Sixnet EL Series Management User manual

  • Hello! I am an AI chatbot trained to assist you with the Sixnet EL Series Management User manual. I’ve already reviewed the document and can help you find the information you need or explain it in simple terms. Just ask your questions, and providing more details will help me assist you more effectively!
1
www.sixnet.com
EL Series
Industrial Ethernet
Managed Switch
Management Guide
Version 1.3.5
This page intentionally left blank.
v
About This Guide
Purpose
This guide gives specific information on how to operate and use the management
functions of the switch.
Audience
The guide is intended for use by network administrators who are responsible for operating
and maintaining network equipment; consequently, it assumes a basic working
knowledge of general switch functions, the Internet Protocol (IP), and Simple Network
Management Protocol (SNMP).
Conventions
The following conventions are used throughout this guide to show information:
Note: Emphasizes important information or calls your attention to related features or
instructions.
Caution: Alerts you to a potential hazard that could cause loss of data, or damage the
system or equipment.
Warning: Alerts you to a potential hazard that could cause personal injury.
Related Publications
The following publication details the hardware features of the switch, including the
physical and performance-related characteristics, and how to install the switch:
The Installation Guide
Also, as part of the switch’s software, there is an online web-based help that describes all
management related features.
Revision History
1.3.5 Release to include EL212
1.3.4.0 First Release
i
Contents
Chapter 1: Introduction 1-1
Key Features 1-1
Description of Software Features 1-2
System Defaults 1-6
Chapter 2: Initial Configuration 2-1
Connecting to the Switch 2-1
Configuration Options 2-1
Required Connections 2-2
Remote Connections 2-3
Basic Configuration 2-3
Console Connection 2-3
Setting Passwords 2-4
Setting an IP Address 2-4
Manual Configuration 2-4
Dynamic Configuration 2-5
Downloading a Configuration File Referenced by a DHCP Server 2-6
Enabling SNMP Management Access 2-8
Community Strings (for SNMP version 1 and 2c clients) 2-9
Trap Receivers 2-9
Configuring Access for SNMP Version 3 Clients 2-10
Managing System Files 2-10
Saving Configuration Settings 2-11
Chapter 3: Configuring the Switch 3-1
Using the Web Interface 3-1
Navigating the Web Browser Interface 3-2
Home Page 3-2
Configuration Options 3-3
Panel Display 3-3
Main Menu 3-4
Basic Configuration 3-13
Displaying System Information 3-13
Displaying Switch Hardware/Software Versions 3-15
Displaying Bridge Extension Capabilities 3-16
Setting the Switch’s IP Address 3-17
Manual Configuration 3-18
Using DHCP/BOOTP 3-19
Enabling Jumbo Frames 3-20
Managing Firmware 3-21
Contents
ii
Automatic Operation Code Upgrade 3-22
Downloading System Software from a Server 3-26
Saving or Restoring Configuration Settings 3-27
Downloading Configuration Settings from a Server 3-29
Uploading and Downloading Files Using HTTP 3-30
Console Port Settings 3-32
Telnet Settings 3-34
Configuring Event Logging 3-36
System Log Configuration 3-36
Remote Log Configuration 3-37
Displaying Log Messages 3-39
Sending Simple Mail Transfer Protocol Alerts 3-39
Resetting the System 3-41
Setting the System Clock 3-42
Setting the Time Manually 3-43
Configuring SNTP 3-43
Configuring NTP 3-44
Setting the Time Zone 3-46
Configuring Summer Time 3-47
Simple Network Management Protocol 3-50
Enabling the SNMP Agent 3-51
Setting Community Access Strings 3-52
Specifying Trap Managers and Trap Types 3-53
Configuring SNMPv3 Management Access 3-56
Setting the Local Engine ID 3-56
Specifying a Remote Engine ID 3-57
Configuring SNMPv3 Users 3-58
Configuring Remote SNMPv3 Users 3-60
Configuring SNMPv3 Groups 3-62
Setting SNMPv3 Views 3-65
Sampling Traffic Flows 3-66
Configuring sFlow Global Parameters 3-67
Configuring sFlow Port Parameters 3-69
User Authentication 3-71
Configuring User Accounts 3-71
Configuring Local/Remote Logon Authentication 3-73
Configuring Encryption Keys 3-77
AAA Authorization and Accounting 3-78
Configuring AAA RADIUS Group Settings 3-79
Configuring AAA TACACS+ Group Settings 3-79
Configuring AAA Accounting 3-80
AAA Accounting Update 3-82
AAA Accounting 802.1X Port Settings 3-83
AAA Accounting Exec Command Privileges 3-84
AAA Accounting Exec Settings 3-85
Contents
iii
AAA Accounting Summary 3-85
Authorization Settings 3-87
Authorization EXEC Settings 3-88
Authorization Summary 3-89
Configuring HTTPS 3-90
Replacing the Default Secure-site Certificate 3-91
Configuring the Secure Shell 3-93
Generating the Host Key Pair 3-95
Importing User Public Keys 3-97
Configuring the SSH Server 3-100
Configuring 802.1X Port Authentication 3-101
Displaying 802.1X Global Settings 3-102
Configuring 802.1X Global Settings 3-103
Configuring Port Settings for 802.1X 3-104
Displaying 802.1X Statistics 3-108
Filtering IP Addresses for Management Access 3-110
General Security Measures 3-112
Configuring Port Security 3-113
Web Authentication 3-114
Configuring Web Authentication 3-115
Configuring Web Authentication for Ports 3-116
Displaying Web Authentication Port Information 3-117
Re-authenticating Web Authenticated Ports 3-117
Network Access (MAC Address Authentication) 3-118
Configuring the MAC Authentication Reauthentication Time 3-120
Configuring MAC Authentication for Ports 3-121
Configuring Port Link Detection 3-123
Displaying Secure MAC Address Information 3-124
MAC Filter Configuration 3-125
Access Control Lists 3-127
Setting the ACL Name and Type 3-128
Configuring a Standard IPv4 ACL 3-129
Configuring an Extended IPv4 ACL 3-130
Configuring a Standard IPv6 ACL 3-132
Configuring an Extended IPv6 ACL 3-133
Configuring a MAC ACL 3-134
Configuring an ARP ACL 3-136
Binding a Port to an Access Control List 3-138
ARP Inspection 3-139
Configuring ARP Inspection 3-139
Displaying ARP Inspection Port Information 3-144
DHCP Snooping 3-146
DHCP Snooping Configuration 3-147
DHCP Snooping VLAN Configuration 3-148
DHCP Snooping Information Option Configuration 3-149
Contents
iv
Configuring Ports for DHCP Snooping 3-150
Displaying DHCP Snooping Binding Information 3-152
IP Source Guard 3-153
Configuring Ports for IP Source Guard 3-153
Configuring Static Binding for IP Source Guard 3-155
Displaying Information for Dynamic IP Source Guard Bindings 3-157
Port Configuration 3-158
Displaying Connection Status 3-158
Configuring Interface Connections 3-160
Creating Trunk Groups 3-163
Statically Configuring a Trunk 3-164
Enabling LACP on Selected Ports 3-165
Configuring Parameters for LACP Group Members 3-167
Configuring Parameters for LACP Groups 3-169
Displaying LACP Port Counters 3-170
Displaying LACP Settings and Status for the Local Side 3-171
Displaying LACP Settings and Status for the Remote Side 3-173
Setting Broadcast Storm Thresholds 3-175
Setting Multicast Storm Thresholds 3-177
Setting Unknown Unicast Storm Thresholds 3-178
Configuring Port Mirroring 3-180
Configuring Rate Limits 3-181
Rate Limit Configuration 3-181
Showing Port Statistics 3-183
Address Table Settings 3-188
Setting Static Addresses 3-188
Displaying the Address Table 3-189
Changing the Aging Time 3-190
Spanning Tree Algorithm Configuration 3-191
Configuring Port and Trunk Loopback Detection 3-193
Displaying Global Settings for STA 3-194
Configuring Global Settings for STA 3-197
Displaying Interface Settings for STA 3-201
Configuring Interface Settings for STA 3-204
Spanning Tree Edge Port Configuration 3-207
Configuring Multiple Spanning Trees 3-209
Displaying Interface Settings for MSTP 3-212
Configuring Interface Settings for MSTP 3-214
VLAN Configuration 3-215
IEEE 802.1Q VLANs 3-215
Enabling or Disabling GVRP (Global Setting) 3-218
Displaying Basic VLAN Information 3-219
Displaying Current VLANs 3-220
Creating VLANs 3-221
Adding Static Members to VLANs (VLAN Index) 3-223
Contents
v
Adding Static Members to VLANs (Port Index) 3-225
Configuring VLAN Behavior for Interfaces 3-226
Configuring IEEE 802.1Q Tunneling 3-228
Enabling QinQ Tunneling on the Switch 3-232
Adding an Interface to a QinQ Tunnel 3-233
Traffic Segmentation 3-235
Configuring Global Settings for Traffic Segmentation 3-235
Configuring Traffic Segmentation Sessions 3-236
Private VLANs 3-237
Displaying Current Private VLANs 3-237
Configuring Private VLANs 3-238
Associating VLANs 3-239
Displaying Private VLAN Interface Information 3-240
Configuring Private VLAN Interfaces 3-241
Protocol VLANs 3-242
Configuring Protocol VLAN Groups 3-243
Mapping Protocols to VLANs 3-244
Configuring VLAN Mirroring 3-245
Configuring IP Subnet VLANs 3-246
Configuring MAC-based VLANs 3-247
OAM Configuration 3-248
Enabling OAM on Local Ports 3-248
Reporting of Errored Frame Link Events 3-251
Displaying Statistics for OAM Messages 3-253
Displaying the OAM Event Log 3-254
Displaying the Status of Remote Interfaces 3-255
Configuring Remote Device VLANs 3-257
Resetting a Remote Device 3-258
Configuring General Settings on a Remote Port 3-258
Displaying Statistics for a Remote Port 3-260
Configuring a Remote Loopback Test 3-261
Displaying the Results of Remote Loopback Testing 3-264
Link Layer Discovery Protocol 3-265
Setting LLDP Timing Attributes 3-265
Configuring LLDP Interface Attributes 3-267
Displaying LLDP Local Device Information 3-270
Displaying LLDP Remote Port Information 3-273
Displaying LLDP Remote Information Details 3-274
Displaying Device Statistics 3-276
Displaying Detailed Device Statistics 3-277
Class of Service Configuration 3-279
Layer 2 Queue Settings 3-279
Setting the Default Priority for Interfaces 3-279
Mapping CoS Values to Egress Queues 3-281
Selecting the Queue Mode 3-283
Contents
vi
Displaying the Service Weight for Traffic Classes 3-284
Layer 3/4 Priority Settings 3-285
Mapping Layer 3/4 Priorities to CoS Values 3-285
Enabling IP DSCP Priority 3-285
Mapping DSCP Priority 3-286
Quality of Service 3-288
Configuring Quality of Service Parameters 3-288
Configuring a Class Map 3-289
Creating QoS Policies 3-291
Attaching a Policy Map to Ingress Queues 3-294
VoIP Traffic Configuration 3-295
Configuring VoIP Traffic 3-295
Configuring VoIP Traffic Ports 3-296
Configuring Telephony OUI 3-298
Multicast Filtering 3-300
Layer 2 IGMP (Snooping and Query) 3-301
Configuring IGMP Snooping and Query Parameters 3-302
Enabling IGMP Immediate Leave 3-304
Displaying Interfaces Attached to a Multicast Router 3-306
Specifying Static Interfaces for a Multicast Router 3-307
Displaying Port Members of Multicast Services 3-308
Assigning Ports to Multicast Services 3-309
IGMP Filtering and Throttling 3-310
Enabling IGMP Filtering and Throttling 3-310
Configuring IGMP Filter Profiles 3-311
Configuring IGMP Filtering and Throttling for Interfaces 3-313
Multicast VLAN Registration 3-315
Configuring Global MVR Settings 3-316
Displaying MVR Interface Status 3-318
Displaying Port Members of Multicast Groups 3-319
Configuring MVR Interface Status 3-320
Assigning Static Multicast Groups to Interfaces 3-322
Configuring MVR Receiver VLAN and Group Addresses 3-323
Displaying MVR Receiver Groups 3-324
Configuring Static MVR Receiver Group Members 3-325
Domain Name Service 3-326
Configuring General DNS Service Parameters 3-326
Configuring Static DNS Host to Address Entries 3-328
Displaying the DNS Cache 3-330
Switch Clustering 3-331
Configuring General Settings for Clusters 3-331
Cluster Member Configuration 3-333
Displaying Information on Cluster Members 3-334
Cluster Candidate Information 3-335
Contents
vii
UPnP 3-336
UPnP Configuration 3-337
Chapter 4: Command Line Interface 4-1
Using the Command Line Interface 4-1
Accessing the CLI 4-1
Console Connection 4-1
Telnet Connection 4-2
Entering Commands 4-3
Keywords and Arguments 4-3
Minimum Abbreviation 4-3
Command Completion 4-3
Getting Help on Commands 4-3
Showing Commands 4-4
Partial Keyword Lookup 4-5
Negating the Effect of Commands 4-5
Using Command History 4-5
Understanding Command Modes 4-6
Exec Commands 4-6
Configuration Commands 4-7
Command Line Processing 4-9
Command Groups 4-10
General Commands 4-11
enable 4-12
disable 4-12
configure 4-13
show history 4-13
reload (Privileged Exec) 4-14
reload (Global Configuration) 4-14
show reload 4-16
prompt 4-16
end 4-16
exit 4-17
quit 4-17
System Management Commands 4-18
Device Designation Commands 4-18
hostname 4-18
Banner Information Commands 4-19
banner configure 4-20
banner configure company 4-21
banner configure dc-power-info 4-22
banner configure department 4-22
banner configure equipment-info 4-23
banner configure equipment-location 4-24
RTR
3-338
Contents
viii
banner configure ip-lan 4-24
banner configure lp-number 4-25
banner configure manager-info 4-26
banner configure mux 4-26
banner configure note 4-27
show banner 4-28
System Status Commands 4-29
show startup-config 4-29
show running-config 4-31
show system 4-33
show users 4-33
show version 4-34
Frame Size Commands 4-35
jumbo frame 4-35
File Management Commands 4-36
copy 4-37
delete 4-40
dir 4-40
whichboot 4-41
boot system 4-42
upgrade opcode auto 4-43
upgrade opcode path 4-44
Line Commands 4-45
line 4-46
login 4-46
password 4-47
timeout login response 4-48
exec-timeout 4-49
password-thresh 4-50
silent-time 4-50
databits 4-51
parity 4-52
speed 4-52
stopbits 4-53
terminal length 4-53
terminal width 4-54
terminal escape-character 4-54
terminal terminal-type 4-55
terminal history 4-55
disconnect 4-56
show line 4-56
Event Logging Commands 4-58
logging on 4-58
logging history 4-59
logging host 4-60
Contents
ix
logging facility 4-60
logging trap 4-61
clear log 4-61
show logging 4-62
show log 4-63
SMTP Alert Commands 4-64
logging sendmail host 4-64
logging sendmail level 4-65
logging sendmail source-email 4-65
logging sendmail destination-email 4-66
logging sendmail 4-66
show logging sendmail 4-66
Time Commands 4-68
sntp client 4-69
sntp server 4-70
sntp poll 4-70
show sntp 4-71
ntp client 4-71
ntp server 4-72
ntp authenticate 4-73
ntp authentication-key 4-74
show ntp 4-75
clock timezone 4-75
clock timezone-predefined 4-76
clock summer-time (date) 4-77
clock summer-time (predefined) 4-78
clock summer-time (recurring) 4-79
calendar set 4-80
show calendar 4-81
Switch Cluster Commands 4-81
cluster 4-82
cluster commander 4-82
cluster ip-pool 4-83
cluster member 4-84
rcommand 4-84
show cluster 4-85
show cluster members 4-85
show cluster candidates 4-85
UPnP Commands 4-86
upnp device 4-86
upnp device ttl 4-87
upnp device advertise duration 4-87
show upnp 4-88
SNMP Commands 4-88
snmp-server 4-89
Contents
x
show snmp 4-90
snmp-server community 4-91
snmp-server contact 4-91
snmp-server location 4-92
snmp-server host 4-93
snmp-server enable traps 4-95
snmp-server engine-id 4-96
show snmp engine-id 4-97
snmp-server view 4-97
show snmp view 4-98
snmp-server group 4-99
show snmp group 4-100
snmp-server user 4-101
show snmp user 4-102
Flow Sampling Commands 4-103
sflow 4-104
sflow source 4-104
sflow sample 4-105
sflow polling-interval 4-105
sflow owner 4-106
sflow timeout 4-106
sflow destination 4-107
sflow max-header-size 4-107
sflow max-datagram-size 4-108
show sflow 4-108
Authentication Commands 4-109
User Account and Privilege Level Commands 4-110
username 4-110
enable password 4-111
privilege 4-112
privilege rerun 4-113
show privilege 4-113
Authentication Sequence 4-114
authentication login 4-114
authentication enable 4-115
RADIUS Client 4-116
radius-server host 4-116
radius-server acct-port 4-117
radius-server auth-port 4-117
radius-server key 4-118
radius-server retransmit 4-118
radius-server timeout 4-119
show radius-server 4-120
TACACS+ Client 4-121
tacacs-server host 4-121
Contents
xi
tacacs-server port 4-122
tacacs-server key 4-122
tacacs-server retransmit 4-123
tacacs-server timeout 4-123
show tacacs-server 4-124
AAA Commands 4-125
aaa group server 4-125
server 4-126
aaa accounting dot1x 4-127
aaa accounting exec 4-128
aaa accounting commands 4-129
aaa accounting update 4-130
accounting dot1x 4-130
accounting exec 4-131
accounting commands 4-131
aaa authorization exec 4-132
authorization exec 4-133
show accounting 4-133
Web Server Commands 4-134
ip http port 4-134
ip http server 4-135
ip http secure-server 4-135
ip http secure-port 4-136
Telnet Server Commands 4-137
ip telnet server 4-137
Secure Shell Commands 4-138
ip ssh server 4-140
ip ssh timeout 4-141
ip ssh authentication-retries 4-141
ip ssh server-key size 4-142
delete public-key 4-142
ip ssh crypto host-key generate 4-143
ip ssh crypto zeroize 4-143
ip ssh save host-key 4-144
show ip ssh 4-144
show ssh 4-145
show public-key 4-146
802.1X Port Authentication 4-147
dot1x system-auth-control 4-147
dot1x default 4-148
dot1x max-req 4-148
dot1x port-control 4-148
dot1x operation-mode 4-149
dot1x re-authenticate 4-150
dot1x re-authentication 4-151
Contents
xii
dot1x timeout quiet-period 4-151
dot1x timeout re-authperiod 4-152
dot1x timeout tx-period 4-152
dot1x timeout supp-timeout 4-153
dot1x intrusion-action 4-153
show dot1x 4-154
Management IP Filter Commands 4-157
management 4-157
show management 4-158
General Security Measures 4-159
Port Security Commands 4-160
port security 4-160
Network Access (MAC Address Authentication) 4-162
network-access aging 4-163
network-access mac-filter 4-163
network-access port-mac-filter 4-164
network-access max-mac-count 4-165
network-access mode 4-165
mac-authentication reauth-time 4-166
mac-authentication intrusion-action 4-167
mac-authentication max-mac-count 4-167
network-access dynamic-vlan 4-168
network-access guest-vlan 4-168
network-access dynamic-qos 4-169
network-access link-detection 4-170
network-access link-detection link-down 4-170
network-access link-detection link-up 4-171
network-access link-detection link-up-down 4-171
clear network-access 4-172
show network-access 4-172
show network-access mac-address-table 4-173
show network-access mac-filter 4-174
Web Authentication 4-175
web-auth login-attempts 4-175
web-auth quiet-period 4-176
web-auth session-timeout 4-176
web-auth system-auth-control 4-177
web-auth 4-177
web-auth re-authenticate (Port) 4-178
web-auth re-authenticate (IP) 4-178
show web-auth 4-179
show web-auth interface 4-179
show web-auth summary 4-179
DHCP Snooping Commands 4-180
ip dhcp snooping 4-181
Contents
xiii
ip dhcp snooping vlan 4-182
ip dhcp snooping trust 4-183
ip dhcp snooping verify mac-address 4-184
ip dhcp snooping information option 4-185
ip dhcp snooping information policy 4-186
ip dhcp snooping database flash 4-186
clear ip dhcp snooping database flash 4-187
show ip dhcp snooping 4-187
show ip dhcp snooping binding 4-187
IP Source Guard Commands 4-188
ip source-guard 4-188
ip source-guard binding 4-190
show ip source-guard 4-191
show ip source-guard binding 4-191
ARP Inspection Commands 4-192
ip arp inspection 4-192
ip arp inspection vlan 4-193
ip arp inspection filter 4-194
ip arp inspection validate 4-195
ip arp inspection log-buffer logs 4-196
ip arp inspection trust 4-197
ip arp inspection limit 4-197
show ip arp inspection configuration 4-198
show ip arp inspection interface 4-198
show ip arp inspection vlan 4-199
show ip arp inspection log 4-199
show ip arp inspection statistics 4-200
Access Control List Commands 4-200
IPv4 ACLs 4-201
access-list rule-mode 4-201
access-list ip 4-202
permit, deny (Standard IPv4 ACL) 4-203
permit, deny (Extended IPv4 ACL) 4-204
show ip access-list 4-206
ip access-group 4-206
show ip access-group 4-207
IPv6 ACLs 4-207
access-list ipv6 4-208
permit, deny (Standard IPv6 ACL) 4-209
permit, deny (Extended IPv6 ACL) 4-210
show ipv6 access-list 4-211
ipv6 access-group 4-211
show ipv6 access-group 4-212
ARP ACLs 4-212
access-list arp 4-213
Contents
xiv
permit, deny (ARP ACL) 4-214
show arp access-list 4-215
MAC ACLs 4-216
access-list mac 4-216
permit, deny (MAC ACL) 4-217
show mac access-list 4-218
mac access-group 4-219
show mac access-group 4-219
ACL Information 4-220
show access-list 4-220
show access-group 4-220
Interface Commands 4-221
interface 4-222
description 4-222
speed-duplex 4-223
negotiation 4-224
capabilities 4-225
flowcontrol 4-226
media-type 4-227
giga-phy-mode 4-227
shutdown 4-228
switchport packet-rate 4-229
clear counters 4-230
show interfaces brief 4-231
show interfaces status 4-231
show interfaces counters 4-232
show interfaces switchport 4-233
Automatic Traffic Control Commands 4-235
auto-traffic-control apply-timer 4-238
auto-traffic-control release-timer 4-239
auto-traffic-control 4-240
auto-traffic-control alarm-fire-threshold 4-240
auto-traffic-control alarm-clear-threshold 4-241
auto-traffic-control action 4-242
auto-traffic-control control-release 4-243
auto-traffic-control auto-control-release 4-244
snmp-server enable port-traps atc broadcast-alarm-fire 4-244
snmp-server enable port-traps atc multicast-alarm-fire 4-245
snmp-server enable port-traps atc broadcast-alarm-clear 4-245
snmp-server enable port-traps atc multicast-alarm-clear 4-246
snmp-server enable port-traps atc broadcast-control-apply 4-246
snmp-server enable port-traps atc multicast-control-apply 4-247
snmp-server enable port-traps atc broadcast-control-release 4-247
snmp-server enable port-traps atc multicast-control-release 4-248
show auto-traffic-control 4-248
Contents
xv
show auto-traffic-control interface 4-249
Link Aggregation Commands 4-250
channel-group 4-251
lacp 4-252
lacp system-priority 4-253
lacp admin-key (Ethernet Interface) 4-254
lacp admin-key (Port Channel) 4-255
lacp port-priority 4-256
lacp active/passive 4-257
show lacp 4-257
Mirror Port Commands 4-262
port monitor 4-262
show port monitor 4-263
Rate Limit Commands 4-265
rate-limit 4-265
Address Table Commands 4-266
mac-address-table static 4-266
clear mac-address-table dynamic 4-267
show mac-address-table 4-268
mac-address-table aging-time 4-269
show mac-address-table aging-time 4-269
Spanning Tree Commands 4-270
spanning-tree 4-271
spanning-tree mode 4-272
spanning-tree forward-time 4-273
spanning-tree hello-time 4-273
spanning-tree max-age 4-274
spanning-tree priority 4-275
spanning-tree system-bpdu-flooding 4-275
spanning-tree pathcost method 4-276
spanning-tree transmission-limit 4-277
spanning-tree mst-configuration 4-277
mst vlan 4-278
mst priority 4-279
name 4-279
revision 4-280
max-hops 4-281
spanning-tree spanning-disabled 4-281
spanning-tree cost 4-282
spanning-tree port-priority 4-283
spanning-tree edge-port 4-284
spanning-tree portfast 4-285
spanning-tree bpdu-filter 4-286
spanning-tree bpdu-guard 4-287
spanning-tree port-bpdu-flooding 4-287
Contents
xvi
spanning-tree root-guard 4-288
spanning-tree link-type 4-289
spanning-tree loopback-detection 4-289
spanning-tree loopback-detection release-mode 4-290
spanning-tree loopback-detection trap 4-291
spanning-tree mst cost 4-291
spanning-tree mst port-priority 4-292
spanning-tree protocol-migration 4-293
show spanning-tree 4-294
show spanning-tree mst configuration 4-296
VLAN Commands 4-296
GVRP and Bridge Extension Commands 4-297
bridge-ext gvrp 4-297
show bridge-ext 4-298
switchport gvrp 4-298
show gvrp configuration 4-299
garp timer 4-299
show garp timer 4-300
Editing VLAN Groups 4-301
vlan database 4-301
vlan 4-302
Configuring VLAN Interfaces 4-303
interface vlan 4-303
switchport mode 4-304
switchport acceptable-frame-types 4-305
switchport ingress-filtering 4-305
switchport native vlan 4-306
switchport allowed vlan 4-307
switchport forbidden vlan 4-308
vlan-trunking 4-308
Displaying VLAN Information 4-310
show vlan 4-310
Configuring IEEE 802.1Q Tunneling 4-311
dot1q-tunnel system-tunnel-control 4-312
switchport dot1q-tunnel mode 4-313
switchport dot1q-tunnel tpid 4-314
show dot1q-tunnel 4-315
Configuring Port-based Traffic Segmentation 4-315
pvlan 4-316
pvlan uplink/downlink 4-317
pvlan session 4-317
pvlan up-to-up 4-318
show pvlan 4-318
Configuring Private VLANs 4-319
private-vlan 4-320
Contents
xvii
private vlan association 4-321
switchport mode private-vlan 4-322
switchport private-vlan host-association 4-322
switchport private-vlan mapping 4-323
show vlan private-vlan 4-323
Configuring Protocol-based VLANs 4-324
protocol-vlan protocol-group (Configuring Groups) 4-325
protocol-vlan protocol-group (Configuring VLANs) 4-325
show protocol-vlan protocol-group 4-326
show protocol-vlan protocol-group-vid 4-327
Configuring IP Subnet VLANs 4-327
subnet-vlan 4-328
show subnet-vlan 4-328
Configuring MAC Based VLANs 4-329
mac-vlan 4-329
show mac-vlan 4-330
Configuring Voice VLANs 4-331
voice vlan 4-331
voice vlan aging 4-332
voice vlan mac-address 4-333
switchport voice vlan 4-334
switchport voice vlan rule 4-334
switchport voice vlan security 4-335
switchport voice vlan priority 4-336
show voice vlan 4-336
OAM Commands 4-337
efm oam 4-338
efm oam mode 4-339
efm oam critical-link-event 4-340
efm oam link-monitor frame 4-340
efm oam link-monitor frame threshold 4-341
efm oam link-monitor frame window 4-341
efm oam remote factory-default 4-342
efm oam remote reset 4-342
efm oam remote vlan 4-343
efm oam remote-port default-priority 4-343
efm oam remote-port default-vlan 4-344
efm oam remote-port igmp-snooping 4-345
efm oam remote-port shudown 4-345
efm oam remote-loopback 4-346
efm oam remote-loopback test 4-347
clear efm oam counters 4-348
show efm oam counters interface 4-348
show efm oam event-log interface 4-349
show efm oam remote vlan interface 4-350
/