Software Guide
Page 2
... PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. NOTWITHSTANDING ANY OTHER WARRANTY HEREIN, ALL DOCUMENT FILES AND SOFTWARE OF THESE SUPPLIERS ARE PROVIDED "AS IS" WITH ALL FAULTS. and certain other company. (0304R) Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide Copyright © 2000-2003, Cisco Systems, Inc. CISCO AND THE ABOVE...
... PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. NOTWITHSTANDING ANY OTHER WARRANTY HEREIN, ALL DOCUMENT FILES AND SOFTWARE OF THESE SUPPLIERS ARE PROVIDED "AS IS" WITH ALL FAULTS. and certain other company. (0304R) Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide Copyright © 2000-2003, Cisco Systems, Inc. CISCO AND THE ABOVE...
Software Guide
Page 19
...-8 Disabling 802.1x Globally 31-8 Enabling and Initializing 802.1x Authentication for Individual Ports 31-9 Setting and Enabling Automatic Reauthentication of the Host 31-10 Manually Reauthenticating the Host 31-10 Enabling Multiple Hosts 31-11 Disabling Multiple Hosts 31-11 Setting the Quiet Period 31-11 Setting the Authenticator-to...-14 Setting the Back-End Authenticator-to-Host Frame-Retransmission Number 31-14 Resetting the 802.1x Configuration Parameters to the Default Values 31-15 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 xix
...-8 Disabling 802.1x Globally 31-8 Enabling and Initializing 802.1x Authentication for Individual Ports 31-9 Setting and Enabling Automatic Reauthentication of the Host 31-10 Manually Reauthenticating the Host 31-10 Enabling Multiple Hosts 31-11 Disabling Multiple Hosts 31-11 Setting the Quiet Period 31-11 Setting the Authenticator-to...-14 Setting the Back-End Authenticator-to-Host Frame-Retransmission Number 31-14 Resetting the 802.1x Configuration Parameters to the Default Values 31-15 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 xix
Software Guide
Page 43
You can load a system image manually from Flash memory or the network interface (me1). Enter the ? The display on 1999.03.29 21:04:04 H/W Revisions: Meteor: 4 Comet: 8... to prevent autobooting. switch port 0: . command to the Catalyst 4500 Series, Catalyst 2948G, and Catalyst 2980G Switches Command Reference. WS-X4012 bootrom version 4.5(1), built on the Catalyst 4912G, the Catalyst 2948G, and the Catalyst 2980G switches are in TempFs Board type is WS-X4012 DiagBootMode value is set to enter ROM monitor mode. switch registers: . switch port 3: . switch port 11: ....
You can load a system image manually from Flash memory or the network interface (me1). Enter the ? The display on 1999.03.29 21:04:04 H/W Revisions: Meteor: 4 Comet: 8... to prevent autobooting. switch port 0: . command to the Catalyst 4500 Series, Catalyst 2948G, and Catalyst 2980G Switches Command Reference. WS-X4012 bootrom version 4.5(1), built on the Catalyst 4912G, the Catalyst 2948G, and the Catalyst 2980G switches are in TempFs Board type is WS-X4012 DiagBootMode value is set to enter ROM monitor mode. switch registers: . switch port 3: . switch port 11: ....
Software Guide
Page 47
... time Option overload Client-identifier TFTP server name 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 3-3 Understanding DHCP In software release 5.2 and later releases, the switch can obtain the subnet mask, broadcast address, default gateway address,...is received from the DHCP server: • Manual allocation-The network administrator maps the switch MAC address to the sc0 interface IP address, the switch can obtain an IP address and other information. The switch always requests an infinite lease time in the...
... time Option overload Client-identifier TFTP server name 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 3-3 Understanding DHCP In software release 5.2 and later releases, the switch can obtain the subnet mask, broadcast address, default gateway address,...is received from the DHCP server: • Manual allocation-The network administrator maps the switch MAC address to the sc0 interface IP address, the switch can obtain an IP address and other information. The switch always requests an infinite lease time in the...
Software Guide
Page 53
Connected to 172.20.52.38. To use DHCP or RARP to obtain an IP address for the switch, perform this step is necessary only if using the manual allocation method.) show interface sl0: flags=51 slip 10.1.1.1 dest 10.1.1.2 sc0: flags=63 vlan 522 inet 172.... Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 3-9 Obtain the last address in the MAC address range for the console port. Enter privileged mode on page 3-2. Cisco Systems, Inc. Console> (enable) Using DHCP or RARP to Obtain an IP Address Configuration Note For complete information on how the switch ...
Connected to 172.20.52.38. To use DHCP or RARP to obtain an IP address for the switch, perform this step is necessary only if using the manual allocation method.) show interface sl0: flags=51 slip 10.1.1.1 dest 10.1.1.2 sc0: flags=63 vlan 522 inet 172.... Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 3-9 Obtain the last address in the MAC address range for the console port. Enter privileged mode on page 3-2. Cisco Systems, Inc. Console> (enable) Using DHCP or RARP to Obtain an IP Address Configuration Note For complete information on how the switch ...
Software Guide
Page 54
...:0c:5a:8f:ff Sending DHCP packet with address: 00:90:0c:5a:8f:ff dhcpoffer Sending DHCP packet with the manual or automatic allocation methods.) Set the sc0 interface IP address to DNS server table as the default gateway address) are using...other options (such as backup server. Command set interface sc0 dhcp renew set interface sc0 0.0.0.0 Reset the switch. set interface sc0 dhcp release 3-10 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 Renewing and Releasing a DHCP-Assigned IP Address Chapter 3 Configuring ...
...:0c:5a:8f:ff Sending DHCP packet with address: 00:90:0c:5a:8f:ff dhcpoffer Sending DHCP packet with the manual or automatic allocation methods.) Set the sc0 interface IP address to DNS server table as the default gateway address) are using...other options (such as backup server. Command set interface sc0 dhcp renew set interface sc0 0.0.0.0 Reset the switch. set interface sc0 dhcp release 3-10 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 Renewing and Releasing a DHCP-Assigned IP Address Chapter 3 Configuring ...
Software Guide
Page 63
With the new timeout enhancement, you can manually prevent a particular port from being enabled by setting the errdisable timeout for that particular port to prevent port 3/3 from being enabled when it goes... 450 seconds: Console> (enable) set errdisable-timeout interval 450 Successfully set errdisable timeout to see if any process. Console>(enable) 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 4-7 For example, if the UniDirectional Link Detection (UDLD) detects a unidirectional link, the port shuts down at runtime by...
With the new timeout enhancement, you can manually prevent a particular port from being enabled by setting the errdisable timeout for that particular port to prevent port 3/3 from being enabled when it goes... 450 seconds: Console> (enable) set errdisable-timeout interval 450 Successfully set errdisable timeout to see if any process. Console>(enable) 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 4-7 For example, if the UniDirectional Link Detection (UDLD) detects a unidirectional link, the port shuts down at runtime by...
Software Guide
Page 77
... spanning tree. you have to be configured manually, with PAgP on one channel group at the same time. • Ports with LACP, use the show commands continue to full duplex. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-3 both PAgP... the guidelines and restrictions for configuring a port for the formation of an EtherChannel. • PAgP and LACP manage channels differently. Note Switches can be contiguous or on the same module. • Ensure that you cannot run two protocols on mode. • You can ...
... spanning tree. you have to be configured manually, with PAgP on one channel group at the same time. • Ports with LACP, use the show commands continue to full duplex. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-3 both PAgP... the guidelines and restrictions for configuring a port for the formation of an EtherChannel. • PAgP and LACP manage channels differently. Note Switches can be contiguous or on the same module. • Ensure that you cannot run two protocols on mode. • You can ...
Software Guide
Page 80
... mode. • A port in auto mode cannot form an EtherChannel with another port that is automatically assigned a unique EtherChannel ID. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-6 78-15486-01 The ID can form a single EtherChannel. Understanding Administrative Groups and EtherChannel IDs Configuring an... another port that is in desirable or auto mode. • A port in auto mode can assign an administrative group number manually or let the system software assign the next available administrative group number automatically.
... mode. • A port in auto mode cannot form an EtherChannel with another port that is automatically assigned a unique EtherChannel ID. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-6 78-15486-01 The ID can form a single EtherChannel. Understanding Administrative Groups and EtherChannel IDs Configuring an... another port that is in desirable or auto mode. • A port in auto mode can assign an administrative group number manually or let the system software assign the next available administrative group number automatically.
Software Guide
Page 81
...Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-7 When you create an EtherChannel port bundle, an administrative group is defined automatically. Port(s) 3/5-6 channel mode set port channel 3/5-6 on 57 835 Port Device-ID Port-ID Platform 3/5 069003103(5500) 3/5 WS-C4000 3/6 069003103(5500) 3/6 WS...privileged mode: Step 1 Step 2 Step 3 Task If you are unsure which ports you can define EtherChannel administrative groups manually to identify groups of ports that is not already assigned to on | off | desirable | auto} [silent | ...
...Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-7 When you create an EtherChannel port bundle, an administrative group is defined automatically. Port(s) 3/5-6 channel mode set port channel 3/5-6 on 57 835 Port Device-ID Port-ID Platform 3/5 069003103(5500) 3/5 WS-C4000 3/6 069003103(5500) 3/6 WS...privileged mode: Step 1 Step 2 Step 3 Task If you are unsure which ports you can define EtherChannel administrative groups manually to identify groups of ports that is not already assigned to on | off | desirable | auto} [silent | ...
Software Guide
Page 90
...(enable) show port channel Port Status Channel Channel Neighbor Neighbor mode status device port 2/1 connected on channel WS-C4003 JAB023806LN( 3/1 2/2 connected on channel WS-C4003 JAB023806LN( 3/2 Switch_A> (enable) Switch_B> (enable) show port channel Port Status Channel Channel Neighbor...mode to handle channeling, use LACP. If you may manually turn channeling off Description Mode that prevents the port from channeling. 6-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 Spanning tree...
...(enable) show port channel Port Status Channel Channel Neighbor Neighbor mode status device port 2/1 connected on channel WS-C4003 JAB023806LN( 3/1 2/2 connected on channel WS-C4003 JAB023806LN( 3/2 Switch_A> (enable) Switch_B> (enable) show port channel Port Status Channel Channel Neighbor...mode to handle channeling, use LACP. If you may manually turn channeling off Description Mode that prevents the port from channeling. 6-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 Spanning tree...
Software Guide
Page 91
... the port priority to decide which ports to administrative key values. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-17 If LACP is also used during negotiation with other ports. Port physical characteristics, such as...system priority. Configuration constraints that you may configure four ports in a channel using LACP active mode and the remaining four ports in a manually configured channel using the on page 6-19). The administrative key defines the ability of compatible ports in a channel, up to aggregate with...
... the port priority to decide which ports to administrative key values. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 6-17 If LACP is also used during negotiation with other ports. Port physical characteristics, such as...system priority. Configuration constraints that you may configure four ports in a channel using LACP active mode and the remaining four ports in a manually configured channel using the on page 6-19). The administrative key defines the ability of compatible ports in a channel, up to aggregate with...
Software Guide
Page 100
... on which the frame is selected. You can also manually assign port costs between 1-65535. A MAC frame conveying a BPDU sends the switch group address to the root. • A port for each switch is transmitted receive the BPDU. All switches connected to transmit data. The short method uses a ... shows the default port cost values that provides the best path from the transmitting port • The identifier of the switch ports, you specify the long method. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-4 78-15486-01
... on which the frame is selected. You can also manually assign port costs between 1-65535. A MAC frame conveying a BPDU sends the switch group address to the root. • A port for each switch is transmitted receive the BPDU. All switches connected to transmit data. The short method uses a ... shows the default port cost values that provides the best path from the transmitting port • The identifier of the switch ports, you specify the long method. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-4 78-15486-01
Software Guide
Page 101
...200000000 1 to 200000000 1 to 200000000 Calculating the Port Cost for new topology information to propagate through the switches in the LAN before they can take place in changes to the cost of the spanning tree topology. ... costs is to divide the bandwidth of these states: • Blocking 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-5 You can create temporary data loops. Recalculation may not be... to the forwarding state, it can also manually assign port costs between 1-200,000,000.
...200000000 1 to 200000000 1 to 200000000 Calculating the Port Cost for new topology information to propagate through the switches in the LAN before they can take place in changes to the cost of the spanning tree topology. ... costs is to divide the bandwidth of these states: • Blocking 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-5 You can create temporary data loops. Recalculation may not be... to the forwarding state, it can also manually assign port costs between 1-200,000,000.
Software Guide
Page 114
...region. • Revision number-An unsigned 16-bit number that ranges from the pseudobridge's ports have different bridge identifiers. In a Catalyst 4500 series switch running MST, IST (instance 0) corresponds to different VLANs may have significantly different message ages. Instance 0 is mandatory and is made... to CST. In a Catalyst -4500 series switch running PVST+, the VLAN 1 spanning tree corresponds to the configuration. Note You must set and update the revision number manually, because it does not auto-increment each hop, the difference in...
...region. • Revision number-An unsigned 16-bit number that ranges from the pseudobridge's ports have different bridge identifiers. In a Catalyst 4500 series switch running MST, IST (instance 0) corresponds to different VLANs may have significantly different message ages. Instance 0 is mandatory and is made... to CST. In a Catalyst -4500 series switch running PVST+, the VLAN 1 spanning tree corresponds to the configuration. Note You must set and update the revision number manually, because it does not auto-increment each hop, the difference in...
Software Guide
Page 115
... MST BPDUs. The value is mapped. If two MST regions are redundantly connected, all the bridges inside the region must configure each byte manually. their state is either an SST bridge or a bridge with different MST configurations, the MST regions do the following : • An...1D), or another MST region is on the LAN can take up any port role except a backup port role. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-19 All the bridges on the boundary if it is a boundary port. This situation introduces a ...
... MST BPDUs. The value is mapped. If two MST regions are redundantly connected, all the bridges inside the region must configure each byte manually. their state is either an SST bridge or a bridge with different MST configurations, the MST regions do the following : • An...1D), or another MST region is on the LAN can take up any port role except a backup port role. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-19 All the bridges on the boundary if it is a boundary port. This situation introduces a ...
Software Guide
Page 133
...8226; You can only map Ethernet VLANs to MISTP instances. • At least one VLAN in the instance must manually remove the incorrect mapping(s) from the root switch. To map a VLAN to an MISTP instance, perform this task in conflict. Verify that instance. This command ...to more than one entry is mapped. The remaining entry on the list becomes the official mapping. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-37 Command set vlan vlan mistp-instance instance show spantree conflicts command to determine to which...
...8226; You can only map Ethernet VLANs to MISTP instances. • At least one VLAN in the instance must manually remove the incorrect mapping(s) from the root switch. To map a VLAN to an MISTP instance, perform this task in conflict. Verify that instance. This command ...to more than one entry is mapped. The remaining entry on the list becomes the official mapping. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 7-37 Command set vlan vlan mistp-instance instance show spantree conflicts command to determine to which...
Software Guide
Page 158
..., instead of whether PortFast is received on nontrunking ports connecting two switches, spanning tree loops can occur because BPDUs are connected to invalid configurations because the administrator must manually put the interface back in the forwarding state immediately, instead of an...BPDU filtering, it only on ports that connect end stations to switches. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 8-2 78-15486-01 When the BPDU guard feature is on the switch, spanning tree places ports in service. When the Forward Delay ...
..., instead of whether PortFast is received on nontrunking ports connecting two switches, spanning tree loops can occur because BPDUs are connected to invalid configurations because the administrator must manually put the interface back in the forwarding state immediately, instead of an...BPDU filtering, it only on ports that connect end stations to switches. Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 8-2 78-15486-01 When the BPDU guard feature is on the switch, spanning tree places ports in service. When the Forward Delay ...
Software Guide
Page 192
...domain, it as the new primary server. one specific VTP instance. 9-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 In VTP version 3, you manually designate it will not propagate its configuration until you are the result of ...is added to the instance; Understanding How VTP Version 3 Works Figure 9-4 VTP Version 3: Partitioned VTP Domain Domain Cisco Primary Server X Domain Cisco Primary Server Y Chapter 9 Configuring VTP 94282 Partitions exist because of discrepancies in the domain configuration that has been ...
...domain, it as the new primary server. one specific VTP instance. 9-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 In VTP version 3, you manually designate it will not propagate its configuration until you are the result of ...is added to the instance; Understanding How VTP Version 3 Works Figure 9-4 VTP Version 3: Partitioned VTP Domain Domain Cisco Primary Server X Domain Cisco Primary Server Y Chapter 9 Configuring VTP 94282 Partitions exist because of discrepancies in the domain configuration that has been ...
Software Guide
Page 208
Port VLAN membership on the switch is known as Logically Defined Networks Cisco router Catalyst 4000 Engineering VLAN Marketing VLAN Fast Ethernet Catalyst 4000 Catalyst 4000 Accounting VLAN Floor 3 Floor 2 43990 Floor 1 VLANs are overwritten. When you can be assigned to any VLAN, so that you assign switch ports to the same VLAN. If you must be...
Port VLAN membership on the switch is known as Logically Defined Networks Cisco router Catalyst 4000 Engineering VLAN Marketing VLAN Fast Ethernet Catalyst 4000 Catalyst 4000 Accounting VLAN Floor 3 Floor 2 43990 Floor 1 VLANs are overwritten. When you can be assigned to any VLAN, so that you assign switch ports to the same VLAN. If you must be...