8 display arp slot 2 7 2 1 9 display arp timer aging 2 7 2 1 10 display arp vlan 2 8 2 1 11 reset arp 2 8 2 2 Gratuitous ARP Configuration Commands 2 9 2 2 1 gratuitous arp learning enable 2 9 Chapter 3 ARP Source Suppression Configuration Commands 3 1 3 1 ARP Source Suppression Configuration Commands 3 1 3 1 1 arp source suppression limit 3 1 3 1 2 display arp source suppression 3 2 Chapt...

Page 104: ... 6 1 10 reset ip statistics 6 10 6 1 11 reset tcp statistics 6 11 6 1 12 reset udp statistics 6 11 6 1 13 tcp timer fin timeout 6 12 6 1 14 tcp timer syn timeout 6 12 6 1 15 tcp window 6 13 Chapter 7 IPX Configuration Commands 7 1 7 1 IPX Configuration Commands 7 1 7 1 1 display ipx interface 7 1 7 1 2 display ipx routing table 7 2 7 1 3 display ipx service table 7 4 7 1 4 display ipx statistics 7...

Page 105: ...7 1 19 ipx sap max reserve servers 7 15 7 1 20 ipx sap mtu 7 16 7 1 21 ipx sap multiplier 7 16 7 1 22 ipx sap timer update 7 17 7 1 23 ipx service 7 17 7 1 24 ipx split horizon 7 18 7 1 25 ipx tick 7 19 7 1 26 ipx update change only 7 19 7 1 27 reset ipx routing table statistics protocol 7 20 7 1 28 reset ipx statistics 7 21 ...

Page 106: ...isplay ip host command you can view all the host names and the corresponding IP addresses Example Display all hosts name and corresponding IP address of the hosts Quidway display ip host Host Age Flags Address My 0 static 1 1 1 1 Aa 0 static 2 2 2 4 1 1 2 display ip interface Syntax display ip interface interface_type interface_num brief View Any view Parameter interface_type Port type Interface_n...

Page 107: ...ce 1 Vlan interface1 current state DOWN Line protocol current state DOWN Internet Address is 1 1 1 1 8 Primary Broadcast address 1 255 255 255 The Maximum Transmit Unit 1500 bytes input packets 0 bytes 0 multicasts 0 output packets 0 bytes 0 multicasts 0 TTL invalid packet number 0 ICMP packet input number 0 Echo reply 0 Unreachable 0 Source quench 0 Routing redirect 0 Echo request 0 Router advert...

Page 108: ...ress for VLAN interface or LoopBack interface Using undo ip address command you can cancel an IP address of the VLAN interface or LoopBack interface By default all interfaces IP addresses are null Generally it is enough to configure one IP address for an interface You can also configure eight IP addresses for an interface at most so that it can be connected to several subnets Among these IP addres...

Page 109: ...ter hostname Name of the host a character string consisting of 1 to 20 characters including letters numbers or _ and it must contain at least one letter ip address Host IP address the corresponding IP address to the host name in dotted decimal notation Description Using ip host command you can configure the host name and the host IP address Using undo ip host command you can cancel the host name a...

Page 110: ... entry where the MAC address is multicast MAC address Using undo arp check enable command you can disable the checking of ARP entry that is the device learns the ARP entry where the MAC address is multicast MAC address By default the checking of ARP entry is enabled that is the device does not learn the ARP entry where the MAC address is multicast MAC address Example Configure that the device lear...

Page 111: ...y default the mapping table of the system ARP is empty and the switch can maintain its address mapping by means of dynamic ARP Note that z Static ARP map entry will be always valid as long as Ethernet switch works normally But if you modify or delete VLAN interfaces delete VLANs or delete ports from VLANs to make ARP invalid the ARP mapping entry will be also deleted The valid period of dynamic AR...

Page 112: ...ARP aging time For the related command see display arp timer aging Example Configure the dynamic ARP aging timer to 10 minutes Quidway arp timer aging 10 2 1 4 debugging arp Syntax debugging arp packet undo debugging arp packet View User view Parameter packet ARP packet debugging Description Using debugging arp command you can enable ARP debugging Using undo debugging arp command you can disable t...

Page 113: ...1 2 target_eth_addr 0000 0000 0000 target_ip_addr 193 1 1 4 Aug 31 10 30 21 2005 C_0 6506r ARP 8 arp_rcv Receive an ARP Packet operation 2 sender_eth_addr 000f e200 8001 sender_ip_addr 193 1 1 4 target_eth_add r 0019 9612 0601 target_ip_addr 193 1 1 2 Table 2 1 Output description of the debugging arp packet display Field Description operation Kind of ARP packets 1 ARP request packet 2 ARP reply pa...

Page 114: ...ess VLAN ID Port Name Aging Type 10 1 1 2 00e0 fc01 0102 N A N A N A S 1 1 1 9 0010 5ce1 1ae6 1 Ethernet3 0 12 17 D 1 1 1 11 000f 1f9b 8ab2 1 Ethernet3 0 1 18 D 3 entries found Table 2 2 Output description of the display arp display Field Description IP Address IP address of the ARP mapping entry MAC Address MAC address of the ARP mapping entry VLAN ID VLAN to which the static ARP entry belongs Po...

Page 115: ...cified text 1 the first entry to the last one Quidway display arp begin 1 Type S Static D Dynamic IP Address MAC Address VLAN ID Port Name Aging Type 1 1 1 9 0010 5ce1 1ae6 1 Ethernet3 0 12 17 D 1 1 1 11 000f 1f9b 8ab2 1 Ethernet3 0 1 18 D 2 entries found For description on all fields in the above display information refer to Table 2 2 2 1 7 display arp interface Syntax display arp interface inter...

Page 116: ...switch Description Using the display arp slot command you can view the ARP mapping table of a specified slot Example Display the ARP table of slot 3 Quidway display arp slot 3 Type S Static D Dynamic IP Address MAC Address VLAN ID Port Name Aging Type 10 1 1 2 00e0 fc01 0102 1 Ethernet3 0 1 N A S 2 1 9 display arp timer aging Syntax display arp timer aging View Any view Parameter vlan id VLAN inte...

Page 117: ...ew Parameter vlan id VALN interface ID Description Using the display arp vlan command you can view the ARP mapping table of a specified VLAN Example Display the ARP table of VLAN1 Quidway display arp vlan 1 Type S Static D Dynamic IP Address MAC Address VLAN ID Port Name Aging Type 10 1 1 2 00e0 fc01 0102 1 Ethernet3 0 1 N A S 2 1 11 reset arp Syntax reset arp dynamic static interface interface_ty...

Page 118: ...figuration Commands 2 2 1 gratuitous arp learning enable Syntax gratuitous arp learning enable undo gratuitous arp learning enable View System view Parameter None Description Use the gratuitous arp learning enable command to enable gratuitous ARP packet learning Use the undo gratuitous arp learning enable command to disable this function By default gratuitous ARP packet learning is disabled Gratui...

Page 119: ...r 2 ARP Configuration Commands Huawei Technologies Proprietary 2 10 Related command debugging arp packet Example Enable gratuitous ARP packet learning on the switch Quidway A QuidwayA system view System View return to User View with Ctrl Z QuidwayA gratuitous arp learning enable ...

Page 120: ...rent switch through Restricts the maximum number of the passing ARP packets with the same source IP addresses sent to the CPU within unit time These packets have the same source IP addresses and their destination addresses are not the IP address of the current switch limit value Maximum number of the ARP packets sent to the CPU within unit time It ranges from 1 to 4 294 967 295 when local or total...

Page 121: ... with Ctrl Z Quidway arp source suppression limit total 100 3 1 2 display arp source suppression Syntax display arp source suppression View Any view Parameter None Description Use the display arp source suppression command to display the information about ARP source suppression configuration for the current switch Example Display the information about ARP source suppression configuration for the c...

Page 122: ...Maximum number of any ARP packets sent to the CPU in unit time ARP suppression limit local Maximum number of ARP packets sent to the CPU in unit time These packets have the same source IP addresses and their destination addresses are the IP address of the current switch ARP suppression limit through Maximum number of passing ARP packets sent to the CPU in unit time These packets have the same sour...

Page 123: ...iew VLAN interface view Parameter None Description Use the arp proxy enable command to enable ARP proxy Use the undo arp proxy enable command to disable ARP proxy See display arp proxy for related configuration Example Enable the ARP proxy of VLAN 2 virtual interface Quidway Vlan interface2 arp proxy enable 4 1 2 display arp proxy Syntax display arp proxy interface interface_type interface_num Vie...

Page 124: ...roxy Configuration Command Huawei Technologies Proprietary 4 2 Description Use the display arp proxy command to view the ARP proxy status enabled or disabled See arp proxy enable for related configuration Example Display the ARP proxy status of interface VLAN 2 Quidway display arp proxy ...

Page 125: ...ou can enable the security features of DHCP relay and enable the user address validity check on VLAN interface Using address check disable command you can disable the security features of DHCP relay and disable the user address validity check on VLAN interface By default the switch disables DHCP security features function Example Enable the security features of DHCP relay on VLAN1 interface Quidwa...

Page 126: ...DHCP security feature is enabled on the VLAN interface Example Deactivate the dynamic entries generated by the DHCP relay Quidway system view System View return to User View with Ctrl Z Quidway interface vlan interface 1 Quidway Vlan interface1 address check enable Quidway Vlan interface1 address check dhcp relay disable 5 1 3 address check no matched Syntax address check no matched enable address...

Page 127: ...way interface vlan interface 1 Quidway Vlan interface1 address check enable Quidway Vlan interface1 address check no matched enable 5 1 4 debugging dhcp relay Syntax debugging dhcp relay undo debugging dhcp relay View User view Parameter None Description Using debugging dhcp relay command you can enable DHCP relay debugging Using undo debugging dhcp relay command you can disable the DHCP relay deb...

Page 128: ...uest packet because of too large hop count 0 7200725 DHCP 8 invalidpkt Wrong DHCP packet Table 5 1 Description of information generated by the command debugging dhcp relay Field Description Interface Virtual interface of VLAN performing DHCP Relay ServerGroupNo DHCP Server group number for Relay Type DHCP packet type for Relay ClientHardAddress Hardware address of Client ServerIpAddress IP address...

Page 129: ...change corresponding IP address of the DHCP Server group For the related command see display dhcp security Example Configure the user IP address and MAC address of DHCP Server group as 1 1 1 1 and 0005 5D02 F2B3 respectively Quidway dhcp security static 1 1 1 1 0005 5D02 F2B3 5 1 6 dhcp server Syntax dhcp server groupNo undo dhcp server View VLAN interface view Parameter groupNo DHCP Server group ...

Page 130: ...roup Description Using dhcp server ip command you can configure the IP address of DHCP Server adopted by the DHCP Server group Using undo dhcp server ip command you can cancel the IP addresses all the DHCP Servers in DHCP Server group For the related command see dhcp server display dhcp server debugging dhcp relay Example Configure IP addresses of the DHCP Servers of DHCP Server group1 as 1 1 1 1 ...

Page 131: ...ound Table 5 2 Output description of the display dhcp security display Field Description IP Address IP address of the DHCP Server group MAC Address User MAC address of DHCP Server group IP Address Type Type of user address table entry including dynamic address entry and static address entry 5 1 9 display dhcp server Syntax display dhcp server groupNo View Any view Parameter groupNo DHCP Server gro...

Page 132: ...er DHCP Server in DHCP Server group 0 The second IP address of DHCP Server group 0 IP address of the slave DHCP Server in DHCP Server group0 Messages from this server group Number of packets that DHCP relay received from this DHCP Server group Messages to this server group Number of packets that DHCP relay sends to this DHCP Server group Messages from clients to this server group Number of packets...

Page 133: ...erface vlan id View Any view Parameter vlan id VLAN interface ID Description Using display dhcp server interface vlan interface command you can view the information of the DHCP Server group corresponding to VLAN interface For the related command see dhcp server display dhcp server debugging dhcp relay Example View the information of the DHCP Server group corresponding to VLAN Interface 2 Quidway d...

Page 134: ...rameter None Description Using display fib command you can view the summary of the Forwarding Information Base The information includes destination address mask length next hop current flag and outbound interface Example Display the summary of the Forwarding Information Base Quidway display fib Flag D Direct I Indirect B BlackHole R Reject N Not Use Destination Mask Nexthop Flag Interface 127 0 0 ...

Page 135: ... not used Interface Interface to forward packets 6 1 2 display icmp statistics Syntax display icmp statistics View Any view Parameter None Description Using display icmp statistics command you can view the statistics information about ICMP packets For the related command see display ip interface reset ip statistics Example View statistics about ICMP packets Quidway display icmp statistics Input ba...

Page 136: ...nch Number of input output source quench packets redirects Number of input output redirected packets echo reply Number of input output echo reply packets parameter problem Number of input output packets with parameter problem timestamp Number of input output timestamp packets information request Number of input information request packets mask requests Number of input output mask request packets m...

Page 137: ...b_cc 0 rb_cc 0 socket option SO_KEEPALIVE SO_OOBINLINE SO_SENDVPNID SO_SETKEEPALIVE socket state SS_ISCONNECTED SS_PRIV SS_ASYNC Task VTYD 18 socketid 3 Proto 6 LA 10 153 17 99 23 FA 10 153 17 82 1121 sndbuf 8192 rcvbuf 8192 sb_cc 0 rb_cc 0 socket option SO_KEEPALIVE SO_OOBINLINE SO_SENDVPNID SO_SETKEEPALIVE socket state SS_ISCONNECTED SS_PRIV SS_ASYNC Table 6 3 Output description of the display i...

Page 138: ...ne Description Using display ip statistics command you can view the statistics information about IP packets For the related command see display ip interface reset ip statistics Example View statistics about IP packets Quidway display ip statistics Input sum 7120 local 112 bad protocol 0 bad format 0 bad checksum 0 bad options 0 Output forwarding 0 local 27 dropped 0 no route 2 compress fails 0 Fra...

Page 139: ...tions Number of packets that has wrong options forwarding Number of forwarded packets local Number of packets that are sent by the local device dropped Number of dropped packets during transmission no route Number of packets that cannot be routed Output compress fails Number of packets that cannot be compressed input Number of input fragments output Number of output fragments dropped Number of dro...

Page 140: ...lay tcp status reset tcp statistics Example View statistics about TCP packets Quidway display tcp statistics Received packets Total 753 packets in sequence 412 11032 bytes window probe packets 0 window update packets 0 checksum error 0 offset error 0 short error 0 duplicate packets 4 88 bytes partially duplicate packets 5 7 bytes out of order packets 0 0 bytes packets of data after window 0 0 byte...

Page 141: ... status command you can view the TCP connection state Example Display the state of all TCP connections Quidway display tcp status TCPCB Local Add port Foreign Add port State 03e37dc4 0 0 0 0 4001 0 0 0 0 0 Listening 04217174 100 0 0 204 23 100 0 0 253 65508 EstablishedOutput description of the display tcp status display Information Description Local Add port Local IP address local port Foreign Add...

Page 142: ...the reset udp statistics command Example Display the UDP traffic statistic information Quidway display udp statistics Received packet Total 0 checksum error 0 shorter than header 0 data length larger than packet 0 no socket on port 0 broadcast 0 not delivered input socket full 0 input packets missing pcb cache 0 Sent packet Total 0 6 1 8 ip Syntax ip redirects ttl expires unreachables undo ip redi...

Page 143: ... timeout packets are sent to CPU Example Set redirection packets sent to CPU for further processing Quidway ip redirects 6 1 9 ip forward broadcast Syntax ip forward broadcast undo ip forward broadcast View System view Parameter None Description Using ip forward broadcast command you can configure to forward L3 broadcast packets Using undo ip forward broadcast command you can disable to forward br...

Page 144: ...y ip interface display ip statistics Example Clear the IP statistics information Quidway reset ip statistics 6 1 11 reset tcp statistics Syntax reset tcp statistics View User view Parameter None Description Using reset tcp statistics command you can clear the TCP statistics information For the related command see display tcp statistics Example Clear the TCP statistics information Quidway reset tcp...

Page 145: ...th the value ranging from 76 to 3600 By default 675 seconds Description Using tcp timer fin timeout command you can configure the TCP finwait timer Using undo tcp timer fin timeout command you can restore the default value of the TCP finwait timer When the TCP connection state changes from FIN_WAIT_1 to FIN_WAIT_2 the finwait timer is enabled If the switch does not receive FIN packet before finwai...

Page 146: ...onse packet is not received For the related command see tcp timer fin timeout tcp window Example Configure the TCP synwait timer value as 80 seconds Quidway tcp timer syn timeout 80 6 1 15 tcp window Syntax tcp window window size undo tcp window View System view Parameter window size The size of the transmission and receiving buffers measured in kilobytes KB whose value ranges from 1 to 32 By defa...

Page 147: ...Command Manual Network Protocol Quidway S6500 Series Ethernet Switches Chapter 6 IP Performance Configuration Commands Huawei Technologies Proprietary 6 14 Quidway tcp window 3 ...

Page 148: ... is specified the IPX information of all the IPX enabled VLAN interfaces is displayed Example Display the IPX information of VLAN interface 1 Quidway display ipx interface Vlan interface 1 Vlan interface1 is down IPX address is 1 0020 9c68 448e down SAP is enabled Split horizon is enabled Update change only is disabled Forwarding of IPX type 20 propagation packet is disabled Delay of this IPX inte...

Page 149: ...ion by route type default Displays information of all the default routes direct Displays information of all the direct routes rip Displays all the IPX RIP routing information static Displays all the IPX static routing information inactive Displays the inactive routing information verbose Displays the detailed IPX routing information including the active and inactive routes statistics Displays the ...

Page 150: ...able verbose Routing tables Destinations 2 Routes 3 Destination Network ID 0x1 Protocol Direct Preference 0 Ticks 1 Hops 0 Nexthop 0 0000 0000 0000 Time 0 Interface 1 0020 9c68 448e Vlan interface1 State Active Protocol Static Preference 60 Ticks 1 Hops 1 Nexthop 2 000e 0001 0000 Time 0 Interface 2 0020 9c68 448f Vlan interface2 State Inactive Destination Network ID 0x2 Protocol Static Preference ...

Page 151: ... Active Number of the active routes Added Number of the added routes Deleted Number of the deleted yet not released routes Freed Number of the released routes 7 1 3 display ipx service table Syntax display ipx service table inactive name name network network order network type type service type verbose View Any view Parameter inactive Displays information of the inactive services name name Display...

Page 152: ...es 2 Number of Dynamic Entries 0 Name Type NetId S Prn1 0005 000d S Prn2 0005 0008 Display the details about the IPX server information table Quidway display ipx service table verbose Abbreviation S Static Pref Preference Decimal NetId Network number NodeId Node address hop Hops Decimal Recv If Interface from which the service is received Number of Static Entries 2 Number of Dynamic Entries 0 Name...

Page 153: ... responses sent 0 responses received 0 requests received 0 requests dealt 0 requests sent 0 periodic updates SAP 0 general requests received 0 specific requests received 0 GNS requests received 0 general responses sent 0 specific responses sent 0 GNS responses sent 0 periodic updates 0 errors PING 0 requests sent 0 requests received 0 responses sent 0 responses received 0 responses in time 0 respo...

Page 154: ...Sets the encapsulation format to Ethernet_802 3 ethernet 2 Sets the encapsulation format to Ethernet_II snap Sets the encapsulation format to Ethernet_SNAP Description Using the ipx encapsulation command you can configure an IPX frame encapsulation format on the current VLAN interface Using the undo ipx encapsulation command you can restore the encapsulation format to the default By default the IP...

Page 155: ... packets Quidway Vlan interface1 ipx netbios propagation 7 1 8 ipx network Syntax ipx network network number undo ipx network View VLAN interface view Parameter network number Hexadecimal IPX network number in the range 0x1 to 0xFFFFFFFD The leading 0s can be omitted when you input a network number Description Using the ipx network command you can assign an IPX network number to the VLAN interface...

Page 156: ... rip import route static command you can disable RIP to import static routes By default IPX RIP does not import static routes Note that RIP imports only active static routes inactive static routes are neither imported nor forwarded Example Import the static routes into RIP Quidway ipx rip import route static 7 1 10 ipx rip mtu Syntax ipx rip mtu bytes undo ipx rip mtu View VLAN interface view Para...

Page 157: ...d of the RIP routing entries together with the update interval It is in the range 1 to 1000 and defaults to 3 Multiplying the update interval by the multiplier you can get the actual aging period Description Using the ipx rip multiplier command you can configure the aging period of the RIP routing entries Using the undo ipx rip multiplier command you can restore the default For the related command...

Page 158: ...load balance path paths undo ipx route load balance path View System view Parameter paths The maximum number of equivalent routes to the same destination It is in the range 1 to 64 and defaults to 1 Description Using the ipx route load balance path command you can configure the number of equivalent routes to the same destination Using the undo ipx route load balance path command you can restore th...

Page 159: ...default When the number of dynamic routes saved in the device to the same destination exceeds the specified maximum value the new dynamic routes are dropped directly without being added into the routing table When the configured new value is less than the old one the switch however does not delete the excessive route entries These route entries either time out or are manually deleted Example Set t...

Page 160: ...ith 1 tick 1 18 seconds When the tick value of a VLAN interface is modified the tick value of the static route also changes You must configure both the tick value and the hop count hop hops Number of the switches on the way to the destination network It is in the range 1 to 15 and defaults to 1 You must configure both the hop count and tick value all All the IPX static routes Description Using the...

Page 161: ...n interface1 ipx sap disable 7 1 17 ipx sap gns disable reply Syntax ipx sap gns disable reply undo ipx sap gns disable reply View VLAN interface view Parameter None Description Using the ipx sap gns disable reply command you can disable IPX GNS reply on the current VLAN interface Using the undo ipx sap gns disable reply command you can enable IPX GNS reply on the current VLAN interface By default...

Page 162: ... command see ipx sap gns disable reply Example Respond to GNS requests with information of the nearest server Quidway undo ipx sap gns load balance 7 1 19 ipx sap max reserve servers Syntax ipx sap max reserve servers length undo ipx sap max reserve servers View System view Parameter length The maximum length of the service information reserve queue for one service type It is in the range 1 to 204...

Page 163: ... Set the maximum size of SAP update packets to 674 bytes allowing 10 service entries on VLAN interface 1 Quidway Vlan interface1 ipx sap mtu 674 7 1 21 ipx sap multiplier Syntax ipx sap multiplier multiplier undo ipx sap multiplier View System view Parameter multiplier A multiplier of the update interval decides the aging period of the SAP service entries together with the update interval It is in...

Page 164: ... 10 to 60000 seconds By default the value is 60 seconds Description Using the ipx sap timer update command you can configure a SAP update interval Using the undo ipx sap timer update command you can restore the default Note that this command is invalid if the triggered updates feature is applied on VLAN interface For the related commands see ipx sap multiplier and ipx update change only Example Se...

Page 165: ...r written in decimal and in the range 1 to 15 The hop count equal to or exceeding 16 implies that the service is unreachable preference Service preference value in the range 1 to 255 with a smaller number indicating higher preference By default the preference value of the static service entries is 60 modifiable the preference value of the dynamic service entries is fixed to 500 all Deletes all the...

Page 166: ...le split horizon on VLAN interface 1 Quidway Vlan interface1 ipx split horizon 7 1 25 ipx tick Syntax ipx tick ticks undo ipx tick View VLAN interface view Parameter ticks Delay in ticks it is in the range 0 to 30000 and defaults to 1 Description Using the ipx tick command you can configure an IPX packet forwarding delay on the VLAN interface Using the undo ipx tick command you can restore the def...

Page 167: ... 27 reset ipx routing table statistics protocol Syntax reset ipx routing table statistics protocol all default direct rip static View User view Parameter all Clears the statistics of all the IPX routes default Clears the statistics of the default IPX routes direct Clears the statistics of the direct IPX routes rip Clears the statistics of the IPX RIP routes static Clears the statistics of the stat...

Page 168: ...nfiguration Commands Huawei Technologies Proprietary 7 21 7 1 28 reset ipx statistics Syntax reset ipx statistics View User view Parameter None Description Using the reset ipx statistics command you can clear the IPX statistics Example Clear the IPX statistics Quidway reset ipx statistics ...

Page 169: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual Routing Protocol ...

Page 170: ... table statistics 1 13 1 1 9 display ip routing table verbose 1 14 1 2 Static Route Configuration Commands 1 15 1 2 1 delete static routes all 1 15 1 2 2 ip route static 1 16 1 2 3 ip route static default preference 1 17 Chapter 2 RIP Configuration Commands 2 1 2 1 RIP Configuration Commands 2 1 2 1 1 checkzero 2 1 2 1 2 default cost 2 2 2 1 3 display rip 2 2 2 1 4 display rip routing 2 3 2 1 5 fi...

Page 171: ... 12 default route advertise 3 9 3 1 13 display debugging ospf 3 10 3 1 14 display ospf abr asbr 3 11 3 1 15 display ospf asbr summary 3 12 3 1 16 display ospf brief 3 13 3 1 17 display ospf cumulative 3 15 3 1 18 display ospf error 3 17 3 1 19 display ospf interface 3 19 3 1 20 display ospf lsdb 3 20 3 1 21 display ospf nexthop 3 23 3 1 22 display ospf peer 3 24 3 1 23 display ospf request queue 3...

Page 172: ...n Commands 4 1 4 1 Integrated IS IS Configuration Commands 4 1 4 1 1 area authentication mode 4 1 4 1 2 cost style 4 2 4 1 3 debugging isis 4 3 4 1 4 default route advertise 4 4 4 1 5 display isis brief 4 5 4 1 6 display isis interface 4 6 4 1 7 display isis lsdb 4 7 4 1 8 display isis mesh group 4 7 4 1 9 display isis peer 4 8 4 1 10 display isis route 4 9 4 1 11 display isis spf log 4 10 4 1 12 ...

Page 173: ... lsp max age 4 34 4 1 43 timer lsp refresh 4 35 4 1 44 timer spf 4 36 Chapter 5 BGP Configuration Commands 5 1 5 1 BGP Configuration Commands 5 1 5 1 1 aggregate 5 1 5 1 2 bgp 5 2 5 1 3 compare different as med 5 3 5 1 4 confederation id 5 4 5 1 5 confederation nonstandard 5 5 5 1 6 confederation peer as 5 5 5 1 7 dampening 5 6 5 1 8 debugging bgp 5 7 5 1 9 default local preference 5 8 5 1 10 defa...

Page 174: ... 5 1 36 peer as path acl export 5 32 5 1 37 peer as path acl import 5 33 5 1 38 peer connect interface 5 34 5 1 39 peer default route advertise 5 35 5 1 40 peer description 5 35 5 1 41 peer ebgp max hop 5 36 5 1 42 peer enable 5 36 5 1 43 peer filter policy export 5 37 5 1 44 peer filter policy import 5 38 5 1 45 peer group 5 38 5 1 46 peer ip prefix export 5 39 5 1 47 peer ip prefix import 5 40 5...

Page 175: ...ce 6 5 6 1 8 apply origin 6 6 6 1 9 apply tag 6 7 6 1 10 display ip ip prefix 6 7 6 1 11 display route policy 6 8 6 1 12 filter policy export 6 9 6 1 13 filter policy import 6 10 6 1 14 if match acl ip prefix 6 11 6 1 15 if match as path 6 12 6 1 16 if match community 6 12 6 1 17 if match cost 6 13 6 1 18 if match interface 6 14 6 1 19 if match ip next hop 6 14 6 1 20 if match tag 6 15 6 1 21 ip i...

Page 176: ...f the Routing Table 1 1 1 display ip routing table Syntax display ip routing table View Any view Parameter None Description Using display ip routing table command you can view the routing table summary This command displays routing table information in summary form Each line represents one route The contents include destination address mask length protocol preference metric next hop and output int...

Page 177: ...k Destination address Mask length Protocol Routing protocol Pre Routing preference Cost Cost Nexthop Next hop address Interface Output interface through which the data packet destined for the destination network segment is sent 1 1 2 display ip routing table acl Syntax display ip routing table acl acl number acl name verbose View Any view Parameter acl number the number of basic ACL ranging from 2...

Page 178: ...Destination Mask Protocol Pre Cost Nexthop Interface 10 1 1 0 24 DIRECT 0 0 10 1 1 2 Vlan interface1 10 1 1 2 32 DIRECT 0 0 127 0 0 1 InLoopBack0 For detailed description of the output information see Table 1 1 Display the verbose information of the active and inactive routes that are filtered through basic acl 2000 Quidway display ip routing table acl 2000 verbose Routes matched by access list 20...

Page 179: ...mation generated by the command display ip routing table acl verbose Field Description Destination Destination address Mask Mask Protocol Routing protocol Preference Routing preference Nexthop Next hop address Interface Output interface through which the data packet destined for the destination network segment is sent Vlinkindex Virtual link index ...

Page 180: ...e destination change For more details refer to the specific routing protocols Int The route is discovered by interior gateway protocol IGP NoAdvise The routing protocol does not redistribute NoAdvise route when it redistributes routes based on the policy NotInstall The routing protocol generally selects the route with the highest precedence from its routing table then places it in its core routing...

Page 181: ...hing the destination address in specified mask range If no mask is specified all the routes matching the destination address in natural mask range are displayed Description Using display ip routing table ip_address command you can view the routing information of the specified destination address With different parameters the output of command is different The following is the output description fo...

Page 182: ...range and summary is displayed Quidway display ip routing table 169 253 0 0 Destination Mask Protocol Pre Cost Nexthop Interface 169 0 0 0 8 Static 60 0 2 1 1 1 LoopBack1 There are corresponding routes in the natural mask range Display the detailed information Quidway display ip routing table 169 0 0 0 verbose Routing Tables Generate Default no Active Route Last Active Both Next hop in use Summary...

Page 183: ...ation ip_address1 and ip_address2 determine one address range together to display the route in this address range ip_address1 anding with mask1 specifies the start of the range while ip_address2 anding with mask2 specifies the end mask1 mask2 IP address mask length in dotted decimal notation or integer form It ranges from 0 to 32 when it is presented in integer verbose With the verbose parameter t...

Page 184: ...rules Without the parameter this command displays the summary of the active routes that passed filtering rules Description Using display ip routing table ip prefix command you can view the route information that passed the filtering rule according the input ip prefix list name Example Display the summary of the active route that is filtered ip prefix list abc2 Quidway ip ip prefix abc2 permit 10 1...

Page 185: ...ormation see Table 1 2 1 1 6 display ip routing table protocol Syntax display ip routing table protocol protocol inactive verbose View Any view Parameter inactive With the parameter this command displays the inactive route information Without the parameter this command displays the active and inactive route information verbose With the verbose parameter this command displays the verbose route info...

Page 186: ...RECT 0 0 127 0 0 1 InLoopBack0 102 1 1 0 24 DIRECT 0 0 102 1 1 1 LoopBack1 102 1 1 1 32 DIRECT 0 0 127 0 0 1 InLoopBack0 127 0 0 0 8 DIRECT 0 0 127 0 0 1 InLoopBack0 127 0 0 1 32 DIRECT 0 0 127 0 0 1 InLoopBack0 DIRECT Routing table status inactive Summary count 1 Destination Mask Protocol Pre Cost Nexthop Interface 100 100 1 1 32 DIRECT 0 0 100 100 1 1 LoopBack0 View the static routing table Quid...

Page 187: ...oute information in a tree structure Example Quidway display ip routing table radix Radix tree for INET 2 inodes 14 routes 10 8 169 0 0 0 32 169 1 1 1 0 8 127 0 0 0 32 127 0 0 1 1 8 2 0 0 0 24 2 2 2 0 32 2 2 2 2 22 32 2 2 1 1 6 8 1 0 0 0 32 1 1 1 1 Table 1 3 Description of information generated by the command display ip routing table radix Field Description INET Address suite inodes Number of node...

Page 188: ...mount added or deleted by protocol amount of the routes that are labeled deleted but not deleted the active route amount and inactive route amount Example Display the statistics of route information Quidway display ip routing table statistics Routing tables Proto route active added deleted DIRECT 24 4 25 1 STATIC 4 1 4 0 BGP 0 0 0 0 RIP 0 0 0 0 IS IS 0 0 0 0 OSPF 0 0 0 0 O_ASE 0 0 0 0 O_NSSA 0 0 0...

Page 189: ...able information With the verbose parameter this command displays the verbose routing table information The descriptor describing the route state will be displayed first then the statistics of the entire routing table will be output and finally the verbose description of each route will be output All current routes including inactive route and invalid route can be displayed using display ip routin...

Page 190: ... statistics of the whole routing table and then output detailed information of every route entry in turn The meaning of route status is shown in Table 1 2 and the statistics of routing table is shown in the following table Table 1 5 Description of information generated by the command display ip routing table verbose Field Description Holddown Number of held down routes Delete Number of deleted rou...

Page 191: ...k are required to be consecutive the mask in dotted decimal format can be replaced by mask length which is the number of the consecutive 1 s in the mask interface name Specify the interface of the route The packets that are sent to a NULL interface a kind of virtual interface will be discarded immediately Thus can decrease the system load gateway address Specify the next hop IP address of the rout...

Page 192: ...ion has the reject attribute all the IP packets to this destination will be discarded z Blackhole route If a static route to a destination has the blackhole attribute the outgoing interface of this route is the Null 0 interface regardless of the next hop address and all the IP packets addressed to this destination are dropped The attributes reject and blackhole are usually used to control the rang...

Page 193: ...ult value is 60 Description Using ip route static default preference command you can configure the default preference value of static routes Using undo ip route static default preference command you can restore the default value A static route s preference will be the default preference value set by this command if its preference is not specified when configured by ip route static command For the ...

Page 194: ...heckzero undo checkzero View RIP view Parameter None Description Using checkzero command you can check the zero field of RIP 1 packet Using undo checkzero command you can disable the checking of the zero fields By default RIP 1 performs the zero field checking According to the protocol RFC1058 specifications some fields in RIP 1 packets must be zero called zero fields With the checkzero command th...

Page 195: ... default value If no specific routing cost is specified when importing the route of another routing protocol with the import route command the importing will be performed with the default routing cost specified with the default cost command For the related commands see import route Example Set the default routing cost of the imported route of another routing protocol to 3 Quidway rip default cost ...

Page 196: ...ted by the command display rip Field Description RIP is running RIP is active Checkzero is on Enable zero field checking Default cost 1 The default route cost is 1 Summary is on Routes are summarized automatically Preference 100 The preference of RIP is 100 Traffic share across interface is off Traffic sharing across RIP interfaces is disabled Period update timer 30 Timeout timer 180 Garbage colle...

Page 197: ... IP address mask length Cost Routing cost NextHop Next hop address of the route Age Aging time of the routing entry SourceGateway IP address of the source gateway from which the route is learned Attributes with three options available A The active route I The inactive route Att G The unreachable route in the state of Garbage collection If the Garbage collection timer times out before the unreachab...

Page 198: ...ospf ospf ase ospf nssa and static at present Description Using filter policy export command you can configure to filter the advertised routing information by RIP Using undo filter policy export command you can configure not to filter the advertised routing information By default RIP does not filter the advertised routing information In some cases it may be required that only the routing informati...

Page 199: ...ation After enabling RIP protocol you can determine which routes are to be sent received based on acl cost interface ip ip prefix tag fields The length of route policy name parameter ranges from 1 to 16 character string Description Using filter policy gateway import command you can configure to filter the received routing information distributed from the specified address Using undo filter policy ...

Page 200: ...Configure RIP to reject a host route Quidway rip undo host route 2 1 8 import route Syntax import route protocol cost value route policy route policy name undo import route protocol View RIP view Parameter protocol Specify the source routing protocol to be imported by RIP At present RIP can import the following routes direct bgp ospf ospf ase ospf nssa isis and static value Cost value of the route...

Page 201: ...til the Garbage Collection timer times out defaults to 120 seconds For the related commands see default cost Example Import a static route with cost 4 Quidway rip import route static cost 4 Set the default cost and import an OSPF route with the default cost Quidway rip default cost 3 Quidway rip import route ospf 2 1 9 network Syntax network network address undo network network address View RIP vi...

Page 202: ... example the results of viewing the network 129 102 1 1 with both the display current configuration command and the display rip command are shown as the network 129 102 0 0 For the related commands see rip work Example Enable the RIP on the interface with the network address as 129 102 0 0 Quidway rip network 129 102 0 0 2 1 10 peer Syntax peer ip address undo peer ip address View RIP view Paramet...

Page 203: ...d you can restore the default preference Every routing protocol has its own preference Its default value is determined by the specific routing policy The preference will finally determine the routing algorithm to obtain the optimal route in the IP routing table This command can be used to modify the RIP preference manually Example Specify the RIP preference as 20 Quidway rip preference 20 2 1 12 r...

Page 204: ... enable the RIP and enter the RIP view Using undo rip command you can disable RIP By default the system does not run RIP To enter the RIP view to configure various RIP global parameters RIP should be enabled first Whereas the configuration of parameters related to the interfaces is not restricted by enabling disabling RIP Note Note that the interface parameters configured previously would be inval...

Page 205: ...tting the MD5 key in a cipher text form with 24 characters long is also supported rfc2082 Specify the MD5 cipher text authentication packet to use a nonstandard packet format described in RFC2082 key id MD5 cipher text authentication identifier ranging from 1 to 255 Description Using rip authentication mode command you can configure RIP 2 authentication mode and its parameters Using undo rip authe...

Page 206: ...View Interface view Parameter None Description Using rip input command you can allow an interface to receive RIP packets Using undo rip input command you can disable an interface to receive RIP packets By default all interfaces except loopback interfaces are enabled to receive RIP packets This command is used in cooperation with the other two commands rip output and rip work Functionally rip work ...

Page 207: ...additional route metric added to the route when an interface receives RIP packets Using undo rip metricin command you can restore the default value of this additional route metric For the related commands see rip metricout Example Specify the additional route metric to 2 when the interface Vlan interface 1 receives RIP packets Quidway interface Vlan interface 1 Quidway Vlan interface1 rip metricin...

Page 208: ... undo rip output View Interface view Parameter none Description Using rip output command you can allow an interface to transmit RIP packets to the external Using undo rip output command you can disable an interface to transmit RIP packets to the external By default all interfaces except loopback interfaces are enabled to transmit RIP packets to the external This command is used in cooperation with...

Page 209: ...an configure an interface not to use split horizon when transmitting RIP packets By default an interface is enabled to use split horizon when transmitting RIP packets Normally split horizon is necessary for reducing route loop Only in some special cases split horizon should be disabled to ensure the correct execution of protocols Example Specify the interface Vlan interface 1 not to use split hori...

Page 210: ...s and transmits RIP 1 broadcast packets and receives RIP 2 broadcast packets but does not receive RIP 2 multicast packets When running RIP 2 in broadcast mode the interface only receives and transmits RIP 2 broadcast packets receives RIP 1 packets and RIP 2 multicast packets When running RIP 2 in multicast mode the interface only receives and transmits RIP 2 multicast packets receives RIP 2 broadc...

Page 211: ... RIP 2 automatic route summarization Using undo summary command you can disable RIP 2 automatic route summarization By default RIP 2 route summarization is used Route aggregation can be performed to reduce the routing traffic on the network as well as to reduce the size of the routing table RIP 1 does not support subnet mask Forwarding subnet route may cause ambiguity Therefore RIP 1 uses route su...

Page 212: ...values of the three RIP timers Period Update Timeout and Garbage collection Using the undo timers command you can restore the default settings By default the values of Period Update Timeout and Garbage collection timers are 30 seconds 180 seconds and 120 seconds respectively Generally it is regarded that the value of Garbage collection timer is fixed to 4 times of that of Period Update timer Adjus...

Page 213: ...one Description Use the traffic share across interface command to enable RIP to distribute traffic equally among interfaces by employing equivalent routes Use the undo traffic share across interface command to disable traffic sharing among interfaces By default traffic sharing across RIP interfaces is disabled Example Enable RIP traffic sharing across interfaces Quidway rip traffic share across in...

Page 214: ... OSPF Area view Parameter ip address Network segment address mask Network mask advertise Advertise only the summarized route not advertise Do not advertise routes matching the specified IP address and mask Description Using abr summary command you can configure the route aggregation on the area border router Using undo abr summary command you can disable the function of route aggregation on the ar...

Page 215: ... 66 48 120 0 0 0 0 255 Quidway ospf 1 area 0 0 0 1 abr summary 66 48 0 0 255 255 0 0 3 1 2 area Syntax area area id undo area area id View OSPF view Parameter area id ID of the OSPF area which can be a decimal integer or in IP address format Description Using area command you can enter OSPF Area view Using undo area command you can cancel the designated area Example Enter OSPF Area 0 view Quidway ...

Page 216: ... this command summarizes the imported Type 5 LSAs in the summary address range When NSSA is configured this command will also summarize the imported Type 7 LSAs in the summary address range If the local router acts as both an ABR and a router in the NSSA this command summarizes Type 5 LSAs transformed from Type 7 LSAs If the router is not the router in the NSSA the summarization is disabled For th...

Page 217: ...spf authentication mode Example Specify the OSPF area 0 to support MD5 cipher text authentication Quidway ospf 1 area 0 Quidway ospf 1 area 0 0 0 0 authentication mode md5 3 1 5 debugging ospf Syntax debugging ospf process id event lsa originate packet ack dd hello request update interface interface type interface num spf undo debugging ospf process id event lsa originate packet ack dd hello reque...

Page 218: ...Example Enable the information debugging of OSPF packets Quidway debugging ospf packet 3 1 6 default cost Syntax default cost value undo default cost View OSPF view Parameter value Default routing cost of external route imported by OSPF ranging from 0 to 16777214 By default its value is 1 Description Using default cost command you can configure the default cost for OSPF to import external routes U...

Page 219: ...utes Using undo default interval command you can restore the default value of the default interval of redistributing external routes Because OSPF can import the external routing information and broadcast it to the entire autonomous system and importing routes too often will greatly affect the performances of the device it is necessary to specify the default interval for the protocol to import exte...

Page 220: ...y ospf 1 default limit 200 3 1 9 default tag Syntax default tag tag undo default tag View OSPF view Parameter tag Default tag ranging from 0 to 4294967295 with the default value 1 Description Using default tag command you can configure the default tag of OSPF when it redistributes an external route Using undo default tag command you can restore the default tag of OSPF when it redistributes the ext...

Page 221: ...efault type when OSPF redistributes external routes By default the external routes of type 2 are imported OSPF specifies the two types of external routing information The command described in this section can be used to specify the default type when external routes are imported For the related commands see default tag Example Specify the default type as type 1 when OSPF imports an external route Q...

Page 222: ...efault route advertise always cost value type type value route policy route policy name undo default route advertise always cost type route policy View OSPF view Parameter always The parameter will generate an ase lsa which describes the default route and advertise it if the local router is not configured with the default route If this parameter is not set the local router cannot import the ase ls...

Page 223: ...e related commands see import route Example If local route has no default route the ase lsa of default route will be generated otherwise it won t be generated Quidway ospf 1 default route advertise The ase lsa of default route will be generated and advertised to OSPF route area even the local router has no default route Quidway ospf 1 default route advertise always 3 1 13 display debugging ospf Sy...

Page 224: ... you can view the information about the ABR and ASBR of OSPF Example Display the information of the OSPF area border routers and autonomous system border routers Quidway display ospf abr asbr OSPF Process 1 with Router ID 10 110 98 138 Routing Table to ABR and ASBR I Intra i Inter A ASBR B ABR S SumASBR Destination Area Cost Nexthop Interface IA 2 2 2 2 0 0 0 0 10 10 153 17 89 Vlan interface1 Tabl...

Page 225: ...dress mask in dotted decimal format Description Using display ospf asbr summary command you can view the summary information of OSPF imported route If the parameters are not set the summary information of all OSPF imported routes will be displayed For the related commands see asbr summary Example Display the summary information of all OSPF imported routes Quidway display ospf asbr summary OSPF Pro...

Page 226: ...work segment will be advertised 3 1 16 display ospf brief Syntax display ospf process id brief View Any view Parameter process id Process ID of OSPF ranging from 1 to 65535 The command is applied to all current OSPF processes if you do not specify a process ID Description Using display ospf brief command you can view the main summary of OSPF Example Display the OSPF summary Quidway display ospf br...

Page 227: ... border router ABR spf schedule interval Interval of SPF schedule Authtype Authentication type of OSPF Routing preference Routing preference of OSPF The internal route of OSPF includes intra inter area route and its default routing preference is 10 While that of the external route of OSPF is 150 by default Default ASE parameters Default ASE parameters of OSPF including metric type and tag SPF comp...

Page 228: ...process id cumulative View Any view Parameter process id Process ID of OSPF ranging from 1 to 65535 The command is applied to all current OSPF processes if you do not specify a process ID Description Using display ospf cumulative command you can view the OSPF cumulative information Example Display the OSPF cumulative information Quidway display ospf cumulative OSPF Process 1 with Router ID 1 1 1 1...

Page 229: ...scription Type Type of input output OSPF packet Input Number of received packets IO Statistics Output Number of transmitted packets ASE Number of all ASE LSAs checksum sum Checksum of ASE LSA originated Number of originated LSAs LSAs received Number of received LSAs generated by other routers Router Number of all Router LSAs SumNet Number of all Sumnet LSAs SumASB Number of all SumASB LSAs Neighbo...

Page 230: ...ismatch 0 OSPF wrong virtual link 0 OSPF wrong authentication type 0 OSPF wrong authentication key 0 OSPF too small packet 0 OSPF packet size ip length 0 OSPF transmit error 0 OSPF interface down 0 OSPF unknown neighbor 0 HELLO netmask mismatch 0 HELLO hello timer mismatch 0 HELLO dead timer mismatch 0 HELLO extern option mismatch 0 HELLO router id confusion 0 HELLO virtual neighbor unknown 0 HELL...

Page 231: ...terface down OSPF interface is down unavailable OSPF unknown neighbor OSPF neighbors are unknown HELLO netmask mismatch Network mask mismatch HELLO hello timer mismatch Interval of HELLO packet is mismatched HELLO dead timer mismatch Interval of dead neighbor packet is mismatched HELLO extern option mismatch Extern option of Hello packet is mismatched HELLO router id confusion Hello packet Router ...

Page 232: ... Link state update packet unknown LSA type OSPF routing next hop not exist Next hop of OSPF routing does not exist DD MTU option mismatch MTU option of DD packet is mismatched ROUTETYPE wrong type value Route type the value of the type is wrong 3 1 19 display ospf interface Syntax display ospf process id interface interface type interface number View Any view Parameter process id Process ID of OSP...

Page 233: ...p Designated Router BDR on the network in which the interface resides OSPF timers defining as follows Hello Interval of hello packet Dead Interval of dead neighbors Poll Interval of poll Timers Retransmit Interval of retransmitting LSA Transmit Delay Delay time of transmitting LSA 3 1 20 display ospf lsdb Syntax display ospf process id area id lsdb brief asbr ase network nssa router summary ip add...

Page 234: ...Area 0 0 0 0 Type LinkState ID AdvRouter Age Len Sequence Metric Where Rtr 2 2 2 2 2 2 2 2 465 36 8000000c 0 SpfTree Rtr 1 1 1 1 1 1 1 1 449 36 80000004 0 SpfTree Net 10 153 17 89 2 2 2 2 465 32 80000004 0 SpfTree SNet 10 153 18 0 1 1 1 1 355 28 80000003 10 Inter List Area 0 0 0 1 Type LinkState ID AdvRouter Age Len Sequence Metric Where Rtr 1 1 1 1 1 1 1 1 449 36 80000004 0 SpfTree Rtr 3 3 3 3 3 ...

Page 235: ...LSA Quidway display ospf lsdb ase OSPF Process 1 with Router ID 1 1 1 1 Link State Data Base type ASE ls id 2 2 0 0 adv rtr 1 1 1 1 ls age 349 len 36 seq 80000001 chksum 0xfcaf Options DC Net mask 255 255 0 0 Tos 0 metric 1 E type 2 Forwarding Address 0 0 0 0 Tag 1 Table 3 8 Description of information generated by the command display ospf lsdb ase Field Description type Type of the LSA ls id Link ...

Page 236: ...sses if you do not specify a process ID Description Using display ospf nexthop command you can view the information about the next hop Example Display the OSPF next hop information Quidway display ospf nexthop OSPF Process 1 with Router ID 2 2 2 2 Next hops Address Type Refcount Intf Addr Intf Name 202 38 160 1 Direct 3 202 38 160 1 Vlan interface2 202 38 160 2 Neighbor 1 202 38 160 1 Vlan interfa...

Page 237: ...OSPF peer Using display ospf peer brief command you can view the brief information of every peer in OSPF mainly the peer number at all states in every area Example View the information of OSPF peer Quidway display ospf peer OSPF Process 1 with Router ID 1 1 1 1 Neighbors Area 0 0 0 0 interface 10 153 17 88 Vlan interface1 s neighbor s RouterID 2 2 2 2 Address 10 153 17 89 State Full Mode Nbr is Ma...

Page 238: ...mmand display ospf peer brief Field Description Area ID Area ID Down Initial state for OSPF to establish neighbor relation which indicates that OSPF router does not receive the message from a certain neighbor router within a period of time Attempt It is enabled in NBMA environment such as Frame Relay X 25 or ATM It indicates that OSPF router does not receive the message from a certain neighbor rou...

Page 239: ...een consistent 3 1 23 display ospf request queue Syntax display ospf process id request queue View Any view Parameter process id Process ID of OSPF ranging from 1 to 65535 The command is applied to all current OSPF processes if you do not specify a process ID Description Using display ospf request queue command you can view the information about the OSPF request queue Example Display the informati...

Page 240: ...spf process id retrans queue View Any view Parameter process id Process ID of OSPF ranging from 1 to 65535 The command is applied to all current OSPF processes if you do not specify a process ID Description Using display ospf retrans queue command you can view the information about the OSPF retransmission queue Example Display the information of OSPF retransmission queue Quidway display ospf retra...

Page 241: ...tate ID of the LSA AdvRouter Router ID of the router originating the LSA 3 1 25 display ospf routing Syntax display ospf process id routing View Any view Parameter process id Process ID of OSPF ranging from 1 to 65535 The command is applied to all current OSPF processes if you do not specify a process ID Description Using display ospf routing command you can view the information about OSPF routing...

Page 242: ... Intra Area Number of intra area routes Inter Area Number of inter area routes ASE Number of external routes NSSA Number of NSSA routes 3 1 26 display ospf vlink Syntax display ospf process id vlink View Any view Parameter process id Process ID of OSPF ranging from 1 to 65535 The command is applied to all current OSPF processes if you do not specify a process ID Description Using display ospf vlin...

Page 243: ...rtual link passes and it cannot be backbone area STUB area and NSSA area OSPF timers defining as follows Hello Interval of hello packet Dead Interval of dead neighbors Poll Interval of poll Timers Retransmit Interval of retransmitting LSA Transmit Delay Delay time of transmitting LSA 3 1 27 filter policy export Syntax filter policy acl number ip prefix ip prefix name export routing protocol undo f...

Page 244: ...lter policy export command but without configuring the import route command to import other external routes including OSPF routes of different process then the filter policy export command does not take effect z If the filter policy export command does not specify to filter which type of routes it takes effect for all the routes imported by the import route For the related commands see acl ip ip p...

Page 245: ...les of filtering the routing information received Using undo filter policy import command you can cancel the filtering of the routing information received By default no filtering of the received routing information is performed In some cases it may be required that only the routing information meeting some conditions can be received Then the filter policy command can be used to set the filtering c...

Page 246: ...length of route policy name parameter ranges from 1 to 16 character string Description Using import route command you can import the information of another routing protocol Using undo import route command you can cancel the imported external routing information By default the routing information of other protocols is not imported Note You are recommended to configure the route type cost and tag to...

Page 247: ... slave IP address of the interface is in the range of the network segment specified by this command this interface will not run OSPF protocol For the related commands see ospf Example Specify the interfaces whose master IP addresses are in the segment range of 10 110 36 0 to run the OSPF protocol and specify the number of the OSPF area where these interfaces are located as 6 Quidway ospf 1 area 6 ...

Page 248: ... import route command not to be advertised to NSSA area Example Configure area 1 as NSSA area Quidway ospf 1 area 1 Quidway ospf 1 area 0 0 0 1 network 36 0 0 0 0 255 255 255 Quidway ospf 1 area 0 0 0 1 nssa 3 1 32 ospf Syntax ospf process id router id router id undo ospf process id View System view Parameter process id Process ID of OSPF ranging from 1 to 65535 By default the process ID is 1 proc...

Page 249: ...5 authentication key If it is input in a plain text form MD5 key is a character string not exceeding 16 characters And it will be displayed in a cipher text form in a length of 24 characters when display current configuration command is executed Inputting the MD5 key in a cipher text form with 24 characters is also supported Description Using ospf authentication mode command you can configure the ...

Page 250: ...ay Vlan interface1 ospf authentication mode md5 15 Huawei 3 1 34 ospf cost Syntax ospf cost value undo ospf cost View Interface view Parameter value Cost for running OSPF protocol ranging from 1 to 65535 Description Using ospf cost command you can configure different message sending costs so as to send messages from different interfaces Using undo ospf cost command you can restore the default cost...

Page 251: ...the vote collision occurs Example Set the priority of the interface Vlan interface 1 to 8 when electing the DR Quidway interface Vlan interface 1 Quidway Vlan interface1 ospf dr priority 8 3 1 36 ospf mib binding Syntax ospf mib binding process id undo ospf mib binding View System view Parameter process id Process ID of OSPF ranging from 1 to 65535 Description Using the ospf mib binding command yo...

Page 252: ...u can enable the interface to write MTU value when sending DD packets Using undo ospf mtu enable command you can restore the default settings By default The MTU value is 0 when sending DD packets i e the actual MTU value of the interface is not written Database Description DD packets are used to describe its own LSDB when the router running OSPF protocol is synchronizing the database The default M...

Page 253: ...TM HDLC or X 25 is adopted OSPF defaults the network type to NBMA z Point to Multipoint p2mp OSPF will not default the network type of any link layer protocol to p2mp The general undertaking is to change a partially connected NBMA network to p2mp network if the NBMA network is not fully meshed z Point to point p2p If PPP LAPB or POS is adopted OSPF defaults the network type to p2p NBMA means that ...

Page 254: ...dead interval of the OSPF peer Using undo ospf timer dead command you can restore the default value of the dead interval of the peer By default the dead interval for the OSPF peers of p2p and broadcast interfaces are 40 seconds and for those of p2mp and nbma interfaces is 120 seconds The dead of OSPF peers means that within this interval if no Hello message is received from the peer the peer will ...

Page 255: ...imer hello command you can restore the interval to the default value By default the interval is 10 seconds for an interface of p2p or broadcast type to transmit Hello messages and 30 seconds for an interface of nbma or p2mp type For the related commands see ospf timer dead Example Configure the interval of transmitting Hello messages on the interface Vlan interface 1 to 20 seconds Quidway interfac...

Page 256: ...n interface2 ospf timer poll 120 3 1 42 ospf timer retransmit Syntax ospf timer retransmit interval undo ospf timer retransmit View Interface view Parameter interval Interval in second for re transmitting LSA on an interface It ranges from 1 to 3600 The default value is 5 seconds Description Using ospf timer retransmit command you can configure the interval for LSA re transmitting on an interface ...

Page 257: ... is 1 second Description Using ospf trans delay command you can configure the LSA transmitting delay on an interface Using undo ospf trans delay command you can restore the default value of the LSA transmitting delay on an interface LSA will age in the link state database LSDB of the router as time goes by add 1 for every second but it will not age during network transmission Therefore it is neces...

Page 258: ...router as 10 1 1 1 Quidway ospf 1 peer 10 1 1 1 3 1 45 preference Syntax preference ase value undo preference ase View OSPF view Parameter value OSPF protocol route preference ranging from 1 to 255 ase Indicate the preference of an imported external route of the AS Description Using preference command you can configure the preference of an OSPF protocol route Using undo preference command you can ...

Page 259: ...ess id Process ID of OSPF ranging from 1 to 65535 Description Using reset ospf all command you can reset all the OSPF process Using reset ospf process id command you can reset the corresponding OSPF process This command can be used to reset the OSPF process and the following results are expected z Clear invalid LSA immediately without waiting for LSA timeout z If the Router ID changes a new Router...

Page 260: ...ysical interface with the greatest IP address value will be the router ID Router ID is a 32 bit unsigned integer that uniquely identifies a router in an OSPF autonomous system The user can specify the ID for a router If the user doesn t specify router ID the router will automatically select one from configured IP address as the ID of this router If no IP address is configured for any interface of ...

Page 261: ... so as to prevent the router on some network from receiving the OSPF routing information On a switch this command can disable enable the specified VLAN interface to send OSPF packets Example Disable interface Vlan interface 2 to transmit OSPF packet Quidway ospf 1 silent interface Vlan interface 2 3 1 49 snmp agent trap enable ospf Syntax snmp agent trap enable ospf process id ifstatechange virifs...

Page 262: ...n Using the undo snmp agent trap enable ospf command you can disable the OSPF TRAP function This command cannot be applied to the OSPF processes that are started after the command is executed By default the switch does not send TRAP packets in case of OSPF anomalies For detailed configuration of SNMP TRAP refer to the module System Management in this manual Example Enable the TRAP function for OSP...

Page 263: ...ds Quidway ospf 1 spf schedule interval 6 3 1 51 stub Syntax stub no summary undo stub View OSPF Area view Parameter no summary ABR is disabled to transmit Summary LSAs to the STUB area Description Using stub command you can configure the type of an OSPF area as stub Using undo stub command you can cancel the settings By default no area is set to be the STUB area If the router is an ABR it will se...

Page 264: ...the interface This value must equal the authentication key of the virtually linked peer keyid Specify the MD5 authentication key ID Its value ranges from 1 to 255 It must be equal to the authentication key ID of the virtually linked peer key Specify the MD5 authentication key If it is input in a plain text form the key is a character string not exceeding 16 characters And it will be displayed in a...

Page 265: ...t Switches Chapter 3 OSPF Configuration Commands Huawei Technologies Proprietary 3 52 Example Create a virtual link to 10 110 0 3 and use the MD5 cipher authentication mode Quidway ospf 1 area 10 0 0 0 Quidway ospf 1 area 10 0 0 0 vlink peer 10 110 0 3 md5 3 345 ...

Page 266: ...tion mode simple md5 ip osi View IS IS view Parameter simple Configure to transmit the password in simple text md5 Configure to transmit the password encrypted with MD5 algorithm password If the authentication is in the simple mode the password must be in plain text If the authentication is in the md5 mode the password can be either in cipher text or in plain text and it will be displayed in a cip...

Page 267: ...time this command will let ISIS insert the area authentication password into all the level 1 routing packets sent by this node in a certain mode For the related commands see reset isis all domain authentication mode isis authentication mode Example Set the area authentication password as hello and the authentication type as simple Quidway isis Quidway isis area authentication mode simple hello 4 1...

Page 268: ...compatible 4 1 3 debugging isis Syntax debugging isis is adjacency all authentication error checksum error circuit information configuration error datalink receiving packet datalink sending packet general error interface information memory allocating receiving packet content self originate update sending packet content snp packet spf event spf summary spf timer task error timer update packet undo ...

Page 269: ...col snp packet CSNP PSNP packet of IS IS spf event IS IS SPF events spf summary Statistics about IS IS performing SPF calculation spf timer IS IS SPF trigger events task error IS IS events status timer IS IS timer update packet Updated packets through IS IS protocol Description Using the debugging isis command you can enable IS IS debugging Using the undo debugging isis command you can disable the...

Page 270: ...generated on L1 LSP If level level 2 is set in Route policy view the default route will be generated on L2 LSP If level level 1 2 is set in Route policy view the default route will be generated on both L1 LSP and L2 LSP Example Set the router to create the default route in the LSP of correspond level Quidway isis default route advertise 4 1 5 display isis brief Syntax display isis brief View Any v...

Page 271: ... the interface and so on Besides displaying all the information shown by the display isis interface command the display isis interface verbose command displays such information about the IS IS parameters of the interface as CSNP packet broadcast interval Hello packet broadcast interval and invalid number of Hello packet Example Display the information about the enabled IS IS interface Quidway disp...

Page 272: ...te database of level 2 LSPID Specify the LSPID of the Network entity title local Configure to display the local information of the link state database verbose Configure to display the verbose information of the link state database Description Using display isis lsdb command you can view the link state database of the IS IS Example Display the verbose information of an LSP Quidway display isis lsdb...

Page 273: ... information of IS IS mesh group Quidway Vlan interface20 display isis mesh group Interface Mesh group Blocked Vlan interface 10 100 Vlan interface 20 100 4 1 9 display isis peer Syntax display isis peer verbose View Any view Parameter verbose When this parameter is configured the area address carried in the Hello packet from the neighbor will be displayed Otherwise only the universal information ...

Page 274: ...uit ID State HoldTime Type Pri OSI IP 0000 0000 6502 Vlan interface1000 0000 0000 6502 02 Up 9s L1 64 N Y 0000 0000 6502 Vlan interface1001 0001 0000 6506 02 Up 24s L1 64 N Y 4 1 10 display isis route Syntax display isis clns ip route View Any view Parameter clns Configure the interface to activate the OSI IS IS routing process ip Configure the interface to activate the IP IS IS routing process De...

Page 275: ...meter none Description Using display isis spf log command you can view the SPF calculation log information of the IS IS Example View the SPF calculation log of IS IS Quidway display isis spf log Details of Level 1 SPF Run Trig Event No Of Nodes Duration ms StartTime IS_SPFTRIG_LSPCHANGE 2 19 1 12 1 IS_SPFTRIG_LSPCHANGE 2 19 1 11 58 IS_SPFTRIG_LSPCHANGE 2 18 1 11 53 IS_SPFTRIG_CIRC_DOWN 2 19 1 11 4...

Page 276: ...y current configuration command is executed A plain text password is a sequential character string of no more than 16 characters for example h3c The length of an cipher text must be 24 characters for example _ TT8F Y 5SQ Q MAF4 1 ip If this item is configured the system checks the configuration of the corresponded field of the IP in LSP osi If this item is configured the system checks the configur...

Page 277: ...y isis domain authentication mode simple huawei 4 1 13 filter policy export Syntax filter policy acl number export protocol undo filter policy acl number export protocol View IS IS view Parameter acl number Specify the number of the access control list ranging 2000 to 3999 protocol Specify the protocols that distribute routing information including direct static rip bgp ospf ospf nssa and ospf ase...

Page 278: ...00 to filter the routes imported by IS IS Quidway isis filter policy 2000 export 4 1 14 filter policy import Syntax filter policy acl number import undo filter policy acl number import View IS IS view Parameter acl number Specify the number of the access control list ranging 2000 to 3999 Description Using filter policy import command you can configure to filter the routes received by IS IS Using u...

Page 279: ...IS will calculate its checksum and compares the result with the checksum in the LSP packet This process is the checksum authentication over the received LSP By default though the checksum in the packet is found not in consistent with the calculated result the LSP is processed as normal However if not ignoring LSP checksum error is set with the ignore lsp checksum error command the LSP will be disc...

Page 280: ...el 1 and Level 2 routing table route policy route policy name Configure to import the routes matching the conditions defined in the specified route policy only The length of route policy name parameter ranges from 1 to 16 character string Description Using import route command you can configure IS IS to import the routing information of other protocols Using undo import route command you can cance...

Page 281: ...ed commands see import route Example Import routing information of a router from a Level 2 area to a Level 1 area Quidway acl number 3100 permit any Quidway isis Quidway isis import route isis level2 into level1 acl 3100 4 1 18 isis Syntax isis tag undo isis tag View System view Parameter tag the name given to the ISIS process The name length should be no longer than 128 characters and it can be 0...

Page 282: ...on mode simple md5 password level 1 level 2 ip osi View VLAN interface view Parameter simple Configure to transmit the password in plain text md5 Configure to transmit the password encrypted with MD5 algorithm password If the authentication is in the simple mode the password must be in plain text If the authentication is in the md5 mode the password can be either in cipher text or in plain text an...

Page 283: ... password is set but no parameter is specified the default settings are level 1 and osi For the related commands see area authentication mode domain authentication mode Example Set the authentication password tangshi in plain text for the Level 1 neighboring relationship on Interface Vlan interface 10 Quidway interface Vlan interface 10 Quidway Vlan interface10 isis authentication mode simple tang...

Page 284: ... and receiving of level 2 hello packets Quidway interface Vlan interface 10 Quidway Vlan interface10 isis enable Quidway Vlan interface10 isis circuit level level 1 4 1 21 isis cost Syntax isis cost value level 1 level 2 undo isis cost level 1 level 2 View Interface view Parameter value Specify the link cost used in the SPF calculation of corresponding level Its range is 0 to 63 By default the val...

Page 285: ...cify the priority when selecting level 1 DIS level 2 Specify the priority when selecting level 2 DIS If the level is not specified it defaults to setting both Level 1 and level 2 priority Description Using isis dis priority command you can configure the priority of an interface for the DIS election Using undo isis dis priority command you can restore the default priority The IS IS protocol does no...

Page 286: ...ting process is not enabled on an interface For the normal operation of the IS IS protocol the isis command must be used to enable the IS IS process Then the network entity command is used to set a Network Entity Title NET for the router And at last the isis enable command is used to enable each interface on which the IS IS process runs The IS IS protocol is actually enabled upon the completion of...

Page 287: ... NBMA network with higher connectivity and several point to point links will cause repeated LSP flooding and waste bandwidth The interface joining a mesh group only floods the received LSP to the interfaces beyond the local mesh group Be sure to provide some redundancy when adding an interface to a mesh group or blocking it avoiding the affect to the normal flooding of the LSP due to link failure ...

Page 288: ...s timer hello Syntax isis timer hello seconds level 1 level 2 undo isis timer hello level 1 level 2 View Interface view Parameter seconds Specify the Hello interval ranging from 3 to 255 and measured in seconds The default value is 10 seconds level 1 Specify the Level 1 Hello interval level 2 Specify the Level 2 Hello interval If the level is not specified it defaults to setting the Hello interval...

Page 289: ... isis timer holding multiplier command you can restore the default settings The default number of invalid Hello messages is 3 ISIS protocol maintains the adjacency between the adjacent routers by sending and receiving Hello messages If the local router does not receive a Hello message from the peer within an interval it regards the neighbor unavailable The interval is the ISIS holddown time In ISI...

Page 290: ...an restore the default setting For the related commands see isis timer retransmit Example Set the LSP interval on Interface Vlan interface 1 to 500 milliseconds Quidway interface Vlan interface 1 Quidway Vlan interface1 isis timer lsp 500 4 1 29 isis timer retransmit Syntax isis timer retransmit seconds undo isis timer retransmit View Interface view Parameter seconds Specify the the retransmission...

Page 291: ... the router to operate at Level 1 only calculate the intra area routes and maintain the LSDB of L1 level 1 2 Configure the router to operate at Level 2 calculate both the L1 and L2 routes and maintain the LSDB of L1 and L2 level 2 Configure the router to operate at Level 2 only switch L2 LSP and calculate the L2 routes and maintain the LSDB of L2 Description Using is level command you can configur...

Page 292: ...view Parameter none Description Using log peer change command you can log the peer changes Using undo log peer change command you can configure not to log the peer changes By default peer changes log disabled After peer changes log is enabled the IS IS peer changes will be output on the configuration terminal until the log is disabled Example Configure to output the IS IS peer changes on the curre...

Page 293: ...the Network Entity Title in the X X XXXX XXXX 00 format in which the first X X is the area address the twelve Xs in the middle is the System ID of the router and the 00 in the end is SEL Description Using network entity command you can configure the name of Network Entity Title NET of the IS IS routing process Using undo network entity command you can delete a NET By default the value is No NET NE...

Page 294: ...efault the value is 15 Description Using preference command you can configure the preference of IS IS protocol Using undo preference command you can restore the default value Several dynamic routing protocols could run simultaneously on a router In this case there is an issue of sharing and selecting the routing information among all the routing protocols The system sets a preference for each rout...

Page 295: ... the old LSP still remain on the router This command can be used to clear them For the related commands see area authentication mode domain authentication mode Example Reset all the IS IS data structures Quidway reset isis all 4 1 36 reset isis peer Syntax reset isis peer system id View User view Parameter system id Specifies the system ID of IS IS neighbor Description Using reset isis peer comman...

Page 296: ...flag is set If a router is configured with the overload flag the routes it calculates will be ignored by other routers in SPF calculation However the directly connected routes will not be ignored And other routers should not send this router the packets which should be forwarded by it Example Set overload flag on the current router Quidway isis set overload 4 1 38 silent interface Syntax silent in...

Page 297: ...fy number of routes to process before releasing CPU It is in unit of piece with the range from 1000 to 50000 By default the value is 5000 pieces Description Using spf delay interval command you can configure number of routes to process before releasing CPU in the SPF calculation Using undo spf delay interval command you can restore the default setting When there are a large number of routes in the...

Page 298: ...value is 0 Description Using spf slice size command you can configure the duration of one cycle when IS IS performs SPF route calculation Using undo spf slice size command you can restore the default setting When there is a large number of routes in the routing table this command can be used to enable the SPF calculation in slices to prevent it from occupying the system resources for a long time T...

Page 299: ...el 1 and Level 2 If the level is not specified it defaults to setting level 2 aggregation Description Using summary command you can configure IS IS route summary Using undo summary command you can cancel the summary By default no routes will be summarized Similarly the routes with the same next hops can be aggregated into one route In this way the sizes of the routing table LSP packets and LSDB ar...

Page 300: ...e time goes If updated LSP has not been received before the old one times out this LSP will be deleted from the LSDB For the related commands see timer lsp refresh Example Set the lifetime of an LSP generated by the current system to 25 minutes i e 1500 seconds Quidway isis timer lsp max age 1500 4 1 43 timer lsp refresh Syntax timer lsp refresh seconds undo timer lsp refresh View IS IS view Param...

Page 301: ...ls Description Using timer spf command you can configure the interval for the SPF calculation of corresponding level Using undo timer spf command you can restore the system default value that is 5 seconds Usually when the LSDB of the corresponding level is changed SPF calculation is required However when the network is unstable and LSDB changes frequently if the SPF calculation is performed too fr...

Page 302: ...f the manual 5 1 BGP Configuration Commands Note For the commands defining routing policies in BGP refer to the Routing Policy of the next chapter 5 1 1 aggregate Syntax aggregate address mask as set attribute policy route policy name detail suppressed origin policy route policy name suppress policy route policy name undo aggregate address mask as set attribute policy route policy name detail supp...

Page 303: ...Use this keyword carefully when many AS paths need to be aggregated for the frequent change of routes may lead to route vibration detail suppress ed This keyword does not establish any aggregated route but it restrains the advertisement of all the specific routes If only some specific routes are to be restrained use the peer filter policy command carefully suppress polic y Create an aggregated rou...

Page 304: ...fferent as med Syntax compare different as med undo compare different as med View BGP view Parameter none Description Using compare different as med command you can enable comparison of MED values from different AS neighboring routes when determining the best route Using undo compare different as med command you can disable the comparison By default it is disabled to compare the MED attribute valu...

Page 305: ...S domain The solution is first dividing the AS domain into several smaller sub ASs and each sub ASs remains full connected These sub ASs form a confederation Key BGP attributes of the route such as next hop MED local preference are not discarded across each sub ASs The sub ASs still look like a whole from the point of view of a confederation although these sub ASs have EBGP relations This can assu...

Page 306: ...tion Using confederation nonstandard command you can configure the router to be compatible with routers not following RFC1965 Using undo confederation nonstandard command you can disable this function By default it is in accordance with RFC1965 For the related commands see confederation id confederation peer as Example AS100 contains routers following nonstandard which is composed of two sub ASs 6...

Page 307: ...ration is invalid The configured ASs in this command are inside the confederation and each AS uses fully meshed network The confederation appears as a single AS to the routers outside it For the related commands see confederation nonstandard confederation id Example Configure the confederation contains AS 2001 and 2002 Quidway bgp confederation peer as 2000 2001 5 1 7 dampening Syntax dampening ha...

Page 308: ...te attenuation valid or modify various BGP route attenuation parameters Using undo dampening command you can make the characteristics invalid By default no route attenuation is configured For the related commands see reset bgp dampening reset bgp flap info display bgp routing table dampened display bgp routing table flap info Example Modify various BGP route attenuation parameters Quidway bgp damp...

Page 309: ...you can enable the information debugging of BGP events Using debugging bgp keepalive command you can enable the information debugging of BGP Keepalive packets Using debugging bgp packet command you can enable the information debugging of BGP packets Using undo debugging bgp command you can disable the debugging functions Example Enable the information debugging of BGP packets Quidway debugging bgp...

Page 310: ...ndo default med View BGP view Parameter med value MED value to be specified The range is 0 to 4294967295 By default the med value is 0 Description Using default med command you can configure the default system metric Using undo default med command you can restore the default metric of the system In the case that all other conditions are the same the system first selects the route with the smaller ...

Page 311: ... export policy route policy no export policy filter policy no export policy acl no export policy ip prefix route policy specified in import policy aaa no import policy filter policy no import policy acl no import policy ip prefix no default route produce Table 5 2 Description of information generated by the command display bgp group Field Description Group Name of peer group type Type of peer grou...

Page 312: ...has been configured Example Display the routing information that has been configured Quidway display bgp network Network Mask Route policy 133 1 1 0 255 255 255 0 None 112 1 0 0 255 255 0 0 None Table 5 3 Description of information generated by the command display bgp network Field Description Network Network address Mask Mask Route policy Configured route policy 5 1 13 display bgp paths Syntax di...

Page 313: ...ngth of aggregate route Origin attribute of route which indicates that the route updates its origin relative to the route originating it from AS It has three optional values IGP The route belongs to inside of AS BGP treats aggregate route and the route defined by the command network as inside of AS and origin type as IGP EGP The route is learned from exterior gateway protocol EGP Origin INC Short ...

Page 314: ...nfiguration within the peer no export policy route policy no export policy ip prefix no export policy filter policy no export policy acl no import policy route policy no import policy ip prefix no import policy filter policy no import policy acl no default route produce Table 5 5 Description of information generated by the command display bgp peer verbose Field Description Peer IP address of peer ...

Page 315: ...escription Using display bgp routing table command you can view all the BGP routing information Example Display all the BGP routing information Quidway display bgp routing table Flags valid active I internal D damped H history S aggregate suppressed B balance Dest Mask Next hop Med Local pref Origin As path 129 1 1 0 24 5 5 5 5 IGP 600 129 1 2 0 24 5 5 5 5 IGP 600 129 1 3 0 24 5 5 5 5 IGP 600 129 ...

Page 316: ...to 4294967295 Origin attribute of route which indicates that the route updates its origin relative to the route originating it from AS It has three optional values IGP The route belongs to inside of AS BGP treats aggregate route and the route defined by the command network as inside of AS and origin type as IGP EGP The route is learned from exterior gateway protocol EGP Origin INC Short for INCOMP...

Page 317: ...istory S aggregate suppressed B balance Dest Mask Pref Next Hop Med Local pref Origin As path 1 1 1 0 24 256 10 10 10 1 0 IGP 200 1 1 2 0 24 256 10 10 10 1 0 IGP 200 1 1 3 0 24 256 10 10 10 1 0 IGP 200 2 2 3 0 24 256 10 10 10 1 0 INC 200 4 4 4 0 24 256 10 10 10 1 0 INC 200 9 9 9 0 24 256 10 10 10 1 0 INC 200 10 10 10 0 24 256 10 10 10 1 0 IGP 200 22 1 0 0 16 256 200 1 7 2 100 INC 200 88 1 0 0 16 6...

Page 318: ...unknown learned by other methods BGP sets the origin of the route imported through other IGP protocols as INCOMPLETE As path AS path attribute of route which records all AS areas that the route passes With it route loop can be avoided 5 1 17 display bgp routing table cidr Syntax display bgp routing table cidr View Any view Parameter None Description Using display bgp routing table cidr command you...

Page 319: ...ub ASs whole match Configure to display the exactly matched routes Description Using display bgp routing table community command you can view the routing information related to the specified BGP community number in the routing table Example Display the routing information matching BGP community number 11 22 Quidway display bgp routing table community 11 22 Flags valid active I internal D damped H ...

Page 320: ...community list 1 Quidway display bgp routing table community list 1 Flags valid active I internal D damped H history S aggregate suppressed B balance Destination Mask Pref Next hop Med Local Pref Origin As Path 1 1 1 0 24 256 10 10 10 1 0 IGP 200 1 1 2 0 24 256 10 10 10 1 0 IGP 200 1 1 3 0 24 256 10 10 10 1 0 IGP 200 2 2 3 0 24 256 10 10 10 1 0 INC 200 4 4 4 0 24 256 10 10 10 1 0 INC 200 9 9 9 0 2...

Page 321: ...essed B balance Dest Mask Source Damping limit Origin As path D 11 1 0 0 16 133 1 1 2 1 20 00 IGP 200 Table 5 8 Description of information generated by the command display bgp routing table dampened Item Description Flags State flags valid valid active selected D damped discarded H history history I internal interior gateway protocol S aggregate suppressed suppressed B balance D The valid and damp...

Page 322: ... learned by other methods BGP sets the origin of the route imported through other IGP protocols as INCOMPLETE As path AS path attribute of route which records all AS areas that the route passes With it route loop can be avoided 5 1 21 display bgp routing table different origin as Syntax display bgp routing table different origin as View Any view Parameter None Description Using display bgp routing...

Page 323: ...nfo matching AS path regular expression acl number Number of the specified AS path to be matched ranging from 1 to 199 network address Network IP address related to the dampening information to be shown mask Network mask longer match Show the route flap info that is more specific than address mask Description Using display bgp routing table flap info command you can view BGP flap info Example Disp...

Page 324: ...sed Flap times The times of the route flap Origin attribute of route which indicates that the route updates its origin relative to the route originating it from AS It has three optional values IGP The route belongs to inside of AS BGP treats aggregate route and the route defined by the command network as inside of AS and origin type as IGP EGP The route is learned from exterior gateway protocol EG...

Page 325: ... the routing information advertised by BGP peer 1 1 1 2 Quidway display bgp routing table peer 1 1 1 2 advertised Dest Mask Next hop Med Local pref Origin As path Appendant Flags Queued 1 1 1 0 24 1 1 1 1 0 100 INC Here Appendat Flags indicates the appended flag the route to be sent the reachable route and to cancel route For detailed description of the output information see Table 5 6 5 1 24 disp...

Page 326: ...4 4 0 24 256 10 10 10 1 0 IGP 200 9 9 9 0 24 256 10 10 10 1 0 INC 200 10 10 10 0 24 256 10 10 10 1 0 IGP 200 For detailed description of the output information see Table 5 6 5 1 25 display bgp routing table statistic Syntax display bgp routing table statistic View Any view Parameter None Description Using display bgp routing table statistic command you can view the statistics of BGP routing infoma...

Page 327: ...tion to the received routing information is not configured If the parameter protocol is specified only the imported route generated by the specified protocol is filtered and the imported routes generated by other protocols are not affected If the parameter protocol is not specified the imported route generated by any protocol will be filtered Example Use ACL 2000 to filter the routing information ...

Page 328: ...is not configured This command can be used to filter the routes received by BGP and determines whether to add the routes to the BGP routing table Example Use ACL 2000 to filter the routing information received by BGP Quidway bgp filter policy 2000 import 5 1 28 group Syntax group group name internal external undo group group name View BGP view Parameter group name Specify the name of the peer grou...

Page 329: ...stributes route ranging from 0 to 4294967295 route policy route policy name Specify a route policy The length of route policy name parameter ranges from 1 to 16 character string Description Using import route command you can import routes of other protocols Using undo import route command you can cancel redistributing routes of other protocols By default BGP does not import routes of other protoco...

Page 330: ...subconfed no advertise no export ip community list adv comm list number permit deny as regular expression undo ip community list basic comm list number adv comm list number View System view Parameter basic comm list number Number of the basic community list ranging from 1 to 99 adv comm list number Number of the advanced community list ranging from 100 to 199 permit Permit those that match conditi...

Page 331: ...ration Quidway ip community list 6 permit no export subconfed 5 1 32 network Syntax network ip address address mask route policy route policy name undo network ip address address mask route policy route policy name View BGP view Parameter ip address Network address that BGP advertises address mask Mask of the network address route policy name Route policy applied to advertised routes The length of...

Page 332: ...Using undo peer advertise community command you can cancel the existing configuration By default the community attribute is not transmitted to any peer group For the related commands see if match community list apply community Example Transmit community attribute to the peer group name test Quidway bgp peer test advertise community 5 1 34 peer allow as loop Syntax peer group name peer address allo...

Page 333: ...2 Quidway bgp peer 1 1 1 1 allow as loop 2 5 1 35 peer as number Syntax peer group name as number as number undo peer group name as number View BGP view Parameter group name Name of peer group as number The AS number of the peer peer group the range is 1 to 65535 Description Using peer as number command you can configure the AS number of peer group Using undo peer as number command you can delete ...

Page 334: ...h acl command you can cancel the existing configuration By default the peer group has no AS path list This command can only be configured on peer group For the related commands see peer as path acl import Example Set the AS path ACL of the peer group test Quidway bgp peer test as path acl 3 export 5 1 37 peer as path acl import Syntax peer group name peer address as path acl acl number import undo...

Page 335: ...up name peer address connect interface interface name undo peer group name peer address connect interface interface name View BGP view Parameter group name Specified peer group peer address IP address of the peer interface name Interface name Description Using peer connect interface command you can specify the source interface of a route update packet Using undo peer connect interface command you ...

Page 336: ...you can cancel the existing configuration By default a peer group does not import the default route For this command no default route needs to exist in the routing table A default route is sent unconditionally to a peer with the next hop as itself For the related commands see default route advertise Example Configure a peer group named test to generate a default route Quidway bgp peer test default...

Page 337: ...on information of the peer whose name is group1 as beijing1 Quidway bgp peer group1 description beijing1 5 1 41 peer ebgp max hop Syntax peer group name ebgp max hop ttl undo peer group name ebgp max hop View BGP view Parameter group name Specify Name of the peer group ttl Maximum hop value The range is 1 to 255 By default the value is 64 Description Using peer ebgp max hop command you can allow t...

Page 338: ...isabled the router will not exchange routing information with the specified peer peer group Example Disable the specified peer Quidway bgp peer 18 10 0 9 group group1 Quidway bgp undo peer 18 10 0 9 enable 5 1 43 peer filter policy export Syntax peer group name filter policy acl number export undo peer group name filter policy acl number export View BGP view Parameter group name Specify the name o...

Page 339: ...ameter group name Specify the name of the peer group peer address Specify the IP address of the peer acl number Specify an IP acl number ranging from 2000 to 3999 import Ingress filter policy Description Using peer filter policy import command you can configure the filter policy list of the routes received by a peer peer group Using undo peer filter policy import command you can cancel the existin...

Page 340: ... peer to a IBGP peer group or to a EBGP peer group with AS number you need not specify the AS number for the peer Example Add a peer to the peer group test Quidway bgp group test Quidway bgp peer test as number 2004 Quidway bgp peer 10 1 1 1 group test 5 1 46 peer ip prefix export Syntax peer group name ip prefix prefixname export undo peer group name ip prefix prefixname export View BGP view Para...

Page 341: ...name peer address ip prefix prefixname import View BGP view Parameter group name Name of peer group peer address IP address of the peer prefixname Name of the specified ip prefix import Apply the filtering policy on the route received by the specified peer peer group Description Using peer ip prefix import command you can configure the route filtering policy of routes received by the peer peer gro...

Page 342: ... configuration Example When BGP distributes the routes to the peer group test it will take its own address as the next hop Quidway bgp peer test next hop local 5 1 49 peer password Syntax peer group name peer address password cipher simple password undo peer group name peer address password View BGP view Parameter group name Name of the peer group peer address IP address of the peer in dotted deci...

Page 343: ...d to configure MD5 authentication for the specific peer only when the peer group to which the peer belongs is not configured with MD5 authentication Otherwise the peer should be consistent with the peer group Example Adopt MD5 authentication on the TCP connection set up between the local router at 10 1 100 1 and the peer router at 10 1 100 2 Quidway bgp peer 10 1 100 2 password simple huawei Perfo...

Page 344: ...eer test public as only 5 1 51 peer reflect client Syntax peer group name reflect client undo peer group name reflect client View BGP view Parameter group name Name of peer group Description Using peer reflect client command you can configure a peer group as the route reflector client Using undo peer reflect client command you can cancel the existing configuration This command only applies to peer...

Page 345: ...Example Apply the Route policy named test policy to the route coming from the peer peer group test Quidway bgp peer test route policy test policy export 5 1 53 peer route policy import Syntax peer group name peer address route policy route policy name import undo peer group name peer address route policy route policy name import View BGP view Parameter group name Name of peer group peer address IP...

Page 346: ...g BGP update packets route The range is 0 to 600 By default the advertisement interval is 5 seconds for internal peer peer group and 30 seconds for external peer peer group Description Using peer route update interval command you can configure the interval for the transmission route of a peer group Using undo peer route update interval command you can restore the interval to the default value Exam...

Page 347: ...r configured by using this command has a higher priority than the one configured by using the timer command Example Configure Keepalive and Holdtime intervals of the peer group test Quidway bgp peer test timer keep alive 60 hold 180 5 1 56 preference Syntax preference ebgp value ibgp value local value undo preference View BGP view Parameter ebgp value Set preference value for routes learned from e...

Page 348: ... preferences of EBGP IBGP and locally generated routes to 170 Quidway bgp preference 170 170 170 5 1 57 reflect between clients Syntax reflect between clients undo reflect between clients View BGP view Parameter none Description Using reflect between clients command you can configure the between client reflection of a route Using undo reflect between clients command you can disable this function B...

Page 349: ... Router ID as the cluster ID For the related commands see reflect between clients peer reflect client Example Set the cluster ID of the route reflector as 80 Quidway bgp reflector cluster id 80 5 1 59 refresh bgp Syntax refresh bgp all peer address group group name import export View User view Parameter all Reset all the connections with BGP peer address Reset connection with a specified BGP peer ...

Page 350: ...p info of a record at this peer address Description Using reset bgp peer address command you can reset the connection of BGP with a specified BGP peer Using reset bgp all command you can reset all the connections with BGP Example Reset all the BGP connections to enable the new configuration after configuring the new Keepalive interval and Holdtime interval using the timer command Quidway reset bgp...

Page 351: ...info regular expression as regular expression as path acl acl number network address mask View User view Parameter regular expression as regular expression Reset the flap info matching the AS path regular expression as path acl acl number Reset the flap info in consistency with a specified filter list The range of the parameter acl number is 1 to 199 network address Reset the flap info of a record...

Page 352: ...Reset BGP connections of all members from group1 Quidway reset bgp group group1 5 1 64 summary Syntax summary undo summary View BGP view Parameter none Description Using summary command you can configure auto aggregation of sub network routes and disable it by using undo summary command By default no auto aggregation of sub network routes is executed After the summary is configured BGP cannot rece...

Page 353: ...ption Using timer command you can configure the Keep alive and Hold time timer of BGP Using undo timer command you can restore the default value of the Keep alive and Hold time of the timer Example Configure the Keep alive timer as 30 seconds and Hold time timer as 90 seconds Quidway bgp timer keep alive 30 hold 90 5 1 66 undo synchronization Syntax undo synchronization View BGP view Parameter non...

Page 354: ...ely after it learns the route rather than waiting till the IGP also learns the route This command means BGP does not synchronize with IGP in current system You need not configure it for S6500 Series Ethernet Switches don t support synchronization of BGP and IGP at present Example Cancel the synchronization of BGP and IGP Quidway bgp undo synchronization ...

Page 355: ...1 IP Routing Policy Configuration Commands The above describes the configuration commands in the routing policy which are independent of any specific routing protocol 6 1 1 apply as path Syntax apply as path as number 1 as number 2 as number 3 undo apply as path View Route policy view Parameter as number 1 as number n AS number to be added Description Using apply as path command you can configure ...

Page 356: ...iation outside but can advertises to other sub ASs additive Additional known community attribute none Deleted route community attribute Description Using apply community command you can configure the set BGP community attribute of Route policy Using undo apply community command you can cancel the set BGP community attribute By default BGP community attribute is not set For the related commands see...

Page 357: ...st command you can cancel the apply sub statement For the related commands see if match interface if match acl if match ip prefix if match ip next hop if match cost if match tag route policy apply ip next hop apply local preference apply origin and apply tag Example Define one apply sub statement When it is used for setting route information attribute it sets the route metric value of route inform...

Page 358: ...w Route policy view Parameter ip address The next hop address Description Using apply ip next hop command you can configure the next hop address of route information This command is one attribute apply sub statements of Route policy Using undo apply ip next hop command you can cancel the apply sub statement By default no apply sub statement is defined When it is used for setting route information ...

Page 359: ...nd you can configure to apply the level of a matched route to be imported to level 1 level 2 or level 1 2 Using undo apply isis command you can cancel the apply sub statement By default no apply clause is defined For the related commands see if match interface if match acl if match ip prefix if match ip next hop if match cost if match tag route policy apply ip next hop apply cost apply origin appl...

Page 360: ...ute Quidway route policy apply local preference 130 6 1 8 apply origin Syntax apply origin igp egp as number incomplete undo apply origin View Route policy view Parameter igp Set the BGP route information source as internal route egp Set the BGP route information source as external route as number Specifies AS number of external route incomplete Setting the BGP route information source as unknown ...

Page 361: ... you can cancel the apply sub statement For the related commands see if match interface if match acl if match ip prefix if match ip next hop if match cost if match tag route policy apply ip next hop apply local preference apply cost and apply origin Example Define one apply sub statement When it is used for setting route information attribute it sets the tag area of route information as 100 Quidwa...

Page 362: ...ip prefix conditions Mode permit or deny ip prefix mask Address and network segment length of ip prefix GE Greater equal value of ip prefix network segment length LE Less equal value of ip prefix network segment length 6 1 11 display route policy Syntax display route policy route policy name View Any view Parameter route policy name Specifies displayed Route policy name The length of route policy ...

Page 363: ...ch clause 6 1 12 filter policy export Syntax filter policy acl number ip prefix ip prefix name export protocol undo filter policy acl number ip prefix ip prefix name export protocol View Routing protocol view Parameter acl number Number of the access control list used for matching the destination address field of the routing information ip prefix name Address prefix list used for matching the rout...

Page 364: ...fix ip prefix name import undo filter policy acl number ip prefix ip prefix name import View Routing protocol view Parameter acl number The access control list number used for matching the destination address field of the routing information ip prefix ip prefix name The prefix address list name Its matching object is the destination address field of the routing information The length of ip prefix ...

Page 365: ...ndo if match acl ip prefix View Route policy view Parameter acl number Specify the number of the access control list used for filtration ip prefix name Specify the prefix address list used for filtration The length of ip prefix name ranges from 1 to 19 character string Description Using if match acl ip prefix command you can configure the IP address range to match the Route policy Using undo if ma...

Page 366: ...By default AS path list number is not matched Example An as path numbered as 2 is defined first allowing the routing information of AS 100 and 200 Then the route policy named test is defined The node No 10 of this route policy defines a if match sub statement which quotes the definition of as path Quidway ip as path acl 2 permit 100 200 Quidway route policy test permit node 10 Quidway route policy...

Page 367: ...n of 100 and 200 Then the route policy named test is defined The node No 10 of the route policy defines a if match sub statement which quotes the definition of the community list Quidway ip community list 1 permit 100 200 Quidway route policy test permit node 10 Quidway route policy if match community 1 6 1 17 if match cost Syntax if match cost value undo if match cost View Route policy view Param...

Page 368: ...n Using if match interface command you can configure to match the route whose next hop is designated interface Using undo if match interface command you can cancel the setting of matching condition By default no if match sub statement is defined It matches the corresponding interface of route next hop when filtering route For the related commands see if match acl if match ip prefix if match ip nex...

Page 369: ...can cancel the setting of ACL matching condition Using undo if match ip next hop ip prefix command you can cancel the setting of address prefix list matching condition Filtration is performed by quoting an ACL or a address prefix list For the related commands see if match interface if match acl if match ip prefix if match cost if match tag route policy apply ip next hop apply cost apply local pref...

Page 370: ...ual less equal undo ip ip prefix ip prefix name index index number permit deny View System view Parameter ip prefix name The specified address prefix list name It identifies one address prefix list uniquely The length of ip prefix name ranges from 1 to 19 character string index number Identify an item in the prefix address list The item with smaller index number will be tested first permit Specify...

Page 371: ... prefix ranges of these two parts are both specified the IP to be filtered must match the prefix ranges of these two parts If you specify network len as 0 0 0 0 0 it only matches the default route Example The prefix address list of this address indicates to match the bits 1 to 8 and the bits 17 to 18 for filtering the IP address with the bits 1 to 8 and the bits 17 to 18 of the specified IP networ...

Page 372: ...he actions after passing the filtration of this node The filtering relationship between the if match sub statements of the node is and i e all if match sub statements that meet the node The filtering relation between Route policy nodes is OR i e passing the filtering of one node means passing the filtering of this Route policy If the information doesn t pass the filtration of any nodes it cannot p...

Page 373: ...ing display memory command you can view the memory setting Example Display the current memory setting Quidway display memory System Total Memory bytes 203563008 Total Used Memory bytes 77852012 Used Rate 38 The displayed information is described specifically in the following table Table 7 1 The description for the information displayed by the display memory command Item Description System Total Me...

Page 374: ...s and whether or not the current system is in the emergent state Example Display the current memory setting and state information Quidway display memory limit Current memory limit configuration information system memory safety 40 MBytes system memory limit 30 MBytes auto establish enabled Free Memory 125705152 Bytes The state information about connection The times of disconnect 0 The times of reco...

Page 375: ... Ethernet switch is 0 The current state Normal The current state is normal If entering the emergent state the system will display Exigence 7 1 3 memory safety limit Syntax memory safety safety value limit limit value undo memory safety limit View System view Parameter safety safety value The safety value of the Ethernet switch idle memory in the unit of Mbytes Its value range depends on the idle m...

Page 376: ... the Ethernet switch idle memory to the default configuration For the related commands see memory auto establish disable memory auto establish enable and display memory limit Example Set the lower limit of the Ethernet switch idle memory to 2Mbytes and the safety value to 4Mbytes Quidway memory safety 4 limit 2 7 1 4 memory auto establish disable Syntax memory auto establish disable View System vi...

Page 377: ...Description Using memory auto establish enable command the routing protocol connection that is forcibly disconnected to recover automatically when the idle memory of the Ethernet switch reaches this value By default when the idle memory of the Ethernet switch recovers to a safety value connections of all the routing protocols will always recover when the idle memory of the Ethernet switch reduces ...

Page 378: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual Multicast Protocol ...

Page 379: ...2 1 7 igmp snooping router aging time 2 6 2 1 8 reset igmp snooping statistics 2 6 Chapter 3 Multicast Common Configuration Commands 3 1 3 1 Multicast Common Configuration Commands 3 1 3 1 1 debugging multicast forwarding 3 1 3 1 2 debugging multicast kernel routing 3 2 3 1 3 debugging multicast status forwarding 3 2 3 1 4 display multicast forwarding table 3 3 3 1 5 display multicast routing tabl...

Page 380: ...m common 5 5 5 1 6 debugging pim dm 5 6 5 1 7 debugging pim sm 5 6 5 1 8 display pim bsr info 5 7 5 1 9 display pim interface 5 8 5 1 10 display pim neighbor 5 9 5 1 11 display pim routing table 5 10 5 1 12 display pim rp info 5 11 5 1 13 pim 5 12 5 1 14 pim bsr boundary 5 12 5 1 15 pim dm 5 13 5 1 16 pim neighbor limit 5 14 5 1 17 pim neighbor policy 5 14 5 1 18 pim sm 5 15 5 1 19 pim timer hello...

Page 381: ...sing debugging gmrp command you can enable GMRP debugging Using undo debugging gmrp you can disable GMRP debugging When IGMP snooping is enabled on the switch you can view these contents of the IGMP snooping configuration IGMP Snooping enabled or not aging time of the port maximum query response time aging time of the multicast port For the related command see igmp snooping Example Enable GMRP eve...

Page 382: ...GMRP This command is used for displaying the statistics information about GMRP including the list of ports with GMRP enabled GMRP status information GMRP failed registrations and last origin of GMRP packet data unit PDU Example Display the statistics information about GMRP on Ethernet 2 0 1 Quidway display gmrp statistics interface Ethernet 2 0 1 GMRP statistics on port Ethernet2 0 1 Gmrp Status E...

Page 383: ...eter None Description Using gmrp command you can enable global GMRP or enable GMRP on a port Using undo gmrp command you can configure the GMRP back to the default setting namely disabled By default GMRP is disabled Executed in system view this command will enable the global GMRP After performing this command in Ethernet port view GMRP will be enabled on a port Before enabling GMRP on a port you s...

Page 384: ...nooping configuration information of the switch The information displayed includes whether IGMP Snooping is enabled router port timeout maximum response timeout of a query and the member port timeout For the related command see igmp snooping Example Display the IGMP Snooping configuration information of the switch Quidway display igmp snooping configuration Enable IGMP Snooping The router port tim...

Page 385: ...witch is located It displays the information such as VLAN ID router port IP multicast group address member ports in the IP multicast group MAC multicast group MAC multicast group address and the member ports in the MAC multicast group Example Display the multicast group information about VLAN2 Quidway display igmp snooping group vlan 2 Multicast group table Vlan id 2 Router port s Ethernet0 1 IP g...

Page 386: ...d general IGMP query packets received IGMP specific query packets received IGMP Version 1 and Version 2 report packets received IGMP leave packets and error packets and sent IGMP specific query packets For the related command see igmp snooping Example Display statistics information about IGMP Snooping Quidway display igmp snooping statistics Received IGMP general query packet s number 0 Received I...

Page 387: ...ing using the display gmrp status command in any view before enabling IGMP Snooping z Although layer 2 and layer 3 multicast protocols can run together they cannot run on the same VLAN or its corresponding VLAN interface at the same time For example if the layer 2 multicast protocol is enabled on a VLAN then the layer 3 multicast protocol cannot operate on this VLAN and vice versa z IGMP Snooping ...

Page 388: ...should be comparatively short and vice versa For the related command see igmp snooping Example Set the aging time to 300 seconds Quidway igmp snooping host aging time 300 2 1 6 igmp snooping max response time Syntax igmp snooping max response time seconds undo igmp snooping max response time View System view Parameter seconds Maximum response time for a query ranging from 1 to 25 and measured in s...

Page 389: ...e command you can configure the router port aging time of IGMP Snooping Using undo igmp snooping router aging time command you can restore the default value The port here refers to the Ethernet switch port connected to the router The Layer 2 Ethernet switch receives general query packets from the router via this port The timer should be set to about 2 5 times of the general query period of the rou...

Page 390: ...nfiguration Commands Huawei Technologies Proprietary 2 7 Description Using reset igmp snooping statistics command you can reset the IGMP Snooping statistics information For the related command see igmp snooping Example Clear IGMP Snooping statistics information Quidway reset igmp snooping statistics ...

Page 391: ...er 3 Ethernet switches running IP multicast protocols 3 1 Multicast Common Configuration Commands 3 1 1 debugging multicast forwarding Syntax debugging multicast forwarding undo debugging multicast forwarding View User view Parameter None Description Using debugging multicast forwarding command you can enable multicast packet forwarding debugging functions Using undo debugging multicast forwarding...

Page 392: ...st kernel routing command you can disable the debugging functions Example Enable multicast kernel routing debugging functions Quidway debugging multicast kernel routing 3 1 3 debugging multicast status forwarding Syntax debugging multicast status forwarding undo debugging multicast status forwarding View User view Parameter None Description Using debugging multicast status forwarding command you c...

Page 393: ...terface Incoming interface of the multicast forwarding table register Register interface of PIM SM Description Using display multicast forwarding table command you can view the information of IP multicast forwarding table For the related command see display multicast routing table Example View the multicast forwarding table information Quidway display multicast forwarding table Multicast Forwardin...

Page 394: ...ace has an outgoing interface Vlan interface 2 Matched 236 pkts 3267 bytes Wrong If 0 pkts Forwarded 236 pkts 3267 bytes 236 matched packets 3267 bytes 0 matched packets means wrong 233 forwarded packets 3267 bytes Matched 2 entries 2 matched entries 3 1 5 display multicast routing table Syntax display multicast routing table group address mask mask mask length source address mask mask mask length...

Page 395: ...17 Uptime 00 15 16 Timeout in 272 sec Upstream interface Vlan interface1 4 4 4 6 Downstream interface list Vlan interface2 2 2 2 4 Protocol 0x1 IGMP 4 4 4 4 224 2 254 84 Uptime 00 15 16 Timeout in 272 sec Upstream interface Vlan interface1 4 4 4 6 Downstream interface list NULL 4 4 4 4 239 255 2 2 Uptime 00 02 57 Timeout in 123 sec Upstream interface Vlan interface1 4 4 4 6 Downstream interface li...

Page 396: ...able in the range of 0 to 1024 Description Using multicast route limit command you can limit the capacity of multicast routing table When the preset capacity is exceeded the router will discard new S G protocol and data packets Using undo multicast route limit command you can restore the limit to the default value By default the capacity of multicast routing table is set to 512 If the existing rou...

Page 397: ... pim sm Example Enable IP multicast routing Quidway system view Quidway multicast routing enable 3 1 8 reset multicast forwarding table Syntax reset multicast forwarding table statistics all group address mask group mask group mask length source address mask source mask source mask length incoming interface interface type interface number View User view Parameter statistics If it is selected the s...

Page 398: ...st forwarding table Example Clear the forwarding entry with address of 225 5 4 3 from the MFC forwarding table Quidway reset multicast forwarding table 225 5 4 3 Clear statistic information of the forwarding entry with address of 225 5 4 3 from the MFC forwarding table Quidway reset multicast forwarding table statistics 225 5 4 3 3 1 9 reset multicast routing table Syntax reset multicast routing t...

Page 399: ...he core multicast routing table as well as MFC forwarding entries You can type in source address first and group address after in the command as long as they both are valid addresses The system prompts error information if you type in invalid addresses For the related commands see reset pim routing table reset multicast forwarding table and display multicast forwarding table Example Clear the rout...

Page 400: ...tion Commands 4 1 1 debugging igmp Syntax debugging igmp all event host packet timer undo debugging igmp all event host packet timer View User view Parameter all All the debugging information of IGMP event Debugging information of IGMP event host Debugging information of IGMP host packet Debugging information of IGMP packets timer Debugging information of IGMP timers Description Using debugging ig...

Page 401: ...face The information displayed contains the multicast groups which are joined by the downstream hosts through IGMP or through command line For the related command see igmp host join Example View the member information of multicast group in the system Quidway display igmp group Total 1 IGMP group reported on this router Vlan interface7 90 7 1 1 No multicast group joined Vlan interface9 90 9 1 1 Tot...

Page 402: ...nd running information on an interface Example View the IGMP configuration and running information of all interfaces Quidway display igmp interface Vlan interface1 10 153 17 99 IGMP is enabled Current IGMP version is 2 Value of query interval for IGMP in seconds 60 Value of other querier time out for IGMP in seconds 120 Value of maximum query response time for IGMP in seconds 10 Value of robust co...

Page 403: ...ticast routing enable Example Enable IGMP on Vlan interface 10 Quidway Vlan interface10 igmp enable 4 1 5 igmp group limit Syntax igmp group limit limit undo igmp group limit View Interface view Parameter limit Quantity of multicast groups in the range of 0 to 1024 Description Using igmp group limit command you can limit multicast groups on an interface Using undo igmp group limit command you can ...

Page 404: ...2 will be used as default port Packets received and sent by the port s and applied to the conditions set by the ACL will be filtered And the port s must belong to the VLAN interface being configured by this command Description Using igmp group policy command you can set the filter of multicast groups on an interface to control the accessing to the IP multicast groups Using undo igmp group policy c...

Page 405: ...can set the filter of multicast groups on an port to control the accessing to the IP multicast groups Using undo igmp group policy vlan command you can remove the configured filter By default no filter is configured that is a host can join any multicast group This command has the same function with the igmp group policy command Note that the configured port must belong to the specified VLAN and th...

Page 406: ...able the configuration By default a LoopBack interface does not join any multicast group For the related command see igmp host join port igmp host join vlan and igmp group policy Example Add LoopBack 0 to the multicast group at 225 0 0 1 Quidway LoopBack0 igmp host join 225 0 0 1 4 1 9 igmp host join port Syntax igmp host join group address port interface_type interface_ num interface_name to inte...

Page 407: ...do igmp host join group address vlan vlan_id View Ethernet port view Parameter group address Multicast address of the multicast group that an interface will join vlan_id Specifies the ID for the VLAN to which the port belongs Description Using igmp host join vlan command you can enable an port in the VLAN interface of an ethernet switch to join a multicast group Using undo igmp host join vlan comm...

Page 408: ... that is a same network segment including multiple hosts and multicast routers the query router is responsible for maintaining the IGMP group membership on the interface When the IGMP v2 host leaves a group it sends a IGMP Leave message When receiving the IGMP Leave message IGMP query router must send the IGMP group query message for specified times by the robust value parameter in the igmp robust...

Page 409: ...seconds undo igmp max response time View Interface view Parameter seconds Maximum response time in the IGMP query messages in second in the range from 1 to 25 By default the value is 10 seconds Description Using igmp max response time command you can configure the maximum response time contained in the IGMP query messages Using undo igmp max response time command you can restore the default value ...

Page 410: ...mes by the robust value parameter in the igmp robust count command with default value as 2 in a specified time interval by the seconds parameter in the igmp lastmember queryinterval command with default value as 1 second If other hosts which are interested in the specified group receive the IGMP query message from the IGMP query router they will sends back the IGMP Membership Report message within...

Page 411: ...he default value On a shared network i e there are multiple multicast routers on the same network segment the query router querier for short takes charge of sending query messages periodically on the interface If other non queriers receive no query messages within the valid period the router will consider the previous query to be invalid and the router itself becomes a querier In IGMP version 1 th...

Page 412: ...nterval can be modified according to the practical conditions of the network For the related command see igmp timer other querier present Example Configure to transmit the host query message every 150 seconds via VLAN interface2 Quidway Vlan interface2 igmp timer query 150 4 1 16 igmp version Syntax igmp version 1 2 undo igmp version View Interface view Parameter 1 IGMP Version 1 2 IGMP Version 2 ...

Page 413: ... Mask of IGMP group address Description Using reset igmp group command you can delete an existing IGMP group from the interface The deleted group can added again on the interface Example Delete all IGMP groups on all the interfaces Quidway reset igmp group all Delete all IGMP groups on the Vlan interface10 Quidway reset igmp group interface Vlan interface10 all Delete the group 225 0 0 1 from the ...

Page 414: ...nd you can limit the range of legal BSRs to prevent BSR proofing Using undo bsr policy command you can restore the default setting that is no range limit is set and all received messages are taken as legal In the PIM SM network using BSR bootstrap router mechanism every router can set itself as C BSR candidate BSR and take the authority to advertise RP information in the network once it wins in th...

Page 415: ... than these two Even legal BSRs cannot contest with them Problems may still exist if a legal BSR is attacked though these two measures can effectively guarantee high BSR security The source parameter in the rule command is translated as BSR address in the bsr policy command For the related commands see acl and rule Example Configure BSR filtering policy on routers only 101 1 1 1 32 can be BSR Quid...

Page 416: ...uidway pim Quidway pim c bsr vlan interface 10 24 2 5 1 3 c rp Syntax c rp interface type interface number group policy acl number priority priority value undo c rp interface type interface number all View PIM view Parameter interface type interface number Specifies interface with the IP address advertised as a candidate RP address acl number Number of the basic ACL that defines a group range whic...

Page 417: ...licy ranging from 3000 to 3999 Description Using crp policy command you can limit the range of legal C RP as well as target service group range of each C RP prevent C RP proofing Using undo crp policy command you can restore the default setting that is no range limit is set and all received messages are taken as legal In the PIM SM network using BSR mechanism every router can set itself as C RP ca...

Page 418: ... pim crp policy 3000 Quidway pim quit Quidway acl number 3000 Quidway acl adv 3000 rule 0 permit source 1 1 1 1 0 destination 225 1 0 0 0 0 255 255 5 1 5 debugging pim common Syntax debugging pim common all event packet timer undo debugging pim common all event packet timer View User view Parameter all All the common debugging information of PIM event Debugging information of common PIM event pack...

Page 419: ...ormation of PIM DM warning message recv Debugging information of PIM DM receiving packets send Debugging information of PIM DM sending packets assert graft graft ack join prune Packets type Description Using debugging pim dm command you can enable PIM DM debugging functions Using undo debugging pim dm command you can disable the debugging functions By default PIM DM debugging functions are disable...

Page 420: ...PIM SM receiving packets send Debugging information of PIM SM sending packets assert bootstrap crpadv reg regstop jp Packets type assert bootstrap crpadv jp reg regstop Packets type Description Using debugging pim sm command you can enable PIM SM debugging functions Using undo debugging pim sm command you can disable the debugging functions By default PIM SM debugging functions are disabled Exampl...

Page 421: ...ty of BSR Mask Length 30 Length of mask Expires 00 01 55 Expire time 5 1 9 display pim interface Syntax display pim interface interface type interface number View Any view Parameter interface type interface number Interface type and interface number used to specify the interface Description Using display pim interface command you can view the PIM interface configuration information Example Quidway...

Page 422: ...ghbor can be added any more when the limit is reached PIM neighbor policy Filtering policy of the PIM neighbors on the current interface PIM DR Designated router 5 1 10 display pim neighbor Syntax display pim neighbor interface interface type interface number View Any view Parameter interface type interface number Interface type and interface number used to specify the interface Description Using ...

Page 423: ...se mode View Any view Parameter rp RP route entry g G route entry group address Address of the multicast group source address IP address of the multicast source incoming interface interface type interface number Route entry with the specified incoming interface null Specifies the incoming interface type as Null dense mode Specifies the multicast routing protocol as PIM DM sparse mode Specifies the...

Page 424: ...NULL Downstream interface list NULL Total 2 entries listed Table 5 4 Output description about PIM routing table Field Description RP Rendezvous Point S G source address multicast group PIM SM PIM Sparse Mode SPT Shortest Path Tree RPF Reverse Path Forwarding 5 1 12 display pim rp info Syntax display pim rp info group address View Any view Parameter group address Specifies the group address to disp...

Page 425: ... 4 4 4 6 Group MaskLen 224 0 0 0 4 RP 4 4 4 6 Version 2 Priority 0 Uptime 00 39 50 Expires 00 01 40 5 1 13 pim Syntax pim undo pim View System view Parameter None Description Using pim command you can enter the PIM view Using undo pim command you can clear the configurations in PIM view Example Enable multicast and enter the PIM view Quidway system view Quidway multicast routing enable Quidway pim...

Page 426: ...tstrap messages cannot pass interfaces that are configured with pim bsr boundary command while other PIM messages can In this way the network is divided into different BSR domains By default no domain border is set For the related command see c bsr Example Configure domain border on VLAN interface10 Quidway Vlan interface10 pim bsr boundary 5 1 15 pim dm Syntax pim dm undo pim dm View Interface vi...

Page 427: ... Using pim neighbor limit command you can limit the PIM neighbors on an interface No neighbor can be added any more when the limit is reached Using undo pim neighbor limit command you can restore the default setting By default the PIM neighbors on the interface are limited to 128 If the existing PIM neighbors exceed the configured value during configuration they will not be deleted Example Limit t...

Page 428: ...cond time Example Configure that 10 10 1 2 can serve as a PIM neighbor of the Vlan interface10 but not 10 10 1 1 Quidway Vlan interface10 pim neighbor policy 2000 Quidway Vlan interface10 quit Quidway acl number 2000 Quidway acl basic 2000 rule permit source 10 10 1 2 0 Quidway acl basic 2000 rule deny source 10 10 1 1 0 5 1 18 pim sm Syntax pim sm undo pim sm View Interface view Parameter None De...

Page 429: ...an configure the interval of sending PIM router Hello messages Using undo pim timer hello command you can restore the default value Example Configure to transmit Hello packet via VLAN interface10 every 40 seconds Quidway Vlan interface10 pim timer hello 40 5 1 20 register policy Syntax register policy acl number undo register policy View PIM view Parameter acl number Number of IP advanced ACL defi...

Page 430: ...uidway acl number 3010 Quidway acl adv 3010 rule permit ip source 10 10 0 0 0 0 255 255 destination 225 1 0 0 0 0 255 255 Quidway acl adv 3010 quit Quidway multicast routing enable Quidway pim Quidway pim register policy 3010 5 1 21 reset pim neighbor Syntax reset pim neighbor all neighbor address interface interface type interface number View User view Parameter all All PIM neighbors neighbor add...

Page 431: ...face type interface number Specifies the interface null Specifies the incoming interface of the route entry as null Description Using reset pim routing table command you can clear a PIM route entry You can type in source address first and group address after in the command as long as they are valid Error information will be given if you type in invalid addresses If in this command the group addres...

Page 432: ...ts Using undo static rp command you can remove the configuration If resource address filtering is configured as well as basic ACLs then the router filters the resource addresses of all multicast data packets received Those not matched will be discarded If resource address filtering is configured as well as advanced ACLs then the router filters the resource and group addresses of all multicast data...

Page 433: ...ied upon configuration static RP will serve all multicast groups if an ACL is specified static RP will only serve the multicast group passing the ACL Description Using static rp command you can configure static RP Using undo static rp command you can remove the configuration Static RP functions as the backup of dynamic RP so as to improve the network robusticity If the RP elected by BSR mechanism ...

Page 434: ...g port list in format of interface list interface type interface num interface name to interface type interface num interface name 1 10 vlan_id Specifies VLAN ID Description Use the mac address multicast command to add multicast MAC address entries Use the undo mac address multicast command to delete multicast MAC address entries A multicast entry includes multicast address forwarding port VLAN et...

Page 435: ...and to view the multicast MAC address entries on the switch Example Display multicast MAC address entries on Quidway Quidway display mac address multicast 6 1 3 display mac address multicast count Syntax display mac address multicast count View System view Parameter None Description Use the display mac address multicast count command to view the number of the multicast MAC address entries on the s...

Page 436: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual QoS ACL ...

Page 437: ...lay qos cos local precedence map 2 2 2 1 4 display qos interface all 2 3 2 1 5 display qos interface line rate 2 6 2 1 6 display qos interface queue scheduler 2 7 2 1 7 display qos interface traffic bandwidth 2 8 2 1 8 display qos interface traffic limit 2 10 2 1 9 display qos interface traffic priority 2 11 2 1 10 display qos interface traffic red 2 12 2 1 11 display qos interface traffic redirec...

Page 438: ...4 traffic priority 2 31 2 1 25 traffic red 2 33 2 1 26 traffic redirect 2 35 2 1 27 traffic statistic 2 36 Chapter 3 ACL Control Commands to Control Login Users 3 1 3 1 The ACL Control Commands to Control Login Users 3 1 3 1 1 acl 3 1 3 1 2 snmp agent community 3 2 3 1 3 snmp agent group 3 3 3 1 4 snmp agent usm user 3 4 ...

Page 439: ...er match order config auto undo acl number acl number name acl name all View System view Parameter number acl number Sequence number of an Access Control List ACL the range is 2000 2999 Represent basic ACL 3000 3999 Represent advanced ACL 4000 4999 Represent Layer 2 ACL 5000 to 5999 User defined ACL name acl name Character string which must be started with an English letter i e a z or A Z and ther...

Page 440: ...mmand you can create an ACL named acl name And the type of this ACL is decided by keywords advanced basic link or user After entering a corresponding ACL view no matter the ACL is identified by a number or a name you can use the rule command to create subitems of this named ACL you can exit ACL view by using the quit command Note User defined ACL can only be activated on the cards except A type on...

Page 441: ... 1 1 1 1 0 0 255 255 destination 2 2 2 2 0 0 255 255 and rule1 is defined as rule 1 permit ip source 1 1 1 1 0 0 0 255 destination 2 2 2 2 0 0 0 255 Since the range of rule1 is more precise it will be matched first For the related configuration see rule acl mode Example Specify depth first order as the match order of number 2000 ACL Quidway acl number 2000 match order auto 1 1 2 acl mode Syntax ac...

Page 442: ...quence number of the ACL to be displayed It can be a number chosen from 2000 5999 acl name Name of the ACL to be displayed It must be a character string started with an English letter a z or A Z and there should not be a space or quotation mark in it Description Using the display acl config command you can view the detailed configuration information of an ACL including every subrule sequence numbe...

Page 443: ...ntent of basic ACL 10 the number of ACL is 2010 and it has one subrule which can enable the pass of the packet with the source address of 10 0 0 1 the 0 before 1 is address wildcard which is used to confirm whether the IP address is network segment address or the host address Wildcard 0 means this IP address is the host address 0 times matched means this rule is used 0 times by the CPU to match pa...

Page 444: ... all the ACLs to be displayed including those identified by a number or a name interface interface name interface type interface num Interface of the switch for more detail please refer to Command Manual Port Description Using the display acl running packet filter command you can view the information of the activated of ACL The displayed content includes ACL name subitem name and activation status...

Page 445: ...o 32 characters Description Using the display time range command you can view the configuration and state of the present time range It will display active if the current time range is in active state and inactive if in the opposite state It is likely that you find out that a time range is activated by using the command display time range while the ACL referencing the time range is not activated ye...

Page 446: ... acl number acl name rule rule ip group acl number acl name rule rule link group acl number acl name rule rule undo packet filter inbound user group acl number acl name rule rule ip group acl number acl name rule rule link group acl number acl name rule rule Note Combined activating of IP ACL and Link ACL is supported by the cards except A type ones But the sum of the bytes number defined by IP AC...

Page 447: ...if not specified all subitems of ACL will be activated not care for interface As for non 48 port interface card the packet filtering function will take place on the interface card where the current port resides after the parameter is chosen As for the 48 port interface if the number of the current port belong to the range of 1 to 24 the packet filtering will take effect on port 1 to port 24 after ...

Page 448: ...nter command you can clear ACL statistics to zero Table 1 4 The comparison between reset commands of statistics information Command Function reset acl counter Reset the statistics information of the ACL which is used in the case of filtering or classifying the data treated by the software of switch The case includes ACL cited by route policy function ACL used for control logon user etc The ACL num...

Page 449: ...nation port operator port1 port2 icmp type type code established precedence precedence tos tos dscp dscp fragment time range name undo rule rule id source destination source port destination port icmp type precedence tos dscp fragment time range III define delete a rule for link acl rule rule id permit deny protocol type format type cos cos ingress source vlan id source mac addr any egress dest ma...

Page 450: ...l type which is represented by a name or a number When it is a name this parameter can be adopted like icmp igmp tcp udp ip gre ospf ipinip etc If the adopted value is IP that means all the Internet Protocols When it is a number it ranges from 1 to 225 source source addr wildcard any source addr wildcard means the source IP address and the wildcard digit represented in dotted decimal notation any ...

Page 451: ...vanced ACLs established Means that it is only effective to the first SYN packet established by TCP appears when protocol is tcp precedence precedence IP priority can be a name or a number ranging from 0 to 7 tos tos ToS value can be a name or a number ranging from 0 to 15 Packets can be classified according to TOS value It is applicable to define advanced ACLs dscp dscp DSCP value can be a name or...

Page 452: ...s of the packet any represents all the packets received from all ports egress dest mac addr any The destination information of a packet dest mac addr represents the the packet s destination MAC address any represents all the packets forwarded from all ports z The parameter of user defined ACL rule string rule mask offset 1 8 rule string is a character string of a rule defined by a user It only con...

Page 453: ...VLAN tags including the original one z For non type A card The packets will have two VALN tags no matter the received packets have VLAN tag or not Description Using the rule command you can add a subrule to the ACL Using the undo rule command you can cancel a subrule of the ACL You can define several subrules for an ACL If you have input parameters when you are using the undo rule command the syst...

Page 454: ...of a week in the special time range a command takes effect You can specify this parameter with any of the following values Numbers ranging from 0 to 6 Monday Tuesday Wednesday Thursday Friday Saturday or Sunday working day representing 5 working days from Monday to Friday off day representing Saturday and Sunday daily representing everyday of the week from start time start date Start time and date...

Page 455: ... defines a period time range which is from 12 00 to 14 00 every Wednesday and defines an absolute time range which is from 00 00 2004 1 1 to 23 59 2004 12 31 This time range is only active from 12 00 to 14 00 every Wednesday in 2004 If neither starting time nor end time is specified the time range is 24 hours 0 00 to 24 00 If no end date is specified the time range is from the date of configuratio...

Page 456: ...on Using the display mirroring group command you can view the parameter configuration of a port mirroring group The information displayed includes the monitored ports direction of monitored packets monitoring ports and so on For the related configuration see mirroring group Example Display the parameter configuration of a port mirroring group Quidway display mirroring group mirroring group 1 inbou...

Page 457: ...Example Display the queue scheduling mode and parameter Quidway display priority trust Priority trust mode local precedence 2 1 3 display qos cos local precedence map Syntax display qos cos local precedence map View Any view Parameter None Description Using the display qos cos local precedence map command you can view COS Local precedence map table Example Display the COS Local precedence map tabl...

Page 458: ...ill display all QoS setting information of the switch including traffic policing rate limit at interface etc if you input interface parameters this command will display QoS setting information of specified interfaces including traffic policing rate limit at interfaces etc Example Display all the configurations of QoS parameters Quidway display qos interface all GigabitEthernet5 0 1 traffic limit I...

Page 459: ...able bandwidth 128 Bandwidth weight 100 Table 2 1 Field description of this command Fielde Explanation GigabitEthernet5 0 1 traffic limit Inbound Matches acl 2000 rule 0 running Target rate 4 Mbps Traffic monitoring configuration inbound means this configuration is effective to packets received by interfaces Matches acl 2000 rule 0 running Burst size 64 Kbps means that 4 Mbps is the maximum rate o...

Page 460: ...he packet whose length is less than 64 will not be discarded Queue length of stop random discarding 128 means the queue length at which the random packet drop will stop the packet whose length is larger than 128 will be totally discarded Max probability of discarding 20 represents that the probability of discarding when the queue reaches the length where the system stops random discarding GigabitE...

Page 461: ...t 100 represents bandwidth weight For detailed explanation see traffic bandwidth 2 1 5 display qos interface line rate Syntax display qos interface interface name interface type interface num line rate View Any view Parameter interface name interface type interface num Interface of switch for detailed description please refer to Command Manual Port Description Using the display qos interface line ...

Page 462: ...3 0 2 The maximum sum of all the packets rates at the Ethernet3 0 2 interface is 3072 kbps 2 1 6 display qos interface queue scheduler Syntax display qos interface interface type interface num queue scheduler View Any view Parameter interface name interface type interface num Interface of the switch for more detail please refer to Command Manual Port Description Using display qos interface queue s...

Page 463: ...in Weighting in packets COSQ 0 10 packets COSQ 1 5 packets COSQ 2 10 packets COSQ 3 10 packets COSQ 4 5 packets COSQ 5 10 packets COSQ 6 5 packets COSQ 7 10 packets Egress port queue statistics in bytes Priority CosQ Threshold Count Used 0 2 18432 0 0 1 0 2560 0 0 2 1 2560 0 0 3 3 2560 0 0 4 4 2560 0 0 5 5 2560 0 0 6 6 2560 0 0 7 7 2560 0 0 common queue statistics in bytes 49152 0 0 2 1 7 display ...

Page 464: ...inimum guaranteed bandwidth 64 Maximum available bandwidth 128 Bandwidth weight 100 Table 2 3 Field explanation of this command Field Explanation GigabitEthernet5 0 2 traffic bandwidth Outbound Matches acl r1 rule 0 running Minimum guaranteed bandwidth 64 Maximum available bandwidth 128 Bandwidth weight 100 Configuration information of the port bandwidth guarantee Outbound means that this configur...

Page 465: ...o be limited the average of the limited rate and the related monitoring actions etc For the related configuration see traffic limit Example Display the parameter configuration of traffic limitation Quidway display qos interface gigabitEthernet5 0 1 traffic limit GigabitEthernet5 0 1 traffic limit Inbound Matches acl 2000 rule 0 running Target rate 4 Mbps Table 2 4 Field explanation of this command...

Page 466: ...Ls of the traffic with priority mark priority mark types and value etc For the related configuration see traffic priority Example Display the configuration of the priority mark parameter Quidway display qos interface gigabitEthernet5 0 1 traffic priority GigabitEthernet5 0 1 traffic priority Outbound Matches acl std1 rule 0 running Priority action dscp ef Table 2 5 Field explanation of this comman...

Page 467: ...mand Manual Port Description Using the display qos interface traffic red command you can view the configuration information of the RED operation The cards except A type ones do not support traffic RED function For the related configuration see traffic red Example Display the parameter configuration of traffic limitation Quidway display qos interface gigabitEthernet5 0 1 traffic red GigabitEthernet...

Page 468: ... will not be discarded Queue length of stop random discarding 128 means the queue length at which the random packet drop will stop the packet whose length is larger than 128 will be totally discarded Max probability of discarding 20 represents that the probability of discarding when the queue reaches the length where the system stops random discarding 2 1 11 display qos interface traffic redirect ...

Page 469: ...s acl std1 rule 1 running Redirected to interface Ethernet5 0 2 Packet redirection configuration Matches acl std1 rule 0 running Redirected to interface Ethernet5 0 2 means the packets that match with subrule 0 of the ACL std1 will be redirected to the interface Ethernet5 0 2 Matches acl std1 rule 1 running Redirected to interface Ethernet5 0 2 means the packets that match with subrule1 of the ACL...

Page 470: ...abitEthernet5 0 1 traffic statistic GigabitEthernet5 0 1 traffic statistic Inbound Matches acl std1 rule 0 running 0 byte 0 packet Outbound Matches acl std1 rule 1 running 0 byte 0 packet Table 2 8 Field explanation of this command Field Explanation GigabitEthernet5 0 1 traffic sta tistic Inbound Matches acl std1 rule 0 running 0 byte 0 packet Outbound Matches acl std1 rule 1 running 0 byte 0 pack...

Page 471: ...sent to the different ports they are treated as different rules thus seizing multiple entries If you configure the CAR function for the traffic matching the same rule on multiple ports the switch provides a bandwidth gurantee to the traffic matching the CAR rule on each port When the inbound CAR function is disabled and the same ACL rules are sent to the different ports they are treated as the sam...

Page 472: ...r enable 2 1 14 line rate Syntax line rate kbps target rate undo line rate View QoS view Parameter kbps Specifies the rate limit of the port to kbps In this approach the rate is in kbps and the granularity can be as low as 64 kbps target rate The total limited rate of the the packets sent by interfaces ranging from 1 to 1000 in Mbps Description Using the line rate command you can limit the total r...

Page 473: ...ace_type interface_num interface_name please refer to Command Manual Port 1 8 means the previous parameters can be input 8 times at the most mirrored to monitor port Specifies monitoring ports Description Using the mirroring group command you can configure port mirroring group Using the undo mirroring group command you can cancel the port mirroring group The switch supports multi to one port mirro...

Page 474: ...he same port range simultaneously that is either 1 24 ports or 25 48 ports Only one port mirroring group can be configured in one mirroring direction For instance in the range of port 1 to port 24 one interface card can be configured with only one port mirroring group for monitoring received packets If you configure another port mirroring group for monitoring received packets the system will promp...

Page 475: ...priority of the receiving port Example Set the priority level of port Ethernet1 0 1 to 7 Quidway Ethernet1 0 1 priority 7 2 1 17 priority trust Syntax priority trust dscp ip precedence cos local precedence View System view Parameter dscp Puts the packets into corresponding port output queue according to dscp priority ip precedence Puts the packets into corresponding port output queue according to ...

Page 476: ... ranges from 0 to 7 the packets with precedence value 0 are put into queue 0 and those with precedence value 1 is put into queue 1 and so on z cos precedence cos value ranges from 0 to 7 the packet whose precedence value is 0 is put into queue 2 the packet whose precedence value is 1 is put into queue 0 the packet whose precedence value is 2 is put into queue 1 the packet whose precedence value is...

Page 477: ...tem information line rate Limit the rate of the outbound packets of the interface packet filter Filter packets based on acl ping Ping function quit Exit from current command view reset Reset operation tracert Trace route function traffic limit Limit the rate of the packets traffic priority Specify new priority of the packets traffic redirect Redirect the packets traffic statistic Count the packets...

Page 478: ... mapping value from COS 5 to local prec ranging from 0 to 7 cos6 map local prec The mapping value from COS 6 to local prec ranging from 0 to 7 cos7 map local prec The mapping value from COS 7 to local prec ranging from 0 to 7 Description Using the qos cos local precedence map command you can configure COS Local precedence mapping table Using the undo qos cos local precedence map command you can re...

Page 479: ...weight queue7 weight queue8 weight undo queue scheduler View QoS view Parameter rr Indicates the queue adopts round robin algorithm strict priority Indicates the queue performs strict priority scheduling wrr queue1 weight queue2 weight queue3 weight queue4 weight queue5 weight queue6 weight queue7 weight queue8 weight Indicates that the queue adopts the weighted round robin algorithm with the weig...

Page 480: ...mat for for A type Card reset traffic statistic inbound outbound ip group acl number acl name rule rule link group acl number acl name rule rule Note A type card includes LS81FT48A LS81FM24A LS81FS24A LS81GB8UA and LS81GT8UA cards II The Command Line Format for the Cards except A Type Ones reset traffic statistic inbound user group acl number acl name rule rule ip group acl number acl name rule ru...

Page 481: ...the subitems of the ACL if not specified user group acl number acl name activate the user defined ACL acl number Specifies the ACL number ranging from 5000 to 5999 acl name Specifies the ACL name with a character string started with English letters that is a to z A to Z excluding space and quotation marks Description Using the reset traffic statistic command you can clear the specified or all the ...

Page 482: ...nts all the subitems of the ACL if not specified link group acl number acl name rule rule The Layer 2 ACL acl number the sequence number of an ACL ranging from 4000 4999 acl name the name of an ACL character string which must be started with an English letter i e a z or A Z and there should not be a space or quotation mark in it rule rule Optional specifies the subitem of an ACL ranging from 0 to ...

Page 483: ...port bandwidth Bp the bandwidth allocated to the ith flow is Bi Bimin Bp N i B min Wi N Wi Description Using the traffic bandwidth command you can activate the ACL and provide bandwidth guarantee for the corresponding traffic the command is only effective to the permit rule Using the undo traffic bandwidth command you can remove this function This configuration provides the minimum bandwidth guara...

Page 484: ...24A LS81FS24A LS81GB8UA and LS81GT8UA cards II The Command Line Format for the Cards except A Type Ones traffic limit inbound user group acl number acl name rule rule ip group acl number acl name rule rule link group acl number acl name rule rule kbps target rate exceed action undo traffic limit inbound user group acl number acl name rule rule ip group acl number acl name rule rule link group acl ...

Page 485: ...ing from 0 to 127 it represents all the subitems of the ACL if not specified user group acl number acl name activate the user defined ACL acl number Specifies the ACL number ranging from 5000 to 5999 acl name Specifies the ACL name with a character string started with English letters that is a to z A to Z excluding space and quotation marks kbps Specifies the traffic limit to kbps In this approach...

Page 486: ...scp dscp value ip precedence pre value local precedence pre value undo traffic priority inbound outbound ip group acl number acl name rule rule link group acl number acl name rule rule Note A type card includes LS81FT48A LS81FM24A LS81FS24A LS81GB8UA and LS81GT8UA cards II The Command Line Format for the Cards except A Type Ones traffic priority inbound user group acl number acl name rule rule ip ...

Page 487: ...subitem of an ACL ranging from 0 to 127 it represents all the subitems of the ACL if not specified link group acl number acl name rule rule The Layer 2 ACL acl number the sequence number of an ACL ranging from 4000 4999 acl name the name of an ACL character string which must be started with an English letter i e a z or A Z and there should not be a space or quotation mark in it rule rule Optional ...

Page 488: ...up 2000 local precedence 0 2 1 25 traffic red Syntax traffic red outbound ip group acl number acl name rule rule link group acl number acl name rule rule qstart qstop probability undo traffic red outbound ip group acl number acl name rule rule link group acl number acl name rule rule View QoS view Parameter outbound Performs RED operation to the sent packets ip group acl number acl name rule rule ...

Page 489: ...ally The value ranges from 0 to 262128 in KB it must be the multiple of 16 KB probability The drop probability when red qstop is reached ranging from 0 to 100 Description Using the traffic red command you can enable RED operation and set RED parameters Using the undo traffic red command you can remove the RED configuration For the related configuration see display qos interface traffic red Note Th...

Page 490: ...an ACL ranging from 0 to 127 it represents all the subitems of the ACL if not specified link group acl number acl name rule rule The Layer 2 ACL acl number the sequence number of an ACL ranging from 4000 4999 acl name the name of an ACL character string which must be started with an English letter i e a z or A Z and there should not be a space or quotation mark in it rule rule Optional specifies t...

Page 491: ...e action of permit can be activated by this command successfully Example Perform redirection to the packets that match with the permit rule of ACL 2000 Redirect the packets to interface GigabitEthernet7 0 2 Quidway qosb GigabitEthernet7 0 1 traffic redirect inbound ip group 2000 interface gigabitethernet7 0 2 2 1 27 traffic statistic Syntax I The Command Line Format for for A type Card traffic sta...

Page 492: ...packets sent by the interface LS82GP20 and LS82GT20 interface cards do not support it ip group acl number acl name rule rule the basic or advanced ACLs acl number the sequence number of ACLs ranging from 2000 3999 acl number the name of ACLs character string which must be started with an English letter i e a z or A Z and there should not be a space or quotation mark in it rule rule Optional specif...

Page 493: ... undo traffic statistic command you can remove traffic statistics The traffic statistic command is used to count the number of hardware matches during the course of packet forwarding You can use the display qos interface traffic statistic command to view this information Only the rule with the action of permit can be activated by this command successfully For the related configuration see display ...

Page 494: ...anging from 2000 to 3999 inbound Performs ACL control to the users who access the local switch using TELNET outbound Performs ACL control to the users who access other switches from the local switch using TELNET Description Using the acl command you can reference ACL and implement the ACL control to the TELNET users Using the undo acl command you can remove the control to the TELNET users The ACLs...

Page 495: ...name mib view Set the MIB view name which can be accessed by the community name view name MIB view name acl acl numbe The number identifier of basic number based ACLs ranging from 2000 to 2999 Description Using the snmp agent community command you can set the community access name permit the access to the switch using SNMP and reference the ACL to perform ACL control to the network management user...

Page 496: ...r undo snmp agent group v3 group name authentication privacy View System view Parameter v1 V 1 security mode v2c V 2 security mode v3 V 3 security mode group name Group name ranging from 1 to 32 bytes authentication With this parameter the system will authenticate SNMP data without encrypting it privacy Authenticates and encrypts packets read view Sets read only view read view The name of read onl...

Page 497: ...oup v1 huawei acl 2001 3 1 4 snmp agent usm user Syntax snmp agent usm user v1 v2c user name group name acl acl number undo snmp agent usm user v1 v2c user name group name snmp agent usm user v3 user name group name authentication mode md5 sha auth password privacy des56 priv password acl acl number undo snmp agent usm user v3 user name group name local engineid engineid string View System view Pa...

Page 498: ...id string Engine ID character string Description Using the snmp agent usm user command you can add a new user to an SNMP group and reference the ACL to perform ACL control to the network management users by acl acl number Using the undo snmp agent usm user command you can remove the user from the related SNMP group as well as the configuration of the ACL control of the user Example Add a user huaw...

Page 499: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual STP ...

Page 500: ...1 12 1 1 14 stp interface 1 13 1 1 15 stp interface cost 1 14 1 1 16 stp interface edged port 1 15 1 1 17 stp interface loop protection 1 16 1 1 18 stp interface mcheck 1 17 1 1 19 stp interface point to point 1 18 1 1 20 stp interface port priority 1 19 1 1 21 stp interface root protection 1 20 1 1 22 stp interface transmit limit 1 21 1 1 23 stp loop protection 1 21 1 1 24 stp max hops 1 22 1 1 2...

Page 501: ...1 36 1 1 41 vlan mapping modulo 1 37 Chapter 2 BPDU TUNNEL Configuration Commands 2 1 2 1 1 vlan vpn tunnel 2 1 Chapter 3 Digest Snooping Configuration Commands 3 1 3 1 Digest Snooping Configuration Commands 3 1 3 1 1 stp config digest snooping 3 1 Chapter 4 Rapid Transition Configuration Commands 4 1 4 1 Rapid Transition Configuration Commands 4 1 4 1 1 stp interface no agreement check 4 1 4 1 2 ...

Page 502: ...specially the VLAN mapping table of the MST region will lead to the recalculation of spanning tree and network topology flapping To bate such flapping MSTP applies the configured parameters and launches recalculation of the spanning tree only when you activate the configured MST region parameters or enable MSTP After you entered this command MSTP will apply the MST region parameters you configured...

Page 503: ...figured in the expected region due to any slight deviation You can use this command to display the MST region configuration information to be activated to know to which MST regions the switch belongs and check if the MST region configurations are correct For the related command see instance region name revision level vlan mapping modulo active region configuration Example Display the configuration...

Page 504: ...nformation can help analyze and maintain the network topology and maintain the normal operation of MSTP If no STI ID or port list is specified the command will display the spanning tree information of all the instances on all the ports in port number order If the instance ID is specified the command will display the spanning tree information of the specified instance on all the port in port number...

Page 505: ...nformation Count of TCN CONFIG BPDU RST and MST BPDU transmitted received via the port For the related command see reset stp Example Display the state and statistics information about the spanning tree Quidway display stp instance 0 interface Ethernet 2 1 1 to Ethernet 2 1 4 GigabitEthernet 3 2 1 to GigabitEthernet 3 2 4 GigabitEthernet 3 3 1 brief MSTID Port Role STP State Protection 0 Ethernet2 ...

Page 506: ...sociations between VLANs and STIs All these configurations together determine to which MST region a switch belongs For the related command see stp region configuration Example Display the MST region configuration information Quidway display stp region configuration Oper Configuration Format selector 0 Region name huawei Revision level 0 Instance Vlans Mapped 0 21 to 4094 1 1 to 10 2 11 to 20 Table...

Page 507: ...from the specified STI the removed VLAN will then be mapped to the CIST i e the Instance 0 If no VLAN is specified in the undo command all the VLANs associated with the specified STI will be mapped to CIST By default all the VLANs are mapped to CIST i e the Instance 0 MSTP describes the association between VLANs and STIs with the VLAN mapping table You can use this command to configure this table ...

Page 508: ...egion to which the switch belongs For the related command see instance revision level check region configuration vlan mapping modulo active region configuration Example Set the MST region name of the switch as huawei Quidway mst region region name huawei 1 1 7 reset stp Syntax reset stp interface interface list View User view Parameter interface list Ethernet port list containing multiple Ethernet...

Page 509: ...e display stp Example Clear the statistics information on the ports from Ethernet2 1 1 through Ethernet2 1 3 z Quidway reset stp interface Ethernet2 1 1 to Ethernet2 1 3 1 1 8 revision level Syntax revision level level undo revision level View MST region view Parameter level Specifies the MSTP revision level ranging from 0 to 65535 By default MSTP revision level takes 0 Description Using revision ...

Page 510: ... the switch After MSTP is enabled the switch determines to run MSTP in STP compatible mode or MSTP mode per your configurations The switch serves as a transparent bridge after MSTP is disabled By default the MSTP on the switch is disabled to enable it you must enable the MSTP globally After MSTP is enabled it will dynamically maintain the spanning tree state of the corresponding VLAN according to ...

Page 511: ...receive configuration BPDU the system will automatically set them to non edge ports and recalculate the spanning tree which makes the network topology flap These ports will not receive any STP configuration BPDU in normal cases Anyway if someone maliciously attacks the switch with fake configuration BPDU the network will flap MSTP provides BPDU protection function to avoid such attack After config...

Page 512: ... spanning tree convergence can be speeded up when Hello Time Forward Delay and Max Age are well configured These parameters are related to the network scale You can configure the network scale to get the time parameters Upon the user configured bridge diameter parameter MSTP will automatically set Hello Time Forward Delay and Max Age to moderate values When bridge diameter defaults to 7 the time p...

Page 513: ...us the traffic from different VLANs can run over different physical links thereby implementing the VLAN based load balancing MSTP will recalculate the port role and transit its state upon the port path cost changes For the related command see stp interface instance cost Example Set the path cost of Ethernet2 0 3 on STI 2 to 200 Quidway Ethernet2 0 3 stp instance 2 cost 200 1 1 13 stp edged port Sy...

Page 514: ...efore BPDU PROTECTION is enabled on the switch the port received a BPDU runs as a non edge port even if it is configured as edge port For the related command see stp interface edged port Example Configure Ethernet2 0 1 as an edge port Quidway Ethernet2 0 1 stp edged port disable 1 1 14 stp interface Syntax stp interface interface list enable disable View System view Parameter interface list Ethern...

Page 515: ...ng multiple Ethernet ports and expressed as interface _list interface_type interface_num interface_name to interface_type interface_num interface_name 1 10 For detail descriptions of interface_type interface_num and interface_name parameters refer to the corresponding descriptions in Port Command Manual 1 10 means that the preceding parameters can be entered up to 10 times instance instance id Spe...

Page 516: ...ontaining multiple Ethernet ports and expressed as interface _list interface_type interface_num interface_name to interface_type interface_num interface_name 1 10 For detail descriptions of interface_type interface_num and interface_name parameters refer to the corresponding descriptions in Port Command Manual 1 10 means that the preceding parameters can be entered up to 10 times enable Configure ...

Page 517: ...ple Configure Ethernet2 0 3 as an edge port in system view Quidway stp interface Ethernet2 0 3 edged port enable 1 1 17 stp interface loop protection Syntax stp interface interface list loop protection undo stp interface interface list loop protection View System view Parameter interface list Ethernet port list containing multiple Ethernet ports and expressed as interface _list interface_type inte...

Page 518: ...t to operate in STP compatible mode However when the STP switch is removed the port stays in STP compatible mode and cannot automatically transit back to MSTP mode In this case you can perform mCheck operation to transit the port to MSTP mode by force The switch defaults to operate in MSTP mode It is an RSTP and STP compatible mode that is the switch in MSTP mode can identify the BPDU packets of M...

Page 519: ...point to point link Description Using stp interface point to point command you can configure a port not to be connected to a point to point link in system view Using undo stp interface point to point command you can restore the default state of the link to the Ethernet port By default the parameter defaults to auto that is MSTP checks if the link to the Ethernet port is a point to point link The p...

Page 520: ... ranging from 0 to 16 The Instance 0 represents CIST port priority priority Specifies the port priority ranging from 0 to 240 with a step length of 16 e g 0 16 and 32 By default the port has a priority of 128 on every STI Description Using stp interface instance port priority command you can configure the priority of the specified port on the specified STI in system view Using undo stp interface i...

Page 521: ...and you can restore the default Root protection state By default Root protection is disabled In case of configuration error or malicious attack the legal primary root may receive the BPDU with a higher priority and then loose its place which causes network topology change errors Due to the illegal change the traffic supposed to travel over the high speed link may be pulled to the low speed link an...

Page 522: ... packets ranging from 1 to 255 expressed as a counter value without any units By default the transmission limit on every port is 3 Description Using stp interface transmit limit command you can configure an amount limit to the configuration BPDU transmitted via a port during the Hello Time in system view Using undo stp interface transmit limit command you can restore the default limit in system vi...

Page 523: ...s 20 Description Using stp max hops command you can configure the Max Hops of an MST region Using undo stp max hops command you can restore the default Max Hops On CIST and MSTIs the Max Hops configured on the region root determines the max switching network diameter supported by the local MST region As the BPDU traveling from the spanning tree root each time when it is forwarded by a switch the m...

Page 524: ...ed to an STP switch the port will automatically transit to operate in STP compatible mode However when the STP switch is removed the port stays in STP compatible mode and cannot automatically transit back to MSTP mode In this case you can perform mCheck operation to transit the port to MSTP mode by force For the related command see stp mode stp interface mcheck Example Set mcheck parameter for Eth...

Page 525: ...itch ports send MSTP BPDU packets when connected to the STP switch and the switch provides multiple spanning tree function For the related command see stp mcheck stp stp interface stp interface mcheck Example Set MSTP operation mode as STP compatible Quidway stp mode stp 1 1 27 stp pathcost standard Syntax stp pathcost standard dot1d 1998 dot1t legacy undo stp pathcost standard View System view Pa...

Page 526: ...0 2 000 1 800 1 600 1 400 100Mb s Half Duplex Full Duplex Aggregated Link 2 Ports Aggregated Link 3 Ports Aggregated Link 4 Ports 19 18 15 15 15 200 000 199 999 100 000 66 666 50 000 200 200 180 160 140 1000Mb s Full Duplex Aggregated Link 2 Ports Aggregated Link 3 Ports Aggregated Link 4 Ports 4 3 3 3 20 000 10 000 6 666 5 000 20 18 16 14 10G s Full Duplex Aggregated Link 2 Ports Aggregated Link ...

Page 527: ... if the link to the Ethernet port is a point to point link Description Using stp point to point command you can configure the current Ethernet port not to connect with point to point link Using undo stp point to point command you can configure the link state to the default state in which MSTP automatically detects if the link to the Ethernet port is point to point link By default switch adopts aut...

Page 528: ...es of a port on the STIs are 128 Description Using stp instance port priority command you can configure the priority of a port on a specified STI Using undo stp instance port priority command you can restore the default priority of the port on the specified STI You may specify the instance id parameter as 0 to configure CIST priority of the port The port priority has effect on the port role select...

Page 529: ...h priority takes part in the spanning tree calculation It is configured separately for every STI Different STIs can be configured with different priorities If specifying the instance ID as 0 the command can configure the CIST priority Example Set the bridge priority of the switch in STI 1 to 4096 Quidway stp instance 1 priority 4096 1 1 31 stp region configuration Syntax stp region configuration u...

Page 530: ...Specify the network diameter of the spanning tree ranging from 2 to 7 hello time centi senconds Specifies the Hello Time of the spanning tree ranging from 100 to 1000 and measured in centiseconds Description Using stp root primary command you can configure the current switch as the primary root of the designated STI Using undo stp root command you can cancel the current switch for the primary root...

Page 531: ...llo time 500 1 1 33 stp root secondary Syntax stp instance instance id root secondary bridge diameter bridgenum hello time centi senconds undo stp instance instance id root View System view Parameter instance instance id Specifies the spanning tree instance ID ranging from 0 to 16 Specify it as 0 to configure CIST root secondary Configure the current switch as the secondary root of the designated ...

Page 532: ... primary root bridge or secondary root bridge user can t modify the bridge priority of the switch Example Configure the current switch as the secondary root bridge of STI 4 and specify the diameter of the switching network as 5 and the Hello Time of the switch as 300 centiseconds Quidway stp instance 4 root primary bridge diameter 5 hello time 300 1 1 34 stp root protection Syntax stp root protect...

Page 533: ...e command you can enable the protection function from being attacked by TC BPDU packets on the switch Using the stp tc protection disable command you can disable the protection function By default the protection from TC BPDU packet attack is enabled As a general rule the switch deletes the corresponding entries in the MAC address table and ARP table upon receiving TC BPDU packets When under malici...

Page 534: ...arding state to Forwarding state There is also a delay before state switchover to guarantee the synchronous switchover with the remote switch The Forward Delay configured on the root bridge determines the state transition time The root bridge will determine the state transition time according to the configured values while the other switches will apply the forward delay configured on it When confi...

Page 535: ...o Time to keep the spanning tree stable If the switch receives no BPDU packets for a period of time it will recalculate the spanning tree upon the BPDU timeouts The root bridge transmits BPDU packets at an interval as you configured while other switches apply the Hello Time configured on the root bridge When configuring Hello time Forward Delay and Max Age remember to guarantee the following equat...

Page 536: ... the Max Age If the BPDU expires the STI has to be calculated again Max Age takes no effect on MSTIs If the current switch is CIST root bridge it will check if the configuration BPDU expires according to the configured Max Age Otherwise the switch adopts the Max Age configured on the CIST root bridge When you configure Hello time Forward Delay and Max Age ensure the following formulas equal 2 Forw...

Page 537: ...s 3 The Ethernet switch transmits STP packets every hello time Generally if the switch doesn t receive the STP packets from the upstream switch for 3 times of hello time the switch will decide the upstream switch is dead and will recalculate the topology of the network Then in steady network the recalculation may be caused when the upstream is busy In this case user can redefine the timeout interv...

Page 538: ...e network topology flaps For the related command see stp interface transmit limit Example Set a limit of 5 to the packets transmitted via Ethernet2 0 1 Quidway Ethernet2 0 1 stp transmit limit 5 1 1 41 vlan mapping modulo Syntax vlan mapping modulo modulo View MST region view Parameter modulo Specifies the modulus ranging from 1 to 16 Description Using vlan mapping modulo command you can map a VLA...

Page 539: ...logies Proprietary 1 38 as an example vlan 1 maps to MSTI 1 vlan 2 maps to MSTI2 vlan 16 maps to MSTI16 vlan 17 maps to MSTI 1 and so on For the related command see region name revision level display configuration active configuration Example Map VLAN to STI modulo 16 Quidway mst region vlan mapping modulo 16 ...

Page 540: ...e switch BPDU Tunnel enables geographically segmented user network to transmit BPDU packets transparently over the specified VLAN VPN on the operator s network This allows the user network to participate in a uniform spanning tree calculation while maintaining a separate spanning tree from the operator network By default BPDU Tunnel is disabled Note z Be sure to enable STP for network devices that...

Page 541: ...ommand Manual STP Quidway S6500 Series Ethernet Switches Chapter 2 BPDU TUNNEL Configuration Commands Huawei Technologies Proprietary 2 2 Example Enable BPDU Tunnel on the switch Quidway vlan vpn tunnel ...

Page 542: ...anning tree protocol domain only when they are configured with the same domain settings With MSTP employed interconnected switches determine whether or not they are in the same domain by checking the configuration IDs of the BPDUs between them Configuration ID comprises information such as domain ID and configuration digest As some switches come with some proprietary protocols concerning STP emplo...

Page 543: ...gured with the same settings z To enable digest snooping all interfaces in a MSTP domain used to connect other switches must have digest snooping enabled z Do not enable digest snooping on border interfaces of a MSTP domain z To change domain configuration be sure to disable digest snooping first to prevent broadcast storm Example Enable digest snooping on Ethernet3 0 1 interface Quidway system vi...

Page 544: ...s coming with some proprietary protocols concerning STP employed the way to implement rapid transition on the designated ports of this kind of switches is similar to that of RSTP So when a switch of this kind operates as the upstream switch with Quidway series switches running MSTP connected to it the upstream designated port fails to change their state rapidly Rapid transition is developed for Qu...

Page 545: ... disable rapid transition on the port Rapid transition is disabled on a port by default As switches of certain manufacturers coming with some proprietary protocols concerning STP employed the way to implement rapid transition on the designated ports of this kind of switches is similar to that of RSTP So when a switch of this kind operates as the upstream switch with Quidway series switches running...

Page 546: ...ourced from the upstream switch This enables designated ports of the upstream switch to change their states rapidly Related command stp interface no agreement check Note Configure rapid transition for root port or Alternate port only Example Enable rapid transition on Ethernet3 0 1 port Quidway system view System View return to User View with Ctrl Z Quidway interface Ethernet3 0 1 Quidway Ethernet...

Page 547: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual Security ...

Page 548: ...enticate 1 10 1 1 11 dot1x retry 1 11 1 1 12 dot1x retry version max 1 12 1 1 13 dot1x supp proxy check 1 12 1 1 14 dot1x timer 1 14 1 1 15 dot1x version check 1 15 1 1 16 reset dot1x statistics 1 16 Chapter 2 AAA Configuration Commands 2 1 2 1 AAA Configuration Commands 2 1 2 1 1 access limit 2 1 2 1 2 attribute 2 1 2 1 3 cut connection 2 3 2 1 4 display connection 2 4 2 1 5 display domain 2 5 2 ...

Page 549: ...ounting buffer 2 26 2 2 8 key 2 27 2 2 9 local server 2 28 2 2 10 nas ip 2 29 2 2 11 primary accounting 2 30 2 2 12 primary authentication 2 31 2 2 13 radius nas ip 2 32 2 2 14 radius scheme 2 32 2 2 15 reset radius statistics 2 33 2 2 16 reset stop accounting buffer 2 34 2 2 17 retry 2 35 2 2 18 retry realtime accounting 2 36 2 2 19 retry stop accounting 2 37 2 2 20 secondary accounting 2 38 2 2 ...

Page 550: ...name where interface type specifies the interface type interface num specifies the interface number and interface name specifies the interface name For the respective meanings and value ranges read the Parameter of the Port Command Manual section Description Using display dot1x command you can view the relevant information of 802 1x including configuration information running state session connect...

Page 551: ...isabled Supp Timeout 30 s Server Timeout 100 s Interval between version requests is 30s maximal request times for version information is 3 The maximal retransmitting times 2 Total maximum 802 1x user resource number is 4096 Total current used 802 1x resource number is 0 GigabitEthernet1 0 3 is link up 802 1X protocol is disabled Proxy trap checker is disabled Proxy logoff checker is disabled Versi...

Page 552: ...ble the 802 1x on the current device or on the specified port When it is used in system view if the parameter ports list is not specified 802 1x will be globally enabled If the parameter ports list is specified 802 1x will be enabled on the specified port When this command is used in Ethernet port view the parameter interface list cannot be input and 802 1x can only be enabled on the current port ...

Page 553: ...ol with three handshakes It only transmits username but not password CHAP is more secure and reliable In the process of EAP authentication switch directly sends authentication information of 802 1x user to RADIUS server in the form of EAP packet It is not necessary to transfer the EAP packet to standard RADIUS packet first and then send it to RADIUS server By now for EAP authentication PEAP EAP TL...

Page 554: ...ger the authentication over the users who configure static IP addresses in DHCP environment Quidway dot1x dhcp launch 1 1 5 dot1x guest vlan Syntax dot1x guest vlan vlan id interface interface list undo dot1x guest vlan vlan id interface interface list View System view Ethernet port view Parameter vlan id ID of Guest VLAN ranging from 1 to 4094 interface_list Enable the Guest VLAN interface list i...

Page 555: ...ted because the switch does not send active authentication packet in this mode Example Set the authentication mode to port based Quidway dot1x port method portbased Enable Guest VLAN on all ports Quidway dot1x guest vlan 1 1 1 6 dot1x max user Syntax dot1x max user user number interface interface list undo dot1x max user interface interface list View System view Ethernet port view Parameter user n...

Page 556: ...Ethernet 3 0 1 1 1 7 dot1x port control Syntax dot1x port control auto authorized force unauthorized force interface interface list undo dot1x port control interface interface list View System view Ethernet port view Parameter auto Automatic identification mode configuring the initial state of the interface as unauthorized The user is only allowed to receive or transmit EAPoL packets but not to ac...

Page 557: ... executed in system view It has effect on all the interfaces when no interface is specified The parameter interface list cannot be input when the command is executed in Ethernet port view and it has effect only on the current interface For the related commands see display dot1x Example Configure the interface Ethernet 3 0 1 to be in unauthorized force state Quidway dot1x port control unauthorized ...

Page 558: ... is to finish network service the other accessed users can still use network service When portbased is adopted if only the first access user by this interface can be authenticated successfully the other access users followed can be considered authenticated successfully automatically but if the first one finish the network service the other accessed users network service will be rejected This comma...

Page 559: ...m view Ethernet port view Parameter interface interface list Ethernet interface list represents multiple Ethernet interfaces in the format of interface list interface num to interface num 1 10 interface num is a single Ethernet port in the format of interface num interface type interface num interface name Description Using the dot1x re authenticate command you can enable 802 1x re authentication ...

Page 560: ... configure the maximum times an Ethernet switch can retransmit the authentication request frame to the supplicant Using undo dot1x retry command you can restore the default maximum retransmission time After the switch has transmitted authentication request frame to the user for the first time if no user response is received during the specified time range the switch will re transmit authentication...

Page 561: ... frame for the first time if the switch receives no response from the client response within a certain period of time set by the version authentication timeout timer it resends version request again When the switch receives no response for the configured maximum times it no longer authenticates the version of the client and perform the following authentications If configured this command functions...

Page 562: ...access users via proxy Note that when performing this function the user logging on via proxy need to run Huawei 802 1x client program Huawei 802 1x client program version V1 29 or above is needed This command is used to set on the specified interface when executed in system view The parameter interface list cannot be input when the command is executed in Ethernet Port view and it has effect only o...

Page 563: ... authentication the Authenticator will keep quiet for a while which is specified by quiet period timer before launching the authentication again During the quiet period the Authenticator does not do anything related to 802 1x authentication quiet period value Specify how long the quiet period is The value ranges from 10 to 120 in units of second and defaults to 60 server timeout Specify the timeou...

Page 564: ...Client version request timeout timer If the supplicant device failed to send the version response packet within the time set by this timer then the authenticator device will resend the version request packet ver period value Period set by the version request timeout timer ranging from 1 to 30 in seconds By default the value is 30 Description Using dot1x timer command you can configure the 802 1x t...

Page 565: ...he interface list parameter is specified it means that to enable the feature on the specified interfaces In Ethernet port view the interface list parameter cannot be specified and you can use command only to enable the feature on the current interface Example Configure the port Ethernet 3 0 1 to detect the version of the 802 1x client when it receives an authentication packet Quidway Ethernet3 0 1...

Page 566: ...2 1x When the original statistics is cleared if no port type or port number is specified the global 802 1x statistics of the switch and 802 1x statistics on all the ports will be cleared If the port type and port number are specified the 802 1x statistics on the specified port will be cleared For the related commands see display dot1x Example Clear the 802 1x statistics on Ethernet 3 0 1 Quidway r...

Page 567: ...e amount of supplicants in the current ISP domain Using undo access limit command you can restore the limit to the default setting By default there is no limit to the amount of supplicants in the current ISP domain The access limit command limits the amount of supplicants contained in the current ISP domain The supplicants may contend for the network resources So setting a suitable limit to the am...

Page 568: ...f a user in other words the VLAN to which a user belong The argument vlanid is an integer in the range of 1 to 4094 location Sets the port binding attribute of user nas ip ip address The IP address of the access server in the event of binding a remote port with a user The argument ip address is an IP address in dotted decimal format and defaults to 127 0 0 1 port portnum Sets the port with which a...

Page 569: ...H H radius scheme radius scheme name Configures to cut the connection according to RADIUS server name radius scheme name specifies the RADIUS server name with a character string not exceeding 32 characters interface interface type interface number Configures to cut the connection according to the port ip ip address Configures to cut the connection according to IP address The argument ip address is...

Page 570: ...en created mac mac address Configures to display the supplicant whose MAC address is mac address The argument mac address is in the hexadecimal format H H H radius scheme radius scheme name Configures to display the supplicant according to RADIUS server name radius scheme name specifies the RADIUS server name with a character string not exceeding 32 characters interface interface type interface nu...

Page 571: ...iew Parameter isp name Specifies the ISP domain name with a character string not exceeding 24 characters The specified ISP domain shall have been created Description Using display domain command you can view the configuration of a specified ISP domain or display the summary information of all ISP domains This command is used to output the configuration of a specified ISP domain or display the summ...

Page 572: ...lay the local users according to the state of idle cut function disable means that the user disables the idle cut function and enable means the user enables the function This parameter only takes effect on the users configured as lan access type For other types of users the display local user idle cut enable and display local user idle cut disable commands will not display any information service ...

Page 573: ... relevant information about a specified or all the local users The output can help you with the fault diagnosis and troubleshooting related to local user For the related command see local user Example Display the relevant information of all the local users Quidway display local user The contents of local user user1 State Active ServiceType Mask None Idle Cut Disable AccessLimit Disable Current Acc...

Page 574: ...The attributes of system are all default values ISP domain is a group of users belonging to the same ISP Generally for a username in the userid isp name format taking gw20010608 huawei163 net as an example the isp name i e huawei163 net following the is the ISP domain name When Quidway Series Ethernet Switches control user access as for an ISP user whose username is in userid isp name format the s...

Page 575: ...view Parameter disable means disabling the user to use idle cut function enable means enabling the user to use idle cut function minute Specifies the maximum idle time ranging from 1 to 120 and measured in minutes flow The minimum data traffic ranging from 1 to 10 240 000 and measured in bytes Description Using idle cut command you can configure the user template in the current ISP domain By defau...

Page 576: ...i163 net idle cut enable 50 500 2 1 9 level Syntax level level undo level View Local user view Parameter level Specifies user priority level an integer ranging from 0 to 3 Description Using the level command you can configure user priority level Using the undo level command you can restore the default user priority level By default user priority level is 0 For the related command see local user No...

Page 577: ...ser type is telnet ftp means that the specified user type is ftp lan access means that the specified user type is lan access which mainly refers to Ethernet accessing users 802 1x supplicants for example ssh means the specified user type is SSH terminal means the specified user type is terminal which refers to users who use the terminal service login from the Console port all All the users Descrip...

Page 578: ...en set for all the accessing users If cipher force has been adopted the user efforts of specifying to display passwords in simple text will render useless The password display mode of all the accessing users defaults to auto For the related commands see display local user password Example Force all the accessing users to display passwords in cipher text Quidway local user password display mode cip...

Page 579: ...ch use the messenger time enable command to enable this function and to configure the remaining online time threshold the limit argument and the alert message interval z If the threshold is reached the switch sends messages containing the user s remaining online time to the client at the interval you configured z The client keeps the user informed of the remaining online time through a message ale...

Page 580: ...by the input A plain text password is a character string of no more than 16 characters for example huawei918 The password must be an encrypted string of 24 characters in length for example _ TT8F Y 5SQ Q MAF4 1 Description Using password command you can configure a password for local users Using undo password command you can cancel the specified password If local user password display mode cipher ...

Page 581: ...he related commands see radius scheme display radius Example The following example designates the current ISP domain huawei163 net to use the RADIUS server huawei Quidway isp huawei163 net radius scheme Huawei 2 1 16 scheme Syntax scheme radius scheme radius scheme name local local none undo scheme radius scheme none View ISP domain view Parameter radius scheme name RADIUS scheme a character strin...

Page 582: ...me Note You can use either scheme or radius scheme command to specify the RADIUS scheme for a ISP domain If both of these two commands are used the latest configuration will take effect For the related commands see radius scheme Example Specify the current ISP domain huawei163 net to use the RADIUS scheme huawei Quidway isp huawei163 net scheme radius scheme huawei 2 1 17 self service url Syntax s...

Page 583: ...sword on this page The Change user password option is available only after the user passed the authentication otherwise this option is in grey and unavailable Example In the default ISP domain system configure the URL address of the page used to change the user password on the self service server to http 10 153 89 94 selfservice modPasswd1x jsp userName Quidway domain system Quidway isp system sel...

Page 584: ...ill take effect Example Set to provide the lan access service for the user huawei1 Quidway luser huawei1 service type lan access 2 1 19 state Syntax state active block View ISP domain view Local user view Parameter active Configures the current ISP domain ISP domain view current user local user view as being in active state that is the system allows the users in the domain ISP domain view or the c...

Page 585: ... in the block state Quidway luser huawei1 state block 2 1 20 vlan assignment mode Syntax vlan assignment mode integer string View ISP domain view Parameter integer Specify the dynamic VLAN delivery mode as integer string Specify the dynamic VLAN delivery mode as string Description Using vlan assignment mode command you can specify the dynamic VLAN delivery mode Currently the switch supports RADIUS...

Page 586: ... corresponding integer ID In this example the port is added into VLAN 1024 By default the integer mode is selected that is the switch supports the RADIUS server delivering the integer VLAN ID For the related commands see name Example Specify the dynamic VLAN delivery mode as integer Quidway isp ias vlan assignment mode integer 2 2 RADIUS Protocol Configuration Commands 2 2 1 accounting on enable S...

Page 587: ...AS IP source IP and session ID z The switch sends to CAMS an Accounting On message z Upon receiving the CAMS Accounting On message CAMS finds and deletes the existing online information of the user based on the NAS ID NAS IP source IP and session ID in the Accounting On message Note The main attributes of the Accounting On message NAS ID NAS IP and session ID are often generated automatically by t...

Page 588: ...nting optional command in RADIUS scheme will no longer send real time accounting update packet or stop accounting packet The accounting optional command in RADIUS scheme view is only effective on the accounting that uses this RADIUS scheme Example Enable the selection of RADIUS accounting of the RADIUS scheme named as CAMS Quidway radius cams accounting optional 2 2 3 data flow format Syntax data ...

Page 589: ...packet For the related command see display radius Example Set the unit of data flow that send to RADIUS Server Huawei is kilo byte and the data packet unit is kilo packet Quidway radius huawei data flow format data kilo byte packet kilo packet 2 2 4 display local server statistics Syntax display local server statistics View Any view Parameter None Description Using display local server statistics ...

Page 590: ...US schemes The output can help with RADIUS diagnosis and troubleshooting For the related command see radius scheme Example Display the configuration information of all the RADIUS schemes Quidway display radius SchemeName system Index 0 Type huawei Primary Auth IP 127 0 0 1 Port 1645 State block Primary Acct IP 127 0 0 1 Port 1646 State block Second Auth IP 0 0 0 0 Port 1812 State block Second Acct...

Page 591: ...is and troubleshooting For the related command see radius scheme Example Display the statistics information of RADIUS packets Quidway display radius statistics state statistic total 4120 DEAD 4120 AuthProc 0 AuthSucc 0 AcctStart 0 RLTSend 0 RLTWait 0 AcctStop 0 OnLine 0 Stop 0 StateErr 0 Received and Sent packets statistic Sent PKT total 0 Received PKT total 0 RADIUS received packets statistic Cod...

Page 592: ...ifies the start time of the saving time range and stop time specifies the stop time of the saving time range The time is expressed in the format hh mm ss yyyy mm dd When this parameter is specified all the stopping accounting requests saved in the time range since start time to stop time will be displayed user name user name Configures to display the saved stopping accounting requests according to...

Page 593: ...US authentication authorization packet string Specifies the key with a character string not exceeding 16 characters By default the key is huawei Description Using key command you can configure encryption key for RADIUS authentication authorization or accounting packet Using undo key command you can restore the default key RADIUS client switch system and RADIUS server use MD5 algorithm to encrypt t...

Page 594: ... ip address set NAS IP address of access server ip address is expressed in the format of dotted decimal By default there is a local server with the NAS IP address of 127 0 0 1 key string Set the shared key string is a character string containing up to 16 characters Description Using local server command you can configure the parameters of local RADIUS server Using undo local server command you can...

Page 595: ...the key to huawei Quidway local server nas ip 10 110 1 2 key huawei 2 2 10 nas ip Syntax nas ip ip address undo nas ip View RADIUS scheme view Parameter ip address IP address in dotted decimal format Description Using the nas ip command you can set the source IP address of the network access server NAS the switch in this manual so that all packets destined for the RADIUS server carry the same sour...

Page 596: ...ss and port number of the primary RADIUS accounting server By default as for the newly created RADIUS scheme the IP address of the primary accounting server is 0 0 0 0 and the UDP port number of this server is 1813 as for the system RADIUS scheme created by the system the IP address of the primary accounting server is 127 0 0 1 and the UDP port number is 1646 After creating a RADIUS scheme you are...

Page 597: ...u can restore the default IP address and port number of the primary RADIUS authentication authorization By default as for the newly created RADIUS scheme the IP address of the primary authentication server is 0 0 0 0 and the UDP port number of this server is 1812 as for the system RADIUS scheme created by the system the IP address of the primary authentication server is 127 0 0 1 and the UDP port ...

Page 598: ...he source address of the RADIUS packet sent from NAS Using the undo radius nas ip command you can restore the default setting By specifying the source address of the RADIUS packet you can avoid unreachable packets as returned from the server upon interface failure The source address is normally recommended to be a loopback interface address By default the source address is not specified that is th...

Page 599: ... server and some necessary parameters exchanged with the RADIUS client end switch system So it is necessary to create the RADIUS scheme and enter its view before performing other RADIUS protocol configurations A RADIUS scheme can be used by several ISP domains at the same time You can configure up to 16 RADIUS server groups including the default scheme named as system Although undo radius scheme c...

Page 600: ...erver name radius scheme name specifies the RADIUS server name with a character string not exceeding 32 characters session id session id Configures to delete the stopping accounting requests from the buffer according to the specified session ID session id specifies the session ID with a character string not exceeding 50 characters time range start time stop time Configures to delete the stopping a...

Page 601: ...sion id or username or delete the packets transmitted during the specified time range For the related commands see stop accounting buffer enable retry stop accounting display stop accounting buffer Example Delete the stopping accounting requests saved in the system buffer by the user user0001 huawei163 net Quidway reset stop accounting buffer user name user0001 huawei163 net Delete the stopping ac...

Page 602: ...Parameter retry times Specifies the maximum times of real time accounting request failing to be responded ranging from 1 to 255 By default the accounting request can fail to be responded up to 5 times Description Using retry realtime accounting command you can configure the maximum times of real time accounting request failing to be responded Using undo retry realtime accounting command you can re...

Page 603: ...om 10 to 65535 By default the value is 500 Description Using retry stop accounting command you can configure the maximal retransmission times after stopping accounting request Using undo retry stop accounting command you can restore the retransmission times to the default value Because the stopping accounting request concerns account balance and will affect the amount of charge which is very impor...

Page 604: ...dress and port number for the second RADIUS accounting server Using undo secondary accounting command you can restore the IP address and port number to default values For detailed information read the Description of the primary accounting command For the related commands see key radius scheme state Example Set the IP address of the second accounting server of RADIUS scheme huawei to 10 110 1 1 and...

Page 605: ... huawei to 10 110 1 2 and the UDP port 1812 to provide RADIUS authentication authorization service Quidway radius huawei secondary authentication 10 110 1 2 1812 2 2 22 server type Syntax server type huawei standard undo server type View RADIUS scheme view Parameter huawei Configures the switch system to support the RADIUS server of Huawei type which requires the RADIUS client end switch and RADIU...

Page 606: ...ing Configures to set the state of RADIUS accounting server authentication Configures to set the state of RADIUS authentication authorization block Configures the RADIUS server to be in the state of block active Configures the RADIUS server to be active namely the normal operation state Description Using state command you can configure the state of RADIUS server By default all the RADIUS servers i...

Page 607: ...itch system buffer Using undo stop accounting buffer enable command you can cancel the function of saving the stopping accounting requests without response in the switch system buffer By default enable to save the stopping accounting requests in the buffer Because the stopping accounting request concerns account balance and will affect the amount of charge which is very important for both the user...

Page 608: ... or accounting request packet has been transmitted for a period of time if NAS has not received the response from RADIUS server it has to retransmit the message to guarantee RADIUS service for the user The period taken is called RADIUS server response timeout time which is controlled by the RADIUS server response timeout timer in the switch system This command is used to set this timer Setting a s...

Page 609: ...erval the switch sets the status of the primary RADIUS server to active and sends RADIUS packets to it next time Example Set the quiet time interval of the RADIUS scheme huawei to 3 minutes Quidway radius scheme huawei Quidway radius huawei timer quiet 3 2 2 27 timer realtime accounting Syntax timer realtime accounting minutes undo timer realtime accounting View RADIUS scheme view Parameter minute...

Page 610: ... RADIUS scheme huawei to 15 minutes Quidway radius huawei timer realtime accounting 15 2 2 28 timer response timeout Syntax timer response timeout seconds undo timer response timeout View RADIUS scheme view Parameter seconds RADIUS server response timeout timer ranging from 1 to 10 seconds By default the value is 3 Description Using the timer response timeout command you can configure the RADIUS s...

Page 611: ... for the system RADIUS scheme created by the system the username sent to RADIUS servers excludes the ISP domain name The supplicants are generally named in userid isp name format The part following is the ISP domain name The switch will put the users into certain ISP domains according to the domain names However some earlier RADIUS servers reject the username including ISP domain name In this case...

Page 612: ...t Switches Chapter 2 AAA Configuration Commands Huawei Technologies Proprietary 2 46 For the related command see radius scheme Example Specify to send the username without domain name to RADIUS server Quidway radius huawei user name format without domain ...

Page 613: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual Reliability ...

Page 614: ... statistics 1 3 1 1 4 vrrp authentication mode 1 4 1 1 5 vrrp method 1 5 1 1 6 vrrp ping enable 1 6 1 1 7 vrrp vrid preempt mode 1 7 1 1 8 vrrp vrid priority 1 8 1 1 9 vrrp vrid timer 1 8 1 1 10 vrrp vrid track 1 9 1 1 11 vrrp vrid virtual ip 1 10 Chapter 2 HA Configuration Commands 2 1 2 1 HA Configuration Commands 2 1 2 1 1 display switchover state 2 1 2 1 2 slave auto update config 2 1 2 1 3 sl...

Page 615: ...ing vrrp state packet View User view Parameter state Debugs VRRP state packet Debugs VRRP packets Description Use the debugging vrrp command to enable the VRRP debugging Use the undo debugging vrrp command to disable the VRRP debugging By default the VRRP debugging is disabled Example Enable VRRP state debugging Quidway debugging vrrp state 1 1 2 display vrrp Syntax display vrrp interface vlan int...

Page 616: ...ate information about the specified virtual router on this interface will be displayed If the interface name and virtual router ID are not specified the statistics about all the virtual routers on the switch will be displayed If only the interface name is specified the statistics about all the virtual routers on this interface will be displayed If the interface name and virtual router ID are speci...

Page 617: ...r Invalid Auth Type Times of invalid authentication type Auth Type Mismatch Mismatched times of authentication type Packet Length Errors Times of VRRP packet length error Address List Errors Times of the virtual IP address list error Become Master Times of becoming a master Priority Zero Pkts Rcvd Number of the received advertisement packets with the priority of 0 Advertise Rcvd Number of the rece...

Page 618: ...n this interface will be cleared Example Clear the VRRP statistics on the switch Quidway reset vrrp statistics 1 1 4 vrrp authentication mode Syntax vrrp authentication mode authentication type authentication key undo vrrp authentication mode View VLAN interface view Parameter authentication type Authentication type There are following types z simple Indicates to perform simple character authentic...

Page 619: ...p method View System view Parameter real mac Uses the real MAC address of the interface to match the virtual IP address of the virtual router in VRRP backup virtual mac Uses the virtual MAC address of the interface to match the virtual IP address of the virtual router in VRRP backup Description Use the vrrp method command to set correspondence between the MAC address and the virtual IP address of ...

Page 620: ...n the VLAN interface Example Set the real MAC address of the interface match the virtual IP address of the virtual router Quidway vrrp method real mac 1 1 6 vrrp ping enable Syntax vrrp ping enable undo vrrp ping enable View System view Parameter None Description Use the vrrp ping enable command to enable the function to ping the virtual IP address of the virtual router Use the undo vrrp ping enab...

Page 621: ...e command to configure the preemption and delay of the virtual router Use the undo vrrp vrid preempt mode command to cancel the preemption By default virtual router is in preempt mode and delay value is 0 second If a higher priority switch is required to preempt the master you need configure it as preemption You can also set a delay for the preemption If you configure it not to preempt the delay w...

Page 622: ...nd to configure the virtual router priority Use undo vrrp vrid priority command to clear the virtual router priority The priority decides the status of a switch in the virtual router A higher priority switch is more likely to be a master Priority 0 is reserved for some special purpose The value 255 is reserved for the IP address owner The priority of the IP address owner is always 255 and cannot b...

Page 623: ...ult value You are required to set the identical timer value for the switches in the same virtual router to avoid improper configuration Example Configure the master to transmit VRRP packets every 15 seconds Quidway vlan interface2 vrrp vrid 1 timer advertise 15 1 1 10 vrrp vrid track Syntax vrrp vrid virtual router ID track interface type interface num reduced value reduced undo vrrp vrid virtual ...

Page 624: ...ghest priority and become the new master thereby implementing the backup function The IP address owner does not allow the configuration of interface tracking Note z The monitored physical port may be contained in the VLAN of the VLAN interface the backup group belongs to z When the switch is an IP address owner its interfaces cannot be tracked z If a tracked port becomes up the priority level of t...

Page 625: ... add a virtual IP address into an existing virtual router A virtual router supports up to 16 virtual IP addresses You can use the undo vrrp vrid virtual ip command to remove an existing virtual router or delete an address from this virtual router If no virtual IP address is in the virtual router then the system will automatically remove this virtual router Example Create a virtual router Quidway v...

Page 626: ...number of master slave board Description Use the display switchover state command to display the backup status of master slave board This command displays the backup state of master slave board according to the specified slot number If the slot id is not specified the status of master board will be displayed Example Display the status of master board Quidway display switchover state HA FSM State m...

Page 627: ...disable the automatic synchronous switch By default the automatic synchronous switch is enabled For the related command see slave update config Example Enable automatic synchronous switch between master slave systems Quidway slave auto update config 2 1 3 slave restart Syntax slave restart View User view Parameter None Description Use the slave restart command to restart the slave board When the a...

Page 628: ...ually When the slave board operates normally and the master board is in the real time backup state if you want the slave board to be the master board to ensure the operation of the system you can use this command to implement master slave switchover After that the slave board becomes the new master board and controls the system and the original master board restarts automatically Example Perform m...

Page 629: ...to synchronise the configurations files on master slave board You can use this command to manually synchronize the configuration files on the master board to the slave board Example Synchronize the configuration files on the master board to the slave board Quidway slave update configuration Now saving the current configuration to the slave board Please wait The configuration has been saved to the ...

Page 630: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual System Management ...

Page 631: ...me 1 9 1 1 14 reset recycle bin 1 10 1 1 15 rmdir 1 10 1 1 16 undelete 1 11 1 2 Configuration File Management Commands 1 12 1 2 1 display current configuration 1 12 1 2 2 display saved configuration 1 17 1 2 3 display this 1 19 1 2 4 display startup 1 19 1 2 5 reset saved configuration 1 20 1 2 6 save 1 21 1 2 7 startup saved configuration 1 22 1 3 FTP Server Configuration Commands 1 22 1 3 1 disp...

Page 632: ...get 1 38 1 5 2 tftp put 1 39 1 5 3 tftp server acl 1 39 Chapter 2 MAC Address Table Management Commands 2 1 2 1 MAC Address Table Management Commands 2 1 2 1 1 bridgemactocpu 2 1 2 1 2 display mac address aging time 2 1 2 1 3 display mac address 2 2 2 1 4 mac address 2 3 2 1 5 mac address max mac count 2 4 2 1 6 mac address timer 2 5 Chapter 3 Device Management Commands 3 1 3 1 Device Management C...

Page 633: ...Commands 4 1 4 1 Basic System Configuration and Management Commands 4 1 4 1 1 clock datetime 4 1 4 1 2 clock summer time 4 1 4 1 3 clock timezone 4 3 4 1 4 sysname 4 3 4 2 System Status and System Information Display Commands 4 4 4 2 1 display clock 4 4 4 2 2 display debugging 4 5 4 2 3 display users 4 5 4 2 4 display version 4 6 4 3 System Debug Commands 4 7 4 3 1 debugging 4 7 4 3 2 display diag...

Page 634: ...1 5 1 3 display snmp agent group 5 2 5 1 4 display snmp agent mib view 5 3 5 1 5 display snmp agent statistics 5 5 5 1 6 display snmp agent sys info contact 5 7 5 1 7 display snmp agent sys info location 5 7 5 1 8 display snmp agent sys info version 5 8 5 1 9 display snmp agent usm user 5 8 5 1 10 enable snmp trap 5 9 5 1 11 snmp agent local engineid 5 10 5 1 12 snmp agent community 5 11 5 1 13 sn...

Page 635: ...7 6 7 1 8 ntp service broadcast client 7 6 7 1 9 ntp service broadcast server 7 7 7 1 10 ntp service disable 7 8 7 1 11 ntp service in interface disable 7 8 7 1 12 ntp service max dynamic sessions 7 9 7 1 13 ntp service multicast client 7 10 7 1 14 ntp service multicast server 7 10 7 1 15 ntp service refclock master 7 11 7 1 16 ntp service reliable authentication keyid 7 12 7 1 17 ntp service sour...

Page 636: ...Technologies Proprietary vi 8 1 11 rsa local key pair destroy 8 9 8 1 12 rsa peer public key 8 10 8 1 13 ssh server authentication retries 8 10 8 1 14 ssh server rekey interval 8 11 8 1 15 ssh server timeout 8 11 8 1 16 ssh user assign rsa key 8 12 8 1 17 ssh user username authentication type 8 13 ...

Page 637: ...rd the file directory or URL should be started with slot No flash the No is the slave board number For example suppose slot 1 is slave board text txt file URL on slave board should be slot1 flash text txt 1 1 1 cd Syntax cd directory View User view Parameter directory Destination directory By default the directory is the working path configured by the user when the system starts Description Using ...

Page 638: ...stem will ask whether to overwrite it Example Display current directory information Quidway dir Directory of unit1 flash 0 rw 595 Jul 12 2001 19 41 50 test txt 31877 KB total 1171 KB free Copy the file test txt and saves it as test bak Quidway copy test txt test bak Copy unit1 flash test test txt to unit1 flash test test bak Y N y Copy file unit1 flash test test txt unit1 flash test test bak Displ...

Page 639: ... permanently from the recycle bin using the reset recycle bin command Note that if two files with the same name in a directory are deleted only the latest deleted file will be kept in the recycle bin Example Delete the file flash test test txt Quidway delete flash test test txt Delete flash test test txt Y N 1 1 4 dir Syntax dir all file url View User view Parameter all Display all the files inclu...

Page 640: ...20 13 47 snmpboots 31877 KB total 1171 KB free Note In the output information of dir all command as a hint the name of each deleted file kept in the recycle bin is in a square bracket 1 1 5 execute Syntax execute filename View System view Parameter filename The name of the batch file ranging from 1 to 256 with a suffix of bat Description Using the execute command you can execute the specified batc...

Page 641: ...er batch file Example Execute the batch file test bat in the directory of flash Quidway execute test bat 1 1 6 file prompt Syntax file prompt alert quiet View System view Parameter alert Perform interactive confirmation on dangerous file operations The default value is alert which configures to perform interactive confirmation on dangerous file operations quiet Do not prompt for the file operation...

Page 642: ...e the space of Flash Quidway fixdisk flash Fixdisk flash may take some time to complete Fixdisk unit1 flash completed 1 1 8 format Syntax format filesystem View User view Parameter filesystem Device name Description Using format command you can format the storage device Format operation will cause non recoverable loss of all the files on the device Specially configuration files will be lost after ...

Page 643: ...y on the storage device The directory to be created cannot have the same name as that of other directory or file in the specified directory Example Create the directory dd Quidway mkdir dd Created dir flash dd 1 1 10 more Syntax more file url View User view Parameter file url File name Description Using more command you can view content of specified file The extension name of the specified file mu...

Page 644: ...eurl dest Destination file name Description Using move command you can move files When the destination filename is the same as that of an existing file the system will ask whether to overwrite it Example Move flash test sample txt to flash sample txt Quidway move flash test sample txt flash sample txt Move flash test sample txt to flash sample txt Y N y Moved file flash test sample txt to flash sa...

Page 645: ...can rename a file If the destination file name is the same as an existing directory name or file name operation fails and prompt Duplicate file name or file in use Example Display the current directory information Quidway dir Directory of flash 0 rw 412757 Sep 26 2005 14 49 24 vrpcfg cfg 8 rw 248 Sep 26 2005 10 01 16 sample txt 31877 KB total 1148 KB free Rename the file sample txt with sample bak...

Page 646: ...ile url The name of the file to be deleted Description Using reset recycle bin command you can permanently delete files from the recycle bin The delete command only puts the file into the recycle bin but reset recycle bin command will delete this file permanently Example Delete the file from the recycle bin Quidway reset recycle bin flash p1h_logic out Clear flash plh_logic out Y N y Clearing file...

Page 647: ...y rmdir hello The files in the recycle bin under this directory will be deleted permanently Remove flash hj Y N y Removed directory flash hello 1 1 16 undelete Syntax undelete file url View User view Parameter file url The name of the file to be recovered Description Using undelete command you can recover deleted file The file name to be recovered cannot be the same as an existing directory name I...

Page 648: ...n such as z acl adv View the configuration information of advanced ACL z ospf View the configuration information of OSPF z system View the configuration information of sysname z timerange View the configuration information of time range z user interface View the configuration information of user interface vlan id The VLAN ID Filter the configuration information to be output via regular expression ...

Page 649: ...ion refer to the corresponding operation manual For the related command see save reset saved configuration and display saved configuration Example View the running configuration parameters of the switch Quidway display current configuration sysname Quidway radius scheme system server type nec primary authentication 127 0 0 1 1645 primary accounting 127 0 0 1 1646 user name format without domain do...

Page 650: ... access vlan 2 interface Ethernet1 0 2 interface Ethernet1 0 3 interface Ethernet1 0 4 interface Ethernet2 0 1 port access vlan 2 interface Ethernet2 0 2 interface Ethernet2 0 3 interface Ethernet2 0 4 interface NULL0 ospf area 0 0 0 0 network 10 1 1 0 0 0 0 255 user interface aux 0 user interface vty 0 4 return View configuration information of all the VLANs Quidway display current configuration ...

Page 651: ...estVlan1 igmp snooping enable return View the lines containing the character string 10 in the configuration information The indicates that the 0 before it can appear 0 times or multiple consecutive times Quidway display current configuration include 10 primary authentication 127 0 0 1 1645 primary accounting 127 0 0 1 1646 local server nas ip 127 0 0 1 key hello vlan 1 interface Vlan interface1 ip...

Page 652: ...itive configuration information Quidway display current configuration configuration sysname Quidway radius scheme system server type nec primary authentication 127 0 0 1 1645 primary accounting 127 0 0 1 1646 user name format without domain domain system radius scheme system access limit disable state active idle cut disable domain default enable system local server nas ip 127 0 0 1 key hello rout...

Page 653: ... electrified execute the display saved configuration command to view the startup configuration of the Ethernet Switch For the related commands see save reset saved configuration display current configuration Example Display configuration files in flash memory of Ethernet Switch Quidway display saved configuration sysname Quidway radius scheme system server type nec primary authentication 127 0 0 1...

Page 654: ...ace Vlan interface1 interface Vlan interface2 ip address 10 1 1 2 255 255 255 0 interface Aux0 0 interface Ethernet1 0 1 duplex full speed 1000 port access vlan 2 interface Ethernet1 0 2 interface Ethernet1 0 3 interface Ethernet1 0 4 interface Ethernet2 0 1 port access vlan 2 interface Ethernet2 0 2 interface Ethernet2 0 3 interface Ethernet2 0 4 interface NULL0 ospf area 0 0 0 0 network 10 1 1 0...

Page 655: ... not displayed if they are the same with the default ones while some parameters though have been configured by the user if their related functions are not effective are not displayed either Associated configuration of the interface is displayed when executing the command in different interface views related configuration of the protocol view is displayed when executing this command in different pr...

Page 656: ...p MainBoard Startup saved configuration file flash vrpcfg cfg Next startup saved configuration file flash vrpcfg cfg 1 2 5 reset saved configuration Syntax reset saved configuration View User view Parameter none Description Using reset saved configuration command you can erase configuration files from the flash memory of the Ethernet Switch Perform this command with cautious It is suggested to con...

Page 657: ...Ethernet Switch Quidway reset saved configuration This will delete the configuration in the flash memory The switch configurations will be erased to reconfigure Are you sure Y N 1 2 6 save Syntax save file name safely View User view Parameter file name The name of the configuration file It is a character string of 5 to 56 characters Description Using save command you can save the current configura...

Page 658: ...the configuration file used for enabling the system for the next time The configuration file uses cfg as its extension name and is saved under the root directory of the Flash For the related command please see display startup Example Configure the configuration file for the next start up Quidway startup saved configuration vrpcfg cfg 1 3 FTP Server Configuration Commands Note For information about...

Page 659: ...figuration after setting FTP parameters Example Display the configuration of FTP Server parameters Quidway display ftp server FTP server is running Max user number 5 User count 0 Timeout value in minute 30 1 3 2 display ftp user Syntax display ftp user View Any view Parameter none Description Using display ftp user command you can view the parameters of current FTP user Example Show the configurat...

Page 660: ...FTP user logon By default FTP Server is shut down Perform this command to easily start or shut down FTP Server preventing Ethernet Switch from being attacked by some unknown user Example Shut down FTP Server Quidway undo ftp server 1 3 4 ftp timeout Syntax ftp timeout minute undo ftp timeout View System view Parameter minute Connection timeouts measured in minutes ranging from 1 to 35791 By defaul...

Page 661: ... client for a specific period of time it considers the connection to be failed and disconnect to the client Example Set the connection timeout to 36 minutes Quidway ftp timeout 36 1 4 FTP Client Commands 1 4 1 ascii Syntax ascii View FTP Client view Parameter none Description Using ascii command you can configure data transmission mode as ASCII mode By default the file transmission mode is ASCII m...

Page 662: ...ransmit data in the binary mode ftp binary 200 Type is Image Binary 1 4 3 bye Syntax bye View FTP Client view Parameter none Description Using bye command you can disconnect with the remote FTP Server and return to user view After performing this command you can terminate the control connection and data connection with the remote FTP Server Example Terminate connection with the remote FTP Server a...

Page 663: ...tory on FTP Server Note that the user can only access the directories authorized by the FTP server Example Change the working path to flash temp ftp cd flash temp 1 4 5 cdup Syntax cdup View FTP Client view Parameter none Description Using cdup command you can change working path to the upper level directory This command is used to exit the current directory and return to the upper level directory...

Page 664: ...y you can terminate the control connection and data connection with the remote FTP Server at the same time Related command open Example Terminate connection with the remote FTP Server and stays in FTP Client view ftp close 221 Server closing ftp 1 4 7 debugging Syntax debugging View FTP Client view Parameter none Description Using debugging command you can enable the system debugging functions Exa...

Page 665: ... name Description Using dir command you can get a information list including the file names size and creation date under the current directory If you specify the file name with the parameter filename you can get the information list about this file only Example Display the file information list under the current directory 200 PORT command okay 7 File Listing Follows in ASCII mode rwxrwxrwx 1 noone...

Page 666: ...Follows in ASCII mode rwxrwxrwx 1 noone nogroup 430585 Dec 21 2004 4 app 226 Transfer finished successfully FTP 70 byte s received in 0 122 second s 573 00 byte s sec 1 4 10 disconnect Syntax disconnect View FTP Client view Parameter none Description Using disconnect command subscribers can disconnect FTP client side from FTP server side without exiting FTP client side view This command terminates...

Page 667: ... establish control connection with the remote FTP Server and enter FTP Client view Example Connect to FTP Server at the IP address 1 1 1 1 Quidway ftp 1 1 1 1 1 4 12 get Syntax get remotefile localfile View FTP Client view Parameter localfile Local file name remotefile The name of a file on the remote FTP Server Description Using get command you can download a remote file and save it locally If no...

Page 668: ...lfile View FTP Client view Parameter remotefile Remote file to be queried localfile Saved local file name Description Using the ls command you can get a list of all the file names under the current directory If you use the parameter remotefile you can get the name of this file Note Using the ls command you can only get a list of all the file names However you can get a information list including a...

Page 669: ...ed successfully FTP 1235 byte s received in 1 595 second s 774 00byte s sec 1 4 15 mkdir Syntax mkdir pathname View FTP Client view Parameter pathname Directory name Description Using mkdir command you can create a directory on the remote FTP Server User can perform this operation as long as the remote FTP server has authorized Example Create the directory flash lanswitch on the remote FTP Server ...

Page 670: ...n the FTP Client view Related command close Example Establish control connection with the FTP Server which IP address is 1 1 1 1 ftp open 1 1 1 1 Trying Press CTRL K to abort Connected 220 220 WFTPD 2 0 service by Texas Imperial Software ready for new user User none abc 331 Give me your password please Password 230 Logged in successfully 1 4 17 passive Syntax passive undo passive View FTP Client v...

Page 671: ...te FTP Server Description Using put command you can upload a local file to the remote FTP Server If the user does not specify the filename on the remote server the system will consider it the same as the local file name by default Example Upload the local file temp c to the remote FTP Server and saves it as temp1 c ftp put temp c temp1 c 1 4 19 pwd Syntax pwd View FTP Client view Parameter none De...

Page 672: ...mand you can terminate the connection with the remote FTP Server and return to user view Example Terminate connection with the remote FTP Server and returns to user view ftp quit Quidway 1 4 21 remotehelp Syntax remotehelp protocol command View FTP Client view Parameter protocol command FTP protocol command Description Using remotehelp command you can view help information about the FTP protocol c...

Page 673: ...g rmdir command you can cancel the specified directory from FTP Server The rmdir command can operate successfully only when there are not files under the directory Example Delete the directory flash temp1 from FTP Server ftp rmdir flash temp1 1 4 23 user Syntax user username password View FTP Client view Parameter username Logon username password Logon password Description Using user command you c...

Page 674: ...nable verbose ftp verbose 1 5 TFTP Configuration Commands 1 5 1 tftp get Syntax tftp tftp server get source file dest file View User view Parameter tftp server The IP address or hostname of the TFTP server The name of the TFTP server should be a string ranging from 1 to 20 characters source file Specify the filename of the source file on the TFTP server dest file Specify the filename of the destin...

Page 675: ...address or hostname of the TFTP server The name of the TFTP server should be a string ranging from 1 to 20 characters source file Specify the filename of the source file which is saved on the switch dest file Specify the filename of the destination file which will be saved on the TFTP server Description Using tftp put command you can upload a file from the switch to the specified directory on the ...

Page 676: ...t number ranging from 2000 to 2999 Description Use the tftp server acl command to specify the ACL rule when the TFTP client is making a connection with the TFTP server Use the undo tftp server acl command to cancel the specified ACL rule Example Specify the ACL for TFTP client to ACL 2000 Quidway tftp server acl 2000 The ACL number is not existent or contains no rule Continue Y N y Quidway ...

Page 677: ...he packets not to be passed to CPU for being processed Description Using bridgemactocpu command you can configure whether or not the packets with destination MAC addresses being bridge MAC address of the switch are passed to CPU for being processed By default the packets with destination MAC addresses being bridge MAC address are not to be passed to CPU for being processed Example Configure the pa...

Page 678: ...ntry in the MAC address is 300s 2 1 3 display mac address Syntax display mac address mac addr vlan vlan id static dynamic interface interface name interface type interface num vlan vlan id count View Any view Parameter mac addr Specify the MAC address vlan id Specify the VLAN ID static Static table entry lost after resetting switch dynamic Dynamic table entry which will be aged interface type Spec...

Page 679: ...ddress MAC ADDR VLAN ID STATE PORT INDEX AGING TIME s 0100 0001 0002 1 Config static GigabitEthernet2 0 1 N A 0000 0251 5500 212 Learned GigabitEthernet1 0 2 255 000f 1f9c 0adf 212 Learned GigabitEthernet1 0 2 180 0001 0001 0001 1 Config static GigabitEthernet2 0 2 NOAGED 00e0 fc35 8962 213 Learned GigabitEthernet2 0 13 AGING 2 1 4 mac address Syntax mac address static dynamic mac addr interface i...

Page 680: ...e port of the unicast address when adding entries to the address table For the related commands see display mac address Example Configure the port number corresponding to the MAC address 00e0 fc01 0101 as Ethernet2 0 1 in the address table and sets this entry as static entry Quidway mac address static 00e0 fc01 0101 interface ethernet 2 0 1 vlan 2 2 1 5 mac address max mac count Syntax mac address...

Page 681: ...the aging time is 300 seconds no aging No aging time Description Using mac address timer command you can configure the aging time of the Layer 2 dynamic address table entry Using undo mac address timer command you can restore the default value Too long or too short aging time set by subscribers will cause the problem that the Ethernet switch broadcasts a great mount of data packets without MAC add...

Page 682: ...t slot num Specify the APP file of slave board This parameter is only supported by S6506R Description Using boot boot loader command you can configure the app file used for boot of the next time You can specify two boot files at the same time one is the primary boot file the other is the backup When the switch boots the process is as follows z The switch first selects the primary boot file z If th...

Page 683: ...lot 1 is slave board text txt file URL on slave board should be slot1 flash text txt Example Specify the APP application used for primary boot of next time Quidway boot boot loader primary PLATV100R002B09D002 APP slot 0 The specifed file will be booted next time Quidway 3 1 2 boot bootrom Syntax boot bootrom file url slot slot num list View User view Parameter file url path and name of Bootrom fil...

Page 684: ...m of No 0 slot Quidway boot bootrom PLATV100R002B09D002 btm slot 0 3 1 3 bootrom update security check enable Syntax bootrom update security check enable undo bootrom update security check enable View System view Parameter None Description Using bootrom update security check enable command you can enable the validity check function when upgrade BootROM Using undo bootrom update security check enab...

Page 685: ...kboard views Salience III series engines do not support this command Example Show backboard view Quidway display backboard view The backboard view is 0 Current Back Board Configuration is described as following Slot No lBrd Type Slot Band Width Brd Available 1 NONE 8G NO 2 NONE 8G NO 3 NONE 8G NO 4 LS81FT48 8G YES 5 NONE 0G NO 6 NONE 0G NO 3 1 5 display boot loader Syntax display boot loader View ...

Page 686: ... of board 0 at this time is flash ccc app 3 1 6 display cpu Syntax display cpu slot slot num View Any view Parameter slot num Slot number Description Using display cpu command you can display CPU occupancy Example Display CPU occupancy Quidway display cpu Board 0 CPU busy status 13 in last 5 seconds 13 in last 1 minute 13 in last 5 minutes Board 3 CPU busy status 16 in last 5 seconds 19 in last 1 ...

Page 687: ...e interface card type and interface card type description etc Example Show device information Quidway display device Slot No Brd Type Brd Status Subslot Num Sft Ver 0 LS83SRPC Normal 0 6506R 011 1 LS83SRPC Normal 0 6506R 011 2 LS81GT8U Normal 0 6506R 011 3 LS81FT48 Normal 0 6506R 011 4 NONE Absent Absent None 5 NONE Absent Absent None 6 LS81GT8U Normal 0 6506R 011 7 NONE Absent Absent None Show de...

Page 688: ...s Status of board Subslot Num Subslot number Sft Ver Software version number 3 1 8 display environment Syntax display environment View Any view Parameter none Description Using display environment command you can view environment information Example Display the environment information Quidway display environment System temperature information degree centigrade Board Temperature Lower limit Upper l...

Page 689: ... Example Display the working state of the fans Quidway display fan Fan 1 State Normal Fan 2 State Normal Fan 3 State Normal The above information indicates that all of the four fans work normally 3 1 10 display memory Syntax display memory slot slot number View Any view Parameter slot number Specify slot number Description Using display memory command you can display memory situation Example Displ...

Page 690: ...yte Total Used Memory bytes The Total used Memory of switch unit in byte Used Rate The memory used rate 3 1 11 display power Syntax display power powe id View Any view Parameter power id Power ID Description Using display power command you can view the working state of the built in power supply Example Show power state Quidway display power 1 power 1 State Normal 3 1 12 display schedule reboot Syn...

Page 691: ...rs of the current switch Quidwa display schedule reboot System will reboot at 16 00 00 2002 11 1 in 2 hours and 5 minutes 3 1 13 display uplink monitor Syntax display uplink monitor View Any view Parameter None Description Use the display uplink monitor command to view information about Layer 3 connectivity between the local device and the remote device Related command uplink monitor Example View ...

Page 692: ...ame protection mechanism enabled discards the detected pause frames that are utilized to attack the network it resides and logs these attacks in the logbuffer If the switch experiences successive pause frame attacks it sends messages to the console to warn users Example Enable pause frame protection mechanism on the board in slot 7 Quidway pause protection enable slot 7 3 1 15 product Syntax produ...

Page 693: ...eeded Example Specify the switch type to S6503 and reboot the switch Quidway product 6503 Quidway quit Quidway reboot 3 1 16 qe monitor Syntax qe monitor enable disable View System view Parameter enable Specify to enable queue traffic monitoring disable Specify to disable queue traffic monitoring Description Use the qe monitor command to enable disable queue traffic monitoring Queue traffic monito...

Page 694: ...e the qe monitor errpkt runt command to detect error packets that are of runt type on current interface Use the qe monitor errpkt all command to detect all error packets on current interface If you do not want to detect error packets on current interface use the qe monitor errpkt none command A switch does not detect error packets on current interface by default If the switch receives a great numb...

Page 695: ...idway qe monitor errpkt check time 50 Quidway 3 1 19 qe monitor overflow threshold Syntax qe monitor overflow threshold threshold View System view Parameter threshold An integer that sets the overall traffic threshold ranging from 0 to 4294967295 bps Description Use the qe monitor overflow threshold command to specify the overall traffic threshold used in queue traffic monitoring The overall traff...

Page 696: ...ber ranges from 0 to 6 0 indicates to reset the SRPU taking the same effect as resetting the switch system Description Using reboot command you can reset the whole system or the specified card Example Reset the switch Quidway reboot This command will reboot the system The current configuration has not been saved and will be lost if you continue Continue Y N 3 1 21 rdram Syntax rdram enable disable...

Page 697: ...he mm ranges from 1 to 12 and the value of dd is related to the specific month Description Using the schedule reboot at command you can enable the timing reboot function of the switch and set the specific reboot time and date Using the undo schedule reboot command you can disable the timing reboot function By default the timing reboot switch function is disabled Note The precision of switch timer ...

Page 698: ...valid For the related command see reboot schedule reboot delay display schedule reboot Example Set the switch to be restarted at 22 00 that night the current time is 16 21 Quidway schedule reboot at 22 00 Reboot system at 22 00 2005 04 06 in 5 hours and 39 minutes confirm Y N y Quidway Apr 6 16 21 03 2005 S6506R CMD 5 REBOOT aux0 schedule reboot parameters at 16 21 00 2005 04 06 And system will re...

Page 699: ... entered can the configuration be valid If there is related configuration before it will be covered directly Moreover after the schedule reboot at command is configured and the system time is adjusted by the clock command the original schedule reboot at parameter will become invalid For the related command see reboot schedule reboot at undo schedule reboot display schedule reboot Example Configure...

Page 700: ...e Slot Band Width Brd Available 1 NONE 8G NO 2 NONE 8G NO 3 NONE 4G NO 4 LS81FT48 4G YES 5 NONE 4G NO 6 NONE 4G NO Are you sure the configuration is correct continue Y N 3 1 25 temperature limit Syntax temperature limit slot num down value up value undo temperature limit slot num View User view system view Parameter slot num Physical card number down value Lower temperature limit up value Upper te...

Page 701: ...Command Manual System Management Quidway S6500 Series Ethernet Switches Chapter 3 Device Management Commands Huawei Technologies Proprietary 3 20 Success temperature limit set ...

Page 702: ...from 1993 to 2035 MM ranges from 1 to 12 and DD ranges from 1 to 31 Description Using clock datetime command you can configure the current date and clock of Ethernet Switch By default the date and clock of Ethernet Switch is set as 0 0 0 2000 1 1 The current date and clock of Ethernet Switch must be set in the circumstance that absolute time is strictly required For the related commands see displa...

Page 703: ...er time input like HH MM SS hour minute second Description Using clock summer time command you can set the name starting and ending time of the summer time Using undo clock summer time command you can remove the configuration of the summer time After the configuration takes effect the display clock command can be used to check it Besides the time of the log or debug information uses the local time...

Page 704: ...e second Description Using clock timezone command you can set the information of the local time zone Using undo clock timezone command you can restore to the default Universal Time Coordinated UTC time zone After the configuration takes effect the display clock command can be used to check it Besides the time of the log or debug information uses the local time after the adjustment of the time zone...

Page 705: ... Ethernet Switch will affect the prompt of command line interface E g the host name of Ethernet Switch is Quidway and the prompt in user view is Quidway Example Set the hostname of the Ethernet Switch as QuidwayLANSwitch Quidway sysname QuidwayLANSwitch QuidwayLANSwitch 4 2 System Status and System Information Display Commands 4 2 1 display clock Syntax display clock View Any view Parameter none D...

Page 706: ...e Ethernet port name interface type Specify the Ethernet port type interface num Specify the Ethernet port number module name Specify the module name Description Using display debugging command you can view the enabled debugging process Show all the enabled debugging when there is no parameter For the related commands see debugging Example Show all the enabled debugging Quidway display debugging I...

Page 707: ... display version command you can view such information as software version issue date and the basic hardware configurations Example Display the information about the system version Quidway display version Hello 3Com Versatile Routing Platform Software VRP R software Version 3 10 Release 3009 Copyright c 2003 2005 Hangzhou Hello 3Com Tech Co Ltd All rights reserved Copyright c 2000 2003 Hello Tech ...

Page 708: ... all Enable or disable all the debugging module name Specify the module name debugging option Debugging option Description Using debugging command you can enable the system debugging Using undo debugging command you can disable the system debugging By default all the debugging processes are disabled Ethernet Switch provides various kinds of debugging functions for technical support personnel and e...

Page 709: ...modules You can use all these information to help diagnose and troubleshoot the Ethernet switch When the Ethernet switch does not run well you can collect all sorts of information about the switch to locate the source of fault However each module has its corresponding display command which make it difficult for you to collect all the information needed In this case you can use display diagnostic i...

Page 710: ...gure TTL value for echo requests to be sent range from 1 to 255 i Configure to choose packet sent on the interface interface type Specify the interface type interface num Specify the interface number interface name Specify the interface name n Configure to take the host parameter as IP address without domain name resolution p pattern is the hexadecimal padding of ICMP ECHO REQUEST e g p ff pads th...

Page 711: ...T is 56 bytes z Default timeout of ECHO RESPONSE is 2000ms z Do not display other ICMP packets non ECHO RESPONSE z The TOS value of echo requests is 0 The ping command sends ICMP ECHO REQUEST message to the destination If the network to the destination works well then the destination host will send ICMP ECHO REPLY to the source host after receiving ICMP ECHO REQUEST Perform ping command to trouble...

Page 712: ...ress used by tracert command f Configure to verify the f switch first TTL specifies an initial TTL ranging from 0 to the maximum TTL m Configure to verify the m switch max TTL specifies a maximum TTL ranging from 0 to 255 and larger than the initial TTL p Configure to verify the p switch port is an integer host port number ranging from 0 to 65535 Generally user need not modify this option q Config...

Page 713: ...t of tracert command includes IP address of all the gateways to the destination If a certain gateway times out output Example Test the gateways passed by the packets to the destination host at 18 26 0 115 Quidway tracert 18 26 0 115 tracert to allspice lcs mit edu 18 26 0 115 30 hops max 40 bytes packet 1 helios ee lbl gov 128 3 112 1 0 ms 0 ms 0 ms 2 lilac dmc Berkeley EDU 128 32 216 1 19 ms 19 m...

Page 714: ...an be channel6 channel7 channel8 channel9 console logbuffer loghost monitor snmpagent trapbuffer Description Using display channel command you can view the details about the information channel Without parameter display channel command shows the configurations of all the channels Example Show details about the information channel 0 Quidway display channel 0 channel number 0 channel name console MO...

Page 715: ...play info center Information Center enabled Log host 173 168 1 10 channel number 2 channel name loghost language english host facility local 7 Console channel number 0 channel name console Monitor channel number 1 channel name monitor SNMP Agent channel number 5 channel name snmpagent Log buffer enabled max buffer size 1024 current buffer size 256 current messages 6 channel number 4 channel name l...

Page 716: ...on generated during the debugging progress size Configure the size of buffer buffersize Size of buffer number of messages which can be kept By default the size of the buffer is 512 Filter the configuration information to be output via regular expression begin Begin with the line that matches the regular expression exclude Exclude lines that match the regular expression include Include lines that m...

Page 717: ... immediately z critical Level 3 information critical information z errors Level 4 information error information z warnings level 5 information warning information z notifications Level 6 information showed normally and important z informational Level 7 information notice to be recorded z debugging Level 8 information generated during the debugging progress Description Using display logbuffer summa...

Page 718: ...ystem trapbuffer attribute and the log information in trapbuffer Quidway display trapbuffer Trapping Buffer Configuration and contents enabled allowed max buffer size 1024 actual buffer size 256 channel number 3 channel name trapbuffer dropped messages 0 overwritten messages 0 current messages 6 Dec 31 14 01 25 2004 Quidway DEV 2 LOAD FINISHED Trap 1 3 6 1 4 1 2011 2 23 1 12 1 20 frameIndex is 0 s...

Page 719: ...le Rename the channel 0 as execconsole Quidway info center channel 0 name execconsole 4 5 7 info center console channel Syntax info center console channel channel number channel name undo info center console channel View System view Parameter channel number Channel number ranging from 0 to 9 that is system has ten channels channel name Specify the channel name The name can be channel6 channel7 cha...

Page 720: ...r enable command you can disable system log function By default system log function is enabled Only after the system log function is enabled can the system output the log information to the info center loghost and console etc For the related commands see info center loghost info center logbuffer info center console channel info center monitor channel display info center Example Enable the system l...

Page 721: ...fter the system logging is enabled For the related commands see info center enable display info center Example Send log information to buffer and sets the size of buffer as 50 Quidway info center logbuffer size 50 4 5 10 info center loghost Syntax info center loghost host ip addr channel channel number channel name facility local number language chinese english undo info center loghost host ip add...

Page 722: ... 1 4 5 11 info center loghost source Syntax info center loghost source interface name undo info center loghost source View System view Parameter source interface name set source address of the packets sent to loghost as the address of the interface specified by the interface name Normally the interface can be VLAN interface NULL interface or Loopback interface Description Using info center loghost...

Page 723: ...n configure the channel to output the log information to the user terminal Using undo info center monitor channel command you can restore the channel to output the log information to the user terminal to default value By default Ethernet switches do not output log information to user terminal This command takes effect only after system logging is started For the related commands see info center en...

Page 724: ... information channel Quidway info center snmp channel 6 4 5 14 info center source Syntax info center source modu name default channel channel number channel name log trap debug level severity state state undo info center source modu name default channel channel number channel name View System view Parameter modu name Module name default All the modules log Log information trap Trap information deb...

Page 725: ...mational debugging debugging Trapbuffer informational warning debugging Logbuffer warning debugging debugging SNMPagent debugging warning debugging Channel6 debugging debugging debugging Channel7 debugging debugging debugging Channel8 debugging debugging debugging Channel9 debugging debugging debugging Table 4 2 Default information switch state of each channel Channel Log information switch Trap i...

Page 726: ... command you can cancel the contents of the information channel For example for the filter of IP module log output you can configure to output the logs at a level higher than warnings to the log host and output those higher than informational to the log buffer You can also configure to output the trap information on the IP module to a specified trap host etc The channels for filtering in all the d...

Page 727: ... 15 info center timestamp Syntax info center timestamp log trap debugging boot date none undo info center timestamp log trap debugging View System view Parameter log Log information trap Trap information debugging Debugging information boot Time elapsing after system starts Format xxxxxx yyyyyy xxxxxx is the high 32 bits of the elapsed time in milliseconds after system starts and yyyyyy is the low...

Page 728: ...nel number ranging from 0 to 9 that is the system has ten channels channel name Specify the channel name Description Using info center trapbuffer command you can output information to the trap buffer Using undo info center trapbuffer command you can cancel output information to trap buffer By default output information is transmitted to trap buffer and size of trap buffer is 256 This command takes...

Page 729: ...et trapbuffer View User view Parameter none Description Using reset trapbuffer command you can reset information in trap buffer Example Clear information in trap buffer Quidway reset trapbuffer 4 5 19 terminal debugging Syntax terminal debugging undo terminal debugging View User view Parameter none Description Using terminal debugging command you can configure to display the debugging information ...

Page 730: ...al debugging 4 5 20 terminal logging Syntax terminal logging undo terminal logging View User view Parameter none Description Using terminal logging command you can enable terminal log information display Using undo terminal logging command you can disable terminal log information display By default this function is enabled Example Disable the terminal log display Quidway undo terminal logging 4 5 ...

Page 731: ...bugging log trap information will be displayed in local terminal which is equals to having performed undo terminal debugging undo terminal logging undo terminal trapping commands When the terminal monitor is enabled you can use terminal debugging undo terminal debugging terminal logging terminal logging and terminal trapping undo terminal trapping respectively to enable or disable the correspondin...

Page 732: ...ter read display read only community information write display read write community information Description Using display snmp agent community command you can view the currently configured community names Example Display the currently configured community names Quidway display snmp agent community community name public group name public storage type nonVolatile community name tom group name hello ...

Page 733: ... the communication with SNMP application etc Example Display the engine ID of current device Quidway display snmp agent local engineid SNMP local engineID 00000009020000000C025808 5 1 3 display snmp agent group Syntax display snmp agent group group name View Any view Parameter groupname Group name ranging from 1 to 32 bytes Description Using display snmp agent group command you can view group name...

Page 734: ...MIB view corresponding to that group storage type Storage type 5 1 4 display snmp agent mib view Syntax display snmp agent mib view exclude include viewname mib view View Any view Parameter exclude Display the SNMP mib view excluded Include Display the SNMP mib view included viewname Display the SNMP mib view according to the mib view name mib view Specify the mib view name Description display snm...

Page 735: ...acmMIB Subtree mask Storage type nonVolatile View Type excluded View status active View name ViewDefault MIB Subtree snmpModules 18 Subtree mask Storage type nonVolatile View Type excluded View status active The following table describes the output fields Table 5 2 Output description of the display snmp agent mib view command Field Description View name View name MIB Subtree MIB subtree Subtree ma...

Page 736: ...munication Quidway display snmp agent statistics 9232 Messages delivered to the SNMP entity 0 Messages which were for an unsupported version 0 Messages which used a SNMP community name not known 0 Messages which represented an illegal operation for the community supplied 0 ASN 1 or BER errors in the process of decoding 9266 Messages passed from the SNMP entity 0 SNMP PDUs which had badValue error ...

Page 737: ...MP packets with encoding error 9266 Messages passed from the SNMP entity Total number of the output SNMP packets 0 SNMP PDUs which had badValue error status Number of SNMP packets with Bad_values error 0 SNMP PDUs which had genErr error status Number of SNMP packets with General_errors 11 SNMP PDUs which had noSuchName error status Number of the packets requesting nonexistent MIB objects 0 SNMP PD...

Page 738: ... Description Using display snmp agent sys info contact command you can view the character string sysContact system contact Example Display the character string sysContact system contact Quidway display snmp agent sys info contact The contact person for this managed node Hangzhou Huawei 3Com Tech Co Ltd 5 1 7 display snmp agent sys info location Syntax display snmp agent sys info location View Any ...

Page 739: ...scription Using display snmp agent sys info version command you can view the version information about the running SMNMP in the system Example Display the version information of running SNMP Quidway display snmp agent sys info version SNMP version running in the system SNMPv3 5 1 9 display snmp agent usm user Syntax display snmp agent usm user engineid engineid group groupname username username Vi...

Page 740: ...UserStatus active The following table describes the output fields Table 5 4 Output description of the display snmp agent usm user command Field Description User name The name of SNMP user Group name The name of SNMP group Engine ID Character string identifying SNMP device Storage type The storing type of SNMP information UserStatus The status of the user may be active or inactive 5 1 10 enable snm...

Page 741: ...local engineid Specify an engineID for the local SNMPv3 entity engineid Specify the engine ID with a character string only composed of hexadecimal numbers the size must be in the range 5 to 32 bytes An engine ID can contain up to 64 4 bit hexadecimal numbers By default the value is Enterprise Number device information Description Using snmp agent local engineid command you can configure a name for...

Page 742: ... community command you can configure community access name and enable the access to SNMP Using undo snmp agent community command you can cancel the settings of community access name Example Configure community name as hello and permits read only access by this community name Quidway snmp agent community read hello Configure community name as mgr and permits read write access Quidway snmp agent com...

Page 743: ... notifyview Specify the notify view name ranging from 1 to 32 bytes acl acl list Set access control list for this group name Description Using snmp agent group command you can configure a new SNMP group that is to map SNMP user to SNMP view Using undo snmp agent group command you can cancel a specified SNMP group For the following reasons z snmp agent target host command automatically generates a ...

Page 744: ...efault the view name is ViewDefault OID is 1 3 6 1 Both the character string of OID and the node name can be input as parameter Example Create a view that consists of all the objects of MIB II Quidway snmp agent mib view included mib2 1 3 6 1 2 1 5 1 15 snmp agent packet max size Syntax snmp agent packet max size byte count undo snmp agent packet max size View System view Parameter byte count Spec...

Page 745: ...m 1 to 255 By default the contact information is Hello Beijing China sysLocation Specify a character string to describe the system location By default the character string is Beijing China version version of running SNMP v1 SNMP V1 v2c SNMP V2C v3 SNMP V3 all all SNMP version includes SNMP V1 SNMP V2C SNMP V3 Description Using snmp agent sys info command you can configure system information such a...

Page 746: ...the SNMP notification params Specify SNMP target information to be used in the generation of SNMP messages v1 Represent the version of SNMPV1 v2c Represent the version of SNMPV2C v3 Represent the version of SNMPV3 authentication Configure to authenticate the packet without encryption privacy Configure to authenticate and encrypt the packet community string Specify the community name The character ...

Page 747: ...entication coldstart linkdown linkup bgp backwardtransition established vrrp authfailure newmaster View System view Parameter standard authentication coldstart linkdown linkup Configure to send standard Trap messages authentication Configure to send SNMP authentication Trap messages coldstart Configure to send SNMP cold start Trap messages linkdown Configure to send SNMP link down Trap messages li...

Page 748: ... snmp agent trap life seconds undo snmp agent trap life View System view Parameter seconds Specify the timeouts ranging from 1 to 2592000 seconds By default the timeout interval is 120 seconds Description Using snmp agent trap life command you can configure the timeout of Trap packets Using undo snmp agent trap life command you can restore the default value The set timeout of Trap packet is repres...

Page 749: ...mp agent trap enable snmp agent target host snmp agent trap life Example Configure the queue length to 200 Quidway snmp agent trap queue size 200 5 1 21 snmp agent trap source Syntax snmp agent trap source vlan interface vlan id undo snmp agent trap source View System view Parameter vlan id Specify the VLAN interface ID ranging from 1 to 4000 Description Using snmp agent trap source command you ca...

Page 750: ...safe mode v3 Configure to use V3 safe mode authentication mode Specify the safety level as authentication required md5 MD5 algorithm is adopted in authentication MD5 authentication uses the 128 digit password Computation speed of MD5 is faster than that of SHA sha SHA algorithm is adopted in authentication SHA authentication uses the 160 digit password Computation speed of SHA is slower than that ...

Page 751: ...V3 it will add a new user for an SNMP group Example Add a user wang for hello an SNMP group configures to authenticate with MD5 and sets authentication password as pass Quidway snmp agent usm user v3 wang hello authentication mode md5 pass 5 1 23 undo snmp agent Syntax undo snmp agent View System view Parameter none Description Using undo snmp agent command you can disable all versions of SNMP run...

Page 752: ...r the related commands see rmon alarm Example Display the RMON alarm information Quidway display rmon alarm Alarm table 1 owned by abc is VALID Samples type delta Variable formula 1 3 6 1 2 1 2 2 1 11 67111554 ifInUcastPkts 67111554 Sampling interval 10 sec Rising threshold 100 linked with event 7 Falling threshold 10 linked with event 8 When startup enables risingOrFallingAlarm Latest value 0 Tab...

Page 753: ...arm The type of the first alarm Specifies to alarm when exceeding the rising threshold or the falling threshold Latest value The value of the latest sampling 6 1 2 display rmon event Syntax display rmon event event table entry View Any view Parameter event table entry Entry index of event table Description Using display rmon event command you can view RMON events The display includes event index i...

Page 754: ...on eventlog event number View Any view Parameter event number Entry index of event table Description Using display rmon eventlog command you can view RMON event log The display includes description about event index in event table description to the event and occurrence time of the latest event counted on system initiate boot time in centisecond Example Show event log of RMON Quidway display rmon ...

Page 755: ...og 1 2 at 0days 00h 02m 27s The eventlog corresponding to the index 1 2 is generated at 0days 00h 02m 27s 6 1 4 display rmon history Syntax display rmon history port num View Any view Parameter port num Ethernet port name Description Using display rmon history command you can view latest RMON history sampling information including utility error number and total packet number For the related comman...

Page 756: ...nterval buckets Records in history control table Dropevents Dropping packet events octets Sent Received octets in sampling time packets Packets sent received in sampling time broadcast packets Number of broadcast packets multicast packets Number of multicast packets CRC alignment errors Number of CRC error packets undersized packets Number of undersized packets oversized packets Number of oversize...

Page 757: ...e display rmon prialarm command Field Description Prialarm table 1 Index of extended alarm entry owned by abc Creator of the extended alarm entry VALID The entry corresponding to the index is valid Samples type The sampling type Variable formula The variable formula of the node Description The description of the alarm variable Rising threshold Rising threshold When sampling value rises from normal...

Page 758: ...sized or oversized packet timeout fragment broadcast multicast unicast and bandwidth utility For the related commands see rmon statistics Example Show RMON statistics Quidway display rmon statistics Ethernet 3 0 1 Statistics entry 3 owned by abc is VALID Interface Ethernet3 0 1 ifIndex 201326722 etherStatsOctets 3776 etherStatsPkts 30 etherStatsBroadcastPkts 0 etherStatsMulticastPkts 30 etherStats...

Page 759: ... packets etherStatsFragments Number of undersized and CRC error packets etherStatsJabbers Number of oversized and CRC error packets etherStatsCRCAlignErrors Number of CRC error packets etherStatsCollisions Number of collision packets etherStatsDropEvents insufficient resources Dropping packet events Packets received according to length The number of packets calculated by the bytes length 6 1 7 rmo...

Page 760: ... alarm Length of the character string ranges from 1 to 127 Description Using rmon alarm command you can add an entry to the alarm table Using undo rmon alarm command you can cancel an entry from this table In this way the alarm event can be triggered in the abnormal situations and then decides to log and send trap to the NM station Example Delete the information of entry 15 from the alarm table Qu...

Page 761: ... the entry 10 to the event table and marks it as log event Quidway rmon event 10 log 6 1 9 rmon history Syntax rmon history entry number buckets number interval interval owner text undo rmon history entry number View Ethernet port view Parameter entry number Number of the entry to be added deleted ranging from 1 to 65535 buckets number Capacity of the history table corresponding to the control lin...

Page 762: ...everal integer MIB node instances The node can be OID in dotted notation description Specifies the alarm description with a length ranging from 1 to 256 interval Sets the sampling interval ranging from 10 to 65535 and measured in seconds delta absolute changeratio Specifies the sampling type as delta ratio absolute ratio or change ratio threshold value1 Rising threshold value specified with a numb...

Page 763: ...mon statistics entry number owner text undo rmon statistics entry number View Ethernet port view Parameter entry number Number of the entry to be added deleted ranging from 1 to 65535 owner text Creator of the entry Length of the character string ranges from 1 to127 Description Using rmon statistics command you can add an entry to the statistic table Using undo rmon statistics command you can canc...

Page 764: ...User view Parameter access NTP access control debugging adjustment NTP clock adjustment debugging all All NTP debugging functions authentication NTP authentication debugging event NTP event debugging filter NTP filter information debugging packet NTP packet debugging parameter NTP clock parameter debugging refclock NTP reference clock debugging selection NTP clock selection information debugging s...

Page 765: ... service provided by the local equipment When you configure this command without the verbose parameter the Ethernet switch will display the brief information about all the sessions it maintains With the verbose parameter configured Ethernet switch will display the detail information about all the sessions it maintains Note All the NTP operating modes create sessions except the NTP Server Mode afte...

Page 766: ...s Table 7 1 NTP service status information Output Meaning clock status unsynchronized Local clock status do not synchronize to any remote NTP server clock stratum 16 Indicates the NTP stratum of local clock reference clock ID Indicates the address of a remote server of the reference ID in the case that the local system has been synchronized by a remote NTP server or the ID of some clock source nom...

Page 767: ...server on the way from the local equipment to the reference clock source Example Quidway display ntp service trace server 127 0 0 1 stratum 8 offset 0 000000 synch distance 0 00000 refid 127 127 1 0 7 1 5 ntp service access Syntax ntp service access query synchronization server peer acl number undo ntp service access query synchronization server peer View System view Parameter query Allow to contr...

Page 768: ...The first matched authority will be given Example Give the authority of time request query control and synchronization with the local equipment to the peer in ACL 2076 Quidway ntp service access peer 2076 Give the authority of time request and query control of the local equipment to the peer in ACL 2028 Quidway ntp service access synchronization 2028 7 1 6 ntp service authentication enable Syntax ...

Page 769: ...nd you can set NTP authentication key Using undo ntp service authentication keyid command you can cancel the NTP authentication key By default there is no authentication key Only MD5 authentication is supported for the NTP authentication key settings Example Set MD5 authentication key 10 as BetterKey Quidway ntp service authentication keyid 10 authentication mode md5 BetterKey 7 1 8 ntp service br...

Page 770: ...to receive NTP broadcast packets via Vlan Interface1 Quidway interface vlan interface1 Quidway Vlan Interface1 ntp service broadcast client 7 1 9 ntp service broadcast server Syntax ntp service broadcast server authentication keyid keyid version number undo ntp service broadcast server View VLAN interface view Parameter authentication keyid Specify the authentication key keyid Key ID used in broad...

Page 771: ...ication key 4 version 3 7 1 10 ntp service disable Syntax ntp service disable undo ntp service disable View System view Parameter None Description Using ntp service disable command you can disable the NTP service function globally Using undo ntp service disable command you can enable this function globally By default the NTP service is enabled Example Disable NTP service function Quidway ntp servi...

Page 772: ... ntp service max dynamic sessions Syntax ntp service max dynamic sessions number undo ntp service max dynamic sessions View System view Parameter number The maximum dynamic sessions can be created locally ranging from 0 to 100 Description Using ntp service max dynamic sessions command you can set how many dynamic sessions can be created locally Using undo ntp service max dynamic sessions command y...

Page 773: ...multicast messages and operate in multicast client mode The local Ethernet Switch listens to the multicast from the server When it receives the first multicast packet it starts a brief client server mode to switch messages with a remote server for estimating the network delay Thereafter the local Ethernet Switch enters multicast client mode and continues listening to the multicast and synchronizes...

Page 774: ... the multicast IP address Using undo ntp service multicast server command you can disable NTP multicast server mode if no IP address is specified the switch will disable the configuration of the multicast IP address 224 0 1 1 By default the multicast service is disabled IP address defaults to 224 0 1 1 and the version number defaults to 3 Designate an interface on the local equipment to transmit N...

Page 775: ...ck as an NTP master clock to provide synchronized time for other equipment ip address specifies the IP address of an external clock as 127 127 t u If no IP address is specified the local clock is set as the NTP master clock by default You can also specify the stratum of the NTP master clock Example Set the local clock as the NTP master clock to provide synchronized time for its peers and locate it...

Page 776: ...number undo ntp service source interface View System view Parameter interface name Specify an interface The source IP address of the packets will be taken from the address of the interface interface type Specify the interface type and determine an interface with the interface number parameter interface number Specify the interface number and determine an interface with the interface type parameter...

Page 777: ...tication keyid Define authentication key keyid Key ID used for transmitting messages to a remote server ranging from 0 to 4294967295 source interface Specify the name of an interface interface name Specify the interface name When a local device sends an NTP message to a peer the source IP address of the message is taken from the address of the interface interface type Specify the interface type an...

Page 778: ...ntp service unicast server ip address version number authentication keyid keyid source interface interface name interface type interface number priority undo ntp service unicast server ip address View System view Parameter ip address Specify the IP address of a remote server version Define NTP version number number NTP version number ranging from 1 to 3 authentication keyid Define authentication k...

Page 779: ...ts to 3 the authentication is disabled and the local server is not the first choice The command announces to use the remote server at ip address as the local time server ip address specifies a host address other than an IP address of broadcast multicast or reference clock By operating in client mode a local device can be synchronized by a remote server but not synchronize any remote server Example...

Page 780: ... protocol to the information center as debugging information and debug a single user interface Using the undo debugging ssh server command you can disable debugging function By default debugging function is disabled For the related commands see ssh server authentication retries ssh server rekey interval ssh server timeout Example Print debugging information in running SSH Quidway debugging ssh ser...

Page 781: ...lay local key pair and public key of the server Quidway display rsa local key pair public Key pair was generated at 12 26 33 UTC 2002 4 4 Key name rtvrp_Host Usage Encryption Key Key Data 30470240 AF7DB1D0 DA78944F 53B7B59B 40D425D0 DC9C57D2 A60916C2 1F165807 08B84DDB 5F4DB8E7 A115B74E 2D41D96C AC61D276 AA027E41 DD48DE64 696E0934 EB872805 02030100 01 Key pair was generated at 12 26 45 UTC 2002 4 4...

Page 782: ...air create Example Display a designated RSA public key Quidway display rsa peer public key Address Bits Name 1023 abcd 1024 hq 1024 wn1 1024 hq_all Quidway display rsa peer public key name abcd Key name abcd Key address Data 30818602 8180739A 291ABDA7 04F5D93D C8FDF84C 42746319 91C164B0 DF178C55 FA833591 C7D47D53 81D09CE8 2913D7ED F9C08511 D83CA4ED 2B30B809 808EB0D1 F52D045D E40861B7 4A0E1355 23CC...

Page 783: ...ntication retries 3 times Display SSH sessions Quidway display ssh server session Connection Version Encryption State Username VTY0 1 5 DES Session started Quidway VTY3 1 5 DES Session started switch 8 1 5 display ssh user information Command display ssh user information username View Any view Parameter username Valid SSH user named defined by AAA Description Using the display ssh user information...

Page 784: ...ption Using the peer public key end command you can finish editing peer public key and quit from public key view to system view For the related commands see rsa peer public key public key code end Example Quit public key view Quidway rsa peer public key quidway003 Quidway rsa public key peer public key end Quidway 8 1 7 protocol inbound Command protocol inbound all ssh telnet View VTY user interfa...

Page 785: ...d ssh configuration fails if you configure authentication mode password and authentication mode none For the related commands see user interface vty Example Disable Telnet on vty0 through vty4 only SSH available Quidway system view System View return to User View with Ctrl Z Quidway user interface vty 0 4 Quidway ui vty0 4 protocol inbound ssh Disable Telnet on vty0 only SSH available Quidway syst...

Page 786: ... rsa key code 0861B74A0E135523CCD74CAC61F8E58C452B2F3F2DA0DC Quidway rsa key code C48E3306367FE187BDD944018B3B69F3CBB0A573202C16 Quidway rsa key code BB2FC1ACF3EC8F828D55A36F1CDDC4BB45504F020125 Quidway rsa key code public key code end 8 1 9 public key code end Command public key code end View Public key edit view Parameter None Description Using the public key code end command you can save the co...

Page 787: ...e plus host for example Quidway_host and Quidway_server The configuration result of this command will not be stored in the configuration file The system prompts you to key in bit range for which the server key pair must be at least 128 bits longer than the host key pair The maximum bit range of both key pairs is 2048 bits and the minimum is 512 If there have been key pairs the system will prompts ...

Page 788: ...w System view Parameter None Description Using the rsa local key pair destroy command you can remove all RSA key pairs at the server including Host key pair and Server key pair Acknowledgement information will be promoted before the system clears all RSA key pairs This command is just a one time instruction so the result will not be stored in the configuration file For the related commands see rsa...

Page 789: ...ram supporting SSH1 5 For the related commands see public key code begin public key code end Example Enter the public key view Quidway system view System View return to User View with Ctrl Z Quidway rsa peer public key quidway002 Quidway rsa public 8 1 13 ssh server authentication retries Command ssh server authentication retries times undo ssh server authentication retries View System view Parame...

Page 790: ... undo ssh server rekey interval View System view Parameter hours Defines key update interval in the range of 1 24 hours Description Using the ssh server rekey interval command you can define update interval of server key pair Using the undo ssh server rekey interval command you can cancel the current setting By default system doesn t update the server key For the related commands see display ssh s...

Page 791: ...s Quidway system view System View return to User View with Ctrl Z Quidway ssh server timeout 80 8 1 16 ssh user assign rsa key Command ssh user username assign rsa key keyname undo ssh user username assign rsa key View System view Parameter keyname Configures client public key consisting of 1 32 characters username Valid local user name or user name defined by remote RADIUS system Description Usin...

Page 792: ...entication type as password and RSA password Specifies authentication type as password rsa Specifies authentication type as RSA Description Using the ssh user username authentication type command you can define authentication type for a designated user Using the undo ssh user username authentication type command you can restore the default mode in which logon fails By default user can t logon the ...

Page 793: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual PoE ...

Page 794: ... 10 poe mode 1 11 1 1 11 poe power max value 1 12 1 1 12 poe power management 1 12 1 1 13 poe priority 1 13 Chapter 2 PoE PSU Supervision Configuration Commands 2 1 2 1 PoE PSU Supervision Display Commands 2 1 2 1 1 display poe power ac input state 2 1 2 1 2 display poe power alarm 2 2 2 1 3 display poe power dc output state 2 3 2 1 4 display poe power dc output value 2 4 2 1 5 display poe power s...

Page 795: ... num Port on the switch refer to Command Manual Port for details all Display the PoE status about all ports on the switch Description Using the display poe interface command you can view the PoE status of a specific or all ports on the switch Example Display the PoE status of the Ethernet port Ethernet3 0 1 Quidway display poe interface ethernet3 0 1 Port power status searching Port power mode sig...

Page 796: ...er Present power on the port Port Average power Average power on the port Port peak power Peak power on the port Port current Present current on the port Port voltage Present voltage on the port Display the PoE status of all ports Quidway display poe interface all Interface Ethernet3 0 1 power status delivering Interface Ethernet3 0 2 power status PD searching Interface Ethernet3 0 3 power status ...

Page 797: ...0 29 power status PD searching Interface Ethernet3 0 30 power status PD searching Interface Ethernet3 0 31 power status PD searching Interface Ethernet3 0 32 power status PD searching Interface Ethernet3 0 33 power status PD searching Interface Ethernet3 0 34 power status PD searching Interface Ethernet3 0 35 power status PD searching Interface Ethernet3 0 36 power status PD searching Interface Et...

Page 798: ...Ethernet3 0 2 current power 0 mw Interface Ethernet3 0 3 current power 0 mw Interface Ethernet3 0 4 current power 0 mw Interface Ethernet3 0 5 current power 0 mw Interface Ethernet3 0 6 current power 0 mw Interface Ethernet3 0 7 current power 0 mw Interface Ethernet3 0 8 current power 0 mw Interface Ethernet3 0 9 current power 0 mw Interface Ethernet3 0 10 current power 0 mw Interface Ethernet3 0 ...

Page 799: ... 34 current power 0 mw Interface Ethernet3 0 35 current power 0 mw Interface Ethernet3 0 36 current power 0 mw Interface Ethernet3 0 37 current power 0 mw Interface Ethernet3 0 38 current power 0 mw Interface Ethernet3 0 39 current power 0 mw Interface Ethernet3 0 40 current power 0 mw Interface Ethernet3 0 41 current power 0 mw Interface Ethernet3 0 42 current power 0 mw Interface Ethernet3 0 43 ...

Page 800: ...urrent 0 mA Power Current Voltage 54 0 V Power Software Version 512 Power Hardware Version 000 1 1 4 display poe pse Syntax display poe pse View Any view Parameter None Description Using the display poe pse command you can view the parameters of all boards that serves as a power sourcing equipment PSE Example Display the parameters of all boards that serves as a power sourcing equipment PSE Quidwa...

Page 801: ...n disable the PoE feature on a port By default the PoE is enabled on each port when it is enabled on the board Example Disable PoE on the current port Quidway system view System View return to User View with Ctrl Z Quidway interface ethernet3 0 1 Quidway Ethernet3 0 1 undo poe enable Enable PoE on the current port Quidway system view System View return to User View with Ctrl Z Quidway interface et...

Page 802: ... is enalbed on a board the rated power output shall be reserved for the slot enen when the board is removed from the slot You need to release this power output using the undo poe enable slot command z If you insert a board where PoE is not supported into the slot for which a rated power output is reserved the power output reserved shall be released z If you insert a PoE supported board of another ...

Page 803: ...ch can detect the PDs incompatible with IEEE802 3af and deliver current to them over the Ethernet ports Caution PoE compatibility detection process is very slow and has impact on the system performance so you are recommended not to enable the PoE compatibility detection on a board if all PDs connected are IEEE802 3af compatible Example Enable PoE compatibility detection on the PoE board in slot 2 ...

Page 804: ...ce ethernet3 0 1 Quidway Ethernet3 0 1 poe max power 12000 Restore the default maximum power on current port Quidway system view System View return to User View with Ctrl Z Quidway interface ethernet3 0 1 Quidway Ethernet3 0 1 undo poe max power 1 1 9 poe max power slot Syntax poe max power max power slot slot num undo poe max power slot slot num View System view Parameter max power Maximum power ...

Page 805: ...port view Parameter signal The port will supply power through signal lines spare The port will supply power through spare lines Description Using the poe mode command you can configure the power feeding mode on current port Using the undo poe mode command you can restore the default mode on current port By default the port adopts signal lines to supply power Note that S6506 switch currently does n...

Page 806: ...et the maximum power that can be supplied externally by the switch Note This command works only when the power you specified is greater than the power that has been distributed to the boards Example Set the maximum power supplied externally by the switch to 2000 W Quidway system view System View return to User View with Ctrl Z Quidway poe power max value 2000 1 1 12 poe power management Syntax poe...

Page 807: ...riority of critical When the switch is reaching full load and a new PD is now added to the port A the switch will power down a PD that is connected to a port with the lowest priority and turn to feed this new PD z manual mode When the switch is reaching its full load in supplying power externally and a new PD is added it will neither take the priority into account nor make change to its original p...

Page 808: ...default the port priority is low Note This command is used together with the poe power management command and takes effect when the PoE power output of the switch reaches nearly to its maximum value Example Set the port priority to critical Quidway system view System View return to User View with Ctrl Z Quidway interface ethernet3 0 1 Quidway Ethernet3 0 1 poe priority critical Restore the default...

Page 809: ...power ac input state Syntax display poe power ac input state View Any view Parameter None Description Use the display poe power ac input state command to display the AC input state of the PoE power supply units PSUs contained in the external PoE power supply system Example Display the AC input state of the external PoE PSUs Quidway display poe power ac input state PSU 1 AC Input State Lack Phrase ...

Page 810: ... Upper Limit The AC input voltage is higher than the upper threshold Fuse Broken The fuse is blown PSU 1 AC Input State AC input state of PoE PSU 1 Switch Off The switch is off 2 1 2 display poe power alarm Syntax display poe power alarm View Any view Parameter None Description Use the display poe power alarm command to display the detailed alarm information about the external PoE PSUs Example Dis...

Page 811: ...al AC input can clear the error OUTERROR PSU output error No normal DC output from the PSU HIGHVOL Overvoltage on the PSU the PSU is shut down HIGHTEP It is overheated in the PSU FANERROR The fan is faulty CLOSE The PSU is shut down CURLIMIT The current of the PSU is limited PSU 1 alarm alarm information about PoE PSU1 Absent The PSU is absent 2 1 3 display poe power dc output state Syntax display...

Page 812: ...he fuse is blown Switch Off The switch is off DC Output State DC output state of the external PoE PSU Hardware Fault There is a hardware fault 2 1 4 display poe power dc output value Syntax display poe power dc output value View Any view Parameter None Description Use the display poe power dc output value command to display the DC output voltage current values of the external PoE PSUs Example Disp...

Page 813: ...display poe power switch state Switch Number 0 Note Currently the S6500 series do not use any AC power distribution switch so the returned value is always 0 2 1 6 display supervision module information Syntax display supervision module information View Any view Parameter None Description Use the display supervision module information command to display the basic information about the external PoE ...

Page 814: ...formation command Field Description Supervision Module Version Software version of the supervision module Supervision Module Name Software name of the supervision module Power Type Model of the external PoE PSUs Power Rating Value Rated power of the external PoE PSUs Power Current Value Current power of the external PoE PSUs Power Peak Value Peak power of the external PoE PSUs Power Average Value ...

Page 815: ...ld of AC input for the external PoE PSUs to 181 0 V Quidway system view System View return to User View with Ctrl Z Quidway poe power input thresh lower 181 0 Set lower input threshold power successfully 2 2 2 poe power input thresh upper Syntax poe power input thresh upper string View System view Parameter string Overvoltage alarm threshold in volts V The format is X X z For 220 VAC input it rang...

Page 816: ...reshold in volts V The format is X X and the range is 45 0 to 47 0 Description Use the poe power output thresh lower command to set the undervoltage alarm threshold of DC output for the external PoE PSUs For 220 VAC or 110 VAC input it is recommended to set the threshold to 47 0 V Example Set the undervoltage DC output undervoltage alarm threshold for the external PoE PSUs to 47 0 V Quidway system...

Page 817: ...cription Use the poe power output thresh upper command to set the overvoltage alarm threshold of DC output for the external PoE PSUs For 220 VAC or 110 VAC input it is recommended to set the threshold to 55 0 V Example Set the overvoltage alarm threshold of DC output for the external PoE PSUs to 55 0 V Quidway system view System View return to User View with Ctrl Z Quidway poe power output thresh ...

Page 818: ...Huawei Technologies Proprietary HUAWEI Quidway S6500 Series Ethernet Switches Command Manual Appendix ...

Page 819: ...1 acl mode STP 1 3 active region configuration Security 1 1 address check Routing Protocol 5 1 address check dhcp relay Routing Protocol 5 1 address check no matched Routing Protocol 5 2 aggregate Multicast Protocol 5 1 apply as path Multicast Protocol 6 1 apply community Multicast Protocol 6 2 apply cost Multicast Protocol 6 3 apply cost type Multicast Protocol 6 3 apply ip next hop Multicast Pro...

Page 820: ...de Multicast Protocol 3 3 auto execute command Port 1 2 B bgp Multicast Protocol 5 2 binary PoE 1 25 boot boot loader PoE 3 1 boot bootrom PoE 3 2 bootrom update security check enable PoE 3 3 bridgemactocpu PoE 2 1 broadcast suppression VLAN 1 1 broadcast suppression Network Protocol 1 1 bsr policy QoS ACL 5 1 bye PoE 1 26 C c bsr QoS ACL 5 2 cd PoE 1 1 cd PoE 1 26 cdup PoE 1 27 check region confi...

Page 821: ...s Port 1 3 data flow format Reliability 2 22 debugging PoE 1 28 debugging PoE 4 7 debugging arp Routing Protocol 2 3 debugging bgp Multicast Protocol 5 7 debugging dhcp relay Routing Protocol 5 3 debugging gmrp QoS ACL 1 1 debugging igmp QoS ACL 4 1 debugging isis Multicast Protocol 4 3 debugging lacp packet VLAN 2 2 debugging lacp state VLAN 2 3 debugging link aggregation error VLAN 2 1 debugging...

Page 822: ...t Multicast Protocol 3 8 default route advertise Multicast Protocol 3 9 default route advertise Multicast Protocol 4 4 delete PoE 1 2 delete PoE 1 28 delete static routes all Multicast Protocol 1 15 description VLAN 1 3 description Network Protocol 1 2 dhcp security static Routing Protocol 5 4 dhcp server Routing Protocol 5 5 dhcp server ip Routing Protocol 5 6 dir PoE 1 3 dir PoE 1 29 disconnect ...

Page 823: ...ay bgp routing table dampened Multicast Protocol 5 19 display bgp routing table different origin as Multicast Protocol 5 21 display bgp routing table flap info Multicast Protocol 5 22 display bgp routing table peer Multicast Protocol 5 23 display bgp routing table regular expression Multicast Protocol 5 24 display bgp routing table statistic Multicast Protocol 5 25 display boot loader PoE 3 4 disp...

Page 824: ...oup QoS ACL 2 2 display igmp snooping statistics QoS ACL 2 3 display info center PoE 4 13 display interface VLAN 1 3 display interface vlan interface Network Protocol 1 3 display ip host Routing Protocol 1 1 display ip interface Routing Protocol 1 1 display ip ip prefix Multicast Protocol 6 7 display ip routing table Multicast Protocol 1 1 display ip routing table acl Multicast Protocol 1 2 displa...

Page 825: ...y link aggregation interface VLAN 2 5 display link aggregation summary VLAN 2 3 display link aggregation verbose VLAN 2 4 display local server statistics Reliability 2 23 display local user Reliability 2 6 display logbuffer PoE 4 14 display logbuffer summary PoE 4 16 display mac address PoE 2 2 display mac address aging time PoE 2 1 display mac address multicast QoS ACL 6 2 display mac address mul...

Page 826: ...nterface QoS ACL 5 8 display pim neighbor QoS ACL 5 9 display pim routing table QoS ACL 5 10 display pim rp info QoS ACL 5 11 display poe interface Getting Started 1 1 display poe interface power Getting Started 1 3 display poe powersupply Getting Started 1 5 display poe pse Getting Started 1 6 display poe power ac input state Getting Started 2 1 display poe power alarm Getting Started 2 2 display...

Page 827: ...ocol 2 3 display rmon alarm PoE 6 1 display rmon event PoE 6 2 display rmon eventlog PoE 6 3 display rmon history PoE 6 4 display rmon prialarm PoE 6 5 display rmon statistics PoE 6 7 display route policy Multicast Protocol 6 8 display rsa local key pair public PoE 8 2 display rsa peer public key PoE 8 2 display saved configuration PoE 1 17 display schedule reboot PoE 3 9 display snmp agent PoE 5 ...

Page 828: ...col 6 8 display uplink monitor PoE 3 10 display user interface Port 1 4 display users Port 1 6 display users PoE 4 5 display version PoE 4 6 display vlan Network Protocol 1 3 display vrrp System Management 1 1 domain Reliability 2 8 domain authentication mode Multicast Protocol 4 11 dot1x Reliability 1 2 dot1x authentication method Reliability 1 3 dot1x dhcp launch Reliability 1 4 dot1x guest vlan...

Page 829: ...icy export Multicast Protocol 6 9 filter policy import Multicast Protocol 2 5 filter policy import Multicast Protocol 3 31 filter policy import Multicast Protocol 4 13 filter policy import Multicast Protocol 5 26 filter policy import Multicast Protocol 6 10 fixdisk PoE 1 5 flow control Port 1 7 flow control VLAN 1 8 format PoE 1 6 free user interface Port 1 7 ftp PoE 1 30 ftp server PoE 1 24 ftp t...

Page 830: ...Multicast Protocol 6 13 if match interface Multicast Protocol 6 14 if match ip next hop Multicast Protocol 6 14 if match tag Multicast Protocol 6 15 igmp enable QoS ACL 4 3 igmp group limit QoS ACL 4 4 igmp group policy QoS ACL 4 5 igmp group policy vlan QoS ACL 4 6 igmp host join QoS ACL 4 7 igmp host join port QoS ACL 4 7 igmp host join vlan QoS ACL 4 8 igmp lastmember queryinterval QoS ACL 4 9 ...

Page 831: ... 4 19 info center loghost PoE 4 20 info center loghost source PoE 4 21 info center monitor channel PoE 4 22 info center snmp channel PoE 4 22 info center source PoE 4 23 info center timestamp PoE 4 26 info center trapbuffer PoE 4 27 instance Security 1 6 interface VLAN 1 9 interface vlan interface Network Protocol 1 4 ip Routing Protocol 6 9 ip address Routing Protocol 1 3 ip as path acl Multicast...

Page 832: ...ervers Routing Protocol 7 15 ipx sap mtu Routing Protocol 7 16 ipx sap multiplier Routing Protocol 7 16 ipx sap timer update Routing Protocol 7 17 ipx service Routing Protocol 7 17 ipx split horizon Routing Protocol 7 18 ipx tick Routing Protocol 7 19 ipx update change only Routing Protocol 7 19 isis Multicast Protocol 4 16 isis authentication mode Multicast Protocol 4 17 isis circuit level Multic...

Page 833: ...tion group description VLAN 2 9 link aggregation group mode VLAN 2 10 local server Reliability 2 28 local user Reliability 2 11 local user password display mode Reliability 2 11 lock Port 1 12 log peer change Multicast Protocol 4 27 loopback detection control enable VLAN 1 10 loopback detection enable VLAN 1 11 loopback detection interval time VLAN 1 11 loopback detection per vlan enable VLAN 1 12...

Page 834: ...cast route limit QoS ACL 3 6 multicast routing enable QoS ACL 3 6 multicast suppression VLAN 1 14 N name Network Protocol 1 5 name Reliability 2 13 nas ip Reliability 2 29 network Multicast Protocol 2 8 network Multicast Protocol 3 33 network Multicast Protocol 5 30 network entity Multicast Protocol 4 28 nssa Multicast Protocol 3 34 ntp service access PoE 7 4 ntp service authentication enable PoE ...

Page 835: ...ority Multicast Protocol 3 37 ospf mib binding Multicast Protocol 3 38 ospf mtu enable Multicast Protocol 3 39 ospf network type Multicast Protocol 3 40 ospf timer dead Multicast Protocol 3 41 ospf timer hello Multicast Protocol 3 42 ospf timer poll Multicast Protocol 3 42 ospf timer retransmit Multicast Protocol 3 43 ospf trans delay Multicast Protocol 3 44 P packet filter STP 1 8 parity Port 1 1...

Page 836: ...cast Protocol 5 40 peer next hop local Multicast Protocol 5 41 peer password Multicast Protocol 5 41 peer public as only Multicast Protocol 5 42 peer reflect client Multicast Protocol 5 43 peer route policy export Multicast Protocol 5 43 peer route policy import Multicast Protocol 5 44 peer route update interval Multicast Protocol 5 45 peer timer Multicast Protocol 5 45 peer public key end PoE 8 5...

Page 837: ...vlan vlan Network Protocol 1 9 port hybrid pvid vlan VLAN 1 16 port hybrid vlan VLAN 1 16 port link aggregation group VLAN 2 10 port link type VLAN 1 17 port trunk permit vlan VLAN 1 18 port trunk pvid vlan VLAN 1 19 preference Multicast Protocol 2 10 preference Multicast Protocol 3 45 preference Multicast Protocol 4 29 preference Multicast Protocol 5 46 primary accounting Reliability 2 30 primary...

Page 838: ...bility 2 32 radius scheme Reliability 2 14 rdram PoE 3 15 reboot PoE 3 15 reflect between clients Multicast Protocol 5 47 reflector cluster id Multicast Protocol 5 47 refresh bgp Multicast Protocol 5 48 region name Security 1 6 register policy QoS ACL 5 16 remotehelp PoE 1 36 rename PoE 1 9 reset Multicast Protocol 2 10 reset acl counter STP 1 10 reset arp Routing Protocol 2 8 reset bgp Multicast ...

Page 839: ...cast routing table QoS ACL 3 8 reset ospf Multicast Protocol 3 46 reset pim neighbor QoS ACL 5 17 reset pim routing table QoS ACL 5 18 reset radius statistics Reliability 2 33 reset recycle bin PoE 1 10 reset saved configuration PoE 1 20 reset stop accounting buffer Reliability 2 34 reset stp Security 1 7 reset tcp statistics Routing Protocol 6 11 reset traffic statistic STP 2 25 reset trapbuffer ...

Page 840: ...m PoE 6 11 rmon statistics PoE 6 12 route policy Multicast Protocol 6 17 router id Multicast Protocol 3 47 rsa local key pair create PoE 8 8 rsa local key pair destroy PoE 8 9 rsa peer public key PoE 8 10 rule STP 1 11 S save PoE 1 21 schedule reboot at PoE 3 16 schedule reboot delay PoE 3 17 scheme Reliability 2 15 screen length Port 1 16 secondary accounting Reliability 2 38 secondary authentica...

Page 841: ...munity PoE 5 11 snmp agent group STP 3 3 snmp agent group PoE 5 11 snmp agent local engineid PoE 5 10 snmp agent mib view PoE 5 12 snmp agent packet max size PoE 5 13 snmp agent sys info PoE 5 14 snmp agent target host PoE 5 15 snmp agent trap enable PoE 5 16 snmp agent trap enable ospf Multicast Protocol 3 48 snmp agent trap life PoE 5 17 snmp agent trap queue size PoE 5 17 snmp agent trap source...

Page 842: ...ity 3 1 stp cost Security 1 11 stp edged port Security 1 12 stp interface Security 1 13 stp interface cost Security 1 14 stp interface edged port Security 1 15 stp interface loop protection Security 1 16 stp interface mcheck Security 1 17 stp interface no agreement check Security 4 1 stp interface point to point Security 1 18 stp interface port priority Security 1 19 stp interface root protection ...

Page 843: ...1 36 stp transmit limit Security 1 36 stub Multicast Protocol 3 50 subvlan Network Protocol 3 3 summary Multicast Protocol 2 18 summary Multicast Protocol 4 34 summary Multicast Protocol 5 51 super Port 1 22 super password Port 1 23 supervlan Network Protocol 3 3 Syntax PoE 4 16 sysname Port 1 24 sysname PoE 4 3 system view Port 1 24 T tcp timer fin timeout Routing Protocol 6 12 tcp timer syn time...

Page 844: ...out Reliability 2 44 timer spf Multicast Protocol 4 36 time range STP 1 16 timers Multicast Protocol 2 19 tracert PoE 4 11 traffic bandwidth STP 2 27 traffic limit STP 2 29 traffic priority STP 2 31 traffic red STP 2 33 traffic redirect STP 2 35 traffic share across interface Multicast Protocol 2 19 traffic statistic STP 2 36 U undelete PoE 1 11 undo snmp agent PoE 5 20 undo synchronization Multic...

Page 845: ...an vpn tunnel Security 2 1 vlink peer Multicast Protocol 3 50 vrrp authentication mode System Management 1 4 vrrp method System Management 1 5 vrrp ping enable System Management 1 6 vrrp vrid preempt mode System Management 1 7 vrrp vrid priority System Management 1 8 vrrp vrid timer System Management 1 8 vrrp vrid track System Management 1 9 vrrp vrid virtual ip System Management 1 10 W X Y Z ...

Reviews: