ExtremeWare 7.0 Software Quick Reference ... - Extreme Networks

ExtremeWare 7.0 Software Quick Reference ... - Extreme Networks ExtremeWare 7.0 Software Quick Reference ... - Extreme Networks

from extremenetworks.com More from this publisher

ExtremeWare 7.0.0 SoftwareQuick Reference GuideCommands for Accessing the SwitchCommandclear session config account {encrypted}{}config bannerconfig banner netloginconfig dns-client add config dns-client add domain-suffix config dns-client add name-server config dns-client default-domain config dns-client delete config dns-client delete domain-suffixconfig dns-client delete name-server DescriptionTerminates a Telnet session from the switch.Configures a user account password.Configures the banner string that is displayed at thebeginning of each login prompt of each session.Configures the network login banner that isdisplayed at the beginning of each login prompt ofeach session.Adds a DNS name server to the available server listfor the DNS client.Adds a domain name to the domain suffix list.Adds a DNS name server to the available server listfor the DNS client.Configures the domain that the DNS client uses if afully qualified domain name is not entered.Removes a DNS name server from the availableserver list for the DNS client.Deletes a domain name from the domain suffix list.Removes a DNS name server from the availableserver list for the DNS client.Part Number: 100050-00 Rev 04 1

<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong><strong>Quick</strong> <strong>Reference</strong> GuideCommands for Accessing the SwitchCommandclear session config account {encrypted}{}config bannerconfig banner netloginconfig dns-client add config dns-client add domain-suffix config dns-client add name-server config dns-client default-domain config dns-client delete config dns-client delete domain-suffixconfig dns-client delete name-server DescriptionTerminates a Telnet session from the switch.Configures a user account password.Configures the banner string that is displayed at thebeginning of each login prompt of each session.Configures the network login banner that isdisplayed at the beginning of each login prompt ofeach session.Adds a DNS name server to the available server listfor the DNS client.Adds a domain name to the domain suffix list.Adds a DNS name server to the available server listfor the DNS client.Configures the domain that the DNS client uses if afully qualified domain name is not entered.Removes a DNS name server from the availableserver list for the DNS client.Deletes a domain name from the domain suffix list.Removes a DNS name server from the availableserver list for the DNS client.Part Number: 100050-00 Rev 04 1

Commands for Accessing the SwitchCommandconfig idletimeouts config time config timezone {name }{autodst {name } {}{begins [every | on ] {at}{ends [every | on ] {at}}}| noautodst}create account [admin | user] {encrypted} {}delete account disable clipagingdisable idletimeoutsenable clipagingenable idletimeoutsenable license [basic_L3 | advanced_L3 | full_L3 ]historyreboot {time | cancel} {slot }show accounts pppusershow bannershow dns-clientshow switchtraceroute {from } {ttl } {port }DescriptionConfigures the time-out for idle HTTP, console, andTelnet sessions.Configures the system date and time.Configures the Greenwich Mean Time (GMT) offsetand Daylight Saving Time (DST) preference.Creates a new user account.Deletes a specified user account.Disables pausing at the end of each show screen.Disables the timer that disconnects idle sessionsfrom the switch.Enables the pause mechanism and does not allowthe display to print continuously to the screen.Enables a timer that disconnects Telnet and consolesessions after 20 minutes of inactivity.Enables a particular software feature license.Displays a list of the previous 49 commandsentered on the switch.Reboots the switch or the module in the specifiedslot at a specified date and time.Displays user account information for all users onthe switch.Displays the user-configured banner string.Displays the DNS configuration.Displays the current switch information.Enables you to trace the routed path between theswitch and a destination endstation.2 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Commands for Managing the SwitchCommands for Managing the SwitchCommandconfig snmp access-profile readonly[ | none]config snmp access-profile readwrite[ | none]config snmp add {}config snmp add community [readonly | readwrite]{encrypted} config snmp add trapreceiver {port} community {from} {mode [enhanced | standard]}config snmp community [readonly | readwrite]{encrypted} config snmp delete [ {} | all]config snmp delete community [readonly | readwrite]{encrypted} [all | ]config snmp delete trapreceiver [{community } | all]config snmp syscontact config snmp syslocation config snmp sysname config sntp-client [primary | secondary] server[ | ]config sntp-client update-interval config web login-timeout disable snmp accessdisable snmp dot1dtpfdbtabledisable snmp trapsDescriptionAssigns an access profile that limits which stationshave read-only access to the switch.Assigns an access profile that limits which stationshave read/write access to the switch.Adds the IP address or a set of IP addresses of anSNMP management station to the access list.Adds an SNMP read or read/write community string.Adds the IP address of a specified trap receiver tothe trap receiver list.Configures the value of the default SNMP read orread/write community string.Deletes an IP address or range of IP addresses of aspecified SNMP management station or all SNMPmanagement stations.Deletes an SNMP read or read/write communitystring.Deletes a specified trap receiver or all authorizedtrap receivers.Configures the name of the system contact.Configures the location of the switch.Configures the name of the switch.Configures an NTP server for the switch to obtaintime information.Configures the interval between polls for timeinformation from SNTP servers.Configures the timeout for user to enterusername/password in the pop-up window.Disables SNMP on the switch.Disables SNMP GetNext responses for thedot1dTpFdbTable in the BRIDGE-MIB.Prevents SNMP traps from being sent from theswitch.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 3

Commands for Managing the SwitchCommanddisable snmp traps port-up-down ports [all | mgmt |]disable snmp traps mac-securitydisable sntp-clientdisable system-watchdogdisable telnetdisable webenable dhcp ports vlan enable snmp accessenable snmp dot1dtpfdbtableenable snmp trapsenable snmp traps {port-up-down ports [all | mgmt |]}enable snmp traps mac-securityenable sntp-clientenable system-watchdogenable telnet {access-profile [ |none]} {port }enable web {access-profile [ |none]} {port }exitlogoutquitshow managementshow odometershow sessionDescriptionPrevents SNMP port up/down traps (also known aslink up and link down traps) from being sent from theswitch for the indicated ports.Prevents SNMP mac-security traps from being sentfrom the switch for all ports.Disables the SNTP client.Disables the system watchdog timer.Disables Telnet services on the system.Disables web access to the switch.Enables DHCP on a specified port in a VLAN.Turns on SNMP support for the switch.Enables SNMP GetNext responses for thedot1dTpFdbTable in the BRIDGE-MIB.Turns on SNMP trap support.Enables SNMP port up/down traps (also known aslink up and link down traps) for the indicated ports.Enables SNMP mac-security traps for all ports to besent by the switch.Enables the SNTP client.Enables the system watchdog timer.Enables Telnet access to the switch.Enables <strong><strong>Extreme</strong>Ware</strong> Vista web access to theswitch.Logs out the session of a current user for CLI orTelnet.Logs out the session of a current user for CLI orTelnet.Logs out the session of a current user for CLI orTelnet.Displays the SNMP settings configured on theswitch.Displays a counter for each component of a switchthat shows how long it has been functioning since itwas manufactured.Displays the currently active Telnet, console, andweb sessions communicating with the switch.4 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Commands for Configuring Slots and Ports on a SwitchCommandshow sntp-clientDescriptionDisplays the DNS configuration.show vlan dhcp-address-allocation vlan Displays DHCP address allocation information aboutVLANs.show vlan dhcp-config vlan Displays DHCP configuration information aboutVLANs.Commands for Configuring Slots and Ports on a SwitchCommandclear slot config ip-mtu vlan config jumbo-frame size config mirroring add [ | vlan {ports } | ports {vlan }]config mirroring delete [ | vlan {ports } | ports {vlan }]config msm-failover link-action [keep-links-up |take-links-down]config ports [ vlan | all][limit-learning | lock-learning |unlimited-learning | unlock-learning]config ports [ | all | mgmt] auto off {speed[10 | 100 | 1000]} duplex [half | full]config ports [ | mgmt | all] auto onconfig ports [ | mgmt] display-stringconfig port interpacket-gap config ports link-detection-levelconfig ports [ | | mgmt] redundant[ | ]config sharing address-based [L2 | L2_L3 |L2_L3_L4]DescriptionClears a slot of a previously assigned module type.Sets the maximum transmission unit (MTU) for theVLAN.Sets the maximum jumbo frame size for the switchchassis.Adds a particular mirroring filter definition on theswitch.Deletes a particular mirroring filter definition on theswitch.Configures external port response when MSMfailover occurs.Configures virtual ports for limited or locked MACaddress learning.Manually configures port speed and duplex settingconfiguration on one or more ports on a switch.Enables autonegotiation for the particular port type.Configures a user-defined string for a port or groupof ports.Configures the Interpacket Gap for a 10 Gigabit port.Configures the link detection level.Configures a software-controlled redundant port.Configures the part of the packet examined by theswitch when selecting the egress port for transmittingload-sharing data.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 5

Commands for Configuring Slots and Ports on a SwitchCommandconfig slot module disable edp ports [ | all]disable flooding ports disable jumbo-frame ports [ | all]disable lbdetect port disable learning ports disable mirroringdisable ports [ | all]disable sharing []disable slot [ | all]disable smartredundancy []enable edp ports [ | all]enable flooding ports enable jumbo-frame ports [ | all]enable lbdetect port [retry-timeout]enable learning ports enable mirroring to port [] [tagged |untagged]enable ports [ | all]enable sharing grouping {dynamic |algorithm {port-based | address-based | round-robin}}enable slot [ | all]enable smartredundancy DescriptionConfigures a slot for a particular I/O module card in amodular switch.Disables the <strong>Extreme</strong> Discovery Protocol (EDP) onone or more ports.Disables packet flooding on one or more ports.Disables jumbo frame support on a port.Disables the detection of loops between ports.Disables MAC address learning on one or more portsfor security purposes.Disables port-mirroring.Disables one or more ports on the switch.Disables a load-sharing group of ports.Disables one or all slots on a BlackDiamond orAlpine switch, and leaves the blade in a power downstate.Disables the smart redundancy feature.Enables the <strong>Extreme</strong> Discovery Protocol (EDP) onone or more ports.Enables packet flooding on one or more ports.Enables support on the physical ports that will carryjumbo frames.Enables the system to detect loops between ports. Ifa port is looped, it disables the port. Every Nseconds, it re-enables the port and tries again,unless “none” is specifiedEnables MAC address learning on one or more ports.Dedicates a port on the switch to be the mirror outputport.Enables a port.This command enables the switch to configure staticport load sharing or dynamic port load sharing. Whenconfiguring dynamic port load sharing, LACP will beused to detect and set up for the remote side’s loadsharing capabilities.Enables one or all slots on a BlackDiamond or Alpineswitch.Enables the Smart Redundancy feature on theredundant Gigabit Ethernet port.6 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

VLAN CommandsCommandrestart ports [run msm-failovershow edp {}show mirroringshow ports {} collisionsshow ports {} configurationshow ports {} info {detail}show ports {} packetshow ports sharingshow ports {} utilizationshow sharing address-basedshow slot unconfig ports display-stringunconfig ports [ | | mgmt]redundantunconfig slot DescriptionResets autonegotiation for one or more ports byresetting the physical link.Causes a user-specified MSM failover.Displays connectivity and configuration informationfor neighboring <strong>Extreme</strong> <strong>Networks</strong> switches.Displays the port-mirroring configuration on theswitch.Displays real-time collision statistics.Displays port configuration statistics.Displays detailed system-related information.Displays a histogram of packet statistics.Displays port loadsharing groups.Displays real-time port utilization information.Displays the address-based load sharingconfiguration.Displays the slot-specific information.Clears the user-defined display string from one ormore ports.Clears a previously configured software-controlledredundant port.Clears a slot of a previously assigned module type.VLAN CommandsCommandconfig dot1q ethertype config gvrp {listen | send | both | none} portconfig mac-vlan add mac-address [any |] mac-group [any | ]vlan config mac-vlan delete [all | mac-address[ | any]]config ports monitor vlan DescriptionConfigures an IEEE 802.1Q Ethertype.Configures the sending and receiving of GenericVLAN Registration Protocol (GVRP) information on aport.Adds a MAC address as a potential member of aMAC-based VLAN.Removes a MAC address from any MAC-basedVLANs with which it was associated.Configures VLAN statistic monitoring on a per-portbasis.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 7

VLAN CommandsCommandconfig protocol add {} ...config protocol delete {} ...config vlan add ports {tagged| untagged} {nobroadcast} {soft-rate-limit}config vlan add ports loopback-vid config vlan delete port config vlan ipaddress { | }config vlan name config vlan protocol [| any]config vlan tag create protocol create vlan delete protocol delete vlan disable gvrpdisable mac-vlan port enable gvrpenable mac-vlan mac-group [any | ]port show gvrpshow mac-vlan {configuration | database}show protocol {}show vlan { | detail | stats {vlan} }unconfig ports monitor vlan DescriptionConfigures a user-defined protocol filter.Deletes the specified protocol type from a protocolfilter.Adds one or more ports in a VLAN.Adds a loopback port to a VLAN.Deletes one or more ports in a VLAN.Assigns an IP address and an optional subnet maskto the VLAN.Renames a previously configured VLAN.Configures a VLAN to use a specific protocol filter.Assigns a unique 802.1Q tag to the VLAN.Creates a user-defined protocol filter.Creates a named VLAN.Deletes a user-defined protocol.Deletes a VLAN.Disables the Generic VLAN Registration Protocol(GVRP).Disables a port from using the MAC-based VLANalgorithm.Enables the Generic VLAN Registration Protocol(GVRP).Enables a port to use the MAC-based VLANalgorithm.Displays the current configuration and status ofGVRP.Displays the MAC-based VLAN configuration andMAC address database content.Displays protocol filter definitions.Displays information about VLANs.Removes port-based VLAN monitoring.8 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

FDB CommandsCommandunconfig vlan ipaddressDescriptionRemoves the IP address of the VLAN.FDB CommandsCommandclear fdb { | broadcast-mac |locked-mac | vlan |ports }config fdb agingtime create fdbentry vlan blackhole {source-mac | dest-mac | both}create fdbentry [ | broadcast-mac |any-mac] vlan dynamic [qosprofile {ingress-qosprofile } |ingress-qosprofile {qosprofile}]create fdbentry vlan ports [ | all] {qosprofile }{ingress-qosprofile }delete fdbentry [[ | broadcast-mac]vlan | all]run fdb-check [index |[ | broadcast-mac] {}]{extended} {detail}show fdb { | broadcast-mac | vlan | | permanent}DescriptionClears dynamic FDB entries that match the filter.Configures the FDB aging time for dynamic entries.Creates a blackhole FDB entry.Creates a permanent dynamic FDB entry, andassociates it with an ingress and/or egress QoSprofile.Creates a permanent static FDB entry, and optionallyassociates it with an ingress and/or egress QoSprofile.Deletes one or all permanent FDB entries.Checks MAC FDB entries for consistency.Displays FDB entries.QOS CommandsCommandclear dlcsconfig diffserv examination code-point qosprofile ports [ | all]{low-drop-probability | high-drop-probability}config diffserv replacement priority code-point ports [ | all]DescriptionClears all learned DLCS data.Configures the default ingress Diffserv code points(DSCP) to QoS profile mapping.Configures the default egress Diffserv replacementmapping.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 9

QOS CommandsCommandconfig dot1p type qosprofileconfig ipqos add {tcp | udp | other | all}/ {l4-dstport}{/} {l4-srcport} [qosprofile |blackhole]config ipqos delete {tcp | udp | other | all}/ {l4-dstport}{/} {l4-srcport} [qosprofile |blackhole]config ports qosprofile config qosmode [ingress | egress]config qosprofile minbw maxbw priority {[minbuf maxbuf [K | M] | maxbuff [K | M] | ]}config qostype priority [source-mac | dest-mac |access-list | vlan | diffserv | dot1p] config red drop-probability config vlan priority config vlan qosprofile create qosprofile delete qosprofile disable diffserv examination ports [ | all]disable diffserv replacement ports [ | all]disable dlcs {fast-ethernet-ports | ports [all |]}disable dot1p replacement ports [ | all]disable isq vlan DescriptionConfigures the default QoS profile to 802.1p prioritymapping.Applies a set of destination IP addresses to anIPQoS traffic grouping by specifying a networkaddress and subnet mask.Removes a set of destination IP addresses from anIPQoS traffic grouping.Configures one or more ports to use a particular QoSprofile.Changes the QoS mode to ingress mode or egressmode.Modifies the default QoS profile parameters.Configures the priority of the specified QoS trafficgrouping.Configures the Random Early Detect (RED)drop-probability.Configures the 802.1p priority value for trafficgenerated on the switch.Configures a VLAN to use a particular QoS profile.Creates a QoS profile.Deletes a QoS profile created in egress mode.Disables the examination of the Diffserv field in an IPpacket.Disables the replacement of diffserv code points inpackets transmitted by the switch.This command disables WINS snooping for ports onthis switch.Disables the ability to overwrite 802.1p priority valuesfor a given set of ports.Disables Intra-subnet QoS (ISQ) on a VLAN.10 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

NAT CommandsCommanddisable qosmonitordisable red ports enable diffserv examination ports [ | all]enable diffserv replacement ports [ | all]enable dlcs {fast-ethernet-ports | ports [all |]}enable dot1p replacement ports [ | all]enable isq vlan enable qosmonitor {port }enable red ports [mgmt | ]show dlcsshow dot1pshow ports {} qosmonitor {egress | ingress}{discards}show qosprofile {}show qostype priorityunconfig diffserv examination ports [ | all]unconfig diffserv replacement ports [ | all]unconfig qostype priorityDescriptionDisables the QoS monitoring capability.Disables Random Early Detection (RED) on thespecified ports.Enables the Diffserv field of an ingress IP packet tobe examined in order to select a QoS profile.Enables the diffserv code point to be overwritten inpackets transmitted by the switch.This command enables WINS snooping for ports onthe switch.Allows the 802.1p priority field to be overwritten onegress according to the QoS profile to 802.1p prioritymapping for a given set of ports.Enables Intra-Subnet QoS (ISQ) on a per-VLANbasis.Enables the QoS monitoring capability on the switch.Enables Random Early Detection (RED) on a port.Displays the status of DLCS (enabled or disabled)and the status of ports that are snooping WINSpackets.Displays the 802.1p-to-QoS profile mappings.Displays real-time QoS statistics for egress packetson one or more ports.Displays QoS information on the switch.Displays QoS traffic grouping priority settings.Removes the Diffserv examination code point from aport.Removes the diffserv replacement mapping from aport.Resets all traffic grouping priority values to theirdefaults.NAT CommandsCommandclear nat [connections | stats}DescriptionClears NAT connections or statistics.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 11

SLB CommandsCommandconfig nat add vlan map source [any |/]{l4-port [any | {- }]}{destination / {l4-port [any | {- }]}}to [/ | - ][tcp | udp | both] [portmap { - } |auto-constrain]config nat delete [all |vlan map source [any | /]{l4-port [any | {- }]}{destination / {l4-port [any | {- }]}}to [/ | - ][tcp | udp | both] [portmap { - } |auto-constrain]config nat finrst-timeout config nat icmp-timeout config nat syn-timeout config nat tcp-timeout config nat timeout config nat udp-timeout config nat vlan [inside | outside | none]disable natenable natshow nat {timeout | stats | connections | rules {vlan}}DescriptionAdds a NAT translation rule that translates private IPaddresses to public IP addresses on the outsideVLAN.Deletes a NAT translation rule.Configures the timeout for a TCP session that hasbeen torn down or reset.Configures the timeout for an ICMP packet.Configures the timeout for an entry with anunacknowledged TCP SYN state.Configures the timeout for a fully setup TCP SYNsession.Configures the timeout for any IP packet that is notTCP, UDP, or ICMP.Configures the timeout for a UDP session.Configures a VLAN to participate in NAT.Disables network address translation on the switch.Enables network address translation on the switch.Displays NAT settings.SLB CommandsCommandclear slb connections {ipaddress : | vip }DescriptionClears all existing SLB connections.12 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

SLB CommandsCommandclear slb vip [ | all] persistenceconfig flow-redirect add next-hop config flow-redirect delete next-hopconfig flow-redirect service-check ftpuser config flow-redirect service-check httpurl match-string config flow-redirect service-checkL4-portconfig flow-redirect service-checknntp Clears the connection information in the persistencetable.Adds the next hop host (gateway) that is to receivethe packets that match the flow redirect policy.Deletes the next hop host (gateway).Configures the flow redirect FTP check.Configures the flow redirect HTTP check.Configures the flow redirect layer 4 port check.Configures the flow redirect NNTP check.config flow-redirect service-check ping Configures the flow redirect ping check.config flow-redirect service-check Configures the flow redirect POP3 check.pop3 user config flow-redirect service-check Configures the flow redirect SMTP check.smtp config flow-redirect service-check Configures the flow redirect Telnet check.telnet user config flow-redirect timer ping-check frequency timeout config flow-redirect timer service-check frequency timeout config flow-redirect timer tcp-port-check frequency timeout config slb esrp vlan [add | delete] unit[number]config slb failover alive-frequency timeoutconfig slb failover dead-frequency config slb failover failback-nowconfig slb failover ping-check {frequency timeout }DescriptionConfigures the flow redirect ping-check frequencyand timeout.Configures the flow redirect service-check frequencyand timeout.Configures the flow redirect TCP port checkfrequency and timeout.Configures all virtual servers with the specified unitnumber to match the state of the specified ESRPVLAN.Configures the frequency at which the local SLBdevice polls the remote SLB device.Configures the frequency at which the local switchattempts to re-establish communication with theunresponsive remote switch.Configures the local SLB to release the remote SLBresources if the remote SLB is alive.Configures the SLB device to actively determine if aremote gateway is reachable by performing a ping.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 13

SLB CommandsCommandconfig slb failover unit remote-ipaddress local-ipaddress {L4-port}config slb global connection-block config slb global connection-timeout config slb global ftp user {password{encrypted} }config slb global http url match-string[ | alphanumeric string]config slb global nntp config slb global persistence-level[same-vip-same-port | same-vip-any-port | any-vip]config slb global persistence-method [per-packet |per-session]config slb global ping-check frequency timeout config slb global pop3 user {password{encrypted} }config slb global service-check frequency timeout config slb global smtp config slb global synguardmax-unacknowledged-SYNs config slb global tcp-port-check frequency timeout config slb global telnet userid password{encrypted} {}config slb gogo-mode health-checkconfig slb gogo-mode ping-checkfrequency timeout DescriptionConfigures the switch for active-active operation.Configures the number of SLB connections toallocate in memory, which improves performance.Configures the connection timeout for transparentand translation modes.Configures the default parameters for layer 7 FTPservice checking.Configures the default parameters for layer 7 HTTPservice checking.Configures the default parameters for layer 7 NNTPservice checking.Configures the persistence level globally.Configures the behavior of the persistence timer.Configures default health checking frequency andtimeout period using layer 3-based pinging of thephysical node.Configures the default parameters for layer 7 POP3service checking.Configures default health checking frequency andtimeout period using layer 7-basedapplication-dependent checking.Configures the default parameters for layer 7 SMTPservice checking.Configures the the SYN-guard feature.Configures default health checking frequency andtimeout period using layer 4-based TCP port testing.Configures the default parameters for layer 7 telnetservice checking.Configures the health checker with the common IPaddresses of the GoGo mode servers in this group.Overrides the global default ping-check frequencyand timeout values for this GoGo mode group.14 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

SLB CommandsCommandconfig slb gogo-mode service-checkftp {} {user | password {encrypted}}config slb gogo-mode service-checkhttp {} {url match-string [any-content |]}config slb gogo-mode service-checkpop3 {} {userid | password{encrypted} }config slb gogo-mode service-checksmtp {} {}config slb gogo-mode service-checktelnet {} {user | password{encrypted} }config slb gogo-mode service-checktimer [all | ftp | http | telnet | smtp | nntp | pop3 |] frequency timeoutconfig slb gogo-mode tcp-port-checkadd [ftp | http | https | imap4 | ldap | nntp | pop3 |smtp | socks | telnet | tftp | web | www | ]config slb gogo-mode tcp-port-checkdelete [ftp | http | https | imap4 | ldap | nntp | pop3 |smtp | socks | telnet | tftp | web | www | ]config slb gogo-mode tcp-port-checktimer [ftp | http | https | imap4 | ldap | nntp | pop3 |smtp | socks | telnet | tftp | web | www | ] frequency timeout config slb L4-port [ftp | http | https | imap4 | ldap |nntp | pop3 | smtp | socks | telnet | tftp | web | www |] [treaper-timeout } udp-idle-timeout ]config slb node :[ftp | http | https | imap4| ldap | nntp | pop3 | smtp | socks | telnet | tftp | web| www | ]max-connections config slb node ping-check frequency timeout DescriptionConfigures the FTP service check parameters for aGoGo mode group.Configures the HTTP service check parameters for aGoGo mode group.Configures the service check parameters for a GoGomode group.Configures the service check parameters for a GoGomode group.Configures the service check parameters for a GoGomode group.Overrides the global service-check frequency andtimeout values.Adds the specified layer 4 port.Deletes the specified layer 4 port.Overrides the global TCP-port-check frequency andtimeout values.Configures the inactive period for TCP or UDP beforethe connection is aged out.Configures the maximum number of simultaneousconnections that can be established to a node.Overrides the global default frequency and timeoutvalues for this node.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 15

SLB CommandsCommandconfig slb node :[ftp | http | https | imap4| ldap | nntp | pop3 | smtp | socks | telnet | tftp | web| www | ] tcp-port-checkfrequency timeout config slb pool add :[ftp |http | https | imap4 | ldap | nntp | pop3 | smtp | socks| telnet | tftp | web | www | ] {ratio | priority }config slb pool delete :[ftp| http | https | imap4 | ldap | nntp | pop3 | smtp |socks | telnet | tftp | web | www | ]config slb pool lb-method [round-robin |ratio | priority | least-connections]config slb pool member :[ftp | http | https | imap4 | ldap | nntp | pop3| smtp | socks | telnet | tftp | web | www | ] [ratio | priority]config slb proxy-client-persistence [add | delete] /config slb vip unit [number]config slb vip [ | all]client-persistence-timeout config slb vip max-connectionsconfig slb vip service-check frequency timeout config slb vip service-check ftp {user password {encrypted} }config slb vip service-check http {url match-string [any-content | ]}config slb vip service-check nntpconfig slb vip service-check pop3 user password {encrypted} {password}config slb vip service-check smtp {}DescriptionOverrides the global default frequency and timeoutvalues for this node.Adds a node to a pool.Deletes a node from a pool.Configures the SLB load balancing method.Configures the ratio or priority of an existing poolmember.Configures a client subnet that should be treated asone persistent entity.Configures the unit number for active-active failover.Configures the client persistence timeout value.Configures the maximum connections allowed to aparticular virtual server.Configures the layer 7 service check frequency andtimeout for a particular virtual server.Configures layer 7 FTP service checking for aspecific virtual server.Configures layer 7 HTTP service checking for aspecific virtual server.Configures layer 7 NNTP service checking for aspecific virtual server.Configures layer 7 POP3 service checking for aspecific virtual server.Configures layer 7 SMTP service checking for aspecific virtual server.16 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

SLB CommandsCommandconfig slb vip service-check telnet {user password {encrypted} }config vlan slb-type [server | client |both | none]create flow-redirect [any | tcp | tup |udp] destination [ / | any] ip-port[ | any] source [ / | any]create slb pool {lb-method[least-connections | priority | ratio | round-robin]}create slb vip pool mode[transparent | translation | port-translation] {- } : {unit}delete flow-redirect delete slb pool [ | all]delete slb vip [ | all]disable flow-redirect [all | ]disable slbdisable slb 3dns iquery-clientdisable slb failoverdisable slb failover manual-failbackdisable slb failover ping-checkdisable slb global synguarddisable slb gogo-mode disable slb gogo-mode ping-checkdisable slb gogo-mode service-check[all | ftp | http | nntp | pop3 | smtp | telnet | ]disable slb gogo-mode tcp-port-check[all | ftp | http | https | imap4 | ldap | nntp | pop3 |smtp | socks | telnet | tftp | web | www | ]disable slb L4-port [all | ftp | http | https | imap4 | ldap| nntp | pop3 | smtp | socks | telnet | tftp | web | www| ]DescriptionConfigures layer 7 telnet service checking for aspecific virtual server.Marks a VLAN as either a server VLAN or a clientVLAN.Creates a flow redirect policy.Creates a server pool and optionally assigns aload-balancing method to the pool.Creates one or more new virtual servers.Deletes a flow redirect policy.Deletes a server pool.Deletes one or all virtual servers.Disables flow redirect.Disables SLB processing.Disables 3DNS support.Disables the SLB failover mechanism.Disables manual failback.Disables ping-check to an external gateway.Disables the TCP SYN-guard feature.Disables GoGo mode processing.Disables layer-3 ping-check to this GoGo modegroup.Disables layer 7 service check to this GoGo modegroup.Disables layer 4 TCP-port-check to this GoGo modegroup.Disables one or all SLB ports.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 17

SLB CommandsCommanddisable slb node [all | : [ftp | http | https| imap4 | ldap | nntp | pop3 | smtp | socks | telnet |tftp | web | www | ]]{close-connections-now}disable slb node [all | ] ping-checkdisable slb node [all | : [ftp | http | https| imap4 | ldap | nntp | pop3 | smtp | socks | telnet |tftp | web | www | ]]tcp-port-checkdisable slb proxy-client-persistencedisable slb vip [all | | ipaddress : [ftp | http | https | imap4 | ldap | nntp |pop3 | smtp | socks | telnet | tftp | web | www | ]] {close-connections-now}disable slb vip [all | ] client-persistencedisable slb vip [all | ] service-checkdisable slb vip [all | ] sticky-persistencedisable slb vip [all | ] svcdown-resetenable flow-redirect [all | ]enable slbenable slb 3dns iquery-clientenable slb failoverenable slb failover manual-failbackenable slb failover ping-checkenable slb global synguardenable slb gogo-mode grouping enable slb gogo-mode ping-check enable slb gogo-mode service-check[all | ftp | http | nntp | pop3 | smtp | telnet | ]enable slb gogo-mode tcp-port-check[all | ftp | http | https | imap4 | ldap | nntp | pop3 |smtp | socks | telnet | tftp | web | www | ]DescriptionDisables one or all nodes.Disables layer 3 ping-check.Disables layer 4 TCP-port-checking.Disables proxy client persistence.Disables one or all virtual servers.Disables client persistence.Disables layer 7 service-check.Disables sticky persistence.Disables svcdown-reset.Enables flow redirect.Enables SLB processing.Enables 3DNS support.Enables SLB failover.Enables manual failback.Enables ping-check.Enables the TCP SYN-guard feature.Enables GoGo mode processing for a group of ports.Enables layer-3 ping-check for the GoGo modegroup.Enables layer 7 service checking for the GoGo modegroup.Enables layer 4 TCP-port-check for the GoGo modegroup.18 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

SLB CommandsCommandenable slb L4-port [ftp | http | https | imap4 | ldap |nntp | pop3 | smtp | socks | telnet | tftp | web | www |]enable slb node [all | : [ftp | http | https| imap4 | ldap | nntp | pop3 | smtp | socks | telnet |tftp | web | www | ]]enable slb node [all | ] ping-checkenable slb node [all | : [ftp | http | https| imap4 | ldap | nntp | pop3 | smtp | socks | telnet |tftp | web | www | ]]tcp-port-checkenable slb proxy-client-persistenceenable slb vip [all | | ipaddress : [ftp | http | https | imap4 | ldap | nntp |pop3 | smtp | socks | telnet | tftp | web | www | ]]enable slb vip [all | ] client-persistence{netmask }enable slb vip [all | ] service-checkconfig slb vip [all | ] sticky-persistence{netmask }enable slb vip [all | ] svcdown-resetshow flow-redirect show slb 3dns membersshow slb connections [ipaddress : [ftp |http | https | imap4 | ldap | nntp | pop3 | smtp | socks| telnet | tftp | web | www | ] | vip ]show slb esrpshow slb failovershow slb globalshow slb gogo-mode {configuration}show slb L4-port [ftp | http | https | imap4 | ldap |nntp | pop3 | smtp | socks | telnet | tftp | web | www |]DescriptionEnables an SLB port.Enables one or all nodes.Enables layer 3 ping-check.Enables layer 4 TCP-port-check.Enables proxy client persistence.Enables one or all virtual servers.Enables client persistence.Enables layer 7 service check.Enables the sticky persistence feature and specifiesthe client address mask.Enables svcdown-reset.Displays the current flow redirect configuration andstatistics.Displays the current connection information betweenthe switch and the 3DNS querier.Displays information on current connections.Displays SLB configuration for ESRP.Displays SLB failover configuration and status.Displays the current SLB global configurationinformation.Displays GoGo mode ping-check, TCP-port-check,and service-check status.Displays the SLB configuration for the active layer 4ports.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 19

Commands for Status Monitoring and StatisticsCommandshow slb node { [ftp | http | https | imap4| ldap | nntp | pop3 | smtp | socks | telnet | tftp | web| www | ]}show slb persistenceshow slb pool show slb stats [pool | vip ]show slb vip [ | ipaddress :[ftp | http | https | imap4 | ldap | nntp | pop3 | smtp |socks | telnet | tftp | web | www | ]] {detail}unconfig slb allunconfig slb gogo-mode health-checkunconfig slb gogo-mode service-check [all | ftp | http | nntp | pop3 | smtp |telnet | ]unconfig slb vip [all | ] service-checkDescriptionDisplays node configuration and status.Displays persistence status of existing clients.Displays the current SLB pool configuration andstatus.Displays the current SLB pool connection status.Displays the current virtual server configuration andstatistics.Resets SLB global defaults and clears the SLBconfiguration.Disables and deletes all the ping-check,TCP-port-check, and service-check configurations forthis GoGo mode group.Disables and deletes the GoGo mode service-checkconfiguration.Disables and deletes the service check configuration.Commands for Status Monitoring and StatisticsCommandclear countersclear log {diag-status | static}config flowstats export add [ |] config flowstats export delete [| ] config flowstats filter {aggregation} {export} ports [ingress | egress]config flowstats source ipaddress DescriptionClears all switch statistics and port counters,including port packet statistics, bridging statistics, IPstatistics, and MPLS statistics.Clears the log database.Adds a flow-collector device to an export group towhich NetFlow datagrams are exported.Removes a flow-collector device from an exportgroup to which NetFlow datagrams are exported.Configures a flow record filter for the specified ports.Configures the IP address that is to be used as thesource IP address for NetFlow datagrams to beexported.20 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Commands for Status Monitoring and StatisticsCommandconfig flowstats timeout ports [ |all]config log display {}config sys-health-check alarm-level [log |system-down | traps | auto-recovery [online | offline]]config sys-health-check auto-recovery [offline | online]config syslog {add} [ | ] {}config syslog delete [ | ] {}config sys-recovery-level [none | [critical | all][shutdown | reboot | msm-failover | system-dump[shutdown | reboot | msm-failover |maintenance-mode]]]disable cli-config-loggingdisable flowstatsdisable flowstats filter ports {ingress | egress}disable flowstats ping-check {}disable flowstats ports disable log displaydisable rmondisable sys-health-checkdisable syslogenable cli-config-loggingenable flowstatsenable flowstats filter ports {ingress | egress}enable flowstats ping-check {}DescriptionConfigures the timeout value for flow records on thespecified ports.Configures the real-time log display.Configures the system health checker.Configures the system health checker.Configures the syslog host address, and filtersmessages to be sent to the syslog host.Deletes a syslog host address.Configures a recovery option for instances where anexception occurs in <strong><strong>Extreme</strong>Ware</strong>.Disables the logging of CLI configuration commandsto the switch Syslog.Disables the flow statistics feature on the switch.Disables a specified flow record filter for the specifiedports.Disables the flow statistics ping-check function for aspecified group of collector devices.Disables the flow statistics function on the specifiedports.Disables the log display.Disables the collection of RMON statistics on theswitch.Disables the BlackDiamond system health checker.Disables logging to a remote syslog host.Enables the logging of CLI configuration commandsto the Syslog for auditing purposes.Enables the flow statistics feature on the switch.Enables a specified flow record filter for the specifiedports.Enables the flow statistics ping-check function for aspecified group of collector devices.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 21

Commands for Status Monitoring and StatisticsCommandenable flowstats ports enable log displayenable rmonenable sys-backplane-diagenable sys-health-checkenable syslogshow flowstats { | export {}}show flowstats export [ detail |{detail} ]show flowstats show log {chronological} {}show log configshow memory {detail}show ports {} rxerrorsshow ports {} statsshow ports {} txerrorsshow version {detail}unconfig flowstats filter unconfig flowstats {filter ports }{ports [ | all]}DescriptionEnables the flow statistics function on the specifiedports.Configures the system to maintain a running real-timedisplay of log messages on the console.Enables the collection of RMON statistics on theswitch.Enables system run time backplane diagnostics,which is done by periodically sending diagnosticpackets between MSM and I/O modules while thesystem is running.Enables the BlackDiamond system health checker.Enables logging to a remote syslog host.Displays status information for the flow statisticsfunction.Displays configuration information an export group.Displays status information for the flow statisticsfunction.Displays the current snapshot of the log.Displays the log configuration.Displays the current system memory information.Displays real-time receive error statistics.Displays real-time port statistics.Displays real-time transmit error statistics.Displays the hardware serial numbers and versions,and software versions currently running on theswitch, and (if applicable) the modules..Removes the filter specification for the specified filter.Resets the flow statistics configuration parameters forthe specified ports to their default values.22 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Security CommandsSecurity CommandsCommandconfig access-profile add{} {permit | deny} [ipaddress {exact} | as-path | bgp-community [internet | no-export | no-advertise |no-export-subconfed | | number] | ipxnet | ipxsap | vlan]config access-profile deleteconfig access-profile mode [permit |deny | none]config cpu-dos-protect [alert-threshold ] [notice-threshold ][timeout ] [messages [on | off]][filter-precedence ] [filter-type-allowed{destination | source | destination source} {protocol}]config cpu-dos-protect trusted-ports [add | delete | all | none]config netlogin base-url config netlogin redirect-url config radius [primary | secondary] server[ | ] {} client-ip[]config radius [primary | secondary] shared-secret{encrypted} []config radius timeout config radius-accounting [primary | secondary] server[ | ] {} client-ip[]config radius-accounting [primary | secondary]shared-secret {encrypted} []config radius-accounting timeout config route-map add [permit | deny] {match-one | match-all} {setlpm-routing | set iphost-routing}DescriptionAdds an entry to the access profile.Deletes an access profile entry using the sequencenumber.Configures the access profile mode to permit or denyaccess, or to require per-entry access control.Configures denial of service protection.Configures ports as trusted, so that denial of serviceprotection is not applied to port.Configures the base URL for Network Login.Configures the redirect URL for Network Login.Configures the primary and secondary RADIUSauthentication server.Configures the authentication string used tocommunicate with the RADIUS authentication server.Configures the timeout interval for RADIUSauthentication requests.Configures the RADIUS accounting server.Configures the authentication string used tocommunicate with the RADIUS accounting server.Configures the timeout interval forRADIUS-Accounting authentication requests.Adds an entry in the route map with the specifiedsequence number and action.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 23

Security CommandsCommandconfig route-map addgoto config route-map addmatch [nlri-list | as-path[access-profile | ] |community [access-profile |: | number |no-advertise | no-export | no-export-subconfed] |next-hop | med | tag | origin [igp | egp | incomplete]]config route-map addset [as-path | community[[access-profile |: | number |no-advertise | no-export | no-export-subconfed] |remove | [add | delete] [access-profile | : | number | no-advertise | no-export |no-export-subconfed]] | next-hop | med[internal | | remove | [add | delete]] local-preference | weight | origin [igp | egp | incomplete] | tag | accounting index value | cost | cost-type[ase-type-1 | ase-type-2]]DescriptionConfigures a route map goto statement to transferevaluation to another route map.Configures a route map match statement.Configures a route map set entry.config route-map delete Deletes an entry from the route map.config route-map delete Deletes a route map goto statement.goto config route-map delete Deletes a route map match statement.match [nlri-list | as-path[access-profile | ] |community [access-profile |: | number |no-advertise | no-export | no-export-subconfed] |next-hop | med | tag | origin [igp | egp | incomplete]]24 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Security CommandsCommandconfig route-map deleteset [as-path | community[[access-profile |: | number |no-advertise | no-export | no-export-subconfed] |remove | [add | delete] [access-profile | : | number | no-advertise | no-export |no-export-subconfed]] | next-hop | med | local-preference | weight | origin [igp | egp | incomplete] | tag | accounting index value | cost | cost-type [ase-type-1 |ase-type-2]]config ssh2 key {pregenerated}config tacacs [primary | secondary] server[ | ] {} client-ipconfig tacacs [primary | secondary] shared-secret{encrypted} config tacacs timeout config tacacs-accounting [primary | secondary] server[ | ] {} client-ipconfig tacacs-accounting [primary | secondary]shared-secret {encrypted} config tacacs-accounting timeout config vlan access-profile[ | none]config vlan dhcp-address-range - config vlan dhcp-lease-timer config vlan dhcp-options [default-gateway |dns-server | wins-server] DescriptionDeletes a route map set entry.Generates the Secure Shell 2 (SSH2) host key.Configures the server information for a TACACS+authentication server.Configures the shared secret string used tocommunicate with the TACACS+ authenticationserver.Configures the timeout interval for TACAS+authentication requests.Configures the TACACS+ accounting server.Configures the shared secret string used tocommunicate with the TACACS+ accounting server.Configures the timeout interval for TACACS+accounting authentication requests.Configures a BlackDiamond 6800 running<strong><strong>Extreme</strong>Ware</strong> 4.1 to control the routing of trafficbetween VLANs.Configures a set of DHCP addresses for a VLAN.Configures the timer value in seconds returned aspart of the DHCP response.Configures the DHCP options returned as part of theDHCP response by a switch configured as a DHCPserver.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 25

Security CommandsCommandconfig vlan netlogin-lease-timercreate access-list icmp destination[/ | any] source[/ | any] type code [permit | deny]{} {precedence }create access-list ip destination[/ | any] source[/ | any] [permit{} | deny] ports [ | any]{precedence }create access-list tcp destination[/ | any] ip-port [ |range | any]source [/ | any] ip-port[ | range |any] [permit | permit-established | deny]ports [ | any] {precedence}create access-list udp destination[/ | any] ip-port [ |range | any]source [/ | any] ip-port[ | range |any] [permit | deny] ports [ |any] {precedence }create access-profile type[ipaddress | ipx-node | ipx-net | ipx-sap | as-path |bgp-community | vlan]create route-map delete access-list [ | all]delete access-profile delete route-map disable access-list [counter | log]disable cpu-dos-protectdisable dhcp ports vlan disable netlogin logout-privilegedisable netloginDescriptionConfigures the timer value returned as part of theDHCP response for clients attached to Network-Loginenabled ports.Creates a named IP access list that applies to ICMPtraffic.Creates a named IP access list that applies to all IPtraffic.Creates a named IP access list that applies to TCPtraffic.Creates a named IP access list that applies to UDPtraffic.Creates an access profile.Creates a route map statement.Deletes an access list.Deletes an access profile.Deletes a route map statement from the route map.Disables message logging or the collection ofaccess-list statistics.Disables denial of service protection.Disables DHCP on a specified port in a VLAN.Disables network login logout privilege.Disables network login.26 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Security CommandsCommanddisable netlogin ports vlan disable netlogin session-refreshdisable radiusdisable radius-accountingdisable ssh2disable tacacsdisable tacacs-accountingdisable tacacs-authorizationenable access-list [counter | log]enable cpu-dos-protectenable cpu-dos-protect simulatedenable netloginenable netlogin logout-privilegeenable netlogin ports vlan enable netlogin session-refresh enable radiusenable radius-accountingenable ssh2 {access-profile [ | none]}{port }enable tacacsenable tacacs-accountingenable tacacs-authorizationscp2 {cipher [3des | blowfish]} {port }{debug }@ [ | ] :[configuration {incremental} | image [primary |secondary] | bootrom]scp2 {cipher [3des | blowfish]} {port }{debug } configuration @[ | ]:show access-list { | port }show access-list-fdbDescriptionDisables network login on a specified port in a VLAN.Disables Network Login session refresh.Disables the RADIUS client.Disables RADIUS accounting.Enables incoming SSH2 Telnet sessions.Disables TACACS+ for authentication andauthorization.Disables TACACS+ accounting.Disables CLI command authorization.Enables message logging or the collection ofaccess-list statistics.Enables denial of service protection.Enables simulated denial of service protection.Enables network login.Enables network login logout privilege.Enables network login on a specified port in a VLAN.Disables Network Login session refresh.Enables the RADIUS client on the switch.Enables RADIUS accounting.Enables incoming SSH2 Telnet sessions.Enables TACACS+.Enables TACACS+ accounting.Enables CLI command authorization.Copies a file from a remote system to the switchusing SCP2.Copies the configuration file from the switch to aremote system using SCP2.Displays access list information and real-timestatistics.Displays the hardware access control list mapping.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 27

Security CommandsCommandshow access-list-monitorshow access-profile {}show cpu-dos-protectshow netloginshow netlogin ports vlan show radiusshow radius-accountingshow route-map show tacacsshow tacacs-accountingssh2 {cipher [3des | blowfish]} {port }{compression [on | off]}{user } {debug }{@} [ | ] {}unconfig cpu-dos-protectunconfig radius {server [primary | secondary]}unconfig radius-accounting {server [primary |secondary]}unconfig tacacs {server [primary | secondary]}unconfig tacacs-accounting {server [primary |secondary]}DescriptionInitiates the access-list information display, andrefreshes it until discontinued.Displays access-profile related information for theswitch.Displays the status of denial of service protection.Shows all network login parameters.Shows network login information on a specified portin a VLAN.Displays the current RADIUS client configuration andstatistics.Displays the current RADIUS accounting clientconfiguration and statistics.Displays route map information.Displays the current TACACS+ configuration andstatistics.Displays the current TACACS+ accounting clientconfiguration and statistics.Transmits a command to a remote system using anSSH2 connection.Resets denial of service protection configuration todefault values.Unconfigures the RADIUS client configuration.Unconfigures the RADIUS accounting clientconfiguration.Unconfigures the TACACS+ client configuration.Unconfigures the TACACS+ accounting clientconfiguration.28 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

EAPS CommandsEAPS CommandsCommandconfig eaps add control vlan config eaps add protect vlan config eaps delete control vlan config eaps delete protect vlan config eaps failtime config eaps hellotime config eaps mode [master | transit]config eaps [primary | secondary]port config eaps name create eaps delete eaps disable eaps {}enable eaps {}show eaps {} {detail}show eaps summaryunconfig eaps [primary | secondary] portDescriptionAdds the specified control VLAN to the specifiedEAPS domain.Adds the specified protected VLAN to the specifiedEAPS domain.Deletes the specified control VLAN from the specifiedEAPS domain.Deletes the specified protected VLAN from thespecified EAPS domain.Configures the value of the fail timer the master nodeused for the EAPS health-check packet.Configures the value of the hello timer the masternode used for the EAPS health-check packet.Configures the switch as either the EAPS masternode or as an EAPS transit node for the specifieddomain.Configures a node port as the primary or secondaryport for the specified EAPS domain.Renames an existing EAPS domain.Creates an EAPS domain with the specified name.Deletes the EAPS domain with the specified name.Disables the EAPS function for a named domain orfor an entire switch.Enables the EAPS function for a named domain orfor an entire switch.Displays EAPS status information.Displays summary information on one or more EAPSdomains.Sets the specified port’s internal configuration state toINVALID.STP CommandsCommandconfig stpd add vlan {ports [dot1d | emistp | pvst-plus]DescriptionAdds one or more VLANs, or a list of ports within aVLAN, to a specified STPD.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 29

STP CommandsCommandconfig stpd delete vlan {ports config stpd forwarddelayconfig stpd hellotimeconfig stpd maxageconfig stpd ports cost []config stpd ports mode {dot1d| emistp | pvst-plus} []config stpd ports priority []config stpd priority config stpd tag config vlan add ports stpd [dot1d | emistp | pvst-plus]create stpd delete stpd disable ignore-bpdu vlan disable ignore-stp vlan disable stpd {}DescriptionDeletes one or more ports in the specified VLANfrom an STPD.Specifies the time (in seconds) that the ports in thisSTPD spend in the listening and learning stateswhen the switch is the Root Bridge.Specifies the time delay (in seconds) between thetransmission of Bridge Protocol Data Units (BPDUs)from this STPD when it is the Root Bridge.Specifies the maximum age of a BPDU in thespecified STPD.Specifies the path cost of the port in the specifiedSTPD.Configures the STP mode of operation for thespecified port list.Specifies the port priority of the port in the specifiedSTPD.Specifies the bridge priority of the STPD.Assigns an StpdID to an STPD.Adds a list of ports within a VLAN to a specifiedSTPD.Creates a user-defined STPD.Removes a user-defined STPD from the switch.Allows the switch to recognize STP BDUs.Allows a VLAN to use STP port information.Disables the STP mechanism on a particular STPDor for all STPDs.Disables STP on one or more ports.disable stpd ports []disable stpd rapid-root-failover Disables rapid root failover for STP recovery times.enable ignore-bpdu vlan Configures the switch to ignore the STP BPDUs,which prevents ports in the VLAN from becomingpart of an STPD.enable ignore-stp vlan enable stpd {}enable stpd rapid-root-failoverenable stpd ports Configures the switch to ignore the STP protocol andnot block traffic for the VLAN(s).Enables the STP protocol for one or all STPDs.Enables rapid root failover for faster STP recoverytimes.Enables the STP protocol on one or more ports.30 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

ESRP CommandsCommandshow stpd {detail | }show stpd ports [ |all] {detail}unconfig stpd { | all}DescriptionDisplays STPD settings on the switch.Displays the STP state of a port.Restores default STP values to a particular STPD orall STPDs.ESRP CommandsCommandconfig esrp port-mode [host | normal] ports {don’t-count}config vlan add domain-membervlan config vlan add ports [ | all]no-restartconfig vlan add ports [ | all]restartconfig vlan add track-bgp failoverconfig vlan add track-diagnostic failoverconfig vlan add track-environmentfailover config vlan add track-iproute/config vlan add track-ospf failoverconfig vlan add track-ping frequency miss config vlan add track-rip failoverconfig vlan add track-vlanconfig vlan deletedomain-member vlan config vlan delete track-bgpDescriptionConfigures the ESRP port mode for ESRP hostattach.Adds a VLAN to an ESRP domain.Disables port restart for a port.Configures ESRP to restart ports if there is a statechange and the downstream switch is from anothervendor.Configures an ESRP-enabled VLAN to track anyavailable BGP route.Configures backplane diagnostics failure tracking foran ESRP-enabled VLAN.Configures an ESRP-enabled VLAN to trackenvironmental failures.Configures an ESRP-enabled VLAN or a VRRPVLAN to track a route entry in the kernel route table.Configures an ESRP-enabled VLAN to track anyavailable OSPF route.Configures an ESRP-enabled VLAN or VRRP VLANto track an external gateway using ping.Configures an ESRP-enabled VLAN to track anyavailable RIP route.Configures an ESRP-enabled VLAN or a VRRPVLAN to track port connectivity to a specified VLAN.Deletes a VLAN from an ESRP domain.Disables BGP route tracking for an ESRP-enabledVLAN.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 31

VRRP CommandsCommandconfig vlan delete track-diagnosticconfig vlan delete track-environmentconfig vlan delete track-iproute/config vlan delete track-ospfconfig vlan delete track-pingconfig vlan delete track-ripconfig vlan delete track-vlanconfig vlan esrp esrp-election[ports-track-priority | ports-track-priority-mac |track-ports-priority | track-ports-priority-mac |priority-ports-track-mac | priority-track-ports-mac |priority-mac-only]config vlan esrp esrp-neutral-timeoutconfig vlan esrp priority config vlan esrp timer {esrp-nbr-timeout }DescriptionDisables diagnostics failure tracking for anESRP-enabled VLAN.Disables environmental failure tracking.Disables route table entry tracking for anESRP-enabled VLAN or a VRRP VLAN.Disables OSPF route tracking for an ESRP-enabledVLAN.Disables the tracking of an external gateway usingping.Disables RIP route tracking for an ESRP-enabledVLAN.Disables the tracking of port connectivity to aspecified VLAN.Configures the election algorithm on the switch.Configures the ESRP neutral timeout.Configures the ESRP priority.Configures the ESRP timer values.config vlan esrp group Configures the group number to be used for theESRP VLAN.disable esrp vlan Disables ESRP on a VLAN.enable esrp vlan Enables ESRP on a VLAN.show esrp {detail}Displays ESRP configuration information.show esrp-aware vlan Displays ESRP-aware information for a specificVLAN.show esrp vlan {counters}Displays ESRP configuration information for a specificVLAN.VRRP CommandsCommandconfig vrrp add vlan DescriptionEnables VRRP on a particular VLAN.32 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IP Unicast CommandsCommandconfig vrrp delete [vlan | all]config vrrp vlan add [master | backup]vrid config vrrp vlan authentication [none |simple-password ]config vrrp vlan delete vrid [| all]config vrrp vlan vrid [priority | advertisement-interval | dont_preempt | preempt]disable vrrpenable vrrpshow vrrp [vlan | all] {detail}show vrrp vlan statsDescriptionDisables VRRP on one or all VLANs.Configures the VRID instance on the VRRP VLANas master or backup.Configures VRRP authentication.Deletes one or all VRIDs.Configures VRRP parameters.Disables VRRP on the switch.Enables VRRP on the switch.Displays VRRP configuration information for one orall VLANs.Displays VRRP statistics for a particular VLAN.IP Unicast CommandsCommandclear iparp { | vlan }clear ipfdb { | vlan }config bootprelay add config bootprelay delete [ | all]config iparp add config iparp add proxy {}{} {always}config iparp delete config iparp delete proxy [ {} |all]config iparp max-entries DescriptionRemoves dynamic entries in the IP ARP table.Removes the dynamic entries in the IP forwardingdatabase.Configures the addresses to which BOOTP requestsshould be directed.Removes one or all IP destination addresses forforwarding BOOTP packets.Adds a permanent entry to the ARP table. Specifythe IP address and MAC address of the entry.Configures the switch to respond to ARP Requestson behalf of devices that are incapable of doing so.Up to 64 proxy ARP entries can be configured.Deletes an entry from the ARP table. Specify the IPaddress of the entry.Deletes one or all proxy ARP entries.Configures the maximum allowed IP ARP entries.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 33

IP Unicast CommandsCommandconfig iparp max-pending-entries config iparp timeout config ip-down-vlan-action [consume | drop | forward]config iproute add config iproute add blackhole config iproute add blackhole defaultconfig iproute add default {}config iproute delete config iproute delete blackhole config iproute delete blackhole defaultconfig iproute delete default config iproute priority [rip | bootp | icmp | static |ospf-intra | ospf-inter | ospf-as-external | ospf-extern1| ospf-extern2] config iproute route-map [bgp | direct | e-bgp | i-bgp |ospf | ospf-extern1 | ospf-extern2 | ospf-inter |ospf-intra | rip | static] [ | none]config irdp [multicast | broadcast]config irdp config tcp-sync-rate config udp-profile add [vlan | ip address ]config udp-profile delete [vlan | ip address ]DescriptionConfigures the maximum allowed incomplete IP ARPentries.Configures the IP ARP timeout period.Configures the forwarding functionality destined tononworking IP interfaces.Adds a static address to the routing table.Adds a blackhole address to the routing table. Alltraffic destined for a configured blackhole IP addressis silently dropped, and no Internet Control MessageProtocol (ICMP) message is generated.Adds a default blackhole route to the routing table.All traffic destined for an unknown IP destination issilently dropped, and no Internet Control MessageProtocol (ICMP) message is generated.Adds a default gateway to the routing table.Deletes a static address from the routing table.Deletes a blackhole address from the routing table.Deletes a default blackhole route from the routingtable.Deletes a default gateway from the routing table.Changes the priority for all routes from a particularroute origin.Configures the contents of the IP routing table.Configures the destination address of the routeradvertisement messages.Configures the router advertisement message timers,using seconds.Configures a limit for the switch to process TCPconnection requests.Configures a UDP-forwarding profile.Deletes a forwarding entry from the specifiedUDP-profile.34 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IP Unicast CommandsCommandconfig vlan subvlan-address-range - config vlan udp-profile config vlan [add | delete]secondary-ip {}config vlan [add | delete] subvlancreate udp-profile delete udp-profile disable bootp vlan [ | all]disable bootprelaydisable icmp address-mask {vlan }disable icmp parameter-problem {vlan }disable icmp port-unreachables {vlan }disable icmp redirects {vlan }disable icmp time-exceeded {vlan }disable icmp timestamp {vlan }disable icmp unreachables {vlan }disable icmp useredirectsdisable iparp checkingdisable iparp refreshDescriptionConfigures sub-VLAN address ranges on eachsub-VLAN to prohibit the entry of IP addresses fromhosts outside of the configured range.Assigns a UDP-forwarding profile to the sourceVLAN.Adds or deletes a secondary IP address to thesuper-VLAN for responding to ICMP ping requests.Adds or deletes a sub-VLAN to a super-VLAN.Creates a UDP-forwarding destination profile thatdescribes the types of UDP packets (by port number)that are used, and where they are to be forwarded.Deletes a UDP-forwarding profile.Disables the generation and processing of BOOTPpackets on a VLAN to obtain an IP address for theVLAN from a BOOTP server.Disables the BOOTP relay function.Disables the generation of an ICMP address-maskreply on one or all VLANs.Disables the generation of an ICMPparameter-problem message on one or all VLANs.Disables the generation of ICMP port unreachablemessages on one or all VLANs.Disables generation of ICMP redirect messages onone or all VLANs.Disables the generation of ICMP time exceededmessages on one or all VLANs.Disables the generation of an ICMP timestampresponse on one or all VLANs.Disables the generation of ICMP unreachablemessages on one or all VLANs.Disables the modification of route table informationwhen an ICMP redirect message is received.Disable checking if the ARP Request source IPaddress is within the range of the local interface orVLAN domain.Disables IP ARP to refresh its IP ARP entries beforetiming out.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 35

IP Unicast CommandsCommanddisable ipforwarding {[broadcast |fast-direct-broadcast | ignore-broadcast]} {vlan }disable ipforwarding lpm-routing {vlan }disable ip-option loose-source-routedisable ip-option record-routedisable ip-option record-timestampdisable ip-option strict-source-routedisable ip-option use-router-alertdisable iproute sharingdisable irdp {vlan }disable loopback-mode vlan [ | all]disable multinettingdisable subvlan-proxy-arp vlan [ |all]disable udp-echo-serverenable bootp vlan [ | all]enable bootprelayenable icmp address-mask {vlan }enable icmp parameter-problem {vlan }enable icmp port-unreachables {vlan }DescriptionDisables routing (or routing of broadcasts) for one orall VLANs. If no argument is provided, disablesrouting for all VLANs.Disables Longest Prefix Match (LPM) routing for thespecified VLAN. If no argument is provided, disablesLPM routing for all VLANs except the managementVLAN.Disables the loose source route IP option.Disables the record route IP option.Disables the record timestamp IP option.Disables the strict source route IP option.Disables the generation of the router alert IP option.Disables load sharing if multiple routes to the samedestination are available. When multiple routes to thesame destination are available, load sharing can beenabled to distribute the traffic to multiple destinationgateways. Only paths with the same lowest cost iswill be shared.Disables the generation of ICMP routeradvertisement messages on one or all VLANs.Disallows a VLAN to be placed in the UP statewithout an external active port. This allows(disallows) the VLANs routing interface to becomeactive.Disables IP multinetting on the system.Disables the automatic entry of sub-VLANinformation in the proxy ARP table.Disables UDP echo server support.Enables the generation and processing of BOOTPpackets on a VLAN to obtain an IP address for theVLAN from a BOOTP server.Enables the BOOTP relay function.Enables the generation of an ICMP address-maskreply on one or all VLANs.Enables the generation of an ICMPparameter-problem message on one or all VLANs.Enables the generation of ICMP port unreachablemessages on one or all VLANs.36 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IP Unicast CommandsCommandenable icmp redirects {vlan }enable icmp time-exceeded {vlan }enable icmp timestamp {vlan }enable icmp unreachables {vlan }enable icmp useredirectsenable iparp checkingenable iparp refreshenable iparp refreshenable ipforwarding {[broadcast |fast-direct-broadcast | ignore-broadcast]} {vlan }enable ipforwarding lpm-routing {vlan }enable ip-option loose-source-routeenable ip-option record-routeenable ip-option record-timestampenable ip-option strict-source-routeenable ip-option use-router-alertenable iproute sharingenable irdp {vlan }enable loopback-mode vlan [ | all]DescriptionEnables generation of ICMP redirect messages onone or all VLANs.Enables the generation of ICMP time exceededmessages on one or all VLANs.Enables the generation of an ICMP timestampresponse on one or all VLANs.Enables the generation of ICMP unreachablemessages on one or all VLANs.Enables the modification of route table informationwhen an ICMP redirect message is received.Enables checking if the ARP Request source IPaddress is within the range of the local interface orVLAN domain.Enables IP ARP to refresh its IP ARP entries beforetiming out.Enables IP routing or IP broadcast forwarding for oneor all VLANs. If no argument is provided, enables IProuting for all VLANs that have been configured withan IP address.Enables Longest Prefix Match (LPM) routing for thespecified VLAN. If no argument is provided, enablesLPM routing for all VLANs except the managementVLAN.Enables the loose source route IP option.Enables the record route IP option.Enables the record timestamp IP option.Enables the strict source route IP option.Enables the generation of the router alert IP option.Enables load sharing if multiple routes to the samedestination are available. When multiple routes to thesame destination are available, load sharing can beenabled to distribute the traffic to multiple destinationgateways. Only paths with the same lowest cost iswill be shared.Enables the generation of ICMP router advertisementmessages on one or all VLANs.Allows a VLAN to be placed in the UP state withoutan external active port. This allows (disallows) theVLANs routing interface to become active.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 37

IP Unicast CommandsCommandenable multinettingenable subvlan-proxy-arp vlan [ |all]enable udp-echo-serverrtlookup [ | ]run ipfdb-check [index | {}] {extended} {detail}show iparp { | | vlan | permanent}show iparp proxy { {}}show ipconfig {vlan } {detail}show ipfdb { | vlan }show iproute {priority | vlan | permanent| | route-map |origin [direct |static | blackhole | rip | bootp | icmp | ospf-intra |ospf-inter | ospf-as-external | ospf-extern1 |ospf-extern2]} {mpls} {sorted}show ipstats {vlan }show udp-profile {}unconfig icmpunconfig iparpunconfig irdpunconfig udp-profile vlan [ | all]DescriptionEnables IP multinetting on the system.Enables the automatic entry of sub-VLAN informationin the proxy ARP table.Enables UDP echo server support.Performs a look-up in the route table to determinethe best route to reach an IP address or host.Checks IP FDB entries for consistency.Displays the IP Address Resolution Protocol (ARP)table. You can filter the display by IP address, MACaddress, VLAN, or permanent entries.Displays the proxy ARP table.Displays configuration information for one or moreVLANs.Displays the contents of the IP forwarding database(FDB) table. Used for technical support purposes. Ifno option is specified, all IP FDB entries aredisplayed.Displays the contents of the IP routing table or theroute origin priority.Displays IP statistics for the CPU for the switch or fora particular VLAN.Displays the UDP profile information.Resets all ICMP settings to the default values.Resets IP ARP timeout, IP ARP max-entries, and IPARP max-pending-entries to their default values.Resets all router advertisement settings to the defaultvalues.Removes the UDP-forwarding profile configuration forone or all VLANs.38 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IGP CommandsIGP CommandsCommandclear isis adjacency {level-1 | level-2 | level-1-2 |point-to-point}{vlan }clear isis lsdb {level-2 | area }{system-identifier | sysName} {type [non-pseudonode |pseudonode {circuit-identifier }]}{lsp-number }config isis [level-2 | area ] addconfig isis add vlan [ | all] [[level-1 |level-1-2] area | level-2-only]config isis area adddomain-summary / [advertise {cost} | noadvert]config isis area deletedomain-summary /config isis area domain-filter[ | none]config isis [level-2 | area ]authentication [simple-password {no-check} | hmac-md5 {no-check} | none]config isis [level-2 | area ] deleteconfig isis delete vlan [ | all]config isis [level-2 | area ]external-filter [ | none]config isis lsp-holddown-interval config isis lsp-lifetime config isis lsp-refresh-interval config isis [level-2 | area ]metric-size [regular | wide | both]config isis spf-hold-time DescriptionClear the IS-IS adjacencies currently present.Clears the IS-IS LSDB of the level 2 subdomain or alevel 1 area.Adds an IS-IS area address for a level 2 subdomainor a level 1 area.Enables IS-IS routing on a routing interface.Adds a summary address to be applied on the IPreachability information from this level 1 area, whichwill be included in the level 2 LSP.Deletes a summary address to be applied on the IPreachability information from this level 1 area, whichwill be included in the level 2 LSP.Configures an access profile to filter the IPreachability information from this level 1 area that willbe included in the level 2 LSP:Configures authentication for a level 2 subdomain ora level 1 area.Deletes an IS-IS area address for a level 2subdomain or a level 1 area.Disables IS-IS routing on a routing interface.Configures an access profile to filter routes beingredistributed in to the level 1 area or level 2subdomain.Configures the LSP hold down interval.Configures the LSP lifetime.Configures the LSP refresh interval.Configures the size of the metric originated in theLSP for the level 2 subdomain or level 1 area.Configures the shortest-path-first hold time.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 39

IGP CommandsCommandconfig isis system-identifier config isis [vlan | all] [level-1| level-2 |level-1-2] [passive | non-passive]config isis vlan [level-1 | level-2 |level-1-2] authentication [simple-password {no-check} | hmac-md5 {no-check} | none]config isis [vlan | all] [level-1| level-2 |level-1-2] cost config isis [vlan | all] [level-1| level-2 |level-1-2] hello-multiplier config isis [vlan | all] [level-1| level-2 |level-1-2] priority config isis [vlan | all] [level-1| level-2 |level-1-2] timer [csnp | hellotime]config ospf [area | vlan [ | all]] cost [automatic | ]config ospf [area | vlan [ | all]] priority config ospf [vlan | area | virtual-link ]authentication [simple-password | md5 | none | encrypted[simple-password | md5 ]config ospf [vlan | area | virtual-link ] timer {}Configures a 6 hex octet system identifier for IS-ISrouting.Configures the different IS-IS levels on a routinginterface as passive or non-passive.Configures authentication on a VLAN for the IS-ISlevels on a routing interface:Configures the IS-IS metric for the different IS-ISlevels of a routing interface.Configures the number of IS-IS Hello packets anIS-IS neighbor at a particular level on this routinginterface must miss before the it declares that theadjacency with this system is down.Configures the IS-IS priority for the IS-IS levels of arouting interface.Configures the IS-IS timer interval for the differentlevels of a routing interface.Configures the cost metric of one or all interface(s).Configures the priority used in the designatedrouter-election algorithm for one or all OSPFinterface(s) for all the interfaces within the area.Specifies the authentication password (up to eightcharacters) or Message Digest 5 (MD5) key for oneor all interfaces in an area.Configures the timers for one interface or allinterfaces in the same OSPF area.config ospf add virtual-link Adds a virtual link connected to another ABR.config ospf add vlan [ | all] area {passive}config ospf add vlan [ | all] area link-type [auto | broadcast | point-to-point]{passive}DescriptionEnables OSPF on one or all VLANs (routerinterfaces).Configures the OSPF link type.40 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IGP CommandsCommandconfig ospf area external-filter[ |none]config ospf area interarea-filter[ | none]config ospf area add range [advertise | noadvertise] {type-3| type-7}config ospf area delete range config ospf area normalconfig ospf area nssa [summary |nosummary] stub-default-cost {translate}config ospf area stub [summary |nosummary] stub-default-cost config ospf asbr-filter [ | none]config ospf ase-limit {timeout }config ospf ase-summary add cost {}config ospf ase-summary delete config ospf delete virtual-link config ospf delete vlan [ | all]config ospf direct-filter [ | none]config ospf lsa-batching-timer config ospf metric-table 10M 100M 1G {10G }config ospf routerid [automatic | ]config ospf spf-hold-time config ospf [all | vlan ] area DescriptionConfigures an external filter policy.Configures a global inter-area filter policy.Configures a range of IP addresses in an OSPF areato be aggregated.Deletes a range of aggregated IP addresses in anOSPF area.Configures an OSFP area as a normal area.Configures an OSPF area as an NSSA.Configures an OSPF area as a stub area.Configures a route filter for all ASBR routers.Configures the AS-external LSA limit and overflowduration associated with OSPF database overflowhandling.Aggregates AS-external routes in a specified addressrange.Deletes an aggregated OSPF external route.Removes a virtual link.Disables OSPF on one or all VLANs (routerinterfaces).Configures a route filter for direct routes.Configures the OSPF LSA batching interval.Configures the automatic interface costs for 10 Mbps,100 Mbps, 1 Gbps, and 10 Gbps interfaces.Configures the OSPF router ID. If automatic isspecified, the switch uses the largest IP interfaceaddress as the OSPF router ID.Configures the minimum number of seconds betweenShortest Path First (SPF) recalculations.Associates a VLAN (router interface) with an OSPFarea. By default, all router interfaces are associatedwith area<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 41

IGP CommandsCommandconfig ospf vlan neighbor addconfig ospf vlan neighbor deleteconfig ospf vlan timer {}config rip add vlan [ | all]config rip delete vlan [ | all]config rip garbagetime {}config rip routetimeout {}config rip rxmode [none | v1only | v2only | any] {vlan}config rip txmode [none | v1only | v1comp | v2only]{vlan }config rip updatetime {}config rip vlan [ | all] cost config rip vlan [ | all] export-filter[ | none]config rip vlan [ | all] import-filter[ | none]config rip vlan [ | all] trusted-gateway[ | none]create isis area create ospf area delete isis area [ | all]delete ospf area [ | all]disable isisdisable isis [level-2 | area ] export[bgp | i-bgp | e-bgp | direct | rip | static | vip | ospf |ospf-intra | ospf-inter | ospf-extern1 | ospf-extern2]disable isis ignore-attached-bitdisable isis [level-2 | area ]originate-defaultDescriptionConfigures the IP address of a point-to-pointneighbor.Deletes the IP address of a point-to-point neighbor.Configures the OSPF wait interval.Configures RIP on an IP interface.Disables RIP on an IP interface.Configures the RIP garbage time.Configures the route timeout period.Changes the RIP receive mode for one or moreVLANs.Changes the RIP transmission mode for one or moreVLANs.Specifies the time interval in seconds within whichRIP sends update packets.Configures the cost (metric) of the interface.Configures RIP to suppress certain routes whenperforming route advertisements.Configures RIP to ignore certain routes received fromits neighbor.Configures a trusted neighbor policy, which uses anaccess profile to determine trusted RIP routerneighbors for the VLAN on the switch running RIP.Creates an IS-IS level 1 area.Creates an OSPF area.Deletes an IS-IS level 1 area.Deletes an OSPF area.Disables IS-IS routing.Disables the redistribution of non-IS-IS routes fromthe kernel routing table into a IS-IS level 2 subdomainor level 1 area:Disables ignoring the attached bit.Disables the origination of an IS-IS default route froma system into the level 1 area or level 2 subdomain.42 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IGP CommandsCommanddisable isis [level-2 | area ]overload {at-startup}disable ospfdisable ospf capability opaque-lsadisable ospf export [bgp | direct | e-bgp | i-bgp | isis |isis-level-1 | isis-level-1-external | isis-level-2 |isis-level-2-external | rip | static | vip]disable ospf originate-router-iddisable ripdisable rip aggregationdisable rip export [direct | isis | isis-level-1 |isis-level-1-external | isis-level-2 | isis-level-2-external| ospf | ospf-extern1 | ospf-extern2 | ospf-inter |ospf-intra | static | vip]disable rip exportstaticdisable rip originate-defaultdisable rip poisonreversedisable rip splithorizondisable rip triggerupdateenable isisenable isis [level-2 | area ] export[bgp | i-bgp | e-bgp | direct | rip | static | vip | ospf |ospf-intra | ospf-inter | ospf-extern1 | ospf-extern2][cost type [internal | external] |]enable isis ignore-attached-bitenable isis [level-2 | area ]originate-default {always} cost type [internal | external]DescriptionDisables the setting of the overload bit in the LSPoriginated by the system in the level 2 subdomain orlevel 1 area.Disables the OSPF process for the router.Disables opaque LSAs across the entire system.Disables redistribution of routes to OSPF.Disables distribution of a route for the OSPF router IDin the router LSA.Disables RIP for the whole router.Disables the RIP aggregation of subnet informationon a RIP version 2 (RIPv2) interface.Disables RIP from redistributing routes from otherrouting protocols.Enables the redistribution of static routes.Unconfigures a default route to be advertised by RIPif no other default route is advertised. If always isspecified, RIP always advertises the default route toits neighbors. If always is not specified, RIP adds adefault route if a reachable default route is not in theroute table.Disables poison reverse algorithm for RIP.Disables the split horizon algorithm for RIP.Disables the trigger update mechanism. Triggeredupdates are a mechanism for immediately notifying arouter’s neighbors when the router adds or deletesroutes or changes their metric.Enables IS-IS routing.Enables the redistribution of non-IS-IS routes from thekernel routing table into a IS-IS level 2 subdomain orlevel 1 area:Enables ignoring the attached bit.Enables the origination of a default route from asystem into the level 1 area or level 2 subdomain.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 43

IGP CommandsCommandenable isis [level-2 | area ]overload {at-startup} {}enable ospfenable ospf capability opaque-lsaenable ospf export [bgp | e-bgp | i-bgp | isis |isis-level-1 | isis-level-1-external | isis-level-2 |isis-level-2-external][cost [ase-type-1 | ase-type-2] {tag} | ]enable ospf export direct [cost [ase-type-1 |ase-type-2] {tag } | ]enable ospf export rip [cost [ase-type-1 |ase-type-2] {tag } | ]enable ospf export static [cost [ase-type-1 |ase-type-2] {tag } | ]enable ospf export vip [cost [ase-type-1 |ase-type-2] {tag } | ]enable ospf originate-default {always} cost [ase-type-1 | ase-type-2] {tag }enable ospf originate-router-idenable ripenable rip aggregationenable rip export [direct | isis | isis-level-1 |isis-level-1-external | isis-level-2 | isis-level-2-external| ospf | ospf-extern1 | ospf-extern2 | ospf-inter |ospf-intra | static | vip] cost {tag }enable rip exportstaticenable rip originate-default {always} cost {tag}enable rip poisonreverseenable rip splithorizonDescriptionEnables the setting of the overload bit in the LSPoriginated by the system in the level 2 subdomain orlevel 1 area.Enables the OSPF process for the router.Enables opaque LSAs across the entire system.Enables redistribution of routes to OSPF.Enables the redistribution of local interface (direct)routes into the OSPF domain. This will not export theloopback address of 12<strong>7.0</strong>.0.1.Enables the redistribution of RIP to OSPF.Enables the redistribution of static routes to OSPF.Enables the redistribution of virtual IP addresses intothe OSPF domain.Enables a default external LSA to be generated byOSPF, if no other default route is originated by OSPFby way of RIP and static route re-distribution.Enables distribution of a route for the OSPF router IDin the router LSA.Enables RIP for the whole router.Enables the RIP aggregation of subnet information ona RIP version 2 (RIPv2) interface.Enables RIP to redistribute routes from other routingfunctions.Enables the redistribution of static routes.Configures a default route to be advertised by RIP ifno other default route is advertised. If always isspecified, RIP always advertises the default route toits neighbors. If always is not specified, RIP adds adefault route if a reachable default route is not in theroute table.Enables poison reverse algorithm for RIP.Enables the split horizon algorithm for RIP.44 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IGP CommandsCommandenable rip triggerupdateshow isisshow isis adjacency {level-2 | area | vlan } {detail}show isis interface {vlan | area} {detail}show isis lsdb {level-2 | area }{system-identifier | sysName} {type [non-pseudonode |pseudonode {circuit-identifier }]}{lsp-number }show ospfshow ospf area show ospf area detailshow ospf ase-summaryshow ospf interfaces detailshow ospf interfaces {vlan | area }show ospf lsdb area [all | [/] |detail | interface | lsid [/] | lstype [all |as-external | external-type7 | network | opaque-area |opaque-global | opaque-local | router | summary-asb|summary-net| routerid [/] | stats | summary| vlan ]show ospf virtual-link { }show rip {detail}show rip stat {detail}show rip stat vlan show rip vlan unconfig ospf {vlan | area }DescriptionEnables the trigger update mechanism. Triggeredupdates are a mechanism for immediately notifying arouter’s neighbors when the router adds or deletesroutes or changes their metric.Displays the system parameters that are configuredfor the system and other system runtime information.Displays the runtime information for all theadjacencies currently present on a VLAN.Displays the interface parameters that are configuredand other interface related runtime information.Displays the contents of the LSDB of the level 2subdomain or a level 1 area.Displays global OSPF information.Displays information about a particular OSPF area.Displays information about all OSPF areas.Displays the OSPF external route aggregationconfiguration.Displays detailed information about all OSPFinterfaces.Displays information about one or all OSPFinterfaces.Displays a table of the current LSDB.Displays virtual link information about a particularrouter or all routers.Displays RIP specific configuration and statistics forall VLANs.Displays RIP-specific statistics for all VLANs.Displays RIP specific statistics for a VLAN.Displays RIP configuration and statistics for a VLAN.Resets one or all OSPF interfaces to the defaultsettings.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 45

BGP CommandsCommandunconfig rip {vlan }DescriptionResets all RIP parameters to the default VLAN.BGP CommandsCommandclear bgp neighbor [ | all] countersclear bgp neighbor flap-statistics[community [access-profile |no-advertise | no-export | no-export-subconfed |number |:] | as-path[ | access-profile] | route-map | network/ {exact} | all]config bgp add aggregate-address / {as-set | as-match}{summary-only} {advertise-route-map }{attribute-route-map }config bgp add confederation-peer sub-AS-numberconfig bgp add network /{}config bgp AS-number config bgp cluster-id >config bgp confederation-id config bgp delete aggregate-address [ | all]config bgp delete confederation-peer sub-AS-numberconfig bgp delete network [all | /]config bgp local-preference config bgp med [none | ]DescriptionResets the BGP counters for one or all BGP neighborsessions to zero.Clears flap statistics for routes to specified neighbors.Configures a BGP aggregate route.Adds a sub-AS to a confederation.Adds a network to be originated from this router.Changes the local AS number used by BGP.Configures the local cluster ID..Specifies a BGP routing confederation ID.Deletes one or all BGP aggregated route.Specifies a sub-AS that should be deleted from aconfederation.Deletes a network to be originated from this router.Changes the default local preference attribute.Configures the metric to be included in theMulti-Exit-Discriminator (MED) path attribute. TheMED path attribute is included in route updates sentto external peers if a value is configured.46 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

BGP CommandsCommandconfig bgp neighbor [ | all] as-path-filter[in | out] [none | ]config bgp neighbor [ | all] dampening{{ { }}| {route-map }}config bgp neighbor [ | all]maximum-prefix {{threshold }{teardown {holddown-interval }}{send-traps}config bgp neighbor [ | all] [next-hop-self| no-next-hop-self]config bgp neighbor [ | all] nlri-filter [in |out] [none | ]config bgp neighbor [ | all]no-dampeningconfig bgp neighbor [all | ] password[none | {encrypted} ]config bgp neighbor [all | ] peer-group[ | none] {acquire-all}]config bgp neighbor [ | all]route-map-filter [in | out] [none | ]config bgp neighbor [ | all][route-reflector-client | no-route-reflector-client]config bgp neighbor [ | all][send-community | dont-send-community]config bgp neighbor [ | all] soft-reset{input | output}config bgp neighbor [ | all]source-interface [any | vlan ]config bgp neighbor [ | all] timerkeep-alive hold-time config bgp neighbor [ | all] weightconfig bgp peer group dampening{{ { }}| {route-map }}DescriptionConfigures the AS path filter for a neighbor.Configures route flap dampening over BGP peersessions.Configures the maximum number of IP prefixesaccepted from a BGP neighbor.Configures the next hop address used in the outgoingupdates to be the address of the BGP connectionoriginating the update.Configures an NLRI filter for a neighbor.Configures no route flap dampening over BGP peersessions (disables route flap dampening).Configures a password for a neighbor.Configures an existing neighbor as the member of apeer group.Configures a route map filter for a neighbor.Configures a BGP neighbor to be a route reflectorclient.Configures whether the community path attributeassociated with a BGP NLRI should be included inthe route updates sent to the BGP neighbor.Applies the current input or output routing policy tothe routing information already exchanged with theneighbor.Changes the BGP source interface for TCPconnections.Configures the BGP neighbor timers.Assigns a locally-used weight to a neighborconnection for the route selection algorithm.Configures route flap dampening for a BGP peergroup.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 47

BGP CommandsCommandconfig bgp peer-group maximum-prefix {{threshold } {teardown{holddown-interval }} {send-traps}config bgp peer-group [next-hop-self |no-next-hop-self]config bgp peer-group no-dampeningconfig bgp peer-group [route-reflector-client | no-route-reflector-client]config bgp peer-group [send-community | dont-send-community]config bgp peer-group as-path-filter [in |out] [none | ]config bgp peer-group nlri-filter [in | out][none | ]config bgp peer-group password{encrypted} [none | ]config bgp peer-group remote-AS-number config bgp peer-group route-map-filter[in | out] [none | config bgp peer-group soft-reset {[in |out]}config bgp peer-group source-interface[any | vlan ]config bgp peer-group timer keep-alive hold-time config bgp peer-group weightconfig bgp routerid config bgp soft-reconfigurationconfig ipfdb route-add [clear-all | clear-subnet]create bgp neighbor peer-group {multi-hop}DescriptionConfigures the maximum number of IP prefixesaccepted for all neighbors in the peer group.Configures the next hop address used in the updatesto be the address of the BGP connection originatingthe update.Configures no route flap dampening for a BGP peergroup (disables route flap dampening).Configures all the peers in a peer group to be a routereflector client.Configures whether communities should be sent toneighbors as part of route updates.Configures the AS-path filters for a peer group and allneighbors of the peer group.Configures the NLRI filter for a peer group and all theneighbors of the peer group.Configures the password for a peer group and allneighbors of the peer group.Configures the remote AS number for a peer groupand all the neighbors of the peer group.Configures the route maps for a peer group and allthe neighbors of the peer group.Applies the current input/output routing policy to theneighbors in the peer group.Configures the source interface for a peer group andall the neighbors of the peer group.Configures the keepalive timer and hold timer valuesfor a peer group and all the neighbors of the peergroup.Configures the weight for the peer group and all theneighbors of the peer group.Changes the router identifier.Immediately applies the route map associated withthe network command, aggregation, andredistribution.Specifies which BGP routes are deleted andreinstalled with a new gateway.Creates a new neighbor and makes it part of the peergroup.48 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

BGP CommandsCommandcreate bgp neighbor remote-AS-number {multi-hop}create bgp peer-group delete bgp neighbor [ | all]delete bgp peer-group disable bgpdisable bgp aggregationdisable bgp always-compare-meddisable bgp community format disable bgp export [direct | ospf | ospf-extern1 |ospf-extern2 | ospf-inter | ospf-intra | isis | isis-level-1| isis-level-1-external | isis-level-2 |isis-level-2-external | rip | static | vip]disable bgp neighbor [ | all]disable bgp neighbor [ | all]remove-private-AS-numbersdisable bgp neighbor [all | ] soft-in-resetdisable bgp peer-group {soft-in-reset}{remove-private-AS-numbers}disable bgp synchronizationenable bgpenable bgp aggregationenable bgp always-compare-medenable bgp community format enable bgp export [[direct | ospf | ospf-extern1 |ospf-extern2 | ospf-inter | ospf-intra | isis | isis-level-1| isis-level-1-external | isis-level-2 |isis-level-2-external | rip | static | vip] {}enable bgp neighbor [ | all]DescriptionCreates a new BGP peer.Creates a new peer group.Deletes one or all BGP neighbors.Deletes a peer group.Disables BGP.Disables BGP route aggregation.Disables Multi Exit Discriminator (MED) from beingused in the route selection algorithm.Disables the AS-number:number format of display forcommunities in the output of show and uploadcommands.Disables BGP from exporting routes from otherprotocols to BGP peers.Disables the BGP session.Disables the removal of private AS numbers from theAS path in route updates sent to EBGP peers.Disables the soft input reset feature.Disables a BGP peer group and all the neighbors ofthe peer group.Disables the synchronization between BGP and IGP.Enables BGP.Enables BGP route aggregation.Enables BGP to use the Multi Exit Discriminator(MED) from neighbors in different autonomoussystems (ASs) in the route selection algorithm.Enables the as-number:number format of display forthe communities in the output of show and uploadcommands.Enables BGP to export routes from other protocols toBGP peers.Enables the BGP session. The neighbor must becreated before the BGP neighbor session can beenabled.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 49

IP Multicast CommandsCommandenable bgp neighbor [ | all]remove-private-AS-numbersenable bgp neighbor [all | ] soft-in-resetenable bgp peer-group {soft-in-reset}{remove-private-AS-numbers}enable bgp synchronizationshow bgpshow bgp neighbor {[accepted-routes |flap-statistics | received-routes | rejected-routes |suppressed-routes | transmitted-routes] {detail}[community [access-profile |no-advertise | no-export | no-export-subconfed |number |:] | as-path[ | access-profile] | route-map | network/ {exact} | all]}show bgp peer-group {detail | {detail}}show bgp routes [all | as-path |community | detail | network / {exact} | route-map ]DescriptionEnables the removal of private AS numbers from theAS path in route updates sent to EBGP peers.Enables the soft input reset feature.Enables a peer group and all the neighbors of a peergroup.Enables synchronization between BGP and IGP.Displays BGP configuration information.Displays information about a specified neighbor.Displays the peer groups configured in the system.Displays the BGP route information base (RIB).IP Multicast CommandsCommandclear igmp group {vlan }clear igmp snooping {vlan }clear ipmc cache { {/}}clear ipmc fdb {group {sender}}config dvmrp add vlan [ | all]config dvmrp delete vlan [ | all]config dvmrp timer config dvmrp vlan [ | all] cost config dvmrp vlan [ | all] export-filter[ | none]DescriptionRemoves one or all IGMP groups.Removes one or all IGMP snooping entries.Resets the IP multicast cache table.Resets the IP multicast forwarding database entry.Enables DVMRP on one or all IP interfaces.Disables DVMRP on one or all IP interfaces.Configures the global DVMRP timers.Configures the cost (metric) of the interface.Configures DVMRP to filter out certain routes whenperforming the route advertisement.50 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IP Multicast CommandsCommandconfig dvmrp vlan [ | all] import-filter[ | none]config dvmrp vlan [ | all]trusted-gateway [ | none]config dvmrp vlan timer config igmp config igmp snooping flood-list [ |none]config igmp snooping leave-timeout config igmp snooping timer config pim add vlan [ | all] {dense |sparse}config pim cbsr [vlan {| none]config pim crp static [none | ] {}config pim crp timer config pim crp vlan [none | ] {}config pim delete vlan [ | all]config pim register-rate-limit-interval config pim register-suppress-interval register-probe-interval config pim register-checksum-to [include-data |exclude-data]config pim spt-threshold {}DescriptionConfigures DVMRP to filter certain routes receivedfrom its neighbor, and uses an access profile todetermine which DVMRP routes are accepted asvalid routes.Configures DVMRP to use the access policy todetermine which DVMRP neighbor is trusted and toreceive routes from.Configures DVMRP interface timers.Configures the Internet Group Management Protocol(IGMP) timers.Configures certain multicast addresses to be slowpath flooded within the VLAN.Configures the IGMP snooping leave timeout.Configures the IGMP snooping timers.Enables PIM on an IP interface.Configures a candidate bootstrap router for PIMsparse-mode operation.Configures a rendezvous point address and itsassociated groups statically, for PIM sparse modeoperation.Configures the candidate rendezvous pointadvertising interval for PIM sparse mode operation.Configures the dynamic candidate rendezvous pointfor PIM sparse-mode operation.Disables PIM on an interface.Configures the initial PIM-SM periodic register rate.Configures an interval for periodically sendingnull-registers.Configures the checksum computation to eitherinclude data (for compatibility with Cisco Systemsproducts) or to exclude data (for RFC-compliantoperation), in the register message.Configures the threshold, in kbps, for switching toSPT. On leaf routers, this setting is based on datapackets. On the RP, this setting is based on registerpackets.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 51

IP Multicast CommandsCommandconfig pim timer vlan []config pim vlan [ | all] trusted-gateway[ | none]disable dvmrpdisable dvmrp rxmode vlan [ | all]disable dvmrp txmode vlan [vlan | all]disable igmp {vlan }disable igmp snooping {forward-mcrouter-only | vlan}disable igmp snooping with-proxydisable ipmcforwarding {vlan }disable pimenable dvmrpenable dvmrp rxmode vlan [ | all]enable dvmrp txmode vlan [vlan | all]enable igmp {vlan }enable igmp snooping {forward-mcrouter-only | vlan}enable igmp snooping with-proxyenable ipmcforwarding {vlan }enable pimrun ipmcfdb-check [index | vlan ] {extended} {detail}show dvmrp {vlan | route {detail}}show igmp group { {sender }} {vlan }DescriptionConfigures the global PIM timers.Configures a trusted neighbor policy.Disables DVMRP on the system.Disables the receive capability of DVMRP packetson one or all VLANs.Disables the transmit capability of DVMRP packetson one or all VLANs.Disables IGMP on a router interface. If no VLAN isspecified, IGMP is disabled on all router interfaces.Disables IGMP snooping.Disables the IGMP snooping proxy. The defaultsetting is enabled.Disables IP multicast forwarding on an IP interface.Disables PIM on the system.Enables DVMRP on the system.Enables the receive capability of DVMRP packets onone or all VLANs.Enables the transmit capability of DVMRP packetson one or all VLANs.Enables IGMP on a router interface. If no VLAN isspecified, IGMP is enabled on all router interfaces.Enables IGMP snooping on the switch.Enables the IGMP snooping proxy. The defaultsetting is enabled.Enables IP multicast forwarding on an IP interface.Enables PIM on the system.Checks IP multicast FDB entries for consistency.Displays the DVMRP configuration and statistics, orthe unicast route table.Lists the IGMP group membership for the specifiedVLAN.52 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

IPX CommandsCommandshow igmp snooping {vlan | detail}show ipmc cache {detail} | {{ }}show ipmc fdb {}show l2stats {vlan }show pim {detail | rp-set {}| vlan}unconfig dvmrp {vlan }unconfig igmpunconfig pim {vlan }DescriptionDisplays IGMP snooping registration information anda summary of all IGMP timers and states.Displays the IP multicast forwarding cache.Displays the IP multicast forwarding database.Displays the counters for the number of packetsbridged, switched, and snooped.Displays the PIM configuration and statistics.Resets the DVMRP timers to their default settings.Resets all IGMP settings to their default values andclears the IGMP group table.Resets all PIM settings on one or all VLANs to theirdefault values.IPX CommandsCommandconfig ipxmaxhops config ipxrip add vlan [ | all]config ipxrip delete vlan [ | all]config ipxrip vlan [ | all] delay config ipxrip vlan [ | all] export-filter[none | ]config ipxrip vlan [ | all] import-filter[none | ]config ipxrip vlan [ | all] max-packet-sizeconfig ipxrip vlan [ | all] trusted-gateway[none | ]config ipxrip vlan [ | all] update-interval {hold-multiplier }config ipxroute add [ | default] DescriptionConfigures the IPX maximum hop count whenforwarding IPX packets.Configures one or all IPX VLANs to run IPX/RIP.Disables IPX/RIP on one or all interfaces.Configures the time between each IPX/RIP packetwithin an update interval.Assigns an export route filter to an ingress VLAN.Assigns an import route filter to an ingress VLAN.Configures the maximum transmission unit (MTU)size of the IPX/RIP packet.Assigns an export route filter to the egress VLAN.Configures the update interval and hold multiplier forIPX/RIP updates.Adds a static IPX route entry in the IPX route table.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 53

IPX CommandsCommandconfig ipxroute delete [ | default] config ipxsap add vlan [ | all]config ipxsap delete vlan [ | all]config ipxsap vlan [ | all] delay config ipxsap vlan [ | all] export-filter[none | access_profile]config ipxsap vlan [ | all] import-filter[none | access_profile]config ipxsap vlan [ | all]max-packet-size config ipxsap vlan [ | all]trusted-gateway [none | ]config ipxsap vlan [ | all] update-interval {hold-multiplier }config ipxsap vlan gns-delay config ipxservice add config ipxservice delete config vlan xnetid [enet_ii |enet_8023 | enet_8022 | enet_snap]disable ipxripdisable ipxsapdisable ipxsap gns-reply {vlan }disable type20 forwarding {vlan }enable ipxripenable ipxsapenable ipxsap gns-reply {vlan }enable type20 forwarding {vlan }show ipxconfig {vlan }show ipxfdb {vlan | xnetid }DescriptionRemoves a static IPX route entry from the routetable.Configures an IPX VLAN to run IPX/SAP routing.Disables IPX/SAP on an interface.Configures the time between each SAP packet withinan update interval.Assigns an export route filter to an ingress VLAN.Assigns an import route filter to an ingress VLAN.Configures the MTU size of the IPX/SAP packets.Assigns an export SAP service filter to the egressVLAN.Configures the update interval and hold multiplier forIPX/SAP updates.Configures the amount of time the switch waitsbefore answering a GNS request.Adds a static entry to the IPX service table.Deletes an IPX service from the service table.Configures a VLAN to use a particular encapsulationtype.Disables IPX/RIP on the router.Disables IPX/SAP on the router.Disables Get Nearest Server (GNS) reply on one orall IPX interfaces.Disables the forwarding of IPX type 20 packets.Enables IPX/RIP on the router.Enables IPX/SAP on the router.Enables GNS reply on one or all IPX interfaces.Enables the forwarding of IPX type 20 packets.Displays IPX configuration information for one or allVLANs.Displays the hardware IPX FDB information.54 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

ARM CommandsCommandshow ipxrip {vlan }show ipxroute {vlan | xnetid |origin [static | rip | local]}show ipxsap {vlan }show ipxservice {vlan | xnetid _origin [static | sap | local]}show ipxstats {vlan }unconfig ipxrip {vlan }unconfig ipxsap {vlan }unconfig vlan xnetidxping {continuous} {size } DescriptionDisplays IPX/RIP configuration and statistics for oneor all VLANs.Displays the IPX routes in the route table.Displays the enable status of IPX/SAP for the VLAN,and its operational and administrative status(including the GNS reply service). It also lists anyidentified IPX/SAP neighbors, SAP packet statistics,and several other timer settings.Displays IPX services learned by way of SAP.Displays IPX packet statistics for the IPX router, andone or all VLANs.Resets the IPX/RIP settings on one or all VLANs tothe default.Resets the IPX/SAP settings on one or all VLANs tothe default.Removes the IPX NetID of a VLAN.Pings an IPX node specified by the network ID andthe node address.ARM CommandsCommandclear accounting countersconfig route-map [add | delete] set accounting-index 1 valueconfig route-map [add | delete ] set iphost-routingconfig route-map [add | delete ] set lpm-routingdisable accountingdisable ipforwarding lpm-routing {vlan }disable lpmenable accountingDescriptionClears (zeroes out) all of the accounting statistics.Configures the accounting bin number to beassociated with the specified route map entry.Enables or disables Selective-LPM for a specifiedroute-map when the LPM feature is enabled.Enables or disables Selective-LPM for a specifiedroute-map when the LPM feature is enabled.Disables the destination-sensitive accountingfunction.Disables Longest Prefix Match (LPM) routing for thespecified VLAN.Disables Selective-LPM.Enables the destination-sensitive accounting function.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 55

ATM CommandsCommandenable ipforwarding lpm-routing {vlan }enable lpmshow accounting {vlan }show lpmDescriptionEnables Longest Prefix Match (LPM) routing for thespecified VLAN.Enables Selective-LPM routing.Displays accounting statistics for the specified VLAN.If no VLAN is specified, statistics for all VLANs aredisplayed.Shows the status of the LPM feature.ATM CommandsCommandconfig atm add pvc encap [l2 | ippeer-ipaddress ] vlan portsconfig atm delete pvc [ | all] {vlan } ports config atm scrambling [on | off] ports show atm {}DescriptionThis command configures PVC on an ATM port.This command is used to delete a PVC configurationon an ATM port.This command configures an ATM port to scramblethe cell payload on a specified ATM port(s).This command displays ATM port status.PoS CommandsCommandconfig aps [nonrevert | revert ]config aps add [working |protection ]config aps authenticate [off | on ]config aps delete config aps force [off | working | protection]config aps lockout [off | on]config aps manual [off | working |protection]DescriptionConfigures APS operation in either nonrevertive orrevertive switching mode.Adds a SONET port to an APS group.Configures authentication of APS control messages.Deletes a SONET port from an APS group.Requests that an APS group be forced to use aspecified line as the active line.Controls whether a switch to the protection line islocked out.Manually determines whether an APS group uses itsworking line or its protection line as the active line.56 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

PoS CommandsCommandconfig aps timers config diffserv dscp-mapping/ ports {egress {no-congestion | congestion} |ingress}config dot1q tagmapping ports {egress{priority } | ingress {priority }}config dot1q tagnesting { | }[off | pop | push {priority }]ports {egress | ingress}config flowstats export {} add [| ] config flowstats export {} delete [ | ] config flowstats filter {aggregation} {export} ports [ingress | egress]config flowstats source ipaddress config ports tunnel hdlc [off | mpls]config ppp [bcp [on | off] | ipcp [on {peer-ipaddress} | off]] ports config ppp authentication [off | chap | pap |chap-pap] ports config ppp delayed-down-time portsconfig ppp echo [ |off] ports config ppp pos checksum [32 | 16] ports config ppp pos scrambling [on | off] ports DescriptionSets the values of the timers used in the APS helloprotocol that is exchanged between the working andprotection switches for an APS group.Configures a mapping between an input DiffServcode point (DSCP) and an associated output DSCPfor the specified PoS or ATM ports.Configures the VLAN tag mapping attributes for aPoS or ATM port.Configures the VLAN tag nesting attributes for a PoSor ATM port. Currently, the command is onlysupported for PoS and ATM ports.Configures the flow-collector devices to whichNetFlow datagrams are exported.Configures the flow-collector devices to whichNetFlow datagrams are exported.Configures a flow record filter for the specifiedSONET ports.Configures the IP address that is to be used as thesource IP address for NetFlow datagrams to beexported.Enables tunneling for HDLC encapsulated framesfrom a SONET port through an MPLS network.Configures the network control protocol that will runon the specified PPP ports.Configures authentication on the specified PPPports.Configures the delayed-down-time interval used byPPP for the specified ports.Configures the link maintenance protocol on thespecified ports.Configures the size of the HDLC Frame CheckSequence (FCS) to be used on the specified SONETports.Specifies whether the payload data should bescrambled on the specified ports. RFC 2615recommends that the SONET payload be scrambled.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 57

PoS CommandsCommandconfig ppp quality [off | {}] ports config ppp user {encrypted} {}ports config qosprofile {minbw }{maxbw } {priority }{minbuf } {maxbuf } {}{egress | ingress}config red [drop-probability | low-drop-probability |high-drop-probability] {ports }config red min-threshold ports config sonet clocking [line | internal] ports config sonet framing [sonet | sdh] ports config sonet loop [internal | line | off] ports config sonet signal label [auto | ]ports config sonet threshold signal degrade ports config sonet threshold signal fail ports config sonet trace path ports config sonet trace section [ |string ] ports create account pppuser {encrypted}{}create aps delete account pppuser delete aps disable apsdisable red ports queue DescriptionConfigures the Link Quality Monitoring (LQM)protocol on the specified ports.Configures the user name and password that thespecified PPP port uses in the event the PPP peerrequests authentication.Configures a QoS profile.Configures the RED drop probability for a specifiedport.Configures the minimum queue length threshold forRED operation on the specified PoS ports.Configures the clocking source for the specifiedSONET ports.Configures the framing type for the specified SONETports.Configures loopback options for the specifiedSONET port(s).Configures the signal label value for the specifiedSONET ports.Configures the signal degrade threshold for thespecified SONET ports.Configures the signal failure threshold for thespecified SONET ports.Configures the path trace identifier string for thespecified SONET ports.Configures the section trace identifier for thespecified SONET ports.Creates a local database entry that can be used toauthenticate a PPP peer.Creates an APS group with the specified groupnumber.Deletes an entry in the local PPP authenticationdatabase.Deletes the specified APS group.Disables the APS function for an entire switch.Disables RED on the specified ports.58 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

PoS CommandsCommandenable apsenable red ports queue show accounts pppusershow aps {} {detail}show flowstats { | export {}{detail}}show ppp {} {detail}show sonet {} {detail}unconfig aps unconfig diffserv dscp-mapping ports unconfig ppp ports unconfig sonet ports DescriptionEnables the APS function for an entire switch.Enables RED on the specified PoS ports.Display the PPP user accounts database.Displays APS group status information.Displays status information for the flow statisticsfunction.Displays status information for PPP ports.Displays SONET port status.Resets the APS group configuration parameters totheir default values.Resets the DSCP mapping tables for the specifiedPoS ports to their default values.Resets the PPP configuration parameters for thespecified ports to their default values.Resets the configuration parameters of the specifiedSONET port to their default values.T1, E1, and T3 WAN CommandsCommandconfig multilink add ports tagconfig multilink delete ports config ports [t1 | e1 | t3] clock source[internal | line]config ports e1 framing [crc4 | no-crc4]config ports e1 receivergain [-12 | -43] dbconfig ports e1 timeslots config ports [t1 | e1 | t3] snmp alert [enable| disable]config ports t1 cablelength [[0 | -7.5 | -15 |-22.5] db |[133 | 266 | 399 | 533 | 655] feet]config ports t1 fdl [off | att | ansi]config ports t1 framing [esf | sf]DescriptionAdds ports to a multilink group.Deletes ports from a multilink group.Configures the clock source for WAN links.Configure framing for E1 links.Configures E1 receiver gain to improve linkperformance.Select the E1 timeslots to use for transmitting data.Enable and disable the sending of SNMP alerts forWAN links to the SMMi.Control T1 transmitter signal level for different cablelengths.Configures facility data link (FDL) for T1 links.Configure framing for T1 links.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 59

PoS CommandsCommandconfig ports t1 lbdetect [off | inband]config ports t1 linecoding [b8zs | ami]config ports t1 yellow [detection |generation | both | off]config ports t3 cablelength [349 | 900] feetconfig ports e1 framing [c-bit | m13]config ppp [bcp [on | off] | ipcp [on | off]] [ports | multilink ]config ppp authentication [off | chap | pap | chap-pap][ports | multilink ]config ppp user {encrypted} {}[ports | multilink ]config vlan add multilink config vlan delete multilinkcreate account pppuser {encrypted}{}create multilink delete account pppuser delete multilink disable multilink disable ports [t1 | e1 | t3] loopbackenable multilink enable ports [t1 | e1 | t3] loopback [local |network line]enable ports [t1 | t3] loopback remote [line |payload | loopdown]enable ports t1 loopback network payloadenable vman termination {ports | multilink}restart multilink show accounts pppuserDescriptionConfigures inband loopback detection on T1 links.Configures the linecoding convention for T1 links.Configure detection and generation of yellow alarms.Control T3 transmitter signal level for different cablelengths.Configure framing for a T3 link.Configures the network control protocol(encapsulation) that will run on the specifiedPPP/MLPPP WAN ports.Configures authentication on the specified PPP portsor MLPPP multilink group.Configures the user name and password that thespecified PPP/MLPPP link uses if the peer requestsauthentication.Adds an MLPPP multilink group to a VLAN.Deletes an MLPPP multilink group from a VLAN.Creates a local database entry that can be used toauthenticate a PPP peer.Creates an MLPPP multilink group.Deletes an entry in the local PPP authenticationdatabase.Deletes an MLPPP multilink group.Disables an MLPPP multilink group.Disables the current loopback mode and returns portto normal function.Enables an MLPPP multilink group.Enables the near-end local and network line loopbackmodes.Enables and disables remote loopback modes for T1and T3 ports.Enables network payload loopback mode on T1 links.Enables VMAN termination for T1 and E1 ports.Restarts an MLPPP multilink group.Display the PPP user accounts database.60 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

MPLS CommandsCommandshow multilink show multilink [t1 | e1] alarms {detail}show multilink e1 errors near-end[totals | intervals | current]show multilink stats {detail}show multilink t1 errors [near-end |far-end] [totals | intervals | current]show ports {t1 | e1 | t3} alarmsshow ports [t1 | e1 | t3] configurationshow ports [t1 | t3] errors [near-end |far-end] [totals | intervals | current]show ports e1 errors near-end [totals |intervals | current]show ports [t1 | e1 | t3] infoshow ports {t1 | e1 | t3} statsshow ppp {} {detail}unconfig ppp [ports | multilink]DescriptionDisplays the configuration of the multilink group.Displays alarms for a multilink group.Displays the current and past port error statistics forE1 multilink groups.Displays multilink statistics.Displays the current and past error statistics for T1multilink groups.Displays real-time port alarms.Displays the port configuration and status.Displays the current and past port errors for T1 andT3 links.Displays the current and past port errors for E1 links.Displays the port configuration and status.Displays real-time port statistics.Displays status information for PPP ports.Resets the configuration on the specified WAN portsor multilink group.MPLS CommandsCommandconfig mpls [ldp | targeted-ldp] [hello | keep-alive] config mpls add tls-tunnel [lsp | | ] [tls-labels | vcid {} {from[ |]}]config mpls add vlan [ | all] {ldp |rsvp-te}config mpls delete tls-tunnel [ | group | all]config mpls delete vlan [ | all] {ldp |rsvp-te}DescriptionConfigures LDP session timers.Adds a TLS tunnel.Enables LDP or RSVP-TE for one or all VLANs.Deletes one or all TLS tunnels.Disables LDP or RSVP-TE on one or all VLANs.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 61

MPLS CommandsCommandconfig mpls ldp advertise [direct | rip | static] [all |none | route-map ]config mpls ldp advertise [add | delete] vlan config mpls php [enabled | disabled]config mpls propagate-ip-ttl [enabled | disabled]config mpls qos-mapping [dot1p-to-exp |exp-to-dot1p] [all | ]/config mpls rsvp-te add lsp path {} {primary | secondary}config mpls rsvp-te add path [ | ] {from}config mpls rsvp-te add profile {bandwidth } {setup-priority }{hold-priority } {retry-timeout }{hop-count } {ping-interval }{metric [ | igp-tracking} {record [enabled |disabled]}config mpls rsvp-te delete lsp [ | all]config mpls rsvp-te delete path [ | all]config mpls rsvp-te delete profile [ |all]config mpls rsvp-te lsp add path {} {secondary | primary}config mpls rsvp-te delete path [ | all]config mpls rsvp-te path add ero[ipaddress | ]{strict | loose} {order }DescriptionConfigures a filter to be used by LDP whenoriginating unsolicited label mapping advertisementsto LDP neighbors.Configures LDP to originate an unsolicited label forthe FECs associated with the directly attachedrouting interface of the specified VLAN.Enables and disables penultimate hop popping (PHP)at the egress LSR. When enabled, PHP is requestedon all LSPs for which the switch is the egress LSR.Enables or disables the propagation of the IPtime-to-live (TTL) field for routed IP packets. Whenpropagation is enabled, each LSR is viewed as arouter hop from an IP TTL perspective. Whenpropagation is disabled, the LSP is viewed as apoint-to-point link between the ingress LSR and theegress LSR.Configures MPLS-specific QoS mappings.Adds an RSVP-TE LSP.Adds a path to an RSVT-TE LSP.Adds an RSVP-TE profile.Deletes an RSVP-TE LSP.Deletes an RSVP-TE path.Deletes an RSVP-TE path profile.Adds a path to an RSVP-TE LSP.Deletes an RSVP-TE path.Adds an RSVP-TE explicit route.62 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

MPLS CommandsCommandconfig mpls rsvp-te path delete ero [all| ipaddress | |order ]config mpls rsvp-te profile {bandwidth} {hop-count } {setup-priority} {hold-priority } {retry-timeout} {ping-interval } {metric[ | igp-tracking]} {record [enabled | disabled]}config mpls rsvp-te vlan [ | all]{hello-interval } {refresh-time }{summary-refresh-time } {bundle-time} {keep-multiplier }config mpls vlan [ | all] ip-mtu config mpls vlan [ | all] ldp propagate [all| none | route-map ]config vlan add track-lsp [ |ipaddress /]config vlan delete track-lsp[ | ipaddress / |all]disable mplsenable mplsshow mpls {vlan } {detail}show mpls forwarding {summary | detail | inactive |host {detail | inactive} | prefix {detail | inactive} | rsvp-te {detail}}show mpls interface {ldp | targeted-ldp | rsvp-te}show mpls label {summary {detail} | {detail} | host {detail} | prefix {detail} | rsvp-te {detail}}show mpls ldp {} {detail}DescriptionDeletes an RSVP-TE explicit route.Configures an existing RSVP-TE profile.Configures RSVP-TE protocol parametersConfigures the IP MTU for frames transmitted ontoMPLS LSPs via the specified egress VLAN. Therange is 42 to 9190(using jumbo frame sizes).Configures a filter to be used by LDP whenpropagating unsolicited label mappings to all LDPneighbors on one or all VLANs.Configures the LSPs tracked by ESRP in order todetermine the ESRP state of the specified VLAN.Disables LSP route tracking for an ESRP-enabledVLAN.Disables MPLS on the switch.Enables MPLS on the switch.Displays MPLS configuration information for one orall VLANs. Omitting the vlan keyword displaysinformation for all VLANs.Displays information from the FEC-to-NHLFEdatabase, used when forwarding non-MPLS packetsonto an LSP. Also displays information for RSVP-TELSPs.Displays targeted LDP and RSVP-TE interfaceinformation.Displays information from the Incoming Label Map(ILM), used when forwarding packets that arrive aslabeled MPLS packets.Displays MPLS LDP session information for one orall LSP sessions.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 63

Configuration and Image CommandsCommandshow mpls qos-mappingsshow mpls rsvp-te {} {detail}show mpls rsvp-te lsp {} {detail}show mpls rsvp-te path {} {detail}show mpls rsvp-te profile {}show mpls tls-tunnel {summary | detail | {detail} | vlan {detail}}unconfig mplsunconfig mpls [hello-hold-time |session-keep-alive-time]unconfig mpls qos-mapping [dotp-to-exp |exp-to-dot1p | lsp ]DescriptionDisplays MPLS-specified QoS mappings fordot1p-to-exp and exp-to-dot1p.Displays RSVP-TE LSP configuration information.Displays the RSVP-TE LSP.Displays the RSVP-TE routed path.Displays the RSVP-TE path profile.Displays configuration and status information for TLStunnels.Resets MPLS configuration parameters to the defaultsettings.Restores the default values for hello-hold-time orsession-keep-alive-time.Restores the default values for the specified QoSmapping table.Configuration and Image CommandsCommandconfig download server [primary | secondary] [ | ] download bootrom [ | ] {slot }download configuration [ | ] {incremental}download configuration canceldownload configuration every download image [ | ] {primary | secondary} {slot }save configuration {primary | secondary}DescriptionConfigures the TFTP server(s) used by a scheduledincremental configuration download.Downloads a BootROM image from a TFTP serverafter the switch has booted. The downloaded imagereplaces the BootROM in the onboard FLASHmemory.Downloads a previously saved ASCII configurationfile from a specific TFTP server host.Cancels a scheduled incremental configurationdownload.Automatically does an incremental configurationdownload every day at the specified time, orimmediately after switch bootup, based on theparameters specified in the config downloadserver command.Downloads a new version of the <strong><strong>Extreme</strong>Ware</strong>software image.Saves the current configuration from the switch’sruntime memory to non-volatile memory.64 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Troubleshooting CommandsCommandshow configuration [detail]synchronizeunconfig switch {all}upload configuration [ | ] {every }upload configuration canceluse configuration [primary | secondary]use image [primary | secondary] {slot }DescriptionDisplays the currently active configuration to theterminal.Replicates all saved images and configurations fromthe master MSM to the slave MSM on theBlackDiamond.Returns the switch configuration to its factory defaultsettings.Uploads the current configuration to a TFTP serveron your network.Cancels a previously scheduled configuration upload.Configures the switch to use a previously savedconfiguration on the next reboot.Configures the switch to use a saved image on thenext reboot.Troubleshooting CommandsCommandclear debug-traceconfig debug-trace access-list config debug-trace accounting config debug-trace aps config debug-trace bgp-events config debug-trace bgp-keepalive config debug-trace bgp-misc config debug-trace bgp-msgs config debug-trace bgp-neighbor config debug-trace bgp-update-in DescriptionResets the debug-trace levels to the factory settingsof level 0.This command is not currently supported.This command provides system-level debug tracingfor the accounting subsystem.This command is not currently supported.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 65

Troubleshooting CommandsCommandconfig debug-trace bgp-update-out config debug-trace bootprelay vlanconfig debug-trace bridge-learning config debug-trace bridging config debug-trace card-state-change config debug-trace dvmrp-cache vlanconfig debug-trace dvmrp-hello vlanconfig debug-trace dvmrp-message vlan config debug-trace dvmrp-neighbor vlan config debug-trace dvmrp-route vlanconfig debug-trace dvmrp-timer vlanconfig debug-trace eaps-system config debug-trace esrp-message vlanconfig debug-trace esrp-state-change vlan config debug-trace esrp-system config debug-trace fdb vlan config debug-trace flow-redirect config debug-trace flowstats config debug-trace health-check [ |{filter [real | virtual] [ftp | http | https |imap4 | ldap | nntp | pop3 | smtp | socks | telnet | tftp| web | wildcard | www | ]}]DescriptionThis command records debug information to thesyslog.This command records debug information to thesyslog.This command records address learning debuginformation to the syslog.This command records layer 2 CPU processingdebug information to the syslog.This command is not currently supported.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command is not currently supported.This command records debug information to thesyslog.This command records debug information to thesystem log.This command records debug information to thesyslog.66 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Troubleshooting CommandsCommandconfig debug-trace igmp-snooping config debug-trace iparp vlan config debug-trace ip-forwarding config debug-trace ipxgns-message vlan config debug-trace ipxrip-message vlan config debug-trace ipxrip-route config debug-trace ipxsap-entry config debug-trace ipxsap-message vlan config debug-trace isis-cli config debug-trace isis-event config debug-trace isis-hello vlan [ | all]config debug-trace isis-lsp config debug-trace isis-snp config debug-trace isis-spf config debug-trace mpls config debug-trace mpls-signalling config debug-trace npcard config debug-trace ospf-hello vlanDescriptionThis command records debug information to thesystem log.This command records debug information to thesyslog.This command records IP forwarding debuginformation to the syslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command is not currently supported.This command records debug information to thesyslog.Controls logging of debug messages related to CLIactions.Controls logging of debug messages related tomiscellaneous actions.Controls logging of debug messages related tosending and receiving, and decoding and encoding ofHello messages.Controls logging of debug messages related tosending and receiving and decoding and encoding ofLSP Messages.Controls logging of debug messages related tosending and receiving, and decoding and encoding ofPSNP and CSNP Messages.Controls logging of debug messages related to SPFCalculation.This command records debug information to thesyslog.This command records debug information to thesyslog.This command enables system-level debug tracingfor the MPLS, PoS, ARM, and ATM modules.This command records debug information to thesyslog.<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 67

Troubleshooting CommandsCommandconfig debug-trace ospf-lsa config debug-trace ospf-neighbor vlanconfig debug-trace ospf-spf config debug-trace pim-cache config debug-trace pim-hello vlanconfig debug-trace pim-message vlanconfig debug-trace pim-neighbor vlanconfig debug-trace pim-rp-mgmt config debug-trace rip-message vlanconfig debug-trace rip-route-change vlan config debug-trace rip-triggered-update vlan config debug-trace slb-3dns config debug-trace slb-connection config debug-trace slb-failover config debug-trace stp-in-pdu [mgmt |]config debug-trace stp-out-pdu [mgmt| ]config debug-trace udp-forwarding vlan config debug-trace vrrp vlan config debug-trace vrrp-hello vlanDescriptionThis command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command is not currently supported.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command records debug information to thesyslog.This command is not currently supported.This command records debug information to thesyslog.This command records debug information to thesyslog.68 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Troubleshooting CommandsCommandconfig diagnostics [extended | fastpost | normal | off]config reboot-loop-protection threshold config system-dump server config system-dump timeout nslookup ping {udp} {continuous} {size {-

Troubleshooting CommandsCommandshow diagnostics backplane mpls mapping {active}show diagnostics backplane utilizationshow diagnostics packet-memory [slot ]show diagnostics slot fdb{ | vlan | tls-tunnel}show system-dumpshow tech-supporttopunconfig system-dumpupload system-dump []DescriptionDisplays diagnostic information related to the MPLSmodule internal backplane switch ports. Thiscommand also displays the external I/O port tointernal MPLS module backplane switch portmappings.Displays backplane link utilization information.Displays the results of the packet memory scan onBlackDiamond 6808 and BlackDiamond 6816 I/Omodules.Displays the MAC cache for a specific MPLS module.Displays the system-dump server IP anddump-timeout.Displays the output of various show commands toassist in monitoring and troubleshooting the switch.Displays real-time CPU utilization information byprocess.Unconfigures the system dump.This command transfers a system dump to an IPaddress.70 <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Index of Commandsclear accounting counters 55clear bgp neighbor counters 46clear bgp neighbor flap-statistics 46clear counters 20clear debug-trace 65clear dlcs 9clear fdb 9clear igmp group 50clear igmp snooping 50clear iparp 33clear ipfdb 33clear ipmc cache 50clear ipmc fdb 50clear isis adjacency 39clear isis lsdb 39clear log 20clear nat 11clear session 1clear slb connections 12clear slb vip persistence 13clear slot 5config access-profile add 23config access-profile delete 23config access-profile mode 23config account 1config aps add 56config aps authenticate 56config aps delete 56config aps force 56config aps lockout 56config aps manual 56config aps timers 57config aps 56config atm add pvc 56config atm delete pvc 56config atm scrambling 56config banner netlogin 1config banner 1config bgp add aggregate-address 46config bgp add confederation-peersub-AS-number 46config bgp add network 46config bgp AS-number 46config bgp cluster-id 46config bgp confederation-id 46config bgp delete aggregate-address 46config bgp delete confederation-peersub-AS-number 46config bgp delete network 46config bgp local-preference 46config bgp med 46config bgp neighbor as-path-filter 47config bgp neighbor dampening 47config bgp neighbor maximum-prefix 47config bgp neighbor next-hop-self 47config bgp neighbor nlri-filter 47<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide 71

config bgp neighbor no-dampening 47config bgp neighbor password 47config bgp neighbor peer-group 47config bgp neighbor route-map-filter 47config bgp neighbor route-reflector-client 47config bgp neighbor send-community 47config bgp neighbor soft-reset 47config bgp neighbor source-interface 47config bgp neighbor timer 47config bgp neighbor weight 47config bgp peer-group as-path-filter 48config bgp peer-group dampening 47config bgp peer-group maximum-prefix 48config bgp peer-group next-hop-self 48config bgp peer-group nlri-filter 48config bgp peer-group no-dampening 48config bgp peer-group password 48config bgp peer-group remote-AS-number 48config bgp peer-group route-map-filter 48config bgp peer-group route-reflector-client 48config bgp peer-group send-community 48config bgp peer-group soft-reset 48config bgp peer-group source-interface 48config bgp peer-group timer 48config bgp peer-group weight 48config bgp routerid 48config bgp soft-reconfiguration 48config bootprelay add 33config bootprelay delete 33config cpu-dos-protect trusted-ports 23config cpu-dos-protect 23config debug-trace access-list 65config debug-trace accounting 65config debug-trace aps 65config debug-trace bgp-events 65config debug-trace bgp-keepalive 65config debug-trace bgp-misc 65config debug-trace bgp-msgs 65config debug-trace bgp-neighbor 65config debug-trace bgp-update-in 65config debug-trace bgp-update-out 66config debug-trace bootprelay 66config debug-trace bridge-learning 66config debug-trace bridging 66config debug-trace card-state-change 66config debug-trace dvmrp-cache 66config debug-trace dvmrp-hello 66config debug-trace dvmrp-message 66config debug-trace dvmrp-neighbor 66config debug-trace dvmrp-route 66config debug-trace dvmrp-timer 66config debug-trace eaps-system 66config debug-trace esrp-message 66config debug-trace esrp-state-change 66config debug-trace esrp-system 66config debug-trace fdb 66config debug-trace flow-redirect 66config debug-trace flowstats 66config debug-trace health-check 66config debug-trace igmp-snooping 67config debug-trace iparp 67config debug-trace ip-forwarding 67config debug-trace ipxgns-message 67config debug-trace ipxrip-message 67config debug-trace ipxrip-route 67config debug-trace ipxsap-entry 67config debug-trace ipxsap-message 67config debug-trace isis-cli 67config debug-trace isis-event 67config debug-trace isis-hello 67config debug-trace isis-lsp 67config debug-trace isis-snp 67config debug-trace isis-spf 67config debug-trace mpls 67config debug-trace mpls-signalling 67config debug-trace npcard 67config debug-trace ospf-hello 67config debug-trace ospf-lsa 68config debug-trace ospf-neighbor 68config debug-trace ospf-spf 68config debug-trace pim-cache 68config debug-trace pim-hello 68config debug-trace pim-message 68config debug-trace pim-neighbor 68config debug-trace pim-rp-mgmt 68config debug-trace rip-message 68config debug-trace rip-route-change 68config debug-trace rip-triggered-update 6872 - Index of Commands <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

config debug-trace slb-3dns 68config debug-trace slb-connection 68config debug-trace slb-failover 68config debug-trace stp-in-pdu 68config debug-trace stp-out-pdu 68config debug-trace udp-forwarding 68config debug-trace vrrp 68config debug-trace vrrp-hello 68config diagnostics 69config diffserv dscp-mapping ports 57config diffserv examination code-point qosprofileports 9config diffserv replacement priority 9config dns-client add domain-suffix 1config dns-client add name-server 1config dns-client add 1config dns-client default-domain 1config dns-client delete domain-suffix 1config dns-client delete name-server 1config dns-client delete 1config dot1p type 10config dot1q ethertype 7config dot1q tagmapping ports 57config dot1q tagnesting ports 57config download server 64config dvmrp add vlan 50config dvmrp delete vlan 50config dvmrp timer 50config dvmrp vlan cost 50config dvmrp vlan export-filter 50config dvmrp vlan import-filter 51config dvmrp vlan timer 51config dvmrp vlan trusted-gateway 51config eaps add control vlan 29config eaps add protect vlan 29config eaps delete control vlan 29config eaps delete protect vlan 29config eaps failtime 29config eaps hellotime 29config eaps mode 29config eaps name 29config eaps port 29config esrp port-mode ports 31config fdb agingtime 9config flow-redirect add next-hop 13config flow-redirect delete next-hop 13config flow-redirect service-check ftp 13config flow-redirect service-check http 13config flow-redirect service-check L4-port 13config flow-redirect service-check nntp 13config flow-redirect service-check ping 13config flow-redirect service-check pop3 13config flow-redirect service-check smtp 13config flow-redirect service-check telnet 13config flow-redirect timer ping-check 13config flow-redirect timer service-check 13config flow-redirect timer tcp-port-check 13config flowstats export add port 20config flowstats export add 57config flowstats export delete port 20config flowstats export delete 57config flowstats filter ports 20config flowstats filter ports 57config flowstats source ipaddress 57config flowstats source 20config flowstats timeout ports 21config gvrp 7config idletimeouts 2config igmp snooping flood-list 51config igmp snooping leave-timeout 51config igmp snooping timer 51config igmp 51config iparp add proxy 33config iparp add 33config iparp delete proxy 33config iparp delete 33config iparp max-entries 33config iparp max-pending-entries 34config iparp timeout 34config ip-down-vlan-action 34config ipfdb route-add 48config ip-mtu vlan 5config ipqos add 10config ipqos delete 10config iproute add blackhole default 34config iproute add blackhole 34config iproute add default 34config iproute add 34<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide Index of Commands - 73

config iproute delete blackhole default 34config iproute delete blackhole 34config iproute delete default 34config iproute delete 34config iproute priority 34config iproute route-map 34config ipxmaxhops 53config ipxrip add vlan 53config ipxrip delete vlan 53config ipxrip vlan delay 53config ipxrip vlan export-filter 53config ipxrip vlan import-filter 53config ipxrip vlan max-packet-size 53config ipxrip vlan trusted-gateway 53config ipxrip vlan update-interval 53config ipxroute add 53config ipxroute delete 54config ipxsap add vlan 54config ipxsap delete vlan 54config ipxsap vlan delay 54config ipxsap vlan export-filter 54config ipxsap vlan gns-delay 54config ipxsap vlan import-filter 54config ipxsap vlan max-packet-size 54config ipxsap vlan trusted-gateway 54config ipxsap vlan update-interval 54config ipxservice add 54config ipxservice delete 54config irdp 34config irdp 34config isis add area address 39config isis add vlan 39config isis area add domain-summary 39config isis area delete domain-summary 39config isis area domain-filter 39config isis authentication 39config isis delete area-address 39config isis delete vlan 39config isis external-filter 39config isis lsp holddown interval 39config isis lsp lifetime 39config isis lsp refresh interval 39config isis metric-size 39config isis spf hold time 39config isis system-identifier 40config isis vlan authentication 40config isis vlan cost 40config isis vlan hello-multiplier 40config isis vlan priority 40config isis vlan timer 40config isis vlan 40config jumbo-frame size 5config log display 21config mac-vlan add mac-address 7config mac-vlan delete 7config mirroring add 5config mirroring delete 5config mpls add tls-tunnel 61config mpls add vlan 61config mpls delete tls-tunnel 61config mpls delete vlan 62config mpls ldp advertise vlan 62config mpls ldp advertise 62config mpls php 62config mpls propagate-ip-ttl 62config mpls qos-mapping 62config mpls rsvp-te add ero 62config mpls rsvp-te add lsp 62config mpls rsvp-te add path 62config mpls rsvp-te add profile 62config mpls rsvp-te delete ero 63config mpls rsvp-te delete lsp 62config mpls rsvp-te delete path 62config mpls rsvp-te delete path 62config mpls rsvp-te delete profile 62config mpls rsvp-te lsp add path 62config mpls rsvp-te profile 63config mpls rsvp-te vlan 63config mpls vlan ip-mtu 63config mpls vlan ldp propagate 63config mpls 61config msm-failover link-action 5config multilink add 59config multilink delete 59config nat add vlan map 12config nat delete 12config nat finrst-timeout 12config nat icmp-timeout 1274 - Index of Commands <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

config nat syn-timeout 12config nat tcp-timeout 12config nat timeout 12config nat udp-timeout 12config nat vlan 12config netlogin base-url 23config netlogin redirect-url 23config ospf add virtual-link 40config ospf add vlan area link-type 40config ospf add vlan area 40config ospf area add range 41config ospf area delete range 41config ospf area external-filter 41config ospf area interarea-filter 41config ospf area normal 41config ospf area nssa stub-default-cost 41config ospf area stub stub-default-cost 41config ospf asbr-filter 41config ospf ase-limit 41config ospf ase-summary add 41config ospf ase-summary delete 41config ospf cost 40config ospf delete virtual-link 41config ospf delete vlan 41config ospf direct-filter 41config ospf lsa-batching-timer 41config ospf metric-table 41config ospf priority 40config ospf routerid 41config ospf spf-hold-time 41config ospf timer 40config ospf virtual-link authentication password 40config ospf vlan area 41config ospf vlan neighbor add 42config ospf vlan neighbor delete 42config ospf vlan timer 42config pim add vlan 51config pim cbsr 51config pim crp static 51config pim crp timer 51config pim crp vlan access-policy 51config pim delete vlan 51config pim register-checksum-to 51config pim register-rate-limit-interval 51config pim register-suppress-intervalregister-probe-interval 51config pim spt-threshold 51config pim timer vlan 52config pim vlan trusted-gateway 52config port interpacket-gap 5config ports auto off 5config ports auto on 5config ports clock source 59config ports display-string 5config ports e1 framing 59config ports e1 receivergain 59config ports e1 timeslots 59config ports link-detection-level 5config ports monitor vlan 7config ports qosprofile 10config ports redundant 5config ports snmp alert 59config ports t1 cablelength 59config ports t1 fdl 59config ports t1 framing 59config ports t1 lbdetect 60config ports t1 linecoding 60config ports t1 yellow 60config ports t3 cablelength 60config ports t3 framing 60config ports tunnel hdlc 57config ports 5config ppp authentication ports 57config ppp authentication 60config ppp delayed-down-time ports 57config ppp echo ports 57config ppp ports 57config ppp pos checksum ports 57config ppp pos scrambling ports 57config ppp quality ports 58config ppp user ports 58config ppp user 60config ppp 60config protocol add 8config protocol delete 8config qosmode 10config qosprofile 10config qosprofile 58<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide Index of Commands - 75

config qostype priority 10config radius server 23config radius shared-secret 23config radius timeout 23config radius-accounting server 23config radius-accounting shared-secret 23config radius-accounting timeout 23config reboot-loop-protection 69config red drop-probability 10config red min-threshold ports 58config red 58config rip add vlan 42config rip delete vlan 42config rip garbagetime 42config rip routetimeout 42config rip rxmode 42config rip txmode 42config rip updatetime 42config rip vlan cost 42config rip vlan export-filter 42config rip vlan import-filter 42config rip vlan trusted-gateway 42config route-map add goto 24config route-map add match 24config route-map add set 24config route-map add 23config route-map delete goto 24config route-map delete match 24config route-map delete set 25config route-map delete 24config route-map set accounting-index 1 value 55config route-map set iphost-routing 55config route-map set lpm-routing 55config sharing address-based 5config slb esrp vlan 13config slb failover alive-frequency 13config slb failover dead-frequency 13config slb failover failback-now 13config slb failover ping-check 13config slb failover unit 14config slb global connection-block 14config slb global connection-timeout 14config slb global ftp 14config slb global http 14config slb global nntp 14config slb global persistence-level 14config slb global persistence-method 14config slb global ping-check 14config slb global pop3 14config slb global service-check 14config slb global smtp 14config slb global synguard 14config slb global tcp-port-check 14config slb global telnet 14config slb gogo-mode health-check 14config slb gogo-mode ping-check 14config slb gogo-mode service-check ftp 15config slb gogo-mode service-check http 15config slb gogo-mode service-check pop3 15config slb gogo-mode service-check smtp 15config slb gogo-mode service-check telnet 15config slb gogo-mode service-check timer 15config slb gogo-mode tcp-port-check add 15config slb gogo-mode tcp-port-check delete 15config slb gogo-mode tcp-port-check timer 15config slb L4-port 15config slb node max-connections 15config slb node ping-check 15config slb node tcp-port-check 16config slb pool add 16config slb pool delete 16config slb pool lb-method 16config slb pool member 16config slb proxy-client-persistence 16config slb vip client-persistence-timeout 16config slb vip max-connections 16config slb vip service-check frequency 16config slb vip service-check ftp 16config slb vip service-check http 16config slb vip service-check nntp 16config slb vip service-check pop3 16config slb vip service-check smtp 16config slb vip service-check telnet 17config slb vip 16config slot 6config snmp access-profile readonly 3config snmp access-profile readwrite 3config snmp add community 376 - Index of Commands <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

config snmp add trapreceiver 3config snmp add 3config snmp community 3config snmp delete community 3config snmp delete trapreceiver 3config snmp delete 3config snmp sysContact 3config snmp sysLocation 3config snmp sysName 3config sntp-client server 3config sntp-client update-interval 3config sonet clocking ports 58config sonet framing ports 58config sonet loop 58config sonet signal label ports 58config sonet threshold signal degrade ports 58config sonet threshold signal fail ports 58config sonet trace path ports 58config sonet trace section ports 58config ssh2 25config stpd add vlan 29config stpd delete vlan 30config stpd forwarddelay 30config stpd hellotime 30config stpd maxage 30config stpd ports cost 30config stpd ports mode 30config stpd ports priority 30config stpd priority 30config stpd tag 30config sys-health-check alarm-level 21config sys-health-check auto-recovery 21config syslog delete 21config syslog 21config sys-recovery-level 21config system-dump server 69config system-dump timeout 69config tacacs server 25config tacacs shared-secret 25config tacacs timeout 25config tacacs-accounting server 25config tacacs-accounting shared-secret 25config tacacs-accounting timeout 25config tcp-sync-rate 34config time 2config timezone 2config udp-profile add 34config udp-profile delete 34config vlan access-profile 25config vlan add domain-member vlan 31config vlan add multilink 60config vlan add ports loopback-vid 8config vlan add ports no-restart 31config vlan add ports restart 31config vlan add ports stpd 30config vlan add ports 8config vlan add track-bgp 31config vlan add track-diagnostic 31config vlan add track-environment 31config vlan add track-iproute 31config vlan add track-lsp 63config vlan add track-ospf 31config vlan add track-ping 31config vlan add track-rip 31config vlan add track-vlan 31config vlan delete domain-member vlan 31config vlan delete multilink 60config vlan delete port 8config vlan delete track-bgp 31config vlan delete track-diagnostic 32config vlan delete track-environment 32config vlan delete track-iproute 32config vlan delete track-lsp 63config vlan delete track-ospf 32config vlan delete track-ping 32config vlan delete track-rip 32config vlan delete track-vlan 32config vlan dhcp-address-range 25config vlan dhcp-lease-timer 25config vlan dhcp-options 25config vlan esrp esrp-election 32config vlan esrp esrp-neutral-timout 32config vlan esrp group 32config vlan esrp priority 32config vlan esrp timer 32config vlan ipaddress 8config vlan name 8config vlan netlogin-lease-timer 26<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide Index of Commands - 77

config vlan priority 10config vlan protocol 8config vlan qosprofile 10config vlan secondary-ip 35config vlan slb-type 17config vlan subvlan address range 35config vlan subvlan 35config vlan tag 8config vlan upd-profile 35config vlan xnetid 54config vrrp add vlan 32config vrrp delete 33config vrrp vlan add 33config vrrp vlan authentication 33config vrrp vlan delete vrid 33config vrrp vlan vrid 33config web login-timeout 3create access-list icmp destination source 26create access-list ip destination source ports 26create access-list tcp destination source ports 26create access-list udp destination source ports 26create access-profile 26create account pppuser 58create account pppuser 60create account 2create aps 58create bgp neighbor peer-group 48create bgp neighbor remote-AS 49create bgp peer-group 49create eaps 29create fdbentry vlan blackhole 9create fdbentry vlan dynamic 9create fdbentry vlan ports 9create flow-redirect 17create isis area 42create multilink 60create ospf area 42create protocol 8create qosprofile 10create route-map 26create slb pool 17create slb vip 17create stpd 30create udp-profile 35create vlan 8delete access-list 26delete access-profile 26delete account pppuser 58delete account pppuser 60delete account 2delete aps 58delete bgp neighbor 49delete bgp peer-group 49delete eaps 29delete fdbentry 9delete flow-redirect 17delete isis area 42delete multilink 60delete ospf area 42delete protocol 8delete qosprofile 10delete route-map 26delete slb pool 17delete slb vip 17delete stpd 30delete udp-profile 35delete vlan 8disable access-list 26disable accounting 55disable aps 58disable bgp aggregation 49disable bgp always-compare-med 49disable bgp community format 49disable bgp export 49disable bgp neighborremove-private-AS-numbers 49disable bgp neighbor soft-in-reset 49disable bgp neighbor 49disable bgp peer-group 49disable bgp synchronization 49disable bgp 49disable bootp vlan 35disable bootprelay 35disable cli-config-logging 21disable clipaging 2disable cpu-dos-protect 26disable dhcp ports vlan 26disable diffserv examination ports 1078 - Index of Commands <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

disable diffserv replacement ports 10disable dlcs 10disable dot1p replacement ports 10disable dvmrp rxmode vlan 52disable dvmrp txmode vlan 52disable dvmrp 52disable eaps 29disable edp ports 6disable esrp vlan 32disable flooding ports 6disable flow-redirect 17disable flowstats filter ports 21disable flowstats ping-check 21disable flowstats ports 21disable flowstats 21disable gvrp 8disable icmp address-mask 35disable icmp parameter-problem 35disable icmp port-unreachables 35disable icmp redirects 35disable icmp time-exceeded 35disable icmp timestamp 35disable icmp unreachables 35disable icmp useredirects 35disable idletimeouts 2disable igmp snooping with-proxy 52disable igmp snooping 52disable igmp 52disable ignore-bpdu vlan 30disable ignore-stp vlan 30disable iparp checking 35disable iparp refresh 35disable ipforwarding lpm-routing 36disable ipforwarding lpm-routing 55disable ipforwarding 36disable ipmcforwarding 52disable ip-option loose-source-route 36disable ip-option record-route 36disable ip-option record-timestamp 36disable ip-option strict-source-route 36disable ip-option use-router-alert 36disable iproute sharing 36disable ipxrip 54disable ipxsap gns-reply 54disable ipxsap 54disable irdp 36disable isis export 42disable isis ignore-attached-bit 42disable isis originate-default 42disable isis overload 43disable isis 42disable isq vlan 10disable jumbo-frame ports 6disable lbdetect port 6disable learning ports 6disable log display 21disable loopback-mode vlan 36disable lpm 55disable mac-vlan port 8disable mirroring 6disable mpls 63disable multilink 60disable multinetting 36disable nat 12disable netlogin logout-privilege 26disable netlogin ports 27disable netlogin session-refresh 27disable netlogin 26disable ospf capability opaque-lsa 43disable ospf export 43disable ospf originate-router-id 43disable ospf 43disable pim 52disable ports loopback 60disable ports 6disable qosmonitor 11disable radius 27disable radius-accounting 27disable red ports queue 58disable red ports 11disable rip aggregation 43disable rip export 43disable rip exportstatic 43disable rip originate-default 43disable rip poisonreverse 43disable rip splithorizon 43disable rip triggerupdate 43disable rip 43<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide Index of Commands - 79

disable rmon 21disable sharing 6disable slb 3dns 17disable slb failover manual-failback 17disable slb failover ping-check 17disable slb failover 17disable slb global synguard 17disable slb gogo-mode ping-check 17disable slb gogo-mode service-check 17disable slb gogo-mode tcp-port-check 17disable slb gogo-mode 17disable slb L4-port 17disable slb node ping-check 18disable slb node tcp-port-check 18disable slb node 18disable slb proxy-client-persistence 18disable slb vip client-persistence 18disable slb vip service-check 18disable slb vip sticky-persistence 18disable slb vip svcdown-reset 18disable slb vip 18disable slb 17disable slot 6disable smartredundancy 6disable snmp access 3disable snmp dot1dTpFdbTable 3disable snmp traps mac-security 4disable snmp traps port-up-down 4disable snmp traps 3disable sntp-client 4disable ssh2 27disable stpd ports 30disable stpd rapid-root-failover 30disable stpd 30disable subvlan-proxy-arp vlan 36disable sys-health-check 21disable syslog 21disable system-watchdog 4disable tacacs 27disable tacacs-accounting 27disable tacacs-authorization 27disable telnet 4disable type20 forwarding 54disable udp-echo-server 36disable vrrp 33disable web 4download bootrom 64download configuration cancel 64download configuration every 64download configuration 64download image 64enable access-list 27enable accounting 55enable aps 59enable bgp aggregation 49enable bgp always-compare-med 49enable bgp community format 49enable bgp export 49enable bgp neighborremove-private-AS-numbers 50enable bgp neighbor soft-in-reset 50enable bgp neighbor 49enable bgp peer-group 50enable bgp synchronization 50enable bgp 49enable bootp vlan 36enable bootprelay 36enable cli-config-logging 21enable clipaging 2enable cpu-dos-protect simulated 27enable cpu-dos-protect 27enable dhcp ports vlan 4enable diffserv examination ports 11enable diffserv replacement ports 11enable dlcs 11enable dot1p replacement ports 11enable dvmrp rxmode vlan 52enable dvmrp txmode vlan 52enable dvmrp 52enable eaps 29enable edp ports 6enable esrp vlan 32enable flooding ports 6enable flow-redirect 18enable flowstats filter ports 21enable flowstats ping-check 21enable flowstats ports 22enable flowstats 2180 - Index of Commands <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

enable gvrp 8enable icmp address-mask 36enable icmp parameter-problem 36enable icmp port-unreachables 36enable icmp redirects 37enable icmp time-exceeded 37enable icmp timestamp 37enable icmp unreachables 37enable icmp useredirects 37enable idletimeouts 2enable igmp snooping with-proxy 52enable igmp snooping 52enable igmp 52enable ignore-bpdu vlan 30enable ignore-stp vlan 30enable iparp checking 37enable iparp refresh 37enable ipforwarding lpm-routing 37enable ipforwarding lpm-routing 56enable ipforwarding 37enable ipmcforwarding 52enable ip-option loose-source-route 37enable ip-option record-route 37enable ip-option record-timestamp 37enable ip-option strict-source-route 37enable ip-option use-router-alert 37enable iproute sharing 37enable ipxrip 54enable ipxsap gns-reply 54enable ipxsap 54enable irdp 37enable isis export 43enable isis ignore-attached-bit 43enable isis originate-default 43enable isis overload 44enable isis 43enable isq vlan 11enable jumbo-frame ports 6enable lbdetect port 6enable learning ports 6enable license 2enable log display 22enable loopback-mode vlan 37enable lpm 56enable mac-vlan mac-group port 8enable mirroring to port 6enable mpls 63enable multilink 60enable multinetting 38enable nat 12enable netlogin logout-privilege 27enable netlogin ports 27enable netlogin session-refresh 27enable netlogin 27enable ospf capability opaque-lsa 44enable ospf export direct 44enable ospf export rip 44enable ospf export static 44enable ospf export vip 44enable ospf export 44enable ospf originate-default 44enable ospf originate-router-id 44enable ospf 44enable pim 52enable ports loopback remote 60enable ports loopback 60enable ports t1 loopback network payload 60enable ports 6enable qosmonitor 11enable radius 27enable radius-accounting 27enable red ports queue 59enable red ports 11enable rip aggregation 44enable rip export cost 44enable rip exportstatic 44enable rip originate-default cost 44enable rip poisonreverse 44enable rip splithorizon 44enable rip triggerupdate 45enable rip 44enable rmon 22enable sharing grouping 6enable slb 3dns 18enable slb failover manual-failback 18enable slb failover ping-check 18enable slb failover 18enable slb global synguard 18<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide Index of Commands - 81

enable slb gogo-mode ping-check 18enable slb gogo-mode service-check 18enable slb gogo-mode tcp-port-check 18enable slb gogo-mode 18enable slb L4-port 19enable slb node ping-check 19enable slb node tcp-port-check 19enable slb node 19enable slb proxy-client-persistence 19enable slb vip client-persistence 19enable slb vip service-check 19enable slb vip sticky-persistence 19enable slb vip svcdown-reset 19enable slb vip 19enable slb 18enable slot 6enable smartredundancy 6enable snmp access 4enable snmp dot1dTpFdbTable 4enable snmp traps mac-security 4enable snmp traps port-up-down 4enable snmp traps 4enable sntp-client 4enable ssh2 27enable stpd ports 30enable stpd rapid-root-failover 30enable stpd 30enable subvlan-proxy-arp vlan 38enable sys-backplane-diag 22enable sys-health-check 22enable syslog 22enable system-watchdog 4enable tacacs 27enable tacacs-accounting 27enable tacacs-authorization 27enable telnet 4enable type20 forwarding 54enable udp-echo-server 38enable vman termination 60enable vrrp 33enable web 4exit 4history 2logout 4nslookup 69ping 69quit 4reboot 2restart multilink 60restart ports 7rtlookup 38run diagnostics packet-memory slot 69run diagnostics 69run fdb-check 9run ipfdb-check 38run ipmcfdb-check 52run msm-failover 7save configuration 64scp2 configuration 27scp2 27show access-list 27show access-list-fdb 27show access-list-monitor 28show access-profile 28show accounting 56show accounts pppuser 2show accounts pppuser 59show accounts pppuser 60show aps 59show atm 56show banner 2show bgp neighbor 50show bgp peer-group 50show bgp routes 50show bgp 50show configuration 65show cpu-dos-protect 28show debug-trace 69show diagnostics backplane arm mapping 69show diagnostics backplane mpls mapping 70show diagnostics backplane utilization 70show diagnostics packet-memory slot 70show diagnostics slot fdb 70show diagnostics 69show dlcs 11show dns-client 2show dot1p 11show dvmrp 5282 - Index of Commands <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

show eaps summary 29show eaps 29show edp 7show esrp vlan 32show esrp 32show esrp-aware vlan 32show fdb 9show flow-redirect 19show flowstats export 22show flowstats 22show flowstats 22show flowstats 59show gvrp 8show igmp group 52show igmp snooping 53show iparp proxy 38show iparp 38show ipconfig 38show ipfdb 38show ipmc cache 53show ipmc fdb 53show iproute 38show ipstats 38show ipxconfig 54show ipxfdb 54show ipxrip 55show ipxroute 55show ipxsap 55show ipxservice 55show ipxstats 55show isis adjacency 45show isis interface 45show isis lsdb 45show isis 45show l2stats 53show log config 22show log 22show lpm 56show mac-vlan 8show management 4show memory 22show mirroring 7show mpls forwarding 63show mpls interface 63show mpls label 63show mpls ldp 63show mpls qos-mapping 64show mpls rsvp-te lsp 64show mpls rsvp-te path 64show mpls rsvp-te profile 64show mpls rsvp-te 64show mpls tls-tunnel 64show mpls 63show multilink alarms 61show multilink e1 errors 61show multilink stats 61show multilink t1 errors 61show multilink 61show nat 12show netlogin ports 28show netlogin 28show odometer 4show ospf area detail 45show ospf area 45show ospf ase-summary 45show ospf interfaces detail 45show ospf interfaces 45show ospf lsdb area lstype 45show ospf virtual-link 45show ospf 45show pim 53show ports alarms 61show ports collisions 7show ports configuration 61show ports configuration 7show ports e1 errors 61show ports errors 61show ports info 61show ports info 7show ports packet 7show ports qosmonitor 11show ports rxerrors 22show ports sharing 7show ports stats 22show ports stats 61show ports txerrors 22show ports utilization 7show ppp 59<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide Index of Commands - 83

show ppp 61show protocol 8show qosprofile 11show qostype priority 11show radius 28show radius-accounting 28show rip stat vlan 45show rip stat 45show rip vlan 45show rip 45show route-map 28show session 4show sharing address-based 7show slb 3dns members 19show slb connections 19show slb esrp 19show slb failover 19show slb global 19show slb gogo-mode 19show slb L4-port 19show slb node 20show slb persistence 20show slb pool 20show slb stats 20show slb vip 20show slot 7show sntp-client 5show sonet 59show stpd ports 31show stpd 31show switch 2show system-dump 70show tacacs 28show tacacs-accounting 28show tech-support 70show udp-profile 38show version 22show vlan dhcp-address-allocation vlan 5show vlan dhcp-config vlan 5show vlan 8show vrrp vlan stats 33show vrrp 33ssh2 28synchronize 65top 70traceroute 2unconfig aps 59unconfig cpu-dos-protect 28unconfig diffserv dscp-mapping ports 59unconfig diffserv examination ports 11unconfig diffserv replacement ports 11unconfig dvmrp 53unconfig eaps port 29unconfig flowstats filter 22unconfig flowstats ports 22unconfig icmp 38unconfig igmp 53unconfig iparp 38unconfig ipxrip 55unconfig ipxsap 55unconfig irdp 38unconfig mpls qos-mapping 64unconfig mpls 64unconfig mpls 64unconfig ospf 45unconfig pim 53unconfig ports display string 7unconfig ports monitor vlan 8unconfig ports redundant 7unconfig ppp ports 59unconfig ppp 61unconfig qostype priority 11unconfig radius 28unconfig radius-accounting 28unconfig rip 46unconfig slb all 20unconfig slb gogo-mode health-check 20unconfig slb gogo-mode service-check 20unconfig slb vip service-check 20unconfig slot 7unconfig sonet ports 59unconfig stpd 31unconfig switch 65unconfig system-dump 70unconfig tacacs 28unconfig tacacs-accounting 28unconfig udp-profile 38unconfig vlan ipaddress 984 - Index of Commands <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

unconfig vlan xnetid 55upload configuration cancel 65upload configuration 65upload system-dump 70use configuration 65use image 65xping 55<strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide Index of Commands - 85

86 - Index of Commands <strong><strong>Extreme</strong>Ware</strong> <strong>7.0</strong>.0 <strong>Software</strong> <strong>Quick</strong> <strong>Reference</strong> Guide

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!