Page 2
The documents below are a further source of information in regards to configuring and troubleshooting the switch . All the documents are available either from the CD, bundled with this switch, or from the D-Link website. Other documents related to this switch are: •...
Page 3
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Convention Description {a | b | c} Braces enclose alternative keywords seperated by vertical bars. Generally, one of the keywords in the seperated list can be chosen. [a | d | c] Optional values or arguements are enclosed in square barackets and seperated by vertical bars.
Page 4
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide • Operator - Privilege Level 12. This user account level is used to grant system configuration rights for users who need to change or monitor system configuration, except for security related information such as user accounts and SNMP account settings, etc.
Page 5
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode / Purpose Privilege Level IP Access-List Configuration For specifying filtering criteria for an IP access list. Mode User EXEC Mode at Basic User Level This command mode is mainly designed for checking basic system settings. This command mode can be entered by logging in as a basic user.
Page 6
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Interface Configuration Mode Interface configuration mode is used to configure the parameters for an interface or a range of interfaces. An interface can be a physical port, VLAN, or other virtual interface. Thus, interface configuration mode is distinguished further according to the type of interface.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Basic CLI Commands 1-1 help This command is used to display a brief description of the help system. Use the help command in any command mode. help Parameters None. Default None. Command Mode Exec Mode Privileged Mode...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to use the word ‘help’ to display all the privileged mode commands that begin with the letters “re”. The letters entered, before the question mark, are reprinted on the next command line to allow the user to continue entering the command.
Page 11
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters Specifies the separator of the login banner message, for example a hash sign (#). The delimiting character is not allowed in the login banner message. message Enter the contents of the login banner, that will be displayed before the username and password login prompts, here.
Page 12
2000-01-22 01:20:37 INFO(6) Logout through Console (Username: admin) DXS-3600-32S TenGigabit Ethernet Switch Command Line Interface Firmware: Build 1.10.023 Copyright(C) 2012 D-Link Corporation. All rights reserved. User Access Verification Username: Example This example shows how to use the exit command, in the privileged mode, in a Telnet session, to exit this mode and close the active session.
Page 13
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters None. Default None. Command Mode Exec Mode Privileged Mode All Configuration Modes Command Default Level Level: 1 Usage Guideline Execute this command to return back to the highest mode in the CLI mode hierarchy regardless of what configuration mode or configuration sub-mode currently located.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 802.1X Commands 2-1 dot1x default This command is used to reset the IEEE 802.1X parameters on a specific port to their default settings. dot1x default Parameters None. Default Port control mode - Auto Port PAE type - None Port control direction - Both Quiet period when authentication fails - 60 seconds...
Page 15
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to deny all access to port 1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#dot1x port-control force-unauthorized DXS-3600-32S(config-if)# 2-3 dot1x pae authenticator This command is used to configure a specific port as an IEEE 802.1X port access entity (PAE) authenticator. Use the no form of this command to disable IEEE 802.1X authentication on the port.
Page 16
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The configuration for this command on a specific port won’t be in operation if you don’t configure the port as an IEEE 802.1X PAE authenticator by using the ‘dot1x pae authenticator’...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the quiet period, reauthentication period, server timeout value, supplicant timeout value, and transmission period for Ethernet port 1 to be 20, 1000, 15, 15, and 10 seconds, respectively. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#dot1x timeout quiet-period 20...
Page 18
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline You can configure the number of seconds between reauthentication attempts by using the ‘dot1x timeout reauth-period’ command. Example This example shows how to enable periodic reauthentication on Ethernet port 1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#dot1x reauthentication...
Page 19
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Under port-based mode, use the parameter interface <interface-id> to initialize a specific port. Under host-based mode, use the parameter mac-address <mac- address> to initialize a specific MAC address. Example This example shows how to initialize the authenticator state machine on Ethernet port 1.
Page 20
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the maximum number of users, that is allowed to be learned via the 802.1X authentication. The maximum number of users allowed is 128. DXS-3600-32S#configure terminal DXS-3600-32S(config)#dot1x system-max-user 128 DXS-3600-32S(config)# 2-12 dot1x port-max-user...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable the forwarding of EAPOL PDUs, globally, on the switch. DXS-3600-32S#configure terminal DXS-3600-32S(config)#dot1x system-fwd-pdu DXS-3600-32S(config)# 2-14 dot1x port-fwd-pdu This command used to control the forwarding of EAPOL PDUs on specific ports. Use the no form of this command to reset to the defaulting settings.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 15 Usage Guideline Use this command display the IEEE 802.1X global configuration, interface configuration, authentication state, statistics, diagnostics, and session statistics. When no interface is specified, information about all interfaces will be displayed.
Page 23
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the 802.1X statistics for the interface TenGigabitEthernet1/0/1. DXS-3600-32S#show dot1x interface tenGigabitEthernet 1/0/1 statistics MAC Address : 00-00-00-00-00-02 Interface : TenGigabitEthernet1/0/1 EAPOLFramesRx EAPOLFramesTx EAPOLStartFramesRx EAPOLReqIdFramesTx EAPOLLogoffFramesRx EAPOLReqFramesTx EAPOLRespIdFramesRx...
Page 24
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the 802.1X session statistics for the interface TenGigabitEthernet1/0/1. DXS-3600-32S#show dot1x interface tenGigabitEthernet 1/0/1 session-statistics MAC Address : 00-00-00-00-00-02 Interface : TenGigabitEthernet1/0/1 SessionOctetsRx SessionOctetsTx SessionFramesRx SessionFramesTx SessionId ether1_1-1...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Access Control List (ACL) Commands Throughout this chapter, we'll refer to two abbreviates called: ACL - Access Control List. ACE - Access Control Entry 3-1 ip access-list standard This command is used to create or modify a standard IP ACL. This command will enter into the standard IP access-list configuration mode.
Page 26
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters (Optional) Specifies the ACE sequence number used. This number must be between 1 and 65535. source source-wildcard Specifies the source IP address. Masks are used with IP addresses in IP ACLs to specify what should be permitted and denied.
Page 27
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Extended IP ACL only filters IPv4 packets. The name must be unique among all (including MAC, IP, IPv6 or Expert) access-lists and the first character of the name must be a letter. When creating an ACL through assigning a name, an ID will be assigned automatically.
Page 28
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide destination Specifies the destination IP address. destination-wildcard Applies wildcard bits to the destination. host destination Specifies a specific destination IP address. operator (Optional) Possible operators include ‘eq’ (equal), ‘gt’ (greater than), ‘lt’ (less than), ‘neq’...
Page 29
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to use the extended IP ACL. The purpose is to deny Telnet access from the host, with the IP address 192.168.4.12, to any host in the network 192.168.1.0 and to permit any others.
Page 31
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide icmp-message (Optional) Specifies the ICMP message type name or the ICMP message type and code by name. Names that can be used are 'beyond-scope', 'destination- unreachable', 'echo-reply', 'echo-request', 'erroneous_header', 'hop-limit', 'multicast- listener-query', 'multicast-listener-done', 'multicast-listener-report', 'nd-na', 'nd-ns', 'next-header', 'no-admin', 'no-route', 'packet-too-big', 'parameter-option', 'parameter- problem', 'port-unreachable', 'reassembly-timeout', 'redirect', 'renum-command',...
Page 32
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Extended MAC ACL only filters the Non-IP packet. The name must be unique among all (including MAC, IP, IPv6 or Expert) access-lists and the first character of name must be a letter. When creating an ACL through the assignment of a name, an ID will be assigned automatically.
Page 33
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to use the extended MAC ACL. The purpose is to deny a host, with the MAC address of 0013.0049.8272, to send Ethernet frames of the type ‘apply’.
Page 34
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 3-10 permit | deny (expert access-list) Use the permit command to add a permit entry. Use the deny command to add a deny entry. Use the no command to remove an entry. Extended expert ACL: [sn] {permit | deny} [ethernet-type] [[cos out [inner in]] | [vlan out [inner in]]] {source source-wildcard | host source | any} {source-mac-address mask | host source-mac-address | any} {destination destination-wildcard |...
Page 35
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide protocol Specifies the name or number of an IP protocol used. Names that can be used are 'eigrp', 'esp', 'gre', 'igmp', 'ip', 'ipinip', 'ospf', 'pcp', 'pim', 'tcp', 'udp', 'icmp' or an integer in the range 0 to 255 representing an IP protocol number.
Page 36
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to use the extended MAC ACL. The purpose is to deny all the TCP packets with, the source IP address 192.168.4.12 and the source MAC address 001300498272. DXS-3600-32S#configure terminal DXS-3600-32S(config)#expert access-list extended exp_acl DXS-3600-32S(config-exp-nacl)#deny tcp host 192.168.4.12 host 0013.0049.8272 any any...
Page 37
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 3-12 list-remark text This command is used to add remarks for the specified ACL. Use the no command to deletes the remarks. list-remark text no list-remark Parameters text Specifies the remark information. The information can be up to 256 characters. Default None.
Page 38
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display ACLs. DXS-3600-32S# show access-list sip1 Standard IP access list 1999 sip1 999 deny 2.2.2.2 0.0.255.255 DXS-3600-32S# show access-list 2001 Extended IP access list 2001 ext-ip-2001 10 permit tcp host 1.1.1.1 eq echo any gt 6524 ack fin psh rst syn urg precedence internet tos 14 DXS-3600-32S# show access-list...
Page 39
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 12 Usage Guideline Only one IP ACL can be attached to the ingress physical ports or egress physical ports. Applying or binding an ACL to an interface will fail if there is any criteria statements that are not supported.
Page 40
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 3-16 mac access-group This command is used to apply a specific MAC ACL to an interface. Use the no command to cancel the application. mac access-group {id | name} {in | out} no mac access-group {id | name} {in | out} Parameters Specifies the ID number of the MAC ACL.
Page 41
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide name Specifies the name of the expert ACL to be configured. The name can be up to 32 characters long. Specifies to filter the incoming packets of the interface. Specifies to filter the outgoing packets of the interface. Default None.
Page 42
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the ACL, applied to the interface. DXS-3600-32S#show access-group Interface tenGigabitEthernet 1/0/2: ipv6 access-group ipv6-11 in ipv6 access-group ipv6-1 out expert access-group exp1 in Interface tenGigabitEthernet 1/0/11: ip access-group 11 in ip access-group std-ip-1 out mac access-group 6005 in...
Page 43
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the IPv6 ACL, applied to the interface. DXS-3600-32S#show ipv6 traffic-filter Interface tenGigabitEthernet 1/0/2: ipv6 access-group ipv6-11 in ipv6 access-group ipv6-1 out DXS-3600-32S# 3-21 show mac access-group This command is used to display the MAC ACL configuration of the interface.
Page 44
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the expert ACL, applied to the interface. DXS-3600-32S#show expert access-group Interface tenGigabitEthernet 1/0/2: expert access-group exp1 in DXS-3600-32S# 3-23 vlan access-map This command is used to create a submap. This command will enter into the access-map configuration mode. The no form of this command deletes the submap.
Page 45
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 12 Usage Guideline One submap can only be associated with an IP ACL or a MAC ACL. You can not associate a submap with both an IP ACL and a MAC ACL. One submap can only be associated with at most 8 ACLs.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the action attribute in the submap. DXS-3600-32S# show vlan access-map VLAN access-map vlan-map 20 match mac address: 6710,6720,ext_mac,7760, action: forward DXS-3600-32S# configure terminal DXS-3600-32S(config)# vlan access-map vlan-map 20 DXS-3600-32S(config-access-map)# action redirect tenGigabitEthernet 1/0/5 DXS-3600-32S(config-access-map)# end DXS-3600-32S# show vlan access-map...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Address Resolution Protocol (ARP) Commands 4-1 arp This command is used to add a permanent IP address and MAC address mapping to the ARP cache table. Use the ‘no’ command to remove the IP-MAC address mapping. arp [vrf <string 1-12>] ip-address mac-address no arp [vrf <string 1-12>] ip-address Parameters...
Page 49
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default The default timeout value is 20 minutes. Command Mode Global Configuration Mode. Command Default Level Level: 8 Usage Guideline The ARP timeout setting is only applicable to the IP address and the MAC address mapping that are learned dynamically.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to remove dynamic ARP entries from the IP interface vlan1. DXS-3600-32S#clear arp-cache interface vlan1 DXS-3600-32S# 4-4 show arp This command is used to display the Address Resolution Protocol (ARP) cache table. show arp [vrf <string 1-12>] [ip-address [net-mask] | mac-address | {static | complete}] Parameters Specifies the VRF that the IP reside in.
Page 51
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the ARP cache table containing the IP address of 10.1.1.9. DXS-3600-32S#show arp 10.1.1.9 ARP timeout is 20 minutes. Interface IP Address MAC Address Type ------------- --------------- -----------------...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the ARP cache table containing static types. DXS-3600-32S#show arp static ARP timeout is 20 minutes. Interface IP Address MAC Address Type ------------- --------------- ----------------- --------------- System 10.1.1.5...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide show arp timeout Parameters None. Default None. Command Mode Privileged Mode. Command Default Level Level: 3 Usage Guideline Use this command to display the aging time of a dynamic ARP entry on the switch. Example This example shows how to display the aging time value of a dynamic ARP entry on the switch.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Alternate Store and Forward (ASF) Commands 5-1 enable asf This command is used to enable the ASF feature. enable asf Parameters None. Default Alternate store and forward feature is disabled. Command Mode Global Configuration Mode Command Default Level Level: 15...
Page 55
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the current settings for ASF. DXS-3600-32S#show asf Alternate Store and Forward: Disabled DXS-3600-32S#...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Authentication, Authorization, and Accounting (AAA) Commands 6-1 aaa This command is used to enable the Authentication, Authorization, and Accounting (AAA) security service. The no form of this command is used to disable the AAA security service. no aaa Parameters None.
Page 57
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline If the AAA login authentication security service is enabled on the device, users must use AAA for login authentication negotiation. You must use aaa authentication login to configure a default or optional method list for login authentication. The next method can be used for authentication only when the current method does not work.
Page 58
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to define an AAA enable authentication method list. In the authentication method list, the RADIUS security server is used first for authentication. If the RADIUS security server does not respond, the local user database is used for authentication.
Page 59
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters default When this parameter is used, the following defined method list is used as the default method for Exec authorization. list-name Name of the user authorization method list. After the user-defined authorization method list created, you can use authorization exec line configuration command to apply the authorization method list to the specified terminal lines.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable the AAA authorization console function. The authorization method list, applied to the console line, via the Authorization EXEC Line Configuration command, will take effect. DXS-3600-32S#configure terminal DXS-3600-32S(config)#aaa authorization console DXS-3600-32S(config)#...
Page 61
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters default When this parameter is used, the following defined method list is used as the default method for Exec accounting. list-name Name of the Exec accounting method list. After the user-defined accounting method list created, you can use accounting exec line configuration command to apply the accounting method list to the specified terminal lines.
Page 62
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Once the default exec accounting method list has been configured, it is applied to all terminals automatically. Once the non-default exec accounting method list has been configured, it is applied to the line instead of the default method list. If you attempt to apply an undefined method list, a warning message will prompt that the exec accounting in this line is ineffective till the exec accounting command method list is defined.
Page 63
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to specifies that the method, configured for AAA, should be used for authentication for HTTP server users. The AAA login method is configured as the “local” username/password authentication method. This example specifies that the local username database will be used for login authentication and the EXEC authorization of HTTP sessions.
Page 64
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 6-13 aaa authentication network This command is used to enable AAA network access authentication and configure the network access user authentication method list. The no form of this command is used to delete the network access user authentication method list.
Page 65
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide method Syntax "{local | none | group radius | group_name}". Up to four methods supported: local - Specifies to use the local user name database for authorization. none - Specifies not tp perform authorization. group - Specifies to be followed by radius or a group name.
Page 66
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide method Syntax "{none | group {radius | group_name}}". Up to four methods supported: none - Specifies not tp perform authorization. group - Specifies to be followed by radius or a group name. "group radius"...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters ip-addr Enter the IP address of the server. The host can be created via radius-server host or tacacs-server host global configuration command. Default By default, no server is configured. Command Mode Server Group Configuration Mode.
Page 68
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 6-19 show aaa server group This command is used to display AAA server group configuration, use the ‘show aaa server group’ command in EXEC mode. show aaa server group Parameters None. Default None.
Page 69
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the AAA login authentication method list. DXS-3600-32S#show aaa authentication login Method List Priority Method Name ------------------------------------------ default RADIUS Authen_R Local auth_test RADIUS Authen_R Local DXS-3600-32S# Display Parameters Description...
Page 70
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 6-22 show aaa accounting This command is used to display the AAA accounting method list. Use the show aaa accounting command in EXEC mode. show aaa accounting {exec | network} Parameters exec Display the Exec accounting method list.
Page 71
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display AAA application LINE information. DXS-3600-32S#show aaa application line Console: Login Method List: default Enable Method List: default Authorization Method List: default Accounting Method List: default Telnet: Login Method List: login_list_1 Enable Method List: default...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 6-24 ip vrf forwarding This command is used to configure the Virtual Private Network (VPN) routing and forwarding (VRF) reference of an authentication, authorization, and accounting (AAA) RADIUS or TACACS+ server group. Use this command in the server-group configuration mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Border Gateway Protocol (BGP) Commands 7-1 address-family ipv4 This command is used to enter the IPv4 address family mode. Use the no form of this command to delete the configuration of an address family. address-family ipv4 [{unicast | vrf VRF-NAME}] no address-family ipv4 [{unicast | vrf VRF-NAME}] Parameters...
Page 74
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Router Configuration. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline This command is used to enter the IPv4 VPN address family mode. The BGP peers activated in this mode are used to exchange VPN IPv4 routing information. Please note that only iBGP peers are supported in this address family now.
Page 75
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-4 bgp router-id This command is used to configure a fixed router ID for the local Border Gateway Protocol (BGP) routing process. Use the no form of this command to remove the fixed router ID from the running configuration file and restore the default router ID selection.
Page 76
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline This command is used to enable the checking of next hop of the BGP aggregated routes. Only the routes with the same next hop attribute can be aggregated if the BGP aggregate next hop check is enabled.
Page 77
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-7 bgp bestpath as-path ignore This command is used to not consider the as-path factor in selection of the best path. Use the no form of this command to restore default behavior and configure BGP to consider the AS-path during route selection. bgp bestpath as-path ignore no bgp bestpath as-path ignore Parameters...
Page 78
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline If enabled, the BGP process will compare the confederation AS path length of the routes received. The shorter the confederation AS path length, the better the route You can verify your settings by entering show ip bgp parameters command. Example This example shows how to enable the BGP process to compare the AS path that contains some confederation AS numbers.
Page 79
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline If enabled, the BGP process will compare the MED for the routes that are received from confederation peers. For routes that have an external AS in the path, the comparison does not occur.
Page 80
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline By default, the clients of a router reflector are not required to be fully meshed and the routes from a client are reflected to other clients. However, if the clients are fully meshed, route reflection is not required.
Page 81
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-14 bgp confederation identifier This command is used to specify the BGP confederation identifier. Use the no form of this command to remove the confederation identifier. bgp confederation identifier AS-NUMBER no bgp confederation identifier Parameters AS-NUMBER Specifies the Autonomous System number, used to specify the BGP confederation.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The command is used to configure multiple adjacent Autonomous Systems in a confederation. The Autonomous Systems, specified in this command, are visible internally to the confederation. Each Autonomous System is fully meshed within itself or configures a route reflector.
Page 83
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The purpose of this command is to eliminate the dampening of routes and thus to avoid unstable networks caused by flapping routes. The following describes the way it is achieved. When a route flaps (from up to down), it will add a penalty value, of 1000, to the frame.
Page 84
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters None. Default None. Command Mode Router Configuration. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline This command is used to enable the automatic establish BGP peer connection and exchange of IPv4 unicast address family prefixes.
Page 85
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-19 bgp deterministic-med This command is used to include the Multi Exit Discriminator (MED) value between all paths received from within the same autonomous system in the process of the best route selection. Use the no command to prevent BGP from considering the MED attribute in comparing paths.
Page 86
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable the security of the BGP network for the autonomous system 65534. All incoming updates from eBGP peers are examined to ensure that the first AS number in the AS-PATH attribute is the local AS number of the transmitting peer.
Page 87
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide prefix-filter (Optional) Specifies to clear the existing outbound route filter (ORF) prefix list to trigger a new route refresh or soft reconfiguration, which updates the ORF prefix list. (Optional) Specifies to initiate inbound or outbound reconfiguration. If neither the in nor the out keywords are specified, both inbound and outbound sessions will reset.
Page 88
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters vrf VRF-NAME Specifies the VRF name. Specifies to reset all BGP sessions in the IPv4 VRF address family. IP-ADDRESS Specifies to only reset the BGP neighbor with the IP address in the VRF address family.
Page 89
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide soft Specifies a soft reset. The session is not torn down. (Optional) Specifies an inbound reset. If neither the in nor out parameter is specified, both inbound and outbound sessions are reset. prefix-filter (Optional) Clears the existing outbound route filter (ORF) prefix list to trigger a new route refresh or soft reconfiguration, which updates the ORF prefix list.
Page 90
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to clear the route dampening information of 192.168.10.0/ 24 and restores suppressed routes. DXS-3600-32S#clear ip bgp dampening 192.168.10.0/24 DXS-3600-32S# 7-26 clear ip bgp dampening vrf This command is used to clear BGP route dampening information of VRF instance and to restore suppressed routes. clear ip bgp dampening vrf VRF-NAME [{NETWORK-ADDRESS | IP-ADDRESS}] Parameters vrf VRF-NAME...
Page 91
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline This command can be used to initiate a hard reset or soft reconfiguration of eBGP neighbor sessions. If a hard reset is applied to the inbound session, the inbound session will be torn down and the local inbound routing table and the remote outbound routing table will be cleared.
Page 92
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to clear the accumulated penalties for routes that have been received on a router which has BGP dampening enabled. If no arguments or keywords are specified, the flap statistics are cleared for all routes. Example This example shows how to clear the route dampening flap statistics of network 192.168.1.0/24.
Page 93
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide (Optional) Specifies to initiate a soft reset for inbound routing information. prefix-filter (Optional) Specifies to clear the existing outbound route filter (ORF) prefix list to trigger a new route refresh or soft reconfiguration, which updates the ORF prefix list. (Optional) Specifies to initiate a soft reset for outbound routing information.
Page 94
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-31 exit-address-family This command is used to exit from the address family configuration mode and enter the router configuration mode. exit-address-family Parameters None. Default None. Command Mode Address Family Configuration (IPv4 Unicast, VPNv4 and VRF). Command Default Level Level: 8.
Page 95
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to delete an entry in an AS path access list, earlier configured. DXS-3600-32S#configure terminal DXS-3600-32S(config)#no ip as-path access-list mylist deny ^65535$ DXS-3600-32S(config)# Example After that, the AS path access list, called ‘mylist’, has no entry, but it still exists. The following example show how to delete an AS path access list, no matter whether it has entries or not.
Page 96
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use the community-lists to specify BGP community attributes. The community attribute is used for implementing policy routing. It is an optional, transitive attribute and facilitates transfer of local policies through different autonomous systems. It includes community values that are 32 bits long.
Page 97
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide EXTCOMMUNITY (Optional) Consists of a set of an rt VALUE or a soo VALUE. It can accept 12 VALUEs in total for one entry. There are two different types for the rt values or soo values: •...
Page 98
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-35 neighbor activate This command is used to enable the exchange of information with a Border Gateway Protocol (BGP) neighbor. Use the no form of this command to disable the exchange of information with a BGP neighbor. neighbor {IP-ADDRESS | PEER-GROUP-NAME} activate no neighbor {IP-ADDRESS | PEER-GROUP-NAME} activate Parameters...
Page 99
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By default, it is 30 seconds for external peers and 5 seconds for internal peers. Command Mode Router Configuration Mode. Address Family Configuration Mode (VRF). Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline If you specify a BGP peer group, by using the PEER-GROUP-NAME argument, all the members of the peer group will inherit the characteristic configured with this...
Page 100
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the ‘allowas-in’ value to 3 without the NUMBER parameter. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router bgp 100 DXS-3600-32S(config-router)#neighbor 100.16.5.4 remote-as 65101 DXS-3600-32S(config-router)#neighbor 100.16.5.4 allowas-in DXS-3600-32S(config-router)# 7-38 neighbor as-override This command is used to enable to override the AS number of a site with the provider’s AS number on a PE router.
Page 101
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters IP-ADDRESS Specifies the IP address of the BGP peer. PEER-GROUP-NAME Specifies the name of a Border Gateway Protocol (BGP) peer group. The maximum length is 16 characters. receive Specifies to enable the ORF capability in the receive mode. send Specifies to enable the ORF capability in the send mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-40 neighbor default-originate This command is used to allow a BGP speaker (the local router) to send the default route 0.0.0.0 to a neighbor for use as a default route. To send no route as a default, use the no form of this command. neighbor {IP-ADDRESS | PEER-GROUP-NAME} default-originate [route-map MAP-NAME] no neighbor {IP-ADDRESS | PEER-GROUP-NAME} default-originate Parameters...
Page 103
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide neighbor {IP-ADDRESS | PEER-GROUP-NAME} description DESC no neighbor {IP-ADDRESS | PEER-GROUP-NAME} description Parameters IP-ADDRESS Specifies the IP address of the BGP peer. PEER-GROUP-NAME Specifies the name of a Border Gateway Protocol (BGP) peer group. The maximum length is 16 characters.
Page 104
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline If you specify a BGP peer group by using the PEER-GROUP-NAME argument, all the members of the peer group will inherit the characteristic configured with this command Use the show ip bgp neighbors or show ip bgp peer-group command to verify your settings.
Page 105
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the BGP neighbor 172.16.1.1 not to sent advertisements about any path through the adjacent autonomous system 123. Firstly, create an ip as-path access-list named ‘myacl’. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip as-path access-list myacl deny _123_ DXS-3600-32S(config)#ip as-path access-list myacl deny ^123$...
Page 106
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example In the following example, the maximum prefixes that will be received from the 192.168.1.1 neighbor are set to 10000. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router bgp 65100 DXS-3600-32S(config-router)#neighbor 192.168.1.1 remote-as 30000 DXS-3600-32S(config-router)#neighbor 192.168.1.1 maximum-prefix 10000 DXS-3600-32S(config-router)# Example This example shows how to set the maximum prefixes to 10000, and set the local...
Page 107
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-46 neighbor password This command is used to enable Message Digest 5 (MD5) authentication and set the password on a TCP connection between two BGP peers. To disable this function, use the no form of this command. neighbor {IP-ADDRESS | PEER-GROUP-NAME} password PASSWORD no neighbor {IP-ADDRESS | PEER-GROUP-NAME} password Parameters...
Page 108
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide PEER-GROUP-NAME Specifies the name of a Border Gateway Protocol (BGP) peer group. The maximum length is 16 characters. Default None. Command Mode Router Configuration Mode. Address Family Configuration Mode (IPv4 Unicast, VPNv4 and VRF). Command Default Level Level: 8.
Page 109
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide As for the above attributes, setting the attribute of a peer group will automatically affect the setting for individual peers in the peer group. If a BGP neighbor has already been the established state before using this command, BGP connection will be torn down, so the following log message will be generated.
Page 110
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to create a peer group named ‘MAIN-GROUP’. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router bgp 40000 DXS-3600-32S(config-router)#neighbor MAIN-GROUP peer-group DXS-3600-32S(config-router)# 7-49 neighbor prefix-list This command is used to set a routing policy to a specified peer or a peer group based on the prefix list. To remove a prefix list, use the no form of this command.
Page 111
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-50 neighbor remote-as This command is used to create a BGP neighbor with its remote AS or configure the remote AS of a peer group. Use the no form of this command to delete a neighbor or a peer group. neighbor {IP-ADDRESS | PEER-GROUP-NAME} remote-as AS-NUMBER no neighbor {IP-ADDRESS | PEER-GROUP-NAME} remote-as Parameters...
Page 112
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is available for external BGP (eBGP) neighbors only. When an update is passed to the external neighbor, if the autonomous system path includes private autonomous system numbers, the software will drop the private autonomous system numbers except the following conditions: If the autonomous system path includes both private and public autonomous system numbers, the software considers this to be a configuration error and...
Page 113
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The command is used to configure the route map related setting for a BGP neighbor or a peer group. If a route map is configured relating to a BGP neighbor but the route map doesn’t exist, it means deny any.
Page 114
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline When the route reflector client is defined and the router reflection is enabled by the command bgp client-to-client reflection, the BGP router will act as the route reflector. The reflector and its clients form a cluster. In a cluster, all the members must be an iBGP connection with the reflector and vice versa.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the send-community with standard. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router bgp 65100 DXS-3600-32S(config-router)#neighbor 10.4.4.4 remote-as 65200 DXS-3600-32S(config-router)#neighbor 10.4.4.4 send-community standard DXS-3600-32S(config-router)# 7-55 neighbor send-community (VPNv4) This command used to specify whether the community attribute should be sent to a BGP neighbor or all the members of a peer group.
Page 116
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters IP-ADDRESS Specifies the IP address of the BGP peer. PEER-GROUP-NAME Specifies the name of a Border Gateway Protocol (BGP) peer group. The maximum length is 16 characters. Default The peers or peer groups do not shut down. Command Mode Router Configuration Mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable the inbound soft reconfiguration for the neighbor 172.16.10.1. All the updates received form this neighbor will be stored unmodified, regardless of the inbound policy. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router bgp 65100 DXS-3600-32S(config-router)#neighbor 172.16.10.1 remote-as 65200...
Page 118
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-59 neighbor timers This command is used to set the timers for a specific BGP peer or a peer group. Use the no form of this command to return to the default value of the global setting. neighbor {IP-ADDRESS | PEER-GROUP-NAME} timers KEEP-ALIVE HOLD-TIME no neighbor {IP-ADDRESS | PEER-GROUP-NAME} timers Parameters...
Page 119
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters IP-ADDRESS Specifies the IP address of the BGP peer. PEER-GROUP-NAME Specifies the name of a Border Gateway Protocol (BGP) peer group. The maximum length is 16 characters. MAP-NAME Specifies the name of the route map. The length is up to 16 characters. Default No routes are unsuppressed.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command in conjunction with any specified interface on the router. After this command configured success, BGP neighbor’s session will be rebuilt. Use the show ip bgp neighbors or show ip bgp peer-group command to verify your settings.
Page 121
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters NETWORK-ADDRESS Specifies the network address and the sub-network mask that BGP will advertise. For example, the format of NETWORK-ADDRESS can be 10.9.18.2/8 route-map MAP-NAME (Optional) Specifies the name of a configured route map. The route map should be examined to filter the networks to be advertised.
Page 122
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide ospf Specifies to redistribute OSPF routes to BGP. all - Specifies to redistribute both OSPF AS-internal and OSPF AS-external routes to BGP. internal - Specifies to redistribute only the OSPF AS-internal routes. external - Specifies to redistribute only the OSPF AS-external routes, including type-1 and type-2 routes.
Page 123
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is to set the route-preference for BGP route. BGP route contains two types one is IBGP and the other is EBGP. When two or more route protocols have learned one same route, the route-preference will be used to decide which one should be added into IP route table.
Page 124
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-67 show ip as-path access-list This command is used to display configured AS-path access-lists. show ip as-path access-list [ACCESS-LIST-NAME] Parameters ACCESS-LIST-NAME (Optional) Specifies the access list to be displayed. The length is up to 16 characters.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-68 show ip bgp This command is used to display entries in the Border Gateway Protocol (BGP) routing table. show ip bgp [{IP-ADDRESS | NETWORK-ADDRESS [longer-prefixes]}] Parameters IP-ADDRESS (Optional) Specifies the IP address entered to filter the output to display only a particular host or network in the BGP routing table.
Page 126
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example When one route’s AS-path field is more than 160 characters, using this command, can only show 160 characters of the AS-path field. DXS-3600-32S#show ip bgp BGP Local Router ID is 10.90.90.10 Status codes: s suppressed, d damped, h history, * valid, >...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Metric If shown, this is the value of the inter-autonomous system metric. This field is frequently not used. LocPrf Local preference value as set with the set local-preference route-map configuration command.
Page 128
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example The following example displays the BGP private labels of all routes. DXS-3600-32S#show ip bgp all label BGP Local Router ID is 30.1.1.2 Status codes: s suppressed, d damped, h history, * valid, > best, i - internal Origin codes: i - IGP, e - EGP, ? - incomplete Network From...
Page 129
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description IP Address/Netmask IP prefix with its mask length of the entry. Gateway IP address of the next router that is used when forwarding a packet to the destination network.
Page 130
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example The following example shows the BGP routing table in the VRF address family based on the Route Distinguisher. DXS-3600-32S#show ip bgp rd 1:1 BGP Local Router ID is 30.1.1.2 Status codes: s suppressed, d damped, h history, * valid, > best, i - internal Origin codes: i - IGP, e - EGP, ? - incomplete IP Address/Netmask Gateway...
Page 131
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description BGP Local Router ID The router identifier of the local BGP router. Status codes Status of the table entry displayed at the beginning of each line. It can be one or more of the following values: s—The table entry is suppressed.
Page 132
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Privileged Mode. Command Default Level Level: 3. (EI Mode Only Command) Usage Guideline This command is used to display the BGP routing information inVRF address family. Example The following example shows the BGP routing table of the IPv4 VRF address family.
Page 133
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Status codes Status of the table entry displayed at the beginning of each line. It can be one or more of the following values: s—The table entry is suppressed. d—The table entry is damped.
Page 134
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output from the show ip bgp aggregate command, in privileged mode. DXS-3600-32S#show ip bgp aggregate Network Address Options ------------------ ------------------- 100.0.0.0/8 200.0.0.0/10 summary-only Total Aggregate Address Number: DXS-3600-32S#show ip bgp aggregate vrf VPN-A Network Address VRF-Name...
Page 135
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output from the show ip bgp cidr-only command, in privileged mode. DXS-3600-32S#show ip bgp cidr-only BGP Local Router ID is 10.0.40.1 Status codes: s suppressed, d damped, h history, * valid, > best, i - internal Origin codes: i - IGP, e - EGP, ? –...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Metric If shown, this is the value of the inter-autonomous system metric. This field is frequently not used. LocPrf Local preference value as set with the set local-preference route-map configuration command.
Page 137
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example The following example displays routes with the community 50:2 in VRF 100: DXS-3600-32S#show ip bgp community vrf 100 50:2 BGP Local Router ID is 11.11.11.11 Status codes: s suppressed, d damped, h history, * valid, > best, i - internal Origin codes: i - IGP, e - EGP, ? - incomplete IP Address/Netmask Gateway...
Page 138
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide vrf VRF-NAME (Optional) Specifies the VRF name. The length of the VRF-NAME is 12 characters. COMMUNITY-LIST-NAME Specifies the community list name. The maximum length is 16 characters. exact-match (Optional) Displays only routes that have an exact match. Default None.
Page 139
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Gateway IP address of the next router that is used when forwarding a packet to the destination network. An entry of 0.0.0.0 indicates that the router has some non-BGP routes to this network.
Page 140
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters vrf VRF-NAME (Optional) Specifies the VRF name. The length of the VRF-NAME is 12 characters. Default None. Command Mode Privileged Mode. Command Default Level Level: 3. (EI Mode Only Command) Usage Guideline Use this command to show dampened entries in the BGP routing table.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-78 show ip bgp dampening parameters This command is used to display the BGP dampening configuration. show ip bgp dampening parameters [vrf VRF-NAME] Parameters vrf VRF-NAME (Optional) Specifies the VRF name. The length of the VRF-NAME is 12 characters. Default None.
Page 142
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Suppress Value A route is suppressed when its penalty exceeds this limit. The default setting is 2000. MAX Suppress Time Maximum time (in minutes) a route can be suppressed. The default setting is 45 minutes.
Page 143
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Status codes Status of the table entry displayed at the beginning of each line. It can be one or more of the following values: s - The table entry is suppressed. d - The table entry is damped.
Page 144
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the BGP route filter by content of access-list, as- ACL_HQ. DXS-3600-32S#show ip bgp filter-list as-ACL_HQ BGP Local Router ID is 10.90.90.90 Status codes: s suppressed, d damped, h history, * valid, > best, i - internal Origin codes: i - IGP, e - EGP, ? - incomplete IP Address/Netmask Gateway...
Page 145
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description LocPrf Local preference value as set with the set local-preference route-map configuration command. The default value is 100. Weight Weight of the route as set via autonomous system filters. Path Autonomous system paths to the destination network.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example The following example displays routes with a different origin AS number in VRF 100: DXS-3600-32S#show ip bgp inconsistent-as vrf 100 BGP Local Router ID is 11.11.11.11 Status codes: s suppressed, d damped, h history, * valid, > best, i - internal Origin codes: i - IGP, e - EGP, ? - incomplete IP Address/Netmask Gateway...
Page 147
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters vrf VRF-NAME (Optional) Specifies the VRF name. The length of the VRF-NAME is 12 characters. IP-ADDRESS (Optional) Specifies the IP address of a neighbor. If this argument is omitted, all neighbors are displayed.
Page 148
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display all the neighbors. (Continued) BGP neighbor: 10.5.5.5 (External Peer), vrf VPN-A ------------------------------------------------------------------- Session State : Enabled Remote AS Remote Router ID : 0.0.0.0 BGP State : Idle Hold Time : 180 Seconds...
Page 149
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Next Hop Self Indicates whether the local BGP enable the router as the next hop for the neighbor. Description Show the description configured to describe the neighbor. Password Show the password set on the TCP connection to the neighbor.
Page 150
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Route Map for Incoming Indicates a route map name which the route updates received from the neighbor Routes must be applied. Route Map for Outgoing Indicates a route map name which the route updates sent to the neighbor must be Routes applied.
Page 151
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Origin codes Origin of the table entry displayed at the end of each line. It can be one of the following values: i - Entry originated from an Interior Gateway Protocol (IGP) and was advertised with a network router configuration command.
Page 152
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description BGP Local Router ID The router identifier of the local BGP router. Status codes Status of the table entry displayed at the beginning of each line. It can be one or more of the following values: s - The table entry is suppressed.
Page 153
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Origin codes Origin of the table entry displayed at the end of each line. It can be one of the following values: i - Entry originated from an Interior Gateway Protocol (IGP) and was advertised with a network router configuration command.
Page 154
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Accepted Prefixes Number of routes accepted by the local BGP. These routes are contained in the Loc- RIB. Last read Time that BGP last received a message from this neighbor. Format is HH:MM:SS. Send Statistics The statistics information of the outgoing packets.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output from the show ip bgp network command in, privileged mode. DXS-3600-32S#show ip bgp network Network Address Route Map ---------------------------------------------- 20.0.0.0/24 Total Network Number: DXS-3600-32S# Display Parameters Description Network Address BGP prefix created by command of network <network-address>.
Page 156
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the redistribution configuration of BGP of the IP VRF address family: DXS-3600-32S#show ip bgp redistribute vrf VPN-A Route Redistribution Settings Source Destination Type Metric RouteMapName Protocol Protocol...
Page 157
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the reflection configuration of BGP. DXS-3600-32S#show ip bgp reflection Client to Client Reflection State : Disabled Cluster ID: 0.0.0.0 Route Reflector Client: peer group: inter (172.18.10.1) 172.18.10.3 172.18.10.4 172.18.10.5...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example The following example displays routes that match the route-map map1 in VRF 100. DXS-3600-32S#show ip bgp route-map vrf 100 map1 BGP Local Router ID is 11.11.11.11 Status codes: s suppressed, d damped, h history, * valid, > best, i - internal Origin codes: i - IGP, e - EGP, ? - incomplete IP Address/Netmask Gateway...
Page 159
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command displays the parameters of BGP. Example This example shows the output from the show ip bgp parameters command, in privileged mode. DXS-3600-32S#show ip bgp parameters BGP Global State : Enabled Version BGP Router Identifier...
Page 160
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Fast External Fallover If enable, Border Gateway Protocol (BGP) routing process will immediately reset its external BGP peer sessions if the link used to reach these peers goes down. Aggregate Next Hop Check Only the routes with the same next hop attribute can be aggregated if the BGP aggregate next hop check is enabled.
Page 161
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description BGP Peer Group Name of the peer group. Description Show the description configured to describe the peer group Session State Indicates whether the peer group is shut down or not. Remote AS Remote AS number of the peer group.
Page 162
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Incoming Update Prefix List Indicates an IP prefix list name which the route updates received from the members of this peer group must be applied. Outgoing Update Prefix List Indicates an IP prefix list name which the route updates sent to the members of this peer group must be applied.
Page 163
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output from the show ip bgp quote-regexp command, in privileged mode. DXS-3600-32S#show ip bgp quote-regexp "100" BGP Local Router ID is 10.90.90.10 Status codes: s suppressed, d damped, h history, * valid, > best, i - internal Origin codes: i - IGP, e - EGP, ? –...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Metric If shown, this is the value of the inter-autonomous system metric. This field is frequently not used. LocPrf Local preference value as set with the set local-preference route-map configuration command.
Page 165
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description BGP protocol version. And now, value is 4. The peer’s Autonomous system number. MsgRcvd The number of message which receives form this neighbor. MsgSent The number of message which be sent to this neighbor. Up/Down The length of time that the BGP session has been in the Established state, or the current status if not in the Established state.
Page 166
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows that the output is similar to the output that will be displayed when the show ip community-list command is entered in the config mode. DXS-3600-32S#show ip community-list Community List Name: ----------------------------------- Type...
Page 167
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 3. (EI Mode Only Command) Usage Guideline If no keyword is specified, this command will display all extcommunity lists. The extcommunity list name can be specified and it is useful for filtering the output of this command and verifying a single named extended community list.
Page 168
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Usually, a BGP speaker does not advertise a route to an external neighbor unless that route is local or exists in the IGP. By default, synchronization between BGP and the IGP is turned off to allow the switch to advertise a network route without waiting for route validation from the IGP.
Page 169
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-95 debug ip bgp This command is used to turn on the BGP debug function. Use the no form of this command to turn off the BGP debug function. debug ip bgp no debug ip bgp Parameters None.
Page 170
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters receive Specifies to turn on BGP received packet debug switch. send Specifies to turn on BGP sent packet debug switch. Default By default BGP packet debug switch is turned off. Command Mode Privileged Mode.
Page 171
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-99 debug ip bgp prefix-list This command is used to turn on BGP IP prefix list debug switch. Use the no form of this command to turn off BGP IP prefix list debug switch. debug ip bgp prefix-list no debug ip bgp prefix-list Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display detailed internal information about BGP. DXS-3600-32S#debug ip bgp show global Following is the information for global debugging: --------------------------------------------------- AS Number : 65100 Router ID : 0.0.0.0 Cluster ID : 0.0.0.0...
Page 173
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display internal detailed information about BGP neighbors. DXS-3600-32S#debug ip bgp show neighbors BGP neighbor: 10.10.10.2 (Internal Peer) ----------------------------------------------- Session State : Enabled Session Activity : Enabled Peer Group : NULL Remote AS...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Privileged Mode. Command Default Level Level: 15. (EI Mode Only Command) Usage Guideline Use this command to check internal status and detailed information of the BGP peer group.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display internal detailed information about the BGP network. DXS-3600-32S#debug ip bgp show network Network Route Map ------------- ----------- 192.168.0.0/16 NULL 172.16.0.0/16 map1 Total Entries :2 DXS-3600-32S# 7-104 debug ip bgp show aggregate This command is used to show internal detailed information about the BGP route aggregation.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 15. (EI Mode Only Command) Usage Guideline Use this command to check internal status and detailed information of BGP route damping. Example This example shows how to display internal detail information about BGP route damping.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to check internal status and detailed information of the BGP interface. Example This example shows how to display internal detailed information about the BGP interface. DXS-3600-32S#debug ip bgp show interface Interface Information: Name Index...
Page 178
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters vrf VRF-NAME (Optional) Specifies the VRF name. The length of the VRF-NAME is 12 characters. Parameters None. Default None. Command Mode Privileged Mode. Command Default Level Level: 15. (EI Mode Only Command) Usage Guideline Use this command to check internal status and detailed information of BGP route redistribution.
Page 179
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 7-110 debug ip bgp show community-list This command is used to show internal detailed information about the BGP community list. debug ip bgp show community-list Parameters None. Default None. Command Mode Privileged Mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Compound Authentication Commands 8-1 network-access guest-vlan This command is used to specify an active VLAN as a guest VLAN for network-access authentication module. Use the no form of this command to return to the default setting. network-access guest-vlan VLAN-ID no network-access guest-vlan Parameters...
Page 181
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output from the show network-access guest-vlan in EXEC command. DXS-3600-32S#show network-access guest-vlan Member Ports: 1/0/4 Member Ports: 1/0/1, 1/0/8 Total Entries: 2 DXS-3600-32S# Display Parameters Description The guest VLAN VID.
Page 182
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 3 Usage Guideline Use the show network-access auth-configure command to display the authentication mode. Example This example shows the output from the show network-access auth-configure privileged EXEC command.
DXS-3600-32S#show running-config Building configuration... Current configuration : 108272 bytes #------------------------------------------------------------------------------- DXS-3600-32S TenGigabit Ethernet Switch Configuration Firmware: Build 1.10.023 Copyright(C) 2012 D-Link Corporation. All rights reserved. #------------------------------------------------------------------------------- # DEVICE configure terminal logging-server enable device # PRIVMGMT configure terminal <The Output is Truncated>...
Page 184
This example shows the boot-up configuration information stored in the NVRAM. The field descriptions are self-explanatory. DXS-3600-32S#show bootup-config #------------------------------------------------------------------------------- DXS-3600-32S TenGigabit Ethernet Switch Configuration Firmware: Build 1.10.023 Copyright(C) 2012 D-Link Corporation. All rights reserved. #------------------------------------------------------------------------------- # DEVICE configure terminal logging-server enable device # PRIVMGMT configure terminal...
Page 185
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to execute the configuration file, called ‘vlan.cfg’, stored in the NVRAM. The field descriptions are self-explanatory. DXS-3600-32S#execute flash: vlan.cfg Executing script file vlan.cfg ..Executing done DXS-3600-32S# 9-4 configure replace This command is used to replace the current running configuration with the indicated configuration file.
Page 186
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to download the ‘config.cfg’ file from the TFTP server and replace the current running configuration with it. DXS-3600-32S#configure replace tftp: //10.0.0.66/config.cfg This will apply all necessary additions and deletions to replace the current running configuration with the contents of the specified configuration file, which is assumed to be a complete configuration, not a partial...
Page 187
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example show how to download the config.cfg from a TFTP server using VPN and replace the current running configuration with it. DXS-3600-32S#configure replace tftp: //10.0.0.66/config.cfg vrf VPN1 This will apply all necessary additions and deletions to replace the current running configuration with the contents of the specified configuration file, which is assumed to be a complete configuration, not a partial...
Page 188
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters bootup-config Specifies to save the current running configuration and set it as the boot-up configuration file. If the boot-up configuration file exists, the boot-up configuration file will be replaced by current running configuration file or else the current configuration file will be saved as ‘config.cfg’...
Page 189
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to upload the current running configuration as ‘config.cfg’ to the TFTP server. DXS-3600-32S#copy running-config tftp: Address of remote host []? 10.0.0.66 Destination filename []? config.cfg Accessing tftp://10.0.0.66/config.cfg... Transmission start...
Page 190
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide ftp: Specifies that the startup configuration file will be uploaded to the FTP server. Specifies the upload configuration file URL on the FTP server. For example, ‘// username:password@locati user:123@192.168.0.1:80/config.cfg’. on:tcpport/filename vrf VRFNAME Specifies to use VPN routing and forwarding.
Page 191
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to upload the boot-up configuration, as ‘config.cfg’, to the FTP server. DXS-3600-32S#copy bootup-config ftp: //user:123@10.0.0.66:80/config.cfg Address of remote host [10.0.0.66]? Destination username [user]? Destination password [123]? TCP port number of remote host [80]? Destination filename [config.cfg]? Accessing ftp://10.0.0.66/config.cfg...
Page 192
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide running-config Specifies that the specified configuration will be executed immediately by using the increment method. The specified configuration will merge with the current configuration. The existing configuration will not be cleared before applying of the specified configuration.
Page 193
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to download the ‘config.cfg’ file from the TFTP server then save it and configure it to be the boot-up configuration file. DXS-3600-32S#copy tftp: //10.0.0.66/config.cfg bootup-config Address of remote host [10.0.0.66]? Source filename [config.cfg]? Destination filename bootup-config? [y/n]: Accessing tftp://10.0.0.66/config.cfg...
Page 194
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to download the ‘config.cfg’ file from the FTP server then execute it immediately by using the increment method. DXS-3600-32S#copy ftp: //user:123@10.0.0.66:80/config.cfg running-config Address of remote host [10.0.0.66]? Source username [user]? Source password [123]? TCP port number of remote host [80]?
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Counter Commands 10-1 clear counters This command is used to clear counters for a specific port interface or all port interfaces. clear counters [INTERFACE-ID] Parameters INTERFACE-ID (Optional) Specifies the interface ID. If no interface is specified, all counters on applicable interfaces (physical ports) will be cleared.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide CPU Commands 11-1 show cpu This command is used to show the CPU utilization information. show cpu Parameters None. Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 15 Usage Guideline Use this command to show the system CPU utilization information in 5sec, 1 min and 5 min.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Debug Commands 12-1 debug enable This command is used to set the debug state as enabled. Users can use no debug command to disable the debug state. debug enable no debug Parameters None.
Page 200
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 12-3 copy error-log This command is used to copy error log information to a location filename through TFTP. copy error-log tftp [//location/filename] Parameters tftp Specifies to upload the error log through a TFTP server. location Specifies the location of the TFTP server.
Page 201
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 12-5 debug output This command is used to set a specified module's debug message output to the debug buffer or local console. debug output {module <MODULE_LIST> | all} {buffer | console | terminal} Parameters module Specifies the module to output debug messages.
Page 202
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to show error log information. DXS-3600-32S#show error-log # debug log: 1 # firmware version: 1.10.011 # level: CPU exception # clock: 8337400 ms # time : 2000-01-19 03:19:42 ====================== SOFTWARE FATAL ERROR ======================= Invalid mutex handle : 806D6480 Current TASK : bcmARL.0...
Page 203
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to show the state of the error-reboot option. Example This example shows how to show the state of the error-reboot option. DXS-3600-32S#show error-reboot Error Reboot: Disabled DXS-3600-32S# 12-9 clear debug buffer This command is used to clear the debug buffer.
Page 204
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to show the utilization of the debug buffer. DXS-3600-32S#show debug buffer utilization Allocate from : System memory pool Total size : 2.0 MB Utilization rate : 1% DXS-3600-32S# 12-11 show debug status This command is used to show the debug buffer’s status of the modules.
Page 205
This example shows how to show the technical support information of IP multicast. DXS-3600-32S#show tech-support #------------------------------------------------------------------------------- DXS-3600-32S TenGigabit Ethernet Switch Technical Support Information Firmware: Build 1.10.023 Copyright(C) 2012 D-Link Corporation. All rights reserved. #------------------------------------------------------------------------------- ******************** Basic System Information ******************** [SYS 2000-2-12 01:30:40] Boot Time...
Page 206
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 12-14 debug show module_version This command is used to show the module version of the modules. debug show module_version [module <MODULE_LIST>] Parameters module Specifies the module which version will be displayed. MODULE_LIST Specifies the module list.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide DHCP Relay Commands 13-1 service dhcp This command is used to enable the DHCP relay feature. The no form of this command can disable the DHCP relay feature. service dhcp no service dhcp Parameters None.
Page 208
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters None. Default By default, this option is disabled. Command Mode Global Configuration Mode. Command Default Level Level: 8 Usage Guideline When DHCP Option 82 is enabled, the DHCP packet received from the client will be inserted with and Option 82 field before being relayed to the server.
Page 209
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Global Configuration Mode. Command Default Level Level: 8 Usage Guideline This command configures the Option 60 relay rules. Note that different strings can be specified with the same relay server and the same strings can be specified with multiple relay servers.
Page 210
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide show ip dhcp relay option60 [identifier desc 255 | default] Parameters desc 255 Specifies the specified string. default Specifies the default relay server configuration. Default None. Command Mode Privileged Mode. Command Default Level Level: 2 Usage Guideline This command is used to show the entries of the DHCP relay Option 60.
Page 211
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 13-9 ip dhcp relay option61 identifier This command is used to add a DHCP server IP address for a specific Option 61. The no form of this command deletes the DHCP server IP address for that Option 61. ip dhcp relay option61 identifier {string desc 255 | mac-address macaddr} {relay ip-address | drop} no ip dhcp relay option61 identifier [string desc 255 | mac-address macaddr] Parameters...
Page 212
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to add default relay servers to be used by the DHCP relay Option 61. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip dhcp relay option61 default relay 10.90.90.90 DXS-3600-32S(config)# 13-11 show ip dhcp relay option61 This command is used to show the entries of the DHCP relay Option 61.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide DHCP Server Commands 14-1 bootfile This command is used to define the startup mapping file name of the DHCP client in the DHCP address pool configuration mode. The no form of this command can be used to remove the definition. bootfile file-name no bootfile Parameters...
Page 214
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command can only clear the automatic DHCP binding, but the manual DHCP binding can be deleted by the no ip dhcp pool command. Note the following behavior for the clear ip dhcp binding command: •...
Page 215
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The DHCP server uses the ping session to detect the address conflict, while the DHCP client uses the address resolution protocol (ARP) to detect the address conflict. The clear ip dhcp conflict command can be used to delete the history conflict record.
Page 216
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no dns-server Parameters ip-address Specifies to define the IP address of the DNS server. At least one IP address should be configured. ip-address2 ip-address3 (Optional) Up to 3 DNS servers can be configured. Default No DNS server is defined by default.
Page 217
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters hardware-address Specifies to define the MAC address of the DHCP client. type Specifies the hardware platform protocol of the DHCP client. Use the string definition or digits definition. String option: •...
Page 218
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 14-9 ip dhcp excluded-address This command is used to define some IP addresses and make the DHCP server not assign them to the DHCP client in the global configuration mode. The no form of this command can be used to cancel this definition. ip dhcp excluded-address [vrf vrf-name] low-ip-address [high-ip-address] no ip dhcp excluded-address [vrf vrf-name] low-ip-address [high-ip-address] Parameters...
Page 219
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the number of the packets, sent by the ping operation as 3. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip dhcp ping packet 3 DXS-3600-32S(config)# 14-11 ip dhcp ping timeout This command is used to configure the timeout that the DHCP server waits for response when it uses the ping operation to detect the address conflict in the global configuration mode.
Page 220
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to define a DHCP address pool with the name ‘mypool0’. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip dhcp pool mypool0 DXS-3600-32S(dhcp-config)# 14-13 lease This command is used to define the lease time of the IP address that the DHCP server assigns to the client in the DHCP address pool configuration mode.
Page 221
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters ip-address Specifies the IP address of the WINS server. It is required to configure one IP address at least. ip-address2 ip-address3 (Optional) Specifies the IP addresses of WINS servers. Up to 3 WINS servers can be configured.
Page 222
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline There are 4 types of the NetBIOS nodes of the Microsoft DHCP client: 1) Broadcast, which carries out the NetBIOS name resolution by the broadcast method, 2) Peer-to-peer, which directly requests the WINS server to carry out the NetBIOS name resolution, 3) Mixed, which requests the name resolution by the broadcast method firstly, and then carry out the name resolution by the WINS server connection,...
Page 223
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 14-17 next-server This command is used to define the startup server that the DHCP client accesses during startup in the DHCP address configuration mode. The no form of this command can be used to delete the definition of the startup server list. next-server ip-address no next-server Parameters...
Page 224
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide show ip dhcp excluded-address [vrf vrf-name] Parameters vrf vrf-name (Optional) Specifies the name of a VRF instance. Default None. Command Mode Privileged Mode. Command Default Level Level: 2 Usage Guideline This command is used to display the groups of IP addresses which are excluded from the legal assigned IP address.
Page 225
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to the result of the show ip dhcp binding command. DXS-3600-32S#show ip dhcp binding IP Address Hardware Address Lifetime Type ------------ ---------------- ----------- ---------- 192.168.12.91 00-D0-F8-38-BF-3D Infinite Manual Total Entries: 1 DXS-3600-32S#...
Page 226
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 14-22 show ip dhcp pool This command is used to display information about the Dynamic Host Configuration Protocol (DHCP) address pools. show ip dhcp pool [pool-name] Parameters pool-name Specifies a string of characters and positive integers, for instance, mypool or 1. Default None.
Page 227
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Privileged Mode. Command Default Level Level: 2 Usage Guideline This command displays the status of the DHCP server. Example This example is used to display the DHCP server status: DXS-3600-32S#show ip dhcp server DHCP Service : Disabled Ping Packets : 2...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Distance Vector Multicast Routing Protocol (DVMRP) Commands 15-1 ip dvmrp This command is used to enable the Distance Vector Multicast Routing Protocol (DVMRP) on an interface. To disable DVMRP on the interface, use the no form of this command. ip dvmrp no ip dvmrp Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline For each source network reported, a route metric is associated with the route being reported. The metric is the sum of the interface metrics between the router originating the report and the source network. For the purposes of DVMRP, the Infinity metric is defined to be 32.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Interface Specifies the interface name. IP Address The IP address of the interface. Generation ID Specifies the generation ID of this interface. This value is dynamically generated by the switch, and it is used for the neighbor to detect that whether the switch has restarted or not Metric...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Generation ID Specify the generation ID of the neighbor. This value is dynamically generated by the neighbor switch, and it is used for the local switch to detect that whether the neighbor has restarted or not Expire Time After this time, the neighbor will be aged out if no new probe message received from...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide D-Link License Management System Commands 16-1 install dlms activation_code This command is used to install an activation code on the switch. install dlms activation_code AC_STR Parameters AC_STR Specifies an activation code. The length should be 25 string characters.
Page 234
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the license information. The field descriptions are self-explanatory. The following example shows how to display the license information on the switch. DXS-3600-32S#show dlms license Device Default License : SI License Model Activation Code...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Domain Name System (DNS) Commands 17-1 ip domain-lookup This command is used to enable the domain name look up for the switch itself's application. For example, to ping a domain name on the switch. Us the no form of this command to disable this function. ip domain-lookup no ip domain-lookup Parameters...
Page 236
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 17-3 ip host This command is used to configure the mapping of the host name and the IP address by manual. Use the no form of the command to remove the host list. ip host [vrf <string 1-12>] host-name ip-address no ip host [vrf <string 1-12>] host-name ip-address Parameters...
Page 237
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide show hosts [vrf <string 1-12>] Parameters vrf <string 1-12> Specifies the VRF that the host reside in. If no VRF name specified, the global instance will be used. Default None. Command Mode Privileged Mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide DoS Attack Prevention Commands 18-1 defense This command is used to defend DoS attacks. Use the no form of the command to disable the defense attack defense [land | blat | null-scan | xmascan | tcp-synfin | port-less-1024 | ping-death | tiny-frag] enable no defense [land | blat | null-scan | xmascan | tcp-synfin | port-less-1024 | ping-death | tiny-frag] enable Parameters land...
Page 239
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Xmas Scan Hackers use the TCP Xmas scan to identify listening TCP ports. This scan uses a series of strangely configured TCP packets, which contain the Urgent (URG), Push (PSH), and FIN flags. Again, this type of scan can get through some firewalls and boundary routers that filter on incoming TCP packets with standard flag settings.
Page 240
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to disable the defense land attack. DXS-3600-32S#configure terminal DXS-3600-32S(config)#no defense land enable Success DXS-3600-32S(config)# 18-2 show defense This command is used to display attack defense information. show-defense Parameters None.
Example This example shows how to enable the ETS willing feature on interface tenGigabitEthernet 1/0/1. DXS-3600-32S#configure terminal DXS-3600-16S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)# ets willing DXS-3600-32S(config-if)# 19-2 ets recommend This command is used to configure the ETS Recommendation feature on a specified interface. This setting will be translated to a DCBX ETS-Recommendation TLV.
Page 242
10%, 10%, 20%, 20%, 40% respectively. For Traffic Classes 5 to 7 the recommended transmission selection algorithm is strict priority. DXS-3600-32S#configure terminal DXS-3600-16S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)# ets recommend bandwidth 10 10 20 20 40 0 0 0 DXS-3600-32S(config-if)#...
Page 243
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide (Optional) Specifies a range of interfaces. No space before and after the hyphen. recommend (Optional) Specifies to display the ETS recommendation information of a given interface or all interfaces. Default None. Command Mode EXEC Mode.
Page 244
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display recommendation information for interface 1/1/1. DXS-3600-32S#show ets interface gigabitEthernet 1/1/1 recommend Interface Id: gigabitEthernet 1/1/1 Recommended TC Setting: CoS Mapped CoSs Scheduler Bandwidth Queue ID (Priorities) Type Percentage...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide File System Commands 20-1 dir This command is used to show the files in the current directory. dir directory Parameters directory (Optional) Specifies the path of the directory to show, defaulted to the contents in the current directory.
Page 246
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to show the information of all files in the current directory. DXS-3600-32S#ls Directory of flash: 1 -rw- 107389 2000/02/11 21:53:18 config.cfg 2 -rw- 107455 2000/02/12 01:53:01 y 3 -rw- 5081096 2000/02/12 01:54:02 runtime.had 4 d--- 0...
Page 247
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Change the parameter to the directory you want to enter. Use the “..” to represent the up-level directory and the “.” to represent the current-level directory. Others can be determined according to the current location.
Page 248
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 20-7 rmdir This command is used to delete an empty directory. rmdir directory Parameters directory Specifies the name of directory to be deleted, which must be empty. Default None. Command Mode Privileged EXEC Mode.
Page 249
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters filename Specifies the name of file to be deleted (including the path). Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 3 Usage Guideline This command does not support the wildcard and the deletion across file systems and across partitions.
Page 250
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Privileged EXEC Mode. Command Default Level Level: 3 Usage Guideline This command shows the current working path. Example This example shows how to show the current working path. DXS-3600-32S#pwd flash: DXS-3600-32S#...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Filter Database (FDB) Commands 21-1 mac-address-table aging-time This command is used to set the length of time that a dynamic entry remains in the MAC address table. Use the no form of the command to set the time to default. mac-address-table aging-time SECONDS no mac-address-table aging-time Parameters...
Page 252
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to remove all dynamic MAC address from the MAC address table. DXS-3600-32S#clear mac address-table dynamic DXS-3600-32S# Example This example shows how to remove the MAC address “00:08:00:70:00:07” from the dynamic MAC address table.
Page 253
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Global Configuration Mode. Command Default Level Level: 12 Usage Guideline An error message “The specified interface does not exist.” will appear if the specified interface does not exist. An error message “The specified VLAN does not exist.”...
Page 254
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Global Configuration Mode. Command Default Level Level: 12 Usage Guideline Only a unicast MAC address can be specified for the entry. An error message “The specified VLAN does not exist.” will be displayed if the specified VLAN does not exist.
Page 255
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 21-6 snmp trap mac-notification This command is used to enable the MAC address notification function on interface. Use the no form of the command to disable the function. snmp trap mac-notification {added | removed} no snmp trap mac-notification {added | removed} Parameters added...
Page 256
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters interface INTERFACE-ID (Optional) Specifies to show MAC address notification configuration on the interface. history (Optional) Specifies to show the MAC address notification history. Default None. Command Mode EXEC Mode. Command Default Level Level: 1 Usage Guideline None.
Page 257
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters dynamic (Optional) Displays dynamic MAC address entries only. static (Optional) Displays user creates static MAC address entries and L3 interface MAC address entries only. filtering (Optional) Displays user creates filtering MAC address entries only. address MAC-ADDR (Optional) Specifies the 48-bit MAC address.
Page 258
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display all the static MAC address table entries. DXS-3600-32S#show mac-address-table static VLAN MAC Address Type Interface Protocol ---- ----------------- ---------- ------------------------- -------- 00-00-CD-FE-00-05 Static tenGigabitEthernet 1/0/1 5C-02-4B-28-C4-82 Self 5C-D9-98-C9-C0-93...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide GARP VLAN Registration Protocol (GVRP) Commands 22-1 clear gvrp statistics interface This command is used to clear the statistics for a GVRP port. clear gvrp statistics [interface INTERFACE-ID [, | -]] Parameters INTERFACE-ID (Optional) Specifies the interface to clear.
Page 260
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide gvrp no gvrp Parameters None. Default By default, this option is disabled. Command Mode Interface Configuration Mode. Command Default Level Level: 12 Usage Guideline You can use the GVRP interface configuration command to enable/disable the GVRP protocol state.
Page 261
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 22-5 gvrp dynamic-vlan-creation This command is used to enable dynamic VLAN creation, and use the no command to disable the dynamic VLAN creation function. gvrp dynamic-vlan-creation no gvrp dynamic-vlan-creation Parameters None. Default By default, this option is disabled.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set Ethernet port 1 as a forbidden port of VLAN 1000. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#forbidden vlan 1000 DXS-3600-32S(config-if)# 22-7 gvrp timer This command is used to set the GVRP timer value on a port. gvrp timer [join TIMER-VALUE | leave TIMER-VALUE | leave-all TIMER-VALUE] Parameters join...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode EXEC Mode. Command Default Level Level: 3 Usage Guideline This command only displays GVRP related configurations. Example This example shows how to display the GVRP configuration for all interfaces. DXS-3600-32S#show gvrp Global GVRP State : Enabled...
Page 264
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display statistics for GVRP ports 1-2. DXS-3600-32S#show gvrp statistics interface tenGigabitEthernet 1/0/1-1/0/2 Interface JoinEmpty JoinIn LeaveEmpty LeaveIn LeaveAll Empty ----------------------------------------------------------------------------------- TGi1/0/1 RX 0 TX 0 TGi1/0/2 RX 0 TX 0...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Internet Group Management Protocol (IGMP) Commands 23-1 clear ip igmp group This command is used to clear dynamic group member information obtained from the response messages in the IGMP buffer. clear ip igmp group [group-address | interface ifname] Parameters group-address Specifies the address of the multicast group.
Page 266
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default The switch is not added to the multicast group manually. Command Mode Interface Configuration Mode. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline This command directly adds an interface to a multicast group. You can use this command to add an interface to a group.
Page 267
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no ip igmp query-interval Parameters seconds Specifies the query interval of ordinary member, in second. The range is 1 to 31744 seconds. Default 125 seconds. Command Mode Interface Configuration Mode. Command Default Level Level: 8.
Page 268
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide ip igmp robustness-variable number no ip igmp robustness-variable Parameters number Specifies the value of robustness variable, ranging 1 to 7. Default The default value is 2. Command Mode Interface Configuration Mode. Command Default Level Level: 8.
Page 269
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 23-8 ip igmp check-subscriber-source-network This command is used to configure the flag that determines whether or not to check the subscriber’s source IP when an IGMP report or leave message is received. Use the no form of this command to disable the check. ip igmp check-subscriber-source-network no ip igmp check-subscriber-source-network Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the information of all the interfaces. DXS-3600-32S#show ip igmp interface Interface vlan1 Internet Address is 10.90.90.90/8 IGMP is disabled on interface Current IGMP router version is 2 IGMP query interval is 120 seconds IGMP querier timeout is 0 seconds IGMP max query response time is 20 seconds...
Page 271
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide show ip igmp groups [group group-address | interface ifname] [{detail | static}] Parameters group-address Specifies the address of the multicast group. This is a multicast IP address in four- part dotted-decimal notation. ifname Specifies the interface name.
Page 272
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows detailed group information on a specific interface:. DXS-3600-32S#show ip igmp groups interface vlan1 detail IGMP Group Detail Information Interface : vlan1 Multicast Group : 224.1.1.1 Last Reporter : 10.0.31.1 IP Querier : SELF Up Time...
Page 273
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows detailed information of a specific group. DXS-3600-32S#show ip igmp groups group 224.1.1.1 detail IGMP Group Detail Information Interface : vlan1 Multicast Group : 224.1.1.1 Last Reporter : 10.0.31.1 IP Querier : SELF Up Time...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide IGMP Snooping Commands 24-1 ip igmp snooping This command is used to enable the IGMP Snooping state. Use the no form of this command to disable the IGMP Snooping state. ip igmp snooping no ip igmp snooping Parameters None.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable the IGMP Snooping fast leave function. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vlan 1 DXS-3600-32S(config-vlan)#ip igmp snooping fast-leave DXS-3600-32S(config-vlan)# Example This example shows how to disable IGMP Snooping fast leave. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vlan 1 DXS-3600-32S(config-vlan)#no ip igmp snooping fast-leave...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to delete port-channel 1 from the static multicast router interface in VLAN 1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vlan 1 DXS-3600-32S(config-vlan)#no ip igmp snooping mrouter port-channel 1 DXS-3600-32S(config-vlan)# Example This example shows how to configure port-channel 1 as forbiddened multicast router interface in VLAN 1.
Page 277
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide ip igmp snooping querier no ip igmp snooping querier Parameters None. Default By default, this option is disabled. Command Mode Interface Configuration Mode. Command Default Level Level: 8 Usage Guideline This command is used to enable the IGMP Snooping querier state. Note that if IGMP is enabled, IGMP Snooping querier will be automatically disabled on the interface.
Page 278
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command allows users to create an IGMP Snooping static group and add static members to this group. A member interface configured in a static group will be processed as the IGMP Snooping ever receiving IGMP group subscribing message on it.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to restore the default value of IGMP Snooping max response time on VLAN 1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vlan 1 DXS-3600-32S(config-vlan)#no ip igmp snooping max-response-time DXS-3600-32S(config-vlan)# 24-8 ip igmp snooping query-interval This command is used to configure the interval between general queries sent by IGMP Snooping querier.
Page 280
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By default, this value is 3. Command Mode Interface Configuration Mode. Command Default Level Level: 8 Usage Guideline IGMP Snooping can be configured to one of the three versions: v1, v2 and v3. When it is configured to v1, it means the IGMP Snooping will run in v1 compatibility mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to clear IGMP Snooping statistics counter. Example This example shows how to clear the IGMP Snooping statistics counter. DXS-3600-32S#configure terminal DXS-3600-32S(config)#clear ip igmp snooping statistics DXS-3600-32S(config)# 24-11 show ip igmp snooping This command is used to display the IGMP Snooping related configurations.
Page 282
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description IGMP Snooping Global State Specify IGMP Snooping global state. Use the ip igmp snooping command, in the global configuration mode, to configure this state. Dynamic Mrouter Aging Time Specify IGMP Snooping dynamically learned multicast router interface aging out time, as specified with command ip igmp snooping dyn-mr-aging-time.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Querier Role The querier role of the querier electing. It can be Querier or Non-Querier. Querier means the local switch is selected as IGMP querier on the VLAN, and Non-Querier means the local switch is not selected as IGMP querier.
Page 284
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows IGMP Snooping group information on VLAN 1. DXS-3600-32S#show ip igmp snooping groups vlan 1 IGMP Snooping Connected Group Membership: VLAN ID Group address Source address Exp(sec) Interface ------- --------------- ---------------...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the IGMP snooping static group information of all VLANs. DXS-3600-32S#show ip igmp snooping static-group VLAN ID Group address Interface -------------- --------------- ---------------------- 235.0.0.0 1/0/3-1/0/4 234.1.1.1 1/0/4 Total Entries : 2...
Page 286
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to display IGMP Snooping multicast router interface information. If no parameter is specified, this command will display IGMP Snooping multicast router interface information on all VLANs. Example This example shows how to display the IGMP Snooping multicast router interface information of all VLANs.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display all IGMP Snooping forwarding information on the switch. DXS-3600-32S#show ip igmp snooping forwarding-table (Group, Source) Forwarding Interface ------------------------------------------------------------- VLAN #1 (225.0.0.3, 10.71.57.1) 1/0/3-1/0/10 (225.0.0.4, 10.71.57.1) 1/0/3, 1/0/8 (225.0.0.5, 10.71.57.1) 1/0/1, 1/0/7...
Page 288
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display IGMP Snooping statistics counter information on the whole switch, and it will only display the IGMP Snooping enabled VLAN interface. DXS-3600-32S#show ip igmp snooping statistics VLAN #1 -------------------------------------------------- Group Number...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Interface Commands 25-1 interface out-band This command is used to select the out-band interface, and enter the interface configuration mode. interface out-band <int> Parameters Specifies the out-band interface number. Default None. Command Mode Global Configuration Mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no shutdown Parameters None. Default By default, the interface is enabled. Command Mode Interface Configuration Mode. Command Default Level Level: 8 Usage Guideline This command is used to disable or enable an interface. Users can verify the settings by entering the show interface out-band command.
Page 291
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode EXEC Mode. Command Default Level Level: 3 Usage Guideline Use this command to display the loopback interface. Example This example shows how to display the loopback interface. DXS-3600-32S#show interface loopback 2 Interface : loopback2...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide IP Access List Commands 26-1 ip standard access-list This command is used to enter the access list configuration mode and define a standard IP access list. Use the no form of this command to remove a standard IP access list. ip standard access-list ACCESS-LIST-NAME no ip standard access-list ACCESS-LIST-NAME Parameters...
Page 293
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure deny rules for a standard IP access list. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip access-list standard IPS DXS-3600-32S(config-std-nacl)#deny 121.2.0.0/8 DXS-3600-32S(config-std-nacl)#deny 126.1.2.2/8 DXS-3600-32S(config-std-nacl)# 26-3 permit This command is used to set the permit rules of standard IP access list. Use the no form of this command to remove the permit rules.
Page 294
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the content of standard IP access list 'IPS'. DXS-3600-32S#show ip standard access-list IPS IP Standard Access List: Total Entries Number Permit 120.2.0.0/16 Deny 125.1.2.2/20 Total Access List Number : DXS-3600-32S# Display Parameters Description...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide IP Address Commands 27-1 ip address This command is used to set the primary or secondary IP address for an interface. Use no command to remove the IP address. ip address ip-address net-mask [secondary] no ip address ip-address net-mask [secondary] Parameters ip-address...
Page 296
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to make the interface of VLAN 1 obtain an IP address automatically. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface vlan 1 DXS-3600-32S(config-if)#ip address dhcp DXS-3600-32S(config-if)# 27-3 ip directed-broadcast This command is used to enable forwarding of IP directed broadcasts on an interface where the broadcast becomes a physical broadcast.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command set or remove the default gateway address for the out-band interface. This command is only valid for out-band IP interface. Users can verify the settings by entering the show interface out-band and show ip interface command.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide IP Prefix List Commands 28-1 ip prefix-list This command is used to create an IP prefix list or add a rule for an IP prefix list. Use the no form of this command to remove an IP prefix list or remove a rule for an IP prefix list.
Page 299
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide For example: If the specified network address is 10.1.2.3/16 and none of ge and le is specified, only the route 10.1.0.0/16 will match the rule. The route 10.1.2.0/24 will not. If the network address is 10.1.0.0/16 and ge 24 is specified, the route 10.1.0.0/16 will not match the rule.
Page 300
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide clear ip prefix-list counter {PREFIX-LIST-NAME [NETWORK-ADDRESS] | all} Parameters PREFIX-LIST-NAME Specifies the name of the IP prefix list. It can accept up to 16 characters. The syntax is general string that does not allow space. NETWORK-ADDRESS (Optional) Specifies the network entry of IP prefix list.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide IP Multicast (IPMC) Commands 29-1 ip mroute This command is used to create static routes for multicast. Use the no form of this command to delete the static routes. ip mroute SOURCE-ADDRESS MASK {RPF-ADDRESS | null} no ip mroute {SOURCE-ADDRESS MASK | all} Parameters SOURCE-ADDRESS...
Page 303
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 29-2 ip multicast-routing This command is used to enable global IP multicast routing. The no form of the command disables global IP multicast routing. ip multicast-routing no ip multicast-routing Parameters None. Default By default, this option is disabled.
Page 304
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to display the multicast routing entries learned on the switch or the multicast static routes created on the switch. You can specify the parameter to display the information that you concerning.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display IP multicast routing information for group source part (239.0.0.5, 20.2.2.10). DXS-3600-32S#show ip mroute 239.0.0.5 20.2.2.10 (20.2.2.10, 239.0.0.5), 00:02:53/00:00:37, flags: VP Incoming interface: vlan20, RPF Neighbor 2.3.0.1 Outgoing interface List: NULL Total Entries: 1 DXS-3600-32S#...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to display the RPF information of the specified source address. The static multicast routing information, which created by command ip mroute, prefer than RPF information learnt by unicast routing protocol. Example This example shows how to display RPF information of 10.0.0.1 DXS-3600-32S#show ip rpf 10.0.0.1...
Page 307
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters IFNAME Specifies the interface name. Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 3. (EI Mode Only Command) Usage Guideline This command is used to display the basic multicast interface information, if no parameter is specified, this command will display information for all interfaces.
Page 308
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display IP multicast routing information. DXS-3600-32S#show ip multicast-routing IP multicast routing state: Disabled DXS-3600-32S# Display Parameters Description IP multicast routing state This state can be modified by command “ip multicast-routing”.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide LINE Commands 30-1 line This command is used to enter the specified LINE mode. The no form of this command is used to restore the default configuration. line {console | telnet | ssh} no line {console | telnet | ssh} Parameters console...
Page 310
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 30-3 speed This command is used to set the speed at which the terminal transmits packets, execute the speed speed command in the line configuration mode. To restore the speed to its default value, run the no speed command. speed speed no speed Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Link Aggregation Commands 31-1 aggregateport load-balance This command is used to specify the load-balance algorithm. Use the no command to return it to the default setting. aggregateport load-balance {dst-mac | src-mac | src-dst-mac | dst-ip | src-ip | src-dst-ip} no aggregateport load-balance Parameters dst-mac...
Page 312
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure port priority of Ethernet interface 1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#lacp port-priority 4096 DXS-3600-32S(config-if)# 31-3 lacp system-priority This command is used to set the LACP system priority. The no form of it restores it to the default. lacp system-priority system-priority no lacp system-priority Parameters...
Page 313
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline None. Example This example shows how to configure the port LACP timeout to long mode on Ethernet interface 1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#lacp timeout long DXS-3600-32S(config-if)# 31-5 port-group This command is used to assign a physical interface to be a member port of an aggregate port.
Page 314
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By default, the aggregation mode is passive on the interface. Command Mode Interface Configuration Mode. Command Default Level Level: 15 Usage Guideline None. Example This example shows how to configure Ethernet interface 1-2 to active mode. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface range tenGigabitEthernet 1/0/1-1/0/2 DXS-3600-32S(config-if-range)#port-group mode active...
Page 315
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode EXEC Mode. Command Default Level Level: 15 Usage Guideline None. Example This example shows how to display LACP summary. DXS-3600-32S#show lacp summary Flags:S - Port is perform slow timeout F - Port is perform fast timeout.
Page 316
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Port State State variables for the port, encoded as individual bits within a single octet with these meanings: • bit0: LACP_Activity • bit1: LACP_Timeout • bit2: Aggregation • bit3: Synchronization •...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Link Layer Discovery Protocol (LLDP) Commands 32-1 lldp run This command is used to enable the Link Layer Discovery Protocol (LLDP) globally. Use the no form of this command to return to the default settings. lldp run no lldp run Parameters...
Page 318
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to disable the LLDP global forward state. DXS-3600-32S#configure terminal DXS-3600-32S(config)#no lldp forward DXS-3600-32S(config)# 32-3 lldp message-tx-interval This command is used to set the LLDPDUs transmission interval on the switch. Use the no form of this command to return to the default settings.
Page 319
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This parameter is a multiplier on the msgTxInterval that used to compute the TTL value of txTTL in an LLDPDU. The TTL will be carried in the LLDPDU packet. The lifetime will be the minimum of 65535 and (message_tx_interval * message_tx_hold_multiplier).
Page 320
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide lldp reinit-delay seconds no lldp reinit-delay Parameters seconds Specifies a delay for LLDP initialization on an interface. Valid values are from 1 to 10 seconds. Default 2 seconds. Command Mode Global Configuration Mode. Command Default Level Level: 12 Usage Guideline...
Page 321
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 32-8 lldp notification This command is used to enable the SNMP trap notification of LLDP data changes detected on advertisements received from neighbor devices on each physical interfaces. Use the no form of this command to return to the default settings.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command specifies whether the system’s IP address needs to be advertised from the specified port. For Layer 3 devices, each managed address can individually be specified. The management addresses that are added in the list will be advertised in the LLDP from the specified interface, associated with each management address.
Page 323
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters None. Default LLDP is enabled on all supported interfaces. Command Mode Interface Configuration Mode. Command Default Level Level: 12 Usage Guideline None. Example This example shows how to enable the receive state. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#lldp receive...
Page 324
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to disable System Name TLV advertisement. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#no lldp tlv-select system-name DXS-3600-32S(config-if)# 32-13 lldp dot1-tlv-select This command is used to specify which optional type-length-value settings (TLVs) in the IEEE 802.1 Organizationally Specific TLV set will be transmitted and encapsulated in the LLDPDUs and sent to neighbor devices.
Page 325
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline If the optional TLVs advertisement state enabled, they will be encapsulated in LLDPDU and sent to other devices. The Protocol Identity TLV optional data type indicates whether the corresponding Local System's Protocol Identity instance will be transmitted on the port.
Page 326
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to disable LACP Protocol Identity TLV advertisement. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#no lldp dot1-tlv-select protocol-identify lacp DXS-3600-32S(config-if)# 32-14 lldp dot3-tlv-select This command is used to specify which optional type-length-value setting (TLVs), in the IEEE 802.3 Organizationally Specific TLV set, will be transmitted and encapsulated in the LLDPDUs and sent to neighbor devices.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to disable MAC/PHY Configuration/Status TLV advertisement. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#no lldp dot3-tlv-select mac-phy-config-status DXS-3600-32S(config-if)# 32-15 show lldp This command is used to display the switch’s general LLDP configuration status. show lldp Parameters None.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output from the show lldp management-address ipv4 command. To display a specific management address information. DXS-3600-32S#show lldp management-address ipv4 192.168.254.10 The following is sample Address 1 ----------------------------------------------------------------------- Subtype : IPV4...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output from the show lldp interface command. To display a specific physical interface configuration. DXS-3600-32S#show lldp interface tenGigabitEthernet 1/0/1 Interface ID : 1/0/1 ----------------------------------------------------------------- Admin Status : TX_and_RX Notification Status : Disabled...
Page 330
DXS-3600-32S#show lldp local interface tenGigabitEthernet 1/0/1 detail Interface ID : 1/0/1 ----------------------------------------------------------------------------- Port ID Subtype : MAC Address Port ID : 00-01-02-03-05-00 Port Description : D-Link DXS-3600-32S R1.10.023 P ort 1 on Unit 1 Port PVID Management Address Count Subtype : IPv4 Address : 0.0.0.0...
Page 331
: MAC Address Port ID : 00-01-02-03-05-00 Port Description : D-Link DXS-3600-32S R1.10.023 P ort 1 on Unit 1 DXS-3600-32S# 32-19 show lldp remote interface This command is used to display the each physical interface information currently learned from the neighbor.
Page 332
Remote Entities Count : 1 Interface ID : 1/0/1 ----------------------------------------------------------------------------- Port ID Subtype : MAC Address Port ID : 00-02-03-04-05-06 Port Description : D-Link DXS-3600-32S R1.10.023 P ort 1 on Unit 1 Port PVID Management Address Count Subtype : IPv4 Address : 0.0.0.0...
Port ID Subtype : MAC Address Port ID : 00-02-03-04-05-06 Port Description : D-Link DXS-3600-32S R1.10.023 P ort 1 on Unit 1 DXS-3600-32S# 32-20 show lldp statistic This command is used to display the system global LLDP statistics information. show lldp statistic Parameters None.
Page 334
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 3 Usage Guideline The each physical interface LLDP statistics command displays each physical interface LLDP statistics Example This example shows how to display statistics information of an interface. DXS-3600-32S#show lldp statistic interface tenGigabitEthernet 1/0/1 Interface ID : 1/0/1 ---------------------------------------------...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide LLDP-DCBX Commands 33-1 lldp-dcbx run This command is used to to enable the Data Center Bridging eXchange Protocol (DCBX) on each physical interface. Use the no form of this command to return to the default settings. lldp-dcbx run no lldp-dcbx run Parameters...
Page 336
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable the ETS Configuration TLV advertisement. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)# lldp-dcbx tlv_select ets-configuration Example This example shows how to disable the ETS Configuration TLV advertisement. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)# no lldp-dcbx tlv_select ets-configuration...
Page 337
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command displays each physical interface’s information currently available for populating outbound LLDP DCBX advertisements. Example This example shows how to display a specific physical interface's local information. DXS-3600-32S#show lldp-dcbx local interface tenGigabitEthernet 1/0/1 Port ID : 1/0/1 ETS Basic Configuration Credit Based Shaper Support : Disabled...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide LLDP-MED Commands 34-1 lldp-med fast-start-repeat-count This command is used to set the fast start repeat count on the switch. Use the no form of this command to return to the default settings. lldp-med fast-start-repeat-count value no lldp-med fast-start-repeat-count Parameters...
Page 341
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide lldp-med tlv-select {inventory-management | location | network-policy | power-management | capabilities} no lldp-med tlv-select {inventory-management | location | network-policy | power-management | capabilities} Parameters inventory-management This TLV type indicates that the LLDP agent should transmit 'LLDP-MED inventory TLV'.
Page 342
: Network Connectivity Device Hardware Revision Firmware Revision : 1.10.007 Software Revision : 1.10.023 Serial Number : D1234567890 Manufacturer Name : D-Link Model Name : DXS-3600-32S TenGigabit Ethernet Asset ID LLDP-MED Configuration: Fast Start Repeat Count : 10 LLDP-MED Log State:Disabled DXS-3600-32S# 34-5 show lldp-med interface This command is used to display the LLDP-MED per port configuration for advertisement options.
Page 343
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide show lldp-med local interface interface-id [, | -] [capabilities | network_policy | location | extended_power] Parameters interface interface-id Specifies the valid physical interface. (Optional) Specifies a series of physical interfaces. No space before and after the comma.
Page 344
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode User EXEC Mode. Command Default Level Level: 3 Usage Guideline Used to display the LLDP-MED information learned from the neighbor. Example This example shows how to display the LLDP-MED information learned from the neighbor.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Memory Commands 35-1 show memory This command is used to display the current memory usage information. show memory Parameters None. Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 15 Usage Guideline Use this command to view the current system memory state and usage information, including the memory information about DRAM and FLASH.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Mirror Commands 36-1 monitor session This command is used to monitor a session, create a mirror session, and to specify the destination port or source port. The no form of the command is used to delete the whole session or delete the source port, destination port, acl mirror separately.
Page 347
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Number of mirror ports are 4 MTPs, MTPs port can be same or different. For a mirrored packet, do no VLAN membership check, MTP port need not be member of all VLANs. An MTP port can be a logical port, if for trunk. If the source ports overlapped with the destination trunk member ports while configure mirror session, the switch can be configured successfully and that the mirror cannot be worked well.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 36-3 show monitor This command is used to display monitor sessions. show monitor [session session_number] Parameters session_number Specifies the mirror session number to display. Default All the monitor sessions are displayed. Command Mode Privileged EXEC Mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Multicast Filter Mode Commands 37-1 multicast filtering-mode This command is used to configure multicast packets filtering mode for VLANs. To restore the default configuration, use no form of this command. multicast filtering-mode {forward-all | forward-unregistered | filter-unregistered} no multicast filtering-mode Parameters forward-all...
Page 351
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Privileged EXEC Mode. Command Default Level Level: 3 Usage Guideline This command is used to display information about the multicast filter mode configuration. Example This example shows how to display multicast filter mode information for all VLANs. DXS-3600-32S#show multicast filtering-mode VLAN ID/VLAN Name Multicast Filter Mode...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Multiprotocol Label Switching (MPLS) Commands 38-1 mpls ip (global configuration) This command is used to enable the MPLS forward globally. Use no mpls ip command in global configuration mode to disable MPLS forward globally. mpls ip no mpls ip Parameters...
Page 353
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 12. Usage Guideline This command only can be applied on Layer 3 VLAN interface. Use the mpls ip command in the interface configuration mode to enable the MPLS forward on this interface.
Page 354
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide out-label LABEL-VALUE Specifies the outgoing VC label. Default No static VC FTN. Command Mode Global Configuration Mode. Command Default Level Level: 3. Usage Guideline This command is used to create one FTN for the VC instance. Once the packets are received from the associated AC, the VC label will be pushed according the configured value.
Page 355
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to add a static ILM entry. At LSR (Label Switching Router), the incoming MPLS packets that are matched the incoming label will be processed according configured ILM action. The label operation is either swapping the incoming top label to configured outgoing label or popping the top label.
Page 356
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters None. Default Disabled. Command Mode Global Configuration Mode. Command Default Level Level: 12. Usage Guideline This command used to configure the LDP trap state. Example This example shows how to enable the LDP trap state. DXS-3600-32S#configure terminal DXS-3600-32S(config)# snmp-server enable traps mpls ldp DXS-3600-32S(config)#...
Page 357
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 15. Usage Guideline This command only can be applied on a Layer 3 VLAN interface. LDP sends link hello message periodically to discovery its directly connected neighbors. LDP maintains a hold timer for each discovered neighbor.
Page 358
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command only can be applied on a Layer 3 VLAN interface. If the targeted hello message is acceptable, the interface will responds to received targeted hello messages. Otherwise, if the received targeted hello is not coming from the local configured targeted peer, the targeted hello message will be ignored.
Page 359
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode MPLS Targeted Peer Configuration Mode. Command Default Level Level: 15. Usage Guideline It is necessary to ensure that the hold-time of the target hello is larger than the interval value. Otherwise, LDP can not work normally according to the requirement. Example This example shows how to configure the LDP extended discovery hello hold time to 90 seconds for targeted peer 110.10.10.1.
Page 360
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters interface Specifies to use the IP address of the corresponding interface as the transmission address for the session on each interface. IP-ADDRESS Specifies that all sessions should use this specified IP address as the transmission address uniformly.
Page 361
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The LDP back-off mechanism prevents two incompatibly configured LSRs from engaging in an endless sequence of session setup failures. If a session setup attempt fails due to an incompatibility, the active LSR delays its next attempt (that is, backs off), and then retries the session establishment.
Page 362
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no label-retention-mode Parameters liberal Specifies to use the liberal label retention mode. conservative Specifies to use the conservative label retention mode. Default Liberal Label Retention Mode. Command Mode MPLS Router Configuration Mode. Command Default Level Level: 15.
Page 363
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the LSP control mode to ordered. DXS-3600-32S#configure terminal DXS-3600-32S(config)# mpls label protocol ldp DXS-3600-32S(config-mpls-router)#mpls ldp lsp-control-mode ordered 38-21 mpls ldp distribution-mode This command is used to set the label distribution mode for the interface. Use the no form of this command to restore the default value.
Page 364
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to configure LDP loop detection. The LDP loop detection mechanism makes use of the Path Vector and Hop Count TLVs carried by the label request and label mapping messages to detect looping LSPs. Note: If LDP is running, configuring loop detection will lead to LDP sessions restart.
Page 365
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The path vector value is valid with the loop detection of the LDP instance enabled. If the LDR ID number that is in the path vector list of the label mapping message or the label request message of LDP is greater than the configured value, it is deemed that a loop occurs.
Page 366
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to enable LDP authentication. If the LDP MD5 authentication is enabled, the LSR will apply the MD5 algorithm to compute the MD5 digest for the TCP segment that will be sent to the peer. This computation makes use of the peer password as well as the TCP segment.
Page 367
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters None. Default None. Command Mode EXEC Mode. Command Default Level Level: 3. Usage Guideline This command is used to display the MPLS global configuration. Example This example shows how to display the MPLS global configuration. DXS-3600-32S#show mpls MPLS Status : Enabled...
Page 368
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Specifies to only display FTN entries. Specifies to only display ILM entries. detail Specifies to display detailed MPLS label forwarding path information. Default None. Command Mode EXEC Mode. Command Default Level Level: 3.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide LSP: 6 Type: Egress Status: Up FEC: VC11/192.1.1.1 Owner: LDP In Label: 200 Out Label: Pop Total Entries: 6 DXS-3600-32S# Example This example shows how to display FTN information. DXS-3600-32S#show mpls forwarding-table ftn Out Label Next Hop Out Interface...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display LDP global information. DXS-3600-32S#show mpls ldp parameter LSR ID : 172.18.1.1:0 LDP Version : 1.0 LDP State : Enabled TCP Port : 646 UDP Port : 646 Max PDU Length : 1500...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display LDP interface information. DXS-3600-32S#show mpls ldp interface Interface: if1 --------------------------------------- Admin State : Enabled Oper State : Disabled Targeted Hello Accept : Acceptable Hello Interval : 5(Sec) Hello Hold Time : 15(Sec)
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide show mpls ldp discovery Parameters None. Default None. Command Mode EXEC Mode. Command Default Level Level: 3. Usage Guideline This command is used to display LDP peer information. Example This example shows how to display LDP peer information. DXS-3600-32S#show mpls ldp discovery Local LDP Identifier: 10.1.1.1:0 Discovery Sources:...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display LDP neighbor information. DXS-3600-32S#show mpls ldp neighbor Peer : 202.11.1.1:0 -------------------------------------- Protocol Version : 1.0 Transport address : 202.11.1.1 Keep Alive Time : 40 (sec) Distribution Method : DU Loop Detect : Disabled...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display all LDP session information. DXS-3600-32S#show mpls ldp session Peer Status Role Keep Alive Distribution Mode ---------- ------------ -------- ----------- ------------------ 10.1.1.2:0 OPERATIONAL Active 40(Sec) 20.1.1.2:0 OPERATIONAL Passive...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode EXEC Mode. Command Default Level Level: 3. Usage Guideline This command is used to display all LDP label binding information. Example This example shows how to display all LDP label binding information. DXS-3600-32S#show mpls ldp bindings FEC: 130.1.1.0/24 State...
Page 376
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 38-39 show mpls ldp neighbor password This command is used to display the LDP neighbor password. show mpls ldp neighbor password Parameters None. Default None. Command Mode EXEC Mode. Command Default Level Level: 3.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to check the connectivity of the LSP for network 192.1.1.0/ DXS-3600-32S#ping lsp 192.1.1.0/24 Ping 192.1.1.0/24 Reply from 192.1.1.1, time<10ms Reply from 192.1.1.1, time<10ms Reply from 192.1.1.1, time<10ms Reply from 192.1.1.1, time<10ms Ping Statistics for 192.1.1.0/24 Packets: Sent =4, Received =4, Lost =0...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to trace route the LSP for network 192.1.1.0/24. DXS-3600-32S#traceroute lsp 192.1.1.0/24 Tracing route to 192.1.1.0/24 1 Reply from 170.1.1, time<10ms 2 Reply from 200.1.2.3, time=20ms 3 Reply from 210.1.1.4, time=30ms 4 Reply from 192.1.1.1, time=40ms Trace complete.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to create an LSP trigger filter rule that permits the establishment LSP for 192.1.1.0/24 and do not permit the establishment LSP for other routes. DXS-3600-32S#configure terminal DXS-3600-32S(config)# mpls label protocol ldp DXS-3600-32S(config-mpls-router)#lsp trigger 10 permit ip 192.1.1.0/24 DXS-3600-32S(config-mpls-router)#lsp trigger 20 deny any...
Page 380
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Specifies to remove all MPLS QoS policies. Default No MPLS QoS policy. Command Mode Global Configuration Mode. Command Default Level Level: 8. Usage Guideline Use this command to enter the MPLS QoS configuration mode. If the policy doesn’t exist, a new policy will be created.
Page 382
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use the class-map inbound command to set the mapping from EXP to have priority for incoming packets. The inbound mapping takes effect only when trust-exp is enabled. If inbound mapping exists, it will be replaced by the last configuration. Use the class-map outbound command set the mapping from priority to EXP for outgoing packets.
Page 383
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the class-map for MPLS QoS policy 1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#mpls qos policy policy1 DXS-3600-32S(config-mpls-qos)#class-map inbound exp 0 priority 0 DXS-3600-32S(config-mpls-qos)#class-map inbound exp 1 priority 1 DXS-3600-32S(config-mpls-qos)#class-map inbound exp 2 priority 2 DXS-3600-32S(config-mpls-qos)#class-map inbound exp 3 priority 3 DXS-3600-32S(config-mpls-qos)#class-map inbound exp 4 priority 4...
Page 384
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 3. Usage Guideline Use the show mpls qos policy command to display the MPLS QoS policy settings. Example This example shows how to display all MPLS QoS settings. DXS-3600-32S#show mpls qos MPLS QoS Policy: policy1, Trust EXP Inbound Mapping...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Network Connectivity Test Commands 39-1 ping This command is used to test the connectivity of a network. ping [vrf <string 1-12>] {[ip] ip-address | host-name} [ntimes times] [timeout seconds] [source source] Parameters vrf <string 1-12>...
Page 386
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default The default probe number is 1, timeout is 5 seconds and maximum TTL is 30. Command Mode Privileged Mode. Command Default Level Level: 1 Usage Guideline This command is used to trace the routed path between the switch and a destination end station.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Open Shortest Path First (OSPF) Version 2 Commands 40-1 area This command is used to create an OSPF area. To remove an area, use the no form of this command. area area-id no area area-id Parameters area-id...
Page 388
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Router Configuration Mode. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline Use this command on the area border router (ABR) that is attached to stub area or NSSA area to specify the cost associated with the default summary route generated by the ABR into the area.
Page 389
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Use the area nssa command to simplify administration if you are connecting a central site using OSPF to a remote site that is using a different routing protocol. You can extend OSPF to cover the remote connection by defining the area between the central router and the remote router as a NSSA.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set one area range 192.168.0.0/255.255.0.0 in area 0.0.0.1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router ospf DXS-3600-32S(config-router)#area 0.0.0.1 DXS-3600-32S(config-router)#area 0.0.0.1 range 192.168.0.0 255.255.0.0 DXS-3600-32S(config-router)# 40-5 area stub This command is used to assign an area as a stub area. Use the no command to remove the stub related settings associated with the area.
Page 391
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters area-id Specifies the identifier of the area to establish the virtual link. router-id Specifies the Router ID of the virtual link neighbor. authentication (Optional) Specifies authentication type. If the authentication type is not specified for the virtual-link, the simple password authentication type for the area will be used.
Page 392
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 40-7 clear ip ospf process This command is used to restart the OSPF process. clear ip ospf process [vrf vrf-name] Parameters vrf vrf-name (Optional) Specifies to restart OSPF VRF instance. Default None.
Page 393
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable the default-information originate function and set the metric to 10. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router ospf DXS-3600-32S(config-router)#default-information originate metric 10 DXS-3600-32S(config-router)#default-information originate always DXS-3600-32S(config-router)# 40-9 default-metric This command is used to set the default metric value of OSPF redistributed routes.
Page 394
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide external-1 value (Optional) Specifies the route preference for type-1 routes from other routing domains. The value range is 1 to 999. external-2 value (Optional) Specifies the route preference for type-2 routes from other routing domains.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the distribute list in on the System interface. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router ospf DXS-3600-32S(config-router)#distribute-list 3 in System DXS-3600-32S(config-router)# 40-12 ip ospf authentication This command is used to configure the authentication type for an OSPF interface. Use the no command to restore to default value.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to remove the authentication on System interface (VLAN DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface vlan 1 DXS-3600-32S(config-if)#no ip ospf authentication DXS-3600-32S(config-if)# 40-13 ip ospf authentication-key This command is used to configure the plain text authentication key for an OSPF interface. Use the no command to delete the plain text authentication key.
Page 397
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default The default value is 1 Command Mode Interface Configuration Mode. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline The interface cost reflects the overhead for sending the packet across the interface. This cost is advertised as the link cost in the router link advertisement.
Page 398
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide ip ospf hello-interval seconds no ip ospf hello-interval Parameters seconds Specifies the interval in seconds. The value range is 1 to 65535. Default The default interval is 10 seconds. Command Mode Interface Configuration Mode.
Page 399
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The authentication for OSPF messages can be either operated in password mode or MD5 digest mode. This command defines the message digest key used by the MD5 digest mode. In MD5 digest mode, the OSPF message sender will compute a message digest based on the message digest key for the TX message.
Page 400
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the priority of the System interface (VLAN 1) to 50. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface vlan 1 DXS-3600-32S(config-if)#ip ospf priority 50 DXS-3600-32S(config-if)# 40-19 network area This command is used to enable OSPF routing with a specified Area ID on interfaces with IP addresses that match or belong to the specified network address.
Page 401
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters default Specifies all the interfaces as passive interfaces. interface ipif_name Specifies the interface with this name as passive interface. Default By default, no interface is configured as passive interface. Command Mode Router Configuration Mode.
Page 402
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By default route redistribution is disabled. By default metric-type is 2. By default no route map is used. Command Mode Router Configuration Mode. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline External Routes can be redistributed to normal area as type 5 external routes, and redistributed to NSSA stub area as type 7 external routes by ASBR.
Page 403
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to enter router configuration mode to configure parameters needed by OSPF. If vrf is not specified,the global OSPF instance will be enabled. If vrf is specified, a new OSPF VRF instance will be created and enter router configuration mode and in such condition, all settings are applied to the OSPF VRF instance.
Page 404
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to restore the router-id to auto-select. DXS-3600-32S#configure terminal DXS-3600-32S(config)#router ospf DXS-3600-32S(config-router)#no router-id DXS-3600-32S(config-router)# 40-24 show ip ospf This command is used to Use this command to show general information about OSPF. show ip ospf [vrf vrf-name] Parameters vrf vrf-name...
Page 405
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to check OSPF settings. DXS-3600-32S#show ip ospf OSPF Router ID : 10.90.90.90 State : Disabled Default Information Originate: State : Enabled Always : On Metric : 10 OSPF Interface Settings Interface IP Address...
Page 406
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Stub Import Summary LSA Whether to prohibit summary routes advertised into the area. It is only for stub or NSSA area. It is specified with the command area stub or area nssa. Stub Default Cost The cost for the default summary route used for a stub or NSSA area.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example show how to check the OSPF settings in the VRF VPN-A. DXS-3600-32S#show ip ospf vrf VPN-A OSPF On VRF : VPN-A Router ID : 100.1.1.1 (Auto selected) State : Enabled Default Information Originate: State...
Page 408
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to show OSPF areas information. When the area ID is specified, the detail information about this area will be displayed. Example This example shows how to check OSPF area settings. DXS-3600-32S#show ip ospf area OSPF Area Settings Area ID...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 40-26 show ip ospf database This command is used to display a database summary for OSPF information. show ip ospf [vrf vrf-name] [area-id] database [{asbr-summary | external | network | router | summary | nssa- external | stub}] [{adv-device router-id | self-originate}] Parameters vrf vrf-name...
Page 410
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows detailed information of LSAs in area 0.0.0.0. DXS-3600-32S#show ip ospf 0.0.0.0 database Area ID: 0.0.0.0 LS Type: Router Link Link State ID: 1.1.1.1/0 Advertising Router: 1.1.1.1 Link State Age: 1462 Checksum: 0x68BA LS Sequence Number: 0x8000000E Area ID: 0.0.0.0...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 40-27 show ip ospf interface This command is used to display interface information for OSPF. show ip ospf interface [ipif_name] [vrf vrf-name] Parameters ipif_name (Optional) Specifies the interface name to display the OSPF information. vrf vrf-name (Optional) Specifies to show interface information about the OSPF VRF instance.
Page 412
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description DR State Interface state machine. It may be DR, BDR, OTHER, WAIT or DOWN. DR Address The IP address of the Designated Router. Backup DR Address The IP address of the Backup Designated Router. Hello Interval The interval between hello packets.
Page 413
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows detailed information about neighbor with IP 10.1.1.2. DXS-3600-32S#show ip ospf neighbor 2.2.2.2 Neighbor ID: 2.2.2.2 IP Address: 10.1.1.2 Neighbor Options: 2 Neighbor Priority: 1 Neighbor State: Full State Changes: 6 times DXS-3600-32S# Display Parameters...
Page 414
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Hello Interval The interval between hello packets. It is specified with the command area virtual- link. Dead Interval The interval during which at least one hello packet form a virtual neighbor must be received before it is declared dead.
Page 415
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 40-31 debug ip ospf This command is used to turn on OSPF debug function. Use the no form of this command to turn off OSPF debug function. debug ip ospf no debug ip ospf Parameters None.
Page 416
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By default, the OSPF interface state debug switch is turned off. Command Mode Privileged EXEC Mode. Command Default Level Level: 15. (EI Mode Only Command) Usage Guideline Use this command to turn on or turn off OSPF interface state debug switch. When OSPF interface state changes or some events happen to change interface state, debug information will print.
Page 417
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By default, the OSPF LSA flooding debug switch is turned off. Command Mode Privileged EXEC Mode. Command Default Level Level: 15. (EI Mode Only Command) Usage Guideline Use this command to turn on or turn off OSPF LSA flooding debug switch. When LSA is received, added into local database or flooded to neighboring router, the debug information will be print if OSPF debug function is turned on.
Page 418
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 15. (EI Mode Only Command) Usage Guideline Use this command to turn on or turn off OSPF packet transmitting debug switch. When one OSPF protocol packet is sent out, the debug information will be print if OSPF debug function is turned on.
Page 419
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to turn on or turn off OSPF timer debug switch. When the event related to OSPF timer happens, the debug information will be print if OSPF debug function is turned on.
Page 420
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to turn on or turn off OSPF route debug switch. When one OSPF route is added, updated or deleted, the debug information will be print if OSPF debug function is turned on.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 15. (EI Mode Only Command) Usage Guideline Use this command to check statistic information about the OSPF packet, neighbor and SPF calculation. Example This example displays all OSPF statistic counters. DXS-3600-32S#debug ip ospf show counter OSPF Debug Statistic Counters Packet Receiving:...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 40-45 debug ip ospf show database This command is used to display detailed information about OSPF LSDB. debug ip ospf show database {rt-link | net-link | summary-link | external-link | type7-link} Parameters rt-link Specifies to display information about the rt-link parameter.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide debug ip ospf show request-list Parameters None. Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 15. (EI Mode Only Command) Usage Guideline Use this command to check the information about LSAs OSPF is requesting to neighbors.
Page 424
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 40-48 debug ip ospf show summary-list This command is used to display the current internal OSPF summary list. debug ip ospf show summary-list Parameters None. Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 15.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Password Recovery Commands The first two commands, listed in this chapter, are only available when the user enters the Password Recovery mode. For more information about how to access the Password Recovery mode, see “Appendix A - Password Recovery Procedure”...
Page 426
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to reboot the switch, using the reload command. >reload Save current settings before system restart?(y/n) y Please wait, the switch is rebooting... 41-3 password-recover This command is used to enable the password recover option. The no form of this command is usd to disable this option.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Peripheral Commands 42-1 show system-info This command is used to show system information. show system-info Parameters None. Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 3 Usage Guideline This command shows the system information.
Page 428
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the device status. DXS-3600-32S#show device-status Temperature Log State : Enabled Current Temperature(Celsius) : 20 Power 1 : Active Power 2 : Fail FAN 1 : Speed Middle (10598 RPM) FAN 2 : Speed Middle (10485 RPM) FAN 3...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Port Commands 43-1 interface This command is used to enter the interface configure mode. interface {tenGigabitEthernet <port>} interface range {tenGigabitEthernet <portlist>} Parameters tenGigabitEthernet <port> Specifies that the Ten Gigabit Ethernet is the port type which want to configure, the <port>...
Page 430
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the attributes of the port-interface. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#medium-type copper Only combo port interface can configure medium type. Failure DXS-3600-32S(config-if)#exit DXS-3600-32S(config)#interface range tenGigabitEthernet 1/0/1-1/0/10 DXS-3600-32S(config-if-range)#medium-type copper Only combo port interface can configure medium type.
Page 431
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide shutdown no shutdown Parameters None. Default By default, this option is disabled. Command Mode Port Configuration Mode. Command Default Level Level: 15 Usage Guideline None. Example This example shows how to disable a port. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#shutdown...
Page 432
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide half Specifies that the communication system will be set to half-duplex. auto Specifies that the communication system will be set to auto-negotiation. Default None. Command Mode Port Configuration Mode. Command Default Level Level: 15 Usage Guideline None.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters 64-12288 Specifies to set the Maximum Transmission Unit value. This value must be between 64 and 12288. Default The default MTU value is 1536. Command Mode Port Configuration Mode. Command Default Level Level: 15 Usage Guideline This command is used to specify the Maximum Transmission Unit (MTU) of the port.
Page 434
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide status Specfies the display the interface status. switchport Specifies to display Layer 2 interface information. Default None. Command Mode Global Configuration Mode. Command Default Level Level: 1 Usage Guideline Use this command to show the interface information. Example This example shows how to display interface information of the 10G interface for port DXS-3600-32S#show interface tenGigabitEthernet 1/0/1...
Page 435
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 1 Usage Guideline This command displays the hot swapping expansion module information. Example This example show how to view the hot swapping expansion module information. DXS-3600-32S#show module-info Boot-UP Expansion Module (n) :DXS-3600-EM-4XT Equipped Expansion Module (n)
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Port Security Commands 44-1 switchport port-security This command is used to configure port security and the way to deal with violation of the interface. Use the no form of the command to disable the port security or recover it to the default. switchport port-security [violation {protect | restrict | shutdown}] no switchport port-security [violation] Parameters...
Page 437
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to disable port security on the interface tenGigabitEthernet 1/0/1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#switchport mode access DXS-3600-32S(config-if)#no switchport port-security DXS-3600-32S(config-if)# Example This example shows how to set violation handling to the default mode for interface tenGigabitEthernet 1/0/1.
Page 438
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the aging time and type for the manually configured secure address and automatically learnt addresses on interface tenGigabitEthernet 1/0/1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#switchport port-security aging time 8 DXS-3600-32S(config-if)#switchport port-security aging type absolute DXS-3600-32S(config-if)#switchport port-security aging static...
Page 439
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level 15 for creating configured addresses and sticky addresses and enable sticky learning and level 8 for configuring the maximum. Usage Guideline The first command is used to create secure MAC address, sticky MAC address and set the maximum of addresses in the secure address table.
Page 440
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable sticky learning for interface tenGigabitEthernet 1/ 0/1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#switchport mode trunk DXS-3600-32S(config-if)#switchport port-security DXS-3600-32S(config-if)#switchport port-security mac-address sticky DXS-3600-32S(config-if)# Example This example shows how to configure a sticky secure address 00d0.f800.073c on specified VLAN 3 for interface tenGigabitEthernet 1/0/1.
Page 441
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters Specifies to delete all secure MAC addresses. configured Specifies to delete configured secure MAC addresses. dynamic Specifies to delete secure MAC addresses learned automatically. sticky Specifies to delete sticky secure MAC addresses address <mac-address>...
Page 442
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command shows all the port security configurations, secure addresses and the way to deal with violation if no parameter is configured. When you enter the command without keywords, the output includes the administrative and operational status of all secure ports on the switch.
Page 443
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display all secure MAC addresses in the system. DXS-3600-32S#show port-security address VLAN MAC Address Type Ports Remaining Time (mins) ---- ----------------- ---------- --------- -------------- 00d0.f800.073c Configured GigabitEthernet1/0/1 00d0.f800.3cc9 Dynamic...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Priority-based Flow Control (PFC) Commands 45-1 clear priority-flow-control counters This command is used to clear the Priority-based Flow Control (PFC) counters of specified interface(s). clear priority-flow-control counters [INTERFACE-ID [, | -]] {rx | tx | both} Parameters INTERFACE-ID (Optional) Specifies that the valid interface is a physical interface.
Page 445
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Priority-based Flow Control (PFC), which is defined in the IEEE 802.1Qbb standard, extends the basic IEEE 802.3x PAUSE semantics and uses the IEEE 802.1p CoS values in the IEEE 802.1Q VLAN tag to differentiate up to eight CoSs that can be subject to flow control independently.
Page 446
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display Priority-based flow control of an interface. DXS-3600-32S#show interface priority-flow-control Interface PFC Admin PFC On Oper PFC On Will- Rx PFC Tx PFC Cap. Priorities Priorities Frame(s) Frame(s)
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Protocol Independent Commands 46-1 clear ip route This command is used to remove all or specified static routes from the IP routing table. clear ip route [vrf vrf-name] {* | network [net-mask]} Parameters vrf vrf-name (Optional) Specifies to remove all routes of one VRF.
Page 448
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8 Usage Guideline This command sets the preference of static default routes. Among the different type default routes, the one with the lowest preference will be established as the active route. If that route has been found failed, then this route will be automatically deactivated and the route with the next lower preference will be the active route.
Page 449
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 46-4 ip mtu This command is used to set the Maximum Transmission Unit (MTU) size of IP packets sent on an interface. Use the no form of this command to restore to the default setting. ip mtu bytes no ip mtu Parameters...
Page 450
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By default, dip and crc32_lower is set. Command Mode Global Configuration Mode. Command Default Level Level: 8 Usage Guideline User can use any combination of dip, port, sip, crc32_lower or crc32_upper to build the Hash algorithm.
Page 451
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8 Usage Guideline When the value of network and net-mask are both 0.0.0.0, it means to create a static default route. Use the command with keyword primary or backup means the newly created route is a floating static route.
Page 452
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 46-7 show ip route-preference This command is used to display the preference of different route types. show ip route-preference [vrf vrf-name] [{connected | static | default | rip | ospf | ospfIntra | ospfInter | ospfExt1 | ospfExt2 | ebgp | ibgp}] Parameters vrf vrf-name...
Page 453
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to check the route preference of OSPF route. DXS-3600-32S#show ip route-preference ospf Route Preference Settings Protocol Preference ---------- ---------- OSPF Intra OSPF Inter OSPF ExtT1 OSPF ExtT2 DXS-3600-32S# Example This example shows how to check the route preference of RIP route.
Page 454
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide show ip ecmp load-balance Parameters None. Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 3 Usage Guideline Use this command to check the load-balancing algorithm settings. Example This example shows how to check the load-balancing algorithm settings. DXS-3600-32S#show ip ecmp load-balance ECMP Load Balance Algorithm : Destination IP : used.
Page 455
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to check the IP routing table. DXS-3600-32S#show ip route Routing Table IP Address/Netmask Gateway Interface Cost Protocol ------------------ --------------- ------------ -------- -------- 20.1.1.0/24 10.1.1.9 vlan1 Static 30.1.1.0/24 10.1.1.9 vlan1...
Page 456
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to check the VRF VPN-A’s IP routing table. DXS-3600-32S#show ip route Routing Table ( VRF: VPN-A ) IP Address/Netmask Gateway Interface Cost Protocol ------------------ --------------- ------------ -------- -------- 100.1.1.0/24...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Protocol Independent Multicast (PIM) Commands 47-1 ip pim This command is used to enable Protocol Independent Multicast (PIM) on an interface. To disable PIM on the interface, use the no form of this command. ip pim {dense-mode | sparse-mode | sparse-dense-mode} no ip pim Parameters...
Page 458
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Interface Configuration Mode. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline The change of hello interval would lead to the change of hello hold time. The principle of the updating hold time is configured hello interval * 3.5.
Page 459
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the PIM join/prune interval to 1000 seconds. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip pim join-prune-interval 1000 DXS-3600-32S(config)# Example This example shows how to configure the PIM join/prune interval back to default. DXS-3600-32S#configure terminal DXS-3600-32S(config)#no ip pim join-prune-interval DXS-3600-32S(config)#...
Page 460
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no ip pim register-suppression Parameters SECONDS Specifies the value of the register suppression time. The range of this value is 11- 255 seconds. Default 60 seconds. Command Mode Global Configuration Mode. Command Default Level Level: 8.
Page 461
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to configure the static RP. If no ACL is configured in this command, it means this static RP support all the multicast groups 224.0.0.0/4. To disable this configuration, use no ip pim rp-address RP-ADDRESS.
Page 462
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Specifies the Prefix Count value of the wildcard address (224.0.0.0/24) to be set to 0 in PIM C-RP-Adv message. Specifies that the wildcard prefix count value will be set to 1 in PIM C-RP-Adv message.
Page 463
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 47-8 ip pim spt-threshold This command is used to configure the condition to switchover to the source tree. To restore the default setting, use no form of this command. ip pim spt-threshold {0 | infinity} no ip pim spt-threshold Parameters Specifies to establish the source tree right at the arrival of the first packet.
Page 464
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline When the DR receives multicast stream, it will send register message to the RP of the group. And when the RP receives this message, it would set up a timer for this (S, G) entry.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the PIM candidate BSR priority to be 10 and hash mask length to be 32. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip pim bsr-candidate vlan2 hash-mask-length 32 priority 10 DXS-3600-32S(config)# Example This example shows how to disable the function of BSR in ‘vlan2’.
Page 466
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide ip pim ssm {default | range ACCESS-LIST} no ip pim ssm Parameters ACCESS-LIST Specifies a standard IP access list that defines the user-specified SSM group addresses. default Specifies to use the default SSM group addresses. The default SSM group address range is 232/8.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command displays PIM-DM configuration information. Example This example shows how to display the information of all PIM-DM interfaces. DXS-3600-32S#show ip pim dense-mode interface IP Address Interface Mode state Nbr count ---------------- ------------ ----- -------- ---------- 10.90.90.90...
Page 468
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example displays all the interface’s neighbor information. DXS-3600-32S#show ip pim neighbor Neighbor Address Interface Uptime Expires Mode ---------------- ------------ ---------- ---------- ----- 10.2.0.2 vlan1 00:00:32 00:01:26 Total Entries: 1 DXS-3600-32S# Display Parameters Description...
Page 469
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description BSR Priority Priority as configured in the ip pim bsr-candidate command. Role The role of our CBSR. Priority Priority of our CBSR. Hash mask length Length of a mask (32 bits maximum) that is to be ANDed with the group address before the hash function is called.
Page 470
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows detailed information about the PIM interface ‘vlan1’. DXS-3600-32S#show ip pim sparse-mode interface vlan1 detail Interface Name: vlan1 Address 10.90.90.90, DR 10.90.90.90 My DR priority is: 1 Hello period 30 seconds, Next hello in 7 seconds Join/Prune interval 60 seconds Neighbors: 10.2.0.2...
Page 471
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example displays PIM-SM RP mapping information. DXS-3600-32S#show ip pim sparse-mode rp mapping Group(s): 229.1.3.0/28 RP: 10.2.0.2 via bootstrap, priority 192, RP hold time: 150 Uptime: 00:17:37, expires: 00:01:52 Group(s): 229.1.5.16/28 RP: 10.90.90.90 via bootstrap, priority 192, RP hold time: 150 Uptime: 00:16:54, expires: 00:01:36...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows PIM-SM RP information for 229.1.3.1. DXS-3600-32S#show ip pim sparse-mode rp-hash 229.1.3.1 RP: 10.2.0.2, via bootstrap Uptime 00:36:46, expires in 00:01:44 DXS-3600-32S# Example This example shows PIM-SM RP information for 239.0.0.0. DXS-3600-32S#show ip pim sparse-mode rp-hash 239.0.0.0 RP: 10.90.90.90, static DXS-3600-32S#...
Page 473
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Register Suppression Time Value in seconds. To configure this value, use command ip pim register- suppression. SPT Threshold Specify whether the switch forwarding in SPT, use command ip pim spt-threshold to change the value.
Page 474
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example Following debug trace message will be output when Switch receives IGMPv3 report with Group Record Type MODE_IS_EXCLUDE referring to SSM group “232.0.0.0” from source IP “12.34.3.3” on interface “vlan1” PIM_SSM, 20 Dec 2010 10:52:11 IGMP Group Record Type 2 for group 232.0.0.0 from 12.34.3.3 on vlan1, ignored.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Quality of Service (QoS) Commands 48-1 class This command is used to specify a class map to be associated with a traffic policy and then enter into policy-map class configuration mode. Use the no form of this command to remove the specified class from the policy map. class class-map-name no class class-map-name Parameters...
Page 476
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Global Configuration Mode. Command Default Level Level: 15 Usage Guideline The global configuration command class-map use to specify the name of the class map that user want to create or modify class-map match criteria. The class-map command and its subcommands are used to define packet classification.
Page 477
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 48-4 mls qos cos This command is used to define the default class of service (CoS) value of a port. Use the no form of this command to return to the default setting. mls qos cos default-cos no mls qos cos Parameters...
Page 478
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The DSCP to CoS map is used by a DSCP trust port to map a DSCP value to an CoS value. This CoS value is then mapped to CoS queue based on the CoS to queue map configured by the priority-queue cos-map command.
Page 479
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters Specifies that the CoS field of the arriving packets are trusted for subsequent QoS operations. For an untagged packet, the default CoS value of the port is used. dscp Specifies that the DSCP field of the arriving packets is trusted for subsequent operations.
Page 480
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide action Specifies the action to take on packets describe following: drop: Drops packet. set-dscp-transmit new-dscp: Sets the IP differentiated services code points(DSCP) value and transmits the packet with the new DSCP value setting.
Page 481
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to define a traffic class (using the class-map command) and associate the policy with the match criteria for the traffic class in a policy map (using the policy-map command). The service-policy command is then used to attach this service policy to the interface.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Policy-map Class Configuration Mode. Command Default Level Level: 15 Usage Guideline Use the police tr-tcm cir command to drop a packet or mark a packet with different quality of service (QoS) values based on conformance to the service-level agreement.
Page 483
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide exceed-action (Optional) Specifies the action for the packets that exceeded the rate. The default action is ‘drop’. drop Specifies to drop the packets exceeding the average rate. dscp dscp-value Specifies to overwrite the DSCP value of the packets exceeding the average rate. Default None.
Page 484
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The global configuration command policy-map is used to specify the name of the policy map that user want to create or modify policy-map information and enter policy map configuration mode. In the policy map configuration mode, the user can use the following command to attach or detach class map to/from the policy map: class: Attach a exist class map that defined classification criteria to the policy...
Page 486
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the queue bandwidth. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/3 DXS-3600-32S(config-if)#queue 1 bandwidth 100 2000 DXS-3600-32S(config-if)# 48-14 rate-limit This command is used to configure the rate limitation on the interface. Use the no form of the command to restore it to the default setting.
Page 487
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The service-policy command is used to attach a single policy map to interface. This policy is attached to the interface. A packet arriving at an interface will be treated based on the service policy attached to the interface.
Page 488
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 48-17 show class-map This command is used to display the quality of service (QoS) class maps, which define the match criteria to classify traffic. show class-map [class-map-name] Parameters class-map-name Specifies the name of the class for the class map. The name can be a maximum of 32 alphanumeric characters.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output from the show mls qos interface command. DXS-3600-32S#show mls qos interface tenGigabitEthernet 1/0/1 Interface: TenGigabitEthernet1/0/1 Trust Mode: trust DSCP Default COS: 0, Effective 0 Attached input policy-map: policy1 Attached output policy-map: policy2 DXS-3600-32S# 48-19 show mls qos maps...
Page 490
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters INTERFACE-ID [,|-] Specifies the interface ID for which the QoS configure information will be displayed. You can specify multiple interface IDs, which are separated by commas (,) or hyphens (-). No space is before or after the commas or hyphens. Parameters None.
Page 491
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 48-21 show mls qos rate-limit This command is used to show the information about the rate limit on the interface. show mls qos rate-limit [interface INTERFACE-ID [,|-]] Parameters interface INTERFACE-ID (Optional) Specifies the interface ID you want to display. [,|-] Default None.
Page 492
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to display the information for the queue scheduling algorithm. The show mls qos queueing command can also be used to display its weight value. Example This example shows how to display the information for queue scheduling. DXS-3600-32S#show mls qos scheduler interface tenGigabitEthernet 1/0/1 Interface: TGi1/0/1 Multi-Layer Switching scheduling:...
Page 493
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 48-24 wdrr-queue bandwidth This command is used to set the queue weight in the WDRR scheduling mode. To restore to the default setting, use the no form of this command. wdrr-queue bandwidth weight1...weight8 no wdrr-queue bandwidth Parameters weight1...weight8...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Quantized Congestion Notification (QCN) Commands 49-1 clear qcn counters This command is used to clear QCN counters. clear qcn counters {all | interface INTERFACE-ID [, | -] Parameters Specifies to clears QCN counters on all interfaces. interface INTERFACE-ID [, Specifies the interface to clear QCN counters.
Page 496
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 49-3 qcn cnm-transmit-priority This command is used to configure the IEEE 802.1p priority for transmitting Congestion Notification Messages (CNMs). Use the no form of this command to reset to the default setting. qcn cnm-transmit-priority PRIORITY-VALUE no qcn cnm-transmit-priority Parameters...
Page 497
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide defense-mode-choice (Optional) Specifies how to choose CND defense mode and alternate priority for this {admin | auto} Congestion Notification Priority Value on all ports. This setting can be overridden by defense-mode-choice of per-interface. admin: The default CND defense mode and alternate priority are specified by administrator.
Page 498
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters CNPV-PRIORITY-VALUE Specifies the IEEE 802.1p priority value to be the Congestion Notification Priority Value (CNPV). The valid priority range of CNPV is 0 to 7. admin-defense-mode (Optional) Specifies the CND defense mode for this CNPV on the interface. {disable | interior | disable: The congestion notification capability is administratively disabled for this interior-ready | edge}...
Page 499
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 49-6 qcn cp This command is used to configure the settings of Congestion Point (CP). qcn cp CP-INDEX [set-point QSP-VALUE | weight WEIGHT-VALUE | sample-base SAMPLE-BASE-VALUE | min-header-octets MIN-HEADER-VALUE] Parameters CP-INDEX Specifies the Congestion Point (CP) Index to be configured.
Page 500
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The command is available for physical port configuration. The Congestion Point (CP) Index is decided by IEEE 802.1p priority remapping procedure. Each priority transforms to the traffic class after priority remapping. The transformed traffic class is the Congestion Point (CP) Index.
Page 501
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the QCN CNPV settings. DXS-3600-32S#show qcn cnpv Dot1p Defense Admin Defense Alternate CP Priority Mode Choice Mode Priority Creation -------- ----------- -------------- --------- ----------- admin interior enable...
Page 502
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the QCN configuration on all interfaces for CNPV 1. DXS-3600-32S#show qcn cnpv 1 interface CNPV : 1 Intf. Defense Admin Auto Alt. Defense Mode Alt.
Page 503
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Specifies to display CP information for all interfaces. interface INTERFACE-ID [, Specifies the interface to show QCN CP information. Valid interfaces are physical | -] interfaces. You can specify multiple interfaces, which are separated by “,” or “–“. No space before and after the comma or hyphen.
Page 504
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode EXEC Mode. Command Default Level Level: 3. Usage Guideline Use this command to display the corresponding interface ID and CP index for the specified CP Identifier. Example This example shows how to display the interface ID and CP index for CP Identifier, 0011223344550101.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide RADIUS Commands 50-1 radius-server host This command is used to specify a RADIUS security server host. The no form of this command without parameter is used to delete the RADIUS server host. The no form of this command with the parameters is used to restore the specified parameter to default value.
Page 506
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters text-string Specifies the text of the shared password. The maximum length of the key is 32. Default No shared password is specified. Command Mode Global Configuration Mode. Command Default Level Level: 15 Usage Guideline A shared password is the basis for communications between the device and the...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters seconds Specifies the timeout value in the range of 1 to 1000 seconds. Default 5 seconds. Command Mode Global Configuration Mode. Command Default Level Level: 15 Usage Guideline Use this command to change the timeout of packet retransmission. Example This example shows how to set the timeout to 10 seconds.
Page 508
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Access Accepts The number of RADIUS Access-Accept packets (valid or invalid) received from this server. Access Rejects The number of RADIUS Access-Reject packets (valid or invalid) received from this server.
Page 509
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the output for the show RADIUS authentication & accounting server hosts command. DXS-3600-32S#show radius-server configuration IP-Address Auth-Port Acct-Port Key Retransmit Timeout ----------------------------------------------------------------------------- 192.168.12.1 1812 1813 Default Key:aaa Default Retransmit:4 Default Timeout:10 1 RADIUS server(s) in total...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Remote Network MONitoring (RMON) Commands 51-1 rmon collection stats This command is used to add a statistic entry. Use the no form of this command to remove a statistic entry. rmon collection stats index [owner ownername] no rmon collection stats index Parameters index...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Interface Configuration Mode. Command Default Level Level: 12 Usage Guideline At the present, this switch supports only the records of Ethernet. Add an RMON history statistic for the specified interface on the switch. Example This example shows how to add a history entry.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to remove an alarm entry. DXS-3600-32S#configure terminal DXS-3600-32S(config)#no rmon alarm 100 DXS-3600-32S(config)# 51-4 rmon event This command is used to add an event entry. Use the no form of this command to remove an event entry. rmon event number [log] [trap community] [description description-string] no rmon event number Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Statistics is the first group in RMON. It measures the basic statistics information of each monitored subnet. At present, only the Ethernet interfaces of network devices can be monitored and measured. This group contains a statistics of Ethernet, including the discarded packets, broadcast packets, CRC errors, size block, conflicts, etc.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 51-8 show rmon event This command is used to display event information. show rmon event Parameters None. Default None. Command Mode Privileged EXEC Mode. Command Default Level Level: 3 Usage Guideline Event is the ninth group in RMON.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Routing Information Protocol (RIP) Commands 52-1 route-preference This command is used to configure the route preference for the Routing Information Protocol (RIP) routes. Use the no form of this command to restore to the default value. route-preference value no route-preference Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide ipif_name Specifies the interface name on which the access list should be applied to incoming updates. Default By default, no distribute-list in is configured. Command Mode Router Configuration Mode. Router Address Family Configuration Mode. Command Default Level Level: 8.
Page 518
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 52-4 ip rip authentication text-password This command is used to configure the plaintext password for RIP simple password authentication. Use the no form of this command to remove the plaintext password. ip rip authentication text-password password-string no ip rip authentication text-password Parameters...
Page 519
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use the no form of this command to prevent from receiving RIP packets on the interface, the RIP protocol should not receive the packets coming from the interface. On one interface whose sending packets is disabled or Version 1, disabling receiving packets will cause the configuration of authentication on this interface to be cleared and can’t be restored when enable interface receiving packets again.
Page 520
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the interface ‘vlan1’ to receive both RIP version 1 and version 2 packets. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface vlan 1 DXS-3600-32S(config-if)#ip rip receive version 1 2 DXS-3600-32S(config-if)# 52-7 ip rip send enable This command is used to send RIP packets on a RIP interface.
Page 521
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Interface Configuration Mode. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline Use this command to override the default behavior of RIP as specified by the version command.
Page 522
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 52-10 network This command is used to enable RIP on one interface. Use the no form of this command to restore to the default setting. network network-number no network Parameters network-number Specifies the IP address of the network of directly connected networks.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By default, no route redistribution to RIP is configured. The default value of the metric is 0. By default, no route map is configured. Command Mode Router Configuration Mode. Router Address Family Configuration Mode. Command Default Level Level: 8.
Page 524
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no router rip Parameters None. Default By default, RIP is disabled. Command Mode Global Configuration Mode. Command Default Level Level: 8. (EI Mode Only Command) Usage Guideline This command is used to enable the RIP and enter the Router configuration mode of RIP protocol.
Page 525
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display RIP information. DXS-3600-32S#show ip rip RIP Global State : Enabled Update Time : 30 seconds Timeout Time : 180 seconds Garbage Collection Time : 120 seconds RIP Interface Settings Interface IP Address...
Page 526
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Timeout Time Interval of time (in seconds) after which a route is declared invalid. It is specified with the timers basic command. Garbage Collection Time Amount of time (in seconds) that must pass before the route is removed from the garbage list.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to check the settings of all RIP interfaces. DXS-3600-32S#show ip rip interface RIP Interface Settings Interface Name: vlan1 IP Address: 10.90.90.90/8 (Link Up) Interface Metric: 1 Administrative State: Enabled TX Mode: V1 Broadcast RX Mode: V1 or V2...
Page 528
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide timer basic update timeout garbage_collection no timer basic Parameters update Specifies the rate (in seconds) at which updates are sent. The value range is 5 to 65535. timeout Specifies the interval of time (in seconds) after which a route is declared invalid. A route becomes invalid when there is an absence of updates that refresh the route.
Page 529
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters Specifies RIP Version 1. Specifies RIP Version 2. Default By default RIPv1 packets are sent out and both RIPv1 and RIPv2 packets are received. Command Mode Router Configuration Mode. Router Address Family Configuration Mode. Command Default Level Level: 8.
Page 530
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to create a new RIP instance in VRF VPN-A. DXS-3600-32S#configure terminal DXS-3600-32S(config)# router rip DXS-3600-32S(config-router)# address-family ipv4 vrf VPN-A DXS-3600-32S(config-router-af)# 52-18 exit address-family This command is used to exit the address family configuration mode. exit address-family Parameters None.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Route Map Commands 53-1 route-map This command is used to create or configure a route map or enter route map configuration mode. Use the no form of this command to delete a route map or remove a clause of route map. route-map MAP-NAME [permit | deny] [SEQUENCE-NUM] no route-map MAP-NAME [permit | deny] [SEQUENCE-NUM] Parameters...
Page 532
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 53-2 match as-path This command is used to add a match command to match a BGP autonomous system (AS) path access list. Use the no form of this command to delete the match command with BGP autonomous system path access list. match as-path ACCESS-LIST-NAME no match as-path Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to add a match command to match a BGP community list. DXS-3600-32S(config)#ip community-list standard A-COMMUNITY permit 101:1 DXS-3600-32S(config)#route-map rmap1 permit 10 DXS-3600-32S(config-route-map)#match community A-COMMUNITY exact DXS-3600-32S(config-route-map)# 53-4 match extcommunity This command is used to add a match command to match a Border Gateway Protocol (BGP) extended community (extcommunity) list.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Only one interface is supported. If this command is executed with a different interface, the old one will be overwritten. You can verify your settings by entering the show route-map command. Example This example shows how to add a match command to match a outgoing interface of routes.
Page 535
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide match ip next-hop {ACCESS-LIST-NAME | prefix-list PREFIX-LIST-NAME} no match ip next-hop {ACCESS-LIST-NAME | prefix-list PREFIX-LIST-NAME} Parameters ACCESS-LIST-NAME Specifies the name of a standard IP access list. The maximum length is 16 characters.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to add a match command to match source router IP address of routes using standard IP access list. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip standard access-list LocalServer DXS-3600-32S(config-ip-acl)#permit 172.19.10.1/32 DXS-3600-32S(config-ip-acl)#exit DXS-3600-32S(config)#route-map rmap1 permit 10 DXS-3600-32S(config-route-map)#match ip route-source LocalServer...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline All types of routes, internal, external, type-1 and type-2, are only for OSPF. You can verify your settings by entering the show route-map command. Example This example shows how to add a match command to match the metric of routes. DXS-3600-32S#configure terminal DXS-3600-32S(config)#route-map rmap1 permit 10 DXS-3600-32S(config-route-map)#match route-type internal...
Page 538
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no-export (Optional) Specifies routes not to be advertised outside of autonomous system boundary. additive (Optional) Specifies to add the community to the existed communities. Default None. Command Mode Route Map Configuration Mode. Command Default Level Level: 8.
Page 539
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to add a set command to modify the dampening parameters of route 120.1.1.0/24. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip standard access-list Strict-Control DXS-3600-32S(config-ip-acl)#permit 120.1.1.0/24 DXS-3600-32S(config-ip-acl)#exit DXS-3600-32S(config)#route-map rmap1 permit 10 DXS-3600-32S(config-route-map)#match ip address Strict-Control DXS-3600-32S(config-route-map)#set dampening 14 500 900 60 15 DXS-3600-32S(config-route-map)#...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters NUMBER Specifies the value of local preference. The range is 0 to 4294967295. Default The default value of local preference is 100. Command Mode Route Map Configuration Mode. Command Default Level Level: 8 Usage Guideline Use this command to modify the local preference attribute of route when match...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to add a set command to modify the metric of routes. DXS-3600-32S#configure terminal DXS-3600-32S(config)#route-map mapmetric permit 10 DXS-3600-32S(config-route-map)#set metric 100 DXS-3600-32S(config-route-map)# 53-17 set metric-type This command is used to add a set command to modify the metric type of routes. Use the no form of this command to delete this set command.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to modify the BGP origin code route attribute. The origin code (ORIGIN) is a well-known mandatory attribute that indicates the origin of the prefix or, rather, the way in which the prefix was injected into BGP. There are three origin codes, listed in order of preference: IGP, meaning the prefix was originated from information learned from an interior gateway protocol.
Page 543
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters MAP-NAME (Optional) Specifies to display information about specified route map. The maximum length is 16 characters. Default None. Command Mode Privileged Mode. Command Default Level Level: 3 Usage Guideline Use this command to check the settings of route map, including permit or deny clauses and match or set commands.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Secure Shell (SSH) Commands 54-1 ip ssh time-out This command is used to specify the time interval that the switch waits for the SSH client to respond. Use the no form of this command to reset the time interval that the switch waits for the SSH client to respond.
Page 545
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to specify the number of SSH authentication retry times to DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip ssh authentication-retries 5 DXS-3600-32S(config)# 54-3 ip ssh port This command is used to specify the TCP port number on which SSH server listens. Use the no form of this command to reset the TCP port number to the default value 22.
Page 546
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to enable the SSH server globally on the switch. DXS-3600-32S#configure terminal DXS-3600-32S(config)#ip ssh server enable DXS-3600-32S(config)# 2011-12-23 07:22:12 INFO(6) SSH server is enabled DXS-3600-32S(config)# 54-5 show ip ssh server This command is used to show the version and configuration information of the SSH server.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Simple Network Management Protocol (SNMP) Commands 55-1 snmp-server This command is used to enable the Simple Network Management Protocol (SNMP) agent. To stop and shield the SNMP agent, use the no form of this command. snmp-server no snmp-server Parameters...
Page 548
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 55-3 snmp-server name This command is used to configure the system name information in global configuration mode. Use the no form of this command to remove the configuration of system name information. snmp-server name TEXT no snmp-server name Parameters...
Page 549
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set system contact information to default value. DXS-3600-32S#configure terminal DXS-3600-32S(config)#no snmp-server contact DXS-3600-32S(config)# 55-5 snmp-server location This command is used to configure the system location information in global configuration mode. Use the no form of this command to remove the configuration of system location information.
Page 550
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide included (Optional) Specifies to configure the OID (and subtree OIDs) specified in OID-TREE argument to be included in the SNMP view. excluded (Optional) Specifies to configure the OID (and subtree OIDs) specified in OID-TREE argument to be explicitly excluded from the SNMP view.
Page 551
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Specifies that SNMPv3 should be used for the group. SMNPv3 is the most secure of the supported security models, as it allows you to explicitly configure the authentication characteristics. auth Specifies authentication of a packet without encrypting it. noauth Specifies no authentication of a packet.
Page 552
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 55-8 snmp-server user This command is used to configure a new user to a Simple Network Management Protocol (SNMP) group. Use the no form of this command to remove a user from an SNMP group. snmp-server user USER-NAME GROUP-NAME {v1 | v2c | v3 [encrypted] [auth {md5 | sha} AUTH- PASSWORD] [priv des56 PRIV-PASSWORD]} no snmp-server user USER-NAME...
Page 553
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 55-9 snmp-server community This command is used to set up the community access string to permit access to the SNMP. Use the no command to remove the specified community string, snmp-server community COMMUNITY-STRING view VIEW-NAME {ro | rw} no snmp-server community COMMUNITY-STRING Parameters COMMUNITY-STRING...
Page 554
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no snmp-server enable traps Parameters None. Default Sending SNMP traps is enabled. Command Mode Global Configuration Mode. Command Default Level Level: 12 Usage Guideline SNMP notifications can be sent as traps or inform requests. This command enables both traps and informs requests for the specified notification types.
Page 555
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default No host entry exists. Command Mode Global Configuration Mode. Command Default Level Level: 12 Usage Guideline SNMP notifications are sent as trap packets. If you do not enter an snmp-server host command, no notifications are sent.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Privileged EXEC Mode. Command Default Level Level: 3 Usage Guideline Used this command can view the SNMP community configured on the current SNMP agent. Example This example shows how to display the SNMP community information. DXS-3600-32S#show snmp community Community Name: private Community Index: private...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Used this command can view the SNMP groups configured on the current SNMP agent. Example This example shows how to display the SNMP group information. DXS-3600-32S#show snmp group GroupName: public SecurityModel: v1 SecurityLevel: NoAuthNoPriv ReadView: CommunityView...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the SNMP view information. DXS-3600-32S#show snmp view restricted(Include) 1.3.6.1.2.1.1 restricted(Include) 1.3.6.1.2.1.11 restricted(Include) 1.3.6.1.6.3.10.2.1 restricted(Include) 1.3.6.1.6.3.11.2.1 restricted(Include) 1.3.6.1.6.3.15.1.1 CommunityView(Include) 1 CommunityView(Exclude) 1.3.6.1.6.3 CommunityView(Include) 1.3.6.1.6.3.1 DXS-3600-32S# 55-16 show snmp host This command is used to display information about the configured characteristics of SNMP host.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Simple Network Time Protocol (SNTP) and Clock Com- mands 56-1 sntp enable This command is used to enable the SNTP function. Use the no form of this command to restore the default value. sntp enable no sntp enable Parameters...
Page 560
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to remove the NTP server. DXS-3600-32S#configure terminal DXS-3600-32S(config)#no sntp server 172.21.118.9 DXS-3600-32S(config)# 56-3 sntp interval This command is used to set the interval for the SNTP Client to synchronize its clock with the NTP Server. sntp interval SECONDS no sntp interval Parameters...
Page 561
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to check the SNTP information. DXS-3600-32S#show sntp SNTP Status : Enabled SNTP poll interval : 720 sec SNTP Server Status: Stratum Version Last Receive SNTP server ------- ------- --------------- ------------------------------------ 00:00:12 Synced 10.0.0.2 ------- ------- --------------- ------------------------------------...
Page 562
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 56-6 clock timezone This command is used to set the time zone for display purposes. To set the time to Coordinated Universal Time (UTC), use the no form of this command. clock timezone HOURS-OFFSET [MINUTES-OFFSET] no clock timezone Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8 Usage Guideline In both the date and repeating forms of the command, the first part of the command specifies when summer time begins, and the second part specifies when it ends. All times are relative to the local time zone.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Spanning Tree Protocol (STP) Commands 57-1 spanning-tree (global configuration) This command is used to enable the STP mode. Use no form to disable STP. spanning-tree no spanning-tree Parameters None. Default By default, this option is disabled. Command Mode Global Configuration Mode.
Page 566
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters hello-time SECONDS Specifies the time interval to send one BPDU at the Designated Port. The default setting is 2 seconds. The range is 1 to 2 seconds. Note: This timer cannot be configured in MSTP mode. forward-time SECONDS Specifies the maximum time (in seconds) the device will wait before changing states (i.e., from the listening to learning to forwarding).
Page 567
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8 Usage Guideline This parameter will be commonly used by STP, RSTP, and MSTP. Note: Changing this parameter to a higher value may have a significant impact on CPU utilization, especially in MSTP mode.
Page 568
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default The default mode is RSTP. Command Mode Global Configuration Mode. Command Default Level Level: 8 Usage Guideline If mode is configured as STP or RSTP, all currently running MSTP instances will be cancelled automatically.
Page 569
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 57-8 instance This command is used to map a VLAN or a set of VLANs to an MST instance. To return the VLANs to the default instance (CIST), use the no instance INSTANCE-ID vlans VLANDID [,|.] command. Use the no instance INSTANCE- ID command to delete an MST instance.
Page 570
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Two or more switches with the same VLAN mapping and configuration version number are considered to be in different MST regions if the region names are different. Caution: Be careful when using the name command to set the name of an MST region.
Page 571
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 57-11 spanning-tree mst This command is used to set the path cost and port-priority parameters for any MST instance (including the CIST with instance ID 0). To return to the default settings, use the no form of this command. spanning-tree mst INSTANCE-ID {cost COST | port-priority PRIORITY} no spanning-tree mst INSTANCE-ID {cost | port-priority} Parameters...
Page 572
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure bridge priority for the MSTP instance 2. DXS-3600-32S#configure terminal DXS-3600-32S(config)#spanning-tree mst 2 priority 0 Success DXS-3600-32S(config)# 57-13 clear spanning-tree detected-protocols This command is used to restart the protocol migration. clear spanning-tree detected-protocols [interface INTERFACE-ID] Parameters interface INTERFACE-ID...
Page 573
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide spanning-tree no spanning-tree Parameters None. Default The value is disabled in default. Command Mode Interface Configuration Mode. Command Default Level Level: 8 Usage Guideline The spanning-tree/no spanning-tree command allows the Spanning Tree Protocol to be enabled/disabled on the switch interface.
Page 574
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no spanning-tree externalcost Parameters COST Specifies the external cost of interface. Valid values are from 0 to 200000000 and 0 means auto. Default The default port cost is calculated by port speed. Command Mode Interface Configuration Mode.
Page 575
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 57-18 spanning-tree autoedge This command is used to enable auto-edge on the interface. Use the disabled option of this command to disable auto- edge on the interface. spanning-tree autoedge [disabled] Parameters disabled Specifies to disable the auto-edge on the interface.
Page 576
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to prevent a interface to being a root port. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#spanning-tree guard root Success DXS-3600-32S(config-if)# 57-20 spanning-tree link-type This command is used to configure the link type of the interface. Use the no form of the command to restore the configuration to the default value.
Page 577
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 8 Usage Guideline Both of the physical port and port-channel interfaces are valid for this command. This configuration will take effect on all the spanning-tree modes. A Boolean value set by management. If TRUE causes the Port not to propagate received topology changenotifications and topology changes to other Ports.
Page 578
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the global configuration of STP summary. DXS-3600-32S#show spanning-tree summary StpVersion : RSTP StpStatus : Disabled BridgeMaxAge : 21 BridgeHelloTime : 1 BridgeForwardDelay : 16 MaxHops : 19 TxHoldCount : 5 ######...
Page 579
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 57-23 show spanning-tree interface This command is used to show the STP configuration of the interface. show spanning-tree interface INTERFACE-ID [{portfast | link-type}] Parameters interface INTERFACE-ID Displays the STP interface information. portfast Displays the STP interface's portfast information link-type...
Page 580
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the port information about link-type. DXS-3600-32S#show spanning-tree interface tenGigabitEthernet 1/0/1 link-type PortAdminLinkType : point-to-point PortOperP2PLinkType : point-to-point DXS-3600-32S# 57-24 show spanning-tree mst This command is used to display the information of MST and instances. show spanning-tree mst {configuration | instance INTANCE-ID [interface INTERFACE-ID]} Parameters configuration...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Storm Control Commands 58-1 storm-control This command is used to enable the storm suppression. Use the no form of the command to disable the storm suppression. storm-control {broadcast | multicast | unicast} {pps pps-rise [pps-low] | level level-rise [level-low]} no storm-control {broadcast | multicast | unicast} Parameters broadcast...
Page 583
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 58-2 storm-control action This command is used to enable the specified action. Use the no form of this command to configure this option to the default settings. storm-control action {block | shutdown | drop} no storm-control action Parameters block...
Page 584
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the interval time 5s. DXS-3600-32S#configure terminal DXS-3600-32S(config)#storm-control interval 5 Success DXS-3600-32S(config)# 58-4 show storm-control This command is used to display storm suppression information. show storm-control [interface interface-id] [broadcast | multicast | unicast] Parameters interface interface-id (Optional) Specifies a port to display storm-control information...
Page 585
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the storm control information for all interfaces. DXS-3600-32S#show storm-control Function Version : 1.01 Storm Control Statistic Interval: 5(seconds) Interface Type Lower Upper Action Status --------- --------- ------------- ------------ --------- --------- TenGigabitEthernet1/0/1 Broadcast 100 pps 200 pps...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Switch Management Commands 59-1 login (Console) This command is used to login to the device. login Parameters None. Default None. Command Mode EXEC Mode. Command Default Level Level: 1 Usage Guideline Use the login command to login to the device.
Page 587
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 59-3 username This command is used to set a local username database for the purpose of authentication. username name {{nopassword | password {password | encrypted encrypted-password}} | privilege privilege- level} no usename name Parameters name Specifies the name of the access database name.
Page 588
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 59-5 password This command is used to create a password used on the line interface. The no form of this command will disable the use of a password. password {password | encrypted encrypted-password} no password Parameters password...
Page 589
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters privilege-level Specifies the privilege level used. If this value is not specified, then the default privilege level value will be used. Default The default privilege level is 15. Command Mode EXEC Mode.
Page 590
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide encrypted-password Specifies the encrypted password used. This password can be up to 26 characters long. Spaces will be ignored, however, if there is spaces before and after the password, they will be considered part of the password. Default No password encryption is applied.
Page 591
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 59-12 privilege This command is used to change the command string execution rights to a specific level. The no form of this command restores the command string, on this mode execution, to it’s default rights. privilege mode {level privilege-level | reset} command-string no privilege mode command-string Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Syslog Commands 60-1 logging on This command is used to turn on logging of system messages. Use no form of this command to turn off the logging. logging on no logging on Parameters None.
Page 593
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 60-3 logging console This command is used to set the severity of logs that are allowed to be displayed on the console. The no format of the command disable show log on console. logging console LEVEL no logging console Parameters...
Page 594
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline To send logs to the syslog server, execute first the global configuration command logging server to configure syslog server. Then, execute logging trap to specify the severity of logs to be sent. The show logging command displays the related setting parameters and statistics of the log.
Page 595
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default Local7. Command Mode Global Configuration Mode. Command Default Level Level: 15 Usage Guideline A list of facility descriptions and their respective codes are listed below: Numberical code Facility Kernel messages User-level messages Mail system System daemons...
Page 596
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Default Level Level: 15 Usage Guideline This command enables the log statistics function. The statistics begins when the function is enabled. If you run no logging count, the statistics function is disabled and the statistics data is deleted.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows the result of the show logging command. DXS-3600-32S#show logging Syslog Logging: Enabled Console Logging: Level Informational Buffer Logging: Level Debugging Trap Logging: Level Informational Facility: local1 logging to 10.90.90.4 Logging File Write Delay: On_demand Syslog Source IP Interface Configuration: IP Interface : vlan1...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The memory buffer for the log is used in a recycled manner. That is, when it is full, the oldest information will be overwritten. The content of the logging buffer will be saved to the FLASH periodically if the interval time is specified, so the message can be restored on reboot.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide TACACS+ Commands 61-1 tacacs-server host This command is used to configure the IP address of TACACS+ server host. The no form of this command without parameters is used to delete the TACACS+ server host. The no form of this command with the parameters is used to restore the specified parameter to default value.
Page 600
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to define the shared password of the TACACS+ secure server as ‘aaa’. DXS-3600-32S#configure terminal DXS-3600-32S(config)#tacacs-server key aaa DXS-3600-32S(config)# 61-3 tacacs-server timeout This command is used to configure the global timeout time waiting for the server when communicatin with TACACS+ server.
Page 601
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display all the server groups configured for TACACS+. DXS-3600-32S#show tacacs statistics TACACS+ Server: 192.168.12.1/49 Socket Opens: 0 Socket Closes: 0 Total Packets Sent: 0 Total Packets Recv: 0 Reference Count: 0 DXS-3600-32S# Display Parameters...
Page 602
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Display Parameters Description Default Timeout The global timeout time waiting for the server when communicating with TACACS+ server.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide TELNET Commands 62-1 ip telnet server enable This command is used to enable the TELNET server on the switch. Use the no form of this command to disable the TELNET server on the switch. ip telnet server enable no ip telnet server enable Parameters...
Page 604
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Privileged Mode. Command Default Level Level: 8 Usage Guideline This command is used to display the TELNET server information. Example This example shows how to display the TELNET server information. DXS-3600-32S#show ip telnet server Server State : Enabled...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Time Range Commands 63-1 time-range This command is used to enter the Time Range configuration mode in the global configuration mode. To delete a time range, use the no to form of this command. time-range <range_name 32>...
Page 606
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure a new time range called time1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#time-range time1 DXS-3600-32S(config-time-range)#periodic sun-tue 1:00 to 2:00 Success DXS-3600-32S(config-time-range)# 63-3 show time-range This command is used to display all existing time ranges. show time-range Parameters None.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Traffic Segmentation Commands 64-1 switchport protected unidirectional This command is used to enable the interface isolated to a specified interface list for unidirectional protected. Use the no form of the command to disable the interface isolated to a specified interface list. switchport protected unidirectional {interface-type interface-list} no switchport protected unidirectional [interface-type interface-list] Parameters...
Page 608
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the switch port’s protected unidirectional information for interface 1. DXS-3600-32S#show switchport protected interface tenGigabitEthernet 1/0/1 Function Version: 1.01 Interface Unidirectional Portlist --------- --------------------------------------------------------- TenGigabitEthernet1/0/1 1:2, 1:4-1:26 DXS-3600-32S#...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Upgrade and Maintenance Commands 65-1 copy This command is used to upgrade and maintain the switch by use of the TFTP protocol for uploads and downloads. copy flash: filename tftp://location/filename copy tftp://location/filename flash: filename Parameters filename Specifies the file name used.
Page 610
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode Global Configuration Mode. Command Default Level Level: 15 Usage Guideline By default, the switch attempts to automatically boot the system using the information in the BOOT environment variable. If this variable is not set, the switch attempts to load and execute the first executable image.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Virtual LAN (VLAN) Commands 66-1 vlan This command is used to create VLANs and enter the VLAN configuration mode. Use the no vlan configuration command to remove VLANs. vlan VLAN-ID [, | -] no vlan VLAN-ID [, | -] Parameters VLAN-ID...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example In the following example, the user adds a new VLAN, assigning the new VLAN with the VLAN IDs 1000 to 1005. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vlan 1000-1005 DXS-3600-32S(config-vlan)# Example In the following example, the user removes the existing VLANs with the VLAN IDs. DXS-3600-32S#configure terminal DXS-3600-32S(config)#no vlan 1000-1005 DXS-3600-32S(config)#...
Page 613
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide dot1q-tunnel Specifies the port as a dot1q-tunnel port. Default Access mode. Command Mode Interface Configuration Mode. Command Default Level Level: 12 Usage Guideline The valid interfaces for this command are physical ports or link aggregation groups. When the port changes the VLAN mode, the VLAN membership setting related to the previous mode will be lost.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide The switchport access vlan command can also be used to configure the tunnel VLAN for a Dot1q-tunnel port. Removing the VLAN that is used as a port’s access VLAN will lead to the port’s access VLAN to reset to the default VLAN. Example This example shows how to set an interface port 1 to access mode with access VLAN 1000.
Page 615
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 66-6 switchport hybrid allowed vlan This command is used to specify if the port will be a tagged or untagged member of the specified VLAN for a hybrid port. Use the no switchport hybrid allowed vlan command to reset the membership. switchport hybrid allowed vlan {add {tagged | untagged} | remove} VLAN-ID [, | -] no switchport hybrid allowed vlan Parameters...
Page 616
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters VLAN-ID Specifies the native VLAN ID for the trunk or hybrid interface. Default The default is VLAN 1. Command Mode Interface Configuration Mode. Command Default Level Level: 12 Usage Guideline This command can only be configured on physical ports or link aggregation groups that set to trunk or hybrid mode.
Page 617
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example In the following example, the user sets the acceptable frame type to be tagged-only on port 1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/1 DXS-3600-32S(config-if)#acceptable-frame tagged-only DXS-3600-32S(config-if)# 66-9 ingress-checking This command is used to enable the ingress checking of the received frames on a port. Use the no ingress-checking interface command to disable the ingress checking function.
Page 618
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The user can use the mac-base command in VLAN configuration mode to create the MAC entry that will be classified to the MAC based VLAN. If MAC based VLAN entries are configured, the packet received by the switch regardless of the incoming port that have a source MAC address matching an the entry will be classified to the corresponding MAC-based VLAN.
Page 619
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example In the following example, the user creates a subnet-based VLAN entry for VLAN 100, specifying the subnets 20.0.1.0/8, 192.0.1.0/8 and 3ffe:22:33:44::55/64. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vlan 100 DXS-3600-32S(config-vlan)#subnet-base 20.0.1.0/8 DXS-3600-32S(config-vlan)#subnet-base 192.0.1.0/8 priority 4 DXS-3600-32S(config-vlan)#subnet-base 3ffe:22:33:44::55/64 DXS-3600-32S(config-vlan)# 66-12 show vlan...
Page 620
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example displays all the current VLAN entries. DXS-3600-32S#show vlan VLAN 1 Name : default Tagged Member Ports : 1/0/1 Untagged Member Ports : 1/0/2-1/0/24 VLAN 100 Name : VLAN0100 Tagged Member Ports : 1/0/1 Untagged Member Ports :...
Page 621
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example displays the MAC-based VLAN table: The MAC-based VLAN can be set by manual configuration or by MAC-based authorization. If the authorization assigns the MAC address that is set by manual configuration to different VLAN, the manual configuration MAC-based VLAN entry becomes inactive.
Page 622
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to create a protocol VLAN group with a group ID of 10, specifying that the IPv6 protocol (frame type is ethernet2 value is 0x86dd) will be used.
Page 623
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 66-15 show protocol-vlan This command is used to display the configuration settings of a protocol VLAN. The show protocol-vlan profile command displays the protocol VLAN list and its protocols. The show protocol-vlan interface command displays the protocol group binding VLAN of the ports.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Virtual Private LAN Service (VPLS) Commands 67-1 vpls This command is used to create a VPLS and enter the VPLS configuration mode. Use the no vpls command to delete a VPLS. vpls VPLS-NAME no vpls VPLS-NAME Parameters...
Page 625
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the VPLS ID of a VPLS to 100. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vpls vpls100 DXS-3600-32S(config-vpls)#vpls-id 100 DXS-3600-32S(config-vpls)# 67-3 service-type This command is used to set the type of emulated service in a VPLS. service-type {raw | tagged} Parameters Specifies the service type is Ethernet-raw mode in a VPLS.
Page 626
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to set the local AC link MTU of a VPLS in VPLS configuration mode. The local AC link MTU of a VPLS can be modified only when there is no pseudowire in this VPLS.
Page 627
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to delete a peer from a VPLS with the IP address if 2.2.2.2 and VC ID of 100. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vpls vpls100 DXS-3600-32S(config-vpls)#no peer 2.2.2.2 100 DXS-3600-32S(config-vpls)# Example This example shows how to delete all peers from a VPLS with the IP address of...
Page 628
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to create a backup peer with the IP address of 2.2.2.2 and VC ID is set by VPLS ID. DXS-3600-32S#configure terminal DXS-3600-32S(config)#vpls vpls100 DXS-3600-32S(config-vpls)#peer backup 2.2.2.2 DXS-3600-32S(config-vpls)# Example This example shows how to create a backup peer with the IP address of 2.2.2.2 and...
Page 629
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to delete a local AC, which is an Ethernet-based AC and the Ethernet port is 1/0/1, from a VPLS named vpls100. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface GigabitEthernet 1/0/1 DXS-3600-32S(config-if)#no xconnect vpls vpls100 DXS-3600-32S(config-if)# Example...
Page 630
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display VPLS information for a VPLS. DXS-3600-32S#show vpls vpls100 VPLS Name VPLS ID Peers/ACs Oper Status -------------------------------- ---------- --------- ----------- vpls100 Total Entries: 1 DXS-3600-32S# Example This example shows how to display all VPLS detailed information.
Page 631
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display detailed information for a VPLS with PW redundancy. DXS-3600-32S#show vpls vpls102 detail VPLS Name: vpls102, Operate Status: Up VPLS ID: 102, Service Type: Tagged, MTU: 1500 Peers via Pseudowires: VC ID Peer...
Page 632
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display all VPLS MAC address information. DXS-3600-32S#show mac-address-table vpls VPLS Name MAC Address Peer (VC ID/IP) or AC -------------------------------- ----------------- -------------------------- vpls100 00-08-A1-79-9A-DF 101/1.1.1.1 vpls100 00-08-A1-79-9A-E0 101/1.1.1.1 vpls100...
Page 633
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display the VPLS MAC addresses for a local AC of a VPLS. DXS-3600-32S#show mac-address-table vpls vpls100 ac interface gigabitEthernet1/0/ 21 vlan 101 VPLS Name MAC Address Peer (VC ID/IP) or AC -------------------------------- ----------------- -------------------------- vpls100...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide interface INTERFACE-ID (Optional) Specifies the Ethernet interface of a local AC. vlan VLAN-ID (Optional) Specifies that the local AC is an Ethernet VLAN-based AC and the related VLAN ID. If not specified, then the local AC will be an Ethernet-based AC. address MAC-ADDR (Optional) Specifies that the MAC address needs to be cleared.
Page 635
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to display all VC information, including VPWS and VPLS. DXS-3600-32S#show mpls l2transport vc VC ID Peer Local AC Type Oper Status ---------- -------------- -------------------- ------ ----------- 150.1.1.4 Eth1/0/1/VLAN2 130.1.1.2...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Virtual Private Wire Service (VPWS) Commands 68-1 xconnect This command is used to enable the VPWS service on the interface. Use the no form of this command to cancel the VPWS service. xconnect VC-ID IP-ADDRESS encapsulation mpls [{raw | tagged}] [mtu 0-65535] no xconnect Parameters...
Page 637
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide PE2: DXS-3600-32S(config)#interface vlan 20 DXS-3600-32S(config-if)#mpls ip DXS-3600-32S(config-if)#mpls label protocol ldp DXS-3600-32S(config-if)#exit DXS-3600-32S(config)#mpls ip DXS-3600-32S(config)#mpls label protocol ldp DXS-3600-32S(config-mpls-router)#ldp router-id 130.1.1.2 DXS-3600-32S(config-mpls-router)#exit DXS-3600-32S(config)#interface GigabitEthernet 1/0/1 DXS-3600-32S(config-if)#encapsulation dot1q 10 DXS-3600-32S(config-subif)#xconnect 2 110.1.1.1 encapsulation mpls 68-2 show mpls l2transport vc This command is used to display the VPWS VC information.
Page 638
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example is used to display detailed information of VC 1. DXS-3600-32S#show mpls l2transport vc 1 detail VC ID: 1, Peer IP Address: 150.1.1.4, Operate Status: Up Local AC: Eth1/0/1/VLAN2, Status: Up Remote AC Status: Up MPLS VC Labels: Local 16, Remote 16 Outbound Tunnel label: 100...
Page 639
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters VC-ID Specifies the PW service instance ID. It is used to uniquely identify the VPWS and it must be unique at both PEs. The range is 1-4294967295. IP-ADDRESS Specifies the peer LSR ID that is used to identify the other end’s PE. Default No PW redundancy of VPWS on the interface.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Virtual Router Redundancy Protocol (VRRP) Commands 69-1 vrrp authentication This command is used to enable VRRP authentication and set the password on an interface. Use the no form of this command to remove the authentication. vrrp authentication string no vrrp authentication Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set the critical IP address of virtual router 1 on the interface ‘vlan1’. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface vlan1 DXS-3600-32S(config-if)#vrrp 1 critical-ip 192.168.100.1 DXS-3600-32S(config-if)# 69-3 vrrp ip This command is used to create a VRRP router.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide vrrp vrid preempt no vrrp vrid preempt Parameters vrid Specifies the virtual router identifier. The valid range is from 1 to 255. Default By default, the preempt mode is enabled. Command Mode Interface Configuration Mode.
Page 643
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline The master of a virtual router is elected based on the priority setting. The router that owns the virtual router IP address has the highest priority to be elected. The router with the highest priority will become the master, and other routers with a lower priority will then act as the backup for the virtual router.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to configure the router to send advertisements for VRRP 7 every 10 seconds on interface vlan1. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface vlan 1 DXS-3600-32S(config-if)#vrrp 7 timers advertise 10 DXS-3600-32S(config-if)# Example This example shows how to configure the advertisement interval to use the default...
Page 645
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows brief information about the group 1 on interface ‘vlan1’. DXS-3600-32S#show vrrp interface vlan1 group 1 brief Interface Grp Pri Own Pre State Master addr Group addr vlan1 Master 10.1.1.1 10.1.1.1...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows detailed information about group 1 on interface ‘vlan1’. DXS-3600-32S#show vrrp interface vlan1 group 1 vlan1 – Group 1 State is Master Virtual IP Address is 10.1.1.1 Virtual MAC Address is 00-00-5E-00-01-01 Advertisement Interval is 1 seconds Preemption is enabled Priority is 255...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default By defaultn the VRRP error prompt debug switch is turned off. Command Mode Privileged EXEC Mode. Command Default Level Level: 8 Usage Guideline Use this command to turn on or turn off the VRRP error prompt debug switch. Example This example shows how to turn on the VRRP error prompt debug switch.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to turn on the VRRP packet debug switch. DXS-3600-32S#debug vrrp packets DXS-3600-32S# Received an ADV msg at VR 2 on interface vlan1 Received an ADV msg at VR 2 on interface vlan1 Received an ADV msg at VR 2 on interface vlan1 Send out an ADV msg at VR 1 at interface vlan1 priority 255 Send out an ADV msg at VR 1 at interface vlan1 priority 255...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide VLAN Mapping Commands 70-1 vlan mapping profile This command is used to enter the VLAN mapping profile configuration mode. If the VLAN mapping profile doesn’t exist, it will be created. Use no command to remove the VLAN mapping profile. vlan mapping profile ID [type [ethernet | ip | ipv6]] no vlan mapping profile ID Parameters...
Page 651
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide ether-type VALUE Specifies the Ethernet type. src-ip NETWORK-PREFIX Specifies the source IPv4 address. dst-ip NETWORK-PREFIX Specifies the destination IPv4 address. src-ipv6 IPV6-NETWORK- Specifies the source IPv6 address. PREFIX / PREFIX- LENGTH dst-ipv6 IPV6-NETWORK- Specifies the destination IPv6 address.
Page 652
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 70-3 show vlan mapping profile This command is used to display previously configured VLAN mapping profile information. show vlan mapping profile [ID] Parameters (Optional) Specifies the ID of the VLAN mapping profile. If not specified, all configured VLAN mapping profiles will be displayed..
Page 653
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline Use this command to apply the VLAN mapping profile to specified interface. The interface can be a physical port or a link aggregation group which is set to dot1q tunnel mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide VLAN Tunnel Commands 71-1 switchport mode dot1q-tunnel This command is used to specify the port as a dot1q-tunnel port. Use the no command to reset the VLAN mode to default setting. switchport mode dot1q-tunnel no switchport mode Parameters...
Page 655
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 71-2 frame-tag tpid This command is used to specify the outer TPID associated with a NNI port. frame-tag tpid TPID no frame-tag tpid Parameters TPID Specifies the TPID for the outer VLAN tag. The value is in hexadecimal form. Range is 0x0 to 0xFFFF.
Page 656
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Command Mode Interface Configuration Mode. Command Default Level Level: 12 Usage Guideline This command can be configured on physical ports or link aggregation groups. This command specifies the VLAN translation or selective QinQ rule on 801.1q tunnel or trunk port.
Page 657
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to set selective QinQ on port 2. C-VLANs 1-10 are mapped to S-VLAN 200. DXS-3600-32S#configure terminal DXS-3600-32S(config)#interface tenGigabitEthernet 1/0/2 DXS-3600-32S(config-if)#switchport mode dot1q-tunnel DXS-3600-32S(config-if)#switchport vlan mapping 1-10 dot1q-tunnel 200 DXS-3600-32S(config-if)# Example This example shows how to set 2:1 VLAN translation on trunk port 3.
Page 658
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default No Dot1Q VLAN tag inserted. Command Mode Interface Configuration Mode. Command Default Level Level: 12 Usage Guideline This command is available for on physical ports or link aggregation groups that are set to the 802.1Q tunnel mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Default None. Command Mode EXEC Mode. Command Default Level Level: 3 Usage Guideline This command is used to display the 802.1Q tunneling configuration on interfaces. Example This example shows all 802.1Q tunnel port configurations. DXS-3600-32S#show dot1q-tunnel dot1q Tunnel Interface:TGi1/0/1 Trust inner priority...
Page 660
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters interface INTERFACE-ID (Optional) Specifies the interfaces that will be displayed. If not specified, display the all VLAN mapping. Default None. Command Mode EXEC Mode. Command Default Level Level: 3 Usage Guideline Use this command to display the VLAN mapping configuration.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide VRF-Lite Commands 72-1 address-family ipv4 vrf This command is used to enter the VRF address family configuration mode. Use the no form of this command to disable VRF address family configuration mode. address-family ipv4 vrf vrf-name no address-family ipv4 vrf vrf-name Parameters...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to exit the address family configuration mode. DXS-3600-32S#configure terminal DXS-3600-32S(config)# router rip DXS-3600-32S(config-router)# address-family ipv4 vrf VPN-A DXS-3600-32S(config-router-af)#network 10.1.1.0 DXS-3600-32S(config-router-af)#exit-address-family DXS-3600-32S(config-router)# 72-3 import map This command is used to configure the import route map of one VRF. Use the no form of this command to delete the import route map.
Page 663
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Usage Guideline This command is used to create a new VRF instance and enter VRF configuration mode. After a new VRF instance is created, a new VRF routing table will be created. With the no form of this command, one VRF will be deleted.
Page 664
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide no maximum routes Parameters limit Specifies the maximum number of routes within the VRF. Its ranges from 1 to 16384. warn-threshold Specifies the warning threshold percent of limit. A warning message will be printed when the routes number reaches the threshold and no more routes can be written into the hardware.
Page 665
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 72-8 route-target This command is used to add one route target of a VRF. Use the no form of this command to remove one route target. route-target {import | export | both} route-target no route-target {import | export | both} route-target Parameters import...
Page 666
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example shows how to check the current VRF settings. DXS-3600-32S#show ip vrf VRF Name Interfaces ---------------------- --------------------- ---------------------- VPN-A 100:1 ip100 VPN-B Not Set DXS-3600-32S# Example This example shows how to check detailed information about VRF VPN-A. DXS-3600-32S#show ip vrf details VPN-A VRF VPN-A;...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Weighted Random Early Detection (WRED) Commands 73-1 clear random-detect drop-counter This command is used to clear WRED drop counters. clear random-detect drop-counter Parameters None. Default None. Command Mode Interface Configuration Mode. Command Default Level Level: 15 Usage Guideline...
Page 668
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide 73-3 random-detect exponential-weight This command is used to configure the WRED exponential weight factor for the average queue size calculation for the queue. The no form is used to configure it to the default setting. random-detect exponential-weight COS-VALUE exponent <VALUE 0-15>...
Page 669
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide max-drop-rate <0-14> Specifies the drop probability when the average queue size reaches max-threshold. This value must be between 0 and 14. Default The default maximum drop rate is 0 Command Mode Global Configuration Mode.
Page 670
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Example This example displays the WRED configuration and CoS queue status. DXS-3600-32S#show queueing random-detect tenGigabitEthernet 1/0/3 Current WRED configuration: Interface: 3 WRED State Exp-weight-constant Profile ---------- ------------------- ------- Disabled Disabled Disabled Disabled Disabled Enabled...
Page 671
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Parameters profile id Specifies the WRED profile ID for which the WRED profile configuration will be displayed. If not specified, the configuration for all WRED profiles will be displayed. Default None. Command Mode EXEC Mode.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Appendix A - Password Recovery Procedure This section describes the procedure for resetting passwords on the D-Link DXS-3600-32S switch. Authenticating any user who tries to access networks is necessary and important. The basic authentication method used to accept qualified users is through a local login, utilizing a Username and Password.
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Appendix B - System Log Entries The following table lists all possible entries and their corresponding meanings that will appear in the System Log of this Switch. Category Log Description Severity Note IP Directed- Event description: IP Directed-broadcast rate exceed 50 packets per...
Page 675
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note DNS Resolver Event description: Duplicate Domain name cache added. This will lead to Informational the dynamic domain name cache being deleted Log Message: [DNS_RESOLVER(1):]Duplicate Domain name case name: <domainname>, static IP: <ipaddr>, dynamic IP:<ipaddr>...
Page 676
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note 802.1X Event description: 802.1X Authentication failure. Warning Log Message: 802.1X Authentication failure [for <reason> ] from (Username: <username>, <interface-id>, MAC: <macaddr> ) Parameters description: reason: The reason for the failed authentication. username: The user that is being authenticated..
Page 677
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: The 802.1p default priority assigned from the RADIUS Informational server after the RADIUS client was successfully authenticated by the RADIUS server. This 802.1p default priority will be assigned to the port. Log Message: RADIUS server <ipaddr>...
Page 678
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: Conflict LLDP-MED device type detected. Notice Log Message: Conflict LLDP-MED device type detected (on port < portNum >, chassis id: < chassisType>, <chassisID>, port id: < portType>, <portID>, device class: <deviceClass>) Parameters description: portNum: The port number.
Page 679
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: The BGP FSM with Peer has gone to the successfully Informational established state. Log Message: [BGP(1):] BGP connection was successfully established (Peer:<ipaddr>). Parameters description: ipaddr: The IP address of the BGP peer.
Page 680
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: The number of BGP prefixes received from the neighbor Information reached the threshold. Log Message: [BGP(8):] The number of prefixes received reached <num>, max <limit> (Peer < ipaddr >). Parameters description: num: The number of prefix received.
Page 681
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note OSPFv2 Event description: OSPF interface link state changed. Informational Log Message: OSPF interface <intf-name> changed state to [Up | Down] Parameters description: intf-name: The name of the OSPF interface. Event description: OSPF interface administrator state changed.
Page 682
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: One OSPF neighbor state changed from Loading to Full. Notice Log Message: OSPF nbr <nbr-id> on interface <intf-name> changed state from Loading to Full. Parameters description: intf-name: The name of the OSPF interface.
Page 683
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: One virtual router’s state becomes Initiate. Informational Log Message: VR <vr-id> at interface <intf-name> switched to Init Parameters description: vr-id: The VRRP virtual router ID. intf-name: The virtual router’s interface name.
Page 684
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: A virtual MAC address was added into the switch’s L3 Notice table. Log Message: Added a virtual IP <vrrp-ip-addr> MAC <vrrp-mac-addr> into the switch’s L3 table. Parameters description: vrrp-ip-addr: The VRRP virtual IP address.
Page 685
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: Failed when adding a virtual MAC into the switch’s L3 Error table. The box where the MAC was learned from is invalid. Log Message: Failed to add virtual IP <vrrp-ip-addr> MAC <vrrp-mac-addr> into the switch’s L3 table.
Page 686
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Port Security Event description: Port security violation. Warning Log Message: Port security violation. (MAC address: <macaddr> on <interface-id>) Parameters description: macaddr: The violation MAC address. interface-id: The interface name. Event description: SSH server is enabled.
Page 687
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: Successful Enable Admin authenticated by AAA local or Informational none or server. Log Message: Successful Enable Admin through <Console | TELNET | Web(SSL) | SSH> from <ipaddr > authenticated by AAA <local | none | server <ipaddr>>...
Page 689
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: Spanning Tree port status changed. Notice Log Message: Spanning Tree port status changed [( [Instance:<InstanceID> ], port:< portNum>)] <old_status> -> <new_status> Parameters description: InstanceID: The instance ID. portNum: The port ID.
Page 690
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Module Event Description: Module inserted and working. Informational Log Message: Module <module-type> is inserted. Parameters Description: module-type: The expansion module name. Event Description: Module inserted and not working. Warning Log Message: Module <...
Page 691
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note Event description: Temperature sensor enters alarm state. Warning Log Message: Temperature sensor <sensorID> enters alarm state (current temperature: <temperature>) Parameters description: sensorID: The sensor ID. temperature: The temperature. Event description: Temperature recovers to normal.
Page 692
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Log Description Severity Note VPLS Event description: VPLS link up. Informational Log Message: VPLS <vpls_name> link up. Parameters description: vpls_name: The name of the link up VPLS. Event description: VPLS link down. Informational Log Message: VPLS <vpls_name>...
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Appendix C - Trap Entries This table lists the trap logs found on the Switch. Category Trap Name Description VRRP vrrpTrapNewMaster The newMaster trap indicates that the 1.3.6.1.2.1.68.0.1 sending agent has transitioned to 'Master' state.
Page 694
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Trap Name Description Authentication authenticationFailure An authenticationFailure trap signifies 1.3.6.1.6.3.1.1.5.5 that the SNMPv2 entity, acting in an agent role, has received a protocol message that is not properly authenticated. While all implementations of the SNMPv2 must be capable of generating this trap, the snmpEnableAuthenTraps object...
Page 695
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide Category Trap Name Description LACP linkUp A linkUp trap signifies that the SNMP 1.3.6.1.6.3.1.1.5.4 entity, acting in an agent role, has detected that the ifOperStatus object for one of its communication links left the down state and transitioned into some other state (but not into the notPresent state).