The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
access control lists
access groups
IP 2-150
MAC, displaying 2-534
matching for QoS classification 2-286
access list, IPv6 2-219
access mode 2-688
access ports 2-688
ACLs
as match criteria for QoS classes 2-286
deny 2-88
displaying 2-412
for non-IP protocols 2-264
IP 2-150
on Layer 2 interfaces 2-150
permit 2-329
action command 2-5
address aliasing 2-309
aggregate policers
applying 2-342
creating 2-337
displaying 2-566
QoS 2-339
aggregate-port learner 2-318
alarm-contact command 2-7
alarm-contact status, displaying 2-445
allowed VLANs 2-704
archive download-sw command 2-9
archive tar command 2-12
archive upload-sw command 2-15
arp (boot loader) command A-2
arp access-list command 2-17
attaching policy maps to interfaces 2-393
authorization state of controlled port 2-104
autonegotiation of duplex mode 2-116
B
backup interfaces
configuring 2-681
displaying 2-467
bandwidth, configuring for QoS 2-19
bandwidth command 2-19
boot (boot loader) command A-3
boot config-file command 2-23
boot enable-break command 2-24
boot helper command 2-25
boot helper-config file command 2-26
booting
Cisco IOS image 2-29
displaying environment variables 2-417
interrupting 2-24
manually 2-27
boot loader
accessing A-1
booting
Cisco IOS image A-3
helper image 2-25
directories
creating A-18
displaying a list of A-8
removing A-22
displaying
available commands A-13
memory heap utilization A-14
version A-29
environment variables
described A-23
displaying settings A-23
location of A-24
setting A-23
unsetting A-27
files
copying A-6
deleting A-7
displaying a list of A-8
displaying the contents of A-5, A-19, A-26
renaming A-20
file system
formatting A-11
initializing flash A-10
running a consistency check A-12
prompt A-1
resetting the system A-21
boot manual command 2-27
boot private-config-file command 2-28
boot system command 2-29
BPDU filtering, for spanning tree 2-626, 2-664
BPDU guard, for spanning tree 2-628, 2-664
broadcast storm control 2-674
bundling characteristics, UNI 2-126
burst bytes, in QoS policers 2-333, 2-338
C
cat (boot loader) command A-5
CBWFQ, configuring 2-19
CDP, enabling protocol tunneling for 2-244
CFM 2-317
CFM as OAM protocol 2-317
channel-group command 2-30
channel-protocol command 2-34
child policy maps 2-395
class-based traffic shaping 2-410
class-based weighted fair queuing
class command 2-36
class-map command 2-38
class-map configuration mode 2-38
class maps
creating 2-38
defining the match criteria 2-287, 2-289
displaying 2-421
matching in 2-38
class of service
clear ip arp inspection log command 2-40
clear ip arp inspection statistics command 2-41
clear ipc command 2-44
clear ipv6 dhcp conflict command 2-45
clear l2protocol-tunnel counters command 2-46
clear lacp command 2-47
clear logging onboard command 2-48
clear mac address-table command 2-49, 2-50
clear policer cpu uni-eni counters command 2-52
clear port-security command 2-53
clear spanning-tree counters command 2-56
clear spanning-tree detected-protocols command 2-57
clear vmps statistics command 2-59
command modes defined 1-1
committed information rate in QoS policers 2-333, 2-337
configuration files
password recovery disable considerations A-1
specifying the name 2-23, 2-28
configuring multiple interfaces 2-146
conform-action command 2-60
control-plane policer 2-52
control-plane policer information, displaying 2-567
control-plane security 2-344
control plane statistics, clearing 2-52
copy (boot loader) command A-6
copy logging onboard module command 2-62
CoS
as match criteria for QoS groups 2-287
for QoS classification 2-397
setting value in policy maps 2-397
CoS value, assigning to Layer 2 protocol packets 2-247
CPU ASIC statistics, displaying 2-422
CPU protection policers, displaying C-24
cpu traffic qos cos command 2-64
cpu traffic qos dscp command 2-68
cpu traffic qos precedence command 2-73
cpu traffic qos qos-group command 2-76
D
DC power supply 2-353
debug backup command B-2
debug dot1x command B-3
debug etherchannel command B-4
debug interface command B-7
debug ip dhcp snooping command B-8
debug ip igmp filter command B-9
debug ip igmp max-groups command B-10
debug ip igmp snooping command B-11
debug ip sla error twamp connection command B-12
debug ip sla error twamp control reflector command B-14
debug ip sla error twamp control server command B-16
debug ip sla error twamp session command B-18
debug ip sla trace twamp connection command B-20
debug ip sla trace twamp control reflector command B-22
debug ip sla trace twamp control server command B-24
debug ip sla trace twamp session command B-26
debug ip verify source packet command B-28
debug lacp command B-29
debug mac-notification command B-30
debug matm command B-31
debug matm move update command B-32
debug monitor command B-33
debug mvrdbg command B-34
debug nvram command B-35
debug pagp command B-36
debug platform acl command B-37
debug platform backup interface command B-38
debug platform cfm command B-39
debug platform cpu-queues command B-40
debug platform dot1ad command B-42
debug platform dot1x command B-43
debug platform etherchannel command B-44
debug platform forw-tcam command B-45
debug platform ip arp inspection command B-46
debug platform ipc command B-55
debug platform ip dhcp command B-47
debug platform ip igmp snooping command B-48
debug platform ip multicast command B-50
debug platform ip source-guard command B-52
debug platform led command B-56
debug platform matm command B-57
debug platform messaging application command B-58
debug platform phy command B-59
debug platform pm command B-61
debug platform policer cpu uni-eni command B-63
debug platform port-asic command B-64
debug platform port-security command B-65
debug platform qos-acl-tcam command B-66
debug platform qos-manager command B-67
debug platform remote-commands command B-68
debug platform rep command B-69
debug platform resource-manager command B-70
debug platform snmp command B-71
debug platform span command B-72
debug platform supervisor-asic command B-73
debug platform sw-bridge command B-74
debug platform tcam command B-75
debug platform udld command B-77
debug platform vlan command B-78
debug pm command B-79
debug port-security command B-81
debug qos-manager command B-83
debug rep command B-82
debug spanning-tree bpdu command B-86
debug spanning-tree bpdu-opt command B-87
debug spanning-tree command B-84
debug spanning-tree mstp command B-88
debug spanning-tree switch command B-90
debug sw-vlan command B-92
debug sw-vlan ifs command B-93
debug sw-vlan notification command B-94
debug udld command B-96
debug vqpc command B-98
default policer configuration
NNIs C-26
UNIs C-25
define interface-range command 2-78
delete (boot loader) command A-7
delete command 2-80
deny (ARP access-list configuration) command 2-81
deny (IPv6) command 2-83
deny command 2-88
detect mechanism, causes 2-117
DHCP snooping
accepting untrusted packets from edge switch 2-175
enabling
on a VLAN 2-181
trust on an interface 2-179
error recovery timer 2-119
rate limiting 2-178
DHCP snooping binding database
binding file, configuring 2-171
bindings
adding 2-169
deleting 2-169
displaying 2-488
clearing database agent statistics 2-42
database agent, configuring 2-171
displaying
binding entries 2-488
database agent status 2-490, 2-492
renewing 2-369
diagnostic monitor command 2-91
diagnostic schedule test command 2-93
diagnostic start test command 2-95
differentiated service code point
Digital Optical Monitoring
dir (boot loader) command A-8
directories, deleting 2-80
DoM
displaying supported transceivers 2-479, 2-616, 2-617
domains, CFM 2-317
dot1x default command 2-97
dot1x host-mode command 2-98
dot1x initialize command 2-100
dot1x max-req command 2-101, 2-103
dot1x port-control command 2-104
dot1x re-authenticate command 2-106
dot1x reauthentication command 2-107
dot1x supplicant force-multicast command 2-108
dot1x system-auth-control command 2-109
dot1x test eapol-capable command 2-110
dot1x test timeout command 2-111
dot1x timeout command 2-112
dot1x violation-mode command 2-114
drop eligibility indicator 2-399
drop eligibility indicator bit 2-289
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-244
DSCP
as match criteria for QoS groups 2-291, 2-297
for QoS traffic marking 2-401
setting in policy maps 2-401
dual IPv4 and IPv6 templates 2-324
dual-purpose uplink ports, selecting the type 2-302
duplex command 2-115
dynamic-access ports
configuring 2-679
restrictions 2-680
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-155
define 2-17
deny packets 2-81
display 2-416
permit packets 2-322
clear
log buffer 2-40
statistics 2-41
display
ARP ACLs 2-416
configuration and operating state 2-483
log buffer 2-483
statistics 2-483
trust state and rate limit 2-483
enable per VLAN 2-164
error detection for 2-117
error recovery timer 2-119
log buffer
clear 2-40
configure 2-159
display 2-483
rate-limit incoming ARP packets 2-157
statistics
clear 2-41
display 2-483
trusted interface state 2-161
type of packet logged 2-165
validation checks 2-162
Dynamic Host Configuration Protocol (DHCP)
E
EAP-request/identity frame
maximum number to send 2-103
response time before retransmitting 2-112
E-LMI
enabling 2-124
mapping 2-126
environment variables, displaying 2-417
errdisable detect cause command 2-117
errdisable recovery command 2-119
error conditions, displaying 2-449
error disable detection 2-117
error-disabled interfaces, displaying 2-467
EtherChannel
assigning Ethernet interface to channel group 2-30
creating port-channel logical interface 2-144
debug EtherChannel/PAgP, display B-4
debug platform-specific events, display B-44
displaying 2-453
enabling Layer 2 protocol tunneling for
LACP 2-245
PAgP 2-245
UDLD 2-245
interface information, displaying 2-467
LACP
clearing channel-group information 2-47
debug messages, display B-29
displaying 2-521
modes 2-30
port priority for hot-standby ports 2-248
restricting a protocol 2-34
system priority 2-250
load-distribution methods 2-349
PAgP
aggregate-port learner 2-318
clearing channel-group information 2-51
debug messages, display B-36
displaying 2-562
error detection for 2-117
error recovery timer 2-119
learn method 2-318
modes 2-30
physical-port learner 2-318
priority of interface for transmitted traffic 2-320
Ethernet controller, internal register display 2-424
ethernet dot1ad command 2-121
ethernet evc command 2-123
ethernet lmi ce-vlan map command 2-124, 2-126
ethernet lmi command 2-124
ethernet lmi global command 2-124
Ethernet Local Management Interface
ethernet loopback interface configuration command 2-128
ethernet loopback privileged EXEC command 2-131
ethernet oam remote-failure command 2-133
Ethernet service
debugging B-5
displaying 2-458
Ethernet service instance 2-389
Ethernet service interfaces 2-461
Ethernet statistics, collecting 2-385
Ethernet UNI configuration 2-135
ethernet uni id command 2-137
Ethernet virtual connections
EVC configuration mode 2-123
EVCs 2-123
and VLANs 2-135
service instances 2-389
UNI counts 2-727
EVC service
point-to-multipoint 2-727
point-to-point 2-727
exceed-action command 2-138
extended-range VLANs
and allowed VLAN list 2-704
configuring 2-733
extended system ID for STP 2-634
external alarms, configuring 2-7
F
failure logging data
clearing 2-48
copying 2-62
fan information, displaying 2-445
files, deleting 2-80
flash_init (boot loader) command A-10
Flex Links
configuring 2-681
configuring preferred VLAN 2-683
displaying 2-467
flowcontrol command 2-140
format (boot loader) command A-11
forwarding packets, with ACL matches 2-5
forwarding results, display C-8
frame forwarding information, displaying C-8
front-end controller counter and status information C-10
fsck (boot loader) command A-12
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-412
health-monitoring diagnostic testing 2-91
help (boot loader) command A-13
host connection, port configuration 2-687
host ports, private VLANs 2-691
hw-module module logging onboard command 2-142
I
IEEE 802.1ag Connectivity Fault Management
IEEE 802.1Q trunk ports and native VLANs 2-738
IEEE 802.1Q tunnel ports
configuring 2-688
displaying 2-441
limitations 2-689
IEEE 802.1x
and switchport modes 2-689
violation error recovery 2-119
See also port-based authentication
IGMP filters
applying 2-184
debug messages, display B-9
IGMP groups, setting maximum 2-186
IGMP maximum groups, debugging B-10
IGMP profiles
creating 2-188
displaying 2-495
IGMP snooping
adding ports as a static member of a group 2-203
displaying 2-496, 2-500, 2-501
enabling 2-190
enabling the configurable-leave timer 2-192
enabling the Immediate-Leave feature 2-200
flooding query count 2-198
interface topology change notification behavior 2-199
multicast table 2-498
querier 2-194
query solicitation 2-198
report suppression 2-196
switch topology change notification behavior 2-198
images
Immediate-Leave feature, MVR 2-311
immediate-leave processing 2-200
Immediate-Leave processing, IPv6 2-240
input policy maps
and ACL classification 2-286
and aggregate policers 2-339
commands not supported in 2-347
configuration guidelines 2-347
interface command 2-148
interface configuration mode 1-2, 1-4
interface port-channel command 2-144
interface range command 2-146
interface-range macros 2-78
interfaces
assigning Ethernet interface to channel group 2-30
configuring 2-115
configuring multiple 2-146
creating port-channel logical 2-144
debug messages, display B-7
disabling 2-611
displaying the MAC address table 2-544
restarting 2-611
interface speed, configuring 2-672
internal registers, displaying 2-424, 2-431
Internet Group Management Protocol
invalid GBIC
error detection for 2-117
error recovery timer 2-119
ip address command 2-153
IP addresses, setting 2-153
IP address matching 2-284
ip arp inspection filter vlan command 2-155
ip arp inspection limit command 2-157
ip arp inspection log-buffer command 2-159
ip arp inspection trust command 2-161
ip arp inspection validate command 2-162
ip arp inspection vlan command 2-164
ip arp inspection vlan logging command 2-165
IP DHCP snooping
ip dhcp snooping binding command 2-169
ip dhcp snooping command 2-168
ip dhcp snooping database command 2-171
ip dhcp snooping information option allow-untrusted command 2-175
ip dhcp snooping information option command 2-173
ip dhcp snooping information option format remote-id command 2-177
ip dhcp snooping limit rate command 2-178
ip dhcp snooping trust command 2-179
ip dhcp snooping verify command 2-180
ip dhcp snooping vlan command 2-181
ip dhcp snooping vlan information option format-type circuit-id string command 2-182
ip igmp filter command 2-184
ip igmp max-groups command 2-186, 2-213, 2-215
ip igmp profile command 2-188
ip igmp snooping command 2-190
ip igmp snooping last-member-query-interval command 2-192
ip igmp snooping querier command 2-194
ip igmp snooping report-suppression command 2-196
ip igmp snooping tcn command 2-198
ip igmp snooping tcn flood command 2-199
ip igmp snooping vlan immediate-leave command 2-200
ip igmp snooping vlan mrouter command 2-201
ip igmp snooping vlan static command 2-203
IP multicast addresses 2-308
IP precedence, as match criteria for QoS groups 2-293
ip sla responder twamp command 2-205
ip sla server twamp command 2-207
ip source binding command 2-209
IP source guard
disabling 2-217
displaying
binding entries 2-507
configuration 2-508
enabling 2-217
static IP source bindings 2-209
IP source guard, displaying dynamic binding entries 2-488
ip ssh command 2-211
IPv6 access list, deny conditions 2-83
ipv6 access-list command 2-219
ipv6 address dhcp command 2-221
ipv6 dhcp client request vendor command 2-222
ipv6 dhcp ping packets command 2-223
ipv6 dhcp pool command 2-224
ipv6 dhcp server command 2-227
ipv6 mld snooping command 2-229
ipv6 mld snooping last-listener-query count command 2-231
ipv6 mld snooping last-listener-query-interval command 2-233
ipv6 mld snooping listener-message-suppression command 2-235
ipv6 mld snooping robustness-variable command 2-236
ipv6 mld snooping tcn command 2-238
ipv6 mld snooping vlan command 2-240
IPv6 SDM template 2-386
ipv6 traffic-filter command 2-242
ip verify source command 2-217
J
jumbo frames
L
l2protocol-tunnel command 2-244
l2protocol-tunnel cos command 2-247
LACP
lacp port-priority command 2-248
lacp system-priority command 2-250
Layer 2 mode, enabling 2-677
Layer 2 protocol ports, displaying 2-519
Layer 2 protocol-tunnel
error detection for 2-117
error recovery timer 2-119
Layer 2 protocol tunnel counters 2-46
Layer 2 protocol tunneling error recovery 2-246
Layer 2 traceroute
IP addresses 2-720
MAC addresses 2-717
Layer 3 mode, enabling 2-677
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
link flap
error detection for 2-117
error recovery timer 2-119
link state group command 2-252
link state track command 2-254
load-distribution methods for EtherChannel 2-349
location (global configuration) command 2-255
location (interface configuration) command 2-257
logging event command 2-259
logging file command 2-260
logical interface 2-144
loopback error
detection for 2-117
recovery timer 2-119
loop guard, for spanning tree 2-636, 2-640
M
mac access-group command 2-262
MAC access-groups, displaying 2-534
MAC access list configuration mode 2-264
mac access-list extended command 2-264
MAC access lists 2-88
MAC addresses
disabling MAC address learning per VLAN 2-267
displaying
aging time 2-538
all 2-537
dynamic 2-542
MAC address-table move updates 2-547
notification settings 2-546, 2-548
number of addresses in a VLAN 2-540
per interface 2-544
per VLAN 2-552
static 2-550
static and dynamic entries 2-535
dynamic
aging time 2-266
deleting 2-49
displaying 2-542
enabling MAC address notification 2-271
enabling MAC address-table move update 2-269
matching 2-284
static
adding and removing 2-273
displaying 2-550
dropping on an interface 2-274
tables 2-537
MAC address notification, debugging B-30
mac address-table aging-time 2-262, 2-284
mac address-table aging-time command 2-266
mac address-table learning command 2-267
mac address-table move update command 2-269
mac address-table notification command 2-271
mac address-table static command 2-273
mac address-table static drop command 2-274
macro description command 2-278
macro global command 2-279
macro global description command 2-281
macro name command 2-282
macros
adding a description 2-278
adding a global description 2-281
applying 2-279
creating 2-282
displaying 2-564
specifying parameter values 2-279
tracing 2-279
maintenance end points 2-727
mapping tables, QoS 2-713
maps
class
creating 2-38
VLAN
creating 2-736
defining 2-284
displaying 2-605
match access-group command 2-286
match cos command 2-287
match dot1ad dei command 2-289
match ip dscp command 2-291
match ip precedence command 2-293
match qos-group command 2-295
match vlan command 2-297
maximum transmission unit
mdix auto command 2-300
ME 34000EG-2CS switch policers C-24
ME 3400E-24TS switch policers C-24
ME 3400EG-12CS switch policers C-24
media-type command 2-302
memory (boot loader) command A-14
mgmt_clr (boot loader) command A-15
mgmt_init (boot loader) command A-16, A-17
mkdir (boot loader) command A-18
MLD snooping
configuring queries 2-231, 2-233
configuring topology change notification 2-238
enabling 2-229
MLD snooping on a VLAN, enabling 2-240
mode, MVR 2-308
modes, commands 1-1
monitor session command 2-304
more (boot loader) command A-19
MSTP
displaying 2-586
interoperability 2-57
link type 2-638
MST region
aborting changes 2-644
applying changes 2-644
configuration name 2-644
configuration revision number 2-645
current or pending display 2-645
displaying 2-586
MST configuration mode 2-644
VLANs-to-instance mapping 2-644
path cost 2-646
protocol mode 2-642
restart protocol migration process 2-57
root port
loop guard 2-636
preventing from becoming designated 2-636
restricting which can be root 2-636
root guard 2-636
root switch
affects of extended system ID 2-634
interval between BDPU messages 2-651
interval between hello BPDU messages 2-649, 2-660
max-age 2-651
maximum hop count before discarding BPDU 2-653
port priority for selection of 2-655
primary or secondary 2-660
switch priority 2-658
state changes
blocking to forwarding state 2-667
enabling BPDU filtering 2-626, 2-664
enabling BPDU guard 2-628, 2-664
enabling Port Fast 2-664, 2-667
forward-delay time 2-648
length of listening and learning states 2-648
rapid transition to forwarding 2-638
shutting down Port Fast-enabled ports 2-664
state information display 2-585
MTU
configuring size 2-710
displaying global setting 2-593
multicast group address, MVR 2-311
multicast groups, MVR 2-309
Multicast Listener Discovery
multicast router learning method 2-201
multicast router ports, configuring 2-201
multicast router ports, IPv6 2-240
multicast storm control 2-674
multicast VLAN, MVR 2-309
multicast VLAN registration
multiple hosts on authorized port 2-98
Multiple Spanning Tree Protocol
multiplexing, UNI 2-135
MVR
and address aliasing 2-309
configuring 2-308
configuring interfaces 2-311
debug messages, display B-34
displaying 2-556
displaying interface information 2-558
members, displaying 2-560
mvr (global configuration) command 2-308
mvr (interface configuration) command 2-311
mvr vlan group command 2-312
N
native VLANs 2-704
native VLAN tagging 2-738
network node interface 2-351
no authentication logging verbose 2-314
no dot1x logging verbose 2-315
no mab logging verbose 2-316
nonegotiate, speed 2-672, 2-673
non-IP protocols
denying 2-88
forwarding 2-329
non-IP traffic access lists 2-264
non-IP traffic forwarding
denying 2-88
permitting 2-329
normal-range VLANs 2-733
no vlan command 2-733
O
OAM PDUs 2-133
OAM protocol 2-317
oam protocol cfm svlan command 2-317
on-board failure logging, displaying 2-530
on-board failure logging, enabling 2-142
online diagnostics
enabling
scheduling 2-93
global configuration mode
clearing test-based testing schedule 2-93
setting test-based testing 2-93
setting up test-based testing 2-93
removing scheduling 2-93
scheduled switchover
disabling 2-93
enabling 2-93
setting test interval 2-93
starting testing 2-95
online diagnostic tests, displaying results 2-437
online diagnostic tests, starting 2-95
operation, administration, and maintenance protocol
output policy maps
and QoS group classification 2-295
and traffic shaping 2-410
commands not supported in 2-347
configuration guidelines 2-347
priority in 2-356
queue limit in 2-363
P
PAgP
pagp learn-method command 2-318
pagp port-priority command 2-320
parent policy maps 2-395
password-recovery mechanism, enabling and disabling 2-391
permit (ARP access-list configuration) command 2-322
permit (IPv6) command 2-324
permit command 2-329
per-VLAN spanning-tree plus
physical-port learner 2-318
PID, displaying 2-482
PIM-DVMRP, as multicast router learning method 2-201
police
multiple conform actions for a class 2-60
multiple exceed actions for a class 2-138
multiple violate actions for a class 2-731
with priority 2-332
police aggregate command 2-342
police command 2-332
policer aggregate command 2-337
policer configuration
default for NNIs C-26
default for UNIs C-25
policer cpu uni command 2-344
policers
for CPU protection 2-344
individual 2-332
policy-map class, configuring multiple actions 2-60, 2-138, 2-731
policy-map class configuration mode 2-36
policy-map class police configuration mode 2-60, 2-335
policy-map command 2-346
policy-map configuration mode 2-346
policy maps
and CoS classification 2-287
and DSCP classification 2-291
and IP precedence classification 2-293
and policing 2-335
applying 2-393
applying to an interface 2-347, 2-393, 2-407
child 2-395
creating 2-346
displaying 2-570
hierarchical 2-395
parent 2-395
policers
for a single class 2-332
for multiple classes 2-337, 2-342, 2-344, 2-395
setting priority 2-355
setting QoS group identifier 2-405
traffic classification, defining 2-36
traffic marking
setting CoS values 2-397
setting DSCP values 2-399, 2-401
setting IP precedence values 2-403
Port Aggregation Protocol
port-based authentication
AAA method list 2-3
configuring violation modes 2-114
debug messages, display B-3
enabling 802.1x
globally 2-109
per interface 2-104
host modes 2-98
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-100, 2-111
manual control of authorization state 2-104
multiple hosts on authorized port 2-98
periodic re-authentication
enabling 2-107
time between attempts 2-112
quiet period between failed authentication exchanges 2-112
re-authenticating 802.1x-enabled ports 2-106
resetting configurable 802.1x parameters 2-97
switch-to-authentication server retransmission time 2-112
switch-to-client frame-retransmission number2-101to 2-103
switch-to-client retransmission time 2-112
test for IEEE 802.1x readiness 2-110
port-channel load-balance command 2-349
Port Fast, for spanning tree 2-667
port ranges, defining 2-48, 2-62, 2-78
ports, debugging B-79
ports, protected 2-702
port security
aging 2-698
debug messages, display B-81
enabling 2-694
violation error recovery 2-119
port shaping 2-411
port-type command 2-351
port types, MVR 2-311
power information, displaying 2-445
power-supply alarm indications, configuring 2-353
power-supply dual command 2-353
power-supply status, displaying 2-445
precedence
for QoS traffic marking 2-403
setting in policy maps 2-403
priority command 2-355
priority queuing, QoS 2-355
priority with police, QoS 2-355
private-vlan command 2-358
private-vlan mapping command 2-361
private VLANs
association 2-700
configuring 2-358
configuring ports 2-691
displaying 2-600
host ports 2-691
mapping
configuring 2-700
displaying 2-467
promiscuous ports 2-691
product identification information, displaying 2-482
promiscuous ports, private VLANs 2-691
PVST+
Q
QoS
aggregate policers
applying 2-342
creating 2-337
displaying 2-566
class maps
creating 2-38
defining the match criteria 2-287, 2-289
displaying 2-421
conform actions, configuring 2-61
displaying statistics for 2-570, C-33
exceed actions, configuring 2-139
policy maps
applying an aggregate policer 2-337, 2-342, 2-344, 2-395
applying to an interface 2-393, 2-407
creating 2-346
defining policers 2-332
displaying policy maps 2-570
setting CoS values 2-397
setting DSCP values 2-399, 2-401
setting IP precedence values 2-403
setting QoS group identifier 2-405
traffic classifications 2-36
table maps
configuring 2-713
displaying 2-594
violate actions, configuring 2-732
QoS groups
as match criteria 2-295
for QoS traffic classification 2-405
setting in policy maps 2-405
QoS match criteria
ACLs 2-286
CoS value 2-287
precedence value 2-293
QoS group number 2-295
quality of service
querytime, MVR 2-308
queue-limit command 2-363
R
rapid per-VLAN spanning-tree plus
rapid PVST+
re-authenticating 802.1x-enabled ports 2-106
re-authentication
periodic 2-107
time between attempts 2-112
receiver ports, MVR 2-311
receiving flow-control packets 2-140
recovery mechanism
causes 2-119
timer interval 2-120
remote-span command 2-367
Remote Switched Port Analyzer
rename (boot loader) command A-20
renew ip dhcp snooping database command 2-369
rep admin vlan command 2-370
rep block port command 2-371
rep lsl-age-timer command 2-375
rep preempt delay command 2-377
rep preempt segment command 2-379
rep segment command 2-380
rep stcn command 2-383
reset (boot loader) command A-21
resource templates, displaying 2-583
rmdir (boot loader) command A-22
rmon collection stats command 2-385
root guard, for spanning tree 2-636
routed ports
IP addresses on 2-154
number supported 2-154
RSPAN
configuring 2-304
displaying 2-554
filter RSPAN traffic 2-304
remote-span command 2-367
sessions
add interfaces to 2-304
displaying 2-554
start new 2-304
S
scheduled switchover
disabling 2-93
enabling 2-93
scheduling diagnostic tests 2-93
sdm prefer command 2-386
SDM templates
allowed resources 2-387
displaying 2-583
dual IPv4 and IPv6 2-386
secure ports, limitations 2-696
sending flow-control packets 2-140
service instance command 2-389
service instances, displaying 2-459
service password-recovery command 2-391
service policy (policy-map class configuration) command 2-395
service-policy interface configuration command 2-393
service-policy policy-map class configuration command 2-395
set (boot loader) command A-23
set cos command 2-397
set dot1ad dei command 2-399
set dscp command 2-401
set precedence command 2-403
set qos-group command 2-405
setup command 2-407
SFPs, displaying information about 2-482
shape average command 2-410
show access-lists command 2-412
show aggregate-policer command 2-593
show archive status command 2-415
show arp access-list command 2-416
show boot command 2-417
show class-map command 2-421
show controllers cpu-interface command 2-422
show controllers ethernet-controller command 2-424
show controllers tcam command 2-431
show controllers utilization command 2-433
show controller utilization command 2-433
show cpu traffic qos command 2-435
show diagnostic command 2-437
show dot1q-tunnel command 2-441
show dot1x command 2-442
show env command 2-445
show errdisable detect command 2-447
show errdisable flap-values command 2-449
show errdisable recovery command 2-451
show etherchannel command 2-453
show ethernet loopback command 2-456
show ethernet service evc command 2-458
show ethernet service instance command 2-459
show ethernet service interface command 2-461
show flowcontrol command 2-463
show idprom command 2-465
show interface rep command 2-477
show interfaces command 2-467
show interfaces counters command 2-475
show interfaces rep command 2-477
show interface transceivers command 2-479
show inventory command 2-482
show ip arp inspection command 2-483
show ipc command 2-510
show ip dhcp snooping binding command 2-488
show ip dhcp snooping command 2-487
show ip dhcp snooping database command 2-490, 2-492
show ip igmp profile command 2-495
show ip igmp snooping command 2-496
show ip igmp snooping command querier detail 2-501
show ip igmp snooping groups command 2-498
show ip igmp snooping mrouter command 2-500
show ip igmp snooping querier command 2-501
show ip igmp snooping querier detail command 2-501
show ip sla standards command 2-503
show ip sla twamp connection 2-435
show ip sla twamp connection command 2-504
show ip sla twamp session command 2-506
show ip source binding command 2-507
show ipv6 access-list command 2-514
show ipv6 dhcp conflict command 2-516
show ipv6 route updated command 2-517
show ip verify source command 2-508
show l2protocol-tunnel command 2-519
show lacp command 2-521
show link state group command 2-525
show location command 2-527
show logging onboard command 2-530
show mac access-group command 2-534
show mac address-table address command 2-537
show mac address-table aging time command 2-538
show mac address-table command 2-535
show mac address-table count command 2-540
show mac address-table dynamic command 2-542
show mac address-table interface command 2-544
show mac address-table learning command 2-546
show mac address-table move update command 2-547
show mac address-table notification command 2-50, 2-548, B-32
show mac address-table static command 2-550
show mac address-table vlan command 2-552
show monitor command 2-554
show mvr command 2-556
show mvr interface command 2-558
show mvr members command 2-560
show pagp command 2-562
show parser macro command 2-564
show platform acl command C-2
show platform backup interface command C-3
show platform cfm command C-4
show platform configuration command C-5
show platform dl command C-6
show platform etherchannel command C-7
show platform forward command C-8
show platform frontend-controller command C-10
show platform igmp snooping command C-11
show platform ipc trace command C-14
show platform ip multicast command C-12
show platform ip unicast command C-13
show platform ipv6 unicast command C-15
show platform l2pt dm command C-17
show platform layer4op command C-18, C-40
show platform mac-address-table command C-19
show platform messaging command C-20
show platform monitor command C-21
show platform mvr table command C-22
show platform pm command C-23
show platform policer cpu command C-24
show platform port-asic command C-28
show platform port-security command C-32
show platform qos command C-33
show platform resource-manager command C-36
show platform snmp counters command C-38
show platform spanning-tree synchronization command C-39
show platform stp-instance command C-41
show platform tcam command C-42
show platform vlan command C-44
show platform vlan mapping command C-45
show policer aggregate command 2-566
show policer cpu uni-eni command 2-567
show policy-map command 2-570
show policy-map interface output fields 2-573
show port security command 2-575
show port-type command 2-578
show rep topology command 2-580
show sdm prefer command 2-583
show spanning-tree command 2-585
show storm-control command 2-591
show system mtu command 2-593
show udld command 2-595
show version command 2-598
show vlan access-map command 2-605
show vlan command 2-600
show vlan command, fields 2-602
show vlan filter command 2-606
show vlan mapping command 2-607
show vmps command 2-609
shutdown command 2-611
shutdown threshold, Layer 2 protocol tunneling 2-244
shutdown vlan command 2-612
SNMP host, specifying 2-618
SNMP informs, enabling the sending of 2-614
snmp mib rep trap-rate command 2-613
snmp-server enable traps command 2-614
snmp-server host command 2-618
snmp trap mac-notification change command 2-622
SNMP traps
enabling MAC address notification trap 2-622
enabling the MAC address notification feature 2-271
enabling the sending of 2-614
software images
deleting 2-80
downloading 2-9
upgrading 2-9
uploading 2-15
software version, displaying 2-598
source ports, MVR 2-311
SPAN
configuring 2-304
debug messages, display B-33
displaying 2-554
filter SPAN traffic 2-304
sessions
add interfaces to 2-304
displaying 2-554
start new 2-304
spanning-tree bpdufilter command 2-624, 2-626
spanning-tree bpduguard command 2-628
spanning-tree cost command 2-630
spanning-tree etherchannel command 2-632
spanning-tree extend system-id command 2-634
spanning-tree guard command 2-636
spanning-tree link-type command 2-638
spanning-tree loopguard default command 2-640
spanning-tree mode command 2-642
spanning-tree mst configuration command 2-644
spanning-tree mst cost command 2-646
spanning-tree mst forward-time command 2-648
spanning-tree mst hello-time command 2-649
spanning-tree mst max-age command 2-651
spanning-tree mst max-hops command 2-653
spanning-tree mst port-priority command 2-655
spanning-tree mst pre-standard command 2-657
spanning-tree mst priority command 2-658
spanning-tree mst root command 2-660
spanning-tree portfast (global configuration) command 2-664
spanning-tree portfast (interface configuration) command 2-667
spanning-tree port-priority command 2-662
Spanning Tree Protocol
spanning-tree vlan command 2-669
speed command 2-672
SSH, configuring version 2-211
static-access ports, configuring 2-679
statistics, Ethernet group 2-385
sticky learning, enabling 2-694
storm-control command 2-674
STP
counters, clearing 2-56
debug messages, display
MSTP B-88
optimized BPDUs handling B-87
spanning-tree activity B-84
switch shim B-90
transmitted and received BPDUs B-86
enabling on ENIs 2-624
enabling protocol tunneling for 2-244
EtherChannel misconfiguration 2-632
extended system ID 2-634
path cost 2-630
protocol modes 2-642
root port
loop guard 2-636
preventing from becoming designated 2-636
restricting which can be root 2-636
root guard 2-636
root switch
affects of extended system ID 2-634, 2-670
hello-time 2-669
interval between BDPU messages 2-669
interval between hello BPDU messages 2-669
max-age 2-669
port priority for selection of 2-662
primary or secondary 2-669
switch priority 2-669
state changes
blocking to forwarding state 2-667
enabling BPDU filtering 2-626, 2-664
enabling BPDU guard 2-628, 2-664
enabling Port Fast 2-664, 2-667
enabling timer to recover from error state 2-119
forward-delay time 2-669
length of listening and learning states 2-669
shutting down Port Fast-enabled ports 2-664
state information display 2-585
SVIs, creating 2-148
Switched Port Analyzer
switching characteristics
modifying 2-677
returning to interfaces 2-677
switchport access command 2-679
switchport backup interface command 2-681
switchport block command 2-685
switchport command 2-677
switchport host command 2-687
switchport mode command 2-688
switchport mode private-vlan command 2-691
switchport port-security aging command 2-698
switchport port-security command 2-694
switchport private-vlan command 2-700
switchport protected command 2-702
switchports, displaying 2-467
switchport trunk command 2-704
switchport vlan mapping command 2-706
system env temperature threshold yellow command 2-709
system message logging, save message to flash 2-260
system mtu command 2-710
system resource templates 2-386
T
table-map command 2-713
table-map configuration mode 2-713
table maps
configuring 2-713
displaying 2-594
QoS 2-713
tar files, creating, listing, and extracting 2-12
TDR, running 2-715
temperature information, displaying 2-445
temperature status, displaying 2-445
templates, system resources 2-386
test cable-diagnostics tdr command 2-715
traceroute mac command 2-717
traceroute mac ip command 2-720
traffic shaping, QoS 2-410
trunking, VLAN mode 2-688
trunk mode 2-688
trunk ports 2-688
tunnel ports, Layer 2 protocol, displaying 2-519
type (boot loader) command A-26
U
UDLD
debug messages, display B-96
enable globally 2-722
enable per interface 2-724
error recovery timer 2-119
message timer 2-722
reset a shutdown interface 2-726
status 2-595
udld command 2-722
udld port command 2-724
udld reset command 2-726
UNI
bundling and multiplexing 2-135
Ethernet 2-135
unicast storm control 2-674
uni count command 2-727
UniDirectional Link Detection
UNI ID, Ethernet 2-137
uni-vlan command 2-729
unknown multicast traffic, preventing 2-685
unknown unicast traffic, preventing 2-685
unset (boot loader) command A-27
upgrading
software images 2-9
monitoring status of 2-415
user EXEC mode 1-2
user network interface 2-351
V
version (boot loader) command A-29
violate-action command 2-731
vlan access-map command 2-736
VLAN access map configuration mode 2-736
VLAN access maps
actions 2-5
displaying 2-605
vlan command 2-733
VLAN configuration mode
commands 2-733
description 1-4
entering 2-733
summary 1-2
vlan dot1q tag native command 2-738
vlan filter command 2-740
VLAN filters, displaying 2-606
VLAN ID range 2-733
VLAN ID translation
VLAN mapping
configuring 2-706
described 2-707
displaying 2-607
VLAN maps
applying 2-740
creating 2-736
defining 2-284
displaying 2-605
VLAN Query Protocol
VLANs
adding 2-733
configuring 2-733
debug messages, display
activation of B-94
VLAN IOS file system error tests B-93
VLAN manager activity B-92
displaying configurations 2-600
extended-range 2-733
MAC addresses
displaying 2-552
number of 2-540
normal-range 2-733
private 2-691
configuring 2-358
displaying 2-600
restarting 2-612
saving the configuration 2-733
shutting down 2-612
suspending 2-612
VMPS
configuring servers 2-745
displaying 2-609
error recovery timer 2-120
reconfirming dynamic VLAN assignments 2-742
vmps reconfirm (global configuration) command 2-743
vmps reconfirm (privileged EXEC) command 2-742
vmps retry command 2-744
vmps server command 2-745
VQP
and dynamic-access ports 2-680
clearing client statistics 2-59
displaying information 2-609
per-server retry count 2-744
reconfirmation interval 2-743
reconfirming dynamic VLAN assignments 2-742
VTP
enabling
tunneling for 2-244
W
Weighted Tail Drop
WTD, queue-limit command 2-363