A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W -

Index

A

aaa accounting dot1x command 2-1

aaa authentication dot1x command 2-3

AAA methods 2-3

access control entries

See ACEs

access control lists

See ACLs

access-group

show mode interface 2-383

access groups

IP 2-167

MAC, displaying 2-573

matching for QoS classification 2-311

access list, IPv6 2-244

access mode 2-730

access-node-identifier, setting for the switch 2-386

access ports 2-730

ACEs 2-95, 2-358

ACLs

as match criteria for QoS classes 2-311

deny 2-93

displaying 2-450

for non-IP protocols 2-289

IP 2-167

on Layer 2 interfaces 2-167

permit 2-356

action command 2-5

address aliasing 2-336

aggregate interval burst-cycles command 2-9

aggregate interval command 2-7

aggregate policers

applying 2-369

creating 2-364

displaying 2-605

QoS 2-366

aggregate-port learner 2-345

alarm-contact command 2-11

alarm-contact status, displaying 2-484

allowed VLANs 2-746

archive download-sw command 2-13

archive tar command 2-16

archive upload-sw command 2-19

arp (boot loader) command A-2

arp access-list command 2-21

attaching policy maps to interfaces 2-431

authorization state of controlled port 2-111

autonegotiation of duplex mode 2-123

B

backup interfaces

configuring 2-723

displaying 2-506

bandwidth, configuring for QoS 2-23

bandwidth command 2-23

boot (boot loader) command A-3

boot config-file command 2-27

boot enable-break command 2-28

boot helper command 2-29

boot helper-config file command 2-30

booting

Cisco IOS image 2-33

displaying environment variables 2-455

interrupting 2-28

manually 2-31

boot loader

accessing A-1

booting

Cisco IOS image A-3

helper image 2-29

directories

creating A-18

displaying a list of A-8

removing A-22

displaying

available commands A-13

memory heap utilization A-14

version A-29

environment variables

described A-23

displaying settings A-23

location of A-24

setting A-23

unsetting A-27

files

copying A-6

deleting A-7

displaying a list of A-8

displaying the contents of A-5, A-19, A-26

renaming A-20

file system

formatting A-11

initializing flash A-10

running a consistency check A-12

prompt A-1

resetting the system A-21

boot manual command 2-31

boot private-config-file command 2-32

boot system command 2-33

BPDU filtering, for spanning tree 2-668, 2-706

BPDU guard, for spanning tree 2-670, 2-706

broadcast storm control 2-716

bundling characteristics, UNI 2-139

burst bytes, in QoS policers 2-360, 2-365

C

cat (boot loader) command A-5

CBWFQ, configuring 2-23

CDP, enabling protocol tunneling for 2-269

CFM 2-344

CFM as OAM protocol 2-344

channel-group command 2-34

channel-protocol command 2-38

child policy maps 2-433

circuit-id

setting for an interface 2-388

circuit-id, setting for an interface VLAN range 2-389

class-based traffic shaping 2-448

class-based weighted fair queuing

See CBWFQ

class command 2-40

class-map command 2-42

class-map configuration mode 2-42

class maps

creating 2-42

defining the match criteria 2-312, 2-314

displaying 2-459

matching in 2-42

class of service

See CoS

clear ip arp inspection log command 2-44

clear ip arp inspection statistics command 2-45

clear ipc command 2-48

clear ipv6 dhcp conflict command 2-49

clear l2protocol-tunnel counters command 2-50

clear lacp command 2-51

clear logging onboard command 2-52

clear mac address-table command 2-53, 2-54

clear pagp command 2-55, 2-59

clear policer cpu uni-eni counters command 2-56

clear port-security command 2-57

clear spanning-tree counters command 2-60

clear spanning-tree detected-protocols command 2-61

clear vmps statistics command 2-63

command modes defined 1-1

committed information rate in QoS policers 2-360, 2-364

configuration files

password recovery disable considerations A-1

specifying the name 2-27, 2-32

configuring multiple interfaces 2-163

conform-action command 2-64

control-plane policer 2-56

control-plane policer information, displaying 2-606

control-plane security 2-371

control plane statistics, clearing 2-56

copy (boot loader) command A-6

copy logging onboard module command 2-66

CoS

as match criteria for QoS groups 2-312

for QoS classification 2-435

setting value in policy maps 2-435

CoS value, assigning to Layer 2 protocol packets 2-272

CPU ASIC statistics, displaying 2-460

CPU protection policers, displaying C-24

cpu traffic qos cos command 2-68

cpu traffic qos dscp command 2-72

cpu traffic qos precedence command 2-77

cpu traffic qos qos-group command 2-80

D

DC power supply 2-380

debug backup command B-2

debug dot1x command B-3

debug dying-gasp command B-4

debug etherchannel command B-5

debug interface command B-8

debug ip dhcp snooping command B-9

debug ip igmp filter command B-10

debug ip igmp max-groups command B-11

debug ip igmp snooping command B-12

debug ip sla error twamp connection command B-13

debug ip sla error twamp control reflector command B-15

debug ip sla error twamp control server command B-17

debug ip sla error twamp session command B-19

debug ip sla trace twamp connection command B-21

debug ip sla trace twamp control reflector command B-23

debug ip sla trace twamp control server command B-25

debug ip sla trace twamp session command B-27

debug ip verify source packet command B-29

debug lacp command B-30

debug mac-notification command B-31

debug matm command B-32

debug matm move update command B-33

debug monitor command B-34

debug mvrdbg command B-35

debug nvram command B-36

debug pagp command B-37

debug platform acl command B-38

debug platform backup interface command B-39

debug platform cfm command B-40

debug platform cpu-queues command B-41

debug platform dot1ad command B-43

debug platform dot1x command B-44

debug platform etherchannel command B-45

debug platform forw-tcam command B-46

debug platform ip arp inspection command B-47

debug platform ipc command B-56

debug platform ip dhcp command B-48

debug platform ip igmp snooping command B-49

debug platform ip multicast command B-51

debug platform ip source-guard command B-53

debug platform led command B-57

debug platform matm command B-58

debug platform messaging application command B-59

debug platform phy command B-60

debug platform pm command B-62

debug platform policer cpu uni-eni command B-64

debug platform port-asic command B-65

debug platform port-security command B-66

debug platform qos-acl-tcam command B-67

debug platform qos-manager command B-68

debug platform remote-commands command B-69

debug platform rep command B-70

debug platform resource-manager command B-71

debug platform snmp command B-72

debug platform span command B-73

debug platform supervisor-asic command B-74

debug platform sw-bridge command B-75

debug platform tcam command B-76

debug platform udld command B-78

debug platform vlan command B-79

debug pm command B-80

debug port-security command B-82

debug qos-manager command B-84

debug rep command B-83

debug spanning-tree bpdu command B-87

debug spanning-tree bpdu-opt command B-88

debug spanning-tree command B-85

debug spanning-tree mstp command B-89

debug spanning-tree switch command B-91

debug sw-vlan command B-93

debug sw-vlan ifs command B-94

debug sw-vlan notification command B-95

debug udld command B-97

debug vqpc command B-99

default policer configuration

NNIs C-26

UNIs C-25

define interface-range command 2-82

delete (boot loader) command A-7

delete command 2-84

deny (ARP access-list configuration) command 2-85

deny (IPv6) command 2-87

deny command 2-93

detect mechanism, causes 2-126

DHCP snooping

accepting untrusted packets from edge switch 2-192

enabling

on a VLAN 2-198

option 82 2-190, 2-192

trust on an interface 2-196

error recovery timer 2-128

rate limiting 2-195

DHCP snooping binding database

binding file, configuring 2-188

bindings

adding 2-186

deleting 2-186

displaying 2-527

clearing database agent statistics 2-46

database agent, configuring 2-188

displaying

binding entries 2-527

database agent status 2-529, 2-531

renewing 2-407

diagnostic monitor command 2-96

diagnostic schedule test command 2-98

diagnostic start test command 2-100

differentiated service code point

See DSCP

Digital Optical Monitoring

see DoM

dir (boot loader) command A-8

directories, deleting 2-84

distribution command 2-102

DoM

displaying supported transceivers 2-518, 2-658, 2-659

domains, CFM 2-344

dot1x default command 2-104

dot1x host-mode command 2-105

dot1x initialize command 2-107

dot1x max-req command 2-108, 2-110

dot1x port-control command 2-111

dot1x re-authenticate command 2-113

dot1x reauthentication command 2-114

dot1x supplicant force-multicast command 2-115

dot1x system-auth-control command 2-116

dot1x test eapol-capable command 2-117

dot1x test timeout command 2-118

dot1x timeout command 2-119

dot1x violation-mode command 2-121

drop eligibility indicator 2-437

drop eligibility indicator bit 2-314

dropping packets, with ACL matches 2-5

drop threshold, Layer 2 protocol tunneling 2-269

DSCP

as match criteria for QoS groups 2-316, 2-322

for QoS traffic marking 2-439

setting in policy maps 2-439

dual IPv4 and IPv6 templates 2-351

dual-purpose uplink ports, selecting the type 2-329

duplex command 2-122

dying-gasp command 2-124

dynamic-access ports

configuring 2-721

restrictions 2-722

dynamic ARP inspection

ARP ACLs

apply to a VLAN 2-172

define 2-21

deny packets 2-85

display 2-454

permit packets 2-349

clear

log buffer 2-44

statistics 2-45

display

ARP ACLs 2-454

configuration and operating state 2-522

log buffer 2-522

statistics 2-522

trust state and rate limit 2-522

enable per VLAN 2-181

error detection for 2-126

error recovery timer 2-128

log buffer

clear 2-44

configure 2-176

display 2-522

rate-limit incoming ARP packets 2-174

statistics

clear 2-45

display 2-522

trusted interface state 2-178

type of packet logged 2-182

validation checks 2-179

Dynamic Host Configuration Protocol (DHCP)

See DHCP snooping

E

EAP-request/identity frame

maximum number to send 2-110

response time before retransmitting 2-119

E-LMI

enabling 2-137

mapping 2-139

environment variables, displaying 2-455

errdisable detect cause command 2-126

errdisable recovery command 2-128

error conditions, displaying 2-488

error disable detection 2-126

error-disabled interfaces, displaying 2-506

EtherChannel

assigning Ethernet interface to channel group 2-34

creating port-channel logical interface 2-161

debug EtherChannel/PAgP, display B-5

debug platform-specific events, display B-45

displaying 2-492

enabling Layer 2 protocol tunneling for

LACP 2-270

PAgP 2-270

UDLD 2-270

interface information, displaying 2-506

LACP

clearing channel-group information 2-51

debug messages, display B-30

displaying 2-560

modes 2-34

port priority for hot-standby ports 2-273

restricting a protocol 2-38

system priority 2-275

load-distribution methods 2-376

PAgP

aggregate-port learner 2-345

clearing channel-group information 2-55

debug messages, display B-37

displaying 2-601

error detection for 2-126

error recovery timer 2-128

learn method 2-345

modes 2-34

physical-port learner 2-345

priority of interface for transmitted traffic 2-347

Ethernet controller, internal register display 2-462

ethernet dot1ad command 2-134

ethernet evc command 2-136

ethernet lmi ce-vlan map command 2-137, 2-139

ethernet lmi command 2-137

ethernet lmi global command 2-137

Ethernet Local Management Interface

See E-LMI

ethernet loopback interface configuration command 2-141

ethernet loopback privileged EXEC command 2-144

ethernet oam remote-failure command 2-146

Ethernet service

debugging B-6

displaying 2-497

Ethernet service instance 2-427

Ethernet service interfaces 2-500

Ethernet statistics, collecting 2-423

Ethernet UNI configuration 2-148

ethernet uni id command 2-150

Ethernet virtual connections

See EVCs

ethernet y1731 delay command 2-130

ethernet y1731 loss command 2-132

EVC configuration mode 2-136

EVCs 2-136

and VLANs 2-148

service instances 2-427

UNI counts 2-769

EVC service

point-to-multipoint 2-769

point-to-point 2-769

exceed-action command 2-151

extended-range VLANs

and allowed VLAN list 2-746

configuring 2-775

extended system ID for STP 2-676

external alarms, configuring 2-11

F

failure logging data

clearing 2-52

copying 2-66

fan information, displaying 2-484

files, deleting 2-84

flash_init (boot loader) command A-10

Flex Links

configuring 2-723

configuring preferred VLAN 2-725

displaying 2-506

flowcontrol command 2-153

format (boot loader) command A-11

forwarding packets, with ACL matches 2-5

forwarding results, display C-8

frame consecutive command 2-155

frame forwarding information, displaying C-8

frame interval command 2-156

frequency (IP SLA) command 2-157

front-end controller counter and status information C-10

fsck (boot loader) command A-12

G

generic-error-message, setting for the switch 2-386

global configuration mode 1-2, 1-3

H

hardware ACL statistics 2-450

health-monitoring diagnostic testing 2-96

help (boot loader) command A-13

history interval command 2-158

host connection, port configuration 2-729

host ports, private VLANs 2-733

hw-module module logging onboard command 2-159

I

identifier-string, setting for the switch 2-386

IEEE 802.1ag Connectivity Fault Management

See CFM

IEEE 802.1Q trunk ports and native VLANs 2-780

IEEE 802.1Q tunnel ports

configuring 2-730

displaying 2-479

limitations 2-731

IEEE 802.1x

and switchport modes 2-731

violation error recovery 2-128

See also port-based authentication

IGMP filters

applying 2-201

debug messages, display B-10

IGMP groups, setting maximum 2-203

IGMP maximum groups, debugging B-11

IGMP profiles

creating 2-205

displaying 2-534

IGMP snooping

adding ports as a static member of a group 2-220

displaying 2-535, 2-539, 2-540

enabling 2-207

enabling the configurable-leave timer 2-209

enabling the Immediate-Leave feature 2-217

flooding query count 2-215

interface topology change notification behavior 2-216

multicast table 2-537

querier 2-211

query solicitation 2-215

report suppression 2-213

switch topology change notification behavior 2-215

images

See software images

Immediate-Leave feature, MVR 2-338

immediate-leave processing 2-217

Immediate-Leave processing, IPv6 2-265

input policy maps

and ACL classification 2-311

and aggregate policers 2-366

commands not supported in 2-374

configuration guidelines 2-374

interface command 2-165

interface configuration mode 1-2, 1-4

interface port-channel command 2-161

interface range command 2-163

interface-range macros 2-82

interfaces

assigning Ethernet interface to channel group 2-34

configuring 2-122

configuring multiple 2-163

creating port-channel logical 2-161

debug messages, display B-8

disabling 2-653

displaying the MAC address table 2-583

restarting 2-653

interface speed, configuring 2-714

internal registers, displaying 2-462, 2-469

Internet Group Management Protocol

See IGMP

invalid GBIC

error detection for 2-126

error recovery timer 2-128

ip address command 2-170

IP addresses, setting 2-170

IP address matching 2-309

ip arp inspection filter vlan command 2-172

ip arp inspection limit command 2-174

ip arp inspection log-buffer command 2-176

ip arp inspection trust command 2-178

ip arp inspection validate command 2-179

ip arp inspection vlan command 2-181

ip arp inspection vlan logging command 2-182

IP DHCP snooping

See DHCP snooping

ip dhcp snooping binding command 2-186

ip dhcp snooping command 2-185

ip dhcp snooping database command 2-188

ip dhcp snooping information option allow-untrusted command 2-192

ip dhcp snooping information option command 2-190

ip dhcp snooping information option format remote-id command 2-194

ip dhcp snooping limit rate command 2-195

ip dhcp snooping trust command 2-196

ip dhcp snooping verify command 2-197

ip dhcp snooping vlan command 2-198

ip dhcp snooping vlan information option format-type circuit-id string command 2-199

ip igmp filter command 2-201

ip igmp max-groups command 2-203, 2-238, 2-240

ip igmp profile command 2-205

ip igmp snooping command 2-207

ip igmp snooping last-member-query-interval command 2-209

ip igmp snooping querier command 2-211

ip igmp snooping report-suppression command 2-213

ip igmp snooping tcn command 2-215

ip igmp snooping tcn flood command 2-216

ip igmp snooping vlan immediate-leave command 2-217

ip igmp snooping vlan mrouter command 2-218

ip igmp snooping vlan static command 2-220

IP multicast addresses 2-335

IP precedence, as match criteria for QoS groups 2-318

ip sla command 2-222

ip sla reaction-configuration command 2-224

ip sla responder twamp command 2-227

ip sla schedule command 2-229

ip sla server twamp command 2-232

ip source binding command 2-234

IP source guard

disabling 2-242

displaying

binding entries 2-546

configuration 2-547

enabling 2-242

static IP source bindings 2-234

IP source guard, displaying dynamic binding entries 2-527

ip ssh command 2-236

IPv6 access list, deny conditions 2-87

ipv6 access-list command 2-244

ipv6 address dhcp command 2-246

ipv6 dhcp client request vendor command 2-247

ipv6 dhcp ping packets command 2-248

ipv6 dhcp pool command 2-249

ipv6 dhcp server command 2-252

ipv6 mld snooping command 2-254

ipv6 mld snooping last-listener-query count command 2-256

ipv6 mld snooping last-listener-query-interval command 2-258

ipv6 mld snooping listener-message-suppression command 2-260

ipv6 mld snooping robustness-variable command 2-261

ipv6 mld snooping tcn command 2-263

ipv6 mld snooping vlan command 2-265

IPv6 SDM template 2-424

ipv6 traffic-filter command 2-267

ip verify source command 2-242

J

jumbo frames

See MTU

L

l2protocol-tunnel command 2-269

l2protocol-tunnel cos command 2-272

LACP

See EtherChannel

lacp port-priority command 2-273

lacp system-priority command 2-275

Layer 2 mode, enabling 2-719

Layer 2 protocol ports, displaying 2-558

Layer 2 protocol-tunnel

error detection for 2-126

error recovery timer 2-128

Layer 2 protocol tunnel counters 2-50

Layer 2 protocol tunneling error recovery 2-271

Layer 2 traceroute

IP addresses 2-762

MAC addresses 2-759

Layer 3 mode, enabling 2-719

line configuration mode 1-2, 1-4

Link Aggregation Control Protocol

See EtherChannel

link flap

error detection for 2-126

error recovery timer 2-128

link state group command 2-277

link state track command 2-279

load-distribution methods for EtherChannel 2-376

location (global configuration) command 2-280

location (interface configuration) command 2-282

logging event command 2-284

logging file command 2-285

logical interface 2-161

loopback error

detection for 2-126

recovery timer 2-128

loop guard, for spanning tree 2-678, 2-682

M

mac access-group command 2-287

MAC access-groups, displaying 2-573

MAC access list configuration mode 2-289

mac access-list extended command 2-289

MAC access lists 2-93

MAC addresses

disabling MAC address learning per VLAN 2-292

displaying

aging time 2-577

all 2-576

dynamic 2-581

MAC address-table move updates 2-586

notification settings 2-585, 2-587

number of addresses in a VLAN 2-579

per interface 2-583

per VLAN 2-591

static 2-589

static and dynamic entries 2-574

dynamic

aging time 2-291

deleting 2-53

displaying 2-581

enabling MAC address notification 2-296

enabling MAC address-table move update 2-294

matching 2-309

static

adding and removing 2-298

displaying 2-589

dropping on an interface 2-299

tables 2-576

MAC address notification, debugging B-31

mac address-table aging-time 2-287, 2-309

mac address-table aging-time command 2-291

mac address-table learning command 2-292

mac address-table move update command 2-294

mac address-table notification command 2-296

mac address-table static command 2-298

mac address-table static drop command 2-299

macro description command 2-303

macro global command 2-304

macro global description command 2-306

macro name command 2-307

macros

adding a description 2-303

adding a global description 2-306

applying 2-304

creating 2-307

displaying 2-603

interface range 2-82, 2-163

specifying parameter values 2-304

tracing 2-304

maintenance end points 2-769

mapping tables, QoS 2-755

maps

class

creating 2-42

VLAN

creating 2-778

defining 2-309

displaying 2-646

match access-group command 2-311

match cos command 2-312

match dot1ad dei command 2-314

match ip dscp command 2-316

match ip precedence command 2-318

match qos-group command 2-320

match vlan command 2-322

max-delay command 2-325

maximum transmission unit

See MTU

mdix auto command 2-327

ME 34000EG-2CS switch policers C-24

ME 3400E-24TS switch policers C-24

ME 3400EG-12CS switch policers C-24

media-type command 2-329

memory (boot loader) command A-14

mgmt_clr (boot loader) command A-15

mgmt_init (boot loader) command A-16, A-17

mkdir (boot loader) command A-18

MLD snooping

configuring 2-260, 2-261

configuring queries 2-256, 2-258

configuring topology change notification 2-263

enabling 2-254

MLD snooping on a VLAN, enabling 2-265

mode, MVR 2-335

modes

show access-group interface 2-383

modes, commands 1-1

monitor session command 2-331

more (boot loader) command A-19

MSTP

displaying 2-627

interoperability 2-61

link type 2-680

MST region

aborting changes 2-686

applying changes 2-686

configuration name 2-686

configuration revision number 2-687

current or pending display 2-687

displaying 2-627

MST configuration mode 2-686

VLANs-to-instance mapping 2-686

path cost 2-688

protocol mode 2-684

restart protocol migration process 2-61

root port

loop guard 2-678

preventing from becoming designated 2-678

restricting which can be root 2-678

root guard 2-678

root switch

affects of extended system ID 2-676

hello-time 2-691, 2-702

interval between BDPU messages 2-693

interval between hello BPDU messages 2-691, 2-702

max-age 2-693

maximum hop count before discarding BPDU 2-695

port priority for selection of 2-697

primary or secondary 2-702

switch priority 2-700

state changes

blocking to forwarding state 2-709

enabling BPDU filtering 2-668, 2-706

enabling BPDU guard 2-670, 2-706

enabling Port Fast 2-706, 2-709

forward-delay time 2-690

length of listening and learning states 2-690

rapid transition to forwarding 2-680

shutting down Port Fast-enabled ports 2-706

state information display 2-626

MTU

configuring size 2-752

displaying global setting 2-634

multicast group address, MVR 2-338

multicast groups, MVR 2-336

Multicast Listener Discovery

See MLD

multicast router learning method 2-218

multicast router ports, configuring 2-218

multicast router ports, IPv6 2-265

multicast storm control 2-716

multicast VLAN, MVR 2-336

multicast VLAN registration

See MVR

multiple hosts on authorized port 2-105

Multiple Spanning Tree Protocol

See MSTP

multiplexing, UNI 2-148

MVR

and address aliasing 2-336

configuring 2-335

configuring interfaces 2-338

debug messages, display B-35

displaying 2-595

displaying interface information 2-597

members, displaying 2-599

mvr (global configuration) command 2-335

mvr (interface configuration) command 2-338

mvr vlan group command 2-339

N

native VLANs 2-746

native VLAN tagging 2-780

network node interface 2-378

no authentication logging verbose 2-341

no dot1x logging verbose 2-342

no mab logging verbose 2-343

nonegotiate, speed 2-714, 2-715

non-IP protocols

denying 2-93

forwarding 2-356

non-IP traffic access lists 2-289

non-IP traffic forwarding

denying 2-93

permitting 2-356

normal-range VLANs 2-775

no vlan command 2-775

O

OAM PDUs 2-146

OAM protocol 2-344

oam protocol cfm svlan command 2-344

on-board failure logging, displaying 2-569

on-board failure logging, enabling 2-159

online diagnostics

enabling

scheduling 2-98

global configuration mode

clearing test-based testing schedule 2-98

setting test-based testing 2-98

setting up test-based testing 2-98

removing scheduling 2-98

scheduled switchover

disabling 2-98

enabling 2-98

setting test interval 2-98

starting testing 2-100

online diagnostic tests, displaying results 2-475

online diagnostic tests, starting 2-100

operation, administration, and maintenance protocol

See OAM

output policy maps

and QoS group classification 2-320

and traffic shaping 2-448

commands not supported in 2-374

configuration guidelines 2-374

priority in 2-394

queue limit in 2-401

P

packet counters, display for PPPoE Intermediate Agent 2-619

PAgP

See EtherChannel

pagp learn-method command 2-345

pagp port-priority command 2-347

parent policy maps 2-433

password-recovery mechanism, enabling and disabling 2-429

permit (ARP access-list configuration) command 2-349

permit (IPv6) command 2-351

permit command 2-356

per-VLAN spanning-tree plus

See STP

physical-port learner 2-345

PID, displaying 2-521

PIM-DVMRP, as multicast router learning method 2-218

police

multiple conform actions for a class 2-64

multiple exceed actions for a class 2-151

multiple violate actions for a class 2-773

with priority 2-359

police aggregate command 2-369

police command 2-359

policer aggregate command 2-364

policer configuration

default for NNIs C-26

default for UNIs C-25

policer cpu uni command 2-371

policers

aggregate 2-364, 2-369

for CPU protection 2-371

individual 2-359

policy-map class, configuring multiple actions 2-64, 2-151, 2-773

policy-map class configuration mode 2-40

policy-map class police configuration mode 2-64, 2-362

policy-map command 2-373

policy-map configuration mode 2-373

policy maps

and CoS classification 2-312

and DSCP classification 2-316

and IP precedence classification 2-318

and policing 2-362

applying 2-431

applying to an interface 2-374, 2-431, 2-445

child 2-433

creating 2-373

displaying 2-609

hierarchical 2-433

parent 2-433

policers

for a single class 2-359

for multiple classes 2-364, 2-369, 2-371, 2-433

setting priority 2-393

setting QoS group identifier 2-443

traffic classification, defining 2-40

traffic marking

setting CoS values 2-435

setting DSCP values 2-437, 2-439

setting IP precedence values 2-441

Port Aggregation Protocol

See EtherChannel

port-based authentication

AAA method list 2-3

configuring violation modes 2-121

debug messages, display B-3

enabling 802.1x

globally 2-116

per interface 2-111

host modes 2-105

IEEE 802.1x AAA accounting methods 2-1

initialize an interface 2-107, 2-118

manual control of authorization state 2-111

multiple hosts on authorized port 2-105

periodic re-authentication

enabling 2-114

time between attempts 2-119

quiet period between failed authentication exchanges 2-119

re-authenticating 802.1x-enabled ports 2-113

resetting configurable 802.1x parameters 2-104

switch-to-authentication server retransmission time 2-119

switch-to-client frame-retransmission number2-108to 2-110

switch-to-client retransmission time 2-119

test for IEEE 802.1x readiness 2-117

port-channel load-balance command 2-376

Port Fast, for spanning tree 2-709

port ranges, defining 2-52, 2-66, 2-82

ports, debugging B-80

ports, protected 2-744

port security

aging 2-740

debug messages, display B-82

enabling 2-736

violation error recovery 2-128

port shaping 2-449

port-type command 2-378

port types, MVR 2-338

power information, displaying 2-484

power-supply alarm indications, configuring 2-380

power-supply dual command 2-380

power-supply status, displaying 2-484

PPPoE Discovery

enable vendor-tag stripping on packetsPPPoE Server

enable vendor-tag stripping on Discovery packets 2-392

PPPoE Discovery packets, limit rate arriving on an interfsce 2-390

pppoe intermediate-agent

enable intermediate agent on a switch 2-382

enable on an interface VLAN range 2-385

enable PPPoE Intermediate Agent on an interface 2-383

enable vendor-tag stripping of Discovery packets 2-392

format-type (global) 2-386

limit rate of PPPoE Discovery packets 2-390

set circuit-id or remote-id for an interface 2-388

set circuit-id or remote-id for an interface VLAN range 2-389

set trust configuration on an interface 2-390, 2-391

PPPoE Intermediate Agent, display configuration and statistics (packet counters) 2-619

precedence

for QoS traffic marking 2-441

setting in policy maps 2-441

priority command 2-393

priority queuing, QoS 2-393

priority with police, QoS 2-393

private-vlan command 2-396

private-vlan mapping command 2-399

private VLANs

association 2-742

configuring 2-396

configuring ports 2-733

displaying 2-641

host ports 2-733

mapping

configuring 2-742

displaying 2-506

promiscuous ports 2-733

privileged EXEC mode 1-2, 1-3

product identification information, displaying 2-521

promiscuous ports, private VLANs 2-733

PVST+

See STP

Q

QoS

aggregate policers

applying 2-369

creating 2-364

displaying 2-605

class maps

creating 2-42

defining the match criteria 2-312, 2-314

displaying 2-459

conform actions, configuring 2-65

displaying statistics for 2-609, C-33

exceed actions, configuring 2-152

policy maps

applying an aggregate policer 2-364, 2-369, 2-371, 2-433

applying to an interface 2-431, 2-445

creating 2-373

defining policers 2-359

displaying policy maps 2-609

setting CoS values 2-435

setting DSCP values 2-437, 2-439

setting IP precedence values 2-441

setting QoS group identifier 2-443

traffic classifications 2-40

table maps

configuring 2-755

displaying 2-635

violate actions, configuring 2-774

QoS groups

as match criteria 2-320

for QoS traffic classification 2-443

setting in policy maps 2-443

QoS match criteria

ACLs 2-311

CoS value 2-312

DSCP value 2-316, 2-322

precedence value 2-318

QoS group number 2-320

quality of service

See QoS

querytime, MVR 2-335

queue-limit command 2-401

R

rapid per-VLAN spanning-tree plus

See STP

rapid PVST+

See STP

re-authenticating 802.1x-enabled ports 2-113

re-authentication

periodic 2-114

time between attempts 2-119

receiver ports, MVR 2-338

receiving flow-control packets 2-153

recovery mechanism

causes 2-128

display 2-457, 2-486, 2-490

timer interval 2-129

remote-id, setting for an interface 2-388

remote-id, setting for an interface VLAN range 2-389

remote-span command 2-405

Remote Switched Port Analyzer

See RSPAN

rename (boot loader) command A-20

renew ip dhcp snooping database command 2-407

rep admin vlan command 2-408

rep block port command 2-409

rep lsl-age-timer command 2-413

rep preempt delay command 2-415

rep preempt segment command 2-417

rep segment command 2-418

rep stcn command 2-421

reset (boot loader) command A-21

resource templates, displaying 2-624

rmdir (boot loader) command A-22

rmon collection stats command 2-423

root guard, for spanning tree 2-678

routed ports

IP addresses on 2-171

number supported 2-171

RSPAN

configuring 2-331

displaying 2-593

filter RSPAN traffic 2-331

remote-span command 2-405

sessions

add interfaces to 2-331

displaying 2-593

start new 2-331

S

scheduled switchover

disabling 2-98

enabling 2-98

scheduling diagnostic tests 2-98

sdm prefer command 2-424

SDM templates

allowed resources 2-425

displaying 2-624

dual IPv4 and IPv6 2-424

secure ports, limitations 2-738

sending flow-control packets 2-153

service instance command 2-427

service instances, displaying 2-498

service password-recovery command 2-429

service policy (policy-map class configuration) command 2-433

service-policy interface configuration command 2-431

service-policy policy-map class configuration command 2-433

set (boot loader) command A-23

set cos command 2-435

set dot1ad dei command 2-437

set dscp command 2-439

set precedence command 2-441

set qos-group command 2-443

setup command 2-445

SFPs, displaying information about 2-521

shape average command 2-448

show access-lists command 2-450

show aggregate-policer command 2-634

show archive status command 2-453

show arp access-list command 2-454

show boot command 2-455

show class-map command 2-459

show controllers cpu-interface command 2-460

show controllers ethernet-controller command 2-462

show controllers tcam command 2-469

show controllers utilization command 2-471

show controller utilization command 2-471

show cpu traffic qos command 2-473

show diagnostic command 2-475

show dot1q-tunnel command 2-479

show dot1x command 2-480

show dying-gasp packets command 2-483

show env command 2-484

show errdisable detect command 2-486

show errdisable flap-values command 2-488

show errdisable recovery command 2-490

show etherchannel command 2-492

show ethernet loopback command 2-495

show ethernet service evc command 2-497

show ethernet service instance command 2-498

show ethernet service interface command 2-500

show flowcontrol command 2-502

show idprom command 2-504

show interface rep command 2-516

show interfaces command 2-506

show interfaces counters command 2-514

show interfaces rep command 2-516

show interface transceivers command 2-518

show inventory command 2-521

show ip arp inspection command 2-522

show ipc command 2-549

show ip dhcp snooping binding command 2-527

show ip dhcp snooping command 2-526

show ip dhcp snooping database command 2-529, 2-531

show ip igmp profile command 2-534

show ip igmp snooping command 2-535

show ip igmp snooping command querier detail 2-540

show ip igmp snooping groups command 2-537

show ip igmp snooping mrouter command 2-539

show ip igmp snooping querier command 2-540

show ip igmp snooping querier detail command 2-540

show ip sla standards command 2-542

show ip sla twamp connection 2-473

show ip sla twamp connection command 2-543

show ip sla twamp session command 2-545

show ip source binding command 2-546

show ipv6 access-list command 2-553

show ipv6 dhcp conflict command 2-555

show ipv6 route updated command 2-556

show ip verify source command 2-547

show l2protocol-tunnel command 2-558

show lacp command 2-560

show link state group command 2-564

show location command 2-566

show logging onboard command 2-569

show mac access-group command 2-573

show mac address-table address command 2-576

show mac address-table aging time command 2-577

show mac address-table command 2-574

show mac address-table count command 2-579

show mac address-table dynamic command 2-581

show mac address-table interface command 2-583

show mac address-table learning command 2-585

show mac address-table move update command 2-586

show mac address-table notification command 2-54, 2-587, B-33

show mac address-table static command 2-589

show mac address-table vlan command 2-591

show monitor command 2-593

show mvr command 2-595

show mvr interface command 2-597

show mvr members command 2-599

show pagp command 2-601

show parser macro command 2-603

show platform acl command C-2

show platform backup interface command C-3

show platform cfm command C-4

show platform configuration command C-5

show platform dl command C-6

show platform etherchannel command C-7

show platform forward command C-8

show platform frontend-controller command C-10

show platform igmp snooping command C-11

show platform ipc trace command C-14

show platform ip multicast command C-12

show platform ip unicast command C-13

show platform ipv6 unicast command C-15

show platform l2pt dm command C-17

show platform layer4op command C-18, C-40

show platform mac-address-table command C-19

show platform messaging command C-20

show platform monitor command C-21

show platform mvr table command C-22

show platform pm command C-23

show platform policer cpu command C-24

show platform port-asic command C-28

show platform port-security command C-32

show platform qos command C-33

show platform resource-manager command C-36

show platform snmp counters command C-38

show platform spanning-tree synchronization command C-39

show platform stp-instance command C-41

show platform tcam command C-42

show platform vlan command C-44

show platform vlan mapping command C-45

show policer aggregate command 2-605

show policer cpu uni-eni command 2-606

show policy-map command 2-609

show policy-map interface output fields 2-612

show port security command 2-614

show port-type command 2-617

show rep topology command 2-621

show sdm prefer command 2-624

show spanning-tree command 2-626

show storm-control command 2-632

show system mtu command 2-634

show udld command 2-636

show version command 2-639

show vlan access-map command 2-646

show vlan command 2-641

show vlan command, fields 2-643

show vlan filter command 2-647

show vlan mapping command 2-648

show vmps command 2-650

shutdown command 2-653

shutdown threshold, Layer 2 protocol tunneling 2-269

shutdown vlan command 2-654

SNMP host, specifying 2-660

SNMP informs, enabling the sending of 2-656

snmp mib rep trap-rate command 2-655

snmp-server enable traps command 2-656

snmp-server host command 2-660

snmp trap mac-notification change command 2-664

SNMP traps

enabling MAC address notification trap 2-664

enabling the MAC address notification feature 2-296

enabling the sending of 2-656

software images

deleting 2-84

downloading 2-13

upgrading 2-13

uploading 2-19

software version, displaying 2-639

source ports, MVR 2-338

SPAN

configuring 2-331

debug messages, display B-34

displaying 2-593

filter SPAN traffic 2-331

sessions

add interfaces to 2-331

displaying 2-593

start new 2-331

spanning-tree bpdufilter command 2-666, 2-668

spanning-tree bpduguard command 2-670

spanning-tree cost command 2-672

spanning-tree etherchannel command 2-674

spanning-tree extend system-id command 2-676

spanning-tree guard command 2-678

spanning-tree link-type command 2-680

spanning-tree loopguard default command 2-682

spanning-tree mode command 2-684

spanning-tree mst configuration command 2-686

spanning-tree mst cost command 2-688

spanning-tree mst forward-time command 2-690

spanning-tree mst hello-time command 2-691

spanning-tree mst max-age command 2-693

spanning-tree mst max-hops command 2-695

spanning-tree mst port-priority command 2-697

spanning-tree mst pre-standard command 2-699

spanning-tree mst priority command 2-700

spanning-tree mst root command 2-702

spanning-tree portfast (global configuration) command 2-706

spanning-tree portfast (interface configuration) command 2-709

spanning-tree port-priority command 2-704

Spanning Tree Protocol

See STP

spanning-tree vlan command 2-711

speed command 2-714

SSH, configuring version 2-236

static-access ports, configuring 2-721

statistics, Ethernet group 2-423

sticky learning, enabling 2-736

storm-control command 2-716

STP

counters, clearing 2-60

debug messages, display

MSTP B-89

optimized BPDUs handling B-88

spanning-tree activity B-85

switch shim B-91

transmitted and received BPDUs B-87

enabling on ENIs 2-666

enabling protocol tunneling for 2-269

EtherChannel misconfiguration 2-674

extended system ID 2-676

path cost 2-672

protocol modes 2-684

root port

loop guard 2-678

preventing from becoming designated 2-678

restricting which can be root 2-678

root guard 2-678

root switch

affects of extended system ID 2-676, 2-712

hello-time 2-711

interval between BDPU messages 2-711

interval between hello BPDU messages 2-711

max-age 2-711

port priority for selection of 2-704

primary or secondary 2-711

switch priority 2-711

state changes

blocking to forwarding state 2-709

enabling BPDU filtering 2-668, 2-706

enabling BPDU guard 2-670, 2-706

enabling Port Fast 2-706, 2-709

enabling timer to recover from error state 2-128

forward-delay time 2-711

length of listening and learning states 2-711

shutting down Port Fast-enabled ports 2-706

state information display 2-626

VLAN options 2-700, 2-711

SVIs, creating 2-165

Switched Port Analyzer

See SPAN

switching characteristics

modifying 2-719

returning to interfaces 2-719

switchport access command 2-721

switchport backup interface command 2-723

switchport block command 2-727

switchport command 2-719

switchport host command 2-729

switchport mode command 2-730

switchport mode private-vlan command 2-733

switchport port-security aging command 2-740

switchport port-security command 2-736

switchport private-vlan command 2-742

switchport protected command 2-744

switchports, displaying 2-506

switchport trunk command 2-746

switchport vlan mapping command 2-748

system env temperature threshold yellow command 2-751

system message logging, save message to flash 2-285

system mtu command 2-752

system resource templates 2-424

T

table-map command 2-755

table-map configuration mode 2-755

table maps

configuring 2-755

displaying 2-635

QoS 2-755

tar files, creating, listing, and extracting 2-16

TDR, running 2-757

temperature information, displaying 2-484

temperature status, displaying 2-484

templates, system resources 2-424

test cable-diagnostics tdr command 2-757

traceroute mac command 2-759

traceroute mac ip command 2-762

traffic shaping, QoS 2-448

trunking, VLAN mode 2-730

trunk mode 2-730

trunk ports 2-730

trust configuration, setting on an interface 2-390, 2-391

tunnel ports, Layer 2 protocol, displaying 2-558

type (boot loader) command A-26

U

UDLD

aggressive mode 2-764, 2-766

debug messages, display B-97

enable globally 2-764

enable per interface 2-766

error recovery timer 2-128

message timer 2-764

normal mode 2-764, 2-766

reset a shutdown interface 2-768

status 2-636

udld command 2-764

udld port command 2-766

udld reset command 2-768

UNI

bundling and multiplexing 2-148

Ethernet 2-148

unicast storm control 2-716

uni count command 2-769

UniDirectional Link Detection

See UDLD

UNI ID, Ethernet 2-150

uni-vlan command 2-771

unknown multicast traffic, preventing 2-727

unknown unicast traffic, preventing 2-727

unset (boot loader) command A-27

upgrading

software images 2-13

monitoring status of 2-453

user EXEC mode 1-2

user network interface 2-378

V

version (boot loader) command A-29

violate-action command 2-773

vlan access-map command 2-778

VLAN access map configuration mode 2-778

VLAN access maps

actions 2-5

displaying 2-646

vlan command 2-775

VLAN configuration mode

commands 2-775

description 1-4

entering 2-775

summary 1-2

vlan dot1q tag native command 2-780

vlan filter command 2-782

VLAN filters, displaying 2-647

VLAN ID range 2-775

VLAN ID translation

See VLAN mapping

VLAN mapping

configuring 2-748

described 2-749

displaying 2-648

VLAN maps

applying 2-782

creating 2-778

defining 2-309

displaying 2-646

VLAN Query Protocol

See VQP

VLANs

adding 2-775

configuring 2-775

debug messages, display

activation of B-95

VLAN IOS file system error tests B-94

VLAN manager activity B-93

displaying configurations 2-641

extended-range 2-775

MAC addresses

displaying 2-591

number of 2-579

normal-range 2-775

private 2-733

configuring 2-396

displaying 2-641

See also private VLANs

restarting 2-654

saving the configuration 2-775

shutting down 2-654

suspending 2-654

VMPS

configuring servers 2-787

displaying 2-650

error recovery timer 2-129

reconfirming dynamic VLAN assignments 2-784

vmps reconfirm (global configuration) command 2-785

vmps reconfirm (privileged EXEC) command 2-784

vmps retry command 2-786

vmps server command 2-787

VQP

and dynamic-access ports 2-722

clearing client statistics 2-63

displaying information 2-650

per-server retry count 2-786

reconfirmation interval 2-785

reconfirming dynamic VLAN assignments 2-784

VTP

enabling

tunneling for 2-269

W

Weighted Tail Drop

See WTD

WTD, queue-limit command 2-401