background image

T2700G-28TQ 

JetStream  28-Port Gigabit Stackable L2+  Managed Switch  CLI Guide 

 

62

 

no private-vlan association 

vlan_list 

Parameter 

vlan_list

 —— Secondary VLAN ID, ranging from 2 to 4094. 

Command Mode 

VLAN Configuration Mode (VLAN) 

Example 

Associate primary VLAN 3 with community VLAN 4 as a private VLAN: 

T2700G-28TQ(config)#vlan 

T2700G-28TQ(config-vlan)#private-vlan association 

4

 

switchport private-vlan 

Description 

The 

switchport private-vlan 

command is used to configure the private VLAN 

mode for the switchport. To invalid the configuration, please use 

no switchport 

private-vlan

 command. 

Syntax 

switchport private-vlan 

{ promiscuous | host

 

}

 

no switchport private-vlan

 

Parameter 

promiscuous | host —— Configure the private VLAN mode for the switchport. 

Command Mode 

Interface Configuration Mode (interface fastEthernet / interface range 
fastEthernet / interface gigabitEthernet / interface range gigabitEthernet/ 
interface ten-gigabitEthernet / interface range ten-gigabitEthernet) 

Example 

Configure Gigabit Ethernet port 3 as “host”: 

T2700G-28TQ(config)#interface gigabitEthernet 

1/0/3 

T2700G-28TQ(config-if)#switchport private-vlan 

host

 

Summary of Contents for JetStream T2700G-28TQ

Page 1: ...T2700G 28TQ JetStream 28 Port Gigabit Stackable L2 Managed Switch REV1 0 0 1910011125 ...

Page 2: ...es are trademarks or registered trademarks of their respective holders No part of the specifications may be reproduced in any form or by any means or used to make any derivative such as translation transformation or adaptation without permission from TP LINK TECHNOLOGIES CO LTD Copyright 2014 TP LINK TECHNOLOGIES CO LTD All rights reserved http www tp link com ...

Page 3: ...onventions 22 1 4 1 Format Conventions 22 1 4 2 Special Characters 22 1 4 3 Parameter Format 22 Chapter 2 User Interface 23 enable 23 service password encryption 23 enable password 24 enable secret 25 disable 26 configure 26 exit 27 end 27 history 28 history clear 28 Chapter 3 Stack 29 switch priority 29 switch renumber 29 switch authentication mode 30 switch stack name 31 switch stack port 32 sho...

Page 4: ... 43 show mac vlan interface 44 Chapter 6 Protocol based VLAN Commands 45 protocol vlan template 45 protocol vlan vlan 46 protocol vlan group 46 show protocol vlan template 47 show protocol vlan vlan 48 Chapter 7 VLAN VPN Commands 49 dot1q tunnel 49 dot1q tunnel tpid 49 dot1q tunnel mapping 50 switchport dot1q tunnel mapping 50 switchport dot1q tunnel mode 51 show dot1q tunnel 52 show dot1q tunnel ...

Page 5: ...e vlan host association 63 switchport private vlan mapping 63 show vlan private vlan 64 show vlan private vlan interface 65 Chapter 10 GVRP Commands 66 gvrp 66 gvrp interface 66 gvrp registration 67 gvrp timer 68 show gvrp global 69 show gvrp interface 69 Chapter 11 Etherchannel Commands 71 channel group 71 port channel load balance 72 lacp system priority 72 lacp port priority 73 show etherchanne...

Page 6: ...89 ip dhcp snooping information user defined 90 ip dhcp snooping information remote id 90 ip dhcp snooping information circuit id 91 ip dhcp snooping trust 92 ip dhcp snooping mac verify 92 ip dhcp snooping limit rate 93 ip dhcp snooping decline 94 show ip source binding 94 show ip dhcp snooping 95 show ip dhcp snooping interface 95 Chapter 14 ARP Inspection Commands 97 ip arp inspection global 97...

Page 7: ...x quiet period 109 dot1x timeout 109 dot1x max reauth req 110 dot1x 111 dot1x guest vlan interface 111 dot1x port control 112 dot1x port method 113 radius 113 radius server account 115 show dot1x global 115 show dot1x interface 116 show radius accounting 116 show radius authentication 117 Chapter 18 System Log Commands 118 logging buffer 118 logging buffer level 118 logging file flash 119 logging ...

Page 8: ...rver 132 Chapter 21 MAC Address Commands 133 mac address table static 133 mac address table aging time 134 mac address table filtering 134 mac address table max mac count 135 show mac address table 136 show mac address table aging time 137 show mac address table max mac count 137 show mac address table interface 138 show mac address table count 138 show mac address table address 139 show mac addre...

Page 9: ...copy startup config tftp 155 copy tftp backup config 156 copy tftp startup config 157 copy image tftp source 158 copy image tftp target 158 copy image 159 remove backup image 160 remove config 160 firmware upgrade 161 ping 162 tracert 162 loopback interface 163 show system time 164 show system time dst 164 show system time ntp 165 show system info 165 show environment 166 show files in system 166 ...

Page 10: ...rm control multicast 179 storm control unicast 180 bandwidth 181 clear counters 181 show interface status 182 show interface counters 182 show interface configuration 183 show storm control 184 show bandwidth 184 Chapter 24 QoS Commands 186 qos 186 qos dscp 187 qos queue cos map 187 qos queue dscp map 188 qos queue mode 189 show qos interface 190 show qos cos map 190 show qos dscp map 191 show qos...

Page 11: ...1 show loopback detection global 201 show loopback detection interface 202 Chapter 28 ACL Commands 203 time range 203 absolute 203 periodic 204 holiday 205 holiday global 205 access list create 206 mac access list 206 access list standard 207 access list extended 208 rule 209 access list policy name 210 access list policy action 211 redirect interface 212 s condition 212 s mirror 213 qos remark 21...

Page 12: ...max hops 227 spanning tree bpdufilter 228 spanning tree bpduguard 228 spanning tree guard loop 229 spanning tree guard root 229 spanning tree guard tc 230 spanning tree mcheck 231 show spanning tree active 231 show spanning tree bridge 232 show spanning tree interface 232 show spanning tree interface security 233 show spanning tree mst 233 Chapter 30 IGMP Snooping Commands 235 ip igmp snooping glo...

Page 13: ...247 snmp server group 248 snmp server user 249 snmp server community 251 snmp server host 252 snmp server engineID 253 snmp server traps snmp 254 snmp server traps link status 255 snmp server traps 255 snmp server traps mac 256 snmp server traps vlan 257 rmon history 258 rmon event 259 rmon alarm 260 rmon statistics 261 show snmp server 262 show snmp server view 262 show snmp server group 263 show...

Page 14: ... interface 276 show lldp neighbor information interface 276 show lldp traffic interface 277 Chapter 33 Cluster Commands 278 cluster ndp 278 cluster ntdp 279 cluster explore 280 cluster 280 cluster ip pool 281 cluster commander 281 cluster manage 282 cluster member 282 cluster candidate 283 cluster individual 283 cluster management vlan 284 clear ndp statistics 284 show cluster ndp 285 show cluster...

Page 15: ...r exclude address 296 ip dhcp server pool 297 ip dhcp server ping timeout 297 ip dhcp server ping packets 298 network 298 lease 299 address hardware address 299 address client identifier 300 default gateway 301 dns server 301 show ip dhcp server status 302 show ip dhcp server statistics 302 show ip dhcp server pool 303 show ip dhcp server excluded address 303 show ip dhcp server manual binding 304...

Page 16: ...t member query count 313 ip igmp last member query interval 313 ip igmp querier timeout 314 ip igmp query interval 315 ip igmp query max response time 315 ip igmp require router alert 316 ip igmp robustness 316 ip igmp send router alert 317 ip igmp startup query interval 318 ip igmp startup query count 318 ip igmp static group interface vlan 319 ip igmp static group routed port 320 ip igmp profile...

Page 17: ...terface 335 ip pim rp address 336 ip pim bsr border 336 ip pim dr priority 337 ip pim join prune interval 337 ip pim query interval 338 show ip multicast 339 show ip mroute 339 show ip pim interface 340 show ip pim neighbor 340 show ip pim bsr router 341 show ip pim rp 341 show ip pim rp hash 342 Chapter 40 Static Multicast Routing Commands License Required 343 ip mroute 343 show ip mroute static ...

Page 18: ...receive version 358 ip rip send version 359 ip rip v2 broadcast 360 ip rip authentication mode 360 ip rip poison reverse 361 ip rip split horizon 362 show ip rip 362 Chapter 43 OSPF Commands License Required 364 router ospf 364 router id 364 network 365 summary address 366 maximum paths 367 redistribute 368 default metric 369 default information originate 369 auto cost 370 distance 371 timers thro...

Page 19: ...ip ospf priority 388 ip ospf hello interval 388 ip ospf dead interval 389 ip ospf authentication 390 ip ospf authentication key 390 ip ospf message digest key 391 ip ospf network 392 ip ospf database filter all out 393 ip ospf mtu ignore 393 clear ip ospf 394 show ip ospf 394 show ip ospf database 395 show ip ospf interface 396 show ip ospf neighbor 396 show ip ospf request list 397 show ip ospf r...

Page 20: ...XIX show ip ospf area neighbor 402 show ip ospf area request list 402 show ip ospf area retransmission list 403 ...

Page 21: ...ion about how to use the CLI CLI Command Modes Security Levels and some Conventions Chapter 2 User Interface Provide information about the commands used to switch between five CLI Command Modes Chapter 3 Stack Provide information about the commands used for configuring stack Chapter 4 IEEE 802 1Q VLAN Commands Provide information about the commands used for configuring IEEE 802 1Q VLAN Chapter 5 M...

Page 22: ...ed for protecting the switch from the ARP cheating or ARP Attack Chapter 15 IP Verify Source Commands Provide information about the commands used for guarding the IP Source by filtering the IP packets based on the IP MAC Binding entries Chapter 16 DoS Defend Command Provide information about the commands used for DoS defend and detecting the DoS attack Chapter 17 IEEE 802 1X Commands Provide infor...

Page 23: ...ection Commands Provide information about the commands used for configuring the Loopback Detection function Chapter 28 ACL Commands Provide information about the commands used for configuring the ACL Access Control List Chapter 29 MSTP Commands Provide information about the commands used for configuring the MSTP Multiple Spanning Tree Protocol Chapter 30 IGMP Commands Provide information about the...

Page 24: ...GMP function Chapter 39 PIM Commands License Required Provide information about the commands used for configuring the PIM function Chapter 40 Static Multicast Routing Commands License Required Provide information about the commands used for configuring the Static Multicast Routing function Chapter 41 VRRP Commands License Required Provide information about the commands used for configuring the VRR...

Page 25: ...motely by a Telnet connection through an Ethernet port 3 Log on to the switch remotely by an SSH connection through an Ethernet port 1 1 1 Logon by a console port To log on to the switch by the console port on the switch please take the following steps 1 Connect the PCs or Terminals to the console port on the switch by a provided cable 2 Click Start All Programs Accessories Communications Hyper Te...

Page 26: ...Switch CLI Guide 6 3 The Connection Description Window will prompt as Figure 1 2 shown Enter a name into the Name field and click OK Figure 1 2 Connection Description 4 Select the port to connect in Figure 1 3 and click OK Figure 1 3 Select the port to connect ...

Page 27: ...following Figure 1 4 shown Configure Bits per second as 38400 Data bits as 8 Parity as None Stop bits as 1 Flow control as None and then click OK Figure 1 4 Port Settings 6 The DOS prompt T2700G 28TQ will appear after pressing the Enter button as Figure 1 5 shown It indicates that you can use the CLI now Figure 1 5 Log in the Switch ...

Page 28: ... Figure 1 6 Configure the Privileged EXEC Mode Password 1 1 3 Logon by Telnet For Telnet connection after configuring the Privileged EXEC Mode Password you should also configure the Telnet login mode and login authentication information through console connection Telnet login has the following two modes You can choose one according to your needs Login local Mode It requires username and password w...

Page 29: ...1 7 Configure login local mode Now you can logon by Telnet in login local mode 1 Make sure the switch and the PC are in the same LAN Click Start Run to open the Run window and type cmd in the prompt Run window as Figure 1 8 and click OK Figure 1 8 Run Window 2 Open Telnet then type telnet 192 168 0 1 in the command prompt shown as Figure 1 9 and press the Enter button Figure 1 9 Connecting to the ...

Page 30: ... button so as to enter User EXEC Mode Figure 1 10 Enter into the User EXEC Mode Now you can manage your switch with CLI commands through Telnet connection 4 Type enable command to enter Privileged EXEC Mode A password that you have set through Console port connection is required Here the password has been set as 123 Figure 1 11 Enter into the Privileged EXEC Mode ...

Page 31: ...in mode as login and the connection password as 456 in the prompted DOS screen shown in Figure 1 12 Figure 1 12 Configure login mode Now you can logon by Telnet in login mode 1 Open Telnet then type telnet 192 168 0 1 in the command prompt shown as Figure 1 13 and press the Enter button Figure 1 13 Connecting to the Switch ...

Page 32: ...Enter into the User EXEC Mode 3 When entering enable command to access Privileged EXEC Mode you are required to give the password 123 you have set through Console port connection Figure 1 15 Enter into the Privileged EXEC Mode Now you can manage your switch with CLI commands through Telnet connection Note You can refer to Chapter 12 User Manage Commands for detailed commands information of the Tel...

Page 33: ...Authentication Mode It requires username and password which are both admin by default Key Authentication Mode It requires a public key for the switch and a private key for the SSH client software You can generate the public key and the private key through Putty Key Generator Note Before SSH login please follow the steps shown in Figure 1 16 to enable the SSH function through console connection Fig...

Page 34: ...e switch into Host Name field keep the default value 22 in the Port field select SSH as the Connection type Figure 1 17 SSH Connection Config 2 Click the Open button in the above figure to log on to the switch Enter the login user name and password to log on the switch and then enter the Privileged EXEC Mode password so you can continue to configure the switch Figure 1 18 Log on the Switch ...

Page 35: ...uide 15 Key Authentication Mode 1 Select the key type and key length and generate SSH key Figure 1 19 Generate SSH Key Note 1 The key length is in the range of 256 to 3072 bits 2 During the key generation randomly moving the mouse quickly can accelerate the key generation ...

Page 36: ... private key to a TFTP server Figure 1 20 Save the Generated Key 3 Log on to the switch by the console port and download the public key file from the TFTP server to the switch as the following figure shows Figure 1 21 Download the Public Key Note 1 The key type should accord with the type of the key file 2 The SSH key downloading cannot be interrupted ...

Page 37: ...de 17 4 After the public key is downloaded please log on to the interface of PuTTY and enter the IP address for login Figure 1 22 SSH Connection Config 5 Click Browse to download the private key file to SSH client software and click Open Figure 1 23 Download the Private Key ...

Page 38: ...ration Mode Line Configuration Mode VLAN Configuration Mode Interface Configuration Mode Router Configuration Mode DHCP Configuration Mode and MST Configuration Mode Interface Configuration Mode can also be divided into Interface gigabitEthernet Interface link aggregation and some other modes which is shown as the following diagram Global Configuration Mode Privileged EXEC Mode User EXEC Mode Inte...

Page 39: ...trl Z to return to Privileged EXEC mode Use the interface gigabitEthernet port or interface range gigabitEthernet port list command to access interface Configuration mode Use the vlan vlan list to access VLAN Configuration mode Line Configuration Mode Use the line vty command from Global Configuration mode to specify a line T2700G 28TQ config line Use the exit command to exit to the global configu...

Page 40: ...e the end command or press Ctrl Z to return to Privileged EXEC mode Enter the exit or the command to return to Global Configuration mode DHCP Configuration Mode Use the ip dhcp server pool pool name command to enter DHCP Configuration Mode from Global Configuration mode T2700 28TQ config dhcp Use the end command or press Ctrl Z to return to Privileged EXEC mode Enter the exit or the command to ret...

Page 41: ... this mode commands for configuring the Layer 3 functions are provided 3 Some commands are global that means they can be performed in all modes show Displays all information of switch for example statistic information port information VLAN information history Displays the commands history 1 3 Security Levels This switch s security is divided into two levels User level and Admin level User level on...

Page 42: ...acters cannot be input If a blank is contained in a character string single or double quotation marks should be used for example hello world hello world and the words in the quotation marks will be identified as a string Otherwise the words will be identified as several strings 1 4 3 Parameter Format Some parameters must be entered in special formats which are shown as follows MAC Address must be ...

Page 43: ...2700G 28TQ enable Password T2700G 28TQ service password encryption Description The service password encryption command is used to encrypt the password when the password is defined or when the configuration is written using the symmetric encryption algorithm Encryption prevents the password from being readable in the configuration file To disable the global encryption function please use no service...

Page 44: ... characters or symbols The password is case sensitive allows spaces but ignores leading spaces and cannot contain question marks By default it is empty 7 Indicates a symmetric encrypted password with fixed length will follow encrypted password A symmetric encrypted password with fixed length which you can copy from another switch s configuration file After the encrypted password is configured you ...

Page 45: ...ollow By default the encryption type is 0 password Super password a string from 1 to 31 alphanumeric characters or symbols The password is case sensitive allows spaces but ignores leading spaces and cannot contain question marks By default it is empty The password in the configuration file will be displayed in the MD5 encrypted form 5 Indicates an MD5 encrypted password with fixed length will foll...

Page 46: ...e Description The disable command is used to return to User EXEC Mode from Privileged EXEC Mode Syntax disable Command Mode Privileged EXEC Mode Example Return to User EXEC Mode from Privileged EXEC Mode T2700G 28TQ disable T2700G 28TQ configure Description The configure command is used to access Global Configuration Mode from Privileged EXEC Mode Syntax configure Command Mode Privileged EXEC Mode...

Page 47: ...y Configuration Mode Example Return to Global Configuration Mode from Interface Configuration Mode and then return to Privileged EXEC Mode T2700G 28TQ config if exit T2700G 28TQ config exit T2700G 28TQ end Description The end command is used to return to Privileged EXEC Mode Syntax end Command Mode Any Configuration Mode Example Return to Privileged EXEC Mode from Interface Configuration Mode T270...

Page 48: ...ion Mode Example Show the commands you have entered in the current mode T2700G 28TQ config history 1 history history clear Description The history clear command is used to clear the commands you have entered in the current mode therefore these commands will not be shown next time you use the history command Syntax history clear Command Mode Privileged EXEC Mode and any Configuration Mode Example C...

Page 49: ...iority command is specify the stack member number and the new priority for the stack member To restore the priority of the specified stack member to the default value as 5 please use no switch priority command Syntax swtich unitid priority priority no switch unitid priority Parameter unitid Specify the member number priority Specify the member s priority ranging from 1 to 15 Command Mode Global Co...

Page 50: ... Description The switch authentication mode command is used to configure the stack authentication mode To disable the authentication function please use no switch authentication mode command Syntax swtich authentication mode simple md5 0 password 7 encrypted password no switch authentication mode Parameter simple md5 Specify the stack s authentication mode simple means authentication will be perfo...

Page 51: ...ncrypted password if you re enter this mode Command Mode Global Configuration Mode User Guidelines If the password you configured here is unencrypted and the global encryption function is enabled in service password encryption the password in the configuration file will be displayed in the symmetric encrypted form Example Configure the stack s authentication mode as md5 and the unencrypted passwor...

Page 52: ...tax swtich stack port interface ten gigabitEthernet port no switch stack port interface ten gigabitEthernet port Parameter port The stack port number Command Mode Global Configuration Mode Example Specify the ten gigabit port 1 1 2 as stack port when the Interface Card is installed T2700G 28TQ config switch stack port interface ten gigabitEthernet 1 1 2 show switch Description The show switch comm...

Page 53: ... including stack member stack port and neighboring information neighbor Display the information of the stack neighbor stack ports Display the information of the stack ports Command Mode Privileged EXEC Mode and any Configuration Mode Example Display the detailed information of the current stack T2700G 28TQ config show switch detail ...

Page 54: ...rmance by conserving bandwidth and improve security by limiting traffic to specific domains vlan Description The vlan command is used to create IEEE 802 1Q VLAN hereafter to access to VLAN Configuration Mode To delete the IEEE 802 1Q VLAN please use no vlan command Syntax vlan vlan list no vlan vlan list Parameter vlan list VLAN ID list ranging from 2 to 4094 in the format of 2 3 5 It is multi opt...

Page 55: ... Parameter vlan id Specify IEEE 802 1Q VLAN ID ranging from 1 to 4094 Command Mode Global Configuration Mode Example Create VLAN Interface 2 T2700G 28TQ config interface vlan 2 name Description The name command is used to assign a description string to a VLAN To clear the description please use no name command Syntax name descript no name Parameter descript String to describe the VLAN which contai...

Page 56: ...k Types for the ports Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Specify the Link Type of Gigabit Ethernet port 1 0 3 as trunk T2700G 28TQ config interface gigabitEthernet 1 0 3 T2700G 28TQ config if switchport mode t...

Page 57: ...itchport trunk allowed vlan Description The switchport trunk allowed vlan command is used to add the desired Trunk port to IEEE 802 1Q VLAN To remove a Trunk port from the corresponding VLAN please use no switchport trunk allowed vlan command Syntax switchport trunk allowed vlan vlan list all no switchport trunk allowed vlan vlan list all Parameter vlan list VLAN ID list ranging from 2 to 4094 in ...

Page 58: ...gged untagged no switchport general allowed vlan vlan list Parameter vlan list VLAN ID list ranging from 2 to 4094 in the format of 2 3 5 It is multi optional tagged untagged egress rule Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthe...

Page 59: ...astEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Specify the PVID of Gigabit Ethernet port 1 0 3 as 1 T2700G 28TQ config interface gigabitEthernet 1 0 3 T2700G 28TQ config if switchport pvid 1 show interface switchport Description The show interface switchport command is used to display the information o...

Page 60: ... information of IEEE 802 1Q VLAN Syntax show vlan summary Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the summarized information of IEEE 802 1Q VLAN T2700G 28TQ config show vlan summary show vlan brief Description The show vlan brief command is used to display the brief information of IEEE 802 1Q VLAN Syntax show vlan brief Command Mode Privileged EXEC Mode and Any...

Page 61: ...tion of IEEE 802 1Q VLAN Syntax show vlan id vlan id Parameter vlan id Specify IEEE 802 1Q VLAN ID ranging from 1 to 4094 Using the show vlan command without parameter displays the detailed information of all the VLAN Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the detailed information of VLAN 2 T2700G 28TQ config show vlan id 2 ...

Page 62: ...to create a MAC based VLAN entry To delete a MAC based VLAN entry please use the no mac vlan mac address command Syntax mac vlan mac address mac addr vlan vlan id description descript no mac vlan mac address mac addr Parameter mac addr MAC address in the format of XX XX XX XX XX XX vlan id Specify IEEE 802 1Q VLAN ID ranging from 1 to 4094 descript Give a description to the MAC address for identif...

Page 63: ...astEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Enable the Gigabit Ethernet port 1 0 3 for the MAC based VLAN feature T2700G 28TQ config interface gigabitEthernet 1 0 3 T2700G 28TQ config if mac vlan show mac vlan Description The show mac vlan command is used to display the information of the MAC based ...

Page 64: ...all the MAC based VLAN entry T2700G 28TQ config show mac vlan all show mac vlan interface Description The show mac vlan interface command is used to display the port state of MAC based VLAN Syntax show mac vlan interface Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the enable state of all the ports T2700G 28TQ config show mac vlan interface ...

Page 65: ...plate command Syntax protocol vlan template name protocol name frame ether_2 ether type type snap ether type type llc dsap dsap_type ssap ssap_type no protocol vlan template template idx Parameter protocol name Give a name for the Protocol based VLAN Template which contains 8 characters at most ether_2 ether type type Specify the Ethernet type snap ether type type Specify the Ethernet type llc dsa...

Page 66: ...4094 template idx The number of the Protocol based VLAN Template You can get the template corresponding to the number by the show protocol vlan template command group idx The number of the Protocol based VLAN entry You can get the Protocol based VLAN entry corresponding to the number by the show protocol vlan vlan command Command Mode Global Configuration Mode Example Create Protocol based VLAN 2 ...

Page 67: ...arameter index Specify the protocol group ID Example Add Gigabit Ethernet port 20 to protocol group 1 T2700G 28TQ config interface gigabitEthernet 1 0 20 T2700G 28TQ config if protocol vlan group 1 show protocol vlan template Description The show protocol vlan template command is used to display the information of the Protocol based VLAN templates Syntax show protocol vlan template Command Mode Pr...

Page 68: ...cription The show protocol vlan vlan command is used to display the information about Protocol based VLAN entry Syntax show protocol vlan vlan Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display information of the Protocol based VLAN entry T2700G 28TQ config show protocol vlan vlan ...

Page 69: ...ansmitted with double tag across the public networks dot1q tunnel Description The dot1q tunnel command is used to enable the VLAN VPN function globally To disable the VLAN VPN function please use the no dot1q tunnel command Syntax dot1q tunnel no dot1q tunnel Command Mode Global Configuration Mode Example Enable the VLAN VPN function globally T2700G 28TQ config dot1q tunnel dot1q tunnel tpid Descr...

Page 70: ...able the VLAN Mapping feature globally To disable this function please use the no dot1q tunnel mapping command By default the VLAN Mapping feature is disabled Syntax dot1q tunnel mapping no dot1q tunnel mapping Command Mode Global Configuration Mode Example Enable the VLAN mapping feature globally T2700G 28TQ config dot1q tunnel mapping switchport dot1q tunnel mapping Description The switchport do...

Page 71: ...rnet Example Add a VLAN Mapping entry on the Gigabit Ethernet port 1 0 3 with the Customer VLAN as VLAN 2 and the Service Provider VLAN as VLAN 3 T2700G 28TQ config interface gigabitEthernet 1 0 3 T2700G 28TQ config if switchport dot1q tunnel mapping 2 3 switchport dot1q tunnel mode Description The switchport dot1q tunnel mode command is used to configure the VPN port s mode To close this VPN port...

Page 72: ...onfig interface gigabitEthernet 1 0 3 T2700G 28TQ config if switchport dot1q tunnel mode uni show dot1q tunnel Description The show dot1q tunnel command is used to display the global configuration information of the VLAN VPN Syntax show dot1q tunnel Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration information of the VLAN VPN T2700G 28TQ config s...

Page 73: ...apping entry T2700G 28TQ config show dot1q tunnel mapping show dot1q tunnel interface Description The show dot1q tunnel mapping interface command is used to display the VLAN VPN port type Syntax show dot1q tunnel interface Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the port type of all VLAN VPN ports T2700G 28TQ config show dot1q tunnel interface ...

Page 74: ...ice vlan command is used to enable Voice VLAN function To disable Voice VLAN function please use no voice vlan command Syntax voice vlan vlan id no voice vlan Parameter vlan id Specify IEEE 802 1Q VLAN ID ranging from 2 to 4094 Command Mode Global Configuration Mode Example Enable the Voice VLAN function for VLAN 10 T2700G 28TQ config voice vlan 10 voice vlan aging Description The voice vlan aging...

Page 75: ...0G 28TQ config voice vlan aging 1 voice vlan priority Description The voice vlan priority command is used to configure the priority for the Voice VLAN To restore to the default priority please use no voice vlan priority command By default the priority value is 6 Syntax voice vlan priority pri no voice vlan priority Parameter pri Priority ranging from 0 to 7 Command Mode Global Configuration Mode E...

Page 76: ... XX XX XX XX mask The OUI address mask of the voice device in the format of XX XX XX XX XX XX descript Give a description to the OUI for identification which contains 16 characters at most Command Mode Global Configuration Mode Example Create a Voice VLAN OUI described as TP Phone with the OUI address 00 11 11 00 00 00 and the mask address FF FF FF 00 00 00 T2700G 28TQ config voice vlan mac addres...

Page 77: ...mode auto switchport voice vlan security Description The switchport voice vlan security command is used to enable the Voice VLAN security feature To disable the Voice VLAN security feature please use no switchport voice vlan security command Syntax switchport voice vlan security no switchport voice vlan security Command Mode Interface Configuration Mode interface fastEthernet interface range fastE...

Page 78: ... Mode and Any Configuration Mode Example Display the configuration information of Voice VLAN globally T2700G 28TQ config show voice vlan show voice vlan oui Description The show voice vlan oui command is used to display the configuration information of Voice VLAN OUI Syntax show voice vlan oui Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration informatio...

Page 79: ...t port gigabitEthernet port ten gigabitEthernet port Parameter port The Fast Gigabit Ten Gigabit Ethernet port number selected to display the configuration information Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration information of Gigabit Ethernet port 1 0 1 in the Voice VLAN T2700G 28TQ config show voice vlan switchport gigabitEthernet 1 0 1 Display ...

Page 80: ...the current VLAN please use no private vlan primary command Syntax private vlan primary no private vlan primary Command Mode VLAN Configuration Mode VLAN Example Configure the VLAN 3 as the primary VLAN of the private VLAN T2700G 28TQ config vlan 3 T2700G 28TQ config vlan private vlan primary private vlan community Description The private vlan community command is used to configure the designated ...

Page 81: ...vate VLAN To remove the isolated VLAN property pf the current VLAN please use no private vlan isolated command Syntax private vlan isolated no private vlan isolated Command Mode VLAN Configuration Mode VLAN Example Configure the VLAN 3 as the isolated VLAN of the private VLAN T2700G 28TQ config vlan 3 T2700G 28TQ config vlan private vlan isolated private vlan association Description The private vl...

Page 82: ...to configure the private VLAN mode for the switchport To invalid the configuration please use no switchport private vlan command Syntax switchport private vlan promiscuous host no switchport private vlan Parameter promiscuous host Configure the private VLAN mode for the switchport Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEtherne...

Page 83: ...ntype Specify the type of the secondary VLAN either community or isolated Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Configure host type Gigabit Ethernet port 1 0 3 as a member of primary VLAN 3 and secondary VLAN 4 w...

Page 84: ...gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Configure promiscuous type Gigabit Ethernet port 1 0 3 as a member of primary VLAN 3 and secondary VLAN 4 T2700G 28TQ config interface gigabitEthernet 1 0 3 T2700G 28TQ config if switchport private vlan mapping 3 4 show vlan private vlan Description The show vlan private vlan command is used to display the Pr...

Page 85: ...Private VLAN configuration information of the specified port s Syntax show vlan private vlan interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The list of Ethernet ports Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration information of all the Ethernet ports T2700G 28TQ config show vlan private vlan interface ...

Page 86: ...information to other switches without having to individually configure each VLAN gvrp Description The gvrp command is used to enable the GVRP function globally To disable the GVRP function please use no gvrp command Syntax gvrp no gvrp Command Mode Global Configuration Mode Example Enable the GVRP function globally T2700G 28TQ config gvrp gvrp interface Description The gvrp command is used to enab...

Page 87: ...s used to configure the GVRP registration type for the desired port To restore to the default value please use no gvrp registration command Syntax gvrp registration normal fixed forbidden no gvrp registration Parameter normal fixed forbidden Registration mode By default the registration mode is normal Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet int...

Page 88: ... sending operations of each Join message Once the Leave Timer is set the GARP port receiving a Leave message will start its Leave timer and deregister the attribute information if it does not receive a Join message again before the timer times out value The value of the timer The LeaveAll Timer ranges from 1000 to 30000 centiseconds and the default value is 1000 centiseconds The Join Timer ranges ...

Page 89: ...terface command is used to display the GVRP configuration information of a specified Ethernet port or of all Ethernet ports Syntax show gvrp interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The Fast Gigabit Ten Gigabit Ethernet port number By default the GVRP configuration information of all the Ethernet ports is displayed Command Mode Privileged EXEC Mode a...

Page 90: ...T2700G 28TQ JetStream 28 Port Gigabit Stackable L2 Managed Switch CLI Guide 70 T2700G 28TQ config show gvrp interface ...

Page 91: ...gle logical link which will highly extend the bandwidth and flexibly balance the load channel group Description The channel group command is used to add a port to the EtherChannel Group and configure its mode To delete the port from the EtherChannel Group please use no channel group command Syntax channel group num mode on active passive no channel group Parameter num The number of the EtherChanne...

Page 92: ...on MAC address When this option is selected the Aggregate Arithmetic will be based on the source and destination MAC addresses of the packets The Aggregate Arithmetic for LAG is src dst mac by default src dst ip The source and destination IP address When this option is selected the Aggregate Arithmetic will be based on the source and destination IP addresses of the packets Command Mode Global Conf...

Page 93: ...ure the LACP system priority globally To return to the default configurations please use no lacp port priority command Syntax lacp port priority pri no lacp port priority Parameter pri The port priority ranging from 0 to 65535 It is 32768 by default Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEtherne...

Page 94: ...ups detail The detailed information of EtherChannel summary The EtherChannel information in summary Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the detailed information of EtherChannel Group 1 T2700G 28TQ config show etherchannel 1 detail show etherchannel load balance Description The show etherchannel load balance command is used to display the Aggregate Arithmeti...

Page 95: ...display the information of all LACP groups internal The internal LACP information neighbor The neighbor LACP information Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the internal LACP information of EtherChannel Group 1 T2700G 28TQ config show lacp 1 internal show lacp sys id Description The show lacp sys id command is used to display the LACP system priority global...

Page 96: ... letters and under dashes only admin guest Access level Admin means that you can edit modify and view all the settings of different functions Guest means that you can only view the settings without the right to edit and modify It is admin by default 0 Specify the encryption type 0 indicates that an unencrypted password will follow By default the encryption type is 0 password Users login password a...

Page 97: ...cret Description The user name command is used to add a new user or modify the existed users information To delete the existed users please use no user name command The password of the user configured here will be displayed in the MD5 encrypted form in the configuration file Syntax user name name privilege admin guest secret 0 password 5 encrypted password no user name name Parameter name Type a n...

Page 98: ...If both the user name s password and secret password are defined only the latest configured password will take effect Example Add and enable a new admin user named tplink of which the password is admin The password will be displayed in the encrypted form T2700G 28TQ config user name tplink privilege admin secret 0 admin user access control ip based Description The user access control ip based comm...

Page 99: ...nd is used to limit the MAC address of the users for login Only the user with this MAC Address you set here is allowed to login To cancel the user access limit please use no user access control command Syntax user access control mac based mac addr no user access control Parameter mac addr The source MAC address Only the user with this MAC Address is allowed to login Command Mode Global Configurati...

Page 100: ...gabitEthernet port ten gigabitEthernet port none no user access control Parameter port The Fast Gigabit ten Gigabit Ethernet port number none Set the access port list to be none Command Mode Global Configuration Mode Example Configure that only the users connected to Gigabit Ethernet ports 2 are allowed to login T2700G 28TQ config user access control port based interface gigabitEthernet 1 0 2 user...

Page 101: ...iguration Mode Example Configure the maximum number of users login as Admin and Guest as 5 and 3 T2700G 28TQ config user max num 5 3 user idle timeout Description The user idle timeout command is used to configure the timeout time of the switch To restore to the default timeout time please use no user idle timeout command Syntax user idle timeout minutes no user idle timeout Parameter minutes The ...

Page 102: ...5 0 means the first login user number 1 means the second and the rest can be done on the same manner endlinenum The end serial number of the login user selected to configure the login mode and password ranging from 0 to 15 0 means the first login user number 1 means the second and the rest can be done on the same manner Command Mode Global Configuration Mode Example Enter the Console port configur...

Page 103: ...th fixed length which you can copy from another switch s configuration file After the encrypted password is configured you should use the corresponding unencrypted password if you re enter this mode Command Mode Line Configuration Mode User Guidelines If the password you configured here is unencrypted and the global encryption function is enabled in service password encryption the password in the ...

Page 104: ...port connection 0 as login mode T2700G 28TQ config line console 0 T2700G 28TQ config line login Configure the login of virtual terminal connection 0 5 as login mode T2700G 28TQ config line vty 0 5 T2700G 28TQ config line login login local Description The login local command is used to configure the login mode of the switch which uses the user name and password to login Syntax login local Command M...

Page 105: ...unt list Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of the current users T2700G 28TQ config show user account list show user configuration Description The user configuration command is used to display the security configuration information of the users including access control max number and the idle timeout etc Syntax show user configuration Comma...

Page 106: ...mmand Syntax ip source binding hostname ip addr mac addr vlan vlan id interface fastEthernet port gigabitEthernet port ten gigabitEthernet port none arp detection ip verify source both forced source arp scanning dhcp snooping no ip source binding unit unit id index idx Parameter hostname The Host Name which contains 20 characters at most ip addr The IP address of the Host mac addr The MAC address ...

Page 107: ...t 1 0 5 both Delete the IP MAC VID PORT entry with the index 5 T2700G 28TQ config no ip source binding unit 1 index 5 ip dhcp snooping Description The ip dhcp snooping command is used to enable DHCP Snooping function globally To disable DHCP Snooping function globally please use no ip dhcp snooping command DHCP Snooping functions to monitor the process of the Host obtaining the IP address from DHC...

Page 108: ...l be discarded The options are 10 20 30 40 50 packet second By default it is 0 standing for disable dec threshold The value to specify the minimum transmission rate of the Decline packets to trigger the Decline protection for the specific port The options are 5 10 15 20 25 30 packet second By default it is 0 standing for disable dec rate The value to specify the Decline Flow Control The traffic fl...

Page 109: ...ption ip dhcp snooping information strategy Description The ip dhcp snooping information strategy command is used to select the operation for the Option 82 field of the DHCP request packets from the Host To restore to the default option please use no ip dhcp snooping information strategy command Syntax ip dhcp snooping information strategy strategy no ip dhcp snooping information strategy Paramete...

Page 110: ... no ip dhcp snooping information user defined command Syntax ip dhcp snooping information user defined no ip dhcp snooping information user defined Command Mode Global Configuration Mode Example Enable the customized Option 82 function T2700G 28TQ config ip dhcp snooping information user defined ip dhcp snooping information remote id Description The ip dhcp snooping information remote id command i...

Page 111: ...ping information circuit id command is used to enable and configure the customized sub option Circuit ID for the Option 82 To return to the default Circuit ID for the Option 82 please use no ip dhcp snooping information circuit id command Syntax ip dhcp snooping information circuit id string no ip dhcp snooping information circuit id Parameter string Enter the sub option Circuit ID which contains ...

Page 112: ...ernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Configure the Gigabit Ethernet port 1 0 2 to be a Trusted Port T2700G 28TQ config interface gigabitEthernet 1 0 2 T2700G 28TQ config if ip dhcp snooping trust ip dhcp snooping mac verify Description The ip dhcp snooping mac verify command is used to enable the MAC Verify feature To disab...

Page 113: ... Flow Control feature for the DHCP packets The excessive DHCP packets will be discarded To restore to the default configuration please use no ip dhcp snooping limit rate command Syntax ip dhcp snooping limit rate value no ip dhcp snooping limit rate Parameter value The value of Flow Control The options are 5 10 15 20 25 30 packet second The default value is 0 which stands for disable Command Mode ...

Page 114: ...ce gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Enable the Decline Protect feature of Gigabit Ethernet port 1 0 2 T2700G 28TQ config interface gigabitEthernet 1 0 2 T2700G 28TQ config if ip dhcp snooping decline show ip source binding Description The show ip source binding command is used to display the IP MAC VID PORT bi...

Page 115: ...700G 28TQ show ip dhcp snooping show ip dhcp snooping interface Description The show ip dhcp snooping interface command is used to display the DHCP Snooping configuration of a desired Fast Gigabit Ethernet ports or of all Ethernet ports Syntax show ip dhcp snooping interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameters port The Fast Gigabit Ethernet Ten Gigabit Ethern...

Page 116: ...28TQ JetStream 28 Port Gigabit Stackable L2 Managed Switch CLI Guide 96 Display the DHCP Snooping configuration of Gigabit Ethernet port 1 0 5 T2700G 28TQ show ip dhcp snooping interface gigabitEthernet 1 0 5 ...

Page 117: ...p inspection no ip arp inspection Command Mode Global Configuration Mode Example Enable the ARP Detection function globally T2700G 28TQ config ip arp inspection ip arp inspection trust Description The ip arp inspection trust command is used to configure the port for which the ARP Detect function is unnecessary as the Trusted Port To clear the Trusted Port list please use no ip arp detection trust ...

Page 118: ...nction please use no ip arp inspection command ARP Attack flood produces lots of ARP Packets which will occupy the bandwidth and slow the network speed extremely With the ARP Defend enabled the switch can terminate receiving the ARP packets for 300 seconds when the transmission speed of the legal ARP packet on the port exceeds the defined value so as to avoid ARP Attack flood Syntax ip arp inspect...

Page 119: ...10 to 100 in pps packet second By default the value is 15 Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Configure the maximum amount of the received ARP packets per second as 50 pps for Gigabit Ethernet port 5 T2700G 28T...

Page 120: ...pection recover show ip arp inspection Description The show ip arp inspection command is used to display the ARP detection global configuration including the enable disable status and the Trusted Port list Syntax show ip arp inspection Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the ARP detection configuration globally T2700G 28TQ config show ip arp inspection show...

Page 121: ...how ip arp inspection interface show ip arp inspection statistics Description The show ip arp inspection statistics command is used to display the number of the illegal ARP packets received Syntax show ip arp inspection statistics Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the number of the illegal ARP packets received T2700G 28TQ config show ip arp inspection sta...

Page 122: ...t Gigabit Stackable L2 Managed Switch CLI Guide 102 Command Mode Privileged EXEC Mode and Any Configuration Mode Example Clear the statistic of the illegal ARP packets received T2700G 28TQ config clear ip arp inspection statistics ...

Page 123: ...t only the packets with its source IP address and port number matched to the IP MAC binding rules can be processed sip mac indicates that only the packets with its source IP address source MAC address and port number matched to the IP MAC binding rules can be processed Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface ...

Page 124: ...escription The show ip verify source command is used to display the IP Verify Source configuration information Syntax show ip verify source Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the IP Verify Source configuration information T2700G 28TQ config show ip verify source ...

Page 125: ...os prevent command is used to enable the DoS defend function globally To disable the DoS defend function please use no ip dos prevent command Syntax ip dos prevent no ip dos prevent Command Mode Global Configuration Mode Example Enable the DoS defend function globally T2700G 28TQ config ip dos prevent ip dos prevent type Description The ip dos prevent type command is used to select the DoS Defend ...

Page 126: ...With the syn flood attack enabled the switch will limit automatically the forwarding speed of ping packets to 512K when attacked by syn flood Command Mode Global Configuration Mode Example Enable the DoS Defend Type named Land attack T2700G 28TQ config ip dos prevent type land show ip dos prevent Description The show ip dos prevent command is used to display the DoS information of the detected DoS...

Page 127: ...1X function please use no dot1x system auth control command Syntax dot1x system auth control no dot1x system auth control Command Mode Global Configuration Mode Example Enable the IEEE 802 1X function T2700G 28TQ config dot1x system auth control dot1x auth method Description The dot1x auth method command is used to configure the Authentication Method of IEEE 802 1X and the default 802 1x authentic...

Page 128: ...tion data can be encapsulated in the advanced protocol such as RADIUS packets to be transmitted to the authentication server Command Mode Global Configuration Mode Example Configure the Authentication Method of IEEE 802 1X as pap T2700G 28TQ config dot1x auth method pap dot1x guest vlan global Description The dot1x guest vlan command is used to enable the Guest VLAN function globally To disable th...

Page 129: ...tication requests will not be processed during the quiet period time It ranges from 1 to 999 seconds and the default value is 10 seconds Command Mode Global Configuration Mode Example Enable the quiet period function T2700G 28TQ config dot1x quiet period Enable the quiet period function and set the quiet period as 5 seconds T2700G 28TQ config dot1x quiet period 5 dot1x timeout Description The dot1...

Page 130: ...e the server s timeout value as 5 seconds T2700G 28TQ config dot1x timeout server timeout 5 dot1x max reauth req Description The dot1x max reauth req command is used to configure the maximum transfer times of the repeated authentication request when the server cannot be connected To restore to the default value please use no dot1x max reauth req command Syntax dot1x max reauth req times no dot1x m...

Page 131: ... 1X function for the Gigabit Ethernet port 1 T2700G 28TQ config interface gigabitEthernet 1 0 1 T2700G 28TQ config if dot1x dot1x guest vlan interface Description The dot1x guest vlan command is used to enable the guest VLAN function for a specified port To disable the Guest VLAN function for a specified port please use no dot1x guest vlan command Please ensure that the Control Type of the corresp...

Page 132: ...rol Parameter auto authorized force unauthorized force The Control Mode for the port auto In this mode the port will normally work only after passing the 802 1X Authentication authorized force In this mode the port can work normally without passing the 802 1X Authentication unauthorized force In this mode the port is forbidden working for its fixed unauthorized status Command Mode Interface Config...

Page 133: ...to the port should pass the 802 1X authentication for access port based All the clients connected to the port can access the network on the condition that any one of the clients has passed the 802 1X Authentication Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet int...

Page 134: ... encrypted password with a fixed length will follow By default the encryption type is 0 password is the shared password for the switch and the authentication servers to exchange messages which contains 31 characters at most The question marks and spaces are not allowed encrypted password is a symmetric encrypted password with a fixed length which you can copy from another switch s configuration fi...

Page 135: ...adius server account command is used to enable the accounting feature To disable the accounting feature please use no radius server account command Syntax radius server account no radius server account Command Mode Global Configuration Mode Example Enable the accounting feature T2700G 28TQ config radius server account show dot1x global Description The show dot1x global command is used to display t...

Page 136: ...net port Parameter port The Fast Gigabit Ten Gigabit Ethernet port number Display the configuration of all the ports by default Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration information of 801 X for Gigabit Ethernet port 20 T2700G 28TQ config show dot1x interface gigabitEthernet 1 0 20 Display the configuration information of 801 X for all Ethernet ...

Page 137: ...T2700G 28TQ config show radius accounting show radius authentication Description The show radius authentication command is used to display the configuration of the RADIUS authentication server Syntax show radius authentication Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of the RADIUS authentication server T2700G 28TQ config show radius authenticat...

Page 138: ...t channels that is it can be saved to two different positions log buffer and log flash memory The log buffer indicates the RAM for saving system log and the information in the log buffer can be got by show logging buffer command It will be lost when the switch is restarted Syntax logging buffer no logging buffer Command Mode Global Configuration Mode Example Enable the system log buffer T2700G 28T...

Page 139: ...e Set the severity level as 6 T2700G 28TQ config logging buffer level 6 logging file flash Description The logging file flash command is used to store the log messages in a file in the flash on the switch To disable the log file flash function please use no logging file flash command The log file flash indicates the flash sector for saving system log The information in the log file of the flash wi...

Page 140: ...om 1 to 48 hours By default the synchronization process takes place every 24 hours immediate The system log file in the buffer will be synchronized to the flash immediately This option will reduce the life of the flash and is not recommended Command Mode Global Configuration Mode Example Specify the log file synchronization frequency as 10 hours T2700G 28TQ config logging file flash frequency 10 l...

Page 141: ...slog server hosts to receive logging messages To clear the configuration of the specified Log Host please use no logging host index command Log Host is to receive the system log from other devices You can remotely monitor the settings and operation status of other devices through the log host Syntax logging host index idx host ip level no logging host index idx Parameter idx The index of the log h...

Page 142: ...ddress The address of the TFTP server to receive the log file file name The name of the file to save the syslog unit id Specify the unit ID of the switch in the stack By default the syslog of all the units in the stack will be saved Command Mode Global Configuration Mode Example Save the unit 1 s system log file to the TFTP server 192 168 0 148 with the name log txt T2700G 28TQ config copy logging...

Page 143: ...ll the switches in the stack T2700G 28TQ config clear logging buffer show logging local config Description The show logging local config command is used to display the configuration of the Local Log including the log buffer and the log file the synchronization frequency etc Syntax show logging local config Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configurati...

Page 144: ...the severity level in the specified unit or the whole stack Syntax show logging buffer level level unit unit id Parameter level Severity level There are 8 severity levels marked with values 0 7 The information of levels with priority not lower than the select level will display Display all the log information in the log buffer by default unit Specify the unit whose log information in the log buffe...

Page 145: ...re are 8 severity levels marked with values 0 7 The information of levels with priority not lower than the select level will display Display all the log information in the log file by default unit Specify the unit whose log information in the log file will be displayed The log information in the log files of the whole stack will be displayed by default Command Mode Privileged EXEC Mode and Any Con...

Page 146: ...H function To disable the SSH function please use no ip ssh server command Syntax ip ssh server no ip ssh server Command Mode Global Configuration Mode Example Enable the SSH function T2700G 28TQ config ip ssh server ip ssh version Description The ip ssh version command is used to enable the SSH protocol version To disable the protocol version please use no ip ssh version command Syntax ip ssh ver...

Page 147: ...arameter value The Idle timeout time During this period the system will automatically release the connection if there is no operation from the client It ranges from 1 to 120 in seconds By default this value is 120 seconds Command Mode Global Configuration Mode Example Specify the idle timeout time of SSH as 100 seconds T2700G 28TQ config ip ssh timeout 100 ip ssh max client Description The ip ssh ...

Page 148: ...wnload the SSH key file from TFTP server Syntax ip ssh download v1 v2 key file ip address ip addr Parameter v1 v2 Select the type of SSH key to download v1 represents SSH 1 v2 represents SSH 2 key file The name of the key file which is selected to download The length of the name ranges from 1 to 25 characters The key length of the downloaded file must be in the range of 256 to 3072 bits ip addr Th...

Page 149: ...key v1 represents SSH 1 v2 represents SSH 2 Command Mode Privileged EXEC Mode Example Remove the SSH 1 type public key from the switch T2700G 28TQ remove public key v1 show ip ssh Description The show ip ssh command is used to display the global configuration of SSH and the SSH public key Syntax show ip ssh Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global con...

Page 150: ...d function enables the user to replace the default key pair ip http secure server Description The ip http secure server command is used to enable the SSL function globally on the switch To disable the SSL function please use no ip http secure server command Only the SSL function is enabled a secure HTTPS connection can be established Syntax ip http secure server no ip http secure server Command Mo...

Page 151: ... 28TQ config ip http secure server download certificate ssl cert ip address 192 168 0 146 ip http secure server download key Description The ip http secure server download key command is used to download a SSL key to the switch from TFTP server Syntax ip http secure server download key ssl key ip address ip addr Parameter ssl key The name of the SSL key which is selected to download to the switch ...

Page 152: ... ip address 192 168 0 146 show ip http secure server Description The show ip http secure server command is used to display the global configuration of SSL Syntax show ip http secure server Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration of SSL T2700G 28TQ config show ip http secure server ...

Page 153: ...duce broadcast packets and enhance the efficiency of packets forwarding remarkably Syntax mac address table static mac addr vid vid interface fastEthernet port gigabitEthernet port ten gigabitEthernet port no mac address table static mac addr vid vid mac mac addr vid vid interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter mac addr The MAC address of the entry you de...

Page 154: ...no mac address table aging time Parameter aging time The aging time for the dynamic address The value of it can be 0 or ranges from 10 to 630 seconds When 0 is entered the Auto Aging function is disabled It is 300 seconds by default Command Mode Global Configuration Mode Example Configure the aging time as 500 seconds T2700G 28TQ config mac address table aging time 500 mac address table filtering ...

Page 155: ...curity To return to the default configurations please use no mac address table max mac count command Port Security is to protect the switch from the malicious MAC address attack by limiting the maximum number of the MAC addresses that can be learned on the port The port with Port Security feature enabled will learned the MAC address dynamically When the learned MAC address number reaches the maxim...

Page 156: ... disable the Port Security function for a specified port By default this function is disabled Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Enable Port Security function for Gigabit Ethernet port 1 0 1 select Static mode...

Page 157: ...eged EXEC Mode and Any Configuration Mode Example Display the Aging Time of the MAC address T2700G 28TQ config show mac address table aging time show mac address table max mac count Description The show mac address table max mac count interface command is used to display the security configuration of an Ethernet port or of all Fast Gigabit ten Gigabit Ethernet ports Syntax show mac address table m...

Page 158: ...address configuration of an Ethernet port Syntax show mac address table interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The Fast Gigabit ten Gigabit Ethernet port number Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the address configuration of Gigabit Ethernet port 1 0 1 T2700G 28TQ config show mac address table interface gig...

Page 159: ...le count unit 2 Display the total amount of MAC address table in VLAN 1 of unit 2 of the stack T2700G 28TQ config show mac address table count unit 2 vlan 1 Display the total amount of MAC address table in VLAN 2 of all the units of the stack T2700G 28TQ config show mac address table count vlan 2 show mac address table address Description The show mac address table address command is used to displ...

Page 160: ...e address 00 00 00 23 00 00 Display the information of the MAC address 00 00 00 23 00 00 on port 1 0 20 T2700G 28TQ config show mac address table address 00 00 00 23 00 00 interface gigabitEthernet 1 0 20 show mac address table vlan Description The show mac address table vlan command is used to display the MAC address configuration of the specified vlan Syntax show mac address table vlan vid Param...

Page 161: ...me manual command is used to configure the system time manually Syntax system time manual time Parameter time Set the date and time manually in the format of MM DD YYYY HH MM SS Command Mode Global Configuration Mode Example Configure the system time as 02 14 2012 12 30 00 T2700G 28TQ config system time manual 02 14 2012 12 30 00 system time ntp Description The system time ntp command is used to c...

Page 162: ...for Atlantic Time Canada UTC 03 30 TimeZone for Newfoundland UTC 03 00 TimeZone for Buenos Aires Salvador Brasilia UTC 02 00 TimeZone for Mid Atlantic UTC 01 00 TimeZone for Azores Cape Verde Is UTC TimeZone for Dublin Edinburgh Lisbon London UTC 01 00 TimeZone for Amsterdam Berlin Bern Rome Stockholm Vienna UTC 02 00 TimeZone for Cairo Athens Bucharest Amman Beirut Jerusalem UTC 03 00 TimeZone fo...

Page 163: ...fetching time from NTP server Command Mode Global Configuration Mode Example Configure the system time mode as NTP the time zone is UTC 12 00 the primary NTP server is 133 100 9 2 and the secondary NTP server is 139 78 100 163 the fetching rate is 11 hours T2700G 28TQ config system time ntp UTC 12 00 133 100 9 2 139 79 100 163 11 system time dst predefined Description The system time dst predefine...

Page 164: ...on in Date mode This configuration is one off in use By default the current year is used as the starting time DST time periods should be within 12 months over one two year Syntax system time dst date smonth sday stime syear emonth eday etime eyear offset Parameter smonth Month to start with the options Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec sday Day to start ranging from 1 to 31 Please mi...

Page 165: ...s configuration is recurring in use The time period is not restricted to be within one year Syntax system time dst recurring sweek sday smonth stime eweek eday emonth etime offset Parameter sweek Week to start with the options first second third fourth last sday Day to start with the options Sun Mon Tue Wed Thu Fri Sat smonth Month to start with options Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov ...

Page 166: ... hostname Description The hostname command is used to configure the system name To clear the system name information please use no hostname command Syntax hostname hostname no hostname Parameter hostname System Name ranging from 1 to 32 characters It is the product name by default Here it is T2700G 28TQ Command Mode Global Configuration Mode Example Configure the system name as TPLINK T2700G 28TQ ...

Page 167: ...config location GUANGZHOU contact info Description The contact info command is used to configure the system contact information To clear the system contact information please use no contact info command Syntax contact info contact_info no contact info Parameter contact_info Contact Information It consists of 32 characters at most It is www tp link com by default Command Mode Global Configuration M...

Page 168: ...face Configuration Mode Example Create the VLAN interface 2 with the IP address as 192 168 1 1 and subnet mask as 255 255 255 0 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip address 192 168 1 1 255 255 255 0 ip address alloc Description The IP address alloc dhcp command is used to enable the DHCP Client function or the BOOTP Protocol When this function is enabled the specified inter...

Page 169: ... T2700G 28TQ config if ip address alloc dhcp Disable the IP address obtaining function on the VLAN interface 2 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if no ip address reset Description The reset command is used to reset the switch s software After resetting all configuration of the switch will restore to the factory defaults and your current settings will be lost Syntax reset uniti...

Page 170: ...mbers in the stack T2700G 28TQ reboot copy running config startup config Description The copy running config startup config command is used to save the current settings as the startup configuration file Syntax copy running config startup config unit id Parameter unit id Specify the unit in the stack whose current settings would be saved as the startup configuration file If not specified current se...

Page 171: ...file Command Mode Privileged EXEC Mode Example Save unit 1 s current settings as the backup configuration file T2700G 28TQ copy running config backup config 1 copy running config user config Description The copy running config user config command is used to save the current settings as the user defined configuration file Syntax copy running config user config device configfilename Parameter device...

Page 172: ...r unit id Specify the unit in the stack whose backup configuration file would be saved as the startup configuration file If not specified current backup configuration files all the members in the stack will be saved as their startup configuration files Command Mode Privileged EXEC Mode Example Save all the members backup configuration files as their startup configuration files in the stack T2700G ...

Page 173: ...e boot application command is used to configure the image file as startup image or backup image Syntax boot application filename image1 image 2 startup backup unitid no boot application Parameter image1 image2 Specify the image file to be configured By default the image1 bin is the startup image and the image2 bin is the backup image startup backup Specify the property of the image either startup ...

Page 174: ...tartup backup none Specify the property of configuration file startup represents the startup configuration file and backup represents the backup configuration file while none means to clear the property of the specified configuration file unitid Specify the unit in the stack whose configuration file would be configured If not specified configuration files of all the members in the stack will be co...

Page 175: ...ll be uploaded Command Mode Privileged EXEC Mode Example Save the backup configuration files of all the members in the stack to TFTP server with the IP 192 168 0 148 and name these files as config with their unit ID as suffix T2700G 28TQ copy backup config tftp ip address 192 168 0 148 filename config copy startup config tftp Description The copy startup config tftp command is used to upload the b...

Page 176: ...ftp backup config Description The copy tftp backup config command is used to download the configuration file from TFTP server to the switch as the backup configuration file Syntax copy tftp backup config ip address ip addr filename name unit id Parameter ip addr IP address of the TFTP server name Specify the name of the configuration file which would be downloaded The configuration file with the n...

Page 177: ...name unit id Parameter ip addr IP address of the TFTP server name Specify the name of the configuration file which would be downloaded The configuration file with the name name_unitid cfg will be downloaded to the switch with corresponding unit ID in the stack unit id Specify the unit in the stack to which the configuration file would be downloaded If not specified the corresponding configuration ...

Page 178: ...e members in the stack imagename Specify the name of the image file to be stored in the switch either image1 bin or image2 bin ip addr IP address of the TFTP server name Specify the name of the image file which would be downloaded from the TFTP server The suffix bin is not included Command Mode Privileged EXEC Mode Example Download the image file named as image bin to the unit 1 in the stack as it...

Page 179: ...tored in the TFTP server The suffix bin is not included Command Mode Privileged EXEC Mode Example Upload the unit1 image1 bin files to the TFTP server with the IP 192 168 0 148 and name it as image bin T2700G 28TQ copy image unit1 image1 bin tftp target ip address 192 168 0 148 filename image copy image Description The copy command is used to copy and save the image files inside the stack system S...

Page 180: ...le to unit 2 as image2 bin T2700G 28TQ copy image unit1 image1 bin unit2 image2 bin remove backup image Description The remove backup image command is used to delete the backup image Syntax remove backup image unitid Parameter unitid Specify the member s unit in the stack from which the backup image file would be deleted If not specified the backup image files of all the switches in the stack will...

Page 181: ...ation file named config1 cfg of all the members in the stack T2700G 28TQ remove config filename config1 cfg firmware upgrade Description The firmware upgrade command is used to upgrade the switch system file via the TFTP server Syntax firmware upgrade ip address ip addr filename name unitid Parameter ip addr IP address of the TFTP server name Specify the name for the firmware file unitid Specify t...

Page 182: ...ing testing It ranges from 1 to 1024 bytes By default this value is 64 i count The interval to send ICMP request packets It ranges from 100 to 1000 milliseconds By default this value is 1000 Command Mode User EXEC Mode and Privileged EXEC Mode Example To test the connectivity between the switch and the network device with the IP 192 168 0 131 please specify the count l as 512 bytes and count i as ...

Page 183: ...ectivity between the switch and the network device with the IP 192 168 0 131 If the destination device has not been found after 20 maxHops the connection between the switch and the destination device is failed to establish T2700G 28TQ tracert 192 168 0 131 h 20 loopback interface Description The loopback interface command is used to test whether the port is available or not Syntax loopback interfa...

Page 184: ...nal show system time Description The show system time command is used to display the current time system and its source Syntax show system time Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the time information of the switch T2700G 28TQ show system time show system time dst Description The show system time dst command is used to display the DST time information of th...

Page 185: ...EC Mode and Any Configuration Mode Example Display the NTP mode configuration information of the switch T2700G 28TQ show system time ntp show system info Description The show system info command is used to display system description system name device location system contact hardware version firmware version system time run time and so on Syntax show system info Command Mode Privileged EXEC Mode a...

Page 186: ...al information fan represents the fans running status power represents the power s running status temperature represents the system s environmental temperature unitid Specify the unit in the stack whose environmental information will be displayed If not specified the environmental information of all the switches in the stack will be displayed Command Mode Privileged EXEC Mode and Any Configuration...

Page 187: ...l the switches in the stack T2700G 28TQ show files in system show image info Description The show image info command is used to display the information of image files in the system Syntax show file in system unitid Parameter unitid Specify the unit in the stack whose image files information will be displayed If not specified the system image files information of all the switches in the stack will ...

Page 188: ...urations will be displayed in the stack Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display all the members current operating configuration in the stack T2700G 28TQ show running config show boot Description The show boot command is used to display the current boot configuration of the system Syntax show boot unitid Parameter unitid Specify the unit in the stack whose boot ...

Page 189: ...ected to the Switch locate and diagnose the trouble spot of the network Syntax show cable diagnostics interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The number of the port which is selected for Cable test Command Mode Privileged EXEC Mode and Any Configuration Mode Example Show the cable diagnostics of Gigabit Ethernet port 20 T2700G 28TQ show cable diagno...

Page 190: ...k T2700G 28TQ show cpu utilization show memory utilization Description The show memory utilization command is used to display the system s memory utilization in the last 5 seconds 1minute 5minutes Syntax show memory utilization unitid Parameter unitid Specify the unit in the stack whose memory utilization information will be displayed If not specified the memory utilization information of all the ...

Page 191: ...tEthernet Configuration Mode and configure the corresponding Fast Ethernet port Syntax interface fastEthernet port Parameter port The Fast Ethernet port number Command Mode Global Configuration Mode Example T2700G 28TQ doesn t have any fastEthernet port interface range fastEthernet Description The interface range fastEthernet command is used to enter the interface range fastEthernet Configuration ...

Page 192: ...igabitEthernet command is used to enter the interface gigabitEthernet Configuration Mode and configure the corresponding Gigabit Ethernet port Syntax interface gigabitEthernet port Parameter port The Fast Gigabit Ethernet port number Command Mode Global Configuration Mode Example To enter the Interface gigabitEthernet Configuration Mode and configure Gigabit Ethernet port 20 T2700G 28TQ config int...

Page 193: ...d results in an error on one port Example To enter the Interface Range gigabitEthernet Configuration Mode and configure Gigabit Ethernet ports 10 11 and 18 at the same time by adding them to one port list T2700G 28TQ config interface range gigabitEthernet 1 0 10 11 1 0 18 interface ten gigabitEthernet Description The interface ten gigabitEthernet command is used to enter the interface ten gigabitE...

Page 194: ...Ethernet ports at the same time Syntax interface range ten gigabitEthernet port list Parameter port list The list of Ten Gigabit Ethernet ports Command Mode Global Configuration Mode User Guidelines Command in the Interface Range ten gigabitEthernet Mode is executed independently on all ports in the range It does not affect the execution on the other ports at all if the command results in an error...

Page 195: ...from 1 to 16 characters Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Add a description Port 5 to Gigabit Ethernet port 1 0 5 T2700G 28TQ config interface gigabitEthernet 1 0 5 T2700G 28TQ config if description Port 5 sh...

Page 196: ... enable the flow control function for a port To disable the flow control function for this corresponding port please use no flow control command With the flow control function enabled the Ingress Rate and Egress Rate can be synchronized to avoid packet loss in the network Syntax flow control no flow control Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthern...

Page 197: ...s auto negotiation mode and the Ten Gigabit Ethernet port is full dulplex mode Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Configure the Duplex Mode as full duplex for Gigabit Ethernet port 1 0 20 T2700G 28TQ config in...

Page 198: ...hernet port 20 T2700G 28TQ config interface gigabitEthernet 1 0 20 T2700G 28TQ config if speed 100 storm control broadcast Description The storm control broadcast command is used to enable the broadcast control function To disable the broadcast control function please use no storm control broadcast command Broadcast control function allows the switch to filter broadcast in the network If the trans...

Page 199: ...control function To disable the multicast control function please use no storm control multicast command Multicast control function allows the switch to filter multicast in the network If the transmission rate of the multicast packets exceeds the set bandwidth the packets will be automatically discarded to avoid network broadcast storm Syntax storm control multicast rate no storm control multicast...

Page 200: ...rames exceeds the set bandwidth the packets will be automatically discarded to avoid network broadcast storm Syntax storm control unicast rate no storm control unicast Parameter rate Select the bandwidth for receiving UL Frame on the port The packet traffic exceeding the bandwidth will be discarded Range 1 to 1000000 kbps for the gigabit port 1 to 10000000 kbps for the ten gigabit port Command Mod...

Page 201: ... egress rate Specify the bandwidth for sending packets Range 1 100000 kbps for the megaport 1 1000000 kbps for the gigaport 1 to 10000000 kbps for the ten gigabit port Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Config...

Page 202: ... interface status fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The Fast Gigabit Ten Gigabit Ethernet port number or port list Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the connective status of all Ethernet ports T2700G 28TQ config show interface status Display the connective status of Gigabit Ethernet port 1 T2700G 28TQ config sh...

Page 203: ...y the statistic information of Gigabit Ethernet port 20 T2700G 28TQ config show interface counters gigabitEthernet 1 0 20 show interface configuration Description The show interface configuration command is used to display the configurations of an Ethernet port including Port status Flow Control Negotiation Mode and Port description Syntax show interface configuration fastEthernet port gigabitEthe...

Page 204: ...ode and Any Configuration Mode Example Display the storm control information of port Gigabit Ethernet port 1 0 20 T2700G 28TQ config show storm control interface gigabitEthernet 1 0 20 show bandwidth Description The show bandwidth command is used to display the bandwidth limit information of Ethernet port Syntax show bandwidth interface fastEthernet port gigabitEthernet port ten gigabitEthernet po...

Page 205: ...T2700G 28TQ JetStream 28 Port Gigabit Stackable L2 Managed Switch CLI Guide 185 T2700G 28TQ config show bandwidth interface gigabitEthernet 1 0 20 ...

Page 206: ...s from 0 to 7 which represent CoS0 CoS7 respectively By default the priority is 0 Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet User Guidelines Port priority is one property of the port When the port priority is specified the da...

Page 207: ... and TC egress queue Example Enable the mapping relation between DSCP Priority and egress queue T2700G 28TQ config qos dscp qos queue cos map Description The qos queue cos map command is used to configure the mapping relation between IEEE 802 1P priority tag IEEE 802 1Q tag CoS value and the TC egress queue To return to the default configuration please use no qos queue cos map command When 802 1P ...

Page 208: ...ease use no qos queue dscp map command DSCP DiffServ Code Point is a new definition to IP ToS field given by IEEE This field is used to divide IP datagram into 64 priorities When DSCP Priority is enabled IP datagram are mapped to different priority levels based on DSCP priority mode non IP datagram with IEEE 802 1Q tag are mapped to different priority levels based on IEEE 802 1P priority mode if I...

Page 209: ...y in the way of queue scheduling The switch will control the forwarding sequence of the packets according to the priority queues and scheduling algorithms you set On this switch the priority levels are labeled as TC0 TC1 TC2 TC7 Syntax qos queue mode sp wrr sp wrr equ no qos queue mode Parameter sp Strict Priority Mode In this mode the queue with higher priority will occupy the whole bandwidth Pac...

Page 210: ... 1 1 1 1 1 1 Command Mode Global Configuration Mode Example Specify the Schedule Mode as Weight Round Robin Mode T2700G 28TQ config qos queue mode wrr show qos interface Description The show qos interface command is used to display the configuration of QoS based on port priority Syntax show qos interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The Fast Gigabi...

Page 211: ...w qos dscp map command is used to display the configuration of DSCP Priority Syntax show qos dscp map Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of DSCP Priority T2700G 28TQ show qos dscp map show qos queue mode Description The show qos queue mode command is used to display the schedule rule of the egress queues Syntax show qos queue mode Command...

Page 212: ...us Description The show qos status command is used to display the status of IEEE 802 1P priority and DSCP priority Syntax show qos status Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the status of IEEE 802 1P priority and DSCP priority T2700G 28TQ show qos status ...

Page 213: ...e the monitoring port please use the monitor session destination interface command by changing the port value To delete the corresponding monitor session configuration please use no monitor session command Syntax monitor session session_num destination interface fastEthernet port gigabitEthernet port ten gigabitEthernet port no monitor session session_num Parameter session_num The monitor session ...

Page 214: ...s rx tx and both Rx ingress monitoring mode means the incoming packets received by the monitored port will be copied to the monitoring port TX egress monitoring mode indicates the outgoing packets sent by the monitored port will be copied to the monitoring port Both ingress and egress monitoring presents the incoming packets received and the outgoing packets sent by the monitored port will both be...

Page 215: ...tEthernet 1 0 4 rx show monitor session Description The show monitor session command is used to display the configuration of port monitoring Syntax show monitor session session_num Parameter session_num The monitor session number the value of which is 1 Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the monitoring configuration of monitor session 1 T2700G 28TQ config ...

Page 216: ... isolation Parameter fa forward list Configure Fast Ethernet ports to the forward port list It is optional gi forward list Configure Gigabit Ethernet ports to the forward port list It is optional ten gi forward list Configure Gigabit Ethernet ports to the forward port list It is optional Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabit...

Page 217: ...lation interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The number of Ethernet port you want to show its forward port list in the format of 1 0 2 Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the forward list of Gigabit Ethernet port 1 0 3 T2700G 28TQ show port isolation interface gigabitEthernet 1 0 3 Display the forward list ...

Page 218: ...on globally To disable it please use no loopback detection command Syntax loopback detection no loopback detection Command Mode Global Configuration Mode Example Enable the loopback detection function globally T2700G 28TQ config loopback detection loopback detection interval Description The loopback detection interval command is used to define the interval of sending loopback detection packets fro...

Page 219: ...ery time Parameter recovery time The time after which the blocked port would automatically recover to normal status and the loopback detection would restart It is integral times of detection interval ranging from 1 to 100 and the default value is 3 Command Mode Global Configuration Mode Example Configure the recovery time as 3 times of detection interval T2700G 28TQ config loopback detection recov...

Page 220: ...d loops Syntax loopback detection config process mode alert port based recovery mode auto manual Parameter alert port based The mode how the switch processes the detected loops Alert When a loop is detected display an alert Port based When a loop is detected display an alert and block the port auto manual The mode how the blocked port recovers to normal status Auto Block status can be automaticall...

Page 221: ...bitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Recover the blocked port 2 to normal status T2700G 28TQ config interface gigabitEthernet 1 0 2 T2700G 28TQ config if loopback detection recover show loopback detection global Description The show loopback detection global command is used to display the global configuration of loopb...

Page 222: ...e status of the specified Ethernet port Syntax show loopback detection interface gigabitEthernet port Parameter port The Ethernet port number Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of loopback detection function and the status of all ports T2700G 28TQ show loopback detection interface Display the configuration of loopback detection function a...

Page 223: ...nables you to implement ACL control over packets by differentiating the time ranges A time range can be specified in each rule in an ACL The rule takes effect only when the specified time range is configured and the system time is within the time range Syntax time range name no time range name Parameter name The Time Range name ranging from 1 to 16 characters Command Mode Global Configuration Mode...

Page 224: ...dic Description The periodic command is used to configure the time range into periodic mode To delete the corresponding Periodic Mode time range please use no periodic command To delete the corresponding Periodic Mode week date time range please use no periodic week date command To delete the corresponding Periodic Mode time slice time range please use no periodic time slice command Syntax periodi...

Page 225: ...holiday command is used to configure the time range into Holiday Mode under Time range Create Configuration Mode To delete the corresponding Holiday Mode time range please use no holiday command Syntax holiday no holiday Command Mode Time range Configuration Mode Example Configure the time range tSeg1 into Holiday Mode T2700G 28TQ config time range tSeg1 T2700G 28TQ config time range holiday holid...

Page 226: ...rd T2700G 28TQ config holiday nationalday start date 10 01 end date 10 03 access list create Description The access list create command is used to create standard IP ACL and extend IP ACL Syntax access list create acl id Parameter acl id ACL ID ranging from 500 to 2499 500 1499 must be Standard IP ACL and 1500 2499 must be Extend IP ACL Command Mode Global Configuration Mode Example Create a stand...

Page 227: ... no access list standard command Standard IP ACLs analyze and process data packets based on a series of match conditions which can be the source IP addresses and destination IP addresses carried in the packets Syntax access list standard acl id rule rule id deny permit sip source ip smask source ip mask dip destination ip dmask destination ip mask tseg time segment no access list standard acl id r...

Page 228: ... T2700G 28TQ config access list create 1200 T2700G 28TQ config access list standard 1200 rule 10 permit sip 192 168 0 100 smask 255 255 255 0 tseg tSeg1 access list extended Description The access list extended command is used to add Extended IP ACL rule To delete the corresponding rule please use no access list extended command Syntax access list extended acl id rule rule id deny permit sip sourc...

Page 229: ...ter the IP ToS contained in the rule pre Enter the IP Precedence contained in the rule Command Mode Global Configuration Mode Example Create an Extended IP ACL whose ID is 2220 and add Rule 10 for it In the rule the source IP address is 192 168 0 100 the source IP address mask is 255 255 255 0 the time range for the rule to take effect is tSeg1 and the packets match this rule will be forwarded by ...

Page 230: ...nging from 0 to 7 By default it is not limited time segment The time range for the rule to take effect By default it is not limited Command Mode Mac Access list Configuration Mode Example Create a MAC ACL whose ID is 20 and add Rule 10 for it In the rule the source MAC address is 00 01 3F 48 16 23 the source MAC address mask is ff ff ff ff ff 00 the user priority is 5 the time range for the rule t...

Page 231: ... The access list policy action command is used to add ACLs and create actions for the policy To set the detailed configuration of actions for a policy please use access list policy action command to access Action Configuration Mode To delete the corresponding actions please use no access list policy action command Syntax access list policy action policy name acl id no access list policy action pol...

Page 232: ...ample Edit the actions for policy1 Forward the data packets matching ACL 1200 in the policy to Gigabit Ethernet port 1 0 2 T2700G 28TQ config access list policy action policy1 1200 T2700G 28TQ config action redirect interface gigabitEthernet 1 0 2 s condition Description The s condition command is used to configure Stream Condition function of policy action Syntax s condition rate rate osd none di...

Page 233: ...ort gigabitEthernet port ten gigabitEthernet port Parameter port The Mirror Port number of Stream Mirror Command Mode Action Configuration Mode Example Edit the actions for policy1 Specify the mirror port as Gigabit Ethernet port 1 0 2 for the data packets matching ACL 1200 T2700G 28TQ config access list policy action policy1 1200 T2700G 28TQ config action s mirror interface gigabitEthernet 1 0 2 ...

Page 234: ...and is used to bind a policy to a specified port To cancel the bind relation please use no access list bind command Syntax access list bind policy name no access list bind policy name Parameter policy name The name of the policy desired to bind Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet int...

Page 235: ...rface vlan 2 T2700G 28TQ config if access list bind policy1 show time range Description The show time range command is used to display the configuration of time range Syntax show time range Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of Time Range T2700G 28TQ show time range show holiday Description The show holiday command is used to display the ...

Page 236: ...ration Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of the MAC ACL whose ID is 20 T2700G 28TQ show access list 20 show access list policy Description The show access list policy command is used to display the information of a specified policy Syntax show access list policy name Parameter name The Policy Name desired to show Command Mode Privileged ...

Page 237: ...access list bind Description The show access list bind command is used to display the configuration of Policy bind Syntax show access list bind Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of Policy bind T2700G 28TQ show access list bind ...

Page 238: ...panning tree command Syntax spanning tree no spanning tree Command Mode Global Configuration Mode Example Enable the STP function T2700G 28TQ config spanning tree spanning tree interface Description The spanning tree command is used to enable STP function for a port To disable the STP function please use no spanning tree command Syntax spanning tree no spanning tree Command Mode Interface Configur...

Page 239: ...n determining if the port connected to this port will be chosen as the root port In the same condition the port with the highest priority will be chosen as the root port The lower value has the higher priority ext cost External Path Cost which is used to choose the path and calculate the path costs of ports in different MST regions It is an important criterion on determining the root port The lowe...

Page 240: ...Path Cost as 100 and then enable Edge Port T2700G 28TQ config interface gigabitEthernet 1 0 1 T2700G 28TQ config if spanning tree common config port priority 64 ext cost 100 int cost 100 portfast enable point to point open spanning tree mode Description The spanning tree mode command is used to configure the STP mode of the switch To return to the default configurations please use no spanning tree...

Page 241: ...configuration Command Mode Global Configuration Mode Example Enter into the MST Configuration Mode T2700G 28TQ config spanning tree mst configuration instance Description The instance command is used to configure the VLAN Instance mapping To remove the VLAN instance mapping or disable the corresponding instance please use no instance command When an instance is disabled the related mapping VLANs w...

Page 242: ... 28TQ config spanning tree mst configuration T2700G 28TQ config mst no instance 1 vlan 1 50 name Description The name command is used to configure the region name of MST instance Syntax name name Parameters name The region name used to identify MST region It ranges from 1 to 32 characters Command Mode MST Configuration Mode Example Configure the region name of MST as region1 T2700G 28TQ config spa...

Page 243: ...e To return to the default value of MST instance priority please use no spanning tree mst instance command Syntax spanning tree mst instance instance id priority priority no spanning tree mst instance instance id priority Parameter instance id Instance ID ranging from 1 to 8 priority MSTI Priority which must be multiple of 4096 ranging from 0 to 61440 By default it is 32768 MSTI priority is an imp...

Page 244: ... instance id Instance ID ranging from 1 to 8 priority Port Priority which must be multiple of 16 ranging from 0 to 240 By default it is 128 Port Priority is an important criterion on determining if the port will be chosen as the root port by the device connected to this port cost Path Cost ranging from 0 to 2000000 The lower value has the higher priority Its default value is 0 meaning auto Command...

Page 245: ...y 4096 spanning tree tc defend Description The spanning tree tc defend command is used to configure the TC Protect of Spanning Tree globally To return to the default configuration please use no spanning tree tc defend command A switch removes MAC address entries upon receiving TC BPDUs If a malicious user continuously sends TC BPDUs to a switch the switch will be busy with removing MAC address ent...

Page 246: ... forward time Forward Delay which is the time for the port to transit its state after the network topology is changed Forward Delay ranges from 4 to 30 in seconds and it is 15 by default Otherwise 2 Forward Delay 1 Max Age hello time Hello Time which is the interval to send BPDU packets and used to test the links Hello Time ranges from 1 to 10 in seconds and it is 2 by default Otherwise 2 Hello Ti...

Page 247: ...ing from 1 to 20 in pps By default it is 5 Command Mode Global Configuration Mode Example Configure the hold count of STP as 8pps T2700G 28TQ config spanning tree hold count 8 spanning tree max hops Description The spanning tree max hops command is used to configure the maximum number of hops that occur in a specific region before the BPDU is discarded To return to the default configurations pleas...

Page 248: ... fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Enable the BPDU filter function for Gigabit Ethernet port 1 0 2 T2700G 28TQ config interface gigabitEthernet 1 0 2 T2700G 28TQ config if spanning tree bpdufilter spanning tree bpduguard Description The spanning tree bpduguard...

Page 249: ... recalculating STP because of link failures and network congestions To disable the Loop Protect function please use no spanning tree guard loop command Syntax spanning tree guard loop no spanning tree guard loop Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interf...

Page 250: ...and is used to enable the TC Protect of Spanning Tree function for a port To disable the TC Protect of Spanning Tree function please use no spanning tree guard tc command A switch removes MAC address entries upon receiving TC BPDUs If a malicious user continuously sends TC BPDUs to a switch the switch will be busy with removing MAC address entries which may decrease the performance and stability o...

Page 251: ...face gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Enable MCheck for Gigabit Ethernet port 1 0 2 T2700G 28TQ config interface gigabitEthernet 1 0 2 T2700G 28TQ config if spanning tree mcheck show spanning tree active Description The show spanning tree active command is used to display the active information of spanning tre...

Page 252: ...w spanning tree interface command is used to display the spanning tree information of all ports or a specified port Syntax show spanning tree interface fastEthernet port gigabitEthernet port ten gigabitEthernet port edge ext cost int cost mode p2p priority role state status Parameter port The Ethernet port number Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the span...

Page 253: ...ufilter bpduguard loop root tc tc defend Parameter port The Ethernet port number Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the protect information of all ports T2700G 28TQ config show spanning tree interface security Display the protect information of Gigabit Ethernet port 1 0 1 T2700G 28TQ config show spanning tree interface security gigabitEthernet 1 0 1 Displa...

Page 254: ...ow ranging from 1 to 8 port The Ethernet port number Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the region information and mapping information of VLAN and MST Instance T2700G 28TQ config show spanning tree mst configuration Display the related information of MST Instance 1 T2700G 28TQ config show spanning tree mst instance 1 Display all the ports information of MS...

Page 255: ... use no ip igmp snooping command Syntax ip igmp snooping no ip igmp snooping Command Mode Global Configuration Mode Example Enable IGMP Snooping function T2700G 28TQ config ip igmp snooping ip igmp snooping interface Description The ip igmp snooping command is used to enable the IGMP Snooping function for the desired port To disable the IGMP Snooping function please use no ip igmp snooping command...

Page 256: ...diate leave Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Enable the Fast Leave function for Gigabit Ethernet port 1 0 3 T2700G 28TQ config interface gigabitEthernet 1 0 3 T2700G 28TQ config if ip igmp snooping immediate...

Page 257: ... id static ip interface fastEthernet port gigabitEthernet port ten gigabitEthernet port no ip igmp snooping vlan config vlan id list no ip igmp snooping vlan config vlan id static ip Parameter vlan list The ID list of the VLAN desired to modify configuration ranging from 1 to 4094 in the format of 1 3 5 router time Router Port Time Within this time if the switch does not receive IGMP query message...

Page 258: ... to configure the maximum number of groups that a port can join in The ip igmp snooping max groups action is used to configure the action that the port takes when it receives an IGMP report message and the maximum number of entries is in the forwarding table To remove the maximum group limitation and return to the default of no limitation on the specified port please use the no ip igmp snooping ma...

Page 259: ...2700G 28TQ config interface range gigabitEthernet 1 0 2 5 T2700G 28TQ config if range ip igmp snooping max groups 10 T2700G 28TQ config if range ip igmp snooping max groups action replace ip igmp snooping multi vlan config Description The ip igmp snooping multi vlan config command is used to create and configure a Multicast VLAN To delete the corresponding Multicast VLAN please use no ip igmp snoo...

Page 260: ... mainly used in the network with stable topology Command Mode Global Configuration Mode Example Enable Multicast VLAN 3 and configure Router Port Time as 100 seconds T2700G 28TQ config ip igmp snooping multi vlan config 3 rtime 100 ip igmp snooping querier vlan Description The ip igmp snooping querier vlan command is used to enable the IGMP Snooping Querier function of the VLAN s To disable the IG...

Page 261: ...d a general query frame by IGMP Snooping Querier ranging from 10 to 300 Seconds By default it is 60 seconds response time The maximal time for the host to respond to a general query frame ranging from 1 to 25 Seconds By default it is 10 Seconds ip addr The source IP of the general query frame sent by IGMP Snooping Querier It should not be a multicast IP or a broadcast IP By default it is 192 168 0...

Page 262: ...hat immediate leave is not enabled and a leave frame is received count The times of sending specific query frames by IGMP Snooping Querier ranging from 1 to 5 By default it is 2 The switch will still treat the port as group member until the specific frames number sent by the querier reaches last listener query count and no report frame is received from the port ip addr The source IP of the specifi...

Page 263: ...g interface fastEthernet port list gigabitEthernet port list ten gigabitEthernet port list basic config max groups packet stat Parameter port The Fast Gigabit Ethernet port number By default the configuration of all ports is displayed basic config max groups packet stat The related configuration information selected to display port list The list group of Ethernet ports Command Mode Privileged EXEC...

Page 264: ...ng configuration information of VLAN 2 T2700G 28TQ show ip igmp snooping vlan 2 show ip igmp snooping multi vlan Description The show ip igmp snooping multi vlan command is used to display the Multicast VLAN configuration Syntax show ip igmp snooping multi vlan Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Multicast VLAN configuration T2700G 28TQ show ip igmp sno...

Page 265: ...ups static Display static multicast groups static count The numbers of all static multicast groups Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of all IGMP snooping groups T2700G 28TQ show ip igmp snooping groups Display all the multicast entries in VLAN 5 T2700G 28TQ config show ip igmp snooping groups vlan 5 Display the count of multicast entries i...

Page 266: ...isplay the configurations of its IGMP Snooping Querier If not specified the IGMP Snooping Querier configurations of all VLANs will be displayed Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configurations of IGMP Snooping Querier of VLAN 2 T2700G 28TQ config show ip igmp snooping querier vlan 2 ...

Page 267: ...ult configuration please use no snmp server command Syntax snmp server no snmp server Command Mode Global Configuration Mode Example Enable the SNMP function T2700G 28TQ config snmp server snmp server view Description The snmp server view command is used to add View To delete the corresponding View please use no snmp server view command The OID Object Identifier of the SNMP packets is used to desc...

Page 268: ...er group command is used to manage and configure the SNMP group To delete the corresponding SNMP group please use no snmp server group command SNMP v3 provides the VACM View based Access Control Model and USM User Based Security Model mechanisms for authentication The users in the SNMP Group can manage the device via the Read View Write View and Notify View And the authentication mode and the priv...

Page 269: ...ssigned SNMP View The View defined both as the Read View and the Write View can be read and modified notify Notify view The management station software can receive trap messages of the assigned SNMP view generated by the Switch s SNMP agent Command Mode Global Configuration mode Example Add group 1 and configure the Security Model as SNMP v3 the security level as authNoPriv the management access t...

Page 270: ...t of the Group which the User belongs to slev The Security Level of SNMP v3 Group There are three options including noAuthNoPriv no authorization and no encryption authNoPriv authorization and no encryption and authPriv authorization and encryption By default the option is noAuthNoPriv The Security Level of the User must be the same with that of the Group which the User belongs to cmode The Authen...

Page 271: ...uthPriv cmode MD5 cpwd 11111 emode DES epwd 22222 snmp server community Description The snmp server community command is used to add Community To delete the corresponding Community please use no snmp server community command SNMP v1 and SNMP v2c adopt community name authentication The community name can limit access to the SNMP agent from SNMP network management station functioning as a password S...

Page 272: ... the IP address for the notification sending By default it is 162 user name The User name of the management station smode The Security Model of the management station with v1 v2c and v3 options By default the option is v1 slev The Security Level of SNMP v3 Group There are three options including noAuthNoPriv no authorization and no encryption authNoPriv authorization and no encryption and authPriv...

Page 273: ... T2700G 28TQ config snmp server host 192 168 0 146 162 admin smode v2c type inform retries 100 timeout 1000 snmp server engineID Description The snmp server engineID command is used to configure the local and remote engineID of the switch To restore to the default setting please use no snmp server engineID command Syntax snmp server engineID local local engineID remote remote engineID no snmp serv...

Page 274: ...snmp server traps snmp command Syntax snmp server traps snmp linkup linkdown warmstart coldstart no snmp server traps snmp linkup linkdown warmstart coldstart Parameter linkup Enable linkup trap It is sent when port status changes from linkdown to linkup By default it is enabled linkdown Enable linkdown trap It is sent when port status changes from linkup to linkdown By default it is enabled warms...

Page 275: ...rap for port 1 0 3 T2700G 28TQ config interface gigabitEthernet 1 0 3 TL SG3424P config if snmp server traps link status snmp server traps Description The snmp server traps command is used to enable SNMP extended traps To disable the sending of SNMP extended traps please use no snmp server traps command Syntax snmp server traps bandwidth control cpu flash ipaddr change lldp loopback detection stor...

Page 276: ...ing status changes or the port receives TCN packet or packet with TC flag memory Enable memory trap It is sent when CPU usage exceeds 80 Command Mode Global Configuration Mode Example Enable SNMP extended bandwidth control trap for the switch T2700G 28TQ config snmp server traps bandwidth control snmp server traps mac Description The snmp server traps mac command is used to enable SNMP extended MA...

Page 277: ...p only for the switch T2700G 28TQ config snmp server traps mac new snmp server traps vlan Description The snmp server traps vlan command is used to enable SNMP extended VLAN related traps which include two types create and delete To disable this function please use no snmp server traps vlan command Syntax snmp server traps vlan create delete no snmp server traps vlan create delete Parameter create...

Page 278: ...n monitor network effectively Syntax rmon history index interface fastEthernet port gigabitEthernet port ten gigabitEthernet port interval seconds owner owner name no rmon history index Parameter index The index number of the entry ranging from 1 to 12 in the format of 1 3 5 port The Fast Gigabit Ten Gigabit Ethernet port number seconds The interval to take samplings from the port ranging from 10 ...

Page 279: ...ser to which the event belongs ranging from 1 to 16 characters By default it is public descript The description of the event ranging from 1 to 16 characters By default it is empty type The event type with none log notify and both options None indicates no processing log indicates logging the event notify indicates sending trap messages to the management station and both indicates logging the event...

Page 280: ...Parameter index The index number of the Alarm Management entry ranging from 1 to 12 in the format of 1 3 5 sindex Specify the statistics index alarm variable The alarm variable By default the option is revbyte s type Sample Type which is the sampling method for the selected variable and comparing the value against the thresholds There are two options absolute and delta Absolute indicates comparing...

Page 281: ...ner of the entry ranging from 1 to 16 characters By default it is monitor interval The alarm interval time ranging from 10 to 3600 in seconds By default it is 1800 Command Mode Global Configuration Mode Example Configure rmon alarm entries 1 3 binding with statistics entry 2 the owners as owner1 and the alarm intervals as 100 seconds T2700G 28TQ config rmon alarm 1 3 stats index 2 owner owner1 int...

Page 282: ...ated Command Mode Global Configuration Mode Example Configure the statistics entries 1 3 with the statistics port as 1 0 1 owner as owner1 and status as valid T2700G 28TQ config rmon statistics 1 3 interface gigabitEthernet 1 0 1 owner owner1 status valid show snmp server Description The show snmp server command is used to display SNMP configuration globally Syntax show snmp server Command Mode Pr...

Page 283: ...group command is used to display the Group table Syntax show snmp server group Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Group table T2700G 28TQ show snmp server group show snmp server user Description The show snmp server user command is used to display the User table Syntax show snmp server user Command Mode Privileged EXEC Mode and Any Configuration Mode E...

Page 284: ...ity table T2700G 28TQ show snmp server community show snmp server host Description The show snmp server host command is used to display the Host table Syntax show snmp server host Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Host table T2700G 28TQ show snmp server host show snmp server engineID Description The show snmp server engineID command is used to display...

Page 285: ...han one entry for each command By default the configuration of all history sample entries is displayed Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of all history sample entries T2700G 28TQ show rmon history show rmon event Description The show rmon event command is used to display the configuration of SNMP RMON Event Syntax show rmon event index P...

Page 286: ...ameter index The index number of the entry selected to display the configuration ranging from 1 to 12 in the format of 1 3 5 You can select more than one entry for each command By default the configuration of all Alarm Management entries is displayed Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of the Alarm Management entry 1 2 T2700G 28TQ show rmo...

Page 287: ...er of the statistics entry selected to display the configuration ranging from 1 to 65535 By default the configuration of all statistics entries is displayed Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of the statistics entry 1 T2700G 28TQ show rmon statistics 1 ...

Page 288: ...p command is used to enable LLDP function To disable the LLDP function please use no lldp command Syntax lldp no lldp Command Mode Global Configuration Mode Example Enable LLDP function globally T2700G 28TQ config lldp lldp hold multiplier Description The lldp hold multiplier command is used to configure the Hold Multiplier parameter The aging time of the local information in the neighbor device i...

Page 289: ...he local device to transmit LLDPDU to its neighbors The value ranges from 5 to 32768 and the default value is 30 seconds tx delay Configure a value from 1 to 8192 in seconds to specify the time for the local device to transmit LLDPDU to its neighbors after changes occur so as to prevent LLDPDU being sent frequently By default it is 2 seconds reinit delay This parameter indicates the amount of dela...

Page 290: ...able the designated port to receive LLDPDU To disable the function please use no lldp receive command Syntax lldp receive no lldp receive Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Enable Gigabit Ethernet port 1 0 1 t...

Page 291: ...the port will notify the trap event to network management system To disable the ports SNMP notification please use no lldp snmp trap command Syntax lldp snmp trap no lldp snmp trap Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet E...

Page 292: ...igabitEthernet interface range ten gigabitEthernet Example Exclude management address and port vlan id TLVs in LLDPDU outgoing from Gigabit Ethernet port 1 0 1 T2700G 28TQ config interface gigabitEthernet 1 0 1 T2700G 28TQ config if no lldp tlv select management address port vlan lldp med fast count Description The lldp med fast count command is used to configure the number of the LLDP MED frames ...

Page 293: ...tEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Enable the LLDP MED feature for port 1 0 2 T2700G 28TQ config interface gigabitEthernet 1 0 2 T2700G 28TQ config if lldp med status lldp med tlv select Description The lldp med tlv select command is used to configure LLDP MED TLV...

Page 294: ...ntifier civic address language language province state province state county county city city street street house number house number name name postal zipcode postal zipcode room number room number post office box post office box additional additional country code country code what dhcp server endpoint switch Parameter emergency number Emergency Call Service ELIN identifier which is used during em...

Page 295: ...p Description The show lldp command is used to display the global configuration of LLDP Syntax show lldp Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global configuration of LLDP T2700G 28TQ show lldp show lldp interface Description The show lldp interface command is used to display LLDP configuration of the corresponding port By default the LLDP configuration o...

Page 296: ...local information interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The Fast Gigabit Ten Gigabit Ethernet port number Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the LLDP information of Gigabit Ethernet port 1 0 1 T2700G 28TQ show lldp local information interface gigabitEthernet 1 0 1 show lldp neighbor information interface D...

Page 297: ...show lldp traffic interface command is used to display the LLDP statistic information between the local device and neighbor device of the corresponding port By default the LLDP statistic information of all the ports will be displayed Syntax show lldp traffic interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port The Fast Gigabit Ten Gigabit Ethernet port number Co...

Page 298: ...establishing An NDP enabled device sends NDP packets regularly to neighbor devices as well as receives NDP packets from neighbor devices An NDP packet carries the aging time which indicates the period of the receiving devices to keep the NDP packet Syntax cluster ndp cluster ndp timer hello hello time aging aging time no cluster ndp no cluster ndp timer hello hello time aging aging time Parameter ...

Page 299: ...lue cluster ntdp hop hop value no cluster ntdp no cluster ntdp timer interval time time hop delay value port delay value no cluster ntdp hop hop value Parameter time NTDP Interval Time which is the interval to collect topology information NTDP Interval Time ranges from 1 to 60 in minutes By default it is 1 hop delay value NTDP Hop Delay which is the time between the switch receiving NTDP request p...

Page 300: ...and Mode Global Configuration Mode Example Collect the topology information manually T2700G 28TQ config cluster explore cluster Description The cluster command is used to configure cluster functions of a specified port Syntax cluster ndp disable enable ntdp disable enable Parameter ndp Enable Disable NDP function for the port By default it is enabled ntdp Enable Disable NTDP function for the port ...

Page 301: ...be named the system default name tplink cluster Syntax cluster ip pool ip mask Parameter ip The cluster IP address pool mask The cluster IP address mask Command Mode Global Configuration Mode Example Create a cluster and configure its IP address pool as 192 168 10 1 192 168 0 254 T2700G 28TQ config cluster ip pool 192 168 10 1 255 255 255 0 cluster commander Description The cluster commander comma...

Page 302: ...eep the cluster information Hold Time ranges from 1 to 255 in seconds It is 20 by default interval time Interval Time which is the interval to send handshake packets Interval Time ranges from 1 to 255 in seconds It is 20 by default Command Mode Global Configuration Mode Example Specify the Hold Time and Interval Time of the cluster as 50 seconds T2700G 28TQ config cluster manage holdtime 50 T2700G...

Page 303: ...s 0e 3f 4g 5e 6d 7b cluster candidate Description The cluster candidate command is used to specify the current switch as candidate switch This command is invalid for the member switch in the cluster Syntax cluster candidate Command Mode Global Configuration Mode Example Specify the current switch as candidate switch T2700G 28TQ config cluster candidate cluster individual Description The cluster in...

Page 304: ...age the clusters T2700G 28TQ config cluster management vlan 2 clear ndp statistics Description The clear ndp statistics command is used to clear statistics about NDP messages on the specified port s Syntax clear ndp statistics interface fastEthernet port gigabitEthernet port ten gigabitEthernet port Parameter port Specify the Ethernet port number The NDP statistics of all ports will be cleared if ...

Page 305: ...mber is not specified here Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global NDP information of the switch T2700G 28TQ config show cluster ndp Display the NDP information of all the ports of the switch T2700G 28TQ config show cluster ndp interface show cluster neighbor Description The show cluster neighbor command is used to display the cluster s neighbor info...

Page 306: ...ice table of NTDP detail The detailed information of the device list summary The device list information in summary Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the global information of NTDP T2700G 28TQ show cluster ntdp Display the NTDP configuration of Gigabit Ethernet port 1 0 2 T2700G 28TQ show cluster ntdp interface gigabitEthernet 1 0 2 Display the device tab...

Page 307: ...figuration of Cluster T2700G 28TQ show cluster show cluster member Description The show cluster member command is used to display the member information Syntax show cluster member Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the member information T2700G 28TQ show cluster member ...

Page 308: ...face vlan vid no interface vlan vid Parameter vid The ID of the VLAN Command Mode Global Configuration Mode Example Create the VLAN interface 2 T2700G 28TQ config interface vlan 2 interface loopback Description This interface loopback command is used to create the loopback interface To delete the specified loopback interface please use the no interface loopback command Syntax interface loopback id...

Page 309: ...Command Mode Interface Configuration Mode interface fastEthernet interface range fastEthernet interface gigabitEthernet interface range gigabitEthernet interface ten gigabitEthernet interface range ten gigabitEthernet Example Switch the gigabitEthernet port 1 0 9 into the routed port T2700G 28TQ config interface gigabitEthernet 1 0 9 T2700G 28TQ config if no switchport shutdown Description This sw...

Page 310: ...rface and VLAN interface To clear the description of the corresponding interface please use the no description command Syntax description string no description Parameter string Content of an interface description ranging from 1 to 32 characters Command Mode Interface Configuration Mode Example Add a description system if to the routed port 1 0 9 T2700G 28TQ config interface gigabitEthernet 1 0 9 T...

Page 311: ...he higher the priority is Command Mode Global Configuration Mode Example Create a static route with the destination IP address as 192 168 2 0 the subnet mask as 255 255 255 0 and the next hop address as 192 168 0 2 T2700G 28TQ config ip route 192 168 2 0 255 255 255 0 192 168 0 2 ip routing Description This ip routing command is used to enable the Lay 3 routing function To disable this function pl...

Page 312: ... from 1 to 2147483647 Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of the loopback interface 1 T2700G 28TQ config show interface loopback 1 show interface vlan Description The show interface vlan command is used to display the information or a specified interface VLAN Syntax show interface vlan vid Parameter vid The VLAN ID Command Mode Privileged EX...

Page 313: ...e interface port The port number id The loopback interface ID vlan id The VLAN interface ID Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the detailed information of the VLAN interface 2 T2700G 28TQ config show ip interface vlan 2 show ip interface brief Description This show ip interface brief command is used to display the summary information of the Layer 3 interfa...

Page 314: ...enerated from the OSPF protocol Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the static routes T2700G 28TQ config show ip route static show ip route specify Description This show ip route specify command is used to display the invalid routing information to the specified IP address or network segments Syntax show ip route specify ip mask longer prefix Parameter ip S...

Page 315: ...p route specify 192 168 0 0 255 255 255 0 Display the routes to all the subnets that belongs to 192 168 0 0 16 T2700G 28TQ config show ip route specify 192 168 0 0 255 255 0 0 longer prefix show ip route summary Description This show ip route summary command is used to display the summary information of the route entries classified by their sources Syntax show ip route summary Command Mode Privile...

Page 316: ...able DHCP service please use no service dhcp command Syntax service dhcp no service dhcp Command Mode Global Configuration Mode Example Enable DHCP service globally T2700G 28TQ config service dhcp ip dhcp server exclude address Description The ip dhcp server exclude address command is used to specify the reserved IP addresses which are forbidden to allocate such as the gateway address the network ...

Page 317: ...and is used to create the address pool of DHCP Server and enter the dhcp configuration mode To delete the address pool please use no ip dhcp server pool command Syntax ip dhcp server pool pool name no ip dhcp server pool pool name Parameter pool name Specify the address pool name ranging from 1 to 8 characters Command Mode Global Configuration Mode Example Create the address pool of name POOL1 T27...

Page 318: ...ng packets Description The ip dhcp server ping packets command is used to specify the number of PING packets sent If this value is set to 0 the PING process will be disabled Syntax ip dhcp server ping packets num Parameter num Specify the PING packets number ranging from 0 to 10 Command Mode Global Configuration Mode Example Specify the PING packets number as 2 T2700G 28TQ config ip dhcp server pi...

Page 319: ...uct T2700G 28TQ config dhcp network 192 168 1 0 255 255 255 0 lease Description The lease command is used to specify the lease time of the address pool Syntax lease lease time Parameter lease time Specify the lease time of the pool ranging from 1 to 2880 minutes The default value is 120 minutes Command Mode DHCP Configuration Mode Example Specify the lease time of address pool product as 10 minute...

Page 320: ... address as 5e 4c a6 31 24 01 and the hardware type as ethernet T2700G 28TQ config ip dhcp server pool product T2700G 28TQ config dhcp address 192 168 0 10 hardware address 5e 4c a6 31 24 01 hardware type ethernet address client identifier Description The address client identifier command is used to specify the static address bound with client ID in the address pool To delete the binding please us...

Page 321: ...ase use no default gateway Syntax default gateway gateway list no default gateway Parameter gateway list Specify the gateway list with the format of A B C D E F G H At most 8 gateways can be configured separated by comma Command Mode DHCP Configuration Mode Example Specify the address pool product s default gateways as 192 168 0 1 and 192 168 1 1 T2700G 28TQ config ip dhcp server pool product T270...

Page 322: ...hcp dns server 192 168 0 1 192 168 1 1 show ip dhcp server status Description The show ip dhcp server status command is used to display the status of the DHCP service Syntax show ip dhcp server status Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the status of DHCP service T2700G 28TQ config show ip dhcp server status show ip dhcp server statistics Description The sh...

Page 323: ...yntax show ip dhcp server pool Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configured address pool T2700G 28TQ config show ip dhcp server pool show ip dhcp server excluded address Description The show ip dhcp server excluded address command is used to display the configuration of reserved addresses Syntax show ip dhcp server excluded address Command Mode Privil...

Page 324: ...ng address T2700G 28TQ config show ip dhcp server manual binding show ip dhcp server binding Description The show ip dhcp server binding command is used to display the binding entries Syntax show ip dhcp server binding ip ip address Parameter ip address Specify the binding IP address Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the address binding entries T2700G 28T...

Page 325: ...700G 28TQ config clear ip dhcp server statistics clear ip dhcp server binding Description The clear ip dhcp server binding command is used to clear the binding information Syntax clear ip dhcp server binding ip address Parameter ip address Specify the binding IP address Command Mode Privileged EXEC Mode and Any Configuration Mode Example Clear all the binding addresses T2700G 28TQ config clear ip ...

Page 326: ...delete the server address please use no ip helper address command Syntax ip helper address ip address no ip helper address ip address Parameter ip address DHCP Server address Command Mode Interface Configuration Mode Example Add DHCP Server address 192 168 2 1 to interface VLAN 1 T2700G 28TQ config interface vlan 1 T2700G 28TQ config if ip helper address 192 168 2 1 ip dhcp relay information Descr...

Page 327: ... policy Parameter drop keep replace Specify the policy The default policy is keep drop Discard the packet with the Option 82 field keep Keep the Option 82 field in the packet replace Replace the option 82 field with the system option defined by the switch Command Mode Global Configuration Mode Example Specify the option 82 policy as replace to replace the Option 82 field with the local parameter o...

Page 328: ...cp relay information circuit id circuitID no ip dhcp relay information circuit id Parameter circuitID Specify the circuit ID ranging from 1 to 63 characters Command Mode Global Configuration Mode Example Specify the circuit ID as TP LINK T2700G 28TQ config ip dhcp relay information circuit id TP LINK ip dhcp relay information remote id Description The ip dhcp relay information remote id command is...

Page 329: ...P LINK T2700G 28TQ config ip dhcp relay information remote id TP LINK show ip dhcp relay Description The show ip dhcp relay command is used to display the configuration of DHCP Relay Syntax show ip dhcp relay Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the configuration of DHCP Relay T2700G 28TQ config show ip dhcp relay ...

Page 330: ...p proxy arp no ip proxy arp Command Mode Interface Configuration Mode Example Enable the Proxy ARP function on Interface VLAN 2 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip proxy arp Enable the Proxy ARP function on routed port 1 0 2 T2700G 28TQ config interface gigabitEthernet 2 T2700G 28TQ config if no switchport T2700G 28TQ config if ip proxy arp ip proxy arp enable default rout...

Page 331: ... Example Enable the default route searching function when searching for the ARP proxy T2700G 28TQ config ip proxy arp enable default route show ip proxy arp Description The show ip proxy arp command is used to display the Proxy ARP status Syntax show ip proxy arp Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the Proxy ARP status T2700G 28TQ config show ip proxy arp ...

Page 332: ...nterface To disable IGMP function on this interface please use no ip igmp command Syntax ip igmp no ip igmp Command Mode Interface Configuration Mode Example Enable the IGMP function on Interface VLAN 2 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip igmp ip igmp version Description The ip igmp version command is used to configure the version of IGMP on specified interface To restore ...

Page 333: ...rface please use no ip igmp last member query count command Syntax ip igmp last member query count count no ip igmp last member query count Parameter count Specify the number of Specific Query Messages that the switch sends ranging from 1 to 20 The default value is 2 Command Mode Interface Configuration Mode Example Configure the number of Specific Query Messages that the switch sends as 3 on Inte...

Page 334: ...essages that the switch sends as 2 seconds on Interface VLAN 2 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip igmp last member query interval 2 ip igmp querier timeout Description The ip igmp querier timeout command is used to configure the existing time of the non querier on specified interface To restore to the default value on this interface please use no igmp querier timeout comm...

Page 335: ...fy the interval of General Query Messages that the switch sends ranging from 1 to 3600 seconds The default value is 60 seconds Command Mode Interface Configuration Mode Example Configure the interval of General Query Messages that the switch sends as 50 seconds on interface VLAN 2 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip igmp query interval 50 ip igmp query max response time De...

Page 336: ...uter alert command is used to configure to check the router alert option of the IGMP messages on specified interface To disable this check function on this interface please use no ip igmp require router alert command Syntax ip igmp require router alert no ip igmp require router alert Command Mode Interface Configuration Mode Example Check the router alert option of the IGMP messages on Interface V...

Page 337: ...p igmp robustness 3 ip igmp send router alert Description The ip igmp sender router alert is used to configure the sending IGMP messages to carry the router alert option on specified interface To disable this function on this interface please use no ip igmp send router alert command This function is enabled by default Syntax ip igmp send router alert no ip igmp send router alert Command Mode Inter...

Page 338: ...Startup Query Messages that the switch sends ranging from 1 to 300 seconds The default value is 15 seconds Command Mode Interface Configuration Mode Example Configure the interval of Startup Query Messages that the switch sends as 10 seconds on Interface VLAN 2 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip igmp query interval 10 ip igmp startup query count Description The ip igmp st...

Page 339: ...ommand is used to configure the static multicast group on specified interface VLAN To delete the corresponding multicast source and group on this interface VLAN please use no ip igmp static group command Syntax ip igmp static group group address interface fastEthernet gigabitEthernet ten gigabitEthernet port list source source address no ip igmp static group Parameter group address The multicast a...

Page 340: ...gmp static group routed port Description The ip igmp static group command is used to configure the static multicast group on specified routed port To delete the corresponding multicast source and group on this routed port please use no ip igmp static group command Syntax ip igmp static group group address source source address no ip igmp static group Parameter group address The multicast address r...

Page 341: ...gmp profile command is used to create the configuration profile To delete the corresponding profile please use no ip igmp profile command Syntax ip igmp profile id no ip igmp profile id Parameter id Specify the id of the configuration profile ranging from 1 to 999 Command Mode Global Configuration Mode Example Create the profile 1 T2700G 28TQ config ip igmp profile 1 deny Description The deny comm...

Page 342: ...figure the filtering mode of profile 1 as permit T2700G 28TQ config ip igmp profile 1 T2700G 28TQ config igmp profile permit range Description The range command is used to configure the range of the profile s filtering multicast address To delete the corresponding filtering multicast address please use no range command Syntax range start ip end ip no range start ip end ip Parameter start ip The st...

Page 343: ...ilter profile id no ip igmp filter profile id Parameter profile id Specify the profile ID to be bound Command Mode Interface Configuration Mode Example Bind profile 1 to the gigabitEthernet 1 0 1 T2700G 28TQ config interface gigabitEthernet 1 0 1 T2700G 28TQ config if ip igmp filter 1 Bind profile 1 to the routed port 1 0 1 T2700G 28TQ config interface gigabitEthernet 1 0 1 T2700G 28TQ config if n...

Page 344: ...the port will not join any new multicast group replace When the number of the dynamic multicast groups that a port joins has exceeded the max group the newly joined multicast group will replace an existing multicast group with the lowest multicast group address Command Mode Interface Configuration Mode Example Specify the maximum number of the dynamic multicast groups that the gigabitEthernet port...

Page 345: ...ny Configuration Mode Example Display the configuration information of all profiles T2700G 28TQ config show ip igmp profile show ip igmp groups Description The show ip igmp groups command is used to display the information of all the dynamic multicast groups or the specified multicast group Syntax show ip igmp groups group address detail Parameter group address Specify the multicast group address ...

Page 346: ...ype port Specify the port number detail The detailed information of the dynamic multicast groups Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the detailed information of the dynamic multicast groups on the gigabitEthernet 1 0 1 T2700G 28TQ config show ip igmp groups interface gigabitEthernet 1 0 1 detail show ip igmp groups interface vlan Description The show ip igm...

Page 347: ... detail Parameter detail The detailed information of all the static multicast groups Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of all the static multicast groups T2700G 28TQ config show ip igmp groups static show ip igmp groups static interface Description The show ip igmp groups static interface command is used to display the information of all t...

Page 348: ...used to display the information of all the dynamic multicast groups on the specified Interface VLAN Syntax show ip igmp groups static interface vlan vlan id detail Parameter vlan id Specify the interface VLAN ID detail The detailed information of the dynamic multicast groups Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of the static multicast groups ...

Page 349: ...ation on the specified port Syntax show ip igmp interface fastEthernet gigabitEthernet ten gigabitEthernet port detail statistic max groups Parameter fastEthernet gigabitEthernet ten gigabitEthernet Specify the port type port Specify the port number detail The detailed information of the IGMP configuration on the specified port statistic The IGMP packet statistics received on the specified port ma...

Page 350: ...n the specified interface VLAN Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the IGMP configuration information on the Interface VLAN 2 T2700G 28TQ config show ip igmp interface vlan 2 show ip igmp interface loopback Description The show ip igmp interface loopback command is used to display the IGMP configuration information on the specified interface loopback Syntax...

Page 351: ...able L2 Managed Switch CLI Guide 331 Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the detailed IGMP configuration information of the interface loopback 1 T2700G 28TQ config show ip igmp interface loopback 1 detail ...

Page 352: ... multicast routing function and delete all the multicast routing entries please use no ip multicast routing command Syntax ip multicast routing no ip multicast routing Command Mode Global Configuration Mode Example Enable the IP multicast routing function globally T2700G 28TQ config ip multicast routing ip pim Description The ip pim command is used to enable PIM function on the specified interface...

Page 353: ...mer timer no pim sg expiry timer Parameter timer The expiry time for the routing entries It ranges from 60 to 65535 seconds and the default value is 210 seconds Command Mode Global Configuration Mode Example Configure the expiry time for the routing entries as 60s T2700G 28TQ config ip pim sg expiry timer 60 ip pim spt threshold infinity Description The ip pim spt threshold infinity command is use...

Page 354: ... interface To disable the candidate BSR please use no ip pim bsr candidate command Syntax ip pim bsr candidate interface fastEthernet gigabitEthernet ten gigabitEthernet port loopback id vlan vlan id hash mask length mask len priority pri no ip pim bsr candidate Parameter fastEthernet gigabitEthernet ten gigabitEthernet The port type of the interface port The port number id The interface loopback ...

Page 355: ...lan id priority pri interval interval no ip pim rp candidate interface fastEthernet gigabitEthernet ten gigabitEthernet port loopback id vlan vlan id Parameter fastEthernet gigabitEthernet ten gigabitEthernet The port type of the interface port The port number id The interface loopback ID vlan id The interface VLAN ID pri The priority of the RP ranging from 0 to 255 interval The interval of RP adv...

Page 356: ... is a conflict between the RP configured with this command and one learned by BSR Command Mode Global Configuration Mode Example Configure the IP address of the static RP as 20 20 20 2 T2700G 28TQ config ip pim rp address 20 20 20 2 ip pim bsr border Description The ip pim bsr border command is used to configure the border of the BSR packet on each interface that connects to other bordering PIM do...

Page 357: ...p pim dr priority Parameter pri Specify the priority of DR ranging from 0 to 4294967294 The default value is 1 Command Mode Interface Configuration Mode Example Configure the DR priority on interface VLAN 2 as 100 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip pim dr priority 100 ip pim join prune interval Description The ip pim join prune interval command is used to configure the in...

Page 358: ...val 100 ip pim query interval Description The ip pim query interval command is used to configure the interval of Hello packet To restore to the default value of Hello packet interval please use no ip pim query interval command Syntax ip pim query interval interval no ip pim query interval Parameter interval Specify the interval of Hello packet It ranges from 1 to 18725 seconds and the default is 3...

Page 359: ...lticast show ip mroute Description The show ip mroute command is used to display the IP multicast routing table Syntax show ip mroute group ip addr source ip addr incoming interface interface id Parameter group ip addr Specify the multicast group IP address source ip addr Specify the multicast source IP address incoming interface interface id Specify the incoming interface id of the multicast grou...

Page 360: ... fastEthernet gigabitEthernet ten gigabitEthernet The port type of the interface port The port number id The interface loopback ID vlan id The interface VLAN ID ranging from 1 to 4094 Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of all PIM interfaces T2700G 28TQ config show ip pim interface show ip pim neighbor Description The show ip pim neighbor co...

Page 361: ...and is used to display the candidate BSR and RP information Syntax show ip pim bsr router Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the BSR and RP settings T2700G 28TQ config show ip pim bsr router show ip pim rp Description The show ip pim rp command is used to display the RP information of the specified multicast group Syntax show ip pim rp ip addr mapping Para...

Page 362: ...TQ config show ip pim rp show ip pim rp hash Description The show ip pim rp hash command is used to display the hash result of specified multicast group Syntax show ip pim rp hash ip addr Parameter ip addr Specify the multicast group address Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the RP hash result of multicast group 224 1 1 2 T2700G 28TQ config show ip pim rp...

Page 363: ...o delete the specified entry please use no ip mroute command Syntax ip mroute source address mask rpf address distance no ip mroute source address mask Parameter source address The IP address of the multicast source in the format as 192 168 0 1 mask The mask of the multicast source IP address rpf address The interface of the specified RPF entry distance The managing parameter of the static multica...

Page 364: ... static Description The show ip mroute command is used to display all the static multicast routing entries Syntax show ip mroute static Command Mode Privileged EXEC Mode and Any Configuration Mode Example Displays all the static multicast routing entries T2700G 28TQ config show ip mroute static ...

Page 365: ...a virtual router associated with one or more IP addresses that serve as default gateways In the event that the VRRP router controlling these IP addresses formally known as the Master fails the group of IP addresses and the default forwarding role is taken over by a Backup VRRP router vrrp vrid Description This command is used to enable the VRRP protocol on an interface and designates a virtual rou...

Page 366: ...p The IP address configured to the virtual router which must be in the same subnet with the interface Command Mode Interface Configuration Mode Example Add an IP address as 192 168 0 7 for vrid 4 on interface VLAN 3 T2700G 28TQ config interface vlan 3 T2700G 28TQ config if vrrp vrid 4 virtual ip 192 168 0 7 vrrp vrid description Description This command is used to configure or modify the descripti...

Page 367: ... command Syntax vrrp vrid vrid priority pri no vrrp vrid vrid priority Parameter vrid The virtual router ID pri Priority ranging from 1 to 254 By default the priority value is 100 Command Mode Interface Configuration Mode Example Configure the priority for the interface VLAN 3 as 123 in vrid 4 T2700G 28TQ config interface vlan 3 T2700G 28TQ config if vrrp vrid 4 priority 123 vrrp vrid timer advert...

Page 368: ...dvertise 12 vrrp vrid preempt mode Description This command sets the preemption mode and the delay time for the virtual router configured on a specified interface To set non preempt mode for the virtual router configured on a specified interface please use no vrrp vrid preempt mode command The virtual router is in non preempt mode by default Syntax vrrp vrid vrid preempt mode timer delay delay val...

Page 369: ... simple md5 Authentication mode By default it s none and no authentication will be performed simple means authentication will be performed using a text password md5 means authentication will be performed via a text password and MD5 algorithm This authentication mode has a higher security than Simple mode 0 Specify the encryption type 0 indicates that an unencrypted password will follow By default ...

Page 370: ...5 123 vrrp vrid track interface Description This command is used to add tracked interfaces for the virtual router To disable the track function on the specified interface please use no vrrp vrid track interface vlan command Syntax vrrp vrid vrid track interface fastEthernet gigabitEthernet ten gigabitEthernet port vlan vlan id reduce priority pri no vrrp vrid vrid track interface fastEthernet giga...

Page 371: ...tch Syntax clear vrrp statistics Command Mode Privileged EXEC Mode and Any Configuration Mode Example Clear all the statistics about vrrp on the switch T2700G 28TQ config clear vrrp statistics show vrrp Description This command is used to display the basic configuration information of all the virtual routers or a specified virtual router Syntax show vrrp vrid vrid interface fastEthernet gigabitEth...

Page 372: ...a virtual router on a specified interface or all the virtual routers on the switch Syntax show vrrp statistics vrid vrid interface fastEthernet gigabitEthernet ten gigabitEthernet port vlan vlan id Parameter vrid The virtual router ID fastEthernet gigabitEthernet ten gigabitEthernet The port type of the interface port The port number vlan id The interface VLAN ID Command Mode Privileged EXEC Mode ...

Page 373: ... router rip command is used to enable the RIP function and enter router configuration mode To disable the RIP function please use no router rip command Syntax router rip no router rip Command Mode Global Configuration Mode Example Enable the RIP function and enter router configuration mode T2700G 28TQ config router rip T2700G 28TQ config router network Description The network command is used to en...

Page 374: ...onfig router network 192 168 0 0 version Description The version command is used to specify the RIP version globally By default the switch sends RIPv1 packets and receives both RIPv1 and RIPv2 packets To return to the default configuration please use no version command Syntax version 1 2 no version Parameter 1 Send and receive RIPv1 packets 2 Send and receive RIPv2 packets Command Mode Router Conf...

Page 375: ... time ranging from 1 to 300 in seconds By default it is 180 seconds garbage collect value Specify the interval between the routing entry is invalidated or marked as unreachable and is removed from the routing table By default it is 120 seconds Command Mode Router Configuration Mode router rip Example Configure the update timer as 80 seconds T2700G 28TQ config router rip T2700G 28TQ config router t...

Page 376: ...the total number of entries To disable the Auto Summary mode please use no auto summary command Syntax auto summary no auto summary Command Mode Router Configuration Mode router rip Example Configure the RIP version as RIPv2 and disable its Auto Summary mode T2700G 28TQ config router rip T2700G 28TQ config router version 2 T2700G 28TQ config router no auto summary default metric Description The de...

Page 377: ...enable RIP to redistribute external routes By default it is disabled To return to the default configuration please use no redistribute command Syntax redistribute static ospf metric metric value no redistribute static ospf metric Parameter static Enable RIP to redistribute the external static routes ospf Enable RIP to redistribute the external OSPF routes metric value Configure the metric for the ...

Page 378: ...t ten gigabitEthernet loopback and VLAN interface number Number of the interface Command Mode Router Configuration Mode router rip Example Suppress the sending of update messages through the interface VLAN 1 T2700G 28TQ config router rip T2700G 28TQ config router passive interface interface vlan 1 ip rip receive version Description The ip rip receive version command is used to specify the RIP rece...

Page 379: ... rip send version command is used to specify the RIP send version on the desired interface To return to the default configuration please use no rip send version command The interfaces use the global configuration configured with version command before you specify its own RIP send receive version Syntax ip rip send version 1 2 no ip rip send version Parameter 1 2 Specify the RIP send version By def...

Page 380: ...e Example Configure the interface VLAN2 to send RIPv2 packets via broadcast T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip rip v2 broadcast ip rip authentication mode Description The ip rip authentication mode command is used to configure the authentication mode of RIP on the desired interface By default the authentication mode is none Syntax ip rip authentication mode simple md5 key...

Page 381: ...password is configured you should use the corresponding unencrypted password if you re enter this mode none Configure the authentication mode as none Command Mode Interface Configuration Mode User Guidelines If the password you configured here is unencrypted and the global encryption function is enabled in service password encryption the password in the configuration file will be displayed in the ...

Page 382: ...zon command is used to enable split horizon function on the desired interface To disable the split horizon function please use no ip rip split horizon command Syntax ip rip split horizon no ip rip split horizon Command Mode Interface Configuration Mode Example Enable split horizon function on the interface VLAN2 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip rip split horizon show ip...

Page 383: ...ecified RIP interface please specify its IP address and subnet mask ip address The IP address of which you desire to show the routing information mask The subnet mask of which you desire to show the routing information Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the RIP routing information of the network 192 168 1 0 24 T2700G 28TQ config show ip rip database specif...

Page 384: ...dent instance running the OSPF protocol and they works separately To delete the specified OSPF routing process please use the no router ospf command Syntax router ospf process id no router ospf process id Parameter process id Process ID ranging from 1 to 65535 Five processes can be created at most Command mode Global Configuration Mode Example Create an OSPF routing process with the process ID as ...

Page 385: ... All the interfaces fallen into the configured network will belong to this area To delete the specified network and its corresponding interfaces from this area please use the no network command Syntax network ip address wildcard mask area area id no network ip address wildcard mask area area id Parameter ip address The IP address of the network wildcard mask The wildcard mask of the network such a...

Page 386: ...oundary Router With the summary address command configured the ASBR Autonomous System Border Router will advertise a summary route that covers the networks in the range to its neighbor routers While with no summary address command configured the previously aggregated external routes will be advertised again Syntax summary address ip address mask tag tag nssa only not advertise no summary address i...

Page 387: ...dress 192 168 0 0 255 255 0 0 nssa only maximum paths Description The maximum paths command is used to configure the maximum number of the equal cost multipath routings To restore to default value please use the no maximum paths command Syntax maximum paths number no maximum paths Parameter number The maximum number of the equal cost multipath routings ranging from 1 to 32 The default value is 5 C...

Page 388: ...tic rip ospf process id metric cost metric type type tag tag nssa only Parameter static Specify the external route type as static rip Specify the external route type as RIP process id The ospf routing process ID ranging from 1 to 65535 cost The cost of the external routes ranging from 1 to 16777214 Its default value is defined in the command default metric type The type of the external routes eith...

Page 389: ...ntax default metric cost no default metric Parameter cost The default cost of the redistributing external route ranging form 1 to 16777214 Its default value is 20 Command Mode Router Configuration Mode Example Configure the default cost of the redistributing external route as 12 T2700G 28TQ config router ospf 1 T2700G 28TQ config router default metric 12 default information originate Description T...

Page 390: ... is 1 type The type of the external routes either 1 or 2 The default value is 2 Command Mode Router Configuration Mode Example Configure OSPF to advertise the default route whether there is default route is the IP routing table or not T2700G 28TQ config router ospf 1 T2700G 28TQ config router default information originate always auto cost Description The auto cost command is used to enable the aut...

Page 391: ...sed to configure the OSPF administrative distance To restore to the default distance please use the no distance command The administrative distance represents the priority of the routes The smaller administrative distance corresponds to higher priority When different routing protocols possess the same route to the same destination the route with the highest priority will be selected to add to the ...

Page 392: ... of the SPF computing ranging from 1 to 600 seconds The default value is 5 seconds spf holdtime The minimum interval between two SPF computings ranging from 1 to 600 seconds The default value is 5 seconds Command Mode Router Configuration Mode Example Configure the computing delay and interval of the SPF as 10 seconds T2700G 28TQ config router ospf 1 T2700G 28TQ config router timers throttle spf 1...

Page 393: ...nces as 2000 milliseconds T2700G 28TQ config router ospf 1 T2700G 28TQ config router timers lsa arrival 2000 compatible rfc1583 Description The compatible rfc 1583 command is used to configure the OSPF s compatibility for the routing rules in the RFC 1583 To cancel the compatibility please use the no compatible rfc1583 command It is compatible by default Syntax compatible rfc1583 no compatible rfc...

Page 394: ... gigabitEthernet port loopback id vlan vlan id Parameter fastEthernet gigabitEthernet ten gigabitEthernet The port type of the interface port The port number id The interface loopback ID vlan id The interface VLAN ID Command Mode Router Configuration Mode Example Prevent interface VLAN 1 from sending OSPF packets in routing process 1 T2700G 28TQ config router ospf 1 T2700G 28TQ config router passi...

Page 395: ... interface loopback IDs vlan list The interface VLAN IDs Command Mode Router Configuration Mode Example Prevent interface VLAN 1 3 from sending OSPF packets in routing process 1 T2700G 28TQ config router ospf 1 T2700G 28TQ config router passive interface vlan 1 3 passive interface default Description The passive interface default command is used to prevent all the interfaces from sending OSPF pack...

Page 396: ...s can be deleted Syntax no area area id Parameter area id The area ID in the format of an IP address in dotted decimal notation or decimal value ranging from 0 to 4294967295 Command Mode Router Configuration Mode Example Delete the OSPF area 1 T2700G 28TQ config router ospf 1 T2700G 28TQ config router no area 1 area description Description The area description command is used to configure the area...

Page 397: ...ation command is used to configure the authentication mode of the specified area Interfaces in this area will be authorized using the area s authentication mode if their authentication modes are not configured manually To restore to the default setting please use the no area authentication command It is not authorized by default Syntax area area id authentication message digest no area area id aut...

Page 398: ...rameter area id The area ID in the format of an IP address in dotted decimal notation or decimal value ranging from 0 to 4294967295 no summary Configure the stub are as a totally stub area where the ABR advertises neither the destinations in other areas nor the external routes The stub area is not a totally stub area by default Command Mode Router Configuration Mode Example Configure the area 1 as...

Page 399: ...967295 no redistribution Select to not import routes into the NSSA no summary Select to not send summary LSAs into the NSSA default information originate Select on an ABR to allow importing default route as type 7 LSAs into the NSSA cost The default route cost with the default value as 1 It ranges from 1 to 16777214 type The default route type with the default value as 2 It is either 1 or 2 Comman...

Page 400: ...and By default no route is summarized This command is only used with the ABR to summarize the route information of a certain area The ABR only sends one summarized route of the routes in the aggregated segment to the other areas An area can be configured with multiple summary segments which can be aggregated by OSPF If the no area range command is configured the formally summarized routes will be ...

Page 401: ...irtual link command with corresponding parameters Syntax area transit area virtual link router id dead interval dead interval hello interval hello interval retransmit interval rtx interval transmit delay trans delay no area transit area virtual link router id dead interval dead interval hello interval hello interval retransmit interval rtx interval transmit delay trans delay Parameter transit area...

Page 402: ...ual link authentication command is used to configure the authentication type of the virtual link The virtual link is not authenticated by default To restore to default value please use the no area virtual link authentication command Syntax area transit area virtual link router id authentication message digest null no area transit area virtual link router id authentication Parameter transit area Th...

Page 403: ...ea virtual link router id authentication key key no area transit area virtual link router id authentication key Parameter transit area The transition area ID in the format of an IP address in dotted decimal notation or decimal value ranging from 0 to 4294967295 router id The ID of the neighboring router on the other endpoint of the virtual link in the format of dotted decimal notation key The auth...

Page 404: ...cimal notation 0 Specify the encryption type 0 indicates that an unencrypted password will follow By default the encryption type is 0 password Super password a string from 1 to 8 alphanumeric characters or symbols The password is case sensitive allows spaces but ignores leading spaces and cannot contain question marks By default it is empty 7 Indicates a symmetric encrypted password with a fixed l...

Page 405: ...virtual link router id message digest key id Parameter transit area The transition area ID in the format of an IP address in dotted decimal notation or decimal value ranging from 0 to 4294967295 router id The ID of the neighboring router on the other endpoint of the virtual link in the format of dotted decimal notation id The key ID of the MD5 ranging from 1 to 255 0 Specify the encryption type 0 ...

Page 406: ...uter on the other endpoint as 3 3 3 3 with the authentication ID as 2 and the authentication key as 123456 T2700G 28TQ config router ospf 1 T2700G 28TQ config router area 2 virtual link 3 3 3 3 message digest key 2 md5 123456 ip ospf cost Description The ip ospf cost is used to configure the interface cost To restore to the default value please use the no ip ospf cost command Syntax ip ospf cost c...

Page 407: ...terval ranging from 1 to 65535 seconds The default value is 5 seconds Command Mode Interface Configuration Mode Example Configure the retransmission interval of interface VLAN 2 as 10 seconds T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip ospf retransmit interval 10 ip ospf transmit delay Description The ip ospf transmit delay is used to configure the transmission delay of LSA on the...

Page 408: ...e default value please use the no ip ospf priority command Syntax ip ospf priority pri no ip ospf priority Parameter pri The priority of the interface ranging from 0 to 255 and the default value is 1 Interface with the priority 0 cannot be elected as DR or BDR Command Mode Interface Configuration Mode Example Configure the priority of the interface VLAN 2 as 1 T2700G 28TQ config if ip ospf priorit...

Page 409: ...0 ip ospf dead interval Description The ip ospf dead interval command is used to set the number of seconds after the last device hello packet was seen before its neighbors declare the OSPF router to be down To restore to default value please use the no ip ospf dead interval command Syntax ip ospf dead interval interval no ip ospf dead interval Parameter interval The neighbor s failure interval ran...

Page 410: ...no authentication mode is specified here the default mode will be simple authentication Command Mode Interface Configuration Mode Example Configure the authentication type of interface VLAN 2 as MD5 T2700G 28TQ config if ip ospf authentication message digest ip ospf authentication key Description The ip ospf authentication key command is used to configure the key of the simple authentication To ca...

Page 411: ...ncrypted and the global encryption function is enabled in service password encryption the password in the configuration file will be displayed in the symmetric encrypted form Example Configure the authentication mode of interface VLAN 2 as simple authentication and the password as 123 T2700G 28TQ config interface vlan 2 T2700G 28TQ config if ip ospf authentication key 123 ip ospf message digest ke...

Page 412: ...Mode Interface Configuration Mode User Guidelines If the password you configured here is unencrypted and the global encryption function is enabled in service password encryption the password in the configuration file will be displayed in the symmetric encrypted form Example Configure md5 authentication key ID as 1 and password as abc on interface VLAN 2 T2700G 28TQ config interface vlan 2 T2700G 2...

Page 413: ...default OSPF floods new LSAs over all interfaces in the same area except the interface on which the LSA arrives Syntax ip ospf database filter all out no ip ospf database filter all out Command Mode Interface Configuration Mode Example Block the flooding of the LSA packets on interface VLAN 2 T2700G 28TQ config if ip ospf database filter all out ip ospf mtu ignore Description The ip ospf mtu ignor...

Page 414: ...tion The clear ip ospf command is used to reset the OSPF process which will clear all the dynamic information The clear ip ospf process command will reset all the OSPF processes Syntax clear ip ospf process id clear ip ospf process Parameter process id The process ID ranging from 1 to 65535 Command Mode Privileged EXEC Mode Example Reset all the OSPF processes T2700G 28TQ clear ip ospf process sho...

Page 415: ...abase command is used to display the LSDB The detailed LSA information will be displayed if the LSA type is specified The LSDB summary information will be displayed if the LSA type is not specified Syntax show ip ospf process id database asbr summary external network nssa external router summary Parameter process id The process ID ranging from 1 to 65535 The LSDBs of all processes will be displaye...

Page 416: ...terface number Specify the interface name and number to display the interface s detailed information Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the information of the interfaces in all the OSPF processes T2700G 28TQ show ip ospf interface show ip ospf neighbor Description The show ip ospf neighbor command is used to display information of the OSPF neighbor Syntax ...

Page 417: ...list command is used to display the LSA request list Syntax show ip ospf process Id request list interface name interface number neighbor id Parameter process id The process ID ranging from 1 to 65535 The LSA quest lists of all processes will be displayed if no process ID is specified interface name interface number Specify the interface name and number to display the LSA request list on this inte...

Page 418: ... number Specify the interface name and number to display the LSA retransmission list on this interface neighbor id Specify the neighbor router s ID to display the LSA retransmission list of this neighbor Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display LSA retransmission lists of all the OSPF processes T2700G 28TQ show ip ospf retransmission list show ip ospf summary ad...

Page 419: ... The process ID ranging from 1 to 65535 The virtual links of all processes will be displayed if no process ID is specified Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the virtual links of all the OSPF processes T2700G 28TQ show ip ospf virtual links show ip ospf border routers Description The show ip ospf border routers is used to display the routing tables of the ...

Page 420: ...o 65535 The routing tables of all OSPF processes will be displayed if no process ID is specified Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the routing tables of all the OSPF processes T2700G 28TQ show ip route ospf show ip ospf area database Description The show ip ospf area database command is used to display the LSDB of the specified area The detailed LSA infor...

Page 421: ...he show ip ospf area interface command is used to display the interface information of the specified area Syntax show ip ospf process id area area id interface brief interface name interface number Parameter process id The process ID ranging from 1 to 65535 area id The area ID in the format of an IP address in dotted decimal notation or decimal value ranging from 0 to 4294967295 brief Display the ...

Page 422: ...o 4294967295 detail The detailed information of the neighbor interface name interface number Specify the interface name and number to display the detailed neighbor s information on this interface Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the summary information of the neighbors of Area 0 in process1 T2700G 28TQ show ip ospf 1 area 0 neighbor show ip ospf area req...

Page 423: ...rea retransmission list Description The show ip ospf area retransmission list command is used to display the LSA retransmission list of the specified area Syntax show ip ospf process id area area id retransmission list interface name interface number neighbor id Parameter process id The process ID ranging from 1 to 65535 area id The area ID in the format of an IP address in dotted decimal notation...

Page 424: ...T2700G 28TQ JetStream 28 Port Gigabit Stackable L2 Managed Switch CLI Guide 404 T2700G 28TQ show ip ospf 1 area 0 retransmission list ...

Reviews: