Command Line Interface Guide
Page 11
clear arp-cache 206 show arp 206 ip domain-lookup 207 ip domain-name 208 ip name-server 208 ip host 209 clear host 210 clear host dhcp 210 show hosts 211 14 IPv6 Addressing 213 ipv6 enable 213 ipv6 address autoconfig 214 ipv6 icmp error-interval 214 show ipv6 icmp error-interval 215 ipv6 address 216 ipv6 address link-local 217 ipv6 unreachables 218 ipv6 default-gateway 219 ipv6 mld join-group 220 ipv6 mld version 220 show ipv6 interface 221 show IPv6 route 224 ipv6 nd dad attempts 225 ipv6 host 226 ipv6 neighbor 227 ipv6 set mtu 228 Contents 11
clear arp-cache 206 show arp 206 ip domain-lookup 207 ip domain-name 208 ip name-server 208 ip host 209 clear host 210 clear host dhcp 210 show hosts 211 14 IPv6 Addressing 213 ipv6 enable 213 ipv6 address autoconfig 214 ipv6 icmp error-interval 214 show ipv6 icmp error-interval 215 ipv6 address 216 ipv6 address link-local 217 ipv6 unreachables 218 ipv6 default-gateway 219 ipv6 mld join-group 220 ipv6 mld version 220 show ipv6 interface 221 show IPv6 route 224 ipv6 nd dad attempts 225 ipv6 host 226 ipv6 neighbor 227 ipv6 set mtu 228 Contents 11
Command Line Interface Guide
Page 20
32 TACACS+ Commands 435 tacacs-server host 435 tacacs-server key 436 tacacs-server timeout 437 tacacs-server source-ip 437 show tacacs 438 33 TIC Commands 441 passwords min-length 441 password-aging 442 passwords aging 442 passwords history 443 passwords ...history hold-time 444 passwords lockout 445 aaa login-history file 446 set username active 446 set line active 447 set enable-password active 447 show passwords configuration 448 show users login-history 450 show users accounts 451 34 Tunnel 453 interface...
32 TACACS+ Commands 435 tacacs-server host 435 tacacs-server key 436 tacacs-server timeout 437 tacacs-server source-ip 437 show tacacs 438 33 TIC Commands 441 passwords min-length 441 password-aging 442 passwords aging 442 passwords history 443 passwords ...history hold-time 444 passwords lockout 445 aaa login-history file 446 set username active 446 set line active 447 set enable-password active 447 show passwords configuration 448 show users login-history 450 show users accounts 451 34 Tunnel 453 interface...
Command Line Interface Guide
Page 29
...is via a Telnet connection, ensure that the device has a defined IP address, corresponding management access is granted, and the workstation used to 8 data bits, 1 stop bit, and no parity. For more information, see Dell™ PowerConnect™ 3500 Series User's Guide. 2 Enter the following commands to... to the device console port or via a Telnet connection. To start using HyperTerminal with Microsoft® Windows 2000, ensure that the setting is 115,200 (Console port on the console line only. With Windows 2000 Service Pack 2, the arrow keys function properly in HyperTerminal...
...is via a Telnet connection, ensure that the device has a defined IP address, corresponding management access is granted, and the workstation used to 8 data bits, 1 stop bit, and no parity. For more information, see Dell™ PowerConnect™ 3500 Series User's Guide. 2 Enter the following commands to... to the device console port or via a Telnet connection. To start using HyperTerminal with Microsoft® Windows 2000, ensure that the setting is 115,200 (Console port on the console line only. With Windows 2000 Service Pack 2, the arrow keys function properly in HyperTerminal...
Command Line Interface Guide
Page 35
... Configuration IP Access-List Configuration Global Configuration MAC Access-List Configuration Command Groups 35 Permits traffic if the conditions defined in the deny statement match. Set permit conditions for HTTPS server users. Global Configuration Defines authentication method lists for accessing higher Global privilege levels. Global Configuration Displays information about the authentication methods. Sets...
... Configuration IP Access-List Configuration Global Configuration MAC Access-List Configuration Command Groups 35 Permits traffic if the conditions defined in the deny statement match. Set permit conditions for HTTPS server users. Global Configuration Defines authentication method lists for accessing higher Global privilege levels. Global Configuration Displays information about the authentication methods. Sets...
Command Line Interface Guide
Page 42
...Privileged EXEC 42 Command Groups IP Addressing Commands Command Group ip address ip address dhcp ip default-gateway show ip interface arp arp timeout clear arp-cache show arp ip domain-lookup ip domain-name ip name-server ip host clear host clear host dhcp show hosts Description Sets an IP address. Adds a permanent... entry in the ARP cache. Configures how long an entry remains in the ARP cache. Sets the available name servers....
...Privileged EXEC 42 Command Groups IP Addressing Commands Command Group ip address ip address dhcp ip default-gateway show ip interface arp arp timeout clear arp-cache show arp ip domain-lookup ip domain-name ip name-server ip host clear host clear host dhcp show hosts Description Sets an IP address. Adds a permanent... entry in the ARP cache. Configures how long an entry remains in the ARP cache. Sets the available name servers....
Command Line Interface Guide
Page 49
... all RADIUS communications between the device and the RADIUS daemon. Sets the interval for which a device waits for communication with RADIUS servers. Sets the authentication and encryption key for all the maps for the... IPv6 communication with RADIUS servers. Configures the system to reply. Global Configuration Global Configuration Interface Configuration Interface Configuration User EXEC RADIUS Commands Command Group radius-server host radius-server key radius-server retransmit radius-server source-ip...
... all RADIUS communications between the device and the RADIUS daemon. Sets the interval for which a device waits for communication with RADIUS servers. Sets the authentication and encryption key for all the maps for the... IPv6 communication with RADIUS servers. Configures the system to reply. Global Configuration Global Configuration Interface Configuration Interface Configuration User EXEC RADIUS Commands Command Group radius-server host radius-server key radius-server retransmit radius-server source-ip...
Command Line Interface Guide
Page 55
... EXEC TACACS Commands Command Group tacacs-server host tacacs-server key tacacs-server source-ip tacacs-server timeout show cpu utilization Lists the open Telnet sessions. Sets the authentication encryption key used for all TACACS+ communications between the device and the...used for the communication with TACACS+ servers. Access Mode Global Configuration Global Configuration Line Configuration Global Configuration Command Groups 55 Sets the number of active processes. Specifies the device asset-tag. Displays information about the CPU utilization of required password changes...
... EXEC TACACS Commands Command Group tacacs-server host tacacs-server key tacacs-server source-ip tacacs-server timeout show cpu utilization Lists the open Telnet sessions. Sets the authentication encryption key used for all TACACS+ communications between the device and the...used for the communication with TACACS+ servers. Access Mode Global Configuration Global Configuration Line Configuration Global Configuration Command Groups 55 Sets the number of active processes. Specifies the device asset-tag. Displays information about the CPU utilization of required password changes...
Command Line Interface Guide
Page 56
... a locked line. Privileged EXEC Displays information about the local user database. sets the local (source) tunnel interface IPv4 address. configures the interval between DNS Queries (before the IP address of failed login attempts before a user account is no active ISATAP...EXEC Privileged EXEC Displays information about password management. passwords history holdtime passwords lockout aaa login-history file set username active set line active set enable-password active show passwords configuration show users login-history show ipv6 tunnel Description enters tunnel interface ...
... a locked line. Privileged EXEC Displays information about the local user database. sets the local (source) tunnel interface IPv4 address. configures the interval between DNS Queries (before the IP address of failed login attempts before a user account is no active ISATAP...EXEC Privileged EXEC Displays information about password management. passwords history holdtime passwords lockout aaa login-history file set username active set line active set enable-password active show passwords configuration show users login-history show ipv6 tunnel Description enters tunnel interface ...
Command Line Interface Guide
Page 58
...of the specified VLAN, and the VLAN ID is in customer mode. Discards untagged frames at ingress. Maps a protocol to -VLAN database. Sets a protocol-based classification rule. Adds MAC addresses to the MAC-to a protocol group. switchport trunk native vlan switchport general allowed vlan switchport ...as the internal usage VLAN of an interface. Adds or removes VLANs from a general port. Forbids adding specific VLANs to -vlan Set the port's VLAN when the interface is in general mode. Configures the VLAN membership mode of a port switchport customer vlan switchport ...
...of the specified VLAN, and the VLAN ID is in customer mode. Discards untagged frames at ingress. Maps a protocol to -VLAN database. Sets a protocol-based classification rule. Adds MAC addresses to the MAC-to a protocol group. switchport trunk native vlan switchport general allowed vlan switchport ...as the internal usage VLAN of an interface. Adds or removes VLANs from a general port. Forbids adding specific VLANs to -vlan Set the port's VLAN when the interface is in general mode. Configures the VLAN membership mode of a port switchport customer vlan switchport ...
Command Line Interface Guide
Page 59
...automatic voice VLAN configuration for HTTPS. Privileged EXEC Imports a certificate signed by the server to configure the device. Sets the voice VLAN aging timeout. Access Mode Global Configuration Global Configuration Global Configuration Global Configuration Global Configuration Global Configuration... Group ip http server ip http port ip http exec-timeout ip https server ip https port ip https exec-timeout crypto certificate generate crypto certificate request crypto certificate import ip https certificate Description Enables the device to be configured from a secured browser. Sets the...
...automatic voice VLAN configuration for HTTPS. Privileged EXEC Imports a certificate signed by the server to configure the device. Sets the voice VLAN aging timeout. Access Mode Global Configuration Global Configuration Global Configuration Global Configuration Global Configuration Global Configuration... Group ip http server ip http port ip http exec-timeout ip https server ip https port ip https exec-timeout crypto certificate generate crypto certificate request crypto certificate import ip https certificate Description Enables the device to be configured from a secured browser. Sets the...
Command Line Interface Guide
Page 60
...max-req dot1x timeout supptimeout dot1x timeout servertimeout show ip https Displays the SSH certificates of the device. Interface Configuration Interface Configuration Sets the number of seconds that the device sends an EAP - Sets the time for a response to an Extensible Authentication... Protocol (EAP) - show crypto certificate mycertificate show ip http show dot1x Description Specifies one or...
...max-req dot1x timeout supptimeout dot1x timeout servertimeout show ip https Displays the SSH certificates of the device. Interface Configuration Interface Configuration Sets the number of seconds that the device sends an EAP - Sets the time for a response to an Extensible Authentication... Protocol (EAP) - show crypto certificate mycertificate show ip http show dot1x Description Specifies one or...
Command Line Interface Guide
Page 64
... ip access-list ip access-list ip address ip default-gateway ip dhcp snooping ip dhcp snooping database ip dhcp snooping database update-freq ip dhcp snooping information option allowed-untrusted ip dhcp snooping trust ip dhcp snooping verify ip dhcp snooping vlan ip domain-lookup ip domain-name ip host Sets... Layer 2 ACLs. Configures the update frequency of a specific port-channel. Specifies or modifies the device host name. Sets an IP address. Ends the current configuration session and returns to configure multiple portchannels. Defines a default gateway. Enters the interface ...
... ip access-list ip access-list ip address ip default-gateway ip dhcp snooping ip dhcp snooping database ip dhcp snooping database update-freq ip dhcp snooping information option allowed-untrusted ip dhcp snooping trust ip dhcp snooping verify ip dhcp snooping vlan ip domain-lookup ip domain-name ip host Sets... Layer 2 ACLs. Configures the update frequency of a specific port-channel. Specifies or modifies the device host name. Sets an IP address. Ends the current configuration session and returns to configure multiple portchannels. Defines a default gateway. Enters the interface ...
Command Line Interface Guide
Page 65
... input before automatically logging off. Defines which management access-list is used by a secure web browser to configure the device. Sets the minimum required length for use by a web browser to configure the device. Specifies the TCP port for HTTP server users... server. Creates Layer 2 ACLs. ip http authentication ip http exec-timeout ip http port ip http server ip https authentication ip https certificate ip https exec-timeout ip https port ip https server ip igmp snooping (Global) ip name-server ip ssh port ip ssh pubkey-auth ip ssh server lacp system-priority line logging...
... input before automatically logging off. Defines which management access-list is used by a secure web browser to configure the device. Sets the minimum required length for use by a web browser to configure the device. Specifies the TCP port for HTTP server users... server. Creates Layer 2 ACLs. ip http authentication ip http exec-timeout ip http port ip http server ip https authentication ip https certificate ip https exec-timeout ip https port ip https server ip igmp snooping (Global) ip name-server ip ssh port ip ssh pubkey-auth ip ssh server lacp system-priority line logging...
Command Line Interface Guide
Page 66
...its password history. Configures the maximum RMON tables sizes. Sets the number of days a password is locked. Enables Quality of the inline power on the device and enters QoS basic or advance mode. Specifies the source IP address used for all RADIUS communications between the device ...required password changes before a user account is relevant for a server host to "trust" state. Adds a description of RADIUS server hosts. Sets up the community access string to permit access to the interface. Specifies the number of times the software searches the list of the powered ...
...its password history. Configures the maximum RMON tables sizes. Sets the number of days a password is locked. Enables Quality of the inline power on the device and enters QoS basic or advance mode. Specifies the source IP address used for all RADIUS communications between the device ...required password changes before a user account is relevant for a server host to "trust" state. Adds a description of RADIUS server hosts. Sets up the community access string to permit access to the interface. Specifies the number of times the software searches the list of the powered ...
Command Line Interface Guide
Page 68
... spanning-tree priority spanning-tree pathcost method spanning-tree priority stack master tacacs-server host tacacs-server key tacacs-server source-ip tacacs-server timeout username vlan database wrr-queue cos-map Defines BPDU handling when Spanning Tree is aged out. Configures the...discarded and the port information is disabled on an interface. Specifies the source IP address that will be used for all bridge multicast unregistered channel-group Description Enables Back Pressure on a port. Sets the timeout value. IC (Interface Configuration) Mode Command Group back-pressure ...
... spanning-tree priority spanning-tree pathcost method spanning-tree priority stack master tacacs-server host tacacs-server key tacacs-server source-ip tacacs-server timeout username vlan database wrr-queue cos-map Defines BPDU handling when Spanning Tree is aged out. Configures the...discarded and the port information is disabled on an interface. Specifies the source IP address that will be used for all bridge multicast unregistered channel-group Description Enables Back Pressure on a port. Sets the timeout value. IC (Interface Configuration) Mode Command Group back-pressure ...
Command Line Interface Guide
Page 69
...dot1x port-control Interface Configuration mode command set to access the guest VLAN. request/identity frame, from the DHCP server. Enables GVRP on an interface from the client, before restarting the authentication process. Acquires an IP address on an interface. Configures the ...address is not the supplicant MAC address, attempts to the client, before resending the request. Sets the maximum number of packets to an Extensible Authentication Protocol (EAP) - Sets an IP address. Sets the number of the client. Configures the Flow Control on a given interface. Adjusts the ...
...dot1x port-control Interface Configuration mode command set to access the guest VLAN. request/identity frame, from the DHCP server. Enables GVRP on an interface from the client, before restarting the authentication process. Acquires an IP address on an interface. Configures the ...address is not the supplicant MAC address, attempts to the client, before resending the request. Sets the maximum number of packets to an Extensible Authentication Protocol (EAP) - Sets an IP address. Sets the number of the client. Configures the Flow Control on a given interface. Adjusts the ...
Command Line Interface Guide
Page 73
...defined in the permit statement match. Restarts the protocol migration process on all interfaces or on an interface. clock set Manually sets the system clock. delete startup-config Deletes the startup-config file. Command Modes 73 Defines the configuration revision number. clear... ip dhcp snooping database Clears the DHCP snooping binding database. PE (Privileged EXEC) Mode Command Group Description boot system ...
...defined in the permit statement match. Restarts the protocol migration process on all interfaces or on an interface. clock set Manually sets the system clock. delete startup-config Deletes the startup-config file. Command Modes 73 Defines the configuration revision number. clear... ip dhcp snooping database Clears the DHCP snooping binding database. PE (Privileged EXEC) Mode Command Group Description boot system ...
Command Line Interface Guide
Page 74
...table. ssh show crypto key pubkey-chain Displays SSH public keys stored on the device. ip dhcp snooping binding Configures the update frequency of the device. set enable-password active Reactivates a locked local password. show crypto certificate mycertificate Displays the SSH ... the bridge-forwarding database. more Displays a file. table static show bridge multicast address- disable Returns to User EXEC mode. set username active Reactivates a locked user account. show bridge address-table count Displays the number of all VLANs or at startup show...
...table. ssh show crypto key pubkey-chain Displays SSH public keys stored on the device. ip dhcp snooping binding Configures the update frequency of the device. set enable-password active Reactivates a locked local password. show crypto certificate mycertificate Displays the SSH ... the bridge-forwarding database. more Displays a file. table static show bridge multicast address- disable Returns to User EXEC mode. set username active Reactivates a locked user account. show bridge address-table count Displays the number of all VLANs or at startup show...
Command Line Interface Guide
Page 75
... on interfaces. show radius-servers Displays the RADIUS server settings. show interfaces status Displays the status for the specified interface. show interfaces advertise Displays autonegotiation advertisement data. show ip https Displays the HTTPS server configuration. show interfaces switchport ... messages stored in the internal buffer. Command Modes 75 show management access-list Displays management access-lists. show ip interface Displays the usability status of host names and addresses. show hosts Displays the default domain name, a list...
... on interfaces. show radius-servers Displays the RADIUS server settings. show interfaces status Displays the status for the specified interface. show interfaces advertise Displays autonegotiation advertisement data. show ip https Displays the HTTPS server configuration. show interfaces switchport ... messages stored in the internal buffer. Command Modes 75 show management access-list Displays management access-lists. show ip interface Displays the usability status of host names and addresses. show hosts Displays the default domain name, a list...
User's Guide
Page 290
... - The possible field range is 1200 seconds. The field default is 600 - 86400 seconds. show ip dhcp snooping [ethernet interface | port-channel port-channel-number] Use the show ip dhcp snooping EXEC command to the default setting. Enable - Configuring DHCP Snooping Global Parameters with CLI Commands The following table summarizes the equivalent CLI...
... - The possible field range is 1200 seconds. The field default is 600 - 86400 seconds. show ip dhcp snooping [ethernet interface | port-channel port-channel-number] Use the show ip dhcp snooping EXEC command to the default setting. Enable - Configuring DHCP Snooping Global Parameters with CLI Commands The following table summarizes the equivalent CLI...