Command Line Interface (CLI) Guide (.htm)
Page 25
...HTTP server users. Global Configuration username Establishes a username-based authentication system. Configuration passwords lockout Sets the number of required password changes before a user account is relevant for tracking Global its password history. Configuration passwords aging Sets the expiration time for accessing higher Global privilege levels. Line Configuration enable authentication Specifies the authentication method list when accessing a Line higher privilege level from a remote telnet or console. Global Configuration aaa login-history file Enables...
...HTTP server users. Global Configuration username Establishes a username-based authentication system. Configuration passwords lockout Sets the number of required password changes before a user account is relevant for tracking Global its password history. Configuration passwords aging Sets the expiration time for accessing higher Global privilege levels. Line Configuration enable authentication Specifies the authentication method list when accessing a Line higher privilege level from a remote telnet or console. Global Configuration aaa login-history file Enables...
Command Line Interface (CLI) Guide (.htm)
Page 26
... forward-all Forbids a port from becoming a forward-all multicast frames on interfaces. PRELIMINARY 9/13/06 - Global Configuration DELL CONFIDENTIAL - Interface (VLAN) Configuration bridge multicast filtering Enables filtering of users. www.dell.com | support.dell.com set enable-password active Reactivates a locked local password. Global Configuration bridge multicast address Registers MAC-layer multicast addresses to the bridge table, and adds static ports to the bridge table. Access Mode Global Configuration MAC Access-List Configuration Interface (VLAN) Configuration...
... forward-all Forbids a port from becoming a forward-all multicast frames on interfaces. PRELIMINARY 9/13/06 - Global Configuration DELL CONFIDENTIAL - Interface (VLAN) Configuration bridge multicast filtering Enables filtering of users. www.dell.com | support.dell.com set enable-password active Reactivates a locked local password. Global Configuration bridge multicast address Registers MAC-layer multicast addresses to the bridge table, and adds static ports to the bridge table. Access Mode Global Configuration MAC Access-List Configuration Interface (VLAN) Configuration...
Command Line Interface (CLI) Guide (.htm)
Page 28
www.dell.com | support.dell.com Clock Commands Command Group clock set clock source clock timezone clock summer-time sntp authentication-key sntp authenticate sntp trusted-key sntp client poll timer sntp broadcast client enable sntp anycast client enable sntp client enable (Interface) sntp unicast client enable sntp unicast client poll sntp server show clock show sntp configuration show sntp status Description Manually sets the system clock. Enables anycast clients. Enables polling for the...
www.dell.com | support.dell.com Clock Commands Command Group clock set clock source clock timezone clock summer-time sntp authentication-key sntp authenticate sntp trusted-key sntp client poll timer sntp broadcast client enable sntp anycast client enable sntp client enable (Interface) sntp unicast client enable sntp unicast client poll sntp server show clock show sntp configuration show sntp status Description Manually sets the system clock. Enables anycast clients. Enables polling for the...
Command Line Interface (CLI) Guide (.htm)
Page 31
... igmp snooping mrouter show gvrp error-statistics De-registers all the GVRP statistics information. Configures the host-time-out. Configures the mrouter-time-out. Global Configuration Interface (VLAN) Interface (VLAN) Interface (VLAN) Interface (VLAN) Interface (VLAN) User EXEC User EXEC DELL CONFIDENTIAL - GVRP Commands Command Group gvrp enable (Global) Description Enables GVRP globally. Enables or disables dynamic VLAN creation. Displays GVRP configuration information. Enables automatic learning of multicast router ports. Configures the leave-time-out. Displays IGMP snooping...
... igmp snooping mrouter show gvrp error-statistics De-registers all the GVRP statistics information. Configures the host-time-out. Configures the mrouter-time-out. Global Configuration Interface (VLAN) Interface (VLAN) Interface (VLAN) Interface (VLAN) Interface (VLAN) User EXEC User EXEC DELL CONFIDENTIAL - GVRP Commands Command Group gvrp enable (Global) Description Enables GVRP globally. Enables or disables dynamic VLAN creation. Displays GVRP configuration information. Enables automatic learning of multicast router ports. Configures the leave-time-out. Displays IGMP snooping...
Command Line Interface (CLI) Guide (.htm)
Page 50
www.dell.com | support.dell.com enable password end file-system logging gvrp enable (Global) hostname interface ethernet interface port-channel interface range ethernet interface range port-channel interface range vlan interface vlan ip default-gateway ip domain-lookup ip domain-name ip host ip http authentication ip http port ip http server ip https authentication ip https certificate ip https server ip https port ip igmp snooping (Global) ip name-server ip ssh port ip ssh pubkey-auth Sets a local password to control access to configure an Ethernet type interface. Enables the IP ...
www.dell.com | support.dell.com enable password end file-system logging gvrp enable (Global) hostname interface ethernet interface port-channel interface range ethernet interface range port-channel interface range vlan interface vlan ip default-gateway ip domain-lookup ip domain-name ip host ip http authentication ip http port ip http server ip https authentication ip https certificate ip https server ip https port ip igmp snooping (Global) ip name-server ip ssh port ip ssh pubkey-auth Sets a local password to control access to configure an Ethernet type interface. Enables the IP ...
Command Line Interface (CLI) Guide (.htm)
Page 51
...server. Sets the number of the powered device type attached to be SP queues. Improves RADIUS response times when servers are unavailable. FOR PROOF ONLY Command Modes 51 Configures the system LACP priority. Sets the number of required password changes before a user account is used. Adds a description of failed login attempts before a password in the local database. ip ssh server lacp system-priority line logging logging buffered logging buffered size logging console logging file logging on severity. Defines a management access-list, and enters the access-list for passwords...
...server. Sets the number of the powered device type attached to be SP queues. Improves RADIUS response times when servers are unavailable. FOR PROOF ONLY Command Modes 51 Configures the system LACP priority. Sets the number of required password changes before a user account is used. Adds a description of failed login attempts before a password in the local database. ip ssh server lacp system-priority line logging logging buffered logging buffered size logging console logging file logging on severity. Defines a management access-list, and enters the access-list for passwords...
Command Line Interface (CLI) Guide (.htm)
Page 62
... MAC-layer multicast addresses to the bridge table, and adds static ports to the bridge table. Enables Internet Group Management Protocol (IGMP) snooping on a port. Configures the host-time-out. DELL CONFIDENTIAL - Enables automatic learning of all multicast frames to a port. Creates a VLAN. VC (VLAN Configuration) Mode Command bridge address bridge multicast address bridge multicast forbidden address bridge multicast forbidden forward-all bridge multicast forward-all multicast frames on a specific VLAN. Enables forwarding of all ip igmp snooping (Interface) ip igmp...
... MAC-layer multicast addresses to the bridge table, and adds static ports to the bridge table. Enables Internet Group Management Protocol (IGMP) snooping on a port. Configures the host-time-out. DELL CONFIDENTIAL - Enables automatic learning of all multicast frames to a port. Creates a VLAN. VC (VLAN Configuration) Mode Command bridge address bridge multicast address bridge multicast forbidden address bridge multicast forbidden forward-all bridge multicast forward-all multicast frames on a specific VLAN. Enables forwarding of all ip igmp snooping (Interface) ip igmp...
Command Line Interface (CLI) Guide (.htm)
Page 103
... this example, MAC address 0100.5e02.0203 is forbidden on a port. Syntax bridge multicast forward-all {add | remove} {ethernet interface-list | port-channel portchannel-number-list} no form of ports. • port-channel-number-list - Do not force forwarding all multicast packets on port 2/e9 within VLAN 8. To restore the default configuration, use the no bridge multicast forward-all multicast packets. • remove - Separate non-consecutive Ethernet ports with a comma and no user guidelines for this command. Console(config)# interface vlan 8 Console(config-if...
... this example, MAC address 0100.5e02.0203 is forbidden on a port. Syntax bridge multicast forward-all {add | remove} {ethernet interface-list | port-channel portchannel-number-list} no form of ports. • port-channel-number-list - Do not force forwarding all multicast packets on port 2/e9 within VLAN 8. To restore the default configuration, use the no bridge multicast forward-all multicast packets. • remove - Separate non-consecutive Ethernet ports with a comma and no user guidelines for this command. Console(config)# interface vlan 8 Console(config-if...
Command Line Interface (CLI) Guide (.htm)
Page 256
...Command Mode Global Configuration mode User Guidelines • Packets entering a quality of service (QoS) domain are classified with packet DSCP values. Console(config)# qos trust dscp qos trust (Interface) The qos trust Interface Configuration (Ethernet, Port-channel) mode command enables each port, use the no qos trust Default Configuration qos trust is enabled on each port trust state while the system is the default trust mode. FOR PROOF ONLY 256 QoS Commands www.dell.com | support.dell.com • cos - Command Mode Interface Configuration (Ethernet, Port-channel) mode DELL...
...Command Mode Global Configuration mode User Guidelines • Packets entering a quality of service (QoS) domain are classified with packet DSCP values. Console(config)# qos trust dscp qos trust (Interface) The qos trust Interface Configuration (Ethernet, Port-channel) mode command enables each port, use the no qos trust Default Configuration qos trust is enabled on each port trust state while the system is the default trust mode. FOR PROOF ONLY 256 QoS Commands www.dell.com | support.dell.com • cos - Command Mode Interface Configuration (Ethernet, Port-channel) mode DELL...
Command Line Interface (CLI) Guide (.htm)
Page 285
... the remote SNMP entity to a view called user-view. Each byte can be created for "interfaces". Examples The following example attaches a group called user-group to SNMPv3 and assigns to the group the privacy security level and read user-view snmp-server user The snmp-server user Global Configuration mode command configures a new SNMP Version 3 user. To remove a user, use the no authentication" is required, while allowing only notification view for which "priv" authentication is two hexadecimal digits. Console(config)# snmp-server group user...
... the remote SNMP entity to a view called user-view. Each byte can be created for "interfaces". Examples The following example attaches a group called user-group to SNMPv3 and assigns to the group the privacy security level and read user-view snmp-server user The snmp-server user Global Configuration mode command configures a new SNMP Version 3 user. To remove a user, use the no authentication" is required, while allowing only notification view for which "priv" authentication is two hexadecimal digits. Console(config)# snmp-server group user...
Command Line Interface (CLI) Guide (.htm)
Page 372
... Nickname 43 World Wide Web 80 • This command lists concurrent telnet connections to remote hosts that were opened by the current telnet session to the local device. Syntax resume [connection] • connection - Console> telnet 176.213.10.50 Esc U sends telnet EL resume The resume User EXEC mode command enables switching to 176.213.10.50 via Telnet. PRELIMINARY 9/13/06 - The connection number. (Range: 1 - 4 connections) Default Configuration The default connection number is that of...
... Nickname 43 World Wide Web 80 • This command lists concurrent telnet connections to remote hosts that were opened by the current telnet session to the local device. Syntax resume [connection] • connection - Console> telnet 176.213.10.50 Esc U sends telnet EL resume The resume User EXEC mode command enables switching to 176.213.10.50 via Telnet. PRELIMINARY 9/13/06 - The connection number. (Range: 1 - 4 connections) Default Configuration The default connection number is that of...
User's Guide (.htm)
Page 47
... System The PowerConnect 3424/P and PowerConnect 3448/P switches with the PoE feature have two built-in stand-alone mode. For example, if there are not reset. The single reset circuit of the switch is activated by observing the LED that is not selected within 15 seconds of the Master unit, the third member is 3, and the fourth Stack member is booted in fans. If...
... System The PowerConnect 3424/P and PowerConnect 3448/P switches with the PoE feature have two built-in stand-alone mode. For example, if there are not reset. The single reset circuit of the switch is activated by observing the LED that is not selected within 15 seconds of the Master unit, the third member is 3, and the fourth Stack member is booted in fans. If...
User's Guide (.htm)
Page 60
...-test (POST). Installation and Configuration Flow Connect Device and Console Power On Hardware Setup Press Esc Yes Susepnd Bootup No Loading Program from flash to determine if the device is turned on with the local terminal already connected, the switch goes through power-on the terminal and indicate test success or failure. If a critical problem is loaded into RAM. www.dell.com | support.dell.com Figure 4-1. POST runs every time the device...
...-test (POST). Installation and Configuration Flow Connect Device and Console Power On Hardware Setup Press Esc Yes Susepnd Bootup No Loading Program from flash to determine if the device is turned on with the local terminal already connected, the switch goes through power-on the terminal and indicate test success or failure. If a critical problem is loaded into RAM. www.dell.com | support.dell.com Figure 4-1. POST runs every time the device...
User's Guide (.htm)
Page 63
... access the CLI, Web interface, or SNMP interface for example "admin" • Password and password confirmation. Wizard Step 3 The following is the IP address you use to manage from any Management Station. Please enter the SNMP community string to be used to login to setup your initial privilege (Level 15) user account. NOTE: If the first and second password entries are not identical, the user is setup. You may setup other accounts and change...
... access the CLI, Web interface, or SNMP interface for example "admin" • Password and password confirmation. Wizard Step 3 The following is the IP address you use to manage from any Management Station. Please enter the SNMP community string to be used to login to setup your initial privilege (Level 15) user account. NOTE: If the first and second password entries are not identical, the user is setup. You may setup other accounts and change...
User's Guide (.htm)
Page 65
... a DHCP server, perform the following steps: 1 Select and connect any port to a DHCP server or to retrieve the IP address. 2 Enter the following example, the commands are based on a VLAN): console# configure console(config)# interface ethernet vlan 1 console(config-if)# ip address dhcp hostname device console(config-if)# exit console(config)# Configuring PowerConnect 3424/P and 3448/P 65 To retrieve an IP address from these servers includes the IP address and may include subnet mask and default gateway. When the device is reset, the DHCP command is saved...
... a DHCP server, perform the following steps: 1 Select and connect any port to a DHCP server or to retrieve the IP address. 2 Enter the following example, the commands are based on a VLAN): console# configure console(config)# interface ethernet vlan 1 console(config-if)# ip address dhcp hostname device console(config-if)# exit console(config)# Configuring PowerConnect 3424/P and 3448/P 65 To retrieve an IP address from these servers includes the IP address and may include subnet mask and default gateway. When the device is reset, the DHCP command is saved...
User's Guide (.htm)
Page 180
... during login and via user names and user-defined passwords. • Authorization - The TACACS+ server checks the user privileges. TACACS+ provides centralized security for setting fields displayed in the tree view. 180 Configuring System Information Assigning Enable Passwords Using CLI Commands The following table summarizes the equivalent CLI commands for validation of the CLI commands: console(config)# enable password level 15 secret Defining TACACS+ Settings The devices provide Terminal Access Controller Access Control System (TACACS+) client support. The following services...
... during login and via user names and user-defined passwords. • Authorization - The TACACS+ server checks the user privileges. TACACS+ provides centralized security for setting fields displayed in the tree view. 180 Configuring System Information Assigning Enable Passwords Using CLI Commands The following table summarizes the equivalent CLI commands for validation of the CLI commands: console(config)# enable password level 15 secret Defining TACACS+ Settings The devices provide Terminal Access Controller Access Control System (TACACS+) client support. The following services...
User's Guide (.htm)
Page 241
... MAC Based ACLs." The Add MAC Based ACLs page opens. Each classification rule and action are addressed to which packets are called Access Control Element (ACE). The MAC Based ACL page allows a MAC- New ACE Priority (1-2147483647) - Matches the destination MAC address to the ACE. For an explanation of the ACE rule in the ACL field. Destination MAC Address - Figure 7-9. ACLs contain multiple classification rules and actions. User-defined ACL. Configuring Switch Information...
... MAC Based ACLs." The Add MAC Based ACLs page opens. Each classification rule and action are addressed to which packets are called Access Control Element (ACE). The MAC Based ACL page allows a MAC- New ACE Priority (1-2147483647) - Matches the destination MAC address to the ACE. For an explanation of the ACE rule in the ACL field. Destination MAC Address - Figure 7-9. ACLs contain multiple classification rules and actions. User-defined ACL. Configuring Switch Information...
User's Guide (.htm)
Page 260
...an example of the CLI commands: console(config)# port storm-control include-multicast console(config)# interface ethernet 1/e1 console(config-if)# port storm-control broadcast enable console(config-if)# port storm-control broadcast rate 100000 console(config-if)# end console# show ports storm-control Port Broadcast Storm control [kbyes/sec] ----- 1/e1 8000 2/e1 Disabled 3/e2 Disabled Defining Port Mirroring Sessions Port mirroring: • Monitors and mirrors network traffic by forwarding copies of incoming and outgoing packets from a monitored port to a monitoring port...
...an example of the CLI commands: console(config)# port storm-control include-multicast console(config)# interface ethernet 1/e1 console(config-if)# port storm-control broadcast enable console(config-if)# port storm-control broadcast rate 100000 console(config-if)# end console# show ports storm-control Port Broadcast Storm control [kbyes/sec] ----- 1/e1 8000 2/e1 Disabled 3/e2 Disabled Defining Port Mirroring Sessions Port mirroring: • Monitors and mirrors network traffic by forwarding copies of incoming and outgoing packets from a monitored port to a monitoring port...
User's Guide (.htm)
Page 324
... ethernet 1/e11 console(config-if)# channel-group 1 mode on Multicast Forwarding Support Multicast forwarding allows a single packet to be forwarded to port subsets. 324 Configuring Switch Information show interfaces port-channel [port-channel-number] Displays port-channel information. Layer 2 Multicast service is based on no form of the packet, and transmits the packets to all such traffic (traffic in the tree view. Unregistered Multicast traffic - Forwards Layer 2 Multicast packets. Layer 2 Multicast filtering is disabled, Multicast packets are flooded to remove the | auto...
... ethernet 1/e11 console(config-if)# channel-group 1 mode on Multicast Forwarding Support Multicast forwarding allows a single packet to be forwarded to port subsets. 324 Configuring Switch Information show interfaces port-channel [port-channel-number] Displays port-channel information. Layer 2 Multicast service is based on no form of the packet, and transmits the packets to all such traffic (traffic in the tree view. Unregistered Multicast traffic - Forwards Layer 2 Multicast packets. Layer 2 Multicast filtering is disabled, Multicast packets are flooded to remove the | auto...
User's Guide (.htm)
Page 378
... fields. 4 Click Apply Changes. Assigning QoS settings for untagged packets. Table 9-110. The CoS settings are 0-7. www.dell.com | support.dell.com The Interface Settings page contains the following fields: Interface - The specific port or LAG to the interface. Disables Trust mode on the device globally. This setting overrides the Trust mode configured on the specified interface. Set Default CoS For Incoming Traffic To - The CoS tag values are assigned to configure. QoS Interface CLI Commands CLI Command qos trust no qos trust Description Enables the trust...
... fields. 4 Click Apply Changes. Assigning QoS settings for untagged packets. Table 9-110. The CoS settings are 0-7. www.dell.com | support.dell.com The Interface Settings page contains the following fields: Interface - The specific port or LAG to the interface. Disables Trust mode on the device globally. This setting overrides the Trust mode configured on the specified interface. Set Default CoS For Incoming Traffic To - The CoS tag values are assigned to configure. QoS Interface CLI Commands CLI Command qos trust no qos trust Description Enables the trust...