DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 1 Using Command Line Interface The Switch can be managed through the Switch’s serial port, Telnet, SNMP or the Web-based management agent. The Command Line Interface (CLI) can be used to configure and manage the Switch via the serial port or Telnet interfaces.
Page 6
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide default IP address is 10.90.90.90. You can change the default Switch IP address to meet the specification of your networking address scheme. The Switch is also assigned a unique MAC address by the factory. This MAC address cannot be changed, and can be found on the initial boot console screen –...
Page 7
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide the CLI or via the Web-based management agent using the above IP address to connect to the Switch. There are a number of helpful features included in the CLI. Entering the ? command will display a list of all of the top-level commands.
Page 8
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config account Command: config account Next possible completions: <username> DGS-3000-26TC:admin#config account In the above example, the command config account was entered without the required parameter <username>, the CLI returned the Next possible completions: <username> prompt. The up arrow cursor control key was pressed to re-enter the previous command (config account) at the command prompt.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Command Syntax Symbols Syntax Description angle brackets < > Encloses a variable or value. Users must specify the variable or value. For example, in the syntax create ipif <ipif_name 12> {<network_address>} <vlan_name 32>...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Line Editing Keys Keys Description Delete Delete character under cursor and shift remainder of line to left. Backspace Delete character to left of cursor and shift remainder of line to left.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 2 Basic Command List show session show serial_port config serial_port {baud_rate [9600 | 19200 | 38400 | 115200] | auto_logout [never | 2_minutes | 5_minutes | 10_minutes | 15_minutes]}...
Page 13
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show session Command: show session Live Time From Level Name --- ------------ --------------------------------------- ----- --------------- 00:01:46.360 10.90.90.10 puser puser 00:05:49.340 Serial Port admin admin Total Entries: 2 CTRL+C ESC q...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide config serial_port Description This command is used to configure the serial bit rate that will be used to communicate with the management host and the auto logout time for idle connections.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators and Operators can issue this command. Example To enable pausing of the screen display when show command output reaches the end of the page: DGS-3000-26TC:admin#enable clipaging Command: enable clipaging Success.
Page 16
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide login Description This command is used to allow user login to the Switch. Format login Parameters None. Restrictions None. Example To login the Switch with a user name dlink: DGS-3000-26TC:admin#login...
Page 17
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#logout Command: logout ********** * Logout * ********** DGS-3000-26TC Gigabit Ethernet Switch Command Line Interface Firmware: Build 1.00.015 Copyright(C) 2013 D-Link Corporation. All rights reserved. UserName: Description This command is used to display the usage description for all commands or the specific one.
Page 18
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format clear Parameters None. Restrictions None. Example To clear screen: DGS-3000-26TC:admin#clear Command: clear DGS-3000-26TC:admin# 2-10 show command_history Description The command is used to display command history. Format show command_history Parameters None.
Page 19
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show command_history Command: show command_history ? ping login show serial_port show session ? config bpdu_protection ports ? reset ? create account ? create ipif show DGS-3000-26TC:admin# 2-11 config command_history Description This command is used to configure the number of commands that the Switch can recall.
Page 20
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config greeting_message {default} Parameters default - (Optional) Adds this parameter to the config greeting_message command will return the greeting message (banner) to its original factory default entry. Restrictions Only Administrators and Operators can issue this command.
Page 21
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators and Operators can issue this command. Example To display greeting message: DGS-3000-26TC:admin#show greeting_message Command: show greeting_message ================================================================================ DGS-3000-26TC Gigabit Ethernet Switch Command Line Interface Firmware: Build 1.00.015 Copyright(C) 2013 D-Link Corporation.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To edit the command prompt: DGS-3000-26TC:admin#config command_prompt Prompt# Command: config command_prompt Prompt# Success. Prompt#:admin# 2-15 config terminal width Description The command is used to set current terminal width. The usage is described as below: 1.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 2-16 show terminal width Description The command is used to display the configuration of current terminal width. Format show terminal width Parameters None. Restrictions None. Example To display the configuration of current terminal width:...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 10_full - Sets port speed to 10_full. 100_half - Sets port speed to 100_half. 100_full - Sets port speed to 100_full._ 1000_full - Sets port speed to 1000_full. While set port speed to 1000_full,user should specify master or slave mode for 1000BASE-T interface, and leave the 1000_full without any master or slave setting for other interface.
Page 25
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters ports - Specifies a range of ports to be displayed. <portlist> - (Optional) Enter the list of ports to be configured. description - (Optional) Indicates if the port description will be included in the display.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To create a VLAN with name “p1” and VLAN ID 2: DGS-3000-26TC:admin#create vlan p1 tag 2 type private_vlan advertisement Command: create vlan p1 tag 2 type private_vlan advertisement Success.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide delete vlan Description This command is used to delete a previously configured VLAN by the name on the Switch. Format delete vlan <vlan_name 32> Parameters vlan - The VLAN name of the VLAN to be deleted.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide port list range are separated by a dash. all - Specifies all ports for ingress checking. gvrp_state - (Optional) Enables or disables the GVRP for the ports specified in the port list.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show vlan ports 6 Command: show vlan ports 6 Port Untagged Tagged Dynamic Forbidden ----- ---- -------- ------ ------- --------- DGS-3000-26TC:admin# 3-10 show vlan vlanid Description This command is used to display the vlan information using the VLAN ID.
Page 34
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 3-11 show port_vlan Description This command is used to display the ports’ VLAN attributes on the Switch. Format show port_vlan {<portlist>} Parameters <portlist> - (Optional) Specifies a range of ports to be displayed.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 3-12 enable pvid auto assign Description This command is used to enable the auto-assignment of PVID. If “Auto-assign PVID” is enabled, PVID will be possibly changed by PVID or VLAN configuration.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To disable the auto-assign PVID: DGS-3000-26TC:admin#disable pvid auto_assign Command: disable pvid auto_assign Success. DGS-3000-26TC:admin# 3-14 show pvid auto_assign Description This command is used to display the PVID auto-assignment state.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display the global setting of GVRP: DGS-3000-26TC:admin#show gvrp Command: show gvrp Global GVRP : Disabled Join Time : 200 Milliseconds Leave Time : 600 Milliseconds LeaveAll Time : 10000 Milliseconds...
Page 39
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format disable gvrp Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To disable the Generic VLAN Registration Protocol (GVRP): DGS-3000-26TC:admin#disable gvrp Command: disable gvrp Success.
Page 40
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To associate secondary vlan to private vlan p1: DGS-3000-26TC:admin#config private_vlan p1 add community vlanid 3 Command: config private_vlan p1 add community vlanid 3 Success. DGS-3000-26TC:admin# 3-20 show private_vlan Description This command is used to show the private VLAN information.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 4 802.1X Command List enable 802.1x disable 802.1x create 802.1x user <username 15> delete 802.1x user <username 15> show 802.1x user config 802.1x auth_protocol [local | radius_eap] config 802.1x fwd_pdu system [enable | disable] config 802.1x fwd_pdu ports [<portlist>...
Page 42
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example Used to enable the 802.1X function: DGS-3000-26TC:admin#enable 802.1x Command: enable 802.1x Success. DGS-3000-26TC:admin# disable 802.1x Description This command is used to disable the 802.1X function. Format disable 802.1x Parameters None.
Page 43
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <username 15> - Enter the username to be added. This value can be up to 15 characters long. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To create a 802.1x user “test”:...
Page 44
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide show 802.1x user Description This command is used to display the 802.1X user. Format show 802.1x user Parameters None. Restrictions None. Example To display the 802.1X user information: DGS-3000-26TC:admin#show 802.1x user Command: show 802.1x user...
Page 45
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure the 802.1X authentication protocol to RADIUS EAP: DGS-3000-26TC:admin#config 802.1x auth_protocol radius_eap Command: config 802.1x auth_protocol radius_eap Success.
Page 46
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide config 802.1x fwd_pdu ports Description This command is used to control the forwarding of EAPOL PDU. When 802.1X functionality is disabled globally or for a port, and if 802.1X fwd_pdu is enabled both globally and for the port, a received EAPOL packet on the port will be flooded in the same VLAN to those ports for which 802.1X fwd_pdu is enabled and 802.1X is disabled (globally or just for the port).
Page 47
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide priority, and ACL) assigned by the RADUIS server will be accepted. The default state is enabled. enable - Specifies to enable the authorization attributes. disable - Specifies to disable the authorization attributes.
Page 48
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show 802.1x auth_configuration ports Command: show 802.1x auth_configuration ports 1 Port Number Capability : None AdminCrlDir : Both OpenCrlDir : Both Port Control : Auto QuietPeriod : 60 TxPeriod : 30...
Page 49
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the port capability: DGS-3000-26TC:admin#config 802.1x capability ports 1-10 authenticator Command: config 802.1x capability ports 1-10 authenticator Success. DGS-3000-26TC:admin# 4-12 config 802.1x max_users Description This command is used to limit the maximum number of users that can be learned via 802.1X authentication.
Page 51
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure the parameters that control the operation of the authenticator associated with a port: DGS-3000-26TC:admin#config 802.1x auth_parameter ports 1-20 direction both Command: config 802.1x auth_parameter ports 1-20 direction both...
Page 52
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config 802.1x init [port_based ports [<portlist> | all] | mac_based ports [<portlist> | all] {mac_address <macaddr>}] Parameters port_based ports- Specifies the authentication as the port-based mode. <portlist> - Enter the list of ports used for the configuration here.
Page 53
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To re-authenticate the device connected to the port: DGS-3000-26TC:admin#config 802.1x reauth port_based ports all Command: config 802.1x reauth port_based ports all Success.
Page 54
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format delete 802.1x guest_vlan <vlan_name 32> Parameters <vlan_name 32> - Enter the VLAN name here. The VLAN name can be up to 32 characters long. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 55
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config 802.1x guest_vlan ports 2-8 state enable Command: config 802.1x guest_vlan ports 2-8 state enable Warning, The ports are moved to Guest VLAN. Success. DGS-3000-26TC:admin# 4-20 show 802.1x guest_vlan Description This command is used to show the information of guest VLANs.
Page 56
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters ports - (Optional) Specifies a range of ports to be displayed. <portlist> - Enter the list of ports that will be displayed here. Restrictions None. Example To display authenticator statistics information for port 1:...
Page 57
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <portlist> - Enter the list of ports that will be displayed here. Restrictions None. Example To display authenticator diagnostics information for port 1: DGS-3000-26TC:admin#show auth_diagnostics ports 1 Command: show auth_diagnostics ports 1...
Page 58
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display authenticator session statistics information for port 1: DGS-3000-26TC:admin#show auth_session_statistics ports 1 Command: show auth_session_statistics ports 1 Port Number : 1 SessionOctetsRx SessionOctetsTx SessionFramesRx SessionFramesTx SessionId...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide enable password encryption Description This command is used to enable password encryption. The user account configuration information will be stored in the configuration file, and can be applied to the system later.
Page 61
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To disable the password encryption: DGS-3000-26TC:admin#disable password encryption Command: disable password encryption Success. DGS-3000-26TC:admin# enable authen_policy Description This command is used to enable system access authentication policy.
Page 62
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide disable authen_policy Description This command is used to disable system access authentication policy. Disable system access authentication policy. When authentication is disabled, the device will adopt the local user account database to authenticate the user for login, and adopt the local enable password to authenticate the enable password for promoting the user‘s privilege to Admin...
Page 63
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To display system access authentication policy: DGS-3000-26TC:admin#show authen_policy Command: show authen_policy Authentication Policy : Enabled DGS-3000-26TC:admin# create authen_login Description This command is used to create a user-defined method list of authentication methods for user login.
Page 64
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide “user” privilege level is assigned only. If user wants to get admin privilege level, user must use the “enable admin” command to promote his privilege level. But when local method is used, the privilege level will depend on this account privilege level stored in the local device.
Page 65
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <string 15> - The user-defined method list name. This value can be up to 15 characters long. Restrictions Only Administrators can issue this command. Example To delete a user-defined method list for user login:...
Page 66
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show authen_login method_list_name login_list_1 Command: show authen_login method_list_name login_list_1 Method List Name Priority Method Name Comment ---------------- -------- --------------- ------------------ login_list_1 tacacs+ Built-in Group tacacs Built-in Group mix_1 User-defined Group...
Page 67
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide server hosts in tacacs+ group are missing, the authentication request will be sent to the first server host in tacacs group…If all server hosts in tacacs group are missing, the local enable password in the device is used to authenticate this user’s password.
Page 68
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <string 15> - The user-defined method list name. This value can be up to 15 characters long. Restrictions Only Administrators can issue this command. Example To delete a user-defined method list for promoting user's privilege to Admin level:...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 5-15 show authen application Description This command is used to display the login/enable method list for all applications. Format show authen application Parameters None. Restrictions Only Administrators can issue this command.
Page 71
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To create a user-defined authentication server group: DGS-3000-26TC:admin#create authen server_group mix_1 Command: create authen server_group mix_1 Success. DGS-3000-26TC:admin# 5-17 config authen server_group...
Page 72
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To add an authentication server host to an server group: DGS-3000-26TC:admin#config authen server_group mix_1 add server_host 10.1.1.222 protocol tacacs+ Command: config authen server_group mix_1 add server_host 10.1.1.222 protocol cacs+ Success.
Page 73
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <string 15> - (Optional) The built-in or user-defined server group name. This value can be up to 15 characters long. Restrictions Only Administrators can issue this command. Example To display all authentication server groups:...
Page 74
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide tacacs+ - Server host’s authentication protocol. radius - Server host’s authentication protocol. port - (Optional) The port number of authentication protocol for server host. Default value for TACACS/XTACACS/TACACS+ is 49. Default value for RADIUS is 1812.
Page 75
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide tacacs - Server host’s authentication protocol. xtacacs - Server host’s authentication protocol. tacacs+ - Server host’s authentication protocol. radius - Server host’s authentication protocol. port - (Optional) The port number of authentication protocol for server host. Default value for TACACS/XTACACS/TACACS+ is 49.
Page 76
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide tacacs+ - Server host’s authentication protocol. radius - Server host’s authentication protocol. Restrictions Only Administrators can issue this command. Example To delete an authentication server host: DGS-3000-26TC:admin#delete authen server_host 10.1.1.222 protocol tacacs+ Command: delete authen server_host 10.1.1.222 protocol tacacs+...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 5-24 config authen parameter response_timeout Description This command is used to configure the amount of time waiting or user input on console, TELNET, SSH application. Format config authen parameter response_timeout <int 0-255>...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the maximum attempts for user's trying to login or promote the privilege to be 9: DGS-3000-26TC:admin#config authen parameter attempt 9 Command: config authen parameter attempt 9 Success.
Page 79
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format enable admin Parameters None. Restrictions None. Example To enable administrator lever privilege: DGS-3000-26TC:puser#enable admin Command: enable admin PassWord:***** Success. DGS-3000-26TC:admin# 5-28 config admin local_enable Description This command is used to config the local enable password of administrator level privilege. When the user chooses the “local_enable”...
Page 80
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To configure the administrator password: DGS-3000-26TC:admin#config admin local_enable Command: config admin local_ebable Enter the old password: Enter the case-sensitive new password:****** Enter the new password again for confirmation:****** Success.
Page 81
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config accounting [default | method_list_name <string 15>] method {tacacs+ | radius | server_group <string 15> | none} Parameters default - Specifies the default method list of accounting methods. method_list_name - Specifies the user-defined method list of accounting methods.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To delete the user-defined accounting method list called “shell_acct” from the Switch: DGS-3000-26TC:admin#delete accounting method_list_name shell_acct Command: delete accounting method_list_name shell_acct Success.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 5-33 config accounting service command Description This command is used to configure the state of the specified accounting service. Format config accounting service command {administrator | operator | power_user | user} [method_list_name <string>...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide shell - Accounting service for shell events: When user logs on or out the Switch (via the console, Telnet, or SSH) and timeout occurs, accounting information will be collected and sent to RADIUS server.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show accounting service Command: show accounting service Accounting State Method ------------------- --------------- Network : Disabled Shell : Disabled System : Disabled DGS-3000-26TC:admin# 5-36 show aaa Description This command is used to display AAA global configuration...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 6 Access Control List (ACL) Command List create access_profile profile_id <value 1-512> {profile_name <name 32>} [ethernet {vlan {<hex 0x0-0x0fff>} | source_mac <macmask 000000000000-ffffffffffff> | destination_mac <macmask 000000000000-ffffffffffff> | 802.1p | ethernet_type} | ip {vlan {<hex 0x0-0x0fff>} | source_ip_mask <netmask>...
Page 87
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide config time_range <range_name 32> [hours start_time <time hh:mm:ss> end_time <time hh:mm:ss> weekdays <daylist> | delete] show time_range show current_config access_profile create access_profile Description This command is used to create access control list profiles.
Page 89
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide offset_chunk_1 - (Optional) Specifies that the offset chunk 1 will be used. <value 0-31> - Enter the offset chunk 1 value here. This value must be between 0 and 31.
Page 91
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#delete access_profile profile_id 1 Command: delete access_profile profile_id 1 Success. DGS-3000-26TC:admin# config access_profile Description This command is used to configure an access list entry. The ACL mirror function works after the mirror has been enabled and the mirror port has been configured using the mirror command.
Page 92
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide auto_assign - Specifies that the access ID will automatically be assigned. <value 1-256> - Enter the access ID used here. This value must be between 1 and 256. ethernet - Specifies to configure the ethernet access profile.
Page 93
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide mask - (Optional) Specifies an additional mask parameter that can be configured. <hex 0x0-0xffff> - Enter the destination port mask here. flag - (Optional) Specifies the TCP flag fields. all - Specifies that all the TCP flags will be used in this configuration.
Page 94
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <hex 0x0-0xffff> - Enter the TCP source port mask value here. dst_port - (Optional) Specifies the value of the IPv6 Layer 4 TCP destination port. <value 0-65535> - Enter the TCP destination port value here. This value must be between 0 and 65535.
Page 95
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide delete - Specifies that a profile or a rule will be deleted. access_id - Specifies the index of the access list entry. The value range is 1-256, but the supported maximum number of entries depends on the project.
Page 96
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Total Used HW Entries : 128 Total Available HW Entries : 896 ============================================================================== Profile ID: 1 Profile name: EtherACL Type: Ethernet MASK on VLAN : 0xFFF 802.1p Ethernet Type Available HW Entries : 193...
Page 97
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Available HW Entries : 255 ------------------------------------------------------------------------------ Rule ID : 1 Ports: 3 Match on Class Action: Permit ============================================================================== ============================================================================== Profile ID: 4 Profile name: PCACL Type: User Defined MASK on...
Page 98
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show access_profile profile_id 2 Command: show access_profile profile_id 2 Access Profile Table Profile ID: 2 Profile Name: 2 Type : Ethernet Mask on VLAN : 0xF Source MAC : FF-FF-FF-00-00-00...
Page 99
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide config flow_meter Description This command is used to configure the flow-based metering function. The metering function supports three modes: single rate two color, single rate three color, and two rate three color. The access rule must be created before the parameters of this function can be applied.
Page 100
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide between 1 and 1048576. burst_size - (Optional) Specifies the burst size for the single rate two color mode. The unit is Kbytes. <value 1-262144> - Enter the burst size value here. This value must be between 1 and 262144.
Page 101
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide counter - (Optional) Specifies the ACL counter. This is optional. The default is disable. The resource may be limited so that a counter cannot be turned on. Counters will be cleared when the function is disabled.
Page 102
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure a “two rate, three color” flow meter: DGS-3000-26TC:admin#config flow_meter profile_id 1 access_id 1 tr_tcm cir 1000 cbs 2000 pir 2000 pbs 2000 color_blind conform permit counter enable exceed...
Page 103
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show flow_meter Command: show flow_meter Flow Meter Information ------------------------------------------------------------------------------ Profile ID:1 Aceess ID:1 Mode : trTCM / ColorBlind CIR(Kbps):1000 CBS(Kbyte):2000 PIR(Kbps):2000 PBS(Kbyte):2000 Action: Conform : Permit Counter: Enabled Exceed : Permit...
Page 104
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure a time range named “1” that starts every Monday at 01:01:01am and ends at 02:02:02am: DGS-3000-26TC:admin#config time_range 1 hours start_time 1:1:1 end_time 2:2:2 weekdays mon Command: config time_range 1 hours start_time 1:1:1 end_time 2:2:2 weekdays mon Success.
Page 105
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show time_range Command: show time_range Time Range Information ----------------------------- Range Name Weekdays : Mon Start Time : 01:01:01 End Time : 02:01:01 Total Entries :1 DGS-3000-26TC:admin# show current_config access_profile Description This command is used to display the ACL part of the current configuration, when logged in with user level privileges.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format delete arpentry [<ipaddr> | all] Parameters <ipaddr> - The IP address of the end node or station. all - Specifies to delete all ARP entries. Restrictions Only Administrators, Operators and Power-Users can issue this command.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config arpentry 10.48.74.121 00-50-BA-00-07-37 Command: config arpentry 10.48.74.121 00-50-BA-00-07-37 Success. DGS-3000-26TC:admin# config arp_aging time Description This command is used to set the maximum amount of time, in minutes, that a dynamic ARP entry can remain in the Switch’s ARP table, without being accessed, before it is dropped from the table.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To clear the ARP table: DGS-3000-26TC:admin#clear arptable Command: clear arptable Success. DGS-3000-26TC:admin# show arpentry Description This command is used to displays the ARP table. You can filter the display by IP address, MAC address, Interface name, or static entries.
Page 111
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show arpentry Command: show arpentry ARP Aging Time : 20 Interface IP Address MAC Address Type ------------- --------------- ----------------- --------------- System 10.0.0.0 FF-FF-FF-FF-FF-FF Local/Broadcast System 10.1.1.1 00-02-03-04-05-06 Static System 10.1.1.2...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 8 ARP Spoofing Prevention Command List config arp_spoofing_prevention [add gateway_ip <ipaddr> gateway_mac <macaddr> ports [<portlist> | all] | delete gateway_ip <ipaddr>] show arp_spoofing_prevention config arp_spoofing_prevention Description This command is used to configure the spoofing prevention entry to prevent spoofing of MAC for the protected gateway.
Page 113
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config arp_spoofing_prevention add gateway_ip 10.254.254.251 gateway_mac 00-00-00-11-11-11 ports 1-2 Command: config arp_spoofing_prevention add gateway_ip 10.254.254.251 gateway_ma c 00-00-00-11-11-11 ports 1-2 Success. DGS-3000-26TC:admin# show arp_spoofing_prevention Description This command is used to show the ARP spoofing prevention entry.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 9 Auto-Configuration Command List enable autoconfig disable autoconfig show autoconfig config autoconfig timeout <value 1-65535> enable autoconfig Description This command is used to enable auto configuration. When enabled, during power on initialization, the Switch will get configure file path name and TFTP server IP address from the DHCP server.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format disable autoconfig Parameters None. Restrictions Only Administrators and Operators can issue this command. Example To disable autoconfig: DGS-3000-26TC:admin#disable autoconfig Command: disable autoconfig Success. DGS-3000-26TC:admin# show autoconfig Description This command is used to display if the auto-configuration is enabled or disabled.
Page 116
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide config autoconfig timeout Description This command is used to configure the timeout value. This timer is used to limit the length of time in getting configuration settings from the network. When timeout occurs, the auto configuration operation will be stopped and the local configuration file will be used to configure the system.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide sha_1 - Specifies the password in the SHA-I encrypted form. <password> - The password for the user account. The length for of password in plain-text form and in encrypted form are different. For the plain-text form, passwords must have a minimum of 0 character and can have a maximum of 15 characters.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <username> - Enter the user name of the account that has been defined. encrypt - (Optional) Specifies that the password will be encrypted. plain_text - Specifies the password in plain text form.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To display the accounts that have been created: DGS-3000-26TC:admin#show account Command: show account Current Accounts: Username Access Level --------------- ------------ admin Admin...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 10-5 show switch Description This command is used to display the Switch information. Format show switch Parameters None. Restrictions None. Example The following is an example for display of the Switch information.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 10-6 enable telnet Description This command is used to enable TELNET and configure port number. Format enable telnet {<tcp_port_number 1-65535>} Parameters <tcp_port_number 1-65535> - (Optional) The TCP port number. TCP ports are numbered between 1 and 65535.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#disable telnet Command: disable telnet Success. DGS-3000-26TC:admin# 10-8 enable web Description This command is used to enable HTTP and configure port number. Format enable web {<tcp_port_number 1-65535>} Parameters <tcp_port_number 1-65535> - (Optional) The TCP port number. TCP ports are numbered between 1 and 65535.
Page 124
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators and Operators can issue this command. Example To disable HTTP: DGS-3000-26TC:admin#disable web Command: disable web Success. DGS-3000-26TC:admin# 10-10 reboot Description This command is used to restart the Switch.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format reset {[config | system]} {force_agree} Parameters config - (Optional) All parameters are reset to default settings. However, the device will neither save or reboot. system - (Optional) All parameters are reset to default settings, and the Switch will reset to factory default settings, save and reboot.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure c:/ DGS3000_Run_1_00_010.had as the boot up image: DGS-3000-26TC:admin#config firmware image c:/DGS3000_Run_1_00_010.had boot_up Command: config firmware image c:/DGS3000_Run_1_00_010.had boot_up Success. DGS-3000-26TC:admin# 10-13 create ipif Description This command is used to create an IP interface.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure an interface’s IPv4 network address: DGS-3000-26TC:admin#config ipif System ipaddress 192.168.69.123/24 vlan default Command: config ipif System ipaddress 192.168.69.123/24 vlan default Success. DGS-3000-26TC:admin# 10-15 delete ipif Description This command is used to delete an IP interface.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format enable ipif [<ipif_name 12> | all] Parameters ipif_name - Specifies the name of the IP interface. <ipif_name 12> - Enter the IP interface name used here. This name can be up to 12 characters long.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#disable ipif newone Command: disable ipif newone Success. DGS-3000-26TC:admin# 10-18 show ipif Description This command is used to display an IP interface. Format show ipif {<ipif_name 12>} Parameters ipif_name - Specifies the name of the IP interface.
Page 131
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 10-19 enable ipif_ipv6_link_local_auto Description This command is used to enable the auto configuration of link local address when there are no IPv6 addresses explicitly configured. When an IPv6 address is explicitly configured, the link local address will be automatically configured, and the IPv6 processing will be started.
Page 132
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To disable the IP interface for IPv6 link local automatic: DGS-3000-26TC:admin#disable ipif_ipv6_link_local_auto newone Command: disable ipif_ipv6_link_local_auto newone Success. DGS-3000-26TC:admin#...
Page 134
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To set the port state enable and drop mode: DGS-3000-26TC:admin#config bpdu_protection ports 1 state enable mode drop Commands: config bpdu_protection ports 1 state enable mode drop Success. DGS-3000-26TC:admin# 11-2...
Page 135
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config bpdu_protection [trap | log] [none | attack_detected | attack_cleared | both] Parameters trap - Specifies the trap state. log - Specifies the log state. none - Neither attack_detected nor attack_cleared is trapped or logged.
Page 136
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#enable bpdu_protection Commands: enable bpdu_protection Success. DGS-3000-26TC:admin# 11-5 disable bpdu_protection Description This command is used to disable BPDU protection function globally for the Switch. Format disable bpdu_protection Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 137
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show the bpdu_protection for the entire switch: DGS-3000-26TC:admin#show bpdu_protection Commands: show bpdu_protection BPDU Protection Global Settings --------------------------------------- BPDU Protection status : Enabled BPDU Protection Recovery Time...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 12 Cable Diagnostics Command List cable_diag ports [<portlist> | all] 12-1 cable_diag ports Description This command is used to configure cable diagnostics on ports. For FE port, two pairs of cable will be diagnosed.
Page 139
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide • When the link partner is powered down with errors, this command can detect whether the error is open, short, or crosstalk. In this case this command can also detect the distance of the error •...
Page 140
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example Test the cable on port 1, 11, and 12: DGS-3000-26TC:admin#cable_diag ports 1,11-12 Command: cable_diag ports 1,11-12 Perform Cable Diagnostics ... Port Type Link Status Test Result Cable Length (M)
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 13 Command Logging Command List enable command logging disable command logging show command logging 13-1 enable command logging Description This command is used to enable the command logging function. This is disabled by default.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators can issue this command. Example To disable the command logging: DGS-3000-26TC:admin#disable command logging Command: disable command logging Success. DGS-3000-26TC:admin# 13-3 show command logging Description This command is used to display the Switch’s general command logging configuration status.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 14 Compound Authentication Command List enable authorization attributes disable authorization attributes show authorization config authentication server failover [local | permit | block] show authentication 14-1 enable authorization Description This command is used to enable authorization. When authorization for attributes is enabled, the authorized attributes (for example VLAN, 802.1p default priority, and ACL) assigned by the...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide RADIUS server or local database, will be ignored even if the individual module’s setting is enabled. Authorization for attributes is enabled by default. Format disable authorization attributes Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show authorization Command: show authorization Authorization for Attributes: Enabled. DGS-3000-26TC:admin# 14-4 config authentication server failover Description This command is used to configure authentication server failover function. Format config authentication server failover [local | permit | block] Parameters local - Uses local DB to authenticate the client.
Page 146
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show authentication global configuration: DGS-3000-26TC:admin#show authentication Command: show authentication Authentication Server Failover: Local. DGS-3000-26TC:admin#...
Page 148
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide setting regarding STP is not displayed. The lower level setting will only be displayed when the higher level setting is enabled. Note: This parameter is only for the current configuration.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config configuration config.cfg boot_up Command: config configuration config.cfg boot_up Success. DGS-3000-26TC:admin# 15-3 save Description This command is used to save the current configuration to a file. Format save {[config <pathname 64> | log | all]} Parameters config - (Optional) Specifies to save the configuration to a file.
Page 151
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions None. Example To display the boot file: DGS-3000-26TC:admin#show boot_file Command: show boot_file Bootup Firmware : /c:/runtime.had Bootup Configuration : /c:/config.cfg DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <string 22> - Enter the maintenance domain name. This name can be up to 22 characters long. md_index - Specifies the maintenance domain index. <uint 1-4294967295> - Enter the maintenance domain index value here. This value must be between 1 and 4294967295.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide md - Specifies the maintenance domain name. <string 22> - Enter the maintenance domain name here. This name can be up to 22 characters long. md_index - Specifies the maintenance domain index.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide VLANs. <vlanid 1-4094> - Enter the VLAN ID used here. This value must be between 1 and 4094. mip - (Optional) Specifies to configure MIPs. none - Specifies not to create MIPs.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format create cfm mep <string 32> mepid <int 1-8191> md [<string 22> | md_index <uint 1- 4294967295>] ma [<string 22> | ma_index <uint 1-4294967295>] direction [inward | outward] port <port>...
Page 158
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide • Some Remote MEPs Down: priority 3 • Some Remote MEP MAC Status Errors: priority 2 • Some Remote MEP Defect Indications: priority 1 If multiple types of the fault occur on an MEP, only the fault with the highest priority will be alarmed.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide alarm_reset_time - (Optional) Specifies the dormant duration time before a defect is triggered before the fault can be re-alarmed. The unit is centisecond, the range is 250-1000. The default value is 1000.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To delete a CFM MEP: DGS-3000-26TC:admin#delete cfm mep mepname mep1 Command: delete cfm mep mepname mep1 Success. DGS-3000-26TC:admin# 16-8 delete cfm ma Description This command is used to delete a created maintenance association. All MEPs created in the maintenance association will be deleted automatically.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 16-9 delete cfm md Description This command is used to delete a previously created maintenance domain. All the MEPs and maintenance associations created in the maintenance domain will be deleted automatically.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To enable the CFM globally: DGS-3000-26TC:admin#enable cfm Command: enable cfm Success. DGS-3000-26TC:admin# 16-11 disable cfm Description This command is used to disable the CFM globally. Format disable cfm Parameters None.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config cfm ports <portlist> state [enable | disable] Parameters <portlist> - Enter the list of ports used for this configuration. state - Specifies that the the CFM function will be enabled or disabled.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show cfm ports 3-6 Command: show cfm ports 3-6 Port State ----- -------- Enabled Enabled Enabled Disabled DGS-3000-26TC:admin# 16-14 show cfm Description This command is used to show the CFM configuration.
Page 165
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide CFM State: Enabled MD Index MD Name Level ---------- ---------------------- ----- op_domain DGS-3000-26TC:admin#show cfm md op_domain Command: show cfm md op_domain MD Index MD Name : op_domain MD Level MIP Creation: Explicit...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Cross-connect CCMs : 0 received Error CCMs : 0 received Normal CCMs : 0 received Port Status CCMs : 0 received If Status CCMs : 0 received CCMs transmitted In-order LBRs...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To show the CFM faults: DGS-3000-26TC:admin#show cfm fault Command: show cfm fault MD Name MA Name MEPID Status ----------- ----------- ----- --------------------------------- op_domain Cross-connect CCM Received DGS-3000-26TC:admin# 16-16 show cfm port Description This command is used to show MEPs and MIPs created on a port.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 16-17 cfm loopback Description This command is used to start a CFM loopback test. You can press Ctrl+C to exit the loopback test. The MAC address represents the destination MEP or MIP that can be reached by this MAC address.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To transmit an LTM: DGS-3000-26TC:admin#cfm linktrace 00-01-02-03-04-05 mepname mep1 Command: cfm linktrace 00-01-02-03-04-05 mepname mep1 Transaction ID: 26 Success. DGS-3000-26TC:admin# 16-19 show cfm linktrace Description This command is used to show the link trace responses. The maximum link trace responses a device can hold is 128.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide ma - (Optional) Specifies the maintenance association name. <string 22> - Enter the maintenance association name her. This name can be up to 22 characters long. ma_index - Specifies the maintenance association index.
Page 173
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show cfm mipccm Command: show cfm mipccm MAC Address Port ---------- ---- ----------------- ----- opma xx-xx-xx-xx-xx-xx opma xx-xx-xx-xx-xx-xx Total: 2 DGS-3000-26TC:admin# 16-22 config cfm mp_ltr_all Description This command is used to enable or disable the "all MPs reply LTRs" function.
Page 174
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions None. Example To show the configuration of the "all MPs reply LTRs" function: DGS-3000-26TC:admin#show cfm mp_ltr_all Command: show cfm mp_ltr_all All MPs reply LTRs: Disabled DGS-3000-26TC:admin# 16-24 show cfm remote_mep Description This command is used to show remote MEPs.
Page 175
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To show the CFM Remote MEP information: DGS-3000-26TC:admin#show cfm remote_mep mepname mep1 remote_mepid 2 Command: show cfm remote_mep mepname mep1 remote_mepid 2 Remote MEPID MAC Address : 00-11-22-33-44-02 Status...
Page 181
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide and 15. <hex 0x0-0xffffffff> - Enter the mask pattern offset of the frame between 0 and 15 here. offset_16-31 - (Optional) Specifies that the mask pattern offset of the frame will be between 16 and 31.
Page 182
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters profile_id - Specifies the index of access list profile. <value 1-5> - Enter the profile ID value here. This value must be between 1 and 5. all - Specifies that al the access list profiles will be deleted.
Page 183
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <value 1-100> - Enter the access ID here. This value must be between 1 and 100. ethernet - Specifies that the profile type will be Ethernet. vlan - (Optional) Specifies the VLAN name used.
Page 184
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide and 65535. protocol_id - Specifies that the rule applies to the value of IP protocol ID traffic. <value 0-255> - Enter the protocol ID value here. This value must be between 0 and 255.
Page 185
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config cpu access_profile profile_id 1 add access_id 1 ip vlan default source_ip 20.2.2.3 destination_ip 10.1.1.252 dscp 3 icmp type 11 code 32 port 1 deny Command: config cpu access_profile profile_id 1 add access_id 1 ip vlan default source_ip 20.2.2.3 destination_ip 10.1.1.252 dscp 3 icmp type 11 code 32 port 1...
Page 186
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators and Operators can issue this command. Example To disable cpu_interface_filtering: DGS-3000-26TC:admin#disable cpu_interface_filtering Command: disable cpu_interface_filtering Success. DGS-3000-26TC:admin# 17-6 show cpu access_profile Description This command is used to display current access list table.
Page 187
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Profile ID: 1 Type: Ethernet MASK on VLAN : 0xFFF Source MAC : 00-00-00-00-00-01 Destination MAC : 00-00-00-00-00-02 802.1p Ethernet Type Unused Rule Entries: 100 ================================================================================ ================================================================================ Profile ID: 2...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 18-3 debug output Description This command is used to set a specified module’s debug message output to debug buffer or local console. If the user uses the command in a Telnet session, the error message also is output to the local console.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To set the Switch to not need a reboot when a fatal error occurs: DGS-3000-26TC:admin#debug config error_reboot disable Command: debug config error_reboot disable Success.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format debug show error_reboot state Parameters None. Restrictions Only Administrators can issue this command. Example To show the debug error reboot state: DGS-3000-26TC:admin#debug show error_reboot state Command: debug show error_reboot state...
Page 194
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#debug show status module MSTP Command: debug show status module MSTP Debug Global State : Enabled MSTP : Disabled DGS-3000-26TC:admin# To show the debug state: DGS-3000-26TC:admin#debug show status Command: debug show status...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 19 DHCP Local Relay Command List config dhcp_local_relay vlan <vlan_name 32> state [enable | disable] config dhcp_local_relay vlan vlanid <vlan_id> state [enable | disable] config dhcp_local_relay option_82 circuit_id [default | vendor1] config dhcp_local_relay option_82 ports <portlist>...
Page 196
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 19-2 config dhcp_local_relay vlan vlanid Description This command is used to enable or disable DHCP local relay function for specified VLAN ID. Format config dhcp_local_relay vlan vlanid <vlan_id> state [enable | disable] Parameters vlanid - Specifies the VLAN ID.
Page 197
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the circuit id of DHCP relay agent as default: DGS-3000-26TC:admin#config dhcp_local_relay option_82 circuit_id default Command: config dhcp_local_relay option_82 circuit_id default Success. DGS-3000-26TC:admin# 19-4 config dhcp_local_relay option_82 ports Description This command is used to configure the settings of the specified ports for the policy of the option 82.
Page 198
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters default - Uses the Switch’s system MAC address as the remote ID. user_define - Uses user-defined string as the remote ID. <desc 32> - Enter the maximum of 32 characters. Space is allowed in the string.
Page 199
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 19-7 disable dhcp_local_relay Description This command is used to globally disable the DHCP local relay function on the Switch. Format disable dhcp_local_relay Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 200
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show dhcp_local_relay Command: show dhcp_local_relay DHCP/BOOTP Local Relay Status : Disabled DHCP/BOOTP Local Relay VID List DHCP Relay Agent Information Option 82 Circuit ID : Default DHCP Relay Agent Information Option 82 Remote ID : D-Link L2Switch...
Page 202
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure the DHCP relay hops and time parameters: DGS-3000-26TC:admin#config dhcp_relay hops 4 time 2 Command: config dhcp_relay hops 4 time 2 Success.
Page 203
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide interface level, then the configuration at the interface level has higher priority. In this case, the DHCP server configured on the VLAN will not be used to forward the DHCP packets.
Page 204
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 20-4 config dhcp_relay delete Description This command is used to delete one of the IP destination addresses in the Switch’s relay table. Format config dhcp_relay delete ipif <ipif_name 12> <ipaddr>...
Page 205
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To delete a DHCP/BOOTP server 10.43.21.12 from VLAN 2 and VLAN 3: DGS-3000-26TC:admin#config dhcp_relay delete vlanid 2-3 10.43.21.12 Command: config dhcp_relay delete vlanid 2-3 10.43.21.12 Success. DGS-3000-26TC:admin# 20-6 config dhcp_relay option_82 Description This command is used to configure the processing of DHCP 82 option for the DHCP relay function.
Page 206
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure dhcp_relay option 82: DGS-3000-26TC:admin#config dhcp_relay option_82 state enable Command: config dhcp_relay option_82 state enable Success. DGS-3000-26TC:admin#config dhcp_relay option_82 check disable Command: config dhcp_relay option_82 check disable Success.
Page 207
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the circuit ID as default: DGS-3000-26TC:admin#config dhcp_relay option_82 circuit_id default Command: config dhcp_relay option_82 circuit_id default Success. DGS-3000-26TC:admin# 20-8 enable dhcp_relay Description This command is used to enable the DHCP relay function on the Switch.
Page 208
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To disable the DHCP relay function: DGS-3000-26TC:admin#disable dhcp_relay Command: disable dhcp_relay Success. DGS-3000-26TC:admin# 20-10 show dhcp_relay Description This command is used to display the current DHCP relay configuration.
Page 209
DHCP Relay Agent Information Option 82 Check : Disabled DHCP Relay Agent Information Option 82 Policy : Replace DHCP Relay Agent Information Option 82 Circuit ID : Default DHCP Relay Agent Information Option 82 Remote ID : "D-Link L2 Switch" Interface Server 1 Server 2...
Page 210
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the state of dhcp_relay option 60: DGS-3000-26TC:admin#config dhcp_relay option_60 state enable Command: config dhcp_relay option_60 state enable Success DGS-3000-26TC:admin# 20-12 config dhcp_relay option_60 add Description This command is used to configure the option 60 relay rules. Note that different string can be specified with the same relay server, and the same string can be specified with multiple relay servers.
Page 211
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 20-13 config dhcp_relay option_60 default Description This command is used to configure the DHCP relay option 60 default drop option. When there are no match servers found for the packet based on option 60, the relay servers will be determined by the default relay server setting.
Page 212
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config dhcp_relay option_60 delete [string <multiword 255> {relay <ipaddr>} | ipaddress <ipaddr> | all | default {<ipaddr>}] Parameters string - Deletes all the entries, of which the string is equal to the specified string, if the IP address is not specified.
Page 213
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show DHCP option 60 information: DGS-3000-26TC:admin#show dhcp_relay option_60 Command: show dhcp_relay option_60 Default Processing Mode: Drop Default Servers: Matching Rules: String Match Type IP Address -------...
Page 214
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the state of dhcp_relay option 61: DGS-3000-26TC:admin#config dhcp_relay option_61 state enable Command: config dhcp_relay option_61 state enable Success DGS-3000-26TC:admin# 20-17 config dhcp_relay option_61 add Description This command is used to add a rule to determine the relay server based on option 61. The match rule can base on either MAC address or a user-specified string.
Page 215
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 20-18 config dhcp_relay option_61 default Description This command is used to configure the default ruler for option 61. Format config dhcp_relay option_61 default [relay <ipaddr> | drop] Parameters relay - Specifies to relay the packet that has no option matching 61 matching rules to an IP address.
Page 216
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To remove a DHCP relay option 61 entry: DGS-3000-26TC:admin#config dhcp_relay option_61 delete mac_address 00-11-22-33- 44-55 Command: config dhcp_relay option_61 delete mac_address 00-11-22-33-44-55...
Page 217
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show dhcp_relay option_61 Command: show dhcp_relay option_61 Default Relay Rule:Drop Matching Rules: Client-ID Type Relay Rule ----------- ---- --------- 00-11-22-33-44-55 MAC Address Drop Total Entries : 1 DGS-3000-26TC:admin# 20-21 config dhcp_relay ports Description This command is used to configure the DHCP relay of the ports.
Page 218
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 20-22 show dhcp_relay ports Description This command is used to display the DHCP relay of each port. Format show dhcp_relay ports {<portlist>} Parameters <portlist> - (Optional) Specifies a list of ports to be displayed.
Page 220
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide all - Specifies that all the port will be used for this configuration. delete permit - Specifies to delete a DHCP permit. server_ip - The IP address of the DHCP server to be filtered.
Page 221
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 21-2 show filter dhcp_server Description This command is used to display the DHCP server filter list created on the Switch. Format show filter dhcp_server Parameters None. Restrictions None. Example To display the DHCP server/client filter list created on the Switch:...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config ddm ports 25 rx_power_threshold high_alarm 4.55 low_alarm 0.01 high_warning 3.5 low_warning 0.03 Command: config ddm ports 25 rx_power_threshold high_alarm 4.55 low_alarm 0.01 high_warning 3.5 low_warning 0.03 Success. DGS-3000-26TC:admin# To configure the port 25’s actions associate with the alarm:...
Page 226
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 22-4 show ddm ports Description This command is used to show the current operating DDM parameters and configuration values of the optic module of the specified ports. There are two types of thresholds: the administrative configuration and the operation configuration threshold.
Page 228
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config duld ports 1 state enable Command: config duld ports 1 state enable Success. DGS-3000-26TC:admin# 23-2 show duld ports Description This command is used to show unidirectional link detection information.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 24 Domain Name System (DNS) Resolver Command List config name_server add [<ipaddr> | <ipv6addr>] {primary} config name_server delete [<ipaddr> | <ipv6addr>] {primary} config name_server timeout <second 1-60> show name_server create host_name <name 255>...
Page 230
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config name_server delete [<ipaddr> | <ipv6addr>] {primary} Parameters <ipaddr> - Enter the IPv4 address of the DNS Resolver name server. <ipv6addr> - Enter the IPv6 address of the DNS Resolver name server.
Page 231
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config name_server timeout 10 Command: config name_server timeout 10 Success. DGS-3000-26TC:admin# 24-4 show name_server Description This command is used to display the current DNS Resolver name servers and name server time out on the Switch.
Page 232
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <name 255> - Enter the hostname used. This name can be up to 255 characters long. <ipaddr> - Enter the host IP address. <ipv6addr> - Enter the host IPv6 address.
Page 233
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 24-7 show host_name Description This command is used to display the current host name. Format show host_name {static | dynamic} Parameters static – (Optional) Specifies to display the static host name entries.
Page 234
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure the DNS Resolver state to enabled: DGS-3000-26TC:admin#enable dns_resolver Command: enable dns_resolver Success. DGS-3000-26TC:admin# 24-9 disable dns_resolver Description This command is used to disable the DNS Resolver state of the Switch.
Page 236
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure land attack and blat attack prevention, the action is drop: DGS-3000-26TC:admin#config dos_prevention dos_type land_attack blat_attack action drop state enable Command: config dos_prevention dos_type land_attack blat_attack action drop state enable Success.
Page 237
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show dos_prevention Command: show dos_prevention Trap:Disabled Log:Disabled Function Version : 1.01 DoS Type State Action Frame Counts -------------------------- -------- ---------------- ------------ Land Attack Enabled Drop Blat Attack Enabled Drop TCP Null Scan...
Page 238
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 25-4 config dos_prevention log Description This command is used to enable or disable dos prevention log state. Format config dos_prevention log [enable | disable] Parameters enable - Enables DoS prevetion log state.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 26 Energy Efficient Ethernet (EEE) Commands config eee ports [<portlist> | all] state [enable | disable] show eee ports {<portlist>} 26-1 config eee ports Description This command is used to enable or disable the EEE function on the specified port(s) on the Switch.
Page 240
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show eee ports {<portlist>} Parameters <portlist> - (Optional) Specify a list of ports to be displayed. Restrictions None. Example To display the EEE state: DGS-3000-26TC:admin#show eee ports 1-6,9 Command: show eee ports 1-6,9...
Page 242
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To enable ERPS: DGS-3000-26TC:admin#enable erps Command: enable erps Success. DGS-3000-26TC:admin# 27-2 disable erps Description This command is used to disable the global ERPS function on a switch. Format disable erps Parameters None.
Page 243
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters raps_vlan - Specifies the VLAN which will be the R-APS VLAN. <vlanid> - Enter the VLAN ID used here. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 244
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 27-5 config erps raps_vlan Description This command is used to configure the ERPS R-APS VLAN settings. The ring MEL is one field in the R-APS PDU. Note that if CFM (Connectivity Fault Management) and ERPS are used at the same time, the R-APS PDU is one of a suite of Ethernet OAM PDU.
Page 245
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide unblocked RPL port and start to send R-APS PDU with an RB flag after the link recovery is confirmed within this period of time. Revertive mode- When revertive is enabled, the traffic link is restored to the working transport link.
Page 246
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide revertive - Specifies the state of the R-APS revertive option. enable - Specifies that the R-APS revertive option will be enabled. disable - Specifies that the R-APS revertive option will be disabled.
Page 247
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config erps raps_vlan 4094 protected_vlan add vlanid 10-20 Command: config erps raps_vlan 4094 protected_vlan add vlanid 10-20 Success. DGS-3000-26TC:admin# To configure the ERPS timers for a specific R-APS VLAN: DGS-3000-26TC:admin#config erps raps_vlan 4094 timer holdoff_time 100...
Page 248
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config erps log enable Command: config erps log enable Success. DGS-3000-26TC:admin# 27-7 config erps trap Description This command is used to configure trap state of ERPS events. Format config erps trap [enable | disable] Parameters trap - Specifies to enable or disable the ERPS trap state.
Page 249
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show erps Parameters None. Restrictions None. Example To display ERPS information: DGS-3000-26TC:admin#show erps Command: show erps Global Status : Disabled Log Status : Disabled Trap Status : Disabled ------------------------------------...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 28 External Alarm Command List config external_alarm channel <value 1-2> message <sentence 1-128> show external_alarm 28-1 config external_alarm channel Description This command is used to configure external alarm message for a channel.
Page 251
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions None. Example To display the real-time status of external alarm: DGS-3000-26TC:admin#show external_alarm Command: show external_alarm Channel Status Alarm Message ----------- --------- ----------------------------------------------------- Normal External Alamr: UPS is Exhausted.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 29 Filter Command List config filter netbios [<portlist> | all] state [enable | disable] show filter netbios config filter extensive_netbios [<portlist> | all] state [enable | disable] show filter extensive_netbios...
Page 253
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions None. Example To display the filter netbios list created on the Switch: DGS-3000-26TC:admin#show filter netbios Command: show filter netbios Enabled ports: 1-3 DGS-3000-26TC:admin# 29-3 config filter extensive_netbios Description This command is used to configure the Switch to filter NETBIOS packets over 802.3 flame on the...
Page 254
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 29-4 show filter extensive_netbios Description This command is used to display the extensive netbios state on the Switch. Format show filter extensive_netbios Parameters None. Restrictions None. Example To display the extensive_state created on the Switch:...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#create fdb default 00-00-00-00-01-02 port 5 Command: create fdb default 00-00-00-00-01-02 port 5 Success. DGS-3000-26TC:admin# To filter a unicast MAC: DGS-3000-26TC:admin#create fdb default 00-00-00-00-01-02 drop Command: create fdb default 00-00-00-00-01-02 drop Success.
Page 257
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#create fdb vlanid 1 00-00-00-00-02-02 drop Command: create fdb vlanid 1 00-00-00-00-02-02 drop Success. DGS-3000-26TC:admin# 30-3 create multicast_fdb Description This command is used to create a static entry in the multicast MAC address forwarding table (database).
Page 258
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide name length is 32. <macaddr> - The MAC address that will be added or deleted to the forwarding table. add - Specifies to add ports to the multicast forwarding table.
Page 259
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config fdb aging_time 600 Command: config fdb aging_time 600 Success. DGS-3000-26TC:admin# 30-6 config multicast vlan_filtering_mode Description This command is used to configure the multicast packet filtering mode for VLANs. The registered group will be forwarded to the range of ports in the multicast forwarding database.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 30-7 delete fdb Description This command is used to delete a static entry from the forwarding database. Format delete fdb <vlan_name 32> <macaddr> Parameters <vlan_name 32> - The name of the VLAN on which the MAC address resides. The maximum name length is 32.
Page 261
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To clear all FDB dynamic entries: DGS-3000-26TC:admin#clear fdb all Command: clear fdb all Success. DGS-3000-26TC:admin# 30-9 show multicast_fdb Description This command is used to display the multicast forwarding database of the Switch.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show multicast_fdb Command: show multicast_fdb VLAN Name : default MAC Address : 01-00-5E-00-00-00 Egress Ports : 1-5 Mode : Static Total Entries: 1 DGS-3000-26TC:admin# 30-10 show fdb Description This command is used to display the current unicast MAC address forwarding database.
Page 263
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show fdb Command: show fdb Unicast MAC Address Aging Time = 300 VLAN Name MAC Address Port Type Status ---- -------------------------------- ----------------- ----- ------- ------- default 00-01-02-03-04-00 CPU Self Forward...
Page 264
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide long. If no parameter is specified, the device will show all multicast filtering settings in the device. Restrictions None. Example To show the multicast vlan_filtering_mode for VLANs: DGS-3000-26TC:admin#show multicast vlan_filtering_mode...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 31 Flash File System (FFS) Command List show storage_media_info md {<drive_id>} <pathname> rd {<drive_id>} <pathname> cd {<pathname>} dir {<drive_id>} {<pathname>} rename {<drive_id>} <pathname> <filename> del {<drive_id>} <pathname> {recursive} erase {<drive_id>} <pathname>...
Page 266
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 31-2 Description This command is used to create a directory. Format md {<drive_id>} <pathname> Parameters <drive_id> - (Optional) Enter the drive ID used, for example, C:. <pathname> - Specifies the directory. The path name can be specified either as a full path name or partial name.
Page 267
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To remove a directory: DGS-3000-26TC:admin#rd c:/abc Command: rd c:/abc Success. DGS-3000-26TC:admin# 31-4 Description This command is used to change the current directory. The current directory is changed under the current drive.
Page 268
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format dir {<drive_id>} {<pathname>} Parameters <drive_id> - (Optional) Enter the drive ID used, for example, C:. <pathname> - (Optional) Specifies the directory to be displayed. The path name can be specified either as a full path name or partial name.
Page 269
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <drive_id> - (Optional) Enter the drive ID used, for example, C:. <pathname> - Specifies the file (in path form) to be renamed. <filename> - Specifies the new name of the file.
Page 270
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#dir Command: dir Directory of / c: Idx Info Attr Size Update Time Name --- ------- ---- -------- ------------------- ---------------- drw- 0 2000/04/02 06:02:04 12 2 CFG(*) -rw- 29661 2000/04/01 05:54:38 config.cfg...
Page 271
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide related to the current directory. Restrictions Only Administrators and Operators can issue this command. Example To erase a file: DGS-3000-26TC:admin#dir Command: dir Directory of /c: Idx Info Attr Size Update Time...
Page 272
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format move {<drive_id>} <pathname> {<drive_id>} <pathname> Parameters <drive_id> - (Optional) Enter the drive ID, for example, C:. <pathname> - Specifies the file to be moved. The path name can be specified either as a full path name or partial name.
Page 273
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To copy a file: DGS-3000-26TC:admin#copy c:/log.txt c:/log1.txt Command: copy c:/log.txt c:/log1.txt Success. DGS-3000-26TC:admin#...
Page 275
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 32-2 config gratuitous_arp send dup_ip_detected Description The command is used to enable or disable the sending of gratuitous ARP request packets while the duplicate IP is detected. The duplicate IP detected means that the system received an ARP request packet that is sent by an IP address that matches the system’s own IP address.
Page 276
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters enable - Enables the learning of ARP entry based on the received gratuitous ARP packet. This is the default value. disable - Disables the learning of ARP entry based on the received gratuitous ARP packet.
Page 277
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config gratuitous_arp send periodically ipif System interval 5 Command: config gratuitous_arp send periodically ipif System interval 5 Success. DGS-3000-26TC:admin# 32-5 enable gratuitous_arp Description The command is used to enable gratuitous ARP trap and log state. The switch can trap and log the IP conflict event to inform the administrator.
Page 278
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters ipif - (Optional) Specifies the interface name of L3 interface <ipif_name 12> - Enter the IP interface name here. This name can be up to 12 characters long. trap - Specifies to disable the trap function.
Page 279
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show gratuitous_arp Command: show gratuitous_arp Send on IPIF Status Up : Enabled Send on Duplicate IP Detected : Enabled Gratuitous ARP Learning : Enabled IP Interface Name : System Gratuitous ARP Trap...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 33 IGMP Snooping Command List The Internet Group Management Protocol (IGMP) is a L3 protocol used to manage the membership of Internet Protocol multicast groups. IGMP is used by IP hosts and adjacent multicast routers to establish multicast group memberships.
Page 281
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide clear igmp_snooping statistics counter show igmp_snooping host {[vlan <vlan_name 32> | vlanid <vlanid_list> | ports <portlist> | group <ipaddr>]} 33-1 config igmp_snooping Description This command is used to configure IGMP snooping on the Switch.
Page 282
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config igmp_snooping vlan_name default state enable Command: config igmp_snooping vlan_name default state enable Success. DGS-3000-26TC:admin# 33-2 config igmp_snooping rate_limit Description This command is used to configure the rate of IGMP control packet that is allowed per port or per VLAN.
Page 284
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide version - (Optional) Specifies the version of IGMP packet that will be sent by this device. If an IGMP packet received by the interface has a version higher than the specified version, this packet will be dropped.
Page 285
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config igmp access_authentication ports all state enable Command: config igmp access_authentication ports all state enable Success. DGS-3000-26TC:admin# 33-5 config router_ports Description This command is used to designate a range of ports as being connected to multicast-enabled routers.
Page 286
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config router_ports_forbidden [ <vlan_name 32> | vlanid <vlanid_list> ] [add | delete] <portlist> Parameters <vlan_name 32> - Specifies the name of the VLAN on which the router port resides.
Page 287
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#enable igmp_snooping Command: enable igmp_snooping Success. DGS-3000-26TC:admin# 33-8 disable igmp_snooping Description This command is used to disable IGMP snooping on the Switch. Disabling IGMP snooping allows all IGMP and IP multicast traffic to flood within a given IP interface.
Page 288
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide The static member port will only affect V2 IGMP operation. The Reserved IP multicast address 224.0.0.X must be excluded from the configured group. The VLAN must be created first before a static group can be created.
Page 289
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <ipaddr> - Specifies the multicast group IP address. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To delete an IGMP snooping static group for VLAN 1, group 239.1.1.1: DGS-3000-26TC:admin#delete igmp_snooping static_group vlan default 239.1.1.1...
Page 290
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To unset port range 9-10 from IGMP snooping static member ports for group 239.1.1.1 on default VLAN: DGS-3000-26TC:admin#config igmp_snooping static_group vlan default 239.1.1.1 delete 9-10 Command: create igmp_snooping static_group vlan default 239.1.1.1 delete 9-10 Success.
Page 291
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 33-13 config igmp_snooping data_driven_learning Description This command is used to enable or disable the data driven learning of an IGMP snooping group. When data-driven learning is enabled for the VLAN, when the Switch receives the IP multicast traffic on this VLAN, an IGMP snooping group will be created.
Page 292
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config igmp_snooping data_driven_learning vlan_name default state enable Command: config igmp_snooping data_driven_learning vlan_name default state enable Success. DGS-3000-26TC:admin# 33-14 config igmp_snooping data_driven_learning max_learned_entry Description This command is used to configure the maximum number of groups that can be learned by data driven.
Page 293
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format clear igmp_snooping data_driven_group [all | [vlan_name <vlan_name> | vlanid <vlanid_list>] [<ipaddr> | all]] Parameters all - Specifies all VLANs to which IGMP snooping groups will be deleted. vlan_name - Specifies the VLAN name.
Page 294
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To show IGMP snooping: DGS-3000-26TC:admin#show igmp_snooping Command: show igmp_snooping IGMP Snooping Global State : Enabled Data Driven Learning Max Entries : 128 VLAN Name : default Query Interval : 125...
Page 295
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display the IGMP snooping rate limit for ports 1 to 15: DGS-3000-26TC:admin#show igmp_snooping rate_limit ports 1-15 Command: show igmp_snooping rate_limit ports 1-15 Port Rate Limit --------...
Page 296
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To show IGMP snooping groups when IGMP v3 is supported: DGS-3000-26TC:admin#show igmp_snooping group Command: show igmp_snooping group Source/Group : 10.0.0.1/225.0.0.1 VLAN Name/VID : default/1 Member Ports UP Time Expiry Time...
Page 297
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show igmp_snooping group Command: show igmp_snooping group Source/Group : NULL/226.0.0.1 VLAN Name/VID : default/1 Member Ports UP Time : 10 Expiry Time : 258 Filter Mode : EXCLUDE Source/Group : NULL/226.0.0.2...
Page 298
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide forwarding table information. <vlan_name 32> - Enter the VLAN name here. The VLAN name can be up to 32 characters long. vlanid - (Optional) Specifies the ID of the VLAN for which you want to view IGMP snooping forwarding table information.
Page 299
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <vlan_name 32> - Enter the VLAN name here. The VLAN name can be up to 32 characters long. vlanid - Specifies the ID of the VLAN on which the router port resides.
Page 300
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <vlan_name> - Enter the VLAN name here. vlanid - Specifies a list of VLANs to be displayed. <vlanid_list> - Enter the VLAN ID list here. ports - Specifies a list of ports to be displayed.
Page 301
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Total Total Entries : 1 DGS-3000-26TC:admin# To display the IGMP snooping statistics counter for a port: DGS-3000-26TC:admin#show igmp_snooping statistic counter ports 1 Command: show igmp_snooping statistic counter ports 1 Port #...
Page 302
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 33-22 show igmp access_authentication ports Description This command is used to display the current IGMP Access Control configuration. Format show igmp access_authentication ports [all | <portlist>] Parameters all - Specifies all ports to be displayed.
Page 303
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide To display the IGMP Access Control status for all ports: DGS-3000-26TC:admin#show igmp access_authentication ports all Command: show igmp access_authentication ports all Port State ----- --------- Enabled Disabled Disabled Disabled Disabled...
Page 304
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#clear igmp_snooping statistic counter Command: clear igmp_snooping statistic counter Success. DGS-3000-26TC:admin# 33-24 show igmp_snooping host Description This command is used to display the IGMP hosts that have joined groups on specific ports or specific VLANs.
Page 305
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 225.0.7.8 198.19.1.9 239.255.255.250 10.90.90.90 Total Entries : 11 DGS-3000-26TC:admin# To display the host IP information for the group 225.0.1.0: DGS-3000-26TC:admin#show igmp_snooping host group 225.0.1.0 Command: show igmp_snooping host group 225.0.1.0...
Page 307
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters ipaddress - Specifies the IP address used for the IMPB entry. <ipaddr> - Enter the IP address used here. mac_address - Specifies the MAC address used for the IMPB entry.
Page 308
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide disable - Disables the IP inspection function. The default value is disabled. protocol - (Optional) Specifies the version used. ipv4 - Specifies that only IPv4 packets will be checked. ipv6 - Specifies that only IPv6 packets will be checked.
Page 309
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <macaddr> - Enter the MAC address here. ports - (Optional) Specifies a range of ports or all ports. <portlist> - Specifies a range of ports to be configured. all - Specifies to apply to all the ports.
Page 310
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config address_binding ip_mac ipv6address fe80::240:5ff:fe00:28 mac_address 00-00-00-00-00-11 Command: config address_binding ip_mac ipv6address FE80::240:5FF:FE00:28 mac_address 00-00-00-00-00-11 Success. DGS-3000-26TC:admin# 34-5 delete address_binding blocked Description This command is used to delete a blocked entry.
Page 311
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format delete address_binding ip_mac [all | ipaddress <ipaddr> mac_address <macaddr> | ipv6address <ipv6addr> mac_address <macaddr>] Parameters all - Specifies that all the MAC address will be used. ipaddress - Specifies the learned IP address of the entry in the database.
Page 312
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure an IMPB entry: DGS-3000-26TC:admin#config address_binding ip_mac ipaddress 10.1.1.1 mac_address 00-00-00-00-00-11 Command: config address_binding ip_mac ipaddress 10.1.1.1 mac_address 00-00-00- 00-00-11 Success.
Page 313
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show address_binding Command: show address_binding Roaming state : Enabled Trap/Log : Disabled DHCP Snoop(IPv4) : Disabled DHCP Snoop(IPv6) : Disabled ND Snoop : Disabled Function Version : 3.93 DGS-3000-26TC:admin# To show the IMPB ports:...
Page 314
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters all - Specifies that all the addresses in the database that the system has auto learned and blocked to be displayed. vlan_name - Specifies the name of the VLAN to which the blocked MAC address belongs.
Page 315
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show IMPB entries: GS-3000-26TC:admin#show address_binding ip_mac all Command: show address_binding ip_mac all M(Mode) - D:DHCP, N:ND S:Static ACL - A:Active I:Inactive IP Address MAC Address ACL Ports --------------------------------------- ----------------- -- --- ------------- 10.1.1.1...
Page 316
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format enable address_binding dhcp_snoop {[ipv6 | all]} Parameters ipv6 - (Optional) Specifies to enable the IPv6 entries. all - (Optional) Specifies to enable all DHCP snooping mode. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 317
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#disable address_binding dhcp_snoop Command: disable address_binding dhcp_snoop Success. DGS-3000-26TC:admin# 34-13 clear address_binding dhcp_snoop binding_entry ports Description This command is used to clear the DHCP snooping entries learned for the specified ports.
Page 318
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide ports - Specifies the ports used for this configuration. <portlist> - Enter a list of ports used here. If no parameters are specified, show DHCP snooping displays the enable/disable state.
Page 319
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 34-15 show address_binding dhcp_snoop binding_entry Description This command is used to display the DHCP snooping binding entries. Format show address_binding dhcp_snoop binding_entry {port <port>} Parameters port – (Optional) Specifies the port used for this configuration.
Page 320
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters ports - Specifies the list of ports you would like to set the maximum number of entries that can be learned. <portlist> - Enter the list of ports used here.
Page 321
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#enable address_binding nd_snoop Command: enable address_binding nd_snoop Success. DGS-3000-26TC:admin# 34-18 disable address_binding nd_snoop Description This command is used to disable ND snooping on the Switch. Format disable address_binding nd_snoop Parameters None.
Page 322
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide all - Specifies that all the ports will be usd for this configuration. max_entry - Specifies the maximum number of entries. <value 1-50> - Enter the maximum number of entries used here. This value must be between 1 and 50.
Page 323
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show address_binding nd_snoop ports 1-5 Command: show address_binding nd_snoop ports 1-5 Port Max Entry ---- --------- No Limit No Limit DGS-3000-26TC:admin# 34-21 show address_binding nd_snoop binding_entry Description This command is used to show the ND snooping binding entries on the Switch.
Page 324
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 34-22 clear address_binding nd_snoop binding_entry ports Description This command is used to clear the ND snooping entries on specified ports. Format clear address_binding nd_snoop binding_entry ports [<portlist> | all] Parameters <portlist>...
Page 325
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#enable address_binding trap_log Command: enable address_binding trap_log Success. DGS-3000-26TC:admin# 34-24 disable address_binding trap_log Description This command is used to disable the IMPB traps and logs. Format disable address_binding trap_log Parameters None.
Page 326
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To recover IMPB checking for ports 6 to 7: DGS-3000-26TC:admin#config address_binding recover_learning ports 6-7 Command: config address_binding recover_learning ports 6-7 Success.
Page 327
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 34-27 no debug address_binding Description This command is used to stop the IMPB debug starting when the IMPB module receives an ARP/IP packet or a DHCP packet. Format no debug address_binding Parameters None.
Page 328
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#enable address_binding roaming Command: enable address_binding roaming Success. DGS-3000-26TC:admin# 34-29 disable address_binding roaming Description This command is used to disable the IMPB roaming. Format disable address_binding roaming Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 330
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 35-2 delete ipv6 neighbor_cache Description This command is used to delete a neighbor cache entry or static neighbor cache entries from the address cache or all address cache entries on this IP interface. Both static and dynamic entries can be deleted.
Page 331
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <ipif_name 12> - Enter the IP interface name here. This name can be up to 12 characters long. all - Specifies that all the interface will be displayed. ipv6address - Specifies the neighbor’s address.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format delete ipv6route [default] [<ipif_name 12> <ipv6addr> | <ipv6addr> | all] Parameters default - Specifies the default route. <ipif_name 12> - Enter the IP interface name used here. This name can be up to 12 characters long.
Page 335
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show ipv6route Command: show ipv6route IPv6 Prefix: ::/0 Protocol: Static Metric: 1 Next Hop : 3001::254 IPIF : System Status : Inactive Total Entries: 1 DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 37 Japanese Web-Based Access Control (JWAC) Command List enable jwac disable jwac config jwac [quarantine_server_url <string 128> | clear_quarantine_server_url] show jwac enable jwac redirect disable jwac redirect config jwac redirect {destination [quarantine_server | jwac_login_page] | delay_time <sec 0- 10>}(1)
Page 337
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format enable jwac Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To enable JWAC: DGS-3000-26TC:admin#enable jwac Command: enable jwac Success. DGS-3000-26TC:admin# 37-2 disable jwac Description This command is used to disable JWAC.
Page 338
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#disable jwac Command: disable jwac Success. DGS-3000-26TC:admin# 37-3 config jwac Description This command is used to configure the quarantine server URL. If the redirection is enabled and the redirection destination is a quarantine server, when a HTTP request from an unauthenticated host...
Page 339
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show jwac Parameters None. Restrictions None. Example To display the current JWAC configuration: DGS-3000-26TC:admin#show jwac Command: show jwac State : Enabled Enabled Ports Virtual IP/URL : 1.1.1.1/- Switch HTTP Port...
Page 340
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To enable JWAC redirect: DGS-3000-26TC:admin#enable jwac redirect Command: enable jwac redirect Success. DGS-3000-26TC:admin# 37-6 disable jwac redirect Description This command is used to disable JWAC redirect.
Page 341
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 37-7 config jwac redirect Description This command is used to configure redirect destination and delay time before an unauthenticated host is redirected to the quarantine server or the JWAC login web page. The unit of delay time is seconds.
Page 342
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To enable JWAC forcible logout: DGS-3000-26TC:admin#enable jwac forcible_logout Command: enable jwac forcible_logout Success. DGS-3000-26TC:admin# 37-9 disable jwac forcible_logout Description This command is used to disable JWAC forcible logout.
Page 343
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 37-10 enable jwac udp_filtering Description This command is used to enable the JWAC UDP filtering function. When UDP filtering is enabled, all UDP and ICMP packets except DHCP and DNS packets from unauthenticated hosts will be dropped.
Page 344
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To disable JWAC UDP filtering: DGS-3000-26TC:admin#disable jwac udp_filtering Command: disable jwac udp_filtering Success. DGS-3000-26TC:admin# 37-12 enable jwac quarantine_server_monitor Description This command is used to enable the JWAC quarantine server monitor. When enabled, the JWAC switch will monitor the quarantine server to ensure the server is okay.
Page 345
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To disable JWAC quarantine server monitoring: DGS-3000-26TC:admin#disable jwac quarantine_server_monitor Command: disable jwac quarantine_server_monitor Success. DGS-3000-26TC:admin# 37-14 config jwac quarantine_server_error_timeout Description This command is used to set the quarantine server error timeout.
Page 346
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 37-15 config jwac virtual_ip Description This command is used to configure JWAC virtual IP addresses used to accept authentication requests from an unauthenticated host. The virtual IP of JWAC is used to accept authentication request from unauthenticated host.
Page 347
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters add - Specifies to add a network address to which the traffic will not be blocked. Up to 100 network addresses can be added. delete - Specifies to delete a network address to which the traffic will not be blocked.
Page 348
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the TCP port which the JWAC switch listens to: DGS-3000-26TC:admin#config jwac switch_http_port 8888 http Command: config jwac switch_http_port 8888 http Success. DGS-3000-26TC:admin# 37-18 config jwac ports Description This command is used to configure port state of JWAC.
Page 349
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the JWAC port state: DGS-3000-26TC:admin#config jwac ports 1-9 state enable Command: config jwac ports 1-9 state enable Success. DGS-3000-26TC:admin# 37-19 show jwac ports Description This command is used to display the port configuration of JWAC.
Page 350
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide JWAC shares other RADIUS configurations with 802.1X. When using this command to set the RADIUS protocol, make sure the RADIUS server added by the config radius command supports the protocol.
Page 351
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To create a JWAC user in the local database: DGS-3000-26TC:admin#create jwac user 112233 Command: create jwac user 112233 Enter a case-sensitive new password:****** Enter the new password again for confirmation:****** Success.
Page 352
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 37-23 delete jwac Description This command is used to delete JWAC users from the local database. Format delete jwac [user <username 15> | all_users] Parameters user - Specifies the user name to be deleted.
Page 353
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To display the current JWAC local users: DGS-3000-26TC:admin#show jwac user Command: show jwac user User Name Password ---------------- ---------------- ---------- 112233 112233 Total Entries:2 DGS-3000-26TC:admin# 37-25 clear jwac auth_state Description This command is used to clear authentication entries.
Page 354
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 37-26 show jwac auth_state ports Description This command is used to display information for JWAC client hosts. Format show jwac auth_state ports {<portlist>} Parameters <portlist> - (Optional) Specifies a port range to show the JWAC authentication entries.
Page 355
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config jwac authorization attributes {radius [enable | disable] | local [enable | disable]}(1) Parameters radius - If specifies to enable, the authorized data assigned by the RADUIS server will be accepted if the global authorization network is enabled.The default state is enabled.
Page 356
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To display the JWAC update server: DGS-3000-26TC:admin#show jwac update_server Command: show jwac update_server Index TCP/UDP Port State ----- ------------------ ------- ----- -------- 172.18.0.0/21 Active 172.18.0.0/21 Active 172.18.0.0/21 Active DGS-3000-26TC:admin#...
Page 357
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To customize the authenticate page: DGS-3000-26TC:admin# config jwac authentication_page element japanese page_title "ディーリンクジャパン株式会社" login_window_title "JWAC 认证" user_name_title "ユーザ名" password_title "パスワード" logout_window_title "ログアウ ト" Command: config jwac authentication_page element japanese page_title "ディーリン...
Page 358
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show jwac authenticate_page Parameters None. Restrictions None. Example To display the element mapping of the customized authenticate page: DGS-3000-26TC:admin#show jwac authenticate_page Command: show jwac authenticate_page Current Page : English Version...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 38 Jumbo Frame Command List enable jumbo_frame disable jumbo_frame show jumbo_frame 38-1 enable jumbo_frame Description This command is used to configure the jumbo frame setting as enable. Format enable jumbo_frame Parameters None.
Page 360
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators and Operators can issue this command. Example To disable the Jumbo frame: DGS-3000-26TC:admin#disable jumbo_frame Command: disable jumbo_frame Success. DGS-3000-26TC:admin# 38-3 show jumbo_frame Description This command is used to display the current configuration of jumbo frame.
Page 362
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators and Operators can issue this command. Example To disable the Layer 2 protocol tunneling function: DGS-3000-26TC:admin#disable l2protocol_tunnel Command: disable l2protocol_tunnel Success. DGS-3000-26TC:admin# 39-3 config l2protocol_tunnel ports Description This command is used to configure Layer 2 protocol tunneling on ports.
Page 363
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 01-00-0C-CC-CC-CD - Specifies the MAC address as 01-00-0C-CC-CC-CD. all - All tunnel-abled Layer 2 protocols will be tunneled on the ports. threshold - (Optional) Specifies the drop threshold for packets-per-second accepted on the UNI ports.
Page 364
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show l2protocol_tunnel Command: show l2protocol_tunnel Global State : Enabled UNI Ports : 1-4 NNI Ports DGS-3000-26TC:admin# To show Layer 2 protocol tunneling information summary: DGS-3000-26TC:admin#show l2protocol_tunnel uni Command: show l2protocol_tunnel uni...
Page 366
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 40-2 delete link_aggregation group_id Description This command is used to delete a previously configured link aggregation group. Format delete link_aggregation group_id <value> Parameters group_id - Specifies the group id. The number of link aggregation groups is project dependency.
Page 367
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide specified, the group will keep the previous state, the default state is disabled. If configure LACP group, the ports’ state machine will start. enable - Enables the specified link aggregation group.
Page 368
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config link_aggregation algorithm mac_source_dest Command: config link_aggregation algorithm mac_source_dest Success. DGS-3000-26TC:admin# 40-5 show link_aggregation Description This command is used to display the current link aggregation configuration on the Switch. Format show link_aggregation {group_id <value>...
Page 369
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show link_aggregation Command: show link_aggregation Link Aggregation Algorithm = MAC-Source-Dest Group ID Type : LACP Master Port Member Port : 5-7 Active Port Status : Enabled Flooding Port : Total Entries : 1...
Page 370
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide passive - Specifies to set the LACP mode as passive. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To config port LACP mode: DGS-3000-26TC:admin#config lacp_port 1-12 mode active command: config lacp_port 1-12 mode active Success.
Page 371
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show lacp_port Command: show lacp_port Port Activity ------ -------- Active Active Active Active Active Active Active Active Active Active Active Active DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format enable lldp Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To enable LLDP: DGS-3000-26TC:admin#enable lldp Command: enable lldp Success. DGS-3000-26TC:admin# 41-2 disable lldp Description This command is used to stop sending and receiving of LLDP advertisement packet.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters notification_interval - Specifies the timer of notification interval for sending notification to configured SNMP trap receiver(s). The default setting is 5 seconds. <sec 5-3600> - Enter the notification interval value here. This value must be between 5 and 3600 seconds.
Page 376
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide rx_only - Configures the specified port(s) to receive LLDP packets from neighbors. tx_and_rx - Configures the specified port(s) to both transmit and receive LLDP packets. disable - Disable LLDP packet transmit and receive on the specified port(s).
Page 377
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide connectivity of the network. If EAPOL, GVRP, STP (including MSTP), and LACP protocol identity is enabled on this port and it is enabled to be advertised, then this protocol identity will be advertised.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config lldp forward_message enable Command: config lldp forward_message enable Success. DGS-3000-26TC:admin# 41-7 show lldp Description This command is used to display the Switch’s general LLDP configuration status. Format show lldp Parameters None.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 41-8 show lldp mgt_addr Description This command is used to display the LLDP management address information. Format show lldp mgt_addr {[ipv4 <ipaddr> | ipv6 <ipv6addr>]} Parameters ipv4 - (Optional) Specifies the IPv4 address used for the display.
Page 382
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display the LLDP port 1 TLV option configuration: DGS-3000-26TC:admin#show lldp ports Command: show lldp ports 1 Port ID ----------------------------------------------------------------- Admin Status : TX_and_RX Notification Status : Enabled...
Page 383
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide brief - Displays the information in brief mode. normal - Displays the information in normal mode. This is the default display mode. detailed - Displays the information in detailed mode.
Page 384
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide To display outbound LLDP advertisements for port 1 in normal mode: DGS-3000-26TC:admin#show lldp local_ports 1 mode normal Command: show lldp local_ports 1 mode normal Port ID : 1 ----------------------------------------------------------------------------- Port ID Subtype...
Page 385
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide mode – (Optional) Specifies to display the information in various modes. brief - Displays the information in brief mode. normal - Displays the information in normal mode. This is the default display mode.
Page 386
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide To display remote table in normal mode: DGS-3000-26TC:admin# show lldp remote_ports 3 mode normal Command: show lldp remote_ports 3 mode normal Port ID : 3 ------------------------------------------------------------------------------- Remote Entities Count : 1...
Page 387
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin# show lldp remote_ports 3 mode detailed Command: show lldp remote_ports 3 mode detailed Port ID : 3 ------------------------------------------------------------------------------- Remote Entities Count : 1 Entity 1 Chassis ID Subtype : MAC Address...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 41-12 show lldp statistics Description This command is used to display an overview of neighbor detection activity on the Switch. Format show lldp statistics Parameters None. Restrictions None. Example To display global statistics information:...
Page 389
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To display statistics information of port 1: DGS-3000-26TC:admin#show lldp statistics ports 1 Command: show lldp statistics ports 1 Port ID : 1 --------------------------------------------- LLDPStatsTXPortFramesTotal : 23 LLDPStatsRXPortFramesDiscardedTotal LLDPStatsRXPortFramesErrors LLDPStatsRXPortFramesTotal...
Page 390
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 41-15 config lldp_med log state Description This command is used to configure the log state of LLDP-MED events. Format config lldp_med log state [enable | disable] Parameters enable - Enables the log state for LLDP-MED events.
Page 391
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators and Operators can issue this command. Example To enable topology change notification on ports 1-2: DGS-3000-26TC:admin#config lldp_med notification topo_change ports 1-2 state enable Command: config lldp_med notification topo_change ports 1-2 state enable Success.
Page 392
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To enable transmitting all capabilities on all ports: DGS-3000-26TC:admin#config lldp_med ports all med_transmit_capabilities all state enable Command: config lldp_med ports all med_transmit_capabilities all state enable Success. DGS-3000-26TC:admin# 41-18 show lldp_med ports Description This command is used to display LLDP-MED per port configuration for advertisement options.
Page 393
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show lldp_med Parameters None. Restrictions None. Example To display the Switch’s general LLDP-MED configuration status: DGS-3000-26TC:admin#show lldp_med Command: show lldp_med LLDP-MED System Information: Device Class : Network Connectivity Device...
Page 394
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display LLDP-MED information currently available for populating outbound LLDP-MED advertisements for port 1: DGS-3000-26TC:admin#show lldp_med local_ports 1 Command: show lldp_med local_ports 1 Port ID ----------------------------------------------------------------- LLDP-MED Capabilities Support:...
Page 395
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show lldp_med remote_ports 1 Command: show lldp_med remote_ports 1 Port ID : 1 --------------------------------------------------------------------------- Remote Entities Count : 1 Entity 1 Chassis ID Subtype : MAC Address Chassis ID : 00-01-02-03-04-00...
Page 396
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Power Request : 8 Watts Inventory Management: Hardware Revision Firmware Revision Software Revision Serial Number Manufacturer Name Model Name Asset ID DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To set the auto-recover time to 0, which disables the auto-recovery mechanism, the interval to 20 seconds and specify VLAN-based mode: DGS-3000-26TC:admin#config loopdetect recover_timer 0 interval 20 mode vlan-...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format enable loopdetect Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To enable the LBD function globally: DGS-3000-26TC:admin#enable loopdetect Command: enable loopdetect Success. DGS-3000-26TC:admin# 42-4...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#disable loopdetect Command: disable loopdetect Success. DGS-3000-26TC:admin# 42-5 show loopdetect Description This command is used to display the LBD global configuration. Format show loopdetect Parameters None. Restrictions None. Example To show the LBD global settings:...
Page 401
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show loopdetect ports {<portlist>} Parameters ports - Specifies the range of member ports that will display the LBD settings. <portlist> - Enter the list of port to be configured here.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To specify that traps will be sent when the loop condition is detected or cleared: DGS-3000-26TC:admin#config loopdetect trap both Command: config loopdetect trap both Success.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 43 MAC Notification Command List enable mac_notification disable mac_notification config mac_notification {interval <sec 1-2147483647> | historysize <int 1-500>} config mac_notification ports [<portlist> | all] [enable | disable] show mac_notification show mac_notification ports {<portlist>}...
Page 404
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To disable mac_notification function: DGS-3000-26TC:admin#disable mac_notification Command: disable mac_notification Success. DGS-3000-26TC:admin# 43-3 config mac_notification Description This command is used to configure the Switch’s MAC address table notification global settings.
Page 405
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 43-4 config mac_notification ports Description This command is used to configure the port’s MAC address table notification status settings. Format config mac_notification ports [<portlist> | all] [enable | disable] Parameters <portlist>...
Page 406
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To show the Switch’s Mac address table notification global settings: DGS-3000-26TC:admin#show mac_notification Command: show mac_notification Global MAC Notification Settings State : Disabled Interval History Size : 1 DGS-3000-26TC:admin# 43-6...
Page 407
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show mac_notification ports Command: show mac_notification ports Port MAC Address Table Notification State ------ ------------------------------------ Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled...
Page 409
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To enable the MAC-based Access Control global state: DGS-3000-26TC:admin#enable mac_based_access_control Command: enable mac_based_access_control Success. DGS-3000-26TC:admin# 44-2 disable mac_based_access_control Description This command is used to disable MAC-based Access Control. Format...
Page 410
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters password - In RADIUS mode, the Switch will communicate with the RADIUS server using this password. The maximum length of the key is 16. <password> - Enter the password used here. The default password is “default”.
Page 411
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 44-5 config mac_based_access_control guest_vlan Description This command is used to assign a specified port list to the MAC-based Access Control guest VLAN. Ports that are not contained in port list will be removed from the MAC-based Access Control guest VLAN.
Page 412
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide • Before the authentication process starts, the user is able to forward traffic under the guest VLAN. • After the authentication process, the user will be able to access the assigned VLAN.
Page 413
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure an unlimited number of maximum users for MAC-based Access Control on ports 1 to DGS-3000-26TC:admin#config mac_based_access_control ports 1-8 max_users...
Page 414
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To create a MAC-based Access Control guest VLAN: DGS-3000-26TC:admin#create mac_based_access_control guest_vlan VLAN8 Command: create mac_based_access_control guest_vlan VLAN8 Success. DGS-3000-26TC:admin# 44-8 delete mac_based_access_control Description This command is used to remove a MAC-based Access Control guest VLAN.
Page 415
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format clear mac_based_access_control auth_state [ports [all | <portlist>] | mac_addr <macaddr>] Parameters ports - Specifies the port range to delete MAC addresses on them. all - Specifies to delete the MAC addresses of all MAC-based Access Control enabled ports.
Page 416
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters mac - Specifies the MAC address that can pass local authentication. <macaddr> - Enter the MAC address used here. vlan - (Optional) Specifies the target VLAN by using the VLAN name. When this host is authorized, it will be assigned to this VLAN.
Page 417
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure the target VLAN “default” for the MAC-based Access Control local database entry 00- 00-00-00-00-01: DGS-3000-26TC:admin#config mac_based_access_control_local mac 00-00-00-00-00-01...
Page 418
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide To delete the MAC-based Access Control local database entry for the VLAN name VLAN3: DGS-3000-26TC:admin#delete mac_based_access_control_local vlan VLAN3 Command: delete mac_based_access_control_local vlan VLAN3 Success. DGS-3000-26TC:admin# 44-13 config mac_based_access_control authorization attributes Description This command is used to enable or disable the acceptation of an authorized configuration.
Page 419
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 44-14 show mac_based_access_control Description This command is used to display the MAC-based Access Control setting. Format show mac_based_access_control {ports {<portlist>}} Parameters ports – (Optional) Displays the MAC-based Access Control settings for a specific port or range of ports.
Page 420
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide address. <macaddr> - Enter the MAC address used here. vlan - (Optional) Displays MAC-based Access Control local database entries for a specific target VLAN name. <vlan_name 32> - Enter the VLAN name here. This name can be up to 32 characters long.
Page 421
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show mac_based_access_control auth_state ports 1-4 Command: show mac_based_access_control auth_state ports 1-4 (P): Port-based Port MAC Address State Priority Aging Time/ Block Time ---- -------------------- -------------- ---- -------- ------------ Total Authenticating Hosts...
Page 422
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 44-18 config mac_based_access_control trap state Description This command is used to enable or disable sending of MAC-based Access Control traps. Format config mac_based_access_control trap state [enable | disable] Parameters enable - Enables trap for MAC-based Access Control. The trap of MAC-based Access Control will be sent out.
Page 423
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To disable log state of MAC-based Access Control: DGS-3000-26TC:admin#config mac_based_access_control log state disable Command: config mac_based_access_control log state disable Success. DGS-3000-26TC:admin#...
Page 425
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 45-2 delete mac_based_vlan Description This command is used to delete the static MAC-based VLAN entry. Format delete mac_based_vlan {mac_address <macaddr> [vlan <vlan_name 32> | vlanid <vlanid 1- 4094>]} Parameters mac_address - (Optional) Specifies the MAC address used.
Page 426
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide vlan - (Optional) Specifies the VLAN that you would like to display. <vlan_name 32> - Enter the VLAN name here. This name can be up to 32 characters long. vlanid - (Optional) Specifies the VLAN by VLAN ID.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 46 Mirror Command List config mirror port <port> {[add | delete] source ports <portlist> [rx | tx | both]} enable mirror disable mirror show mirror 46-1 config mirror Description This command is used to configure a mirror port −...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 46-2 enable mirror Description This command is used to enable mirror function without having to modify the mirror session configuration. Format enable mirror Parameters None. Restrictions Only Administrators and Operators can issue this command.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To disable mirroring function: DGS-3000-26TC:admin#disable mirror Command: disable mirror Success. DGS-3000-26TC:admin# 46-4 show mirror Description This command is used to display the current mirror function state and mirror session configuration on the Switch.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 47 MLD Snooping Command List The Multicast Listener Discovery (MLD) is used by IPv6 routers to discover multicast listeners on a directly attached link, much as IGMP is used in IPv4. The protocol is embedded in ICMPv6 instead of using a separate protocol.
Page 431
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config mld_snooping [vlan_name <vlan_name 32> | vlanid <vlanid_list> | all ] {state [enable | disable] | fast_done [enable | disable] | report_suppression [enable | disable] | proxy_reporting {state [enable | disable] | source_ip <ipv6addr>}(1)}(1) Parameters vlan_name - Specifies the name of the VLAN for which MLD snooping is to be configured.
Page 432
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 47-2 config mld_snooping querier Description This command is used to configure the timer in seconds between general query transmissions, the maximum time in seconds to wait for reports from listeners, and the permitted packet loss that is guaranteed by MLD snooping.
Page 433
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide version - (Optional) Specifies the version of MLD packet that will be sent by the Switch. <value 1-2> - Enter the version number value here. This value must be between 1 and 2.
Page 434
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config mld_snooping mrouter_ports vlan default add 1-10 Command: config mld_snooping mrouter_ports vlan default add 1-10 Success. DGS-3000-26TC:admin# 47-4 config mld_snooping router_ports_forbidden Description This command is used to designate a range of ports as being not connected to multicast-enabled routers.
Page 435
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide member of this multicast group. The multicast packet destined for this multicast group will be forwarded to all the members of this multicast group. Format enable mld_snooping Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 436
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#disable mld_snooping Command: disable mld_snooping Success. DGS-3000-26TC:admin# 47-7 show mld_snooping Description This command is used to display the current MLD snooping configuration on the Switch. Format show mld_snooping {[vlan <vlan_name 32> | vlanid <vlanid_list>]}...
Page 437
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Fast Leave : Enabled Rate Limit : 100 Report Suppression : Disabled Porxy Reporting : Disabled Porxy Reporting Source IP : :: Version Data Driven Learning State : Disabled Data Driven Learning Aged Out...
Page 438
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <portlist> - Enter the list of port here. <ipv6addr> - (Optional) Specifies the group IPv6 address for which you want to view MLD snooping group information. data_driven - (Optional) Displays the data driven groups.
Page 439
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show mld_snooping group Command: show mld_snooping group Source/Group : 2001::1/FE1E::1 VLAN Name/VID : default/1 Member Ports : 1-2 UP Time : 26 Expiry Time : 258 Filter Mode : INCLUDE...
Page 440
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 47-9 show mld_snooping forwarding Description This command is used to display the Switch’s current MLD snooping forwarding table. It provides an easy way for users to check the list of ports that the multicast group that comes from specific sources will be forwarded to.
Page 441
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 47-10 show mld_snooping mrouter_ports Description This command is used to display the currently configured router ports on the Switch. Format show mld_snooping mrouter_ports [vlan <vlan_name 32> | vlanid <vlanid_list> | all] {[static...
Page 442
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide The static group will only take effect when MLD snooping is enabled on the VLAN. An active static group must be equal to a static MLD group with a link-up member port. For those static member ports, the device needs to emulate the MLD protocol operation to the querier, and forward the traffic destined to the multicast group to the member ports.
Page 443
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <vlanid_list> - Enter the VLAN ID list here. <ipv6addr> - Specifies the multicast group IP address. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To delete an MLD snooping static group for VLAN 1, group FF1E::1:...
Page 444
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config mld_snooping static_group vlan default FF1E::1 delete 9-10 Command: config mld_snooping static_group vlan default FF1E::1 delete 9-10 Success. DGS-3000-26TC:admin# 47-14 show mld_snooping static_group Description This command used to display the MLD snooping multicast group static members.
Page 445
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide snooping entry, the MLD protocol will take care the aging out of the entry. For a data-driven entry, the entry can be specified not to be aged out or to be aged out by the aged timer.
Page 446
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 47-16 config mld_snooping data_driven_learning max_learned_entry Description This command is used to configure the maximum number of groups that can be learned by data driven. When the table is full, the system will stop the learning of the new data-driven groups. Traffic for the new groups will be dropped.
Page 447
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <vlan_name> - Enter the VLAN name here. vlanid - Specifies the VLAN ID. <vlanid_list> - Enter the VLAN ID list here. <ipv6addr> - Specifies the group’s IP address learned by data driven.
Page 448
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show mld_snooping statistic counter vlanid 1 Command: show mld_snooping statistic counter vlanid 1 VLAN name : default -------------------------------------------------- Group Number Receive Statistics Query MLD v1 Query MLD v2 Query Total...
Page 449
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format clear mld _snooping statistics counter Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To clear MLD snooping statistics counter: DGS-3000-26TC:admin#clear mld_snooping statistics counter Command: clear mld_snooping statistics counter Success.
Page 450
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the MLD snooping per port rate limit: DGS-3000-26TC:admin#config mld_snooping rate_limit ports 1 100 Command: config mld_snooping rate_limit ports 1 100 Success. DGS-3000-26TC:admin# 47-21 show mld_snooping rate_limit Description This command is used to display the rate limit of MLD control packets that are allowed by each port or VLAN.
Page 451
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 47-22 show mld_snooping host Description This command is used to display the MLD hosts that have joined groups on specific ports or specific VLANs. Format show mld_snooping host {[vlan <vlan_name 32> | vlanid <vlanid_list> | ports <portlist> | group <ipv6addr>]}...
Page 452
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Host: 2001::2 Total Entries : 4 DGS-3000-26TC:admin# To display the host’s IP information for the group “FF1E::1”: DGS-3000-26TC:admin# show mld_snooping host group FF1E::1 Command: show mld_snooping host group FF1E::1 VLAN ID:...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 48-2 debug stp show information Description This command is used to display STP detailed information, such as the hardware tables, the STP state machine, etc. Format debug stp show information Parameters None.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 48-3 debug stp show flag Description This command is used to display the STP debug level on specified ports. Format debug stp show flag {ports <portlist>} Parameters ports - (Optional) Specifies the STP ports to display.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#debug stp show flag Command: debug stp show flag Global State: Disabled Port Index Event Flag BPDU Flag State Machine Flag ---------------------------------------------------------- Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To show the STP counters for port 9: DGS-3000-26TC:admin#debug stp show counter ports 9 Command: debug stp show counter ports 9 STP Counters...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To clear all STP counters on the Switch: DGS-3000-26TC:admin#debug stp clear counter ports all Command: debug stp clear counter ports all Success.
Page 460
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To create a multicast address profile with a profile ID of 2 and a profile name of MOD: DGS-3000-26TC:admin#create mcast_filter_profile profile_id 2 profile_name MOD Command: create mcast_filter_profile profile_id 2 profile_name MOD Success.
Page 461
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 49-3 config mcast_filter_profile ipv6 Description This command is used to add or delete a range of IPv6 multicast addresses to the profile. Format config mcast_filter_profile ipv6 [profile_id <value 1-24> | profile_name <name 1-32> ] {profile_name <name 1-32>...
Page 462
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters ipv4 - (Optional) Specifies to delete an IPv4 multicast profile. ipv6 - (Optional) Specifies to delete an IPv6 multicast profile. profile_id - Specifies the ID of the profile <value 1-24> - Enter the profile ID value here. This value must be between 1 and 24.
Page 463
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display all the defined multicast address profiles: DGS-3000-26TC:admin#show mcast_filter_profile Command: show mcast_filter_profile Profile ID Name Multicast Addresses ---- ---------------- ---------------- ---------------- 234.1.1.1 - 238.244.244.244 234.1.1.1 - 238.244.244.244 customer 224.19.62.34 - 224.19.162.200...
Page 464
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide profiles. permit - Specifies that packets matching the addresses defined in the profiles will be permitted. The default mode is permit. deny - Specifies that packets matching the addresses defined in the profiles will be denied.
Page 465
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide replace - The new group will replace the eldest group in the register table. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure the maximum number of multicast group that ports 1 and 3 can join to 100:...
Page 466
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show max_mcast_group ports 1-2 Command: show max_mcast_group ports 1-2 Port Max Multicast Group Number Action ------ ---------------------------- --------- Drop Infinite Drop Total Entries: 2 DGS-3000-26TC:admin# To display the maximum number of multicast groups that VLANs 1 and 2 can join:...
Page 467
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show the limited multicast address range on ports 1 and 3: DGS-3000-26TC:admin#show limited_multicast_addr ports 1,3 Command: show limited_multicast_addr ports 1,3 Port Access : Deny Profile ID...
Page 468
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config cpu_filter l3_control_pkt <portlist> [{dvmrp|pim|igmp_query |ospf | rip | vrrp} | all] state [enable | disable] Parameters <portlist> - Specifies the port list to filter control packets. dvmrp – (Optional) Specifies to filter the DVMRP control packets.
Page 469
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To display the filtering status for port 1 and 2: DGS-3000-26TC:admin#show cpu_filter l3_control_pkt ports 1-2 Command: show cpu_filter l3_control_pkt ports 1-2 Port IGMP Query DVMRP OSPF VRRP ---- ----------...
Page 470
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide all - Specifies that the Switch will examine all above field within each packet. replace - Specifies to change the priority or DSCP. priority - Specifies the priority value <value 0-7> - Enter the value between 0 and 7.
Page 473
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <vlanid 2-4094> - The VLAN ID of the multicast VLAN to be created. This value must be between 2 and 4094. remap_priority - (Optional) The remap priority (0 to 7) to be associated with the data traffic to be forwarded on the multicast VLAN.
Page 474
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <portlist> - Enter the list of port to be configured here. untag_source_port - Specifies the source port or range of source ports as untagged members of the multicast VLAN. The PVID of the untagged source port is automatically changed to the multicast VLAN.
Page 475
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide to 32 characters long. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To create an IGMP snooping multicast group profile with the name “test”: DGS-3000-26TC:admin#create igmp_snooping multicast_vlan_group_profile test Command: create igmp_snooping multicast_vlan_group_profile test Success.
Page 476
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config igmp_snooping multicast_vlan_group_profile test add 225.1.1.1 Command: config igmp_snooping multicast_vlan_group_profile test add 225.1.1.1 Success. DGS-3000-26TC:admin# 50-5 delete igmp_snooping multicast_vlan_group_profile Description This command is used to delete an IGMP snooping multicast group profile on the Switch. Specifies a profile name to delete it.
Page 477
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <profile_name 1-32> - (Optional) Enter the multicast VLAN group profile name here. The name can be up to 32 characters long. Restrictions None. Example To display all IGMP snooping multicast VLAN profiles:...
Page 478
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <vlan_name 32> - Enter the multicast VLAN name here. The VLAN name can be up to 32 characters long. add - Specifies to associate a profile to a multicast VLAN.
Page 479
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show igmp_snooping multicast_vlan_group Command: show igmp_snooping multicast_vlan_group VLAN Name VLAN ID Multicast Group Profiles ------------------------------- ------- --------------------------------- test DGS-3000-26TC:admin# 50-9 delete igmp_snooping multicast_vlan Description This command is used to delete an IGMP snooping multicast VLAN.
Page 480
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators can issue this command. Example To enable the IGMP snooping multicast VLAN function globally: DGS-3000-26TC:admin#enable igmp_snooping multicast_vlan Command: enable igmp_snooping multicast_vlan Success. DGS-3000-26TC:admin# 50-11 disable igmp_snooping multicast_vlan Description This command is used to disable the IGMP multicast VLAN function.
Page 481
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 50-12 config igmp_snooping multicast_vlan forward_unmatched Description This command is used to configure the forwarding mode for multicast VLAN unmatched packets. When the Switch receives an IGMP snooping packet, it will match the packet against the multicast profile to determine which multicast VLAN to associate with.
Page 482
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display all IGMP snooping multicast VLANs: DGS-3000-26TC:admin#show igmp_snooping multicast_vlan Command: show igmp_snooping multicast_vlan IGMP Multicast VLAN Global State : Disabled IGMP Multicast VLAN Forward Unmatched : Disabled...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#enable stp Command: enable stp Success. DGS-3000-26TC:admin# 51-2 disable stp Description This command is used to disable STP globally. Format disable stp Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <value 6-40> - Enter the maximum age value here. This value must be between 6-40. maxhops - (Optional) Specifies to restrict the forwarded times of one BPDU. The default value is <value 6-40>...
Page 486
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show STP: DGS-3000-26TC:admin#show stp Command: show stp STP Bridge Global Settings --------------------------- STP Status : Enabled STP Version : RSTP Max Age : 25 Hello Time...
Page 487
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#create stp instance_id 2 Command: create stp instance_id 2 Success. DGS-3000-26TC:admin# 51-6 config stp instance_id Description This command is used to map or remove the VLAN range of the specified MST instance for the existed MST instances.
Page 488
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 51-7 delete stp instance_id Description This command is used to delete an MST Instance. Format delete stp instance_id <value 1-7> Parameters instance_id - Specifies the MSTP instance ID. Instance 0 represents for default instance, CIST.
Page 489
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To change the name and revision level of the MST configuration identification: DGS-3000-26TC:admin#config stp mst_config_id name R&D_BlockG revision_level 1 Commands: config stp mst_config_id name R&D_BlockG revision_level 1 Success. DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config stp mst_ports <portlist> instance_id <value 0-7> {internalCost [auto | <value 1- 200000000>] | priority <value 0-240>} Parameters mst_ports - Specifies to be distinguished from the parameters of ports only at CIST level.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide hellotime - (Optional) The default value is 2 . This parameter is for MSTP version. For STP and RSTP version, uses the per system hellotime parameter. <value 1-2> - Enter the hello time value here. This value must be between 1 and 2.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show stp ports {<portlist>} Parameters ports - Displays parameters of the designated port numbers, to be distinguished from showing parameters of the bridge. <portlist> - (Optional) Enter a list of ports used for the configuration here.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters priority - Specifies the bridge priority value. This value must be divisible by 4096. <value 0-61440> - Enter the bridge priority value here. This value must be between 0 and 61440.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide To config STP version with the same value of old configuration: DGS-3000-26TC:admin#config stp version mstp Command: config stp version mstp Configure value is the same with current value. Success. DGS-3000-26TC:admin#...
Page 495
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show stp instance Command: show stp instance STP Instance Settings --------------------------- Instance Type : CIST Instance Status : Enabled Instance Priority : 32768(bridge priority : 32768, sys ID ext : 0 )
Page 497
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 52-2 config nlb unicast_fdb Description This command is used to add or delete the forwarding ports for the specified NLB unicast FDB entry. Format config nlb unicast_fdb <macaddr>[add|delete]<portlist> Parameters <macaddr> - Specifies the MAC address of the NLB unicast FDB entry to be configured.
Page 498
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To delete the NLB unicast FDB entry, for the product that support the VLAN information on the unicast forwarding: DGS-3000-26TC:admin#delete nlb unicast_fdb 02-bf-01-01-01-01 Command: delete nlb unicast_fdb 02-BF-01-01-01-01 Success.
Page 499
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config nlb multicast_fdb [<vlan_name 32> | vlanid <vlanid>] <macaddr> [add | delete] <portlist> Parameters <vlan_name 32> - Specifies the VLAN of the NLB multicast FDB entry to be configured.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To delete NLB multicast FDB entry: DGS-3000-26TC:admin#delete nlb multicast_fdb default 03-bf-01-01-01-01 Command: delete nlb multicast_fdb default 03-bf-01-01-01-01 Success. DGS-3000-26TC:admin# 52-7 show nlb fdb Description This command is used to show the NLB Configured entry.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 53 Network Monitoring Command List show packet ports <portlist> show error ports <portlist> show utilization [cpu | ports] show utilization dram show utilization flash clear counters {ports <portlist>} 53-1...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show utilization cpu Command: show utilization cpu CPU Utilization ------------------------------------------------------------------------------- Five seconds - 10 % One minute - 10 % Five minutes - 10 % CTRL+C ESC q Quit SPACE n...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show utilization dram Command: show utilization dram DRAM Utilization : Total DRAM : 131072 Used DRAM : 118556 Utilization : 90 % CTRL+C ESC q Quit SPACE n Next Page...
Page 507
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format clear counters {ports <portlist>} Parameters ports - (Optional) Specifies a range of ports to be configured. <portlist> - Enter a list of ports used for the configuration here. If no parameter is specified, system will display counters of all the ports .
Page 510
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide critical_link_event –Specifies critical link event. dying_gasp - An unrecoverable local failure condition has occurred. critical_event - An unspecified critical event has occurred. notify_state - Specifies the event notification status. The default state is enable.
Page 511
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config ethernet_oam ports 1 link_monitor error_frame threshold 2 window 1000 notify_state enable Command: config ethernet_oam ports 1 link_monitor error_frame threshold 2 window 1000 notify_state enable Success. DGS-3000-26TC:admin# To configure the error frame seconds threshold to 2 and period to 10000 ms for port 1:...
Page 512
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config ethernet_oam ports 1 received_remote_loopback process Command: config ethernet_oam ports 1 received_remote_loopback process Success. DGS-3000-26TC:admin# 54-2 show ethernet_oam ports Description This command is used to display Ethernet OAM information, including status, configuration, statistics, and event log, on specified ports.
Page 513
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Variable: It indicates that the OAM entity can send and receive variable requests to monitor the attribute value as described in the IEEE 802.3 Clause 30 MIB. The event log displays Ethernet OAM event log information. The switch can buffer 1000 event logs.
Page 514
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show ethernet_oam ports 1 statistics Command: show ethernet_oam ports 1 statistics Port 1 ------------------------------------------------------------ Information OAMPDU TX Information OAMPDU RX Unique Event Notification OAMPDU TX Unique Event Notification OAMPDU RX...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 55 Peripherals Command List show device_status show environment config temperature threshold {high <temperature -500-500> | low <temperature -500-500>} config temperature [trap | log] state [enable | disable] 55-1 show device_status Description This command is used to display current status of power(s) and fan(s) on the system.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show environment Parameters None. Restrictions None. Example To display the device environment: DGS-3000-26TC:admin#show environment Command: show environment Temperature Trap State : Enabled Temperature Log State : Enabled Internal Power...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the warning temperature threshold: DGS-3000-26TC:admin#config temperature threshold high 80 Command: config temperature threshold high 80 Success. DGS-3000-26TC:admin# 55-4 config temperature Description This command is used to configure the trap state for temperature warning event.
Page 520
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#ping 10.51.17.1 times 4 Command: ping 10.51.17.1 times 4 Reply from 10.51.17.1, time<10ms Reply from 10.51.17.1, time<10ms Reply from 10.51.17.1, time<10ms Reply from 10.51.17.1, time<10ms Ping Statistics for 10.51.17.1 Packets: Sent =4, Received =4, Lost =0...
Page 521
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#ping6 3000::1 times 4 Command: ping6 3000::1 times 4 Reply from 3000::1, bytes=200, time<10ms Reply from 3000::1, bytes=200, time<10ms Reply from 3000::1, bytes=200, time<10ms Reply from 3000::1, bytes=200, time<10ms Ping Statistics for 3000::1...
Page 523
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config port_security system max_learning_addr 256 Command: config port_security system max_learning_addr 256 Success. DGS-3000-26TC:admin# 57-2 config port_security ports Description This command is used to configure the admin state, the maximum number of addresses that can be learnt and the lock address mode.
Page 524
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure the port-based port security setting so that the maximum number of port security entries is restricted to 10, and the lock_address mode is set to permanent on port 6:...
Page 525
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config port_security vlan vlanid 1 max_learning_addr 64 Command: config port_security vlan vlanid 1 max_learning_addr 64 Success. DGS-3000-26TC:admin# 57-4 delete port_security_entry Description This command is used to delete a port security entry.
Page 526
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters ports - (Optional) Specifies the range of ports to be configured. <portlist> - The port security entries learned on the specified port will be cleared. all - All the port security entries learned by the system will be cleared.
Page 527
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To show all the port security entries: DGS-3000-26TC:admin#show port_security_entry Command: show port_security_entry MAC Address Port Lock Mode ----------------- ---- ----- --------------- 00-00-00-00-00-01 DeleteOnTimeout Total Entries: 1 DGS-3000-26TC:admin# 57-7 show port_security...
Page 528
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show port_security Command: show port_security Port Security Trap/Log : Disabled System Maximum Address : 256 VLAN Configuration (Only VLANs with limitation are displayed) VLAN Name Max. Learning Addr. ---- --------------------------------...
Page 529
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format disable port_security trap_log Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To prevent a port security trap from being sent from the switch: DGS-3000-26TC:admin#disable port_security trap_log Command: disable port_security trap_log Success.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 58 Power Saving Command List config power_saving mode {length_detection | link_detection | led | port | hibernation} [enable | disable] config power_saving hibernation [[add | delete] time_range <range_name 32> | clear_time_range] config power_saving led [[add | delete] time_range <range_name 32>...
Page 531
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide led - (Optional) Specifies to configure the power saving state of port LED. port - (Optional) Specifies to configure the power saving state of port. hibernation - (Optional) Specifies to configure the power saving state of system hibernation.
Page 532
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config power_saving hibernation add time_range range_1 Command: config power_saving hibernation add time_range range_1 Success. DGS-3000-26TC:admin# 58-3 config power_saving led Description This command is used to add or delete the power saving schedule on the LED of all ports. When any schedule is up, all port’s LED will be turned off even device’s LED working on PoE mode.
Page 533
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config power_saving port [<portlist> | all] [[add | delete] time_range <range_name 32> | clear_time_range] Parameters <portlist> - Specifies a range of ports. all - Specifies all ports. add - Specifies to add a time range.
Page 534
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters length_detection - (Optional) Displays the length detection configuration of power saving. link_detection - (Optional) Displays the link detection configuration of power saving. led - (Optional) Displays the port LED configuration of power saving.
Page 535
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 58-6 config led state Description This command is used to configure the LED admin state of all ports. When the port LED admin state is disabled, the LEDs of all ports are turned off. If the port LED admin state is enabled, the port LEDs are controlled by the ports' link status.
Page 536
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To display the setting of all port’s LED admin state: DGS-3000-26TC:admin#show led Command: show led Port LED State: Disabled DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 59 PPPoE Circuit ID Insertions Command List config pppoe circuit_id_insertion state [enable | disable] config pppoe circuit_id_insertion ports <portlist> {state [enable | disable] | circuit_id [mac | ip | udf <string 32>]}(1)
Page 538
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 59-2 config pppoe circuit_id_insertion ports Description This command is used to configure port’s PPPoE Circuit ID insertion function. When the port’s state and the global state are enabled, the system will insert the Circuit ID TAG to the received PPPoE discovery initiation and request packet if the TAG is absent, and remove the Circuit ID TAG from the received PPPoE offer and session confirmation packet.
Page 539
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions None. Example To display PPPoE circuit ID insertion status: DGS-3000-26TC:admin#show pppoe circuit_id_insertion Command: show pppoe circuit_id_insertion Global PPPoE State: Enabled DGS-3000-26TC:admin# 59-4 show pppoe circuit_id_insertion ports Description This command is used to display Switch’s port PPPoE Circuit ID insertion configuration.
Page 540
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show pppoe circuit_id_insertion ports Command: show pppoe circuit_id_insertion ports 2-5 Port State Circuit ID ---- -------- --------------------------------------------- Enabled Switch IP Enabled Switch IP Enabled Switch IP Enabled Switch IP DGS-3000-26TC:admin#...
Page 542
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 60-2 config dot1v_protocol_group add protocol Description This command is used to add a protocol to a protocol group. The selection of a protocol can be a pre-defined protocol type or a user defined protocol.
Page 543
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters group_id - Specifies the group ID to be deleted. <id> - Enter the group ID used here. group_name - Specifies the name of the group to be deleted. <name 32> - Enter the group name here. This name can be up to 32 characters long.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show dot1v_protocol_group group_id 10 Command: show dot1v_protocol_group group_id 10 Protocol Group ID Protocol Group Name Frame Type Protocol Value ----------------- -------------------------------- -------------- -------------- General_Group EthernetII 86DD Total Entries: 1 DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example The example is to assign VLAN marketing-1 for untaged ipv6 packet ingress from port 3. To configure the group ID 10 on port 3 to be associated with VLAN marketing-1:...
Page 546
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show port dot1v ports 1 Command: show port dot1v ports 1 Port: 1 Protocol Group ID VLAN Name Protocol Priority ------------------- --------------------------------- ----------------- default VLAN2 VLAN3 VLAN4 Total Entries: 4...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 61-2 disable qinq Description This command is used to disable the QinQ. When QinQ is disabled, all dynamic learned L2 addresses will be cleared, all dynamic registered VLAN entries will be cleared, and GVRP will be disabled.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the inner TPID in the system to 0x9100: DGS-3000-26TC:admin#config qinq inner_tpid 0x9100 Command: config qinq inner_tpid 0x9100 Success. DGS-3000-26TC:admin# 61-4 config qinq ports Description This command is used to configure the QinQ port's parameters.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config qinq ports 1-4 role nni outer_tpid 0x88A8 Command: config qinq ports 1-4 role nni outer_tpid 0x88A8 Success. DGS-3000-26TC:admin# 61-5 show qinq Description This command is used to display the global QinQ status.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display the inner-TPID of a system: DGS-3000-26TC:admin#show qinq inner_tpid Command: show qinq inner_tpid Inner TPID: 0x9100 DGS-3000-26TC:admin# 61-7 show qinq ports Description This command is used to display the QinQ configuration of the ports.
Page 552
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show qinq ports 1-2 Command: show qinq ports 1-2 Port ID: --------------------------------------------------------- Role: Miss Drop: Disabled Outer Tpid: 0x8100 Add Inner Tag: Disabled Port ID: --------------------------------------------------------- Role: Miss Drop: Disabled...
Page 553
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To replace the C-Tag in which the CVID is 20, with the S-Tag and the S-VID is 200 at UNI Port 1:...
Page 554
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#delete vlan_translation ports 1-4 Command: delete vlan_translation ports 1-4 Success. DGS-3000-26TC:admin# 61-10 show vlan_translation Description This command is used to display the existing C-VLAN-based VLAN translation rules. Format show vlan_translation {[ports <portlist> | cvid <vidlist>]} Parameters ports –...
Page 556
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide command is executed. <value 64-10240000> - Enter the transmitting data rate here. This value must be between 64 and 10240000. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 557
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show bandwidth_control 1-10 Command: show bandwidth_control 1-10 Bandwidth Control Table Port RX Rate TX Rate Effective RX Effective TX (Kbit/sec) (Kbit/sec) (Kbit/sec) (Kbit/sec) ----- ---------- ---------- ---------------- ---------------- No Limit...
Page 558
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide allowed to receive. If the specified rate is not multiple of minimum granularity, the rate will be adjusted. Restrictions Only Administrators can issue this command. Example To configure the ports 1-10 CoS bandwidth queue 1 min rate to 130 and max rate to 100000:...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show per_queue bandwidth_control 10 Command: show per_queue bandwidth_control 10 Queue Bandwidth Control Table On Port: 10 Queue Min Rate(Kbit/sec) Max Rate(Kbit/sec) No Limit No Limit No Limit No Limit No Limit...
Page 560
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config scheduling ports 10 1 weight 25 Command: config scheduling ports 10 1 weight 25 Success. DGS-3000-26TC:admin# 62-6 config scheduling_mechanism Description This command is used to configure the traffic scheduling mechanism for each CoS queue.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 62-7 show scheduling Description This command is used to display the current traffic scheduling parameters. Format show scheduling {<portlist>} Parameters <portlist> - (Optional) Specifies a range of ports to be displayed.
Page 562
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <portlist> - (Optional) Specifies a range of ports to be displayed. If no parameter specified, system will display all ports scheduling mechanism configurations. Restrictions None. Example To show scheduling mechanism:...
Page 563
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 62-9 config 802.1p user_priority Description This command is used to map the 802.1p user priority of an incoming packet to one of the eight hardware queues available on the Switch.
Page 564
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To display the 802.1p user priority: DGS-3000-26TC:admin#show 802.1p user_priority Command: show 802.1p user_priority QOS Class of Traffic: Priority-0 -> <Class-2> Priority-1 -> <Class-0> Priority-2 -> <Class-1> Priority-3 -> <Class-3>...
Page 565
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config 802.1p default_priority all 5 Command: config 802.1p default_priority all 5 Success. DGS-3000-26TC:admin# 62-12 show 802.1p default_priority Description This command is used to display the current configured default priority settings on the Switch.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show 802.1p default_priority 1-10 Command: show 802.1p default_priority 1-10 Port Priority Effective Priority ---- ----------- ------------------ DGS-3000-26TC:admin# 62-13 config dscp trust Description This command is used to configure the state of DSCP trust per port. When DSCP is not trusted, 802.1p is trusted.
Page 567
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 62-14 config 802.1p map Description This command is used to configure the mapping of 802.1p to the packet’s initial color. The mapping of 802.1p to a color is used to determine the initial color of the packet when the policing function of the packet is color aware and the packet is 1p-trusted.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show the 802.1p color mapping on port 1: DGS-3000-26TC:admin#show 802.1p map 1p_color 1 Command: show 802.1p map 1p_color 1 802.1p to Color Mapping: ---------------------------------------------------------------- Port 0...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show dscp trust 1-8 Command: show dscp trust 1-8 Port DSCP-Trust ---- ---------- Disabled Disabled Disabled Disabled Disabled Disabled Disabled Disabled DGS-3000-26TC:admin# 62-17 config dscp map Description This command is used to configure DSCP mapping. The mapping of DSCP to priority will be used to determine the priority of the packet (which will be then used to determine the scheduling queue) when the port is in DSCP trust state.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide to - Specifies that the above or following parameter will be mapped to the previously mentioned parameter. green - Specifies the result color of mapping to be green. red - Specifies the result color of mapping to be red.
Page 571
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example In case of project support per port configure, show DSCP map configuration on port 1. DGS-3000-26TC:admin#show dscp map 1 dscp_dscp Command: show dscp map 1 dscp_dscp DSCP to DSCP Mapping:...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To add a new RADIUS server: DGS-3000-26TC:admin#config radius add 1 10.48.74.121 key dlink default Command: config radius add 1 10.48.74.121 key dlink default Success.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To enable SSH server public key algorithm: DGS-3000-26TC:admin#config ssh algorithm DSA enable Command: config ssh algorithm DSA enable Success. DGS-3000-26TC:admin# 65-2 show ssh algorithm Description This command is used to show the SSH service algorithm.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure user authentication method: DGS-3000-26TC:admin#config ssh authmode publickey enable Command: config ssh authmode publickey enable Success. DGS-3000-26TC:admin# 65-4 show ssh authmode Description This command is used to show the user authentication method.
Page 584
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config ssh user <username 15> authmode [hostbased [hostname <domain_name 32> | hostname_IP <domain_name 32> [<ipaddr> | <ipv6addr>]] | password | publickey] Parameters <username 15> - Enter the user name. This name can be up to 15 characters long.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To show user information about SSH configuration: DGS-3000-26TC:admin#show ssh user authmode Command: show ssh user authmode Current Accounts: User Name Authentication Host Name Host IP --------------- --------- -------------------------------- ---------------...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure SSH server maximum session number is 3: DGS-3000-26TC:admin#config ssh server maxsession 3 Command: config ssh server maxsession 3 Success.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To disable the SSH server services: DGS-3000-26TC:admin#disable ssh Command: disable ssh Success. DGS-3000-26TC:admin# 65-10 show ssh server Description This command is used to show the SSH server general information.
Page 588
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show ssh server Command: show ssh server The SSH Server Configuration Maximum Session Connection Timeout : 120 Authentication Fail Attempts : 2 Rekey Timeout : Never TCP Port Number : 22...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#download ssl certificate 10.55.47.1 certfilename cert.der keyfilename pkey.der Command: download ssl certificate 10.55.47.1 certfilename cert.der keyfilename pkey.der Certificate Loaded Successfully! DGS-3000-26TC:admin# 66-2 enable ssl Description This command is used to enable SSL status and it’s ciphersuites. Using “enable ssl” command will enable SSL feature which means enable SSLv3 and TLSv1.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#enable ssl Command: enable ssl Success. DGS-3000-26TC:admin# Note: Web will be disabled when SSL is enabled. 66-3 disable ssl Description This command is used to disable SSL feature and supported ciphercuites. Using “disable ssl”...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#disable ssl Command: disable ssl Success. DGS-3000-26TC:admin# 66-4 show ssl Description This command is used to display the certificate status. User must download specified certificate type according to desired key exchange algorithm. The options may be no certificate, RSA type or...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 66-5 show ssl cachetimeout Description This command is used to show cahce timeout value which is designed for dlktimer library to remove the session id after expired. In order to support the resume session feature, the SSL library keep the session id in web server, and invoking the dlktimer library to remove this session id by cache timeout value.
Page 594
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure the SSL cache timeout value to 60: DGS-3000-26TC:admin#config ssl cachetimeout 60 Commands: config ssl cachetimeout 60 Success.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 67 Show Technical Support Command List show tech_support upload tech_support_toTFTP {<ipaddr> <path_filename 64>} 67-1 show tech_support Description This command is especially used by the technical support personnel to dump the device overall operation information.
Page 596
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show tech_support Command: show tech_support #------------------------------------------------------------------------------- DGS-3000-26TC Gigabit Ethernet Switch Technical Support Information Firmware: Build 1.00.015 Copyright(C) 2013 D-Link Corporation. All rights reserved. #------------------------------------------------------------------------------- ******************** Basic System Information ******************** [SYS 2000-2-20 03:09:28]...
Page 597
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format upload tech_support_toTFTP {<ipaddr> <path_filename 64>} Parameters <ipaddr> - (Optional) Specifies the IP address of TFTP server. <path_filename 64> - Specifies the file name to store the information of technique’s support in TFTP server.
Page 599
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format disable smtp Parameters None. Restrictions Only Administrators can issue this command. Example To disable SMTP status: DGS-3000-26TC:admin#disable smtp Command: disable smtp Success. DGS-3000-26TC:admin# 68-3 config smtp Description This command is used to configure SMTP settings.
Page 600
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure a SMTP server IP address: DGS-3000-26TC:admin#config smtp server 172.18.208.9 Command: config smtp server 172.18.208.9 Success. DGS-3000-26TC:admin# To configure an SMTP server port: DGS-3000-26TC:admin#config smtp server_port 25 Command: config smtp server_port 25 Success.
Page 601
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show smtp Parameters None. Restrictions None. Example To display the current SMTP information: DGS-3000-26TC:admin#show smtp Command: show smtp SMTP Status : Disabled SMTP Server Address : 172.18.208.9 SMTP Server Port...
Page 602
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators can issue this command. Example To test whether the SMTP server can be reached: DGS-3000-26TC:admin#smtp send_testmsg Command: smtp send_testmsg Subject:e-mail heading Content:e-mail content Sending mail, please wait...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Use an SNMP community string to define the relationship between the SNMP manager and the agent. The community string acts like a password to permit access to the agent on the Switch. You...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format delete snmp community <community_string 32> Parameters community - Specifies that the community string will be deleted. <community_string 32> - Enter the community string value here. This value can be up to 32 characters long.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show snmp community Command: show snmp community SNMP Community Table Community Name View Name Access Right ------------------------------- ---------------------- ------------ private CommunityView read_write public CommunityView read_only Total Entries : 2 DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide none - Specifies that no encryption will be used for the privacy key. des - Specifies that the DES encryption will be used for the privacy key. <priv_key 32-32> - Enter the DES privacy key here. This value must be 32 characters long.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 69-6 show snmp user Description This command is used to display information on each SNMP username in the group username table. Format show snmp user Parameters None. Restrictions None. Example...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide v2c - The second least secure of the possible security models. v3 - The most secure of the possible. noauth_nopriv - Neither support packet authentication nor encrypting. auth_nopriv - Support packet authentication.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#delete snmp group group123 Command: delete snmp group group123 Success. DGS-3000-26TC:admin# 69-9 show snmp groups Description This command is used to display the names of groups on the Switch and the security model, level, the status of the different views.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show snmp groups Command: show snmp groups Vacm Access Table Settings Group Name : public ReadView Name : CommunityView WriteView Name Notify View Name : CommunityView Securiy Model : SNMPv1...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <oid> - Object-Identified tree, MIB tree. view_type - Specifies the access type of the MIB tree in this view. included - Includes for this view. excluded - Excludes for this view.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 69-12 show snmp view Description This command is used to display the SNMP view record. Format show snmp view {<view_name 32>} Parameters <view_name 32> - Enter the view name to be displayed. The name can be up to 32 characters long.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters host - Specifies the recipient for which the traps are targeted. <ipaddr> - The IP address of the recipient for which the traps are targeted. v6host - Specifies the IPv6 host address to which the trap packet will be sent.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To delete SNMP host “10.0.0.1”: DGS-3000-26TC:admin#delete snmp host 10.0.0.1 Command: delete snmp host 10.0.0.1 Success. DGS-3000-26TC:admin# 69-15 show snmp host Description This command is used to display the recipient for which the traps are targeted.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 69-16 show snmp v6host Description This command is used to display the recipient for which the traps are targeted. Format show snmp v6host {<ipv6addr>} Parameters <ipv6addr> - (Optional) Enter the IPv6 host address used for the configuration here.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 69-17 config snmp engineID Description This command is used to configure a identifier for the SNMP engine on the Switch. Format config snmp engineID <snmp_engineID 10-64> Parameters <snmp_engineID 10-64> - Enter the SNMP engine ID here. It is octet string type. It accepts the hex number directly.This value must be between 10 and 64.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To show SNMP engine ID: DGS-3000-26TC:admin#show snmp engineID Command: show snmp engineID SNMP Engine ID : 1023457890 DGS-3000-26TC:admin# 69-19 enable snmp Description This command is used to enable the SNMP function.
Page 619
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators and Operators can issue this command. Example To disable SNMP: DGS-3000-26TC:admin#disable snmp Command: disable snmp Success. DGS-3000-26TC:admin# 69-21 config snmp system_name Description This command is used to configure the name for the Switch.
Page 620
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config snmp system_location {<sw_location>} Parameters <sw_location> - (Optional) Enter the SNMP system location string here. This string can be up to 255 characters long. Restrictions Only Administrators and Operators can issue this command.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 69-24 enable snmp traps Description This command is used to enable SNMP trap support. Format enable snmp traps Parameters None. Restrictions Only Administrators and Operators can issue this command. Example...
Page 622
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#disable snmp traps Command: disable snmp traps Success. DGS-3000-26TC:admin# 69-26 enable snmp authenticate_traps Description This command is used to enable SNMP authentication failure trap support. Format enable snmp authenticate_traps Parameters None.
Page 623
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators and Operators can issue this command. Example To disable SNMP authentication trap support: DGS-3000-26TC:admin#disable snmp authenticate_traps Command: disable snmp authenticate_traps Success. DGS-3000-26TC:admin# 69-28 enable snmp linkchange_traps Description This command is used to configure the sending of linkchange traps.
Page 624
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators and Operators can issue this command. Example To disable the sending of linkchange traps: DGS-3000-26TC:admin#disable snmp linkchange_traps Command: disable snmp linkchange_traps Success. DGS-3000-26TC:admin# 69-30 config snmp linkchange_traps ports...
Page 625
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 69-31 config snmp coldstart_traps Description This command is used to configure the trap for coldstart event. Format config snmp coldstart_traps [enable | disable] Parameters enable - Enables the trap of the coldstart event. The default state is enabled.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure the trap state for warmstart event: DGS-3000-26TC:admin#config snmp warmstart_traps enable Command: config snmp warmstart_traps enable Success. DGS-3000-26TC:admin# 69-33 show snmp traps Description This command is used to display the snmp trap sending status.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config rmon trap {rising_alarm [enable | disable] | falling_alarm [enable | disable]} (1) Parameters rising_alarm - (Optional) Specifies the trap state for rising alarm. The default state is enabled.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 70 Single IP Management Command List enable sim disable sim show sim {[candidates {<candidate_id 1-100>} | members{<member_id 1-32>} | group {commander_mac <macaddr>} | neighbor]} reconfig {member_id <value 1-32> | exit} config sim_group [add <candidate_id 1-100>...
Page 630
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 70-2 disable sim Description This command is used to disable single IP management on the Switch. Format disable sim Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 631
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show the self information in detail: DGS-3000-26TC:admin#show sim Command: show sim SIM Version : VER-1.61 Firmware Version : 1.00.015 Device Name MAC Address : 00-01-02-03-04-00 Capabilities...
Page 632
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show sim members Command: show sim members MAC Address Platform / Hold Firmware Device Name Capability Time Version --- ----------------- ------------------------ ----- --------- ---------------- 00-01-02-03-04-00 DGS-3000-26TC L2 Switch 1.00.015 Device 00-55-55-00-55-00 DGS-3000-26TC L2 Switch 1.00.015...
Page 633
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show sim neighbor Command: show sim neighbor Neighbor Table Port MAC Address Role ------ ------------------ --------- 00-35-26-00-11-99 Commander 00-35-26-00-11-91 Member 00-35-26-00-11-90 Candidate Total Entries: 3 DGS-3000-26TC:admin# 70-4 reconfig Description This command is used to re-telnet to member.
Page 634
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config sim_group [add <candidate_id 1-100> {<password>} | delete <member_id 1-32>] Parameters add - Specifies to add a specific candidate to the group. <candidate_id 1-100> - Enter the candidate ID to be added to the group here. This value must be between 1 and 100.
Page 635
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config sim [{[commander {group_name <groupname 64>} | candidate] | dp_interval <sec 30- 90> | hold_time <sec 100-255>}] Parameters commander - (Optional) Specifies to transfer the role to the commander.
Page 636
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config sim dp_interval 30 Command: config sim dp_interval 30 Success. DGS-3000-26TC:admin# To change the hold time of discovery protocol: DGS-3000-26TC:admin#config sim hold_time 200 Command: config sim hold_time 200 Success. DGS-3000-26TC:admin#...
Page 637
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#download sim_ms configuration_from_tftp 10.55.47.1 D:\dwl600x.tfp members 1 Commands: download sim_ms configuration_from_tftp 10.55.47.1 D:\dwl600x.tfp members 1 This device is updating configuration. Please wait several minutes ... Download Status : MAC Address...
Page 638
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To upload configuration: DGS-3000-26TC:admin#upload sim_ms configuration_to_tftp 10.55.47.1 D:\configuration.txt members 1 Command: upload sim_ms configuration_to_tftp 10.55.47.1 D:\configuration.txt members 1 This device is uploading configuration.
Page 640
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config syslog source_ipif none Command: config syslog source_ipif none Success DGS-3000-26TC:admin# 71-2 show syslog source_ipif Description This command is used to display the syslog source IP interface. Format show syslog source_ipif Parameters None.
Page 641
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters ipif - Specifies the IP interface name. If only specify this parameter, the least IPv4 address and the smallest IPv6 address of ipif_name will be used as source IP addresses.
Page 642
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example Show trap source IP interface: DGS-3000-26TC:admin#show trap source_ipif Command: show trap source_ipif Trap Source IP Interface Configuration: IP Interface : System IPv4 Address : None IPv6 Address : None...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show log index 1-3 Command: show log index 1-3 Index Date Time Level Log Text ----- ---------- -------- ------- ---------------------------------------------- 2000-01-01 00:00:40 CRIT(2) System started up 2000-01-01 00:00:40 CRIT(2) System cold start 2000-01-01 01:49:30 INFO(6) Anonymous: execute command "reset system".
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators and Operators can issue this command. Example To enable the sending of syslog messages: DGS-3000-26TC:admin#enable syslog Command: enable syslog Success. DGS-3000-26TC:admin# 72-5 disable syslog Description This command is used to disable the sending of syslog messages.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 72-6 show syslog Description This command is used to display the syslog protocol global state. Format show syslog Parameters None. Restrictions None. Example To display the syslog protocol global state:...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config syslog host all severity debug facility local0 Command: config syslog host all severity debug facility local0 Success. DGS-3000-26TC:admin# 72-9 delete syslog host Description This command is used to delete the syslog host(s).
Page 651
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To show the syslog host information: DGS-3000-26TC:admin#show syslog host Command: show syslog host Syslog Global State: Disabled Host IP Address : 10.90.90.1 Severity : Debug(7) Facility : Local0...
Page 652
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config log_save_timing on_demand Command: config log_save_timing on_demand Success. DGS-3000-26TC:admin# 72-12 show log_save_timing Description This command is used to show the method for saving the log. Format show log_save_timing Parameters None.
Page 653
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters index - (Optional) Specifies the list of index numbers of the entries that need to be displayed. For example, the index 1-5 will display the attack log messages from 1 to 5.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 73 System Severity Command List config system_severity [trap | log | all] [emergency | alert| critical | error | warning | notice | information | debug | <level 0-7>]...
Page 655
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config system_severity trap warning Command: config system_severity trap warning Success. DGS-3000-26TC:admin# 73-2 show system_severity Description This command is used to display the severity level controls for the system. Format show system_severity Parameters None.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 74 Telnet Client Command List telnet [<ipaddr> | <domain_name 255> |<ipv6addr>] {tcp_port <value 1-65535>} 74-1 telnet Description This command is used to start the telnet client to connect to the specific telnet server. The parameters specified by the command will only be used for the establishment of this specific session.
Page 658
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <path_filename 64> | ftp: <string user:password@ipaddr:tcpport/path_filename>] {dest_file <path_filename 64>}] Parameters firmware_fromTFTP - Specifies to download firmware from a TFTP server. <ipaddr> - (Optional) The IP address of the TFTP server.
Page 659
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To download firmware from TFTP: DGS-3000-26TC:admin#download firmware_fromTFTP 10.54.71.1 src_file px.had Command: download firmware_fromTFTP 10.54.71.1 src_file px.had Connecting to server....Done. Download firmware...... Done. Do not power off! Please wait, programming flash..Done.
Page 660
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters cfg_toTFTP – Specifies that the configuration file will be uploaded to the TFTP server. <ipaddr> - The IP address of the TFTP server. <ipv6addr> - (Optional) The IPv6 address of the TFTP server.
Page 661
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide attack_log_toTFTP – Specifies that the attack log will be uploaded to the TFTP server. <ipaddr> - The IP address of the TFTP server. <ipv6addr> - (Optional) The IPv6 address of the TFTP server.
Page 662
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide begin - (Optional) The first line that contains the specified filter string will be the first line of the output. <filter_string 80> - A filter string is enclosed by symbol. Thus, the filter string itself cannot contain the character.
Page 663
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#upload firmware_toTFTP 10.90.90.10 dest_file d:\firmware.had Command: upload firmware_toTFTP 10.90.90.10 dest_file d:\firmware.had Connecting to server....Done. Upload firmware......Done. Success. DGS-3000-26TC:admin# To display a scenario where the uploading of the firmware to the TFTP server failed, because of an incorrect or missing filename from the source.
Page 664
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#upload attack_log_toTFTP 10.90.90.10 dest_file d:\attack.txt Command: upload attack_log_toTFTP 10.90.90.10 dest_file d:\attack.txt Success. DGS-3000-26TC:admin# 75-3 config tftp Description This command is used to pre-configure TFTP server and file pathname on the TFTP server.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To enable SNTP: DGS-3000-26TC:admin#enable sntp Command: enable sntp Success. DGS-3000-26TC:admin# 76-4 disable sntp Description This command is used to turn off SNTP support.
Page 670
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config time <date ddmthyyyy> <time hh:mm:ss> Parameters <date ddmthyyyy> - Specifies the system clock date. An example would look like this: '30jun2010'. <time hh:mm:ss> - Specifies the system clock time. An example would look like this: '12:00:00'.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To configure time_zone: DGS-3000-26TC:admin#config time_zone operator + hour 2 min 30 Command: config time_zone operator + hour 2 min 30 Success. DGS-3000-26TC:admin# 76-7 config dst Description This command is used to configure Daylight Saving Time of the device.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide 30 - Specifies that the offset range will 30 minutes. 60 - Specifies that the offset range will 60 minutes. 90 - Specifies that the offset range will 90 minutes.
Page 673
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format show time Parameters None. Restrictions None. Example To show time: DGS-3000-26TC:admin#show time Command: show time Current Time Source : System Clock Boot Time : 9 May 2011 06:20:55 Current Time : 9 May 2011...
Page 675
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#traceroute 10.48.74.121 probe 3 Command: traceroute 10.48.74.121 probe 3 <10 ms. 10.12.73.254 <10 ms. 10.19.68.1 <10 ms. 10.48.74.121 Trace complete. DGS-3000-26TC:admin# 77-2 traceroute6 Description This command is used to trace the IPv6 routed path between the Switch and a destination end station.
Page 676
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#traceroute6 3000::1 probe 3 Command: traceroute6 3000::1 probe 3 <10 ms. 1345:142::11 <10 ms. 2011:14::100 <10 ms. 3000::1 Trace complete. DGS-3000-26TC:admin# Trace the IPv6 routed path between the Switch and 1210:100::11 with port 40000:...
Page 678
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide countdown - (Optional) Timer for shutdown mode. If a port enters the shutdown Rx state and this timer runs out, port will be shutdown forever. The parameter is not applicable if “drop”...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Example To enable both the occurred mode and cleared mode traffic control traps: DGS-3000-26TC:admin#config traffic trap both Command: config traffic trap both Success. DGS-3000-26TC:admin# 78-3 show traffic control Description This command is used to display the current traffic control settings.
Page 680
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show traffic control 1-10 Command: show traffic control 1-10 Traffic Control Trap : [Both] Traffic Control Log : Enabled Traffic Control Auto Recover Time: 0 Minutes Port Thres Broadcast Multicast Unicast...
Page 681
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config traffic control log state enable Command: config traffic control log state enable Success. DGS-3000-26TC:admin# 78-5 config traffic control auto_recover_time Description This command is used to configure the traffic auto-recovery time that is allowed for a port to recover from the shutdown forever status.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 79 Traffic Segmentation Command List config traffic_segmentation [<portlist> | all] forward_list [null | all | <portlist>] show traffic_segmentation {<portlist>} 79-1 config traffic_segmentation Description This command is used to configure the traffic segmentation.
Page 683
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <portlist> - (Optional) Specifies a range of ports to be displayed. If no parameter is specified, the system will display all current traffic segmentation tables. Restrictions None. Example To display traffic segmentation table:...
Page 685
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#create trusted_host 10.48.74.121 Command: create trusted_host 10.48.74.121 Success. DGS-3000-26TC:admin# 80-2 delete trusted_host Description This command is used to delete a trusted host entry made using the create trusted_host command above.
Page 686
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Format config trusted_host [<ipaddr> | <ipv6addr> | network <network_address> | ipv6_prefix <ipv6networkaddr>] [add | delete] {snmp | telnet | ssh | http | https | ping | all} Parameters <ipaddr> - The IP address of the trusted host.
Page 687
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display trusted host: DGS-3000-26TC:admin#show trusted_host Command: show trusted_host Management Stations IP Address Access Interface ---------------------------------------------------------------- 10.48.74.121 SNMP Telnet SSH HTTP HTTPs Ping Total Entries: 1 DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 81 Unicast Routing Command List create iproute [default] <ipaddr> {<metric 1-65535>} delete iproute [default] show iproute {<network_address>} {static} 81-1 create iproute Description This command is used to create an IP static route.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters default - Deletes an IP default route (0.0.0.0/0). Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To delete an IP default route: DGS-3000-26TC:admin#delete iproute default 10.1.1.254 Command: delete iproute default 10.1.1.254...
Page 690
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show iproute Command: show iproute Routing Table IP Address/Netmask Gateway Interface Cost Protocol ------------------ --------------- ------------ -------- -------- 10.1.1.0/24 0.0.0.0 System Local 192.168.1.0/24 0.0.0.0 Local Total Entries : 2 DGS-3000-26TC:admin#...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 82 VLAN Trunking Command List enable vlan_trunk disable vlan_trunk config vlan_trunk ports [<portlist>|all] state [enable|disable] show vlan_trunk 82-1 enable vlan_trunk Description This command is used to enable the VLAN trunk function. When the VLAN trunk function is enabled, the VLAN trunk ports shall be able to forward all tagged frames with any VID.
Page 692
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators can issue this command. Example To disable the VLAN Trunk: DGS-3000-26TC:admin#disable vlan_trunk Command: disable vlan_trunk Success. DGS-3000-26TC:admin# 82-3 config vlan_trunk Description This command is used to configure a port as a VLAN trunk port. By default, none of the port is a VLAN trunk port.
Page 693
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <portlist> - Enter a list of ports used for the configuration here. all - Specifies that all the ports will be used for this configuration. state - Specifies that the port is a VLAN trunk port or not.
Page 694
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Port 6, 7 have the same VLAN configuration before enabling VLAN trunk. Port 6 is LA-1 member port; port 7 is LA-1 master port. DGS-3000-26TC:admin#config vlan_trunk ports 7 state disable Command: config vlan_trunk ports 7 state disable Success.
Page 695
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show vlan Command: show vlan VLAN Trunk State : Enabled VLAN Trunk Member Ports : 1-5 VLAN Name : default VLAN Type : Static Advertisement : Enabled Member Ports : 1-26...
Page 697
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#enable voice_vlan v2 Command: enable voice_vlan v2 Success. DGS-3000-26TC:admin# 83-2 disable voice_vlan Description This command is used to disable the voice VLAN function on a switch. When the voice VLAN function is disabled, the voice VLAN will become unassigned.
Page 698
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters <int 0-7> - Enter the priotity of the voice VLAN. This value must be between 0 and 7. The default priority is 5. Restrictions Only Administrators, Operators and Power-Users can issue this command.
Page 699
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To add a user-defined OUI for a voice device: DGS-3000-26TC:admin#config voice_vlan oui add 00-0A-0B-00-00-00 FF-FF-FF-00-00- Command: config voice_vlan oui add 00-0A-0B-00-00-00 FF-FF-FF-00-00-00 Success.
Page 700
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions Only Administrators, Operators and Power-Users can issue this command. Example To configure voice VLAN ports 4-6 to enable: DGS-3000-26TC:admin#config voice_vlan ports 4-6 state enable Command: config voice_vlan ports 4-6 state enable Success.
Page 701
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#config voice_vlan aging_time 60 Command: config voice_vlan aging_time 60 Success. DGS-3000-26TC:admin# 83-7 config voice_vlan log state Description This command is used to configure the log state for voice VLAN. If there is a new voice device detected/or a port joins/leaves the voice VLAN dynamically, and the log is enabled, a log will be triggered.
Page 702
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display the voice VLAN global information when voice VLAN is enabled: DGS-3000-26TC:admin#show voice_vlan Command: show voice_vlan Voice VLAN State : Enabled VLAN ID VLAN Name : v2...
Page 703
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Restrictions None. Example To display the OUI information of voice VLAN: DGS-3000-26TC:admin#show voice_vlan oui Command: show voice_vlan oui OUI Address Mask Description ------------------ ------------------ -------------- 00-01-E3-00-00-00 FF-FF-FF-00-00-00 Siemens 00-03-6B-00-00-00 FF-FF-FF-00-00-00...
Page 704
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show voice_vlan ports 1-5 Command: show voice_vlan ports 1-5 Ports Status Mode ----- --------- -------------- Disabled Auto Untagged Disabled Auto Untagged Disabled Auto Untagged Enabled Auto Untagged Enabled Auto Untagged...
Page 705
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show voice_vlan voice_device ports 1-5 Command: show voice_vlan voice_device ports 1-5 Ports Voice Device Start Time Last Active Time ----- ----------------- ---------------- ---------------- 00-E0-BB-00-00-01 2008-10-6 09:00 2008-10-6 10:30 00-E0-BB-00-00-02 2008-10-6 14:10...
Page 706
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide DGS-3000-26TC:admin#show voice_vlan lldp_med voice_device Command: show voice_vlan lldp_med voice_device Index Local Port Chassis ID Subtype : MAC Address Chassis ID : 00-E0-BB-00-00-11 Port ID Subtype : Network Address Port ID : 172.18.1.1...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Chapter 84 Password Recovery Command List enable password_recovery disable password_recovery show password_recovery 84-1 enable password_recovery Description This command is used to enable the password recovery mode. Format enable password_recovery Parameters None.
Page 708
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Parameters None. Restrictions Only Administrators can issue this command. Example To disable the password recovery mode: DGS-3000-26TC:admin#disable password_recovery Command: disable password_recovery Success. DGS-3000-26TC:admin# 84-3 show password_recovery Description This command is used to display the password recovery state.
This chapter explains how the Password Recovery feature can help network administrators reach this goal. The following steps explain how to use the Password Recovery feature on D-Link devices to easily recover passwords. Complete these steps to reset the password: For security reasons, the Password Recovery feature requires the user to physically access the device.
Page 710
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide the current settings. reset account The reset account command deletes all the previously created accounts. reset password The reset password command resets the password of the specified user. If a {<username>}...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Appendix B System Log Entries The following table lists all possible entries and their corresponding meanings that will appear in the System Log of this Switch. Category Event Description Log Information...
Page 712
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide by console (Username: <username>, IP: <ipaddr> ) Configuration upload was Configuration upload by console was Warning unsuccessfu0 unsuccessful! (Username: <username>, IP: <ipaddr> ) Log message successfully uploaded Log message successfully uploaded Informational by console (Username: <username>,...
Page 713
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide (Username: <username>, IP: <ipaddr>, ) Logout through Telnet Logout through Telnet (Username: Informational <username>, IP: <ipaddr>, ) Telnet session timed out Telnet session timed out (Username: Informational <username>, IP: <ipaddr>, )
Page 714
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Spoofing attack Possible spoofing attack from (IP: Critical 1. The soure ip is same as switch's <ipaddr> MAC: <macaddr> Port: interface ip but the source mac is <portNum>) different 2. Source ip is the same as the switch's IP in ARP packet 3.
Page 715
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide authenticated by AAA local method <userIP> authenticated by AAA local method (Username: <username>) Successful login through Console Successful login through Console Informational authenticated by AAA none method authenticated by AAA none method (Username: <username>)
Page 716
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Login failed through Telnet due to AAA Login failed through Telnet from Warning server timeout or improper <userIP> due to AAA server timeout or configuration improper configuration (Username: <username>) Successful login through SSH...
Page 717
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Successful Enable Admin through Successful Enable Admin through Informational Web authenticated by AAA none Web from <userIP> authenticated by method AAA none method (Username: <username> ) Successful Enable Admin through...
Page 718
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide <username> ) Enable Admin failed through Telnet Enable Admin failed through Telnet Warning due to AAA server timeout or improper from <userIP> due to AAA server configuration timeout or improper configuration (Username: <username>)
Page 719
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Multicast storm occurrence Port <portNum> Multicast storm is Warning occurring Multicast storm cleared Port <portNum> Multicast storm has Informational cleared Port shut down due to a packet storm Port <portNum> is currently shut...
Page 720
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Remote MEP's MAC reports an error CFM remote MAC error. MD Warning status Level:<mdlevel>, VLAN:<vlanid>, Local(Port <portNum>, Direction:<mepdirection>) Remote MEP detects CFM defects CFM remote detects a defect. MD Informational Level:<mdlevel>, VLAN:<vlanid>,...
Page 721
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Diagnostic Diagnostic: Burn in start Diagnostic: Burn in start at %S Informational Diagnostic: Burn in end Diagnostic: Burn in end at %S Informational Diagnostic: Burn in result Diagnostic: Burn in result is %S...
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Appendix C Trap Log Entries This table lists the trap logs found on the Switch. Trap Name Trap Description risingAlarm The SNMP trap that is generated when an alarm 1.3.6.1.2.1.16.0.1...
Page 723
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide state). This other state is indicated by the included value of ifOperStatus. 1.ifIndex 2.ifAdminStatus 3.ifOperStatus linkUp A linkUp trap signifies that the SNMP entity, 1.3.6.1.6.3.1.1.5.4 acting in an agent role, has detected that the ifOperStatus...
Page 724
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide dot3OamThresholdEvent A dot3OamThresholdEvent notification is sent 1.3.6.1.2.1.158.0.1 when a local or remote threshold crossing event is detected. A local threshold crossing event is detected by the local entity, while a remote...
Page 725
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide ningTrap specific port changes from a stop_learning state to a normal state, a trap will be sent out. Binding: 1: swIpMacBindingPortIndex swMacBasedAccessControlL The trap is sent when a MAC-based access 1.3.6.1.4.1.171.12.35.11.1.0.1...
Page 726
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide swVlanLoopRestart The trap is sent when a Port with a VID loop 1.3.6.1.4.1.171.12.41.10.0.4 restarts after the interval time. Binding: 1.swLoopDetectPortIndex 2.swVlanLoopDetectVID swFilterDetectedTrap Send trap when illegal DHCP server is detected.
Page 727
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Binding: 1: swDdmPort 2: swDdmThresholdType 3: swDdmThresholdExceedType swDdmThresholdExceedOrRecover swDdmWarningTrap The trap is sent when any parameter value 1.3.6.1.4.1.171.12.72.4.0.2 exceeds the warning threshold value or recover to normal status depending on the configuration of the trap action.
Page 728
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide following cases: lowVoltage -> fail. overCurrent -> fail. working -> fail. connect -> fail. disconnect -> fail. Binding : 1: swPowerUnitIndex 2: swPowerID 3: swPowerStatus swPowerRecover Power Recover notification. The notification is 1.3.6.1.4.1.171.12.11.2.2.2.0.
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Appendix D RADIUS Attributes Assignment The RADIUS Attributes Assignment on the DGS-3000 is used in the following modules: 802.1X (Port-based and Host-based), and MAC-based Access Control. The description that follows explains the following RADIUS Attributes Assignment types: ...
Page 730
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide Attribute-Specific Field Used to assign the 802.1p default Required priority of the port. If the user has configured the 802.1p priority attribute of the RADIUS server (for example, priority 7) and the 802.1X, or MAC-based authentication is successful, the device will assign the 802.1p...
Page 731
DGS-3000 Series Layer 2 Managed Gigabit Switch CLI Reference Guide profile_name profile1 ethernet vlan 0xFFF; ACL rule: config access_profile profile_id 1 add access_id auto_assign ethernet vlan_id 1 port all deny; If the user has configured the ACL attribute of the RADIUS server (for example, ACL profile: create access_profile profile_id 1 profile_name profile1 ethernet vlan 0xFFF;...