Fabric Engine User Guide Version 9.0.2
>
IPsec
> IPsec configuration using CLI
Published March 2024
Search this document
Print this page
Email this page
View PDF
Previous
Next
About this Document
Purpose
Conventions
Text Conventions
Documentation and Training
Help and Support
Send Feedback
New in this Document
Notice about Feature Support
Installation and Commissioning Documentation
Zero Touch Capabilities
Auto-sense
Auto-sense Port States
DHCP Port Snooping
Auto-sense Configuration using CLI
Enable Auto-sense on Port(s)
Disable Auto-sense on Port(s)
Configure Auto-sense IS-IS Level 1 Metric
Configure the Auto-sense Wait Interval Globally
Configure the Auto-sense Wait Interval for a Port
Configure Auto-sense IS-IS Authentication
Configure Auto-sense Access Ports
Disable Auto-sense DHCP Server Detection
Configure the Auto-sense Onboarding I-SID on the Switch
Configure a Auto-sense Global Data I-SID
Configure an Auto-sense Port Data I-SID
Configure Layer 2 Trusted Auto-sense Ports
Configure EAPoL Authentication Requirements for Auto-sense Fabric Attach Clients
Configure Auto-sense Fabric Attach (FA) Authentication
Configure an I-SID for Auto-sense Fabric Attach Clients
Configure a Management I-SID for Auto-sense Fabric Attach Proxy Switches
Configure a Management I-SID for Auto-sense Fabric Attach Proxy Ring Switches
Variable Definitions
Display Auto-sense Configuration on the Switch
Configure Maximum EAP Clients on Auto-sense Ports
Configure Maximum MAC Clients on Auto-sense Ports
Configure Maximum NEAP Clients on Auto-sense Ports
Display Maximum EAP and NEAP Clients Configured on Auto-sense Enabled Ports
Auto-sense Configuration using EDM
Auto-sense Global Configuration using EDM
Enable LLDP Authentication of IP Phones
Configure Auto-sense Voice Information for IP Phones
Disable Auto-sense DHCP Server Detection
Configure Auto-sense Onboarding I-SID Globally
Configure the Auto-sense Wait Interval Globally
Configure Auto-sense Data I-SID Globally
Configure Layer 2 Trusted Auto-sense Ports
Configure Auto-sense IS-IS Authentication
Configure Auto-sense Access Ports
Configure Auto-sense for Fabric Attach
Configure Maximum MAC Clients on Auto-sense Ports using EDM
Configure Maximum EAP Clients on Auto-sense Ports using EDM
Configure Maximum NEAP Clients on Auto-sense Ports using EDM
Configure Level 1 Metric for Auto-sense
Auto-sense Port Configuration using EDM
View or Modify the Auto-sense Port Configuration
Enable Auto-sense on Port(s)
Disable Auto-sense on Port(s)
Configure an Auto-sense Data I-SID on a Port
Configure the Auto-sense Wait Interval for a Port
Auto-sense Logical Flowcharts
Auto-sense Fabric NNI
Auto-sense UNI Client without NAC
Auto-sense UNI Client with NAC
Auto-sense Voice without NAC
Auto-sense Voice with NAC
Auto-sense FA Proxy Switch
Auto-sense FA Ring Proxy Switch
Auto-sense FA WAP, Camera, or OVS without NAC
Auto-sense FA WAP, Camera, or OVS with NAC
Automatic Channelization with Auto-sense
Auto-sense with ExtremeCloud SD-WAN
IP Phone Support
Auto-sense Voice
IP Phone Configuration using CLI
Configure Auto-sense Voice Information for IP Phones
Enable Auto-sense LLDP Authentication of IP Phones
Configure LLDP Vendor Specific Information
View LLDP Vendor Specific Information
View LLDP Neighbor Vendor Specific Information
Enable LLDP Voice Authentication on a Specific Port
IP Phone Configuration using EDM
View Vendor Specific Call Server Information
View Vendor Specific File Server Information
Zero Touch Deployment
Configuration Considerations
Zero Touch Provisioning Plus
ZTP+ Phases of Operation
ZTP+ Considerations
Configure ZTP+ Using the CLI
View ZTP+ Status
Zero Touch Fabric Configuration
Default IS-IS Parameters
Establishing IS-IS Adjacencies
LLDP Fabric Connect TLV
Example: Create an IS-IS Adjacency between Auto-sense and non-Auto-sense VOSS Switches
Segmented Management
Migration to Segmented Management Instance
Interface Types
CLIP
OOB
VLAN
Management Applications
DHCP Client for Segmented Management Instance
DHCP Client Restrictions
DHCP Option 43
DHCP Option 43 Configuration Examples
Dynamic Change Options for Segmented Management Instance Attributes
Segmented Management Instance Configuration using the CLI
Migrate a VLAN or CLIP IP address to the Segmented Management Instance
Configure a Segmented Management Instance Using quick-config-mgmt Utility
Create a Segmented Management Instance
Delete a Segmented Management Instance
Configure the DHCP Client for a Segmented Management Instance
Configure an IP Address for a Segmented Management Instance
Configure a Segmented Management Instance Interface as Default Topology IP
Configure Static Routes for a Management Instance
Configure Fragmented ICMP Packet Filtering on a Segmented Management Instance
View Fragmented ICMP packet filtering Statistics on a Segmented Management Instance
Configure MAC-offset for a Management VLAN Instance
Change Management Instance Attributes
View Segmented Management Instance Information
View IP Address Information for a Segmented Management Instance
View Segmented Management Instance Statistics
Redistribution of CLIP Segmented Management Instance Examples
Segmented Management Instance Configuration using EDM
Migrate an IP Address to a Segmented Management Instance
Configure a Segmented Management Instance
Configure DHCP Client for a Segmented Management Instance
View IPv4 ARP Information for a Segmented Management Instance
View IPv6 ND Information for a Segmented Management Instance
Configure IPv4 Static Routes for a Management Instance
Configure IPv6 Static Routes for a Management Instance
View IPv4 Operational Routes for a Segmented Management Instance
View IPv6 Operational Routes for a Segmented Management Instance
View Topology IP for a Segmented Management Instance
Configure an IP Address for a Segmented Management Instance
Configure an IPv6 Address for a Segmented Management Instance
View Segmented Management Instance Statistics
View IP Address Statistics for a Segmented Management Instance
View IPv6 Address Statistics for a Segmented Management Instance
View IP ICMP Statistics for a Segmented Management Instance
View IPv6 ICMP Statistics for a Segmented Management Instance
View UDP Statistics for a Segmented Management Instance
View TCP Statistics for a Segmented Management Instance
View TCP Connections and UDP Endpoints Statistics for a Segmented Management Instance
Basic Administration
Fundamentals
Advanced Feature Bandwidth Reservation
spbm-config-mode boot flag
nni-mstp boot config flag
System Connections
Boot Sequence
System logon
System Flags
Secure and Nonsecure Protocols
Client and Server Support
Password encryption
Enterprise Device Manager
Enterprise Device Manager access
Default user name and password
TLS server for secure HTTPS
Basic Configuration
Connect a Terminal
Change Passwords
Configure System Identification
Configure the CLI Banner
Configure the Date
Enable Remote Access Services
Use Telnet to Log on to the Device
Enable the Web Management Interface
Enable the Web Server RO User
Configure the TLS Protocol Version
Access the Switch Through the Web Interface
Configure the Minimum Version of the TLS Protocol
Save the Configuration
Back Up Configuration Files
Remove a Software Build
Verification
Verify Boot Configuration Flags
Verify the Software Release
Display Local Alarms
Display log files
Basic Administration Procedures using CLI
Restart the platform
Reset the Platform
Shut Down the System
Configure the Default Ping and Traceroute Context
Calculate the File Checksum
Reset System Functions
Source a Configuration
Using the USB Device
Save a File to an External USB Device
Back Up and Restore the Compact Flash to an External USB Device
Copy Configuration and Log Files from a USB Device to Intflash
Display the Contents of a USB File
Move a File to or from a USB Device
Delete a file from a USB Device
Back Up Configuration Files to ZIP
Backing up configuration files to a ZIP file
Restore Configuration Files from a ZIP File
Basic administration procedures using EDM
Reset the Platform
Show the MTU for the System
Save the Configuration
View UBoot Version and Status
Boot parameter configuration using the CLI
Modify the Boot Sequence
Configure the Remote Host Logon
Change the Primary or Secondary Boot Configuration Files
Display the Boot Configuration
Configure Serial Port Devices
Boot Flag Configuration using CLI
Reserve Bandwidth for Advanced Features
Display Advanced Feature Bandwidth Reservation Ports
Enable Debugging of the Configuration File During System Start
Enable Debug Mode
Enable a Switch as a DvR Leaf Node
Enable Factory Default Behavior
Return an Existing Configuration to Factory Defaults
Enable Flow Control
Enable System Logging
Enable MACsec
Enable MSTP and VLAN Configuration on NNI ports
Enable Automatic Reboot
Enable SPBM and IS-IS Configuration on the Switch
Configure the Syslog Output Format
Enable Trace Logs
Disable Syntax Checking of the Configuration File
Run-time process management using CLI
Configure the Time Zone
Configure the Run-time Environment
Configure CLI Logging
Configure System Parameters
Configure System Message Control
Extend System Message Control
Hardware status using EDM
Configure Polling Intervals
View Module Information
View Power Supply Parameters
View System Temperature Information
Command Line Interface
Command Line Interface Fundamentals
CLI Command Modes
Special CLI Command Modes
Default User Names and Passwords for CLI
Documentation convention for the port variable
Command Completion
default command operator
no command operator
GREP with CLI show command
Timestamp in show command outputs
Authentication for Privileged EXEC Command Mode
CLI Procedures
Log on to the Software
View the Configuration
Save the Configuration
Configure the Web Server
Use GREP CLI Show Command Filters
Enterprise Device Manager
Enterprise Device Manager Fundamentals
Supported Browsers
Enterprise Device Manager Access
Default User Name and Password for EDM
Device Physical View
EDM Window
Navigation Pane
Menu Bar
Toolbar
Content Pane
EDM user session extension
EDM interface procedures
Connect to the Switch Using EDM
Configure the Web Management Interface
Use the chassis shortcut menu
Use the port shortcut menu
Use a table-based tab
Monitor Multiple Ports and Configuration Support
Open Folders and Tabs
Undock and dock tabs
Install EDM Help Files
File Management in EDM
Copy a File
Display Storage Use
Display Internal Flash File Information
Display USB File Information
Image Management
Image Upgrades
Image Naming Conventions
Firmware Update And Verification With Digital Signed Certificate
Interfaces
File Storage Options
Boot Loader Image on Universal Hardware
Before You Upgrade
Calculate and Verify the MD5 Checksum for a File on the Switch
Calculate and Verify the MD5 Checksum for a File on a Client Workstation
Save the Configuration
Upgrade the Software
Verify the Upgrade
Commit an Upgrade
Downgrade the Software
Remove a Software Build
Update the Complex Programmable Logic Device (CPLD) Image
LRM/MACsec Adapter
Upgrade the LRM/MACsec Adapter PHY Firmware
Address Resolution Protocol
Address Resolution Protocol
Reverse Address Resolution Protocol
ARP configuration using the CLI
Enable ARP on a Port or a VLAN
Enable ARP Proxy
View ARP Information
Configure IP ARP Static Entries
Clear ARP Entries
Show ARP Table Information
Configure Gratuitous ARP
ARP configuration using Enterprise Device Manager
Enable or Disable ARP on a Port
Enable or Disable ARP on a VLAN
View ARP Entries
Create Static ARP Entries
Configure ARP Proxy
Alternative Routes
Route Preference
Preferences for Static Routes
Preferences for Dynamic Routes
Alternative Route Configuration using CLI
Enable IPv4 Alternative Routes
Enable IPv6 Alternative Routes
Alternative Route Configuration using EDM
Enable IPv4 Alternative Routes
Enable IPv6 Alternative Routes
IPv6 Alternative Routes Configuration Example
Application Telemetry
How Application Telemetry Works
Common Elements Between sFlow and Application Telemetry
Operational Considerations
Configuration Overview
Host Monitoring
Application Telemetry Configuration Using CLI
Configure the Agent IP Address
Configure an Analytics Engine and Enabling Application Telemetry Globally
View Application Telemetry Counters
Clear Application Telemetry Counters
Application Telemetry Configuration Using EDM
Enable Application Telemetry Globally
View Application Telemetry Counters
Clear Application Telemetry Counters
View Application Telemetry Status
Bidirectional Forwarding Detection
BFD Fundamentals
BFD Overview
BFD Operation
BFD States
BFD Configuration
BFD Considerations
BFD Configuration using CLI
Enable BFD Globally
Configure BFD on an IPv4 Interface
Configure BFD on an IPv6 Interface
Enable BFD at the BGP Application Level
Enable BFD at the OSPF Application Level
Configure BFD on an IPv4 Static Route
Configure BFD on an IPv6 Static Route
Clear BFD Session Statistics
Display BFD Global Configuration
Display BFD Configuration for an IPv4 Interface
Display BFD Configuration for an IPv6 Interface
Display BFD IPv4 Neighbor Information
Display BFD IPv6 Neighbor Information
Display BFD Statistics
BFD Configuration using EDM
Enable BFD Globally
Display BFD Sessions
Configure BFD for an IPv4 Interface on a Port
Configure BFD for an IPv6 Interface on a Port
Configure BFD for an IPv4 Interface on a VLAN
Configure BFD for an IPv6 Interface on a VLAN
Enable BFD for BGP Peers
Enable BFD for BGP Peer Groups
Enable BFD for BGPv6 Peers
Enable BFD for OSPF on an IPv4 Port Interface
Enable BFD for OSPF on an IPv4 VLAN Interface
Enable BFD for OSPF on an IPv6 Port Interface
Enable BFD for OSPF on an IPv6 VLAN Interface
Configure BFD on an IPv4 Static Route
Configure BFD on an IPv6 Static Route
Display BFD Performance Counters
BGP
BGP fundamentals
Autonomous Systems
BGP 4 Byte AS Support
Routing information consolidation
BGP Communities
BGP path attributes
BGP Route Selection
BGP and dampened routes
BGP Updates
Equal Cost Multipath
MD5 message authentication
BGP and route redistribution
BGP+
ECMP with BGP+
BGPv6
Circuitless IP
BGP Configuration Considerations and Limitations
BGP configuration using CLI
Configure BGP
Configure 4-byte AS numbers
Configure Aggregate Routes
Configure Allowed Networks
Configure BGP Peers or Peer Groups
Configure a BGP Peer or Peer Group Password
Configure Redistribution to BGP
Configure redistribution to BGP+ for VRF 0
Configure AS Path Lists
Configure Community Lists
Configure Extended Community Lists
Configure an AS Number for a Non-default VRF
BGP Verification Using CLI
View BGP Aggregate Information
View IPv6 BGP+ Aggregate Information
View CIDR Routes
View BGP Configuration
View BGP Confederation
View Flap-Dampened Routes
View Global Flap-Dampening Configurations
View Imported Routes
View BGPv6 Imported Routes
View BGP Neighbors Information
View BGPv6 Neighbors Information
View BGP Network Configurations
View IPv6 BGP+ Network Configurations
View BGP Peer Group Information
View BGP Redistributed Routes
View BGPv6 Redistributed Routes
View a Summary of BGP Configurations
View a Summary of BGPv6 Configurations
View BGP Routes
View BGPv6 Routes
BGP configuration using EDM
Configure BGP
Configure 4-byte AS numbers
View BGP Global Stats
Configure Aggregate Routes
Configure Aggregate IPv6 Routes
Configure Allowed Networks
Configure Allowed IPv6 Networks
Configure BGP Peers
Configure BGPv6 Peers
Configure Peer Groups
View IPv6 Community Attributes
Display Dampened Routes Information
Configure Redistribution to BGP
Configure Redistribution to BGPv6
View BGP+ or BGPv6 Route Summary Information
View BGP Route Summary
Configure an AS Path List
Configure a Community Access List
BGP Configuration Examples
IPv6 Tunnel Configurations for BGP+
eBGP+ peership between two switches with IPv6 Tunneling
iBGP+ peership on CLIP between two switches with IPv6 Tunneling
Native IPv6 eBGP peership between two switches on VRF
iBGP over User-created VRFs Configuration Example
Chassis Operations
Chassis operations fundamentals
Entity MIB – Physical Table
Software Lock-up Detection
Port Lock feature
Jumbo frames
Multi-speed Ports
Auto-Negotiation
Default Auto-Negotiation Behavior
10/100/1000 Mbps Port Considerations
25 GbE Port Considerations
40 GbE Port Considerations
100 GbE Port Considerations
Auto-Negotiation Advertisements
SynOptics Network Management Protocol
Channelization
Feature Interaction with Channelization
Forward Error Correction
IEEE 802.3X Pause Frame Transmit
Auto MDIX
Chassis operations configuration using the CLI
Enable Jumbo Frames
Configure Port Lock
Configure SONMP
View the Topology Message Status
Associate a Port to a VRF Instance
Configure Ethernet Ports with Auto-Negotiation
Configure Auto-Negotiation Advertisements
Configure IEEE 802.3X Pause Frame Transmit
Enable Channelization
Configure FEC on a Port
Configure Serial Management Port Dropping
Enable the Locator LED
Enable or Disable the USB Port
Configure Port Speed
Configure Port Speeds for All VIM Ports
Display Ports Speeds for All VIM Ports
View the Management Port Statistics
Display Detailed Statistics for Ports
View Fan Information
View Baseboard Management Controller Information
Display Power Status
Chassis operations configuration using EDM
Edit System Information
Edit Chassis Information
View Physical Entities
View Entity Aliases
View Entity Child Indexes
Configure System Flags
Configure Channelization
Configure Basic Port Parameters
Configure Basic Parameters on an Extreme Integrated Application Hosting Port
Configure IEEE 802.3X Pause Frame Transmit
View the Boot Configuration
Configure Boot Flags
Reserve Bandwidth for Advanced Features
Enable Jumbo Frames
Configure the Date and Time
Configure CP Limit
Configure CP Limit on an Extreme Integrated Application Hosting Port
Edit the Management Port Parameters
Automatically Reactivate a Port Shutdown by SLPP
Edit Serial Port Parameters
Enable Port Lock
Lock a Port
View Power Information
View Power Status
View Fan Tray Information
View USB Port Information
View Topology Status Information
View the Topology Message Status
Configure a Forced Message Control Pattern
View Fan Information
Configure Port Speed for All VIM Ports
View Modular SSD Information
Graph Chassis Statistics
Graph Port Statistics
View Chassis System Statistics
View Chassis SNMP Statistics
View Chassis IP Statistics
View Chassis ICMP In Statistics
View Chassis ICMP Out Statistics
View Chassis TCP Statistics
View Chassis UDP Statistics
View Port Interface Statistics
View Port Ethernet Errors Statistics
DHCP and UDP Configuration
DHCP Fundamentals
DHCP Server
DHCP Custom Options
DHCP Vendor Options
High Availability
DHCP Server Deployment Types
DHCP Server Configuration Considerations
DHCP Relay
DHCP Option 82
DHCP Suboptions
Agent Operations
DHCP Relay for IPv6
DHCP Smart Relay for Secondary IP Interfaces
UDP Broadcast Forwarding
DHCP and UDP configuration using the CLI
DHCP Server Configuration
Configure DHCP Server General Parameters
Configure DHCP Custom Options
Display DHCP Server Custom Options Data
Configure DHCP Subnet
Configure High Availability for the DHCP Server
Configure a Static DHCP Server Lease
Enable DHCP Server
Display DHCP Server Information
Clear DHCP Server Leases
Clear DHCP Server Logs
Define Vendor Options Definitions
Display Vendor Options Definitions for DHCP Server
Configure Vendor Option Data Globally
Display Vendor Options Data for DHCP Server
Configure a Vendor Class
Display DHCP Server Vendor Class Information
Configure Custom Option Data for a Vendor Class
Display DHCP Server Custom Options Data
Configure Vendor Option Data for a Vendor Class
DHCP Relay Configuration
Configure DHCP Relay Parameters Globally
Configure DHCP option 82
Configure DHCP Relay on a Port or VLAN
Show DHCP Relay Information
Display DHCP-relay Statistics for Specific Ports
Display DHCP-relay Statistics for All Interfaces
UDP Broadcast Forwarding Configuration
Configure UDP protocols
Configure a UDP Port Forward Entry
Configure the UDP Port Forwarding List
Display UDP Forward Information
IPv6 DHCP Relay Configuration using CLI
Configure a DHCP Relay Forwarding Path
Configure DHCP Relay for an Interface
View DHCP Relay Information
View IPv6 DHCP Relay Statistics
DHCP and UDP configuration using Enterprise Device Manager
DHCP Server Configuration using EDM
Configure the DHCP Server Globally
Configure a DNS Address for the DHCP Server
Configure an NTP Address for the DHCP Server
Configure Custom Option Definitions for the DHCP Server
Configure Custom Option Data for DHCP Server Globally
Create a DHCP Server Subnet
Configure Subnet Routers for DHCP Server
Configure DNS for a DHCP Server Subnet
Configure an NTP Server for a DHCP Server Subnet
Configure Custom Option Data for a DHCP Server Subnet
Configure a Static DHCP Server Lease
Enable DHCP Server
Define Vendor Option Definitions
Configure Vendor Option Data Globally
Configure a Vendor Class
Configure Custom Option Data for a Vendor Class
Configure Vendor Option Data for a Vendor Class
DHCP Relay Configuration
Configure DHCP on a Brouter Port or a VRF Instance
Configure BootP/DHCP on a VLAN or VRF Instance
Configure DHCP Relay
Configure DHCP Relay on an IP Interface
View DHCP Statistics for an Interface
Graph DHCP Statistics for a Port
View DHCP Statistics for a Port
Display DHCP-relay Statistics for Option 82
Graph DHCP Statistics for a VLAN
UDP Broadcast Forwarding Configuration
Manage UDP Forwarding Protocols
Manage UDP Forwarding
Create the Forwarding Profile
Manage the Broadcast Interface
View UDP Endpoint Information
IPv6 DHCP Relay Configuration using EDM
Configure a DHCP Relay Forwarding Path
Configure DHCP Relay for an Interface
Modify DHCP Relay for a VLAN
Modify DHCP Relay for a Port
View DHCP Statistics for an IPv6 Interface
View IPv6 DHCP Relay Statistics for a Port
Domain Name Service
DNS fundamentals
DNS configuration using CLI
Configure the DNS Client
Query the DNS Host
DNS configuration using EDM
Configure the DNS Client
Query the DNS Host
Distributed Virtual Routing
Distributed Virtual Routing Fundamentals
DvR Domain
DvR Isolated Domains
DvR Controller
DvR Leaf Node
Eligibility Criteria for a Leaf Node
Summary of Controller and Leaf Node Functions
DvR backbone
DvR Backbone Members
DvR operation
ARP Learning
dvr-leaf-mode boot flag
In-band management
DvR deployment scenarios
DvR Deployment in a Single Data Center
DvR deployment in a dual data center
DvR Route Redistribution
Redistribution of IPv4 Local and Static Routes
Redistribution of Routes to OSPF or BGP
Route Redistribution and IS-IS Accept Policies
DvR Deployment for Wireless Roaming in Campus Deployments
Management I-SID Assignment to DvR Leaf
Using Ping or IP Traceroute for Hosts in the DvR-One-IP Subnet
DvR Restrictions
Configuration Restrictions on a DvR Controller
Configuration Limitations on a DvR Leaf
Restrictions on a DvR Isolated Controller
Migrate from VRRP to DvR
DvR-VRRP Coexistence
DvR and IPv6 VRRP Coexistence on the Same I-SID
Configuration Examples
DvR configuration using the CLI
Configure a DvR Controller
Configure an Isolated Controller on a DvR Isolated Domain
Variable Definitions
Disable Injection of Default Routes on a Controller
Configure DvR Route Redistribution
Clear DvR Host Entries
Configure a DvR Leaf
Configure vIST on a DvR Leaf Node Pair
Configure a Management VLAN on a DvR Leaf Node
Delete a Management VLAN on a DvR Leaf Node
Move a vIST Leaf Node Pair from one Domain to Another
Move a vIST Controller Pair from One Domain to Another
Configure a non-DvR BEB to Join the DvR Backbone
Configure DvR-VRRP Coexistence
DvR show commands
View DvR Summary
View Members of a DvR Domain
View DvR Interfaces
View DvR Host Entries
View DvR Routes
View DvR Database Information
View DvR Backbone Entries
View DvR Backbone Members
View Layer 3 VSN Information
View DvR Domain Redistribution Information
Configure a DvR Solution
DvR Configuration Using the EDM
Configure a DvR Controller or a DvR Leaf Globally
Configure DvR-VRRP Coexistence
View DvR Routes
View Members of a DvR Domain
View DvR Backbone Members
View Remote DvR Backbone Members
View DvR Interfaces
View DvR Host Entries
View Remote DvR Host Entries
Clear DvR Host Entries
View Layer 3 VSN Information
View the DvR Database
View the Remote DvR Database
View DvR Backbone Entries on a Controller
View Remote DvR Backbone Entries on a Controller
View DvR Multi-area SPB Backbone Entries on a Controller
View Remote DvR Multi-area SPB Backbone Entries on a Controller
Extensible Authentication Protocol over LAN
EAPoL
EAP terminology
EAP Configuration Considerations
Configuration Process
EAP System Requirements
EAP Dynamic VLAN Assignment
Multiple Host Multiple VLAN
Multiple Host Multiple VLAN Usage
EAP Functionality on Flex UNI Ports
EAP and Fabric Attach
MAC Move Detection on EAP Ports
Auto-sense Ports
RADIUS-Assigned VLAN or VLAN:ISID Bindings
RADIUS Configuration Prerequisites for EAP
RADIUS Accounting for EAP
RADIUS Dynamic User-Based Policies
NEAP host
NEAP Hosts on EAP Enabled Ports
NEAP MAC RADIUS Authentication
NEAP client
NEAP Client Re-Authentication
MAC Move for Authenticated Non-EAP Clients
NEAP MAC Learning and Authentication
EAP and NEAP Limitations
EAP and NEAP mac-max Settings
Example Scenarios
Multiple Host Single Authentication
EAP and NEAP MAC Clients on a Port with MHSA
Guest VLAN
Guest VLAN on a MHMV Port Usage Scenario
Guest VLAN on a MHSA Port Usage Scenario
Guest I-SID
EAP and NEAP separation
EAP and NEAP VLAN names
Fail Open VLAN with Continuity Mode
Fail Open I-SID with Continuity Mode
EAP Auto-ISID-Offset
Wake On LAN
EAPoL Configuration Using CLI
Globally Enable EAP on the Device
Configure EAP on an Interface
Configure EAP on a Port
Configure an EAP-Enabled RADIUS Server
Configure the Switch for EAP and RADIUS
Change the Authentication Status of a Port
Delete an EAP-Enabled RADIUS Server
Configure Fail Open VLAN
Display the Current EAP-Based Security Status
Display the Port VLAN Information
Configuring the Format of the RADIUS Password Attribute when Authenticating NEAP MAC Addresses using RADIUS
Enable RADIUS Authentication of NEAP Hosts on EAP Enabled Ports
Configure the Maximum MAC Clients
Configure Maximum EAP Clients
Configure Maximum NEAP Clients
Configure the Guest VLAN ID
Clear an EAP Client Session
Clear the NEAP Session
Configure EAP Operational Mode
Enable Dynamic Changes to EAP Sessions on a Port
Configure EAP auto-isid-offset
Configure the Guest I-SID
Configure Fail Open I-SID
Configure Wake-On-LAN
Show the EAPoL Status of the Device
Show EAPoL Authenticator Statistics
View EAPoL Session Statistics
EAP Configuration Using Enterprise Device Manager
Globally Configure EAP on the Server
Configure EAP on a Port
Configure EAP on an Extreme Integrated Application Hosting Port
Show the Port Access Entity Port Table
Show EAP Authentication
View Multihost Status Information
View EAP Session Statistics
View EAPoL Authenticator Statistics
View NEAP MAC Information
View EAPoL Vendor Specific Attributes Information
ExtremeCloud IQ Support
ExtremeCloud IQ Agent Configuration Considerations
Zero Touch Deployment
DHCP Option 43 Support
Considerations
Unified Metrics and Events Reporting
ExtremeCloud IQ Support Configuration using CLI
Configure ExtremeCloud IQ Agent
Configure Access to ExtremeCloud IQ
Configure Proxy Parameters
Display ExtremeCloud IQ Agent Information
Display ExtremeCloud IQ Agent Status
Reinstall ExtremeCloud IQ Agent Firmware
ExtremeCloud IQ Support Configuration using EDM
Configure ExtremeCloud IQ Agent
Extreme Integrated Application Hosting
Extreme Integrated Application Hosting
Extreme Integrated Application Hosting Ports
Connection Types
Link Flapping
Configuration Requirements
Third Party Virtual Machine
Fabric IPsec Gateway Fundamentals
Operational Considerations and Restrictions
Fabric Extend Over IPsec Limitations
Egress Shaping for Fabric Extend Tunnels on Fabric IPsec Gateway
Digital Certificates for Fabric IPsec Gateway
IPsec NAT-T
IPsec Compression
IPsec Fragmentation Before Encryption
Virtual Services Configuration using CLI
Access a Virtual Service Console
Install a Virtual Service
Configure a Virtual Service
Shut Down a Virtual Service
Delete Virtual Service Resources
Uninstall a Virtual Service
Display Virtual Service Configuration
Display Virtual Service Installation Status
Display Virtual Services Resources
Run a VM command from Network Operating System (NOS) CLI
Copy VM Files
Change a VM User Password from Network Operating System (NOS) CLI
Upgrade a Virtual Service
Virtual Services Configuration using EDM
View Virtual Services Resources
Configure a Virtual Service
Configure Disks to be used by the Virtual Service
Configure Virtual Ports
Install a Virtual Service
Run a VM command from EDM
Copy VM Files
Change a VM User Password from EDM
View Virtual Services Package File Information
Fabric IPsec Gateway Configuration using CLI
Upgrade a Fabric IPsec Gateway VM
Configure FTP Connection to an IP Address
Display the Default Directory on Fabric IPsec Gateway VM
Load Configuration File to Fabric IPsec Gateway VM
Ping an IP Address on Fabric IPsec Gateway VM
Configure Global Parameters on Fabric IPsec Gateway VM
Configure IPsec Tunnels on Fabric IPsec Gateway VM
Configure IPsec Compression
Enable Fragmentation Before Encryption on Fabric IPsec Gateway VM
Configure Public Key Infrastructure for IPsec Tunnels
Variable Definitions
Configure Egress Shaping Rate for IPsec Tunnels on Fabric IPsec Gateway VM
Configure the Subject Identity on Fabric IPsec Gateway VM
Generate the Key Pair on Fabric IPsec Gateway VM
Configure a Trustpoint CA on Fabric IPsec Gateway VM
Generate the Certificate Signing Request on Fabric IPsec Gateway VM
Remove Keys and Certificates on Fabric IPsec Gateway VM
View the Certificate Details on Fabric IPsec Gateway VM
View the Certificate Configuration on Fabric IPsec Gateway VM
Configure Logical Interface Tunnel on Fabric IPsec Gateway VM
Save Running Configuration to a File
Remove Configuration File from Fabric IPsec Gateway VM
Delete Global Configuration on Fabric IPsec Gateway VM
Delete IPsec Tunnel Configuration on Fabric IPsec Gateway VM
Delete Logical Interface Tunnel Configuration on Fabric IPsec Gateway VM
Display Data in a File on Fabric IPsec Gateway VM
Reboot Fabric IPsec Gateway VM
Reset Current Configuration on Fabric IPsec Gateway VM
Traceroute to an IP address on Fabric IPsec Gateway VM
Display the Default Configuration File on Fabric IPsec Gateway VM
Display IPsec Logs on Fabric IPsec Gateway
Display IPsec Routes on Fabric IPsec Gateway VM
Display IPsec Encryption Statistics on Fabric IPsec Gateway VM
Display the Status of IPsec Tunnels on Fabric IPsec Gateway VM
Displays the IPsec Configuration on the Fabric IPsec Gateway VM
Display the Logical Interface IPsec Configurations on the Fabric IPsec Gateway VM
Display Current Configuration on Fabric IPsec Gateway VM
Display Current Version of Fabric IPsec Gateway VM
Log Out of Fabric IPsec Gateway VM
Fabric Configuration Work Flow
Fabric Basics and Layer 2 Services
SPBM and IS-IS Infrastructure Fundamentals
spbm-config-mode boot flag
vxlan-gw-full-interworking-mode Boot Configuration Flag
MAC-in-MAC encapsulation
I-SID
BCBs and BEBs
VLANs without member ports
Basic SPBM network topology
E-Tree and Private VLAN topology
IS-IS
Standard TLVs
IS-IS Hierarchies
IS-IS PDUs
IS-IS Configuration Parameters
SPBM B-VLAN
Pre-populated FIB
RPFC
SPBM Unicast FIB
SPBM Restrictions
Network Load Balancing (NLB)
SPBM Script
IS-IS external metric
SPB Ethertype
Equal Cost Multipath Pathlist with Fabric Connect
FAN Transit
Auto-nickname for SPBM
Dynamic Nickname Assignment
MSTP-Fabric Connect Multi Homing
SPBM and IS-IS infrastructure configuration using CLI
Run the SPBM Script
Remove Existing SPBM Configuration
Configure the IS-IS Port Interfaces Using SPBM Script
Remove Specific IS-IS and MLT Interfaces
Configure Minimum SPBM and IS-IS Parameters
Configure Minimum SPBM and IS-IS Parameters using auto-nni Command
Configure I-SIDs for Private VLANs
Display Global SPBM Parameters
Display Global IS-IS Parameters
Display IS-IS Areas
Configure SMLT Parameters for SPBM
Configure Optional SPBM Parameters
Configure Optional IS-IS Global Parameters
Configure Optional IS-IS Interface Level 1 Parameters
Display IS-IS Interface Parameters
Display the IP Unicast FIB, Unicast FIB, and Unicast Tree
Display IS-IS LSDB and Adjacencies
Display IS-IS Statistics and Counters
Suspend Duplicate System ID Detection When Replacing a Switch
Configure Dynamic Nickname Assignment
Display Dynamic Nickname Assignment
Enable MSTP-Fabric Connect Multi Homing
Determine the Root Bridge in an MSTP-Fabric Connect Multi Homing Configuration
Increase the Number of SPB Nodes per Area
IS-IS external metric configuration using the CLI
Match Metric Type for IS-IS Routes
Configure the Metric Type for IS-IS Routes
Configure the Metric Type for IS-IS Routes Using Global Redistribute Command
SPBM and IS-IS infrastructure configuration using EDM
Configure Required SPBM and IS-IS Parameters
Display SPBM and IS-IS Summary Information
View the SPBM I-SID Information
View Level 1 Area Information
Configure SMLT Parameters for SPBM
Enable or Disable SPBM at the Global Level
Configure SPBM parameters
Displaying SPBM nicknames
Configure Interface SPBM Parameters
Configure SPBM on an Interface
View the IP Unicast FIB
View the IPv6 Unicast FIB
View the Unicast FIB
View LSP Summary Information
View IS-IS Adjacencies
Configure IS-IS Global Parameters
Configure System-Level IS-IS Parameters
View IS-IS System Statistics
Configure IS-IS Interfaces
Configure IS-IS Interface Level Parameters
View IS-IS Interface Counters
View IS-IS interface control packets
View Statistical Graph of IS-IS Interface Counters
View Statistical Graph of IS-IS Interface Sending Control Packet
View Statistical Graph of IS-IS Interface Receiving Control Packets
Configure an IS-IS Manual Area
Configure Dynamic Nickname Assignment
SPBM Configuration Examples
Basic SPBM configuration example
Ethernet and MLT configuration
IS-IS SPBM global configuration
IS-IS SPBM Interface Configuration
Verify SPBM Operations
Fabric Extend
Logical IS-IS Interface
Parallel Tunnel Support for Fabric Extend
IS-IS Hello Padding
Adjusting the TCP Maximum Segment Size
Types of Fabric Extend Deployments
Fabric Extend Tunnel IS-IS MTU
Fabric Extend Considerations
Fabric Extend configuration using the CLI
Configure Fabric Extend
Configure IS-IS Hello Padding
Adjust the TCP Maximum Segment Size
Configure BFD on a Fabric Extend Tunnel
Display IS-IS Logical Interfaces
Display BFD Fabric Extend Neighbor Information
Fabric Extend Configuration using EDM
Configure Fabric Extend Tunnels
Configure Fabric Extend Logical Interfaces
Adjust the TCP Maximum Segment Size
Display the Logical Interface Next Hop
Fabric Attach
FA Zero Touch Client Attachment
Fabric Attach Components
Fabric Attach Server
FA Proxies and FA Clients
Fabric Attach operation
FA TLVs
FA Element Discovery
FA Data Processing
FA Server and I-SID-to-VLAN Assignments
FA management
FA message authentication and integrity protection
Fabric Attach Ring with ISW-Series Managed Industrial Ethernet Switches
Fabric Attach and Switched UNI
Fabric Attach Deployment Scenarios
Fabric Attach Considerations
Fabric Attach Configuration using the CLI
Configure Fabric Attach Globally
Configure Fabric Attach Discovery Timeout
Configure Fabric Attach Assignment Timeout
Enable Fabric Attach on an Interface
Configure FA Message Authentication on an Interface
Configure the FA Authentication Key on an Interface
Configure FA Management on a Port or MLT
View Fabric Attach Global Configuration Status
View Fabric Attach Interface Configuration
Viewing Fabric Attach Discovered Elements
View Fabric Attach I-SID-to-VLAN Assignments
View Fabric Attach Statistics
Display Learned LLDP Neighbors
Display Switched UNI (ELAN) I-SID Information
Enable or disable FA Zero Touch Client Attachment
Display FA Zero Touch Client Attachment
Fabric Attach configuration using the EDM
Configure Fabric Attach Globally
Configure Fabric Attach I-SID-to-VLAN Assignments
Configure Fabric Attach Interface-level Settings
View Fabric Attach discovered elements
View FA statistics
View Global FA Statistics Graphically
View FA Port Statistics Graphically
Insert a Zero Touch Client
Configure FA Zero Touch Client Auto Attach
Fabric Attach configuration examples
Configure a Fabric Attach Solution
Configure Fabric Attach in an SMLT
Endpoint Tracking
ExtremeCloud IQ Site Engine Integration
Deployment Examples
Configuration Fundamentals
Configure Endpoint Tracking Using CLI
Configure Endpoint Tracking Interfaces
Configure Endpoint Tracking Globally
Configure Endpoint Tracking Visibility Mode
Display Endpoint Tracking Configuration Information
Configure Endpoint Tracking Using EDM
Configure Endpoint Tracking Interfaces
Configure Endpoint Tracking Globally
Display Binding Information
Multi-area SPB
Area Virtual Node
Remote IS-IS Instance
Multi-area SPB Redistribution and Policies
Layer 2 Redistribution
Layer 3 Unicast Redistribution
Multicast over SPB Redistribution
Distributed Virtual Routing Backbone Redistribution
Multi-area SPB Considerations and Restrictions
Duplicate System IDs Between IS-IS Areas
Duplicate Nicknames Between IS-IS Areas
Multi-area SPB Configuration using CLI
Multi-area SPB Configuration Flow
Configure Remote IS-IS Multi-area SPB Nickname for an SPBM Instance
Configure Remote IS-IS Manual Area
Configure Remote IS-IS System ID
Configure an IS-IS Area Name
Configure IS-IS Multi-area SPB Virtual Node
Configure Remote IS-IS Hello Authentication on a Port
Configure Remote IS-IS Layer 1 Designated Router Priority on a Port
Configure Remote IS-IS Hello Interval on a Port
Configure Remote IS-IS Hello Multiplier on a Port
Configure Remote IS-IS SPBM Parameters on a Port
Enable Remote IS-IS on a Port
Enable Remote IS-IS Router Configuration Globally
Configure Multi-area SPB Layer 2 I-SID List
Configure Multi-area SPB Layer 2 I-SID Redistribution
Configure IS-IS Multi-area SPB IPv4 Unicast Redistribution
Configure IS-IS Multi-area SPB IPv6 Unicast Redistribution
Configure IS-IS Multi-area SPB IPv4 Unicast Redistribution on a VRF Instance
Configure IS-IS Multi-area SPB IPv6 Unicast Redistribution on a VRF Instance
Configure Multi-area SPB DvR Backbone Redistribution
Configure Multi-area SPB Layer 2 Multicast Snooping Redistribution
Configure Multi-area SPB IPv4 Routed Multicast Redistribution
Configure IS-IS Multi-area SPB IPv4 Routed Multicast Redistribution on a VRF Instance
Configure Multi-area Flags Functionality
Configure Multi-area SPB IPv4 Static I-SID Routed Multicast Redistribution
Multi-area SPB Verification using CLI
Display the Remote IS-IS SPBM Nickname Configuration
Display IS-IS Remote Area Configuration
Display IS-IS Area Configuration
Display IS-IS Area Virtual Node Configuration
Display IS-IS Multi-area SPB Layer 2 I-SID List Information
Display IS-IS Multi-area SPB I-SID Redistribution Configuration
Display IS-IS Multi-area SPB IPv4 Redistribution Configuration
Display IS-IS Multi-area SPB IPv6 Redistribution Configuration
Display IS-IS Multi-area SPB DvR Configuration
Display IS-IS Multi-area SPB Layer 2 Multicast Snooping Redistribution Configuration
Multi-area SPB Configuration using EDM
Configure Multi-area SPB Layer 2 I-SID List
Configure Layer 2 Multi-area SPB I-SID Redistribution
Configure Multi-area SPB Layer 2 Multicast I-SID Redistribution for Home Area
Configure Multi-area SPB L2 Multicast I-SID List Redistribution for Home Area
Apply Multi-area SPB Layer 2 Multicast Redistribution in Home Area
Configure Multi-area SPB Layer 2 Multicast I-SID Redistribution for Remote Area
Configure Multi-area SPB L2 Multicast I-SID List Redistribution for Remote Area
Apply Multi-area SPB Layer 2 Multicast Redistribution in Remote Area
Configure Multi-area SPB Layer 3 Redistribution in Home Area
Configure Multi-area SPB Layer 3 Redistribution in Remote Area
Configure Multi-area SPB Layer 3 Static I-SID Routed Multicast Redistribution Policy in Home Area
Configure Multi-area SPB Layer 3 Static I-SID Routed Multicast Redistribution Policy in Remote Area
Configure Multi-area SPB DvR Redistribution
Display Remote IS-IS and SPBM Summary
Configure Remote IS-IS Global Parameters
Configure Remote IS-IS Interfaces
Configure Remote IS-IS Interface Level Parameters
Configure Remote SPBM on an Interface
View Statistical Graph of Remote IS-IS Interface Counters
View Statistical Graph of Remote IS-IS Interface Sending Control Packets
View Statistical Graph of Remote IS-IS Interface Receiving Control Packet
Configure Remote IS-IS Manual Area
View Level 1 Remote Area Information
View Remote LSP Summary Information
View Remote IS-IS Adjacencies
Configure IS-IS Area Virtual Node
Configure Remote IS-IS Area Virtual Node
Configure Remote SPBM Parameters
Configure Remote SPBM Parameters on the Interface
View Remote SPBM I-SID Information
View Remote SPBM Nicknames
View Remote IP Unicast FIB
View Remote IPv6 Unicast FIB
View Remote Unicast FIB
View Remote Multicast FIB
View Remote IP Multicast over Fabric Connect Routes
View UNI Ports for remote IP Multicast Routes
View Remote IS-IS System Statistics
View Remote IS-IS Interface Counters
View Remote IS-IS Interface Control Packets
View the Remote I-SID Forwarding Database
Multi-area SPB Configuration Example
Layer 2 VSN Configuration
Layer 2 VSN configuration fundamentals
SPBM Layer 2 VSN
Fabric Connect Service Types
Transparent Port UNI
Transparent Port UNI over vIST
Switched UNI
SPBM sample operation—L2 VSN
Layer 2 VSN configuration using the CLI
Configure SPBM Layer 2 VSN
Configure a Global I-SID Name
Display C-VLAN I-SID Information
Configure an SPBM Layer 2 Transparent Port UNI
View all Configured I-SIDs
View C-MACs Learned on T-UNI Ports for an I-SID
Configure an SPBM Layer 2 Switched UNI on an MLT
Configure an SPBM Layer 2 Switched UNI on a Port
View All Configured Switched UNI I-SIDs
Display C-VLAN and Switched UNI I-SID Information
Layer 2 VSN configuration using EDM
Configure SPBM Layer 2 VSN
Display the remote MAC table for a C-VLAN
Configure UNI
Associate a Port and MLT with an I-SID for ELAN Transparent
View the I-SID forwarding database
Associate a Port and MLT with an I-SID for ELAN
View the I-SID interface
Modify Global I-SID Name
Layer 2 VSN Configuration Examples
Layer 2 VSN Configuration Example
Verifying Layer 2 VSN operation
Layer 2 VSN Example with VLAN ID Translation
Inter-VSN Routing Configuration
Inter-VSN routing configuration fundamentals
Inter-VSN routing
Inter-VSN routing configuration using the CLI
Configure SPBM Inter-VSN Routing
Inter-VSN routing configuration using EDM
Configure BEBs for Inter-VSN Routing
Configure BCBs for Inter-VSN Routing
Inter-VSN Routing Configuration Example
Inter-VSN Routing with SPBM Configuration Example
Verifying Inter-VSN Routing operation
SBPM Reference Architectures
Campus Architecture
Large data center architecture
Fabric Layer 3 Services
IP Shortcuts Configuration
IP Shortcuts configuration fundamentals
SPBM IP Shortcuts
SPBM IPv6 Shortcuts
IPv6 Shortcuts Dependency on IPv4 Shortcuts
Circuitless IPv6 (CLIPv6)
Migrating the GRT to IPv6 Shortcuts
IPv6 Shortcut Restrictions and Considerations
ECMP with IS-IS
ECMP Within IS-IS routes
ECMP Impact on IS-IS Route Selection for Inter-VRF Routes with vIST
IS-IS IP Redistribution Policies
IS-IS Accept Policies
IS-IS Accept Policies and DvR
IS-IS Accept Policy Filters
IS-IS Accept Policies for the GRT and VRFs
IS-IS Accept Policies for Inter-VRF Route Redistribution
IS-IS Accept Policy Considerations
Route Preference
Route Metric
IP Shortcuts configuration using the CLI
Configure SPBM IPv4 Shortcuts
Configure SPBM IPv6 Shortcuts
Configure Inter-VRF IPv4 Accept Policies on VRFs
Configure Inter-VRF IPv6 Accept Policies on VRFs
Configure IS-IS Accept Policies
View IS-IS Accept Policy Information
Configure IPv6 IS-IS Accept Policies
Display IPv6 IS-IS Accept Policy Information
IP Shortcuts configuration using EDM
Configure SPBM IP Shortcuts
Configure IPv4 IS-IS redistribution
Configure IPv6 IS-IS Redistribution
Apply IPv4 IS-IS accept policies globally
Configure an IPv4 IS-IS Accept Policy for a Specific Advertising BEB
Configure an IS-IS Accept Policy to Apply for a Specific I-SID
Configure an IPv4 IS-IS Accept Policy for a Specific Advertising BEB and I-SID
Configure an I-SID List for an IPv4 IS-IS Accept Policy
Configure an IPv4 IS-IS Accept Policy for a Specific I-SID List
Configure an IPv4 IS-IS Accept Policy for a Specific Advertising BEB and I-SID-list
Apply IPv6 IS-IS Accept Policies Globally
Configure an IPv6 IS-IS Accept Policy for a specific Advertising BEB
Configure an IPv6 IS-IS Accept Policy for a specific I-SID
Configure an IPv6 IS-IS accept policy for a specific advertising BEB and I-SID
Configure an I-SID List for an IPv6 IS-IS Accept Policy
Configure an IPv6 IS-IS Accept Policy for a specific I-SID List
Configure an IPv6 IS-IS Accept Policy for a specific Advertising BEB and I-SID List
IP Shortcuts SPBM Configuration Example
Layer 3 VSN Configuration
Layer 3 VSN Configuration Fundamentals
SPBM Layer 3 VSN
Enable/disable ICMP Response on VRFs/Layer 3 VSNs
Layer 3 VSN configuration using the CLI
Configure SPBM IPv4 Layer 3 VSN
Configure SPBM IPv6 Layer 3 VSN using CLI
Display SPBM IPv6 Unicast Forwarding Information Base
Display IS-IS Link State Database Information
Layer 3 VSN configuration using EDM
Configure SPBM IPv4 Layer 3 VSN
Configure SPBM IPv6 Layer 3 VSN
Layer 3 VSN configuration example
VRF green configuration
VRF red configuration
Verifying Layer 3 VSN operation
Internet Key Exchange
IKEv2
IKE Limitations
IKE Configuration using CLI
Configure an IKE Phase 1 Profile
Create an IKE Phase 1 Policy
Configure Profile for IKE Phase 1 Policy
Configure IKE Phase 2 Perfect Forward Secrecy
Configure the IKE Authentication Method
Configure Dead-Peer Detection Timeout
Enable the Admin State of IKE Phase 1 Policy
Display IKE Profiles
Display IKE Policies
Display IKE Security Association
Configure an IKEv2 Profile
Display IKEv2 Profiles
Configure x509 Certificate Identity
IKE Configuration using EDM
Configure Digital Certificate Subject Name
Configure IKE Phase 1 Profile
Configure IKEv2 Profile
Configure IKE Phase 1 Policy
Display IKE Phase 1 Security Association
Display IKE V2 Security Association
IP Multicast
IP multicast fundamentals
Enabling multicast on the switch
Overview of IP multicast
IP Multicast over Fabric Connect
Internet Group Management Protocol
IGMP Layer 2 Querier
IGMP Layer 2 Querier limitations
Multicast access control
Multicast stream limitation feature
Multicast Router Discovery protocol
Multicast flow distribution over MLT
Multicast virtualization
Protocol Independent Multicast-Sparse Mode
Rendezvous point router
Bootstrap router
Shared trees and shortest-path trees
Receiver Joining a Group
Receiver leaving a group
Source sending packets to a group
Required elements for PIM-SM operation
PIM-SM simplified example
PIM-SM Static Source Groups
Join and prune messages
Register and register-stop messages
PIM-SMLT
Protocol Independent Multicast-Source Specific Multicast
SSM features
PIM-SSM architecture
PIM-SSM Static Source Groups
Implementation of SSM and IGMP
Configuration limitations
PIM passive interfaces
Multicast route statistics
IP multicast network design
Multicast scalability design rules
IP multicast address range restrictions
Multicast MAC Address Mapping Considerations
Dynamic multicast configuration changes
IGMPv3 backward compatibility
TTL in IP multicast packets
Multicast MAC filtering
Guidelines for multicast access policies
Split-subnet and multicast
Protocol Independent Multicast-Sparse Mode guidelines
PIM-SM and PIM-SSM Scalability
PIM General Requirements
PIM and Shared Tree to Shortest Path Tree Switchover
PIM Traffic Delay and SMLT Peer Reboot
Circuitless IP for PIM-SM
PIM-SM and Static RP
Static RP and Auto-RP
Static RP and RP Redundancy
Unsupported Static RP Configurations
Rendezvous Point Router Considerations
Layer 3 Multicast Extended VLANS
PIM-SM Design and the BSR Hash Algorithm
Candidate RP Considerations
PIM-SM Receivers and VLANs
PIM Network with Non-PIM Interfaces
Source Filtering
Protocol Independent Multicast-Source Specific Multicast guidelines
Multicast for Multimedia
Layer 3 switch clustering and multicast SMLT
General guidelines
Multicast triangle topology
Square and full-mesh topology multicast guidelines
SMLT and multicast traffic issues
Protocol Independent Multicast over IPv6
PIM-SM over IPv6 features
Operational note for PIM-SM over IPv6
IPv6 interface multiple addresses
IP multicast configuration and DvR
IP multicast basic configuration using CLI
Configure IP Multicast in SMLT Topologies
Configure PIM-SM Globally
Enable IPv6 PIM-SM Globally
Configure Global IPv6 PIM-SM Properties
Configure PIM on a VLAN
Configure PIM on a Port
Configure SSM Globally
Configure IPv6 SSM Globally
Configure IGMP on a VLAN
Configure IGMP Ports
Configure IGMP on a VRF
View IP Multicast Threshold Exceeded Statistics
IP multicast basic configuration using EDM
Configure Multicast on the Switch
Enable IPv4 PIM-SM Globally
Enable IPv6 PIM-SM Globally
Enable PIM on a Port
Enable IPv6 PIM on a Port
Enable SSM Globally
Enable IPv6 SSM Globally
Enable PIM on a VLAN Interface
Enable IPv6 PIM on a VLAN Interface
Configure IGMP Parameters on a Port
Configure IGMP Parameters on a VLAN
Multicast Listener Discovery
MLD Fundamentals
MLD versions
MLD Querier
MLD snooping
MLD snooping configuration guidelines and restrictions
Limitations
MLD Configuration Using the CLI
Enable MLD Trap Generation
Enable MLD Log Status
Configure MLD Version
Configure the MLD Last Listener Query Interval
Configure the MLD Query Interval
Configure the MLD Query Maximum Response Time
Configure the MLD Robustness
Enable MLD Snooping on a VLAN
Enable MLD SSM-Snooping on a VLAN
Display MLD Snooping Configuration Status
Display MLD Snooping Tracing Information
Display MLD Interface Information
Display MLD System Parameters
Display MLD Cache Information
Display the MLD Group Information
View IPv6 MLD Host Cache
MLD Configuration Using EDM
Configure MLD Globally
View the MLD SSM Global Information
MLD Interface Configuration
Configure an MLD Interface
Configure MLD on a Port
Configure MLD on a VLAN
Enable MLD Snooping
View MLD Snoop Trace Information
View MLD Cache Information
View MLD V2 Cache Information
View IPv6 MLD Host Cache
View MLD Source Information
View MLD Sender Information
View MLD Group Information
PIM Configuration Using the CLI
Change the Interface Status to Passive
Change the Interface Status to Active
Configure the PIM Virtual Neighbor
Configure a Candidate Rendezvous Point
Configure Static RP
Configure IPv6 PIM Static RP
Configure a Candidate BSR on a Port
Configure a Candidate BSR on a VLAN
Enable Square-SMLT Globally
PIM Configuration Using EDM
Enable Static RP
Enable IPv6 Static RP
Configure a Static RP
Configure an IPv6 Static RP Entry
View the Active RP
View the IPv6 Active RP
Configure a Candidate Bootstrap Router
View Current BSR Information
Change the PIM State on a VLAN Interface
Edit PIM Interface Parameters
Edit IPv6 PIM Interface Parameters
Configure the PIM Virtual Neighbor
View PIM-SM Neighbor Parameters
View IPv6 PIM-SM Neighbor Parameters
View IPv6 Neighbor Secondary Address
Viewing RP Set Parameters
Configure a Candidate RP
Enable Square-SMLT Globally
View IPv6 RP Set Parameters
View IPv6 Mroute Interface Information
View IPv6 Mroute Next Hop Information
Configure Resource Usage Counter for IPv6 Mroute
View IPv6 Multicast Route Information
IGMP Configuration Using the CLI
Configure Multicast Stream Limitation on an Ethernet Port
Configure Multicast Stream Limitation on a VLAN
Configure VLAN Multicast Stream Limitation Members
Configure Multicast Router Discovery Options
Configure Explicit Host Tracking
Configure IGMP Static Members
Configure SSM Dynamic Learning and Range Group
Change the SSM Range Group
Configure the SSM Map Table
Configure Multicast Access Control for an IGMP Ethernet Port
Configure Multicast Access Control for a VLAN
Configure Fast Leave Mode
Enable Fast Leave Mode on a Port
Configure IGMP Fast Leave Members on a VLAN
Enable IGMP Layer 2 Querier
Enable IGMP Layer 2 Querier Address
IGMP configuration using EDM
Enable IGMP snoop on a VLAN
Configure IGMP Interface Static Members
Configure the SSM Map Table
Configure SSM Range and Global Parameters
Configure Multicast Stream Limitation on an Interface
Configure Multicast Stream Limitation on a VLAN
Configure Multicast Stream Limitation on a Port
Configure Multicast Stream Limitation Members
Delete Multicast Stream Limitation Member
Configure the IGMP Interface
Configure IGMP Sender Entries
Configure Fast Leave Mode
Configure Multicast Access Control for an Interface
View IGMP Cache Information
View IGMPv3 Cache
View and Edit Multicast Router Discovery Information
View the IGMP Router Source List
View IGMP Snoop Information
View IGMP Snoop Trace Information
View IGMP Group Information
Route management using the CLI
Configure Multicast Stream Limits
Configure Multicast Static Source Groups
Configure IP Multicast Software Forwarding
Configure the Resource Usage Counter for Multicast Streams
Configure Prefix Lists
Route management using EDM
View Multicast Route Information
View Multicast Next-Hop Information
View Multicast Interface Information
Add New Static Source Groups
Edit Static Source Groups
Configure IP Multicast Software Forwarding
Configure Mroute Stream Limit
Configure Mroute Stream Limit on an Extreme Integrated Application Hosting Port
Configure Resource Usage Counter for Multicast Streams
Multicast route statistics configuration using the CLI
Enable IP Multicast Route Statistics
Clear IP Multicast Route Statistics
Monitor IP Multicast Route Statistics
Enable IPv6 Multicast Route Statistics
Clear IPv6 Multicast Route Statistics
Monitor IPv6 Multicast Route Statistics
Multicast route statistics configuration using EDM
Enable IP Multicast Route Statistics
View IP Multicast Route Statistics
Enable IPv6 Multicast Route Statistics
View IPv6 Multicast Route Statistics
IP Multicast over Fabric Connect
IP Multicast over Fabric Connect Basic Configuration
IP Multicast over Fabric Connect Fundamentals
IP Multicast over Fabric Connect
IP Multicast over Fabric Connect and Universal Plug and Play Filtering
How IP Multicast over Fabric Connect works
IP Multicast config-lite for Fabric Connect
BEB as IGMP Querier
Switch Clustering at the Edge of the SPBM Network
Considerations when you connect an IP Multicast over Fabric Connect network to a PIM network
IP Multicast over Fabric Connect restrictions
SPBM Multicast FIB
Universal Plug and Play Filtering
IP Multicast over Fabric Connect Configuration using the CLI
Enable IP Multicast over Fabric Connect Globally
Display IP Multicast over Fabric Connect information
Configure IP Multicast config-lite for Fabric Connect
Display the Multicast FIB
Configure Universal Plug and Play (uPnP) Filtering
View uPnP Filtering information on an IGMP-enabled interface
IP Multicast over Fabric Connect configuration using EDM
Configure IP Multicast over Fabric Connect Globally
View IP Multicast over Fabric Connect Routes
Configure IP Multicast config-lite for Fabric Connect
Display the UNI Ports for IP Multicast Routes
Displaying the multicast FIB
IP Multicast over Fabric Connect configuration examples
IP multicast over Fabric Connect global configuration
Layer 2 VSN Configuration for IP Multicast over Fabric Connect
Layer 2 VSN IP Multicast over Fabric Connect
Layer 2 VSN Configuration using the CLI
Configure Layer 2 VSN IP Multicast over Fabric Connect
View Layer 2 VSN IP Multicast over Fabric Connect information
View IGMP Information for Layer 2 VSN Multicast
View TLV Information for Layer 2 VSN IP Multicast over Fabric Connect
Layer 2 VSN Configuration using EDM
View the IGMP Interface Table
Configure IP Multicast over Fabric Connect on a Layer 2 VSN
Layer 2 VSN with IP Multicast over Fabric Connect Configuration Example
IP Shortcuts Configuration for IP Multicast over Fabric Connect
IP Multicast over Fabric Connect within the GRT
IP Shortcuts Configuration using the CLI
Configure IP Multicast over Fabric Connect within the GRT
Configure the VRF Timeout Value
Configure the Global Routing Table Timeout Value
View IP Multicast over Fabric Connect within the GRT information
View IGMP Information for IP Multicast over Fabric Connect within the GRT
View TLV Information for IP Multicast over Fabric Connect within the GRT
IP Shortcuts configuration using the EDM
Configure IP Multicast over Fabric Connect on a VLAN Within the GRT
Configure IP Multicast over Fabric Connect on a Brouter Port within the GRT
Configuring the Global Routing Table timeout value
IP multicast over SPBM within the GRT configuration example
Layer 3 VSN Fundamentals for IP Multicast over Fabric Connect
Layer 3 VSN with IP Multicast over Fabric Connect
Layer 3 VSN Configuration using the CLI
Configure Layer 3 VSN with IP Multicast over Fabric Connect
View Layer 3 VSN with IP Multicast over Fabric Connect Information
View IGMP Information for Layer 3 VSN Multicast
View TLV Information for a Layer 3 VSN with IP Multicast over Fabric Connect
Layer 3 VSN Configuration using EDM
Enable MVPN for a VRF
Configure IP Multicast over Fabric Connect on a VLAN for Layer 3
Configure IP Multicast over Fabric Connect on a Brouter Port for a Layer 3 VSN
Configure IGMP on a VLAN interface for a Layer 3 VRF
Layer 3 VSN with IP Multicast over Fabric Connect Configuration Example
IP SPB Multicast Policy Configuration
IP SPB Multicast Policy fundamentals
IP SPB Multicast Policy
Static Data I-SID
IP SPB Multicast Policy Configuration Using CLI
Create an IP SPB Multicast Policy
Variable Definitions
Display IS-IS SPBM Static I-SID IP Multicast Route Information
Variable Definitions
IP SPB Multicast Policy Configuration using EDM
Configure IP SPB Multicast Policy
Display Static Data I-SID IP Multicast Routes Information
IPFIX
IPFIX Fundamentals
IPFIX Configuration Using CLI
Enable IPFIX Globally
Display IPFIX Global Status
Configure the IPFIX Aging Interval
Configure the IPFIX Collector
Display IPFIX Collector Information
Configure an IPFIX Observation Domain
Display IPFIX Flows
IPFIX Configuration Using EDM
Enable IPFIX Globally
Configure the IPFIX Collector
IPsec
IPsec Fundamentals
Authentication header
Encapsulating security payload
IPsec Modes
Security association
Security policy
IPsec Limitations
IPsec configuration using CLI
Create an IPsec Policy
Enable an IPsec Policy
Create an IPsec Security Association
Configure an IPsec Security Association
Configure an IPsec Policy
Link the IPsec Security Association to an IPsec Policy
Enable IPsec on an Interface
Link an IPsec Policy to an Interface
Display IPsec Information on an Interface
Display Configured IPsec Policies
Display IPsec Security Association Information
View IPSec Statistics
IPsec configuration using EDM
Create an IPsec Policy
Create an IPsec Security Association
Link the IPsec Security Association to an IPsec Policy
Enable IPsec on an IPv6 Interface
Enable IPsec on an IPv4 Interface
Link an IPsec Policy to an Interface
Display IPsec Interface Statistics
Graph IPsec Interface Statistics
Display Switch Level Statistics for IPsec-Enabled Interfaces
Configure IPsec for the OSPF Virtual Link
IPsec configuration examples
IPsec configuration example
IPsec with ICMPv6 configuration example
OSPFv3 IPsec configuration example
OSPFv3 virtual link IPsec configuration example
IPsec configuration of TCP
IPv4 Routing Basics
IP routing operations fundamentals
IP addressing
Subnet Addressing
Supernet Addressing and CIDR
IPv4 Interface State
Loopback
Static routes
Static Route Tables
Routing Protocols
Black Hole Static Routes
VLANs and routing
Virtual Routing Between VLANs
Brouter Ports
Equal Cost Multipath
IP Source Routing
Multihoming
IPv4 ICMP Broadcast
IP routing configuration using the CLI
Enable Routing Globally or on a VRF Instance
Configure IP Routing Globally or for a VRF
Delete a Dynamically Learned Route
Configure IP Route Preferences
Flush Routing Tables by VLAN or Port
Assign an IP address to a Port
Modify an Existing IP Interface
View Primary IP Addresses for all Router Interfaces
View the IPv4 and IPv6 Interface Configuration on a Port
Configure ECMP
Configure Static Routes
Configure a Black Hole Static Route
Configure a Default Static Route
Configure IPv4 Fragmented ICMP Packet Filtering
Enable ICMP Router Discovery Globally
Enable or disable IPv4 ICMP Broadcast Globally
Enable or disable IPv4 ICMP Broadcast per VRF
View IPv4 ICMP Statistics
Configure Router Discovery on a Port or VLAN
Configure a CLIP Interface
Display BFD Configurations on the Loopback Interface
Display the IPv4 Global Configuration
View TCP and UDP Information
IP routing configuration using Enterprise Device Manager
Enable Routing for a Router or a VRF Instance
Delete a Dynamically-Learned Route
Configure IP Route Preferences
Flush Routing Tables by VLAN
Flush Routing Tables by Port
Assign an IP Address to a Port
View Primary IP Addresses
View all IP Addresses
Modify the Administrative State of an IP Interface on a Brouter Port
Configure IP Routing Features Globally
Configure ECMP
Configure Static Routes
Delete a Static Route
Configure a Default Static Route
Configure a Black Hole Static Route
View IP Routes
Configure ICMP Router Discovery Globally
Configure the ICMP Router Discovery Table
Configure ICMP Router Discovery for a Port
Configure ICMP Router Discovery on a VLAN
Configure a Circuitless IPv4 Interface
Enable OSPF on a CLIP Interface
Enable PIM on a CLIP Interface
Enable BFD on a CLIP interface
View TCP Global Information
View TCP Connections Information
View TCP Listeners Information
IPv6 Routing Basics
Origins of IPv6
Advantages of IPv6
Comparison of IPv4 and IPv6
IPv6 packet
IPv6 header
IPv6 extension headers
IPv6 address component summary
IPv6 address formats
Address types
Unicast addresses
Multicast addresses
Anycast
IP address prefix
Interface ID
How to write an IPv6 address
ICMPv6
Path MTU discovery
Routing
Route scaling
IPv6 Circuitless IP
Equal Cost Multipath
ECMP with static routes
Disable IPv6 ICMP multicast
Viewing IPv6 Connections
IPv6 Basic Configuration using CLI
Enable the IPv6–Mode Boot Config Flag
Configure an IPv6 Static Neighbor Address
Configure an IPv6 Interface
Assign IPv6 Addresses to a Brouter Port or VLAN
Configure IPv6 Route Preferences
View Global IPv6 Information
Create IPv6 Static Routes
View Routes Information
Create an IPv6 CLIP Interface
Enable IPv6 ECMP
Configure Maximum Number of ECMP Paths
Disable IPv6 ICMP Multicast
Configure IPv6 Fragmented ICMP Packet Filtering
View IPv6 ICMP Statistics
Enable Stateless Address Autoconfiguration
View IPv6 Default Routers
Configure an IPv6 Prefix List
Clear IPv6 Statistics
View IPv6 Statistics on an Interface
Viewing IPv6 Connections using CLI
View TCP and UDP Information
IPv6 Basic Configuration using EDM
Enable the IPv6–Mode Boot Config Flag
Configure IPv6 Globally
View ICMP Statistics
Configure an IPv6 Interface
View IPv6 Statistics for an Interface
Configure an IPv6 Brouter Port Interface
Configure an IPv6 VLAN Interface
Assign IPv6 Addresses to Interfaces
Assign IPv6 Addresses to a Brouter Port Interface
Assign an IPv6 Address to a VLAN
Create IPv6 Static Routes
Configure IPv6 Route Preferences
View Route Information
View IPv6 Default Routers
Configure a Circuitless IPv6 Interface
Configure a IPv6 Prefix List
Configure an IPv6 Route Policy
Configure IPv6 Route Redistribution Policies
Viewing IPv6 Connections using EDM
View TCP Global Information
View TCP Connections Information
View TCP Listeners Information
View UDP Endpoint Information
IPv6 Neighbor Discovery
Neighbor Discovery
ND messages
Neighbor discovery cache
Router discovery
Host autoconfiguration
Neighbor Discovery Configuration using CLI
Configure an IPv6 Discovery Prefix
Configure Route Advertisement
Configure the Neighbor Cache
View Cached Destination Information
Neighbor Discovery Configuration using EDM
Configure an IPv6 Discovery Prefix
Configure an IPv6 Discovery Prefix Port
Configure an IPv6 Discovery Prefix on a VLAN
Configure Route Advertisement
Configure Route Advertisement on an IPv6 Interface for a Brouter Port
Configure Route Advertisement on an IPv6 Interface for a VLAN
Configure the Neighbor Cache
View Cached Destination Information
IPv6-in-IPv4 Tunneling
Tunneling
Manually configured tunnels
Limitations
Tunneling Configuration using CLI
Configure a Tunnel
View Tunnel Interfaces
Modify Tunnel Hop Limits
Tunneling Configuration using EDM
Configure a Tunnel
Modify Tunnel Hop Limits
Modify Tunnel Hop Limits for a Specific Tunnel
View IPv6 Addresses on a Tunnel
IPv6 Tunnel Configuration Example
Key Health Indicators (KHI)
Key Health Indicators Using the CLI
Display KHI Performance Information
Display KHI Control Processor Information
View KHI Segmented Management Instance Information
Clear KHI Information
Key Health Indicators Using EDM
Clear KHI Statistics
Display KHI Port Information
View KHI Segmented Management Instance Statistics Information
Layer 2 Security
Layer 2 Security for IPv4 and IPv6 Deployments
Dynamic ARP Inspection (DAI)
First Hop Security
DHCPv6 Security Concerns
DHCPv6 Guard
DHCPv6 Guard Policies Configuration
RA Guard
RA Guard policies description
Capturing and verifying FHS specific packets against the configured policies
FHS Restrictions
FHS Configuration Guidelines
DHCP Snooping and Neighbor Discovery inspection
IP Source Guard
IPSG Restrictions
Layer 2 Security Configuration Using the CLI
DHCP Snooping Configuration Using CLI
Enable or Disable DHCP Snooping globally
Enable or Disable DHCP Snooping on a VLAN
Configure Trusted and Untrusted Ports
Display DHCP Snooping Global Configuration
Display DHCP Snooping Interface Information
Add Static Entries to DHCP Snooping Binding Table
Clear Entries from DHCP Snooping Binding Table
Display DHCP Snooping Binding Table Information
Dynamic ARP Inspection Configuration Using CLI
Enable or disable Dynamic ARP Inspection on a VLAN
Configure Trusted and Untrusted Ports
Display Dynamic ARP Inspection Interface Information
FHS configuration
Enable or Disable FHS Globally
Manage the FHS IPv6 Access List
Display FHS IPv6 Access List Information
Manage the FHS MAC Access List
Display FHS MAC Access List Information
Display Current FHS Configuration
DHCPv6 Guard Policy Configuration
Enable or Disable DHCPv6 Guard Globally
Manage the DHCPv6 Guard Policy
Attach a DHCPv6 Guard Policy to a Port
Configure DHCPv6 Guard in dhcp-guard Mode
Display the DHCPv6 Guard Policy
RA Guard Configuration
Enable or Disable RA Guard Globally
Manage the RA Guard Policy
Configure RA Guard on an Interface
Configure RA Guard in RA Guard Mode
Display RA Guard Configuration
IPv6 Neighbor Discovery inspection configuration
Enable ND Inspection Globally
Clear Neighbor Discovery Inspection Statistics
Enable Neighbor Discovery Inspection on a VLAN
Enable Neighbor Discovery Inspection on a Port
View Neighbor Discovery Inspection Status Globally
View Neighbor Discovery Inspection Status on a Port
View Neighbor Discovery Inspection Statistics on a Port
IPv6 DHCP Snooping Configuration
Create a Static Security Binding Table Entry
Clear a Dynamic SBT Entry
Enable IPv6 DHCP Snooping on a VLAN
View IPv6 DHCP Snooping and ND Inspection Status on a VLAN
View SBT Entries
IP Source Guard Configuration
Enable IP Source Guard on a Port for IPv4 Addresses
Disable IP Source Guard for IPv4 Addresses
View IP Source Guard Configuration on a Port
View IPv4 Address Bindings
Enable IP Source Guard on a Port for IPv6 Addresses
Disable IP Source Guard for IPv6 Addresses
Clear IP Source Guard Overflow Counters
View IP Source Guard Configuration for IPv6 Addresses
View IPv6 Address Bindings
Layer 2 Security Configuration using EDM
Dynamic ARP Inspection Configuration Using EDM
Configure Dynamic ARP Inspection on VLANs
Configure Dynamic ARP Inspection on Ports
Configure FHS Globals
IPv6 access list configuration
Create an IPv6 Access List
View IPv6 Access Lists
Delete the IPv6 Access List
MAC access list configuration
Create MAC Access List
View a MAC Access List
Delete a MAC Access List
DHCPv6 Guard Policy Configuration
Create DHCPv6 Guard Policy
View a DHCPv6 Guard Policy
Delete a DHCPv6 Guard Policy
RA Guard Policy Configuration
Create RA Guard Policy
View RA Guard Policy
Delete an RA Guard Policy
Port Policy Mapping Configuration
Create Port to Policy Mapping
View Port Policy Mapping
Delete Port Policy Mapping
DHCP Snooping Configuration Using EDM
Enable DHCP Snooping Globally
Configure DHCP Snooping on VLANs
Configure Trusted and Untrusted Ports
DHCP binding configuration
Create DHCP Binding Table Entries
View DHCP Binding Information
SBT configuration
Create an SBT Entry
View SBT Entries
Delete an SBT Entry
IP Source Guard Configuration using EDM
Enable IP Source Guard on a Port for IPv4 Addresses
View IPv4 Address Bindings
Configure IP Source Guard on a Port for IPv6 Addresses
View IPv6 Address Bindings
Layer 2 security example scenarios
FHS Deployment Scenario
Creating FHS IPv6 ACL
Creating an FHS MAC ACL
Create a DHCPv6 Guard Policy for the Router
Create an RA Guard Policy for the Router
Attach FHS policies to the Interfaces
IPv6 DHCP Snooping and ND Inspection Configuration Example
Configure IP Source Guard
Licensing
Licensing Fundamentals
Factory Default Premier Trial License
License Types
Feature Licensing for Universal Hardware
Install and Uninstall Licenses on Universal Switches
License Installation using CLI
Install a License File
Revoke a License
Extend the Factory Default Premier Trial License
Show a License File
License Installation using EDM
Install a License File
Revoke a License
View License File Information
Link Aggregation Control Protocol
Link Aggregation Overview
MultiLink Trunking with LACP
Input/output port redundancy
LACP Configuration Considerations
Important Information and Restrictions
LACP with Simplified vIST/SPB NNI links
vIST VLAN IP addresses
Simplified vIST and egress port-based filters
LACP configuration using CLI
Configure Global LACP Parameters
Configure LACP on a Port
Configure LACP on an MLT
Configure LACP and Private VLANs
View LACP Configuration Information
Display LACP Statistics for Specific Ports
LACP configuration using EDM
Configure Global LACP Parameters
Configure LACP Parameters
Configure LACP on a Port
Configure LACP on an Extreme Integrated Application Hosting Port
View LACP Port Statistics
Link Layer Discovery Protocol
Link Layer Discovery Protocol (802.1AB) Fundamentals
Link Layer Discovery Protocol-Media Endpoint Discovery
Link Layer Discovery Protocol configuration using CLI
Configure Global LLDP Transmission Parameters
Configure LLDP Status on Ports
Enable CDP Mode on a Port
Configure LLDP Tx-TLVs
Enable Dot3 LLDP TLVs
Configure LLDP MED TLVs for Transmission on Ports
View Global LLDP Information
View LLDP Neighbor Information
View Global LLDP Statistics
View Port-based LLDP Statistics
LLDP-MED Configuration Using CLI
Configure LLDP-MED Network Policies on Ports
Configure LLDP-MED Civic Address Location Information
Configure LLDP-MED Coordinate Based Location Information
Configure LLDP-MED Emergency Call Service Location
Display Local LLDP-MEDLocation Information
Display LLDP-MED Local Network Policies Configuration
Link Layer Discovery Protocol configuration using EDM
Configure LLDP Global Information
View the LLDP Port Information
View LLDP Transmission Statistics
View LLDP Reception Statistics
View LLDP Local System Information
View LLDP Local Port Information
View LLDP CDP Remote Information
View LLDP Neighbor Information
LLDP-MED Configuration Using EDM
View LLDP-MED Local Policy Information
Add LLDP-MED Local Location Information
View LLDP-MED Local PoE PSE Information
View LLDP-MED Neighbor Capabilities Information
View LLDP-MED Neighbor Policy Information
View LLDP-MED Neighbor Location Information
View LLDP-MED Neighbor PoE Information
View LLDP-MED Neighbor PoE PSE Information
View LLDP-MED Neighbor PoE PD Information
View LLDP-MED Neighbor Inventory Information
Link State Change Control
Link Debounce
Link State Change Control Using CLI
Control Link State Changes
Display Link State Changes
Configure Link Debounce
Link State Change Control Using EDM
Control Link State Changes
Configure Link Debounce
Link-state tracking (LST)
Link-state tracking (LST) Overview
LST Configuration Using CLI
Configure LST
LST Configuration Using EDM
Configure LST
Logs and Traps
Logs and Traps Fundamentals
Overview of Traps and Logs
Secure Syslog
Simple Network Management Protocol
Log Message Format
Log Files
Log File Transfer
Email Notification
Log Configuration Using CLI
Configure a UNIX System Log and Syslog Host
Configure Secure Forwarding
Configure Certificate Authority Trustpoint for Syslog
Configure the Minimum Version of TLS for Syslog
Configure Logging
Configure the Remote Host Address for Log Transfer
Enable System Logging
Configure System Message Control
Extend System Message Control
View Logs
Configure CLI Logging
Configure Email Notification
Log Configuration Using EDM
Configure the System Log
Configure the System Log Table
Configure the Syslog Certificate Authority Common Name
Configure Email Notification
SNMP Trap Configuration Using CLI
Configure an SNMP Host
Configure an SNMP Notify Filter Table
Enable SNMP Trap Logging
SNMP Trap Configuration Using EDM
Configure an SNMP Host Target Address
Configure Target Table Parameters
Configure SNMP Notify Filter Profiles
Configure SNMP Notify Filter Profile Table Parameters
Enable Authentication Traps
MACsec
MACsec Fundamentals
MACsec keys
MACsec Security Modes
Connectivity Associations and Secure Channels
MACsec 2AN and 4AN mode
MACsec components
MACsec Key Agreement Protocol
MACsec Encryption Cipher Suites
MACsec Operation
Automatic QoS Priority for MACsec Packets on Intermediate Switches
MACsec Configuration Using CLI
Configure MACsec Encryption on a Port
Configure a MACsec Cipher Suite on a Port
Configure a Connectivity Association
Update the Connectivity Association for a port
View MACsec Status
View the MACsec Connectivity Association Details
Configure Static MACsec using CLI
Enable Static MACsec on a Port
Configure the Confidentiality Offset on a Port
Configure MKA MACsec using CLI
Create an MKA Profile
Apply an MKA Profile to a Port
Configure MKA Actor Priority
Enable MKA on a Port
Configure MKA Confidentiality Offset
Configure MKA Replay Protect
Configure SCI Tagging for a MACsec Enabled Switch
Display MKA Profiles
Display MKA Participants
MACsec Configuration using EDM
Configure Connectivity Associations
Associate a Port with a Connectivity Association
Configure MKA MACsec using EDM
Configure an MKA Profile
Apply an MKA Profile to a Port
Enable MKA on a Port
Configure MKA Actor Priority
MACsec Performance
MACsec Statistics
Interoperability Behaviors
View MACsec Statistics using CLI
View MACsec Statistics
Clear MACsec Statistics
View MKA MACsec Statistics using CLI
Display MKA Statistics
Clear MKA Statistics
View MACsec Statistics using EDM
View MACsec Interface Statistics
View Secure Channel Inbound Statistics
View Secure Channel Outbound Statistics
View MKA MACsec Statistics using EDM
Display MKA Statistics for a Port
MultiLink Trunking and Split MultiLink Trunking
Virtual Inter-Switch Trunk (vIST)
Simplified Virtual-IST
MultiLink Trunking
Split MultiLink Trunking
SLPP Guard
SMLT Traffic Flow Examples
MLT and SMLT Configuration Requirements
MLT and Private VLANs
MLT and SMLT link aggregation configuration using the CLI
Configure an MLT
View MLT Statistics
View MLT Port Members
Add Ports to an MLT LAG
Remove Ports from an MLT LAG
Create an SMLT from an Existing MLT
Virtual interswitch trunk (vIST)
Create a Virtual IST
View vIST Statistics
Edit a vIST
Configure Simplified vIST in SMLT Topologies
View All Ports Configured for SMLT
View Information about Collision Errors
View Information about Ethernet Errors
SLPP Guard configuration
Configure SLPP Guard
Reenabe an Operationally Disabled Port
View SLPP Guard Status
MLT and SMLT Link Aggregation Configuration using EDM
Add a Multilink or LACP Trunk
Add Ports to an MLT
View SMLT Statistics
View MLT Interface Statistics
View MLT Ethernet Error Statistics
View Trunks
Create a Virtual IST using EDM
Edit a Virtual IST
Configure Simplified vIST in SMLT Topologies
SLPP Guard Configuration
Configure SLPP Guard
Reenable an Operationally Disabled Port
View SLPP Guard Status
MLT Configuration Examples
MultiLink Trunking
MultiLink Trunking with Link Aggregation Control Protocol
MLT Network Topology and Configuration Reference
Example 1: Switch-to-switch MLT
Example 2: Switch-to-server MLT
Example 3: Client/Server MLT
Network Operating System Personalities
Base MAC Address Assignment for Universal Hardware Switches
Change the Network Operating System Personality
Network Time Protocol
NTP fundamentals
NTP Overview
NTP system implementation model
Time distribution within a subnet
Synchronization
NTP Modes of Operation
NTP authentication
NTP Configuration Using CLI
Enable NTP Globally
Add an NTP Server
View NTP Statistics
Configure Authentication Keys
Configure NTP Master Mode
Create NTP Restrict Entries
NTP Configuration Using EDM
Configure NTP Globally
Add an NTPv4 Server
Configure Authentication Keys for NTPv4
Create NTPv4 Restrict Entries
OSPF
OSPF fundamentals
OSPF overview
OSPFv3
Dijkstras algorithm
Autonomous system and areas
OSPF neighbors
Router types
OSPF Interfaces
OSPFv3 Support for CLIP Interfaces
OSPF and IP
OSPF Packets
Intra-area Link-state Advertisements
ASE routes
OSPF virtual links
OSPF ASBRs
OSPF metrics
OSPF security mechanisms
IPsec Support with OSPFv3
OSPF and route redistribution
ECMP with OSPFv3
OSPFv3 and Route Redistribution
OSPF configuration considerations
OSPF host route advertisements and nonbackbone areas
OSPF with switch clustering
OSPF Graceful Restart
Helper Mode
Open Shortest Path First guidelines
OSPF configuration using CLI
Configure OSPF Globally
Configure OSPF for a Port or VLAN
View OSPF Errors on a Port
Configure OSPF Areas on the Router
View the OSPF Area Information
Configure OSPF Aggregate Area Ranges on the Router
View the OSPF Area Range Information
Enable Automatic Virtual Links
Configure an OSPF Area Virtual Interface
Configure an OSPF area on a VLAN or port
Configure an OSPF Host Route
Configure OSPF NBMA Neighbors
Enable or Disable Helper Mode for OSPFv2
Apply OSPF Route Acceptance Policies
View the OSPF Configuration Information
View the OSPF Link-State Database
View the OSPF External Link-State Database
Configure Route Redistribution to OSPF
View the OSPF Redistribution Configuration Information
Configure InterVRF Route Redistribution for OSPF
Force Shortest-Path Calculation Updates
View the OSPF Default Cost Information
View the OSPF Timer Information
View the OSPF Neighbor Information
View the OSPF Authentication Information
View the OSPF Interface Statistics
View OSPF Range Statistics
Clear IP OSPF Statistics
View OSPF Error Statistics on a Port
View Basic OSPF Statistics for a Brouter Port
View Extended OSPF Statistics for a Brouter Port
View the OSPF Virtual Link Information
View the VRF Configurations
View the VRFIDS
OSPFv3 Configuration using CLI
Configure OSPF Globally
Create an OSPF Area
Create OSPF Area Ranges
Create an OSPF Virtual Link
Configure IPsec for the OSPF Virtual Link
Configure OSPF Default Metrics
Configure OSPF on a Port or VLAN
Configure OSPF on a Tunnel
Configure OSPFv3 on the CLIP Interface for the Global Router
Configure OSPFv3 on the CLIP Interface for a VRF Instance
Variable Definitions
View OSPFv3 Information
View OSPFv3 Default Cost Information
Add an NBMA Neighbor
Configure Link LSA Suppression
Configure Route Redistribution to OSPFv3 in GRT Mode
View the Status of OSPFv3 Redistribution
View OSPFv3 Statistics
Clear OSPFv3 Statistics
Disable Helper Mode for OSPFv3
OSPF configuration using EDM
Configure OSPF Globally
Enable OSPF Globally
Configure Global Default Metrics
Configure an OSPF interface
Change an OSPF Non-Passive Interface Type
Change an OSPF Passive Interface Type
Configure NBMA Interface Neighbors
Configure OSPF Interface Metrics
View All OSPF Enabled Interfaces
Configure OSPF on a Port
View Port OSPF Statistics
Graph OSPF Statistics for a Port
Configure OSPF on a VLAN
Graph OSPF Statistics for a VLAN
View Graphs for OSPF on a VLAN
Create Stubby or Not-so-Stubby OSPF Areas
Configure Stub Area Metrics Advertised by an ABR
Insert OSPF Area Aggregate Ranges
Enable Automatic Virtual Links
Configure a Manual Virtual Interface
View Virtual Neighbors
Configure Host Routes
Enable ASBR Status
Manage OSPF Neighbors
View the Link-State Database
View the Local Link-State Database
View AS-Scope Link-State Advertisements
View Virtual Links in the Link-State Database
View the Area LSA Count
View OSPF Statistics
Configure Route Redistribution to OSPF
Force Shortest-Path Calculation Updates
OSPFv3 Configuration using EDM
Configure OSPFv3 Globally
Create an OSPFv3 Area
Create OSPFv3 Area Ranges
Create an OSPFv3 Virtual Link
Create an OSPF Interface on a Brouter Port
Configure OSPFv3 on a CLIP Interface
Create an OSPF Interface on a CLIP
Create an OSPF VLAN Interface
Create an OSPF Interface on a Tunnel
View the AS-Scope Link-State Database
View the Area-Scope LSDB
View the Link-Scope LSDB
Add an NBMA Neighbor
Configure Route Redistribution to OSPFv3
Modify an OSPFv3 Interface
View OSPFv3 Neighbors
View Virtual Neighbors
View OSPFv3 Statistics
OSPFv3 Configuration Example
Port Performance Management
Digital Diagnostic Monitoring
Port Performance Management Using CLI
Configure DDM
View DDI Port Information
View DDI Temperature Information
View DDI Voltage Information
Port Performance Management using EDM
View DDI Information
Power over Ethernet Fundamentals
PoE Overview
PoE Detection Types
Power Usage Threshold
Port Power Limit
Port Power Priority
PoE/PoE+ Allocation Using LLDP
Fast PoE and Perpetual PoE
PoE Ports in EDM
Power over Ethernet Configuration using CLI
Disable PoE on a Port
Configure PoE Detection Type
Configure PoE Power Usage Threshold
Configure Power Limits for Channels
Configure Port Power Priority
Enable Fast PoE Globally
Enable Perpetual PoE Globally
Enable Fast PoE on a Port
Enable Perpetual PoE on a Port
Display Global PoE Configuration
Display PoE Port Status
Display Port Power Measurement
Power over Ethernet configuration using EDM
Configure PoE Globally
Configure PoE on Ports
View Power Consumption for a PoE Port
Power Savings
Energy Saver
Energy Efficient Ethernet
Power Savings Configuration Using CLI
Enable Energy Saver on Ports
Create an Energy Saver Schedule
Enable Energy Saver Globally
Enable and Configure Energy Saver using Quick Configuration
Activate or Deactivate Energy Saver Manually
Energy Saver Show Commands
Display Energy Saver Global Information
Display Energy Saver Interface Information
Display Energy Saver Power Savings Information
Display Energy Saver Schedule Information
Enable Energy Efficient Ethernet (EEE)
Display Energy Efficient Ethernet (EEE) Statistics
Clear Energy Efficient Ethernet (EEE) Statistics
Power Savings Configuration Using EDM
Enable Energy Saver Globally
Configure Energy Saver Schedule
Enable Energy Saver or EEE on Ports
Enable Energy Saver or EEE on Ports
Enable Energy Saver or EEE on Ports
View Energy Savings
Display Energy Efficient Ethernet Statistics
Quality of Service
QoS fundamentals
Introduction to QoS
Traffic management
Differentiated Services (DiffServ)
Traffic traversing the switch
Classification and mapping
Service Classes
Internal QoS level
Ingress mappings
Egress mappings
Port-Based Rate Limiting, Policing, and Shaping
Queuing
CPU Queues
Queue profiles
Configuration considerations
QoS Support for 10 GbE Interface in 1GbE mode
802.1p and 802.1Q Best Practices
Network congestion and QoS design
Layer 2 and Layer 3 Trusted and Untrusted Ports
Broadcast, Unknown Unicast, and Multicast Traffic Bandwidth Limiters per Ingress Port
QoS and VoIP
QoS re-marking on a Transparent Port UNI
QoS and Channelization
QoS examples and Best Practices
Basic DiffServ configuration using CLI
Enabling DiffServ on a port
Configuring Layer 3 trusted or untrusted ports
Configuring Layer 2 trusted or untrusted ports
Viewing the port 802.1p override status
Configuring the port QoS level
Basic DiffServ configuration using EDM
Enable DiffServ for a Port
Configure Layer 3 Trusted or Untrusted Ports
Configure Layer 2 Trusted or Untrusted Ports
Configure the Port QoS Level
QoS configuration using CLI
Configure Broadcast, Unknown Unicast, and Multicast Bandwidth Limiting
Viewing the port-based shaper information
Configure the Port-Based Shaper
Configuring ingress mappings
Configuring egress mappings
View Port Egress CoS Queue Statistics
Clearing port egress CoS queue statistics
View CPU Queue Statistics
Clearing CPU queue statistics
Configure an Egress QoS Queue Profile
Viewing Logical Interface CoS Queue Statistics
Clearing Logical Interface CoS Queue Statistics
QoS configuration using EDM
Configure Port-Based Shaping
Graph Stat Rate Limit Statistics for a Port
Modify Ingress 802.1p to QoS Mappings
Modify Ingress DSCP to QoS Mappings
Modify Egress QoS to 802.1p Mappings
Modify Egress QoS to DSCP Mappings
View Port Egress CoS Queue Statistics
Clear CPU Statistics for the Chassis
View CPU Queue Statistics
Configure an Egress QoS Queue Profile
Edit Queue Profile Information
Configure Port Rate Limits
Configuring Rate Limits on an Extreme Integrated Application Hosting Port
RADIUS
RADIUS Fundamentals
RADIUS Server Support for IPv6
How RADIUS Works
Configuration of the RADIUS Server and Client
RADIUS Authentication
Use of RADIUS to Modify User Access to CLI Commands
RADIUS Accounting
RFC 4675 RADIUS Attributes: Egress VLAN
RADIUS Server Reachability
RFC 3580 RADIUS Attributes: IEEE 802.1X Remote Authentication Dial In User Service
RFC 5176 — Dynamic Session Change
RADSec
RADIUS configuration using CLI
Configure RADIUS Attributes
Configure RADIUS Profile
Enable RADIUS Authentication
Enable RADIUS Accounting
Enable RADIUS-SNMP Accounting
Configure RADIUS Accounting Interim Request
Configure RADIUS Authentication and RADIUS Accounting Attributes
Add a RADIUS Server
Modify RADIUS Server Settings
View RADIUS Information
View RADIUS Server Information
View RADIUS Server Statistics
Configure RADIUS Server Reachability
Display RADIUS Server Reachability
Display RADIUS SNMP Configurations
Display RADIUS Dynamic Server Information
Configure a RADIUS Dynamic Client
RADSec Configuration Using CLI
Create and Configure a RADIUS Secure Profile
Display RADIUS Secure Profile information
Associate a RADSec Profile with a RADIUS Server
Configure RADSec Secure Mode
Enable RADSec
Change the Logging Level for RADSec
Display Log Information for Secure RADIUS Instance
RADIUS configuration using Enterprise Device Manager
Enable RADIUS Authentication
Enable RADIUS Accounting
Disable RADIUS Accounting
Enable RADIUS Accounting Interim Request
Add a RADIUS Server
Show RADIUS Server Statistics
Reauthenticate the RADIUS SNMP Server Session
Configure RADIUS SNMP
Modify a RADIUS Configuration
Delete a RADIUS Configuration
Configure RADIUS Server Reachability
Configure a RADIUS Dynamic-Server Client
Display RADIUS CoA Disconnect Statistics
Display RADIUS CoA Reauthenticate Statistics
Display RADIUS CoA Statistics
RADSec Configuration Using EDM
Configure a RADIUS Secure Profile
RADIUS Attributes
Vendor Specific Attributes
RADIUS Vendor Specific Frame Format
FA-VLAN-ISID
FA-Client-Type
Extreme-Dynamic-MHSA
Extreme-Dynamic-ACL
Extreme-Dynamic-Config
Operational Considerations
Examples
Extreme-Dynamic-Client-Assignments
Operational Considerations
EAP-Port-Priority
IETF Attributes
VLAN RADIUS Attributes
EGRESS-VLAN-ID
EGRESS-VLAN-NAME
RADIUS Tunnel Attributes
Representational State Transfer Configuration Protocol (RESTCONF)
Representational State Transfer Configuration Protocol (RESTCONF) Fundamentals
RESTCONF configuration using CLI
Enable the RESTCONF Server
Configure HTTPS Access to the RESTCONF Server
Modifying the RESTCONF Server Settings
Showing the RESTCONF Configuration Information
Show Conflicting Interface Name Information
Show Special Characters in VLAN or MLT Names
RESTCONF Configuration using EDM
Configure the RESTCONF Server
Use Representational State Transfer Configuration Protocol (RESTCONF) to Configure a Switch
RESTCONF Operational Behavior Examples
RIP
RIP fundamentals
Routing Information Protocol
RIP and route redistribution
RIPng fundamentals
RIP configuration using CLI
Configure RIP Globally
Configure RIP on an Interface
Configure Route Redistribution to RIP
Configure InterVRF Route Redistribution for RIP
Force a RIP Update for a Port or VLAN
Display the RIP Redistribution Configuration Information
RIPng Configuration using CLI
Configure RIPng Globally
Configure RIPng on an Interface
Configure RIPng Custom Values
Configure RIPng Route Distribution
RIP configuration using EDM
Configure RIP Globally
View RIP status
Configure RIP Interface Compatibility
Configure RIP on an Interface
Configure RIP on a Port
Configure RIP on a VLAN
Configure Route Redistribution to RIP
RIPng Configuration using EDM
Configure RIPng Globally
Configure an IPv6 RIPng Interface
Configure an IPv6 RIPng VLAN Interface
Configure an IPv6 RIPng Brouter Port Interface
Graph IPv6 RIPng Statistics
Configure Route Redistribution to RIPng
View Statistics for RIPng Interfaces
Remote Monitoring
Remote Monitoring
RMON 2
RMON2 Considerations
RMON Configuration Using CLI
Configure RMON
Enable Remote Monitoring on an Interface
Enable RMON2 on a Segmented Management Instance Interface
View RMON Information
Display RMON Address Maps
View RMON Statistics
Display RMON Statistics for Specific Ports
View RMON Application Host Statistics
View RMON Control Tables
Display RMON Network Host Statistics
View RMON Protocol Distribution Statistics
Display RMON Status
View the RMON2 Configuration State of Management Interfaces
RMON Configuration Using EDM
Enable RMON Globally
Enable RMON on a Port or VLAN
Enable RMON1 History
Disable RMON1 History
View RMON1 History Statistics
Create an RMON1 Alarm
View RMON1 Alarms
Delete an RMON1 Alarm
Create an RMON1 Event
View RMON1 Events
Delete an Event
View the RMON Log
Enable RMON Statistics
View RMON Statistics
View the Protocol Directory
View the Data Source for Protocol Distribution Statistics
View Protocol Distribution Statistics
View the Host Interfaces Enabled for Monitoring
View Address Mappings
View the Data Source for Host Statistics
View Network Host Statistics
View Application Host Statistics
RMON Alarm Variables
Route Filtering and IP Policies
Route Filtering and IP Policies
Accept Policies
Redistribution Filters
Announce Policies
Route Filtering Stages
Prefix list
Route Policy Definition
IP policy configuration using the CLI
Configuring prefix lists
Configure IP Route Policies
Configure a Policy to Accept External Routes from a Router
Apply OSPF Accept Policy Changes
Configure Inter-VRF Redistribution Policies
IP Policy Configuration using Enterprise Device Manager
Configure a Prefix List
Configure a Route Policy
Apply a Route Policy
Configure an OSPF Accept Policy
Configure Inbound and Outbound Filtering Policies on a RIP Interface
Delete Inbound or Outbound Filtering Policies on a RIP Interface
Routed Split MultiLink Trunking
RSMLT
IPv6 RSMLT
SMLT and RSMLT Operation in Layer 3 Environments
Router R1 Failure
Router R1 Recovery
RSMLT Network Design and Configuration
RSMLT Edge Support
RSMLT Configuration using CLI
Configure RSMLT on a VLAN
Enable RSMLT Edge Support
View RSMLT Information
RSMLT Configuration using EDM
Configure RSMLT on a VLAN
Enabling RSMLT Edge support
View and Edit IPv4 RSMLT Local Information
Modify the IPv6 RSMLT Local Information
Modify IPv6 RSMLT Peer Information
View IPv4 RSMLT Peer Information
View IPv6 RSMLT Edge Peers
View IPv4 RSMLT Edge Support Information
SD-WAN
Secure Shell
Secure Shell Fundamentals
Outbound Connections
SSH Version 2
User ID Logs
User Key Files
Block SNMP
SCP command
Third-Party SSH and SCP Client Software
DSA Authentication Access Level and File Name
RSA Authentication Access Level and File Name
SSH Rekeying
Configure Secure Shell using CLI
Enabling the SSHv2 server
Changing the SSH server authentication mode
Configure SSH Authentication Type
Enable DSA Authentication
Generate the DSA Host Key
Generate a DSA User Key
Import DSA and RSA Private or Public Keys
Configure Encryption Type
Configure the Key-Exchange Method
Configure the Maximum Number of SSH Sessions
Enable SSH Password Authentication
Configure the SSH Connection Port
Enable RSA Authentication
Generate an RSA Host Key
Generate an RSA User Key
Enable SSH Secure Mode
Configure the SSH version
Configure the SSH Authentication Timeout
Resetting the SSH
Configure X.509 V3 Authentication
Verify and Display SSH Configuration Information
Connect to a Remote Host using the SSH Client
Generate User Key Files
Manage an SSL Certificate
Disabling SFTP without disabling SSH
Enable SSH Rekey
Configure the SSH Rekey Data Limit Threshold
Configure the SSH Rekey Time Interval
Display SSH Rekey Information
Enabling or Disabling the SSH Client
Downgrading or Upgrading from Releases that Support Different Key Sizes
Secure Shell configuration using Enterprise Device Manager
Change Secure Shell Parameters
Security
Security Fundamentals
Security overview
Security Modes
hsecure Mode
CLI Passwords
Access Policies for Services
User-based policy support
Denial-of-Service Attack Prevention
Authentication for Privileged EXEC Command Mode
Configuration Considerations
Interoperability configuration
Unicast Reverse Path Forwarding (uRPF)
Digital Certificate/PKI
Certificate Order Priority
Two-Factor Authentication for SSH
Security Configuration using CLI
Enable hsecure
Change an Invalid-Length Password
Configure New Passwords
Configure Password Hash
Configure Directed Broadcast
Prevent Certain Types of DOS Attacks
Configure Port Lock
Unicast Reverse Path Forwarding configuration using CLI
Enable urpf-mode Boot Flag
Configure Unicast Reverse Path Forwarding on a Port
Configure Unicast Reverse Path Forwarding on a VLAN
Digital Certificate Configuration
Configure Device Subject Parameters
Configure Subject Alternative Names
Generate the Key Pair
Configure a Trustpoint CA
Install the Certificate
Generate the Certificate Signing Request
Display Configured Key Pairs
View the Certificate Details
Configure a Web Server Certificate
Digital certificate configuration examples
Obtain an Online CA-signed Subject Certificate
Install an Offline CA Certificate
Configure X.509 V3 certificates for SSH Two Factor Authentication
Configure TCP Keepalive and TCP Timestamp
Enable Authentication for Privileged EXEC Command Mode using CLI
Enable MAC Move Protection on vIST
Security Configuration using EDM
Change Passwords
Configure Directed Broadcast on a VLAN
Unicast Reverse Path Forwarding configuration using EDM
Configure Reverse Path Checking on a Port
Configure Reverse Path Checking on an IPv6 Port
Configure Reverse Path Checking on a VLAN
Configure Reverse Path Checking on an IPv6 VLAN
Digital certificate configuration using EDM
Configure Device Subject Parameters
Configure Device Subject Entries Parameters
Generate the Key Pair
Configure the Certificate Authority
View the Certificate Details
View the Certificate Store
Configure TCP Keepalive and TCP Timestamp
Enable Authentication for Privileged EXEC Command Mode
sFlow
sFlow Fundamentals
sFlow Configuration Using CLI
Configure the Agent IP Address and Enable sFlow Globally
Configure an sFlow Collector
Configure the Packet Sampling Rate
Configure sFlow Maximum Header Size
Configure the Counter Sampling Interval
View sFlow Statistics
Clear sFlow Statistics
sFlow Configuration Using EDM
Enable sFlow and Configure the Agent IP Address
Configure an sFlow Collector
Configure the Packet Samples and Counter Samples
Display sFlow Statistics
Simple Network Management Protocol (SNMP)
SNMPv3
SNMP Community Strings
SNMPv3 support for VRF
SNMPv3 Remote Engine ID Discovery
SNMP Configuration Using CLI
Configure SNMP settings
Creating a user
Create a New User Group
Creating a new entry for the MIB in the view table
Creating a community
Add a User to a Group
Block SNMP Access
View SNMP System Information
SNMP Configuration Using EDM
Create a User
Create a New Group Membership
Create Access for a Group
Create Access Policies for SNMP Groups
Assign MIB View Access for an Object
Create a Community
View All Contexts for an SNMP Entity
Show SNMP Statistics
Spanning Tree Configuration
Spanning Tree Fundamentals
BPDU Guard
Rapid Spanning Tree Protocol and Multiple Spanning Tree Protocol
Spanning Tree Configuration Using CLI
Configure the Spanning Tree Mode
Configure BPDU Guard
Configure Rapid Spanning Tree Protocol
Configure Rapid Spanning Tree Protocol for a Port
Configure the Rapid Spanning Tree Protocol Version
Display Global RSTP Configuration Information
Display RSTP statistics
Display the RSTP Status
Display the RSTP Configuration Information
Display the RSTP Status for a Port
Display RSTP Information for a Port
Display the RSTP Role
Display Spanning Tree Configuration
Configure Multiple Spanning Tree Protocol
Configure MSTP MSTI Options
Configure Ethernet MSTP
Configure Ethernet MSTP MSTI
Display MSTP Configurations
Display MSTP Status
Display MSTP Port Information
Display MSTP MSTI Information
Display MSTP Statistics
Configure tc-receive-alarm-threshold
Display the tc-receive-alarm-threshold Configuration
Spanning Tree Configuration Using EDM
Configure the Spanning Tree Mode
Configure BPDU Guard
Configure RSTP Global Parameters
Configure RSTP Ports
View RSTP Port Status
View RSTP Status Statistics
View Port Spanning Tree Statistics
Configure MSTP Global Parameters
Configure CIST Ports for MSTP
Configure MSTI Bridges for MSTP
Configurw MSTI Ports for MSTP
View VLAN and Spanning Tree CIST Statistics
View VLAN and Spanning Tree MSTI Statistics
SPB-PIM Gateway configuration
SPB-PIM Gateway fundamentals
IP Multicast over Fabric Connect in Protocol Independent Multicast networks
SPB-PIM Gateway
SPB-PIM GW Components
SPB-PIM Gateway Controller Node
SPB-PIM Gateway Node
MSDP overview
Source Active messages
Reverse Path Forwarding check
SA redistribution and filtering
MSDP and SPB-PIM GW
Full mesh group
Multicast Source Discovery Protocol configuration
Basic MSPD configuration using the CLI
Configure the MSDP Originator ID
Configure MSDP on a VRF
Enable MSDP Globally
Create an MSDP peer
MSDP Peer Configuration using the CLI
Configure a Peer Description
Secure Control Messages
Configure the MSDP Peer SA Limit
Configure the Time-To-Live Threshold
Configure the MSDP Peer Keep Alive Messages
Configure the MSDP Peer Connect-Retry Period
Clear the Peer Connection
Delete an MSDP Peer
MSDP Message Control using the CLI
Filter PIM Routes
Filter SA Messages
Configure MSDP Mesh Groups
Clear the MSDP SA Cache
MSDP Verification using the CLI
Display the Peer Information
Display the SA Cache
Display the MSDP Count
Display the MSDP Summary
Display the RPF Peer Information
Display the MSDP Mesh Group Information
Display the SA Check Information
Display All MSDP Information
Clear IPv4 MSDP Statistics
Basic MSDP configuration using the EDM
Configure the MSDP Originator ID
Enable MSDP
Create an MSDP Peer
MSDP Peer Configuration using the EDM
Secure Control Messages
Configure the MSDP Peer SA Limit
Configure a Peer Description
Configure the MSDP Peer Time-to-Live Threshold
Configure the MSDP Peer Keepalive Messages
Configure the MSDP Peer connect-retry Period
Change the MSDP Peer Status
Clear the MSDP Peer Connection
Delete an MSDP Peer
MSDP Message Control using the EDM
Filter PIM Routes
Filter SA Messages
Configure the MSDP Mesh Groups
Clear the MSDP SA Cache
MSDP Verification using the EDM
View Peer Information
View the Local SA Cache
View the Foreign SA Cache
View the Mesh Group
Controller configuration
Controller Configuration using the CLI
Enable the Controller Globally
Display the Controller Admin Status
Display the Active Controller and Gateway Nodes
Configure a Static Foreign Source on the Global Router
Configure a Static Foreign Source on a VRF
Display Foreign Sources
Display Multicast over Fabric Connect Sources
Controller Configuration using the EDM
Enable the Controller
Display the Controller and Gateway Admin Status
Display Active Controller and Gateway Nodes
Configure a Static Foreign Source
Display Foreign Sources for the Controller
Display Multicast over Fabric Connect Sources
Gateway configuration
Gateway Configuration using the CLI
Enable the Gateway
Display the Gateway Admin Status
Gateway Configuration using the EDM
Enable the Gateway Globally
Display Foreign Sources for the Gateway
SPB-PIM Gateway interface configuration
SPB-PIM Gateway Interface Configuration using the CLI
Enable SPB-PIM Gateway on a VLAN
Enable SPB-PIM Gateway on a Brouter Port Interface
Configure the SPB-PIM Gateway VLAN Optional Parameters
Configure the SPB-PIM Gateway Brouter Port Optional Parameters
Display the SPB-PIM Gateway Brouter Port Information
Display the SPB-PIM Gateway VLAN Information
Display the SPB-PIM Gateway Neighbor Information
Display the SPB-PIM Gateway Multicast Routes
Display the IP mroute Routes
SPB-PIM Gateway Interface Configuration using the EDM
Enable SPB-PIM Gateway on a VLAN
Enable SPB-PIM Gateway on a Brouter Port Interface
Configure SPB-PIM Gateway VLAN Optional Parameters
Configure the SPB-PIM Gateway Optional Parameters
Display the SPB-PIM Gateway Interface Default Values
Display the SPB-PIM Gateway Brouter Port Information
Display the SPB-PIM Gateway VLAN Information
Display the SPB-PIM Gateway Neighbor Information
Display the IP mroute Routes
SPB-PIM Gateway Interface Deployment Scenarios
SPB-PIM Gateway Base Case Deployment Scenario
Source Specific Multicast
Peer Mesh Group
Multi domain
SPB domain interconnect
System Access
System access fundamentals
Logging On to the System
Managing the System using Different VRF Contexts
CLI Passwords
Access Policies for Services
Web interface passwords
Multiple CLI Users for Each Role
Enhanced Secure Mode
Password Requirements
Sensitive File Protection
System access configuration using CLI
Change the Default Username
Enable CLI Access Levels
Change Passwords
Configure an Access Policy
Specify a Name for an Access Policy
Allow a Network Access to the Switch
Configure Access Policies by MAC Address
Create Multiple CLI Users
Delete a Username
Enable a CLI User
Disable a CLI User
Display CLI Usernames and Roles
System access security enhancements
Display the Boot Config Flags Status
Enable Enhanced Secure Mode
Create Accounts for Different Access Levels
Delete Accounts in Enhanced Secure Mode
Configure a Password for a Specific User
Return the System to the Factory Defaults
Configure the Password Complexity Rule
Configure the Password Length Rule
Configure the Change Interval Rule
Configure the Reuse Rule
Configure the Maximum Number of Sessions
Configure the Maximum Age Rule
Configure the Pre-Notification and Post-Notification Rule
System access configuration using EDM
Configuring CLI Access using EDM
Enable Access Levels
Change Passwords
Configure the Logon Banner
Create an Access Policy
Enable an Access Policy
Create Multiple Users
Modify User Passwords
Disable a User Account
Delete a User Account
System access security enhancements using EDM
Enable Enhanced Secure Mode
TACACS+
TACACS+ Fundamentals
TACACS+ Operation
TACACS+ Architecture
Authentication, authorization, and accounting
TACACS+ Authentication
TACACS+ authorization
TACACS+ Accounting
Privilege Level Changes at Runtime
TACACS+ and RADIUS differences
TACACS+ Feature Limitations
TACACS+ configuration using CLI
Enable TACACS+
Add a TACACS+ Server
Configure TACACS+ Authentication
Configure TACACS+ Accounting
Configure Command Authorization with TACACS+
Change Privilege Levels at Runtime
TACACS+ configuration using EDM
Configure TACACS+ Globally
Add a TACACS+ Server
Modify a TACACS+ Configuration
TACACS+ Configuration Example
TACACS+ Configuration on the Switch
Traffic Filtering
Traffic filtering fundamentals
Overview of Traffic Filtering
QoS and Filters
Access Control Lists
Access Control Entries
Operators
Attributes
Actions
Internal QoS Level and Remarking
Conflict and Precedence
Common ACE uses and configuration
Switched UNI ACL Filters
Traffic filter configuration
Ingress Policer and Port Rate Limiter
ACL and ACE configuration guidelines
ACL Filters Behavior Differences
Access control list configuration using CLI
Create an IPv4 ACL
Create an IPv6 ACL
Associate VLANs with an ACL
Associate ports with an ACL
Associate an I-SID with an ACL
Configure Global and Default Actions for an ACL
Rename an ACL
Disable an ACL
Reset an ACL to default values
Delete an ACL
Clear ACL Statistics
Enable IPv6 Egress Filters
Display Filter Access Control List Configuration
Access control list configuration using EDM
Configure an Access Control List
View ACL Statistics
Clear ACL Statistics
Enable IPv6 Egress Filters
Access Control Entry Configuration using CLI
Configure ACEs
Configure ACE actions
Configure ARP ACEs
Configure an Ethernet ACE
Configure an IP ACE
Configure an IPv6 ACE
Configure a protocol ACE
Configure Ingress Policer and Port Rate Limiter
View ACL and ACE configuration data
View ACE Statistics
Access Control Entry Configuration using EDM
Configure an ACE
Configure ACE Actions
Configure ACE ARP entries
View ACE ARP Entries for an ACL
Configure an ACE Ethernet Source Address
Configure an ACE Ethernet Destination Address
Configure an ACE LAN Traffic Type
Configure an ACE Ethernet VLAN Tag Priority
Configure an ACE Ethernet Port
Configure an ACE Ethernet VLAN ID
View All ACE Ethernet Entries for an ACL
Configure an ACE IP Source Address
Configure an ACE IP Destination Address
Configure an ACE IP DSCP
Configure an ACE IP protocol
Configure ACE IP options
Configure ACE IP Fragmentation
View all ACE IP Entries for an ACL
Configure an ACE IPv6 Source Address
Configure an ACE IPv6 Destination Address
Configure an ACE IPv6 Next Header
Configure an ACE IPv6 Traffic Class
View all ACE IPv6 Entries for an ACL
Configure an ACE Source Port
Configure an ACE Destination Port
Configure an ACE ICMP Message Type
Configure an ACE ICMPv6 Message Type
Configure an ACE TCP Flag
Configure an ACE to Filter IPv4 Routed Packets
Configure an ACE to Filter IPv6 Routed Packets
Configure Ingress Policer and Port Rate Limiter
View ACE Port Statistics
View All ACE Protocol Entries for an ACL
Troubleshooting
Data Collection Required for Technical Support Cases
Data Collection for an Outage
Collect Data Before You Restart
Collecting Data After You Restart
Data Collection for Non Outage Problems
Gathering Critical Information
Troubleshooting Planning Fundamentals
Proper Installation and Routine Maintenance
Network Configuration
Normal Behavior on the Network
Troubleshooting Fundamentals
Connectivity Problems
Routing Table Problems
Cable Connection Problems
Alarm Database
LED Indications of Problems
Connectivity Fault Management
CFM Fundamentals
Autogenerated CFM and Explicitly Configured CFM
Maintenance Domain (MD)
Maintenance Association (MA)
Maintenance Association Endpoint (MEP)
Fault Verification
LBM Message
L2 Ping
Fault Isolation
Link Trace Message
L2 Traceroute
L2 Tracetree
L2 Tracetree-fan
Maintenance Domain Intermediate Point (MIP)
Layer 2 Tracemroute
Nodal MPs
Nodal B-VLAN MIPs with SMLT
Configuration Considerations
CFM Configuration Using CLI
Autogenerated CFM
Configuring Autogenerated CFM on SPBM B-VLANs
Configure Connectivity Fault Management Explicit Mode
Configure Connectivity Fault Management Maintenance Domain
Configure Connectivity Fault Management Maintenance Association
Configure Connectivity Fault Management Maintenance Endpoint
Assign a MEP/MIP Level to an SPBM B-VLAN
Assign MEP/MIP Levels to SPBM B-VLANs Globally
Trigger a Loopback Test (LBM)
Trigger Linktrace (LTM)
Trigger a Layer 2 Ping
Trigger a Layer 2 Traceroute
Trigger a Layer 2 Tracetree
Trigger a Layer 2 Tracetree-fan
Trigger a Layer 2 Tracemroute
Use Trace CFM to Diagnose Problems
CFM Configuration Using EDM
Autogenerated CFM
Configure Autogenerated CFM on SPBM B-VLANs
Configuring Explicit CFM
Configure CFM MD
Configure CFM MA
Configure CFM MEP
Configure CFM Nodal MEP
Configure Layer 2 Ping
Initiate a Layer 2 Traceroute
View Layer 2 Traceroute Results
Configure Layer 2 IP Ping
View Layer 2 IP Ping Results
Configure Layer 2 IP Traceroute
View Layer 2 IP Traceroute Results
Trigger a Loopback Test
Trigger Linktrace
View Linktrace Results
Configure a Layer 2 Tracetree
View Layer 2 Tracetree Results
Configure Layer 2 Trace Multicast Route on a VLAN
Configure Layer 2 Tracemroute on a VRF
View Layer 2 Trace Multicast Route Results
CFM Configuration Example
CFM Configuration Example
CFM Sample Output
Software Troubleshooting Tool Configuration
Troubleshooting Tool Fundamentals
Troubleshooting Overview
Debug Files
Digital Diagnostic Monitoring
Flight Recorder
Port Mirroring
Port Mirroring Considerations and Restrictions
General Diagnostic Tools
Fabric RSPAN (Mirror to I-SID)
Software Troubleshooting Tool Configuration Using CLI
Use CLI for Troubleshooting
Use Software Record Dumps
Use Trace to Diagnose Problems
Use Trace to Diagnose IPv6 Problems
View and Delete Debug Files
Configure Port Mirroring
Display Mirror Resource Usage
Configure Global Mirroring Actions with an ACL
Configure ACE Actions to Mirror
Clear ARP Information for an Interface
Flush Routing, MAC, and ARP Tables for a Port
Flush Routing, MAC, and ARP Tables for a VLAN
Ping an IP Device
Run a Traceroute Test
Show SNMP Logs
Use Trace to Examine IS-IS Control Packets
View the Metric Type of IS-IS Route in TLVs – Detailed
View the Metric Type of IS-IS Route in TLVs – Summarized
Configure I-SID Monitoring
Display I-SID Monitoring Diagnostics
Display I-SID Mirroring Statistics
Clear Fabric RSPAN (Mirror to I-SID) Statistics
Software Troubleshooting Tool Configuration Using EDM
Flush Routing Tables by VLAN
Flush Routing Tables by Port
Configure Port Mirroring
Configure ACLs for Mirroring
Configure ACEs for Mirroring
Run a Ping Test
View Ping Results
View Ping Probe History
Run a Traceroute Test
View Traceroute Results
View the Traceroute History
Configure I-SID Monitoring
View Fabric RSPAN (Mirror to I-SID) Statistics
General Troubleshooting
Hardware Troubleshooting
Use Trace to Diagnose Hardware Problems
Troubleshoot USB Viewing Problems
Time Domain Reflectometer (TDR)
Initiate a Time Domain Reflectometer Diagnostic Test
Initiate a Time Domain Reflectometer Diagnostic Test
Software Troubleshooting
Failure to Read Failed Configuration File
No Web Management Interface Access to a Device
Configuration in EDM is not applied using CLI
Layer 1 Troubleshooting
Troubleshoot Fiber Optic Links
Reset a QSFP+ or QSFP28 Transceiver
Layer 2 and 3 Troubleshooting
Troubleshooting BPDU Guard
No Packets Received on the Port
Troubleshooting IPv6 VRRP
VRRP Transitions
Enable Trace Messages for IPv6 VRRP Troubleshooting
Risks Associated with Enabling Trace Messages
VRRP with Higher Priority Running as Backup
Troubleshooting RSMLT
RSMLT Peers Not Up
Enable Trace Messages for RSMLT Troubleshooting
Troubleshoot IPv6 Connectivity Loss
Troubleshoot vIST Failure
Multicast Troubleshooting
Multicast Feature Troubleshooting
Troubleshooting IGMP Layer 2 Querier
Troubleshoot IGMPv3 Backwards Compatibility
Multicast Routing Troubleshooting Using CLI
View IGMP Interface Information
View Multicast Group Trace Information for IGMP Snoop
View IGMP Group Information
Determine the Data Stream Learned with IP Multicast over Fabric Connect on the VLAN
Display the SPBM Multicast Database
Troubleshoot IP Multicast over Fabric Connect for Layer 2 VSNs
Troubleshoot IP Multicast over Fabric Connect for Layer 3 VSNs
Troubleshoot IP Multicast over Fabric Connect for IP Shortcuts
View the Hardware Resource Usage
Use PIM Debugging Commands
Determine the Protocol Configured on the Added VLAN
Multicast routing troubleshooting using EDM
View IGMP Interface Information
Determine the Data Stream Learned when IP Multicast over Fabric Connect is Configured on the VLAN
Show the SPBM Multicast Database
Troubleshooting Fabric Attach
Troubleshoot Fabric Attach using CLI
View Fabric Attach Configuration
Troubleshoot Fabric Attach using EDM
Graph LLDP Reception Statistics
Graph LLDP Transmission Statistics
Troubleshoot FA Server Rejection of I-SID-to-VLAN Assignments Using Trace
Troubleshooting FAN Transit
View Detailed FAN Transit Information
Upper Layer Troubleshooting
Troubleshooting SNMP
SNMP Trap not Received
Troubleshooting DHCP
Troubleshooting DHCP Relay
Troubleshoot Client Connection to the DHCP Server
Troubleshooting IPv6 DHCP Relay
IPv6 DHCP Relay Switch Side Troubleshooting
IPv6 DHCP Relay Server Side Troubleshooting
IPv6 DHCP Relay Client Side Troubleshooting
Enable Trace Messages for IPv6 DHCP Relay
Troubleshooting TACACS+
Unable to Log On Using Telnet
Unable to Log On Using SSH
Unable to Log On by any Means
Administrator Unable to Obtain Accounting Information from the TACACS+ Server
Trap Server Cannot Receive Trap Packets from the Switch
Troubleshoot TACACS+ Problems
Use BGP Debugging Commands
Traps Reference
Proprietary Traps
Standard Traps
Virtual Link Aggregation Control Protocol
Virtual Link Aggregation Control Protocol
VLACP Flap Detect and Damping
VLACP Configuration using CLI
Configure VLACP on a port
View the VLACP Port Configuration
Display VLACP Statistics for Specific Ports
Configure VLACP Globally
Configure VLACP Flap Detect and Damping on a Port
Clear VLACP Flap Detect and Damping Statistics for a Port
VLACP Configuration using EDM
Enable VLACP Globally
Configure VLACP on a Port
Configuring VLACP on an Extreme Integrated Application Hosting Port
VLAN Configuration
VLAN Fundamentals
Port-Based VLANs
Private VLANs
Policy-Based VLANs
SPBM B-VLAN
VLAN Tagging and Port Types
VLAN Router Interfaces
IP routing and VLANs
VLAN Implementation
VLAN Configuration Rules
VLAN Feature Support
Secondary IP Interfaces
Network Load Balancing
Supported NLB Topologies
NLB and Directed Broadcast Resource Limits
VLAN MAC-layer Filtering Database and MAC Security
Prevention of IP Spoofing within a VLAN
VLAN loop prevention
Spanning Tree and Protection against Isolated VLANs
IGMP Layer 2 Querier
Switched UNI Layer 3
VLAN Configuration Using CLI
Create a VLAN
Create a Private VLAN
Assign an IP Address to a VLAN
Display All Configured IP Addresses
View the IPv4 and IPv6 Interface Configuration on a VLAN
Remove All Secondary IP Interfaces From a VLAN
Perform a General VLAN Action
Configure Static MAC Addresses for a VLAN
Limit MAC Address Learning
Configure the Forwarding Database Timeout Globally
Add or Remove Ports in a VLAN
Configure NLB support
Configure a Tagged Port to Discard Untagged Frames
Configuring SLPP
Configure SLPP packet-rx on a Port
Configure SLPP packet-tx on a VLAN
View SLPP Information
View SLPP Information for a Port
Configure Automatic Port Recovery
Configure Spoof Detection
View VLAN Information
View Private VLAN Information
View Brouter Port Information
View VLAN Port Member Status
View VLAN Source MAC Addresses
View VLAN Forwarding Database Information
View Manual Edit MAC Addresses
View Port-Level MAC Security
View NLB-Mode Information
Enable DvR on a Layer 2 VSN (VLAN)
Configure a Single IP Address for All DvR Controllers on a VLAN Subnet
VLAN Configuration using EDM
Configure a VLAN on a Port
Configure the VLAN Feature on an Extreme Integrated Application Hosting Port
View existing VLANs
Create a Port-Based VLAN
Create a Private VLAN
View Private VLAN Information
Configure a Primary IP Address for a VLAN
Modify the Administrative State of an IP Interface on a VLAN
Configure a Secondary IP Interface for a VLAN
Change VLAN Port Membership
Create a Protocol-Based VLAN
Create a SPBM B-VLAN
Configure Advanced VLAN Features
Configure NLB Support
Configure a Port to Accept Tagged or Untagged Frames
Configure Untagging Default VLAN on a Tagged Port
Configure SLPP Globally
Configure the SLPP by VLAN
Configure the SLPP by Port
Configure the Global Forwarding Database Timeout
View VLAN Forwarding Database Information
View the Forwarding Database for a Specific VLAN
Clear Learned MAC Addresses by VLAN
Clear Learned MAC Addresses for all VLANs by Port
Configure Static Forwarding
Configure Limit Learning
VRF Lite
VRF Lite Fundamentals
VRF Lite Capability and Functionality
VRF Lite and inter-VRF route redistribution
Route Redistribution Operation
Port parameters and VRF Lite management
Virtualized Management Applications
VRF Lite Configuration Rules
VRF Lite Configuration using CLI
Create a VRF Instance
Associate a VLAN or Port with a VRF Instance
Create an IP VPN Instance on a VRF
Create an IPv6 VPN Instance
Configure the Maximum Number of VRFs
Enable IPv6 Trap Notifications
Display IPv6 max-routes Information
VRF Lite configuration using Enterprise Device Manager
Configure a VRF Instance
Associate a Port to a VRF Instance
Associate an Extreme Integrated Application Hosting Port to a VRF Instance
Configure interVRF route redistribution policies
View Brouter Port and VRF Associations
View Global VRF Status Information
View VRF Instance Statistics and Status Information
View Statistics for a VRF
Select and Launch a VRF Context View
Create an IP VPN Instance on a VRF
Create an IPv6 VPN Instance on a VRF
Configure the Maximum Number of VRFs
Virtual Router Redundancy Protocol
VRRP Fundamentals
Critical IP Address
VRRP and SMLT
VRRP Fast Hello Timers
Handling of IPv4 Layer 2 Unicast Packets at VRRP Backup Master
VRRP Guidelines
VRRP for IPv6
VRRPv3
VRRPv3 guidelines
Configure VRRP Using CLI
Configure the VRRP Version on an Interface
Configure VRRP on a Port or a VLAN
Show Information for all Configured VRRP Addresses
Showing Extended VLAN VRRP
Show VRRP Interface Information
View IP VRRPv3 Statistics
Enable Ping to a Virtual IP Address
Configure VRRP Notification Control
Enable IPv4 VRRP Preempt Mode
IPv6 VRRP Configuration using CLI
Configure the VRRP Interface
View VRRP Information
Configure VRRP Notification Control
Configure Additional VRRP Parameters for an Interface
View IPv6 VRRP Statistics
Enable IPv6 VRRP Preempt Mode
Configure VRRP using EDM
Enable VRRP Global Variables
Modify VRRP Parameters for an Interface
Add a Secondary Virtual IP for VRRPv2
Configure VRRP on a V3 Interface
Configure VRRPv3 Checksum
Configure Fast Advertisement Interval on a Port
Configure Fast Advertisement Interval on a VLAN
View VRRP Statistics
View VRRP Interface Statistics
View IP VRRPv3 Statistics
Graph IP VRRPv3 Statistics
IPv6 VRRP Configuration using EDM
Configure VRRP for an Interface
Configure VRRP Notification Control
View IPv6 VRRP Statistics
View IPv6 VRRP Statistics for an Interface
Configure IPv6 VRRP Statistics
Graph IPv6 VRRP Statistics
Configure Additional Addresses on the VRRP Brouter Port
Configure Additional Addresses on a VRRP Interface
VXLAN Gateway
VXLAN Gateway Fundamentals
VXLAN Gateway Licensing
VXLAN Modes
Types of VXLAN Gateway Deployments
VXLAN-to-VLAN Layer 2 Gateway Deployment
VXLAN-to-VXLAN Layer 3 Gateway Deployment
VXLAN-to-SPB Gateway Deployment
VXLAN Gateway Considerations and Limitations
OVSDB protocol support for VXLAN Gateway Considerations and Limitations
VXLAN Gateway configuration using the CLI
Enable VXLAN Gateway in Full Interworking Mode
Configure VXLAN Gateway
Flush the MAC Forwarding Table
VXLAN Gateway show commands
Display VTEP Source Information
Display Remote VTEP Information
Display the Name of the Remote VTEP
Display VNID Information
Display the MAC Addresses in the VNID FDB
Display the VXLAN Running Configuration
OVSDB protocol support for VXLAN Gateway configuration using CLI
Configure OVSDB Managed Interfaces
Configure OVSDB protocol support for VXLAN Gateway
Configure OVSDB Replication
Display the OVSDB Configuration
Display the OVSDB Controller Status
Display the OVSDB Replication State
Display the OVSDB Managed Interfaces
VXLAN Gateway configuration using EDM
Configure the VXLAN Gateway Boot Flag
Configure a VTEP Source IP Address
Configure a Remote VTEP
Configure a VNID
Configure VNID Endpoints
Configure ELAN Endpoints
Display the VTEP Next Hop
Display the VNID Forwarding Database
OVSDB protocol support for VXLAN Gateway configuration using EDM
Configure OVSDB Globally
Configure an OVSDB Controller
Display the OVSDB Controller Status
Configure OVSDB Managed Interface
Configuration Examples
VXLAN Gateway Configuration Example
OVSDB protocol support for VXLAN Gateway Configuration Example
Port Numbering and MAC Address Assignment Reference
Port Numbering
5320 Series
5420 Series
5520 Series
5720 Series
7520 Series
7720 Series
Interface Indexes
Port Interface Index
VLAN interface index
MLT interface index
MAC Address Assignment
Supported Standards, RFCs, and MIBs
Supported IEEE Standards
Supported RFCs
Standard MIBs
Proprietary MIBs
ICMPv6 Type and Code
IPsec configuration using CLI
The following section provides procedures to configure Internet Protocol Security (IPsec).