ECS3510-26P_Management Guide R02
Table Of Contents
- About This Guide
- Contents
- Figures
- Tables
- Getting Started
- Web Configuration
- Using the Web Interface
- Basic Management Tasks
- Displaying System Information
- Displaying Hardware/Software Versions
- Configuring Support for Jumbo Frames
- Displaying Bridge Extension Capabilities
- Managing System Files
- Setting the System Clock
- Configuring the Console Port
- Configuring Telnet Settings
- Displaying CPU Utilization
- Displaying Memory Utilization
- Resetting the System
- Interface Configuration
- VLAN Configuration
- Address Table Settings
- Spanning Tree Algorithm
- Congestion Control
- Class of Service
- Quality of Service
- VoIP Traffic Configuration
- Security Measures
- AAA Authorization and Accounting
- Configuring User Accounts
- Web Authentication
- Network Access (MAC Address Authentication)
- Configuring HTTPS
- Configuring the Secure Shell
- Access Control Lists
- ARP Inspection
- Filtering IP Addresses for Management Access
- Configuring Port Security
- Configuring 802.1X Port Authentication
- IP Source Guard
- DHCP Snooping
- DoS Protection
- Basic Administration Protocols
- IP Configuration
- IP Services
- Multicast Filtering
- Command Line Interface
- Using the Command Line Interface
- General Commands
- System Management Commands
- SNMP Commands
- Remote Monitoring Commands
- Authentication Commands
- User Accounts
- Authentication Sequence
- RADIUS Client
- TACACS+ Client
- AAA
- Web Server
- Telnet Server
- Secure Shell
- 802.1X Port Authentication
- dot1x default
- dot1x eapol-pass-through
- dot1x system-auth-control
- dot1x intrusion-action
- dot1x max-req
- dot1x operation-mode
- dot1x port-control
- dot1x re-authentication
- dot1x timeout quiet-period
- dot1x timeout re-authperiod
- dot1x timeout supp-timeout
- dot1x timeout tx-period
- dot1x re-authenticate
- dot1x identity profile
- dot1x max-start
- dot1x pae supplicant
- dot1x timeout auth-period
- dot1x timeout held-period
- dot1x timeout start-period
- show dot1x
- Management IP Filter
- General Security Measures
- Port Security
- Network Access (MAC Address Authentication)
- network-access aging
- network-access mac-filter
- mac-authentication reauth-time
- network-access dynamic-qos
- network-access dynamic-vlan
- network-access guest-vlan
- network-access link-detection
- network-access link-detection link-down
- network-access link-detection link-up
- network-access link-detection link-up-down
- network-access max-mac-count
- network-access mode mac-authentication
- network-access port-mac-filter
- mac-authentication intrusion-action
- mac-authentication max-mac-count
- clear network-access
- show network-access
- show network-access mac-address-table
- show network- access mac-filter
- Web Authentication
- DHCP Snooping
- IP Source Guard
- ARP Inspection
- ip arp inspection
- ip arp inspection filter
- ip arp inspection log-buffer logs
- ip arp inspection validate
- ip arp inspection vlan
- ip arp inspection limit
- ip arp inspection trust
- show ip arp inspection configuration
- show ip arp inspection interface
- show ip arp inspection log
- show ip arp inspection statistics
- show ip arp inspection vlan
- Denial of Service Protection
- Access Control Lists
- Interface Commands
- Link Aggregation Commands
- Port Mirroring Commands
- Rate Limit Commands
- Automatic Traffic Control Commands
- Threshold Commands
- SNMP Trap Commands
- snmp-server enable port-traps atc broadcast-alarm- clear
- snmp-server enable port-traps atc broadcast-alarm-fire
- snmp-server enable port-traps atc broadcast-control- apply
- snmp-server enable port-traps atc broadcast-control- release
- snmp-server enable port-traps atc multicast-alarm- clear
- snmp-server enable port-traps atc multicast-alarm-fire
- snmp-server enable port-traps atc multicast-control- apply
- snmp-server enable port-traps atc multicast-control- release
- ATC Display Commands
- Address Table Commands
- Spanning Tree Commands
- spanning-tree
- spanning-tree cisco-prestandard
- spanning-tree forward-time
- spanning-tree hello-time
- spanning-tree max-age
- spanning-tree mode
- spanning-tree pathcost method
- spanning-tree priority
- spanning-tree mst configuration
- spanning-tree transmission-limit
- max-hops
- mst priority
- mst vlan
- name
- revision
- spanning-tree bpdu-filter
- spanning-tree bpdu-guard
- spanning-tree cost
- spanning-tree edge- port
- spanning-tree link-type
- spanning-tree loopback-detection
- spanning-tree loopback-detection action
- spanning-tree loopback-detection release-mode
- spanning-tree loopback-detection trap
- spanning-tree mst cost
- spanning-tree mst port-priority
- spanning-tree port-priority
- spanning-tree root-guard
- spanning-tree spanning-disabled
- spanning-tree loopback-detection release
- spanning-tree protocol-migration
- show spanning-tree
- show spanning-tree mst configuration
- VLAN Commands
- Class of Service Commands
- Quality of Service Commands
- Multicast Filtering Commands
- IGMP Snooping
- ip igmp snooping
- ip igmp snooping proxy-reporting
- ip igmp snooping querier
- ip igmp snooping router-alert-option- check
- ip igmp snooping router-port-expire- time
- ip igmp snooping tcn-flood
- ip igmp snooping tcn-query-solicit
- ip igmp snooping unregistered-data- flood
- ip igmp snooping unsolicited-report- interval
- ip igmp snooping version
- ip igmp snooping version-exclusive
- ip igmp snooping vlan general-query- suppression
- ip igmp snooping vlan immediate- leave
- ip igmp snooping vlan last-memb- query-count
- ip igmp snooping vlan last-memb- query-intvl
- ip igmp snooping vlan mrd
- ip igmp snooping vlan proxy-address
- ip igmp snooping vlan query-interval
- ip igmp snooping vlan query-resp- intvl
- ip igmp snooping vlan static
- show ip igmp snooping
- show ip igmp snooping mrouter
- show ip igmp snooping group
- Static Multicast Routing
- IGMP Filtering and Throttling
- Multicast VLAN Registration
- IGMP Snooping
- LLDP Commands
- lldp
- lldp holdtime-multiplier
- lldp med-fast-start- count
- lldp notification-interval
- lldp refresh-interval
- lldp reinit-delay
- lldp tx-delay
- lldp admin-status
- lldp basic-tlv management-ip- address
- lldp basic-tlv port-description
- lldp basic-tlv system-capabilities
- lldp basic-tlv system-description
- lldp basic-tlv system-name
- lldp dot1-tlv proto-ident
- lldp dot1-tlv proto-vid
- lldp dot1-tlv pvid
- lldp dot1-tlv vlan-name
- lldp dot3-tlv link-agg
- lldp dot3-tlv max-frame
- lldp med-location civic-addr
- lldp med-notification
- lldp med-tlv ext-poe
- lldp med-tlv inventory
- lldp med-tlv location
- lldp med-tlv med-cap
- lldp med-tlv network-policy
- lldp notification
- show lldp config
- show lldp info local-device
- show lldp info remote-device
- show lldp info statistics
- Domain Name Service Commands
- DHCP Commands
- IP Interface Commands
- Appendices
- Glossary
- Command List
- Index
I
NDEX
– 1019 –
DSCP 245, 866
enabling 246, 866
mapping to internal values 247, 864
DSCP ingress map, drop precedence
248, 864
DSCP to PHB/drop precedence 248, 864
dynamic addresses
clearing
199, 791
displaying 198, 791
Dynamic Host Configuration Protocol See DHCP
dynamic QoS assignment
297, 301, 669
dynamic VLAN assignment 297, 301, 670
E
edge port, STA 216, 218, 809
encryption
DSA
313, 315, 641
RSA 313, 315, 641
engine ID
400, 401, 589
event logging 369, 555
excess burst size, QoS policy 262, 877, 879
exec command privileges, accounting
284, 623
exec settings
accounting 284, 627
authorization
289, 625, 628
F
firmware
displaying version 98, 532
upgrading 102, 536
upgrading automatically
107, 541
upgrading with FTP or TFP 107, 536
version, displaying 98, 532
G
GARP VLAN Registration Protocol See GVRP
gateway, IPv4 default
443, 963
gateway, IPv6 default
445, 971
general security measures 275, 663
GNU license
999
GVRP
enabling 176, 822
global setting
176, 822
interface configuration
176, 824
H
hardware version, displaying 98, 532
HTTP, web server
630
HTTPS
306, 308, 631
configuring
306, 631
replacing SSL certificate
308, 536
secure-site certificate
308, 536
UDP port, configuring
307, 631
HTTPS, secure server
306, 631
I
IEEE 802.1D 203, 799
IEEE 802.1s 203, 799
IEEE 802.1w
203, 799
IEEE 802.1X 342, 645, 647
IGMP
filter profiles, binding to interface
492, 910
filter profiles, configuration 489, 908
filter, interface configuration
492, 910–911
filter, parameters 489, 907–911
filtering & throttling 488, 907
filtering & throttling, enabling
489, 907
filtering & throttling, interface configuration 492,
910
filtering & throttling, status
488, 907
filtering, configuring profile 489, 909
filtering, creating profile 489, 490, 908
filtering, group range
490, 909
filtering, interface settings 910–911
groups, displaying 481, 905
Layer 2
472, 887
query 472, 474, 890
query, enabling 477, 890
services, displaying
487, 905
snooping 472, 887
snooping & query, parameters 474, 887
snooping, configuring
474, 887
snooping, enabling 474, 889
snooping, immediate leave 483, 897
IGMP snooping
configuring
482, 887
enabling per interface 482, 483, 889
forwarding entries
487, 905
immediate leave, status 483, 897
interface attached to multicast router 479, 904,
906
last leave 473
last member query count
485, 898
last member query interval
485, 898
proxy query address
486, 900
proxy query interval 485, 901
proxy query response interval
485, 902
proxy reporting
475, 484, 889
querier timeout
476, 891
querier, enabling
477, 890
query suppression
473
router port expire time
476, 891
static host interface
473, 903
static multicast routing
477, 906
static port assignment
480, 903
static router interface
473, 906
static router port, configuring
477, 906
TCN flood
475, 892
unregistered data flooding
476, 893
version exclusive
476, 895
version for interface, setting
485, 895
version, setting
477, 895
with proxy reporting 473, 889
immediate leave, IGMP snooping
483, 897