Software Configuration Guide
Page 7
... 6-24 Using the CLI to Manage Switch Clusters 6-25 Catalyst 1900 and Catalyst 2820 CLI Considerations 6-25 Using SNMP to Manage Switch Clusters 6-26 Administering the Switch 7-1 Preventing Unauthorized Access to Your Switch 7-1 Protecting Access to Privileged EXEC Commands 7-2 Default Password and Privilege Level Configuration 7-2 Setting or Changing a Static Enable Password 7-3 Protecting Enable and Enable Secret Passwords with Encryption 7-4 Disabling Password Recovery...
... 6-24 Using the CLI to Manage Switch Clusters 6-25 Catalyst 1900 and Catalyst 2820 CLI Considerations 6-25 Using SNMP to Manage Switch Clusters 6-26 Administering the Switch 7-1 Preventing Unauthorized Access to Your Switch 7-1 Protecting Access to Privileged EXEC Commands 7-2 Default Password and Privilege Level Configuration 7-2 Setting or Changing a Static Enable Password 7-3 Protecting Enable and Enable Secret Passwords with Encryption 7-4 Disabling Password Recovery...
Software Configuration Guide
Page 21
...Traffic by Using Class Maps 26-20 Classifying, Policing, and Marking Traffic by Using Policy Maps 26-21 Configuring CoS Maps 26-24 Configuring the CoS-to-DSCP Map 26-25 Configuring the DSCP-to-CoS Map 26-26 Configuring CoS and WRR 26-27 Configuring...PAgP Learn Method and Priority 27-11 Displaying EtherChannel and PAgP Status 27-11 Troubleshooting 28-1 LRE Statistics 28-1 Using Recovery Procedures 28-6 Recovering from Corrupted Software 28-6 Recovering from a Lost or Forgotten Password 28-6 Recovering from a Command Switch Failure 28-8 Catalyst 2950 Desktop Switch Software Configuration Guide xxi
...Traffic by Using Class Maps 26-20 Classifying, Policing, and Marking Traffic by Using Policy Maps 26-21 Configuring CoS Maps 26-24 Configuring the CoS-to-DSCP Map 26-25 Configuring the DSCP-to-CoS Map 26-26 Configuring CoS and WRR 26-27 Configuring...PAgP Learn Method and Priority 27-11 Displaying EtherChannel and PAgP Status 27-11 Troubleshooting 28-1 LRE Statistics 28-1 Using Recovery Procedures 28-6 Recovering from Corrupted Software 28-6 Recovering from a Lost or Forgotten Password 28-6 Recovering from a Command Switch Failure 28-8 Catalyst 2950 Desktop Switch Software Configuration Guide xxi
Software Configuration Guide
Page 150
...the switch command reference. 65727 6-24 Catalyst 2950 Desktop Switch Software Configuration Guide 78-14982-01 Select View > Topology to display the cluster topology and to the online help. For information about creating and managing clusters, refer to view link information (see the "Using Recovery Procedures....10.10.9 13.0(5)XU If you can also display port and switch statistics from a member switch. Select Reports > Inventory to verify the cluster, you lose connectivity with a member switch or if a command switch fails, see Figure 3-8 on page 28-6. Instead of using CMS...
...the switch command reference. 65727 6-24 Catalyst 2950 Desktop Switch Software Configuration Guide 78-14982-01 Select View > Topology to display the cluster topology and to the online help. For information about creating and managing clusters, refer to view link information (see the "Using Recovery Procedures....10.10.9 13.0(5)XU If you can also display port and switch statistics from a member switch. Select Reports > Inventory to verify the cluster, you lose connectivity with a member switch or if a command switch fails, see Figure 3-8 on page 28-6. Instead of using CMS...
Software Configuration Guide
Page 151
... session accesses the member-switch CLI at privilege level 15. Catalyst 1900 and Catalyst 2820 CLI Considerations If your switch cluster has Catalyst 1900 and Catalyst 2820 switches running Enterprise Edition Software. Note The Catalyst 1900 and Catalyst 2820 CLI is at ...switch for a Telnet session, see the "Disabling Password Recovery" section on the member switch to return to access the member switch CLI. Chapter 6 Clustering Switches Using the CLI to Manage Switch Clusters Using the CLI to Manage Switch Clusters You can configure member switches from the command-switch CLI: switch...
... session accesses the member-switch CLI at privilege level 15. Catalyst 1900 and Catalyst 2820 CLI Considerations If your switch cluster has Catalyst 1900 and Catalyst 2820 switches running Enterprise Edition Software. Note The Catalyst 1900 and Catalyst 2820 CLI is at ...switch for a Telnet session, see the "Disabling Password Recovery" section on the member switch to return to access the member switch CLI. Chapter 6 Clustering Switches Using the CLI to Manage Switch Clusters Using the CLI to Manage Switch Clusters You can configure member switches from the command-switch CLI: switch...
Software Configuration Guide
Page 154
... and Enable Secret Passwords with Encryption, page 7-4 • Disabling Password Recovery, page 7-5 • Setting a Telnet Password for a Terminal Line, page 7-6 • Configuring Username and Password Pairs, page 7-7 • Configuring Multiple Privilege Levels, page 7-8 Default Password and Privilege Level Configuration Table 7-1 shows the default password and privilege level configuration. For more information, see the "Controlling Switch Access with TACACS...
... and Enable Secret Passwords with Encryption, page 7-4 • Disabling Password Recovery, page 7-5 • Setting a Telnet Password for a Terminal Line, page 7-6 • Configuring Username and Password Pairs, page 7-7 • Configuring Multiple Privilege Levels, page 7-8 Default Password and Privilege Level Configuration Table 7-1 shows the default password and privilege level configuration. For more information, see the "Controlling Switch Access with TACACS...
Software Configuration Guide
Page 157
... of this level. Do not keep a backup copy of the VLAN database file on Catalyst 2950 LRE switches; With password recovery disabled, you enable password encryption, it is not available for a specific privilege level. Use the privilege level global... or Forgotten Password" section on page 7-8. The password recovery disable feature for Catalyst 2950 LRE switches allows an end user with physical access to the switch to all passwords including username passwords, authentication key passwords, the privileged command password, and console and virtual terminal line passwords. For more...
... of this level. Do not keep a backup copy of the VLAN database file on Catalyst 2950 LRE switches; With password recovery disabled, you enable password encryption, it is not available for a specific privilege level. Use the privilege level global... or Forgotten Password" section on page 7-8. The password recovery disable feature for Catalyst 2950 LRE switches allows an end user with physical access to the switch to all passwords including username passwords, authentication key passwords, the privileged command password, and console and virtual terminal line passwords. For more...
Software Configuration Guide
Page 158
... possible Telnet sessions. Catalyst 2950 Desktop Switch Software Configuration Guide 7-6 78-14982-01 To re-enable password recovery, use . Note Disabling password recovery does not work if you have set the switch to start with emulation software to the switch console port. Enter global configuration mode. For password, specify a string from 1 to privileged EXEC mode. Disable password recovery. The 0 and 15...
... possible Telnet sessions. Catalyst 2950 Desktop Switch Software Configuration Guide 7-6 78-14982-01 To re-enable password recovery, use . Note Disabling password recovery does not work if you have set the switch to start with emulation software to the switch console port. Enter global configuration mode. For password, specify a string from 1 to privileged EXEC mode. Disable password recovery. The 0 and 15...
Software Configuration Guide
Page 568
... 2 Set the line speed on the emulation software to the switch hardware installation guide. For more information, refer to 9600 baud. 28-6 Catalyst 2950 Desktop Switch Software Configuration Guide 78-14982-01 switch# copy xmodem: flash:image_filename.bin When the XMODEM request appears... to Flash memory. In all of these steps if you have forgotten or lost the switch password. Using Recovery Procedures Chapter 28 Troubleshooting Using Recovery Procedures These recovery procedures require that support the XMODEM protocol, and this procedure is largely dependent on the ...
... 2 Set the line speed on the emulation software to the switch hardware installation guide. For more information, refer to 9600 baud. 28-6 Catalyst 2950 Desktop Switch Software Configuration Guide 78-14982-01 switch# copy xmodem: flash:image_filename.bin When the XMODEM request appears... to Flash memory. In all of these steps if you have forgotten or lost the switch password. Using Recovery Procedures Chapter 28 Troubleshooting Using Recovery Procedures These recovery procedures require that support the XMODEM protocol, and this procedure is largely dependent on the ...
Software Configuration Guide
Page 569
...text flash:config.text.old Step 10 Boot the system: switch# boot You are prompted to its original name: switch# rename flash:config.text.old flash:config.text 78-14982-01 Catalyst 2950 Desktop Switch Software Configuration Guide 28-7 You can release the Mode ... that particular speed. Several lines of information about the software appear, as in this example: switch# dir flash: The switch file system is displayed: Directory of the switch console port. This file contains the password definition. Chapter 28 Troubleshooting Using Recovery Procedures Step 3 Step 4 Unplug the...
...text flash:config.text.old Step 10 Boot the system: switch# boot You are prompted to its original name: switch# rename flash:config.text.old flash:config.text 78-14982-01 Catalyst 2950 Desktop Switch Software Configuration Guide 28-7 You can release the Mode ... that particular speed. Several lines of information about the software appear, as in this example: switch# dir flash: The switch file system is displayed: Directory of the switch console port. This file contains the password definition. Chapter 28 Troubleshooting Using Recovery Procedures Step 3 Step 4 Unplug the...
Software Configuration Guide
Page 570
... commands to the confirmation prompts. If you must install a new command switch. Using Recovery Procedures Chapter 28 Troubleshooting Step 13 Copy the configuration file into memory: switch# copy flash:config.text system:running -config]? This section describes two solutions... 28-8 Catalyst 2950 Desktop Switch Software Configuration Guide 78-14982-01 Enter global configuration mode: switch# config terminal Step 15 Change the password: switch(config)# enable secret or switch(config)# enable password Step 16 Return to privileged EXEC mode: switch(config)# exit switch# Step ...
... commands to the confirmation prompts. If you must install a new command switch. Using Recovery Procedures Chapter 28 Troubleshooting Step 13 Copy the configuration file into memory: switch# copy flash:config.text system:running -config]? This section describes two solutions... 28-8 Catalyst 2950 Desktop Switch Software Configuration Guide 78-14982-01 Enter global configuration mode: switch# config terminal Step 15 Change the password: switch(config)# enable secret or switch(config)# enable password Step 16 Return to privileged EXEC mode: switch(config)# exit switch# Step ...
Software Configuration Guide
Page 571
... EXEC mode: Switch> enable Switch# Step 5 Step 6 Enter the password of the failed command switch. Enter global configuration mode. Switch# configure terminal Enter configuration commands, one per line. End with a command-capable member in place of the system, extended setup will ask you to start the setup program. 78-14982-01 Catalyst 2950 Desktop Switch Software Configuration...
... EXEC mode: Switch> enable Switch# Step 5 Step 6 Enter the password of the failed command switch. Enter global configuration mode. Switch# configure terminal Enter configuration commands, one per line. End with a command-capable member in place of the system, extended setup will ask you to start the setup program. 78-14982-01 Catalyst 2950 Desktop Switch Software Configuration...
Software Configuration Guide
Page 572
...Recovery Procedures Chapter 28 Troubleshooting Step 11 Step 12 Step 13 Step 14 Step 15 Step 16 Step 17 Step 18 Respond to the cluster, and press Return. Do not use -n, where n is limited to the switch... 5 Insert the new switch in square brackets '[]'. 28-10 Catalyst 2950 Desktop Switch Software Configuration Guide 78-14982...switch prompt, enter privileged EXEC mode: Switch> enable Switch# Enter the password of the failed command switch. System Configuration Dialog --- Continue with a switch that on the new command switch. When prompted for IP address information and passwords...
...Recovery Procedures Chapter 28 Troubleshooting Step 11 Step 12 Step 13 Step 14 Step 15 Step 16 Step 17 Step 18 Respond to the cluster, and press Return. Do not use -n, where n is limited to the switch... 5 Insert the new switch in square brackets '[]'. 28-10 Catalyst 2950 Desktop Switch Software Configuration Guide 78-14982...switch prompt, enter privileged EXEC mode: Switch> enable Switch# Enter the password of the failed command switch. System Configuration Dialog --- Continue with a switch that on the new command switch. When prompted for IP address information and passwords...
Software Configuration Guide
Page 573
...passwords, enter the passwords of the new command switch. When the initial configuration displays, verify that it can prevent the command switch from Lost Member Connectivity Some configurations can be the command switch: Continue with a member, and the member switch is forwarding packets normally, check for these conflicts: • A member switch (Catalyst 3550, Catalyst 3500 XL, Catalyst 2950, Catalyst 2900 XL, Catalyst... switches to add to 25 alphanumeric characters, is case sensitive, allows spaces, but ignores leading spaces. Chapter 28 Troubleshooting Using Recovery ...
...passwords, enter the passwords of the new command switch. When the initial configuration displays, verify that it can prevent the command switch from Lost Member Connectivity Some configurations can be the command switch: Continue with a member, and the member switch is forwarding packets normally, check for these conflicts: • A member switch (Catalyst 3550, Catalyst 3500 XL, Catalyst 2950, Catalyst 2900 XL, Catalyst... switches to add to 25 alphanumeric characters, is case sensitive, allows spaces, but ignores leading spaces. Chapter 28 Troubleshooting Using Recovery ...
Software Configuration Guide
Page 621
... 6-15 LRE profiles 6-18 management VLAN 6-18 passwords 6-16 RADIUS 6-17 SNMP 6-16, 6-26 switch-specific features 6-19 TACACS+ 6-17 redundancy 6-22 troubleshooting 6-24 verifying 6-24 See also candidate switch, command switch, cluster standby group, member switch, and standby command switch cluster standby group automatic recovery 6-15 considerations 6-13 creating 6-22 78-14982-01...Wave Division Multiplexer See CWDM GBIC modules Collapse Cluster view 3-11 command-line interface See CLI command modes 2-1 commands abbreviating 2-5 Catalyst 2950 Desktop Switch Software Configuration Guide IN-5
... 6-15 LRE profiles 6-18 management VLAN 6-18 passwords 6-16 RADIUS 6-17 SNMP 6-16, 6-26 switch-specific features 6-19 TACACS+ 6-17 redundancy 6-22 troubleshooting 6-24 verifying 6-24 See also candidate switch, command switch, cluster standby group, member switch, and standby command switch cluster standby group automatic recovery 6-15 considerations 6-13 creating 6-22 78-14982-01...Wave Division Multiplexer See CWDM GBIC modules Collapse Cluster view 3-11 command-line interface See CLI command modes 2-1 commands abbreviating 2-5 Catalyst 2950 Desktop Switch Software Configuration Guide IN-5
Software Configuration Guide
Page 622
...switch community strings configuring 6-16, 24-7 for cluster switches 24-4 in clusters 6-16 overview 24-4 SNMP 6-16 configuration controller for LRE upgrade 10-17 global LRE 10-17 configuration, switch saving changes 3-33 configuration, switch, saving changes 3-33 configuration conflicts, recovering from lost member connectivity 28-11 configuration examples, network IN-6 Catalyst 2950 Desktop Switch... copying B-5 limiting TFTP server access 24-13 obtaining with DHCP 4-7 password recovery disable considerations 7-5 system contact and location information 24-13 types and location B-10 uploading...
...switch community strings configuring 6-16, 24-7 for cluster switches 24-4 in clusters 6-16 overview 24-4 SNMP 6-16 configuration controller for LRE upgrade 10-17 global LRE 10-17 configuration, switch saving changes 3-33 configuration, switch, saving changes 3-33 configuration conflicts, recovering from lost member connectivity 28-11 configuration examples, network IN-6 Catalyst 2950 Desktop Switch... copying B-5 limiting TFTP server access 24-13 obtaining with DHCP 4-7 password recovery disable considerations 7-5 system contact and location information 24-13 types and location B-10 uploading...
Software Configuration Guide
Page 634
...passwords default configuration 7-2 disabling recovery of 7-5 encrypting 7-4 in clusters 6-16, 6-20 in CMS 3-30 overview 7-1 recovery of 28-6 setting enable 7-3 enable secret 7-4 Telnet 7-6 with usernames 7-7 VTP domain 15-8 patch panel 1-16 path cost MSTP 12-18 STP 11-16 PBX 1-16 PC (passive command switch...26-3 policy maps for QoS characteristics of 26-21 configuring 26-21 described 26-6 displaying 26-28 IN-18 Catalyst 2950 Desktop Switch Software Configuration Guide POP 1-18 Port Aggregation Protocol See EtherChannel See PAgP port-based authentication authentication server defined 8-2 ...
...passwords default configuration 7-2 disabling recovery of 7-5 encrypting 7-4 in clusters 6-16, 6-20 in CMS 3-30 overview 7-1 recovery of 28-6 setting enable 7-3 enable secret 7-4 Telnet 7-6 with usernames 7-7 VTP domain 15-8 patch panel 1-16 path cost MSTP 12-18 STP 11-16 PBX 1-16 PC (passive command switch...26-3 policy maps for QoS characteristics of 26-21 configuring 26-21 described 26-6 displaying 26-28 IN-18 Catalyst 2950 Desktop Switch Software Configuration Guide POP 1-18 Port Aggregation Protocol See EtherChannel See PAgP port-based authentication authentication server defined 8-2 ...
Software Configuration Guide
Page 638
Index read-only access mode 3-31 read-write access mode 3-31 reconfirmation interval, VMPS, changing 14-30 recovery procedures 28-6 redundancy EtherChannel 27-2 STP backbone 11-8 multidrop backbone 13-5 path cost 14-23 port priority 14-21 redundant clusters See...services 7-40 overview 7-1 passwords and privilege levels 7-2 RADIUS 7-18 TACACS+ 7-10 retry count, VMPS, changing 14-30 RFC 1112, IP multicast and IGMP 17-2 1157, SNMPv1 24-2 1305, NTP 7-34 IN-22 Catalyst 2950 Desktop Switch Software Configuration Guide 1757, RMON 22-2 1901, SNMPv2C 24-2 1902 to 1907, SNMPv2 24-2 2236, IP multicast ...
Index read-only access mode 3-31 read-write access mode 3-31 reconfirmation interval, VMPS, changing 14-30 recovery procedures 28-6 redundancy EtherChannel 27-2 STP backbone 11-8 multidrop backbone 13-5 path cost 14-23 port priority 14-21 redundant clusters See...services 7-40 overview 7-1 passwords and privilege levels 7-2 RADIUS 7-18 TACACS+ 7-10 retry count, VMPS, changing 14-30 RFC 1112, IP multicast and IGMP 17-2 1157, SNMPv1 24-2 1305, NTP 7-34 IN-22 Catalyst 2950 Desktop Switch Software Configuration Guide 1757, RMON 22-2 1901, SNMPv2C 24-2 1902 to 1907, SNMPv2 24-2 2236, IP multicast ...