ProCurve 8212zl Manuel

Naviguer en ligne ou télécharger Manuel pour Commutateurs de réseau ProCurve 8212zl. ProCurve 8212zl Product manual Manuel d'utilisatio

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 667
  • Table des matières
  • DEPANNAGE
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 0
Command Line Interface
Reference Guide
www.procurve.com
ProCurve Switches
K.13.XX
8212zl
6200yl
5400zl
3500yl
Vue de la page 0
1 2 3 4 5 6 ... 666 667

Résumé du contenu

Page 1 - ProCurve Switches

Command Line InterfaceReference Guidewww.procurve.comProCurve SwitchesK.13.XX8212zl6200yl5400zl3500yl

Page 2

Command Structure ... 363password ...

Page 3 - Reference Guide

copy crash-log mm usb FILENAME appendAdd the key(s) for operator access. copy crash-log mm usb FILENAME operator appendAdd the key(s) for access.

Page 4

copy startup-config usb FILENAME appendAdd the key(s) for operator access. copy startup-config usb FILENAME operator appendAdd the key(s) for acces

Page 5

copy usb autorun-key-fileCopy autorun key le to the switch.Next Available Option: filename -- Specify filename for the USB transfer. (ASCII-STR) (

Page 6

command-output copy command-output COMMAND-OUTPUTSpecify a CLI command to copy output of.Next Available Options: tftp -- Copy data to a TFTP server.

Page 7

Next Available Options: card -- Enter single slot identifier. (SLOT-ID-RANGE) (p. 100) mm -- Copy from the management card.(p. 116) tftp -- Copy da

Page 8

secondary -- Copy to secondary flash.event-log copy event-logCopy event log le.Next Available Options: tftp -- Copy data to a TFTP server.(p. 122

Page 9

operator -- Replace the key(s) for operator access (default); follow with the 'append' option toadd the key(s).(p. 116) manager -- Replac

Page 10

Next Available Options: append -- Add the key(s) for operator access.(p. 94) operator -- Replace the key(s) for operator access (default); follow wi

Page 11

copy usb command-file FILENAMESpecify lename for the USB transfer.Next Available Options: unix -- Change CR/LF to unix style.(p. 130) pc -- Chang

Page 12

Next Available Options: unix -- Change CR/LF to unix style.(p. 130) pc -- Change CR/LF to PC style.(p. 119) copy command-output COMMAND-OUTPUT usb

Page 13

Command Details ... 399redundancy ...

Page 14

copy crash-data mm tftp IP-ADDR FILENAMESpecify lename for the TFTP transfer. copy crash-data mm tftp IPV6-ADDR FILENAMESpecify lename for the TF

Page 15 - Part I. Introduction

Next Available Options: append -- Add the key(s) for operator access.(p. 94) operator -- Replace the key(s) for operator access (default); follow wi

Page 16 - Introduction

Specify lename for the TFTP transfer. copy flash usb FILENAMESpecify lename for the USB transfer.Next Available Options: append -- Add the key(s)

Page 17

Next Available Options: unix -- Change CR/LF to unix style.(p. 130) pc -- Change CR/LF to PC style.(p. 119) copy startup-config usb FILENAMESpecify

Page 18

copy xmodem flashCopy to primary/secondary ash.Next Available Option: cv_flash < primary | secondary > -- Copy to primary/secondary flash.(p

Page 19

Replace the key(s) for manager access; follow with the 'append' option to add thekey(s).Next Available Option: append -- Add the key(s) for

Page 20

Next Available Option: append -- Add the key(s) for access.(p. 94) copy usb autorun-cert-file FILENAME managerReplace the key(s) for manager access;

Page 21 - Part II. Commands

copy crash-log SLOT-ID-RANGE usb FILENAME managerReplace the key(s) for manager access; follow with the 'append' option to add thekey(s).N

Page 22 - Usage: aaa <...>

Next Available Option: append -- Add the key(s) for access.(p. 94)mm copy crash-data mmCopy from the management card.Next Available Options: tftp -

Page 23

Replace the key(s) for operator access (default); follow with the 'append' option toadd the key(s).Next Available Option: append -- Add the

Page 24

snmpv3 ... 536Overview ...

Page 25

Next Available Option: append -- Add the key(s) for access.(p. 94) copy command-output COMMAND-OUTPUT usb FILENAME operatorReplace the key(s) for op

Page 26

copy crash-log usb FILENAME operatorReplace the key(s) for operator access (default); follow with the 'append' option toadd the key(s).Nex

Page 27

copy tftp startup-config IPV6-ADDR FILENAME pcChange CR/LF to PC style. copy tftp config CONFIG IP-ADDR FILENAME pcChange CR/LF to PC style. copy

Page 28

copy startup-config tftp IP-ADDR FILENAME pcChange CR/LF to PC style. copy startup-config tftp IPV6-ADDR FILENAME pcChange CR/LF to PC style. copy

Page 29

Next Available Options: tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 124) tftp-ipv6 -- Specify TFTP server IPv6 address. (IPV6-ADDR) (

Page 30

copy config < config | new > tftpCopy data to a TFTP server.Next Available Options: tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p

Page 31

Next Available Options: tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 124) tftp-ipv6 -- Specify TFTP server IPv6 address. (IPV6-ADDR) (

Page 32

copy tftp pub-key-file IP-ADDRSpecify TFTP server IPv4 address.Next Available Option: filename -- Specify filename for the TFTP transfer. (ASCII-ST

Page 33

Specify TFTP server IPv4 address.Next Available Option: filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 103) copy crash-data mm

Page 34

Next Available Option: filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 103) copy startup-config tftp IP-ADDRSpecify TFTP server

Page 35

terminal ... 591Overview .

Page 36

Next Available Option: filename -- Specify filename for the TFTP transfer. (ASCII-STR) (p. 103) copy tftp autorun-cert-file IPV6-ADDRSpecify TFTP se

Page 37

copy crash-log SLOT-ID-RANGE tftp IPV6-ADDRSpecify TFTP server IPv6 address.Next Available Option: filename -- Specify filename for the TFTP transf

Page 38

unix copy tftp command-file IP-ADDR FILENAME unixChange CR/LF to unix style. copy tftp command-file IPV6-ADDR FILENAME unixChange CR/LF to unix styl

Page 39 - ■ aaa port-access mac-based

Change CR/LF to unix style. copy running-config tftp IP-ADDR FILENAME unixChange CR/LF to unix style. copy running-config tftp IPV6-ADDR FILENAME un

Page 40

copy crash-data SLOT-ID-RANGE usbCopy data to a USB ash drive.Next Available Option: filename -- Specify filename for the USB transfer. (ASCII-STR

Page 41

Copy data to a USB ash drive.Next Available Option: filename -- Specify filename for the USB transfer. (ASCII-STR) (p. 103) copy startup-config usb

Page 42

copy crash-data mm xmodemUse xmodem on the terminal as the data destination. copy crash-data xmodemUse xmodem on the terminal as the data destinati

Page 43

cryptoOVERVIEWSSHCategory:configPrimary context:the section called “crypto” (page 466)Related Commandsautorun (page 62)Usage: crypto host-cert generat

Page 44

cname -- Common name [e.g., IP address of device]. (ASCII-STR) (p. 137) org-unit -- Organizational unit [Department]. (ASCII-STR) (p. 144) organiz

Page 45

Next Available Option: rsa -- Optional keyword.(p. 144)autorun-key crypto key generate autorun-keyInstall RSA key le for autorun. The encryption ke

Page 46

Command Details ... 655web-management ...

Page 47

AE -- United Arab Emirates AF -- Afghanistan AG -- Antigua and Barbuda AI -- Anguilla AL -- Albania AM -- Armenia AN -- Netherlands Antilles

Page 48

CY -- Cyprus CZ -- Czech Republic DE -- Germany DJ -- Djibouti DK -- Denmark DM -- Dominica DO -- Dominican Republic DZ -- Algeria EC -- Ecu

Page 49

IO -- British Indian Ocean Territory IQ -- Iraq IR -- Iran IS -- Iceland IT -- Italy JE -- Jersey JM -- Jamaica JO -- Jordan JP -- Japan KE

Page 50

MZ -- Mozambique NA -- Namibia NC -- New Caledonia NE -- Niger NF -- Norfolk Island NG -- Nigeria NI -- Nicaragua NL -- Netherlands NO -- No

Page 51

SV -- El Salvador SY -- Syria SZ -- Swaziland TC -- Turks and Caicos Islands TD -- Chad TF -- French Southern Territories TG -- Togo TH -- Th

Page 52

generate crypto host-cert generateCreate a self-signed certicate for the https server.Next Available Option: self-signed -- Create a self-signed ce

Page 53

organization crypto host-cert generate self-signed [DATE: START-DATE] [DATE: END-DATE] CNAME ORG-UNITORGANIZATIONOrganization name.Next Available Opt

Page 54

Next Available Option: rsa -- Optional keyword.(p. 144) crypto key zeroize sshRemove RSA key le for ssh server.start-date crypto host-cert generat

Page 55

debugOVERVIEWCategory:managerPrimary context:log (page 338)Related Commandsshow logging (page 486)show debug (page 466)Usage: [no] debug destination &

Page 56

database -- Display database changes. (p. 147) event -- Display RIP events. (p. 148) trigger -- Display trigger messages. (p. 150) [no] debug ipv6

Page 57 - ■ aaa port-access web-based

Part I. Introduction13© 2008 Hewlett-Packard Development Company, L.P.

Page 58

destination [no] debug destination < logging | session | buffer >Select destination for debug messages.Supported Values: logging -- Send debug

Page 59 - (not congured by default)

Display information on ood messages.ip [no] debug ipDisplay all IP routing messages.Next Available Options: ospf -- Display all OSPF routing messag

Page 60

packet [no] debug dhcp-snooping packetDisplay DHCP Snooping packet messages. [no] debug ip ospf packetDisplay packets sent/received. [no] debug ipv

Page 61

dhcp-relayOVERVIEWCategory:configPrimary context:Related CommandsUsage: [no] dhcp-relay[no] dhcp-relay [hop-count-increment]dhcp-relay [option 82 appe

Page 62

ip -- Sets the remote id to be the IP address of the VLAN on which the client request wasreceived. (p. 154) mac -- Sets the remote id to be the MAC

Page 63

82 [no] dhcp-relay option 82Optional argument to dhcp-agent used to specify the operational statusfor option 82.Next Available Options: append -- Sp

Page 64

mgmt-vlan -- Sets the remote id to be the IP address of the Management VLAN.(p. 155) dhcp-relay option 82 validate dropSpecies that the DHCP packe

Page 65 - ■ [no] autorun secure-mode

keep dhcp-relay option 82 keepSpecies that no option 82 eld will be added or replaced, if option 82eld(s) already exists in the client DHCP packet

Page 66

dhcp-relay option 82 keep mgmt-vlanSets the remote id to be the IP address of the Management VLAN. dhcp-relay option 82 drop mgmt-vlanSets the remo

Page 67

validate dhcp-relay option 82 append validateSpecies the validation for server response. dhcp-relay option 82 replace validateSpecies the validati

Page 68

IntroductionCONVENTIONSAbstractThis guide uses the following conventions for command syntax and displayed information.Command Syntax StatementsSyntax:

Page 69

dhcp-snoopingOVERVIEWCategory:configPrimary context:Related CommandsUsage: [no] dhcp-snoopingDescription: Enable/Disable the global administrative sta

Page 70

remote-id < mac | subnet-ip | mgmt-ip > -- Set relay information option remote-id value to use.(NUMBER) (p. 161)authorized-server [no] dhcp-s

Page 71

delay dhcp-snooping database delay < 15 to 86400 >Seconds to delay writing to the lease database le.Range: < 15 to 86400 >file dhcp-sno

Page 72

Next Available Option: 82 -- (p. 158)port-list [no] dhcp-snooping trust [ETHERNET] PORT-LISTremote-id dhcp-snooping option 82 remote-id < mac |

Page 73

Usage: [no] dhcp-snooping verify <mac>Description: Enable/Disable DHCP packet validation.Parameters:o <mac> - Verify DHCP header client ha

Page 74

dirOVERVIEWCategory:operatorPrimary context:Related CommandsUsage: dir [<pathname>]Description: Display a list of the les and subdirectories in

Page 75

enableOVERVIEWSwitch ManagementCategory:operatorPrimary context:exit (page 168)Related Commandsend (page 165)Usage: enableDescription: Enter the Manag

Page 76

endOVERVIEWSwitch ManagementCategory:managerPrimary context:exit (page 168)Related Commandsenable (page 164)Usage: endDescription: Return to the Manag

Page 77

eraseOVERVIEWSwitch ManagementCategory:managerPrimary context:show config (page 462)Related Commandsshow port-access (page 495)Usage: erase <startu

Page 78

flash erase flash < primary | secondary >Usage: erase ash <primary|secondary>Description: Erase the primary or secondary ash image.Supp

Page 79

Example CommandsExample commands and their output appear in the Courier type face. For example:ProCurve(cong)# clear public-keyProCurve(cong)# show

Page 80

exitOVERVIEWSwitch ManagementCategory:operatorPrimary context:end (page 165)Related Commandsenable (page 164)Usage: exitDescription: Return to the pre

Page 81 - ProCurve(cong)#

fastbootOVERVIEWCategory:configPrimary context:Related CommandsUsage: [no] fastbootDescription: Enable/disable fastboot on switch.COMMAND STRUCTURE169

Page 82

fault-finderOVERVIEWCategory:configPrimary context:interface (page 191)Related Commandsshow fault-finder (page 471)Usage: [no] fault-nder <all|bad

Page 83

Supported Values: low -- Low sensitivity. medium -- Medium sensitivity. high -- High sensitivity.171© 2008 Hewlett-Packard Development Company, L.P

Page 84 - Usage: console

filterOVERVIEWTroubleshootingCategory:configPrimary context:connection-rate-filter (page 80)Related Commandsip (page 269)show filter (page 472)show co

Page 85

EXAMPLESExample: filter source-port dropCreate a source-port filter that drops all traffic received on port 5 with a destination of port trunk 1(trk1)

Page 86

drop filter source-port named-filter ASCII drop [ETHERNET] PORT-LISTSet a list of ports to which forwarding of ltered packets is not permitted. fil

Page 87

Set a list of ports to which forwarding of ltered packets is permitted. filter protocol < ip | ipx | arp | ... > forward [ETHERNET] PORT-LISTS

Page 88

protocol [no] filter protocol < ip | ipx | arp | ... >Usage: [no] lter protocol <ip|ipx|arp|appletalk|sna|netbeui> [...]Description: Spe

Page 89

front-panel-securityOVERVIEWSwitch SecurityCategory:configPrimary context:Related CommandsUsage: [no] front_panel_security<password-clear [reset-on

Page 90

This option displays help for any command available at the current context level.RELATED PUBLICATIONSThe following documents (available on the ProCurv

Page 91

password-clear [no] front-panel-security password-clearEnable/Disable password clearNext Available Option: reset-on-clear -- Reset switch on passwor

Page 92

getMIBOVERVIEWmanagerCategory:managerPrimary context:walkMIB (page 655)Related CommandssetMIB (page 430)Usage: getmib OBJECT-STR [OBJECT-STR ...]Descr

Page 93

gvrpOVERVIEWconfigCategory:configPrimary context:interface (page 191)Related Commandsshow gvrp (page 474)Usage: [no] gvrpDescription: Enable/disable G

Page 94

hostnameOVERVIEWconfigCategory:configPrimary context:snmp-server (page 525)Related CommandsUsage: hostname ASCII-STRDescription: Specify the device na

Page 95

igmpOVERVIEWIGMPCategory:configPrimary context:show igmp (page 476)Related CommandsUsage: igmp ...Description: Congure various global IGMP parameters

Page 96

igmp-proxy-domainOVERVIEWIGMPCategory:configPrimary context:show igmp-proxy (page 477)Related Commandsvlan (page 611)igmp (page 182)Usage: [no] igmp-p

Page 97

border-ip [no] igmp-proxy-domain DOMAIN-NAME IP-ADDRSpecify the igmp proxy border ip address.Next Available Options: mcast-low-ip -- Specify the igm

Page 98

include-credentialsOVERVIEWCategory:configPrimary context:Related CommandsUsage: [no] include-credentialsDescription: Enable/disable including passwor

Page 99

instrumentationOVERVIEWconfigCategory:configPrimary context:Related CommandsUsage: [no] instrumentation monitor [ [<all|arp-requests|ip-address-cou

Page 100

o high - Precongured high threshold value.o limitValue - User congured threshold value.COMMAND STRUCTURE [no] instrumentation collection -- (p. 187

Page 101

Access Control Lists (ACLs) KMS (Key Management System)Advanced Traffic Management GuideUse the Advanced Traffic Management Guide for information o

Page 102

of the monitoring parameter exceeds the threshold value.The third version of the command enables/disablesinstrumentation monitoring log. By default in

Page 103

of the monitoring parameter exceeds the threshold value.The third version of the command enables/disablesinstrumentation monitoring log. By default in

Page 104 - Copy the switch log le

med -- Medium threshold. high -- High threshold.trap [no] instrumentation monitor trapEnables/Disables SNMP trap generation.190© 2008 Hewlett-Pack

Page 105

interfaceOVERVIEWCategory:configPrimary context:show interfaces (page 480)Related CommandsUsage: [no] interface < [ethernet] PORT-LIST [...] | loop

Page 106

queue4 < 0 to 100 > -- Specify min. bandwidth percentage for queue fouroutgoing traffic. (p. 256) queue5 < 0 to 100 > -- Specify min. ba

Page 107

port-type -- Configure qinq port-type (p. 249) customer-network -- Configure qinq port-type as customer-network (p. 216) provider-network -- Config

Page 108

access-group -- Apply the specified access control list on this VLAN interface (ASCII-STR)(p. 201) direction < in | out | connection-rate-filter

Page 109

connection-rate-filter -- Re-enables access to a host or set of hosts that has been previouslyblocked by the connection rate filter (p. 215) unbloc

Page 110

no-default -- Indicates that the router should never be used as a default by itsneighbors. (p. 243) number < -2147483647 to 2147483647 > -- Th

Page 111

chain-name -- Specify key chain to use for MD5 authentication. (ASCII-STR) (p.215) passive -- Configures an ospf interface as passive. (p. 245) pri

Page 113

Structure provides a high-level view of all the command options and parameters for that command.Each of these is hyperlinked to take you to the detail

Page 114

rip -- Enable/disable/configure Routing Internet Protocol (RIP) on the VLAN interface (p. 259) all -- Process the request for all IP addresses. (p.

Page 115

link-local -- Configure a link-local IPv6 address. (p. 234) ipv6-addr/mask -- Configure IPv6 address represented in CIDR notation.(IPV6-ADDR/PREFIX-

Page 116

backup -- Designate the virtual router instance as a Backup (p. 214) enable -- Enable/disable operation of the virtual router instance (p. 219) ow

Page 117

monitor_mirror_session_id (p.241)enable (p. 219)eui-64 (p. 219)speed-duplex (p. 261)src-ip (p. 262)mroute (p. 242)fastleave (p. 219) svlan (p. 262)nam

Page 118

[no] interface [ETHERNET] PORT-LIST rate-limit ip access-groupUsage: [no] ip access-group <ACL-ID> inDescription: Apply the specied access co

Page 119

if the 'no' keyword is not used. Otherwise, it must not bepresent.Next Available Option: monitor_mirror_ACL_dir < In > -- Define the

Page 120

'interface loopback <num>' keyword and argument. Itcan also be called explicitly when called directly from aLoopback context. In the l

Page 121

o autocong - Enables automatic address conguration of IPv6addresses using stateless conguration of an interface .o dhcp - The switch attempts to ge

Page 122

Description: Set IPv6 parameters for communication within an IP network.Each VLAN represents an IPv6 interface having its own uniqueconguration. The

Page 123

Description: Set time interval (in seconds) between sending VRRP advertisementmessages. The default value is one second.Range: < 1 to 255 >all

Page 124 - Copy data to a TFTP server

Part II. Commands19© 2008 Hewlett-Packard Development Company, L.P.

Page 125

Process the request for all IP addresses.Next Available Options: authentication-type < none | text > -- Set authentication type used on this in

Page 126

specifying how much power this port should be allocated byeither its class or a user-dened value.Supported Values: usage class valueany interface

Page 127

Specify an OSPF area.Next Available Options: area-id -- Single integer or IP address style dotted decimal. (OSPF-AREA-ID) (p. 210) backbone -- The b

Page 128

[no] interface vlan VLAN-ID ip ospf IP-ADDR authenticationDisable authentication. [no] interface vlan VLAN-ID ip ospf all authenticationDisable aut

Page 129

[no] interface vlan VLAN-ID ip rip all authentication-keySet RIP authentication key (maximum 16 characters).Next Available Option: auth-key-text --

Page 130

interface vlan VLAN-ID ip igmp auto [ETHERNET] PORT-LISTUsage: ip igmp auto [ethernet] PORT-LISTDescription: Instruct the device to monitor incoming

Page 131

backup interface vlan VLAN-ID vrrp vrid < 1 to 255 > backupUsage: vrrp vrid <VRID> backupDescription: Designate the virtual router instan

Page 132

Usage: vlan < vid > ipv6 mld blocked < port-list >Description: Instruct the device to drop incoming multicast packetsreceived on the speci

Page 133

Usage: connection-rate-lter unblock < host SRC-IP-ADDR | SRC-IP-ADDRESS/MASK >[no] connection-rate-lter sensitivity <low|medium|high|aggres

Page 134

Set dead interval in seconds; the default is 40.Range: < 1 to 65535 >dhcp [no] interface vlan VLAN-ID ipv6 address dhcpCongure a DHCPv6 client

Page 135

aaaOVERVIEW802.1X, Accounting, Switch SecurityCategory:configPrimary context:show authentication (page 454)Related Commandsshow port-access (page 495)

Page 136

in -- Configure for inbound traffic Next Available Option: kbps < 1 to 10000000 > -- Specify rate-limit in kilo-bits-per-second. (NUMBER) (p. 2

Page 137

Binary formatted value from 000000 to 111111 interface vlan VLAN-ID qos dscp < 000000 | 000001 | 000010 | ... >Specify DSCP policy to use.Suppo

Page 138

to that port.Does not apply to cascaded ports (see ip igmp forcedfastleave).When disabled, or when the port is cascaded, the regular IGMPleave time is

Page 139

FastLeaves to be disabled.This feature is congured for ports on a per-VLAN basis. [no] interface vlan VLAN-ID ipv6 mld forcedfastleave [ETHERNET] PO

Page 140

Obtain IPv6 address & Conguration information from DHCPv6 server.Next Available Option: rapid-commit -- Obtain IPv6 address quickly from DHCPv6

Page 141

interface vlan VLAN-ID ip ospf IP-ADDR hello-interval < 1 to 65535 >Set hello interval in seconds; the default is 10.Range: < 1 to 65535 &g

Page 142

host interface vlan VLAN-ID connection-rate-filter unblock host IP-ADDRMatch packets from the specied IP address. interface svlan VLAN-ID connectio

Page 143

Usage: [no] igmp-proxy DOMAIN-NAMEDescription: Associate an IGMP proxy domain with a VLAN.If the 'no' keyword is used:If the DOMAIN-NAME is

Page 144

Next Available Option: access-group -- Apply the specified access control list to inbound packets on this INTERFACElist (ASCII-STR) (p. 201) [no] in

Page 145 - Generate a new key

local-proxy-arp -- Enable/disable local proxy ARP(p. 234) helper-address -- Add or remove a DHCP server IP address for the VLAN (IP-ADDR) (p. 223)

Page 146

primary < local | tacacs | radius > -- Specify the primary authentication method for accesscontrol. (p. 43) secondary < local | none | auth

Page 147 - Delete existing key

Next Available Options: area -- Specify an OSPF area.(p. 209) cost < 1 to 65535 > -- Set metric of this interface.(p. 216) [no] interface vla

Page 148

Description: Set the source IP address for the PIM-DM packets sent out on thisinterface. You can either explicitly specify one of the existingVLAN&apo

Page 149

Parameters:<mac-address> - The L3-mac-address to be associated with a VLAN.interval - Specify L3-Mac-Address timeout interval.<1-255> - Ti

Page 150

[no] interface svlan VLAN-ID ipv6 address IPV6-ADDRCongure a link-local IPv6 address.Next Available Option: link-local -- Configure a link-local I

Page 151

join-timer interface [ETHERNET] PORT-LIST gvrp join-timer < 20 to 75 >Set join timer value (centiseconds; default 20).Range: < 20 to 75 >

Page 152

Usage: [no] lacp [active|passive]Description: Dene whether LACP is enabled on the port, and whether it is inactive or passive mode when enabled.When

Page 153

By default UDLD control packets are untagged.The user has to give vlan-id for tagged UDLD control packets.Next Available Option: vlan -- Set vlan-id

Page 154

maxadvertinterval interface vlan VLAN-ID ip irdp maxadvertinterval < 4 to 1800 >Usage: [no] ip irdp maxadvertinterval <4-1800>Description

Page 155

Set metric for this interface.Range: < 1 to 15 > interface vlan VLAN-ID ip rip IP-ADDR metric < 1 to 15 >Set metric for this interface.Ra

Page 156

Next Available Options: monitor_mirror_session_id < 1 to 4 > -- Mirror destination number.(p. 241) mirror_session_name -- Mirror destination n

Page 157

secondary < local | none | authorized > -- Specify the backup authentication methodfor access control. (p. 47) web-based -- Configure authent

Page 158

If not preceded by 'no',the command accepts a variety of conguration parameters. Toget a list of all available parameters use 'ipv6 ml

Page 159

some frames may not be copied to the mirroring port.This is an Interface context command. It can be called directlyfrom the interface context or follo

Page 160 - Usage: [no] dhcp-snooping

Parameters: o 1-4 - Mirror destination numbero NAME-STR - Friendly name associated with the mirrordestination number.o ACL-NAME - Standard or Extended

Page 161

Next Available Option: mirror -- Mirror destination.(p. 236) interface svlan VLAN-ID monitor ip access-group ACCESS-GROUP < In >Usage: [no] mi

Page 162

Mirror destination number.Range: < 1 to 4 >mroute interface vlan VLAN-ID ip mrouteUsage: ip mroute ...Description: Congure IP Multicast Routin

Page 163

Usage: ip pim-sparse nbr-timeout <60-8000>Description: Set the neighbour loss time interval for this interface.Default is 180 seconds.Range: <

Page 164

dead-interval < 1 to 65535 > -- Set dead interval in seconds; the default is 40.(p. 216) hello-interval < 1 to 65535 > -- Set hello int

Page 165

Usage: vrrp vrid <VRID> ownerDescription: Designate the virtual router instance as an Owner (Master).There is no default value.passive [no] int

Page 166

max-graft-retries < 1 to 10 > -- Set the maximum number of times this router will resend aGraft on this interface(p. 235) override-interval &

Page 167 - Usage: end

Usage: poe-value [1-17]Description: Maximum PoE allocation specied with a value in watts.By default, power-over-ethernet allocation is automatic byus

Page 168

mac-list1 -- Manage MAC address based network authentication on the device port(s).([ethernet] PORT-LIST) (p. 38) addr-limit < 1 to 32 > -- S

Page 169 - Erase conguration le

poe-value interface [ETHERNET] PORT-LIST poe-valueUsage: poe-value [1-17]Description: Maximum PoE allocation specied with a value in watts.By defaul

Page 170

lacp -- Define whether LACP is enabled on the port, and whether it is in active or passive modewhen enabled(p. 232) mdix-mode < mdi | mdix | aut

Page 171 - COMMAND STRUCTURE

Next Available Options: customer-network -- Configure qinq port-type as customer-network(p. 216) provider-network -- Configure qinq port-type as pro

Page 172

Next Available Options: number < -2147483647 to 2147483647 > -- The router preferability number. Higher values aremore preferable.(p. 243) no-

Page 173 - ■ high -- High sensitivity

Range: < 0 to 255 > interface vlan VLAN-ID ip ospf IP-ADDR priority < 0 to 255 >Set priority of this router as a designated router.Range:

Page 174

Usage: ip pim-sparse propagation-delay <250-2000>Description: Set the value inserted into the LAN Prune Delay eld of aLAN Prune Delay option on

Page 175

IPX -- IPX Protocol Group IPv4 -- IP version 4 Protocol Group IPv6 -- IP version 6 Protocol Group ARP -- Address Resolution Protocol Group Apple

Page 176

priority < 0 | 1 | 2 | ... > -- Specify priority to use. (p. 251) [no] interface vlan VLAN-ID qosUsage: [no] qos [dscp <000000|000001...11

Page 177

Usage: [no] vlan < vid > ipv6 mld querierDescription: This command disables or re-enables the ability for the switchto become querier if necessa

Page 178

Next Available Option: queue5 < 0 to 100 > -- Specify min. bandwidth percentage for queue five outgoing traffic.(p.257)queue5 interface [ETHER

Page 179

web-authvid -- Configures VLAN where to move port after successful authentication(not configured by default). (VLAN-ID) (p. 54) client-limit < 1

Page 180

Obtain IPv6 address quickly from DHCPv6 server. [no] interface svlan VLAN-ID ipv6 address dhcp full rapid-commitObtain IPv6 address quickly from DHCP

Page 181

Dene RIP version for incoming packets.Supported Values: V1-only -- Accept RIP version 1 updates only. V2-only -- Accept RIP version 2 updates only.

Page 182 - ProCurve(cong)# gvrp

Next Available Options: authentication-type < none | text > -- Set authentication type used on this interface.(p. 212) authentication-key -- S

Page 183 - Usage: hostname ASCII-STR

disabled -- Do not send RIP updates. V1-only -- Send RIP version 1 updates only. V1-compatible-V2 -- Send RIP 2 updates using RFC 1058 route subsu

Page 184

running the 'Auto Negotiation' protocol.- 100-full 100 Mbps, full duplex.- auto-100 Same as 'auto'. Limited to 100Mbps network spe

Page 185

ipv6 -- Configure various IP parameters for the VLAN(p. 230) auto -- Cause each port identified in the port list to learn its VLAN membership using

Page 186

interface vlan VLAN-ID ip ospf all transit-delay < 1 to 3600 >Set transit delay in seconds; the default is 1.Range: < 1 to 3600 >trust

Page 187

1000LX 100/1000T 1000T 1000Stk 1000LH 10GbE-CX4 10GbE-SR 10GbE-ER 10GbE-LR 1000T-SFP 1000Xudp [no] interface vlan VLAN-ID ip forward-prot

Page 188

If 'learn' is specied then the port will accept joinrequests for new VLANs on this port and propagate a VLANjoin requests through all other

Page 189

Description: Add, delete, edit VLAN conguration or enter a VLAN context.If an existing VLAN-ID is specied you are put into thecontext for that VLAN,

Page 190

Example: aaa authenticationIf you already configured local passwords on the switch, but want RADIUS to protect primary Telnetand SSH access without al

Page 191

from the VLAN context or follow the 'vlan VLAN-ID'command.vrid [no] interface vlan VLAN-ID vrrp vrid < 1 to 255 >Usage: [no] vrrp vri

Page 192 - ■ high -- High threshold

ipOVERVIEWCategory:configPrimary context:ipv6 (page 291)Related Commandsshow ip (page 480)Usage: [no] ip ...Description: Congure various IP parameter

Page 193

priority < 1 to 3 > -- Priority of Server Address. (NUMBER) (p. 283) ip6addr -- DNS server IPv6 address. (IPV6-ADDR) (p. 280) ipaddr -- DNS s

Page 194

[no] ip source-binding -- Add/remove a static IP-to-MAC binding in the DHCP snooping database(p. 286) vlan -- (VLAN-ID) (p. 289) ip -- (IP-ADDR) (

Page 195

standard (p. 288)keystring (p. 281)directed-broadcast (p. 276)start-seq-num (p. 288)load-sharing (p. 281)distance (p. 276)timeout (p. 288)load-sharing

Page 196

Next Available Options: ip-addr -- Interface IP address/mask. (IP-ADDR/MASK-LENGTH) (p. 280) dhcp-bootp -- Configure the interface to use DHCP/Bootp

Page 197

the listed IP address need to be matched by an incoming request.The default mask is 255.255.255.255. For example, with anauthorized address of 10.8.11

Page 198

Supported Values: Min Maxburst-normal [no] ip icmp burst-normal < 0 to 1000000 >Usage: ip icmp burst-normal <0-1000000>Description: The

Page 199

dhcp-bootp ip address dhcp-bootpCongure the interface to use DHCP/Bootp server to acquire parameters.directed-broadcast [no] ip directed-broadcastU

Page 200

domain-name [no] ip dns domain-nameCongure default domain sufx.Next Available Option: domain-name -- Default domain suffix. (ASCII-STR) (p. 277)

Page 201

ssh (p. 49)mac-based (p. 36)addr-limit (p. 27)ssl-login (p. 50)mac-list1 (p. 38)addr-moves (p. 27)start-period (p. 50)max-requests (p. 39)authenticati

Page 202

forcedfastleave [no] ip igmp forcedfastleave [ETHERNET] PORT-LISTUsage: [no] ip igmp forcedfastleave [ethernet] PORT-LISTDescription: When enabled, t

Page 203

IGMP feature for IGMP communication between MulticastRouters, Multicast Servers, and Multicast Clients connectedto the switch. If not preceded by &apo

Page 204

Range: < 1 to 9999 > ip timep manual IPV6-ADDR interval < 1 to 9999 >Specify how often (in minutes) the switch tries to get the current t

Page 205

Next Available Option: distance < 1 to 255 > -- Set the administrative distance to associate with this static route.(p.276)IP-PORT ip ssh port

Page 206

Usage: ip load-sharing <2-4>no ip load-sharingDescription: Specify the maximum number of equal cost IP load sharingpaths. no ip load-sharing dis

Page 207

ip access-list resequence NAMESpecify name of Access Control List to congure.Next Available Option: start-seq-num < 1 to 2147483647 > -- Spe

Page 208

Supported Values: manager -- Select manager public keys. operator -- Select operator public keys.Next Available Option: keystring -- ASCII formatte

Page 209

Renumber the entries in an Access Control List.Next Available Option: name -- Specify name of Access Control List to configure. (ASCII-STR) (p. 282)r

Page 210

routing [no] ip routingUsage: [no] ip routingDescription: Enable/disable IP routing support on the device.server ip timep manual IP-ADDRTimep server

Page 211

o [ethernet] <PORT-NUM> -- Port number on which the IP-to-MAC and VLANbinding is congured in.Next Available Option: vlan -- (VLAN-ID) (p. 289)

Page 212

regular intervals given by 'number' (in minutes).o suppress null-username - suppress accounting when a user withno username accesses the swi

Page 213

timeout < 5 to 120 > -- Specify the maximum length of time (seconds) permitted for protocolnegotiation and authentication. (NUMBER) (p. 288)

Page 214

No additional parameters are required when 'no' is specied.Parameters:o <dhcp|manual> - The method the switch uses to acquirethe Time

Page 215

Next Available Option: distance < 1 to 255 > -- Set the administrative distance to associate with this static route.(p.276)zero-broadcast [no]

Page 216

ipv6OVERVIEWCategory:configPrimary context:show ipv6 (page 482)Related Commandsip (page 269)Usage: [no] ipv6 ...Description: Congure various IP param

Page 217

authorized-managers [no] ipv6 authorized-managersUsage: [no] ipv6 authorized-managers <IPV6-ADDR [IPV6-MASK]>access [manager|operator] [IPV6-MA

Page 218

This command is executed at the global cong level. It congures the numberof neighbor solicitations to send when performing duplicate address detecti

Page 219

IPV6-ADDR ipv6 authorized-managers IPV6-ADDRAuthorized manager IPv6 address.Next Available Options: IPV6-MASK -- IP mask defining a group of adjacen

Page 220

jumboOVERVIEWCategory:configPrimary context:show jumbos (page 483)Related CommandsUsage: jumbo ...Description: Congure Global Jumbos parameters for t

Page 221

Default: 9216 bytes296© 2008 Hewlett-Packard Development Company, L.P.jumboCommand Line Interface Reference Guide

Page 222

key-chainOVERVIEWSwitch SecurityCategory:configPrimary context:show key-chain (page 483)Related CommandsUsage: key-chain ASCII-STRUsage: key-chain ASC

Page 223

Command Line InterfaceReference GuideSwitch 8212zlSeries 6200yl SwitchSeries 5400zl SwitchSeries 3500yl SwitchSoftware Release K.13.XX, Software Versi

Page 224

control access the switch resources. Use 'aaa authentication ?'command to see a list of all possible conguration options.Next Available Opt

Page 225

send-lifetime -- Set key send lifetime. (p. 314) date -- Key send start date. (MM/DD[/[YY]YY]) (p. 301) time -- Key send start time. (HH:MM[:SS]) (

Page 226

duration -- Use current day and time. (NUMBER) (p. 308) send-lifetime -- Set key send lifetime. (p. 314) date -- Key send start date. (MM/DD[/[YY]

Page 227

time -- Key send stop time. (HH:MM[:SS]) (p. 316) duration -- Use current day and time. (NUMBER) (p. 308) infinite -- Set infinite lifetime. (p. 3

Page 228

COMMAND DETAILSnow (p. 312)infinite (p. 310)accept-lifetime (p. 301)send-lifetime (p. 314)key (p. 311)date (p. 301)time (p. 316)key-string (p. 312)dur

Page 229

key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime [DATE] [TIME][DATE] [TIME] send-lifetime [DATE]Key send start date.

Page 230 - Interface IP address/mask

Next Available Option: time -- Key send stop time. (HH:MM[:SS]) (p. 316) key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lif

Page 231

key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime infinite send-lifetime[DATE]Key send start date.Next Available Opti

Page 232

key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime [DATE] [TIME] [DATE]Key accept stop date.Next Available Option: time -- Key send stop ti

Page 233

Next Available Option: time -- Key send stop time. (HH:MM[:SS]) (p. 316) key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now [DATE]Key ac

Page 234

Key send stop date.Next Available Option: time -- Key send stop time. (HH:MM[:SS]) (p. 316) key-chain KEY-CHAIN key < 0 to 255 > accept-lifeti

Page 235

- Auto: Grants network access to a connected device thatsupports 802.1X authentication and provides validcredentials.- Authorized: Grants access to an

Page 236

duration key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime [DATE] [TIME][DATE] [TIME] send-lifetime [DATE] [TIME] dura

Page 237

key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime infinite send-lifetime[DATE] [TIME] duration NUMBERUse current day

Page 238

Next Available Option: send-lifetime -- Set key send lifetime.(p. 314) key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now duration NUMBE

Page 239

key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime infinite send-lifetimeinfiniteSet innite lifetime. key-chain KEY-

Page 240

key-string key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRINGSet key stringNext Available Options: accept-lifetime -- Set key accept l

Page 241

Next Available Options: date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 301) duration -- Use current day and time. (NUMBER) (p. 308) key-chain KEY

Page 242

Next Available Options: date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 301) duration -- Use current day and time. (NUMBER) (p. 308) key-chain KEY

Page 243

key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime now [DATE][TIME] send-lifetimeSet key send lifetime.Next Available

Page 244

Next Available Options: date -- Key send start date. (MM/DD[/[YY]YY]) (p. 301) now -- Use current day and time.(p. 312) infinite -- Set infinite li

Page 245

key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime [DATE] [TIME][DATE] [TIME]Key send stop time.Next Available Option:

Page 246

o 'logoff-period' sets period of time after which a client willbe considered removed from the port for a lack of activity.The default is 300

Page 247

key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING accept-lifetime now [DATE][TIME] send-lifetime [DATE] [TIME]Key send start time.Nex

Page 248

key-chain KEY-CHAIN key < 0 to 255 > key-string KEY-STRING send-lifetime [DATE] [TIME]Key send start time.Next Available Options: date -- Key

Page 249

Next Available Options: date -- Key send stop date. (MM/DD[/[YY]YY]) (p. 301) duration -- Use current day and time. (NUMBER) (p. 308) key-chain KEY

Page 250

key-chain KEY-CHAIN key < 0 to 255 > accept-lifetime now duration NUMBER send-lifetime now[DATE] [TIME]Key send stop time. key-chain KEY-CHAI

Page 251 - Congure qinq port-type

killOVERVIEWSwitch ManagementCategory:managerPrimary context:show ssh (page 509)Related Commandsshow telnet (page 514)Usage: kill [SESSION_ID]Descript

Page 252

If no session ID is specied, all other active sessionsare terminated.Range: < (Range unavailble) >323© 2008 Hewlett-Packard Development Company

Page 253

licensesOVERVIEWCategory:managerPrimary context:show licenses (page 484)Related CommandsUsage: licenses <hardware-id PKG-ID |install PKG-ID PKG-KEY

Page 254

Supported Values: premium -- keyinstall licenses install < premium >Install the specied package.Supported Values: premium -- keyNext Availab

Page 255

link-keepaliveOVERVIEWCategory:configPrimary context:Related CommandsUsage: link-keepalive interval <10-100>link-keepalive retries <3-10>D

Page 256

link-testOVERVIEWCategory:operatorPrimary context:ping (page 367)Related CommandsUsage: link-test MAC-ADDR [vlan <VLAN-ID>] [repetitions <1-9

Page 257

Next Available Option: VLAN-ID -- Configures VLAN where to move port after successful authentication (not configuredby default). (VLAN-ID) (p. 53) [

Page 258

COMMAND DETAILStimeout (p. 328)mac (p. 328)vlan (p. 328)repetitions (p. 328)mac link-test MAC-ADDRMAC address of device to which to send link test.re

Page 259

lldpOVERVIEWDevice DiscoveryCategory:configPrimary context:show lldp (page 485)Related CommandsUsage:lldp ...Description: Conguration for LLDP parame

Page 260

[no] lldp enable-notification -- Set the port for which notification should be enabled ([ethernet]PORT-LIST) (p. 334) lldp fast-start-count < 1

Page 261

medTlvEnable (p. 335)config (p. 333)addr lldp config [ETHERNET] PORT-LIST medPortLocation elin-addr OCTET-STRSpecify the Location name to be advertis

Page 262

Range: < 2 to 4094 >Next Available Option: auto -- (p. 331)basicTlvEnable [no] lldp config [ETHERNET] PORT-LIST basicTlvEnable < port_descr

Page 263

config lldp config [ETHERNET] PORT-LISTUsage: [no] lldp cong <PORT-LIST> <basicTlvEnable TLVMAP |dot1TlvEnable vlan-name |dot3TlvEnable TLV

Page 264

Next Available Option: vlan-name -- Specify that the VLAN name TLV is to be advertised. (p. 336)dot3TlvEnable [no] lldp config [ETHERNET] PORT-LIST

Page 265

Congure location-id information to be advertised.Next Available Options: civic-addr -- Specify the civic location-id information to be advertised(p.

Page 266

Usage: lldp refresh-interval <5-32768>Description: Set refresh interval/transmit-interval in seconds.The default is 30.The refresh interval/tran

Page 267

lockout-macOVERVIEWPort SecurityCategory:configPrimary context:show lockout-mac (page 486)Related CommandsUsage: lockout-mac <MAC-ADDR>Descripti

Page 268

commands [no] aaa accounting commandsUsage: [no] aaa accounting commands <stop-only> <radius>Description: Congure 'commands' t

Page 269

logOVERVIEWSwitch ManagementCategory:managerPrimary context:logging (page 340)Related Commandsshow logging (page 486)Usage: log [-a|-r|-m|-p|-w|-i|-d|

Page 270

Supported Values: -M -- Major event class. -P -- Performance event class. -W -- Warning event class. -I -- Information event class. -D -- Debug e

Page 271 - Usage: [no] ip

loggingOVERVIEWSwitch ManagementCategory:configPrimary context:log (page 338)Related Commandsshow logging (page 486)Usage: [no] logging <IP-ADDR>

Page 272

facility [no] logging facility < kern | user | mail | ... >Usage: [no] logging facility <facility>Description: Specify the syslog facilit

Page 273

severity [no] logging severity < major | error | warning | ... >Usage: [no] logging severity <severity>Description: Event messages of the

Page 274

lacp dhcpr stack dma SNTP 802.1x cdp auth tacacs radius ssh NETINET OSPF XRRP ssl IpAddrMgr MacAuth KMS PIM maclock ACL udpf i

Page 275

log-numbersOVERVIEWCategory:configPrimary context:Related CommandsUsage: [no] log-numbersDescription: Enable the display of log event numbers when log

Page 276

logoutOVERVIEWSwitch ManagementCategory:operatorPrimary context:Related CommandsUsage: logoutDescription: Terminate this console/telnet session.COMMAN

Page 277

loop-protectOVERVIEWCategory:configPrimary context:Related CommandsUsage: [no] loop-protect <...>[[ethernet] PORT-LIST [receiver-action <send

Page 278

disable-timer loop-protect disable-timer < 0 to 604800 >Set time in seconds to wait before attempting to reenable a port.Range: < 0 to 60480

Page 279

Set the authenticator to Force Authorized, ForceUnauthorized or Auto state (default Auto).Supported Values: authorized -- Force authorized. auto --

Page 280

mac-age-timeOVERVIEWDevice DiscoveryCategory:configPrimary context:Related CommandsUsage: mac-age-time <60-999960>Description: Set the MAC addre

Page 281

management-vlanOVERVIEWconfigCategory:configPrimary context:show vlan (page 518)Related CommandsUsage: [no] management-vlan VLAN-IDDescription: Set th

Page 282

max-vlansOVERVIEWVLANsCategory:configPrimary context:Related CommandsUsage: max-vlans <1-2048>Description: Set the maximum number of VLANs on th

Page 283

menuOVERVIEWSwitch ManagementCategory:operatorPrimary context:Related CommandsUsage: menuDescription: Change console user interface to menu system.COM

Page 284

meshOVERVIEWRedundant PathsCategory:configPrimary context:show mesh (page 488)Related CommandsUsage: [no] mesh [ethernet] PORT-LISTDescription: Congu

Page 285

mirrorOVERVIEWCategory:configPrimary context:Related CommandsUsage: 1) mirror <1-4> [ name NAME-STR ] port PORT-NUM2) mirror <1-4> [ name

Page 286

remote -- Remote mirroring destination configuration. (p. 356) ip -- Remote mirroring destination configuration. (IP-ADDR) (p. 354) mirror_session

Page 287

Next Available Option: mirror_session_ip_udp < 1 to 65535 > -- Remote mirroring UDP encapsulation port.(TCP/UDP-PORT) (p. 355)mirror_session_de

Page 288

Next Available Option: mirror_session_dest_ip -- Remote mirroring UDP encapsulation destination ip addr. (IP-ADDR)(p. 355) mirror < 1 to 4 > r

Page 289

Next Available Option: ip -- Remote mirroring destination configuration. (IP-ADDR) (p. 354)357© 2008 Hewlett-Packard Development Company, L.P.mirrorC

Page 290

aaa authentication ssh enableCongure access to the privileged mode commands.Next Available Option: primary < local | tacacs | radius | ... >

Page 291

mirror-portOVERVIEWconfigCategory:configPrimary context:vlan (page 611)Related CommandsUsage: [no] mirror-port [[ethernet] PORT-NUM]Description: Dene

Page 292 - ■ [no] ip zero-broadcast

cannot be a trunked port. The parameter must be specied,if the 'no' keyword is not used. Otherwise, it must not bepresent.359© 2008 Hewlett

Page 293

moduleOVERVIEWconfigCategory:configPrimary context:show modules (page 489)Related CommandsUsage: module <MODULE-NUM> module-type <MODULE-TYPE

Page 294

monitorOVERVIEWCategory:configPrimary context:show monitor (page 489)Related CommandsUsage: [no] monitor mac MAC-ADDR <src | dst | both> mirror

Page 295

number or (if congured) a name.Depending on how many sessions are congured on the switch, you can use the samecommandto congure a MAC address as mi

Page 296

pageOVERVIEWCLI SetupCategory:managerPrimary context:Related CommandsUsage: [no] pageDescription: Toggle paging mode. The printing is paused when a fu

Page 297

passwordOVERVIEWSwitch ManagementCategory:configPrimary context:front-panel-security (page 177)Related Commandsshow front-panel-security (page 473)Usa

Page 298 - Default: 9216 bytes

COMMAND DETAILSuser-name (p. 366)hashtype (p. 365)access (p. 365)password (p. 366)all (p. 365)access [no] password < operator | manager | port-acc

Page 299

sha-1 >Species the type of algorithm (if any) used to hash the password. Validvalues are plaintext or sha-1.Note: You can enter a manager, operato

Page 300

pingOVERVIEWCategory:operatorPrimary context:traceroute (page 598)Related Commandslink-test (page 327)ping6 (page 369)Usage: ping <IP-ADDR|hostname

Page 301

-Disable the port from sending advertisements of existing GVRP-created VLANs onthe switch.-Drop all GVRP advertisements received on the port.3. If you

Page 302

ProCurve# ping 10.10.10.110.10.10.1 is alive, time = 50 msCOMMAND DETAILStimeout (p. 368)ip-addr (p. 368)data-fill (p. 368)repetitions (p. 368)data-si

Page 303 - Key accept stop date

ping6OVERVIEWCategory:operatorPrimary context:ping (page 367)Related Commandstraceroute6 (page 601)Usage: ping6 <IPV6-ADDR|hostname>[repetitions

Page 304

Text string used as data in ping packets. You can enter up to 1024alphanumeric characters in the text.Valid values: 0-1024.Default: 0 (no text is used

Page 305

port-securityOVERVIEWPort SecurityCategory:configPrimary context:show port-security (page 498)Related Commandsshow mac-address (page 487)Usage: [no] p

Page 306

o action <none|send-alarm|send-disable> - Indicates the port securityaction the switch will take if an intruder is detected on theport.o clear-i

Page 307

address-limit port-security [ETHERNET] PORT-LIST address-limit < 1 to 32 >Dene number of authorized addresses on the port(s).Range: < 1 to

Page 308

power-over-ethernetOVERVIEWCategory:configPrimary context:show power-over-ethernet (page 499)Related CommandsUsage: power [slot <SLOT-LIST>] [th

Page 309

Usage: [NO] power redundancy [n+1|full]Description: Set how much power is held in reserve for redundancy.NO - All available power can be allocated to

Page 310

power-over-ethernet slot SLOT-ID-RANGE threshold < 1 to 99 >Set the power consumption percentage at which a trap should be sent.Range: < 1

Page 311

primary-vlanOVERVIEWconfigCategory:configPrimary context:show vlan (page 518)Related CommandsUsage: primary-vlan VLAN-IDDescription: Set the VLAN that

Page 312

aaa authentication web loginCongure login access to the switch.Next Available Option: primary < local | radius > -- Specify the primary auth

Page 313

printOVERVIEWCategory:managerPrimary context:Related CommandsUsage: print COMMAND-STRDescription: Execute a command and redirect its output to the dev

Page 314

p-wireless-servicesOVERVIEWCategory:configPrimary context:Related CommandsCOMMAND STRUCTURE p-wireless-services p-wireless-services -- (SLOT-ID) (p.

Page 315

qinqOVERVIEWCategory:configPrimary context:svlan (page 572)Related Commandsvlan (page 611)show qinq (page 500)Usage: [no] qinq [ <mixedvlan|svlan&g

Page 316 - Set key send lifetime

Next Available Option: tag-type < 1536 to 65535 > -- Configure qinq tag-type (HEX NUMBER) (p. 381)tag-type qinq mixedvlan tag-type < 1536 t

Page 317

qosOVERVIEWQoSCategory:configPrimary context:show qos (page 500)Related CommandsUsage: [no] qos ...Description: Congure Quality of Service (QoS) on t

Page 318 - Key accept start time

dscp < 000000 | 000001 | 000010 | ... > -- Define Differentiated Services Codepoint towhich to map IP ToS. (p. 386) ip-precedence -- In IP-Pre

Page 319

to all TCP/UDP ports in the range from TCP/UDP-PORT toMAX-TCP/UDP-PORT.Supported Values: udp-port -- Set UDP port based priority. tcp-port -- Set TC

Page 320

the 'no dscp-map <000000.111111>' function must be used.o diff-services <000000|000001...111111> - The value of the upper6 bits

Page 321

Next Available Option: codepoint < 000000 | 000001 | 000010 | ... > -- Configure the Type-of-Service method the deviceuses to prioritize IP tra

Page 322

congured to use this DSCP Policy).'no qos dscp-map <codepoint> name' will remove the nameassociated with this policy, but not the pol

Page 323

o <primary-method> - Species the primary authenticationmethod for access control. Use <TAB>or <?> after you specify enable or login

Page 324

max-port-num [no] qos < udp-port | tcp-port > range TCP/UDP-PORT TCP/UDP-PORTMaximal TCP/UDP port in the range from [to] which to prioritize tr

Page 325

4 5 6 7 qos dscp-map < 000000 | 000001 | 000010 | ... > priority < 0 | 1 | 2 | ... >Specify priority to use.Supported Values: 0 1

Page 326

7protocol [no] qos protocol < IP | IPX | ARP | ... >Usage: [no] qos protocol <ip|ipx|arp|appletalk|sna|netbeui>[priority <0-7>]De

Page 327 - Enter key for this feature

Next Available Options: 2-queues -- Set the number of outbound port queues for all switch ports. (p. 383) 4-queues -- Set the number of outbound por

Page 328

outbound VLAN tag. If a DSCP Policy is congured to applyto the inbound DS codepoint (i.e., the codepoint has been're-mapped'), the priority

Page 329

radius-serverOVERVIEWSwitch SecurityCategory:configPrimary context:show radius (page 500)Related CommandsUsage: [no] radius-server host <IP-ADDR>

Page 330

encryption key to use for authentication with given server(default is NULL). Specifying this key overrides the key set forthis server by the 'rad

Page 331

acct-port -- Accounting UDP destination port number (default is 1813). (TCP/UDP-PORT)(p. 395) auth-port -- Authentication UDP destination port numb

Page 332 - ProCurve(cong)# no lldp run

Authentication UDP destination port number (default is 1812).Next Available Option: auth-port -- Authentication UDP destination port number (default

Page 333

host [no] radius-server host IP-ADDRIP address of the RADIUS server to use.Next Available Options: acct-port -- Accounting UDP destination port numb

Page 334

Hewlett-Packard CompanyPublication Number5992-3063March 2008Copyright© Copyright 2008 Hewlett-Packard Development Company, L.P. The information contai

Page 335

o 'server-timeout' sets the period of time after which theswitch assumes that authentication has timed out(default 30 seconds).o 'max-r

Page 336

Number of packet retransmits (default is 3).Range: < 1 to 5 >timeout radius-server timeout < 1 to 15 >Server timeout interval (default is

Page 337

redoOVERVIEWSwitch ManagementCategory:managerPrimary context:repeat (page 406)Related CommandsUsage: redo [NUMBER|COMMAND-STR]Description: Re-execute

Page 338

redundancyOVERVIEWCategory:configPrimary context:Related CommandsUsage: redundancy switchoverredundancy active-management < management-module1 |man

Page 339

Supported Values: management-module1 -- Configures management-module 1 as an active management modulefor next boot management-module2 -- Configures

Page 340

redundancyOVERVIEWCategory:managerPrimary context:Related CommandsUsage: redundancy switchoverredundancy active-management < management-module1 |ma

Page 341

reloadOVERVIEWSwitch ManagementCategory:managerPrimary context:boot (page 67)Related CommandsUsage: [no] reload <after <[[DD:]HH:]MM> |at HH:

Page 342

at reload atWarm reboot at a specied time; If the mm/dd/yy is left blank, the current day isassumed.Next Available Option: time -- Time on given da

Page 343

renameOVERVIEWSwitch ManagementCategory:managerPrimary context:show config (page 462)Related Commandserase (page 166)Usage: rename cong OLDNAME NEWNA

Page 344

repeatOVERVIEWSwitch ManagementCategory:managerPrimary context:redo (page 399)Related CommandsUsage: repeat [NUMBER] [count NUMBER] [delay NUMBER]Desc

Page 345

routerOVERVIEWRoutingCategory:configPrimary context:ip (page 269)Related Commandsvlan (page 611)show ip (page 480)Usage: [no] router ...Description: C

Page 346

reauth-period < 0 to 9999999 > -- Set the re-authentication timeout in seconds; set to '0' todisable re-authentication (default 0).

Page 347 - Switch ManagementCategory:

retransmit-interval < 1 to 3600 > -- Set retransmit interval in seconds; the default is5. (p. 421) transit-delay < 1 to 3600 > -- Set t

Page 348

bsm-interval < 5 to 300 > -- Specify the interval for sending Bootstrap messages on PIM-SMinterfaces. (p. 412) hash-mask-length < 1 to 32 &

Page 349

retransmit-interval (p. 421)intra-area (p. 416)authentication (p. 411)rfc1583-compatibility (p. 421)ip (p. 416)authentication-key (p. 411)rip (p. 422)

Page 350

- 'area... virtual-link...' denes a virtual link along with itstime duration parameters:'transit-delay' - The estimated number of

Page 351

Next Available Option: authentication-key -- OSPF authentication key (maximum 8 characters). (OCTET-STR) (p. 411) router ospf area OSPF-AREA-ID virt

Page 352 - The default is 256

no bsr-candidate [source-ip-vlan <VLAN-ID>]Description: Congure the router to advertise itself as the CandidateBootstrap Router (Candidate-BSR)

Page 353

dead-interval router ospf area OSPF-AREA-ID virtual-link IP-ADDR dead-interval < 1 to 65535 >Set dead interval in seconds; the default is 40.Ra

Page 354

external [no] router ospf distance external < 1 to 255 >Set administrative distance to associate with external routes learned by OSPF.Range: &l

Page 355

router ospf area backbone virtual-link IP-ADDR hello-interval < 1 to 65535 >Set hello interval in seconds; the default is 10.Range: < 1 to

Page 356

join-prune-interval router pim join-prune-interval < 5 to 65535 >Usage: join-prune-interval <1-65535>Description: Congure interval at wh

Page 357

radius -- Use RADIUS protocol as accounting method. aaa accounting network < start-stop | stop-only > < radius >Specify which accountin

Page 358

Do not advertise the range outside the area. router ospf area backbone range no-advertiseDo not advertise the range outside the area.normal router o

Page 359

ospf [no] router ospfUsage: [no] router ospf [...]Description: Enable/disable/congure Open Shortest Path First (OSPF)protocol on the device, or ente

Page 360

join-prune-interval < 5 to 65535 > -- Configure interval at which the router will send periodicPIM-SM Join/Prune messages(p. 417) spt-thresho

Page 361

Supported Values: connected static rip [no] router rip redistribute < connected | static | ospf >Usage: [no] redistribute <static|connect

Page 362 - The type of the module

Usage: [no] rfc-1583-compatibilityDescription: Enable/disable RFC-1583 compatibility. This controls thepreference rules used when choosing among multi

Page 363

o override - Sets the precedence of statically congured RP higherthan dynamically learned RPs. Not set by default.Next Available Option: IP-ADDR --

Page 364

source-ip-vlan [no] router pim bsr-candidate source-ip-vlan VLAN-IDSpecify the VLAN to use as a source for Candidate-BSR router IP address(PIM-SM mus

Page 365 - CLI SetupCategory:

Set transit delay in seconds; the default is 1.Range: < 1 to 3600 > router ospf area backbone virtual-link IP-ADDR transit-delay < 1 to 3600

Page 366

expired.- 'originate-maxage-lsa' signies that one of the LSA in therouter's link-state database has expired.If 'all' is spec

Page 367

o 'New Master' - this trap indicates that the sending agenthas transitioned to 'Master' state.o 'Authentication Failure'

Page 368

Next Available Option: method < radius > -- Specify which accounting method to use (radius) (p. 39)network [no] aaa accounting networkUsage: [

Page 369

vrrp [no] router vrrpUsage: [no] router vrrp [traps]Description: Enable/disable/congure Virtual Router Redundancy Protocol (VRRP)on the device.Next

Page 370

r-wireless-servicesOVERVIEWCategory:configPrimary context:Related CommandsCOMMAND STRUCTURE r-wireless-services r-wireless-services -- (SLOT-ID) (p.

Page 371

setMIBOVERVIEWSNMPCategory:managerPrimary context:walkMIB (page 655)Related CommandsUsage: setmib OBJECT-STR TYPE-STR VALUE-STR[[OBJECT-STR TYPE-STR V

Page 372

A value to which to set the MIB object.431© 2008 Hewlett-Packard Development Company, L.P.setMIBCommand Line Interface Reference Guide

Page 373 - Port SecurityCategory:

setupOVERVIEWSwitch ManagementCategory:managerPrimary context:Related CommandsUsage: setup [default-logon <CLI|Menu>]Description: Enter the &apo

Page 374

default-logon setup default-logon < CLI | Menu >Specify whether switch should boot to CLI (default) or menu.Supported Values: CLI -- Set Comma

Page 375 - Authorized MAC address

sflowOVERVIEWCategory:configPrimary context:Related CommandsUsage: sow <RECEIVER-INSTANCE> destination <IP-ADDRESS> [UDP-PORT]sow <RE

Page 376

COMMAND DETAILSsflow-sampler-off (p. 436)sflow-polling-interval (p. 435)destination (p. 435)sflow-sampler-rate (p. 436)sflow-polling-int-off (p. 435)p

Page 377

sflow-receiver [no] sflow < 1 to 3 >Select one of three possible sFlow receiver tables.Range: < 1 to 3 >Next Available Options: destinat

Page 378 - Range: < 1 to 99 >

showOVERVIEWCategory:operatorPrimary context:Related CommandsUsage: show ...Description: Display switch operation information.The 'show' mus

Page 379 - Usage: primary-vlan VLAN-ID

periodic <number> - Send accounting update records at regularintervals given by 'number' (in minutes).Range: < 1 to 525600 >port

Page 380 - Usage: print COMMAND-STR

show connection-rate-filter -- List the ports and the on/off connection-rate-filter status and sensitivity(p. 465) all-hosts -- Show blocked and th

Page 381

monitor -- Show latest values for monitored parameters (p. 489) configuration -- show configured thresholds for monitored parameters (p. 465) show

Page 382

interface -- Show OSPF interfaces' information (p. 479) if-ip -- Specify IP address of the interface for which to show detailed information.(I

Page 383 - Congure qinq tag-type

peer -- Show RIP peers (p. 494) peer-ip -- Specify IP address of the RIP peer to show. (IP-ADDR) (p. 494) redistribute -- List protocols which are

Page 384 - Usage: [no] qos

stats -- Show LLDP statistics (p. 511) port-list -- Specify the port or list of ports. ([ethernet] PORT-LIST) (p. 496) show lockout-mac -- Show th

Page 385

clients -- Show the current 802.1X client session statistics. (p. 460) detailed -- Show the current 802.1X client session detailed statistics. (p.

Page 386

auth-server -- Show the authentication server-related configuration items. (p. 456) detailed -- Show the detailed configuration of Web Authenticati

Page 387

destination -- Displays information about the receiver/collector/management-station towhich the sampling-polling data is sent. (p. 467) sampling-pol

Page 388

ports -- Show spanning tree port(s) debug counters information. ([ethernet] PORT-LIST) (p.498) instance < 0 to 16 > -- Show spanning tree ins

Page 389

show system -- Show global configured and operational system paramaters (default is information)(p. 512) fans -- Show system fan status (p. 471) i

Page 390

Manage 802.1X on the device port(s).Next Available Options: control < authorized | auto | unauthorized > -- Set the authenticator to Force Auth

Page 391 - Specify priority to use

COMMAND DETAILSradio-ports (p. 500)helper-address (p. 475)(p. 449)radius (p. 500)history (p. 475)-a (p. 451)rate-limit (p. 501)host (p. 475)access-gro

Page 392

terminal (p. 514)mroute (p. 490)cst (p. 466)throttled-hosts (p. 514)mst-config (p. 491)debug (p. 466)time (p. 514)msti (p. 491)debug-counters (p. 467)

Page 393

Next Available Option: detailed -- Show the current 802.1X client session detailed statistics. (p. 468) show port-access supplicant [ETHERNET] PORT-

Page 394

Next Available Option: detailed -- Show the current web client session detailed statistics.(p. 468) show port-access [ETHERNET] PORT-LISTUsage: show

Page 395 - Switch SecurityCategory:

config -- Show all configured ACL's on the switch using the CLI syntax used to create them.(p. 462) vlan -- Show ACLs applied to the specified

Page 396

Show each LSA as a stream of bytes in hexadecimal notation. show ip ospf link-state advertiseShow each LSA as a stream of bytes in hexadecimal notati

Page 397

show ip ospf virtual-link area OSPF-AREA-IDSpecify area of the virtual links to show.area-id show ip ospf link-state OSPF-AREA-IDShow LSAs for the

Page 398

authenticator show port-access authenticatorUsage: show port-access authenticator [cong|statistics|session-counters]Description: Show 802.1X (Port B

Page 399

auth-server show port-access mac-based [ETHERNET] PORT-LIST config auth-serverShow the authentication server-related conguration items. show port-a

Page 400

Display autorun key.babble show crypto client-public-key babbleDisplay phonetic hash. show crypto client-public-key < manager | operator > bab

Page 401

aaa authentication console login < local | tacacs | radius >Specify the primary authentication method for access control.Supported Values: lo

Page 402

blocked-hosts show connection-rate-filter blocked-hostsShow blocked IP addresses.boot-history show boot-historyUsage: show boot-historyDescription:

Page 403 - Enable the fabric module

Next Available Options: elected -- Show elected Bootstrap Router information. (p. 470) local -- Show local Candidate-BSR configuration information.

Page 404

Display ssh authorized client public keys.Next Available Options: babble -- Display phonetic hash.(p. 457) fingerprint -- Display hexadecimal hash.(

Page 405

Show the current web client session statistics.Next Available Option: detailed -- Show the current web client session detailed statistics.(p. 468) s

Page 406

config show access-list configShow all congured ACL's on the switch usingthe CLI syntax used to create them. show access-list ACL-NAME configS

Page 407

Description: Show LLDP conguration information.o [ethernet] PORT-LIST - Show port conguration information.Next Available Option: port-list -- Speci

Page 408

show port-access [ETHERNET] PORT-LIST mac-based configShow the current conguration of MAC Authentication.Next Available Options: auth-server -- Sh

Page 409

configuration show instrumentation monitor configurationUsage: show instrumentation monitor congurationDescription: show congured thresholds for mo

Page 410

Use the 'slot' argument to display CPU utilization for thespecied modules, rather than the chassis CPU.Next Available Options: time < 1

Page 411

Next Available Option: buffer -- Show the contents of the debug log buffer.(p. 459)debug-counters show spanning-tree debug-countersShow spanning tre

Page 412

Specify the primary authentication method for access control.Supported Values: local -- Use local switch user/password database. radius -- Use RADIU

Page 413

Show spanning tree extended details Port, Bridge, Rx, and Tx report. show vlans ports [ETHERNET] PORT-LIST detailDisplay more info for each port from

Page 414

show port-access [ETHERNET] PORT-LIST web-based config detailedShow the detailed conguration of Web Authentication. show port-access [ETHERNET] PO

Page 415

dscp-map show qos dscp-mapUsage: qos dscp-mapDescription: Show mappings between DSCP policy and 802.1p priority.dyn-authorization show radius dyn-au

Page 416

external-link-state show ip ospf external-link-stateUsage: show ip ospf external-link-state [status|advertise]Description: Show the Link State Advert

Page 417

filter show filterUsage: show lter [INDEX]Description: Show a table of security lters or a lterdetailed information, if the lter's INDEX is

Page 418

front-panel-security show front-panel-securityUsage: show front-panel-securityDescription: Show current security status of the front panel butons. If

Page 419

Supported Values: ManagerPriv -- Require privacy and authentication, can access all objects. ManagerAuth -- Require authentication, can access all o

Page 420

helper-address show ip helper-addressUsage: show ip helper-address [vlan <VLAN-ID>]Description: Show DHCP servers where DHCP requests received

Page 421

fingerprint -- Display hexadecimal hash.(p. 472)icmp show ip icmpUsage: show ip icmpDescription: Show ICMP Rate Limiting settings. show rate-limit

Page 422

igmp-proxy show igmp-proxyUsage: show igmp-proxy <entries|domains|vlans>Description: Show active/congured IGMP proxy forwarder information.Whe

Page 423

Specify the primary authentication method for access control.Supported Values: chap-radius -- Use RADIUS server with CHAP. peap-mschapv2 -- Use RADI

Page 424

MSTID < 1 to 16 > -- Spanning tree instance ID for which to show the information.(p. 491) show spanning-tree [ETHERNET] PORT-LIST instanceSho

Page 425

Usage: show instrumentationDescription: Show internal version-dependant counters for debugging.This data is for factory troubleshooting purposes. The

Page 426

show ip mroute interfaceUsage: show ip mroute interface [VLAN-ID]Description: Show IP multicast routing interfaces' information. Invokedwithout

Page 427

Usage: show ip [...]Description: Show the device IP conguration. Invoked without parametersshows IP conguration for the switch or all VLANs. Whenfol

Page 428

show ip mroute IP-ADDR IP-ADDRSpecify the source IP address of the MRT entry. show ip pim mroute IP-ADDRSpecify the IP multicast group address of t

Page 429

irdp show ip irdpUsage: show ip irdpDescription: Show IRDP (ICMP Router Discovery Protocol) settings.ist show spanning-tree [ETHERNET] PORT-LIST con

Page 430 - ■ [no] router vrrp

the chain keys and information of routing protocols conguredto use the chain.Next Available Option: CHAIN-NAME -- Show the chain detailed informatio

Page 431

Next Available Option: uninstalled -- Display verification key for features which have been uninstalled. (p. 516)link-keepalive show link-keepaliveU

Page 432

Description: Show various LLDP settings. Use 'show lldp ?' for thelist of all possible options.Next Available Options: config -- Show LLDP

Page 433

The -a, -r, and substring options may be used incombination with an event class option.Next Available Options: option -- Filter events shown. See &ap

Page 434

reauthenticate aaa port-access authenticator [ETHERNET] PORT-LIST reauthenticateForce re-authentication to happen. aaa port-access mac-based [ETHERN

Page 435

Description: Show MAC Authentication statistics and conguration. IfPORT-LIST parameter has been specied then information onlyfor the specied ports

Page 436

Usage: show meshDescription: Show the switch mesh information such as meshports, adjacent switches and their peer ports. show tech meshUsage: show te

Page 437 - Disable polling of counters

every 5 minutes, hour, or day, averages and min/max values are calculatedand the current interval's data is copied to the previous interval'

Page 438 - Disable sampling

specied then detailed information for the specied entry isshown.Next Available Option: IP-ADDR -- Specify the IP multicast group address of the MRT

Page 439 - Usage: show

Range: < 1 to 16 >name show monitor nameMirror destination name. show nameUsage: show name [[ethernet] PORT-LIST]Description: Show names assig

Page 440

show ipv6 neighborsDisplays information on the IPv6 neighbor discovery cacheNext Available Option: vlan -- Displays information on the IPv6 neighbo

Page 441

interface -- Show OSPF interfaces' information(p. 479) link-state -- Show all Link State Advertisements from throughout the areas to which the

Page 442

pending show ip pim pendingShow (*,G) and (S,G) Join Pending Information. show spanning-tree pendingUsage: show spanning-tree pending ...Description

Page 443

port-list show interfaces [ETHERNET] PORT-LISTUsage: show interfaces [ethernet] PORT-LISTDescription: Show summary of network trafc handled by the p

Page 444

Usage: show power-over-ethernet [ethernet] PORT-LISTDescription: Show the ports' poe status. show power-over-ethernet brief [ETHERNET] PORT-LIST

Page 445

ContentsI. Introduction ...

Page 446

Supported Values: local -- Use local switch user/password database. none -- Do not use backup authentication methods. authorized -- Allow access wi

Page 447

Usage: show qos port-priorityDescription: Show the port-based priority table.ports show access-list ports [ETHERNET] PORT-LISTShow ACLs applied to th

Page 448

Usage: show interfaces port-utilizationDescription: Show the ports' bandwidth-utilization.power-over-ethernet show power-over-ethernetUsage: sho

Page 449

qinq show qinqUsage: show qinqDescription: show qinq conguration details.qos show qosUsage: show qos ...Description: Show various QoS settings. Use

Page 450

Usage: show radius [authentication|accounting|dyn-authorization|host <IP-ADDR>]Description: Show RADIUS status and statistics information. Invok

Page 451

Usage: show ip ospf redistributeDescription: List protocols which are being redistributed into OSPF. show ip rip redistributeUsage: show ip rip redis

Page 452

Usage: show qos resourcesDescription: Show the qos resources.restrict show ip ospf restrictUsage: show ip ospf restrictDescription: List routes which

Page 453

root-history show spanning-tree root-historyShow spanning tree Root changes history information.Next Available Options: cst -- Show CST Root changes

Page 454

router-id show ip ospf external-link-state router-id IP-ADDRShow LSAs with the specied Router ID only. show ip ospf link-state router-id IP-ADDRSho

Page 455

running-config show running-configUsage: show running-cong [status]Description: Show the switch running conguration. If the statuskeyword is speci

Page 456

show port-access authenticator session-countersShow 802.1X current (or last if no current sessions open) sessions counters. show port-access [ETHER

Page 457

none -- Do not use backup authentication methods. authorized -- Allow access without authentication. aaa authentication web-based < chap-radius

Page 458

Usage: show power-over-ethernet [slot] <slotID>Description: Show poe information of specied slot.snmp-server show snmp-serverUsage: show snmp-

Page 459

Description: Show a table of source-port lter nameswith the associated source ports and actionsspanning-tree show spanning-treeUsage: show spanning-

Page 460

Description: Show the stack status of this switch. The 'candidate' and'view' commands are available on the stack commander only.o

Page 461

show rmon statistics [ETHERNET] PORT-LISTUsage: show rmon statistics PORT-LISTDescription: Show RMON statistics for the ports. show tech statistics

Page 462

The keyword is optional and can be omitted. show running-config statusCheck if the running conguration differs from the statup conguration.SUB-TREE

Page 463

tacacs show tacacsUsage: show tacacsDescription: Show TACACS status and statistics.targetaddress show snmpv3 targetaddressShow SNMPv3 Target Address

Page 464

telnet show telnetUsage: show telnetDescription: Show active incoming and outgoing sessions.temperature show system temperatureUsage: show system te

Page 465

traps show ip ospf trapsUsage: show ip ospf trapsDescription: Show OSPF traps enabled on the device. show snmp-server trapsShow all congured traps.

Page 466

connected -- Show the switch's interface routes only.type-of-service show qos type-of-serviceUsage: show qos type-of-serviceDescription: Show

Page 467

Supported Values: ver1 -- SNMP version 1 security model. ver2c -- SNMP version 2c security model.ver3 show snmpv3 access-rights < ManagerPriv |

Page 468

to use, if the primary authenticationmethod is not able to check user'scredentials.Use <TAB> or <?> after you specify theprimary auth

Page 469

Usage: show ip ospf virtual-link [IP-ADDR] [area OSPF-AREA-ID]Description: Show status of all OSPF virtual links congured.The 'IP-ADDR' can

Page 470

show ip ospf interface vlan VLAN-IDSpecify VLAN of the interface for which to show detailed information. show ip rip interface vlan VLAN-IDSpecify

Page 471

show port-access authenticator [ETHERNET] PORT-LIST vlanShow authorized and unauthorized vlans for 802.1X authenticator. show port-access authentic

Page 472

vlan-priority show qos vlan-priorityUsage: show qos vlan-priorityDescription: Show the VLAN-based priority table.vlans show wireless-services vlansD

Page 473

VRID show vrrp vlan VLAN-ID vrid < 1 to 255 >Specify virtual router for which to display information.Range: < 1 to 255 >Next Available Op

Page 474

show port-access [ETHERNET] PORT-LIST web-basedUsage: show port-access [PORT-LIST] web-based[<cong [auth-server|web-server|detail]>|clients]s

Page 475

o vlans - Display all radio-port VLANs.o <SLOT-ID> - Display summary table for the specied slot.o <SLOT-ID> radio-ports - Display radio-p

Page 476

snmp-serverOVERVIEWSNMPCategory:configPrimary context:show snmp-server (page 508)Related CommandsUsage: snmp-server [contact ASCII-STR][location ASCII

Page 477

administrator.o location ASCII-STR - Up to 48 characters. Description of theswitch location.o community ASCII-STR - Enter up to 32 characters to name

Page 478

informs -- Specify if informs will be sent, rather than notifications. (p. 531) retries < 0 to 255 > -- Specify the number of retries for inf

Page 479

from an authenticator. User will be prompted to enterthe secret after the command is invoked.o 'initialize' reinitializes supplicant's

Page 480

address snmp-server host IP-ADDRIP address of SNMP notication host.address_ipv6 snmp-server host IPV6-ADDRIPv6 address of SNMP notication host.arp

Page 481

dhcp-snooping [no] snmp-server enable traps dhcp-snoopingSends a trap if DHCP packets are received from an untrusted source or if DHCP packetscontain

Page 482

the types of events for which the switch will send thesemessages. In all cases, the switch will send all messagesresulting from thresholds, to the net

Page 483

Enables SNMP support for the hpSwitchAuthentication MIB.informs snmp-server host informsSpecify if informs will be sent, rather than notications. Wh

Page 484

Range: < 0 to 7 >mib snmp-server mibUsage: snmp-server mib hpSwitchAuthMIB <excluded|included>Description: Enable/Disable SNMP support fo

Page 485

retries snmp-server host informs retries < 0 to 255 >Maximum number of times to resend an inform request. Default: 3.Range: < 0 to 255 >s

Page 486

password-change-mgr -- Traps for management interface password change.(p. 532) login-failure-mgr -- Traps for management interface login failure.(p

Page 487

Usage: [no] snmp-server community ASCII-STR[manager|operator] [restricted|unrestricted]Description: Add/delete SNMP community.Parameters:o community A

Page 488

snmpv3OVERVIEWCategory:configPrimary context:show snmpv3 (page 508)Related Commandsshow snmp-server (page 508)Usage: [no] snmpv3 <community|group|n

Page 489

tagvalue -- Set tag value that selects entries in the snmpTargetAddr table. (ASCII-STR) (p. 545) [no] snmpv3 only -- Accept only SNMP v3 messages. (

Page 490

Next Available Option: mode < start-stop | stop-only > -- Specify how to initiate and terminate an accounting session.(p. 40)telnet aaa authen

Page 491

COMMAND DETAILSsec-model (p. 544)max-msg-size (p. 541)addr-mask (p. 538)sec-model12c (p. 544)message-processing (p. 541)auth (p. 538)sec-name (p. 544)

Page 492

Set authentication protocol.Supported Values: MD5 -- Set the authentication protocol to md5. SHA -- Set the authentication protocol to sha.Next Avai

Page 493

group [no] snmpv3 group < ManagerPriv | ManagerAuth | OperatorAuth | ... >Congure SNMPv3 User to Group entry.Supported Values: ManagerPriv --

Page 494

max-msg-size < 484 to 65535 > -- Set maximum message size value; default is 1472. (p. 541) port-mask -- Set range of udp ports with this mask

Page 495

Next Available Option: tagvalue -- Set tag value that selects entries in the snmpTargetAddr table. (ASCII-STR) (p. 545)only [no] snmpv3 onlyAccept o

Page 496

privpassword snmpv3 user USERNAME auth AUTHPASSWORD priv PRIVPASSWORDSet Privacy password. snmpv3 user USERNAME auth AUTHPASSWORD priv < DES | AE

Page 497

snmpv3 targetaddress TARGETADDRESS params PARAMS IPV6-ADDR retries < 0 to 255 >Set retries value; default is 3.Range: < 0 to 255 >sec-mo

Page 498

Set list of values used to select this entry from snmpNotifyTable. snmpv3 targetaddress TARGETADDRESS params PARAMS IPV6-ADDR taglist TAGLISTSet list

Page 499

Next Available Option: sec-model -- Set security model. (p. 544) [no] snmpv3 userCongure SNMPv3 User entry.Next Available Option: username -- Set

Page 500

sntpOVERVIEWSwitch ManagementCategory:configPrimary context:show sntp (page 508)Related Commandstimesync (page 597)Usage: [no] sntp [broadcast|unicast

Page 501

Next Available Option: VLAN-ID -- Configures VLAN where to keep port while there is an unauthenticated clientconnected (not configured by default). (

Page 502

version (p. 549)priority (p. 548)ipaddr (p. 548)server (p. 548)ipv6addr (p. 548)broadcast sntp broadcastOperate in broadcast modeipaddr [no] sntp se

Page 503

unicast sntp unicastOperate in unicast modeversion sntp server priority < 1 to 3 > IP-ADDR < 1 to 7 >Version of the SNTP server.Range: &

Page 504

spanning-treeOVERVIEWCategory:configPrimary context:show spanning-tree (page 509)Related CommandsUsage: [no] spanning-tree [[ethernet] PORT-LIST ...][

Page 505

o priority <0-15> or <0-65535> (default is 32768 and step 8 respectively) -The device priority - used along with the switch MAC address to

Page 506

ist -- Configure internal spanning tree (IST) instance. (p. 557) port-list -- Configure internal spanning tree (IST) instance ports parameters ([eth

Page 507

mcheck -- Force the port to transmit RST BPDUs. (p. 558) path-cost -- Set port's path cost value. (p. 558) auto -- Use dynamic method of sele

Page 508

Apply pending MSTP conguration (swaps active and pending conguratons).auto spanning-tree [ETHERNET] PORT-LIST path-cost autoUse dynamic method of s

Page 509

config-name [no] spanning-tree config-nameSet the MST region conguration name (default is switch's MAC address).Next Available Option: config-

Page 510

forward-delay spanning-tree forward-delay < 4 to 30 >Set time the switch waits between transitioning from listening to learning and fromlearnin

Page 511

Next Available Options: ist -- Configure internal spanning tree (IST) instance.(p. 557) MSTID < 1 to 16 > -- ID of the MST instance to configu

Page 512

Congures VLAN where to keep port while there is an unauthorized client connected(not congured by default).web aaa authentication webUsage: aaa auth

Page 513

max-hops spanning-tree max-hops < 1 to 40 >Set the max number of hops in a region before the MST BPDU is discarded and theinformation held for

Page 514

Set port's path cost value.Next Available Options: path-cost < 1 to 200000000 > -- Set port's path cost to the fixed value.(p. 558)

Page 515

auto -- Use dynamic method of selecting a value for the path cost.(p. 554) spanning-tree instance < 1 to 16 > [ETHERNET] PORT-LIST path-cost

Page 516

<path-cost <1-65535>|<1-200000000>|auto>>|<point-to-point <true|false|auto>>|<bpdu-lter>|<bpdu-protection&g

Page 517

connected to a point-to-point LAN segment, regardless of any informationto the contrary that the switch receives. 'False' indicates thatthe

Page 518

o admin-edge-port - Applies only to RSTP/MSTP. When correctly set for eachport it improves the protocol operation. Indicate whether the port isconnect

Page 519

o hello-time <<1-10>|global> (default: global) - Time (in seconds)between message transmissions when the switch is root. Available forthe

Page 520

Range: < 0 to 15 > spanning-tree [ETHERNET] PORT-LIST priority < 0 to 255 >Set port priority (the value is in range of 0-240 divided into

Page 521

Set port to ignore superior BPDUs to prevent it from becoming Root Port.tcn-guard [no] spanning-tree [ETHERNET] PORT-LIST tcn-guardSet port to stop p

Page 522

stackOVERVIEWCategory:configPrimary context:Related CommandsUsage: [no] stack[no] stack commander ASCII-STR[no] stack join MAC-ADDR[no] stack member I

Page 523

primary authentication method to get a listof all available backup methods.Next Available Option: primary < chap-radius | peap-mschapv2 > -- Sp

Page 524

COMMAND DETAILSpassword (p. 568)join (p. 568)auto-grab (p. 568)transmission-interval (p. 568)mac-address (p. 568)auto-join (p. 568)member (p. 568)comm

Page 525

startup-defaultOVERVIEWmanagerCategory:managerPrimary context:show config (page 462)Related Commandsshow flash (page 472)Usage: startup-default [<p

Page 526

static-macOVERVIEWconfigCategory:configPrimary context:show static-mac (page 510)Related CommandsUsage: static-mac <MAC-ADDR> vlan <VLAN-ID&g

Page 527 - SNMPCategory:

static-vlanOVERVIEWconfigCategory:configPrimary context:show vlan (page 518)Related Commandsshow gvrp (page 474)gvrp (page 180)Usage: static-vlan VLAN

Page 528

svlanOVERVIEWCategory:configPrimary context:qinq (page 380)Related Commandsvlan (page 611)show qinq (page 500)show svlans (page 512)Usage: [no] svlan

Page 529

dhcp-bootp -- Configure the interface to use DHCP/Bootp server to acquire parameters. (p.577) ip-addr -- Interface IP address/mask. (IP-ADDR/MASK-LE

Page 530

protocol (p. 582)ip-addr (p. 579)auto (p. 576)protocol-group (p. 582)ipv6 (p. 579)autoconfig (p. 576)protocols (p. 582)ipv6-addr (p. 579)connection-ra

Page 531

Usage: [no] ip address [dhcp-bootp|IP-ADDR/MASK-LENGTH]Description: Set IP parameters for communication within an IP network.Each VLAN represents an I

Page 532

Next Available Options: autoconfig -- Automatic address configuration.(p. 576) dhcp -- Configure a DHCPv6 client.(p. 577) ipv6-addr -- Configure a

Page 533

Usage: connection-rate-lter unblock < host SRC-IP-ADDR | SRC-IP-ADDRESS/MASK >[no] connection-rate-lter sensitivity <low|medium|high|aggres

Page 534

o 'server-timeout' sets the period of time after which theswitch assumes that authentication has timed out(default 30 seconds).o 'max-r

Page 535

eui-64 [no] svlan VLAN-ID ipv6 address IPV6-ADDR/PREFIX-LEN eui-64An IPv6 EUI-64 address that can be automatically congured on any interfaceforbid

Page 536

ip-addr [no] svlan VLAN-ID ip address IP-ADDR/MASK-LENGTHInterface IP address/mask.ipv6 svlan VLAN-ID ipv6Usage: [no] ipv6 ...Description: Congure

Page 537 - ■ Unrestricted

link-local [no] svlan VLAN-ID ipv6 address IPV6-ADDR link-localCongure a link-local IPv6 address.mirror svlan VLAN-ID monitor all < In | Out | B

Page 538

Next Available Options: all < In | Out | Both > -- Monitor all traffic.(p. 576) ip -- Apply an IPv4 access list.(p. 578)monitor_mirror_ACL_dir

Page 539

Specify priority to use.Supported Values: 0 1 2 3 4 5 6 7protocol svlan VLAN-ID protocolSet a predened protocol for the current VLAN.Next Av

Page 540 - Set authentication password

Next Available Options: dscp < 000000 | 000001 | 000010 | ... > -- Specify DSCP policy to use. (p. 577) priority < 0 | 1 | 2 | ... > --

Page 541

your network.This is a VLAN context command. It can be called directlyfrom the VLAN context or follow the 'vlan VLAN-ID'command.584© 2008 He

Page 542 - Set community index

tacacs-serverOVERVIEWAccountingCategory:configPrimary context:show tacacs (page 513)Related CommandsUsage: [no] tacacs-server host IP-ADDR [key KEY-ST

Page 543

EXAMPLESExample: tacacs-server hostDelete a per-server encryption key in the switch, and re-enter the 'tacacs-server host' commandwithout th

Page 544

Next Available Option: key -- (ASCII-STR) (p. 586) tacacs-server key KEYtimeout tacacs-server timeout < 1 to 255 >Server timeout interval.Ran

Page 545

redirect-url -- Set the URL that the user should be redirected to after successful login (defaultnone), Specify url up to 103 characters length.(p.

Page 546

telnetOVERVIEWSwitch ManagementCategory:managerPrimary context:Related CommandsUsage: telnet <IPV4-ADDR|IPV6-ADDR|SWITCH-NUM>Description: Initia

Page 547

telnet6-serverOVERVIEWCategory:configPrimary context:telnet-server (page 590)Related Commandsshow console (page 465)Usage: [no] telnet6-serverDescript

Page 548 - Set security level

telnet-serverOVERVIEWSwitch ManagementCategory:configPrimary context:show console (page 465)Related CommandsUsage: [no] telnet-serverDescription: Enab

Page 549

terminalOVERVIEWSwitch ManagementCategory:managerPrimary context:show terminal (page 514)Related CommandsUsage: terminal [length <2-1000> | widt

Page 550

tftpOVERVIEWCategory:configPrimary context:tftp6 (page 593)Related CommandsUsage: [no] tftp [client|server]Description: Enable/disable TFTP, trivial 

Page 551 - Version of the SNTP server

tftp6OVERVIEWCategory:configPrimary context:tftp (page 592)Related CommandsUsage: [no] tftp6 [client|server]Description: Enable/disable TFTP6, trivial

Page 552

timeOVERVIEWSwitch ManagementCategory:configPrimary context:ip (page 269)Related Commandssntp (page 547)clock (page 76)Usage: time [HH:MM:SS] [MM/DD[/

Page 553

Example: timesync sntpSelect SNTP as the time source and configure it with unicast mode and an SNTP server at 10.28.227.141with the default server ver

Page 554

The number of minutes your location is West(-) or East(+) of GMTRange: < -720 to 840 >596© 2008 Hewlett-Packard Development Company, L.P.timeCom

Page 555

timesyncOVERVIEWSwitch ManagementCategory:configPrimary context:ip (page 269)Related Commandssntp (page 547)show timep (page 514)show sntp (page 508)U

Page 556

Command Details ... 73clock ...

Page 557

arpOVERVIEWCategory:configPrimary context:Related CommandsUsage: no arp IP-ADDRESSDescription: Remove the specied IP-ADDRESS entry from the ARP cache

Page 558

tracerouteOVERVIEWSwitch ManagementCategory:operatorPrimary context:ping (page 367)Related CommandsUsage: traceroute <IP-ADDR|hostname> [minttl

Page 559

ProCurve# traceroute 10.168.1.146traceroute to 10.168.1.146 ,1 hop min, 30 hops max, 5 sec. timeout, 3 probes1 10.57.191.129 2 ms 3 ms 3 ms2 10.57.232

Page 560

Minimum time to live <1-255>.Range: < 1 to 255 >probes traceroute IP-ADDR probes < 1 to 5 >Number of Probes <1-5>.Range: <

Page 561

traceroute6OVERVIEWCategory:operatorPrimary context:ping (page 367)Related Commandstraceroute (page 598)ping6 (page 369)Usage: traceroute6 <IPV6-AD

Page 562

traceroute6 ipv6-addr -- Destination IPv6 adddress. (IPV6-ADDR) (p. 602) maxttl < 1 to 255 > -- Maximum time to live <1-255>. (p. 602)

Page 563

Default: 30minttl traceroute6 IPV6-ADDR minttl < 1 to 255 >Minimum number of hops allowed for each probe packet sent along theroute. If the min

Page 564

Range: < 1 to 120 >Default: 5 seconds traceroute6 HOST-NAME timeout < 1 to 120 >Number of seconds within which a response is required fro

Page 565

trunkOVERVIEWTraffic ManagementCategory:configPrimary context:show trunks (page 515)Related CommandsUsage: trunk [ethernet] PORT-LIST<trk1|trk2...t

Page 566

ProCurve(cong)# trunk c4-c6 trk2 trunkCOMMAND DETAILStype (p. 607)trunk-group (p. 606)portlist (p. 606)portlist trunk [ETHERNET] PORT-LISTSpecify th

Page 567

Trk32 -- Trunk group 32 Trk33 -- Trunk group 33 Trk34 -- Trunk group 34 Trk35 -- Trunk group 35 Trk36 -- Trunk group 36 Trk37 -- Trunk group 37

Page 568

arp-protectOVERVIEWCategory:configPrimary context:Related CommandsUsage: [no] arp-protect [trust [ethernet] PORT-LIST|validate <ip|destination-mac|

Page 569

updateOVERVIEWSwitch ManagementCategory:managerPrimary context:Related CommandsUsage: updateDescription: Enter Monitor ROM Console.COMMAND STRUCTURE60

Page 570

upgrade-softwareOVERVIEWCategory:managerPrimary context:Related CommandsUsage: upgrade-software SOFTWARE-KEYDescription: Enter a key to upgrade system

Page 571

virus-throttleOVERVIEWTroubleshootingCategory:configPrimary context:connection-rate-filter (page 80)Related CommandsUsage: [no] virus-throttleDescript

Page 572

vlanOVERVIEWVLANsCategory:configPrimary context:show vlans (page 521)Related Commandsip (page 269)ipv6 (page 291)router (page 407)mirror-port (page 35

Page 573 - Usage: static-vlan VLAN-ID

port-num -- UDP port number of the server. (TCP/UDP-PORT) (p. 645) helper-address -- Add or remove a DHCP server IP address for the VLAN (IP-ADDR)

Page 574

retransmit-interval < 1 to 3600 > -- Set retransmit interval in seconds; the default is 5.(p. 649) transit-delay < 1 to 3600 > -- Set t

Page 575

override-interval < 500 to 6000 > -- Set the value inserted into the Override Interval fieldof a LAN Prune Delay option on this interface (p.

Page 576

rip-compatible < V1-only | V2-only | V1-or-V2 > -- Define RIP version for incoming andoutgoing packets. (p. 650) send < disabled | V1-only

Page 577 - Next Available Options:

ip -- Apply an IPv4 access list. (p. 633) access-group -- Define the mirror port for diagnostic purposes (ASCII-STR) (p. 618) monitor_mirror_ACL_d

Page 578

Example: vlan ip addressConfigure IP addressing on the default VLAN with the subnet mask specified in mask bits:ProCurve(cong)# vlan 1 ip address 10.

Page 579

src-mac -- Drop any ARP request or response packet in which the source MAC in the ethernetheader does not match the sender MAC address in the body o

Page 580

passive (p. 643)helper-address (p. 631)address (p. 619)pim-dense (p. 643)high-priority-forward (p. 631)advert-address (p. 620)pim-sparse (p. 644)holdt

Page 581

Next Available Option: direction < in | out | connection-rate-filter | ... > -- (p. 627) vlan VLAN-ID monitor ip access-group ACCESS-GROUPUsag

Page 582

[no] vlan VLAN-ID ipv6 addressUsage: [no] ipv6 address [dhcp|autocong|IPv6-ADDR/PREFIX-LEN]Description: Set IPv6 parameters for communication withi

Page 583

advertise-interval vlan VLAN-ID vrrp vrid < 1 to 255 > advertise-interval < 1 to 255 >Usage: vrrp vrid <VRID> advertise-interval &l

Page 584

Both -- Monitor all inbound and outbound trafficNext Available Option: mirror -- Mirror destination.(p. 639)any vlan VLAN-ID ip pim-dense ip-addr

Page 585

Single integer or IP address style dotted decimal. vlan VLAN-ID ip ospf all area OSPF-AREA-IDSingle integer or IP address style dotted decimal.authen

Page 586

Next Available Option: auth-key-text -- Set RIP authentication key (maximum 16 characters). (OCTET-STR) (p. 624) [no] vlan VLAN-ID ip rip IP-ADDR au

Page 587

auto vlan VLAN-ID auto [ETHERNET] PORT-LISTUsage: [no] auto [ethernet] PORT-LISTDescription: Cause each port identied in the port list to learn itsV

Page 588

Usage: ip igmp blocked [ethernet] PORT-LISTDescription: Instruct the device to drop incoming multicast packetsreceived on the specied ports. This fea

Page 589 - Server timeout interval

Range: < 1 to 65535 >dead-interval vlan VLAN-ID ip ospf dead-interval < 1 to 65535 >Set dead interval in seconds; the default is 40.Range

Page 590

vlan [no] arp-protect vlanEnable/disable Dynamic ARP Protection on a VLAN(s).Next Available Option: vlan-list -- (VLAN-ID-RANGE) (p. 61)vlan-list [

Page 591

Usage: ip pim-sparse dr-priority <0-2147483647>Description: Set the priority value to use on the interface in the DesignatedRouter election proc

Page 592

forbid [no] vlan VLAN-ID forbid [ETHERNET] PORT-LISTUsage: [no] forbid [ethernet] PORT-LISTDescription: Prevent ports from becoming a member of the c

Page 593

from the VLAN context or follow the 'vlan VLAN-ID'command.Next Available Option: udp -- Add or remove a UDP server address for the VLAN(p.

Page 594

Set hello interval in seconds; the default is 10.Range: < 1 to 65535 > vlan VLAN-ID ip pim-dense hello-interval < 5 to 300 >Usage: ip pim

Page 595

igmp [no] vlan VLAN-ID ip igmpUsage: [no] ip igmp [...]Description: Enable/disable/congure IP Multicast Group Protocol (IGMP)feature on a VLAN. This

Page 596

Sets the interval in seconds between IGMP queries(default: 125)Range: < 5 to 300 > vlan VLAN-ID ip-recv-mac-address MAC-ADDR intervalSpecify th

Page 597

[no] vlan VLAN-ID ip forward-protocol udp IP-ADDRIP address of the protocol server.Next Available Options: port-num -- UDP port number of the serve

Page 598 - Range: < -720 to 840 >

vlan VLAN-ID ip pim-dense ip-addr IP-ADDRSpecify IP address. vlan VLAN-ID ip pim-sparse ip-addrUsage: ip pim-sparse [ip-addr IP-ADDR|any]Descriptio

Page 599

Usage: [no] ipv6 ...Description: Congure various IP parameters for the VLAN. The 'ipv6'command must be followed by a feature-specic keywor

Page 600

maxadvertinterval < 4 to 1800 > -- Set the maximum time (in seconds) allowed between sendingunsolicited router advertisements(p. 638) minadve

Page 601

autorunOVERVIEWCategory:configPrimary context:copy usb (page 131)Related CommandsUsage: [no] autorun ...Description: Enable/Disable/Congure Autorun.

Page 602 - Number of Probes <1-5>

mac-address vlan VLAN-ID ip-recv-mac-address MAC-ADDRThe L3-mac-address to be associated with a VLAN.Next Available Option: interval -- Specify the

Page 603

Set metric for this interface.Range: < 1 to 15 > vlan VLAN-ID ip rip IP-ADDR metric < 1 to 15 >Set metric for this interface.Range: <

Page 604

Usage: [no] ipv6 mld [...]Description: Enable/disable/congure IPv6 Multicast Listener Discovery (MLD)feature on a VLAN. This command enables, disable

Page 605

Next Available Options: all < In | Out | Both > -- Monitor all traffic.(p. 621) ip -- Apply an IPv4 access list.(p. 633)monitor_mirror_ACL_dir

Page 606 - Default: 5 seconds

Next Available Option: ttl-threshold < 0 to 255 > -- Set the multicast datagram TTL threshold for the interface(p. 652)name vlan VLAN-ID name

Page 607

md5-auth-key-chain -- Set MD5 authentication method and key chain.(p. 638) cost < 1 to 65535 > -- Set metric of this interface.(p. 626) dead

Page 608

Usage: [no] ip pim-dense [...]Description: Enable/disable/congure PIM-DM protocol on the VLAN interface.Use direct and 'no' versions of the

Page 609

poison-reverse [no] vlan VLAN-ID ip rip poison-reverseEnable/disable poison reverse on this interface. [no] vlan VLAN-ID ip rip IP-ADDR poison-rever

Page 610

Range: < 1 to 600 >preempt-mode [no] vlan VLAN-ID vrrp vrid < 1 to 255 > preempt-modeUsage: [no] vrrp vrid <VRID> preempt-modeDescr

Page 611

Range: < 0 to 255 > vlan VLAN-ID qos priority < 0 | 1 | 2 | ... >Specify priority to use.Supported Values: 0 1 2 3 4 5 6 7 vlan

Page 612 - TroubleshootingCategory:

AES 128 encryption key string for Autorunsecure-mode [no] autorun secure-modeEnable or disable secure mode for Autorun. Secure-mode can be enabled if

Page 613

Enter a list of protocols for the current VLAN delimited by commas.protocols [no] vlan VLAN-ID protocol < IPX | IPv4 | IPv6 | ... >Set a prede

Page 614

to determine this). Each subnet must have at least one IGMPQuerier-capable device in order for IGMP to functionproperly. The querier interval setting

Page 615

Set retransmit interval in seconds; the default is 5.Range: < 1 to 3600 > vlan VLAN-ID ip ospf IP-ADDR retransmit-interval < 1 to 3600 >S

Page 616

Supported Values: V1-only -- Use RIP version 1 only. V2-only -- Use RIP version 2 only. V1-or-V2 -- Use RIP 2 in the RIP 1 compatible mode. vlan V

Page 617

timer-interval vlan VLAN-ID ip-recv-mac-address MAC-ADDR interval < 1 to 255 >Timeout interval in seconds <1-255>.Range: < 1 to 255 &g

Page 618

unblock vlan VLAN-ID connection-rate-filter unblockResets a host previously blocked by the connection rate lterNext Available Options: all -- Reset

Page 619

virtual router acts as a Master or Backup. The scopeof each virtual router is restricted to a single VLAN.Range: < 1 to 255 >Next Available Opti

Page 620

walkMIBOVERVIEWSNMPCategory:managerPrimary context:getMIB (page 179)Related CommandssetMIB (page 430)Usage: walkmib OBJECT-STR [OBJECT-STR ...]Descrip

Page 621

web-managementOVERVIEWSwitch ManagementCategory:configPrimary context:show config (page 462)Related Commandscrypto (page 135)crypto host-cert (page 14

Page 622

EXAMPLESExample: web-managementRe-enable insecure web browser access:ProCurve(cong)# web-managementCOMMAND DETAILSsupport-url (p. 657)ssl (p. 657)man

Page 623

auto-tftpOVERVIEWFile TransferCategory:configPrimary context:the section called “client” (page 592)Related CommandsUsage: [no] auto-tftp [<IPV4-ADD

Page 624

web-management support-url SUPPORT-URLSpecify URL for web interface Support page.658© 2008 Hewlett-Packard Development Company, L.P.web-managementCo

Page 625

wireless-servicesOVERVIEWCategory:configPrimary context:Related CommandsUsage: wireless-services <SLOT-ID> [<reload|shutdown>]Description:

Page 626

Reboot wireless-services module.shutdown wireless-services SLOT-ID shutdownShutdown (halt) the wireless-services module.tech wireless-services SLOT-

Page 627

wireless-servicesOVERVIEWCategory:managerPrimary context:Related CommandsUsage: wireless-services <SLOT-ID> <reload|shutdown>Description:

Page 628

wireless-servicesOVERVIEWCategory:operatorPrimary context:Related CommandsUsage: wireless-services SLOT-IDDescription: Display parameters for the wire

Page 629

writeOVERVIEWSwitch ManagementCategory:managerPrimary context:show config (page 462)Related CommandsUsage: write <memory|terminal>Description: V

Page 631

© Copyright 2008 Hewlett-PackardDevelopment Company, L.P.March 2008Manual Part Number5992-3063

Page 632

IPv4 address of the TFTP server to download a software image from.Next Available Option: filename -- The software image file-name. (ASCII-STR) (p. 64

Page 633

bannerOVERVIEWSwitch ManagementCategory:configPrimary context:show banner (page 457)Related CommandsUsage: [no] banner motd ASCII-STRDescription: Den

Page 634

bootOVERVIEWSwitch ManagementCategory:managerPrimary context:reload (page 403)Related CommandsUsage: boot [system [ash <primary|secondary>] [co

Page 635

Command Structure ... 166Examples ...

Page 636

COMMAND DETAILSstandby (p. 69)flash (p. 68)active (p. 68)system (p. 69)set-default (p. 68)config (p. 68)active boot activeNote: This command applies

Page 637

Next Available Option: flash < primary | secondary > -- Specify the default flash boot image.(p. 68)standby boot standbyReboot the standby man

Page 638

cdpOVERVIEWRoutingCategory:configPrimary context:show cdp (page 459)Related CommandsUsage: [no] cdp ...Description: Set various CDP (Cisco Discovery P

Page 639

chassislocateOVERVIEWCategory:operatorPrimary context:Related CommandsUsage: chassislocate <on|blink> [<1-1440>]chassislocate offDescripti

Page 640

off chassislocate offTurn the chassis locate led off.on chassislocate onTurn the chassis locate led on (default 30 minutes).Next Available Option:

Page 641

clearOVERVIEWCategory:managerPrimary context:Related CommandsUsage: clear <arp|intrusion-log|logging|public-key|statistics[ethernet] PORT-LIST |lin

Page 642

arp clear arpFlush all non-permanent entries in the ARP cache.client-public-key clear crypto client-public-keyRemove client public keys from active

Page 643

Remove client public keys from active conguration.link-keepalive clear link-keepaliveReset link-keepalive counters for all UDLD enabled ports.Next A

Page 644

clockOVERVIEWSwitch ManagementCategory:configPrimary context:ip (page 269)Related Commandssntp (page 547)time (page 594)Usage: [no] clock [...]Descrip

Page 645

+9:30 +9:00 +8:00 +7:00 +6:30 +6:00 +5:30 +5:00 +4:30 +4:00 +3:30 +3:00 +2:00 +1:00 +0:00 -1:00 -2:00 -3:00 -3:30 -4:00 -5:00 -

Page 646

Command Structure ... 191Command Details ...

Page 647

time clock set [TIME]Current time to set.timezone clock timezoneUsage: clock timezone [gmt <-12:00 - +14:00>] |[us <none|alaska|aleutian|ar

Page 648

configureOVERVIEWSwitch ManagementCategory:managerPrimary context:end (page 165)Related Commandsexit (page 168)enable (page 164)Usage: congure [termi

Page 649

connection-rate-filterOVERVIEWTroubleshootingCategory:configPrimary context:filter (page 172)Related Commandsip (page 269)vlan (page 611)show connecti

Page 650

sensitivity connection-rate-filter sensitivitySets the level of ltering requiredNext Available Option: sensitive < low | medium | high | ... >

Page 651

consoleOVERVIEWSwitch ManagementCategory:configPrimary context:show (page 437)Related Commandsrepeat (page 406)Usage: console ...Description: Set vari

Page 652

COMMAND DETAILSterminal (p. 85)inactivity-timer (p. 84)baud-rate (p. 83)local-terminal (p. 84)events (p. 83)screen-refresh (p. 84)flow-control (p. 83)

Page 653

Usage: console ow-control <xon/xoff|none>Description: Set the Flow Control Method; default is xon-xoff.Supported Values: XON/XOFF Noneinactiv

Page 654

on the repeat command. See 'repeat help' for details onthe 'repeat' command.Supported Values: 1 3 5 10 20 30 45 60terminal

Page 655

copyOVERVIEWFile TransferCategory:managerPrimary context:show config (page 462)Related Commandsshow files (page 471)show flash (page 472)show running-

Page 656

pc -- Change CR/LF to PC style. (p. 119) unix -- Change CR/LF to unix style. (p. 130) usb -- Copy data to a USB flash drive. (p. 131) filename --

Page 657 - The mib object to start from

Notes ... 340Command Structure

Page 658

append -- Add the key(s) for operator access. (p. 94) manager -- Replace the key(s) for manager access; follow with the 'append' optionto

Page 659

operator -- Replace the key(s) for operator access (default); follow with the 'append'option to add the key(s). (p. 116) append -- Add th

Page 660

append -- Add the key(s) for access. (p. 94) operator -- Replace the key(s) for operator access (default); follow with the 'append'option

Page 661

append -- Add the key(s) for operator access. (p. 94) manager -- Replace the key(s) for manager access; follow with the 'append' optionto

Page 662

flash -- Copy data to the switch system image file. (p. 111) tftp-ip -- Specify TFTP server IPv4 address. (IP-ADDR) (p. 124) filename -- Specify f

Page 663

append -- Add the key(s) for access. (p. 94) command-file -- Copy command script to switch and execute. (p. 100) filename -- Specify filename for t

Page 664 - Parameters:

COMMAND DETAILSpub-key-file (p. 121)cv_flash (p. 102)append (p. 94)running-config (p. 121)event-log (p. 103)autorun-cert-file (p. 99)startup-config (p

Page 665

copy tftp autorun-cert-file IPV6-ADDR FILENAME appendAdd the key(s) for operator access. copy tftp autorun-cert-file IPV6-ADDR FILENAME operator ap

Page 666

copy usb pub-key-file FILENAME appendAdd the key(s) for operator access. copy usb pub-key-file FILENAME operator appendAdd the key(s) for access.

Page 667 - 5992-3063

copy crash-data SLOT-ID-RANGE usb FILENAME appendAdd the key(s) for operator access. copy crash-data SLOT-ID-RANGE usb FILENAME operator appendAdd

Commentaires sur ces manuels

Pas de commentaire