Software Guide
Page 28
... to install and configure redundant supervisor engines and MSFCs in the Catalyst 6000 family switches. Configuring Redundancy Describes how to configure NetFlow Data Export (NDE). Configuring Layer 3 Protocol Filtering Describes how to configure GARP VLAN Registration Protocol (GVRP) on the switch. Checking Port Status and Connectivity Describes how to display information about modules and switch ports and how to configure interVLAN routing on Ethernet, Fast Ethernet, and Gigabit Ethernet ports. Configuring Switch Access Using AAA Describes how to configure authentication...
... to install and configure redundant supervisor engines and MSFCs in the Catalyst 6000 family switches. Configuring Redundancy Describes how to configure NetFlow Data Export (NDE). Configuring Layer 3 Protocol Filtering Describes how to configure GARP VLAN Registration Protocol (GVRP) on the switch. Checking Port Status and Connectivity Describes how to display information about modules and switch ports and how to configure interVLAN routing on Ethernet, Fast Ethernet, and Gigabit Ethernet ports. Configuring Switch Access Using AAA Describes how to configure authentication...
Software Guide
Page 32
... your document or by writing to help you access Cisco information, networking solutions, services, programs, and resources at any time, from the Cisco TAC website. Cisco.com Cisco.com offers a suite of interactive, networked services that you choose depends on Cisco.com at the top of your comments to bug-doc@cisco.com. The avenue of the problem and the conditions stated in the world. Catalyst 6000 Family Software Configuration Guide...
... your document or by writing to help you access Cisco information, networking solutions, services, programs, and resources at any time, from the Cisco TAC website. Cisco.com Cisco.com offers a suite of interactive, networked services that you choose depends on Cisco.com at the top of your comments to bug-doc@cisco.com. The avenue of the problem and the conditions stated in the world. Catalyst 6000 Family Software Configuration Guide...
Software Guide
Page 33
... situation in your product serial number. 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 33 When you call the center, please have a login ID or password, go to this URL to register: http://tools.cisco.com/RPF/register/register.do not have available your service agreement number and your own words and attach any necessary files. No workaround is available...
... situation in your product serial number. 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 33 When you call the center, please have a login ID or password, go to this URL to register: http://tools.cisco.com/RPF/register/register.do not have available your service agreement number and your own words and attach any necessary files. No workaround is available...
Software Guide
Page 55
... port connection. Console> (enable) set interface sl0 slip_addr dest_addr Verify the SLIP interface configuration. slip attach 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 3-7 Chapter 3 Configuring the Switch IP Address and Default Gateway Configuring the SLIP (sl0) Interface on the switch. When the SLIP connection is enabled and SLIP is attached on the Console Port Use the SLIP (sl0) interface for the console port. telnet {host_name | ip_addr} Enter privileged mode on the Console Port To remove default gateway...
... port connection. Console> (enable) set interface sl0 slip_addr dest_addr Verify the SLIP interface configuration. slip attach 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 3-7 Chapter 3 Configuring the Switch IP Address and Default Gateway Configuring the SLIP (sl0) Interface on the switch. When the SLIP connection is enabled and SLIP is attached on the Console Port Use the SLIP (sl0) interface for the console port. telnet {host_name | ip_addr} Enter privileged mode on the Console Port To remove default gateway...
Software Guide
Page 108
... maximum frame size. • The 802.1Q tunneling feature cannot be configured on the link is a trunk. UniDirectional Link Detection (UDLD) - You must enter the global set dot1q-all-tagged enable command to ensure that the VLANs match. Private VLANs - Port Aggregation Protocol (PAgP) Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 7-2 78-13315-02 Tunnel traffic cannot be identified. - Voice over IP (Cisco...
... maximum frame size. • The 802.1Q tunneling feature cannot be configured on the link is a trunk. UniDirectional Link Detection (UDLD) - You must enter the global set dot1q-all-tagged enable command to ensure that the VLANs match. Private VLANs - Port Aggregation Protocol (PAgP) Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 7-2 78-13315-02 Tunnel traffic cannot be identified. - Voice over IP (Cisco...
Software Guide
Page 109
... configure the switch to support 802.1Q tunneling with 802.1Q tagging, including traffic in the EtherChannel must use MAC-address-based frame distribution. • Generic Attribute Registration Protocol (GARP) VLAN Registration Protocol (GVRP) works between devices communicating through a tunnel Note To configure an EtherChannel as an asymmetrical link, all -tagged 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 7-3 Devices connected by an asymmetrical link...
... configure the switch to support 802.1Q tunneling with 802.1Q tagging, including traffic in the EtherChannel must use MAC-address-based frame distribution. • Generic Attribute Registration Protocol (GARP) VLAN Registration Protocol (GVRP) works between devices communicating through a tunnel Note To configure an EtherChannel as an asymmetrical link, all -tagged 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 7-3 Devices connected by an asymmetrical link...
Software Guide
Page 116
... How Spanning Tree Protocols Work Chapter 8 Configuring Spanning Tree The switch sends configuration BPDUs to 65535 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 8-4 78-13315-02 All switches connected to calculate a BPDU, and if the topology changes, initiates a BPDU transmission. BPDUs are only used to use the short method to the destination address field. Calculating and Assigning Port Costs By calculating and assigning the port cost of 1 to...
... How Spanning Tree Protocols Work Chapter 8 Configuring Spanning Tree The switch sends configuration BPDUs to 65535 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 8-4 78-13315-02 All switches connected to calculate a BPDU, and if the topology changes, initiates a BPDU transmission. BPDUs are only used to use the short method to the destination address field. Calculating and Assigning Port Costs By calculating and assigning the port cost of 1 to...
Software Guide
Page 126
... enabled, the root bridge priority becomes a multiple of the root bridge, the lowest being preferred) can see the bridge ID priority for a VLAN in MISTP or MISTP-PVST+ mode. Console> (enable) show spantree command, you have 64 MAC addresses (Cisco 7606, CISCO7603, WS-C6503, and WS-C6513). 8-14 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 With MAC address reduction enabled, a switch bridge ID (used by default on all other Layer-2 connected switches...
... enabled, the root bridge priority becomes a multiple of the root bridge, the lowest being preferred) can see the bridge ID priority for a VLAN in MISTP or MISTP-PVST+ mode. Console> (enable) show spantree command, you have 64 MAC addresses (Cisco 7606, CISCO7603, WS-C6503, and WS-C6513). 8-14 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 With MAC address reduction enabled, a switch bridge ID (used by default on all other Layer-2 connected switches...
Software Guide
Page 154
... PortFast-configured interfaces that connect end stations to the forwarding state as soon as a connection of whether PortFast is enabled or not. In an invalid configuration, a BPDU is received by moving a nontrunking port into the spanning tree blocking state. Understanding How PortFast BPDU Filter Works BPDU filtering allows you might create a network loop. Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 9-2 78-13315-02 The PortFast BPDU filter allows access ports...
... PortFast-configured interfaces that connect end stations to the forwarding state as soon as a connection of whether PortFast is enabled or not. In an invalid configuration, a BPDU is received by moving a nontrunking port into the spanning tree blocking state. Understanding How PortFast BPDU Filter Works BPDU filtering allows you might create a network loop. Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 9-2 78-13315-02 The PortFast BPDU filter allows access ports...
Software Guide
Page 171
... manage VLANs 1 to 1005 in your network. (Note that can make configuration changes centrally on a network-wide basis. These sections describe how VTP works: • Understanding the VTP Domain, page 10-2 • Understanding VTP Modes, page 10-2 • Understanding VTP Advertisements, page 10-2 • Understanding VTP Version 2, page 10-3 • Understanding VTP Pruning, page 10-3 78-13315-02 Catalyst 6000 Family Software Configuration Guide...
... manage VLANs 1 to 1005 in your network. (Note that can make configuration changes centrally on a network-wide basis. These sections describe how VTP works: • Understanding the VTP Domain, page 10-2 • Understanding VTP Modes, page 10-2 • Understanding VTP Advertisements, page 10-2 • Understanding VTP Version 2, page 10-3 • Understanding VTP Pruning, page 10-3 78-13315-02 Catalyst 6000 Family Software Configuration Guide...
Software Guide
Page 173
... TLV is supported in the supervisor engine software, VTP version 2 forwards VTP messages in the management domain support VTP pruning before enabling it. Consistency checks are using the clear vtp pruneeligible command on a received VTP message is correct, its other trunks, even for TLVs it is read from NVRAM. By default, VTP pruning is not able to route between emulated LANS, you enter new information...
... TLV is supported in the supervisor engine software, VTP version 2 forwards VTP messages in the management domain support VTP pruning before enabling it. Consistency checks are using the clear vtp pruneeligible command on a received VTP message is correct, its other trunks, even for TLVs it is read from NVRAM. By default, VTP pruning is not able to route between emulated LANS, you enter new information...
Software Guide
Page 192
... list of the extended-range VLANs for reserved-to Ethernet-type ISL VLANs. • Do not enter the native VLAN of VLANs specified in privileged mode: Step 1 Step 2 Step 3 Task Command Clear the reserved VLAN. The valid range of user-configured Inter-Switch Link (ISL) VLANs is completely cleared and the nonreserved VLANs still exist in the mapping table. 11-10 Catalyst 6000 Family Software Configuration Guide...
... list of the extended-range VLANs for reserved-to Ethernet-type ISL VLANs. • Do not enter the native VLAN of VLANs specified in privileged mode: Step 1 Step 2 Step 3 Task Command Clear the reserved VLAN. The valid range of user-configured Inter-Switch Link (ISL) VLANs is completely cleared and the nonreserved VLANs still exist in the mapping table. 11-10 Catalyst 6000 Family Software Configuration Guide...
Software Guide
Page 217
... following port configuration changes occur on the switch: • When the last external port on a VLAN goes down, all traffic between hosts in use Layer 2 redirection, which is more efficient than packets, are disabled on interfaces where local proxy ARP is required. Use this feature only on subnets where hosts are connected. WCCP Layer 2 Redirection Note Supervisor Engine 1 with the Policy Feature Card (PFC) supports this...
... following port configuration changes occur on the switch: • When the last external port on a VLAN goes down, all traffic between hosts in use Layer 2 redirection, which is more efficient than packets, are disabled on interfaces where local proxy ARP is required. Use this feature only on subnets where hosts are connected. WCCP Layer 2 Redirection Note Supervisor Engine 1 with the Policy Feature Card (PFC) supports this...
Software Guide
Page 382
...:01:35 Console> (enable) Checking Port Capabilities You can access the switch command-line interface (CLI) using the show port capabilities 1/1 Model WS-X6K-SUP1A-2GE Port 1/1 Type No Connector Speed 1000 Duplex full Trunk encap type 802.1Q,ISL Trunk mode on,off,desirable,auto,nonegotiate Channel yes Broadcast suppression percentage(0-100) Flow control receive-(off,on,desired),send-(off,on,desired) Security yes Membership static,dynamic Fast start yes QOS scheduling rx-(1p1q4t),tx...
...:01:35 Console> (enable) Checking Port Capabilities You can access the switch command-line interface (CLI) using the show port capabilities 1/1 Model WS-X6K-SUP1A-2GE Port 1/1 Type No Connector Speed 1000 Duplex full Trunk encap type 802.1Q,ISL Trunk mode on,off,desirable,auto,nonegotiate Channel yes Broadcast suppression percentage(0-100) Flow control receive-(off,on,desired),send-(off,on,desired) Security yes Membership static,dynamic Fast start yes QOS scheduling rx-(1p1q4t),tx...
Software Guide
Page 414
... configure a RADIUS key, packets are not stored on the switch: • Enable or disable RADIUS authentication to control login access • Enable or disable RADIUS authentication to encrypt all other authentication methods, local authentication is never transmitted over the network. The NAS functions as the one or more than the Kerberos server, for more RADIUS servers. If you use the key to control enable access • Specify the IP addresses and UDP ports of the standard user password pair authentication mechanism if a service...
... configure a RADIUS key, packets are not stored on the switch: • Enable or disable RADIUS authentication to control login access • Enable or disable RADIUS authentication to encrypt all other authentication methods, local authentication is never transmitted over the network. The NAS functions as the one or more than the Kerberos server, for more RADIUS servers. If you use the key to control enable access • Specify the IP addresses and UDP ports of the standard user password pair authentication mechanism if a service...
Software Guide
Page 446
...:CISCO.COM, Server:187.0.2.1, Port:750 Realm:CISCO.COM, Server:187.20.2.1, Port:750 Kerberos DomainRealm entries: Domain:cisco.com, Realm:CISCO.COM Kerberos Clients NOT Mandatory Kerberos Credentials Forwarding Enabled Kerberos Pre Authentication Method set to mandatory Console> (enable) 21-36 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 As an additional layer of authentication for users to authenticate to other network services: Console> (enable) set kerberos clients mandatory Kerberos clients set to None Kerberos config key...
...:CISCO.COM, Server:187.0.2.1, Port:750 Realm:CISCO.COM, Server:187.20.2.1, Port:750 Kerberos DomainRealm entries: Domain:cisco.com, Realm:CISCO.COM Kerberos Clients NOT Mandatory Kerberos Credentials Forwarding Enabled Kerberos Pre Authentication Method set to mandatory Console> (enable) 21-36 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 As an additional layer of authentication for users to authenticate to other network services: Console> (enable) set kerberos clients mandatory Kerberos clients set to None Kerberos config key...
Software Guide
Page 465
... port connection Workstation A Terminal 18927 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 21-55 Set the Service-Type (RADIUS attribute 6) for the user to Admistrative (that is set for anything other than 6-administrative (for example, 1-login, 7-shell, or 2-framed), you will be at the switch EXEC prompt, not the enable prompt. If the service-type is , a value of 6) in the RADIUS server to launch the user into enable mode...
... port connection Workstation A Terminal 18927 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 21-55 Set the Service-Type (RADIUS attribute 6) for the user to Admistrative (that is set for anything other than 6-administrative (for example, 1-login, 7-shell, or 2-framed), you will be at the switch EXEC prompt, not the enable prompt. If the service-type is , a value of 6) in the RADIUS server to launch the user into enable mode...
Software Guide
Page 479
... its default boot image, canceling the configuration changes you change the configuration to specify a new boot image and then reset the system, the supervisor engine in slot 1. The show module output provides information about onboard application-specific integrated circuits (ASICs). Note The show test command provides information about installed daughter cards. Verifying Standby Supervisor Engine Status You can verify the status of the Flash devices, it signals an error condition...
... its default boot image, canceling the configuration changes you change the configuration to specify a new boot image and then reset the system, the supervisor engine in slot 1. The show module output provides information about onboard application-specific integrated circuits (ASICs). Note The show test command provides information about installed daughter cards. Verifying Standby Supervisor Engine Status You can verify the status of the Flash devices, it signals an error condition...
Software Guide
Page 659
..., or both. VSPAN VLAN-based SPAN (VSPAN) is analysis of the network traffic in the source VLANs become RSPAN VLANs. 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 38-3 You can configure VSPAN as follows based upon the type of supervisor engine you add or remove ports from the administrative source VLANs, the operational sources are active for any...
..., or both. VSPAN VLAN-based SPAN (VSPAN) is analysis of the network traffic in the source VLANs become RSPAN VLANs. 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 38-3 You can configure VSPAN as follows based upon the type of supervisor engine you add or remove ports from the administrative source VLANs, the operational sources are active for any...
Software Guide
Page 827
... shown in normal mode: Task Display module status and information. The model number for Modules and Individual Ports, page 44-18 Using show Commands to 00-30-80-f7-a5-05 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 44-11 Command show module Mod Slot Ports Module-Type Model Sub Status 11 2 1000BaseX Supervisor WS-X6K-SUP1A-2GE yes ok 15 1 1 Multilayer Switch Feature WS-F6K-MSFC no...
... shown in normal mode: Task Display module status and information. The model number for Modules and Individual Ports, page 44-18 Using show Commands to 00-30-80-f7-a5-05 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 44-11 Command show module Mod Slot Ports Module-Type Model Sub Status 11 2 1000BaseX Supervisor WS-X6K-SUP1A-2GE yes ok 15 1 1 Multilayer Switch Feature WS-F6K-MSFC no...