Summary of Contents for Huawei Quidway S2000 Series
Page 1
HUAWEI 1. Getting Started 2. Port 3. VLAN 4. Multicast 5. QoS/ACL 6. Integrated Management 7. STP 8. Security 9. Network Protocol 10. System Management 11. Appendix Quidway S2000 Series Ethernet Switches Command Manual VRP3.10...
Page 2
31190196 Huawei Technologies Co., Ltd. provides customers with comprehensive technical support and service. If you purchase the products from the sales agent of Huawei Technologies Co., Ltd., please contact our sales agent. If you purchase the products from Huawei Technologies Co., Ltd. directly, Please feel free to contact our local office, customer care center or company headquarters.
About This Manual Release Notes The product version that corresponds to the manual is VRP3.10. Related Manuals The following manuals provide more information about the Quidway S2000 Series Ethernet Switches. Manual Content Quidway S2403H Ethernet Switch It provides information for the system installation.
Page 5
Integrated Management This module introduces the commands used for integrated management. This module introduces the commands used for configuring STP. Security This module introduces the commands used for configuring 802.1X, AAA & RADIUS, and HABP. Network Protocol This module introduces the commands used for configuring network protocols. System Management This module introduces the commands used for system management and maintenance.
Page 6
II. Command conventions Convention Description Boldface The keywords of a command line are in Boldface. italic Command arguments are in italic. Items (keywords or arguments) in square brackets [ ] are optional. Alternative items are grouped in braces and separated by vertical bars. { x | y | ...
Page 7
Action Description Double Click Press the left button twice continuously and quickly. Drag Press and hold the left button and drag it to a certain position. VI. Symbols Eye-catching symbols are also used in the manual to highlight the points worthy of special attention during the operation.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.2 auto-execute command Syntax auto-execute command text undo auto-execute command View User interface view Parameter text: Specifies the command to be run automatically.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands View System view Parameter level: Specifies the command level, ranging from 0 to 3. view: Specifies the command view, which can be any of the views supported by the switch.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Parameter 5: The data bits are 5. 6: The data bits are 6. 7: The data bits are 7. 8: The data bits are 8.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.6 display user-interface Syntax display user-interface [ type number ] [ number ] View Any view Parameter type: Specifies the type of a user interface.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Table 1-1 Output description of the display user-interface command Field Description Current user interface is in use. Current user interface is in use and work in asynchronous mode.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Description Using free user-interface command, you can reset a specified user interface. The user interface will be disconnected after the command is executed.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Example # Configure the header of setting up a session. [Quidway] header shell % Enter TEXT message. End with the character '%'. SHELL : Hello! Welcome % The header of setting up a session displays on terminal when a user logs on again.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands View User interface view Parameter minutes: Specifies the minute, ranging from 0 to 35791. seconds: Specifies the second, ranging from 0 to 59.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.14 lock Syntax lock View User view Parameter none Description Using lock command, you can lock the user interface to prevent unauthorized user from operating it.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands This command can only be performed in AUX user interface view. By default, the mode is set to none. Example # Set mark parity on the AUX (Console) port.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Parameter none Description Using return command, you can return to user view from a view other than user view. Combination key <Ctrl+Z> performs the same function with the return command.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.19 send Syntax send { all | number | type number } View User view Parameter all: Configures to send message to all user interfaces.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Visit level: Commands of this level involve command of network diagnosis tool (such as ping and tracert), command of switch between different language environments of user interface (language-mode), and telnet command etc.
By default, password is required to be set for authenticating the users connecting via Telnet. If no password has been set, the following prompt will be displayed “password required, but none set.” Example # Configure the local authentication password on VTY 0 to huawei. [Quidway-ui-vty0] set authentication password simple huawei 1.1.22 shell...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Description Using shell command, you can enable terminal service of a user interface. Using undo shell command, you can disable the terminal service of a user interface.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Example # Configure the transmission speed on the AUX (Console) port as 9600bit/s. [Quidway-ui-aux0] speed 9600 1.1.24 stopbits Syntax stopbits { 1 | 1.5 | 2 }...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Description Using super command, you can enable the user to change to user level from the current user level. If the user has set the super password [ level level ] { simple | cipher } password, then user password of the higher level is needed, or the former user level will not change.
Changing the hostname of the Ethernet switch will affect the prompt of command line interface. For example, if the hostname of the Ethernet switch is Quidway, the prompt in user view will be <Quidway>. Example # Configure the hostname of Ethernet switch to Huawei. [Quidway] sysname Huawei [Huawei] 1.1.28 system-view...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands View User view Parameter none Description Using system-view command, you can enter system view from user view. For the related commands, see quit, return.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands <Quidway1> telnet 129.102.0.1 Trying 129.102.0.1 Connected to 129.102.0.1 <Quidway2> 1.1.30 user-interface Syntax user-interface [ type ] first-number [ last-number ] View System view Parameter type: Specifies the user interface type, which can be aux or vty.
Page 33
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Description Using user privilege level command, you can configure which level of command a user can use after logon from the specifically user interface, so that a user can use all the available commands at this level.
VLAN interface view Parameter string: Description character string of management VLAN interface, ranges from 1 to 32 characters. The default character string is HUAWEI, Quidway Series, Vlan-interface1 Interface. Vlan-interface1 is the management VLAN interface name. Description Using description command, you can configure the description character string of management VLAN interface.
Line protocol current state : DOWN IP Sending Frames' Format is PKTFMT_ETHNT_2, Hardware address is 00e0-fc07-4101 Internet Address is 10.1.1.1/24 Primary Description : HUAWEI, Quidway Series, Vlan-interface1 Interface The Maximum Transmit Unit is 1500 Table 2-1 Output description of display interface vlan-interface command...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Example # Display all the host names and their IP addresses. <Quidway> display ip host Host Flags Address(es) static 1.1.1.1 static 2.2.2.4 Table 2-2 Output description of display ip host command...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Table 2-3 Output description of display ip interface vlan-interface command Field Description Vlan-interface1 current state The current state of management VLAN interface Line protocol current state...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands 127.0.0.1/32 DIRECT 127.0.0.1 InLoopBack0 Table 2-4 Description of information generated by the command display ip routing-table Field Description Destination/Mask Destination address/Mask length Proto Routing protocol...
Page 39
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands This command only displays the route fully matching with specified destination address and mask. display ip routing-table ip_address longer-match This command displays all destination address route matching with destination address in natural mask range.
Page 40
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands # There are no corresponding routes in the natural mask range (only displaying the longest matched route). Display the detailed information. <Quidway> display ip routing-table 169.253.0.0 verbose...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Field Description Route state description: ActiveU The route is selected and is optimum Blackhole route is similar to Reject route, but it will not send the ICMP...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands verbose: With the verbose parameter, this command displays the verbose information of both the active and inactive routes. Without the parameter, this command only displays the summary of active routes.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Example # Display the verbose routing table information. <Quidway> display ip routing-table verbose Routing Tables: Generate Default: no + = Active Route, - = Last Active, # = Both...
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands View System view Parameter vlan-id: Specifies the identification of management VLAN interface, ranging from 1 to 4094. Description Using interface vlan-interface command, you can create and enter management VLAN interface view.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands 2.1.11 ip host Syntax ip host hostname ip-address undo ip host hostname [ ip-address ] View System view Parameter hostname: Name of the host, a character string consisting of 1 to 20 characters, including letters, numbers, "_", or ",", and it must contain at least one letter.
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands mask-length: Mask length. Since "1" s in the 32-bit mask are required to be consecutive, the mask in dotted decimal format can be replaced by mask-length, which is the number of the consecutive "1"...
Page 47
Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Description Using shutdown command, you can disable the management VLAN interface. Using undo shutdown command, you can enable the management VLAN interface. By default, when all the Ethernet ports belonging to the management VLAN are in down status, the management VLAN interface is also down, i.e.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Chapter 1 Ethernet Port Configuration Commands 1.1 Ethernet Port Configuration Commands 1.1.1 broadcast-suppression Syntax broadcast-suppression pct undo broadcast-suppression View Ethernet port view Parameter pct: Specifies the maximum wire speed ratio of the broadcast traffic allowed on the port.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter text: Port description character string, with 80 characters at most. Description Using description command, you can configure the description character string for Ethernet port. Using undo description command, you can cancel the port description character string.
Page 53
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Ethernet0/1 current state : UP IP Sending Frames' Format is PKTFMT_ETHNT_2, Hardware address is 00e0-fc00-0010 Description : aaa The Maximum Transmit Unit is 1500 Media type is twisted pair, loopback not set...
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Table 1-1 Output description of the display interface command Field Description Ethernet0/1 current state The current state of Ethernet port (enabled or disabled) IP Sending Frames' Format...
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter none Description Using display lock-port-mac-aging-time command, you can view the aging time of MAC address table corresponding to the lock port. Example # Display the MAC aging time of the lock port.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Table 1-3 Output description of the display loopback-detection command Field Description Loopback-detection is running The loopback detection is enabled Detection interval time is 30 seconds...
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter auto: Port auto-negotiation attribute. full: Port full-duplex attribute. half: Port half-duplex attribute. Description Using duplex command, you can configure the full-duplex/half-duplex attribute of the Ethernet port.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.9 interface Syntax interface { interface_type interface_num | interface_name } View System view Parameter interface_type: Specifies the port type. For S2000 Series Ethernet Switches, it can only be Ethernet.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands View System view Parameter age-time: Specifies the MAC aging time of a port. It ranges from 1 to 24, measured in hour. The default aging time is 1 hour.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.12 loopback-detection control enable Syntax loopback-detection control enable undo loopback-detection control enable View System view/Ethernet port view Parameter none Description Using the command, you can enable loopback detection controlled function on Trunk...
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Description Using loopback-detection enable command, you can enable the port loopback detection. If there is a loopback port found, the switch will put it under control. Using undo loopback-detection enable command, you can disable the port loopback detection.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.15 loopback-detection per-vlan enable Syntax loopback-detection per-vlan enable undo loopback-detection per-vlan enable View Ethernet port view Parameter none Description Using the loopback-detection per-vlan enable command, you can configure that the system performs loopback detection to all VLANs on Trunk and Hybrid ports.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Description Using mdi command, you can configure the network cable type of the Ethernet ports. Using undo mdi command, you can restore the default type.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter vlan_id: VLAN ID defined in IEEE802.1Q, ranging from1 to 4094 and the default vlan_id is 1. Description Using port hybrid pvid vlan command, you can configure the default VLAN ID of the hybrid port.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Hybrid port can belong to multiple VLANs. If the port hybrid vlan vlan_id_list { tagged | untagged } command is used for many times, the VLANs carried by the hybrid port is the set of vlan_id_list.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.21 port trunk permit vlan Syntax port trunk permit vlan { vlan_id_list | all } undo port trunk permit vlan { vlan_id_list | all }...
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter vlan_id: VLAN ID defined in IEEE802.1Q, ranging from1 to 4094 and the default vlan_id is 1. Description Using port trunk pvid vlan command, you can configure the default VLAN ID of trunk port.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Description Using shutdown command, you can disable the Ethernet port. Using undo shutdown command, you can enable the Ethernet port. By default, the Ethernet port is enabled.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 2 Ethernet Port Link Aggregation Commands Chapter 2 Ethernet Port Link Aggregation Commands 2.1 Ethernet Port Link Aggregation Commands 2.1.1 display link-aggregation Syntax display link-aggregation [ master_port_num ] View Any view Parameter master_port_num: Master port number in an aggregation port group.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 2 Ethernet Port Link Aggregation Commands Table 2-1 The description of link aggregation Field Description Master port Master port Other sub-ports Other member ports Mode Aggregation mode 2.1.2 link-aggregation Syntax...
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 3 Ethernet Port Mirror Configuration Commands Chapter 3 Ethernet Port Mirror Configuration Commands 3.1 Ethernet Port Mirror Configuration Commands 3.1.1 display mirror Syntax display mirror View Any view Parameter none Description Using display mirror command, you can view the information of monitor-mirror port.
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 3 Ethernet Port Mirror Configuration Commands undo monitor-port { interface_type interface_num | interface_name } View System view Parameter interface_name: Specified monitor port name, represented with interface_name= interface_type interface_num. interface_type is port type and interface_num is port number.
Page 74
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 3 Ethernet Port Mirror Configuration Commands interface_name specifies port name expressed interface_name=interface_type interface_num. interface_type is the port type and interface_num is the port number. Description Using port mirror command, you can configure the mirror port. Using undo port mirror command, you can cancel the mirror port.
Page 75
Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 3 Ethernet Port Mirror Configuration Commands monitor port cannot be aggregated port. When the new monitor port is set, the former monitor port will be cancelled automatically. For the related commands, see monitor-port, port mirror, display mirror.
Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 1 VLAN Configuration Commands static: Display information of VLAN created statically by the system. dynamic: Display information of VLAN created dynamically by the system. Description Using display vlan command, you can view related information about the specified or all VLANs.
Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 1 VLAN Configuration Commands name. For their meanings and value range, read Parameter of “Port” in this document. The interface number after keyword to must be larger than or equal to the port number before to.
Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 2 Isolate-User-Vlan Configuration Commands Secondary VLAN is established. The actual operation include: add the ports of isolate-user-vlan to every Secondary VLAN and add the ports of all Secondary VLANs to isolate-user-vlan.
Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands Parameter hold: GARP Hold timer. After received certain registration information, the GARP application entity will not send Join Message at once, instead, it starts the Hold timer.
Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands Parameter timer_value: Value of GARP leaveall timer in centisecond, ranging from 65 to 32765. The step is 5 centiseconds. The value of Leaveall timer should be greater than the value of Leave timer.
Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands command has no parameter, it will clear the GARP statistics information of all the ports. For the related command, see display garp statistics. Example # Clear GARP statistics information.
Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands 3.2.2 display gvrp status Syntax display gvrp status View Any view Parameter none Description Using display gvrp status command, you can view the global status information about GVRP.
Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 1 GMRP Configuration Commands Parameter none Description Using display gmrp status command, you can view the status of global GMRP. This command can be used for displaying the enabled/disabled status of global GMRP.
Page 97
Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 1 GMRP Configuration Commands Executed in system view, this command will enable the global GMRP. After performing this command in Ethernet port view, GMRP will be enabled on a port.
Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands The information above tells us that: IGMP Snooping is enabled; the router port timer is set to be 300 seconds; the max response timer is set to be 50 seconds; the aging timer of multicast group member is set to be 500 seconds.
Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands We can know from the information listed above that : There is a multicast group in VLAN 2; The router port is Ethernet 0/1; The address of the multicast group is 230.45.45.1;...
Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands Parameter seconds: Specifies the port aging time of the multicast group member, ranging from 200 to 1000 and measured in seconds; By default, 260. Description Using igmp-snooping host-aging-time command, you can configure the port aging time of the multicast group members.
Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands The set maximum response time decides the time limit for the switch to respond to IGMP Snooping general query packets. For the related command, see igmp-snooping, igmp-snooping router-aging-time.
Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands match the rules. After specified the match order of an ACL, you cannot change it, unless delete all its rules and specify the order again. Note that, the match order of ACL can only be effective in the case ACL is cited by software to filter and classify data.
Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands View User view Parameter all: All the access lists (including numbered and named access lists). acl-number: Specifies an access list with a number in the range of 2000 and 3999.
Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands Parameter rule-id: Specifies a rule of an ACL with a number in the range of 0 to 127. permit: Indicates to let the matched packets through. deny: Indicates to reject the matched packets to pass through.
Page 115
Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands View System view Parameter time-name: Name of a special time range to be referenced. start-time: Start time of the special time range, format as hh:mm. end-time: End time of the special time range, format as hh:mm.
Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 2 QoS Commands Description Using priority command, you can configure the priority of Ethernet port. Using undo priority command, you can restore the default port priority. By default, the port priority is 0.
Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 2 QoS Commands Example # Configure system trusting the packet 802.1p priority and not replacing the 802.1p priorities carried by the packets with the port priority. [Quidway-Ethernet0/1] priority trust 2.1.4 queue-cycle...
Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 3 Logon user’s ACL control command Parameter acl-number: Specifies a basic ACL with a number in the range of 2000 to 2999. Description Using ip http acl command, you can call an ACL and perform ACL control over the WEB network management users.
Chapter 3 Logon user’s ACL control command Example # Configures huawei as the community name, allows read-only access to the switch by the name, meanwhile, performs the ACL control to the network management user by ACL 2020. (Suppose ACL 2020 has been defined.) [Quidway] snmp-agent community read huawei acl 2020 3.1.4 snmp-agent group...
SNMP group. Example # Creates a new SNMP group: huawei, and perform the ACL control to the group through ACL 2021. (Suppose ACL 2021 has been defined.) [Quidway] snmp-agent group v1 huawei acl 2021 3.1.5 snmp-agent usm-user...
Page 123
SNMP group, meanwhile delete the configuration of ACL control. Example # Adds a user huawei for huaweigroup (an SNMP group), configures to authenticate with HMAC-MD5-96 and sets authentication password as hello, meanwhile perform the ACL control to the user through ACL 2020. (Suppose ACL 2020 has been defined.)
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Table 1-1 Information about NDP configuration the NDP neighbors discovered by a port Field Description Neighbor Discovery Protocol is enabled The system NDP is enabled on the switch...
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands View System view Parameter aging-in-secs: Specifies how often to refresh the neighbor node information on a port and ranges from 5 to 255 in units of second. By default, NDP is aged in 180 seconds.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands interface_name } [ to { interface_type interface_num | interface_name } ] } &<1-10>. interface_type specifies the port type. interface_num specifies the port number, expressed as slot number/port number. Key word to helps specify a port range.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Timer : 0 min Hop Delay : 200 ms Port Delay: 20 ms Last collection total time: 2216ms Table 1-2 Description of global NTDP configuration information...
Page 134
Platform : Quidway S3026 Version: Huawei Versatile Routing Platform Software VRP (tm) Software, Version 3.10 Quidway S3026 Software Version 3026-005, RELEASE SOFTWARE Copyright (c) 2000-2002 By HUAWEI TECH CO., LTD. Cluster : Candidate device Candidate device Stack Peer MAC Peer Port ID...
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands 00e0-fc07-4de0 Ethernet0/14 Ethernet0/8 FULL Table 1-4 Description of detail information of devices collected through NTDP Field Description Peer MAC MAC address of the peer device...
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Sometimes it only needs collecting the topology connected to the downlink ports, not caring about that connected to the uplink. In this case, NTDP is supposed to be disabled on the uplink ports.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands View System view Parameter hop-value: Indicate the maximum hops that the device collected can be away from the topology collecting device, ranging from 1 to 16. By default, the value is 3.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Description Using ntdp timer command, you can configure the topology collection interval. Using undo ntdp timer command, you can restore the default topology collection interval.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands This command is executed on the collecting device. The topology request contains the hop-delay time, according to which the collected device decides how long it shall wait before the first port forwards the request.
Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Example # Add the candidate device, with MAC address 00E0-fc00-35e7 and super-password huawei, to the cluster, and its member number is 6. [Huawei_0.Quidway-cluster] add-member 6 mac-address 00E0-fc00-35e7 password huawei 1.3.2 administrator-address...
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands 1.3.3 auto-build Syntax auto-build [ recover ] View Cluster view Parameter recover: automatic get back the members of a cluster for the administrator device when it reboot.
Using it on an administrator device, you can rename a cluster. Using it on a candidate device, you can create a cluster. Example # Configure the current switch as the administrator device and specifies HUAWEI as the cluster name. [Quidway-cluster] build HUAWEI 1.3.5 cluster...
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Note: If the cluster function is disabled, you cannot create a cluster on the device or add it to a cluster. Example # Enable the cluster function of a switch.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Authentication is also required when you switch from a member device to the administrator device. After passing the authentication, the system will enter the user view automatically.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands 1.3.9 display cluster Syntax display cluster View Any view Parameter none Description Using display cluster command, you can view the state and basic configuration information of the cluster.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Table 1-5 Description of cluster status and statistics information Field Description Cluster name Name of the cluster Role Role of the cluster member Handshake timer...
Page 149
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Parameter mac-address H-H-H: MAC address of candidate device. verbose: Display the detailed information about the candidate device. Description Using display cluster candidates command, you can view candidate devices of the cluster.
Member status:Up Hops to administrator device:1 IP: 1.5.6.7/16 Version: Huawei Versatile Routing Platform Software VRP (tm) Software, Version 3.10 Copyright (c) 2000-2002 By HUAWEI TECH CO., LTD. Quidway S3526 3526-003 Table 1-9 Description of detail information Field Description Member number:...
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands The member device within cluster will access FTP server via administrator device. Configure the IP address of FTP server for the cluster, then the member devices of the cluster can access the server via the administrator device.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands undo logging-host View Cluster view Parameter ip-address: IP address of logging host configured for the cluster. Description Using logging-host command, you can configure a public logging host for the member devices on the administrator device.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands can cancel VLAN check for the communication inside a cluster on the administrator device. By default, VLAN check is performed. Example # Configure VLAN check for the communication inside a cluster.
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Parameter ip-address: IP address of TFTP server configured for the cluster. Description Using tftp-server command, you can configure the public TFTP server for the cluster members on the administrator device.
Page 159
Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands This command can only be executed on the administrator device, which will advertise the cluster timer value to the member devices. Example # Configure to send handshake packets once every 3 seconds.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands The Port is a non-edged port Connected to a point-to-point LAN segment Maximum transmission limit is 3 Packets / hello time Times: Hello Time 2 sec,...
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands [ to { interface_type interface_num | interface_name } ] }&<1-10>. For details about interface_type, interface_num and interface_name, refer to the Port Command Manual. &<1-10> indicates the preceding parameter can be input up to 10 times.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands For the related command, see stp mode. Example # Enable RSTP on a switch. [Quidway] stp enable # Disable RSTP on Ethernet0/1. [Quidway-Ethernet0/1] stp disable 1.1.4 stp bpdu-protection...
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands 1.1.5 stp cost Syntax stp cost cost undo stp cost View Ethernet port view Parameter cost: Specifies the path cost, ranging from 1 to 200000. Description Using stp cost command, you can configure the path cost on a spanning tree for the current Ethernet port.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands View Ethernet port view Parameter enable: Sets the current Ethernet port as an edge port. disable: Sets the current Ethernet port as a non-edge port. Description Using stp edged-port enable command, you can configure the current port as an edge port.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands By default, the loop protection function is not enabled. Example # Enable loop protection function in Ethernet 0/1. [Quidway-Ethernet0/1] stp loop-protection 1.1.8 stp mcheck Syntax stp mcheck...
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands View System view Parameter stp: Specifies to run RSTP in STP compatible mode. rstp: Specifies to run RSTP in RSTP mode. Description Using stp mode command, you can configure the RSTP running mode. Using undo stp mode command, you can restore the default RSTP running mode.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands By default, the value is auto. The requirements of current port connects to point-to-point link are current port is the master of an aggregated port or it works in full-duplex mode. The default setting, that is, checking by RSTP automatically is recommended.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Parameter bridge-priority: Specifies the priority of a switch, ranging from 0 to 61440. The values are not consecutive integers. The step length is 4096. By default, the value is 32768.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Caution: In a switching network, you can configure no more than one primary root for a spanning tree but you can configure one or more secondary roots for it. Remember not to designate more than one primary root in a spanning tree;...
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands After a switch is configured as primary root switch or secondary root switch, user can’t modify the bridge priority of the switch. Example # Designate the current switch as a secondary root of the STP.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands 1.1.16 stp timeout-factor Syntax stp timeout-factor number undo stp timeout-factor View System view Parameter number: Specifies the multiple of hello time, ranging from 3 to 7.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Parameter centiseconds: Specifies the time of forward delay in centisecond, ranging from 400 to 3000. By default, the value is 1500 centiseconds. Description Using stp timer forward-delay command, you can configure the time of forward delay for the switch.
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Example # Set the hello time of the switch to 300 centiseconds. [Quidway] stp timer hello 300 1.1.19 stp timer max-age Syntax stp timer max-age centiseconds...
Page 177
Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Parameter packetnum: Specifies the maximum transmission speed of the port, ranging from 1 to 255. (It is a counter without unit.) By default, the value is 3.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Example # Display the configuration information of 802.1x. <Quidway> display dot1x Equipment 802.1X protocol is disabled CHAP authentication is enabled DHCP-launch is disabled Proxy trap checker is disabled...
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Ethernet port in the format interface-num = { interface-type interface-num | interface-name }, where interface-type specifies the port type, interface-num specifies the port number and interface-name specifies the port name. For the respective meanings and value ranges, read the Parameter of the Port Configuration section.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands pap: Use PAP authentication method. eap: Use EAP authentication method. By now, only md5 encryption method is available Description Using dot1x authentication-method command, you can configure the authentication method for 802.1x user.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands and applies for dynamic IP addresses. Using undo dot1x dhcp-launch command, you can disable DHCP to launch ID authentication on the supplicant. By default, DHCP is not allowed launching user ID authentication.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands the parameter interface-list when executed in system view. It has effect on all the interfaces when no interface is specified. The parameter interface-list cannot be input when the command is executed in Ethernet interface view and it has effect only on the current interface.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Description Using dot1x port-control command, you can configure the mode for 802.1x to perform access control on the specified interface. Using undo dot1x port-control command, you can restore the default access control mode.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Description Using dot1x port-method command, you can configure the base for 802.1x to perform access control on the specified interface. Using undo dot1x port-method command, you can restore the default access control base.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands again. During the quiet period, the Authenticator does not do anything related to 802.1x authentication. For the related commands, see display dot1x , dot1x timer. Example # Enable quiet-period timer.
Note that when performing this function, the user logging on via proxy need to run Huawei 802.1x client program,( Huawei 802.1x client program version V1.29 or above is needed). This command is used to set on the specified interface when executed in system view.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands tx-period-value: Specify how long the duration of the transmission timeout timer is. The value ranges from 10 to 120 in units of second and defaults to 30.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Chapter 2 AAA Configuration Commands 2.1 AAA Configuration Commands 2.1.1 access-limit Syntax access-limit { disable | enable max-user-number } undo access-limit View ISP domain view Parameter disable: No limit to the supplicant number in the current ISP domain.
Page 195
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands undo attribute { ip | mac | idle-cut | access-limit | vlan | location }* View Local user view Parameter ip: Specifies the IP address of a user.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands In some occasions, it is necessary to disconnect a user or a category of users by force. For the related command, see display connection. Example # Cut all the connections in the ISP domain, huawei163.net.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Description Using display connection command, you can view the relevant information of all the supplicants or the specified one(s). This command displays the information about a specified or all the users. The output can help you with the user connection diagnosis and troubleshooting.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Description Using display local-user command, you can view the relevant information of all the local users or the specified one(s). This command displays the relevant information about a specified or all the local users.
ISP domain is a group of users belonging to the same ISP. Generally, for a username in the userid@isp-name format, taking gw20010608@huawei163.net as an example, the isp-name (i.e.huawei163.net) following the @ is the ISP domain name. When Huawei Quidway Series Ethernet Switches control user access, as for an ISP user whose username is in userid@isp-name format, the system will take userid part as username for identification and take isp-name part as domain name.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Parameter disable: means disabling the user to use idle-cut function . enable: means enabling the user to use idle-cut function. minute: Specifies the maximum idle time, ranging from 1 to 120 and measured in minutes.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Parameter user-name : Specifies a local username with a character string not exceeding 32 characters, excluding “/”, “:”, “*”, “?”, “<” and “>”. The @ character can only be used once in one username.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Description Using local-user password-display-mode command, you can configure the password display mode of all the accessing users. Using undo local-user password-display-mode command, you can cancel the password display mode that has been set for all the accessing users.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Example # Set the user huawei1 to display the password in simple text, given the password is 20030422. [Quidway-luser-huawei1] password simple 20030422 2.1.12 radius-scheme Syntax radius-scheme radius-scheme-name...
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands View Local user view Parameter telnet: Specifies user type as Telnet. level level: Specifies the level of Telnet users. The argument level is an integer in the range of 0 to 3 and defaults to 1.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Description Using state command, you can configure the state of the current ISP domain/ current user. By default, after an ISP domain is created, it is in the active state (in ISP domain view).
By default, the data unit is byte and the data packet unit is one-packet. For the related command, see display radius. Example # Set the unit of data flow that send to RADIUS Server Huawei is kilo-byte and the data packet unit is kilo-packet. [Quidway-radius-huawei] data-flow-format data kilo-byte packet kilo-packet 2.2.2 display local-server statistics...
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands 2.2.3 display radius Syntax display radius [ radius-server-name ] View Any view Parameter radius-server-name: Specifies the RADIUS server group name with a character string not exceeding 32 characters, excluding “/”, “:”, “*”, “?”, “<” and “>”. Display all RADIUS server groups when the parameter is not set.
Page 212
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Parameter radius-scheme radius-server-name: Configures to display the saved stopping accounting requests according to RADIUS server name. radius-server-name specifies the RADIUS server name with a character string not exceeding 32 characters, excluding “/”, “:”, “*”, “?”, “<”...
RADIUS authentication/authorization packet. string: Specifies the key with a character string not exceeding 16 characters, excluding “/”, “: ”, “*”, “? ”, “<” and “>”. By default, the key is “huawei”. Description Using command, configure encryption RADIUS authentication/authorization or accounting packet.
RADIUS function, i.e. realize basic RADIUS function on the switch. Note that when using local RADIUS server function of Huawei, remember the number of UDP port used for authentication is 1645 and that for accounting is 1646.
For the related commands, see key, radius scheme, state. Example # Set the IP address of the primary accounting server of RADIUS server group, “huawei”, to 10.110.1.2 and the UDP port 1813 to provide RADIUS accounting service. [Quidway-radius-huawei] primary accounting 10.110.1.2 1813 2.2.9 primary authentication...
For the related commands, see key, radius scheme , state. Example # Set the IP address of the primary authentication/authorization server of RADIUS server group, “huawei”, to 10.110.1.1 and the UDP port 1812 to provide RADIUS authentication/authorization service. [Quidway-radius-huawei] primary authentication auth 10.110.1.1 1812 2.2.10 radius scheme...
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands time is expressed in the format hh:mm:ss-yyyy/mm/dd. When this parameter is set, all the stopping accounting requests saved since start-time to stop-time will be deleted. user-name user-name : Configures to delete the stopping accounting requests from the buffer according to the username.
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Parameter retry-times: Specifies the maximum times of retransmission, ranging from 1 to 20. By default, the value is 3. Description Using retry command, you can configure retransmission times of RADIUS request packet.
Accordingly, it is necessary to disconnect the user at NAS end and on RADIUS server synchronously when some unexpected failure occurs. Huawei Quidway Series Ethernet Switches support to set maximum times of real-time accounting request failing to be responded. NAS will disconnect the user if it has not received real-time accounting response from RADIUS server for some specified times.
For the related commands, see key, radius scheme, state. Example # Set the IP address of the second accounting server of RADIUS server group, huawei, to 10.110.1.1 and the UDP port 1813 to provide RADIUS accounting service. [Quidway-radius-huawei] secondary accounting 10.110.1.1 1813...
For the related commands, see key, radius scheme, state. Example # Set the IP address of the second authentication/authorization server of RADIUS server group, “huawei”, to 10.110.1.2 and the UDP port 1812 to provide RADIUS authentication/authorization service. [Quidway-radius-huawei] secondary authentication 10.110.1.2 1812 2.2.17 server-type...
Chapter 2 AAA Configuration Commands Parameter huawei: Configures the switch system to support the RADIUS server of Huawei type, which requires the RADIUS client end (switch system) and RADIUS server to interact according to the private RADIUS protocol regulation and packet format of Huawei Technologies Co., Ltd.
For the related commands, see radius scheme, primary authentication, secondary authentication, primary accounting, secondary accounting. Example # Set the second authentication server of RADIUS server group, “huawei”, to be active. [Quidway-radius-huawei] state secondary authentication active 2.2.19 stop-accounting-buffer enable Syntax...
For the related commands, see reset stop-accounting-buffer, radius scheme, display stop-accounting-buffer. Example # Indicate that, for the server “Huawei” in the RADIUS server group, the switch system will save the stopping accounting request packets in the buffer [Quidway-radius-huawei] stop-accounting-buffer enable 2.2.20 timer...
Setting a suitable timer according to the network situation will enhance the system performance. For the related commands, see radius scheme, retry. Example # Set the response timeout timer of RADIUS server group, huawei, to 5 seconds. [Quidway-radius-huawei] timer 5 2.2.21 timer realtime-accounting Syntax...
500 to 999 ≥1000 ≥15 For the related commands, see retry realtime-accounting , radius scheme. Example # Set the real-time accounting interval of RADIUS server group, “huawei”, to 15 minutes. [Quidway-radius-huawei] timer realtime-accounting 15 2.2.22 user-name-format Syntax user-name-format { with-domain | without-domain }...
Page 228
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Note: If a RADIUS server group is configured to reject usernames including ISP domain names, the RADIUS server group shall not be simultaneously used in more than one ISP domains. Otherwise, the RADIUS server will regard two users in different ISP domains as the same user by mistake, if they have the same username (excluding their respective domain names.)
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 3 HABP Configuration Commands Example # Display configuration information and state of HABP attribute. [Quidway] display habp Global HABP information: HABP Mode: Server Sending HABP request packets every 20 seconds...
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 3 HABP Configuration Commands [Quidway] habp enable 3.1.6 habp server vlan Syntax habp server vlan vlan-id undo habp server View System view Parameter vlan-id: VLAN ID, in range of 1~4094...
Page 233
Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 3 HABP Configuration Commands Description Using the habp timer command, you can define time interval for a switch to send HABP request packet. Using the undo habp timer command, you can restore the time interval to the default value.
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands Static ARP map entry will be always valid as long as Ethernet switch works normally. But if the VLAN corresponding ARP mapping entry is deleted, the ARP mapping entry will be also deleted.
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands Table 1-2 Output description of the display arp display Field Description IP Address IP address of the ARP mapping entry MAC Address MAC address of the ARP mapping entry...
Page 241
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands View User view Parameter dynamic: Clear the dynamic ARP mapping entries. static: Clear the static ARP mapping entries interface interface_name: Clear the ARP mapping entries that are related to the specified.
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 2 DHCP-Snooping Configuration Commands Chapter 2 DHCP-Snooping Configuration Commands 2.1 DHCP-Snooping Configuration Commands 2.1.1 dhcp-snooping Syntax dhcp-snooping undo dhcp-snooping View System view Parameter none Description Using dhcp-snooping command, you can enable DHCP-Snooping function on the switch to record users’...
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 2 DHCP-Snooping Configuration Commands 2.1.2 display dhcp-snooping Syntax display dhcp-snooping View Any view Parameter none Description Using display dhcp-snooping command, you can view the IP address and MAC address bindings recorded through DHCP-Snooping.
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Chapter 3 IP Performance Configuration Commands 3.1 IP Performance Configuration Commands 3.1.1 display fib Syntax display fib View Any view Parameter none Description Using display fib command, you can view the summary of the Forwarding Information Base.
Page 245
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands View Any view Parameter none Description Using display icmp statistics command, you can view the statistics information about ICMP packets. For the related command, see display ip interface vlan-interface, reset ip statistics.
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Field Description time exceeded Number of time exceeded packets 3.1.3 display ip statistics Syntax display ip statistics View Any view Parameter none Description Using display ip statistics command, you can view the statistics information about IP packets.
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Field Description bad protocol Number of packets with wrong protocol number bad format Number of packets in bad format bad checksum Number of packets with wrong checksum...
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Field Description Local Add: port Local IP address: local port Foreign Add: port Remote IP address; remote port State State of the TCP link 3.1.5 reset ip statistics...
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Parameter time-value: TCP finwait timer value in second, with the value ranging from 76 to 3600; By default, 675 seconds. Description Using tcp timer fin-timeout command, you can configure the TCP finwait timer. Using undo tcp timer fin-timeout command, you can restore the default value of the TCP finwait timer.
Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands TCP will enable the synwait timer, if a SYN packet is sent. The TCP connection will be terminated If the response packet is not received.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Chapter 1 File System Management Commands 1.1 File System 1.1.1 cd Syntax cd directory View User view Parameter directory: Destination directory; By default, the directory is the working path configured by the user when the system starts.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View User view Parameter fileurl-source: Source file name. fileurl-dest: Destination file name. Description Using copy command, you can copy a file. When the destination filename is the same as that of an existing file, the system will ask whether to overwrite it.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View User view Parameter file-url: path and name of the file you want to delete. Description Using delete command, you can cancel a specified file from the storage device of the Ethernet Switch.
Page 260
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using dir command, you can view the information about the specified file or directory in storage device of Ethernet Switch. Example # Display the information about the file flash:/test/test.txt <Quidway>...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.1.5 file prompt Syntax file prompt { alert | quiet } View System view Parameter alert: Perform interactive confirmation on dangerous file operations; The default value is alert, which configures to perform interactive confirmation on dangerous file operations.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using format command, you can format the storage device. Format operation will cause non-recoverable loss of all the files on the device. Specially, configuration files will be lost after formatting the flash memory.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.1.8 more Syntax more file-url View User view Parameter file-url: File name. Description Using more command, you can view content of specified file. At present, file system can display files in the text format.
Page 264
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands fileurl-dest: Destination file name. Description Using move command, you can move files. When the destination filename is the same as that of an existing file, the system will ask whether to overwrite it.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands <Quidway> dir flash:/test/ Directory of flash:/test/ drwxrwxrwx 1 noone nogroup Sep 20 2003 14:36:11 7932928 bytes total (4963328 bytes free) 1.1.10 pwd Syntax View...
Page 266
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands fileurl-dest: Destination file name. Description Using rename command, you can rename a file. If the destination file name is the same as an existing directory name, operation fails. If the destination file name is the same as an existing file name, prompt whether to overwrite.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.1.12 reset recycle-bin Syntax reset recycle-bin file-url View User view Parameter file-url: Name of the file to be deleted. Description Using reset recycle-bin command, you can permanently delete files from the recycle bin.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands The directory to be deleted must be empty. Example # Delete the directory huawei. <Quidway> rmdir huawei Rmdir huawei?[Y/N]:y % Removed directory huawei 1.1.14 undelete...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands # Recover the deleted file sample.bak. <Quidway> undelete sample.bak Undelete flash:/sample.bak ?[Y/N]:y % Undeleted file flash:/sample.bak # Display the information of all the files (including the deleted ones) in the current directory.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands After upgrade of software, configuration files in flash memory may not match the new version's software. Perform reset saved-configuration command to erase the old configuration files.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Get the current configuration files stored in the flash memory. <Quidway> save This will save the configuration in the flash memory. The switch configurations will be written to flash.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.3.2 display ftp-user Syntax display ftp-user View Any view Parameter none Description Using display ftp-user command, you can view the parameters of current FTP user.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using ftp server command, you can start FTP Server and enable FTP user logon. Using undo ftp server command, you can close FTP Server and disable FTP user logon.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View Local user view Parameter telnet: Specifies user type as Telnet. level level: Specifies the level of Telnet users. The argument level is an integer in the range of 0 to 3 and defaults to 3.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using ascii command, you can configure data transmission mode as ASCII mode. By default, the file transmission mode is ASCII mode. Perform this command if the user needs to change the file transmission mode to default mode.
Page 278
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View FTP Client view Parameter none Description Using bye command, you can disconnect with the remote FTP Server and return to user view. After performing this command, you can terminate the control connection and data connection with the remote FTP Server.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.4.5 cdup Syntax cdup View FTP Client view Parameter none Description Using cdup command, you can change working path to the upper level directory.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Terminate connection with the remote FTP Server and stays in FTP Client view. [ftp] close 1.4.7 delete Syntax delete remotefile View FTP Client view Parameter remotefile: File name.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using dir command, you can query a specified file. If no parameter of this command is specified, then all the files in the directory will be displayed.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View User view Parameter ipaddress: IP address of the remote FTP Server. port: Port number of remote FTP Server. Description Using ftp command, you can establish control connection with the remote FTP Server and enter FTP Client view.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands [ftp] get temp1.c temp.c 1.4.12 lcd Syntax View FTP Client view Parameter none Description Using lcd command, you can view local working path of FTP Client.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands If no parameter is specified, all the files will be shown. Example # Query file temp.c [ftp] ls temp.c 1.4.14 mkdir Syntax mkdir pathname...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Parameter none Description Using passive command, you can configure the data transmission mode as passive mode. Using undo passive command, you can configure the data transmission mode as active mode.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.4.17 pwd Syntax View FTP Client view Parameter none Description Using pwd command, you can view the current directory on the remote FTP Server.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Terminate connection with the remote FTP Server and returns to user view. [ftp] quit <Quidway> 1.4.19 remotehelp Syntax remotehelp [ protocol-command ]...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using rmdir command, you can cancel the specified directory from FTP Server. Example # Delete the directory flash:/temp1 from FTP Server. [ftp] rmdir flash:/temp1 1.4.21 user...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Parameter none Description Using verbose command, you can enable verbose. Using undo verbose command, you can disable verbose. By default, verbose is enabled. Example # Enable verbose.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Transmit the files in text format. [Quidway] tftp ascii 1.5.2 tftp get Syntax tftp get //A.A.A.A/xxx.yyy mmm.nnn View System view Parameter //A.A.A.A/xxx.yyy: Information about the file to be downloaded from the TFTP server.
Page 291
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View System view Parameter mmm.nnn: The file to be uploaded. //A.A.A.A/xxx.yyy: IP address of the TFTP server and the filename to be saved as.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 2 MAC Address Table Management Commands Example # Configure the port number corresponding to the MAC address 00e0-fc01-0101 as Ethernet0/1 in the address table, and sets this entry as static entry.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 2 MAC Address Table Management Commands 2.1.5 mac-address timer Syntax mac-address timer { aging age | no-aging } undo mac-address timer aging View System view Parameter aging age: Specifies the aging time (measured in seconds) of the Layer-2 dynamic address table entry, ranging from 10 to 1000000.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands Parameter file-url: File path and file name of Bootrom. Description Using boot bootrom command, you can upgrade bootrom. Example # Upgrade bootrom. <Quidway> boot bootrom PLATV100R002B09D002.btm 3.1.3 display boot-loader...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands Parameter None Description Using display cpu command, you can display CPU occupancy. Example # Display CPU occupancy. <Quidway> display cpu CPU busy status: 18% in last 5 seconds...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands number of ports, hardware version number, FPGA version number, BOOTROM software version number, application version number, address learning mode, interface card type and interface card type description, etc.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands <Quidway> display memory System Total Memory(bytes): 32491008 Total Used Memory(bytes): 13181348 Used Rate: 40% Table 3-3 Display information Field Description System Total Memory(bytes) The Total Memory of switch, unit in byte...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Chapter 4 System Maintenance Commands 4.1 Basic System Configuration and Management Commands 4.1.1 clock datetime Syntax clock datetime HH:MM:SS YYYY/MM/DD View User view Parameter HH:MM:SS: Current clock. HH ranges from 0 to 23. MM and SS range from 0 to 59.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.1.2 clock summer-time Syntax clock summer-time zone_name { one-off | repeating } start-time start-date end-time end-date offset-time undo clock summer-time View User view Parameter zone_name: Name of the summer time, which is a character with the length ranging 1 to 32.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Set the summer time for z2 that starts at 06:00:00 on 08/06/2002 and ends at 06:00:00 on 01/09/2002 with the time adding 1 hour.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Set the name of the local time zone as Z5 with the time adding 5 hours compared with the UTC. <Quidway> clock timezone z5 add 05:00:00 4.1.4 sysname...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.2 System Status and System Information Display Commands 4.2.1 display clock Syntax display clock View Any view Parameter none Description Using display clock command, subscribers can obtain information about system data and time from the terminal display.
Page 307
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Parameter controller: View the configuration information of controllers. interface: View the configuration information of interfaces. interface-type: Type of the interface. interface-number: Number of the interface.
Page 308
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands sysname QX-S2026 radius scheme system server-type nec primary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user-name-format without-domain domain system radius-scheme system access-limit disable state active...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.2.4 display saved-configuration Syntax display saved-configuration View Any view Parameter none Description Using display saved-configuration command, you can view the configuration files in the flash memory of Ethernet Switch.
Page 313
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands self-service-url disable messenger time disable domain default enable system local-server nas-ip 127.0.0.1 key nec interface Aux0/0 vlan 1 interface Ethernet0/1 interface Ethernet0/2 interface Ethernet0/3 interface Ethernet0/4...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Display the status of the current users. <Quidway> display users Delay IPaddress Username F 0 AUX 0 00:00:00 4.2.6 display version Syntax display version...
# Display all system configuration information <Quidway> display diagnostic-information This operation may take a few minutes, continue?[Y/N]y ---------------display clock--------------- 20:12:39 UTC Mon 2000/5/8 ---------------display version--------------- Huawei Versatile Routing Platform Software VRP (tm) software, Version 3.10 Copyright (c) 2000-2002 HUAWEI TECH CO., LTD. 4-16...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.4 Network Connection Test Commands 4.4.1 ping Syntax ping [ -a ip-address ] [-c count ] [ -d ] [ -h ttl ] [ -i {interface-type interface-num |...
Page 319
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands -tos tos: Specify TOS value for echo requests to be sent, range from 0 to 255. -v: Show other received ICMP packets (non ECHO-RESPONSE). string: Destination host domain name or IP address of the destination host.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Check whether the host 202.38.160.244 is reachable. <Quidway> ping 202.38.160.244 ping 202.38.160.244 : 56 data bytes Reply from 202.38.160.244 : bytes=56 sequence=1 ttl=255 time = 1ms Reply from 202.38.160.244 : bytes=56 sequence=2 ttl=255 time = 2ms...
Page 321
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands string: IP address of the destination host or the hostname of the remote system. Description Using tracert command, you can check the reachability of network connection and troubleshoot the network.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 10 129.140.81.7 (129.140.81.7) 199 ms 180 ms 300 ms 11 129.140.72.17 (129.140.72.17) 300 ms 239 ms 239 ms 12 * * * 13 128.121.54.72 (128.121.54.72) 259 ms 499 ms 279 ms...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.5.4 info-center console channel Syntax info-center console channel { channel-number | channel-name } undo info-center console channel View System view Parameter channel-number: Channel number, ranging from 0 to 9, that is, system has ten channels.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands View System view Parameter none Description Using info-center enable command, you can enable the system log function. Using undo info-center enable command, you can disable system log function.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands channel-name: Specify the channel name. The name can be channel6, channel7, channel8, channel9, console, logbuffer, loghost, monitor, snmpagent, trapbuffer. size: Configure the size of buffer.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands channel-name: Specify the channel name. The name can be channel6, channel7, channel8, channel9, console, logbuffer, loghost, monitor, snmpagent, trapbuffer. facility: Configure the recording tool of info-center loghost.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Description Using info-center loghost source command, you can set source address of the packets sent to loghost as the address of the interface specified by the interface-name.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands This command takes effect only after system logging is started. For the related commands, see info-center enable,display info-center. Example # Configure channel 0 to output log information to user terminal.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.5.11 info-center source Syntax info-center source { modu-name | default } channel { channel-number | channel-name } [ { log | trap | debug } * { level severity | state state } * ]...
Page 332
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Note: If you only specify the level for one/two of the three types of information, the level(s) of the unspecified two/one return(s) to the default. For example, if you only define the level of the log information, then the levels of the trap and debugging information return to the defaults.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands default log, trap and debugging settings in the records may be different with one another. Use default configuration record if a module does not have any specific configuration record in the channel.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.5.14 reset logbuffer Syntax reset logbuffer View User view Parameter none Description Using reset logbuffer command, you can reset information in log buffer. Example # Clear information in log buffer.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.5.16 terminal debugging Syntax terminal debugging undo terminal debugging View User view Parameter none Description Using terminal debugging command, you can configure to display the debugging information on the terminal.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Description Using terminal logging command, you can enable terminal log information display. Using undo terminal logging command, you can disable terminal log information display. By default, this function is enabled.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Description Using display snmp-agent group command, you can view group name, safe mode, state of various views and storage modes. Example # Display SNMP group name and safe mode.
Page 342
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands mib-view: Specify the mib view name. Description display snmp-agent mib-view command is used to view the MIB view configuration information of the Ethernet switch. Example # Display the information about the currently configured MIB view.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Caution: If the SNMP Agent is disabled, "Snmp Agent disabled" will be displayed after you execute the above display commands. 5.1.5 display snmp-agent statistics Syntax...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Parameter none Description Using display snmp-agent sys-info location command, you can view the character string describing the system location. Example # Display the system location.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.10 snmp-agent local-engineid Syntax snmp-agent local-engineid engineid undo snmp-agent local-engineid View System view Parameter local-engineid: Specify an engineID for the local SNMPv3 entity engineid: Specify the engine ID with a character string, only composed of hexadecimal numbers between 5 and 32 including;...
SNMP. Using undo snmp-agent community command, you can cancel the settings of community access name. Example # Configure community name as huawei and permits read-only access by this community name. [Quidway] snmp-agent community read huawei # Configure community name as mgr and permits read-write access.
Page 349
Any change of the SNMP group notify view will affect all the users related to this group. Please do not specify the notify view when configuring SNMP group. Example # Create an SNMP group named huawei. [Quidway] snmp-agent group v3 huawei. 5-11...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands View System view Parameter byte-count: Specify the size of SNMP packet (measured in bytes), ranging from 484 to 17940. By default, the size is 1500 bytes.
SNMP. Using undo snmp-agent sys-info location command, you can restore the default value. By default, the contact information is "HuaWei Beijing China", the system location is "Beijing China", the SNMP version is SNMP V3. Example # Set system location as Building 3/Room 214.
Page 353
Example # Enable sending Trap message to myhost.huawei.com with community name huawei. [Quidway] snmp-agent trap enable [Quidway] snmp-agent target-host trap address udp-domain 2.2.2.2 params securityname huawei # Enable sending Trap packets to 2.2.2.2 with the community name public...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.18 snmp-agent trap life Syntax snmp-agent trap life seconds undo snmp-agent trap life View System view Parameter seconds: Specify the timeouts, ranging from 1 to 2592000 seconds; By default, the timeout interval is 120 seconds.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Parameter length: Length of queue, ranging from 1 to 1000; By default, the length is 100. Description Using snmp-agent trap queue-size command, you can configure the information queue length of Trap packet sent to destination host.
For V1 and V2C, this command will add a new community name. For V3, it will add a new user for an SNMP group. Example # Add a user wang for huawei (an SNMP group), configures to authenticate with MD5 and sets authentication password as pass. [Quidway] snmp-agent usm-user v3 wang huawei authentication-mode md5 pass 5.1.22 undo snmp-agent...
Using display rmon alarm command, you can view RMON alarm information. For the related commands, see rmon alarm. Example # Display the RMON alarm information. <Quidway> display rmon alarm Alarm table 1 owned by HUAWEI is VALID. Samples absolute value : 1.3.6.1.2.1.16.1.1.1.4.1 <etherStatsOctets.1> Sampling interval : 10(sec) Rising threshold...
Example # Show the RMON event. <Quidway> display rmon event Event table 1 owned by HUAWEI is VALID. Description: null. Will cause log-trap when triggered, last triggered at 0days 00h:02m:27s. Table 6-2 Output description of the display rmon event command...
Example # Show event log of RMON. <Quidway> display rmon eventlog 1 Event table 1 owned by HUAWEI is VALID. Generates eventLog 1.1 at 0days 00h:01m:39s. Description: The 1.3.6.1.2.1.16.1.1.1.4.1 defined in alarm table 1, less than(or =) 100 with alarm value 0. Alarm sample type is absolute.
For the related commands, see rmon history. Example # Show the RMON history information. <Quidway> display rmon history ethernet 2/1 History control entry 1 owned by HUAWEI is VALID Samples interface : Ethernet2/1<ifEntry.642> Sampling interval : 10(sec) with 10 buckets max...
Using display rmon prialarm command, you can view information about extended alarm table. For the related commands, see rmon prialarm. Example # display alarm information about extended RMON. <Quidway> display rmon prialarm Prialarm table 1 owned by HUAWEI is VALID. Samples absolute value : 1.3.6.1.2.1.16.1.1.1.4.1...
Chapter 6 RMON Configuration Commands For the related commands, see rmon statistics. Example # Show RMON statistics. <Quidway> display rmon statistics Ethernet 2/1 Statistics entry 1 owned by HUAWEI is VALID. Interface : Ethernet2/1<ifEntry.642> Received octets , packets broadcast packets...
Page 366
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands View System view Parameter entry-number: Number of the entry to be added/deleted, ranging from 1 to 65535. alarm-variable: Specifies the alarm variable with a character string, ranging from 1 to 256, in the OID dotted format, like 1.3.6.1.2.1.2.1.10.1 (or ifInOctets.1).
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands 6.1.9 rmon history Syntax rmon history entry-number buckets number interval sampling-interval [ owner text-string ] undo rmon history entry-number View Ethernet port view Parameter entry-number: Number of the entry to be added/deleted, ranging from 1 to 65535.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands Using rmon prialarm command, you can add an entry to the extended RMON alarm table. Using undo rmon prialarm command, you can cancel an entry from the extended RMON alarm table.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Description Using debugging ntp-service command, you can debug different NTP services. Using undo debugging ntp-service command, you can disable corresponding debugging function. By default, no debugging function is enabled.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Output Meaning nominal frequency Nominal frequency of the local system hardware clock actual frequency Actual frequency of the local system hardware clock. clock precision Precision of local system clock...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands View System view Parameter query: Allow to control query authority. synchronization: Only allow the server to access. server: Allow query to server and access. peer: Full access authority.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands View System view Parameter None Description Using ntp-service authentication enable command, you can enable the NTP-service authentication function. Using undo ntp-service authentication enable command, you can disable this function.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Only MD5 authentication is supported for the NTP authentication key settings. Example # Set MD5 authentication key 10 as BetterKey. [Quidway] ntp-service authentication-keyid 10 authentication-mode md5 BetterKey 7.1.8 ntp-service broadcast-client...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands 7.1.9 ntp-service max-dynamic-sessions Syntax ntp-service max-dynamic-sessions number undo ntp-service max-dynamic-sessions View System view Parameter number: The maximum sessions can be created locally, ranging from 0 to 100.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Description Using ntp-service multicast-client command, you can configure the NTP multicast client mode. Using undo ntp-service multicast-client command, you can disable the NTP multicast client mode.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands By default, no key is configured as reliable. When you enable the authentication, you can use this command to configure one or more than one keys as reliable. In this case, a client will only get synchronized by a server whichever can provide a reliable key.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands The source address specifies where the packets are transmitted from. You can use this command to designate an interface to transmit all the NTP packets and take the source address of these packets from its IP address.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands than an IP address of broadcast, multicast, or reference clock. By operating in this mode, a local device can synchronize and be synchronized by a remote server.
Page 384
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands interface-number: Specify the interface number and determine an interface together with the interface-type parameter. priority: Designate a server as the first choice. Description Using ntp-service unicast-server command, you can configure NTP server mode.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Chapter 8 SSH Configuration Commands 8.1 SSH Configuration Commands 8.1.1 debugging rsa Command debugging rsa undo debugging rsa View User view Parameter None Description Using the debugging rsa command, you can send the detailed information of RSA algorithm, including every process and packet structure, to the information center as debugging information.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands undo debugging ssh server { all | vty index } View User view Parameter all: All SSH channels index: Debugged SSH channels. Optional values depend on the VTY number and they are 0~4.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands View Any view Parameter None Description Using the display rsa local-key-pair public command, you can display local key pair and public key of the server. If no key is generated, corresponding information will be prompted, for example, “RSA keys not found”.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Parameter brief: Displays brief information of the remote public key. keyname: Specifies key name, a string including 0~32 characters. Description Using the display rsa peer-public-key command, you can display a designated RSA public key.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Description Using the display ssh server command, you can display SSH state or session information. For the related commands, see ssh server authentication-retries, ssh server rekey-interval, ssh server timeout.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Parameter all: Supports both Telnet and SSH protocols. ssh: Supports only SSH protocol. telnet: Supports only Telnet protocol. Description Using the protocol inbound command, you can configure the protocols supported by a designated user interface.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Description Using the public-key-code begin command, you can enter RSA key code view. Before using this command, you have to create a public key with the rsa peer-public-key command.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands corresponding information will be prompted and the current configuration fails. If you have configured valid public key, the system will store it into the public key table.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Example # Create local host key pair and server key pair. [Quidway] rsa local-key-pair create The key name will be: Quidway_Host % You already have RSA keys defined for Quidway_Host % Do you really want to replace them? [yes/no]:y Choose the size of the key modulus in the range of 512 to 2048 for your Keys.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Example # Remove all key pairs at the server. [Quidway] rsa local-key-pair destroy % The name for the keys which will be destroyed is Quidway_Host .
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands View System view Parameter times: Specifies authentication retry times, in the range of 1~5. Description Using the ssh server authentication-retries command, you can define SSH authentication retry times value, which takes effect at next logon.
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Example # Define update interval of server key pair as 3 hours. [Quidway] ssh server rekey-interval 3 [Quidway] 8.1.16 ssh server timeout Command ssh server timeout seconds...
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands View System view Parameter keyname: Configures client public key, consisting of 1~32 characters. username: Valid local user name or user name defined by remote RADIUS system.
Page 399
Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands rsa: Specifies authentication type as RSA. Description Using the ssh user username authentication-type command, you can define authentication type for a designated user. Using the undo ssh user username authentication-type command, you can restore the default mode in which logon fails.
Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index Appendix A Command Index The command index includes all the commands in this command manual, which are arranged alphabetically. A B C D E F G H I J K L M N O P Q R S T U V W X Y Z...
Page 402
Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index clock timezone System Management close System Management 1-23 cluster Integrated 1-18 Management cluster enable Integrated 1-19 Management cluster switch-to Integrated 1-20 Management command-privilege level Getting Started copy...
Page 403
Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index display connection Security display cpu System Management display current-configuration System Management display debugging System Management 4-10 display debugging habp Security display device System Management display dhcp-snooping Network Protocol...
Page 404
Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index display loopback-detection Port display mac-address System Management display mac-address aging-time System Management display memory System Management display mirror Port display ndp Integrated Management display ntdp Integrated Management...
Page 412
Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index undelete System Management 1-12 undo snmp-agent System Management 5-20 unknown-multicast drop enable Multicast Protocol user System Management 1-32 user privilege level Getting Started 1-22 user-interface Getting Started...