H3C 20-20 Command Reference Manual

Manual is about: MSR 20/30/50 Series Routers

Summary of 20-20

  • Page 1

    H3c msr 20/30/50 series routers command reference manual (v1.00) msr 20 series routers msr 30 series routers msr 50 series routers www.3com.Com part number: 10016323 rev. Aa august 2007.

  • Page 2

    3com corporation 350 campus drive marlborough, ma usa 01752-3064 copyright © 2007, 3com corporation. All rights reserved. No part of this documentation may be reproduced in any form or by any means or used to make any derivative work (such as translation, transformation, or adaptation) without writt...

  • Page 3: Ontents

    C ontents a bout t his g uide conventions 73 related documentation 74 a lphabetical l isting of c ommands 75 1 p ublic atm and dsl i nterface c ommands display interface atm 111 interface atm 112 reset atm interface 112 2 ima-e1/t1 i nterface c onfiguration c ommands cable 113 clock 113 code 114 dif...

  • Page 4

    Display dsl configuration 132 display dsl status 133 display dsl version 136 shdsl annex 137 shdsl mode 137 shdsl psd 138 shdsl rate 138 shdsl snr-margin 139 shdsl wire 140 6 adsl i nterface c onfiguration c ommands activate 143 adsl standard 144 adsl tx-attenuation 144 bootrom update file 145 displ...

  • Page 5

    9 c onfiguration c ommands for e thernet i nterfaces in b ridge m ode broadcast-suppression 175 display loopback-detection 176 display port 176 display port-group manual 177 flow-interval 178 group-member 178 loopback-detection control enable 179 loopback-detection enable 180 loopback-detection inte...

  • Page 6

    Crc 204 detect-ais 204 display controller e1 205 error-diffusion restraint config 206 error-diffusion restraint enable 207 error-diffusion restraint restart-channel 207 frame-format (ce1/pri interface view) 208 idlecode (ce1/pri interface view) 208 itf (ce1/pri interface view) 209 loopback (ce1/pri ...

  • Page 7

    15 t1-f i nterface c onfiguration c ommands crc 239 display ft1 239 ft1 bert (t1-f interface view) 242 ft1 cable 243 ft1 clock 244 ft1 code 244 ft1 data-coding 245 ft1 fdl 246 ft1 frame-format 246 ft1 idlecode 247 ft1 itf 247 ft1 loopback 248 ft1 timeslot-list 249 ft1 alarm-threshold 250 ft1 sendloo...

  • Page 8

    T1 channel-set 280 t1 sendloopcode 281 t1 set clock 282 t1 set frame-format 282 t1 set loopback 283 t1 set fdl 283 t1 show 284 t1 shutdown 285 t1 unframed 286 using (ct3 interface view) 287 18 isdn bri i nterface c onfiguration c ommands loopback (isdn bri interface view) 289 19 atm c onfiguration c...

  • Page 9

    Dialer circular-group 318 dialer disconnect 319 dialer enable-circular 319 dialer flow-interval 320 dialer isdn-leased (physical interface view) 320 dialer number 321 dialer priority 322 dialer queue-length 322 dialer route 323 dialer threshold 324 dialer timer autodial 325 dialer timer compete 326 ...

  • Page 10

    Llc2 timer ack-delay 355 llc2 timer busy 356 llc2 timer detect 356 llc2 timer poll 357 llc2 timer reject 358 reset dlsw circuits 358 reset dlsw reachable-cache 358 reset dlsw tcp 359 sdlc controller 360 sdlc enable dlsw 361 sdlc mac-map local 361 sdlc mac-map remote 362 sdlc max-pdu 363 sdlc max-sen...

  • Page 11

    Fr lmi n393dce 393 fr lmi n393dte 393 fr lmi t392dce 394 fr lmi type 395 fr map ip 396 fr map ppp 397 fr switch 397 fr switching 398 interface mfr 399 interface serial 399 link-protocol fr 400 link-protocol fr mfr 401 mfr bundle-name 401 mfr fragment 402 mfr fragment-size 402 mfr link-name 403 mfr r...

  • Page 12

    Display x25 cug 425 display x25 hunt-group-info 425 display x25 map 426 display x25 pad 427 display x25 switch-table pvc 428 display x25 switch-table svc 428 display x25 vc 429 display x25 x2t switch-table 432 display x25 xot 432 lapb max-frame 433 lapb modulo 434 lapb retry 434 lapb timer 435 lapb ...

  • Page 13

    X25 vc-per-map 468 x25 vc-range 468 x25 window-size 469 x25 x121-address 470 x25 xot pvc 470 x29 timer inviteclear-time 472 27 l ink a ggregation c onfiguration c ommands display lacp system-id 473 display link-aggregation interface 473 display link-aggregation summary 475 display link-aggregation v...

  • Page 14

    Link-protocol ppp 509 ppp account-statistics enable 509 ppp authentication-mode 510 ppp chap password 511 ppp chap user 511 ppp ipcp dns 512 ppp ipcp dns admit-any 513 ppp ipcp dns request 513 ppp ipcp remote-address forced 514 ppp lqc 515 ppp mp 516 ppp mp binding-mode 516 ppp mp max-bind 517 ppp m...

  • Page 15

    35 ppp d ebugging c ommands debugging ppp 543 36 b ridging c onfiguration c ommands bridge aging-time 549 bridge bridge-set enable 549 bridge bridging 550 bridge enable 550 bridge learning 551 bridge mac-address 551 bridge routing 552 bridge routing-enable 553 bridge-set 553 display bridge address-t...

  • Page 16

    Isdn q921-permanent 585 isdn send-restart 586 isdn spid auto_trigger 586 isdn spid nit 587 isdn spid timer 587 isdn spid service 588 isdn spid resend 589 isdn spid1 589 isdn spid2 590 isdn statistics 591 isdn two-tei 592 permanent-active 593 power-source 594 shutdown 595 38 mstp c onfiguration c omm...

  • Page 17

    Stp tc-protection threshold 624 stp timer forward-delay 624 stp timer hello 625 stp timer max-age 626 stp timer-factor 627 stp transmit-limit 628 vlan-mapping modulo 628 39 vlan c onfiguration c ommands description 631 display interface vlan-interface 631 display vlan 633 interface vlan-interface 63...

  • Page 18

    Display interface mfr 658 display interface mp-group 660 display interface null 661 display interface virtual-ethernet 661 display interface virtual-template 662 display mfr 663 display virtual-access 664 interface 665 interface ethernet 665 interface loopback 666 interface mfr 666 interface mp-grou...

  • Page 19

    Naturemask-arp enable 694 reset arp 695 47 g ratuitous arp c onfiguration c ommands gratuitous-arp-sending enable 697 gratuitous-arp-learning enable 697 48 arp s ource s uppression c onfiguration c ommands arp source-suppression enable 699 arp source-suppression limit 699 display arp source-suppress...

  • Page 20

    Reset dhcp server conflict 722 reset dhcp server ip-in-use 722 reset dhcp server statistics 722 static-bind client-identifier 723 static-bind ip-address 724 static-bind mac-address 725 tftp-server domain-name 725 tftp-server ip-address 726 voice-config 726 52 dhcp r elay a gent c onfiguration c omma...

  • Page 21

    Debugging dhcp client 760 57 dns c onfiguration c ommands display dns domain 765 display dns dynamic-host 765 display dns proxy table 766 display dns server 767 display ip host 767 dns domain 768 dns proxy enable 768 dns resolve 769 dns server 769 ip host 770 reset dns dynamic-host 770 58 ip a ccoun...

  • Page 22

    Reset tcp statistics 799 reset udp statistics 800 tcp anti-naptha enable 800 tcp mss 801 tcp state 801 tcp syn-cookie enable 802 tcp timer check-state 803 tcp timer fin-timeout 803 tcp timer syn-timeout 804 tcp window 805 61 ip u nicast p olicy r outing c onfiguration c ommands apply default output-...

  • Page 23

    Display ipv6 interface 832 display ipv6 neighbors 834 display ipv6 neighbors count 835 display ipv6 pathmtu 836 display ipv6 socket 836 display ipv6 statistics 837 display tcp ipv6 statistics 840 display tcp ipv6 status 842 display udp ipv6 statistics 843 dns server ipv6 844 ipv6 844 ipv6 address 84...

  • Page 24

    Display natpt frag-sessions 866 display natpt session 867 display natpt statistics 867 natpt address-group 868 natpt aging-time 869 natpt enable 870 natpt max-session 870 natpt prefix 871 natpt turn-off tos 872 natpt turn-off traffic-class 872 natpt v4bound dynamic 873 natpt v4bound static 873 natpt...

  • Page 25

    70 t erminal a ccess c onfiguration c ommands auto-close 899 auto-link 899 bind vpn-instance 900 data protect router-unix 901 data read block 901 data send delay 902 display rta 902 driverbuf save 906 driverbuf size 906 idle-timeout 907 menu hotkey 908 menu screencode 908 print connection-info 909 p...

  • Page 26

    Display ip routing-table statistics 940 display ip relay-route 941 display ip relay-tunnel 941 display load-sharing ip address 942 display ipv6 routing-table 942 display ipv6 routing-table acl 943 display ipv6 routing-table ipv6-address 944 display ipv6 routing-table ipv6-address1 ipv6-address2 945 ...

  • Page 27

    Ebgp-interface-sensitive 976 filter-policy export (bgp/bgp-vpn instance view) 977 filter-policy import (bgp/bgp-vpn instance view) 978 graceful-restart (bgp view) 979 graceful-restart timer restart 979 graceful-restart timer wait-for-rib 980 group (bgp/bgp-vpn instance view) 980 import-route (bgp/bg...

  • Page 28

    73 bgp d ebugging c ommands debugging bgp all 1015 debugging bgp detail 1017 debugging bgp event 1018 debugging bgp graceful-restart 1019 debugging bgp 1021 debugging bgp timer 1024 debugging bgp update 1025 debugging bgp update ipv4 1026 debugging bgp update ipv6 1027 debugging bgp update l2vpn 102...

  • Page 29

    Isis dis-name 1065 isis dis-priority 1066 isis enable 1067 isis mesh-group 1067 isis peer-ip-ignore 1068 isis enable 1069 isis small-hello 1069 isis timer csnp 1070 isis timer hello 1070 isis timer holding-multiplier 1071 isis timer lsp 1072 isis timer retransmit 1073 is-level 1073 is-name 1074 is-n...

  • Page 30

    Display ospf cumulative 1117 display ospf error 1118 display ospf interface 1120 display ospf lsdb 1121 display ospf nexthop 1123 display ospf peer 1124 display ospf peer statistics 1125 display ospf request-queue 1126 display ospf retrans-queue 1127 display ospf routing 1128 display ospf vlink 1129...

  • Page 31

    Spf-schedule-interval 1157 stub (ospf area view) 1157 stub-router 1158 vlink-peer (ospf area view) 1159 77 rip c onfiguration c ommands checkzero 1161 default cost (rip view) 1161 default-route originate 1162 display rip 1162 display rip database 1164 display rip interface 1165 display rip route 116...

  • Page 32

    Apply local-preference 1192 apply mpls-label 1192 apply origin 1193 apply preference 1193 apply preferred-value 1194 apply tag 1194 display ip as-path 1195 display ip community-list 1196 display ip extcommunity-list 1196 display route-policy 1197 if-match as-path 1197 if-match community 1198 if-matc...

  • Page 33

    Compare-different-as-med (ipv6 address family view) 1223 dampening (ipv6 address family view) 1224 default local-preference(ipv6 address family view) 1225 default med (ipv6 address family view) 1225 default-route imported (ipv6 address family view) 1226 display bgp ipv6 group 1226 display bgp ipv6 n...

  • Page 34

    Peer route-policy (ipv6 address family view) 1258 peer route-update-interval (ipv6 address family view) 1258 peer substitute-as (ipv6 address family view) 1259 peer timer (ipv6 address family view) 1260 preference (ipv6 address family view) 1260 reflect between-clients (ipv6 address family view) 126...

  • Page 35

    Log-peer-change 1298 maximum load-balancing(ospfv3 view) 1298 ospfv3 1299 ospfv3 area 1299 ospfv3 cost 1300 ospfv3 dr-priority 1300 ospfv3 mtu-ignore 1301 ospfv3 timer dead 1301 ospfv3 timer hello 1302 ospfv3 timer retransmit 1303 ospfv3 trans-delay 1303 preference 1304 router-id 1305 silent-interfa...

  • Page 36

    Display multicast rpf-info 1333 ip rpf-route-static 1334 mtracert 1336 multicast boundary 1337 multicast forwarding-table downstream-limit 1338 multicast forwarding-table route-limit 1339 multicast load-splitting 1340 multicast longest-match 1340 multicast minimum-ttl 1341 multicast routing-enable 1...

  • Page 37

    Originating-rp 1373 peer connect-interface 1373 peer description 1374 peer mesh-group 1374 peer minimum-ttl 1375 peer request-sa-enable 1376 peer sa-cache-maximum 1376 peer sa-policy 1377 peer sa-request-policy 1378 reset msdp peer 1378 reset msdp sa-cache 1379 reset msdp statistics 1380 shutdown (m...

  • Page 38

    Pim dm 1411 pim hello-option dr-priority 1412 pim hello-option holdtime 1413 pim hello-option lan-delay 1413 pim hello-option neighbor-tracking 1414 pim hello-option override-interval 1414 pim holdtime assert 1415 pim holdtime join-prune 1415 pim require-genid 1416 pim sm 1416 pim state-refresh-capa...

  • Page 39

    92 mld c onfiguration c ommands display mld group 1443 display mld interface 1444 display mld routing-table 1445 fast-leave (mld view) 1446 last-listener-query-interval 1447 max-response-time (mld view) 1447 mld 1448 mld enable 1448 mld fast-leave 1449 mld group-policy 1449 mld last-listener-query-i...

  • Page 40

    Hello-option holdtime (ipv6 pim view) 1479 hello-option lan-delay (ipv6 pim view) 1480 hello-option neighbor-tracking (ipv6 pim view) 1480 hello-option override-interval (ipv6 pim view) 1481 holdtime assert (ipv6 pim view) 1481 holdtime join-prune (ipv6 pim view) 1482 jp-pkt-size (ipv6 pim view) 148...

  • Page 41

    95 mpls b asics c onfiguration c ommands display mpls fast-forwarding cache 1513 display mpls ilm 1514 display mpls interface 1515 display mpls label 1516 display mpls ldp 1517 display mpls ldp cr-lsp 1518 display mpls ldp interface 1519 display mpls ldp isp 1521 display mpls ldp peer 1522 display m...

  • Page 42

    Reset mpls statistics lsp 1558 snmp-agent trap enable mpls 1559 static-lsp egress 1559 static-lsp ingress 1560 static-lsp transit 1561 statistics interval 1562 tracert lsp 1562 ttl expiration 1563 ttl propagate 1564 96 mpls te c onfiguration c ommands add hop 1565 delete hop 1566 display explicit-pa...

  • Page 43

    Mpls rsvp-te reliability 1610 mpls rsvp-te resvconfirm 1611 mpls rsvp-te srefresh 1611 mpls rsvp-te timer graceful-restart recovery 1612 mpls rsvp-te timer graceful-restart restart 1612 mpls rsvp-te timer hello 1613 mpls rsvp-te timer refresh 1613 mpls rsvp-te timer retransmission 1614 mpls te 1615 ...

  • Page 44

    Static-cr-lsp transit 1641 te-set-subtlv 1642 traffic-eng 1642 97 mpls l2vpn c onfiguration c ommands ccc interface in-label out-label 1645 ccc interface out-interface 1646 ce 1646 connection 1647 display bgp l2vpn 1648 display ccc 1653 display l2vpn ccc-interface vc-type 1654 display mpls l2vc 1655...

  • Page 45

    Ip binding vpn-instance 1695 ip vpn-instance 1696 ipv4-family 1696 peer advertise-community (bgp-vpnv4 subaddress family view) 1697 peer allow-as-loop 1698 peer as-path-acl (bgp-vpnv4 subaddress family view) 1698 peer default-route-advertise vpn-instance 1699 peer enable 1700 peer filter-policy (bgp...

  • Page 46

    Vam server vpn 1730 100 vam c lient c onfiguration c ommands client enable 1731 display vam client 1731 pre-shared-key (vam client view) 1733 resend interval 1734 server primary ip-address 1735 server secondary ip-address 1735 user 1736 vam client enable 1736 vam client name 1737 vpn 1738 101 ips ec...

  • Page 47

    Mandatory-chap 1762 mandatory-lcp 1762 reset l2tp tunnel 1763 start l2tp 1764 tunnel authentication 1764 tunnel avp-hidden 1765 tunnel flow-control 1766 tunnel name 1766 tunnel password 1767 tunnel timer hello 1767 105 t raffic p olicing (tp) c onfiguration c ommands display qos car interface 1769 d...

  • Page 48

    Display qos policy 1801 display qos policy interface 1803 qos apply policy (interface view) 1804 qos apply policy (layer 2 interface view or port group view) 1805 qos policy 1806 111 fifo q ueuing c onfiguration c ommands qos fifo queue-length 1809 112 pq c onfiguration c ommands display qos pq inte...

  • Page 49

    117 q o s t oken c onfiguration c ommands qos qmtoken 1837 118 p riority m apping t able c onfiguration c ommands display qos map-table 1839 qos map-table dot1p-ip 1840 import 1840 119 p ort p riority c onfiguration c ommands qos priority 1843 120 p ort p riority t rust m ode c onfiguration c ommand...

  • Page 50

    Reset dar session 1873 125 fr q o s c onfiguration c ommands apply policy outbound 1875 cbs 1876 cir 1876 cir allow 1877 congestion-threshold 1878 cq 1878 display fr class-map 1879 display fr fragment-info 1880 display fr switch-table 1882 display qos policy interface 1882 display qos pvc-pq interfa...

  • Page 51

    Accounting default 1913 accounting lan-access 1915 accounting login 1915 accounting optional 1916 accounting portal 1917 accounting ppp 1918 accounting voip 1919 attribute 1919 authentication default 1920 authentication lan-access 1921 authentication login 1922 authentication portal 1923 authenticat...

  • Page 52

    Primary authentication (radius scheme view) 1959 radius client 1960 radius nas-ip 1960 radius scheme 1961 radius trap 1962 reset radius statistics 1963 reset stop-accounting-buffer 1963 retry 1964 retry realtime-accounting 1965 retry stop-accounting (radius scheme view) 1966 secondary accounting (ra...

  • Page 54

    Nat aging-time 2029 nat alg 2030 nat connection-limit-policy 2031 nat log enable 2032 nat log flow-active 2032 nat log flow-begin 2033 nat outbound 2033 nat outbound static 2035 nat server 2035 nat static 2038 reset nat session 2039 reset userlog export 2040 reset userlog nat logbuffer 2040 userlog ...

  • Page 55

    Root-certificate fingerprint 2062 rule (access control policy view) 2063 state 2063 135 p ortal c onfiguration c ommands display portal acl 2065 display portal connection statistics 2066 display portal free-rule 2068 display portal interface 2069 display portal server 2070 display portal server stat...

  • Page 56

    Display acl ipv6 2106 reset acl ipv6 counter 2107 rule (in basic ipv6 acl view) 2108 rule (in advanced ipv6 acl view) 2109 rule (in simple ipv6 acl view) 2112 rule comment (for ipv6) 2115 step (for ipv6) 2116 140 ips ec c onfiguration c ommands ah authentication-algorithm 2119 cryptoswitch fabric en...

  • Page 57

    141 ike c onfiguration c ommands authentication-algorithm 2153 authentication-method 2153 certificate domain 2154 dh 2154 display ike dpd 2155 display ike peer 2156 display ike proposal 2156 display ike sa 2157 dpd 2160 encryption-algorithm 2160 exchange-mode 2161 id-type 2161 ike dpd 2162 ike local...

  • Page 58

    Sftp 2185 sftp client ipv6 source 2186 sftp client source 2187 sftp ipv6 2187 sftp server enable 2189 sftp server idle-timeout 2189 ssh client authentication server 2190 ssh client first-time enable 2190 ssh client ipv6 source 2191 ssh client source 2191 ssh server authentication-retries 2192 ssh se...

  • Page 59

    145 b ackup c enter c onfiguration c ommands display standby flow 2217 display standby state 2218 standby bandwidth 2219 standby interface 2220 standby threshold 2221 standby timer delay 2222 standby timer flow-check 2223 standby track 2223 146 ip v 4-b ased vrrp c onfiguration c ommands display vrr...

  • Page 60

    Display memory 2257 display power 2257 display reboot-type 2258 display schedule reboot 2258 license register 2259 reboot 2259 remove 2260 reset unused porttag 2260 schedule reboot at 2261 schedule reboot delay 2262 temperature-alarm enable 2263 temperature-limit 2264 149 nqa c lient c onfiguration ...

  • Page 61

    150 nqa s erver c onfiguration c ommands display nqa server status 2289 nqa server enable 2290 nqa server tcp-connect 2290 nqa server udp-echo 2291 151 n et s tream c onfiguration c ommands display ip netstream cache 2293 display ip netstream export 2294 enable 2295 ip netstream 2295 ip netstream ag...

  • Page 62

    Rmon prialarm 2325 rmon statistics 2327 154 snmp c onfiguration c ommands display snmp-agent local-switch fabricid 2329 display snmp-agent community 2329 display snmp-agent group 2330 display snmp-agent mib-view 2331 display snmp-agent statistics 2332 display snmp-agent sys-info 2333 display snmp-ag...

  • Page 63

    156 c onfiguration f ile m anagement c ommands backup startup-configuration 2361 display saved-configuration 2361 display startup 2363 reset saved-configuration 2363 restore startup-configuration 2364 save 2365 startup saved-configuration 2366 157 ftp s erver c onfiguration c ommands display ftp-ser...

  • Page 64

    Tftp-server acl 2391 tftp 2392 tftp client source 2393 tftp ipv6 2394 160 s ystem m aintaining c ommands ping 2397 ping ipv6 2398 tracert 2400 tracert ipv6 2401 161 s ystem d ebugging c ommands debugging 2403 display debugging 2404 162 b asic c onfiguration c ommands clock datetime 2405 clock summer...

  • Page 65

    Info-center console channel 2433 info-center enable 2434 info-center logbuffer 2434 info-center logfile enable 2435 info-center logfile frequency 2435 info-center logfile size-quota 2436 info-center logfile switch-directory 2436 info-center loghost 2437 info-center loghost source 2438 info-center mo...

  • Page 66

    Screen-length 2469 send 2469 set authentication password 2470 shell 2471 speed (in user interface view) 2472 stopbits 2473 terminal type 2473 user privilege level 2474 user-interface 2475 165 mac a ddress t able m anagement c onfiguration c ommands display mac-address 2477 display mac-address aging-...

  • Page 67

    168 acfp c onfiguration c ommands acfp enable 2509 display acfp client-info 2509 display acfp policy-info 2510 display acfp rule-cache 2512 display acfp rule-info 2513 display acfp server-info 2515 reset acfp rule-cache 2516 169 acsei s erver c onfiguration c ommands acsei server enable 2517 acsei s...

  • Page 68

    Ipx rip mtu 2541 ipx rip multiplier 2541 ipx rip timer update 2542 ipx route-static 2542 ipx route load-balance-path 2543 ipx route max-reserve-path 2544 ipx sap disable 2544 ipx sap gns-disable-reply 2545 ipx sap gns-load-balance 2545 ipx sap max-reserve-servers 2546 ipx sap mtu 2546 ipx sap multip...

  • Page 69

    Display voice entity 2581 display voice ipp statistic 2581 display voice iva statistic 2583 display voice subscriber-line 2584 dscp media 2587 dtmf amplitude 2587 dtmf sensitivity-level 2588 dtmf time 2588 dtmf threshold 2589 echo-canceller 2591 echo-canceller parameter 2592 em-phy-parm 2593 em-sign...

  • Page 70

    Voip called-tunnel enable 2620 voip called-start 2621 voip timer 2621 vqa dscp 2622 vqa dsp-monitor buffer-time 2623 174 d ial p lan c onfiguration c ommands caller-permit 2625 dial-prefix 2626 display voice number-substitute 2627 dot-match 2628 first-rule 2629 max-call (in voice dial program view) ...

  • Page 71

    Reverse 2665 seizure-ack enable 2665 select-mode 2666 sendring ringbusy enable 2667 signal-value 2668 special-character 2668 subscriber line 2669 tdm-clock 2670 timer dl 2671 timer dtmf 2672 timer register-pulse persistence 2673 timer register-complete group-b 2674 timer ring 2675 timeslot-set 2675 ...

  • Page 72

    Reset voice sip 2704 sip 2704 sip-comp 2704 sip-comp agent 2705 sip-comp server 2706 sip-domain 2706 source-ip 2707 user 2707 wildcard-register enable 2709 179 v o fr c onfiguration c ommands address 2711 call-mode 2712 cid select-mode 2712 display fr vofr-info 2713 entity vofr 2714 outband vofr 271...

  • Page 73: Bout

    A bout t his g uide this manual covers the command line interface (cli) of the h3c msr 20/30/50 series routers. It provides a detailed description of the operating commands, which are organized by feature. An alphabetical listing of all commands can be found beginning on page 75. This manual is inte...

  • Page 74

    74 a bout t his g uide related documentation the following manuals offer additional information necessary for managing your msr 20/30/50 series router: ■ h3c msr 20/30/50 series routers installation manuals — covers setting up and initializing your router. ■ h3c msr 20/30/50 series routers configura...

  • Page 75: Lphabetical

    A lphabetical l isting of c ommands aaa-client 2721 abr-summary (ospf area view) 1107 abr-summary (ospfv3 area view) 1279 access-limit 1913 accounting 2721 accounting default 1913 accounting lan-access 1915 accounting login 1915 accounting optional 1916 accounting portal 1917 accounting ppp 1918 acc...

  • Page 76

    Area 2554 area-authentication-mode 1037 area-id 2554 area-id 2691 arp authorized enable 701 arp authorized time-out 701 arp check enable 689 arp max-learning-num 689 arp source-suppression enable 699 arp source-suppression limit 699 arp static 690 arp timer aging 691 asbr-summary 1108 ascii 2373 asp...

  • Page 77

    Cable (ct3 interface view) 267 cable 113 cable 123 cable 201 cache-sa-enable 1365 callednumber receive-method 2727 caller-permit 2625 callmode 2649 call-mode 2712 car 1791 card-digit 2728 cas 2649 cbs 1876 c-bsr (ipv6 pim view) 1461 c-bsr (pim view) 1384 c-bsr admin-scope 1385 c-bsr global 1385 c-bs...

  • Page 78

    Connection-limit default action 2015 connection-limit default amount 2015 connection-limit enable 2016 connection-limit policy 2016 controller cpos 671 controller e1 203 controller e3 254 controller t1 217 controller t3 268 copy 2351 cost-style 1040 country 2048 country-code 192 cptone country-type ...

  • Page 79

    Default local-preference (bgp-vpnv4 subaddress family view) 1671 default local-preference(ipv6 address family view) 1225 default med (bgp/bgp-vpn instance view) 962 default med (bgp-vpnv4 subaddress family view) 1672 default med (ipv6 address family view) 1225 default subscriber-line 2570 default-co...

  • Page 80

    Dialer user 328 dialer-group 329 dialer-rule 330 dial-prefix 2626 dial-program 2575 differential-delay 115 dir 2202 dir 2352 dir 2377 disconnect 2377 display acfp client-info 2509 display acfp policy-info 2510 display acfp rule-cache 2512 display acfp rule-info 2513 display acfp server-info 2515 dis...

  • Page 81

    Display brief interface 162 display ccc 1653 display channel 2425 display clipboard 2410 display clock 2411 display configure-user 2411 display connection 1932 display connection-limit policy 2017 display connection-limit statistics 2018 display controller cpos 672 display controller cpos e1 674 dis...

  • Page 82

    Display history-command 2415 display history-command 2454 display hotkey 2415 display hwtacacs 1975 display icmp statistics 790 display igmp group 1345 display igmp interface 1346 display igmp routing-table 1348 display ike dpd 2155 display ike peer 2156 display ike proposal 2156 display ike sa 2157...

  • Page 83

    Display ipv6 routing-table verbose 948 display ipv6 socket 836 display ipv6 statistics 837 display ipx interface 2531 display ipx routing-table 2532 display ipx routing-table protocol 2534 display ipx routing-table statistics 2535 display ipx routing-table verbose 2533 display ipx service-table 2535...

  • Page 84

    Display mpls rsvp-te statistics 1584 display mpls static-cr-lsp 1586 display mpls static-l2vc 1662 display mpls static-lsp 1533 display mpls statistics interface 1534 display mpls statistics lsp 1536 display mpls te cspf tedb 1587 display mpls te link-administration admission-control 1592 display mp...

  • Page 85

    Display pim ipv6 control-message counters 1469 display pim ipv6 grafts 1471 display pim ipv6 interface 1471 display pim ipv6 join-prune 1473 display pim ipv6 neighbor 1474 display pim ipv6 routing-table 1475 display pim ipv6 rp-info 1477 display pim join-prune 1398 display pim neighbor 1399 display ...

  • Page 86

    Display ssh server 2176 display ssh server-info 2177 display ssh user-information 2178 display ssl client-policy 2211 display ssl server-policy 2211 display standby flow 2217 display standby state 2218 display startup 2363 display stop-accounting-buffer 1956 display stop-accounting-buffer 1977 displ...

  • Page 87

    Dot1x handshake 1903 dot1x max-user 1904 dot1x multicast-trigger 1905 dot1x port-control 1905 dot1x port-method 1906 dot1x quiet-period 1907 dot1x retry 1908 dot1x supp-proxy-check 1908 dot1x timer 1910 dot-match 2628 dpd 2160 driverbuf save 906 driverbuf size 906 dscp media 2587 dtmf amplitude 2587...

  • Page 88

    Fe1 unframed 237 fe3 261 feac (ct3 interface view) 273 fifo queue-length 1885 file prompt 2354 filename 2271 filter 1793 filter import/export 1131 filter-policy export (bgp/bgp-vpn instance view) 977 filter-policy export (bgp-vpnv4 subaddress family view) 1693 filter-policy export (is-is view) 1055 ...

  • Page 89

    Ft1 code 244 ft1 data-coding 245 ft1 fdl 246 ft1 frame-format 246 ft1 idlecode 247 ft1 itf 247 ft1 loopback 248 ft1 sendloopcode 251 ft1 timeslot-list 249 ft3 274 ftp 2378 ftp client source 2379 ftp ipv6 2380 ftp server enable 2370 ftp timeout 2371 ftp update 2371 garp timer 412 garp timer leaveall ...

  • Page 90

    Idle-cut 1938 idle-mark 195 idle-mark 351 idle-timeout 2460 idle-timeout 907 id-type 2161 if-match 1784 if-match acl 1208 if-match acl 813 if-match acl6 895 if-match as-path 1197 if-match community 1198 if-match cost 1199 if-match extcommunity 1199 if-match interface 1200 if-match ip 1209 if-match i...

  • Page 91

    Interface mp-group 507 interface mp-group 667 interface null 667 interface serial 399 interface tunnel 1754 interface tunnel 884 interface virtual-ethernet 668 interface virtual-template 1759 interface virtual-template 508 interface virtual-template 668 interface vlan-interface 634 interval-time 216...

  • Page 92

    Ipv6 nd autoconfig other-flag 850 ipv6 nd dad attempts 851 ipv6 nd hop-limit 851 ipv6 nd ns retrans-timer 852 ipv6 nd nud reachable-time 852 ipv6 nd ra halt 853 ipv6 nd ra interval 854 ipv6 nd ra prefix 854 ipv6 nd ra router-lifetime 855 ipv6 neighbor 856 ipv6 neighbors max-learning-num 857 ipv6 pat...

  • Page 93

    Keepalive 1754 keepalive interval 1726 keepalive retry 1727 key (hwtacacs scheme view) 1979 key (radius scheme view) 1957 l2tp enable 1760 l2tp sendaccm enable 1760 l2tp-group 1761 l2tpmoreexam enable 1761 l2vpn-family 1663 label advertise 1542 label-distribution 1543 label-retention 1544 lacp port-...

  • Page 94

    Interface view) 560 mac-address (ethernet interface view) 2479 mac-address (system view) 2480 mac-address mac-learning disable 2481 mac-address max-mac-count (ethernet interface view) 2482 mac-address timer 2483 mac-authentication 2010 mac-authentication domain 2011 mac-authentication timer 2012 mac...

  • Page 95

    Mpls rsvp-te hello-lost 1609 mpls rsvp-te keep-multiplier 1610 mpls rsvp-te reliability 1610 mpls rsvp-te resvconfirm 1611 mpls rsvp-te srefresh 1611 mpls rsvp-te timer graceful-restart recovery 1612 mpls rsvp-te timer graceful-restart restart 1612 mpls rsvp-te timer hello 1613 mpls rsvp-te timer re...

  • Page 96

    Nat log enable 2032 nat log flow-active 2032 nat log flow-begin 2033 nat outbound 2033 nat outbound static 2035 nat server 2035 nat static 2038 nat traversal 2168 national-bit 263 natpt address-group 868 natpt aging-time 869 natpt enable 870 natpt max-session 870 natpt prefix 871 natpt turn-off tos ...

  • Page 97

    Outband vofr 2714 pad 437 parity 2463 passive 2385 password (ftp test type view) 2277 password 1941 password-digit 2737 path-vectors 1555 payload-size 2602 pcm 2659 peer 1151 peer 1172 peer 2168 peer advertise-community (bgp/bgp-vpn instance view) 984 peer advertise-community (bgp-vpnv4 subaddress f...

  • Page 98

    View) 1254 peer mesh-group 1374 peer minimum-ttl 1375 peer next-hop-invariable (bgp-vpnv4 subaddress family view) 1703 peer next-hop-local (bgp/bgp-vpn instance view) 997 peer next-hop-local (ipv6 address family view) 1254 peer next-hop-local 1704 peer password 998 peer preferred-value (bgp/bgp-vpn ...

  • Page 99

    Pki certificate attribute-group 2057 pki delete-certificate 2058 pki domain 2058 pki entity 2059 pki import-certificate 2059 pki request-certificate domain 2060 pki retrieval-certificate 2061 pki retrieval-crl domain 2061 pki validate-certificate 2062 pki-domain 2212 plc-mode 2603 poe disconnect 249...

  • Page 100

    Primary accounting (hwtacacs scheme view) 1980 primary accounting (radius scheme view) 1958 primary authentication (hwtacacs scheme view) 1981 primary authentication (radius scheme view) 1959 primary authorization 1982 print connection-info 909 print information 910 print language 911 print menu 910...

  • Page 101

    Reboot 2259 receive gain 2604 redialtimes 2740 redirect 1794 redirect disconnect 2465 redirect enable 2465 redirect listen-port 2466 redirect refuse-negotiation 2466 redirect return-deal from-telnet 2467 redirect return-deal from-terminal 2468 redirect timeout 2468 redrawkey 911 reflect between-clie...

  • Page 102

    Reset firewall-statistics 1998 reset fr inarp 407 reset fr pvc 408 reset garp statistics 414 reset hwtacacs statistics 1982 reset igmp group 1359 reset ike sa 2170 reset ip count 779 reset ip fast-forwarding cache 827 reset ip ip-prefix 1211 reset ip ipv6-prefix 1216 reset ip netstream statistics 23...

  • Page 103

    Retry 1964 retry realtime-accounting 1965 retry stop-accounting (hwtacacs scheme view) 1983 retry stop-accounting (radius scheme view) 1966 return 2421 reverse 2665 reverse-rts 199 revision-level 607 rfc1583 compatible 1154 rip 1173 rip authentication-mode 1174 rip input 1175 rip metricin 1176 rip m...

  • Page 104

    Sdlc status 367 sdlc timer ack 368 sdlc timer lifetime 368 sdlc timer poll 369 sdlc window 369 sdlc xid 370 secondary accounting (hwtacacs scheme view) 1984 secondary accounting (radius scheme view) 1966 secondary authentication (hwtacacs scheme view) 1984 secondary authentication (radius scheme vie...

  • Page 105

    Snmp-agent target-host 2342 snmp-agent trap enable 2344 snmp-agent trap enable mpls 1559 snmp-agent trap enable ospf 1155 snmp-agent trap if-mib link extended 2345 snmp-agent trap life 2346 snmp-agent trap queue-size 2346 snmp-agent trap source 2347 snmp-agent usm-user 2347 source 1755 source 886 so...

  • Page 106

    Stp pathcost-standard 616 stp point-to-point 617 stp port priority 619 stp port-log 618 stp priority 620 stp region-configuration 621 stp root primary 621 stp root secondary 622 stp root-protection 623 stp tc-protection 623 stp tc-protection threshold 624 stp timer forward-delay 624 stp timer hello ...

  • Page 107

    Timer lsp-refresh 1085 timer other-querier-present (igmp view) 1361 timer other-querier-present (mld view) 1458 timer query (igmp view) 1362 timer query (mld view) 1459 timer quiet (hwtacacs scheme view) 1987 timer quiet (radius scheme view) 1971 timer realtime-accounting (hwtacacs scheme view) 1987...

  • Page 108

    Vam client enable 1736 vam client name 1737 vam server enable 1729 vam server ip-address 1729 vam server vpn 1730 verbose 2389 version (igmp view) 1363 version (mld view) 1460 version 1185 version 2216 vi-card busy-tone-detect 2617 vi-card cptone-custom 2618 vi-card reboot 2619 virtualbaudrate 200 v...

  • Page 109

    X25 switch svc xot 462 x25 switching 463 x25 template 409 x25 timer hold 464 x25 timer idle 464 x25 timer tx0 465 x25 timer tx1 466 x25 timer tx2 466 x25 timer tx3 467 x25 vc-per-map 468 x25 vc-range 468 x25 window-size 469 x25 x121-address 470 x25 xot pvc 470 x25-template 409 x29 timer inviteclear-...

  • Page 111: Ublic

    1 p ublic atm and dsl i nterface c ommands display interface atm syntax display interface atm [ interface-number ] view any view parameter interface-number: interface number. If no interface is specified, the configuration and status information about all atm/dsl interfaces and channels on them is d...

  • Page 112

    112 c hapter 1: p ublic atm and dsl i nterface c ommands interface atm syntax interface atm interface-number view system view parameter interface-number: atm or dsl interface number or dsl interface view. Description use the interface atm command to enter atm interface view. Example # enter atm 2/0 ...

  • Page 114

    114 c hapter 2: ima-e1/t1 i nterface c onfiguration c ommands slave: sets the clock mode as slave. Description use the clock command to set the clock mode for an atm e1/t1 interface. Use the undo clock command to restore the default, that is, the slave clock mode. For atm e1/t1 interfaces operating ...

  • Page 115

    115 by default, the line coding format of an atm e1 interface is hdb3, and that of an atm t1 interface is b8zs. Example # set the line coding format to ami for atm 5/0 interface. System-view [sysname] interface atm 5/0 [sysname-atm5/0] code ami differential-delay syntax differential-delay millisecon...

  • Page 116

    116 c hapter 2: ima-e1/t1 i nterface c onfiguration c ommands example # display the status and configuration information about ima group interface 3. Display interface ima-group 5/3 ima-group5/3 current state :down line protocol current state :down description : ima-group3 interface total available ...

  • Page 117

    117 use the undo frame-format command to restore the default, that is, crc4 adm for atm e1 interfaces and esf adm for atm t1 interfaces. Atm direct mapping (adm) directly maps atm cells transmitted over the e1/t1 line into e1/t1 frames. This process is defined by itu-t g.804 and atm forum. Example #...

  • Page 118

    118 c hapter 2: ima-e1/t1 i nterface c onfiguration c ommands use the undo ima ima-group command to remove an interface from an ima group. By default, no ima group is created. Before adding an atm e1/t1 interface to an ima group, you need to remove the network layer service-related configurations of...

  • Page 120

    120 c hapter 2: ima-e1/t1 i nterface c onfiguration c ommands by default, ima group interface test is disabled. Note that: ■ if you do not specify the number argument, the ima-test command specifies to test the link that is the first to be added to the ima group interface. ■ if you do not specify th...

  • Page 121

    121 parameter cell: internal cell loopback for checking that the local physical chip is operating. Local: internal loopback for checking that the local service chip is operating. Payload: external payload loopback for checking that payload framing is normal. Remote: external loopback for checking th...

  • Page 122

    122 c hapter 2: ima-e1/t1 i nterface c onfiguration c ommands parameter none description use the scramble command to enable payload scrambling on the atm e1/t1 interface. This, however, does not affect cell headers. Use the undo scramble command to disable payload scrambling. By default, payload scr...

  • Page 124

    124 c hapter 3: atm e3/t3 i nterface c onfiguration c ommands use the undo clock command to restore the default, that is, the slave clock mode. Example # set the clock mode of atm e3/t3 interface 5/0 to master. System-view [sysname] interface atm 5/0 [sysname-atm5/0] clock master frame-format syntax...

  • Page 126

    126 c hapter 3: atm e3/t3 i nterface c onfiguration c ommands example # disable payload scrambling on atm e3/t3 interface 5/0. System-view [sysname] interface atm 5/0 [sysname-atm5/0] undo scramble.

  • Page 128

    128 c hapter 4: atm oc-3 c /stm-1 i nterface c onfiguration c ommands sonet: sets the framing format to sonet oc-3, the optical carrier level three (oc-3 of synchronous optical network (sonet). Description use the frame-format command to set the framing format for an atm oc-3c/stm-1 interface. Use t...

  • Page 129

    129 view atm oc-3c interface view, stm-1 interface view parameter none description use the scramble command to enable payload scrambling on the atm oc-3c/stm-1 interface. This, however, does not affect cell headers. Use the undo scramble command to disable payload scrambling. By default, payload scr...

  • Page 130

    130 c hapter 4: atm oc-3 c /stm-1 i nterface c onfiguration c ommands.

  • Page 131: G.Shdsl I

    5 g.Shdsl i nterface c onfiguration c ommands activate syntax activate undo activate view atm (g.Shdsl) interface view parameter none description use the activate command to activate the g.Shdsl interface. Use the undo activate command to deactivate the g.Shdsl interface. By default, a g.Shdsl inter...

  • Page 132

    132 c hapter 5: g.Shdsl i nterface c onfiguration c ommands display dsl configuration syntax display dsl configuration interface atm interface-number view any view parameter interface-number: specifies a ig.Shdsl interface to view the configuration information about. Description use the display dsl ...

  • Page 133

    133 display dsl status syntax display dsl status interface atm interface-number view any view parameter interface-number: specifies a g.Shdsl interface to view the status information about. Description use the display dsl status command to display status information about the specified g.Shdsl inter...

  • Page 134

    134 c hapter 5: g.Shdsl i nterface c onfiguration c ommands rmt encoder b : 0x00000331 rmt nsf cusdata : 0x0000 rmt nsf cusid : 0x0000 rmt country code : 0x00b5 rmt provider code: gspn rmt vendor data: 0x12 0x34 0x56 0x78 0x12 0x34 0x56 0x78 # display status information about atm 5/0, which is a fou...

  • Page 135

    135 txpower(dbm): 9.50 power backoff: enable power backoff level: 5 tip/ring reversal: reversed frmoh stat: 0x00 rmt encoder a : 0x0000016e rmt encoder b : 0x00000331 rmt nsf cusdata : 0x0000 rmt nsf cusid : 0x0000 rmt country code : 0x00b5 rmt provider code: gspn rmt vendor data: 0x12 0x34 0x56 0x7...

  • Page 136

    136 c hapter 5: g.Shdsl i nterface c onfiguration c ommands display dsl version syntax display dsl version interface atm interface-number view any view parameter interface-number: specifies a g.Shdsl interface to view the version and support capability information about it. Description use the displ...

  • Page 139

    139 n ■ for four-wire (dual-pair) g.Shdsl, the interface rate is two times single-pair rate. For example, if you set single-pair rate to 2,312 kbps, four-wire interface rate is 4,624 kbps. ■ because four-wire g.Shdsl interfaces cannot negotiate rate, do not set their single-pair interface rate to au...

  • Page 140

    140 c hapter 5: g.Shdsl i nterface c onfiguration c ommands setting margin can affect maximum rate of the line. When line condition is good, you can set a small margin to obtain higher rate. When much noise is around the line, this may cause disconnection however. By default, current-margin-value is...

  • Page 141

    141 system-view [sysname] interface atm 5/0 [sysname-atm5/0] shdsl wire 4-auto-enhanced.

  • Page 142

    142 c hapter 5: g.Shdsl i nterface c onfiguration c ommands.

  • Page 143: Adsl I

    6 adsl i nterface c onfiguration c ommands activate syntax activate undo activate view atm (adsl) interface view parameter none description use the activate command to activate an adsl interface. Use the undo activate command to deactivate an adsl interface. By default, an adsl interface is active. ...

  • Page 145

    145 parameter attenuation: transmit power attenuation, in the range 0 to 12. Description use the adsl tx-attenuation command to set a transmit power attenuation for the adsl interface. Use the undo adsl tx-attenuation command to restore the default, that is, 0. Example # set the transmit power atten...

  • Page 146

    146 c hapter 6: adsl i nterface c onfiguration c ommands use the all keyword with caution. In case failure occurs, recovery is difficult and troublesome. Note that: ■ only distributed devices support the slot slot-no-list option. ■ the subslot subslot-no-list option is not available if the device do...

  • Page 147

    147 as0 (ds) ls0(us) rate(bytes): 238 26 rate(kbps): 7616 832 latency: intlv intlv fec(fast): 0 0 s/d/r(inlv): 1/64/16 8/8/16 dmt bits allocation per bin (up/down bits:249/2148) 00: 0 0 0 0 0 0 7 8 a a a a 8 a b c c c b b b b b b 9 9 a a 9 8 8 0 20: 0 0 0 0 2 2 2 3 4 4 5 6 6 7 7 8 8 8 8 8 9 9 a a a ...

  • Page 148

    148 c hapter 6: adsl i nterface c onfiguration c ommands current rate(kbps): 0 0 latency: intl intl display dsl version syntax display dsl version interface atm interface-number view any view parameter interface-number: specifies a dsl interface to view the version and support capability information...

  • Page 149

    149 dsl line type: adsl over pots chipset vendor: bdcm fw release: a2pb017l.D15h dsp version: 17.1200 afe version: 1.0 bootrom version: 1.1 hardware version: 4.0 driver version: 1.3 cpld version: 1.0 adsl capability annex supported : annex a standard supported : ansi t1.413 issue 2 itu g992.1(g.Dmt)...

  • Page 150

    150 c hapter 6: adsl i nterface c onfiguration c ommands.

  • Page 152

    152 c hapter 7: pos i nterface c onfiguration c ommands parameter 16: sets crc length to 16 bits. 32: sets crc length to 32 bits. Description use the crc command to set the crc length on the pos interface. Use the undo crc command to restore the default, that is, 32 bits. Example # set the crc lengt...

  • Page 153

    153 internet protocol processing ip protocol processing capability, enabled or disabled link layer protocol is ppp link layer protocol of the pos interface and loopback detection state lcp opened, ipcp opened, ip6cp opened lcp state, ipcp state, and ipv6cp state physical layer is pos1/0, baudrate is...

  • Page 154

    154 c hapter 7: pos i nterface c onfiguration c ommands display ip interface pos syntax display ip interface pos interface-number view any view parameter interface-number: interface number. Description use the display ip interface pos command to view the ip-related configuration and status informati...

  • Page 155

    155 description use the display ipv6 interface pos command to view the ipv6-related configuration and status information of the specified pos interface. Example # display ipv6-related status and configuration information about the interface pos1/0. Display ipv6 interface pos 1/0 pos1/0 current state...

  • Page 158

    158 c hapter 7: pos i nterface c onfiguration c ommands n ■ if you enable loopback on a pos interface encapsulated with ppp, it is normal that the state of the link layer protocol is reported up. ■ loopback and clock slave cannot be set at the same time; otherwise, pos interfaces cannot be connected...

  • Page 159

    159 view pos interface view parameter none description use the scramble command to enable payload scrambling on the pos interface. Use the undo scramble command to disable payload scrambling. By default, payload scrambling is enabled. You may configure payload scrambling to prevent the presence of e...

  • Page 160

    160 c hapter 7: pos i nterface c onfiguration c ommands example # set the sd threshold to 10e-4 for pos 1/0. System-view [sysname] interface pos 1/0 [sysname-pos1/0] threshold sd 4.

  • Page 162

    162 c hapter 8: g eneral e thernet i nterface c onfiguration c ommands parameter text: the description of an ethernet interface, a string of 1 to 80 characters. Description use the description command to configure the description of an ethernet interface. Use the undo description command to remove t...

  • Page 163

    163 description use the display brief interface command to display brief interface information, including simple interface name, link state, protocol link state, protocol type, and main ip address. ■ if neither interface type nor interface number is specified, all interface information will be displ...

  • Page 165

    165 ■ if only interface type is specified, then only information of this particular type of interface will be displayed. ■ if both interface type and interface number are specified, then only information of the specified interface will be displayed. Related command: interface. Example # display the ...

  • Page 166

    166 c hapter 8: g eneral e thernet i nterface c onfiguration c ommands # display the current state of layer 2 interface ethernet1/0 and related information. Display interface ethernet 1/0 ethernet1/0 current state: down ip packet frame type: pktfmt_ethnt_2, hardware address: 000f-e200-8048 descripti...

  • Page 167

    167 unknown-speed mode unknown-speed mode, in which mode speed is negotiated between the current host and the peer unknown-duplex mode unknown-duplex mode, in which mode speed is negotiated between the current host and the peer link speed type is autonegotiation link speed type is autonegotiation li...

  • Page 169

    169 parameter none description use the flow-control command to turn on flow control on an ethernet interface. Use the undo flow-control command to turn off flow control on an ethernet interface. By default, flow control on an ethernet interface is turned off. N the flow control can be implemented on...

  • Page 170

    170 c hapter 8: g eneral e thernet i nterface c onfiguration c ommands parameter external: enables external loopback testing on an ethernet interface. The support for this keyword varies with device models. Internal: enables internal loopback testing on an ethernet interface. The support for this ke...

  • Page 171

    171 ■ only 4sic-fsw interface cards, 9dsic-fsw interface cards, and the fixed switching interfaces of 20-21 routers support work mode switching. ■ on an msr series router, you can change the working mode to route mode for up to two ethernet interfaces. ■ after the working mode is changed, all parame...

  • Page 172

    172 c hapter 8: g eneral e thernet i nterface c onfiguration c ommands example # clear the statistics of ethernet 1/0. Reset counters interface ethernet 1/0 shutdown syntax shutdown undo shutdown view ethernet interface view parameter none description use the shutdown command to shut down an etherne...

  • Page 173

    173 use the undo speed command to restore ethernet interface data rate. By default, ethernet interface data rate is automatically negotiated between peer ethernet interfaces. Note that the following: ■ the combo port does not support the speed command. ■ the speed 1000 command is only applicable to ...

  • Page 174

    174 c hapter 8: g eneral e thernet i nterface c onfiguration c ommands.

  • Page 176

    176 c hapter 9: c onfiguration c ommands for e thernet i nterfaces in b ridge m ode display loopback-detection syntax display loopback-detection view any view parameter none description use the display loopback-detection command to display loopback detection information on a port if loopback detecti...

  • Page 177

    177 untagged:1, 10, 15, 18, 20-30, 44, 55, 67, 100, 150-160, 200, 255, 286, 300-302 # display the current trunk port(s). Display port trunk interface pvid vlan passing eth1/8 2 1-4, 6-100, 145, 177, 189-200, 244, 289, 400, 555, 600-611, 1000, 2006-2008 display port-group manual syntax display port-g...

  • Page 178

    178 c hapter 9: c onfiguration c ommands for e thernet i nterfaces in b ridge m ode member of group2: none # display the details of the manual port group named group 1. Display port-group manual name group1 member of group1: ethernet1/0 ethernet1/1 ethernet1/2 ethernet1/3 ethernet1/4 ethernet1/5 eth...

  • Page 179

    179 description use the group-member command to add specified ethernet interfaces to a manual port group. Use the undo group-member command to remove specified ethernet interfaces from a manual port group. By default, a manual port group contains no ethernet interface. Examples # add interface ether...

  • Page 180

    180 c hapter 9: c onfiguration c ommands for e thernet i nterfaces in b ridge m ode loopback-detection enable syntax loopback-detection enable undo loopback-detection enable view system view/ethernet interface view parameter none description use the loopback-detection enable command to enable loopba...

  • Page 181

    181 parameter time: time interval in seconds for port loopback detection, in the range of 5 to 300. Description use the loopback-detection interval-time command to configure time interval for port loopback detection. Use the undo loopback-detection interval-time command to restore the default time i...

  • Page 183

    183 use the undo multicast-suppression command to restore default multicast suppression ratio. By default, all multicast traffic is allowed to go through an ethernet interface, that is, multicast traffic is not suppressed. If you execute this command in ethernet interface view, the configuration tak...

  • Page 185

    185 parameter none description use the virtual-cable-test command to enable the virtual cable test for an ethernet interface and to display the testing result. The tested items include: ■ cable status: could be normal, abnormal, abnormal-open, abnormal-short, and failure; ■ cable length; ■ pair impe...

  • Page 186

    186 c hapter 9: c onfiguration c ommands for e thernet i nterfaces in b ridge m ode.

  • Page 187: Onfiguration

    10 c onfiguration c ommands for e thernet i nterfaces in r oute m ode mtu syntax mtu size undo mtu view ethernet interface view parameter size: the value of maximum transmission unit (mtu for short), which varies by interface type and defaults to 1,500 bytes. ■ fast ethernet: (fe for short): in the ...

  • Page 188

    188 c hapter 10: c onfiguration c ommands for e thernet i nterfaces in r oute m ode parameter seconds: time interval in seconds for link suppression, in the range of 0 to 32,767. A value 0 represents the link test is disabled. Description use the timer hold command to configure layer 3 ethernet inte...

  • Page 190

    190 c hapter 11: f undamental s erial i nterface c onfiguration c ommands undo baudrate view serial interface view parameter baudrate: baud rate (in bps) to be set for a serial interface. Description use the baudrate command to set the baud rate for a serial interface. Use the undo baudrate command ...

  • Page 191

    191 dteclk3: sets the interface clock selection mode to dte clock option 3. Dteclk4: sets the interface clock selection mode to dte clock option 4. Dteclkauto: sets the interface clock selection mode to dte autonegotiation. Description use the clock command to set clock selection mode for the synchr...

  • Page 192

    192 c hapter 11: f undamental s erial i nterface c onfiguration c ommands code nrzi syntax code nrzi undo code view synchronous serial interface view parameter none description use the code nrzi command to set the digital signal coding format to none-return-to-zero-inverse (nrzi) on the synchronous ...

  • Page 194

    194 c hapter 11: f undamental s erial i nterface c onfiguration c ommands parameter dsr-dtr: detects dsr (data set ready) and dtr (data terminal ready) signals of dsu/csu (data service unit/channel service unit). Dcd: detects the dcd (data carrier detect) signal of the dsu/csu on the serial interfac...

  • Page 195

    195 use the undo eliminate-pulse command to restore the default, eliminating the pulses with a width less than 1.472 us. N when the baud rate of the interface is 115,200 bps, you cannot configure this command. After you configure this command, the baud rate of the interface cannot be set to 115,200 ...

  • Page 196

    196 c hapter 11: f undamental s erial i nterface c onfiguration c ommands description use the invert receive-clock command to invert the receive-clock signal on the dte-side synchronous serial interface. Use the undo invert transmit-clock command to restore the default. By default, receive-clock sig...

  • Page 197

    197 loopback syntax loopback undo loopback view serial interface view, aux interface view, am interface view parameter none description use the loopback command to enable internal loopback on the serial interface. Use the undo loopback command to restore the default. By default, loopback is disabled...

  • Page 199

    199 example # set the mru of interface serial 2/0 to 1,500 bytes (assuming that the interface is an asynchronous serial interface and operates in flow mode). System-view [sysname] interface serial 2/0 [sysname-serial2/0] physical-mode async [sysname-serial2/0] async mode flow [sysname-serial2/0] phy...

  • Page 200

    200 c hapter 11: f undamental s erial i nterface c onfiguration c ommands example # set the link state polling interval to 20 seconds for interface serial 1/0. System-view [sysname] interface serial 1/0 [sysname-serial1/0] timer hold 20 virtualbaudrate syntax virtualbaudrate virtualbaudrate undo vir...

  • Page 202

    202 c hapter 12: f undamental ce1/pri i nterface c onfiguration c ommands description use the channel-set command to bundle timeslots on the ce1/pri interface into a channel-set. Use the undo channel-set command to restore the default. By default, no timeslots are bundled into channel sets. A ce1/pr...

  • Page 203

    203 when the ce1/pri interface is working as dce, choose the internal clock (master) for it. When it is working as dte, choose the line clock for it. Example # use the internal clock as the clock source on ce1/pri interface e1 2/0. System-view [sysname] controller e1 2/0 [sysname-e1 2/0] clock maste...

  • Page 205

    205 system-view [sysname] controller e1 2/0 [sysname-e1 2/0] detect-ais display controller e1 syntax display controller e1 [ interface-number ] view any view parameter interface-number: interface number. In conjunction with the e1 keyword, it specifies a ce1/pri interface. Description use the displa...

  • Page 206

    206 c hapter 12: f undamental ce1/pri i nterface c onfiguration c ommands error-diffusion restraint config syntax error-diffusion restraint config detect-timer renew-timer threshold undo error-diffusion restraint config view system view parameter detect-timer: setting of the error packet detect time...

  • Page 207

    207 n ■ the support for these two commands varies with device models. ■ these two commands apply to ct1/pri interfaces and ce1/pri interfaces only. Example # set the error packet detect timer to 100 seconds, the renew timer to 2400 seconds, and the error packet ratio threshold to 15. System-view [sy...

  • Page 208

    208 c hapter 12: f undamental ce1/pri i nterface c onfiguration c ommands n ■ the support of this command varies with device model. ■ this command applies to ct1/pri interfaces and ce1/pri interfaces only. Example # restart channel serial 2/0:0 that has been shut down due to error packets diffusion....

  • Page 209

    209 use the undo idlecode command to restore the default, that is, 0x7e. The line idle code is sent in the timeslots that are not bundled into logical channels. Example # set the line idle code to 0x7e on ce1/pri interface e1 2/0. System-view [sysname] controller e1 2/0 [sysname-e1 2/0] idlecode 7e ...

  • Page 211

    211 use the undo pri-set command to remove the bundle. By default, no pri set is created. On a ce1/pri interface in pri mode, timeslot 0 is used for frame synchronization control (fsc), timeslot 16 as the d channel for signaling transmission, and other timeslots as b channels for data transmission. ...

  • Page 214

    214 c hapter 13: f undamental ct1/pri i nterface c onfiguration c ommands if the number of the pulses detected during the total length of the specified pulse detection intervals is smaller than the pulse-recovery threshold, a los alarm occurs. For example, if the two thresholds take their defaults, ...

  • Page 215

    215 you may view the state and result of the bert test with the display controller t1 command. Example # run a 10-minute 2^20 bert test on ct1/pri interface t1 2/0. System-view [sysname] controller t1 2/0 [sysname-t1 2/0] bert pattern 2^20 time 10 cable (ct1/pri interface view) syntax cable { long {...

  • Page 216

    216 c hapter 13: f undamental ct1/pri i nterface c onfiguration c ommands parameter set-number: the number of the channel set formed by timeslot bundling on the interface. It ranges from 0 to 23. Timeslot-list list: specifies timeslots to be bundled. The list argument is timeslot numbers, in the ran...

  • Page 217

    217 use the undo clock command to restore the default clock source, that is, line clock. When the ct1/pri interface is working as dce, choose the internal clock for it. When it is working as dte, choose the line clock for it. Example # use the internal clock as the clock source on ct1/pri interface ...

  • Page 219

    219 use the undo data-coding command to restore the default. By default, data inversion is disabled. To prevent 7e in valid data from being taken for stuffing characters, hdlc inserts a zero after every five ones in the data stream. Then, hdlc inverts every one bit into a zero and every zero bit int...

  • Page 220

    220 c hapter 13: f undamental ct1/pri i nterface c onfiguration c ommands work mode is t1 framed, cable type is 100 ohm balanced. Frame-format is esf, fdl is none, line code is b8zs. Source clock is slave, data-coding is normal. Idle code is ff, itf type is ff, itf number is 2. Loop back is not set....

  • Page 221

    221 itf number number of interframe filling tags loop back loopback setting on the interface: local, payload, remote, or not set alarm state alarm state receiver alarm state type of received alarm: none, los, lof, rai, or ais transmitter is sending remote alarm. Type of transmitted alarm: rai, or no...

  • Page 222

    222 c hapter 13: f undamental ct1/pri i nterface c onfiguration c ommands error-diffusion restraint config syntax error-diffusion restraint config detect-timer renew-timer threshold undo error-diffusion restraint config view system view parameter detect-timer: setting of the error packet detect time...

  • Page 223

    223 description use the error-diffusion restraint config command to set the three parameters in error packet diffusion restraint. Use the undo error-diffusion restraint enable command to restore the default settings of the three parameters. By default, the error packet detect timer is set to 30 seco...

  • Page 224

    224 c hapter 13: f undamental ct1/pri i nterface c onfiguration c ommands error-diffusion restraint restart-channel syntax error-diffusion restraint restart-channel serial interface-number:set-number view system view parameter serial interface-number:set-number: specifies a channel formed on a ce1/p...

  • Page 226

    226 c hapter 13: f undamental ct1/pri i nterface c onfiguration c ommands the line idle code is sent in the timeslots that are not bundled into the logical channels on the interface. Example # set the line idle code to 0x7e on ct1/pri interface t1 2/0. System-view [sysname] controller t1 2/0 [sysnam...

  • Page 227

    227 undo loopback view ct1/pri interface view parameter local: enables the ct1/pri interface to perform local loopback. Payload: enables the interface to perform external payload loopback. Remote: enables the interface to perform remote loopback. Description use the loopback command to enable local,...

  • Page 228

    228 c hapter 13: f undamental ct1/pri i nterface c onfiguration c ommands when creating a pri set on a ct1/pri interface, note that timeslot 24 is the d channel for transmitting signaling; it cannot form a bundle that includes itself only. The attempts to bundle only timeslot 24 will fail. In the cr...

  • Page 230

    230 c hapter 13: f undamental ct1/pri i nterface c onfiguration c ommands the sending of remote loopback control code lasts five minutes without affecting the operation of other interfaces. Example # send in-band llb activation request code. System-view [sysname] controller t1 2/0 [sysname-t1 2/0] s...

  • Page 232

    232 c hapter 14: e1-f i nterface c onfiguration c ommands display fe1 serial 2/0 serial2/0 basic configuration: e1 framed physical type is fe1 - 75 ohm unbalanced frame-format is none,line code is hdb3,source clock is slave alarm state: receiver alarm state is none. Historical statistics: last clear...

  • Page 233

    233 undo fe1 clock view e1-f interface view parameter master: adopts the internal clock as the clock source. Slave: adopts the line clock as the clock source. Description use the fe1 clock command to configure clock source for the e1-f interface. Use the undo fe1 clock command to restore the default...

  • Page 234

    234 c hapter 14: e1-f i nterface c onfiguration c ommands undo fe1 detect-ais view e1-f interface view parameter none description use the fe1 detect-ais command to enable ais test on an interface. Use the undo fe1 detect-ais command to disable ais test. By default, ais test is performed. Example # e...

  • Page 235

    235 undo fe1 loopback view e1-f interface view parameter local: sets the interface in internal loopback mode. Payload: sets the interface in external payload loopback mode. Remote: sets the interface in external loopback mode. Description use the fe1 loopback command to set the e1-f interface in a l...

  • Page 236

    236 c hapter 14: e1-f i nterface c onfiguration c ommands only one channel set can be created on an e1-f interface, and this channel set is associated with the current synchronous serial interface. On a ce1/pri interface, however, you may create multiple channel sets; for each of them, the system au...

  • Page 238

    238 c hapter 14: e1-f i nterface c onfiguration c ommands when the e1-f interface is working in unframed mode, it is a 2048 kbps interface without timeslot division and is logically equivalent to a synchronous serial interface. When it works in framed mode, it is physically divided into 32 timeslots...

  • Page 240

    240 c hapter 15: t1-f i nterface c onfiguration c ommands display ft1 serial 2/0 serial2/0 input: 0 packets, 0 bytes 0 broadcasts, 0 multicasts 0 errors, 0 runts, 0 giants 0 crc, 0 align errors, 0 overruns 0 dribbles, 0 aborts, 0 no buffers 0 frame errors output:0 packets, 0 bytes 0 errors, 0 underr...

  • Page 241

    241 cable type cable type of the interface, 100 ohm balanced in this sample output frame-format frame format configured on the interface: esf or sf fdl fdl format: ansi, att, or none line code ami or b8zs source clock source clock used by the interface: master for the internal clock or slave for the...

  • Page 243

    243 time minutes: sets the duration (in minutes) of a bert test. The minute argument is up to 1,440. Unframed: sets the test pattern to cover the overhead bits of the frame. Description use the ft1 bert command to start a bert test on a t1-f interface. Use the undo ft1 bert command to stop the bert ...

  • Page 244

    244 c hapter 15: t1-f i nterface c onfiguration c ommands you may use this command to adapt signal waveform to different transmission conditions such as the quality of the signal received by the receiver. If the signal quality is good, you can just use the default setting. Example # set the cable le...

  • Page 245

    245 parameter ami: adopts ami line code format. B8zs: adopts b8zs line code format. Description use the ft1 code command to set the line code format for the t1-f interface. Use the undo ft1 code command to restore the default, that is, b8zs. Keep the line code format of the interface in consistency ...

  • Page 247

    247 t1-f interfaces support two framing formats, that is, sf and esf. In sf format, multiple frames can share the same fsc and signaling information, so that more significant bits are available for transmitting user data. The use of esf allows you to test the system without affecting the ongoing ser...

  • Page 249

    249 loopback is intended for checking the condition of interfaces or cables. Disable it otherwise. N the three loopback modes cannot be used at the same time on a t1-f interface. Example # set t1-f interface serial 2/0 in local loopback mode. System-view [sysname] interface serial 2/0 [sysname-seria...

  • Page 251

    251 use the undo ft1 alarm-threshold command to restore the defaults. Example # set the number of detection intervals to 300 for the pulse detection duration threshold. System-view [sysname] interface serial 2/0 [sysname-serial2/0] ft1 alarm-threshold los pulse-detection 300 ft1 sendloopcode syntax ...

  • Page 252

    252 c hapter 15: t1-f i nterface c onfiguration c ommands the format of loopback code can be compliant with ansi t1.403 or at&t tr 54016. In sf framing, llb code is sent using the effective bandwidth (slots 1 through 24). In esf framing, both llb code and plb code are sent/received in the fdl in esf...

  • Page 254

    254 c hapter 16: f undamental ce3 i nterface c onfiguration c ommands example # perform bert test in qrss mode on ce3 2/0 interface, setting the duration to ten minutes. System-view [sysname] interface e3 2/0 [sysname-e3 2/0] bert pattern qrss time 10 clock (ce3 interface view) syntax clock { master...

  • Page 256

    256 c hapter 16: f undamental ce3 i nterface c onfiguration c ommands parameter interface-number: ce3 interface number. In conjunction with the e3 keyword, it specifies a ce3 interface. Description use the display controller e3 command to display state information about one specified or all ce3 inte...

  • Page 258

    258 c hapter 16: f undamental ce3 i nterface c onfiguration c ommands system-view [sysname] interface e3 2/0 [sysname-e3 2/0] e1 1 bert pattern qrss time 10 e1 channel-set syntax e1 line-number channel-set set-number timeslot-list list undo e1 line-number channel-set set-number view ce3 interface vi...

  • Page 259

    259 undo e1 line-number set clock view ce3 interface view parameter line-number: e1 line number in the range 1 to 16. Master: adopts the internal clock as the clock source. Slave: adopts the line clock as the clock source. Description use the e1 set clock command to configure clock source for an e1 ...

  • Page 261

    261 by default, e1 lines are up. This command affects not only the specified e1 line but also the serial interfaces formed by e1 line bundling. Performing the e1 shutdown command on the specified e1 line shuts down all these serial interfaces. Data transmission and receiving stop as a result. Likewi...

  • Page 262

    262 c hapter 16: f undamental ce3 i nterface c onfiguration c ommands view ce3 interface (in fe3 mode) view parameters dsu-mode: specifies the fe3 (fractional e3) dsu mode for a ce3 interface operating in fe3 mode. This keyword can be followed by 0 or 1 keyword, as described below:. 0: specifies the...

  • Page 264

    264 c hapter 16: f undamental ce3 i nterface c onfiguration c ommands you need to set the national bit to 0 on an e3 interface only in some special circumstances. Related command: controller e3. Example # set the national bit to 0 on interface e3 2/0. System-view [sysname] controller e3 2/0 [sysname...

  • Page 266

    266 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands example # enable periodical alarm signal detection on ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] alarm detect # enable ct3 interface t3 2/0 to send ais alarm signals. System-view [sysname] interf...

  • Page 267

    267 example # run a 10-minute qrss bert test on ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] bert pattern qrss time 10 cable (ct3 interface view) syntax cable feet undo cable view ct3 interface view parameter feet: cable length in the range 0 to 450 feet (0 to 137.2 ...

  • Page 268

    268 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands example # use the internal clock as the clock source on ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] clock master controller t3 syntax controller t3 interface-number view system view parameter inte...

  • Page 269

    269 example # apply 32-bit crc to a serial interface formed on interface t3 2/0 in unchannelized mode. System-view [sysname] controller t3 2/0 [sysname-t3 2/0] using t3 [sysname-t3 2/0] quit [sysname] interface serial 2/0/0:0 [sysname-serial2/0/0:0] crc 32 # apply 16-bit crc to a serial interface fo...

  • Page 270

    270 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands no code is sent now. Periodical detection is enabled, no code received now. Bert state:(stopped, not completed) test pattern: 2^7, status: not sync, sync detected: 0 time: 0 minute(s), time past: 0 minute(s) bit errors (since test...

  • Page 271

    271 no message is sent now. No mdl message is being sent. If an mdl message, path or idle-signal for example, was being sent, the screen would display “message sent now: path. Idle signal.” message data elements mdl data elements eic: line, lic: line, fic: line, unit: line eic, lic, fic, and unit ar...

  • Page 272

    272 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands data in current interval: line code violations far end block error c-bit coding violation p-bit coding violation framing bit err severely err framing secs c-bit err secs c-bit severely err secs p-bit err secs p-bit severely err se...

  • Page 274

    274 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands example # enable feac channel signal detection on ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] feac detect # sends ds3 los signal on ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sy...

  • Page 275

    275 parameters dsu-mode: specifies the ft3 (fractional t3) dsu mode for a ct3 interface operating in ft3 mode. This keyword can be followed by 0, 1, 2, 3, and 4, as described below. 0: specifies the digital link mode, where the subrate is a multiple of 300746 bps and ranges from 300 to 44210 kbps (t...

  • Page 276

    276 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands examples # configure t3 2/0 interface to operate in the ft3 mode, setting the dsu mode to 1 and the subrate to 3000 kbps. System-view [sysname] controller t3 2/0 [sysname-t3 2/0] using t3 [sysname-t3 2/0] ft3 dsu-mode 1 [sysname-t...

  • Page 277

    277 data: sets information included in mdl messages. Among all types of information, eic, lic, fic, and unit are defined for all types of mdl messages; pfi is only for path mdl messages; port number is only for idle signal messages; and generator number is only for test signal messages. Eic string: ...

  • Page 278

    278 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands # set lic to “hello” for ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] mdl data lic hello # send path messages on ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] mdl ge...

  • Page 279

    279 example # enable periodical alarm signal detection on t1 line 1 on ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] t1 1 alarm detect # enable t1 line 1 on ct3 interface t3 2/0 to send ais alarm signals. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] t1 1 al...

  • Page 280

    280 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands checks the received pattern for the bit error rate, and by so doing helps you determine whether the condition of the line is good. To this end, you must configure loopback to allow the transmitted pattern to loop back from somewhe...

  • Page 283

    283 you can configure this command only when the t1 line is working in framed format (which can be set by using the undo t1 unframed command). Related command: t1 unframed. Example # set the framing format to sf for the first t1 line on interface t3 2/0. System-view [sysname] interface t3 2/0 [sysna...

  • Page 284

    284 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands view ct3 interface view parameter line-number: t1 line number, in the range 1 to 28. Fdl: sets the fdl format of t1. Ansi: adopts ansi t1.403 for fdl. Att: adopts at&t tr 54016 for fdl. Both: adopts both ansi t1.403 and at&t tr 54...

  • Page 285

    285 example # display line state of t1 line 1 on ct3 interface t3 2/0. System-view [sysname] interface t3 2/0 [sysname-t3 2/0] t1 1 show t3 2/0 ct1 1 is up frame-format esf, clock slave, loopback not set fdl performance report is disabled transmitter is sending none receiver alarm state is none line...

  • Page 286

    286 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands undo t1 line-number shutdown view ct3 interface view parameter line-number: t1 line number in the range 1 to 28. Description use the t1 shutdown command to shut down a t1 line on the ct3 interface. Use the undo t1 shutdown command...

  • Page 288

    288 c hapter 17: f undamental ct3 i nterface c onfiguration c ommands.

  • Page 290

    290 c hapter 18: isdn bri i nterface c onfiguration c ommands.

  • Page 291: Atm C

    19 atm c onfiguration c ommands atm class syntax atm class atm-class-name undo atm class atm-class-name view system view parameter atm-class-name: name of atm class, a string of 1 to 16 characters. Description use the atm class command to create an atm class and enter the atm class view. Use the und...

  • Page 292

    292 c hapter 19: atm c onfiguration c ommands related command: atm class. Example # apply the atm class named “main” to atm 1/0 interface. System-view [sysname] interface atm 1/0 [sysname-atm1/0] atm-class main atm-link check syntax atm-link check undo atm-link check view atm p2p sub-interface view ...

  • Page 293

    293 description use the clock command to specify the clock signal to be adopted by an atm interface. Use the undo clock command to restore the default. By default, atm interface uses line clock signal (slave). This clock signal is usually provided by device which provides atm interfaces. When two ne...

  • Page 294

    294 c hapter 19: atm c onfiguration c ommands display atm interface syntax display atm interface [ atm interface-number ] view any view parameter interface-number: specifies an atm interface to view the detailed information about. Description use the display atm interface command to display detailed...

  • Page 298

    298 c hapter 19: atm c onfiguration c ommands encapsulation syntax encapsulation aal5-encap undo encapsulation view pvc view/atm class view parameter aal5-encap: aal5 encapsulation type; its possible values are as follows: ■ aal5mux: mux encapsulation type ■ aal5nlpid: rfc1490 encapsulation type ■ a...

  • Page 300

    300 c hapter 19: atm c onfiguration c ommands vpi/vci: vpi/vci pair. Vpi is short for virtual path identifier; its value ranges from 0 to 255. Vci is short for virtual channel identifier; its value range varies by interface type. Normally, vci values from 0 to 31 are reserved for special purpose, yo...

  • Page 301

    301 parameter interface-number: virtual ethernet (ve) interface number. Description use the map bridge command to establish the ipoeoa mapping or pppoeoa mapping on the pvc. Use the undo map bridge command to delete the mapping. By default, no mapping is configured. Before using this command, make s...

  • Page 302

    302 c hapter 19: atm c onfiguration c ommands pvc so long as a next-hop address in the specified network segment is found for the packet. Default: a mapping with the default route property is set. If a packet cannot find a mapping with the same address of next hop at the interface, but one pvc has t...

  • Page 303

    303 parameter vt-number: number of the virtual template (vt) interface corresponding to a pppoa map. Description use the map ppp command to create a pppoa map on the pvc. Use the undo map ppp command to delete the map. By default, no mapping is configured. Before this command is used, the vt must ha...

  • Page 304

    304 c hapter 19: atm c onfiguration c ommands mechanism used by pvc is fifo. You can use the fifo queue-length command in the pvc view to change its queue length. N the effect of this command applies to atm main interface and sub-interface simultaneously. Example # set the mtu of atm interface atm 1...

  • Page 305

    305 oam frequency syntax oam frequency frequency [ up up-count down down-count retry-frequency retry-frequency ] undo oam frequency view pvc view/atm class view parameter frequency: time interval to send operations, administration, and maintenance (oam) f5 loopback cells, in seconds, and the range o...

  • Page 307

    307 parameter pvc-name: pvc name, a unique string of 1 to 16 characters on atm interface, not case-sensitive. The name cannot be the same as a valid vpi/vci pair value. For example, the name 1/20 is not allowed. Vpi/vci: vpi/vci pair. Vpi is short for virtual path identifier; its value ranges from 0...

  • Page 309

    309 parameter max-number: maximum number of pvcs allowed. The value range varies by the type of physical interface, as shown in the following table. Description use the pvc max-number command to set the maximum number of pvcs allowed on an atm interface. Use the undo pvc max-number command to restor...

  • Page 310

    310 c hapter 19: atm c onfiguration c ommands when applying vp policing, the parameters of pvc are still valid. Only when the parameters of pvc and vp policing are satisfied, will the packets be transmitted and received. In calculating the traffic, the llc/snap, mux and nlpid headers are included, b...

  • Page 311

    311 related command: service vbr-nrt, service vbr-rt, service ubr. Example # create a pvc named “aa”, with the vpi/vci value of 1/101. System-view [sysname] interface atm 1/0 [sysname-atm1/0] pvc aa 1/101 # specify the service type of the pvc as cbr and the peak rate of atm cell as 50,000 kbps, and ...

  • Page 312

    312 c hapter 19: atm c onfiguration c ommands parameter output-pcr: peak rate of atm cell output in kbps. For the value ranges of this parameter, see table 30. Output-scr: sustainable rate of atm cell output in kbps. Its value ranges are the same as those of output-pcr. Output-mbs: maximum burst siz...

  • Page 313

    313 description use the service vbr-rt command to set the service type of pvc to variable bit rate - real time (vbr-rt) and specify the related rate parameters in the pvc view. By default, the service type is ubr after creating a pvc. You can use this command as well as the service ubr, service cbr ...

  • Page 314

    314 c hapter 19: atm c onfiguration c ommands transmit-priority syntax transmit-priority value undo transmit-priority view pvc view parameter value: transmission priority, in the range 0 to 9, the higher value indicating a higher priority. The priority level for the ubr service ranges from 0 to 4. T...

  • Page 315: Dcc C

    20 dcc c onfiguration c ommands n set all synchronous/asynchronous serial interfaces involved in dcc configuration to work in asynchronous mode with the physical-mode async command. Dialer bundle syntax dialer bundle number undo dialer bundle view dialer interface view parameter number: dialer bundl...

  • Page 316

    316 c hapter 20: dcc c onfiguration c ommands priority priority: priority of a physical interface in the dialer bundle. The priority argument is in the range 1 to 255. The higher the number, the higher the priority. The physical interface with higher priority is used first. The default priority is 1...

  • Page 317

    317 with both references configured, the device always attempts to place return calls in the user reference approach and in case failure occurs the dial number reference approach. If the command is configured with neither keyword, it equals the dialer callback-center user dial-number command. Relate...

  • Page 318

    318 c hapter 20: dcc c onfiguration c ommands when receiving an incoming isdn call, the device with the dialer call-in command configured first verifies that the caller is valid before processing the call. If the remote pbx does not provide the calling number, the call is dropped directly. N on a di...

  • Page 319

    319 [sysname-serial2/0] dialer circular-group 1 [sysname-serial2/0] quit [sysname] interface serial 2/1 [sysname-serial2/1] dialer circular-group 1 dialer disconnect syntax dialer disconnect [ interface interface-type interface-number ] view any view parameter interface interface-type interface-numb...

  • Page 320

    320 c hapter 20: dcc c onfiguration c ommands if you perform the dialer enable-circular command or its undo form on a non-dial interface, do the same on the interface to recover it. Related command: dialer circular-group. Example # enable c-dcc on interface serial 2/0. System-view [sysname] interfac...

  • Page 321

    321 for a pri interface, and 0 to 23 (with 23 excluded for the control channel) for a ct1/pri interface. Description use the dialer isdn-leased command to configure an isdn b channel for leased line connection. Use the undo dialer isdn-leased command to remove the configuration. By default, no isdn ...

  • Page 322

    322 c hapter 20: dcc c onfiguration c ommands related command: dialer route. Example # set the dial string for placing calls to 11111 on interface dialer1. System-view [sysname] interface dialer 1 [sysname-dialer1] dialer number 11111 dialer priority syntax dialer priority priority undo dialer prior...

  • Page 323

    323 description use the dialer queue-length command to set the buffer queue length on the dial interface. Use the undo dialer queue-length command to restore the default. By default, no packets are buffered. If no connection is available yet when a dial interface without a buffer queue receives a pa...

  • Page 324

    324 c hapter 20: dcc c onfiguration c ommands interface interface-type interface-number: specifies to dial from the specified physical interface. When multiple physical interfaces are assigned to a dialer interface and their dialup links are connected to different isdn switches, you need to associat...

  • Page 325

    325 description use the dialer threshold command to set the traffic threshold of a single link on the dialer interface. When the percentage of the traffic on the link to available bandwidth exceeds the threshold, another link is brought up to call the same destination address. Use the undo dialer th...

  • Page 326

    326 c hapter 20: dcc c onfiguration c ommands description use the dialer timer autodial command to set the auto-dial timer of dcc. Use the undo dialer timer autodial command to restore the default. By default, the auto-dial timer of dcc is 300 seconds. This command takes effect only when the auto-di...

  • Page 327

    327 dialer timer enable syntax dialer timer enable seconds undo dialer timer enable view dial interface (physical or dialer) view parameter seconds: holddown timer value, setting the interval for originating a call to bring up a link after it is disconnected. It ranges from 5 to 65535 seconds. Descr...

  • Page 328

    328 c hapter 20: dcc c onfiguration c ommands a link idle-timeout timer starts upon setup of a link. If no interesting packets are present before the timer expires, dcc disconnects the link. If the timer is set to 0, the link will never be disconnected, regardless of whether there are interesting pa...

  • Page 329

    329 description use the dialer user command to add a remote username for authenticating incoming calls. Use the undo dialer user command to remove the remote username. By default, no remote username is set. This command is only valid on dialer interfaces in rs-dcc. On a dialer interface encapsulated...

  • Page 330

    330 c hapter 20: dcc c onfiguration c ommands n in the default configuration of the interface, the dialer-group command is not configured. You must configure this command for dcc to send packets. Related command: dialer-rule. Example # add interface serial 2/0 to dialer access group 1. System-view [...

  • Page 331

    331 resetting the idle-timeout timer if a link is present, or drops it without originating calls for link setup if no link is present. For dcc to send packets normally, you must configure a dial acl and associate it with the concerned dial interface (physical or dialer) by using the dialer-group com...

  • Page 332

    332 c hapter 20: dcc c onfiguration c ommands display interface dialer syntax display interface dialer [ number ] view any view parameters number : dialer interface number. Description use the display interface dialer command to display the information about a dialer interface. If you do not provide...

  • Page 333

    333 interface dialer syntax interface dialer number undo interface dialer number view system view parameter number: dialer interface number, in the range 0 to 1023. Description use the interface dialer command to create a dialer interface. In c-dcc, this equals creating a dialer circular group. Use ...

  • Page 334

    334 c hapter 20: dcc c onfiguration c ommands the physical interfaces in c-dcc and resource-shared dcc do not use individual network addresses. Instead, they use the addresses of the corresponding dialer interfaces. In both c-dcc and rs-dcc, physical interfaces use the network addresses of their ass...

  • Page 335

    335 undo ppp callback ntstring view dial interface (physical or dialer) view parameter dial-number: dial string for a windows nt server to place return calls to your router, a string of 1 to 64 characters. Description use the ppp callback ntstring command to configure the dial number required for a ...

  • Page 336

    336 c hapter 20: dcc c onfiguration c ommands.

  • Page 337: Asic

    21 b asic dls w c onfiguration c ommands code nrzi syntax code nrzi undo code view synchronous serial interface view parameter none description use the code nrzi command to configure the synchronous serial interface to use nrzi encoding. Use the undo code command to configure the synchronous serial ...

  • Page 338

    338 c hapter 21: b asic dls w c onfiguration c ommands description use the display dlsw circuits command to view the dlsw virtual circuit information. The output information of the command helps the user understand the condition of dlsw virtual circuits. Example # display the information of all virt...

  • Page 339

    339 # display the local information about capabilities exchange. Dlsw: capabilities of local: 1.1.1.1 vendor id (oui): 00.0f.E2 version number : 2 release number : 0 initial pacing window: 40 tcp sessions number : 1 multicast address : none version string : comware software, version 5.20, release 12...

  • Page 340

    340 c hapter 21: b asic dls w c onfiguration c ommands *145.11.23.58 2 1 1 2067 c connecting 00:00:00 display dlsw reachable-cache syntax display dlsw reachable-cache view any view parameter none description use the display dlsw reachable-cache command to view the reachability information of dlsw. E...

  • Page 341

    341 display llc2 syntax display llc2 [ circuit circuit-id ] view any view parameter circuit-id: id of an llc2 virtual circuit, in the range of 0 to 4294967295. Description use the display llc2 command to display llc2 statistics. Example # display the statistics of the llc2 virtual circuit by the id ...

  • Page 342

    342 c hapter 21: b asic dls w c onfiguration c ommands dlsw bridge-set syntax dlsw bridge-set bridge-set undo dlsw bridge-set bridge-set view system view parameter bridge-set: id of the bridge set to be mapped to dlsw, in the range of 1 to 63. Description use the dlsw bridge-set command to map the s...

  • Page 343

    343 description use the dlsw enable command to enable dlsw. Use the undo dlsw enable command to disable dlsw. By default, dlsw is enabled. The execution of the undo dlsw enable command releases all dynamic resources without altering the configuration. Example # disable dlsw without changing the conf...

  • Page 345

    345 example # create a local dlsw peer with the following parameters: ■ ip address: 1.1.1.1 ■ initial local window size: 50 ■ keepalive interval: 40 seconds ■ maximum frame size: default ■ maximum local window size: default system-view [sysname] dlsw local 1.1.1.1 init-window 50 keepalive 40 dlsw re...

  • Page 346

    346 c hapter 21: b asic dls w c onfiguration c ommands [sysname] dlsw reachable saps 12 14 # permit access to user-configured mac addresses only. [sysname] dlsw reachable mac-exclusivity dlsw reachable-cache syntax dlsw reachable-cache mac-address remote ip-address undo dlsw reachable-cache mac-addr...

  • Page 347

    347 backup backup-address: creates a backup remote peer with the ip address of ip-address; backup-address is the ip address of the primary remote peer, which must be created prior to this backup remote peer. Keepalive-interval: interval in seconds between keepalive messages, in the range of 0 to 1,2...

  • Page 348

    348 c hapter 21: b asic dls w c onfiguration c ommands dlsw reverse syntax dlsw reverse mac-address view system view parameter mac-address: mac address to be converted. Description use the dlsw reverse command to convert a mac address from the ethernet format to the token ring format, or vice versa....

  • Page 349

    349 description use the dlsw max-transmission command to set the maximum number of the attempts the dlsw v2.0 router should make to send an explorer frame. Use the undo dlsw max-transmission command to restore the default. Each time the origin dlsw v2.0 router sends an explorer frame in a udp multic...

  • Page 351

    351 idle-mark syntax idle-mark undo idle-mark view synchronous serial interface view parameter none description use the idle-mark command to configure the idle-time encoding scheme of the synchronous serial interface to be 0xff. Use the undo idle-mark command to restore the default setting. By defau...

  • Page 352

    352 c hapter 21: b asic dls w c onfiguration c ommands note that you need to remove all ip related configurations on the interface before enabling sdlc, because sdlc cannot underlie the ip protocol. For example, you need to delete the ip address of the interface. Example # configure serial 2/0 to us...

  • Page 353

    353 use the undo max-pdu command to restore the default maximum llc2 pdu size. By default, the maximum llc2 pdu size is 1,493 bytes. Example # set the maximum llc2 pdu size to 1,000 bytes on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] llc2 max-pdu 1000 llc2 max-s...

  • Page 354

    354 c hapter 21: b asic dls w c onfiguration c ommands by default, the number of llc2 transmission retries is 3. Example # set the number of llc2 transmission retries to 10 on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] llc2 max-transmission 10 llc2 modulo syntax...

  • Page 355

    355 parameter length: the maximum number of consecutive information frames the router can send before receiving an acknowledgment from the peer, in the range of 1 to 127. Description use the llc2 receive-window command to configure the maximum number of consecutive information frames the router can ...

  • Page 356

    356 c hapter 21: b asic dls w c onfiguration c ommands view ethernet interface view parameter mseconds: llc2 local acknowledgment delay, in milliseconds. The effective range is 1 to 60,000. Description use the llc2 timer ack-delay command to configure the llc2 local acknowledgment delay time, namely...

  • Page 357

    357 view ethernet interface view parameter mseconds: llc2 poll timer length in milliseconds. The effective range is 1 to 60,000. Description use the llc2 timer detect command to configure the llc2 poll timer, namely the interval at which both ends of a virtual circuit sends/receives receiver ready (...

  • Page 358

    358 c hapter 21: b asic dls w c onfiguration c ommands llc2 timer reject syntax llc2 timer reject mseconds undo llc2 timer reject view ethernet interface view parameter mseconds: llc2 rej status time in milliseconds. The effective range is 1 to 60,000. Description use the llc2 timer reject command t...

  • Page 359

    359 parameter none description use the reset dlsw reachable-cache command to clear dlsw reachability information. Example # clear the dlsw reachability information. Reset dlsw reachable-cache reset dlsw tcp syntax reset dlsw tcp [ ip-address ] view user view parameter ip-address: ip address of the r...

  • Page 360

    360 c hapter 21: b asic dls w c onfiguration c ommands sdlc controller syntax sdlc controller sdlc-address undo sdlc controller sdlc-address view synchronous serial interface view parameter sdlc-address: address of the secondary sdlc station to be configured, in the range of 0x01 to 0xfe. Descriptio...

  • Page 361

    361 example # set the secondary sdlc station address to 0x05 on serial 2/0. System-view [sysname] interface serial 2/0 [sysname-serial2/0] sdlc controller 05 sdlc enable dlsw syntax sdlc enable dlsw undo sdlc enable dlsw view synchronous serial interface view parameter none description use the sdlc ...

  • Page 362

    362 c hapter 21: b asic dls w c onfiguration c ommands use the undo sdlc mac-map local command to delete the configured sdlc virtual mac address. By default, no sdlc virtual mac address is configured. Initially designed for llc2 protocols, dlsw establishes mappings with virtual circuits through mac ...

  • Page 363

    363 ■ if the remote sdlc peer to be configured uses a token ring address, use its token ring address directly; ■ if the remote sdlc peer uses an ethernet address, reverse the bit order of the ethernet address: for example, convert 00e0.Fc03.A548 to 0007.3fc0.5a12. You are recommended to use the dlsw...

  • Page 364

    364 c hapter 21: b asic dls w c onfiguration c ommands description use the sdlc max-send-queue command to configure the length of the sdlc output queue. Use the undo sdlc max-send-queue command to restore the default setting. By default, the length of the sdlc output queue is 50. Example # set the l...

  • Page 365

    365 description use the sdlc modulo command to configure the modulus of the sdlc. Use the undo sdlc modulo command to restore the default setting. By default, the sdlc modulus is 8. Like x.25, sdlc uses the modulus method to number frames. All frames sent are numbered incrementally and await an ackn...

  • Page 366

    366 c hapter 21: b asic dls w c onfiguration c ommands system-view [sysname] interface serial 2/0 [sysname-serial2/0] sdlc sap-map local 08 05 sdlc sap-map remote syntax sdlc sap-map remote dsap sdlc-addr undo sdlc sap-map remote dsap sdlc-addr view synchronous serial interface view parameter dsap: ...

  • Page 367

    367 description use the sdlc simultaneous command to configure the sdlc synchronous serial interface to work in two-way simultaneous mode, so that the primary sdlc station can send data to and receive data from a secondary station at the same time. Use the undo sdlc simultaneous command to restore t...

  • Page 368

    368 c hapter 21: b asic dls w c onfiguration c ommands example # set the role of the sdlc device connected with serial 2/0 to primary, and the role of the local interface to secondary. System-view [sysname] interface serial 2/0 [sysname-serial2/0] sdlc status secondary sdlc timer ack syntax sdlc tim...

  • Page 369

    369 use the undo sdlc timer lifetime command to restore the default setting. By default, the secondary-station acknowledgment waiting time is 500 milliseconds. Example # set the secondary-station acknowledgment waiting time to 1,000 milliseconds on serial 2/0. System-view [sysname] interface serial ...

  • Page 370

    370 c hapter 21: b asic dls w c onfiguration c ommands use the undo sdlc window command to restore the default setting. By default, the maximum number of consecutive frames the device can send before receiving an acknowledgement from the peer is 7. Example # set the maximum number of consecutive fra...

  • Page 372

    372 c hapter 22: f rame r elay c onfiguration c ommands description use the display fr compress command to display the statistics information about frame relay compression. If no interface is specified, the dlci statistics information for all interfaces is displayed. Related commands: fr compression...

  • Page 373

    373 display fr inarp-info syntax display fr inarp-info [ interface interface-type interface-number ] view any view parameter interface interface-type interface-number: specifies an interface by its type and number. It can only be a main interface. Description use the display fr inarp-info command to...

  • Page 375

    375 display fr iphc syntax display fr iphc [ interface interface-type interface-number ] view any view parameter interface interface-type interface-number: specifies an interface by its type and number. It can only be a main interface. Description use the display fr iphc command to display statistic...

  • Page 376

    376 c hapter 22: f rame r elay c onfiguration c ommands total packets: 8 , packets compressed: 5 link searches: 0 , search missed : 1 bytes saved : 173 , bytes sent : 598 decompression: total packets: 6 , packets compressed: 4 errors : 0 compression-connections: 16 , decompression-connections: 16 di...

  • Page 377

    377 display fr map-info map statistics for interface serial2/0 (dte) dlci = 100, ip inarp 100.100.1.1, serial2/0 create time = 2002/10/21 14:48:44, status = active encapsulation = ietf, vlink = 14, broadcast dlci = 200, ip inarp 100.100.1.1, serial2/0 create time = 2002/10/21 14:34:42, status = acti...

  • Page 379

    379 display fr statistics syntax display fr statistics [ interface interface-type interface-number ] view any view parameter interface interface-type interface-number: specifies an interface by its type and number. This interface must be a main interface. Description use the display fr statistics co...

  • Page 382

    382 c hapter 22: f rame r elay c onfiguration c ommands # display detailed state information about all frame relay bundle links. Display mfr verbose bundle interface:mfr1, bundle state = up, bundle class = a, fragment enabled, mfr bundle fragment size = 222 original packet be assembled/fragmentized ...

  • Page 383

    383 display x25 template syntax display x25 template [ name ] view any view parameter name: name of an x.25 template. Description use the display x25 template command to display the information of an x.25 template, including the configuration concerning x.25 and lapb. Hello(tx/rx) number of the tran...

  • Page 384

    384 c hapter 22: f rame r elay c onfiguration c ommands if you do not specify the name argument, this command displays the information of all the x.25 templates. Related command: x25 template, x25-template. Example # display the configuration of the x.25 template named “vofr”. Display x25 template v...

  • Page 385

    385 fr compression frf9 syntax fr compression frf9 undo fr compression view subinterface (point-to-point) view parameter none description use the fr compression frf9 command to enable frf9 compression function. Use the undo fr compression command to disable frf9 compression function. By default, fra...

  • Page 386

    386 c hapter 22: f rame r elay c onfiguration c ommands undo fr compression iphc view frame relay interface view parameter none description use the fr compression iphc command to enable frf.20 (frf.20 iphc) compression. Use the undo fr compression iphc command to disable the function. By default, th...

  • Page 387

    387 use the undo fr dlci command to cancel the configuration. When the frame relay interface type is dce or nni, it is necessary to manually configure virtual circuit for interface (either main interface or subinterface). When the frame relay interface type is dte, if the interface is main interface...

  • Page 388

    388 c hapter 22: f rame r elay c onfiguration c ommands system-view [sysname] interface serial 2/0 [sysname-serial2/0] fr dlci-switch 100 interface serial 2/1 dlci 200 # configure a static route, allowing the packets on the link with dlci of 200 on serial 2/1 to be forwarded over the link with dlci ...

  • Page 391

    391 description use the fr lmi n391dte command to configure n391 parameter at the dte side. Use the undo fr lmi n391dte command to restore the default. By default, the parameter value is 6. The dte sends a status-enquiry packet at regular interval set by t391 to the dce. There are two types of statu...

  • Page 392

    392 c hapter 22: f rame r elay c onfiguration c ommands example # set frame relay interface serial 2/0 to operate in dce mode and set n392 to 5 and n393 to 6. System-view [sysname] interface serial2/0 [sysname-serial2/0] link-protocol fr [sysname-serial2/0] fr interface-type dce [sysname-serial2/0] ...

  • Page 393

    393 fr lmi n393dce syntax fr lmi n393dce n393-value undo fr lmi n393dce view interface view parameter n393-value: the value of n392 parameter at the dte side. It ranges from 1 to 10. Description use the fr lmi n393dce command to set the n393 parameter at the dce side. Use the undo fr lmi n393dce com...

  • Page 394

    394 c hapter 22: f rame r elay c onfiguration c ommands use the undo fr lmi n393dte command to restore the default. By default, the parameter value is 4. The dte sends a status-enquiry packet at a regular interval to the dce to inquire the link status. On receiving this packet, the dce will immediat...

  • Page 397

    397 fr map ppp syntax fr map ppp dlci-number interface virtual-template interface-number undo fr map ppp [ dlci-number ] view interface view parameter dlci-number: specific dlci number in the range of 16 to 1007. Virtual-template interface-number: virtual template interface number in the range of 0 ...

  • Page 398

    398 c hapter 22: f rame r elay c onfiguration c ommands description use the fr switch name interface interface-type interface-number dlci dlci1 interface interface-type interface-number dlci dlci2 command to create a pvc used for frame relay switching. Use the fr switch name command to enter the est...

  • Page 400

    400 c hapter 22: f rame r elay c onfiguration c ommands subnumber: subinterface number, in the range 0 to 1023. P2p: specifies a point-to-point subinterface. P2mp: specifies a point-to-multipoint subinterface. Description use the interface serial command to create subinterface and enter subinterface...

  • Page 401

    401 system-view [sysname] interface serial 2/0 [sysname-serial2/0] link-protocol fr nonstandard link-protocol fr mfr syntax link-protocol fr mfr interface-number view interface view parameter interface-number: mfr interface number, in the range 0 to 1023. Description use the link-protocol fr mfr com...

  • Page 402

    402 c hapter 22: f rame r elay c onfiguration c ommands use the undo mfr bundle-name command to restore the default. By default, bid is represented by mfr plus frame relay bundle number, for example, mfr4. Each mfr bundle has a bid, which only has local significance. Therefore, the same bid can be u...

  • Page 403

    403 parameter bytes: fragment size, ranging from 60 to 1,500 in bytes. Description use the mfr fragment-size command to configure the maximum fragment size allowed on a frame relay bundle link. Use the undo mfr fragment-size command to restore the default. By default, the maximum fragment size allow...

  • Page 404

    404 c hapter 22: f rame r elay c onfiguration c ommands example # set the bundle lid of the multilink frame relay bundle link serial 2/0 to be bl1. System-view [sysname] interface serial 2/0 [sysname-serial2/0] mfr link-name bl1 mfr retry syntax mfr retry number undo mfr retry view frame relay inter...

  • Page 405

    405 description use the mfr stateup-respond-addlink command to configure an mfr interface to return add_link messages and transit the corresponding physical interface to the protocol add_sent state when it is in protocol up state and receives an add_link request from the peer. Use the undo mfr state...

  • Page 406

    406 c hapter 22: f rame r elay c onfiguration c ommands system-view [sysname] interface serial 2/0 [sysname-serial2/0] mfr timer ack 6 mfr timer hello syntax mfr timer hello seconds undo mfr timer hello view frame relay interface view parameter seconds: interval (in seconds) for a bundle link to sen...

  • Page 407

    407 example # set the size of the sliding window of the mfr bundle interface mfr4 to be 8. System-view [sysname] interface mfr 4 [sysname-mfr4] mfr window-size 8 shutdown syntax shutdown undo shutdown view frame relay switching view parameter none description use the shutdown command to disable the ...

  • Page 408

    408 c hapter 22: f rame r elay c onfiguration c ommands example # clear all the frame relay dynamic address maps. Reset fr inarp reset fr pvc syntax reset fr pvc interface serial interface-number [ dlci dlci-number ] view user view parameter interface-number: interface number. Dlci dlci-number: dlci...

  • Page 409

    409 [sysname-serial2/0] fr interface-type dte [sysname-serial2/0] timer hold 15 x25-template syntax x25-template name undo x25-template name view dlci interface view parameter name: name of an x.25 template, a string of 1 to 30 characters. Description use the x25-template command to apply an x.25 te...

  • Page 410

    410 c hapter 22: f rame r elay c onfiguration c ommands system-view [sysname] x25 template vofr [sysname-x25-vofr].

  • Page 411: Garp C

    23 garp c onfiguration c ommands display garp statistics syntax display garp statistics [ interface interface-list ] view any view parameter interface interface-list: specifies an ethernet port list, in the format of { interface-type interface-number [ to interface-type interface-number ] }&, where ...

  • Page 412

    412 c hapter 23: garp c onfiguration c ommands defined without the to interface-type interface-number portion comprises only one port. Description use the display garp timer command to display garp timers. Note that: ■ if the interface interface-list keyword-argument combination is not specified, th...

  • Page 413

    413 when restoring the default garp timers, you are recommended to do that on the timers in the order of hold, join, leave, and leaveall. When configuring garp timers, note that their values are dependent on each other and must be a multiplier of five centiseconds. If the value range for a timer is ...

  • Page 414

    414 c hapter 23: garp c onfiguration c ommands each time a device on the network receives a leaveall message, it resets its leaveall timer. Therefore, a garp application entity may send leaveall messages at the interval set by its leaveall timer or the leaveall timer on another device on the network...

  • Page 415: Gvrp C

    24 gvrp c onfiguration c ommands display gvrp statistics syntax display gvrp statistics [ interface interface-list ] view any view parameter interface interface-list: specifies an ethernet port list, in the format of { interface-type interface-number [ to interface-type interface-number ] }&, where ...

  • Page 416

    416 c hapter 24: gvrp c onfiguration c ommands display gvrp status syntax display gvrp status view any view parameter none description use the display gvrp status command to display the global enable/disable state of gvrp. Example # display the global gvrp enable/disable state. Display gvrp status g...

  • Page 418

    418 c hapter 24: gvrp c onfiguration c ommands.

  • Page 419: Hdlc C

    25 hdlc c onfiguration c ommands link-protocol hdlc syntax link-protocol hdlc view interface view parameter none description use the link-protocol hdlc command to configure hdlc encapsulation on the interface. As a data link layer protocol, hdlc can carry network layer protocols, such as ip and ipx....

  • Page 420

    420 c hapter 25: hdlc c onfiguration c ommands you should set the same polling interval on both the local and remote devices. Setting it to zero disables link status check. Example # set the link status polling interval to 100 seconds on interface serial 2/0. System-view [sysname] interface serial 2...

  • Page 422

    422 c hapter 26: lapb and x.25 c onfiguration c ommands [sysname-serial2/1] quit [sysname] x25 hunt-group hg1 round-robin [sysname-hg-hg1] channel interface serial 2/1 dlci 100 # add the xot channel with a destination of 10.1.1.2 to hunt group hg1. System-view [sysname] x25 hunt-group hg1 round-robi...

  • Page 423

    423 0 broadcasts, 0 multicasts 3 errors, 0 runts, 0 giants 0 crc, 3 align errors, 0 overruns 0 dribbles, 0 aborts, 0 no buffers 0 frame errors output:210 packets, 4720 bytes 0 errors, 0 underruns, 0 collisions 0 deferred dcd=up dtr=up dsr=up rts=up cts=up table 55 description on the fields of the di...

  • Page 424

    424 c hapter 26: lapb and x.25 c onfiguration c ommands display x25 alias-policy syntax display x25 alias-policy [ interface interface-type interface-number ] view any view parameter interface interface-type interface-number: specifies an interface by its type and number. Window-size 7 window size o...

  • Page 425

    425 description use the display x25 alias-policy command to view x.25 alias table. Related command: x25 alias-policy. Example # display x.25 alias table. Display x25 alias-policy alias for interface serial2/1: alias for interface serial2/0: alias-1: $20112405$ strict alias-2: $20112450 left alias-3:...

  • Page 426

    426 c hapter 26: lapb and x.25 c onfiguration c ommands parameter hunt-group-name: hunt group name, a string of 1 to 30 characters. Description use the display x25 hunt-group-info command to view the status information of x.25 hunt group. You can use this command to learn the hunt group of the route...

  • Page 427

    427 example # display the x.25 address mapping table. Display x25 map interface:serial3/0(protocol status is up): ip address:202.38.162.2 x.121 address: 22 map-type: svc_map vc-number: 0 facility: accept_reverse; broadcast; packet_size: i 512 o 512 display x25 pad syntax display x25 pad [ pad-id ] v...

  • Page 428

    428 c hapter 26: lapb and x.25 c onfiguration c ommands display x25 switch-table pvc syntax display x25 switch-table pvc view any view parameter none description use the display x25 switch-table pvc command to display x.25 pvc switching table. Example # display x.25 pvc switching table. Display x25 ...

  • Page 429

    429 parameter dynamic: displays vc switching table. Static: displays svc switching table. Description use the display x25 switch-table svc command to display svc switching table. With the keyword static included, the manually configured svc switching table is displayed. With the keyword dynamic incl...

  • Page 430

    430 c hapter 26: lapb and x.25 c onfiguration c ommands note that if no logical channel identifier is specified, the information about all virtual circuits is displayed. There are three types of virtual circuits as follows: ■ an svc (switched virtual circuit) is set up temporarily by x.25 through ca...

  • Page 431

    431 send queue(current/max): 1/200 interface: serial2/0 pvc 1 state: d3(dce reset indication) pvc xot serial2/0-1.1.1.1 pvc 1 connected window size: input 2 output 2 packet size: input 128 output 128 local ps: 0 local pr: 0 remote ps: 0 remote pr: 0 local busy: false reset times: 0 input/output: dat...

  • Page 432

    432 c hapter 26: lapb and x.25 c onfiguration c ommands display x25 x2t switch-table syntax display x25 x2t switch-table view any view parameter none description use the display x25 x2t switch-table command to display the x2t (x.25 to tcp) switching table. The entry exists when the router sets up an...

  • Page 433

    433 tcp peer ip: 10.1.1.1, peer port: 1998 tcp local ip: 10.1.1.2, local port: 1024 socket keepalive period: 5, keepalive tries: 3 come interface name: serial1/0-10.1.1.1-1024 go interface name: serial1/0 lapb max-frame syntax lapb max-frame n1-value undo lapb max-frame view interface view parameter...

  • Page 436

    436 c hapter 26: lapb and x.25 c onfiguration c ommands view interface view parameter k-value: maximum number of sequence numbered frames to be acknowledged by dte or dce during any specified time. If the modulo is 8, the value of the window parameter k ranges 1 to 7. If the modulo is 128, the value...

  • Page 438

    438 c hapter 26: lapb and x.25 c onfiguration c ommands view user view parameter x121-address: destination x.121 address, a string of 1 to 15 numerical characters. Description use the pad command to establish a x.25 pad connection and logon to the remote site. Pad is similar to telnet. It can establ...

  • Page 439

    439 interface-type interface-number: specifies an interface by its type and number. Vc-number: virtual circuit number of pvc or svc, in the range 1 to 4095. Description use the reset x25 command to reset x.25 protocol statistics or x.25 virtual circuit on the specified interface. For pvc number, the...

  • Page 440

    440 c hapter 26: lapb and x.25 c onfiguration c ommands description use the translate ip command to configure an x2t forwarding route from ip network to x.25 network. Use the undo translate ip command to remove the route. When a host in the ip network sends packets to the specified ip address and po...

  • Page 441

    441 to the specified ip address and port number. Packets received from the x.25 model are added with an x2t header to forward through the tcp connection. You can establish mappings between port numbers and x.121 addresses by multiple commands. C caution: the maximum number of ip-to-x.25 mappings var...

  • Page 442

    442 c hapter 26: lapb and x.25 c onfiguration c ommands adapt this change. Please consult your isp to learn if the network supports this function before deciding on whether the alias function is enabled or not. For information about x.25 alias, refer to “x25 alias-policy” on page 441. Example # conf...

  • Page 443

    443 description use the x25 call-facility command to set user options for an x.25 interface. After an option is set, all x.25 calls from the x.25 interface will carry the relevant information field in call packet. Use the undo x25 call-facility command to delete the set option. By default, no facili...

  • Page 444

    444 c hapter 26: lapb and x.25 c onfiguration c ommands description use the x25 cug-service command to enable cug service and suppression policies. Use the undo x25 cug-service command to disable cug service. By default, cug service is disabled. After cug service is enabled, the system suppresses th...

  • Page 445

    445 description use the x25 default-protocol command to set the default upper-layer protocol of x.25 for the x.25 interface. Use the undo x25 default-protocol command to restore the default. By default, no upper-layer protocol is specified. During x.25 svc setup, the called device will check the cal...

  • Page 446

    446 c hapter 26: lapb and x.25 c onfiguration c ommands example # create hunt group hg1 which uses cyclic selection policy. System-view [sysname] x25 hunt-group hg1 round-robin [sysname-hg-hg1] x25 ignore called-address syntax x25 ignore called-address undo x25 ignore called-address view interface v...

  • Page 447

    447 description use the x25 ignore calling-address command to enable it to ignore the x.121 address of the calling dte when x.25 initiates calls. Use the undo x25 ignore calling-address command to disable this function. By default, this function is disabled. According to x.25, the calling request pa...

  • Page 448

    448 c hapter 26: lapb and x.25 c onfiguration c ommands example, if the dte with cug number as 10 wants to call the dte with cug number as 20 in the network, the device will first find the map in the map table. If the map is found, change the cug number of the calling packet to 20 and forward the pa...

  • Page 449

    449 description use the x25 map command to set the address mapping between ip address and x.121 address. Use the undo x25 map command to delete a mapping. By default, no address mapping is configured. Since x.25 protocol can multiplex multiple logical virtual circuits on a physical interface, you ne...

  • Page 450

    450 c hapter 26: lapb and x.25 c onfiguration c ommands modifications, you can first delete this address mapping via the undo x25 map command, and then establish one new address mapping. Two or more address mappings with an identical protocol address shall not exist on the same x.25 interface. Relat...

  • Page 451

    451 n ■ the packet numbering mode on the pair of dte and dce must be the same ■ you need to run the shutdown and undo shutdown commands on the interface to apply the new configuration. ■ the packet numbering mode of x.25 layer 3 is different from the frame numbering mode of lapb (layer 2 in x.25). W...

  • Page 452

    452 c hapter 26: lapb and x.25 c onfiguration c ommands normally, the maximum receiving packet length is equivalent to the maximum sending packet. Unless access isp allows, do not configure these two parameters with different values. Example # set the maximum receiving packet length and maximum send...

  • Page 453

    453 by default, no pvc is created. When creating such a pvc, if you do not set the relevant attributes for the pvc, its flow control parameters will be the same as that of the x.25 interface (the flow control parameters on an x.25 interface can be set by the x25 packet-size and x25 window-size comma...

  • Page 454

    454 c hapter 26: lapb and x.25 c onfiguration c ommands the default is 200. When the data traffic is too heavy, you can use this command to extend the receiving queue and sending queue of the x.25 vc to avoid data loss that may affect transmission performance. Note that modifying this parameter woul...

  • Page 455

    455 x25 response called-address syntax x25 response called-address undo x25 response called-address view interface view parameter none description use the x25 response called-address command to enable x.25 call reception packets to carry the address information of the called dte. Use the undo x25 re...

  • Page 456

    456 c hapter 26: lapb and x.25 c onfiguration c ommands according to x.25, the call reception packet of a call may or may not carry an address code group, depending on the specific network requirements. This command enables users to easily specify whether the call reception packet carries the callin...

  • Page 457

    457 x25 roa-list syntax x25 roa-list roa-name roa-id& undo x25 roa-list roa-name view system view parameter roa-name: name of roa, a string of 1 to 19 characters. Roa-id&: roa id. Its value ranges from 0 to 9999. You can specify 10 ids for the roa. Description use the x25 roa-list command to define ...

  • Page 458

    458 c hapter 26: lapb and x.25 c onfiguration c ommands interface interface-type interface-number: specifies an interface by its type and number. Dlci dlci-number: specifies an dlci. The dlci-number argument is in the range 16 to 1007. Pvc pvc-number2: pvc number on the output interface, and its val...

  • Page 459

    459 system-view [sysname] interface serial 2/0 [sysname-serial2/0] x25 switch pvc 1 interface serial 2/1 pvc 2 # perform the packet switching from annex g dlci pvc1 on the serial2/1 to pvc1 on the serial2/0. System-view [sysname] x25 template switch [sysname-x25-switch] x25 vc-range bi-channel 10 20...

  • Page 460

    460 c hapter 26: lapb and x.25 c onfiguration c ommands -number: svc route number. Sub-dest destination-address: replaces the destination x.121 address, an alphanumeric string of 1 to 15 characters. The system replaces the destination dte address in the call request packet with the destination-addre...

  • Page 461

    461 example # configure an svc to forward the packet to the x.121 address 20112451 through interface serial2/0. System-view [sysname-serial2/0] x25 switch svc 20112451 interface serial 2/0 # configure an svc to forward the packet to the address 3 through the annex g dlci 100 of interface serial 2/0....

  • Page 462

    462 c hapter 26: lapb and x.25 c onfiguration c ommands interfaces or xot channels in the specified hunt group, to implement the load sharing of x.25 protocol. ■ x.25 hunt group supports source address and destination address replacement. With destination address replacement, you can hide x.121 addr...

  • Page 463

    463 description use the x25 switch svc xot command to add an x.25 switching route whose forwarding address is xot channel. Use the undo x25 switch svc xot command to delete the specified x.25 switching route. By default, no x.25 switching route is configured. After configuring the xot switching comm...

  • Page 464

    464 c hapter 26: lapb and x.25 c onfiguration c ommands example # enable x.25 switching function. System-view [sysname] x25 switching x25 timer hold syntax x25 timer hold minutes undo x25 timer hold view interface view parameter minutes: value of delay time in minutes, in the range 0 to 1000. Descri...

  • Page 465

    465 use the undo x25 timer idle command to restore the default. By default, this value is 0. Note that: ■ when a svc stays idle (no data are transmitted) for a period specified with the x25 timer idle command, the router will clear this svc automatically. ■ the x25 timer idle command applies to all ...

  • Page 466

    466 c hapter 26: lapb and x.25 c onfiguration c ommands example # set the restart timer on the x.25 interface serial 2/0 to 120 seconds. System-view [sysname] interface serial 2/0 [sysname-serial2/0] x25 timer tx0 120 x25 timer tx1 syntax x25 timer tx1 seconds undo x25 timer tx1 view interface view ...

  • Page 467

    467 description use the x25 timer tx2 command to set the reset request (indication) timer for dte (or dce). Use the undo x25 timer tx2 command to restore the default. By default, the timer on a dte is 180 seconds, and that on a dce is 60 seconds. According to x.25, a timer should be started when a d...

  • Page 468

    468 c hapter 26: lapb and x.25 c onfiguration c ommands x25 vc-per-map syntax x25 vc-per-map count undo x25 vc-per-map view interface view parameter count: maximum number of vcs, ranging from 1 to 8. Description use the x25 vc-per-map command to set the maximum number of vcs for connections with the...

  • Page 469

    469 description use the x25 vc-range command to set the upper and lower limits of x.25 vc range. Use the undo x25 vc-range command to restore their default values. By default, the upper and lower limits of two-way channel are 1 and 1024, of incoming-only channel are both 0, and of outgoing-only chan...

  • Page 470

    470 c hapter 26: lapb and x.25 c onfiguration c ommands please consult your isp about the input and output window sizes. Unless supported by the network, do not set these two parameters to different values. Example # set the input and output window sizes on the x.25 interface serial 2/0 to 5. System...

  • Page 471

    471 undo x25 pvc pvc-number1 view interface view parameter pvc-number1: number of pvc on the local interface, in the range 1 to 4095. Ip-address: ip address of the peer on the xot connection. Interface interface-type interface-number: specifies an interface by its type and number. Pvc pvc-number2: s...

  • Page 472

    472 c hapter 26: lapb and x.25 c onfiguration c ommands system-view [sysname] x25 switching [sysname] interface ethernet 1/0 [sysname-ethernet1/0] ip address 10.1.1.1 255.255.255.0 [sysname-ethernet1/0] quit [sysname] interface serial 2/0 [sysname-serial2/0] link-protocol x25 dce ietf [sysname-seria...

  • Page 473: Ink

    27 l ink a ggregation c onfiguration c ommands n link aggregation is not supported on msr 20 series routers. It is only supported on the interfaces of 16fsw/24fsw modules of msr 30/msr 50 series routers. Display lacp system-id syntax display lacp system-id view any view parameter none description us...

  • Page 474

    474 c hapter 27: l ink a ggregation c onfiguration c ommands example # display detailed information about link aggregation for port ethernet 1/1 in a manual aggregation group. Display link-aggregation interface ethernet 1/1 flags: a -- lacp_activity, b -- lacp_timeout, c -- aggregation, d -- synchro...

  • Page 475

    475 display link-aggregation summary syntax display link-aggregation summary view any view parameter none description use the display link-aggregation summary command to display a summary for all link aggregation groups. Table 73 description on the fields of display link-aggregation interface field ...

  • Page 476

    476 c hapter 27: l ink a ggregation c onfiguration c ommands you may find that information about the remote system for a manual link aggregation group is either replaced by none or not displayed at all. This is normal because this type of aggregation group has no knowledge of its partner. Example # ...

  • Page 477

    477 display link-aggregation verbose loadsharing type: shar -- loadsharing, nons -- non-loadsharing flags: a -- lacp_activity, b -- lacp_timeout, c -- aggregation, d -- synchronization, e -- collecting, f -- distributing, g -- defaulted, h -- expired aggregation id: 1, aggregationtype: static, loads...

  • Page 478

    478 c hapter 27: l ink a ggregation c onfiguration c ommands lacp port-priority syntax lacp port-priority port-priority undo lacp port-priority view ethernet interface view parameter port-priority: port lacp priority, in the range 0 to 65535. Flags one-octet lacp flags field indicates the actor stat...

  • Page 479

    479 description use the lacp port-priority command to assign an lacp priority to the port. Use the undo lacp port-priority command to restore the default. By default, port lacp priority is 32768. Related command: display link-aggregation interface, display link-aggregation verbose. Example # assign ...

  • Page 480

    480 c hapter 27: l ink a ggregation c onfiguration c ommands use the undo link-aggregation group description command to remove the name of the specified link aggregation group. Related command: display link-aggregation verbose. Example # name link aggregation group 22 as abc. System-view [sysname] l...

  • Page 481

    481 description use the port link-aggregation group command to add the ethernet port to a link aggregation group (manual or static lacp). Use the undo port link-aggregation group command to remove the ethernet port from a link aggregation group. Related command: display link-aggregation verbose. Exa...

  • Page 482

    482 c hapter 27: l ink a ggregation c onfiguration c ommands description use the reset lacp statistics command to clear statistics about lacp on a specified port or ports. Related command: display link-aggregation interface. Example # clear statistics about lacp on all ports. Reset lacp statistics.

  • Page 483: Ink

    28 l ink a ggregation d ebugging c ommands debugging lacp packet syntax debugging lacp packet [ interface interface-type interface-number [ to interface-type interface-number ] ] undo debugging lacp packet [ interface interface-type interface-number [ to interface-type interface-number ] ] view user...

  • Page 484

    484 c hapter 28: l ink a ggregation d ebugging c ommands examples # enable debugging for lacp protocol packets on ethernet 1/1 to view the information about lacp protocol packet sending/receiving of the port. Actor local port information carried in the protocol packet, which contains the following f...

  • Page 485

    485 debugging lacp packet interface ethernet 1/1 *0.60323 sysname lagg/8/pkt: send lacp packet via port ethernet1/1 // the device sent an lacp protocol packet through ethernet 1/1. *0.60323 sysname lagg/8/pkt: size=128, subtype =1, version=1 // the length of the lacp packet was 128 bytes, the protoc...

  • Page 486

    486 c hapter 28: l ink a ggregation d ebugging c ommands // the device received an lacp protocol packet through ethernet 1/1. *0.1221133 sysname lagg/8/pkt: size=128, subtype =1, version=1 // the length of the lacp packet was 128 bytes, the protocol sub type was 1, and the version number was 1. Acto...

  • Page 488

    488 c hapter 28: l ink a ggregation d ebugging c ommands debugging lacp state interface ethernet 1/2 rx *0.1360830 sysname lagg/8/fsm: port ethernet1/2: fsm rx transfers from state reserve to state initialize by the stimulation begin_true // rx state machine was initiated and then transited to the i...

  • Page 489

    489 examples # enable debugging for link aggregation errors to view the error information prompted during the system running. Debugging link-aggregation error *0.21953 sysname lagg/8/lacperrorevent: file e:v500d05sp1softwarelacplacp_agm.C, line: 1200 error------ portindex: 1 lacp_sendlacppacket ,g_u...

  • Page 490

    490 c hapter 28: l ink a ggregation d ebugging c ommands examples # enable debugging for link aggregation events to view the information about the events concerning link aggregation groups. Debugging link-aggregation event display link-aggregation summary aggregation group type: s -- static , m -- m...

  • Page 492

    492 c hapter 29: m odem c onfiguration c ommands use the undo modem auto-answer command to disable the connected external modem to answer automatically. In this case, the modem answers only when receiving an at command sent by software. By default, the connected external modem is set to non-auto ans...

  • Page 493

    493 sendat syntax sendat at-string view interface view (the interface can be an asynchronous serial interface, a asynchronous/synchronous serial interface operating in the asynchronous mode, an aux interface, or an am interface.) parameter at-string: at command string. This argument can contain “+++...

  • Page 494

    494 c hapter 29: m odem c onfiguration c ommands bn specifies the communication standard to be adopted and the transmission speed. The communication standard can be itu or bell. The n argument can be 0, 1, 2/3, 15, or 16. B0 specifies itu v.22 and sets the transmission speed to 1,200 bps. B1 specifi...

  • Page 495

    495 example # send dialing command to call number 169. System-view [sysname] interface serial 2/0 [sysname-serial2/0] physical-mode async [sysname-serial2/0] sendat atd169 service modem-callback syntax service modem-callback nn specifies the local modem to perform negotiation connected with remote m...

  • Page 496

    496 c hapter 29: m odem c onfiguration c ommands undo service modem-callback view system view parameter none description use the service modem-callback command to enable the callback function of modems. Use the undo service modem-callback command to disable the callback function of modems. By defaul...

  • Page 499

    499 note that: ■ layer 2 ethernet ports, layer 3 ethernet interfaces, pos interfaces, and cpos interfaces can all be source mirroring ports of local port mirroring groups. ■ when you use the undo mirroring-group mirroring-port command to remove source ports from a port mirroring group, make sure the...

  • Page 500

    500 c hapter 30: p ort m irroring c onfiguration c ommands ■ layer 2 ethernet ports, layer 3 ethernet interfaces, and tunnel interfaces can all be destination mirroring ports of local port mirroring groups. ■ member ports of an existing port mirroring group cannot be destination ports. Example # add...

  • Page 501

    501 system-view [sysname] mirroring-group 3 local [sysname] interface pos 5/1 [sysname-pos5/1] mirroring-group 3 mirroring-port both # add cpos 6/1 to local port mirroring group 4. System-view [sysname] mirroring-group 4 local [sysname] controller cpos 6/1 [sysname-cpos6/1] mirroring-group 4 mirrori...

  • Page 502

    502 c hapter 30: p ort m irroring c onfiguration c ommands.

  • Page 503: Ppp

    31 ppp and mp c onfiguration c ommands display interface mp-group syntax display interface mp-group [ mp-number ] view any view parameter mp-number: multilink point to point protocol group (mp-group) interface number, which can be the number of any existing mp-group interface. Description use the di...

  • Page 504

    504 c hapter 31: ppp and mp c onfiguration c ommands display interface virtual-template syntax display interface virtual-template [ number ] view any view parameter number: virtual template (vt) number, which can be the number of any existing vt. Description use the display interface virtual-templat...

  • Page 505

    505 display ppp mp syntax display ppp mp [ interface interface-type interface-number ] view any view parameter interface interface-type interface-number: specifies an interface by its type and number. Description use the display ppp mp command to display information and statistics of mp interfaces. ...

  • Page 506

    506 c hapter 31: ppp and mp c onfiguration c ommands # display information about mp interfaces, which are configured via mp-groups. Display ppp mp mp-group is mp-group0 max-bind: 20, min-fragment: 128 ,lfi max-delay: 100 bundle multilink, slot 0, master link is mp-group0 peer’s endpoint descriptor: ...

  • Page 507

    507 vt vt-number: specifies the number of the vt associated to the virtual access (va) interface. The user-name argument ranges from 0 to 1023. Description use the display virtual-access command to view the information about specific va interfaces. N va interfaces are created automatically by the sy...

  • Page 508

    508 c hapter 31: ppp and mp c onfiguration c ommands system-view [sysname] interface mp-group 3 [sysname-mp-group3] interface virtual-template syntax interface virtual-ethernet number undo interface virtual-ethernet number view system view parameter number: vt number, ranging from 0 to 1023. Descrip...

  • Page 509

    509 system-view [sysname] interface serial 1/0 [sysname-serial1/0] ip address ppp-negotiate link-protocol ppp syntax link-protocol ppp view interface view parameter none description use the link-protocol ppp command to configure the link-layer protocol encapsulated on the interface as ppp. By defaul...

  • Page 511

    511 for authentication on a dial-up interface, you are recommended to configure authentication on both the physical interface and the dialer interface. When the physical interface receives a dcc call request, it first initiates ppp negotiation and authenticates the dial-in user, and then passes the ...

  • Page 512

    512 c hapter 31: ppp and mp c onfiguration c ommands undo ppp chap user view interface view parameter username: username of chap authentication, a string of 1 to 80 characters, which is the one sent to the peer device to be authenticated. Description use the ppp chap user command to configure the us...

  • Page 513

    513 if a pc is connected to the device using ppp, you can use the winipcfg command or the ipconfig/all command to view its dns server address assigned by the device. A sysname device can provide a primary dns server address and a secondary dns server address. Example # configure the local device to ...

  • Page 514

    514 c hapter 31: ppp and mp c onfiguration c ommands parameter none description use the ppp ipcp dns request command to enable a device to request its peer for the dns server address actively through a port. Use the undo ppp ipcp dns request command to restore the default. By default, a device does ...

  • Page 515

    515 example # configure the interface serial 1/0 to allocate the ip address 10.0.0.1 to the peer. The peer may accept this assigned address, or use its self-configured address, or have no ip address. System-view [sysname] interface serial 1/0 [sysname-serial1/0] remote address 10.0.0.1 # configure t...

  • Page 516

    516 c hapter 31: ppp and mp c onfiguration c ommands quality every ten lqrs, and brings the link up if the results of three consecutive calculations are higher than the resume-percentage. This means a disabled link must experience 30 keepalive periods before it can go up again. If a large keepalive ...

  • Page 517

    517 view virtual template interface view, dialer interface view parameter authentication: performs mp binding according to ppp authentication username. Both: performs mp binding according to both the ppp authentication username and the endpoint descriptor. Descriptor: performs the mp binding accordi...

  • Page 518

    518 c hapter 31: ppp and mp c onfiguration c ommands description use the ppp mp max-bind command to configure the maximum number of links allowed in an mp bundle. Use the undo ppp mp max-bind command to restore the default value, which is 16. Generally speaking, it is unnecessary to configure this a...

  • Page 519

    519 min-bind command is configured, the dialer timer idle command no longer takes effect. The argument min-bind-num must be no greater than max-bind-num. Related command: dialer threshold on page 324 example # set the minimum number of links contained in an mp bundle to 4. System-view [sysname] inte...

  • Page 520

    520 c hapter 31: ppp and mp c onfiguration c ommands ppp mp mp-group syntax ppp mp mp-group number undo ppp mp view interface view parameter number: mp-group interface number, in the range 0 to 1023. Description use the ppp mp mp-group command to add the current interface to the specified mp-group. ...

  • Page 521

    521 you can configure the following parameters on the virtual-template: ■ local ip address and the ip address (or ip address pool) assigned to the peer ■ ppp working parameter related command: ppp mp and ppp mp max-bind. Example # specify the vt interface that corresponds to user 1 as 1, and configu...

  • Page 523

    523 parameter seconds: period of negotiation timeout in seconds. In ppp negotiation, if the local device fails to receive a response from the peer during this period of time, ppp will resend the last packet. This period ranges from 1 to 10 seconds. Description use the ppp timer negotiate command to ...

  • Page 524

    524 c hapter 31: ppp and mp c onfiguration c ommands example # configure interface serial 1/0 to allocate ip address 10.0.0.1 to its peer device. System-view [sysname] interface serial 1/0 [sysname-serial1/0] remote address 10.0.0.1 timer hold syntax timer hold seconds undo timer hold view interface...

  • Page 525: Ppp L

    32 ppp l ink e fficiency m echanism c onfiguration c ommands display ppp compression iphc rtp syntax display ppp compression iphc rtp [ interface-type interface-number ] view any view parameter interface-type interface-number: specifies an interface by its type and number. Description use the displa...

  • Page 526

    526 c hapter 32: ppp l ink e fficiency m echanism c onfiguration c ommands ■ when iphc tcp header compression is applied on an mp link, the compression is performed on the va (virtual access) interfaces. In this case, you can check the compression information on mp templates, such as vt or dialer. ■...

  • Page 527

    527 parameter none description use the ip tcp vjcompress command to enable a ppp interface to compress the vj tcp header. Use the undo ip tcp vjcompress command to disable the ppp interface to compress the vj tcp header. By default, the vj tcp header compression is disabled on ppp interfaces. If a p...

  • Page 528

    528 c hapter 32: ppp l ink e fficiency m echanism c onfiguration c ommands ■ if the configuration is applied on a mp bundle, you need to shut down and then bring up all the member interfaces of the mp bundle for the configuration to take effect. Related command: ppp compression iphc rtp-connections,...

  • Page 529

    529 ppp compression iphc tcp-connections syntax ppp compression iphc tcp-connections number undo ppp compression iphc tcp-connections view interface view parameter number: the maximum connection number of tcp header compression. The value ranges from 3 to 256. Description use the ppp compression iph...

  • Page 530

    530 c hapter 32: ppp l ink e fficiency m echanism c onfiguration c ommands use the undo ppp compression stac-lzs command to disable stac-lzs compression on the current interface. By default, this compression is disabled. Stac-lzs compression is supported on the current version of system. You can con...

  • Page 531

    531 system-view [sysname] interface virtual-template 1 [sysname-virtual-template1] ppp mp lfi ppp mp lfi delay-per-frag syntax ppp mp lfi delay-per-frag time undo ppp mp lfi delay-per-frag view virtual template interface view, mp-group interface view, dialer interface view parameter time: maximum ti...

  • Page 532

    532 c hapter 32: ppp l ink e fficiency m echanism c onfiguration c ommands.

  • Page 534

    534 c hapter 33: ppp o e s erver c onfiguration c ommands pppoe-server bind syntax pppoe-server bind virtual-template number undo pppoe-server bind view interface view parameter number: number of the virtual-template interface, in the range 0 to 1023. Description use the pppoe-server bind command to...

  • Page 535

    535 use the undo pppoe-server log-information off command to enable the function. By default, the pppoe server displays the ppp log information. Displaying too much log information can affect the performance of the device and can be a nuisance to user during configuration. You can use this command t...

  • Page 536

    536 c hapter 33: ppp o e s erver c onfiguration c ommands description use the pppoe-server max-sessions remote-mac command to set the maximum number of pppoe sessions that can be established by the system with regard to a peer mac address. Use the undo pppoe-server max-sessions remote-mac command to...

  • Page 537

    537 virtual-template number: specifies a virtual template interface. Description use the reset pppoe-server command to terminate a pppoe session on the server side. Example # terminate the session established on virtual template interface 1 on the server side. Reset pppoe-server virtual-template 1.

  • Page 538

    538 c hapter 33: ppp o e s erver c onfiguration c ommands.

  • Page 540

    540 c hapter 34: ppp o e c lient c onfiguration c ommands 1 164 6126 0 83 1069 0 2 304 9886 0 156 2142 0 pppoe-client dial-bundle-number syntax pppoe-client dial-bundle-number number [ no-hostuniq ] [ idle-timeout seconds [ queue-length packets ] ] undo pppoe-client dial-bundle-number number view et...

  • Page 541

    541 ethernet interface, this dialer bundle can also not be added to the ethernet interface used by pppoe client. When pppoe session works in permanent online mode, and the physical lines go up, the device will immediately initiate pppoe call to establish pppoe session. This pppoe connection will exi...

  • Page 542

    542 c hapter 34: ppp o e c lient c onfiguration c ommands n the difference between the reset pppoe-client command and the undo pppoe-client command lies in: the former only temporarily terminates a pppoe session, while the latter permanently deletes a pppoe session. Example # clear all pppoe session...

  • Page 544

    544 c hapter 35: ppp d ebugging c ommands ipv6cp: ipv6 control protocol (ipv6cp) debugging. Ipx: ipx debugging. Ipxcp: ipx control protocol (ipxcp) debugging. Lcp: ppp link control protocol (ccp) debugging. Lqc: ppp link quality control (lqc) debugging. Mp: mp debugging. Mpls-multicast: mpls multica...

  • Page 545

    545 timeout(t0+,t0-) a timeout event occurred. T0+ indicates that the restart counter is greater than 0; thus, retransmission is required. T0- indicates that the restart counter is less than 0; thus, retransmission is not needed. Receive-configure-request(rcr+,rcr-) a configure-request packet was re...

  • Page 546

    546 c hapter 35: ppp d ebugging c ommands examples # two devices are connected using serial interfaces. Enable ppp on the two interfaces. Ppp negotiation starts between them. Enable ppp debugging. *0.784906 sysname ppp/8/debug2: ppp event: serial2/0 lcp open event state initial // on interface seria...

  • Page 547

    547 (the tlv length is four bytes and the desired mrru is 05dc); and the endpoint discriminator of mp (the tlv length is 9 bytes, and the value is 01fa4d432c8451.).

  • Page 548

    548 c hapter 35: ppp d ebugging c ommands.

  • Page 549: Ridging

    36 b ridging c onfiguration c ommands bridge aging-time syntax bridge aging-time seconds undo bridge aging-time view system view parameters seconds: aging time of dynamic bridge table entries, in seconds, with an effective range of 10 to 1000000. Description use the bridge aging-time command to conf...

  • Page 551

    551 description use the bridge enable command to enable the bridging functionality. Use the undo bridge enable command to disable the bridging functionality. By default, bridging is disabled. N other related configurations can take effect only if the bridging and bridge set features are enabled. Thi...

  • Page 552

    552 c hapter 36: b ridging c onfiguration c ommands deny: discards frames whose source address or destination address is the specified address on all interfaces or the specified interface. Permit: forwards frames whose source address or destination address is the specified address on all interfaces ...

  • Page 553

    553 bridge routing-enable syntax bridge routing-enable undo bridge routing-enable view system view parameters none description use the bridge routing-enable command to enable bridge routing. Use the undo bridge routing-enable command to disable bridge routing. By default, bridge routing is disabled....

  • Page 554

    554 c hapter 36: b ridging c onfiguration c ommands promiscuous operation mode, an ethernet interface forwards all correct frames, without filtering any mac address. ■ bridging is possible only between interfaces in the same bridge set. As shown above, after being added into bridge set 1, ethernet1/...

  • Page 555

    555 display bridge information syntax display bridge information [ bridge-set bridge-set ] view any view parameters bridge-set: bridge set number, an integer in the range of 1 to 255. Description use the display bridge information command to view the information about the specified bridge set or all...

  • Page 557

    557 0 eth2, 0 snap, 0 dlsw, 0 other, 0 vlan; send way: 0 broadcast, 0 fast, 0 other discard: 0 by import state, 0 for local frame , 0 by mac table, 0 by import filter, 0 by outport filter, 0 by ip filter , 0 other display interface bridge-template syntax display interface bridge-template [ interface...

  • Page 558

    558 c hapter 36: b ridging c onfiguration c ommands display interface bridge-template 1 bridge-template1 current state :up line protocol current state :up description : bridge-template1 interface the maximum transmit unit is 1500 internet address is 2.0.0.1/30 ip sending frames’ format is pktfmt_eth...

  • Page 559

    559 broadcast: specifies to allow bridging of broadcasts over this fr-to-bridging mapping. Description use the fr map bridge command to create an fr-to-bridging mapping on the specified virtual circuit. Use the undo fr map bridge command to remove an fr-to-bridging mapping. By default, no fr-to-brid...

  • Page 560

    560 c hapter 36: b ridging c onfiguration c ommands mac-address (bridge-template interface view) syntax mac-address mac-address undo mac-address view bridge-template interface view parameters mac-address: mac address, in the format of h-h-h description use the mac-address command to configure a mac ...

  • Page 561

    561 by default, bridging over a pvc is disabled. If you configure both the map bridge virtual-ethernet and map bridge-group commands, only the map bridge virtual-ethernet takes effect. Example # enable bridging over pvc 32/102. System-view [sysname] interface atm 1/0 [sysname-atm1/0] pvc 32/102 [sys...

  • Page 562

    562 c hapter 36: b ridging c onfiguration c ommands example # clear the traffic statistics information about bridge set 1. Reset bridge traffic bridge-set 1 x25 map bridge syntax x25 map bridge x121-address x.121-address broadcast undo x25 map bridge x121-address x.121-address view interface view pa...

  • Page 564

    564 c hapter 37: isdn c onfiguration c ommands display isdn active-channel syntax display isdn active-channel [ interface interface-type interface-number ] view any view parameter interface-type interface-number: specifies an interface by its type and number. Description use the display isdn active-...

  • Page 565

    565 description use the display isdn call-info command to view the current state of isdn interfaces. If no interface has been specified, the system will display the current states of all the isdn interfaces. Executing this command will output the state of each layer of the isdn protocol on one or al...

  • Page 566

    566 c hapter 37: isdn c onfiguration c ommands display isdn call-record syntax display isdn call-record [ interface interface-type interface-number ] view any view parameter interface-type interface-number: specifies an interface by its type and number. Description use the display isdn call-record c...

  • Page 568

    568 c hapter 37: isdn c onfiguration c ommands t321 30 t322 4 display isdn spid syntax display isdn spid [ interface interface-type interface-number ] view any view parameter interface-type interface-number: specifies an interface by its type and number. Description use the display isdn spid command...

  • Page 569

    569 spid timer: 30 seconds spid resend: 1 times isdn bch-local-manage syntax isdn bch-local-manage [ exclusive ] undo isdn bch-local-manage view isdn interface view parameter exclusive: exclusive local management mode for isdn b channels. When the b channel indicated by the exchange is inconsistent ...

  • Page 570

    570 c hapter 37: isdn c onfiguration c ommands the router selected for a call is different from the one indicated by the exchange, the one indicated by the exchange is used for communication. Configured with the isdn bch-local-manage exclusive command, the router operates in exclusive local b-channe...

  • Page 571

    571 parameter caller-number: caller number that an incoming isdn call can carry, which is a character string of 1 to 24 characters. Description use the isdn caller-number command to configure the range of the numbers that the router can receive. Use the undo isdn caller-number command to delete the ...

  • Page 572

    572 c hapter 37: isdn c onfiguration c ommands parameter check-index: called number or subaddress checking index, which is in the range of 1 to 3. Called-party-number: called number, a string of 1 to 20 digits. Subaddress: subaddress, which is a string of digits and/or case-insensitive english lette...

  • Page 573

    573 example # enable isdn call checking and set the time to launch isdn call checking to 08:30. System-view [sysname] isdn check-time 8:30 isdn crlength syntax isdn crlength call-reference-length undo isdn crlength view isdn interface view parameter call-reference-length: isdn call reference length,...

  • Page 574

    574 c hapter 37: isdn c onfiguration c ommands undo isdn ignore connect-ack view isdn interface view parameter none description use the isdn ignore connect-ack command to configure the router to switch the isdn protocol state to active to start the data and voice service communications after sending...

  • Page 575

    575 by default, hlc information element is carried in setup messages when placing voice calls. N ■ in the event that the router is communicating with an isdn exchange, its settings must be the same as those on the exchange. ■ you are not allowed to configure this command on an isdn interface if ther...

  • Page 576

    576 c hapter 37: isdn c onfiguration c ommands example # disable isdn to carry the llc information element in the setup messages for the voice calls placed on the interface bri 1/0. System-view [sysname] interface bri 1/0 [sysname-bri1/0] isdn ignore llc isdn ignore sending-complete syntax isdn igno...

  • Page 577

    577 executing the shutdown command, configure the command, and then enable the interface by executing the undo shutdown command. The operations, however, will lead to the disconnection of the call existing on the interface. You can configure this command on an interface only when the isdn protocol r...

  • Page 578

    578 c hapter 37: isdn c onfiguration c ommands description use the isdn l3-timer command to configure the duration of an isdn protocol l3 timer. Use the undo isdn l3-timer command to restore the default duration of the isdn l3 timer on the interface. You can view the default durations of the l3 time...

  • Page 579

    579 reserved. The following table lists the possible number types and code schemes. For more information, see the related protocol reference manual. Table 100 types and code schemes of isdn numbers protocol field (bit) value definition type code scheme 8 7 6 5 4 3 2 1 type code scheme 8 7 6 5 4 3 2 ...

  • Page 580

    580 c hapter 37: isdn c onfiguration c ommands 1 1 0 abbreviated number 1 1 1 reserved for extension 0 0 0 0 unknown 0 0 0 1 isdn/telephony numbering plan (recommendation e.164) 0 0 1 1 data numbering plan (recommendation x.121) 0 1 0 0 telex numbering plan (recommendation f.69) 1 0 0 0 national sta...

  • Page 581

    581 n the undefined bits in all the protocols are reserved for other purposes. Calling: the specified number property is for calling numbers. Called: the specified number property is for called numbers. In: the specified number property is for calling numbers and called numbers in incoming isdn call...

  • Page 582

    582 c hapter 37: isdn c onfiguration c ommands example # on interface bri 1/0, set both number type and code scheme of calling numbers in incoming isdn calls to unknown. System-view [sysname] interface bri 1/0 [sysname-bri1/0] isdn number-property 0 calling in # on interface bri 1/0, set both number...

  • Page 583

    583 parameter digits: maximum number of digits that can be sent each time in overlap-sending mode, in the range 1 to 15. The default is 10. Description use the isdn overlap-sending command to set the system to send the called number information in the overlap mode on the isdn interface. Use the undo...

  • Page 584

    584 c hapter 37: isdn c onfiguration c ommands example # configure the slide window size on the interface ce1/pri 1/0 to 10. System-view [sysname] controller e1 1/0 [sysname-e1 1/0] using ce1 [sysname-e1 1/0] quit [sysname]interface serial 1/0:15 [sysname-serial1/0:15] isdn pri-slipwnd-size 10 isdn ...

  • Page 585

    585 by default, both bri and pri interfaces run isdn protocol dss1. You are allowed to configure: ■ ansi isdn on bri and t1 pri interfaces; ■ at&t isdn on t1 pri interfaces; ■ dss1 isdn on bri, e1 pri, and t1 pri interfaces; ■ etsi isdn on bri, e1 pri, and t1 pri interfaces; ■ ni (national isdn) on ...

  • Page 586

    586 c hapter 37: isdn c onfiguration c ommands system-view [sysname] interface bri 2/0 [sysname-bri2/0] isdn q921-permanent isdn send-restart syntax isdn send-restart undo isdn send-restart view system view parameter none description use the isdn send-restart command to enable pri interfaces to acti...

  • Page 587

    587 by default, a bri interface does not originate a spid negotiation request unless triggered by a call. This command applies only on the bri interface running the ni protocol. Example # manually trigger a new spid negotiation request on the interface bri 1/0. System-view [sysname] interface bri 1/...

  • Page 588

    588 c hapter 37: isdn c onfiguration c ommands view isdn bri interface view parameter seconds: duration of the spid timer, which is in the range of 1 to 255 seconds, and defaults to 30 seconds. Description use the isdn spid timer command to set the duration of the timer tspid for an ni-compliant bri...

  • Page 589

    589 generally, as for the bri interface adopting the isdn ni protocol, you need to negotiate or initialize spid before originate a call. During negotiation, spcs may send multiple spids and carry the service types supported by the spid, therefore, the router needs to choose a proper spid according t...

  • Page 590

    590 c hapter 37: isdn c onfiguration c ommands undo isdn spid1 view isdn bri interface view parameter spid: string of 1 to 20 digits. Ldn: local dialing number, a string of 1 to 30 digits. Description use the isdn spid1 command to configure spid information for the b1 channel on the ni-compliant bri...

  • Page 591

    591 parameter spid: string of 1 to 20 digits. Ldn: local dialing number, a string of 1 to 30 digits. Description use the isdn spid2 command to configure spid information for the b1 channel on an ni-compliant bri interface. Use the undo isdn spid2 command to remove the spid information of the b1 chan...

  • Page 592

    592 c hapter 37: isdn c onfiguration c ommands start: starts counting. Stop: stops counting. Description use the isdn statistics command to have the system make statistics on the information received and transmitted at an isdn interface. By default, no statistics is made on the information transmitt...

  • Page 593

    593 undo isdn two-tei view bri interface view parameter none description use the isdn two-tei command to have the router requests the connected switch for a new tei value before calling for a b channel. Use the undo isdn two-tei command to restore the default tei handling practice on the bri interfa...

  • Page 594

    594 c hapter 37: isdn c onfiguration c ommands ■ after you specify a bsv interface operating on the network side to be in permanent active state on physical layer using the permanent-active command, no deactivating request is sent to physical layer. In this case, the interface remains in the active ...

  • Page 595

    595 system-view [sysname] interface bri 2/0 [sysname-bri2/0] isdn protocol-mode network [sysname-bri2/0] power-source shutdown syntax shutdown undo shutdown view isdn interface view parameters none description use the shutdown command to shut down an isdn interface. Use the undo shutdown command to ...

  • Page 596

    596 c hapter 37: isdn c onfiguration c ommands.

  • Page 597: Mstp C

    38 mstp c onfiguration c ommands active region-configuration syntax active region-configuration view mst region view parameters none description use the active region-configuration command to activate your mst region configuration. When you carry out this command, mstp will replace the currently run...

  • Page 598

    598 c hapter 38: mstp c onfiguration c ommands mapping table and the same mstp revision level setting. A device will not be in a different region if it is different in any of these three settings. You can view all the mst region-related configuration information by using this command and determine t...

  • Page 599

    599 based on the mstp status information and statistics information, you can analyze and maintain the network topology or check whether mstp is working normally. Note that: ■ if you do not specify any mst instance id or port list, this command will display the mstp information on all ports. The disp...

  • Page 600

    600 c hapter 38: mstp c onfiguration c ommands display stp instance 0 interface ethernet 1/1 to ethernet 1/4 gigabitethernet 1/1 to gigabitethernet 1/4 brief mstid port role stp state protection 0 ethernet1/1 alte discarding loop 0 ethernet1/2 desi forwarding none 0 ethernet1/3 desi forwarding none ...

  • Page 601

    601 display stp down-port syntax display stp down-port view any view parameters none description use the display stp down-port command to view the information about ports blocked by stp protection actions. These actions include: ■ bpdu attack guard action ■ mstp bpdu format compatibility protection ...

  • Page 602

    602 c hapter 38: mstp c onfiguration c ommands parameters instance instance-id: displays the historic port role calculation information of a particular spanning tree instance. The minimum value of instance-id is 0, representing the common internal spanning tree (cist), and the maximum value of insta...

  • Page 603

    603 description use the display stp region-configuration command to view the currently effective configuration information of the mst region, including the region name, revision level, and user-configured vlan-to-instance mappings. Related commands: stp region-configuration. Examples # view the curr...

  • Page 604

    604 c hapter 38: mstp c onfiguration c ommands display stp tc syntax display stp [ instance instance-id ] tc view any view parameters instance instance-id: displays the statistics of tc bpdus (also known as tcn bpdus) received and sent by all ports in a particular spanning tree instance. The minimum...

  • Page 605

    605 instance syntax instance instance-id vlan vlan-list undo instance instance-id [ vlan vlan-list ] view mst region view parameters instance-id: mst instance id, in the range of 0 to 15. Vlan-list: vlan list. You can specify multiple vlans or vlan ranges by providing this argument in the form of vl...

  • Page 606

    606 c hapter 38: mstp c onfiguration c ommands parameters name: name of the mst regions, a string of 1 to 32 characters. Description use the region-name command to configure the mst region name of your device. Use the undo region-name command to restore the mst region name to the default setting. By...

  • Page 607

    607 revision-level syntax revision-level level undo revision-level view mst region view parameters level: mstp revision level, in the range of 0 to 65535. The system default is 0. Description use the region-level command to configure the mstp revision level of your device. Use the undo region-level ...

  • Page 608

    608 c hapter 38: mstp c onfiguration c ommands ■ configured in system view, the setting is effective for the device globally; configured in ethernet interface view, the setting is effective on the current port only; configured in port group view, the setting is effective on all the ports in the port...

  • Page 609

    609 system-view [sysname] stp bpdu-protection stp bridge-diameter syntax stp bridge-diameter bridge-number undo stp bridge-diameter view system view parameters bridge-number: specifies the switched network diameter, in the range of 2 to 7. Description use the stp bridge-diameter command to specify t...

  • Page 610

    610 c hapter 38: mstp c onfiguration c ommands dot1s: configures the port(s) to receive and send only standard-format (802.1s-compliant) mstp bpdus. Legacy: configures the port(s) to receive and send only compatible-format mstp bpdus. Description use the stp compliance command to configure the mode ...

  • Page 611

    611 use the undo stp config-digest-snooping command to disable digest snooping. The feature is disabled by default. Notice that: ■ you need to enable this feature both globally and on ports connected to other vendors’ devices to make it take effect. It is recommended to enable the feature on all ass...

  • Page 612

    612 c hapter 38: mstp c onfiguration c ommands ■ configured in ethernet interface view, the setting is effective on the current port only; configured in port group view, the setting is effective on all the ports in the port group. ■ if you set instance-id to 0, you are setting the path cost of the p...

  • Page 613

    613 ■ normally, configuration bpdus from other devices cannot reach an edge port because it does not connect to any other device. Before the bpdu guard function is enabled, if a port receives a configuration bpdu, the port is working actually as a non-edge port even if you have configured in as an e...

  • Page 614

    614 c hapter 38: mstp c onfiguration c ommands description use the stp max-hops command to set the maximum hops of the mst region on the device. Use the undo stp max-hops command to restore the maximum hops to the default setting. By default, the maximum hops of an mst region is 20. In the cist and ...

  • Page 616

    616 c hapter 38: mstp c onfiguration c ommands by default, no agreement check is disabled. N the no agreement check feature can take effect only on the root port or alternate port. Examples # enable no agreement check on ethernet 1/1. System-view [sysname] interface ethernet 1/1 [sysname-ethernet1/1...

  • Page 617

    617 in the calculation of the path cost value of an aggregated link, 802.1d-1998 does not take into account the number of ports in the aggregated link. Whereas, 802.1t takes the number of ports in the aggregated link into account. The calculation formula is: path cost = 200,000,000/link speed (in 10...

  • Page 618

    618 c hapter 38: mstp c onfiguration c ommands parameters auto: specifies mstp detects automatically whether the current port connects to a point-to-point link. Force-false: specifies the current port to connect to a non-point-to-point link. Force-true: specifies the current port to connect to a poi...

  • Page 619

    619 instance instance-id: enables output of port state transition information for the specified instance. The minimum value of instance-id is 0, representing the cist, and the maximum value of this argument depends on the specific device model. Description use the stp port-log command to enable outp...

  • Page 620

    620 c hapter 38: mstp c onfiguration c ommands ■ if you set instance-id to 0, you are setting the priority of the port in the cist. The priority of a port can affect the role selection of the port in the specified mst instance. ■ setting different priorities for the same port in different mst instan...

  • Page 621

    621 stp region-configuration syntax stp region-configuration undo stp region-configuration view system view parameters none description use the stp region-configuration command to enter mst region view. Use the undo stp region-configuration command to restore the default mst region configurations. B...

  • Page 622

    622 c hapter 38: mstp c onfiguration c ommands ■ if you do not provide instance instance-id, your configuration will take effect in the cist instance only. ■ there is only one root bridge in effect in a spanning tree instance. If two or more devices have been designated to be root bridges of the sam...

  • Page 623

    623 stp root-protection syntax stp root-protection undo stp root-protection view ethernet interface view, port group view parameters none description use the stp root-protection command to enable the root guard function for a port or a group of ports. Use the undo stp root-protection command to rest...

  • Page 624

    624 c hapter 38: mstp c onfiguration c ommands stp tc-protection threshold syntax stp tc-protection threshold number undo stp tc-protection threshold view system view parameters number: maximum number of times the device deletes forwarding address entries within a certain period of time immediately ...

  • Page 625

    625 forwarding state, and must wait a certain period of time before it transitions from one state to another to keep synchronized with the remote device during state transition. The forward delay timer set on the root bridge determines the time interval of state transition. If the current device is ...

  • Page 626

    626 c hapter 38: mstp c onfiguration c ommands interval of the hello time set on the device, while secondary root bridges use the hello time set on the root bridge. The setting of the hello time, forward delay and max age timers must meet the following formulae. ■ 2 × (forward delay - 1 second) ƒ ma...

  • Page 627

    627 the setting of the hello time, forward delay and max age timers must meet the following formulae. ■ 2 × (forward delay - 1 second) ƒ max age ■ max age ƒ 2 × (hello time + 1 second) mstp can work effectively on the entire network only when the above-mentioned conditions are met; otherwise, networ...

  • Page 628

    628 c hapter 38: mstp c onfiguration c ommands system-view [sysname] stp timer-factor 7 stp transmit-limit syntax stp transmit-limit packet-number undo stp transmit-limit view ethernet interface view, port group view parameters packet-number: maximum number of mstp packets that the port can send wit...

  • Page 629

    629 description use the vlan-mapping modulo command to map vlans in the current mst region to mst instances according to the specified modulo value. By default, all vlans are mapped to the cist (instance 0). You cannot map the same vlan to different mst instances. If you map a vlan that has been map...

  • Page 630

    630 c hapter 38: mstp c onfiguration c ommands.

  • Page 631: Vlan C

    39 vlan c onfiguration c ommands description syntax description text undo description view vlan view/vlan interface view parameter text: a string that describes the current vlan or vlan interface (space can be included), case sensitive. ■ for vlan, this is a string of 1 to 32 characters. ■ for vlan ...

  • Page 632

    632 c hapter 39: vlan c onfiguration c ommands view any view parameter vlan-interface-id: vlan interface id. Description use the display interface vlan-interface command to display the relevant information of a vlan interface. Execution of the command with the parameter included will display the inf...

  • Page 634

    634 c hapter 39: vlan c onfiguration c ommands description: vlan 0003 tagged ports: none untagged ports: none interface vlan-interface syntax interface vlan-interface vlan-interface-id undo interface vlan-interface vlan-interface-id view system view parameter vlan-interface-id: vlan interface id, in...

  • Page 636

    636 c hapter 39: vlan c onfiguration c ommands shutdown syntax shutdown undo shutdown view vlan interface view parameter none description use the shutdown command to shut down a vlan interface. Use the undo shutdown command to bring up a vlan interface. By default, the vlan interface is down if all ...

  • Page 637

    637 if a specified vlan exists, the command places you into its view. Use the undo vlan command to delete specified vlan(s). Note that: ■ as the default vlan, vlan 1 cannot be created or removed. ■ you cannot create/remove reserved vlans that are reserved for specific function implementation. ■ dyna...

  • Page 638

    638 c hapter 39: vlan c onfiguration c ommands.

  • Page 639: Ort

    40 p ort -b ased vlan c onfiguration c ommands port syntax port interface-list undo port interface-list view vlan interface view parameter interface interface-list: ethernet interface list, in the format of { interface-type interface-number [ to interface-type interface-number ] }&, where & means th...

  • Page 640

    640 c hapter 40: p ort -b ased vlan c onfiguration c ommands description use the port access vlan command to add the current access port to a specified vlan. Use the undo port access vlan command to add the current access port to the default vlan. Configured in ethernet interface view, the setting i...

  • Page 641

    641 example # configure the default vlan id for the hybrid port ethernet 1/0 to be 100. System-view [sysname] vlan 100 [sysname-vlan100] quit [sysname] interface ethernet 1/0 [sysname-ethernet1/0] port link-type hybrid [sysname-ethernet1/0] port hybrid pvid vlan 100 port hybrid vlan syntax port hybr...

  • Page 643

    643 use the undo port trunk permit vlan command to remove the trunk port from a specified vlan, a selection of vlans, or all vlans. The trunk port can allow multiple vlans to pass. Repetitive execution of the port trunk permit vlan command will yield a set of vlan-id-list, to which the trunk port be...

  • Page 644

    644 c hapter 40: p ort -b ased vlan c onfiguration c ommands refer to “link aggregation configuration commands” on page 473 for information about port groups. You must configure the same default vlan id for the trunk port of both the local device and remote device. Otherwise, the packets cannot be t...

  • Page 645: Oice

    41 v oice vlan c onfiguration c ommands n ■ voice vlan automatic mode and secure mode are not supported on msr 20 series routers. ■ voice vlan automatic mode and secure mode are not supported on sic-4fsw and dsic-9fsw modules. ■ voice vlan automatic mode and secure mode are supported on 16fsw and 24...

  • Page 646

    646 c hapter 41: v oice vlan c onfiguration c ommands display voice vlan state syntax display voice vlan state view any view parameter none description use the display voice vlan state command to display the voice vlan configuration. Related command: voice vlan enable. Example # display the voice vl...

  • Page 647

    647 undo voice vlan enable view system view parameter vlan-id: id of the vlan to be enabled with the voice vlan feature, in the range of 2 to 4,094. Description use the voice vlan command to enable the voice vlan feature globally. Use the undo voice vlan enable command to disable the voice vlan feat...

  • Page 648

    648 c hapter 41: v oice vlan c onfiguration c ommands related command: display voice vlan state. Example # configure the aging time of the voice vlan as 100 minutes. System-view [sysname] voice vlan aging 100 voice vlan enable syntax voice vlan enable undo voice vlan enable view ethernet interface v...

  • Page 649

    649 mask oui-mask: valid length of the oui address, represented in mask, in the format of h-h-h, from left to right are consecutive fs and 0s, for example, ffff-f000-0000. Description text: a case sensitive string that describes the oui address, in the range of 1 to 30 characters. Oui: deletes an ou...

  • Page 650

    650 c hapter 41: v oice vlan c onfiguration c ommands 00e0-7500-0000 ffff-ff00-0000 polycom phone 00e0-bb00-0000 ffff-ff00-0000 3com phone 1234-1200-0000 ffff-ff00-0000 phonea # disable voice packets of phone a from passing through the voice vlan. System-view [sysname] undo voice vlan mac-address 12...

  • Page 651

    651 use the undo voice vlan security enable command to disable the security mode for voice vlan. By default, the security mode of voice vlan is enabled. N the voice vlan security enable and undo voice vlan security enable commands take effect only after the voice vlan attribute is enabled globally. ...

  • Page 652

    652 c hapter 41: v oice vlan c onfiguration c ommands.

  • Page 653: Ort

    42 p ort i solation c onfiguration c ommands display port-isolate group syntax display port-isolate group view any view parameter none description use the display port-isolate group command to display information of the default isolation group (group 1). Example # display information of the default ...

  • Page 654

    654 c hapter 42: p ort i solation c onfiguration c ommands description use the port-isolate enable command to add the current port to the default isolation group (group 1) as an ordinary port. Use the undo port-isolate enable command to remove the port from the isolation group. Configured in etherne...

  • Page 655: Ynamic

    43 d ynamic r oute b ackup c onfiguration c ommands n refer to “dcc configuration commands” on page 315 for more information about dial control center (dcc). Standby routing-group syntax standby routing-group group-number undo standby routing-group group-number view interface view parameter group-nu...

  • Page 656

    656 c hapter 43: d ynamic r oute b ackup c onfiguration c ommands ip ip-address: ip address of the network segment to be monitored. Mask: network mask. Mask-length: network mask length, ranging from 0 to 32. Description use the standby routing-rule command to create a dynamic route backup group and ...

  • Page 657: Ogical

    44 l ogical i nterface c onfiguration c ommands n this section introduces basic configurations about logical interfaces. For the configurations about the data link layer, the network layer and some special features, refer to the relevant sections in chapter 1 through chapter 37 and chapter 46 throug...

  • Page 658

    658 c hapter 44: l ogical i nterface c onfiguration c ommands parameter number: loopback interface number, which can be the number of any existing loopback interface. Description use the display interface loopback command to view the relevant information about the existing loopback interfaces. If yo...

  • Page 659

    659 description use the display interface mfr command to view the state information about the existing mfr interfaces. If you do not provide an mfr interface number, this command will display the state information about all the existing mfr interfaces. Related command: interface mfr. Example # view ...

  • Page 660

    660 c hapter 44: l ogical i nterface c onfiguration c ommands display interface mp-group syntax display interface mp-group [ mp-number ] view any view parameter mp-number: multilink point to point protocol group (mp-group) interface number, which can be the number of any existing mp-group interface....

  • Page 661

    661 the “hold timer” field of the display interface mp-group command represents the hold time of the link state (up/down) of the current interface, and the “lcp initial” field indicates that the link control protocol (lcp) is initialized. Refer to table 117 for the description on the other fields. D...

  • Page 662

    662 c hapter 44: l ogical i nterface c onfiguration c ommands related command: interface virtual-ethernet. Example # view the state information about ve 12. Display interface virtual-ethernet 12 virtual-ethernet2 current state: up line protocol current state: up description: virtual-ethernet2 interf...

  • Page 663

    663 line protocol current state: up (spoofing) description: virtual-template1 interface the maximum transmit unit is 1500, hold timer is 10(sec) internet protocol processing : disabled link layer protocol is ppp lcp initial physical is none output queue : (urgent queue : size/length/discards) 0/50/0...

  • Page 666

    666 c hapter 44: l ogical i nterface c onfiguration c ommands description use the interface ethernet command to create an ethernet sub-interface and enter the corresponding ethernet sub-interface view. Use the undo interface ethernet command to remove the specified ethernet sub-interface. By default...

  • Page 667

    667 parameter interface-number.Subnumber: interface number. The interface-number argument is the primary interface number, and the subnumber argument is the sub-interface number, ranging from 0 to 1023. Description use the interface mfr command to create an mfr interface or an mfr sub-interface and ...

  • Page 668

    668 c hapter 44: l ogical i nterface c onfiguration c ommands description use the interface null command to enter null interface view. Only one null interface (null 0) exists. Null 0 is always up, and cannot be brought down or removed. Related command: display interface null. Example # enter null 0 ...

  • Page 669

    669 use the undo interface virtual-template command to remove the specified vt. Before removing a vt, make sure that all the relevant va interfaces are removed and this virtual interface is not being used. Example # create vt 10. System-view [sysname] interface virtual-template 10 [sysname-virtual-t...

  • Page 670

    670 c hapter 44: l ogical i nterface c onfiguration c ommands.

  • Page 673

    673 description use the display controller cpos command to display information about cpos interfaces, such as state of e1/t1 channels, and alarms, and errors occurred to the regeneration section, multiplex section, and higher-order path. The following table lists possible error types in the displaye...

  • Page 674

    674 c hapter 45: cpos i nterface c onfiguration c ommands cpos4/0 ct1 3 is up frame-format esf, clock master, loopback not set (some information about t1 channels is omitted.) cpos4/0 ct1 83 is up frame-format esf, clock master, loopback not set cpos4/0 ct1 84 is up frame-format esf, clock master, l...

  • Page 675

    675 different from the display controller cpos command, this command can display the error and alarm information of lower-order paths and e1 frames. Example # display the status information of e1 channel 1 on interface cpos 1/0. Display controller cpos 1/0 e1 1 cpos1/0 current state : up description...

  • Page 676

    676 c hapter 45: cpos i nterface c onfiguration c ommands different from the display controller cpos command, this command can display the error and alarm information of lower-order paths and t1 frames. Example # display the status information of t1 channel 2 on interface cpos 4/0. Display controlle...

  • Page 677

    677 e1 channel-set syntax e1 e1-number channel-set set-number timeslot-list range undo e1 e1-number channel-set set-number view cpos interface view parameter e1-number: number of an e1 channel on the cpos interface, in the range 1 to 63. Set-number: channel set number, in the range 0 to 30. Timeslot...

  • Page 679

    679 description use the e1 set frame-format command to set the framing format of an e1 channel. Use the undo e1 set frame-format command to restore the default, that is, no-crc4. Example # set e1 channel 1 to use framing format crc4. System-view [sysname] controller cpos 1/0 [sysname-cpos1/0] e1 1 s...

  • Page 680

    680 c hapter 45: cpos i nterface c onfiguration c ommands e1 shutdown syntax e1 e1-number shutdown undo e1 e1-number shutdown view cpos interface view parameter e1-number: number of an e1 channel on the cpos interface, in the range 1 to 63. Description use the e1 shutdown command to shut down an e1 ...

  • Page 682

    682 c hapter 45: cpos i nterface c onfiguration c ommands parameter sdh: sets framing format to synchronous digital hierarchy (sdh). Sonet: sets framing format to synchronous optical network (sonet). Description use the frame-format command to configure framing on the cpos interface. Use the undo fr...

  • Page 683

    683 au-4: gets aug through au-4. Description use the multiplex mode command to set aug multiplexing mode. Use the undo multiplex mode command to restore the default, that is, au-4. Sdh provides two payload mapping/multiplexing solutions: ansi and etsi. ■ ansi uses the au-3 multiplexing scheme, where...

  • Page 686

    686 c hapter 45: cpos i nterface c onfiguration c ommands use the undo t1 set frame-format command to restore the default, that is, esf. Example # set the framing format of t1 channel 1 to sf. System-view [sysname] controller cpos 1/0 [sysname-cpos1/0] t1 1 set frame-format sf t1 set loopback syntax...

  • Page 687

    687 description use the t1 shutdown command to shut down a t1 channel. Use the undo t1 shutdown command to bring up a t1 channel. By default, t1 channels are enabled. Disabling a t1 channel disables the serial interfaces formed on it, if there is any. Example # shut down t1 channel 1. System-view [s...

  • Page 688

    688 c hapter 45: cpos i nterface c onfiguration c ommands.

  • Page 689: Arp C

    46 arp c onfiguration c ommands arp check enable syntax arp check enable undo arp check enable view system view parameter none description use the arp check enable command to enable arp entry check, preventing the device from learning multicast mac addresses. With this function enabled, the device c...

  • Page 690

    690 c hapter 46: arp c onfiguration c ommands description use the arp max-learning-num command to set the maximum number of dynamic arp entries that an interface can learn. Use the undo arp max-learning-num command to restore the default. Example # set the maximum number of dynamic arp entries that ...

  • Page 691

    691 related command: reset arp, display arp. Example # configure a static arp entry, with the ip address being 202.38.10.2, the mac address being 00e0-fc01-0000, and the outbound interface being ethernet 1/0 of vlan 10. System-view [sysname] arp static 202.38.10.2 00e0-fc01-0000 10 ethernet 1/0 arp ...

  • Page 696

    696 c hapter 46: arp c onfiguration c ommands.

  • Page 697: Ratuitous

    47 g ratuitous arp c onfiguration c ommands gratuitous-arp-sending enable syntax gratuitous-arp-sending enable undo gratuitous-arp-sending enable view system view parameter none description use the gratuitous-arp-sending enable command to enable a device to send gratuitous arp packets when receiving...

  • Page 698

    698 c hapter 47: g ratuitous arp c onfiguration c ommands by default, the function is disabled. Example # enable the gratuitous arp packet learning function. System-view [sysname] gratuitous-arp-learning enable.

  • Page 699: Arp S

    48 arp s ource s uppression c onfiguration c ommands arp source-suppression enable syntax arp source-suppression enable undo arp source-suppression enable view system view parameter none description use the arp source-suppression enable command to enable the arp source suppression function. Use the ...

  • Page 700

    700 c hapter 48: arp s ource s uppression c onfiguration c ommands description use the arp source-suppression limit command to set the maximum number of packets with the same source ip address but unresolvable destination ip addresses that a port can receive in five seconds. Use the undo arp source-...

  • Page 701: Uthorized

    49 a uthorized arp c onfiguration c ommands n this feature is supported on layer 3 ethernet interfaces only. Arp authorized enable syntax arp authorized enable undo arp authorized enable view layer 3 ethernet interface view parameter none description use the arp authorized enable command to enable a...

  • Page 702

    702 c hapter 49: a uthorized arp c onfiguration c ommands description use the arp authorized time-out command to configure the aging time for authorized arp entries. Use the undo arp authorized time-out command to restore the default. By default, the aging time for authorized arp entries is 1200 sec...

  • Page 703: Roxy

    50 p roxy arp c onfiguration c ommands proxy-arp enable syntax proxy-arp enable undo proxy-arp enable view vlan interface view/ethernet interface view parameter none description use the proxy-arp enable command to enable proxy arp. Use the undo proxy-arp enable command to disable proxy arp. By defau...

  • Page 704

    704 c hapter 50: p roxy arp c onfiguration c ommands related command: display local-proxy-arp. Example # enable local proxy arp on vlan-interface 2. System-view [sysname] interface vlan-interface 2 [sysname-vlan-interface2] local-proxy-arp enable display proxy-arp syntax display proxy-arp [ interfac...

  • Page 705: Dhcp S

    51 dhcp s erver c onfiguration c ommands n ■ the dhcp server configuration is supported only on layer 3 ethernet interfaces (or subinterfaces), virtual ethernet interfaces, vlan interfaces, serial interfaces, and loopback interfaces. The subaddress pool configuration is not supported on serial and l...

  • Page 706

    706 c hapter 51: dhcp s erver c onfiguration c ommands bootfile-name syntax bootfile-name bootfile-name undo bootfile-name view dhcp address pool view parameter bootfile-name: boot file name, a string of 1 to 63 characters. Description use the bootfile-name command to specify a bootfile name in the ...

  • Page 707

    707 dhcp select server global-pool syntax dhcp select server global-pool [ subaddress ] undo dhcp select server global-pool subaddress view interface view parameter subaddress: supports subaddress allocation. That is, the dhcp server and clients are on the same network segment, and the server alloca...

  • Page 708

    708 c hapter 51: dhcp s erver c onfiguration c ommands dhcp server forbidden-ip syntax dhcp server forbidden-ip low-ip-address [ high-ip-address ] undo dhcp server forbidden-ip low-ip-address [ high-ip-address ] view system view parameter low-ip-address: start ip address of the ip address range to b...

  • Page 709

    709 view system view parameter pool-name: global address pool name, which is a unique pool identifier, a string of 1 to 35 characters. Description use the dhcp server ip-pool command to create a dhcp address pool and enter its view. If the pool was created, you will directly enter its view. Use the ...

  • Page 710

    710 c hapter 51: dhcp s erver c onfiguration c ommands view system view parameter milliseconds: response timeout value for ping packets in milliseconds, in the range of 0 to 10,000. If the ping timeout time is set to 0, the dhcp server will not perform any ping collision detection. Description use t...

  • Page 711

    711 parameter none description use the dhcp update arp command to configure the dhcp server to support authorized arp. Use the undo dhcp update arp command to restore the default. By default, the dhcp server does not support authorized arp. Example # configure ethernet 1/0 to support authorized arp....

  • Page 712

    712 c hapter 51: dhcp s erver c onfiguration c ommands ip ip-address: displays the lease expiration information of a specified ip address. Pool [ pool-name ]: displays the lease expiration information of a specified address pool. The pool name is a string of 1 to 35 characters. If the pool name is n...

  • Page 713

    713 view any view parameter none description use the display dhcp server forbidden-ip command to display ip addresses excluded from dynamic allocation in dhcp address pool. Example # display ip addresses excluded from dynamic allocation in the dhcp address pool. Display dhcp server forbidden-ip ip r...

  • Page 714

    714 c hapter 51: dhcp s erver c onfiguration c ommands display dhcp server statistics syntax display dhcp server statistics view any view parameter none description use the display dhcp server statistics command to display the statistics of the dhcp server. Related command: reset dhcp server statist...

  • Page 717

    717 related command: dhcp server ip-pool. Example # specify the dns server address 10.1.1.254 in dhcp address pool 0. System-view [sysname] dhcp server ip-pool 0 [sysname-dhcp-pool-0] dns-list 10.1.1.254 domain-name syntax domain-name domain-name undo domain-name view dhcp address pool view paramete...

  • Page 718

    718 c hapter 51: dhcp s erver c onfiguration c ommands description use the expired command to specify the lease duration in a dhcp address pool. Use the undo expired command to restore the default lease duration in a dhcp address pool. The lease duration defaults to one day. Note that if the lease d...

  • Page 720

    720 c hapter 51: dhcp s erver c onfiguration c ommands m-node: mixed node, a combination of a b-node first and p-node second. An m-node client broadcasts the destination name, if there is no response, and then unicasts the destination name to the wins server to get the mapping. H-node: hybrid node, ...

  • Page 721

    721 related command: dhcp server ip-pool and dhcp server forbidden-ip. Example # specify 192.168.8.0/24 as the address range for dynamic allocation in dhcp address pool 0. System-view [sysname] dhcp server ip-pool 0 [sysname-dhcp-pool-0] network 192.168.8.0 mask 255.255.255.0 option syntax option co...

  • Page 723

    723 parameter none description use the reset dhcp server statistics command to clear the statistics of the dhcp server. Related command: display dhcp server statistics. Example # clear the statistics of the dhcp server. Reset dhcp server statistics static-bind client-identifier syntax static-bind cl...

  • Page 724

    724 c hapter 51: dhcp s erver c onfiguration c ommands system-view [sysname] dhcp server ip-pool 0 [sysname-dhcp-pool-0] static-bind ip-address 10.1.1.1 mask 255.255.255.0 [sysname-dhcp-pool-0] static-bind client-identifier aaaa-bbbb static-bind ip-address syntax static-bind ip-address ip-address [ ...

  • Page 725

    725 static-bind mac-address syntax static-bind mac-address mac-address undo static-bind mac-address view dhcp address pool view parameter mac-address: the mac address of a static binding, in the format h-h-h. Description use the static-bind mac-address command to specify the mac address of a static ...

  • Page 726

    726 c hapter 51: dhcp s erver c onfiguration c ommands use the undo tftp-server domain-name command to remove the tftp server name from a dhcp address pool. By default, no tftp server name is specified. Using the tftp-server domain-name command repeatedly will overwrite the previous configuration. E...

  • Page 727

    727 parameter as-ip ip-address: specifies ip address for the backup network calling processor. Fail-over ip-address dialer-string: specifies the failover ip address and dialer string. The dialer-string is a string of 1 to 39 characters, which can be 0 to 9, and “*”. Ncp-ip ip-address: specifies ip a...

  • Page 728

    728 c hapter 51: dhcp s erver c onfiguration c ommands.

  • Page 729: Dhcp R

    52 dhcp r elay a gent c onfiguration c ommands n ■ the dhcp relay agent configuration is supported only on the layer 3 ethernet interface (or subinterface), virtual ethernet interface, vlan interface, and serial interface. ■ dhcp snooping cannot be configured on the dhcp relay agent. Dhcp enable syn...

  • Page 730

    730 c hapter 52: dhcp r elay a gent c onfiguration c ommands description use the dhcp relay address-check enable command to enable ip address match check on the relay agent. Use the dhcp relay address-check disable command to disable ip address match check on the relay agent. By default, the functio...

  • Page 732

    732 c hapter 52: dhcp r elay a gent c onfiguration c ommands replace: specifies to forward messages containing option 82 after replacing the original option 82 with the option 82 padded in the specified padding format. Description use the dhcp relay information strategy command to configure dhcp rel...

  • Page 733

    733 interface interface-type interface-number: specifies a layer 3 interface connecting to the dhcp client. Interface-type interface-number specifies the interface type and interface number. All: specifies all entries of client ip-to-mac bindings to be removed. Dynamic: specifies entries of dynamic ...

  • Page 734

    734 c hapter 52: dhcp r elay a gent c onfiguration c ommands use the undo dhcp relay security tracker command to restore the default interval. The default handshake interval is auto, the value of 60 seconds divided by the number of binding entries. Example # set the handshake interval as 100 seconds...

  • Page 735

    735 use the undo dhcp relay server-group command to remove a dhcp server from a dhcp server group, if no ip ip-address is specified, all servers in the dhcp server group and the server group itself will be removed. By default, no dhcp server is specified for a dhcp server group. Note that: ■ the ip ...

  • Page 736

    736 c hapter 52: dhcp r elay a gent c onfiguration c ommands dhcp select relay syntax dhcp select relay undo dhcp select relay view interface view parameter none description use the dhcp select relay command to enable the relay agent on the current interface, specified or all interfaces. Upon receiv...

  • Page 738

    738 c hapter 52: dhcp r elay a gent c onfiguration c ommands display dhcp relay security ip address mac address type interface 10.1.1.1 00e0-0000-0001 static eth1/0 10.1.1.5 00e0-0000-0000 static vlan2 --- 2 dhcp-security item(s) found --- display dhcp relay security statistics syntax display dhcp r...

  • Page 739

    739 description use the display dhcp relay security tracker command to display the interval for refreshing dynamic bindings on the relay agent. Example # display the interval for refreshing dynamic bindings on the relay agent. [sysname] display dhcp relay security tracker current tracker interval : ...

  • Page 740

    740 c hapter 52: dhcp r elay a gent c onfiguration c ommands description use the display dhcp relay statistics command to display dhcp packet statistics related to a specified or all dhcp server groups. Note that if no parameter (server-group and all) is specified, all dhcp packet statistics on the ...

  • Page 741

    741 reset dhcp relay statistics syntax reset dhcp relay statistics [ server-group group-id ] view user view parameter server-group group-id: specifies a server group id in the range of 0 to 19 about which to remove statistics from the relay agent. Description use the reset dhcp relay statistics comm...

  • Page 742

    742 c hapter 52: dhcp r elay a gent c onfiguration c ommands.

  • Page 743: Dhcp C

    53 dhcp c lient c onfiguration c ommands n ■ the dhcp client configuration is supported only on the layer 3 ethernet interface (or subinterface) and vlan interface. ■ when multiple vlan interfaces having the same mac address use dhcp for ip address acquisition via a relay agent, the dhcp server cann...

  • Page 744

    744 c hapter 53: dhcp c lient c onfiguration c ommands dns server: 44.1.1.11 dns server: 44.1.1.12 domain name: ddd.Com boot server: 200.200.200.200 1.1.1.1 client id: 3030-3066-2e65-3234- 392e-3830-3438-2d56- 6c61-6e2d-696e-7465- 7266-6163-6531 t1 will timeout in 1 day 11 hours 58 minutes 52 second...

  • Page 745

    745 by default, an interface does not use dhcp for ip address acquisition. Note that: ■ if no parameter is specified, the client uses a character string comprised of the current interface name and mac address as its id for address acquisition. ■ the dhcp client sends a dhcp-release message for relea...

  • Page 746

    746 c hapter 53: dhcp c lient c onfiguration c ommands.

  • Page 747: Dhcp S

    54 dhcp s nooping c onfiguration c ommands dhcp-snooping syntax dhcp-snooping undo dhcp-snooping view system view parameter none description use the dhcp-snooping command to enable dhcp snooping. Use the undo dhcp-snooping command to disable dhcp snooping. With dhcp snooping disabled, all ports can ...

  • Page 748

    748 c hapter 54: dhcp s nooping c onfiguration c ommands all ports are untrusted by default. Related command: display dhcp-snooping trust. Example # set port ethernet 1/0 as trusted. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] dhcp-snooping trust display dhcp-snooping syntax d...

  • Page 749

    749 view any view parameter none description use the display dhcp-snooping trust command to display information about trusted ports. Related command: dhcp-snooping trust. Example # display information about trusted ports. Display dhcp-snooping trust dhcp snooping is enabled. Dhcp snooping trust beco...

  • Page 750

    750 c hapter 54: dhcp s nooping c onfiguration c ommands.

  • Page 751: Bootp C

    55 bootp c lient c onfiguration c ommands n ■ bootp client configuration can only be used on layer 3 ethernet interfaces (including sub-interfaces) and vlan interfaces. ■ if several vlan interfaces sharing the same mac address obtain ip addresses through a bootp relay agent, the bootp server cannot ...

  • Page 752

    752 c hapter 55: bootp c lient c onfiguration c ommands ip address bootp-alloc syntax ip address bootp-alloc undo ip address bootp-alloc view interface view parameter none description use the ip address bootp-alloc command to enable an interface to obtain an ip address through bootp. Use the undo ip...

  • Page 754

    754 c hapter 56: dhcp d ebugging c ommands broadcast flag: broadcastflag dhcp broadcast flag: 1 refers to broadcast, and 0 refers to unicast. Your ip address: youripaddress ip address that the dhcp server assigns to the client boot file name: bootfilename boot file name and path dhcp message type: d...

  • Page 755

    755 examples # configure dhcp server on the device, and enable all types of debugging for dhcp server. The dhcp client applies for ip address from the dhcp sever via a dhcp relay agent. Terminal debugging debugging dhcp server all *0.263828 sysname dhcps/7/dhcps_debug_common: checking for expired le...

  • Page 756

    756 c hapter 56: dhcp d ebugging c ommands // the dhcp server receives a response from a client at 22.0.0.1, which indicates the ip address is in use. *0.278406 sysname dhcps/7/dhcps_debug_common: dhcpserver: sending icmp echorequest to target ip: 22.0.0.2. // checking whether the ip address 22.0.0....

  • Page 757

    757 message type: reply hardware type: 1, hardware address length: 6 hops: 0, transaction id: 2294688324 seconds: 0, broadcast flag: 0 client ip address: 0.0.0.0 your ip address: 22.0.0.2 server ip address: 0.0.0.0 relay agent ip address: 22.0.0.1 client hardware address: 00e0-fc14-1601 server host ...

  • Page 758

    758 c hapter 56: dhcp d ebugging c ommands examples # the dhcp client obtains ip address from the dhcp server via a dhcp relay agent. Enable all types of debugging for the dhcp relay agent. Terminal debugging debugging dhcp relay all *0.230094 sysname dhcpr/7/dhcpr_debug_event: begin to deal with dh...

  • Page 759

    759 dhcp message type: dhcp discover *0.230094 sysname dhcpr/7/dhcpr_debug_relaypkt: pkt sent: send request interface vlan-interface22, dest ip: 11.0.0.1, chardaddr: 00e0.Fc14.1601, server-group: 0 // the dhcp relay agent received a dhcp-discover message from the dhcp client, and forwarded it to the...

  • Page 760

    760 c hapter 56: dhcp d ebugging c ommands hops: 0, transaction id: 2294688324 seconds: 0, broadcast flag: 1 client ip address: 0.0.0.0 your ip address: 22.0.0.2 server ip address: 0.0.0.0 relay agent ip address: 22.0.0.1 client hardware address: 00e0-fc14-1601 server host name: not configured, boot...

  • Page 761

    761 decode option 43: original data in option 43 of the received dhcp message type(dhcpmessagetype) dhcp message type, which can be: ■ dhcp offer ■ dhcp ack ■ dhcp nak mask(subnet mask ip) subnet mask assigned by the dhcp server lease(lease) lease assigned by the dhcp server (in seconds) t1Ôºàt1Ôºâ ...

  • Page 762

    762 c hapter 56: dhcp d ebugging c ommands examples # the dhcp client obtains ip address from the dhcp server via a dhcp relay agent. Enable all types of debugging for the dhcp client. Debugging dhcp client all terminal debugging system [sysname] interface vlan-interface 2 [sysname-vlan-interface2] ...

  • Page 763

    763 *0.110343 sysname dhcpc/7/dhcp_client: vlan-interface2: sending dhcpdiscover packet succeeded. *0.110343 sysname dhcpc/7/dhcp_client: vlan-interface2: fsm state transfer(init-->selecting) successfully. // the dhcp client sent the dhcp-discover message successfully, and the state of the dhcp clie...

  • Page 764

    764 c hapter 56: dhcp d ebugging c ommands // the dhcp client starts address conflict detection using arp. *0.111421 sysname dhcpc/7/dhcp_client: vlan-interface2: sending arp request for allocated address(22.0.0.2) succeeded. // arp message sent *0.111421 sysname dhcpc/7/dhcp_client: vlan-interface2...

  • Page 765: Dns C

    57 dns c onfiguration c ommands n this document only covers ipv4 dns configuration commands. For ipv6 dns configuration commands, refer to “ipv6 basics configuration commands” on page 829. Display dns domain syntax display dns domain [ dynamic ] view any view parameter dynamic: displays the domain n...

  • Page 766

    766 c hapter 57: dns c onfiguration c ommands parameter none description use the display dns dynamic-host command to display the information in the dynamic domain name resolution cache. Example # display the information in the dynamic domain name resolution cache. Display dns dynamic-host no host ip...

  • Page 767

    767 display dns server syntax display dns server [ dynamic ] view any view parameter dynamic: displays the dns server information dynamically obtained through dhcp or other protocols description use the display dns server command to display the dns server information. Related command: dns server. Ex...

  • Page 768

    768 c hapter 57: dns c onfiguration c ommands dns domain syntax dns domain domain-name undo dns domain [ domain-name ] view system view parameter domain-name: domain name suffix, which is case-insensitive and consists of character strings separated by a dot (for example, aabbcc.Com). Each separated ...

  • Page 769

    769 parameters none description use the dns proxy enable command to enable dns proxy. Use the undo dns proxy enable command to disable dns proxy. By default, dns proxy is disabled. Examples # enable dns proxy. System-view [sysname] dns proxy enable dns resolve syntax dns resolve undo dns resolve vie...

  • Page 770

    770 c hapter 57: dns c onfiguration c ommands you can configure a maximum of six dns servers. Related command: display dns server. N for details about ipv6 dns, refer to “ipv6 basics configuration commands” on page 829. Example # configure 172.16.1.1 for the dns server. [sysname] dns server 172.16.1...

  • Page 771

    771 description use the reset dns dynamic-host command to clear the information in the dynamic domain name cache. Related command: display dns dynamic-host. Example # clear the information in the dynamic domain name cache. Reset dns dynamic-host.

  • Page 772

    772 c hapter 57: dns c onfiguration c ommands.

  • Page 774

    774 c hapter 58: ip a ccounting c onfiguration c ommands display ip count rule syntax display ip count rule view any view parameter none description use the display ip count rule command to display ip accounting rules. Example # display ip accounting rules. Display ip count rule ip count rule list: ...

  • Page 775

    775 example # enable ip accounting. System-view [sysname] ip count enable ip count exterior-threshold syntax ip count exterior-threshold number undo ip count exterior-threshold view system view parameter number: maximum number of accounting entries in the exterior table, in the range of 0 to 8,192. ...

  • Page 776

    776 c hapter 58: ip a ccounting c onfiguration c ommands parameter inbound-packets: counts the incoming ip packets denied by the firewall on the current interface. Outbound-packets: counts the outgoing ip packets denied by the firewall on the current interface. Description use the ip count firewall-...

  • Page 777

    777 n if no firewall is configured on the interface, valid packets refer to all incoming and outgoing ip packets. If a firewall is configured, valid packets refer to only those passing the firewall. Example # count incoming ip packets on ethernet1/0. System-view [sysname] interface ethernet 1/0 [sys...

  • Page 778

    778 c hapter 58: ip a ccounting c onfiguration c ommands ip count outbound-packets syntax ip count outbound-packets undo ip count outbound-packets view interface view parameter none description use the ip count outbound-packets command to count outgoing ip packets on the current interface. Use the u...

  • Page 779

    779 ■ if a firewall is configured on an interface and incoming and outgoing ip packets are denied by the firewall, these ip packets are counted in the firewall-denied table. ■ if the source or destination ip address of the ip packets passing the interface (in this case, a firewall may be configured ...

  • Page 780

    780 c hapter 58: ip a ccounting c onfiguration c ommands view user view parameter all: clears all statistics. Firewall: clears the statistics from the firewall-denied table. Exterior: clears the statistics from the exterior table. Interior: clears the statistics from the interior table. Description ...

  • Page 781: Ip A

    59 ip a ddressing c onfiguration c ommands display ip interface syntax display ip interface [ interface-type interface-number ] view any view parameter interface-type interface-number: specifies an interface by its type and number. Description use the display ip interface command to display informat...

  • Page 782

    782 c hapter 59: ip a ddressing c onfiguration c ommands unknown type: 0 dhcp packet deal mode: global table 154 description on fields of the display ip interface command field description current state current physical state of an interface line protocol current state current state of the network l...

  • Page 783

    783 display ip interface brief syntax display ip interface brief [ interface-type [ interface-number ] ] view any view parameter interface-type: interface type. Interface-number: interface number. Description use the display ip interface brief command to display brief information about a specified o...

  • Page 785

    785 ■ the primary and secondary ip addresses can be located in the same network segment. ■ before removing the primary ip address, remove all secondary ip addresses. ■ you can assign a secondary ip address only when the interface is not configured to borrow an ip address through ip unnumbered or obt...

  • Page 786

    786 c hapter 59: ip a ddressing c onfiguration c ommands.

  • Page 788

    788 c hapter 60: ip p erformance c onfiguration c ommands # display fib information passing acl 2000 system-view [sysname] acl number 2000 [sysname-acl-basic-2000] rule permit source 10.2.0.0 0.0.255.255 [sysname-acl-basic-2000] display fib acl 2000 route entry matched by access-list 2000: summary c...

  • Page 790

    790 c hapter 60: ip p erformance c onfiguration c ommands description use the display fib statistics command to display statistics about the fib entries. Example # display statistics about the fib entries. Display fib statistics route entry count : 2 display icmp statistics syntax display icmp stati...

  • Page 791

    791 display ip socket syntax display ip socket [ socktype sock-type ] [ task-id socket-id ] view any view parameter socktype sock-type: displays the socket information of this type. The sock type is in the range 1 to 3, corresponding to tcp, udp and raw ip respectively. Task-id: displays the socket ...

  • Page 792

    792 c hapter 60: ip p erformance c onfiguration c ommands socket state = ss_priv task = rdso(59), socketid = 1, proto = 17, la = 0.0.0.0:1024, fa = 0.0.0.0:0, sndbuf = 9216, rcvbuf = 41600, sb_cc = 0, rb_cc = 0, socket option = so_udpchecksum, socket state = ss_priv sock_raw: task = rout(68), socket...

  • Page 793

    793 description use the display ip statistics command to display statistics of ip packets. Related command: display ip interface and reset ip statistics. Example # display statistics of ip packets. Display ip statistics input: sum 7120 local 112 bad protocol 0 bad format 0 bad checksum 0 bad options...

  • Page 794

    794 c hapter 60: ip p erformance c onfiguration c ommands description use the display tcp statistics command to display statistics of tcp traffic. Related command: display tcp status and reset tcp statistics. Example # display statistics of tcp traffic. Display tcp statistics received packets: total...

  • Page 795

    795 table 161 description on the fields of the display tcp statistics command field description received packets: total total number of packets received packets in sequence number of packets arriving in sequence window probe packets number of window probe packets received window update packets numbe...

  • Page 796

    796 c hapter 60: ip p erformance c onfiguration c ommands display tcp status syntax display tcp status view any view parameter none description use the display tcp status command to display status of all tcp connection for monitoring tcp connections. Example # display status of all tcp connections d...

  • Page 797

    797 example # display statistics of udp packets. Display udp statistics received packets: total: 0 checksum error: 0 shorter than header: 0, data length larger than packet: 0 unicast(no socket on port): 0 broadcast/multicast(no socket on port): 0 not delivered, input socket full: 0 input packets mis...

  • Page 798

    798 c hapter 60: ip p erformance c onfiguration c ommands example # allow ethernet 1/0 to forward directed broadcasts permitted by acl 2001. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] ip forward-broadcast acl 2001 ip redirects enable syntax ip redirects enable undo ip redirec...

  • Page 799

    799 ip unreachables enable syntax ip unreachables enable undo ip unreachables view system view parameter none description use the ip unreachables enable command to enable the sending of icmp destination unreachable packets. Use the undo ip unreachables command to disable sending icmp destination unr...

  • Page 800

    800 c hapter 60: ip p erformance c onfiguration c ommands parameter none description use the reset tcp statistics command to clear statistics of tcp traffic. Related command: display tcp statistics. Example # display statistics of tcp traffic. Reset tcp statistics reset udp statistics syntax reset u...

  • Page 801

    801 example # enable the protection against naptha attack. System-view [sysname] tcp anti-naptha enable tcp mss syntax tcp mss value undo tcp mss view interface view parameter value: maximum size of a packet in bytes, ranging from 128 to 2,048. Description use the tcp mss command to configure the ma...

  • Page 802

    802 c hapter 60: ip p erformance c onfiguration c ommands syn-received: syn_received state of a tcp connection. Connected-number number: maximum number of tcp connections in a certain state. The argument number is in the range of 0 to 500. Description use the tcp state command to configure the maxim...

  • Page 803

    803 n the support for this command varies with devices. Example # enable the syn cookie feature. System-view [sysname] tcp syn-cookie enable tcp timer check-state syntax tcp timer check-state time-value undo tcp timer check-state view system view parameter time-value: tcp connection state check inte...

  • Page 804

    804 c hapter 60: ip p erformance c onfiguration c ommands view system view parameter time-value: length of the tcp finwait timer in seconds, ranging from 76 to 3,600. Description use the tcp timer fin-timeout command to configure the length of the tcp finwait timer. Use the undo tcp timer fin-timeou...

  • Page 805

    805 tcp window syntax tcp window window-size undo tcp window view system view parameter window-size: receiving/sending buffer size of tcp connection in kb, ranging from 1 to 32. Description use the tcp window command to configure the receiving/sending buffer size of tcp connection. Use the undo tcp ...

  • Page 806

    806 c hapter 60: ip p erformance c onfiguration c ommands.

  • Page 807: Ip U

    61 ip u nicast p olicy r outing c onfiguration c ommands apply default output-interface syntax apply default output-interface interface-type interface-number [ track track-entry-number ] [ interface-type interface-number [ track track-entry-number ] ] undo apply default output-interface [ interface-...

  • Page 808

    808 c hapter 61: ip u nicast p olicy r outing c onfiguration c ommands parameters ip-address: ip address of the default next hop. Track track-entry-number: specifies a track entry. The track-entry-number is in the range 1 to 1024. Description use the apply ip-address default next-hop command to set ...

  • Page 810

    810 c hapter 61: ip u nicast p olicy r outing c onfiguration c ommands apply output-interface syntax apply output-interface interface-type interface-number [ track track-entry-number ] [ interface-type interface-number [ track track-entry-number ] ] undo apply output-interface [ interface-type inter...

  • Page 811

    811 description use the display ip policy-based-route command to display all system and interface policy routing information. Examples # display all system and interface policy routing information. Display ip policy-based-route policy name interface pr02 local pr02 virtual-template0 pr01 ethernet 1/...

  • Page 813

    813 display policy-based-route syntax display policy-based-route [ policy-name ] view any view parameters policy-name: policy name, a string of 1 to 19 characters. Description use the display policy-based-route command to display the configured policy routing information. Examples # display the conf...

  • Page 814

    814 c hapter 61: ip u nicast p olicy r outing c onfiguration c ommands if-match packet-length syntax if-match packet-length min-len max-len undo if-match packet-length view policy-based-route view parameters min-len: minimum ip packet length in bytes, in the range of 0 to 65535. Max-len: maximum ip ...

  • Page 815

    815 ■ system policy routing is used to route packets generated locally. Unless otherwise required, you are not recommended to enable system policy routing. Related commands: policy-based-route. Examples # enable system policy routing and reference policy aaa. System-view [sysname] ip local policy-ba...

  • Page 816

    816 c hapter 61: ip u nicast p olicy r outing c onfiguration c ommands parameters policy-name: policy name, a string of 1 to 19 characters. Deny: specifies the match mode of the policy node as deny. When a packet satisfies all rules defined by the if-match clauses, the packet will be refused by the ...

  • Page 817

    817 if no policy name is specified, this command clears all the policy routing statistics. Examples # clear all the policy routing statistics. Reset policy-based-route statistics.

  • Page 818

    818 c hapter 61: ip u nicast p olicy r outing c onfiguration c ommands.

  • Page 819: Udp H

    62 udp h elper c onfiguration c ommands display udp-helper server syntax display udp-helper server [ interface interface-type interface-number ] view any view parameter interface interface-type interface-number: displays information of forwarded udp packets on the specified interface. Description us...

  • Page 820

    820 c hapter 62: udp h elper c onfiguration c ommands reset udp-helper packet udp-helper enable syntax udp-helper enable undo udp-helper enable view system view parameter none description use the udp-helper enable command to enable udp helper. Use the undo udp-helper enable command to disable udp he...

  • Page 821

    821 description use the udp-helper port command to enable the forwarding of packets with the specified udp port number. Use the undo udp-helper port command to remove the configured udp port numbers. By default, the udp helper enabled device forwards broadcast packets with any of the six destination...

  • Page 822

    822 c hapter 62: udp h elper c onfiguration c ommands.

  • Page 824

    824 c hapter 63: urpf c onfiguration c ommands.

  • Page 825: Ast

    64 f ast f orwarding c ommands display ip fast-forwarding cache syntax display ip fast-forwarding cache view any view parameter none description use the display ip fast-forwarding cache command to display the information in the fast forwarding cache. Example # display the information in the fast for...

  • Page 826

    826 c hapter 64: f ast f orwarding c ommands parameter inbound: enables or disables fast forwarding only in the inbound direction. Outbound: enables or disables fast forwarding only in the outbound direction. If no parameter is specified, fast forwarding is enabled or disabled in both the inbound an...

  • Page 827

    827 reset ip fast-forwarding cache syntax reset ip fast-forwarding cache view user view parameter none description use the reset ip fast-forwarding cache command to clear the information in the fast forwarding cache. Example # clear the information in the fast forwarding cache. Reset ip fast-forward...

  • Page 828

    828 c hapter 64: f ast f orwarding c ommands.

  • Page 829: 6 B

    65 ip v 6 b asics c onfiguration c ommands display dns ipv6 dynamic-host syntax display dns ipv6 dynamic-host view any view parameter none description use the display dns ipv6 dynamic-host command to display ipv6 dynamic domain name cache information. Example # display ipv6 dynamic domain name cache...

  • Page 830

    830 c hapter 65: ip v 6 b asics c onfiguration c ommands example # display ipv6 dns server information. Display dns ipv6 server type: d:dynamic s:static dns server type ipv6 address (interface name) 1 s 1::1 2 s fe80:1111:2222:3333:4444:5555:6666:7777 vlan2 display ipv6 fib syntax display ipv6 fib [...

  • Page 831

    831 display ipv6 fibcache syntax display ipv6 fibcache view any view parameter none description use the display ipv6 fibcache command to display the total number of routes in the ipv6 fib cache. Example # display the total number of routes in the ipv6 fib cache. Display ipv6 fibcache fib cache: tota...

  • Page 832

    832 c hapter 65: ip v 6 b asics c onfiguration c ommands display ipv6 host host age flags ipv6address aaa 0 static 2002::1 bbb 0 static 2002::2 display ipv6 interface syntax display ipv6 interface [ brief ] [ interface-type [ interface-number ] ] view any view parameter brief: displays brief ipv6 in...

  • Page 833

    833 ipv6 is enabled, link-local address is fe80::200:1ff:fe04:5d00 global unicast address(es): 2001::1, subnet is 2001::/64 10::200:1ff:fe04:5d00, subnet is 10::/64 [autocfg] [valid lifetime 4641s/preferred lifetime 4637s] joined group address(es): ff02::1:ff00:1 ff02::1:ff04:5d00 ff02::2 ff02::1 mt...

  • Page 837

    837 socket-id: displays the information of the socket. The socket id is in the range 0 to 3072. Description use the display ipv6 socket command to display socket information. Example # display the information of all sockets. Display ipv6 socket sock_stream: task = vtyd(14), socketid = 4, proto = 6, ...

  • Page 838

    838 c hapter 65: ip v 6 b asics c onfiguration c ommands description use the display ipv6 statistics command to display statistics of ipv6 packets and icmpv6 packets. Example # display the statistics of ipv6 packets and icmpv6 packets. Display ipv6 statistics ipv6 protocol: sent packets: total: 0 lo...

  • Page 839

    839 sent packets: total: 0 local sent out: 0 forwarded: 0 raw packets: 0 discarded: 0 routing failed: 0 fragments: 0 fragments failed: 0 statistics of sent ipv6 packets, including: ■ total number of sent packets ■ number of packets sent locally ■ number of forwarded packets ■ number of packets sent ...

  • Page 840

    840 c hapter 65: ip v 6 b asics c onfiguration c ommands display tcp ipv6 statistics syntax display tcp ipv6 statistics view any view parameter none description use the display tcp ipv6 statistics command to display tcp connection statistics. Example # display the statistics of ipv6 tcp connections....

  • Page 841

    841 out-of-order packets: 0 (0 bytes) packets with data after window: 0 (0 bytes) packets after close: 0 ack packets: 0 (0 bytes) duplicate ack packets: 0, too much ack packets: 0 sent packets: total: 0 urgent packets: 0 control packets: 0 (including 0 rst) window probe packets: 0, window update pac...

  • Page 842

    842 c hapter 65: ip v 6 b asics c onfiguration c ommands display tcp ipv6 status syntax display tcp ipv6 status view any view parameter none description use the display tcp ipv6 command to display the tcp connection status. Example # display the tcp connection status. Display tcp ipv6 status tcp6cb ...

  • Page 843

    843 display udp ipv6 statistics syntax display udp ipv6 statistics view any view parameter none description use the display udp ipv6 statistics command to display statistics of udp packets. Example # display statistics information of udp packets. Display udp ipv6 statistics received packets: total: ...

  • Page 844

    844 c hapter 65: ip v 6 b asics c onfiguration c ommands dns server ipv6 syntax dns server ipv6 ipv6-address [ interface-type interface-number ] undo dns server ipv6 ipv6-address [ interface-type interface-number ] view system view parameter ipv6-address: ipv6 address of a dns server. Interface-type...

  • Page 845

    845 description use the ipv6 command to enable the ipv6 packet forwarding function. Use the undo ipv6 command to disable the ipv6 packet forwarding function. By default, the ipv6 packet forwarding function is disabled. Example # enable the ipv6 packet forwarding function. System-view [sysname] ipv6 ...

  • Page 846

    846 c hapter 65: ip v 6 b asics c onfiguration c ommands view interface view parameter none description use the ipv6 address auto link-local command to automatically generate a link-local address for an interface. Use the undo ipv6 address auto link-local command to remove the automatically generate...

  • Page 847

    847 view interface view parameter ipv6-address: ipv6 link-local address. The first ten bits of an address must be 1111111010 (binary), that is, the first group of hexadecimals in the address must be fe80 to febf. Description use the ipv6 address link-local command to configure a link-local address m...

  • Page 848

    848 c hapter 65: ip v 6 b asics c onfiguration c ommands parameter none description use the ipv6 fib-loadbalance-type hash-based command to specify the load sharing mode based on the hash algorithm for packet forwarding. Use the undo ipv6 fib-loadbalance-type hash-based command to restore the load s...

  • Page 849

    849 parameter bucket bucket-size: number of tokens in a token bucket, in the range of 1 to 200. Ratelimit interval: update period of the token bucket in milliseconds, in the range of 0 to 2,147,483,647. The update period “0” indicates that the number of icmpv6 error packets sent is not restricted. D...

  • Page 850

    850 c hapter 65: ip v 6 b asics c onfiguration c ommands parameter mtu-size: size of the maximum transmission units (mtus) of an interface in bytes, in the range of 1,280 to 1,500. The default value is 1,500. Description use the ipv6 mtu command to set the mtu of ipv6 packets sent over an interface....

  • Page 851

    851 description use the ipv6 nd autoconfig other-flag command to set the other stateful configuration flag (o) flag to 1 so that the host can acquire information other than ipv6 address through stateful autoconfiguration (for example, dhcp server). Use the undo ipv6 nd autoconfig other-flag command ...

  • Page 852

    852 c hapter 65: ip v 6 b asics c onfiguration c ommands parameter value: number of hops, in the range of 0 to 255. When it is set to 0, the cur hop limit field in ra messages sent by the device is 0. That is, the number of hops is determined by the host itself, but not specified by the device. Desc...

  • Page 853

    853 view interface view parameter value: neighbor reachable time in milliseconds, in the range of 1 to 3,600,000. Description use the ipv6 nd nud reachable-time command to configure the neighbor reachable time on an interface. This time value serves as not only the neighbor reachable time on the loc...

  • Page 854

    854 c hapter 65: ip v 6 b asics c onfiguration c ommands system-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] ipv6 nd ra halt ipv6 nd ra interval syntax ipv6 nd ra interval max-interval-value min-interval-value undo ipv6 nd ra interval view interface view parameter max-interval-value: ...

  • Page 855

    855 parameter prefix-length: prefix length of an ipv6 address. Ipv6-prefix: ipv6 address prefix. Valid-lifetime: valid lifetime of a prefix in seconds, in the range of 0 to 4,294,967,295. Preferred-lifetime: preferred lifetime of a prefix used for stateless autoconfiguration in seconds, in the range...

  • Page 856

    856 c hapter 65: ip v 6 b asics c onfiguration c ommands note that the router lifetime in ra messages should be greater than or equal to the advertising interval. Example # set the router lifetime in ra messages on ethernet1/0 to 1,000 seconds. System-view [sysname] interface ethernet 1/0 [sysname-e...

  • Page 857

    857 example # configure a static neighbor entry for layer 3 interface ethernet1/0. System-view [sysname] ipv6 neighbor 2000::1 fe-e0-89 interface ethernet1/0 ipv6 neighbors max-learning-num syntax ipv6 neighbors max-learning-num number undo ipv6 neighbors max-learning-num view interface view paramet...

  • Page 858

    858 c hapter 65: ip v 6 b asics c onfiguration c ommands example # configure a static pmtu for a specified ipv6 address. System-view [sysname] ipv6 pathmtu fe80::12 1300 ipv6 pathmtu age syntax ipv6 pathmtu age age-time undo ipv6 pathmtu age view system view parameter age-time: aging time for pmtu i...

  • Page 860

    860 c hapter 65: ip v 6 b asics c onfiguration c ommands description use the reset ipv6 pathmtu the command to clear the pmtu information. Example # clear all pmtus. Reset ipv6 pathmtu all reset ipv6 statistics syntax reset ipv6 statistics view user view parameter none description use the reset ipv6...

  • Page 861

    861 example # clear the statistics of all udp packets. Reset udp ipv6 statistics tcp ipv6 timer fin-timeout syntax tcp ipv6 timer fin-timeout wait-time undo tcp ipv6 timer fin-timeout view system view parameter wait-time: length of the finwait timer for tcp connections in seconds, in the range of 76...

  • Page 862

    862 c hapter 65: ip v 6 b asics c onfiguration c ommands system-view [sysname] tcp ipv6 timer syn-timeout 100 tcp ipv6 window syntax tcp ipv6 window size undo tcp ipv6 window view system view parameter size: size of the tcp sending/receiving buffer in kb (kilobyte), in the range of 1 to 32. Descript...

  • Page 863: Nat-Pt C

    66 nat-pt c onfiguration c ommands display natpt address-group syntax display natpt address-group view any view parameter none description use the display natpt address-group command to display the configuration information of a nat-pt address pool. Example # display the configuration information of...

  • Page 864

    864 c hapter 66: nat-pt c onfiguration c ommands display natpt address-mapping natpt address mapping(v6bound view): ipv4 address ipv6 address type 1.1.1.1 3001::0001 source 2.2.2.2 3001::0002 destination natpt v6server static mapping: ipv4address ipv6 address pro 1.1.1.1^ 6 3001::0003^ 1270 tcp disp...

  • Page 865

    865 display natpt all syntax display natpt all view any view parameter none description use the display natpt all command to display all nat-pt configuration information. Example # display all nat-pt configuration information. Display natpt all natpt ipv4 address pool information: 1: from 1.1.1.1 to...

  • Page 866

    866 c hapter 66: nat-pt c onfiguration c ommands finrst -------aging-time value is 5 (seconds) frag -------aging-time value is 5 (seconds) natpt statistics: total sessions: 0 expired sessions: 0 hits: 0 misses: 0 total fragment sessions: 0 expired fragment sessions: 0 fragment hits: 0 fragment misse...

  • Page 868

    868 c hapter 66: nat-pt c onfiguration c ommands display natpt statistics natpt statistics: total sessions: 0 expired sessions: 0 hits: 0 misses: 0 total fragment sessions: 0 expired fragment sessions: 0 fragment hits: 0 fragment misses: 0 total address mapping: 0 (static: 0 dynamic: 0 ) total v6ser...

  • Page 869

    869 note that: ■ if start-ipv4-address equals end-ipv4-address, only one address is available in the address pool. ■ the execution of the undo natpt address-group command may affect some dynamic nat-pt mappings. ■ currently, a nat-pt address pool and an ipv4 nat address pool do not share any address...

  • Page 870

    870 c hapter 66: nat-pt c onfiguration c ommands ■ 10 seconds for a dns packet ■ 5 seconds for a finrst packet ■ 5 seconds for a frag packet ■ 20 seconds for an icmp packet ■ 240 seconds for a syn packet ■ 40 seconds for a udp packet ■ 86,400 seconds for a tcp packet example # set the nat-pt session...

  • Page 871

    871 parameter max-number: maximum number of sessions, in the range of 0 to 2,048. Description use the natpt max-session command to set the maximum number of nat-pt sessions. Use the undo natpt max-session command to restore the default maximum number of nat-pt sessions. By default, the maximum numbe...

  • Page 872

    872 c hapter 66: nat-pt c onfiguration c ommands natpt turn-off tos syntax natpt turn-off tos undo natpt turn-off tos view system view parameter none description use the natpt turn-off tos command to set the tos field in an ipv4 packet translated from ipv6 to 0. Use the undo natpt turn-off tos comma...

  • Page 873

    873 natpt v4bound dynamic syntax natpt v4bound dynamic acl number acl-number prefix natpt-prefix undo natpt v4bound dynamic acl number acl-number view system view parameter acl-number: ipv4 access control list (acl) number, in the range of 2000 to 2999. Natpt-prefix: nat-pt prefix, 96 bits in length...

  • Page 874

    874 c hapter 66: nat-pt c onfiguration c ommands protocol-type: protocol type, including tcp and udp. Ipv4-address-destination: destination ipv4 address to be mapped. Ipv4-port-number: ipv4 port number, in the range of 1 to 12287. Ipv6-address-destination: ipv6 address to which the destination ipv4 ...

  • Page 875

    875 description use the natpt v6bound dynamic command to configure a dynamic mapping for packets going from an ipv6 node to an ipv4 node. Use the undo natpt v6bound dynamic command to remove the configured dynamic mapping. Example # translate the source address of an ipv6 packet that matches ipv6 ac...

  • Page 876

    876 c hapter 66: nat-pt c onfiguration c ommands reset natpt dynamic-mappings reset natpt statistics syntax reset natpt statistics view user view parameter none description use the reset natpt statistics command to clear all nat-pt statistics information. Example # clear all nat-pt statistics inform...

  • Page 877: Ual

    67 d ual s tack c onfiguration c ommands ipv6 syntax ipv6 undo ipv6 view system view parameter none description use the ipv6 command to enable the ipv6 packet forwarding function. Use the undo ipv6 command to disable the ipv6 packet forwarding function. By default, the function is disabled. Example ...

  • Page 878

    878 c hapter 67: d ual s tack c onfiguration c ommands note that: ■ up to 10 global unicast addresses and site-local addresses can be configured on an interface in total. ■ the undo ipv6 address command without parameters removes all ipv6 addresses manually configured, except link-local addresses au...

  • Page 879

    879 description use the ipv6 address eui-64 command to configure a site-local address or global unicast address in the eui-64 format on an interface. Use the undo ipv6 address eui-64 command to delete the site-local address or global unicast address in the eui-64 format on an interface. By default, ...

  • Page 880

    880 c hapter 67: d ual s tack c onfiguration c ommands.

  • Page 882

    882 c hapter 68: t unneling c onfiguration c ommands [sysname2] interface tunnel 1 [sysname2-tunnel1] source 192.100.1.1 [sysname2-tunnel1] destination 193.101.1.1 display interface tunnel syntax display interface tunnel [ number ] view any view parameter number: tunnel interface number. If the numb...

  • Page 883

    883 display ipv6 interface tunnel syntax display ipv6 interface tunnel number view any view parameter number: tunnel interface number. Description use the display ipv6 interface tunnel command to display related ipv6 information of a specified tunnel interface, including link state, ipv6 protocol st...

  • Page 884

    884 c hapter 68: t unneling c onfiguration c ommands nd reachable time is 30000 milliseconds nd retransmit interval is 1000 milliseconds hosts use stateless autoconfig for addresses encapsulation-limit syntax encapsulation-limit [ number ] undo encapsulation-limit view tunnel interface view paramete...

  • Page 885

    885 undo interface tunnel number view system view parameter number: tunnel interface number, in the range of 0 to 1023. The number of tunnels that can be created is restricted by the total number of interfaces and the memory. Description use the interface tunnel command to create a tunnel interface ...

  • Page 888

    888 c hapter 68: t unneling c onfiguration c ommands.

  • Page 889: 6 U

    69 ip v 6 u nicast p olicy r outing c onfiguration c ommands apply default output-interface syntax apply default output-interface interface-type interface-number undo apply default output-interface [ interface-type interface-number ] view ipv6 policy-based-route view parameter interface-type interfa...

  • Page 890

    890 c hapter 69: ip v 6 u nicast p olicy r outing c onfiguration c ommands description use the apply destination-based-forwarding command to enable destination based forwarding. Use the undo apply destination-based-forwarding command to disable destination based forwarding. By default, destination b...

  • Page 891

    891 apply ipv6-address next-hop syntax apply ipv6-address next-hop ipv6-address undo apply ipv6-address next-hop [ ipv6-address ] view ipv6 policy-based-route view parameter ipv6-address: ipv6 address of a next hop description use the apply ipv6-address next-hop command to set a next hop for matched...

  • Page 892

    892 c hapter 69: ip v 6 u nicast p olicy r outing c onfiguration c ommands description use the apply ipv6-precedence command to set a preference for matched ipv6 packets. Use the undo apply ipv6-precedence command to remove the preference. Related command: apply output-interface, apply ipv6-address ...

  • Page 893

    893 example # specify the interface serial 2/0 as the outgoing interface for matched ipv6 packets. System-view [sysname] ipv6 policy-based-route aa permit node 11 [sysname-pbr6-aa-11] apply output-interface serial 2/0 display ipv6 config policy-based-route syntax display ipv6 config policy-based-rou...

  • Page 896

    896 c hapter 69: ip v 6 u nicast p olicy r outing c onfiguration c ommands example # permit the packets matching acl 2000. System-view [sysname] ipv6 policy-based-route aa permit node 10 [sysname-pbr6-aa-10] if-match acl6 2000 if-match packet-length syntax if-match packet-length min-len max-len undo...

  • Page 897

    897 system policy routing is used to route packets generated locally. Unless otherwise required, you are not recommended to enable system policy routing. Related command: ipv6 local policy-based-route. Example # enable ipv6 system policy routing and reference a policy named aaa. System-view [sysname...

  • Page 898

    898 c hapter 69: ip v 6 u nicast p olicy r outing c onfiguration c ommands node and will not match against the next policy node. If not, the packet will match against the next policy node. Permit: specifies the match mode of the policy node as permit. If a packet satisfies all the rules defined by t...

  • Page 899: Erminal

    70 t erminal a ccess c onfiguration c ommands auto-close syntax auto-close time undo auto-close view terminal template view parameters time: automatic link teardown time, in seconds. It ranges from 5 to 240. Description use the auto-close command to configure the automatic link teardown time. Use th...

  • Page 900

    900 c hapter 70: t erminal a ccess c onfiguration c ommands use the undo auto-link command to restore the default. By default, the automatic link establishment time is 0 seconds, namely, no automatic link establishment is performed. The terminal access feature supports the automatic link establishme...

  • Page 901

    901 system-view [sysname] rta template abc [sysname-rta-template-abc] bind vpn-instance vpn1 data protect router-unix syntax data protect router-unix undo data protect router-unix view terminal template view parameters none description use the data protect router-unix command to enable data encrypti...

  • Page 902

    902 c hapter 70: t erminal a ccess c onfiguration c ommands example # enable data read blocking. System-view [sysname] rta template abc [sysname-rta-template-abc] data read block data send delay syntax data send delay milliseconds undo data send delay view terminal template view parameters milliseco...

  • Page 903

    903 description use the display rta command to display information about terminals. Relate command: reset rta statistics. Example # display the information about the terminal vty1. Display rta 1 1 vty 1 app index: 0 app type: tty app name: (null) app state: kept remote ip: 192.168.0.110 source ip: 0...

  • Page 904

    904 c hapter 70: t erminal a ccess c onfiguration c ommands interface used : async1/0 current state : ok flow control : stop current debug : 0x3c current vty : 0 current app : 0 app type : tty app name : app state : kept socket recvbuf size : 2048 bytes socket sendbuf size : 2048 bytes tty recv byte...

  • Page 905

    905 # display statistics about terminal 1. Display rta 1 statistics tty 1 receive from terminal: 0 send to terminal: 0 receive from remote: 0 send to remote: 0 vty 0 receive from terminal: 0 last receive time: 00:00:00 send to terminal: 0 last send time: 00:00:00 receive from remote: 0 last receive ...

  • Page 906

    906 c hapter 70: t erminal a ccess c onfiguration c ommands # display terminal access statistics display rta statistics rta template number: 2 rta tty number: 1 rta app number: 1 rta listen port number: 0 driverbuf save syntax driverbuf save undo driverbuf save view terminal template view parameters...

  • Page 907

    907 undo driverbuf size view terminal template view parameters number: buffer size, in kilobytes (kb), ranging from 8 to 32. Description use the driverbuf size command to configure the size of terminal receive buffer. Use the undo driverbuf size command to restore the default setting. By default, th...

  • Page 908

    908 c hapter 70: t erminal a ccess c onfiguration c ommands menu hotkey syntax menu hotkey ascii-code& undo menu hotkey view terminal template view parameters ascii-code&: ascii value of hotkey, ranging 1 to 255. “&” means that you can provide up to three hotkey ascii values. Description use the men...

  • Page 909

    909 parameters string: screen code of the terminal, containing 1 to 15 case-insensitive characters. Description use the menu screencode command to configure a menu screen code. Use the undo menu screencode command to remove the menu screen code. By default, no such a screen code is configured. Some ...

  • Page 910

    910 c hapter 70: t erminal a ccess c onfiguration c ommands related command: print information. Example # enable the printing of terminal connection information on the terminal system-view [sysname] rta template abc [sysname-rta-template-abc] print connection-info print information syntax print info...

  • Page 911

    911 use the undo print menu command to disable the printing of terminal menu information. By default, terminal menu information is printed. This command takes effect only in tty and telnet terminal access. Make sure you enable the router to print characters on the terminal before using this command....

  • Page 912

    912 c hapter 70: t erminal a ccess c onfiguration c ommands use the undo redrawkey command to cancel the hotkey configured for terminal redrawing. By default, no hotkey is configured for terminal redrawing. The terminal redrawing hotkey can be set in tty terminal access only. Terminal redrawing work...

  • Page 913

    913 parameters terminal-number: terminal number, ranging 1 to 255. Description use the reset rta statistics command to clear the statistics of a terminal. Related command: display rta. Example # clear all the statistics about terminal 1. Reset rta statistics 1 resetkey syntax resetkey ascii-code& un...

  • Page 914

    914 c hapter 70: t erminal a ccess c onfiguration c ommands parameters mac-address interface interface-type interface-number: uses the specified interface mac address as the character string for router authentication. Interface-type interface-number: specifies a port by port type and port number. St...

  • Page 915

    915 by default, no listening port is configured on the rtc server. Note that only one listening port can be configured. Example # configure the rtc server listening port number as 9010. System-view [sysname] rta rtc-server listen-port 9010 rta server enable syntax rta server enable undo rta server e...

  • Page 916

    916 c hapter 70: t erminal a ccess c onfiguration c ommands by default, no source ip address is configured globally for tcp connections. N ■ you can use this command to configure an ip address other than the outbound interface’s ip address of the initiating router as the tcp connection source ip add...

  • Page 917

    917 terminal-number: terminal number, ranging 1 to 255. Description use the rta terminal command to apply a template on the interface. Use the undo rta terminal command to cancel the template application. By default, no template is applied on the interface. A terminal can be created only after the c...

  • Page 918

    918 c hapter 70: t erminal a ccess c onfiguration c ommands system-view [sysname] rta template abc [sysname-rta-template-abc] sendbuf bufsize 200 sendbuf threshold syntax sendbuf threshold value undo sendbuf threshold view terminal template view parameters value: threshold of terminal send buffer, i...

  • Page 919

    919 description use the tcp command to configure tcp parameters, including receive buffer size, send buffer size, no delay, keepalive interval, and number of keepalives to be sent. Use the undo tcp command to restore the default tcp settings. By default, receive buffer size is 2,048 bytes, send buff...

  • Page 920

    920 c hapter 70: t erminal a ccess c onfiguration c ommands by default, no hotkey is configured for connectivity test. With the terminal connectivity test hotkey configured on the router, you can press the hotkey to test the tcp connectivity between the terminal and the router and that between the t...

  • Page 921

    921 vty description syntax vty vty-number description string undo vty vty-number description view terminal template view parameters vty-number: vty number, ranging 0 to 7. String: vty description, a string of 1 to 31 characters. Description use the vty description command to configure a description ...

  • Page 922

    922 c hapter 70: t erminal a ccess c onfiguration c ommands vtys and each vty corresponds to one application. When multiple vtys are configured on a terminal with the corresponding switching hotkeys, you can press the switching hotkeys to quickly switch between the vtys without making any selection ...

  • Page 923

    923 system-view [sysname] rta template abc [sysname-rta-template-abc] vty 1 password simple abc vty rtc-client remote syntax vty vty-number rtc-client remote ip-address port-number [ source source-ip ] undo vty vty-number view terminal template view parameters vty-number: vty number, ranging 0 to 7....

  • Page 924

    924 c hapter 70: t erminal a ccess c onfiguration c ommands terminal-number: terminal number corresponding to the rtc client, ranging 1 to 255. Description use the vty rtc-server remote command to create a vty to serve as the rtc server. Use the undo vty command to remove the specified vty. Note tha...

  • Page 925

    925 example # set the screen code for vty 1 to e!9q. System-view [sysname] rta template abc [sysname-rta-template-abc] vty 1 screencode e!9q vty telnet remote syntax vty vty-number telnet remote ip-address [ port-number ] [ source source-ip ] undo vty vty-number view terminal template view parameter...

  • Page 926

    926 c hapter 70: t erminal a ccess c onfiguration c ommands source source-ip: source ip address bound. Description use the vty tty remote command to create a vty for tty terminal access. Use the undo vty command to remove the specified vty. Note that, after this configuration, no more rtc client vty...

  • Page 927

    927 undo vty-switch threshold view terminal template view parameters times: threshold for vty automatic switching, in times, ranging 1 to 1,0000. Description use the vty-switch threshold command to configure the threshold for vty automatic switching. Use the undo vty-switch threshold command to rest...

  • Page 928

    928 c hapter 70: t erminal a ccess c onfiguration c ommands.

  • Page 929: Ip R

    71 ip r outing t able c ommands bandwidth-based-sharing syntax bandwidth-based-sharing undo bandwidth-based-sharing view system view parameters none description use the bandwidth-based-sharing command to enable bandwidth-based load sharing. Use the undo bandwidth-based-sharing command to disable ban...

  • Page 930

    930 c hapter 71: ip r outing t able c ommands parameters vpn-instance vpn-instance-name: displays routing table information for a vpn instance. The vpn-instance-name argument represents the instance name and is a string of 1 to 31 characters. Verbose: displays detailed routing table information, inc...

  • Page 931

    931 display ip routing-table routing tables: public destinations : 6 routes : 6 destination/mask proto pre cost nexthop interface 2.2.2.0/24 direct 0 0 2.2.2.1 eth0/1 2.2.2.1/32 direct 0 0 127.0.0.1 inloop0 127.0.0.0/8 direct 0 0 127.0.0.1 inloop0 127.0.0.1/32 direct 0 0 127.0.0.1 inloop0 192.168.80...

  • Page 932

    932 c hapter 71: ip r outing t able c ommands destination: 127.0.0.0/8 protocol: direct process id: 0 preference: 0 cost: 0 nexthop: 127.0.0.1 interface: inloopback0 relynexthop: 0.0.0.0 neighbour: 0.0.0.0 tunnel id: 0x0 label: null state: active noadv age: 00h00m36s tag: 0 destination: 127.0.0.1/32...

  • Page 933

    933 verbose: displays detailed routing table information, including that for inactive routes. With this argument absent, the command displays only brief information about active routes. Description use the display ip routing-table acl command to display information about routes permitted by a specif...

  • Page 934

    934 c hapter 71: ip r outing t able c ommands protocol: direct process id: 0 preference: 0 cost: 0 nexthop: 127.0.0.1 interface: inloop0 relynexthop: 0.0.0.0 neighbour: 0.0.0.0 tunnel id: 0x0 label: null state: active noadv age: 00h41m34s tag: 0 destination: 10.1.2.0/24 protocol: direct process id: ...

  • Page 936

    936 c hapter 71: ip r outing t able c ommands parameters ip-address: destination ip address, in dotted decimal format. Mask-length: ip address mask length in the range 0 to 32. Mask: ip address mask in dotted decimal format. Longer-match: displays the route with the longest prefix. Verbose: displays...

  • Page 938

    938 c hapter 71: ip r outing t able c ommands 1.1.1.0/24 direct 0 0 1.1.1.1 vlan1 1.1.1.1/32 direct 0 0 127.0.0.1 inloop0 2.2.2.0/24 direct 0 0 2.2.2.1 vlan2 3.3.3.0/24 direct 0 0 3.3.3.1 eth1/0 3.3.3.1/32 direct 0 0 127.0.0.1 inloop0 4.4.4.0/24 direct 0 0 4.4.4.1 eth1/1 4.4.4.1/32 direct 0 0 127.0....

  • Page 939

    939 protocol: direct process id: 0 preference: 0 cost: 0 nexthop: 2.2.2.1 interface: vlan2 relynexthop: 0.0.0.0 neighbour: 0.0.0.0 tunnel id: 0x0 label: null state: active adv age: 00h20m52s tag: 0 destination: 2.2.2.1/32 protocol: direct process id: 0 preference: 0 cost: 0 nexthop: 127.0.0.1 interf...

  • Page 940

    940 c hapter 71: ip r outing t able c ommands direct routing table status : summary count : 0 # display summary information about static routes. Display ip routing-table protocol static public routing table : static summary count : 2 static routing table status : summary count : 0 static routing tab...

  • Page 941

    941 display ip relay-route syntax display ip relay-route [ vpn-instance vpn-instance-name ] view any view parameters vpn-instance vpn-instance-name: displays the recursive route information of the vpn instance. Vpn-instance-name is a string of 1 to 31 characters. Description use the display ip relay...

  • Page 942

    942 c hapter 71: ip r outing t able c ommands examples # display recursive tunnel information. Display ip relay-tunnel total number of relay-tunnel is: 1. Dest/mask: 40.40.40.40/255.255.255.255 related instance id(s): 1(1) 2(1) 3(1) 4(1) display load-sharing ip address syntax display load-sharing ip...

  • Page 943

    943 view any view parameters none description use the display ipv6 routing-table command to display brief routing table information, including destination ip address and prefix, protocol type, priority, metric, next hop and outbound interface. The command displays only active routes, namely, the bri...

  • Page 944

    944 c hapter 71: ip r outing t able c ommands summary count : 2 destination : ::1/128 protocol : direct nexthop : ::1 preference : 0 interface : inloop0 cost : 0 destination : 1:1::/64 protocol : static nexthop : :: preference : 60 interface : null0 cost : 0 refer to table 209 for description about ...

  • Page 945

    945 examples # display brief routing information for the specified destination ipv6 address and prefix. Display ipv6 routing-table 10::1 127 routing table: summary count: 3 destination: 10::/64 protocol : static nexthop : :: preference: 60 interface : null0 cost : 0 destination: 10::/68 protocol : s...

  • Page 946

    946 c hapter 71: ip r outing t able c ommands interface : null0 cost : 0 destination: 300::/64 protocol : static nexthop : :: preference: 60 interface : null0 cost : 0 refer to table 209 for description about the above output. Display ipv6 routing-table ipv6-prefix syntax display ipv6 routing-table ...

  • Page 947

    947 examples # display brief information about all direct routes. Display ipv6 routing-table protocol direct direct routing table : summary count : 1 direct routing table’s status : summary count : 1 destination: ::1/128 protocol : direct nexthop : ::1 preference: 0 interface : inloop0 cost : 0 dire...

  • Page 948

    948 c hapter 71: ip r outing t able c ommands display ipv6 routing-table verbose syntax display ipv6 routing-table verbose view any view parameters none description use the display ipv6 routing-table verbose command to display detailed information about all active and inactive routes, including the ...

  • Page 949

    949 view any view parameters none description use the display ipv6 relay-route command to display ipv6 recursive route information. Examples # display ipv6 recursive route information. Display ipv6 relay-route total number of relay-route is: 1 dest/mask: 192::1/64 related instance id(always 0): 0(1)...

  • Page 950

    950 c hapter 71: ip r outing t able c ommands load-bandwidth syntax load-bandwidth bandwidth undo load-bandwidth view interface view parameters bandwidth: specifies the load sharing bandwidth for the interface. Description use the load-bandwidth bandwidth command to specify the load sharing bandwidt...

  • Page 951

    951 10.1.2.2 1193501 155000 0 atm1/0/0 10.1.3.2 15914 2048 0 serial2/0/0 # clear the statistics of bandwidth-based load sharing. Reset load-sharing statistics ip address 10.2.1.0 24 there are/is totally 3 route entry(s) to the same destination network. Nexthop packet(s) bandwidth[kb] flow(s) interfa...

  • Page 952

    952 c hapter 71: ip r outing t able c ommands examples # clear the routing statistics of all the routing protocols in the routing table. Reset ipv6 routing-table statistics protocol all.

  • Page 954

    954 c hapter 72: bgp c onfiguration c ommands description use the aggregate command to create a summary route in the bgp routing table. Use the undo aggregate command to remove a summary route. By default, no summary route is configured. Examples # in bgp view, create a summary of 192.213.0.0/16 in ...

  • Page 955

    955 by default, no load balancing is configured. Unlike igp, bgp has no explicit metric for making load balancing decision. Instead, it implements load balancing using route selection rules. Related commands: display bgp routing-table. Examples # in bgp view, set the number of routes participating i...

  • Page 956

    956 c hapter 72: bgp c onfiguration c ommands bestroute compare-med (bgp/bgp-vpn instance view) syntax bestroute compare-med undo bestroute compare-med view bgp view/bgp-vpn instance view parameters none description use the bestroute compare-med command to enable the comparison of the med for paths ...

  • Page 957

    957 the system only compares med values for paths from peers within the confederation. Paths from external ass are advertised throughout the confederation without med comparison. Examples # in bgp view, enable the comparison of the med for paths from peers within the confederation. System-view [sysn...

  • Page 958

    958 c hapter 72: bgp c onfiguration c ommands description use the compare-different-as-med command to enable the comparison of the med for paths from peers in different ass. Use the undo compare-different-as-med command to disable the comparison. The comparison is disabled by default. If there are s...

  • Page 959

    959 related commands: confederation nonstandard and confederation peer-as. Examples # confederation 9 consists of four sub-ass, namely, 38, 39, 40 and 41. The peer 10.1.1.1 is a member of the confederation while the peer 200.1.1.1 is outside of the confederation. Take sub as 41 as an example. System...

  • Page 960

    960 c hapter 72: bgp c onfiguration c ommands undo confederation peer-as [ as-number-list ] view bgp view parameters as-number-list: sub-as number list. Up to 32 sub-ass can be configured in one command line. The expression is as-number-list = as-number &, in which as-number specifies a sub-as numbe...

  • Page 961

    961 suppress: specifies a suppression threshold from 1 to 20000. The route with a penalty value higher than the threshold is suppressed. The default value is 2000. Ceiling: specifies a ceiling penalty value from 1001 to 20000. The value must be bigger than the suppress value. By default, the value i...

  • Page 962

    962 c hapter 72: bgp c onfiguration c ommands use the undo default ipv4-unicast command to disable the use of ipv4 unicast address family for all peers. The use of ipv4 unicast address family is enabled by default. Examples # enable ipv4 unicast address family for all neighbors. System-view [sysname...

  • Page 963

    963 view bgp view/bgp-vpn instance view parameters med-value: default med value, in the range 0 to 4294967295. Description use the default med command to specify a default med value. Use the undo default med command to restore the default. By default, the default med-value is 0. Multi-exit discrimin...

  • Page 964

    964 c hapter 72: bgp c onfiguration c ommands related commands: import-route (bgp/bgp-vpn instance view). Examples # in bgp view, allow default route redistribution from ospf into bgp. System-view [sysname] bgp 100 [sysname-bgp] default-route imported [sysname-bgp] import-route ospf 1 # in bgp-vpn i...

  • Page 965

    965 display bgp network syntax display bgp network view any view parameters none description use the display bgp network command to display routing information advertised with the network command. Examples # display routing information that has been advertised. Display bgp network bgp local router i...

  • Page 966

    966 c hapter 72: bgp c onfiguration c ommands display bgp paths syntax display bgp paths [as-regular-expression] view any view parameters as-regular-expression: as path regular expression. Description use the display bgp paths command to display information about bgp paths. Examples # display inform...

  • Page 967

    967 group-name: name of a peer group to be displayed, a string of 1 to 47 characters. Log-info: displays the log information of the specified peer. Verbose: displays the detailed information of the peer/peer group. Description use the display bgp peer command to display peer/peer group information. ...

  • Page 969

    969 display bgp routing-table as-path-acl syntax display bgp routing-table as-path-acl as-path-acl-number view any view parameters as-path-acl-number: displays routing information permitted by the as path acl, which is specifies with a number from 1 to 256. Description use the display bgp routing as...

  • Page 970

    970 c hapter 72: bgp c onfiguration c ommands display bgp routing-table as-path-acl 1 bgp local router id is 20.20.20.1 status codes: * - valid, > - best, d - damped, h - history, i - internal, s - suppressed, s - stale origin : i - igp, e - egp, ? - incomplete network nexthop med locprf prefval pat...

  • Page 972

    972 c hapter 72: bgp c onfiguration c ommands whole-match: displays routes exactly matching the specified basic-community-list. &: specifies the argument before it can be entered up to 16 times. Description use the display bgp routing-table community-list command to display bgp routing information m...

  • Page 973

    973 refer to table 219 for description on the other fields above. Display bgp routing-table dampening parameter syntax display bgp routing-table dampening parameter view any view parameters none description use the display bgp routing-table dampening parameter command to display bgp route dampening ...

  • Page 974

    974 c hapter 72: bgp c onfiguration c ommands description use the display bgp routing-table different-origin-as command to display bgp routes originating from different autonomous systems. Examples # display bgp routes originating from different ass. Display bgp routing-table different-origin-as bgp...

  • Page 976

    976 c hapter 72: bgp c onfiguration c ommands display bgp routing-table regular-expression syntax display bgp routing-table regular-expression as-regular-expression view any view parameters as-regular-expression: as regular expression. Description use the display bgp routing-table regular-expression...

  • Page 977

    977 undo ebgp-interface-sensitive view bgp view/bgp-vpn instance view parameters none description use the ebgp-interface-sensitive command to enable the clearing of ebgp session on any interface that becomes down. Use the undo ebgp-interface-sensitive command to disable the function. This function i...

  • Page 978

    978 c hapter 72: bgp c onfiguration c ommands rip process-id: filters outgoing routes redistributed from a rip process. The id is in the range 1 to 65535. Static: filters static routes. If no routing protocol is specified, all outgoing routes are filtered. Description use the filter-policy export co...

  • Page 979

    979 examples # in bgp view, reference acl 2000 to filter incoming routing information. System-view [sysname] bgp 100 [sysname-bgp] filter-policy 2000 import # in bgp-vpn instance view, reference acl 2000 to filter incoming routing information (the vpn has been created). System-view [sysname] bgp 100...

  • Page 980

    980 c hapter 72: bgp c onfiguration c ommands description use the graceful-restart timer restart command to configure the maximum time for a peer to reestablish a bgp session. Use the undo graceful-restart timer restart command to restore the default. By default, the maximum time for a peer to reest...

  • Page 981

    981 parameters group-name: name of a peer group, a string of 1 to 47 characters. External: creates an ebgp peer group, which can be the group of another sub as in a confederation. Internal: creates an ibgp peer group; not supported in bgp-vpn instance view. Description use the group command to creat...

  • Page 982

    982 c hapter 72: bgp c onfiguration c ommands route-policy-name: name of a routing policy used to filter redistributed routes, a string of 1 to 19 characters. Description use the import-route command to configure bgp to redistribute routes from a specified routing protocol and advertise redistribute...

  • Page 985

    985 use the undo peer advertise-ext-community command to disable the advertisement. By default, no extended community attribute is advertised to a peer/peer group. For related information, refer to “ip extcommunity-list” on page 1205, “if-match extcommunity” on page 1199 and “apply extcommunity” on ...

  • Page 986

    986 c hapter 72: bgp c onfiguration c ommands # in bgp-vpn instance view, configure the repeating times of the local as number as 2 for routes from peer 1.1.1.1 (the vpn has been created). System-view [sysname] bgp 100 [sysname-bgp] ipv4-family vpn-instance vpn1 [sysname-bgp-vpn1] peer 1.1.1.1 allow...

  • Page 988

    988 c hapter 72: bgp c onfiguration c ommands description use the peer capability-advertise conventional command to disable bgp multi-protocol extension and route refresh for a peer/peer group. Use the undo peer capability-advertise command to enable bgp multi-protocol extension and route refresh fo...

  • Page 990

    990 c hapter 72: bgp c onfiguration c ommands view bgp view/bgp-vpn instance view parameters group-name: name of a peer group, a string of 1 to 47 characters. Ip-address: ip address of a peer. Route-policy-name: routing policy name, a string of 1 to 19 characters. Description use the peer default-ro...

  • Page 991

    991 use the undo peer description command to remove the description information of a peer/peer group. By default, no description information is configured for a peer/peer group. Create a peer/peer group before configuring a description for it. Related commands: display bgp peer. Examples # in bgp vi...

  • Page 992

    992 c hapter 72: bgp c onfiguration c ommands system-view [sysname] bgp 100 [sysname-bgp] peer test ebgp-max-hop # in bgp-vpn instance view, allow establishing the ebgp connection with the peer group test that is on an indirectly connected network (the vpn has been created). System-view [sysname] bg...

  • Page 993

    993 description use the peer fake-as command to configure a fake local as number for a peer or peer group. Use the undo peer fake-as command to remove the configuration. By default, no fake local as number is configured for a peer or peer group. N the peer fake-as command is only applicable to an eb...

  • Page 994

    994 c hapter 72: bgp c onfiguration c ommands examples # in bgp view, apply the acl 2000 to filter routes advertised to the peer group test. System-view [sysname] bgp 100 [sysname-bgp] peer test filter-policy 2000 export # in bgp-vpn instance view, apply the acl 2000 to filter routes advertised to t...

  • Page 996

    996 c hapter 72: bgp c onfiguration c ommands export: applies the filter to routes advertised to the specified peer/peer group. Import: applies the filter to routes received from the specified peer/peer group. Description use the peer ip-prefix command to reference an ip prefix list to filter routes...

  • Page 997

    997 # in bgp-vpn instance view, save routing information from peer 131.100.1.1(the vpn has been created). System-view [sysname] bgp 100 [sysname-bgp] ipv4-family vpn-instance vpn1 [sysname-bgp-vpn1] peer 131.100.1.1 as-number 200 [sysname-bgp-vpn1] peer 131.100.1.1 keep-all-routes peer log-change (b...

  • Page 998

    998 c hapter 72: bgp c onfiguration c ommands parameters group-name: name of a peer group, a string of 1 to 47 characters. Ip-address: ip address of a peer. Description use the peer next-hop-local command to specify the router as the next hop for routes to a peer/peer group. Use the undo peer next-h...

  • Page 999

    999 use the undo peer password command to disable the function. By default, no md5 authentication is performed for tcp connection establishment. Once md5 authentication is enabled, both parties must be configured with the same authentication mode and password. Otherwise, the tcp connection will not ...

  • Page 1000

    1000 c hapter 72: bgp c onfiguration c ommands description use the peer preferred-value command to assign a preferred value to routes received from a peer or peer group. Use the undo peer preferred-value command to restore the default value. The default preferred value is 0. Routes learned from a pe...

  • Page 1001

    1001 description use the peer public-as-only command to not keep private as numbers in bgp updates sent to a peer/peer group. Use the undo peer public-as-only command to keep private as numbers in bgp updates sent to a peer/peer group. By default, bgp updates carry private as numbers. The command do...

  • Page 1003

    1003 parameters group-name: name of a peer group, a string of 1 to 47 characters. Ip-address: ip address of a peer. Route-policy-name: routing policy name, a string of 1 to 19 characters. Export: applies the routing policy to routes outgoing to the peer (or peer group). Import: applies the routing p...

  • Page 1004

    1004 c hapter 72: bgp c onfiguration c ommands description use the peer route-update-interval command to specify the interval for sending the same update to a peer/peer group. Use the undo peer route-update-interval command to restore the default value. By default, the interval is 5 seconds for ibgp...

  • Page 1007

    1007 parameters none description use the reflect between-clients command to enable route reflection between clients. Use the undo reflect between-clients command to disable this function. By default, route reflection between clients is enabled. After a route reflector is configured, it reflects the ...

  • Page 1009

    1009 ip-address: specifies the ip address of a peer with which to reset the connection. Flap-info: clears history information of routing flap. Group group-name: specifies to reset connections with the specified bgp peer group. External: resets all the ebgp connections. Internal: resets all the ibgp ...

  • Page 1010

    1010 c hapter 72: bgp c onfiguration c ommands as-path-acl-number: clears the flap statistics of routes matching an as path acl, number of which is in the range 1 to 256. Ip-address: clears the flap statistics of a route. Mask: network mask, in dotted decimal notation. Mask-length: mask length, in t...

  • Page 1011

    1011 you can specify a router id manually. If not, the system selects an ip address as the router id. The selection sequence is the highest ip address among loopback interface addresses; if not available, then the highest ip address of interfaces. It is recommended to specify a loopback interface ad...

  • Page 1012

    1012 c hapter 72: bgp c onfiguration c ommands [sysname-bgp] ipv4-family vpn-instance vpn1 [sysname-bgp-vpn1] summary automatic synchronization (bgp view) syntax synchronization undo synchronization view bgp view parameters none description use the synchronization command to enable the synchronizati...

  • Page 1013

    1013 use the undo timer command to restore the default. By default, bgp keepalive and holdtime intervals are 60s and 180s. Note that: ■ timer configured using the peer timer command is preferred to the timer configured using this command. ■ the holdtime interval must be at least three times the keep...

  • Page 1014

    1014 c hapter 72: bgp c onfiguration c ommands.

  • Page 1016

    1016 c hapter 73: bgp d ebugging c ommands // bgp configuration information debugging bgp all *aug 24 15:31:55:316 2006 sysname rm/6/rmdebug: bgp_timer: cr timer expired for peer 10.1.1.2 *aug 24 15:31:55:316 2006 sysname rm/6/rmdebug: bgp.: 10.1.1.2 current event is crtimerexpired. *aug 24 15:31:55...

  • Page 1017

    1017 length: 19 *aug 24 15:32:02:674 2006 sysname rm/6/rmdebug: bgp. : 10.1.1.2 current event is recvkeepalivemessage. *aug 24 15:32:02:674 2006 sysname rm/6/rmdebug: bgp.: 10.1.1.2 state is changed from openconfirm to established. // bgp has established the peer relationship successfully. N the dis...

  • Page 1018

    1018 c hapter 73: bgp d ebugging c ommands examples # enable detailed debugging for bgp when a bgp peer relationship is being established. Debugging bgp detail *aug 24 14:12:13:674 2006 sysname rm/6/rmdebug: bgp_l3vpn: recv update with following rd 100:1 destination 11.1.1.1 - received new vpnv4 rou...

  • Page 1019

    1019 the debugging bgp event command is used to enable bgp event debugging, which is mainly related to events triggering the bgp state machine transitions. After this debugging is enabled, information about all the bgp state machine transitions and the events triggering these transitions will be dis...

  • Page 1020

    1020 c hapter 73: bgp d ebugging c ommands view user view default level 1: monitor level parameters ipv4-address: ipv4 address of a peer. Ipv6-address: ipv6 address of a peer. Description use the debugging bgp graceful-restart command to enable gr event debugging for bgp. Use the undo debugging bgp ...

  • Page 1022

    1022 c hapter 73: bgp d ebugging c ommands for details about update message debugging information, refer to the following section. Examples # display the debugging information about all the bgp messages received and sent, including open, keepalive, update, and route-refresh, while device a and devic...

  • Page 1023

    1023 ipv4-unc (1/1) cap type: 2 (routerefresh) cap len: 0 // information about the received bgp open message *0.2683500 4945 rm/6/rmdebug: bgp.: 11.1.1.2 send keepalive length 19 // information about the sent bgp keepalive message *0.2683609 4945 rm/6/rmdebug: bgp.: 11.1.1.2 recv keepalive length: 1...

  • Page 1027

    1027 bgp.: send update to 11.1.1.2 for following destinations : origin : incomplete as path : next hop : 11.1.1.1 local pref : 100 med : 0 1.1.1.1/32, *sep 4 16:08:20:473 2006 sysname rm/6/rmdebug: bgp.: send update to 11.1.1.2 for following destinations : origin : incomplete as path : next hop : 11...

  • Page 1029

    1029 med : 0 origin : incomplete as path : next hop : 100::2 22::22/128, *sep 4 16:17:20:708 2006 sysname rm/6/rmdebug: bgp_ipv6.: recv update from peer 100::2 with following destinations : update message length : 78 local pref : 100 med : 0 origin : incomplete as path : next hop : 100::2 100::/64, ...

  • Page 1030

    1030 c hapter 73: bgp d ebugging c ommands examples # in an l2vpn environment, device a and device b have established a bgp peer relationship. Enable debugging for bgp update messages. Debugging bgp update l2vpn *0.84372 sysname rm/7/rmdebug: bgp.L2vpn: send update to 1.1.1.1 for following destinati...

  • Page 1031

    1031 receive: enables/disables the debugging for received bgp labeled route update packets. Send: enables/disables the debugging for sent bgp labeled route update packets. Verbose: displays detailed debugging information. Description use the debugging bgp update label-route command to enable debuggi...

  • Page 1034

    1034 c hapter 73: bgp d ebugging c ommands // information about the sent vpls update message *0.92566 sysname rm/7/rmdebug: bgp.Vpls: recv update from 1.1.1.1 with following destinations : update message length : 88 origin : igp as path : 100 next hop : 1.1.1.1 afi = 155(vpls) safi = 128(vpls) route...

  • Page 1036

    1036 c hapter 73: bgp d ebugging c ommands local pref : 100 med : 0 ext-community: 111.1.1.1/32 (rd 100:1,label 1024), *sep 4 16:14:32:22 2006 sysname rm/6/rmdebug: bgp_l3vpn.: recv update from 2.2.2.2 with following destinations : update message length : 92 local pref : 100 med : 0 ext-community: o...

  • Page 1038

    1038 c hapter 74: is-is c onfiguration c ommands examples # set the area authentication password to hello, and the authentication mode to simple. System-view [sysname] isis [sysname-isis-1] area-authentication-mode simple hello auto cost enable syntax auto-cost enable undo auto-cost enable view is-i...

  • Page 1039

    1039 parameters value: bandwidth reference value in mbps, ranging from 1 to 2147483648. Description use the bandwidth-reference command to set the bandwidth reference value for calculating link cost. Use the undo bandwidth-reference command to restore the default. By default, the reference value is ...

  • Page 1040

    1040 c hapter 74: is-is c onfiguration c ommands level-2: applies the link cost to level-2. Description use the circuit-cost command to set a global link cost. Use the undo circuit-cost command to restore the default. By default, the global link cost is not configured. If no keyword is specified, th...

  • Page 1041

    1041 use the undo cost-style command to restore the default. Only packets of narrow cost style can be received and sent by default. Related commands: isis cost. Examples # configure the router to send only packets of narrow cost style, but receive both narrow and wide cost style ones. System-view [s...

  • Page 1044

    1044 c hapter 74: is-is c onfiguration c ommands restart interval: 150 sa bit supported total number of interfaces = 1 restart status: restarting number of lsps awaited: 3 t3 timer status: remaining time: 239 t2 timer status: remaining time: 59 is-is(1) level-2 restart status restart interval: 150 s...

  • Page 1045

    1045 display isis interface, using the display isis interface verbose command displays other interface related information, such as csnp packets broadcast intervals, hello packets broadcast intervals and the number of invalid hello packets. Examples # display is-is enabled interface information. Dis...

  • Page 1046

    1046 c hapter 74: is-is c onfiguration c ommands display isis license syntax display isis license view any view parameters none description use the display isis license command to display the information of the is-is license. Examples # display the information of the is-is license. [sysname] display...

  • Page 1048

    1048 c hapter 74: is-is c onfiguration c ommands n if no level is specified, then both level-1 and level-2 (or level-1-2) link state databases are displayed by default. Description use the display isis lsdb command to display is-is link state database. Examples # display level-1 lsdb information. Di...

  • Page 1049

    1049 # display the configuration information of is-is mesh-group. [sysname-serial2/1] display isis mesh-group mesh group information for isis(1) ---------------------------------------------------------------------- interface status serial2/0 100 serial2/1 100 display isis name-table syntax display ...

  • Page 1050

    1050 c hapter 74: is-is c onfiguration c ommands view any view parameters verbose: when this parameter is used, the area address advertised in a neighbor’s hello packet will be displayed. Otherwise the system displays only the summary information. Process-id: specifies an is-is process id, in the ra...

  • Page 1051

    1051 parameters ipv4: displays is-is ipv4 routing information (the default). Verbose: displays is-is detailed ipv4 routing information. Process-id: specifies an is-is process id, in the range of 1 to 65535. Vpn-instance-name: specifies a vpn instance name, in the range of 1 to 31 characters. Level-1...

  • Page 1055

    1055 osi: specifies to check the osi related fields in a lsp. Whether a password should use ip or osi is not affected by the actual network environment. Description use the domain-authentication-mode command to configure the routing domain authentication mode to insert the area authentication passwo...

  • Page 1056

    1056 c hapter 74: is-is c onfiguration c ommands rip process-id: filters outgoing routes redistributed from a rip process. The process id is in the range of 1 to 65535. Bgp: filters outgoing routes redistributed from bgp. Direct: filters outgoing redistributed direct routes. Static: filters outgoing...

  • Page 1057

    1057 description use the filter-policy import command to configure is-is to filter incoming routing information. Use the undo filter-policy import command to disable is-is from filtering incoming routing information. Is-is does not filter incoming routing information by default. In some cases, only ...

  • Page 1058

    1058 c hapter 74: is-is c onfiguration c ommands examples # enable fast flooding and configure the maximum lsps be sent as 10 and the delay time as 100 milliseconds. System-view [sysname] isis [sysname-isis-1] flash-flood flood-count 10 max-timer-interval 100 graceful-restart (is-is view) syntax gra...

  • Page 1059

    1059 system-view [sysname] isis 1 [sysname-isis-1] graceful-restart interval 120 graceful-restart suppress-sa syntax graceful-restart suppress-sa undo graceful-restart suppress-sa view is-is view parameters none description use the graceful-restart suppress-sa command to set the sa (suppress-adverti...

  • Page 1060

    1060 c hapter 74: is-is c onfiguration c ommands view is-is view parameters isis [ process-id ]: redistributes routes from a specified isis process. Process-id is in the range of 1 to 65535. Ospf [ process-id ]: redistributes routes from a specified ospf process. Process-id is in the range of 1 to 6...

  • Page 1061

    1061 n using the import-route bgp command redistributes only ebgp routes. Using the import-route bgp allow-ibgp command redistributes also ibgp routes, but this may cause routing loops. Be cautious with this command. Examples # redistribute static routes and set the cost to 15. System-view [sysname]...

  • Page 1062

    1062 c hapter 74: is-is c onfiguration c ommands system-view [sysname] isis [sysname-isis-1] import-route isis level-2 into level-1 isis syntax isis [ process-id ] [ vpn-instance vpn-instance-name ] undo isis [ process-id ] view system view parameters process-id: process id, ranging from 1 to 65535....

  • Page 1063

    1063 level-1: specifies to set the password for level-1. Level-2: specifies to set the password for level-2. Ip: specifies the system to check ip related fields in a lsp. Osi: specifies the system to check osi related fields in a lsp. Whether a password should use ip or osi is not affected by the ac...

  • Page 1064

    1064 c hapter 74: is-is c onfiguration c ommands description use the isis circuit-level command to configure link adjacency level for an interface of a level-1-2 router. Use the undo isis circuit-level command to restore the default. An interface can establish level-1-2 adjacency by default. This co...

  • Page 1066

    1066 c hapter 74: is-is c onfiguration c ommands description use the isis dis-name command to configure a name for local lan. If the local router is the dis, the name will be advertised in a pseudonode lsp packet. Use the undo isis dis-name command to disable this function. No name is configured by ...

  • Page 1067

    1067 isis enable syntax isis enable [ process-id ] undo isis enable view interface view parameters process-id: specifies a is-is process id, ranging from 1 to 65535. The default is 1. Description use the isis enable command to enable an is-is routing process on the interface. Use the undo isis enabl...

  • Page 1068

    1068 c hapter 74: is-is c onfiguration c ommands an interface is not in any mesh group by default. For an interface not in a mesh group, it follows the normal process to flood the received lsps to other interfaces. For the nbma network with high connectivity and multiple point-to-point links, this w...

  • Page 1069

    1069 system-view [sysname] interface serial 2/0 [sysname-serial2/0] isis peer-ip-ignore isis enable syntax isis silent undo isis silent view interface view parameters none description use the isis silent command to disable the interface from sending and receiving is-is hello packets. Use the undo is...

  • Page 1071

    1071 parameters seconds: specifies the interval in seconds for sending hello packets, ranging from 3 to 255. Level-1: specifies the interval for sending level-1 hello packets. Level-2: specifies the time interval for sending level-2 hello packets. Description use the isis timer hello command to spec...

  • Page 1072

    1072 c hapter 74: is-is c onfiguration c ommands description use the isis timer holding-multiplier command to configure the number of hello intervals, within which if the interface receive no hello packets, its neighbor is considered dead. Use the undo isis timer holding-multiplier command to restor...

  • Page 1073

    1073 n this command is not available in loopback interface view. Examples # configure the interval as 500 milliseconds for sending lsps on interface serial 2/0. System-view [sysname] interface serial2/0 [sysname-serial2/0] isis timer lsp 500 isis timer retransmit syntax isis timer retransmit seconds...

  • Page 1074

    1074 c hapter 74: is-is c onfiguration c ommands parameters level-1: configures the router to work on level-1, which means it only calculates routes within the area, and maintains the l1 lsdb. Level-1-2: configures the router to work on level-1-2, which means it calculates routes and maintains the l...

  • Page 1075

    1075 is-name map syntax is-name map sys-id map-sys-name undo is-name map sys-id view is-is view parameters sys-id: system id or a pseudonode id of a remote is. Map-sys-name: specifies a name for the remote is, a string of 1 to 64 characters. Description use the is-name map command to map a name to a...

  • Page 1076

    1076 c hapter 74: is-is c onfiguration c ommands log-peer-change (is-is view) syntax log-peer-change undo log-peer-change view is-is view parameters none description use the log-peer-change command to enable logging on is-is adjacency state changes. Use the undo log-peer-change command to disable th...

  • Page 1077

    1077 description use the lsp-fragments-extend command to enable lsp fragment extension in a specified mode and level. Use the undo lsp-fragments-extend command to disable this feature. The feature is disabled by default. Note the following: ■ after lsp fragment extension is enabled in an is-is proce...

  • Page 1078

    1078 c hapter 74: is-is c onfiguration c ommands lsp-length receive syntax lsp-length receive size undo lsp-length receive view is-is view parameters size: maximum size of received lsps, in the range of 512 to 16384 bytes. Description use the lsp-length receive command to configure the maximum size ...

  • Page 1079

    1079 network-entity syntax network-entity net undo network-entity net view is-is view parameters net: network entity title (net) in the format of x...X.Xxxx....Xxxx.00, with the first part x...X being the area address, the middle part xxxx....Xxxx (a total of 12 “x”) being the router’s system id and...

  • Page 1080

    1080 c hapter 74: is-is c onfiguration c ommands description use the preference command to configure the preference for is-is protocol. Use the undo preference command to restore the default. By default, the is-is protocol preference is 15. If a routing policy is specified in this command, the prefe...

  • Page 1082

    1082 c hapter 74: is-is c onfiguration c ommands interlevel: allows advertising ip address prefixes learnt from different is-is levels with the allow keyword specified. External: allows advertising ip address prefixes learnt from other routing protocols with the allow keyword specified. Description ...

  • Page 1085

    1085 examples # set the maximum lsp generation interval to 10 seconds, initial interval to 100 milliseconds and the incremental interval to 200 milliseconds. System-view [sysname] isis [sysname-isis-1]timer lsp-generation 10 100 200 # set the maximum lsp generation interval to 15 seconds. System-vie...

  • Page 1086

    1086 c hapter 74: is-is c onfiguration c ommands parameters seconds: specifies the lsp refresh interval in seconds, ranging from 1 to 65534. Description use the timer lsp-refresh command to set the lsp refresh interval. Use the undo timer lsp-refresh to restore the default. The default is 900 second...

  • Page 1087

    1087 examples # set the maximum spf calculation interval to 10 seconds, minimum interval to 100 milliseconds and the incremental interval to 200 milliseconds. System-view [sysname] isis [sysname-isis-1]timer spf 10 100 200 # set the maximum spf calculation interval to 15 seconds. System-view [sysnam...

  • Page 1088

    1088 c hapter 74: is-is c onfiguration c ommands.

  • Page 1090

    1090 c hapter 75: is-is d ebugging c ommands general-error: enables debugging for is-is errors. Graceful-restart: enables debugging for is-is gr. Ha-events: enables debugging for data hot backup. This keyword takes effect only on a distributed device. Interface-information: enables is-is interface d...

  • Page 1091

    1091 rxed hellotype hello on circuitname, from snpa snpa is-is received a hello packet. Hellotype: hello packet type: lan l1, lan l2, or p2p. Circuitname: interface name snpa: source mac address of the packet. Sending hellotype hello on circuitname is-is is sending a hello packet. Hellotype: hello p...

  • Page 1092

    1092 c hapter 75: is-is d ebugging c ommands rxed hellotype iih on circuitname contains duplicate ip address. Iih discarded the received hello packet was discarded because it contains a duplicate ip address. Hellotype: hello packet type: lan l1, lan l2, or p2p. Circuitname: interface name rxed hello...

  • Page 1093

    1093 table 245 description on the fields of the debugging isis checksum-error command field description for all processes of the vpn instance vpn-instance-name , is-is checksum errors debugging is on the lsp checksum error debugging is enabled for all the is-is processes of the vpn instance. For the...

  • Page 1094

    1094 c hapter 75: is-is d ebugging c ommands table 247 description on the fields of the debugging isis datalink-receiving-packet command field description circuit not operationally on interface is not ready for operation. Sys not functional. Ignoring recvd packet system is not functioning and theref...

  • Page 1095

    1095 rst: leveltype t1 timer expired on circname, counter: count gr timer expired. Leveltype: system type, which can be l1 or l2. Count: number of times gr timer has started. Circname: interface name rst: restart complete in millisecond ms gr is complete. Millisecond: length of gr duration in millis...

  • Page 1096

    1096 c hapter 75: is-is d ebugging c ommands table 253 description on the fields of the debugging isis receiving-packet-content command field description rxed pdulevel csnp from sourceid (circuitname). Is-is received a csnp packet. Pdulevel: l1 or l2. Sourceid: source nsap address of the csnp packet...

  • Page 1097

    1097 updt: adding redist address ipaddress into pdulevel lsps, the redistributed route was being added to the local lsps. Updt: updating lsp option success is-is updated the lsp tlv successfully. Updt: error adding summary reachability in pdulevel lsps is-is failed to add a summary address to the lo...

  • Page 1098

    1098 c hapter 75: is-is d ebugging c ommands sending pdulevel csnp pdu fails sending csnp packets failed. Pdulevel: pdu packet level, which can be l1 or l2. Sending csnp on p2p interface circuitname a csnp packet is being sent through the p2p interface. Failed to send csnp pdu sending a csnp pdu fai...

  • Page 1099

    1099 ispf—node :(l syslevel)(mt topotype) create(exist) node. Sourceid [overload] the spf node was created or the node already exists. Syslevel: system level topotype: topology type sourceid: source system id. Isis—procid—ispf—adj adjacency-related information procid: is-is process id. Isis—procid—i...

  • Page 1100

    1100 c hapter 75: is-is d ebugging c ommands tent: new distance from rootnode(sourceid: sourceid) to the node(sourceid: sourceid) is distancevalue. The distance to the root node is updated. Sourceid: source system id. Tent:equal cost, add node(sourceid: sourceid) to tent heap the distances from the ...

  • Page 1101

    1101 spf—prc:received l syslevel system change event for msgstring, change = chgevent spfnode change was sent to prc for processing. Syslevel: system level msgstring: node change event type. Spf—prc:inform l syslevel change to area and route, total change node:totalnum inform system id changes to th...

  • Page 1102

    1102 c hapter 75: is-is d ebugging c ommands table 261 description on the fields of the debugging isis update-packet command field description pdu length: pdulen length of received pdu adjacency usage: adjtype adjacency type fast flood leveltype lsp before spf lsps are fast-flooded before spf calcul...

  • Page 1103

    1103 examples # router a and router b are interconnected. On router a, an is-is process is created with a system id of 0000.0000.0001 and router type of level-1-2; is-is is enabled on vlan-interface 100 with the ip address 100.1.1.1/24. On router b, another is-is process is created with a system id ...

  • Page 1104

    1104 c hapter 75: is-is d ebugging c ommands // the ip address took effect on the is-is interface. # router a and router b are interconnected and have established an is-is adjacency with each other. Router a is elected as the dis. Enable debugging for the received is-is packets on router a and route...

  • Page 1105

    1105 isis-1-spf-eve: processing lsps of system :0000.0000.0001.00 isis-1-spf-eve: updating level-1 forwarding table isis-1-spf-eve: level-1 spf run completed // l1 spf calculation was running and the l1 is-is routing table was updated. Isis-1-spf-eve: running level -2 spf run isis-1-spf-eve: adding ...

  • Page 1106

    1106 c hapter 75: is-is d ebugging c ommands.

  • Page 1107: Ospf C

    76 ospf c onfiguration c ommands n ■ refer to “mpls te configuration commands” on page 1565 for ospf te related commands. ■ refer to “mpls l2vpn configuration commands” on page 1645 and “mpls l3vpn configuration commands” on page 1671. Abr-summary (ospf area view) syntax abr-summary ip-address { mas...

  • Page 1108

    1108 c hapter 76: ospf c onfiguration c ommands examples # summarize networks 36.42.10.0/24 and 36.42.110.0/24 in area1 with 36.42.0.0/16 for advertisement to other areas. System-view [sysname] ospf 100 [sysname-ospf-100] area 1 [sysname-ospf-100-area-0.0.0.1] network 36.42.10.0 0.0.0.255 [sysname-o...

  • Page 1109

    1109 tag tag: specifies a tag value for the summary route, used by a route policy to control route advertisement, in the range 0 to 4294967295. The value defaults to 1. Cost cost: specifies the cost of the summary route, in the range 1 to 16777214. For type-1 external routes, the cost defaults to th...

  • Page 1110

    1110 c hapter 76: ospf c onfiguration c ommands description use the authentication-mode command to specify an authentication mode for the ospf area. Use the undo authentication-mode command to cancel a specified authentication mode. By default, no authentication mode is configured for an ospf area. ...

  • Page 1112

    1112 c hapter 76: ospf c onfiguration c ommands related commands: stub (ospf area view), nssa. Examples # configure area1 as a stub area, and specify the cost of the default route advertised to the stub area as 20. System-view [sysname] ospf 100 [sysname-ospf-100] area 1 [sysname-ospf-100-area-0.0.0...

  • Page 1113

    1113 the default-route-advertise summary cost command is applicable only to vpns, and the default route is redistributed in a type-3 lsa. The pe router advertises the redistributed default route to the ce router. Related commands: import-route (ospf view) examples # generate a default route in an as...

  • Page 1114

    1114 c hapter 76: ospf c onfiguration c ommands parameters process-id: ospf process id, in the range 1 to 65535. Description use the display ospf abr-asbr command to display information about abr/asbr. If no process is specified, abr/asbr information of all ospf processes is displayed. If you use th...

  • Page 1115

    1115 related commands: asbr-summary. Examples # display information about all summarized redistributed routes. Display ospf asbr-summary ospf process 1 with router id 2.2.2.2 summary addresses total summary address count: 1 summary address net : 30.1.0.0 mask : 255.255.0.0 tag : 20 status : advertis...

  • Page 1116

    1116 c hapter 76: ospf c onfiguration c ommands display ospf brief ospf process 1 with router id 192.168.1.2 ospf protocol information routerid: 192.168.1.2 border router: nssa route tag: 0 multi-vpn-instance is not enabled applications supported: mpls traffic-engineering spf-schedule-interval: 5 0 ...

  • Page 1117

    1117 display ospf cumulative syntax display ospf [ process-id ] cumulative view any view parameters process-id: ospf process id, in the range 1 to 65535. Description use the display ospf cumulative command to display ospf statistics. Use of this command is helpful for troubleshooting. Examples # dis...

  • Page 1118

    1118 c hapter 76: ospf c onfiguration c ommands sum-asbr: 0 external: 0 nssa: 0 opq-link: 0 opq-area: 0 opq-as: 0 lsas originated: 4 lsas received: 7 routing table: intra area: 2 inter area: 3 ase/nssa: 0 display ospf error syntax display ospf [ process-id ] error view any view parameters process-id...

  • Page 1119

    1119 description use the display ospf error command to display ospf error information. If no process is specified, ospf error information of all ospf processes is displayed. Examples # display ospf error information. Display ospf error ospf process 1 with router id 192.168.80.100 ospf packet error s...

  • Page 1122

    1122 c hapter 76: ospf c onfiguration c ommands area: 0.0.0.0 type linkstate id advrouter age len sequence metric router 192.168.0.2 192.168.0.2 474 36 80000004 0 router 192.168.0.1 192.168.0.1 21 36 80000009 0 network 192.168.0.1 192.168.0.1 321 32 80000003 0 sum-net 192.168.1.0 192.168.0.1 321 28 ...

  • Page 1123

    1123 display ospf nexthop syntax display ospf [ process-id ] nexthop view any view parameters process-id: ospf process id, in the range 1 to 65535. Description use the display ospf nexthop command to display ospf next hop information. If no ospf process is specified, next hop information of all ospf...

  • Page 1125

    1125 # display brief ospf neighbor information. Display ospf peer ospf process 1 with router id 1.1.1.1 neighbor brief information area: 0.0.0.0 router id address pri dead-time interface state 1.1.1.2 1.1.1.2 1 40 eth0/1/0 full/dr display ospf peer statistics syntax display ospf [ process-id ] peer ...

  • Page 1126

    1126 c hapter 76: ospf c onfiguration c ommands if no ospf process is specified, ospf neighbor statistics of all ospf processes is displayed. Examples # display ospf neighbor statistics. Display ospf peer statistics ospf process 1 with router id 1.1.1.1 neighbor statistics area id down attempt init ...

  • Page 1127

    1127 examples # display ospf request list information. Display ospf request-queue ospf process 1 with router id 1.1.1.1 ospf request list the router’s neighbor is router id 2.2.2.2 address 10.1.1.2 interface 10.1.1.1 area 0.0.0.0 request list: type linkstate id advrouter sequence age router 2.2.2.2 ...

  • Page 1128

    1128 c hapter 76: ospf c onfiguration c ommands the router’s neighbor is router id 2.2.2.2 address 10.1.1.2 interface 10.1.1.1 area 0.0.0.0 retransmit list: type linkstate id advrouter sequence age router 2.2.2.2 2.2.2.2 80000004 1 network 12.18.0.1 2.2.2.2 80000003 1 sum-net 12.18.1.0 2.2.2.2 80000...

  • Page 1129

    1129 total nets: 2 intra area: 1 inter area: 1 ase: 0 nssa: 0 display ospf vlink syntax display ospf [ process-id ] vlink view any view parameters process-id: ospf process id, in the range 1 to 65535. Description use the display ospf vlink command to display ospf virtual link information. If no ospf...

  • Page 1130

    1130 c hapter 76: ospf c onfiguration c ommands enable link-local-signaling syntax enable link-local-signaling undo enable link-local-signaling view ospf view parameters none description use the enable link-local-signaling command to enable the ospf link-local signaling (llc) capability. Use the und...

  • Page 1131

    1131 use the undo enable command to disable specified logging. Ospf logging is disabled by default. If no keyword is specified, all logging is enabled. Examples # enable ospf logging. System-view [sysname] ospf 100 [sysname-ospf-100] enable log enable out-of-band-resynchronization syntax enable out-...

  • Page 1132

    1132 c hapter 76: ospf c onfiguration c ommands export: filters exported lsas. Description use the filter command to configure exported/imported summary lsas filtering on an abr. Use the undo filter command to disable summary lsa filtering. By default, summary lsas filtering is disabled. N this comm...

  • Page 1134

    1134 c hapter 76: ospf c onfiguration c ommands parameters nonstandard: enables the non-ietf gr capability. Ietf: enables the ietf gr capability. Description use the graceful-restart command to enable the ospf graceful restart capability. Use the undo graceful-restart command to disable the ospf gra...

  • Page 1135

    1135 description use the graceful-restart help command to configure for which ospf neighbors the current router can serve as a gr helper. (the neighbors are specified by the acl or the ip prefix list.) by default, the router can serve as a gr helper for any ospf neighbor. Examples # enable gr help f...

  • Page 1136

    1136 c hapter 76: ospf c onfiguration c ommands view ospf area view parameters ip-address: ip address of a host cost: cost of the route, in the range 1 to 65535. Description use the host-advertise command to advertise a host route. Use the undo host-advertise command to remove a host route. No host ...

  • Page 1137

    1137 no route redistribution is configured by default. Ospf prioritize routes as follows: ■ intra-area route ■ inter-area route ■ type1 external route ■ type2 external route an intra-area route is a route in an ospf area. An inter-area route is between any two ospf areas. Both of them are internal r...

  • Page 1138

    1138 c hapter 76: ospf c onfiguration c ommands description use the log-peer-change command to enable the logging of ospf neighbor state changes. Use the undo log-peer-change command to disable the logging. The logging is enabled by default. With this feature enabled, information about neighbor stat...

  • Page 1139

    1139 lsa-generation-interval syntax lsa-generation-interval maximum-interval [ initial-interval [ incremental-interval ] ] undo lsa-generation-interval view ospf view parameters maximum-interval: maximum lsa generation interval in seconds, in the range 1 to 60. Initial-interval: minimum lsa generati...

  • Page 1140

    1140 c hapter 76: ospf c onfiguration c ommands description use the lsdb-overflow-limit command to specify the upper limit of external lsas in the lsdb. Use the undo lsdb-overflow-limit command to cancel limitation. External lsas in the lsdb are unlimited by default. Examples # specify the upper lim...

  • Page 1141

    1141 description use the maximum-routes command to specify the maximum route number of a specified type: inter-area, intra-area, external. Use the undo maximum-routes command to restore the default route maximum value of a specified type. Examples # specify the maximum number of intra-area routes as...

  • Page 1142

    1142 c hapter 76: ospf c onfiguration c ommands undo nssa view ospf area view parameters default-route-advertise: usable on an nssa abr or an asbr only. If it is configured on an nssa abr, the abr generates a default route in a type-7 lsa into the nssa regardless of whether the default route is avai...

  • Page 1145

    1145 [sysname-ospf-100-area-0.0.0.1] network 131.119.0.0 0.0.255.255 [sysname-ospf-100-area-0.0.0.1] authentication-mode md5 [sysname-ospf-100-area-0.0.0.1] quit [sysname-ospf-100] quit [sysname] interface serial 2/0 [sysname-serial2/0] ospf authentication-mode md5 15 cipher abc # configure the netw...

  • Page 1146

    1146 c hapter 76: ospf c onfiguration c ommands system-view [sysname] interface serial2/0 [sysname-serial2/0] ospf cost 65 ospf dr-priority syntax ospf dr-priority priority undo ospf dr-priority view interface view parameters priority: dr priority of the interface, in the range 0 to 255. Description...

  • Page 1147

    1147 system-view [sysname] ospf mib-binding 100 # restore the default, that is, bind the first enabled ospf process to mib operation system-view [sysname] undo ospf mib-binding ospf mtu-enable syntax ospf mtu-enable undo ospf mtu-enable view interface view parameters none description use the ospf mt...

  • Page 1148

    1148 c hapter 76: ospf c onfiguration c ommands p2mp: specifies the network type as p2mp. P2p: specifies the network type as p2p. Description use the ospf network-type command to set the network type for an ospf interface. Use the undo ospf network-type command to restore the default network type fo...

  • Page 1149

    1149 description use the ospf timer dead command to set the dead interval. Use the undo ospf timer dead command to restore the default. The dead interval defaults to 40s for broadcast, p2p interfaces and defaults to 120s for p2mp and nbma interfaces if an interface receives no hello packet from the ...

  • Page 1150

    1150 c hapter 76: ospf c onfiguration c ommands system-view [sysname] interface serial 2/0 [sysname-serial2/0] ospf timer hello 20 ospf timer poll syntax ospf timer poll seconds undo ospf timer poll view interface view parameters seconds: poll interval in seconds, in the range 1 to 2147483647. Descr...

  • Page 1151

    1151 use the undo ospf timer retransmit command to restore the default. The interval defaults to 5s. After sending a lsa, an interface waits for an acknowledgement packet. If the interface receives no acknowledgement when the retransmit interval elapses, it will retransmit the lsa. The retransmit in...

  • Page 1152

    1152 c hapter 76: ospf c onfiguration c ommands undo peer ip-address view ospf view parameters ip-address: neighbor ip address. Dr-priority: neighbor dr priority, in the range 0 to 255, the bigger the value, the higher the priority. Description use the peer command to specify the ip address of an nb...

  • Page 1153

    1153 route-policy-name: rout policy name, a string of 1 to 19 characters. Value: priority value, in the range 1 to 255. A smaller value has a higher priority. Description use the preference command to set the priority of ospf routes. Use the undo preference command to restore the default. The priori...

  • Page 1154

    1154 c hapter 76: ospf c onfiguration c ommands view user view parameters process-id: ospf process id, in the range 1 to 65535. Description use the reset ospf process command to reset all ospf processes or a specified process. Using the reset ospf process command will: ■ clear all invalid lsas witho...

  • Page 1155

    1155 use the undo rfc1583 compatible command to disable the function. By default, rfc1583 routing rules are compatible. On selecting the best route when multiple as external lsas describe routes to the same destination, rfc1583 and rfc2328 have different routing rules. Examples # make rfc1583 routin...

  • Page 1157

    1157 examples # enable the sending of snmp traps for all ospf processes. System-view [sysname] snmp-agent trap enable ospf spf-schedule-interval syntax spf-schedule-interval maximum-interval [ minimum-interval [ incremental-interval ] ] undo spf-schedule-interval view ospf view parameters maximum-in...

  • Page 1158

    1158 c hapter 76: ospf c onfiguration c ommands view ospf area view parameters no-summary: used only on a stub abr. With it configured, the abr advertises only a default route in a summary lsa into the stub area (such a stub area is known as a totally stub area). Description use the stub command to ...

  • Page 1160

    1160 c hapter 76: ospf c onfiguration c ommands description use the vlink-peer command to create and configure a virtual link. Use the undo vlink-peer command to remove a virtual link. As defined in rfc2328, all non-backbone areas must maintain connectivity to the backbone. You can use the vlink-pee...

  • Page 1161: Rip C

    77 rip c onfiguration c ommands checkzero syntax checkzero undo checkzero view rip view parameters none description use the checkzero command to enable the zero field check on rip-1 messages. Use the undo checkzero command to disable the zero field check. The zero field check is enabled by default. ...

  • Page 1162

    1162 c hapter 77: rip c onfiguration c ommands by default, the default metric of redistributed routes is 0. When you use the import-route command to redistribute routes from other protocols without specifying a metric, the metric specified by the default cost command applies. Related commands: impor...

  • Page 1163

    1163 parameters process-id: rip process number, in the range of 1 to 65535. Vpn-instance vpn-instance-name: specifies a vpn instance name, a string of 1 to 31 characters. Description use the display rip command to display the current status and configuration information of the specified rip process....

  • Page 1164

    1164 c hapter 77: rip c onfiguration c ommands display rip database syntax display rip process-id database view any view parameters process-id: rip process number, in the range of 1 to 65535. Description use the display rip database command to display the active routes in the rip database, which are...

  • Page 1165

    1165 display rip interface syntax display rip process-id interface [ interface-type interface-number ] view any view parameters process-id: rip process number, in the range of 1 to 65535. Interface-type interface-number: specifies an interface. Description use the display rip interface command to di...

  • Page 1168

    1168 c hapter 77: rip c onfiguration c ommands ip-prefix ip-prefix-name: name of the ip prefix list used for filtering outbound routes, a string of 1 to 19 characters. Protocol: filters outbound routes redistributed from a specified routing protocol, which can be bgp, direct, isis, ospf, rip, and st...

  • Page 1169

    1169 ip-prefix ip-prefix-name: references an ip prefix list to filter received routes. The ip-prefix-name is a string of 1 to 19 characters. Gateway ip-prefix-name: references an ip prefix list to filter routes from the gateway. Interface-type interface-number: specifies an interface. Description us...

  • Page 1171

    1171 system-view [sysname] rip 1 [sysname-rip-1] import-route static cost 4 # set the default cost for redistributed routes to 3. [sysname-rip-1] default cost 3 # redistribute ospf routes with the cost being the default cost. [sysname-rip-1] import-route ospf maximum load-balancing (rip view) syntax...

  • Page 1172

    1172 c hapter 77: rip c onfiguration c ommands rip runs only on the interfaces attached to the specified network. For an interface not on the specified network, rip neither receives/sends routes on it nor forwards interface route through it. Therefore, you need to specify the network after enabling ...

  • Page 1173

    1173 parameters route-policy-name: routing policy name with 1 to 19 characters. Value: priority for rip route, in the range of 1 to 255. The smaller the value, the higher the priority. Description use the preference command to specify the rip route priority. Use the undo preference route-policy comm...

  • Page 1174

    1174 c hapter 77: rip c onfiguration c ommands parameters process-id: rip process number, in the range of 1 to 65535. The default is 1. Vpn-instance vpn-instance-name: specifies a vpn instance name, a string of 1 to 31 characters. Description use the rip command to create a rip process and enter rip...

  • Page 1175

    1175 password: plain text authentication string with 1 to 16 characters. Description use the rip authentication-mode command to configure rip-2 authentication mode and parameters. Use the undo rip authentication-mode command to cancel authentication. Note that the key string you configured can overw...

  • Page 1176

    1176 c hapter 77: rip c onfiguration c ommands rip metricin syntax rip metricin value undo rip metricin view interface view parameters value: additional metric added to received routes, in the range of 0 to 16. Description use the rip metricin command to add a metric to the received routes. Use the ...

  • Page 1177

    1177 examples # configure an additional metric of 12 for rip routes sent on ethernet1/0. System-view [sysname] interface ethernet1/0 [sysname-ethernet1/0] rip metricout 12 rip mib-binding syntax rip mib-binding process-id undo rip mib-binding view system view parameters process-id: rip process numbe...

  • Page 1178

    1178 c hapter 77: rip c onfiguration c ommands related commands: rip input. Examples # enable serial 2/0 to receive rip messages. System-view [sysname] interface serial 2/0 [sysname-serial2/0] rip output rip poison-reverse syntax rip poison-reverse undo rip poison-reverse view interface view paramet...

  • Page 1179

    1179 ■ in special cases, make sure it is necessary to disable the split horizon function. ■ in frame relay, x.25 and other non-broadcast multi-access (nbma) networks, split horizon should be disabled if multiple vcs are configured on the primary and secondary interfaces to ensure route advertisement...

  • Page 1180

    1180 c hapter 77: rip c onfiguration c ommands undo rip triggered view interface view parameters none description use the rip triggered command to enable triggered rip. Use the undo rip triggered command to disable triggered rip. By default, the triggered rip is disabled. Note that triggered rip can...

  • Page 1181

    1181 ■ send rip-1 broadcast messages ■ receive rip-1 broadcast messages ■ receive rip-1 unicast messages when rip-2 runs on the interface in broadcast mode, the interface will: ■ send rip-2 broadcast messages ■ receive rip-1 broadcast messages ■ receive rip-1 unicast messages ■ receive rip-2 broadca...

  • Page 1182

    1182 c hapter 77: rip c onfiguration c ommands system-view [sysname] rip 100 [sysname-rip-100] silent-interface all [sysname-rip-100] undo silent-interface ethernet1/0 [sysname-rip-100] network 131.108.0.0 summary syntax summary undo summary view rip view parameters none description use the summary ...

  • Page 1183

    1183 timeout-value: timeout timer time in seconds, in the range of 1 to 3,600. Update-value: update timer time in seconds, in the range of 1 to 3,600. Description use the timers command to configure rip timers. By adjusting rip timers, you can improve network performance. Use the undo timers command...

  • Page 1184

    1184 c hapter 77: rip c onfiguration c ommands view rip view parameters retransmit-count-value: upper limit for retransmitting an update request or update response, in the range 1 to 3600. Description use the trip retransmit count command to configure the upper limit for retransmitting an update req...

  • Page 1185

    1185 validate-source-address syntax validate-source-address undo validate-source-address view rip view parameters none description use the validate-source-address command to enable the source ip address validation on incoming rip routing updates. Use the undo validate-source-address command to disab...

  • Page 1186

    1186 c hapter 77: rip c onfiguration c ommands ■ if no rip version is specified for the interface and the global version is rip-1, the interface inherits rip-1, and then it can send rip-1 broadcasts, and receive rip-1 broadcasts and unicasts. ■ if no rip version is specified for the interface and th...

  • Page 1187: Outing

    78 r outing p olicy c ommon c onfiguration c ommands n routing policy common configuration commands are applicable to both ipv4 and ipv6. Apply as-path syntax apply as-path as-number& [ replace ] undo apply as-path view routing policy view parameters as-number: autonomous system number, in the range...

  • Page 1188

    1188 c hapter 78: r outing p olicy c ommon c onfiguration c ommands undo apply comm-list view routing policy view parameters comm-list-number: community list number. The basic community list number ranges from 1 to 99. The advanced community list number ranges from 100 to 199. Description use the ap...

  • Page 1189

    1189 no-export: sets the no-export community attribute for matched bgp routes. Routes with this attribute are not advertised out the autonomous system or confederation, but can be advertised to other sub ass in the confederation. Additive: adds the specified community attributes to the original comm...

  • Page 1191

    1191 additive: adds to the original community attribute of a route. Description use the apply extcommunity command to apply the specified extended community attribute to bgp routes. Use the undo apply extcommunity command to remove the clause configuration. No extended community attribute is set for...

  • Page 1192

    1192 c hapter 78: r outing p olicy c ommon c onfiguration c ommands apply local-preference syntax apply local-preference preference undo apply local-preference view routing policy view parameters preference: bgp local preference, in the range 0 to 4294967295. Description use the apply local-preferen...

  • Page 1194

    1194 c hapter 78: r outing p olicy c ommon c onfiguration c ommands description use the apply preference command to set a preference for a routing protocol. Use the undo apply preference command to remove the clause configuration. No preference is set for a routing protocol by default. If you set pr...

  • Page 1195

    1195 view routing policy view parameters value: tag value, in the range 0 to 4294967295. Description use the apply tag command to set a specified tag value for rip, ospf or is-is routing information. Use the undo apply tag command to remove the clause configuration. No routing tag is set for rip, os...

  • Page 1197

    1197 display route-policy syntax display route-policy [ route-policy-name ] view any view parameters route-policy-name: routing policy name, a string of 1 to 19 characters. Description use the display route-policy command to display routing policy information. All routing policy information will be ...

  • Page 1198

    1198 c hapter 78: r outing p olicy c ommon c onfiguration c ommands this command is one of the if-match clauses of a route policy, used for filtering bgp routing information and specifying match criteria according to the as path attribute of routing information. Related commands: route-policy, ip as...

  • Page 1199

    1199 examples # define community-list 1, allowing routing information with community number 100 or 200 to pass. Then define a routing policy named test, whose node 10 is defined with an if-match clause to reference the community-list for matching. System-view [sysname] ip community-list 1 permit 100...

  • Page 1200

    1200 c hapter 78: r outing p olicy c ommon c onfiguration c ommands &: indicates the argument before it can be entered up to 16 times. Description use the if-match extcommunity command to specify extended community list(s) for matching against the extended community attribute of routing information....

  • Page 1201

    1201 if-match mpls-label syntax if-match mpls-label undo if-match mpls-label view routing policy view parameters none description use the if-match mpls-label command to specify the mpls label match criterion. Use the undo if-match mpls-label command to remove the match criterion. The match criterion...

  • Page 1202

    1202 c hapter 78: r outing p olicy c ommon c onfiguration c ommands nssa-external-type1or2: ospf nssa type 1 or 2 external routes. Description use the if-match route-type command to configure a route type match criterion. Use the undo if-match route-type command to remove the match criterion. The ma...

  • Page 1203

    1203 view system view parameters as-path-number: as path acl number, in the range of 1 to 256. Deny: specifies the matching mode for the as path acl as deny. Permit: specifies the matching mode for the as path acl as permit. Regular-expression: regular expression of as path, a string of 1 to 50 char...

  • Page 1206

    1206 c hapter 78: r outing p olicy c ommon c onfiguration c ommands deny: specifies the matching mode of the routing policy node as deny. If a route satisfies all the if-match clauses of the node, it does not pass the filtering of the node and will not go to the next node. Node node-number: node num...

  • Page 1207: 4 R

    79 ip v 4 r outing p olicy c onfiguration c ommands apply ip-address next-hop syntax apply ip-address next-hop ip-address undo apply ip-address next-hop view routing policy view parameters ip-address: ip address of the next hop. Description use the apply ip-address next-hop command to set a next hop...

  • Page 1208

    1208 c hapter 79: ip v 4 r outing p olicy c onfiguration c ommands description use the display ip ip-prefix command to display the statistics of an ipv4 address prefix list. If no ip-prefix-name is specified, statistics for all ipv4 address prefix lists will be displayed. Related commands: ip ip-pre...

  • Page 1210

    1210 c hapter 79: ip v 4 r outing p olicy c onfiguration c ommands no ip prefix list based match criterion is configured by default. Related commands: if-match interface, if-match ip next-hop, if-match cost, if-match tag, route-policy, apply ip-address next-hop, apply cost, apply local-preference, a...

  • Page 1211

    1211 use the undo ip ip-prefix command to remove an ipv4 prefix list or an item. No ipv4 prefix list is configured by default. An ipv4 prefix list is used to filter ipv4 addresses. It may have multiple items, each of which specifies a range of ipv4 prefix. The filtering relation among items is logic...

  • Page 1212

    1212 c hapter 79: ip v 4 r outing p olicy c onfiguration c ommands.

  • Page 1213: 6 R

    80 ip v 6 r outing p olicy c onfiguration c ommands apply ipv6 next-hop syntax apply ipv6 next-hop ipv6-address undo apply ipv6 next-hop view routing policy view parameters ipv6-address: next hop ipv6 address. Description use the apply ipv6 next-hop command to apply a next hop to ipv6 routes. Use th...

  • Page 1216

    1216 c hapter 80: ip v 6 r outing p olicy c onfiguration c ommands the ipv6 address prefix list is used to filter ipv6 addresses. It may have multiple items, and each of them specifies a range of ipv6 prefix. The filtering relation among items is logic or, namely, a route passing an item will pass t...

  • Page 1217: Tatic

    81 s tatic r outing c onfiguration c ommands delete static-routes all syntax delete [ vpn-instance vpn-instance-name ] static-routes all view system view parameters vpn-instance-name: name of a vpn instance, a string of 1 to 31 case-sensitive characters. Description use the delete static-routes all ...

  • Page 1219

    1219 when configuring a unicast static route, note that: 1 if the destination ip address and the mask are both 0.0.0.0, the configured route is a default route. If routing table searching fails, the router will use the default route for packet forwarding. 2 different route management policies can be...

  • Page 1220

    1220 c hapter 81: s tatic r outing c onfiguration c ommands examples # configure a static route, whose destination address is 1.1.1.1/24, next hop address is 2.2.2.2, tag value is 45, and description information is “for internet & intranet”. System-view [sysname] ip route-static 1.1.1.1 24 2.2.2.2 t...

  • Page 1221: 6 Bgp C

    82 ip v 6 bgp c onfiguration c ommands balance (ipv6 address family view) syntax balance number undo balance view ipv6 address family view parameters number: number of bgp routes participating in load balancing, in the range 1 to 8. When it is set to 1, no load balancing is available. Description us...

  • Page 1222

    1222 c hapter 82: ip v 6 bgp c onfiguration c ommands description use the bestroute as-path-neglect command to configure the ipv6 bgp router to not evaluate the as_path during best route selection. Use the undo bestroute as-path-neglect command to configure the ipv6 bgp router to use the as_path dur...

  • Page 1223

    1223 description use the bestroute med-confederation command to enable the comparison of the med for paths from confederation peers for best route selection. Use the undo bestroute med-confederation command to disable the comparison. By default, this comparison is not enabled. With this feature enab...

  • Page 1225

    1225 default local-preference(ipv6 address family view) syntax default local-preference value undo default local-preference view ipv6 address family view parameters value: default local preference, in the range 0 to 4294967295. The larger the value is, the higher the preference is. Description use t...

  • Page 1226

    1226 c hapter 82: ip v 6 bgp c onfiguration c ommands value. In the case that all other conditions are the same, the system first selects the route with the smaller med value as the best route for the autonomous system. Examples # devices a and b belong to as100 and device c belongs to as200. C is t...

  • Page 1227

    1227 examples # display the information of the ipv6 peer group aaa. Display bgp ipv6 group aaa bgp peer-group is aaa remote as number not specified type : external maximum allowed prefix number: 4294967295 threshold: 75% configured hold timer value: 180 keepalive timer value: 60 minimum time between...

  • Page 1228

    1228 c hapter 82: ip v 6 bgp c onfiguration c ommands description use the display bgp ipv6 network command to display ipv6 routes advertised with the network command. Examples # display ipv6 routes advertised with the network command. Display bgp ipv6 network bgp local router id is 1.1.1.2. Local as...

  • Page 1230

    1230 c hapter 82: ip v 6 bgp c onfiguration c ommands display bgp ipv6 routing-table syntax display bgp ipv6 routing-table [ ipv6-address prefix-length ] view any view parameters ipv6-address: destination ipv6 address. Prefix-length: prefix length of the ipv6 address, in the range 0 to 128. Descript...

  • Page 1231

    1231 display bgp ipv6 routing-table as-path-acl syntax display bgp ipv6 routing-table as-path-acl as-path-acl-number view any view parameters as-path-acl-number: number of an as path acl permitted by which to display routing information, ranging from 1 to 256. Description use the display bgp ipv6 ro...

  • Page 1232

    1232 c hapter 82: ip v 6 bgp c onfiguration c ommands examples # display routes filtered through the as path acl 20. Display bgp ipv6 routing-table as-path-acl 20 bgp local router id is 30.30.30.1 status codes: * - valid, > - best, d - damped, h - history, i - internal, s - suppressed, s - stale ori...

  • Page 1234

    1234 c hapter 82: ip v 6 bgp c onfiguration c ommands bgp local router id is 1.1.1.1 status codes: * - valid, > - best, d - damped, h - history, i - internal, s - suppressed, s - stale origin : i - igp, e - egp, ? - incomplete *d network : 111:: prefixlen : 64 from : 122::1 reuse : 00:29:34 path/ogn...

  • Page 1235

    1235 view any view parameters none description use the display bgp ipv6 routing-table different-origin-as command to display ipv6 bgp routes originating from different autonomous systems. Examples # display ipv6 bgp routes from different ass. Display bgp ipv6 routing-table different-origin-as bgp lo...

  • Page 1236

    1236 c hapter 82: ip v 6 bgp c onfiguration c ommands display bgp ipv6 routing-table flap-info bgp local router id is 1.1.1.1 status codes: * - valid, > - best, d - damped, h - history, i - internal, s - suppressed, s - stale origin : i - igp, e - egp, ? - incomplete *d network : 111:: prefixlen : 6...

  • Page 1238

    1238 c hapter 82: ip v 6 bgp c onfiguration c ommands parameters as-regular-expression: as regular expression. Description use the display bgp ipv6 routing-table regular-expression command to display the routes permitted by the specified as regular expression. Examples # display routing information ...

  • Page 1239

    1239 ipv6-prefix-name: specifies the name of an ipv6 prefix list used to match against the destination address field of routing information. The name is a string of 1 to 19 characters. Protocol: filters routes redistributed from the routing protocol. It can be direct, isisv6, ospfv3, ripng, and stat...

  • Page 1241

    1241 med-value: applies the med value to redistributed routes. The value is in the range 0 to 4294967295. If not specified, the cost of the redistributed route is used as its med in the ipv6 bgp routing domain. Route-policy-name: name of a routing policy used to filter redistributed routes, a string...

  • Page 1242

    1242 c hapter 82: ip v 6 bgp c onfiguration c ommands view ipv6 address family view parameters ipv6-address: ipv6 address. Prefix-length: prefix length of the address, in the range 0 to 128. Short-cut: if the keyword is specified for an ebgp route, the route will use the local routing management val...

  • Page 1243

    1243 use the undo peer advertise-community command to remove the configuration. By default, no community attribute is advertised to any peer group/peer. Examples # advertise the community attribute to the peer 1:2::3:4. System-view [sysname] bgp 100 [sysname-bgp] ipv6-family [sysname-bgp-af-ipv6] pe...

  • Page 1244

    1244 c hapter 82: ip v 6 bgp c onfiguration c ommands ipv4-address: ipv4 address of a peer. Ipv6-address: ipv6 address of a peer. Number: specifies the repeating times of the local as number, in the range 1 to 10. The default number is 1. Description use the peer allow-as-loop command to configure i...

  • Page 1246

    1246 c hapter 82: ip v 6 bgp c onfiguration c ommands parameters ipv6-group-name: name of a peer group, a string of 1 to 47 characters. Ipv6-address: ipv6 address of a peer. Description use the peer capability-advertise route-refresh command to enable ipv6 bgp route-refresh. Use the undo peer capabi...

  • Page 1248

    1248 c hapter 82: ip v 6 bgp c onfiguration c ommands ipv6-address: ipv6 address of a peer. Description-text: description information for the peer/peer group, a string of 1 to 79 characters. Description use the peer description command to configure the description information for a peer/peer group. ...

  • Page 1250

    1250 c hapter 82: ip v 6 bgp c onfiguration c ommands description use the peer fake-as command to configure a fake local as number for a peer or peer group. Use the undo peer fake-as command to remove the configuration. By default, no fake local as number is configured for a peer or peer group. Exam...

  • Page 1252

    1252 c hapter 82: ip v 6 bgp c onfiguration c ommands after the peer ignore command is executed, the system terminates the active session(s) with the specified peer or peer group and clears all the related routing information. For a peer group, this means all the sessions with the peer group will be...

  • Page 1255

    1255 by default, the system sets the next hop of routes advertised to an ebgp peer/peer group to the local router, but does not set for routes outgoing to an ibgp peer/peer group. Examples # set the next hop of routes advertised to ebgp peer group test to the router itself. System-view [sysname] bgp...

  • Page 1257

    1257 description use the peer reflect-client command to configure the router as a route reflector and specify a peer/peer group as a client. Use the undo peer reflect-client command to remove the configuration. By default, neither route reflector nor client is configured. Related commands: reflect b...

  • Page 1261

    1261 view ipv6 address family view parameters external-preference: preference of ebgp route learned from an ebgp peer, in the range 1 to 255. Internal-preference: preference of ibgp route learned from an ibgp peer, in the range 1 to 255. Local-preference: preference of ipv6 bgp local route, in the r...

  • Page 1262

    1262 c hapter 82: ip v 6 bgp c onfiguration c ommands related commands: reflector cluster-id (ipv6 address family view) and peer reflect-client (ipv6 address family view). Examples # enable route reflection between clients. System-view [sysname] bgp 100 [sysname-bgp] ipv6-family [sysname-bgp-af-ipv6...

  • Page 1263

    1263 view user view parameters ipv4-address: soft-resets the connection with an ipv4 bgp peer. Ipv6-address: soft-resets the connection with an ipv6 bgp peer. All: soft-resets all ipv6 bgp connections. External: soft-resets ebgp connections. Group ipv6-group-name: soft-resets connections with a peer...

  • Page 1264

    1264 c hapter 82: ip v 6 bgp c onfiguration c ommands internal: resets all the ibgp connections. Description use the reset bgp ipv6 command to reset specified ipv4/ipv6 bgp connections. Examples # reset all the ipv6 bgp connections. Reset bgp ipv6 all reset bgp ipv6 dampening syntax reset bgp ipv6 d...

  • Page 1265

    1265 examples # clear the flap statistics of the routes matching as path acl 10. System-view [sysname] ip as-path-acl 10 permit ^100.*200$ [sysname] quit reset bgp ipv6 flap-info as-path-acl 10 router-id syntax router-id router-id undo router-id view bgp view parameters router-id: router id in ip ad...

  • Page 1266

    1266 c hapter 82: ip v 6 bgp c onfiguration c ommands description use the synchronization command to enable the synchronization between ipv6 bgp and igp. Use the undo synchronization command to disable the synchronization. The feature is disabled by default. With this feature enabled and when a non-...

  • Page 1267

    1267 related commands: peer timer (ipv6 address family view). Examples # configure keepalive interval and holdtime interval as 60 and 180 seconds. System-view [sysname] bgp 100 [sysname-bgp] ipv6-family [sysname-bgp-af-ipv6] timer keepalive 60 hold 180

  • Page 1268

    1268 c hapter 82: ip v 6 bgp c onfiguration c ommands.

  • Page 1269: 6 Is-Is C

    83 ip v 6 is-is c onfiguration c ommands n ipv6 is-is supports all the features of ipv4 is-is except that it advertises ipv6 routing information instead. This document describes only ipv6 is-is exclusive commands. Refer to “is-is configuration commands” on page 1037 for other is-is configuration com...

  • Page 1270

    1270 c hapter 83: ip v 6 is-is c onfiguration c ommands next hop : direct interface: eth0/1/0 flags: d-direct, r-added to rm, l-advertised in lsps, u-up/down bit set # display detailed ipv6 is-is routing information. Display isis route ipv6 verbose route information for isis(1) ---------------------...

  • Page 1272

    1272 c hapter 83: ip v 6 is-is c onfiguration c ommands ipv6 enable syntax ipv6 enable undo ipv6 enable view is-is view parameters none description use the ipv6 enable command to enable ipv6 for the ipv6 is-is process. Use the undo ipv6 enable command to disable ipv6. Ipv6 is disabled by default. To...

  • Page 1273

    1273 common configuration commands” on page 1187 for routing policy information. Protocol: filter routes redistributed from the specified routing protocol before advertisement. The routing protocol can be bgp4+, direct, isisv6, ospfv3, ripng or static at present. If no protocol is specified, routes ...

  • Page 1274

    1274 c hapter 83: ip v 6 is-is c onfiguration c ommands ipv6-prefix-name: name of an ipv6 prefix list used to filter incoming routes, a string of 1 to 19 characters. Route-policy-name: name of a routing policy used to filter incoming routes, a string of 1 to 19 characters. Description use the ipv6 f...

  • Page 1275

    1275 tag: specifies an administrative tag number for the redistributed routes, in the range of 1 to 4294967295. Allow-ibgp: allows redistributing ibgp routes. This keyword is optional when the protocol is bgp4+. Description use the ipv6 import-route command to enable ipv6 is-is to redistribute route...

  • Page 1276

    1276 c hapter 83: ip v 6 is-is c onfiguration c ommands description use the ipv6 import-route isisv6 level-2 into level-1 to enable ipv6 is-is route leaking from level-2 to level-1. Use the undo ipv6 import-route isisv6 level-2 into level-1 command to disable the leaking. The leaking is disabled by ...

  • Page 1277

    1277 route-policy-name: name of a routing policy, a string of 1 to 19 characters. Description use the ipv6 preference command to configure the preference for ipv6 is-is protocol. Use the undo ipv6 preference command to configure the default preference for ipv6 is-is protocol. The default preference ...

  • Page 1278

    1278 c hapter 83: ip v 6 is-is c onfiguration c ommands use the undo ipv6 summary command to remove the summary route. Route summarization is disabled by default. Configuring summary routes can reduce the size of the route table, lsps and lsdb. Routes to be summarized can be is-is routes or redistri...

  • Page 1279: 6 Ospf

    84 ip v 6 ospf v 3 c onfiguration c ommands abr-summary (ospfv3 area view) syntax abr-summary ipv6-address prefix-length [ not-advertise ] undo abr-summary ipv6-address prefix-length view ospfv3 area view parameters ipv6-address: destination ipv6 address of the summary route. Prefix-length: prefix l...

  • Page 1280

    1280 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands view ospfv3 view parameters area-id: id of an area, a decimal integer (in the range of 0 to 4294967295 and changed to ipv4 address format by the system) or an ipv4 address. Description use the area command to enter ospfv3 area view. N the un...

  • Page 1281

    1281 undo default-cost view ospfv3 area view parameters value: specifies a cost for the default route advertised to the stub area, in the range of 0 to 65535. The default is 1. Description use the default-cost command to specify the cost of the default route to be advertised to the stub area. Use th...

  • Page 1282

    1282 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands display ospfv3 syntax display ospfv3 [ process-id ] view any view parameters process-id: specifies the id of an ospfv3 process, ranging from 1 to 65535. Description use the display ospfv3 command to display ospfv3 brief information. If no pr...

  • Page 1285

    1285 ---------------------------------------------------------------- link state id origin router age seqnum cksum link 0.0.0.0 5.5.5.5 0263 0x80000002 0x823f 1 0.0.0.0 6.6.6.6 0264 0x80000003 0x625a 1 network-lsa (area 0.0.0.0) ---------------------------------------------------------------- link s...

  • Page 1286

    1286 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands display ospfv3 lsdb statistic syntax display ospfv3 lsdb statistic view any view parameters none description use the display ospfv3 lsdb statistic command to display lsa statistics in the ospfv3 lsdb. Examples # display ospfv3 lsdb statistic...

  • Page 1287

    1287 display ospfv3 next-hop syntax display ospfv3 [ process-id ] next-hop view any view parameters process-id: specifies id of an ospfv3 process, ranging from 1 to 65535. Description use the display ospfv3 next-hop command to display ospfv3 next hop information. If no process is specified, next hop...

  • Page 1288

    1288 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands ■ if no area-id is specified, the neighbor information of all areas is displayed. ■ if no process-id is specified, the information of all processes is displayed. ■ if no interface or neighbor router-id is specified, the neighbor information ...

  • Page 1289

    1289 display ospfv3 peer statistic syntax display ospfv3 peer statistic view any view parameters none description use the display ospfv3 peer statistic command to display information about all ospfv3 neighbors on the router, that is, numbers of neighbors in different states. Examples # display infor...

  • Page 1290

    1290 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands description use the display ospfv3 request-list command to display ospfv3 link state request list. If no process is specified, link state request list information of all ospfv3 processes is displayed. Examples # display the information of os...

  • Page 1291

    1291 statistics: displays link state retransmission list statistics. Description use the display ospfv3 retrans-list command to display ospfv3 link state retransmission list. If no process is specified, link state retransmission list information of all ospfv3 processes is displayed. Examples # displ...

  • Page 1292

    1292 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands parameters process-id: specifies the id of an ospfv3 process, ranging from 1 to 65535. Ipv6-address: ipv6 address prefix. Prefix-length: prefix length, in the range 0 to 128. Abr-routes: specifies to display routes to abr. Asbr-routes: speci...

  • Page 1293

    1293 display ospfv3 statistic syntax display ospfv3 statistic view any view parameters none description use the display ospfv3 statistic command to display outbound/inbound ospfv3 packet statistics on associated interface(s). Examples # display outbound/inbound ospfv3 packet statistics on associated...

  • Page 1294

    1294 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands area-id: the id of an area, a decimal integer (in the range of 0 to 4294967295) that is translated into ipv4 address format by the system or an ipv4 address. Description use the display ospfv3 topology command to display ospfv3 topology info...

  • Page 1296

    1296 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands use the undo filter-policy export command to remove the configuration. If no protocol is specified, all redistributed routes will be filtered. By default, ipv6 ospfv3 does not filter redistributed routes. N using the filter-policy export com...

  • Page 1298

    1298 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands # configure ospfv3 process 100 to redistribute the routes found by ospfv3 process 160. System-view [sysname] ospfv3 100 [sysname-ospfv3-100] import-route ospfv3 160 log-peer-change syntax log-peer-change undo log-peer-change view ospfv3 view...

  • Page 1299

    1299 system-view [sysname] ospfv3 1 [sysname-ospfv3-1] maximum load-balancing 6 ospfv3 syntax ospfv3 [ process-id ] undo ospfv3 [ process-id ] view system view parameters process-id: specifies the id of an ospfv3 process, ranging from 1 to 65535. The process id defaults to 1. Description use the osp...

  • Page 1300

    1300 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands description use the ospfv3 area command to enable an ospfv3 process on the interface and specify the area for the process. Use the undo ospfv3 area command to disable an ospfv3 process. Ospfv3 is not enabled on an interface by default. Examp...

  • Page 1301

    1301 parameters priority: dr priority, in the range 0 to 255. Instance-id: id of the instance an interface belongs to, in the range 0 to 255, which defaults to 0. Description use the ospfv3 dr-priority command to set the dr priority for an interface of an instance. Use the undo ospfv3 dr-priority co...

  • Page 1302

    1302 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands view interface view parameters seconds: dead time in seconds, ranging from 1 to 65535, instance-id: the instance id of an interface, in the range of 0 to 255, which defaults to 0. Description use the ospfv3 timer dead command to configure th...

  • Page 1303

    1303 related commands: ospfv3 timer dead. Examples # configure the hello interval as 20 seconds for an interface of instance 1. System-view [sysname] interface serial 2/0 [sysname-serial2/0] ospfv3 timer hello 20 instance 1 ospfv3 timer retransmit syntax ospfv3 timer retransmit interval [ instance i...

  • Page 1304

    1304 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands parameters seconds: transmission delay in seconds, ranging from 1 to 3600. The default is 1. Instance-id: the instance id of an interface, in the range of 0 to 255, with the default as 0. Description use the ospfv3 trans-delay command to con...

  • Page 1305

    1305 system-view [sysname] ospfv3 [sysname-ospfv3-1] preference 150 router-id syntax router-id router-id undo router-id view ospfv3 view parameters router-id: a 32-bit router id, in ipv4 address format. Description use the router-id command to configure the ospfv3 router id. Use the undo router-id c...

  • Page 1306

    1306 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands use the undo silent-interface command to restore the default. An interface is able to send ospfv3 packets by default. Multiple processes can disable the same interface from sending ospfv3 packets, but use of the silent-interface command take...

  • Page 1307

    1307 stub(ospfv3 area view) syntax stub [ no-summary ] undo stub view ospfv3 area view parameters no-summary: this argument is only applicable to the abr of a stub area. With it configured, the abr advertises only a default route in a summary-lsa to the stub area (such an area is called a totally st...

  • Page 1308

    1308 c hapter 84: ip v 6 ospf v 3 c onfiguration c ommands dead seconds: specifies the neighbor dead time in seconds, ranging from 1 to 32768, with the default as 40. This value must equal to the dead seconds configured on the virtual link peer router, and at least four times the value of hello seco...

  • Page 1309: 6 Rip

    85 ip v 6 rip ng c onfiguration c ommands checkzero syntax checkzero undo checkzero view ripng view parameters none description use the checkzero command to enable the zero field check on ripng packets. Use the undo checkzero command to disable the zero field check. The zero field check is enabled b...

  • Page 1310

    1310 c hapter 85: ip v 6 rip ng c onfiguration c ommands by default, the default metric of redistributed routes is 0. The specified default metric applies to routes redistributed by the import-route command that has no metric specified. Related commands: import-route. Examples # set the default metr...

  • Page 1311

    1311 display ripng database syntax display ripng process-id database view any view parameters process-id: ripng process number, in the range of 1 to 65535. Description use the display ripng database command to display all active routes in the ripng advertising database, which are sent in normal ripn...

  • Page 1312

    1312 c hapter 85: ip v 6 rip ng c onfiguration c ommands display ripng interface syntax display ripng process-id interface [ interface-type interface-number ] view any view parameters process-id: ripng process number, in the range of 1 to 65535. Interface-type interface-number: specified an interfac...

  • Page 1313

    1313 display ripng route syntax display ripng process-id route view any view parameters process-id: ripng process number, in the range of 1 to 65535. Description use the display ripng route command to display all ripng routes and timers associated to each route of a ripng process. Examples # display...

  • Page 1315

    1315 ipv6-prefix ipv6-prefix-name: specifies the name of an ipv6 prefix list to filter incoming routes, in the range 1 to 19 characters. Description use the filter-policy import command to filter incoming routing information. Only routes which match the filtering policy can be received. Use the undo...

  • Page 1316

    1316 c hapter 85: ip v 6 rip ng c onfiguration c ommands ■ you can configure a routing policy to redistribute only needed routes. ■ you can specify a cost for redistributed routes using keyword cost. Related commands: default cost on page 1280. Examples # redistribute ipv6-is-is routes (process 7) a...

  • Page 1317

    1317 preference: ripng route priority, in the range of 1 to 255. Description use the preference command to specify the ripng route priority. Use the undo preference route-policy command to restore the default. By default, the priority of a ripng route is 100. Using the route-policy keyword can set a...

  • Page 1319

    1319 parameters process-id: ripng process number, in the range of 1 to 65535. Description use the ripng enable command to enable ripng on the specified interface. Use the undo ripng enable command to disable ripng on the specified interface. By default, ripng is disabled on an interface. Examples # ...

  • Page 1320

    1320 c hapter 85: ip v 6 rip ng c onfiguration c ommands parameters value: additional metric to advertised routes, in the range of 1 to 16. Description use the ripng metricout command to configure an additional metric for ripng routes advertised by an interface. Use the undo rip metricout command to...

  • Page 1321

    1321 description use the rip split-horizon command to enable the split horizon function. Use the undo rip split-horizon command to disable the split horizon function. By default, the split horizon function is enabled. Note that: ■ the split horizon function is necessary for preventing routing loops....

  • Page 1322

    1322 c hapter 85: ip v 6 rip ng c onfiguration c ommands examples # assign an ipv6 address with the 64-bit prefix to ethernet1/0 and configure a summary with the 35-bit prefix. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] ipv6 address 2001:200::3eff:fe11:6770/64 [sysname-ethern...

  • Page 1323

    1323 garbage-collect timer expires, the route will completely be deleted from the routing table. Note that: ■ you are not recommended to change the default values of these timers under normal circumstances. ■ the lengths of these timers must be kept consistent on all routers and access servers in th...

  • Page 1324

    1324 c hapter 85: ip v 6 rip ng c onfiguration c ommands.

  • Page 1325: 6 S

    86 ip v 6 s tatic r outing c onfiguration c ommands delete ipv6 static-routes all syntax delete ipv6 static-routes all view system view parameters none description use the delete ipv6 static-routes all command to delete all static routes including the default route. When using this command, you will...

  • Page 1329

    1329 related command: multicast forwarding-table downstream-limit, multicast forwarding-table route-limit and display multicast routing-table. Example # view the multicast forwarding table information in the public network instance. Display multicast forwarding-table multicast forwarding table of vp...

  • Page 1332

    1332 c hapter 87: m ulticast r outing and f orwarding c onfiguration c ommands display multicast routing-table multicast routing table of vpn-instance: public net total 1 entry 00001. (172.168.0.2, 227.0.0.1) uptime: 00:00:28 upstream interface: ethernet1/1 list of 2 downstream interfaces 1: etherne...

  • Page 1333

    1333 preference = 1, order = 1 running configuration = ip rpf-route-static 10.10.0.0 16 2.2.2.2 order 1 # view the configuration information of multicast static routes in the public instance. Display multicast routing-table static config multicast routing table of vpn-instance: public net routes : 1...

  • Page 1334

    1334 c hapter 87: m ulticast r outing and f orwarding c onfiguration c ommands example # view all the rpf information of multicast source 192.168.1.55 in the public network. Display multicast rpf-info 192.168.1.55 rpf information about source 192.168.1.55: rpf interface: ethernet1/0, rpf neighbor: 1...

  • Page 1335

    1335 protocol: routing protocol, which can have any of the following values: ■ bgp: specifies the bgp protocol ■ isis: specifies the is-is protocol ■ ospf: specifies the ospf protocol ■ rip: specifies the rip protocol process-id: process number of the unicast routing protocol, in the range of 1 to 6...

  • Page 1336

    1336 c hapter 87: m ulticast r outing and f orwarding c onfiguration c ommands static route to check whether the route has been successfully configured or whether the route has taken effect. Related command: display multicast routing-table static. Example # configure a multicast static route to the ...

  • Page 1337

    1337 -2 4.4.4.7 incoming interface address: 6.6.6.7 previous-hop router address: 0.0.0.0 input packet count on incoming interface: 2 output packet count on outgoing interface: 259 total number of packets for this source-group pair: 8100 protocol: pim forwarding ttl: 0 forwarding code: no error multi...

  • Page 1338

    1338 c hapter 87: m ulticast r outing and f orwarding c onfiguration c ommands use the undo multicast boundary command to remove a multicast forwarding boundary. By default, no multicast forwarding boundary is configured. Note that: ■ a multicast forwarding boundary sets the boundary condition for t...

  • Page 1339

    1339 related command: display multicast forwarding-table. Example # set the maximum number of downstream nodes for a single route in the multicast forwarding table of the public instance to 120. System-view [sysname] multicast forwarding-table downstream-limit 120 # set the maximum number of downstr...

  • Page 1341

    1341 example # configure route selection based on the longest match in the public instance. System-view [sysname] multicast longest-match # configure route selection based on the longest match in vpn instance mvpn. System-view [sysname] ip vpn-instance mvpn [sysname-vpn-instance-mvpn] multicast long...

  • Page 1342

    1342 c hapter 87: m ulticast r outing and f orwarding c onfiguration c ommands use the undo multicast routing-enable command to disable ip multicast routing. Ip multicast routing is disabled by default. Note that: ■ you must enable ip multicast routing in the public instance or vpn instance before y...

  • Page 1343

    1343 incoming-interface: specifies to clear multicast forwarding entries of which the incoming interface is the specified one. Interface-type interface-number: specifies an interface by its type and number. Register: specifies the register interface of pim-sm. All: specifies to clear all the forward...

  • Page 1344

    1344 c hapter 87: m ulticast r outing and f orwarding c onfiguration c ommands multicast source address, this argument has an effective value range of 0 to 32. The system default is 32 in both cases. Incoming-interface: specifies the incoming interface of multicast routing entries. Interface-type in...

  • Page 1346

    1346 c hapter 88: igmp c onfiguration c ommands group address last reporter uptime expires 225.1.1.1 20.20.20.20 00:02:04 00:01:15 225.1.1.3 20.20.20.20 00:02:04 00:01:15 225.1.1.2 20.20.20.20 00:02:04 00:01:17 # display the detailed information of multicast group 225.1.1.1 in the public instance. D...

  • Page 1347

    1347 example # view the detailed igmp configuration and operation information on ethernet 1/0 in the public interface. Display igmp interface ethernet 1/0 verbose ethernet1/0(10.10.1.20): igmp is enabled current igmp version is 2 value of query interval for igmp(in seconds): 60 value of other querie...

  • Page 1349

    1349 fast-leave (igmp view) syntax fast-leave [ group-policy acl-number ] undo fast-leave view public instance igmp view, vpn instance igmp view parameter acl-number: basic acl number, in the range of 2000 to 2999. Description use the fast-leave command to enable the fast-leave function for multicas...

  • Page 1350

    1350 c hapter 88: igmp c onfiguration c ommands related command: igmp enable, and multicast routing-enable on page 1341. Example # enable ip multicast routing in the public instance and enter public instance igmp view. System-view [sysname] multicast routing-enable [sysname] igmp [sysname-igmp] # en...

  • Page 1351

    1351 igmp fast-leave syntax igmp fast-leave [ group-policy acl-number ] undo igmp fast-leave view interface view parameter acl-number: basic acl number, in the range of 2000 to 2999. If you do not include this option in your command, this command will take effect for all multicast groups. Descriptio...

  • Page 1352

    1352 c hapter 88: igmp c onfiguration c ommands by default, no multicast group filter is configured, namely a host can join any multicast group. N when you use an advanced acl as a filter, the source address in the acl rule is the address of the multicast source specified in the igmpv3 reports, rath...

  • Page 1353

    1353 view interface view parameter interval: maximum response time in seconds for igmp general queries, with an effective range of 1 to 25. Description use the igmp max-response-time command to configure the maximum response time for igmp general queries on the current interface. Use the undo igmp m...

  • Page 1354

    1354 c hapter 88: igmp c onfiguration c ommands igmp robust-count syntax igmp robust-count robust-value undo igmp robust-count view interface view parameter robust-value: igmp querier robustness variable, with an effective range of 2 to 5. The igmp robustness variable determines the number of genera...

  • Page 1355

    1355 example # disable insertion of the router-alert option into igmp messages that leave ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] undo igmp send-router-alert igmp static-group syntax igmp static-group group-address [ source source-address ] undo igmp static-g...

  • Page 1356

    1356 c hapter 88: igmp c onfiguration c ommands igmp timer other-querier-present syntax igmp timer other-querier-present interval undo igmp timer other-querier-present view interface view parameter interval: igmp other querier present interval in seconds, in the range of 60 to 300. Description use t...

  • Page 1357

    1357 by default, the igmp query interval is 60 seconds. Related command: timer query (igmp view), igmp timer other-querier-present, display igmp interface. Example # set the igmp general query interval to 125 seconds on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0]...

  • Page 1358

    1358 c hapter 88: igmp c onfiguration c ommands description use the last-member-query-interval command to configure the global igmp last-member query interval. Use the undo last-member-query-interval command to restore the global igmp last member query interval to the system default. By default, the...

  • Page 1359

    1359 undo require-router-alert view public instance igmp view, vpn instance igmp view parameter none description use the require-router-alert command to configure globally the router to discard igmp messages that do not carry the router-alert option. Use the undo require-router-alert command to rest...

  • Page 1360

    1360 c hapter 88: igmp c onfiguration c ommands a multicast source address, this argument has an effective value range of 0 to 32. The system default is 32 in both cases. Description use the reset igmp group command to clear igmp forwarding entries. Note that: ■ when clearing the igmp forwarding ent...

  • Page 1361

    1361 related command: igmp robust-count, timer query (igmp view), last-member-query-interval, timer other-querier-present (igmp view), display igmp interface. Example # set the igmp querier robustness variable to 3 globally in the public instance. System-view [sysname] igmp [sysname-igmp] robust-cou...

  • Page 1362

    1362 c hapter 88: igmp c onfiguration c ommands use the undo timer other-querier-present command to restore the system default. By default, the igmp other querier present interval is [ igmp query interval ] times [ igmp querier robustness variable ] plus [ maximum response time for igmp general quer...

  • Page 1363

    1363 version (igmp view) syntax version version-number undo version view public instance igmp view, vpn instance igmp view parameter version-number: igmp version, in the range of 1 to 3. Description use the version command to configure the global igmp version. Use the undo version command to restore...

  • Page 1364

    1364 c hapter 88: igmp c onfiguration c ommands.

  • Page 1365: Msdp C

    89 msdp c onfiguration c ommands cache-sa-enable syntax cache-sa-enable undo cache-sa-enable view public instance msdp view, vpn instance msdp view parameter none description use the cache-sa-enable command to enable the sa message cache mechanism. Use the undo cache-sa-enable command to disable the...

  • Page 1366

    1366 c hapter 89: msdp c onfiguration c ommands listen: displays the information of msdp peers in the listening state. Shutdown: displays the information of msdp peers in the deactivated state. Up: displays the information of msdp peers in the in-session state. Description use the display msdp brief...

  • Page 1367

    1367 description use the display msdp peer-status command to view the detailed msdp peer status information. Related command: peer connect-interface, peer description, peer mesh-group, peer minimum-ttl, peer request-sa-enable, peer sa-cache-maximum, peer sa-policy, and peer sa-request-policy. Exampl...

  • Page 1369

    1369 parameter vpn-instance-name: vpn instance name, a case sensitive string of up to 31 characters. All-instance: specifies all vpn instances. Group-address: multicast group address in the (s, g) entry, in the range of 224.0.1.0 to 239.255.255.255. Source-address: multicast source address in the (s...

  • Page 1371

    1371 encap-data-enable syntax encap-data-enable undo encap-data-enable view public instance msdp view, vpn instance msdp view parameter none description use the encap-data-enable command to enable register message encapsulation in sa messages. Use the undo encap-data-enable command to disable regist...

  • Page 1372

    1372 c hapter 89: msdp c onfiguration c ommands in addition to controlling sa message creation by using this command, you can also configure a filtering rule for forwarding and receiving sa messages by using the peer sa-policy command. Related command: peer sa-policy. Example # configure the msdp pe...

  • Page 1373

    1373 # enable ip multicast routing in vpn instance mvpn, and enable msdp in vpn instance mvpn and enter msdp view of vpn instance mvpn. System-view [sysname] ip vpn-instance mvpn [sysname-vpn-instance-mvpn]route-distinguisher 100:1 [sysname-vpn-instance-mvpn] multicast routing-enable [sysname-vpn-in...

  • Page 1374

    1374 c hapter 89: msdp c onfiguration c ommands use the undo peer connect-interface command to remove an msdp peer connection. No msdp peer connection is created by default. Be sure to carry out this command before you use any other peer command; otherwise the system will prompt that the peer does n...

  • Page 1375

    1375 undo peer peer-address mesh-group view public instance msdp view, vpn instance msdp view parameter peer-address: msdp peer address. Name: mesh group name, a string of 1 to 32 characters (case sensitive). Description use the peer mesh-group command to configure an msdp peer as a mesh group membe...

  • Page 1376

    1376 c hapter 89: msdp c onfiguration c ommands system-view [sysname] msdp [sysname-msdp] peer 110.10.10.1 minimum-ttl 10 peer request-sa-enable syntax peer peer-address request-sa-enable undo peer peer-address request-sa-enable view public instance msdp view, vpn instance msdp view parameter peer-a...

  • Page 1377

    1377 description use the peer sa-cache-maximum command to configure the maximum number of sa messages that the device can cache. Use the undo peer sa-cache-maximum command to restore the default setting. By default, the device can cache a maximum of 8,192 sa messages. Related command: display msdp s...

  • Page 1378

    1378 c hapter 89: msdp c onfiguration c ommands system-view [sysname] acl number 3100 [sysname-acl-adv-3100] rule permit ip source 170.15.0.0 0.0.255.255 destination 225.1.0.0 0.0.255.255 [sysname-acl-adv-3100] quit [sysname] msdp [sysname-msdp] peer 125.10.7.6 connect-interface ethernet 1/0 [sysnam...

  • Page 1379

    1379 parameter vpn-instance-name: vpn instance name, a case sensitive string of up to 31 characters. All-instance: specifies all vpn instances. Peer-address: address of the msdp peer with which the tcp connection is to be reset. If you do not provide this argument, the tcp connections with all msdp ...

  • Page 1381

    1381 system-view [sysname] msdp [sysname-msdp] shutdown 125.10.7.6 static-rpf-peer syntax static-rpf-peer peer-address [ rp-policy ip-prefix-name ] undo static-rpf-peer peer-address view public instance msdp view, vpn instance msdp view parameter peer-address: msdp peer address. Rp-policy ip-prefix-...

  • Page 1382

    1382 c hapter 89: msdp c onfiguration c ommands timer retry syntax timer retry interval undo timer retry view public instance msdp view, vpn instance msdp view parameter interval: interval between msdp peer connection retries, in seconds. The effective range is 1 to 60. Description use the timer ret...

  • Page 1383: Pim C

    90 pim c onfiguration c ommands auto-rp enable syntax auto-rp enable undo auto-rp enable view public instance pim view, vpn instance pim view parameter none description use the auto-rp enable command to enable auto-rp. Use the undo auto-rp enable command to disable auto-rp. By default, auto-rp is di...

  • Page 1384

    1384 c hapter 90: pim c onfiguration c ommands use the undo bsr-policy command to remove the restriction of the bsr address range. By default, there are no restrictions on the bsr address range, namely all the received bsr messages are regarded to be valid. Example # configure a legal bsr address ra...

  • Page 1385

    1385 c-bsr admin-scope syntax c-bsr admin-scope undo c-bsr admin-scope view public instance pim view, vpn instance pim view parameter none description use the c-bsr admin-scope command to enable bsr administrative scoping to implement rp-set distribution based on bsr admin-scope regions. Use the und...

  • Page 1386

    1386 c hapter 90: pim c onfiguration c ommands related command: c-bsr group, c-bsr hash-length (pim view), and c-bsr priority (pim view). Example # configure the router to be a c-bsr for the global scope zone in the public instance, with the priority of 1. System-view [sysname] pim [sysname-pim] c-b...

  • Page 1387

    1387 system-view [sysname] pim [sysname-pim] c-bsr group 239.0.0.0 255.0.0.0 priority 10 c-bsr hash-length (pim view) syntax c-bsr hash-length hash-length undo c-bsr hash-length view public instance pim view, vpn instance pim view parameter hash-length: hash mask length for rp selection calculation,...

  • Page 1388

    1388 c hapter 90: pim c onfiguration c ommands by default, the bootstrap timeout value is determined by this formula: bootstrap timeout = bootstrap interval × 2 + 10. N the default bootstrap interval is 60 seconds, so the default bootstrap timeout = 60 × 2 + 10 = 130 (seconds). Related command: c-bs...

  • Page 1389

    1389 view public instance pim view, vpn instance pim view parameter priority: priority of the c-bsr, in the range of 0 to 255. A larger value of this argument means a higher priority. Description use the c-bsr priority command to configure the global c-bsr priority. Use the undo c-bsr priority comma...

  • Page 1390

    1390 c hapter 90: pim c onfiguration c ommands no c-rps are configured by default. Note that: ■ if you do not specify a group range for the c-rp, the c-rp will serve all multicast groups. ■ if you wish a router to be a c-rp for multiple group ranges, you need to include these multiple group ranges i...

  • Page 1391

    1391 c-rp holdtime (pim view) syntax c-rp holdtime interval undo c-rp holdtime view public instance pim view, vpn instance pim view parameter interval: c-rp timeout in seconds, with an effective range of 1 to 65,535. Description use the c-rp holdtime command to configure the global c-rp timeout time...

  • Page 1392

    1392 c hapter 90: pim c onfiguration c ommands use the undo crp-policy command to remove the restrictions in c-rp address ranges and the ranges of served multicast groups. By default, there are no restrictions on c-rp address ranges and the address ranges of served groups, namely all received c-rp m...

  • Page 1393

    1393 candidate rp: 12.12.12.9(loopback1) priority: 0 holdtime: 150 advertisement interval: 60 next advertisement scheduled at: 00:00:48 candidate rp: 3.3.3.3(ethernet1/0) priority: 20 holdtime: 90 advertisement interval: 50 next advertisement scheduled at: 00:00:28 candidate rp: 5.5.5.5(ethernet1/1)...

  • Page 1394

    1394 c hapter 90: pim c onfiguration c ommands description use the display pim claimed-route command to view the information of unicast routes used by pim. If an (s, g) is marked spt, this (s, g) entry uses a unicast route. Example # view the information of all unicast routes used by pim in the publ...

  • Page 1395

    1395 crp: displays the number of c-rp-adv messages. Graft: displays the number of graft messages. Graft-ack: displays the number of graft-ack messages. Hello: displays the number of hello messages. Join-prune: displays the number of join/prune messages. State-refresh: displays the number of state re...

  • Page 1397

    1397 interface-type interface-number: displays the pim information on a particular interface. Verbose: displays the detailed pim information. Description use the display pim interface command to view the pim information on the specified interface or all interfaces. Example # view the pim information...

  • Page 1399

    1399 parameter vpn-instance-name: vpn instance name, a case sensitive string of up to 31 characters. All-instance: specifies all vpn instances. Mode: displays the information of join/prune messages to send in the specified pim mode. Pim modes include sm and ssm, which represent pim-sm and pim-ssm re...

  • Page 1400

    1400 c hapter 90: pim c onfiguration c ommands view any view parameter vpn-instance-name: vpn instance name, a case sensitive string of up to 31 characters. All-instance: specifies all vpn instances. Interface-type interface-number: displays the pim neighbor information on a particular interface. Ne...

  • Page 1401

    1401 interface: ethernet1/2 uptime: 00:00:10 expiry time: 00:00:30 dr priority: 1 generation id: 0x2acefe15 holdtime: 105 s lan delay: 500 ms override interval: 2500 ms state refresh interval: 60 s neighbor tracking: disabled display pim routing-table syntax display pim [ vpn-instance vpn-instance-n...

  • Page 1402

    1402 c hapter 90: pim c onfiguration c ommands match: displays routing entries of which the oil includes only the specified interface. Mode mode-type: specifies a pim mode, where mode-type can have the following values: ■ dm: specifies pim-dm. ■ sm: specifies pim-sm. ■ ssm: specifies pim-ssm. Flags ...

  • Page 1403

    1403 total 0 (*, g) entry; 1 (s, g) entry (172.168.0.12, 227.0.0.1) rp: 2.2.2.2 protocol: pim-sm, flag: spt loc act uptime: 02:54:43 upstream interface: ethernet1/0 upstream neighbor: null rpf prime neighbor: null downstream interface(s) information: total number of downstreams: 1 1: ethernet1/1 pro...

  • Page 1404

    1404 c hapter 90: pim c onfiguration c ommands group-address: address of the multicast group of which the rp information is to be displayed, in the range of 224.0.1.0 to 239.255.255.255. If you do not provide a group address, this command will display the rp information corresponding to all multicas...

  • Page 1405

    1405 hello-option dr-priority (pim view) syntax hello-option dr-priority priority undo hello-option dr-priority view public instance pim view, vpn instance pim view parameter priority: router priority for dr election, in the range of 0 to 4294967295. A larger value of this argument means a higher pr...

  • Page 1406

    1406 c hapter 90: pim c onfiguration c ommands this command is effective for both pim-dm and pim-sm. Related command: pim hello-option holdtime. Example # set the global value of the pim neighbor timeout time to 120 seconds in the public instance. System-view [sysname] pim [sysname-pim] hello-option...

  • Page 1407

    1407 parameter none description use the hello-option neighbor-tracking command to globally disable join suppression, namely enable neighbor tracking. Use the undo hello-option neighbor-tracking command to enable join suppression. By default, join suppression is enabled, namely neighbor tracking is d...

  • Page 1408

    1408 c hapter 90: pim c onfiguration c ommands holdtime assert (pim view) syntax holdtime assert interval undo holdtime assert view public instance pim view, vpn instance pim view parameter interval: assert timeout time in seconds, with an effective range of 7 to 2,147,483,647. Description use the h...

  • Page 1409

    1409 related command: holdtime assert (pim view), pim holdtime assert, and pim holdtime join-prune. Example # set the global value of the join/prune timeout time to 280 seconds in the public instance. System-view [sysname] pim [sysname-pim] holdtime join-prune 280 jp-pkt-size (pim view) syntax jp-pk...

  • Page 1410

    1410 c hapter 90: pim c onfiguration c ommands description use the jp-queue-size command to configure the maximum number of (s, g) entries in a join/prune message. Use the undo jp-queue-size command to restore the default setting. By default, a join/prune messages contains a maximum of 1,020 (s, g) ...

  • Page 1411

    1411 example # enable ip multicast routing in the public instance and enter public instance pim view. System-view [sysname] multicast routing-enable [sysname] pim [sysname-pim] # enable ip multicast routing in vpn instance mvpn and enter pim view of vpn instance mvpn. System-view [sysname] ip vpn-in...

  • Page 1412

    1412 c hapter 90: pim c onfiguration c ommands view interface view parameter none description use the pim dm command to enable pim-dm. Use the undo pim dm command to disable pim-dm. By default, pim-dm is disabled. Note that pim-dm cannot be used for multicast groups in the ssm group range. Related c...

  • Page 1413

    1413 pim hello-option holdtime syntax pim hello-option holdtime interval undo pim hello-option holdtime view interface view parameter interval: pim neighbor timeout time in seconds, with an effective range of 1 to 65,535. Description use the pim hello-option holdtime command to configure the pim nei...

  • Page 1414

    1414 c hapter 90: pim c onfiguration c ommands system-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] pim hello-option lan-delay 200 pim hello-option neighbor-tracking syntax pim hello-option neighbor-tracking undo pim hello-option neighbor-tracking view interface view parameter none des...

  • Page 1415

    1415 related command: pim hello-option lan-delay, hello-option lan-delay (pim view), and hello-option override-interval (pim view). Example # set the prune override interval to 2,000 milliseconds on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] pim hello-option ove...

  • Page 1416

    1416 c hapter 90: pim c onfiguration c ommands use the undo pim holdtime join-prune command to restore the default setting. By default, the join/prune timeout time is 210 seconds. Related command: holdtime assert (pim view), pim holdtime assert, and holdtime join-prune (pim view). Example # set the ...

  • Page 1417

    1417 use the undo pim sm command to disable pim-sm. By default, pim-sm is disabled. Related command: pim dm. Example # enable pim-sm on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] pim sm pim state-refresh-capable syntax pim state-refresh-capable undo pim state-re...

  • Page 1418

    1418 c hapter 90: pim c onfiguration c ommands description use the pim timer graft-retry command to configure the graft retry period. Use the undo pim timer graft-retry command to restore the default setting. By default, the graft retry period is 3 seconds. Example # set the graft retry period to 80...

  • Page 1419

    1419 description use the pim timer join-prune command to configure on the current interface the interval at which join/prune messages are sent. Use the undo pim timer join-prune command to restore the default setting. By default, the join/prune interval is 60 seconds. Related command: timer join-pru...

  • Page 1420

    1420 c hapter 90: pim c onfiguration c ommands description use the probe-interval command to configure the register probe time. Use the undo probe-interval command to restore the default setting. By default, the register probe time is 5 seconds. Related command: register-suppression-timeout (pim vie...

  • Page 1421

    1421 undo register-suppression-timeout view public instance pim view, vpn instance pim view parameter interval: register suppression timeout in seconds, in the range of 1 to 3,600. Description use the register-suppression-timeout command to configure the register suppression timeout time. Use the un...

  • Page 1423

    1423 source-policy (pim view) syntax source-policy acl-number undo source-policy view public instance pim view, vpn instance pim view parameter acl-number: basic or advanced acl number, in the range of 2000 to 3999. Description use the source-policy command to configure a multicast data filter. Use ...

  • Page 1424

    1424 c hapter 90: pim c onfiguration c ommands infinity: disables rpt-to-spt switchover. Group-policy acl-number: uses this threshold for multicast groups matching the specified multicast policy. In this option, acl-number refers to a basic acl number, in the range of 2000 to 2999. If you do not inc...

  • Page 1425

    1425 ssm-policy (pim view) syntax ssm-policy acl-number undo ssm-policy view public instance pim view, vpn instance pim view parameter acl-number: basic acl number, in the range of 2000 to 2999. Description use the ssm-policy command to configure the ssm group range. Use the undo ssm-policy command ...

  • Page 1426

    1426 c hapter 90: pim c onfiguration c ommands example # set the state refresh interval to 70 seconds in the public instance. System-view [sysname] pim [sysname-pim] state-refresh-interval 70 state-refresh-rate-limit (pim view) syntax state-refresh-rate-limit interval undo state-refresh-rate-limit v...

  • Page 1427

    1427 by default, the ttl value of state refresh messages is 255. Related command: pim state-refresh-capable, state-refresh-interval (pim view), and state-refresh-rate-limit (pim view). Example # in the public instance configure the device to send pim state refresh messages with a ttl of 45. System-v...

  • Page 1428

    1428 c hapter 90: pim c onfiguration c ommands ■ you can configure up to 50 static rps on the same device. Related command: display pim rp-info and auto-rp enable. Example # in the public instance, configure the interface with the ip address 11.110.0.6 to be a static rp that serves the multicast gro...

  • Page 1429

    1429 use the undo timer join-prune command to restore the default setting. By default, the join/prune interval is 60 seconds. Related command: pim timer join-prune. Example # set the global join/prune interval to 80 seconds in the public instance. System-view [sysname] pim [sysname-pim] timer join-p...

  • Page 1430

    1430 c hapter 90: pim c onfiguration c ommands.

  • Page 1432

    1432 c hapter 91: ip v 6 m ulticast r outing and f orwarding c onfiguration c ommands view any view parameter ipv6-source-address: ipv6 multicast source address. Ipv6-group-address: ipv6 multicast group address, in the range of ffxy::/16, where x and y represent any hexadecimal number from 0 through...

  • Page 1433

    1433 matched 146754 packets(10272780 bytes), wrong if 0 packets forwarded 139571 packets(9769970 bytes) display multicast ipv6 minimum-hoplimit syntax display multicast ipv6 minimum-hoplimit [ interface-type interface-number ] view any view table 346 description on the fields of the display multicas...

  • Page 1434

    1434 c hapter 91: ip v 6 m ulticast r outing and f orwarding c onfiguration c ommands parameter interface-type interface-number: specifies an interface by its type and number. If you do not specify an interface, this command will display the minimum hop limit required for an ipv6 multicast packet to...

  • Page 1435

    1435 outgoing-interface: displays routing entries whose outgoing interface is the specified ones. Exclude: displays routing entries whose oil excludes the specified interface. Include: displays routing entries whose oil includes the specified interface. Match: displays routing entries whose oil incl...

  • Page 1436

    1436 c hapter 91: ip v 6 m ulticast r outing and f orwarding c onfiguration c ommands related command: display multicast ipv6 routing-table and display multicast ipv6 forwarding-table. Example # display all rpf information of the multicast source with an ipv6 address 2001::101. Display multicast ipv...

  • Page 1437

    1437 use the undo multicast ipv6 boundary command to delete a specified ipv6 multicast forwarding boundary or all ipv6 multicast forwarding boundaries. By default, no multicast forwarding boundary is configured. Note that: ■ a multicast forwarding boundary sets the boundary condition for the ipv6 mu...

  • Page 1438

    1438 c hapter 91: ip v 6 m ulticast r outing and f orwarding c onfiguration c ommands related command: display multicast ipv6 forwarding-table. Example # set the maximum number of downstream nodes for a single route in the ipv6 multicast forwarding table to 120. System-view [sysname] multicast ipv6 ...

  • Page 1439

    1439 source-group: specifies to implement ipv6 multicast load splitting on a per-source and per-group basis. Description use the multicast load-splitting command to enable load splitting of ipv6 multicast traffic. Use the undo multicast load-splitting command to disable load splitting of ipv6 multic...

  • Page 1440

    1440 c hapter 91: ip v 6 m ulticast r outing and f orwarding c onfiguration c ommands description use the multicast ipv6 minimum-hoplimit command to configure the minimum hop limit required for an ipv6 multicast packet to be forwarded. Use the undo multicast minimum-hoplimit command to restore the s...

  • Page 1442

    1442 c hapter 91: ip v 6 m ulticast r outing and f orwarding c onfiguration c ommands ipv6-group-address: ipv6 multicast group address, in the range of ffxy::/16, where x and y represent any hexadecimal number from 0 to f. Prefix-length: prefix length of the ipv6 multicast group/source address. For ...

  • Page 1444

    1444 c hapter 92: mld c onfiguration c ommands last-listener-query-timer-expiry: off group mode: include version1-host-present-timer-expiry: off display mld interface syntax display mld interface [ interface-type interface-number ] [ verbose ] view any view parameter interface interface-type interfa...

  • Page 1446

    1446 c hapter 92: mld c onfiguration c ommands description use the display mld routing-table command to view the mld routing table information. Example # view the information of the mld routing table. Display mld routing-table routing table total 1 entry 00001. (*, ff1e::101) list of 1 downstream in...

  • Page 1447

    1447 last-listener-query-interval syntax last-listener-query-interval interval undo last-listener-query-interval view mld view parameter interval: last listener query interval in seconds, in the range of 1 to 5. Description use the last-listener-query-interval command to configure the last listener ...

  • Page 1448

    1448 c hapter 92: mld c onfiguration c ommands example # globally set the maximum response delay for general queries to 8 seconds. System-view [sysname] mld [sysname-mld] max-response-time 8 mld syntax mld undo mld view system view parameter none description use the mld command to enter mld view. Us...

  • Page 1449

    1449 ■ this command can take effect only after ipv6 multicast routing is enabled on the device. ■ other mld configurations performed on the interface can take effect only after mld is enabled on the interface. Related command: mld. Example # enable mld on ethernet 1/0. System-view [sysname] interfac...

  • Page 1450

    1450 c hapter 92: mld c onfiguration c ommands view interface view parameter acl6-number: number of a basic or advanced ipv6 acl, in the range of 2000 to 3999. Version-number: mld version number, 1 or 2. If you do not specify an mld version, the configured group filter will apply to mld reports of b...

  • Page 1451

    1451 example # set the last listener query interval to 3 seconds on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] mld last-listener-query-interval 3 mld max-response-time syntax mld max-response-time interval undo mld max-response-time view interface view parameter...

  • Page 1452

    1452 c hapter 92: mld c onfiguration c ommands description use the mld require-router-alert command to configure the interface to discard mld messages without the router-alert option. Use the undo mld require-router-alert command to restore the default configuration. By default, the device does not ...

  • Page 1453

    1453 mld send-router-alert syntax mld send-router-alert undo mld send-router-alert view interface view parameter none description use the mld send-router-alert command to enable insertion of the router-alert option into mld messages to be sent from the current interface. Use the undo mld send-router...

  • Page 1454

    1454 c hapter 92: mld c onfiguration c ommands if the ipv6 multicast address is in the ssm multicast address range, and if an ipv6 address is specified for the multicast source, multicast messages carrying the (s,g) entry, namely, the source ipv6 address information, can be sent out of this interfac...

  • Page 1455

    1455 system-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] mld timer other-querier-present 200 mld timer query syntax mld timer query interval undo mld timer query view interface view parameter interval: query interval, namely the amount of time in seconds between mld general queries, i...

  • Page 1456

    1456 c hapter 92: mld c onfiguration c ommands example # set the mld version to mldv2 on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] mld version 2 require-router-alert (mld view) syntax require-router-alert undo require-router-alert view mld view parameter none d...

  • Page 1457

    1457 prefix-length: prefix length of the specified multicast source or multicast group. For a multicast source address, this argument has an effective value range of 0 to 128; for a multicast group address, it has an effective value range of 8 to 128. The system default is 128 in both cases. Descrip...

  • Page 1458

    1458 c hapter 92: mld c onfiguration c ommands by default, the mld querier robustness variable is 2. Related command: mld robust-count, last-listener-query-interval, timer other-querier-present (mld view), and display mld interface. Example # set the mld querier robustness variable to 3 globally. Sy...

  • Page 1459

    1459 description use the timer other-querier-present command to configure the mld other querier present interval globally. Use the undo timer other-querier-present command to restore the default configuration. By default, the mld other querier present interval is determined by the following formula:...

  • Page 1460

    1460 c hapter 92: mld c onfiguration c ommands version (mld view) syntax version version-number undo version view mld view parameter version-number: mld version number, 1 or 2. Description use the version command to configure the mld version globally. Use the undo version command to restore the defa...

  • Page 1461: 6 Pim C

    93 ip v 6 pim c onfiguration c ommands bsr-policy (ipv6 pim view) syntax bsr-policy acl6-number undo bsr-policy view ipv6 pim view parameter acl6-number: basic ipv6 acl number, in the range of 2000 to 2999. When an ipv6 acl is defined, the source keyword in the rule command specifies a legal bsr sou...

  • Page 1462

    1462 c hapter 93: ip v 6 pim c onfiguration c ommands hash-length: hash mask length for rp selection calculation, in the range of 0 to 128. If you do not include this keyword in your command, the corresponding global setting will be used. Priority: priority of the c-bsr, in the range of 0 to 255. If...

  • Page 1463

    1463 c-bsr holdtime (ipv6 pim view) syntax c-bsr holdtime interval undo c-bsr holdtime view ipv6 pim view parameter interval: bootstrap timeout in seconds, in the range of 1 to 2,147,483,647. Description use the c-bsr holdtime command to configure the bootstrap timeout time, namely the length of tim...

  • Page 1464

    1464 c hapter 93: ip v 6 pim c onfiguration c ommands n the default bootstrap timeout is 130 seconds, so the default bootstrap interval = (130 - 10) / 2 = 60 (seconds). Related command: c-bsr (ipv6 pim view) and c-bsr holdtime (ipv6 pim view). Example # set the bootstrap interval to 30 seconds. Syst...

  • Page 1465

    1465 defining a filtering rule. Any ipv6 multicast group range that matches the permit statement in the acl will be advertised as an rp served group, while configurations matching other statements like deny will not take effect. Priority: priority of the c-rp, in the range of 0 to 255 and defaulting...

  • Page 1466

    1466 c hapter 93: ip v 6 pim c onfiguration c ommands parameter interval: c-rp-adv interval in seconds, with an effective range of 1 to 65,535. Description use the c-rp advertisement-interval command to configure the interval at which c-rp-adv messages are sent. Use the undo c-rp advertisement-inter...

  • Page 1467

    1467 crp-policy (ipv6 pim view) syntax crp-policy acl6-number undo crp-policy view ipv6 pim view parameter acl6-number: advanced ipv6 acl number, in the range of 3000 to 3999. When the ipv6 acl is defined, the source keyword in the rule command specifies the ipv6 address of a c-rp and the destinatio...

  • Page 1468

    1468 c hapter 93: ip v 6 pim c onfiguration c ommands display pim ipv6 bsr-info elected bsr address: 2004::2 priority: 0 hash mask length: 126 state: elected uptime: 00:01:10 next bsr message scheduled at: 00:00:48 candidate bsr address: 2004::2 priority: 0 hash mask length: 126 state: elected candi...

  • Page 1469

    1469 parameter ipv6-source-address: displays the information of the ipv6 unicast route to a particular ipv6 multicast source. If you do not provide this argument, this command will display the information about all ipv6 unicast routes used by ipv6 pim. Description use the display pim ipv6 claimed-ro...

  • Page 1470

    1470 c hapter 93: ip v 6 pim c onfiguration c ommands crp: displays the number of c-rp-adv messages. Graft: displays the number of graft messages. Graft-ack: displays the number of graft-ack messages. Hello: displays the number of hello messages. Join-prune: displays the number of join/prune message...

  • Page 1471

    1471 display pim ipv6 grafts syntax display pim ipv6 grafts view any view parameter none description use the display pim ipv6 grafts command to view the information about unacknowledged graft messages. Example # view the information about unacknowledged graft messages. Display pim ipv6 grafts source...

  • Page 1472

    1472 c hapter 93: ip v 6 pim c onfiguration c ommands display pim ipv6 interface ethernet 1/0 verbose interface; ethernet1/0, fe80::200:5eff:fe04:8700 pim version: 2 pim mode: sparse pim dr: fe80::200:aff:fe01:101 pim dr priority (configured): 1 pim neighbor count: 1 pim hello interval: 30 s pim lan...

  • Page 1476

    1476 c hapter 93: ip v 6 pim c onfiguration c ommands ■ del: specifies ipv6 multicast routing entries scheduled to be deleted. ■ exprune: specifies multicast routing entries containing outgoing interfaces pruned by other ipv6 multicast routing protocols. ■ ext: specifies ipv6 routing entries contain...

  • Page 1477

    1477 display pim ipv6 rp-info syntax display pim ipv6 rp-info [ ipv6-group-address ] view any view parameter ipv6-group-address: specifies an ipv6 multicast group by its address, in the range of ffxy::/16 (excluding ffx0::/16, ffx1::/16, ffx2::/16 and ff0y::), where x and y represent any hexadecimal...

  • Page 1478

    1478 c hapter 93: ip v 6 pim c onfiguration c ommands embedded-rp syntax embedded-rp [ acl6-number ] undo embedded-rp [ acl6-number ] view ipv6 pim view parameter acl6-number: basic ipv6 acl number, in the range of 2000 to 2999. Description use the embedded-rp command to enable embedded rp. Use the ...

  • Page 1479

    1479 system-view [sysname] acl ipv6 number 2000 [sysname-acl6-basic-2000] rule permit source ff7e:140:20::101 64 [sysname-acl6-basic-2000] quit [sysname] pim ipv6 [sysname-pim6] embedded-rp 2000 hello-option dr-priority (ipv6 pim view) syntax hello-option dr-priority priority undo hello-option dr-pr...

  • Page 1480

    1480 c hapter 93: ip v 6 pim c onfiguration c ommands by default, the ipv6 pim neighbor timeout time is 105 seconds. Related command: pim ipv6 hello-option holdtime. Example # set the ipv6 pim neighbor timeout time to 120 seconds globally. System-view [sysname] pim ipv6 [sysname-pim6] hello-option h...

  • Page 1481

    1481 description use the hello-option neighbor-tracking command to globally disable join suppression, namely enable neighbor tracking. Use the undo hello-option neighbor-tracking command to enable join suppression. By default, join suppression is enabled, namely neighbor tracking is disabled. Relate...

  • Page 1482

    1482 c hapter 93: ip v 6 pim c onfiguration c ommands view ipv6 pim view parameter interval: assert timeout time in seconds, with an effective range of 7 to 2,147,483,647. Description use the holdtime assert command to configure the global value of the assert timeout time. Use the undo holdtime asse...

  • Page 1483

    1483 jp-pkt-size (ipv6 pim view) syntax jp-pkt-size packet-size undo jp-pkt-size view ipv6 pim view parameter packet-size: maximum size of join/prune messages in bytes, with an effective range of 100 to 64000. Description use the jp-pkt-size command to configure the maximum size of join/prune messag...

  • Page 1484

    1484 c hapter 93: ip v 6 pim c onfiguration c ommands mtu of the network. As a result, the products that do not support fragmentation will drop the join/prune message. ■ the (s, g) join/prune state hold time on the upstream device. If you configure a small queue size, the outgoing interface of the c...

  • Page 1485

    1485 view interface view parameter none description use the pim ipv6 bsr-boundary command to configure a bsr admin-scope region boundary on the current interface. Use the undo pim ipv6 bsr-boundary command to remove the configured bsr admin-scope region boundary. By default, no bsr admin-scope regio...

  • Page 1486

    1486 c hapter 93: ip v 6 pim c onfiguration c ommands pim ipv6 hello-option dr-priority syntax pim ipv6 hello-option dr-priority priority undo pim ipv6 hello-option dr-priority view interface view parameter priority: router priority for dr election, in the range of 0 to 4294967295. A larger value of...

  • Page 1487

    1487 example # set the ipv6 pim neighbor timeout time to 120 seconds on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] pim ipv6 hello-option holdtime 120 pim ipv6 hello-option lan-delay syntax pim ipv6 hello-option lan-delay interval undo pim ipv6 hello-option lan-d...

  • Page 1488

    1488 c hapter 93: ip v 6 pim c onfiguration c ommands related command: hello-option neighbor-tracking (ipv6 pim view). Example # disable join suppression on ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] pim ipv6 hello-option neighbor-tracking pim ipv6 hello-option ...

  • Page 1489

    1489 use the undo pim ipv6 holdtime assert command to restore the default setting. By default, the assert timeout time is 180 seconds. Related command: holdtime join-prune (ipv6 pim view), pim ipv6 holdtime join-prune, and holdtime assert (ipv6 pim view). Example # set the assert timeout time to 100...

  • Page 1490

    1490 c hapter 93: ip v 6 pim c onfiguration c ommands parameter none description use the pim ipv6 require-genid command enable rejection of hello messages without generation_id. Use the undo pim ipv6 require-genid command to restore the default configuration. By default, hello messages without gener...

  • Page 1491

    1491 description use the pim ipv6 state-refresh-capable command to enable the state fresh feature on the interface. Use the undo pim ipv6 state-refresh-capable command to disable the state fresh feature. By default, the state refresh feature is enabled. Related command: state-refresh-interval (ipv6 ...

  • Page 1492

    1492 c hapter 93: ip v 6 pim c onfiguration c ommands description use the pim ipv6 timer hello command to configure on the current interface the interval at which hello messages are sent. Use the undo pim ipv6 timer hello command to restore the default setting. By default, hello messages are sent at...

  • Page 1493

    1493 parameter interval: maximum delay in seconds between hello messages, with an effective range of 1 to 5. Description use the pim ipv6 triggered-hello-delay command to configure the maximum delay between hello messages. Use the undo pim ipv6 triggered-hello-delay command to restore the default se...

  • Page 1494

    1494 c hapter 93: ip v 6 pim c onfiguration c ommands parameter acl6-number: advanced ipv6 acl number, in the range of 3000 to 3999. Only register messages that match the permit statement of the ipv6 acl can be accepted by the rp. Description use the register-policy command to configure an ipv6 acl ...

  • Page 1495

    1495 register-whole-checksum (ipv6 pim view) syntax register-whole-checksum undo register-whole-checksum view ipv6 pim view parameter none description use the register-whole-checksum command to configure the router to calculate the checksum based on the entire register message. Use the undo register...

  • Page 1496

    1496 c hapter 93: ip v 6 pim c onfiguration c ommands source-lifetime (ipv6 pim view) syntax source-lifetime interval undo source-lifetime view ipv6 pim view parameter interval: ipv6 multicast source lifetime in seconds, with an effective range of 1 to 65,535. Description use the source-lifetime com...

  • Page 1497

    1497 ■ if you specify an advanced acl, the device filters all received ipv6 multicast packets based on the source and group addresses, and discards packets that fail the match. ■ if this command is executed repeatedly, the last configuration will take effect. Example # configure the router to accept...

  • Page 1498

    1498 c hapter 93: ip v 6 pim c onfiguration c ommands by default, the device switches to the spt immediately after it receives the first ipv6 multicast packet from the rpt. Note that: ■ to adjust the order of an ipv6 acl that already exists in the group-policy list, you can use the acl6-number argum...

  • Page 1499

    1499 by default, the ipv6 ssm group range is ff3x::/32, where x represents any legal scope. This command allows you to define an address range of permitted or denied ipv6 multicast sources or ipv6 multicast groups. If the match succeeds, the running multicast mode will be ipv6 pim-ssm; otherwise the...

  • Page 1500

    1500 c hapter 93: ip v 6 pim c onfiguration c ommands parameter interval: state refresh interval in seconds, with an effective range of 1 to 255. Description use the state-refresh-interval command to configure the interval between state refresh messages. Use the undo state-refresh-interval command t...

  • Page 1501

    1501 undo static-rp ipv6-rp-address view ipv6 pim view parameter ipv6-rp-address: ipv6 address of the static rp to be configured. This address must be a valid, globally scoped ipv6 unicast address. Acl6-number: basic ipv6 acl number, in the range of 2000 to 2999. If you provide this argument, the co...

  • Page 1502

    1502 c hapter 93: ip v 6 pim c onfiguration c ommands view ipv6 pim view parameter interval: hello interval in seconds, with an effective range of 1 to 2,147,483,647. Description use the timer hello command to configure the hello interval globally. Use the undo timer hello command to restore the def...

  • Page 1503

    1503 view ipv6 pim view parameter interval: interval in seconds between checks of the traffic rate threshold prior to rpt-to-spt switchover, in the range of 15 to 65,535. Description use the timer spt-switch command to configure the interval between checks of the traffic rate threshold before rpt-to...

  • Page 1504

    1504 c hapter 93: ip v 6 pim c onfiguration c ommands.

  • Page 1505: Ulticast

    94 m ulticast vpn c onfiguration c ommands display multicast-domain vpn-instance share-group syntax display multicast-domain vpn-instance vpn-instance-name share-group view any view parameters vpn-instance-name: vpn instance name, a case sensitive string of up to 31 characters. Description use the d...

  • Page 1506

    1506 c hapter 94: m ulticast vpn c onfiguration c ommands active: displays the received switch-group information about active multicast domains. Group-address: public network multicast group address, in the range of 224.0.1.0 to 239.255.255.255. Source-address: public network multicast source addres...

  • Page 1508

    1508 c hapter 94: m ulticast vpn c onfiguration c ommands display multicast-domain vpn-instance mvpn switch-group send md switch-group information sent by vpn-instance: mvpn total 2 switch-groups for 6 entries total 2 switch-groups for 6 entries matched 226.1.1.0 reference_count: 3 (192.6.1.5, 239.1...

  • Page 1509

    1509 by default, the backward mdt switching delay is 60 seconds. Note that this command cannot be configured without the previous share-mdt configuration in the vpn instance. Examples # set the backward mdt switching delay to 80 seconds in vpn instance mvpn. System-view [sysname] ip vpn-instance mvp...

  • Page 1510

    1510 c hapter 94: m ulticast vpn c onfiguration c ommands mtunnel-number: number of the mti interface to be created, in the range of 0 to 127. Description use the multicast-domain share-group command to configure a share-group address and associate an mti with the current vpn instance. Use the undo ...

  • Page 1511

    1511 parameters switch-delay: mdt switching delay in seconds, namely the delay time for multicast traffic to be switched from the share-mdt to the switch-mdt, in the range of 3 to 60. Description use the multicast-domain switch-delay command to configure the mdt switching delay. Use the undo multica...

  • Page 1512

    1512 c hapter 94: m ulticast vpn c onfiguration c ommands by default, no switch-group-pool is configured and multicast traffic is never switched to a switch-mdt. Note that: ■ this command cannot be configured without the previous share-mdt configuration in the vpn instance. ■ on a given pe device, t...

  • Page 1513: Mpls B

    95 mpls b asics c onfiguration c ommands n ■ currently, these interface types support mpls capability and ldp capability: serial interface, async interface, layer 3 ethernet interface (ethernet interface, ge interface, and xge interface), atm interface, pos interface, layer 3 virtual ethernet interf...

  • Page 1514

    1514 c hapter 95: mpls b asics c onfiguration c ommands n a pre-header is the content prefixed to a packet according to the matched entry in the fast forwarding cache. It varies depending on the type of the outgoing packet ■ for an outgoing ip packet, the pre-header is a link layer header. ■ for an ...

  • Page 1515

    1515 1024 s2/0 2 0 pop normal ---- 1 record(s) found display mpls interface syntax display mpls interface [ interface-type interface-number ] [ verbose ] view any view parameter interface-type interface-number: specifies an interface by its type and number. Verbose: displays detailed information. De...

  • Page 1518

    1518 c hapter 95: mpls b asics c onfiguration c ommands du re-advertise timer : 30 sec du re-advertise flag : on du explicit request : off request retry flag : on label distribution mode: ordered label retention mode : liberal ----------------------------------------------------------------- display...

  • Page 1519

    1519 regular-expression: regular expression, a string of 1 to 80 characters. No blank space is acceptable. Description use the display mpls ldp cr-lsp command to display information about cr-lsps established by ldp. Related command: display mpls lsp. Example # display information about cr-lsps estab...

  • Page 1520

    1520 c hapter 95: mpls b asics c onfiguration c ommands include: includes the specified string. Exclude: excludes the specified string. Regular-expression: regular expression, a string of 1 to 80 characters. No blank space is acceptable. Description use the display mpls ldp interface command to disp...

  • Page 1522

    1522 c hapter 95: mpls b asics c onfiguration c ommands related command: display mpls ldp. Example # display information about all lsps established by ldp. Display mpls ldp lsp ldp lsp information -------------------------------------------------------------------------- sn destaddress/mask in/outla...

  • Page 1523

    1523 all: display information about all peers. Description use the display mpls ldp peer command to display information about specified or all peers of the current lsr. Related command: mpls ldp (system view), mpls ldp (interface view). Example # display information about all peers. Display mpls ldp...

  • Page 1526

    1526 c hapter 95: mpls b asics c onfiguration c ommands description use the display mpls ldp session command to display information about specified or all sessions. Related command: mpls ldp (system view), mpls ldp (interface view). Example # display information about sessions. Display mpls ldp sess...

  • Page 1527

    1527 label advertisement mode : downstream unsolicited label resource status(peer/local) : available/available peer discovery mechanism : basic session existed time : 000:00:06 (ddd:hh:mm) ldp basic discovery source : ethernet1/0 addresses received from peer: (count: 3) 10.1.1.2 20.1.1.1 2.2.2.2 ---...

  • Page 1529

    1529 interface-type interface-number: specifies an interface by its type and number. In-label-value: value of the incoming label, in the range 0 to 1048575. Out-label-value: value of the outgoing label, in the range 0 to 1048575. Exclude: excludes the specified fec. Include: includes the specified f...

  • Page 1530

    1530 c hapter 95: mpls b asics c onfiguration c ommands example # display information about all lsps. Display mpls lsp ----------------------------------------------------------------------- lsp information: l3vpn lsp ----------------------------------------------------------------------- fec in/out...

  • Page 1531

    1531 display mpls lsp statistics syntax display mpls lsp statistics view any view parameter none description use the display mpls lsp statistics command to display lsp statistics. Example # display lsp statistics. Display mpls lsp statistics lsp type total ingress transit egress static lsp 1 1 0 0 s...

  • Page 1532

    1532 c hapter 95: mpls b asics c onfiguration c ommands view any view parameters token: nhlfe entry index. The value range varies by device. Include text: specifies nhlfe entries including a specified string. Description use the display mpls nhlfe command to display information about the nhlfe table...

  • Page 1533

    1533 description use the display mpls route-state command to display route related information. With no vpn instance specified, the command displays route related information of the public network. With the dest-addr dest-mask arguments not specified, the command displays all route related informati...

  • Page 1534

    1534 c hapter 95: mpls b asics c onfiguration c ommands example # display brief information about static lsps. Display mpls static-lsp name fec i/o label i/o if state lsp1 3.3.3.9/32 null/100 -/eth1/0 up # display detailed information about static lsps. Display mpls static-lsp verbose no : 1 lsp-nam...

  • Page 1535

    1535 parameter interface-type interface-number: specifies an interface by its type and number. All: displays mpls statistics for all interfaces. Description use the display mpls statistics interface command to display mpls statistics for a specified or all interfaces. To display statistics, set the ...

  • Page 1536

    1536 c hapter 95: mpls b asics c onfiguration c ommands failed label lookup : 0 start time : 2004/04/28 10:24:10 end time : 2004/04/28 10:24:10 statistics for interface out : outgoing interface serial2/0 octets : 0 packets : 0 errors : 0 disables : 0 start time : 2004/04/28 10:24:10 end time : 2004/...

  • Page 1537

    1537 description use the display mpls statistics lsp command to display mpls statistics for a specified or all lsps. To display the statistics, set the statistics interval first. By default, the interval is 0 and the system does not collect lsp statistics, in which case the value of every statistica...

  • Page 1538

    1538 c hapter 95: mpls b asics c onfiguration c ommands n ■ for an ingress, no statistics is collected in the incoming direction and the start time and end time in the insegment part of the command output are both 0. ■ similarly, for an egress, no statistics is collected in the outgoing direction an...

  • Page 1539

    1539 by default, the interval for label readvertisement in du mode is 30 seconds. Example # set the du mode label readvertisement interval to 100 seconds for the public network ldp. System-view [sysname] mpls ldp [sysname-mpls-ldp] du-readvertise timer 100 # set the du mode label readvertisement int...

  • Page 1540

    1540 c hapter 95: mpls b asics c onfiguration c ommands description use the graceful-restart mpls ldp command to gracefully restart mpls ldp. Note that: ■ this command is used to test mpls ldp gr without main/backup failover. It is not recommended in normal cases. ■ the mpls ldp gr capability is req...

  • Page 1541

    1541 undo graceful-restart timer reconnect view mpls ldp view parameter timer: fault tolerance (ft) reconnect time, in the range 60 to 300 seconds. Description use the graceful-restart timer reconnect command to set the ft reconnect time. Use the undo graceful-restart timer reconnect command to rest...

  • Page 1542

    1542 c hapter 95: mpls b asics c onfiguration c ommands ■ modifying the ldp recovery time may cause the original sessions to be reestablished. The lsps based on the sessions will be removed and need to be reestablished. Example # set the ldp recovery time to 45 seconds. System-view [sysname] mpls ld...

  • Page 1543

    1543 undo label advertise view mpls view parameter explicit-null: specifies that the egress does not support php and distributes to the penultimate hop an explicit null label, whose value is 0. Implicit-null: specifies that the egress supports php and distributes to the penultimate hop an implicit n...

  • Page 1544

    1544 c hapter 95: mpls b asics c onfiguration c ommands the default mode is ordered. N you must use the reset mpls ldp command to reset ldp sessions for the configuration to take effect. Example # set the label distribution control mode to independent for the public network ldp. System-view [sysname...

  • Page 1545

    1545 loop-detect syntax loop-detect undo loop-detect view mpls ldp view/mpls ldp vpn instance view parameter none description use the loop-detect command to enable loop detection. Use the undo loop-detect command to disable loop detection. By default, loop detection is disabled. Note that you must e...

  • Page 1546

    1546 c hapter 95: mpls b asics c onfiguration c ommands by default, only loopback addresses with 32-bit masks can trigger ldp to establish lsps. Note that: ■ with the all keyword specified in the lsp-trigger command, all static and igp routes can trigger ldp to establish lsps. ■ using ip-prefix pref...

  • Page 1548

    1548 c hapter 95: mpls b asics c onfiguration c ommands view system view/interface view parameter none description use the mpls command in system view to enable mpls for the current node and enter mpls view. Use the undo mpls command in system view to disable mpls for the current node. Use the mpls ...

  • Page 1549

    1549 use the undo mpls ldp command to disable ldp for the current node and remove all ldp instances use the mpls ldp vpn-instance command to enable ldp for a vpn instance, create an ldp instance, and enter mpls ldp vpn instance view. Use the undo mpls ldp vpn-instance command to disable ldp for a vp...

  • Page 1550

    1550 c hapter 95: mpls b asics c onfiguration c ommands if the interface is bound to a vpn instance, you must use the mpls ldp vpn-instance command to enable ldp for the vpn instance before enabling ldp on the interface to add the interface into the vpn instance. N this command supports these interf...

  • Page 1551

    1551 mpls ldp remote-peer syntax mpls ldp remote-peer remote-peer-name undo mpls ldp remote-peer remote-peer-name view system view parameter remote-peer-name: name of the remote peer, a case-insensitive string of 1 to 32 characters. Description use the mpls ldp remote-peer command to create a remote...

  • Page 1552

    1552 c hapter 95: mpls b asics c onfiguration c ommands example # set the link hello timer for local sessions to 100 seconds on interface ethernet 1/0. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] mpls [sysname-ethernet1/0] mpls ldp [sysname-ethernet1/0] mpls ldp timer hello-ho...

  • Page 1553

    1553 # set the targeted keepalive timer for remote sessions to 1,000 seconds. System-view [sysname] mpls ldp remote-peer bji [sysname-mpls-ldp-remote-bji] remote-ip 3.3.3.3 [sysname-mpls-ldp-remote-bji] mpls ldp timer keepalive-hold 1000 mpls ldp transport-address syntax mpls ldp transport-address {...

  • Page 1554

    1554 c hapter 95: mpls b asics c onfiguration c ommands view system view parameter lsr-id: id for identifying the lsr, in dotted decimal notation. Description use the mpls lsr-id command to configure the id of an lsr. Use the undo mpls lsr-id command to remove the id of an lsr. By default, no lsr id...

  • Page 1555

    1555 path-vectors syntax path-vectors pv-number undo path-vectors view mpls ldp vpn instance view/mpls ldp view parameter pv-number: path vector maximum hop count, in the range 1 to 32. Description use the path-vectors command to set the path vector maximum hop count. Use the undo path-vectors comma...

  • Page 1556

    1556 c hapter 95: mpls b asics c onfiguration c ommands -h ttl-value: specifies the ttl value for the echo request message. The ttl-value argument ranges from 1 to 255. -m wait-time: specifies the interval for sending echo request messages. The wait-time argument ranges from 1 to 10,000. -r reply-mo...

  • Page 1557

    1557 view mpls ldp remote peer view parameter ip-address: ip address of the remote peer. Description use the remote-ip command to configure the ldp remote peer ip address. Use the undo remote-ip command to remove the configuration. Note that the ldp remote peer ip address must be the mpls lsr id of ...

  • Page 1558

    1558 c hapter 95: mpls b asics c onfiguration c ommands description use the reset mpls ldp command to reset ldp sessions. With no parameters specified, the command resets the sessions of all public network ldp instances. Example # reset the sessions of all public network ldp instances. Reset mpls ld...

  • Page 1559

    1559 parameter index: index number of the lsp, in the range 0 to 4,294,967,295. All: specifies all lsps. Lsp-name: name of the lsp, a string of 1 to 15 characters. Description use the reset mpls statistics lsp command to clear mpls statistics for a specified or all lsps. Related command: display mpl...

  • Page 1560

    1560 c hapter 95: mpls b asics c onfiguration c ommands in-label: incoming label value, in the range 16 to 1,023. Description use the static-lsp egress command to configure a static lsp taking the current lsr as the egress. Use the undo static-lsp egress command to remove a static lsp taking the cur...

  • Page 1561

    1561 ■ if you specify the outgoing interface when configuring a static lsp, you must also specify the outgoing interface when configuring the static ip route. ■ the address of the next hop cannot be any local public network ip address. Related command: static-lsp egress, static-lsp transit, display ...

  • Page 1562

    1562 c hapter 95: mpls b asics c onfiguration c ommands related command: static-lsp egress, static-lsp ingress. Example # configure a static lsp, taking interface serial 2/0 as the incoming interface and setting the incoming label as 123 and the outgoing label as 253. System-view [sysname] static-ls...

  • Page 1563

    1563 -r reply-mode: specifies the reply mode in response to an echo request message. The reply-mode argument can be 1 or 2. A value of 1 means “do not response”, while a value of 2 means “respond using a udp packet”. -t time-out: specifies the timeout interval for the response to an echo request mes...

  • Page 1564

    1564 c hapter 95: mpls b asics c onfiguration c ommands related command: ttl propagate. Example # specify that the icmp response be transported back along the lsp when the ttl of an mpls packet expires system-view [sysname] mpls [sysname-mpls] undo ttl expiration pop ttl propagate syntax ttl propaga...

  • Page 1565: Mpls Te C

    96 mpls te c onfiguration c ommands n mpls te is available on these interfaces: synchronous/asynchronous serial interface (serial), asynchronous serial interface (async), layer 3 ethernet interface (ethernet, ge, xge), atm interface, pos interface, layer 3 virtual ethernet interface (virtual-etherne...

  • Page 1566

    1566 c hapter 96: mpls te c onfiguration c ommands system-view [sysname] explicit-path path1 [sysname-explicit-path-path1] add hop 3.3.29.3 exclude after 3.3.10.5 delete hop syntax delete hop ip-address view explicit path view parameter ip-address: ip address of a node along the explicit path. Descr...

  • Page 1568

    1568 c hapter 96: mpls te c onfiguration c ommands intf addr : 10.1.1.1 intf addr : 1.1.1.9 intf addr : 30.1.1.1 level-2 link state database --------------------------- lspid lsp seq num lsp checksum lsp holdtime att/p/ol 0000.0000.0001.00-00* 0x0000001c 0xf1ec 687 0/0/0 nlpid : ipv4 area addr : 00....

  • Page 1570

    1570 c hapter 96: mpls te c onfiguration c ommands vpn-instance vpn-instance-name: specifies a vpn instance. The vpn-instance-name argument is a string of 1 to 31 characters. For the default vpn instance, you do not need to configure this keyword and argument combination. Description use the display...

  • Page 1571

    1571 description use the display isis traffic-eng network command to display information about te networks for is-is. If no is-is level is specified, the te network information in the is-is level-1-2 area is displayed. Example # display information about te networks for is-is. Display isis traffic-e...

  • Page 1572

    1572 c hapter 96: mpls te c onfiguration c ommands vpn-instance vpn-instance-name: specifies a vpn instance. The vpn-instance-name argument is a string of 1 to 31 characters. For the default vpn instance, you do not need to configure this keyword and argument combination. Description use the display...

  • Page 1573

    1573 example # display te sub-tlv information for is-is. Display isis traffic-eng sub-tlvs is-is(1) subtlv information --------------------------------- unreserved sub-pool bandwidth sub-tlv value : 251 bandwidth constraint sub-tlv value : 252 lo multiplier sub-tlv value : 253 display mpls rsvp-te s...

  • Page 1574

    1574 c hapter 96: mpls te c onfiguration c ommands blockade multiplier: 4 graceful restart: enable restart time: 200 sec recovery time: 150 sec # display the rsvp-te configuration on interface ethernet 1/0. Display mpls rsvp-te interface ethernet 1/0 interface ethernet1/0 interface state: up total-b...

  • Page 1578

    1578 c hapter 96: mpls te c onfiguration c ommands inlabel : 3 outlabel : null send message id : 1 recv message id : 0 session attribute- setupprio: 7 holdprio: 7 sessionflag: se style desired ero information- l-type ero-ipaddr ero-prefixlen erhop_strict 101.101.101.2 32 rro information- rro-ctype: ...

  • Page 1582

    1582 c hapter 96: mpls te c onfiguration c ommands tunnel dest: 29.29.29.29 session tunnel id: 0 tunnel extid: 19.19.19.19 next hop: 101.101.101.2 resevation style: se style reservation incoming interface: ethernet1/0 reservation interface: ethernet1/0 message id : 2 filter spec information- the fil...

  • Page 1584

    1584 c hapter 96: mpls te c onfiguration c ommands tunnel dest: 29.29.29.29 ingress lsr id: 19.19.19.19 lsp id: 1 session tunnel id: 0 session name: tunnel1 previous hop address: 19.19.19.19 token bucket rate: 0.0 token bucket size: 0.00 display mpls rsvp-te statistics syntax display mpls rsvp-te st...

  • Page 1585

    1585 sendackcounter: 48 recackcounter: 2 sendpatherrcounter: 0 recpatherrcounter: 0 sendresverrcounter: 0 recresverrcounter: 0 sendpathtearcounter: 0 recpathtearcounter: 0 sendresvtearcounter: 0 recresvtearcounter: 0 sendsrefreshcounter: 0 recsrefreshcounter: 0 sendackmsgcounter: 0 recackmsgcounter:...

  • Page 1587

    1587 name fec i/o label i/o if stat tunnel0 3.3.3.9/32 null/100 -/eth1/0 down # display detailed information about all static cr-lsps. Display mpls static-cr-lsp verbose no : 1 lsp-name : tunnel0 lsr-type : transit fec : -/- in-label : 20 out-label : 30 ingress lsrid : 34.1.1.1 tunnel id : 2 in-inte...

  • Page 1588

    1588 c hapter 96: mpls te c onfiguration c ommands ip-address: ip address of an interface. Network-lsa: displays traffic engineering database (tedb) information in network lsas. Node: displays the tedb information on nodes. If no node is specified, the tedb information on all nodes is displayed. Mpl...

  • Page 1589

    1589 # display all tedb information. Display mpls te cspf tedb all maximum node supported: 1000 maximum link supported: 4000 current total node number: 3 current total link number: 44 id mpls lsr-id igp process-id area link-count 1 1.1.1.1 ospf 100 1001,1002,1003 20 1004,1005,1006 1007,1008,1009 101...

  • Page 1590

    1590 c hapter 96: mpls te c onfiguration c ommands # display the tedb information of all nodes. Display mpls te cspf tedb node mpls lsr-id: 1.1.1.1 igp type: ospf process id: 100 mpls-te link count: 1 link[1] : interface ip address: 2.0.0.33, 2.0.0.35, 2.0.0.36, neighbor ip address: 2.0.0.2, 2.0.0.4...

  • Page 1591

    1591 [0] : 10 (kbps), [1] : 10 (kbps) [2] : 10 (kbps), [3] : 10 (kbps) [4] : 10 (kbps), [5] : 10 (kbps) [6] : 10 (kbps), [7] : 10 (kbps) bw unreserved for class type 1: [0] : 10 (kbps), [1] : 10 (kbps) [2] : 10 (kbps), [3] : 10 (kbps) [4] : 10 (kbps), [5] : 10 (kbps) [6] : 10 (kbps), [7] : 10 (kbps)...

  • Page 1592

    1592 c hapter 96: mpls te c onfiguration c ommands [6] : 0 (kbps), [7] : 0 (kbps) bw unreserved for class type 1: [0] : 0 (kbps), [1] : 0 (kbps) [2] : 0 (kbps), [3] : 0 (kbps) [4] : 0 (kbps), [5] : 0 (kbps) [6] : 0 (kbps), [7] : 0 (kbps) display mpls te link-administration admission-control syntax d...

  • Page 1593

    1593 1.1.1.9:1024 ---/eth1/0 7/7 0 0 1.1.1.9:2048 ---/eth1/1 7/7 0 0 display mpls te link-administration bandwidth-allocation syntax display mpls te link-administration bandwidth-allocation [ interface interface-type interface-number ] view any view parameter interface interface-type interface-numbe...

  • Page 1595

    1595 incoming-interface: displays all tunnels that use the interface identified by the interface-type interface-number arguments as the incoming interface. Outgoing-interface: displays all tunnels that use the interface identified by the interface-type interface-number arguments as the outgoing inte...

  • Page 1596

    1596 c hapter 96: mpls te c onfiguration c ommands display mpls te tunnel path syntax display mpls te tunnel path [ tunnel-name tunnel-name ] [ lsp-id lsr-id lsp-id ] view any view parameter tunnel-name tunnel-name: tunnel name, a string of 1 to 63 characters. Lsr-id: ingress lsr id, in dotted decim...

  • Page 1597

    1597 display mpls te tunnel statistics syntax display mpls te tunnel statistics view any view parameter none description use the display mpls te tunnel statistics command to display statistics about mpls te tunnels. Example # display statistics about mpls te tunnels. Display mpls te tunnel statistic...

  • Page 1598

    1598 c hapter 96: mpls te c onfiguration c ommands tunnel desc : tunnel interface tunnel state desc : cr-lsp is up tunnel attributes : lsp id : 1.1.1.9:1 session id : 0 admin state : up oper state : up ingress lsr id : 1.1.1.9 egress lsr id: 2.2.2.9 signaling prot : static-cr resv style : - class ty...

  • Page 1599

    1599 display ospf mpls-te syntax display ospf [ process-id ] mpls-te [ area area-id ] [ self-originated ] view any view parameter process-id: ospf process id, in the range 1 to 65535. If a process is specified, only the te lsas of this process are displayed; if no process is specified, the te lsas o...

  • Page 1600

    1600 c hapter 96: mpls te c onfiguration c ommands lsa [] ------------------------------------------------ lsa type : opq-area opaque type : 1 opaque id : advertising router id : xxx.Xxx.Xxx.Xxx lsa age : length : lsa options : ls seq number : checksum : link type :point to point / point to multi po...

  • Page 1601

    1601 display ospf traffic-adjustment syntax display ospf [ process-id ] traffic-adjustment view any view parameter process-id: ospf process id, in the range 1 to 65535. Description use the display ospf traffic-adjustment command to display the settings of tunnel traffic adjustment (igp shortcut and ...

  • Page 1603

    1603 enable traffic-adjustment syntax enable traffic-adjustment undo enable traffic-adjustment view ospf view/is-is view parameter none description use the enable traffic-adjustment command to enable igp shortcut. Use the undo enable traffic-adjustment command to disable igp shortcut. By default, ig...

  • Page 1604

    1604 c hapter 96: mpls te c onfiguration c ommands description use the enable traffic-adjustment advertise command to enable forwarding adjacency. Use the undo enable traffic-adjustment advertise command to disable forwarding adjacency. By default, forwarding adjacency is disabled. Forwarding adjace...

  • Page 1605

    1605 view explicit path view parameter ip-address: specifies the ip address of a node on the explicit path. If no ip address is specified, information about all the nodes on the explicit path is displayed. Description use the list hop command to display information about specified or all nodes on th...

  • Page 1606

    1606 c hapter 96: mpls te c onfiguration c ommands mpls rsvp-te syntax mpls rsvp-te undo mpls rsvp-te view mpls view, interface view parameter none description use the mpls rsvp-te command to enable rsvp-te. Use the undo mpls rsvp-te command to disable rsvp-te. By default, rsvp-te is disabled. You m...

  • Page 1607

    1607 description use the mpls rsvp-te authentication command to enable rsvp message authentication on the interface. Use the undo mpls rsvp-te authentication command to disable rsvp message authentication on the interface. The rsvp messages sent out of the interface convey a message authentication d...

  • Page 1608

    1608 c hapter 96: mpls te c onfiguration c ommands upon expiration of the blockade timeout time, the blockade state on the node is removed. Before you can configure this command, enable rsvp-te. Related command: mpls rsvp-te timer refresh. Example # set the blockade multiplier to five. System-view [...

  • Page 1609

    1609 view mpls view, interface view parameter none description use the mpls rsvp-te hello command to enable rsvp hello extension. Use the undo mpls rsvp-te hello command to disable rsvp hello extension. By default, rsvp hello extension is disabled. Rsvp-te uses the hello mechanism to detect whether ...

  • Page 1610

    1610 c hapter 96: mpls te c onfiguration c ommands before you can configure this command, enable rsvp-te. Related command: mpls rsvp-te timer hello. Example # set the maximum number of consecutive hello losses before an rsvp neighbor is considered dead to five. System-view [sysname] mpls [sysname-mp...

  • Page 1611

    1611 undo mpls rsvp-te reliability view interface view parameter none description use the mpls rsvp-te reliability command to enable the reliability mechanism of rsvp-te, that is, the message_id extension mechanism. Use the undo mpls rsvp-te reliability command to disable the reliability mechanism. ...

  • Page 1612

    1612 c hapter 96: mpls te c onfiguration c ommands view interface view parameter none description use the mpls rsvp-te srefresh command to enable summary refresh. Use the undo mpls rsvp-te srefresh command to restore the default. By default, summary refresh is disabled. Summary refresh (srefresh) me...

  • Page 1613

    1613 parameters restart-time: rsvp-te gr restart interval in seconds, in the range 60 to 300. Description use the mpls rsvp-te timer graceful-restart restart command to set the rsvp-te gr restart interval. Use the undo mpls rsvp-te timer graceful-restart restart command to restore the default. By de...

  • Page 1614

    1614 c hapter 96: mpls te c onfiguration c ommands parameter timevalue: refresh interval, in the range 10 to 65535 seconds. Description use the mpls rsvp-te timer refresh command to configure the path/reservation state refresh interval. Use the undo mpls rsvp-te timer refresh command to restore the ...

  • Page 1615

    1615 example # enable rsvp message retransmission on interface ethernet 1/0, setting the increment value delta to 2 and the initial retransmission interval to 1000 milliseconds. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] mpls rsvp-te timer retransmission increment-va lue 2 re...

  • Page 1616

    1616 c hapter 96: mpls te c onfiguration c ommands mpls te affinity property syntax mpls te affinity property properties [ mask mask-value ] undo mpls te affinity property view tunnel interface view parameter properties: link properties affinity attribute of the tunnel, a 32-bit integer in the range...

  • Page 1617

    1617 seconds: automatic bandwidth adjustment/information collection interval, in the range 300 to 604800 seconds. This value cannot be less than the sampling interval configured by the mpls te timer auto-bandwidth command. Max-bandwidth: upper limit for bandwidth tuning, in the range 1 to 32000000 k...

  • Page 1618

    1618 c hapter 96: mpls te c onfiguration c ommands use the undo mpls te backup command to restore the default. By default, tunnel backup is disabled. N ■ with backup enabled, the record route flag is automatically set to record reroute regardless of whether the mpls te record-route command is config...

  • Page 1619

    1619 example # tunnel 0 provides protection for lsps using bc0 bandwidth without protecting bandwidth. Tunnel 1 provides protection for lsps using bc1 bandwidth and it can protect 1000 kbps bandwidth. System-view [sysname] interface tunnel 0 [sysname-tunnel0] mpls te backup bandwidth bc0 un-limited ...

  • Page 1620

    1620 c hapter 96: mpls te c onfiguration c ommands parameter down: sets the threshold in percentages for igp to flood when the bandwidth is decreasing. When the percentage of available bandwidth decrease exceeds the threshold, the change is flooded and the traffic engineering database (tedb) is upda...

  • Page 1621

    1621 mpls te cspf syntax mpls te cspf undo mpls te cspf view mpls view parameter none description use the mpls te cspf command to enable cspf on current node. Use the undo mpls te cspf command to disable cspf on current node. By default, cspf is disabled on current node. Before enabling cspf, enable...

  • Page 1622

    1622 c hapter 96: mpls te c onfiguration c ommands mpls te fast-reroute syntax mpls te fast-reroute undo mpls te fast-reroute view tunnel interface view parameter none description use the mpls te fast-reroute command to enable fast reroute (frr). Use the undo mpls te fast-reroute command to disable ...

  • Page 1623

    1623 you may perform the mpls te fast-reroute bypass-tunnel command multiple times to specify multiple bypass tunnels for the protected interface. At present, a maximum of three bypass tunnels can be specified for a protected interface. When specifying a bypass tunnel, consider the following: ■ the ...

  • Page 1625

    1625 n the mpls te igp shortcut command cannot be used together with the mpls te igp advertise command. Example # enable ospf and is-is to consider te tunnel 0 in enhanced spf calculation when the tunnel is up. System-view [sysname] interface tunnel 0 [sysname-tunnel0] mpls te igp shortcut mpls te l...

  • Page 1626

    1626 c hapter 96: mpls te c onfiguration c ommands view tunnel interface view parameter none description use the mpls te loop-detection command to configure the node to perform loop detection when setting up the mpls te tunnel. Use the undo mpls te loop-detection command to disable loop detection. L...

  • Page 1627

    1627 undo mpls te max-reservable-bandwidth view interface view parameter bandwidth-value: maximum reservable bandwidth for rsvp traffic, in the range 1 to 32000000 kbps (global pool bandwidth). Bc1 value: reservable bandwidth in kbps on the interface, in the range 1 to bandwidth-value (subpool bandw...

  • Page 1628

    1628 c hapter 96: mpls te c onfiguration c ommands mpls te path explicit-path syntax mpls te path explicit-path pathname undo mpls te path view tunnel interface view parameter pathname: name of an mpls-te explicit path, a string of 1 to 31 characters. Description use the mpls te path explicit-path c...

  • Page 1629

    1629 # use the igp metrics of links in path calculation for te tunnels not configured with link metric type. System-view [sysname] mpls [sysname-mpls] mpls te path metric-type igp in tunnel interface view: # use the igp metrics of links for routing tunnel 0. System-view [sysname] interface tunnel 0 ...

  • Page 1630

    1630 c hapter 96: mpls te c onfiguration c ommands view tunnel interface view parameter label: includes the record of labels in the route record. This keyword is not supported when the signaling protocol is cr-ldp. This keyword is not supported when the signaling protocol is cr-ldp. Description use ...

  • Page 1631

    1631 use the undo mpls te reoptimization command to disable reoptimization on the tunnel. Reoptimization is disabled by default. N the reoptimization function cannot be used together with these commands: mpls te auto-bandwidth adjustment, mpls te route-pinning, mpls te backup, and mpls te resv-style...

  • Page 1632

    1632 c hapter 96: mpls te c onfiguration c ommands view tunnel interface view parameter times: number of tunnel setup retries, in the range 1 to 4294967295. Description use the mpls te retry command to configure the maximum number of tunnel setup retries. Use the undo mpls te retry command to restor...

  • Page 1634

    1634 c hapter 96: mpls te c onfiguration c ommands n the tie breaker configured in mpls te tunnel interface view has higher priority over the one configured in mpls view. Example # configure cspf to route tunnels over paths with the least bandwidth usage ratio. System-view [sysname] mpls [sysname-mp...

  • Page 1635

    1635 system-view [sysname] mpls [sysname-mpls] mpls te timer auto-bandwidth 600 mpls te timer fast-reroute syntax mpls te timer fast-reroute [ seconds] undo mpls te timer fast-reroute view mpls view parameter seconds: frr polling timer setting for the point of local repair (plr) to poll available by...

  • Page 1636

    1636 c hapter 96: mpls te c onfiguration c ommands related command: mpls te retry. Example # set the interval for re-establishing tunnel 0 to 20 seconds. System-view [sysname] interface tunnel 0 [sysname-tunnel0] mpls te timer retry 20 mpls te tunnel-id syntax mpls te tunnel-id tunnel-id view tunnel...

  • Page 1637

    1637 example # configure tunnel 0 to forward only traffic of vpn 1. System-view [sysname] interface tunnel 0 [sysname-tunnel0] mpls te vpn-binding vpn-instance vpn1 # configure tunnel 0 to forward only traffic that matches acl 3001. System-view [sysname] acl number 3001 [sysname-acl-adv-3001] rule 0...

  • Page 1638

    1638 c hapter 96: mpls te c onfiguration c ommands parameter ip-address: defines a node by its link ip address or router id in dotted decimal notation. In the strict routing approach, this ip address must be a link ip address. In the loose routing approach, this ip address can be either a link ip ad...

  • Page 1640

    1640 c hapter 96: mpls te c onfiguration c ommands view system view parameter tunnel-name: tunnel name comprising 1 to 15 characters. Interface-type interface-number: specifies an interface by its type and number. In-label-value: incoming label, in the range 16 to 1023. Ingress-lsr-id: ingress lsr i...

  • Page 1641

    1641 description use the static-cr-lsp ingress command to configure a static cr-lsp at the ingress node. Use the undo static-cr-lsp ingress command to remove the static cr-lsp. N the next hop address cannot be a local public address when configuring the static cr-lsp on the ingress or a transit node...

  • Page 1642

    1642 c hapter 96: mpls te c onfiguration c ommands n the next hop address cannot be a local public address when configuring the static cr-lsp on the ingress or a transit node. Example # configure a static cr-lsp on the transit node, setting its name to tunnel34, incoming interface to serial 1/0, inc...

  • Page 1643

    1643 view is-is view parameter level-1: enables level-1 is-is te. Level-1-2: enables level-1-2 is-is te. Level-2: enables level-2 is-is te. N if no level is specified, is-is te applies to level-1-2. Description use the traffic-eng command to enable is-is te. Use the undo traffic-eng command to resto...

  • Page 1644

    1644 c hapter 96: mpls te c onfiguration c ommands.

  • Page 1646

    1646 c hapter 97: mpls l2vpn c onfiguration c ommands currently, only l2vpns using atm, ppp, fr, or hdlc encapsulation support the control word option. N if the outgoing interface is an ethernet or vlan interface, you need to use the nexthop ip-address combination to specify the ip address of the ne...

  • Page 1647

    1647 view mpls l2vpn view/mpls l2vpn ce view parameter ce-name: unique name for a ce in the current vpn of the current pe, a string of 1 to 20 characters that cannot include the character of “-”. Ce-id: id for the ce in the vpn. For msr20 series routers, it is in the range of 0 to 199; for msr30 and...

  • Page 1648

    1648 c hapter 97: mpls l2vpn c onfiguration c ommands tunnel-policy-name: tunneling policy for the vc, a string of 1 to 19 characters. Description use the connection command to create a kompella connection. Use the undo connection command to delete a kompella connection on a ce interface. When creat...

  • Page 1649

    1649 example # display all information about l2vpn in the bgp routing table. Display bgp l2vpn all bgp local router id : 2.2.2.9, local as number : 100 origin codes:i - igp, e - egp, ? - incomplete bgp.L2vpn: 1 destination route distinguisher: 100:1 ce id label offset label base nexthop pref as-path...

  • Page 1650

    1650 c hapter 97: mpls l2vpn c onfiguration c ommands # display detailed information about l2vpn peer 3.3.3.9 in the bgp routing table. Display bgp l2vpn peer 3.3.3.9 verbose peer: 3.3.3.9 local: 2.2.2.9 type: ibgp link bgp version 4, remote router id 3.3.3.9 bgp current state: established, up for 0...

  • Page 1651

    1651 # display l2vpn information with the rd being 100:1 in the bgp routing table. Display bgp l2vpn route-distinguisher 100:1 bgp local router id : 2.2.2.9, local as number : 100 origin codes:i - igp, e - egp, ? - incomplete bgp.L2vpn: 1 destination ce id label offset label base nexthop pref as-pat...

  • Page 1652

    1652 c hapter 97: mpls l2vpn c onfiguration c ommands # display l2vpn information with the rd being 100:1, the ce id being 4, and the label offset being 0 in the bgp routing table. Display bgp l2vpn route-distinguisher 100:1 ce-id 4 label-offset 0 bgp local router id : 2.2.2.9, local as number : 100...

  • Page 1655

    1655 up (3), down (0) interface encap type state vc type serial2/0 ppp up ccc serial2/1 ppp up bgp-vc serial2/2 ppp up static-vc # display information about interfaces of kompella l2vpn vcs. Display l2vpn ccc-interface vc-type bgp-vc total ccc-interface of bgp vc: 1 up (1), down (0) interface encap ...

  • Page 1656

    1656 c hapter 97: mpls l2vpn c onfiguration c ommands transport client vc local remote tunnel vc id intf state vc label vc label policy 5 serial2/0 down 0 0 lsp3 6 serial2/1 down 0 0 lsp2 7 serial2/2 down 0 0 plcy3 # display information about all martini vcs configured on interface ethernet 1/0. Dis...

  • Page 1658

    1658 c hapter 97: mpls l2vpn c onfiguration c ommands display mpls l2vpn vpn number: 1 vpn-name encap-type route-distinguisher mtu ce(l) ce(r) vpn2 atm aal5 500:1 888 0 0 # display information about l2vpn vpn1. Display mpls l2vpn vpn-name vpn1 ***vpn name : vpn1 encap type : vlan local ce number(s) ...

  • Page 1660

    1660 c hapter 97: mpls l2vpn c onfiguration c ommands if you do not specify any argument, the command displays information about all kompella l2vpn connections. Example # display information about all kompella l2vpn connections. Display mpls l2vpn connection 1 total connections, connections: 1 up, 0...

  • Page 1661

    1661 local vc label : 132100 remote vc label : 132097 tunnel policy : policy1 tunnel type : lsp tunnel id : 0x226013 # display summary information about all kompella l2vpn connections. Display mpls l2vpn connection summary 1 total connections, connections: 1 up, 0 down , 0 local, 1 remote, 0 unknown...

  • Page 1663

    1663 description use the display mpls static-l2vc command to display information about static vcs configured on the router. If you specify an interface, the command displays only information about static vcs configured on the ce interface. Example # display information about all static vcs configure...

  • Page 1664

    1664 c hapter 97: mpls l2vpn c onfiguration c ommands undo l2vpn-family view bgp view parameter none description use the l2vpn-family command to enter bgp l2vpn address family view. Use the undo l2vpn-family command to delete all configurations for the bgp l2vpn address family. Example # enter bgp l...

  • Page 1665

    1665 example # create a martini mpls l2vpn connection. System-view [sysname] interface serial 2/0 [sysname-serial2/0] mpls l2vc 2.2.2.9 999 mpls l2vpn syntax mpls l2vpn undo mpls l2vpn view system view parameter none description use the mpls l2vpn command to enable mpls l2vpn. Use the undo mpls l2vp...

  • Page 1666

    1666 c hapter 97: mpls l2vpn c onfiguration c ommands ppp: uses ppp encapsulation. Vlan: uses vlan encapsulation. Control-word: enables the control word option. No-control-word: disables the control word option. Description use the mpls l2vpn command to create a kompella vpn and enter mpls l2vpn vie...

  • Page 1667

    1667 no-control-word: disables the control word option. Description use the mpls static-l2vc destination command to create a static vc between ces connected to different pes. Use the undo mpls static-l2vc command to delete the static vc. ■ you must configure the command on both pes. The destination ...

  • Page 1668

    1668 c hapter 97: mpls l2vpn c onfiguration c ommands view user view parameter as-number: resets l2vpn bgp connections with the peers in the as with this number. The as number must be in the range 1 to 65535. Ip-address: resets the l2vpn bgp connection to the peer with this ip address. All: resets a...

  • Page 1670

    1670 c hapter 97: mpls l2vpn c onfiguration c ommands.

  • Page 1671: Mpls L3Vpn C

    98 mpls l3vpn c onfiguration c ommands n for information about bgp l2vpn address family, refer to “mpls l2vpn configuration commands” on page 1645. Apply access-vpn vpn-instance syntax apply access-vpn vpn-instance vpn-instance-name& undo apply access-vpn vpn-instance [ vpn-instance-name ]& view pol...

  • Page 1672

    1672 c hapter 98: mpls l3vpn c onfiguration c ommands undo default local-preference view bgp-vpnv4 subaddress family view parameter value: default value for the local preference, in the range 0 to 4294967295. A greater value represents a higher priority. Description use the default local-preference ...

  • Page 1673

    1673 description (vpn instance view) syntax description text undo description view vpn instance view parameter text: description for the vpn instance, a string of 1 to 80 characters. Description use the description command to configure a description for a vpn instance. Use the undo description comma...

  • Page 1674

    1674 c hapter 98: mpls l3vpn c onfiguration c ommands aa:nn&: community number. Both the aa and nn parameters range from 0 to 65535. & means that you can enter the parameter combination up to 13 times. No-export-subconfed: a route with this attribute is neither advertised out of the local as, nor ad...

  • Page 1675

    1675 *>i 123.1.1.1/32 1.1.1.1 (1024 /null ) 0 100 total routes of vpn-instance vpn1: 5 network nexthop label(recv/app) med locprf *>i 10.0.0.0 1.1.1.1 0 100 *> 10.1.1.0/24 0.0.0.0 (null /1025 ) 0 *> 20.0.0.0 10.1.1.1 (null /1026 ) 0 *>i 123.1.1.1/32 1.1.1.1 0 100 *> 124.1.1.1/32 0.0.0.0 (null /1024 ...

  • Page 1676

    1676 c hapter 98: mpls l3vpn c onfiguration c ommands description use the display bgp vpnv4 group command to display information about a specified or all bgp vpnv4 peer groups. Example # display information about bgp vpnv4 peer group a for vpn instance vpn1. Display bgp vpnv4 vpn-instance vpn1 group...

  • Page 1677

    1677 parameter all: specifies all vpnv4 peers. Vpn-instance-name: name of the vpn instance, a string of 1 to 31 characters. Description use the display bgp vpnv4 network command to display information about bgp vpnv4 routes injected into a specified or all vpn instances. Example # display informatio...

  • Page 1679

    1679 # display detailed information about bgp vpnv4 peers of vpn instance vpn1. Display bgp vpnv4 vpn-instance vpn1 peer verbose peer: 10.1.1.1 local: 2.2.2.2 type: ebgp link bgp version 4, remote router id 10.1.1.1 bgp current state: established, up for 00h19m26s bgp current event: katimerexpired b...

  • Page 1680

    1680 c hapter 98: mpls l3vpn c onfiguration c ommands # display all bgp vpnv4 peer information. Display bgp vpnv4 all peer bgp local router id : 2.2.2.2 local as number : 100 total number of peers : 1 peers in established state : 1 peer v as msgrcvd msgsent outq prefrcv up/down state 1.1.1.1 4 100 5...

  • Page 1681

    1681 display bgp vpnv4 all peer 1.1.1.1 verbose peer: 1.1.1.1 local: 2.2.2.2 type: ibgp link bgp version 4, remote router id 1.1.1.1 bgp current state: established, up for 00h46m01s bgp current event: recvkeepalive bgp last state: openconfirm port: local - 1039 remote - 179 configured: active hold t...

  • Page 1683

    1683 no-export-subconfed: a route with this attribute is neither advertised out of the local as, nor advertised to the other sub-ass in the confederation. No-advertise: a route with this attribute is not advertised to any other bgp peer. No-export: a route with this attribute is not advertised out o...

  • Page 1684

    1684 c hapter 98: mpls l3vpn c onfiguration c ommands # display the bgp vpnv4 routing information of rd 100:1, with the network segment address being 10.0.0.0. Display bgp vpnv4 route-distinguisher 100:1 routing-table 10.0.0.0 255.0.0.0 route distinguisher: 100:1 total number of routes: 1 bgp local ...

  • Page 1687

    1687 adv-community-list-number: advanced community list number, in the range 100 to 199. &: specifies that the argument before it can be entered up to 16 times. Dampened: displays information about dampened bgp vpnv4 routes. Dampening parameter: displays information about configured bgp vpnv4 route ...

  • Page 1688

    1688 c hapter 98: mpls l3vpn c onfiguration c ommands display fib statistics vpn-instance syntax display fib statistics vpn-instance view any view parameter none description use the display fib statistics vpn-instance command to display statistics about the vpn instance forwarding table. Example # d...

  • Page 1689

    1689 destination/mask outinterface innerlabel token 66.1.1.1/32 inloopback0 null invalid 66.1.1.0/24 ethernet1/0 null invalid display ip vpn-instance syntax display ip vpn-instance [ instance-name vpn-instance-name ] view any view parameter vpn-instance-name: name of the vpn instance, a string of 1 ...

  • Page 1690

    1690 c hapter 98: mpls l3vpn c onfiguration c ommands import vpn targets : 4:4 5:5 import route policy : poly-1 description : this is vpn1 maximum number of routes : 500 interfaces : ethernet1/0 display ospf sham-link syntax display ospf [ process-id ] sham-link [ area area-id ] view any view parame...

  • Page 1691

    1691 # display information about ospf sham links in area 1. Display ospf sham-link area 1 ospf process 100 with router id 100.1.1.2 sham-link: 3.3.3.3 --> 5.5.5.5 neighbour state: full area: 0.0.0.1 cost: 10 state: p-2-p, type: sham timers: hello 10 , dead 40 , retransmit 5 , transmit delay 1 displa...

  • Page 1692

    1692 c hapter 98: mpls l3vpn c onfiguration c ommands t lsp 1 aaa lsp cr-lsp gre 1 bbb lsp 1 # display tunneling policy aaa. Display tunnel-policy policy-name aaa tunnel policy name select-seq load balance no ------------------------------------------------------ aaa lsp cr-lsp gre 1 domain-id synta...

  • Page 1693

    1693 export route-policy syntax export route-policy route-policy undo export route-policy view vpn instance view parameter route-policy: name of the export routing policy for the vpn instance, a string of 1 to 19 characters. Description use the export route-policy command to apply an export routing ...

  • Page 1694

    1694 c hapter 98: mpls l3vpn c onfiguration c ommands ospf process-id: filters ospf routes to be advertised that are from a specified ospf process. The process-id argument is in the range 1 to 65535. Rip process-id: filters rip routes to be advertised that are from a specified rip process. The proce...

  • Page 1695

    1695 system-view [sysname] bgp 100 [sysname] ipv4-family vpnv4 [sysname-bgp-af-vpnv4] filter-policy 2255 import import route-policy syntax import route-policy route-policy undo import route-policy view vpn instance view parameter route-policy: name of the import routing policy for the vpn instance, ...

  • Page 1696

    1696 c hapter 98: mpls l3vpn c onfiguration c ommands by default, an interface is associated with no vpn instance; it belongs to the public network. When configured on an interface, the ip binding vpn-instance command clears the ip address of the interface. Therefore, you must re-configure the ip ad...

  • Page 1697

    1697 vpn-instance vpn-instance-name: associates a vpn instance with an ipv4 address family and enter bgp vpn instance view. The vpn-instance-name argument is a string of 1 to 31 characters. Description use the ipv4-family command to enter bgp-vpnv4 subaddress family view or bgp vpn instance view. Us...

  • Page 1699

    1699 view bgp-vpnv4 subaddress family view parameter group-name: name of the peer group, a string of 1 to 47 characters. Ip-address: ip address of the peer. Aspath-acl-number: as_path filtering list number, in the range 1 to 256. Import: filters the received routes. Export: filters the routes to be ...

  • Page 1700

    1700 c hapter 98: mpls l3vpn c onfiguration c ommands related command: peer upe. Example # in bgp-vpnv4 subaddress family view, specify to advertise default routes of vpn instance vpn1 to peer 1.1.1.1. System-view [sysname] bgp 100 [sysname-bgp-af-vpnv4] peer 1.1.1.1 enable [sysname-bgp-af-vpnv4] pe...

  • Page 1702

    1702 c hapter 98: mpls l3vpn c onfiguration c ommands [sysname-bgp] ipv4-family vpnv4 [sysname-bgp-af-vpnv4] peer 1.1.1.1 group test # in bgp-l2vpn address family view, add peer 1.1.1.1 into peer group test. System-view [sysname] bgp 100 [sysname-bgp] group test external [sysname-bgp] l2vpn-family [...

  • Page 1703

    1703 view bgp view/bgp vpn instance view parameter group-name: name of the peer group, a string of 1 to 47 characters. Ip-address: ip address of the peer. Description use the peer label-route-capability command to enable the exchange of labeled routes with an ipv4 peer or peer group. Use the undo pe...

  • Page 1705

    1705 description use the peer public-as-only command to make outbound bgp updates carry no private as numbers. Use the undo peer public-as-only command to make outbound bgp updates carry private as numbers. By default, a bgp update carries private as numbers. If a bgp update to be sent carries any p...

  • Page 1707

    1707 upe is a kind of special vpnv4 peer. It accepts only one default route for each related vpn instance on an spe, rather than common vpnv4 routes. An spe is a common vpn peer. Example # configure peer 1.1.1.1 as a upe. System-view [sysname] bgp 100 [sysname-bgp] ipv4-family vpnv4 [sysname-bgp-af-...

  • Page 1708

    1708 c hapter 98: mpls l3vpn c onfiguration c ommands reflect between-clients syntax reflect between-clients undo reflect between-clients view bgp-vpnv4 subaddress family view/bgp-l2vpn address family view parameter none description use the reflect between-clients command to enable route reflection ...

  • Page 1709

    1709 by default, the cluster id is the router id of an rr in the cluster. Generally, a cluster contains only one rr, in which case the router id of the rr is used for identifying the cluster. Setting multiple rrs can improve the network reliability. When there is more than one rr in a cluster, use t...

  • Page 1711

    1711 all: resets all bgp connections. External: resets ebgp sessions. Description use the reset bgp vpn-instance command to reset the bgp connections of a vpn instance. Example # reset all bgp connections of vpn instance vpn1. Reset bgp vpn-instance vpn1 all reset bgp vpn-instance dampening syntax r...

  • Page 1712

    1712 c hapter 98: mpls l3vpn c onfiguration c ommands as-path-acl-number: number of the as_path list, in the range 1 to 256. As-path-regexp: as_path regular expression. Description use the reset bgp vpn-instance flap-info command to clear the route flap history information about bgp peers of a vpn i...

  • Page 1713

    1713 ■ 32-bit ip address: 16-bit user-defined number. For example, 192.168.122.15:1. Description use the route-distinguisher command to configure a route distinguisher (rd) for a vpn instance. An rd is used to create the routing and forwarding table of a vpn. By prefixing an rd to an ipv4 prefix, yo...

  • Page 1714

    1714 c hapter 98: mpls l3vpn c onfiguration c ommands ■ a tag configured with the route-tag command has the second highest priority. ■ a tag configured with the default tag command has the lowest priority. A received type 5 or type 7 lsa is neglected in route calculation if its tag is the same as th...

  • Page 1715

    1715 rr-filter syntax rr-filter extended-community-list-number undo rr-filter view bgp-vpnv4 subaddress family view/bgp-l2vpn address family view parameter extended-community-list-number: number of the extended community list supported by the rr group, in the range 1 to 199. Description use the rr-f...

  • Page 1716

    1716 c hapter 98: mpls l3vpn c onfiguration c ommands cost: cost for the sham link. It ranges from 1 to 65,535 and defaults to 1. Dead-interval: dead interval in seconds. It ranges from 1 to 32,768 and defaults to 40. It must be equal to the dead interval of the router on the other end of the virtua...

  • Page 1717

    1717 example # create a sham link with the source address of 1.1.1.1 and the destination address of 2.2.2.2. System-view [sysname] ospf [sysname-ospf-1] area 0 [sysname-ospf-1-area-0.0.0.1] sham-link 1.1.1.1 2.2.2.2 tnl-policy (vpn instance view) syntax tnl-policy tunnel-policy-name undo tnl-policy ...

  • Page 1718

    1718 c hapter 98: mpls l3vpn c onfiguration c ommands description use the tunnel-policy command to establish a tunneling policy and enter tunneling policy view. Use the undo tunnel-policy command to delete a tunneling policy. Related command: tunnel select-seq load-balance-number. Example # establis...

  • Page 1719

    1719 example # define a tunneling policy, specifying that only gre tunnels can be used and the number of tunnels for load balancing be 2. System-view [sysname] tunnel-policy po1 [sysname-tunnel-policy-po1] tunnel select-seq gre load-balance-number 2 vpn-instance-capability simple syntax vpn-instance...

  • Page 1720

    1720 c hapter 98: mpls l3vpn c onfiguration c ommands both: specifies both the export routing information to the destination vpn extended community and the import routing information from the destination vpn extended community. This is the default. Export-extcommunity: specifies the export routing i...

  • Page 1722

    1722 c hapter 99: vam s erver c onfiguration c ommands view vpn domain view parameter none: specifies not to authenticate clients. Pap: specifies to adopt pap (password authentication protocol) authentication. Chap: specifies to adopt chap (challenge authentication protocol) authentication. Domain n...

  • Page 1723

    1723 total address-map number: 2 private-ip public-ip type holding time 10.0.0.1 222.222.222.1 hub 0h 3m 34s 10.0.0.3 222.222.222.3 spoke 0h 4m 21s # display mapping information of the vam clients in all vpn domains. Display vam server address-map all vpn: 1 total address-map number: 2 private-ip pu...

  • Page 1724

    1724 c hapter 99: vam s erver c onfiguration c ommands example # display statistics of the vam server. Display vam server statistic all vpn number: 2 total spoke number: 121 total hub number: 3 vpn name: 1 service: enable holding time: 0h 1m 47s registered spoke number: 98 registered hub number: 2 a...

  • Page 1726

    1726 c hapter 99: vam s erver c onfiguration c ommands public-ip-address: public ip address of hub. Description use the hub private-ip command to specify the ip address of hub. Use the undo hub private-ip command to remove the ip address of the specified hub. By default, no hub ip address is configu...

  • Page 1727

    1727 example # configure the interval for sending keepalive messages from vam client to vam server to 30 seconds. System-view [sysname] vam server vpn 1 [sysname-vam-server-vpn-1] keepalive interval 30 keepalive retry syntax keepalive retry retry-times undo keepalive retry view vpn domain view param...

  • Page 1728

    1728 c hapter 99: vam s erver c onfiguration c ommands parameter cipher: specifies to display pre-shared key in cipher text. Simple: specifies to display pre-shared key in plain text. Key-string: pre-shared key to be specified, a case-sensitive string containing 1 to 31 characters. Description use t...

  • Page 1730

    1730 c hapter 99: vam s erver c onfiguration c ommands by default, listening ip address and udp port number are not configured. Note that the vam server only accepts the connections of all vpn domains through the configured udp port. Related command: vam server vpn example # configure the listening ...

  • Page 1731: 100

    100 vam c lient c onfiguration c ommands client enable syntax client enable undo client enable view vam client view parameter none description use the client enable command to enable the vam client function. Use the undo client enable command to restore the default. By default, the vam client functi...

  • Page 1732

    1732 c hapter 100: vam c lient c onfiguration c ommands parameter address-map: refers to the mapping information between public and private network addresses of the vam client. Fsm: refers to the status information of the vam client. Client-name: vam client name, a case-insensitive string of 1 to 31...

  • Page 1733

    1733 # display the cached address mapping information on the vam client. Display vam client address-map abc client name: abc vpn name: 1 total address-map number: 2 private-ip public-ip type remaining-time(s) 10.0.0.1 222.222.222.1 hub -- 10.0.0.3 222.222.222.3 spoke 32 pre-shared-key (vam client vi...

  • Page 1734

    1734 c hapter 100: vam c lient c onfiguration c ommands use the undo pre-shared-key command to delete the configured pre-shared key. That is, no encryption or authentication is performed on protocol packets. No pre-shared key is configured by default. Note that you should configure the same pre-shar...

  • Page 1735

    1735 server primary ip-address syntax server primary ip-address ip-address [ port port-number ] undo server primary view vam client view. Parameter ip-address: public ip address of the primary vam server. Dns is not supported currently. Port-number: port number of the primary vam server, in the rang...

  • Page 1736

    1736 c hapter 100: vam c lient c onfiguration c ommands by default, no public ip address or udp port number is specified for the secondary vam server. Related command: vam client name, and server primary ip-address. Example # specify public ip address 1.1.1.2 and port number 50000 for the secondary ...

  • Page 1737

    1737 view system view parameter all: specifies all configured vam clients. Name client-name: specifies an existing vam client. The client-name argument indicates the name of the vam client and is a case-insensitive string of 1 to 31 characters. Valid characters are a to z, a to z, 0 to 9, and “.”. D...

  • Page 1738

    1738 c hapter 100: vam c lient c onfiguration c ommands vpn syntax vpn vpn-name undo vpn view vam client view parameter vpn-name: name of the vpn that a vam client belongs to, a case-insensitive string of 1 to 15 characters a through z, a through z, 0 through 9, hyphen (-), and dot (.). Description ...

  • Page 1739: 101

    101 ips ec p rofile c onfiguration c ommands display ipsec profile syntax display ipsec profile [ name profile-name ] view anyview parameter profile-name: name of the ipsec profile, a case-insensitive string of 1 to 15 characters. Description use the display ipsec profile command to display informat...

  • Page 1740

    1740 c hapter 101: ips ec p rofile c onfiguration c ommands inbound esp setting: esp spi: 23456 (0x5ba0) esp string-key: esp encryption hex key: 1234567890abcdef1234567890abcdef1234567812345678 esp authentication hex key: 1234567890abcdef1234567890abcdef outbound esp setting: esp spi: 65432 (0xff98)...

  • Page 1741

    1741 an ipsec profile sets up an sa through ike negotiation. You must specify the esp protocol as a security protocol for ipsec proposals in the ipsec profile. An ipsec profile simplifies the configuration of an ipsec policy. Some parameters are set to the default values. Due to the dynamics of dvpn...

  • Page 1742

    1742 c hapter 101: ips ec p rofile c onfiguration c ommands.

  • Page 1744

    1744 c hapter 102: dvpn t unnel c onfiguration c ommands private ip: 10.0.0.22 public ip: 28.1.1.22 tunnel type: hub-spoke state: success holding time: 0h 44m 9s input: 279 packets, 100 data packets, 179 control packets 91 multicasts, 0 errors output: 273 packets, 99 data packets, 174 control packet...

  • Page 1745

    1745 related command: interface tunnel on page 884 and tunnel-protocol on page 887. Example # set the quiet period to 100 seconds for vam client abc when the attempts for tunneling the hub reach the maximum value. System-view [sysname] interface tunnel 0 [sysname-tunnel0] dvpn session dumb-time 100 ...

  • Page 1746

    1746 c hapter 102: dvpn t unnel c onfiguration c ommands string of 1 to 15 characters. & means that you can specify the argument for up to 6 times. Description use the ipsec profile command to configure to reference an ipsec profile on a dvpn tunnel interface. Use the undo ipsec profile command to c...

  • Page 1747

    1747 related command: interface tunnel on page 884. Example # set the dvpn keepalive interval to 20 seconds and the maximum number of attempts for transmitting a keepalive packet to 5. System-view [sysname] interface tunnel 0 [sysname-tunnel0] keepalive 20 5 reset dvpn session syntax reset dvpn sess...

  • Page 1748

    1748 c hapter 102: dvpn t unnel c onfiguration c ommands related command: interface tunnel on page 884. Example # configure the dvpn tunnel mode. System-view [sysname] interface tunnel 0 [sysname-tunnel0] tunnel-protocol dvpn udp vam client syntax vam client client-name undo vam client view tunnel i...

  • Page 1750

    1750 c hapter 103: gre c onfiguration c ommands display interface tunnel syntax display interface tunnel [ number ] view any view parameter number: tunnel interface number. Description use the display interface tunnel command to display information about a specified or all tunnel interfaces. If the ...

  • Page 1751

    1751 display ipv6 interface tunnel syntax display ipv6 interface tunnel number view any view parameter number: tunnel interface number. Description use the display ipv6 interface tunnel command to display ipv6 information about a tunnel interface. Example # display ipv6 information about interface t...

  • Page 1752

    1752 c hapter 103: gre c onfiguration c ommands encapsulation-limit syntax encapsulation-limit [ number ] undo encapsulation-limit view tunnel interface view parameter number: number of encapsulations in a tunnel, in the range 1 to 10. Description use the encapsulation-limit command to configure the...

  • Page 1753

    1753 parameter none description use the gre checksum command to enable the gre packet checksum function so as to verify the validity of packets and discard those invalid packets. Use the undo gre checksum command to disable the gre packet checksum function. By default, the gre packet checksum functi...

  • Page 1754

    1754 c hapter 103: gre c onfiguration c ommands interface tunnel syntax interface tunnel number undo interface tunnel number view system view parameter number: number of a tunnel interface, in the range 0 to 1023. The volume of tunnels is subject to the total number of interfaces and the capacity of...

  • Page 1755

    1755 use the undo keepalive command to disable the keepalive function. By default, the gre keepalive function is disabled. With the gre keepalive function enabled on a tunnel interface, the device sends gre keepalive packets from the tunnel interface periodically. If no response is received from the...

  • Page 1756

    1756 c hapter 103: gre c onfiguration c ommands related command: interface tunnel and destination. Example # create interface tunnel5 and configure serial2/0 (192.100.1.1) as its source interface. System-view [sysname] interface tunnel 5 [sysname-tunnel5] source 192.100.1.1 or [sysname-tunnel5] sour...

  • Page 1757: 104

    104 l2tp c onfiguration c ommands allow l2tp syntax allow l2tp virtual-template virtual-template-number remote remote-name [ domain domain-name ] undo allow view l2tp group view parameter virtual-template-number: number of the virtual interface template for creating a virtual access interface, in th...

  • Page 1758

    1758 c hapter 104: l2tp c onfiguration c ommands ■ the allow l2tp command is available for only lnss. If the tunnel name on the lac is specified, ensure that it is the same as the tunnel name configured on the lac. Related command: l2tp-group. Example # accept the l2tp tunneling request initiated by...

  • Page 1759

    1759 display l2tp tunnel syntax display l2tp tunnel view any view parameter none description use the display l2tp tunnel command to display information about l2tp tunnels. Example # display information about l2tp tunnels. Display l2tp tunnel total tunnel = 1 localtid remotetid remoteaddress port ses...

  • Page 1760

    1760 c hapter 104: l2tp c onfiguration c ommands a virtual interface template is intended to provide parameters for virtual interfaces to be dynamically created by the router, such as logical mp interfaces and logical l2tp interfaces. Related command: allow l2tp. Example # create virtual interface t...

  • Page 1761

    1761 use the undo l2tp enable command to disable the function. By default, an lns includes accm in control messages. Example # disable the accm function. System-view [sysname] undo l2tp sendaccm enable l2tpmoreexam enable syntax l2tpmoreexam enable undo l2tpmoreexam enable view system view parameter...

  • Page 1762

    1762 c hapter 104: l2tp c onfiguration c ommands by default, no l2tp group exists. When you use the undo l2tp-group command to remove an l2tp group, all configuration information associated with the group will be deleted. Related command: allow l2tp and start l2tp. Example # create an l2tp group num...

  • Page 1763

    1763 undo mandatory-lcp view l2tp group view parameter none description use the mandatory-lcp command to force an lns to perform lcp negotiation with users. Use the undo mandatory-lcp command to disable the lcp negotiation. By default, an lns does not perform lcp negotiation with users. When startin...

  • Page 1765

    1765 undo tunnel authentication view l2tp group view parameter none description use the tunnel authentication command to enable the l2tp tunnel authentication function. Use the undo tunnel authentication command to disable the l2tp tunnel authentication function. By default, l2tp tunnel authenticati...

  • Page 1766

    1766 c hapter 104: l2tp c onfiguration c ommands system-view [sysname] l2tp-group 1 [sysname-l2tp1] tunnel avp-hidden tunnel flow-control syntax tunnel flow-control undo tunnel flow-control view l2tp group view parameter none description use the tunnel flow-control command to enable the l2tp tunnel ...

  • Page 1768

    1768 c hapter 104: l2tp c onfiguration c ommands use the undo tunnel timer hello command to restore the default. By default, the interval is 60 seconds. You can set different hello intervals for the lns and lac. Example # set the hello interval to 99 seconds. System-view [sysname] l2tp-group 1 [sysn...

  • Page 1769: 105

    105 t raffic p olicing (tp) c onfiguration c ommands display qos car interface syntax display qos car interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos car interface c...

  • Page 1770

    1770 c hapter 105: t raffic p olicing (tp) c onfiguration c ommands display qos carl syntax display qos carl [ carl-index ] view any view parameters carl-index: committed access rate list (carl) number, in the range 1 to 199. Description use the display qos carl command to view a certain rule or all...

  • Page 1771

    1771 outbound: limits rate for the packets sent by the interface. Any: limits rates for all packets that match any rules. Acl acl-number: limits the rate of packets matching the ipv4 acl, with acl-number being the ipv4 acl number. It ranges from 2000 to 3999. Acl ipv6 acl-number: limits the rate of ...

  • Page 1772

    1772 c hapter 105: t raffic p olicing (tp) c onfiguration c ommands you can configure several car policies by using the command for several times. And the executing order of the policies depends on the configuration order. Execute the command in interface view, and the setting is valid on the curren...

  • Page 1773

    1773 you can define eight dscp values at most. If the same dscp is specified for several times, the system by default regards that only one dscp value has been specified. The dscp values are related to one another in the way of “or”. Examples # configure carl rule 1 with packet precedence 7. System-...

  • Page 1774

    1774 c hapter 105: t raffic p olicing (tp) c onfiguration c ommands.

  • Page 1775: 106

    1775 106 t raffic s haping c onfiguration c ommands display qos gts interface syntax display qos gts interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos gts interface co...

  • Page 1777

    1777 execute the command in interface view, and the setting is effective on the current interface only. Related commands: acl on page 2087. N ipv6 is not supported for traffic shaping for software forwarding. Examples # configure traffic shaping for the packets that conform to acl rule 2001 at the e...

  • Page 1778

    1778 c hapter 106: t raffic s haping c onfiguration c ommands.

  • Page 1779: 107

    1779 107 l ine r ate c onfiguration c ommands display qos lr interface syntax display qos lr interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos lr interface command to ...

  • Page 1781

    1781 view layer 2 module interface view, port group view parameters inbound: configures lr for data streams received by the interface. For a device which cannot be installed with an external interface module or when the number of the interfaces is 4 or 9, this argument is not supported. Outbound: co...

  • Page 1782

    1782 c hapter 107: l ine r ate c onfiguration c ommands.

  • Page 1784

    1784 c hapter 108: d efining c lass c ommands if-match syntax if-match [ not ] match-criteria undo if-match [ not ] match-criteria view class view parameters not: specifies to be the rule that does not match the specified matching rule. Match-criteria: class match rules. The values are as follow: ta...

  • Page 1786

    1786 c hapter 108: d efining c lass c ommands ■ if-match rule 1 ■ if-match rule 2 ■ traffic classifier classa operator or ■ if-match rule 3 ■ if-match classifier classb for a class, you can configure multiple commands which cannot be overwritten. 5 define dscp matching rule. ■ for a class, you can c...

  • Page 1787

    1787 specified mpls exp precedence values are identical with those in the rule (sequence may be different) can the command be deleted. ■ you may configure up to eight mpls exp precedence values in one command. If multiple mpls exp precedences of the same value are specified, the system regards them ...

  • Page 1788

    1788 c hapter 108: d efining c lass c ommands system-view [sysname] traffic classifier class1 [sysname-classifier-class1] if-match acl 3101 # define a class to match the acl named flow. System-view [sysname] traffic classifier class1 [sysname-classifier-class1] if-match acl name flow # define a clas...

  • Page 1789

    1789 # define the match rule of class1 as matching the packets with the dscp value as 1 or 6. System-view [sysname] traffic classifier class1 [sysname-classifier-class1] if-match ip-precedence 1 6 # define the packet whose class match protocol is ip. System-view [sysname] traffic classifier class1 [...

  • Page 1790

    1790 c hapter 108: d efining c lass c ommands by default, the relation is operator and. Tcl-name shall not be the classes pre-defined by the system. The classes defined by the system include: default-class, ef, af1, af2, af3, af4, ip-prec0, ip-prec1, ip-prec2, ip-prec3, ip-prec4, ip-prec5, ip-prec6,...

  • Page 1791: 109

    1791 109 d efining t raffic b ehavior c ommands car syntax car cir committed-information-rate [ cbs committed-burst-size [ ebs excess-burst-size ] ] [ green action ] [ red action ] undo car view traffic behavior view parameters cir committed-information-rate: committed information rate, in the range...

  • Page 1792

    1792 c hapter 109: d efining t raffic b ehavior c ommands description use the car command to configure traffic monitoring for a traffic behavior. Use the undo car command to delete the configuration of traffic monitoring. The policy can be used in the input or outbound direction of the interface. Ap...

  • Page 1793

    1793 queue length 50 (packets) marking: remark mpls exp 3 behavior: user1 marking: remark ip precedence 3 committed access rate: cir 200 (kbps), cbs 15000 (byte), ebs 0 (byte) conform action: pass exceed action: discard expedited forwarding: bandwidth 50 (kbps) cbs 1500 (bytes) filter syntax filter ...

  • Page 1794

    1794 c hapter 109: d efining t raffic b ehavior c ommands undo gts view traffic behavior view parameters cir committed-information-rate: cir, in the range 8 to 1000000 kbps. Cbs committed-burst-size: cbs, in the range 1875 to 19375000 bytes, with the default value being the traffic passed at cir in ...

  • Page 1795

    1795 parameters cpu: redirects to cpu. Interface: redirects to specified interface. Next-hop: redirects to the next hop. Interface-type interface-number: specifies an interface by its type and number. Description user the redirect command to configure redirect action for traffic behavior. User the u...

  • Page 1796

    1796 c hapter 109: d efining t raffic b ehavior c ommands remark dot1p syntax remark dot1p 8021p undo remark dot1p view traffic behavior view parameters 8021p: remarked 802.1p priority value, in the range 0 to 7. Description use the remark dot1p command to configure the 802.1p priority value of the ...

  • Page 1797

    1797 description use the remark dscp command to set a remarked dscp value for ip packets belonging to the class. Use the undo remark dscp command to disable dscp remark. Related commands: qos policy, traffic behavior, classifier behavior. Examples # remark the dscp of the ip packets belonging to the...

  • Page 1798

    1798 c hapter 109: d efining t raffic b ehavior c ommands examples # remark the de bit in fr packets to 1. System-view [sysname] traffic behavior database [sysname-behavior-database] remark fr-de 1 remark ip-precedence syntax remark ip-precedence ip-precedence-value undo remark ip-precedence view tr...

  • Page 1799

    1799 system-view [sysname] traffic behavior database [sysname-behavior-database] remark mpls-exp 2 remark qos-local-id syntax remark qos-local-id local-id-value undo remark qos-local-id view traffic behavior view parameters local-id-value: remarked qos local id value, in the range 1 to 4095. Descrip...

  • Page 1800

    1800 c hapter 109: d efining t raffic b ehavior c ommands examples # define a traffic behavior named behavior1. System-view [sysname] traffic behavior behavior1 [sysname-behavior-behavior1].

  • Page 1801: 110

    1801 110 d efining p olicy c ommands classifier behavior syntax classifier tcl-name behavior behavior-name undo classifier tcl-name view policy view parameters tcl-name: must be the name of the defined class, a string of characters in the range 1 to 31. Behavior-name: must be the name of the defined...

  • Page 1802

    1802 c hapter 110: d efining p olicy c ommands view any view parameters system-defined: policy pre-defined by the system. User-defined: policy pre-defined by the user. Policy-name: policy name. If it is not specified, the configuration information of all the policies pre-defined by the system or by ...

  • Page 1804

    1804 c hapter 110: d efining p olicy c ommands committed access rate: cir 200 (kbps), cbs 15000 (byte), ebs 0 (byte) conform action: pass exceed action: discard conformed: 0/0 (packets/bytes) exceeded : 0/0 (packets/bytes) expedited forwarding: bandwidth 50 (kbps), cbs 1500 (bytes) matched : 0/0 (pa...

  • Page 1805

    1805 parameters inbound: inbound direction. Outbound: outbound direction. Policy-name: policy name, a string of characters in the range 1 to 31. Dynamic: if this argument is applied when cbq is applied on an interface, the cbq bandwidth will be dynamically changed with the change of the interface ba...

  • Page 1806

    1806 c hapter 110: d efining p olicy c ommands view layer 2 interface view/port group view parameters inbound: inbound direction. Policy policy-name: policy name, a string of characters in the range 1 to 31. Description use the qos apply policy command to apply associated policy to the interface. Us...

  • Page 1807

    1807 system-view [sysname] qos policy user1 [sysname-qospolicy-user1].

  • Page 1808

    1808 c hapter 110: d efining p olicy c ommands.

  • Page 1809: 111

    1809 111 fifo q ueuing c onfiguration c ommands qos fifo queue-length syntax qos fifo queue-length queue-length undo qos fifo queue-length view interface view parameters queue-length: length limit of a queue, in the range 1 to 1024. By default, the length is 75. Description use the qos fifo queue-le...

  • Page 1810

    1810 c hapter 111: fifo q ueuing c onfiguration c ommands.

  • Page 1811: 112

    1811 112 pq c onfiguration c ommands display qos pq interface syntax display qos pq interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos pq interface command to view the ...

  • Page 1812

    1812 c hapter 112: pq c onfiguration c ommands parameters pql-number: priority queue list number. Description use the display qos pql command to view contents of specified pq list (pql) or all pq lists. Default items are not displayed. Related commands: qos pq, qos pq pql. Examples # display pqls. D...

  • Page 1814

    1814 c hapter 112: pq c onfiguration c ommands top, middle, normal and bottom: corresponds to the four levels of priority queues, in descending order. Description use the qos pql inbound-interface command to establish classification rules based on interfaces. Use the undo qos pql inbound-interface c...

  • Page 1815

    1815 when queue-key is tcp or udp, key-value can be port name or the associated port number. Description use the qos pql protocol command to establish classification rules based on the protocol type. Use the undo qos pql protocol command to delete the corresponding classification rule. By default, n...

  • Page 1816

    1816 c hapter 112: pq c onfiguration c ommands by default, the length values of the queues are as follows: the default length value of the top queue is 20. The default length value of the middle queue is 40. The default length value of the normal queue is 60. The default length value of the bottom q...

  • Page 1817: 113

    1817 113 cq c onfiguration c ommands display qos cq interface syntax display qos cq interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos cq interface command to view conf...

  • Page 1818

    1818 c hapter 113: cq c onfiguration c ommands default values will not be displayed. Related commands: qos cq, qos cql default-queue, qos cql inbound-interface, qos cql protocol, qos cql queue, qos cql queue serving. Examples # display information about a cql. Display qos cql current cql configurati...

  • Page 1819

    1819 qos cql default-queue syntax qos cql cql-index default-queue queue-number undo qos cql cql-index default-queue view system view parameters cql-index: cql index, in the range 1 to 16. Queue-number: queue number, in the range 0 to 16. By default, customized queue number is 1. Description use the ...

  • Page 1820

    1820 c hapter 113: cq c onfiguration c ommands use the undo qos cql inbound-interface command to delete corresponding classification rules. By default, no classification rules are configured. This command matches a packet to a rule according to the interface that the packet comes from. For the same ...

  • Page 1821

    1821 when queue-key is tcp or udp, key-value can be port name or the associated port number. Description use the qos cql protocol command to establish classification rules based on the protocol type. Use the undo qos cql protocol command to delete corresponding classification rules. The system match...

  • Page 1822

    1822 c hapter 113: cq c onfiguration c ommands if a queue is full, any newly incoming packet will be dropped. Related commands: qos cql default-queue, qos cql inbound-interface, qos pql protocol, qos cql queue serving, qos cq. Examples # specify the maximum packets in the queue 4 in cql 5 to 40. Sys...

  • Page 1823: 114

    1823 114 wfq c onfiguration c ommands display qos wfq interface syntax display qos wfq interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos wfq interface command to view ...

  • Page 1826

    1826 c hapter 115: cbq c onfiguration c ommands parameters bandwidth: maximum bandwidth available on an interface, in the range 1 t o1000000 kbps description use the queue max-bandwidth command to configure the maximum bandwidth available on an interface. Use the undo queue max-bandwidth command to ...

  • Page 1827

    1827 when associating the class with the queue af behavior in the policy, the following must be satisfied. The sum of the bandwidth specified for the classes in the same policy to assured forwarding (queue af) and expedited forwarding (queue ef) must be less than or equal to the available bandwidth ...

  • Page 1828

    1828 c hapter 115: cbq c onfiguration c ommands in the policy the default class default-class cannot be associated with the traffic behavior queue ef belongs to. The sum of the bandwidth specified for the classes in the same policy to assured forwarding (queue af) and expedited forwarding (queue ef)...

  • Page 1829

    1829 examples # configure wfq for default-class and the queue number is 16. System-view [sysname] traffic behavior test [sysname-behavior-test] queue wfq 16 [sysname] qos policy user1 [sysname-qospolicy-user1] classifier default-class behavior test queue-length syntax queue-length queue-length undo ...

  • Page 1830

    1830 c hapter 115: cbq c onfiguration c ommands parameters dscp: uses dscp value for calculating drop probability for a packet. Ip-precedence: uses ip precedence value for calculating drop probability for a packet. Description use the wred command to configure drop mode as weighted random early dete...

  • Page 1831

    1831 this command can be used only after the wred command has been used to enable wred drop mode based on dscp. The configuration of wred dscp will be deleted if the configuration of qos wred is deleted. The configuration of drop parameter gets invalid if the configuration of the queue af command or...

  • Page 1832

    1832 c hapter 115: cbq c onfiguration c ommands the configuration of drop parameters gets invalid if the configuration of the queue af command or the queue wfq command is cancelled. Related commands: qos policy, traffic behavior, classifier behavior. Examples # set lower-limit to 20, upper-limit to ...

  • Page 1833: 116

    1833 116 rtp p riority q ueue c onfiguration c ommands display qos rtpq interface syntax display qos rtpq interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos rtpq interf...

  • Page 1834

    1834 c hapter 116: rtp p riority q ueue c onfiguration c ommands view interface view parameters pct percent: percentage of the reserved bandwidth to the available bandwidth. It is in the range 1 to 100 and the default value is 80. Description use the qos reserved-bandwidth command to set the maximum...

  • Page 1835

    1835 use the undo qos rtpq command to disable the rtp queuing feature of the interface. By default, rtp queuing feature is disabled. This command is applied to the delay-sensitive applications, real-time voice transmission for example. Configured with the qos rtpq command, the system will serve the ...

  • Page 1836

    1836 c hapter 116: rtp p riority q ueue c onfiguration c ommands.

  • Page 1837: 117

    1837 117 q o s t oken c onfiguration c ommands qos qmtoken syntax qos qmtoken token-number undo qos qmtoken view interface view parameters token-number: the number of transmitted tokens, in the range 1 to 50. Description use the qos qmtoken command to configure the number of transmitted tokens. Use ...

  • Page 1838

    1838 c hapter 117: q o s t oken c onfiguration c ommands.

  • Page 1839: 118

    1839 118 p riority m apping t able c onfiguration c ommands display qos map-table syntax display qos map-table [ dot1p-lp ] view any view parameters dot1p-lp: mapping table of 802.1p priority to local priority. Description use the display qos map-table command to display configuration of specified p...

  • Page 1840

    1840 c hapter 118: p riority m apping t able c onfiguration c ommands qos map-table dot1p-ip syntax qos map-table dot1p-lp view system view parameters dot1p-lp: mapping table of 802.1p priority to local priority. Description use the qos map-table command to enter the specified priority mapping table...

  • Page 1841

    1841 related commands: display qos map-table. Examples # configure the parameters in the mapping table from 802.1p priority to local priority. The local priority corresponding to 802.1p priority 4 and 5 is local priority 1. System-view [sysname] qos map-table dot1p-lp [sysname-maptbl-dot1p-lp] impor...

  • Page 1842

    1842 c hapter 118: p riority m apping t able c onfiguration c ommands.

  • Page 1843: 119

    1843 119 p ort p riority c onfiguration c ommands qos priority syntax qos priority priority-value undo qos priority view ethernet interface view/port group view parameters priority-value: port priority value, in the range 0 to 7. The default value is 0. Description use the qos priority command to co...

  • Page 1844

    1844 c hapter 119: p ort p riority c onfiguration c ommands.

  • Page 1845: 120

    1845 120 p ort p riority t rust m ode c onfiguration c ommands display qos trust interface syntax display qos trust interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos t...

  • Page 1846

    1846 c hapter 120: p ort p riority t rust m ode c onfiguration c ommands description use the qos trust command to set to trust 802.1p priority carried with a packet. Use the undo qos trust command to restore the default. By default, 802.1p priority carried with a packet is not trusted. Port group is...

  • Page 1847: 121

    1847 121 wred c onfiguration c ommands display qos wred interface syntax display qos wred interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos wred interface command to v...

  • Page 1848

    1848 c hapter 121: wred c onfiguration c ommands # display the wred configuration and statistics of the specified interface. Display qos wred interface interface: ethernet1/0 current wred configuration: applied wred table name: q1 table type: queue based wred qid: green-discard yellow-discard red-di...

  • Page 1849

    1849 by default, the dropping method of a queue is tail drop. Related commands: qos wfq, display qos wred interface. Examples # enable wred on ethernet 1/0, using ip precedence for calculating the drop probability. System-view [sysname] interface ethernet1/0 [sysname-ethernet1/0] qos wfq queue-lengt...

  • Page 1850

    1850 c hapter 121: wred c onfiguration c ommands [sysname-ethernet1/0] qos wred dscp 63 low-limit 20 high-limit 40 di scard-probability 15 qos wred ip-precedence syntax qos wred ip-precedence ip-precedence low-limit low-limit high-limit high-limit discard-probability discard-prob undo qos wred ip-pr...

  • Page 1851

    1851 view interface view parameters weighting-constant exponent: exponent used to calculate the average queue length, in the range 1 to 16. It defaults to 9. Description use the qos wred weighting-constant command to set exponential used to calculate the average length of wred queues. Use the undo q...

  • Page 1852

    1852 c hapter 121: wred c onfiguration c ommands.

  • Page 1853: 122

    1853 122 wred t able c onfiguration c ommands display qos wred table syntax display qos wred table [ table-name ] view any view parameters table-name: name of the wred table to be displayed. Description use the display qos wred table command to display the configuration information of wred table. If...

  • Page 1854

    1854 c hapter 122: wred t able c onfiguration c ommands qos wred queue table syntax qos wred queue table table-name undo qos wred table table-name view system view parameters queue: queue-based table, which randomly drops packets according to the queue the packet belongs to when congestion occurs. T...

  • Page 1855

    1855 description use the qos wred apply command to apply wred table on an interface. Use the undo qos wred apply command to restore the default dropping method. This command also deletes the application of wred table. By default, the dropping method of a queue is tail drop. The queue-based wred tabl...

  • Page 1856

    1856 c hapter 122: wred t able c onfiguration c ommands system-view [sysname] qos wred queue table queue-table1 [sysname-wred-table-queue-table1] queue 1 low-limit 10

  • Page 1857: 123

    1857 123 mpls q o s c onfiguration c ommands if-match mpls-exp syntax if-match [ not ] mpls-exp exp-value-list undo if-match [ not ] mpls-exp view class view parameters exp-value-list: exp value list, in the range 0 to 7. Users can input the eight values repeatedly. Description use the if-match mpls...

  • Page 1858

    1858 c hapter 123: mpls q o s c onfiguration c ommands queue: queue number of cq, in the range 0 to 16. Exp-value: exp domain of mpls packet, in the range 0 to 7. Up to 8 can be configured, separated with space. Description use the qos cql protocol mpls exp command to configure cq classification rul...

  • Page 1859

    1859 when multiple rules are present, the device matches packets in the sequence that rules are configured. Related commands: qos pql protocol. Examples # configure classification rule based on the mpls protocol cql 10, and sets the queue top to correspond with exp value 5. System-view [sysname] qos...

  • Page 1860

    1860 c hapter 123: mpls q o s c onfiguration c ommands.

  • Page 1861: 124

    1861 124 dar c onfiguration c ommands dar max-session-count syntax dar max-session-count count undo dar max-session-count view system view parameters count: the maximum number of connections recognizable by dar, in the range 0 to 65536. It defaults to 65536. Description use the dar max-session-count...

  • Page 1862

    1862 c hapter 124: dar c onfiguration c ommands protocols, including user-defined01, user-defined02, ..., user-defined10. No port number is specified for the user-defined protocol at the initial state. It will be effective only after the port number is specified. At the same time, the dar protocol-r...

  • Page 1863

    1863 netbios tcp 137, 138, 139 netbios udp 137, 138, 139 netshow tcp 1755 nfs tcp/udp 2049 nntp tcp/udp 119 notes tcp/udp 1352 novadign tcp/udp 3460, 3461, 3462, 3463, 3464, 3465 ntp tcp/udp 123 pcanywhere tcp 5631, 65301 pcanywhere udp 22, 5632 pop3 tcp/udp 110 pptp tcp 1723 printer tcp/udp 515 rcm...

  • Page 1864

    1864 c hapter 124: dar c onfiguration c ommands description use the dar protocol command to configure the port number of dar application protocol. Use the undo dar protocol command to restore the port number to default value. By default, port number is specified for the protocols except for the ten ...

  • Page 1865

    1865 undo dar protocol-statistic view interface view parameters time: time interval between statistics actions , in minute, in the range 1 to 30. By default, it is 5 minutes. Description use the dar protocol-statistic command to enable dar packet statistics function. Use the undo dar protocol-statis...

  • Page 1867

    1867 5555 netbios tcp 137 138 139 udp 137 138 139 netshow tcp 1755 nfs tcp 2049 udp 2049 nntp tcp 119 udp 119 notes tcp 1352 udp 1352 novadign tcp 3460 3461 3462 3463 3464 3465 udp 3460 3461 3462 3463 3464 3465 ntp tcp 123 udp 123 pcanywhere tcp 5631 65301 udp 22 5632 pop3 tcp 110 udp 110 pptp tcp 1...

  • Page 1868

    1868 c hapter 124: dar c onfiguration c ommands user-defined03 user-defined04 user-defined05 user-defined06 user-defined07 user-defined08 user-defined09 user-defined10 vdolive tcp 7000 winmx tcp 6699 xwindows tcp range 6000 6003 display dar protocol-rename syntax display dar protocol-rename view any...

  • Page 1870

    1870 c hapter 124: dar c onfiguration c ommands if-match protocol syntax if-match [ not ] protocol protocol-name undo if-match [ not ] protocol protocol-name view class view parameters not: specifies the current rule to not to match the specified matching rule. Protocol-name: name of matching protoc...

  • Page 1873

    1873 view user view parameters protocol protocol-name: deletes statistics information about specified protocol, in the same range with protocol-name in the if-match protocol command. Interface-type interface-number: specifies an interface by its type and number. All: deletes all statistics informati...

  • Page 1874

    1874 c hapter 124: dar c onfiguration c ommands.

  • Page 1875: 125

    1875 125 fr q o s c onfiguration c ommands apply policy outbound syntax apply policy policy-name outbound undo apply policy outbound view frame relay class view parameters policy-name: name of the applied policy. It is a string with 1 to 31 characters. Description use the apply policy outbound comma...

  • Page 1877

    1877 use the undo cir command to restore the default value. The cir is the minimum sending rate that can be provided by virtual circuit. It ensures the user could still send data at this rate upon network congestion. Upon network congestion, dce will send a packet with a becn flag bit of 1 to dte. A...

  • Page 1879

    1879 view frame relay class view parameters cql cql-index: group number of custom queuing, ranging from 1 to 16. Description use the cq command to set the fr virtual circuit queuing to custom queuing (cq). Use the undo cq command to restore the fr virtual circuit queuing to fifo. By default, the vir...

  • Page 1880

    1880 c hapter 125: fr q o s c onfiguration c ommands # display information on the map of fr class ts to interfaces. Display fr class-map fr-class ts serial1/0 fr-class ts serial1/0.1 fr-class ts fr dlci 100 serial1/0 fr-class ts fr dlci 200 serial1/0.1 fr-class ts display fr fragment-info syntax dis...

  • Page 1881

    1881 examples # display fr fragment information of all the interfaces. Display fr fragment-info interface serial1/0:1: dlci type size in/out/drop 200 frf12(end to end) 80 0/0/0 # display fr fragment information of a certain interfaces. Display fr fragment-info interface serial 1/0:1 200 type : frf12...

  • Page 1883

    1883 inbound: information about inbound interface applying cbq. Outbound: information about outbound interface applying cbq. Description use the display qos policy interface command to view information about cbq application on the interface. Examples # display the information about cbq application o...

  • Page 1884

    1884 c hapter 125: fr q o s c onfiguration c ommands display qos pvc-pq interface syntax display qos pvc-pq interface [ interface-type interface-number ] view any view parameters interface-type interface-number: specifies an interface by its type and number. Description use the display qos pvc-pq in...

  • Page 1886

    1886 c hapter 125: fr q o s c onfiguration c ommands when the router serves as dce for switching, the fifo queue length of dlci can be set if frts has been applied to dlci. Related commands: fr class. Examples # set the fifo queue of the fr class named test1 to hold 80 packets at most. System-view [...

  • Page 1887

    1887 parameters de: discards the fr packet whose de flag bit is 1 when congestion occurs. Ecn: processes the becn and fecn flag bits of fr packets when congestion occurs. Queue-percentage: network congestion threshold, the occupation ratio of the interface queue, equal to the percentage of current q...

  • Page 1888

    1888 c hapter 125: fr q o s c onfiguration c ommands in the view of a fr main interface (or subinterface), this command can only apply a de rule list to the fr vcs on the main interface or (or subinterface). After a de rule list is applied to fr virtual circuit, those packets that match the rule lis...

  • Page 1890

    1890 c hapter 125: fr q o s c onfiguration c ommands system-view [sysname] fr del 1 protocol ip fr pvc-pq syntax fr pvc-pq [ top-limit middle-limit normal-limit bottom-limit ] undo fr pvc-pq view frame relay interface view, mfr interface view parameters top-limit: length of top priority queue, rangi...

  • Page 1891

    1891 fr traffic-policing syntax fr traffic-policing undo fr traffic-policing view frame relay interface view, mfr interface view parameters none description use the fr traffic-policing command to enable frtp function. Use the undo fr traffic-policing command to disable frtp function. Frtp function i...

  • Page 1892

    1892 c hapter 125: fr q o s c onfiguration c ommands examples # enable frts on the serial interface serial 1/0. System-view [sysname] interface serial1/0 [sysname-serial1/0] fr traffic-shaping fragment syntax fragment [ fragment-size ] undo fragment [ fragment-size ] view frame relay class view para...

  • Page 1893

    1893 if the specified fr class does not exist, the command will first create a fr class before associating the fr class with the current virtual circuit or interface. If the specified fr class does exist, the command will associate the fr class with the current virtual circuit or interface without c...

  • Page 1894

    1894 c hapter 125: fr q o s c onfiguration c ommands undo pvc-pq view frame relay class view parameters top: sets the top pvc pq , namely, top priority queue, to accept the packets from the vc. Middle: sets the middle pvc pq , namely, middle priority queue, to accept the packets. Normal: sets the no...

  • Page 1895

    1895 view frame relay class view description use the rtpq command to configure to apply realtime transport protocol (rtp) priority queuing. Use the undo rtpq command to remove the application. The application of a fr class configured with rtpq to a pvc results in the creation of a strict priority qu...

  • Page 1896

    1896 c hapter 125: fr q o s c onfiguration c ommands examples # enable the fr traffic shaping function, by adjusting the packets with the becn flag 1 and the ratio of each adaptation is set to 20. System-view [sysname] fr class test1 [sysname-fr-class-test1] traffic-shaping adaptation becn 20 wfq sy...

  • Page 1898

    1898 c hapter 126: 802.1 x c onfiguration c ommands proxy trap checker is disabled proxy logoff checker is disabled handshake is disabled the port is an authenticator authenticate mode is auto port control type is mac-based guest vlan: 0 max on-line user number is 256 eapol packet: tx 0, rx 0 sent e...

  • Page 1899

    1899 dot1x syntax in system view: dot1x [ interface interface-list ] undo dot1x [ interface interface-list ] in ethernet interface view: dot1x undo dot1x view system view/interface view parameter interface interface-list: specifies a port list, which can contain multiple ports. The interface-list ar...

  • Page 1900

    1900 c hapter 126: 802.1 x c onfiguration c ommands interface-type represents the port type, interface-number represents the port number, and & means that you can provide up to 10 port indexes/port index lists for this argument. The start port number must be smaller than the end number and the two p...

  • Page 1901

    1901 undo dot1x authentication-method view system view parameter chap: authenticates supplicants using chap. Eap: authenticates supplicants using eap. Pap: authenticates supplicants using pap. Description use the dot1x authentication-method command to set the 802.1x authentication method. Use the un...

  • Page 1902

    1902 c hapter 126: 802.1 x c onfiguration c ommands dot1x guest-vlan vlan-id undo dot1x guest-vlan view system view/interface view parameter vlan-id: id of the vlan to be specified as the guest vlan, in the range 1 to 4094. Interface interface-list: specifies an ethernet port list, which can contain...

  • Page 1903

    1903 example # specify port ethernet 1/0 to use vlan999 as its guest vlan. System-view [sysname] dot1x guest-vlan 999 interface ethernet 1/0 # specify ports ethernet 1/2 to ethernet 1/5 to use vlan10 as its guest vlan. System-view [sysname] dot1x guest-vlan 10 interface ethernet 1/2 to ethernet 1/5 ...

  • Page 1904

    1904 c hapter 126: 802.1 x c onfiguration c ommands dot1x max-user syntax in system view: dot1x max-user user-number [ interface interface-list ] undo dot1x max-user [ interface interface-list ] in ethernet interface view: dot1x max-user user-number undo dot1x max-user view system view/interface vie...

  • Page 1905

    1905 system-view [sysname] interface ethernet 1/1 [sysname-ethernet1/1] dot1x max-user 32 dot1x multicast-trigger syntax dot1x multicast-trigger undo dot1x multicast-trigger view interface view parameter none description use the dot1x multicast-trigger command to enable the multicast trigger functio...

  • Page 1906

    1906 c hapter 126: 802.1 x c onfiguration c ommands auto: places the specified or all ports in the state of unauthorized initially to allow only eapol frames to pass, and turns the ports into the state of authorized to allow access to the network after the users pass authentication. This is the most...

  • Page 1907

    1907 parameter macbased: specifies to use the macbased authentication method. With this method, each user of a port must be authenticated separately, and when an authenticated user goes offline, no other users are affected. Portbased: specifies to use the portbased authentication method. With this m...

  • Page 1908

    1908 c hapter 126: 802.1 x c onfiguration c ommands after a supplicant fails the authentication, the authenticator refuses further authentication requests from the supplicant in the period dictated by the quiet timer. Related command: display dot1x, dot1x timer. Example # enable the quiet timer. Sys...

  • Page 1910

    1910 c hapter 126: 802.1 x c onfiguration c ommands # specify port ethernet 1/9 to send a trap packet when detecting that a user is trying to login through a proxy. System-view [sysname] dot1x supp-proxy-check trap [sysname] dot1x supp-proxy-check trap interface ethernet 1/9 or system-view [sysname]...

  • Page 1911

    1911 response after sending the allowed maximum number of handshake requests, it considers that the supplicant is offline. ■ quiet timer (quiet-period): when a supplicant fails the authentication, the authenticator refuses further authentication requests from the supplicant in this period of time. ■...

  • Page 1912

    1912 c hapter 126: 802.1 x c onfiguration c ommands with the interface interface-list argument specified, the command clears 802.1x statistics on the specified ports. With the argument unspecified, the command clears global 802.1x statistics and 802.1x statistics on all ports. Related command: displ...

  • Page 1914

    1914 c hapter 127: aaa c onfiguration c ommands parameter hwtacacs-scheme hwtacacs-scheme-name: specifies an hwtacacs scheme by its name, which is a string of 1 to 32 characters. Local: performs local accounting. None: does not perform any accounting. Radius-scheme radius-scheme-name: specifies a ra...

  • Page 1916

    1916 c hapter 127: aaa c onfiguration c ommands undo accounting login view isp domain view parameter hwtacacs-scheme hwtacacs-scheme-name: specifies an hwtacacs scheme by its name, which is a string of 1 to 32 characters. Local: performs local accounting. None: does not perform any accounting. Radiu...

  • Page 1917

    1917 description use the accounting optional command to enable the accounting optional feature. Use the undo accounting optional command to disable the feature. By default, the feature is disabled. Note that: ■ with the accounting optional command configured, a user that will be disconnected otherwi...

  • Page 1919

    1919 accounting voip syntax accounting voip radius-scheme radius-scheme-name undo accounting voip view isp domain view parameter radius-scheme radius-scheme-name: specifies a radius scheme by its name, which is a string of 1 to 32 characters. Description use the accounting voip command to specify th...

  • Page 1920

    1920 c hapter 127: aaa c onfiguration c ommands idle-cut minute: configures the idle cut function. The idle cut period ranges from 1 to 120, in minutes. Ip ip-address: specifies the ip address of the user. The attribute ip command only applies to authentications that support ip address passing, such...

  • Page 1921

    1921 none: does not perform any authentication. Radius-scheme radius-scheme-name: specifies a radius scheme by its name, which is a string of 1 to 32 characters. Description use the authentication default command to specify the default authentication scheme for all types of users. Use the undo authe...

  • Page 1922

    1922 c hapter 127: aaa c onfiguration c ommands radius-scheme radius-scheme-name: specifies a radius scheme by its name, which is a string of 1 to 32 characters. Description use the authentication lan-access command to specify the authentication scheme for lan access users. Use the undo authenticati...

  • Page 1923

    1923 use the undo authentication login command to restore the default. By default, the default authentication scheme is used for login users. Note that the radius or hwtacacs scheme specified for the current isp domain must have been configured. Related command: authentication default, hwtacacs sche...

  • Page 1925

    1925 authentication voip syntax authentication voip radius-scheme radius-scheme-name undo authentication voip view isp domain view parameter radius-scheme radius-scheme-name: specifies a radius scheme by its name, which is a string of 1 to 32 characters. Description use the authentication voip comma...

  • Page 1926

    1926 c hapter 127: aaa c onfiguration c ommands description use the authorization command command to specify the authorization scheme for command line users. Use the undo authorization command command to restore the default. By default, the default authorization scheme is used for command line users...

  • Page 1927

    1927 ■ the authorization scheme specified with the authorization default command is for all types of users and has a priority lower than that for a specific access mode. ■ radius authorization is special in that it takes effect only when the radius authorization scheme is the same as the radius auth...

  • Page 1928

    1928 c hapter 127: aaa c onfiguration c ommands note that the radius scheme specified for the current isp domain must have been configured. Related command: authorization default, radius scheme. Example # configure the default isp domain system to use the local authorization scheme for lan access us...

  • Page 1929

    1929 example # configure the default isp domain system to use the local authorization scheme for login users. System-view [sysname] domain system [sysname-isp-system] authorization login local # configure the default isp domain system to use radius authorization scheme rd for login users and to use ...

  • Page 1931

    1931 view isp domain view parameter radius-scheme radius-scheme-name: specifies a radius scheme by its name, which is a string of 1 to 32 characters. Description use the authorization voip command to specify the authorization scheme for voip users. Use the undo authorization voip command to restore ...

  • Page 1932

    1932 c hapter 127: aaa c onfiguration c ommands domain isp-name: specifies all user connections of an isp domain. The isp-name argument refers to the name of an existing isp domain and is a case-insensitive string of 1 to 24 characters. Interface interface-type interface-number: specifies all user c...

  • Page 1933

    1933 interface interface-type interface-number: specifies all user connections of an interface. Ip ip-address: specifies all user connections using the specified ip address. Mac mac-address: specifies all user connections using the specified mac address. The mac address must be in the format of h-h-...

  • Page 1934

    1934 c hapter 127: aaa c onfiguration c ommands parameter isp-name: name of an existing isp domain, a case-insensitive string of 1 to 24 characters. Description use the display domain command to display the configuration information of a specified isp domain or all isp domains. Related command: acce...

  • Page 1936

    1936 c hapter 127: aaa c onfiguration c ommands example # display information about all local users. Display local-user the contents of local user abc: state: active servicetype: ftp idle-cut: disable access-limit: enable current accessnum: 0 bind location: 2.2.2.2/3/2/255 (nas/slot/subslot/port) vl...

  • Page 1937

    1937 use the undo domain command to remove an isp domain. By default, the system uses the domain of system. You can view its settings by executing the display domain command. If the specified isp domain does not exist, the system will create a new isp domain. All the isp domains are in the active st...

  • Page 1939

    1939 ■ you can also configure an ip address pool in isp domain view for assigning ip addresses to the ppp users in the isp domain. This applies to the scenario where an interface serves a great amount of ppp users but the address resources are inadequate. For example, an ethernet interface running p...

  • Page 1942

    1942 c hapter 127: aaa c onfiguration c ommands ■ in simple text, it must be a string of 1 to 63 characters that contains no blank space, for example, aabbcc. ■ in cipher text, it must be a string of 24 or 88 characters, for example, _(tt8f]y5sq=^q‘maf4 ■ with the simple keyword, you must specify th...

  • Page 1943

    1943 description use the self-service-url enable command to enable the self-service server localization function and specify the url of the self-service server for changing user password. Use the self-service-url disable command or the undo self-service-url command to disable the self-service server...

  • Page 1944

    1944 c hapter 127: aaa c onfiguration c ommands terminal: authorizes the user to use the terminal service, allowing the user to login from the console, aux or asyn port. Level level: sets the user level of a telnet, terminal, or ssh user. The level argument is an integer in the range 0 to 3 and defa...

  • Page 1946

    1946 c hapter 127: aaa c onfiguration c ommands by default, an isp domain is active when created. So does a local user. By blocking an isp domain, you disable users of the domain that are offline from requesting network services. Note that the online users are not affected. By blocking a user, you d...

  • Page 1947

    1947 system-view [sysname] local-user user1 [sysname-luser-user1] work-directory cf:.

  • Page 1948

    1948 c hapter 127: aaa c onfiguration c ommands.

  • Page 1949: 128

    1949 128 radius c onfiguration c ommands accounting-on enable syntax accounting-on enable undo accounting-on enable view radius scheme view parameter none description use the accounting-on enable command to enable the accounting-on function. After doing so, when the device reboots, a message will be...

  • Page 1950

    1950 c hapter 128: radius c onfiguration c ommands accounting-on enable interval syntax accounting-on enable interval seconds undo accounting-on interval view radius scheme view parameter seconds: time interval to retransmit accounting-on packet in seconds, ranging from 1 to 15. Description use the ...

  • Page 1951

    1951 description use the accounting-on enable send command to set the maximum number of accounting-on packet retransmission attempts. Use the undo accounting-on enable send command to restore the default. By default, the maximum number of accounting-on packet retransmission attempts is 5. Note that:...

  • Page 1952

    1952 c hapter 128: radius c onfiguration c ommands related command: display radius scheme. Example # define radius scheme radius1 to send data flows and packets destined for the radius server in kilobytes and kilo-packets. System-view [sysname] radius scheme radius1 [sysname-radius-radius1] data-flo...

  • Page 1953

    1953 display radius statistics syntax display radius statistics view any view parameter none description use the display radius statistics command to display statistics about radius packets. Related command: radius scheme. Example # display statistics about radius packets. Display radius statistics ...

  • Page 1954

    1954 c hapter 128: radius c onfiguration c ommands acctstop= = 0 online= = 0 stop= = 0 received and sent packets statistic: sent pkt total : = 0 received pkt total: = 0 radius received packets statistic: resend times resend total 1 0 2 0 total 0 running statistic: radius received messages statistic:...

  • Page 1955

    1955 dead the state of idle authproc the state of waiting for authentication authsucc the state of authenticated acctstart the state of accounting start rltsend the state of sending real-time accounting packets rltwait the state of waiting for real-time accounting acctstop the state of accounting wa...

  • Page 1958

    1958 c hapter 128: radius c onfiguration c ommands view radius scheme view parameter ip-address: ip address in dotted decimal notation. It must be an address of the device and cannot be all 0s address, all 1s address, a class d address, a class e address or a loopback address. Description use the na...

  • Page 1959

    1959 use the undo primary accounting command to restore the defaults. By default, the default ip address is 0.0.0.0, and the default port number 1813. Note that: ■ the ip addresses of the primary and secondary accounting servers cannot be the same. Otherwise, the configuration fails. ■ the radius se...

  • Page 1960

    1960 c hapter 128: radius c onfiguration c ommands related command: key (radius scheme view), radius scheme, state. Example # set the ip address of the primary authentication/authorization server for radius scheme radius1 to 10.110.1.1 and the udp port of the server to 1812. System-view [sysname] ra...

  • Page 1961

    1961 undo radius nas-ip view system view parameter ip-address: ip address in dotted decimal notation. It must be an address of the device and cannot be all 0s address, all 1s address, a class d address, a class e address or a loopback address. Description use the radius nas-ip command to set the ip ...

  • Page 1962

    1962 c hapter 128: radius c onfiguration c ommands use the undo radius scheme command to delete a radius scheme. By default, no radius scheme is defined. Note that: ■ the radius protocol is configured scheme by scheme. Every radius scheme must at least specify the ip addresses and udp ports of the r...

  • Page 1963

    1963 nas transmits the request for the specified maximum number, it sends another trap message. ■ if the specified maximum number of transmission attempts is odd, the half of the number refers to the smallest integer greater than the half of the number. Example # enable the radius trap function for ...

  • Page 1964

    1964 c hapter 128: radius c onfiguration c ommands description use the reset stop-accounting-buffer command to clear the buffered stop-accounting requests, which get no responses. Related command: stop-accounting-buffer enable (hwtacacs scheme view), retry stop-accounting (hwtacacs scheme view), use...

  • Page 1965

    1965 system-view [sysname] radius scheme radius1 [sysname-radius-radius1] retry 5 retry realtime-accounting syntax retry realtime-accounting retry-times undo retry realtime-accounting view radius scheme view parameter retry-times: maximum number of accounting request transmission attempts. It ranges...

  • Page 1966

    1966 c hapter 128: radius c onfiguration c ommands retry stop-accounting (radius scheme view) syntax retry stop-accounting retry-times undo retry stop-accounting view radius scheme view parameter retry-times: maximum number of stop-accounting request transmission attempts. It ranges from 10 to 65,53...

  • Page 1967

    1967 port-number: udp port number of the secondary accounting server, which ranges from 1 to 65535 and defaults to 1813. Description use the secondary accounting command to configure the ip address and udp port of the secondary radius accounting server. Use the undo secondary accounting command to r...

  • Page 1968

    1968 c hapter 128: radius c onfiguration c ommands related command: key (radius scheme view), radius scheme, state. Example # set the ip address of the secondary authentication/authorization server for radius scheme radius1 to 10.110.1.2 and the udp port of the server to 1812. System-view [sysname] ...

  • Page 1969

    1969 standard: specifies the standard radius server, which requires the radius client end and radius server to interact according to the regulation and packet format of the standard radius protocol (rfc 2865/2866 or newer). Description use the server-type command to specify the radius server type su...

  • Page 1970

    1970 c hapter 128: radius c onfiguration c ommands after the quiet timer times out, the status of the primary server is active again and the status of the secondary server remains the same. If the secondary server fails, the device restores the status of the primary server to active immediately. ■ i...

  • Page 1971

    1971 related command: reset stop-accounting-buffer, radius scheme, display stop-accounting-buffer. Example # in radius scheme radius1, enable the device to buffer the stop-accounting requests getting no responses. System-view [sysname] radius scheme radius1 [sysname-radius-radius1] stop-accounting-b...

  • Page 1972

    1972 c hapter 128: radius c onfiguration c ommands use the undo timer realtime-accounting command to restore the default. Note that: ■ for real-time accounting, a nas must transmit the accounting information of online users to the radius accounting server periodically. This command is for setting th...

  • Page 1973

    1973 obtain the radius service. The nas uses the radius server response timeout timer to control the transmission interval. ■ a proper value for the radius server response timeout timer can help improve the system performance. Set the timer based on the network conditions. ■ the maximum total number...

  • Page 1974

    1974 c hapter 128: radius c onfiguration c ommands example # specify the device to include the domain name in the username sent to the radius servers for the radius scheme radius1. System-view [sysname] radius scheme radius1 [sysname-radius-radius1] user-name-format without-domain.

  • Page 1976

    1976 c hapter 129: hwtacacs c onfiguration c ommands parameter hwtacacs-scheme-name: hwtacacs scheme name. Statistics: displays complete statistics about the hwtacacs server. Description use the display hwtacacs command to display configuration information or statistics of the specified or all hwtac...

  • Page 1977

    1977 display stop-accounting-buffer syntax display stop-accounting-buffer hwtacacs-scheme hwtacacs-scheme-name view any view parameter hwtacacs-scheme hwtacacs-scheme-name: specifies a hwtacacs scheme by its name, a string of 1 to 32 characters. Description use the display stop-accounting-buffer com...

  • Page 1978

    1978 c hapter 129: hwtacacs c onfiguration c ommands use the undo hwtacacs nas-ip command to remove the configuration. By default, the source ip address of a packet sent to the server is the ip address of the outbound port. Note that: ■ specifying a source address for the hwtacacs packets to be sent...

  • Page 1980

    1980 c hapter 129: hwtacacs c onfiguration c ommands by default, the source ip address of a packet sent to the server is the ip address of the outbound port. Note that: ■ specifying a source address for the hwtacacs packets to be sent to the server can avoid the situation where the packets sent back...

  • Page 1981

    1981 ■ if you configure the command for more than one time, the last configuration takes effect. ■ you can remove an accounting server only when no active tcp connection for sending accounting packets is using it. Example # configure the primary accounting server. System-view [sysname] hwtacacs sche...

  • Page 1982

    1982 c hapter 129: hwtacacs c onfiguration c ommands primary authorization syntax primary authorization ip-address [ port-number ] undo primary authorization view hwtacacs scheme view parameter ip-address: ip address of the server, a valid unicast address in dotted decimal notation. The default is 0...

  • Page 1983

    1983 authentication: clears hwtacacs authentication statistics. Authorization: clears hwtacacs authorization statistics. Description use the reset hwtacacs statistics command to clear hwtacacs statistics. Related command: display hwtacacs. Example # clear all hwtacacs statistics. Reset hwtacacs stat...

  • Page 1984

    1984 c hapter 129: hwtacacs c onfiguration c ommands related command: reset stop-accounting-buffer, hwtacacs scheme, display stop-accounting-buffer. Example # set the maximum number of stop-accounting request transmission attempts to 50. System-view [sysname] hwtacacs scheme hwt1 [sysname-hwtacacs-h...

  • Page 1985

    1985 undo secondary authentication view hwtacacs scheme view parameter ip-address: ip address of the server, a valid unicast address in dotted decimal notation. The default is 0.0.0.0. Port-number: port number of the server. It ranges from 1 to 65535 and defaults to 49. Description use the secondary...

  • Page 1986

    1986 c hapter 129: hwtacacs c onfiguration c ommands description use the secondary authorization command to specify the secondary hwtacacs authorization server. Use the undo secondary authorization command to remove the configuration. Note that: ■ the ip addresses of the primary and secondary author...

  • Page 1987

    1987 related command: reset stop-accounting-buffer, hwtacacs scheme, display stop-accounting-buffer. Example # in hwtacacs scheme hwt1, enable the device to buffer the stop-accounting requests getting no responses. System-view [sysname] hwtacacs scheme hwt1 [sysname-hwtacacs-hwt1] stop-accounting-bu...

  • Page 1988

    1988 c hapter 129: hwtacacs c onfiguration c ommands use the undo timer realtime-accounting command to restore the default. Note that: ■ for real-time accounting, a nas must transmit the accounting information of online users to the hwtacacs accounting server periodically. This command is for settin...

  • Page 1990

    1990 c hapter 129: hwtacacs c onfiguration c ommands.

  • Page 1993

    1993 view system view parameter permit: sets the default filtering action to “permit”. Deny: sets the default filtering action to “deny”. Description use the firewall default command to set the default filtering action of the firewall to “permit” or “deny”. By default, the default filtering action i...

  • Page 1994

    1994 c hapter 130: p acket f ilter f irewall c onfiguration c ommands name acl-name: specifies the layer 2 acl name, a case-insensitive string of 1 to 32 characters that must start with an english letter a to z or a to z. To avoid confusion, the word “all” cannot be used as the acl name. Inbound: fi...

  • Page 1996

    1996 c hapter 130: p acket f ilter f irewall c onfiguration c ommands use the undo firewall ipv6 fragments-inspect command to disable ipv6 fragments inspection. By default, ipv6 fragments inspection is disabled. Example # enable ipv6 fragments inspection. System-view [sysname] firewall ipv6 fragment...

  • Page 2000

    2000 c hapter 131: aspf c onfiguration c ommands # set the syn wait timeout period of the tcp session to 20 seconds. [sysname-aspf-policy-1] aging-time syn 20 # set the fin wait timeout period of the tcp session to 10 seconds. [sysname-aspf-policy-1] aging-time fin 10 # set the tcp idle timeout peri...

  • Page 2001

    2001 java-blocking: blocks the java applets of packets to the specified network segment, applicable to http only. Acl-number: basic acl number, in the range 2,000 to 2,999. Seconds: configures the protocol idle timeout period, in seconds. The effective range is 5 to 43,200. Description use the detec...

  • Page 2002

    2002 c hapter 131: aspf c onfiguration c ommands parameter none description use the display aspf all command to view the information of all the aspf policies and sessions. Example # display the information of all the aspf policies and sessions. Display aspf all [aspf policy configuration] policy num...

  • Page 2003

    2003 description use the display aspf interface command to view the aspf policy configuration applied on interfaces. Example # display the aspf information on the interface(s). Display aspf interface [interface configuration] interface inboundpolicy outboundpolicy -----------------------------------...

  • Page 2004

    2004 c hapter 131: aspf c onfiguration c ommands description use the display aspf session command to view the information of the current aspf session. Example # display the related information of the current aspf session. Display aspf session [established sessions] session initiator responder applic...

  • Page 2005

    2005 view any view parameter application-name: name of the application to be used for port mapping available applications include ftp, http, h.323, smtp, and rtsp. Port-number: port number, in the range 0 to 65535 description use the display port-mapping command to view port mapping information. Rel...

  • Page 2006

    2006 c hapter 131: aspf c onfiguration c ommands log enable syntax log enable undo log enable view aspf policy view parameter none description use the log enable command to enable the session logging function of an aspf. Use the undo log enable command to disable the session logging function. By def...

  • Page 2007

    2007 by default, there is no mapping between the port and the application layer. Related command: display port-mapping. Example # map port 3456 to the ftp protocol. System-view [sysname] port-mapping ftp port 3456 reset aspf session syntax reset aspf session view user view parameter none description...

  • Page 2008

    2008 c hapter 131: aspf c onfiguration c ommands.

  • Page 2009: 132

    132 mac a uthentication c onfiguration c ommands n mac authentication is not supported on the fixed layer 2 interface of fic-4fsw, dfic-9fsw and msr 20 series products. Display mac-authentication syntax display mac-authentication [ interface interface-list ] view any view parameter interface interfa...

  • Page 2010

    2010 c hapter 132: mac a uthentication c onfiguration c ommands mac-authentication syntax mac-authentication [ interface interface-list ] undo mac-authentication [ interface interface-list ] view system view/ethernet interface view parameter interface interface-list: specifies an ethernet port list,...

  • Page 2011

    2011 defined without the to interface-type interface-number portion comprises only one port. Description use the mac-authentication command to enable mac authentication globally or for one or more ports. Use the undo mac-authentication command to disable mac authentication globally or for one or mor...

  • Page 2012

    2012 c hapter 132: mac a uthentication c onfiguration c ommands description use the mac-authentication domain command to specify the isp domain for mac authentication. Use the undo mac-authentication domain command to restore the default. By default, the default isp domain (system) is used. Example ...

  • Page 2014

    2014 c hapter 132: mac a uthentication c onfiguration c ommands and a password in plain text with 16 to 63 characters will be encrypted into a password in cipher text with 88 characters. For a password with 24 characters, the system will determine whether it can decrypt the password. If so, it treat...

  • Page 2016

    2016 c hapter 133: nat c onfiguration c ommands description use the connection-limit default amount command to set the limit(s) of user connections globally. Use the undo connection-limit default amount command to restore the default. By default, the upper limit is 100 and the lower limit is 20. Exa...

  • Page 2017

    2017 description use the connection-limit policy command to create or edit a connection-limit policy and enter connection-limit policy view. Use the undo connection-limit policy command to delete a specified or all connection-limit policies. Note that: ■ a connection-limit policy contains a set of r...

  • Page 2019

    2019 example # display connection-limit statistics. Display connection-limit statistics source-ip dest-ip dest-port vpn-instance 192.168.0.210 --- --- --- -------------------------------------------------------------------------- nat amount upper-limit lower-limit limit-flag 2 200 100 0 source-ip de...

  • Page 2020

    2020 c hapter 133: nat c onfiguration c ommands display nat aging-time syntax display nat aging-time view any view parameter none description use the display nat aging-time command to display the aging time values of different nat sessions. Example # display the aging time values of different nat se...

  • Page 2021

    2021 view any view parameter none description use the display nat all command to display the configurations of all nat parameters. Example # display the configurations of all nat parameters. Display nat all nat address-group information: there are currently 1 nat address-group(s) 1 : from 202.110.10...

  • Page 2024

    2024 c hapter 133: nat c onfiguration c ommands parameter none description use the display nat log command to view the nat log configuration. Example # view the nat log configuration. Display nat log nat log information: log enable : enable acl 2000 flow-begin : enable flow-active : 10(minutes) disp...

  • Page 2025

    2025 display nat server syntax display nat server view any view parameter none description use the display nat server command to display information about internal servers. Example # display information about internal servers. Display nat server server in private network information: there are curre...

  • Page 2026

    2026 c hapter 133: nat c onfiguration c ommands example # display the active nat sessions. Display nat session there are currently 1 nat session: protocol globaladdr port insideaddr port destaddr port 1 2.2.2.10 12288 192.168.0.210 768 2.2.2.2 768 vpn: 0, status: 4011, ttl: 00:01:00, left: 00:00:53 ...

  • Page 2027

    2027 display userlog export syntax display userlog export view any view parameter none description use the display userlog export command to view the configuration and statistics of nat logs for a card. Related command: reset userlog export example # view the configuration and statistics of nat logs...

  • Page 2028

    2028 c hapter 133: nat c onfiguration c ommands per-destination: limits connections based upon the destination address. Per-service: limits connections based upon the service type. Per-source: limits connections based upon the source address. Amount: limits the number of connections. Max-amount: max...

  • Page 2029

    2029 system-view [sysname] connection-limit policy 1 [sysname-connection-limit-policy-1] limit mode amount nat address-group syntax nat address-group group-number start-address end-address undo nat address-group group-number view system view parameter group-number: index of an address pool, in the r...

  • Page 2030

    2030 c hapter 133: nat c onfiguration c ommands view system view parameter default: restores the nat aging time to the default value. Dns: specifies the nat aging time for dns, which defaults to 60 seconds. Ftp-ctrl: specifies the nat aging time for ftp control link, which defaults to 7,200 seconds....

  • Page 2031

    2031 ftp: supports ftp. Ils: supports ils. Nbt: supports nbt. Pptp: supports pptp. Description use the nat alg command to enable nat application layer gateway for the specified protocol. Use the undo nat alg command to disable nat application layer gateway. By default, nat application layer gateway ...

  • Page 2032

    2032 c hapter 133: nat c onfiguration c ommands system-view [sysname]undo nat connection-limit-policy 1 nat log enable syntax nat log enable [ acl acl-number ] undo nat log enable view system view parameter acl acl-number: enables the nat log function for the data flows that match the specified acl....

  • Page 2033

    2033 this command allows you to log active flows regularly. This solves the problem of logging long-last active sessions as logs are normally generated only when a session is established or deleted. Example # configure the interval between sending nat active-flow logs as 10 minutes. System-view [sys...

  • Page 2034

    2034 c hapter 133: nat c onfiguration c ommands group-number: number of a predefined address pool. The value range varies by device models. No-pat: translates ip addresses only, without dealing with the port information. Description use the nat outbound command to enable nat and associate an acl wit...

  • Page 2035

    2035 # configure the address pool. [sysname] nat address-group 1 1.10.10.1 1.10.10.20 # enable nat. Use the ip addresses from address pool 1 while dealing with tcp/udp port information. [sysname] interface serial 1/0 [sysname-serial1/0] nat outbound 2001 address-group 1 # if you do not deal with the...

  • Page 2037

    2037 global-port: port number designated for external access, in the range 0 to 65,535. The default and the keyword must match those for host-port. Host-address: internal ip address of the nat server. Description use the nat server command to define a translation table for an internal server. Using ...

  • Page 2038

    2038 c hapter 133: nat c onfiguration c ommands [sysname-vpn-instance] quit [sysname] interface serial 1/0 [sysname-serial1/0] nat server vpn-instance vrf10 protocol tcp globa l 202.110.10.10 inside 10.110.10.11 # specify a host with an ip address of 10.110.10.12 in vpn vrf10. An external host pings...

  • Page 2039

    2039 end-ip: end address of an internal ip address range. The end address must not be smaller than the start address. Global: specifies an external network address. Global-net-address: external network address. Mask: external network mask. Mask-length: length of the external network mask, in the ran...

  • Page 2040

    2040 c hapter 133: nat c onfiguration c ommands reset nat session reset userlog export syntax reset userlog export view use view parameter none description use the reset userlog export command to clear the nat log statistics. Once the nat log function is enabled, the system will make statistics for ...

  • Page 2041

    2041 parameter ip-address: ip address of the nat log server. The address must be a valid unicast ip address and cannot be a loopback address. Udp-port: udp port number of the nat log server, ranging from 0 to 65535. Description use the userlog nat export host command to configure the ip address and ...

  • Page 2042

    2042 c hapter 133: nat c onfiguration c ommands userlog nat export version syntax userlog nat export version version-number undo userlog nat export version view system view parameter version-number: version number of nat logs. Currently, the system supports version 1 only. Description use the userlo...

  • Page 2044

    2044 c hapter 134: pki c onfiguration c ommands by default, there is no restriction on the issuer name, the subject name and the alternative subject name of a certificate. Note that the attribute of the alternative certificate subject name does not appear as a domain name, and therefore the dn keywo...

  • Page 2045

    2045 certificate request entity syntax certificate request entity entity-name undo certificate request entity view pki domain view parameter entity-name: name of the entity for certificate request, a case-insensitive string of 1 to 15 characters. Description use the certificate request entity comman...

  • Page 2048

    2048 c hapter 134: pki c onfiguration c ommands example # specify the url of the server for certificate request. System-view [sysname] pki domain 1 [sysname-pki-domain-1] certificate request url http://169.254.0.100/certsrv/mscep/mscep.Dll common-name syntax common-name name undo common-name view pk...

  • Page 2050

    2050 c hapter 134: pki c onfiguration c ommands example # set the crl update period to 20 hours. System-view [sysname] pki domain 1 [sysname-pki-domain-1] crl update-period 20 crl url syntax crl url url-string undo crl url view pki domain view parameter url-string: url of the crl distribution point,...

  • Page 2051

    2051 related command: pki retrieval-certificate, pki domain and certificate request polling. Example # display the local certificate. Display pki certificate local domain 1 data: version: 3 (0x2) serial number: 10b7d4e3 00010000 0086 signature algorithm: md5withrsaencryption issuer: emailaddress=myc...

  • Page 2053

    2053 display pki crl domain syntax display pki crl domain domain-name view any view parameter domain-name: name of the pki domain, a string of 1 to 15 characters. Description use the display pki crl domain command to display the locally saved crls. Related command: pki retrieval-crl domain and pki d...

  • Page 2054

    2054 c hapter 134: pki c onfiguration c ommands fqdn syntax fqdn name-str undo fqdn view pki entity view parameter name-str: fully qualified domain name (fqdn) of an entity, a case-insensitive string of 1 to 127 characters description use the fqdn command to configure the fqdn of an entity. Use the ...

  • Page 2055

    2055 parameter ip-address: ip address for an entity. Description use the ip command to configure the ip address of an entity. Use the undo ip command to remove the configuration. By default, no ip address is specified for an entity. Example # configure the ip address of an entity as 11.0.0.1. System...

  • Page 2056

    2056 c hapter 134: pki c onfiguration c ommands parameter locality-name: name for the geographical locality, a case-insensitive string of 1 to 31 characters. No comma can be included. Description use the locality command to configure the geographical locality of an entity, which can be, for example,...

  • Page 2057

    2057 parameter org-unit-name: organization unit name, a case-insensitive string of 1 to 31 characters. No comma can be included. This argument is intended to distinguish different units in an organization. Description use the organizational-unit command to specify the name of the organization unit t...

  • Page 2058

    2058 c hapter 134: pki c onfiguration c ommands view system view parameter group-name: name for the certificate attribute group, a case-insensitive string of 1 to 16 characters. It cannot be “a”, “al” or “all”. All: specifies all certificate attribute groups. Description use the pki certificate attr...

  • Page 2059

    2059 parameter domain-name: pki domain name, a case-insensitive string of 1 to 15 characters. Description use the pki domain command to create a pki domain and enter pki domain view or enter the view of an existing pki domain. Use the undo pki domain command to remove a pki domain. By default, no pk...

  • Page 2060

    2060 c hapter 134: pki c onfiguration c ommands domain-name: name of the pki domain, a string of 1 to 15 characters. Der: specifies the certificate format of der. P12: specifies the certificate format of p12. Pem: specifies the certificate format of pem. Filename filename: name of the certificate fi...

  • Page 2063

    2063 example # configure an md5 fingerprint for validating the ca root certificate. System-view [sysname] pki domain 1 [sysname-pki-domain-1] root-certificate fingerprint md5 12ef53fa355c d23e12ef53fa355cd23e # configure a sha1 fingerprint for validating the ca root certificate. [sysname-pki-domain-...

  • Page 2064

    2064 c hapter 134: pki c onfiguration c ommands undo state view pki entity view parameter state-name: state or province name, a case-insensitive string of 1 to 31 characters. No comma can be included. Description use the state command to specify the name of the state or province where an entity resi...

  • Page 2067

    2067 wait_useripchange_ack 0 online 1 wait_logout_ack 0 wait_leaving_ack 0 message statistics: msg-name total err discard msg_authen_ack 3 0 0 msg_author_ack 3 0 0 msg_login_ack 3 0 0 msg_logout_ack 2 0 0 msg_leaving_ack 0 0 0 msg_cut_req 0 0 0 msg_auth_req 3 0 0 msg_login_req 3 0 0 msg_logout_req 2...

  • Page 2068

    2068 c hapter 135: p ortal c onfiguration c ommands display portal free-rule syntax display portal free-rule [ rule-number ] view any view parameter rule-number: number of an authentication-free rule. The value range varies with devices. Description use the display portal free-rule command to displa...

  • Page 2069

    2069 related command: portal free-rule. Example # display the information of authentication-free rule 1. Display portal free-rule 1 rule-number 1: source: ip = 2.2.2.0 mask = 255.255.255.0 mac = 0000-0000-0000 interface = any vlan = 0 destination: ip = 0.0.0.0 mask = 0.0.0.0 display portal interface...

  • Page 2070

    2070 c hapter 135: p ortal c onfiguration c ommands display portal server syntax display portal server [ server-name ] view any view parameter server-name: name of a portal server, a case-sensitive string of 1 to 32 characters. Description use the display portal server command to display information...

  • Page 2072

    2072 c hapter 135: p ortal c onfiguration c ommands display portal tcp-cheat statistics syntax display portal tcp-cheat statistics view any view parameter none description use the display portal tcp-cheat statistics command to display tcp spoofing statistics. Example # display all tcp spoofing stati...

  • Page 2076

    2076 c hapter 135: p ortal c onfiguration c ommands all: specifies all authentication-free rules. Description use the portal free-rule command to configure a portal authentication-free rule, namely, to specify a source filtering condition or destination filtering condition. Use the undo portal free-...

  • Page 2079

    2079 view user view parameter all: clears portal connection statistics on all interfaces. Interface interface-type interface-number: clears the portal connection statistics on the specified interface. Description use the reset portal connection statistics command to clear the portal connection stati...

  • Page 2080

    2080 c hapter 135: p ortal c onfiguration c ommands.

  • Page 2081: 136

    136 rsh c onfiguration c ommands rsh syntax rsh host [ user username ] command remote-command view user view parameter host: ip address or host name of the remote host, a string of 1 to 20 characters. User username: specifies the username for remote login, which is a string of 1 to 20 characters. If...

  • Page 2082

    2082 c hapter 136: rsh c onfiguration c ommands 2001-12-09 16:26 1,740 wrshdnt.Cnt 2003-06-22 11:14 452,230 wrshdnt.Htm 2003-06-23 18:18 4,803 wrshdnt_header.Htm 2003-06-23 18:18 178 wrshdnt_filelist.Xml 2003-06-22 11:13 156,472 wrshdnt.Pdf 2001-09-02 15:41 49,152 wrshdrdr.Exe 2003-06-21 10:32 69,63...

  • Page 2084

    2084 c hapter 137: c ommon c onfiguration c ommands parameter time-name: time range name comprising 1 to 32 characters. It is case insensitive and must start with an english letter. To avoid confusion, this name cannot be all. Start-time: start time of a periodic time range, in hh:mm format as 24-ho...

  • Page 2085

    2085 absolute time range that is active between january 1, 2004 00:00 and december 31, 2004 23:59, you may use the time-range test from 00:00 01/01/2004 to 23:59 12/31/2004 command. ■ compound time range created using the time-range time-name start-time to end-time days { from time1 date1 [ to time2...

  • Page 2086

    2086 c hapter 137: c ommon c onfiguration c ommands.

  • Page 2088

    2088 c hapter 138: ip v 4 acl c onfiguration c ommands ■ you can specify a name for an ipv4 acl only when you create the acl. After creating an acl, you cannot specify a name for it, nor can you change or remove the name of the acl. ■ the name of an ipv4 acl must be unique among ipv4 acls. However, ...

  • Page 2089

    2089 parameter source-acl-number: number of an existing ipv4 acl, which must be in the following ranges (the available acl number ranges varies by device): ■ 2000 to 2999 for basic ipv4 acls ■ 3000 to 3999 for advanced ipv4 acls ■ 4000 to 4999 for ethernet frame header acls ■ 5000 to 5999 for user-d...

  • Page 2090

    2090 c hapter 138: ip v 4 acl c onfiguration c ommands parameter acl-name: name of the ipv4 acl, a case insensitive string of 1 to 32 characters. It must start with an english letter and cannot be the english word of all to avoid confusion. Description use the acl name command to enter the view of a...

  • Page 2093

    2093 fragment: indicates that the rule applies only to non-first fragments. Without this keyword, the rule applies to both fragments and non-fragments logging: specifies to log matched packets. The log provides information about acl rule number, whether packets are permitted or dropped, upper layer ...

  • Page 2095

    2095 if the protocol argument is set to tcp or udp, you may define the parameters in the following table. If the protocol argument is set to icmp, you may define the parameters in the following table. Reflective specifies the rule to be reflective. A rule with the reflective keyword can be defined o...

  • Page 2096

    2096 c hapter 138: ip v 4 acl c onfiguration c ommands the following table provides the icmp messages that you can specify in advanced ipv4 acl rules. Description use the rule command to define or modify an advanced ipv4 acl rule. If the rule does not exist, it is created first. Use the undo rule co...

  • Page 2097

    2097 when defining acl rules, you need not assign them ids. The system can automatically assign rule ids starting with 0 and increasing in certain rule numbering steps. A rule id thus assigned is greater than the current highest rule id. For example, if the rule numbering step is five and the curren...

  • Page 2098

    2098 c hapter 138: ip v 4 acl c onfiguration c ommands time-range time-name: specifies the time range in which the rule can take effect. The time-name argument comprises 1 to 32 characters. It is case insensitive and must start with an english letter. To avoid confusion, this name cannot be all. Typ...

  • Page 2099

    2099 l2: sets the offset from the beginning of the layer 2 frame header. Time-range time-name: specifies the time range in which the rule can take effect. The time-name argument is a case-insensitive string of 1 to 32 characters. The name must begin with an english letter and cannot be all to avoid ...

  • Page 2100

    2100 c hapter 138: ip v 4 acl c onfiguration c ommands text: ipv4 acl rule description, a string of up to 127 characters. Description use the rule comment command to create or modify an acl rule description, for example to describe the purpose of the acl rule or the parameters it contains. You will ...

  • Page 2101

    2101 when defining rules in an ipv4 acl, you do not necessarily assign them numbers. The system can do this automatically in steps. For example, if the default step applies, rules you created are automatically numbered 0, 5, 10, 15, and so on. One benefit of rule numbering step is that it allows you...

  • Page 2102

    2102 c hapter 138: ip v 4 acl c onfiguration c ommands.

  • Page 2104

    2104 c hapter 139: ip v 6 acl c onfiguration c ommands ■ you can specify a name for an ipv6 acl only when you create the acl. After creating an acl, you cannot specify a name for it, nor can you change or remove the name of the acl. ■ the name of an ipv6 acl must be unique among ipv6 acls. However, ...

  • Page 2105

    2105 view system view parameter source-acl6-number: number of an existing ipv6 acl, which must be in the following ranges (the available acl number ranges varies by device): ■ 2000 to 2999 for basic ipv6 acls ■ 3000 to 3999 for advanced ipv6 acls source-acl6-name: name of an existing ipv6 acl, a cas...

  • Page 2106

    2106 c hapter 139: ip v 6 acl c onfiguration c ommands description use the acl ipv6 name command to enter the view of an existing ipv6 acl by specifying its name. Example # enter the view of the ipv6 acl named flow. System-view [sysname] acl ipv6 name flow [sysname-acl6-basic-2002-flow] description ...

  • Page 2107

    2107 ■ 2000 to 2999 for basic ipv6 acls ■ 3000 to 3999 for advanced ipv6 acls ■ 10000 to 42767 for simple ipv6 acls all: all ipv6 acls. Name acl6-name: specifies the name of the acl, which is a case insensitive string of 1 to 32 characters. It must start with an english letter and cannot be the engl...

  • Page 2108

    2108 c hapter 139: ip v 6 acl c onfiguration c ommands name acl6-name: specifies the name of the acl, which is a case insensitive string of 1 to 32 characters. It must start with an english letter and cannot be the english word of all to avoid confusion. Description use the reset acl ipv6 counter co...

  • Page 2109

    2109 use the undo rule command to remove an ipv6 acl rule or parameters from the rule. With the undo rule command, if no parameters are specified, the entire acl rule is removed; if other parameters are specified, only the involved information is removed. You will fail to create or modify a rule if ...

  • Page 2111

    2111 if the protocol argument is set to icmpv6, you may define the parameters in the following table. The following table provides the icmpv6 messages that you can specify in advanced ipv6 acl rules. Table 552 tcp/udp-specific match criteria for advanced ipv6 acl rules parameter function description...

  • Page 2112

    2112 c hapter 139: ip v 6 acl c onfiguration c ommands description use the rule command to create an ipv6 acl rule or modify the rule if it has existed. Use the undo rule command to remove an ipv6 acl rule or parameters from the rule. With the undo rule command, if no parameters are specified, the e...

  • Page 2114

    2114 c hapter 139: ip v 6 acl c onfiguration c ommands if the protocol argument is set to icmpv6, you may define the parameters in the following table. The following table provides the icmpv6 messages that you can specify in simple ipv6 acl rules. Table 556 tcp/udp-specific parameters for simple ipv...

  • Page 2115

    2115 description use the rule command to create an ipv6 acl rule. Use the undo rule command to remove an ipv6 acl rule or parameters from the rule. With the undo rule command, if no parameters are specified, the entire acl rule is removed; if other parameters are specified, only the involved informa...

  • Page 2116

    2116 c hapter 139: ip v 6 acl c onfiguration c ommands by default, no rule description is created. Example # define a rule in ipv6 acl 2000 and create a description for the rule. System-view [sysname] acl ipv6 number 2000 [sysname-acl6-basic-2000] rule 0 permit source 2030:5060::9050/64 [sysname-acl...

  • Page 2117

    2117 system-view [sysname] acl ipv6 number 2000 [sysname-acl6-basic-2000] step 2 # set the rule numbering step to 2 for ipv6 acl 3000. System-view [sysname] acl ipv6 number 3000 [sysname-acl6-adv-3000] step 2.

  • Page 2118

    2118 c hapter 139: ip v 6 acl c onfiguration c ommands.

  • Page 2120

    2120 c hapter 140: ips ec c onfiguration c ommands parameter none description use the cryptoswitch fabric enable command to enable the encryption switch fabric. Use the undo cryptoswitch fabric enable command to disable the encryption switch fabric. ■ if an encryption card is bound, ipsec processing...

  • Page 2122

    2122 c hapter 140: ips ec c onfiguration c ommands mapss1234567890-10000 isakmp peerr1234567890 ipsec-policy-name mode acl local-address remote-address ------------------------------------------------------------------------ map-2 manual 3000 255.255.255.255 255.255.255.255 mappp0123456789-1 manual ...

  • Page 2124

    2124 c hapter 140: ips ec c onfiguration c ommands ------------------------------------------------------ test-tplt300 2200 display ipsec proposal syntax display ipsec proposal [ proposal-name ] view any view parameter proposal-name: name of a proposal, a string of 1 to 15 characters. Description us...

  • Page 2125

    2125 view any view parameter brief: displays brief information about all sas. Duration: displays the global sa lifetime information. Policy: displays detailed information about sas created by using a specified ipsec policy. Policy-name: name of the ipsec policy, a string 1 to 15 characters. Seq-numb...

  • Page 2126

    2126 c hapter 140: ips ec c onfiguration c ommands ----------------------------- ipsec policy name: "r2" sequence number: 1 mode: isakmp ----------------------------- connection id: 3 encapsulation mode: tunnel perfect forward secrecy: none tunnel: local address: 2.2.2.2 remote address: 1.1.1.2 flow...

  • Page 2127

    2127 display ipsec session syntax display ipsec session [ tunnel-id integer ] view any view parameter integer: id of the ipsec tunnel, in the range 1 to 2000000000. Description use the display ipsec session command to display information about a specified or all ipsec sessions. Ipsec can find matche...

  • Page 2128

    2128 c hapter 140: ips ec c onfiguration c ommands display ipsec session tunnel-id 5 ------------------------------------------------------------ total sessions : 1 ------------------------------------------------------------ tunnel-id : 5 session idle duration/total duration (sec) : 30/300 session ...

  • Page 2129

    2129 replay packet: 0 packet too long: 0 wrong sa: 0 display ipsec tunnel syntax display ipsec tunnel view any view parameter none description use the display ipsec tunnel command to display ipsec tunnel information. Example # display information about ipsec tunnels. Display ipsec tunnel total tunne...

  • Page 2131

    2131 parameter none description use the encrypt-card fast-switch command to enable encryption card fast switching. Use the undo encrypt-card fast-switch command to disable encryption card fast switching. By default, encryption card fast switching is disabled. Related command: display encrypt-card fa...

  • Page 2132

    2132 c hapter 140: ips ec c onfiguration c ommands undo esp encryption-algorithm view ipsec proposal view parameter 3des: uses triple des (3des) in cipher block chaining (cbc) mode as the encryption algorithm. The 3des algorithm uses a 168-bit key for encryption. Aes: uses advanced encryption standa...

  • Page 2133

    2133 view ipsec policy view/ipsec policy template view parameter peer-name: ike peer name, a string of 1 to 15 characters. Description use the ike-peer command to reference an ike peer in an ipsec policy or ipsec policy template configured through ike negotiation. Use the undo ike peer command to re...

  • Page 2134

    2134 c hapter 140: ips ec c onfiguration c ommands ■ an encryption card interface can be bound with multiple ipsec policy groups or ipsec policies, provided that those policies and policy groups have different names. An ipsec policy group or ipsec policy can be bound to multiple encryption cards. ■ ...

  • Page 2135

    2135 parameter none description use the ipsec cpu-backup enable command to enable the ipsec module backup function. Use the undo ipsec cpu-backup enable command to disable the ipsec cpu backup function. By default, the ipsec module backup function is disabled. Example # enable the ipsec module backu...

  • Page 2137

    2137 ipsec policy isakmp template syntax ipsec policy policy-name seq-number isakmp template template-name undo ipsec policy policy-name [ seq-number ] view system view parameter policy-name: name for the ipsec policy, a case insensitive string of 1 to 15 characters. Valid characters are english let...

  • Page 2138

    2138 c hapter 140: ips ec c onfiguration c ommands seq-number: sequence number for the ipsec policy template, in the range 1 to 10000. Description use the ipsec policy-template command to create an ipsec policy template and enter the ipsec policy template view. Use the undo ipsec policy-template com...

  • Page 2140

    2140 c hapter 140: ips ec c onfiguration c ommands undo ipsec session idle-time view system view parameter seconds: ipsec session idle timeout in seconds, in the range of 60 to 3,600. Description use the ipsec session idle-time command to set the idle timeout for ipsec sessions. Use the undo ipsec s...

  • Page 2141

    2141 ■ the local diffie-hellman group must be the same as that of the peer. ■ this command can be used only when the sas are to be set up through ike negotiation. Related command: ipsec policy-template, ipsec policy (system view). Example # enable and configure pfs for ipsec policy policy1. System-v...

  • Page 2142

    2142 c hapter 140: ips ec c onfiguration c ommands [sysname] ipsec policy policy1 100 manual [sysname-ipsec-policy-manual-policy1-100] proposal prop1 reset encrypt-card fast-switch syntax reset encrypt-card fast-switch view user view parameter none description use the reset encrypt-card fast-switch ...

  • Page 2143

    2143 policy-name: name of the ipsec policy, a case sensitive string of 1 to 15 alphanumeric characters. Seq-number: sequence number of the ipsec policy, in the range 1 to 10000. If no seq-number is specified, all the policies in the ipsec policy group named policy-name are specified. Remote ip-addre...

  • Page 2144

    2144 c hapter 140: ips ec c onfiguration c ommands view user view parameter integer: id of the ipsec tunnel, in the range1 to 2,000,000,000. Description use the reset ipsec session command to clear the sessions of a specified or all ipsec tunnels. Related command: display ipsec session. Example # cl...

  • Page 2145

    2145 ah: uses ah. Esp: uses esp. Hex-key: authentication key for the sa, in hexadecimal format. The length of the key is 16 bytes for md5 and 20 bytes for sha1. Description use the sa authentication-hex command to configure an authentication key for an sa. Use the undo sa authentication-hex command ...

  • Page 2146

    2146 c hapter 140: ips ec c onfiguration c ommands use the undo sa duration command to restore the default. By default, the time-based global sa lifetime is 3,600 seconds, and traffic-based sa lifetime is 1,843,200 kilobytes. Note that: ■ when negotiating to set up an sa, ike prefers the lifetime of...

  • Page 2147

    2147 note that: ■ this command applies to only manual ipsec policies. ■ when configuring an ipsec policy, you need to set the parameters of both the inbound and outbound sas. ■ the encryption key for the inbound sa at the local end must be the same as that for the outbound sa at the remote end, and ...

  • Page 2148

    2148 c hapter 140: ips ec c onfiguration c ommands ■ sa parameters of ike negotiated ipsec policies are subject to ike, which is also responsible for establishing sas. ■ when configuring an ipsec policy, you need to set the parameters of both the inbound and outbound sas. ■ the spi for the inbound s...

  • Page 2149

    2149 ■ when configuring an ipsec policy, you need to set the parameters of both the inbound and outbound sas. ■ the key for the inbound sa at the local end must be the same as that for the outbound sa at the remote end, and the key for the outbound sa at the local end must be the same as that for th...

  • Page 2151

    2151 description use the tunnel local command to configure the local address of an ipsec tunnel. Use the undo tunnel local command to remove the configuration. By default, no local address is configured for an ipsec tunnel. Note that: ■ this command applies to only manual ipsec policies. ■ the local...

  • Page 2152

    2152 c hapter 140: ips ec c onfiguration c ommands example # set the remote address of the ipsec tunnel to 10.1.1.2. System-view [sysname] ipsec policy policy1 10 manual [sysname-ipsec-policy-policy1-10] tunnel remote 10.1.1.2.

  • Page 2154

    2154 c hapter 141: ike c onfiguration c ommands description use the authentication-method command to specify the authentication method to be used by an ike proposal. Use the undo authentication-method command to restore the default. By default, an ike proposal uses the pre-shared key authentication ...

  • Page 2155

    2155 group5: uses the 1536-bit diffie-hellman group for key negotiation in phase 1. Group14: uses the 2048-bit diffie-hellman group for key negotiation in phase 1. Description use the dh command to specify the dh group to be used in key negotiation phase 1 for an ike proposal. Use the undo dh comman...

  • Page 2156

    2156 c hapter 141: ike c onfiguration c ommands display ike peer syntax display ike peer [ peer-name ] view any view parameter peer-name: name of the ike peer, a string of 1 to 15 characters. Description use the display ike peer command to display information about a specified or all ike peers. Rela...

  • Page 2157

    2157 description use the display ike proposal command to display the settings of all ike proposals. This command displays the configuration information of all ike proposals in the descending order of proposal priorities. Related command: authentication-method on page 1721, ike proposal, encryption-a...

  • Page 2159

    2159 diffie-hellman group: group1 nat traversal: no # display detailed information about the ike sa with the connection id of 2. Display ike sa verbose connection-id 2 --------------------------------------------- connection id: 2 transmitting entity: initiator --------------------------------------...

  • Page 2160

    2160 c hapter 141: ike c onfiguration c ommands dpd syntax dpd dpd-name undo dpd view ike peer view parameter dpd-name: dpd name, a string of 1 to 15 characters. Description use the dpd command to apply a dpd to an ike peer. Use the undo dpd command to remove the application. By default, no dpd is a...

  • Page 2162

    2162 c hapter 141: ike c onfiguration c ommands description use the id-type command to select the type of the id in ike negotiation. Use the undo id-type command to restore the default. By default, the type of ip address is used in ike negotiation. Note that: ■ in main mode, only the id type of ip a...

  • Page 2163

    2163 parameter name: name of the local gateway for ike negotiation, a string of 1 to 32 characters. Description use the ike local-name command to configure a name for the local gateway. Use the undo ike local-name command to restore the default. By default, the device name is used as the name of the...

  • Page 2164

    2164 c hapter 141: ike c onfiguration c ommands ike peer (system view) syntax ike peer peer-name undo ike peer peer-name view system view parameter peer-name: ike peer name, a string of 1 to 15 characters. Description use the ike peer command to create an ike peer and enter ike peer view. Use the un...

  • Page 2165

    2165 example # create ike proposal 10 and enter ike proposal view. System-view [sysname] ike proposal 10 [sysname-ike-proposal-10] ike sa keepalive-timer interval syntax ike sa keepalive-timer interval seconds undo ike sa keepalive-timer interval view system view parameter seconds: transmission inte...

  • Page 2166

    2166 c hapter 141: ike c onfiguration c ommands by default, no keepalive packet is sent. Note that the keepalive timeout configured at the local end must be longer than the keepalive interval configured at the remote end. Since it seldom occurs that more than three consecutive packets are lost on a ...

  • Page 2167

    2167 description use the interval-time command to set the dpd query triggering interval for a dpd. Use the undo interval-time command to restore the default. By default, the dpd query triggering interval is 10 seconds. Example # set the dpd query triggering interval for dpd2 to 1 second. System-view...

  • Page 2168

    2168 c hapter 141: ike c onfiguration c ommands description use the local-address command to configure the ip address of the local gateway in ike negotiation. Use the undo local-address command to remove the configuration. By default, the master address of the interface referencing the ipsec policy ...

  • Page 2169

    2169 description use the peer command to set the subnet type of the peer gateway for ike negotiation. Use the undo peer command to restore the default. By default, the subnet is a single one. You can use this command to enable interoperability with a netscreen device. Example # set the subnet type o...

  • Page 2170

    2170 c hapter 141: ike c onfiguration c ommands description use the remote-address command to configure the remote ip address of the ipsec tunnel. Use the undo remote-address command to remove the configuration. Note that the ip-address configured with the remote-address command must agree with the ...

  • Page 2171

    2171 view user view parameter connection-id: connection id of the ipsec tunnel to be cleared, in the range 1 to 2000000000. Description use the reset ike sa command to clear the ipsec tunnel set up by ike. Note that: ■ if connection-id is not specified, all the sas set up in phase 1 will be cleared....

  • Page 2172

    2172 c hapter 141: ike c onfiguration c ommands before an sa expires, ike will negotiate a new sa. As soon as the new sa is set up, it takes effect immediately and the old one will be cleared automatically when it expires. Related command: ike proposal and display ike proposal. Example # specify the...

  • Page 2174

    2174 c hapter 142: ssh2.0 c onfiguration c ommands display public-key local dsa public ===================================================== time of key pair created: 20:00:16 2006/10/25 key name: host_key key type: dsa encryption key ===================================================== key code: 3...

  • Page 2175

    2175 display public-key peer name idrsa ===================================== key name : idrsa key type : rsa key module: 1024 ===================================== key code: 30819d300d06092a864886f70d010101050003818b00308187028181009c46a87102 16cec0c01c7ce136ba76c79aa6040e79f9e305e453998c7ade827606...

  • Page 2176

    2176 c hapter 142: ssh2.0 c onfiguration c ommands example # display the source ip address of the sftp client. Display sftp client source the source ip address you specified is 192.168.0.1 display ssh client source syntax display ssh client source view any view parameter none description use the dis...

  • Page 2177

    2177 ssh server key generating interval : 0 hour(s) ssh authentication retries : 3 time(s) sftp server: disable sftp server idle-timeout: 10 minute(s) # display the session information of the ssh server. Display ssh server session conn ver encry state retry sertype username vty 0 2.0 des established...

  • Page 2178

    2178 c hapter 142: ssh2.0 c onfiguration c ommands parameter none description use the display ssh server-info command to display the mappings between host public keys and ssh servers saved on a client. Example # display the mappings between host public keys and ssh servers saved on the client. Displ...

  • Page 2179

    2179 peer-public-key end syntax peer-public-key end view public key view parameter none description use the peer-public-key end command to return from public key view to system view. Related command: public-key peer. Example # exit public key view. System-view [sysname] public-key peer key1 [sysname...

  • Page 2180

    2180 c hapter 142: ssh2.0 c onfiguration c ommands public-key-code end syntax public-key-code end view rsa key code view parameter none description use the public-key-code end command to return from public key code view to public key view and to save the configured public key. The system verifies th...

  • Page 2181

    2181 bits and defaults to 1024. If the key pair already exists, the system will ask you whether you want to overwrite it. ■ the configuration of this command can survive a reboot. You only need to configure it once. Related command: public-key local destroy, display public-key local. Example # creat...

  • Page 2182

    2182 c hapter 142: ssh2.0 c onfiguration c ommands parameter dsa: dsa key pair. Rsa: rsa key pair. Description use the public-key local destroy command to destroy the local key pair(s). Related command: public-key local create. Example # destroy local rsa key pair. System-view [sysname] public-key l...

  • Page 2183

    2183 system-view [sysname] public-key local export rsa ssh2 ---- begin ssh2 public key ---- comment: "rsa-key-20061105" aaaab3nzac1yc2eaaaadaqabaaaagkrkxfoz+t72srs9c60+j2yrkd0ahbsxbh0uq+in ve12payr1on4 x+anlwe9fjw1pygzh+drktpimrn3j2pis7gajxveftw94rbvwj94uisdk1nlx1jcottw nqcvhft3muz+ j0jbehacw4broe7/...

  • Page 2184

    2184 c hapter 142: ssh2.0 c onfiguration c ommands ---- begin ssh2 public key ---- comment: "dsa-key-20061025" aaaab3nzac1kc3maaacbandxjixfhmrmir8yvzbl8ghe8kqj9/5ra4wzto9yzhsg06ui l+cm7ozb5sjlhuij3b7b0t7isntan3w6jsy5h3i2anh+kiuorchyldyjy5sg/wd+azqd 3xf+axkjpadu68hrknl/bnjxcittqchqbzwcflfql6xlnolqohg...

  • Page 2185

    2185 public-key peer import sshkey syntax public-key peer keyname import sshkey filename undo public-key peer keyname view system view parameter keyname: public key name, a string of 1 to 64 characters. Filename: public key file name. The value range varies by device models. Description use the publ...

  • Page 2186

    2186 c hapter 142: ssh2.0 c onfiguration c ommands ■ des: encryption algorithm des-cbc. Prefer-ctos-hmac: preferred hmac algorithm from client to server, defaulted to sha1. ■ md5: hmac algorithm hmac-md5. ■ md5-96: hmac algorithm hmac-md5-96. ■ sha1: hmac algorithm hmac-sha1. ■ sha1-96: hmac algorit...

  • Page 2187

    2187 description use the sftp client ipv6 source command to specify the source ipv6 address or source interface for an sftp client. Use the undo sftp client ipv6 source command to remove the configuration. By default, the client uses the interface address specified by the route of the device to acce...

  • Page 2188

    2188 c hapter 142: ssh2.0 c onfiguration c ommands parameter server: ipv6 address or name of the server, a string of 1 to 46 characters. Port-number: port number of the server, in the range 0 to 65535. The default is 22. Identity-key: specifies the algorithm for publickey authentication, either dsa ...

  • Page 2189

    2189 sftp server enable syntax sftp server enable undo sftp server enable view system view parameter none description use the sftp server enable command to enable sftp server. Use the undo sftp server enable command to disable sftp server. By default, sftp server is disabled. Related command: displa...

  • Page 2190

    2190 c hapter 142: ssh2.0 c onfiguration c ommands ssh client authentication server syntax ssh client authentication server server assign publickey keyname undo ssh client authentication server server assign publickey view system view parameter server: ip address or name of the server, a string of 1...

  • Page 2191

    2191 server later, it can use the locally saved public host key of the server to authenticate the server. With the first authentication function disabled, an ssh client cannot access any server whose public host key it does not know. In this case, you must configure the public host key of the server...

  • Page 2192

    2192 c hapter 142: ssh2.0 c onfiguration c ommands interface interface-type interface-number: specifies a source interface by its type and number. Description use the ssh client source command to specify the source ipv4 address or source interface of the ssh client. Use the undo ssh client source co...

  • Page 2193

    2193 ssh server authentication-timeout syntax ssh server authentication-timeout time-out-value undo ssh server authentication-timeout view system view parameter time-out-value: authentication timeout period in seconds, in the range 1 to120. Description use the ssh server authentication-timeout comma...

  • Page 2194

    2194 c hapter 142: ssh2.0 c onfiguration c ommands system-view [sysname] ssh server compatible-ssh1x enable ssh server enable syntax ssh server enable undo ssh server enable view system view parameter none description use the ssh server enable command to enable ssh server. Use the undo ssh server en...

  • Page 2196

    2196 c hapter 142: ssh2.0 c onfiguration c ommands ■ for a publickey authentication user, you must configure the username and the public key on the device. For a password authentication user, you can configure the account information on either the device or the remote authentication server such as a...

  • Page 2197

    2197 prefer-ctos-hmac: preferred hmac algorithm from client to server, defaulted to sha1. ■ md5: hmac algorithm hmac-md5. ■ md5-96: hmac algorithm hmac-md5-96. ■ sha1: hmac algorithm hmac-sha1. ■ sha1-96: hmac algorithm hmac-sha1-96. Prefer-kex: preferred key exchange algorithm, defaulted to dh-grou...

  • Page 2198

    2198 c hapter 142: ssh2.0 c onfiguration c ommands parameter server: ipv6 address or name of the server, a string of 1 to 46 characters. Port-number: port number of the server, in the range 0 to 65535. The default is 22. Identity-key: specifies the algorithm for publickey authentication, either dsa ...

  • Page 2199

    2199 ■ preferred hmac algorithm from server to client: sha1-96. Ssh2 ipv6 2000::1 prefer-kex dh-group 1 prefer-stoc-cipher aes128 prefer-ctos-hmac md5 prefer-stoc-hmac sha1-96.

  • Page 2200

    2200 c hapter 142: ssh2.0 c onfiguration c ommands.

  • Page 2201: 143

    2201 143 sftp c onfiguration c ommands bye syntax bye view sftp client view parameter none description use the bye command to terminate the connection with a remote sftp server and return to system view. This command functions as the exit and quit commands. Example # terminate the connection with th...

  • Page 2202

    2202 c hapter 143: sftp c onfiguration c ommands cdup syntax cdup view sftp client view parameter none description use the cdup command to return to the upper-level directory. Example # from the current working directory /new1, return to the upper-level directory. Sftp-client> cdup current directory...

  • Page 2203

    2203 -l: displays in list form detailed information of the files and folder of the specified directory remote-path: name of the directory to be queried. Description use the dir command to display file and folder information under a specified directory. With the -a and -l keyword not specified, the c...

  • Page 2204

    2204 c hapter 143: sftp c onfiguration c ommands view sftp client view parameter remote-file: name of a file on the remote sftp server. Local-file: name for the local file. Description use the get command to download a file from a remote sftp server and save it locally. If you do not specify the loc...

  • Page 2205

    2205 -l: displays in list form detailed information of the files and folder of the specified directory remote-path: name of the directory to be queried. Description use the ls command to display file and folder information under a specified directory. With the -a and -l keyword not specified, the co...

  • Page 2206

    2206 c hapter 143: sftp c onfiguration c ommands remote-file: name for the file on a remote sftp server. Description use the put command to upload a local file to a remote sftp server. If you do not specify the remote-file argument, the file will be saved remotely with the same name as the local one...

  • Page 2207

    2207 remove syntax remove remote-file& view sftp client view parameter remote-file&: name of a file on an sftp server. & means that you can provide up to 10 filenames, which are separated by space. Description use the remove command to delete a specified file from a remote server. This command funct...

  • Page 2208

    2208 c hapter 143: sftp c onfiguration c ommands parameter remote-path&: name of the directory on the remote sftp server. & means that you can provide up to 10 filenames that are separated by space. Description use the rmdir command to delete a specified directory from an sftp server. Example # on t...

  • Page 2210

    2210 c hapter 144: ssl c onfiguration c ommands client-verify enable syntax client-verify enable undo client-verify enable view ssl server policy view parameter none description use the client-verify enable command to enable certificate-based ssl client authentication, that is, to enable the ssl ser...

  • Page 2212

    2212 c hapter 144: ssl c onfiguration c ommands rsa_rc4_128_sha rsa_des_cbc_sha rsa_3des_ede_cbc_sha rsa_aes_128_cbc_sha rsa_aes_256_cbc_sha handshake timeout: 3600 close-mode: wait disabled session timeout: 3600 session cachesize: 500 client-verify: disabled handshake timeout syntax handshake timeo...

  • Page 2213

    2213 undo pki-domain view ssl server policy view/ssl client policy view parameter domain-name: name of a pki domain, a string of 1 to 15 characters. Description use the pki-domain command to specify a pki domain for an ssl server policy or ssl client policy. Use the undo pki-domain command to restor...

  • Page 2214

    2214 c hapter 144: ssl c onfiguration c ommands rsa_rc4_128_sha: specifies the key exchange algorithm of rsa, the data encryption algorithm of 128-bit rc4, and the mac algorithm of sha. Description use the prefer-cipher command to specify the preferred cipher suite for an ssl client policy. Use the ...

  • Page 2217: 145

    145 b ackup c enter c onfiguration c ommands display standby flow syntax display standby flow view any view parameter none description use the display standby flow command to display statistics about traffic on the main interfaces participating in load sharing. Example # display statistics about the...

  • Page 2218

    2218 c hapter 145: b ackup c enter c onfiguration c ommands display standby state syntax display standby state view any view parameter none description use the display standby state command to display the state information of the main and backup interfaces. Example # display the state information of...

  • Page 2219

    2219 standby bandwidth syntax standby bandwidth size undo standby bandwidth view interface view parameter size: specifies the main interface bandwidth used for setting the thresholds, in the range 0 to 4000000 kbps. Updelay the backup interface is experiencing a delay before it transits from the non...

  • Page 2220

    2220 c hapter 145: b ackup c enter c onfiguration c ommands description use the standby bandwidth command to configure the bandwidth available for transmission on the main interface. Use the undo standby bandwidth command to restore the default. By default, the available bandwidth used for setting t...

  • Page 2221

    2221 the main interface, you cannot configure the standby track command on both the main interface and its backup interface; if you have associated an interface with a track object, you cannot configure the interface as the main interface or a backup interface. Related commands: standby track. Examp...

  • Page 2222

    2222 c hapter 145: b ackup c enter c onfiguration c ommands ■ the value of the enable-threshold must be bigger than that of the disable-threshold. ■ if a backup interface has been started, the execution of the undo standby threshold command shuts down all backup interfaces. ■ use this command on mai...

  • Page 2223

    2223 standby timer flow-check syntax standby timer flow-check interval undo standby timer flow-check view interface view parameter interval: specifies flow check interval, in the range 30 to 600 seconds. Description use the standby timer flow-check command to configure the interval for checking the ...

  • Page 2224

    2224 c hapter 145: b ackup c enter c onfiguration c ommands ■ this command and the standby interface command cannot be configured at the same time. That is, if you have configured the standby interface command on the main interface, you cannot configure the standby track command on both the main int...

  • Page 2225: 146

    146 ip v 4-b ased vrrp c onfiguration c ommands n the interfaces that vrrp involves can only be layer 3 ethernet interfaces and vlan interfaces unless otherwise specified. Display vrrp syntax display vrrp [ verbose ] [ interface interface-type interface-number [ vrid virtual-router-id ] ] view any v...

  • Page 2226

    2226 c hapter 146: ip v 4-b ased vrrp c onfiguration c ommands display vrrp verbose ipv4 standby information: run method : virtual-mac virtual ip ping : enable interface : ethernet1/0 vrid : 1 adver. Timer : 1 admin status : up state : master config pri : 100 run pri : 100 preempt mode : yes delay t...

  • Page 2227

    2227 parameter interface interface-type interface-number: displays vrrp statistics of the specified interface. Interface-type interface-number specifies an interface by its type and number. Vrid virtual-router-id: displays statistics of the specified vrrp group. Virtual-router-id specifies a standby...

  • Page 2228

    2228 c hapter 146: ip v 4-b ased vrrp c onfiguration c ommands reset vrrp statistics syntax reset vrrp statistics [ interface interface-type interface-number [ vrid virtual-router-id ] ] view user view parameter interface interface-type interface-number: clears vrrp statistics of a specified interfa...

  • Page 2229

    2229 view interface view parameter virtual-router-id: vrrp standby group number, in the range 1 to 255. Simple: plain text authentication mode. Md5: authentication header (ah) authentication using the md5 algorithm. Key: authentication key, case sensitive. ■ when simple authentication applies, the a...

  • Page 2230

    2230 c hapter 146: ip v 4-b ased vrrp c onfiguration c ommands parameter real-mac: associates the real mac address of the interface with the virtual ip address of the standby group. Virtual-mac: associates the virtual mac address of the router with the virtual ip address of the standby group. Descri...

  • Page 2231

    2231 vrrp un-check ttl syntax vrrp un-check ttl undo vrrp un-check ttl view interface view parameter none description use the vrrp un-check ttl command to disable ttl check on vrrp packets. Use the undo vrrp un-check ttl command to enable ttl check on vrrp packets. By default, ttl check on vrrp pack...

  • Page 2232

    2232 c hapter 146: ip v 4-b ased vrrp c onfiguration c ommands resulting in frequent master/backup state transition of the standby group members. Preemption delay is introduced to solve this problem. With a preemption delay set, if the backup member does not receive the packet from the master member...

  • Page 2233

    2233 vrrp vrid timer advertise syntax vrrp vrid virtual-router-id timer advertise adver-interval undo vrrp vrid virtual-router-id timer advertise view interface view parameter virtual-router-id: vrrp standby group number, in the range 1 to 255. Adver-interval: interval at which the master in the spe...

  • Page 2234

    2234 c hapter 146: ip v 4-b ased vrrp c onfiguration c ommands reduced priority-reduced: specifies the value by which the priority decreases. Priority-reduced ranges from 1 to 255 and defaults to 10. Description use the vrrp vrid track command to specify the track object to be monitored. When the st...

  • Page 2235

    2235 description use the vrrp vrid track interface command to configure to track the specified interface. Use the undo vrrp vrid track interface command to disable tracking the specified interface. By default, no interface is being tracked. Note that: ■ before executing the command, create a standby...

  • Page 2236

    2236 c hapter 146: ip v 4-b ased vrrp c onfiguration c ommands use the undo vrrp vrid virtual-router-id virtual-ip virtual-address command to remove a virtual ip address from a standby group. By default, no standby group is created. Note that: ■ the system removes a standby group after you delete al...

  • Page 2237: 147

    2237 147 vrrp c onfiguration c ommands for ip v 6 display vrrp ipv6 syntax display vrrp ipv6 [ verbose ] [ interface interface-type interface-number [ vrid virtual-router-id ] ] view any view parameter verbose: displays detailed state information of vrrp. Interface interface-type interface-number: d...

  • Page 2238

    2238 c hapter 147: vrrp c onfiguration c ommands for ip v 6 display vrrp ipv6 verbose ipv6 standby information: run method : virtual-mac virtual ip ping : enable interface : ethernet1/0 vrid : 1 adver. Timer : 100 admin status : up state : master config pri : 100 run pri : 100 preempt mode : yes del...

  • Page 2239

    2239 parameter interface interface-type interface-number: displays vrrp statistics information of the specified interface. Interface-type interface-number specifies an interface by its type and number. Vrid virtual-router-id: displays statistics information of the specified vrrp group. Virtual-route...

  • Page 2240

    2240 c hapter 147: vrrp c onfiguration c ommands for ip v 6 reset vrrp ipv6 statistics syntax reset vrrp ipv6 statistics [ interface interface-type interface-number [ vrid virtual-router-id ] ] view user view parameter interface interface-type interface-number: clears vrrp statistics of a specific i...

  • Page 2241

    2241 undo vrrp ipv6 method view system view parameter real-mac: associates the real mac address of the interface with the virtual ipv6 address of the standby group. Virtual-mac: associates the virtual mac address with the virtual ipv6 address. Description use the vrrp ipv6 method command to set the ...

  • Page 2242

    2242 c hapter 147: vrrp c onfiguration c ommands for ip v 6 vrrp ipv6 vrid authentication-mode syntax vrrp ipv6 vrid virtual-router-id authentication-mode simple key undo vrrp ipv6 vrid virtual-router-id authentication-mode view interface view parameter virtual-router-id: vrrp standby group number, ...

  • Page 2243

    2243 timer delay delay-value: sets preemption delay. The delay-value argument ranges from 0 to 255 and defaults to 0, in seconds. Description use the vrrp ipv6 vrid preempt-mode command to configure preemption on the router and configure its preemption delay in the specified standby group. Use the u...

  • Page 2244

    2244 c hapter 147: vrrp c onfiguration c ommands for ip v 6 use the undo vrrp ipv6 vrid priority command to restore the default. By default, the priority of a router in a standby group is 100. ■ before executing the command, create a standby group on an interface and configure the virtual ipv6 addre...

  • Page 2245

    2245 [sysname-ethernet1/0] vrrp ipv6 vrid 1 virtual-ip fe80::2 link-local [sysname-ethernet1/0] vrrp ipv6 vrid 1 timer advertise 500 vrrp ipv6 vrid track syntax vrrp ipv6 vrid virtual-router-id track interface interface-type interface-number [ reduced priority-reduced ] undo vrrp ipv6 vrid virtual-r...

  • Page 2246

    2246 c hapter 147: vrrp c onfiguration c ommands for ip v 6 vrrp ipv6 vrid virtual-ip syntax vrrp ipv6 vrid virtual-router-id virtual-ip virtual-address [link-local] undo vrrp ipv6 vrid virtual-router-id [ virtual-ip virtual-address [ link-local ] ] view interface view parameter virtual-router-id: v...

  • Page 2247: 148

    148 d evice m anagement c ommands n there are many types of storage media such as flash, compact flash (cf), universal serial bus (usb), and hard disk. Different devices support different types of storage device. Cf card is exemplified in this document. File names in this document comply with the fo...

  • Page 2249

    2249 parameter none description use the buzzer enable command to enable the alarm buzzer function. Use the undo buzzer enable command to disable the alarm buzzer function. By default, the alarm buzzer function is enabled. N this command is applicable on msr 50 series routers only. Example # enable t...

  • Page 2250

    2250 c hapter 148: d evice m anagement c ommands display cpu-usage syntax display cpu-usage [ task ] [ number [ offset ] [ verbose ] [ from-device ] ] view any view parameter task: displays cpu usage of each task. Number: number of cpu usage statistics records to be displayed. Offset: offset between...

  • Page 2251

    2251 cpu usage stat. Tick : 0x1da0(cpu tick high) 0x62a5077f(cpu tick low) actual stat. Cycle : 0x0(cpu tick high) 0x3d5b5ad1(cpu tick low) taskname cpu runtime(cpu tick high/cpu tick low) b2x0 0% 0/ ce77f vidl 97% 0/3bc6e650 tick 0% 0/ 23ec62 stmr 0% 0/ ad24 drtf 0% 0/ 28b6b drtm 0% 0/ 18a28 bcn0 0...

  • Page 2252

    2252 c hapter 148: d evice m anagement c ommands view any view parameter cf-card: displays information of a compact flash (cf). Usb: displays information of a universal serial bus (usb). Slot slot-number: displays detailed information of the specified card. The slot-number argument represents the sl...

  • Page 2253

    2253 dsp 0: normal dsp 1: normal dsp 2: normal dsp 3: normal slot 1 status: normal type: sic-2fxs hardware: 2.2 driver: 2.0 cpld: 2.0 dsp: normal[dsp ver: 2.0] slot 5 status: normal type: fic-2ve1 hardware: 3.0 driver: 2.0 cpld: 1.0 fdsp: normal [dsp ver: 2.0] vcpma: normal [pcb ver: 3.0 cpld ver: 1...

  • Page 2254

    2254 c hapter 148: d evice m anagement c ommands vcpm, vcpma, vpm, fdsp and dsp status includes: ■ normal ■ abnormal ■ reset display device manuinfo syntax display device manuinfo [slot slot-number ] view any view parameter slot slot-number: displays detailed information of the specified card. The s...

  • Page 2255

    2255 example # display manufacturing information of a device. Display device manuinfo slot 0 device_name: : none device_serial_number : none mac_address: : none manufacturing_date : none vendor_name : none display environment syntax display environment view any view parameter none description use th...

  • Page 2256

    2256 c hapter 148: d evice m anagement c ommands display fan syntax display fan [ fan-id ] view any view parameter fan-id: built-in fan number. The value varies with devices. Description use the display fan command to display the operating state of built-in fans. Example # display the operating stat...

  • Page 2257

    2257 register date: 2006-10-10 15:50:28 trade code : 121234a757c06a000693 display memory syntax display memory view any view parameter none description use the display memory command to display the usage of the memory of a device. Example # display the usage of the memory of a device. Display memory...

  • Page 2258

    2258 c hapter 148: d evice m anagement c ommands display power power 1 state: absent power 2 state: normal power 3 state: absent the above information indicates that power supply 2 works normally, and power supply 1 and power supply 3 are absent. Display reboot-type syntax display reboot-type [ slot...

  • Page 2259

    2259 license register syntax license register serial-number view user view parameter serial-number: specifies the serial number of a card, in the format of xxxxx-xxxxx-xxxxx-xxxxx-xxxxx-xxxxx-xxxxx, in which x represents a character. The character can be a letter (case sensitive), a number, + or (/)...

  • Page 2260

    2260 c hapter 148: d evice m anagement c ommands reboot start to check configuration with next startup configuration file, please wait ...... This command will reboot the device. Current configuration will be lost in next startup if you continue. Continue? [y/n]:y this will reboot device. Continue? ...

  • Page 2261

    2261 a confirmation is required when you carry out this command. If you fail to make a confirmation within 30 seconds or enter “n” to cancel the operation, the command will not be carried out. Example # clear the 16-bit index saved but not used in the current system. Reset unused porttag current ope...

  • Page 2262

    2262 c hapter 148: d evice m anagement c ommands ■ after you execute the above command, the device will prompt you to confirm the configuration. You must enter or to make the configuration take effect. The original configuration will be overwritten at the same time. ■ if a date (month/day/year or ye...

  • Page 2263

    2263 by default, the scheduled reboot function is disabled. Note that: ■ the reboot wait time can be in the format of hh:mm (hours:minutes) or mm (absolute minutes). The absolute minutes cannot exceed 30 x 24 x 60 minutes, namely, 30 days. ■ the precision of the device timer is 1 minute. One minute ...

  • Page 2264

    2264 c hapter 148: d evice m anagement c ommands description use the temperature-alarm enable command to enable the temperature alarm function. Use the undo temperature-alarm enable command to disable the temperature alarm function. By default, the temperature alarm function is enabled. Example # en...

  • Page 2265: 149

    149 nqa c lient c onfiguration c ommands data-fill syntax data-fill string undo data-fill view icmp-echo/udp-echo/udp-jitter test type view parameter string: string of fill characters of a probe packet, in the range 1 to 200. It is case sensitive. Description use the data-fill command to configure t...

  • Page 2266

    2266 c hapter 149: nqa c lient c onfiguration c ommands data-size syntax data-size size undo data-size view icmp-echo/udp-echo/udp-jitter test type view parameter size: size of a probe packet in bytes, in the range 20 to 8100 for an icmp-echo or a udp-echo test and in the range 68 to 8100 for a udp-...

  • Page 2267

    2267 destination ip syntax destination ip ip-address undo destination ip view dlsw/ftp/http/icmp-echo/snmp/tcp/udp-echo/udp-jitter test type view parameter ip-address: destination ip address of a test operation. Description use the destination ip command to configure a destination ip address for a t...

  • Page 2269

    2269 negative sd average: 0 negative ds average: 0 negative sd square sum: 0 negative ds square sum: 0 sd lost packet(s): 0 ds lost packet(s): 0 lost packet(s) for unknown reason: 10 table 600 description on the fields of the display nqa result command field description destination ip address ip add...

  • Page 2270

    2270 c hapter 149: nqa c lient c onfiguration c ommands # display the history records of tests. Display nqa history administrator test nqa entry(admin administrator, tag test) history record(s): index response status time 10 329 succeeded 2007-04-29 20:54:26.5 9 344 succeeded 2007-04-29 20:54:26.2 8...

  • Page 2271

    2271 filename syntax filename filename undo filename view ftp test type view parameter filename: name of the file transferred between the ftp server and the ftp client, a string of 1 to 200 characters. It is case sensitive. Description use the filename command to specify a file to be transferred bet...

  • Page 2272

    2272 c hapter 149: nqa c lient c onfiguration c ommands parameter interval: interval between two consecutive tests, in milliseconds, in the range 0 to 604800000. If the interval is 0, it indicates that only one test is performed. Description use the frequency command to configure the interval betwee...

  • Page 2273

    2273 [sysname-nqa-admin-test] type icmp-echo [sysname-nqa-admin-test-icmp-echo] history-records 10 http-version syntax http-version v1.0 undo http-version view http test type view parameter v1.0: the http version is 1.0 in an http test. Description use the http-version command to configure the http ...

  • Page 2275

    2275 example # enable the nqa client. System-view [sysname] nqa agent enable nqa agent max-concurrent syntax nqa agent max-concurrent number undo nqa agent max-concurrent view system view parameter number: maximum number of the tests that the nqa client can simultaneously perform, in the range 1 to ...

  • Page 2276

    2276 c hapter 149: nqa c lient c onfiguration c ommands description use the nqa schedule command to configure the test start time and test period for a test group. Use the undo nqa schedule command to stop the test for the test group. Note that a test group is not allowed to enter test group view or...

  • Page 2277

    2277 description use the operation command to configure the http operation type. Use the undo operation command to restore the default. By default, the http operation type is get. Example # configure the http operation type as post. System-view [sysname] nqa entry admin test [sysname-nqa-admin-test]...

  • Page 2278

    2278 c hapter 149: nqa c lient c onfiguration c ommands parameter password: password used to log onto the ftp server, a string of 1 to 32 characters. It is case sensitive. Description use the password command to configure a password used to log onto the ftp server. Use the undo password command to r...

  • Page 2279

    2279 example # configure the number of probes in an icmp-echo test as 10. System-view [sysname] nqa entry admin-test [sysname-nqa-admin-test] type icmp-echo [syaname-nqa-admin-test-icmp-echo] probe count 10 probe packet-interval syntax probe packet-interval packet-interval undo probe packet-interval...

  • Page 2280

    2280 c hapter 149: nqa c lient c onfiguration c ommands example # configure the number of consecutive packets in a udp-jitter probe as 100. System-view [sysname] nqa entry admin test [sysname-nqa-admin-test] type udp-jitter [syaname-nqa-admin-test-udp-jitter] probe packet-number 100 probe packet-tim...

  • Page 2281

    2281 example # configure the timeout time in a dhcp probe as 10000 milliseconds. System-view [sysname] nqa entry admin test [sysname-nqa-admin-test] type dhcp [syaname-nqa-admin-test-dhcp] probe timeout 10000 reaction syntax reaction item-num checked-element probe-fail threshold-type consecutive occ...

  • Page 2283

    2283 description use the route-option bypass-route command to enable the routing table bypass function to test the direct connectivity to the direct destination. Use the undo route-option bypass-route command to disable the routing table bypass function. By default, the routing table bypass function...

  • Page 2284

    2284 c hapter 149: nqa c lient c onfiguration c ommands system-view [sysname] nqa entry admin test [sysname-nqa-admin-test] type icmp-echo [sysname-nqa-admin-test-icmp-echo] source interface ethernet 1/0 source ip syntax source ip ip-address undo source ip view dlsw/ftp/http/icmp-echo/snmp/tcp/udp-e...

  • Page 2285

    2285 by default, no source port number is specified. Example # configure the source port number of a probe request as 8000. System-view [sysname] nqa entry admin test [sysname-nqa-admin-test] type udp-echo [sysname-nqa-admin-test-udp-echo] source port 8000 tos syntax tos value undo tos view dlsw/ftp...

  • Page 2286

    2286 c hapter 149: nqa c lient c onfiguration c ommands by default, the maximum number of hops that a probe packet can traverse in a network is 20. Note that after you configure the routeopt bypass-route command, the maximum number of hops a probe packet traverses in the network is 1. Example # conf...

  • Page 2287

    2287 url syntax url url undo url view http test type view parameter url: website an http test visits, a string of 1 to 185 characters. It is case sensitive. Description use the url command to configure the website an http test visits. Use the undo url command to remove the configured website an http...

  • Page 2288

    2288 c hapter 149: nqa c lient c onfiguration c ommands vpn-instance (icmp-echo test type view) syntax vpn-instance instance undo vpn-instance view icmp-echo test type view parameter instance: vpn instance name, a string of 1 to 31 characters. It is case sensitive. Description use the vpn-instance c...

  • Page 2289: 150

    150 nqa s erver c onfiguration c ommands n you only need to configure the nqa server for udp-jitter, tcp, and udp-echo tests. Display nqa server status syntax display nqa server status view any view parameter none description use the display nqa server status command to display nqa server status. Ex...

  • Page 2290

    2290 c hapter 150: nqa s erver c onfiguration c ommands nqa server enable syntax nqa server enable undo nqa server enable view system view parameter none description use the nqa server enable command to enable the nqa server. Use the undo nqa server enable command to disable the nqa server. By defau...

  • Page 2291

    2291 note that: ■ you need to configure the command on the nqa server for tcp tests only. ■ the ip address and port number must be consistent with those on the nqa client and must be different from those for an existing listening service. ■ the ip address must be that of an interface on the nqa serv...

  • Page 2292

    2292 c hapter 150: nqa s erver c onfiguration c ommands system-view [sysname] nqa server udp-echo 169.254.10.2 9000

  • Page 2293: 151

    151 n et s tream c onfiguration c ommands display ip netstream cache syntax display ip netstream cache view any view parameter none description use the display ip netstream cache command to view configuration and status information about the netstream cache. Example # display information about the n...

  • Page 2294

    2294 c hapter 151: n et s tream c onfiguration c ommands display ip netstream export syntax display ip netstream export view any view parameter none description use the display ip netstream export command to view statistics about exported netstream udp packets. Example # display statistics about net...

  • Page 2295

    2295 enable syntax enable undo enable view netstream aggregation view parameter none description use the enable command to enable current aggregation mode. Use the undo enable command to disable current aggregation mode. By default, no aggregation mode is enabled. Related command: ip netstream aggre...

  • Page 2296

    2296 c hapter 151: n et s tream c onfiguration c ommands parameter inbound: enables netstream statistics in the inbound direction of an interface. Outbound: enables netstream statistics in the outbound direction of an interface. Description use the ip netstream command to enable netstream statistics...

  • Page 2297

    2297 example # enter netstream as aggregation view. System-view [sysname] ip netstream aggregation as [sysname-aggregation-as] ip netstream export host syntax ip netstream export host ip-address udp-port undo ip netstream export host [ ip-address ] view system view, netstream aggregation view parame...

  • Page 2298

    2298 c hapter 151: n et s tream c onfiguration c ommands view system view, netstream aggregation view parameter interface-type interface-number: specifies a source interface for netstream udp packets by its type and number. Description use the ip netstream export source interface command to configur...

  • Page 2299

    2299 example # set the netstream statistics packet version number to 5 and the as option to origin-as. System-view [sysname] ip netstream export version 5 origin-as ip netstream max-entry syntax ip netstream max-entry max-entries undo ip netstream max-entry view system view parameter max-entries: ne...

  • Page 2300

    2300 c hapter 151: n et s tream c onfiguration c ommands example # set the active aging timer to 60 minutes. System-view [sysname] ip netstream timeout active 60 ip netstream timeout inactive syntax ip netstream timeout inactive seconds undo ip netstream timeout inactive view system view parameter s...

  • Page 2301: 152

    152 ntp c onfiguration c ommands display ntp-service sessions syntax display ntp-service sessions [ verbose ] view any view parameter verbose: displays the detailed information of all ntp sessions. Description use the display ntp-service sessions command to view the information of all ntp sessions. ...

  • Page 2302

    2302 c hapter 152: ntp c onfiguration c ommands n when a device is working in the ntp broadcast/multicast server mode, the display ntp-service sessions command executed on the device will not display the ntp session information corresponding to the broadcast/multicast server, but the sessions will b...

  • Page 2303

    2303 display ntp-service trace syntax display ntp-service trace view any view parameter none description use the display ntp-service trace command view the brief information of each ntp server along the ntp server chain from the local device back to the primary reference source. The display ntp-serv...

  • Page 2305

    2305 [sysname-acl-basic-2001] rule permit source 10.10.0.0 0.0.255.255 [sysname-acl-basic-2001] quit [sysname] ntp-service access peer 2001 ntp-service authentication enable syntax ntp-service authentication enable undo ntp-service authentication enable view system view parameter none description us...

  • Page 2306

    2306 c hapter 152: ntp c onfiguration c ommands c caution: ■ presently the system supports only the md5 algorithm for key authentication. ■ you can set a maximum of 1,024 keys for each device. ■ if an ntp authentication key is specified as a trusted key, the key automatically changes to not trusted ...

  • Page 2307

    2307 version number: specifies the ntp version, where number is in the range of 1 to 3 and defaults to 3. Description use the ntp-service broadcast-server command to configure the device to work in the ntp broadcast server mode. Use the undo ntp-service broadcast-server command to remove the device ...

  • Page 2308

    2308 c hapter 152: ntp c onfiguration c ommands ntp-service max-dynamic-sessions syntax ntp-service max-dynamic-sessions number undo ntp-service max-dynamic-sessions view system view parameter number: maximum number of dynamic ntp sessions to be set up, in the range of 0 to 100. Description use the ...

  • Page 2310

    2310 c hapter 152: ntp c onfiguration c ommands description use the ntp-service refclock-master command to configure the local clock as a reference source for other devices. Use the undo ntp-service refclock-master command to remove the local clock as a reference source. N the stratum level of a clo...

  • Page 2311

    2311 view system view parameter interface-type interface-number: specifies an interface by its interface type and interface number. Description use the ntp-service source-interface command to specify an interface for sending ntp messages. Use the undo ntp-service source-interface command to remove t...

  • Page 2312

    2312 c hapter 152: ntp c onfiguration c ommands version number: specifies the ntp version, where number is in the range of 1 to 3 and defaults to 3. Description use the ntp-service unicast-peer command to designate a symmetric-passive peer for the device. Use the undo ntp-service unicast-peer comman...

  • Page 2313

    2313 authentication-keyid keyid: specifies the key id to be used for sending ntp messages to the ntp server, where keyid is in the range of 1 to 4294967295. Priority: specifies this ntp server as the first choice under the same condition. Source-interface interface-type interface-number: specifies a...

  • Page 2314

    2314 c hapter 152: ntp c onfiguration c ommands.

  • Page 2315: 153

    153 rmon c onfiguration c ommands display rmon alarm syntax display rmon alarm [ entry-number ] view any view parameter entry-number: index of an rmon alarm entry, in the range 1 to 65535. If no entry is specified, the configuration of all alarm entries is displayed. Description use the display rmon...

  • Page 2316

    2316 c hapter 153: rmon c onfiguration c ommands display rmon event syntax display rmon event [ entry-number ] view any view parameter entry-number: index of an rmon event entry, in the range 1 to 65535. If no entry is specified, the configuration of all event entries is displayed. Description use t...

  • Page 2317

    2317 display rmon eventlog syntax display rmon eventlog [ entry-number ] view any view parameter entry-number: index of an event entry, in the range 1 to 65535. If no entry number is specified, the log information for all event entries is displayed. Description use the display rmon eventlog command ...

  • Page 2318

    2318 c hapter 153: rmon c onfiguration c ommands description use the display rmon history command to display rmon history control entry and last history sampling information, including bandwidth utilization, number of bad packets, and total packet number. Related command: rmon history. Example # dis...

  • Page 2319

    2319 display rmon prialarm syntax display rmon prialarm [ entry-number ] view any view parameter entry-number: private alarm entry index, in the range 1 to 65535. If no entry is specified, the configuration of all private alarm entries is displayed. Description use the display rmon prialarm command ...

  • Page 2320

    2320 c hapter 153: rmon c onfiguration c ommands display rmon statistics syntax display rmon statistics [ interface-type interface-number ] view any view parameter interface-type interface-number: specifies an interface by its type and number. Description use the display rmon statistics command to d...

  • Page 2322

    2322 c hapter 153: rmon c onfiguration c ommands falling-threshold threshold-value2 event-entry2: sets the falling threshold, where threshold-value2 represents the falling threshold, in the range -2147483648 to +2147483647 and event-entry2 represents the index of the event triggered when the falling...

  • Page 2324

    2324 c hapter 153: rmon c onfiguration c ommands example # create event 10 in the rmon event table. System-view [sysname] rmon event 10 log owner user1 rmon history syntax rmon history entry-number buckets number interval sampling-interval [ owner text] undo rmon history entry-number view ethernet i...

  • Page 2326

    2326 c hapter 153: rmon c onfiguration c ommands description use the rmon prialarm command to create an entry in the private alarm table of rmon. Use the undo rmon prialarm command to remove a private alarm entry from the private alarm table of rmon. The following is how the system handles private a...

  • Page 2327

    2327 rmon statistics syntax rmon statistics entry-number [ owner text ] undo rmon statistics entry-number view ethernet interface view parameter entry-number: index of statistics entry, in the range 1 to 65535. Owner text: owner of the entry, a string of 1 to 127 characters. It is case sensitive and...

  • Page 2328

    2328 c hapter 153: rmon c onfiguration c ommands.

  • Page 2329: 154

    154 snmp c onfiguration c ommands display snmp-agent local-switch fabricid syntax display snmp-agent local-switch fabricid view any view parameter none description use the display snmp-agent local-switch fabricid command to display the local snmp agent switch fabric id. Snmp switch fabric id identif...

  • Page 2330

    2330 c hapter 154: snmp c onfiguration c ommands community name: bb group name: bb storage-type: nonvolatile display snmp-agent group syntax display snmp-agent group [ group-name ] view any view parameter group-name: specifies the snmp group name, a string of 1 to 32 characters, case sensitive. Desc...

  • Page 2332

    2332 c hapter 154: snmp c onfiguration c ommands view type:excluded view status:active display snmp-agent statistics syntax display snmp-agent statistics view any view parameter none description use the display snmp-agent statistics command to display snmp statistics. Example # display the statistic...

  • Page 2334

    2334 c hapter 154: snmp c onfiguration c ommands description use the display snmp-agent sys-info command to display the current snmp system information. If no keyword is specified, all snmp agent system information will be displayed. Example # display the current snmp agent system information. Displ...

  • Page 2335

    2335 in the above output, enable indicates that the module is enabled with the trap sending whereas disable indicates the trap sending is disabled. By default, trap sending is enabled on all modules that can send trap messages. Use the snmp-agent trap enable command to manually configure whether the...

  • Page 2336

    2336 c hapter 154: snmp c onfiguration c ommands parameter none description use the enable snmp trap updown command to enable the sending of trap messages for interface state change (linkup/linkdown trap messages). Use the undo enable snmp trap updown command to disable the sending of linkup/linkdow...

  • Page 2339

    2339 example # create an snmp group group1 on an snmpv3 enabled device, no authentication, no privacy. System-view [sysname] snmp-agent group v3 group1 snmp-agent local-switch fabricid syntax snmp-agent local-switch fabricid switch fabricid undo snmp-agent local-switch fabricid view system view para...

  • Page 2340

    2340 c hapter 154: snmp c onfiguration c ommands set-operation: enables logging of snmp set operation. Description use the snmp-agent log command to enable snmp logging. Use the undo snmp-agent log command to restore the default. By default, snmp logging is disabled. If a specified snmp logging is e...

  • Page 2341

    2341 you can use the display snmp-agent mib-view command to view the access right of the default view. Also, you can use the undo snmp-agent mib-view command to remove the default view, after that, however, you cannot read or write all mib nodes on agent. Related command: snmp-agent group. Example #...

  • Page 2342

    2342 c hapter 154: snmp c onfiguration c ommands version: the snmp version in use. ■ all: specifies snmpv1, snmpv2c, and snmpv3. ■ v1: snmpv1. ■ v2c: snmpv2c. ■ v3: snmpv3. Description use the snmp-agent sys-info command to configure system information, including the contact information, the locatio...

  • Page 2343

    2343 ipv6 ipv6-address: specifies the ipv6 address of the trap host that receives trap messages. Vpn-instance vpn-instance-name: specifies the vpn where the host receiving traps resides, where vpn-instance-name indicates the vpn instance name and is a string of 1 to 31 characters. It is case sensiti...

  • Page 2345

    2345 description use the snmp -agent trap enable command to enable the device to send trap messages globally. Use the undo snmp-agent trap enable command to disable the device from sending trap messages. By default, the device is enabled to send all types of trap messages. Note that: to enable an in...

  • Page 2346

    2346 c hapter 154: snmp c onfiguration c ommands system-view [sysname] snmp-agent trap if-mib link extended snmp-agent trap life syntax snmp-agent trap life seconds undo snmp-agent trap life view system view parameter seconds: time-out time, in the range 1 to 2,592,000 seconds. Description use the s...

  • Page 2349

    2349 for snmpv1 and snmpv2c, this command means adding of a new snmp group. For snmpv3, this command adds a new user to an snmp group. Related command: snmp-agent group, snmp-agent community, snmp-agent local-switch fabricid. Example # add a user john to the snmp group johngroup. Configure the secur...

  • Page 2350

    2350 c hapter 154: snmp c onfiguration c ommands.

  • Page 2351: 155

    155 f ile s ystem c onfiguration c ommands n ■ a file name cannot be longer than 64 characters (including drive letter and a string terminator. If the drive letter is “cf: /”, the file name can be at most [ 64-1-4 ] = 59 characters in length; or, errors will occur in file operation. Typically, the f...

  • Page 2352

    2352 c hapter 155: f ile s ystem c onfiguration c ommands parameter fileurl-source: name of the source file. Fileurl-dest: name of the target file. Description use the copy command to copy a file. Example # copy file testcfg.Cfg and save it as tt.Cfg. Copy testcfg.Cfg tt.Cfg copy cf:/config.Cfg to c...

  • Page 2353

    2353 parameter /all: displays all files (including those in the recycle bin). File-url: name of the file or directory to be displayed. Asterisks (*) are acceptable as wildcards. For example, to display files with the .Txt extension under the current directory, you may use the dir *.Txt command. Desc...

  • Page 2354

    2354 c hapter 155: f ile s ystem c onfiguration c ommands a batch file does not support hot backup. Each configuration command in a batch file must be a standard configuration command, meaning the valid configuration information which can be displayed with the display current-configuration command a...

  • Page 2355

    2355 fixdisk cf: %fixdisk cf: completed. Format syntax format device view user view parameter device: storage device name. Description use the format command to format a storage device. C caution: formatting a device results in loss of all the files and these files cannot be restored. In particular,...

  • Page 2356

    2356 c hapter 155: f ile s ystem c onfiguration c ommands mkdir test/mytest %created dir cf:/test/mytest more syntax more file-url view user view parameter file-url: file name. Description use the more command to display the contents of the specified file. So far, this command is valid only for .Txt...

  • Page 2357

    2357 description use the mount command to mount a hot swappable storage device, such as a cf card, a usb device, etc (excluding flash). This command is effective only when the device is in unmounted state. By default, a storage device is in the mounted state, that is, you can use it without mounting...

  • Page 2358

    2358 c hapter 155: f ile s ystem c onfiguration c ommands example # move the file cf:/test/sample.Txt to cf:/sample.Txt. Move cf:/test/sample.Txt cf:/sample.Txt move cf:/test/sample.Txt to cf:/sample.Txt ?[y/n]:y % moved file cf:/test/sample.Txt to cf:/sample.Txt pwd syntax pwd view user view parame...

  • Page 2359

    2359 parameter /force: empties the recycle bin. Description use the reset recycle-bin command to permanently remove deleted file or files from the recycle bin. Unlike this command, the delete file-url command only moves files to the recycle bin. Example # empty the recycle bin. Reset recycle-bin cle...

  • Page 2360

    2360 c hapter 155: f ile s ystem c onfiguration c ommands by default, a storage device is in the mounted state, that is, you can use it without mounting it. Note that: ■ do not remove the storage device or swap the board when mounting or unmounting the device, or when you are processing files on the...

  • Page 2361: 156

    2361 156 c onfiguration f ile m anagement c ommands backup startup-configuration syntax backup startup-configuration to dest-addr [dest-filename ] view user view parameter dest-addr: ip address or name of a tftp server. The address cannot be an ipv6 address. Dest-filename: target filename used to sa...

  • Page 2362

    2362 c hapter 156: c onfiguration f ile m anagement c ommands parameter by-linenum: identifies each line of displayed information with a line number. Description use the display saved-configuration command to display the initial configuration file saved in the storage device. In case the device malf...

  • Page 2363

    2363 display startup syntax display startup view any view parameter none description use the display startup command to display the configuration file used at this startup and the one used for next startup. Related command: startup saved-configuration. Example # display the configuration file used a...

  • Page 2364

    2364 c hapter 156: c onfiguration f ile m anagement c ommands has both the main and backup attributes, the command erases its backup attribute. C caution: this command will permanently delete the configuration file on the device. Use it with caution. Related command: save, display saved-configuratio...

  • Page 2365

    2365 existing file or not. In addition, both the main board and the backup board are assumed to use the storage device of the same type when checking filename or downloading the configuration file (both to the root directory of the main board or backup board); otherwise, the restoration fails. Examp...

  • Page 2366

    2366 c hapter 156: c onfiguration f ile m anagement c ommands ■ the reset saved-configuration backup command erases the configuration file which has the backup attribute only; while for the configuration file which has both the main and backup attributes, the command erases its backup attribute. Rel...

  • Page 2367

    2367 description use the startup saved-configuration command to specify a configuration file for next startup. Use the undo startup saved-configuration command to start up with an empty configuration, which means startup with the initial configuration of the system. If the configuration file has mai...

  • Page 2368

    2368 c hapter 156: c onfiguration f ile m anagement c ommands.

  • Page 2369: 157

    2369 157 ftp s erver c onfiguration c ommands display ftp-server syntax display ftp-server view any view parameter none description use the display ftp -server command to display the ftp server configuration of the device. After configuring ftp parameters, you may verify them with this command. Rela...

  • Page 2370

    2370 c hapter 157: ftp s erver c onfiguration c ommands description use the display ftp-user command to display the detailed information of current ftp users. Example # display the detailed information of ftp users. Display ftp-user username hostip port idle homedir aaaa 5.5.5.6 1027 0 cf: free ftp ...

  • Page 2371

    2371 use the undo ftp server command to disable the ftp server. By default, the ftp server is disabled to prevent attacks. Example # disable the ftp server. System-view [sysname] undo ftp server % close ftp server ftp timeout syntax ftp timeout minute undo ftp timeout view system view parameter minu...

  • Page 2372

    2372 c hapter 157: ftp s erver c onfiguration c ommands use the undo ftp update command to restore the default, namely, the normal mode. Example # set the ftp update mode to normal. System-view [sysname] ftp update normal.

  • Page 2373: 158

    2373 158 ftp c lient c onfiguration c ommands n ■ you must use the ftp command to enter ftp client view for configurations under this view. For details, refer to “ftp” on page 2378. ■ the prompt information in the examples of this section varies with devices. Ascii syntax ascii view ftp client view ...

  • Page 2374

    2374 c hapter 158: ftp c lient c onfiguration c ommands ftp usprovides two file transfer modes: ascii and binary. To transfer text files, use the ascii mode; to transfer program files, use the binary mode. By default, the transfer mode is ascii mode. Example # set the file transfer mode to binary. [...

  • Page 2375

    2375 view ftp client view parameter none description use the cdup command to exit the current directory and enter the upper directory of the ftp server. Example # change the current working directory path to the upper directory. [ftp] cdup 200 cdup command successful. Close syntax close view ftp cli...

  • Page 2376

    2376 c hapter 158: ftp c lient c onfiguration c ommands examples # the device serves as the ftp client. Enable ftp client debugging and use the active mode to download file sample.File from the current directory of the ftp server. Terminal monitor terminal debugging ftp 192.168.1.46 trying 192.168.1...

  • Page 2377

    2377 description use the delete command to delete a specified file on the remote ftp server. To do this, you must be a user with the delete permission on the ftp server. Example # delete file temp.C. [ftp] delete temp.C 250 dele command successful. Dir syntax dir [ remotefile [ localfile ] ] view ft...

  • Page 2378

    2378 c hapter 158: ftp c lient c onfiguration c ommands view ftp client view parameter none description use the disconnect command to disconnect from the remote ftp server but remain in ftp client view. This command is equal to the close command. Example # disconnect from the remote ftp server but r...

  • Page 2379

    2379 interface interface-type interface-number: specifies the source interface by its type and number. The primary ip address configured on this interface is the source address of the transmitted packets. If no primary ip address is configured on the source interface, the connection fails. Ip source...

  • Page 2380

    2380 c hapter 158: ftp c lient c onfiguration c ommands ftp. If no primary ip address is configured on the source interface, the connection fails. Ip source-ip-address: source ip address of the ftp connection. It must be an ip address configured on the device. Description use the ftp client source c...

  • Page 2381

    2381 source ipv6 source-ipv6-address: specifies a source ipv6 address for transmitted ftp packets. This address must be an ipv6 address that has been configured on the device. -i interface-type interface-number: specifies the type and number of the egress interface. This parameter can be used only i...

  • Page 2382

    2382 c hapter 158: ftp c lient c onfiguration c ommands 227 entering passive mode (192,168,1,50,17,163). 125 ascii mode data connection already open, transfer starting for testcfg.Cfg. .....226 transfer complete. Ftp: 5190 byte(s) received in 7.754 second(s), 669.00 byte(s)/sec. Lcd syntax lcd view ...

  • Page 2383

    2383 logfile mainar.Bin arbasicbtm.Bin ftp test bb.Cfg testcfg.Cfg 226 transfer complete. Ftp: 87 byte(s) received in 0.132 second(s) 659.00 byte(s)/sec. # view the information of directory logfile, and save the result to file aa.Txt. [ftp] ls logfile aa.Txt 227 entering passive mode (192,168,1,50,1...

  • Page 2384

    2384 c hapter 158: ftp c lient c onfiguration c ommands description use the open command to log onto the ipv4 ftp server under ftp client view. At login, you will be asked to enter the username and password for accessing the ftp server. If your input is correct, the login succeeds; otherwise, it fai...

  • Page 2385

    2385 connected to 3000::200. 220 welcome! User(3000::200:(none)): my_name 331 please specify the password. Password: 230 login successful. Passive syntax passive undo passive view ftp client view parameter none description use the passive command to set the data transmission mode to passive. Use the...

  • Page 2386

    2386 c hapter 158: ftp c lient c onfiguration c ommands pwd syntax pwd view ftp client view parameter none description use the pwd command to display the working directory on the remote ftp server. Example # display the working directory on the remote ftp server. [ftp] pwd 257 "cf:/temp" is current ...

  • Page 2387

    2387 [ftp] remotehelp 214-here is a list of available ftp commands those with ’*’ are not yet implemented. User pass acct* cwd cdup smnt* quit rein* port pasv type stru* mode* retr stor stou* appe* allo* rest* rnfr* rnto* abor* dele rmd mkd pwd list nlst site* syst stat* help noop* xcup xcwd xmkd xp...

  • Page 2388

    2388 c hapter 158: ftp c lient c onfiguration c ommands rmdir syntax rmdir directory view ftp client view parameter directory: directory name on the remote ftp server. Description use the rmdir command to remove a specified directory from the ftp server. Note that only authorized users are allowed t...

  • Page 2389

    2389 parameter username: other login username. Password: login password. Description use the user command to relog onto the currently accessing ftp server with other username after you have logged onto the ftp server. Before using this command, you must configure the corresponding username and passw...

  • Page 2390

    2390 c hapter 158: ftp c lient c onfiguration c ommands.

  • Page 2391: 159

    2391 159 tftp c lient c onfiguration c ommands display tftp client configuration syntax display tftp client configuration view any view parameter none description use the display tftp client configuration command to display the configuration information of the tftp client. Related command: tftp clie...

  • Page 2392

    2392 c hapter 159: tftp c lient c onfiguration c ommands description use the tftp-server acl command to reference an acl to control access to the tftp server. Users can use the configured rules in acl to allow or prevent the use of tftp server in a network. Use the undo tftp-server acl command to re...

  • Page 2393

    2393 description use the tftp command to upload files from the local device to a tftp server or download files from the tftp server to the local device. ■ if no destination file name is specified, the saved file uses the source file name. ■ the priority of the source address specified with this comm...

  • Page 2394

    2394 c hapter 159: tftp c lient c onfiguration c ommands use the undo telnet client source command to restore the default. By default, a device uses the ip address of the interface determined by the routing protocol as the source ip address to communicate with a tftp server. Note that: ■ the source ...

  • Page 2395

    2395 destination-filename: destination filename. If not specified, this filename is the same as the source filename. Description use the tftp ipv6 command to download a specified file from a tftp server or upload a specified local file to a tftp server. This command applies to ipv6 network. Example ...

  • Page 2396

    2396 c hapter 159: tftp c lient c onfiguration c ommands.

  • Page 2398

    2398 c hapter 160: s ystem m aintaining c ommands -q: presence of this parameter indicates that only statistics are displayed. By default, all information is displayed. -r: records routes. By default, routes are not recorded. -s packet-size: specifies length (in bytes) of an icmp echo request, in th...

  • Page 2399

    2399 view any view parameter -a source-ipv6: specifies the source ipv6 address of an icmp echo request. It must be a legal ipv6 address configured on the device. -c count: specifies the number of times that an icmpv6 echo request is sent, in the range 1 to 4294967295. The default value is 5. -m inte...

  • Page 2401

    2401 press ctrl_c to break 1 128.3.112.1 10 ms 10 ms 10 ms 2 128.32.210.1 19 ms 19 ms 19 ms 3 128.32.216.1 39 ms 19 ms 19 ms 4 128.32.136.23 19 ms 39 ms 39 ms 5 128.32.168.22 20 ms 39 ms 39 ms 6 128.32.197.4 59 ms 119 ms 39 ms 7 131.119.2.5 59 ms 59 ms 39 ms 8 129.140.70.13 80 ms 79 ms 99 ms 9 129.1...

  • Page 2402

    2402 c hapter 160: s ystem m aintaining c ommands tracert ipv6 3002::1 traceroute to 3002::1 30 hops max,60 bytes packet 1 3003::1 30 ms 10 ms 10 ms 2 3002::1 10 ms 11 ms 9 ms.

  • Page 2404

    2404 c hapter 161: s ystem d ebugging c ommands terminal. For the detailed description on the terminal debugging and terminal monitor commands, refer to “terminal debugging” on page 2445 and “terminal monitor” on page 2447. Related command: display debugging. Example # enable ip packet debugging. De...

  • Page 2405: 162

    162 b asic c onfiguration c ommands clock datetime syntax clock datetime time date view user view parameter time: current time in the format of hh:mm:ss, where hh is hours in the range 0 to 23, mm is minutes in the range 0 to 59, and ss is seconds in the range 0 to 59. The zeros in the argument can ...

  • Page 2406

    2406 c hapter 162: b asic c onfiguration c ommands view user view parameter zone-name: name of the summer time, a string of 1 to 32 characters. It is case sensitive. Start-time: start time, in the format of hh:mm:ss (hours/minutes/seconds). The zeros in the argument can be omitted except for indicat...

  • Page 2407

    2407 clock summer-time repeating syntax clock summer-time zone-name repeating start-time start-date end-time end-date add-time undo clock summer-time view user view parameter zone-name: name of the daylight saving time, a string of 1 to 32 characters. Start-time: start time, in the format of hh:mm:s...

  • Page 2408

    2408 c hapter 162: b asic c onfiguration c ommands specifies to adopt daylight saving time from 00:00:00 of june 6 until 00:00:00 of october 1 each year from 2007 (2007 inclusive). The daylight saving time adds one hour to the current device time. After the configuration takes effect, use the displa...

  • Page 2409

    2409 after the configuration takes effect, use the display clock command to view the result. The information such as log file and debug adopts the local time modified by time-zone and daylight saving time. Related command: clock datetime, clock summer-time one-off, clock summer-time repeating, displ...

  • Page 2410

    2410 c hapter 162: b asic c onfiguration c ommands example # set the command level of the interface command to 0. System-view [sysname] command-privilege level 0 view system interface configure-user count syntax configure-user count number undo configure-user count view system view parameter number:...

  • Page 2411

    2411 description use the display clipboard command to view the contents of the clipboard. To copy the specified content to the clipboard: ■ move the cursor to the starting position of the content and press the combination (“,” is an english comma). ■ move the cursor to the ending position of the con...

  • Page 2412

    2412 c hapter 162: b asic c onfiguration c ommands related command: configure-user count. Example # display the users entering system view at the same time. Display configure-user idx ui delay type userlevel + 178 vty 0 01:10:16 tel 3 + 179 vty 1 00:00:00 tel 3 following are more details. Vty 0 : lo...

  • Page 2413

    2413 text: regular expression in a case-insensitive string with space allowed. Description use the display current-configuration command to display the current validated configuration of a device. A parameter is not displayed if it has the default configuration. You can use the display current-confi...

  • Page 2415

    2415 display history-command syntax display history-command view any view parameter none description use the display history-command command to display commands saved in the history buffer. The system will save validated history commands performed last in current user view to the history buffer, whi...

  • Page 2416

    2416 c hapter 162: b asic c onfiguration c ommands =system hotkeys= hotkeys function ctrl_a move the cursor to the beginning of the current line. Ctrl_b move the cursor one character left. Ctrl_c stop current command function. Ctrl_d erase current character. Ctrl_e move the cursor to the end of the ...

  • Page 2417

    2417 system-view [sysname] user-interface vty 0 [sysname-ui-vty0] display this # user-interface con 0 user-interface vty 0 history-command max-size 256 user-interface vty 1 4 # return display version syntax display version view any view parameter none description use the display version command to v...

  • Page 2419

    2419 ************************************************************************** * all rights reserved (2004-2006) * * without the owner’s prior written consent, * * no decompiling or reverse-switch fabricering shall be allowed. * **********************************************************************...

  • Page 2420

    2420 c hapter 162: b asic c onfiguration c ommands system-view [sysname] hotkey ctrl_t display tcp status # display the configuration of hotkeys. [sysname] display hotkey ----------------- hotkey ----------------- =defined hotkeys= hotkeys command ctrl_g display current-configuration ctrl_l display ...

  • Page 2421

    2421 description use the quit command to exit to a lower-level view. If the current view is user view, the quit command terminates the current connection and reconnects to the device. Example # switch from ethernet 1/0 interface view to system view, and then to user view. [sysname-ethernet1/0] quit ...

  • Page 2422

    2422 c hapter 162: b asic c onfiguration c ommands ■ system: provides service configuration commands, including routing and commands at each level of the network for providing services. ■ manage: influences the basic operation of the system and the system support modules for service support. Command...

  • Page 2423

    2423 cipher: cipher text password. Password: password, a string of characters. It is case-sensitive string. ■ for simple password, it is a string of 1 to 16 characters. ■ for cipher password, it is a string of 1 to 16 characters in plain text or 24 characters in cipher text. For example, the simple ...

  • Page 2424

    2424 c hapter 162: b asic c onfiguration c ommands view system view parameter sysname: name of the device, a string of 1 to 30 characters. Description use the sysname command to set the name of the device. Use the undo sysname demand to restore the device name to the default. The default name varies...

  • Page 2426

    2426 c hapter 163: i nformation c enter c onfiguration c ommands the above information indicates to output log information with the severity from 0 to 4, trap information with the severity from 0 to 7 and debug information with the severity from 0 to 7 to the console. The source module is default. D...

  • Page 2427

    2427 enabled,max buffer size 1024, current buffer size 256, current messages 216, dropped messages 0, overwritten messages 0 channel number : 3, channel name : trapbuffer logfile: channel number:9, channel name:channel9 information timestamp setting: log - date, trap - date, debug - date, loghost - ...

  • Page 2429

    2429 description use the display logbuffer command to display the state of the log buffer and the log information recorded. Absence of the size buffersize argument indicates that all log information recorded in the log buffer is displayed. Example # display the state of the log buffer and the log in...

  • Page 2430

    2430 c hapter 163: i nformation c enter c onfiguration c ommands display logbuffer summary syntax display logbuffer summary [ level severity ] view any view parameter level severity: displays the summary of the log information of the specified level in the log buffer. Severity represents information...

  • Page 2431

    2431 description use the display logfile buffer command to display contents of the log file buffer. N the support for the command varies with devices. Example # display the contents of the log file buffer. Display logfile buffer %@387986%jun 20 10:52:03 2006 sysname %%10ic/7/sys_restart: system rest...

  • Page 2432

    2432 c hapter 163: i nformation c enter c onfiguration c ommands display trapbuffer syntax display trapbuffer [ size buffersize ] view any view parameter size buffersize: displays specified number of the latest trap messages in a trap buffer, where buffersize represents the number of the latest trap...

  • Page 2433

    2433 parameter channel-number: specifies a channel number, in the range 0 to 9. Channel-name: specifies a channel name, a string of 1 to 30 characters. It should not start with a number, an underscore (-), a forward slash (/), or a backward slash (). The channel name is not case sensitive. Descripti...

  • Page 2434

    2434 c hapter 163: i nformation c enter c onfiguration c ommands info-center enable syntax info-center enable undo info-center enable view system view parameter none description use the info-center enable command to enable information center. Use the undo info-center enable command to disable the in...

  • Page 2435

    2435 by default, information output to the log buffer is enabled with channel 4 (logbuffer) as the default channel and a maximum buffer size of 512. Note that the info-center logbuffer command takes effect only after the information center is enabled with the info-center enable command. Example # en...

  • Page 2436

    2436 c hapter 163: i nformation c enter c onfiguration c ommands description use the info-center logfile frequency command to configure the frequency with which the system saves the log file. Use the undo info-center logfile frequency command to restore the default frequency. By default, the frequen...

  • Page 2437

    2437 parameter dir-name: the name of the directory where a log file is saved, a string of 1 to 64 characters. Description use the info-center logfile switch-directory command to configure the directory where a log file is saved. For a device supporting cf partition, the directory to save a log file ...

  • Page 2438

    2438 c hapter 163: i nformation c enter c onfiguration c ommands use the undo info-center loghost command to restore the default configurations on a log host. By default, output of system information to the log host is disabled. When it is enabled, the default channel name will be loghost and the de...

  • Page 2440

    2440 c hapter 163: i nformation c enter c onfiguration c ommands use the undo info-center snmp channel command to restore the default channel to output system information to the snmp nms. By default, output of system information to the snmp nms is enabled with a default channel name of snmpagent and...

  • Page 2441

    2441 use the undo info -center source command to remove the specified output rules. By default, the output rules for the system information are listed in table 633. This command can be used to filter and redirect system information. For example, the user can set to output log information with severi...

  • Page 2442

    2442 c hapter 163: i nformation c enter c onfiguration c ommands info-center synchronous syntax info-center synchronous undo info-center synchronous view system view parameter none description use the info-center synchronous command to enable synchronous information output. Use the undo info-center ...

  • Page 2443

    2443 parameter debugging: sets the timestamp format of the debugging information. Log: sets the timestamp output format of the log information. Trap: sets the timestamp output format of the trap information. Boot: the time taken to boot up the system, in the format of xxxxxx.Yyyyyy, in which xxxxxx ...

  • Page 2444

    2444 c hapter 163: i nformation c enter c onfiguration c ommands use the undo info-center timestamp loghost command to restore the default. By default, the time stamp format for log information sent to the log host is date. Example # set not to include the year information in the output information ...

  • Page 2445

    2445 view any view parameter none description use the logfile save command to manually save the log buffer contents into the log file. By default, the system automatically saves the log file based on a frequency configured by the info-center logfile frequency command into a directory configured by t...

  • Page 2446

    2446 c hapter 163: i nformation c enter c onfiguration c ommands undo terminal debugging view user view parameter none description use the terminal debugging command to enable the display of debug information on the current terminal. Use the undo terminal debugging command to disable the display of ...

  • Page 2447

    2447 terminal monitor syntax terminal monitor undo terminal monitor view user view parameter none description use the terminal monitor command to enable the monitoring of system information on the current terminal. Use the undo terminal monitor command to disable the monitoring of system information...

  • Page 2448

    2448 c hapter 163: i nformation c enter c onfiguration c ommands note that the trap information is displayed (using the terminal trapping command) only after the monitoring of system information is enabled on the current terminal first (using the terminal monitor command). Example #enable the displa...

  • Page 2450

    2450 c hapter 164: u ser i nterface c onfiguration c ommands system-view [sysname] user-interface vty 0 [sysname-ui-vty0] undo acl 2001 outbound activation-key syntax activation-key character undo activation-key view user interface view parameter character: shortcut key for starting terminal session...

  • Page 2451

    2451 ************************************************************************** user interface con0 is available. Please press enter. # enter at the prompt of "please press enter". You will see the terminal session being started. %mar 2 18:40:27:981 2005 sysname shell/5/login: console login from con...

  • Page 2452

    2452 c hapter 164: u ser i nterface c onfiguration c ommands sure? [y/n] ]:y [sysname-ui-vty0]-4] # telnet to the device again, the display brief interface loopback command will be executed automatically before the telnet connection breaks. And the following information will be displayed: **********...

  • Page 2453

    2453 system-view [sysname] user-interface vty 0 [sysname-ui-vty0] authentication-mode none # set to use password authentication when users use vty 0 interface to log onto the device. The authentication password is 321. System-view [sysname] user-interface vty 0 [sysname-ui-vty0] authentication-mode ...

  • Page 2454

    2454 c hapter 164: u ser i nterface c onfiguration c ommands display history-command syntax display history-command view any view parameter none description use the display history-command command to view the valid history commands that have been executed recently. Currently, the system can display ...

  • Page 2455

    2455 if the summary keyword is present, the command displays all the number and type of user interfaces. Example # display information about user interface 0. Display user-interface 0 idx type tx/rx modem privi auth int + 0 con 0 9600 - 3 n - + : current user-interface is active. F : current user-in...

  • Page 2456

    2456 c hapter 164: u ser i nterface c onfiguration c ommands display users syntax display users [ all ] view any view parameter all: displays information about users on all user interfaces. Description use the display users command to view the user information using the device. Use the display users...

  • Page 2458

    2458 c hapter 164: u ser i nterface c onfiguration c ommands ping -c 20 192.168.1.49 ping 192.168.1.49: 56 data bytes, press a to break reply from 192.168.1.49: bytes=56 sequence=1 ttl=255 time=3 ms reply from 192.168.1.49: bytes=56 sequence=2 ttl=255 time=3 ms # enter , if the task terminates immed...

  • Page 2459

    2459 mode; if either one of these two arguments is omitted, it indicates that no flow control is performed in the direction specified by the omitted argument. For example, if you configure flow-control hardware in, the system automatically sets the local device not to perform flow control on the rem...

  • Page 2460

    2460 c hapter 164: u ser i nterface c onfiguration c ommands ■ for tty user interfaces, the value range varies with devices, and normally starts from 1. ■ for vty user interfaces, the value ranges from 0 to 4. Description use the free user-interface command to disconnect with the specified user inte...

  • Page 2461

    2461 parameter minutes: specifies timeout time in minutes, in the range 0 to 35791, defaulting to 10 minutes. Seconds: specifies timeout time in seconds, in the range 0 to 59, defaulting to 0 seconds. Description use the idle-timeout command to set the idle-timeout timer. When it expires, the user c...

  • Page 2463

    2463 description use the modem auto-answer command to set the answering mode to auto-answer. Use the undo modem auto-answer command to restore the default, or manual answer. N this command takes effect on the aux port and other asynchronous interfaces only, and cannot be applied to the console port....

  • Page 2464

    2464 c hapter 164: u ser i nterface c onfiguration c ommands mark: mark parity check. None: no parity check. Odd: odd parity check. Space: space parity check. Description use the parity command to set the check bit of the user interface. Use the undo parity command to restore the default, or none. N...

  • Page 2465

    2465 system-view [sysname] user-interface vty 0 4 [sysname-ui-vty0-4] authentication-mode scheme [sysname-ui-vty0-4] protocol inbound ssh redirect disconnect syntax redirect disconnect view user interface view parameter none description use the redirect disconnect command to manually terminate a red...

  • Page 2466

    2466 c hapter 164: u ser i nterface c onfiguration c ommands related command: telnet, display tcp statistics on page 793. Example # enable redirection on user interface tty 7. System-view [sysname] user-interface tty 7 [sysname-ui-tty7] redirect enable redirect listen-port syntax redirect listen-por...

  • Page 2467

    2467 description use the redirect refuse-negotiation command to disable telnet option negotiation when establishing redirected telnet connection. Use the undo redirect refuse-negotiation command to enable telnet option negotiation when establishing redirected telnet connection. By default, telnet op...

  • Page 2468

    2468 c hapter 164: u ser i nterface c onfiguration c ommands redirect return-deal from-terminal syntax redirect return-deal from-terminal undo redirect return-deal from-terminal view user interface view parameter none description use the redirect return-deal from-telnet command to let the device tha...

  • Page 2469

    2469 n ■ the redirect commands are supported on the aux and tty user interfaces only. ■ execute the command after using the redirect enable command to enable redirection on the user interface. Example # set the idle timeout for the redirected telnet connection to 200 seconds. System-view [sysname] u...

  • Page 2470

    2470 c hapter 164: u ser i nterface c onfiguration c ommands parameter all: sends messages to all user interfaces. Num1: absolute number of a user interface. The value range varies with devices, and normally starts from 0. Num2: relative number of a user interface, in the following rules: ■ for the ...

  • Page 2471

    2471 1234567 for example. A cipher text password, or the encrypted version of the plain text password, comprises 24 characters, such as _(tt8f]y5sq=^q‘maf4 description use the set authentication password command to set a local authentication password. Use the undo set authentication password command...

  • Page 2472

    2472 c hapter 164: u ser i nterface c onfiguration c ommands ■ this command is not supported on the aux port if the device has only a aux port and no console port. ■ this command cannot be used on the user interface from which you log in. Example # disable terminal services on the vtys 0 through 4. ...

  • Page 2474

    2474 c hapter 164: u ser i nterface c onfiguration c ommands use the undo terminal type command to restore the default. By default, the terminal display type is ansi. Note that the system supports two types of terminal display: ansi and vt100. If the terminal display of the device and the client (fo...

  • Page 2475

    2475 quit exit from current command view super privilege current user a specified priority level telnet establish one telnet connection tracert trace route function undo undo a command or set to its default status # enable user 1 to access level 3 commands. System-view [sysname] local-user user1 new...

  • Page 2476

    2476 c hapter 164: u ser i nterface c onfiguration c ommands system-view [sysname] user-interface vty 0 3 [sysname-ui-vty0-3].

  • Page 2478

    2478 c hapter 165: mac a ddress t able m anagement c onfiguration c ommands display mac-address 00e0-fc01-0101 mac addr vlan id state port index aging time(s) 00e0-fc01-0101 1 learned gigabitethernet1/0 aging display mac-address aging-time syntax display mac-address aging-time view any view paramete...

  • Page 2479

    2479 description use the display mac-address mac-learning command to display mac address learning status of the specified or all ethernet interfaces. Example # display mac address learning status of all ethernet interfaces. Display mac-address mac-learning mac address learning status of the switch: ...

  • Page 2480

    2480 c hapter 165: mac a ddress t able m anagement c onfiguration c ommands ■ as your mac address entries configuration cannot survive a reboot, save it after completing the configuration. The dynamic mac address table entries however will be lost whether you save the configuration or not. ■ you can...

  • Page 2482

    2482 c hapter 165: mac a ddress t able m anagement c onfiguration c ommands ■ you may need to disable mac address learning sometimes to prevent the mac address table from being saturated, for example, when your device is being attacked by a great deal of packets with different source mac addresses. ...

  • Page 2483

    2483 the default maximum number of mac addresses that can be learned on a port varies with devices. When the upper limit is reached, frames received with unknown destination mac addresses on a port are forwarded by default. The command takes effect on the current port only when executed in interface...

  • Page 2484

    2484 c hapter 165: mac a ddress t able m anagement c onfiguration c ommands.

  • Page 2486

    2486 c hapter 166: p o e c onfiguration c ommands display poe device syntax display poe device view any view parameter none description use the display poe device command to display the mapping between id, module, and slot of the power sourcing equipment (pse). Example # display the mapping between ...

  • Page 2487

    2487 port operating status : on port ieee class : 1 port detection status : delivering-power port power mode : signal port current power : 11592 mw port average power : 11610 mw port peak : 11684 mw port max power : 15400 mw port current : 244 ma port voltage : 51.7 v port pd description : ip phone ...

  • Page 2488

    2488 c hapter 166: p o e c onfiguration c ommands # display the state of all poe interfaces. Display poe interface interface enable priority curpower operating ieee detection (w) status class status ge0/1 enable low 4.4 on 1 delivering-power ge0/2 enable critical 0 on - disabled ge0/3 enable low 0 o...

  • Page 2489

    2489 display poe interface power syntax display poe interface power [ interface-type interface-number ] view any view parameter interface-type interface-number: specifies an interface by its type and number. Description use the display poe interface power command to display the power information of ...

  • Page 2490

    2490 c hapter 166: p o e c onfiguration c ommands # display the power information of all poe interfaces. Display poe interface power interface curpower peakpower maxpower pd description (w) (w) (w) ge2/25 4.4 4.5 4.6 ip phone on room 309 for peter.... Ge2/26 4.4 4.5 15.4 ip phone on room 409 for pet...

  • Page 2491

    2491 display poe pse syntax display poe pse [ pse-id ] view any view parameter pse-id: pse id. You can use the display poe device command to view the mapping between pse id and slot. If you enter a pse id, the information of the pse is displayed. Otherwise, the information of all pses on the device ...

  • Page 2492

    2492 c hapter 166: p o e c onfiguration c ommands pse average power : 20 w pse peak power : 240 w pse max power : 200 w pse remaining guaranteed : 120 w pse cpld version : 100 pse software version : 200 pse hardware version : 100 pse legacy detection : disable pse utilization-threshold : 80 pse pse-...

  • Page 2493

    2493 parameter none description use the display poe-power command to display the information of the poe power. Example # display information of the poe power. Display poe-power poe current power : 1870 w poe average power : 2100 w poe peak power : 2350 w poe max power : 2000 w poe nominal power : 25...

  • Page 2495

    2495 # display all information of the configurations and applications of the poe configuration file whose index number is 1. Display poe-profile index 1 poe-profile index applynum interface configuration aa3456789012345 1 2 ge1/2 poe enable ge1/24 poe priority critical poe max-power 12300 poe mode s...

  • Page 2496

    2496 c hapter 166: p o e c onfiguration c ommands display poe-profile interface syntax display poe-profile interface interface-type interface-number view any view parameter interface-type interface-number: interface type and interface number. Description use the display poe-profile interface command...

  • Page 2497

    2497 view system view parameter ac: specifies the pd disconnection detection mode as ac mode. Dc: specifies the pd disconnection detection mode as dc mode. Description use the poe disconnect command to configure a pd disconnection detection mode. Use the undo poe disconnect command to restore the de...

  • Page 2498

    2498 c hapter 166: p o e c onfiguration c ommands # enable poe through a poe configuration file on a poe interface. System-view [sysname] poe-profile abc [sysname-poe-profile-abc-1] poe enable [sysname-poe-profile-abc-1] quit [sysname] interface ethernet 1/1 [sysname-ethernet1/1]apply poe-profile na...

  • Page 2499

    2499 by default, the pse is disabled from detecting nonstandard pds. Example # enable pse 2 to detect nonstandard pds. System-view [sysname] poe legacy enable pse 2 poe max-power syntax poe max-power max-power undo poe max-power view poe interface view/poe-profile file view parameter max-power: maxi...

  • Page 2500

    2500 c hapter 166: p o e c onfiguration c ommands parameter max-power: maximum power in watts of the pse. The support for the value varies with devices. Pse pse-id: specifies a pse id. The support for this argument varies with devices. Pse-id indicates number of the slot where a poe interface locate...

  • Page 2501

    2501 ■ in the signal mode, lines in category 3 and 5 twisted pair cables used for transmitting data are also used for supplying dc power. ■ in the spare mode, lines in category 3 and 5 twisted pair cables not in use are used for supplying dc power. Example # set the poe mode to signal (power over si...

  • Page 2502

    2502 c hapter 166: p o e c onfiguration c ommands parameter none description use the poe pd-policy priority command to configure a pd power management priority policy. Use the undo poe pd-policy priority command to remove the pd power management priority policy. By default, no pd power management pr...

  • Page 2503

    2503 ■ if two poe interfaces have the same priority level, the poe interface with a smaller id has the higher priority level. The support for the poe interface priority level varies with devices. Example # set the power priority of ethernet 1/0 to critical. System-view [sysname] interface ethernet 1...

  • Page 2504

    2504 c hapter 166: p o e c onfiguration c ommands poe pse-policy priority syntax poe pse-policy priority undo poe pse-policy priority view system view parameter none description use the poe pse-policy priority command to configure a pse power management priority policy. Use the undo poe pse-policy p...

  • Page 2505

    2505 poe utilization-threshold syntax poe utilization-threshold utilization-threshold-value [ pse pse-id ] undo poe utilization-threshold [ pse pse-id ] view system view parameter utilization-threshold-value: power alarm threshold in percentage, in the range 1 to 99. Pse pse-id: specifies a pse id. ...

  • Page 2506

    2506 c hapter 166: p o e c onfiguration c ommands use the undo poe-profile command to delete the specified poe configuration file. If no index is specified, the system will automatically assign an index to the poe configuration file, starting from 1. If a poe configuration file is already applied to...

  • Page 2507: 167

    167 oap m odule c onfiguration c ommands n note: in some regions, the oap modules are sold as “osm” modules. They are identical in function. Oap connect slot syntax oap connect slot slot-number view user view parameter slot-number: number of the slot where an oap module locates. Description use the ...

  • Page 2508

    2508 c hapter 167: oap m odule c onfiguration c ommands oap reboot slot syntax oap reboot slot slot-number view user view parameter slot-number: number of the slot where an oap module locates. Description use the oap reboot slot command to restart an oap module, which equals to resetting the oap mod...

  • Page 2509: 168

    168 acfp c onfiguration c ommands acfp enable syntax acfp enable undo acfp enable view system view parameters none description use the acfp enable command to enable acfp. Use the undo acfp enable command to disable acfp. Acfp is disabled by default. Example # enable acfp. System-view [sysname] acfp ...

  • Page 2510

    2510 c hapter 168: acfp c onfiguration c ommands example # display the information about all the acfp clients. Display acfp client-info acfp client total number: 1 clientid: 4 description: ips hw-info: 1.0 os-info: linux kernel 2.4.20-8 app-info: 2.0 client ip: 10.1.1.1 client mode: mirror display a...

  • Page 2511

    2511 out-interface interface-type interface-number: displays all the policies that use the specified interface as the outbound interface, where interface-type interface-number is the interface type and interface number. Active: displays active policies only. Inactive: displays inactive policies only...

  • Page 2514

    2514 c hapter 168: acfp c onfiguration c ommands note the following: ■ when you use this command to display acfp rule information in order of policy, if you specify neither client id nor policy index, the rule information of all the policies will be displayed. ■ when you use this command to display ...

  • Page 2515

    2515 display acfp server-info syntax display acfp server-info view any view parameters none description use the display acfp server-info command to display acfp server information. Example # display acfp server information. Display acfp server-info server-info: ipserver redirect mirror max life-time...

  • Page 2517: 169

    169 acsei s erver c onfiguration c ommands acsei server enable syntax acsei server enable undo acsei server enable view system view parameters none description use the acsei server enable command to enable acsei server. Use the undo acsei server enable command to disable acsei server. By default, ac...

  • Page 2518

    2518 c hapter 169: acsei s erver c onfiguration c ommands acsei timer clock-sync syntax acsei timer clock-sync minutes undo acsei timer clock-sync view acsei server view parameters minutes: value of the synchronization timer that is used for clock synchronization from acsei server to acsei client. I...

  • Page 2519

    2519 system-view [sysname] acsei server [sysname-acsei-server] acsei timer monitor 6 acsei client close syntax acsei client close client-id view acsei server view parameters client-id: id of the acsei client to be closed, in the range of 1 to 10. (an acsei client id is assigned by the acsei server.)...

  • Page 2520

    2520 c hapter 169: acsei s erver c onfiguration c ommands carrying the acsei client, and the last registration time of the acsei client. Summary information of multiple acsei clients is displayed in order of registration time. If executed without the client-id argument, the command displays summary ...

  • Page 2521

    2521 the client, so that when there’s no acsei client information, the command displays the information keywords only. If executed without the client-id argument, the command displays information about all the acsei clients in order of registration time. Examples # display information about acsei cl...

  • Page 2522

    2522 c hapter 169: acsei s erver c onfiguration c ommands client description acsei client description hardware hardware version of the acsei client system software system software name and version of the acsei client application software application name and version of the acsei client cpu cpu infor...

  • Page 2523: 170

    2523 170 acsei c lient c onfiguration c ommands n ■ multiple kinds of acsei clients have been developed at present. Different acsei clients need different configuration. The following commands are available for the acsei client running on an oap module. ■ the following commands can be executed in an...

  • Page 2524

    2524 c hapter 170: acsei c lient c onfiguration c ommands description use the acsei-client debug enable command to enable debugging for acsei client. By default, debugging for acsei client is disabled. Examples # enable debugging for acsei client. Oap connect slot 6 connected to oap! [root@localhost...

  • Page 2525

    2525 examples # configure not to start up acsei client automatically when the system is started up. Oap connect slot 6 connected to oap! [root@localhost ~]# chkconfig acseid off chkconfig acseid on syntax chkconfig acseid on view any directory of the linux system parameters none description use the ...

  • Page 2526

    2526 c hapter 170: acsei c lient c onfiguration c ommands # execute conditional restart of acsei client (when acsei client is stopped). Oap connect slot 6 connected to oap! [root@localhost ~]# service acseid status acseic-daemon is stopped [root@localhost ~]# service acseid condrestart [root@localho...

  • Page 2527

    2527 stopping acseic-daemon: [ ok ] starting acseic-daemon: [ ok ] # restart a stopped acsei client. Oap connect slot 6 connected to oap! [root@localhost ~]# service acseid status acseic-daemon is stopped [root@localhost ~]# service acseid restart stopping acseic-daemon: [failed] starting acseic-dae...

  • Page 2528

    2528 c hapter 170: acsei c lient c onfiguration c ommands examples # query the running status of an acsei client that is running. Oap connect slot 6 connected to oap! [root@localhost ~]# service acseid status acseic-daemon (pid 2849) is running... # query the running status of an acsei client that i...

  • Page 2530

    2530 c hapter 171: t rack c onfiguration c ommands view system view parameters track-entry-number: track object id, in the range 1 to 1024. Admin-name: name of the administrator creating the nqa operation, a string of 1 to 32 characters, case-insensitive. Operation-tag: nqa operation tag, a string o...

  • Page 2531: 172

    172 ipx c onfiguration c ommands display ipx interface syntax display ipx interface [ interface-type interface-number ] view any view parameter interface-type interface-number: displays the ipx information of an interface. Description use the display ipx interface command to display ipx information ...

  • Page 2532

    2532 c hapter 172: ipx c onfiguration c ommands display ipx routing-table syntax display ipx routing-table [ network ] view any view parameter network: displays active routing information for the network. Description use the display ipx routing-table command to display active ipx routing information...

  • Page 2533

    2533 display ipx routing-table verbose syntax display ipx routing-table [ network ] verbose view any view parameter network: displays detailed routing information for the network, including both active and inactive routes. Description use the display ipx routing-table verbose command to display deta...

  • Page 2535

    2535 display ipx routing-table statistics syntax display ipx routing-table statistics view any view parameter none description use the display ipx routing-table statistics command to display ipx routing statistics. Example # display ipx routing statistics. Display ipx routing-table statistics routin...

  • Page 2537

    2537 parameter none description use the display ipx statistics command to display ipx packet statistics. Example # display ipx packet statistics. Display ipx statistics received: 0 total, 0 packets pitched 0 packets size errors, 0 format errors 0 bad hops(>16), 0 discarded(hops=16) 0 other errors, 0...

  • Page 2538

    2538 c hapter 172: ipx c onfiguration c ommands ipx enable syntax ipx enable [ node node ] undo ipx enable view system view parameter node node: global node address of the router, used by all non-ethernet interfaces. It is in 48-bit length, represented by a triplet of four-digit hexadecimal numbers ...

  • Page 2540

    2540 c hapter 172: ipx c onfiguration c ommands example # enable ethernet 1/0 to forward type 20 broadcast packets. System-view [sysname] interface ethernet 1/0 [sysname-ethernet1/0] ipx netbios-propagation ipx network syntax ipx network network-number undo ipx network view interface view parameter ...

  • Page 2541

    2541 note that rip only redistributes active static routes, rather than inactive routes. Example # enable static route redistribution to rip. System-view [sysname] ipx rip import-route static ipx rip mtu syntax ipx rip mtu bytes undo ipx rip mtu view interface view parameter bytes: maximum rip updat...

  • Page 2542

    2542 c hapter 172: ipx c onfiguration c ommands use the undo ipx rip multiplier command to restore the default. The default is 3 times the update interval. A timer is set for each routing entry to keep track of elapsed time since the route was received. Every time the updating packet containing the ...

  • Page 2543

    2543 parameter dest-network: destination network id of the ipx static route, an 8-digit hexadecimal number, ranging from 0x1 to 0xfffffffe. Network.Node: next hop address of the ipx static route. Network is an 8-digit hexadecimal number in the range 0x1 to 0xfffffffd. The 48-bit node consists of thr...

  • Page 2544

    2544 c hapter 172: ipx c onfiguration c ommands description use the ipx route load-balance-path command to specify the maximum number of equivalent routes to the same destination. Use the undo ipx route load-balance-path command to restore the default. The default is 1. This number is the maximum ac...

  • Page 2545

    2545 view interface view parameter none description use the ipx sap disable command to disable ipx sap on the current interface. Use the undo ipx sap disable command to enable ipx sap on the current interface. By default, the sap is enabled on the interface after ipx is enabled. Example # disable sa...

  • Page 2546

    2546 c hapter 172: ipx c onfiguration c ommands parameter none description use the ipx sap gns-load-balance command to configure the router to respond to gns requests in the round-robin method. Use the undo ipx sap gns-load-balance command to configure the router to respond with the nearest server. ...

  • Page 2547

    2547 undo ipx sap mtu view interface view parameter bytes: maximum sap packet size in bytes, ranging from 480 to 1,500. Description use the ipx sap mtu command to configure the maximum size of sap updating packets. Use the undo ipx sap mtu command to restore the default. By default, the value is 480...

  • Page 2548

    2548 c hapter 172: ipx c onfiguration c ommands ipx sap timer update syntax ipx sap timer update seconds undo ipx sap timer update view system view parameter seconds: sap updating interval, ranging from 10 to 60,000 seconds. Description use the ipx sap timer update command to specify the ipx sap upd...

  • Page 2549

    2549 hop hop-count: number of hops to reach the server, ranging from 1 to 15. Note that hop count more than or equal to 16 implies the service is unreachable. Preference preference: preference of service information, ranging from 1 to 255. The smaller the value, the higher the preference. By default...

  • Page 2550

    2550 c hapter 172: ipx c onfiguration c ommands view interface view parameter ticks: delay in ticks, ranging from 0 to 30,000. One tick is 1/18 second (approximately 55 ms). Description use the ipx tick command to specify a delay for sending ipx packets on the interface. Use the undo ipx tick comman...

  • Page 2551

    2551 parameter network.Node: destination address. The argument network is an eight-bit hexadecimal number ranging from 0x1 to 0xfffffffd. The argument node is a 48-bit value represented by a triplet of four-digit hexadecimal numbers separated by “-”. The 0s in front can be omitted when inputting. -c...

  • Page 2552

    2552 c hapter 172: ipx c onfiguration c ommands description use the reset ipx routing-table statistics protocol command to clear the statistics of a specified ipx route type. Related command: display ipx routing-table statistics. Example # display ipx routing statistics. Display ipx routing-table st...

  • Page 2555

    2555 parameter string: area id, a string of 1 to 31 characters, which consists of digits 0 through 9 and the pound sign #. Description use the area-id command to configure the area id of the voice gw. Use the undo area-id command to remove the specified area id. By default, no area id is configured....

  • Page 2556

    2556 c hapter 173: v o ip c onfiguration c ommands example # set the number of busy tone periods to 3. System-view [sysname] voice-setup [sysname-voice] subscriber-line 1/0 [sysname-voice-line1/0] busytone-t-th 3 cid display syntax cid display undo cid display view analog fxs voice subscriber line v...

  • Page 2557

    2557 ■ if a number is configured in the number template for the pots entity associated with the local fxo interface, the interface substitutes this number for the calling number and sends it to the called side. ■ if wildcard dots (.) are used in the number configured in the number template for the p...

  • Page 2558

    2558 c hapter 173: v o ip c onfiguration c ommands undo cid type view analog fxs voice subscriber line view parameter complex: caller identification information is transmitted in multiple-data message format (mdmf). Simple: caller identification information is transmitted in single-data message form...

  • Page 2559

    2559 generated, the toneless intervals will make both parties in conversation feel uncomfortable. Related command: line and vad-on. Example # disable comfortable noise function on subscriber line 1/0. System-view [sysname] voice-setup [sysname-voice] subscriber-line 1/0 [sysname-voice-line1/0] undo ...

  • Page 2560

    2560 c hapter 173: v o ip c onfiguration c ommands g729r8: g.729 (the voice compression technology using conjugate algebraic-code-excited linear-prediction), requiring a bandwidth of 8 kbps. Description use the compression command to configure the voice compression method and the preference level. U...

  • Page 2561

    2561 table 665 g.711 algorithm (a-law and µ-law) packet assembly interval bytes coded in a time unit packet length (bytes) ip network bandwidth ip packet length (bytes)ip+ ppp network bandwidth ip+ppp coding latency 10 ms 80 120 96 kbps 126 100.8 kbps 10 ms 20 ms 160 200 80 kbps 206 82.4 kbps 20 ms ...

  • Page 2562

    2562 c hapter 173: v o ip c onfiguration c ommands 110 ms 220 260 18.9 kbps 266 19.3 kbps 110 ms g.726 r16 algorithm: media stream bandwidth 16 kbps, minimum packet assembly interval 10 ms. Table 669 g.726 r24 algorithm packet assembly interval bytes coded in a time unit packet length (bytes) ip net...

  • Page 2563

    2563 n ■ packet assembly interval is the duration to encapsulate information into a voice packet. ■ bytes coded in a time unit = packet assembly interval x media stream bandwidth. ■ packet length (ip) = ip header + rtp header + udp header + voice information length = 20+12+8+data ■ packet length (ip...

  • Page 2564

    2564 c hapter 173: v o ip c onfiguration c ommands example # configure to use g723r53 coding/decoding algorithm first, then the g729r8. System-view [sysname] voice-setup [sysname-voice] dial-program [sysname-voice-dial] entity 10 voip [sysname-voice-dial-entity10] compression 1st-level g723r53 [sysn...

  • Page 2565

    2565 in india id indonesia ir iran ie ireland ieu ireland (uk style) il israel it italy jp japan jo jordan ke kenya kr korea republic lb lebanon lu luxembourg mo macau my malaysia mx mexico np nepal nl netherlands nz new zealand ng nigeria no norway pk pakistan pa panama ph philippines pl poland pt ...

  • Page 2566

    2566 c hapter 173: v o ip c onfiguration c ommands description use the cptone country-type command to configure the current device to play the call progress tones of a specified country or region or play the customized call progress tones. Use the undo cptone country-type command to restore the defa...

  • Page 2568

    2568 c hapter 173: v o ip c onfiguration c ommands description use the default entity compression command to globally configure a default codec. Use the undo default entity compression command to remove the configuration. By default, the codec with the first priority is g729r8, that with the second ...

  • Page 2569

    2569 g729: specifies the packetization period for g729 codec. It ranges from10 to 180 milliseconds and defaults to 30 milliseconds. Time-length: packetization period for a codec. Description use the default entity payload-size command to configure the default packetization period for a codec. Use th...

  • Page 2571

    2571 by default, the delay signal duration is 400 milliseconds. Related command: em-signal. Example # set the delay signal duration in the delay start mode to 500 seconds. System-view [sysname] voice-setup [sysname-voice] subscriber-line 1/0 [sysname-voice-line1/0] em-signal delay [sysname-voice-lin...

  • Page 2572

    2572 c hapter 173: v o ip c onfiguration c ommands parameter send-dtmf milliseconds: specifies a delay (in milliseconds) before the originating side sends dtmf signals in the immediate start mode. The value ranges from 50 to 5,000. Description use the delay send-dtmf command to configure a delay bef...

  • Page 2573

    2573 [sysname-voice-line1/0] em-signal wink [sysname-voice-line1/0] delay send-wink 700 delay wink-hold syntax delay wink-hold milliseconds undo delay wink-hold view e&m voice subscriber line view parameter wink-hold milliseconds: specifies duration (in milliseconds) the terminating side sends wink ...

  • Page 2574

    2574 c hapter 173: v o ip c onfiguration c ommands use the undo delay wink-rising command to restore the default. By default, the maximum amount of time the originating side waits for a wink signal after sending a seizure signal is 3,000 milliseconds in the wink start mode. Related command: em-signa...

  • Page 2575

    2575 use the undo description command to delete the voice entity description string. By default, no description is configured for the voice entity. You can use the description command to add a description to a voice entity, which has no effect on the performance of the voice entity interface. You ca...

  • Page 2578

    2578 c hapter 173: v o ip c onfiguration c ommands calleraddr : calleraddrsubst : callinfotabindex : 0 call leg number : 2 ...Active service : 0 incoming callleg number : 1 incoming leg[0] { spl protocol : lgs localref : 0x0002 ifindex : 2884067 ipaddress : 0.0.0.0 ipport : 0 legstate : in_state_act...

  • Page 2579

    2579 display voice default all syntax display voice default all view any view parameter none description use the display voice default all command to view the current default values and the system-fixed default values for voice and fax. For example, truncated called number is used according to the d...

  • Page 2580

    2580 c hapter 173: v o ip c onfiguration c ommands example # display the current default values and the system-default values. Display voice default all default entity fax ecm off(system: off) default entity fax protocol t38(system: t38) default entity fax protocol t38 hb-redundancy 0(system: 0) def...

  • Page 2582

    2582 c hapter 173: v o ip c onfiguration c ommands cmc: displays statistics about cmc. H225: displays statistics about h.225 messages. H245: displays statistics about h.245 messages. Ras: displays statistics about ras messages. Socket: displays statistics about socket messages. Timer: displays timeo...

  • Page 2584

    2584 c hapter 173: v o ip c onfiguration c ommands description use the display voice iva statistic command to view the call statistics between iva module and other modules. The command can display information such as the total number of call message, number of successful call message, number of fail...

  • Page 2585

    2585 display voice subscriber-line 5/0 current information ----- subscriber-line5/0 type = analog e&m immediate-start status = up call status = busytone ...Description = subscriber-line5/0 interface private line = none cng = enable echo canceller = enable echo canceller tail-length = 32 nlp on = ena...

  • Page 2586

    2586 c hapter 173: v o ip c onfiguration c ommands table 681 description on fields of the display voice subscriber-line command field description type type of voice subscriber line status status of voice subscriber line call status call status of voice subscriber line description description of voic...

  • Page 2587

    2587 dscp media syntax dscp media dscp-value undo dscp media view pots/voip entity view parameter dscp-value: dscp value in the range of 0 to 63 or the keyword af11, af12, af13, af21, af22, af23, af31, af32, af33, af41, af42, af43, cs1, cs2, cs3, cs4, cs5, cs6, cs7, and ef. Description use the dscp ...

  • Page 2589

    2589 use the undo dtmf time command to restore the default. By default, the persisting time of sending dtmf and the interval for sending dtmf are both 120 milliseconds. Note that the configuration will apply to the whole interface once you carry out the command. Example # set the persisting time of ...

  • Page 2590

    2590 c hapter 173: v o ip c onfiguration c ommands 1 the upper limit of the maximum value of rowmax or colmax, whichever is larger. This limit is used for detecting the inter-digit delay. A detected digit is regarded ended only when max (rowmax, colmax) 1. 1 to 4,999, with a default of 458 the small...

  • Page 2591

    2591 description use the dtmf threshold command to configure the sensitivity of dtmf digit detection. Use the undo dtmf threshold command to restore the default. The dtmf threshold command issues the thresholds for dtmf dial tone detection to the underlying layer dsp for the purpose of tuning detect...

  • Page 2592

    2592 c hapter 173: v o ip c onfiguration c ommands tail-length milliseconds: echo duration in milliseconds, that is, the time that elapses from when a subscriber speaks to when he hears the echo. It ranges from 0 to 64, with a default of 32. Description use the echo-canceller command to enable echo ...

  • Page 2593

    2593 use the undo echo-canceller command to restore the default. By default, the convergence rate of comfort noise amplitude is 0, the maximum amplitude of comfort noise is 256, the comfort noise mixture proportion control factor is 100, and the threshold of two-way talk is 1. Related command: echo-...

  • Page 2594

    2594 c hapter 173: v o ip c onfiguration c ommands view e&m voice subscriber line view parameter delay: when using the delay start mode, the calling end occupies the trunk line, and the called end, such as pbx, will also enter the hook-off state to respond the caller till it is ready for receiving t...

  • Page 2595

    2595 use the undo entity command to remove the existing voice entity. In a global view, use the entity command to enter a voice entity view, and use quit to return to the dial program view. N the entity-number assigned to a voip or pots entity must be unique among all voip and pots entities. Related...

  • Page 2597

    2597 use the undo hookoff-mode command to remove the binding. By default, no fxs voice subscriber line is bound to the fxo voice subscriber line. After an fxs voice subscriber line is bound to the fxo voice subscriber line, the off-hook/on-hook state of these two lines will be consistent. N ■ to kee...

  • Page 2599

    2599 line syntax line line-number undo line view pots entity view parameter line-number: number of a subscriber line. Description use the line command to associate the voice entity with a specified voice subscriber line. Use the undo line command to remove this association. By default, there is no a...

  • Page 2600

    2600 c hapter 173: v o ip c onfiguration c ommands n ■ the character or characters in front of “!”, “%”, and “+” are not to be matched accurately. They are handled similar to the wildcard “.”. Moreover, these symbols cannot be used alone. There must be a valid digit or digits in front of them. ■ if ...

  • Page 2601

    2601 are used to match the actual numbers in the received call packets to complete the calls. When configuring a pots entity, use the match-template command to define the number template to be bound to the local voice entity. When configuring a voip entity, use the match-template command to define t...

  • Page 2603

    2603 g726r16: packetization period in milliseconds for g726r16 codec, an integral multiple of 10 in the range of 10 to 110, with a default of 30. G726r24: packetization period in milliseconds for g726r24 codec, an integral multiple of 10 in the range of 10 to 70, with a default of 30. G726r32: packe...

  • Page 2604

    2604 c hapter 173: v o ip c onfiguration c ommands specific: uses the specific algorithm provided by the voice gateway. Description use the plc-mode command to configure a packet loss compensation mode for the analog fxs/fxo voice subscriber line. Use the undo plc-mode command to restore the default...

  • Page 2605

    2605 register-number syntax register-number undo register-number view pots entity view parameter none description use the register-number command to enable the voip gateway to register numbers of a voice entity with an h.323 gatekeeper or sip server. Use the undo register-number command to disable a...

  • Page 2606

    2606 c hapter 173: v o ip c onfiguration c ommands related command: display voice iva statistic. Example # clear calling statistics on cmc module. Reset voice cmc statistic reset voice ipp statistic syntax reset voice ipp statistic view user view parameter none description use the reset voice ipp st...

  • Page 2607

    2607 parameter value: value of the payload type field in rtp packets, in the range of 96 to 127. Description use the rtp payload-type nte command to configure the payload type field in rtp packets in the case of dtmf relay using nte. Use the undo rtp payload-type nte command to restore the default. ...

  • Page 2608

    2608 c hapter 173: v o ip c onfiguration c ommands send-ring syntax send-ring undo send-ring view voice entity view parameter none description use the send-ring command to enable the local end to play ringback tone. Use the undo send-ring command to disable the local end to play ringback tone. By de...

  • Page 2609

    2609 example # change the status of voice entity 4 to down. System-view [sysname] voice-setup [sysname-voice] dial-program [sysname-voice-dial] entity 4 pots [sysname-voice-dial-entity4] shutdown shutdown (voice subscriber line view) syntax shutdown undo shutdown view fxs/fxo/e&m voice subscriber li...

  • Page 2610

    2610 c hapter 173: v o ip c onfiguration c ommands threshold ranges from 0 to 200. Normally, the signal amplitude on the links without traffic is in the range of 2 to 5. Time-length: silence duration for automatic on-hook. Upon expiration of this duration, the system goes on-hook automatically. It r...

  • Page 2611

    2611 view voice view parameter line-number: voice subscriber line number. Description use the subscriber-line command to enter analog fxs, fxo, and e&m, or digital e1/t1 voice subscriber line view. Use the subscriber-line line-number command to enter the voice subscriber line view. For example, if l...

  • Page 2612

    2612 c hapter 173: v o ip c onfiguration c ommands timer first-dial syntax timer first-dial seconds undo timer first-dial view fxs/fxo voice subscriber line view parameter seconds: maximum interval in seconds between off-hook and dialing the first digit, in the range of 1 to 300. Description use the...

  • Page 2613

    2613 off-hook, the bound fxo voice subscriber line goes off-hook, too. When the fxs voice subscriber line in the off-hook state needs to connect the fxo voice subscriber line to originate a call over pstn, the fxo voice subscriber line must first perform an on-hook operation, and then perform an off...

  • Page 2614

    2614 c hapter 173: v o ip c onfiguration c ommands view e&m voice subscriber line view parameter seconds: maximum duration in seconds the system waits for a digit, in the range of 3 to 600. Infinity: infinite time. Description use the timer wait-digit command to configure the maximum time duration t...

  • Page 2615

    2615 system-view [sysname] voice-setup [sysname-voice] subscriber-line 1/0 [sysname-voice-line1/0] transmit gain -6.7 tunnel-on syntax tunnel-on undo tunnel-on view voip entity view parameter none description use the tunnel-on command to enable tunnel function. Use the undo tunnel-on command to disa...

  • Page 2616

    2616 c hapter 173: v o ip c onfiguration c ommands undo type view analog e&m voice subscriber line view parameter 1, 2, 3 and 5: correspond respectively to the four signal types of analog e&m subscriber lines, i.E. Type 1, 2, 3 and 5. Description use the type command to configure the analog e&m subs...

  • Page 2618

    2618 c hapter 173: v o ip c onfiguration c ommands when detecting a busy tone on the fxo interface, the system will automatically calculate the parameters related to busy tone detection. You can use the display current-configuration command to displays the settings of these parameters. C caution: af...

  • Page 2619

    2619 freq1 and freq2: two frequencies in hz. The frequency range is related to the combination mode. In the case of frequency superimposition or alternation, the two frequencies fall in the range of 300 hz to 3,400 hz. In the case of frequency modulation, the two frequencies fall in the range of 300...

  • Page 2620

    2620 c hapter 173: v o ip c onfiguration c ommands related command: display version on page 2417, and display device on page 2251. C caution: you can use this command to reset only the analog voice cards of sic and mim. To reset digital voice card and fic analog voice card, carry out the reboot slot...

  • Page 2622

    2622 c hapter 173: v o ip c onfiguration c ommands description use the voip timer command to set the duration for switching from a voip entity to a backup pots entity after a voip call failure. Use the undo voip timer command to restore the default. By default, the duration for switching from a voip...

  • Page 2623

    2623 description use the vqa dscp command to globally set the dscp subfield in the tos field in ip packets that carry the rtp stream or voice signaling. Use the undo dscp media command to restore the default. By default, the dscp subfield is set to ef, namely, 101110. N the function of this command ...

  • Page 2624

    2624 c hapter 173: v o ip c onfiguration c ommands example # set the duration of monitoring dsp buffered data to 270 milliseconds. System-view [sysname] voice-setup [sysname-voice] vqa dsp-monitor buffer-time 270

  • Page 2626

    2626 c hapter 174: d ial p lan c onfiguration c ommands n the sub-expression (one digit or digit string) before signs such as !, %, and + is used for imprecise match. The processing of these signs is similar to that of the wildcard “.”. These signs must follow a valid digit or digit string and canno...

  • Page 2627

    2627 view pots entity view parameter string: prefix code, a character string consisting of up to 31 characters that can include 0 through 9, #, and *. Table 686 describes these characters: description use the dial-prefix command to configure a dial prefix for a voice entity. Use the undo dial-prefix...

  • Page 2628

    2628 c hapter 174: d ial p lan c onfiguration c ommands related command: number-substitute. Example # display the configuration information of all number substitution rule lists. Display voice number-substitute current configuration of number-substitute # ************ number-substitute ************ ...

  • Page 2629

    2629 example # set the dot match rule of number substitution rule list 20 to right-left. System-view [sysname] voice-setup [sysname-voice] dial-program [sysname-voice-dial] number-substitute 20 [sysname-voice-dial-substitute20] dot-match right-left first-rule syntax first-rule rule-number undo first...

  • Page 2630

    2630 c hapter 174: d ial p lan c onfiguration c ommands max-number: maximum number of call connections in a maximum-call-connection set, in the range of 1 to 120. All: specifies all the maximum-call-connection sets. Description use the max-call command to configure maximum-call-connection sets. Use ...

  • Page 2631

    2631 while the latter is used to configure a serial number for a maximum-call-connection set and the maximum number of call connections. Related command: max-call (in voice dial program view). Example # bind voice entity 10 to maximum-call-connection set 1. System-view [sysname] voice-setup [sysname...

  • Page 2632

    2632 c hapter 174: d ial p lan c onfiguration c ommands number-priority syntax number-priority peer enable undo number-priority peer view voice dial program view parameters none description use the number-priority peer enable command to match a number against a voice entity match template first. Use...

  • Page 2633

    2633 system-view [sysname] voice-setup [sysname-voice] dial-program [sysname-voice-dial] number-substitute 1 [sysname-voice-dial-substitute1] priority syntax priority priority-order undo priority view voice entity view parameter priority-order: priority of a voice entity, in the range of 0 to 10. Th...

  • Page 2634

    2634 c hapter 174: d ial p lan c onfiguration c ommands description use the private-line command to configure the private line auto ring-down (plar) function. Use the undo private-line command to disable the private line auto ring-down function. This function is disabled by default. This command is ...

  • Page 2635

    2635 output-number: output string of a number involved in number substitution, consisting of characters such as 0 to 9, #, *, and ., up to 31 characters. The characters are described in table 687. The sub-expression (one digit or digit string) before !, %, or + is not exactly-matched digit(s) and is...

  • Page 2636

    2636 c hapter 174: d ial p lan c onfiguration c ommands ■ for the left-right dot match rule, digits which the dots in the output-number argument correspond to are extracted from left to right according to the number of dots in the output-number argument to replace the dots in the output-number argum...

  • Page 2637

    2637 output-numbering-plan: numbering plan for an output number involved in number substitution. For the values, see table 691. Description use the rule command to configure a number substitution rule. Use the undo rule command to remove a specified number substitution rule or all number substitutio...

  • Page 2638

    2638 c hapter 174: d ial p lan c onfiguration c ommands # configure number substitution rule 2 for number substitution rule list 1 as follows: ■ input number: 92 ■ output number: 2 [sysname-voice-dial-substitute1] rule 2 ^92 2 # configure number substitution rule 3 for number substitution rule list ...

  • Page 2639

    2639 description use the select-rule rule-order command to configure rules in the match order for voice entity selection. Use the undo select-rule rule-order command to restore a rule in the match order for voice entity selection to the default. By default, the match order for voice entity selection...

  • Page 2640

    2640 c hapter 174: d ial p lan c onfiguration c ommands view voice dial program view parameter max-number: maximum number of voice entities found, in the range 1 to 128. Description use the select-rule search-stop command to configure the maximum number of voice entities found. Use the undo select-r...

  • Page 2641

    2641 description use the select-rule type-first command to configure a rule for voice entity type selection priority. Use the undo select-rule type-first command to remove a rule for voice entity type selection priority. By default, voice entities are not selected according to their types. The comma...

  • Page 2645

    2645 # apply number substitution rule lists 5, 6, and 8 to called numbers of outgoing calls. System-view [sysname] voice-setup [sysname-voice] dial-program [sysname-voice-dial] substitute outgoing-call called 5 [sysname-voice-dial] substitute outgoing-call called 6 [sysname-voice-dial] substitute ou...

  • Page 2646

    2646 c hapter 174: d ial p lan c onfiguration c ommands.

  • Page 2648

    2648 c hapter 175: e1 and t1 c onfiguration c ommands ani-offset syntax ani-offset number undo ani-offset view r2 cas view parameter number: number of digits to be collected, in the range of 1 to10. Description use the ani-offset command to configure the number of called number digits that need to b...

  • Page 2649

    2649 by default, the originating party requires the terminating party to send answer signal. This command applies to r2 signaling only. The r2 line signaling coding schemes in some countries do not include answer signal sending. To accommodate to such schemes, you must configure the answer enable co...

  • Page 2650

    2650 c hapter 175: e1 and t1 c onfiguration c ommands view e1/t1 interface view parameter ts-set-number: number of a created timeslot (ts) group, in the range of 0 to 30. The number of a t1 timeslot group ranges from 0 to 23. Description use the cas command to enter r2 cas view, digital e&m signalin...

  • Page 2651

    2651 during r2 line signaling exchange, trunk circuit reset is sometimes controlled by the called party (terminating point). The practice in some countries in this case is that after the terminating point receives a clear-forward signal from the originating point, it sends back a clear-back signal a...

  • Page 2652

    2652 c hapter 175: e1 and t1 c onfiguration c ommands ts 8 = idle ts 9 = idle ts 10 = idle ts 11 = idle ts 12 = idle ts 13 = idle ts 14 = idle ts 15 = idle ts 17 = idle ts 18 = idle description = subscriber-line5/0:0 interface private line = none cng = enable echo canceller = enable echo canceller t...

  • Page 2654

    2654 c hapter 175: e1 and t1 c onfiguration c ommands related command: seizure-ack enable and answer enable. Example # set the abcd bit pattern for received r2 idle signal to 1101, and to 1011 for transmitted r2 idle signal. System-view [sysname] controller e1 1/0 [sysname-e1 1/0] timeslot-set 0 tim...

  • Page 2655

    2655 value: 0 or 1. 0 indicates that dtmf detection is sensitive while “1” indicates that dtmf detection is insensitive. Description use the dtmf threshold digital command to set the dtmf detection sensitivity. Use the undo dtmf threshold digital command to restore the default dtmf detection sensiti...

  • Page 2656

    2656 c hapter 175: e1 and t1 c onfiguration c ommands system-view [sysname] controller e1 1/0 [sysname-e1 1/0] timeslot-set 0 timeslot-list 1-31 signal r2 [sysname-e1 1/0] cas 0 [sysname-cas1/0:0] final-callednum enable force-metering enable syntax force-metering enable undo force-metering enable vi...

  • Page 2657

    2657 description use the group-b enable command to enable r2 signaling to use group b signals to complete registers exchange. Use the undo group-b enable command to disable r2 signaling from using group b signals to complete registers exchange. By default, group b signals are used to complete regist...

  • Page 2658

    2658 c hapter 175: e1 and t1 c onfiguration c ommands after configuring a target match template with the match-template command for a voice entity, you need to associate the entity with a logical interface to indicate from which interface the traffic destined for the target should be routed. Related...

  • Page 2659

    2659 use the undo mode command to restore the default. By default, itu-t r2 signaling applies. This command applies to r2 signaling only. The r2 signaling standards implemented in different countries and regions may vary. They are called itu variants. To accommodate to the r2 signaling in a country ...

  • Page 2660

    2660 c hapter 175: e1 and t1 c onfiguration c ommands companding laws are adopted to quantize signals unevenly for the purpose of reducing noise and improving signal-to-noise ratio. Underpinning this approach are the statistics about voice signals, which indicate that lower power signals are more li...

  • Page 2661

    2661 when creating a pri set on a t1 interface, note the following: ■ ts24 is used as d channel for signaling transmission, and other timeslots as b channels for data transmission. You may randomly bind these timeslots into a pri set (as the d channel, ts24 is automatically bound). This pri set is l...

  • Page 2663

    2663 req-callingcategory value: specifies the send calling category signal value, in the range 1 to 16. Req-currentcallednum-in-groupc value: specifies the send current called number signal in group c state, in the range 1 to 16. Req-currentdigit value: specifies the send current digit signal, in th...

  • Page 2664

    2664 c hapter 175: e1 and t1 c onfiguration c ommands you may set a signal value to 16 to indicate that the signal function does not exist. For example, if the send last digit signal is not available in a national r2 signaling variant, you may set the value for req-lastfirstdigit to 16. The purpose ...

  • Page 2665

    2665 you may use this command to adapt values of bits c and d to different line signaling coding schemes. The settings of bits a and b in this command however are not necessarily the real ones during transmission. Related command: cas and reverse. Example # set bits c and d of r2 line signaling to 1...

  • Page 2666

    2666 c hapter 175: e1 and t1 c onfiguration c ommands undo seizure-ack enable view r2 cas view parameter none description use the seizure-ack enable command to configure the originating point to require the terminating point to send seizure acknowledgement signal during r2 line signaling exchange. U...

  • Page 2667

    2667 min: selects the timeslot with the smallest number from currently available timeslots. Minpoll: selects the timeslot with the lowest number from available timeslots in the first timeslot polling; in later pollings, selects in ascending order timeslots with numbers greater than the one picked ou...

  • Page 2669

    2669 undo special-character character number view r2 cas view parameter character: special character, which can be a pound sign (#) or asterisk (*), a, b, c, or d. Number: code of register signal, in the range 11 to 16. Description use the special-character command to configure the special character...

  • Page 2670

    2670 c hapter 175: e1 and t1 c onfiguration c ommands 23: indicates the subscriber line is created for the isdn pri set created on a t1 interface. Description use the subscriber line command to enter e1/t1 voice subscriber line view. Upon creation of a ts group on an e1/t1 interface, the system auto...

  • Page 2671

    2671 use undo tdm-clock command to restore the default. By default, the tdm clock source for an e1 or t1 interface is the internal clock. When digital voice e1/t1 interfaces perform tdm timeslot interchange, it is important for them to achieve clock synchronization to prevent frame slips and bit err...

  • Page 2672

    2672 c hapter 175: e1 and t1 c onfiguration c ommands timeout time of answer signals for internal function call in a module is configured at the terminating point. Clear-back time: timeout time in milliseconds of r2 clear-back signal, in the range of 100 to 60,000 with a default of .10,000. After th...

  • Page 2673

    2673 parameter time: delay before sending a dtmf signal in milliseconds, in the range of 50 to 10,000. Description use the timer dtmf command to configure the delay from when the originating point receives a seizure acknowledgement signal to when it starts sending dtmf signals. Use the undo timer dt...

  • Page 2674

    2674 c hapter 175: e1 and t1 c onfiguration c ommands this command applies to r2 signaling only. When the terminating point sends a backward register pulse signal, a-3 for example, the signal must persist for a specified time period. When the originating point receives the signal, it sends back a gr...

  • Page 2676

    2676 c hapter 175: e1 and t1 c onfiguration c ommands timeslots-list: timeslot range. Timeslots are numbered 1 through 31 for an e1 interface and 1 through 24 for a t1 interface. Ts 16 for an e1 interface (or ts24 for a t1 interface) is used to transmit control signaling. Signal: specifies a signali...

  • Page 2677

    2677 parameter timeslots-list: timeslot range. Timeslots are numbered 1 through 31 on an e1 interface and 1 through 24 on a t1 interface. You may specify a single timeslot by specifying a number, a range of timeslots by specifying a range in the form of number1-number2, or several discrete timeslots...

  • Page 2678

    2678 c hapter 175: e1 and t1 c onfiguration c ommands query: queries status of the trunk circuit of specified timeslots to see whether the circuit is busy, open, or blocked in real time. Reset: resets the trunk circuit of specified timeslots when it cannot automatically reset. You may need to do thi...

  • Page 2680

    2680 c hapter 176: f ax over ip c onfiguration c ommands local-train threshold threshold: specifies the threshold percentage of fax local training (in the range of 0 to 100). The default value is 10. Nsf-on: enables nsf message transmission. It is disabled by default. Protocol: specifies the transpo...

  • Page 2681

    2681 parameter none description use the display voice fax statistics command to view the foip statistics. Example # display the foip statistics. Display voice fax statistics statistics about fax session: { total : 0 fax_vofr_standard_switch: 0 fax_vofr_frf11_trunk : 0 fax_vofr_frf11_switch : 0 fax_v...

  • Page 2682

    2682 c hapter 176: f ax over ip c onfiguration c ommands ecm : 0 non-ecm: 0 } statistics about release reason: { wait_dp_beg_demodulate_timeout : 0 wait_dp_beg_modulate_timeout : 0 wait_dp_end_demodulate_timeout : 0 wait_dp_end_modulate_timeout : 0 wait_frameack_timeout : 0 wait_t30msg_pstn_timeout ...

  • Page 2684

    2684 c hapter 176: f ax over ip c onfiguration c ommands use the undo fax baudrate command to restore the default maximum fax baud rate. Note that if the baud rate is set to a value other than “disable” and “voice”, the rate is negotiated first in accordance with the corresponding fax protocol. Here...

  • Page 2685

    2685 fax level syntax fax level level undo fax level view pots/voip/vofr entity view parameter level: level of the energy transmitted by a gateway carrier in dbm, in the range of -60 to -3. The greater the value is, the higher the energy is. The smaller the value is, the higher the attenuation is. D...

  • Page 2686

    2686 c hapter 176: f ax over ip c onfiguration c ommands performed between two facsimile terminals and is transparent to the gateways. Therefore, for the point-to-point training, the gateway does not participate in rate training and the threshold is invalid. N when the local training mode is adopted...

  • Page 2688

    2688 c hapter 176: f ax over ip c onfiguration c ommands ■ increasing the number of redundant packets will improve reliability of network transmission and reduce packet loss ratio. A great amount of redundant packets, however, can increase bandwidth consumption to a great extent and thereby, in the ...

  • Page 2689

    2689 reset voice fax statistics syntax reset voice fax statistics view user view parameter none description use the reset voice fax statistics command to clear foip statistics. Example # clear foip statistics. Reset voice fax statistics voip h323-conf tcs-t38 syntax voip h323-conf tcs-t38 undo voip ...

  • Page 2690

    2690 c hapter 176: f ax over ip c onfiguration c ommands example # disable the voice gateway in h.323 slow-start mode from containing t.38 capability description in its capability set. System-view [sysname] voice-setup [sysname-voice] undo voip h323-conf tcs-t38.

  • Page 2691: 177

    177 h.323 c onfiguration c ommands area-id syntax area-id string undo area-id [string ] view gatekeeper client view parameter string: area id, a digit string that is 1 to 31 characters in length. The pound signs (#) can be used as delimiters in the string. Description use the area-id command to assi...

  • Page 2692

    2692 c hapter 177: h.323 c onfiguration c ommands parameter none description use the display voice gateway command to display the registration state information of the voice gateway, such as the registration state, gateway alias, and local telephone number list of the gateway. Example # display the ...

  • Page 2693

    2693 description use the gk-client command to enter gatekeeper client view to configure voice and gatekeeper parameters. Use the quit command to exit this view. Related command: area-id, gk-2nd-id, gk-id, gw-address, gw-id, and ras-on. Example # enter gatekeeper client view. System-view [sysname] vo...

  • Page 2694

    2694 c hapter 177: h.323 c onfiguration c ommands [sysname-voice-gk] gk-id gk-center gk-addr 1.1.1.1 [sysname-voice-gk] gk-2nd-id gk-backup gk-addr 1.1.1.2 gk-id syntax gk-id gk-name gk-addr gk-ipaddress [ ras-port ] undo gk-id view gatekeeper client view parameter gk-name: gatekeeper name, a string...

  • Page 2695

    2695 use the undo gk-security call enable command to disable security calling on the voice gateway. By default, security calling is enabled. C caution: disable security calling for the voice gateway if the called gatekeeper cannot handle call tokens. Example # disable security calling for the voice ...

  • Page 2696

    2696 c hapter 177: h.323 c onfiguration c ommands undo gw-address view gatekeeper client view parameter ip-address: source ip address to be bound to the voice gateway. Description use the gw-address command to bind a source ip address with the voice gateway. Use the undo gw-address command to remove...

  • Page 2697

    2697 related command: area-id, gk-2nd-id, gk-id, gw-address, and ras-on. Example # assign the alias citya-gw to the gateway. System-view [sysname] voice-setup [sysname-voice] gk-client [sysname-voice-gk] gw-id citya-gw ras-on syntax ras-on undo ras-on view gatekeeper client view parameter none descr...

  • Page 2698

    2698 c hapter 177: h.323 c onfiguration c ommands view voice view parameter descriptor: h.323 descriptor, comprising 1 to 64 characters. Description use the voip h323-descriptor command to configure an h.323 descriptor for the voice gateway. Use the undo voip h323-descriptor command to restore the d...

  • Page 2699: 178

    178 sip c onfiguration c ommands display voice sip call-statistics syntax display voice sip call-statistics view any view parameter none description use the display voice sip call-statistics command to display the statistics about all sip calls. Example # display the statistics about all sip calls. ...

  • Page 2700

    2700 c hapter 178: sip c onfiguration c ommands transaction locate failures: 0 user not registered: 0 user not available: 0 request with missing headers: 0 response-no to tag in response: 0 response - invalid via: 0 messages without headers rcvd: 0 sdp decode failures: 0 registration timeouts: 0 ret...

  • Page 2701

    2701 display voice sip register-state syntax display voice sip register-state view any view parameter none description use the display voice sip register-state command to display status information of all user numbers to be registered on the sip ua. Example # display all registration status informat...

  • Page 2702

    2702 c hapter 178: sip c onfiguration c ommands view pots/voip entity view parameter none description use the outband sip command to configure the sip out-of-band transmission. Use the undo outband sip command to restore the default dtmf transmission mode. By default, the inband dtmf transmission mo...

  • Page 2704

    2704 c hapter 178: sip c onfiguration c ommands by default, no registrar information is configured on the sip ua. You can use this command only when the sip registration function is disabled. Example # configure the ip address 169.54.5.10, the port number 1120, and the aging time 120 seconds for the...

  • Page 2706

    2706 c hapter 178: sip c onfiguration c ommands [sysname-voice] sip [sysname-voice-sip] sip-comp agent company 1.0 sip-comp server syntax sip-comp server product-name product-version undo sip-comp server view sip client view parameters server product-name product-version: indicates the content of th...

  • Page 2707

    2707 by default, ip address is used. Example # set the domain name of the sip device to hello.Com. System-view [sysname] voice-setup [sysname-voice] sip [sysname-voice-sip] sip-domain hello.Com source-ip syntax source-ip ip-address undo source-ip view sip client view parameter ip-address: ipv4 addre...

  • Page 2708

    2708 c hapter 178: sip c onfiguration c ommands cipher: displays the password of the current user in cipher text. Simple: displays the password of the current user in plain text. Password: password used for authentication, a case-sensitive string of 1 to 16 characters or 24 characters. When you spec...

  • Page 2709

    2709 wildcard-register enable syntax wildcard-register enable undo wildcard-register view sip client view parameter none description use the wildcard-register enable command to enable fuzzy (wildcard) telephone number registration. Use the undo wildcard-register command to disable fuzzy (wildcard) t...

  • Page 2710

    2710 c hapter 178: sip c onfiguration c ommands.

  • Page 2713

    2713 view interface dlci view parameter max-poll: selects circuit ids cyclically in descending order min-poll: selects circuit ids cyclically in ascending order description use the cid select-mode command to configure the cid selection mode which the originating side of a vofr call adopts. Use the u...

  • Page 2714

    2714 c hapter 179: v o fr c onfiguration c ommands entity vofr syntax entity entity-number vofr undo entity entity-number vofr view voice dial program view parameter entity-number: entity number, in the range of 1 to 2147483647. Vofr: vofr entity description use the entity command to enter vofr enti...

  • Page 2715

    2715 by default, the inband dtmf transmission mode is adopted. Example # configure the out-of-band dtmf transmission mode for vofr entity 10. System-view [sysname] voice-setup [sysname-voice] dial-program [sysname-voice-dial] entity 10 vofr [sysname-voice-dial-entity10] outband vofr seq-number synta...

  • Page 2716

    2716 c hapter 179: v o fr c onfiguration c ommands timestamp syntax timestamp undo timestamp view vofr entity view parameter none description use the timestamp command to configure vofr packets sent by the local voice gateway to carry a timestamp. Use the undo timestamp command to restore the defaul...

  • Page 2717

    2717 [sysname-voice-dial] entity 2222 vofr [sysname-voice-dial-entity2222] call-mode static [sysname-voice-dial-entity2222] trunk-id 3333 voice bandwidth syntax voice bandwidth reserved-bps [ reserved ] undo voice bandwidth view frame relay class view parameter reserved-bps: reserved voice bandwidth...

  • Page 2718

    2718 c hapter 179: v o fr c onfiguration c ommands sub-channel status. If the keepalive keyword is configured, network congestion is considered occurring when one end fails to receive any keepalive message within a period of time. In this case, the active call control sub-channel will be deactivated...

  • Page 2719

    2719 vofr frf11-timer syntax vofr frf11-timer time undo vofr frf11-timer view voice view parameter time: trunk wait timer length in the frf.11 trunk mode in seconds, in the range of 10 to 600. Description use the vofr frf11-timer command to configure the trunk wait timer length in the frf.11 trunk m...

  • Page 2720

    2720 c hapter 179: v o fr c onfiguration c ommands.

  • Page 2721: 180

    180 v oice radius c onfiguration c ommands aaa-client syntax aaa-client view voice view parameter none description use the aaa-client command to enter voice aaa client view. Example # enter voice aaa client view. System-view [sysname] voice-setup [sysname-voice] aaa-client [sysname-voice-aaa] accoun...

  • Page 2722

    2722 c hapter 180: v oice radius c onfiguration c ommands with the radius accounting function enabled, the radius server will perform accounting for all users who use this access number. With the function disabled, the radius server will not perform accounting for users who dial the access number. R...

  • Page 2724

    2724 c hapter 180: v oice radius c onfiguration c ommands authentication syntax authentication undo authentication view access number view parameter none description use the authentication command to enable the radius authentication function for users who dial some access number. Use the undo authen...

  • Page 2725

    2725 view voice aaa client view parameter none description use the authentication-did command to enable the authentication function for all one-stage dialing users. Use the undo authentication-did command to disable the authentication function. By default, the authentication function is disabled for...

  • Page 2726

    2726 c hapter 180: v oice radius c onfiguration c ommands with this function enabled, called numbers will be sent to the radius server for authorization after users who dial some access number to make ip calls pass authentication. You must enable the authentication function (by using the authenticat...

  • Page 2727

    2727 example # enable the authorization function for one-stage dialing users. System-view [sysname] voice-setup [sysname-voice] aaa-client [sysname-voice-aaa] authentication-did [sysname-voice-aaa] authorization-did # disable the authorization function for one-stage dialing users. [sysname-voice-aaa...

  • Page 2728

    2728 c hapter 180: v oice radius c onfiguration c ommands # restore the default method of collecting digits of called numbers for the access number 17909. [sysname-voice-dial-anum17909] undo callednumber receive-method card-digit syntax card-digit card-digit undo card-digit view access number view p...

  • Page 2730

    2730 c hapter 180: v oice radius c onfiguration c ommands display voice access-number syntax display voice access-number view any view parameter none description use the display voice access-number command to display the configuration information and access numbers in voice aaa client view. The info...

  • Page 2731

    2731 table 701 description on fields of the display voice access-number command field description accounting-method accounting method, including start-ack, start-no-ack, and stop-only. See “acct-method” on page 2723. Accounting-did accounting function for one-stage dialing users ■ on: enabled ■ off:...

  • Page 2733

    2733 the system finds call records by the search condition. If the voice gateway fails to find a call record or the found record is null, the voice gateway will give prompt information. Related command: cdr. Example # display call records by calling number. Display voice call-history-record callingn...

  • Page 2734

    2734 c hapter 180: v oice radius c onfiguration c ommands display voice radius statistic syntax display voice radius statistic view any view parameter none description use the display voice radius statistic command to display statistics of messages exchanged between the voice radius module, call man...

  • Page 2735

    2735 related command: reset voice radius statistic. Example # display statistics of messages exchanged between the voice radius module, cmc module, and aaa module. Display voice radius statistic vords => aaa: authen_request = 0 author_request = 0 acctreq_pstncaller = 0 acctreq_voipcaller = 0 acctreq...

  • Page 2737

    2737 an access number can contain up to 31 characters, but no unacceptable characters such as a letter. At most 100 access numbers can be configured for the voice gateway. The shortest match and exact match are preferred for access number match. If an access number template is the same as some voice...

  • Page 2738

    2738 c hapter 180: v oice radius c onfiguration c ommands use the undo password-digit command to restore the default number of digits in a password for some access number in the card number/password process. This command is unavailable for the caller number process with ivr. By default, the number o...

  • Page 2739

    2739 is implemented by identifying the calling number. If the authentication succeeds, the voice gateway plays prompt tones, requiring the user to dial a called number. In addition, you can configure the number of redial attempts by using the redialtimes command, and the language in which the prompt...

  • Page 2740

    2740 c hapter 180: v oice radius c onfiguration c ommands redialtimes syntax redialtimes redialtimes-number undo redialtimes view access number view parameter redialtimes-number: number of redial attempts, in the range of 0 to 10. In the card number/password process, this argument may refer to the t...

  • Page 2741

    2741 reset voice radius statistic syntax reset voice radius statistic view user view parameter none description use the reset voice radius statistic command to clear statistics of messages exchanged between the voice radius module, cmc module, and aaa module. Related command: display voice radius st...

  • Page 2742

    2742 c hapter 180: v oice radius c onfiguration c ommands [sysname-voice-dial] gw-access-number 17909 [sysname-voice-dial-anum17909] process-config voice-caller [sysname-voice-dial-anum17909] selectlanguage english.