Huawei Quidway S8500 Series Command Manual

  • Hello! I am an AI chatbot trained to assist you with the Huawei Quidway S8500 Series Command Manual. I’ve already reviewed the document and can help you find the information you need or explain it in simple terms. Just ask your questions, and providing more details will help me assist you more effectively!
HUAWEI
1. Getting Started 9. STP
2. Port 10. Security
3. VLAN&QinQ 11. Reliability
4. Network Protocol 12. System Management
5. Routing Protocol 13. PoE
6. Multicast Protocol 14. NAT&URPF&VPLS
7. QoS/ACL 15. Integrated Management
8. MPLS 16. Appendix
Quidway S8500 Series Routing Switches
Command Manual
VRP3.10
Huawei Technologies Proprietary
Quidway S8500 Series Routing Switches
Command Manual
Manual Version
T2-08190F-20060116-C-1.52
Product Version
VRP3.10
BOM
3119A00F
Huawei Technologies Co., Ltd. provides customers with comprehensive technical support
and service. If you purchase the products from the sales agent of Huawei Technologies Co.,
Ltd., please contact our sales agent. If you purchase the products from Huawei
Technologies Co., Ltd. directly, Please feel free to contact our local office, customer care
center or company headquarters.
Huawei Technologies Co., Ltd.
Address: Administration Building, Huawei Technologies Co., Ltd.,
Bantian, Longgang District, Shenzhen, P. R. China
Postal Code: 518129
Website:
http://www.huawei.com
Huawei Technologies Proprietary
Copyright © 2006 Huawei Technologies Co., Ltd.
All Rights Reserved
No part of this manual may be reproduced or transmitted in any form or by any
means without prior written consent of Huawei Technologies Co., Ltd.
Trademarks
, HUAWEI, C&C08, EAST8000, HONET, , ViewPoint, INtess, ETS, DMC,
TELLIN, InfoLink, Netkey, Quidway, SYNLOCK, Radium,
M900/M1800,
TELESIGHT, Quidview, Musa, Airbridge, Tellwin, Inmedia, VRP, DOPRA,
iTELLIN, HUAWEI OptiX, C&C08
iNET, NETENGINE, OptiX, iSite, U-SYS, iMUSE,
OpenEye, Lansway, SmartAX, infoX, and TopEng are trademarks of Huawei
Technologies Co., Ltd.
All other trademarks and trade names mentioned in this manual are the property of
their respective holders.
Notice
The information in this manual is subject to change without notice. Every effort has
been made in the preparation of this manual to ensure accuracy of the contents,
but all statements, information, and recommendations in this manual do not
constitute the warranty of any kind, express or implied.
Huawei Technologies Proprietary
About This Manual
Release Notes
The product version that corresponds to the manual is VRP3.10.
Related Manuals
The following manuals provide more information about the Quidway S8500 Series
Routing Switches.
Manual Content
Quidway S8500 Series Routing
Switches Installation Manual
It provides information for the system installation,
booting, hardware/software maintenance &
monitoring.
Quidway S8500 Series Routing
Switches Operation Manual
Volume I
It includes getting started, port, VLAN, network
protocols, routing protocols, multicast protocols,
and QoS/ACL.
Quidway S8500 Series Routing
Switches Operation Manual
Volume II
It includes MPLS, STP, security, reliability,
system management, PoE, NAT&URPF&VPLS,
integrated management, and appendix.
Organization
Quidway S8500 Series Routing Switches Command Manual consists of the following
parts:
z Getting Started
This module introduces the commands available in the S8500 series.
z Port
This module focuses on the commands for the configuration on Ethernet ports,
POS ports, RPR ports, link aggregation, and IDS cooperation.
z VLAN&QinQ
This module elaborates on the commands for VLAN, GARP, super VLAN and
QinQ configuration.
z Network Protocol
Huawei Technologies Proprietary
This module details the commands for the configuration on network protocols,
including those for IP address, ARP, DHCP, DNS and IP performance
configuration.
z Routing Protocol
This module concentrates on the commands for the configuration on routing
protocols, including those for static routing, RIP, OSPF, IS-IS, BGP and routing
policy configuration.
z Multicast Protocol
This module presents the commands for the configuration on multicast protocols,
including those for IGMP Snooping, IGMP multicast VLAN, PIM-DM, PIM-SM,
MSDP and MBGP multicast extension configuration.
z QoS/ACL
This module introduces the commands for QoS/ACL configuration.
z MPLS
This module introduces the commands for MPLS and BGP/MPLS VPN
configuration.
z STP
This module introduces the commands for STP configuration.
z Security
This module presents the commands for the configuration on 802.1x, AAA and
RADIUS protocols, HABP, and HWTACACS protocol.
z Reliability
This module focuses on the commands for VRRP and HA configuration.
z System Management
This module details the commands for the configuration involved in system
management and maintenance, including those for file management, system
management, SNMP, RMON, NTP protocol, SSH terminal services and network
management configuration.
z PoE
This module introduces the commands for remote power-feeding configuration.
z NAT&URPF&VPLS
This module details the commands for NAT, URPF, VPLS configurations.
z Integrated Management
This module details the commands for HGMP V1 configuration.
z Appendix
This appendix offers an index for all the commands available in the S8500 series.
Huawei Technologies Proprietary
Intended Audience
The manual is intended for the following readers:
z Network engineers
z Network administrators
z Customers who are familiar with network fundamentals
Conventions
The manual uses the following conventions:
I. General conventions
Convention Description
Arial Normal paragraphs are in Arial.
Boldface
Headings are in Boldface.
Courier New
Terminal Display is in Courier New.
II. Command conventions
Convention Description
Boldface
The keywords of a command line are in Boldface.
italic
Command arguments are in italic.
[ ]
Items (keywords or arguments) in square brackets [ ] are
optional.
{ x | y | ... }
Alternative items are grouped in braces and separated by
vertical bars. One is selected.
[ x | y | ... ]
Optional alternative items are grouped in square brackets
and separated by vertical bars. One or none is selected.
{ x | y | ... } *
Alternative items are grouped in braces and separated by
vertical bars. A minimum of one or a maximum of all can be
selected.
[ x | y | ... ] *
Optional alternative items are grouped in square brackets
and separated by vertical bars. Many or none can be
selected.
# A line starting with the # sign is comments.
Huawei Technologies Proprietary
III. GUI conventions
Convention Description
< >
Button names are inside angle brackets. For example, click
the <OK> button.
[ ]
Window names, menu items, data table and field names
are inside square brackets. For example, pop up the [New
User] window.
/
Multi-level menus are separated by forward slashes. For
example, [File/Create/Folder].
IV. Keyboard operation
Format Description
<Key>
Press the key with the key name inside angle brackets. For
example, <Enter>, <Tab>, <Backspace>, or <A>.
<Key1+Key2>
Press the keys concurrently. For example, <Ctrl+Alt+A>
means the three keys should be pressed concurrently.
<Key1, Key2>
Press the keys in turn. For example, <Alt, A> means the
two keys should be pressed in turn.
V. Mouse operation
Action Description
Select
Press and hold the primary mouse button (left mouse
button by default).
Click
Select and release the primary mouse button without
moving the pointer.
Double-Click
Press the primary mouse button twice continuously and
quickly without moving the pointer.
Drag
Press and hold the primary mouse button and move the
pointer to a certain position.
Huawei Technologies Proprietary
VI. Symbols
Eye-catching symbols are also used in the manual to highlight the points worthy of
special attention during the operation. They are defined as follows:
Caution: Means reader be extremely careful during the operation.
Note: Means a complementary description.
Huawei Technologies Proprietary
HUAWEI
Quidway S8500 Series Routing Switches
Command Manual
Getting Started
Huawei Technologies Proprietary
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Table of Contents
Huawei Technologies Proprietary
i
Table of Contents
Chapter 1 Commands Used to Log in to Switch........................................................................1-1
1.1 Logging in to Switch Commands.......................................................................................1-1
1.1.1 authentication-mode................................................................................................1-1
1.1.2 auto-execute command...........................................................................................1-2
1.1.3 command-privilege level .........................................................................................1-3
1.1.4 databits....................................................................................................................1-4
1.1.5 display history-command ........................................................................................1-4
1.1.6 display user-interface..............................................................................................1-7
1.1.7 display users ........................................................................................................... 1-9
1.1.8 flow-control............................................................................................................ 1-10
1.1.9 free user-interface.................................................................................................1-10
1.1.10 header.................................................................................................................1-11
1.1.11 history-command max-size.................................................................................1-13
1.1.12 idle-timeout..........................................................................................................1-14
1.1.13 language-mode...................................................................................................1-14
1.1.14 lock......................................................................................................................1-15
1.1.15 modem ................................................................................................................1-15
1.1.16 modem auto-answer ...........................................................................................1-16
1.1.17 modem timer answer........................................................................................... 1-17
1.1.18 parity.................................................................................................................... 1-17
1.1.19 protocol inbound..................................................................................................1-18
1.1.20 quit.......................................................................................................................1-19
1.1.21 return...................................................................................................................1-19
1.1.22 screen-length.......................................................................................................1-20
1.1.23 send..................................................................................................................... 1-21
1.1.24 service-type telnet...............................................................................................1-21
1.1.25 set authentication password................................................................................1-22
1.1.26 shell.....................................................................................................................1-23
1.1.27 speed...................................................................................................................1-24
1.1.28 stopbits................................................................................................................1-25
1.1.29 super ...................................................................................................................1-26
1.1.30 super password...................................................................................................1-26
1.1.31 sysname.............................................................................................................. 1-27
1.1.32 system-view.........................................................................................................1-28
1.1.33 telnet.................................................................................................................... 1-29
1.1.34 user-interface ...................................................................................................... 1-29
1.1.35 user privilege level ..............................................................................................1-30
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Table of Contents
Huawei Technologies Proprietary
ii
Chapter 2 Password Control Configuration Commands...........................................................2-1
2.1 Password Control Configuration Commands ....................................................................2-1
2.1.1 display password-control.........................................................................................2-1
2.1.2 display password-control blacklist...........................................................................2-2
2.1.3 display password-control super...............................................................................2-2
2.1.4 password.................................................................................................................2-3
2.1.5 password-control..................................................................................................... 2-4
2.1.6 password-control enable......................................................................................... 2-6
2.1.7 password-control super........................................................................................... 2-7
2.1.8 reset password-control history-record.....................................................................2-8
2.1.9 reset password-control history-record super...........................................................2-8
2.1.10 reset password-control blacklist............................................................................2-9
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-1
Chapter 1 Commands Used to Log in to Switch
1.1 Logging in to Switch Commands
1.1.1 authentication-mode
Syntax
authentication-mode { password | scheme | none }
View
User interface view
Parameter
password: Performs local password authentication.
scheme: Performs local or remote authentication of username and password.
none: Log in without authentication.
Description
Use the authentication-mode command to configure the authentication method for
login user.
Use the authentication-mode none command to configure no authentication.
This command with the password parameter indicates to perform local password
authentication, that is, you need to configure a login password using the set
authentication password { cipher | simple } password command.
This command with the scheme parameter indicates to perform authentication of local
or remote username and password. The type of the authentication depends on your
configuration. For detailed information, see “Security” section.
By default, terminal authentication is not required for local users log in via the Console
port. However, password authentication is required for local users and remote Modem
users to log in via the AUX port, and for Telnet users and VTY users to log in through
Ethernet port.
Note: If the Console port is configured for local password authentication, the user can
directly log in to the system even without a password configured; if other user interfaces,
such as the AUX port and VTY interface, are configured for local password
authentication, users cannot log in to the system without a password.
Example
# Configure local password authentication.
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-2
<Quidway>system-view
System View: return to User View with Ctrl+Z.
[Quidway] user-interface aux 0
[Quidway-ui-aux0] authentication-mode password
1.1.2 auto-execute command
Syntax
auto-execute command text
undo auto-execute command
View
User interface view
Parameter
text: Specifies the command to be run automatically.
Description
Use the auto-execute command command to configure to automatically run a
specified command. When a user logs in, the command configured will be executed
automatically. The user will be disconnected after that.
Use the undo auto-execute command command to configure not to run the command
automatically.
This command is usually used to configure the telnet command on the terminal, which
will connect the user to a designated device automatically.
By default, auto run is disabled.
Caution:
z If you execute this command, the user-interface can no longer be used to perform
routine configurations on the local system. Therefore use caution when using this
command.
z Ensure that you will be able to log in to the system in some other way to cancel the
configuration, before you configure the auto-execute command command and
save the configuration.
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-3
Example
# Configure to automatically execute telnet 10.110.100.1 after the user logs in via VTY
0.
<Quidway>system-view
System View: return to User View with Ctrl+Z.
[Quidway] user-interface vty 0
[Quidway-ui-vty0] auto-execute command telnet 10.110.100.1
1.1.3 command-privilege level
Syntax
command-privilege level level view view command
undo command-privilege view view command
View
System view
Parameter
level: Specifies the command level, ranging from 0 to 3.
view: Specifies the command view, which can be any of the views supported by the
switch.
command: Specifies the command to be configured.
Description
Use the command-privilege level command to configure the priority of the specifically
command of the specifically view.
Use the undo command-privilege view command to restore the default command
priority.
The command levels include visit, monitoring, configuration, and management, which
are identified as 0 through 3 respectively. An administrator assigns authorities as per
user requirements and allows them to operate in corresponding views. When a user
logs in to the switch, the command level that it can access depends on two points. One
is the command level that the user itself can access, the other is the set command level
of this user interface. If the two levels are different, the former will be taken. For
example, the command level of VTY 0 user interface is 1, however, user Tom has the
right to access commands of level 3; if Tom logs in from VTY 0 user interface, he can
access commands of level 3 and lower.
By default, ping, tracert, and telnet are at visit level (0); display and debugging are at
monitoring level (1); all the configuration commands are at configuration level (2); and
FTP, TFTP and commands for file system operations are at management level (3).
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-4
Example
# Configure the precedence of the command "interface" as 0.
<Quidway>system-view
System View: return to User View with Ctrl+Z.
[Quidway] command-privilege level 0 view system interface
1.1.4 databits
Syntax
databits { 7 | 8 }
undo databits
View
User interface view
Parameter
7: Sets 7 data bits.
8: Sets 8 data bits.
Description
Use the databits command to configure the data bits for the user interface.
Use the undo databits command to restore the default bits of the user interface.
This command can only be performed in Console and AUX user interface view.
By default, the value is 8.
Example
# Configure the data bits of AUX port to 7 bits.
<Quidway>system-view
System View: return to User View with Ctrl+Z.
[Quidway] user-interface aux 0
[Quidway-ui-aux0] databits 7
1.1.5 display history-command
Syntax
display history-command { Command-Number } { | { begin | include | exclude }
Match-string }
View
Any view
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-5
y history command-
nds displayed by
Parameter
Command-Number: The number of history commands the user wants to query. The
value range is 1 to 256.
|: Operator, indicating that a regular expression follows.
begin: Displays all commands starting from the one that matches the match string.
include: Displays only the command that matches the string.
exclude: Displays only the commands that do not match the match string.
Match-string: The regular expression to match.
Description
The display history-command command is used to query selectively the history
commands. All the history commands are stored in the history command buffer. When
the history command buffer is full, the oldest information in the buffer will be replaced by
new information.
The number of history commands obtained through the display history-command
command, Command-Number, depends on the size of the history command buffer set
through the history-command max-size command, and Command-Number should
not be bigger than the size of the history command buffer Max-size. If the specified
Command-Number is bigger than the Max-size, all the commands in the history
command buffer will be queried.
Refer to
Figure 1-1.
displa
Comma
Command-Number
1
.
.
.
2
3
.
.
.
.
.
Max-size-2
History buffer size
-
1
.
.
.
2
3
.
.
.
.
.
1
.
.
.
2
3
.
.
.
.
.
Max-size-1
Max-size
Comma
displa
Comma
nd-Number
y history command-
nds displayed by
Command-Number
1
.
.
.
2
3
.
.
.
.
.
Max-size-2
History buffer size
-
1
.
.
.
2
3
.
.
.
.
.
1
.
.
.
2
3
.
.
.
.
.
Max-size-1
Max-size
Comma
nd-Number
r
Figure 1-1 Relation between history buffer size and Command-Numbe
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-6
You can either specify the number of commands to be queried (Command-Number) or
input a string to query commands that match the string. You can the two methods
separately or in combination.
z If you only specify Command-Number, the first Command-Number pieces of
commands will be displayed.
z If you specify a regular expression “| { begin | include | exclude } Match-string”,
all the commands that have been successfully executed by the user and that
match the regular expression.
z If you specify both the number of commands Command-Number and a regular
expression “| { begin | include | exclude } Match-string”, the system will display
the commands that match the regular expression among the first
Command-Number pieces of commands.
Related command: history-command max-size.
Example
# Display all history commands in the buffer.
<Quidway>display history-command
system-view
user-interface vty 0
user-interface vty 0 4
history-command max-size 100
quit
display vlan
display vlan all
acl name lc
interface Vlan-interface 1
ip address 10.11.113.14 24
quit
quit
# Display the first 5 commands in the history command buffer.
<Quidway>display history-command 5
system-view
user-interface vty 0
user-interface vty 0 4
history-command max-size 100
quit
# Display all the buffered history commands that match the specified regular
expression.
<Quidway>display history-command | begin ip
ip address 10.11.113.14 24
quit
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-7
quit
display history-command
# Display all the buffered history commands that do not match the specified regular
expression.
<Quidway>display history-command | exclude ip
system-view
user-interface vty 0
user-interface vty 0 4
history-command max-size 100
quit
display vlan
display vlan all
acl name lc
interface Vlan-interface 1
quit
quit
display history-command
display history-command 5
display history-command | include 10\.11\.113\.14
display history-command 5
1.1.6 display user-interface
Syntax
display user-interface [ type number | number ] [ summary ]
View
Any view
Parameter
type: Specifies the type of a user interface.
number: Specifies the number of a user interface.
Summary: Displays the summary of a user interface.
Description
Use the display user-interface command to view the relational information of the user
interface. This command without the summary parameter displays user interface type,
absolute/relative index, transmission speed, priority, authentication methods, and
physical location. This command with the summary parameter displays one user
interface in use totally and user interface name etc.
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-8
Example
# Display the relational information of user interface 0.
<Quidway> display user-interface 0
Idx Type Tx/Rx Modem Privi Auth Int
+ 0 CON 0 9600 - 3 N -
+ : Current user-interface is active.
F : Current user-interface is active and work in async mode.
Idx : Absolute index of user-interface.
Type : Type and relative index of user-interface.
Privi: The privilege of user-interface.
Auth : The authentication mode of user-interface.
Int : The physical location of UIs.
A: Authenticate use AAA.
N: Current UI need not authentication.
P: Authenticate use current UI's password.
Table 1-1 Description on the fields of the display user-interface command
Field Description
+ Current user interface is in use
F Current user interface is in use and work in asynchronous mode
Idx Absolute index of user interface
Type Type and relative index of user interface
Tx/Rx User interface speed
Modem Modem operation mode
Privi
Which levels of commands can be used after logging in from the user
interface
Auth User interface authentication method
Int The physical location of user interfaces
# Display the summary information of user interface 0.
<Quidway> display user-interface 0 summary
0: U
1 character mode users. (U)
1 total UIs in use.
UI's name: con0
Command Manual – Getting Started
Quidway S8500 Series Routing Switches Chapter 1
Commands Used to Log in to Switch
Huawei Technologies Proprietary
1-9
Table 1-2 Description on the fields of the display the user-interface summary
command
Field Description
0: U User interface type
1 character mode users. One type user interface
1 total UIs in use. One user interface in use totally
UI's name User interface name
1.1.7 display users
Syntax
display users [ all ]
View
Any view
Parameter
all: Displays the information of all user interfaces.
Description
Use the display users command to view the information of the user interface.
Example
# Display the information of the current user interface.
<Quidway> display users
UI Delay Type Ipaddress Username
+ 0 CON 0 00:00:00
Table 1-3 Description on the fields of the display users command
Field Description
+ Current user interface is in use and work in asynchronous mode.
UI
Number of the first list is the absolute number of user interface.
Number of the second list is the relative number of user interface.
Delay Indicates the interval from the latest input till now in seconds.
Type User type
IPaddress
Displays initial connection location, namely the host IP address of
the incoming connection.
/