- Quick Links to Catalyst 4500 Series Switch Cisco IOS Commands
- Index
- Preface
- Command-Line Interface
- aaa accounting dot1x default start-stop group radius through instance
- interface port-channel through shape
- show access-group mode interface through show vtp
- snmp ifindex clear through vtp v2-mode
- Acronyms and Abbreviations
Index
Symbols
$ matches the end of a string 1-7
( ) in commands 1-11
* matches 0 or more sequences of a pattern 1-7
+ matches 1 or more sequences of a pattern 1-7
. matches any single character 1-7
? command 1-1
? matches 0 or 1 occurrence of a pattern 1-7
^ matches the beginning of a string 1-7
_ matches a comma (,), left brace ({), left parenthesis 1-7
" 1-10
Numerics
10-Gigabit Ethernet uplink
selecting 2-197
802.1Q trunk ports and native VLANs 2-842
802.1Q tunnel ports
configuring 2-786
802.1S Multiple Spanning Tree
802.1X
configuring for multiple hosts 2-154
configuring for single host 2-154
configuring multiple domains 2-154
disabling port control 2-147
enabling port control 2-147
802.1X Critical Authentication
disabling on a port 2-148
disabling on a VLAN 2-151
EAPOL
disabling send success packets 2-149
enabling send success packets 2-149
enabling on a port 2-148
enabling on a VLAN 2-151
returning delay time to default setting 2-150
setting delay time on a port 2-150
802.1X critical authentication
configure parameters 2-21
802.1X critical recovery delay, configuring 2-21
802.1X Port Based Authentication
debugging 802.1X Port Based Authentication 2-104
displaying port based authentication 2-482
enabling accounting for authentication sessions 2-4
enabling authentication on the system 2-165
enabling guest VLAN 2-152
enabling guest VLAN supplicant 2-146, 2-153
enabling manual control of auth state 2-161
enabling periodic re-authentication of the client 2-164
initializing re-authentication of dot1x ports 2-163
initializing state machines 2-156
receive session termination message upon reboot 2-5
setting maximum number for EAP requests 2-159
setting the reauthentication timer 2-166
A
abbreviating commands
context-sensitive help 1-1
Access Gateway Module
connecting to a module 2-18
connecting to a remote module 2-414
connecting to a specific remote module 2-426
access-group
displaying mac interface 2-609
show mode interface 2-445, 2-662
access groups
access-list hardware capture mode command 2-8
access lists
clearing an access template 2-69
defining ARP 2-17
displaying ARP information 2-448
See also ACLs, MAC ACLs, and VACLs
access maps
applying with VLAN filter 2-844
access-policies, applying using host-mode 2-25
ACLs
access-group mode 2-6
balancing hardware regions 2-12
determining ACL hardware programming 2-10
disabling hardware statistics 2-192
displaying mac access-group interface 2-609
enabling hardware statisctics 2-192
using ACL naming conventions for MAC ACLs 2-308
action clause
specifying drop or forward action in a VACL 2-13
addresses, configuring a maximum 2-380
adjacency
debugging the adjacency table 2-97
disabling the debug facility 2-97
displaying information about the adjacency table 2-446
displaying IPC table entries 2-97
aggregate policer
displaying information 2-663
aging time
displaying MAC address aging time 2-612
alarms
displaying operational status 2-490
alternation
description 1-10
anchoring
description 1-10
ARP
access list, displaying detailed information 2-448
defining access-lists 2-17
ARP inspection
enforce certain types of checking 2-214
ARP packet
deny based on DHCP bindings 2-136
permit based on DHCP bindings 2-359
changing the control-direction 2-19
configure actions for events
configuring the actions 2-22
configuring port-control 2-31
enabling reauthentication 2-30
enabling Webauth fallback 2-24
host-mode configuration 2-25
setting priority of methods 2-33
setting the timer 2-35
setting username 2-829
specifying the order of methods 2-28
using an MD5-type encryption method 2-829
verifying MD5 signature 2-831
verifying the checksum for Flash memory 2-831
authentication control-direction command 2-19
authentication critical recovery delay command 2-21
authentication event command 2-22
authentication fallback command 2-24
authentication host-mode 2-25
authentication methods, setting priority 2-33
authentication methods, specifying the order of attempts 2-28
authentication open command 2-27
authentication order command 2-28
authentication periodic command 2-30
authentication port-control command 2-31
authentication priority command 2-33
authentication timer, setting 2-35
authentication timer command 2-35
auth fail VLAN
enable on a port 2-146
set max number of attempts 2-145
Auth Manager
configuring
authentication timer 2-35
authorization state
enabling manual control 2-161
authorization state of a controlled port 2-161
automatic installation
displaying status 2-453
automatic medium-dependent interface crossover
Auto-MDIX
disabling 2-341
enabling 2-341
auto-negotiate interface speed
example 2-763
auto-QoS
configuring for VoIP 2-37
displaying configuration 2-454
B
baby giants
displaying the system MTU setting 2-694
setting the maximum Layer 2 payload size 2-810
BackboneFast
displaying debugging messages 2-123
displaying spanning tree status 2-684
enabling debugging 2-123
bandwidth command 2-41
bindings
store for DHCP snooping 2-225
BOOT environment variable
displaying information 2-457
bootflash
displaying information 2-455
BPDUs
debugging spanning tree activities 2-121
bridge protocol data units
broadcast
counters 2-94
broadcast suppression level
C
cable diagnostics
TDR
displaying test results 2-458
testing conditions of copper cables 2-812
call home
displaying information 2-460
e-mailing output 2-49
entering configuration submode 2-44
executing 2-49
manually send test message 2-52
receiving information 2-47
sending alert group message 2-50
submitting information 2-47
call home destination profiles
displaying 2-462
Catalyst 4507R 2-378
CDP
configuring tunneling encapsulation rate 2-296
displaying
neighbor information 2-465
enabling protocol tunneling for 2-291
set drop threshold for 2-294
CEF
displaying next-hop information 2-539
displaying VLAN configuration information 2-539
chassis
displaying
chassis MAC address ranges 2-606
current and peak traffic meter readings 2-606
percentage of backplane utilization 2-606
switching clock failure recovery mode 2-606
cisco-desktop
macro apply 2-320
Cisco Express Forwarding
cisco-phone
macro apply 2-322
cisco-router
macro apply 2-324
cisco-switch
macro apply 2-326
class-map command 2-60
class maps
defining the match criteria 2-334
clear commands
clearing Gigabit Ethernet interfaces 2-67
clearing IGMP group cache entries 2-76
clearing interface counters 2-62
clearing IP access lists 2-69, 2-70
clearing IP ARP inspection statistics VLAN 2-71
clearing IP DHCP snooping database statistics 2-75
clearing MFIB counters and routes 2-79
clearing MFIB fastdrop entries 2-80
clearing PAgP channel information 2-85
clearing QoS aggregate counters 2-88
clearing VLAN interfaces 2-68
clear energywise neighbors command 2-64
CLI string search
anchoring 1-10
expressions 1-7
filtering 1-6
multiple-character patterns 1-8
multipliers 1-9
parentheses for recall 1-11
searching outputs 1-6
single-character patterns 1-7
using 1-6
command modes
accessing privileged EXEC mode 1-5
exiting 1-5
understanding user EXEC and configuration modes 1-5
condition interface
debugging interface-related activities 2-99
condition vlan
debugging VLAN output 2-102
configuration, saving 1-11
configuring
root as secondary 2-747
configuring a SPAN session to monitor
limit SPAN source traffic 2-346
configuring critical recovery 2-21
configuring forward delay 2-743
configuring root as primary 2-747
CoPP
attaching
policy map to control plane 2-424
displaying
policy-map class information 2-638
entering configuration mode 2-92
removing
service policy from control plane 2-424
CoS
assigning to Layer 2 protocol packets 2-293
counters
clearing interface counters 2-62
critical authentication, configure 802.1X parameters 2-21
critical recovery, configuring 802.1X parameter 2-21
D
DAI
clear statistics 2-71
DBL
displaying qos dbl 2-664
debug commands
debugging backup events 2-98
debugging DHCP snooping events 2-109
debugging DHCP snooping messages 2-110
debugging EtherChannel/PAgP/shim 2-105
debugging IPC activity 2-108
debugging IP DHCP snooping security messages 2-111
debugging NVRAM activities 2-114
debugging PAgP activities 2-115
debugging port manager activities 2-118
debugging spanning tree activities 2-121
debugging spanning tree backbonefast 2-123
debugging spanning tree UplinkFast 2-126
debugging supervisor redundancy 2-120
debugging VLAN manager activities 2-127
displaying monitor activity 2-113
displaying the adjacency table 2-97
enabling debug dot1x 2-104
enabling debugging messages for ISL VLAN IDs 2-130
enabling debugging messages for VTP 2-131
enabling debugging of UDLD activity 2-132
enabling switch shim debugging 2-124
enabling VLAN manager file system error tests 2-128
limiting debugging output for VLANs 2-102
limiting interface debugging output 2-99
limiting output for debugging standby state changes 2-100
shortcut to the debug condition interface 2-107
debugging
activity monitoring 2-113
DHCP snooping events 2-109
DHCP snooping packets 2-110
IPC activities 2-108
IP DHCP snooping security packets 2-111
NVRAM activities 2-114
PAgP activities 2-115
PAgP shim 2-105
PM activities 2-118
spanning tree BackboneFast events 2-123
spanning tree switch shim 2-124
spanning tree UplinkFast events 2-126
VLAN manager activities 2-127
VLAN manager IOS file system error tests 2-128
VTP protocol debug messages 2-131
debug spanning tree switch 2-124
debug sw-vlan vtp 2-131
default form of a command, using 1-6
DHCP
clearing database statistics 2-75
DHCP bindings
configuring bindings 2-223
deny ARP packet based on matches 2-136
permit ARP packet based on matches 2-359
DHCP snooping
clearing binding entries 2-72
clearing database 2-74
displaying binding table 2-542
displaying configuration information 2-540
displaying status of DHCP database 2-545
displaying status of error detection 2-493
enabling DHCP globally 2-222
enabling IP source guard 2-262
enabling on a VLAN 2-232
enabling option 82 2-227, 2-229
enabling option-82 2-234
enabling rate limiting on an interface 2-230
enabling trust on an interface 2-231
establishing binding configuration 2-223
renew binding database 2-416
store generated bindings 2-225
diagnostic fpga soft-error recover aggressive command 2-142
diagnostic test
bootup packet memory 2-476
displaying attributes 2-470
display module-based results 2-472
running 2-144
show results for TDR 2-458
testing conditions of copper cables 2-812
displaying error disable recovery 2-494
displaying inline power status 2-653
displaying monitoring activity 2-113
displaying PoE policing and monitoring status 2-661
displaying SEEPROM information
GBIC 2-504
displaying SPAN session information 2-694, 2-766
document conventions 1-xx
document organization 1-xix
DoS
CoPP
attaching policy map to control plane 2-424
displaying policy-map class information 2-638
entering configuration mode 2-92
removing service policy from control plane 2-424
entering
CoPP configuration mode 2-92
DOS attack
protecting system's resources 2-209
drop threshold, Layer 2 protocol tunneling 2-294
dual-capable port
selecting a connector 2-343
duplex mode
configuring autonegotiation on an interface 2-168
configuring full duplex on an interface 2-168
configuring half duplex on an interface 2-168
dynamic ARP inspection
preventing 2-209
Dynamic Host Configuration Protocol
E
EAP
restarting authentication process 2-159
EIGRP (Enhanced IGRP)
filters
routing updates, preventing 2-356
enabling
debugging for UDLD 2-132
voice VLANs 2-779
enabling open access 2-27
EnergyWise
display power information through queries 2-177
display setting, status of entity and PoE ports 2-486
on an entity
enable, assign to domain, and set password 2-175
on an entity, enable and configure 2-170
on a PoE port
configuring on PoE port 2-172
energywise (global configuration) command 2-170, 2-172
energywise domain command 2-175
EnergyWise neighbor table, deleting 2-64
energywise query command 2-177
environmental
alarms 2-490
displaying information 2-490
status 2-490
temperature 2-490
erase a file 2-181
error disable detection
clearing error disable on an interface 2-65
enabling error disable detection 2-65, 2-184
enabling per-VLAN on BPDU guard 2-184
error-disabled state
displaying 2-523
error disable recovery
configuring recovery mechanism variables 2-186
displaying recovery timer information 2-494
enabling ARP inspection timeout 2-186
specifying recovery cause 2-186
EtherChannel
assigning interfaces to EtherChannel groups 2-53
debugging EtherChannel 2-105
debugging PAgP shim 2-105
debugging spanning tree activities 2-121
displaying information for a channel 2-496
removing interfaces from EtherChannel groups 2-53
EtherChannel guard
detecting STP misconfiguration 2-733
Explicit Host Tracking
clearing the database 2-78
enabling per-VLAN 2-246
expressions
matching multiple expression occurrences 1-9
multiple-character patterns 1-8
multiplying pattern occurrence 1-11
single-character patterns 1-7
Extensible Authentication Protocol
F
fallback profile, specifying 2-24
field replaceable unit (FRU)
displaying status information 2-490
filters
EIGRP
routing updates, preventing 2-356
Flash memory file system
displaying file system information 2-455
verifying checksum 2-831
flow control
configuring a gigabit interface for pause frames 2-189
displaying per-interface statistics for flow control 2-500
G
GBIC
displaying SEEPROM information 2-504
Gigabit Ethernet interface
clearing the hardware logic 2-67
Gigabit Ethernet uplink
selecting 2-197
global configuration mode
using 1-5
H
hardware module
resetting a module by toggling the power 2-194
hardware statistics
disabling 2-192
enabling 2-192
hardware uplink
selecting the mode 2-197
helper addresses, IP 2-560
hot standby protocol
debugging 2-100
disabling debugging 2-100
limiting output 2-100
hw-module uplink mode shared-backplane command 2-195
I
IDPROMs
displaying SEEPROM information
chassis 2-504
clock module 2-504
fan trays 2-504
module 2-504
mux buffer 2-504
power supplies 2-504
supervisor engine 2-504
ifIndex persistence
clearing SNMP ifIndex commands 2-717
compress SNMP ifIndex table format 2-726
disabling globally 2-725
disabling on an interface 2-719
enabling globally 2-725
enabling on an interface 2-719
IGMP
applying filters for host joining on Layer 2 interfaces 2-236
clearing IGMP group cache entries 2-76
configuring frequency for IGMP host-query messages 2-239
creating an IGMP profile 2-238
displaying IGMP interface configuration information 2-547
displaying profiles 2-549
setting maximum group numbers 2-237
IGMP profiles
displaying 2-549
IGMP snooping
clearing the EHT database 2-78
configuring a Layer 2 interface as a group member 2-252
configuring a Layer 2 interface as a multicast router 2-250
configuring a static VLAN interface 2-252
displaying multicast information 2-556
displaying VLAN information 2-550, 2-554, 2-557
enabling 2-241
enabling immediate-leave processing 2-248
enabling on a VLAN 2-245
enabling per-VLAN Explicit Host Tracking 2-246
informs
enabling 2-721
inline power
displaying inline power status 2-653
In Service Software Upgrade
inspection log
clearing log buffer 2-70
interface
displaying suppressed multicast bytes 2-517
interface capabilities
displaying 2-513
interface configuration mode
summary 1-5
interface link
display cable disconnect time 2-520
interfaces
configuring dot1q tunnel ports 2-786
creating an interface-range macro 2-135
debugging output of interface related activities 2-99
displaying description 2-519
displaying error-disabled state 2-523
displaying information when tunneling is enabled 2-600
displaying status 2-519
displaying traffic for a specific interface 2-510
entering interface configuration mode 2-201
executing a command on multiple ports in a range 2-204
selecting an interface to configure 2-201
setting a CoS value for Layer 2 packets 2-293
setting drop threshold for Layer 2 packets 2-294
setting the interface type 2-786
interface speed
configuring interface speed 2-761
interface transceiver
displaying diagnostic data 2-527
internal VLAN allocation
configuring 2-845
default setting 2-845
displaying allocation information 2-706
Internet Group Management Protocol
IP ARP
applying ARP ACL to VLAN 2-207
clearing inspection statistics 2-71
clearing status of log buffer 2-70
controlling packet logging 2-218
enabling dynamic inspection 2-216
limit rate of incoming requests 2-209
set per-port config trust state 2-213
showing status of dynamic ARP inspection 2-534
showing status of log buffer 2-537
IPC
debugging IPC activities 2-108
IP DHCP Snooping
IP header validation
disabling 2-261
enabling 2-261
IP interfaces
displaying usability status 2-559
IP multicast
displaying multicast routing table information 2-565
IP phone and standard desktop
enabling Cisco-recommended features 2-322
IP Port Security
enabling 2-262
IP source binding
adding or deleting 2-258
displaying bindingstagging 2-570
IP source guard
debugging messages 2-111
displaying configuration and filters 2-571
enabling on DHCP snooping 2-262
IPv6 MLD
configuring queries 2-268, 2-270
configuring snooping last-listener-query-intervals 2-270
configuring snooping listener-message-suppression 2-272
configuring snooping robustness-variables 2-273
configuring tcn topology change notifications 2-275
counting snooping last-listener-queries 2-268
displaying information 2-576
displaying ports for a switch or VLAN 2-578
displaying querier information 2-579
enabling snooping 2-266
enabling snooping on a VLAN 2-276
ISSU
canceling process 2-278
configuring rollback timer 2-290
displaying capability 2-581
displaying client information 2-583
displaying compatibility matrix 2-585
displaying endpoint information 2-590
displaying entities 2-591
displaying FSM session 2-592
displaying messages 2-593
displaying negotiated 2-595
displaying rollback-timer 2-596
displaying session information 2-597
displaying software version 2-598
displaying state 2-598
forcing switchover to standby supervisor engine 2-288
initiating an automatic ISSU upgrade procedure 2-282
loading new image 2-284
starting process 2-286
stopping rollback timer 2-280
J
Jumbo frames
enabling jumbo frames 2-352
L
LACP
deselecting channeling protocol 2-55
enabling LACP on an interface 2-55
setting channeling protocol 2-55
lacp port-priority command 2-298
lacp system-priority command 2-299
Layer 2
displaying ACL configuration 2-609
Layer 2 interface type
specifying a nontrunking, nontagged single VLAN interface 2-786
specifying a trunking VLAN interface 2-786
Layer 2 protocol ports
displaying 2-600
Layer 2 protocol tunneling error recovery 2-296
Layer 2 switching
enabling voice VLANs 2-779
modifying switching characteristics 2-779
Layer 2 traceroute
IP addresses 2-817
Layer 3 switching
displaying information about an adjacency table 2-446
displaying port status 2-525
displaying status of native VLAN tagging 2-525
link-status event messages
disabling
enabling
log buffer
show status 2-537
logging
controlling IP ARP packets 2-218
M
MAB, display information 2-606
MAB, enable and configure 2-306
mab command 2-306
MAC Access Control Lists
MAC ACLs
defining extended MAC access list 2-308
displaying MAC ACL information 2-703
naming an ACL 2-308
MAC addresses
disabling MAC address learning per VLAN 2-315
MAC address filtering
configuring 2-319
disabling 2-319
enabling 2-319
MAC address learning on a VLAN, enabling 2-315
MAC address table
adding static entries 2-331
clearing dynamic entries 2-82, 2-84
displaying dynamic table entry information 2-616
displaying entry count 2-614
displaying information 2-610
displaying interface-based information 2-618
displaying multicast information 2-620
displaying notification information 2-622
displaying protocol-based information 2-624
displaying static table entry information 2-626
displaying the MAC address aging time 2-612
displaying VLAN-based information 2-629
enabling authentication bypass 2-157
enabling notifications 2-317
learning in the protocol buckets 2-312
removing static entries 2-331
mac address-table learning vlan command 2-315
MAC address tables
adding static entries 2-319
deleting secure or specific addresses 2-86
disabling IGMP snooping on static MAC addresses 2-319
removing static entries 2-319
mac-address-table static 2-319
MAC address unicast filtering
dropping unicast traffic 2-319
MAC authentication bypass (MAB), display information 2-606
MAC authorization bypass(MAB), enable and configure 2-306
macro
displaying descriptions 2-330
macro keywords
help strings 2-2
macros
adding a global description 2-330
cisco global 2-328
system-cpp 2-329
mapping secondary VLANs to MST instance 2-399
mapping VLAN(s) to an MST instance 2-199
match (class-map configuration) command 2-14, 2-138, 2-139, 2-140, 2-141, 2-334, 2-767, 2-769, 2-771, 2-773, 2-777
maximum transmission unit (MTU)
displaying the system MTU setting 2-694
setting the maximum Layer 2 payload size 2-810
MD5
verifying MD5 signature 2-831
message digest 5
MFIB
clearing ip mfib counters 2-79
clearing ip mfib fastdrop 2-80
displaying all active MFIB routes 2-562
displaying MFIB fastdrop table entries 2-564
enabling IP MFIB fastdrops 2-255
MLD
configuring snooping last-listener-query-intervals 2-270
configuring snooping listener-message-suppression 2-272
configuring snooping robustness-variables 2-273
configuring topology change notifications 2-275
counting snooping last-listener-queries 2-268
enabling snooping 2-266
enabling snooping on a VLAN 2-276
MLD snooping
displaying 2-579
modes
access-group 2-6
show access-group interface 2-445, 2-662
switching between PVST+, MST, and Rapid PVST 2-738
module password clearing 2-66
module reset
resetting a module by toggling the power 2-194
--More-- prompt
filter 1-6
search 1-7
MST
designating the primary and secondary root 2-747
displaying MST protocol information 2-689
displaying region configuration information 2-689
displaying spanning tree information 2-689
entering MST configuration submode 2-741
setting configuration revision number 2-418
setting path cost and port priority for instances 2-739
setting the forward delay timer for all instances 2-743
setting the hello-time delay timer for all instances 2-744
setting the max-age timer for all instances 2-745
setting the MST region name 2-353
specifying the maximum number of hops 2-746
switching between PVST+ and Rapid PVST 2-738
using the MST configuration submode revision command 2-418
using the submode name command 2-353
MTU
displaying global MTU settings 2-694
multi-auth, setting 2-25
Multicase Listener Discovery
multicast
counters 2-94
enabling storm control 2-766
multicast/unicast packets
prevent forwarding 2-785
Multicast Forwarding Information Base
multi-domain, setting 2-25
multiple-character patterns 1-8
Multiple Spanning Tree
N
native VLAN
controlling tagging of traffic 2-806
displaying ports eligible for native tagging 2-705
displaying ports eligible for tagging 2-705
enabling tagging on 802.1Q trunk ports 2-842
specifing the tagging of traffic 2-807
NetFlow
enabling NetFlow statistics 2-256
including infer fields in routing statistics 2-256
next-hop
displaying CEF VLAN information 2-539
no form of a command, using 1-6
NVRAM
debugging NVRAM activities 2-114
O
open access on a port, enabling 2-27
output
pattern searches 1-7
P
packet forwarding
prevent unknown packets 2-785
packet memory failure
direct switch action upon detection 2-143
packet memory test
bootup, displaying results 2-476, 2-478
ongoing, displaying results 2-480
PACL
access-group mode 2-6
paging prompt
PAgP
clearing port channel information 2-85
debugging PAgP activity 2-115
deselecting channeling protocol 2-55
displaying port channel information 2-635
hot standby mode
returning to defaults 2-355
selecting ports 2-355
input interface of incoming packets
learning 2-354
returning to defaults 2-354
setting channeling protocol 2-55
parentheses 1-11
password
clearing on an intelligent line module 2-66
establishing enhanced password security 2-829
setting username 2-829
PBR
redistributing route maps 1-xx
PM activities
debugging 2-118
disabling debugging 2-118
PoE policing
configure on an interface 2-386
PoE policing and monitoring
displaying status 2-661
police (percent) command 2-366
police (two rates) command 2-368, 2-370
police command 2-361
policing, configure PoE 2-386
policing and monitoring status
displaying PoE 2-661
Policy Based Routing
policy maps
creating 2-374
marking 2-428
See also QoS, hierarchical policies
traffic classification
defining trust states 2-820
port, dual-capable
selecting the connector 2-343
Port Aggregation Protocol
port-based authentication
displaying debug messages 2-104
displaying statistics and status 2-482
enabling 802.1X 2-161
host modes 2-154
manual control of authorization state 2-161
periodic re-authentication
enabling 2-164
re-authenticating 802.1X-enabled ports 2-163
switch-to-client frame-retransmission number 2-159
port channel
accessing 2-203
creating 2-203
displaying information 2-635
load distribution method
resetting to defaults 2-376
setting 2-376
port control, changing from unidirectional or bidirectional 2-19
port-control value, configuring 2-31
port range
executing 2-204
port security
debugging ports security 2-119
deleting secure or specific addresses 2-86
displaying settings for an interface or switch 2-646
enabling 2-791
filter source IP and MAC addresses 2-262
setting action upon security violation 2-791
setting the rate limit for bad packets 2-791
sticky port 2-791
Port Trust Device
displaying 2-665
power status
displaying inline power 2-653
displaying power status 2-653
power supply
configuring combined and redundant power on the Catalyst 4507R 2-378
configuring inline power 2-383
configuring power consumption 2-378
displaying the SEEPROM 2-504
setting inline power state 2-382
priority command 2-390
priority-queue command 2-95
Private VLAN
privileged EXEC mode, summary 1-5
prompts
system 1-5
protocol tunneling
configuring encapsulation rate 2-296
disabling 2-291
displaying port information 2-600
enabling 2-291
setting a CoS value for Layer 2 packets 2-293
setting a drop threshold for Layer 2 packets 2-294
PVLANs
configuring isolated, primary, and community PVLANs 2-392
controlling tagging of native VLAN traffic 2-806
disabling sticky-ARP 2-259
displaying map information for VLAN SVIs 2-522
displaying PVLAN information 2-708
enabling interface configuration mode 2-786
enabling sticky-ARP 2-259
mapping VLANs to the same SVI 2-396
specifying host ports 2-786
specifying promiscuous ports 2-786
PVST+
switching between PVST and MST 2-738
Q
QoS
account Layer 2 encapsulation 2-402
attaching a policy-map to an interface 2-419
automatic configuration 2-37
class maps
defining the match criteria 2-334
clearing aggregate counters 2-88
configuring auto 2-37
displaying aggregate policer information 2-663
displaying auto configuration 2-454
displaying class maps information 2-468
displaying configuration information 2-454
displaying configurations of policies 2-641
displaying policy map information 2-637, 2-644
displaying QoS information 2-662
displaying QoS map information 2-667
egress queue-sets
enabling the priority queue 2-95
hierarchical policies
average-rate traffic shaping on a class 2-441
bandwidth allocation for a class 2-41, 2-59
creating a service policy 2-422
marking 2-428
strict priority queueing (LLQ) 2-390
policy maps
creating 2-374
marking 2-428
trust states 2-820
setting the trust state 2-404
specifying flow-based match criteria 2-337
Supervisor Engine 6-E
setting CoS 2-430
setting DSCP 2-433
setting precedence values 2-436
setting QoS group identifiers 2-439
QoS CoS
configuring for tunneled Layer 2 protocol packets 2-293
quality of service
question command 1-1
queueing information
displaying 2-665
queue limiting
configuring packet limits 2-406
R
Rapid PVST
switching between PVST and MST 2-738
re-authenticating 802.1X-enabled ports 2-163
re-authentication
periodic 2-164
set the time 2-166
reauthentication, enabling 2-30
reboots
restoring bindings across 2-223
redundancy
accessing the main CPU 2-408
changing from active to standby supervisor engine 2-412
displaying information 2-669
displaying ISSU config-sync failure information 2-673
displaying redundancy facility information 2-669
displaying RF client list 2-669
displaying RF operational counters 2-669
displaying RF states 2-669
enabling automatic synchronization 2-40
forcing switchover to standby supervisor engine 2-412
mismatched command listing 2-410
set the mode 2-344
synchronizing the route processor configurations 2-331
related documentation 1-xix
remote SPAN
renew commands
ip dhcp snooping database 2-416
resetting PVLAN trunk
setting switchport to trunk 2-786
retry failed authentiation, configuring 2-22
rj45 connector, selecting the connector 2-343
ROM monitor mode
summary 1-6
Route Processor Redundancy
RPF
disabling IPv4 exists-only checks 2-264
enabling IPv4 exists-only checks 2-264
RPR
set the redundancy mode 2-344
RSPAN
converting VLAN to RSPAN VLAN 2-415
displaying list 2-710
S
saving configuration changes 1-11
secure address, configuring 2-378
secure ports, limitations 2-792
server (AAA) alive actions, configuring 2-22
server (AAA) dead actions, configuring 2-22
service-policy command (policy-map class) 2-422
session classification, defining 2-25
set the redundancy mode 2-344
sfp connector, selecting the connector 2-343
shape command 2-441
show authentication interface command 2-449
show authentication registration command 2-449
show authentication sessions command 2-449
show commands
filtering parameters 1-7
searching and filtering 1-6
show platform commands 1-11
show energywise command 2-486
show mab command 2-606
Simple Network Management Protocol
single-character patterns
special characters 1-7
single-host, setting 2-25
slaveslot0
displaying information on the standby supervisor 2-680
slot0
displaying information about the system 2-682
SNMP
debugging spanning tree activities 2-121
ifIndex persistence
clearing SNMP ifIndex commands 2-717
compress SNMP ifIndex table format 2-726
disabling globally 2-725
disabling on an interface 2-719
enabling globally 2-725
enabling on an interface 2-719
informs
disabling 2-721
enabling 2-721
traps
configuring to send when storm occurs 2-764
disabling 2-721
enabling 2-721
mac-notification
adding 1
removing 1
SPAN commands
configuring a SPAN session to monitor 2-346
displaying SPAN session information 2-694, 2-766
SPAN enhancements
displaying status 2-633
Spanning Tree Protocol
SPAN session
displaying session information 2-633
filter ACLs 2-346
specify encap type 2-346
turn off host learning based on ingress packets 2-346
special characters
anchoring, table 1-10
SSO 2-344
standard desktop
enabling Cisco-recommended features 2-320
standard desktop and Cisco IP phone
enabling Cisco-recommended features 2-322
sticky address, configuring 2-379
sticky-ARP
disabling on PVLANs 2-259
enabling on PVLANs 2-259
sticky port
deleting 2-86
enabling security 2-791
storm control
configuring for action when storm occurs 2-764
disabling suppression mode 2-493
displaying settings 2-692
enabling 2-764
enabling broadcast 2-764, 2-766
enabling multicast 2-764, 2-766
enabling suppression mode 2-493
enabling timer to recover from error disable 2-186
multicast, enabling 2-766
setting high and low levels 2-764
setting suppression level 2-493
STP
configuring link type for a port 2-736
configuring tunneling encapsulation rate 2-296
debugging all activities 2-121
debugging spanning tree activities 2-121
debugging spanning tree BackboneFast events 2-123
debugging spanning tree UplinkFast 2-126
detecting misconfiguration 2-733
displaying active interfaces only 2-684
displaying BackboneFast status 2-684
displaying bridge status and configuration 2-684
displaying spanning tree debug messages 2-121
displaying summary of interface information 2-684
enabling BPDU filtering by default on all PortFast ports 2-752
enabling BPDU filtering on an interface 2-729
enabling BPDU guard by default on all PortFast ports 2-754
enabling BPDU guard on an interface 2-731
enabling extended system ID 2-734
enabling loop guard as a default on all ports 2-737
enabling PortFast by default on all access ports 2-755
enabling PortFast mode 2-750
enabling protocol tunneling for 2-291
enabling root guard 2-735
enabling spanning tree BackboneFast 2-728
enabling spanning tree on a per VLAN basis 2-759
enabling spanning tree UplinkFast 2-757
setting an interface priority 2-756
setting drop threshold for 2-294
setting pathcost 2-732
setting the default pathcost calculation method 2-749
subinterface configuration mode, summary 1-6
SVI
creating a Layer 3 interface on a VLAN 2-206
switching characteristics
excluding from link-up calculation 2-783
modifying 2-783
returning to interfaces
capture function 2-783
switchport 2-807
switchport interfaces
displaying status of Layer 3 port 2-525
displaying status of native VLAN tagging 2-525
switch shim
debugging 2-124
disabling debugging 2-124
switch to router connection
enabling Cisco-recommended features 2-324
switch to switch connection
enabling Cisco-recommended features 2-326
switch virtual interface
sw-vlan 2-127
system prompts 1-5
T
Tab key
command completion 1-1
tables
characters with special meaning 1-7
mac access-list extended subcommands 2-308
multipliers 1-9
relationship between duplex and speed commands 2-762
show cable-diagnostics tdr command output fields 2-459
show cdp neighbors detail field descriptions 2-467
show cdp neighbors field descriptions 2-466
show ip dhcp snooping command output 2-450, 2-606
show ip interface field descriptions 2-560
show policy-map control-plane field descriptions 2-640
show vlan command output fields 2-709
show vtp command output fields 2-714
special characters 1-9
special characters used for anchoring 1-10
speed command options 2-337, 2-762
valid interface types 2-201
TAC
displaying information useful to TAC 2-695
TCAM
debugging spanning tree activities 2-121
TDR
displaying cable diagnostic test results 2-458
test condition of copper cables 2-812
temperature readings
displaying information 2-490
timer information 2-494
traffic monitor
display status 2-606
traffic shaping
enable on an interface 2-443
traps, enabling 2-721
trunk encapsulation
setting format 2-807
trunk interfaces
displaying trunk interfaces information 2-532
trust state
setting 2-213
tunnel ports
displaying information about Layer 2 protocol 2-600
TX queues
allocating bandwidth 2-822
returning to default values 2-822
setting priority to high 2-822
specifying burst size 2-822
specifying traffic rate 2-822
U
UDLD
displaying administrative and operational status 2-697
enabling by default on all fiber interfaces 2-824
enabling on an individual interface 2-826
preventing a fiber interface from being enabled 2-826
resetting all shutdown ports 2-828
setting the message timer 2-824
unicast
counters 2-94
Unidirectional Link Detection
unidirection port control, changing from bidirectional 2-19
unknown multicast traffic, preventing 2-785
unknown unicast traffic, preventing 2-785
user EXEC mode, summary 1-5
username
setting password and privilege level 2-829
V
VACLs
access-group mode 2-6
applying VLAN access maps 2-844
displaying VLAN access map information 2-703
specifying an action in a VLAN access map 2-13
specifying the match clause for a VLAN access-map sequence 2-332
using a VLAN filter 2-844
VLAN
applying an ARP ACL 2-207
configuring 2-833
configuring service policies 2-838
converting to RSPAN VLAN 2-415
displaying CEF information 2-539
displaying CEF next-hop information 2-539
displaying information on switch interfaces 2-550, 2-554
displaying information on VLAN switch interfaces 2-557
displaying information sorted by group IP address 2-550, 2-554
displaying IP address and version information 2-550, 2-554
displaying Layer 2 VLAN information 2-699
displaying statistical information 2-631
displaying VLAN information 2-701
enabling dynamic ARP inspection 2-216
enabling Explicit Host Tracking 2-246
enabling guest per-port 2-152
enabling guest VLAN supplicant 2-146, 2-153
entering VLAN configuration mode 2-838, 2-840
native frames
enabling tagging on all 802.1Q trunk ports 2-842
pruning the list for VTP 2-807
setting the list of allowed 2-807
VLAN Access Control Lists
VLAN access map
VLAN database
resetting 2-417
VLAN debugging
limiting output 2-102
VLAN link-up calculation
excluding a switch port 2-783
including a switch port 2-783
VLAN manager
debugging 2-127
disabling debugging 2-127
IOS file system error tests
debugging 2-128
disabling debugging 2-128
VLAN Query Protocol
VLAN query protocol (VQPC)
debugging 2-134
VLANs
clearing
counters 2-90
clearing hardware logic 2-68
configuring
internal allocation scheme 2-845
displaying
internal VLAN allocation information 2-706
RSPAN VLANs 2-710
entering VLAN configuration mode 2-840
VMPS
configuring servers 2-849
reconfirming dynamic VLAN assignments 2-134, 2-847
voice VLANs
enabling 2-779
VoIP
configuring auto-QoS 2-37
VQP
per-server retry count 2-848
reconfirming dynamic VLAN assignments 2-134, 2-847
VTP
configuring the administrative domain name 2-853
configuring the device in VTP client mode 2-852
configuring the device in VTP server mode 2-856
configuring the device in VTP transparent mode 2-857
configuring tunnel encapsulation rate 2-296
creating a VTP domain password 2-854
displaying domain information 2-713
displaying statistics information 2-713
enabling protocol tunneling for 2-291
enabling pruning in the VLAN database 2-855
enabling VTP version 2 mode 2-858
modifying the VTP configuration storage file name 2-851
set drop threshold for 2-294
VTP protocol code
activating debug messages 2-131
deactivating debug messages 2-131
W
Webauth fallback, enabling 2-24