Table of Contents

Advertisement

HUAWEI
Quidway S2000 Series Ethernet Switches
Command Manual
VRP3.10
1. Getting Started
2. Port
3. VLAN
4. Multicast
5. QoS/ACL
6. Integrated Management
7. STP
8. Security
9. Network Protocol
10. System Management
11. Appendix

Advertisement

Table of Contents
loading

Summary of Contents for Huawei Quidway S2000 Series

  • Page 1 HUAWEI 1. Getting Started 2. Port 3. VLAN 4. Multicast 5. QoS/ACL 6. Integrated Management 7. STP 8. Security 9. Network Protocol 10. System Management 11. Appendix Quidway S2000 Series Ethernet Switches Command Manual VRP3.10...
  • Page 2 31190196 Huawei Technologies Co., Ltd. provides customers with comprehensive technical support and service. If you purchase the products from the sales agent of Huawei Technologies Co., Ltd., please contact our sales agent. If you purchase the products from Huawei Technologies Co., Ltd. directly, Please feel free to contact our local office, customer care center or company headquarters.
  • Page 3 Copyright © 2004 Huawei Technologies Co., Ltd. All Rights Reserved No part of this manual may be reproduced or transmitted in any form or by any means without prior written consent of Huawei Technologies Co., Ltd. Trademarks , HUAWEI, C&C08, EAST8000, HONET,...
  • Page 4: About This Manual

    About This Manual Release Notes The product version that corresponds to the manual is VRP3.10. Related Manuals The following manuals provide more information about the Quidway S2000 Series Ethernet Switches. Manual Content Quidway S2403H Ethernet Switch It provides information for the system installation.
  • Page 5 Integrated Management This module introduces the commands used for integrated management. This module introduces the commands used for configuring STP. Security This module introduces the commands used for configuring 802.1X, AAA & RADIUS, and HABP. Network Protocol This module introduces the commands used for configuring network protocols. System Management This module introduces the commands used for system management and maintenance.
  • Page 6 II. Command conventions Convention Description Boldface The keywords of a command line are in Boldface. italic Command arguments are in italic. Items (keywords or arguments) in square brackets [ ] are optional. Alternative items are grouped in braces and separated by vertical bars. { x | y | ...
  • Page 7 Action Description Double Click Press the left button twice continuously and quickly. Drag Press and hold the left button and drag it to a certain position. VI. Symbols Eye-catching symbols are also used in the manual to highlight the points worthy of special attention during the operation.
  • Page 8: Getting Started

    HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 1. Getting Started...
  • Page 9: Table Of Contents

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 Logging in Ethernet Switch Commands ..............1-1 1.1 Logging in Ethernet Switch Commands ................1-1 1.1.1 authentication-mode....................1-1 1.1.2 auto-execute command................... 1-2 1.1.3 command-privilege level ..................
  • Page 10 Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Table of Contents 2.1.3 display ip host ......................2-2 2.1.4 display ip interface vlan-interface................2-3 2.1.5 display ip routing-table .................... 2-4 2.1.6 display ip routing-table ip_address ................. 2-5 2.1.7 display ip routing-table ip_address1 ip_address2........... 2-8 2.1.8 display ip routing-table verbose ................
  • Page 11: Chapter 1 Logging In Ethernet Switch Commands

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Chapter 1 Logging in Ethernet Switch Commands 1.1 Logging in Ethernet Switch Commands 1.1.1 authentication-mode Syntax authentication-mode { password | scheme authentication-mode none...
  • Page 12: Auto-Execute Command

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.2 auto-execute command Syntax auto-execute command text undo auto-execute command View User interface view Parameter text: Specifies the command to be run automatically.
  • Page 13: Databits

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands View System view Parameter level: Specifies the command level, ranging from 0 to 3. view: Specifies the command view, which can be any of the views supported by the switch.
  • Page 14: Display History-Command

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Parameter 5: The data bits are 5. 6: The data bits are 6. 7: The data bits are 7. 8: The data bits are 8.
  • Page 15: Display User-Interface

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.6 display user-interface Syntax display user-interface [ type number ] [ number ] View Any view Parameter type: Specifies the type of a user interface.
  • Page 16: Display Users

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Table 1-1 Output description of the display user-interface command Field Description Current user interface is in use. Current user interface is in use and work in asynchronous mode.
  • Page 17: Flow-Control

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.8 flow-control Syntax flow-control { hardware | none | software } undo flow-control View User interface view Parameter hardware: Configures to perform hardware flow control.
  • Page 18: Header

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Description Using free user-interface command, you can reset a specified user interface. The user interface will be disconnected after the command is executed.
  • Page 19: History-Command Max-Size

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Example # Configure the header of setting up a session. [Quidway] header shell % Enter TEXT message. End with the character '%'. SHELL : Hello! Welcome % The header of setting up a session displays on terminal when a user logs on again.
  • Page 20: Language-Mode

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands View User interface view Parameter minutes: Specifies the minute, ranging from 0 to 35791. seconds: Specifies the second, ranging from 0 to 59.
  • Page 21: Lock

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.14 lock Syntax lock View User view Parameter none Description Using lock command, you can lock the user interface to prevent unauthorized user from operating it.
  • Page 22: Quit

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands This command can only be performed in AUX user interface view. By default, the mode is set to none. Example # Set mark parity on the AUX (Console) port.
  • Page 23: Screen-Length

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Parameter none Description Using return command, you can return to user view from a view other than user view. Combination key <Ctrl+Z> performs the same function with the return command.
  • Page 24: Send

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands 1.1.19 send Syntax send { all | number | type number } View User view Parameter all: Configures to send message to all user interfaces.
  • Page 25: Set Authentication Password

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Visit level: Commands of this level involve command of network diagnosis tool (such as ping and tracert), command of switch between different language environments of user interface (language-mode), and telnet command etc.
  • Page 26: Shell

    By default, password is required to be set for authenticating the users connecting via Telnet. If no password has been set, the following prompt will be displayed “password required, but none set.” Example # Configure the local authentication password on VTY 0 to huawei. [Quidway-ui-vty0] set authentication password simple huawei 1.1.22 shell...
  • Page 27: Speed

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Description Using shell command, you can enable terminal service of a user interface. Using undo shell command, you can disable the terminal service of a user interface.
  • Page 28: Stopbits

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Example # Configure the transmission speed on the AUX (Console) port as 9600bit/s. [Quidway-ui-aux0] speed 9600 1.1.24 stopbits Syntax stopbits { 1 | 1.5 | 2 }...
  • Page 29: Super Password

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Description Using super command, you can enable the user to change to user level from the current user level. If the user has set the super password [ level level ] { simple | cipher } password, then user password of the higher level is needed, or the former user level will not change.
  • Page 30: Sysname

    Changing the hostname of the Ethernet switch will affect the prompt of command line interface. For example, if the hostname of the Ethernet switch is Quidway, the prompt in user view will be <Quidway>. Example # Configure the hostname of Ethernet switch to Huawei. [Quidway] sysname Huawei [Huawei] 1.1.28 system-view...
  • Page 31: Telnet

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands View User view Parameter none Description Using system-view command, you can enter system view from user view. For the related commands, see quit, return.
  • Page 32: User-Interface

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands <Quidway1> telnet 129.102.0.1 Trying 129.102.0.1 Connected to 129.102.0.1 <Quidway2> 1.1.30 user-interface Syntax user-interface [ type ] first-number [ last-number ] View System view Parameter type: Specifies the user interface type, which can be aux or vty.
  • Page 33 Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 1 Logging in Ethernet Switch Commands Description Using user privilege level command, you can configure which level of command a user can use after logon from the specifically user interface, so that a user can use all the available commands at this level.
  • Page 34: Chapter 2 System Ip Configuration Commands

    VLAN interface view Parameter string: Description character string of management VLAN interface, ranges from 1 to 32 characters. The default character string is HUAWEI, Quidway Series, Vlan-interface1 Interface. Vlan-interface1 is the management VLAN interface name. Description Using description command, you can configure the description character string of management VLAN interface.
  • Page 35: Display Ip Host

    Line protocol current state : DOWN IP Sending Frames' Format is PKTFMT_ETHNT_2, Hardware address is 00e0-fc07-4101 Internet Address is 10.1.1.1/24 Primary Description : HUAWEI, Quidway Series, Vlan-interface1 Interface The Maximum Transmit Unit is 1500 Table 2-1 Output description of display interface vlan-interface command...
  • Page 36: Display Ip Interface Vlan-Interface

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Example # Display all the host names and their IP addresses. <Quidway> display ip host Host Flags Address(es) static 1.1.1.1 static 2.2.2.4 Table 2-2 Output description of display ip host command...
  • Page 37: Display Ip Routing-Table

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Table 2-3 Output description of display ip interface vlan-interface command Field Description Vlan-interface1 current state The current state of management VLAN interface Line protocol current state...
  • Page 38: Display Ip Routing-Table Ip_Address

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands 127.0.0.1/32 DIRECT 127.0.0.1 InLoopBack0 Table 2-4 Description of information generated by the command display ip routing-table Field Description Destination/Mask Destination address/Mask length Proto Routing protocol...
  • Page 39 Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands This command only displays the route fully matching with specified destination address and mask. display ip routing-table ip_address longer-match This command displays all destination address route matching with destination address in natural mask range.
  • Page 40 Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands # There are no corresponding routes in the natural mask range (only displaying the longest matched route). Display the detailed information. <Quidway> display ip routing-table 169.253.0.0 verbose...
  • Page 41: Display Ip Routing-Table Ip_Address1 Ip_Address2

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Field Description Route state description: ActiveU The route is selected and is optimum Blackhole route is similar to Reject route, but it will not send the ICMP...
  • Page 42: Display Ip Routing-Table Verbose

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands verbose: With the verbose parameter, this command displays the verbose information of both the active and inactive routes. Without the parameter, this command only displays the summary of active routes.
  • Page 43: Interface Vlan-Interface

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Example # Display the verbose routing table information. <Quidway> display ip routing-table verbose Routing Tables: Generate Default: no + = Active Route, - = Last Active, # = Both...
  • Page 44: Ip Address

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands View System view Parameter vlan-id: Specifies the identification of management VLAN interface, ranging from 1 to 4094. Description Using interface vlan-interface command, you can create and enter management VLAN interface view.
  • Page 45: Ip Host

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands 2.1.11 ip host Syntax ip host hostname ip-address undo ip host hostname [ ip-address ] View System view Parameter hostname: Name of the host, a character string consisting of 1 to 20 characters, including letters, numbers, "_", or ",", and it must contain at least one letter.
  • Page 46: Shutdown

    Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands mask-length: Mask length. Since "1" s in the 32-bit mask are required to be consecutive, the mask in dotted decimal format can be replaced by mask-length, which is the number of the consecutive "1"...
  • Page 47 Command Manual - Getting Started Quidway S2000 Series Ethernet Switches Chapter 2 System IP Configuration Commands Description Using shutdown command, you can disable the management VLAN interface. Using undo shutdown command, you can enable the management VLAN interface. By default, when all the Ethernet ports belonging to the management VLAN are in down status, the management VLAN interface is also down, i.e.
  • Page 48 HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 2. Port...
  • Page 49 Command Manual - Port Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 Ethernet Port Configuration Commands..............1-1 1.1 Ethernet Port Configuration Commands................1-1 1.1.1 broadcast-suppression.................... 1-1 1.1.2 description ....................... 1-1 1.1.3 display interface ...................... 1-2 1.1.4 display lock-port-mac-aging-time ................
  • Page 50 Command Manual - Port Quidway S2000 Series Ethernet Switches Table of Contents 3.1.4 port mirror observing-port..................3-3...
  • Page 51: Chapter 1 Ethernet Port Configuration Commands

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Chapter 1 Ethernet Port Configuration Commands 1.1 Ethernet Port Configuration Commands 1.1.1 broadcast-suppression Syntax broadcast-suppression pct undo broadcast-suppression View Ethernet port view Parameter pct: Specifies the maximum wire speed ratio of the broadcast traffic allowed on the port.
  • Page 52: Display Interface

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter text: Port description character string, with 80 characters at most. Description Using description command, you can configure the description character string for Ethernet port. Using undo description command, you can cancel the port description character string.
  • Page 53 Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Ethernet0/1 current state : UP IP Sending Frames' Format is PKTFMT_ETHNT_2, Hardware address is 00e0-fc00-0010 Description : aaa The Maximum Transmit Unit is 1500 Media type is twisted pair, loopback not set...
  • Page 54: Display Lock-Port-Mac-Aging-Time

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Table 1-1 Output description of the display interface command Field Description Ethernet0/1 current state The current state of Ethernet port (enabled or disabled) IP Sending Frames' Format...
  • Page 55: Display Loopback-Detection

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter none Description Using display lock-port-mac-aging-time command, you can view the aging time of MAC address table corresponding to the lock port. Example # Display the MAC aging time of the lock port.
  • Page 56: Display Port

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Table 1-3 Output description of the display loopback-detection command Field Description Loopback-detection is running The loopback detection is enabled Detection interval time is 30 seconds...
  • Page 57: Flow-Control

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter auto: Port auto-negotiation attribute. full: Port full-duplex attribute. half: Port half-duplex attribute. Description Using duplex command, you can configure the full-duplex/half-duplex attribute of the Ethernet port.
  • Page 58: Interface

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.9 interface Syntax interface { interface_type interface_num | interface_name } View System view Parameter interface_type: Specifies the port type. For S2000 Series Ethernet Switches, it can only be Ethernet.
  • Page 59: Loopback

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands View System view Parameter age-time: Specifies the MAC aging time of a port. It ranges from 1 to 24, measured in hour. The default aging time is 1 hour.
  • Page 60: Loopback-Detection Control Enable

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.12 loopback-detection control enable Syntax loopback-detection control enable undo loopback-detection control enable View System view/Ethernet port view Parameter none Description Using the command, you can enable loopback detection controlled function on Trunk...
  • Page 61: Loopback-Detection Interval-Time

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Description Using loopback-detection enable command, you can enable the port loopback detection. If there is a loopback port found, the switch will put it under control. Using undo loopback-detection enable command, you can disable the port loopback detection.
  • Page 62: Loopback-Detection Per-Vlan Enable

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.15 loopback-detection per-vlan enable Syntax loopback-detection per-vlan enable undo loopback-detection per-vlan enable View Ethernet port view Parameter none Description Using the loopback-detection per-vlan enable command, you can configure that the system performs loopback detection to all VLANs on Trunk and Hybrid ports.
  • Page 63: Port Access Vlan

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Description Using mdi command, you can configure the network cable type of the Ethernet ports. Using undo mdi command, you can restore the default type.
  • Page 64: Port Hybrid Vlan

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter vlan_id: VLAN ID defined in IEEE802.1Q, ranging from1 to 4094 and the default vlan_id is 1. Description Using port hybrid pvid vlan command, you can configure the default VLAN ID of the hybrid port.
  • Page 65: Port Link-Type

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Hybrid port can belong to multiple VLANs. If the port hybrid vlan vlan_id_list { tagged | untagged } command is used for many times, the VLANs carried by the hybrid port is the set of vlan_id_list.
  • Page 66: Port Trunk Permit Vlan

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.21 port trunk permit vlan Syntax port trunk permit vlan { vlan_id_list | all } undo port trunk permit vlan { vlan_id_list | all }...
  • Page 67: Port Vlan Filter Disable

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Parameter vlan_id: VLAN ID defined in IEEE802.1Q, ranging from1 to 4094 and the default vlan_id is 1. Description Using port trunk pvid vlan command, you can configure the default VLAN ID of trunk port.
  • Page 68: Reset Counters Interface

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands 1.1.24 reset counters interface Syntax reset counters interface [ interface_type | interface_type interface_num | interface_name ] View User view Parameter interface_type: Specifies the port type.
  • Page 69: Speed

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 1 Ethernet Port Configuration Commands Description Using shutdown command, you can disable the Ethernet port. Using undo shutdown command, you can enable the Ethernet port. By default, the Ethernet port is enabled.
  • Page 70: Chapter 2 Ethernet Port Link Aggregation Commands

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 2 Ethernet Port Link Aggregation Commands Chapter 2 Ethernet Port Link Aggregation Commands 2.1 Ethernet Port Link Aggregation Commands 2.1.1 display link-aggregation Syntax display link-aggregation [ master_port_num ] View Any view Parameter master_port_num: Master port number in an aggregation port group.
  • Page 71: Link-Aggregation

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 2 Ethernet Port Link Aggregation Commands Table 2-1 The description of link aggregation Field Description Master port Master port Other sub-ports Other member ports Mode Aggregation mode 2.1.2 link-aggregation Syntax...
  • Page 72: Chapter 3 Ethernet Port Mirror Configuration Commands

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 3 Ethernet Port Mirror Configuration Commands Chapter 3 Ethernet Port Mirror Configuration Commands 3.1 Ethernet Port Mirror Configuration Commands 3.1.1 display mirror Syntax display mirror View Any view Parameter none Description Using display mirror command, you can view the information of monitor-mirror port.
  • Page 73: Port Mirror

    Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 3 Ethernet Port Mirror Configuration Commands undo monitor-port { interface_type interface_num | interface_name } View System view Parameter interface_name: Specified monitor port name, represented with interface_name= interface_type interface_num. interface_type is port type and interface_num is port number.
  • Page 74 Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 3 Ethernet Port Mirror Configuration Commands interface_name specifies port name expressed interface_name=interface_type interface_num. interface_type is the port type and interface_num is the port number. Description Using port mirror command, you can configure the mirror port. Using undo port mirror command, you can cancel the mirror port.
  • Page 75 Command Manual - Port Quidway S2000 Series Ethernet Switches Chapter 3 Ethernet Port Mirror Configuration Commands monitor port cannot be aggregated port. When the new monitor port is set, the former monitor port will be cancelled automatically. For the related commands, see monitor-port, port mirror, display mirror.
  • Page 76 HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 3. VLAN...
  • Page 77 Command Manual - VLAN Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 VLAN Configuration Commands................1-1 1.1 VLAN Configuration Commands..................1-1 1.1.1 description ....................... 1-1 1.1.2 display vlan......................1-1 1.1.3 port .......................... 1-2 1.1.4 vlan.......................... 1-3 1.1.5 vlan { enable | disable } ...................
  • Page 78: Chapter 1 Vlan Configuration Commands

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 1 VLAN Configuration Commands Chapter 1 VLAN Configuration Commands 1.1 VLAN Configuration Commands 1.1.1 description Syntax description string undo description View VLAN view Parameter string: description character string of current VLAN, with a length ranging from 1 to 32 characters.
  • Page 79: Port

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 1 VLAN Configuration Commands static: Display information of VLAN created statically by the system. dynamic: Display information of VLAN created dynamically by the system. Description Using display vlan command, you can view related information about the specified or all VLANs.
  • Page 80: Vlan

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 1 VLAN Configuration Commands name. For their meanings and value range, read Parameter of “Port” in this document. The interface number after keyword to must be larger than or equal to the port number before to.
  • Page 81: Vlan { Enable | Disable

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 1 VLAN Configuration Commands [Quidway] vlan 1 1.1.5 vlan { enable | disable } Syntax vlan { enable | disable } View System view Parameter enable: Enable VLAN features of equipment.
  • Page 82: Chapter 2 Isolate-User-Vlan Configuration Commands

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 2 Isolate-User-Vlan Configuration Commands Chapter 2 Isolate-User-Vlan Configuration Commands 2.1 isolate-user-vlan Configuration Commands 2.1.1 display isolate-user-vlan Syntax display isolate-user-vlan [ isolate-user-vlan_num ] View Any view Parameter isolate-user-vlan_num: VLAN ID of isolate-user-vlan, ranging from 1 to 4094.
  • Page 83: Isolate-User-Vlan

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 2 Isolate-User-Vlan Configuration Commands Vlan Type: static Private-vlan Type : Secondary Route Interface: not configured Description: VLAN 0004 Tagged Ports: none Untagged Ports: Ethernet0/4 Ethernet0/8 Vlan ID: 5 Vlan Type: static...
  • Page 84: Isolate-User-Vlan Enable

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 2 Isolate-User-Vlan Configuration Commands Secondary VLAN is established. The actual operation include: add the ports of isolate-user-vlan to every Secondary VLAN and add the ports of all Secondary VLANs to isolate-user-vlan.
  • Page 85: Chapter 3 Garp/Gvrp Configuration Commands

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands Chapter 3 GARP/GVRP Configuration Commands 3.1 GARP Configuration Commands 3.1.1 display garp statistics Syntax display garp statistics [ interface interface_list ] View Any view Parameter interface_list: List of Ethernet port to be displayed, expressed as interface _list = { { interface_type interface_num | interface_name } [ to { interface_type interface_num | interface_name } ] }&<1-10>.
  • Page 86: Display Garp Timer

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands 3.1.2 display garp timer Syntax display garp timer [ interface interface_list ] View Any view Parameter interface_list: List of Ethernet port to be displayed, expressed as interface _list = { { interface_type interface_num | interface_name } [ to { interface_type interface_num | interface_name } ] }&<1-10>.
  • Page 87: Garp Timer Leaveall

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands Parameter hold: GARP Hold timer. After received certain registration information, the GARP application entity will not send Join Message at once, instead, it starts the Hold timer.
  • Page 88: Reset Garp Statistics

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands Parameter timer_value: Value of GARP leaveall timer in centisecond, ranging from 65 to 32765. The step is 5 centiseconds. The value of Leaveall timer should be greater than the value of Leave timer.
  • Page 89: Gvrp Configuration Command

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands command has no parameter, it will clear the GARP statistics information of all the ports. For the related command, see display garp statistics. Example # Clear GARP statistics information.
  • Page 90: Display Gvrp Status

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands 3.2.2 display gvrp status Syntax display gvrp status View Any view Parameter none Description Using display gvrp status command, you can view the global status information about GVRP.
  • Page 91: Gvrp Registration

    Command Manual - VLAN Quidway S2000 Series Ethernet Switches Chapter 3 GARP/GVRP Configuration Commands For the related commands, see display gvrp status. Example # Enable global GVRP. [Quidway] gvrp 3.2.4 gvrp registration Syntax gvrp registration { fixed | forbidden | normal }...
  • Page 92 HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 4. Multicast...
  • Page 93 Command Manual - Multicast Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 GMRP Configuration Commands................1-1 1.1 GMRP Configuration Commands ..................1-1 1.1.1 debugging gmrp ...................... 1-1 1.1.2 display gmrp statistics ..................... 1-2 1.1.3 display gmrp status ....................1-2 1.1.4 gmrp ........................
  • Page 94: Chapter 1 Gmrp Configuration Commands

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 1 GMRP Configuration Commands Chapter 1 GMRP Configuration Commands 1.1 GMRP Configuration Commands 1.1.1 debugging gmrp Syntax debugging gmrp { event | packet } undo debugging gmrp { event | packet }...
  • Page 95: Display Gmrp Statistics

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 1 GMRP Configuration Commands 1.1.2 display gmrp statistics Syntax display gmrp statistics [ interface interface-list ] View Any view Parameter interface interface-list: Specifies Ethernet port list, expressed as interface-list = { { interface_type interface_num | interface_name } [ to { interface_type interface_num | interface_name } ]}&<1-10>.
  • Page 96: Gmrp

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 1 GMRP Configuration Commands Parameter none Description Using display gmrp status command, you can view the status of global GMRP. This command can be used for displaying the enabled/disabled status of global GMRP.
  • Page 97 Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 1 GMRP Configuration Commands Executed in system view, this command will enable the global GMRP. After performing this command in Ethernet port view, GMRP will be enabled on a port.
  • Page 98: Chapter 2 Igmp Snooping Configuration Commands

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands Chapter 2 IGMP Snooping Configuration Commands 2.1 IGMP Snooping Configuration Commands 2.1.1 display igmp-snooping configuration Syntax display igmp-snooping configuration View Any view Parameter none Description Using display igmp-snooping configuration command, you can view the IGMP Snooping configuration information.
  • Page 99: Display Igmp-Snooping Group

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands The information above tells us that: IGMP Snooping is enabled; the router port timer is set to be 300 seconds; the max response timer is set to be 50 seconds; the aging timer of multicast group member is set to be 500 seconds.
  • Page 100: Display Igmp-Snooping Statistics

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands We can know from the information listed above that : There is a multicast group in VLAN 2; The router port is Ethernet 0/1; The address of the multicast group is 230.45.45.1;...
  • Page 101: Igmp-Snooping

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands Received error IGMP packet(s) number:0. Sent IGMP specific query packet(s) number:0. 2.1.4 igmp-snooping Syntax igmp-snooping { enable | disable } undo igmp-snooping View System view Parameter enable: Enable IGMP Snooping.
  • Page 102: Igmp-Snooping Max-Response-Time

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands Parameter seconds: Specifies the port aging time of the multicast group member, ranging from 200 to 1000 and measured in seconds; By default, 260. Description Using igmp-snooping host-aging-time command, you can configure the port aging time of the multicast group members.
  • Page 103: Igmp-Snooping Router-Aging-Time

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands The set maximum response time decides the time limit for the switch to respond to IGMP Snooping general query packets. For the related command, see igmp-snooping, igmp-snooping router-aging-time.
  • Page 104: Reset Igmp-Snooping Statistics

    Command Manual - Multicast Quidway S2000 Series Ethernet Switches Chapter 2 IGMP Snooping Configuration Commands 2.1.8 reset igmp-snooping statistics Syntax reset igmp-snooping statistics View User view Parameter none Description Using reset igmp-snooping statistics command, you can reset the IGMP Snooping statistics information.
  • Page 105: Chapter 3 Unknown Multicast Dropping Configuration Commands

    Command Manual - Multicast Chapter 3 Unknown Multicast Dropping Configuration Quidway S2000 Series Ethernet Switches Commands Chapter 3 Unknown Multicast Dropping Configuration Commands 3.1 Unknown Multicast Dropping Configuration Commands 3.1.1 unknown-multicast drop enable Syntax unknown-multicast drop enable undo unknown-multicast drop enable...
  • Page 106 Command Manual - Multicast Chapter 3 Unknown Multicast Dropping Configuration Quidway S2000 Series Ethernet Switches Commands [Quidway] unknown-multicast drop enable...
  • Page 107 HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 5. QoS/ACL...
  • Page 108 Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 ACL Commands......................1-1 1.1 ACL Configuration Command List ..................1-1 1.1.1 acl..........................1-1 1.1.2 display acl config ..................... 1-2 1.1.3 display time-range....................1-3 1.1.4 reset acl counter......................
  • Page 109: Chapter 1 Acl Commands

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands Chapter 1 ACL Commands 1.1 ACL Configuration Command List 1.1.1 acl Syntax acl { number acl-number | name acl-name [ basic ] } [ match-order { config | auto } ]...
  • Page 110: Display Acl Config

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands match the rules. After specified the match order of an ACL, you cannot change it, unless delete all its rules and specify the order again. Note that, the match order of ACL can only be effective in the case ACL is cited by software to filter and classify data.
  • Page 111: Display Time-Range

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands Basic ACL 2010, 1 rule, rule 1 permit 10.0.0.1 0 (0 times matched) Basic ACL 2020, 1 rule, rule 2 permit 20.0.0.1 0 (0 times matched) Basic ACL std1, 2 rules, rule 1 permit 20.0.0.1 0 (0 times matched)
  • Page 112: Reset Acl Counter

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands Current time is 14:36:36 4-3-2003 Thursday Time-range : hhy ( Inactive ) from 08:30 2-5-2005 to 18:00 2-19-2005 Time-range : hhy1 ( Inactive ) from 08:30 2-5-2003 to 18:00 2-19-2003...
  • Page 113: Rule

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands View User view Parameter all: All the access lists (including numbered and named access lists). acl-number: Specifies an access list with a number in the range of 2000 and 3999.
  • Page 114: Time-Range

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands Parameter rule-id: Specifies a rule of an ACL with a number in the range of 0 to 127. permit: Indicates to let the matched packets through. deny: Indicates to reject the matched packets to pass through.
  • Page 115 Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 1 ACL Commands View System view Parameter time-name: Name of a special time range to be referenced. start-time: Start time of the special time range, format as hh:mm. end-time: End time of the special time range, format as hh:mm.
  • Page 116: Chapter 2 Qos Commands

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 2 QoS Commands Chapter 2 QoS Commands 2.1 QoS Configuration Command List 2.1.1 display queue-cycle Syntax display queue-cycle View Any view Parameter None Description Using display queue-cycle command, you can view the parameter settings of queue-cycle.
  • Page 117: Priority Trust

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 2 QoS Commands Description Using priority command, you can configure the priority of Ethernet port. Using undo priority command, you can restore the default port priority. By default, the port priority is 0.
  • Page 118: Queue-Cycle

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 2 QoS Commands Example # Configure system trusting the packet 802.1p priority and not replacing the 802.1p priorities carried by the packets with the port priority. [Quidway-Ethernet0/1] priority trust 2.1.4 queue-cycle...
  • Page 119: Chapter 3 Logon User's Acl Control Command

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 3 Logon user’s ACL control command Chapter 3 Logon user’s ACL control command 3.1 Logon user’s ACL control command 3.1.1 acl Syntax acl acl-number { inbound | outbound } View...
  • Page 120: Snmp-Agent Community

    Command Manual - QoS/ACL Quidway S2000 Series Ethernet Switches Chapter 3 Logon user’s ACL control command Parameter acl-number: Specifies a basic ACL with a number in the range of 2000 to 2999. Description Using ip http acl command, you can call an ACL and perform ACL control over the WEB network management users.
  • Page 121: Snmp-Agent Group

    Chapter 3 Logon user’s ACL control command Example # Configures huawei as the community name, allows read-only access to the switch by the name, meanwhile, performs the ACL control to the network management user by ACL 2020. (Suppose ACL 2020 has been defined.) [Quidway] snmp-agent community read huawei acl 2020 3.1.4 snmp-agent group...
  • Page 122: Snmp-Agent Usm-User

    SNMP group. Example # Creates a new SNMP group: huawei, and perform the ACL control to the group through ACL 2021. (Suppose ACL 2021 has been defined.) [Quidway] snmp-agent group v1 huawei acl 2021 3.1.5 snmp-agent usm-user...
  • Page 123 SNMP group, meanwhile delete the configuration of ACL control. Example # Adds a user huawei for huaweigroup (an SNMP group), configures to authenticate with HMAC-MD5-96 and sets authentication password as hello, meanwhile perform the ACL control to the user through ACL 2020. (Suppose ACL 2020 has been defined.)
  • Page 124 HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 6. Integrated Management...
  • Page 125 Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 HGMP V2 Configuration Commands ................. 1-1 1.1 NDP Configuration Commands ..................1-1 1.1.1 display ndp ......................1-1 1.1.2 ndp enable....................... 1-4 1.1.3 ndp timer hello......................1-5 1.1.4 ndp timer aging .......................
  • Page 126: Chapter 1 Hgmp V2 Configuration Commands

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Chapter 1 HGMP V2 Configuration Commands 1.1 NDP Configuration Commands 1.1.1 display ndp Syntax display ndp [ interface port-list ] View Any view Parameter interface port-list: Specifies a list of ports isolated from the specified port.
  • Page 127 Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Status: Enabled, Pkts Snd: 0, Pkts Rvd: 0, Pkts Err: 0 Interface: Ethernet0/3 Status: Enabled, Pkts Snd: 0, Pkts Rvd: 0, Pkts Err: 0...
  • Page 128 Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Interface: Ethernet0/17 Status: Enabled, Pkts Snd: 0, Pkts Rvd: 0, Pkts Err: 0 Interface: Ethernet0/18 Status: Enabled, Pkts Snd: 0, Pkts Rvd: 0, Pkts Err: 0...
  • Page 129: Ndp Enable

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Table 1-1 Information about NDP configuration the NDP neighbors discovered by a port Field Description Neighbor Discovery Protocol is enabled The system NDP is enabled on the switch...
  • Page 130: Ndp Timer Hello

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Example # Enable system NDP. [Quidway] ndp enable 1.1.3 ndp timer hello Syntax ndp timer hello seconds undo ndp timer hello View System view Parameter seconds: Specifies NDP packet interval and ranges from 5 to 254 in units of second.
  • Page 131: Reset Ndp Statistics

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands View System view Parameter aging-in-secs: Specifies how often to refresh the neighbor node information on a port and ranges from 5 to 255 in units of second. By default, NDP is aged in 180 seconds.
  • Page 132: Ntdp Configuration Commands

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands interface_name } [ to { interface_type interface_num | interface_name } ] } &<1-10>. interface_type specifies the port type. interface_num specifies the port number, expressed as slot number/port number. Key word to helps specify a port range.
  • Page 133: Display Ntdp Device-List

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Timer : 0 min Hop Delay : 200 ms Port Delay: 20 ms Last collection total time: 2216ms Table 1-2 Description of global NTDP configuration information...
  • Page 134 Platform : Quidway S3026 Version: Huawei Versatile Routing Platform Software VRP (tm) Software, Version 3.10 Quidway S3026 Software Version 3026-005, RELEASE SOFTWARE Copyright (c) 2000-2002 By HUAWEI TECH CO., LTD. Cluster : Candidate device Candidate device Stack Peer MAC Peer Port ID...
  • Page 135: Ntdp Enable

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands 00e0-fc07-4de0 Ethernet0/14 Ethernet0/8 FULL Table 1-4 Description of detail information of devices collected through NTDP Field Description Peer MAC MAC address of the peer device...
  • Page 136: Ntdp Explore

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Sometimes it only needs collecting the topology connected to the downlink ports, not caring about that connected to the uplink. In this case, NTDP is supposed to be disabled on the uplink ports.
  • Page 137: Ntdp Timer

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands View System view Parameter hop-value: Indicate the maximum hops that the device collected can be away from the topology collecting device, ranging from 1 to 16. By default, the value is 3.
  • Page 138: Ntdp Timer Hop-Delay

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Description Using ntdp timer command, you can configure the topology collection interval. Using undo ntdp timer command, you can restore the default topology collection interval.
  • Page 139: Ntdp Timer Port-Delay

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands This command is executed on the collecting device. The topology request contains the hop-delay time, according to which the collected device decides how long it shall wait before the first port forwards the request.
  • Page 140: Cluster Configuration Commands

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands [Quidway] ntdp timer port-delay 40 1.3 Cluster Configuration Commands 1.3.1 add-member Syntax add-member [member-num ] mac-address H-H-H [ password password ] View Cluster view Parameter member-num: Number of a member device, ranging from 1 to 256.
  • Page 141: Administrator-Address

    Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Example # Add the candidate device, with MAC address 00E0-fc00-35e7 and super-password huawei, to the cluster, and its member number is 6. [Huawei_0.Quidway-cluster] add-member 6 mac-address 00E0-fc00-35e7 password huawei 1.3.2 administrator-address...
  • Page 142: Auto-Build

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands 1.3.3 auto-build Syntax auto-build [ recover ] View Cluster view Parameter recover: automatic get back the members of a cluster for the administrator device when it reboot.
  • Page 143: Build

    Using it on an administrator device, you can rename a cluster. Using it on a candidate device, you can create a cluster. Example # Configure the current switch as the administrator device and specifies HUAWEI as the cluster name. [Quidway-cluster] build HUAWEI 1.3.5 cluster...
  • Page 144: Cluster Enable

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands View System view Parameter None Description Using cluster command, you can enter cluster view. Example # Enter cluster view. [Quidway] cluster [Quidway-cluster] 1.3.6 cluster enable...
  • Page 145: Cluster Switch-To

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Note: If the cluster function is disabled, you cannot create a cluster on the device or add it to a cluster. Example # Enable the cluster function of a switch.
  • Page 146: Delete-Member

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Authentication is also required when you switch from a member device to the administrator device. After passing the authentication, the system will enter the user view automatically.
  • Page 147: Display Cluster

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands 1.3.9 display cluster Syntax display cluster View Any view Parameter none Description Using display cluster command, you can view the state and basic configuration information of the cluster.
  • Page 148: Display Cluster Candidates

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Table 1-5 Description of cluster status and statistics information Field Description Cluster name Name of the cluster Role Role of the cluster member Handshake timer...
  • Page 149 Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Parameter mac-address H-H-H: MAC address of candidate device. verbose: Display the detailed information about the candidate device. Description Using display cluster candidates command, you can view candidate devices of the cluster.
  • Page 150: Display Cluster Members

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Hostname : LSW1 : 00e0-fc07-4de0 IP: 1.5.6.7/16 Platform : Quidway S3526 Table 1-7 Description of candidate device list information Field Description Hostname Name of the candidate device...
  • Page 151 Member status:Cmdr Hops to administrator device:0 IP: 1.1.200.210/16 Version: Huawei Versatile Routing Platform Software VRP (tm) Software, Version 3.10 Copyright (c) 2000-2002 By HUAWEI TECH CO., LTD. Quidway S3526 3526-003 Member number: 1 Name:Huawei_1.Quidway Device:Quidway S3026 MAC Address:00e0-fc00-a01f Member status:Up...
  • Page 152: Ftp-Server

    Member status:Up Hops to administrator device:1 IP: 1.5.6.7/16 Version: Huawei Versatile Routing Platform Software VRP (tm) Software, Version 3.10 Copyright (c) 2000-2002 By HUAWEI TECH CO., LTD. Quidway S3526 3526-003 Table 1-9 Description of detail information Field Description Member number:...
  • Page 153: Holdtime

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands The member device within cluster will access FTP server via administrator device. Configure the IP address of FTP server for the cluster, then the member devices of the cluster can access the server via the administrator device.
  • Page 154: Ip-Pool

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands 1.3.14 ip-pool Syntax ip-pool administrator-ip-address { ip-mask | ip-mask-length } undo ip-pool View Cluster view Parameter administrator-ip-address: IP address of the administrator device of the cluster.
  • Page 155: Port-Tagged

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands undo logging-host View Cluster view Parameter ip-address: IP address of logging host configured for the cluster. Description Using logging-host command, you can configure a public logging host for the member devices on the administrator device.
  • Page 156: Reboot Member

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands can cancel VLAN check for the communication inside a cluster on the administrator device. By default, VLAN check is performed. Example # Configure VLAN check for the communication inside a cluster.
  • Page 157: Snmp-Host

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands [Huawei_0.Quidway-cluster] reboot member 2 1.3.18 snmp-host Syntax snmp-host ip-address undo snmp-host View Cluster view Parameter ip-address: IP address of the SNMP host configured for the cluster.
  • Page 158: Timer

    Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands Parameter ip-address: IP address of TFTP server configured for the cluster. Description Using tftp-server command, you can configure the public TFTP server for the cluster members on the administrator device.
  • Page 159 Command Manual - Integrated Management Quidway S2000 Series Ethernet Switches Chapter 1 HGMP V2 Configuration Commands This command can only be executed on the administrator device, which will advertise the cluster timer value to the member devices. Example # Configure to send handshake packets once every 3 seconds.
  • Page 160 HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 7. STP...
  • Page 161 Command Manual - STP Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 RSTP Configuration Commands ................1-1 1.1 RSTP Configuration Commands ..................1-1 1.1.1 display stp ....................... 1-1 1.1.2 reset stp........................1-2 1.1.3 stp..........................1-3 1.1.4 stp bpdu-protection ....................
  • Page 162: Chapter 1 Rstp Configuration Commands

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Chapter 1 RSTP Configuration Commands 1.1 RSTP Configuration Commands 1.1.1 display stp Syntax display stp [ interface interface_list ] View Any view Parameter interface interface_list: Specifies the Ethernet port list, including multiple Ethernet ports.
  • Page 163: Reset Stp

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands The Port is a non-edged port Connected to a point-to-point LAN segment Maximum transmission limit is 3 Packets / hello time Times: Hello Time 2 sec,...
  • Page 164: Stp

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands [ to { interface_type interface_num | interface_name } ] }&<1-10>. For details about interface_type, interface_num and interface_name, refer to the Port Command Manual. &<1-10> indicates the preceding parameter can be input up to 10 times.
  • Page 165: Stp Bpdu-Protection

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands For the related command, see stp mode. Example # Enable RSTP on a switch. [Quidway] stp enable # Disable RSTP on Ethernet0/1. [Quidway-Ethernet0/1] stp disable 1.1.4 stp bpdu-protection...
  • Page 166: Stp Cost

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands 1.1.5 stp cost Syntax stp cost cost undo stp cost View Ethernet port view Parameter cost: Specifies the path cost, ranging from 1 to 200000. Description Using stp cost command, you can configure the path cost on a spanning tree for the current Ethernet port.
  • Page 167: Stp Loop-Protection

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands View Ethernet port view Parameter enable: Sets the current Ethernet port as an edge port. disable: Sets the current Ethernet port as a non-edge port. Description Using stp edged-port enable command, you can configure the current port as an edge port.
  • Page 168: Stp Mcheck

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands By default, the loop protection function is not enabled. Example # Enable loop protection function in Ethernet 0/1. [Quidway-Ethernet0/1] stp loop-protection 1.1.8 stp mcheck Syntax stp mcheck...
  • Page 169: Stp Point-To-Point

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands View System view Parameter stp: Specifies to run RSTP in STP compatible mode. rstp: Specifies to run RSTP in RSTP mode. Description Using stp mode command, you can configure the RSTP running mode. Using undo stp mode command, you can restore the default RSTP running mode.
  • Page 170: Stp Port Priority

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands By default, the value is auto. The requirements of current port connects to point-to-point link are current port is the master of an aggregated port or it works in full-duplex mode. The default setting, that is, checking by RSTP automatically is recommended.
  • Page 171: Stp Root Primary

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Parameter bridge-priority: Specifies the priority of a switch, ranging from 0 to 61440. The values are not consecutive integers. The step length is 4096. By default, the value is 32768.
  • Page 172: Stp Root Secondary

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Caution: In a switching network, you can configure no more than one primary root for a spanning tree but you can configure one or more secondary roots for it. Remember not to designate more than one primary root in a spanning tree;...
  • Page 173: Stp Root-Protection

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands After a switch is configured as primary root switch or secondary root switch, user can’t modify the bridge priority of the switch. Example # Designate the current switch as a secondary root of the STP.
  • Page 174: Stp Timeout-Factor

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands 1.1.16 stp timeout-factor Syntax stp timeout-factor number undo stp timeout-factor View System view Parameter number: Specifies the multiple of hello time, ranging from 3 to 7.
  • Page 175: Stp Timer Hello

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Parameter centiseconds: Specifies the time of forward delay in centisecond, ranging from 400 to 3000. By default, the value is 1500 centiseconds. Description Using stp timer forward-delay command, you can configure the time of forward delay for the switch.
  • Page 176: Stp Timer Max-Age

    Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Example # Set the hello time of the switch to 300 centiseconds. [Quidway] stp timer hello 300 1.1.19 stp timer max-age Syntax stp timer max-age centiseconds...
  • Page 177 Command Manual - STP Quidway S2000 Series Ethernet Switches Chapter 1 RSTP Configuration Commands Parameter packetnum: Specifies the maximum transmission speed of the port, ranging from 1 to 255. (It is a counter without unit.) By default, the value is 3.
  • Page 178 HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 8. Security...
  • Page 179 Command Manual - Security Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 802.1x Configuration Commands ................1-1 1.1 802.1x Configuration Commands ..................1-1 1.1.1 display dot1x ......................1-1 1.1.2 dot1x........................1-2 1.1.3 dot1x authentication-method................... 1-3 1.1.4 dot1x dhcp-launch ....................
  • Page 180 Command Manual - Security Quidway S2000 Series Ethernet Switches Table of Contents 2.2.6 key......................... 2-20 2.2.7 local-server......................2-21 2.2.8 primary accounting ....................2-21 2.2.9 primary authentication................... 2-22 2.2.10 radius scheme..................... 2-23 2.2.11 reset stop-accounting-buffer ................2-24 2.2.12 retry ........................2-25 2.2.13 retry realtime-accounting..................
  • Page 181: Chapter 1 802.1X Configuration Commands

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Chapter 1 802.1x Configuration Commands 1.1 802.1x Configuration Commands 1.1.1 display dot1x Syntax display dot1x [ sessions |statistics] [ interface interface-list ] View Any view Parameter sessions: Configures to display the session connection information of 802.1x.
  • Page 182: Dot1X

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Example # Display the configuration information of 802.1x. <Quidway> display dot1x Equipment 802.1X protocol is disabled CHAP authentication is enabled DHCP-launch is disabled Proxy trap checker is disabled...
  • Page 183: Dot1X Authentication-Method

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Ethernet port in the format interface-num = { interface-type interface-num | interface-name }, where interface-type specifies the port type, interface-num specifies the port number and interface-name specifies the port name. For the respective meanings and value ranges, read the Parameter of the Port Configuration section.
  • Page 184: Dot1X Dhcp-Launch

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands pap: Use PAP authentication method. eap: Use EAP authentication method. By now, only md5 encryption method is available Description Using dot1x authentication-method command, you can configure the authentication method for 802.1x user.
  • Page 185: Dot1X Max-User

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands and applies for dynamic IP addresses. Using undo dot1x dhcp-launch command, you can disable DHCP to launch ID authentication on the supplicant. By default, DHCP is not allowed launching user ID authentication.
  • Page 186: Dot1X Port-Control

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands the parameter interface-list when executed in system view. It has effect on all the interfaces when no interface is specified. The parameter interface-list cannot be input when the command is executed in Ethernet interface view and it has effect only on the current interface.
  • Page 187: Dot1X Port-Method

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Description Using dot1x port-control command, you can configure the mode for 802.1x to perform access control on the specified interface. Using undo dot1x port-control command, you can restore the default access control mode.
  • Page 188: Dot1X Quiet-Period

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands Description Using dot1x port-method command, you can configure the base for 802.1x to perform access control on the specified interface. Using undo dot1x port-method command, you can restore the default access control base.
  • Page 189: Dot1X Retry

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands again. During the quiet period, the Authenticator does not do anything related to 802.1x authentication. For the related commands, see display dot1x , dot1x timer. Example # Enable quiet-period timer.
  • Page 190: Dot1X Supp-Proxy-Check

    Note that when performing this function, the user logging on via proxy need to run Huawei 802.1x client program,( Huawei 802.1x client program version V1.29 or above is needed). This command is used to set on the specified interface when executed in system view.
  • Page 191: Dot1X Timer

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands [Quidway] dot1x supp-proxy-check trap [Quidway] dot1x supp-proxy-check trap interface Ethernet 0/1 [Quidway] dot1x supp-proxy-check trap [Quidway] interface Ethernet 0/1 [Quidway-Ethernet0/1] dot1x supp-proxy-check trap 1.1.11 dot1x timer...
  • Page 192: Dot1X Timer Handshake-Period

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands tx-period-value: Specify how long the duration of the transmission timeout timer is. The value ranges from 10 to 120 in units of second and defaults to 30.
  • Page 193: Reset Dot1X Statistics

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 1 802.1x Configuration Commands [Quidway] dot1x timer handshake-period 200 1.1.13 reset dot1x statistics Syntax reset dot1x statistics [ interface interface-list ] View User view Parameter interface interface-list: Ethernet port list including several Ethernet ports. interface-list = { interface-num [ to interface-num ] } &...
  • Page 194: Chapter 2 Aaa Configuration Commands

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Chapter 2 AAA Configuration Commands 2.1 AAA Configuration Commands 2.1.1 access-limit Syntax access-limit { disable | enable max-user-number } undo access-limit View ISP domain view Parameter disable: No limit to the supplicant number in the current ISP domain.
  • Page 195 Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands undo attribute { ip | mac | idle-cut | access-limit | vlan | location }* View Local user view Parameter ip: Specifies the IP address of a user.
  • Page 196: Cut Connection

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands 2.1.3 cut connection Syntax cut connection { all | access-type { dot1x | gcm } | domain domain-name | interface interface-type interface-number | ip ip-address | mac mac-address | radius-scheme...
  • Page 197: Display Connection

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands In some occasions, it is necessary to disconnect a user or a category of users by force. For the related command, see display connection. Example # Cut all the connections in the ISP domain, huawei163.net.
  • Page 198: Display Domain

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Description Using display connection command, you can view the relevant information of all the supplicants or the specified one(s). This command displays the information about a specified or all the users. The output can help you with the user connection diagnosis and troubleshooting.
  • Page 199: Display Local-User

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands State = Active AccessLimit = Disable Domain User Template: Idle cut = Disable Default Domain Name: system Total 1 domain(s).1 listed. 2.1.6 display local-user Syntax display local-user [ domain isp-name | idle-cut { enable | disable } | service-type...
  • Page 200: Domain

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Description Using display local-user command, you can view the relevant information of all the local users or the specified one(s). This command displays the relevant information about a specified or all the local users.
  • Page 201: Idle-Cut

    ISP domain is a group of users belonging to the same ISP. Generally, for a username in the userid@isp-name format, taking gw20010608@huawei163.net as an example, the isp-name (i.e.huawei163.net) following the @ is the ISP domain name. When Huawei Quidway Series Ethernet Switches control user access, as for an ISP user whose username is in userid@isp-name format, the system will take userid part as username for identification and take isp-name part as domain name.
  • Page 202: Local-User

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Parameter disable: means disabling the user to use idle-cut function . enable: means enabling the user to use idle-cut function. minute: Specifies the maximum idle time, ranging from 1 to 120 and measured in minutes.
  • Page 203: Local-User Password-Display-Mode

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Parameter user-name : Specifies a local username with a character string not exceeding 32 characters, excluding “/”, “:”, “*”, “?”, “<” and “>”. The @ character can only be used once in one username.
  • Page 204: Password

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Description Using local-user password-display-mode command, you can configure the password display mode of all the accessing users. Using undo local-user password-display-mode command, you can cancel the password display mode that has been set for all the accessing users.
  • Page 205: Radius-Scheme

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Example # Set the user huawei1 to display the password in simple text, given the password is 20030422. [Quidway-luser-huawei1] password simple 20030422 2.1.12 radius-scheme Syntax radius-scheme radius-scheme-name...
  • Page 206: State

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands View Local user view Parameter telnet: Specifies user type as Telnet. level level: Specifies the level of Telnet users. The argument level is an integer in the range of 0 to 3 and defaults to 1.
  • Page 207: Radius Protocol Configuration Commands

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Description Using state command, you can configure the state of the current ISP domain/ current user. By default, after an ISP domain is created, it is in the active state (in ISP domain view).
  • Page 208: Display Local-Server Statistics

    By default, the data unit is byte and the data packet unit is one-packet. For the related command, see display radius. Example # Set the unit of data flow that send to RADIUS Server Huawei is kilo-byte and the data packet unit is kilo-packet. [Quidway-radius-huawei] data-flow-format data kilo-byte packet kilo-packet 2.2.2 display local-server statistics...
  • Page 209: Display Radius

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands 2.2.3 display radius Syntax display radius [ radius-server-name ] View Any view Parameter radius-server-name: Specifies the RADIUS server group name with a character string not exceeding 32 characters, excluding “/”, “:”, “*”, “?”, “<” and “>”. Display all RADIUS server groups when the parameter is not set.
  • Page 210: Display Radius Statistics

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands 2.2.4 display radius statistics Syntax display radius statistics View Any view Parameter none Description Using display radius statistics command, you can view the statistics information of RADIUS packet.
  • Page 211: Display Stop-Accounting-Buffer

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Account off request ,Num=0 ,Err=0 ,Succ=0 Leaving request ,Num=0 ,Err=0 ,Succ=0 PKT auth timeout ,Num=0 ,Err=0 ,Succ=0 PKT acct_timeout ,Num=0 ,Err=0 ,Succ=0 Realtime Account ,Num=2317 ,Err=0...
  • Page 212 Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Parameter radius-scheme radius-server-name: Configures to display the saved stopping accounting requests according to RADIUS server name. radius-server-name specifies the RADIUS server name with a character string not exceeding 32 characters, excluding “/”, “:”, “*”, “?”, “<”...
  • Page 213: Key

    RADIUS authentication/authorization packet. string: Specifies the key with a character string not exceeding 16 characters, excluding “/”, “: ”, “*”, “? ”, “<” and “>”. By default, the key is “huawei”. Description Using command, configure encryption RADIUS authentication/authorization or accounting packet.
  • Page 214: Local-Server

    RADIUS function, i.e. realize basic RADIUS function on the switch. Note that when using local RADIUS server function of Huawei, remember the number of UDP port used for authentication is 1645 and that for accounting is 1646.
  • Page 215: Primary Authentication

    For the related commands, see key, radius scheme, state. Example # Set the IP address of the primary accounting server of RADIUS server group, “huawei”, to 10.110.1.2 and the UDP port 1813 to provide RADIUS accounting service. [Quidway-radius-huawei] primary accounting 10.110.1.2 1813 2.2.9 primary authentication...
  • Page 216: Radius Scheme

    For the related commands, see key, radius scheme , state. Example # Set the IP address of the primary authentication/authorization server of RADIUS server group, “huawei”, to 10.110.1.1 and the UDP port 1812 to provide RADIUS authentication/authorization service. [Quidway-radius-huawei] primary authentication auth 10.110.1.1 1812 2.2.10 radius scheme...
  • Page 217: Reset Stop-Accounting-Buffer

    , display radius, display radius statistics . Example # Create a RADIUS server group named “huawei” and enters its view. [Quidway] radius scheme huawei [Quidway-radius-huawei] 2.2.11 reset stop-accounting-buffer Syntax reset stop-accounting-buffer { radius-scheme radius-scheme-name | session-id...
  • Page 218: Retry

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands time is expressed in the format hh:mm:ss-yyyy/mm/dd. When this parameter is set, all the stopping accounting requests saved since start-time to stop-time will be deleted. user-name user-name : Configures to delete the stopping accounting requests from the buffer according to the username.
  • Page 219: Retry Realtime-Accounting

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Parameter retry-times: Specifies the maximum times of retransmission, ranging from 1 to 20. By default, the value is 3. Description Using retry command, you can configure retransmission times of RADIUS request packet.
  • Page 220: Retry Stop-Accounting

    Accordingly, it is necessary to disconnect the user at NAS end and on RADIUS server synchronously when some unexpected failure occurs. Huawei Quidway Series Ethernet Switches support to set maximum times of real-time accounting request failing to be responded. NAS will disconnect the user if it has not received real-time accounting response from RADIUS server for some specified times.
  • Page 221: Secondary Accounting

    For the related commands, see key, radius scheme, state. Example # Set the IP address of the second accounting server of RADIUS server group, huawei, to 10.110.1.1 and the UDP port 1813 to provide RADIUS accounting service. [Quidway-radius-huawei] secondary accounting 10.110.1.1 1813...
  • Page 222: Secondary Authentication

    For the related commands, see key, radius scheme, state. Example # Set the IP address of the second authentication/authorization server of RADIUS server group, “huawei”, to 10.110.1.2 and the UDP port 1812 to provide RADIUS authentication/authorization service. [Quidway-radius-huawei] secondary authentication 10.110.1.2 1812 2.2.17 server-type...
  • Page 223: State

    Chapter 2 AAA Configuration Commands Parameter huawei: Configures the switch system to support the RADIUS server of Huawei type, which requires the RADIUS client end (switch system) and RADIUS server to interact according to the private RADIUS protocol regulation and packet format of Huawei Technologies Co., Ltd.
  • Page 224: Stop-Accounting-Buffer Enable

    For the related commands, see radius scheme, primary authentication, secondary authentication, primary accounting, secondary accounting. Example # Set the second authentication server of RADIUS server group, “huawei”, to be active. [Quidway-radius-huawei] state secondary authentication active 2.2.19 stop-accounting-buffer enable Syntax...
  • Page 225: Timer

    For the related commands, see reset stop-accounting-buffer, radius scheme, display stop-accounting-buffer. Example # Indicate that, for the server “Huawei” in the RADIUS server group, the switch system will save the stopping accounting request packets in the buffer [Quidway-radius-huawei] stop-accounting-buffer enable 2.2.20 timer...
  • Page 226: Timer Realtime-Accounting

    Setting a suitable timer according to the network situation will enhance the system performance. For the related commands, see radius scheme, retry. Example # Set the response timeout timer of RADIUS server group, huawei, to 5 seconds. [Quidway-radius-huawei] timer 5 2.2.21 timer realtime-accounting Syntax...
  • Page 227: User-Name-Format

    500 to 999 ≥1000 ≥15 For the related commands, see retry realtime-accounting , radius scheme. Example # Set the real-time accounting interval of RADIUS server group, “huawei”, to 15 minutes. [Quidway-radius-huawei] timer realtime-accounting 15 2.2.22 user-name-format Syntax user-name-format { with-domain | without-domain }...
  • Page 228 Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 2 AAA Configuration Commands Note: If a RADIUS server group is configured to reject usernames including ISP domain names, the RADIUS server group shall not be simultaneously used in more than one ISP domains. Otherwise, the RADIUS server will regard two users in different ISP domains as the same user by mistake, if they have the same username (excluding their respective domain names.)
  • Page 229: Chapter 3 Habp Configuration Commands

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 3 HABP Configuration Commands Chapter 3 HABP Configuration Commands 3.1 HABP Commands 3.1.1 display debugging habp Syntax display debugging habp View Any view Parameter None Description Using the display debugging habp command, you can view HAMP debugging state.
  • Page 230: Display Habp Table

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 3 HABP Configuration Commands Example # Display configuration information and state of HABP attribute. [Quidway] display habp Global HABP information: HABP Mode: Server Sending HABP request packets every 20 seconds...
  • Page 231: Habp Enable

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 3 HABP Configuration Commands View Any view Parameter None Description Using the display habp traffic command, you can view HABP packet statistics. Example # Display HABP packet statistics. [Quidway] display habp traffic...
  • Page 232: Habp Server Vlan

    Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 3 HABP Configuration Commands [Quidway] habp enable 3.1.6 habp server vlan Syntax habp server vlan vlan-id undo habp server View System view Parameter vlan-id: VLAN ID, in range of 1~4094...
  • Page 233 Command Manual - Security Quidway S2000 Series Ethernet Switches Chapter 3 HABP Configuration Commands Description Using the habp timer command, you can define time interval for a switch to send HABP request packet. Using the undo habp timer command, you can restore the time interval to the default value.
  • Page 234: Network Protocol

    HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 9. Network Protocol...
  • Page 235 Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 ARP Configuration Commands .................. 1-1 1.1 ARP Configuration Commands..................1-1 1.1.1 arp static........................1-1 1.1.2 arp timer aging ......................1-2 1.1.3 debugging arp packet....................1-3 1.1.4 display arp .......................
  • Page 236: Chapter 1 Arp Configuration Commands

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands Chapter 1 ARP Configuration Commands 1.1 ARP Configuration Commands 1.1.1 arp static Syntax arp static ip-address mac-address [ vlan-id { interface_type interface_num | interface_name } ]...
  • Page 237: Arp Timer Aging

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands Static ARP map entry will be always valid as long as Ethernet switch works normally. But if the VLAN corresponding ARP mapping entry is deleted, the ARP mapping entry will be also deleted.
  • Page 238: Debugging Arp Packet

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands 1.1.3 debugging arp packet Syntax debugging arp packet undo debugging arp packet View User view Parameter packet: ARP packet debugging. Description Using debugging arp command, you can enable ARP debugging. Using undo debugging arp command, you can disable the corresponding ARP debugging.
  • Page 239: Display Arp

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands Table 1-1 Output description of the debugging arp packet display Field Description operation Kind of ARP packets: 1 ARP request packet; 2 ARP reply packet...
  • Page 240: Display Arp Timer Aging

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands Table 1-2 Output description of the display arp display Field Description IP Address IP address of the ARP mapping entry MAC Address MAC address of the ARP mapping entry...
  • Page 241 Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 1 ARP Configuration Commands View User view Parameter dynamic: Clear the dynamic ARP mapping entries. static: Clear the static ARP mapping entries interface interface_name: Clear the ARP mapping entries that are related to the specified.
  • Page 242: Chapter 2 Dhcp-Snooping Configuration Commands

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 2 DHCP-Snooping Configuration Commands Chapter 2 DHCP-Snooping Configuration Commands 2.1 DHCP-Snooping Configuration Commands 2.1.1 dhcp-snooping Syntax dhcp-snooping undo dhcp-snooping View System view Parameter none Description Using dhcp-snooping command, you can enable DHCP-Snooping function on the switch to record users’...
  • Page 243: Display Dhcp-Snooping

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 2 DHCP-Snooping Configuration Commands 2.1.2 display dhcp-snooping Syntax display dhcp-snooping View Any view Parameter none Description Using display dhcp-snooping command, you can view the IP address and MAC address bindings recorded through DHCP-Snooping.
  • Page 244: Chapter 3 Ip Performance Configuration Commands

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Chapter 3 IP Performance Configuration Commands 3.1 IP Performance Configuration Commands 3.1.1 display fib Syntax display fib View Any view Parameter none Description Using display fib command, you can view the summary of the Forwarding Information Base.
  • Page 245 Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands View Any view Parameter none Description Using display icmp statistics command, you can view the statistics information about ICMP packets. For the related command, see display ip interface vlan-interface, reset ip statistics.
  • Page 246: Display Ip Statistics

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Field Description time exceeded Number of time exceeded packets 3.1.3 display ip statistics Syntax display ip statistics View Any view Parameter none Description Using display ip statistics command, you can view the statistics information about IP packets.
  • Page 247: Display Tcp Status

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Field Description bad protocol Number of packets with wrong protocol number bad format Number of packets in bad format bad checksum Number of packets with wrong checksum...
  • Page 248: Reset Ip Statistics

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Field Description Local Add: port Local IP address: local port Foreign Add: port Remote IP address; remote port State State of the TCP link 3.1.5 reset ip statistics...
  • Page 249: Tcp Timer Syn-Timeout

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands Parameter time-value: TCP finwait timer value in second, with the value ranging from 76 to 3600; By default, 675 seconds. Description Using tcp timer fin-timeout command, you can configure the TCP finwait timer. Using undo tcp timer fin-timeout command, you can restore the default value of the TCP finwait timer.
  • Page 250: Tcp Window

    Command Manual - Network Protocol Quidway S2000 Series Ethernet Switches Chapter 3 IP Performance Configuration Commands TCP will enable the synwait timer, if a SYN packet is sent. The TCP connection will be terminated If the response packet is not received.
  • Page 251: System Management

    HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 10. System Management...
  • Page 252 Command Manual - System Management Quidway S2000 Series Ethernet Switches Table of Contents Table of Contents Chapter 1 File System Management Commands ............... 1-1 1.1 File System ........................1-1 1.1.1 cd..........................1-1 1.1.2 copy......................... 1-1 1.1.3 delete........................1-2 1.1.4 dir ..........................1-3 1.1.5 file prompt........................
  • Page 253 Command Manual - System Management Quidway S2000 Series Ethernet Switches Table of Contents 1.4.10 ftp ........................1-25 1.4.11 get ........................1-26 1.4.12 lcd........................1-27 1.4.13 ls .......................... 1-27 1.4.14 mkdir........................1-28 1.4.15 passive ........................ 1-28 1.4.16 put ........................1-29 1.4.17 pwd........................1-30 1.4.18 quit........................
  • Page 254 Command Manual - System Management Quidway S2000 Series Ethernet Switches Table of Contents 4.2.2 display current-configuration ................... 4-5 4.2.3 display debugging ....................4-10 4.2.4 display saved-configuration................... 4-11 4.2.5 display users ......................4-13 4.2.6 display version ...................... 4-14 4.3 System Debug Commands....................4-15 4.3.1 debugging......................
  • Page 255 Command Manual - System Management Quidway S2000 Series Ethernet Switches Table of Contents 5.1.10 snmp-agent local-engineid ..................5-9 5.1.11 snmp-agent community..................5-9 5.1.12 snmp-agent group ....................5-10 5.1.13 snmp-agent mib-view ..................5-12 5.1.14 snmp-agent packet max-size ................5-12 5.1.15 snmp-agent sys-info.................... 5-13 5.1.16 snmp-agent target-host ..................
  • Page 256 Command Manual - System Management Quidway S2000 Series Ethernet Switches Table of Contents 7.1.15 ntp-service unicast-server ................... 7-13 Chapter 8 SSH Configuration Commands .................. 8-1 8.1 SSH Configuration Commands..................8-1 8.1.1 debugging rsa ......................8-1 8.1.2 debugging ssh server ....................8-1 8.1.3 display rsa local-key-pair public ................
  • Page 257: Chapter 1 File System Management Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Chapter 1 File System Management Commands 1.1 File System 1.1.1 cd Syntax cd directory View User view Parameter directory: Destination directory; By default, the directory is the working path configured by the user when the system starts.
  • Page 258: Delete

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View User view Parameter fileurl-source: Source file name. fileurl-dest: Destination file name. Description Using copy command, you can copy a file. When the destination filename is the same as that of an existing file, the system will ask whether to overwrite it.
  • Page 259: Dir

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View User view Parameter file-url: path and name of the file you want to delete. Description Using delete command, you can cancel a specified file from the storage device of the Ethernet Switch.
  • Page 260 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using dir command, you can view the information about the specified file or directory in storage device of Ethernet Switch. Example # Display the information about the file flash:/test/test.txt <Quidway>...
  • Page 261: File Prompt

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.1.5 file prompt Syntax file prompt { alert | quiet } View System view Parameter alert: Perform interactive confirmation on dangerous file operations; The default value is alert, which configures to perform interactive confirmation on dangerous file operations.
  • Page 262: Mkdir

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using format command, you can format the storage device. Format operation will cause non-recoverable loss of all the files on the device. Specially, configuration files will be lost after formatting the flash memory.
  • Page 263: More

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.1.8 more Syntax more file-url View User view Parameter file-url: File name. Description Using more command, you can view content of specified file. At present, file system can display files in the text format.
  • Page 264 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands fileurl-dest: Destination file name. Description Using move command, you can move files. When the destination filename is the same as that of an existing file, the system will ask whether to overwrite it.
  • Page 265: Pwd

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands <Quidway> dir flash:/test/ Directory of flash:/test/ drwxrwxrwx 1 noone nogroup Sep 20 2003 14:36:11 7932928 bytes total (4963328 bytes free) 1.1.10 pwd Syntax View...
  • Page 266 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands fileurl-dest: Destination file name. Description Using rename command, you can rename a file. If the destination file name is the same as an existing directory name, operation fails. If the destination file name is the same as an existing file name, prompt whether to overwrite.
  • Page 267: Reset Recycle-Bin

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.1.12 reset recycle-bin Syntax reset recycle-bin file-url View User view Parameter file-url: Name of the file to be deleted. Description Using reset recycle-bin command, you can permanently delete files from the recycle bin.
  • Page 268: Undelete

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands The directory to be deleted must be empty. Example # Delete the directory huawei. <Quidway> rmdir huawei Rmdir huawei?[Y/N]:y % Removed directory huawei 1.1.14 undelete...
  • Page 269: Configuration File Management Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands # Recover the deleted file sample.bak. <Quidway> undelete sample.bak Undelete flash:/sample.bak ?[Y/N]:y % Undeleted file flash:/sample.bak # Display the information of all the files (including the deleted ones) in the current directory.
  • Page 270: Save

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands After upgrade of software, configuration files in flash memory may not match the new version's software. Perform reset saved-configuration command to erase the old configuration files.
  • Page 271: Ftp Server Configuration Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Get the current configuration files stored in the flash memory. <Quidway> save This will save the configuration in the flash memory. The switch configurations will be written to flash.
  • Page 272: Display Ftp-User

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.3.2 display ftp-user Syntax display ftp-user View Any view Parameter none Description Using display ftp-user command, you can view the parameters of current FTP user.
  • Page 273: Ftp Timeout

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using ftp server command, you can start FTP Server and enable FTP user logon. Using undo ftp server command, you can close FTP Server and disable FTP user logon.
  • Page 274: Local-User

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Set the connection timeout to 36 minutes. [Quidway] ftp timeout 36 1.3.5 local-user Syntax local-user user-name undo local-user { user-name | all [ service-type { telnet | ftp | lan-access } ] }...
  • Page 275: Password

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.3.6 password Syntax password { simple | cipher } password undo password View Local user view Parameter simple: Specifies to display passwords in simple text.
  • Page 276: Ftp Client Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View Local user view Parameter telnet: Specifies user type as Telnet. level level: Specifies the level of Telnet users. The argument level is an integer in the range of 0 to 3 and defaults to 3.
  • Page 277: Binary

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using ascii command, you can configure data transmission mode as ASCII mode. By default, the file transmission mode is ASCII mode. Perform this command if the user needs to change the file transmission mode to default mode.
  • Page 278 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View FTP Client view Parameter none Description Using bye command, you can disconnect with the remote FTP Server and return to user view. After performing this command, you can terminate the control connection and data connection with the remote FTP Server.
  • Page 279: Cdup

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.4.5 cdup Syntax cdup View FTP Client view Parameter none Description Using cdup command, you can change working path to the upper level directory.
  • Page 280: Delete

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Terminate connection with the remote FTP Server and stays in FTP Client view. [ftp] close 1.4.7 delete Syntax delete remotefile View FTP Client view Parameter remotefile: File name.
  • Page 281: Disconnect

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using dir command, you can query a specified file. If no parameter of this command is specified, then all the files in the directory will be displayed.
  • Page 282: Get

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View User view Parameter ipaddress: IP address of the remote FTP Server. port: Port number of remote FTP Server. Description Using ftp command, you can establish control connection with the remote FTP Server and enter FTP Client view.
  • Page 283: Lcd

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands [ftp] get temp1.c temp.c 1.4.12 lcd Syntax View FTP Client view Parameter none Description Using lcd command, you can view local working path of FTP Client.
  • Page 284: Mkdir

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands If no parameter is specified, all the files will be shown. Example # Query file temp.c [ftp] ls temp.c 1.4.14 mkdir Syntax mkdir pathname...
  • Page 285: Put

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Parameter none Description Using passive command, you can configure the data transmission mode as passive mode. Using undo passive command, you can configure the data transmission mode as active mode.
  • Page 286: Pwd

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands 1.4.17 pwd Syntax View FTP Client view Parameter none Description Using pwd command, you can view the current directory on the remote FTP Server.
  • Page 287: Remotehelp

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Terminate connection with the remote FTP Server and returns to user view. [ftp] quit <Quidway> 1.4.19 remotehelp Syntax remotehelp [ protocol-command ]...
  • Page 288: User

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Description Using rmdir command, you can cancel the specified directory from FTP Server. Example # Delete the directory flash:/temp1 from FTP Server. [ftp] rmdir flash:/temp1 1.4.21 user...
  • Page 289: Tftp Configuration Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Parameter none Description Using verbose command, you can enable verbose. Using undo verbose command, you can disable verbose. By default, verbose is enabled. Example # Enable verbose.
  • Page 290: Tftp Get

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands Example # Transmit the files in text format. [Quidway] tftp ascii 1.5.2 tftp get Syntax tftp get //A.A.A.A/xxx.yyy mmm.nnn View System view Parameter //A.A.A.A/xxx.yyy: Information about the file to be downloaded from the TFTP server.
  • Page 291 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 1 File System Management Commands View System view Parameter mmm.nnn: The file to be uploaded. //A.A.A.A/xxx.yyy: IP address of the TFTP server and the filename to be saved as.
  • Page 292: Chapter 2 Mac Address Table Management Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 2 MAC Address Table Management Commands Chapter 2 MAC Address Table Management Commands 2.1 MAC Address Table Management Commands 2.1.1 display mac-address aging-time Syntax display mac-address aging-time View Any view...
  • Page 293: Display Mac-Address

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 2 MAC Address Table Management Commands 2.1.2 display mac-address Syntax display mac-address [ mac-addr [ vlan vlan-id ] | [ static | dynamic ] [ interface { interface-name | interface-type interface-num } ] [ vlan vlan-id ] [ count ] ]...
  • Page 294: Mac-Address

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 2 MAC Address Table Management Commands MAC ADDR VLAN ID STATE PORT INDEX AGING TIME(s) 00e0-fc01-0101 Learned Ethernet0/1 2.1.3 mac-address Syntax mac-address { static | dynamic } mac-addr interface { interface-name | interface-type...
  • Page 295: Mac-Address Max-Mac-Count

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 2 MAC Address Table Management Commands Example # Configure the port number corresponding to the MAC address 00e0-fc01-0101 as Ethernet0/1 in the address table, and sets this entry as static entry.
  • Page 296: Mac-Address Timer

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 2 MAC Address Table Management Commands 2.1.5 mac-address timer Syntax mac-address timer { aging age | no-aging } undo mac-address timer aging View System view Parameter aging age: Specifies the aging time (measured in seconds) of the Layer-2 dynamic address table entry, ranging from 10 to 1000000.
  • Page 297: Chapter 3 Device Management Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands Chapter 3 Device Management Commands 3.1 Device Management Commands 3.1.1 boot boot-loader Syntax boot boot-loader file-url View User view Parameter file-url: Path and name of APP file.
  • Page 298: Display Boot-Loader

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands Parameter file-url: File path and file name of Bootrom. Description Using boot bootrom command, you can upgrade bootrom. Example # Upgrade bootrom. <Quidway> boot bootrom PLATV100R002B09D002.btm 3.1.3 display boot-loader...
  • Page 299: Display Device

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands Parameter None Description Using display cpu command, you can display CPU occupancy. Example # Display CPU occupancy. <Quidway> display cpu CPU busy status: 18% in last 5 seconds...
  • Page 300: Display Memory

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands number of ports, hardware version number, FPGA version number, BOOTROM software version number, application version number, address learning mode, interface card type and interface card type description, etc.
  • Page 301: Reboot

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 3 Device Management Commands <Quidway> display memory System Total Memory(bytes): 32491008 Total Used Memory(bytes): 13181348 Used Rate: 40% Table 3-3 Display information Field Description System Total Memory(bytes) The Total Memory of switch, unit in byte...
  • Page 302: Chapter 4 System Maintenance Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Chapter 4 System Maintenance Commands 4.1 Basic System Configuration and Management Commands 4.1.1 clock datetime Syntax clock datetime HH:MM:SS YYYY/MM/DD View User view Parameter HH:MM:SS: Current clock. HH ranges from 0 to 23. MM and SS range from 0 to 59.
  • Page 303: Clock Summer-Time

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.1.2 clock summer-time Syntax clock summer-time zone_name { one-off | repeating } start-time start-date end-time end-date offset-time undo clock summer-time View User view Parameter zone_name: Name of the summer time, which is a character with the length ranging 1 to 32.
  • Page 304: Clock Timezone

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Set the summer time for z2 that starts at 06:00:00 on 08/06/2002 and ends at 06:00:00 on 01/09/2002 with the time adding 1 hour.
  • Page 305: Sysname

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Set the name of the local time zone as Z5 with the time adding 5 hours compared with the UTC. <Quidway> clock timezone z5 add 05:00:00 4.1.4 sysname...
  • Page 306: System Status And System Information Display Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.2 System Status and System Information Display Commands 4.2.1 display clock Syntax display clock View Any view Parameter none Description Using display clock command, subscribers can obtain information about system data and time from the terminal display.
  • Page 307 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Parameter controller: View the configuration information of controllers. interface: View the configuration information of interfaces. interface-type: Type of the interface. interface-number: Number of the interface.
  • Page 308 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands sysname QX-S2026 radius scheme system server-type nec primary authentication 127.0.0.1 1645 primary accounting 127.0.0.1 1646 user-name-format without-domain domain system radius-scheme system access-limit disable state active...
  • Page 309 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands interface Ethernet0/10 interface Ethernet0/11 interface Ethernet0/12 interface Ethernet0/13 interface Ethernet0/14 interface Ethernet0/15 interface Ethernet0/16 interface Ethernet0/17 interface Ethernet0/18 interface Ethernet0/19 interface Ethernet0/20 interface Ethernet0/21 interface Ethernet0/22...
  • Page 310 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands primary accounting 127.0.0.1 1646 local-server nas-ip 127.0.0.1 key nec vlan 1 interface Ethernet0/1 interface Ethernet0/10 interface Ethernet0/11 interface Ethernet0/12 interface Ethernet0/13 interface Ethernet0/14 interface Ethernet0/15...
  • Page 311: Display Debugging

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands local-server nas-ip 127.0.0.1 key nec vlan 1 user-interface aux 0 user-interface vty 0 4 return 4.2.3 display debugging Syntax display debugging [ interface { interface-name | interface-type interface-num } ]...
  • Page 312: Display Saved-Configuration

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.2.4 display saved-configuration Syntax display saved-configuration View Any view Parameter none Description Using display saved-configuration command, you can view the configuration files in the flash memory of Ethernet Switch.
  • Page 313 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands self-service-url disable messenger time disable domain default enable system local-server nas-ip 127.0.0.1 key nec interface Aux0/0 vlan 1 interface Ethernet0/1 interface Ethernet0/2 interface Ethernet0/3 interface Ethernet0/4...
  • Page 314: Display Users

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands interface Ethernet0/17 interface Ethernet0/18 interface Ethernet0/19 interface Ethernet0/20 interface Ethernet0/21 interface Ethernet0/22 interface Ethernet0/23 interface Ethernet0/24 interface NULL0 user-interface aux 0 user-interface vty 0 4 return 4.2.5 display users...
  • Page 315: Display Version

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Display the status of the current users. <Quidway> display users Delay IPaddress Username F 0 AUX 0 00:00:00 4.2.6 display version Syntax display version...
  • Page 316: System Debug Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands [Subslot 0] 24 FE Hardware Version is REV.0 4.3 System Debug Commands 4.3.1 debugging Syntax debugging { all | module-name [ debugging-option ] } undo debugging { all | module-name [ debugging-option ] }...
  • Page 317: Display Diagnostic-Information

    # Display all system configuration information <Quidway> display diagnostic-information This operation may take a few minutes, continue?[Y/N]y ---------------display clock--------------- 20:12:39 UTC Mon 2000/5/8 ---------------display version--------------- Huawei Versatile Routing Platform Software VRP (tm) software, Version 3.10 Copyright (c) 2000-2002 HUAWEI TECH CO., LTD. 4-16...
  • Page 318: Network Connection Test Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.4 Network Connection Test Commands 4.4.1 ping Syntax ping [ -a ip-address ] [-c count ] [ -d ] [ -h ttl ] [ -i {interface-type interface-num |...
  • Page 319 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands -tos tos: Specify TOS value for echo requests to be sent, range from 0 to 255. -v: Show other received ICMP packets (non ECHO-RESPONSE). string: Destination host domain name or IP address of the destination host.
  • Page 320: Tracert

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Check whether the host 202.38.160.244 is reachable. <Quidway> ping 202.38.160.244 ping 202.38.160.244 : 56 data bytes Reply from 202.38.160.244 : bytes=56 sequence=1 ttl=255 time = 1ms Reply from 202.38.160.244 : bytes=56 sequence=2 ttl=255 time = 2ms...
  • Page 321 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands string: IP address of the destination host or the hostname of the remote system. Description Using tracert command, you can check the reachability of network connection and troubleshoot the network.
  • Page 322: Log Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 10 129.140.81.7 (129.140.81.7) 199 ms 180 ms 300 ms 11 129.140.72.17 (129.140.72.17) 300 ms 239 ms 239 ms 12 * * * 13 128.121.54.72 (128.121.54.72) 259 ms 499 ms 279 ms...
  • Page 323: Display Info-Center

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands MODU_ID NAME ENABLE LOG LEVEL ENABLE TRAP LEVEL ENABLE DEBUGGING LEVEL ffff0000 all warning debugging debugging 4.5.2 display info-center Syntax display info-center View Any view...
  • Page 324: Info-Center Channel Name

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands dropped messages:0, overwrote messages:0 Trap buffer: enabled, max buffer size:1024, current buffer size:256 current messages:0, channel number:3, channel name:trapbuffer dropped messages:0, overwrote messages:0 Information timestamp setting: log - date, trap - date, debug - boot 4.5.3 info-center channel name...
  • Page 325: Info-Center Console Channel

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.5.4 info-center console channel Syntax info-center console channel { channel-number | channel-name } undo info-center console channel View System view Parameter channel-number: Channel number, ranging from 0 to 9, that is, system has ten channels.
  • Page 326: Info-Center Logbuffer

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands View System view Parameter none Description Using info-center enable command, you can enable the system log function. Using undo info-center enable command, you can disable system log function.
  • Page 327: Info-Center Loghost

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands channel-name: Specify the channel name. The name can be channel6, channel7, channel8, channel9, console, logbuffer, loghost, monitor, snmpagent, trapbuffer. size: Configure the size of buffer.
  • Page 328: Info-Center Loghost Source

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands channel-name: Specify the channel name. The name can be channel6, channel7, channel8, channel9, console, logbuffer, loghost, monitor, snmpagent, trapbuffer. facility: Configure the recording tool of info-center loghost.
  • Page 329: Info-Center Monitor Channel

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Description Using info-center loghost source command, you can set source address of the packets sent to loghost as the address of the interface specified by the interface-name.
  • Page 330: Info-Center Snmp Channel

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands This command takes effect only after system logging is started. For the related commands, see info-center enable,display info-center. Example # Configure channel 0 to output log information to user terminal.
  • Page 331: Info-Center Source

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.5.11 info-center source Syntax info-center source { modu-name | default } channel { channel-number | channel-name } [ { log | trap | debug } * { level severity | state state } * ]...
  • Page 332 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Note: If you only specify the level for one/two of the three types of information, the level(s) of the unspecified two/one return(s) to the default. For example, if you only define the level of the log information, then the levels of the trap and debugging information return to the defaults.
  • Page 333: Info-Center Timestamp

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands default log, trap and debugging settings in the records may be different with one another. Use default configuration record if a module does not have any specific configuration record in the channel.
  • Page 334: Info-Center Trapbuffer

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Configure the debugging information timestamp format as boot. [Quidway] info-center timestamp debugging boot 4.5.13 info-center trapbuffer Syntax info-center trapbuffer [ size buffersize ] [ channel { channel-number |...
  • Page 335: Reset Logbuffer

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.5.14 reset logbuffer Syntax reset logbuffer View User view Parameter none Description Using reset logbuffer command, you can reset information in log buffer. Example # Clear information in log buffer.
  • Page 336: Terminal Debugging

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands 4.5.16 terminal debugging Syntax terminal debugging undo terminal debugging View User view Parameter none Description Using terminal debugging command, you can configure to display the debugging information on the terminal.
  • Page 337: Terminal Monitor

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Description Using terminal logging command, you can enable terminal log information display. Using undo terminal logging command, you can disable terminal log information display. By default, this function is enabled.
  • Page 338: Terminal Trapping

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 4 System Maintenance Commands Example # Disable the terminal monitor. <Quidway> undo terminal monitor 4.5.19 terminal trapping Syntax terminal trapping undo terminal trapping View User view Parameter none Description Using terminal trapping command, you can enable terminal trap information display.
  • Page 339: Chapter 5 Snmp Configuration Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Chapter 5 SNMP Configuration Commands 5.1 SNMP Configuration Commands 5.1.1 display snmp-agent community Syntax display snmp-agent community [ read | write ] View Any view Parameter read: display read-only community information.
  • Page 340: Display Snmp-Agent

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.2 display snmp-agent Syntax display snmp-agent { local-engineid | remote-engineid } View Any view Parameter local-engineid: local engine ID. remote-engineid: remote engine ID. Description Using display snmp-agent engineid command, you can view engine ID of current device.
  • Page 341: Display Snmp-Agent Mib-View

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Description Using display snmp-agent group command, you can view group name, safe mode, state of various views and storage modes. Example # Display SNMP group name and safe mode.
  • Page 342 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands mib-view: Specify the mib view name. Description display snmp-agent mib-view command is used to view the MIB view configuration information of the Ethernet switch. Example # Display the information about the currently configured MIB view.
  • Page 343: Display Snmp-Agent Statistics

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Caution: If the SNMP Agent is disabled, "Snmp Agent disabled" will be displayed after you execute the above display commands. 5.1.5 display snmp-agent statistics Syntax...
  • Page 344: Display Snmp-Agent Sys-Info Contact

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 0 MIB objects altered successfully 0 GetRequest-PDU accepted and processed 9 GetNextRequest-PDU accepted and processed 9 GetResponse-PDU accepted and processed 0 SetRequest-PDU accepted and processed 0 Trap PDUs accepted and processed 5.1.6 display snmp-agent sys-info contact...
  • Page 345: Display Snmp-Agent Sys-Info Version

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Parameter none Description Using display snmp-agent sys-info location command, you can view the character string describing the system location. Example # Display the system location.
  • Page 346: Display Snmp-Agent Usm-User

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.9 display snmp-agent usm-user Syntax display snmp-agent usm-user [ engineid engineid ] [ group groupname ] [ username username ] View Any view Parameter engineid: display user information with specified engine ID.
  • Page 347: Snmp-Agent Local-Engineid

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.10 snmp-agent local-engineid Syntax snmp-agent local-engineid engineid undo snmp-agent local-engineid View System view Parameter local-engineid: Specify an engineID for the local SNMPv3 entity engineid: Specify the engine ID with a character string, only composed of hexadecimal numbers between 5 and 32 including;...
  • Page 348: Snmp-Agent Group

    SNMP. Using undo snmp-agent community command, you can cancel the settings of community access name. Example # Configure community name as huawei and permits read-only access by this community name. [Quidway] snmp-agent community read huawei # Configure community name as mgr and permits read-write access.
  • Page 349 Any change of the SNMP group notify view will affect all the users related to this group. Please do not specify the notify view when configuring SNMP group. Example # Create an SNMP group named huawei. [Quidway] snmp-agent group v3 huawei. 5-11...
  • Page 350: Snmp-Agent Mib-View

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.13 snmp-agent mib-view Syntax snmp-agent mib-view { included | excluded } view-name oid-tree undo snmp-agent mib-view view-name View System view Parameter included: Include this MIB subtree.
  • Page 351: Snmp-Agent Sys-Info

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands View System view Parameter byte-count: Specify the size of SNMP packet (measured in bytes), ranging from 484 to 17940. By default, the size is 1500 bytes.
  • Page 352: Snmp-Agent Target-Host

    SNMP. Using undo snmp-agent sys-info location command, you can restore the default value. By default, the contact information is "HuaWei Beijing China", the system location is "Beijing China", the SNMP version is SNMP V3. Example # Set system location as Building 3/Room 214.
  • Page 353 Example # Enable sending Trap message to myhost.huawei.com with community name huawei. [Quidway] snmp-agent trap enable [Quidway] snmp-agent target-host trap address udp-domain 2.2.2.2 params securityname huawei # Enable sending Trap packets to 2.2.2.2 with the community name public...
  • Page 354: Snmp-Agent Trap Enable

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.17 snmp-agent trap enable Syntax snmp-agent trap enable [ standard [ authentication ] [ coldstart ] [ linkdown ] [ linkup ] [ warmstart ] ]...
  • Page 355: Snmp-Agent Trap Life

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.18 snmp-agent trap life Syntax snmp-agent trap life seconds undo snmp-agent trap life View System view Parameter seconds: Specify the timeouts, ranging from 1 to 2592000 seconds; By default, the timeout interval is 120 seconds.
  • Page 356: Snmp-Agent Trap Source

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands Parameter length: Length of queue, ranging from 1 to 1000; By default, the length is 100. Description Using snmp-agent trap queue-size command, you can configure the information queue length of Trap packet sent to destination host.
  • Page 357: Snmp-Agent Usm-User

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 5 SNMP Configuration Commands 5.1.21 snmp-agent usm-user Syntax snmp-agent usm-user { v1 | v2c } username groupname [ acl acl-list ] undo snmp-agent usm-user { v1 | v2c } username groupname...
  • Page 358: Undo Snmp-Agent

    For V1 and V2C, this command will add a new community name. For V3, it will add a new user for an SNMP group. Example # Add a user wang for huawei (an SNMP group), configures to authenticate with MD5 and sets authentication password as pass. [Quidway] snmp-agent usm-user v3 wang huawei authentication-mode md5 pass 5.1.22 undo snmp-agent...
  • Page 359: Chapter 6 Rmon Configuration Commands

    Using display rmon alarm command, you can view RMON alarm information. For the related commands, see rmon alarm. Example # Display the RMON alarm information. <Quidway> display rmon alarm Alarm table 1 owned by HUAWEI is VALID. Samples absolute value : 1.3.6.1.2.1.16.1.1.1.4.1 <etherStatsOctets.1> Sampling interval : 10(sec) Rising threshold...
  • Page 360: Display Rmon Event

    Example # Show the RMON event. <Quidway> display rmon event Event table 1 owned by HUAWEI is VALID. Description: null. Will cause log-trap when triggered, last triggered at 0days 00h:02m:27s. Table 6-2 Output description of the display rmon event command...
  • Page 361: Display Rmon Eventlog

    Example # Show event log of RMON. <Quidway> display rmon eventlog 1 Event table 1 owned by HUAWEI is VALID. Generates eventLog 1.1 at 0days 00h:01m:39s. Description: The 1.3.6.1.2.1.16.1.1.1.4.1 defined in alarm table 1, less than(or =) 100 with alarm value 0. Alarm sample type is absolute.
  • Page 362: Display Rmon History

    For the related commands, see rmon history. Example # Show the RMON history information. <Quidway> display rmon history ethernet 2/1 History control entry 1 owned by HUAWEI is VALID Samples interface : Ethernet2/1<ifEntry.642> Sampling interval : 10(sec) with 10 buckets max...
  • Page 363: Display Rmon Prialarm

    Using display rmon prialarm command, you can view information about extended alarm table. For the related commands, see rmon prialarm. Example # display alarm information about extended RMON. <Quidway> display rmon prialarm Prialarm table 1 owned by HUAWEI is VALID. Samples absolute value : 1.3.6.1.2.1.16.1.1.1.4.1...
  • Page 364: Display Rmon Statistics

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands Sampling interval : 10(sec) Rising threshold : 1000(linked with event 1) Falling threshold : 100(linked with event 1) When startup enables : risingOrFallingAlarm This entry will exist : forever.
  • Page 365: Rmon Alarm

    Chapter 6 RMON Configuration Commands For the related commands, see rmon statistics. Example # Show RMON statistics. <Quidway> display rmon statistics Ethernet 2/1 Statistics entry 1 owned by HUAWEI is VALID. Interface : Ethernet2/1<ifEntry.642> Received octets , packets broadcast packets...
  • Page 366 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands View System view Parameter entry-number: Number of the entry to be added/deleted, ranging from 1 to 65535. alarm-variable: Specifies the alarm variable with a character string, ranging from 1 to 256, in the OID dotted format, like 1.3.6.1.2.1.2.1.10.1 (or ifInOctets.1).
  • Page 367: Rmon Event

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands 6.1.8 rmon event Syntax rmon event event-entry [ description string ] { log | trap trap-community | log-trap log-trapcommunity | none } [ owner rmon-station ]...
  • Page 368: Rmon History

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands 6.1.9 rmon history Syntax rmon history entry-number buckets number interval sampling-interval [ owner text-string ] undo rmon history entry-number View Ethernet port view Parameter entry-number: Number of the entry to be added/deleted, ranging from 1 to 65535.
  • Page 369: Rmon Prialarm

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands 6.1.10 rmon prialarm Syntax rmon prialarm entry-number alarm-var [ alarm-des ] sampling-timer { delta | absolute | changeratio } rising-threshold threshold-value1 event-entry1 falling-threshold threshold-value2 event-entry2 entrytype { forever | cycle cycle-period } [ owner text ]...
  • Page 370: Rmon Statistics

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 6 RMON Configuration Commands Using rmon prialarm command, you can add an entry to the extended RMON alarm table. Using undo rmon prialarm command, you can cancel an entry from the extended RMON alarm table.
  • Page 371: Chapter 7 Ntp Configuration Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Chapter 7 NTP Configuration Commands 7.1 NTP Configuration Commands 7.1.1 debugging ntp-service Syntax debugging ntp-service { access | adjustment | authentication | event | filter |...
  • Page 372: Display Ntp-Service Sessions

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Description Using debugging ntp-service command, you can debug different NTP services. Using undo debugging ntp-service command, you can disable corresponding debugging function. By default, no debugging function is enabled.
  • Page 373: Display Ntp-Service Status

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands [12345]212.125.95.4 131.188.3.221 64 377 339.8 10.8 note: 1 source(master),2 source(peer),3 selected,4 candidate,5 configured 7.1.3 display ntp-service status Syntax display ntp-service status View Any view Parameter...
  • Page 374: Display Ntp-Service Trace

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Output Meaning nominal frequency Nominal frequency of the local system hardware clock actual frequency Actual frequency of the local system hardware clock. clock precision Precision of local system clock...
  • Page 375: Ntp-Service Authentication Enable

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands View System view Parameter query: Allow to control query authority. synchronization: Only allow the server to access. server: Allow query to server and access. peer: Full access authority.
  • Page 376: Ntp-Service Authentication-Keyid

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands View System view Parameter None Description Using ntp-service authentication enable command, you can enable the NTP-service authentication function. Using undo ntp-service authentication enable command, you can disable this function.
  • Page 377: Ntp-Service Broadcast-Client

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Only MD5 authentication is supported for the NTP authentication key settings. Example # Set MD5 authentication key 10 as BetterKey. [Quidway] ntp-service authentication-keyid 10 authentication-mode md5 BetterKey 7.1.8 ntp-service broadcast-client...
  • Page 378: Ntp-Service Max-Dynamic-Sessions

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands 7.1.9 ntp-service max-dynamic-sessions Syntax ntp-service max-dynamic-sessions number undo ntp-service max-dynamic-sessions View System view Parameter number: The maximum sessions can be created locally, ranging from 0 to 100.
  • Page 379: Ntp-Service Reliable Authentication-Keyid

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands Description Using ntp-service multicast-client command, you can configure the NTP multicast client mode. Using undo ntp-service multicast-client command, you can disable the NTP multicast client mode.
  • Page 380: Ntp-Service Source-Interface

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands By default, no key is configured as reliable. When you enable the authentication, you can use this command to configure one or more than one keys as reliable. In this case, a client will only get synchronized by a server whichever can provide a reliable key.
  • Page 381: Ntp-Service In-Interface Disable

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands The source address specifies where the packets are transmitted from. You can use this command to designate an interface to transmit all the NTP packets and take the source address of these packets from its IP address.
  • Page 382: Ntp-Service Unicast-Peer

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands 7.1.14 ntp-service unicast-peer Syntax ntp-service unicast-peer ip-address [ version number ] [ authentication-key keyid ] [ source-interface { interface-name | interface-type interface-number } ] [ priority ]...
  • Page 383: Ntp-Service Unicast-Server

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands than an IP address of broadcast, multicast, or reference clock. By operating in this mode, a local device can synchronize and be synchronized by a remote server.
  • Page 384 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 7 NTP Configuration Commands interface-number: Specify the interface number and determine an interface together with the interface-type parameter. priority: Designate a server as the first choice. Description Using ntp-service unicast-server command, you can configure NTP server mode.
  • Page 385: Chapter 8 Ssh Configuration Commands

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Chapter 8 SSH Configuration Commands 8.1 SSH Configuration Commands 8.1.1 debugging rsa Command debugging rsa undo debugging rsa View User view Parameter None Description Using the debugging rsa command, you can send the detailed information of RSA algorithm, including every process and packet structure, to the information center as debugging information.
  • Page 386: Display Rsa Local-Key-Pair Public

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands undo debugging ssh server { all | vty index } View User view Parameter all: All SSH channels index: Debugged SSH channels. Optional values depend on the VTY number and they are 0~4.
  • Page 387: Display Rsa Peer-Public-Key

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands View Any view Parameter None Description Using the display rsa local-key-pair public command, you can display local key pair and public key of the server. If no key is generated, corresponding information will be prompted, for example, “RSA keys not found”.
  • Page 388: Display Ssh Server

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Parameter brief: Displays brief information of the remote public key. keyname: Specifies key name, a string including 0~32 characters. Description Using the display rsa peer-public-key command, you can display a designated RSA public key.
  • Page 389: Display Ssh User-Information

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Description Using the display ssh server command, you can display SSH state or session information. For the related commands, see ssh server authentication-retries, ssh server rekey-interval, ssh server timeout.
  • Page 390: Peer-Public-Key End

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Example # Display SSH user information. [Quidway] display ssh user-information Username authentication-type user-public-key-name hanqi1 password 816pub 8.1.7 peer-public-key end Command peer-public-key end View RSA public key view...
  • Page 391: Public-Key-Code Begin

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Parameter all: Supports both Telnet and SSH protocols. ssh: Supports only SSH protocol. telnet: Supports only Telnet protocol. Description Using the protocol inbound command, you can configure the protocols supported by a designated user interface.
  • Page 392: Public-Key-Code End

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Description Using the public-key-code begin command, you can enter RSA key code view. Before using this command, you have to create a public key with the rsa peer-public-key command.
  • Page 393: Rsa Local-Key-Pair Create

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands corresponding information will be prompted and the current configuration fails. If you have configured valid public key, the system will store it into the public key table.
  • Page 394: Rsa Local-Key-Pair Destroy

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Example # Create local host key pair and server key pair. [Quidway] rsa local-key-pair create The key name will be: Quidway_Host % You already have RSA keys defined for Quidway_Host % Do you really want to replace them? [yes/no]:y Choose the size of the key modulus in the range of 512 to 2048 for your Keys.
  • Page 395: Rsa Peer-Public-Key

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Example # Remove all key pairs at the server. [Quidway] rsa local-key-pair destroy % The name for the keys which will be destroyed is Quidway_Host .
  • Page 396: Ssh Server Rekey-Interval

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands View System view Parameter times: Specifies authentication retry times, in the range of 1~5. Description Using the ssh server authentication-retries command, you can define SSH authentication retry times value, which takes effect at next logon.
  • Page 397: Ssh Server Timeout

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands Example # Define update interval of server key pair as 3 hours. [Quidway] ssh server rekey-interval 3 [Quidway] 8.1.16 ssh server timeout Command ssh server timeout seconds...
  • Page 398: Ssh User Username Authentication-Type

    Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands View System view Parameter keyname: Configures client public key, consisting of 1~32 characters. username: Valid local user name or user name defined by remote RADIUS system.
  • Page 399 Command Manual - System Management Quidway S2000 Series Ethernet Switches Chapter 8 SSH Configuration Commands rsa: Specifies authentication type as RSA. Description Using the ssh user username authentication-type command, you can define authentication type for a designated user. Using the undo ssh user username authentication-type command, you can restore the default mode in which logon fails.
  • Page 400 HUAWEI Quidway S2000 Series Ethernet Switches Command Manual 11. Appendix...
  • Page 401: Appendix A Command Index

    Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index Appendix A Command Index The command index includes all the commands in this command manual, which are arranged alphabetically. A B C D E F G H I J K L M N O P Q R S T U V W X Y Z...
  • Page 402 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index clock timezone System Management close System Management 1-23 cluster Integrated 1-18 Management cluster enable Integrated 1-19 Management cluster switch-to Integrated 1-20 Management command-privilege level Getting Started copy...
  • Page 403 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index display connection Security display cpu System Management display current-configuration System Management display debugging System Management 4-10 display debugging habp Security display device System Management display dhcp-snooping Network Protocol...
  • Page 404 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index display loopback-detection Port display mac-address System Management display mac-address aging-time System Management display memory System Management display mirror Port display ndp Integrated Management display ntdp Integrated Management...
  • Page 405 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index display vlan VLAN domain Security dot1x Security dot1x authentication-method Security dot1x dhcp-launch Security dot1x max-user Security dot1x port-control Security dot1x port-method Security dot1x quiet-period Security dot1x retry...
  • Page 406 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index history-command max-size Getting Started holdtime Integrated 1-28 Management idle-cut Security idle-timeout Getting Started igmp-snooping Multicast Protocol igmp-snooping host-aging-time Multicast Protocol igmp-snooping max-response-time Multicast Protocol igmp-snooping router-aging-time Multicast Protocol...
  • Page 407 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index link-aggregation Port local-server Security 2-21 local-user Security local-user System Management 1-18 local-user password-display-mode Security 2-10 lock Getting Started 1-11 lock-port mac-aging Port logging-host Integrated 1-29 Management loopback...
  • Page 408 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index ntdp timer hop-delay Integrated 1-13 Management ntdp timer port-delay Integrated 1-14 Management ntp-service access System Management ntp-service authentication enable System Management ntp-service authentication-keyid System Management ntp-service broadcast-client...
  • Page 409 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index System Management 1-30 queue-cycle QoS\ACL quit Getting Started 1-12 quit System Management 1-30 radius scheme Security 2-23 radius-scheme Security 2-12 reboot System Management reboot member Integrated 1-31...
  • Page 410 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index save System Management 1-14 screen-length Getting Started 1-13 secondary accounting Security 2-28 secondary authentication Security 2-29 send Getting Started 1-14 server-type Security 2-29 service-type Security 2-12 service-type...
  • Page 411 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index stp loop-protection stp mcheck stp mode stp point-to-point stp port priority stp priority stp root primary 1-10 stp root secondary 1-11 stp root-protection 1-12 stp timeout-factor 1-13...
  • Page 412 Command Manual – Appendix Quidway S2000 Series Ethernet Switches Appendix A Command Index undelete System Management 1-12 undo snmp-agent System Management 5-20 unknown-multicast drop enable Multicast Protocol user System Management 1-32 user privilege level Getting Started 1-22 user-interface Getting Started...

Table of Contents