Catalyst 4500 Series Switch Cisco IOS Software .

Transcription

Catalyst 4500 Series Switch Cisco IOSSoftware Configuration GuideRelease IOS XE 3.9.xE and IOS 15.2(5)ExAmericas HeadquartersCisco Systems, Inc.170 West Tasman DriveSan Jose, CA 95134-1706USAhttp://www.cisco.comTel: 408 526-4000800 553-NETS (6387)Fax: 408 527-0883

THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. ALLSTATEMENTS, INFORMATION, AND RECOMMENDATIONS IN THIS MANUAL ARE BELIEVED TO BE ACCURATE BUT ARE PRESENTED WITHOUTWARRANTY OF ANY KIND, EXPRESS OR IMPLIED. USERS MUST TAKE FULL RESPONSIBILITY FOR THEIR APPLICATION OF ANY PRODUCTS.THE SOFTWARE LICENSE AND LIMITED WARRANTY FOR THE ACCOMPANYING PRODUCT ARE SET FORTH IN THE INFORMATION PACKET THATSHIPPED WITH THE PRODUCT AND ARE INCORPORATED HEREIN BY THIS REFERENCE. IF YOU ARE UNABLE TO LOCATE THE SOFTWARE LICENSEOR LIMITED WARRANTY, CONTACT YOUR CISCO REPRESENTATIVE FOR A COPY.The Cisco implementation of TCP header compression is an adaptation of a program developed by the University of California, Berkeley (UCB) as part of UCB’s publicdomain version of the UNIX operating system. All rights reserved. Copyright 1981, Regents of the University of California.NOTWITHSTANDING ANY OTHER WARRANTY HEREIN, ALL DOCUMENT FILES AND SOFTWARE OF THESE SUPPLIERS ARE PROVIDED “AS IS” WITHALL FAULTS. CISCO AND THE ABOVE-NAMED SUPPLIERS DISCLAIM ALL WARRANTIES, EXPRESSED OR IMPLIED, INCLUDING, WITHOUTLIMITATION, THOSE OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OR ARISING FROM A COURSE OFDEALING, USAGE, OR TRADE PRACTICE.IN NO EVENT SHALL CISCO OR ITS SUPPLIERS BE LIABLE FOR ANY INDIRECT, SPECIAL, CONSEQUENTIAL, OR INCIDENTAL DAMAGES, INCLUDING,WITHOUT LIMITATION, LOST PROFITS OR LOSS OR DAMAGE TO DATA ARISING OUT OF THE USE OR INABILITY TO USE THIS MANUAL, EVEN IF CISCOOR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to thisURL: www.cisco.com/go/trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not implya partnership relationship between Cisco and any other company. (1721R)Catalyst 4500 Series Switch Cisco IOS Command ReferenceCopyright 1999–2016 Cisco Systems, Inc. All rights reserved.

Catalyst 4500 Series IOSCommandsNew Commandsauto securityauto security-portshow auto securityRevised CommandsA Commandsaaa accounting dot1x default start-stop group radiusaaa accounting system default start-stop group radiusclear mac-address-tableaccess-group modeaccess-list hardware capture modeaccess-list hardware entriesaccess-list hardware regionactionapplyancp client serverancp mode clientapplyarp access-listattach moduleauthentication control-directionauthentication critical recovery delayauthentication eventauthentication fallbackauthentication host-modeCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exiii

authentication openauthentication orderauthentication periodicauthentication port-controlauthentication priorityauthentication timerauthentication violationauto qos classifyauto qos classify policeauto qos srnd4auto qos trustauto qos videoauto qos voipauto qos voip cisco-softphoneauto securityauto security-portauto-syncaverage-packet-size (netflow-lite monitor submode)C Commandscall-home (global configuration)call-home requestcall-home sendcall-home send alert-groupcall-home testchannel-groupchannel-protocolcisp enableclass-mapclear countersclear errdisable interfaceclear hw-module slot passwordclear interface gigabitethernetclear interface vlanclear ip access-templateclear ip arp inspection logclear ip arp inspection statisticsCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exiv

clear ip dhcp snooping bindingclear ip dhcp snooping databaseclear ip dhcp snooping database statisticsclear ip igmp groupclear ip mfib countersclear ip mfib fastdropclear ip wccpclear lacp countersclear netflow-lite exporter statisticsclear netflow-lite monitor statistics interfaceclear nmsp statisticsclear mac-address-table dynamicclear pagpclear port-securityclear pppoe intermediate-agent statisticsclear qosclear switch virtual dual-active fast-helloclear vlan countersclear vmps statisticscontrol-planecos (netflow-lite exporter submode)counterD Commandsdebug adjacencydebug backupdebug condition interfacedebug condition standbydebug condition vlandebug device-sensordebug dot1xdebug etherchnldebug interfacedebug ip dhcp snooping eventdebug ip dhcp snooping packetdebug ip verify source packetdebug ipcCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exv

debug lacpdebug monitordebug nmspdebug nvramdebug pagpdebug platform packet protocol lacpdebug platform packet protocol pagpdebug pmdebug port-securitydebug pppoe intermediate-agentdebug redundancydebug spanning-treedebug spanning-tree backbonefastdebug spanning-tree switchdebug spanning-tree uplinkfastdebug sw-vlandebug sw-vlan ifsdebug sw-vlan notificationdebug sw-vlan vtpdebug udlddebug vqpcdefine interface-rangedenydestination (netflow-lite exporter submode)device-sensor filter-listdevice-sensor filter-list dhcpdevice-sensor filter-specdevice-sensor notifydiagnostic fpga soft-error recoverdiagnostic monitor actiondiagnostic startdot1x auth-fail max-attemptsdot1x auth-fail vlandot1x credentials (global configuration)dot1x criticaldot1x critical eapoldot1x critical recovery delaydot1x critical vlanCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exvi

dot1x control-directiondot1x guest-vlandot1x guest-vlan supplicantdot1x host-modedot1x initializedot1x mac-auth-bypassdot1x max-reauth-reqdot1x max-reqdot1x port-controldot1x re-authenticatedot1x re-authenticationdot1x system-auth-controldot1x timeoutdscp (netflow-lite exporter submode)dual-active detection (virtual switch)duplexdual-active recovery ip addressduplexE Commandseraseerrdisable detect causeerrdisable recoveryexport-protocol (netflow-lite exporter submode)exporter (netflow-lite monitor submode)F CommandsflowcontrolH Commandshardware statisticshw-module beaconhw-module module starthw-module module stophw-module port-grouphw-module powerhw-module system max-port-num-mode 1/2Catalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exvii

hw-module system max-port-num-mode 1/2 switch 1/2/allhw-module system max-queue-limithw-module uplink modehw-module uplink selectI Commandsinstanceinterfaceinterface (virtual switch)interface port-channelinterface rangeinterface vlanip admission proxy http refresh-allip arp inspection filter vlanip arp inspection limit (interface)ip arp inspection log-bufferip arp inspection trustip arp inspection validateip arp inspection vlanip arp inspection vlan loggingip cef load-sharing algorithmip dhcp snoopingip dhcp snooping bindingip dhcp snooping databaseip dhcp snooping information optionip dhcp snooping information option allow-untrustedip dhcp snooping limit rateip dhcp snooping trustip dhcp snooping vlanip device tracking maximumip igmp filterip igmp max-groupsip igmp profileip igmp query-intervalip igmp snoopingCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exviii

ip igmp snooping report-suppressionip igmp snooping vlanip igmp snooping vlan explicit-trackingip igmp snooping vlan immediate-leaveip igmp snooping vlan mrouterip igmp snooping vlan staticip local-proxy-arpip mfib fastdropip name-serverip route-cache flowip source bindingip sticky-arpip verify header vlan allip verify sourceip verify unicast source reachable-viaip wccpip wccp check services allip wccp group-listenip wccp redirectp wccp redirect exclude inipv6 mld snoopingipv6 mld snooping last-listener-query-countipv6 mld snooping last-listener-query-intervalipv6 mld snooping listener-message-suppressionipv6 mld snooping robustness-variableipv6 mld snooping tcnipv6 mld snooping vlanissu abortversionissu acceptversionissu commitversionredundancy config-sync mismatched-commandsissu loadversionissu runversionissu set rollback-timerL Commandsl2protocol-tunnelCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exix

l2protocol-tunnel cosl2protocol-tunnel drop-thresholdl2protocol-tunnel shutdown-thresholdlacp port-prioritylacp system-prioritylicense right-to-use activatelicense right-to-use deactivatelldp tlv-select power-managementlogging event trunk-status global (global configuration)logging event link-status global (global configuration)logging event trunk-status global (global configuration)logging event link-status global (global configuration)logging event link-status (interface configuration)logging event trunk-status (interface configuration)M Commandsmac access-list extendedmac-address (virtual switch)mac-address-table aging-timemac-address-table dynamic group protocolsmac-address-table learning vlanmac-address-table notificationmac-address-table staticmacro apply cisco-desktopmacro apply cisco-phonemacro apply cisco-routermacro apply cisco-switchmacro auto devicemacro auto execute (built-in function)macro auto execute (remotely-defined trigger)macro auto execute (user-defined function)macro auto global processingmacro auto mac-address-groupmacro auto monitormacro auto processingmacro auto stickymacro global apply cisco-globalCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exx

macro global apply system-cppmacro global descriptionmacsec network-linkmkamka policymain-cpumatchmatch flow ipmdix automedia-typemodemonitor capture {access-list class-map}monitor capture [clear export]monitor capture [interface vlan control-plane]monitor capture file location buffer-sizemonitor capture limitmonitor capture mycap matchmonitor capture startmonitor sessionmtumvr (global configuration)mvr (interface configuration)N Commandsnamenetflow-lite exporternetflow-lite monitornetflow-lite samplernmspnmsp attachment suppressO Commandsoptions timeout (netflow-lite exporter submode)P Commandspacket-offset (netflow-lite sampler submode)packet-rate (netflow-lite sampler submode)Catalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxi

packet-section size (netflow-lite sampler submode)pagp learn-methodpagp -channel load-balanceport-channel standalone-disableport-security mac-addressport-security mac-address stickyport-security maximumpower dc inputpower efficient-ethernet autopower inlinepower inline consumptionpower inline four-pair forcedpower inline logging globalpower inline policepower redundancy combined max inputspower redundancy-modepppoe intermediate-agent (global)pppoe intermediate-agent (interface)pppoe intermediate-agent (interface vlan-range)pppoe intermediate-agent format-type (global)pppoe intermediate-agent limit ratepppoe intermediate-agent trustpppoe intermediate-agent vendor-tag strippriorityprivate-vlanprivate-vlan mappingprivate-vlan synchronizeprofileprofile flowQ Commandsqos account layer-all encapsulationqos account layer2 encapsulationCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxii

qos trustqueue-limitR Commandsredundancyredundancy force-switchoverredundancy reloadremote login moduleremote-spanrenew ip dhcp snooping databaseresetrevisionS Commandssampler (netflow-lite monitor submode)service-policy (interface configuration)service-policy (policy-map class)service-policy input (control-plane)session modulesetset cosset dscpset precedenceset qos-groupshape (interface configuration)shell triggersnmp ifindex clearsnmp ifindex persistsnmp-server enable trapssnmp-server ifindex persistsnmp-server ifindex persist compresssnmp trap mac-notification changesource (netflow-lite exporter submode)spanning-tree backbonefastspanning-tree bpdufilterspanning-tree bpduguardspanning-tree bridge assuranceCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxiii

spanning-tree costspanning-tree etherchannel guard misconfigspanning-tree extend system-idspanning-tree guardspanning-tree link-typespanning-tree loopguard defaultspanning-tree modespanning-tree mstspanning-tree mst configurationspanning-tree mst forward-timespanning-tree mst hello-timespanning-tree mst max-agespanning-tree mst max-hopsspanning-tree mst simulate pvst globalspanning-tree mst simulate pvst (interface configuration mode)spanning-tree mst rootspanning-tree pathcost methodspanning-tree portfast (interface configuration mode)spanning-tree portfast edge bpdufilter defaultspanning-tree portfast edge bpduguard defaultspanning-tree portfastspanning-tree port-priorityspanning-tree uplinkfastspanning-tree vlanspeedstorm-controlstorm-control broadcast include multicastswitch (virtual switch)switch convert mode (virtual switch)switch virtual domain (virtual switch)switch virtual link (virtual switch)switchportswitchport access vlanswitchport autostate excludeswitchport blockswitchport modeswitchport port-securityswitchport private-vlan association trunkCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxiv

switchport private-vlan host-associationswitchport private-vlan mappingswitchport private-vlan trunk allowed vlanswitchport private-vlan trunk native vlan tagswitchport trunkswitchport vlan mappingsystem mtuShow Commandsshow access-group mode interfaceshow adjacencyshow ancp multicastshow arp access-listshow authenticationshow auto install statusshow auto qosshow auto securityshow bootflash:show bootvarshow cable-diagnostics tdrshow call-homeshow cdp neighborsshow class-mapshow device-sensor cacheshow diagnostic contentshow diagnostic result moduleshow diagnostic result module testshow diagnostic result module test 2show diagnostic result module test 3show dot1xshow eigrp pluginsshow errdisable detectshow errdisable recoveryshow etherchannelshow flowcontrolshow hw-module port-groupshow hw-module system max-port-num-modeCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxv

show hw-module uplinkshow idpromshow interfacesshow interfaces (virtual switch)show interfaces countersshow interfaces counters (virtual switch)show interfaces descriptionshow interfaces linkshow interfaces mtushow interfaces private-vlan mappingshow interfaces statusshow interfaces switchportshow interfaces transceivershow interfaces trunkshow ip arp inspectionshow ip arp inspection logshow ip cef vlanshow ip dhcp snoopingshow ip dhcp snooping bindingshow ip dhcp snooping databaseshow ip igmp interfaceshow ip igmp profileshow ip igmp snoopingshow ip igmp snooping membershipshow ip igmp snooping mroutershow ip igmp snooping vlanshow ip interfaceshow ip mfibshow ip mfib fastdropshow ip mrouteshow ip source bindingshow ip verify sourceshow ip wccpshow ipcshow ipv6 mld snoopingshow ipv6 mld snooping mroutershow ipv6 mld snooping queriershow ipv6 snooping countersCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxvi

show issu capabilityshow issu clientsshow issu comp-matrixshow issu endpointsshow issu entitiesshow issu fsmshow issu messageshow issu negotiatedshow issu rollback-timershow issu sessionsshow issu stateshow l2protocol-tunnelshow lacpshow licenseshow mabshow mac access-group interfaceshow mac-address-table addressshow mac-address-table aging-timeshow mac-address-table countshow mac-address-table dynamicshow mac-address-table interfaceshow mac address-table learningshow mac-address-table multicastshow mac-address-table notificationshow mac-address-table protocolshow mac-address-table staticshow mac-address-table vlanshow macro auto mac-address-groupshow macro auto deviceshow macro auto interfaceshow macro auto monitor clientsshow macro auto monitor deviceshow macro auto monitor typeshow moduleshow monitorshow monitor captureshow monitor capture fileshow mvrCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxvii

show mvr interfaceshow mvr membersshow netflow-lite exportershow netflow-lite monitorshow netflow-lite samplershow nmspshow pagpshow pagp dual-active (virtual switch)show policy-mapshow policy-map control-planeshow policy-map interfaceshow policy-map interface vlanshow port-securityshow powershow power inline policeshow qosshow pppoe intermediate-agent interfaceshow qosshow qos aggregate policershow qos dblshow qos interfaceshow qos mapsshow redundancyshow redundancy config-syncshow running-configshow slavebootflash:show slaveslot0:show slot0:show spanning-treeshow spanning-tree mstshow storm-controlshow switch virtual (virtual switch)show system mtushow tech-supportshow udldshow vlanshow vlan access-mapshow vlan countersCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxviii

show vlan dot1q tag nativeshow vlan groupshow vlan internal usageshow vlan mappingshow vlan mtushow vlan private-vlanshow vlan remote-spanshow vmpsshow vslp (virtual switch)show vtpT Commandstemplate data timeout (netflow-lite exporter submode)test cable-diagnostics tdrtraceroute mactraceroute mac iptransport udp (netflow-lite exporter submode)trustttl (netflow-lite exporter submode)tx-queueU Commandsudld (global configuration mode)udld (interface configuration mode)udld resetunidirectionalusernameV Commandsverifyvlan (VLAN Database mode)vlan access-mapvlan configurationvlan databasevlan dot1q tag nativevlan filtervlan groupCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxix

vlan internal allocation policyvmps reconfirm (global configuration)vmps reconfirm (privileged EXEC)vmps retryvmps servervrf (netflow-lite exporter submode)vslp interval (virtual switch)vtp (global configuration mode)vtp clientvtp domainvtp passwordvtp pruningvtp servervtp transparentvtp v2-modeCatalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Exxx

PrefaceThis preface describes the audience, organization, and conventions of this publication, and providesinformation on how to obtain related documentation.Cisco documentation and additional literature are available in a CD-ROM package, which ships withyour product. The Documentation CD-ROM, a member of the Cisco Connection Family, is updatedmonthly. Therefore, it might be more up to date than printed documentation. To order additional copiesof the Documentation CD-ROM, contact your local sales representative or call customer service. TheCD-ROM package is available as a single package or as an annual subscription.AudienceThis publication is for experienced network administrators who are responsible for configuring andmaintaining Catalyst 4500 series switches.Cisco IOS Software DocumentationIn addition to the information provided in this publication, you might need to refer to the Cisco IOSdocumentation set. The Cisco IOS software documentation is divided into nine modules and two masterindexes. Each module consists of two books: a configuration guide and a corresponding commandreference. Chapters in a configuration guide describe protocols, configuration tasks, and Cisco IOSsoftware functionality and contain comprehensive configuration examples. Chapters in a commandreference provide complete command syntax information. Each configuration guide can be used inconjunction with its corresponding command reference.OrganizationThis chapter describes the contents of each chapter in this document.Catalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.xE and IOS 15.2(5)Exxxi

ChapterTitleDescriptionChapter 1Command-Line Interface Describe

Catalyst 4500 Series Switch Cisco IOS Command Reference—Cisco IOS XE 3.9.0E and IOS 15.2(5)Ex Catalyst 4500 Series IOS Commands New Commands auto security auto security-port show auto security Revised Commands A Commands aaa accounting dot1x default start-stop group radius aaa accounting sy