ECS3510-26P_Management Guide R02
Table Of Contents
- About This Guide
- Contents
- Figures
- Tables
- Getting Started
- Web Configuration
- Using the Web Interface
- Basic Management Tasks
- Displaying System Information
- Displaying Hardware/Software Versions
- Configuring Support for Jumbo Frames
- Displaying Bridge Extension Capabilities
- Managing System Files
- Setting the System Clock
- Configuring the Console Port
- Configuring Telnet Settings
- Displaying CPU Utilization
- Displaying Memory Utilization
- Resetting the System
- Interface Configuration
- VLAN Configuration
- Address Table Settings
- Spanning Tree Algorithm
- Congestion Control
- Class of Service
- Quality of Service
- VoIP Traffic Configuration
- Security Measures
- AAA Authorization and Accounting
- Configuring User Accounts
- Web Authentication
- Network Access (MAC Address Authentication)
- Configuring HTTPS
- Configuring the Secure Shell
- Access Control Lists
- ARP Inspection
- Filtering IP Addresses for Management Access
- Configuring Port Security
- Configuring 802.1X Port Authentication
- IP Source Guard
- DHCP Snooping
- DoS Protection
- Basic Administration Protocols
- IP Configuration
- IP Services
- Multicast Filtering
- Command Line Interface
- Using the Command Line Interface
- General Commands
- System Management Commands
- SNMP Commands
- Remote Monitoring Commands
- Authentication Commands
- User Accounts
- Authentication Sequence
- RADIUS Client
- TACACS+ Client
- AAA
- Web Server
- Telnet Server
- Secure Shell
- 802.1X Port Authentication
- dot1x default
- dot1x eapol-pass-through
- dot1x system-auth-control
- dot1x intrusion-action
- dot1x max-req
- dot1x operation-mode
- dot1x port-control
- dot1x re-authentication
- dot1x timeout quiet-period
- dot1x timeout re-authperiod
- dot1x timeout supp-timeout
- dot1x timeout tx-period
- dot1x re-authenticate
- dot1x identity profile
- dot1x max-start
- dot1x pae supplicant
- dot1x timeout auth-period
- dot1x timeout held-period
- dot1x timeout start-period
- show dot1x
- Management IP Filter
- General Security Measures
- Port Security
- Network Access (MAC Address Authentication)
- network-access aging
- network-access mac-filter
- mac-authentication reauth-time
- network-access dynamic-qos
- network-access dynamic-vlan
- network-access guest-vlan
- network-access link-detection
- network-access link-detection link-down
- network-access link-detection link-up
- network-access link-detection link-up-down
- network-access max-mac-count
- network-access mode mac-authentication
- network-access port-mac-filter
- mac-authentication intrusion-action
- mac-authentication max-mac-count
- clear network-access
- show network-access
- show network-access mac-address-table
- show network- access mac-filter
- Web Authentication
- DHCP Snooping
- IP Source Guard
- ARP Inspection
- ip arp inspection
- ip arp inspection filter
- ip arp inspection log-buffer logs
- ip arp inspection validate
- ip arp inspection vlan
- ip arp inspection limit
- ip arp inspection trust
- show ip arp inspection configuration
- show ip arp inspection interface
- show ip arp inspection log
- show ip arp inspection statistics
- show ip arp inspection vlan
- Denial of Service Protection
- Access Control Lists
- Interface Commands
- Link Aggregation Commands
- Port Mirroring Commands
- Rate Limit Commands
- Automatic Traffic Control Commands
- Threshold Commands
- SNMP Trap Commands
- snmp-server enable port-traps atc broadcast-alarm- clear
- snmp-server enable port-traps atc broadcast-alarm-fire
- snmp-server enable port-traps atc broadcast-control- apply
- snmp-server enable port-traps atc broadcast-control- release
- snmp-server enable port-traps atc multicast-alarm- clear
- snmp-server enable port-traps atc multicast-alarm-fire
- snmp-server enable port-traps atc multicast-control- apply
- snmp-server enable port-traps atc multicast-control- release
- ATC Display Commands
- Address Table Commands
- Spanning Tree Commands
- spanning-tree
- spanning-tree cisco-prestandard
- spanning-tree forward-time
- spanning-tree hello-time
- spanning-tree max-age
- spanning-tree mode
- spanning-tree pathcost method
- spanning-tree priority
- spanning-tree mst configuration
- spanning-tree transmission-limit
- max-hops
- mst priority
- mst vlan
- name
- revision
- spanning-tree bpdu-filter
- spanning-tree bpdu-guard
- spanning-tree cost
- spanning-tree edge- port
- spanning-tree link-type
- spanning-tree loopback-detection
- spanning-tree loopback-detection action
- spanning-tree loopback-detection release-mode
- spanning-tree loopback-detection trap
- spanning-tree mst cost
- spanning-tree mst port-priority
- spanning-tree port-priority
- spanning-tree root-guard
- spanning-tree spanning-disabled
- spanning-tree loopback-detection release
- spanning-tree protocol-migration
- show spanning-tree
- show spanning-tree mst configuration
- VLAN Commands
- Class of Service Commands
- Quality of Service Commands
- Multicast Filtering Commands
- IGMP Snooping
- ip igmp snooping
- ip igmp snooping proxy-reporting
- ip igmp snooping querier
- ip igmp snooping router-alert-option- check
- ip igmp snooping router-port-expire- time
- ip igmp snooping tcn-flood
- ip igmp snooping tcn-query-solicit
- ip igmp snooping unregistered-data- flood
- ip igmp snooping unsolicited-report- interval
- ip igmp snooping version
- ip igmp snooping version-exclusive
- ip igmp snooping vlan general-query- suppression
- ip igmp snooping vlan immediate- leave
- ip igmp snooping vlan last-memb- query-count
- ip igmp snooping vlan last-memb- query-intvl
- ip igmp snooping vlan mrd
- ip igmp snooping vlan proxy-address
- ip igmp snooping vlan query-interval
- ip igmp snooping vlan query-resp- intvl
- ip igmp snooping vlan static
- show ip igmp snooping
- show ip igmp snooping mrouter
- show ip igmp snooping group
- Static Multicast Routing
- IGMP Filtering and Throttling
- Multicast VLAN Registration
- IGMP Snooping
- LLDP Commands
- lldp
- lldp holdtime-multiplier
- lldp med-fast-start- count
- lldp notification-interval
- lldp refresh-interval
- lldp reinit-delay
- lldp tx-delay
- lldp admin-status
- lldp basic-tlv management-ip- address
- lldp basic-tlv port-description
- lldp basic-tlv system-capabilities
- lldp basic-tlv system-description
- lldp basic-tlv system-name
- lldp dot1-tlv proto-ident
- lldp dot1-tlv proto-vid
- lldp dot1-tlv pvid
- lldp dot1-tlv vlan-name
- lldp dot3-tlv link-agg
- lldp dot3-tlv max-frame
- lldp med-location civic-addr
- lldp med-notification
- lldp med-tlv ext-poe
- lldp med-tlv inventory
- lldp med-tlv location
- lldp med-tlv med-cap
- lldp med-tlv network-policy
- lldp notification
- show lldp config
- show lldp info local-device
- show lldp info remote-device
- show lldp info statistics
- Domain Name Service Commands
- DHCP Commands
- IP Interface Commands
- Appendices
- Glossary
- Command List
- Index
I
NDEX
– 1020 –
importing user public keys 315, 536
ingress filtering 173, 832
IP address
BOOTP/DHCP
443, 956
setting 439, 961
IP filter, for management access 338, 660
IP source guard
configuring static entries
356, 694
setting filter criteria
354, 696
setting maximum bindings 355, 697
IP statistics 965
IPv4 address
BOOTP/DHCP
443, 962
dynamic configuration 68
manual configuration
65
setting 65, 443, 962
IPv6
displaying neighbors
454, 989
duplicate address detection 448, 454, 989
enabling 447, 977
MTU
447, 978
statistics 456, 983
IPv6 address
dynamic configuration (global unicast)
69, 451,
973
dynamic configuration (link-local) 69, 447, 977
EUI format
451, 975
EUI-64 setting 451, 974, 975
explicit configuration 447, 977
global unicast
451, 972
link-local 452, 973, 976
manual configuration (global unicast) 66, 451,
972
manual configuration (link-local) 66, 452, 976
setting 65, 445, 972
J
jumbo frame 100, 533
K
key
private
309, 635
public
309, 635
user public, importing
315, 536
key pair
host
309, 635
host, generating
313, 641
L
LACP
configuration
147, 749
group attributes, configuring
151, 755
group members, configuring
148, 751–754
local parameters
154, 756
partner parameters
156, 756
protocol message statistics
153, 756
protocol parameters
147, 749
last member query count, IGMP snooping 485, 898
last member query interval, IGMP snooping 485, 898
license information, GNU
999
Link Layer Discovery Protocol - Media Endpoint
Discovery See LLDP-MED
Link Layer Discovery Protocol See LLDP
link type, STA
215, 218, 810
LLDP
376, 921
device statistics details, displaying 393, 943
device statistics, displaying 392, 943
display device information
384, 387, 941
displaying remote information 387, 941
interface attributes, configuring 378, 927–938
local device information, displaying
384, 940
message attributes 378, 921
message statistics 392, 943
remote information, displaying
391, 941
remote port information, displaying 387, 941
timing attributes, configuring 376, 923–926
TLV
376, 379
TLV, 802.1 379, 930–932
TLV, 802.3 380, 932–933
TLV, basic
379, 927–930
TLV, management address 379, 927
TLV, port description 379, 928
TLV, system capabilities
379, 929
TLV, system description 379, 929
TLV, system name 379, 930
LLDP-MED
376, 921
notification, status 379, 935
TLV 380, 921
TLV, extended PoE
380, 936
TLV, inventory 380, 936
TLV, location 380, 933, 937
TLV, MED capabilities
380, 937
TLV, network policy 380, 938
TLV, PoE
380, 936
local engine ID
400, 589
logging
messages, displaying
371, 559
syslog traps
372, 558
to syslog servers
372, 557
log-in, web interface
82
logon authentication
292, 609
encryption keys
280, 616, 619
RADIUS client
279, 614
RADIUS server
279, 614
sequence
277, 612, 613
settings
278, 613
TACACS+ client
278, 618
TACACS+ server 278, 618
logon authentication, settings
280, 614, 618
loopback detection, STA
206, 810
M
MAC address authentication 296, 666
ports, configuring 300, 666, 674