Command Line Interface Guide
Page 11
show ip igmp snooping mrouter 200 show ip igmp snooping interface 201 show ip igmp snooping groups 202 14 IP Addressing Commands 205 clear host dhcp 205 ip address 205 ip address dhcp 206 ip default-gateway 207 show ip interface 208 arp 209 arp timeout 210 clear arp-cache 210 show arp 211 ip domain-lookup 212 ip domain-name 213 ip name-server 213 ip host 214 clear host 215 show hosts 215 15 IPv6 Addressing 217 ipv6 enable 217 ipv6 address autoconfig 218 ipv6 icmp error-interval 218 show ipv6 icmp error-interval 219 ipv6 address 220 Contents 11
show ip igmp snooping mrouter 200 show ip igmp snooping interface 201 show ip igmp snooping groups 202 14 IP Addressing Commands 205 clear host dhcp 205 ip address 205 ip address dhcp 206 ip default-gateway 207 show ip interface 208 arp 209 arp timeout 210 clear arp-cache 210 show arp 211 ip domain-lookup 212 ip domain-name 213 ip name-server 213 ip host 214 clear host 215 show hosts 215 15 IPv6 Addressing 217 ipv6 enable 217 ipv6 address autoconfig 218 ipv6 icmp error-interval 218 show ipv6 icmp error-interval 219 ipv6 address 220 Contents 11
Command Line Interface Guide
Page 42
... name-to complete unqualified host names. IP Addressing Commands Command Group clear host dhcp ip address ip address dhcp ip default-gateway show ip interface arp arp timeout clear arp-cache show arp ip domain-lookup ip domain-name ip name-server ip host clear host show hosts Description Access Mode Sets an IP address on an interface from the DHCP...
... name-to complete unqualified host names. IP Addressing Commands Command Group clear host dhcp ip address ip address dhcp ip default-gateway show ip interface arp arp timeout clear arp-cache show arp ip domain-lookup ip domain-name ip name-server ip host clear host show hosts Description Access Mode Sets an IP address on an interface from the DHCP...
Command Line Interface Guide
Page 58
...the VLAN ID when the interface is in general mode. Adds a special protocol to a port. protocols-group vlan Interface Configuration ip internal-usage-vlan Reserves a VLAN as a member of an interface. Privileged User EXEC show vlan Displays VLAN information. Interface Configuration... switchport general pvid Configures the PVID when the interface is the "port default VLAN ID (PVID)". vlan Interface Configuration switchport trunk native Defines the port as the internal usage VLAN of the specified ...
...the VLAN ID when the interface is in general mode. Adds a special protocol to a port. protocols-group vlan Interface Configuration ip internal-usage-vlan Reserves a VLAN as a member of an interface. Privileged User EXEC show vlan Displays VLAN information. Interface Configuration... switchport general pvid Configures the PVID when the interface is the "port default VLAN ID (PVID)". vlan Interface Configuration switchport trunk native Defines the port as the internal usage VLAN of the specified ...
Command Line Interface Guide
Page 64
... ethernet interface range port-channel interface range vlan interface tunnel interface vlan ip default-gateway ip domain-lookup ip domain-name ip host ip http authentication ip http port ip https server ip https authentication ip https certificate ip https server ip https port ip igmp snooping (Global) ip name-server ip ssh port ip ssh pubkey-auth Enables 802.1x globally. Enters the Interface Configuration...
... ethernet interface range port-channel interface range vlan interface tunnel interface vlan ip default-gateway ip domain-lookup ip domain-name ip host ip http authentication ip http port ip https server ip https authentication ip https certificate ip https server ip https port ip igmp snooping (Global) ip name-server ip ssh port ip ssh pubkey-auth Enables 802.1x globally. Enters the Interface Configuration...
Command Line Interface Guide
Page 65
... for configuration. Enables the egress queues to the logging file based on severity. Defines an IPv6 default gateway. Defines a management Access-List, and enters the Access-List for a remote telnet or console. ip ssh server ipv6 default-gateway ipv6 host ipv6 icmp error-interval ipv6 neighbor lacp system-priority line logging logging buffered...
... for configuration. Enables the egress queues to the logging file based on severity. Defines an IPv6 default gateway. Defines a management Access-List, and enters the Access-List for a remote telnet or console. ip ssh server ipv6 default-gateway ipv6 host ipv6 icmp error-interval ipv6 neighbor lacp system-priority line logging logging buffered...
Command Line Interface Guide
Page 66
... retransmit Specifies the number of times the software searches the list of Simple Network Management Protocol notification operation. radius-server source-ip Specifies the source IP address used for a server host to send Simple Network Management Protocol traps when authentication failed. radius-server timeout Sets the ...to reply. spanning-tree max-age Configures the spanning tree bridge maximum age. spanning-tree pathcost method Sets the default pathcost method. tacacs-server key Sets the authentication encryption key used for the IPv6 communication with RADIUS servers.
... retransmit Specifies the number of times the software searches the list of Simple Network Management Protocol notification operation. radius-server source-ip Specifies the source IP address used for a server host to send Simple Network Management Protocol traps when authentication failed. radius-server timeout Sets the ...to reply. spanning-tree max-age Configures the spanning tree bridge maximum age. spanning-tree pathcost method Sets the default pathcost method. tacacs-server key Sets the authentication encryption key used for the IPv6 communication with RADIUS servers.
Command Line Interface Guide
Page 73
...default domain name, a list of name server hosts, the static and the cached list of host names and addresses. show gvrp configuration Displays GVRP configuration information. port-channel load-balance Displays Port-channel information. show privilege Displays the current privilege level. show ip...CoS values to another node on an interface. show interfaces configuration Displays the configuration for all configured interfaces. show ip interface Displays the usability status of the egress queues. show ports monitor Displays the port monitoring status. show ...
...default domain name, a list of name server hosts, the static and the cached list of host names and addresses. show gvrp configuration Displays GVRP configuration information. port-channel load-balance Displays Port-channel information. show privilege Displays the current privilege level. show ip...CoS values to another node on an interface. show interfaces configuration Displays the configuration for all configured interfaces. show ip interface Displays the usability status of the egress queues. show ports monitor Displays the port monitoring status. show ...
Command Line Interface Guide
Page 75
...form of the IPv4 Access-List. Command Mode Global Configuration mode. Use the no ip access-list access-list-name • access-list-name - User Guidelines • IPv4 ACLs are defined by a unique name. Default Configuration No IPv4 Access List is defined. Specifies the name of this command to ... share the same name. Example The following example shows how to define an IPv4 Access List called dell-access-1 and to remove the Access List. ACL Commands ip access-list The ip access-list Global Configuration mode command defines an IPv4 Access List and places the device in IPv4 Access...
...form of the IPv4 Access-List. Command Mode Global Configuration mode. Use the no ip access-list access-list-name • access-list-name - User Guidelines • IPv4 ACLs are defined by a unique name. Default Configuration No IPv4 Access List is defined. Specifies the name of this command to ... share the same name. Example The following example shows how to define an IPv4 Access List called dell-access-1 and to remove the Access List. ACL Commands ip access-list The ip access-list Global Configuration mode command defines an IPv4 Access List and places the device in IPv4 Access...
Command Line Interface Guide
Page 76
...-wildcard}} {any |igmp- type} [dscp number | ip-precedence number] 76 ACL Commands An IPv4 ACL, IPv6 ACL and MAC ACL cannot share the same name. Example The following example shows how to create a MAC ACL. Default Configuration No MAC Access List is defined. type} {any...|icmp-code} [dscp number | ip-precedence number] • permit-igmp {any|{source source-wildcard}} {any|{destination destination-wildcard}} {any |...
...-wildcard}} {any |igmp- type} [dscp number | ip-precedence number] 76 ACL Commands An IPv4 ACL, IPv6 ACL and MAC ACL cannot share the same name. Example The following example shows how to create a MAC ACL. Default Configuration No MAC Access List is defined. type} {any...|icmp-code} [dscp number | ip-precedence number] • permit-igmp {any|{source source-wildcard}} {any|{destination destination-wildcard}} {any |...
Command Line Interface Guide
Page 78
....1.1.1 0.0.0.0 any |destination-port} [dscp number | ip-precedence number] [src-portwildcard source-port-wildcard] [dst-port-wildcard source-port-wildcard 78 ACL Commands Default Configuration No IPv4 ACL is added to define a permit statement for an IP ACL. After an ACE is added, an implied deny...-any-any |{destination destination- wildcard}} [dscp number | ip-precedence number] • deny-icmp [disable-...
....1.1.1 0.0.0.0 any |destination-port} [dscp number | ip-precedence number] [src-portwildcard source-port-wildcard] [dst-port-wildcard source-port-wildcard 78 ACL Commands Default Configuration No IPv4 ACL is added to define a permit statement for an IP ACL. After an ACE is added, an implied deny...-any-any |{destination destination- wildcard}} [dscp number | ip-precedence number] • deny-icmp [disable-...
Command Line Interface Guide
Page 79
...8226; source-port - Enter a number or one string. Specifies the UDP/TCP destination port. (Range: 0 - 65535) • destination-port-wildcard - Available protocol names: icmp, igmp, ip, tcp, egp, igp, udp, hmp, rdp, idpr, idrp, rsvp, gre, esp, ah, eigrp, ospf, ipip, pim, l2tp, isis. (Range: 0 - 255). • dscp... bits to be applied to the destination port by placing 1s in bit positions to be ignored. • flags list-of an IP protocol. Default Configuration No IPv4 Access List is prefixed by IGMP message type. Specifies the name or the number of -flags - Specifies an ICMP...
...8226; source-port - Enter a number or one string. Specifies the UDP/TCP destination port. (Range: 0 - 65535) • destination-port-wildcard - Available protocol names: icmp, igmp, ip, tcp, egp, igp, udp, hmp, rdp, idpr, idrp, rsvp, gre, esp, ah, eigrp, ospf, ipip, pim, l2tp, isis. (Range: 0 - 255). • dscp... bits to be applied to the destination port by placing 1s in bit positions to be ignored. • flags list-of an IP protocol. Default Configuration No IPv4 Access List is prefixed by IGMP message type. Specifies the name or the number of -flags - Specifies an ICMP...
Command Line Interface Guide
Page 82
... Interface Configuration (Ethernet, port-channel) mode command applies an ACL to an ACL, all packets are denied. Use the no form of a double tagged packet. Default Configuration This command has no service-acl {input} • input - User Guidelines • The MAC ACL Global Configuration command allows access to create a MAC ACL... do not match the conditions defined in hexadecimal format. (Range: 0 - 05dd-ffff) • inner-vlan vlan id - Example The following example shows how to the IP-Access List Configuration mode. • Before an Access Control Element (ACE) is defined.
... Interface Configuration (Ethernet, port-channel) mode command applies an ACL to an ACL, all packets are denied. Use the no form of a double tagged packet. Default Configuration This command has no service-acl {input} • input - User Guidelines • The MAC ACL Global Configuration command allows access to create a MAC ACL... do not match the conditions defined in hexadecimal format. (Range: 0 - 05dd-ffff) • inner-vlan vlan id - Example The following example shows how to the IP-Access List Configuration mode. • Before an Access Control Element (ACE) is defined.
Command Line Interface Guide
Page 83
The name of the ACL. Default Configuration This command has no default configuration. User Guidelines There are no user guidelines for this command. Example The following example binds (services) an ACL to VLAN 2. Command Mode Privileged EXEC ...(config)# interface eth g1 Console(config-if)# service-acl input macl1 show access-lists The show access-lists [name] • name - Console# show access-lists IP access list ACL1 permit 234 172.30.40.1 0.0.0.0 any permit 234 172.30.8.8 0.0.0.0 any ACL Commands 83 Example The following example displays access lists defined...
The name of the ACL. Default Configuration This command has no default configuration. User Guidelines There are no user guidelines for this command. Example The following example binds (services) an ACL to VLAN 2. Command Mode Privileged EXEC ...(config)# interface eth g1 Console(config-if)# service-acl input macl1 show access-lists The show access-lists [name] • name - Console# show access-lists IP access list ACL1 permit 234 172.30.40.1 0.0.0.0 any permit 234 172.30.8.8 0.0.0.0 any ACL Commands 83 Example The following example displays access lists defined...
Command Line Interface Guide
Page 89
... Uses the list of this command to return to the default. Console (config)# ip http authentication radius local Console (config)# ip http authentication tacacs local ip https authentication The ip https authentication Global Configuration mode command specifies authentication methods for... configures the http authentication. Use the no ip http authentication • method1 [method2...] - User Guidelines • The additional methods of this command to return to the default. ip http authentication The ip http authentication Global Configuration mode command specifies authentication...
... Uses the list of this command to return to the default. Console (config)# ip http authentication radius local Console (config)# ip http authentication tacacs local ip https authentication The ip https authentication Global Configuration mode command specifies authentication methods for... configures the http authentication. Use the no ip http authentication • method1 [method2...] - User Guidelines • The additional methods of this command to return to the default. ip http authentication The ip http authentication Global Configuration mode command specifies authentication...
Command Line Interface Guide
Page 90
...even if all methods return an error, specify none as the command ip https authentication local. Syntax • ip https authentication method1 [method2...] • no default configuration. 90 AAA Commands Syntax • show authentication methods The authentication ... Uses the local username database for authentication. Console (config)# ip https authentication radius local Console (config)# ip https authentication tacacs local show authentication methods Default Configuration This command has no ip https authentication • method1 [method2...] - Uses no authentication...
...even if all methods return an error, specify none as the command ip https authentication local. Syntax • ip https authentication method1 [method2...] • no default configuration. 90 AAA Commands Syntax • show authentication methods The authentication ... Uses the local username database for authentication. Console (config)# ip https authentication radius local Console (config)# ip https authentication tacacs local show authentication methods Default Configuration This command has no ip https authentication • method1 [method2...] - Uses no authentication...
Command Line Interface Guide
Page 97
... add or remove, the command only registers the group in the format of the bridge multicast address command. IP Multicast address. • interface-list - Command Mode Interface Configuration (VLAN) mode. Console (config)# interface vlan...ip-multicast-address} [add | remove] {ethernet interface-list | port-channel port-channel-number-list} • no spaces; multicast-address - Examples The following example registers the MAC address. a hyphen is used to designate a range of ports. • port-channel-number-list - a hyphen is used to designate a range of ports. Default...
... add or remove, the command only registers the group in the format of the bridge multicast address command. IP Multicast address. • interface-list - Command Mode Interface Configuration (VLAN) mode. Console (config)# interface vlan...ip-multicast-address} [add | remove] {ethernet interface-list | port-channel port-channel-number-list} • no spaces; multicast-address - Examples The following example registers the MAC address. a hyphen is used to designate a range of ports. • port-channel-number-list - a hyphen is used to designate a range of ports. Default...
Command Line Interface Guide
Page 98
... and no bridge multicast forbidden address {mac-multicast-address | ip-multicast-address} • add - Separate non consecutive valid port-channels with a comma and no form of port-channels. Default Configuration No forbidden addresses are defined. Syntax • bridge multicast... forbidden address {mac-multicast-address | ip-multicast-address} {add | remove} {ethernet interface-list | port-channel port-channel...
... and no bridge multicast forbidden address {mac-multicast-address | ip-multicast-address} • add - Separate non consecutive valid port-channels with a comma and no form of port-channels. Default Configuration No forbidden addresses are defined. Syntax • bridge multicast... forbidden address {mac-multicast-address | ip-multicast-address} {add | remove} {ethernet interface-list | port-channel port-channel...
Command Line Interface Guide
Page 304
...-ipv6 The radius-server source-ipv6 Global Configuration mode command specifies the source IPv6 address used for the IPv6 communication with RADIUS servers to the default. Default Configuration The default IP address is the outgoing IP interface. Use the no form of this command to return to 10.1.1.1. Example The following example configures the source...
...-ipv6 The radius-server source-ipv6 Global Configuration mode command specifies the source IPv6 address used for the IPv6 communication with RADIUS servers to the default. Default Configuration The default IP address is the outgoing IP interface. Use the no form of this command to return to 10.1.1.1. Example The following example configures the source...
User's Guide
Page 108
...bits is a route or address range that is summarizing a portion of four hexadecimal digits. IPv4 Default Gateway 108 Configuring System Information Packets are forwarded to the default IP when frames are acceptable for insertion, yet for display purposes, the system will display the most ...IPv6 nodes over an IPv4 infrastructure. To open the IPv4 Default Gateway page, click System→ IP Addressing → IPv4 Default Gateway in practice their prefix lengths are permitted, in the tree view. The configured IP address must belong to communicate with each IPv4 address mapped...
...bits is a route or address range that is summarizing a portion of four hexadecimal digits. IPv4 Default Gateway 108 Configuring System Information Packets are forwarded to the default IP when frames are acceptable for insertion, yet for display purposes, the system will display the most ...IPv6 nodes over an IPv4 infrastructure. To open the IPv4 Default Gateway page, click System→ IP Addressing → IPv4 Default Gateway in practice their prefix lengths are permitted, in the tree view. The configured IP address must belong to communicate with each IPv4 address mapped...
User's Guide
Page 219
snmp-server v3-host {ip-address | hostname} username [traps | informs] {noauth | auth | priv} [udp-port port] [filter filtername] [timeout seconds] [retries retries] Creates or updates a notification recipient ...private console# show snmp Shows the current SNMP configuration. show snmp Community-String public private Community-Access View name read only user-view read write default IP address ---------All 172.16.1.1 private su DefaultSuper 172.17.1.1 Configuring System Information 219 Table 6-46. SNMP Notification Recipients CLI Commands CLI Command Description...
snmp-server v3-host {ip-address | hostname} username [traps | informs] {noauth | auth | priv} [udp-port port] [filter filtername] [timeout seconds] [retries retries] Creates or updates a notification recipient ...private console# show snmp Shows the current SNMP configuration. show snmp Community-String public private Community-Access View name read only user-view read write default IP address ---------All 172.16.1.1 private su DefaultSuper 172.17.1.1 Configuring System Information 219 Table 6-46. SNMP Notification Recipients CLI Commands CLI Command Description...