Software Configuration Guide
Page 10
... Ports 10-2 Access Ports 10-2 Trunk Ports 10-3 Routed Ports 10-3 Switch Virtual Interfaces 10-4 EtherChannel Port Groups 10-5 Connecting Interfaces 10-5 Using Interface Configuration Mode 10-6 Procedures for Configuring Interfaces 10-7 Configuring a Range of Interfaces 10-8 Configuring and Using Interface Range Macros 10-9 Configuring Ethernet Interfaces 10-11 Default Ethernet Interface Configuration 10-11 Configuring Interface Speed and Duplex Mode 10-12 Configuration Guidelines 10-13 Setting the Interface Speed and Duplex Parameters 10-13 Catalyst 3560 Switch Software Configuration Guide...
... Ports 10-2 Access Ports 10-2 Trunk Ports 10-3 Routed Ports 10-3 Switch Virtual Interfaces 10-4 EtherChannel Port Groups 10-5 Connecting Interfaces 10-5 Using Interface Configuration Mode 10-6 Procedures for Configuring Interfaces 10-7 Configuring a Range of Interfaces 10-8 Configuring and Using Interface Range Macros 10-9 Configuring Ethernet Interfaces 10-11 Default Ethernet Interface Configuration 10-11 Configuring Interface Speed and Duplex Mode 10-12 Configuration Guidelines 10-13 Setting the Interface Speed and Duplex Parameters 10-13 Catalyst 3560 Switch Software Configuration Guide...
Software Configuration Guide
Page 33
... using this release. The EMI provides a richer set available from CMS. For all CMS window descriptions and procedures, refer to install your switch. It includes Layer 2+ features and full Layer 3 routing (IP unicast routing, IP multicast routing, and fallback bridging). For more information, refer to the Catalyst 3560 Switch System Message Guide for the networking professional managing the Catalyst 3560 switch, hereafter referred to the Catalyst 3560 Switch Command Reference for configuring switches and switch clusters from the Cisco.com home page at Service and Support...
... using this release. The EMI provides a richer set available from CMS. For all CMS window descriptions and procedures, refer to install your switch. It includes Layer 2+ features and full Layer 3 routing (IP unicast routing, IP multicast routing, and fallback bridging). For more information, refer to the Catalyst 3560 Switch System Message Guide for the networking professional managing the Catalyst 3560 switch, hereafter referred to the Catalyst 3560 Switch Command Reference for configuring switches and switch clusters from the Cisco.com home page at Service and Support...
Software Configuration Guide
Page 40
... the EMI) • Power over Ethernet (PoE) Features, page 1-8 • Monitoring Features, page 1-9 Ease-of-Use and Ease-of-Deployment Features • Express Setup for quickly configuring a switch for the first time with basic IP information, contact information, switch and Telnet passwords, and Simple Network Management Protocol (SNMP) information through a supported web browser from a single CMS window without needing to remember command-line interface (CLI) commands to accomplish specific tasks. - and switch-level monitoring and troubleshooting, and multiple switch software upgrades...
... the EMI) • Power over Ethernet (PoE) Features, page 1-8 • Monitoring Features, page 1-9 Ease-of-Use and Ease-of-Deployment Features • Express Setup for quickly configuring a switch for the first time with basic IP information, contact information, switch and Telnet passwords, and Simple Network Management Protocol (SNMP) information through a supported web browser from a single CMS window without needing to remember command-line interface (CLI) commands to accomplish specific tasks. - and switch-level monitoring and troubleshooting, and multiple switch software upgrades...
Software Configuration Guide
Page 41
..., routers, and servers • Port Aggregation Protocol (PAgP) and Link Aggregation Control Protocol (LACP) for user-selected features 78-16156-01 Catalyst 3560 Switch Software Configuration Guide 1-3 Unified configuration, monitoring, authentication, and software upgrade of multiple, cluster-capable switches, regardless of duplex mode on all switch ports for optimizing bandwidth • Automatic-medium-dependent interface crossover (Auto-MDIX) capability on 10/100 Mbps interfaces and on forwarding unknown Layer 2 unknown unicast, multicast, and bridged broadcast traffic • Cisco...
..., routers, and servers • Port Aggregation Protocol (PAgP) and Link Aggregation Control Protocol (LACP) for user-selected features 78-16156-01 Catalyst 3560 Switch Software Configuration Guide 1-3 Unified configuration, monitoring, authentication, and software upgrade of multiple, cluster-capable switches, regardless of duplex mode on all switch ports for optimizing bandwidth • Automatic-medium-dependent interface crossover (Auto-MDIX) capability on 10/100 Mbps interfaces and on forwarding unknown Layer 2 unknown unicast, multicast, and bridged broadcast traffic • Cisco...
Software Configuration Guide
Page 44
... broadcast and multicast traffic; Note The Kerberos feature listed in this feature enabled, no user traffic is , supports encryption) versions of the SMI and EMI. • Password-protected access (read-only and read-write access) to management interfaces (CMS and CLI) for protection against unauthorized configuration changes • Multilevel security for a choice of security level, notification, and resulting actions • Static MAC addressing for ensuring security • Protected port option for...
... broadcast and multicast traffic; Note The Kerberos feature listed in this feature enabled, no user traffic is , supports encryption) versions of the SMI and EMI. • Password-protected access (read-only and read-write access) to management interfaces (CMS and CLI) for protection against unauthorized configuration changes • Multilevel security for a choice of security level, notification, and resulting actions • Static MAC addressing for ensuring security • Protected port option for...
Software Configuration Guide
Page 51
... network uses Catalyst 3560 Layer 3 switches with an end station in the Catalyst 2900 LRE XL and Catalyst 2950 LRE switches. They are also configured with equal-cost routing for load sharing and redundancy. Data and multimedia traffic are configured on 802.1P/Q. The powered device, such as an IP phone, can be connected to AC power sources to receive power. 78-16156-01 Catalyst 3560 Switch Software Configuration Guide 1-13 Chapter 1 Overview Network Configuration Examples Table 1-3 Providing Network Services...
... network uses Catalyst 3560 Layer 3 switches with an end station in the Catalyst 2900 LRE XL and Catalyst 2950 LRE switches. They are also configured with equal-cost routing for load sharing and redundancy. Data and multimedia traffic are configured on 802.1P/Q. The powered device, such as an IP phone, can be connected to AC power sources to receive power. 78-16156-01 Catalyst 3560 Switch Software Configuration Guide 1-13 Chapter 1 Overview Network Configuration Examples Table 1-3 Providing Network Services...
Software Configuration Guide
Page 90
... switch has connectivity to the remote networks with which a host needs to route with unresolved destination IP addresses from the switch. If you made by entering this privileged EXEC command: Switch# show running-config copy running -config Building configuration... For information on setting the switch system name, protecting access to privileged EXEC mode. interface VLAN1 4-10 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 Once the default gateway is configured to communicate. To remove the switch IP address, use...
... switch has connectivity to the remote networks with which a host needs to route with unresolved destination IP addresses from the switch. If you made by entering this privileged EXEC command: Switch# show running-config copy running -config Building configuration... For information on setting the switch system name, protecting access to privileged EXEC mode. interface VLAN1 4-10 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 Once the default gateway is configured to communicate. To remove the switch IP address, use...
Software Configuration Guide
Page 100
... the cluster command switch IP address. The benefits of clustering switches include: • Management of Catalyst switches regardless of switches in a cluster cannot exceed 16 switches. For complete information about these switches in a switch-cluster environment, refer to the software configuration guide for that are connected to the cluster command switch according to the connectivity guidelines described in the cluster use the switch clustering technology so that you have a limited number of...
... the cluster command switch IP address. The benefits of clustering switches include: • Management of Catalyst switches regardless of switches in a cluster cannot exceed 16 switches. For complete information about these switches in a switch-cluster environment, refer to the software configuration guide for that are connected to the cluster command switch according to the connectivity guidelines described in the cluster use the switch clustering technology so that you have a limited number of...
Software Configuration Guide
Page 105
... Through Different Management VLANs" section on page 5-7. The cluster command switch in common with the cluster command switch. It also does not discover the switch in VLAN 16 in the first column because the cluster command switch has no VLAN connectivity to VLANs 9, 16, and 62 and therefore discovers the switches in VLAN 50. They do not need to be the cluster command switch. 78-16156-01 Catalyst 3560 Switch Software Configuration Guide 5-7
... Through Different Management VLANs" section on page 5-7. The cluster command switch in common with the cluster command switch. It also does not discover the switch in VLAN 16 in the first column because the cluster command switch has no VLAN connectivity to VLANs 9, 16, and 62 and therefore discovers the switches in VLAN 50. They do not need to be the cluster command switch. 78-16156-01 Catalyst 3560 Switch Software Configuration Guide 5-7
Software Configuration Guide
Page 204
... ACL by the router ACL. Catalyst 3560 Switch Software Configuration Guide 9-8 78-16156-01 When the authentication server does not receive a response to its EAPOL request/identity frame, clients that fail authentication access to the VLAN interface. However, the server does not grant 802.1X-capable clients that are not 802.1X-capable are filtered by default. it is restarted. The switch removes the per -user configuration stored on the switch. Outgoing routed packets...
... ACL by the router ACL. Catalyst 3560 Switch Software Configuration Guide 9-8 78-16156-01 When the authentication server does not receive a response to its EAPOL request/identity frame, clients that fail authentication access to the VLAN interface. However, the server does not grant 802.1X-capable clients that are not 802.1X-capable are filtered by default. it is restarted. The switch removes the per -user configuration stored on the switch. Outgoing routed packets...
Software Configuration Guide
Page 261
... internetworking devices might forward DTP frames improperly, which is set an interface as trunking or nontrunking or to negotiate trunking with the neighboring interface. Ethernet trunk interfaces support different trunking modes (see Chapter 29, "Configuring EtherChannels." Table 12-4 Layer 2 Interface Modes Mode switchport mode access switchport mode dynamic auto Function Puts the interface (access port) into permanent nontrunking mode and negotiates to select the encapsulation type on an EtherChannel bundle. Chapter 12 Configuring VLANs Figure 12-2 Switches in the same...
... internetworking devices might forward DTP frames improperly, which is set an interface as trunking or nontrunking or to negotiate trunking with the neighboring interface. Ethernet trunk interfaces support different trunking modes (see Chapter 29, "Configuring EtherChannels." Table 12-4 Layer 2 Interface Modes Mode switchport mode access switchport mode dynamic auto Function Puts the interface (access port) into permanent nontrunking mode and negotiates to select the encapsulation type on an EtherChannel bundle. Chapter 12 Configuring VLANs Figure 12-2 Switches in the same...
Software Configuration Guide
Page 265
... default configuration, use the switchport mode access interface configuration command to remove specific VLANs from the allowed list. All VLAN IDs, 1 to VLAN 1, regardless of the new VLAN. 78-16156-01 Catalyst 3560 Switch Software Configuration Guide 12-21 If the access VLAN is configured to privileged EXEC mode. When VTP detects a newly enabled VLAN and the VLAN is in VLAN 1. To reduce the risk of the interface in the configuration file. The example assumes that has been disabled on every trunk link. end Return to support...
... default configuration, use the switchport mode access interface configuration command to remove specific VLANs from the allowed list. All VLAN IDs, 1 to VLAN 1, regardless of the new VLAN. 78-16156-01 Catalyst 3560 Switch Software Configuration Guide 12-21 If the access VLAN is configured to privileged EXEC mode. When VTP detects a newly enabled VLAN and the VLAN is in VLAN 1. To reduce the risk of the interface in the configuration file. The example assumes that has been disabled on every trunk link. end Return to support...
Software Configuration Guide
Page 312
... your switch, adding another VLAN to the network. 15-12 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 However, you want it more information, see Chapter 16, "Configuring MSTP." Caution Switches that are running spanning tree. If 128 instances of spanning tree are several adjacent switches that have the default allowed list on the topology of the network, this possibility by using MSTP. Depending on the trunk ports of spanning-tree instances. for example...
... your switch, adding another VLAN to the network. 15-12 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 However, you want it more information, see Chapter 16, "Configuring MSTP." Caution Switches that are running spanning tree. If 128 instances of spanning tree are several adjacent switches that have the default allowed list on the topology of the network, this possibility by using MSTP. Depending on the trunk ports of spanning-tree instances. for example...
Software Configuration Guide
Page 376
...Step 5 end show ip igmp snooping copy running-config startup-config Purpose Enter global configuration mode. Return to CGMP self-join or proxy-join packets. For more information, see Chapter 32, "Configuring IP Multicast Routing." Verify the configuration. (Optional) Save your entries in the configuration file. 19-8 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 Configuring IGMP Snooping Chapter 19 Configuring IGMP Snooping and MVR To disable IGMP snooping on a VLAN interface, use the no ip igmp snooping vlan vlan-id global configuration command for CGMP packets.
...Step 5 end show ip igmp snooping copy running-config startup-config Purpose Enter global configuration mode. Return to CGMP self-join or proxy-join packets. For more information, see Chapter 32, "Configuring IP Multicast Routing." Verify the configuration. (Optional) Save your entries in the configuration file. 19-8 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 Configuring IGMP Snooping Chapter 19 Configuring IGMP Snooping and MVR To disable IGMP snooping on a VLAN interface, use the no ip igmp snooping vlan vlan-id global configuration command for CGMP packets.
Software Configuration Guide
Page 386
... source ports. A port statically configured as a member of a group remains a member of these steps to 1 second (10 tenths), specify the MVR multicast VLAN as VLAN 22, and set the MVR mode as dynamic: Switch(config)# mvr Switch(config)# mvr group 228.1.23.4 Switch(config)# mvr querytime 10 Switch(config)# mvr vlan 22 Switch(config)# mvr mode dynamic Switch(config)# end You can also dynamically join multicast groups by using IGMP join and leave messages. 19-18 Catalyst 3560 Switch Software Configuration Guide...
... source ports. A port statically configured as a member of a group remains a member of these steps to 1 second (10 tenths), specify the MVR multicast VLAN as VLAN 22, and set the MVR mode as dynamic: Switch(config)# mvr Switch(config)# mvr group 228.1.23.4 Switch(config)# mvr querytime 10 Switch(config)# mvr vlan 22 Switch(config)# mvr mode dynamic Switch(config)# end You can also dynamically join multicast groups by using IGMP join and leave messages. 19-18 Catalyst 3560 Switch Software Configuration Guide...
Software Configuration Guide
Page 428
... extended input access control lists (ACLs), ingress QoS policing, VLAN ACLs and egress QoS policing. 23-4 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 There can be capable of service (QoS)-for example, modified Differentiated Services Code Point (DSCP)-are relabeled with separate or overlapping sets of receive (or ingress) SPAN is to monitor as much as possible all the packets received by the source interface or VLAN before modification. you enable the destination port and...
... extended input access control lists (ACLs), ingress QoS policing, VLAN ACLs and egress QoS policing. 23-4 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 There can be capable of service (QoS)-for example, modified Differentiated Services Code Point (DSCP)-are relabeled with separate or overlapping sets of receive (or ingress) SPAN is to monitor as much as possible all the packets received by the source interface or VLAN before modification. you enable the destination port and...
Software Configuration Guide
Page 440
...output access control list (ACL) to RSPAN traffic to selectively filter or monitor specific packets. However, since the switch does not monitor spanned traffic, it does not support egress spanning of packets on any RSPAN VLAN identified as RSPAN VLANs; The same RSPAN VLAN is supported in all the switches. - Switch(config)# no monitor session 2 Switch(config)# monitor session 2 source interface gigabitethernet0/2 rx Switch(config)# monitor session 2 filter vlan 1 - 5 , 9 Switch(config)# monitor session 2 destination interface gigabitethernet0/1 Switch(config)# end Configuring RSPAN...
...output access control list (ACL) to RSPAN traffic to selectively filter or monitor specific packets. However, since the switch does not monitor spanned traffic, it does not support egress spanning of packets on any RSPAN VLAN identified as RSPAN VLANs; The same RSPAN VLAN is supported in all the switches. - Switch(config)# no monitor session 2 Switch(config)# monitor session 2 source interface gigabitethernet0/2 rx Switch(config)# monitor session 2 filter vlan 1 - 5 , 9 Switch(config)# monitor session 2 destination interface gigabitethernet0/1 Switch(config)# end Configuring RSPAN...
Software Configuration Guide
Page 445
...-01 Catalyst 3560 Switch Software Configuration Guide 23-21 Chapter 23 Configuring SPAN and RSPAN Configuring SPAN and RSPAN Step 3 Step 4 Command Purpose monitor session session_number source remote vlan vlan-id Specify the RSPAN session and the source RSPAN VLAN. Note Though visible in RSPAN session 2, to configure Gigabit Ethernet source port 2 as the destination interface, and to enable ingress forwarding on the destination port and to configure VLAN 901 as the source remote VLAN in the command-line help...
...-01 Catalyst 3560 Switch Software Configuration Guide 23-21 Chapter 23 Configuring SPAN and RSPAN Configuring SPAN and RSPAN Step 3 Step 4 Command Purpose monitor session session_number source remote vlan vlan-id Specify the RSPAN session and the source RSPAN VLAN. Note Though visible in RSPAN session 2, to configure Gigabit Ethernet source port 2 as the destination interface, and to enable ingress forwarding on the destination port and to configure VLAN 901 as the source remote VLAN in the command-line help...
Software Configuration Guide
Page 484
... be configured to a VLAN, all packets (bridged and routed). Outgoing routed IP packets are not filtered. 27-2 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 ACLs can use ACLs to control which hosts can apply only one IP access list and one MAC access list to a Layer 2 interface. • Router ACLs access-control routed traffic between devices in which a port ACL is applied to block inbound traffic, outbound traffic, or both an input port ACL and a VLAN map are applied, incoming packets received on ports with ACLs You configure access lists...
... be configured to a VLAN, all packets (bridged and routed). Outgoing routed IP packets are not filtered. 27-2 Catalyst 3560 Switch Software Configuration Guide 78-16156-01 ACLs can use ACLs to control which hosts can apply only one IP access list and one MAC access list to a Layer 2 interface. • Router ACLs access-control routed traffic between devices in which a port ACL is applied to block inbound traffic, outbound traffic, or both an input port ACL and a VLAN map are applied, incoming packets received on ports with ACLs You configure access lists...
Software Configuration Guide
Page 539
... a large queue size or by using the priority-queue out interface configuration command. Note The egress queue default settings are dropped. only an indication of the received packet. Once again, the DSCP in parallel, and it is the ratio of the egress queues and if these settings do not meet your QoS solution. Shaped or Shared Mode SRR services each queue. The...
... a large queue size or by using the priority-queue out interface configuration command. Note The egress queue default settings are dropped. only an indication of the received packet. Once again, the DSCP in parallel, and it is the ratio of the egress queues and if these settings do not meet your QoS solution. Shaped or Shared Mode SRR services each queue. The...