Software Guide
Page 15
...Interval 23-5 Enabling UDLD Aggressive Mode 23-5 Displaying the UDLD Configuration 23-6 Configuring SNMP 24-1 SNMP Terminology 24-1 Understanding How SNMP Works 24-3 Security Models and Levels 24-4 SNMP ifindex Persistence Feature 24-4 Understanding How SNMPv1 and SNMPv2c Work 24-5 SNMPv1 and SNMPv2c Default Configuration 24-6 Configuring SNMPv1 and ...in Software Release 7.5(1) 24-8 Understanding SNMPv3 24-11 Benefits of SNMPv3 24-11 SNMP Entity 24-11 Configuring SNMPv3 from an NMS 24-14 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 xv
...Interval 23-5 Enabling UDLD Aggressive Mode 23-5 Displaying the UDLD Configuration 23-6 Configuring SNMP 24-1 SNMP Terminology 24-1 Understanding How SNMP Works 24-3 Security Models and Levels 24-4 SNMP ifindex Persistence Feature 24-4 Understanding How SNMPv1 and SNMPv2c Work 24-5 SNMPv1 and SNMPv2c Default Configuration 24-6 Configuring SNMPv1 and ...in Software Release 7.5(1) 24-8 Understanding SNMPv3 24-11 Benefits of SNMPv3 24-11 SNMP Entity 24-11 Configuring SNMPv3 from an NMS 24-14 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 xv
Software Guide
Page 336
...disabled No disabled 15 3/2 disabled No disabled 16 20-2 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 The Catalyst 4912G, 2948G, and 2980G switches are fixed-configuration switches but are logically modular. This example shows how to display ... Checking Status and Connectivity This example shows how to check module status on a Catalyst 2948G switch: Console> (enable) show module Mod Slot Ports Module-Type Model Status 11 0 Switching Supervisor WS-X2948 ok 2 1 50 10/100/1000 Ethernet WS-X2948G ok Mod...
...disabled No disabled 15 3/2 disabled No disabled 16 20-2 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 The Catalyst 4912G, 2948G, and 2980G switches are fixed-configuration switches but are logically modular. This example shows how to display ... Checking Status and Connectivity This example shows how to check module status on a Catalyst 2948G switch: Console> (enable) show module Mod Slot Ports Module-Type Model Status 11 0 Switching Supervisor WS-X2948 ok 2 1 50 10/100/1000 Ethernet WS-X2948G ok Mod...
Software Guide
Page 339
... ,desirable,auto,nonegotiate Channel 3/1-48 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 20-5 Chapter 20 Checking Status and Connectivity Displaying Port Capabilities Displaying Port Capabilities You can display the capabilities of any port in a switch using the show port capabilities 3/5 Model WS-X4148 Port 3/5 Type 10/100BaseTX Speed...
... ,desirable,auto,nonegotiate Channel 3/1-48 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 20-5 Chapter 20 Checking Status and Connectivity Displaying Port Capabilities Displaying Port Capabilities You can display the capabilities of any port in a switch using the show port capabilities 3/5 Model WS-X4148 Port 3/5 Type 10/100BaseTX Speed...
Software Guide
Page 370
...message expects a response (for each SNMP packet. security level A type of security algorithm that is authoritative. Currently, software supports three security models: SNMPv1, SNMPv2c, and SNMPv3. data integrity A condition or state of data in network communication is used for authenticating and encrypting SNMPv3 packets ... list of notifications that can be sent to manage configurations, statistics collection, performance, Protocol (SNMP) and security. 24-2 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01
...message expects a response (for each SNMP packet. security level A type of security algorithm that is authoritative. Currently, software supports three security models: SNMPv1, SNMPv2c, and SNMPv3. data integrity A condition or state of data in network communication is used for authenticating and encrypting SNMPv3 packets ... list of notifications that can be sent to manage configurations, statistics collection, performance, Protocol (SNMP) and security. 24-2 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01
Software Guide
Page 372
...Gigabit EtherChannel interfaces, the ifIndex value is only retained and used after a high-availability switchover. 24-4 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 With the ifIndex persistence feature, the ifIndex value of the...A group defines the access policy for a set up for authentication. Understanding How SNMP Works Chapter 24 Configuring SNMP Security Models and Levels A security model is an authentication strategy that is set of users. • SNMP objects refer to an access policy for reading, writing...
...Gigabit EtherChannel interfaces, the ifIndex value is only retained and used after a high-availability switchover. 24-4 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 With the ifIndex persistence feature, the ifIndex value of the...A group defines the access policy for a set up for authentication. Understanding How SNMP Works Chapter 24 Configuring SNMP Security Models and Levels A security model is an authentication strategy that is set of users. • SNMP objects refer to an access policy for reading, writing...
Software Guide
Page 380
... control model Proxy foward applications Command responder applications Notification originator applications MIB Instrumentation SNMP Applications Dispatcher The Dispatcher is also responsible for dispatching protocol data units (PDUs) to the Dispatcher. After receiving a message, the Dispatcher tries to determine the version number of SNMP. 58568 24-12 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software...
... control model Proxy foward applications Command responder applications Notification originator applications MIB Instrumentation SNMP Applications Dispatcher The Dispatcher is also responsible for dispatching protocol data units (PDUs) to the Dispatcher. After receiving a message, the Dispatcher tries to determine the version number of SNMP. 58568 24-12 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software...
Software Guide
Page 381
... passed to received SNMP messages, generate notifications, receive notifications, and forward messages between SNMP entities. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 24-13 SNMPv1 and SNMPv2c security models provide only weak authentication (community names) and no privacy. The USM protects SNMPv3 messages from the following potential...
... passed to received SNMP messages, generate notifications, receive notifications, and forward messages between SNMP entities. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 24-13 SNMPv1 and SNMPv2c security models provide only weak authentication (community names) and no privacy. The USM protects SNMPv3 messages from the following potential...
Software Guide
Page 382
... to generate a message to 20 trap receivers through the RMON2 trap destination table. set snmp access [-hex] {groupname} {security-model v3} {noauthentication | authentication | privacy} [read -write-all) 24-14 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 set snmp user [-hex] {username} [remote {engineid}] [{authentication [md5 | sha] {authpassword...
... to generate a message to 20 trap receivers through the RMON2 trap destination table. set snmp access [-hex] {groupname} {security-model v3} {noauthentication | authentication | privacy} [read -write-all) 24-14 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 set snmp user [-hex] {username} [remote {engineid}] [{authentication [md5 | sha] {authpassword...
Software Guide
Page 383
... targetparams p2 user guestuser2 security-model v3 message-processing v3 privacy Snmp target params was set to guestuser2 authProt sha authPasswd guestuser2password privProt no-priv with engineid 00:00:00:09:00:10:7b:f2:82:00:00:00 nonvolatile. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release...
... targetparams p2 user guestuser2 security-model v3 message-processing v3 privacy Snmp target params was set to guestuser2 authProt sha authPasswd guestuser2password privProt no-priv with engineid 00:00:00:09:00:10:7b:f2:82:00:00:00 nonvolatile. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release...
Software Guide
Page 384
... guestgroup user guestuser1 and version v3, nonvolatile. Console> (enable) set snmp group mygroup user guestuser2 security-model v3 Snmp group was set to mygroup user guestuser1 and version v3, nonvolatile. Console> (enable) set snmp group mygroup user ...shows how to remove access for guestgroup: Console> (enable) clear snmp acc guestgroup security-model v3 authentication Cleared snmp access guestgroup version v3 level authentication. AUTHORIZATION_ERROR:1. 24-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01
... guestgroup user guestuser1 and version v3, nonvolatile. Console> (enable) set snmp group mygroup user guestuser2 security-model v3 Snmp group was set to mygroup user guestuser1 and version v3, nonvolatile. Console> (enable) set snmp group mygroup user ...shows how to remove access for guestgroup: Console> (enable) clear snmp acc guestgroup security-model v3 authentication Cleared snmp access guestgroup version v3 level authentication. AUTHORIZATION_ERROR:1. 24-16 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01
Software Guide
Page 387
...chapter consists of these components of the RMON specification (see the "Supported RMON and RMON2 MIB Objects" section on the Catalyst enterprise LAN switches. each event configured uses 1.3 KB of supervisor engine RAM) • The following RMON groups are defined in this ...This chapter describes how to monitor network traffic from all ports simultaneously at the data-link layer of the OSI model without requiring a dedicated monitoring probe or network analyzer. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 25-1
...chapter consists of these components of the RMON specification (see the "Supported RMON and RMON2 MIB Objects" section on the Catalyst enterprise LAN switches. each event configured uses 1.3 KB of supervisor engine RAM) • The following RMON groups are defined in this ...This chapter describes how to monitor network traffic from all ports simultaneously at the data-link layer of the OSI model without requiring a dedicated monitoring probe or network analyzer. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 25-1
Software Guide
Page 414
...enable) sm3 Mod Slot Ports Module-Type Model Sub Status 33 6 1000BaseX Ethernet WS-X4306 no ok Mod Module-Name Serial-Num 3 JAB024000YY Mod MAC-Address(es) Hw Fw Sw 27-6 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486...or long and complex commands. Unauthorized access prohibited. Defining and Using Command Aliases Chapter 27 Administering the Switch This example shows how to display the Cisco Systems Console Telnet login banner content: Console> (enable) show what happens when you are configuring ...
...enable) sm3 Mod Slot Ports Module-Type Model Sub Status 33 6 1000BaseX Ethernet WS-X4306 no ok Mod Module-Name Serial-Num 3 JAB024000YY Mod MAC-Address(es) Hw Fw Sw 27-6 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486...or long and complex commands. Unauthorized access prohibited. Defining and Using Command Aliases Chapter 27 Administering the Switch This example shows how to display the Cisco Systems Console Telnet login banner content: Console> (enable) show what happens when you are configuring ...
Software Guide
Page 492
.... The amount of accounting. • Command accounting-Sends a record for each command that is gathered dynamically in a client-server model, using a key. This information includes system reset, system boot, and user configuration of memory that is issued by the NAS for... accounting has been enabled and an accountable event occurs on the number of service, and traffic statistics). 30-48 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 The accounting protocol operates in memory. When you configure accounting (using...
.... The amount of accounting. • Command accounting-Sends a record for each command that is gathered dynamically in a client-server model, using a key. This information includes system reset, system boot, and user configuration of memory that is issued by the NAS for... accounting has been enabled and an accountable event occurs on the number of service, and traffic statistics). 30-48 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 78-15486-01 The accounting protocol operates in memory. When you configure accounting (using...
Software Guide
Page 500
...host. RADIUS operates in a client/server model in the network have specific roles. (See Figure 31-1.) Figure 31-1 802.1x Device Roles Workstations (supplicants) Catalyst switch Authentication server (RADIUS) 79599 • Host-Requests access to the LAN and switch services and responds to requests from the...server validates the identity of the host. it is used in Cisco Secure Access Control Server version 3.0. After this publication, we use host instead of supplicant because host is available in the Catalyst 4000 family CLI syntax. • Authentication server-Performs the actual...
...host. RADIUS operates in a client/server model in the network have specific roles. (See Figure 31-1.) Figure 31-1 802.1x Device Roles Workstations (supplicants) Catalyst switch Authentication server (RADIUS) 79599 • Host-Requests access to the LAN and switch services and responds to requests from the...server validates the identity of the host. it is used in Cisco Secure Access Control Server version 3.0. After this publication, we use host instead of supplicant because host is available in the Catalyst 4000 family CLI syntax. • Authentication server-Performs the actual...
Software Guide
Page 527
... Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 33-3 For examples that the new image boots when you reset the switch. Sample TFTP Download Procedures To see a step-by cisco Systems, Inc. This example shows a complete TFTP download procedure of a supervisor engine software image: Console> (enable) show version 1 Mod Port Model Serial # Versions 1 0 WS...
... Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 33-3 For examples that the new image boots when you reset the switch. Sample TFTP Download Procedures To see a step-by cisco Systems, Inc. This example shows a complete TFTP download procedure of a supervisor engine software image: Console> (enable) show version 1 Mod Port Model Serial # Versions 1 0 WS...
Software Guide
Page 528
............Passed Level2 Cache Present Level2 Cache test Passed Boot image: bootflash:cat4000.6-1-1.bin Cisco Systems Console Enter password: 07/21/2000,13:52:51:SYS-5:Module 1 ...is online 07/21/2000,13:53:45:SYS-5:Module 3 is online Console> show version 1 Mod Port Model Serial # Versions 1 0 WS-X4012 JAB03130104 Hw : 1.5 Gsp: 6.1(1.4) Nmp: 6.1(1) Console> Uploading ... a switch to a TFTP server. For more information on the Flash file system, see Chapter 34, "Working With the Flash File System." 33-4 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software ...
............Passed Level2 Cache Present Level2 Cache test Passed Boot image: bootflash:cat4000.6-1-1.bin Cisco Systems Console Enter password: 07/21/2000,13:52:51:SYS-5:Module 1 ...is online 07/21/2000,13:53:45:SYS-5:Module 3 is online Console> show version 1 Mod Port Model Serial # Versions 1 0 WS-X4012 JAB03130104 Hw : 1.5 Gsp: 6.1(1.4) Nmp: 6.1(1) Console> Uploading ... a switch to a TFTP server. For more information on the Flash file system, see Chapter 34, "Working With the Flash File System." 33-4 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software ...
Software Guide
Page 531
... Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 33-7 Reset the switch using the set boot system flash bootflash:cat4000.6-1-1.bin prepend BOOT variable = bootflash:cat4000.6-1-1.bin,1;bootflash:cat4000.5-1-2.bin,1; When the switch reboots, enter the show version 1 Mod Port Model Serial # Versions 1 2 WS-X5530 ...reset the system. Do you are connected to copy from Console// System Bootstrap, Version 3.1(2) Copyright (c) 1994-1997 by cisco Systems, Inc. y Console> (enable) 07/21/2000,13:51:39:SYS-5:System reset from []? Chapter 33 ...
... Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 33-7 Reset the switch using the set boot system flash bootflash:cat4000.6-1-1.bin prepend BOOT variable = bootflash:cat4000.6-1-1.bin,1;bootflash:cat4000.5-1-2.bin,1; When the switch reboots, enter the show version 1 Mod Port Model Serial # Versions 1 2 WS-X5530 ...reset the system. Do you are connected to copy from Console// System Bootstrap, Version 3.1(2) Copyright (c) 1994-1997 by cisco Systems, Inc. y Console> (enable) 07/21/2000,13:51:39:SYS-5:System reset from []? Chapter 33 ...
Software Guide
Page 532
...Test .........Passed Level2 Cache Present Level2 Cache test Passed Boot image: bootflash:cat4000.6-1-1.bin Cisco Systems Console Enter password: 07/21/2000,13:52:51:SYS-5:Module 1 is online... is online 07/21/2000,13:53:45:SYS-5:Module 3 is online Console> show version 1 Mod Port Model Serial # Versions 1 0 WS-X4012 JAB03130104 Hw : 1.5 Gsp: 6.1(1.4) Nmp: 6.1(0.104) Console> Uploading ...to an rcp Server The next two sections describe how to upload system software images from a switch to an rcp server. Uploading System Software Images to an rcp Server Chapter 33 Working with ...
...Test .........Passed Level2 Cache Present Level2 Cache test Passed Boot image: bootflash:cat4000.6-1-1.bin Cisco Systems Console Enter password: 07/21/2000,13:52:51:SYS-5:Module 1 is online... is online 07/21/2000,13:53:45:SYS-5:Module 3 is online Console> show version 1 Mod Port Model Serial # Versions 1 0 WS-X4012 JAB03130104 Hw : 1.5 Gsp: 6.1(1.4) Nmp: 6.1(0.104) Console> Uploading ...to an rcp Server The next two sections describe how to upload system software images from a switch to an rcp server. Uploading System Software Images to an rcp Server Chapter 33 Working with ...
Software Guide
Page 534
...version 6.1(4). cat4000-promupgrade.6-1-4.bin 9205592 bytes available on May 24 2001, 18:39:50 System Bootstrap Version:6.1(2) Hardware Version:1.0 Model:WS-C4003 Serial #:xxxxxxxxx . . . If the last line in the output of the show boot command does ...Use the dir bootflash: command to other ROMMON versions, but you download Catalyst 4000 system images. The same procedure applies to ensure that there is accessible from Cisco.com and place it on the switch. y CCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCC File has been copied successfully. NMP S/W compiled on May ...
...version 6.1(4). cat4000-promupgrade.6-1-4.bin 9205592 bytes available on May 24 2001, 18:39:50 System Bootstrap Version:6.1(2) Hardware Version:1.0 Model:WS-C4003 Serial #:xxxxxxxxx . . . If the last line in the output of the show boot command does ...Use the dir bootflash: command to other ROMMON versions, but you download Catalyst 4000 system images. The same procedure applies to ensure that there is accessible from Cisco.com and place it on the switch. y CCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCC File has been copied successfully. NMP S/W compiled on May ...
Software Guide
Page 537
... on May 24 2001, 21:12:09 GSP S/W compiled on May 24 2001, 18:39:50 System Bootstrap Version:6.1(4) Hardware Version:1.0 Model:WS-C4003 Serial #:xxxxxxxxx . . . Console> (enable) clear boot system flash bootflash:cat4000-promupgrade.6-1-4.bin BOOT variable = bootflash:cat4000.5-5-8.... operation may take some time, proceed (y/n) [n]? Notice that the BOOT string is set correctly. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 33-13 Squeeze the flash memory to delete the promupgrade program from Flash memory. Step...
... on May 24 2001, 21:12:09 GSP S/W compiled on May 24 2001, 18:39:50 System Bootstrap Version:6.1(4) Hardware Version:1.0 Model:WS-C4003 Serial #:xxxxxxxxx . . . Console> (enable) clear boot system flash bootflash:cat4000-promupgrade.6-1-4.bin BOOT variable = bootflash:cat4000.5-5-8.... operation may take some time, proceed (y/n) [n]? Notice that the BOOT string is set correctly. 78-15486-01 Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide-Release 8.1 33-13 Squeeze the flash memory to delete the promupgrade program from Flash memory. Step...