FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 108
Introduced on the C-Series. Introduced on the Z9000. The ipv4acl profile range is 1 to OpenFlow. cam-acl-vlan Specify the number of VFP blocks allocated to 4. Enter the number 0 to disable OpenFlow. Introduced on the S-Series. System flow requires ... (Default) Enter the number 0 to disable iSCSI CAM allocation. 108 The ipv6acl range must save the new CAM settings to 10. S4810 Syntax Defaults Parameters cam-acl-vlan vlanopenflow {0|1} vlaniscsi {0|1} Disabled. Enter the number 1 to allocate VFP blocks for the ipv6acl profile which is 16 FP Blocks. Command Modes...
Introduced on the C-Series. Introduced on the Z9000. The ipv4acl profile range is 1 to OpenFlow. cam-acl-vlan Specify the number of VFP blocks allocated to 4. Enter the number 0 to disable OpenFlow. Introduced on the S-Series. System flow requires ... (Default) Enter the number 0 to disable iSCSI CAM allocation. 108 The ipv6acl range must save the new CAM settings to 10. S4810 Syntax Defaults Parameters cam-acl-vlan vlanopenflow {0|1} vlaniscsi {0|1} Disabled. Enter the number 1 to allocate VFP blocks for the ipv6acl profile which is 16 FP Blocks. Command Modes...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 135
...-size sweep-max-size sweep-interval ointerface Default is No. (IPv6 link-local address) Enter the outgoing interface for link-local IPv6 addressing on the S4810. Range: 0-FFFF. Default: 0xABCD. Enter the maximum size of datagram in A.B.C.D format. • For an 100/1000 Ethernet interface, enter the keyword GigabitEthernet ...followed by the slot/port information. • For a 40-Gigabit Ethernet interface, enter the keyword fortyGigE followed by the slot/port information. • For a VLAN interface, enter the keyword vlan followed by a number. Introduced on management interface.
...-size sweep-max-size sweep-interval ointerface Default is No. (IPv6 link-local address) Enter the outgoing interface for link-local IPv6 addressing on the S4810. Range: 0-FFFF. Default: 0xABCD. Enter the maximum size of datagram in A.B.C.D format. • For an 100/1000 Ethernet interface, enter the keyword GigabitEthernet ...followed by the slot/port information. • For a 40-Gigabit Ethernet interface, enter the keyword fortyGigE followed by the slot/port information. • For a VLAN interface, enter the keyword vlan followed by a number. Introduced on management interface.
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 143
... 8 SFMs in the system. Major Alarms -Alarm Type Duration No major alarms FTOS# show chassis View the configuration and status of the show cam-acl-vlan EXEC Version 9.1.(0.0) Introduced on S4810 and Z9000. Use this command to view a summary of modules in chassis 7 hr, 35 min --
... 8 SFMs in the system. Major Alarms -Alarm Type Duration No major alarms FTOS# show chassis View the configuration and status of the show cam-acl-vlan EXEC Version 9.1.(0.0) Introduced on S4810 and Z9000. Use this command to view a summary of modules in chassis 7 hr, 35 min --
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 194
... Not configured. • EXEC • EXEC Privilege Version 8.3.12.0 Introduced on the S4810. channel followed by the prefix length in dotted decimal format of a server. C-Series, E-Series, S-Series, Z-Series, S4810 Syntax Parameters telnet {host | ip-address | ipv6-address prefix-length | vrf vrf instance...8226; For a 40-Gigabit Ethernet interface, enter the keyword fortyGigE followed by the slot/port information. • For a VLAN interface, enter the keyword vlan followed by a number from zero (0) to 16383. • For the Null interface, enter the keyword null followed by ...
... Not configured. • EXEC • EXEC Privilege Version 8.3.12.0 Introduced on the S4810. channel followed by the prefix length in dotted decimal format of a server. C-Series, E-Series, S-Series, Z-Series, S4810 Syntax Parameters telnet {host | ip-address | ipv6-address prefix-length | vrf vrf instance...8226; For a 40-Gigabit Ethernet interface, enter the keyword fortyGigE followed by the slot/port information. • For a VLAN interface, enter the keyword vlan followed by a number from zero (0) to 16383. • For the Null interface, enter the keyword null followed by ...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 207
... mep-id Enter the MEP ID. mep cross-check enable Enable cross-checking. S-Series, S4810 Syntax Parameters mep cross-check enable {port | vlan-id} port vlan-id Down service with no VLAN association. Enter the VLAN to 8191. Introduced on the S4810. mep cross-check Enable cross-checking for a MEP. Defaults Command Modes Command History none...
... mep-id Enter the MEP ID. mep cross-check enable Enable cross-checking. S-Series, S4810 Syntax Parameters mep cross-check enable {port | vlan-id} port vlan-id Down service with no VLAN association. Enter the VLAN to 8191. Introduced on the S4810. mep cross-check Enable cross-checking for a MEP. Defaults Command Modes Command History none...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 209
Enter the keyword brief to display a summary output. Introduced on the S4810. Example FTOS# show ethernet cfm domain Domain Name: customer Level: 7 Total Service: 1 Services MA-Name VLAN CC-Int My_MA 200 10s Domain Name: My_Domain Level: 6 Total Service: 1 Services MA-Name VLAN CC-Int Your_MA 100 10s X-CHK Status enabled X-CHK Status enabled...
Enter the keyword brief to display a summary output. Introduced on the S4810. Example FTOS# show ethernet cfm domain Domain Name: customer Level: 7 Total Service: 1 Services MA-Name VLAN CC-Int My_MA 200 10s Domain Name: My_Domain Level: 6 Total Service: 1 Services MA-Name VLAN CC-Int Your_MA 100 10s X-CHK Status enabled X-CHK Status enabled...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 210
Introduced on the S-Series. FTOS#show ethernet cfm maintenance-points local mip MPID Domain Name Level Type Port CCM-Status MA Name VLAN Dir MAC 0 service1 4 MIP Gi 0/5 Disabled My_MA 3333 DOWN 00:01:e8:0b:c6:36 0 service1 Your_MA 4 3333 MIP Gi 0/5...active state. Enter the keyword mip to display MEP entries waiting for response. Introduced on the S4810. none EXEC Privilege Version 8.3.7.0 Version 8.3.1.0 Introduced on the S-Series. 210 Introduced on the S4810. Enter the keyword waiting to display configured MIPs. Enter the keyword expired to view MEP entries...
Introduced on the S-Series. FTOS#show ethernet cfm maintenance-points local mip MPID Domain Name Level Type Port CCM-Status MA Name VLAN Dir MAC 0 service1 4 MIP Gi 0/5 Disabled My_MA 3333 DOWN 00:01:e8:0b:c6:36 0 service1 Your_MA 4 3333 MIP Gi 0/5...active state. Enter the keyword mip to display MEP entries waiting for response. Introduced on the S4810. none EXEC Privilege Version 8.3.7.0 Version 8.3.1.0 Introduced on the S-Series. 210 Introduced on the S4810. Enter the keyword waiting to display configured MIPs. Enter the keyword expired to view MEP entries...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 211
... or level. show ethernet cfm statistics [domain {name | level} vlan-id vlan-id mpid mpid] domain name | level vlan-id vlan-id mpid mpid Enter the keyword domain to display statistics for a particular domain. none 211 S-Series, S4810 Syntax Parameters Defaults show ethernet cfm statistics Display MEP statistics. Enter the...-points remote detail MAC Address: 00:01:e8:58:68:78 Domain Name: cfm0 MA Name: test0 Level: 7 VLAN: 10 MP ID: 900 Sender Chassis ID: Force10 MEP Interface status: Up MEP Port status: Forwarding Receive RDI: FALSE MP Status: Active show ethernet cfm mipdb none ...
... or level. show ethernet cfm statistics [domain {name | level} vlan-id vlan-id mpid mpid] domain name | level vlan-id vlan-id mpid mpid Enter the keyword domain to display statistics for a particular domain. none 211 S-Series, S4810 Syntax Parameters Defaults show ethernet cfm statistics Display MEP statistics. Enter the...-points remote detail MAC Address: 00:01:e8:58:68:78 Domain Name: cfm0 MA Name: test0 Level: 7 VLAN: 10 MP ID: 900 Sender Chassis ID: Force10 MEP Interface status: Up MEP Port status: Forwarding Receive RDI: FALSE MP Status: Active show ethernet cfm mipdb none ...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 213
S-Series, S4810 Syntax Parameters service name vlan vlan-id name Enter a maintenance association name. 213 Introduced on Domain Customer2, Level 7, MA name Test2 with VLAN 2 Hops Host IngressMAC Ingr Action Relay Action Next Host Egress MAC Egress Action FWD Status 4 00:00:00:01:e8:53:4a:f8 00:01:...
S-Series, S4810 Syntax Parameters service name vlan vlan-id name Enter a maintenance association name. 213 Introduced on Domain Customer2, Level 7, MA name Test2 with VLAN 2 Hops Host IngressMAC Ingr Action Relay Action Next Host Egress MAC Egress Action FWD Status 4 00:00:00:01:e8:53:4a:f8 00:01:...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 214
...ECFM DOMAIN Version 8.3.7.0 Version 8.3.1.0 Enter the keyword vlan and then enter the VLAN ID. Introduced on the S-Series. Introduced on the S4810. S-Series, S4810 Syntax Parameters traceroute cache hold-time minutes minutes Enter a hold . Introduced on the S4810. Defaults Command Modes Command History 100 minutes ETHERNET...CFM 214 The range is cached. traceroute cache hold-time Set the amount of the link trace cache. S-Series, S4810 Syntax Parameters traceroute cache size entries entries Enter the number of entries the link trace cache can hold -time. The...
...ECFM DOMAIN Version 8.3.7.0 Version 8.3.1.0 Enter the keyword vlan and then enter the VLAN ID. Introduced on the S-Series. Introduced on the S4810. S-Series, S4810 Syntax Parameters traceroute cache hold-time minutes minutes Enter a hold . Introduced on the S4810. Defaults Command Modes Command History 100 minutes ETHERNET...CFM 214 The range is cached. traceroute cache hold-time Set the amount of the link trace cache. S-Series, S4810 Syntax Parameters traceroute cache size entries entries Enter the number of entries the link trace cache can hold -time. The...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 217
... and put in the RADIUS server assigned VLAN, any change to the port access VLAN configuration does not take effect. • The 802.1X with VLAN assignment feature is not supported on C-Series, E-Series, S-Series (S25/S50), S4810, and E-Series Terascale. • On...the authentication, only extensible authentication protocol over LAN (EAPOL) traffic is allowed through the port. The Dell Force10 operating software (FTOS) supports remote authentication dial-in the configured access VLAN. 6 802.1X An authentication server must authenticate a client connected to which a client is connected....
... and put in the RADIUS server assigned VLAN, any change to the port access VLAN configuration does not take effect. • The 802.1X with VLAN assignment feature is not supported on C-Series, E-Series, S-Series (S25/S50), S4810, and E-Series Terascale. • On...the authentication, only extensible authentication protocol over LAN (EAPOL) traffic is allowed through the port. The Dell Force10 operating software (FTOS) supports remote authentication dial-in the configured access VLAN. 6 802.1X An authentication server must authenticate a client connected to which a client is connected....
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 218
... related debug messages. C-Series, E-Series, S-Series, S4810 Syntax Parameters Defaults Command Modes Command History dot1x auth-fail-vlan vlan-id [max-attempts number] To delete the authentication failure VLAN, use the no dot1x auth-fail-vlan vlanid [max-attempts number] command. dot1x auth-fail-vlan Configure an authentication failure VLAN for users and devices that fail 802...
... related debug messages. C-Series, E-Series, S-Series, S4810 Syntax Parameters Defaults Command Modes Command History dot1x auth-fail-vlan vlan-id [max-attempts number] To delete the authentication failure VLAN, use the no dot1x auth-fail-vlan vlanid [max-attempts number] command. dot1x auth-fail-vlan Configure an authentication failure VLAN for users and devices that fail 802...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 219
... with an incorrect login/password, the login fails. Introduced on the S4810. Usage Information Related Commands Version 8.4.1.0 Introduced on the E-Series. If the host responds to the authentication failed VLAN. If the authentication fails after all allowed attempts, the interface moves ...to 802.1X with MAC authentication bypass (MAB). C-Series, S-Series, S4810 Syntax Defaults Command Modes dot1x auth-type mab-only Disabled...
... with an incorrect login/password, the login fails. Introduced on the S4810. Usage Information Related Commands Version 8.4.1.0 Introduced on the E-Series. If the host responds to the authentication failed VLAN. If the authentication fails after all allowed attempts, the interface moves ...to 802.1X with MAC authentication bypass (MAB). C-Series, S-Series, S4810 Syntax Defaults Command Modes dot1x auth-type mab-only Disabled...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 220
...only authentication on a globally, use the no dot1x auth-type mabonly command. C-Series, E-Series TeraScale, S-Series, S4810 Syntax Defaults Command Modes Command History dot1x authentication To disable dot1x on a port, enter the no dot1x authentication command....) 220 In MAB-only authentication mode, a port authenticates using the host MAC address even though 802.1xauthentication is placed in the guest VLAN (if configured). dot1x mac-auth-bypass dot1x authentication (Configuration) Enable dot1x globally. The prerequisites for enabling MAB-only authentication on a port...
...only authentication on a globally, use the no dot1x auth-type mabonly command. C-Series, E-Series TeraScale, S-Series, S4810 Syntax Defaults Command Modes Command History dot1x authentication To disable dot1x on a port, enter the no dot1x authentication command....) 220 In MAB-only authentication mode, a port authenticates using the host MAC address even though 802.1xauthentication is placed in the guest VLAN (if configured). dot1x mac-auth-bypass dot1x authentication (Configuration) Enable dot1x globally. The prerequisites for enabling MAB-only authentication on a port...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 221
... an interface, use the no dot1x authentication command. Introduced on the C-Series, E-Series, and S-Series. C-Series, E-Series, S-Series, S4810 Syntax Parameters dot1x guest-vlan vlan-id To disable the guest VLAN, use the no dot1x guest-vlan vlan-id command. Introduced on the E-Series. If a device does not respond within a designated amount of time, the authenticator...
... an interface, use the no dot1x authentication command. Introduced on the C-Series, E-Series, and S-Series. C-Series, E-Series, S-Series, S4810 Syntax Parameters dot1x guest-vlan vlan-id To disable the guest VLAN, use the no dot1x guest-vlan vlan-id command. Introduced on the E-Series. If a device does not respond within a designated amount of time, the authenticator...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 222
Added the single-host and multi-host options on the S4810. C-Series, E-Series, S-Series, S4810 Syntax Parameters dot1x host-mode {single-host | multi-host | multi-auth} single-host multi-host multi-auth Enable single-host authentication. ...and then permits all other traffic. NOTE: You can create the Layer 3 portion of times, the authenticator places the port in authentication failed VLAN (dot1x auth-fail-vlan). Defaults Command Modes Command History single-host INTERFACE Version 8.3.12.0 Version 8.4.1.0 Version 8.3.2.0 Introduced on the CSeries, E-Series, and S-Series. Related...
Added the single-host and multi-host options on the S4810. C-Series, E-Series, S-Series, S4810 Syntax Parameters dot1x host-mode {single-host | multi-host | multi-auth} single-host multi-host multi-auth Enable single-host authentication. ...and then permits all other traffic. NOTE: You can create the Layer 3 portion of times, the authenticator places the port in authentication failed VLAN (dot1x auth-fail-vlan). Defaults Command Modes Command History single-host INTERFACE Version 8.3.12.0 Version 8.4.1.0 Version 8.3.2.0 Introduced on the CSeries, E-Series, and S-Series. Related...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 230
...32: Dot1x Status: Enable Port Control: AUTO Port Auth Status: UNAUTHORIZED Re-Authentication: Disable Untagged VLAN id: None Guest VLAN: Enable Guest VLAN id: 10 Auth-Fail VLAN: Enable Auth-Fail VLAN id: 11 Auth-Fail Max-Attempts: 3 Tx Period: 30 seconds Quiet Period: 60 seconds ... Introduced on the 802.1X-enabled port to display information only on the S4810. Added the mac-address option on a port, additional 802.1X configuration details (Port Authentication status, Untagged VLAN ID, Authentication PAE state, and Backend state) are displayed for each supplicant...
...32: Dot1x Status: Enable Port Control: AUTO Port Auth Status: UNAUTHORIZED Re-Authentication: Disable Untagged VLAN id: None Guest VLAN: Enable Guest VLAN id: 10 Auth-Fail VLAN: Enable Auth-Fail VLAN id: 11 Auth-Fail Max-Attempts: 3 Tx Period: 30 seconds Quiet Period: 60 seconds ... Introduced on the 802.1X-enabled port to display information only on the S4810. Added the mac-address option on a port, additional 802.1X configuration details (Port Authentication status, Untagged VLAN ID, Authentication PAE state, and Backend state) are displayed for each supplicant...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 237
... if the traffic does not match the filters in the following scenarios: • on the S-Series. ip access-list extended - Z-Series, S4810 Syntax ip control-plane egress-filter 237 Introduced on the C-Series. Introduced on the E-Series ExaScale. ip control-plane egress-filter Enable egress Layer... ACL lookup for ExaScale (you apply an ACL that is permitted instead of dropped). (OPTIONAL) Enter the keyword vlan followed by the ID numbers of the VLANs. Prior to 7.8.1.0, names were up to implicit-permit (that filters IGMP traffic, all IGMP traffic is redirected to ...
... if the traffic does not match the filters in the following scenarios: • on the S-Series. ip access-list extended - Z-Series, S4810 Syntax ip control-plane egress-filter 237 Introduced on the C-Series. Introduced on the E-Series ExaScale. ip control-plane egress-filter Enable egress Layer... ACL lookup for ExaScale (you apply an ACL that is permitted instead of dropped). (OPTIONAL) Enter the keyword vlan followed by the ID numbers of the VLANs. Prior to 7.8.1.0, names were up to implicit-permit (that filters IGMP traffic, all IGMP traffic is redirected to ...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 335
...1000. Enter the role that must be active for session initialization from the remote system. C-Series, E-Series, Z-Series, S4810 Syntax Parameters bfd all-neighbors [interval interval min_rx min_rx multiplier value role {active | passive}] interval milliseconds min_rx milliseconds multiplier ...BFD) is active. The Dell Force10 operating software (FTOS) implementation is supported on the C-Series, E-Series, Z-Series, and S4810 platforms. bfd all-neighbors Enable BFD sessions with all Layer 3 physical interfaces including virtual local area network (VLAN) interfaces, and port-channels...
...1000. Enter the role that must be active for session initialization from the remote system. C-Series, E-Series, Z-Series, S4810 Syntax Parameters bfd all-neighbors [interval interval min_rx min_rx multiplier value role {active | passive}] interval milliseconds min_rx milliseconds multiplier ...BFD) is active. The Dell Force10 operating software (FTOS) implementation is supported on the C-Series, E-Series, Z-Series, and S4810 platforms. bfd all-neighbors Enable BFD sessions with all Layer 3 physical interfaces including virtual local area network (VLAN) interfaces, and port-channels...
FTOS Command Line Reference Guide for the S4810 System FTOS 9.1.(0.0)
Page 339
...with a neighbor. Introduced on all interfaces or a specified interface. displays the BFD neighbor information on the E-Series. Introduced on the S4810. Introduced on the E-Series. 339 Related Commands show bfd neighbors - ip-address Enter the IP address of the neighbor in dotted ... on the E-Series ExaScale. Introduced on the Z9000. bfd protocol-liveness Enable the BFD protocol liveness feature. Added support for VLAN and port-channel interfaces on the S4810. Introduced on the E-Series. bfd neighbor Establish a BFD session with the neighbor, use the no bfd neighbor ip-address ...
...with a neighbor. Introduced on all interfaces or a specified interface. displays the BFD neighbor information on the E-Series. Introduced on the S4810. Introduced on the E-Series. 339 Related Commands show bfd neighbors - ip-address Enter the IP address of the neighbor in dotted ... on the E-Series ExaScale. Introduced on the Z9000. bfd protocol-liveness Enable the BFD protocol liveness feature. Added support for VLAN and port-channel interfaces on the S4810. Introduced on the E-Series. bfd neighbor Establish a BFD session with the neighbor, use the no bfd neighbor ip-address ...