The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
A
aaa accounting dot1x command 2-1
aaa authentication dot1x command 2-3
aaa authorization network command 2-27, 2-34, 2-36, 2-38, 2-40, 2-42
AAA methods 2-3
access control entries
access control lists
access groups
IP 2-183
MAC, displaying 2-587
matching for QoS classification 2-319
access list, IPv6 2-252
access mode 2-750
access ports 2-750
ACLs
as match criteria for QoS classes 2-319
deny 2-123
displaying 2-448
for non-IP protocols 2-297
IP 2-183
on Layer 2 interfaces 2-183
permit 2-356
action command 2-5
address aliasing 2-339
aggregate policers
applying 2-368
creating 2-364
displaying 2-622
QoS 2-366
aggregate-port learner 2-345
alarm command 2-13
alarm-contact command 2-7
alarm-contact status, displaying 2-491
alarm facility fcs-hysteresis command 2-9
alarm facility power-supply command 2-10
alarm facility temperature command 2-11
alarm profile
attaching to a port 2-15
creating 2-13
displaying 2-452
alarm profile (global configuration) command 2-13
alarm profile (interface configuration) command 2-15
alarm profile configuration mode 2-13
alarm relay-mode command 2-16
allowed VLANs 2-766
archive download-sw command 2-17
archive tar command 2-20
archive upload-sw command 2-23
arp access-list command 2-25
attaching policy maps to interfaces 2-431
authentication control-direction command 2-27
authentication critical recovery delay command 2-29
authentication event command 2-30
authentication fallback command 2-34
authentication host-mode command 2-36
authentication mac-move permit command 2-38
authentication open command 2-40
authentication order command 2-42
authentication periodic command 2-44
authentication port-control command 2-46
authentication priority command 2-48
authentication timer command 2-50
authentication violation command 2-52
auth open command 2-40
auth order command 2-42
auth timer command 2-50
autonegotiation of duplex mode 2-150
B
backup interfaces
configuring 2-743
displaying 2-517
bandwidth, configuring for QoS 2-54
bandwidth command 2-54
boot (boot loader) command A-2
boot config-file command 2-57
boot enable-break command 2-58
boot helper command 2-59
boot helper-config file command 2-60
booting
Cisco IOS image 2-63
displaying environment variables 2-461
interrupting 2-58
manually 2-61
boot loader
accessing A-1
booting
Cisco IOS image A-2
helper image 2-59
directories
creating A-14
displaying a list of A-7
removing A-18
displaying
available commands A-12
memory heap utilization A-13
version A-26
environment variables
described A-20
displaying settings A-20
location of A-21
setting A-20
unsetting A-24
files
copying A-5
deleting A-6
displaying a list of A-7
displaying the contents of A-4, A-15, A-23
renaming A-16
file system
formatting A-10
initializing flash A-9
running a consistency check A-11
prompt A-1
resetting the system A-17
boot manual command 2-61
boot private-config-file command 2-62
boot system command 2-63
BPDU filtering, for spanning tree 2-688, 2-726
BPDU guard, for spanning tree 2-690, 2-726
broadcast storm control 2-736
bundling characteristics, UNI 2-158
burst bytes, in QoS policers 2-360, 2-364
C
cat (boot loader) command A-4
CBWFQ, configuring 2-54
CDP, enabling protocol tunneling for 2-276
CFM 2-344
CFM as OAM protocol 2-344
channel-group command 2-64
channel-protocol command 2-68
child policy maps 2-433
CISP
See Client Information Signalling Protocol
class-based traffic shaping 2-446
class-based weighted fair queuing
class command 2-70
class-map command 2-72
class-map configuration mode 2-72
class maps
creating 2-72
defining the match criteria 2-320
displaying 2-465
matching in 2-72
class of service
clear ip arp inspection log command 2-74
clear ip arp inspection statistics command 2-75
clear ipc command 2-78
clear ipv6 dhcp conflict command 2-79
clear l2protocol-tunnel counters command 2-80
clear lacp command 2-81
clear logging onboard command 2-82
clear mac address-table command 2-83, 2-84
clear policer cpu uni-eni counters command 2-86
clear port-security command 2-87
clear scada modbus tcp server statistics command 2-90
clear spanning-tree counters command 2-91
clear spanning-tree detected-protocols command 2-92
clear vmps statistics command 2-94
Client Information Signalling Protocol 2-132
command modes defined 1-1
committed information rate in QoS policers 2-359, 2-364
configuration files
password recovery disable considerations A-1
specifying the name 2-57, 2-62
configuring multiple interfaces 2-179
conform-action command 2-95
control-plane policer 2-86
control-plane policer information, displaying 2-623
control-plane security 2-370
control plane statistics, clearing 2-86
copy (boot loader) command A-5
copy logging onboard module command 2-97
CoS
as match criteria for QoS groups 2-320
for QoS classification 2-435
setting value in policy maps 2-435
CoS value, assigning to Layer 2 protocol packets 2-279
CPU ASIC statistics, displaying 2-466
CPU protection policers, displaying B-26
cpu traffic qos cos command 2-99
cpu traffic qos dscp command 2-103
cpu traffic qos precedence command 2-108
cpu traffic qos qos-group command 2-111
critical VLAN 2-31
D
debug backup command 3-2
debug dot1x command 3-3
debug etherchannel command 3-4
debug interface command 3-6
debug ip dhcp snooping command 3-7
debug ip igmp filter command 3-8
debug ip igmp max-groups command 3-9
debug ip igmp snooping command 3-10
debug ip sla error twamp connection command 3-11
debug ip sla error twamp control reflector command 3-13
debug ip sla error twamp control server command 3-15
debug ip sla trace twamp connection command 3-19
debug ip verify source packet command 3-27
debug lacp command 3-28
debug mac-notification command 3-29
debug matm command 3-30
debug matm move update command 3-31
debug monitor command 3-32
debug mvrdbg command 3-33
debug nvram command 3-34
debug pagp command 3-35
debug platform acl command 3-36
debug platform backup interface command 3-38
debug platform cfm command 3-37
debug platform cpu-queues command 3-39
debug platform dot1x command 3-41
debug platform etherchannel command 3-42
debug platform forw-tcam command 3-43
debug platform ip arp inspection command 3-44
debug platform ipc command 3-53
debug platform ip dhcp command 3-45
debug platform ip igmp snooping command 3-46
debug platform ip multicast command 3-48
debug platform ip source-guard command 3-50
debug platform led command 3-54
debug platform matm command 3-55
debug platform messaging application command 3-56
debug platform phy command 3-57
debug platform pm command 3-59
debug platform policer cpu uni-eni command 3-61
debug platform port-asic command 3-62
debug platform port-security command 3-63
debug platform qos-acl-tcam command 3-64
debug platform qos-manager command 3-65
debug platform remote-commands command 3-66
debug platform rep command 3-67
debug platform resource-manager command 3-68
debug platform snmp command 3-69
debug platform span command 3-70
debug platform supervisor-asic command 3-71
debug platform sw-bridge command 3-72
debug platform tcam command 3-73
debug platform udld command 3-75
debug platform vlan command 3-76
debug pm command 3-77
debug port-security command 3-79
debug qos-manager command 3-80
debug scada modbus tcp server command 3-81
debug spanning-tree bpdu command 3-84
debug spanning-tree bpdu-opt command 3-85
debug spanning-tree command 3-82
debug spanning-tree mstp command 3-86
debug spanning-tree switch command 3-88
debug sw-vlan command 3-90
debug sw-vlan ifs command 3-91
debug sw-vlan notification command 3-92
debug udld command 3-93
debug vqpc command 3-95
default policer configuration
NNIs B-28
UNIs B-27
defaultPort profile 2-14, 2-15
define interface-range command 2-113
delete (boot loader) command A-6
delete command 2-115
deny (ARP access-list configuration) command 2-116
deny (IPv6) command 2-118
deny command 2-123
detect mechanism, causes 2-151
DHCP snooping
accepting untrusted packets from edge switch 2-208
enabling
on a VLAN 2-214
trust on an interface 2-212
error recovery timer 2-153
rate limiting 2-211
DHCP snooping binding database
binding file, configuring 2-204
bindings
adding 2-202
deleting 2-202
displaying 2-538
clearing database agent statistics 2-76
database agent, configuring 2-204
displaying
binding entries 2-538
database agent status 2-540, 2-542
renewing 2-406
diagnostic monitor command 2-126
diagnostic schedule test command 2-128
diagnostic start test command 2-130
differentiated service code point
Digital Optical Monitoring
dir (boot loader) command A-7
directories, deleting 2-115
DoM
displaying supported transceivers 2-529, 2-678, 2-679
domains, CFM 2-344
dot1x credentials command 2-132
dot1x critical global configuration command 2-133
dot1x default command 2-134
dot1x guest-vlan supplicant command 2-135
dot1x initialize command 2-136
dot1x max-reauth-req command 2-137
dot1x max-req command 2-139
dot1x pae command 2-140
dot1x supplicant force-multicast command 2-142
dot1x system-auth-control command 2-143
dot1x test eapol-capable command 2-144
dot1x test timeout command 2-145
dot1x timeout command 2-146
dropping packets, with ACL matches 2-5
drop threshold, Layer 2 protocol tunneling 2-276
DSCP
as match criteria for QoS groups 2-321, 2-327
for QoS traffic marking 2-437
setting in policy maps 2-437
dual IPv4 and IPv6 templates 2-351
dual-purpose uplink ports, selecting the type 2-332
duplex command 2-149
dynamic-access ports
configuring 2-741
restrictions 2-742
dynamic ARP inspection
ARP ACLs
apply to a VLAN 2-188
define 2-25
deny packets 2-116
display 2-456
permit packets 2-349
clear
log buffer 2-74
statistics 2-75
display
ARP ACLs 2-456
configuration and operating state 2-533
log buffer 2-533
statistics 2-533
trust state and rate limit 2-533
enable per VLAN 2-197
error detection for 2-151
error recovery timer 2-153
log buffer
clear 2-74
configure 2-192
display 2-533
rate-limit incoming ARP packets 2-190
statistics
clear 2-75
display 2-533
trusted interface state 2-194
type of packet logged 2-198
validation checks 2-195
Dynamic Host Configuration Protocol (DHCP)
E
EAP-request/identity frame
maximum number to send 2-139
response time before retransmitting 2-146
E-LMI
enabling 2-156
mapping 2-158
environmental alarms, displaying 2-454
environment variables, displaying 2-461
errdisable detect cause command 2-151
errdisable recovery command 2-153
error conditions, displaying 2-495
error disable detection 2-151
error-disabled interfaces, displaying 2-517
EtherChannel
assigning Ethernet interface to channel group 2-64
creating port-channel logical interface 2-177
debug EtherChannel/PAgP, display 3-4
debug platform-specific events, display 3-42
displaying 2-499
enabling Layer 2 protocol tunneling for
LACP 2-277
PAgP 2-277
UDLD 2-277
interface information, displaying 2-517
LACP
clearing channel-group information 2-81
debug messages, display 3-28
displaying 2-573
modes 2-64
port priority for hot-standby ports 2-280
restricting a protocol 2-68
system priority 2-282
load-distribution methods 2-375
PAgP
aggregate-port learner 2-345
clearing channel-group information 2-85
debug messages, display 3-35
displaying 2-618
error detection for 2-151
error recovery timer 2-153
learn method 2-345
modes 2-64
physical-port learner 2-345
priority of interface for transmitted traffic 2-347
Ethernet controller, internal register display 2-468
ethernet evc command 2-155
ethernet lmi ce-vlan map command 2-156, 2-158
ethernet lmi command 2-156
ethernet lmi global command 2-156
Ethernet Local Management Interface
ethernet loopback interface configuration command 2-160
ethernet loopback privileged EXEC command 2-163
ethernet oam remote-failure command 2-165
Ethernet service
debugging 3-5
displaying 2-504
Ethernet service instance 2-427
Ethernet service interfaces 2-507
Ethernet statistics, collecting 2-421
Ethernet UNI configuration 2-167
ethernet uni id command 2-169
Ethernet virtual connections
EVC configuration mode 2-155
EVCs 2-155
and VLANs 2-167
service instances 2-427
UNI counts 2-788
EVC service
point-to-multipoint 2-788
point-to-point 2-788
exceed-action command 2-170
extended-range VLANs
and allowed VLAN list 2-766
configuring 2-794
extended system ID for STP 2-696
external alarms, configuring 2-7
F
facility alarm relays, displaying 2-509
facility alarm status, displaying 2-510
failure logging data
clearing 2-82
copying 2-97
FCS bit error rate
displaying 2-511
fluctuation threshold 2-9
setting 2-172
FCS hysteresis threshold 2-9
fcs-threshold command 2-172
files, deleting 2-115
flash_init (boot loader) command A-9
flexible authentication ordering 2-42
Flex Links
configuring 2-743
configuring preferred VLAN 2-745
displaying 2-517
flowcontrol command 2-173
format (boot loader) command A-10
forwarding packets, with ACL matches 2-5
forwarding results, display B-8
frame check sequence
frame forwarding information, displaying B-8
front-end controller counter and status information B-10
fsck (boot loader) command A-11
G
global configuration mode 1-2, 1-3
H
hardware ACL statistics 2-448
health-monitoring diagnostic testing 2-126
help (boot loader) command A-12
host connection, port configuration 2-749
host ports, private VLANs 2-753
hw-module module logging onboard command 2-175
I
IEEE 802.1ag Connectivity Fault Management
IEEE 802.1Q trunk ports and native VLANs 2-799
IEEE 802.1Q tunnel ports
configuring 2-750
displaying 2-487
limitations 2-751
IEEE 802.1x
and switchport modes 2-751
violation error recovery 2-153
See also port-based authentication
IGMP filters
applying 2-217
debug messages, display 3-8
IGMP groups, setting maximum 2-219
IGMP maximum groups, debugging 3-9
IGMP profiles
creating 2-221
displaying 2-545
IGMP snooping
adding ports as a static member of a group 2-236
displaying 2-546, 2-550, 2-552
enabling 2-223
enabling the configurable-leave timer 2-225
enabling the Immediate-Leave feature 2-233
flooding query count 2-231
interface topology change notification behavior 2-232
multicast table 2-548
querier 2-227
query solicitation 2-231
report suppression 2-229
switch topology change notification behavior 2-231
images
Immediate-Leave feature, MVR 2-341
immediate-leave processing 2-233
Immediate-Leave processing, IPv6 2-272
input policy maps
and ACL classification 2-319
and aggregate policers 2-366
commands not supported in 2-373
configuration guidelines 2-373
interface command 2-181
interface configuration mode 1-2, 1-3
interface port-channel command 2-177
interface range command 2-179
interface-range macros 2-113
interfaces
assigning Ethernet interface to channel group 2-64
configuring 2-149
configuring multiple 2-179
creating port-channel logical 2-177
debug messages, display 3-6
disabling 2-673
displaying the MAC address table 2-599
restarting 2-673
interface speed, configuring 2-734
internal registers, displaying 2-468, 2-477
Internet Group Management Protocol
invalid GBIC
error detection for 2-151
error recovery timer 2-153
ip address command 2-186
IP addresses, setting 2-186
IP address matching 2-317
ip arp inspection filter vlan command 2-188
ip arp inspection limit command 2-190
ip arp inspection log-buffer command 2-192
ip arp inspection trust command 2-194
ip arp inspection validate command 2-195
ip arp inspection vlan command 2-197
ip arp inspection vlan logging command 2-198
IP DHCP snooping
ip dhcp snooping binding command 2-202
ip dhcp snooping command 2-201
ip dhcp snooping database command 2-204
ip dhcp snooping information option allow-untrusted command 2-208
ip dhcp snooping information option command 2-206
ip dhcp snooping information option format remote-id command 2-210
ip dhcp snooping limit rate command 2-211
ip dhcp snooping trust command 2-212
ip dhcp snooping verify command 2-213
ip dhcp snooping vlan command 2-214
ip dhcp snooping vlan information option format-type circuit-id string command 2-215
ip igmp filter command 2-217
ip igmp max-groups command 2-219, 2-246, 2-248
ip igmp profile command 2-221
ip igmp snooping command 2-223
ip igmp snooping last-member-query-interval command 2-225
ip igmp snooping querier command 2-227
ip igmp snooping report-suppression command 2-229
ip igmp snooping tcn command 2-231
ip igmp snooping tcn flood command 2-232
ip igmp snooping vlan immediate-leave command 2-233
ip igmp snooping vlan mrouter command 2-234
ip igmp snooping vlan static command 2-236
IP multicast addresses 2-338
IP precedence, as match criteria for QoS groups 2-323
ip source binding command 2-242
IP source guard
disabling 2-250
displaying
binding entries 2-559
configuration 2-560
enabling 2-250
static IP source bindings 2-242
IP source guard, displaying dynamic binding entries 2-538
ip ssh command 2-244
IPv6 access list, deny conditions 2-118
ipv6 access-list command 2-252
ipv6 address dhcp command 2-254
ipv6 dhcp client request vendor command 2-255
ipv6 dhcp ping packets command 2-256
ipv6 dhcp pool command 2-257
ipv6 dhcp server command 2-259
ipv6 mld snooping command 2-261
ipv6 mld snooping last-listener-query count command 2-263
ipv6 mld snooping last-listener-query-interval command 2-265
ipv6 mld snooping listener-message-suppression command 2-267
ipv6 mld snooping robustness-variable command 2-268
ipv6 mld snooping tcn command 2-270
ipv6 mld snooping vlan command 2-272
IPv6 SDM template 2-424
ipv6 traffic-filter command 2-274
ip verify source command 2-250
J
jumbo frames
L
l2protocol-tunnel command 2-276
l2protocol-tunnel cos command 2-279
LACP
lacp port-priority command 2-280
lacp system-priority command 2-282
Layer 2 mode, enabling 2-739
Layer 2 protocol ports, displaying 2-571
Layer 2 protocol-tunnel
error detection for 2-151
error recovery timer 2-153
Layer 2 protocol tunnel counters 2-80
Layer 2 protocol tunneling error recovery 2-277
Layer 2 traceroute
IP addresses 2-781
MAC addresses 2-778
Layer 3 mode, enabling 2-739
line configuration mode 1-2, 1-4
Link Aggregation Control Protocol
link flap
error detection for 2-151
error recovery timer 2-153
link state group command 2-284
link state track command 2-286
load-distribution methods for EtherChannel 2-375
location (global configuration) command 2-287
location (interface configuration) command 2-289
logging event command 2-291
logging event power-inline-status command 2-292
logging file command 2-293
logical interface 2-177
loopback error
detection for 2-151
recovery timer 2-153
loop guard, for spanning tree 2-698, 2-702
M
mac access-group command 2-295
MAC access-groups, displaying 2-587
MAC access list configuration mode 2-297
mac access-list extended command 2-297
MAC access lists 2-123
MAC addresses
disabling MAC address learning per VLAN 2-300
displaying
aging time 2-593
all 2-591
dynamic 2-597
MAC address-table move updates 2-602
notification settings 2-601, 2-604
number of addresses in a VLAN 2-595
per interface 2-599
per VLAN 2-608
static 2-606
static and dynamic entries 2-589
dynamic
aging time 2-299
deleting 2-83
displaying 2-597
enabling MAC address notification 2-304
enabling MAC address-table move update 2-302
matching 2-317
static
adding and removing 2-306
displaying 2-606
dropping on an interface 2-307
tables 2-591
MAC address notification, debugging 3-29
mac address-table aging-time 2-295, 2-317
mac address-table aging-time command 2-299
mac address-table learning command 2-300
mac address-table move update command 2-302
mac address-table notification command 2-304
mac address-table static command 2-306
mac address-table static drop command 2-307
macro description command 2-311
macro global command 2-312
macro global description command 2-314
macro name command 2-315
macros
adding a description 2-311
adding a global description 2-314
applying 2-312
creating 2-315
displaying 2-620
specifying parameter values 2-312
tracing 2-312
maintenance end points 2-788
mapping tables, QoS 2-774
maps
class
creating 2-72
VLAN
creating 2-797
defining 2-317
displaying 2-666
match access-group command 2-319
match cos command 2-320
match ip dscp command 2-321
match ip precedence command 2-323
match qos-group command 2-325
match vlan command 2-327
maximum transmission unit
mdix auto command 2-330
media-type command 2-332
memory (boot loader) command A-13
mkdir (boot loader) command A-14
MLD snooping
configuring queries 2-263, 2-265
configuring topology change notification 2-270
enabling 2-261
MLD snooping on a VLAN, enabling 2-272
MODBUS
mode, MVR 2-338
modes, commands 1-1
monitor session command 2-334
more (boot loader) command A-15
MSTP
displaying 2-647
interoperability 2-92
link type 2-700
MST region
aborting changes 2-706
applying changes 2-706
configuration name 2-706
configuration revision number 2-707
current or pending display 2-707
displaying 2-647
MST configuration mode 2-706
VLANs-to-instance mapping 2-706
path cost 2-708
protocol mode 2-704
restart protocol migration process 2-92
root port
loop guard 2-698
preventing from becoming designated 2-698
restricting which can be root 2-698
root guard 2-698
root switch
affects of extended system ID 2-696
interval between BDPU messages 2-713
interval between hello BPDU messages 2-711, 2-722
max-age 2-713
maximum hop count before discarding BPDU 2-715
port priority for selection of 2-717
primary or secondary 2-722
switch priority 2-720
state changes
blocking to forwarding state 2-729
enabling BPDU filtering 2-688, 2-726
enabling BPDU guard 2-690, 2-726
enabling Port Fast 2-726, 2-729
forward-delay time 2-710
length of listening and learning states 2-710
rapid transition to forwarding 2-700
shutting down Port Fast-enabled ports 2-726
state information display 2-646
MTU
configuring size 2-772
displaying global setting 2-654
multicast group address, MVR 2-341
multicast groups, MVR 2-339
Multicast Listener Discovery
multicast router learning method 2-234
multicast router ports, configuring 2-234
multicast router ports, IPv6 2-272
multicast storm control 2-736
multicast VLAN, MVR 2-339
multicast VLAN registration
Multiple Spanning Tree Protocol
multiplexing, UNI 2-167
MVR
and address aliasing 2-339
configuring 2-338
configuring interfaces 2-341
debug messages, display 3-33
displaying 2-612
displaying interface information 2-614
members, displaying 2-616
mvr (global configuration) command 2-338
mvr (interface configuration) command 2-341
mvr vlan group command 2-342
N
native VLANs 2-766
native VLAN tagging 2-799
network node interface 2-377
nonegotiate, speed 2-734, 2-735
non-IP protocols
denying 2-123
forwarding 2-356
non-IP traffic access lists 2-297
non-IP traffic forwarding
denying 2-123
permitting 2-356
normal-range VLANs 2-794
notifies command 2-13
no vlan command 2-794
O
OAM PDUs 2-165
OAM protocol 2-344
oam protocol cfm svlan command 2-344
on-board failure logging, displaying 2-583
on-board failure logging, enabling 2-175
online diagnostics
enabling
scheduling 2-128
global configuration mode
clearing test-based testing schedule 2-128
setting test-based testing 2-128
setting up test-based testing 2-128
removing scheduling 2-128
scheduled switchover
disabling 2-128
enabling 2-128
setting test interval 2-128
starting testing 2-130
online diagnostic tests, displaying results 2-483
online diagnostic tests, starting 2-130
operating system, reloading 2-402
operation, administration, and maintenance protocol
output policy maps
and QoS group classification 2-325
and traffic shaping 2-446
commands not supported in 2-373
configuration guidelines 2-373
priority in 2-388
queue limit in 2-395
P
PAgP
pagp learn-method command 2-345
pagp port-priority command 2-347
parent policy maps 2-433
password-recovery mechanism, enabling and disabling 2-429
permit (ARP access-list configuration) command 2-349
permit (IPv6) command 2-351
permit command 2-356
per-VLAN spanning-tree plus
physical-port learner 2-345
PID, displaying 2-532
PIM-DVMRP, as multicast router learning method 2-234
PoE
configuring the power budget 2-382
configuring the power management mode 2-379
displaying controller register values 2-475
displaying power management information 2-635
error detection for 2-151
error recovery timer 2-153
logging of status 2-292
monitoring power 2-384
policing power consumption 2-384
police
multiple conform actions for a class 2-95
multiple exceed actions for a class 2-170
multiple violate actions for a class 2-792
with priority 2-359
police aggregate command 2-368
police command 2-359
policer aggregate command 2-364
policer configuration
default for NNIs B-28
default for UNIs B-27
policer cpu uni command 2-370
policers
for CPU protection 2-370
individual 2-359
policy-map class, configuring multiple actions 2-95, 2-170, 2-792
policy-map class configuration mode 2-70
policy-map class police configuration mode 2-95, 2-362
policy-map command 2-372
policy-map configuration mode 2-372
policy maps
and CoS classification 2-320
and DSCP classification 2-321
and IP precedence classification 2-323
and policing 2-362
applying 2-431
applying to an interface 2-373, 2-431, 2-443
child 2-433
creating 2-372
displaying 2-625
hierarchical 2-433
parent 2-433
policers
for a single class 2-359
for multiple classes 2-364, 2-368, 2-370, 2-433
setting priority 2-387
setting QoS group identifier 2-441
traffic classification, defining 2-70
traffic marking
setting CoS values 2-435
setting DSCP values 2-437
setting IP precedence values 2-439
Port Aggregation Protocol
port-based authentication
AAA method list 2-3
authentication server-to-client response time 2-146
debug messages, display 3-3
enabling 802.1x globally 2-143
IEEE 802.1x AAA accounting methods 2-1
initialize an interface 2-136, 2-145
PAE as authenticator 2-140
quiet period between failed authentication exchanges 2-146
resetting configurable 802.1x parameters 2-134
retransmit response time EAP-request/identity frames 2-146
supplicant time in HELD state 2-146
switch-to-authentication server retransmission time 2-146
switch-to-client frame-retransmission number2-137to 2-139
switch-to-client retransmission time 2-146
test for IEEE 802.1x readiness 2-144
time between re-authentication attempts 2-146
time between two successive EAPOL-Start frames 2-146
port-channel load-balance command 2-375
Port Fast, for spanning tree 2-729
port ranges, defining 2-82, 2-97, 2-113
ports, debugging 3-77
ports, protected 2-764
port security
aging 2-760
debug messages, display 3-79
enabling 2-756
violation error recovery 2-153
port shaping 2-447
port-type command 2-377
port types, MVR 2-341
power information, displaying 2-491
power inline command 2-379
power inline consumption command 2-382
power inline police command 2-384
Power over Ethernet
power supply alarms, setting 2-10
power-supply status, displaying 2-491
precedence
for QoS traffic marking 2-439
setting in policy maps 2-439
primary temperature alarm 2-11
priority command 2-387
priority queuing, QoS 2-387
priority with police, QoS 2-387
private-vlan command 2-390
private-vlan mapping command 2-393
private VLANs
association 2-762
configuring 2-390
configuring ports 2-753
displaying 2-661
host ports 2-753
mapping
configuring 2-762
displaying 2-517
promiscuous ports 2-753
product identification information, displaying 2-532
promiscuous ports, private VLANs 2-753
PVST+
Q
QoS
aggregate policers
applying 2-368
creating 2-364
displaying 2-622
class maps
creating 2-72
defining the match criteria 2-320
displaying 2-465
conform actions, configuring 2-96
displaying statistics for 2-625, B-34
exceed actions, configuring 2-171
policy maps
applying an aggregate policer 2-364, 2-368, 2-370, 2-433
applying to an interface 2-431, 2-443
creating 2-372
defining policers 2-359
displaying policy maps 2-625
setting CoS values 2-435
setting DSCP values 2-437
setting IP precedence values 2-439
setting QoS group identifier 2-441
traffic classifications 2-70
table maps
configuring 2-774
displaying 2-655
violate actions, configuring 2-793
QoS groups
as match criteria 2-325
for QoS traffic classification 2-441
setting in policy maps 2-441
QoS match criteria
ACLs 2-319
CoS value 2-320
precedence value 2-323
QoS group number 2-325
quality of service
querytime, MVR 2-338
queue-limit command 2-395
R
radius-server dead-criteria command 2-398
radius-server host command 2-400
rapid per-VLAN spanning-tree plus
rapid PVST+
re-authentication
time between attempts 2-146
receiver ports, MVR 2-341
receiving flow-control packets 2-173
recovery mechanism
causes 2-153
timer interval 2-154
relay-major command 2-13
relay-minor command 2-13
reload command 2-402
remote-span command 2-404
Remote Switched Port Analyzer
rename (boot loader) command A-16
renew ip dhcp snooping database command 2-406
rep admin vlan command 2-407
rep block port command 2-408
rep lsl-age-timer command 2-411
rep preempt delay command 2-413
rep preempt segment command 2-415
rep segment command 2-416
rep stcn command 2-419
reset (boot loader) command A-17
resource templates, displaying 2-644
rmdir (boot loader) command A-18
rmon collection stats command 2-421
root guard, for spanning tree 2-698
routed ports
IP addresses on 2-187
number supported 2-187
RSPAN
configuring 2-334
displaying 2-610
filter RSPAN traffic 2-334
remote-span command 2-404
sessions
add interfaces to 2-334
displaying 2-610
start new 2-334
S
scada modbus tcp server 2-422
scheduled switchover
disabling 2-128
enabling 2-128
scheduling diagnostic tests 2-128
sd_init (boot loader) command A-19
sdm prefer command 2-424
SDM templates
allowed resources 2-425
displaying 2-644
dual IPv4 and IPv6 2-424
secondary temperature alarm 2-11
secure ports, limitations 2-758
sending flow-control packets 2-173
service instance command 2-427
service instances, displaying 2-505
service password-recovery command 2-429
service policy (policy-map class configuration) command 2-433
service-policy interface configuration command 2-431
service-policy policy-map class configuration command 2-433
set (boot loader) command A-20
set cos command 2-435
set dscp command 2-437
set precedence command 2-439
set qos-group command 2-441
setup command 2-443
SFPs, displaying information about 2-532
shape average command 2-446
show access-lists command 2-448
show aggregate-policer command 2-655
show alarm description port command 2-451
show alarm profile command 2-452
show alarm settings command 2-454
show archive status command 2-455
show arp access-list command 2-456
show authentication command 2-457
show boot command 2-461
show class-map command 2-465
show controllers cpu-interface command 2-466
show controllers ethernet-controller command 2-468
show controllers power inline command 2-475
show controllers tcam command 2-477
show controllers utilization command 2-479
show cpu traffic qos command 2-481
show diagnostic command 2-483
show dot1q-tunnel command 2-487
show dot1x command 2-488
show env command 2-491
show errdisable detect command 2-493
show errdisable flap-values command 2-495
show errdisable recovery command 2-497
show etherchannel command 2-499
show ethernet loopback command 2-502
show ethernet service evc command 2-504
show ethernet service instance command 2-505
show ethernet service interface command 2-507
show facility-alarm relay command 2-509
show facility-alarm status command 2-510
show fcs threshold command 2-511
show flowcontrol command 2-513
show idprom command 2-515
show interface rep command 2-527
show interfaces command 2-517
show interfaces counters command 2-525
show interfaces rep command 2-527
show interface transceivers command 2-529
show inventory command 2-532
show ip arp inspection command 2-533
show ipc command 2-562
show ip dhcp snooping binding command 2-538
show ip dhcp snooping command 2-537
show ip dhcp snooping database command 2-540, 2-542
show ip igmp profile command 2-545
show ip igmp snooping command 2-546
show ip igmp snooping command querier detail 2-552
show ip igmp snooping groups command 2-548
show ip igmp snooping mrouter command 2-550
show ip igmp snooping querier command 2-552
show ip igmp snooping querier detail command 2-552
show ip sla standards command 2-554
show ip sla twamp connection command 2-481
show ip source binding command 2-559
show ipv6 access-list command 2-566
show ipv6 dhcp conflict command 2-568
show ipv6 route updated command 2-569
show ip verify source command 2-560
show l2protocol-tunnel command 2-571
show lacp command 2-573
show link state group command 2-577
show lldp command 2-579
show location command 2-580
show logging onboard command 2-583
show mac access-group command 2-587
show mac address-table address command 2-591
show mac address-table aging time command 2-593
show mac address-table command 2-589
show mac address-table count command 2-595
show mac address-table dynamic command 2-597
show mac address-table interface command 2-599
show mac address-table learning command 2-601
show mac address-table move update command 2-602
show mac address-table notification command 2-84, 2-604, 3-31
show mac address-table static command 2-606
show mac address-table vlan command 2-608
show monitor command 2-610
show mvr command 2-612
show mvr interface command 2-614
show mvr members command 2-616
show pagp command 2-618
show parser macro command 2-620
show platform acl command B-2
show platform backup interface command B-3
show platform cfm command B-4
show platform configuration command B-5
show platform dl command B-6
show platform etherchannel command B-7
show platform forward command B-8
show platform frontend-controller command B-10
show platform igmp snooping command B-11
show platform ipc trace command B-16
show platform ip multicast command B-13
show platform ip unicast command B-14
show platform ipv6 unicast command B-17
show platform l2pt dm command B-19
show platform layer4op command B-20, B-42
show platform mac-address-table command B-21
show platform messaging command B-22
show platform monitor command B-23
show platform mvr table command B-24
show platform pm command B-25
show platform policer cpu command B-26
show platform port-asic command B-29
show platform port-security command B-33
show platform qos command B-34
show platform resource-manager command B-37
show platform sdflash B-39
show platform snmp counters command B-40
show platform spanning-tree synchronization command B-41
show platform stp-instance command B-43
show platform tcam command B-44
show platform vlan command B-47
show platform vlan mapping command B-48
show policer aggregate command 2-622
show policer cpu uni-eni command 2-623
show policy-map command 2-625
show policy-map interface output fields 2-628
show port security command 2-630
show port-type command 2-633
show power inline command 2-635
show rep topology command 2-640
show scada modbus tcp server command 2-643
show sdm prefer command 2-644
show spanning-tree command 2-646
show storm-control command 2-652
show system mtu command 2-654
show udld command 2-657
show version command 2-659
show vlan access-map command 2-666
show vlan command 2-661
show vlan command, fields 2-663
show vlan filter command 2-667
show vlan mapping command 2-668
show vmps command 2-670
shutdown command 2-673
shutdown threshold, Layer 2 protocol tunneling 2-276
shutdown vlan command 2-674
SNMP host, specifying 2-680
SNMP informs, enabling the sending of 2-676
snmp mib rep trap-rate command 2-675
snmp-server enable traps command 2-676
snmp-server host command 2-680
snmp trap mac-notification change command 2-684
SNMP traps
enabling MAC address notification trap 2-684
enabling the MAC address notification feature 2-304
enabling the sending of 2-676
software images
deleting 2-115
downloading 2-17
upgrading 2-17
uploading 2-23
software version, displaying 2-659
source ports, MVR 2-341
SPAN
configuring 2-334
debug messages, display 3-32
displaying 2-610
filter SPAN traffic 2-334
sessions
add interfaces to 2-334
displaying 2-610
start new 2-334
spanning-tree bpdufilter command 2-686, 2-688
spanning-tree bpduguard command 2-690
spanning-tree cost command 2-692
spanning-tree etherchannel command 2-694
spanning-tree extend system-id command 2-696
spanning-tree guard command 2-698
spanning-tree link-type command 2-700
spanning-tree loopguard default command 2-702
spanning-tree mode command 2-704
spanning-tree mst configuration command 2-706
spanning-tree mst cost command 2-708
spanning-tree mst forward-time command 2-710
spanning-tree mst hello-time command 2-711
spanning-tree mst max-age command 2-713
spanning-tree mst max-hops command 2-715
spanning-tree mst port-priority command 2-717
spanning-tree mst pre-standard command 2-719
spanning-tree mst priority command 2-720
spanning-tree mst root command 2-722
spanning-tree portfast (global configuration) command 2-726
spanning-tree portfast (interface configuration) command 2-729
spanning-tree port-priority command 2-724
Spanning Tree Protocol
spanning-tree vlan command 2-731
speed command 2-734
SSH, configuring version 2-244
static-access ports, configuring 2-741
statistics, Ethernet group 2-421
sticky learning, enabling 2-756
storm-control command 2-736
STP
counters, clearing 2-91
debug messages, display
MSTP 3-86
optimized BPDUs handling 3-85
spanning-tree activity 3-82
switch shim 3-88
transmitted and received BPDUs 3-84
enabling on ENIs 2-686
enabling protocol tunneling for 2-276
EtherChannel misconfiguration 2-694
extended system ID 2-696
path cost 2-692
protocol modes 2-704
root port
loop guard 2-698
preventing from becoming designated 2-698
restricting which can be root 2-698
root guard 2-698
root switch
affects of extended system ID 2-696, 2-732
hello-time 2-731
interval between BDPU messages 2-731
interval between hello BPDU messages 2-731
max-age 2-731
port priority for selection of 2-724
primary or secondary 2-731
switch priority 2-731
state changes
blocking to forwarding state 2-729
enabling BPDU filtering 2-688, 2-726
enabling BPDU guard 2-690, 2-726
enabling Port Fast 2-726, 2-729
enabling timer to recover from error state 2-153
forward-delay time 2-731
length of listening and learning states 2-731
shutting down Port Fast-enabled ports 2-726
state information display 2-646
SVIs, creating 2-181
Switched Port Analyzer
switching characteristics
modifying 2-739
returning to interfaces 2-739
switchport access command 2-741
switchport backup interface command 2-743
switchport block command 2-747
switchport command 2-739
switchport host command 2-749
switchport mode command 2-750
switchport mode private-vlan command 2-753
switchport port-security aging command 2-760
switchport port-security command 2-756
switchport private-vlan command 2-762
switchport protected command 2-764
switchports, displaying 2-517
switchport trunk command 2-766
switchport vlan mapping command 2-768
syslog command 2-13
system env temperature threshold yellow command 2-771
system message logging 2-292
system message logging, save message to flash 2-293
system mtu command 2-772
system resource templates 2-424
T
table-map command 2-774
table-map configuration mode 2-774
table maps
configuring 2-774
displaying 2-655
QoS 2-774
tar files, creating, listing, and extracting 2-20
TDR, running 2-776
temperature alarms, setting 2-11
temperature information, displaying 2-491
temperature status, displaying 2-491
templates, system resources 2-424
test cable-diagnostics tdr command 2-776
traceroute mac command 2-778
traceroute mac ip command 2-781
traffic shaping, QoS 2-446
trunking, VLAN mode 2-750
trunk mode 2-750
trunk ports 2-750
tunnel ports, Layer 2 protocol, displaying 2-571
type (boot loader) command A-23
U
UDLD
debug messages, display 3-93
enable globally 2-783
enable per interface 2-785
error recovery timer 2-153
message timer 2-783
reset a shutdown interface 2-787
status 2-657
udld command 2-783
udld port command 2-785
udld reset command 2-787
UNI
bundling and multiplexing 2-167
Ethernet 2-167
unicast storm control 2-736
uni count command 2-788
UniDirectional Link Detection
UNI ID, Ethernet 2-169
uni-vlan command 2-790
unknown multicast traffic, preventing 2-747
unknown unicast traffic, preventing 2-747
unset (boot loader) command A-24
upgrading
software images 2-17
monitoring status of 2-455
user EXEC mode 1-2
user network interface 2-377
V
version (boot loader) command A-26
violate-action command 2-792
vlan access-map command 2-797
VLAN access map configuration mode 2-797
VLAN access maps
actions 2-5
displaying 2-666
vlan command 2-794
VLAN configuration mode
commands 2-794
description 1-4
entering 2-794
summary 1-2
vlan dot1q tag native command 2-799
vlan filter command 2-801
VLAN filters, displaying 2-667
VLAN ID range 2-794
VLAN ID translation
VLAN mapping
configuring 2-768
described 2-769
displaying 2-668
VLAN maps
applying 2-801
creating 2-797
defining 2-317
displaying 2-666
VLAN Query Protocol
VLANs
adding 2-794
configuring 2-794
debug messages, display
activation of 3-92
VLAN IOS file system error tests 3-91
VLAN manager activity 3-90
displaying configurations 2-661
extended-range 2-794
MAC addresses
displaying 2-608
number of 2-595
normal-range 2-794
private 2-753
configuring 2-390
displaying 2-661
restarting 2-674
saving the configuration 2-794
shutting down 2-674
suspending 2-674
VMPS
configuring servers 2-806
displaying 2-670
error recovery timer 2-154
reconfirming dynamic VLAN assignments 2-803
vmps reconfirm (global configuration) command 2-804
vmps reconfirm (privileged EXEC) command 2-803
vmps retry command 2-805
vmps server command 2-806
VQP
and dynamic-access ports 2-742
clearing client statistics 2-94
displaying information 2-670
per-server retry count 2-805
reconfirmation interval 2-804
reconfirming dynamic VLAN assignments 2-803
VTP, enabling tunneling for 2-276
W
Weighted Tail Drop
WTD, queue-limit command 2-395