You are on page 1of 22

3COM SUPERSTACK 3 SWITCH 4500 QUICK REFERENCE GUIDE

3COM OS VERSION 3.1.X


About the Web Interface
This guide details the commands available on the Web and the Command Line Interfaces. The tables contained in this document reference the CLI commands and the equivalent Web Interface menu items that allow the same configuration to be made via the web interface.

About the Command Line Interface


To use and navigate the command line interface of your unit, please refer to the following points for assistance:

When initially accessing the command line interface, press Enter when prompted. The User View menu for the unit displays. This is indicated by the chevron brackets around the name of the unit at the prompt, for example, <4500>. When in the System View menu, square brackets appear around the name of the unit at the prompt, for example, [4500]. You must be in the System View menu to access the configurable CLI commands. Some commands can be entered directly at any prompt from anywhere in the interface. If you enter part of a command followed by a ? (with no space between), the CLI will show you all the commands that begin in that way. To display command parameters: At the prompt, enter the name of the command followed by a space and ?. For example: <4500>boot ? The following parameters are displayed: boot-loader bootrom <4500> To specify boot loader, enter the command as follows: <4500>boot boot-loader ? You only need to enter ? if parameters exist for the command. To display parent menus: At the prompt, enter quit. To display the User View menu: Press <CTRL-Z>. To obtain help: At the prompt, enter ?. The term view may be used interchangeably with the term menu.
1

The undo command is placed before the command you wish to undo, for example, undo set authentication password. <CTRL A> places the cursor back to the start of the command line. Enter the first few characters of a command and press TAB to enter the full command without having to input the entire command (where there is only one command that starts with the entered characters). Use the Up Arrow key at the prompt to repeat the previous command string. Use the Delete key to delete the character after the cursor; the Backspace key deletes the character before the cursor. When entering physical port numbers, Enter the port number as x/0/z, where x is the unit number and z is the physical port number.

Further Information
For further information about how to use the command line interface, refer to the Command Reference Guide and the Configuration Guide, which are both available as PDF documents on the CD that accompanied the unit.

Menus
This section provides a summary of menus and commands supported by the agent for each of the supported hardware platform variants. Any matching web commands available in the web interface are also shown. Commands marked with * are available on the Switch 4500 PWR only.
Table 1
<Ctrl+A> <Tab>

Command Line Editing Moves the cursor to the start of the command line Command completion

Table 2 Command
? display display acl display am display arp

Commands Available in Any View Description Help Display current system information View detailed configuration information about the ACL View the status of access management function View the ARP mapping table View the current setting of the dynamic ARP map aging timer View the APP file used for this boot and the one that will be used at next boot View details about the information channel View the date and time View statistics of the configuration agent Web Command

display arp timer aging display boot-loader display channel display clock display config-agent

display connection display cpu display currentconfiguration display debugging display device display dhcp client display dhcp-server display dhcp-server interface vlan-interface display diagnosticinformation display domain display dot1x display fan display fib display fib ip_address display fib acl display fib ip-prefix display fib statistics display ftm display ftp-server display ftp-user display history-command display icmp statistics display igmp-snooping configuration display igmp-snooping group display igmp-snooping statistics display info-center display interface display interface vlaninterface display ip host display ip interface vlaninterface display ip ip-prefix

View the connection information of all or specified users Display the occupancy of the CPU Display the current configuration parameters View the enabled debugging process Display device information View detailed information about address allocation to DHCP client View information about DHCP server group View information about the DHCP server group corresponding to the VLAN interface View the current configuration information about all running modules View the configuration of ISP domains View the relevant information of 802.1x View the working state of the built-in fans View the summary of the Forwarding Information Base View the FIB entries matching a destination IP address (range) View the FIB entries matching a specific ACL View the FIB entries matching a specific prefix list View the total number of FIB entries Display Fabric topology management View the parameters of the current FTP server View the parameters of current FTP user View the saved history of commands View the statistics information about ICMP packets View IGMP snooping configuration information View IP multicast groups and MAC multicast groups View the statistics information on IGMP snooping View the configuration of system log and the information recorded in the memory buffer View port configuration information View the information about specified or all VLAN interfaces View all the host names and the corresponding IP addresses View the information of an IP interface View the IP address prefix list Port -> Statistics

4
display ip socket display ip statistics display ip routing-table display ip routing-table X.X.X.X display ip routing-table X.X.X.X X.X.X.X display ip routing-table acl display ip routing-table ipprefix display ip routing-table protocol display ip routing-table radix display ip routing-table statistics display ip routing-table verbose display isolate port display lacp system-id display link-aggregation interface display link-aggregation summary display link-aggregation verbose display local-user display local-server statistics display loopback-detection display mac-address display mac-address agingtime display mac-authentication display mirror display packet-filter display password-control display password-control blacklist display password-control super

Display the information about the sockets in the current system View the statistics information about IP packets View the routing table summary View the routing information of the specified destination address View the routing information in the specified destination address range View the route filtered through specified basic access control list (ACL) View the route information that passed the filtering rule according the input ip prefix list name View the route information of specified protocol View radix tree of routing table Summary statistics of all routes Detail information of routing table View port isolation information View actor system ID View detailed link aggregation information at a designated port View summary information of all aggregation groups View detailed information of a designated port View the relevant information of all (or specified) local users View the configuration information of local RADIUS server group View whether port loopback detection has been enabled and any details View MAC address table information View the aging time of the dynamic entry in the MAC address table Display the global information on centralized MAC address authentication View port mirroring configuration View the information of the activated of ACL Display password-control information Display blacklist information Display super user's password-control information

display poe disconnect* display poe interface* display poe power* display poe powersupply* display poe status* display poe temperatureprotection* display port display power display qos cos-localprecedence-map display qos-interface display qos-interface linerate display qos-interface mirrored-to display qos-interface traffic-limit display radius display radius statistics display rip display rmon alarm display rmon event display rmon eventlog display rmon history display rmon prialarm display rmon statistics display route-policy display rsa local-key-pair public display rsa peer-public-key display saved-configuration display schedule reboot display snmp-agent display snmp-agent community display snmp-agent group

Display PoE Disconnect Mode Display PoE Interface Status View the power information of a specific port or all ports on the Switch Display PoE Power Supply Status View the PoE status of a specific port or all ports on the Switch Display PoE Over Temperature Protection Mode View any ports where the link type is Hybrid or Trunk View the working state of the built-in power supply View "COS->Local-precedence" map View QoS setting information of all interfaces View the parameter setting of traffic rate limitation in the interface output direction View the settings of the traffic mirror View the settings of traffic limit View the configuration information of all RADIUS server groups or a specified one View the statistics information of RADIUS packet View the current RIP running state View RMON alarm information View RMON events View RMON event log View the latest RMON history sampling information Display alarm information about extended RMON View RMON statistics View the configured route policy Display local key pair and public key of the server Display a designated RSA public key View the configuration files stored in the flash memory of the Switch Display the configuration of the schedule reboot terminal service parameters of the current router View information about the SNMP-agent engine ID of current device View the currently configured community names View group name, safe mode, state of various views and storage modes Device -> PoE

6
display snmp-agent mib-view display snmp-agent statistics display snmp-agent sys-info display snmp-agent usm-user display ssh server display ssh server-info display ssh user-information

View the MIB view configuration information of the Switch View current state of SNMP communication View the system information of SNMP configuration View information of all the SNMP usernames in the group username list Display SSH state or session information Display SSH Server information Display information of about the user, including username, corresponding key, and authentication type Display configuration filenames used for system start-up. View the stopping accounting requests View the status information of the current RSTP View the statistics information about TCP packets View the TCP connection state Display the running configuration of the current view View the information of destination Helper server corresponding to a VLAN interface View UDP traffic statistic information View information about the port in a specific unit. View information about the user interface View information about the current user interface Display software version, issue date and the basic hardware configurations Display the OUI address supported by the current system Display information about Voice VLAN features View information about the specified or all VLANs View the information of the entire xrn fabric Traceroute to multicast source Exit from current command view Assign user a higher user level. Return to user view from any view other than user view Check the network routes and troubleshoot the network

display startup display stop-accountingbuffer display stp display tcp statistics display tcp status display this display udp-helper server display udp statistics display unit display user-interface display users display version display voice vlan oui display voice vlan status display vlan display xrn-fabric mtracert quit super return tracert

Table 3

User View

<4500>
Command
boot boot-loader boot bootrom cd clock datetime clock summer-time clock timezone copy debugging debugging arp packet debugging dhcp client debugging dhcp-relay debugging lacp packet debugging lacp state debugging link-aggregation error debugging link-aggregation event debugging mac-authentication event debugging ssh server debugging udp-helper delete dir fabric save-unit-id format free user-interface ftp

Description Specify the application file (.app) used for booting the Switch Upgrade bootrom Change the current directory Configure the current date and time Configure summer time on the Switch Configure local timezone Copy from one file to another Enable system debugging functions Enable ARP debugging Enable DHCP client debugging Enable DHCP relay debugging Enable LACP packets debugging at a designated port or ports Enable LACP state machines debugging on a designated port or ports Enable link aggregation errors debugging Enable link aggregation events debugging Enable the centralized MAC address authentication debugging switch Display debugging information in running SSH Enable UDP Helper debugging Delete a file List files on a file system Save Unit ID Format the storage device on the Switch Reset a specified user interface Establish control connection with the remote FTP Server and enter FTP Client View (See Table 10, FTP Client View, on page 15) Specify the language environment Lock current user terminal interface Create a new directory Display the contents of a file Move the file Display current working directory Reset switch

Web Command

language-mode lock mkdir more move pwd reboot

Administration -> Reboot

8
rename reset acl counter reset arp reset counters interface reset dot1x statistics reset igmp-snooping statistics

Rename a file Clear ACL statistics Reset ARP mapping entries Reset statistical information on the port Reset 802.1x statistics information Reset IGMP Snooping statistics information Clear IP statistics information Clear LACP statistics at a designated port or all ports Reset information in log buffer Reset password history record Reset the super user's password controls Delete infomation in blacklist Clear the statistic information related to the RADIUS protocol Delete contents of recycle bin Delete configuration files Delete the stopping accounting requests from the buffer according to the specified RADIUS server name Clear statistics for STP Clear TCP statistics information Reset information in trap buffer Clear UDP statistics information Delete an existing directory Save current configuration Schedule a reboot of the Switch at specified time Configure the Switch to be rebooted after a specified time delay Send information to other user terminal interface Enable BOOTROM access Configure the configuration file used for starting the system Privilege current user a specifiied priority level. Enter the system view (See Table 4, System View, on page 9) Establish one Telnet connection Configure to display the debugging information on the terminal Enable terminal log information display Administration -> Restore Configuration Save Configuration Administration -> Initialize

reset ip statistics
reset lacp statistics reset logbuffer reset password-control history-record reset password-control history-record super reset password-control blacklist reset radius statistics reset recycle-bin reset saved-configuration reset stop-accounting-buffer

reset stp reset tcp statistics reset trapbuffer reset udp statistics rmdir save schedule reboot at schedule reboot delay send startup bootrom-access enable startup saved-configuration super system-view telnet terminal debugging terminal logging

terminal monitor terminal trapping tftp get tftp put undelete xmodem

Enable the log debugging/log/trap on the terminal monitor Enable terminal trap information display Download a file from the specified directory of the TFTP server Upload a file from the Switch to the specified directory on the TFTP server Recover a deleted file Establish an xmodem connnection Administration -> Restore Configuration Administration -> Backup Configuration

Table 4

System View

<4500>sys
Command
acl number

Description Define ACL identified by a number or a name, and then enter the corresponding ACL view (See Table 19, ACL View, on page 22) Enable the access management function Enable the access management trap Enable the checking of ARP entries Configure the static ARP mapping entries in an ARP mapping table Configure the dynamic ARP aging timer Change the ID of the Switch Change the ID of the Switch Specify the command level Copy source port configuration to destination port Disconnect a user or a category of users by force Delete all the static routes Specify DHCP (Dynamic Host Configuration Protocol) relay security configure information Configure the IP address of the DHCP Server used by the DHCP Server group Configure an ISP domain or enter the view of an existing ISP domain Specify 802.1x configuration information Specify authentication method for 802.1x users Trigger system authentication when receiving DHCP packet(s) Specify maximal on-line user number per port Specify port authenticated status Specify port controlled method Enable quiet period timer Specify maximal request times

Web Command Device -> ACL Security-> Authorized IP

am enable am trap enable arp check enable arp static arp timer aging change unit-id change self-unit command-privilege level copy configuration cut connection delete static-routes all dhcp-security

Device -> IP Route

dhcp-server ip
domain dot1x dot1x authentication-method dot1x dhcp-launch dot1x max-user dot1x port-control dot1x port-method dot1x quiet-period dot1x retry

10
dot1x supp-proxy-check dot1x timer dot1x timer handshake-period end-station polling ipaddress execute fabric-port enable file prompt ftm stacking-vlan ftp server ftp timeout header igmp-snooping igmp-snooping host-agingtime igmp-snooping max-responsetime igmp-snooping router-agingtime info-center channel name info-center console channel info-center enable info-center logbuffer info-center loghost info-center loghost source info-center monitor channel info-center snmp channel info-center source info-center switch-on info-center timestamp info-center trapbuffer interface ethernet interface vlan-interface

Check whether user(s) access the networks by proxy or not Specify timer parameters Set the handshake period of 802.1x Configure the Switch to periodically test specified end-stations by sending PING packets Run the batch file Specify the fabric port of the Switch Modify prompt modes of file operations Specify the stacking VLAN of the Switch Start or shutdown the FTP server Configure the FTP connection timeout interval Define the login banner IGMP snooping Configure the port aging time of the multicast group members Configure the maximum response time for a query Configure the router port aging time of IGMP Snooping Rename a channel Configure the channel through which log information is output to the console Enable the system log Configure to output information to the memory buffer Configure the IP address of the info-center loghost to which to send information Configure the source address of the packets sent to loghost Configure the channel to output the log information to the user terminal Specify new channel for transmitting the SNMP information Add or delete a record to the information channel Turn on the information synchronization on the specified Switch Configure the timestamp output format in debugging/trap information Output information to the trap buffer Enter Ethernet Port View (See Table 16, Ethernet Port View, on page 19) Enable VLAN interface and enter VLAN interface view (See Table 15, VLAN Inteface View, on page 18) Configure the host name and the host IP address Device -> VLAN Interface Administration -> IP Setup Device -> IGMP Snooping Device -> XRN Fabric Port -> Administration

ip host

ip http ip ip-prefix ip route-static lacp system-priority

Configure HTTP Configure an address prefix list or one of its items Configure a static route Configure LACP system priority value

Security -> Authorized IP Device -> IP Route Port -> LACP Port -> Link Aggregation Port -> Link Aggregation

link-aggregation group agg- Configure a descriptor for an aggregation group id description link-aggregation group agg- Create a manual or static aggregation group id mode
local-server local-user local-user password-displaymode loopback-detection enable loopback-detection intervaltime mac-address mac-address timer mac-authentication mac-authentication authmode mac-authentication authpassword mac-authentication authusername mac-authentication domain mac-authentication timer memory password-control password-control enable password-control super poe disconnect* poe legacy enable* poe power-management* poe temperature-protection enable* poe update* private-group-id qos cos-local-precedence-map queue-scheduler

Specify local RADIUS server configuration information Specify local user configuration and enter local-user view (See Table 5, Local-user View, on page 14) Specify password display mode Enable port loopback detection Configure the detection interval for the external loopback condition of each port Configure MAC address Configure the aging time of the Layer-2 dynamic address table entry Enable the centralized MAC address authentication feature on a specified port or globally Specify MAC authenticate authmode config Specify the fixed password Specify the fixed username Configure the ISP domain used by the centralized MAC address authentication user Configure timer parameters of the centralized MAC address authentication Free memory for routing protocols to run normally Specify password controls Enable Password Controls Super user's password controls Set PoE disconnect mode Enable Legacy detection Power Management Over Temperature Protection Update PoE firmware Tunnel Private Group ID attribute description mode Configure CoS Local-precedence mapping table Specify queue scheduling mode and parameters Administration -> System Access

11

12
radius nas-ip radius scheme

Specify the source address of the RADIUS packet sent from NAS Specify RADIUS configuration information and enter the RADIUS view (See Table 12, RADIUS Server Group View, on page 17) Return to user view from any view other than user view Enable RIP and enter RIP view (See Table 18, RIP View, on page 21) Add an entry to the alarm table Add an entry to the event table Add an entry to the extended RMON alarm table Specify a route policy and enter route policy view (See Table 17, Route Policy View, on page 21) Create local RSA host key pair and server key pair Remove all RSA key pairs at the server, including host key pair and Server key pair Enter the public key view (See Table 8, Public Key Edit View, on page 15) Set the unit name of specified unit Enable SFTP Server Configure community access name and access to SNMP Configure an SNMP group Configure a name for a local or remote SNMP engine on the Switch Create or update the view information Specify the size of an SNMP packet Configure system information of running SNMP Configure destination of SNMP notification Enable/disable the device to send Trap messages Configure the timeout of Trap packets Configure the information queue length of Trap packets sent to the destination host Configure the source address for sending Trap packets Configure users in an SNMP group Establish one telnet connection Assign the client RSAKey Set SSH client attribute of authenticating user for the first time access Administration -> SNMP -> Users Administration -> SNMP -> Traps Administration -> SNMP -> Traps Administration -> SNMP -> Community String Administration -> SNMP -> Group

return rip rmon alarm rmon event rmon prialarm route-policy rsa local-key-pair create rsa local-key-pair destroy rsa peer-public-key set unit name sftp server enable snmp-agent community snmp-agent group snmp-agent local-engineid snmp-agent mib-view snmp-agent packet max-size snmp-agent sys-info snmp-agent target-host snmp-agent trap enable snmp-agent trap life snmp-agent trap queue-size snmp-agent trap source snmp-agent usm-user ssh2 ssh client assign rsa-key ssh client first-time enable

ssh server authenticationretries ssh server rekey-interval ssh server timeout ssh user service-type

Define SSH authentication retry times value Define update interval of server key pair Define timeout value for SSH registration authentication Set SSH User service types

ssh user username assign rsa- Associate an existing public key with a designated user key ssh user username authentication-type stp stp bpdu-protection stp mcheck stp mode stp pathcost-standard stp priority stp root primary stp root secondary stp timeout-factor stp timer forward-delay stp timer hello stp timer max-age super password level sysname system-guard tcp timer fin-timeout tcp timer syn-timeout tcp window tftp-server udp-helper enable udp-helper port user-interface

Define an authentication type for a designated user Enable Spanning Tree Protocol Enable BPDU protection Force the port to work in RSTP mode Configure the RSTP running mode Standard to be used for calculating the default Path Cost Configure the bridge priority of the Switch Configure the current switch as the primary root of a spanning tree Configure the current switch as a secondary root of a specified spanning tree Configure multiple of hello time Configure the time of forward delay Configure hello time for Switch Device -> Spanning Tree Device -> Spanning Tree Device -> Spanning Tree Device -> Spanning Tree Device -> Spanning Tree Device -> Spanning Tree Device -> Spanning Tree Device -> Spanning Tree

Configure the max age of the Switch for judging stp Device -> Spanning Tree packets Configure a password for changing the user from a lower user level to a higher user level Specify the name of the Switch Configure the System-guard feature Configure the TCP finwait timer Configure the TCP synwait timer Configure size of transmission and receiving buffers of connection-oriented socket Configure the TFTP server Enable UDP Helper function Configure the UDP port with relay function Configure the user terminal interface and enter the view (See Table 6, User-interface view, on page 14) Configure VLAN and enter VLAN view (See Table 14, VLAN View, on page 18) Globally enable the Voice VLAN features of one VLAN Device -> VLAN Device -> Voice VLAN Administration -> SNMP -> Setup

vlan voice vlan

13

14
voice vlan aging voice vlan mac_address voice vlan mode auto voice vlan security enable web set-package xrn-fabric authenticationmode

Configure the aging time of Voice VLAN Set the MAC address that the Voice VLAN can control Set the Voice VLAN in auto mode Enable the Voice VLAN security mode Change the default web source file name Configure authentication mode of the fabric

Device -> Voice VLAN Device -> Voice VLAN Device -> Voice VLAN Device -> Voice VLAN Device->XRN Fabric

Table 5

Local-user View

[4500]local-user admin Command


attribute level password service-type state

Description Configure some attributes for specified local user Configure user priority level Specify password of local user Configure a service type for a particular user Configure the state of the current user

Web Command Administration -> System Access Administration -> System Access Administration -> System Access

Table 6

User-interface view

[4500]user-interface Command
acl authentication-mode auto-execute command databits flow-control history-command max-size idle-timeout parity protocol screen-length set authentication password shell

Description Reference ACL and implement the ACL control to the TELNET users Configure local password authentication method Configure to automatically run a specified command after a user logs on Configure the data bits for AUX (Console) port Configure the flow control mode on AUX (Console) port Configure the size of the history command buffer Configure the timeout function Configure the parity mode on AUX (Console) port Set user interface protocol Configure how many lines can be displayed on a screen of the terminal Configure the password for local authentication Enable terminal service of a user interface

Web Command Security -> Authorized IP

Administration -> System Access

speed stopbits user privilege level

Specify the transmission rate on the AUX (Console) port in bit/s Configure the stop bits on the AUX (Console) port Configure which level of command a user can use after logon from a specific user interface

Table 7

VTY User-interface View

[4500]user-interface Command
protocol inbound

Description Configure the protocols supported by a designated user interface

Web Command

Table 8

Public Key Edit View

[4500]rsa peer-public-key switchxxx (where xxx is the Switch number) Command


public-key-code begin public-key-code end

Description Enter public key edit view (See Table 8, Public Key Edit View, on page 15) Save the configured public key and return to the public key view

Web Command

Table 9 Command

Public Key View Description Finish editing peer public key and quit from public key view to system view Web Command

peer-public-key end

Table 10

FTP Client View

<4500>ftp xxx.xxx.xxx.xxx (where xxx.xxx.xxx.xxx is the IP address of the FTP server) Command
ascii binary bye cd cdup close

Description Configure FTP data transmission mode as ASCII mode Configure FTP data transmission mode as binary mode Disconnect with the remote FTP Server and return to user view Change the working path on the remote FTP server change working path on the FTP server to the next level up in the directory structure Terminate the control connection and data connection with the FTP Server and remain in FTP client view Delete a file on the FTP server

Web Command

delete

15

16
dir disconnect get lcd ls mkdir open passive

Query a file or display the contents of current working directory Disconnect FTP client side from FTP server side without exiting FTP client view Download a remote file and save it locally View local working path of FTP client Query a file or display the contents of current working directory Create a directory on the FTP server Open FTP connection Configure the data transmission mode as passive mode (passive mode is the default data transmission mode) Upload a local file to the FTP server View the current directory on the FTP server Terminate the connection with the FTP server and return to user view View help text about FTP commands Delete a specified directory from the FTP server Register an FTP user Enable verbose (verbose is enabled by default) SFTP Client View

put pwd quit remotehelp rmdir user verbose

Table 11

<4500>sftp xxx.xx.xx.xxx (where xxx.xx.xx.xxx is the IP address of the SFTP server) Command
bye cd cdup delete dir exit get help ls mkdir put pwd

Description Disconnect from the remote SFTP Server and return to user view Change the working path on the remote SFTP server Change working path on the SFTP server to the next level up in the directory structure Delete a file on the SFTP server Query a file or display the contents of current working directory Terminate the connection with the SFTP server and return to user view Download a remote file and save it locally View help text about SFTP commands Query a file or display the contents of current working directory Create a directory on the SFTP server Upload a local file to the SFTP server View the current directory on the SFTP server

Web Command

quit remove rename rmdir

Terminate the connection with the SFTP server and return to user view Remove a file on the SFTP server Rename a file on the SFTP server Delete a specified directory from the SFTP server Table 12 RADIUS Server Group View

[4500]radius scheme 1 Command


accounting optional data-flow-format key nas-ip

Description Enable the selection of RADIUS accounting option Configure the unit of data flow that send to RADIUS Server Configure encryption key for RADIUS authentication/authorization or accounting packet Set the source IP address of the network access server (NAS, i.e: the Switch), so that all packets destined for the RADIUS server carry the same source IP address Configure the IP address and port number for the primary accounting server Configure the IP address and port number for the primary RADIUS authentication/authorization Configure retransmission times of RADIUS request packet Configure the maximum times of real-time accounting request failing to be responded Configure the maximal retransmission times after stopping accounting request Configure the IP address and port number for the second RADIUS accounting server Configure the IP address and port number for the second RADIUS authentication/authorization Configure the supported RADIUS server types Configure the state of RADIUS server without response in the Switch system buffer

Web Command

Security -> RADIUS Client

primary accounting primary authentication retry retry realtime-accounting retry stop-accounting secondary accounting secondary authentication server-type state

Security -> RADIUS Client

stop-accounting-buffer enable Configure to save the stopping accounting requests timer timer quiet timer realtime-accounting timer response-timeout user-name-format

Configure RADIUS server response timer Specify the wait time for re-activating primary server Configure the real-time accounting interval Configure the RADIUS server response timer Configure the username format sent to RADIUS server

17

18
Table 13 ISP Domain View

[4500]domain test Command


access-limit accounting optional idle-cut messenger radius-scheme scheme self-service-url state

Description Configure a limit to the amount of supplicants in the current ISP domain Enable the selection of RADIUS accounting option Configure the user template in the current ISP domain Specify messenger service of domain Configure the RADIUS server group used by the current ISP domain Configure the AAA scheme to be referenced by the current ISP domain Specify self-service URL (Uniform Resource Locator) of domain Configure the state of the current ISP domain

Web Command

Table 14

VLAN View

[4500]vlan 2 Command
description igmp-snooping port

Description Configure a description for the current VLAN or VLAN interface IGMP snooping Add ports to or delete ports from VLAN

Web Command Device -> VLAN

Device -> VLAN

Table 15

VLAN Inteface View

[4500]interface vlan 2 Command


description dhcp-server enable snmp trap ip address ip address dhcp-alloc rip authentication-mode rip input rip metricin

Description Configure a description for the current VLAN or VLAN interface Configure corresponding DHCP Server Group of a VLAN Interface Enable SNMP traps on an interface Configure an IP address for VLAN interface Configure a VLAN interface to obtain IP address using DHCP Configure RIP-2 authentication mode and its parameters Allow an interface to receive RIP packets Configure the additional route metric added to the route when an interface receives RIP packets

Web Command

Administration -> IP Setup -> Device -> VLAN Interface Administration -> IP Setup -> Device -> VLAN Interface

rip metricout rip output rip split-horizon rip version rip work shutdown udp-helper server

Configure the additional route metric to the route when an interface transmits RIP packets Allow an interface to transmit RIP packets to the network Configure an interface to use split horizon when transmitting RIP packets Configure the RIP version of RIP packets on an interface Enable the running of RIP on an interface Disable the VLAN interface Configure the relay destination server Device -> VLAN Interface

Table 16

Ethernet Port View

[4500]interface ethernet 1/0/1 Command


am ip-pool arp static broadcast-suppression description dot1x max-user dot1x port-control dot1x port-method dot1x supp-proxy-check duplex enable snmp trap flow-control igmp jumboframe enable lacp enable lacp port-priority line-rate loopback

Description Configure the IP address pool for access management on a port Configure the static ARP mapping entries in an ARP mapping table

Web Command

Configure the broadcast traffic size enabled on port Port -> Administration Configure name for a port Specify maximal on-line user number per port Specify port authenticated status Specify port controlled method Check whether user(s) access the networks by proxy or not Configure the duplex mode of the port Enable/disable current port to transmit the LINK UP and LINK DOWN trap information Enable flow control on the Ethernet port IGMP Ethernet port configuration Allow jumbo frames to pass through the current port Enable LACP Configure port priority value Limit the total rate of the packets delivered by interfaces Configure the Ethernet port to perform the loopback test Enable loopback detection control function on a trunk or hybrid port Enable port loopback detection Configure loopback detection on all VLANs on trunk and hybrid ports Tools -> Loopback Port -> Administration Port -> LACP Port -> LACP Port -> Administration Port -> Administration

loopback-detection control enable


loopback-detection enable

loopback-detection per-vlan enable

19

20
mac-address max-mac-count mac-authentication mdi mirrored-to mirroring-port monitor-port multicast-suppression packet-filter poe enable* poe max-power* poe mode* poe priority* port access vlan port hybrid pvid vlan port hybrid vlan port isolate port link-aggregation group port link-type port trunk permit vlan port trunk pvid vlan priority priority trust

Limit the number of MAC addresses to be learned by an Ethernet port Enable the centralized MAC address authentication feature on a specified port or globally Configure the network cable type of the Ethernet ports Enable ACL traffic identification and perform traffic mirror Configure a monitored port Configure a monitor port Configure the multicast traffic size enabled on port Activate ACL Enable PoE Maximum Power Port Mode Port Priority Join the access port to a specified VLAN Configure the default VLAN ID of the hybrid port Join the hybrid port to specified existing VLAN Add a port to an isolation group Add an Ethernet port into a manual or static aggregation group Configure the link type of Ethernet port Join trunk port to specified VLAN Configure the default VLAN ID of trunk port Configure the priority of Ethernet port Configure system trusting the packet 802.1p priority and not replacing the 802.1p priorities carried by the packets with the port priority Add an entry to the history control table Add an entry to the statistic table Disable the port Configure the port speed Enable Spanning Tree Protocol Configure the path cost on a spanning tree for the current Ethernet port Configure the current port as an edge port Enable loop protection function Force the port to work in RSTP mode Configure the link to the current port as point-topoint link or not point-to-point link

Port -> Administration

Port -> Administration

Port -> Mirroring Port -> Mirroring

Device -> PoE

Port -> Administration Port -> Administration Port -> Administration Port -> Administration

Port -> Administration

rmon history rmon statistics shutdown speed stp stp cost stp edged-port stp loop-protection stp mcheck stp point-to-point

Port -> Administration Port -> Administration Port -> Spanning Tree Per Port Port -> Spanning Tree Per Port Port -> Spanning Tree Per Port Port -> Spanning Tree Per Port Port -> Spanning Tree Per Port Port -> Spanning Tree Per Port

stp port priority stp root-protection stp transmit-limit unicast-suppression voice vlan enable wred

Configure the priority of the current Ethernet port Enable Root protection Set the maximum number of STP packets the current port can send within one Hello time Configure the limit to unknown unicast flooding Enable the Voice VLAN features on the port Configure WRED parameters

Port -> Spanning Tree Per Port Port -> Spanning Tree Per Port Port -> Spanning Tree Per Port

Table 17

Route Policy View

[4500]route-policy Command
apply cost if-match if-match cost if-match interface if-match ip next-hop

Description Configure the route cost value of route information Configure the IP address range to match the Routepolicy Configure one of the match rules of route-policy to match the cost of the routing information Configure to match the route whose next hop is designated interface Configure one of the match rules of route-policy on the next hop address of the routing information

Web Command

Table 18

RIP View

[4500]rip Command
checkzero default cost host-route import-route network reset summary timers

Description Perform the checkzero operation in the zero field of RIP-1 default routing cost of an imported route Enable receiving host-routes Import routes from other protocols into RIP Enable the routing protocol on the related network or interface Reset RIP configuration Enable RIP-2 automatic route summarization Config RIP timers

Web Command

21

22
Table 19 ACL View [4500]acl number xxxx (where xxxx is the acl number) Command
rule

Description Add a subrule to an ACL

Web Command Device -> ACL Security -> Authorized IP

Part Number: DQA1756-1AAA01 Published September 2005

You might also like