HP (Hewlett-Packard) 8200ZL manual

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
647
648
649
650
651
652
653
654
655
656
657
658
659
660
661
662
663
664
665
666
667
668
669
670
671
672
673
674
675
676
677
678
679
680
681
682
683
684
685
686
687
688
689
690
691
692
693
694
695
696
697
698
699
700
701
702
703
704
705
706
707
708
709
710
711
712
713
714
715
716
717
718
719
720
721
722
723
724
725
726
727
728
729
730
731
732
733
734
735
736
737
738
739
740
741
742
743
744
745
746
747
748
749
750
751
752
753
754
755
756
757
758
759
760
761
762
763
764
765

Ir a la página of

Buen manual de instrucciones

Las leyes obligan al vendedor a entregarle al comprador, junto con el producto, el manual de instrucciones HP (Hewlett-Packard) 8200ZL. La falta del manual o facilitar información incorrecta al consumidor constituyen una base de reclamación por no estar de acuerdo el producto con el contrato. Según la ley, está permitido adjuntar un manual de otra forma que no sea en papel, lo cual últimamente es bastante común y los fabricantes nos facilitan un manual gráfico, su versión electrónica HP (Hewlett-Packard) 8200ZL o vídeos de instrucciones para usuarios. La condición es que tenga una forma legible y entendible.

¿Qué es un manual de instrucciones?

El nombre proviene de la palabra latina “instructio”, es decir, ordenar. Por lo tanto, en un manual HP (Hewlett-Packard) 8200ZL se puede encontrar la descripción de las etapas de actuación. El propósito de un manual es enseñar, facilitar el encendido o el uso de un dispositivo o la realización de acciones concretas. Un manual de instrucciones también es una fuente de información acerca de un objeto o un servicio, es una pista.

Desafortunadamente pocos usuarios destinan su tiempo a leer manuales HP (Hewlett-Packard) 8200ZL, sin embargo, un buen manual nos permite, no solo conocer una cantidad de funcionalidades adicionales del dispositivo comprado, sino también evitar la mayoría de fallos.

Entonces, ¿qué debe contener el manual de instrucciones perfecto?

Sobre todo, un manual de instrucciones HP (Hewlett-Packard) 8200ZL debe contener:
- información acerca de las especificaciones técnicas del dispositivo HP (Hewlett-Packard) 8200ZL
- nombre de fabricante y año de fabricación del dispositivo HP (Hewlett-Packard) 8200ZL
- condiciones de uso, configuración y mantenimiento del dispositivo HP (Hewlett-Packard) 8200ZL
- marcas de seguridad y certificados que confirmen su concordancia con determinadas normativas

¿Por qué no leemos los manuales de instrucciones?

Normalmente es por la falta de tiempo y seguridad acerca de las funcionalidades determinadas de los dispositivos comprados. Desafortunadamente la conexión y el encendido de HP (Hewlett-Packard) 8200ZL no es suficiente. El manual de instrucciones siempre contiene una serie de indicaciones acerca de determinadas funcionalidades, normas de seguridad, consejos de mantenimiento (incluso qué productos usar), fallos eventuales de HP (Hewlett-Packard) 8200ZL y maneras de solucionar los problemas que puedan ocurrir durante su uso. Al final, en un manual se pueden encontrar los detalles de servicio técnico HP (Hewlett-Packard) en caso de que las soluciones propuestas no hayan funcionado. Actualmente gozan de éxito manuales de instrucciones en forma de animaciones interesantes o vídeo manuales que llegan al usuario mucho mejor que en forma de un folleto. Este tipo de manual ayuda a que el usuario vea el vídeo entero sin saltarse las especificaciones y las descripciones técnicas complicadas de HP (Hewlett-Packard) 8200ZL, como se suele hacer teniendo una versión en papel.

¿Por qué vale la pena leer los manuales de instrucciones?

Sobre todo es en ellos donde encontraremos las respuestas acerca de la construcción, las posibilidades del dispositivo HP (Hewlett-Packard) 8200ZL, el uso de determinados accesorios y una serie de informaciones que permiten aprovechar completamente sus funciones y comodidades.

Tras una compra exitosa de un equipo o un dispositivo, vale la pena dedicar un momento para familiarizarse con cada parte del manual HP (Hewlett-Packard) 8200ZL. Actualmente se preparan y traducen con dedicación, para que no solo sean comprensibles para los usuarios, sino que también cumplan su función básica de información y ayuda.

Índice de manuales de instrucciones

  • Página 1

    Pr oC ur v e 5400zl S wit che s Installation and Getting Start ed Gui de 3500 yl swi tch es 5400zl s wit ches 6 2 00 yl swit ches 8 200zl s wit che s HP Pr oC ur v e S wit ch S oft w ar e Co mman d L ine Inte rface R ef er en ce Guid e Softw ar e ve rsion K . 1 4.09 Apr il 2 009[...]

  • Página 2

    [...]

  • Página 3

    HP ProCurve 3500yl Switches 5400zl Switches 6200yl Switch 8200zl Switches Command Line Interface Reference Guide April 2009 K.14.09[...]

  • Página 4

    Hewlett-Packard Company Publication Number 5992-3063 April 2009 Copyright © Copyright 2009 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. Disclaimer HEWLETT-PACKARD COMPANY MAKES NO WARRANTY OF ANY KIND WITH REGARD TO THIS MATERIAL, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTI[...]

  • Página 5

    Contents Introduction ................................................................................................................................... 14 Introduction ........................................................................................................................... 15 Conventions .........................................[...]

  • Página 6

    chassislocate ......................................................................................................................... 77 Overview ....................................................................................................................... 77 Command Structure .............................................................[...]

  • Página 7

    Command Structure .................................................................................................... 159 Command Details ........................................................................................................ 160 dhcp-snooping ........................................................................................[...]

  • Página 8

    hostname ............................................................................................................................ 194 Overview ..................................................................................................................... 194 Command Structure ...............................................................[...]

  • Página 9

    Command Details ........................................................................................................ 349 link-test ................................................................................................................................ 350 Overview .........................................................................[...]

  • Página 10

    mirror .................................................................................................................................. 377 Overview ..................................................................................................................... 377 Command Structure ...........................................................[...]

  • Página 11

    print ..................................................................................................................................... 407 Overview ..................................................................................................................... 407 Command Structure .........................................................[...]

  • Página 12

    Examples ..................................................................................................................... 473 Command Details ........................................................................................................ 474 r-wireless-services ..........................................................................[...]

  • Página 13

    Command Structure .................................................................................................... 638 Examples ..................................................................................................................... 640 Command Details ................................................................................[...]

  • Página 14

    terminal ............................................................................................................................... 684 Overview ..................................................................................................................... 684 Command Structure ............................................................[...]

  • Página 15

    wireless-services ................................................................................................................. 757 Overview ..................................................................................................................... 757 Notes .............................................................................[...]

  • Página 16

    Introduction 14 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 17

    Introduction CONVENTIONS Abstract This guide uses the following conventions for command syntax and displayed information. Command Syntax Statements Syntax: aaa port-access authenticator PORT-LIST [ control < authorized | auto | unauthorized >] ■ Vertical bars ( | ) separate alternative, mutually exclusive elements. ■ Square brackets ( [ ][...]

  • Página 18

    Example Commands Example commands and their output appear in the Courier type face. For example: ProCurve(cong)# clear public-key ProCurve(cong)# show ip client-public-key show_client_public_key: cannot stat keyle Port Numbering Conventions ProCurve chassis switches designate individual ports with a letter/number combination to show the sl[...]

  • Página 19

    This option displays help for any command available at the current context level. RELATED PUBLICATIONS The following documents (available on the ProCurve website) provide additional information on the CLI commands. Software Release Notes Release notes provide information on new software updates: ■ New features and how to configure and use them ?[...]

  • Página 20

    ■ KMS (Key Management System) Advanced Traffic Management Guide Use the Advanced Traffic Management Guide for information on: ■ VLANs: Static port-based and protocol VLANs, and dynamic GVRP VLANs ■ Spanning-Tree: 802.1D (STP), 802.1w (RSTP), and 802.1s (MSTP) ■ Meshing ■ Quality-of-Service (QoS) ■ QinQ Multicast and Routing Guide Use th[...]

  • Página 21

    Structure provides a high-level view of all the command options and parameters for that command. Each of these is hyperlinked to take you to the details about that option or parameter. 19 © 2009 Hewlett-Packard Development Company, L.P. Introduction Command Line Interface Reference Guide[...]

  • Página 22

    Commands 20 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 23

    aaa OVERVIEW 802.1X, Accounting, Switch Security Category: config Primary context: show (page 511) Related Commands show (page 511) show (page 511) show (page 511) show (page 511) radius-server (page 456) tacacs-server (page 678) Usage: aaa <...> Description: Congure the switch Authentication, Authorization, and Accounting features. Use &a[...]

  • Página 24

    primary < local | tacacs | radius > -- Specify the primary authentication method for access control. (p. 44) ■ ■ secondary < local | none | authorized > -- Specify the backup authentication method for access control. (p. 48) ■ login -- Specify that switch respects the authentication server's privilege level (p. 36) ■ privil[...]

  • Página 25

    ■ secondary < local | none | authorized > -- Specify the backup authentication method for access control. (p. 48) ■ web-based -- Configure authentication mechanism used to control web-based port access to the switch (p. 55) ■ primary < chap-radius | peap-mschapv2 > -- Specify the primary authentication method for access control. ([...]

  • Página 26

    ■ mac-list1 -- Manage MAC address based network authentication on the device port(s). ([ethernet] PORT-LIST) (p. 39) ■ addr-limit <1t o3 2> -- Set the port's maximum number of authenticated MAC addresses (default 1). (NUMBER) (p. 27) ■ addr-moves -- Set whether the MAC can move between ports (default disabled - no moves). (p. 27) ?[...]

  • Página 27

    ■ ip-addr -- IP address of the enahced web auth server. (IP-ADDR) (p. 35) ■ page-path -- Sets the path of the login pages to be found on the ewa server. (ASCII-STR) (p. 42) ■ web-list1 -- Manage web authentication based network authentication on the device port(s). ([ethernet] PORT-LIST) (p. 57) ■ auth-vid -- Configures VLAN where to move p[...]

  • Página 28

    unauth-vid (p. 53) NUMBER-OF-CLIENTS (p. 42) control (p. 32) update (p. 54) page-path (p. 42) controlled-direction (p. 32) VLAN-ID (p. 54) periodic (p. 42) dhcp-addr (p. 33) web (p. 54) port-access (p. 42) dhcp-lease (p. 33) web-authvid (p. 55) PORT-LIST (p. 43) enable (p. 33) web-based (p. 55) primary (p. 44) ewa-server (p. 34) web-list1 (p. 57) p[...]

  • Página 29

    active ■ [no] aaa port-access authenticator active Activate/deactivate 802.1X authenticator. addr-format ■ aaa port-access mac-based addr-format < no-delimiter | single-dash | multi-dash | ... > Set the MAC address format to be used in the RADIUS request message (default no-delimiter). Supported Values: ■ no-delimiter -- no delimiter fo[...]

  • Página 30

    ■ web-based -- Configure authentication mechanism used to control web-based port access to the switch (p. 55) ■ mac-based -- Configure authentication mechanism used to control mac-based port access to the switch (p. 37) ■ num-attempts < 1 to 10 > -- Specify the maximum number of login attempts allowed (p. 42) ■ login -- Specify that s[...]

  • Página 31

    switch does not try to acquire a supplicant after a failed authentication attempt(default 60 seconds). o 'tx-period' sets the period of time the switch waits to retransmit the next EAPOL PDU during an authentication session (default 30 seconds). o 'server-timeout' sets the period of time after which the switch assumes that authe[...]

  • Página 32

    no specic MAC address lter on the port. The default is no client limit. o 'initialize' re-initialize authentication on the specied ports. That is, 'initialize' blocks inbound and outbound trafc and restarts the authentication process on the specied ports that are congured with 'control auto' (see the [...]

  • Página 33

    Next Available Option: ■ VLAN-ID -- Configures VLAN where to move port after successful authentication (not configured by default). (VLAN-ID) (p. 54) ■ [no] aaa port-access web-based [ETHERNET] PORT-LIST auth-vid Congures VLAN where to move port after successful authentication (not congured by default). Next Available Option: ■ web-auth[...]

  • Página 34

    Next Available Option: ■ mode < stop-only > -- Specify how to initiate and terminate an accounting session. (p. 40) ■ [no] aaa authorization commands Congure exec (shell) commands authorization. Next Available Option: ■ primary_method < radius | none > -- (p. 47) console ■ aaa authentication console Usage: aaa authentication [...]

  • Página 35

    Congure how trafc is controlled on non-authenticated ports; in BOTH directions (ingress+egress) or IN only (ingress). Supported Values: ■ both -- Exert control in both directions. ■ in -- Exert control on incoming packets. dhcp-addr ■ aaa port-access web-based dhcp-addr IP-ADDR/MASK-LENGTH Set the base address / mask for the temporary p[...]

  • Página 36

    ewa-server ■ [no] aaa port-access web-based ewa-server IP address or hostname of the enhanced web authentication server on the device. Next Available Options: ■ ip-addr -- IP address of the enahced web auth server. (IP-ADDR) (p. 35) ■ host-name -- Hostname of the enhanced web auth server. (ASCII-STR) (p. 35) exec ■ [no] aaa accounting exec [...]

  • Página 37

    -Disable the port from sending advertisements of existing GVRP-created VLANs on the switch. -Drop all GVRP advertisements received on the port. 3. If you disable the use of dynamic VLANs in an authentication session using the no aaa port-access gvrp-vlans command, client sessions that were authenticated with a dynamic VLAN continue and are not deau[...]

  • Página 38

    Next Available Option: ■ page-path -- Sets the path of the login pages to be found on the ewa server. (ASCII-STR) (p. 42) login ■ aaa authentication console login Congure login access to the switch. Next Available Option: ■ primary < local | tacacs | radius > -- Specify the primary authentication method for access control. (p. 44) ?[...]

  • Página 39

    Set period of time after which a client will be considered removed from the port for a lack of activity. Range: < 1 to 999999999 > ■ aaa port-access mac-based [ETHERNET] PORT-LIST logoff-period < 1 to 9999999 > Set the period of time of inactivity that the switch considers an implicit logoff (default 300 seconds). Range: < 1 to 999[...]

  • Página 40

    The rst form of the command sets the MAC address format which is common to all ports The second form of the command enables, disables, or congures authentication on the device's individual ports. o 'addr-format' sets the MAC address format to be used in the RADIUS request message (default no-delimiter). o 'addr-limit'[...]

  • Página 41

    ■ addr-format < no-delimiter | single-dash | multi-dash | ... > -- Set the MAC address format to be used in the RADIUS request message (default no-delimiter). (p. 27) mac-list1 ■ [no] aaa port-access mac-based [ETHERNET] PORT-LIST Manage MAC address based network authentication on the device port(s). Next Available Options: ■ addr-limit[...]

  • Página 42

    Set number of times a client can enter their credentials before authentication is considered to have failed (default 3). Range: < 1 to 10 > max-start ■ aaa port-access supplicant [ETHERNET] PORT-LIST max-start <1t o1 0> Dene the maximum number of attempts taken to start authentication (default 3). Range: < 1 to 10 > method ?[...]

  • Página 43

    Next Available Option: ■ method < radius > -- Specify which accounting method to use (radius) (p. 40) ■ aaa accounting network < start-stop | stop-only > Specify how to initiate and terminate an accounting session. Supported Values: ■ start-stop -- Send start and stop record accounting notice. ■ stop-only -- Send stop record acc[...]

  • Página 44

    num-attempts ■ aaa authentication num-attempts <1t o1 0> Usage: aaa authentication num-attempts <1-10> Description: Specify the maximum number of login attempts allowed. The default value is 3. Range: < 1 to 10 > NUMBER-OF-CLIENTS ■ aaa port-access authenticator [ETHERNET] PORT-LIST client-limit <1t o3 2> Set the maximum[...]

  • Página 45

    Usage: [no] aaa port-access <authenticator ... | supplicant ... web-based ... | mac-based ...> Description: Congure 802.1X (Port Based Network Access), MAC address based network access, or web authentication based network access on the device. You can congure authenticator, supplicant, MAC address based, or web authentication based netw[...]

  • Página 46

    ■ logoff-period < 1 to 999999999 > -- Set period of time after which a client will be considered removed from the port for a lack of activity. (NUMBER) (p. 36) ■ client-limit -- Set the maximum number of clients to allow on the port. (p. 31) ■ initialize -- Reinitialize the authenticator state machine. (p. 35) ■ reauthenticate -- Forc[...]

  • Página 47

    Next Available Option: ■ secondary < local | none | authorized > -- Specify the backup authentication method for access control. (p. 48) ■ aaa authentication telnet login < local | tacacs | radius > Specify the primary authentication method for access control. Supported Values: ■ local -- Use local switch user/password database. ?[...]

  • Página 48

    Next Available Option: ■ secondary < local | none | authorized > -- Specify the backup authentication method for access control. (p. 48) ■ aaa authentication ssh login < local | tacacs | radius | ... > Specify the primary authentication method for access control. Supported Values: ■ local -- Use local switch user/password database[...]

  • Página 49

    Next Available Option: ■ secondary < none | authorized > -- Specify the backup authentication method for access control. (p. 48) primary_method ■ aaa authorization commands < radius | none > Supported Values: ■ radius -- Use RADIUS protocol as the authorization method. ■ none -- No authorization (always succeeds). privilege-mode[...]

  • Página 50

    Range: < 0 to 9999999 > ■ aaa port-access mac-based [ETHERNET] PORT-LIST reauth-period < 0 to 9999999 > Set the re-authentication timeout in seconds; set to '0' to disable re-authentication (default 0). Range: < 0 to 9999999 > ■ aaa port-access web-based [ETHERNET] PORT-LIST reauth-period < 0 to 9999999 > Set t[...]

  • Página 51

    ■ none -- Do not use backup authentication methods. ■ authorized -- Allow access without authentication. ■ aaa authentication web enable < local | radius > < local | none | authorized > Specify the backup authentication method for access control. Supported Values: ■ local -- Use local switch user/password database. ■ none -- D[...]

  • Página 52

    secret ■ aaa port-access supplicant [ETHERNET] PORT-LIST identity IDENTITY secret ■ aaa port-access supplicant [ETHERNET] PORT-LIST secret Trigger the command to ask user for a password for the supplicant to use. server-timeout ■ aaa port-access authenticator [ETHERNET] PORT-LIST server-timeout < 1 to 300 > Set the authentication server[...]

  • Página 53

    start-period ■ aaa port-access supplicant [ETHERNET] PORT-LIST start-period < 1 to 300 > Set a period of time between EAPOL-Start packet retransmission (default 30sec.). Range: < 1 to 300 > supplicant ■ [no] aaa port-access supplicant [ETHERNET] PORT-LIST Usage: [no] aaa port-access supplicant [ethernet] PORT-LIST [auth-timeout <[...]

  • Página 54

    supplicant-timeout ■ aaa port-access authenticator [ETHERNET] PORT-LIST supplicant-timeout < 1 to 300 > Set the supplicant response timeout on an EAP request (default 30 sec.). Range: < 1 to 300 > suppress ■ [no] aaa accounting suppress Do not generate accounting records for a specic type of user. Next Available Option: ■ null-[...]

  • Página 55

    o <backup-method> - Species an authentication method to use, if the primary authentication method is not able to check user's credentials. Use <TAB> or <?> after you specify the primary authentication method to get a list of all available backup methods. Next Available Options: ■ enable -- Configure access to the privile[...]

  • Página 56

    Next Available Option: ■ web-unauthvid -- Configures VLAN where to keep port while there is an unauthorized client connected (not configured by default). (VLAN-ID) (p. 58) update ■ [no] aaa accounting update Usage: [no] aaa accounting update periodic <number> Description: Congure update accounting records mechanism. Parameters: periodi[...]

  • Página 57

    to use, if the primary authentication method is not able to check user's credentials. Use <TAB> or <?> after you specify the primary authentication method to get a list of all available backup methods. Next Available Options: ■ enable -- Configure access to the privileged mode commands. (p. 33) ■ login -- Configure login access[...]

  • Página 58

    Description: Congure web authentication based network authentication on the device or the device's port(s). The rst form of the command sets the dhcp address, dhcp lease, or ewa server parameters which are common to all ports The second form of the command enables, disables, or congures authentication on the device's individual p[...]

  • Página 59

    the switch considers an implicit logoff (default 300) o 'reauth-period' sets the period of time after which connected clients must be re-authenticated. When the timeout is set to 0 the re-authentication is disabled (default 0). o 'auth-vid' congures the VLAN to which to move a port after successful authentication. RADIUS serv[...]

  • Página 60

    ■ max-requests < 1 to 10 > -- Set maximum number of times the switch retransmits authentication requests (default 3). (NUMBER) (p. 39) ■ reauth-period < 0 to 9999999 > -- Set the re-authentication timeout in seconds; set to '0' to disable re-authentication (default 0). (NUMBER) (p. 47) ■ auth-vid -- Configures VLAN where[...]

  • Página 61

    access-list OVERVIEW FOR IPV4 ACLS Category: config Primary context: Related Commands Note: This information is preliminary; the nal detailed command list is coming soon. Usage for commands: access-list <number> remark <remark> access-list <1-99> permit <ACL-IP-SPEC-SRC> access-list <1-99> deny <ACL-IP-SPEC-SRC&g[...]

  • Página 62

    o <ACL-IP-SPEC> - specify the source or destination IP addresses to match. The following formats may be used to specify IP addresses: * IP-ADDR MASK - match addresses dened by IP-ADDR using the bits set to zero in MASK. * IP-ADDR/MASK-LEN - the mask is one in which the high order MASK-LEN bits are zeros, and the remaining bits are ones. 17[...]

  • Página 63

    <any|host <DA>|DA/<prex-length>> [comparison-operator <value>] [established] [ack][n][rst][syn] <icmp> <any|host <SA>|SA/<prex-length>> <any|host <DA>|DA/<prex-length>> [0-255 [0-255]|icmp-message] [dscp <precedence|codepoint>] [log] Insert an ACE or a remark by ass[...]

  • Página 64

    Displaying ACL Data: ProCurve(cong)# show access-list ProCurve(cong)# show access-list <acl-name-str>[cong] ProCurve(cong)# show access-list cong ProCurve(cong)# show access-list ports <port-list> ProCurve(cong)# show access-list vlan <vid> ProCurve(cong)# show access-list radius <port-list|all> ProCu[...]

  • Página 65

    alias OVERVIEW Category: config Primary context: Related Commands Usage: [no] alias <NAME> <COMMAND> [COMMAND-OPTIONS] Description: Congure/remove a NAME for the specied alias command and options. COMMAND STRUCTURE ■ [no] alias name -- Name of alias. (ASCII-STR) (p. 63) ■ command -- Command to execute. (ASCII-STR) (p. 63) EXAM[...]

  • Página 66

    arp OVERVIEW Category: config Primary context: Related Commands Usage: no arp IP-ADDRESS Description: Remove the specied IP-ADDRESS entry from the ARP cache (note: the keyword 'no' must be specied). o IP-ADDRESS - ip address of the ARP cache entry to be removed. COMMAND STRUCTURE 64 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 67

    arp-protect OVERVIEW Category: config Primary context: Related Commands Usage: [no] arp-protect [trust [ethernet] PORT-LIST| validate <ip|destination-mac|src-mac>| vlan VLAN-ID-RANGE] Description: Congure Dynamic ARP Protection. To Enable/disable ARP Protection on the switch execute the [no] arp-protect command. Dynamic ARP Protection will[...]

  • Página 68

    ■ src-mac -- Drop any ARP request or response packet in which the source MAC in the ethernet header does not match the sender MAC address in the body of the packet. (p. 66) ■ [no] arp-protect vlan -- Enable/disable Dynamic ARP Protection on a VLAN(s). (p. 67) ■ vlan-list -- (VLAN-ID-RANGE) (p. 67) COMMAND DETAILS vlan-list (p. 67) trust (p. 6[...]

  • Página 69

    vlan ■ [no] arp-protect vlan Enable/disable Dynamic ARP Protection on a VLAN(s). Next Available Option: ■ vlan-list -- (VLAN-ID-RANGE) (p. 67) vlan-list ■ [no] arp-protect vlan VLAN-ID-RANGE 67 © 2009 Hewlett-Packard Development Company, L.P. arp-protect Command Line Interface Reference Guide[...]

  • Página 70

    autorun OVERVIEW Category: config Primary context: copy usb (page 133) Related Commands Usage: [no] autorun ... Description: Enable/Disable/Congure Autorun. Use the 'secure-mode' keyword to enable/disable secure mode for autorun. Use the 'encryption-key' keyword to congure or remove an encryption key (a base-64 encoded str[...]

  • Página 71

    AES 128 encryption key string for Autorun secure-mode ■ [no] autorun secure-mode Enable or disable secure mode for Autorun. 69 © 2009 Hewlett-Packard Development Company, L.P. autorun Command Line Interface Reference Guide[...]

  • Página 72

    auto-tftp OVERVIEW File Transfer Category: config Primary context: the section called “ client ” (page 685) Related Commands Usage: [no] auto-tftp [<IPV4-ADDR | IPV6-ADDR> <FILENAME-STR>] Description: Enable/disable automatic software image download via TFTP during boot. The software image will be downloaded if it has a different ve[...]

  • Página 73

    IPv4 address of the TFTP server to download a software image from. Next Available Option: ■ filename -- The software image file-name. (ASCII-STR) (p. 70) server-ipv6 ■ auto-tftp IPV6-ADDR IPv6 address of the TFTP server to download a software image from. Next Available Option: ■ filename -- The software image file-name. (ASCII-STR) (p. 70) 71[...]

  • Página 74

    banner OVERVIEW Switch Management Category: config Primary context: show (page 511) Related Commands Usage: [no] banner motd ASCII-STR Description: Dene a login banner. The banner will be displayed before login on the console, telnet, ssh, and Web-UI sessions. The banner can be a multi-line text up to 320 characters. The banner text can contain [...]

  • Página 75

    boot OVERVIEW Switch Management Category: manager Primary context: reload (page 467) Related Commands Usage: boot [system [ash <primary|secondary>] [cong FILENAME]] boot set-default ash <primary|secondary> boot active boot standby Description: Reboot the device. The primary or secondary software image can be specied to be us[...]

  • Página 76

    module. If a second management module is not present in the switch, the system is rebooted. config ■ boot system flash < primary | secondary > config < config | config1 > Specify conguration le to use on boot. Supported Values: ■ config ■ config1 flash ■ boot system flash < primary | secondary > Specify boot image to[...]

  • Página 77

    system ■ boot system Allows user to specify boot image to use after reboot. Next Available Option: ■ flash < primary | secondary > -- Specify boot image to use after reboot. (p. 74) 75 © 2009 Hewlett-Packard Development Company, L.P. boot Command Line Interface Reference Guide[...]

  • Página 78

    cdp OVERVIEW Routing Category: config Primary context: the section called “ cdp ” (page 537) Related Commands Usage: [no] cdp ... Description: Set various CDP (Cisco Discovery Protocol) parameters. Use 'cdp ?' to get a list of all possible options. COMMAND STRUCTURE ■ [no] cdp enable -- Enable/disable CDP on particular device ports [...]

  • Página 79

    chassislocate OVERVIEW Category: operator Primary context: Related Commands Usage: chassislocate <on|blink> [<1-1440>] chassislocate off Description: Control the chassis locate led. Parameters: o on - Turn the led on. o off - Turn the led off. o blink - Make the led blink. o [<1-1440>] - Number of minutes the led is to blink or be[...]

  • Página 80

    off ■ chassislocate off Turn the chassis locate led off. on ■ chassislocate on Turn the chassis locate led on (default 30 minutes). Next Available Option: ■ duration < 1 to 1440 > -- Number of minutes duration (default 30). (NUMBER) (p. 77) 78 © 2009 Hewlett-Packard Development Company, L.P. chassislocate Command Line Interface Referen[...]

  • Página 81

    class OVERVIEW Category: config Primary context: policy (page 398) Related Commands Usage: [no] class <address-family> <name> Description: Create a classier class and enter the class context. Parameters are address family(ipv4 or ipv6) and class name. COMMAND STRUCTURE ■ [no] class ipv4 -- Enter ipv4 class name (ASCII-STR) (p. 80) [...]

  • Página 82

    incr-num ■ class resequence ipv4 IPV4 < 1 to 2147483647 > < 1 to 2147483646 > Specify the increment. Range: < 1 to 2147483646 > ■ class resequence ipv6 IPV6 < 1 to 2147483647 > < 1 to 2147483646 > Specify the increment. Range: < 1 to 2147483646 > ipv4 ■ [no] class ipv4 IPV4 Enter ipv4 class name ■ class r[...]

  • Página 83

    Next Available Option: ■ incr-num < 1 to 2147483646 > -- Specify the increment. (p. 80) ■ class resequence ipv6 IPV6 < 1 to 2147483647 > Specify the starting sequence number. Range: < 1 to 2147483647 > Next Available Option: ■ incr-num < 1 to 2147483646 > -- Specify the increment. (p. 80) 81 © 2009 Hewlett-Packard Dev[...]

  • Página 84

    clear OVERVIEW Category: manager Primary context: Related Commands Usage: clear <arp|intrusion-log|logging|public-key|statistics [ethernet] PORT-LIST |link-keepalive statistics> Description: Clear table/statistics or authorized client public keys. Parameters: o arp - Flushes all non-permanent entries in the ARP cache. o intrusion-log - Resets[...]

  • Página 85

    COMMAND DETAILS logging (p. 84) ip (p. 83) arp (p. 83) neighbors (p. 84) ipv6 (p. 84) client-public-key (p. 83) ospf-statistics (p. 84) keyfile (p. 84) crypto (p. 83) statistics (p. 85) keylist (p. 84) if-ip (p. 83) link-keepalive (p. 84) intrusion-flags (p. 83) arp ■ clear arp Flush all non-permanent entries in the ARP cache. client-public-key ?[...]

  • Página 86

    ipv6 ■ clear ipv6 Clear all IPv6 information. Next Available Option: ■ neighbors -- Delete all the neighbour discovery cache entries, except static entries. (p. 84) keyfile ■ clear crypto client-public-key < manager | operator > Remove client public keys from active conguration. Supported Values: ■ manager -- Select manager public [...]

  • Página 87

    If [<ip-address>] specied clears statistics for a given interface if the interface is OSPF enabled. Next Available Option: ■ if-ip -- specify ip-address whose statistics is to be cleared. (IP-ADDR) (p. 83) statistics ■ clear statistics [ETHERNET] PORT-LIST Reset all counters for the specied ports. ■ clear link-keepalive statistics[...]

  • Página 88

    clock OVERVIEW Switch Management Category: config Primary context: ip (page 290) Related Commands sntp (page 634) time (page 686) Usage: [no] clock [...] Description: Display/set current time, date, and local time parameters. Called without any parameters displays the information mentioned above. Use 'clock ?' to see a list of all possibl[...]

  • Página 89

    ■ +9:30 ■ +9:00 ■ +8:00 ■ +7:00 ■ +6:30 ■ +6:00 ■ +5:30 ■ +5:00 ■ +4:30 ■ +4:00 ■ +3:30 ■ +3:00 ■ +2:00 ■ +1:00 ■ +0:00 ■ -1:00 ■ -2:00 ■ -3:00 ■ -3:30 ■ -4:00 ■ -5:00 ■ -6:00 ■ -7:00 ■ -8:00 ■ -8:30 ■ -9:00 ■ -9:30 ■ -10:00 ■ -11:00 ■ -12:00 set ■ clock set Usage: clock set <[MM/DD[/[...]

  • Página 90

    time ■ clock set [TIME] Current time to set. timezone ■ clock timezone Usage: clock timezone [gmt <-12:00 - +14:00>] | [us <none|alaska|aleutian|arizona|central| east-indiana|eastern|hawaii|michigan|mountain| pacic|samoa>] Description: Set the number of hours your location is to the West(-) or East(+) of GMT. The number of hours [...]

  • Página 91

    configure OVERVIEW Switch Management Category: manager Primary context: end (page 173) Related Commands exit (page 176) enable (page 172) Usage: congure [terminal] Description: Enter the Conguration context. COMMAND STRUCTURE ■ configure terminal -- Optional keyword of the configure command. Can be omitted. (p. 89) EXAMPLES Example: enable [...]

  • Página 92

    connection-rate-filter OVERVIEW Troubleshooting Category: config Primary context: filter (page 185) Related Commands ip (page 290) vlan (page 706) show (page 511) Usage: connection-rate-lter unblock < host SRC-IP-ADDR | SRC-IP-ADDRESS/MASK > [no] connection-rate-lter sensitivity <low|medium|high|aggressive> Description: Re-enables[...]

  • Página 93

    sensitivity ■ connection-rate-filter sensitivity Sets the level of ltering required Next Available Option: ■ sensitive < low | medium | high | ... > -- (p. 90) src-ip ■ connection-rate-filter unblock IP-ADDR/MASK-LENGTH Match packets from the specied subnet. unblock ■ connection-rate-filter unblock Resets a host previously block[...]

  • Página 94

    console OVERVIEW Switch Management Category: config Primary context: show (page 511) Related Commands repeat (page 470) Usage: console ... Description: Set various console parameters. Use 'console ?' to get a list of all congurable parameters. The non-congurable parameters and their default values are: Data bits = 8; Parity = None; [...]

  • Página 95

    ProCurve(cong)# write memory ProCurve(cong)# reload COMMAND DETAILS terminal (p. 95) inactivity-timer (p. 94) baud-rate (p. 93) local-terminal (p. 94) events (p. 93) screen-refresh (p. 94) flow-control (p. 93) baud-rate ■ console baud-rate < speed-sense | 1200 | 2400 | ... > Usage: console baud-rate <speed-sense|1200|2400|4800| 960[...]

  • Página 96

    ■ XON/XOFF ■ None inactivity-timer ■ console inactivity-timer <0|1|5|. . .> Usage: console inactivity-timer <0|1|5|10|15|20|30|60|120> Description: Set the number of minutes of no activity detected on the Console port before the switch terminates a communication session. '0' means disable inactivity timer. Default is 0. [...]

  • Página 97

    ■ 3 ■ 5 ■ 10 ■ 20 ■ 30 ■ 45 ■ 60 terminal ■ console terminal < VT100 | NONE | ANSI > Usage: console terminal <vt100|ansi|none> Description: Set type of terminal being used for all console and telnet sessions (default is vt100). Saved in conguration and requires reboot to take effect. Terminal type options are: vt100 =[...]

  • Página 98

    copy OVERVIEW Category: manager Primary context: Related Commands Usage: copy <source> <destination> [options] Description: Copy datales to/from the switch. <source> - specify source of data. It can be 'tftp', 'xmodem', 'command', 'ash', 'usb' or any of the following switch d[...]

  • Página 99

    ■ tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 126) ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ pc -- Change CR/LF to PC style. (p. 120) ■ unix -- Change CR/LF to unix style. (p. 131) ■ tftp-ipv6 -- Specify TFTP server IPv6 address. (IPV6-ADDR) (p. 129) ■ filename -- Specify filename for th[...]

  • Página 100

    ■ xmodem -- Use xmodem on the terminal as the data destination. (p. 135) ■ copy crash-log -- Copy the switch log file. (p. 107) ■ card -- Enter single slot identifier. (SLOT-ID-RANGE) (p. 105) ■ tftp -- Copy data to a TFTP server. (p. 124) ■ tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 126) ■ filename -- Specify filename f[...]

  • Página 101

    filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ ■ cv_out_flash < primary | secondary > -- Copy from primary/secondary flash. (p. 108) ■ xmodem -- Use xmodem on the terminal as the data destination. (p. 135) ■ cv_out_flash < primary | secondary > -- Copy from primary/secondary flash. (p. 108) ■ copy r[...]

  • Página 102

    append -- Add the key(s) for access. (p. 102) ■ ■ autorun-key-file -- Copy autorun key file to the switch. (p. 105) ■ tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 126) ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ append -- Add the key(s) for operator access. (p. 102) ■ manager -- Replace the[...]

  • Página 103

    ■ operator -- Replace the key(s) for operator access (default); follow with the 'append' option to add the key(s). (p. 119) ■ append -- Add the key(s) for access. (p. 102) ■ tftp-ipv6 -- Specify TFTP server IPv6 address. (IPV6-ADDR) (p. 129) ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ append -- A[...]

  • Página 104

    ■ flash -- Copy data to the switch system image file. (p. 116) ■ image-name -- Specify filename for the USB transfer. (ASCII-STR) (p. 117) ■ cv_flash < primary | secondary > -- Copy to primary/secondary flash. (p. 107) ■ pub-key-file -- Copy the public keys to the switch. (p. 122) ■ filename -- Specify filename for the USB transfer.[...]

  • Página 105

    ■ copy tftp pub-key-file IPV6-ADDR FILENAME append Add the key(s) for operator access. ■ copy tftp pub-key-file IPV6-ADDR FILENAME operator append Add the key(s) for access. ■ copy tftp pub-key-file IPV6-ADDR FILENAME manager append Add the key(s) for access. ■ copy tftp autorun-cert-file IP-ADDR FILENAME append Add the key(s) for operator [...]

  • Página 106

    ■ copy tftp autorun-key-file IPV6-ADDR FILENAME append Add the key(s) for operator access. ■ copy tftp autorun-key-file IPV6-ADDR FILENAME operator append Add the key(s) for access. ■ copy tftp autorun-key-file IPV6-ADDR FILENAME manager append Add the key(s) for access. ■ copy usb pub-key-file FILENAME append Add the key(s) for operator ac[...]

  • Página 107

    autorun-cert-file ■ copy tftp autorun-cert-file Copy autorun trusted certicate to the switch. Next Available Options: ■ tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 126) ■ tftp-ipv6 -- Specify TFTP server IPv6 address. (IPV6-ADDR) (p. 129) ■ copy usb autorun-cert-file Copy autorun trusted certicate to the switch. Next Av[...]

  • Página 108

    ■ xmodem -- Use xmodem on the terminal as the data destination. (p. 135) ■ usb -- Copy data to a USB flash drive. (p. 133) command-file ■ copy tftp command-file Copy command script to switch and execute. Next Available Options: ■ tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 126) ■ tftp-ipv6 -- Specify TFTP server IPv6 addres[...]

  • Página 109

    Copy data to specied conguration le. Next Available Options: ■ unix -- Change CR/LF to unix style. (p. 131) ■ pc -- Change CR/LF to PC style. (p. 120) ■ copy config < config1 | config2 | config3 > Copy named conguration le. Supported Values: ■ config1 ■ config2 ■ config3 Next Available Options: ■ config -- Copy da[...]

  • Página 110

    Copy to primary/secondary ash. Supported Values: ■ primary -- Copy to primary flash. ■ secondary -- Copy to secondary flash. ■ copy tftp flash IPV6-ADDR FILENAME < primary | secondary > Copy to primary/secondary ash. Supported Values: ■ primary -- Copy to primary flash. ■ secondary -- Copy to secondary flash. ■ copy xmodem f[...]

  • Página 111

    Supported Values: ■ primary -- Copy image primary flash. ■ secondary -- Copy image secondary flash. ■ copy flash usb FILENAME < primary | secondary > Copy from primary/secondary ash. Supported Values: ■ primary -- Copy image primary flash. ■ secondary -- Copy image secondary flash. event-log ■ copy event-log Copy event log l[...]

  • Página 112

    Next Available Option: ■ cv_flash < primary | secondary > -- Copy to primary/secondary flash. (p. 107) ■ copy tftp pub-key-file IP-ADDR FILENAME Specify lename for the TFTP transfer. Next Available Options: ■ append -- Add the key(s) for operator access. (p. 102) ■ operator -- Replace the key(s) for operator access (default); follo[...]

  • Página 113

    Specify lename for the TFTP transfer. Next Available Options: ■ unix -- Change CR/LF to unix style. (p. 131) ■ pc -- Change CR/LF to PC style. (p. 120) ■ copy tftp autorun-cert-file IP-ADDR FILENAME Specify lename for the TFTP transfer. Next Available Options: ■ append -- Add the key(s) for operator access. (p. 102) ■ operator -- Re[...]

  • Página 114

    Specify lename for the TFTP transfer. Next Available Options: ■ unix -- Change CR/LF to unix style. (p. 131) ■ pc -- Change CR/LF to PC style. (p. 120) ■ copy tftp show-tech IPV6-ADDR FILENAME Specify lename for the TFTP transfer. Next Available Options: ■ unix -- Change CR/LF to unix style. (p. 131) ■ pc -- Change CR/LF to PC style[...]

  • Página 115

    Next Available Options: ■ append -- Add the key(s) for operator access. (p. 102) ■ operator -- Replace the key(s) for operator access (default); follow with the 'append' option to add the key(s). (p. 119) ■ manager -- Replace the key(s) for manager access; follow with the 'append' option to add the key(s). (p. 117) ■ cop[...]

  • Página 116

    ■ copy crash-data SLOT-ID-RANGE usb FILENAME Specify lename for the USB transfer. ■ copy crash-data mm tftp IP-ADDR FILENAME Specify lename for the TFTP transfer. ■ copy crash-data mm tftp IPV6-ADDR FILENAME Specify lename for the TFTP transfer. ■ copy crash-data mm usb FILENAME Specify lename for the USB transfer. ■ copy cras[...]

  • Página 117

    Specify lename for the TFTP transfer. ■ copy crash-log tftp IPV6-ADDR FILENAME Specify lename for the TFTP transfer. ■ copy crash-log usb FILENAME Specify lename for the USB transfer. ■ copy flash tftp IP-ADDR FILENAME Specify lename for the TFTP transfer. Next Available Option: ■ cv_out_flash < primary | secondary > -- Co[...]

  • Página 118

    Specify lename for the TFTP transfer. Next Available Options: ■ unix -- Change CR/LF to unix style. (p. 131) ■ pc -- Change CR/LF to PC style. (p. 120) ■ copy startup-config tftp IPV6-ADDR FILENAME Specify lename for the TFTP transfer. Next Available Options: ■ unix -- Change CR/LF to unix style. (p. 131) ■ pc -- Change CR/LF to PC [...]

  • Página 119

    Next Available Option: ■ cv_flash < primary | secondary > -- Copy to primary/secondary flash. (p. 107) ■ copy usb flash Copy data to the switch system image le. Next Available Option: ■ image-name -- Specify filename for the USB transfer. (ASCII-STR) (p. 117) ■ copy flash Copy the switch system image le. Next Available Options: [...]

  • Página 120

    ■ copy tftp autorun-cert-file IP-ADDR FILENAME manager Replace the key(s) for manager access; follow with the 'append' option to add the key(s). Next Available Option: ■ append -- Add the key(s) for access. (p. 102) ■ copy tftp autorun-cert-file IPV6-ADDR FILENAME manager Replace the key(s) for manager access; follow with the '[...]

  • Página 121

    Next Available Option: ■ append -- Add the key(s) for access. (p. 102) mm ■ copy crash-data mm Copy from the management card. Next Available Options: ■ tftp -- Copy data to a TFTP server. (p. 124) ■ xmodem -- Use xmodem on the terminal as the data destination. (p. 135) ■ usb -- Copy data to a USB flash drive. (p. 133) ■ copy crash-log m[...]

  • Página 122

    Replace the key(s) for operator access (default); follow with the 'append' option to add the key(s). Next Available Option: ■ append -- Add the key(s) for access. (p. 102) ■ copy tftp autorun-key-file IP-ADDR FILENAME operator Replace the key(s) for operator access (default); follow with the 'append' option to add the key(s)[...]

  • Página 123

    ■ copy tftp command-file IPV6-ADDR FILENAME pc Change CR/LF to PC style. ■ copy tftp startup-config IP-ADDR FILENAME pc Change CR/LF to PC style. ■ copy tftp startup-config IPV6-ADDR FILENAME pc Change CR/LF to PC style. ■ copy tftp config CONFIG IP-ADDR FILENAME pc Change CR/LF to PC style. ■ copy tftp config CONFIG IPV6-ADDR FILENAME pc[...]

  • Página 124

    ■ copy config < config1 | config2 | config3 > xmodem pc Change CR/LF to PC style. ■ copy running-config tftp IP-ADDR FILENAME pc Change CR/LF to PC style. ■ copy running-config tftp IPV6-ADDR FILENAME pc Change CR/LF to PC style. ■ copy running-config xmodem pc Change CR/LF to PC style. ■ copy startup-config tftp IP-ADDR FILENAME pc[...]

  • Página 125

    running-config ■ copy running-config Copy running conguration le. Next Available Options: ■ tftp -- Copy data to a TFTP server. (p. 124) ■ xmodem -- Use xmodem on the terminal as the data destination. (p. 135) ■ usb -- Copy data to a USB flash drive. (p. 133) show-tech ■ copy tftp show-tech Copy custom show-tech script to switch. Ne[...]

  • Página 126

    ■ usb -- Copy data to a USB flash drive. (p. 133) tftp ■ copy tftp Copy data from a TFTP server. Next Available Options: ■ command-file -- Copy command script to switch and execute. (p. 106) ■ flash -- Copy data to the switch system image file. (p. 116) ■ pub-key-file -- Copy the public keys to the switch. (p. 122) ■ startup-config -- C[...]

  • Página 127

    Copy data to a TFTP server. Next Available Options: ■ tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 126) ■ tftp-ipv6 -- Specify TFTP server IPv6 address. (IPV6-ADDR) (p. 129) ■ copy crash-log SLOT-ID-RANGE tftp Copy data to a TFTP server. Next Available Options: ■ tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 126) [...]

  • Página 128

    ■ tftp-ipv6 -- Specify TFTP server IPv6 address. (IPV6-ADDR) (p. 129) ■ copy event-log tftp Copy data to a TFTP server. Next Available Options: ■ tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 126) ■ tftp-ipv6 -- Specify TFTP server IPv6 address. (IPV6-ADDR) (p. 129) tftp-ip ■ copy tftp command-file IP-ADDR Specify TFTP server[...]

  • Página 129

    Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ copy tftp autorun-key-file IP-ADDR Specify TFTP server IPv4 address. Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ copy tftp show-tech IP-ADDR Specify TFTP server IPv4 address. Next Availa[...]

  • Página 130

    ■ copy crash-log SLOT-ID-RANGE tftp IP-ADDR Specify TFTP server IPv4 address. Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ copy crash-log mm tftp IP-ADDR Specify TFTP server IPv4 address. Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ?[...]

  • Página 131

    tftp-ipv6 ■ copy tftp command-file IPV6-ADDR Specify TFTP server IPv6 address. Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ copy tftp flash IPV6-ADDR Specify TFTP server IPv6 address. Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ c[...]

  • Página 132

    Specify TFTP server IPv6 address. Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ copy command-output COMMAND-OUTPUT tftp IPV6-ADDR Specify TFTP server IPv6 address. Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ copy config < config1[...]

  • Página 133

    Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ copy crash-log tftp IPV6-ADDR Specify TFTP server IPv6 address. Next Available Option: ■ filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 109) ■ copy flash tftp IPV6-ADDR Specify TFTP server IPv6 address. Next Available Opt[...]

  • Página 134

    Change CR/LF to unix style. ■ copy tftp config CONFIG IP-ADDR FILENAME unix Change CR/LF to unix style. ■ copy tftp config CONFIG IPV6-ADDR FILENAME unix Change CR/LF to unix style. ■ copy tftp show-tech IP-ADDR FILENAME unix Change CR/LF to unix style. ■ copy tftp show-tech IPV6-ADDR FILENAME unix Change CR/LF to unix style. ■ copy xmode[...]

  • Página 135

    Change CR/LF to unix style. ■ copy running-config xmodem unix Change CR/LF to unix style. ■ copy startup-config tftp IP-ADDR FILENAME unix Change CR/LF to unix style. ■ copy startup-config tftp IPV6-ADDR FILENAME unix Change CR/LF to unix style. ■ copy startup-config xmodem unix Change CR/LF to unix style. ■ copy event-log tftp IP-ADDR FI[...]

  • Página 136

    ■ copy crash-data mm usb Copy data to a USB ash drive. Next Available Option: ■ filename -- Specify filename for the USB transfer. (ASCII-STR) (p. 109) ■ copy crash-data usb Copy data to a USB ash drive. Next Available Option: ■ filename -- Specify filename for the USB transfer. (ASCII-STR) (p. 109) ■ copy crash-log SLOT-ID-RANGE us[...]

  • Página 137

    Copy data to a USB ash drive. Next Available Option: ■ filename -- Specify filename for the USB transfer. (ASCII-STR) (p. 109) ■ copy event-log usb Copy data to a USB ash drive. Next Available Option: ■ filename -- Specify filename for the USB transfer. (ASCII-STR) (p. 109) xmodem ■ copy xmodem Use xmodem on the terminal as the data s[...]

  • Página 138

    ■ copy crash-log SLOT-ID-RANGE xmodem Use xmodem on the terminal as the data destination. ■ copy crash-log mm xmodem Use xmodem on the terminal as the data destination. ■ copy crash-log xmodem Use xmodem on the terminal as the data destination. ■ copy flash xmodem Use xmodem on the terminal as the data destination. Next Available Option: ?[...]

  • Página 139

    core-dump OVERVIEW Category: config Primary context: Related Commands Usage: [no] core-dump [management-module | interface-module] Description: Enable/disable core-dump on management-module or interface-module. COMMAND STRUCTURE ■ [no] core-dump interface-module -- Enable/disable core-dump on interface-module (p. 137) ■ [no] core-dump managemen[...]

  • Página 140

    crypto OVERVIEW SSH Category: config Primary context: the section called “ crypto ” (page 544) Related Commands autorun (page 68) Usage: crypto host-cert generate self-signed [START END CNAME OU ORG CITY STATE COUNTRY] crypto host-cert zeroize crypto key generate <ssh [rsa] | cert [rsa] KEYSIZE | autorun-key [rsa]> crypto key zeroize <[...]

  • Página 141

    ■ cname -- Common name [e.g., IP address of device]. (ASCII-STR) (p. 140) ■ org-unit -- Organizational unit [Department]. (ASCII-STR) (p. 147) ■ organization -- Organization name. (ASCII-STR) (p. 147) ■ additional options available... ■ zeroize -- Delete an existing certificate. (p. 149) ■ crypto key -- Install/remove RSA key file for s[...]

  • Página 142

    bits ■ crypto key generate ssh rsa bits Specify bitsize for key. Next Available Option: ■ bits < 1024 | 2048 | 3072 > -- (p. 140) ■ crypto key generate ssh rsa bits < 1024 | 2048 | 3072 > Supported Values: ■ 1024 ■ 2048 ■ 3072 ■ crypto key generate ssh dsa bits Specify bitsize for key. Next Available Option: ■ bits < [...]

  • Página 143

    Common name [e.g., IP address of device]. Next Available Option: ■ org-unit -- Organizational unit [Department]. (ASCII-STR) (p. 147) country ■ crypto host-cert generate self-signed [DATE: START-DATE] [DATE: END-DATE] CNAME ORG-UNIT ORGANIZATION CITY STATE < AD | AE | AF | ... > Country code (2 character ISO code). Supported Values: ■ A[...]

  • Página 144

    ■ CG -- Congo ■ CH -- Switzerland ■ CI -- Cote D'Ivoire (Ivory Coast) ■ CK -- Cook Islands ■ CL -- Chile ■ CM -- Cameroon ■ CN -- China ■ CO -- Colombia ■ CR -- Costa Rica ■ CS -- Czechoslovakia (former) ■ CU -- Cuba ■ CV -- Cape Verde ■ CX -- Christmas Island ■ CY -- Cyprus ■ CZ -- Czech Republic ■ DE -- German[...]

  • Página 145

    ■ GW -- Guinea-Bissau ■ GY -- Guyanav ■ HK -- Hong Kong ■ HM -- Heard and McDonald Islands ■ HN -- Honduras ■ HR -- Croatia (Hrvatska) ■ HT -- Haiti ■ HU -- Hungary ■ ID -- Indonesia ■ IE -- Ireland ■ IL -- Israel ■ IM -- Isle of Man ■ IN -- India ■ IO -- British Indian Ocean Territory ■ IQ -- Iraq ■ IR -- Iran ■ I[...]

  • Página 146

    ■ MM -- Myanmar ■ MN -- Mongolia ■ MO -- Macau ■ MP -- Northern Mariana Islands ■ MQ -- Martinique ■ MR -- Mauritania ■ MS -- Montserrat ■ MT -- Malta ■ MU -- Mauritius ■ MV -- Maldives ■ MW -- Malawi ■ MX -- Mexico ■ MY -- Malaysia ■ MZ -- Mozambique ■ NA -- Namibia ■ NC -- New Caledonia ■ NE -- Niger ■ NF -- No[...]

  • Página 147

    ■ SE -- Sweden ■ SG -- Singapore ■ SH -- St. Helena ■ SI -- Slovenia ■ SJ -- Svalbard and Jan Mayen Islands ■ SK -- Slovak Republic ■ SL -- Sierra Leone ■ SM -- San Marino ■ SN -- Senegal ■ SO -- Somalia ■ SR -- Suriname ■ ST -- Sao Tome and Principe ■ SU -- USSR (former) ■ SV -- El Salvador ■ SY -- Syria ■ SZ -- Swa[...]

  • Página 148

    ■ ZM -- Zambia ■ ZR -- Zaire ■ ZW -- Zimbabwe dsa ■ crypto key generate ssh dsa Install DSA host key. Next Available Option: ■ bits -- Specify bitsize for key. (p. 140) end-date ■ crypto host-cert generate self-signed [DATE: START-DATE] [DATE: END-DATE] Validity end date for certicate. Next Available Option: ■ cname -- Common name [...]

  • Página 149

    Install/remove RSA key le for ssh or https server. Next Available Options: ■ generate -- Generate a new key. (p. 146) ■ zeroize -- Delete existing key. (p. 149) key-size ■ crypto key generate cert rsa < 512 | 768 | 1024 > Supported Values: ■ 512 -- Install 512-bit RSA key. ■ 768 -- Install 768-bit RSA key. ■ 1024 -- Install 102[...]

  • Página 150

    Next Available Option: ■ bits -- Specify bitsize for key. (p. 140) ■ crypto key generate autorun-key rsa Install RSA host key. ■ crypto key zeroize autorun rsa Install RSA host key. self-signed ■ crypto host-cert generate self-signed Create a self-signed certicate for the https server. Next Available Option: ■ start-date -- Validity st[...]

  • Página 151

    zeroize ■ crypto host-cert zeroize Delete an existing certicate. ■ crypto key zeroize Delete existing key. Next Available Options: ■ cert -- Remove RSA key file for https certificate. (p. 140) ■ ssh -- Remove host key file for ssh server. (p. 148) ■ autorun -- Remove RSA key file for autorun (p. 139) 149 © 2009 Hewlett-Packard Develop[...]

  • Página 152

    debug OVERVIEW Category: manager Primary context: log (page 361) Related Commands show logging (page 567) show debug (page 545) Usage: [no] debug destination <logging|session|buffer> [no] debug <all|DEBUG_TYPE> Description: Enable/disable debug logging. Parameters: o destination - Enable or disable a debug destination. (Multiple destina[...]

  • Página 153

    DD -- Display DD packets sent/received. (p. 152) ■ ■ Hello -- Display Hello packets sent/received. (p. 153) ■ LSA -- Display LSA packets sent/received. (p. 154) ■ LSR -- Display LSR packets sent/received. (p. 155) ■ LSU -- Display LSU packets sent/received. (p. 155) ■ retransmission -- Display retransmission timer messages. (p. 156) ■[...]

  • Página 154

    agent ■ [no] debug dhcp-snooping agent Display DHCP Snooping agent messages. all ■ [no] debug all Display all debug messages. arp-protect ■ [no] debug arp-protect Display Dynamic ARP Protection messages. database ■ [no] debug ip rip database Display database changes. DD ■ [no] debug ip ospf packet DD Display DD packets sent/received. dest[...]

  • Página 155

    Next Available Options: ■ events -- Display DHCPv6 client events. (p. 153) ■ packet -- Display DHCPv6 client packets. (p. 155) dynamic-ip-lockdown ■ [no] debug dynamic-ip-lockdown Display Dynamic IP Lockdown messages. event ■ [no] debug dhcp-snooping event Display DHCP Snooping event messages. ■ [no] debug event Display event log messages[...]

  • Página 156

    Display Hello packets sent/received. ip ■ [no] debug ip Display debug messages for IPv4. Next Available Options: ■ forwarding -- Display IPv4 forwarding messages. (p. 153) ■ packet -- Display IPv4 packet messages. (p. 155) ■ fib -- Display IP Forwarding Information Base debug messages. (p. 153) ■ ospf -- Display all OSPF routing messages.[...]

  • Página 157

    Display new LSAs added to database. LSR ■ [no] debug ip ospf packet LSR Display LSR packets sent/received. LSU ■ [no] debug ip ospf packet LSU Display LSU packets sent/received. nd ■ [no] debug ipv6 nd Display debug messages for IPv6 neighbor discovery. ospf ■ [no] debug ip ospf Display all OSPF routing messages. Next Available Options: ■[...]

  • Página 158

    ■ [no] debug ipv6 dhcpv6-client packet Display DHCPv6 client packets. ■ [no] debug ipv6 packet Display IPv6 packet messages. retransmission ■ [no] debug ip ospf retransmission Display retransmission timer messages. rip ■ [no] debug ip rip Display all RIP routing messages. Next Available Options: ■ database -- Display database changes. (p.[...]

  • Página 159

    wireless-services ■ [no] debug wireless-services SLOT-ID-RANGE Display debug messages on wireless-services module. 157 © 2009 Hewlett-Packard Development Company, L.P. debug Command Line Interface Reference Guide[...]

  • Página 160

    dhcp OVERVIEW Category: config Primary context: Related Commands Usage: [no] dhcp cong-le-update Description: Argument(s) to Control DHCP Client COMMAND STRUCTURE ■ [no] dhcp config-file-update -- Argument to dhcp-client to specify whether to process option 66 &6 7 (p. 158) COMMAND DETAILS config-file-update (p. 158) config-file-update [...]

  • Página 161

    dhcp-relay OVERVIEW Category: config Primary context: Related Commands Usage: [no] dhcp-relay [no] dhcp-relay [hop-count-increment] dhcp-relay [option 82 append[validate]|replace[validate] |drop[validate]|keep [mac|ip]] [no] dhcp-relay [option 82 [validate]] Description: Enable/disable DHCP relay agent on the device. hop-count-increment --- optiona[...]

  • Página 162

    ip -- Sets the remote id to be the IP address of the VLAN on which the client request was received. (p. 162) ■ ■ mac -- Sets the remote id to be the MAC address of the switch. This is the default value. (p. 163) ■ mgmt-vlan -- Sets the remote id to be the IP address of the Management VLAN. (p. 163) ■ validate -- Specifies the validation for[...]

  • Página 163

    82 ■ [no] dhcp-relay option 82 Optional argument to dhcp-agent used to specify the operational status for option 82. Next Available Options: ■ append -- Specifies that the option 82 field should be appended to client DHCP packet. (p. 161) ■ replace -- Specifies that any existing option 82 fields will be replaced with switch option 82 field fo[...]

  • Página 164

    ■ mgmt-vlan -- Sets the remote id to be the IP address of the Management VLAN. (p. 163) ■ dhcp-relay option 82 validate drop Species that the DHCP packet will be dropped unconditionally, if option 82 eld(s) already exists in the client DHCP packet. Next Available Options: ■ mac -- Sets the remote id to be the MAC address of the switch. [...]

  • Página 165

    keep ■ dhcp-relay option 82 keep Species that no option 82 eld will be added or replaced, if option 82 eld(s) already exists in the client DHCP packet. Next Available Options: ■ mac -- Sets the remote id to be the MAC address of the switch. This is the default value. (p. 163) ■ ip -- Sets the remote id to be the IP address of the VLA[...]

  • Página 166

    ■ dhcp-relay option 82 keep mgmt-vlan Sets the remote id to be the IP address of the Management VLAN. ■ dhcp-relay option 82 drop mgmt-vlan Sets the remote id to be the IP address of the Management VLAN. ■ dhcp-relay option 82 validate append mgmt-vlan Sets the remote id to be the IP address of the Management VLAN. ■ dhcp-relay option 82 va[...]

  • Página 167

    validate ■ dhcp-relay option 82 append validate Species the validation for server response. ■ dhcp-relay option 82 replace validate Species the validation for server response. ■ dhcp-relay option 82 drop validate Species the validation for server response. ■ [no] dhcp-relay option 82 validate Species the validation for server re[...]

  • Página 168

    dhcp-snooping OVERVIEW Category: config Primary context: Related Commands Usage: [no] dhcp-snooping Description: Enable/Disable the global administrative status of DHCP snooping. No snooping will be performed on any VLAN if the global administrative status is disabled. The default state is disabled. COMMAND STRUCTURE ■ [no] dhcp-snooping authoriz[...]

  • Página 169

    ■ remote-id < mac | subnet-ip | mgmt-ip > -- Set relay information option remote-id value to use. (NUMBER) (p. 169) authorized-server ■ [no] dhcp-snooping authorized-server Usage: [no] dhcp-snooping authorized-server <IP-ADDR> Description: Congure valid DHCP Servers. For DHCP Snooping to allow a server to client packet to be forw[...]

  • Página 170

    delay ■ dhcp-snooping database delay < 15 to 86400 > Seconds to delay writing to the lease database le. Range: < 15 to 86400 > file ■ dhcp-snooping database file FILE URL Format: "tftp://<ip-address>/<lename>". mac ■ [no] dhcp-snooping verify mac Verify DHCP header client hardware address. NONAME2 ■ [[...]

  • Página 171

    Next Available Option: ■ 82 -- (p. 166) port-list ■ [no] dhcp-snooping trust [ETHERNET] PORT-LIST remote-id ■ dhcp-snooping option 82 remote-id < mac | subnet-ip | mgmt-ip > Set relay information option remote-id value to use. Supported Values: ■ mac -- switch MAC address. ■ subnet-ip -- subnet VLAN IP address. ■ mgmt-ip -- manage[...]

  • Página 172

    Usage: [no] dhcp-snooping verify <mac> Description: Enable/Disable DHCP packet validation. Parameters: o <mac> - Verify DHCP header client hardware address eld and the source mac address match for packets received on untrusted ports. If 'no' is specied this check is omitted. The default is to verify the macs. Next Availa[...]

  • Página 173

    dir OVERVIEW Category: operator Primary context: Related Commands Usage: dir [<pathname>] Description: Display a list of the les and subdirectories in a directory on a USB device. COMMAND STRUCTURE ■ dir pathname -- Display a list of the files and subdirectories in a directory on a USB device (ASCII-STR) (p. 171) COMMAND DETAILS pathname[...]

  • Página 174

    enable OVERVIEW Switch Management Category: operator Primary context: exit (page 176) Related Commands end (page 173) Usage: enable Description: Enter the Manager Exec context. COMMAND STRUCTURE EXAMPLES Example: enable Enter the Manager user name and password to access the Manager Exec context of the CLI: ProCurve> enable Username: admin1 Passw[...]

  • Página 175

    end OVERVIEW Switch Management Category: manager Primary context: exit (page 176) Related Commands enable (page 172) Usage: end Description: Return to the Manager Exec context. COMMAND STRUCTURE 173 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 176

    erase OVERVIEW Switch Management Category: manager Primary context: the section called “ config ” (page 540) Related Commands the section called “ port-access ” (page 577) Usage: erase <startup-cong | ash <primary|secondary> | cong FILENAME | core-dump FILENAME> Description: Erase stored les. Parameters: o startup-co[...]

  • Página 177

    startup-config (p. 175) core-dump (p. 175) config ■ erase config < config | config1 > Usage: erase cong FILENAME Description: Erase the named conguration le. Supported Values: ■ config ■ config1 core-dump ■ erase core-dump CORE-DUMP Usage: erase core-dump FILENAME Description: Erase the named core le. flash ■ erase flash[...]

  • Página 178

    exit OVERVIEW Switch Management Category: operator Primary context: end (page 173) Related Commands enable (page 172) Usage: exit Description: Return to the previous context or terminate current console/telnet session if you are in the Operator context level. COMMAND STRUCTURE EXAMPLES Example: exit Exit from the interface configuration context to [...]

  • Página 179

    fastboot OVERVIEW Category: config Primary context: Related Commands Usage: [no] fastboot Description: Enable/disable fastboot on switch. COMMAND STRUCTURE 177 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 180

    fault-finder OVERVIEW Category: config Primary context: interface (page 204) Related Commands the section called “ fault-finder ” (page 551) Usage: [no] fault-nder <all|bad-driver|bad-transceiver|bad-cable| too-long-cable|over-bandwidth|broadcast-storm| loss-of-link> [sensitivity <low|medium|high>] Description: Enable/disable fau[...]

  • Página 181

    Supported Values: ■ low -- Low sensitivity. ■ medium -- Medium sensitivity. ■ high -- High sensitivity. 179 © 2009 Hewlett-Packard Development Company, L.P. fault-finder Command Line Interface Reference Guide[...]

  • Página 182

    feature-coordinator OVERVIEW Category: config Primary context: Related Commands Usage: [no] feature-coordinator name <'name'> block policy interface <port-list>|vlan <vid-list> message <'msg-text'> [expires expiration-policy]. 'policy' can be 'ip-address','vlan_deletion' for [...]

  • Página 183

    ■ message -- Friendly error message to be displayed when overriding a restriction (ASCII-STR) (p. 182) ■ expires -- Expiration policy for the features Press <tab> for options (p. 181) ■ app-down -- Expire on application failure Mention a valid application name (ASCII-STR) (p. 181) ■ reboot -- Expire on reboot (p. 183) ■ slot-down --[...]

  • Página 184

    ■ app-down -- Expire on application failure Mention a valid application name (ASCII-STR) (p. 181) ■ reboot -- Expire on reboot (p. 183) ■ feature-coordinator name NAME block vlan-deletion vlan [VLAN]VLAN-ID-LIST message MESSAGE expires Expiration policy for the features Press <tab> for options Next Available Options: ■ slot-down -- Ex[...]

  • Página 185

    Next Available Option: ■ expires -- Expiration policy for the features Press <tab> for options (p. 181) ■ feature-coordinator name NAME block vlan-deletion vlan [VLAN]VLAN-ID-LIST message MESSAGE Friendly error message to be displayed when overriding a restriction Next Available Option: ■ expires -- Expiration policy for the features Pr[...]

  • Página 186

    Expire on reboot slot-down ■ feature-coordinator name NAME block ip-address vlan [VLAN]VLAN-ID-LIST message MESSAGE expires slot-down SLOT-ID Expire on slot-down.Mention slot. ■ feature-coordinator name NAME block vlan-deletion vlan [VLAN]VLAN-ID-LIST message MESSAGE expires slot-down SLOT-ID Expire on slot-down.Mention slot. ■ feature-coordi[...]

  • Página 187

    filter OVERVIEW Troubleshooting Category: config Primary context: connection-rate-filter (page 90) Related Commands ip (page 290) show (page 511) show (page 511) Usage: [no] lter ... Description: Set or edit trafc/security lters. The command allows you to set conditional lters and correspondent actions to apply to the incoming trafc [...]

  • Página 188

    COMMAND DETAILS port-list (p. 188) filter-action (p. 187) ascii (p. 186) protocol (p. 188) forward (p. 187) connection-rate (p. 186) source-port (p. 189) multicast (p. 187) connection-rate-portlist (p. 186) named-filter (p. 188) drop (p. 186) ascii ■ [no] filter source-port named-filter ASCII Set the lter name. Next Available Options: ■ forw[...]

  • Página 189

    Next Available Option: ■ forward -- Set a list of ports to which forwarding of filtered packets is permitted. ([ethernet] PORT-LIST) (p. 187) ■ filter multicast MAC-ADDR drop [ETHERNET] PORT-LIST Set a list of ports to which forwarding of ltered packets is not permitted. ■ filter protocol < ip | ipx | arp | ... > drop [ETHERNET] PORT[...]

  • Página 190

    packets satisfying to the lter condition can be set. The packets satisfying to the lter condition are all packets destined to the MAC-ADDR specied. Use 'lter source-port [ethernet] PORT-NUM ?' to get a list of all possible actions that could be applied to the packets. Next Available Options: ■ forward -- Set a list of ports [...]

  • Página 191

    ■ ip ■ ipx ■ arp ■ appletalk ■ sna ■ netbeui Next Available Options: ■ forward -- Set a list of ports to which forwarding of filtered packets is permitted. ([ethernet] PORT-LIST) (p. 187) ■ drop -- Set a list of ports to which forwarding of filtered packets is not permitted. ([ethernet] PORT-LIST) (p. 186) source-port ■ [no] filte[...]

  • Página 192

    front-panel-security OVERVIEW Switch Security Category: config Primary context: Related Commands Usage: [no] front_panel_security <password-clear [reset-on-clear] | factory-reset | password-recovery> Description: Enable/disable the ability to clear the password(s) and/or conguration via the front panel buttons. If 'password-clear&apos[...]

  • Página 193

    password-clear ■ [no] front-panel-security password-clear Enable/Disable password clear Next Available Option: ■ reset-on-clear -- Reset switch on password clear (p. 191) password-recovery ■ [no] front-panel-security password-recovery Usage: [no] front-panel-security password-recovery Description: Enable/Disable password recovery. To disable [...]

  • Página 194

    getMIB OVERVIEW manager Category: manager Primary context: walkMIB (page 754) Related Commands setMIB (page 504) Usage: getmib OBJECT-STR [OBJECT-STR ...] Description: Retrieve and display the value of the MIB objects specied. COMMAND STRUCTURE ■ getMIB object -- Name and instance of the MIB variable to retrieve. (ASCII-STR) (p. 192) COMMAND D[...]

  • Página 195

    gvrp OVERVIEW config Category: config Primary context: interface (page 204) Related Commands show (page 511) Usage: [no] gvrp Description: Enable/disable GARP VLAN Registration Protocol (GVRP). COMMAND STRUCTURE 193 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 196

    hostname OVERVIEW config Category: config Primary context: snmp-server (page 612) Related Commands Usage: hostname ASCII-STR Description: Specify the device name for administrative purposes. The ASCII-STR denes the device name. It can be up to 30 characters. Use quotes if your device name contains spaces. COMMAND STRUCTURE EXAMPLES Example: host[...]

  • Página 197

    igmp OVERVIEW IGMP Category: config Primary context: the section called “ igmp ” (page 556) Related Commands Usage: igmp ... Description: Congure various global IGMP parameters for the switch. The 'igmp' command must be followed by a feature-specic keyword. Use 'igmp ?' to get a list of all possible options. COMMAND ST[...]

  • Página 198

    igmp-proxy-domain OVERVIEW IGMP Category: config Primary context: show (page 511) Related Commands vlan (page 706) Usage: [no] igmp-proxy-domain DOMAIN-NAME [BORDER-ROUTER-IP-ADDR <MCAST-LOW-IP-ADDR MCAST-HIGH-IP-ADDR|all>] Description: Congure an IGMP proxy domain. If the 'no' keyword is used: The DOMAIN-NAME must be specied,[...]

  • Página 199

    border-ip ■ [no] igmp-proxy-domain DOMAIN-NAME IP-ADDR Specify the igmp proxy border ip address. Next Available Options: ■ mcast-low-ip -- Specify the igmp proxy multicast low bound (inclusive) ip address. (IP-ADDR) (p. 197) ■ all -- Specify ALL if the multicast range 224.0.1.0-239.255.255.255 is desired. (p. 196) domain-name ■ [no] igmp-pr[...]

  • Página 200

    include-credentials OVERVIEW Category: config Primary context: Related Commands Usage: [no] include-credentials Description: Enable/disable including passwords and credentials in cong. NOTES Benefits After making changes to security parameters in the running configuration, you can experiment with the new configuration and, if necessary, view the[...]

  • Página 201

    instrumentation OVERVIEW config Category: config Primary context: Related Commands Usage: [no] instrumentation monitor [ [<all|arp-requests|ip-address-count| learn-discards|login-failures|mac-moves| mac-address-count|pkts-to-closed-ports| port-auth-failures|system-resource-usage| system-delay> [<low|med|high|limitValue>]] ] [no] instrum[...]

  • Página 202

    o high - Precongured high threshold value. o limitValue - User congured threshold value. COMMAND STRUCTURE ■ [no] instrumentation collection -- (p. 200) ■ instrumentation memory -- Sets the maximum size in MB which may be used by instrumentation (p. 200) ■ sizeInMB < 1 to 255 > -- Sets the maximum size in MB which may be used by i[...]

  • Página 203

    monitor ■ [no] instrumentation monitor Usage: [no] instrumentation monitor [ [<all|arp-requests|ip-address-count| learn-discards|login-failures|mac-moves| mac-address-count|pkts-to-closed-ports| port-auth-failures|system-resource-usage| system-delay> [<low|med|high|limitValue>]] ] [no] instrumentation monitor [trap] [no] instrumentati[...]

  • Página 204

    ■ [no] instrumentation monitor < all | arp-requests | ip-address-count | ... > Usage: [no] instrumentation monitor [ [<all|arp-requests|ip-address-count| learn-discards|login-failures|mac-moves| mac-address-count|pkts-to-closed-ports| port-auth-failures|system-resource-usage| system-delay> [<low|med|high|limitValue>]] ] [no] ins[...]

  • Página 205

    ■ mac-address-count -- Mac address count. ■ mac-moves -- MAC Moves. ■ pkts-to-closed-ports -- Packets to closed TCP/UDP ports. ■ port-auth-failures -- Port authentication failures. ■ system-resource-usage -- System resource usage. ■ system-delay -- System Delay. Next Available Options: ■ threshold-value < low | med | high > -- S[...]

  • Página 206

    interface OVERVIEW Category: config Primary context: show interfaces (page 560) Related Commands Usage: [no] interface < [ethernet] PORT-LIST [...] | loopback <num> > Description: Enter the Interface Conguration Level, or execute one command for that level. Without optional parameters specied, the 'interface' command cha[...]

  • Página 207

    queue4 < 0 to 100 > -- Specify min. bandwidth percentage for queue four outgoing traffic. (p. 270) ■ ■ queue5 < 0 to 100 > -- Specify min. bandwidth percentage for queue five outgoing traffic. (p. 270) ■ additional options available... ■ broadcast-limit <0t o9 9> -- Set a broadcast traffic percentage limit (p. 228) ■ dhc[...]

  • Página 208

    ■ provider-network -- Configure qinq port-type as provider-network (p. 267) ■ qos -- Set port-based priority (p. 268) ■ dscp -- Specify DSCP policy to use. (p. 231) ■ binary-range <0t o6 3> -- Specify the DSCP code-point in binary. (BINARY) (p. 227) ■ integer-range <0t o6 3> -- Specify the DSCP code-point in decimal. (p. 239) [...]

  • Página 209

    access-group -- Apply the specified access control list on this VLAN interface (ASCII-STR) (p. 214) ■ ■ direction < in | out | connection-rate-filter | ... > -- (p. 231) ■ address -- Set IP parameters for communication within an IP network (p. 216) ■ dhcp-bootp -- Configure the interface to use DHCP/Bootp server to acquire parameters.[...]

  • Página 210

    all -- Resets all previously blocked by the connection rate filter (p. 219) ■ ■ host -- Match packets from the specified IP address. (IP-ADDR) (p. 237) ■ src-ip -- Match packets from the specified subnet. (IP-ADDR/mask-LENGTH) (p. 277) ■ dhcp-snooping -- (p. 230) ■ forbid -- Prevent ports from becoming a member of the current VLAN ([ether[...]

  • Página 211

    no-default -- Indicates that the router should never be used as a default by its neighbors. (p. 255) ■ ■ number < -2147483647 to 2147483647 > -- The router preferability number. Higher values are more preferable. (p. 256) ■ local-proxy-arp -- Enable/disable local proxy ARP (p. 248) ■ mroute -- Configure IP Multicast Routing parameters[...]

  • Página 212

    chain-name -- Specify key chain to use for MD5 authentication. (ASCII-STR) (p. 228) ■ ■ passive -- Configures an ospf interface as passive. (p. 258) ■ priority < 0 to 255 > -- Set priority of this router as a designated router. (p. 265) ■ retransmit-interval < 1 to 3600 > -- Set retransmit interval in seconds; the default is 5. [...]

  • Página 213

    ■ rip -- Enable/disable/configure Routing Internet Protocol (RIP) on the VLAN interface (p. 274) ■ all -- Process the request for all IP addresses. (p. 219) ■ authentication-key -- Set RIP authentication key (maximum 16 characters). (p. 223) ■ auth-key-text -- Set RIP authentication key (maximum 16 characters). (OCTET-STR) (p. 225) ■ auth[...]

  • Página 214

    ■ rapid-commit -- Obtain IPv6 address quickly from DHCPv6 server. (p. 271) ■ ipv6-addr -- Configure a link-local IPv6 address. (IPV6-ADDR) (p. 245) ■ link-local -- Configure a link-local IPv6 address. (p. 248) ■ ipv6-addr/mask -- Configure IPv6 address represented in CIDR notation. (IPV6-ADDR/PREFIX-LEN) (p. 245) ■ anycast -- Address that[...]

  • Página 215

    ■ binary-range <0t o6 3> -- Specify the DSCP code-point in binary. (BINARY) (p. 227) ■ integer-range <0t o6 3> -- Specify the DSCP code-point in decimal. (p. 239) ■ well-defined < af11 | af12 | af13 | ... > -- Define mapping between a DSCP (Differentiated-Services Codepoint) value and an 802 (p. 285) ■ priority <0|1|2|.[...]

  • Página 216

    propagation-delay (p. 266) join-timer (p. 246) authentication (p. 223) protocol (p. 266) jumbo (p. 246) authentication-key (p. 223) protocol-group (p. 267) kbps (p. 246) authentication-type (p. 224) protocols (p. 267) lacp (p. 247) auth-key-text (p. 225) provider-network (p. 267) lan-prune-delay (p. 247) auto (p. 225) proxy-arp (p. 268) leaveall-ti[...]

  • Página 217

    Usage: [no] ip access-group <ACL-ID> in Description: Apply the specied access control list to inbound packets on this INTERFACE list. The access control list ACL-ID must be dened before it can be applied. Connection rate lter ACLs cannot be applied on this INTERFACE list. Next Available Option: ■ direction <i n>- - (p. 231) ?[...]

  • Página 218

    Usage: [no] ip access-group <ACL-ID> <in|out> in Match packets this device will route to another VLAN out Match packets this device will route onto this VLAN vlan Match packets that originate within this VLAN connection-rate-lter Manage new conection rates originating in this VLAN Description: Apply the specied access control list[...]

  • Página 219

    DHCP/Bootp server. o IP-ADDR/mask-LENGTH - Assign an IP address to the switch or VLAN. The IP-ADDR/mask-LENGTH may be specied in two ways using the following syntax: ip address 192.32.36.87/24 ip address 192.32.36.87 255.255.255.0 Both of the statements above would have the same effect. Multiple addresses may be congured on a single VLAN. Nex[...]

  • Página 220

    conguration. The VLAN for which the conguration is applied can be specied implicitly by preceding the phrase 'ip address' with the 'vlan VLAN-ID' keyword and argument. It can also be called explicitly when called directly from a VLAN context. In the latter case the command affects the VLAN identied by the context. Pa[...]

  • Página 221

    ■ ipv6-addr/mask -- Configure IPv6 address represented in CIDR notation. (IPV6-ADDR/PREFIX-LEN) (p. 245) advert-address ■ interface vlan VLAN-ID ip irdp < multicast | broadcast > Usage: [no] ip irdp <multicast|broadcast> Description: Specify the destination address to be used for router advertisements. It has to be either multicast [...]

  • Página 222

    Process the request for all IP addresses. Next Available Options: ■ area -- Specify an OSPF area. (p. 221) ■ cost < 1 to 65535 > -- Set metric of this interface. (p. 229) ■ [no] interface vlan VLAN-ID ip ospf all Process the request for all IP addresses. Next Available Options: ■ passive -- Configures an ospf interface as passive. (p.[...]

  • Página 223

    ■ interface svlan VLAN-ID connection-rate-filter unblock all Resets all previously blocked by the connection rate lter ■ interface svlan VLAN-ID monitor all < In | Out | Both > Monitor all trafc. Supported Values: ■ In -- Monitor all inbound traffic ■ Out -- Monitor all outbound traffic ■ Both -- Monitor all inbound and outbou[...]

  • Página 224

    Specify an OSPF area. Next Available Options: ■ area-id -- Single integer or IP address style dotted decimal. (OSPF-AREA-ID) (p. 222) ■ backbone -- The backbone area (the same as 0.0.0.0). (p. 226) ■ interface loopback <0t o7> ip ospf all area Specify an OSPF area. Next Available Options: ■ area-id -- Single integer or IP address styl[...]

  • Página 225

    Single integer or IP address style dotted decimal. ■ interface vlan VLAN-ID ip ospf all area OSPF-AREA-ID Single integer or IP address style dotted decimal. arp-protect ■ interface [ETHERNET] PORT-LIST arp-protect Usage: [no] arp-protect trust Description: Congure the port as trusted or untrusted. ARP trafc received on the untrusted inter[...]

  • Página 226

    OSPF authentication key (maximum 8 characters). ■ interface vlan VLAN-ID ip ospf all authentication-key Set simple authentication method and key. Next Available Option: ■ authentication-key -- OSPF authentication key (maximum 8 characters). (OCTET-STR) (p. 223) ■ interface vlan VLAN-ID ip ospf all authentication-key OCTET-STR OSPF authenticat[...]

  • Página 227

    ■ none -- Do not use authentication. ■ text -- Use simple password. auth-key-text ■ interface vlan VLAN-ID ip rip authentication-key OCTET-STR Set RIP authentication key (maximum 16 characters). ■ interface vlan VLAN-ID ip rip IP-ADDR authentication-key OCTET-STR Set RIP authentication key (maximum 16 characters). ■ interface vlan VLAN-ID[...]

  • Página 228

    Automatic address conguration. ■ [no] interface svlan VLAN-ID ipv6 address autoconfig Automatic address conguration. backbone ■ interface loopback <0t o7> ip ospf IP-ADDR area backbone The backbone area (the same as 0.0.0.0). ■ interface loopback <0t o7> ip ospf all area backbone The backbone area (the same as 0.0.0.0). ■ [...]

  • Página 229

    priority. If no guaranteed minimum bandwidth is congured (i.e., the settings for all queues are 0), the trafc is serviced strictly by priority. In practice, this may cause complete starvation of some or all lower-priority queues during any periods where the output port trafc is over-subscribed. This is an Interface context command. It can [...]

  • Página 230

    bootp-gateway ■ [no] interface vlan VLAN-ID ip bootp-gateway Usage: [no] ip bootp-gateway [IP-ADDR] Description: Add or remove the gateway address to be used for stamping incoming DHCP requests. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. Next Available Option: ?[...]

  • Página 231

    may have improved performance after rebooting the switch Next Available Option: ■ unblock -- Resets a host previously blocked by the connection rate filter (p. 281) ■ interface svlan VLAN-ID connection-rate-filter Usage: connection-rate-lter unblock < host SRC-IP-ADDR | SRC-IP-ADDRESS/mask > [no] connection-rate-lter sensitivity <[...]

  • Página 232

    Set dead interval in seconds; the default is 40. Range: < 1 to 65535 > ■ interface vlan VLAN-ID ip ospf IP-ADDR dead-interval < 1 to 65535 > Set dead interval in seconds; the default is 40. Range: < 1 to 65535 > ■ interface vlan VLAN-ID ip ospf all dead-interval < 1 to 65535 > Set dead interval in seconds; the default is[...]

  • Página 233

    direction ■ [no] interface [ETHERNET] PORT-LIST ip access-group ACCESS-GROUP < in > Supported Values: ■ in -- Match inbound packets ■ [no] interface vlan VLAN-ID ip access-group ACCESS-GROUP < in | out | connection-rate-filter | ... > Supported Values: ■ in -- Match inbound packets ■ out -- Match outbound packets ■ connectio[...]

  • Página 234

    Next Available Options: ■ integer-range < 0 to 63 > -- Specify the DSCP code-point in decimal. (p. 239) ■ binary-range < 0 to 63 > -- Specify the DSCP code-point in binary. (BINARY) (p. 227) ■ well-defined < af11 | af12 | af13 | ... > -- Define mapping between a DSCP (Differentiated-Services Codepoint) value and an 802 (p. 2[...]

  • Página 235

    An IPv6 EUI-64 address that can be automatically congured on any interface ■ [no] interface svlan VLAN-ID ipv6 address IPV6-ADDR/PREFIX-LEN eui-64 An IPv6 EUI-64 address that can be automatically congured on any interface failback ■ interface vlan VLAN-ID vrrp vrid < 1 to 255 > failback Usage: vrrp vrid <VRID> failback Descrip[...]

  • Página 236

    ow control is disabled. Flow Control is enabled on both transmit and receive or auto negotiated if port Mode is set to Auto. This is an Interface context command. It can be called directly from the interface context or follow the 'interface [ethernet] PORT-LIST' command. forbid ■ [no] interface vlan VLAN-ID forbid [ETHERNET] PORT-LIS[...]

  • Página 237

    Usage: vlan < vid > ipv6 mld forward < port-list > Description: Instruct the device to forward incoming multicast packets received on the specied ports. This feature is congured on a per-VLAN basis. forward-protocol ■ interface vlan VLAN-ID ip forward-protocol Usage: [no] ip forward-protocol udp IP-ADDR PORT-NUM|PORT-NAME Descri[...]

  • Página 238

    The timers must follow the constraints 2 * join-timer <= leave-timer < leaveall-timer Next Available Options: ■ join-timer < 20 to 75 > -- Set join timer value (centiseconds; default 20). (p. 246) ■ leave-timer < 40 to 300 > -- Set leave timer value (centiseconds; default 300). (p. 248) ■ leaveall-timer < 500 to 3000 >[...]

  • Página 239

    Range: < 5 to 300 > helper-address ■ [no] interface vlan VLAN-ID ip helper-address IP-ADDR Usage: [no] ip helper-address IP-ADDR Description: Add or remove a DHCP server IP address for the VLAN. The DHCP requests received by the switch on this VLAN are to be relayed to the specied DHCP server. This is a VLAN context command. It can be ca[...]

  • Página 240

    igmp ■ [no] interface vlan VLAN-ID ip igmp Usage: [no] ip igmp [...] Description: Enable/disable/congure IP Multicast Group Protocol (IGMP) feature on a VLAN. This command enables, disables or congures the IGMP feature for IGMP communication between Multicast Routers, Multicast Servers, and Multicast Clients connected to the device. This is[...]

  • Página 241

    Set limits for all inbound trafc. Next Available Options: ■ percent < 0 to 100 > -- Specify limit as percent of inbound or outbound traffic. (p. 258) ■ kbps < 0 to 10000000 > -- Specify limit of allowed inbound or outbound traffic in kilobits-per-second on the specified port(s). Actual limits are in steps of 100Kbps to 100Mbps (g[...]

  • Página 242

    Usage: [no] vrrp vrid <VRID> track interface <LPORT-LIST> Description: Enable/disable tracking of logical ports for VR. Next Available Option: ■ lport-list -- Enable/disable tracking of specified logical ports for VR ([ethernet] PORT-LIST) (p. 249) interval ■ interface vlan VLAN-ID ip igmp querier interval < 5 to 300 > Sets th[...]

  • Página 243

    ■ interface vlan VLAN-ID ip Usage: [no] ip ... Description: Congure various IP parameters for the VLAN. The 'ip' command must be followed by a feature-specic keyword. Use 'ip ?' to get a list of all possible options. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan [...]

  • Página 244

    Specify the IP address the request is for. Next Available Options: ■ area -- Specify an OSPF area. (p. 221) ■ cost < 1 to 65535 > -- Set metric of this interface. (p. 229) ■ [no] interface vlan VLAN-ID ip address IP-ADDR/mask-LENGTH Interface IP address/mask. ■ [no] interface vlan VLAN-ID ip bootp-gateway IP-ADDR IPv4 address of the B[...]

  • Página 245

    ■ interface vlan VLAN-ID ip pim-dense ip-addr Usage: ip pim-dense [ip-addr IP-ADDR|any] Description: Set the source IP address for the PIM-DM packets sent out on this interface. You can either explicitly specify one of the existing VLAN's IP addresses or use 'any' option to dynamically determine it from the VLAN's current IP c[...]

  • Página 246

    To associate L3-Mac-Address with a VLAN with default timeout interval of 60s. ip-recv-mac-address <mac-address> To disassociate L3-Mac_address with a VLAN. no ip-recv-mac-address Parameters: <mac-address> - The L3-mac-address to be associated with a VLAN. interval - Specify L3-Mac-Address timeout interval. <1-255> - Timeout interv[...]

  • Página 247

    Usage: [no] ipv6 ... Description: Congure various IP parameters for the VLAN. The 'ipv6' command must be followed by a feature-specic keyword. Use 'ipv6 ?' to get a list of all possible options. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. N[...]

  • Página 248

    irdp ■ [no] interface vlan VLAN-ID ip irdp Usage: [no] ip irdp [...] Description: Congure ICMP Router Discovery Protocol (IRDP). This is a VLAN context command. It can be called directly from the VLAN context or may follow the 'vlan VLAN-ID' command prex. Called without parameters the command enables or disables (if preceded by &a[...]

  • Página 249

    Specify kilobits-per-second limit of allowed ICMP trafc (values should be at least 13Kbps, or max-length ICMP packets will fail.) Range: < 0 to 10000000 > ■ interface [ETHERNET] PORT-LIST rate-limit all in kbps < 0 to 10000000 > Specify limit of allowed inbound or outbound trafc in kilobits-per-second on the specied port(s). [...]

  • Página 250

    leaveall-timer ■ interface [ETHERNET] PORT-LIST gvrp leaveall-timer < 500 to 3000 > Set leaveall timer value (centiseconds; default 1000). Range: < 500 to 3000 > leave-timer ■ interface [ETHERNET] PORT-LIST gvrp leave-timer < 40 to 300 > Set leave timer value (centiseconds; default 300). Range: < 40 to 300 > link-keepali[...]

  • Página 251

    Next Available Option: ■ ip -- Configure various IP parameters for the Loopback (p. 240) lowest ■ interface vlan VLAN-ID vrrp vrid < 1 to 255 > primary-ip-address lowest Dynamically determine lowest IP address. lport-list ■ [no] interface vlan VLAN-ID vrrp vrid < 1 to 255 > track interface [ETHERNET] PORT-LIST Usage: [no] vrrp vri[...]

  • Página 252

    md5-auth-key-chain ■ interface vlan VLAN-ID ip ospf md5-auth-key-chain Set MD5 authentication method and key chain. Next Available Option: ■ chain-name -- Specify key chain to use for MD5 authentication. (ASCII-STR) (p. 228) ■ interface vlan VLAN-ID ip ospf IP-ADDR md5-auth-key-chain Set MD5 authentication method and key chain. Next Available[...]

  • Página 253

    Description: Set the minimum time (in seconds) allowed between sending unsolicited router advertisements. Must be no greater than the maximum time between sending unsolicited router advertisements. Range: < 3 to 1800 > mirror ■ interface [ETHERNET] PORT-LIST monitor all < In | Out | Both > mirror Mirror destination. Next Available Opt[...]

  • Página 254

    If not preceded by 'no', the command accepts a variety of conguration parameters. To get a list of all available parameters use 'ipv6 mld ?'. To get detailed help for a parameter follow it with 'help' keyword. Next Available Options: ■ querier -- This command disables or re-enables the ability for the switch to be[...]

  • Página 255

    some frames may not be copied to the mirroring port. This is an Interface context command. It can be called directly from the interface context or follow the 'interface [ethernet] PORT-LIST' command. Parameters: o 1-4 - Mirror destination number o NAME-STR - Friendly name associated with the mirror destination number. o ACL-NAME - Standar[...]

  • Página 256

    destination number. o ACL-NAME - Standard or Extended Access Control List number. o <in|out|both> direction of the trafc to be monitored. Next Available Option: ■ all < In | Out | Both > -- Monitor all traffic. (p. 219) monitor_mirror_session_id ■ [no] interface [ETHERNET] PORT-LIST monitor all < In | Out | Both > mirror &l[...]

  • Página 257

    Next Available Option: ■ port-name -- Specify a port name up to 64 characters length. (ASCII-STR) (p. 263) ■ interface vlan VLAN-ID name NAME Usage: name ASCII-STR Description: Set the VLAN's name. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. ■ interface s[...]

  • Página 258

    Indicates that the router should never be used as a default by its neighbors. no-tag-added ■ [no] interface [ETHERNET] PORT-LIST monitor all < In | Out | Both > mirror <1t o4> no-tag-added Don't add VLAN tag for this untagged-port ns-interval ■ [no] interface vlan VLAN-ID ipv6 nd ns-interval Usage: [no] ipv6 nd ns-interval <[...]

  • Página 259

    Usage: [no] ip ospf [...] Description: congure Open Shortest Path First (OSPF) protocol parameters on the interface. Called without 'no', the command congures OSPF parameter on interface. Otherwise ('no' is specied), the command remove specied ospf parameter on the interface. Use 'ip ospf ?' to get a list o[...]

  • Página 260

    output ■ [no] interface [ETHERNET] PORT-LIST bandwidth-min output Enable/disable and congure guaranteed minimum bandwidth for outgoing trafc. Next Available Option: ■ queue1 < 0 to 100 > -- Specify min. bandwidth percentage for queue one outgoing traffic. (p. 270) override-interval ■ interface vlan VLAN-ID ip pim-dense override-in[...]

  • Página 261

    Range: < 0 to 100 > ■ interface [ETHERNET] PORT-LIST rate-limit all in percent < 0 to 100 > Specify limit as percent of inbound or outbound trafc. Range: < 0 to 100 > ■ interface [ETHERNET] PORT-LIST rate-limit all out percent < 0 to 100 > Specify limit as percent of inbound or outbound trafc. Range: < 0 to 100 [...]

  • Página 262

    PIM-SM on the interface. Use 'ip pim-sparse ?' to get the list of all conguration options. This command can be used in the VLAN context or in the global context with the 'vlan <VLAN-ID>' prex. Next Available Options: ■ ip-addr -- Set the source IP address for the PIM-SM packets sent out on this interface (p. 241) ?[...]

  • Página 263

    ■ 8 ■ 9 ■ 10 ■ 11 ■ 12 ■ 13 ■ 14 ■ 15 ■ 16 ■ 17 poe-allocate-by ■ interface [ETHERNET] PORT-LIST poe-allocate-by Usage: poe-allocate-by [usage|class|value] Description: Control manual power over ethernet allocation. By default, power-over-ethernet allocation is automatic by usage of the powered device. This can be overriden by[...]

  • Página 264

    poison-reverse ■ [no] interface vlan VLAN-ID ip rip poison-reverse Enable/disable poison reverse on this interface. ■ [no] interface vlan VLAN-ID ip rip IP-ADDR poison-reverse Enable/disable poison reverse on this interface. ■ [no] interface vlan VLAN-ID ip rip all poison-reverse Enable/disable poison reverse on this interface. port-list ■ [...]

  • Página 265

    ■ bandwidth-min -- Enable/disable and configure guaranteed minimum bandwidth settings for outgoing traffic on the port(s) (p. 226) ■ rate-limit -- Enable/disable and configure rate-limiting for all traffic (or for incoming ICMP traffic) on the port(s) (p. 271) ■ link-keepalive -- Configure UDLD on port(s) (p. 248) ■ arp-protect -- Configure[...]

  • Página 266

    the event of power over-subscription. Per-port power is enabled by default. The default priority is low. Note: Lower numbered ports have precedence over higher numbered ports of the same priority. Next Available Option: ■ priority < critical | high | low > -- Enable/Disable per-port power distribution (p. 265) preempt-delay-time ■ [no] in[...]

  • Página 267

    '0.0.0.0') the virtual router uses numerically lowest IP address of the VLAN. The default value is 'lowest'. Next Available Options: ■ ip-addr -- Specify IP address. (IP-ADDR) (p. 241) ■ lowest -- Dynamically determine lowest IP address. (p. 249) priority ■ interface [ETHERNET] PORT-LIST power-over-ethernet < critical |[...]

  • Página 268

    ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ interface vlan VLAN-ID vrrp vrid < 1 to 255 > priority < 1 to 255 > Usage: vrrp vrid <VRID> priority <1-255> Description: Congure priority for the virtual router instance. The default value is '100'. Range: < 1 to 255 > ■ interface svlan VLAN-ID qos pri[...]

  • Página 269

    ■ protocol-group -- Enter a list of protocols for the current VLAN delimited by commas. (ASCII-STR) (p. 267) ■ interface svlan VLAN-ID protocol Set a predened protocol for the current VLAN. Next Available Options: ■ protocols < IPX | IPv4 | IPv6 | ... > -- Set a predefined protocol for the current VLAN. (p. 267) ■ protocol-group --[...]

  • Página 270

    proxy-arp ■ [no] interface vlan VLAN-ID ip proxy-arp Usage: [no] ip proxy-arp Description: Enable/disable proxy ARP. This is a VLAN context command. It can be called directly from the VLAN context or may follow the 'vlan VLAN-ID' command prex. When proxy ARP is enabled on a VLAN, the device responds to ARP requests received on the VL[...]

  • Página 271

    This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. Next Available Options: ■ dscp -- Specify DSCP policy to use. (p. 231) ■ priority < 0 | 1 | 2 | ... > -- Specify priority to use. (p. 265) ■ [no] interface svlan VLAN-ID qos Usage: [no] qos [dscp <0|1...63|a[...]

  • Página 272

    queue1 ■ interface [ETHERNET] PORT-LIST bandwidth-min output < 0 to 100 > Specify min. bandwidth percentage for queue one outgoing trafc. Range: < 0 to 100 > Next Available Option: ■ queue2 < 0 to 100 > -- Specify min. bandwidth percentage for queue two outgoing traffic. (p. 270) queue2 ■ interface [ETHERNET] PORT-LIST ba[...]

  • Página 273

    Range: < 0 to 100 > Next Available Option: ■ queue6 < 0 to 100 > -- Specify min. bandwidth percentage for queue six outgoing traffic. (p. 271) queue6 ■ interface [ETHERNET] PORT-LIST bandwidth-min output < 0 to 100 > < 0 to 100 > < 0 to 100 > < 0 to 100 > < 0 to 100 > < 0 to 100 > Specify min. ban[...]

  • Página 274

    rate-limit ip access-group <acl-name> in kbps <0-10000000> no rate-limit <icmp | all <in|out> | ip <access-group>> rate-limit bcast in percent <0-100> no rate-limit bcast in rate-limit mcast in percent <0-100> no rate-limit mcast in Description: Enable/disable and congure rate-limiting for all trafc ([...]

  • Página 275

    reachable-time ■ [no] interface vlan VLAN-ID ipv6 nd reachable-time Usage: [no] ipv6 nd reachable-time <milliseconds> Description: Congures the length of time neighbors are considered reachable after being conrmed as reachable via the neighbor unreachability detection algorithm. This value appears in router advertisements sent on this[...]

  • Página 276

    ■ interface vlan VLAN-ID ip ospf all retransmit-interval < 1 to 3600 > Set retransmit interval in seconds; the default is 5. Range: < 1 to 3600 > rip ■ [no] interface vlan VLAN-ID ip rip Usage: [no] ip rip [...] Description: Enable/disable/congure Routing Internet Protocol (RIP) on the VLAN interface. Called without 'no&apos[...]

  • Página 277

    Supported Values: ■ V1-only -- Use RIP version 1 only. ■ V2-only -- Use RIP version 2 only. ■ V1-or-V2 -- Use RIP 2 in the RIP 1 compatible mode. send ■ interface vlan VLAN-ID ip rip send < disabled | V1-only | V1-compatible-V2 | ... > Dene RIP version for outgoing packets. Supported Values: ■ disabled -- Do not send RIP updates.[...]

  • Página 278

    o <name> - Policy name. o in - Apply the policy in inbound direction. Next Available Option: ■ in -- Apply policy on inbound packets. (p. 238) source-lockdown ■ [no] interface [ETHERNET] PORT-LIST ip source-lockdown Usage: [no] ip source-lockdown [ethernet] <port-list> Description: Enable/disable IP source lockdown in global cong[...]

  • Página 279

    network speed (100 or 1000 Mbps)and the port wiring operation (MDI-X or MDI) between the switch and another IEEE 802.3ab-compliant device running the 'Auto Negotiation' protocol. - 100-full 100 Mbps, full duplex. - auto-100 Same as 'auto'. Limited to 100Mbps network speed. - auto-1000 Same as 'auto'. Limited to 1000Mbp[...]

  • Página 280

    Next Available Options: ■ dhcp-snooping -- (p. 230) ■ ip -- Configure various IP parameters for the VLAN (p. 240) ■ ipv6 -- Configure various IP parameters for the VLAN (p. 244) ■ auto -- Cause each port identified in the port list to learn its VLAN membership using the GARP VLAN Registration Protocol (GVRP) ([ethernet] PORT-LIST) (p. 225) [...]

  • Página 281

    Next Available Options: ■ interface -- Enable/disable tracking of logical ports for VR (p. 239) ■ vlan -- Enable/disable tracking of VLANs for VR (p. 282) transit-delay ■ interface vlan VLAN-ID ip ospf transit-delay < 1 to 3600 > Set transit delay in seconds; the default is 1. Range: < 1 to 3600 > ■ interface vlan VLAN-ID ip osp[...]

  • Página 282

    type ■ interface [ETHERNET] PORT-LIST type < Trunk | | | ... > Supported Values: ■ Trunk ■ ■ ■ 10FL ■ 10T ■ 10/100TX ■ 100FX ■ 100FX-SFP ■ Vlan ■ Mesh ■ 1000SX ■ 1000LX ■ 100/1000T ■ 1000T ■ 1000Stk ■ 1000LH ■ 10GbE-CX4 ■ 10GbE-SR ■ 10GbE-ER ■ 10GbE-LR ■ 1000T-SFP ■ 100GEN ■ 1000GEN ■ 10GbE-GE[...]

  • Página 283

    Usage: [no] ip forward-protocol udp IP-ADDR PORT-NUM|PORT-NAME Description: Add or remove a UDP server address for the VLAN. The broadcast packets received by the switch on this VLAN are to be forwarded to the specied application server. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN[...]

  • Página 284

    untagged ■ [no] interface vlan VLAN-ID untagged [ETHERNET] PORT-LIST Usage: [no] untagged [ethernet] PORT-LIST Description: Assign ports to current VLAN as untagged. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. ■ [no] interface svlan VLAN-ID untagged [ETHERNET] P[...]

  • Página 285

    ■ ipv6 -- Configure various IP parameters for the VLAN (p. 244) ■ connection-rate-filter -- Re-enables access to a host or set of hosts that has been previously blocked by the connection rate filter (p. 228) ■ monitor -- Define either the VLAN is to be monitored or not (p. 252) ■ name -- Set the VLAN's name (ASCII-STR) (p. 254) ■ pro[...]

  • Página 286

    Usage: [no] voice Description: Labels this VLAN as a Voice VLAN, allowing you to separate, prioritize, and authenticate voice trafc moving through your network. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. vrid ■ [no] interface vlan VLAN-ID vrrp vrid < 1 to 2[...]

  • Página 287

    well-defined ■ interface [ETHERNET] PORT-LIST qos dscp < af11 | af12 | af13 | ... > Usage: [no] qos dscp-map <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32| af33|af41|af42|af43|ef|cs0..cs7|000000|000001...111111>| [priority <<0-7>|no-override>] [name <str>] Description: Dene mapping between a DSCP (Differentiat[...]

  • Página 288

    ■ af12 ■ af13 ■ af21 ■ af22 ■ af23 ■ af31 ■ af32 ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 ■ interface vlan VLAN-ID qos dscp < af11 | af12 | af13 | ... > Usage: [no] qos dscp-map <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32| af33|af41|af42|af43|ef|cs0..cs[...]

  • Página 289

    010010 0 Assured Forwarding AF21 010100 0 Assured Forwarding AF22 010110 3 Assured Forwarding AF23 011010 4 Assured Forwarding AF31 011100 4 Assured Forwarding AF32 011110 5 Assured Forwarding AF33 100010 6 Assured Forwarding AF41 100100 6 Assured Forwarding AF42 100110 7 Assured Forwarding AF43 101110 7 Expedited Forwarding EF 000000 0 Classs Sele[...]

  • Página 290

    'no qos dscp-map <codepoint>' will remove the settings for the specied codepoint from the running conguration. The priority is set to no-override and the name is deleted (the priority and name can only be removed if no QoS feature is congured to use this DSCP Policy). 'no qos dscp-map <codepoint> name' will [...]

  • Página 291

    ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 with-monitoring ■ interface vlan VLAN-ID vrrp vrid < 1 to 255 > failover with-monitoring Usage: vrrp vrid <VRID> failover with-monitoring Description: Trigger VR to failover and continue montior of master VR. 289 © 2009 Hewlett-Packard Development Company, L.P. interface Command Line Interface [...]

  • Página 292

    ip OVERVIEW Category: config Primary context: ipv6 (page 313) Related Commands show ip (page 561) Usage: [no] ip ... Description: Congure various IP parameters for the switch. The 'ip' command must be followed by a feature-specic keyword. Use 'ip ?' to get a list of all possible options. COMMAND STRUCTURE ■ [no] ip acces[...]

  • Página 293

    ■ server-address -- Configure DNS server IP address. (p. 308) ■ priority <1t o2> -- Priority of Server Address. (NUMBER) (p. 305) ■ ip6addr -- DNS server IPv6 address. (IPV6-ADDR) (p. 302) ■ ipaddr -- DNS server IP address. (IP-ADDR) (p. 302) ■ [no] ip icmp -- Configure ICMP Rate Limiting capacity (p. 300) ■ addrmask -- Enable/dis[...]

  • Página 294

    ■ [no] ip source-binding -- Add/remove a static IP-to-MAC binding in the DHCP snooping database (p. 308) ■ trap -- Set traps for dynamic ip lockdown (p. 311) ■ OutOfResources -- Set out-of-resources trap. (p. 305) ■ vlan -- (VLAN-ID) (p. 312) ■ ip -- (IP-ADDR) (p. 302) ■ mac -- (MAC-ADDR) (p. 304) ■ interface -- ([ethernet] PORT-NUM) [...]

  • Página 295

    server-address (p. 308) ip-addr (p. 302) broadcast-request (p. 296) serverV6 (p. 308) IP-PORT (p. 303) burst-normal (p. 296) source-binding (p. 308) IPV4-ADDR (p. 303) cipher (p. 296) source-lockdown (p. 309) IPV4-MASK (p. 303) connection-rate-filter (p. 297) source-route (p. 309) irdp (p. 303) default (p. 297) ssh (p. 309) keystring (p. 303) defau[...]

  • Página 296

    access-method ■ [no] ip authorized-managers IP-ADDR access-method < all | ssh | telnet | ... > Dene an access method desired. Supported Values: ■ all ■ ssh ■ telnet ■ web ■ snmp ■ tftp address ■ [no] ip address Usage: [no] ip address [dhcp-bootp|IP-ADDR/MASK-LENGTH] Description: Set IP parameters for communication within an[...]

  • Página 297

    o innite - sets the timeout to 0. A value of 0 indicates an innite timeout to the switch. (Internally the ARP age timeout is set to 99,999,999 seconds (approximately 3.2 years) Next Available Options: ■ timeout < 1 to 1440 > -- Modify Address Resolution Protocol (ARP) table entry timeout, specified in minutes (NUMBER) (p. 311) ■ inf[...]

  • Página 298

    auto ■ ip igmp auto [ETHERNET] PORT-LIST Usage: ip igmp auto [ethernet] PORT-LIST Description: Instruct the device to monitor incoming multicast trafc on the specied ports (this is the default behavior). This feature is congured on a per-VLAN basis. blackhole ■ [no] ip route IP-ADDR/MASK-LENGTH blackhole Specify that packets are silent[...]

  • Página 299

    ■ 3des-cbc ■ aes192-cbc ■ aes256-cbc ■ rijndael-cbc@lysator.liu.se ■ aes128-ctr ■ aes192-ctr ■ aes256-ctr connection-rate-filter ■ [no] ip access-list connection-rate-filter Congure a connection-rate-lter Access Control List. Next Available Option: ■ name -- Specify name of Access Control List to configure. (ASCII-STR) (p. 3[...]

  • Página 300

    directed-broadcast ■ [no] ip directed-broadcast Usage: [no] ip directed-broadcast Description: Enable/disable directed broadcast forwarding. distance ■ ip route IP-ADDR/MASK-LENGTH IP-ADDR distance < 1 to 255 > Set the administrative distance to associate with this static route. Range: < 1 to 255 > ■ ip route IP-ADDR/MASK-LENGTH v[...]

  • Página 301

    Next Available Option: ■ domain-name -- Default domain suffix. (ASCII-STR) (p. 298) ■ ip dns domain-name DOMAIN-NAME Default domain sufx. echo ■ [no] ip icmp echo Usage: [no] ip icmp echo ... Description: Enable/disable echo replies to broadcast echo requests. Next Available Option: ■ broadcast-request < Min | Max > -- Enable/disab[...]

  • Página 302

    Usage: [no] ip igmp forcedfastleave [ethernet] PORT-LIST Description: When enabled, this feature forces IGMP Fast Leaves to occur even when the port is cascaded. See 'ip igmp fastleave' for more information. The default behavior is for IGMP Forced FastLeaves to be disabled. This feature is congured for ports on a per-VLAN basis. forwar[...]

  • Página 303

    available parameters use 'ip igmp ?'. To get a detailed help for a parameter, follow it with 'help' keyword. Next Available Options: ■ querier -- Specify querier/non-querier capability for the VLAN (p. 306) ■ high-priority-forward -- Enable/disable the high priority forwarding of traffic for subscribed IP Multicast groups (p[...]

  • Página 304

    Specify how often (in minutes) the switch tries to get the current time. Range: < 1 to 9999 > ip ■ ip source-binding VLAN-ID IP-ADDR Next Available Option: ■ mac -- (MAC-ADDR) (p. 304) ip6addr ■ [no] ip dns server-address priority < 1 to 2 > IPV6-ADDR DNS server IPv6 address. ipaddr ■ ip default-gateway IP-ADDR IPv4 address of t[...]

  • Página 305

    IP-PORT ■ ip ssh port TCP/UDP-PORT Specify the TCP port number on which the daemon should listen. IPV4-ADDR ■ ip authorized-managers IP-ADDR Authorized manager IPv4 address. Next Available Options: ■ IPV4-MASK -- IP mask defining a group of adjacent manager IP addresses. (IP-ADDR) (p. 303) ■ access < Manager | Operator > -- Define an [...]

  • Página 306

    Usage: ip load-sharing <2-4> no ip load-sharing Description: Specify the maximum number of equal cost IP load sharing paths. no ip load-sharing disables IP load sharing. Range: < 2 to 4 > mac ■ [no] ip ssh mac < hmac-md5 | hmac-sha1 | hmac-sha1-96 | ... > Specify a mac to enable/disable. Supported Values: ■ hmac-md5 ■ hmac-s[...]

  • Página 307

    Next Available Option: ■ start-seq-num < 1 to 2147483647 > -- Specify the starting sequence number. (p. 310) ■ [no] ip access-list connection-rate-filter NAME Specify name of Access Control List to congure. number ■ [no] ip access-list extended < 100 to 199 > Specify Access Control List to congure by number. Range: < 100 [...]

  • Página 308

    public-key ■ ip ssh public-key < manager | operator > Congure a client public-key. Supported Values: ■ manager -- Select manager public keys. ■ operator -- Select operator public keys. Next Available Option: ■ keystring -- ASCII formatted public-key. (ASCII-STR) (p. 303) querier ■ [no] ip igmp querier Usage: [no] ip igmp querier [...]

  • Página 309

    Usage: ip icmp reply-limit Description: Enable/disable ICMP reply rate limiting. resequence ■ ip access-list resequence Renumber the entries in an Access Control List. Next Available Option: ■ name -- Specify name of Access Control List to configure. (ASCII-STR) (p. 304) route ■ [no] ip route Usage: [no] ip route IP-ADDR/MASK-LENGTH <IP-AD[...]

  • Página 310

    Description: Dene the device router id. The no form of the command clears the router-id. Next Available Option: ■ ipaddr -- Define the device router id (IP-ADDR) (p. 302) routing ■ [no] ip routing Usage: [no] ip routing Description: Enable/disable IP routing support on the device. server ■ ip timep manual IP-ADDR Timep server IPv4 address.[...]

  • Página 311

    o <VLAN-ID> -- VLAN ID number to bind with the specied IP and MAC address on the specied port in the DHCP snooping binding database. o <MAC-ADDR> -- MAC address to bind with the specied IP address and VLAN on the specied port. o <IP-ADDR> -- IP address to bind with the specied MAC address and VLAN on the specied [...]

  • Página 312

    function unless SSH is also enabled. o 'port <<1-65535>|default>' - Set the TCP port on which the daemon should listen for SSH connections. The default is 22. o 'public-key <operator|manager> KEYSTRING' - set a key for public-key authentication. The KEYSTRING parameter must be enclosed in quotes--either"KE[...]

  • Página 313

    timeout ■ ip arp-age < 1 to 1440 > Usage: [no] ip arp-age <[0..1440]|innite> Description: Modify Address Resolution Protocol (ARP) table entry timeout, specied in minutes. The default timeout is 20 minutes. o <0..1440> - timeout specied in minutes. o innite - sets the timeout to 0. A value of 0 indicates an innite[...]

  • Página 314

    Usage: [no] ip source-binding trap OutOfResources Description: Set traps for dynamic ip lockdown. Next Available Option: ■ OutOfResources -- Set out-of-resources trap. (p. 305) ttl ■ ip ttl < 2 to 255 > Usage: ip ttl <2-255> Description: Specify TTL for outgoing IP packets. Range: < 2 to 255 > udp-bcast-forward ■ [no] ip udp[...]

  • Página 315

    ipv6 OVERVIEW Category: config Primary context: show ipv6 (page 562) Related Commands ip (page 290) Usage: [no] ipv6 ... Description: Congure various IP parameters for the VLAN. The 'ipv6' command must be followed by a feature-specic keyword. Use 'ipv6 ?' to get a list of all possible options. This is a VLAN context comman[...]

  • Página 316

    access ■ ipv6 authorized-managers IPV6-ADDR access < Manager | Operator > Dene an access level desired. Supported Values: ■ Manager ■ Operator access-list ■ [no] ipv6 access-list Usage: [no] ipv6 access-list <ACL-ID> <resequence> <ACL-ID> <start-seq-no> <increment> Description: Enter the ipv6 acl conte[...]

  • Página 317

    [access-method <all|ssh|telnet|web|snmp|tftp>] Description: Dene the IPV6 addresses allowed to manage the switch. Clients using the specied IPV6 addresses are allowed to access the switch with the specied access method and access level. A maximum of 100 addresses may be congured. Parameters: o IPV6-ADDR - The IPV6 address of an au[...]

  • Página 318

    This command is executed at the global cong level. It congures the number of neighbor solicitations to send when performing duplicate address detection for a unicast address congured on a VLAN interface. Range: 0-600 (0 = disabled) Default: 3 (enabled) Next Available Option: ■ number < 0 to 600 > -- Configures the number of neighbo[...]

  • Página 319

    ■ ipv6 icmp error-interval < 0 to 2147483647 > bucket-size < 1 to 200 > Specify bucket size. Range: < 1 to 200 > IPV6-ADDR ■ ipv6 authorized-managers IPV6-ADDR Authorized manager IPv6 address. Next Available Options: ■ IPV6-MASK -- IP mask defining a group of adjacent manager IP addresses. (IPV6-ADDR) (p. 317) ■ access <[...]

  • Página 320

    Next Available Option: ■ start-seq-num < 1 to 2147483647 > -- Specify the starting sequence number. (p. 318) start-seq-num ■ ipv6 access-list resequence RESEQUENCE < 1 to 2147483647 > Specify the starting sequence number. Range: < 1 to 2147483647 > Next Available Option: ■ incr-num < 1 to 2147483646 > -- Specify the in[...]

  • Página 321

    jumbo OVERVIEW Category: config Primary context: the section called “ jumbos ” (page 564) Related Commands Usage: jumbo ... Description: Congure Global Jumbos parameters for the switch. NOTES Restriction on Value of max-frame-size The value of max-frame-size must be greater than or equal to 18 bytes more than the value selected for ip-mtu. F[...]

  • Página 322

    key-chain OVERVIEW Switch Security Category: config Primary context: show (page 511) Related Commands Usage: key-chain ASCII-STR Usage: key-chain ASCII-STR key NUMBER [key-string ASCII-STR] [accept-lifetime <innite|<<START-TIME|now> <END-TIME|duration SEC>>>] [send-lifetime <innite|<<START-TIME|now> <END[...]

  • Página 323

    send-lifetime -- Set key send lifetime. (p. 336) ■ ■ date -- Key send start date. (MM/DD[/[YY]YY]) (p. 323) ■ time -- Key send start time. (HH:MM[:SS]) (p. 338) ■ additional options available... ■ infinite -- Set infinite lifetime. (p. 332) ■ now -- Use current day and time. (p. 334) ■ date -- Key send stop date. (MM/DD[/[YY]YY]) (p. [...]

  • Página 324

    ■ duration -- Use current day and time. (NUMBER) (p. 329) ■ send-lifetime -- Set key send lifetime. (p. 336) ■ date -- Key send start date. (MM/DD[/[YY]YY]) (p. 323) ■ additional options available... ■ infinite -- Set infinite lifetime. (p. 332) ■ now -- Use current day and time. (p. 334) ■ additional options available... ■ infinite[...]

  • Página 325

    ■ time -- Key send stop time. (HH:MM[:SS]) (p. 338) ■ duration -- Use current day and time. (NUMBER) (p. 329) ■ infinite -- Set infinite lifetime. (p. 332) ■ now -- Use current day and time. (p. 334) ■ date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 323) ■ time -- Key send stop time. (HH:MM[:SS]) (p. 338) ■ duration -- Use current da[...]

  • Página 326

    Key send start date. Next Available Option: ■ time -- Key send start time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime [DATE] [TIME] [DATE] [TIME] send-lifetime [DATE] [TIME] [DATE] Key send stop date. Next Available Option: ■ time -- Key send stop time. (HH:MM[:SS]) (p. 338) ■ ke[...]

  • Página 327

    ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime now [DATE] [TIME] send-lifetime [DATE] Key send start date. Next Available Option: ■ time -- Key send start time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime now [DATE] [TIME] send-lifetime [DATE] [TI[...]

  • Página 328

    Key send start date. Next Available Option: ■ time -- Key send start time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime infinite send-lifetime [DATE] [TIME] [DATE] Key send stop date. Next Available Option: ■ time -- Key send stop time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN k[...]

  • Página 329

    Key accept stop date. Next Available Option: ■ time -- Key send stop time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime [DATE] [TIME] [DATE] [TIME] send-lifetime [DATE] Key send start date. Next Available Option: ■ time -- Key send start time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN key < 0 to 25[...]

  • Página 330

    ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now [DATE] Key accept stop date. Next Available Option: ■ time -- Key send stop time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now [DATE] [TIME] send-lifetime [DATE] Key send start date. Next Available Option: ■ time -- Key send start time[...]

  • Página 331

    Next Available Option: ■ time -- Key send stop time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime infinite send-lifetime [DATE] Key send start date. Next Available Option: ■ time -- Key send start time. (HH:MM[:SS]) (p. 338) ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime infinite send-life[...]

  • Página 332

    Use current day and time. ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime [DATE] [TIME] [DATE] [TIME] send-lifetime now duration NUMBER Use current day and time. ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime [DATE] [TIME] duration NUMBER Use current day and time. Next Avail[...]

  • Página 333

    ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime infinite send-lifetime now duration NUMBER Use current day and time. ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING send-lifetime [DATE] [TIME] duration NUMBER Use current day and time. ■ key-chain KEY-CHAIN key < 0 to 255 > key-string[...]

  • Página 334

    ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now duration NUMBER send-lifetime [DATE] [TIME] duration NUMBER Use current day and time. ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now duration NUMBER send-lifetime now duration NUMBER Use current day and time. ■ key-chain KEY-CHAIN key < 0 to 255 > accept-[...]

  • Página 335

    ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING send-lifetime infinite Set innite lifetime. ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime [DATE] [TIME] [DATE] [TIME] send-lifetime infinite Set innite lifetime. ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime [DATE] [TIME] duration NUMBER sen[...]

  • Página 336

    Next Available Options: ■ accept-lifetime -- Set key accept lifetime. (p. 323) ■ send-lifetime -- Set key send lifetime. (p. 336) now ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime [DATE] [TIME] [DATE] [TIME] send-lifetime now Use current day and time. Next Available Options: ■ date -- Key send stop date.[...]

  • Página 337

    ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime infinite send-lifetime now Use current day and time. Next Available Options: ■ date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 323) ■ duration -- Use current day and time. (NUMBER) (p. 329) ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING s[...]

  • Página 338

    ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now duration NUMBER send-lifetime now Use current day and time. Next Available Options: ■ date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 323) ■ duration -- Use current day and time. (NUMBER) (p. 329) ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime infinite send-life[...]

  • Página 339

    Next Available Options: ■ date -- Key send start date. (MM/DD[/[YY]YY]) (p. 323) ■ now -- Use current day and time. (p. 334) ■ infinite -- Set infinite lifetime. (p. 332) ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime now duration NUMBER send-lifetime Set key send lifetime. Next Available Options: ■ dat[...]

  • Página 340

    ■ infinite -- Set infinite lifetime. (p. 332) ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now [DATE] [TIME] send-lifetime Set key send lifetime. Next Available Options: ■ date -- Key send start date. (MM/DD[/[YY]YY]) (p. 323) ■ now -- Use current day and time. (p. 334) ■ infinite -- Set infinite lifetime. (p. 332) ■ key[...]

  • Página 341

    Key send stop time. Next Available Option: ■ send-lifetime -- Set key send lifetime. (p. 336) ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime [DATE] [TIME] [DATE] [TIME] send-lifetime [DATE] [TIME] Key send start time. Next Available Options: ■ date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 323) ■ durati[...]

  • Página 342

    Next Available Options: ■ date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 323) ■ duration -- Use current day and time. (NUMBER) (p. 329) ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime now [DATE] [TIME] send-lifetime [DATE] [TIME] [DATE] [TIME] Key send stop time. ■ key-chain KEY-CHAIN key < 0 to 255 &[...]

  • Página 343

    Next Available Options: ■ date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 323) ■ duration -- Use current day and time. (NUMBER) (p. 329) ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING send-lifetime [DATE] [TIME] [DATE] [TIME] Key send stop time. ■ key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING send-lif[...]

  • Página 344

    ■ duration -- Use current day and time. (NUMBER) (p. 329) ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime [DATE] [TIME] duration NUMBER send-lifetime [DATE] [TIME] [DATE] [TIME] Key send stop time. ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime [DATE] [TIME] duration NUMBER send-lifetime now [DATE] [TIME] Key send s[...]

  • Página 345

    Key send stop time. ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime infinite send-lifetime [DATE] [TIME] Key send start time. Next Available Options: ■ date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 323) ■ duration -- Use current day and time. (NUMBER) (p. 329) ■ key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime infi[...]

  • Página 346

    kill OVERVIEW Switch Management Category: manager Primary context: the section called “ ssh ” (page 593) Related Commands the section called “ telnet ” (page 598) Usage: kill [SESSION_ID] Description: Kill other active console, telnet, or ssh sessions. If no session ID is specied, all other active sessions are terminated. COMMAND STRUCTU[...]

  • Página 347

    If no session ID is specied, all other active sessions are terminated. Range: < (Range unavailble) > 345 © 2009 Hewlett-Packard Development Company, L.P. kill Command Line Interface Reference Guide[...]

  • Página 348

    licenses OVERVIEW Category: manager Primary context: show licenses (page 565) Related Commands Usage: licenses <hardware-id PKG-ID | install PKG-ID PKG-KEY | uninstall PKG-ID> Description: Manage premium features. Parameters: o hardware-id - Display the hardware ID for installing the specied package on this chassis. o install - Install the[...]

  • Página 349

    COMMAND DETAILS uninstall (p. 348) Network-Services (p. 347) hardware-id (p. 347) premium (p. 347) install (p. 347) Premium (p. 348) key (p. 347) hardware-id ■ licenses hardware-id Display hardware ID for installation request. Next Available Options: ■ Premium -- For Premium features (p. 348) ■ Network-Services -- For Network-Services feature[...]

  • Página 350

    For Premium features Next Available Option: ■ key -- Enter key for this feature. (ASCII-STR) (p. 347) Premium ■ licenses hardware-id Premium For Premium features ■ licenses uninstall Premium For Premium features uninstall ■ licenses uninstall Uninstall the specied package. Next Available Options: ■ Premium -- For Premium features (p. 3[...]

  • Página 351

    link-keepalive OVERVIEW Category: config Primary context: Related Commands Usage: link-keepalive interval <10-100> link-keepalive retries <3-10> Description: Congure UDLD on your switch. The rst version of the command is used to congure keep-alive interval in seconds. Here 10 is 1 sec, 11 is 1.1 sec, and so on. Default keep-ali[...]

  • Página 352

    link-test OVERVIEW Category: operator Primary context: ping (page 392) Related Commands Usage: link-test MAC-ADDR [vlan <VLAN-ID>] [repetitions <1-999>] [timeout <1-256>] Description: Test the connection to a MAC address on the LAN. The command sends a 802.2 test packet to a specic target node on a network directly attached to [...]

  • Página 353

    COMMAND DETAILS timeout (p. 351) mac (p. 351) vlan (p. 351) repetitions (p. 351) mac ■ link-test MAC-ADDR MAC address of device to which to send link test. repetitions ■ link-test repetitions < 1 to 999 > Number of test packets to send <1-999>. Range: < 1 to 999 > timeout ■ link-test timeout < 0 to 256 > Test timeout i[...]

  • Página 354

    lldp OVERVIEW Device Discovery Category: config Primary context: show lldp (page 566) Related Commands Usage:lldp ... Description: Conguration for LLDP parameter. Provides a standards-based method for enabling the switches to advertise themselves to adjacent devices and to learn about adjacent LLDP devices. You can also congure the Media Exte[...]

  • Página 355

    ■ [no] lldp enable-notification -- Set the port for which notification should be enabled ([ethernet] PORT-LIST) (p. 356) ■ lldp fast-start-count <1t o1 0> -- Set MED fast-start count in seconds (NUMBER) (p. 357) ■ lldp holdtime-multiplier <2t o1 0> -- Set holdtime-multipler between <2-10>; the default is 4 (NUMBER) (p. 357) [...]

  • Página 356

    Description: Congure various parameters related to lldp automatic provisioning. Next Available Option: ■ radio-ports -- Configure various parameters related to automatic provisioning for the radio-port application (p. 358) auto-vlan ■ [no] lldp auto-provision radio-ports auto-vlan Create a VLAN, with the specied VLAN id value, to be used [...]

  • Página 357

    Specify the ca-value string. civic-addr ■ [no] lldp config [ETHERNET] PORT-LIST medPortLocation civic-addr Usage: lldp cong <port-list> medPortLocation civic-str <COUNTRY-STR> <WHAT> <CA-TYPE> <CA-VALUE> Description: Specify the civic location-id information to be advertised. The total length of the TLV is 104. CO[...]

  • Página 358

    Next Available Options: ■ basicTlvEnable < port_descr | system_name | system_descr | ... > -- Specify the Basic TLV List to be advertised. (NUMBER) (p. 354) ■ ipAddrEnable -- Set IP ADDR to be enabled. (p. 357) ■ dot1TlvEnable -- Specify the 802.1 TLV List to be advertised. (p. 356) ■ medTlvEnable < capabilities | network_policy | [...]

  • Página 359

    fast-start-count ■ lldp fast-start-count <1t o1 0> Usage: lldp fast-start-count <1-10> Description: Set MED fast-start count in seconds. Range: < 1 to 10 > holdtime-multiplier ■ lldp holdtime-multiplier <2t o1 0> Usage: lldp holdtime-multiplier <2-10> Description: Set holdtime-multipler between <2-10>; the de[...]

  • Página 360

    Specify the MED TLV List to be advertised. Supported Values: ■ capabilities -- Capability TLV ■ network_policy -- Network Policy TLV ■ location_id -- Location Id TLV ■ poe -- Poe TLV omodes ■ lldp admin-status [ETHERNET] PORT-LIST < TxOnly | RxOnly | Tx_Rx | ... > Set the operational mode: transmit | receive | transmit-receive | dis[...]

  • Página 361

    Usage:[no] lldp run Description: Start or Stop LLDP on device. top-change-notify ■ [no] lldp top-change-notify [ETHERNET] PORT-LIST Usage:[no] lldp top-change-notify <port-list> Description: Set the port for which LLDP MED topology notication should be enabled. vlan-base ■ lldp auto-provision radio-ports vlan-base < 2 to 4094 > A[...]

  • Página 362

    lockout-mac OVERVIEW Port Security Category: config Primary context: the section called “ lockout-mac ” (page 566) Related Commands Usage: lockout-mac <MAC-ADDR> Description: Lock out a MAC address. Parameter: o MAC-ADDR - MAC address to lock down. Examples: (1) hp-switch# lockout-mac 0800095F3AD6 COMMAND STRUCTURE EXAMPLES Example: locko[...]

  • Página 363

    log OVERVIEW Switch Management Category: manager Primary context: logging (page 363) Related Commands the section called “ logging ” (page 567) Usage: log [-a|-r|-m|-p|-w|-i|-d|substring ...] Description: Display log events. -a - Instructs the switch to display all recorded log events, which includes events from previous boot cycles. -r - Instr[...]

  • Página 364

    Supported Values: ■ -M -- Major event class. ■ -P -- Performance event class. ■ -W -- Warning event class. ■ -I -- Information event class. ■ -D -- Debug event class. option ■ log OPTION Specify substring to match in log entry. See 'log help' for details. -r ■ log -r Display log events in reverse order (most recent rst). [...]

  • Página 365

    logging OVERVIEW Switch Management Category: config Primary context: log (page 361) Related Commands the section called “ logging ” (page 567) Usage: [no] logging <IP-ADDR> [control-descr <text string>] [no] logging priority-descr <text-string> [no] logging facility <facility> [no] logging severity <severity> [no] [...]

  • Página 366

    COMMAND DETAILS severity (p. 366) ip-address (p. 365) control-descr (p. 364) system-module (p. 366) priority-descr (p. 365) facility (p. 364) control-descr ■ [no] logging IP-ADDR control-descr Usage: [no] logging <IP-ADDR> [control-descr <text string>] Description: A text string associated with the given IP-ADDr. 'no' replac[...]

  • Página 367

    ■ local3 ■ local4 ■ local5 ■ local6 ■ local7 ip-address ■ [no] logging IP-ADDR Usage: [no] logging <IP-ADDR> [control-descr <text string>] [no] logging priority-descr <text-string> [no] logging facility <facility> [no] logging severity <severity> [no] logging system-module <module> Description: Add an[...]

  • Página 368

    severity ■ [no] logging severity < major | error | warning | ... > Usage: [no] logging severity <severity> Description: Event messages of the specied severity or higher will be sent to the syslog server. 'no' sends all severities. Supported Values: ■ major ■ error ■ warning ■ info ■ debug system-module ■ [no] [...]

  • Página 369

    ■ lacp ■ dhcpr ■ stack ■ dma ■ SNTP ■ 802.1x ■ cdp ■ auth ■ tacacs ■ radius ■ ssh ■ NETINET ■ OSPF ■ XRRP ■ ssl ■ IpAddrMgr ■ MacAuth ■ KMS ■ PIM ■ maclock ■ ACL ■ udpf ■ inst-mon ■ udld ■ HPESP ■ lldp ■ connfilt ■ RateLim ■ idm ■ IPLOCK ■ dhcp-snoop ■ vrrp ■ usb ■ licensing ■ lo[...]

  • Página 370

    log-numbers OVERVIEW Category: config Primary context: Related Commands Usage: [no] log-numbers Description: Enable the display of log event numbers when log is displayed via the CLI or via the menu. COMMAND STRUCTURE 368 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 371

    logout OVERVIEW Switch Management Category: operator Primary context: Related Commands Usage: logout Description: Terminate this console/telnet session. COMMAND STRUCTURE 369 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 372

    loop-protect OVERVIEW Category: config Primary context: Related Commands Usage: [no] loop-protect <...> [[ethernet] PORT-LIST [receiver-action <send-disable|no-disable>]| [transmit-interval <1-10>]| [disable-period <0-604800>]| [trap <loop-detected>] Description: Congure Loop protection on the switch. Parameters: o [...]

  • Página 373

    disable-timer ■ loop-protect disable-timer < 0 to 604800 > Set time in seconds to wait before attempting to reenable a port. Range: < 0 to 604800 > loop-detected ■ [no] loop-protect trap loop-detected generate trap when a loop is detected port-list ■ [no] loop-protect [ETHERNET] PORT-LIST Specify the ports that are to be added to/[...]

  • Página 374

    mac-age-time OVERVIEW Device Discovery Category: config Primary context: Related Commands Usage: mac-age-time <60-999960> Description: Set the MAC address table's age-out interval. A MAC address that is dynamically learned by the switch, stays in the switch's address table for a certain amount of time - the age-out interval, before [...]

  • Página 375

    management-vlan OVERVIEW config Category: config Primary context: the section called “ vlan ” (page 603) Related Commands Usage: [no] management-vlan VLAN-ID Description: Set the VLAN that is to be used as the management VLAN. COMMAND STRUCTURE EXAMPLES Example: management-vlan Set VLAN 100 as the management VLAN and add ports A1 and A2 to it: [...]

  • Página 376

    max-vlans OVERVIEW VLANs Category: config Primary context: Related Commands Usage: max-vlans <1-2048> Description: Set the maximum number of VLANs on the switch. The default is 256. COMMAND STRUCTURE EXAMPLES Example: max-vlans NUMBER Reconfigure the switch to allow 10 VLANs: ProCurve(cong)# max-vlans 10 Command will take effect after savi[...]

  • Página 377

    menu OVERVIEW Switch Management Category: operator Primary context: Related Commands Usage: menu Description: Change console user interface to menu system. COMMAND STRUCTURE EXAMPLES menu Enter the menu mode for switch configuration: ProCurve# menu HP ProCurve Switch 5400zl 1-Jan-2006 4:55:06 =======================- TELNET - MANAGER MODE -========[...]

  • Página 378

    mesh OVERVIEW Redundant Paths Category: config Primary context: the section called “ mesh ” (page 569) Related Commands Usage: [no] mesh [ethernet] PORT-LIST Description: Congure the specied ports as being members of a mesh group. A mesh group can have up to 24 member ports. - VLAN support must be enabled before conguring a mesh group.[...]

  • Página 379

    mirror OVERVIEW Category: config Primary context: Related Commands Usage: 1) mirror <1-4> [ name NAME-STR ] port PORT-NUM 2) mirror <1-4> [ name NAME-STR ] remote ip SRC-IP-ADDR SRC-UDP-PORT DST-IP-ADDR 3) mirror <1-4> [ name NAME-STR ] remote ip SRC-IP-ADDR SRC-UDP-PORT DST-IP-ADDR 4) no mirror <1-4> [ name NAME-STR ] 5) mi[...]

  • Página 380

    ip -- Remote mirroring destination configuration. (IP-ADDR) (p. 378) ■ ■ mirror_session_src_udp < 1 to 65535 > -- Remote mirroring UDP encapsulation port. (TCP/UDP-PORT) (p. 379) ■ mirror_session_dest_ip -- Remote mirroring UDP encapsulation destination ip addr. (IP-ADDR) (p. 379) ■ port -- Mirroring destination monitoring port. ([eth[...]

  • Página 381

    mirror_session_dest_ip ■ mirror <1t o4> name NAME remote ip IP-ADDR < 1 to 65535 > IP-ADDR Remote mirroring UDP encapsulation destination ip addr. ■ mirror <1t o4> remote ip IP-ADDR < 1 to 65535 > IP-ADDR Remote mirroring UDP encapsulation destination ip addr. ■ [no] mirror endpoint ip IP-ADDR < 1 to 65535 > IP-A[...]

  • Página 382

    ■ mirror <1t o4> remote ip IP-ADDR < 1 to 65535 > Remote mirroring UDP encapsulation port. Range: < 1 to 65535 > Next Available Option: ■ mirror_session_dest_ip -- Remote mirroring UDP encapsulation destination ip addr. (IP-ADDR) (p. 379) name ■ mirror <1t o4> name NAME Mirroring destination name string. Next Available[...]

  • Página 383

    mirror-port OVERVIEW config Category: config Primary context: vlan (page 706) Related Commands Usage: [no] mirror-port [[ethernet] PORT-NUM] Description: Dene the mirror port for diagnostic purposes. The device ports or VLAN (if VLANs are enabled on the device) that will be monitored are dened through the 'monitor' command in either[...]

  • Página 384

    cannot be a trunked port. The parameter must be specied, if the 'no' keyword is not used. Otherwise, it must not be present. 382 © 2009 Hewlett-Packard Development Company, L.P. mirror-port Command Line Interface Reference Guide[...]

  • Página 385

    module OVERVIEW config Category: config Primary context: the section called “ modules ” (page 570) Related Commands Usage: module <MODULE-NUM> type <MODULE-TYPE> Description: Congure type of the module. COMMAND STRUCTURE ■ module < 1 to 12 > type < J8701A | J8702A | J8705A | ... > -- The type of the module. (p. 383)[...]

  • Página 386

    ■ J92yyA ■ J94wwa ■ JXXXXA ■ JXXXXB ■ JXXXXA 384 © 2009 Hewlett-Packard Development Company, L.P. module Command Line Interface Reference Guide[...]

  • Página 387

    monitor OVERVIEW Category: config Primary context: show monitor (page 570) Related Commands Usage: [no] monitor mac MAC-ADDR <src | dst | both> mirror <1-4 | NAME-STR> Description: Set up trafc monitoring for a given MAC address. Network trafc with this MAC address as the source or destination is copied to the mirror port. Paramet[...]

  • Página 388

    number or (if congured) a name. Depending on how many sessions are congured on the switch, you can use the same command to congure a MAC address as mirroring criteria in up to four sessions. To identify a session, you can enter either its name or number; for example: mirror 1 2 3 traffsrc4 Next Available Options: ■ mirror_session_id <[...]

  • Página 389

    page OVERVIEW CLI Setup Category: manager Primary context: Related Commands Usage: [no] page Description: Toggle paging mode. The printing is paused when a full page of text has been displayed, or continues until end of output. COMMAND STRUCTURE 387 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 390

    password OVERVIEW Switch Management Category: config Primary context: front-panel-security (page 190) Related Commands show (page 511) Usage: [no] password <manager|operator|port-access|all> [user-name ASCII-STR] [<plaintext|sha1> ASCII-STR] Description: Set or clear local password/username for a given access level. Invoked without &apo[...]

  • Página 391

    Usage: [no] password <manager|operator|port-access|all> [user-name ASCII-STR] [<plaintext|sha1> ASCII-STR] Description: Set or clear local password/username for a given access level. Invoked without 'no', the command sets or changes existent password(s). If no password provided in the command, the user will be prompted to ente[...]

  • Página 392

    Set password ■ password < operator | manager > plaintext PASSWORD Set password ■ password < operator | manager > sha0 PASSWORD Set password ■ password < operator | manager > sha1 PASSWORD Set password plaintext ■ password < operator | manager > user-name USER-NAME plaintext Enter plaintext password. Next Available Op[...]

  • Página 393

    ■ password < operator | manager > sha1 Enter SHA-1 hash of password. Next Available Option: ■ password -- Set password (ASCII-STR) (p. 389) user-name ■ password < operator | manager > user-name USER-NAME Set username for the specied user category. Next Available Options: ■ plaintext -- Enter plaintext password. (p. 390) ■ s[...]

  • Página 394

    ping OVERVIEW Category: operator Primary context: traceroute (page 690) Related Commands link-test (page 350) ping6 (page 395) Usage: ping <IP-ADDR|hostname|SWITCH-NUM> [repetitions <1-10000>] [timeout <1-60>] [data-size <0-65471>] [data-ll <0-1024>] [source <IP_ADDR|VLAN-ID>] Description: Send IPv4 ping reque[...]

  • Página 395

    EXAMPLES Example: ping IP-ADDR Send an IP Ping request to the device that has IP address 10.10.10.1: ProCurve# ping 10.10.10.1 10.10.10.1 is alive, time = 50 ms COMMAND DETAILS switch-num (p. 394) ip-addr (p. 393) data-fill (p. 393) timeout (p. 394) repetitions (p. 393) data-size (p. 393) vlan (p. 394) source (p. 393) host-name (p. 393) data-fill ?[...]

  • Página 396

    switch-num ■ ping NUMBER The stack number of the switch to ping. timeout ■ ping timeout <1t o6 0> Ping timeout in seconds <1-60>. Range: < 1 to 60 > vlan ■ ping source VLAN-ID Source VLAN. 394 © 2009 Hewlett-Packard Development Company, L.P. ping Command Line Interface Reference Guide[...]

  • Página 397

    ping6 OVERVIEW Category: operator Primary context: ping (page 392) Related Commands traceroute6 (page 695) Usage: ping6 <IPV6-ADDR|hostname> [repetitions <1-10000>] [timeout <1-60>] [data-size <0-65471>] [data-ll <0-1024>] [source <IPV6-ADDR|VLAN-ID>] Description: Send IPv6 ping request(s) to a device on the n[...]

  • Página 398

    ProCurve# ping6 80fe::20b:cdff:fedd:9a62 ProCurve# ping6 fe80::5%vlan20 COMMAND DETAILS source (p. 396) ip-addr (p. 396) data-fill (p. 396) timeout (p. 397) ipv6-addr (p. 396) data-size (p. 396) vlan (p. 397) repetitions (p. 396) host-name (p. 396) data-fill ■ ping6 data-fill OCTET-STR Text string used as data in ping packets. You can enter up to[...]

  • Página 399

    Source address or VLAN. Next Available Options: ■ vlan -- Source VLAN. (VLAN-ID) (p. 397) ■ ip-addr -- Source IPv6 address. (IPV6-ADDR) (p. 396) timeout ■ ping6 timeout <1t o6 0> Number of seconds within which a response is required from the destination host before the ping test times out. Valid values: <1-60>. Range: < 1 to 60[...]

  • Página 400

    policy OVERVIEW Category: config Primary context: class (page 79) Related Commands Usage: [no] policy <qos | pbr | mirror> <name> Description: Create a classier policy and enter the policy context. Parameters are policy type and policy name. COMMAND STRUCTURE ■ [no] policy mirror -- Enter mirror type policy name (ASCII-STR) (p. 399[...]

  • Página 401

    mirror ■ [no] policy mirror MIRROR Enter mirror type policy name name ■ policy resequence NAME Specify the policy name. Next Available Option: ■ start-seq-num < 1 to 2147483646 > -- Specify the starting sequence number. (p. 399) qos ■ [no] policy qos QOS Enter qos type policy name resequence ■ policy resequence Renumber the entries [...]

  • Página 402

    port-security OVERVIEW Port Security Category: config Primary context: show (page 511) Related Commands show (page 511) Usage: [no] port-security [ethernet] PORT-LIST [learn-mode <continuous|static|congured| limited-continuous|port-access>] [address-limit <1-32>] [mac-address MAC-ADDR [MAC-ADDR ...]] [action <none|send-alarm|send-[...]

  • Página 403

    o action <none|send-alarm|send-disable> - Indicates the port security action the switch will take if an intruder is detected on the port. o clear-intrusion-ag - clears intrusion indicator for the ports specied in the command PORT-LIST. COMMAND STRUCTURE ■ port-security [ETHERNET] PORT-LIST action < none | send-alarm | send-disable [...]

  • Página 404

    ■ port-access -- Learn port-access authorized MAC address only. ■ limited-continuous -- Limited continuous MAC address learn mode. mac-addr ■ port-security [ETHERNET] PORT-LIST mac-address MAC-ADDR Authorized MAC address. mac-address ■ [no] port-security [ETHERNET] PORT-LIST mac-address Congure the address(es) authorized on the port(s). [...]

  • Página 405

    power-over-ethernet OVERVIEW Category: config Primary context: show power-over-ethernet (page 581) Related Commands Usage: power [slot <SLOT-LIST>] [threshold <1-99>][optional-parameters] Description: Set Power Over Ethernet(poe) conguration parameters. threshold - set the power consumption percentage at which a trap should be sent. [...]

  • Página 406

    Example: power-over-ethernet threshold option Executing the following command sets the global notification threshold to 70% of available PoE power: ProCurve(cong)# power-over-ethernet threshold 70 COMMAND DETAILS threshold (p. 405) redundancy_type (p. 404) pre-std-detect (p. 404) slot (p. 405) redundancy (p. 404) pre-std-detect ■ [no] power-ov[...]

  • Página 407

    ■ full slot ■ power-over-ethernet slot SLOT-ID-RANGE Optional - Specify a valid powered-slot list for power threshold setting or omit to set all powered-slots. Next Available Option: ■ threshold < 1 to 99 > -- Set the power consumption percentage at which a trap should be sent. (NUMBER) (p. 405) threshold ■ power-over-ethernet thresho[...]

  • Página 408

    primary-vlan OVERVIEW config Category: config Primary context: the section called “ vlan ” (page 603) Related Commands Usage: primary-vlan VLAN-ID Description: Set the VLAN that is to be used as the primary VLAN. The primary VLAN comes into play for features such as stacking, DHCP, and TIMEP. COMMAND STRUCTURE EXAMPLES Example: primary-vlan VLA[...]

  • Página 409

    print OVERVIEW Category: manager Primary context: Related Commands Usage: print COMMAND-STR Description: Execute a command and redirect its output to the device channel for current session. COMMAND STRUCTURE ■ print command -- Command to execute. Use quotes for multiword commands. (ASCII-STR) (p. 407) COMMAND DETAILS command (p. 407) command ■ [...]

  • Página 410

    p-wireless-services OVERVIEW Category: config Primary context: Related Commands COMMAND STRUCTURE ■ p-wireless-services p-wireless-services -- (SLOT-ID) (p. 408) ■ config -- (ASCII-STR) (p. 408) COMMAND DETAILS p-wireless-services (p. 408) config (p. 408) config ■ p-wireless-services SLOT-ID config CONFIG p-wireless-services ■ p-wireless-se[...]

  • Página 411

    qinq OVERVIEW Category: config Primary context: svlan (page 661) Related Commands vlan (page 706) show qinq (page 582) Usage: [no] qinq [ <mixedvlan|svlan> [tag-type<tpid>] ] Description: Congure the device qinq mode. The command 'no qinq' disables qinq on the device (no tag-stacking). Changing qinq mode from one to another[...]

  • Página 412

    svlan ■ qinq svlan Congure as svlan mode. Globally enables QinQ svlan mode, an S-VLAN only environment that supports port-based or s-tagged interfaces of the standard. Requires a reboot to take effect. Next Available Option: ■ tag-type < 1536 to 65535 > -- Configure qinq tag-type (HEX NUMBER) (p. 410) tag-type ■ qinq mixedvlan tag-ty[...]

  • Página 413

    qos OVERVIEW QoS Category: config Primary context: show (page 511) Related Commands Usage: [no] qos ... Description: Congure Quality of Service (QoS) on the device. The command must be followed by a keyword dening a subdomain of the QoS parameters to congure. COMMAND STRUCTURE ■ [no] qos apptype < udp-port | tcp-port > -- Configure[...]

  • Página 414

    ■ well-defined < af11 | af12 | af13 | ... > -- Define mapping between a DSCP (Differentiated-Services Codepoint) value and an 802 (p. 434) ■ priority <0|1|2|. . .> -- Specify priority to use. (p. 428) ■ ipv6 -- Specify range of TCP/UDP ports from [to] which to prioritize traffic. (p. 425) ■ port-num -- TCP/UDP port from [to] whi[...]

  • Página 415

    ■ well-defined < af11 | af12 | af13 | ... > -- Define mapping between a DSCP (Differentiated-Services Codepoint) value and an 802 (p. 434) ■ priority <0|1|2|. . .> -- Specify priority to use. (p. 428) ■ ipv6 -- specify the ipv6 address of the device to set the priority (IPV6-ADDR) (p. 425) ■ dscp -- Specify DSCP policy to use. ([...]

  • Página 416

    ■ well-defined < af11 | af12 | af13 | ... > -- Define Differentiated Services Codepoint to which to map IP ToS. (p. 434) ■ integer-codepoint <0t o6 3> -- Specify the DSCP code-point in decimal. (p. 422) ■ dscp -- Define Differentiated Services Codepoint to which to map IP ToS. (p. 418) ■ binary-range <0t o6 3> -- Specify t[...]

  • Página 417

    | Application | Protocol | Port Apply rule | DSCP Priority -------- + ----------- ---------- + ------ ---------- UDP | 23 DSCP | 000111 7 TCP | 80 DSCP | 000101 5 TCP | 914 DSCP | 000010 1 UDP | 1001-2000 DSCP | 000010 1 COMMAND DETAILS name (p. 426) integer-codepoint (p. 422) 2-queues (p. 415) name-string (p. 426) integer-range (p. 423) 4-queues ([...]

  • Página 418

    priority of the outgoing packets is dened by the Differentiated Services Codepoint mapping (see 'show qos dscp-map'). Using 'no' removes any priority assignment for this TCP/UDP service. If MAX-TCP/UDP-PORT is specied then the priority is applied to all TCP/UDP ports in the range from TCP/UDP-PORT to MAX-TCP/UDP-PORT. Supp[...]

  • Página 419

    ■ name -- Specify DSCP->priority mapping name. (p. 426) ■ qos < udp-port | tcp-port > TCP/UDP-PORT dscp <0t o6 3> Specify the DSCP code-point in binary. Range: < 0 to 63 > ■ qos < udp-port | tcp-port > range TCP/UDP-PORT TCP/UDP-PORT dscp <0t o6 3> Specify the DSCP code-point in binary. Range: < 0 to 63 >[...]

  • Página 420

    Usage: [no] qos device-priority <IP-ADDR[/mask-or-prex-length] | IPV6_ADDR[/CIDR mask length]> [dscp <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32| af33|af41|af42|af43|ef|cs0..cs7|000000|000001...111111>| priority <0-7>] Description: Congure device-based priority. The priority can be set for IP packets from/to a particul[...]

  • Página 421

    ■ qos device-priority IP-ADDR/mask-LENGTH dscp Specify DSCP policy to use. Next Available Options: ■ integer-range < 0 to 63 > -- Specify the DSCP code-point in decimal. (p. 423) ■ binary-range < 0 to 63 > -- Specify the DSCP code-point in binary. (BINARY) (p. 416) ■ well-defined < af11 | af12 | af13 | ... > -- Define mapp[...]

  • Página 422

    Supported Values: Binary formatted value from 000000 to 111111 Next Available Options: ■ integer-range < 0 to 63 > -- Specify the DSCP code-point in decimal. (p. 423) ■ binary-range < 0 to 63 > -- Specify the DSCP code-point in binary. (BINARY) (p. 416) ■ well-defined < af11 | af12 | af13 | ... > -- Define mapping between a [...]

  • Página 423

    Next Available Options: ■ integer-range < 0 to 63 > -- Specify the DSCP code-point in decimal. (p. 423) ■ binary-range < 0 to 63 > -- Specify the DSCP code-point in binary. (BINARY) (p. 416) ■ well-defined < af11 | af12 | af13 | ... > -- Define mapping between a DSCP (Differentiated-Services Codepoint) value and an 802 (p. 4[...]

  • Página 424

    this DSCP policy as the method of trafc prioritization. The mapping also provides the prole for inbound classication and priority assignment based on an IPv4 packet's received IP ToS byte ONLY IF the user has also congured 'qos type-of-service diff-services' 'no qos dscp-map <codepoint>' will remove the se[...]

  • Página 425

    Next Available Option: ■ dscp -- Define Differentiated Services Codepoint to which to map IP ToS. (p. 418) integer-range ■ qos device-priority IP-ADDR dscp <0t o6 3> Specify the DSCP code-point in decimal. Range: < 0 to 63 > ■ qos device-priority IP-ADDR/mask-LENGTH dscp <0t o6 3> Specify the DSCP code-point in decimal. Rang[...]

  • Página 426

    Specify the DSCP code-point in decimal. Range: < 0 to 63 > ■ qos < udp-port | tcp-port > ip-all TCP/UDP-PORT dscp <0t o6 3> Specify the DSCP code-point in decimal. Range: < 0 to 63 > ■ qos < udp-port | tcp-port > ip-all range TCP/UDP-PORT TCP/UDP-PORT dscp <0t o6 3> Specify the DSCP code-point in decimal. Ran[...]

  • Página 427

    101 5 100 4 011 3 010 0 (Normal) 001 2 (Low) 000 1 (Lowest) ipv4 ■ qos < udp-port | tcp-port > ipv4 Specify range of TCP/UDP ports from [to] which to prioritize trafc. Next Available Options: ■ port-num -- TCP/UDP port from [to] which to prioritize traffic. (TCP/UDP-PORT) (p. 427) ■ range -- Specify range of TCP/UDP ports from [to] w[...]

  • Página 428

    Next Available Options: ■ dscp < 000000 | 000001 | 000010 | ... > -- Specify DSCP policy to use. (p. 418) ■ priority < 0 | 1 | 2 | ... > -- Specify priority to use. (p. 428) ■ [no] qos < udp-port | tcp-port > ipv4 range TCP/UDP-PORT TCP/UDP-PORT Maximal TCP/UDP port in the range from [to] which to prioritize trafc. Next A[...]

  • Página 429

    port-num ■ qos < udp-port | tcp-port > TCP/UDP-PORT TCP/UDP port from [to] which to prioritize trafc. Next Available Options: ■ dscp < 000000 | 000001 | 000010 | ... > -- Specify DSCP policy to use. (p. 418) ■ priority < 0 | 1 | 2 | ... > -- Specify priority to use. (p. 428) ■ qos < udp-port | tcp-port > range TCP[...]

  • Página 430

    priority ■ qos device-priority IP-ADDR priority <0|1|2|. . .> Specify priority to use. Supported Values: ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ qos device-priority IP-ADDR/mask-LENGTH priority <0|1|2|. . .> Specify priority to use. Supported Values: ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ qos device-priority I[...]

  • Página 431

    Specify priority to use. Supported Values: ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ qos dscp-map <0t o6 3> priority <0|1|2|. . .> Specify priority to use. Supported Values: ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ qos dscp-map < af11 | af12 | af13 | ... > priority <0|1|2|. . .> Specify priority to use. [...]

  • Página 432

    ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ qos < udp-port | tcp-port > range TCP/UDP-PORT TCP/UDP-PORT priority <0|1|2|. . .> Specify priority to use. Supported Values: ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ qos < udp-port | tcp-port > ipv4 TCP/UDP-PORT priority <0|1|2|. . .> Specify priority to use. Su[...]

  • Página 433

    ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ qos < udp-port | tcp-port > ipv6 range TCP/UDP-PORT TCP/UDP-PORT priority <0|1|2|. . .> Specify priority to use. Supported Values: ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ qos < udp-port | tcp-port > ip-all TCP/UDP-PORT priority <0|1|2|. . .> Specify priority to use. Supported Val[...]

  • Página 434

    placed in the appropriate outbound priority queue. '7' means highest priority. Using 'no' removes any priority assignment for the specied protocol. Supported Values: ■ IP ■ IPX ■ ARP ■ AppleTalk ■ SNA ■ NetBEUI Next Available Option: ■ priority < 0 | 1 | 2 | ... > -- Specify priority to use. (p. 428) queue[...]

  • Página 435

    Next Available Option: ■ port-num -- TCP/UDP port from [to] which to prioritize traffic. (TCP/UDP-PORT) (p. 427) Example 1. Example of Port Range ProCurve(config)# qos udp-port range 1001 2000 dscp 000010 type-of-service ■ [no] qos type-of-service Usage: [no] type-of-service <ip-precedence| diff-services [<0|1...63|af11|af12|af13|af21| af[...]

  • Página 436

    the 'no dscp-map <af11..ef|0-63|000000...111111>' function must be used. o diff-services <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32|af33| af41|af42|af43|ef|cs0..cs7|000000|000001...111111> - The value of the upper bits in the ToS eld. o dscp <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32|af33|af42|af42| af43|ef[...]

  • Página 437

    Codepoint Value IETF Standard Designation --------------------------------------------------- 001010 1 Assured Forwarding AF11 001100 1 Assured Forwarding AF12 001110 2 Assured Forwarding AF13 010010 0 Assured Forwarding AF21 010100 0 Assured Forwarding AF22 010110 3 Assured Forwarding AF23 011010 4 Assured Forwarding AF31 011100 4 Assured Forwardi[...]

  • Página 438

    The mapping also provides the prole for inbound classication and priority assignment based on an IPv4 packet's received IP ToS byte ONLY IF the user has also congured 'qos type-of-service diff-services' 'no qos dscp-map <codepoint>' will remove the settings for the specied codepoint from the running con[...]

  • Página 439

    ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 ■ qos device-priority IPV6-ADDR dscp < af11 | af12 | af13 | ... > Usage: [no] qos dscp-map <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32| af33|af41|af42|af43|ef|cs0..cs7|000000|000001...111111>| [priority <<0-7>|no-override>] [name <str>] Desc[...]

  • Página 440

    010000 2 Classs Selector CS2 011000 3 Classs Selector CS3 100000 4 Classs Selector CS4 101000 5 Classs Selector CS5 110000 6 Classs Selector CS6 111000 7 Classs Selector CS7 Supported Values: ■ af11 ■ af12 ■ af13 ■ af21 ■ af22 ■ af23 ■ af31 ■ af32 ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■[...]

  • Página 441

    and Expedited Forwarding. These are automatically congured as follows: DiffServ 802.1p Codepoint Value IETF Standard Designation --------------------------------------------------- 001010 1 Assured Forwarding AF11 001100 1 Assured Forwarding AF12 001110 2 Assured Forwarding AF13 010010 0 Assured Forwarding AF21 010100 0 Assured Forwarding AF22 0[...]

  • Página 442

    Description: Dene mapping between a DSCP (Differentiated-Services Codepoint) value and an 802.1p priority. The mapping is used to assign priority for IPv4 packets if a QoS classier uses this DSCP policy as the method of trafc prioritization. The mapping also provides the prole for inbound classication and priority assignment based on[...]

  • Página 443

    ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 Next Available Options: ■ priority < 0 | 1 | 2 | ... > -- Specify priority to use. (p. 428) ■ name -- Specify DSCP->priority mapping name. (p. 426) ■ qos < udp-port | tcp-port > TCP/UDP-PORT dscp < af11 | af12 | af13 | [...]

  • Página 444

    011010 4 Assured Forwarding AF31 011100 4 Assured Forwarding AF32 011110 5 Assured Forwarding AF33 100010 6 Assured Forwarding AF41 100100 6 Assured Forwarding AF42 100110 7 Assured Forwarding AF43 101110 7 Expedited Forwarding EF 000000 0 Classs Selector CS0 001000 1 Classs Selector CS1 010000 2 Classs Selector CS2 011000 3 Classs Selector CS3 100[...]

  • Página 445

    specied codepoint from the running conguration. The priority is set to no-override and the name is deleted (the priority and name can only be removed if no QoS feature is congured to use this DSCP Policy). 'no qos dscp-map <codepoint> name' will remove the name associated with this policy, but not the policy priority. Certa[...]

  • Página 446

    ■ cs5 ■ cs6 ■ cs7 ■ qos < udp-port | tcp-port > ipv4 TCP/UDP-PORT dscp < af11 | af12 | af13 | ... > Usage: [no] qos dscp-map <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32| af33|af41|af42|af43|ef|cs0..cs7|000000|000001...111111>| [priority <<0-7>|no-override>] [name <str>] Description: Dene mapping [...]

  • Página 447

    Supported Values: ■ af11 ■ af12 ■ af13 ■ af21 ■ af22 ■ af23 ■ af31 ■ af32 ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 ■ qos < udp-port | tcp-port > ipv4 range TCP/UDP-PORT TCP/UDP-PORT dscp < af11 | af12 | af13 | ... > Usage: [no] qos dscp-map <0|1...63|[...]

  • Página 448

    --------------------------------------------------- 001010 1 Assured Forwarding AF11 001100 1 Assured Forwarding AF12 001110 2 Assured Forwarding AF13 010010 0 Assured Forwarding AF21 010100 0 Assured Forwarding AF22 010110 3 Assured Forwarding AF23 011010 4 Assured Forwarding AF31 011100 4 Assured Forwarding AF32 011110 5 Assured Forwarding AF33 1[...]

  • Página 449

    The mapping also provides the prole for inbound classication and priority assignment based on an IPv4 packet's received IP ToS byte ONLY IF the user has also congured 'qos type-of-service diff-services' 'no qos dscp-map <codepoint>' will remove the settings for the specied codepoint from the running con[...]

  • Página 450

    ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 ■ qos < udp-port | tcp-port > ipv6 range TCP/UDP-PORT TCP/UDP-PORT dscp < af11 | af12 | af13 | ... > Usage: [no] qos dscp-map <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32| af33|af41|af42|af43|ef|cs0..cs7|000000|000001...111111>| [priority <<0-7>|no-ove[...]

  • Página 451

    010000 2 Classs Selector CS2 011000 3 Classs Selector CS3 100000 4 Classs Selector CS4 101000 5 Classs Selector CS5 110000 6 Classs Selector CS6 111000 7 Classs Selector CS7 Supported Values: ■ af11 ■ af12 ■ af13 ■ af21 ■ af22 ■ af23 ■ af31 ■ af32 ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■[...]

  • Página 452

    and Expedited Forwarding. These are automatically congured as follows: DiffServ 802.1p Codepoint Value IETF Standard Designation --------------------------------------------------- 001010 1 Assured Forwarding AF11 001100 1 Assured Forwarding AF12 001110 2 Assured Forwarding AF13 010010 0 Assured Forwarding AF21 010100 0 Assured Forwarding AF22 0[...]

  • Página 453

    Description: Dene mapping between a DSCP (Differentiated-Services Codepoint) value and an 802.1p priority. The mapping is used to assign priority for IPv4 packets if a QoS classier uses this DSCP policy as the method of trafc prioritization. The mapping also provides the prole for inbound classication and priority assignment based on[...]

  • Página 454

    ■ af32 ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 ■ qos type-of-service diff-services <0t o6 3> dscp < af11 | af12 | af13 | ... > Dene Differentiated Services Codepoint to which to map IP ToS. Supported Values: ■ af11 ■ af12 ■ af13 ■ af21 ■ af22 ■ af23 ?[...]

  • Página 455

    ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 ■ qos type-of-service diff-services < af11 | af12 | af13 | ... > dscp < af11 | af12 | af13 | ... > Dene Differentiated Services Codepoint to which to map IP ToS. Supported Values: ■ af11 ■ af12 ■ af13 ■ af21 ■ af22 ?[...]

  • Página 456

    of each packet. Using 'no' type-of-service with just the mode (ip-precedence or diff-services) will disable all ToS QoS for the switch. Modes: -------------- Disabled The switch does NOT prioritize IP packets based on the IP ToS eld. IP Precedence The switch uses the upper 3 bits of the IP ToS eld (the IP Precedence bits) to determi[...]

  • Página 457

    ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 Next Available Option: ■ dscp -- Define Differentiated Services Codepoint to which to map IP ToS. (p. 418) 455 © 2009 Hewlett-Packard Development Company, L.P. qos Command Line Interface Reference Guide[...]

  • Página 458

    radius-server OVERVIEW Switch Security Category: config Primary context: show radius (page 583) Related Commands Usage: [no] radius-server host <IP-ADDR> [auth-port <UDP-PORT>] [acct-port <UDP-PORT>] [dyn-authorization] [time-window <0-65535>] [key <KEY-STR>] [no] radius-server key <KEY-STR> radius-server timeout[...]

  • Página 459

    encryption key to use for authentication with given server (default is NULL). Specifying this key overrides the key set for this server by the 'radius-server key <KEY-STR>' global conguration command. o key <KEY-STR> - species the global encryption key, which is used for authentication if encryption key for the server is[...]

  • Página 460

    ■ acct-port -- Accounting UDP destination port number (default is 1813). (TCP/UDP-PORT) (p. 458) ■ auth-port -- Authentication UDP destination port number (default is 1812). (TCP/UDP-PORT) (p. 459) ■ time-window -- time window (in seconds) within which the received dynamic authorization requests are considered to be current and accepted for p[...]

  • Página 461

    auth-port ■ radius-server host IP-ADDR acct-port TCP/UDP-PORT auth-port TCP/UDP-PORT Authentication UDP destination port number (default is 1812). ■ radius-server host IP-ADDR auth-port Authentication UDP destination port number (default is 1812). Next Available Option: ■ auth-port -- Authentication UDP destination port number (default is 181[...]

  • Página 462

    dyn-autz-port ■ radius-server dyn-autz-port < 1024 to 49151 > UDP port number to listen for Change-of-Authorization and Disconnect messages (default is 3799). Range: < 1024 to 49151 > host ■ [no] radius-server host IP-ADDR IP address of the RADIUS server to use. Next Available Options: ■ acct-port -- Accounting UDP destination por[...]

  • Página 463

    ■ radius-server key KEY Encryption key to use with the RADIUS server (default is NULL). retransmit ■ radius-server retransmit <1t o5> Number of packet retransmits (default is 3). Range: < 1 to 5 > timeout ■ radius-server timeout <1t o1 5> Server timeout interval (default is 5). Range: < 1 to 15 > time-window ■ [no] r[...]

  • Página 464

    redo OVERVIEW Switch Management Category: manager Primary context: repeat (page 470) Related Commands Usage: redo [NUMBER|COMMAND-STR] Description: Re-execute a command from history. By default, it executes the last command. If the 'number' is specied, it executes the n-th command starting from the most recent command in the history. T[...]

  • Página 465

    redundancy OVERVIEW Category: config Primary context: Related Commands Usage: redundancy switchover redundancy active-management < management-module1 | management-module2 | standby> [no]redundancy management-module redundancy fabric-module <<1|2> <enable|disable>> Description: Redundancy conguration for management and fab[...]

  • Página 466

    ProCurve(cong)# show redundancy Settings -------- Mgmt Redundancy : enabled Statistics ---------- Failovers : 0 Last Failover : Slot Module Description Status SW Version Boot Image ---- ---------------------------------------- -------- ----------- --------- 1 ProCurve J9092A Management Module 8200zl Standby K.14.XX Primary 2 ProCurve J9092A Mana[...]

  • Página 467

    Next Available Options: ■ enable -- Enable the fabric module. (p. 464) ■ disable -- Disable the fabric module. (p. 464) management-module ■ [no] redundancy management-module Enable/Disable redundant management. switchover ■ redundancy switchover Switchover to the standby management module. 465 © 2009 Hewlett-Packard Development Company, L.[...]

  • Página 468

    redundancy OVERVIEW Category: manager Primary context: Related Commands Usage: redundancy switchover redundancy active-management < management-module1 | management-module2 | standby> Description: Redundancy conguration for management modules. The rst version of the command causes the switch to immediately switchover to the standby manag[...]

  • Página 469

    reload OVERVIEW Switch Management Category: manager Primary context: boot (page 73) Related Commands Usage: [no] reload <after <[[DD:]HH:]MM> | at HH:MM[:SS] [MM/DD[/[YY]YY]>] > Description: Warm reboot of the switch. If no parameters are entered, an immediate reload is executed. [no] - Causes the removal of any pending reload reques[...]

  • Página 470

    at ■ reload at Warm reboot at a specied time; If the mm/dd/yy is left blank, the current day is assumed. Next Available Option: ■ time -- Time on given date to do a warm reboot. (HH:MM[:SS]) (p. 468) date ■ reload at [TIME] [DATE] Date on which a warm reboot is to occur. time ■ reload at [TIME] Time on given date to do a warm reboot. Nex[...]

  • Página 471

    rename OVERVIEW Switch Management Category: manager Primary context: show (page 511) Related Commands erase (page 174) Usage: rename cong OLDNAME NEWNAME Description: Change the name of the conguration OLDNAME to NEWNAME. No action occurs if there is no conguration named OLDNAME, or if a conguration named NEWNAME already exists. COMMAND[...]

  • Página 472

    repeat OVERVIEW Switch Management Category: manager Primary context: redo (page 462) Related Commands Usage: repeat [CMDLIST] [count NUMBER] [delay NUMBER] Description: Repeat execution of a previous command. By default, repeats the last command until a key is pressed. If the 'CMDLIST' is specied, repeats the n-th most recent command w[...]

  • Página 473

    router OVERVIEW Routing Category: config Primary context: ip (page 290) Related Commands vlan (page 706) show (page 511) Usage: [no] router ... Description: Congure the switch routing protocols. You can enter the commands from the global conguration context or the RIP, OSPF, PIM, or VRRP conguration contexts. For example, to enter an OSPF [...]

  • Página 474

    ■ retransmit-interval < 1 to 3600 > -- Set retransmit interval in seconds; the default is 5. (p. 486) ■ transit-delay < 1 to 3600 > -- Set transit delay in seconds; the default is 1. (p. 489) ■ backbone -- The backbone area (the same as 0.0.0.0). (p. 477) ■ normal -- Define a "normal" area. (p. 482) ■ nssa < 0 to [...]

  • Página 475

    bsm-interval < 5 to 300 > -- Specify the interval for sending Bootstrap messages on PIM-SM interfaces. (p. 477) ■ ■ hash-mask-length <1t o3 2> -- Specify the length (in bits) of the hash mask. (p. 480) ■ priority < 0 to 255 > -- Specify the priority for the Candidate Bootstrap router. (p. 484) ■ source-ip-vlan -- Specify t[...]

  • Página 476

    ProCurve(cong)# router vrrp ProCurve(cong)# vlan 10 ProCurve(vlan-10)# vrrp vrid 1 ProCurve(vlan-10-vrid-1)# owner ProCurve(vlan-10-vrid-1)# virtual-ip-address 10.10.10.1 255.255.255.0 ProCurve(vlan-10-vrid-1)# enable ProCurve(vlan-10-vrid-1)# show vrrp vlan 10 vrid 1 cong VRRP Virtual Router Conguration Information Vlan ID : 10 Virtual[...]

  • Página 477

    area <OSPF-AREA-ID|backbone> range IP-ADDR/MASK-LENGTH [no-advertise] area <OSPF-AREA-ID|backbone> virtual-link IP-ADDR [transit-delay <0-3600>] [retransmit-interval <0-3600>] [hello-interval <1-65535>] [dead-interval <0-2147483647>] area <OSPF-AREA-ID|backbone> virtual-link IP-ADDR authentication-key OCTET[...]

  • Página 478

    ■ backbone -- The backbone area (the same as 0.0.0.0). (p. 477) area-id ■ router ospf area OSPF-AREA-ID Single integer or IP address style dotted decimal. Next Available Options: ■ normal -- Define a "normal" area. (p. 482) ■ nssa < 0 to 16777215 > -- Define a "not-so-stubby" area (or NSSA) and its cost. (p. 483) ?[...]

  • Página 479

    Description: Enable/disable advertisement of summarized routes. Summarization mechanisms should be disabled when using both version 1 and version 2 of RIP within a single network. backbone ■ router ospf area backbone The backbone area (the same as 0.0.0.0). Next Available Options: ■ normal -- Define a "normal" area. (p. 482) ■ nssa [...]

  • Página 480

    Next Available Options: ■ source-ip-vlan -- Specify the VLAN to use as a source for Candidate-BSR router IP address (PIM-SM must be enabled on this VLAN). (VLAN-ID) (p. 488) ■ hash-mask-length < 1 to 32 > -- Specify the length (in bits) of the hash mask. (p. 480) ■ priority < 0 to 255 > -- Specify the priority for the Candidate Bo[...]

  • Página 481

    Description: Set default metric for imported routes. Default value is 1. Range: < 1 to 15 > distance ■ router ospf distance Usage: distance <intra-area|inter-area|external> <1-255> Description: Set administrative distance to associate with intra-area, inter-area and AS-external routes learned by OSPF. Default value is 110 for al[...]

  • Página 482

    group-prefix ■ router pim rp-candidate source-ip-vlan VLAN-ID group-prefix Specify the multicast group prex to associate with the Candidate-RP router. Next Available Option: ■ GROUP-ADDR/GROUP-MASK -- Enter the address and mask to define the multicast group range. (IP-ADDR/MASK-LENGTH) (p. 479) ■ [no] router pim rp-candidate group-prefix S[...]

  • Página 483

    Range: < 1 to 255 > ip ■ router ospf area OSPF-AREA-ID range IP-ADDR/MASK-LENGTH Specify IP address/MASK pair. ■ router ospf area backbone range IP-ADDR/MASK-LENGTH Specify IP address/MASK pair. ip-addr ■ [no] router ospf restrict IP-ADDR/MASK-LENGTH Usage: [no] restrict IP-ADDR/MASK-LEN Description: Prevent redistribution of routes via[...]

  • Página 484

    Next Available Option: ■ chain-name -- Specify key chain to use for MD5 authentication. (ASCII-STR) (p. 478) metric-type ■ router ospf area OSPF-AREA-ID nssa < 0 to 16777215 > metric-type < type1 | type2 > Metric type of the type-7 default. Supported Values: ■ type1 -- Comparable (an OSPF metric plus the external metric). ■ type[...]

  • Página 485

    ■ router ospf area backbone nssa < 0 to 16777215 > no-summary Do not send summary LSA into the area. ■ router ospf area backbone stub no-summary Do not send summary LSA into the area. nssa ■ router ospf area OSPF-AREA-ID nssa < 0 to 16777215 > Dene a "not-so-stubby" area (or NSSA) and its cost. Range: < 0 to 167772[...]

  • Página 486

    ■ trap < virtual-interface-state-change | neighbor-state-change | virtual-neighbor-state-change | ... > -- Enable/disable OSPF traps (p. 489) override ■ [no] router pim rp-address IP-ADDR IP-ADDR/MASK-LENGTH override Specify whether or not static RP conguration precedes the information learned by a BSR. pim ■ [no] router pim Usage: [[...]

  • Página 487

    Summarize routes matching address/MASK pair. Next Available Options: ■ ip -- Specify IP address/MASK pair. (IP-ADDR/MASK-LENGTH) (p. 481) ■ no-advertise -- Do not advertise the range outside the area. (p. 482) ■ type < summary | nssa > -- Link state database type to apply the range. (p. 491) ■ [no] router ospf area backbone range Summ[...]

  • Página 488

    Usage: [no] restrict IP-ADDR/MASK-LEN Description: Prevent redistribution of routes via OSPF. Next Available Option: ■ ip-addr -- Prevent redistribution of routes via OSPF (IP-ADDR/MASK-LENGTH) (p. 481) ■ router rip restrict Usage: [no] restrict IP-ADDR/MASK-LEN Description: Prevent redistribution of routes via RIP. Next Available Option: ■ i[...]

  • Página 489

    and changes current context to RIP Conguration Context. Otherwise, the command disables RIP. The command can be followed by a RIP conguration command. Use 'router rip ?' to get a list of all possible options. Next Available Options: ■ auto-summary -- Enable/disable advertisement of summarized routes (p. 476) ■ default-metric <[...]

  • Página 490

    command to remove specic multicast group or disable the router to be a Candidate-RP. NOTE: It is recommended that the same routing switch is congured as the Candidate-BSR and the Candidate-RP. Parameters: o source-ip-vlan <VLAN-ID> - The VLAN which IP address will be advertised as the Candidate-RP address. o group-prex <GROUP-ADDR[...]

  • Página 491

    state-refresh ■ router pim state-refresh < 10 to 300 > Usage: state-refresh <10-300> Description: Set the interval between successive State Refresh messages originated by this router. Default value is 60 seconds. Range: < 10 to 300 > stub ■ router ospf area OSPF-AREA-ID stub Dene a "stub" area and specify its cost[...]

  • Página 492

    Dr, or Backup). - 'virtual-interface-state-change' signies the same change in the state of a virtual OSPF interface. - 'neighbor-state-change' signies that there has been a change in the state of a non-virtual OSPF neighbor. This trap is generated when the neighbor state regresses (e.g., goes from Attempt or Full to 1-Way [...]

  • Página 493

    Usage: [no] trap <TRAP-NAME|all> Description: Enable/disable PIM traps. The traps dened below are generated as the result of nding an unusual condition or a timer event. Possible trap names are: - 'neighbor-loss' signies that a neighbor timer expired and the router has no other neighbors on the same interface with a lower I[...]

  • Página 494

    virtual-link ■ [no] router ospf area OSPF-AREA-ID virtual-link IP-ADDR Specify a virtual neighbor. Next Available Options: ■ transit-delay < 1 to 3600 > -- Set transit delay in seconds; the default is 1. (p. 489) ■ retransmit-interval < 1 to 3600 > -- Set retransmit interval in seconds; the default is 5. (p. 486) ■ hello-interva[...]

  • Página 495

    r-wireless-services OVERVIEW Category: config Primary context: Related Commands COMMAND STRUCTURE ■ r-wireless-services r-wireless-services -- (SLOT-ID) (p. 493) ■ config -- (ASCII-STR) (p. 493) COMMAND DETAILS r-wireless-services (p. 493) config (p. 493) config ■ r-wireless-services SLOT-ID config CONFIG r-wireless-services ■ r-wireless-se[...]

  • Página 496

    savepower OVERVIEW Category: config Primary context: Related Commands Usage: [no] savepower <1|2|3> Description: power on/off of blocks controlling ports. o 1 - Power block-1 associated with ports 01-08. o 2 - Power block-2 associated with ports 09-16. o 3 - Power block-3 associated with ports 17-24. COMMAND STRUCTURE ■ [no] savepower int &[...]

  • Página 497

    services OVERVIEW Category: config Primary context: Related Commands Usage: services [<SLOT-ID> <INDEX>|(name <NAME>)| |reload|shutdown] Description: Congure parameters for the services module or change the module's state (reload or shutdown). Parameters: o - Display the applications installed and running. o <SLOT-ID>[...]

  • Página 498

    blink ■ services SLOT-ID locator blink Blink the locate led Next Available Option: ■ duration < 1 to 1440 > -- Number of minutes duration (default 30). (NUMBER) (p. 496) diagnostic-restart ■ services SLOT-ID diagnostic-restart Reboot services module into diagnostic partition. duration ■ services SLOT-ID locator on < 1 to 1440 > [...]

  • Página 499

    on ■ services SLOT-ID locator on Turn the locate led on Next Available Option: ■ duration < 1 to 1440 > -- Number of minutes duration (default 30). (NUMBER) (p. 496) reload ■ services SLOT-ID reload Reboot services module. shutdown ■ services SLOT-ID shutdown Shutdown (halt) the services module. slot-id ■ services SLOT-ID Device slo[...]

  • Página 500

    services OVERVIEW Category: manager Primary context: Related Commands Usage: services [<SLOT-ID> <INDEX>|(name <NAME>)| |reload|shutdown] Description: Display parameters for the services module or change the module's state (reload or shutdown). Parameters: o - Display the applications installed and running. o <SLOT-ID> [...]

  • Página 501

    Blink the locate led Next Available Option: ■ duration < 1 to 1440 > -- Number of minutes duration (default 30). (NUMBER) (p. 499) duration ■ services SLOT-ID locator on < 1 to 1440 > Number of minutes duration (default 30). Range: < 1 to 1440 > ■ services SLOT-ID locator blink < 1 to 1440 > Number of minutes duration [...]

  • Página 502

    reload ■ services SLOT-ID reload Reboot services module. shutdown ■ services SLOT-ID shutdown Shutdown (halt) the services module. slot-id ■ services SLOT-ID Device slot identier for the services module. Next Available Options: ■ id -- Index of the services CLI to access. (p. 499) ■ name -- Name of the services CLI to access. (ASCII-ST[...]

  • Página 503

    services OVERVIEW Category: operator Primary context: Related Commands Usage: services [<SLOT-ID> <INDEX>|(name <NAME>)] Description: Display parameters for the services module. Parameters: o - Display the applications installed and running. o <SLOT-ID> <INDEX> - Congure parameters for the installed application. o &[...]

  • Página 504

    Number of minutes duration (default 30). Range: < 1 to 1440 > ■ services SLOT-ID locator blink < 1 to 1440 > Number of minutes duration (default 30). Range: < 1 to 1440 > id ■ services SLOT-ID INTEGER Index of the services CLI to access. locator ■ services SLOT-ID locator Control services module locator LED. Next Available O[...]

  • Página 505

    503 © 2009 Hewlett-Packard Development Company, L.P. services Command Line Interface Reference Guide[...]

  • Página 506

    setMIB OVERVIEW SNMP Category: manager Primary context: walkMIB (page 754) Related Commands Usage: setmib OBJECT-STR TYPE-STR VALUE-STR [[OBJECT-STR TYPE-STR VALUE-STR] ...] Description: Set the value of a MIB object. The <TYPE-STR> can be: -i - integer -o - octet -d - object identier -a - ip_addr -c - counter -g - gauge -t - time_ticks -u[...]

  • Página 507

    A value to which to set the MIB object. 505 © 2009 Hewlett-Packard Development Company, L.P. setMIB Command Line Interface Reference Guide[...]

  • Página 508

    setup OVERVIEW Switch Management Category: manager Primary context: Related Commands Usage: setup [default-logon <CLI|Menu>] Description: Enter the 'Switch Setup' screen for basic switch conguration. The optional parameter 'default-logon' changes the user interface presented after boot without entering full-screen setup[...]

  • Página 509

    COMMAND DETAILS mgmt-interfaces (p. 507) default-logon (p. 507) default-logon ■ setup default-logon < CLI | Menu > Specify whether switch should boot to CLI (default) or menu. Supported Values: ■ CLI -- Set Command Line Interface as default console interface. ■ Menu -- Set Menu as default console interface. mgmt-interfaces ■ setup mgm[...]

  • Página 510

    sflow OVERVIEW Category: config Primary context: Related Commands Usage: sow <RECEIVER-INSTANCE> destination <IP-ADDRESS> [UDP-PORT] sow <RECEIVER-INSTANCE> polling [ethernet] PORT-LIST <POLLING-INTERVAL> sow <RECEIVER-INSTANCE> sampling [ethernet] PORT-LIST <SAMPLING-RATE> [no] sow <RECEIVER-INSTA[...]

  • Página 511

    COMMAND DETAILS sflow-sampler-off (p. 510) sflow-polling-interval (p. 509) destination (p. 509) sflow-sampler-rate (p. 510) sflow-polling-int-off (p. 509) polling (p. 509) sflow-udp-port (p. 510) sflow-receiver (p. 510) sampling (p. 509) destination ■ sflow <1t o3> destination IP-ADDR IP address of sFlow receiver/collector/management statio[...]

  • Página 512

    sflow-receiver ■ [no] sflow <1t o3> Select one of three possible sFlow receiver tables. Range: < 1 to 3 > Next Available Options: ■ destination -- IP address of sFlow receiver/collector/management station. (IP-ADDR) (p. 509) ■ polling -- Specify the ports for which packets are to be polled. ([ethernet] PORT-LIST) (p. 509) ■ samp[...]

  • Página 513

    show OVERVIEW Category: operator Primary context: Related Commands Usage: show ... Description: Display switch operation information. The 'show' must be followed by a command. Use 'show ?' for the list of all possible command. COMMAND STRUCTURE ■ show access-list -- Show Access Control List information (p. 527) ■ acl-name --[...]

  • Página 514

    ■ show config -- Show the switch startup configuration (p. 540) ■ filename < config | config1 > -- Display specified configuration. (p. 551) ■ files -- List saved configuration files. (p. 551) ■ status -- Check if the running configuration differs from the statup configuration. (p. 596) ■ show connection-rate-filter -- List the port[...]

  • Página 515

    ■ source-port -- (p. 592) ■ show flash -- Show the version of software stored in the Primary and Secondary image locations (p. 552) ■ show front-panel-security -- Show current security status of the front panel butons (p. 553) ■ show gvrp -- Show GVRP settings (p. 554) ■ show history -- Show previously entered commands (p. 555) ■ show i[...]

  • Página 516

    ■ client-public-key -- Show currently loaded public keys for authorized clients (NUMBER) (p. 537) ■ babble -- Display phonetic hash. (p. 533) ■ fingerprint -- Display hexadecimal hash. (p. 552) ■ dns -- Show configured DNS server IP addresses on the switch (p. 549) ■ forward-protocol -- Show server addresses where broadcast requests recei[...]

  • Página 517

    ■ type < router | network | summary | ... > -- Show LSAs of the specified type only. (p. 600) ■ neighbor -- Show all OSPF neighbors in the locality of of the device (p. 573) ■ neighbor-ip -- (IP-ADDR) (p. 573) ■ redistribute -- List protocols which are being redistributed into OSPF (p. 584) ■ restrict -- List routes which will not b[...]

  • Página 518

    ip-addr -- Destination IP address to display the routes to. (IP-ADDR) (p. 561) ■ ■ type < static | connected | rip | ... > -- Specify type of routes to display. (p. 600) ■ source-binding -- Show Dynamic IP Lockdown trap status. (p. 592) ■ traps -- Show Dynamic IP Lockdown trap status. (p. 599) ■ source-lockdown -- Show Dynamic IP Lo[...]

  • Página 519

    ■ port-list -- Show remote or local device information for the specified ports. ([ethernet] PORT-LIST) (p. 578) ■ remote-device -- Show LLDP remote device information. (p. 585) ■ port-list -- Show remote or local device information for the specified ports. ([ethernet] PORT-LIST) (p. 578) ■ stats -- Show LLDP statistics (p. 596) ■ port-lis[...]

  • Página 520

    ■ web-based -- Show Web Authentication statistics and configuration (p. 609) ■ clients -- Show the current web client session statistics. (p. 538) ■ detailed -- Show the current web client session detailed statistics. (p. 546) ■ config -- Show the current configuration of Web Authentication. (p. 540) ■ auth-server -- Show the authenticati[...]

  • Página 521

    ■ detailed -- Show the detailed configuration of Web Authentication. (p. 546) ■ web-server -- Show the web server-related configuration items. (p. 610) ■ clients -- Show the current web client session statistics. (p. 538) ■ -- Specify ports for which Web Authentication information will be shown. ([ethernet] PORT-LIST) (p. 525) ■ detailed [...]

  • Página 522

    ■ mcast -- Show limits for ingress multicast traffic. (p. 569) ■ detailed -- Show Inbound Radius Override details. (p. 546) ■ port-list -- Specify ports for which information will be shown. ([ethernet] PORT-LIST) (p. 578) ■ show redundancy -- Display redundant information for Management and Fabric Modules (p. 585) ■ show rmon -- Show deta[...]

  • Página 523

    ■ view -- Show views. (p. 602) ■ VIEW-NAME -- Set view name. (ASCII-STR) (p. 603) ■ SUB-TREE -- Set the OID of the tree. (ASCII-STR) (p. 596) ■ show sntp -- Show configured time protocol and servers (p. 592) ■ show spanning-tree -- Show spanning tree information (p. 592) ■ bpdu-protection -- Show spanning tree BPDU protection status inf[...]

  • Página 524

    ■ pvst-protection -- Show spanning tree PVST protection status information. (p. 582) ■ port-list -- Limit the port information printed to the set of the specified ports. ([ethernet] PORT-LIST) (p. 578) ■ root-history -- Show spanning tree Root changes history information. (p. 586) ■ cst -- Show CST Root changes history. (p. 544) ■ ist -- [...]

  • Página 525

    ■ transceivers -- Display output of a predefined command sequence used by technical support (p. 599) ■ vrrp -- Display output of a predefined command sequence used by technical support (p. 608) ■ show telnet -- Show active incoming and outgoing sessions (p. 598) ■ show terminal -- Show logical window dimensions (p. 598) ■ show time -- Sho[...]

  • Página 526

    rip (p. 586) INDEX (p. 557) area-ip (p. 530) rmon (p. 586) info (p. 557) arp (p. 530) root-history (p. 586) information (p. 557) arp-protect (p. 530) route (p. 587) instance (p. 557) authentication (p. 531) router-id (p. 587) instrumentation (p. 559) authenticator (p. 531) routers (p. 587) interface (p. 559) authorization (p. 531) rp-candidate (p. [...]

  • Página 527

    trunks (p. 600) neighbors-port (p. 574) details (p. 547) type (p. 600) notify (p. 574) device-priority (p. 548) type-of-service (p. 601) NOTIFY-NAME (p. 574) dhcp-relay (p. 548) uninstalled (p. 601) only (p. 574) dhcp-snooping (p. 548) uplinks (p. 601) option (p. 574) direction (p. 548) uptime (p. 601) ospf (p. 574) display (p. 549) user (p. 601) o[...]

  • Página 528

    ■ show port-access mac-based [ETHERNET] PORT-LIST Specify ports for which MAC Authentication information will be shown. Next Available Options: ■ config -- Show the current configuration of MAC Authentication. (p. 540) ■ clients -- Show the connected MAC address information. (p. 538) ■ show port-access mac-based config [ETHERNET] PORT-LIST [...]

  • Página 529

    Description: Show Web/MAC Authentication statistics and conguration. If PORT-LIST parameter is specied then information only for the specied ports is shown. Next Available Options: ■ authenticator -- Show 802 (p. 531) ■ mac-based -- Show MAC Authentication statistics and configuration (p. 568) ■ web-based -- Show Web Authentication s[...]

  • Página 530

    Next Available Option: ■ group < ManagerPriv | ManagerAuth | OperatorAuth | ... > -- Show SNMPv3 users. (p. 553) accounting ■ show accounting Usage: show accounting [sessions] Description: Show Accounting conguration parameters. If 'sessions' is specied then show accounting data for all active sessions. Next Available Opti[...]

  • Página 531

    advertise ■ show ip ospf external-link-state advertise Show each LSA as a stream of bytes in hexadecimal notation. ■ show ip ospf link-state advertise Show each LSA as a stream of bytes in hexadecimal notation. agent ■ show sflow agent Displays read-only switch agent information: The agent address is normally the ip address of the rst vlan[...]

  • Página 532

    Usage: show ip ospf area [OSPF-AREA-ID] Description: Show OSPF areas congured on the device. Invoked without parameters displays all OSPF areas congured. If the 'OSPF-AREA-ID' is specied detailed information for the correspondent OSPF area is shown. Next Available Option: ■ area-ip -- (OSPF-AREA-ID) (p. 530) ■ show ip ospf vi[...]

  • Página 533

    authentication ■ show authentication Usage: show authentication Description: Show Authentication conguration parameters. ■ show radius authentication Usage: show radius authentication Description: Show RADIUS authentication statistics. authenticator ■ show port-access authenticator Usage: show port-access authenticator [cong|statistics|[...]

  • Página 534

    authorized-managers ■ show ip authorized-managers Usage: show ip authorized-managers Description: Show IPV4 addresses allowed to manage the switch. ■ show ipv6 authorized-managers Usage: show ipv6 authorized-managers Description: Show IPV6 addresses allowed to manage the switch. auth-server ■ show port-access mac-based [ETHERNET] PORT-LIST co[...]

  • Página 535

    autorun ■ show autorun Show Autorun conguration status. autorun-cert ■ show crypto autorun-cert Display trusted certicate. autorun-key ■ show crypto autorun-key Display autorun key. babble ■ show crypto client-public-key babble Display phonetic hash. ■ show crypto client-public-key < manager | operator > babble Display phoneti[...]

  • Página 536

    Usage: show banner motd Description: show the congured banner text. Next Available Option: ■ motd -- show the configured banner text (p. 571) bcast ■ show rate-limit bcast Show limits for ingress broadcast trafc. Next Available Options: ■ port-list -- Specify ports for which information will be shown. ([ethernet] PORT-LIST) (p. 578) ■[...]

  • Página 537

    Next Available Option: ■ vlan -- Show the configured BOOTP Gateway for VLAN. (p. 603) bpdu-protection ■ show spanning-tree bpdu-protection Show spanning tree BPDU protection status information. Next Available Option: ■ port-list -- Limit the port information printed to the set of the specified ports. ([ethernet] PORT-LIST) (p. 578) brief ■ [...]

  • Página 538

    Usage: show debug buffer [-r | -c <count> | substring ...] Description: Show the contents of the debug log buffer. -r - Instructs the switch to display messages in reverse order (most recent rst). -c - Instructs the switch to stop after displaying <count> messages. substring - Instructs the switch to display only those messages that [...]

  • Página 539

    candidates ■ show stack candidates Show the list of devices that are stack candidates. cdp ■ show cdp Usage: show cdp [neighbor [PORT-NUM] [detail]] Description: Show CDP conguration and neighbors discovered. Legend for 'capability' eld of the 'show cdp neighbor' command output: R - Performs level 3 routing for at leas[...]

  • Página 540

    ■ show ip client-public-key Usage: show ip client-public-key [babble|ngerprint] Description: Show currently loaded public keys for authorized clients. The 'babble' and 'ngerprint' options produce a phonetic or hexadecimal hash instead of displaying the raw key le. Next Available Options: ■ babble -- Display phonetic[...]

  • Página 541

    Show the current web client session statistics. Next Available Option: ■ -- Specify ports for which Web Authentication information will be shown. ([ethernet] PORT-LIST) (p. 525) ■ show port-access [ETHERNET] PORT-LIST authenticator clients Show the current 802.1X client session statistics. Next Available Option: ■ detailed -- Show the current[...]

  • Página 542

    config ■ show access-list config Show all congured ACL's on the switch using the CLI syntax used to create them. ■ show access-list ACL-NAME config Show all congured ACL's on the switch using the CLI syntax used to create them. ■ show config Usage: show cong [les | FILENAME | status] Description: Show the switch startup [...]

  • Página 543

    Description: Show LLDP conguration information. o [ethernet] PORT-LIST - Show port conguration information. Next Available Option: ■ port-list -- Specify the port or list of ports. ([ethernet] PORT-LIST) (p. 578) ■ show port-access authenticator [ETHERNET] PORT-LIST config Show 802.1X authenticator conguration. ■ show port-access aut[...]

  • Página 544

    ■ show port-access [ETHERNET] PORT-LIST mac-based config Show the current conguration of MAC Authentication. Next Available Options: ■ auth-server -- Show the authentication server-related configuration items. (p. 532) ■ detailed -- Show the detailed configuration of MAC Authentication. (p. 546) ■ show port-access [ETHERNET] PORT-LIST we[...]

  • Página 545

    configuration ■ show instrumentation monitor configuration Usage: show instrumentation monitor conguration Description: show congured thresholds for monitored parameters. shows the parameter name and the congured threshold value for all parameters. If instrumenation monitoring for the particular paramter is disabled then threshold for th[...]

  • Página 546

    Use the 'slot' argument to display CPU utilization for the specied modules, rather than the chassis CPU. Next Available Options: ■ time < 1 to 300 > -- Time (seconds) over which to average CPU utilization. (NUMBER) (p. 599) ■ slot -- Display module CPU statistics. (SLOT-ID-RANGE) (p. 591) crypto ■ show crypto Usage: show cr[...]

  • Página 547

    ■ show tech custom Usage: show tech [all|custom|buffers|instrumentation|mesh|route|statistics |transceivers|vrrp] Description: Display output of a predened command sequence used by technical support. custom-port-list ■ show interfaces custom [ETHERNET] PORT-LIST Usage: show interfaces [ethernet] PORT-LIST Description: Show summary of network[...]

  • Página 548

    destination ■ show sflow <1t o3> destination Displays information about the receiver/collector/management-station to which the sampling-polling data is sent. detail ■ show cdp neighbors detail Show neighbor information eld-per-line instead of shortened table format. ■ show spanning-tree [ETHERNET] PORT-LIST detail Show spanning tree [...]

  • Página 549

    ■ show port-access mac-based config [ETHERNET] PORT-LIST detailed Show the detailed conguration of MAC Authentication. ■ show port-access mac-based clients [ETHERNET] PORT-LIST detailed Show the connected MAC address detailed information. ■ show port-access web-based [ETHERNET] PORT-LIST config detailed Show the detailed conguration of [...]

  • Página 550

    Usage: show services details Description: Show services software information ■ show modules details Usage: show modules details Description: Show miniGBIC information device-priority ■ show qos device-priority Usage: show qos device-priority Description: Show the device priority table (priority based on the IP addresses). dhcp-relay ■ show dh[...]

  • Página 551

    ■ vlan -- VLAN acl ■ [no] show statistics < aclv6 > ACL-NAME vlan VLAN-ID < vlan > Supported Values: ■ vlan -- VLAN acl ■ [no] show statistics < policy > POLICY-NAME vlan VLAN-ID < in > Supported Values: ■ in -- Match inbound packets display ■ show interfaces display Usage: show interfaces [ethernet] PORT-LIST De[...]

  • Página 552

    elected ■ show ip pim bsr elected Show elected Bootstrap Router information. enable ■ show snmpv3 enable Show SNMPv3 status. endpoint ■ show monitor endpoint Remote mirroring destination conguration. engineid ■ show snmpv3 engineid Show switch's SNMP engineId. entries ■ show igmp-proxy entries Show all the currently active IGMP pr[...]

  • Página 553

    ■ router-id -- Show LSAs with the specified Router ID only. (IP-ADDR) (p. 587) ■ sequence-number -- Show LSAs with the specified sequence number only. (p. 589) fan-pref-airflow-dir ■ show system fan-pref-airflow-dir Usage: show system fan-pref-airow-dir Description: Shows the user congured fan preferred airow direction. fans ■ show[...]

  • Página 554

    filter ■ show filter Usage: show lter [INDEX] Description: Show a table of security lters or a lter detailed information, if the lter's INDEX is specied. Next Available Options: ■ INDEX -- Show detailed information for the filter identified by the INDEX. The indices are displayed by the 'show filter' command. (p. 5[...]

  • Página 555

    front-panel-security ■ show front-panel-security Usage: show front-panel-security Description: Show current security status of the front panel butons. If 'password-clear' is disabled, the password(s) cannot be reset using the clear button on the front panel of the device. If 'factory- reset' is disabled, the conguation/pass[...]

  • Página 556

    Supported Values: ■ ManagerPriv -- Require privacy and authentication, can access all objects. ■ ManagerAuth -- Require authentication, can access all objects. ■ OperatorAuth -- Requires authentication, limited access to objects. ■ OperatorNoAuth -- No authentication required, limited access to objects. ■ ComManagerRW -- Community with ma[...]

  • Página 557

    helper-address ■ show ip helper-address Usage: show ip helper-address [vlan <VLAN-ID>] Description: Show DHCP servers where DHCP requests received by the switch are to be forwarded. Next Available Option: ■ vlan -- Specify a vlan for which to show server addresses. (VLAN-ID) (p. 603) history ■ show history Usage: show history Descriptio[...]

  • Página 558

    ■ fingerprint -- Display hexadecimal hash. (p. 552) icmp ■ show ip icmp Usage: show ip icmp Description: Show ICMP Rate Limiting settings. ■ show rate-limit icmp Show only limits for icmp trafc. Next Available Options: ■ port-list -- Specify ports for which information will be shown. ([ethernet] PORT-LIST) (p. 578) ■ detailed -- Show I[...]

  • Página 559

    Next Available Options: ■ vlan -- Show IGMP operational information for the VLAN specified. (VLAN-ID) (p. 603) ■ config -- Show IGMP configuration information. (p. 540) ■ group -- Show ports the specified multicast group address is registered on. (IP-ADDR) (p. 553) igmp-proxy ■ show igmp-proxy Usage: show igmp-proxy <entries|domains|vlan[...]

  • Página 560

    Show the spanning tree instance information. Next Available Options: ■ ist -- Show the information for the internal spanning tree (IST) instance. (p. 563) ■ MSTID < 1 to 16 > -- Spanning tree instance ID for which to show the information. (p. 572) ■ show spanning-tree [ETHERNET] PORT-LIST instance Show spanning tree instance status info[...]

  • Página 561

    Range: < 0 to 16 > instrumentation ■ show instrumentation Usage: show instrumentation Description: Show internal version-dependant counters for debugging. This data is for factory troubleshooting purposes. The data displayed is dependent on which version of code is running. Data is maintained for the current 5 minutes, hour, and day. At the[...]

  • Página 562

    ■ show ip rip interface Usage: show ip rip interface [IP-ADDR|vlan VLAN-ID] Description: Show RIP interfaces' information. Invoked without parameters shows all RIP interfaces congured. If the 'IP-ADDR' or the VLAN is specied detailed information for the interface determined through the parameter is shown. Next Available Optio[...]

  • Página 563

    Next Available Options: ■ port-list -- Show summary of network traffic handled by the ports ([ethernet] PORT-LIST) (p. 578) ■ config -- Show configuration information (p. 540) ■ display -- Show summary of network traffic handled by the ports (p. 549) ■ brief -- Show the ports' operational parameters (p. 535) ■ port-utilization -- Sho[...]

  • Página 564

    IP-ADDR ■ show ip mroute IP-ADDR Usage: show ip mroute [GRP-ADDR SRC-ADDR] Description: Show detailed information for the specied entry from the IP multicast routing table. GRP-ADDR is the IP multicast group address and SRC-ADDR is the source IP address of the entry. Next Available Option: ■ IP-ADDR -- Specify the source IP address of the MR[...]

  • Página 565

    ■ routers -- Show the IPv6 Router table entries (p. 587) ■ route -- Show the IPv6 routing table (p. 587) ■ nd -- Show the IPv6 Neighbor Discovery settings (p. 573) ■ mld -- Invoked without any parameters, shows per-VLAN MLD status, or, if VLANs are disabled displays the global MLD status (p. 570) ■ neighbors -- Displays information on the[...]

  • Página 566

    Show the information for the internal spanning tree (IST) instance. ■ show spanning-tree root-history ist Show IST Regional Root changes history. jumbos ■ show jumbos Usage: show max-frame-size Description: Show the untagged Max frame size for the switch. This value will be effective only when Jumbo is enabled. key-chain ■ show key-chain Usag[...]

  • Página 567

    lacp ■ show lacp Usage: show lacp Description: Show status of LACP trunks. Next Available Option: ■ distributed -- Show distributed lacp of local and remote switch (p. 549) learned ■ show ip pim rp-set learned Show RP-Set information learned from the BSR. licenses ■ show licenses Usage: show licenses [uninstalled] Description: Display licen[...]

  • Página 568

    Next Available Options: ■ area-id -- Show LSAs for the specified area only. (OSPF-AREA-ID) (p. 530) ■ advertise -- Show each LSA as a stream of bytes in hexadecimal notation. (p. 529) ■ link-state-id -- Show LSAs with the specified ID only. (IP-ADDR) (p. 566) ■ router-id -- Show LSAs with the specified Router ID only. (IP-ADDR) (p. 587) ■[...]

  • Página 569

    Usage: show lockout-mac Description: Show the MAC addresses that have been locked out of the network. logging ■ show logging Usage: show logging [-a|-r|-m|-p|-w|-i|-d|substring ...] Description: Display log events. -a - Instructs the switch to display all recorded log events, which includes events from previous boot cycles. -r - Instructs the swi[...]

  • Página 570

    mac-address ■ show mac-address Usage: show mac-address [[ethernet] PORT-LIST|vlan VLAN-ID|MAC-ADDR] Description: Show MAC addresses the switch has learned. You can display addresses learned on a particular port, a PORT-LIST, a VLAN-ID, or a particular MAC address. Next Available Options: ■ address-table-port -- Show MAC addresses learned on the[...]

  • Página 571

    of MAC Authentication is shown. If 'auth-server' keyword has been specied then the authentication server-related conguration items are shown. If PORT-LIST and 'detail' keyword has been specied then the detailed conguration of MAC Authentication for the specied ports is shown. If 'clients' keyword has bee[...]

  • Página 572

    mld ■ show ipv6 mld Usage: show ipv6 mld [cong|group IPV6-ADDR|VLAN-ID [cong]] Description: Invoked without any parameters, shows per-VLAN MLD status, or, if VLANs are disabled displays the global MLD status. When followed by the 'cong' keyword, shows MLD global conguration information. VLAN-ID can be used to get operational[...]

  • Página 573

    Usage: show monitor Description: Show the switch network monitoring status and conguration, if network monitoring is enabled. Next Available Options: ■ mirror_session_id < 1 to 4 > -- Mirror destination number. (p. 569) ■ name -- Mirror destination name. (p. 572) ■ endpoint -- Remote mirroring destination configuration. (p. 550) motd[...]

  • Página 574

    msti ■ show spanning-tree root-history msti <1t o1 6> Show MSTI Regional Root changes history. Range: < 1 to 16 > MSTID ■ show spanning-tree [ETHERNET] PORT-LIST config instance <1t o1 6> Spanning tree instance ID for which to show the information. Range: < 1 to 16 > ■ show spanning-tree [ETHERNET] PORT-LIST instance &[...]

  • Página 575

    ■ show policy NAME Enter policy name. nd ■ show ipv6 nd Usage: show ipv6 nd Description: Show the IPv6 Neighbor Discovery settings. neighbor ■ show ip ospf neighbor Usage: show ip ospf neighbor [IP-ADDR] Description: Show all OSPF neighbors in the locality of of the device. The 'IP-ADDR' can be specied to retrieve detailed inform[...]

  • Página 576

    Next Available Option: ■ vlan -- Displays information on the IPv6 neighbor discovery cache (p. 603) neighbors-port ■ show cdp neighbors [ETHERNET] PORT-NUM Show CDP neighbors on specied port only. notify ■ show snmpv3 notify Show SNMPv3 notication table. Next Available Option: ■ NOTIFY-NAME -- Show a specific notification entry. (ASCI[...]

  • Página 577

    ■ spf-log -- List the OSPF SPF(Shortes Path First Algorithm) run count for all OSPF areas and last ten Reasons for running SPF (p. 593) ■ statistics -- List OSPF packet statistics( OSPF sent,recieved and error packet count) of all OSPF enabled interfaces (p. 594) ■ area -- Show OSPF areas configured on the device (p. 529) ■ external-link-st[...]

  • Página 578

    peer-ip ■ show ip rip peer IP-ADDR Specify IP address of the RIP peer to show. pending ■ show ip pim pending Show (*,G) and (S,G) Join Pending Information. ■ show spanning-tree pending Usage: show spanning-tree pending ... Description: Show spanning tree pending conguration. Use 'show spanning-tree pending ?' to see a list of all[...]

  • Página 579

    policy-name ■ show statistics < policy > POLICY-NAME Enter the name of acl/policy. Next Available Options: ■ vlan -- Enter the statistics vlan. (VLAN-ID) (p. 603) ■ port -- Enter the statistics port. ([ethernet] PORT-NUM) (p. 577) port ■ show instrumentation cam port Usage: show instrumentation [<group>] [port|vlan <num>] [...]

  • Página 580

    Next Available Options: ■ authenticator -- Show 802 (p. 531) ■ supplicant -- Show 802 (p. 596) ■ mac-based -- Show MAC Authentication statistics and configuration (p. 568) ■ web-based -- Show Web Authentication statistics and configuration (p. 609) ■ -- Show Web/MAC Authentication statistics and configuration ([ethernet] PORT-LIST) (p. 52[...]

  • Página 581

    Description: Show names assigned to the ports. If the PORT-LIST is not specied the default is to list all of the ports. ■ show port-security [ETHERNET] PORT-LIST Usage: show port-security [intrusion-log|[ethernet] PORT-LIST] Description: Show a table describing port security settings. o intrusion-log - Show the intrusion log records. o PORT-LI[...]

  • Página 582

    Limit the port information printed to the set of the specied ports. ■ show spanning-tree pvst-filter [ETHERNET] PORT-LIST Limit the port information printed to the set of the specied ports. ■ show spanning-tree pvst-protection [ETHERNET] PORT-LIST Limit the port information printed to the set of the specied ports. ■ show trunks [ETHE[...]

  • Página 583

    Show VLANs that have at least one port from the 'PORT-LIST' as a member. Next Available Option: ■ detail -- Display more info for each port from the 'PORT-LIST' separately. (p. 546) ■ show svlans ports [ETHERNET] PORT-LIST Show VLANs that have at least one port from the 'PORT-LIST' as a member. Next Available Optio[...]

  • Página 584

    power-supply ■ show system power-supply Usage: show system power-supply Description: Show Chassis Power Supply info and settings. protocol-priority ■ show qos protocol-priority Usage: show qos protocol Description: Show the protocol priority. pvst-filter ■ show spanning-tree pvst-filter Show spanning tree PVST lter status information. Next[...]

  • Página 585

    ■ protocol-priority -- Show the protocol priority (p. 582) ■ tcp-udp-port-priority -- Show TCP/UDP port priorities (p. 598) ■ type-of-service -- Show QoS priorities based on IP Type-of-Service (p. 601) ■ vlan-priority -- Show the VLAN-based priority table (p. 607) ■ resources -- Show the qos resources (p. 585) ■ queue-config -- Displays[...]

  • Página 586

    Next Available Options: ■ authentication -- Show RADIUS authentication statistics (p. 531) ■ accounting -- Show RADIUS accounting statistics (p. 528) ■ dyn-authorization -- Show RADIUS dynamic authorization statistics (p. 549) ■ host -- Show statistics information for the RADIUS host (IP-ADDR) (p. 555) rate-limit ■ show rate-limit Usage: [...]

  • Página 587

    Usage: show ip rip redistribute Description: List protocols which are being redistributed into RIP. redundancy ■ show redundancy Usage: show redundancy Description: Display redundant information for Management and Fabric Modules. remote-device ■ show lldp info remote-device Show LLDP remote device information. Next Available Option: ■ port-li[...]

  • Página 588

    restrict ■ show ip ospf restrict Usage: show ip ospf restrict Description: List routes which will not be redistributed via OSPF. ■ show ip rip restrict Usage: show ip rip restrict Description: List routes which will not be redistributed via RIP. restricted-access ■ show snmpv3 restricted-access Show SNMPv1 and SNMPv2c access properties. rip ?[...]

  • Página 589

    Next Available Options: ■ cst -- Show CST Root changes history. (p. 544) ■ ist -- Show IST Regional Root changes history. (p. 563) ■ msti < 1 to 16 > -- Show MSTI Regional Root changes history. (NUMBER) (p. 572) route ■ show ip route Usage: show ip route [IP-ADDR] [static|connected|rip|ospf] Description: Show the IP routing table. The[...]

  • Página 590

    Usage: show ipv6 routers vlan <VLANID> Description: Show the IPv6 Router table entries. Next Available Option: ■ vlan -- Show the IPv6 Router Table Entries for VLAN. (p. 603) rp-candidate ■ show ip pim rp-candidate Usage: show ip pim rp-candidate [cong] Description: Show Candidate-RP operational and conguration information. When inv[...]

  • Página 591

    sampling-polling ■ show sflow <1t o3> sampling-polling Displays information about sampling and polling. Next Available Option: ■ port-list -- Displays information about sampling and polling. ([ethernet] PORT-LIST) (p. 578) savepower ■ show savepower Usage: show savepower Description: Shows the user congured block power status. sec-mo[...]

  • Página 592

    o <SLOT-ID> - Display summary table for the specied slot. o <SLOT-ID> details - Display application information for the specied slot. Next Available Option: ■ services -- Show services information (SLOT-ID) (p. 589) ■ show services SLOT-ID Usage: show services [<SLOT-ID> [details]] Description: Show services information.[...]

  • Página 593

    ■ receiver-index < 1 to 3 > -- Select one of the three possible sFlow receiver tables. (NUMBER) (p. 584) slave_time ■ show cpu slot SLOT-ID-RANGE < 1 to 90 > Time (seconds) over which to average CPU utilization. Range: < 1 to 90 > slot ■ show cpu slot SLOT-ID-RANGE Display module CPU statistics. Next Available Option: ■ sl[...]

  • Página 594

    ■ community -- Show SNMPv3 Community table. (p. 539) ■ enable -- Show SNMPv3 status. (p. 550) ■ engineid -- Show switch's SNMP engineId. (p. 550) ■ group -- Show SNMPv3 User to Group mappings. (p. 553) ■ notify -- Show SNMPv3 notification table. (p. 574) ■ only -- Show SNMP message reception policy. (p. 574) ■ params -- Show SNMP[...]

  • Página 595

    [detail] show spanning-tree [mst-cong] | [cong [instance <ist|INSTANCE-ID>]] | [root-history <cst|ist|msti <INSTANCE-ID>>] | [debug-counters [instance <INSTANCE-ID>] | [ports <PORT_LIST>]] Description: Show spanning tree information. When executed without parameters, the command shows spanning tree status informa[...]

  • Página 596

    Description: Show the stack status of this switch. The 'candidate' and 'view' commands are available on the stack commander only. o candidates - show the list of devices that are stack candidates. o view - show the list of devices that are stack members. o all - show information about all the stacks available on the LAN. Next Av[...]

  • Página 597

    ■ show link-keepalive statistics show detailed statistics for all link-keepalive enabled ports. ■ show port-access authenticator [ETHERNET] PORT-LIST statistics Show authentication sessions statistics for 802.1X authenticator. ■ show port-access authenticator statistics Show authentication sessions statistics for 802.1X authenticator. ■ sho[...]

  • Página 598

    stats ■ show dhcp-snooping stats Display DHCP snooping events. ■ show lldp stats Usage: show lldp stats [[ethernet] PORT-LIST] Description: Show LLDP statistics. o [ethernet] PORT-LIST - Show statistics for the specied ports . Next Available Option: ■ port-list -- Specify the port or list of ports. ([ethernet] PORT-LIST) (p. 578) status ?[...]

  • Página 599

    svlans ■ show svlans Usage: show vlans [VLAN-ID|ports [ethernet] PORT-LIST] Description: Show status information for all VLANs. If a 'VLAN-ID' is specied, shows the ports that are currently members of the VLAN identied by the 'VLAN-ID'. If a 'PORT-LIST' is specied, shows all the VLANs of which at least one p[...]

  • Página 600

    tcp-udp-port-priority ■ show qos tcp-udp-port-priority Usage: show qos tcp-udp-port-priority Description: Show TCP/UDP port priorities. tech ■ show tech Usage: show tech [all|custom|buffers|instrumentation|mesh|route|statistics |transceivers|vrrp] Description: Display output of a predened command sequence used by technical support. Next Avai[...]

  • Página 601

    throttled-hosts ■ show connection-rate-filter throttled-hosts Show throttled IP addresses. time ■ show cpu < 1 to 300 > Time (seconds) over which to average CPU utilization. Range: < 1 to 300 > ■ show time Usage: show time Description: Show current date and time. timep ■ show timep Usage: show timep Description: Show congured[...]

  • Página 602

    ■ show spanning-tree traps Show spanning tree trap information. trunks ■ show trunks Usage: show trunks [[ethernet] PORT-LIST] Description: Show a list of ports and the trunks to which they belong. If a PORT-LIST is supplied the command shows only the ports specied. Next Available Option: ■ port-list -- Show the trunk information only for [...]

  • Página 603

    ■ show statistics < aclv6 > Supported Values: ■ aclv6 -- Ipv6 acl. Next Available Option: ■ acl-name -- Enter the name of acl/policy. (ASCII-STR) (p. 528) ■ show statistics < policy > Supported Values: ■ policy -- QoS/Mirror policy. Next Available Option: ■ policy-name -- Enter the name of acl/policy. (ASCII-STR) (p. 577) ty[...]

  • Página 604

    Next Available Option: ■ USER-NAME -- Show a specific user. (ASCII-STR) (p. 602) USER-NAME ■ show snmpv3 user USER-NAME Show a specic user. ver1-2c ■ show snmpv3 access-rights < ManagerPriv | ManagerAuth | OperatorAuth | ... > sec-model < ver1 | ver2c > Congure SNMPv3 User entry. Supported Values: ■ ver1 -- SNMP version 1 [...]

  • Página 605

    Show the list of devices that are stack members. VIEW-NAME ■ show snmpv3 view VIEW-NAME Set view name. Next Available Option: ■ SUB-TREE -- Set the OID of the tree. (ASCII-STR) (p. 596) virtual-link ■ show ip ospf virtual-link Usage: show ip ospf virtual-link [IP-ADDR] [area OSPF-AREA-ID] Description: Show status of all OSPF virtual links con[...]

  • Página 606

    ■ show dhcp-relay bootp-gateway vlan Show the congured BOOTP Gateway for VLAN. Next Available Option: ■ vlan -- (VLAN-ID) (p. 603) ■ show dhcp-relay bootp-gateway vlan VLAN-ID ■ show instrumentation cam vlan Usage: show instrumentation [<group>] [port|vlan <num>] Description: Show internal version-dependant counters for debug[...]

  • Página 607

    Specify VLAN of the interface for which to show detailed information. ■ show ipv6 vlan Usage: show ipv6 vlan [VLAN-ID] Description: Show IPv6 status information for all VLANs. If a 'VLAN-ID' is specied, shows the ports that are currently members of the VLAN identied by the 'VLAN-ID'. Next Available Option: ■ vlan -- Sh[...]

  • Página 608

    Show authorized and unauthorized vlans for 802.1X authenticator. ■ show port-access [ETHERNET] PORT-LIST authenticator vlan Show authorized and unauthorized vlans for 802.1X authenticator. ■ show vlans VLAN-ID Show detailed VLAN information for the VLAN with the ID supplied. ■ show svlans VLAN-ID Show detailed VLAN information for the VLAN wi[...]

  • Página 609

    VLAN-ID ■ show ip mroute interface VLAN-ID Specify the VLAN ID of the IP multicast routing interface to show. ■ show ip pim interface VLAN-ID Specify the VLAN ID of the PIM interface to show. ■ show vrrp vlan VLAN-ID Specify VLAN for which to display VRRP information. Next Available Options: ■ config -- Show VRRP configuration information f[...]

  • Página 610

    If a 'VLAN-ID' is specied, shows the ports that are currently members of the VLAN identied by the 'VLAN-ID'. If a 'PORT-LIST' is specied, shows all the VLANs of which at least one port in the 'PORT-LIST' is a member. Next Available Options: ■ vlan -- Show detailed VLAN information for the VLAN with[...]

  • Página 611

    Usage: show vrrp [...] Description: Show VRRP conguration and statistics information. Next Available Options: ■ config -- Show VRRP configuration information for the device (p. 540) ■ statistics -- Show VRRP statistics information for the device (p. 594) ■ vlan -- Show VRRP information for a VLAN. (p. 603) ■ tracked-entities -- Show VRRP[...]

  • Página 612

    If 'auth-server' keyword has been specied then the authentication server-related conguration items are shown. If 'web-server' keyword has been specied then the web server-related conguration items are shown. If PORT-LIST and 'detail' keyword has been specied then the detailed conguration of Web Authen[...]

  • Página 613

    Usage: show wireless-services vlans show wireless-services <SLOT-ID> show wireless-services <SLOT-ID> [radio-ports|uplinks] Description: Show wireless-services information. Parameters: o vlans - Display all radio-port VLANs. o <SLOT-ID> - Display summary table for the specied slot. o <SLOT-ID> radio-ports - Display radio-[...]

  • Página 614

    snmp-server OVERVIEW SNMP Category: config Primary context: show (page 511) Related Commands Usage: snmp-server [contact ASCII-STR] [location ASCII-STR] [no] snmp-server community ASCII-STR [manager|operator] [restricted|unrestricted] [no] snmp-server host IP-ADDR COMMUNITY-STR [none|debug|all|not-info|critical] [no] snmp-server enable [no] snmp-se[...]

  • Página 615

    administrator. o location ASCII-STR - Up to 48 characters. Description of the switch location. o community ASCII-STR - Enter up to 32 characters to name an SNMP community. o <manager|operator> - manager - the community can access all MIB objects; operator (default) - the community can access all except the CONFIG MIB. o <restricted|unrestr[...]

  • Página 616

    ■ informs -- Specify if informs will be sent, rather than notifications. (p. 618) ■ retries < 0 to 255 > -- Specify the number of retries for informs. (p. 620) ■ timeout < 1 to 21474836 > -- Specify the interval between retries for informs, in seconds. (NUMBER) (p. 620) ■ address_ipv6 -- IPv6 address of SNMP notification host. ([...]

  • Página 617

    address_ipv6 ■ snmp-server host IPV6-ADDR IPv6 address of SNMP notication host. Next Available Options: ■ community -- Name of the SNMP community (up to 32 characters). (ASCII-STR) (p. 615) ■ informs -- Specify if informs will be sent, rather than notifications. (p. 618) ■ events < None | Debug | All | ... > -- (p. 616) arp-protect[...]

  • Página 618

    contact ■ snmp-server contact CONTACT Name of the switch administrator. dhcp-snooping ■ [no] snmp-server enable traps dhcp-snooping Traps for DHCP-Snooping. dst-ip-of-request ■ snmp-server response-source dst-ip-of-request Destination Ip address of the snmp request pdu will be used as the source ip address in the snmp response pdu. dyn-ip-loc[...]

  • Página 619

    Disables SNMP support for the hpSwitchAuthentication MIB. extended ■ [no] snmp-server enable traps snmp-authentication extended Send traps for Extended Authentication failures. host ■ [no] snmp-server host Usage: [no] snmp-server host IP-ADDR COMMUNITY-STR [none|debug|all|not-info|critical] [informs [retries RETRY-COUNT] [timeout TIMEOUT]] Desc[...]

  • Página 620

    Description: Enable/Disable SNMP support for the hpSwitchAuthentication MIB. When the MIB access is enabled, Manager read/write access to the MIB is permitted. Operator read/write access to the MIB is always denied. For security reasons, network administrators are encouraged to disable SNMPV2c before using the MIB. Next Available Options: ■ inclu[...]

  • Página 621

    Description of the switch location. login-failure-mgr ■ [no] snmp-server enable traps login-failure-mgr Traps for management interface login failure. loopback ■ snmp-server response-source loopback <0t o7> For the specied loopback interface, lexicographically minimum congured ip address will be used as the source ip address in the s[...]

  • Página 622

    Description: Specify the source ip-address policy for the response pdu. By default snmp response pdu will contain the ip address of the active interface on which response will be sent. The default behavior is in compliance to rfc-1517. The no form of the command will revert to default behavior. IP-ADDR -- ip-address specied will be used as the s[...]

  • Página 623

    Range: < 1 to 21474836 > ■ snmp-server host IPV6-ADDR informs timeout < 1 to 21474836 > Specify the interval between retries for informs, in seconds. Range: < 1 to 21474836 > traps ■ [no] snmp-server enable traps Usage: [no] snmp-server enable traps snmp-authentication <standard | extended> [no] snmp-server enable traps [...]

  • Página 624

    view ■ [no] snmp-server community COMMUNITY < Operator | Manager > Usage: [no] snmp-server community ASCII-STR [manager|operator] [restricted|unrestricted] Description: Add/delete SNMP community. Parameters: o community ASCII-STR - Enter up to 32 characters to name an SNMP community. o <manager|operator> - manager - the community can [...]

  • Página 625

    snmpv3 OVERVIEW Category: config Primary context: show snmpv3 (page 591) Related Commands show snmp-server (page 591) Usage: [no] snmpv3 <community|group|notify|params|restricted-access| targetaddress|user> Description: Congure SNMPv3 features. NOTES IPv6 Supported Commands IPv6 addressing is supported for the following commands: ■ snmpv[...]

  • Página 626

    tagvalue -- Set tag value that selects entries in the snmpTargetAddr table. (ASCII-STR) (p. 632) ■ ■ [no] snmpv3 only -- Accept only SNMP v3 messages. (p. 629) ■ [no] snmpv3 params -- Configure SNMPv3 Target Parameter entry. (ASCII-STR) (p. 629) ■ user -- Set user that the switch will send messages on behalf. (ASCII-STR) (p. 632) ■ sec-mo[...]

  • Página 627

    COMMAND DETAILS sec-model (p. 631) max-msg-size (p. 628) addr-mask (p. 625) sec-model12c (p. 631) message-processing (p. 628) auth (p. 625) sec-name (p. 631) name (p. 628) authpassword (p. 625) tag (p. 631) notify (p. 628) authprotocol (p. 625) taglist (p. 631) only (p. 629) community (p. 626) tagvalue (p. 632) params (p. 629) enable (p. 626) targe[...]

  • Página 628

    Set authentication protocol. Supported Values: ■ MD5 -- Set the authentication protocol to md5. ■ SHA -- Set the authentication protocol to sha. Next Available Option: ■ authpassword -- Set authentication password. (ASCII-STR) (p. 625) community ■ [no] snmpv3 community Congure SNMPv3 Community entry. Next Available Option: ■ index -- S[...]

  • Página 629

    group ■ [no] snmpv3 group < ManagerPriv | ManagerAuth | OperatorAuth | ... > Congure SNMPv3 User to Group entry. Supported Values: ■ ManagerPriv -- Require privacy and authentication, can access all objects. ■ ManagerAuth -- Require authentication, can access all objects. ■ OperatorAuth -- Requires authentication, limited access to[...]

  • Página 630

    ■ max-msg-size < 484 to 65535 > -- Set maximum message size value; default is 1472. (p. 628) ■ port-mask -- Set range of udp ports with this mask. (TCP/UDP-PORT) (p. 629) ■ retries < 0 to 255 > -- Set retries value; default is 3. (p. 630) ■ timeout < 0 to 2147483647 > -- Set time-out value; default is 1500. (p. 632) ■ ta[...]

  • Página 631

    Next Available Option: ■ tagvalue -- Set tag value that selects entries in the snmpTargetAddr table. (ASCII-STR) (p. 632) only ■ [no] snmpv3 only Accept only SNMP v3 messages. params ■ [no] snmpv3 params PARAMS Congure SNMPv3 Target Parameter entry. Next Available Option: ■ user -- Set user that the switch will send messages on behalf. ([...]

  • Página 632

    privpassword ■ snmpv3 user USERNAME auth AUTHPASSWORD priv PRIVPASSWORD Set Privacy password. ■ snmpv3 user USERNAME auth AUTHPASSWORD priv < DES | AES > PRIVPASSWORD Set Privacy password. ■ snmpv3 user USERNAME auth < MD5 | SHA > AUTHPASSWORD priv PRIVPASSWORD Set Privacy password. ■ snmpv3 user USERNAME auth < MD5 | SHA >[...]

  • Página 633

    ■ snmpv3 targetaddress TARGETADDRESS params PARAMS IPV6-ADDR retries < 0 to 255 > Set retries value; default is 3. Range: < 0 to 255 > sec-model ■ [no] snmpv3 group < ManagerPriv | ManagerAuth | OperatorAuth | ... > user USER sec-model < ver1 | ver2c | ver3 > Set security model to be used. Supported Values: ■ ver1 -- S[...]

  • Página 634

    Set list of values used to select this entry from snmpNotifyTable. ■ snmpv3 targetaddress TARGETADDRESS params PARAMS IPV6-ADDR taglist TAGLIST Set list of values used to select this entry from snmpNotifyTable. tagvalue ■ snmpv3 notify NOTIFY tagvalue TAGVALUE Set tag value that selects entries in the snmpTargetAddr table. targetaddress ■ [no[...]

  • Página 635

    Next Available Option: ■ sec-model -- Set security model. (p. 631) ■ [no] snmpv3 user Congure SNMPv3 User entry. Next Available Option: ■ username -- Set authentication paramaters. (ASCII-STR) (p. 633) username ■ snmpv3 user USERNAME Set authentication paramaters. Next Available Option: ■ auth -- Set authentication paramaters. (p. 625)[...]

  • Página 636

    sntp OVERVIEW Switch Management Category: config Primary context: show sntp (page 592) Related Commands timesync (page 689) Usage: [no] sntp [broadcast|unicast] [no] sntp server priority <PRIORITY> <IP-ADDR | IPV6-ADDR> [version] sntp poll-interval <30-720> Description: Congure the Simple Network Time Protocol (SNTP). The rs[...]

  • Página 637

    ipaddr ■ [no] sntp server priority < 1 to 3 > IP-ADDR SNTP server IPv4 address. Next Available Option: ■ version < 1 to 7 > -- Version of the SNTP server. (p. 635) ipv6addr ■ [no] sntp server priority < 1 to 3 > IPV6-ADDR SNTP server IPv6 address. Next Available Option: ■ version < 1 to 7 > -- Version of the SNTP ser[...]

  • Página 638

    Version of the SNTP server. Range: < 1 to 7 > ■ sntp server priority < 1 to 3 > IPV6-ADDR < 1 to 7 > Version of the SNTP server. Range: < 1 to 7 > 636 © 2009 Hewlett-Packard Development Company, L.P. sntp Command Line Interface Reference Guide[...]

  • Página 639

    spanning-tree OVERVIEW Category: config Primary context: show spanning-tree (page 592) Related Commands Usage: [no] spanning-tree [[ethernet] PORT-LIST ...] [pending ...] [instance ...] [legacy-mode] [legacy-path-cost] [cong-name ASCII-STR] [cong-revision <0-65535>] [max-hops <1-40>] [force-version <stp-compatible|rstp-operatio[...]

  • Página 640

    o priority <0-15> or <0-65535> (default is 32768 and step 8 respectively) - The device priority - used along with the switch MAC address to determine which device is the root. If 802.1w or 802.1s STP version is set, then the range of 0-61440 is divided into steps of 4096. These steps are numbered from 0 to 15. o cong-name ASCII-STR ([...]

  • Página 641

    ist -- Configure internal spanning tree (IST) instance. (p. 644) ■ ■ port-list -- Configure internal spanning tree (IST) instance ports parameters ([ethernet] PORT-LIST) (p. 648) ■ path-cost -- Set the internal port pathcost for the IST (default is 'auto'). (p. 646) ■ auto -- Use dynamic method of selecting a value for the path co[...]

  • Página 642

    ■ mcheck -- Force the port to transmit RST BPDUs. (p. 645) ■ path-cost -- Set port's path cost value. (p. 646) ■ auto -- Use dynamic method of selecting a value for the path cost. (p. 641) ■ path-cost < 1 to 200000000 > -- Set port's path cost to the fixed value. (p. 646) ■ path-cost < 1 to 65535 > -- Set port's[...]

  • Página 643

    vlan (p. 653) MSTID (p. 645) config-revision (p. 642) VLAN-ID-RANGE (p. 653) path-cost (p. 646) force-version (p. 642) pending (p. 647) forward-delay (p. 643) point-to-point-mac (p. 648) global (p. 643) admin-edge-port ■ [no] spanning-tree [ETHERNET] PORT-LIST admin-edge-port Set the administrative edge port status. apply ■ spanning-tree pendin[...]

  • Página 644

    Range: < 0 to 65535 > clear-debug-counters ■ spanning-tree clear-debug-counters Clear spanning tree debug counters. Next Available Options: ■ instance < 0 to 16 > -- Clear spanning tree instance debug counters. (NUMBER) (p. 643) ■ ports -- Clear spanning tree port(s) debug counters. ([ethernet] PORT-LIST) (p. 651) config-name ■ [...]

  • Página 645

    ■ RSTP-operation -- The protocol operates as Rapid STP on all ports except those ports where a system that is using 802.1d Spanning Tree has been detected. ■ spanning-tree force-version < STP-compatible | RSTP-operation | MSTP-operation > Set Spanning Tree protocol compatibility mode. Supported Values: ■ STP-compatible -- The protocol o[...]

  • Página 646

    must have at least one VLAN mapped to it. The VLANs unmapped from other instances are automatically mapped to the IST instance. Only IST VLANs can be directly mapped to other instances. When VLANs are mapped to an instance they are automatically unmapped from the instance they were mapped to before. Any MSTP instance can have all the VLANs congu[...]

  • Página 647

    'spanning-tree legacy-mode' is the equivalent of executing: spanning-tree legacy-path-cost spanning-tree force-version stp-compatible 'no spanning-tree legacy-mode' is the equivalent of executing: no spanning-tree legacy-path-cost spanning-tree force-version mstp-operation legacy-path-cost ■ [no] spanning-tree legacy-path-cost[...]

  • Página 648

    ■ [no] spanning-tree pending instance <1t o1 6> ID of the MST instance to congure. Range: < 1 to 16 > Next Available Option: ■ vlan -- Configure VLANs for the MST instance. (p. 653) path-cost ■ spanning-tree [ETHERNET] PORT-LIST path-cost Set port's path cost value. Next Available Options: ■ path-cost < 1 to 200000000[...]

  • Página 649

    Next Available Options: ■ path-cost < 1 to 200000000 > -- Set port's path cost to the fixed value. (p. 646) ■ auto -- Use dynamic method of selecting a value for the path cost. (p. 641) ■ spanning-tree instance ist [ETHERNET] PORT-LIST path-cost < 1 to 200000000 > Set port's path cost to the xed value. Range: < 1 t[...]

  • Página 650

    point-to-point-mac ■ spanning-tree [ETHERNET] PORT-LIST point-to-point-mac < True | False | Auto > Set the administrative point-to-point status. Supported Values: ■ True -- Treat the port as if it is connected to a point-to-point LAN segment. ■ False -- Treat the port as if it is connected to a non-point-to-point LAN segment. ■ Auto -[...]

  • Página 651

    If enabled, this takes precendence over the pvst-lter conguration for a port. o root-guard - Applies only to MSTP. If TRUE causes the port not to be selected as Root Port for the CIST or any MSTI. o tcn-guard - Applies only to MSTP. If TRUE causes the port not to propagate received topology notications and topology changes to other ports. [...]

  • Página 652

    Usage: spanning-tree [ethernet] PORT-LIST <<admin-edge-port>|auto-edge-port>| <mcheck>| <path-cost <1-65535>|<1-200000000>|auto>>| <point-to-point <true|false|auto>>| <bpdu-lter>| <bpdu-protection>| <pvst-lter>| <pvst-protection>| <root-guard> | <tcn-guard>[...]

  • Página 653

    RSTP/MSTP. When correctly set for each port, it improves the operation of protocol. 'True' indicates that the port will be treated as if it is connected to a point-to-point LAN segment, regardless of any information to the contrary that the switch receives. 'False' indicates that the port will be treated as if it is connected to[...]

  • Página 654

    ■ spanning-tree clear-debug-counters ports [ETHERNET] PORT-LIST Clear spanning tree port(s) debug counters. Next Available Option: ■ instance < 0 to 16 > -- Clear spanning tree instance debug counters. (NUMBER) (p. 643) priority ■ spanning-tree [ETHERNET] PORT-LIST priority <0t o1 5> Set port priority (the value is in range of 0-2[...]

  • Página 655

    Enables or disables the PVST protection feature on the port or range of ports specied. The command indicates which ports are not expected to receive any PVST BPDUs. Default: Disabled on all ports reset ■ spanning-tree pending reset Copy active conguration to pending. root-guard ■ [no] spanning-tree [ETHERNET] PORT-LIST root-guard Set port[...]

  • Página 656

    ■ [no] spanning-tree pending instance <1t o1 6> vlan VLAN-ID-RANGE VLAN(s) to add to or to remove from the MST instance 654 © 2009 Hewlett-Packard Development Company, L.P. spanning-tree Command Line Interface Reference Guide[...]

  • Página 657

    stack OVERVIEW Category: config Primary context: Related Commands Usage: [no] stack [no] stack commander ASCII-STR [no] stack join MAC-ADDR [no] stack member INTEGER mac-address MAC-ADDR [password ASCII-STR] [no] stack auto-join [no] stack auto-grab stack transmission-interval <1-300> Description: Congure device to/from a stack - a group o[...]

  • Página 658

    COMMAND DETAILS password (p. 656) join (p. 656) auto-grab (p. 656) transmission-interval (p. 656) mac-address (p. 656) auto-join (p. 656) member (p. 656) commander (p. 656) auto-grab ■ [no] stack auto-grab Congure commander to incorporate candidates auto-join ■ [no] stack auto-join Allow this switch to automatically join a stack commander ?[...]

  • Página 659

    startup-default OVERVIEW manager Category: manager Primary context: show config (page 540) Related Commands show flash (page 552) Usage: startup-default [<primary|secondary>] cong FILENAME Description: Set the default conguration le. A separate conguration le may be set as the default for each software image, or a single con[...]

  • Página 660

    primary -- Primary flash image. ■ ■ secondary -- Secondary flash image. Next Available Option: ■ config < config | config1 > -- Specify configuration file to set as default. (p. 657) 658 © 2009 Hewlett-Packard Development Company, L.P. startup-default Command Line Interface Reference Guide[...]

  • Página 661

    static-mac OVERVIEW config Category: config Primary context: the section called “ static-mac ” (page 594) Related Commands Usage: static-mac <MAC-ADDR> vlan <VLAN-ID> interface <PORT-LIST> Description: Lock down a MAC address to a port on a vlan. Parameters: o MAC-ADDR - MAC address to lock down. o vlan VLAN-ID - VLAN on which[...]

  • Página 662

    static-vlan OVERVIEW config Category: config Primary context: the section called “ vlan ” (page 603) Related Commands the section called “ gvrp ” (page 554) gvrp (page 193) Usage: static-vlan VLAN-ID Description: Transform a dynamic VLAN to a static VLAN. COMMAND STRUCTURE EXAMPLES Example: static-vlan Convert dynamically created VLAN 125 i[...]

  • Página 663

    svlan OVERVIEW Category: config Primary context: qinq (page 409) Related Commands vlan (page 706) show qinq (page 582) show svlans (page 597) Usage: [no] svlan VLAN-ID [...] Description: Add, delete, edit SVLAN conguration or enter a SVLAN context. If an existing 'SVLAN VLAN-ID' is specied you are put into the context for that SVLAN[...]

  • Página 664

    dhcp-bootp -- Configure the interface to use DHCP/Bootp server to acquire parameters. (p. 666) ■ ■ ip-addr -- Interface IP address/mask. (IP-ADDR/mask-LENGTH) (p. 668) ■ svlan VLAN-ID ipv6 -- Configure various IP parameters for the VLAN (p. 668) ■ address -- Set IPv6 parameters for communication within an IP network (p. 664) ■ autoconfig [...]

  • Página 665

    Edge1(cong)# int A1 qinq port-type customer-network Edge1(cong)# svlan 200 Edge1(svlan-200)# untagged A2 Edge1(svlan-200)# exit Edge1(cong)# int A2 qinq port-type customer-network Edge2(cong)# svlan 100 Edge2(svlan-100)# untagged A1 Edge2(svlan-100)# exit Edge2(cong)# int A1 qinq port-type customer-network Edge2(cong)# svlan 200 E[...]

  • Página 666

    Next Available Option: ■ direction < in | out | connection-rate-filter | ... > -- (p. 666) address ■ [no] svlan VLAN-ID ip address Usage: [no] ip address [dhcp-bootp|IP-ADDR/mask-LENGTH] Description: Set IP parameters for communication within an IP network. Each VLAN represents an IP interface having its own unique conguration. The VLA[...]

  • Página 667

    following syntax: ipv6 address 1234:abcd::5678/40 ipv6 address 2001:0db8:1:1:ffff:ffff:ffff:fffe/64 anycast ipv6 address 2001:0db8:0:1::/64 eui-64 Only link-local addreses are congured without PREFIX-LEN as below: ipv6 address FE80:0:0:0:0123:0456:0789:0abc link-local Multiple addresses may be congured on a single VLAN. Next Available Options[...]

  • Página 668

    Automatic address conguration. binary-range ■ svlan VLAN-ID qos dscp <0t o6 3> Specify the DSCP code-point in binary. Range: < 0 to 63 > connection-rate-filter ■ svlan VLAN-ID connection-rate-filter Usage: connection-rate-lter unblock < host SRC-IP-ADDR | SRC-IP-ADDRESS/mask > [no] connection-rate-lter sensitivity <[...]

  • Página 669

    Specify DSCP policy to use. Next Available Options: ■ integer-range < 0 to 63 > -- Specify the DSCP code-point in decimal. (p. 667) ■ binary-range < 0 to 63 > -- Specify the DSCP code-point in binary. (BINARY) (p. 666) ■ well-defined < af11 | af12 | af13 | ... > -- Define mapping between a DSCP (Differentiated-Services Codep[...]

  • Página 670

    Usage: [no] ip ... Description: Congure various IP parameters for the VLAN. The 'ip' command must be followed by a feature-specic keyword. Use 'ip ?' to get a list of all possible options. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. Next Av[...]

  • Página 671

    Next Available Options: ■ anycast -- Address that is assigned to a set of interfaces that typically belong to different nodes (p. 665) ■ eui-64 -- An IPv6 EUI-64 address that can be automatically configured on any interface (p. 667) jumbo ■ [no] svlan VLAN-ID jumbo Usage: [no] jumbo Description: Labels this VLAN as a Jumbo VLAN, allowing you [...]

  • Página 672

    Parameters: o 1-4 - Mirror destination number o NAME-STR - Friendly name associated with the mirror destination number. o ACL-NAME - Standard or Extended Access Control List number. o <in|out|both> direction of the trafc to be monitored. Next Available Option: ■ all < In | Out | Both > -- Monitor all traffic. (p. 665) monitor_mirro[...]

  • Página 673

    protocol-group ■ [no] svlan VLAN-ID protocol PROTOCOL-GROUP Enter a list of protocols for the current VLAN delimited by commas. protocols ■ [no] svlan VLAN-ID protocol < IPX | IPv4 | IPv6 | ... > Set a predened protocol for the current VLAN. Supported Values: ■ IPX -- IPX Protocol Group ■ IPv4 -- IP version 4 Protocol Group ■ IPv[...]

  • Página 674

    Description: Assign ports to current VLAN as tagged. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. unblock ■ svlan VLAN-ID connection-rate-filter unblock Resets a host previously blocked by the connection rate lter Next Available Options: ■ all -- Resets all pr[...]

  • Página 675

    'no qos dscp-map <codepoint>' will remove the settings for the specied codepoint from the running conguration. The priority is set to no-override and the name is deleted (the priority and name can only be removed if no QoS feature is congured to use this DSCP Policy). 'no qos dscp-map <codepoint> name' will [...]

  • Página 676

    ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 674 © 2009 Hewlett-Packard Development Company, L.P. svlan Command Line Interface Reference Guide[...]

  • Página 677

    switch-interconnect OVERVIEW Category: config Primary context: trunk Related Commands Usage:[no] switch-interconnect [ethernet] PORT-LIST <trk1|trk2...trkN> Description: Add or remove a switch-interconnect port. COMMAND STRUCTURE ■ switch-interconnect port-num -- ([ethernet] PORT-NUM) (p. 675) ■ switch-interconnect trk-group < Trk1 | T[...]

  • Página 678

    ■ Trk15 -- Trunk group 15 ■ Trk16 -- Trunk group 16 ■ Trk17 -- Trunk group 17 ■ Trk18 -- Trunk group 18 ■ Trk19 -- Trunk group 19 ■ Trk20 -- Trunk group 20 ■ Trk21 -- Trunk group 21 ■ Trk22 -- Trunk group 22 ■ Trk23 -- Trunk group 23 ■ Trk24 -- Trunk group 24 ■ Trk25 -- Trunk group 25 ■ Trk26 -- Trunk group 26 ■ Trk27 -- T[...]

  • Página 679

    system OVERVIEW Category: config Primary context: Related Commands To change global system parameters COMMAND STRUCTURE ■ [no] system fan-pref-airflow-dir -- Changes the preferred fan airflow direction (p. 677) ■ int < port-to-power | power-to-port > -- (p. 677) COMMAND DETAILS int (p. 677) fan-pref-airflow-dir (p. 677) fan-pref-airflow-d[...]

  • Página 680

    tacacs-server OVERVIEW Accounting Category: config Primary context: show (page 511) Related Commands Usage: [no] tacacs-server host IP-ADDR [key KEY-STR] [no] tacacs-server key KEY-STR tacacs-server timeout <1-255> Description: Congure TACACS+ authentication servers. The rst version of the command adds (or removes, if 'no' is [...]

  • Página 681

    host ■ [no] tacacs-server host IP-ADDR IP address of the server to use. Next Available Option: ■ key -- Encryption key to use with server. (p. 679) key ■ [no] tacacs-server host IP-ADDR key Encryption key to use with server. Next Available Option: ■ key -- (ASCII-STR) (p. 679) ■ tacacs-server host IP-ADDR key KEY ■ [no] tacacs-server ke[...]

  • Página 682

    task-monitor OVERVIEW Category: manager Primary context: Related Commands Usage: [no] task-monitor FEATURE Description: Enable the task monitoring of the specied feature. COMMAND STRUCTURE ■ [no] task-monitor cpu -- Monitor cpu usage by task group. (p. 680) EXAMPLES Example: task-monitor When the task-monitor command is enabled, the show cpu c[...]

  • Página 683

    telnet OVERVIEW Switch Management Category: manager Primary context: Related Commands Usage: telnet <IPV4-ADDR|IPV6-ADDR|HOSTNAME|SWITCH-NUM> Description: Initiate an outbound telnet session to another network device. The destination can be specied using one of the following parameter types: o IPV4-ADDR - IPv4 address of device to telnet t[...]

  • Página 684

    IPv6 address of the device to connect to. SWITCH-NUM ■ telnet NUMBER The stack member number to which to telnet. 682 © 2009 Hewlett-Packard Development Company, L.P. telnet Command Line Interface Reference Guide[...]

  • Página 685

    telnet-server OVERVIEW Switch Management Category: config Primary context: the section called “ console ” (page 543) Related Commands Usage: [no] telnet-server Description: Enable/disable telnet server on the switch. For remote clients to use telnet, the switch must rst be congured for IPv4. By default, telnet access is enabled. Use &apos[...]

  • Página 686

    terminal OVERVIEW Switch Management Category: manager Primary context: the section called “ terminal ” (page 598) Related Commands Usage: terminal [length <2-1000> | width <53-1920>] Description: Set the dimensions of the terminal window. COMMAND STRUCTURE ■ terminal length < 2 to 1000 > -- Set the height of the terminal win[...]

  • Página 687

    tftp OVERVIEW Category: config Primary context: Related Commands Usage: [no] tftp [client|server] Description: Enable/disable TFTP, trivial le transfer protocol. If SFTP is enabled, TFTP will be disabled. If SFTP is to be enabled using SNMP, both TFTP and auto-TFTP MUST rst be disabled. COMMAND STRUCTURE ■ [no] tftp client -- Enable/disable[...]

  • Página 688

    time OVERVIEW Switch Management Category: config Primary context: ip (page 290) Related Commands sntp (page 634) clock (page 86) Usage: time [HH:MM:SS] [MM/DD[/[yy]yy]] [daylight-time-rule <none|alaska|continental-us-and-canada| middle-europe-and-portugal| southern-hemisphere| western-europe|user-dened> [begin-date <MM/DD>] [end-date[...]

  • Página 689

    Example: timesync sntp Select SNTP as the time source and configure it with unicast mode and an SNTP server at 10.28.227.141 with the default server version (3) and default poll interval (720 seconds): ProCurve(cong)# timesync sntp Example: time timezone daylight-time-rule Set the time zone and daylight time rule for Vancouver, Canada: ProCurve([...]

  • Página 690

    The number of minutes your location is West(-) or East(+) of GMT Range: < -720 to 840 > 688 © 2009 Hewlett-Packard Development Company, L.P. time Command Line Interface Reference Guide[...]

  • Página 691

    timesync OVERVIEW Switch Management Category: config Primary context: ip (page 290) Related Commands sntp (page 634) the section called “ timep ” (page 599) the section called “ sntp ” (page 592) Usage: [no] timesync <timep|sntp> Description: Congure the network time protocol. COMMAND STRUCTURE ■ timesync sntp -- Set the time pro[...]

  • Página 692

    traceroute OVERVIEW Switch Management Category: operator Primary context: ping (page 392) Related Commands Usage: traceroute <IP-ADDR|hostname> [minttl <1-255>] [maxttl <1-255>] [timeout <1-120>] [probes <1-5>] [source <IP_ADDR|VLAN-ID>] Description: Trace the IPv4 route to a device on the network. Parameters: o [...]

  • Página 693

    ■ probes <1t o5> -- Number of Probes <1-5>. (p. 692) ■ timeout < 1 to 120 > -- Traceroute timeout in seconds <1-120>. (p. 693) ■ vlan -- Source VLAN. (VLAN-ID) (p. 693) ■ maxttl < 1 to 255 > -- Maximum time to live <1-255>. (p. 692) ■ minttl < 1 to 255 > -- Minimum time to live <1-255>. (p. [...]

  • Página 694

    Next Available Options: ■ minttl < 1 to 255 > -- Minimum time to live <1-255>. (p. 692) ■ maxttl < 1 to 255 > -- Maximum time to live <1-255>. (p. 692) ■ timeout < 1 to 120 > -- Traceroute timeout in seconds <1-120>. (p. 693) ■ probes < 1 to 5 > -- Number of Probes <1-5>. (p. 692) maxttl ■ t[...]

  • Página 695

    ■ traceroute HOST-NAME probes <1t o5> Number of Probes <1-5>. Range: < 1 to 5 > ■ traceroute source VLAN-ID probes <1t o5> Number of Probes <1-5>. Range: < 1 to 5 > ■ traceroute source IP-ADDR probes <1t o5> Number of Probes <1-5>. Range: < 1 to 5 > source ■ traceroute source Source addr[...]

  • Página 696

    ■ probes < 1 to 5 > -- Number of Probes <1-5>. (p. 692) 694 © 2009 Hewlett-Packard Development Company, L.P. traceroute Command Line Interface Reference Guide[...]

  • Página 697

    traceroute6 OVERVIEW Category: operator Primary context: ping (page 392) Related Commands traceroute (page 690) ping6 (page 395) Usage: traceroute6 <IPV6-ADDR|hostname> [minttl <1-255>] [maxttl <1-255>] [timeout <1-120>] [probes <1-5>] Description: Trace the IPv6 route to a device on the network. Parameters: o IPV6-ADD[...]

  • Página 698

    ■ traceroute6 ipv6-addr -- Destination IPv6 adddress. (IPV6-ADDR) (p. 696) ■ maxttl < 1 to 255 > -- Maximum time to live <1-255>. (p. 697) ■ minttl < 1 to 255 > -- Minimum time to live <1-255>. (p. 697) ■ probes <1t o5> -- Number of Probes <1-5>. (p. 698) ■ timeout < 1 to 120 > -- Traceroute timeo[...]

  • Página 699

    Next Available Options: ■ minttl < 1 to 255 > -- Minimum time to live <1-255>. (p. 697) ■ maxttl < 1 to 255 > -- Maximum time to live <1-255>. (p. 697) ■ timeout < 1 to 120 > -- Traceroute timeout in seconds <1-120>. (p. 698) ■ probes < 1 to 5 > -- Number of Probes <1-5>. (p. 698) maxttl ■ t[...]

  • Página 700

    Default: 1 probes ■ traceroute6 IPV6-ADDR probes <1t o5> Number of times a traceroute is performed to locate the IPv6 device at any hop in the route to the specied host before the operation times out. <1-5>. Range: < 1 to 5 > Default: 3 ■ traceroute6 HOST-NAME probes <1t o5> Number of times a traceroute is performed t[...]

  • Página 701

    Next Available Options: ■ minttl < 1 to 255 > -- Minimum time to live <1-255>. (p. 697) ■ maxttl < 1 to 255 > -- Maximum time to live <1-255>. (p. 697) ■ timeout < 1 to 120 > -- Traceroute timeout in seconds <1-120>. (p. 698) ■ probes < 1 to 5 > -- Number of Probes <1-5>. (p. 698) 699 © 2009 [...]

  • Página 702

    trunk OVERVIEW Category: config Primary context: switch-interconnect (page 675) Related Commands Usage: trunk [ethernet] PORT-LIST <trk1|trk2...trkN> [trunk|lacp] no trunk [ethernet] PORT-LIST Description: Add or remove a switch port from a port trunk. Each port on the switch (up to 8 ports total) can be made a member of a port trunk. The &ap[...]

  • Página 703

    EXAMPLES Example: trunk with dt-lacp Option for Distributed Trunking Configure the trunk ports using the trunk command with the dt-lacp option. The trunk groups must be identical in both switches, for example, both the Local and Remote switch trunks are configured as trk10 with the dt-lacp option. ProCurve Switch Local(cong)# trunk a9-a10 trk10 [...]

  • Página 704

    ■ Trk24 -- Trunk group 24 ■ Trk25 -- Trunk group 25 ■ Trk26 -- Trunk group 26 ■ Trk27 -- Trunk group 27 ■ Trk28 -- Trunk group 28 ■ Trk29 -- Trunk group 29 ■ Trk30 -- Trunk group 30 ■ Trk31 -- Trunk group 31 ■ Trk32 -- Trunk group 32 ■ Trk33 -- Trunk group 33 ■ Trk34 -- Trunk group 34 ■ Trk35 -- Trunk group 35 ■ Trk36 -- T[...]

  • Página 705

    update OVERVIEW Switch Management Category: manager Primary context: Related Commands Usage: update Description: Enter Monitor ROM Console. COMMAND STRUCTURE 703 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 706

    upgrade-software OVERVIEW Category: manager Primary context: Related Commands Usage: upgrade-software SOFTWARE-KEY Description: Enter a key to upgrade system software and enable advanced features. COMMAND STRUCTURE 704 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 707

    virus-throttle OVERVIEW Troubleshooting Category: config Primary context: connection-rate-filter (page 90) Related Commands Usage: [no] virus-throttle Description: To congure virus throttling, please use the 'connection-rate-lter' command. COMMAND STRUCTURE 705 © 2009 Hewlett-Packard Development Company, L.P.[...]

  • Página 708

    vlan OVERVIEW VLANs Category: config Primary context: show vlans (page 607) Related Commands ip (page 290) ipv6 (page 313) router (page 471) mirror-port (page 381) Usage: [no] vlan VLAN-ID [...] Description: Add, delete, edit VLAN conguration or enter a VLAN context. If an existing VLAN-ID is specied you are put into the context for that VLAN[...]

  • Página 709

    udp -- Add or remove a UDP server address for the VLAN (p. 749) ■ ■ ip-addr -- IP address of the protocol server. (IP-ADDR) (p. 729) ■ port-name < dns | ntp | netbios-ns | ... > -- (NUMBER) (p. 741) ■ port-num -- UDP port number of the server. (TCP/UDP-PORT) (p. 741) ■ helper-address -- Add or remove a DHCP server IP address for the[...]

  • Página 710

    chain-name -- Specify key chain to use for MD5 authentication. (ASCII-STR) (p. 720) ■ ■ passive -- Configures an ospf interface as passive. (p. 739) ■ priority < 0 to 255 > -- Set priority of this router as a designated router. (p. 742) ■ retransmit-interval < 1 to 3600 > -- Set retransmit interval in seconds; the default is 5. [...]

  • Página 711

    ■ max-graft-retries <1t o1 0> -- Set the maximum number of times this router will resend a Graft on this interface (p. 734) ■ override-interval < 500 to 6000 > -- Set the value inserted into the Override Interval field of a LAN Prune Delay option on this interface (p. 739) ■ propagation-delay < 250 to 2000 > -- Set the value[...]

  • Página 712

    ■ receive < V1-only | V2-only | V1-or-V2 | ... > -- Define RIP version for incoming packets. (p. 745) ■ rip-compatible < V1-only | V2-only | V1-or-V2 > -- Define RIP version for incoming and outgoing packets. (p. 747) ■ send < disabled | V1-only | V1-compatible-V2 | ... > -- Define RIP version for outgoing packets. (p. 747) [...]

  • Página 713

    ns-interval -- Configures the neighbor discovery time between neighbor solicitation requests sent for an unresolved destination, or between duplicate address detection neighbor solicitation requests (p. 737) ■ ■ number < 1000 to 3600000 > -- Configures the neighbor discovery time between neighbor solicitation requests sent for an unresolv[...]

  • Página 714

    ■ lowest -- Dynamically determine lowest IP address. (p. 733) ■ priority < 1 to 255 > -- Configure priority for the virtual router instance (p. 742) ■ track -- Enable/disable tracking for VR (p. 748) ■ interface -- Enable/disable tracking of logical ports for VR (p. 728) ■ lport-list -- Enable/disable tracking of specified logical p[...]

  • Página 715

    nd (p. 737) forward (p. 724) voice (p. 750) no-default (p. 737) forward-protocol (p. 724) vrid (p. 751) ns-interval (p. 737) full (p. 725) vrrp (p. 751) number (p. 738) graft-retry-interval (p. 725) well-defined (p. 752) ospf (p. 738) hello-delay (p. 725) with-monitoring (p. 753) override-interval (p. 739) hello-interval (p. 725) owner (p. 739) acc[...]

  • Página 716

    o dhcp-bootp - The switch attempts to get its conguration from a DHCP/Bootp server. o IP-ADDR/mask-LENGTH - Assign an IP address to the switch or VLAN. The IP-ADDR/mask-LENGTH may be specied in two ways using the following syntax: ip address 192.32.36.87/24 ip address 192.32.36.87 255.255.255.0 Both of the statements above would have the same[...]

  • Página 717

    Usage: [no] ip irdp <multicast|broadcast> Description: Specify the destination address to be used for router advertisements. It has to be either multicast or broadcast. If the value of this object is 'multicast' (the default), router advertisements will be sent to the all-hosts multicast address, 224.0.0.1. If the value of this obje[...]

  • Página 718

    ■ rip-compatible < V1-only | V2-only | V1-or-V2 > -- Define RIP version for incoming and outgoing packets. (p. 747) ■ vlan VLAN-ID connection-rate-filter unblock all Resets all previously blocked by the connection rate lter ■ vlan VLAN-ID monitor all < In | Out | Both > Monitor all trafc. Supported Values: ■ In -- Monitor [...]

  • Página 719

    ■ vlan VLAN-ID ip ospf all area Specify an OSPF area. Next Available Options: ■ area-id -- Single integer or IP address style dotted decimal. (OSPF-AREA-ID) (p. 717) ■ backbone -- The backbone area (the same as 0.0.0.0). (p. 719) area-id ■ vlan VLAN-ID ip ospf area OSPF-AREA-ID Single integer or IP address style dotted decimal. ■ vlan VLA[...]

  • Página 720

    OSPF authentication key (maximum 8 characters). ■ vlan VLAN-ID ip ospf all authentication-key Set simple authentication method and key. Next Available Option: ■ authentication-key -- OSPF authentication key (maximum 8 characters). (OCTET-STR) (p. 717) ■ vlan VLAN-ID ip ospf all authentication-key OCTET-STR OSPF authentication key (maximum 8 c[...]

  • Página 721

    ■ none -- Do not use authentication. ■ text -- Use simple password. auth-key-text ■ vlan VLAN-ID ip rip authentication-key OCTET-STR Set RIP authentication key (maximum 16 characters). ■ vlan VLAN-ID ip rip IP-ADDR authentication-key OCTET-STR Set RIP authentication key (maximum 16 characters). ■ vlan VLAN-ID ip rip all authentication-key[...]

  • Página 722

    ■ vlan VLAN-ID ip ospf all area backbone The backbone area (the same as 0.0.0.0). backup ■ vlan VLAN-ID vrrp vrid < 1 to 255 > backup Usage: vrrp vrid <VRID> backup Description: Designate the virtual router instance as a Backup. There is no default value. binary-range ■ vlan VLAN-ID qos dscp <0t o6 3> Specify the DSCP code-p[...]

  • Página 723

    ■ vlan VLAN-ID ip ospf IP-ADDR md5-auth-key-chain CHAIN-NAME Specify key chain to use for MD5 authentication. ■ vlan VLAN-ID ip ospf all md5-auth-key-chain CHAIN-NAME Specify key chain to use for MD5 authentication. connection-rate-filter ■ vlan VLAN-ID connection-rate-filter Usage: connection-rate-lter unblock < host SRC-IP-ADDR | SRC-[...]

  • Página 724

    dhcp ■ [no] vlan VLAN-ID ipv6 address dhcp Congure a DHCPv6 client. Next Available Option: ■ full -- Obtain IPv6 address & Configuration information from DHCPv6 server. (p. 725) dhcp-bootp ■ vlan VLAN-ID ip address dhcp-bootp Congure the interface to use DHCP/Bootp server to acquire parameters. dhcp-snooping ■ [no] vlan VLAN-ID dh[...]

  • Página 725

    enable ■ [no] vlan VLAN-ID ipv6 enable Enable IPv6 on an interface and congures an automatically generated link-local addr. ■ [no] vlan VLAN-ID vrrp vrid < 1 to 255 > enable Usage: [no] vrrp vrid <VRID> enable Description: Enable/disable operation of the virtual router instance. The default value is 'disabled'. eui-64 ?[...]

  • Página 726

    Usage: [no] ipv6 mld fastleave < port-list > Description: Enables MLD fast-leaves on the specied ports in the selected VLAN. The no form of the command disables MLD fast-leave on the specied ports in the selected VLAN. forbid ■ [no] vlan VLAN-ID forbid [ETHERNET] PORT-LIST Usage: [no] forbid [ethernet] PORT-LIST Description: Prevent p[...]

  • Página 727

    Usage: [no] ip forward-protocol udp IP-ADDR PORT-NUM|PORT-NAME Description: Add or remove a UDP server address for the VLAN. The broadcast packets received by the switch on this VLAN are to be forwarded to the specied application server. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN[...]

  • Página 728

    ■ vlan VLAN-ID ip ospf IP-ADDR hello-interval < 1 to 65535 > Set hello interval in seconds; the default is 10. Range: < 1 to 65535 > ■ vlan VLAN-ID ip ospf all hello-interval < 1 to 65535 > Set hello interval in seconds; the default is 10. Range: < 1 to 65535 > ■ vlan VLAN-ID ip pim-dense hello-interval < 5 to 300 &[...]

  • Página 729

    host ■ vlan VLAN-ID connection-rate-filter unblock host IP-ADDR Match packets from the specied IP address. igmp ■ [no] vlan VLAN-ID ip igmp Usage: [no] ip igmp [...] Description: Enable/disable/congure IP Multicast Group Protocol (IGMP) feature on a VLAN. This command enables, disables or congures the IGMP feature for IGMP communicatio[...]

  • Página 730

    in ■ [no] vlan VLAN-ID service-policy SERVICE-POLICY in Apply policy on inbound packets. integer-range ■ vlan VLAN-ID qos dscp <0t o6 3> Specify the DSCP code-point in decimal. Range: < 0 to 63 > interface ■ [no] vlan VLAN-ID vrrp vrid < 1 to 255 > track interface Usage: [no] vrrp vrid <VRID> track interface <LPORT-[...]

  • Página 731

    Next Available Options: ■ access-group -- Apply the specified access control list on this VLAN interface (ASCII-STR) (p. 713) ■ address -- Set IP parameters for communication within an IP network (p. 713) ■ proxy-arp -- Enable/disable proxy ARP (p. 744) ■ local-proxy-arp -- Enable/disable local proxy ARP (p. 733) ■ bootp-gateway -- Add or[...]

  • Página 732

    ■ [no] vlan VLAN-ID ip rip IP-ADDR Specify the IP address the request is for. Next Available Options: ■ authentication-type < none | text > -- Set authentication type used on this interface. (p. 718) ■ authentication-key -- Set RIP authentication key (maximum 16 characters). (p. 717) ■ metric < 1 to 15 > -- Set metric for this i[...]

  • Página 733

    ■ vlan VLAN-ID vrrp vrid < 1 to 255 > primary-ip-address IP-ADDR Specify IP address. ip-recv-mac-address ■ [no] vlan VLAN-ID ip-recv-mac-address Usage: [no] ip-recv-mac-address <macaddress> interval <1-255> Description: Associates a L3-mac-address with a VLAN. To associate L3-Mac-Address for a VLAN. ip-recv-mac-address <mac[...]

  • Página 734

    Next Available Option: ■ link-local -- Configure a link-local IPv6 address. (p. 733) ipv6-addr/mask ■ [no] vlan VLAN-ID ipv6 address IPV6-ADDR/PREFIX-LEN Congure IPv6 address represented in CIDR notation. Next Available Options: ■ anycast -- Address that is assigned to a set of interfaces that typically belong to different nodes (p. 716) ?[...]

  • Página 735

    lan-prune-delay ■ [no] vlan VLAN-ID ip pim-dense lan-prune-delay Usage: [no] ip pim-dense lan-prune-delay Description: Turn on/off the LAN Prune Delay Option on this interface. Default is 'on'. ■ [no] vlan VLAN-ID ip pim-sparse lan-prune-delay Usage: [no] ip pim-sparse lan-prune-delay Description: Turn on/off the LAN Prune Delay Optio[...]

  • Página 736

    Usage: [no] ip irdp maxadvertinterval <4-1800> Description: Set the maximum time (in seconds) allowed between sending unsolicited router advertisements. Range: < 4 to 1800 > max-graft-retries ■ vlan VLAN-ID ip pim-dense max-graft-retries <1t o1 0> Usage: ip pim-dense max-graft-retries <1-10> Description: Set the maximum nu[...]

  • Página 737

    minadvertinterval ■ vlan VLAN-ID ip irdp minadvertinterval < 3 to 1800 > Usage: [no] ip irdp minadvertinterval <3-1800> Description: Set the minimum time (in seconds) allowed between sending unsolicited router advertisements. Must be no greater than the maximum time between sending unsolicited router advertisements. Range: < 3 to 1[...]

  • Página 738

    ■ forward -- Instruct the device to forward incoming multicast packets received on the specified ports ([ethernet] PORT-LIST) (p. 724) ■ fastleave -- Enables MLD fast-leaves on the specified ports in the selected VLAN ([ethernet] PORT-LIST) (p. 723) ■ forcedfastleave -- Enables MLD Forced Fast-Leave on the specified ports in the selected VLAN[...]

  • Página 739

    name ■ vlan VLAN-ID name NAME Usage: name ASCII-STR Description: Set the VLAN's name. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. nbr-timeout ■ vlan VLAN-ID ip pim-sparse nbr-timeout < 60 to 8000 > Usage: ip pim-sparse nbr-timeout <60-8000> Desc[...]

  • Página 740

    solicitation requests sent for an unresolved destination, or between duplicate address detection neighbor solicitation requests. When set to a non-default value, this is included in router advertisements as the ra-retranstime value. Next Available Option: ■ number < 1000 to 3600000 > -- Configures the neighbor discovery time between neighbo[...]

  • Página 741

    ■ authentication -- Disable authentication. (p. 717) ■ md5-auth-key-chain -- Set MD5 authentication method and key chain. (p. 734) ■ cost < 1 to 65535 > -- Set metric of this interface. (p. 721) ■ dead-interval < 1 to 65535 > -- Set dead interval in seconds; the default is 40. (p. 721) ■ hello-interval < 1 to 65535 > -- [...]

  • Página 742

    Usage: [no] ip pim-dense [...] Description: Enable/disable/congure PIM-DM protocol on the VLAN interface. Use direct and 'no' versions of the command to enable/disable PIM-DM on the interface. Use 'ip pim-dense ?' to get the list of all conguration options. This command can be used in the VLAN context or in the global cont[...]

  • Página 743

    poison-reverse ■ [no] vlan VLAN-ID ip rip poison-reverse Enable/disable poison reverse on this interface. ■ [no] vlan VLAN-ID ip rip IP-ADDR poison-reverse Enable/disable poison reverse on this interface. ■ [no] vlan VLAN-ID ip rip all poison-reverse Enable/disable poison reverse on this interface. port-name ■ [no] vlan VLAN-ID ip forward-p[...]

  • Página 744

    Range: < 1 to 600 > preempt-mode ■ [no] vlan VLAN-ID vrrp vrid < 1 to 255 > preempt-mode Usage: [no] vrrp vrid <VRID> preempt-mode Description: Enable/disable preempt mode for the virtual router instance. The default value is 'enabled'. preference ■ vlan VLAN-ID ip irdp preference Usage: [no] ip irdp preference <n[...]

  • Página 745

    Range: < 0 to 255 > ■ vlan VLAN-ID qos priority <0|1|2|. . .> Specify priority to use. Supported Values: ■ 0 ■ 1 ■ 2 ■ 3 ■ 4 ■ 5 ■ 6 ■ 7 ■ vlan VLAN-ID vrrp vrid < 1 to 255 > priority < 1 to 255 > Usage: vrrp vrid <VRID> priority <1-255> Description: Congure priority for the virtual router [...]

  • Página 746

    Enter a list of protocols for the current VLAN delimited by commas. protocols ■ [no] vlan VLAN-ID protocol < IPX | IPv4 | IPv6 | ... > Set a predened protocol for the current VLAN. Supported Values: ■ IPX -- IPX Protocol Group ■ IPv4 -- IP version 4 Protocol Group ■ IPv6 -- IP version 6 Protocol Group ■ ARP -- Address Resolution [...]

  • Página 747

    enabled, the device cannot become Querier for the subnet unless the VLAN has an IP Address (use the 'show ip' command to determine this). Each subnet must have at least one IGMP Querier-capable device in order for IGMP to function properly. The querier interval setting modies the time (in seconds) between IGMP queries. Next Available O[...]

  • Página 748

    Supported Values: ■ V1-only -- Accept RIP version 1 updates only. ■ V2-only -- Accept RIP version 2 updates only. ■ V1-or-V2 -- Accept both RIP 1 and RIP 2 updates. ■ disabled -- Do not accept RIP updates. ■ vlan VLAN-ID ip rip all receive < V1-only | V2-only | V1-or-V2 | ... > Dene RIP version for incoming packets. Supported Val[...]

  • Página 749

    ■ ip-addr -- Specify the IP address the request is for. (IP-ADDR) (p. 729) ■ all -- Process the request for all IP addresses. (p. 715) rip-compatible ■ vlan VLAN-ID ip rip < V1-only | V2-only | V1-or-V2 > Dene RIP version for incoming and outgoing packets. Supported Values: ■ V1-only -- Use RIP version 1 only. ■ V2-only -- Use RI[...]

  • Página 750

    ■ V1-only -- Send RIP version 1 updates only. ■ V1-compatible-V2 -- Send RIP 2 updates using RFC 1058 route subsumption. ■ V2-only -- Send RIP version 2 updates only. service-policy ■ [no] vlan VLAN-ID service-policy SERVICE-POLICY Usage: [no] service-policy <name> in Description: Apply the QoS/Mirror policy on the vlan. Parameters: o[...]

  • Página 751

    transit-delay ■ vlan VLAN-ID ip ospf transit-delay < 1 to 3600 > Set transit delay in seconds; the default is 1. Range: < 1 to 3600 > ■ vlan VLAN-ID ip ospf IP-ADDR transit-delay < 1 to 3600 > Set transit delay in seconds; the default is 1. Range: < 1 to 3600 > ■ vlan VLAN-ID ip ospf all transit-delay < 1 to 3600 &g[...]

  • Página 752

    Next Available Options: ■ all -- Resets all previously blocked by the connection rate filter (p. 715) ■ host -- Match packets from the specified IP address. (IP-ADDR) (p. 727) ■ src-ip -- Match packets from the specified subnet. (IP-ADDR/mask-LENGTH) (p. 748) untagged ■ [no] vlan VLAN-ID untagged [ETHERNET] PORT-LIST Usage: [no] untagged [e[...]

  • Página 753

    Usage: [no] voice Description: Labels this VLAN as a Voice VLAN, allowing you to separate, prioritize, and authenticate voice trafc moving through your network. This is a VLAN context command. It can be called directly from the VLAN context or follow the 'vlan VLAN-ID' command. vrid ■ [no] vlan VLAN-ID vrrp vrid < 1 to 255 > Us[...]

  • Página 754

    well-defined ■ vlan VLAN-ID qos dscp < af11 | af12 | af13 | ... > Usage: [no] qos dscp-map <0|1...63|af11|af12|af13|af21|af22|af23|af31|af32| af33|af41|af42|af43|ef|cs0..cs7|000000|000001...111111>| [priority <<0-7>|no-override>] [name <str>] Description: Dene mapping between a DSCP (Differentiated-Services Codepo[...]

  • Página 755

    ■ af12 ■ af13 ■ af21 ■ af22 ■ af23 ■ af31 ■ af32 ■ af33 ■ af41 ■ af42 ■ af43 ■ ef ■ cs0 ■ cs1 ■ cs2 ■ cs3 ■ cs4 ■ cs5 ■ cs6 ■ cs7 with-monitoring ■ vlan VLAN-ID vrrp vrid < 1 to 255 > failover with-monitoring Usage: vrrp vrid <VRID> failover with-monitoring Description: Trigger VR to failover an[...]

  • Página 756

    walkMIB OVERVIEW SNMP Category: manager Primary context: getMIB (page 192) Related Commands setMIB (page 504) Usage: walkmib OBJECT-STR [OBJECT-STR ...] Description: Walk through all instances of the object specied displaying the MIB object names, instances and values. COMMAND STRUCTURE ■ walkMIB object -- The mib object to start from. (ASCII-[...]

  • Página 757

    web-management OVERVIEW Switch Management Category: config Primary context: show (page 511) Related Commands crypto (page 138) crypto (page 138) Usage: [no] web-management [management-url] URL [support-url] URL [<plaintext | ssl [<TCP-PORT>] >] Description: Enable/disable the device web server. Parameters: o management-url - Specify URL[...]

  • Página 758

    management-url ■ [no] web-management management-url Specify URL for web interface [?] button. Next Available Option: ■ management-url -- Specify URL for web interface [?] button. (ASCII-STR) (p. 756) ■ web-management management-url MANAGEMENT-URL Specify URL for web interface [?] button. plaintext ■ [no] web-management plaintext Enable/disa[...]

  • Página 759

    wireless-services OVERVIEW Category: config Primary context: Related Commands Usage: wireless-services <SLOT-ID> [<reload|shutdown>] Description: Congure parameters for the wireless-services module or change the module's state (reload or shutdown). Parameters: o <SLOT-ID> - Congure parameters for the wireless-services m[...]

  • Página 760

    Reboot wireless-services module. shutdown ■ wireless-services SLOT-ID shutdown Shutdown (halt) the wireless-services module. tech ■ wireless-services SLOT-ID tech Enter the conguration context for the wireless-services module. wireless-services ■ wireless-services SLOT-ID Usage: wireless-services <SLOT-ID> [<reload|shutdown>] D[...]

  • Página 761

    wireless-services OVERVIEW Category: manager Primary context: Related Commands Usage: wireless-services <SLOT-ID> <reload|shutdown> Description: Display parameters for the wireless-services module or change the module's state (reload or shutdown). NOTES Multiple Contexts This command also is available in the config and operator con[...]

  • Página 762

    wireless-services OVERVIEW Category: operator Primary context: Related Commands Usage: wireless-services SLOT-ID Description: Display parameters for the wireless-services module. Parameters: o <slotID> - Device slot identier for the wireless-services module. NOTES Multiple Contexts This command also is available in the config and manager c[...]

  • Página 763

    write OVERVIEW Switch Management Category: manager Primary context: the section called “ config ” (page 540) Related Commands Usage: write <memory|terminal> Description: View or save the running conguration of the switch. write terminal - displays the running conguration of the switch on the terminal write memory - saves the running[...]

  • Página 764

    [...]

  • Página 765

    Pr oC ur v e 5400zl S w itc hes Inst allation an d Getting S tart d Gui de T echnology for bet ter business outcom es T o l e ar n mor e , visit ww w .hp .com/go/p r ocurv e / © Cop yri ght 2009 Hewle tt-P ack ard De velopmen t Compan y , L.P . T he inf ormati on contained here in is sub ject to change withou t notice. T he on l y warran ties for [...]