Symbols - Numerics - A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V - W -

Index

Symbols

$ matches the end of a string 1-7

( ) in commands 1-11

* matches 0 or more sequences of a pattern 1-7

+ matches 1 or more sequences of a pattern 1-7

. matches any single character 1-7

? command 1-1

? matches 0 or 1 occurrence of a pattern 1-7

^ matches the beginning of a string 1-7

_ matches a comma (,), left brace ({), left parenthesis 1-7

" 1-10

Numerics

10-Gigabit Ethernet uplink

selecting 2-197

showing the mode 2-502, 2-503

802.1Q trunk ports and native VLANs 2-842

802.1Q tunnel ports

configuring 2-786

802.1S Multiple Spanning Tree

see MST

802.1X

configuring for multiple hosts 2-154

configuring for single host 2-154

configuring multiple domains 2-154

disabling port control 2-147

enabling port control 2-147

802.1X Critical Authentication

disabling on a port 2-148

disabling on a VLAN 2-151

EAPOL

disabling send success packets 2-149

enabling send success packets 2-149

enabling on a port 2-148

enabling on a VLAN 2-151

returning delay time to default setting 2-150

setting delay time on a port 2-150

802.1X critical authentication

configure parameters 2-21

802.1X critical recovery delay, configuring 2-21

802.1X Port Based Authentication

debugging 802.1X Port Based Authentication 2-104

displaying port based authentication 2-482

enabling accounting for authentication sessions 2-4

enabling authentication on the system 2-165

enabling guest VLAN 2-152

enabling guest VLAN supplicant 2-146, 2-153

enabling manual control of auth state 2-161

enabling periodic re-authentication of the client 2-164

initializing re-authentication of dot1x ports 2-163

initializing state machines 2-156

receive session termination message upon reboot 2-5

setting maximum number for EAP requests 2-159

setting the reauthentication timer 2-166

A

abbreviating commands

context-sensitive help 1-1

Access Gateway Module

connecting to a module 2-18

connecting to a remote module 2-414

connecting to a specific remote module 2-426

access-group

displaying mac interface 2-609

show mode interface 2-445, 2-662

access groups

IP 2-6, 2-142

access-list hardware capture mode command 2-8

access lists

clearing an access template 2-69

defining ARP 2-17

displaying ARP information 2-448

See also ACLs, MAC ACLs, and VACLs

access maps

applying with VLAN filter 2-844

access-policies, applying using host-mode 2-25

ACLs

access-group mode 2-6

balancing hardware regions 2-12

determining ACL hardware programming 2-10

disabling hardware statistics 2-192

displaying mac access-group interface 2-609

enabling hardware statisctics 2-192

using ACL naming conventions for MAC ACLs 2-308

action clause

specifying drop or forward action in a VACL 2-13

addresses, configuring a maximum 2-380

adjacency

debugging the adjacency table 2-97

disabling the debug facility 2-97

displaying information about the adjacency table 2-446

displaying IPC table entries 2-97

aggregate policer

displaying information 2-663

aging time

displaying MAC address aging time 2-612

alarms

displaying operational status 2-490

alternation

description 1-10

anchoring

description 1-10

ARP

access list, displaying detailed information 2-448

defining access-lists 2-17

ARP inspection

enforce certain types of checking 2-214

ARP packet

deny based on DHCP bindings 2-136

permit based on DHCP bindings 2-359

authentication 2-21, 2-27

changing the control-direction 2-19

configure actions for events

configuring the actions 2-22

configuring port-control 2-31

enabling reauthentication 2-30

enabling Webauth fallback 2-24

host-mode configuration 2-25

setting priority of methods 2-33

setting the timer 2-35

setting username 2-829

specifying the order of methods 2-28

using an MD5-type encryption method 2-829

verifying MD5 signature 2-831

verifying the checksum for Flash memory 2-831

authentication control-direction command 2-19

authentication critical recovery delay command 2-21

authentication event command 2-22

authentication fallback command 2-24

authentication host-mode 2-25

authentication methods, setting priority 2-33

authentication methods, specifying the order of attempts 2-28

authentication open command 2-27

authentication order command 2-28

authentication periodic command 2-30

authentication port-control command 2-31

authentication priority command 2-33

authentication timer, setting 2-35

authentication timer command 2-35

auth fail VLAN

enable on a port 2-146

set max number of attempts 2-145

Auth Manager

configuring

authentication timer 2-35

authorization state

enabling manual control 2-161

authorization state of a controlled port 2-161

automatic installation

displaying status 2-453

automatic medium-dependent interface crossover

See Auto-MDIX

Auto-MDIX

disabling 2-341

enabling 2-341

auto-negotiate interface speed

example 2-763

auto-QoS

configuring for VoIP 2-37

displaying configuration 2-454

B

baby giants

displaying the system MTU setting 2-694

setting the maximum Layer 2 payload size 2-810

BackboneFast

displaying debugging messages 2-123

displaying spanning tree status 2-684

enabling debugging 2-123

bandwidth command 2-41

bindings

store for DHCP snooping 2-225

BOOT environment variable

displaying information 2-457

bootflash

displaying information 2-455

BPDUs

debugging spanning tree activities 2-121

bridge protocol data units

See BPDUs

broadcast

counters 2-94

broadcast suppression level

configuring 2-764, 2-766

enabling 2-764, 2-766

C

cable diagnostics

TDR

displaying test results 2-458

testing conditions of copper cables 2-812

call home

displaying information 2-460

e-mailing output 2-49

entering configuration submode 2-44

executing 2-49

manually send test message 2-52

receiving information 2-47

sending alert group message 2-50

submitting information 2-47

call home destination profiles

displaying 2-462

Catalyst 4507R 2-378

CDP

configuring tunneling encapsulation rate 2-296

displaying

neighbor information 2-465

enabling protocol tunneling for 2-291

set drop threshold for 2-294

CEF

displaying next-hop information 2-539

displaying VLAN configuration information 2-539

chassis

displaying

chassis MAC address ranges 2-606

current and peak traffic meter readings 2-606

percentage of backplane utilization 2-606

switching clock failure recovery mode 2-606

cisco-desktop

macro apply 2-320

Cisco Express Forwarding

See CEF

cisco-phone

macro apply 2-322

cisco-router

macro apply 2-324

cisco-switch

macro apply 2-326

class-map command 2-60

class maps

defining the match criteria 2-334

clear commands

clearing Gigabit Ethernet interfaces 2-67

clearing IGMP group cache entries 2-76

clearing interface counters 2-62

clearing IP access lists 2-69, 2-70

clearing IP ARP inspection statistics VLAN 2-71

clearing IP DHCP snooping database statistics 2-75

clearing MFIB counters and routes 2-79

clearing MFIB fastdrop entries 2-80

clearing PAgP channel information 2-85

clearing QoS aggregate counters 2-88

clearing VLAN interfaces 2-68

clear energywise neighbors command 2-64

CLI string search

anchoring 1-10

expressions 1-7

filtering 1-6

multiple-character patterns 1-8

multipliers 1-9

parentheses for recall 1-11

searching outputs 1-6

single-character patterns 1-7

using 1-6

command modes

accessing privileged EXEC mode 1-5

exiting 1-5

understanding user EXEC and configuration modes 1-5

condition interface

debugging interface-related activities 2-99

condition vlan

debugging VLAN output 2-102

configuration, saving 1-11

configuring

root as secondary 2-747

configuring a SPAN session to monitor

limit SPAN source traffic 2-346

configuring critical recovery 2-21

configuring forward delay 2-743

configuring root as primary 2-747

CoPP

attaching

policy map to control plane 2-424

displaying

policy-map class information 2-638

entering configuration mode 2-92

removing

service policy from control plane 2-424

CoS

assigning to Layer 2 protocol packets 2-293

counters

clearing interface counters 2-62

critical authentication, configure 802.1X parameters 2-21

critical recovery, configuring 802.1X parameter 2-21

D

DAI

clear statistics 2-71

DBL

displaying qos dbl 2-664

debug commands

debugging backup events 2-98

debugging DHCP snooping events 2-109

debugging DHCP snooping messages 2-110

debugging EtherChannel/PAgP/shim 2-105

debugging IPC activity 2-108

debugging IP DHCP snooping security messages 2-111

debugging NVRAM activities 2-114

debugging PAgP activities 2-115

debugging port manager activities 2-118

debugging spanning tree activities 2-121

debugging spanning tree backbonefast 2-123

debugging spanning tree UplinkFast 2-126

debugging supervisor redundancy 2-120

debugging VLAN manager activities 2-127

displaying monitor activity 2-113

displaying the adjacency table 2-97

enabling debug dot1x 2-104

enabling debugging messages for ISL VLAN IDs 2-130

enabling debugging messages for VTP 2-131

enabling debugging of UDLD activity 2-132

enabling switch shim debugging 2-124

enabling VLAN manager file system error tests 2-128

limiting debugging output for VLANs 2-102

limiting interface debugging output 2-99

limiting output for debugging standby state changes 2-100

shortcut to the debug condition interface 2-107

debugging

activity monitoring 2-113

DHCP snooping events 2-109

DHCP snooping packets 2-110

IPC activities 2-108

IP DHCP snooping security packets 2-111

NVRAM activities 2-114

PAgP activities 2-115

PAgP shim 2-105

PM activities 2-118

spanning tree BackboneFast events 2-123

spanning tree switch shim 2-124

spanning tree UplinkFast events 2-126

VLAN manager activities 2-127

VLAN manager IOS file system error tests 2-128

VTP protocol debug messages 2-131

debug spanning tree switch 2-124

debug sw-vlan vtp 2-131

default form of a command, using 1-6

DHCP

clearing database statistics 2-75

DHCP bindings

configuring bindings 2-223

deny ARP packet based on matches 2-136

permit ARP packet based on matches 2-359

DHCP snooping

clearing binding entries 2-72

clearing database 2-74

displaying binding table 2-542

displaying configuration information 2-540

displaying status of DHCP database 2-545

displaying status of error detection 2-493

enabling DHCP globally 2-222

enabling IP source guard 2-262

enabling on a VLAN 2-232

enabling option 82 2-227, 2-229

enabling option-82 2-234

enabling rate limiting on an interface 2-230

enabling trust on an interface 2-231

establishing binding configuration 2-223

renew binding database 2-416

store generated bindings 2-225

diagnostic fpga soft-error recover aggressive command 2-142

diagnostic test

bootup packet memory 2-476

displaying attributes 2-470

display module-based results 2-472

running 2-144

show results for TDR 2-458

testing conditions of copper cables 2-812

displaying error disable recovery 2-494

displaying inline power status 2-653

displaying monitoring activity 2-113

displaying PoE policing and monitoring status 2-661

displaying SEEPROM information

GBIC 2-504

displaying SPAN session information 2-694, 2-766

document conventions 1-xx

document organization 1-xix

DoS

CoPP

attaching policy map to control plane 2-424

displaying policy-map class information 2-638

entering configuration mode 2-92

removing service policy from control plane 2-424

entering

CoPP configuration mode 2-92

DOS attack

protecting system's resources 2-209

drop threshold, Layer 2 protocol tunneling 2-294

dual-capable port

selecting a connector 2-343

duplex mode

configuring autonegotiation on an interface 2-168

configuring full duplex on an interface 2-168

configuring half duplex on an interface 2-168

dynamic ARP inspection

preventing 2-209

Dynamic Host Configuration Protocol

See DHCP

E

EAP

restarting authentication process 2-159

EDCS-587028 2-449, 2-606

EIGRP (Enhanced IGRP)

filters

routing updates, preventing 2-356

enabling

debugging for UDLD 2-132

voice VLANs 2-779

enabling open access 2-27

EnergyWise

display power information through queries 2-177

display setting, status of entity and PoE ports 2-486

on an entity

enable, assign to domain, and set password 2-175

on an entity, enable and configure 2-170

on a PoE port

configuring on PoE port 2-172

energywise (global configuration) command 2-170, 2-172

energywise domain command 2-175

EnergyWise neighbor table, deleting 2-64

energywise query command 2-177

environmental

alarms 2-490

displaying information 2-490

status 2-490

temperature 2-490

erase a file 2-181

error disable detection

clearing error disable on an interface 2-65

enabling error disable detection 2-65, 2-184

enabling per-VLAN on BPDU guard 2-184

error-disabled state

displaying 2-523

error disable recovery

configuring recovery mechanism variables 2-186

displaying recovery timer information 2-494

enabling ARP inspection timeout 2-186

specifying recovery cause 2-186

EtherChannel

assigning interfaces to EtherChannel groups 2-53

debugging EtherChannel 2-105

debugging PAgP shim 2-105

debugging spanning tree activities 2-121

displaying information for a channel 2-496

removing interfaces from EtherChannel groups 2-53

EtherChannel guard

detecting STP misconfiguration 2-733

Explicit Host Tracking

clearing the database 2-78

enabling per-VLAN 2-246

expressions

matching multiple expression occurrences 1-9

multiple-character patterns 1-8

multiplying pattern occurrence 1-11

single-character patterns 1-7

Extensible Authentication Protocol

See EAP

F

fallback profile, specifying 2-24

field replaceable unit (FRU)

displaying status information 2-490

filters

EIGRP

routing updates, preventing 2-356

Flash memory file system

displaying file system information 2-455

verifying checksum 2-831

flow control

configuring a gigabit interface for pause frames 2-189

displaying per-interface statistics for flow control 2-500

G

GBIC

displaying SEEPROM information 2-504

Gigabit Ethernet interface

clearing the hardware logic 2-67

Gigabit Ethernet uplink

selecting 2-197

showing the mode 2-502, 2-503

global configuration mode

using 1-5

H

hardware module

resetting a module by toggling the power 2-194

hardware statistics

disabling 2-192

enabling 2-192

hardware uplink

selecting the mode 2-197

showing the mode 2-502, 2-503

helper addresses, IP 2-560

hot standby protocol

debugging 2-100

disabling debugging 2-100

limiting output 2-100

hw-module uplink mode shared-backplane command 2-195

I

IDPROMs

displaying SEEPROM information

chassis 2-504

clock module 2-504

fan trays 2-504

module 2-504

mux buffer 2-504

power supplies 2-504

supervisor engine 2-504

ifIndex persistence

clearing SNMP ifIndex commands 2-717

compress SNMP ifIndex table format 2-726

disabling globally 2-725

disabling on an interface 2-719

enabling globally 2-725

enabling on an interface 2-719

IGMP

applying filters for host joining on Layer 2 interfaces 2-236

clearing IGMP group cache entries 2-76

configuring frequency for IGMP host-query messages 2-239

creating an IGMP profile 2-238

displaying IGMP interface configuration information 2-547

displaying profiles 2-549

setting maximum group numbers 2-237

IGMP profiles

displaying 2-549

IGMP snooping

clearing the EHT database 2-78

configuring a Layer 2 interface as a group member 2-252

configuring a Layer 2 interface as a multicast router 2-250

configuring a static VLAN interface 2-252

displaying multicast information 2-556

displaying VLAN information 2-550, 2-554, 2-557

enabling 2-241

enabling immediate-leave processing 2-248

enabling on a VLAN 2-245

enabling per-VLAN Explicit Host Tracking 2-246

informs

enabling 2-721

inline power

displaying inline power status 2-653

In Service Software Upgrade

See ISSU

inspection log

clearing log buffer 2-70

interface

displaying suppressed multicast bytes 2-517

interface capabilities

displaying 2-513

interface configuration mode

summary 1-5

interface link

display cable disconnect time 2-520

interfaces

configuring dot1q tunnel ports 2-786

creating an interface-range macro 2-135

debugging output of interface related activities 2-99

displaying description 2-519

displaying error-disabled state 2-523

displaying information when tunneling is enabled 2-600

displaying status 2-519

displaying traffic for a specific interface 2-510

entering interface configuration mode 2-201

executing a command on multiple ports in a range 2-204

selecting an interface to configure 2-201

setting a CoS value for Layer 2 packets 2-293

setting drop threshold for Layer 2 packets 2-294

setting the interface type 2-786

interface speed

configuring interface speed 2-761

interface transceiver

displaying diagnostic data 2-527

internal VLAN allocation

configuring 2-845

default setting 2-845

displaying allocation information 2-706

Internet Group Management Protocol

See IGMP

IP ARP

applying ARP ACL to VLAN 2-207

clearing inspection statistics 2-71

clearing status of log buffer 2-70

controlling packet logging 2-218

enabling dynamic inspection 2-216

limit rate of incoming requests 2-209

set per-port config trust state 2-213

showing status of dynamic ARP inspection 2-534

showing status of log buffer 2-537

IPC

debugging IPC activities 2-108

IP DHCP Snooping

See DHCP snooping

IP header validation

disabling 2-261

enabling 2-261

IP interfaces

displaying usability status 2-559

IP multicast

displaying multicast routing table information 2-565

IP phone and standard desktop

enabling Cisco-recommended features 2-322

IP Port Security

enabling 2-262

IP source binding

adding or deleting 2-258

displaying bindingstagging 2-570

IP source guard

debugging messages 2-111

displaying configuration and filters 2-571

enabling on DHCP snooping 2-262

IPv6 MLD

configuring queries 2-268, 2-270

configuring snooping last-listener-query-intervals 2-270

configuring snooping listener-message-suppression 2-272

configuring snooping robustness-variables 2-273

configuring tcn topology change notifications 2-275

counting snooping last-listener-queries 2-268

displaying information 2-576

displaying ports for a switch or VLAN 2-578

displaying querier information 2-579

enabling snooping 2-266

enabling snooping on a VLAN 2-276

ISSU

canceling process 2-278

configuring rollback timer 2-290

displaying capability 2-581

displaying client information 2-583

displaying compatibility matrix 2-585

displaying endpoint information 2-590

displaying entities 2-591

displaying FSM session 2-592

displaying messages 2-593

displaying negotiated 2-595

displaying rollback-timer 2-596

displaying session information 2-597

displaying software version 2-598

displaying state 2-598

forcing switchover to standby supervisor engine 2-288

initiating an automatic ISSU upgrade procedure 2-282

loading new image 2-284

starting process 2-286

stopping rollback timer 2-280

J

Jumbo frames

enabling jumbo frames 2-352

L

LACP

deselecting channeling protocol 2-55

enabling LACP on an interface 2-55

setting channeling protocol 2-55

lacp port-priority command 2-298

lacp system-priority command 2-299

Layer 2

displaying ACL configuration 2-609

Layer 2 interface type

specifying a nontrunking, nontagged single VLAN interface 2-786

specifying a trunking VLAN interface 2-786

Layer 2 protocol ports

displaying 2-600

Layer 2 protocol tunneling error recovery 2-296

Layer 2 switching

enabling voice VLANs 2-779

modifying switching characteristics 2-779

Layer 2 traceroute

IP addresses 2-817

Layer 3 switching

displaying information about an adjacency table 2-446

displaying port status 2-525

displaying status of native VLAN tagging 2-525

link-status event messages

disabling

globally 2-300, 2-303

on an interface 2-301, 2-304

enabling

globally 2-300, 2-303

on an interface 2-301, 2-304

log buffer

show status 2-537

logging

controlling IP ARP packets 2-218

M

MAB, display information 2-606

MAB, enable and configure 2-306

mab command 2-306

MAC Access Control Lists

See MAC ACLs

MAC ACLs

defining extended MAC access list 2-308

displaying MAC ACL information 2-703

naming an ACL 2-308

MAC addresses

disabling MAC address learning per VLAN 2-315

MAC address filtering

configuring 2-319

disabling 2-319

enabling 2-319

MAC address learning on a VLAN, enabling 2-315

MAC address table

adding static entries 2-331

clearing dynamic entries 2-82, 2-84

displaying dynamic table entry information 2-616

displaying entry count 2-614

displaying information 2-610

displaying interface-based information 2-618

displaying multicast information 2-620

displaying notification information 2-622

displaying protocol-based information 2-624

displaying static table entry information 2-626

displaying the MAC address aging time 2-612

displaying VLAN-based information 2-629

enabling authentication bypass 2-157

enabling notifications 2-317

learning in the protocol buckets 2-312

removing static entries 2-331

mac address-table learning vlan command 2-315

MAC address tables

adding static entries 2-319

deleting secure or specific addresses 2-86

disabling IGMP snooping on static MAC addresses 2-319

removing static entries 2-319

mac-address-table static 2-319

MAC address unicast filtering

dropping unicast traffic 2-319

MAC authentication bypass (MAB), display information 2-606

MAC authorization bypass(MAB), enable and configure 2-306

macro

displaying descriptions 2-330

macro keywords

help strings 2-2

macros

adding a global description 2-330

cisco global 2-328

system-cpp 2-329

mapping secondary VLANs to MST instance 2-399

mapping VLAN(s) to an MST instance 2-199

match (class-map configuration) command 2-14, 2-138, 2-139, 2-140, 2-141, 2-334, 2-767, 2-769, 2-771, 2-773, 2-777

maximum transmission unit (MTU)

displaying the system MTU setting 2-694

setting the maximum Layer 2 payload size 2-810

MD5

verifying MD5 signature 2-831

message digest 5

See MD5

MFIB

clearing ip mfib counters 2-79

clearing ip mfib fastdrop 2-80

displaying all active MFIB routes 2-562

displaying MFIB fastdrop table entries 2-564

enabling IP MFIB fastdrops 2-255

MLD

configuring snooping last-listener-query-intervals 2-270

configuring snooping listener-message-suppression 2-272

configuring snooping robustness-variables 2-273

configuring topology change notifications 2-275

counting snooping last-listener-queries 2-268

enabling snooping 2-266

enabling snooping on a VLAN 2-276

MLD snooping

displaying 2-579

modes

access-group 2-6

show access-group interface 2-445, 2-662

switching between PVST+, MST, and Rapid PVST 2-738

See also command modes

module password clearing 2-66

module reset

resetting a module by toggling the power 2-194

--More-- prompt

filter 1-6

search 1-7

MST

designating the primary and secondary root 2-747

displaying MST protocol information 2-689

displaying region configuration information 2-689

displaying spanning tree information 2-689

entering MST configuration submode 2-741

setting configuration revision number 2-418

setting path cost and port priority for instances 2-739

setting the forward delay timer for all instances 2-743

setting the hello-time delay timer for all instances 2-744

setting the max-age timer for all instances 2-745

setting the MST region name 2-353

specifying the maximum number of hops 2-746

switching between PVST+ and Rapid PVST 2-738

using the MST configuration submode revision command 2-418

using the submode name command 2-353

MTU

displaying global MTU settings 2-694

multi-auth, setting 2-25

Multicase Listener Discovery

See MLD

multicast

counters 2-94

enabling storm control 2-766

multicast/unicast packets

prevent forwarding 2-785

Multicast Forwarding Information Base

See MFIB

multi-domain, setting 2-25

multiple-character patterns 1-8

Multiple Spanning Tree

See MST

N

native VLAN

controlling tagging of traffic 2-806

displaying ports eligible for native tagging 2-705

displaying ports eligible for tagging 2-705

enabling tagging on 802.1Q trunk ports 2-842

specifing the tagging of traffic 2-807

NetFlow

enabling NetFlow statistics 2-256

including infer fields in routing statistics 2-256

next-hop

displaying CEF VLAN information 2-539

no form of a command, using 1-6

NVRAM

debugging NVRAM activities 2-114

O

open access on a port, enabling 2-27

output

pattern searches 1-7

P

packet forwarding

prevent unknown packets 2-785

packet memory failure

direct switch action upon detection 2-143

packet memory test

bootup, displaying results 2-476, 2-478

ongoing, displaying results 2-480

PACL

access-group mode 2-6

paging prompt

see --More-- prompt

PAgP

clearing port channel information 2-85

debugging PAgP activity 2-115

deselecting channeling protocol 2-55

displaying port channel information 2-635

hot standby mode

returning to defaults 2-355

selecting ports 2-355

input interface of incoming packets

learning 2-354

returning to defaults 2-354

setting channeling protocol 2-55

parentheses 1-11

password

clearing on an intelligent line module 2-66

establishing enhanced password security 2-829

setting username 2-829

PBR

displaying route maps 1-xx

redistributing route maps 1-xx

PM activities

debugging 2-118

disabling debugging 2-118

PoE policing

configure on an interface 2-386

PoE policing and monitoring

displaying status 2-661

police (percent) command 2-366

police (two rates) command 2-368, 2-370

police command 2-361

policing, configure PoE 2-386

policing and monitoring status

displaying PoE 2-661

Policy Based Routing

See PBR

policy maps

creating 2-374

marking 2-428

See also QoS, hierarchical policies

traffic classification

defining the class

defining trust states 2-820

port, dual-capable

selecting the connector 2-343

Port Aggregation Protocol

See PAgP

port-based authentication

displaying debug messages 2-104

displaying statistics and status 2-482

enabling 802.1X 2-161

host modes 2-154

manual control of authorization state 2-161

periodic re-authentication

enabling 2-164

re-authenticating 802.1X-enabled ports 2-163

switch-to-client frame-retransmission number 2-159

port channel

accessing 2-203

creating 2-203

displaying information 2-635

load distribution method

resetting to defaults 2-376

setting 2-376

port control, changing from unidirectional or bidirectional 2-19

port-control value, configuring 2-31

port range

executing 2-204

port security

debugging ports security 2-119

deleting secure or specific addresses 2-86

displaying settings for an interface or switch 2-646

enabling 2-791

filter source IP and MAC addresses 2-262

setting action upon security violation 2-791

setting the rate limit for bad packets 2-791

sticky port 2-791

Port Trust Device

displaying 2-665

power status

displaying inline power 2-653

displaying power status 2-653

power supply

configuring combined and redundant power on the Catalyst 4507R 2-378

configuring inline power 2-383

configuring power consumption 2-378

displaying the SEEPROM 2-504

setting inline power state 2-382

priority command 2-390

priority-queue command 2-95

Private VLAN

See PVLANs

privileged EXEC mode, summary 1-5

prompts

system 1-5

protocol tunneling

configuring encapsulation rate 2-296

disabling 2-291

displaying port information 2-600

enabling 2-291

setting a CoS value for Layer 2 packets 2-293

setting a drop threshold for Layer 2 packets 2-294

PVLANs

configuring isolated, primary, and community PVLANs 2-392

controlling tagging of native VLAN traffic 2-806

disabling sticky-ARP 2-259

displaying map information for VLAN SVIs 2-522

displaying PVLAN information 2-708

enabling interface configuration mode 2-786

enabling sticky-ARP 2-259

mapping VLANs to the same SVI 2-396

specifying host ports 2-786

specifying promiscuous ports 2-786

PVST+

switching between PVST and MST 2-738

Q

QoS

account Layer 2 encapsulation 2-402

attaching a policy-map to an interface 2-419

automatic configuration 2-37

class maps

defining the match criteria 2-334

clearing aggregate counters 2-88

configuring auto 2-37

displaying aggregate policer information 2-663

displaying auto configuration 2-454

displaying class maps information 2-468

displaying configuration information 2-454

displaying configurations of policies 2-641

displaying policy map information 2-637, 2-644

displaying QoS information 2-662

displaying QoS map information 2-667

egress queue-sets

enabling the priority queue 2-95

hierarchical policies

average-rate traffic shaping on a class 2-441

bandwidth allocation for a class 2-41, 2-59

creating a service policy 2-422

marking 2-428

strict priority queueing (LLQ) 2-390

policy maps

creating 2-374

marking 2-428

traffic classifications

trust states 2-820

setting the trust state 2-404

specifying flow-based match criteria 2-337

Supervisor Engine 6-E

setting CoS 2-430

setting DSCP 2-433

setting precedence values 2-436

setting QoS group identifiers 2-439

QoS CoS

configuring for tunneled Layer 2 protocol packets 2-293

quality of service

See QoS

question command 1-1

queueing information

displaying 2-665

queue limiting

configuring packet limits 2-406

R

Rapid PVST

switching between PVST and MST 2-738

re-authenticating 802.1X-enabled ports 2-163

re-authentication

periodic 2-164

set the time 2-166

reauthentication, enabling 2-30

reboots

restoring bindings across 2-223

redundancy

accessing the main CPU 2-408

changing from active to standby supervisor engine 2-412

displaying information 2-669

displaying ISSU config-sync failure information 2-673

displaying redundancy facility information 2-669

displaying RF client list 2-669

displaying RF operational counters 2-669

displaying RF states 2-669

enabling automatic synchronization 2-40

forcing switchover to standby supervisor engine 2-412

mismatched command listing 2-410

set the mode 2-344

synchronizing the route processor configurations 2-331

related documentation 1-xix

remote SPAN

See RSPAN

renew commands

ip dhcp snooping database 2-416

resetting PVLAN trunk

setting switchport to trunk 2-786

retry failed authentiation, configuring 2-22

rj45 connector, selecting the connector 2-343

ROM monitor mode

summary 1-6

Route Processor Redundancy

See redundancy

RPF

disabling IPv4 exists-only checks 2-264

enabling IPv4 exists-only checks 2-264

RPR

set the redundancy mode 2-344

RSPAN

converting VLAN to RSPAN VLAN 2-415

displaying list 2-710

S

saving configuration changes 1-11

secure address, configuring 2-378

secure ports, limitations 2-792

server (AAA) alive actions, configuring 2-22

server (AAA) dead actions, configuring 2-22

service-policy command (policy-map class) 2-422

session classification, defining 2-25

set the redundancy mode 2-344

sfp connector, selecting the connector 2-343

shape command 2-441

show authentication interface command 2-449

show authentication registration command 2-449

show authentication sessions command 2-449

show commands

filtering parameters 1-7

searching and filtering 1-6

show platform commands 1-11

show energywise command 2-486

show mab command 2-606

Simple Network Management Protocol

See SNMP

single-character patterns

special characters 1-7

single-host, setting 2-25

slaveslot0

displaying information on the standby supervisor 2-680

slot0

displaying information about the system 2-682

SNMP

debugging spanning tree activities 2-121

ifIndex persistence

clearing SNMP ifIndex commands 2-717

compress SNMP ifIndex table format 2-726

disabling globally 2-725

disabling on an interface 2-719

enabling globally 2-725

enabling on an interface 2-719

informs

disabling 2-721

enabling 2-721

traps

configuring to send when storm occurs 2-764

disabling 2-721

enabling 2-721

mac-notification

adding     1

removing     1

SPAN commands

configuring a SPAN session to monitor 2-346

displaying SPAN session information 2-694, 2-766

SPAN enhancements

displaying status 2-633

Spanning Tree Protocol

See STP

SPAN session

displaying session information 2-633

filter ACLs 2-346

specify encap type 2-346

turn off host learning based on ingress packets 2-346

special characters

anchoring, table 1-10

SSO 2-344

standard desktop

enabling Cisco-recommended features 2-320

standard desktop and Cisco IP phone

enabling Cisco-recommended features 2-322

sticky address, configuring 2-379

sticky-ARP

disabling on PVLANs 2-259

enabling on PVLANs 2-259

sticky port

deleting 2-86

enabling security 2-791

storm control

configuring for action when storm occurs 2-764

disabling suppression mode 2-493

displaying settings 2-692

enabling 2-764

enabling broadcast 2-764, 2-766

enabling multicast 2-764, 2-766

enabling suppression mode 2-493

enabling timer to recover from error disable 2-186

enabling unicast 2-764, 2-766

multicast, enabling 2-766

setting high and low levels 2-764

setting suppression level 2-493

STP

configuring link type for a port 2-736

configuring tunneling encapsulation rate 2-296

debugging all activities 2-121

debugging spanning tree activities 2-121

debugging spanning tree BackboneFast events 2-123

debugging spanning tree UplinkFast 2-126

detecting misconfiguration 2-733

displaying active interfaces only 2-684

displaying BackboneFast status 2-684

displaying bridge status and configuration 2-684

displaying spanning tree debug messages 2-121

displaying summary of interface information 2-684

enabling BPDU filtering by default on all PortFast ports 2-752

enabling BPDU filtering on an interface 2-729

enabling BPDU guard by default on all PortFast ports 2-754

enabling BPDU guard on an interface 2-731

enabling extended system ID 2-734

enabling loop guard as a default on all ports 2-737

enabling PortFast by default on all access ports 2-755

enabling PortFast mode 2-750

enabling protocol tunneling for 2-291

enabling root guard 2-735

enabling spanning tree BackboneFast 2-728

enabling spanning tree on a per VLAN basis 2-759

enabling spanning tree UplinkFast 2-757

setting an interface priority 2-756

setting drop threshold for 2-294

setting pathcost 2-732

setting the default pathcost calculation method 2-749

subinterface configuration mode, summary 1-6

SVI

creating a Layer 3 interface on a VLAN 2-206

switching characteristics

excluding from link-up calculation 2-783

modifying 2-783

returning to interfaces

capture function 2-783

switchport 2-807

switchport interfaces

displaying status of Layer 3 port 2-525

displaying status of native VLAN tagging 2-525

switch shim

debugging 2-124

disabling debugging 2-124

switch to router connection

enabling Cisco-recommended features 2-324

switch to switch connection

enabling Cisco-recommended features 2-326

switch virtual interface

See SVI

sw-vlan 2-127

system prompts 1-5

T

Tab key

command completion 1-1

tables

characters with special meaning 1-7

mac access-list extended subcommands 2-308

multipliers 1-9

relationship between duplex and speed commands 2-762

show cable-diagnostics tdr command output fields 2-459

show cdp neighbors detail field descriptions 2-467

show cdp neighbors field descriptions 2-466

show ip dhcp snooping command output 2-450, 2-606

show ip interface field descriptions 2-560

show policy-map control-plane field descriptions 2-640

show vlan command output fields 2-709

show vtp command output fields 2-714

special characters 1-9

special characters used for anchoring 1-10

speed command options 2-337, 2-762

valid interface types 2-201

TAC

displaying information useful to TAC 2-695

TCAM

debugging spanning tree activities 2-121

TDR

displaying cable diagnostic test results 2-458

test condition of copper cables 2-812

temperature readings

displaying information 2-490

timer information 2-494

traffic monitor

display status 2-606

traffic shaping

enable on an interface 2-443

traps, enabling 2-721

trunk encapsulation

setting format 2-807

trunk interfaces

displaying trunk interfaces information 2-532

trust state

setting 2-213

tunnel ports

displaying information about Layer 2 protocol 2-600

TX queues

allocating bandwidth 2-822

returning to default values 2-822

setting priority to high 2-822

specifying burst size 2-822

specifying traffic rate 2-822

U

UDLD

displaying administrative and operational status 2-697

enabling by default on all fiber interfaces 2-824

enabling on an individual interface 2-826

preventing a fiber interface from being enabled 2-826

resetting all shutdown ports 2-828

setting the message timer 2-824

unicast

counters 2-94

Unidirectional Link Detection

See UDLD

unidirection port control, changing from bidirectional 2-19

unknown multicast traffic, preventing 2-785

unknown unicast traffic, preventing 2-785

user EXEC mode, summary 1-5

username

setting password and privilege level 2-829

V

VACLs

access-group mode 2-6

applying VLAN access maps 2-844

displaying VLAN access map information 2-703

specifying an action in a VLAN access map 2-13

specifying the match clause for a VLAN access-map sequence 2-332

using a VLAN filter 2-844

VLAN

applying an ARP ACL 2-207

configuring 2-833

configuring service policies 2-838

converting to RSPAN VLAN 2-415

displaying CEF information 2-539

displaying CEF next-hop information 2-539

displaying information on switch interfaces 2-550, 2-554

displaying information on VLAN switch interfaces 2-557

displaying information sorted by group IP address 2-550, 2-554

displaying IP address and version information 2-550, 2-554

displaying Layer 2 VLAN information 2-699

displaying statistical information 2-631

displaying VLAN information 2-701

enabling dynamic ARP inspection 2-216

enabling Explicit Host Tracking 2-246

enabling guest per-port 2-152

enabling guest VLAN supplicant 2-146, 2-153

entering VLAN configuration mode 2-838, 2-840

native frames

enabling tagging on all 802.1Q trunk ports 2-842

pruning the list for VTP 2-807

setting the list of allowed 2-807

VLAN Access Control Lists

See VACLs

VLAN access map

See VACLs

VLAN database

resetting 2-417

VLAN debugging

limiting output 2-102

VLAN link-up calculation

excluding a switch port 2-783

including a switch port 2-783

VLAN manager

debugging 2-127

disabling debugging 2-127

IOS file system error tests

debugging 2-128

disabling debugging 2-128

VLAN Query Protocol

See VQP

VLAN query protocol (VQPC)

debugging 2-134

VLANs

clearing

counters 2-90

clearing hardware logic 2-68

configuring

internal allocation scheme 2-845

displaying

internal VLAN allocation information 2-706

RSPAN VLANs 2-710

entering VLAN configuration mode 2-840

VMPS

configuring servers 2-849

reconfirming dynamic VLAN assignments 2-134, 2-847

voice VLANs

enabling 2-779

VoIP

configuring auto-QoS 2-37

VQP

per-server retry count 2-848

reconfirming dynamic VLAN assignments 2-134, 2-847

VTP

configuring the administrative domain name 2-853

configuring the device in VTP client mode 2-852

configuring the device in VTP server mode 2-856

configuring the device in VTP transparent mode 2-857

configuring tunnel encapsulation rate 2-296

creating a VTP domain password 2-854

displaying domain information 2-713

displaying statistics information 2-713

enabling protocol tunneling for 2-291

enabling pruning in the VLAN database 2-855

enabling VTP version 2 mode 2-858

modifying the VTP configuration storage file name 2-851

set drop threshold for 2-294

VTP protocol code

activating debug messages 2-131

deactivating debug messages 2-131

W

Webauth fallback, enabling 2-24