The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
AAA methods 2-3
access control entries
access control lists
access groups
IP 2-151
MAC, displaying 2-536
matching for QoS classification 2-287
access list, IPv6 2-220
access mode 2-690
access ports 2-690
ACLs
as match criteria for QoS classes 2-287
deny 2-89
displaying 2-412
for non-IP protocols 2-265
IP 2-151
on Layer 2 interfaces 2-151
permit 2-330
action command 2-5
address aliasing 2-310
aggregate policers
applying 2-343
creating 2-338
displaying 2-568
QoS 2-340
aggregate-port learner 2-319
alarm-contact command 2-7
alarm-contact status, displaying 2-445
allowed VLANs 2-706
archive download-sw command 2-9
archive tar command 2-12
archive upload-sw command 2-15
arp (boot loader) command A-2
arp access-list command 2-17
attaching policy maps to interfaces 2-393
authorization state of controlled port 2-105
autonegotiation of duplex mode 2-117
B
backup interfaces
configuring 2-683
displaying 2-467
bandwidth, configuring for QoS 2-19
bandwidth command 2-19
boot (boot loader) command A-3
boot config-file command 2-23
boot enable-break command 2-24
boot helper command 2-25
boot helper-config file command 2-26
booting
Cisco IOS image 2-29
displaying environment variables 2-417
interrupting 2-24
manually 2-27
boot loader
accessing A-1
booting
Cisco IOS image A-3
helper image 2-25
directories
creating A-18
displaying a list of A-8
removing A-22
displaying
available commands A-13
memory heap utilization A-14
version A-29
environment variables
described A-23
displaying settings A-23
location of A-24
setting A-23
unsetting A-27
files
copying A-6
deleting A-7
displaying a list of A-8
displaying the contents of A-5, A-19, A-26
renaming A-20
file system
formatting A-11
initializing flash A-10
running a consistency check A-12
prompt A-1
resetting the system A-21
boot manual command 2-27
boot private-config-file command 2-28
boot system command 2-29
BPDU filtering, for spanning tree 2-628, 2-666
BPDU guard, for spanning tree 2-630, 2-666
broadcast storm control 2-676
bundling characteristics, UNI 2-127
burst bytes, in QoS policers 2-334, 2-339
C
cat (boot loader) command A-5
CBWFQ, configuring 2-19
CDP, enabling protocol tunneling for 2-245
CFM 2-318
CFM as OAM protocol 2-318
channel-group command 2-30
channel-protocol command 2-34
child policy maps 2-395
class-based traffic shaping 2-410
class-based weighted fair queuing
class command 2-36
class-map command 2-38
class-map configuration mode 2-38
class maps
creating 2-38
defining the match criteria 2-288, 2-290
displaying 2-421
matching in 2-38
class of service
clear ip arp inspection log command 2-40
clear ip arp inspection statistics command 2-41
clear ipc command 2-44
clear ipv6 dhcp conflict command 2-45
clear l2protocol-tunnel counters command 2-46
clear lacp command 2-47
clear logging onboard command 2-48
clear mac address-table command 2-49, 2-50
clear policer cpu uni-eni counters command 2-52
clear port-security command 2-53
clear spanning-tree counters command 2-56
clear spanning-tree detected-protocols command 2-57
clear vmps statistics command 2-59
command modes defined 1-1
committed information rate in QoS policers 2-334, 2-338
configuration files
password recovery disable considerations A-1
specifying the name 2-23, 2-28
configuring multiple interfaces 2-147
conform-action command 2-60
control-plane policer 2-52
control-plane policer information, displaying 2-569
control-plane security 2-345
control plane statistics, clearing 2-52
copy (boot loader) command A-6
copy logging onboard module command 2-62
CoS
as match criteria for QoS groups 2-288
for QoS classification 2-397
setting value in policy maps 2-397
CoS value, assigning to Layer 2 protocol packets 2-248
CPU ASIC statistics, displaying 2-422
CPU protection policers, displaying C-24
cpu traffic qos cos command 2-64
cpu traffic qos dscp command 2-68
cpu traffic qos precedence command 2-73
cpu traffic qos qos-group command 2-76
D
DC power supply 2-354
debug backup command B-2
debug dot1x command B-3
debug etherchannel command B-4
debug interface command B-7
debug ip dhcp snooping command B-8
debug ip igmp filter command B-9
debug ip igmp max-groups command B-10
debug ip igmp snooping command B-11
debug ip sla error twamp connection command B-12
debug ip sla error twamp control reflector command B-14
debug ip sla error twamp control server command B-16
debug ip sla error twamp session command B-18
debug ip sla trace twamp connection command B-20
debug ip sla trace twamp control reflector command B-22
debug ip sla trace twamp control server command B-24
debug ip sla trace twamp session command B-26
debug ip verify source packet command B-28
debug lacp command B-29
debug mac-notification command B-30
debug matm command B-31
debug matm move update command B-32
debug monitor command B-33
debug mvrdbg command B-34
debug nvram command B-35
debug pagp command B-36
debug platform acl command B-37
debug platform backup interface command B-38
debug platform cfm command B-39
debug platform cpu-queues command B-40
debug platform dot1ad command B-42
debug platform dot1x command B-43
debug platform etherchannel command B-44
debug platform forw-tcam command B-45
debug platform ip arp inspection command B-46
debug platform ipc command B-55
debug platform ip dhcp command B-47
debug platform ip igmp snooping command B-48
debug platform ip multicast command B-50
debug platform ip source-guard command B-52
debug platform led command B-56
debug platform matm command B-57
debug platform messaging application command B-58
debug platform phy command B-59
debug platform pm command B-61
debug platform policer cpu uni-eni command B-63
debug platform port-asic command B-64
debug platform port-security command B-65
debug platform qos-acl-tcam command B-66
debug platform qos-manager command B-67
debug platform remote-commands command B-68
debug platform rep command B-69
debug platform resource-manager command B-70
debug platform snmp command B-71
debug platform span command B-72
debug platform supervisor-asic command B-73
debug platform sw-bridge command B-74
debug platform tcam command B-75
debug platform udld command B-77
debug platform vlan command B-78
debug pm command B-79
debug port-security command B-81
debug qos-manager command B-83
debug rep command B-82
debug spanning-tree bpdu command B-86
debug spanning-tree bpdu-opt command B-87
debug spanning-tree command B-84
debug spanning-tree mstp command B-88
debug spanning-tree switch command B-90
debug sw-vlan command B-92
debug sw-vlan ifs command B-93
debug sw-vlan notification command B-94
debug udld command B-96
debug vqpc command B-98
default policer configuration
NNIs C-26
UNIs C-25
define interface-range command 2-78
delete (boot loader) command A-7
delete command 2-80
deny (ARP access-list configuration) command 2-81
deny (IPv6) command 2-83
deny command 2-89
detect mechanism, causes 2-118
DHCP snooping
accepting untrusted packets from edge switch 2-176
enabling
on a VLAN 2-182
trust on an interface 2-180
error recovery timer 2-120
rate limiting 2-179
DHCP snooping binding database
binding file, configuring 2-172
bindings
adding 2-170
deleting 2-170
displaying 2-488
clearing database agent statistics 2-42
database agent, configuring 2-172
displaying
binding entries 2-488
database agent status 2-490, 2-492
renewing 2-369
diagnostic monitor command 2-92
diagnostic schedule test command 2-94
diagnostic start test command 2-96
differentiated service code point
Digital Optical Monitoring
dir (boot loader) command A-8
directories, deleting 2-80
DoM
displaying supported transceivers 2-479, 2-618, 2-619
domains, CFM 2-318
dot1x default command 2-98
dot1x host-mode command 2-99
dot1x initialize command 2-101
dot1x max-req command 2-102, 2-104
dot1x port-control command 2-105
dot1x re-authenticate command 2-107
dot1x reauthentication command 2-108
dot1x supplicant force-multicast command 2-109
dot1x system-auth-control command 2-110
dot1x test eapol-capable command 2-111
dot1x test timeout command 2-112
dot1x timeout command 2-113
dot1x violation-mode command 2-115
drop eligibility indicator 2-399
drop eligibility indicator bit 2-290
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-245
DSCP
as match criteria for QoS groups 2-292, 2-298
for QoS traffic marking 2-401
setting in policy maps 2-401
dual IPv4 and IPv6 templates 2-325
dual-purpose uplink ports, selecting the type 2-303
duplex command 2-116
dynamic-access ports
configuring 2-681
restrictions 2-682
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-156
define 2-17
deny packets 2-81
display 2-416
permit packets 2-323
clear
log buffer 2-40
statistics 2-41
display
ARP ACLs 2-416
configuration and operating state 2-483
log buffer 2-483
statistics 2-483
trust state and rate limit 2-483
enable per VLAN 2-165
error detection for 2-118
error recovery timer 2-120
log buffer
clear 2-40
configure 2-160
display 2-483
rate-limit incoming ARP packets 2-158
statistics
clear 2-41
display 2-483
trusted interface state 2-162
type of packet logged 2-166
validation checks 2-163
Dynamic Host Configuration Protocol (DHCP)
E
EAP-request/identity frame
maximum number to send 2-104
response time before retransmitting 2-113
E-LMI
enabling 2-125
mapping 2-127
environment variables, displaying 2-417
errdisable detect cause command 2-118
errdisable recovery command 2-120
error conditions, displaying 2-449
error disable detection 2-118
error-disabled interfaces, displaying 2-467
EtherChannel
assigning Ethernet interface to channel group 2-30
creating port-channel logical interface 2-145
debug EtherChannel/PAgP, display B-4
debug platform-specific events, display B-44
displaying 2-453
enabling Layer 2 protocol tunneling for
LACP 2-246
PAgP 2-246
UDLD 2-246
interface information, displaying 2-467
LACP
clearing channel-group information 2-47
debug messages, display B-29
displaying 2-523
modes 2-30
port priority for hot-standby ports 2-249
restricting a protocol 2-34
system priority 2-251
load-distribution methods 2-350
PAgP
aggregate-port learner 2-319
clearing channel-group information 2-51
debug messages, display B-36
displaying 2-564
error detection for 2-118
error recovery timer 2-120
learn method 2-319
modes 2-30
physical-port learner 2-319
priority of interface for transmitted traffic 2-321
Ethernet controller, internal register display 2-424
ethernet dot1ad command 2-122
ethernet evc command 2-124
ethernet lmi ce-vlan map command 2-125, 2-127
ethernet lmi command 2-125
ethernet lmi global command 2-125
Ethernet Local Management Interface
ethernet loopback interface configuration command 2-129
ethernet loopback privileged EXEC command 2-132
ethernet oam remote-failure command 2-134
Ethernet service
debugging B-5
displaying 2-458
Ethernet service instance 2-389
Ethernet service interfaces 2-461
Ethernet statistics, collecting 2-385
Ethernet UNI configuration 2-136
ethernet uni id command 2-138
Ethernet virtual connections
EVC configuration mode 2-124
EVCs 2-124
and VLANs 2-136
service instances 2-389
UNI counts 2-729
EVC service
point-to-multipoint 2-729
point-to-point 2-729
exceed-action command 2-139
extended-range VLANs
and allowed VLAN list 2-706
configuring 2-735
extended system ID for STP 2-636
external alarms, configuring 2-7
F
failure logging data
clearing 2-48
copying 2-62
fan information, displaying 2-445
files, deleting 2-80
flash_init (boot loader) command A-10
Flex Links
configuring 2-683
configuring preferred VLAN 2-685
displaying 2-467
flowcontrol command 2-141
format (boot loader) command A-11
forwarding packets, with ACL matches 2-5
forwarding results, display C-8
frame forwarding information, displaying C-8
front-end controller counter and status information C-10
fsck (boot loader) command A-12
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-412
health-monitoring diagnostic testing 2-92
help (boot loader) command A-13
host connection, port configuration 2-689
host ports, private VLANs 2-693
hw-module module logging onboard command 2-143
I
IEEE 802.1ag Connectivity Fault Management
IEEE 802.1Q trunk ports and native VLANs 2-740
IEEE 802.1Q tunnel ports
configuring 2-690
displaying 2-441
limitations 2-691
IEEE 802.1x
and switchport modes 2-691
violation error recovery 2-120
See also port-based authentication
IGMP filters
applying 2-185
debug messages, display B-9
IGMP groups, setting maximum 2-187
IGMP maximum groups, debugging B-10
IGMP profiles
creating 2-189
displaying 2-497
IGMP snooping
adding ports as a static member of a group 2-204
displaying 2-498, 2-502, 2-503
enabling 2-191
enabling the configurable-leave timer 2-193
enabling the Immediate-Leave feature 2-201
flooding query count 2-199
interface topology change notification behavior 2-200
multicast table 2-500
querier 2-195
query solicitation 2-199
report suppression 2-197
switch topology change notification behavior 2-199
images
Immediate-Leave feature, MVR 2-312
immediate-leave processing 2-201
Immediate-Leave processing, IPv6 2-241
input policy maps
and ACL classification 2-287
and aggregate policers 2-340
commands not supported in 2-348
configuration guidelines 2-348
interface command 2-149
interface configuration mode 1-2, 1-4
interface port-channel command 2-145
interface range command 2-147
interface-range macros 2-78
interfaces
assigning Ethernet interface to channel group 2-30
configuring 2-116
configuring multiple 2-147
creating port-channel logical 2-145
debug messages, display B-7
disabling 2-613
displaying the MAC address table 2-546
restarting 2-613
interface speed, configuring 2-674
internal registers, displaying 2-424, 2-431
Internet Group Management Protocol
invalid GBIC
error detection for 2-118
error recovery timer 2-120
ip address command 2-154
IP addresses, setting 2-154
IP address matching 2-285
ip arp inspection filter vlan command 2-156
ip arp inspection limit command 2-158
ip arp inspection log-buffer command 2-160
ip arp inspection trust command 2-162
ip arp inspection validate command 2-163
ip arp inspection vlan command 2-165
ip arp inspection vlan logging command 2-166
IP DHCP snooping
ip dhcp snooping binding command 2-170
ip dhcp snooping command 2-169
ip dhcp snooping database command 2-172
ip dhcp snooping information option allow-untrusted command 2-176
ip dhcp snooping information option command 2-174
ip dhcp snooping information option format remote-id command 2-178
ip dhcp snooping limit rate command 2-179
ip dhcp snooping trust command 2-180
ip dhcp snooping verify command 2-181
ip dhcp snooping vlan command 2-182
ip dhcp snooping vlan information option format-type circuit-id string command 2-183
ip igmp filter command 2-185
ip igmp max-groups command 2-187, 2-214, 2-216
ip igmp profile command 2-189
ip igmp snooping command 2-191
ip igmp snooping last-member-query-interval command 2-193
ip igmp snooping querier command 2-195
ip igmp snooping report-suppression command 2-197
ip igmp snooping tcn command 2-199
ip igmp snooping tcn flood command 2-200
ip igmp snooping vlan immediate-leave command 2-201
ip igmp snooping vlan mrouter command 2-202
ip igmp snooping vlan static command 2-204
IP multicast addresses 2-309
IP precedence, as match criteria for QoS groups 2-294
ip sla responder twamp command 2-206
ip sla server twamp command 2-208
ip source binding command 2-210
IP source guard
disabling 2-218
displaying
binding entries 2-509
configuration 2-510
enabling 2-218
static IP source bindings 2-210
IP source guard, displaying dynamic binding entries 2-488
ip ssh command 2-212
IPv6 access list, deny conditions 2-83
ipv6 access-list command 2-220
ipv6 address dhcp command 2-222
ipv6 dhcp client request vendor command 2-223
ipv6 dhcp ping packets command 2-224
ipv6 dhcp pool command 2-225
ipv6 dhcp server command 2-228
ipv6 mld snooping command 2-230
ipv6 mld snooping last-listener-query count command 2-232
ipv6 mld snooping last-listener-query-interval command 2-234
ipv6 mld snooping listener-message-suppression command 2-236
ipv6 mld snooping robustness-variable command 2-237
ipv6 mld snooping tcn command 2-239
ipv6 mld snooping vlan command 2-241
IPv6 SDM template 2-386
ipv6 traffic-filter command 2-243
ip verify source command 2-218
J
jumbo frames
L
l2protocol-tunnel command 2-245
l2protocol-tunnel cos command 2-248
LACP
lacp port-priority command 2-249
lacp system-priority command 2-251
Layer 2 mode, enabling 2-679
Layer 2 protocol ports, displaying 2-521
Layer 2 protocol-tunnel
error detection for 2-118
error recovery timer 2-120
Layer 2 protocol tunnel counters 2-46
Layer 2 protocol tunneling error recovery 2-247
Layer 2 traceroute
IP addresses 2-722
MAC addresses 2-719
Layer 3 mode, enabling 2-679
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
link flap
error detection for 2-118
error recovery timer 2-120
link state group command 2-253
link state track command 2-255
load-distribution methods for EtherChannel 2-350
location (global configuration) command 2-256
location (interface configuration) command 2-258
logging event command 2-260
logging file command 2-261
logical interface 2-145
loopback error
detection for 2-118
recovery timer 2-120
loop guard, for spanning tree 2-638, 2-642
M
mac access-group command 2-263
MAC access-groups, displaying 2-536
MAC access list configuration mode 2-265
mac access-list extended command 2-265
MAC access lists 2-89
MAC addresses
disabling MAC address learning per VLAN 2-268
displaying
aging time 2-540
all 2-539
dynamic 2-544
MAC address-table move updates 2-549
notification settings 2-548, 2-550
number of addresses in a VLAN 2-542
per interface 2-546
per VLAN 2-554
static 2-552
static and dynamic entries 2-537
dynamic
aging time 2-267
deleting 2-49
displaying 2-544
enabling MAC address notification 2-272
enabling MAC address-table move update 2-270
matching 2-285
static
adding and removing 2-274
displaying 2-552
dropping on an interface 2-275
tables 2-539
MAC address notification, debugging B-30
mac address-table aging-time 2-263, 2-285
mac address-table aging-time command 2-267
mac address-table learning command 2-268
mac address-table move update command 2-270
mac address-table notification command 2-272
mac address-table static command 2-274
mac address-table static drop command 2-275
macro description command 2-279
macro global command 2-280
macro global description command 2-282
macro name command 2-283
macros
adding a description 2-279
adding a global description 2-282
applying 2-280
creating 2-283
displaying 2-566
specifying parameter values 2-280
tracing 2-280
maintenance end points 2-729
mapping tables, QoS 2-715
maps
class
creating 2-38
VLAN
creating 2-738
defining 2-285
displaying 2-607
match access-group command 2-287
match cos command 2-288
match dot1ad dei command 2-290
match ip dscp command 2-292
match ip precedence command 2-294
match qos-group command 2-296
match vlan command 2-298
maximum transmission unit
mdix auto command 2-301
ME 34000EG-2CS switch policers C-24
ME 3400E-24TS switch policers C-24
ME 3400EG-12CS switch policers C-24
media-type command 2-303
memory (boot loader) command A-14
mgmt_clr (boot loader) command A-15
mgmt_init (boot loader) command A-16, A-17
mkdir (boot loader) command A-18
MLD snooping
configuring queries 2-232, 2-234
configuring topology change notification 2-239
enabling 2-230
MLD snooping on a VLAN, enabling 2-241
mode, MVR 2-309
modes, commands 1-1
monitor session command 2-305
more (boot loader) command A-19
MSTP
displaying 2-588
interoperability 2-57
link type 2-640
MST region
aborting changes 2-646
applying changes 2-646
configuration name 2-646
configuration revision number 2-647
current or pending display 2-647
displaying 2-588
MST configuration mode 2-646
VLANs-to-instance mapping 2-646
path cost 2-648
protocol mode 2-644
restart protocol migration process 2-57
root port
loop guard 2-638
preventing from becoming designated 2-638
restricting which can be root 2-638
root guard 2-638
root switch
affects of extended system ID 2-636
interval between BDPU messages 2-653
interval between hello BPDU messages 2-651, 2-662
max-age 2-653
maximum hop count before discarding BPDU 2-655
port priority for selection of 2-657
primary or secondary 2-662
switch priority 2-660
state changes
blocking to forwarding state 2-669
enabling BPDU filtering 2-628, 2-666
enabling BPDU guard 2-630, 2-666
enabling Port Fast 2-666, 2-669
forward-delay time 2-650
length of listening and learning states 2-650
rapid transition to forwarding 2-640
shutting down Port Fast-enabled ports 2-666
state information display 2-587
MTU
configuring size 2-712
displaying global setting 2-595
multicast group address, MVR 2-312
multicast groups, MVR 2-310
Multicast Listener Discovery
multicast router learning method 2-202
multicast router ports, configuring 2-202
multicast router ports, IPv6 2-241
multicast storm control 2-676
multicast VLAN, MVR 2-310
multicast VLAN registration
multiple hosts on authorized port 2-99
Multiple Spanning Tree Protocol
multiplexing, UNI 2-136
MVR
and address aliasing 2-310
configuring 2-309
configuring interfaces 2-312
debug messages, display B-34
displaying 2-558
displaying interface information 2-560
members, displaying 2-562
mvr (global configuration) command 2-309
mvr (interface configuration) command 2-312
mvr vlan group command 2-313
N
native VLANs 2-706
native VLAN tagging 2-740
network node interface 2-352
no authentication logging verbose 2-315
no dot1x logging verbose 2-316
no mab logging verbose 2-317
nonegotiate, speed 2-674, 2-675
non-IP protocols
denying 2-89
forwarding 2-330
non-IP traffic access lists 2-265
non-IP traffic forwarding
denying 2-89
permitting 2-330
normal-range VLANs 2-735
no vlan command 2-735
O
OAM PDUs 2-134
OAM protocol 2-318
oam protocol cfm svlan command 2-318
on-board failure logging, displaying 2-532
on-board failure logging, enabling 2-143
online diagnostics
enabling
scheduling 2-94
global configuration mode
clearing test-based testing schedule 2-94
setting test-based testing 2-94
setting up test-based testing 2-94
removing scheduling 2-94
scheduled switchover
disabling 2-94
enabling 2-94
setting test interval 2-94
starting testing 2-96
online diagnostic tests, displaying results 2-437
online diagnostic tests, starting 2-96
operation, administration, and maintenance protocol
output policy maps
and QoS group classification 2-296
and traffic shaping 2-410
commands not supported in 2-348
configuration guidelines 2-348
priority in 2-357
queue limit in 2-364
P
PAgP
pagp learn-method command 2-319
pagp port-priority command 2-321
parent policy maps 2-395
password-recovery mechanism, enabling and disabling 2-391
permit (ARP access-list configuration) command 2-323
permit (IPv6) command 2-325
permit command 2-330
per-VLAN spanning-tree plus
physical-port learner 2-319
PID, displaying 2-482
PIM-DVMRP, as multicast router learning method 2-202
police
multiple conform actions for a class 2-60
multiple exceed actions for a class 2-139
multiple violate actions for a class 2-733
with priority 2-333
police aggregate command 2-343
police command 2-333
policer aggregate command 2-338
policer configuration
default for NNIs C-26
default for UNIs C-25
policer cpu uni command 2-345
policers
for CPU protection 2-345
individual 2-333
policy-map class, configuring multiple actions 2-60, 2-139, 2-733
policy-map class configuration mode 2-36
policy-map class police configuration mode 2-60, 2-336
policy-map command 2-347
policy-map configuration mode 2-347
policy maps
and CoS classification 2-288
and DSCP classification 2-292
and IP precedence classification 2-294
and policing 2-336
applying 2-393
applying to an interface 2-348, 2-393, 2-407
child 2-395
creating 2-347
displaying 2-572
hierarchical 2-395
parent 2-395
policers
for a single class 2-333
for multiple classes 2-338, 2-343, 2-345, 2-395
setting priority 2-356
setting QoS group identifier 2-405
traffic classification, defining 2-36
traffic marking
setting CoS values 2-397
setting DSCP values 2-399, 2-401
setting IP precedence values 2-403
Port Aggregation Protocol
port-based authentication
AAA method list 2-3
configuring violation modes 2-115
debug messages, display B-3
enabling 802.1x
globally 2-110
per interface 2-105
host modes 2-99
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-101, 2-112
manual control of authorization state 2-105
multiple hosts on authorized port 2-99
periodic re-authentication
enabling 2-108
time between attempts 2-113
quiet period between failed authentication exchanges 2-113
re-authenticating 802.1x-enabled ports 2-107
resetting configurable 802.1x parameters 2-98
switch-to-authentication server retransmission time 2-113
switch-to-client frame-retransmission number2-102to 2-104
switch-to-client retransmission time 2-113
test for IEEE 802.1x readiness 2-111
port-channel load-balance command 2-350
Port Fast, for spanning tree 2-669
port ranges, defining 2-48, 2-62, 2-78
ports, debugging B-79
ports, protected 2-704
port security
aging 2-700
debug messages, display B-81
enabling 2-696
violation error recovery 2-120
port shaping 2-411
port-type command 2-352
port types, MVR 2-312
power information, displaying 2-445
power-supply alarm indications, configuring 2-354
power-supply dual command 2-354
power-supply status, displaying 2-445
precedence
for QoS traffic marking 2-403
setting in policy maps 2-403
priority command 2-356
priority queuing, QoS 2-356
priority with police, QoS 2-356
private-vlan command 2-359
private-vlan mapping command 2-362
private VLANs
association 2-702
configuring 2-359
configuring ports 2-693
displaying 2-602
host ports 2-693
mapping
configuring 2-702
displaying 2-467
promiscuous ports 2-693
product identification information, displaying 2-482
promiscuous ports, private VLANs 2-693
PVST+
Q
QoS
aggregate policers
applying 2-343
creating 2-338
displaying 2-568
class maps
creating 2-38
defining the match criteria 2-288, 2-290
displaying 2-421
conform actions, configuring 2-61
displaying statistics for 2-572, C-33
exceed actions, configuring 2-140
policy maps
applying an aggregate policer 2-338, 2-343, 2-345, 2-395
applying to an interface 2-393, 2-407
creating 2-347
defining policers 2-333
displaying policy maps 2-572
setting CoS values 2-397
setting DSCP values 2-399, 2-401
setting IP precedence values 2-403
setting QoS group identifier 2-405
traffic classifications 2-36
table maps
configuring 2-715
displaying 2-596
violate actions, configuring 2-734
QoS groups
as match criteria 2-296
for QoS traffic classification 2-405
setting in policy maps 2-405
QoS match criteria
ACLs 2-287
CoS value 2-288
precedence value 2-294
QoS group number 2-296
quality of service
querytime, MVR 2-309
queue-limit command 2-364
R
rapid per-VLAN spanning-tree plus
rapid PVST+
re-authenticating 802.1x-enabled ports 2-107
re-authentication
periodic 2-108
time between attempts 2-113
receiver ports, MVR 2-312
receiving flow-control packets 2-141
recovery mechanism
causes 2-120
timer interval 2-121
remote-span command 2-367
Remote Switched Port Analyzer
rename (boot loader) command A-20
renew ip dhcp snooping database command 2-369
rep admin vlan command 2-370
rep block port command 2-371
rep lsl-age-timer command 2-375
rep preempt delay command 2-377
rep preempt segment command 2-379
rep segment command 2-380
rep stcn command 2-383
reset (boot loader) command A-21
resource templates, displaying 2-585
rmdir (boot loader) command A-22
rmon collection stats command 2-385
root guard, for spanning tree 2-638
routed ports
IP addresses on 2-155
number supported 2-155
RSPAN
configuring 2-305
displaying 2-556
filter RSPAN traffic 2-305
remote-span command 2-367
sessions
add interfaces to 2-305
displaying 2-556
start new 2-305
S
scheduled switchover
disabling 2-94
enabling 2-94
scheduling diagnostic tests 2-94
sdm prefer command 2-386
SDM templates
allowed resources 2-387
displaying 2-585
dual IPv4 and IPv6 2-386
secure ports, limitations 2-698
sending flow-control packets 2-141
service instance command 2-389
service instances, displaying 2-459
service password-recovery command 2-391
service policy (policy-map class configuration) command 2-395
service-policy interface configuration command 2-393
service-policy policy-map class configuration command 2-395
set (boot loader) command A-23
set cos command 2-397
set dot1ad dei command 2-399
set dscp command 2-401
set precedence command 2-403
set qos-group command 2-405
setup command 2-407
SFPs, displaying information about 2-482
shape average command 2-410
show access-lists command 2-412
show aggregate-policer command 2-595
show archive status command 2-415
show arp access-list command 2-416
show boot command 2-417
show class-map command 2-421
show controllers cpu-interface command 2-422
show controllers ethernet-controller command 2-424
show controllers tcam command 2-431
show controllers utilization command 2-433
show controller utilization command 2-433
show cpu traffic qos command 2-435
show diagnostic command 2-437
show dot1q-tunnel command 2-441
show dot1x command 2-442
show env command 2-445
show errdisable detect command 2-447
show errdisable flap-values command 2-449
show errdisable recovery command 2-451
show etherchannel command 2-453
show ethernet loopback command 2-456
show ethernet service evc command 2-458
show ethernet service instance command 2-459
show ethernet service interface command 2-461
show flowcontrol command 2-463
show idprom command 2-465
show interface rep command 2-477
show interfaces command 2-467
show interfaces counters command 2-475
show interfaces rep command 2-477
show interface transceivers command 2-479
show inventory command 2-482
show ip arp inspection command 2-483
show ipc command 2-512
show ip dhcp snooping binding command 2-488
show ip dhcp snooping command 2-487
show ip dhcp snooping database command 2-490, 2-492
show ip igmp profile command 2-497
show ip igmp snooping command 2-498
show ip igmp snooping command querier detail 2-503
show ip igmp snooping groups command 2-500
show ip igmp snooping mrouter command 2-502
show ip igmp snooping querier command 2-503
show ip igmp snooping querier detail command 2-503
show ip sla standards command 2-505
show ip sla twamp connection 2-435
show ip sla twamp connection command 2-506
show ip sla twamp session command 2-508
show ip source binding command 2-509
show ipv6 access-list command 2-516
show ipv6 dhcp conflict command 2-518
show ipv6 route updated command 2-519
show ip verify source command 2-510
show l2protocol-tunnel command 2-521
show lacp command 2-523
show link state group command 2-527
show location command 2-529
show logging onboard command 2-532
show mac access-group command 2-536
show mac address-table address command 2-539
show mac address-table aging time command 2-540
show mac address-table command 2-537
show mac address-table count command 2-542
show mac address-table dynamic command 2-544
show mac address-table interface command 2-546
show mac address-table learning command 2-548
show mac address-table move update command 2-549
show mac address-table notification command 2-50, 2-550, B-32
show mac address-table static command 2-552
show mac address-table vlan command 2-554
show monitor command 2-556
show mvr command 2-558
show mvr interface command 2-560
show mvr members command 2-562
show pagp command 2-564
show parser macro command 2-566
show platform acl command C-2
show platform backup interface command C-3
show platform cfm command C-4
show platform configuration command C-5
show platform dl command C-6
show platform etherchannel command C-7
show platform forward command C-8
show platform frontend-controller command C-10
show platform igmp snooping command C-11
show platform ipc trace command C-14
show platform ip multicast command C-12
show platform ip unicast command C-13
show platform ipv6 unicast command C-15
show platform l2pt dm command C-17
show platform layer4op command C-18, C-40
show platform mac-address-table command C-19
show platform messaging command C-20
show platform monitor command C-21
show platform mvr table command C-22
show platform pm command C-23
show platform policer cpu command C-24
show platform port-asic command C-28
show platform port-security command C-32
show platform qos command C-33
show platform resource-manager command C-36
show platform snmp counters command C-38
show platform spanning-tree synchronization command C-39
show platform stp-instance command C-41
show platform tcam command C-42
show platform vlan command C-44
show platform vlan mapping command C-45
show policer aggregate command 2-568
show policer cpu uni-eni command 2-569
show policy-map command 2-572
show policy-map interface output fields 2-575
show port security command 2-577
show port-type command 2-580
show rep topology command 2-582
show sdm prefer command 2-585
show spanning-tree command 2-587
show storm-control command 2-593
show system mtu command 2-595
show udld command 2-597
show version command 2-600
show vlan access-map command 2-607
show vlan command 2-602
show vlan command, fields 2-604
show vlan filter command 2-608
show vlan mapping command 2-609
show vmps command 2-611
shutdown command 2-613
shutdown threshold, Layer 2 protocol tunneling 2-245
shutdown vlan command 2-614
SNMP host, specifying 2-620
SNMP informs, enabling the sending of 2-616
snmp mib rep trap-rate command 2-615
snmp-server enable traps command 2-616
snmp-server host command 2-620
snmp trap mac-notification change command 2-624
SNMP traps
enabling MAC address notification trap 2-624
enabling the MAC address notification feature 2-272
enabling the sending of 2-616
software images
deleting 2-80
downloading 2-9
upgrading 2-9
uploading 2-15
software version, displaying 2-600
source ports, MVR 2-312
SPAN
configuring 2-305
debug messages, display B-33
displaying 2-556
filter SPAN traffic 2-305
sessions
add interfaces to 2-305
displaying 2-556
start new 2-305
spanning-tree bpdufilter command 2-626, 2-628
spanning-tree bpduguard command 2-630
spanning-tree cost command 2-632
spanning-tree etherchannel command 2-634
spanning-tree extend system-id command 2-636
spanning-tree guard command 2-638
spanning-tree link-type command 2-640
spanning-tree loopguard default command 2-642
spanning-tree mode command 2-644
spanning-tree mst configuration command 2-646
spanning-tree mst cost command 2-648
spanning-tree mst forward-time command 2-650
spanning-tree mst hello-time command 2-651
spanning-tree mst max-age command 2-653
spanning-tree mst max-hops command 2-655
spanning-tree mst port-priority command 2-657
spanning-tree mst pre-standard command 2-659
spanning-tree mst priority command 2-660
spanning-tree mst root command 2-662
spanning-tree portfast (global configuration) command 2-666
spanning-tree portfast (interface configuration) command 2-669
spanning-tree port-priority command 2-664
Spanning Tree Protocol
spanning-tree vlan command 2-671
speed command 2-674
SSH, configuring version 2-212
static-access ports, configuring 2-681
statistics, Ethernet group 2-385
sticky learning, enabling 2-696
storm-control command 2-676
STP
counters, clearing 2-56
debug messages, display
MSTP B-88
optimized BPDUs handling B-87
spanning-tree activity B-84
switch shim B-90
transmitted and received BPDUs B-86
enabling on ENIs 2-626
enabling protocol tunneling for 2-245
EtherChannel misconfiguration 2-634
extended system ID 2-636
path cost 2-632
protocol modes 2-644
root port
loop guard 2-638
preventing from becoming designated 2-638
restricting which can be root 2-638
root guard 2-638
root switch
affects of extended system ID 2-636, 2-672
hello-time 2-671
interval between BDPU messages 2-671
interval between hello BPDU messages 2-671
max-age 2-671
port priority for selection of 2-664
primary or secondary 2-671
switch priority 2-671
state changes
blocking to forwarding state 2-669
enabling BPDU filtering 2-628, 2-666
enabling BPDU guard 2-630, 2-666
enabling Port Fast 2-666, 2-669
enabling timer to recover from error state 2-120
forward-delay time 2-671
length of listening and learning states 2-671
shutting down Port Fast-enabled ports 2-666
state information display 2-587
SVIs, creating 2-149
Switched Port Analyzer
switching characteristics
modifying 2-679
returning to interfaces 2-679
switchport access command 2-681
switchport backup interface command 2-683
switchport block command 2-687
switchport command 2-679
switchport host command 2-689
switchport mode command 2-690
switchport mode private-vlan command 2-693
switchport port-security aging command 2-700
switchport port-security command 2-696
switchport private-vlan command 2-702
switchport protected command 2-704
switchports, displaying 2-467
switchport trunk command 2-706
switchport vlan mapping command 2-708
system env temperature threshold yellow command 2-711
system message logging, save message to flash 2-261
system mtu command 2-712
system resource templates 2-386
T
table-map command 2-715
table-map configuration mode 2-715
table maps
configuring 2-715
displaying 2-596
QoS 2-715
tar files, creating, listing, and extracting 2-12
TDR, running 2-717
temperature information, displaying 2-445
temperature status, displaying 2-445
templates, system resources 2-386
test cable-diagnostics tdr command 2-717
traceroute mac command 2-719
traceroute mac ip command 2-722
traffic shaping, QoS 2-410
trunking, VLAN mode 2-690
trunk mode 2-690
trunk ports 2-690
tunnel ports, Layer 2 protocol, displaying 2-521
type (boot loader) command A-26
U
UDLD
debug messages, display B-96
enable globally 2-724
enable per interface 2-726
error recovery timer 2-120
message timer 2-724
reset a shutdown interface 2-728
status 2-597
udld command 2-724
udld port command 2-726
udld reset command 2-728
UNI
bundling and multiplexing 2-136
Ethernet 2-136
unicast storm control 2-676
uni count command 2-729
UniDirectional Link Detection
UNI ID, Ethernet 2-138
uni-vlan command 2-731
unknown multicast traffic, preventing 2-687
unknown unicast traffic, preventing 2-687
unset (boot loader) command A-27
upgrading
software images 2-9
monitoring status of 2-415
user EXEC mode 1-2
user network interface 2-352
V
version (boot loader) command A-29
violate-action command 2-733
vlan access-map command 2-738
VLAN access map configuration mode 2-738
VLAN access maps
actions 2-5
displaying 2-607
vlan command 2-735
VLAN configuration mode
commands 2-735
description 1-4
entering 2-735
summary 1-2
vlan dot1q tag native command 2-740
vlan filter command 2-742
VLAN filters, displaying 2-608
VLAN ID range 2-735
VLAN ID translation
VLAN mapping
configuring 2-708
described 2-709
displaying 2-609
VLAN maps
applying 2-742
creating 2-738
defining 2-285
displaying 2-607
VLAN Query Protocol
VLANs
adding 2-735
configuring 2-735
debug messages, display
activation of B-94
VLAN IOS file system error tests B-93
VLAN manager activity B-92
displaying configurations 2-602
extended-range 2-735
MAC addresses
displaying 2-554
number of 2-542
normal-range 2-735
private 2-693
configuring 2-359
displaying 2-602
restarting 2-614
saving the configuration 2-735
shutting down 2-614
suspending 2-614
VMPS
configuring servers 2-747
displaying 2-611
error recovery timer 2-121
reconfirming dynamic VLAN assignments 2-744
vmps reconfirm (global configuration) command 2-745
vmps reconfirm (privileged EXEC) command 2-744
vmps retry command 2-746
vmps server command 2-747
VQP
and dynamic-access ports 2-682
clearing client statistics 2-59
displaying information 2-611
per-server retry count 2-746
reconfirmation interval 2-745
reconfirming dynamic VLAN assignments 2-744
VTP
enabling
tunneling for 2-245
W
Weighted Tail Drop
WTD, queue-limit command 2-364