A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W - X -

Index

A

aaa accounting dot1x command 2-1

aaa authentication dot1x command 2-3

aaa authorization network command 2-5

AAA methods 2-3

abort command 2-776

access control entries

See ACEs

access control lists

See ACLs

access groups

IP 2-155

MAC, displaying 2-541

access list, IPv6 2-222

access map configuration mode 2-282

access mode 2-717

access ports 2-717

ACEs 2-94, 2-351

ACLs

deny 2-92

displaying 2-403

for non-IP protocols 2-262

IP 2-155

matching 2-282

on Layer 2 interfaces 2-155

permit 2-349

action command 2-6

address aliasing 2-331

aggregate-port learner 2-337

allowed VLANs 2-737

apply command 2-776

archive copy-sw command 2-8

archive download-sw command 2-11

archive tar command 2-15

archive upload-sw command 2-18

arp access-list command 2-20

audience xix

authentication failed VLAN

See dot1x auth-fail vlan

auth-fail max-attempts

See dot1x auth-fail max-attempts

auth-fail vlan

See dot1x auth-fail vlan

authorization state of controlled port 2-128

autonegotiation of duplex mode 2-137

auto qos voip command 2-22

B

BackboneFast, for STP 2-642

backup interfaces

configuring 2-711

displaying 2-473

boot (boot loader) command A-2

boot auto-copy-sw command 2-27

boot auto-download-sw command 2-28

boot boothlpr command 2-30

boot config-file command 2-31

boot enable-break command 2-32

boot helper command 2-33

boot helper-config file command 2-34

booting

Cisco IOS image 2-37

displaying environment variables 2-412

interrupting 2-28, 2-32

manually 2-35

boot loader

accessing A-1

booting

Cisco IOS image A-2

helper image 2-33

directories

creating A-15

displaying a list of A-7

removing A-19

displaying

available commands A-12

memory heap utilization A-13

version A-26

environment variables

described A-20

displaying settings A-20

location of A-21

setting A-20

unsetting A-24

files

copying A-5

deleting A-6

displaying a list of A-7

displaying the contents of A-4, A-16, A-23

renaming A-17

file system

formatting A-10

initializing flash A-9

running a consistency check A-11

prompt A-1

resetting the system A-18

boot manual command 2-35

boot private-config-file command 2-36

boot system command 2-37

BPDU filtering, for spanning tree 2-643, 2-678

BPDU guard, for spanning tree 2-645, 2-678

broadcast storm control 2-699

C

candidate switches

See clusters

cat (boot loader) command A-4

Catalyst 3750G Integrated Wireless LAN Controller Switch 2-394

caution, description xx

CDP, enabling protocol tunneling for 2-241

channel-group command 2-39

channel-protocol command 2-43

Cisco Network Assistant

See Network Assistant xx

Cisco SoftPhone

auto-QoS configuration 2-22

trusting packets sent from 2-322

class command 2-45

class-map command 2-47

class maps

creating 2-47

defining the match criteria 2-284

displaying 2-417

class of service

See CoS

clear dot1x command 2-49

clear eap sessions command 2-50

clear errdisable interface 2-51

clear ip arp inspection log command 2-52

clear ip arp inspection statistics command 2-53

clear ipc command 2-56

clear ip dhcp snooping database command 2-54

clear l2protocol-tunnel counters command 2-57

clear lacp command 2-58

clear mac address-table command 2-59, 2-61

clear pagp command 2-62

clear port-security command 2-63

clear spanning-tree counters command 2-65

clear spanning-tree detected-protocols command 2-66

clear vmps statistics command 2-67

clear vtp counters command 2-68

cluster commander-address command 2-69

cluster discovery hop-count command 2-71

cluster enable command 2-72

cluster holdtime command 2-73

cluster member command 2-74

cluster outside-interface command 2-76

cluster requirements xxi

cluster run command 2-77

clusters

adding candidates 2-74

binding to HSRP group 2-78

building manually 2-74

communicating with

devices outside the cluster 2-76

members by using Telnet 2-378

debug messages, display B-5

displaying

candidate switches 2-420

debug messages B-5

member switches 2-422

status 2-418

hop-count limit for extended discovery 2-71

HSRP standby groups 2-78

redundancy 2-78

SNMP trap 2-632

cluster standby-group command 2-78

cluster timer command 2-80

command modes defined 1-2

commands changed in Cisco IOS Release 12.2(18)SE 1-6

command switch

See clusters

configuration, initial

See getting started guide and hardware installation guide

configuration files

password recovery disable considerations A-1

specifying the name 2-31, 2-36

configuring multiple interfaces 2-150

config-vlan mode

commands 2-762

description 1-4

entering 2-761

summary 1-3

controller, wireless 2-394

conventions

command xx

for examples xx

publication xx

text xx

copy (boot loader) command A-5

CoS

assigning default value to incoming packets 2-292

assigning to Layer 2 protocol packets 2-244

overriding the incoming value 2-292

CoS-to-DSCP map 2-296

CPU ASIC statistics, displaying 2-424

crashinfo files 2-143

D

debug auto qos command B-2

debug backup command B-4

debug cluster command B-5

debug dot1x command B-7

debug dtp command B-9

debug eap command B-10

debug etherchannel command B-12

debug ilpower command B-14

debug interface command B-15

debug ip dhcp snooping command B-17

debug ip igmp filter command B-19

debug ip igmp max-groups command B-20

debug ip igmp snooping command B-21

debug ip verify source packet command B-18

debug lacp command B-22

debug mac-notification command B-23

debug matm command B-24

debug matm move update command B-25

debug monitor command B-26

debug mvrdbg command B-28

debug nvram command B-29

debug pagp command B-30

debug platform acl command B-31

debug platform backup interface command B-32

debug platform cli-redirection main command B-33

debug platform configuration command B-34, B-42

debug platform cpu-queues command B-35

debug platform device-manager command B-37

debug platform dot1x command B-38

debug platform etherchannel command B-39

debug platform fallback-bridging command B-40

debug platform forw-tcam command B-41

debug platform ip arp inspection command B-44

debug platform ipc command B-53

debug platform ip dhcp command B-45

debug platform ip igmp snooping command B-46

debug platform ip multicast command B-48

debug platform ip unicast command B-50

debug platform ip wccp command B-52

debug platform led command B-54

debug platform matm command B-55

debug platform messaging application command B-57

debug platform phy command B-58

debug platform pm command B-60

debug platform port-asic command B-62

debug platform port-security command B-63

debug platform qos-acl-tcam command B-64

debug platform remote-commands command B-65

debug platform resource-manager command B-66

debug platform snmp command B-67

debug platform span command B-68

debug platform stack-manager command B-69

debug platform supervisor-asic command B-70

debug platform sw-bridge command B-71

debug platform tcam command B-72

debug platform udld command B-75

debug platform vlan command B-76

debug platform wireless-controller B-102

debug pm command B-77

debug port-security command B-79

debug qos-manager command B-80

debug spanning-tree backbonefast command B-83

debug spanning-tree bpdu command B-84

debug spanning-tree bpdu-opt command B-85

debug spanning-tree command B-81

debug spanning-tree mstp command B-86

debug spanning-tree switch command B-88

debug spanning-tree uplinkfast command B-90

debug sw-vlan command B-91

debug sw-vlan ifs command B-93

debug sw-vlan notification command B-95

debug sw-vlan vtp command B-97

debug udld command B-99

debug vqpc command B-101

define interface-range command 2-82

delete (boot loader) command A-6

delete command 2-84

deny (ARP access-list configuration) command 2-85

deny (IPv6) command 2-87

deny command 2-92

detect mechanism, causes 2-138

device manager requirements xx

DHCP snooping

accepting untrusted packets from edge switch 2-183

enabling

on a VLAN 2-190

option 82 2-181, 2-183

trust on an interface 2-188

error recovery timer 2-140

rate limiting 2-187

DHCP snooping binding database

binding file, configuring 2-179

bindings

adding 2-177

deleting 2-177

displaying 2-492

clearing database agent statistics 2-54

database agent, configuring 2-179

displaying

binding entries 2-492

database agent status 2-494, 2-496

renewing 2-385

dir (boot loader) command A-7

directories, deleting 2-84

documentation, related xx

document conventions xx

domain name, VTP 2-787, 2-791

dot1x auth-fail max-attempts 2-104

dot1x auth-fail vlan 2-106

dot1x command 2-102

dot1x control-direction command 2-108

dot1x critical global configuration command 2-110

dot1x critical interface configuration command 2-112

dot1x default command 2-114

dot1x fallback command 2-115

dot1x guest-vlan command 2-116

dot1x host-mode command 2-119

dot1x initialize command 2-121

dot1x mac-auth-bypass command 2-122

dot1x max-reauth-req command 2-124

dot1x max-req command 2-125

dot1x multiple-hosts command 2-126

dot1x pae command 2-127

dot1x port-control command 2-128

dot1x re-authenticate command 2-130

dot1x re-authentication command 2-131

dot1x reauthentication command 2-132

dot1x timeout command 2-133

dropping packets, with ACL matches 2-6

drop threshold, Layer 2 protocol tunneling 2-241

DSCP-to-CoS map 2-296

DSCP-to-DSCP-mutation map 2-296

DTP 2-718

DTP flap

error detection for 2-138

error recovery timer 2-140

DTP negotiation 2-722

duplex command 2-136

dynamic-access ports

configuring 2-709

restrictions 2-710

dynamic ARP inspection

ARP ACLs

apply to a VLAN 2-163

define 2-20

deny packets 2-85

display 2-407

permit packets 2-341

clear

log buffer 2-52

statistics 2-53

display

ARP ACLs 2-407

configuration and operating state 2-487

log buffer 2-487

statistics 2-487

trust state and rate limit 2-487

enable per VLAN 2-173

error detection for 2-138

error recovery timer 2-140

log buffer

clear 2-52

configure 2-167

display 2-487

rate-limit incoming ARP packets 2-165

statistics

clear 2-53

display 2-487

dynamic ARP inspection

trusted interface state 2-169

type of packet logged 2-174

validation checks 2-171

dynamic auto VLAN membership mode 2-717

dynamic desirable VLAN membership mode 2-717

Dynamic Host Configuration Protocol (DHCP)

See DHCP snooping

Dynamic Trunking Protocol

See DTP

E

EAP-request/identity frame

maximum number to send 2-125

response time before retransmitting 2-133

encapsulation methods 2-737

environment variables, displaying 2-412

errdisable detect cause command 2-138

errdisable recovery command 2-140

error conditions, displaying 2-459

error disable detection 2-138

error-disabled interfaces, displaying 2-473

EtherChannel

assigning Ethernet interface to channel group 2-39

creating port-channel logical interface 2-148

debug EtherChannel/PAgP, display B-12

debug platform-specific events, display B-39

displaying 2-463

enabling Layer 2 protocol tunneling for

LACP 2-242

PAgP 2-242

UDLD 2-242

interface information, displaying 2-473

EtherChannel

LACP

clearing channel-group information 2-58

debug messages, display B-22

displaying 2-532

modes 2-39

port priority for hot-standby ports 2-245

restricting a protocol 2-43

system priority 2-247

load-distribution methods 2-359

PAgP

aggregate-port learner 2-337

clearing channel-group information 2-62

debug messages, display B-30

displaying 2-585

error detection for 2-138

error recovery timer 2-140

learn method 2-337

modes 2-39

physical-port learner 2-337

priority of interface for transmitted traffic 2-339

Ethernet controller, internal register display 2-426

Ethernet statistics, collecting 2-383

examples, conventions for xx

exception crashinfo command 2-143

exit command 2-776

extended discovery of candidate switches 2-71

extended-range VLANs

and allowed VLAN list 2-737

and pruning-eligible list 2-737

configuring 2-761

extended system ID for STP 2-651

F

fallback profile command 2-144

fallback profiles, displaying 2-466

fan information, displaying 2-454

file name, VTP 2-787

files, deleting 2-84

flash_init (boot loader) command A-9

Flex Links

configuring 2-711

configuring preferred VLAN 2-713

displaying 2-473

flowcontrol command 2-146

format (boot loader) command A-10

forwarding packets, with ACL matches 2-6

forwarding results, display C-6

frame forwarding information, displaying C-6

front-end controller, counter and status information C-8

fsck (boot loader) command A-11

G

global configuration mode 1-2, 1-4

H

hardware ACL statistics 2-403

help (boot loader) command A-12

hierarchical policy maps 2-357

hop-count limit for clusters 2-71

host connection, port configuration 2-716

host ports, private VLANs 2-720

Hot Standby Router Protocol

See HSRP

HSRP

binding HSRP group to cluster 2-78

standby group 2-78

I

IEEE 802.1Q trunk ports and native VLANs 2-778

IEEE 802.1Q tunnel ports

configuring 2-717

displaying 2-443

limitations 2-718

IEEE 802.1x

and switchport modes 2-718

violation error recovery 2-140

See also port-based authentication

IEEE 802.1X Port Based Authentication

enabling guest VLAN supplicant 2-105, 2-115, 2-145

IGMP filters

applying 2-193

debug messages, display B-19

IGMP groups, setting maximum 2-195

IGMP maximum groups, debugging B-20

IGMP profiles

creating 2-197

displaying 2-499

IGMP snooping

adding ports as a static member of a group 2-214

displaying 2-500, 2-505, 2-507

enabling 2-199

enabling the configurable-leave timer 2-201

enabling the Immediate-Leave feature 2-210

flooding query count 2-207

interface topology change notification behavior 2-209

multicast table 1-6, 2-503

querier 2-203

query solicitation 2-207

report suppression 2-205

switch topology change notification behavior 2-207

images

See software images

Immediate-Leave feature, MVR 2-333

immediate-leave processing 2-210

Immediate-Leave processing, IPv6 2-237

initial configuration

See getting started guide and hardware installation guide

interface configuration mode 1-2, 1-4

interface port-channel command 2-148

interface range command 2-150

interface-range macros 2-82

interfaces

assigning Ethernet interface to channel group 2-39

configuring 2-136

configuring multiple 2-150

creating port-channel logical 2-148

debug messages, display B-15

disabling 2-629

displaying the MAC address table 2-553

restarting 2-629

interface speed, configuring 2-688

interface vlan command 2-153

internal registers, displaying 2-426, 2-436

Internet Group Management Protocol

See IGMP

invalid GBIC

error detection for 2-138

error recovery timer 2-140

ip access-group command 2-155

ip address command 2-158

IP addresses, setting 2-158

IP address matching 2-282

ip admission command 2-160

ip admission name proxy http command 2-161

ip arp inspection filter vlan command 2-163

ip arp inspection limit command 2-165

ip arp inspection log-buffer command 2-167

ip arp inspection trust command 2-169

ip arp inspection validate command 2-171

ip arp inspection vlan command 2-173

ip arp inspection vlan logging command 2-174

IP DHCP snooping

See DHCP snooping

ip dhcp snooping binding command 2-177

ip dhcp snooping command 2-176

ip dhcp snooping database command 2-179

ip dhcp snooping information option allow-untrusted command 2-183

ip dhcp snooping information option command 2-181

ip dhcp snooping information option format remote-id command 2-185

ip dhcp snooping limit rate command 2-187

ip dhcp snooping trust command 2-188

ip dhcp snooping verify command 2-189

ip dhcp snooping vlan command 2-190

ip dhcp snooping vlan information option format-type circuit-id string command 2-191

ip igmp filter command 2-193

ip igmp max-groups command 2-195

ip igmp profile command 2-197

ip igmp snooping command 2-199

ip igmp snooping last-member-query-interval command 2-201

ip igmp snooping querier command 2-203

ip igmp snooping report-suppression command 2-205

ip igmp snooping tcn command 2-207

ip igmp snooping tcn flood command 2-209

ip igmp snooping vlan immediate-leave command 2-210

ip igmp snooping vlan mrouter command 2-212

ip igmp snooping vlan static command 2-214

IP multicast addresses 2-330

IP phones

auto-QoS configuration 2-22

trusting packets sent from 2-322

IP-precedence-to-DSCP map 2-296

ip snap forwarding command 2-216

ip source binding command 2-217

IP source guard

disabling 2-221

displaying

binding entries 2-509

configuration 2-511

dynamic binding entries only 2-492

enabling 2-221

static IP source bindings 2-217

ip ssh command 2-219

IPv6 access list, deny conditions 2-87

ipv6 access-list command 2-222

ipv6 mld snooping command 2-225

ipv6 mld snooping last-listener-query count command 2-227

ipv6 mld snooping last-listener-query-interval command 2-229

ipv6 mld snooping listener-message-suppression command 2-231

ipv6 mld snooping robustness-variable command 2-233

ipv6 mld snooping tcn command 2-235

ipv6 mld snooping vlan command 2-237

IPv6 SDM template 2-385

ipv6 traffic-filter command 2-239

ip verify source command 2-221

J

jumbo frames

See MTU

L

l2protocol-tunnel command 2-241

l2protocol-tunnel cos command 2-244

LACP

See EtherChannel

lacp port-priority command 2-245

lacp system-priority command 2-247

Layer 2 mode, enabling 2-707

Layer 2 protocol ports, displaying 2-529

Layer 2 protocol-tunnel

error detection for 2-138

error recovery timer 2-140

Layer 2 protocol tunnel counters 2-57

Layer 2 protocol tunneling error recovery 2-242

Layer 2 traceroute

IP addresses 2-752

MAC addresses 2-749

Layer 3 mode, enabling 2-707

line configuration mode 1-3, 1-5

Link Aggregation Control Protocol

See EtherChannel

link flap

error detection for 2-138

error recovery timer 2-140

link state group command 2-253

link state track command 2-255

load-distribution methods for EtherChannel 2-359

location (global configuration) command 2-249

location (interface configuration) command 2-251

logging event command 2-256

logging event power-inline-status command 2-257

logging file command 2-258

logical interface 2-148

loopback error

detection for 2-138

recovery timer 2-140

loop guard, for spanning tree 2-653, 2-657

M

mac access-group command 2-260

MAC access-groups, displaying 2-541

MAC access list configuration mode 2-262

mac access-list extended command 2-262

MAC access lists 2-92

MAC addresses

displaying

aging time 2-547

all 2-545

dynamic 2-551

MAC address-table move updates 2-555

notification settings 2-557

number of addresses in a VLAN 2-549

per interface 2-553

per VLAN 2-561

MAC addresses (continued)

displaying

static 2-559

static and dynamic entries 2-543

dynamic

aging time 2-264

deleting 2-59

displaying 2-551

enabling MAC address notification 2-267

enabling MAC address-table move update 2-265

matching 2-282

persistent stack 2-696

static

adding and removing 2-269

displaying 2-559

dropping on an interface 2-270

tables 2-545

MAC address notification, debugging B-23

mac address-table aging-time 2-260, 2-282

mac address-table aging-time command 2-264

mac address-table move update command 2-265

mac address-table notification command 2-267

mac address-table static command 2-269

mac address-table static drop command 2-270

macro apply command 2-272

macro description command 2-275

macro global command 2-276

macro global description command 2-279

macro name command 2-280

macros

adding a description 2-275

adding a global description 2-279

applying 2-276

creating 2-280

displaying 2-587

interface range 2-82, 2-150

specifying parameter values 2-276

tracing 2-276

manual

audience xix

purpose of xix

maps

QoS

defining 2-296

displaying 2-571

VLAN

creating 2-773

defining 2-282

displaying 2-624

match (access-map configuration) command 2-282

match (class-map configuration) command 2-284

maximum transmission unit

See MTU

mdix auto command 2-286

member switches

See clusters

memory (boot loader) command A-13

mkdir (boot loader) command A-15

MLD snooping

configuring 2-231, 2-233

configuring queries 2-227, 2-229

configuring topology change notification 2-235

displaying 2-519, 2-521, 2-523, 2-525

enabling 2-225

MLD snooping on a VLAN, enabling 2-237

mls qos aggregate-policer command 2-290

mls qos command 2-288

mls qos cos command 2-292

mls qos dscp-mutation command 2-294

mls qos map command 2-296

mls qos queue-set output buffers command 2-300

mls qos queue-set output threshold command 2-302

mls qos rewrite ip dscp command 2-304

mls qos srr-queue input bandwidth command 2-306

mls qos srr-queue input buffers command 2-308

mls qos-srr-queue input cos-map command 2-310

mls qos srr-queue input dscp-map command 2-312

mls qos srr-queue input priority-queue command 2-314

mls qos srr-queue input threshold command 2-316

mls qos-srr-queue output cos-map command 2-318

mls qos srr-queue output dscp-map command 2-320

mls qos trust command 2-322

mls qos vlan-based command 2-324

mode, MVR 2-330

Mode button, and password recovery 2-389

modes, commands 1-2

monitor session command 2-325

more (boot loader) command A-16

MSTP

displaying 2-603

interoperability 2-66

link type 2-655

MST region

aborting changes 2-661

applying changes 2-661

configuration name 2-661

configuration revision number 2-661

current or pending display 2-661

displaying 2-603

MST configuration mode 2-661

VLANs-to-instance mapping 2-661

path cost 2-663

protocol mode 2-659

restart protocol migration process 2-66

root port

loop guard 2-653

preventing from becoming designated 2-653

restricting which can be root 2-653

root guard 2-653

MSTP (continued)

root switch

affects of extended system ID 2-651

hello-time 2-666, 2-674

interval between BDPU messages 2-667

interval between hello BPDU messages 2-666, 2-674

max-age 2-667

maximum hop count before discarding BPDU 2-668

port priority for selection of 2-670

primary or secondary 2-674

switch priority 2-673

state changes

blocking to forwarding state 2-680

enabling BPDU filtering 2-643, 2-678

enabling BPDU guard 2-645, 2-678

enabling Port Fast 2-678, 2-680

forward-delay time 2-665

length of listening and learning states 2-665

rapid transition to forwarding 2-655

shutting down Port Fast-enabled ports 2-678

state information display 2-602

MTU

configuring size 2-746

displaying global setting 2-613

Multicase Listener Discovery

See MLD

multicast group address, MVR 2-333

multicast groups, MVR 2-331

Multicast Listener Discovery

See MLD

multicast router learning method 2-212

multicast router ports, configuring 2-212

multicast router ports, IPv6 2-237

multicast storm control 2-699

multicast VLAN, MVR 2-330

multicast VLAN registration

See MVR

Multiple Spanning Tree Protocol

See MSTP

MVR

and address aliasing 2-331

configuring 2-330

configuring interfaces 2-333

debug messages, display B-28

displaying 2-579

displaying interface information 2-581

members, displaying 2-583

mvr (global configuration) command 2-330

mvr (interface configuration) command 2-333

mvr vlan group command 2-334

N

native VLANs 2-737

native VLAN tagging 2-778

Network Admission Control Software Configuration Guide 2-160, 2-162

Network Assistant requirements xx

nonegotiate, speed 2-688

nonegotiating DTP messaging 2-722

non-IP protocols

denying 2-92

forwarding 2-349

non-IP traffic access lists 2-262

non-IP traffic forwarding

denying 2-92

permitting 2-349

non-stop forwarding 2-336

normal-range VLANs 2-761, 2-767

note, description xx

no vlan command 2-761, 2-771

nsf command 2-336

O

online diagnostics

displaying

configured boot-up coverage level 2-440

current scheduled tasks 2-440

event logs 2-440

supported test suites 2-440

test ID 2-440

test results 2-440

test statistics 2-440

global configuration mode

clearing health monitoring diagnostic test schedule 2-52

clearing test-based testing schedule 2-98

setting health monitoring diagnostic testing 2-52

setting test-based testing 2-98

setting up health monitoring diagnostic test schedule 2-52

setting up test-based testing 2-98

health monitoring diagnostic tests, configuring 2-95

scheduled switchover

disabling 2-98

enabling 2-98

scheduling

enabling 2-98

removing 2-98

testing, starting 2-100

test interval, setting 2-98

P

PAgP

See EtherChannel

pagp learn-method command 2-337

pagp port-priority command 2-339

password, VTP 2-787, 2-791

password-recovery mechanism, enabling and disabling 2-389

permit (ARP access-list configuration) command 2-341

permit (IPv6) command 2-343

permit (MAC access-list configuration) command 2-349

per-VLAN spanning-tree plus

See STP

physical-port learner 2-337

PID, displaying 2-486

PIM-DVMRP, as multicast router learning method 2-212

PoE

configuring the power budget 2-364

configuring the power management mode 2-361

displaying controller register values 2-434

displaying power management information 2-595

logging of status 2-257

police aggregate command 2-354

police command 2-352

policed-DSCP map 2-296

policy-map command 2-356

policy maps

applying to an interface 2-391, 2-398

creating 2-356

displaying 2-590

hierarchical 2-357

policers

displaying 2-564

for a single class 2-352

for multiple classes 2-290, 2-354

policed-DSCP map 2-296

traffic classification

defining the class 2-45

defining trust states 2-754

setting DSCP or IP precedence values 2-396

Port Aggregation Protocol

See EtherChannel

port-based authentication

AAA method list 2-3

debug messages, display B-7

port-based authentication (continued)

enabling IEEE 802.1x

globally 2-102

per interface 2-128

guest VLAN 2-116

host modes 2-119

IEEE 802.1x AAA accounting methods 2-1

initialize an interface 2-121

MAC authentication bypass 2-122

manual control of authorization state 2-128

PAE as authenticator 2-127

periodic re-authentication

enabling 2-132

time between attempts 2-133

quiet period between failed authentication exchanges 2-133

re-authenticating IEEE 802.1x-enabled ports 2-130

resetting configurable IEEE 802.1x parameters 2-114

switch-to-authentication server retransmission time 2-133

switch-to-client frame-retransmission number2-124to 2-125

switch-to-client retransmission time 2-133

port-channel load-balance command 2-359

Port Fast, for spanning tree 2-680

port ranges, defining 2-82

ports, debugging B-77

ports, protected 2-735

port security

aging 2-729

debug messages, display B-79

enabling 2-724

violation error recovery 2-140

port trust states for QoS 2-322

port types, MVR 2-333

power information, displaying 2-454

power inline command 2-361

power inline consumption command 2-364

Power over Ethernet

See PoE

priority-queue command 2-366

priority value, stack member 2-610, 2-702

private-vlan command 2-368

private-vlan mapping command 2-371

private VLANs

association 2-733

configuring 2-368

configuring ports 2-720

displaying 2-619

host ports 2-720

mapping

configuring 2-733

displaying 2-473

promiscuous ports 2-720

privileged EXEC mode 1-2, 1-3

product identification information, displaying 2-486

promiscuous ports, private VLANs 2-720

protected ports, displaying 2-479

pruning

VLANs 2-737

VTP

displaying interface information 2-473

enabling 2-787, 2-791

pruning-eligible VLAN list 2-739

PVST+

See STP

Q

QoS

auto-QoS

configuring 2-22

debug messages, display 1-6, B-2

displaying 2-408

class maps

creating 2-47

defining the match criteria 2-284

displaying 2-417

defining the CoS value for an incoming packet 2-292

QoS (continued)

displaying configuration information 2-408, 2-563

DSCP transparency 2-304

DSCP trusted ports

applying DSCP-to-DSCP-mutation map to 2-294

defining DSCP-to-DSCP-mutation map 2-296

egress queues

allocating buffers 2-300

defining the CoS output queue threshold map 2-318

defining the DSCP output queue threshold map 2-320

displaying buffer allocations 2-567

displaying CoS output queue threshold map 2-571

displaying DSCP output queue threshold map 2-571

displaying queueing strategy 2-567

displaying queue-set settings 2-574

enabling bandwidth shaping and scheduling 2-692

enabling bandwidth sharing and scheduling 2-694

limiting the maximum output on a port 2-690

mapping a port to a queue-set 2-373

mapping CoS values to a queue and threshold 2-318

mapping DSCP values to a queue and threshold 2-320

setting maximum and reserved memory allocations 2-302

setting WTD thresholds 2-302

enabling 2-288

QoS (continued)

ingress queues

allocating buffers 2-308

assigning SRR scheduling weights 2-306

defining the CoS input queue threshold map 2-310

defining the DSCP input queue threshold map 2-312

displaying buffer allocations 2-567

displaying CoS input queue threshold map 2-571

displaying DSCP input queue threshold map 2-571

displaying queueing strategy 2-567

displaying settings for 2-565

enabling the priority queue 2-314

mapping CoS values to a queue and threshold 2-310

mapping DSCP values to a queue and threshold 2-312

setting WTD thresholds 2-316

maps

defining 2-296, 2-310, 2-312, 2-318, 2-320

displaying 2-571

policy maps

applying an aggregate policer 2-354

applying to an interface 2-391, 2-398

creating 2-356

defining policers 2-290, 2-352

displaying policers 2-564

displaying policy maps 2-590

hierarchical 2-357

policed-DSCP map 2-296

setting DSCP or IP precedence values 2-396

traffic classifications 2-45

trust states 2-754

port trust states 2-322

queues, enabling the expedite 2-366

QoS (continued)

statistics

in-profile and out-of-profile packets 2-567

packets enqueued or dropped 2-567

sent and received CoS values 2-567

sent and received DSCP values 2-567

trusted boundary for IP phones 2-322

VLAN-based 2-324

quality of service

See QoS

querytime, MVR 2-330

queue-set command 2-373

R

radius-server dead-criteria command 2-374

radius-server host command 2-376

rapid per-VLAN spanning-tree plus

See STP

rapid PVST+

See STP

rcommand command 2-378

re-authenticating IEEE 802.1x-enabled ports 2-130

re-authentication

periodic 2-132

time between attempts 2-133

receiver ports, MVR 2-333

receiving flow-control packets 2-146

recovery mechanism

causes 2-140

display 2-51, 2-414, 2-457, 2-461

timer interval 2-141

redundancy for cluster switches 2-78

reload command 2-380

remote command 2-382

remote-span command 2-383

Remote Switched Port Analyzer

See RSPAN

rename (boot loader) command A-17

renew ip dhcp snooping database command 2-385

requirements

cluster xxi

device manager xx

Network Assistant xx

reset (boot loader) command A-18

reset command 2-776

resource templates, displaying 2-598

restricted VLAN

See dot1x auth-fail vlan

rmdir (boot loader) command A-19

rmon collection stats command 2-383

root guard, for spanning tree 2-653

routed ports

IP addresses on 2-159

number supported 2-159

RSPAN

configuring 2-325

displaying 2-577

filter RSPAN traffic 2-325

remote-span command 2-383

sessions

add interfaces to 2-325

displaying 2-577

start new 2-325

S

scheduled switchover

disabling 2-98

enabling 2-98

SDM mismatch mode 2-386, 2-611

sdm prefer command 2-385

SDM templates

allowed resources 2-387

and stacking 2-386

displaying 2-598

dual IPv4 and IPv6 2-385

secure ports, limitations 2-726

sending flow-control packets 2-146

service password-recovery command 2-389

service-policy command 2-391

session command 2-394

set (boot loader) command A-20

set command 2-396

setup command 2-398

setup express command 2-401

show access-lists command 2-403

show archive status command 2-406

show arp access-list command 2-407

show auto qos command 2-408

show boot command 2-412

show cable-diagnostics tdr command 2-414

show changes command 2-776

show class-map command 2-417

show cluster candidates command 2-420

show cluster command 2-418

show cluster members command 2-422

show controllers cpu-interface command 2-424

show controllers ethernet-controller command 2-426

show controllers power inline command 2-434

show controllers tcam command 2-436

show controller utilization command 2-438

show current command 2-776

show dot1q-tunnel command 2-443

show dot1x command 2-444

show dtp 2-449

show eap command 2-451

show env command 2-454

show errdisable detect command 2-457

show errdisable flap-values command 2-459

show errdisable recovery command 2-461

show etherchannel command 2-463

show fallback profile command 2-466

show flowcontrol command 2-468

show idprom command 2-470

show interfaces command 2-473

show interfaces counters command 2-483

show inventory command 2-486

show ip arp inspection command 2-487

show ipc command 2-513

show ip dhcp snooping binding command 2-492

show ip dhcp snooping command 2-491

show ip dhcp snooping database command 2-494, 2-496

show ip igmp profile command 2-499

show ip igmp snooping address command 2-521

show ip igmp snooping command 2-500, 2-519

show ip igmp snooping groups command 2-503

show ip igmp snooping mrouter command 2-505, 2-523

show ip igmp snooping querier command 2-507, 2-525

show ip source binding command 2-509

show ipv6 access-list command 2-517

show ipv6 route updated 2-527

show ip verify source command 2-511

show l2protocol-tunnel command 2-529

show lacp command 2-532

show link state group command 2-539

show location 2-536

show mac access-group command 2-541

show mac address-table address command 2-545

show mac address-table aging time command 2-547

show mac address-table command 2-543

show mac address-table count command 2-549

show mac address-table dynamic command 2-551

show mac address-table interface command 2-553

show mac address-table move update command 2-555

show mac address-table notification command 2-61, 2-557, B-25

show mac address-table static command 2-559

show mac address-table vlan command 2-561

show mls qos aggregate-policer command 2-564

show mls qos command 2-563

show mls qos input-queue command 2-565

show mls qos interface command 2-567

show mls qos maps command 2-571

show mls qos queue-set command 2-574

show mls qos vlan command 2-576

show monitor command 2-577

show mvr command 2-579

show mvr interface command 2-581

show mvr members command 2-583

show pagp command 2-585

show parser macro command 2-587

show platform acl command C-2

show platform backup interface command C-3

show platform configuration command C-4

show platform etherchannel command C-5

show platform forward command C-6

show platform frontend-controller command C-8

show platform igmp snooping command C-9

show platform ipc trace command C-17

show platform ip multicast command C-11

show platform ip unicast command C-12

show platform ipv6 unicast command C-18

show platform ip wccp command C-16

show platform layer4op command C-20

show platform mac-address-table command C-21

show platform messaging command C-22

show platform monitor command C-23

show platform mvr table command C-24

show platform pm command C-25

show platform port-asic command C-26

show platform port-security command C-31

show platform qos command C-32

show platform resource-manager command C-33

show platform snmp counters command C-35

show platform spanning-tree command C-36

show platform stack-manager command C-38

show platform stp-instance command C-37

show platform tb command C-40

show platform tcam command C-42

show platform vlan command C-45

show policy-map command 2-590

show port security command 2-592

show power inline command 2-595

show proposed command 2-776

show sdm prefer command 2-598

show setup express command 2-601

show spanning-tree command 2-602

show storm-control command 2-608

show switch command 2-610

show system mtu command 2-613

show trust command 2-754

show udld command 2-614

show version command 2-617

show vlan access-map command 2-624

show vlan command 2-619

show vlan command, fields 2-621

show vlan filter command 2-626

show vmps command 2-627

show vtp command 2-630

shutdown command 2-629

shutdown threshold, Layer 2 protocol tunneling 2-241

shutdown vlan command 2-631

Smartports macros

See macros

SNMP host, specifying 2-636

SNMP informs, enabling the sending of 2-632

snmp-server enable traps command 2-632

snmp-server host command 2-636

snmp trap mac-notification command 2-640

SNMP traps

enabling MAC address notification trap 2-640

enabling the MAC address notification feature 2-267

enabling the sending of 2-632

SoftPhone

See Cisco SoftPhone

software images

copying 2-8

deleting 2-84

downloading 2-11

upgrading 2-8, 2-11

uploading 2-18

software version, displaying 2-617

source ports, MVR 2-333

SPAN

configuring 2-325

debug messages, display B-26

displaying 2-577

filter SPAN traffic 2-325

sessions

add interfaces to 2-325

displaying 2-577

start new 2-325

spanning-tree backbonefast command 2-642

spanning-tree bpdufilter command 2-643

spanning-tree bpduguard command 2-645

spanning-tree cost command 2-647

spanning-tree etherchannel command 2-649

spanning-tree extend system-id command 2-651

spanning-tree guard command 2-653

spanning-tree link-type command 2-655

spanning-tree loopguard default command 2-657

spanning-tree mode command 2-659

spanning-tree mst configuration command 2-661

spanning-tree mst cost command 2-663

spanning-tree mst forward-time command 2-665

spanning-tree mst hello-time command 2-666

spanning-tree mst max-age command 2-667

spanning-tree mst max-hops command 2-668

spanning-tree mst port-priority command 2-670

spanning-tree mst pre-standard command 2-672

spanning-tree mst priority command 2-673

spanning-tree mst root command 2-674

spanning-tree portfast (global configuration) command 2-678

spanning-tree portfast (interface configuration) command 2-680

spanning-tree port-priority command 2-676

Spanning Tree Protocol

See STP

spanning-tree transmit hold-count command 2-682

spanning-tree uplinkfast command 2-683

spanning-tree vlan command 2-685

speed command 2-688

srr-queue bandwidth limit command 2-690

srr-queue bandwidth share command 2-694

SSH, configuring version 2-219

stack-mac persistent timer command 2-696

stack member

access 2-394

number 2-610, 2-705

priority value 2-702

provisioning 2-703

reloading 2-380

stacks, switch

MAC address 2-696

provisioning a new member 2-703

reloading 2-380

stack member access 2-394

stack member number 2-610, 2-705

stack member priority value 2-610, 2-702

static-access ports, configuring 2-709

statistics, Ethernet group 2-383

sticky learning, enabling 2-724

storm-control command 2-699

STP

BackboneFast 2-642

counters, clearing 2-65

debug messages, display

BackboneFast events B-83

MSTP B-86

optimized BPDUs handling B-85

spanning-tree activity B-81

switch shim B-88

transmitted and received BPDUs B-84

UplinkFast B-90

detection of indirect link failures 2-642

enabling protocol tunneling for 2-241

EtherChannel misconfiguration 2-649

extended system ID 2-651

path cost 2-647

protocol modes 2-659

STP (continued)

root port

accelerating choice of new 2-683

loop guard 2-653

preventing from becoming designated 2-653

restricting which can be root 2-653

root guard 2-653

UplinkFast 2-683

root switch

affects of extended system ID 2-651, 2-686

hello-time 2-685

interval between BDPU messages 2-685

interval between hello BPDU messages 2-685

max-age 2-685

port priority for selection of 2-676

primary or secondary 2-685

switch priority 2-685

state changes

blocking to forwarding state 2-680

enabling BPDU filtering 2-643, 2-678

enabling BPDU guard 2-645, 2-678

enabling Port Fast 2-678, 2-680

enabling timer to recover from error state 2-140

forward-delay time 2-685

length of listening and learning states 2-685

shutting down Port Fast-enabled ports 2-678

state information display 2-602

VLAN options 2-673, 2-685

SVIs, creating 2-153

Switched Port Analyzer

See SPAN

switching characteristics

modifying 2-707

returning to interfaces 2-707

switchport access command 2-709

switchport backup interface command 2-711

switchport block command 2-715

switchport command 2-707

switchport host command 2-716

switchport mode command 2-717

switchport mode private-vlan command 2-720

switchport nonegotiate command 2-722

switchport port-security aging command 2-729

switchport port-security command 2-724

switchport priority extend command 2-731

switchport private-vlan command 2-733

switchport protected command 2-735

switchports, displaying 2-473

switchport trunk command 2-737

switchport voice vlan command 2-741, 2-742

switch priority command 2-702

switch provision command 2-703

switch renumber command 2-705

system env temperature threshold yellow command 2-744

system message logging 2-257

system message logging, save message to flash 2-258

system mtu command 2-746

system resource templates 2-385

T

tar files, creating, listing, and extracting 2-15

TDR, running 2-748

Telnet, using to communicate to cluster switches 2-378

temperature information, displaying 2-454

templates, system resources 2-385

test cable-diagnostics tdr command 2-748

traceroute mac command 2-749

traceroute mac ip command 2-752

trunking, VLAN mode 2-717

trunk mode 2-717

trunk ports 2-717

trunks, to non-DTP device 2-718

trusted boundary for QoS 2-322

trusted port states for QoS 2-322

tunnel ports, Layer 2 protocol, displaying 2-529

type (boot loader) command A-23

U

UDLD

aggressive mode 2-756, 2-758

debug messages, display B-99

enable globally 2-756

enable per interface 2-758

error recovery timer 2-140

message timer 2-756

normal mode 2-756, 2-758

reset a shutdown interface 2-760

status 2-614

udld command 2-756

udld port command 2-758

udld reset command 2-760

unicast storm control 2-699

UniDirectional Link Detection

See UDLD

unknown multicast traffic, preventing 2-715

unknown unicast traffic, preventing 2-715

unset (boot loader) command A-24

upgrading

software images

copying 2-8

downloading 2-11

monitoring status of 2-406

upgrading information

See release notes

UplinkFast, for STP 2-683

user EXEC mode 1-2, 1-3

V

version (boot loader) command A-26

version mismatch mode 2-611

vlan (global configuration) command 2-761

vlan (VLAN configuration) command 2-767

vlan access-map command 2-773

VLAN access map configuration mode 2-773

VLAN access maps

actions 2-6

displaying 2-624

VLAN-based QoS 2-324

VLAN configuration

rules 2-764, 2-769

saving 2-761, 2-771

VLAN configuration mode

commands

VLAN 2-767

VTP 2-791

description 1-5

entering 2-775

summary 1-3

vlan database command 2-775

vlan dot1q tag native command 2-778

vlan filter command 2-780

VLAN filters, displaying 2-626

VLAN ID range 2-761, 2-767

VLAN maps

applying 2-780

creating 2-773

defining 2-282

displaying 2-624

VLAN Query Protocol

See VQP

VLANs

adding 2-761

configuring 2-761, 2-767

debug messages, display

ISL B-95

VLAN IOS file system error tests B-93

VLAN manager activity B-91

VTP B-97

displaying configurations 2-619

enabling guest VLAN supplicant 2-105, 2-115, 2-145

extended-range 2-761

VLANs

MAC addresses

displaying 2-561

number of 2-549

media types 2-764, 2-769

normal-range 2-761, 2-767

private 2-720

configuring 2-368

displaying 2-619

See also private VLANs

restarting 2-631

saving the configuration 2-761

shutting down 2-631

SNMP traps for VTP 2-634, 2-637

suspending 2-631

variables 2-767

VLAN Trunking Protocol

See VTP

VM mode 2-611

VMPS

configuring servers 2-785

displaying 2-627

error recovery timer 2-141

reconfirming dynamic VLAN assignments 2-782

vmps reconfirm (global configuration) command 2-783

vmps reconfirm (privileged EXEC) command 2-782

vmps retry command 2-784

vmps server command 2-785

voice VLAN

configuring 2-741, 2-742

setting port priority 2-731

VQP

and dynamic-access ports 2-710

clearing client statistics 2-67

displaying information 2-627

per-server retry count 2-784

reconfirmation interval 2-783

reconfirming dynamic VLAN assignments 2-782

VTP

changing characteristics 2-787

clearing pruning counters 2-68

configuring

domain name 2-787, 2-791

file name 2-787

mode 2-787, 2-791

password 2-787, 2-791

counters display fields 2-631

displaying information 2-630

enabling

pruning 2-787, 2-791

tunneling for 2-241

Version 2 2-787, 2-791

mode 2-787, 2-791

pruning 2-787, 2-791

saving the configuration 2-761, 2-771

statistics 2-630

status 2-630

status display fields 2-633

vtp (global configuration) command 2-787

vtp (VLAN configuration) command 2-791

W

wireless controller, accessing 2-394

wireless controller switch. B-102

X

XENPAK module serial EERPOM information 2-430, 2-470