Command Line Interface Guide
Page 3
Contents 1 Command Groups 55 Introduction 55 Command Groups 55 Layer 2 Commands 61 2 Using the CLI 135 135 Introduction 135 Entering and Editing CLI Commands 135 CLI Command Modes 141 3 Layer 2 Commands 187 Introduction 187 4 AAA Commands 188 aaa authentication enable 190 aaa authentication login 191 aaa authorization network default radius 193 Contents 3
Contents 1 Command Groups 55 Introduction 55 Command Groups 55 Layer 2 Commands 61 2 Using the CLI 135 135 Introduction 135 Entering and Editing CLI Commands 135 CLI Command Modes 141 3 Layer 2 Commands 187 Introduction 187 4 AAA Commands 188 aaa authentication enable 190 aaa authentication login 191 aaa authorization network default radius 193 Contents 3
Command Line Interface Guide
Page 61
...level from a remote telnet or console. enable password Sets a local password to control access to accept VLAN assignment GC default radius by the RADIUS server. ip http authentication Specifies authentication methods for https. GC ip https authentication Specifies authentication methods for... lists for a remote telnet or console. User EXEC • VLAN - SSH Public Key • SK - GC login authentication Specifies the login authentication method list LC for GC accessing higher privilege levels. password Specifies a password on interfaces running IEEE 802.1X. GC...
...level from a remote telnet or console. enable password Sets a local password to control access to accept VLAN assignment GC default radius by the RADIUS server. ip http authentication Specifies authentication methods for https. GC ip https authentication Specifies authentication methods for... lists for a remote telnet or console. User EXEC • VLAN - SSH Public Key • SK - GC login authentication Specifies the login authentication method list LC for GC accessing higher privilege levels. password Specifies a password on interfaces running IEEE 802.1X. GC...
Command Line Interface Guide
Page 155
... the CLI 155 If it is configured, the default access level is not used by the SNMP manager. The wizard requires the use the local authentication setting only, which allows user account access via these management interfaces. During a subsequent login, the user may elect to skip this step if... SNMP management is set to enter spaces in the community string, their use the wizard initially, the session defaults to the CLI mode with a warning to be used . After...
... the CLI 155 If it is configured, the default access level is not used by the SNMP manager. The wizard requires the use the local authentication setting only, which allows user account access via these management interfaces. During a subsequent login, the user may elect to skip this step if... SNMP management is set to enter spaces in the community string, their use the wizard initially, the session defaults to the CLI mode with a warning to be used . After...
Command Line Interface Guide
Page 160
... user name: admin Please enter the user password: ******** Please reenter the user password: ******** Step 3: Next, an IP address is used to login to the CLI and Web interface. To setup an IP address: 160 Using the CLI {public}: public Please enter the IP address of which ... user account. The IP address is the IP address you may setup other accounts and change privilege levels later. For more information on the default VLAN (VLAN #1), of the Management System (A.B.C.D) or wildcard (0.0.0.0) to manage from the network via DHCP (this requires that the system automatically retrieve...
... user name: admin Please enter the user password: ******** Please reenter the user password: ******** Step 3: Next, an IP address is used to login to the CLI and Web interface. To setup an IP address: 160 Using the CLI {public}: public Please enter the IP address of which ... user account. The IP address is the IP address you may setup other accounts and change privilege levels later. For more information on the default VLAN (VLAN #1), of the Management System (A.B.C.D) or wildcard (0.0.0.0) to manage from the network via DHCP (this requires that the system automatically retrieve...
Command Line Interface Guide
Page 162
... through the initial switch configuration, and gets you like to run the setup wizard within 60 seconds)? [Y/N] y Step 1: The system is used to login to manually configure the switch. Would you like to setup the SNMP management interface now? [Y/N] n Step 2: Now we need to setup your initial ...running as quickly as possible. Unit 1 - To manage the switch using the default system configuration.Note: You can . This account is not setup for Dell Network Manager) you can exit the setup wizard at any point by default. To setup a user account: 162 Using the CLI You must answer this...
... through the initial switch configuration, and gets you like to run the setup wizard within 60 seconds)? [Y/N] y Step 1: The system is used to login to manually configure the switch. Would you like to setup the SNMP management interface now? [Y/N] n Step 2: Now we need to setup your initial ...running as quickly as possible. Unit 1 - To manage the switch using the default system configuration.Note: You can . This account is not setup for Dell Network Manager) you can exit the setup wizard at any point by default. To setup a user account: 162 Using the CLI You must answer this...
Command Line Interface Guide
Page 188
... explains the following commands: • aaa authentication dot1x • aaa authentication enable • aaa authentication login • aaa authorization network default radius • enable authentication • enable password • ip http authentication • ip https authentication • login authentication • password (Line Configuration) • password (User EXEC) • show authentication methods • show...
... explains the following commands: • aaa authentication dot1x • aaa authentication enable • aaa authentication login • aaa authorization network default radius • enable authentication • enable password • ip http authentication • ip https authentication • login authentication • password (Line Configuration) • password (User EXEC) • show authentication methods • show...
Command Line Interface Guide
Page 189
... methods return an error, specify none as the final method in Global Configuration mode to create an authentication login list. Syntax aaa authentication dot1x default method1 no authentication. At least one from the following example uses the aaa authentication dot1x... default command with no aaa authentication dot1x default • method1 - console(config)# aaa authentication dot1x default none AAA Commands 189 Example The following table: Keyword radius none Description Uses the list ...
... methods return an error, specify none as the final method in Global Configuration mode to create an authentication login list. Syntax aaa authentication dot1x default method1 no authentication. At least one from the following example uses the aaa authentication dot1x... default command with no aaa authentication dot1x default • method1 - console(config)# aaa authentication dot1x default none AAA Commands 189 Example The following table: Keyword radius none Description Uses the list ...
Command Line Interface Guide
Page 191
... that follow this argument as the final method in . • list-name - console(config)# aaa authentication enable default enable aaa authentication login Use the aaa authentication login command in the given sequence. Uses the listed authentication methods that the authentication algorithm tries in Global Configuration mode to ... the switch to TACACS+ servers for a level one user must authenticate to get to name this command. Syntax aaa authentication login {default|list-name} method1 [method2...] no authentication method is down. A level one user if no aaa authentication...
... that follow this argument as the final method in . • list-name - console(config)# aaa authentication enable default enable aaa authentication login Use the aaa authentication login command in the given sequence. Uses the listed authentication methods that the authentication algorithm tries in Global Configuration mode to ... the switch to TACACS+ servers for a level one user must authenticate to get to name this command. Syntax aaa authentication login {default|list-name} method1 [method2...] no authentication method is down. A level one user if no aaa authentication...
Command Line Interface Guide
Page 192
Command Mode Global Configuration mode User Guidelines The default and optional list names created with the aaa authentication login command are used by telnet and SSH and only contains the method local. To ensure that the authentication algorithm... after radius, no authentication. Create a list by the console and only contains the method none. Default Configuration The default login lists are used by entering the aaa authentication login list-name method command for authentication. The method argument identifies the list of all RADIUS servers for authentication...
Command Mode Global Configuration mode User Guidelines The default and optional list names created with the aaa authentication login command are used by telnet and SSH and only contains the method local. To ensure that the authentication algorithm... after radius, no authentication. Create a list by the console and only contains the method none. Default Configuration The default login lists are used by entering the aaa authentication login list-name method command for authentication. The method argument identifies the list of all RADIUS servers for authentication...
Command Line Interface Guide
Page 193
... the authorization list • radius - Syntax aaa authorization network default radius no aaa authorization network default radius • default - Example The following example enables RADIUS-assigned VLANs. console(config)# aaa authentication login default radius local enable none aaa authorization network default radius Use the aaa authorization network default radius command in a particular VLAN based on the external...
... the authorization list • radius - Syntax aaa authorization network default radius no aaa authorization network default radius • default - Example The following example enables RADIUS-assigned VLANs. console(config)# aaa authentication login default radius local enable none aaa authorization network default radius Use the aaa authorization network default radius command in a particular VLAN based on the external...
Command Line Interface Guide
Page 197
... local user database is down. Syntax login authentication {default|list-name} AAA Commands 197 Uses the list of authentication are used if the RADIUS server is checked. Command Mode Global Configuration mode User Guidelines ... method list for authentication. This action has the same effect as the final method in Line Configuration mode to the default specified by the authentication login command, use the no form of all methods return an error, specify none as the command ip https authentication local. console(config)# ip https authentication ...
... local user database is down. Syntax login authentication {default|list-name} AAA Commands 197 Uses the list of authentication are used if the RADIUS server is checked. Command Mode Global Configuration mode User Guidelines ... method list for authentication. This action has the same effect as the final method in Line Configuration mode to the default specified by the authentication login command, use the no form of all methods return an error, specify none as the command ip https authentication local. console(config)# ip https authentication ...
Command Line Interface Guide
Page 198
... no form of this level. (Range: 8- 64 characters) • encrypted - To remove the password, use the no login authentication • default - Encrypted password to specify a password on a line. Command Mode Line Configuration mode User Guidelines This command has no password ...password - Syntax password password [encrypted] no user guidelines. Uses the default list created with the command aaa authentication login. console(config)# line console console(config-line)# login authentication default password (Line Configuration) Use the password command in Line Configuration mode...
... no form of this level. (Range: 8- 64 characters) • encrypted - To remove the password, use the no login authentication • default - Encrypted password to specify a password on a line. Command Mode Line Configuration mode User Guidelines This command has no password ...password - Syntax password password [encrypted] no user guidelines. Uses the default list created with the command aaa authentication login. console(config)# line console console(config-line)# login authentication default password (Line Configuration) Use the password command in Line Configuration mode...
Command Line Interface Guide
Page 200
... about the authentication methods. Example The following example displays the authentication configuration. Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. Syntax show authentication methods Default Configuration This command has no user guidelines. console>password Enter old password:******** Enter new password:******** Confirm new password:******** show authentication methods Use...
... about the authentication methods. Example The following example displays the authentication configuration. Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. Syntax show authentication methods Default Configuration This command has no user guidelines. console>password Enter old password:******** Enter new password:******** Confirm new password:******** show authentication methods Use...
Command Line Interface Guide
Page 201
enableList : local Line Login Method List Console defaultList Telnet defaultList SSH defaultList Enable Method List enableList enableList enableList HTTPS HTTP DOT1X :local :local :none show users accounts Use the show users accounts [long] Default Configuration This command has no user guidelines. Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. AAA Commands 201 Syntax show users accounts command in Privileged EXEC mode to display information about the local user database.
enableList : local Line Login Method List Console defaultList Telnet defaultList SSH defaultList Enable Method List enableList enableList enableList HTTPS HTTP DOT1X :local :local :none show users accounts Use the show users accounts [long] Default Configuration This command has no user guidelines. Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. AAA Commands 201 Syntax show users accounts command in Privileged EXEC mode to display information about the local user database.
Command Line Interface Guide
Page 202
... outputs. 202 AAA Commands Example The following example displays information about the login history of user. (Range: 1-20 characters) Default Configuration This command has no user guidelines. False show users login-history Use the show users login-history command in Global Configuration mode to display information about the local user database. name of users...
... outputs. 202 AAA Commands Example The following example displays information about the login history of user. (Range: 1-20 characters) Default Configuration This command has no user guidelines. False show users login-history Use the show users login-history command in Global Configuration mode to display information about the local user database. name of users...
Command Line Interface Guide
Page 203
console#show users login-history Login Time Username Protocol Location Jan 19 2005 08:23:48 Bob Serial Jan 19 2005 08:29:29 Robert HTTP 172.16.0.8 Jan 19 2005 ... be 0 [zero] if the no username name • name - Level 0 can be assigned by a level 15 user to another switch configuration. AAA Commands 203 The default privilege level is defined. The authentication password for the user. (Range: 8-64 characters. The user level. To remove a user name use the no form of...
console#show users login-history Login Time Username Protocol Location Jan 19 2005 08:23:48 Bob Serial Jan 19 2005 08:29:29 Robert HTTP 172.16.0.8 Jan 19 2005 ... be 0 [zero] if the no username name • name - Level 0 can be assigned by a level 15 user to another switch configuration. AAA Commands 203 The default privilege level is defined. The authentication password for the user. (Range: 8-64 characters. The user level. To remove a user name use the no form of...
Command Line Interface Guide
Page 520
Default Configuration The default variable setting is all . Example The following values: login, 802.1x or all . Syntax usage type • type - Variable can be one of the server. Example The following example specifies usage type login. Command Mode Radius mode User Guidelines User must enter the mode ... the timeout setting for the designated Radius Server. console(config)#radius-server host 192.143.120.123 console(config-radius)#usage login 520 RADIUS Commands console(config)#radius-server host 192.143.120.123 console(config-radius)#timeout 20 usage Use the usage command...
Default Configuration The default variable setting is all . Example The following values: login, 802.1x or all . Syntax usage type • type - Variable can be one of the server. Example The following example specifies usage type login. Command Mode Radius mode User Guidelines User must enter the mode ... the timeout setting for the designated Radius Server. console(config)#radius-server host 192.143.120.123 console(config-radius)#usage login 520 RADIUS Commands console(config)#radius-server host 192.143.120.123 console(config-radius)#timeout 20 usage Use the usage command...
Command Line Interface Guide
Page 1202
...Privileged EXEC mode. User Guidelines There are no usage guidelines for this command. The output of "debug" trace output on the login session in order to view any trace output. Command Mode Privileged EXEC mode. Example console#debug clear debug console Use the debug... console to disable all debug traces. Syntax debug clear Default Configuration There is executed. User Guidelines There are no default configuration for this command. Debug console display must be enabled in which it is no usage guidelines for ...
...Privileged EXEC mode. User Guidelines There are no usage guidelines for this command. The output of "debug" trace output on the login session in order to view any trace output. Command Mode Privileged EXEC mode. Example console#debug clear debug console Use the debug... console to disable all debug traces. Syntax debug clear Default Configuration There is executed. User Guidelines There are no default configuration for this command. Debug console display must be enabled in which it is no usage guidelines for ...
Command Line Interface Guide
Page 1203
... effect for the life of dot1x traces is disabled by default. Syntax debug dot1x packet [ receive | transmit ] no debug dot1x packet [ receive | transmit ] Default Configuration Display of the login session. Command Mode Privileged EXEC mode. Command Mode Privileged ...EXEC mode. Syntax debug console Default Configuration Display of this command is disabled by default. Serviceability Tracing Packet Commands 1203 The configuration...
... effect for the life of dot1x traces is disabled by default. Syntax debug dot1x packet [ receive | transmit ] no debug dot1x packet [ receive | transmit ] Default Configuration Display of the login session. Command Mode Privileged EXEC mode. Command Mode Privileged ...EXEC mode. Syntax debug console Default Configuration Display of this command is disabled by default. Serviceability Tracing Packet Commands 1203 The configuration...
Configuration Guide
Page 106
... authentication of a system's port(s) to be in which determines the authorization state of the controlled Port. Port that Port. • Supplicant - The PowerConnect 6200 Series switch supports the authenticator role only, in force-authorized mode because this is configured to services available via an external authentication server: •...to the authentication server in order to restrict access to be checked, which the PAE is responsible for communicating with the 802.1x default login. 802.1x port based access control is enabled for authentication at 10.10.10.10.
... authentication of a system's port(s) to be in which determines the authorization state of the controlled Port. Port that Port. • Supplicant - The PowerConnect 6200 Series switch supports the authenticator role only, in force-authorized mode because this is configured to services available via an external authentication server: •...to the authentication server in order to restrict access to be checked, which the PAE is responsible for communicating with the 802.1x default login. 802.1x port based access control is enabled for authentication at 10.10.10.10.