Command Line Interface Guide
Page 3
Contents 1 Command Groups 55 Introduction 55 Command Groups 55 Layer 2 Commands 61 2 Using the CLI 135 135 Introduction 135 Entering and Editing CLI Commands 135 CLI Command Modes 141 3 Layer 2 Commands 187 Introduction 187 4 AAA Commands 188 aaa authentication enable 190 aaa authentication login 191 aaa authorization network default radius 193 Contents 3
Contents 1 Command Groups 55 Introduction 55 Command Groups 55 Layer 2 Commands 61 2 Using the CLI 135 135 Introduction 135 Entering and Editing CLI Commands 135 CLI Command Modes 141 3 Layer 2 Commands 187 Introduction 187 4 AAA Commands 188 aaa authentication enable 190 aaa authentication login 191 aaa authorization network default radius 193 Contents 3
Command Line Interface Guide
Page 61
... control access to accept VLAN assignment GC default radius by the RADIUS server. • SP - IPv6 Access List Configuration • v6CMC • v6DP - enable authentication Specifies the authentication method list when LC accessing a higher privilege level from a remote telnet or console. GC login authentication Specifies the login authentication method list LC for http...
... control access to accept VLAN assignment GC default radius by the RADIUS server. • SP - IPv6 Access List Configuration • v6CMC • v6DP - enable authentication Specifies the authentication method list when LC accessing a higher privilege level from a remote telnet or console. GC login authentication Specifies the login authentication method list LC for http...
Command Line Interface Guide
Page 155
... to configure security access for SNMPv3 (for the SNMP management interface. Using the CLI 155 • Enables CLI login and HTTP access to use the wizard initially, the session defaults to the CLI mode with a warning to refer the documentation. SNMPv3 is given a chance to save his configuration...for example, engine ID, view, and so on). If the user chooses to discard his configuration and continue to accept. During a subsequent login, the user may elect to correct only a few items instead of quotation marks when the user wants to enter spaces in the community string,...
... to configure security access for SNMPv3 (for the SNMP management interface. Using the CLI 155 • Enables CLI login and HTTP access to use the wizard initially, the session defaults to the CLI mode with a warning to refer the documentation. SNMPv3 is given a chance to save his configuration...for example, engine ID, view, and so on). If the user chooses to discard his configuration and continue to accept. During a subsequent login, the user may elect to correct only a few items instead of quotation marks when the user wants to enter spaces in the community string,...
Command Line Interface Guide
Page 160
To setup an IP address: 160 Using the CLI This account is defined on the default VLAN (VLAN #1), of the Management System (A.B.C.D) or wildcard (0.0.0.0) to manage from the network via DHCP (this requires that you use to access the CLI, Web ...interface, or SNMP interface for the switch. For more information on the network). The IP address is used to login to setup your initial privilege (Level 15) user account. To setup a user account: Please enter the user name: admin Please enter the user password: ******** Please...
To setup an IP address: 160 Using the CLI This account is defined on the default VLAN (VLAN #1), of the Management System (A.B.C.D) or wildcard (0.0.0.0) to manage from the network via DHCP (this requires that you use to access the CLI, Web ...interface, or SNMP interface for the switch. For more information on the network). The IP address is used to login to setup your initial privilege (Level 15) user account. To setup a user account: Please enter the user name: admin Please enter the user password: ******** Please...
Command Line Interface Guide
Page 162
...can exit the setup wizard at any point by default. To manage the switch using the default system configuration.Note: You can skip the setup... account now. . Set up an SNMP version 1 or 3 account, see the user documentation. Waiting to Dell Easy Setup Wizard The Setup Wizard guides you through the initial switch configuration, and gets you like to setup ...by entering [ctrl+z]. This account is not setup for Dell Network Manager) you like to run the setup wizard within 60 seconds)? [Y/N] y Step 1: The system is used to login to setup your initial privilege (Level 15) user ...
...can exit the setup wizard at any point by default. To manage the switch using the default system configuration.Note: You can skip the setup... account now. . Set up an SNMP version 1 or 3 account, see the user documentation. Waiting to Dell Easy Setup Wizard The Setup Wizard guides you through the initial switch configuration, and gets you like to setup ...by entering [ctrl+z]. This account is not setup for Dell Network Manager) you like to run the setup wizard within 60 seconds)? [Y/N] y Step 1: The system is used to login to setup your initial privilege (Level 15) user ...
Command Line Interface Guide
Page 188
... explains the following commands: • aaa authentication dot1x • aaa authentication enable • aaa authentication login • aaa authorization network default radius • enable authentication • enable password • ip http authentication • ip https authentication • login authentication • password (Line Configuration) • password (User EXEC) • show authentication methods • show...
... explains the following commands: • aaa authentication dot1x • aaa authentication enable • aaa authentication login • aaa authorization network default radius • enable authentication • enable password • ip http authentication • ip https authentication • login authentication • password (Line Configuration) • password (User EXEC) • show authentication methods • show...
Command Line Interface Guide
Page 189
... methods of all methods return an error, specify none as the final method in Global Configuration mode to create an authentication login list. Example The following table: Keyword radius none Description Uses the list of authentication are used only if the previous method...returns an error, not if it fails. At least one from the following example uses the aaa authentication dot1x default command with no authentication Default Configuration No authentication method is defined. To ensure that the authentication succeeds even if all authentication servers for authentication Uses...
... methods of all methods return an error, specify none as the final method in Global Configuration mode to create an authentication login list. Example The following table: Keyword radius none Description Uses the list of authentication are used only if the previous method...returns an error, not if it fails. At least one from the following example uses the aaa authentication dot1x default command with no authentication Default Configuration No authentication method is defined. To ensure that the authentication succeeds even if all authentication servers for authentication Uses...
Command Line Interface Guide
Page 191
... example, if none is specified as the final method in the given sequence. console(config)# aaa authentication enable default enable aaa authentication login Use the aaa authentication login command in . • list-name - Syntax aaa authentication login {default|list-name} method1 [method2...] no form of methods when a user logs in Global Configuration mode to set...
... example, if none is specified as the final method in the given sequence. console(config)# aaa authentication enable default enable aaa authentication login Use the aaa authentication login command in . • list-name - Syntax aaa authentication login {default|list-name} method1 [method2...] no form of methods when a user logs in Global Configuration mode to set...
Command Line Interface Guide
Page 192
...none as an authentication method after radius, no authentication. Command Mode Global Configuration mode User Guidelines The default and optional list names created with the aaa authentication login command are used by telnet and SSH and only contains the method local. Uses no authentication is ... ensure that the authentication algorithm tries, in the command line. For example, if none is used with the login authentication command. Default Configuration The default login lists are used to name this list. Specify at least one from the following example configures authentication...
...none as an authentication method after radius, no authentication. Command Mode Global Configuration mode User Guidelines The default and optional list names created with the aaa authentication login command are used by telnet and SSH and only contains the method local. Uses no authentication is ... ensure that the authentication algorithm tries, in the command line. For example, if none is used with the login authentication command. Default Configuration The default login lists are used to name this list. Specify at least one from the following example configures authentication...
Command Line Interface Guide
Page 193
... The following example enables RADIUS-assigned VLANs. Name of the authorization list • radius - console(config)# aaa authentication login default radius local enable none aaa authorization network default radius Use the aaa authorization network default radius command in a particular VLAN based on the external RADIUS server. Command Mode Global Configuration mode User Guidelines The...
... The following example enables RADIUS-assigned VLANs. Name of the authorization list • radius - console(config)# aaa authentication login default radius local enable none aaa authorization network default radius Use the aaa authorization network default radius command in a particular VLAN based on the external RADIUS server. Command Mode Global Configuration mode User Guidelines The...
Command Line Interface Guide
Page 197
...all TACACS+ servers for a line (console, telnet, or SSH). Syntax login authentication {default|list-name} AAA Commands 197 To return to specify the login authentication method list for authentication. Default Configuration The local user database is specified as the command ip https authentication local... of all methods return an error, specify none as the final method in Line Configuration mode to the default specified by the authentication login command, use the no authentication. Example The following table: Keyword local none radius tacacs Source or destination Uses...
...all TACACS+ servers for a line (console, telnet, or SSH). Syntax login authentication {default|list-name} AAA Commands 197 To return to specify the login authentication method list for authentication. Default Configuration The local user database is specified as the command ip https authentication local... of all methods return an error, specify none as the final method in Line Configuration mode to the default specified by the authentication login command, use the no authentication. Example The following table: Keyword local none radius tacacs Source or destination Uses...
Command Line Interface Guide
Page 198
... AAA Commands no password • password - Password for a console. Syntax password password [encrypted] no login authentication • default - Default Configuration Uses the default set with the aaa authentication login command. Uses the indicated list created with the command aaa authentication login. Command Mode Line Configuration mode User Guidelines This command has no form of this level...
... AAA Commands no password • password - Password for a console. Syntax password password [encrypted] no login authentication • default - Default Configuration Uses the default set with the aaa authentication login command. Uses the indicated list created with the command aaa authentication login. Command Mode Line Configuration mode User Guidelines This command has no form of this level...
Command Line Interface Guide
Page 200
... new password:******** show authentication methods Use the show authentication methods Login Authentication Method Lists defaultList : local Enable Authentication Method Lists 200 AAA Commands Example The following example displays the authentication configuration. Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. console#show authentication methods command in Privileged EXEC...
... new password:******** show authentication methods Use the show authentication methods Login Authentication Method Lists defaultList : local Enable Authentication Method Lists 200 AAA Commands Example The following example displays the authentication configuration. Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. console#show authentication methods command in Privileged EXEC...
Command Line Interface Guide
Page 201
enableList : local Line Login Method List Console defaultList Telnet defaultList SSH defaultList Enable Method List enableList enableList enableList HTTPS HTTP DOT1X :local :local :none show users accounts Use the show users accounts [long] Default Configuration This command has no user guidelines. Syntax show users accounts command in Privileged EXEC mode to display information about the local user database. Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. AAA Commands 201
enableList : local Line Login Method List Console defaultList Telnet defaultList SSH defaultList Enable Method List enableList enableList enableList HTTPS HTTP DOT1X :local :local :none show users accounts Use the show users accounts [long] Default Configuration This command has no user guidelines. Syntax show users accounts command in Privileged EXEC mode to display information about the local user database. Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. AAA Commands 201
Command Line Interface Guide
Page 202
... 1 --- --- Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. Example The following example displays information about the login history of user. (Range: 1-20 characters) Default Configuration This command has no user guidelines. Example The following example show user login history outputs. 202 AAA Commands Syntax show users accounts UserName Lockout...
... 1 --- --- Command Mode Privileged EXEC mode User Guidelines This command has no default configuration. Example The following example displays information about the login history of user. (Range: 1-20 characters) Default Configuration This command has no user guidelines. Example The following example show user login history outputs. 202 AAA Commands Syntax show users accounts UserName Lockout...
Command Line Interface Guide
Page 203
... suspend that user's access. (Range: 0-15) • encrypted - Level 0 can be assigned by a level 15 user to the local users database. Default Configuration No user name is 1. The name of this command. Syntax username name password password [level level] [encrypted] no form of the user. (Range...been executed.) • level - AAA Commands 203 The authentication password for the user. (Range: 8-64 characters. console#show users login-history Login Time Username Protocol Location Jan 19 2005 08:23:48 Bob Serial Jan 19 2005 08:29:29 Robert HTTP 172.16.0.8 Jan 19...
... suspend that user's access. (Range: 0-15) • encrypted - Level 0 can be assigned by a level 15 user to the local users database. Default Configuration No user name is 1. The name of this command. Syntax username name password password [level level] [encrypted] no form of the user. (Range...been executed.) • level - AAA Commands 203 The authentication password for the user. (Range: 8-64 characters. console#show users login-history Login Time Username Protocol Location Jan 19 2005 08:23:48 Bob Serial Jan 19 2005 08:29:29 Robert HTTP 172.16.0.8 Jan 19...
Command Line Interface Guide
Page 520
... usage Use the usage command in Radius mode to a specific Radius server before executing this command. Default Configuration The default variable setting is all . console(config)#radius-server host 192.143.120.123 console(config-radius)#usage login 520 RADIUS Commands Syntax usage type • type - Example The following example specifies usage type...
... usage Use the usage command in Radius mode to a specific Radius server before executing this command. Default Configuration The default variable setting is all . console(config)#radius-server host 192.143.120.123 console(config-radius)#usage login 520 RADIUS Commands Syntax usage type • type - Example The following example specifies usage type...
Command Line Interface Guide
Page 1202
The output of "debug" trace output on the login session in order to disable all debug traces. Syntax debug clear Default Configuration There is executed. Command Mode Privileged EXEC mode. Example console#debug auto-voip debug clear Use the debug clear command to view any trace ... clear debug console Use the debug console to enable the display of debug trace commands 1202 Serviceability Tracing Packet Commands User Guidelines There are no default configuration for this command.
The output of "debug" trace output on the login session in order to disable all debug traces. Syntax debug clear Default Configuration There is executed. Command Mode Privileged EXEC mode. Example console#debug auto-voip debug clear Use the debug clear command to view any trace ... clear debug console Use the debug console to enable the display of debug trace commands 1202 Serviceability Tracing Packet Commands User Guidelines There are no default configuration for this command.
Command Line Interface Guide
Page 1203
...Privileged EXEC mode. Syntax debug dot1x packet [ receive | transmit ] no debug dot1x packet [ receive | transmit ] Default Configuration Display of dot1x traces is disabled by default. User Guidelines There are no " form of this command. Example console#debug console debug dot1x Use the debug dot1x ... for this command to enable dot1x packet tracing. Syntax debug console Default Configuration Display of debug traces is not persistent across resets. appears on all login sessions for the life of the login session. The configuration of this command remains in effect for which debug...
...Privileged EXEC mode. Syntax debug dot1x packet [ receive | transmit ] no debug dot1x packet [ receive | transmit ] Default Configuration Display of dot1x traces is disabled by default. User Guidelines There are no " form of this command. Example console#debug console debug dot1x Use the debug dot1x ... for this command to enable dot1x packet tracing. Syntax debug console Default Configuration Display of debug traces is not persistent across resets. appears on all login sessions for the life of the login session. The configuration of this command remains in effect for which debug...
Configuration Guide
Page 106
... via that Port. • Supplicant - This authentication list is associated with the 802.1x default login. 802.1x port based access control is enabled for communicating with the supplicant. The PowerConnect 6200 Series switch achieves access control by the Authenticator. Depending on that are authorized to check the... process, the authenticator PAE then controls the authorized/unauthorized state of an authentication exchange requires all three roles. The PowerConnect 6200 Series switch supports the authenticator role only, in which uses RADIUS as the authentication method.
... via that Port. • Supplicant - This authentication list is associated with the 802.1x default login. 802.1x port based access control is enabled for communicating with the supplicant. The PowerConnect 6200 Series switch achieves access control by the Authenticator. Depending on that are authorized to check the... process, the authenticator PAE then controls the authorized/unauthorized state of an authentication exchange requires all three roles. The PowerConnect 6200 Series switch supports the authenticator role only, in which uses RADIUS as the authentication method.