dot1x timeout re-authperiod... 317dot1x re-authenticat
garp timerThe garp timer Interface Configuration (Ethernet, Port channel) mode command adjusts the values of the join, leave and leaveall timers of G
gvrp vlan-creation-forbidThe gvrp vlan-creation-forbid Interface Configuration (Ethernet, port-channel) mode command disables dynamic VLAN creation or
gvrp registration-forbidThe gvrp registration-forbid Interface Configuration (Ethernet, port-channel) mode command deregisters all dynamic VLANs on a
clear gvrp statisticsThe clear gvrp statistics Privileged EXEC mode command clears all GVRP statistical information.Syntaxclear gvrp statistics [ether
show gvrp configurationThe show gvrp configuration User EXEC mode command displays GVRP configuration information, including timer values, whether GV
show gvrp statisticsThe show gvrp statistics User EXEC mode command displays GVRP statistics.Syntaxshow gvrp statistics [ethernet interface | port-ch
show gvrp error-statisticsThe show gvrp error-statistics User EXEC mode command displays GVRP error statistics.Syntaxshow gvrp error-statistics [ethe
Section 8. IGMP Snooping Commandsip igmp snooping (Global)The ip igmp snooping Global Configuration mode command enables Internet Group Management Pr
ip igmp snooping (Interface)The ip igmp snooping Interface Configuration (VLAN) mode command enables Internet Group Management Protocol (IGMP) snoopi
ip igmp snooping host-time-outThe ip igmp snooping host-time-out Interface Configuration (VLAN) mode command configures the host-time-out. If an IGMP
Section 1. Using the CLIThis chapter describes how to start using the CLI and describes implemented command editing features to assist in using the CL
ip igmp snooping mrouter-time-outThe ip igmp snooping mrouter-time-out Interface Configuration (VLAN) mode command configures the mrouter-time-out. Th
ip igmp snooping leave-time-outThe ip igmp snooping leave-time-out Interface Configuration (VLAN) mode command configures the leave-time-out. If an I
show ip igmp snooping mrouterThe show ip igmp snooping mrouter User EXEC mode command displays information on dynamically learned multicast router in
show ip igmp snooping interfaceThe show ip igmp snooping interface User EXEC mode command displays IGMP snooping configuration.Syntaxshow ip igmp sno
show ip igmp snooping groupsThe show ip igmp snooping groups User EXEC mode command displays multicast groups learned by IGMP snooping.Syntaxshow ip i
Section 9. IP Addressing Commandsip addressThe ip address Interface Configuration (Ethernet, VLAN, port-channel) mode command sets an IP address. To
ip address dhcpThe ip address dhcp Interface Configuration (Ethernet, VLAN, port-channel) mode command acquires an IP address for an Ethernet interfac
ip default-gatewayThe ip default-gateway Global Configuration mode command defines a default gateway (router). To return to the default configuration
show ip interfaceThe show ip interface Privileged EXEC mode command displays the usability status of configured IP interfaces.Syntaxshow ip interface
arp The arp Global Configuration mode command adds a permanent entry in the Address Resolution Protocol (ARP) cache. To remove an entry from the ARP
The Global Configuration mode manages the device configuration on a global level. The Interface Configuration mode configures specific interfaces in
arp timeoutThe arp timeout Global Configuration mode command configures how long an entry remains in the ARP cache. To return to the default configura
clear arp-cache The clear arp-cache Privileged EXEC mode command deletes all dynamic entries from the ARP cache.Syntaxclear arp-cacheDefault Configur
show arpThe show arp Privileged EXEC mode command displays entries in the ARP table.Syntaxshow arpDefault ConfigurationThis command has no default co
ip domain-nameThe ip domain-name Global Configuration mode command defines a default domain name used by the software to complete unqualified host na
ip name-serverThe ip name-server Global Configuration mode command defines the available name servers. To remove a name server, use the no form of thi
ip hostThe ip host Global Configuration mode command defines static host name-to-address mapping in the host cache. To remove the name-to-address map
clear hostThe clear host Privileged EXEC mode command deletes entries from the host name-to-address cache.Syntaxclear host {name | *}Parameters•name
clear host dhcpThe clear host dhcp Privileged EXEC mode command deletes entries from the host name-to-address mapping received from Dynamic Host Conf
show hostsThe show hosts Privileged EXEC mode command displays the default domain name, a list of name server hosts, the static and the cached list of
Section 10. LACP Commandslacp system-priorityThe lacp system-priority Global Configuration mode command configures the system priority. To return to
1.1.4 Global Configuration ModeGlobal Configuration mode commands apply to features that affect the system as a whole, rather than just a spe-cific in
lacp port-priorityThe lacp port-priority Interface Configuration (Ethernet) mode command configures physical port priority. To return to the default
lacp timeoutThe lacp timeout Interface Configuration (Ethernet) mode command assigns an administrative LACP timeout. To return to the default configu
show lacp ethernetThe show lacp ethernet Privileged EXEC mode command displays LACP information for Ethernet ports. Syntaxshow lacp ethernet interface
distributing: FALSEexpired: FALSEPartnersystem priority: 0system mac addr: 00:00:00:00:00:00port Admin key: 0port Oper key: 0port Oper number: 0port
show lacp port-channelThe show lacp port-channel Privileged EXEC mode command displays LACP information for a port-channel.Syntaxshow lacp port-chann
Section 11. Line CommandslineThe line Global Configuration mode command identifies a specific line for configuration and enters the Line Con-figurati
speedThe speed Line Configuration mode command sets the line baud rate. To return to the default configuration, use the no form of the command.Syntax
exec-timeoutThe exec-timeout Line Configuration mode command sets the interval that the system waits until user input is detected. To return to the d
historyThe history Line Configuration mode command enables the command history function. To disable the command history function, use the no form of
history sizeThe history size Line Configuration mode command configures the command history buffer size for a particular line. To reset the command h
• MAC Access-List — Configures conditions required to allow traffic based on MAC addresses. The mac access-list Global Configuration mode command is
terminal historyThe terminal history user EXEC command enables the command history function for the current terminal ses-sion. To disable the command
terminal history sizeThe terminal history size user EXEC command configures the command history buffer size for the current termi-nal session. To res
show lineThe show line User EXEC mode command displays line parameters.Syntaxshow line [console | telnet | ssh]Parameters•console — Console terminal
Section 12. Management ACLmanagement access-listThe management access-list Global Configuration mode command configures a management access list and
The following example creates a management access list called mlist, configures all interfaces to be management interfaces except Ethernet interfaces
permit (Management)The permit Management Access-List Configuration mode command defines a permit rule. Syntaxpermit [ethernet interface-number | vlan
deny (Management)The deny Management Access-List Configuration mode command defines a deny rule.Syntaxdeny [ethernet interface-number | vlan vlan-id |
management access-classThe management access-class Global Configuration mode command restricts management connections by defining the active manageme
show management access-listThe show management access-list Privileged EXEC mode command displays management access-lists.Syntaxshow management access-
show management access-class The show management access-class Privileged EXEC mode command displays the active management access list.Syntaxshow mana
1.3 Editing Features1.3.1 Entering CommandsA CLI command is a series of keywords and arguments. Keywords identify a command, and arguments specify con
Section 13. PHY Diagnostics Commandstest copper-port tdrThe test copper-port tdr Privileged EXEC mode command uses Time Domain Reflectometry (TDR) te
show copper-ports tdrThe show copper-ports tdr User EXEC mode command displays information on the last Time Domain Reflecto-metry (TDR) test performe
show copper-ports cable-lengthThe show copper-ports cable-length User EXEC mode command displays the estimated copper cable length attached to a port
show fiber-ports optical-transceiverThe show fiber-ports optical-transceiver Privileged EXEC command displays the optical transceiver diagnos-tics.Syn
Section 14. Port Channel Commandsinterface port-channelThe interface port-channel Global Configuration mode command enters the interface configuratio
interface range port-channelThe interface range port-channel Global Configuration mode command enters the interface configuration mode to configure m
channel-groupThe channel-group Interface Configuration (Ethernet) mode command associates a port with a port-channel. To remove a port from a port-ch
show interfaces port-channelThe show interfaces port-channel Privileged EXEC mode command displays port-channel information.Syntaxshow interfaces por
Section 15. Port Monitor Commandsport monitorThe port monitor Interface Configuration mode command starts a port monitoring session. To stop a port m
port monitor vlan-taggingThe port monitor Interface Configuration (Ethernet) mode command transmits tagged ingress mirrored packets. To transmit untag
1.3.1.2 Negating the Effect of CommandsFor many configuration commands, the prefix keyword no can be entered to cancel the effect of a command or res
show ports monitorThe show ports monitor User EXEC mode command displays the port monitoring status.Syntaxshow ports monitorDefault ConfigurationThis
Section 16. QoS CommandsqosThe qos Global Configuration mode command enables quality of service (QoS) on the device. To disable QoS on the device, us
show qosThe show qos User EXEC mode command displays quality of service (QoS) for the device. Syntaxshow qosDefault ConfigurationThis command has no d
priority-queue out num-of-queuesThe priority-queue out num-of-queues Global Configuration mode command configures the number of expedite queues. To r
show qos interfaceThe show qos interface User EXEC mode command displays interface QoS information.Syntaxshow qos interface [ethernet interface-numbe
3 24 35 36 47 4TL-SG3109/TL-SL3428/TL-SL3452 Gigabit Managed Switch Family CLI Reference GuidePage 164
traffic-shapeSet shaper on egress port/queue. Use no form in order to disable the shaper.traffic-shape { committed-rate } [queue-id]no traffic-shape
wrr-queue cos-mapThe wrr-queue cos-map Global Configuration mode command maps Class of Service (CoS) values to a specific egress queue. To return to
qos map dscp-queueThe qos map dscp-queue Global Configuration mode command modifies the DSCP to CoS map. To return to the default map, use the no for
qos trust (Global)The qos trust Global Configuration mode command configures the system to the basic mode and trust state. To return to the untrusted
Screen DisplayIndicates system messages and prompts appearing on the console.all When a parameter is required to define a range of ports or parameters
qos trust (Interface)The qos trust Interface Configuration (Ethernet, port-channel) mode command enables each port trust state while the system is in
qos cosThe qos cos Interface Configuration (Ethernet, port-channel) mode command defines the default CoS value of a port. To return to the default co
show qos mapThe show qos map User EXEC mode command displays all QoS maps.Syntaxshow qos map [dscp-queue] Parameters•dscp-queue — Indicates the DSCP
Section 17. Radius Commandsradius-server hostThe radius-server host Global Configuration mode command specifies a RADIUS server host. To delete the s
ExampleThe following example specifies a RADIUS server host with IP address 192.168.10.1, authentication request port number 20 and a 20-second timeou
radius-server keyThe radius-server key Global Configuration mode command sets the authentication and encryption key for all RADIUS communications bet
radius-server retransmitThe radius-server retransmit Global Configuration mode command specifies the number of times the software searches the list of
radius-server source-ipThe radius-server source-ip Global Configuration mode command specifies the source IP address used for communication with RADI
radius-server timeoutThe radius-server timeout Global Configuration mode command sets the interval during which the device waits for a server host to
radius-server deadtimeThe radius-server deadtime Global Configuration mode command improves RADIUS response time when serv-ers are unavailable. The c
Section 2. AAA Commandsaaa authentication loginThe aaa authentication login Global Configuration mode command defines login authentication. To return
show radius-serversThe show radius-servers Privileged EXEC mode command displays the RADIUS server settings.Syntaxshow radius-serversDefault Configur
Section 18. RMON Commandsshow rmon statisticsThe show rmon statistics User EXEC mode command displays RMON Ethernet statistics.Syntaxshow rmon statis
The following table describes significant fields shown above:Field Description Octets The total number of octets of data (including those in bad pack
rmon collection historyThe rmon collection history Interface Configuration (Ethernet, port-channel) mode command enables a Remote Monitoring (RMON) M
show rmon collection historyThe show rmon collection history User EXEC mode command displays the requested RMON history group sta-tistics.Syntaxshow r
show rmon historyThe show rmon history User EXEC mode command displays RMON Ethernet history statistics.Syntaxshow rmon history index {throughput | e
The following table describes significant fields shown above:Maximum table size: 500 (800 after reset)Time CRC Align Undersize Oversize Fragments Jab
Fragments The total number of packets received during this sampling interval that were less than 64 octets in length (excluding framing bits but incl
rmon alarmThe rmon alarm Global Configuration mode command configures alarm conditions. To remove an alarm, use the no form of this command.Syntaxrmon
ExampleThe following example configures the following alarm conditions:• Alarm index — 1000• Sample interval — 360000 seconds• Rising threshold — 100
User GuidelinesThe default and optional list names created with the aaa authentication login command are used with the login authentication command.C
show rmon alarmThe show rmon alarm User EXEC mode command displays alarm configuration.Syntaxshow rmon alarm numberParameters•number — Specifies the
Interval The interval in seconds over which the data is sampled and compared with the rising and falling thresholds.Sample Type The method of samplin
rmon eventThe rmon event Global Configuration mode command configures an event. To remove an event, use the no form of this command.Syntaxrmon event i
show rmon eventsThe show rmon events User EXEC mode command displays the RMON event table.Syntaxshow rmon eventsDefault ConfigurationThis command has
show rmon logThe show rmon log User EXEC mode command displays the RMON log table.Syntaxshow rmon log [event]Parameters•event — Specifies the event i
The following table describes the significant fields shown in the display:Field DescriptionEvent An index that uniquely identifies the event.Descript
rmon table-sizeThe rmon table-size Global Configuration mode command configures the maximum size of RMON tables. To return to the default configuratio
Section 19. SNMP Commandssnmp-server communityThe snmp-server community Global Configuration mode command configures the community access string to p
ExamplesThe following example defines community access string public to permit administrative access to SNMP protocol at an administrative station wi
snmp-server viewThe snmp-server view Global Configuration mode command creates or updates a Simple Network Management Protocol (SNMP) server view ent
Table of ContentsSection 1. Using the CLI... 101
aaa authentication enableThe aaa authentication enable Global Configuration mode command defines authentication method lists for accessing higher pri
snmp-server groupThe snmp-server group Global Configuration mode command configures a new Simple Management Protocol (SNMP) group or a table that map
snmp-server userThe snmp-server user Global Configuration mode command configures a new SNMP Version 3 user. To remove a user, use the no form of thi
ExamplesThe following example configures an SNMPv3 user John in group user-group.Console(config)# snmp-server user John user-groupTL-SG3109/TL-SL3428
snmp-server engineID localThe snmp-server engineID local Global Configuration mode command specifies the Simple Network Manage-ment Protocol (SNMP) e
ExamplesThe following example enables SNMPv3 on the device and sets the local engine ID of the device to the default value.Console(config) # snmp-serv
snmp-server enable trapsThe snmp-server enable traps Global Configuration mode command enables the device to send SNMP traps. To disable SNMP traps,
snmp-server filterThe snmp-server filter Global Configuration mode command creates or updates a Simple Network Management Protocol (SNMP) server filte
snmp-server hostThe snmp-server host Global Configuration mode command specifies the recipient of Simple Network Manage-ment Protocol Version 1 or Ve
snmp-server v3-hostThe snmp-server v3-host Global Configuration mode command specifies the recipient of Simple Network Man-agement Protocol Version 3
snmp-server trap authenticationThe snmp-server trap authentication Global Configuration mode command enables the device to send SNMP traps when authe
ExampleThe following example sets the enable password for authentication when accessing higher privilege levels.Console(config)# aaa authentication e
snmp-server contactThe snmp-server contact Global Configuration mode command configures the system contact (sysContact) string. To remove system cont
snmp-server locationThe snmp-server location Global Configuration mode command configures the system location string. To remove the location string,
snmp-server setThe snmp-server set Global Configuration mode command defines the SNMP MIB value.Syntaxsnmp-server set variable-name name1 value1 [ na
show snmpThe show snmp Privileged EXEC mode command displays the SNMP status.Syntaxshow snmpDefault ConfigurationThis command has no default configur
The following table describes significant fields shown above.Version 3 notificationsTarget Address Type UsernameSecurity LevelUDP PortFilter NameTO S
show snmp engineidThe show snmp engineID Privileged EXEC mode command displays the ID of the local Simple Network Man-agement Protocol (SNMP) engine.
show snmp viewsThe show snmp views Privileged EXEC mode command displays the configuration of views.Syntaxshow snmp views [viewname]Parameters•viewna
show snmp groupsThe show snmp groups Privileged EXEC mode command displays the configuration of groups.Syntaxshow snmp groups [groupname]Parameters•g
Write Name of the view that enables entering data and managing the contents of the agent. Notify Name of the view that enables specifying an inform o
show snmp filtersThe show snmp filters Privileged EXEC mode command displays the configuration of filters.Syntaxshow snmp filters [filtername]Paramet
login authenticationThe login authentication Line Configuration mode command specifies the login authentication method list for a remote telnet or co
show snmp usersThe show snmp users Privileged EXEC mode command displays the configuration of users.Syntaxshow snmp users [username]Parameters•usernam
Section 20. Spanning-Tree Commandsspanning-treeThe spanning-tree Global Configuration mode command enables spanning-tree functionality. To disable sp
spanning-tree modeThe spanning-tree mode Global Configuration mode command configures the spanning-tree protocol. To return to the default configurat
spanning-tree forward-timeThe spanning-tree forward-time Global Configuration mode command configures the spanning-tree bridge for-ward time, which i
spanning-tree hello-timeThe spanning-tree hello-time Global Configuration mode command configures the spanning tree bridge hello time, which is how of
spanning-tree max-ageThe spanning-tree max-age Global Configuration mode command configures the spanning tree bridge maximum age. To return to the de
spanning-tree priorityThe spanning-tree priority Global Configuration mode command configures the spanning tree priority of the device. The priority v
spanning-tree disableThe spanning-tree disable Interface Configuration mode command disables spanning tree on a specific port. To enable spanning tre
spanning-tree costThe spanning-tree cost Interface Configuration mode command configures the spanning tree path cost for a port. To return to the defa
spanning-tree port-priorityThe spanning-tree port-priority Interface Configuration mode command configures port priority. To return to the default co
enable authentication The enable authentication Line Configuration mode command specifies the authentication method list when accessing a higher priv
spanning-tree portfastThe spanning-tree portfast Interface Configuration mode command enables PortFast mode. In PortFast mode, the interface is immedi
spanning-tree link-typeThe spanning-tree link-type Interface Configuration mode command overrides the default link-type setting deter-mined by the du
spanning-tree pathcost methodThe spanning-tree pathcost method Global Configuration mode command sets the default path cost method. To return to the
spanning-tree bpduThe spanning-tree bpdu Global Configuration mode command defines BPDU handling when the spanning tree is disabled globally or on a
clear spanning-tree detected-protocolsThe clear spanning-tree detected-protocols Privileged EXEC mode command restarts the protocol migration process
spanning-tree guard rootThe spanning-tree guard root interface configuration command enables root guard on all spanning tree instances on that interf
spanning-tree mst priorityThe spanning-tree mst priority Global Configuration mode command configures the device priority for the spec-ified spanning
spanning-tree mst max-hopsThe spanning-tree mst priority Global Configuration mode command configures the number of hops in an MST region before the
spanning-tree mst port-priorityThe spanning-tree mst port-priority Interface Configuration mode command configures port priority for the specified MS
spanning-tree mst costThe spanning-tree mst cost Interface Configuration mode command configures the path cost for multiple span-ning tree (MST) calc
ip http authentication The ip http authentication Global Configuration mode command specifies authentication methods for HTTP server users. To return
spanning-tree mst configurationThe spanning-tree mst configuration Global Configuration mode command enables configuring an MST region by entering the
instance (mst)The instance MST Configuration mode command maps VLANS to an MST instance.Syntaxinstance instance-id {add | remove} vlan vlan-rangePara
name (mst)The name MST Configuration mode command defines the configuration name. To return to the default setting, use the no form of this command.S
revision (mst)The revision MST configuration command defines the configuration revision number. To return to the default con-figuration, use the no f
show (mst)The show MST Configuration mode command displays the current or pending MST region configuration. Syntaxshow {current | pending}Parameters•
exit (mst)The exit MST Configuration mode command exits the MST configuration mode and applies all configuration changes.SyntaxexitDefault Configurat
abort (mst)The abort MST Configuration mode command exits the MST configuration mode without applying the configura-tion changes.SyntaxabortDefault C
show spanning-treeThe show spanning-tree Privileged EXEC mode command displays spanning-tree configuration.Syntaxshow spanning-tree [ethernet interfa
Console# show spanning-treeSpanning tree disabled (BPDU flooding) mode STPDefault port cost method: short Root ID Priority 32768 A
Section 21. Syslog Commandslogging onThe logging on Global Configuration mode command controls error message logging. This command sends debug or err
ip https authentication The ip https authentication Global Configuration mode command specifies authentication methods for HTTPS server users. To ret
loggingThe logging Global Configuration mode command logs messages to a syslog server. To delete the syslog server with the specified address from th
logging consoleThe logging console Global Configuration mode command limits messages logged to the console based on severity. To disable logging to t
logging bufferedThe logging buffered Global Configuration mode command limits syslog messages displayed from an internal buffer based on severity. To
logging buffered sizeThe logging buffered size Global Configuration mode command changes the number of syslog messages stored in the internal buffer.
clear loggingThe clear logging Privileged EXEC mode command clears messages from the internal logging buffer.Syntaxclear loggingDefault Configuration
logging fileThe logging file Global Configuration mode command limits syslog messages sent to the logging file based on severity. To cancel using the
clear logging fileThe clear logging file Privileged EXEC mode command clears messages from the logging file.Syntaxclear logging fileDefault Configurat
aaa loggingThe aaa logging Global Configuration mode command enables logging AAA login events. To disable logging AAA login events, use the no form o
file-system loggingThe file-system logging Global Configuration mode command enables logging file system events. To disable log-ging file system even
management loggingThe management logging global configuration command enables logging management access list (ACL) events. To disable logging managem
show authentication methodsThe show authentication methods Privileged EXEC mode command displays information about the authentica-tion methods. Synt
show loggingThe show logging Privileged EXEC mode command displays the state of logging and the syslog messages stored in the internal buffer.Syntaxsh
11-Aug-2004 15:41:43: %LINK-3-UPDOWN: Interface Ethernet2, changed state to up11-Aug-2004 15:41:43: %LINK-3-UPDOWN: Interface Ethernet, changed state
show logging fileThe show logging file Privileged EXEC mode command displays the state of logging and the syslog messages stored in the logging file.
11-Aug-2004 15:41:43: %LINK-3-UPDOWN: Interface Ethernet2, changed state to up11-Aug-2004 15:41:43: %LINK-3-UPDOWN: Interface Ethernet3, changed stat
show syslog-serversThe show syslog-servers Privileged EXEC mode command displays the settings of the syslog servers.Syntaxshow syslog-serversDefault
Section 22. System ManagementpingThe ping User EXEC mode command sends ICMP echo request packets to another node on the network.Syntaxping {ip-addres
ExamplesThe following example displays pinging results:Console> ping 10.1.1.1Pinging 10.1.1.1 with 64 bytes of data:64 bytes from 10.1.1.1: icmp_s
tracerouteThe traceroute User EXEC mode command discovers routes that packets actually take when traveling to their destination. Syntaxtraceroute {ip
ExamplesThe following example discovers the routes that packets will actually take when traveling to their destination.The following table describes
reloadThe reload Privileged EXEC mode command reloads the operating system.SyntaxreloadDefault ConfigurationThis command has no default configuration
passwordThe password Line Configuration mode command specifies a password on a line. To remove the password, use the no form of this command.Syntaxpa
hostnameThe hostname Global Configuration mode command specifies or modifies the device host name. To remove the existing host name, use the no form o
show users The show users User EXEC mode command displays information about the active users.Syntaxshow usersDefault ConfigurationThis command has no
show system The show system User EXEC mode command displays system information.Syntaxshow systemDefault ConfigurationThis command has no default conf
show versionThe show version User EXEC mode command displays system version information.Syntaxshow versionDefault ConfigurationThis command has no de
show system idThe show system id User EXEC mode command displays system ID information.Syntaxshow system idDefault ConfigurationThis command has no de
system language webThe system language web Global Configuration mode command specifiesthe language of the Web management interface.Syntaxsystem lang
Section 23. User InterfaceenableThe enable User EXEC mode command enters the Privileged EXEC mode.Syntaxenable [privilege-level]Parameters•privilege
disableThe disable Privileged EXEC mode command returns to the User EXEC mode.Syntaxdisable [privilege-level]Parameters•privilege-level — Privilege l
loginThe login User EXEC mode command changes a login username.SyntaxloginDefault ConfigurationThis command has no default configuration.Command Mode
configureThe configure Privileged EXEC mode command enters the Global Configuration mode.SyntaxconfigureDefault ConfigurationThis command has no defa
enable password The enable password Global Configuration mode command sets a local password to control access to user and privilege levels. To remove
exit (Configuration)The exit command exits any configuration mode to the next highest mode in the CLI mode hierarchy.SyntaxexitDefault ConfigurationT
exitThe exit Privileged/User EXEC mode command closes an active terminal session by logging off the device.SyntaxexitDefault ConfigurationThis comman
endThe end command ends the current configuration session and returns to the Privileged EXEC mode.SyntaxendDefault ConfigurationThis command has no d
helpThe help command displays a brief description of the help system.SyntaxhelpDefault ConfigurationThis command has no default configuration.Command
terminal data-dumpThe terminal data-dump User EXEC mode command enables dumping all the output of a show command with-out prompting. To disable dumpi
show historyThe show history User EXEC mode command lists the commands entered in the current session.Syntaxshow historyDefault ConfigurationThis com
show privilegeThe show privilege Privileged/User EXEC mode command displays the current privilege level.Syntaxshow privilegeDefault ConfigurationThis
Section 24. VLAN Commandsvlan databaseThe vlan database Global Configuration mode command enters the VLAN Configuration mode.Syntaxvlan databaseDefau
vlanUse the vlan VLAN Configuration mode command to create a VLAN. To delete a VLAN, use the no form of this command. Syntaxvlan vlan-rangeno vlan vl
interface vlanThe interface vlan Global Configuration mode command enters the Interface Configuration (VLAN) mode.Syntaxinterface vlan vlan-idParamet
usernameThe username Global Configuration mode command creates a user account in the local database. To remove a user name, use the no form of this c
interface range vlanThe interface range vlan Global Configuration mode command enables simultaneously configuring multiple VLANs.Syntaxinterface rang
nameThe name Interface Configuration mode command adds a name to a VLAN. To remove the VLAN name, use the no form of this command. Syntaxname stringn
switchport modeThe switchport mode Interface Configuration mode command configures the VLAN membership mode of a port. To return to the default confi
switchport access vlanThe switchport access vlan Interface Configuration mode command configures the VLAN ID when the interface is in access mode. To
switchport trunk allowed vlanThe switchport trunk allowed vlan Interface Configuration mode command adds or removes VLANs to or from a trunk port. Sy
switchport trunk native vlanThe switchport trunk native vlan Interface Configuration mode command defines the native VLAN when the interface is in tru
switchport general allowed vlanThe switchport general allowed vlan Interface Configuration mode command adds or removes VLANs from a general port.Syn
switchport general pvidThe switchport general pvid Interface Configuration mode command configures the PVID when the interface is in general mode. To
switchport general ingress-filtering disableThe switchport general ingress-filtering disable Interface Configuration mode command disables port ingre
switchport general acceptable-frame-type tagged-onlyThe switchport general acceptable-frame-type tagged-only Interface Configuration mode command disc
show ports security ... 45Section 4. Clo
Section 3. Address Table Commandsbridge addressThe bridge address Interface Configuration (VLAN) mode command adds a MAC-layer station source address
switchport forbidden vlanThe switchport forbidden vlan Interface Configuration mode command forbids adding specific VLANs to a port. To return to the
switchport protectedThe switchport protected Interface Configuration mode command overrides the FDB decision and sends all Unicast, Multicast and Bro
ip internal-usage-vlanThe ip internal-usage-vlan Interface Configuration mode command reserves a VLAN as the internal usage VLAN of an interface. To
show vlanThe show vlan Privileged EXEC mode command displays VLAN information.Syntaxshow vlan [id vlan-id | name vlan-name ]Parameters•vlan-id — spec
show vlan internal usageThe show vlan internal usage Privileged EXEC mode command displays a list of VLANs used internally by the device.Syntaxshow v
show interfaces switchportThe show interfaces switchport Privileged EXEC mode command displays the switchport configuration.Syntaxshow interfaces swi
Static configuration:PVID: 1 (default)Ingress Filtering: EnabledAcceptable Frame Type: AllPort e1 is statically configured to:Vlan Name Egress rule--
Port e2 is statically confgiured to:Vlan Name Egress rule---- ------------ -----------8 VLAN0072 untagged91 IP Telephony taggedForbidden VLANS:VLAN N
Section 25. Web Serverip http serverThe ip http server Global Configuration mode command enables configuring the device from a browser. To dis-able t
ip http exec-timeoutThe ip http exec-timeout Global Configuration mode command specifies the timeout interval of a http session. To return to the def
bridge multicast filteringThe bridge multicast filtering Global Configuration mode command enables filtering multicast addresses. To dis-able filteri
ip https serverThe ip https server Global Configuration mode command enables configuring the device from a browser. To dis-able this function, use th
ip http portThe ip http port Global Configuration mode command specifies the TCP port to be used by the Web browser interface. To return to the defau
ip https portThe ip https port Global Configuration mode command specifies the TCP port to be used by the Web browser interface. To return to the def
show ip httpThe show ip http Privileged EXEC mode command displays the HTTP server configuration.Syntaxshow ip httpDefault ConfigurationThis command
Section 26. 802.1x Commandsaaa authentication dot1xThe aaa authentication dot1x Global Configuration mode command specifies one or more authenticatio
dot1x system-auth-controlThe dot1x system-auth-control Global Configuration mode command enables 802.1x globally. To return to the default configurat
dot1x port-controlThe dot1x port-control Interface Configuration mode command enables manually controlling the authorization state of the port. To re
dot1x re-authenticationThe dot1x re-authentication Interface Configuration mode command enables periodic re-authentication of the client. To return t
dot1x timeout re-authperiodThe dot1x timeout re-authperiod Interface Configuration mode command sets the number of seconds between re-authentication
dot1x re-authenticateThe dot1x re-authenticate Privileged EXEC mode command manually initiates a re-authentication of all 802.1X-enabled ports or the
bridge multicast addressThe bridge multicast address Interface Configuration (VLAN) mode command registers a MAC-layer multicast address in the bridg
dot1x timeout quiet-periodThe dot1x timeout quiet-period Interface Configuration mode command sets the number of seconds that the device remains in t
dot1x timeout tx-periodThe dot1x timeout tx-period Interface Configuration mode command sets the number of seconds that the device waits for a respons
dot1x max-reqThe dot1x max-req Interface Configuration mode command sets the maximum number of times that the device sends an Extensible Authenticati
dot1x timeout supp-timeoutThe dot1x timeout supp-timeout Interface Configuration mode command sets the time for the retransmission of an Extensible A
dot1x timeout server-timeoutThe dot1x timeout server-timeout Interface Configuration mode command sets the time that the device waits for a response
show dot1xThe show dot1x Privileged EXEC mode command displays the 802.1X status of the device or specified interface.Syntaxshow dot1x [ethernet inter
The following table describes significant fields shown above:Port Admin Mode Oper Mode Reauth Control Reauth Period Username---- ---------- -----
Max req The maximum number of times that the device sends an Extensible Authentica-tion Protocol (EAP)-request frame (assuming that no response is re
show dot1x usersThe show dot1x users Privileged EXEC mode command displays active 802.1X authenticated users for the device.Syntaxshow dot1x users [u
The following table describes significant fields shown above:Field DescriptionPort The port number.Username The username representing the identity of
bridge multicast forbidden addressThe bridge multicast forbidden address Interface Configuration (VLAN) mode command forbids adding a spe-cific multi
show dot1x statisticsThe show dot1x statistics Privileged EXEC mode command displays 802.1X statistics for the specified interface.Syntaxshow dot1x s
The following table describes the significant fields shown in the display:Field Description EapolFramesRx The number of valid EAPOL frames of any ty
ADVANCED FEATURESdot1x auth-not-reqThe dot1x auth-not-req Interface Configuration mode command enables unauthorized devices access to the VLAN. To di
dot1x multiple-hostsThe dot1x multiple-hosts Interface Configuration mode command enables multiple hosts (clients) on an 802.1X-authorized port, where
dot1x single-host-violationThe dot1x single-host-violation Interface Configuration mode command configures the action to be taken, when a station who
dot1x guest-vlanThe dot1x guest-vlan Interface Configuration mode command defines a guest VLAN. To return to the default configuration, use the no for
dot1x guest-vlan enableThe dot1x vlans guest-vlan enable Interface Configuration mode command enables unauthorized users on the interface access to t
show dot1x advancedThe show dot1x advanced Privileged EXEC mode command displays 802.1X advanced features for the device or specified interface.Synta
Trap frequency: 100Status: Single-host lockedViolations since last trap: 9TL-SG3109/TL-SL3428/TL-SL3452 Gigabit Managed Switch Family CLI Reference G
TroubleshootingThis section describes problems that may arise when installing the and how to resolve these issue. This section includes the following
bridge multicast forward-allThe bridge multicast forward-all Interface Configuration (VLAN) mode command enables forwarding all multi-cast packets on
No response from the termi-nal emulation softwareFaulty serial cableIncorrect serial cableSoftware settingsReplace the serial cableReplace serial cab
Add and Edit pages do not open. A pop-up blocker is enabled. Disable pop-up blockers.Lost password The Password Recovery Procedure enables the user t
bridge multicast forbidden forward-allThe bridge multicast forbidden forward-all Interface Configuration (VLAN) mode command forbids a port to be a f
bridge aging-timeThe bridge aging-time Global Configuration mode command sets the address table aging time. To restore the default configuration, use
clear bridgeThe clear bridge Privileged EXEC mode command removes any learned entries from the forwarding database.Syntaxclear bridgeDefault Configur
port securityThe port security Interface Configuration mode command locks the port, thereby, blocking unknown traffic and preventing the port from le
port security routed secure-addressThe port security routed secure-address Interface Configuration (Ethernet, port-channel) mode command adds a MAC-l
show interfaces configuration ... 86show interfaces stat
show bridge address-tableUse the show bridge address-table Privileged EXEC command to view entries in the bridge-forwarding data-base.Syntaxshow brid
show bridge address-table staticThe show bridge address-table static Privileged EXEC mode command displays statically created entries in the bridge-f
show bridge address-table countThe show bridge address-table count Privileged EXEC mode command displays the number of addresses present in the Forwa
show bridge multicast address-tableThe show bridge multicast address-table User EXEC mode command displays multicast MAC address or IP address table
NoteA multicast MAC address maps to multiple IP addresses as shown above.Console# show bridge multicast address-table format ipVlan IP/MAC Address Ty
show bridge multicast filteringThe show bridge multicast filtering User EXEC mode command displays the multicast filtering configuration.Syntaxshow b
show ports securityThe show ports security Privileged EXEC mode command displays the port-lock status.Syntaxshow ports security [ethernet interface |
The following tables describes the fields shown above.ch7 Disabledch8 DisabledField DescriptionPort Port numberStatus Locked/UnlockedAction Action on
Section 4. Clockclock setThe clock set Privileged EXEC mode command manually sets the system clock.Syntaxclock set hh:mm:ss day month yearorclock set
clock sourceThe clock source Global Configuration mode command configures an external time source for the system clock. Use no form of this command t
clear host ... 125clear hos
clock timezoneThe clock timezone Global Configuration mode command sets the time zone for display purposes. To set the time to the Coordinated Univer
clock summer-timeThe clock summer-time Global Configuration mode command configures the system to automatically switch to summer time (daylight saving
User GuidelinesIn both the date and recurring forms of the command, the first part of the command specifies when summer time begins, and the second p
sntp authentication-keyThe sntp authentication-key Global Configuration mode command defines an authentication key for Simple Net-work Time Protocol
sntp authenticateThe sntp authenticate Global Configuration mode command grants authentication for received Simple Network Time Protocol (SNTP) traff
sntp trusted-keyThe sntp trusted-key Global Configuration mode command authenticates the identity of a system to which Sim-ple Network Time Protocol
sntp client poll timerThe sntp client poll timer Global Configuration mode command sets the polling time for the Simple Network Time Protocol (SNTP)
sntp broadcast client enableThe sntp broadcast client enable Global Configuration mode command enables Simple Network Time Protocol (SNTP) broadcast
sntp anycast client enableThe sntp anycast client enable Global Configuration mode command enables SNTP anycast client. To disable the SNTP anycast c
sntp client enable (Interface)The sntp client enable Interface Configuration (Ethernet, port-channel, VLAN) mode command enables the Sim-ple Network
Section 15. Port Monitor Commands... 157port monitor...
sntp unicast client enableThe sntp unicast client enable Global Configuration mode command enables the device to use the Simple Net-work Time Protoco
sntp unicast client pollThe sntp unicast client poll Global Configuration mode command enables polling for the Simple Network Time Protocol (SNTP) pr
sntp serverThe sntp server Global Configuration mode command configures the device to use the Simple Network Time Protocol (SNTP) to request and acce
show clockThe show clock User EXEC mode command displays the time and date from the system clock.Syntaxshow clock [detail]Parameters•detail — Shows t
show sntp configurationThe show sntp configuration Privileged EXEC mode command shows the configuration of the Simple Network Time Protocol (SNTP). S
show sntp statusThe show sntp status Privileged EXEC mode command shows the status of the Simple Network Time Protocol (SNTP).Syntaxshow sntp statusD
Section 5. Configuration and Image FilescopyThe copy Privileged EXEC mode command copies files from a source to a destination.Syntaxcopy source-url d
Some invalid combinations of source and destination exist. Specifically, you cannot copy if one of the following conditions exist:The source file and
ExampleThe following example copies system image file1 from the TFTP server 172.16.101.101 to a non-active image file.Console# copy tftp://172.16.101
deleteThe delete Privileged EXEC mode command deletes a file from a flash memory device.Syntaxdelete urlParameters•url — A reserved keyword of the fi
Section 19. SNMP Commands... 196snmp-server community...
delete startup-configThe delete startup-config Privileged EXEC mode command deletes the startup-config file.Syntaxdelete startup-configDefault Config
show running-configThe show running-config Privileged EXEC mode command displays the contents of the currently running config-uration file.Syntaxshow
show startup-configThe show startup-config Privileged EXEC mode command displays the contents of the startup configuration file.Syntaxshow startup-co
Section 6. Ethernet Configuration Commandsinterface ethernetThe interface ethernet Global Configuration mode command enters the interface configurati
interface range ethernetThe interface range ethernet Global Configuration mode command configures multiple Ethernet type interfaces at the same time.
shutdownThe shutdown Interface Configuration (Ethernet, port-channel) mode command disables an interface. To restart a disabled interface, use the no
descriptionThe description Interface Configuration (Ethernet, port-channel) mode command adds a description to an inter-face. To remove the descripti
speedThe speed Interface Configuration (Ethernet, port-channel) mode command configures the speed of a given Ethernet interface when not using auto-n
duplexThe duplex Interface Configuration (Ethernet) mode command configures the full/half duplex operation of a given Ethernet interface when not usi
negotiationThe negotiation Interface Configuration (Ethernet, port-channel) mode command enables auto-negotiation oper-ation for the speed and duplex
name (mst)... 241revision (ms
flowcontrolThe flowcontrol Interface Configuration (Ethernet, port-channel) mode command configures flow control on a given interface. To disable flo
mdixThe mdix Interface Configuration (Ethernet) mode command enables cable crossover on a given interface. To dis-able cable crossover, use the no fo
back-pressureThe back-pressure Interface Configuration (Ethernet, port-channel) mode command enables back pressure on a given interface. To disable ba
clear countersThe clear counters User EXEC mode command clears statistics on an interface.Syntaxclear counters [ethernet interface | port-channel por
set interface activeThe set interface active Privileged EXEC mode command reactivates an interface that was shutdown.Syntaxset interface active {ethe
show interfaces advertiseThe show interfaces advertise Privileged EXEC mode command displays autonegotiation data.Syntax show interfaces advertise [e
ch3 Enabledch4 Enabledch5 Enabledch6 EnabledTL-SG3109/TL-SL3428/TL-SL3452 Gigabit Managed Switch Family CLI Reference GuidePage 85
show interfaces configurationThe show interfaces configuration Privileged EXEC mode command displays the configuration for all config-ured interfaces
show interfaces statusThe show interfaces status Privileged EXEC mode command displays the status of all configured interfaces.Syntax show interfaces
ch1 Not Presentch2 Not Presentch3 Not Presentch4 Not Presentch5 Not Presentch6 Not PresentTL-SG3109/TL-SL3428/TL-SL3452 Gigabit Managed Switch Family
end...281 help..
show interfaces descriptionThe show interfaces description Privileged EXEC mode command displays the description for all configured interfaces. Syntax
show interfaces countersThe show interfaces counters User EXEC mode command displays traffic seen by the physical interface.Syntaxshow interfaces cou
The following example displays counters for Ethernet port 1.The following table describes the fields shown in the display:30 0 0 040 0 0 050 0 0 060 0
Single Collision Frames Counted frames that are involved in a single collision, and are subsequently transmitted successfully.Late Collisions Number
port storm-control include-multicastThe port storm-control include-multicast Interface Configuration (Ethernet) mode command counts multicast packets
port storm-control broadcast enableThe port storm-control broadcast enable Interface Configuration (Ethernet) mode command enables broadcast storm co
port storm-control broadcast rateThe port storm-control broadcast rate Interface Configuration (Ethernet) mode command configures the maxi-mum broadca
show ports storm-controlThe show ports storm-control Privileged EXEC mode command displays the storm control configuration.Syntaxshow ports storm-con
Section 7. GVRP Commandsgvrp enable (Global)GARP VLAN Registration Protocol (GVRP) is an industry-standard protocol designed to propagate VLAN inform
gvrp enable (Interface)The gvrp enable Interface Configuration (Ethernet, port-channel) mode command enables GVRP on an interface. To disable GVRP on
Kommentare zu diesen Handbüchern