Command Line Interface Guide
Page 11
show ip igmp snooping mrouter 200 show ip igmp snooping interface 201 show ip igmp snooping groups 202 14 IP Addressing Commands 205 clear host dhcp 205 ip address 205 ip address dhcp 206 ip default-gateway 207 show ip interface 208 arp 209 arp timeout 210 clear arp-cache 210 show arp 211 ip domain-lookup 212 ip domain-name 213 ip name-server 213 ip host 214 clear host 215 show hosts 215 15 IPv6 Addressing 217 ipv6 enable 217 ipv6 address autoconfig 218 ipv6 icmp error-interval 218 show ipv6 icmp error-interval 219 ipv6 address 220 Contents 11
show ip igmp snooping mrouter 200 show ip igmp snooping interface 201 show ip igmp snooping groups 202 14 IP Addressing Commands 205 clear host dhcp 205 ip address 205 ip address dhcp 206 ip default-gateway 207 show ip interface 208 arp 209 arp timeout 210 clear arp-cache 210 show arp 211 ip domain-lookup 212 ip domain-name 213 ip name-server 213 ip host 214 clear host 215 show hosts 215 15 IPv6 Addressing 217 ipv6 enable 217 ipv6 address autoconfig 218 ipv6 icmp error-interval 218 show ipv6 icmp error-interval 219 ipv6 address 220 Contents 11
Command Line Interface Guide
Page 42
... Configuration Displays the usability status of host names and addresses. 42 Command Groups IP Addressing Commands Command Group clear host dhcp ip address ip address dhcp ip default-gateway show ip interface arp arp timeout clear arp-cache show arp ip domain-lookup ip domain-name ip name-server ip host clear host show hosts Description Access Mode Sets an...
... Configuration Displays the usability status of host names and addresses. 42 Command Groups IP Addressing Commands Command Group clear host dhcp ip address ip address dhcp ip default-gateway show ip interface arp arp timeout clear arp-cache show arp ip domain-lookup ip domain-name ip name-server ip host clear host show hosts Description Access Mode Sets an...
Command Line Interface Guide
Page 58
... vlan Configures the VLAN membership mode of the specified VLAN, and Interface vlan the VLAN ID is the "port default VLAN ID (PVID)". Interface Configuration map protocol protocols- protocols-group vlan Interface Configuration ip internal-usage-vlan Reserves a VLAN as a member of a port. ingress-filtering disable Interface Configuration switchport general acceptable-frame...
... vlan Configures the VLAN membership mode of the specified VLAN, and Interface vlan the VLAN ID is the "port default VLAN ID (PVID)". Interface Configuration map protocol protocols- protocols-group vlan Interface Configuration ip internal-usage-vlan Reserves a VLAN as a member of a port. ingress-filtering disable Interface Configuration switchport general acceptable-frame...
Command Line Interface Guide
Page 64
... ethernet interface range port-channel interface range vlan interface tunnel interface vlan ip default-gateway ip domain-lookup ip domain-name ip host ip http authentication ip http port ip https server ip https authentication ip https certificate ip https server ip https port ip igmp snooping (Global) ip name-server ip ssh port ip ssh pubkey-auth Enables 802.1x globally. Ends the current configuration...
... ethernet interface range port-channel interface range vlan interface tunnel interface vlan ip default-gateway ip domain-lookup ip domain-name ip host ip http authentication ip http port ip https server ip https authentication ip https certificate ip https server ip https port ip igmp snooping (Global) ip name-server ip ssh port ip ssh pubkey-auth Enables 802.1x globally. Ends the current configuration...
Command Line Interface Guide
Page 65
...management Access-List, and enters the Access-List for the device. Improves RADIUS response times when servers are unavailable. ip ssh server ipv6 default-gateway ipv6 host ipv6 icmp error-interval ipv6 neighbor lacp system-priority line logging logging buffered logging buffered size logging ...system to count Multicast packets. Sets the authentication and encryption key for IPv6 ICMP error messages. Command Modes 65 Defines an IPv6 default gateway. Configures the system LACP priority. Identifies a specific line for a remote telnet or console. Specifies the login authentication method ...
...management Access-List, and enters the Access-List for the device. Improves RADIUS response times when servers are unavailable. ip ssh server ipv6 default-gateway ipv6 host ipv6 icmp error-interval ipv6 neighbor lacp system-priority line logging logging buffered logging buffered size logging ...system to count Multicast packets. Sets the authentication and encryption key for IPv6 ICMP error messages. Command Modes 65 Defines an IPv6 default gateway. Configures the system LACP priority. Identifies a specific line for a remote telnet or console. Specifies the login authentication method ...
Command Line Interface Guide
Page 66
radius-server source-ip Specifies the source IP address used for communication with RADIUS servers. rmon event Configures a RMON event. spanning-tree bpdu Defines BPDU handling when spanning tree is located. radius... tree bridge forward time. snmp-server contact Sets up the community access string to permit access to reply. spanning-tree pathcost method Sets the default pathcost method. radius-server retransmit Specifies the number of times the software searches the list of Simple Network Management Protocol notification operation. spanning-tree ...
radius-server source-ip Specifies the source IP address used for communication with RADIUS servers. rmon event Configures a RMON event. spanning-tree bpdu Defines BPDU handling when spanning tree is located. radius... tree bridge forward time. snmp-server contact Sets up the community access string to permit access to reply. spanning-tree pathcost method Sets the default pathcost method. radius-server retransmit Specifies the number of times the software searches the list of Simple Network Management Protocol notification operation. spanning-tree ...
Command Line Interface Guide
Page 73
...physical interface. show qos interface Assigns CoS values to another node on the network. show ip igmp snooping interface Displays IGMP snooping configuration. show hosts Displays the default domain name, a list of name server hosts, the static and the cached list of ...Lists the commands entered in the current session. show rmon alarm Displays alarm configurations. show line Displays line parameters. show ip igmp snooping mrouter Displays information on an interface. show interfaces description Displays the description for all the maps for all ...
...physical interface. show qos interface Assigns CoS values to another node on the network. show ip igmp snooping interface Displays IGMP snooping configuration. show hosts Displays the default domain name, a list of name server hosts, the static and the cached list of ...Lists the commands entered in the current session. show rmon alarm Displays alarm configurations. show line Displays line parameters. show ip igmp snooping mrouter Displays information on an interface. show interfaces description Displays the description for all the maps for all ...
Command Line Interface Guide
Page 75
... MAC ACL cannot share the same name. ACL Commands 75 Command Mode Global Configuration mode. Default Configuration No IPv4 Access List is defined. Console(config)# ip access-list dell-access-1 Console(config-ip-al)# mac access-list The mac access-list Global Configuration mode command enables the MAC-Access... Layer 2 ACLs. Example The following example shows how to define an IPv4 Access List called dell-access-1 and to place the device in IPv4 Access List Configuration mode. Syntax • ip access-list access-list-name • no form of this command to remove the Access List...
... MAC ACL cannot share the same name. ACL Commands 75 Command Mode Global Configuration mode. Default Configuration No IPv4 Access List is defined. Console(config)# ip access-list dell-access-1 Console(config-ip-al)# mac access-list The mac access-list Global Configuration mode command enables the MAC-Access... Layer 2 ACLs. Example The following example shows how to define an IPv4 Access List called dell-access-1 and to place the device in IPv4 Access List Configuration mode. Syntax • ip access-list access-list-name • no form of this command to remove the Access List...
Command Line Interface Guide
Page 76
Default Configuration No MAC Access List is defined. Syntax • mac access-list name • no mac access-list name • access-list-name - Name of ... An IPv4 ACL, IPv6 ACL and MAC ACL cannot share the same name. Console(config)# mac access-list macl-acl1 Console(config-mac-al)# permit (ip) The permit IP-Access List Configuration mode command permits traffic if the conditions defined in the permit statement match. type} {any|icmp-code} [dscp number...
Default Configuration No MAC Access List is defined. Syntax • mac access-list name • no mac access-list name • access-list-name - Name of ... An IPv4 ACL, IPv6 ACL and MAC ACL cannot share the same name. Console(config)# mac access-list macl-acl1 Console(config-mac-al)# permit (ip) The permit IP-Access List Configuration mode command permits traffic if the conditions defined in the permit statement match. type} {any|icmp-code} [dscp number...
Command Line Interface Guide
Page 78
...wildcard}} {any| source-port} {any|{destination destination-wildcard}} {any |{destination destination- Default Configuration No IPv4 ACL is added, an implied deny-any-any dscp 56 deny (IP) The deny IP-Access List Configuration mode command denies traffic if the conditions defined in the permit statement are...-port-wildcard] [dst-port-wildcard source-port-wildcard 78 ACL Commands Command Mode IP-Access List Configuration mode. After an ACE is defined. Console(config)# ip access-list ip-acl1 Console(config-ip-al)# permit rsvp 192.1.1.1 0.0.0.0 any condition exists at the end of the ...
...wildcard}} {any| source-port} {any|{destination destination-wildcard}} {any |{destination destination- Default Configuration No IPv4 ACL is added, an implied deny-any-any dscp 56 deny (IP) The deny IP-Access List Configuration mode command denies traffic if the conditions defined in the permit statement are...-port-wildcard] [dst-port-wildcard source-port-wildcard 78 ACL Commands Command Mode IP-Access List Configuration mode. After an ACE is defined. Console(config)# ip access-list ip-acl1 Console(config-ip-al)# permit rsvp 192.1.1.1 0.0.0.0 any condition exists at the end of the ...
Command Line Interface Guide
Page 79
...If a flag should be ignored. • source-port - Available options are concatenated to the destination port by IGMP message type. Available protocol names: icmp, igmp, ip, tcp, egp, igp, udp, hmp, rdp, idpr, idrp, rsvp, gre, esp, ah, eigrp, ospf, ipip, pim, l2tp, isis. (Range: ...mobile-host-redirect, mobileregistration-request, mobile-registration-reply, domain-name-request, domain-name-reply, skip, photuris. • icmp-code - Default Configuration No IPv4 Access List is matched. • source - Specifies an ICMP message code for filtering ICMP packets. Specifies an ICMP...
...If a flag should be ignored. • source-port - Available options are concatenated to the destination port by IGMP message type. Available protocol names: icmp, igmp, ip, tcp, egp, igp, udp, hmp, rdp, idpr, idrp, rsvp, gre, esp, ah, eigrp, ospf, ipip, pim, l2tp, isis. (Range: ...mobile-host-redirect, mobileregistration-request, mobile-registration-reply, domain-name-request, domain-name-reply, skip, photuris. • icmp-code - Default Configuration No IPv4 Access List is matched. • source - Specifies an ICMP message code for filtering ICMP packets. Specifies an ICMP...
Command Line Interface Guide
Page 82
... exists at the end of Service (CoS). (Range: 0 - 7) • cos-wildcard - Use the no form of a double tagged packet. Default Configuration This command has no service-acl {input} • input - Specifies wildcard bits to be applied to the input interface. Specifies the packet's Ethernet..., an implied deny-any-any service-acl The service-acl Interface Configuration (Ethernet, port-channel) mode command applies an ACL to the IP-Access List Configuration mode. • Before an Access Control Element (ACE) is defined. Command Mode Interface Configuration (Ethernet, port-channel...
... exists at the end of Service (CoS). (Range: 0 - 7) • cos-wildcard - Use the no form of a double tagged packet. Default Configuration This command has no service-acl {input} • input - Specifies wildcard bits to be applied to the input interface. Specifies the packet's Ethernet..., an implied deny-any-any service-acl The service-acl Interface Configuration (Ethernet, port-channel) mode command applies an ACL to the IP-Access List Configuration mode. • Before an Access Control Element (ACE) is defined. Command Mode Interface Configuration (Ethernet, port-channel...
Command Line Interface Guide
Page 83
... for this command. Example The following example binds (services) an ACL to VLAN 2. The name of the ACL. Default Configuration This command has no default configuration. Console# show access-lists [name] • name - User Guidelines There are no user guidelines for this command.... Example The following example displays access lists defined on the device. Syntax • show access-lists IP access list ACL1 permit ...
... for this command. Example The following example binds (services) an ACL to VLAN 2. The name of the ACL. Default Configuration This command has no default configuration. Console# show access-lists [name] • name - User Guidelines There are no user guidelines for this command.... Example The following example displays access lists defined on the device. Syntax • show access-lists IP access list ACL1 permit ...
Command Line Interface Guide
Page 89
... authentication Global Configuration mode command specifies authentication methods for authentication. none Uses no ip http authentication • method1 [method2...] - Default Configuration The local user database is checked. User Guidelines • The additional methods of all TACACS servers... database for http. Use the no form of this command to return to the default. radius Uses the list of all methods return an error, specify none as the command ip http authentication local. Syntax • ip http authentication method1 [method2...] • no authentication.
... authentication Global Configuration mode command specifies authentication methods for authentication. none Uses no ip http authentication • method1 [method2...] - Default Configuration The local user database is checked. User Guidelines • The additional methods of all TACACS servers... database for http. Use the no form of this command to return to the default. radius Uses the list of all methods return an error, specify none as the command ip http authentication local. Syntax • ip http authentication method1 [method2...] • no authentication.
Command Line Interface Guide
Page 90
... radius tacacs Source or destination Uses the local username database for authentication. Console (config)# ip https authentication radius local Console (config)# ip https authentication tacacs local show authentication methods Default Configuration This command has no ip https authentication • method1 [method2...] - Uses the list of authentication are used only... line. Command Mode Global Configuration mode. Uses the list of all methods return an error, specify none as the command ip https authentication local. Default Configuration The local user database is checked.
... radius tacacs Source or destination Uses the local username database for authentication. Console (config)# ip https authentication radius local Console (config)# ip https authentication tacacs local show authentication methods Default Configuration This command has no ip https authentication • method1 [method2...] - Uses the list of authentication are used only... line. Command Mode Global Configuration mode. Uses the list of all methods return an error, specify none as the command ip https authentication local. Default Configuration The local user database is checked.
Command Line Interface Guide
Page 97
If no option is specified, this is used to designate a range of xx:xx:xx:xx:xx:xx. • ip- IP Multicast address. • interface-list - Separate nonconsecutive Ethernet ports with a comma and no spaces; a hyphen is executed without add or ...| ip-multicast-address} [add | remove] {ethernet interface-list | port-channel port-channel-number-list} • no form of ports. MAC Multicast address in the bridge database. • Static Multicast addresses can only be defined on static VLANs. multicast-address - a hyphen is the default option. • remove - Default Configuration ...
If no option is specified, this is used to designate a range of xx:xx:xx:xx:xx:xx. • ip- IP Multicast address. • interface-list - Separate nonconsecutive Ethernet ports with a comma and no spaces; a hyphen is executed without add or ...| ip-multicast-address} [add | remove] {ethernet interface-list | port-channel port-channel-number-list} • no form of ports. MAC Multicast address in the bridge database. • Static Multicast addresses can only be defined on static VLANs. multicast-address - a hyphen is the default option. • remove - Default Configuration ...
Command Line Interface Guide
Page 98
...of xx:xx:xx:xx:xx:xx. • ip- Default Configuration No forbidden addresses are defined. Removes ports from the group. • mac-multicast-address - IP Multicast address is in the format of this command to return to default. Command Modes Interface Configuration (VLAN) mode. Console ...list} • no spaces; Separate non consecutive valid port-channels with a comma and no bridge multicast forbidden address {mac-multicast-address | ip-multicast-address} • add - multicast-address - a hyphen is used to designate a range of port-channels. User Guidelines • ...
...of xx:xx:xx:xx:xx:xx. • ip- Default Configuration No forbidden addresses are defined. Removes ports from the group. • mac-multicast-address - IP Multicast address is in the format of this command to return to default. Command Modes Interface Configuration (VLAN) mode. Console ...list} • no spaces; Separate non consecutive valid port-channels with a comma and no bridge multicast forbidden address {mac-multicast-address | ip-multicast-address} • add - multicast-address - a hyphen is used to designate a range of port-channels. User Guidelines • ...
Command Line Interface Guide
Page 304
... • no radius-server source-ipv6 source • source - Default Configuration The default IP address is the outgoing IP interface. radius-server source-ip The radius-server source-ip Global Configuration mode command specifies the source IP address used for this command. Specifies the source IP address. Syntax • radius-server source-ipv6 source • no radius source...
... • no radius-server source-ipv6 source • source - Default Configuration The default IP address is the outgoing IP interface. radius-server source-ip The radius-server source-ip Global Configuration mode command specifies the source IP address used for this command. Specifies the source IP address. Syntax • radius-server source-ipv6 source • no radius source...
User's Guide
Page 108
... a portion of four hexadecimal digits. To open the IPv4 Default Gateway page, click System→ IP Addressing → IPv4 Default Gateway in the tree view. To open the IP Addressing page, click System → IP Addressing in the tree view. IPv6 Syntax The 128-bit ...with "double colons" (::) is required for assigning Gateway devices. The configured IP address must belong to ensure uniqueness. An intermediary transition mechanism is acceptable. Packets are forwarded to the default IP when frames are not required to communicate with IPv6 nodes over an IPv4 infrastructure...
... a portion of four hexadecimal digits. To open the IPv4 Default Gateway page, click System→ IP Addressing → IPv4 Default Gateway in the tree view. To open the IP Addressing page, click System → IP Addressing in the tree view. IPv6 Syntax The 128-bit ...with "double colons" (::) is required for assigning Gateway devices. The configured IP address must belong to ensure uniqueness. An intermediary transition mechanism is acceptable. Packets are forwarded to the default IP when frames are not required to communicate with IPv6 nodes over an IPv4 infrastructure...
User's Guide
Page 219
... | 2] [udp-port port] [filter filtername] [timeout seconds] [retries retries] Creates or updates a notification recipient receiving notifications in SNMP version 3. snmp-server v3-host {ip-address | hostname} username [traps | informs] {noauth | auth | priv} [udp-port port] [filter filtername] [timeout seconds] [retries retries] Creates or updates a.... show snmp Community-String public private Community-Access View name read only user-view read write default IP address ---------All 172.16.1.1 private su DefaultSuper 172.17.1.1 Configuring System Information 219
... | 2] [udp-port port] [filter filtername] [timeout seconds] [retries retries] Creates or updates a notification recipient receiving notifications in SNMP version 3. snmp-server v3-host {ip-address | hostname} username [traps | informs] {noauth | auth | priv} [udp-port port] [filter filtername] [timeout seconds] [retries retries] Creates or updates a.... show snmp Community-String public private Community-Access View name read only user-view read write default IP address ---------All 172.16.1.1 private su DefaultSuper 172.17.1.1 Configuring System Information 219