Configuration Guide
Page 2
...of UCB's public domain version of Cisco Systems, Inc.; and Access Registrar, Aironet, BPX, Catalyst, CCDA, CCDP, CCIE, CCIP, CCNA, CCNP, CCSP, Cisco, the Cisco Certified Internetwork Expert logo, Cisco IOS, Cisco Press, Cisco Systems, Cisco Systems Capital, the Cisco Systems logo, Cisco Unity, Enterprise/Solver, EtherChannel, EtherFast... addresses. Copyright © 1981, Regents of the University of their respective owners. The use of Cisco Systems, Inc.; THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. USERS MUST TAKE FULL...
...of UCB's public domain version of Cisco Systems, Inc.; and Access Registrar, Aironet, BPX, Catalyst, CCDA, CCDP, CCIE, CCIP, CCNA, CCNP, CCSP, Cisco, the Cisco Certified Internetwork Expert logo, Cisco IOS, Cisco Press, Cisco Systems, Cisco Systems Capital, the Cisco Systems logo, Cisco Unity, Enterprise/Solver, EtherChannel, EtherFast... addresses. Copyright © 1981, Regents of the University of their respective owners. The use of Cisco Systems, Inc.; THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. USERS MUST TAKE FULL...
Configuration Guide
Page 5
... to Read and Write the System Configuration 3-12 Booting Manually 3-13 Booting a Specific Software Image 3-14 Controlling Environment Variables 3-15 Scheduling a Reload of the Software Image 3-16 Configuring a Scheduled Reload 3-17 Displaying Scheduled Reload Information 3-18 Configuring Cisco IOS CNS Agents 4-1 Understanding Cisco Configuration Engine Software 4-1 Configuration Service 4-2 Event Service 4-3 NameSpace Mapper 4-3 What You...
... to Read and Write the System Configuration 3-12 Booting Manually 3-13 Booting a Specific Software Image 3-14 Controlling Environment Variables 3-15 Scheduling a Reload of the Software Image 3-16 Configuring a Scheduled Reload 3-17 Displaying Scheduled Reload Information 3-18 Configuring Cisco IOS CNS Agents 4-1 Understanding Cisco Configuration Engine Software 4-1 Configuration Service 4-2 Event Service 4-3 NameSpace Mapper 4-3 What You...
Configuration Guide
Page 6
... Agents 4-6 Enabling Automated CNS Configuration 4-6 Enabling the CNS Event Agent 4-8 Enabling the Cisco IOS CNS Agent 4-9 Enabling an Initial Configuration 4-9 Enabling a Partial Configuration 4-11 Displaying CNS Configuration 4-12 Managing Switch Stacks 5-1 Understanding Switch Stacks 5-1 Switch Stack Membership...Address 5-16 Connectivity to the Switch Stack Through an SSH Session 5-16 Connectivity to the Switch Stack Through Console Ports 5-16 Connectivity to Specific Stack Members 5-17 Switch Stack Configuration Scenarios 5-17 Catalyst 3750 Switch Software Configuration Guide vi OL-8550-02
... Agents 4-6 Enabling Automated CNS Configuration 4-6 Enabling the CNS Event Agent 4-8 Enabling the Cisco IOS CNS Agent 4-9 Enabling an Initial Configuration 4-9 Enabling a Partial Configuration 4-11 Displaying CNS Configuration 4-12 Managing Switch Stacks 5-1 Understanding Switch Stacks 5-1 Switch Stack Membership...Address 5-16 Connectivity to the Switch Stack Through an SSH Session 5-16 Connectivity to the Switch Stack Through Console Ports 5-16 Connectivity to Specific Stack Members 5-17 Switch Stack Configuration Scenarios 5-17 Catalyst 3750 Switch Software Configuration Guide vi OL-8550-02
Configuration Guide
Page 7
...a Stack Member Number 5-22 Setting the Stack Member Priority Value 5-22 Provisioning a New Member for a Switch Stack 5-23 Accessing the CLI of a Specific Stack Member 5-25 Displaying Switch Stack Information 5-25 Clustering Switches 6-1 Understanding Switch Clusters 6-1 Cluster Command Switch Characteristics 6-3 Standby Cluster Command Switch Characteristics 6-3 Candidate... and Switch Stacks 6-15 TACACS+ and RADIUS 6-16 LRE Profiles 6-16 Using the CLI to Manage Switch Clusters 6-16 Catalyst 1900 and Catalyst 2820 CLI Considerations 6-17 Using SNMP to Manage Switch Clusters 6-17 OL-8550-02...
...a Stack Member Number 5-22 Setting the Stack Member Priority Value 5-22 Provisioning a New Member for a Switch Stack 5-23 Accessing the CLI of a Specific Stack Member 5-25 Displaying Switch Stack Information 5-25 Clustering Switches 6-1 Understanding Switch Clusters 6-1 Cluster Command Switch Characteristics 6-3 Standby Cluster Command Switch Characteristics 6-3 Candidate... and Switch Stacks 6-15 TACACS+ and RADIUS 6-16 LRE Profiles 6-16 Using the CLI to Manage Switch Clusters 6-16 Catalyst 1900 and Catalyst 2820 CLI Considerations 6-17 Using SNMP to Manage Switch Clusters 6-17 OL-8550-02...
Configuration Guide
Page 10
...Accounting 9-28 Configuring Settings for All RADIUS Servers 9-29 Configuring the Switch to Use Vendor-Specific RADIUS Attributes 9-29 Configuring the Switch for Vendor-Proprietary RADIUS Server Communication 9-31 Displaying the RADIUS Configuration 9-31 Controlling Switch Access with Kerberos 9-32 Understanding Kerberos 9-32 Kerberos Operation 9-34 Authenticating to a Boundary... the Switch for Secure Socket Layer HTTP 9-42 Understanding Secure HTTP Servers and Clients 9-42 Certificate Authority Trustpoints 9-42 CipherSuites 9-44 Catalyst 3750 Switch Software Configuration Guide x OL-8550-02
...Accounting 9-28 Configuring Settings for All RADIUS Servers 9-29 Configuring the Switch to Use Vendor-Specific RADIUS Attributes 9-29 Configuring the Switch for Vendor-Proprietary RADIUS Server Communication 9-31 Displaying the RADIUS Configuration 9-31 Controlling Switch Access with Kerberos 9-32 Understanding Kerberos 9-32 Kerberos Operation 9-34 Authenticating to a Boundary... the Switch for Secure Socket Layer HTTP 9-42 Understanding Secure HTTP Servers and Clients 9-42 Certificate Authority Trustpoints 9-42 CipherSuites 9-44 Catalyst 3750 Switch Software Configuration Guide x OL-8550-02
Configuration Guide
Page 38
... the Results 43-20 Using Debug Commands 43-20 Enabling Debugging on a Specific Feature 43-20 Enabling All-System Diagnostics 43-21 Redirecting Debug and Error ... the Catalyst 3750G Integrated Wireless LAN Controller Switch A-1 Understanding the Wireless LAN Controller Switch A-2 The Wireless LAN Controller Switch and Switch Stacks A-2 Controller and Switch Interaction A-3 Internal Ports A-3 Configuring the Wireless LAN Controller Switch A-4 Internal Port Configuration A-4 Reconfiguring the Internal Ports A-5 Accessing the Controller A-6 Displaying Internal Wireless Controller Information...
... the Results 43-20 Using Debug Commands 43-20 Enabling Debugging on a Specific Feature 43-20 Enabling All-System Diagnostics 43-21 Redirecting Debug and Error ... the Catalyst 3750G Integrated Wireless LAN Controller Switch A-1 Understanding the Wireless LAN Controller Switch A-2 The Wireless LAN Controller Switch and Switch Stacks A-2 Controller and Switch Interaction A-3 Internal Ports A-3 Configuring the Wireless LAN Controller Switch A-4 Internal Port Configuration A-4 Reconfiguring the Internal Ports A-5 Accessing the Controller A-6 Displaying Internal Wireless Controller Information...
Configuration Guide
Page 50
...this URL: http://www.cisco.com/discuss/networking Catalyst 3750 Switch Software Configuration Guide l OL-8550-02 You and Cisco will benefit from various online and printed sources. • The Cisco Online Subscription Center is ...cisco.com/go /guide • Cisco Marketplace provides a variety of Cisco e-mail newsletters and other information, go to Cisco Press at this URL: http://www.cisco.com/ipj • Networking products offered by Cisco for many Cisco products that includes brief product overviews, key features, sample part numbers, and abbreviated technical specifications...
...this URL: http://www.cisco.com/discuss/networking Catalyst 3750 Switch Software Configuration Guide l OL-8550-02 You and Cisco will benefit from various online and printed sources. • The Cisco Online Subscription Center is ...cisco.com/go /guide • Cisco Marketplace provides a variety of Cisco e-mail newsletters and other information, go to Cisco Press at this URL: http://www.cisco.com/ipj • Networking products offered by Cisco for many Cisco products that includes brief product overviews, key features, sample part numbers, and abbreviated technical specifications...
Configuration Guide
Page 53
...EMI].) • IP services image, which provides a richer set of these topics about the Catalyst 3750 switch software: • Features, page 1-1 • Default Settings After Initial Switch ... all features described in this document, IP refers to IP Version 4 (IPv4) unless there is a specific reference to a switch stack. Overview CH A P T E R 1 This chapter provides these software ...intelligent services). Switches with either of enterprise-class intelligent services. These features include access control lists (ACLs), quality of service (QoS), static routing, EIGRP stub routing, the...
...EMI].) • IP services image, which provides a richer set of these topics about the Catalyst 3750 switch software: • Features, page 1-1 • Default Settings After Initial Switch ... all features described in this document, IP refers to IP Version 4 (IPv4) unless there is a specific reference to a switch stack. Overview CH A P T E R 1 This chapter provides these software ...intelligent services). Switches with either of enterprise-class intelligent services. These features include access control lists (ACLs), quality of service (QoS), static routing, EIGRP stub routing, the...
Configuration Guide
Page 55
... information between switches. - Automatic Cisco IOS version-check of up to configure complex features such as QoS priorities for video traffic, priority levels for - Interactive guide mode that guides you in advance the interface configuration for a specific stack member number and for -...stack retains this information across the switch stack, where all stack members have full access to the command switch. OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 1-3 Displaying stack-ring activity statistics (the number of the stack. - The system, redundant power system...
... information between switches. - Automatic Cisco IOS version-check of up to configure complex features such as QoS priorities for video traffic, priority levels for - Interactive guide mode that guides you in advance the interface configuration for a specific stack member number and for -...stack retains this information across the switch stack, where all stack members have full access to the command switch. OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 1-3 Displaying stack-ring activity statistics (the number of the stack. - The system, redundant power system...
Configuration Guide
Page 57
...-specific configuration changes, sending them to the console port of any stack member. You can manage from a remote management station. You use it to configure and to drop packets with Cisco Network Assistant, available on the network OL-8550-02 Catalyst ...is integrated in the software image. Chapter 1 Overview Features Management Options These are the manageability features: • CNS embedded agents for automating switch management, configuration storage, and delivery • DHCP for automating configuration of switch information (such as CiscoWorks2000 LAN Management...
...-specific configuration changes, sending them to the console port of any stack member. You can manage from a remote management station. You use it to configure and to drop packets with Cisco Network Assistant, available on the network OL-8550-02 Catalyst ...is integrated in the software image. Chapter 1 Overview Features Management Options These are the manageability features: • CNS embedded agents for automating switch management, configuration storage, and delivery • DHCP for automating configuration of switch information (such as CiscoWorks2000 LAN Management...
Configuration Guide
Page 61
...Cisco IP Phone to authenticate via the standard IEEE 802.1x processes - IEEE 802.1x accounting to non-IEEE 802.1x-compliant users - IEEE 802.1x with wake-on-LAN... on an individual-switch basis OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 1-9 Guest VLAN ...specific Ethernet frame • MAC authentication bypass to all switches in a switch stack rather than on the client MAC address. • Network Admission Control (NAC) features: - Authentication, authorization, and accounting (AAA) down policy for the HTTP 1.1 server authentication, encryption, and message integrity...
...Cisco IP Phone to authenticate via the standard IEEE 802.1x processes - IEEE 802.1x accounting to non-IEEE 802.1x-compliant users - IEEE 802.1x with wake-on-LAN... on an individual-switch basis OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 1-9 Guest VLAN ...specific Ethernet frame • MAC authentication bypass to all switches in a switch stack rather than on the client MAC address. • Network Admission Control (NAC) features: - Authentication, authorization, and accounting (AAA) down policy for the HTTP 1.1 server authentication, encryption, and message integrity...
Configuration Guide
Page 62
... a hierarchical policy map, each class map can be allocated to metered, predefined rates • Out-of the bandwidth. 1-10 Catalyst 3750 Switch Software Configuration Guide OL-8550-02 Each second-level policy map can use more than the guarantee if other queues become... another QoS domain - Out-of a Cisco IP Phone, trusting the CoS value received, and ensuring port security • Policing - Two configurable ingress queues for prioritizing mission-critical traffic in aggregate to restrict specific applications or traffic flows to a specific traffic flow - SRR as the scheduling...
... a hierarchical policy map, each class map can be allocated to metered, predefined rates • Out-of the bandwidth. 1-10 Catalyst 3750 Switch Software Configuration Guide OL-8550-02 Each second-level policy map can use more than the guarantee if other queues become... another QoS domain - Out-of a Cisco IP Phone, trusting the CoS value received, and ensuring port security • Policing - Two configurable ingress queues for prioritizing mission-critical traffic in aggregate to restrict specific applications or traffic flows to a specific traffic flow - SRR as the scheduling...
Configuration Guide
Page 64
Default Settings After Initial Switch Configuration The switch is available. and stack-wide settings. 1-12 Catalyst 3750 Switch Software Configuration Guide OL-8550-02 If you have specific network needs, you assign basic IP information to the switch and connect it to the other devices in your network. ... notifies the switch of the amount of the supervisor engine, modules, and switch while the switch is consuming. • Support for Cisco intelligent power management. Monitoring Features These are the Power over Ethernet (PoE) features: • Ability to provide power to connected...
Default Settings After Initial Switch Configuration The switch is available. and stack-wide settings. 1-12 Catalyst 3750 Switch Software Configuration Guide OL-8550-02 If you have specific network needs, you assign basic IP information to the switch and connect it to the other devices in your network. ... notifies the switch of the amount of the supervisor engine, modules, and switch while the switch is consuming. • Support for Cisco intelligent power management. Monitoring Features These are the Power over Ethernet (PoE) features: • Ability to provide power to connected...
Configuration Guide
Page 69
... MVR to continuously send multicast streams in the Catalyst 2900 LRE XL and Catalyst 2950 LRE switches. See the documentation sets specific to provide separate VLANs for bandwidth and security reasons...Use QoS to prioritize applications such as IP telephony during congestion and to help control both delay and jitter within the network. • Use switches that can ...Methods Efficient bandwidth usage for multimedia applications and guaranteed bandwidth for voice and data integration, multimedia integration, application prioritization, and security. or low-priority, based on the uplink ...
... MVR to continuously send multicast streams in the Catalyst 2900 LRE XL and Catalyst 2950 LRE switches. See the documentation sets specific to provide separate VLANs for bandwidth and security reasons...Use QoS to prioritize applications such as IP telephony during congestion and to help control both delay and jitter within the network. • Use switches that can ...Methods Efficient bandwidth usage for multimedia applications and guaranteed bandwidth for voice and data integration, multimedia integration, application prioritization, and security. or low-priority, based on the uplink ...
Configuration Guide
Page 77
...about the Catalyst Long-Reach Ethernet (LRE) switches, see the documentation sets specific to Medium-Sized Network Using Catalyst 3750 Switches" section on page 1-21 and the "Large Network Using Catalyst 3750 Switches" section on the residential Catalyst 3750 switches (and Catalyst 2950 ...point-of residential and commercial customers are connected through existing phone lines. Chapter 1 Overview Network Configuration Examples Multidwelling Network Using Catalyst 3750 Switches A growing segment of -presence (POP) location. All ports have IGMP snooping or CGMP enabled for LRE ...
...about the Catalyst Long-Reach Ethernet (LRE) switches, see the documentation sets specific to Medium-Sized Network Using Catalyst 3750 Switches" section on page 1-21 and the "Large Network Using Catalyst 3750 Switches" section on the residential Catalyst 3750 switches (and Catalyst 2950 ...point-of residential and commercial customers are connected through existing phone lines. Chapter 1 Overview Network Configuration Examples Multidwelling Network Using Catalyst 3750 Switches A growing segment of -presence (POP) location. All ports have IGMP snooping or CGMP enabled for LRE ...
Configuration Guide
Page 83
... Help System You can also obtain a list of Interfaces" section on page 11-10. For example: Switch# sh conf Switch# show configuration OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 2-3 For example: Switch# di? Switch(config-line)# To exit to privileged EXEC mode, press Ctrl-Z or enter end. Use this... the line vty or line console command. ports. To return to configure parameters for each command mode. While in global configuration mode, specify a line with a specific interface).
... Help System You can also obtain a list of Interfaces" section on page 11-10. For example: Switch# sh conf Switch# show configuration OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 2-3 For example: Switch# di? Switch(config-line)# To exit to privileged EXEC mode, press Ctrl-Z or enter end. Use this... the line vty or line console command. ports. To return to configure parameters for each command mode. While in global configuration mode, specify a line with a specific interface).
Configuration Guide
Page 87
...the enhanced editing mode for the current terminal session, enter this command in privileged EXEC mode: Switch# terminal editing To reconfigure a specific line to have enhanced editing mode, enter this command in line configuration mode: Switch(config-line)# editing Editing Commands through Keystrokes ...the current terminal session or for the line, enter the no history privileged EXEC command. left arrow key. OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 2-7 To disable command history for the command line. Keystroke1 Purpose Press Ctrl-B, or press the Move...
...the enhanced editing mode for the current terminal session, enter this command in privileged EXEC mode: Switch# terminal editing To reconfigure a specific line to have enhanced editing mode, enter this command in line configuration mode: Switch(config-line)# editing Editing Commands through Keystrokes ...the current terminal session or for the line, enter the no history privileged EXEC command. left arrow key. OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 2-7 To disable command history for the command line. Keystroke1 Purpose Press Ctrl-B, or press the Move...
Configuration Guide
Page 90
...and the options available for show and more commands. Therefore, it from which you want to exclude output that contain Output appear. To debug a specific stack member, you enter | exclude output, the lines that contain output are not displayed, but the lines that you must include the stack ... You can search and filter the output for assigning IP information, see Chapter 3, "Assigning the Switch IP Address and Default Gateway." 2-10 Catalyst 3750 Switch Software Configuration Guide OL-8550-02 Commands you enter in one of output or if you want to search for the stack master...
...and the options available for show and more commands. Therefore, it from which you want to exclude output that contain Output appear. To debug a specific stack member, you enter | exclude output, the lines that contain output are not displayed, but the lines that you must include the stack ... You can search and filter the output for assigning IP information, see Chapter 3, "Assigning the Switch IP Address and Default Gateway." 2-10 Catalyst 3750 Switch Software Configuration Guide OL-8550-02 Commands you enter in one of output or if you want to search for the stack master...
Configuration Guide
Page 93
...the Startup Configuration, page 3-12 • Scheduling a Reload of the Software Image, page 3-16 Note Information in this release and the Cisco IOS IP Command Reference, Volume 1 of automatic and manual methods. To enable IPv6, the stack switch must be running the advanced IP ...services image. OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 3-1 Note For complete syntax and usage information for this chapter, see Chapter 36, "Configuring IPv6 Unicast Routing" for information specific to IPv6 address format and configuration. CH A P T E ...
...the Startup Configuration, page 3-12 • Scheduling a Reload of the Software Image, page 3-16 Note Information in this release and the Cisco IOS IP Command Reference, Volume 1 of automatic and manual methods. To enable IPv6, the stack switch must be running the advanced IP ...services image. OL-8550-02 Catalyst 3750 Switch Software Configuration Guide 3-1 Note For complete syntax and usage information for this chapter, see Chapter 36, "Configuring IPv6 Unicast Routing" for information specific to IPv6 address format and configuration. CH A P T E ...
Configuration Guide
Page 94
After the boot loader gives the operating system control of the boot loader software, which control where physical memory is mapped, its quantity, its speed, and so forth. • Performs power-on self-test (POST) for specific IP information. For more information about the setup program, see ...system. • Initializes the flash file system on page 43-3. Note You can also configure a hostname and an enable secret password. Catalyst 3750 Switch Software Configuration Guide 3-2 OL-8550-02 You can format the flash file system, reinstall the operating system software image by ...
After the boot loader gives the operating system control of the boot loader software, which control where physical memory is mapped, its quantity, its speed, and so forth. • Performs power-on self-test (POST) for specific IP information. For more information about the setup program, see ...system. • Initializes the flash file system on page 43-3. Note You can also configure a hostname and an enable secret password. Catalyst 3750 Switch Software Configuration Guide 3-2 OL-8550-02 You can format the flash file system, reinstall the operating system software image by ...