CLI Guide
Page 6
... powered-device 194 Page 5 D-Link DES-3010FA/GA/PA CLI Reference Guide Section 15. Radius Commands 184 radius-server host ...184 radius-server key ...186 radius-server retransmit ...187 radius-server source-ip ...188 radius-server timeout ...189 radius-server deadtime ...190 show system id ...170 Section 17. System Management 161 ping ...161 traceroute...163 reload ...165 hostname ...166 show users...167 show system ...168 show version ...169 show radius-servers...191 Section 19. Port Monitor Commands 158 port monitor...158 port monitor vlan...
... powered-device 194 Page 5 D-Link DES-3010FA/GA/PA CLI Reference Guide Section 15. Radius Commands 184 radius-server host ...184 radius-server key ...186 radius-server retransmit ...187 radius-server source-ip ...188 radius-server timeout ...189 radius-server deadtime ...190 show system id ...170 Section 17. System Management 161 ping ...161 traceroute...163 reload ...165 hostname ...166 show users...167 show system ...168 show version ...169 show radius-servers...191 Section 19. Port Monitor Commands 158 port monitor...158 port monitor vlan...
CLI Guide
Page 13
...etc. Console(config)# To return from the Global Configuration mode to the Privileged EXEC mode, the user can use one of the following commands: • exit • end • The following steps: 1. The line Global Configuration mode command is used to enter the VLAN Database Interface Configuration mode. • Management Access List - The management access-list Global Configuration mode command is used to enter the Interface Configuration mode to configure an Ethernet type interface. • Port Channel - Contains commands to configure port-channels, for example, assigning ports to...
...etc. Console(config)# To return from the Global Configuration mode to the Privileged EXEC mode, the user can use one of the following commands: • exit • end • The following steps: 1. The line Global Configuration mode command is used to enter the VLAN Database Interface Configuration mode. • Management Access List - The management access-list Global Configuration mode command is used to enter the Interface Configuration mode to configure an Ethernet type interface. • Port Channel - Contains commands to configure port-channels, for example, assigning ports to...
CLI Guide
Page 14
... commands on the new user. The mac access-list Global Configuration mode command is connected to the device prior to the RS-232 serial port of the terminal or computer running the terminal emulation application. Note When using CLI commands. Enter the following commands to none. b) Set Flow Control to begin the configuration procedure: Console> enable Console# configure Console(config)# 3. If access is via a Telnet connection. Ensure that the device has a defined IP address, corresponding management access is granted, and the workstation used to access...
... commands on the new user. The mac access-list Global Configuration mode command is connected to the device prior to the RS-232 serial port of the terminal or computer running the terminal emulation application. Note When using CLI commands. Enter the following commands to none. b) Set Flow Control to begin the configuration procedure: Console> enable Console# configure Console(config)# 3. If access is via a Telnet connection. Ensure that the device has a defined IP address, corresponding management access is granted, and the workstation used to access...
CLI Guide
Page 20
... if all RADIUS servers for accessing higher privilege levels. Specify at least one from the following table: Keyword enable line none radius Description Uses the enable password for authentication. Uses the line password for authentication. Uses no aaa authentication enable {default | list-name} Parameters • default - On the console, the enable password is used only if the previous method returns an error, not if it exists. Command Mode Global Configuration mode User Guidelines The default and optional list names created with...
... if all RADIUS servers for accessing higher privilege levels. Specify at least one from the following table: Keyword enable line none radius Description Uses the enable password for authentication. Uses the line password for authentication. Uses no aaa authentication enable {default | list-name} Parameters • default - On the console, the enable password is used only if the previous method returns an error, not if it exists. Command Mode Global Configuration mode User Guidelines The default and optional list names created with...
CLI Guide
Page 26
... Privileged EXEC mode command displays information about the authentication methods. Command Mode Privileged EXEC mode User Guidelines There are no default configuration. D-Link DES-3010FA/GA/PA CLI Reference Guide show authentication methods The show authentication methods Login Authentication Method Lists Default: Local Enable Authentication Method Lists Console_Default: Local Network_Default: Enable Line Console Telnet SSH Login Method List Default Default Default Enable Method List Default Default Default http: Local https: Local dot1x: Page 25 Example The following...
... Privileged EXEC mode command displays information about the authentication methods. Command Mode Privileged EXEC mode User Guidelines There are no default configuration. D-Link DES-3010FA/GA/PA CLI Reference Guide show authentication methods The show authentication methods Login Authentication Method Lists Default: Local Enable Authentication Method Lists Console_Default: Local Network_Default: Enable Line Console Telnet SSH Login Method List Default Default Default Enable Method List Default Default Default http: Local https: Local dot1x: Page 25 Example The following...
CLI Guide
Page 30
...-channel-number - The address can only be deleted by the no bridge address [mac-address] Parameters • mac-address - The default mode for an added address is deleted after reset. • delete-on port 7 to the bridge table. Example The following example adds a permanent static MAC-layer station source address 3aa2.64b3.a245 on -timeout - Console(config)# interface vlan 2 Console(config-if)# bridge address 3aa2.64b3.a245 ethernet 7 permanent Page 29 D-Link DES-3010FA/GA/PA CLI Reference Guide Section 3. The address is permanent. To delete the MAC address, use...
...-channel-number - The address can only be deleted by the no bridge address [mac-address] Parameters • mac-address - The default mode for an added address is deleted after reset. • delete-on port 7 to the bridge table. Example The following example adds a permanent static MAC-layer station source address 3aa2.64b3.a245 on -timeout - Console(config)# interface vlan 2 Console(config-if)# bridge address 3aa2.64b3.a245 ethernet 7 permanent Page 29 D-Link DES-3010FA/GA/PA CLI Reference Guide Section 3. The address is permanent. To delete the MAC address, use...
CLI Guide
Page 32
... MAC address and adds ports statically. Command Mode Interface configuration (VLAN) mode User Guidelines If the command is used to designate a range of this is specified, this command. Console(config)# interface vlan 8 Console(config-if)# bridge multicast address 01:00:5e:02:02:03 add ethernet 1-4, 7 Page 31 D-Link DES-3010FA/GA/PA CLI Reference Guide bridge multicast address The bridge multicast address Interface Configuration (VLAN) mode command registers a MAC-layer multicast address in the bridge database. A valid MAC multicast address. • ip- Default Configuration...
... MAC address and adds ports statically. Command Mode Interface configuration (VLAN) mode User Guidelines If the command is used to designate a range of this is specified, this command. Console(config)# interface vlan 8 Console(config-if)# bridge multicast address 01:00:5e:02:02:03 add ethernet 1-4, 7 Page 31 D-Link DES-3010FA/GA/PA CLI Reference Guide bridge multicast address The bridge multicast address Interface Configuration (VLAN) mode command registers a MAC-layer multicast address in the bridge database. A valid MAC multicast address. • ip- Default Configuration...
CLI Guide
Page 34
... multicast forward-all {add | remove} {ethernet interface-list | port-channel port-channel-number-list} no bridge multicast forward-all add ethernet 8 Page 33 To restore the default configuration, use the no form of ports. • port-channel-number-list - Console(config)# interface vlan 2 Console(config-if)# bridge multicast forward-all Parameters • add - D-Link DES-3010FA/GA/PA CLI Reference Guide bridge multicast forward-all The bridge multicast forward-all Interface Configuration (VLAN) mode command enables forwarding all multicast packets on port 8 are no user guidelines...
... multicast forward-all {add | remove} {ethernet interface-list | port-channel port-channel-number-list} no bridge multicast forward-all add ethernet 8 Page 33 To restore the default configuration, use the no form of ports. • port-channel-number-list - Console(config)# interface vlan 2 Console(config-if)# bridge multicast forward-all Parameters • add - D-Link DES-3010FA/GA/PA CLI Reference Guide bridge multicast forward-all The bridge multicast forward-all Interface Configuration (VLAN) mode command enables forwarding all multicast packets on port 8 are no user guidelines...
CLI Guide
Page 35
Forbids forwarding all multicast packets. • interface-list - Does not forbid forwarding all multicast packets. • remove - Console(config)# interface vlan 2 Console(config-if)# bridge multicast forbidden forward-all Parameters • add - Example In this command. When a multicast router port is forbidden. Command Mode Interface Configuration (VLAN) mode User Guidelines IGMP snooping dynamically discovers multicast router ports. Syntax bridge multicast forbidden forward-all {add | remove} {ethernet interface-list | port-channel port-channelnumber-list} no ...
Forbids forwarding all multicast packets. • interface-list - Does not forbid forwarding all multicast packets. • remove - Console(config)# interface vlan 2 Console(config-if)# bridge multicast forbidden forward-all Parameters • add - Example In this command. When a multicast router port is forbidden. Command Mode Interface Configuration (VLAN) mode User Guidelines IGMP snooping dynamically discovers multicast router ports. Syntax bridge multicast forbidden forward-all {add | remove} {ethernet interface-list | port-channel port-channelnumber-list} no ...
CLI Guide
Page 43
...:08 Type ------static static dynamic Ports ---------1, 2 1-3 5-7 Forbidden ports for multicast addresses: Vlan ---1 19 MAC Address 01:00:5e:02:02:03 01:00:5e:02:02:08 Ports ----8 8 Page 42 If the format is unspecified, the default is displayed. Default Configuration This command has no default configuration. Multicast address format. A valid VLAN ID value. • mac-multicast-address - Command Mode Privileged EXEC mode User Guidelines A MAC address can be ip or mac. Address Table Commands show bridge multicast address-table The show bridge multicast address-table User...
...:08 Type ------static static dynamic Ports ---------1, 2 1-3 5-7 Forbidden ports for multicast addresses: Vlan ---1 19 MAC Address 01:00:5e:02:02:03 01:00:5e:02:02:08 Ports ----8 8 Page 42 If the format is unspecified, the default is displayed. Default Configuration This command has no default configuration. Multicast address format. A valid VLAN ID value. • mac-multicast-address - Command Mode Privileged EXEC mode User Guidelines A MAC address can be ip or mac. Address Table Commands show bridge multicast address-table The show bridge multicast address-table User...
CLI Guide
Page 78
...(config)# interface ethernet 5 Console(config-if)# duplex full Page 77 D-Link DES-3010FA/GA/PA CLI Reference Guide duplex The duplex Interface Configuration (Ethernet) mode command configures the full/half duplex operation of this command. Forces full-duplex operation Default Configuration The interface is set only for ports operating at 10/100 Mbps, disable the auto-negotiation on the port operating at 10 Mbps or 100 Mbps. To restore the default configuration, use the no duplex Parameters • half - Example The following example configures the duplex operation of Ethernet port...
...(config)# interface ethernet 5 Console(config-if)# duplex full Page 77 D-Link DES-3010FA/GA/PA CLI Reference Guide duplex The duplex Interface Configuration (Ethernet) mode command configures the full/half duplex operation of this command. Forces full-duplex operation Default Configuration The interface is set only for ports operating at 10/100 Mbps, disable the auto-negotiation on the port operating at 10 Mbps or 100 Mbps. To restore the default configuration, use the no duplex Parameters • half - Example The following example configures the duplex operation of Ethernet port...
CLI Guide
Page 109
... interface vlan 2 Console(config-if)# ip igmp snooping Page 108 Command Mode Interface Configuration (VLAN) mode User Guidelines IGMP snooping can only be enabled on VLAN 2. To disable IGMP snooping on a specific VLAN. Syntax ip igmp snooping no form of this command. Example The following example enables IGMP snooping on static VLANs. IGMP Snooping Commands ip igmp snooping (Interface) The ip igmp snooping Interface Configuration (VLAN) mode command enables Internet Group Management Protocol (IGMP) snooping on a VLAN interface, use the no ip igmp snooping Default Configuration IGMP...
... interface vlan 2 Console(config-if)# ip igmp snooping Page 108 Command Mode Interface Configuration (VLAN) mode User Guidelines IGMP snooping can only be enabled on VLAN 2. To disable IGMP snooping on a specific VLAN. Syntax ip igmp snooping no form of this command. Example The following example enables IGMP snooping on static VLANs. IGMP Snooping Commands ip igmp snooping (Interface) The ip igmp snooping Interface Configuration (VLAN) mode command enables Internet Group Management Protocol (IGMP) snooping on a VLAN interface, use the no ip igmp snooping Default Configuration IGMP...
CLI Guide
Page 117
... Host Configuration Protocol (DHCP) server. To deconfigure an acquired IP address, use the no ip address dhcp Parameters • host-name - Syntax ip address dhcp [hostname host-name] no form of the host to the DHCP server on the network. Console(config)# interface ethernet 4 Console(config-if)# ip address dhcp Page 116 Specifies the name of this command. If the device is included in the DHCP option 12 field. Command Mode Interface Configuration (Ethernet, VLAN, port-channel) mode User Guidelines The ip address dhcp command...
... Host Configuration Protocol (DHCP) server. To deconfigure an acquired IP address, use the no ip address dhcp Parameters • host-name - Syntax ip address dhcp [hostname host-name] no form of the host to the DHCP server on the network. Console(config)# interface ethernet 4 Console(config-if)# ip address dhcp Page 116 Specifies the name of this command. If the device is included in the DHCP option 12 field. Command Mode Interface Configuration (Ethernet, VLAN, port-channel) mode User Guidelines The ip address dhcp command...
CLI Guide
Page 181
... of the packet to use to classify the packets at the edge of service (QoS) domain are classified with packet CoS values. Use this command. When the system is configured as trust DSCP, traffic is the default trust mode. Example The following example configures the system to the basic mode and trust state. Console(config)# qos trust dscp Page 180 Command Mode Global Configuration mode User Guidelines Packets entering a quality of the QoS domain. Syntax qos trust...
... of the packet to use to classify the packets at the edge of service (QoS) domain are classified with packet CoS values. Use this command. When the system is configured as trust DSCP, traffic is the default trust mode. Example The following example configures the system to the basic mode and trust state. Console(config)# qos trust dscp Page 180 Command Mode Global Configuration mode User Guidelines Packets entering a quality of the QoS domain. Syntax qos trust...
CLI Guide
Page 185
... used for all . Default Configuration No RADIUS server host is all. The usage type is specified. Specifies the retransmit value. (Range: 1-10) • deadtime - The address type of the server. Radius Commands radius-server host The radius-server host Global Configuration mode command specifies a RADIUS server host. Syntax radius-server host {ip-address | hostname} [auth-port auth-port-number] [timeout timeout] [retransmit retries] [deadtime deadtime] [key key-string] [source source] [priority priority] [usage type] no host-specific timeout, retries, deadtime or key...
... used for all . Default Configuration No RADIUS server host is all. The usage type is specified. Specifies the retransmit value. (Range: 1-10) • deadtime - The address type of the server. Radius Commands radius-server host The radius-server host Global Configuration mode command specifies a RADIUS server host. Syntax radius-server host {ip-address | hostname} [auth-port auth-port-number] [timeout timeout] [retransmit retries] [deadtime deadtime] [key key-string] [source source] [priority priority] [usage type] no host-specific timeout, retries, deadtime or key...
CLI Guide
Page 220
... connects to the agent. (Range: 1-30 characters) • groupname-Specifies the name of the group to the configuration, type the show running-config Privileged EXEC mode command is two hexadecimal digits. The engine ID is specified, both authentication and privacy are enabled for this user has been added to which the user belongs. D-Link DES-3010FA/GA/PA CLI Reference Guide snmp-server user The snmp-server user Global Configuration mode command configures a new SNMP Version 3 user...
... connects to the agent. (Range: 1-30 characters) • groupname-Specifies the name of the group to the configuration, type the show running-config Privileged EXEC mode command is two hexadecimal digits. The engine ID is specified, both authentication and privacy are enabled for this user has been added to which the user belongs. D-Link DES-3010FA/GA/PA CLI Reference Guide snmp-server user The snmp-server user Global Configuration mode command configures a new SNMP Version 3 user...
CLI Guide
Page 254
... spanning-tree calculations cause a port to be selected as the root port, the port transitions to be enabled when the switch work in STP, RSTP and MSTP. Example The following example enables root guard on all spanning tree instances on that interface. D-Link DES-3010FA/GA/PA CLI Reference Guide spanning-tree guard root The spanning-tree guard root interface configuration command enables root guard on all spanning tree instances on port 5. Syntax spanning-tree guard root no form of this command. Console# configure Console (config)# interface ethernet 5 Console (config-if)# spanning...
... spanning-tree calculations cause a port to be selected as the root port, the port transitions to be enabled when the switch work in STP, RSTP and MSTP. Example The following example enables root guard on all spanning tree instances on that interface. D-Link DES-3010FA/GA/PA CLI Reference Guide spanning-tree guard root The spanning-tree guard root interface configuration command enables root guard on all spanning tree instances on port 5. Syntax spanning-tree guard root no form of this command. Console# configure Console (config)# interface ethernet 5 Console (config-if)# spanning...
CLI Guide
Page 356
... port LED is on • Device is in this chapter, or through customer support. These error messages include: • Cannot connect to management using RS-232 serial connection • Cannot connect to resolve these issues. D-Link DES-3010FA/GA/PA CLI Reference Guide Troubleshooting This section describes problems that may arise when installing the device and how to switch management using DES- 3010PA. With the problem known, the effect of the problem. Provides information about problem management...
... port LED is on • Device is in this chapter, or through customer support. These error messages include: • Cannot connect to management using RS-232 serial connection • Cannot connect to resolve these issues. D-Link DES-3010FA/GA/PA CLI Reference Guide Troubleshooting This section describes problems that may arise when installing the device and how to switch management using DES- 3010PA. With the problem known, the effect of the problem. Provides information about problem management...
CLI Guide
Page 357
... and default gateway configured Check that your technical support representative. If that does not help, consult your management station is properly connected with IP protocol Replace the cable Replace the module Replace the module Erase the connection and reconfigure the port Download and install a working or previous software version from the termi- Please try again at a later time. Remove and reinstall the device. Replace the serial cable Replace serial cable for a pin-to switch management using Telnet or the web, the maximum number of connections...
... and default gateway configured Check that your technical support representative. If that does not help, consult your management station is properly connected with IP protocol Replace the cable Replace the module Replace the module Erase the connection and reconfigure the port Download and install a working or previous software version from the termi- Please try again at a later time. Remove and reinstall the device. Replace the serial cable Replace serial cable for a pin-to switch management using Telnet or the web, the maximum number of connections...
CLI Guide
Page 359
.... Solution Disable pop-up blocker is displayed: Console> reload Are you sure you want to the default setting. necting the power supply, or enter the command reboot, the following syntax: enable password [level level] password [encrypted] For example: enable password level 1 password ***** 6. The device reboots. to upload. The Startup Menu is not made in 2 seconds - If the selection is displayed. [1] Download software [2] Erase flash file [3] Erase flash sectors [4] Password Recovery Procedure [5] Enter Diagnostic Mode...
.... Solution Disable pop-up blocker is displayed: Console> reload Are you sure you want to the default setting. necting the power supply, or enter the command reboot, the following syntax: enable password [level level] password [encrypted] For example: enable password level 1 password ***** 6. The device reboots. to upload. The Startup Menu is not made in 2 seconds - If the selection is displayed. [1] Download software [2] Erase flash file [3] Erase flash sectors [4] Password Recovery Procedure [5] Enter Diagnostic Mode...