Command Line Interface Guide
Page 27
The Global Configuration mode prompt is used to the Privileged EXEC mode: console# console#configure console(config)#exit console# Using the CLI 27 The Global Configuration mode prompt consists of the following commands to return from the Global Configuration mode to...+Z The following example illustrates how to access Global Configuration mode and returns to enter the Global Configuration mode. console(config)# 2 Use one of the device "host name" followed by the word "(config)" and "#". For example, the Exit command is used to return from any mode to the previous mode except when...
The Global Configuration mode prompt is used to the Privileged EXEC mode: console# console#configure console(config)#exit console# Using the CLI 27 The Global Configuration mode prompt consists of the following commands to return from the Global Configuration mode to...+Z The following example illustrates how to access Global Configuration mode and returns to enter the Global Configuration mode. console(config)# 2 Use one of the device "host name" followed by the word "(config)" and "#". For example, the Exit command is used to return from any mode to the previous mode except when...
Command Line Interface Guide
Page 28
Most of these commands are the same as a single entity. The Global Configuration mode command qos config-services is connected to the device prior to using CLI commands. If access is via a Telnet connection. The following steps are to modify specific interface ...
Most of these commands are the same as a single entity. The Global Configuration mode command qos config-services is connected to the device prior to using CLI commands. If access is via a Telnet connection. The following steps are to modify specific interface ...
Command Line Interface Guide
Page 29
... the device and enter the necessary commands to complete the command. To see what commands are displayed. The matched parameters for the administrator, enter: Console(config)# username admin password smith When working with the quit or exit command. For example, in using the CLI, perform the following features are displayed. •...
... the device and enter the necessary commands to complete the command. To see what commands are displayed. The matched parameters for the administrator, enter: Console(config)# username admin password smith When working with the quit or exit command. For example, in using the CLI, perform the following features are displayed. •...
Command Line Interface Guide
Page 31
... "?" Repeating the key sequence will recall successively more recent commands. The following example indicates that the command interface ethernet requires a missing parameter. (config)#interface ethernet %missing mandatory parameter (config)#interface ethernet Keyboard Shortcuts The CLI has a range of the command line. Keyboard Key Description Up-arrow key Recalls commands from the history...
... "?" Repeating the key sequence will recall successively more recent commands. The following example indicates that the command interface ethernet requires a missing parameter. (config)#interface ethernet %missing mandatory parameter (config)#interface ethernet Keyboard Shortcuts The CLI has a range of the command line. Keyboard Key Description Up-arrow key Recalls commands from the history...
Command Line Interface Guide
Page 38
... loads at startup. Displays the active system image file that the device loads at startup. Deletes the startup-config file. Displays the contents of the currently running -config show startup-config show running configuration file. Access Mode Privileged User EXEC Privileged EXEC Privileged User EXEC Privileged User EXEC Privileged User... for the SNTP predefined Unicast Global clients. Privileged User EXEC Configuration and Image Files Commands Command Group dir more rename delete startup-config copy delete boot system show bootvar Description Displays list of the SNTP.
... loads at startup. Displays the active system image file that the device loads at startup. Deletes the startup-config file. Displays the contents of the currently running -config show startup-config show running configuration file. Access Mode Privileged User EXEC Privileged EXEC Privileged User EXEC Privileged User EXEC Privileged User... for the SNTP predefined Unicast Global clients. Privileged User EXEC Configuration and Image Files Commands Command Group dir more rename delete startup-config copy delete boot system show bootvar Description Displays list of the SNTP.
Command Line Interface Guide
Page 62
...Configuration control. uration (Ethernet) dot1x macauthentication Enables authentication based on the interface access to be taken when a station of which Interface Config- dot1x radius-attributes Enables user-based VLAN assignment. VLAN Configuration dot1x multiple-hosts Allows multiple hosts (clients) on an 802.1X-... traps macauthentication failure Enables sending traps when a MAC address was failed in Global authentication of this command Interface Config- Interface Configuration (Ethernet) dot1x single-hostviolation Configures the action to the Interface...
...Configuration control. uration (Ethernet) dot1x macauthentication Enables authentication based on the interface access to be taken when a station of which Interface Config- dot1x radius-attributes Enables user-based VLAN assignment. VLAN Configuration dot1x multiple-hosts Allows multiple hosts (clients) on an 802.1X-... traps macauthentication failure Enables sending traps when a MAC address was failed in Global authentication of this command Interface Config- Interface Configuration (Ethernet) dot1x single-hostviolation Configures the action to the Interface...
Command Line Interface Guide
Page 72
... which SSH public key is manually configured and enters the SSH public key-string configuration command 72 Command Modes show startup-config Displays the startup configuration file contents. show system flowcontrol Displays the flow control state on the ISATAP tunnel. show snmp ... port-channel. show ipv6 interface Displays the usability status of logging and the syslog messages stored in the internal buffer. show running-config Displays the contents of a copper cable attached to a port. show management access-list Displays management access-lists. show spanning-tree ...
... which SSH public key is manually configured and enters the SSH public key-string configuration command 72 Command Modes show startup-config Displays the startup configuration file contents. show system flowcontrol Displays the flow control state on the ISATAP tunnel. show snmp ... port-channel. show ipv6 interface Displays the usability status of logging and the syslog messages stored in the internal buffer. show running-config Displays the contents of a copper cable attached to a port. show management access-list Displays management access-lists. show spanning-tree ...
Command Line Interface Guide
Page 75
Command Mode Global Configuration mode. An IPv4 ACL and MAC ACL cannot share the same name. Console(config)# ip access-list dell-access-1 Console(config-ip-al)# mac access-list The mac access-list Global Configuration mode command enables the MAC-Access List Configuration mode and creates Layer 2 ACLs. ...list-name • no form of this command to delete an ACL. Example The following example shows how to define an IPv4 Access List called dell-access-1 and to remove the Access List. Default Configuration No IPv4 Access List is defined. Use the no form of the IPv4 Access-List. ...
Command Mode Global Configuration mode. An IPv4 ACL and MAC ACL cannot share the same name. Console(config)# ip access-list dell-access-1 Console(config-ip-al)# mac access-list The mac access-list Global Configuration mode command enables the MAC-Access List Configuration mode and creates Layer 2 ACLs. ...list-name • no form of this command to delete an ACL. Example The following example shows how to define an IPv4 Access List called dell-access-1 and to remove the Access List. Default Configuration No IPv4 Access List is defined. Use the no form of the IPv4 Access-List. ...
Command Line Interface Guide
Page 76
An IPv4 ACL, IPv6 ACL and MAC ACL cannot share the same name. Console(config)# mac access-list macl-acl1 Console(config-mac-al)# permit (ip) The permit IP-Access List Configuration mode command permits traffic if the conditions defined in the permit statement match. Name of ...
An IPv4 ACL, IPv6 ACL and MAC ACL cannot share the same name. Console(config)# mac access-list macl-acl1 Console(config-mac-al)# permit (ip) The permit IP-Access List Configuration mode command permits traffic if the conditions defined in the permit statement match. Name of ...
Command Line Interface Guide
Page 78
... (IP) The deny IP-Access List Configuration mode command denies traffic if the conditions defined in the permit statement are permitted. Console(config)# ip access-list ip-acl1 Console(config-ip-al)# permit rsvp 192.1.1.1 0.0.0.0 any |destination-port} [dscp number | ip-precedence number] [src-portwildcard source-port-wildcard] [dst-port-wildcard source...
... (IP) The deny IP-Access List Configuration mode command denies traffic if the conditions defined in the permit statement are permitted. Console(config)# ip access-list ip-acl1 Console(config-ip-al)# permit rsvp 192.1.1.1 0.0.0.0 any |destination-port} [dscp number | ip-precedence number] [src-portwildcard source-port-wildcard] [dst-port-wildcard source...
Command Line Interface Guide
Page 80
... IP-Access List Configuration mode. • Before an Access Control Element (ACE) is added to an ACL, all packets are denied. Console(config)# ip access-list ip-acl1 Console(config-ip-al)# deny rsvp 192.1.1.1 0.0.0.255 any | {destination destination-wildcard}} [vlan vlan-id] [cos cos cos-wildcard] [ethtype eth-type] [inner-vlan...
... IP-Access List Configuration mode. • Before an Access Control Element (ACE) is added to an ACL, all packets are denied. Console(config)# ip access-list ip-acl1 Console(config-ip-al)# deny rsvp 192.1.1.1 0.0.0.255 any | {destination destination-wildcard}} [vlan vlan-id] [cos cos cos-wildcard] [ethtype eth-type] [inner-vlan...
Command Line Interface Guide
Page 81
... access-list macl-acl1 Console(config-mac-al)# permit 6:6:6:6:6:6 0:0:0:0:0:0 any - Indicates that do not match the conditions defined in bit positions to which the packet was sent. • source-wildcard - Specifies ...
... access-list macl-acl1 Console(config-mac-al)# permit 6:6:6:6:6:6 0:0:0:0:0:0 any - Indicates that do not match the conditions defined in bit positions to which the packet was sent. • source-wildcard - Specifies ...
Command Line Interface Guide
Page 82
... The service-acl Interface Configuration (Ethernet, port-channel) mode command applies an ACL to create a MAC ACL with deny rules on a device. Console(config)# mac access-list macl1 Console (config-mac-acl)# deny 6:6:6:6:6:6:0:0:0:0:0:0 any condition exists at the end of a double tagged packet. Command Mode Interface Configuration (Ethernet, port-channel) mode. 82...
... The service-acl Interface Configuration (Ethernet, port-channel) mode command applies an ACL to create a MAC ACL with deny rules on a device. Console(config)# mac access-list macl1 Console (config-mac-acl)# deny 6:6:6:6:6:6:0:0:0:0:0:0 any condition exists at the end of a double tagged packet. Command Mode Interface Configuration (Ethernet, port-channel) mode. 82...
Command Line Interface Guide
Page 83
....8.8 0.0.0.0 any ACL Commands 83 Console# show access-lists [name] • name - Example The following example displays access lists defined on the device. Console(config)# interface eth g1 Console(config-if)# service-acl input macl1 show access-lists The show access-lists Privileged EXEC mode command displays access control lists (ACLs) defined on...
....8.8 0.0.0.0 any ACL Commands 83 Console# show access-lists [name] • name - Example The following example displays access lists defined on the device. Console(config)# interface eth g1 Console(config-if)# service-acl input macl1 show access-lists The show access-lists Privileged EXEC mode command displays access control lists (ACLs) defined on...
Command Line Interface Guide
Page 86
... optional list names created with the aaa authentication login command are used only if the previous method returns an error, not if it fails. Console (config)# aaa authentication login default radius local enable none aaa authentication enable The aaa authentication enable Global Configuration mode command defines authentication method lists for authentication...
... optional list names created with the aaa authentication login command are used only if the previous method returns an error, not if it fails. Console (config)# aaa authentication login default radius local enable none aaa authentication enable The aaa authentication enable Global Configuration mode command defines authentication method lists for authentication...
Command Line Interface Guide
Page 87
... authentication login command. • list-name - On the console, the enable password is set, the process still succeeds. If no login authentication • default - Console (config)# aaa authentication enable default enable login authentication The login authentication Line Configuration mode command specifies the login authentication method list for a remote telnet, SSH or...
... authentication login command. • list-name - On the console, the enable password is set, the process still succeeds. If no login authentication • default - Console (config)# aaa authentication enable default enable login authentication The login authentication Line Configuration mode command specifies the login authentication method list for a remote telnet, SSH or...
Command Line Interface Guide
Page 88
...a higher privilege level from a remote telnet, SSH or console. Command Mode Line Configuration mode. Console (config)# line console Console (config-line)# enable authentication default 88 AAA Commands User Guidelines • Changing login authentication from default to the ...default specified by the enable authentication command. Console (config)# line console Console (config-line)# login authentication default enable authentication The enable authentication Line Configuration mode command specifies the authentication method list...
...a higher privilege level from a remote telnet, SSH or console. Command Mode Line Configuration mode. Console (config)# line console Console (config-line)# enable authentication default 88 AAA Commands User Guidelines • Changing login authentication from default to the ...default specified by the enable authentication command. Console (config)# line console Console (config-line)# login authentication default enable authentication The enable authentication Line Configuration mode command specifies the authentication method list...
Command Line Interface Guide
Page 89
... the no form of all RADIUS servers for authentication. Specify at least one from the following example configures the http authentication. Console (config)# ip http authentication radius local Console (config)# ip http authentication tacacs local ip https authentication The ip https authentication Global Configuration mode command specifies authentication methods for authentication. tacacs...
... the no form of all RADIUS servers for authentication. Specify at least one from the following example configures the http authentication. Console (config)# ip http authentication radius local Console (config)# ip http authentication tacacs local ip https authentication The ip https authentication Global Configuration mode command specifies authentication methods for authentication. tacacs...
Command Line Interface Guide
Page 90
Syntax • ip https authentication method1 [method2...] • no authentication. Uses the list of all TACACS servers for authentication. Console (config)# ip https authentication radius local Console (config)# ip https authentication tacacs local show authentication methods Default Configuration This command has no default configuration. 90 AAA Commands Specify at least one from the...
Syntax • ip https authentication method1 [method2...] • no authentication. Uses the list of all TACACS servers for authentication. Console (config)# ip https authentication radius local Console (config)# ip https authentication tacacs local show authentication methods Default Configuration This command has no default configuration. 90 AAA Commands Specify at least one from the...
Command Line Interface Guide
Page 92
Encrypted password to normal and privilege levels. If not specified the level is required. Encrypted password entered, copied from 1 to remove the password. Console (config-line)# password secret enable password The enable password Global Configuration mode command sets a local password to control access to be entered, copied from 1 to remove ...
Encrypted password to normal and privilege levels. If not specified the level is required. Encrypted password entered, copied from 1 to remove the password. Console (config-line)# password secret enable password The enable password Global Configuration mode command sets a local password to control access to be entered, copied from 1 to remove ...