Command Line Interface Guide
Page 20
show interfaces switchport 583 show port protocol 587 show switchport protected 588 show vlan 589 show vlan association mac 590 show vlan association subnet 591 switchport access vlan 592 switchport forbidden vlan 593 switchport general acceptable-frame-type tagged-only 594 switchport general allowed vlan 594 switchport general ingress-filtering disable . . . . . 595 switchport general pvid 596 switchport mode 597 switchport protected 598...
show interfaces switchport 583 show port protocol 587 show switchport protected 588 show vlan 589 show vlan association mac 590 show vlan association subnet 591 switchport access vlan 592 switchport forbidden vlan 593 switchport general acceptable-frame-type tagged-only 594 switchport general allowed vlan 594 switchport general ingress-filtering disable . . . . . 595 switchport general pvid 596 switchport mode 597 switchport protected 598...
Command Line Interface Guide
Page 86
... for a protected group GC switchport trunk allowed Adds or removes VLANs from a port in IC general mode. vlan Creates a VLAN. show dvlan-tunnel interface Displays detailed information about Double PE VLAN Tunneling for the indicated group show vlan Displays VLAN information. PE show port protocol Displays the Protocol-Based VLAN information PE for either the entire system or for the...
... for a protected group GC switchport trunk allowed Adds or removes VLANs from a port in IC general mode. vlan Creates a VLAN. show dvlan-tunnel interface Displays detailed information about Double PE VLAN Tunneling for the indicated group show vlan Displays VLAN information. PE show port protocol Displays the Protocol-Based VLAN information PE for either the entire system or for the...
Command Line Interface Guide
Page 302
VLAN Membership mode: General Operating parameters: PVID: 1 (default) Ingress Filtering: Enabled Acceptable Frame Type: All GVRP status: Enabled Protected: Enabled Port 1/xg1 is member in: VLAN Name Egress rule Type 1 default untagged System 8 VLAN008 tagged Dynamic 11 VLAN0011 tagged Static 19 IPv6 VLAN untagged Static 72 VLAN0072 untagged Static Static configuration: PVID: 1 (default) Ingress Filtering: Enabled Acceptable Frame Type: All Port 1/xg1 is statically configured to: VLAN Name Egress rule 1 default untagged 302 Ethernet Configuration Commands
VLAN Membership mode: General Operating parameters: PVID: 1 (default) Ingress Filtering: Enabled Acceptable Frame Type: All GVRP status: Enabled Protected: Enabled Port 1/xg1 is member in: VLAN Name Egress rule Type 1 default untagged System 8 VLAN008 tagged Dynamic 11 VLAN0011 tagged Static 19 IPv6 VLAN untagged Static 72 VLAN0072 untagged Static Static configuration: PVID: 1 (default) Ingress Filtering: Enabled Acceptable Frame Type: All Port 1/xg1 is statically configured to: VLAN Name Egress rule 1 default untagged 302 Ethernet Configuration Commands
Command Line Interface Guide
Page 339
...This setting prevents the inadvertent dropping of this command disables IGMP Snooping fast-leave mode on VLAN interfaces by default. Default Configuration IGMP snooping is connected to each layer 2 LAN port. Enabling fast-leave allows the switch to immediately remove the layer 2 LAN interface from ...the VLAN. Syntax ip igmp snooping fast-leave vlan-id no user guidelines. Command Mode VLAN Configuration mode User Guidelines This command has no ip igmp snooping fast-leave • vlan id - The no form of the other hosts that multicast group without first sending out MACbased general ...
...This setting prevents the inadvertent dropping of this command disables IGMP Snooping fast-leave mode on VLAN interfaces by default. Default Configuration IGMP snooping is connected to each layer 2 LAN port. Enabling fast-leave allows the switch to immediately remove the layer 2 LAN interface from ...the VLAN. Syntax ip igmp snooping fast-leave vlan-id no user guidelines. Command Mode VLAN Configuration mode User Guidelines This command has no ip igmp snooping fast-leave • vlan id - The no form of the other hosts that multicast group without first sending out MACbased general ...
Command Line Interface Guide
Page 573
... interface • show interfaces switchport • show port protocol • show port protocol • show vlan • show vlan association mac • show vlan association subnet • switchport access vlan • switchport forbidden vlan • switchport general acceptable-frame-type tagged-only • switchport general allowed vlan • switchport general ingress-filtering disable • switchport general pvid • switchport mode • switchport...
... interface • show interfaces switchport • show port protocol • show port protocol • show vlan • show vlan association mac • show vlan association subnet • switchport access vlan • switchport forbidden vlan • switchport general acceptable-frame-type tagged-only • switchport general allowed vlan • switchport general ingress-filtering disable • switchport general pvid • switchport mode • switchport...
Command Line Interface Guide
Page 584
... Privileged EXEC mode User Guidelines This command has no default configuration. Default Configuration This command has no user guidelines. Syntax show interface switchport ethernet 1/g1 Port 1/g1: VLAN Membership mode: General Operating parameters: PVID: 1 (default) Ingress Filtering: Enabled Acceptable Frame Type: All GVRP status: Enabled Protected: Enabled...
... Privileged EXEC mode User Guidelines This command has no default configuration. Default Configuration This command has no user guidelines. Syntax show interface switchport ethernet 1/g1 Port 1/g1: VLAN Membership mode: General Operating parameters: PVID: 1 (default) Ingress Filtering: Enabled Acceptable Frame Type: All GVRP status: Enabled Protected: Enabled...
Command Line Interface Guide
Page 585
... Filtering: Enabled Acceptable Frame Type: All Port 1/g1 is statically configured to: VLAN Name Egress rule ---- --------- ----------- 11 VLAN0011 tagged 19 IPv6 VLAN untagged 72 VLAN0072 untagged Forbidden VLANS: VLAN Name ---- --------- 73 Out The following example displays switchport configuration individually for 1/g2. console#show interface switchport ethernet 1/g2 Port 1/g2: VLAN Membership mode: General Operating parameters: PVID: 4095 (discard...
... Filtering: Enabled Acceptable Frame Type: All Port 1/g1 is statically configured to: VLAN Name Egress rule ---- --------- ----------- 11 VLAN0011 tagged 19 IPv6 VLAN untagged 72 VLAN0072 untagged Forbidden VLANS: VLAN Name ---- --------- 73 Out The following example displays switchport configuration individually for 1/g2. console#show interface switchport ethernet 1/g2 Port 1/g2: VLAN Membership mode: General Operating parameters: PVID: 4095 (discard...
Command Line Interface Guide
Page 594
... discard untagged frames at ingress. console(config)#interface ethernet 1/g8 console(config-if-1/g8)#switchport general acceptable-frame-type tagged-only switchport general allowed vlan Use the switchport general allowed vlan command in Interface Configuration mode to or remove VLANs from a general port. Example The following example configures 1/g8 to discard untagged frames at ingress. Command Mode Interface...
... discard untagged frames at ingress. console(config)#interface ethernet 1/g8 console(config-if-1/g8)#switchport general acceptable-frame-type tagged-only switchport general allowed vlan Use the switchport general allowed vlan command in Interface Configuration mode to or remove VLANs from a general port. Example The following example configures 1/g8 to discard untagged frames at ingress. Command Mode Interface...
Command Line Interface Guide
Page 595
Default Configuration Untagged. Syntax switchport general ingress-filtering disable VLAN Commands 595 • add vlan-list - Use a hyphen to designate a range of VLAN IDs to a VLAN without first removing the VLAN from the list. Example The following example shows how to add VLANs 1, 2, 5, and 8 to transmit tagged packets for the VLANs. Sets the port to the allowed list. List of...
Default Configuration Untagged. Syntax switchport general ingress-filtering disable VLAN Commands 595 • add vlan-list - Use a hyphen to designate a range of VLAN IDs to a VLAN without first removing the VLAN from the list. Example The following example shows how to add VLANs 1, 2, 5, and 8 to transmit tagged packets for the VLANs. Sets the port to the allowed list. List of...
Command Line Interface Guide
Page 596
... this command. console(config)#interface ethernet 1/g8 console(config-if-1/g8)#switchport general ingressfiltering disable switchport general pvid Use the switchport general pvid command in general mode. Use the switchport mode general command to configure the Port VLAN ID (PVID) when the interface is 4093. 596 VLAN Commands PVID. To configure the default value, use the no switchport...
... this command. console(config)#interface ethernet 1/g8 console(config-if-1/g8)#switchport general ingressfiltering disable switchport general pvid Use the switchport general pvid command in general mode. Use the switchport mode general command to configure the Port VLAN ID (PVID) when the interface is 4093. 596 VLAN Commands PVID. To configure the default value, use the no switchport...
Command Line Interface Guide
Page 597
... 802.1q support VLAN interface. A general mode port may belong to fully configure all VLAN features on a general mode port. Syntax switchport mode {access|trunk|general} no user guidelines. To reset the mode to a single VLAN. An access port is in Interface Configuration mode to configure the VLAN membership mode of both trunk and access ports. An access port only egresses untagged...
... 802.1q support VLAN interface. A general mode port may belong to fully configure all VLAN features on a general mode port. Syntax switchport mode {access|trunk|general} no user guidelines. To reset the mode to a single VLAN. An access port is in Interface Configuration mode to configure the VLAN membership mode of both trunk and access ports. An access port only egresses untagged...
Command Line Interface Guide
Page 740
... MLD Snooping snooping immediate-leave admin mode on VLANs where only one host is connected to each layer 2 LAN port. Also, fast-leave processing is disabled. Specifies a VLAN ID value in receiving multicast traffic directed to that multicast group without first sending out MAC-based general queries to immediately remove the layer 2 LAN interface...
... MLD Snooping snooping immediate-leave admin mode on VLANs where only one host is connected to each layer 2 LAN port. Also, fast-leave processing is disabled. Specifies a VLAN ID value in receiving multicast traffic directed to that multicast group without first sending out MAC-based general queries to immediately remove the layer 2 LAN interface...
User's Guide
Page 287
... all system operations and general information for network security, ports, address tables, GARP, VLANs, Spanning Tree, Port Aggregation, and Multicast Support. The topics covered in this section include: • Configuring Network Security • Configuring Ports • Configuring Traffic Mirroring... Configuring Address Tables • Configuring GARP • Configuring the Spanning Tree Protocol • Configuring VLANs • Configuring Voice VLAN • Aggregating Ports • Managing Multicast Support • IGMP Snooping • MRouter Status • MLD Snooping ...
... all system operations and general information for network security, ports, address tables, GARP, VLANs, Spanning Tree, Port Aggregation, and Multicast Support. The topics covered in this section include: • Configuring Network Security • Configuring Ports • Configuring Traffic Mirroring... Configuring Address Tables • Configuring GARP • Configuring the Spanning Tree Protocol • Configuring VLANs • Configuring Voice VLAN • Aggregating Ports • Managing Multicast Support • IGMP Snooping • MRouter Status • MLD Snooping ...
User's Guide
Page 339
Configuring GARP Generic Attribute Registration Protocol (GARP) is a general-purpose protocol that PDUs are transmitted. To display the GARP menu page, click Switching →GARP in a given network attribute, such as VLAN or multicast address. Displays time, in centiseconds, that the switch waits before leaving the GARP state...Join Timer (10-100) - Figure 7-36. Leave time is 200-6000. The GARP Timers page is 10-100. Specifies the Unit and Port or LAG on the switch. The possible field value is accessible from the GARP menu page. The default value is 100 centisecs. • ...
Configuring GARP Generic Attribute Registration Protocol (GARP) is a general-purpose protocol that PDUs are transmitted. To display the GARP menu page, click Switching →GARP in a given network attribute, such as VLAN or multicast address. Displays time, in centiseconds, that the switch waits before leaving the GARP state...Join Timer (10-100) - Figure 7-36. Leave time is 200-6000. The GARP Timers page is 10-100. Specifies the Unit and Port or LAG on the switch. The possible field value is accessible from the GARP menu page. The default value is 100 centisecs. • ...
User's Guide
Page 362
... name show interfaces switchport show vlan switchport forbidden vlan switchport general allowed vlan switchport trunk allowed vlan vlan vlan database vlan makestatic Description Configures a name to specify the Double VLAN configuration for this feature. Adds or removes VLANs from a port in general mode. Enters the VLAN database configuration mode. Displays switchport configuration. Adds or removes VLANs from a port in General mode. Creates a VLAN. To access the Double...
... name show interfaces switchport show vlan switchport forbidden vlan switchport general allowed vlan switchport trunk allowed vlan vlan vlan database vlan makestatic Description Configures a name to specify the Double VLAN configuration for this feature. Adds or removes VLANs from a port in general mode. Enters the VLAN database configuration mode. Displays switchport configuration. Adds or removes VLANs from a port in General mode. Creates a VLAN. To access the Double...
User's Guide
Page 367
... on the page. 4. Select the port to enable/disable ingress filtering on an access port. - General - Access - The port belongs to VLANs, and each VLAN is updated. Possible values are tagged (except for an optional single native VLAN). • PVID (1-4093) | 4095 - The VLAN port settings are 1-4093 or 4095. • Frame Type - VLAN Port Table Configuring Switching Information 367 Enables...
... on the page. 4. Select the port to enable/disable ingress filtering on an access port. - General - Access - The port belongs to VLANs, and each VLAN is updated. Possible values are tagged (except for an optional single native VLAN). • PVID (1-4093) | 4095 - The VLAN port settings are 1-4093 or 4095. • Frame Type - VLAN Port Table Configuring Switching Information 367 Enables...
Configuration Guide
Page 31
...(config-if-1/g18)#switchport general acceptable-frame-type taggedonly console(config-if-1/g18)#exit Switching Configuration 31 CLI Examples The following commands to create two VLANs and to assign the VLAN IDs while leaving the names blank. console(config)#vlan database console(config-vlan)#vlan 2 console(config-vlan)#vlan 3 console(config-vlan)#exit Example #2: Assign Ports to VLAN2 This sequence...
...(config-if-1/g18)#switchport general acceptable-frame-type taggedonly console(config-if-1/g18)#exit Switching Configuration 31 CLI Examples The following commands to create two VLANs and to assign the VLAN IDs while leaving the names blank. console(config)#vlan database console(config-vlan)#vlan 2 console(config-vlan)#vlan 3 console(config-vlan)#exit Example #2: Assign Ports to VLAN2 This sequence...
Configuration Guide
Page 32
...)#switchport general pvid 3 Example #5: Assign IP Addresses to VLAN 2 In order for the VLAN to assign VLAN 3 as a routing interface, you must enable routing on the VLAN and on the switch. Example #3: Assign Ports to VLAN3 This example shows how to assign the ports that port 1/g17 can never belong to VLAN 3. Note that port 1/g18 belongs to both VLANs and...
...)#switchport general pvid 3 Example #5: Assign IP Addresses to VLAN 2 In order for the VLAN to assign VLAN 3 as a routing interface, you must enable routing on the VLAN and on the switch. Example #3: Assign Ports to VLAN3 This example shows how to assign the ports that port 1/g17 can never belong to VLAN 3. Note that port 1/g18 belongs to both VLANs and...
Configuration Guide
Page 39
... 802.1X authentication for unauthenticated Voice VLANs is configured with MAC-based port authentication to allow unauthenticated traffic on the port with the Voice VLAN ID set to the Voice VLAN without manual configuration. Example #2: Configuring Voice VLAN on an Unauthenticated Port In some networks, multiple devices (for more information). The PowerConnect 6200 Series switches can allow authentication...
... 802.1X authentication for unauthenticated Voice VLANs is configured with MAC-based port authentication to allow unauthenticated traffic on the port with the Voice VLAN ID set to the Voice VLAN without manual configuration. Example #2: Configuring Voice VLAN on an Unauthenticated Port In some networks, multiple devices (for more information). The PowerConnect 6200 Series switches can allow authentication...
Configuration Guide
Page 108
...Timeout 30 Server Timeout (secs 30 Logical Port ------112 Supplicant MAC-Address 0000.0000.0000 AuthPAE State -------Initialize Backend State -------Idle VLAN Id ----- Filter Id ------ 108 Device Security Example #2: MAC-Based Authentication Mode The PowerConnect 6200 Series switches support MAC-based 802....1X authentication. The following command enables MAC-based authentication on a single port. When multiple hosts (for example, a PC, a printer, and a phone in order to an 802.1Q VLAN. The port must be in general ...
...Timeout 30 Server Timeout (secs 30 Logical Port ------112 Supplicant MAC-Address 0000.0000.0000 AuthPAE State -------Initialize Backend State -------Idle VLAN Id ----- Filter Id ------ 108 Device Security Example #2: MAC-Based Authentication Mode The PowerConnect 6200 Series switches support MAC-based 802....1X authentication. The following command enables MAC-based authentication on a single port. When multiple hosts (for example, a PC, a printer, and a phone in order to an 802.1Q VLAN. The port must be in general ...