PowerSwitch S3048-ON

Dell PowerSwitch S3048-ON User guide

  • Hello! I am an AI chatbot trained to assist you with the Dell PowerSwitch S3048-ON User guide. I’ve already reviewed the document and can help you find the information you need or explain it in simple terms. Just ask your questions, and providing more details will help me assist you more effectively!
Dell Configuration Guide for the S3048–ON
System
9.11(0.0)
Notes, cautions, and warnings
NOTE: A NOTE indicates important information that helps you make better use of your product.
CAUTION: A CAUTION indicates either potential damage to hardware or loss of data and tells you how to avoid the problem.
WARNING: A WARNING indicates a potential for property damage, personal injury, or death.
Copyright © 2017 Dell Inc. or its subsidiaries. All rights reserved. Dell, EMC, and other trademarks are trademarks of Dell Inc. or its subsidiaries. Other
trademarks may be trademarks of their respective owners.
2017 - 01
Rev. A00
Contents
1 About this Guide...........................................................................................................................................33
Audience............................................................................................................................................................................33
Conventions......................................................................................................................................................................33
Related Documents......................................................................................................................................................... 33
2 Configuration Fundamentals........................................................................................................................34
Accessing the Command Line........................................................................................................................................34
CLI Modes.........................................................................................................................................................................34
Navigating CLI Modes...............................................................................................................................................36
The do Command............................................................................................................................................................ 39
Undoing Commands........................................................................................................................................................ 39
Obtaining Help..................................................................................................................................................................40
Entering and Editing Commands................................................................................................................................... 40
Command History.............................................................................................................................................................41
Filtering show Command Outputs..................................................................................................................................41
Example of the grep Keyword.................................................................................................................................. 41
Multiple Users in Configuration Mode...........................................................................................................................42
3 Getting Started........................................................................................................................................... 44
Console Access................................................................................................................................................................45
Serial Console.............................................................................................................................................................45
Accessing the CLI Interface and Running Scripts Using SSH................................................................................... 46
Entering CLI commands Using an SSH Connection..............................................................................................46
Executing Local CLI Scripts Using an SSH Connection........................................................................................46
Default Configuration...................................................................................................................................................... 47
Configuring a Host Name................................................................................................................................................47
Accessing the System Remotely................................................................................................................................... 47
Accessing the System Remotely............................................................................................................................. 47
Configure the Management Port IP Address.........................................................................................................48
Configure a Management Route............................................................................................................................. 48
Configuring a Username and Password..................................................................................................................48
Configuring the Enable Password................................................................................................................................. 49
Configuration File Management.....................................................................................................................................49
Copy Files to and from the System.........................................................................................................................49
Mounting an NFS File System................................................................................................................................. 50
Save the Running-Configuration............................................................................................................................. 52
Configure the Overload Bit for a Startup Scenario...............................................................................................52
Viewing Files...............................................................................................................................................................52
Compressing Configuration Files............................................................................................................................. 53
Managing the File System.............................................................................................................................................. 56
Enabling Software Features on Devices Using a Command Option.........................................................................56
View Command History.................................................................................................................................................. 57
Contents
3
Upgrading Dell Networking OS...................................................................................................................................... 57
Verify Software Images Before Installation.................................................................................................................. 57
Using HTTP for File Transfers....................................................................................................................................... 58
4 Management............................................................................................................................................... 60
Configuring Privilege Levels........................................................................................................................................... 60
Creating a Custom Privilege Level.......................................................................................................................... 60
Removing a Command from EXEC Mode...............................................................................................................61
Moving a Command from EXEC Privilege Mode to EXEC Mode........................................................................ 61
Allowing Access to CONFIGURATION Mode Commands.................................................................................... 61
Allowing Access to Different Modes........................................................................................................................61
Applying a Privilege Level to a Username...............................................................................................................63
Applying a Privilege Level to a Terminal Line......................................................................................................... 63
Configuring Logging........................................................................................................................................................ 63
Audit and Security Logs............................................................................................................................................64
Configuring Logging Format .................................................................................................................................. 65
Display the Logging Buffer and the Logging Configuration................................................................................. 66
Setting Up a Secure Connection to a Syslog Server............................................................................................ 66
Sending System Messages to a Syslog Server......................................................................................................68
Track Login Activity.........................................................................................................................................................68
Restrictions for Tracking Login Activity..................................................................................................................68
Configuring Login Activity Tracking........................................................................................................................ 68
Display Login Statistics............................................................................................................................................. 69
Limit Concurrent Login Sessions................................................................................................................................... 70
Restrictions for Limiting the Number of Concurrent Sessions............................................................................ 70
Configuring Concurrent Session Limit.................................................................................................................... 70
Enabling the System to Clear Existing Sessions.....................................................................................................71
Enabling Secured CLI Mode........................................................................................................................................... 72
Log Messages in the Internal Buffer............................................................................................................................. 72
Configuration Task List for System Log Management......................................................................................... 72
Disabling System Logging............................................................................................................................................... 72
Sending System Messages to a Syslog Server............................................................................................................73
Configuring a UNIX System as a Syslog Server.....................................................................................................73
Changing System Logging Settings.............................................................................................................................. 73
Display the Logging Buffer and the Logging Configuration....................................................................................... 74
Configuring a UNIX Logging Facility Level................................................................................................................... 75
Synchronizing Log Messages.........................................................................................................................................76
Enabling Timestamp on Syslog Messages....................................................................................................................76
File Transfer Services...................................................................................................................................................... 77
Configuration Task List for File Transfer Services.................................................................................................77
Enabling the FTP Server........................................................................................................................................... 77
Configuring FTP Server Parameters....................................................................................................................... 77
Configuring FTP Client Parameters.........................................................................................................................78
Terminal Lines...................................................................................................................................................................78
Denying and Permitting Access to a Terminal Line............................................................................................... 79
Configuring Login Authentication for Terminal Lines............................................................................................80
4
Contents
Setting Timeout for EXEC Privilege Mode....................................................................................................................81
Using Telnet to get to Another Network Device..........................................................................................................81
Lock CONFIGURATION Mode.......................................................................................................................................82
Viewing the Configuration Lock Status.................................................................................................................. 82
Reloading the system......................................................................................................................................................82
5 802.1X......................................................................................................................................................... 84
Port-Authentication Process..........................................................................................................................................86
EAP over RADIUS......................................................................................................................................................86
Configuring 802.1X...........................................................................................................................................................87
Related Configuration Tasks.....................................................................................................................................87
Important Points to Remember..................................................................................................................................... 87
Configuring dot1x Profile ................................................................................................................................................88
Configuring MAC addresses for a do1x Profile............................................................................................................ 88
Configuring the Static MAB and MAB Profile .............................................................................................................88
Configuring Critical VLAN ..............................................................................................................................................89
Enabling 802.1X.................................................................................................................................................................91
Configuring Request Identity Re-Transmissions..........................................................................................................92
Configuring a Quiet Period after a Failed Authentication.....................................................................................93
Forcibly Authorizing or Unauthorizing a Port...............................................................................................................94
Re-Authenticating a Port................................................................................................................................................94
Configuring Timeouts......................................................................................................................................................95
Configuring Dynamic VLAN Assignment with Port Authentication.......................................................................... 96
Guest and Authentication-Fail VLANs.......................................................................................................................... 97
Configuring a Guest VLAN....................................................................................................................................... 98
Configuring an Authentication-Fail VLAN...............................................................................................................98
6 Access Control List (ACL) VLAN Groups and Content Addressable Memory (CAM)................................. 100
Optimizing CAM Utilization During the Attachment of ACLs to VLANs................................................................ 100
Guidelines for Configuring ACL VLAN Groups............................................................................................................101
Configuring ACL VLAN Groups and Configuring FP Blocks for VLAN Parameters...............................................101
Configuring ACL VLAN Groups...............................................................................................................................101
Configuring FP Blocks for VLAN Parameters.......................................................................................................102
Viewing CAM Usage...................................................................................................................................................... 103
Allocating FP Blocks for VLAN Processes.................................................................................................................. 104
7 Access Control Lists (ACLs)...................................................................................................................... 106
IP Access Control Lists (ACLs).................................................................................................................................... 107
CAM Usage...............................................................................................................................................................108
Implementing ACLs on Dell Networking OS......................................................................................................... 108
Important Points to Remember.....................................................................................................................................110
Configuration Task List for Route Maps................................................................................................................110
Configuring Match Routes.......................................................................................................................................112
Configuring Set Conditions......................................................................................................................................113
Configure a Route Map for Route Redistribution................................................................................................. 114
Configure a Route Map for Route Tagging........................................................................................................... 115
Contents
5
Continue Clause........................................................................................................................................................ 115
IP Fragment Handling.....................................................................................................................................................116
IP Fragments ACL Examples................................................................................................................................... 116
Layer 4 ACL Rules Examples................................................................................................................................... 116
Configure a Standard IP ACL.........................................................................................................................................117
Configuring a Standard IP ACL Filter..................................................................................................................... 118
Configure an Extended IP ACL..................................................................................................................................... 119
Configuring Filters with a Sequence Number........................................................................................................119
Configuring Filters Without a Sequence Number................................................................................................ 120
Configure Layer 2 and Layer 3 ACLs............................................................................................................................121
Assign an IP ACL to an Interface..................................................................................................................................122
Applying an IP ACL.........................................................................................................................................................122
Counting ACL Hits....................................................................................................................................................123
Configure Ingress ACLs.................................................................................................................................................123
Configure Egress ACLs..................................................................................................................................................123
Applying Egress Layer 3 ACLs (Control-Plane)....................................................................................................124
IP Prefix Lists..................................................................................................................................................................125
Implementation Information....................................................................................................................................125
Configuration Task List for Prefix Lists.................................................................................................................125
ACL Resequencing.........................................................................................................................................................129
Resequencing an ACL or Prefix List...................................................................................................................... 129
Route Maps......................................................................................................................................................................131
Implementation Information.....................................................................................................................................131
Logging of ACL Processes.............................................................................................................................................131
Guidelines for Configuring ACL Logging............................................................................................................... 132
Configuring ACL Logging........................................................................................................................................ 132
Flow-Based Monitoring Support for ACLs..................................................................................................................133
Behavior of Flow-Based Monitoring...................................................................................................................... 133
Enabling Flow-Based Monitoring............................................................................................................................135
8 Bidirectional Forwarding Detection (BFD)..................................................................................................137
How BFD Works............................................................................................................................................................. 137
BFD Packet Format................................................................................................................................................. 138
BFD Sessions............................................................................................................................................................ 139
BFD Three-Way Handshake................................................................................................................................... 140
Session State Changes............................................................................................................................................142
Important Points to Remember....................................................................................................................................142
Configure BFD................................................................................................................................................................ 142
Configure BFD for Physical Ports.......................................................................................................................... 143
Configure BFD for Static Routes........................................................................................................................... 144
Configure BFD for OSPF.........................................................................................................................................147
Configure BFD for OSPFv3.................................................................................................................................... 150
Configure BFD for IS-IS........................................................................................................................................... 151
Configure BFD for BGP...........................................................................................................................................153
Configure BFD for VRRP........................................................................................................................................ 160
Configuring Protocol Liveness................................................................................................................................163
6
Contents
Troubleshooting BFD............................................................................................................................................... 163
9 Border Gateway Protocol IPv4 (BGPv4)....................................................................................................165
Autonomous Systems (AS).......................................................................................................................................... 165
Sessions and Peers.........................................................................................................................................................167
Establish a Session................................................................................................................................................... 167
Route Reflectors............................................................................................................................................................ 168
BGP Attributes............................................................................................................................................................... 169
Best Path Selection Criteria....................................................................................................................................170
Weight........................................................................................................................................................................ 171
Local Preference....................................................................................................................................................... 171
Multi-Exit Discriminators (MEDs)...........................................................................................................................172
Origin..........................................................................................................................................................................173
AS Path......................................................................................................................................................................174
Next Hop................................................................................................................................................................... 174
Multiprotocol BGP..........................................................................................................................................................174
Implement BGP with Dell Networking OS...................................................................................................................175
Additional Path (Add-Path) Support..................................................................................................................... 175
Advertise IGP Cost as MED for Redistributed Routes........................................................................................175
Ignore Router-ID in Best-Path Calculation............................................................................................................176
Four-Byte AS Numbers........................................................................................................................................... 176
AS4 Number Representation.................................................................................................................................. 176
AS Number Migration.............................................................................................................................................. 178
BGP4 Management Information Base (MIB)........................................................................................................179
Important Points to Remember..............................................................................................................................179
Configuration Information............................................................................................................................................. 180
BGP Configuration......................................................................................................................................................... 180
Enabling BGP.............................................................................................................................................................181
Configuring AS4 Number Representations...........................................................................................................184
Configuring Peer Groups.........................................................................................................................................186
Configuring BGP Fast Fall-Over.............................................................................................................................188
Configuring Passive Peering...................................................................................................................................190
Maintaining Existing AS Numbers During an AS Migration.................................................................................190
Allowing an AS Number to Appear in its Own AS Path........................................................................................191
Enabling Graceful Restart....................................................................................................................................... 192
Enabling Neighbor Graceful Restart...................................................................................................................... 193
Filtering on an AS-Path Attribute...........................................................................................................................193
Regular Expressions as Filters................................................................................................................................ 195
Redistributing Routes.............................................................................................................................................. 196
Enabling Additional Paths........................................................................................................................................ 197
Configuring IP Community Lists............................................................................................................................. 197
Configuring an IP Extended Community List........................................................................................................198
Filtering Routes with Community Lists..................................................................................................................199
Manipulating the COMMUNITY Attribute............................................................................................................200
Changing MED Attributes....................................................................................................................................... 201
Changing the LOCAL_PREFERENCE Attribute.................................................................................................. 201
Contents
7
Configuring the local System or a Different System to be the Next Hop for BGP-Learned Routes...........202
Changing the WEIGHT Attribute...........................................................................................................................203
Enabling Multipath...................................................................................................................................................203
Filtering BGP Routes...............................................................................................................................................203
Filtering BGP Routes Using Route Maps............................................................................................................. 205
Filtering BGP Routes Using AS-PATH Information............................................................................................ 205
Configuring BGP Route Reflectors.......................................................................................................................206
Aggregating Routes.................................................................................................................................................207
Configuring BGP Confederations.......................................................................................................................... 207
Enabling Route Flap Dampening............................................................................................................................208
Changing BGP Timers............................................................................................................................................. 210
Enabling BGP Neighbor Soft-Reconfiguration.....................................................................................................210
Enabling or disabling BGP neighbors...................................................................................................................... 211
Route Map Continue................................................................................................................................................213
Enabling MBGP Configurations....................................................................................................................................213
BGP Regular Expression Optimization.........................................................................................................................214
Debugging BGP.............................................................................................................................................................. 214
Storing Last and Bad PDUs.................................................................................................................................... 215
Capturing PDUs........................................................................................................................................................216
PDU Counters...........................................................................................................................................................217
Sample Configurations...................................................................................................................................................217
10 Content Addressable Memory (CAM)...................................................................................................... 224
CAM Allocation.............................................................................................................................................................. 224
Test CAM Usage........................................................................................................................................................... 226
View CAM-ACL Settings..............................................................................................................................................226
View CAM Usage...........................................................................................................................................................228
CAM Optimization......................................................................................................................................................... 228
Troubleshoot CAM Profiling.........................................................................................................................................228
QoS CAM Region Limitation.................................................................................................................................. 228
11 Control Plane Policing (CoPP)..................................................................................................................229
Configure Control Plane Policing.................................................................................................................................230
Configuring CoPP for Protocols.............................................................................................................................231
Configuring CoPP for CPU Queues...................................................................................................................... 233
CoPP for OSPFv3 Packets.................................................................................................................................... 234
Configuring CoPP for OSPFv3.............................................................................................................................. 237
Displaying CoPP Configuration ............................................................................................................................. 237
12 Dynamic Host Configuration Protocol (DHCP)........................................................................................ 240
DHCP Packet Format and Options.............................................................................................................................240
Assign an IP Address using DHCP...............................................................................................................................242
Implementation Information......................................................................................................................................... 243
Configure the System to be a DHCP Server............................................................................................................. 243
Configuring the Server for Automatic Address Allocation................................................................................. 244
Specifying a Default Gateway................................................................................................................................245
8
Contents
Configure a Method of Hostname Resolution..................................................................................................... 245
Using DNS for Address Resolution........................................................................................................................245
Using NetBIOS WINS for Address Resolution.....................................................................................................246
Creating Manual Binding Entries........................................................................................................................... 246
Debugging the DHCP Server.................................................................................................................................246
Using DHCP Clear Commands...............................................................................................................................247
Configure the System to be a Relay Agent................................................................................................................247
Configure the System to be a DHCP Client...............................................................................................................249
Configuring the DHCP Client System...................................................................................................................249
DHCP Client on a Management Interface............................................................................................................250
DHCP Client Operation with Other Features....................................................................................................... 251
Configure the System for User Port Stacking (Option 230)...................................................................................252
Configure Secure DHCP...............................................................................................................................................252
Option 82..................................................................................................................................................................252
DHCP Snooping.......................................................................................................................................................253
Drop DHCP Packets on Snooped VLANs Only................................................................................................... 256
Dynamic ARP Inspection.........................................................................................................................................257
Configuring Dynamic ARP Inspection................................................................................................................... 258
Source Address Validation............................................................................................................................................259
Enabling IP Source Address Validation................................................................................................................. 259
DHCP MAC Source Address Validation................................................................................................................260
Enabling IP+MAC Source Address Validation......................................................................................................260
Viewing the Number of SAV Dropped Packets....................................................................................................261
Clearing the Number of SAV Dropped Packets................................................................................................... 261
13 Equal Cost Multi-Path (ECMP)................................................................................................................262
ECMP for Flow-Based Affinity.................................................................................................................................... 262
Configuring the Hash Algorithm............................................................................................................................ 262
Enabling Deterministic ECMP Next Hop.............................................................................................................. 262
Configuring the Hash Algorithm Seed.................................................................................................................. 263
Link Bundle Monitoring................................................................................................................................................. 263
Managing ECMP Group Paths...............................................................................................................................264
Creating an ECMP Group Bundle..........................................................................................................................264
Modifying the ECMP Group Threshold................................................................................................................ 264
14 FIPS Cryptography.................................................................................................................................. 266
Configuration Tasks...................................................................................................................................................... 266
Preparing the System................................................................................................................................................... 266
Enabling FIPS Mode...................................................................................................................................................... 267
Generating Host-Keys...................................................................................................................................................267
Monitoring FIPS Mode Status......................................................................................................................................267
Disabling FIPS Mode..................................................................................................................................................... 268
15 Force10 Resilient Ring Protocol (FRRP).................................................................................................. 269
Protocol Overview.........................................................................................................................................................269
Ring Status............................................................................................................................................................... 270
Contents
9
Multiple FRRP Rings................................................................................................................................................270
Important FRRP Points............................................................................................................................................271
Important FRRP Concepts..................................................................................................................................... 272
Implementing FRRP.......................................................................................................................................................273
FRRP Configuration.......................................................................................................................................................273
Creating the FRRP Group.......................................................................................................................................273
Configuring the Control VLAN...............................................................................................................................274
Configuring and Adding the Member VLANs.......................................................................................................275
Setting the FRRP Timers........................................................................................................................................276
Clearing the FRRP Counters..................................................................................................................................276
Viewing the FRRP Configuration...........................................................................................................................276
Viewing the FRRP Information.............................................................................................................................. 276
Troubleshooting FRRP.................................................................................................................................................. 277
Configuration Checks..............................................................................................................................................277
Sample Configuration and Topology............................................................................................................................277
FRRP Support on VLT.................................................................................................................................................. 278
Example Scenario.....................................................................................................................................................279
Important Points to Remember.............................................................................................................................280
16 GARP VLAN Registration Protocol (GVRP)..............................................................................................281
Important Points to Remember....................................................................................................................................281
Configure GVRP............................................................................................................................................................ 282
Related Configuration Tasks.................................................................................................................................. 282
Enabling GVRP Globally................................................................................................................................................ 283
Enabling GVRP on a Layer 2 Interface....................................................................................................................... 283
Configure GVRP Registration...................................................................................................................................... 283
Configure a GARP Timer.............................................................................................................................................. 284
RPM Redundancy..........................................................................................................................................................284
17 High Availability (HA)............................................................................................................................... 286
Component Redundancy..............................................................................................................................................286
Automatic and Manual Stack Unit Failover..........................................................................................................286
Synchronization between Management and Standby Units..............................................................................287
Forcing a Stack Unit Failover................................................................................................................................. 287
Specifying an Auto-Failover Limit..........................................................................................................................288
Disabling Auto-Reboot............................................................................................................................................288
Manually Synchronizing Management and Standby Units.................................................................................288
Pre-Configuring a Stack Unit Slot...............................................................................................................................288
Removing a Provisioned Logical Stack Unit...............................................................................................................289
Hitless Behavior............................................................................................................................................................. 289
Graceful Restart............................................................................................................................................................ 289
Software Resiliency.......................................................................................................................................................290
Software Component Health Monitoring.............................................................................................................290
System Health Monitoring......................................................................................................................................290
Failure and Event Logging......................................................................................................................................290
Hot-Lock Behavior.........................................................................................................................................................291
10
Contents
18 Internet Group Management Protocol (IGMP).........................................................................................292
IGMP Implementation Information.............................................................................................................................. 292
IGMP Protocol Overview..............................................................................................................................................292
IGMP Version 2........................................................................................................................................................292
IGMP Version 3........................................................................................................................................................294
Configure IGMP............................................................................................................................................................. 297
Related Configuration Tasks.................................................................................................................................. 297
Viewing IGMP Enabled Interfaces...............................................................................................................................298
Selecting an IGMP Version...........................................................................................................................................298
Viewing IGMP Groups...................................................................................................................................................298
Adjusting Timers............................................................................................................................................................ 299
Adjusting Query and Response Timers.................................................................................................................299
Preventing a Host from Joining a Group....................................................................................................................300
Enabling IGMP Immediate-Leave................................................................................................................................ 303
IGMP Snooping..............................................................................................................................................................303
IGMP Snooping Implementation Information.......................................................................................................303
Configuring IGMP Snooping...................................................................................................................................303
Removing a Group-Port Association.....................................................................................................................304
Disabling Multicast Flooding...................................................................................................................................304
Specifying a Port as Connected to a Multicast Router......................................................................................305
Configuring the Switch as Querier........................................................................................................................305
Fast Convergence after MSTP Topology Changes..................................................................................................306
Egress Interface Selection (EIS) for HTTP and IGMP Applications....................................................................... 306
Protocol Separation................................................................................................................................................ 306
Enabling and Disabling Management Egress Interface Selection......................................................................307
Handling of Management Route Configuration...................................................................................................308
Handling of Switch-Initiated Traffic......................................................................................................................309
Handling of Switch-Destined Traffic.................................................................................................................... 309
Handling of Transit Traffic (Traffic Separation)...................................................................................................310
Mapping of Management Applications and Traffic Type....................................................................................310
Behavior of Various Applications for Switch-Initiated Traffic ............................................................................ 311
Behavior of Various Applications for Switch-Destined Traffic ..........................................................................312
Interworking of EIS With Various Applications..................................................................................................... 313
Designating a Multicast Router Interface....................................................................................................................314
19 Interfaces................................................................................................................................................. 315
Basic Interface Configuration....................................................................................................................................... 315
Advanced Interface Configuration...............................................................................................................................315
Interface Types...............................................................................................................................................................316
View Basic Interface Information................................................................................................................................. 316
Resetting an Interface to its Factory Default State.................................................................................................. 318
Enabling a Physical Interface........................................................................................................................................ 318
Enabling Energy Efficient Ethernet..............................................................................................................................319
View EEE Information....................................................................................................................................................319
Clear EEE Counters.......................................................................................................................................................324
Contents
11
Physical Interfaces.........................................................................................................................................................324
Configuration Task List for Physical Interfaces...................................................................................................324
Overview of Layer Modes...................................................................................................................................... 325
Configuring Layer 2 (Data Link) Mode................................................................................................................. 325
Configuring Layer 2 (Interface) Mode..................................................................................................................326
Configuring Layer 3 (Network) Mode.................................................................................................................. 326
Configuring Layer 3 (Interface) Mode..................................................................................................................326
Egress Interface Selection (EIS)..................................................................................................................................327
Important Points to Remember............................................................................................................................. 327
Configuring EIS........................................................................................................................................................ 327
Management Interfaces................................................................................................................................................328
Configuring Management Interfaces.................................................................................................................... 328
Configuring a Management Interface on an Ethernet Port............................................................................... 329
VLAN Interfaces............................................................................................................................................................ 330
Loopback Interfaces.......................................................................................................................................................331
Null Interfaces.................................................................................................................................................................331
Port Channel Interfaces................................................................................................................................................332
Port Channel Definition and Standards.................................................................................................................332
Port Channel Benefits.............................................................................................................................................332
Port Channel Implementation................................................................................................................................ 332
Interfaces in Port Channels....................................................................................................................................333
Configuration Tasks for Port Channel Interfaces................................................................................................333
Creating a Port Channel......................................................................................................................................... 333
Adding a Physical Interface to a Port Channel.................................................................................................... 334
Reassigning an Interface to a New Port Channel............................................................................................... 335
Configuring the Minimum Oper Up Links in a Port Channel.............................................................................. 336
Adding or Removing a Port Channel from a VLAN............................................................................................. 337
Assigning an IP Address to a Port Channel..........................................................................................................338
Deleting or Disabling a Port Channel.....................................................................................................................338
Load Balancing Through Port Channels............................................................................................................... 338
Changing the Hash Algorithm................................................................................................................................339
Bulk Configuration.........................................................................................................................................................340
Interface Range....................................................................................................................................................... 340
Bulk Configuration Examples................................................................................................................................. 340
Defining Interface Range Macros................................................................................................................................342
Define the Interface Range.................................................................................................................................... 342
Choosing an Interface-Range Macro....................................................................................................................342
Monitoring and Maintaining Interfaces....................................................................................................................... 342
Maintenance Using TDR.........................................................................................................................................343
Configuring wavelength for 10–Gigabit SFP+ optics............................................................................................... 344
Link Dampening..............................................................................................................................................................344
Important Points to Remember.............................................................................................................................345
Enabling Link Dampening........................................................................................................................................345
Link Bundle Monitoring................................................................................................................................................. 346
Using Ethernet Pause Frames for Flow Control........................................................................................................347
12
Contents
Enabling Pause Frames...........................................................................................................................................348
Configure the MTU Size on an Interface................................................................................................................... 348
Port-Pipes.......................................................................................................................................................................349
Auto-Negotiation on Ethernet Interfaces...................................................................................................................349
Setting the Speed of Ethernet Interfaces............................................................................................................349
Set Auto-Negotiation Options................................................................................................................................351
View Advanced Interface Information.........................................................................................................................351
Configuring the Interface Sampling Size..............................................................................................................352
Configuring the Traffic Sampling Size Globally..........................................................................................................353
Dynamic Counters.........................................................................................................................................................355
Clearing Interface Counters...................................................................................................................................355
20 Internet Protocol Security (IPSec)..........................................................................................................357
Configuring IPSec .........................................................................................................................................................357
21 IPv4 Routing............................................................................................................................................ 359
IP Addresses...................................................................................................................................................................360
Implementation Information................................................................................................................................... 360
Configuration Tasks for IP Addresses.........................................................................................................................360
Assigning IP Addresses to an Interface...................................................................................................................... 360
Configuring Static Routes.............................................................................................................................................361
Configure Static Routes for the Management Interface......................................................................................... 362
IPv4 Path MTU Discovery Overview.......................................................................................................................... 363
Using the Configured Source IP Address in ICMP Messages................................................................................. 363
Configuring the ICMP Source Interface...............................................................................................................363
Configuring the Duration to Establish a TCP Connection........................................................................................364
Enabling Directed Broadcast........................................................................................................................................364
Resolution of Host Names............................................................................................................................................364
Enabling Dynamic Resolution of Host Names............................................................................................................365
Specifying the Local System Domain and a List of Domains...................................................................................365
Configuring DNS with Traceroute...............................................................................................................................366
ARP................................................................................................................................................................................. 366
Configuration Tasks for ARP........................................................................................................................................367
Configuring Static ARP Entries....................................................................................................................................367
Enabling Proxy ARP.......................................................................................................................................................367
Clearing ARP Cache......................................................................................................................................................368
ARP Learning via Gratuitous ARP............................................................................................................................... 368
Enabling ARP Learning via Gratuitous ARP............................................................................................................... 368
ARP Learning via ARP Request...................................................................................................................................368
Configuring ARP Retries...............................................................................................................................................369
ICMP............................................................................................................................................................................... 370
Configuration Tasks for ICMP..................................................................................................................................... 370
Enabling ICMP Unreachable Messages...................................................................................................................... 370
UDP Helper.....................................................................................................................................................................370
Configure UDP Helper.............................................................................................................................................370
Important Points to Remember..............................................................................................................................371
Contents
13
Enabling UDP Helper......................................................................................................................................................371
Configuring a Broadcast Address.................................................................................................................................371
Configurations Using UDP Helper............................................................................................................................... 372
UDP Helper with Broadcast-All Addresses.................................................................................................................372
UDP Helper with Subnet Broadcast Addresses.........................................................................................................373
UDP Helper with Configured Broadcast Addresses..................................................................................................373
UDP Helper with No Configured Broadcast Addresses............................................................................................374
Troubleshooting UDP Helper........................................................................................................................................374
22 IPv6 Routing............................................................................................................................................375
Protocol Overview.........................................................................................................................................................375
Extended Address Space........................................................................................................................................376
Stateless Autoconfiguration...................................................................................................................................376
IPv6 Headers............................................................................................................................................................376
IPv6 Header Fields...................................................................................................................................................377
Extension Header Fields..........................................................................................................................................379
Addressing................................................................................................................................................................380
Implementing IPv6 with Dell Networking OS..............................................................................................................381
ICMPv6...........................................................................................................................................................................382
Path MTU Discovery.....................................................................................................................................................383
IPv6 Neighbor Discovery.............................................................................................................................................. 383
IPv6 Neighbor Discovery of MTU Packets.......................................................................................................... 384
Configuration Task List for IPv6 RDNSS....................................................................................................................384
Configuring the IPv6 Recursive DNS Server....................................................................................................... 384
Debugging IPv6 RDNSS Information Sent to the Host .....................................................................................385
Displaying IPv6 RDNSS Information..................................................................................................................... 386
Secure Shell (SSH) Over an IPv6 Transport............................................................................................................. 386
Configuration Tasks for IPv6........................................................................................................................................387
Adjusting Your CAM-Profile................................................................................................................................... 387
Assigning an IPv6 Address to an Interface...........................................................................................................388
Assigning a Static IPv6 Route................................................................................................................................388
Configuring Telnet with IPv6................................................................................................................................. 389
SNMP over IPv6......................................................................................................................................................389
Displaying IPv6 Information....................................................................................................................................389
Displaying an IPv6 Interface Information..............................................................................................................390
Showing IPv6 Routes..............................................................................................................................................390
Showing the Running-Configuration for an Interface.........................................................................................392
Clearing IPv6 Routes...............................................................................................................................................392
Configuring IPv6 RA Guard..........................................................................................................................................392
Configuring IPv6 RA Guard on an Interface.........................................................................................................394
Monitoring IPv6 RA Guard..................................................................................................................................... 395
23 Intermediate System to Intermediate System..........................................................................................396
IS-IS Protocol Overview............................................................................................................................................... 396
IS-IS Addressing............................................................................................................................................................ 396
Multi-Topology IS-IS......................................................................................................................................................397
14
Contents
Transition Mode....................................................................................................................................................... 397
Interface Support.................................................................................................................................................... 398
Adjacencies...............................................................................................................................................................398
Graceful Restart............................................................................................................................................................ 398
Timers....................................................................................................................................................................... 398
Implementation Information......................................................................................................................................... 398
Configuration Information............................................................................................................................................ 399
Configuration Tasks for IS-IS.................................................................................................................................400
Configuring the Distance of a Route.....................................................................................................................407
Changing the IS-Type.............................................................................................................................................408
Redistributing IPv4 Routes..................................................................................................................................... 410
Redistributing IPv6 Routes...................................................................................................................................... 411
Configuring Authentication Passwords................................................................................................................. 412
Setting the Overload Bit..........................................................................................................................................412
Debugging IS-IS........................................................................................................................................................413
IS-IS Metric Styles..........................................................................................................................................................414
Configure Metric Values................................................................................................................................................414
Maximum Values in the Routing Table.................................................................................................................. 415
Change the IS-IS Metric Style in One Level Only................................................................................................ 415
Leaks from One Level to Another..........................................................................................................................416
Sample Configurations...................................................................................................................................................417
24 Link Aggregation Control Protocol (LACP)..............................................................................................420
Introduction to Dynamic LAGs and LACP.................................................................................................................. 420
Important Points to Remember.............................................................................................................................420
LACP Modes.............................................................................................................................................................421
Configuring LACP Commands................................................................................................................................421
LACP Configuration Tasks........................................................................................................................................... 422
Creating a LAG.........................................................................................................................................................422
Configuring the LAG Interfaces as Dynamic........................................................................................................422
Setting the LACP Long Timeout........................................................................................................................... 423
Monitoring and Debugging LACP..........................................................................................................................423
Shared LAG State Tracking..........................................................................................................................................424
Configuring Shared LAG State Tracking.............................................................................................................. 424
Important Points about Shared LAG State Tracking..........................................................................................426
LACP Basic Configuration Example............................................................................................................................ 426
Configure a LAG on ALPHA................................................................................................................................... 426
25 Layer 2.................................................................................................................................................... 435
Manage the MAC Address Table................................................................................................................................ 435
Clearing the MAC Address Table.......................................................................................................................... 435
Setting the Aging Time for Dynamic Entries........................................................................................................435
Configuring a Static MAC Address....................................................................................................................... 436
Displaying the MAC Address Table....................................................................................................................... 436
MAC Learning Limit.......................................................................................................................................................436
Setting the MAC Learning Limit............................................................................................................................ 437
Contents
15
mac learning-limit Dynamic.....................................................................................................................................437
mac learning-limit mac-address-sticky................................................................................................................. 437
mac learning-limit station-move............................................................................................................................ 438
mac learning-limit no-station-move...................................................................................................................... 438
Learning Limit Violation Actions.............................................................................................................................438
Setting Station Move Violation Actions................................................................................................................439
Recovering from Learning Limit and Station Move Violations...........................................................................439
Disabling MAC Address Learning on the System................................................................................................440
NIC Teaming...................................................................................................................................................................440
Configure Redundant Pairs...........................................................................................................................................441
Important Points about Configuring Redundant Pairs........................................................................................443
Far-End Failure Detection.............................................................................................................................................444
FEFD State Changes...............................................................................................................................................445
Configuring FEFD.................................................................................................................................................... 446
Enabling FEFD on an Interface.............................................................................................................................. 446
Debugging FEFD......................................................................................................................................................447
26 Link Layer Discovery Protocol (LLDP).....................................................................................................449
802.1AB (LLDP) Overview........................................................................................................................................... 449
Protocol Data Units.................................................................................................................................................449
Optional TLVs................................................................................................................................................................ 450
Management TLVs..................................................................................................................................................450
TIA-1057 (LLDP-MED) Overview............................................................................................................................... 452
TIA Organizationally Specific TLVs........................................................................................................................452
Configure LLDP............................................................................................................................................................. 456
Related Configuration Tasks..................................................................................................................................456
Important Points to Remember.............................................................................................................................456
LLDP Compatibility..................................................................................................................................................457
CONFIGURATION versus INTERFACE Configurations............................................................................................457
Enabling LLDP................................................................................................................................................................457
Disabling and Undoing LLDP..................................................................................................................................458
Enabling LLDP on Management Ports........................................................................................................................458
Disabling and Undoing LLDP on Management Ports..........................................................................................458
Advertising TLVs........................................................................................................................................................... 458
Viewing the LLDP Configuration................................................................................................................................. 460
Viewing Information Advertised by Adjacent LLDP Agents.....................................................................................460
Configuring LLDPDU Intervals......................................................................................................................................461
Configuring Transmit and Receive Mode...................................................................................................................462
Configuring the Time to Live Value.............................................................................................................................462
Debugging LLDP............................................................................................................................................................463
Relevant Management Objects................................................................................................................................... 464
27 Microsoft Network Load Balancing..........................................................................................................469
NLB Unicast Mode Scenario........................................................................................................................................469
NLB Multicast Mode Scenario.....................................................................................................................................469
Limitations of the NLB Feature....................................................................................................................................470
16
Contents
Microsoft Clustering......................................................................................................................................................470
Enable and Disable VLAN Flooding .............................................................................................................................470
Configuring a Switch for NLB .....................................................................................................................................470
Enabling a Switch for Multicast NLB..................................................................................................................... 471
28 Multicast Source Discovery Protocol (MSDP).........................................................................................472
Protocol Overview.........................................................................................................................................................472
Anycast RP..................................................................................................................................................................... 473
Implementation Information..........................................................................................................................................474
Configure Multicast Source Discovery Protocol........................................................................................................474
Related Configuration Tasks.................................................................................................................................. 474
Enable MSDP................................................................................................................................................................. 478
Manage the Source-Active Cache.............................................................................................................................. 479
Viewing the Source-Active Cache........................................................................................................................ 479
Limiting the Source-Active Cache.........................................................................................................................479
Clearing the Source-Active Cache........................................................................................................................480
Enabling the Rejected Source-Active Cache.......................................................................................................480
Accept Source-Active Messages that Fail the RFP Check..................................................................................... 480
Specifying Source-Active Messages.......................................................................................................................... 483
Limiting the Source-Active Messages from a Peer.................................................................................................. 484
Preventing MSDP from Caching a Local Source...................................................................................................... 484
Preventing MSDP from Caching a Remote Source..................................................................................................485
Preventing MSDP from Advertising a Local Source.................................................................................................485
Logging Changes in Peership States.......................................................................................................................... 486
Terminating a Peership................................................................................................................................................. 486
Clearing Peer Statistics.................................................................................................................................................487
Debugging MSDP.......................................................................................................................................................... 487
MSDP with Anycast RP................................................................................................................................................488
Configuring Anycast RP................................................................................................................................................489
Reducing Source-Active Message Flooding........................................................................................................ 490
Specifying the RP Address Used in SA Messages..............................................................................................490
MSDP Sample Configurations..................................................................................................................................... 492
29 Multiple Spanning Tree Protocol (MSTP)................................................................................................495
Protocol Overview.........................................................................................................................................................495
Spanning Tree Variations..............................................................................................................................................496
Implementation Information................................................................................................................................... 496
Configure Multiple Spanning Tree Protocol...............................................................................................................496
Related Configuration Tasks.................................................................................................................................. 497
Enable Multiple Spanning Tree Globally......................................................................................................................497
Adding and Removing Interfaces.................................................................................................................................497
Creating Multiple Spanning Tree Instances............................................................................................................... 498
Influencing MSTP Root Selection............................................................................................................................... 499
Interoperate with Non-Dell Bridges.............................................................................................................................499
Changing the Region Name or Revision.....................................................................................................................500
Modifying Global Parameters.......................................................................................................................................500
Contents
17
Modifying the Interface Parameters............................................................................................................................501
Configuring an EdgePort..............................................................................................................................................502
Flush MAC Addresses after a Topology Change...................................................................................................... 503
MSTP Sample Configurations......................................................................................................................................503
Router 1 Running-ConfigurationRouter 2 Running-ConfigurationRouter 3 Running-
ConfigurationSFTOS Example Running-Configuration...................................................................................... 504
Debugging and Verifying MSTP Configurations........................................................................................................507
30 Multicast Features.................................................................................................................................. 509
Enabling IP Multicast.....................................................................................................................................................509
Implementation Information.........................................................................................................................................509
Multicast Policies............................................................................................................................................................510
IPv4 Multicast Policies.............................................................................................................................................510
Understanding Multicast Traceroute (mtrace).......................................................................................................... 517
Important Points to Remember..............................................................................................................................518
Printing Multicast Traceroute (mtrace) Paths...........................................................................................................518
Supported Error Codes................................................................................................................................................. 519
mtrace Scenarios...........................................................................................................................................................520
31 Object Tracking........................................................................................................................................526
Object Tracking Overview............................................................................................................................................526
Track Layer 2 Interfaces.........................................................................................................................................527
Track Layer 3 Interfaces.........................................................................................................................................527
Track IPv4 and IPv6 Routes.................................................................................................................................. 528
Set Tracking Delays.................................................................................................................................................529
VRRP Object Tracking............................................................................................................................................529
Object Tracking Configuration.....................................................................................................................................529
Tracking a Layer 2 Interface.................................................................................................................................. 529
Tracking a Layer 3 Interface.................................................................................................................................. 530
Track an IPv4/IPv6 Route......................................................................................................................................532
Displaying Tracked Objects..........................................................................................................................................535
32 Open Shortest Path First (OSPFv2 and OSPFv3)................................................................................... 537
Protocol Overview.........................................................................................................................................................537
Autonomous System (AS) Areas...........................................................................................................................537
Area Types................................................................................................................................................................538
Networks and Neighbors........................................................................................................................................539
Router Types............................................................................................................................................................539
Designated and Backup Designated Routers....................................................................................................... 541
Link-State Advertisements (LSAs)........................................................................................................................541
Router Priority and Cost.........................................................................................................................................542
OSPF with Dell Networking OS...................................................................................................................................543
Graceful Restart...................................................................................................................................................... 544
Fast Convergence (OSPFv2, IPv4 Only)............................................................................................................. 545
Multi-Process OSPFv2 with VRF..........................................................................................................................545
OSPF ACK Packing.................................................................................................................................................545
18
Contents
Setting OSPF Adjacency with Cisco Routers......................................................................................................545
Configuration Information............................................................................................................................................ 546
Configuration Task List for OSPFv2 (OSPF for IPv4)....................................................................................... 546
Configuration Task List for OSPFv3 (OSPF for IPv6).............................................................................................560
Enabling IPv6 Unicast Routing............................................................................................................................... 561
Applying cost for OSPFv3.......................................................................................................................................561
Assigning IPv6 Addresses on an Interface............................................................................................................561
Assigning Area ID on an Interface......................................................................................................................... 562
Assigning OSPFv3 Process ID and Router ID Globally....................................................................................... 562
Assigning OSPFv3 Process ID and Router ID to a VRF..................................................................................... 563
Configuring Stub Areas...........................................................................................................................................563
Configuring Passive-Interface............................................................................................................................... 563
Redistributing Routes..............................................................................................................................................564
Configuring a Default Route...................................................................................................................................564
Enabling OSPFv3 Graceful Restart.......................................................................................................................565
OSPFv3 Authentication Using IPsec.....................................................................................................................567
Troubleshooting OSPFv3....................................................................................................................................... 573
33 Policy-based Routing (PBR)....................................................................................................................575
Overview.........................................................................................................................................................................575
Implementing PBR.........................................................................................................................................................576
Configuration Task List for Policy-based Routing.....................................................................................................576
PBR Exceptions (Permit)....................................................................................................................................... 576
Create a Redirect List............................................................................................................................................. 577
Create a Rule for a Redirect-list............................................................................................................................ 577
Apply a Redirect-list to an Interface using a Redirect-group.............................................................................579
Sample Configuration.................................................................................................................................................... 581
Create the Redirect-List GOLDAssign Redirect-List GOLD to Interface 2/11View Redirect-List GOLD....582
34 PIM Sparse-Mode (PIM-SM).................................................................................................................. 585
Implementation Information......................................................................................................................................... 585
Protocol Overview........................................................................................................................................................ 585
Requesting Multicast Traffic..................................................................................................................................585
Refuse Multicast Traffic.........................................................................................................................................586
Send Multicast Traffic............................................................................................................................................ 586
Configuring PIM-SM.....................................................................................................................................................586
Related Configuration Tasks.................................................................................................................................. 587
Enable PIM-SM..............................................................................................................................................................587
Configuring S,G Expiry Timers.....................................................................................................................................588
Configuring a Static Rendezvous Point......................................................................................................................589
Overriding Bootstrap Router Updates..................................................................................................................589
Configuring a Designated Router................................................................................................................................ 589
Creating Multicast Boundaries and Domains.............................................................................................................590
35 PIM Source-Specific Mode (PIM-SSM)...................................................................................................591
Implementation Information..........................................................................................................................................591
Contents
19
Important Points to Remember..............................................................................................................................591
Configure PIM-SSM......................................................................................................................................................592
Related Configuration Tasks..................................................................................................................................592
Enabling PIM-SSM........................................................................................................................................................ 592
Use PIM-SSM with IGMP Version 2 Hosts................................................................................................................592
Configuring PIM-SSM with IGMPv2.................................................................................................................... 593
Electing an RP using the BSR Mechanism.................................................................................................................594
Enabling RP to Server Specific Multicast Groups...............................................................................................594
36 Port Monitoring.......................................................................................................................................596
Important Points to Remember...................................................................................................................................596
Port Monitoring..............................................................................................................................................................597
Configuring Port Monitoring........................................................................................................................................ 599
Configuring Monitor Multicast Queue........................................................................................................................ 600
Enabling Flow-Based Monitoring................................................................................................................................. 601
Remote Port Mirroring..................................................................................................................................................602
Remote Port Mirroring Example............................................................................................................................602
Configuring Remote Port Mirroring...................................................................................................................... 603
Displaying Remote-Port Mirroring Configurations..............................................................................................605
Configuring the Sample Remote Port Mirroring................................................................................................. 605
Encapsulated Remote Port Monitoring...................................................................................................................... 608
ERPM Behavior on a typical Dell Networking OS .....................................................................................................610
Decapsulation of ERPM packets at the Destination IP/ Analyzer.....................................................................610
Port Monitoring on VLT................................................................................................................................................. 611
VLT Non-fail over Scenario......................................................................................................................................611
VLT Fail-over Scenario............................................................................................................................................ 612
RPM over VLT Scenarios........................................................................................................................................612
37 Private VLANs (PVLAN)...........................................................................................................................614
Private VLAN Concepts................................................................................................................................................ 614
Using the Private VLAN Commands........................................................................................................................... 615
Configuration Task List..................................................................................................................................................616
Creating PVLAN ports.............................................................................................................................................616
Creating a Primary VLAN........................................................................................................................................ 617
Creating a Community VLAN................................................................................................................................. 618
Creating an Isolated VLAN......................................................................................................................................618
Private VLAN Configuration Example.........................................................................................................................620
Inspecting the Private VLAN Configuration................................................................................................................621
38 Per-VLAN Spanning Tree Plus (PVST+)..................................................................................................623
Protocol Overview.........................................................................................................................................................623
Implementation Information......................................................................................................................................... 624
Configure Per-VLAN Spanning Tree Plus.................................................................................................................. 624
Related Configuration Tasks.................................................................................................................................. 624
Enabling PVST+.............................................................................................................................................................624
Disabling PVST+............................................................................................................................................................ 625
20
Contents
/