Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
VS-2024-F
CLI User Manual
Systems Inc
on www
Contents
CHAPTER 1:
1. INTRODUCTION _____________________________________________ 11
1.1 PURPOSE ...................................................................................................11
1.2 SCOPE .......................................................................................................11
1.3 DOCUMENT CONVENTIONS ..........................................................................11
1.4 KEY CONVENTIONS .....................................................................................12
1.4.1 Keyboard shortcuts ................................................................................12
1.4.2 Others ....................................................................................................12
CHAPTER 2:
CHAPTER 3:
CHAPTER 4:
VS-2024-F
4.5
4.6
4.7
4.8
4.9
4.10
4.11
4.12
4.13
4.14
4.15
4.16
4.17
4.18
4.19
4.20
4.21
4.22
4.23
4.24
CHAPTER 5:
5.36
CHAPTER 6:
CHAPTER 7:
7. LA ________________________________________________________ 146
7.1 SET PORT-CHANNEL ..................................................................................148
7.2 CHANNEL-PROTOCOL ................................................................................149
7.3 LACP SYSTEM-PRIORITY ............................................................................150
7.4 LACP SYSTEM-IDENTIFIER ..........................................................................151
7.5 PORT-CHANNEL LOAD-BALANCE .................................................................152
7.6 LACP PORT-PRIORITY ................................................................................154
7.7 LACP PORT-IDENTIFIER ..............................................................................155
7.8 CHANNEL-GROUP ......................................................................................156
7.9 LACP WAIT-TIME ........................................................................................157
7.10 LACP TIMEOUT ..........................................................................................158
7.11 LACP RATE ...............................................................................................159
7.12 LACP ........................................................................................................160
7.13 DEFAULT PORT..........................................................................................161
7.14 PORT-CHANNEL MAX-PORTS ......................................................................162
7.15 SHUTDOWN PORT-CHANNEL .......................................................................163
7.16 DEBUG LACP .............................................................................................164
7.17 DEBUG ETHERCHANNEL .............................................................................165
7.18 SHOW ETHERCHANNEL ..............................................................................166
7.19 SHOW ETHERCHANNEL - REDUNDANCY ......................................................172
7.20 SHOW INTERFACES ...................................................................................174
7.21 SHOW LACP ..............................................................................................177
CHAPTER 8:
VS-2024-F
8.25
8.26
8.27
8.28
8.29
8.30
8.31
8.32
8.33
CHAPTER 9:
9.47
9.48
9.49
9.50
9.51
9.52
9.53
9.54
9.55
9.56
9.57
9.58
9.59
9.60
9.61
9.62
9.63
9.64
9.65
9.66
9.67
9.68
9.69
9.70
9.71
9.72
9.73
9.74
9.75
9.76
9.77
9.78
9.79
9.80
9.81
9.82
9.83
9.84
9.85
9.86
CHAPTER 10:
VS-2024-F
10.16
10.17
10.18
10.19
10.20
10.21
10.22
10.23
10.24
10.25
10.26
10.27
10.28
10.29
10.30
10.31
10.32
10.33
10.34
10.35
10.36
10.37
10.38
10.39
10.40
10.41
10.42
10.43
10.44
CHAPTER 11:
11.27
11.28
11.29
11.30
11.31
11.32
CHAPTER 12:
Figures
Figure 2-1: Command Modes Access Path ................................................................................................. 19
Chapter
1
1.Introduction
1.1 Purpose
Datacom Systems Inc is a pre-integrated OEM ready software for managed Layer2/Layer 3 switches,
which performs switching between Ethernet ports at wire speed. Datacom Systems Inc provides the
basic bridging functionality and also offers advanced features such as link aggregation, GVRP/GMRP,
IGMP Snooping and Network Access Control.
This document describes in detail the CLI commands that are specific to xCAT target. It is intended to be
a reference manual for users and system administrators who will configure Datacom Systems Inc
through the CLI interface.
1.2 Scope
The scope of this document is limited to Datacom Systems Inc release 5.0.0.0. This document details all
the Marvell xCAT based CLI commands provided by the Datacom Systems Inc software.
Elements in (< >) indicate the field required as input along with a CLI command, for example, <
integer (100-1000)>.
Text in {} refers to either-or group for the tokens given inside separated by a | symbol.
Outputs and messages for CLI commands are given in Courier New 10 regular.
11
VS-2024-F
The no form of the command resets a particular configuration to its default value or revokes the effect.
This is explicitly explained in the description of the commands for which it is applicable.
Any action that can change the switch configuration, any conditionals and requirements for a
command and any information associated with significant details and functionality of command is
listed using the
symbol.
Datacom Systems Inc is available in three different packages, namely, Workgroup, Enterprise and
Metro1. The parameters specific for a particular package are indicated along with the description of
the parameter itself.
Down Arrow
Ctrl + C
Backspace
/ Ctrl + H
TAB
Left Arrow /
Right Arrow
1.4.2 Others
'q' - exits the output display if display is more than one page and returns to the ISS prompt
"show history"
Refer ISS Product Specification Document for a detailed description of the package.
12
Chapter
2
2.Command Line Interface
This section describes the configuration of Datacom Systems Inc using the Command Line Interface.
The Command Line Interface (CLI) can be used to configure the Intelligent Switch Solution from a console
attached to the serial port of the switch or from a remote terminal using TELNET.
The Datacom Systems Inc CLI supports a simple login authentication mechanism. The authentication is
based on a user name and password provided by the user during login. The user "root" is created by
default with password "admin123".
When Datacom Systems Inc is started, the user name and password has to be given at the login prompt
to access the CLI shell:
Datacom Systems Inc. Intelligent Switch Solution
ISS Login: guest
Password: ********
iss#
The "user-exec" mode is now available to the user. CLI Command Modes provide a detailed description of
the various modes available for ISS.
When Datacom Systems Inc. ISS-Chassis is started, the user name and password has to be given
at the login prompt to access the CLI shell:
IDatacom Systems Inc. Intelligent Switch Solution
ISS Login: chassisuser
Password: ********
iss-boot>
CLI USER MANUAL
DATACOM SYSTEMS CONFIDENTIAL
13
VS-2024-F
CLI commands need not be fully typed. The abbreviated forms of CLI commands are also
accepted by the Datacom Systems Inc CLI. For example, commands like " show ip global
config" can be typed as "sh ip gl co".
CLI commands will be successful only if the dependencies are satisfied for a particular
command that is issued. Appropriate error messages will be displayed, if the dependencies are
not satisfied
Note: The ethernet type of an interface is determined during System Startup. While
configuring interface-specific parameters, its ethernet type needs to be specified
correctly. A fast ethernet interface cannot be configured as a gigabit-ethernet interface
and vice-versa.
14
Command Mode
Access Method
Prompt
iss>
Exit method
User EXEC
Privileged EXEC
iss#
Global Configuration
iss(config)#
Interface Configuration
The Global
Configuration mode
command interface
<interfacetype><interfaceid> is used to enter
the Interface
configuration mode.
iss(configif)#
Config-VLAN
The global
configuration mode
command vlan
vlan-id, is used to
enter the Config-VLAN
mode.
iss(configvlan)#
Command Mode
Access Method
Prompt
Exit method
command is used.
Line Configuration
The global
configuration mode
command line, is
used to enter the Line
Configuration mode.
iss(configline)#
Redundancy
Configuration
The global
configuration mode
command
redundancy, is used
to enter the
Redundancy
Configuration mode.
iss(configr)#
Boot Configuration
iss-boot>
The reload
command is used to
restart the switch.
15
VS-2024-F
2.10.1
The class-map global configuration command creates a class map to be used for matching the packets to
the class whose index is specified and to enter the class-map configuration mode The Global
16
configuration mode command class-map <short(1-65535)> is used to enter the DiffSrv ClassMap
Configuration mode and. the prompt seen at this mode is iss(config-cmap)#.
To return to the global configuration mode the exit command is used.
2.10.2
In the Policy-Map Configuration mode the user can create or modify a policy map.
The Global configuration mode command policy-map <short(1-65535)> is used to enter the DiffSrv
PolicyMap Configuration mode and the prompt seen at this mode is iss(config-pmap)#.
To return to the global configuration mode the exit command is used.
2.10.3
The Policy-Map Class Configuration command defines a traffic classification for the policy to act on. The
class-map-num that is specified in the policy map ties the characteristics for that class and its match
criteria as configured by using the class-map global configuration command to the class map. Once the
class command is entered, the switch enters policy-map class configuration mode.
The DiffSrv Policy mode command policy-map <short(1-65535)> is used to enter the DiffSrv
Policy-Map Class Configuration mode and. the prompt seen at this mode is iss(config-pmap-c)#.
To return to the global configuration mode the exit command is used.
2.10.4
This mode is used to configure the network pool / host configurations of a subnet pool.
The Global configuration mode command ip dhcp pool <integer(1-2147483647)> creates a
DHCP server address pool and places the user in DHCP pool configuration mode. The prompt seen at
this mode is iss(dhcp-config)#.
To return to the global configuration mode the exit command is used.
2.10.5
Standard access lists create filters based on IP address and network mask only (L3 filters only).
The Global configuration mode command ip access-list standard <(1-1000) creates IP ACLs
and is used to enter the ACL Standard Access List Configuration mode. The prompt seen at this mode is
iss(config-std-nacl)#.
To return to the global configuration mode the exit command is used.
2.10.6
The Extended Access lists enables to specify filters based on the type of protocol, range of TCP/UDP
ports as well as IP address and network mask (Layer 4 filters).
The Global configuration mode command ip access-list extended <(1001-65535)> is used to
enter the ACL Extended Access List Configuration mode and the prompt seen at this mode is
iss(config-ext-nacl)#.
To return to the global configuration mode the exit command is used.
CLI USER MANUAL
DATACOM SYSTEMS CONFIDENTIAL
17
VS-2024-F
2.10.7
The MAC access-list global configuration command creates Layer 2 MAC ACLs, and returns the MACAccess list configuration mode to the user.
The Global configuration mode command mac access-list extended <(1-65535)> is used to
enter the ACL MAC Configuration mode and the prompt seen at this mode is iss(config-extmacl)#.
To return to the global configuration mode the exit command is used.
18
Privileged Mode
Prompt: iss#
Line Configuration
Prompt: iss(dhcp-config)#
DiffSrv ClassMap
Configuration
DiffSrv Policy-Map
Configuration
Prompt: iss(config-pmap)#
Prompt: iss(config-cmap)#
Interface Configuration
Mode
Prompt: iss (config-if)#
Config-VLAN
Prompt: iss(config-pmap-c)#
Prompt: iss(config-std-nacl)#
Prompt: iss(config-vlan)#
Redundancy Configuration
Prompt: iss(config-r)#
Prompt: iss(config-ext-nacl)#
19
Chapter
3
3.DiffServ (Differentiated Services)
DiffServ (Differentiated Services) is an architecture for providing different types or levels of service for
network traffic. One key characteristic of Diffserv is that flows are aggregated in the network, so that core
routers only need to distinguish a comparably small number of aggregated flows, even if those flows
contain thousands or millions of individual flows.
Differentiated services are intended to provide a framework and building blocks to enable deployment of
scalable service discrimination in the Internet. The differentiated services approach aims to speed
deployment by separating the architecture into two major components, one of which is fairly wellunderstood and the other of which is just beginning to be understood. In this, we are guided by the original
design of the Internet where the decision was made to separate the forwarding and routing components.
Packet forwarding is the relatively simple task that needs to be performed on a per-packet basis as
quickly as possible. Forwarding uses the packet header to find an entry in a routing table that determines
the packet's output interface. Routing sets the entries in that table and may need to reflect a range of
transit and other policies as well as to keep track of route failures. Routing tables are maintained as a
background process to the forwarding task.
The list of CLI commands for the configuration of DiffServ is as follows:
set qos
class-map
policy-map
match
class
set cos
shutdown qos
traffic class
21
VS-2024-F
show policy-map
show class-map
22
Syntax
Description
enable
disable
Mode
Package
Defaults
disable
Example
Related Commands
23
VS-2024-F
3.2 class-map
This command creates a class map that is meant to be used for matching the packets to the class whose
index is specified. This command is also used to enter the class-map configuration mode. The no form of
this command is used to delete an existing class map and to return to global configuration mode.
class-map <class-map-number(1-65535)>
no class-map <class-map-number(1-65535)>
Syntax
Description
class-map-number
Mode
Package
Example
iss(config)# class-map 5
The class-map command and its subcommands are used to define packet
classification, marking, and aggregate policing as part of a globally named
service policy applied on a per-interface basis.
Related Command
24
3.3 policy-map
This command is used to enter the policy-map configuration mode. In the policy-map configuration mode
the user can create or modify a policy map. The no form of this command deletes an existing policy map
and returns to the global configuration mode.
policy-map <policy-map-number(1-65535)>
no policy-map <policy-map-number(1-65535)>
Syntax
Description
policy-map-number
Mode
Package
Example
iss(config)# policy-map 6
The following two commands are available from the policy-map configuration
mode:
class
exit - Exits from the policy map configuration mode and returns to the
global configuration mode.
Related Command
25
VS-2024-F
3.4 match
This command specifies the fields in the incoming packets that are to be examined for the classification of
the packets. The IP access group / MAC access group can be used as match criteria.
match access-group { mac-access-list | ip-access-list } <acl-index-num (165535) >
Syntax
Description
mac-access-list
ip-access-list
acl-index-num
Specifies the ACL index range. The ACL index range for
an IP standard ACL is 1 to 1000 and IP extended ACL is
1001 to 65535.
The ACL index range for a MAC extended ACL is 1 to
65535.
Mode
Package
Example
MAC access list and IP access list must have been configured.
Related Commands
class-map - Creates a class map to be used for matching the packets with the class whose
name/index is specified
26
3.5 class
This command defines a traffic classification for the policy to act. The class-map-number that is specified
in the policy map ties the characteristics for that class to the class map and its match criteria, as
configured by using the class-map global configuration command. On execution of the class command,
the switch enters the policy-map class configuration mode.
The no form of this command un-maps the class-map from the current policy-map configuration.
class <class-map-number(1-65535)>
no class <class-map-number(1-65535)>
Syntax
Description
class-map-number
Mode
Package
Example
The policy-map global configuration command must be executed prior to using the
class command. After a policy map is specified, the user can either configure a
policy for new classes or modify a policy for any existing classes in that policy map.
The following configuration commands are available from the policy map class
configuration mode:
-
set cos
Related Commands
27
VS-2024-F
Syntax
Description
cos
ip dscp
ip precedence
Mode
Package
Example
To attach policy maps that contain the following elements to an ingress interface
-
Related Commands
28
Mode
Package
Defaults
Example
When shutdown, all the pools used by DiffServ module will be released to the
system.
When started, the resources required by DiffServ module are allocated and the
module starts running.
Related Commands
29
VS-2024-F
Syntax
Description
strict
strict
rr
round robin
wrr
wfq
strict-rr
strict-wrr
strict-wfq
deficit
deficit
Mode
Package
Example
Related Commands
show cosq algorithm - Displays the CoSq algorithm used for the interface.
show cosq weights-bw - Displays the CoSq weights and the bandwidth for the interface.
30
Syntax
Description
traffic-class
weight
minbandwidth
Mode
Package
Defaults
weight
Example
Related Commands
show cosq algorithm - Displays the CoSq algorithm used for the interface.
show cosq weights-bw - Ddisplays the CoSq weights and the bandwidth for the interface.
31
VS-2024-F
Syntax
Description
policy-map-num
class
Mode
Package
Example
: 255
In Profile Entry
---------------In profile action
: policed-precedence 5
: 6
Refresh count
: 1000
: drop
No Match Entry
-------------No match action
: policed-precedence 5
Related Commands
32
set cos - Defines the in-profile action by setting a CoS, DSCP or IP-precedence value in the packet
33
VS-2024-F
Syntax
Description
class-map-num
Mode
Package
Example
DiffServ Configurations:
------------------------
Class map 20
-------------Filter-ID
: 3
Filter-Type
: IP-Filter
Related Commands
class-map - Creates a class map that is meant to be used for matching the packets to the class
whose index is specified
match - Specifies the fields in the incoming packets that are to be examined for the classification of
the packets
34
Syntax
Description
interface-type
Interface Type
interface-id
Interface ID
Mode
Package
Example
Algorithm
-----------
---------------
Gi0/1
StrictPriority
.......
.......................
--------------------------
35
VS-2024-F
Syntax
Description
interface-type
Interface Type
interface-id
Interface ID
Mode
Package
Example
CoSqId
CoSqWeight
MinBw
MaxBw
Flag
---------
------
---------
------
----
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
.....
...
..
...
...
...
-----
---------------------------------------------------
36
Chapter
4
4.ACL (Access Control Lists)
ACLs (Access Control Lists) filter network traffic by controlling whether routed packets are forwarded or
blocked at the router's interfaces. ACLs are used to block IP packets from being forwarded by a router.
The router examines each packet to determine whether to forward or drop the packet, based on the
criteria specified within the access lists.
Access list criteria can be the source address of the traffic, the destination address of the traffic, the
upper-layer protocol or other information.
There are many reasons to configure access lists - access lists can be used to restrict contents of routing
updates or to provide traffic flow control. But one of the most important reasons to configure access lists is
to provide security for the network.
Access lists must be used to provide a basic level of security for accessing the network. If access lists has
not been configured on the router, all packets passing through the router can be allowed onto all parts of
the network.
For example, access lists can allow one host to access a part of the network and prevent another host
from accessing the same area.
The list of CLI commands for the configuration of ACL is as follows:
ip access-list
user-defined access-list
userdefined-list
permit usr-defined-packet-type
deny usr-defined-packet-type
37
VS-2024-F
permit ipv6
deny ipv6
permit tcp
deny tcp
permit udp
deny udp
permit icmp
deny icmp
ip access-group
mac access-group
user-defined access-group
permit
deny
show access-lists
38
4.1 ip access-list
This command creates IP ACLs and enters the IP Access-list configuration mode. Standard access lists
create filters based on IP address and network mask only (L3 filters only ). Extended access lists enables
specification of filters based on the type of protocol, range of TCP/UDP ports as well as the IP address
and network mask (Layer 4 filters).
Depending on the standard or extended option chosen by the user, this command returns a
corresponding IP Access list configuration mode.
The no form of the command deletes the IP access-list.
ip access-list {standard <access-list-number (1-1000)> | extended
list-number (1001-65535)> }
no ip access-list {standard
list-number (1001-65535)> }
Syntax
Description
<access-
standard
extended
Mode
Package
Example
ACLs on the system perform both access control and Layer 3 field classification. To
define Layer 3 fields access-lists the ip access-list command must be used.
Related Commands
permit - standard mode - Specifies the packets to be forwarded depending upon the associated
parameters
deny - standard mode - Denies traffic if the conditions defined in the deny statement are
matched
permit- ip/ospf/pim/protocol type - Allows traffic for a particular protocol packet if the
conditions defined in the permit statement are matched
deny - ip/ospf/pim/protocol type- Denies traffic for a particular protocol packet if the
conditions defined in the deny statement are matched
permit tcp - Specifies the TCP packets to be forwarded based on the associated parameters
deny tcp - Specifies the TCP packets to be rejected based on the associated parameters
permit udp - Specifies the UDP packets to be forwarded based on the associated parameters
deny udp - Specifies the UDP packets to be rejected based on the associated parameters
39
VS-2024-F
permit icmp - Specifies the ICMP packets to be forwarded based on the IP address and the
associated parameters
deny icmp - Specifies the ICMP packets to be rejected based on the IP address and associated
parameters
40
Syntax
Description
accesslist-number
Mode
Package
Example
ACLs on the system perform both access control and layer 2 field classification.
To define Layer 2 access lists, the mac access-list command must be used.
Related Commands
permit - Specifies the packets to be forwarded based on the MAC address and the associated
parameters
deny - Specifies the packets to be rejected based on the MAC address and the associated
parameters
mac access-group - Applies a MAC access control list (ACL) to a Layer 2 interface.
41
VS-2024-F
<access-list-number (1-65535)>
Mode
Package
Example
ACLs on the system perform both access control and layer 2 field classification based
on user defined bytes in the packets.
Related Commands
permit - Specifies the packets to be forwarded based on the MAC address and the associated
parameters
deny - Specifies the packets to be rejected based on the MAC address and the associated
parameters
userdefined-list- Creates a user defined access list by applying AND, OR, NOT operation ( regular
expressions) on existing ACL rules or specifying match on user-defined packet offsets.
AND - Apply AND operation on base filter rules identified uniquely as ACL1, ACL2. This operation
merges the match qualifiers of two ACL rules ACL1, ACL2 to derive a new ACL Rule ACL3
OR - Apply OR operation on base filter rules identified uniquely as ACL1 and ACL2. This operation
results in applying the filter action { permit/deny/redirect } corresponding to ACL Rule 1 on ACL Rule2.
NOT Apply NOT operation on base filter rule ( ACL 1) and derive new ACL Rule. If the action
corresponding to ACL 1 is permit, then after applying NOT operation, new rule will have filter action deny.
The filter actions on which NOT operation can be applied are permit, deny. This operation is not
applicable for other filter actions.
42
4.4 userdefined-list
This command creates a user defined access list after application of regular expressions AND, OR, NOT
on existing ACL rules
ip-acl1-and-ip-acl2
ip-acl1-or-ip-acl2
mac-acl1-and-mac-acl2
mac-acl1-and-ip-acl2
mac-acl1-or-mac-acl2
ip-acl1-or-mac-acl2
not-ip-acl1
not-mac-acl1
Mode
Package
43
VS-2024-F
Example
iss(config-userdef-acl)#
15 123
userdefined-list
ip-acl1-and-ip-acl2
Related Commands
44
Syntax
Description
user-def
tcp-ipv4
udp-ipv4
mpls
ipv4
ipv6
frag-ip
offset-base
offset1
45
VS-2024-F
offset2
Offset3
Offset4
Offset5
Offset6
Redirect
load-balance
src-ip
dst-ip
src-mac
dst-mac
vlanid
src-tcpport
dst-tcpport
src-udpport
dst-udpport
udb
46
vlan-action
Mode
Package
Example
iss(config-userdef-acl)# permit
usr-defined-packet-type userdef offset-base l2 offset1 5 10 load-balance src-ip
Related Commands:
47
VS-2024-F
usr-defined-packet-type
offset-base
48
ether-type
Start of the packet is
considered as ether type.
offset1
offset2
Offset3
Offset4
Offset5
Offset6
Mode
Package
Example
iss(config-userdef-acl)# deny
offset-base l2 offset1 112 25
usr-defined-packet-type user-def
Related Commands:
49
VS-2024-F
Syntax
Description
any|host
<src-ip-address>|
<network-src-ip><mask>
any|host
<dest-ip-address>|
< network-dest-ip>
<mask>
redirect
50
load-balance
src-ip
src-mac
dst-ip
dst-mac
vlanid
src-tcpport
dst-tcpport
src-udpport
dst-udpport
Mode
Package
Example
Related Commands
deny - standard mode - Denies traffic if the conditions defined in the deny statement are
matched
51
VS-2024-F
Syntax
Description
any|host
src-ip-address|
<src-ip-address>
<mask>
any|host
dest-ip-address|
<dest-ipaddress><mask>
Mode
Package
Example
Related Commands
permit - standard mode - Specifies the packets to be forwarded depending upon the associated
parameters
52
Syntax
Description
ip| ospf|pim|
<protocol-type
255)>
(1-
any| host
<src-ip-address>|
<src-ip-address>
<mask>
any|host
<dest-ip-address>|
<dest-ip-address>
<mask>
tos
priority
53
VS-2024-F
redirect
load-balance
vlan-action
src-ip
dst-ip
src-mac
dst-mac
vlanid
src-tcpport
dst-tcpport
src-udpport
dst-udpport
Package
Defaults
protocol-type
255
priority
Example
54
Protocol type with the value 255 indicates that protocol can be anything and it will not
be checked against the action to be performed.
Service VLAN, Service VLAN Priority, Customer VLAN and Customer VLAN Priority
options are applicable only for Metro Solution, when the bridge mode is Provider
Bridge.
Related Commands
deny - ip/ospf/pim/protocol type- Denies traffic for a particular protocol packet if the
conditions defined in the deny statement are matched
55
VS-2024-F
Syntax
Description
flow-label
redirect
load-balance
vlan-action
56
src-ip
dst-ip
src-mac
dst-mac
vlanid
src-tcpport
dst-tcpport
src-udpport
dst-udpport
Specifies the VLAN specific sub action to be
performed on the packet -
Package
Example
Related Commands
57
VS-2024-F
deny ipv6 { flow-label <integer(1-65535)> | {any | host <ip6_addr> <integer(0128)> } { any | host <ip6_addr> <integer(0-128)> }}
Syntax
Description
flow-label
Mode
Package
Example
Related Commands
58
Syntax
Description
ip| ospf|pim|
<protocol-type
(1-255)>
any| host
<src-ip-address>|
any or
<src-ip-address>
<mask>
any|host
<dest-ip-address>|
any or
<dest-ip-address>
<mask>
tos
priority
Mode
Package
59
VS-2024-F
Defaults
protocol type
255
priority
Example
Protocol type with the value 255 indicates that protocol can be anything and it will
not be checked against the action to be performed.
Service Vlan, Service Vlan Priority, Customer Vlan and Customer Vlan Priority
options are applicable only for Metro Solution, when the bridge mode is Provider
Bridge.
Related Commands
permit- ip/ospf/pim/protocol type - Allows traffic for a particular protocol packet if the
conditions defined in the permit statement are matched
60
Syntax
Description
tcp
any| host
<src-ip-address>|
<src-ip-address>
src-mask >
port-number
<
any or
eq=equal
lt=less than
gt=greater than
61
VS-2024-F
any|host
<dest-ip-address>
|<dest-ip-address>
< dest-mask >
any or
ack
rst
tos
priority
redirect
62
Load-balance
vlan-action
src-ip
dst-ip
src-mac
dst-mac
vlanid
src-tcpport
dst-tcpport
src-udpport
dst-udpport
Mode
Package
Defaults
tos-value
ack
any (3) [indicates that the TCP ACK bit will not be
checked to decide the action]
rst
any (3) [indicates that the TCP RST bit will not be
checked to decide the action]
Example
Service Vlan, Service Vlan Priority, Customer Vlan and Customer Vlan Priority options
are applicable only for Metro Solution, when the bridge mode is Provider Bridge.
Related Commands
63
VS-2024-F
-deny tcp Specifies the TCP packets to be rejected based on the associated parameters
Syntax
Description
64
tcp
any| host
<src-ip-address>|
any or
<src-ip-address>
<src-mask>
port-number
any|host
eq=equal
lt=less than
gt=greater than
<dest-ip-address>|
any or
<dest-ip-address>
<dest-mask>
ack
rst
tos
priority
Mode
Package
Defaults
tos-value
65
VS-2024-F
ack
rst
Example
Service Vlan, Service Vlan Priority, Customer Vlan and Customer Vlan Priority
options are applicable only for Metro Solution, when the bridge mode is Provider
Bridge.
eq 20
Related Commands
permit tcp - Specifies the TCP packets to be forwarded based on the associated parameters
Syntax
Description
66
udp
any| host
<src-ip-address>|
'any' or
<src-ip-address>
<src-mask>
port-number
any|host
eq=equal
lt=less than
gt=greater than
<dest-ip-address>|
'any' or
<dest-ip-address>
<dest-mask>
tos
{max-reliability |
max-throughput
|
min-delay | normal
| <value (0-7)> |
dscp
<value(063)>}
priority
67
VS-2024-F
redirect
load-balance
vlan-action
src-ip
dst-ip
src-mac
dst-mac
vlanid
src-tcpport
dst-tcpport
src-udpport
dst-udpport
Package
Example
Service Vlan, Service Vlan Priority, Customer Vlan and Customer Vlan Priority options
are applicable only for Metro Solution, when the bridge mode is Provider Bridge.
Related Commands
68
deny udp - Specifies the UDP packets to be rejected based on the associated parameters
Syntax
Description
udp
69
VS-2024-F
any| host
<src-ip-address>|
'any' or
<src-ip-address>
<src-mask>
port-number
any|host
eq=equal
lt=less than
gt=greater than
<dest-ip-address>
'any' or
|<dest-ip-address>
<dest-mask>
tos
priority
Mode
Package
Example
70
Service Vlan, Service Vlan Priority, Customer Vlan and Customer Vlan Priority options
are applicable only for Metro Solution, when the bridge mode is Provider Bridge.
Related Commands
permit udp - Specifies the UDP packets to be forwarded based on the associated parameters
Syntax
Description
icmp
71
VS-2024-F
any| host
<src-ip-address>
'any' or
|<src-ip-address>
<mask>
any|host
<dest-ip-address>|
'any' or
<dest-ip-address>
<mask>
message-type
Message type
message-code
priority
Redirect
72
Load-balance
Vlan-action
src-ip
dst-ip
src-mac
dst-mac
vlanid
src-tcpport
dst-tcpport
src-udpport
dst-udpport
Mode
Package
Defaults
message-type/message
code
Example
255
Value
ICMP type
Echo reply
Destination unreachable
Source quench
Redirect
Echo request
73
VS-2024-F
11
Time exceeded
12
Parameter problem
13
Timestamp request
14
Timestamp reply
15
Information request
16
Information reply
17
18
155
No ICMP type
Value
ICMP code
Network unreachable
Host unreachable
Protocol unreachable
Port unreachable
Fragment need
10
11
12
255
No ICMP code
Service Vlan, Service Vlan Priority, Customer Vlan and Customer Vlan Priority
options are applicable only for Metro Solution, when the bridge mode is Provider
Bridge.
Related Commands
74
deny icmp - Specifies the ICMP packets to be rejected based on the IP address and associated
parameters
75
VS-2024-F
Syntax
Description
icmp
any| host
<src-ip-address>|
'any' or
<src-ip-address>
<mask>
any|host
<dest-ip-address>|
'any' or
<dest-ip-address>
<mask>
message-type
Message type
message-code
priority
Mode
Package
Defaults
message-type/
message code
Example
255
Value
76
ICMP type
Echo reply
Destination unreachable
Source quench
Redirect
Echo request
11
Time exceeded
12
Parameter problem
13
Timestamp request
14
Timestamp reply
15
Information request
16
Information reply
17
18
155
No ICMP type
Value
ICMP code
Network unreachable
Host unreachable
Protocol unreachable
Port unreachable
Fragment need
10
11
12
255
No ICMP code
Service Vlan, Service Vlan Priority, Customer Vlan and Customer Vlan Priority
options are applicable only for Metro Solution, when the bridge mode is Provider
Bridge.
Related Commands
77
VS-2024-F
permit icmp - Specifies the ICMP packets to be forwarded based on the IP address and the
associated parameters
4.19 ip access-group
This command enables access control for the packets on the interface. It controls access to a Layer 2 or
Layer 3 interface. The no form of this command removes all access groups or the specified access group
from the interface. The direction of filtering is specified using the token in or out.
78
Syntax
Description
access-list-number
in
Inbound packets
out
Outbound packets
Mode
Package
Example
iss(config-if)# ip access-group 1 in
Related Commands
79
VS-2024-F
Syntax
Description
access-list-number
in
Inbound packets
out
Outbound packets
Mode
Package
Example
Related Commands
mac access-list extended - Creates Layer 2 MAC ACLs, and returns the MAC-Access list
configuration mode to the user
permit - Specifies the packets to be forwarded based on the MAC address and the associated
parameters
deny - Specifies the packets to be rejected based on the MAC address and the associated
parameters.
80
Syntax
Description
access-list-number
in
Inbound packets
out
Outbound packets
Mode
Package
Example
User defined access list should be created already, before executing this command.
Related Commands
4.22 permit
This command specifies the packets to be forwarded based on the MAC address and the associated
parameters, that is, this command allows non-IP traffic to be forwarded if the conditions are matched.
CLI USER MANUAL
DATACOM SYSTEMS CONFIDENTIAL
81
VS-2024-F
Syntax
Description
82
any | host
address >
<src-mac-
aarp
amber
EtherType DEC-Amber
dec-spanning
decnet-iv
diagnostic
EtherType DEC-Diagnostic
dsm
EtherType DEC-DSM/DDP
etype-6000
EtherType 0x6000
etype-8042
EtherType 0x8042
lat
EtherType DEC-LAT
lavc-sca
EtherType DEC-LAVC-SCA
mop-console
mop-dump
msdos
EtherType DEC-MSDOS
mumps
EtherType DEC-MUMPS
netbios
vines-echo
vines-ip
EtherType VINES IP
xns-id
encaptype
Encapsulation Type
redirect
load-balance
Service
src-ip
dst-ip
src-mac
dst-mac
vlanid
src-tcpport
dst-tcpport
src-udpport dst-udpport
83
VS-2024-F
vlan-action
Mode
Package
Defaults
vlan-id
priority
Example
iss(config-ext-macl)# permit host 00:11:22:33:44:55 any loadbalance src-ip vlan-action modify lan 526
OuterEtherType, Service Vlan, Service Vlan Priority and Customer Vlan Priority
options are applicable only for Metro Solution, when the bridge mode is Provider
Bridge.
Related Commands
mac access-list extended - Creates Layer 2 MAC ACLs, and returns the MAC-Access list
configuration mode to the user
mac access-group - Applies a MAC access control list (ACL) to a Layer 2 interface
deny - Specifies the packets to be rejected based on the MAC address and the associated
parameters
84
4.23 deny
This command specifies the packets to be rejected based on the MAC address and the associated
parameters.
deny { any | host <src-mac-address>}{ any | host <dest-mac-address> } [aarp |
amber | dec-spanning | decnet-iv | diagnostic | dsm | etype-6000 |etype-8042 |
lat | lavc-sca | mop-console | mop-dump | msdos | mumps | netbios | vines-echo
| vines-ip | xns-id | <protocol (0-65535)>] [ encaptype <value (1-65535)>][
Vlan <vlan-id (1-4094)>] [priority <value (1-255)>]
Syntax
Description
85
VS-2024-F
86
aarp
amber
EtherType DEC-Amber
dec-spanning
EtherType Digital
spanning tree
decent-iv
diagnostic
EtherType DEC-Diagnostic
dsm
EtherType DEC-DSM/DDP
etype-6000
EtherType 0x6000
etype-8042
EtherType 0x8042
lat
EtherType DEC-LAT
lavc-sca
EtherType DEC-LAVC-SCA
mop-console
mop-dump
msdos
EtherType DEC-MSDOS
mumps
EtherType DEC-MUMPS
netbios
Equipment
Corporation
(DEC)
vines-echo
vines-ip
EtherType VINES IP
xns-id
encaptype
Encapsulation Type
vlan
VLAN ID to be filtered
priority
Mode
Package
Defaults
vlan-id
priority
Example
OuterEtherType, Service Vlan, Service Vlan Priority and Customer Vlan Priority
options are applicable only for Metro Solution, when the bridge mode is Provider
Bridge.
Related Commands
mac access-list extended - Creates Layer 2 MAC ACLs, and returns the MAC-Access list
configuration mode to the user
mac access-group - Applies a MAC access control list (ACL) to a Layer 2 interface
permit - Specifies the packets to be forwarded based on the MAC address and the associated
parameters
87
VS-2024-F
Syntax
Description
88
ip
IP Access List
mac
user-defined
Mode
Package
Example
: IPV4
Source IP address
: 172.30.3.134
: 255.255.255.255
: 32
Destination IP address
: 0.0.0.0
: 0.0.0.0
: 0
Flow Identifier
: 0
In Port List
: NIL
: NIL
Filter Action
: Deny
Status
: InActive
: 1
: ANY
IP address Type
: IPV4
Source IP address
: 0.0.0.0
: 0.0.0.0
: 0
Destination IP address
: 0.0.0.0
: 0.0.0.0
89
VS-2024-F
: 0
Flow Identifier
: 0
In Port List
: NIL
: NIL
Filter TOS
: Invalid combination
Filter DSCP
: NIL
Filter Action
: Permit
Status
: InActive
: 1
: ANY
IP address Type
: IPV4
Source IP address
: 0.0.0.0
: 0.0.0.0
: 0
Destination IP address
: 0.0.0.0
: 0.0.0.0
: 0
Flow Identifier
: 0
In Port List
: NIL
: NIL
Filter TOS
: Invalid combination
Filter DSCP
: NIL
Filter Action
: Permit
Status
: InActive
90
Related Commands
mac access-list extended - Creates Layer 2 MAC ACLs, and returns the MAC-Access list
configuration mode to the user
deny usr-defined-packet-type - This command denies packet based on user defined byte.
permit - standard mode - Specifies the packets to be forwarded depending upon the associated
parameters
deny - standard mode - Denies traffic if the conditions defined in the deny statement are
matched
permit- ip/ospf/pim/protocol type - Allows traffic for a particular protocol packet if the
conditions defined in the permit statement are matched
deny - ip/ospf/pim/protocol type Denies traffic for a particular protocol packet if the
conditions defined in the deny statement are matched
permit tcp- Specifies the TCP packets to be forwarded based on the associated parameters
deny tcp- Specifies the TCP packets to be rejected based on the associated parameters
permit udp- Specifies the UDP packets to be forwarded based on the associated parameters
deny udp- Specifies the UDP packets to be rejected based on the associated parameters
permit icmp- Specifies the ICMP packets to be forwarded based on the IP address and the
associated parameters
deny icmp - Specifies the ICMP packets to be rejected based on the IP address and associated
parameters
mac access-group - Applies a MAC access control list (ACL) to a Layer 2 interface
permit - Specifies the packets to be forwarded based on the MAC address and the associated
parameters
deny- specifies the packets to be rejected based on the MAC address and the associated parameters
userdefined-list - Creates a user defined access list by applying AND, OR, NOT operation on existing
ACL rules
permit ipv6 - Specifies IP packets to be forwarded based on protocol and associated parameters.
deny ipv6 - Specifies IPv6 packets to be rejected based on protocol and associated parameters.
91
Chapter
5
5.QoS (Quality of Service)
QoS defines the ability to provide different priority to different applications, users or data flows or the
ability to guarantee a certain level of performance to a data flow. QoS refers to resource reservation
control mechanisms rather than the achieved service quality and specifies a guaranteed throughput level.
Datacom Systems Inc. QoS provides a complete Quality of Service solution and helps in
implementing service provisioning policies for application or customers, who desire to have an
enhanced performance for their traffic on the Internet.
The list of CLI commands for the configuration of QoS is as follows:
shutdown qos
qos
priority-map
class-map
meter
policy-map
queue-type
shape-template
scheduler
queue
queue-map
sched-hierarchy
qos interface
map
match access-group
93
VS-2024-F
set class
meter-type
set policy
set meter
set
random-detect dp
show priority-map
show class-map
show class-to-priority-map
show meter
show policy-map
show queue-template
show shape-template
show scheduler
show queue
show queue-map
show sched-hierarchy
94
Mode
Package
Defaults
Example
Resources required by QoS subsystem are allocated and QoS subsystem starts
running, when started.
All the MemPools used by the QoS subsystem will be released, when shutdown.
Related Commands
95
VS-2024-F
5.2 qos
This command enables or disables the QoS subsystem.
qos {enable | disable}
Syntax
Description
enable
disable
Mode
Package
Defaults
Enabled
Example
QoS module programs the hardware and starts protocol operation, when set as
enable.
Related Commands
96
5.3 priority-map
This command adds a Priority Map entry. The no form of the command deletes a Priority Map entry.
priority-map <priority-map-Id(1-65535)>
no priority-map <priority-map-Id(1-65535)>
Syntax
Description
Priority-map-Id
Mode
Package
Example
iss(config)# priority-map 1
Related Commands
97
VS-2024-F
5.4 class-map
This command adds a Class Map entry. The no form of the command deletes a Class Map entry.
class-map <class-map-id(1-65535)>
no class-map <class-map-id(1-65535)>
Syntax
Description
class-map-id
Mode
Package
Example
iss(config)# class-map 1
Related Commands
98
5.5 meter
This command creates a Meter. The no form of the command deletes a Meter.
meter <meter-id(1-65535)>
no meter <meter-id(1-65535)>
Syntax
Description
meter-id
Mode
Package
Example
iss(config)# meter 1
Related Commands
99
VS-2024-F
5.6 policy-map
This command creates a policy map. The no form of the command deletes a policy map.
policy-map <policy-map-id(1-65535)>
no policy-map <policy-map-id(1-65535)>
Syntax
Description
policy-map-id
Mode
Package
Example
iss(config)# policy-map 1
Related Commands
100
5.7 queue-type
This command creates a Queue Template Type. The no form of the command deletes a Queue Template
Type.
queue-type <Q-Template-Id(1-65535)>
no queue-type <Q-Template-Id(1-65535)>
Syntax
Description
Q-Template-Id
Mode
Package
Example
iss(config)# queue-type 1
Related Commands
101
VS-2024-F
5.8 shape-template
This command creates a Shape Template. The no form of the command deletes a Shape Template.
shape-template <integer(1-65535)> [cir <integer(1-65535)>] [cbs <integer(065535)>] [eir <integer(0-65535)>] [ebs <integer(0-65535)>]
no shape-template <Shape-Template-Id(1-65535)>
Syntax
Description
Shape-Template-Id
cir
cbs
eir
ebs
Mode
Package
Example
Related Commands
102
5.9 scheduler
This command creates a Scheduler and configures the Scheduler parameters. The no form of the
command deletes a scheduler.
scheduler <integer(1-65535)> interface <iftype> <ifnum> [sched-algo {strictpriority | rr | wrr | wfq | strict-rr | strict-wrr | strict-wfq | deficit-rr}]
[shaper <integer(0-65535)>] [hierarchy-level <integer(0-10)>]
no scheduler <Scheduler-Id(1-65535)> interface <iftype> <ifnum>
Syntax
Description
Scheduler-Id
iftype
Interface type.
ifnum
Interface number.
sched-algo
strict-priority strictPriority.
rr roundRobin.
wrr weightedRoundRobin.
wfg weightedFairQueing.
strict-rr strictRoundRobin.
strict-wrr strictWeightedRoundRobin.
strict-wfg strictWeightedFairQueing.
deficit-rr deficitRoundRobin.
shaper
hierarchy-level
Mode
Package
Defaults
sched-algo
the
the
bandwidth
strict-priority
103
VS-2024-F
hierarchy-level
Example
Shaper identifier is not mandatory for the creation of the conceptual row.
Related Commands
104
5.10 queue
This command creates a Queue and configures the Queue parameters. The no form of the command
deletes a Queue.
queue <integer(1-65535)> interface <iftype> <ifnum> [qtype <integer(1-65535)>]
[scheduler
<integer(1-65535)>]
[weight
<integer(0-1000)>]
[priority
<integer(0-15)>] [shaper <integer(0-65535)>]
no queue <integer(1-65535)> interface <iftype> <ifnum>
Syntax
Description
queue
iftype
Interface type.
ifnum
Interface number.
qtype
scheduler
weight
priority
shaper
Mode
Package
Defaults
weight
priority
Example
the
bandwidth
105
VS-2024-F
User assigned weights are used only when scheduling algorithm is a weighted
scheduling algorithm.
User assigned priority is used only when the scheduler uses a priority based
scheduling algorithm.
Related Commands
106
5.11 queue-map
This command creates a Map for a Queue with Class or regenerated priority. The no form of the
command deletes a Queue map entry.
queue-map { CLASS <integer(1-65535)> | regn-priority { vlanPri | ipTos |
ipDscp | mplsExp | vlanDEI } <integer(0-63)> } [interface <iftype> <ifnum>]
queue-id <integer(1-65535)>
no queue-map { CLASS <integer(1-65535)> | regn-priority { vlanPri | ipTos |
ipDscp | mplsExp | vlanDEI } <integer(0-63)> } [interface <iftype> <ifnum>]
Syntax
Description
CLASS
regn-priority
iftype
ifnum
Interface number.
queue-id
Mode
Package
Example
Related Commands
107
VS-2024-F
5.12 sched-hierarchy
This command creates a Scheduler Hierarchy. The no form of the command deletes a Scheduler
Hierarchy.
sched-hierarchy interface <iftype> <ifnum> hierarchy-level <integer(1-10)>
sched-id <integer(1-65535)> {next-level-queue <integer(0-65535)> | next-levelscheduler <integer(0-65535)>} [priority <integer(0-15)>] [weight <integer(01000)>]
no sched-hierarchy interface <iftype> <ifnum> hierarchy-level <integer(1-10)>
sched-id <integer(1-65535)>
Syntax
Description
iftype
Interface type.
ifnum
Interface number.
hierarchy-level
sched-id
Scheduler identifier.
priority
weight
Scheduler weight.
Mode
Package
Defaults
priority
Example
Related Commands
108
Syntax
Description
iftype
Interface type
ifnum
Interface number
def-user-priority
Mode
Package
Example
The default ingress user priority will be used to set priority for untagged packets.
Related Commands
show qos def-user-priority Displays the configured default ingress user priority for a port.
109
VS-2024-F
5.14 map
This command adds a Priority Map Entry for mapping an incoming priority to a regenerated priority. The
no form of the command sets default value to the Interface, VLAN, regenerated inner priority.
map [interface <iftype> <ifnum>] [vlan <integer(1-4094)>] in-priority-type {
vlanPri | ipTos | ipDscp | mplsExp | vlanDEI } [in-priority <integer(0-63)>]
regen-priority <integer(0-63)> [regen-inner-priority <integer(0-7)>]
no map { interface | vlan | regen-inner-priority }
Syntax
Description
iftype
Interface type
ifnum
Interface number
vlan
in-priority-type
in-priority
regen-priority
regen-innerpriority
Mode
Package
Defaults
vlan
in-priority-type
vlanPri
110
in-priority
-1
regen-priority
Example
iss(config-pri-map)# map interface gig 0/1 vlan 4094 inpriority-type vlanPri in-priority 0 regen-priority 7 regeninner-priority 1
Related Commands
111
VS-2024-F
Syntax
Description
ip-access-list
mac-access-list
ip-access-list
priority-map
Mode
Package
Defaults
mac-access-list
ip-access-list
priority-map
Example
priority-map 1
Related Commands
112
Syntax
Description
class
pre-color
regen-priority
group-name
Mode
Package
Defaults
class
Example
The default value zero provided for the class is not configurable.
regen-
Related Commands
113
VS-2024-F
5.17 meter-type
This command sets Meter parameters CIR, CBS, EIR, EBS, Interval, meter type and color awareness.
meter-type { simpleTokenBucket | avgRate| srTCM | trTCM | tswTCM | mefCoupled
| mefDeCoupled } [ color-mode { aware | blind } ] [interval <short(1-10000)>]
[cir <integer(0-65535)>] [cbs <integer(0-65535)>] [eir <integer(0-65535)>]
[ebs <integer(0-65535)>] [next-meter <integer(0-65535)>]
Syntax
Description
114
simpleTokenBucket
avgRate
srTCM
trTCM
tswTCM
mefCoupled
mefDeCoupled
color-mode
interval
cir
cbs
eir
ebs
next-meter
Mode
Package
Defaults
color-mode
blind
interval
next-meter
Example
Related Commands
115
VS-2024-F
Syntax
Description
class
iftype
Interface type
ifnum
Interface number
default-prioritytype
Mode
Package
Defaults
class
Example
Related Commands
116
Syntax
Description
meter
conform-action
exceed-action
VS-2024-F
violate-action
set-conformnewclass
set-exceednewclass
set-violatenewclass
Mode
Package
Defaults
set-cos-transmit
set-de-transmit
set-mpls-exp-transmit
set-inner-vlan-pri
Example
118
VLAN priority can be set to a non-zero value only when MPLS Experimental bits is
set to zero.
Related Commands
119
VS-2024-F
Syntax
Description
algo-type
queue-limit
queue-drop-algo
for
Congestion
Mode
Package
Defaults
queue-drop-algo
Example
enable
Drop algorithm for Congestion Management can be enabled only when the
Random Detect Table entry is created for the Queue.
Related Commands
120
5.21 random-detect dp
This command sets Random Detect Table entry parameters. The no form of the command deletes
Random Detect Table entry.
random-detect dp <short(0-2)> [min-threshold <short(1-65535)>] [max-threshold
<short(1-65535)>]
[max-pkt-size
<short(1-65535)>]
[mark-probabilitydenominator <short(1-100)>] [exponential-weight <integer(0-31)>]
no random-detect dp <short(0-2)>
Syntax
Description
dp
min-threshold
max-threshold
max-pkt-size
mark-probabilitydenominator
exponentialweight
Mode
Package
Defaults
mark-probabilitydenominator
100
exponential-weight
Example
121
VS-2024-F
Mode
Package
Example
: Start
System Control
: Enable
Rate Unit
: kbps
Rate Granularity
: 64
Trace Flag
: 0
Related Commands
122
Syntax
Description
priority-map-id
Mode
Package
Example
: 1
IfIndex
: 1
VlanId
: 4094
InPriorityType
: VlanPriority
InPriority
: 0
RegenPriority
: 7
InnerRegenPriority
: 1
iss# show
priority-map 9
PriorityMapId
: 9
IfIndex
: gi 0/5
VlanId
: 2
InPriorityType
: IP Protocol
InPriority
: -1
RegenPriority
: 5
InnerRegenPriority
: 7
If executed without the optional parameters, this command displays all the available
Priority Map information.
Related Commands
map - Adds a Priority Map entry for mapping an incoming priority to a regenerated priority
123
VS-2024-F
Syntax
Description
class-map-id
Mode
Package
Example
ClassMapId
: 1
L2FilterId
: None
L3FilterId
: None
PriorityMapId
: 1
CLASS
: 1000
PolicyMapId
: 1
PreColor
: None
Status
: Active
If executed without the optional parameters, this command displays all the available
Class Map information
Related Commands
124
Syntax
Description
Group-name
Mode
Package
Example
: CLASS1
Class
LocalPriority
---------------------------------2
Related Commands
set class Sets CLASS for L2and/or L3 filters or Priority Map ID and adds a CLASS to Priority
Map Entry with regenerated priority.
125
VS-2024-F
Syntax
Description
meter-id
Mode
Package
Example
MeterId
: 1
Type
Color Mode
: Color Aware
Interval
: 10
CIR
: 1000
CBS
: None
EIR
: None
EBS
: None
NextMeter
: None
Status
: Active
If executed without the optional parameters, this command displays all the available
Meter information.
Related Commands
set meter Sets Policy parameters such as Meter and Meter Actions.
126
Syntax
Description
meter-id
Mode
Package
Example
PolicyMapId
: 1
IfIndex
: 0
Class
: 0
DefaultPHB
: None.
MeterId
: 1
ConNClass
: 0
ExcNClass
: 0
VioNClass
: 0
ConfAct
: Port 1
ExcAct
: Drop.
VioAct
: Drop.
If executed without the optional parameter, this command displays all the available
Policy Map. information
Related Commands
127
VS-2024-F
Syntax
Description
queue-template-Id
Mode
Package
Example
Q Template Id
: 1
Q Limit
: 10000
Drop Type
: Tail Drop
: Disable
If executed without the optional parameter, this command displays all the available
Queue Template information.
Related Commands
128
Syntax
Description
shape-template-Id
Mode
Package
Example
ShapeTemplate Id
CIR
CBS
EIR
EBS
----------------
---
---
---
---
If executed without the optional parameter, this command displays all the available
Shape Template information
Related Commands
129
VS-2024-F
Syntax
Description
iftype
Interface type.
ifnum
Interface number.
Mode
Package
Example
strictPriority
--0
If executed without the optional parameter, this command displays all the available
scheduler entries.
Related Commands
130
Syntax
Description
iftype
Interface type.
ifnum
Interface number.
Mode
Package
Example
If executed without the optional parameter, this command displays all the available queue
entries
Related Commands
131
VS-2024-F
Syntax
Description
iftype
Interface type.
ifnum
Interface number.
Mode
Package
Example
CLASS
PriorityType
Priority Value
Mapped Queue
-------
-----
------------
--------------
------------
Gi0/1
none
If executed without the optional parameter, this command displays all the available
queue map entries.
Related Commands
132
Syntax
Description
iftype
Interface type.
ifnum
Interface number.
Mode
Package
Example
If executed without the optional parameter, this command displays all the available hierarchy
scheduler entries
Related Commands
133
VS-2024-F
Syntax
Description
iftype
Interface type.
ifnum
Interface number.
Mode
Package
Example
-------- ---------------------
134
Gi0/1
Gi0/2
Gi0/3
Gi0/4
Gi0/5
Gi0/6
Gi0/7
Gi0/8
Gi0/9
Gi0/10
Gi0/11
Gi0/12
Gi0/13
Gi0/14
Gi0/15
Gi0/16
Gi0/17
Gi0/18
Gi0/19
Gi0/20
Gi0/21
Gi0/22
Gi0/23
Gi0/24
If executed without the optional parameter, this command displays the available
default ingress user priority entries for all the interface.
Related Commands
qos interface Sets the default ingress user priority for the port.
135
VS-2024-F
Syntax
Description
Meter-Id
Mode
Package
Example
Meter Index
: 1
Conform Packets
: 00
Conform Octects
: 00
Exceed Packets
: 00
Exceed Octects
: 00
Violate Packets
: 00
Violate Octects
: 0
If executed without the optional parameter, this command displays the Meter
statistics for all the available Meters.
Related Commands
set meter Sets Policy parameters such as Meter and Meter Actions.
136
Syntax
Description
iftype
Interface Type.
ifnum
Interface Number.
Mode
Package
Example
Interface Index
: Gi 0/1
Queue Index
: 2
EnQ Packets
: 00
EnQ Octects
: 00
DeQ Packets
: 00
DeQ Octects
: 00
Discard Packets
: 00
Discard Octects
: 00
Occupancy Octects
: 00
CongMgntAlgoDrop Octects
: 00
If executed without the optional parameter, this command displays the Queue
statistics for all the available Interfaces.
Related Commands
137
VS-2024-F
Chapter
6
6.TACACS
TACACS (Terminal Access Controller Access Control System), widely used in network environments, is a
client/server protocol that enables remote access servers to communicate with a central server to
authenticate dial-in users and authorize their access to the requested system or service. It is commonly
used for providing NAS (Network Access Security). NAS ensures secure access from remotely connected
users. TACACS implements the TACACS Client and provides the AAA (Authentication, Authorization and
Accounting) functionalities.
TACACS is used for several reasons:
Supports inbound authentication, outbound authentication and change password request for the
Authentication service.
tacacs-server host
tacacs-server retransmit
debug tacacs
show tacacs
138
Syntax
Description
ipv4address
ipv6address
host-name
singleconnection
port
timeout
The time period in seconds for which a client will wait for a
response from the server before closing the connection.
This value ranges between 1 and 255 seconds.
key
Mode
Package
Defaults
port
40
timeout
5 seconds
Example
139
VS-2024-F
Related Commands
show tacacs - Displays the statistical log information and server for TACACS client
140
Syntax
Description
ipv4address
ipv6address
Mode
Package
Example
Related Commands
show tacacs - Displays the statistical log information and server for TACACS client
141
VS-2024-F
Mode
Package
Example
142
Syntax
Description
all
info
errors
dumptx
dumprx
Mode
Package
Defaults
Debugging is Disabled
Example
143
VS-2024-F
show tacacs
Mode
Package
Example
iss# sh tacacs
Server : 1
Server address
: 12.0.0.100
Address Type
: IPV4
Single Connection : no
TCP port
: 49
Timeout
: 5
Secret Key
: Datacom Systems
Server : 2
Server address
: 2005::33
Address Type
: IPV6
Single Connection : no
TCP port
: 4949
Timeout
: 5
Secret Key
: Datacom Systems
: 0
: 0
: 0
: 0
: 0
144
: 0
: 0
: 0
: 0
: 0
: 0
: 0
: 0
: 0
: 0
: 0
: 0
: 0
: 0
Socket failures
: 0
Connection failures
: 0
Related Commands
tacacs use-server address - Selects a server from the list of servers maintained in the
TACACS client and makes the TACACS client to use the specified server
145
VS-2024-F
Chapter
7
7.LA
LA (Link Aggregation) is a method of combining physical network links into a single logical link for
increased bandwidth. LA increases the capacity and availability of the communications channel between
devices (both switches and end stations) using existing Fast Ethernet and Gigabit Ethernet technology.
LA also provides load balancing where the processing and communication activity is distributed across
several links in a trunk, so that no single link is overwhelmed. By taking multiple LAN connections and
treating them as a unified, aggregated link, practical benefits in many applications can be achieved. LA
provides the following important benefits:
Improvements are obtained using existing hardware (no upgrading to higher-capacity link technology
is necessary)
set port-channel/channel-protocol
lacp system-priority
lacp system-identifier
port-channel load-balance
lacp port-priority
lacp port-identifier
channel-group
lacp wait-time
146
lacp
default port
port-channel max-ports
shutdown port-channel
show etherchannel
show interfaces
show lacp
147
VS-2024-F
Syntax
Description
enable
disable
Mode
Package
Defaults
disable
Example
Related Command
148
7.2 channel-protocol
This command enables link aggregation in the switch and the no form of the command disables link
aggregation in the switch.
This command operates similar to that of the command set port-channel.
no channel-protocol
Syntax
Description
lacp
pagp
Mode
Package
Defaults
Example
Related Command
149
VS-2024-F
no lacp system-priority
Mode
Package
Defaults
0x8000 or 32768
Example
The switch with the lowest system priority value decides the standby and active links
in the aggregation.
Although this is a global configuration command, the priority only takes effect on
EtherChannels that have physical interfaces with LACP enabled.
Related Command
150
no lacp system-identifier
Mode
Package
Example
The MAC address configured must not be a Null MAC address or a Multicast MAC
address.
Related Commands
Error! Reference source not found. - Displays the current operating configuration in the
system
151
VS-2024-F
Syntax
Description
src-mac
dest-mac
src-destmac
src-ip
dest-ip
src-dest-ip
mac-srcvid2
mac-destvid2
152
mac-srcdest-vid2
mpls-vclabel2
mplstunnellabel2
mpls-vctunnellabel2
vlan-id
serviceinstance
portchannelindex
Mode
Package
Defaults
Example
If the port-channel index is not mentioned in this command, the load-balancing must
apply for all port-channels configured in the system.
Initially, the port channel interface must have been configured for this command.
Related Command
153
VS-2024-F
no lacp port-priority
Mode
Package
Defaults
port-priority
Example
128
This command takes effect only on EtherChannel interfaces that are already
configured for LACP.
Related Commands
154
Mode
Package
Example
Related Commands
155
VS-2024-F
7.8 channel-group
This command configures an Etherchannel and the no form of the command removes an interface from
the Etherchannel.
Syntax
Description
mode
passive
- LACP negotiation is started only
when LACP packet is received from peer
on
- Force the interface to channel
without LACP. This is equivalent to manual aggregation
- Places a port into a passive
auto
negotiating state in which the port responds to received
PAgP packets, but does not initiate PAgP packet
negotiation.
- Places a port into an active
desirable
negotiating state in which the port initiates negotiations
with other ports by sending PAgP packets.
- Used with the auto or
[non-silent]
desirable keyword when traffic is expected
from the other device.
Mode
Package
Example
156
If the port-channel is not present, then the port channel must be created.
Related Command
Mode
Package
Defaults
Example
Configuring the wait-time value as 0 ensures that links get aggregated immediately.
Related Command
157
VS-2024-F
no lacp timeout
Syntax
Description
long
short
Mode
Package
Defaults
long
Example
The long timeout value means that LACP PDU will be sent every 30 seconds
and LACP timeout value (no packet is received from peer ) is 90 seconds.
The short timeout value means that LACP PDU will be sent every 1 second and
timeout value is 3 seconds.
Related Command
158
no lacp rate
Syntax
Description
normal
Package
Defaults
normal
Example
The normal timeout value means that LACP PDU will be sent every 30 seconds
and LACP timeout value (no packet is received from peer) is 90 seconds.
The fast timeout value means that LACP PDU will be sent every 1 second and
timeout value is 3 seconds.
159
VS-2024-F
Related Command
7.12 lacp
This command sets the LACP Actor Admin key and/or LACP mode for the port.
Syntax
Description
adminkey
mode
LACP mode
Mode
Package
Defaults
mode
Example
active
This command can be configured only after configuring the default port.
Related Command
default port - Configures the default physical interface for the port channel.
160
no default port
Syntax
Description
interfacetype
Interface Type
interfaceid
Interface Identifier
Mode
Package
Example
Related Commands
lacp - Sets the LACP Actor Admin key and/or LACP mode for the port.
161
VS-2024-F
Mode
Package
Defaults
Example
162
shutdown port-channel
no shutdown port-channel
Mode
Package
Example
When shutdown, all resources used by the Link Aggregation Module are released to
the system.
Related Commands
163
VS-2024-F
Syntax
Description
164
initshutdown
mgmt
Management traces
data
events
Event traces
packet
os
failall
buffer
Buffer traces
all
All traces
Mode
Package
Defaults
init-shutdown
Example
Syntax
Description
all
All traces
detail
error
165
VS-2024-F
event
Event traces
idb
Mode
Package
Example
Syntax
Description
166
channelgroupnumber
detail
loadbalance
port
portchannel
Port-channel information
summary
protocol
Mode
Package
Example
167
VS-2024-F
------------------
Port : Gi0/1
-------------
= 128
= 2 secs
LACP Port
Port
State
Priority
Admin Oper
Key
Port
Key Number
Port
State
-----------------------------------------------Gi0/1
Bundle
128
0x1
0xbe
Port-channel : Po1
------------------
Number of Ports = 1
HotStandBy port = null
Port state = Port-channel Ag-Inuse
Protocol = LACP
Aggregator-MAC 00:01:02:03:04:19
Default Port = None
port
Protocol :LACP
Port : Gi0/1
-------------
= 128
= 2 secs
Port : Gi0/2
-------------
= 128
= 2 secs
LACP Port
Admin Oper
Port
Port
169
VS-2024-F
Port
State
Priority
Key
Key Number
State
-----------------------------------------------Gi0/1
Bundle
128
0x1
0xbc
Gi0/2
Bundle
128
0x2
0xbc
port-channel
Port-channel : Po1
-------------------
Number of Ports = 1
HotStandBy port = null
Port state = Port-channel Ag-Inuse
Protocol = LACP
Aggregator-MAC 00:01:02:03:04:19
Default Port = None
00:01:02:03:04:01
Flags:
170
D - down
P - in port-channel
I - stand-alone
U - in-use
Group
Port-channel
Protocol
Ports
---------------------------------------------------------1
Po1(U)
LACP
Gi0/1(P),Gi0/2(D)
protocol
If the channel group number is not specified details on all channels are displayed.
Related Commands
171
VS-2024-F
Syntax
Description
channelgroupnumber
detail
loadbalance
port
portchannel
Port-channel information
summary
protocol
redundancy3
Synced messages
Mode
Package
Metro
Example
172
---------------------------------Channel Group : 1
Pseudo port-channel = Po1
CurrentWhile Split Interval Tmr Count = 1
Synced Partner Information for Port : Gi0/1
-----------------------------------
Partner System ID
: 00:11:22:33:44:55
Flags
: A
: 128
: 1
Channel Group : 1
Pseudo port-channel = Po1
CurrentWhile Split Interval Tmr Count = 1
: 00:11:22:33:44:55
Flags
: A
: 128
: 1
173
VS-2024-F
If the channel group number is not specified details on all channels are displayed.
Related Commands
Syntax
Description
etherchannel
Mode
Package
Example
174
Mode : Active
Pseudo port-channel = Po2
LACP port-priority
= 128
= 2 secs
Port
State
LACP Port
Admin
Oper
Port
Port
Priority
Key
Key
Number
State
------------------------------------------------------------Gi0/1
Bundle
128
0x1
0x3c
= 128
= 2 secs
Port : Gi0/2
175
VS-2024-F
-------------
= 128
= 2 secs
Port
State
LACP Port
Admin
Oper
Port
Port
Priority
Key
Key
Number
State
------------------------------------------------------------Gi0/1
Bundle
128
0x1
0x3c
Gi0/2
Bundle
128
0x2
0x3c
Port-channel : Po2
-------------------
Number of Ports = 2
HotStandBy port = null
Port state = Port-channel Ag-Inuse
Protocol = LACP
Aggregator-MAC
00:01:02:03:04:23
Related Commands
176
Syntax
Description
portchannel
counters
Traffic information
neighbor
Neighbor information
detail
Mode
Example
Marker
Recv
Marker Response
Sent
Recv
LACPDUs
Pkts Err
-----------------------------------------Channel group: 1
-----------------Gi0/1
394
352
Gi0/2
318
297
177
VS-2024-F
Flags:
A - Device is in Active mode
P - Device is in Passive mode
Port Gi0/1
---------Partner System ID
: 00:01:02:03:04:21
Flags
: P
: 128
: 2
: 0x3c
Aggregation
Distributing
State
Aggregation,
Sync,
Collecting,
Port Gi0/2
---------Partner System ID
: 00:01:02:03:04:21
Flags
: P
: 128
: 2
: 0x3c
Aggregation
Distributing
178
State
Aggregation,
Sync,
Collecting,
Related Commands
179
VS-2024-F
Chapter
8
8.Syslog
Syslog is a protocol used for capturing log information for devices on a network. The syslog protocol
provides a transport to allow a machine to send event notification messages across IP networks to event
message collectors, also known as syslog servers. The protocol is simply designed to transport the event
messages.
One of the fundamental tenets of the syslog protocol and process is its simplicity. The transmission of
syslog messages may be started on a device without a receiver being configured, or even actually
physically present. This simplicity has greatly aided the acceptance and deployment of syslog.
logging
logging synchronous
mailserver
sender mail-id
receiver mail-id
cmdbuffs
service timestamps
clear logs
syslog mail
syslog filename-one
syslog filename-two
180
syslog filename-three
syslog profile
logging-file
logging server
mail server
syslog relay
show logging
181
VS-2024-F
8.1 logging
This command enables Syslog server and configures the Syslog Server IP address, the log-level and
other Syslog related parameters. The no form of the command disables Syslog server and resets the
configured Syslog server IP address, the log-level and other Syslog related parameters.
Syntax
Description
182
ip-address
buffered
console
facility
severity
alerts
critical
Critical conditions
debugging
Debugging messages
emergencies
System is unusable
errors
Error conditions
informational
Information messages
notification
warnings
Warning conditions
on
Syslog enabled
Mode
Package
Defaults
console
enabled
severity
informational,
configuration.
when
no
option
is
selected
while
Example
buffered
50
facility
local0
The log file is stored in ASCII text format. The Privileged EXEC command is used to
display its contents
The logging process controls the distribution of logging messages to the various
destinations, such as the logging buffer, logging file, or Syslog server
The existing syslog buffers will not be cleared and none of the configured options will
be changed, when the Syslog feature is disabled
Related Command
183
VS-2024-F
Syntax
Description
severity
limit
Mode
Package
Defaults
severity
informational,
configuration.
when
no
option
is
selected
while
184
50
The log file is stored in ASCII text format. The Privileged EXEC command is used to
The logging process controls the distribution of logging messages to the various
destinations, such as the logging buffer, logging file, or Syslog server.
The existing syslog buffers will not be cleared and none of the configured options will
be changed, when the Syslog feature is disabled.
Related Command
185
VS-2024-F
8.3 mailserver
This command sets the mail server IP address to be used for sending email alert messages and the no
form of the command re-sets the mail server IP address used for sending email alert messages.
mailserver <ip-address>
no mailserver
Mode
Package
Example
Initially, the mailserver has to be configured, for the show email alerts command.
Related Commands
logging - Enables Syslog Server and configures the Syslog Server IP address, the log-level and
other Syslog related parameter
186
no sender mail-id
Mode
Package
Defaults
syslog@Datacom Systems.com
Example
Primarily, the mailserver must have been configured for this command
The sender and receiver email-ids are mandatory for email alert messages to be
sent.
Related Commands
mailserver - Sets the mail server IP address to be used for sending email alert messages
logging - Enables Syslog Server and configures the Syslog Server IP address, the log-level and
other Syslog related parameter
187
VS-2024-F
Mode
Package
Defaults
admin@DatacomSystems.com
Example
Primarily, the mailserver must have been configured for this command
The sender and receiver email-ids are mandatory for email alert messages to be
sent
Related Commands
mailserver - Sets the mail server IP address to be used for sending email alert messages
logging - Enables Syslog Server and configures the Syslog Server IP address, the log-level and
other Syslog related parameter
188
8.6 cmdbuffs
This command configures the number of syslog buffers for a particular user.
Syntax
Description
user name
User Name
no.of
buffers
Mode
Package
Defaults
50
Example
CLI related events like commands given by the user, login/logout etc can be logged on
to the Syslog Server.
Related Commands
logging - Enables Syslog Server and configures the Syslog Server IP address, the log-level and
other Syslog related parameter
189
VS-2024-F
service timestamps
no service timestamps
Mode
Package
Defaults
Enabled
Example
iss(config)#service timestamps
When enabled, the messages (log and email alert messages) will hold the time
stamp information
When disabled, the time stamp information will not be carried with the messages
sent to the log and mail servers
Related Commands
logging - Enables Syslog Server and configures the Syslog Server IP address, the log-level and
other Syslog related parameter
190
clear logs
Mode
Package
Example
Related Commands
logging - Enables Syslog Server and configures the Syslog Server IP address, the log-level and
other Syslog related parameter
191
VS-2024-F
syslog mail
no syslog mail
Mode
Package
Example
Related Commands
192
syslog localstorage
no syslog localstorage
Mode
Package
Example
Related Commands
syslog filename-one - Configures the file name to store the syslog messages.
syslog filename-two - Configures the file name to store the syslog messages.
syslog filename-three - Configures the file name to store the syslog messages
193
VS-2024-F
Mode
Package
Example
Related Commands
show syslog file-name - Displays the Syslog local storage file name
194
Mode
Package
Example
Related Commands
show syslog file-name - Displays the Syslog local storage file name
195
VS-2024-F
Mode
Package
Example
Related Commands
show syslog file-name - Displays the Syslog local storage file name
196
no syslog relay-port
Mode
Package
Example
Related Commands
syslog relay transport type - Sets the Syslog relay transport type either as udp or tcp
197
VS-2024-F
no syslog profile
Syntax
Description
raw
Mode
Package
Example
Related Commands
198
8.16 logging-file
This command adds an entry in to file table. The no form of command deletes an entry from the file table.
Syntax
Description
short
string
Mode
Package
Example
Related Commands
199
VS-2024-F
Syntax
Description
short
ipv4,ipv6
port
Port number
udp,
tcp,beep
Mode
Package
200
Related Commands
mail-server
<string(50)>
<short(0-191)>
{ipv4
<ucast_addr>
|ipv6
<ip6_addr>}
Syntax
Description
short
ipv4,
ipv6
Mode
Package
201
VS-2024-F
Example
Related Commands
syslog relay
no syslog relay
Mode
Package
Example
202
Related Commands
syslog relay transport type - Sets the Syslog relay transport type either as udp or tcp
syslog relay - port - Sets the syslog port through which it receives the syslog messages
Syntax
Description
udp
tcp
Mode
Package
Example
203
VS-2024-F
Related Commands
show syslog relay transport type - Displays the Syslog relay transport type
show logging
Mode
Package
204
: enabled(Number of messages 0)
Console logging
: enabled(Number of messages 0)
: Debugging
Log server IP
: 10.0.0.1
Facility
: Default (local0)
Buffered size
: 100
Related Commands
logging - Enables Syslog Server and configures the Syslog Server IP address, the log-level and
other Syslog related parameter
205
VS-2024-F
Mode
Package
Example
: 12.0.0.3
Related Commands
mailserver - Sets the mail server IP address to be used for sending email alert messages
Mode
Package
Example
: Relay
Related Commands
207
VS-2024-F
Mode
Package
Example
: Enabled
Related Commands
208
Mode
Package
Example
: Enabled
Related Commands
209
VS-2024-F
show logging-file
Mode
Package
Example
File-Name
--------
----------
134
iss1
134
iss2
134
iss3
Related Commands
210
show logging-server
Mode
Package
Example
Address-Type
IpAddress
Port
Trans-Type
--------
------------
---------
----
----------
129
ipv4
12.0.0.2
514
udp
134
ipv4
12.0.0.1
514
udp
Related Commands
211
VS-2024-F
show mail-server
Mode
Package
Example
Priority
Address-Type
IpAddress
Receiver Mail-Id
--------
------------
---------
----------------
134
ipv4
12.0.0.100
root@localhost
Related Commands
212
Mode
Package
Example
: 251
Related Commands
syslog relay - port - Sets the syslog port through which it receives the syslog messages
213
VS-2024-F
Mode
Package
Example
: raw
Related Commands
214
Mode
Package
Example
Related Commands
syslog relay transport type - Sets the Syslog relay transport type either as udp or tcp
syslog relay - port - Sets the syslog port through which it receives the syslog messages
215
VS-2024-F
Mode
Package
216
Related Commands
syslog filename-one - Configures the file name to store the syslog messages.
syslog filename-two - Configures the file name to store the syslog messages.
syslog filename-three - Configures the file name to store the syslog messages
217
VS-2024-F
Mode
Package
Example
: Enabled
: Enabled
Syslog Port
: 251
Syslog Role
: Relay
Related Commands
218
Chapter
9
9.VLAN
VLANs (Virtual LANs) can be viewed as a group of devices on different physical LAN segments which can
communicate with each other as if they were all on the same physical LAN segment, that is, a network of
computers that behave as if they are connected to the same wire even though they may actually be
physically located on different segments of a LAN. VLANs are configured through software rather than
hardware, which makes them extremely flexible.
VLAN provides the following benefits for switched LANs:
The list of CLI commands for the configuration of VLAN are common to both Single Instance and
Multiple Instance except for a difference in the prompt that appears for the Switch with Multiple
Instance support.
The parameters specific to Multiple Instance are stated so, against the respective parameter
descriptions in this document.
The output of the Show commands differ for Single Instance and Multiple Instance. Hence
both the output are documented while depicting the show command examples.
219
VS-2024-F
set vlan
vlan
interface range
base bridge-mode
mac-vlan
subnet-vlan
protocol-vlan
map protocol
set gvrp
set gmrp
mac-map
map subnet
switchport filtering-utility-criteria
mac-address-table aging-time
bridge-mode- Metro
l2protocol-tunnel cos
wildcard
ports
vlan active
220
forward-all
forward-unregistered
switchport acceptable-frame-type
switchport ingress-filter
port mac-vlan
port protocol-vlan
switchport mode
vlan restricted
group restricted
vlan max-traffic-class
vlan map-priority
shutdown garp
shutdown vlan
debug vlan
show vlan
show forward-all
show forward-unregistered
show protocol-vlan
show mac-vlan
show mac-address-table
221
VS-2024-F
show wildcard
The following commands can be executed only in a Linux environment and cannot be executed on the
target.
shutdown vlan
set vlan
222
Syntax
Description
enable
disable
Mode
Package
Defaults
enable
Example
The configuration can be set to disabled if and only if, GVRP and GMRP are
disabled.
Related Commands
show vlan device info - Displays the VLAN global status variables
223
VS-2024-F
9.2 vlan
This command configures a VLAN in the switch and is also used to enter into the config-VLAN mode. The
no form of the command deletes a VLAN from the switch.
vlan <vlan-id(1-4094)>
no vlan <vlan-id(1-4094)>
Mode
Package
Defaults
vlan-id
Example
iss(config)# vlan 4
This command is used in PBB bridge mode to create customer, service and
backbone VLANs.
Related Command
224
Syntax
Description
enable
disable
Mode
Package
Defaults
enable
Example
225
VS-2024-F
Syntax
Description
enable
disable
default
Mode
Package
Default
Enable
Example
226
<slot/port-port>}
{vlan <vlan-
Syntax
Description
interfacetype
Interface type.
slot/portport
vlan
VLAN identifier.
Mode
Package
Example
For port channel range, the specified range must be configured using the
interface command.
Related Commands
Error! Reference source not found. Enters into the interface mode
227
VS-2024-F
Error! Reference source not found. description - Displays the interface status and
configuration
Syntax
Description
dot1dbridge
dot1q-vlan
Mode
Package
Defaults
dot1q-vlan
Example
To configure as dot1d-bridge:
PNAC/ LA/ GARP/Snooping/LLDP needs to be shutdown.
Related Commands
228
show vlan device info: Displays the VLAN related global status variables.
9.7 mac-vlan
This command enables MAC-based VLAN for all the available interfaces of the VLAN. The no form of the
command disables MAC-based VLAN on the device.
mac-vlan
no mac-vlan
Mode
Package
Defaults
Disabled
Example
iss(config)# mac-vlan
Related Commands
show vlan device info - Displays the VLAN global status variables
229
VS-2024-F
9.8 subnet-vlan
This command enables the Subnet-VLAN based classification on all ports. The no form of the command
disables Subnet-VLAN based classification on all the ports.
subnet-vlan
no subnet-vlan
Mode
Package
Defaults
disabled
Example
iss(config)# subnet-vlan
Related Commands
230
show vlan device info - Displays the VLAN related global status variables
9.9 protocol-vlan
This command enables Protocol-VLAN based classification on all the ports. The no form of the command
disables Protocol-VLAN based classification on all ports.
protocol-vlan
no protocol-vlan
Mode
Package
Defaults
Enabled
Example
iss(config)# protocol-vlan
Related Commands
show vlan device info - Displays the VLAN related global status variables
231
VS-2024-F
Syntax
Description
ip | novell
| netbios |
appletalk |
Protocol types
other
Group ID.
enet-v2
snap
llcOther
snap8021H
snapOther
protocolsgroup
|
|
|
|
Mode
Package
Example
232
Related Command
Syntax
Description
enable
disable
Mode
Package
Defaults
enable
Example
Related Commands
show vlan device info - Displays the VLAN related global status variables
233
VS-2024-F
Syntax
Description
interfacetype
Interface type
interfaceid
Interface Id
enable
disable
Mode
Package
Defaults
enable
Example
234
disable
The value enable indicates that GVRP is enabled on the current port, as long as
global GVRP status is also enabled for the device
If port GVRP state is disabled, but global GVRP status is still enabled, then
GVRP is disabled on current port. Any GVRP packet received will be discarded
and no GVRP registrations will be propagated from other ports
Related Command
show vlan port config - Displays the vlan related parameters specific for ports
Syntax
Description
enable
disable
interfaceid
Interface identifier
Mode
Package
Defaults
enable
Example
235
VS-2024-F
The value enable indicates that GVRP is enabled on the current port, as long as
global GVRP status is also enabled for the device
If port GVRP state is disabled, but global GVRP status is still enabled, then
GVRP is disabled on current port. Any received GVRP packets will be discarded
and no GVRP registrations will be propagated from other ports
Related Command
show vlan port config - Displays the vlan related parameters specific for ports
Syntax
Description
enable
disable
Mode
Package
Defaults
enable
Example
236
show vlan device info - Displays the VLAN related global status variables
Syntax
Description
interfacetype
Interface type
interfaceid
Interface ID
enable
disable
Mode
Package
237
VS-2024-F
Defaults
enable
Example
disable
The value enable indicates that GMRP is enabled on this port in all VLANs as
long as GMRP Status is also enabled globally
The value disable indicates that GMRP is disabled on this port in all VLANs; any
GMRP packet received will be silently discarded and no GMRP registrations will
be propagated from other ports
Related Command
show vlan port config - Displays the vlan related parameters specific for ports
Syntax
Description
ivl
svl
hybrid
Mode
Package
238
ivl
Example
A change in the configuration of the VLAN learning mode will be effective only after
the next reboot of the system.
Related Commands
show vlan device info - Displays the VLAN related global status variables
Error! Reference source not found. - Displays the current information stored in the NVRAM
Syntax
Description
Mode
vlan
239
VS-2024-F
Package
Defaults
Example
The MST instance of all VLANs in the list must be the same.
Any other VLAN with the same FID must have MST instance same as that of the
VLANs in the list for this command to succeed.
Related Commands
vlan learning mode - Configures the VLAN learning mode for the switch
vlan default hybrid type - Configures the default learning type for VLANs when the
operational learning mode of the switch is hybrid
show fid - detail - Displays forwarding database identifier used by VLANs in the switch
Syntax
Description
Mode
240
enable
disable
Defaults
enable
Example
This command has to be executed prior to executing the vlan max traffic
class command.
Related Commands
show vlan device info - Displays the VLAN related global status variables
show vlan traffic-classes - Displays the traffic class information of all the available interfaces
9.19 mac-map
This command configures the VLAN-MAC address mapping. The no form of this command is used to
delete the specific mac map entry.
no mac-map <aa:aa:aa:aa:aa:aa>
Syntax
Description
aa:aa:aa:aa:aa:aa
MAC address
241
VS-2024-F
vlan
VLAN Identifier
mcast-bcast
Mode
Package
Example
Related Commands
mac-vlan - Enables MAC-based VLAN for all the available interfaces of the VLAN
Syntax
Description
242
ip-subnetaddress
Subnet address
vlan-id
arp
VLAN identifier
-
Mode
Interface Mode
Package
Default
allow
Example
Related Commands :
Mode
243
VS-2024-F
Package
Default
default
Example
mac-address-table static unicast <aa:aa:aa:aa:aa:aa> vlan <vlan-id(14094)> [{recv-port <ifXtype> <ifnum> }] interface ([<interface-type>
<0/a-b, 0/c, ...>] [<interface-type> <0/a-b, 0/c, ...>] [port-channel
244
mac-address-table static unicast <aa:aa:aa:aa:aa:aa> vlan <vlan-id(14094)> [{recv-port <ifXtype> <ifnum> | service-instance <integer(25616777214)>}] interface ([<interface-type> <0/a-b,0/c,...>] [<interfacetype> <0/a-b,0/c,...>] [port-channel <a,b,c-d>]) [connection-identifier
<ucast_mac>][status { permanent | deleteOnReset | deleteOnTimeout }]
no mac-address-table static unicast <aa:aa:aa:aa:aa:aa> vlan <vlan-id(14094)> [{recv-port <ifXtype> <ifnum> | service-instance <integer(25616777214)>}]
Syntax
Description
aa:aa:aa:aa:aa:aa
vlan
VLAN Identifier
recv-port
service-instance
interface
<interface-type>
<0/a-b, 0/c, ...>
port-channel
Port-channel ID
connectionidentifier
This
value
ranges
245
VS-2024-F
status
Mode
Package
Defaults
status
Example
permanent
VLAN/Service-instance must have been configured and member ports must have been
configured for the specified VLAN/Service-instance.
Related Commands
show mac-address-table static unicast - Displays the statically configured unicast address
from the MAC address table.
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode.
service instance - Used to enter the service instance mode for performing ISID specific
operations.
246
Syntax
Description
<aa:aa:aa:aa:aa:aa>
[recv-port
aa:aa:aa:aa:aa:aa
recv-port
interface
<interface-type>
<0/a-b, 0/c, ...>
port-channel
Port-channel ID
status
Mode
Package
Defaults
status
Example
permanent
247
VS-2024-F
Related Commands
show dot1d mac-address-table static unicast - Displays Static Unicast MAC Address
table
248
mac-address-table static multicast <aa:aa:aa:aa:aa:aa> vlan <vlan-id(14094)> [{recv-port <ifXtype> <ifnum>>}] interface ([<interface-type>
<0/a-b, 0/c, ...>] [<interface-type> <0/a-b, 0/c, ...>] [port-channel
<a,b,c-d>]]) [forbidden-ports ([<interface-type> <0/a-b, 0/c, ...>]
[<interface-type> <0/a-b, 0/c, ...>] [port-channel <a,b,c-d>]]) [status
{ permanent | deleteOnReset | deleteOnTimeout }]
mac-address-table static multicast <aa:aa:aa:aa:aa:aa> vlan <vlan-id(14094)> [{recv-port <ifXtype> <ifnum> | service-instance <integer(25616777214)>}] interface ([<interface-type> <0/a-b,0/c,...>] [<interfacetype> <0/a-b,0/c,...>] [port-channel <a,b,c-d>]])
[forbidden-ports
([<interface-type> <0/a-b,0/c,...>] [<interface-type> <0/a-b,0/c,...>]
[port-channel <a,b,c-d>]]) [status { permanent | deleteOnReset |
deleteOnTimeout }]
Syntax
Description
aa:aa:aa:aa:aa:aa
vlan
VLAN Identifier
recv-port
service-instance
interface
<interface-type>
<0/a-b, 0/c, ...>
This
value
ranges
249
VS-2024-F
port-channel
Port channel ID
forbidden-ports
<interface-type>
<0/a-b, 0/c, ...>
port-channel
Port-channel ID
status
Mode
Package
Defaults
status
Example
permanent
VLAN/Service-instance must have been configured and member ports must have been
configured for the specified VLAN/Service-instance.
Related Command
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode.
service instance Used to enter the service instance mode for performing ISID specific
operations.
250
no
mac
address-table
static
[interface <ifXtype> <ifnum>]
Syntax
Description
<mcast_mac>
vlan
<vlan-id(1-4094)>
mcast_mac
vlan
interface
<interfacetype> <0/ab,
0/c,
...>
portchannel
Port-channel ID
Mode
Package
Example
VLAN/Service-instance must have been configured and member ports must have been
configured for the specified VLAN/Service-instance.
Related Command
251
VS-2024-F
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode.
service instance Used to enter the service instance mode for performing ISID specific
operations.
mac-address-table
static
multicast
<aa:aa:aa:aa:aa:aa>
[recv-port
<interface-type> <interface-id>] interface ([<interface-type> <0/ab,0/c,...>] [<interface-type> <0/a-b,0/c,...>] [port-channel <a,b,cd>]]) [status { permanent | deleteOnReset | deleteOnTimeout }]
Syntax
Description
<aa:aa:aa:aa:aa:aa>
[recv-port
aa:aa:aa:aa:aa:aa
recv-port
interface
<interface-type>
<0/a-b, 0/c, ...>
port-channel
Port channel ID
port-channel
Port-channel ID
status
252
Package
Defaults
status
Example
permanent
Related Command
show dot1d mac-address-table static multicast - Displays Static Multicast MAC Address
table.
253
VS-2024-F
no mac-address-table aging-time
Mode
Package
Defaults
300
Example
If traffic on an interface is not very frequent, then the aging time must be
increased to record the dynamic entries for a longer time. Increasing the time
can reduce the possibility of flooding.
Related Command
show mac-address-table aging-time - Displays the MAC address-table with ageing time
254
Syntax
Description
Mode
Package
provider-edge
customer
provider
providercore
provideredge
providerbackboneicomp
providerbackbonebcomp
Defaults
Example
iss(config)#
bridge-mode provider-backbone-icomp
255
VS-2024-F
Only one bridge mode can be set at a time. If multiple bridge modes are required,
multiple instances of the bridge should be run.
Related Command
no Error! Reference source not found. - Starts MRP module in the switch
show vlan device info - Displays the VLAN related global status variables
256
no l2protocol-tunnel cos
Mode
Package
Defaults
cos - value
Example
The configured priority value will be effective only when the L2 Protocol tunnel STP is
enabled on an interface
Related Command
show l2protocol-tunnel - Displays the entries in VLAN tunnel protocol table containing the number
of ingress or egress STP BPDUs tunneled
257
VS-2024-F
Syntax
Description
interfacetype
Type of interface
interfaceid
Interface ID
Mode
Package
Example
If executed without the optional parameters this command clears the STP tunnel
counters of all the available interfaces.
Related Command
show l2protocol-tunnel - Displays the entries in VLAN tunnel protocol table containing the number
of ingress or egress STP BPDUs tunneled
258
Syntax
Description
vlan
VLAN Identifier
Mode
Package
Example
If executed without the optional parameters this command clears all the VLAN counters.
Related Command
259
VS-2024-F
Syntax
Description
ivl
svl
Mode
Package
Example
This command is successful when the VLAN learning mode is not hybrid.
This configuration is useful when the switch is restarted with VLAN learning
mode changed to Hybrid.
Related Commands
260
vlan learning mode - Configures the VLAN learning mode for the switch
show fid - detail - Displays forwarding database identifier used by VLANs in the switch
9.33 wildcard
This command configures the wildcard vlan entry for a given mac address and the no form of the
command deletes the wildcard entry for the same.
wildcard {mac-adddress <mac_addr> | broadcast} interface ([<interfacetype> <0/a-b, 0/c, ...>] [<interface-type> <0/a-b, 0/c, ...>] [portchannel <a,b,c-d>])
Syntax
Description
macadddress /
broadcast
Interface
portchannel
Port-channel ID
Mode
Package
261
VS-2024-F
Example
Syntax
Description
enable
disable
Mode
Config-VLAN Mode
Package
Defaults
enable
262
This configuration will not take effect on VLANs with the number of member ports greater
than or equal to 3.
Related Command
show vlan learning params - Displays unicast-MAC learning status and learning limit configured for
the specified VLAN
Syntax
Description
learning
limit
Mode
Config-VLAN Mode
Package
263
VS-2024-F
Defaults
A value calculated depending on the dynamic unicast size and the maximum number of
VLANs supported in the system.
Example
The maximum limit that can be configured for a VLAN is dependent on the total size
available for dynamic unicast entries in the forwarding table and on the maximum number
of VLANs that can be supported.
This configuration is allowed only in case of independent VLAN learning mode.
Related Command
show vlan learning params - Displays unicast-MAC learning status and learning limit configured for
the specified VLAN
Syntax
Description
264
limit value
Package
Example
The limiting value must not be less than any of the unicast MAC learning limits set
for the VLANs.
The upper limiting value that can be set is determined by the underlying hardware.
Related Command
show vlan device info - Displays the VLAN related global status variables.
9.37 ports
This command configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports. The tagged and untagged member ports defined by this command are used for egress
tagging for a VLAN at a port.
For ports in PBB bridge mode, this command is used to define member ports for a
VLAN in a component.
For BVLAN in a B component, these member ports can be only PNP.
265
VS-2024-F
ports
([<interface-type>
<0/a-b,0/c,...>]
[<interface-type>
<0/ab,0/c,...>] [port-channel <a,b,c-d>]) [untagged <interface-type> <0/ab,0/c,...> [<interface-type> <0/a-b,0/c,...>] [port-channel <a,b,cd>][all])] [forbidden <interface-type> <0/a-b,0/c,...> [<interface-type>
<0/a-b,0/c,...>] [port-channel <a,b,c-d>]] [name <vlan-name>]
no ports [<interface-type> <0/a-b,0/c,...>] [<interface-type> <0/ab,0/c,...>] [port-channel <a,b,c-d>] [all] [untagged ([<interface-type>
<0/a-b,0/c,...>]
[<interface-type>
<0/a-b,0/c,...>]
[port-channel
<a,b,c-d>]
[all])]
[forbidden
([<interface-type>
<0/a-b,0/c,...>]
[<interface-type> <0/a-b,0/c,...>] [port-channel <a,b,c-d>] [all])]
[name <vlan-name>]
Syntax
Description
266
ports
<interfacetype> <0/ab,
0/c,
...>
portchannel
<a,b,c-d>
Port-channel ID
untagged
<interfacetype> <0/ab,
0/c,
...>
forbidden
<interfacetype> <0/ab,
0/c,
...>
portchannel
Port-channel ID
all
name
Package
Example
Member-ports represent the set of ports permanently assigned to the egress list
Untagged ports represent the set of ports which transmits untagged frames
All the existing commands in VLAN configuration mode are also used for the
configuration of a B-VLAN of a PBB.
Related Command
vlan active
267
VS-2024-F
Mode
Config-VLAN Mode
Package
Example
9.39 forward-all
This command configures the forward-all information for a VLAN specifying the set of ports to which all
multicasts must be forwarded.
The no form of the command sets the forward-all to default.
268
forward-all
([static-ports
([<interface-type>
<0/a-b,
0/c,
...>]
[<interface-type> <0/a-b, 0/c, ...>] [port-channel <a,b,c-d>] [none])]
[forbidden-ports <interface-type> <0/a-b, 0/c, ...> [<interface-type>
<0/a-b, 0/c, ...>] [port-channel <a,b,c-d>]])
no forward-all
Syntax
Description
staticports
<interfacetype> <0/ab,
0/c,
...>
portchannel
Port-channel ID
none
None
forbiddenports
<interfacetype> <0/ab,
0/c,
...>
portchannel
Port-channel ID
Mode
Config-VLAN Mode
Package
Example
269
VS-2024-F
static-ports are the set of ports configured by the user in this VLAN to which the
multicast group-addressed frames are to be forwarded
forbidden-ports are the set of ports configured by the user in this VLAN to which the
multicast group-addressed frames are NOT to be forwarded
Related Command
270
9.40 forward-unregistered
This command configures the forward unregistered information for a VLAN for which there is no specific
forwarding information. The no form of the command sets the forward-unregistered information to default.
no forward-unregistered
Syntax
Description
staticports
<interfacetype> <0/ab,
0/c,
...>
portchannel
Port-channel ID
none
None
forbiddenports
<interfacetype> <0/ab,
0/c,
...>
portchannel
Port-channel ID
Mode
Config-VLAN Mode
Package
Example
static-ports are the set of ports configured by the user in this VLAN to which the
multicast group-addressed frames are to be forwarded
forbidden-ports are the set of ports configured by the user in this VLAN to which the
multicast group-addressed frames are NOT to be forwarded
Related Command
271
VS-2024-F
no switchport pvid
Syntax
Description
vlan-id
Mode
Example
If the received frame cannot be classified as MAC-based or port-and-protocolbased, then the PVID associated with the port is used.
For ports in PBB bridge mode, PVID can be configured on CNP and CBP.
Usage is based on acceptable frame type of the port. Packets will be either
dropped or accepted at ingress. Once a packet is accepted, if packet is having
a tag, it will be processed against that tag. Otherwise, the packet will be
processed against PVID.
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports
272
Syntax
Description
vlan-id
Mode
Example
If the received frame cannot be classified as MAC-based or port-and-protocolbased, then the PVID associated with the port is used.
For ports in PBB bridge mode, PVID can be configured on CNP (Customer
Network Port) and CBP (Customer Backbone Port).
Usage is based on acceptable frame type of the port. Packets will be either
dropped or accepted at ingress. Once a packet is accepted, if the packet is
having a tag, it will be processed against that tag. Otherwise, the packet will
be processed against PVID.
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports
273
VS-2024-F
switchport
acceptable-frame-type
untaggedAndPrioritytagged }
{all
tagged
no switchport acceptable-frame-type
Syntax
Description
all
tagged
untaggedAndP
rioritytagge
d
Port Type
CNP STagged
S-Tag
CNP CTagged
C-Tag
S-Tag
PIP
I-Tag
CBP
I-Tag
PNP
B-Tag or S Tag
Mode
Package
Defaults
all
Example
274
When set to "tagged" the device will discard untagged and priority tagged frames
received on the port and will process only the VLAN tagged frames
When set to "all" untagged frames or priority-tagged frames received on the port are
also accepted
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports.
switchport ingress-filter
no switchport ingress-filter
Mode
Package
Defaults
Disabled
Example
When the ingress filtering is disabled using the no form of the command,
the device accepts all incoming frames
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports
275
VS-2024-F
port mac-vlan
no port mac-vlan
Mode
Package
Defaults
Disabled
Example
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports
276
no port subnet-vlan
Mode
Package
Defaults
Disabled
Example
Related Command
277
VS-2024-F
port protocol-vlan
no port protocol-vlan
Mode
Package
Defaults
Enabled
Example
The value enable indicates that the VLAN classification on this port is port and
protocol based as long as the port and protocol based classification is enabled
globally for the device.
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports
278
<Group
id
integer(0-2147483647)>vlan
Syntax
Description
Group id
Group ID
vlan
VLAN ID
Mode
Package
Example
Related Commands
map protocol - Adds a protocol to a protocol group for protocol based VLAN learning
279
VS-2024-F
Mode
Package
Defaults
Example
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports
280
no switchport mode
Syntax
Description
access
trunk
hybrid
dynamic
Mode
Package
281
VS-2024-F
Defaults
Hybrid Mode
Example
It is not possible to set the switchport mode status to Trunk/Hybrid if the tunnel is
enabled.
It is not possible to configure the switchport mode status to trunk if the port is an
untagged member of a VLAN.
It is not possible to configure the switchport mode status to access if the ports
acceptable frame type is All/Tagged.
Related Commands
show vlan port config - Displays the VLAN related parameters specific for ports
Mode
Package
Defaults
Disabled
Example
282
Bridge Mode must be set to 'provider' for the dot1q-tunneling status to be enabled
It is not possible to set the dot1q-tunnel status on the port if the port mode is not
'access' type
Related Commands
show vlan device info - Displays the VLAN related global status variables
Syntax
Description
join
Join Time
leave
Leave Time
leaveall
Leaveall Time
Mode
Package
283
VS-2024-F
Defaults
Example
join
20
leave
60
leaveall
1000
Leave Timer must be greater than 2 times Join Timer and Leaveall Timer must
be greater than Leave Timer
The GARP timer configuration will be applied to the GARP applications (GMRP
and GVRP) on the specified interface.
Related Command
show garp timer - Displays the GARP timer information of the available interfaces
Syntax
Description
enable
disable
Mode
Package
284
disable
Example
If restricted VLAN registration rules are enabled, then a VLAN is learnt dynamically
from the GVRP frame only if the specific VLAN is statically configured in the switch. If
restricted VLAN registration rules are disabled, then GVRP packets are processed
normally and the VLANs are learnt dynamically even if they are not statically configured
in the switch.
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports
Syntax
Description
enable
disable
Mode
Package
285
VS-2024-F
Defaults
disable
Example
Related Command
show vlan port config - Displays the VLAN related parameters specific for ports
no vlan max-traffic-class
Syntax
Description
286
MAX Traffic
class
Package
Defaults
Example
Related Command
show vlan traffic-classes - Displays the traffic classes information of all the available interfaces
vlan map-priority
value(0-7)>
<priority
value(0-7)>
traffic-class
<Traffic
class
287
VS-2024-F
Syntax
Description
trafficclass
Mode
Package
Example
The default traffic class value depends upon the configured priority value
Following is the list of default traffic class values for different priority values
Priority
0
1
2
3
4
5
6
7
Related Command
show vlan traffic-classes - Displays the traffic classes information of all the available interfaces
shutdown garp
no shutdown garp
288
Mode
Package
Defaults
Example
Related Command
Error! Reference source not found. - Shuts down MRP module in the switch
shutdown vlan
289
VS-2024-F
no shutdown vlan
Mode
Package
Defaults
Example
start acquires the resources required by the VLAN Module to function in the
device
Related Commands
Syntax
Description
global
fwd
Forwarding Module
priority
redundancy
Mode
initshut
mgmt
Management
data
Data path
ctpl
Control Plane
dump
Packet dump
os
failall
All Failures
buffer
Buffer
all
All Traces
switch
291
VS-2024-F
Package
Defaults
Disabled
Example
Related Command
Error! Reference source not found. - Displays state of each debugging option
292
Syntax
Description
global
protocol
gmrp
gvrp
redundancy
initshut
mgmt
Management
data
Data path
ctpl
Control Plane
dump
Packet dump
os
failall
All Failures
buffer
Buffer
all
All Traces
293
VS-2024-F
switch
Mode
Package
Defaults
Disabled
Example
Related Command
Error! Reference source not found. - Displays state of each debugging option
294
Syntax
Description
brief
id
summary
switch
Mode
Package
Example
Single Instance:
iss# show vlan brief
Vlan database
------------Vlan ID
: 1
Member Ports
Untagged Ports
Forbidden Ports
: None
Name
Status
: Permanent
295
VS-2024-F
Vlan database
------------Vlan ID
: 1
Member Ports
: Gi0/49
Untagged Ports
: Gi0/49
Forbidden Ports
: None
Name
Status
: Permanent
----------------------------------------------------
Switch - cust1
Vlan database
------------Vlan ID
: 1
Member Ports
Untagged Ports
Forbidden Ports
: None
Name
Status
: Permanent
---------------------------------------------------Vlan ID
: 20
Member Ports
: Gi0/1
Untagged Ports
: Gi0/1
Forbidden Ports
: None
Name
Status
: Permanent
----------------------------------------------------
296
Vlan ID
: 30
Member Ports
: Gi0/2
Untagged Ports
: None
Forbidden Ports
: None
Name
Status
: Dynamic Gvrp
----------------------------------------------------
If the optional parameter is not specified then this command displays the VLAN
information of all the available interfaces.
Related Commands
shutdown vlan Shuts down VLAN switching. The no form of the command starts and enables
VLAN switching
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
Syntax
Description
switch
Mode
Package
Example
Single Instance:
iss# show vlan device info
Vlan device configurations
--------------------------
297
VS-2024-F
Vlan Status
: Enabled
: Enabled
Gvrp status
: Enabled
Gmrp status
: Disabled
: Enabled
: Disabled
Mac-Vlan Status
: Disabled
Subnet-Vlan Status
: Enabled
Protocol-Vlan Status
: Enabled
Bridge Mode
: Customer Bridge
Base-Bridge Mode
Traffic Classes
: Enabled
: IVL
Version number
: 1
Max Vlan id
: 4094
: 1024
: 150
Multiple Instance:
iss# show vlan device info
Switch default
298
Vlan Status
: Enabled
: Enabled
Gvrp status
: Enabled
Gmrp status
: Enabled
: Enabled
: Enabled
Mac-Vlan Status
: Disabled
Protocol-Vlan Status
: Enabled
Bridge Mode
: Customer Bridge
Traffic Classes
: Enabled
: IVL
Version number
: 1
Max Vlan id
: 4094
: 1024
: 150
Related Commands
shutdown vlan Shuts down VLAN switching. The no form of the command starts and enables
VLAN switching
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode
- Enables MAC-based VLAN for all the available interfaces of the VLAN
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
show vlan traffic-classes - Displays the traffic classes information of all the available
interfaces.
unicast-mac learning limit - Sets unicast MAC learning limit for the switch
299
VS-2024-F
Syntax
Description
switch
Mode
Package
Example
Single Instance:
iss# show vlan device capabilities
parameter
is
Multiple Instance:
iss# show vlan device capabilities
Switch - default
Vlan device capabilities
--------------------------
300
Switch - cust1
Vlan device capabilities
--------------------------
Syntax
Description
switch
Mode
Package
Example
Single Instance:
iss# show fid 2
Default Learning Type
: IVL
: 2
Vlan's
: 2,
: IVL
301
VS-2024-F
---------------------------Fid
: 1
Vlan's
: 1,
---------------------------Fid
: 2
Vlan's
: 2,
---------------------------Fid
: 3
Vlan's
: 3,
---------------------------Fid
: 4
Vlan's
: 4,
---------------------------Fid
: 5
Vlan's
: 5,
---------------------------Fid
: 6
Vlan's
: 6,
Multiple Instance:
iss# show fid 2
Switch - default
Default Learning Type
: IVL
: 2
Vlan's
: 2,
---------------------------Switch - cust1
Default Learning Type
: IVL
: 2
Vlan's
: 2,
---------------------------302
Related Commands
fid - vlan range - Configures a VLAN or a list of VLANs to use a Filtering database identified by
a filtering database identifier
vlan default hybrid type - Configures the default learning type for VLANs
303
VS-2024-F
Syntax
Description
switch
Mode
Package
Example
Single Instance:
iss# show forward-all
Vlan Forward All Table
------------------------
Vlan ID : 1
ForwardAll Ports
: Gi0/2
: Gi0/2
: Gi0/1
: Gi0/1
Vlan ID : 1
ForwardAll Ports
: Gi0/2
: Gi0/2
304
ForwardAll Ports
: Gi0/1
: Gi0/1
Related Commands
vlan - Configures a VLAN in the switch and is used to enter into the VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
305
VS-2024-F
Syntax
Description
switch
Mode
Package
Example
Single Instance:
iss# show forward-unregistered
Vlan Forward Unregistered Table
---------------------------------
Vlan ID : 1
Unreg ports
: Gi0/1
: Gi0/1
: Gi0/2
: Gi0/2
306
Vlan ID : 1
Unreg ports
: Gi0/49
: Gi0/49
Switch - cust1
Vlan ID : 1
Unreg ports
Gi0/6
: Gi0/1
: Gi0/1
: Gi0/2
: Gi0/2
Related Commands
vlan - Configures a VLAN in the switch and is used to enter into the VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
307
VS-2024-F
Syntax
Description
[{port
<interface-type>
<interface-id>
port
switch
Mode
Package
Example
Single Instance:
308
Priority
Traffic Class
-----
---------
-------------
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Multiple Instance:
iss# show vlan traffic-classes
Switch - default
Priority
Traffic Class
-----
---------
-------------
Gi0/49
Gi0/49
Gi0/49
Gi0/49
Gi0/49
Gi0/49
309
VS-2024-F
Gi0/49
Gi0/49
Switch - cust1
Port
Priority
Traffic Class
-----
---------
-------------
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/1
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Gi0/2
Gi0/2
If executed without the ports option, this command displays the priority mapped
to all the available traffic classes on the port.
Related Commands
vlan - Configures a VLAN in the switch and is used to enter into the VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
310
Syntax
Description
[{
port
<interface-type>
<interface-id>
port
switch
Mode
Package
Example
Single Instance:
iss# show garp timer port gigabitethernet 0/1
parameter
switch
is
Port
Join-time
Leave-time
Leave-all-time
-----
---------
----------
--------------
Gi0/1
200
600
10000
Multiple Instance:
iss# show garp timer
Switch - default
311
VS-2024-F
Port
Join-time
Leave-time
Leave-all-time
-----
---------
----------
--------------
Gi0/49
200
600
10000
Switch - cust1
Port
Join-time
Leave-time
Leave-all-time
-----
---------
----------
--------------
Gi0/1
200
600
10000
Gi0/2
200
600
10000
Gi0/3
200
600
10000
Gi0/4
200
600
10000
Gi0/5
200
600
10000
Gi0/6
200
600
10000
Related Commands
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
show vlan device info - Displays the VLAN related global status variables
set garp timer - Configures the GARP join time, leave time, and leaveall time in milli-seconds
312
Syntax
Description
port
switch
Mode
Package
Example
Single Instance:
iss# show vlan port config
Vlan Port configuration table
-------------------------------
313
VS-2024-F
Port Gi0/1
Port Vlan ID
: 1
: Admit All
: Disabled
Port Mode
: Hybrid
: Enabled
: Enabled
: 0
: 00:00:00:00:00:00
: Disabled
: Disabled
: Disabled
: Disabled
: Enabled
Default Priority
: 0
: Default
: Disabled
------------------------------------------------------Port Gi0/2
Port Vlan ID
: 1
: Admit All
: Disabled
Port Mode
: Hybrid
: Enabled
: Enabled
: 0
: 00:00:00:00:00:00
: Disabled
: Disabled
: Disabled
: Disabled
: Enabled
Default Priority
: 0
: Default
: Disabled
------------------------------------------------------Multiple Instance:
iss# show vlan port config
314
Switch - default
: 1
: Admit All
: Disabled
Port Mode
: Hybrid
: Enabled
: Enabled
: 0
: 00:00:00:00:00:00
: Disabled
: Disabled
: Disabled
: Enabled
Default Priority
: 0
: Peer
: Peer
: Peer
: Peer
: Peer
: Peer
: Enhanced
-------------------------------------------------------
Switch - cust1
: 20
: Admit All
: Disabled
Port Mode
: Hybrid
315
VS-2024-F
: Enabled
: Enabled
: 0
: 00:00:00:00:00:00
: Disabled
: Disabled
: Disabled
: Enabled
Default Priority
: 0
------------------------------------------------------Port Gi0/2
Port Vlan ID
: 1
: Admit All
: Disabled
Port Mode
: Hybrid
: Enabled
: Enabled
: 0
: 00:01:02:03:04:0e
: Disabled
: Disabled
: Disabled
: Enabled
Default Priority
: 0
-------------------------------------------------------
If executed with out the optional parameter this command displays the port
information of all the available ports.
Related Commands
set port gvrp / set port gvrp - enable | disable - Enables or disables GVRP on the
interface
switchport pvid / switchport access vlan - Configures the PVID (VLAN ID) that would be
assigned to untagged/priority-tagged frames/VLAN tagged frames
switchport acceptable-frame-type - Configures the acceptable frame type for the port
316
Syntax
Description
switch
Mode
Package
Example
Single Instance:
iss# show vlan protocols-group
parameter
is
Protocol
Group
-----------------------------------------Enet-v2
CLI USER MANUAL
DATACOM SYSTEMS CONFIDENTIAL
IP
1
317
VS-2024-F
Snap
Novell
-----------------------------------------Multiple Instance:
iss# show vlan protocols-group
Switch - default
Protocol Group Table
------------------------------------------------------------Frame Type
Protocol
Group
-----------------------------------------Enet-v2
IP
Snap
Novell
-----------------------------------------Related Commands
map protocol - Configures the group ID for a specific encapsulation and protocol value
combination
switchport map protocols-group - Maps the protocol group configured to a particular VLAN
identifier for the specified interface
Syntax
Description
switch
Mode
Package
Example
Single Instance:
iss# show protocol-vlan
318
Group
Vlan ID
-------------------------------------Gi0/2
Gi0/1
--------------------------------------
Multiple Instance:
iss# show protocol-vlan
Switch - default
Port Protocol Table
-------------------------------------Port
Group
Vlan ID
-------------------------------------Gi0/2
Gi0/1
--------------------------------------
Related Command
switchport map protocols-group - Maps the protocol group configured to a particular VLAN
identifier for the specified interface
Syntax
interface
<interface-type>
<interface-id>]
switch
319
VS-2024-F
Description
switch
Mode
Package
Example
Single Instance:
iss# show mac-vlan interface gigabitethernet 0/1
Mac Map Table For Port 1--Mac Vlan Disabled
--------------------------
Mac Address
Vlan ID
MCast/Bcast
-----------
-------
-----------
00:11:11:11:11:11
discard
00:22:22:22:22:22
allow
Multiple Instance:
iss# show mac-vlan switch cust1
Switch - cust1
Vlan ID
-----------
-------
00:11:22:33:44:55
Related Commands
mac-vlan - Enables MAC-based VLAN for all the available interfaces of the VLAN
show vlan device info - Displays the VLAN global status variables
Syntax
Description
interface
switch
Mode
Package
Example
Vlan ID
ARP Traffic
------------------------------------------------14.0.0.0
allow
192.168.1.0
discard
Related Commands
show vlan device info - Displays the VLAN global status variables
321
VS-2024-F
Syntax
Description
vlan
VLAN range.
switch
Mode
Package
Example
Single Instance:
iss# show vlan counters
Port Vlan statistics
-------------------------Port Gi0/1
Vlan ID
: 1
In frames
: 342
: 0
Port Gi0/1
Vlan ID
: 2
In frames
: 446
: 0
Port Gi0/2
Vlan ID
: 2
In frames
: 115
: 7
Port Gi0/2
322
Vlan ID
: 2
In frames
: 0
Out frames : 0
Discards
: 0
Multiple Instance:
iss# show vlan counters
Switch - default
: 1
In frames
: 75
Out frames : 0
Discards
: 0
--------------------------
Switch - cust1
: 1
In frames
: 0
Out frames : 0
Discards
: 0
-------------------------Port Gi0/1
Vlan ID
: 20
In frames
: 0
Out frames : 0
Discards
: 0
-------------------------Port Gi0/2
Vlan ID
: 1
In frames
: 70
Out frames : 0
Discards
: 0
--------------------------
323
VS-2024-F
Port Gi0/2
Vlan ID
: 30
In frames
: 0
Out frames : 0
Discards
: 2
--------------------------
Related Commands
vlan - Configures a VLAN in the switch and is also used to enter into the config-VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
Syntax
Description
Mode
324
vlan
VLAN range.
switch
Example
Single Instance
iss# show vlan statistics vlan 1
Unicast/broadcast Vlan statistics
------------------------------------Vlan Id
: 1
: 0
: 0
: 0
: 0
: 0
------------------------------------Multiple Instance
iss# show vlan statistics vlan 1 switch sw1
Switch sw1
: 1
Unicast frames
: 16
Broadcast frames
: 10
: 25
--------------------------------------
If VLAN ID is not specified in the command, statistics of all the VLAN existing in the
system will be displayed.
Related Command
325
VS-2024-F
Syntax
Description
vlan
VLAN range
address
MAC address
interface
Mode
Package
Example
Mac Address
Type
ConnectionId
Ports
----
-----------
----
-----------
-----
00:01:02:03:04:21
Learnt
Gi0/1
Mac Address
Type
ConnectionId
Ports
----
-----------
----
-----------
-----
00:01:02:03:04:21
Learnt
Gi0/1
01:02:03:04:05:06
Static
Gi0/1
If executed without the optional parameters this command displays all the static and
dynamic MAC entries
Related Commands
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
326
Syntax
Description
address
MAC address
interfacetype,
interface-id
switch
Context/Switch Name
Mode
Package
Example
Type
Ports
-----------
----
-----
00:01:02:03:04:21
Learnt
Gi0/2
Type
----
Ports
-----
00:01:02:03:04:21
Learnt
Gi0/2
01:02:03:04:05:06
Static
Gi0/2
If executed without the optional parameters this command displays all the
static/dynamic unicast and dynamic multicast entries
Related Commands
327
VS-2024-F
show
dot1d
mac-address-table
static
unicast
[address
<aa:aa:aa:aa:aa:aa>] [interface <interface-type> <interface-id>]
Syntax
Description
address
MAC address
interfacetype,
interface-id
Mode
Package
Example
RecvPort
Status
Ports
-----------
--------
------
-----
00:11:22:33:44:55
Permanent
Gi0/2
RecvPort
Status
Ports
-----------
--------
------
-----
00:11:22:33:44:55
Permanent
Gi0/2
328
If executed without the optional parameters this command displays all the static
unicast MAC entries
Related commands
mac-address-table static unicast Transparent Bridging Mode - Configures a static
unicast MAC address in the forwarding database when base bridge mode is transparent bridging.
show
dot1d
mac-address-table
static
multicast
[address
<aa:aa:aa:aa:aa:aa>] [interface <interface-type> <interface-id>]
Syntax
Description
address
MAC address
interfacetype,
interface-id
Mode
Package
Example
RecvPort
Type
Ports
-----------
----
-----
-----
static
Gi0/2-3
01:00:5E:01:02:03
RecvPort
Type
Ports
329
VS-2024-F
-----------
------
----
-----
01:00:5E:01:02:03
static
Gi0/2
01:00:5E:01:02:04
static
Gi0/2
If executed without the optional parameters this command displays all the static
multicast MAC entries
Related commands
mac-address-table static multicast Transparent Bridging mode- Configures a static
multicast MAC address in the forwarding database when base bridge mode is transparent bridging
show
mac-address-table
<context_name>]
Syntax
Description
count
[vlan
<vlan-id(1-4094)>]
vlan
VLAN ID
switch
Mode
Package
Example
Single Instance
iss# show mac-address-table count
switch
330
: 1
: 0
: 1
: 1
----------------------------------------
: 1
: 0
: 1
: 0
---------------------------------------Multiple Instance:
iss# show mac-address-table count switch cust1
Switch - cust1
: 1
: 0
: 0
: 0
----------------------------------------
: 0
: 0
: 0
: 0
----------------------------------------
331
VS-2024-F
: 0
: 0
: 0
: 0
----------------------------------------
If executed without the optional parameter this command displays the MAC
addresses present on all the VLANs.
Related Commands
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
This command displays the statically configured unicast addresses from the MAC address table.
Syntax
Description
vlan
VLAN Id
address
MAC address
interface
switch
Mode
Package
Example
Single Instance:
iss# show mac-address-table static unicast
Vlan Mac Address
RecvPort Status
----
-----------
00:11:22:33:44:55
-------- -----Gi0/2
ConnectionId
-----
Del-OnTimeout
Ports
------Gi0/3
Multiple Instance:
iss# sh mac-address-table static unicast switch cust1
Switch - cust1
Vlan
Mac Address
SrvInst/ Status
Ports
----
-----------
-------- ------
-----
00:11:22:33:44:55
Gi0/2
Permanent
Gi0/3
If executed without the optional parameters this command displays the MAC address
table for all the available interfaces.
Related Commands
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
333
VS-2024-F
show mac-address-table dynamic unicast - Displays the dynamic MAC address table for the
specified address or for all the addresses
Syntax
Description
vlan
VLAN Id
address
MAC address
interface
switch
Mode
Package
Example
Single Instance:
iss# show mac-address-table static multicast
Static Multicast Table
---------------------Vlan
: 1
Mac Address
: 01:02:03:04:05:06
Receive Port
: Gi0/1
Member Ports
: Gi0/1
: Permanent
------------------------------------------------
334
Multiple Instance:
iss# sh mac-address-table static multicast switch cust1
Switch - cust1
Static Multicast Table
---------------------Vlan
: 1
Mac Address
: 01:02:03:04:05:06
Receive Port
: Gi0/2
Member Ports
: Gi0/3
Status
: Permanent
------------------------------------------------
Related Commands
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
show mac-address-table dynamic multicast - Displays the dynamic MAC address table for
the specified address or for all the addresses
static
mcast -
335
VS-2024-F
Syntax
Description
vlan
VLAN Id
address
MAC address
interface
switch
Mode
Package
Example
Single Instance:
iss# show mac-address-table dynamic unicast vlan 2
336
Vlan
Mac Address
Type
ConnectionId
Ports
----
-----------
----
------------
-----
00:01:02:03:04:21
Learnt
Gi0/1
Vlan
Mac Address
Type
Ports
----
-----------
----
-----
00:02:02:03:04:04
Learnt
Gi0/2
00:03:02:03:04:04
Learnt
Gi0/3
00:02:02:03:04:04
Learnt
Gi0/2
00:03:02:03:04:04
Learnt
Gi0/3
00:02:02:03:04:04
Learnt
Gi0/2
00:03:02:03:04:04
Learnt
Gi0/3
If executed without the optional parameters this command displays the MAC address
table of all the available interfaces
Related Commands
vlan - Configures a VLAN in the switch and is also used to enter in to the config-VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
show mac-address-table static unicast - Displays the statically configured unicast address
from the MAC address table
337
VS-2024-F
Syntax
Description
Mode
338
vlan
VLAN Id
address
MAC address
interface
switch
Example
Single Instance:
iss# show mac-address-table dynamic multicast
Vlan
Mac Address
Type
ConnectionId Ports
----
-----------
----
------------ -----
01:03:05:07:09:04
Learnt
Gi0/1
Multiple Instance:
iss# show mac-address-table dynamic multicast
Switch - default
Vlan
Mac Address
Type
Ports
----
-----------
----
-----
01:02:02:02:02:02
Learnt
Gi0/2, Gi0/3
01:02:02:02:02:02
Learnt
Gi0/2
01:03:03:03:03:03
Learnt
Gi0/3
If executed without the optional parameters this command displays the MAC
address table of all the available interfaces.
Related Commands
vlan - Configures a VLAN in the switch and is also used to enter into the config-VLAN mode
ports - Configures a static VLAN entry with the required member ports, untagged ports and
forbidden ports
339
VS-2024-F
Syntax
Description
switch
Mode
Package
340
Single Instance:
iss# show mac-address-table aging-time
Mac Address Aging Time: 300
Multiple Instance:
iss# show mac-address-table aging-time
Context default: Mac Address Aging Time: 300
Related Commands
mac-address-table aging-time - Configures the MAC address table entry maximum age
Syntax
Description
{mac-address
mac-address
/ broadcast
<mac_addr>
broadcast}
[switch
341
VS-2024-F
switch
Mode
Package
Example
342
Ports
, ------------------Gi0/1
Chapter
11
10.SNMPv3
SNMP (Simple Network Management Protocol) is the most widely-used network management protocol on
TCP/IP-based networks. SNMPv3 is designed mainly to overcome the security shortcomings of
SNMPv1/v2. USM (User based Security Model) and VACM (View based Access Control Model) are the
main features added as part of the SNMPv3 specification. USM provides for both encryption and
authentication of the SNMP PDUs, while VACM specifies a mechanism for defining access policies for
different users with different MIB trees. Also, SNMPv3 specifies a generic management framework, which
is expandable for adding new Management Engines, Security Models, Access Control Models and so on.
With SNMPv3, the SNMP communication is completely safe and secure.
SNMPv3 is a multi-lingual Agent supporting all three versions of SNMP (SNMPv1, SNMPv2c and
SNMPv3) while conforming to the latest specifications. It is available as a portable source code product,
which can be easily integrated to any platform (any OS and any Processor). MIB integration is made
simple with the aid of a tool called Middle Level Code Generator (MIDGEN), which is available along
with DatacomSystems SNMP. MIDGEN generates the interface stubs required for every object in the
MIB for the SET, GET and GETNEXT operations.
These stubs can be implemented by the respective modules supporting the MIB. DatacomSystems
SNMP is provided as source code available for licensing to OEMs and VARs who wish to incorporate
the multi-lingual SNMP functionality into their products.
The list of CLI commands for the configuration of SNMPv3 is as follows:
enable snmpsubagent
disable snmpsubagent
enable snmpagent
disable snmpagent
343
VS-2024-F
snmp group
snmp access
snmp engineid
snmp view
snmp targetaddr
snmp targetparams
snmp user
snmp notify
snmp filterprofile
snmp-server tcp-port
show snmp
344
345
VS-2024-F
Syntax
Description
snmpsubagent
master
port
705
Mode
Package
Defaults
port
Example
Related Commands
show snmp agentx information - Displays global information of SNMP Agentx communications.
show snmp agentx statistics - Displays all the information regarding SNMP Agentx statistics.
346
Mode
Package
Example
Related Commands
show snmp agentx information - Displays global information of SNMP Agentx communications.
show snmp agentx statistics - Displays all the information regarding SNMP Agentx statistics.
347
VS-2024-F
Mode
Package
Example
:TCP
348
:705
Mode
Package
Example
:860
Open PDU
:1
:0
:0
Register PDU
:2
:0
Notify PDU
:0
Ping PDU
:20
:0
UnRegister PDU
:0
Close PDU
:0
Response PDU
:837
Rx Statistics
Rx Packets
:859
Get PDU
:1
GetNext PDU
:836
GetBulk PDU
:0
TestSet PDU
:0
Commit PDU
:0
Cleanup PDU
:0
349
VS-2024-F
Undo PDU
:0
Dropped Packets
:0
:1
:0
Close PDU
:0
Response PDU
:21
enable snmpagent
Mode
Package
Defaults
Example
Related Commands
350
disable snmpagent
Mode
Package
Example
Related Commands
351
VS-2024-F
Syntax
Description
352
CommunityIndex
name
Community name
security
User Name
context
volatile
nonvolatile
transporttag
Storage type
contextengineid
Mode
Package
Defaults
Community Index
NETMAN/PUBLIC
CommunityName
NETMAN/PUBLIC
Security Name
None
ContextName
Null
Transport Tag
Null
Storage type
Volatile
Example
The community index identifier must be unique for every community name entry.
Related Commands
353
VS-2024-F
Syntax
Description
354
GroupName
user
User Name
securitymodel
Security Model
volatile |
nonvolatile
Storage Type
Mode
Package
Defaults
Group Name
Example
iso/initial
Related Commands
Syntax
Description
GroupName
355
VS-2024-F
v1 | v2c | v3
auth
noauth
no-authentication
priv
read
write
notify
Storage type
volatile
nonvolatile
context
Mode
Package
Defaults
Group Name
iso
iso
Storage Type
volatile
Group Name
initial
restricted
Storage Type
non-volatile
Group Name
initial
Read/Write/Notify
Read/Write/Notify
356
view
View
Read/Write/Notify
View
Storage Type
Example
iso
non-volatile
To configure an SNMP access along with the group, a group must have already been
created using the snmp group command
Version 3 is the most secure model as it allows packet encryption with the priv key
word
Related Commands
show snmp group access - Displays the configured SNMP group access details
10.10
snmp engineid
This command configures the engine identifier. The no form of the command removes the configured
engine identifier.
no snmp engineid
Syntax
Description
Mode
EngineIdentifier
Engine ID
357
VS-2024-F
Package
Defaults
80.00.08.1c.04.46.53
Example
The Engine ID must be given as octets in hexadecimal separated by dots and the
allowed length is 5 to 32 octets.
All the user information will be updated automatically to reflect the change
Related Commands
10.11
This command configures the proxy. The no form of the command removes the proxy.
358
ProxyName
ProxyType
Read
Write
Inform
Trap
ContextEngineID
TargetParamsIn
TargetOut
ContextName
Storage Type
volatile
nonvolatile
Mode
Package
Defaults
Storage Type
Example
nonvolatile
Related Commands
CLI USER MANUAL
DATACOM SYSTEMS CONFIDENTIAL
359
VS-2024-F
10.12
This command configures the proxy. The no form of the command removes the proxy.
360
ProxyName
ProxyType
Read
Write
Inform
Trap
MIB identifier.
mibid
TargetParamsIn
This
object
selects
an
entry
in
the
snmpTargetParamsTable. The selected entry is
used to determine which row of the
snmpProxyTable to use for forwarding the received
messages.
TargetOut
ContextName
Storage Type
volatile
nonvolatile
Mode
Package
Defaults
Storage Type
Example
nonvolatile
Related Commands
361
VS-2024-F
10.13
snmp view
This command configures the SNMP view. The no form of the command removes the SNMP view.
362
ViewName
View Name
OIDTree
Object Identifier
OIDMask
none
included
excluded
Type of view
volatile |
nonvolatile
Type of storage
Mode
Package
Defaults
View Name
iso/restricted
OIDTree
OIDMask
None
View type
included
Storage type
non-volatile
Example
To configure an SNMP view (read/write/notify), a group must have already been created
using the snmp group command and SNMP group access must be configured using the
snmp access command.
Related Commands
show snmp group access - Displays the configured SNMP group access details
363
VS-2024-F
10.14
snmp targetaddr
This command configures the SNMP target address. The no form of the command removes the
configured SNMP target address.
364
Syntax
Description
TargetAddressName
param
IPAddress/
IP6Address
timeout
retries
taglist
Tag Identifier
Storage type
volatile
nonvolatile
port
Mode
Package
Defaults
ParamName
Internet
IPAddress
10.0.0.10
taglist
snmp
volatile | nonvolatile
volatile
port
162
365
VS-2024-F
Example
Related Commands
show snmp targetparam - Displays the configured SNMP Target Address Params
10.15
snmp targetparams
This command configures the SNMP target parameters. The no form of the command removes the SNMP
target parameters.
Syntax
Description
ParamName
user
User Name
security-model
Security Model
auth
noauth
no-authentication
priv
messageprocessing
Storage type
filterprofilename
filterstoragetype
volatile
nonvolatile
Mode
Package
Defaults
ParamName
User/Security
Name
internet
None
367
VS-2024-F
Security Model
v2c
Security Level
NoauthNoPriv
v2c
Storage Type
Non-volatile
ParamName
test1
User/Security Name
None
Security Model
v1
Security Level
NoauthNoPriv
v1
Non-volatile
Message
Model
Message
Model
Processing
Processing
Storage Type
Example
User information must have been configured prior to the configuration of SNMP target
parameters
Related Commands
show snmp targetparam - Displays the configured SNMP Target Address Params
10.16
snmp user
This command configures the SNMP user details. The no form of the command removes the SNMP user
details.
368
snmp user <UserName> [auth {md5 | sha} <passwd> [priv DES <passwd>]]
[{volatile | nonvolatile}] [EngineId <EngineID>]
Syntax
Description
UserName
auth
passwd
priv DES
volatile |
nonvolatile
EngineId
Mode
Package
Defaults
UserName
Initial
Authentication Protocol
None
Privacy Protocol
None
Storage type
Non-volatile
Storage type
Non-volatile
Example
369
VS-2024-F
Related Commands
10.17
370
snmp notify
This command configures the SNMP notification details. The no form of this command removes the
SNMP notification details.
Syntax
Description
NotifyName
Notification Name
tag
Tag Name
type
Type of Notification
volatile |
nonvolatile
Mode
Package
Defaults
Notify Name
iss/iss1
Notify Tag
iss/iss1
Storage type
volatile
Example
Related Commands
371
VS-2024-F
10.18
snmp filterprofile
This command creates Notify filter Table. The no form of the command removes the filter entry from the
table.
Syntax
Description
profilename
OIDTree
Object Identifier
mask
<OIDMask>
volatile |
nonvolatile
Storage type.
included
excluded
Mode
Package
Example
Related Commands
372
10.19
This command enables generation of authentication traps for SNMPv1 and SNMPv2c. The no form of the
command disables generation of authentication traps for SNMPv1 and SNMPv2c.
Mode
Package
Defaults
Example
373
VS-2024-F
10.20
This command configures the udp port over which agent sends the trap. The no form of the command
configures the snmp agent to sent trap on default udp port.
Syntax
Description
port
Port number
Mode
Package
Example
Related Commands
show snmp notif - Displays the configured SNMP Notification types.
374
10.21
This command configures the udp port over which agent sends the trap. The no form of the command
configures the snmp agent to sent trap on default udp port.
Syntax
Description
port
Port number
Mode
Package
Defaults
162
Example
Related Commands
show snmp-server proxy-udp-port - Displays the proxy udp port.
375
VS-2024-F
10.22
Syntax
Description
port
Mode
Package
Defaults
161
Example
Related Commands
show snmp - Displays the status information of SNMP communications
376
10.23
This command enables sending snmp messages over tcp. The no form of the command disables sending
snmp messages over tcp.
Mode
Package
Defaults
Disabled
Example
Related Commands
show snmp tcp - Displays the configuration for snmp over tcp.
377
VS-2024-F
10.24
This command enables sending snmp trap messages over tcp. The no form of the command disables
sending snmp trap messages over tcp.
Mode
Package
Defaults
Disabled
Example
Related Commands
show snmp tcp - Displays the configuration for snmp over tcp.
378
10.25
snmp-server tcp-port
This command configures the tcp port over which agent sends the snmp message. The no form of the
command configures the snmp agent to sent snmp message on default tcp port.
no snmp-server tcp-port
Syntax
Description
port
Port number
Mode
Package
Defaults
161
Example
Related Commands
show snmp tcp - Displays the configuration for snmp over tcp.
379
VS-2024-F
10.26
This command configures the tcp port over which agent sends the trap. The no form of the command
configures the snmp agent to sent trap on default tcp port.
Syntax
Description
port
Port number
Mode
Package
Defaults
162
Example
Related Commands
show snmp tcp - Displays the configuration for snmp over tcp.
380
10.27
This command enables generation of a particular trap. The no form of the command disables generation
of a particular trap.
Syntax
Description
firewalllimit
linkup
Linkup trap
linkdown
Linkdown trap
sip-states
sip-cfgchange
coldstart
Coldstart trap
poe-power
dhcp-poollimit
dsx1-line
Mode
Package
Example
Related Commands
show snmp-server traps - Displays the set of traps that are currently enabled.
381
VS-2024-F
10.28
show snmp
show snmp
Mode
Package
Example
SNMP Informs:
0 Inform Requests generated
382
Related Command
snmp agent port - Configures the agent port on which agent listens
10.29
Mode
Package
383
VS-2024-F
Example
Related Command
10.30
384
Mode
Package
Example
385
VS-2024-F
Related Commands
10.31
Mode
Package
Example
386
Related Commands
10.32
Mode
Package
Example
Related Command
387
VS-2024-F
10.33
Mode
Package
388
: PROXY1
Proxy ContextEngineID
: 80.00.08.1c.04.46.54
Proxy ContextName
Proxy TargetParamIn
: param1
Proxy SingleTargetOut
: Tgt1
Proxy MultipleTargetOut
Proxy Type
: Read
Storage Type
: Non-volatile
Row Status
: Active
---------------------------------------------------Proxy Name
: PROXY2
Proxy ContextEngineID
: 80.00.08.1c.04.46.54
Proxy ContextName
Proxy TargetParamIn
: param1
Proxy SingleTargetOut
: Tgt1
Proxy MultipleTargetOut
Proxy Type
: Write
Storage Type
: Non-volatile
Row Status
: Active
----------------------------------------------------
Related Command
10.34
389
VS-2024-F
Mode
Package
Example
: proxy1
Prop MibID
: 2
: param1
: target1
: Read
: Non-volatile
: Active
----------------------------------------------------
Related Command
390
10.35
Mode
Package
Example
Related Command
391
VS-2024-F
10.36
Mode
Package
Example
: 12.0.0.100
Port
: 150
Tag List
: tg231
Parameters
: pa231
Storage Type
: Non-volatile
Row Status
: Active
-----------------------------Related Commands
392
10.37
Mode
Package
Example
: internet
: v2c
Security Name
: none
Security Level
: No Authenitcation, No Privacy
Storage Type
: Non-volatile
Row Status
: Active
: None
Row Status
: Active
: pa231
: v3
Security Name
: u231
Security Level
: No Authenitcation, No Privacy
Storage Type
: Volatile
393
VS-2024-F
Row Status
: Active
: filter1
Row Status
: Active
: test1
: v1
Security Name
: none
Security Level
: No Authenitcation, No Privacy
Storage Type
: Non-volatile
Row Status
: Active
: None
Row Status
: Active
------------------------------
Related Commands
10.38
Mode
Package
Example
394
Related Commands
10.39
395
VS-2024-F
Mode
Package
Example
Related Commands
396
10.40
Mode
Package
Example
: issmanager
IP Address
: 10.0.0.10
SNMP Manager must have been configured and Inform type notifications
must have been generated.
397
VS-2024-F
10.41
This command displays the set of traps that are currently enabled.
Mode
Package
Example
Related Command
398
10.42
Mode
Package
Example
Related Command
snmp-server trap proxy-udp-port - Configures the udp port over which agent sends the trap.
399
VS-2024-F
10.43
Mode
Package
Example
Related Command
snmp trap tcp enable - Enables sending snmp trap messages over tcp.
snmp-server tcp-port Configures the tcp port over which agent sends the snmp message.
snmp-server trap tcp-port - Configures the tcp port over which agent sends the trap.
400
10.44
Mode
Package
Example
: filter1
Subtree OID
: 1.5
: Included
: Active
------------------------------
Related Command
401
VS-2024-F
Chapter
12
11.SNTP
The SNTP (Simple Network Time Protocol) module is used to synchronize the time and date in ISS by
contacting the SNTP Server. It supports different time zones, where the user can set the required time
zone.
The following are the list of SNTP commands:
sntp
402
debug sntp
403
VS-2024-F
11.1 sntp
This command enters SNTP configuration mode.
sntp
Mode
Package
Example
iss(config)# sntp
iss(config-sntp)#
404
Syntax
Description
enabled
disabled
Mode
Package
Defaults
disabled
Example
Related Command
405
VS-2024-F
Syntax
Description
v1
SNTP Version 1
v2
SNTP Version 2
v3
SNTP Version 3
v4
SNTP Version 4
Mode
Package
Defaults
v4
Example
Related Command
406
Syntax
Description
unicast
broadcast
multicast
anycast
Mode
Package
Defaults
unicast
Example
Related Command
show sntp anycastmode status Displays the SNTP anycast mode status
show sntp broadcastmode status Displays the SNTP broadcast mode status
show sntp multicastmode status Displays the SNTP multicast mode status
show sntp unicastmode status - Displays the SNTP Unicast Mode status
407
VS-2024-F
Syntax
Description
port no
Mode
Package
Defaults
123
Example
Related commands
408
Syntax
Description
am-pm
hours
Mode
Package
Default
hours
Example
Year - yyyy
Related Command
409
VS-2024-F
set sntp client time-zone <+/- UTC TimeDiff in Hrs:UTC TimeDiff in Min>
Eg: +05:30
Syntax
Description
+/-
UTCTimeDiff
in Hrs
UTC TimeDiff
in Min
Mode
Package
Example
Related Command
410
set sntp client clock-summer-time <week-day-month,hh:mm> <week-daymonth,hh:mm> Eg: set sntp client clock-summer-time First-Sun-Mar,05:10
Second-Sun-Nov,06:1
0
Syntax
Description
week-daymonth
hh:mm
Mode
Package
Example
Related Commands:
411
VS-2024-F
Syntax
Description
key-id
md5
key
Mode
Package
Example
Related Command
412
11.10
Syntax
Description
enabled
disabled
Mode
Package
Defaults
disabled
Example
Related Command
show sntp unicastmode status - Displays the SNTP Unicast Mode status
413
VS-2024-F
11.11
Syntax
Description
value
Mode
Package
Default
64
Example
Related Command
414
show sntp unicastmode status - Displays the SNTP Unicast Mode status
11.12
Syntax
Description
value
Mode
Package
Default
Example
Related Command
show sntp unicastmode status - Displays the SNTP Unicast Mode status
415
VS-2024-F
11.13
Syntax
Description
value
Mode
Package
Default
Example
Related Command
416
show sntp unicastmode status - Displays the SNTP Unicast Mode status
11.14
This command configures SNTP unicast server attributes. The no form of command deletes the sntp
unicast server attributes and sets to default.
Syntax
Description
ipv4, ipv6
Primary/
secondary
Port-id
Port identifier
Mode
Package
Example
Related Command
show sntp unicastmode status - Displays the SNTP Unicast Mode status
417
VS-2024-F
11.15
This command sets the status of sending the request for knowing the delay.
Syntax
Description
enabled
disabled
Mode
Package
Defaults
disabled
Example
Related Command
418
show sntp broadcastmode status Displays the SNTP broadcast mode status
11.16
Syntax
Description
value
Mode
Package
Default
Example
Related Command
show sntp broadcastmode status Displays the SNTP broadcast mode status
419
VS-2024-F
11.17
Syntax
Description
value
Mode
Package
Default
8000
Example
Related Command
420
show sntp broadcastmode status Displays the SNTP broadcast mode status
11.18
This command sets the status of sending the request for knowing the delay.
Syntax
Description
enabled
disabled
Mode
Package
Defaults
disabled
Example
Related Command
show sntp multicastmode status Displays the SNTP multicast mode status
421
VS-2024-F
11.19
Syntax
Description
value
Mode
Package
Default
Example
Related Command
422
show sntp multicastmode status Displays the SNTP multicast mode status
11.20
Syntax
Description
value
Mode
Package
Default
8000
Example
Related Command
show sntp multicastmode status Displays the SNTP multicast mode status
423
VS-2024-F
11.21
Syntax
Description
ipv4, ipv6
Mode
Package
Example
Related Command
424
show sntp multicastmode status Displays the SNTP multicast mode status
11.22
Syntax
Description
value
Mode
Package
Default
64
Example
Related Command
show sntp anycastmode status Displays the SNTP anycast mode status
425
VS-2024-F
11.23
Syntax
Description
value
Mode
Package
Default
Example
Related Command
426
show sntp anycastmode status Displays the SNTP anycast mode status
11.24
Syntax
Description
value
Mode
Package
Default
Example
Related Command
show sntp anycastmode status Displays the SNTP anycast mode status
427
VS-2024-F
11.25
This command configures SNTP multicast or broadcast server address in anycast mode.
Syntax
Description
broadcast
multicast
ipv4,ipv6
Version 4, Version 6
Mode
Package
Example
Related Command
428
show sntp anycastmode status Displays the SNTP anycast mode status
11.26
Mode
Package
Example
01 2000 00:07:04
(UTC +
0: 0 )
Related Command
Error! Reference source not found.: Displays the system date and time.
429
VS-2024-F
11.27
Mode
Package
Example
+ 05:30
Related Command
430
show sntp unicastmode status Displays the SNTP Unicast Mode status
ERROR! NO TEXT OF SPECIFIED STYLE IN DOCUMENT.
CONFIDENTIAL
show sntp broadcastmode status Displays the SNTP broadcast mode status
show sntp multicastmode status - Displays the SNTP multicast mode status
show sntp anycastmode status - Displays the SNTP anycast mode status
11.28
Mode
Package
Example
Related Command
431
VS-2024-F
set sntp unicast-max-poll-timeout - Configures SNTP client maximum poll interval timeout
set sntp unicast-max-poll-retry - Configures SNTP client maximum retry poll count
11.29
Mode
Package
Example
Related Command
432
set sntp broadcast-mode send-request - Sets the status of sending the request for knowing
the delay
set sntp broadcast-poll-timeout - Configures SNTP client poll interval in broadcast mode
11.30
Mode
Package
433
VS-2024-F
Example
Related Command
set sntp multicast-mode send-request - Sets the status of sending the request for knowing
the delay
set sntp multicast-poll-timeout - Configures SNTP client poll interval in multicast mode
11.31
434
Package
Example
broadcast
Related Command
set sntp anycast-poll-interval - Configures SNTP client poll interval in anycast mode
set sntp anycast-poll-timeout - Configures SNTP client poll timeout in anycast mode
11.32
debug sntp
435
VS-2024-F
This command enables SNTP trace. The no form of the command disables the SNTP trace.
Syntax
Description
init/shut
mgmt
Management Messages
data-path
control
Control Messages
pkt-dump
resource
Resource Messages
all-fail
buff
Buffer Message
Mode
Package
Defaults
Debugging is Disabled
Example
436
Chapter
13
12.RMON
RMON (Remote Monitoring) is a standard monitoring specification5 that enables various network monitors
and console systems to exchange network-monitoring data.
The RMON specification defines a set of statistics and functions that can be exchanged between RMONcompliant console managers and network probes. As such, RMON provides network administrators with
comprehensive network-fault diagnosis, planning, and performance-tuning information.
The list of CLI commands for the configuration of RMON is as follows:
set rmon
rmon event
rmon alarm
show rmon
437
VS-2024-F
Syntax
Description
enable
disable
Mode
Package
Defaults
Example
All the other RMON Module commands can be executed only when the RMON
Module is enabled. Fatal error messages are displayed when commands are
executed without enabling the RMON feature.
Related Command
show rmon - Successful execution of this command without any messages indicates that RMON feature
is enabled in the system
438
rmon collection history <index (1-65535)> [buckets <bucket-number (165535)>] [interval <seconds (1-3600)>] [owner <ownername (127)>]
Syntax
Description
index
buckets
interval
owner
Mode
Package
Defaults
bucket number
50
interval
1800 seconds
owner
monitor
Example
The RMON feature must be enabled for the successful execution of this
command.
The polling cycle is the bucket interval where the interface statistics details are
stored.
Related Command
show rmon - Displays the history collection for the configured bucket (show rmon history [history-index
(1-65535)>])
439
VS-2024-F
Syntax
Description
index
owner
Mode
Package
Defaults
owner
Example
iss(config-if)#
monitor
The RMON feature must be enabled for the successful execution of this command.
Related Command
show rmon - Displays the RMON collection statistics (show rmon statistics [<stats-index (1-65535)>])
440
Syntax
Description
number
Event number
description
log
owner
trap
Mode
Package
Example
The RMON feature must be enabled for the successful execution of this command.
Related Commands
441
VS-2024-F
Syntax
Description
alarmnumber
mib-objectid
sampleintervaltime
absolute
delta
risingthreshold
fallingthreshold
value
risingeventnumber
fallingeventnumber
owner
Mode
442
Defaults
By default, the least event number in the event table is assigned for the rising and
falling threshold as its event number.
Example
The RMON Feature must be enabled for the successful execution of this command
In DatacomSystems ISS, we cannot monitor all the mib objects through RMON.
This will be applicable only to the Ethernet interfaces
Related Commands
443
VS-2024-F
Syntax
Description
[alarms]
statistics
alarms
events
history
overview
Mode
Package
Example
[events]
statistics 2
RMON is enabled
Collection 2 on Gi0/2 is active, and owned by fsoft,
Monitors ifEntry.1.2 which has
Received 1240 octets, 10 packets,
2 broadcast and 10 multicast packets,
0 undersized and 1 oversized packets,
0 fragments and 0 jabbers,
0 CRC alignment errors and 0 collisions.
# of packets received of length (in octets):
444
445
VS-2024-F
Description is
Event firing causes nothing,
Time last sent is Aug 27 18:30:01 2009
owned by DatacomSystems
history 1
RMON is enabled
Collection 2 on Ex0/1 is active, and owned by monitor,
Monitors ifEntry.1.1 which has
Received 5194 octets, 53 packets,
0 broadcast and 0 multicast packets,
0 undersized and 0 oversized packets,
0 fragments and 0 jabbers,
53 CRC alignment errors and 0 collisions.
# of packets received of length (in octets):
64: 0, 65-127: 53, 128-255: 0,
256-511: 0, 512-1023: 0, 1024-1518: 0
Alarm 4 is active,
owned by DatacomSystems
446
If the show rmon command is executed with out enabling the RMON feature,
then the following output is displayed
iss# show rmon
RMON feature is disabled
Related Commands
rmon collection history - Enables history collection of interface statistics in the buckets for the
specified time interval
447