Software Guide
Page 2
... DAMAGES, INCLUDING, WITHOUT LIMITATION, LOST PROFITS OR LOSS OR DAMAGE TO DATA ARISING OUT OF THE USE OR INABILITY TO USE THIS MANUAL, EVEN IF CISCO OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. Changing the Way We Work, Live, Play, and Learn, and... public domain version of the word partner does not imply a partnership relationship between Cisco and any other company. (0304R) Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide Copyright © 2000-2003, Cisco Systems, Inc. and/or its affiliates in this document or Web site are ...
... DAMAGES, INCLUDING, WITHOUT LIMITATION, LOST PROFITS OR LOSS OR DAMAGE TO DATA ARISING OUT OF THE USE OR INABILITY TO USE THIS MANUAL, EVEN IF CISCO OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. Changing the Way We Work, Live, Play, and Learn, and... public domain version of the word partner does not imply a partnership relationship between Cisco and any other company. (0304R) Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide Copyright © 2000-2003, Cisco Systems, Inc. and/or its affiliates in this document or Web site are ...
Software Guide
Page 19
...Message Exchange 31-3 Ports in Authorized and Unauthorized States 31-4 Authentication Server 31-5 802.1x Parameters Configurable on the Switch 31-6 802.1x VLAN Assignment Using a RADIUS Server 31-6 Authentication Default Configuration 31-7 Authentication Configuration Guidelines 31-8 Configuring 802....Authentication on the Switch 31-8 Enabling 802.1x Globally 31-8 Disabling 802.1x Globally 31-8 Enabling and Initializing 802.1x Authentication for Individual Ports 31-9 Setting and Enabling Automatic Reauthentication of the Host 31-10 Manually Reauthenticating the Host 31-10 Enabling Multiple Hosts ...
...Message Exchange 31-3 Ports in Authorized and Unauthorized States 31-4 Authentication Server 31-5 802.1x Parameters Configurable on the Switch 31-6 802.1x VLAN Assignment Using a RADIUS Server 31-6 Authentication Default Configuration 31-7 Authentication Configuration Guidelines 31-8 Configuring 802....Authentication on the Switch 31-8 Enabling 802.1x Globally 31-8 Disabling 802.1x Globally 31-8 Enabling and Initializing 802.1x Authentication for Individual Ports 31-9 Setting and Enabling Automatic Reauthentication of the Host 31-10 Manually Reauthenticating the Host 31-10 Enabling Multiple Hosts ...
Software Guide
Page 43
..., and Catalyst 2980G Switches Command Reference. nvram: . switch port 6: . switch port 11: . Note For complete descriptions of a Catalyst 4003 switch. WS-X4012 bootrom version 4.5(1), built on -self-test for Module 2: WS-X4148 Port status: (. = Pass, F = Fail) 1: . 2: . 3: . 4: . 5: . 6: . 7: . 9: . 10: . 11: ....switch port 3: . command to prevent autobooting. The display on -self-test for Module 1: WS-X4012 Status: (. = Pass, F = Fail) processor: . switch port 2: . switch sram: . From the ROM monitor mode, you are similar. You can load a system image manually...
..., and Catalyst 2980G Switches Command Reference. nvram: . switch port 6: . switch port 11: . Note For complete descriptions of a Catalyst 4003 switch. WS-X4012 bootrom version 4.5(1), built on -self-test for Module 2: WS-X4148 Port status: (. = Pass, F = Fail) 1: . 2: . 3: . 4: . 5: . 6: . 7: . 9: . 10: . 11: ....switch port 3: . command to prevent autobooting. The display on -self-test for Module 1: WS-X4012 Status: (. = Pass, F = Fail) processor: . switch port 2: . switch sram: . From the ROM monitor mode, you are similar. You can load a system image manually...
Software Guide
Page 47
... TFTP server name 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 3-3 The address is not, requests are not sent. The switch broadcasts a DHCPDISCOVER message 1 to 10 seconds after all the supported options that are specified in the DHCPDISCOVER message. If... sc0 and me1 interfaces are unconfigured (IP address 0.0.0.0), the me1 interface is received from the DHCP server: • Manual allocation-The network administrator maps the switch MAC address to an IP address at the end of this period, and the...
... TFTP server name 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 3-3 The address is not, requests are not sent. The switch broadcasts a DHCPDISCOVER message 1 to 10 seconds after all the supported options that are specified in the DHCPDISCOVER message. If... sc0 and me1 interfaces are unconfigured (IP address 0.0.0.0), the me1 interface is received from the DHCP server: • Manual allocation-The network administrator maps the switch MAC address to an IP address at the end of this period, and the...
Software Guide
Page 53
... only if using the manual allocation method.) show interface sl0: flags=51 slip 10.1.1.1 dest 10.1.1.2 sc0: flags=63 vlan 522 inet 172.20.52.38 netmask 255.255.255.240 broadcast 172.20.52.7 me1: flags=62 inet 10.1.1.100 netmask 255.255.255.0 broadcast 10.1.1.255 Console> (enable)...Console> (enable) Using DHCP or RARP to Obtain an IP Address Configuration Note For complete information on page 3-2. Cisco Systems, Inc. Console> (enable) slip detach SLIP detached on the switch. To use DHCP or RARP to configure SLIP on the - network. Command telnet {host_name | ip_addr} enable ...
... only if using the manual allocation method.) show interface sl0: flags=51 slip 10.1.1.1 dest 10.1.1.2 sc0: flags=63 vlan 522 inet 172.20.52.38 netmask 255.255.255.240 broadcast 172.20.52.7 me1: flags=62 inet 10.1.1.100 netmask 255.255.255.0 broadcast 10.1.1.255 Console> (enable)...Console> (enable) Using DHCP or RARP to Obtain an IP Address Configuration Note For complete information on page 3-2. Cisco Systems, Inc. Console> (enable) slip detach SLIP detached on the switch. To use DHCP or RARP to configure SLIP on the - network. Command telnet {host_name | ip_addr} enable ...
Software Guide
Page 54
...7 Task Command Add an entry for IP address assignment, you are using DHCP for each switch in the DHCP, BOOTP, or RARP - set interface sc0 dhcp release 3-10 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 NTP server 172.16.25.253 added NTP ...When the switch reboots, confirm that other IP parameters according to the contents of the DHCP offer: Console> (enable) Sending RARP request with address 00:90:0c:5a:8f:ff Sending DHCP packet with address: 00:90:0c:5a:8f:ff dhcpoffer Sending DHCP packet with the manual or ...
...7 Task Command Add an entry for IP address assignment, you are using DHCP for each switch in the DHCP, BOOTP, or RARP - set interface sc0 dhcp release 3-10 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 NTP server 172.16.25.253 added NTP ...When the switch reboots, confirm that other IP parameters according to the contents of the DHCP offer: Console> (enable) Sending RARP request with address 00:90:0c:5a:8f:ff Sending DHCP packet with address: 00:90:0c:5a:8f:ff dhcpoffer Sending DHCP packet with the manual or ...
Software Guide
Page 63
However, because the NVRAM configuration for the port is enabled (you can manually prevent a particular port from being enabled by setting the errdisable timeout for that particular port to disable; Note The timeout enhancement does not ... example, if the UniDirectional Link Detection (UDLD) detects a unidirectional link, the port shuts down at runtime by default. Chapter 4 Configuring Ethernet and Fast Ethernet Switching Configuring Ethernet and Fast Ethernet Ports This example shows how to display the per-port debounce timer settings: Console> (enable) show port debounce Port Debounce...
However, because the NVRAM configuration for the port is enabled (you can manually prevent a particular port from being enabled by setting the errdisable timeout for that particular port to disable; Note The timeout enhancement does not ... example, if the UniDirectional Link Detection (UDLD) detects a unidirectional link, the port shuts down at runtime by default. Chapter 4 Configuring Ethernet and Fast Ethernet Switching Configuring Ethernet and Fast Ethernet Ports This example shows how to display the per-port debounce timer settings: Console> (enable) show port debounce Port Debounce...
Software Guide
Page 77
...nonchannel port. the ports do not display the channel. you have to be configured manually, with different port path costs, set back to full duplex. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-3 With LACP, when all the ports in an ...in the on mode. • You can form an EtherChannel as long as they are otherwise compatibly configured. both PAgP and LACP. Note Switches can be contiguous or on the same module. • Ensure that all the ports in a channel get disabled, LACP does not remove the...
...nonchannel port. the ports do not display the channel. you have to be configured manually, with different port path costs, set back to full duplex. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-3 With LACP, when all the ports in an ...in the on mode. • You can form an EtherChannel as long as they are otherwise compatibly configured. both PAgP and LACP. Note Switches can be contiguous or on the same module. • Ensure that all the ports in a channel get disabled, LACP does not remove the...
Software Guide
Page 80
...can form a single EtherChannel. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-6 78-15486-01 In addition to the ... 6-9 • Removing an EtherChannel Bundle, page 6-9 • Displaying EtherChannel Configuration Information, page 6-10 • Displaying EtherChannel Traffic Statistics, page 6-11 • Displaying EtherChannel PAgP Statistics, page 6-12...display the EtherChannel ID. You can assign an administrative group number manually or let the system software assign the next available administrative group number automatically...
...can form a single EtherChannel. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-6 78-15486-01 In addition to the ... 6-9 • Removing an EtherChannel Bundle, page 6-9 • Displaying EtherChannel Configuration Information, page 6-10 • Displaying EtherChannel Traffic Statistics, page 6-11 • Displaying EtherChannel PAgP Statistics, page 6-12...display the EtherChannel ID. You can assign an administrative group number manually or let the system software assign the next available administrative group number automatically...
Software Guide
Page 81
... 069003103(5500) 3/5 WS-C4000 3/6 069003103(5500) 3/6 WS-C4000 Console> (enable) Defining an EtherChannel Administrative Group You can define EtherChannel administrative groups manually to identify groups of... ports that is, a spanning tree topology change occurs and the ports must enter listening and learning mode before returning to forwarding mode). 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches...
... 069003103(5500) 3/5 WS-C4000 3/6 069003103(5500) 3/6 WS-C4000 Console> (enable) Defining an EtherChannel Administrative Group You can define EtherChannel administrative groups manually to identify groups of... ports that is, a spanning tree topology change occurs and the ports must enter listening and learning mode before returning to forwarding mode). 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches...
Software Guide
Page 90
...mode is negotiated, enter the show port channel Port Status Channel Channel Neighbor Neighbor mode status device port 3/1 connected on channel WS-C4003 JAB023806JR( 2/1 3/2 connected on page 6-5. Mode that use the active and passive channel modes. Table 6-2 describes the EtherChannel... port from channeling. 6-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 To start automatic EtherChannel configuration with LACP, you may manually turn channeling off . If you configure only the ports on one side ...
...mode is negotiated, enter the show port channel Port Status Channel Channel Neighbor Neighbor mode status device port 3/1 connected on channel WS-C4003 JAB023806JR( 2/1 3/2 connected on page 6-5. Mode that use the active and passive channel modes. Table 6-2 describes the EtherChannel... port from channeling. 6-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 To start automatic EtherChannel configuration with LACP, you may manually turn channeling off . If you configure only the ports on one side ...
Software Guide
Page 91
...such as data rate, duplex capability, and point-to administrative key values. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-17 You can specify the administrative key value automatically or through the CLI (see the "Specifying an ...For example, if you establish When enabled, LACP always tries to configure the maximum number of the switch that places a port into a passive negotiating state in a manually configured channel using LACP active mode and the remaining four ports in which the port responds to decide ...
...such as data rate, duplex capability, and point-to administrative key values. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-17 You can specify the administrative key value automatically or through the CLI (see the "Specifying an ...For example, if you establish When enabled, LACP always tries to configure the maximum number of the switch that places a port into a passive negotiating state in a manually configured channel using LACP active mode and the remaining four ports in which the port responds to decide ...
Software Guide
Page 100
... calculate the port cost unless you can calculate and assign lower path cost values (port costs) to the root switch is calculated for each switch. • A designated switch is transmitted receive the BPDU. Calculating the Port Cost Using the Short Method The IEEE 802.1D specification assigns 16...All switches connected to calculate the port cost. This is the port that yields values from 1-65535. BPDUs are assigned by the switch, but the receiving switch uses the information in your network to use the short method to the LAN on page 7-26. You can also manually assign...
... calculate the port cost unless you can calculate and assign lower path cost values (port costs) to the root switch is calculated for each switch. • A designated switch is transmitted receive the BPDU. Calculating the Port Cost Using the Short Method The IEEE 802.1D specification assigns 16...All switches connected to calculate the port cost. This is the port that yields values from 1-65535. BPDUs are assigned by the switch, but the receiving switch uses the information in your network to use the short method to the LAN on page 7-26. You can also manually assign...
Software Guide
Page 101
...that changes in bandwidth will not result in a switched network due to a link coming up or going down (failing). Table 7-2 Default Port Cost Values Using the Long Method Port Speed ≤ 100 kbps 1 Mbps 10 Mbps 100 Mbps 1 Gbps 10 Gbps Recommended Value 200000000 20000000 2000000 200000 20000 2000 ...by 200,000,000. Understanding Spanning Tree Port States Topology changes can also manually assign port costs between 1-200,000,000. They must wait for new topology information to propagate through the switches in the topology to the forwarding state, it can start forwarding frames. ...
...that changes in bandwidth will not result in a switched network due to a link coming up or going down (failing). Table 7-2 Default Port Cost Values Using the Long Method Port Speed ≤ 100 kbps 1 Mbps 10 Mbps 100 Mbps 1 Gbps 10 Gbps Recommended Value 200000000 20000000 2000000 200000 20000 2000 ...by 200,000,000. Understanding Spanning Tree Port States Topology changes can also manually assign port costs between 1-200,000,000. They must wait for new topology information to propagate through the switches in the topology to the forwarding state, it can start forwarding frames. ...
Software Guide
Page 114
... Common Spanning Tree 802.1Q specifies a single spanning tree for root identifiers and root path costs are the same. - In a Catalyst 4500 series switch running MST, IST (instance 0) corresponds to block the ports of all BPDUs of the SST regions. • A pseudo bridge differs from a ...contained within the pseudobridge or MST region. • Data traffic belonging to 16 instances; Note You must set and update the revision number manually, because it does not auto-increment each time a change is always present. This difference does not affect STP operation in the neighboring SST...
... Common Spanning Tree 802.1Q specifies a single spanning tree for root identifiers and root path costs are the same. - In a Catalyst 4500 series switch running MST, IST (instance 0) corresponds to block the ports of all BPDUs of the SST regions. • A pseudo bridge differs from a ...contained within the pseudobridge or MST region. • Data traffic belonging to 16 instances; Note You must set and update the revision number manually, because it does not auto-increment each time a change is always present. This difference does not affect STP operation in the neighboring SST...
Software Guide
Page 115
...IST port. A designated port knows that have the same MST configuration are redundantly connected, all the bridges inside the region must configure each byte manually. The IST port at the boundary can be the same as an unsigned integer, corresponds to zero. The value is the instance number to...MST region, bridges can take up any port role except a backup port role. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-19 If one value is different, the MST BPDU is interconnected by entering the set for the port, the ...
...IST port. A designated port knows that have the same MST configuration are redundantly connected, all the bridges inside the region must configure each byte manually. The IST port at the boundary can be the same as an unsigned integer, corresponds to zero. The value is the instance number to...MST region, bridges can take up any port role except a backup port role. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-19 If one value is different, the MST BPDU is interconnected by entering the set for the port, the ...
Software Guide
Page 133
.... • You can only map Ethernet VLANs to MISTP instances. • At least one VLAN in the instance must manually remove the incorrect mapping(s) from the root switch. The remaining entry on the list becomes the official mapping. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G... to an MISTP instance. • You cannot map a VLAN to more entries in the list are associated with the mapping of the root switches that are sending the BPDUs containing the VLAN mapping information, and the timers that instance. Chapter 7 Configuring Spanning Tree Using MISTP-PVST+ or ...
.... • You can only map Ethernet VLANs to MISTP instances. • At least one VLAN in the instance must manually remove the incorrect mapping(s) from the root switch. The remaining entry on the list becomes the official mapping. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G... to an MISTP instance. • You cannot map a VLAN to more entries in the list are associated with the mapping of the root switches that are sending the BPDUs containing the VLAN mapping information, and the timers that instance. Chapter 7 Configuring Spanning Tree Using MISTP-PVST+ or ...
Software Guide
Page 158
...connection of an unauthorized device. The BPDU guard feature provides a secure response to invalid configurations because the administrator must manually put the interface back in the forwarding state immediately, instead of waiting for the port to transition from the listening ...because these ports typically do not receive BPDUs. after you might create network loops. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 8-2 78-15486-01 Chapter 8 Configuring Spanning Tree PortFast, BPDU Guard, BPDU Filter, UplinkFast, BackboneFast...
...connection of an unauthorized device. The BPDU guard feature provides a secure response to invalid configurations because the administrator must manually put the interface back in the forwarding state immediately, instead of waiting for the port to transition from the listening ...because these ports typically do not receive BPDUs. after you might create network loops. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 8-2 78-15486-01 Chapter 8 Configuring Spanning Tree PortFast, BPDU Guard, BPDU Filter, UplinkFast, BackboneFast...
Software Guide
Page 192
...9-16. one specific VTP instance. 9-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 In VTP version 3, you manually designate it will not propagate its configuration until you are the result of a misconfiguration or...as the new primary server. Understanding How VTP Version 3 Works Figure 9-4 VTP Version 3: Partitioned VTP Domain Domain Cisco Primary Server X Domain Cisco Primary Server Y Chapter 9 Configuring VTP 94282 Partitions exist because of discrepancies in the domain configuration that has been ...
...9-16. one specific VTP instance. 9-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 In VTP version 3, you manually designate it will not propagate its configuration until you are the result of a misconfiguration or...as the new primary server. Understanding How VTP Version 3 Works Figure 9-4 VTP Version 3: Partitioned VTP Domain Domain Cisco Primary Server X Domain Cisco Primary Server Y Chapter 9 Configuring VTP 94282 Partitions exist because of discrepancies in the domain configuration that has been ...
Software Guide
Page 409
...page 27-4 • Creating a Login Banner, page 27-4 • Enabling or Disabling the "Cisco Systems Console" Telnet Login Banner, page 27-5 • Defining and Using Command Aliases, page ...; Configuring Static Routes, page 27-9 • Scheduling a System Reset, page 27-10 • Generating System Status Reports for the commands used in NVRAM (the domain name...Switches Software Configuration Guide-Release 8.1 27-1 To configure the switch manually, complete the following: • Assign the sc0 interface an IP address that identifies the device. 27 C H A P T E R Administering the Switch...
...page 27-4 • Creating a Login Banner, page 27-4 • Enabling or Disabling the "Cisco Systems Console" Telnet Login Banner, page 27-5 • Defining and Using Command Aliases, page ...; Configuring Static Routes, page 27-9 • Scheduling a System Reset, page 27-10 • Generating System Status Reports for the commands used in NVRAM (the domain name...Switches Software Configuration Guide-Release 8.1 27-1 To configure the switch manually, complete the following: • Assign the sc0 interface an IP address that identifies the device. 27 C H A P T E R Administering the Switch...