Index
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
access control lists
access-group
show mode interface 2-383
access groups
IP 2-167
MAC, displaying 2-573
matching for QoS classification 2-311
access list, IPv6 2-244
access mode 2-730
access-node-identifier, setting for the switch 2-386
access ports 2-730
ACLs
as match criteria for QoS classes 2-311
deny 2-93
displaying 2-450
for non-IP protocols 2-289
IP 2-167
on Layer 2 interfaces 2-167
permit 2-356
action command 2-5
address aliasing 2-336
aggregate interval burst-cycles command 2-9
aggregate interval command 2-7
aggregate policers
applying 2-369
creating 2-364
displaying 2-605
QoS 2-366
aggregate-port learner 2-345
alarm-contact command 2-11
alarm-contact status, displaying 2-484
allowed VLANs 2-746
archive download-sw command 2-13
archive tar command 2-16
archive upload-sw command 2-19
arp (boot loader) command A-2
arp access-list command 2-21
attaching policy maps to interfaces 2-431
authorization state of controlled port 2-111
autonegotiation of duplex mode 2-123
B
backup interfaces
configuring 2-723
displaying 2-506
bandwidth, configuring for QoS 2-23
bandwidth command 2-23
boot (boot loader) command A-3
boot config-file command 2-27
boot enable-break command 2-28
boot helper command 2-29
boot helper-config file command 2-30
booting
Cisco IOS image 2-33
displaying environment variables 2-455
interrupting 2-28
manually 2-31
boot loader
accessing A-1
booting
Cisco IOS image A-3
helper image 2-29
directories
creating A-18
displaying a list of A-8
removing A-22
displaying
available commands A-13
memory heap utilization A-14
version A-29
environment variables
described A-23
displaying settings A-23
location of A-24
setting A-23
unsetting A-27
files
copying A-6
deleting A-7
displaying a list of A-8
displaying the contents of A-5, A-19, A-26
renaming A-20
file system
formatting A-11
initializing flash A-10
running a consistency check A-12
prompt A-1
resetting the system A-21
boot manual command 2-31
boot private-config-file command 2-32
boot system command 2-33
BPDU filtering, for spanning tree 2-668, 2-706
BPDU guard, for spanning tree 2-670, 2-706
broadcast storm control 2-716
bundling characteristics, UNI 2-139
burst bytes, in QoS policers 2-360, 2-365
C
cat (boot loader) command A-5
CBWFQ, configuring 2-23
CDP, enabling protocol tunneling for 2-269
CFM 2-344
CFM as OAM protocol 2-344
channel-group command 2-34
channel-protocol command 2-38
child policy maps 2-433
circuit-id
setting for an interface 2-388
circuit-id, setting for an interface VLAN range 2-389
class-based traffic shaping 2-448
class-based weighted fair queuing
class command 2-40
class-map command 2-42
class-map configuration mode 2-42
class maps
creating 2-42
defining the match criteria 2-312, 2-314
displaying 2-459
matching in 2-42
class of service
clear ip arp inspection log command 2-44
clear ip arp inspection statistics command 2-45
clear ipc command 2-48
clear ipv6 dhcp conflict command 2-49
clear l2protocol-tunnel counters command 2-50
clear lacp command 2-51
clear logging onboard command 2-52
clear mac address-table command 2-53, 2-54
clear policer cpu uni-eni counters command 2-56
clear port-security command 2-57
clear spanning-tree counters command 2-60
clear spanning-tree detected-protocols command 2-61
clear vmps statistics command 2-63
command modes defined 1-1
committed information rate in QoS policers 2-360, 2-364
configuration files
password recovery disable considerations A-1
specifying the name 2-27, 2-32
configuring multiple interfaces 2-163
conform-action command 2-64
control-plane policer 2-56
control-plane policer information, displaying 2-606
control-plane security 2-371
control plane statistics, clearing 2-56
copy (boot loader) command A-6
copy logging onboard module command 2-66
CoS
as match criteria for QoS groups 2-312
for QoS classification 2-435
setting value in policy maps 2-435
CoS value, assigning to Layer 2 protocol packets 2-272
CPU ASIC statistics, displaying 2-460
CPU protection policers, displaying C-24
cpu traffic qos cos command 2-68
cpu traffic qos dscp command 2-72
cpu traffic qos precedence command 2-77
cpu traffic qos qos-group command 2-80
D
DC power supply 2-380
debug backup command B-2
debug dot1x command B-3
debug dying-gasp command B-4
debug etherchannel command B-5
debug interface command B-8
debug ip dhcp snooping command B-9
debug ip igmp filter command B-10
debug ip igmp max-groups command B-11
debug ip igmp snooping command B-12
debug ip sla error twamp connection command B-13
debug ip sla error twamp control reflector command B-15
debug ip sla error twamp control server command B-17
debug ip sla error twamp session command B-19
debug ip sla trace twamp connection command B-21
debug ip sla trace twamp control reflector command B-23
debug ip sla trace twamp control server command B-25
debug ip sla trace twamp session command B-27
debug ip verify source packet command B-29
debug lacp command B-30
debug mac-notification command B-31
debug matm command B-32
debug matm move update command B-33
debug monitor command B-34
debug mvrdbg command B-35
debug nvram command B-36
debug pagp command B-37
debug platform acl command B-38
debug platform backup interface command B-39
debug platform cfm command B-40
debug platform cpu-queues command B-41
debug platform dot1ad command B-43
debug platform dot1x command B-44
debug platform etherchannel command B-45
debug platform forw-tcam command B-46
debug platform ip arp inspection command B-47
debug platform ipc command B-56
debug platform ip dhcp command B-48
debug platform ip igmp snooping command B-49
debug platform ip multicast command B-51
debug platform ip source-guard command B-53
debug platform led command B-57
debug platform matm command B-58
debug platform messaging application command B-59
debug platform phy command B-60
debug platform pm command B-62
debug platform policer cpu uni-eni command B-64
debug platform port-asic command B-65
debug platform port-security command B-66
debug platform qos-acl-tcam command B-67
debug platform qos-manager command B-68
debug platform remote-commands command B-69
debug platform rep command B-70
debug platform resource-manager command B-71
debug platform snmp command B-72
debug platform span command B-73
debug platform supervisor-asic command B-74
debug platform sw-bridge command B-75
debug platform tcam command B-76
debug platform udld command B-78
debug platform vlan command B-79
debug pm command B-80
debug port-security command B-82
debug qos-manager command B-84
debug rep command B-83
debug spanning-tree bpdu command B-87
debug spanning-tree bpdu-opt command B-88
debug spanning-tree command B-85
debug spanning-tree mstp command B-89
debug spanning-tree switch command B-91
debug sw-vlan command B-93
debug sw-vlan ifs command B-94
debug sw-vlan notification command B-95
debug udld command B-97
debug vqpc command B-99
default policer configuration
NNIs C-26
UNIs C-25
define interface-range command 2-82
delete (boot loader) command A-7
delete command 2-84
deny (ARP access-list configuration) command 2-85
deny (IPv6) command 2-87
deny command 2-93
detect mechanism, causes 2-126
DHCP snooping
accepting untrusted packets from edge switch 2-192
enabling
on a VLAN 2-198
trust on an interface 2-196
error recovery timer 2-128
rate limiting 2-195
DHCP snooping binding database
binding file, configuring 2-188
bindings
adding 2-186
deleting 2-186
displaying 2-527
clearing database agent statistics 2-46
database agent, configuring 2-188
displaying
binding entries 2-527
database agent status 2-529, 2-531
renewing 2-407
diagnostic monitor command 2-96
diagnostic schedule test command 2-98
diagnostic start test command 2-100
differentiated service code point
Digital Optical Monitoring
dir (boot loader) command A-8
directories, deleting 2-84
distribution command 2-102
DoM
displaying supported transceivers 2-518, 2-658, 2-659
domains, CFM 2-344
dot1x default command 2-104
dot1x host-mode command 2-105
dot1x initialize command 2-107
dot1x max-req command 2-108, 2-110
dot1x port-control command 2-111
dot1x re-authenticate command 2-113
dot1x reauthentication command 2-114
dot1x supplicant force-multicast command 2-115
dot1x system-auth-control command 2-116
dot1x test eapol-capable command 2-117
dot1x test timeout command 2-118
dot1x timeout command 2-119
dot1x violation-mode command 2-121
drop eligibility indicator 2-437
drop eligibility indicator bit 2-314
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-269
DSCP
as match criteria for QoS groups 2-316, 2-322
for QoS traffic marking 2-439
setting in policy maps 2-439
dual IPv4 and IPv6 templates 2-351
dual-purpose uplink ports, selecting the type 2-329
duplex command 2-122
dying-gasp command 2-124
dynamic-access ports
configuring 2-721
restrictions 2-722
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-172
define 2-21
deny packets 2-85
display 2-454
permit packets 2-349
clear
log buffer 2-44
statistics 2-45
display
ARP ACLs 2-454
configuration and operating state 2-522
log buffer 2-522
statistics 2-522
trust state and rate limit 2-522
enable per VLAN 2-181
error detection for 2-126
error recovery timer 2-128
log buffer
clear 2-44
configure 2-176
display 2-522
rate-limit incoming ARP packets 2-174
statistics
clear 2-45
display 2-522
trusted interface state 2-178
type of packet logged 2-182
validation checks 2-179
Dynamic Host Configuration Protocol (DHCP)
E
EAP-request/identity frame
maximum number to send 2-110
response time before retransmitting 2-119
E-LMI
enabling 2-137
mapping 2-139
environment variables, displaying 2-455
errdisable detect cause command 2-126
errdisable recovery command 2-128
error conditions, displaying 2-488
error disable detection 2-126
error-disabled interfaces, displaying 2-506
EtherChannel
assigning Ethernet interface to channel group 2-34
creating port-channel logical interface 2-161
debug EtherChannel/PAgP, display B-5
debug platform-specific events, display B-45
displaying 2-492
enabling Layer 2 protocol tunneling for
LACP 2-270
PAgP 2-270
UDLD 2-270
interface information, displaying 2-506
LACP
clearing channel-group information 2-51
debug messages, display B-30
displaying 2-560
modes 2-34
port priority for hot-standby ports 2-273
restricting a protocol 2-38
system priority 2-275
load-distribution methods 2-376
PAgP
aggregate-port learner 2-345
clearing channel-group information 2-55
debug messages, display B-37
displaying 2-601
error detection for 2-126
error recovery timer 2-128
learn method 2-345
modes 2-34
physical-port learner 2-345
priority of interface for transmitted traffic 2-347
Ethernet controller, internal register display 2-462
ethernet dot1ad command 2-134
ethernet evc command 2-136
ethernet lmi ce-vlan map command 2-137, 2-139
ethernet lmi command 2-137
ethernet lmi global command 2-137
Ethernet Local Management Interface
ethernet loopback interface configuration command 2-141
ethernet loopback privileged EXEC command 2-144
ethernet oam remote-failure command 2-146
Ethernet service
debugging B-6
displaying 2-497
Ethernet service instance 2-427
Ethernet service interfaces 2-500
Ethernet statistics, collecting 2-423
Ethernet UNI configuration 2-148
ethernet uni id command 2-150
Ethernet virtual connections
ethernet y1731 delay command 2-130
ethernet y1731 loss command 2-132
EVC configuration mode 2-136
EVCs 2-136
and VLANs 2-148
service instances 2-427
UNI counts 2-769
EVC service
point-to-multipoint 2-769
point-to-point 2-769
exceed-action command 2-151
extended-range VLANs
and allowed VLAN list 2-746
configuring 2-775
extended system ID for STP 2-676
external alarms, configuring 2-11
F
failure logging data
clearing 2-52
copying 2-66
fan information, displaying 2-484
files, deleting 2-84
flash_init (boot loader) command A-10
Flex Links
configuring 2-723
configuring preferred VLAN 2-725
displaying 2-506
flowcontrol command 2-153
format (boot loader) command A-11
forwarding packets, with ACL matches 2-5
forwarding results, display C-8
frame consecutive command 2-155
frame forwarding information, displaying C-8
frame interval command 2-156
frequency (IP SLA) command 2-157
front-end controller counter and status information C-10
fsck (boot loader) command A-12
G
generic-error-message, setting for the switch 2-386
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-450
health-monitoring diagnostic testing 2-96
help (boot loader) command A-13
history interval command 2-158
host connection, port configuration 2-729
host ports, private VLANs 2-733
hw-module module logging onboard command 2-159
I
identifier-string, setting for the switch 2-386
IEEE 802.1ag Connectivity Fault Management
IEEE 802.1Q trunk ports and native VLANs 2-780
IEEE 802.1Q tunnel ports
configuring 2-730
displaying 2-479
limitations 2-731
IEEE 802.1x
and switchport modes 2-731
violation error recovery 2-128
See also port-based authentication
IGMP filters
applying 2-201
debug messages, display B-10
IGMP groups, setting maximum 2-203
IGMP maximum groups, debugging B-11
IGMP profiles
creating 2-205
displaying 2-534
IGMP snooping
adding ports as a static member of a group 2-220
displaying 2-535, 2-539, 2-540
enabling 2-207
enabling the configurable-leave timer 2-209
enabling the Immediate-Leave feature 2-217
flooding query count 2-215
interface topology change notification behavior 2-216
multicast table 2-537
querier 2-211
query solicitation 2-215
report suppression 2-213
switch topology change notification behavior 2-215
images
Immediate-Leave feature, MVR 2-338
immediate-leave processing 2-217
Immediate-Leave processing, IPv6 2-265
input policy maps
and ACL classification 2-311
and aggregate policers 2-366
commands not supported in 2-374
configuration guidelines 2-374
interface command 2-165
interface configuration mode 1-2, 1-4
interface port-channel command 2-161
interface range command 2-163
interface-range macros 2-82
interfaces
assigning Ethernet interface to channel group 2-34
configuring 2-122
configuring multiple 2-163
creating port-channel logical 2-161
debug messages, display B-8
disabling 2-653
displaying the MAC address table 2-583
restarting 2-653
interface speed, configuring 2-714
internal registers, displaying 2-462, 2-469
Internet Group Management Protocol
invalid GBIC
error detection for 2-126
error recovery timer 2-128
ip address command 2-170
IP addresses, setting 2-170
IP address matching 2-309
ip arp inspection filter vlan command 2-172
ip arp inspection limit command 2-174
ip arp inspection log-buffer command 2-176
ip arp inspection trust command 2-178
ip arp inspection validate command 2-179
ip arp inspection vlan command 2-181
ip arp inspection vlan logging command 2-182
IP DHCP snooping
ip dhcp snooping binding command 2-186
ip dhcp snooping command 2-185
ip dhcp snooping database command 2-188
ip dhcp snooping information option allow-untrusted command 2-192
ip dhcp snooping information option command 2-190
ip dhcp snooping information option format remote-id command 2-194
ip dhcp snooping limit rate command 2-195
ip dhcp snooping trust command 2-196
ip dhcp snooping verify command 2-197
ip dhcp snooping vlan command 2-198
ip dhcp snooping vlan information option format-type circuit-id string command 2-199
ip igmp filter command 2-201
ip igmp max-groups command 2-203, 2-238, 2-240
ip igmp profile command 2-205
ip igmp snooping command 2-207
ip igmp snooping last-member-query-interval command 2-209
ip igmp snooping querier command 2-211
ip igmp snooping report-suppression command 2-213
ip igmp snooping tcn command 2-215
ip igmp snooping tcn flood command 2-216
ip igmp snooping vlan immediate-leave command 2-217
ip igmp snooping vlan mrouter command 2-218
ip igmp snooping vlan static command 2-220
IP multicast addresses 2-335
IP precedence, as match criteria for QoS groups 2-318
ip sla command 2-222
ip sla reaction-configuration command 2-224
ip sla responder twamp command 2-227
ip sla schedule command 2-229
ip sla server twamp command 2-232
ip source binding command 2-234
IP source guard
disabling 2-242
displaying
binding entries 2-546
configuration 2-547
enabling 2-242
static IP source bindings 2-234
IP source guard, displaying dynamic binding entries 2-527
ip ssh command 2-236
IPv6 access list, deny conditions 2-87
ipv6 access-list command 2-244
ipv6 address dhcp command 2-246
ipv6 dhcp client request vendor command 2-247
ipv6 dhcp ping packets command 2-248
ipv6 dhcp pool command 2-249
ipv6 dhcp server command 2-252
ipv6 mld snooping command 2-254
ipv6 mld snooping last-listener-query count command 2-256
ipv6 mld snooping last-listener-query-interval command 2-258
ipv6 mld snooping listener-message-suppression command 2-260
ipv6 mld snooping robustness-variable command 2-261
ipv6 mld snooping tcn command 2-263
ipv6 mld snooping vlan command 2-265
IPv6 SDM template 2-424
ipv6 traffic-filter command 2-267
ip verify source command 2-242
J
jumbo frames
L
l2protocol-tunnel command 2-269
l2protocol-tunnel cos command 2-272
LACP
lacp port-priority command 2-273
lacp system-priority command 2-275
Layer 2 mode, enabling 2-719
Layer 2 protocol ports, displaying 2-558
Layer 2 protocol-tunnel
error detection for 2-126
error recovery timer 2-128
Layer 2 protocol tunnel counters 2-50
Layer 2 protocol tunneling error recovery 2-271
Layer 2 traceroute
IP addresses 2-762
MAC addresses 2-759
Layer 3 mode, enabling 2-719
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
link flap
error detection for 2-126
error recovery timer 2-128
link state group command 2-277
link state track command 2-279
load-distribution methods for EtherChannel 2-376
location (global configuration) command 2-280
location (interface configuration) command 2-282
logging event command 2-284
logging file command 2-285
logical interface 2-161
loopback error
detection for 2-126
recovery timer 2-128
loop guard, for spanning tree 2-678, 2-682
M
mac access-group command 2-287
MAC access-groups, displaying 2-573
MAC access list configuration mode 2-289
mac access-list extended command 2-289
MAC access lists 2-93
MAC addresses
disabling MAC address learning per VLAN 2-292
displaying
aging time 2-577
all 2-576
dynamic 2-581
MAC address-table move updates 2-586
notification settings 2-585, 2-587
number of addresses in a VLAN 2-579
per interface 2-583
per VLAN 2-591
static 2-589
static and dynamic entries 2-574
dynamic
aging time 2-291
deleting 2-53
displaying 2-581
enabling MAC address notification 2-296
enabling MAC address-table move update 2-294
matching 2-309
static
adding and removing 2-298
displaying 2-589
dropping on an interface 2-299
tables 2-576
MAC address notification, debugging B-31
mac address-table aging-time 2-287, 2-309
mac address-table aging-time command 2-291
mac address-table learning command 2-292
mac address-table move update command 2-294
mac address-table notification command 2-296
mac address-table static command 2-298
mac address-table static drop command 2-299
macro description command 2-303
macro global command 2-304
macro global description command 2-306
macro name command 2-307
macros
adding a description 2-303
adding a global description 2-306
applying 2-304
creating 2-307
displaying 2-603
specifying parameter values 2-304
tracing 2-304
maintenance end points 2-769
mapping tables, QoS 2-755
maps
class
creating 2-42
VLAN
creating 2-778
defining 2-309
displaying 2-646
match access-group command 2-311
match cos command 2-312
match dot1ad dei command 2-314
match ip dscp command 2-316
match ip precedence command 2-318
match qos-group command 2-320
match vlan command 2-322
max-delay command 2-325
maximum transmission unit
mdix auto command 2-327
ME 34000EG-2CS switch policers C-24
ME 3400E-24TS switch policers C-24
ME 3400EG-12CS switch policers C-24
media-type command 2-329
memory (boot loader) command A-14
mgmt_clr (boot loader) command A-15
mgmt_init (boot loader) command A-16, A-17
mkdir (boot loader) command A-18
MLD snooping
configuring queries 2-256, 2-258
configuring topology change notification 2-263
enabling 2-254
MLD snooping on a VLAN, enabling 2-265
mode, MVR 2-335
modes
show access-group interface 2-383
modes, commands 1-1
monitor session command 2-331
more (boot loader) command A-19
MSTP
displaying 2-627
interoperability 2-61
link type 2-680
MST region
aborting changes 2-686
applying changes 2-686
configuration name 2-686
configuration revision number 2-687
current or pending display 2-687
displaying 2-627
MST configuration mode 2-686
VLANs-to-instance mapping 2-686
path cost 2-688
protocol mode 2-684
restart protocol migration process 2-61
root port
loop guard 2-678
preventing from becoming designated 2-678
restricting which can be root 2-678
root guard 2-678
root switch
affects of extended system ID 2-676
interval between BDPU messages 2-693
interval between hello BPDU messages 2-691, 2-702
max-age 2-693
maximum hop count before discarding BPDU 2-695
port priority for selection of 2-697
primary or secondary 2-702
switch priority 2-700
state changes
blocking to forwarding state 2-709
enabling BPDU filtering 2-668, 2-706
enabling BPDU guard 2-670, 2-706
enabling Port Fast 2-706, 2-709
forward-delay time 2-690
length of listening and learning states 2-690
rapid transition to forwarding 2-680
shutting down Port Fast-enabled ports 2-706
state information display 2-626
MTU
configuring size 2-752
displaying global setting 2-634
multicast group address, MVR 2-338
multicast groups, MVR 2-336
Multicast Listener Discovery
multicast router learning method 2-218
multicast router ports, configuring 2-218
multicast router ports, IPv6 2-265
multicast storm control 2-716
multicast VLAN, MVR 2-336
multicast VLAN registration
multiple hosts on authorized port 2-105
Multiple Spanning Tree Protocol
multiplexing, UNI 2-148
MVR
and address aliasing 2-336
configuring 2-335
configuring interfaces 2-338
debug messages, display B-35
displaying 2-595
displaying interface information 2-597
members, displaying 2-599
mvr (global configuration) command 2-335
mvr (interface configuration) command 2-338
mvr vlan group command 2-339
N
native VLANs 2-746
native VLAN tagging 2-780
network node interface 2-378
no authentication logging verbose 2-341
no dot1x logging verbose 2-342
no mab logging verbose 2-343
nonegotiate, speed 2-714, 2-715
non-IP protocols
denying 2-93
forwarding 2-356
non-IP traffic access lists 2-289
non-IP traffic forwarding
denying 2-93
permitting 2-356
normal-range VLANs 2-775
no vlan command 2-775
O
OAM PDUs 2-146
OAM protocol 2-344
oam protocol cfm svlan command 2-344
on-board failure logging, displaying 2-569
on-board failure logging, enabling 2-159
online diagnostics
enabling
scheduling 2-98
global configuration mode
clearing test-based testing schedule 2-98
setting test-based testing 2-98
setting up test-based testing 2-98
removing scheduling 2-98
scheduled switchover
disabling 2-98
enabling 2-98
setting test interval 2-98
starting testing 2-100
online diagnostic tests, displaying results 2-475
online diagnostic tests, starting 2-100
operation, administration, and maintenance protocol
output policy maps
and QoS group classification 2-320
and traffic shaping 2-448
commands not supported in 2-374
configuration guidelines 2-374
priority in 2-394
queue limit in 2-401
P
packet counters, display for PPPoE Intermediate Agent 2-619
PAgP
pagp learn-method command 2-345
pagp port-priority command 2-347
parent policy maps 2-433
password-recovery mechanism, enabling and disabling 2-429
permit (ARP access-list configuration) command 2-349
permit (IPv6) command 2-351
permit command 2-356
per-VLAN spanning-tree plus
physical-port learner 2-345
PID, displaying 2-521
PIM-DVMRP, as multicast router learning method 2-218
police
multiple conform actions for a class 2-64
multiple exceed actions for a class 2-151
multiple violate actions for a class 2-773
with priority 2-359
police aggregate command 2-369
police command 2-359
policer aggregate command 2-364
policer configuration
default for NNIs C-26
default for UNIs C-25
policer cpu uni command 2-371
policers
for CPU protection 2-371
individual 2-359
policy-map class, configuring multiple actions 2-64, 2-151, 2-773
policy-map class configuration mode 2-40
policy-map class police configuration mode 2-64, 2-362
policy-map command 2-373
policy-map configuration mode 2-373
policy maps
and CoS classification 2-312
and DSCP classification 2-316
and IP precedence classification 2-318
and policing 2-362
applying 2-431
applying to an interface 2-374, 2-431, 2-445
child 2-433
creating 2-373
displaying 2-609
hierarchical 2-433
parent 2-433
policers
for a single class 2-359
for multiple classes 2-364, 2-369, 2-371, 2-433
setting priority 2-393
setting QoS group identifier 2-443
traffic classification, defining 2-40
traffic marking
setting CoS values 2-435
setting DSCP values 2-437, 2-439
setting IP precedence values 2-441
Port Aggregation Protocol
port-based authentication
AAA method list 2-3
configuring violation modes 2-121
debug messages, display B-3
enabling 802.1x
globally 2-116
per interface 2-111
host modes 2-105
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-107, 2-118
manual control of authorization state 2-111
multiple hosts on authorized port 2-105
periodic re-authentication
enabling 2-114
time between attempts 2-119
quiet period between failed authentication exchanges 2-119
re-authenticating 802.1x-enabled ports 2-113
resetting configurable 802.1x parameters 2-104
switch-to-authentication server retransmission time 2-119
switch-to-client frame-retransmission number2-108to 2-110
switch-to-client retransmission time 2-119
test for IEEE 802.1x readiness 2-117
port-channel load-balance command 2-376
Port Fast, for spanning tree 2-709
port ranges, defining 2-52, 2-66, 2-82
ports, debugging B-80
ports, protected 2-744
port security
aging 2-740
debug messages, display B-82
enabling 2-736
violation error recovery 2-128
port shaping 2-449
port-type command 2-378
port types, MVR 2-338
power information, displaying 2-484
power-supply alarm indications, configuring 2-380
power-supply dual command 2-380
power-supply status, displaying 2-484
PPPoE Discovery
enable vendor-tag stripping on packetsPPPoE Server
enable vendor-tag stripping on Discovery packets 2-392
PPPoE Discovery packets, limit rate arriving on an interfsce 2-390
pppoe intermediate-agent
enable intermediate agent on a switch 2-382
enable on an interface VLAN range 2-385
enable PPPoE Intermediate Agent on an interface 2-383
enable vendor-tag stripping of Discovery packets 2-392
format-type (global) 2-386
limit rate of PPPoE Discovery packets 2-390
set circuit-id or remote-id for an interface 2-388
set circuit-id or remote-id for an interface VLAN range 2-389
set trust configuration on an interface 2-390, 2-391
PPPoE Intermediate Agent, display configuration and statistics (packet counters) 2-619
precedence
for QoS traffic marking 2-441
setting in policy maps 2-441
priority command 2-393
priority queuing, QoS 2-393
priority with police, QoS 2-393
private-vlan command 2-396
private-vlan mapping command 2-399
private VLANs
association 2-742
configuring 2-396
configuring ports 2-733
displaying 2-641
host ports 2-733
mapping
configuring 2-742
displaying 2-506
promiscuous ports 2-733
product identification information, displaying 2-521
promiscuous ports, private VLANs 2-733
PVST+
Q
QoS
aggregate policers
applying 2-369
creating 2-364
displaying 2-605
class maps
creating 2-42
defining the match criteria 2-312, 2-314
displaying 2-459
conform actions, configuring 2-65
displaying statistics for 2-609, C-33
exceed actions, configuring 2-152
policy maps
applying an aggregate policer 2-364, 2-369, 2-371, 2-433
applying to an interface 2-431, 2-445
creating 2-373
defining policers 2-359
displaying policy maps 2-609
setting CoS values 2-435
setting DSCP values 2-437, 2-439
setting IP precedence values 2-441
setting QoS group identifier 2-443
traffic classifications 2-40
table maps
configuring 2-755
displaying 2-635
violate actions, configuring 2-774
QoS groups
as match criteria 2-320
for QoS traffic classification 2-443
setting in policy maps 2-443
QoS match criteria
ACLs 2-311
CoS value 2-312
precedence value 2-318
QoS group number 2-320
quality of service
querytime, MVR 2-335
queue-limit command 2-401
R
rapid per-VLAN spanning-tree plus
rapid PVST+
re-authenticating 802.1x-enabled ports 2-113
re-authentication
periodic 2-114
time between attempts 2-119
receiver ports, MVR 2-338
receiving flow-control packets 2-153
recovery mechanism
causes 2-128
timer interval 2-129
remote-id, setting for an interface 2-388
remote-id, setting for an interface VLAN range 2-389
remote-span command 2-405
Remote Switched Port Analyzer
rename (boot loader) command A-20
renew ip dhcp snooping database command 2-407
rep admin vlan command 2-408
rep block port command 2-409
rep lsl-age-timer command 2-413
rep preempt delay command 2-415
rep preempt segment command 2-417
rep segment command 2-418
rep stcn command 2-421
reset (boot loader) command A-21
resource templates, displaying 2-624
rmdir (boot loader) command A-22
rmon collection stats command 2-423
root guard, for spanning tree 2-678
routed ports
IP addresses on 2-171
number supported 2-171
RSPAN
configuring 2-331
displaying 2-593
filter RSPAN traffic 2-331
remote-span command 2-405
sessions
add interfaces to 2-331
displaying 2-593
start new 2-331
S
scheduled switchover
disabling 2-98
enabling 2-98
scheduling diagnostic tests 2-98
sdm prefer command 2-424
SDM templates
allowed resources 2-425
displaying 2-624
dual IPv4 and IPv6 2-424
secure ports, limitations 2-738
sending flow-control packets 2-153
service instance command 2-427
service instances, displaying 2-498
service password-recovery command 2-429
service policy (policy-map class configuration) command 2-433
service-policy interface configuration command 2-431
service-policy policy-map class configuration command 2-433
set (boot loader) command A-23
set cos command 2-435
set dot1ad dei command 2-437
set dscp command 2-439
set precedence command 2-441
set qos-group command 2-443
setup command 2-445
SFPs, displaying information about 2-521
shape average command 2-448
show access-lists command 2-450
show aggregate-policer command 2-634
show archive status command 2-453
show arp access-list command 2-454
show boot command 2-455
show class-map command 2-459
show controllers cpu-interface command 2-460
show controllers ethernet-controller command 2-462
show controllers tcam command 2-469
show controllers utilization command 2-471
show controller utilization command 2-471
show cpu traffic qos command 2-473
show diagnostic command 2-475
show dot1q-tunnel command 2-479
show dot1x command 2-480
show dying-gasp packets command 2-483
show env command 2-484
show errdisable detect command 2-486
show errdisable flap-values command 2-488
show errdisable recovery command 2-490
show etherchannel command 2-492
show ethernet loopback command 2-495
show ethernet service evc command 2-497
show ethernet service instance command 2-498
show ethernet service interface command 2-500
show flowcontrol command 2-502
show idprom command 2-504
show interface rep command 2-516
show interfaces command 2-506
show interfaces counters command 2-514
show interfaces rep command 2-516
show interface transceivers command 2-518
show inventory command 2-521
show ip arp inspection command 2-522
show ipc command 2-549
show ip dhcp snooping binding command 2-527
show ip dhcp snooping command 2-526
show ip dhcp snooping database command 2-529, 2-531
show ip igmp profile command 2-534
show ip igmp snooping command 2-535
show ip igmp snooping command querier detail 2-540
show ip igmp snooping groups command 2-537
show ip igmp snooping mrouter command 2-539
show ip igmp snooping querier command 2-540
show ip igmp snooping querier detail command 2-540
show ip sla standards command 2-542
show ip sla twamp connection 2-473
show ip sla twamp connection command 2-543
show ip sla twamp session command 2-545
show ip source binding command 2-546
show ipv6 access-list command 2-553
show ipv6 dhcp conflict command 2-555
show ipv6 route updated command 2-556
show ip verify source command 2-547
show l2protocol-tunnel command 2-558
show lacp command 2-560
show link state group command 2-564
show location command 2-566
show logging onboard command 2-569
show mac access-group command 2-573
show mac address-table address command 2-576
show mac address-table aging time command 2-577
show mac address-table command 2-574
show mac address-table count command 2-579
show mac address-table dynamic command 2-581
show mac address-table interface command 2-583
show mac address-table learning command 2-585
show mac address-table move update command 2-586
show mac address-table notification command 2-54, 2-587, B-33
show mac address-table static command 2-589
show mac address-table vlan command 2-591
show monitor command 2-593
show mvr command 2-595
show mvr interface command 2-597
show mvr members command 2-599
show pagp command 2-601
show parser macro command 2-603
show platform acl command C-2
show platform backup interface command C-3
show platform cfm command C-4
show platform configuration command C-5
show platform dl command C-6
show platform etherchannel command C-7
show platform forward command C-8
show platform frontend-controller command C-10
show platform igmp snooping command C-11
show platform ipc trace command C-14
show platform ip multicast command C-12
show platform ip unicast command C-13
show platform ipv6 unicast command C-15
show platform l2pt dm command C-17
show platform layer4op command C-18, C-40
show platform mac-address-table command C-19
show platform messaging command C-20
show platform monitor command C-21
show platform mvr table command C-22
show platform pm command C-23
show platform policer cpu command C-24
show platform port-asic command C-28
show platform port-security command C-32
show platform qos command C-33
show platform resource-manager command C-36
show platform snmp counters command C-38
show platform spanning-tree synchronization command C-39
show platform stp-instance command C-41
show platform tcam command C-42
show platform vlan command C-44
show platform vlan mapping command C-45
show policer aggregate command 2-605
show policer cpu uni-eni command 2-606
show policy-map command 2-609
show policy-map interface output fields 2-612
show port security command 2-614
show port-type command 2-617
show rep topology command 2-621
show sdm prefer command 2-624
show spanning-tree command 2-626
show storm-control command 2-632
show system mtu command 2-634
show udld command 2-636
show version command 2-639
show vlan access-map command 2-646
show vlan command 2-641
show vlan command, fields 2-643
show vlan filter command 2-647
show vlan mapping command 2-648
show vmps command 2-650
shutdown command 2-653
shutdown threshold, Layer 2 protocol tunneling 2-269
shutdown vlan command 2-654
SNMP host, specifying 2-660
SNMP informs, enabling the sending of 2-656
snmp mib rep trap-rate command 2-655
snmp-server enable traps command 2-656
snmp-server host command 2-660
snmp trap mac-notification change command 2-664
SNMP traps
enabling MAC address notification trap 2-664
enabling the MAC address notification feature 2-296
enabling the sending of 2-656
software images
deleting 2-84
downloading 2-13
upgrading 2-13
uploading 2-19
software version, displaying 2-639
source ports, MVR 2-338
SPAN
configuring 2-331
debug messages, display B-34
displaying 2-593
filter SPAN traffic 2-331
sessions
add interfaces to 2-331
displaying 2-593
start new 2-331
spanning-tree bpdufilter command 2-666, 2-668
spanning-tree bpduguard command 2-670
spanning-tree cost command 2-672
spanning-tree etherchannel command 2-674
spanning-tree extend system-id command 2-676
spanning-tree guard command 2-678
spanning-tree link-type command 2-680
spanning-tree loopguard default command 2-682
spanning-tree mode command 2-684
spanning-tree mst configuration command 2-686
spanning-tree mst cost command 2-688
spanning-tree mst forward-time command 2-690
spanning-tree mst hello-time command 2-691
spanning-tree mst max-age command 2-693
spanning-tree mst max-hops command 2-695
spanning-tree mst port-priority command 2-697
spanning-tree mst pre-standard command 2-699
spanning-tree mst priority command 2-700
spanning-tree mst root command 2-702
spanning-tree portfast (global configuration) command 2-706
spanning-tree portfast (interface configuration) command 2-709
spanning-tree port-priority command 2-704
Spanning Tree Protocol
spanning-tree vlan command 2-711
speed command 2-714
SSH, configuring version 2-236
static-access ports, configuring 2-721
statistics, Ethernet group 2-423
sticky learning, enabling 2-736
storm-control command 2-716
STP
counters, clearing 2-60
debug messages, display
MSTP B-89
optimized BPDUs handling B-88
spanning-tree activity B-85
switch shim B-91
transmitted and received BPDUs B-87
enabling on ENIs 2-666
enabling protocol tunneling for 2-269
EtherChannel misconfiguration 2-674
extended system ID 2-676
path cost 2-672
protocol modes 2-684
root port
loop guard 2-678
preventing from becoming designated 2-678
restricting which can be root 2-678
root guard 2-678
root switch
affects of extended system ID 2-676, 2-712
hello-time 2-711
interval between BDPU messages 2-711
interval between hello BPDU messages 2-711
max-age 2-711
port priority for selection of 2-704
primary or secondary 2-711
switch priority 2-711
state changes
blocking to forwarding state 2-709
enabling BPDU filtering 2-668, 2-706
enabling BPDU guard 2-670, 2-706
enabling Port Fast 2-706, 2-709
enabling timer to recover from error state 2-128
forward-delay time 2-711
length of listening and learning states 2-711
shutting down Port Fast-enabled ports 2-706
state information display 2-626
SVIs, creating 2-165
Switched Port Analyzer
switching characteristics
modifying 2-719
returning to interfaces 2-719
switchport access command 2-721
switchport backup interface command 2-723
switchport block command 2-727
switchport command 2-719
switchport host command 2-729
switchport mode command 2-730
switchport mode private-vlan command 2-733
switchport port-security aging command 2-740
switchport port-security command 2-736
switchport private-vlan command 2-742
switchport protected command 2-744
switchports, displaying 2-506
switchport trunk command 2-746
switchport vlan mapping command 2-748
system env temperature threshold yellow command 2-751
system message logging, save message to flash 2-285
system mtu command 2-752
system resource templates 2-424
T
table-map command 2-755
table-map configuration mode 2-755
table maps
configuring 2-755
displaying 2-635
QoS 2-755
tar files, creating, listing, and extracting 2-16
TDR, running 2-757
temperature information, displaying 2-484
temperature status, displaying 2-484
templates, system resources 2-424
test cable-diagnostics tdr command 2-757
traceroute mac command 2-759
traceroute mac ip command 2-762
traffic shaping, QoS 2-448
trunking, VLAN mode 2-730
trunk mode 2-730
trunk ports 2-730
trust configuration, setting on an interface 2-390, 2-391
tunnel ports, Layer 2 protocol, displaying 2-558
type (boot loader) command A-26
U
UDLD
debug messages, display B-97
enable globally 2-764
enable per interface 2-766
error recovery timer 2-128
message timer 2-764
reset a shutdown interface 2-768
status 2-636
udld command 2-764
udld port command 2-766
udld reset command 2-768
UNI
bundling and multiplexing 2-148
Ethernet 2-148
unicast storm control 2-716
uni count command 2-769
UniDirectional Link Detection
UNI ID, Ethernet 2-150
uni-vlan command 2-771
unknown multicast traffic, preventing 2-727
unknown unicast traffic, preventing 2-727
unset (boot loader) command A-27
upgrading
software images 2-13
monitoring status of 2-453
user EXEC mode 1-2
user network interface 2-378
V
version (boot loader) command A-29
violate-action command 2-773
vlan access-map command 2-778
VLAN access map configuration mode 2-778
VLAN access maps
actions 2-5
displaying 2-646
vlan command 2-775
VLAN configuration mode
commands 2-775
description 1-4
entering 2-775
summary 1-2
vlan dot1q tag native command 2-780
vlan filter command 2-782
VLAN filters, displaying 2-647
VLAN ID range 2-775
VLAN ID translation
VLAN mapping
configuring 2-748
described 2-749
displaying 2-648
VLAN maps
applying 2-782
creating 2-778
defining 2-309
displaying 2-646
VLAN Query Protocol
VLANs
adding 2-775
configuring 2-775
debug messages, display
activation of B-95
VLAN IOS file system error tests B-94
VLAN manager activity B-93
displaying configurations 2-641
extended-range 2-775
MAC addresses
displaying 2-591
number of 2-579
normal-range 2-775
private 2-733
configuring 2-396
displaying 2-641
restarting 2-654
saving the configuration 2-775
shutting down 2-654
suspending 2-654
VMPS
configuring servers 2-787
displaying 2-650
error recovery timer 2-129
reconfirming dynamic VLAN assignments 2-784
vmps reconfirm (global configuration) command 2-785
vmps reconfirm (privileged EXEC) command 2-784
vmps retry command 2-786
vmps server command 2-787
VQP
and dynamic-access ports 2-722
clearing client statistics 2-63
displaying information 2-650
per-server retry count 2-786
reconfirmation interval 2-785
reconfirming dynamic VLAN assignments 2-784
VTP
enabling
tunneling for 2-269
W
Weighted Tail Drop
WTD, queue-limit command 2-401