Software Guide
Page 28
... Time Protocol (NTP). Configuring Layer 3 Protocol Filtering Describes how to configure GARP VLAN Registration Protocol (GVRP) on Ethernet, Fast Ethernet, and Gigabit Ethernet ports. Configuring System Message Logging Describes how to create, download, and upload switch configuration files. Configuring CDP Describes how to configure hardware and software broadcast suppression. Configuring Broadcast Suppression Describes how to configure Cisco Discovery Protocol (CDP). Configuring VLANs Describes how to check connectivity using the VLAN Management Policy Server...
... Time Protocol (NTP). Configuring Layer 3 Protocol Filtering Describes how to configure GARP VLAN Registration Protocol (GVRP) on Ethernet, Fast Ethernet, and Gigabit Ethernet ports. Configuring System Message Logging Describes how to create, download, and upload switch configuration files. Configuring CDP Describes how to configure hardware and software broadcast suppression. Configuring Broadcast Suppression Describes how to configure Cisco Discovery Protocol (CDP). Configuring VLANs Describes how to check connectivity using the VLAN Management Policy Server...
Software Guide
Page 33
.... To access the Cisco TAC website, go to which your product serial number. 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 33 To obtain a directory of Cisco support services to this URL: http://www.cisco.com/tac All customers, partners, and resellers who have a valid Cisco service contract have available your service agreement number and your company is not restored quickly. These classifications are a Cisco.com registered user...
.... To access the Cisco TAC website, go to which your product serial number. 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 33 To obtain a directory of Cisco support services to this URL: http://www.cisco.com/tac All customers, partners, and resellers who have a valid Cisco service contract have available your service agreement number and your company is not restored quickly. These classifications are a Cisco.com registered user...
Software Guide
Page 45
... that begin with Telnet, use this command to configure the console interface. From global configuration mode, enter the interface type location command. To exit configuration mode completely and return to remote devices, change terminal settings on a temporary basis, perform basic tests, and display system information. Do not include a space. From the directly connected console or the virtual terminal used with a particular character sequence, type in . Prompt Router> Router# Router(config)# Router(config-if)# Router(config-line)# The Cisco IOS command interpreter, called...
... that begin with Telnet, use this command to configure the console interface. From global configuration mode, enter the interface type location command. To exit configuration mode completely and return to remote devices, change terminal settings on a temporary basis, perform basic tests, and display system information. Do not include a space. From the directly connected console or the virtual terminal used with a particular character sequence, type in . Prompt Router> Router# Router(config)# Router(config-if)# Router(config-line)# The Cisco IOS command interpreter, called...
Software Guide
Page 47
... Saving the Cisco IOS Configuration To view and save the configuration after you should manually shut down the matching interface on the redundant MSFC will stop forwarding packets. Therefore, you make changes, perform this task: Step 1 Step 2 Step 3 Task View the current operating configuration at the privileged EXEC prompt. Exit configuration mode. Save the current configuration to configure routing. Command Router# show running-config Router# show interface command. To bring up . Bring the interface up . Exit configuration mode...
... Saving the Cisco IOS Configuration To view and save the configuration after you should manually shut down the matching interface on the redundant MSFC will stop forwarding packets. Therefore, you make changes, perform this task: Step 1 Step 2 Step 3 Task View the current operating configuration at the privileged EXEC prompt. Exit configuration mode. Save the current configuration to configure routing. Command Router# show running-config Router# show interface command. To bring up . Bring the interface up . Exit configuration mode...
Software Guide
Page 55
... remove default gateway entries, perform one of the attached host. Caution You must use the console port for the console port. Console> (enable) set ip route default 10.1.1.20 Route added. Chapter 3 Configuring the Switch IP Address and Default Gateway Configuring the SLIP (sl0) Interface on the console port, an EIA/TIA-232 terminal cannot connect through the console port and you enter the slip attach command, you will lose the console port connection. Clear all This example shows how to configure three default gateways on the Console Port Use...
... remove default gateway entries, perform one of the attached host. Caution You must use the console port for the console port. Console> (enable) set ip route default 10.1.1.20 Route added. Chapter 3 Configuring the Switch IP Address and Default Gateway Configuring the SLIP (sl0) Interface on the console port, an EIA/TIA-232 terminal cannot connect through the console port and you enter the slip attach command, you will lose the console port connection. Clear all This example shows how to configure three default gateways on the Console Port Use...
Software Guide
Page 60
... hub is removed from one port and disabled on the other stations attached to the address table. The switch uses an aging mechanism, defined by using the source address of the sending station with the set port speed command. Port negotiation is shared by default. Ports on a typical Ethernet hub all connect to a common backplane within the hub, and the bandwidth of the same VLAN except the port that each port as...
... hub is removed from one port and disabled on the other stations attached to the address table. The switch uses an aging mechanism, defined by using the source address of the sending station with the set port speed command. Port negotiation is shared by default. Ports on a typical Ethernet hub all connect to a common backplane within the hub, and the bandwidth of the same VLAN except the port that each port as...
Software Guide
Page 62
... port 1 Port Name Status Vlan Duplex Speed Type 1/1 Router Connection connected trunk full 1000 1000BaseSX 1/2 Server Link connected trunk full 1000 1000BaseSX Last-Time-Cleared Wed Jun 16 1999, 16:25:57 Console> (enable) Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 4-4 78-13315-02 Console> (enable) show port [mod[/port]] This example shows how to set . To set the port name, perform this task in errdisable State, page 4-9 • Configuring the Jumbo Frame Feature, page 4-11 • Checking Connectivity...
... port 1 Port Name Status Vlan Duplex Speed Type 1/1 Router Connection connected trunk full 1000 1000BaseSX 1/2 Server Link connected trunk full 1000 1000BaseSX Last-Time-Cleared Wed Jun 16 1999, 16:25:57 Console> (enable) Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 4-4 78-13315-02 Console> (enable) show port [mod[/port]] This example shows how to set . To set the port name, perform this task in errdisable State, page 4-9 • Configuring the Jumbo Frame Feature, page 4-11 • Checking Connectivity...
Software Guide
Page 66
..., and Gigabit Ethernet ports. This situation might cause a security and network instability problem. When you enter the clear config all command or in the event of a configuration loss, all ports into VLAN 1. Command set the port debounce timer, the switch delays notifying the main processor of a link change the default port status setting on the chassis. Setting the Port Configuration Chapter 4 Configuring Ethernet, Fast Ethernet, and Gigabit Ethernet Switching When you set default portstatus {enable | disable} show default This example shows how to change the port...
..., and Gigabit Ethernet ports. This situation might cause a security and network instability problem. When you enter the clear config all command or in the event of a configuration loss, all ports into VLAN 1. Command set the port debounce timer, the switch delays notifying the main processor of a link change the default port status setting on the chassis. Setting the Port Configuration Chapter 4 Configuring Ethernet, Fast Ethernet, and Gigabit Ethernet Switching When you set default portstatus {enable | disable} show default This example shows how to change the port...
Software Guide
Page 69
... Multilayer Switching Feature Card (MSFC) and Multilayer Switch Module (MSM) do not support jumbo frame routing; Trunk ports - Note Occasionally, you enable the jumbo frame feature on a port, the MTU size is increased to 9216 bytes. If this occurs, enter the set port jumbo command to reenable the ports. 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 4-11 Chapter 4 Configuring Ethernet, Fast Ethernet, and Gigabit Ethernet Switching Setting the Port Configuration Configuring the Jumbo...
... Multilayer Switching Feature Card (MSFC) and Multilayer Switch Module (MSM) do not support jumbo frame routing; Trunk ports - Note Occasionally, you enable the jumbo frame feature on a port, the MTU size is increased to 9216 bytes. If this occurs, enter the set port jumbo command to reenable the ports. 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 4-11 Chapter 4 Configuring Ethernet, Fast Ethernet, and Gigabit Ethernet Switching Setting the Port Configuration Configuring the Jumbo...
Software Guide
Page 145
... set to the forwarding state. PortFast mode affects only the transition from disable (link down) to enable (link up convergence, use nondefault parameter values permitted by IEEE 802.1D) for active Instances 1-6. In a network with links of 10 Mbps or faster, the network diameter can reduce the convergence time. Note Reducing the timer parameters values is the maximum number of 14 seconds. If a port in PortFast mode...
... set to the forwarding state. PortFast mode affects only the transition from disable (link down) to enable (link up convergence, use nondefault parameter values permitted by IEEE 802.1D) for active Instances 1-6. In a network with links of 10 Mbps or faster, the network diameter can reduce the convergence time. Note Reducing the timer parameters values is the maximum number of 14 seconds. If a port in PortFast mode...
Software Guide
Page 171
... 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 10-1 Note For complete syntax and usage information for the commands used in this chapter, refer to all the other switches in a number of VLANs on one switch and have those changes automatically communicated to the Catalyst 6000 Family Command Reference publication. VTP minimizes misconfigurations and configuration inconsistencies that maintains VLAN configuration consistency by managing the addition, deletion, and renaming of problems, such as...
... 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 10-1 Note For complete syntax and usage information for the commands used in this chapter, refer to all the other switches in a number of VLANs on one switch and have those changes automatically communicated to the Catalyst 6000 Family Command Reference publication. VTP minimizes misconfigurations and configuration inconsistencies that maintains VLAN configuration consistency by managing the addition, deletion, and renaming of problems, such as...
Software Guide
Page 217
... to ARP requests for IP addresses within the subnet and forwards all Layer 3 interfaces/subinterfaces on that VLAN shut down , this message is disabled by the configuration on the switch to which they are connected. With local proxy ARP enabled, the MSFC responds to all ARP requests for each Layer 3 interface: %AUTOSTATE-6-SHUT_DOWN 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 12-5 Web Cache...
... to ARP requests for IP addresses within the subnet and forwards all Layer 3 interfaces/subinterfaces on that VLAN shut down , this message is disabled by the configuration on the switch to which they are connected. With local proxy ARP enabled, the MSFC responds to all ARP requests for each Layer 3 interface: %AUTOSTATE-6-SHUT_DOWN 78-13315-02 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 12-5 Web Cache...
Software Guide
Page 366
... secure mode, the port is no domain requests Default Configuration Disabled Null None vmps-config-database.1 Null Open Allow 18-2 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 If you connect a device with a MAC address that come online through the port are checked again with software release 6.2(1), a port can also make an explicit entry in the database, VMPS sends the fallback VLAN name to the port. keyword for the VLAN...
... secure mode, the port is no domain requests Default Configuration Disabled Null None vmps-config-database.1 Null Open Allow 18-2 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 If you connect a device with a MAC address that come online through the port are checked again with software release 6.2(1), a port can also make an explicit entry in the database, VMPS sends the fallback VLAN name to the port. keyword for the VLAN...
Software Guide
Page 414
... control enable access • Specify the IP addresses and UDP ports of a client for transport between the RADIUS client and server. A ticket is disabled by the NAS to authenticate users attempting to connect to RFC 2138, "Remote Authentication Dial In User Service (RADIUS)." The key itself is reenabled automatically. The NAS functions as the one or more information about how the RADIUS protocol operates, refer to a network device...
... control enable access • Specify the IP addresses and UDP ports of a client for transport between the RADIUS client and server. A ticket is disabled by the NAS to authenticate users attempting to connect to RFC 2138, "Remote Authentication Dial In User Service (RADIUS)." The key itself is reenabled automatically. The NAS functions as the one or more information about how the RADIUS protocol operates, refer to a network device...
Software Guide
Page 424
... prior to activate case sensitivity. 21-14 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 You must reset the password after installing software release 5.4 to software release 5.4 remain non-case sensitive. set in privileged mode: Step 1 Step 2 Step 3 Task Command Enable local login authentication on the switch. Passwords are enabled for both console and Telnet connections, and how to verify the configuration: Console> (enable) set authentication login local enable local login authentication set to 19 characters, and use any...
... prior to activate case sensitivity. 21-14 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 You must reset the password after installing software release 5.4 to software release 5.4 remain non-case sensitive. set in privileged mode: Step 1 Step 2 Step 3 Task Command Enable local login authentication on the switch. Passwords are enabled for both console and Telnet connections, and how to verify the configuration: Console> (enable) set authentication login local enable local login authentication set to 19 characters, and use any...
Software Guide
Page 446
... privileged mode: Step 1 Step 2 Task Set all clients to forward user credentials upon successful Kerberos authentication. (Optional) Configure Telnet to fail if clients cannot authenticate to the remote server. To configure clients to forward user credentials as they authenticate from the switch to Kerberized remote hosts on the network. As an additional layer of authentication for that network service. Configuring Authentication Chapter 21 Configuring Switch Access Using AAA This example shows how to delete an SRVTAB entry: kerberos> (enable) clear kerberos...
... privileged mode: Step 1 Step 2 Task Set all clients to forward user credentials upon successful Kerberos authentication. (Optional) Configure Telnet to fail if clients cannot authenticate to the remote server. To configure clients to forward user credentials as they authenticate from the switch to Kerberized remote hosts on the network. As an additional layer of authentication for that network service. Configuring Authentication Chapter 21 Configuring Switch Access Using AAA This example shows how to delete an SRVTAB entry: kerberos> (enable) clear kerberos...
Software Guide
Page 521
...-16), perform the following: Router(config)#config-register 0x0 Router(config)# Note We recommend that boot system commands in this section use the switch console command to access the MSFC from the active supervisor engine. Manually Booting the MSFC If the configuration register on both MSFCs is set to 0x0, then MSFC manual mode requires that the MSFC be manually booted each time the switch is not supported on Telnet sessions. The procedures in both...
...-16), perform the following: Router(config)#config-register 0x0 Router(config)# Note We recommend that boot system commands in this section use the switch console command to access the MSFC from the active supervisor engine. Manually Booting the MSFC If the configuration register on both MSFCs is set to 0x0, then MSFC manual mode requires that the MSFC be manually booted each time the switch is not supported on Telnet sessions. The procedures in both...
Software Guide
Page 565
... engine software image must be booted. The computer from Cisco.com. Caution A modem connection from a local computer, connect the console port (port mode switch in the in position) to your modem and access the switch configuration settings. To download from the telephone network to a serial port on the computer, using the Xmodem protocol. Xmodem and Ymodem file transfers are included in the "Command-Line Interfaces" chapter for more information about the ROM monitor. and -s sets the console port data rate...
... engine software image must be booted. The computer from Cisco.com. Caution A modem connection from a local computer, connect the console port (port mode switch in the in position) to your modem and access the switch configuration settings. To download from the telephone network to a serial port on the computer, using the Xmodem protocol. Xmodem and Ymodem file transfers are included in the "Command-Line Interfaces" chapter for more information about the ROM monitor. and -s sets the console port data rate...
Software Guide
Page 630
... configured for multicast addresses with MAC-1 to be autoconfigured. When a secure port receives a packet, the source MAC address of the connected devices. If a security violation occurs, you have the port dynamically configure the MAC address of the packet is already configured as the secure MAC address on port 2/2 and then connect the station with this command. 35-2 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 Restricting Traffic Based on the Host MAC Address You can filter traffic based...
... configured for multicast addresses with MAC-1 to be autoconfigured. When a secure port receives a packet, the source MAC address of the connected devices. If a security violation occurs, you have the port dynamically configure the MAC address of the packet is already configured as the secure MAC address on port 2/2 and then connect the station with this command. 35-2 Catalyst 6000 Family Software Configuration Guide-Releases 6.3 and 6.4 78-13315-02 Restricting Traffic Based on the Host MAC Address You can filter traffic based...
Software Guide
Page 869
... QoS understanding 1 QoS understanding policy 61 QoS untrusted port keyword 10 QoS VLAN-based or port-based 23, 32 QoS WRED drop thresholds 49 R RADIUS accounting configuration guidelines 60 creating records 57 disabling 61 enabling 60 events 57 example configuration 63 overview 56 servers, specifying 58 suppressing 59 updating the server 59 RADIUS authentication configuration guidelines 11 deadtime, setting 28 default configuration 10 disabling 30 enabling 25 key, clearing 29 key, specifying 24 overview 4 retransmit count, setting 27 servers clearing 29 specifying 24 servers, clearing...
... QoS understanding 1 QoS understanding policy 61 QoS untrusted port keyword 10 QoS VLAN-based or port-based 23, 32 QoS WRED drop thresholds 49 R RADIUS accounting configuration guidelines 60 creating records 57 disabling 61 enabling 60 events 57 example configuration 63 overview 56 servers, specifying 58 suppressing 59 updating the server 59 RADIUS authentication configuration guidelines 11 deadtime, setting 28 default configuration 10 disabling 30 enabling 25 key, clearing 29 key, specifying 24 overview 4 retransmit count, setting 27 servers clearing 29 specifying 24 servers, clearing...