- icl-fwd-delay (MCT)
Sets the delay time after an ICL link
comes up before regular traffic is forwarded. During the delay, only BPDU forwarding
is
allowed.
ignore-temp-shutdown Prevents shutdown of
RUCKUS ICX devices at the threshold shutdown temperature.
ike-profileConfigures an IKEv2 profile for an IPsec profile.
ikev2 auth-proposalCreates an Internet Key Exchange version 2 (IKEv2) authentication proposal and enters
configuration mode for the proposal.
ikev2 exchange-max-timeConfigures the maximum setup time for Internet Key Exchange version 2 (IKEv2) message
exchange.
ikev2 limitConfigures limits for the number of Internet Key Exchange version 2 (IKEv2) security
association (SA) sessions.
ikev2 policyCreates an Internet Key Exchange version 2 (IKEv2) policy and enters IKEv2 policy
configuration mode.
ikev2 profileCreates an Internet Key Exchange version 2 (IKEv2) profile and enters IKEv2 profile
configuration mode.
ikev2 proposalCreates an Internet Key Exchange version 2 (IKEv2) proposal and enters IKEv2 proposal
configuration mode.
ikev2 retransmit-intervalConfigures the delay time for resending Internet Key Exchange version 2 (IKEv2) messages.
ikev2 retry-countConfigures the maximum number of attempts to retransmit an Internet Key Exchange version
2 (IKEv2) message.
image-auto-copy disableTurns off the auto image copy function
used in a stack configuration to restore all units to the same software image.
import-usersImports a text file of user records from a TFTP server to the device.
inactivity-timerConfigures the time a forwarding entry can remain unused before the device deletes
it.
include-portAdds ports to the VSRP.
initial-contact-payloadConfigures sending an initial contact message to a peer for an Internet Key Exchange
version 2 (IKEv2) profile.
initial-ttlConfigures the Hello packet time to live (TTL) (the number of hops a Hello message
can traverse after leaving the device and before the Hello message is dropped).
-
inline power Configures inline power on Power over Ethernet (PoE) ports in interface configuration
mode and link aggregation group (LAG) secondary ports in global configuration mode.
- inline power adjust class
Use these commands when powered devices (PDs) are entering an overload state as a
result of faulty PDs power requests.
- inline power allocation dynamic
Enables the dynamic Power over
Ethernet (PoE) power management (PM) method.
-
inline power couple-datalink Links the behavior of PoE configuration with interface disable or interface enable
configuration.
inline power install-firmwareInstalls Power over Ethernet (PoE) firmware.
inline power install-firmware scpUpgrades the PoE firmware of a FastIron stacking device by downloading a firmware
file from an SCP server.
inline power interface-mode-2pair-pse
Corrects a condition where some non-standard powered devices (PD) are undetected
on PoH ports due to difference in allowed capacitance between a 2-pair port and a
4-pair port.
inline power non-pd-detection enable Enables detection for nonpowered endpoints or devices (non-PD).
inline power overdriveAllows Ruckus PDs to negotiate for power greater than 30-watt allocation on PoE+ ports
and greater than 60-watt on PoH ports.
- inline power poe-ha
Enables perpetual PoE and fast boot PoE
on a per-port basis.
integrityConfigures an integrity algorithm for an Internet Key Exchange version 2 (IKEv2) proposal.
interface cpu activeEnters configuration mode for the CPU of the active unit, either the active controller
of a stack or a standalone unit.
interface ethernetEnters interface configuration mode for the specified Ethernet interface.
interface group-veAssociates the virtual interface routing group with a VLAN group.
interface lagConfigures LAG virtual interface that represents the entire LAG.
interface loopbackConfigures a loopback interface and enters loopback interface configuration mode.
interface managementSpecifies a management interface and enters management interface configuration mode.
interface tunnel Configures a tunnel interface.
interface veConfigures a virtual Ethernet (VE) interface.
ip access-groupApplies IPv4 access control lists (ACLs) to traffic entering or exiting an interface.
- ip access-group frag deny
Allows strict filtering of fragmented
packets.
ip access-listCreates a named IPv4 standard or extended access control list (ACL) that permits or
denies network traffic based on criteria that you specify.
-
ip address Configures an IP address on an interface.
ip-addressConfigures a virtual IP address for a Virtual Router Redundancy Protocol (VRRP) or
VRRP Extended (VRRP-E) instance.
ip-address (VSRP)Configures the IP address to back up.
ip arp inspection syslog disableDisables the syslog messages for Dynamic ARP Inspection.
ip arp inspection validate Enables validation of the ARP packet destination MAC, ARP Packet IP, and source MAC
addresses.
ip arp inspection vlanEnables dynamic ARP inspection (DAI) on a VLAN or a range of VLANs.
ip arp learn-gratuitous-arpEnables learning gratuitous ARP.
-
ip arp port-move-syslog Disables or re-enables Address Resolution Protocol (ARP) port movement syslog message
generation.
ip arp-ageConfigures ARP aging parameter.
ip bootp-gatewayChanges the IP address used for stamping BootP or DHCP requests received on the interface.
ip bootp-use-intf-ipConfigures a Dynamic Host Configuration Protocol (DHCP) relay agent to set the source
IP address of a DHCP-client packet with the IP address of the interface in which the
DHCP-client packet is received.
ip broadcast-zeroEnables the Layer 3 switch for zero-based IP subnet broadcasts in addition to ones-based
IP subnet broadcasts.
ip default-gatewayConfigures the default gateway for a Layer 2 switch.
ip default-networkConfigures a default network route.
ip dhcp-client auto-update enableEnables the DHCP auto-update functionality.
ip dhcp-client enableEnables DHCP client.
ip dhcp-client information
enableEnables or disables Dynamic Host
Configuration Protocol (DHCP) client visibility globally.
ip dhcp-client veEnables the DHCP client for a specific Virtual Ethernet (VE) port.
ip dhcp relay information policyConfigures the Dynamic Host
Configuration Protocol (DHCP) relay information policy.
ip dhcp-server arp-ping-timeoutSets the ARP-ping timeout value.
ip dhcp-server bootp
ignoreEnables the Dynamic Host Configuration
Protocol (DHCP) server to process the Bootstrap Protocol (BOOTP) request received
from the
BOOTP clients.
ip dhcp-server enableEnables the DHCP server.
ip dhcp-server mgmtEnables or disables the DHCP server on the management port.
ip dhcp-server poolCreates a DHCP server address pool.
ip dhcp-server relay-agent-echo enableActivates the DHCP option 82.
ip dhcp-server server-identifierSpecifies the IP address of the selected DHCP server.
ip dhcp-server
use-port-nameReplaces the Dynamic Host Configuration
Protocol (DHCP) client identifier with the port name for a DHCP server.
ip dhcp snooping relay information disableEnables DHCP snooping relay information
(DHCP option 82) on a specified VLAN, a range of VLANs, or for all VLANs.
ip dhcp snooping verify
mac-addressBlocks the malformed DHCP packet by
validating the Layer 2 source MAC of the DHCP packet against the client hardware
address of
the DHCP header.
ip dhcp snooping vlanEnables DHCP snooping on a VLAN or a range of VLANs.
ip directed-broadcastEnables directed broadcast forwarding.
ip dnsConfigures the IPv4 Domain Name System (DNS).
- ip dns vrf
Configures the IPv4 Domain Name System
(DNS) server configuration through user-defined VRF and management VRF.
-
ip dscp-remark Enables remarking of the differentiated services code point (DSCP) field for all IPv4
packets.
ip encapsulationChanges the IP encapsulation type.
ip follow veConfigures a virtual routing interface to share the IP address with other virtual
routing interfaces.
ip forward-protocol udpConfigures the Layer 3 switch to forward client requests for UDP applications.
ip helper-addressConfigures a helper address on the interface connected to the client to enable forwarding
of client broadcast request for a UDP application when the client and server are on
different networks.
ip helper-use-responder-ipConfigures the device so that a BOOTP or DHCP reply to a client contains the server
IP address as the source address instead of the router IP address.
ip hitless-route-purge-timerConfigures the timer to set the duration for which the routes should be preserved
after switchover.
ip icmp attack-rateConfigures the device to drop ICMP packets when an excessive packet rate is encountered.
- ip icmp burst-max
Limits the rate of ICMP pings to the
CPU
ip icmp echo broadcast-requestEnables an ICMP echo response caused by a broadcast echo request.
- ip icmp icmp-fragments
Drops ICMP packet fragments.
ip icmp redirectsEnables IPv4 ICMP redirect messages.
ip icmp unreachableEnables sending ICMP unreachable messages.
ip igmp access-groupConfigures the Internet Group Management
Protocol (IGMP) report filter policy globally, for a non-default virtual routing
and
forwarding (VRF) instance, or for an Interface.
ip igmp group-membership-timeSpecifies how long an IGMP group remains active on an interface in the absence of
a group report.
ip igmp max-group-addressConfigures the maximum number of Internet
Group Management Protocol (IGMP) group addresses.
ip igmp max-response-timeDefines how long a device waits for an
Internet Group Management Protocol (IGMP) response from an interface before determining
that
the group member on that interface is down and removing the interface from the group.
ip igmp port-versionConfigures an IGMP version recognized by a physical port that is a member of a virtual
routing interface.
ip igmp proxyConfigures IGMP proxy on an interface
ip igmp query-intervalDefines how often a device queries an interface for IGMP group membership.
ip igmp ssm-mapEnables IGMPv2 SSM mapping and defines the SSM maps between IGMPv2 Group addresses
and multicast source addresses.
ip igmp static-groupConfigures one or more physical ports to be a permanent (static) member of an IGMP
group based on the range or count. Manually adds a port to a multicast group.
ip igmp trackingEnables tracking and fast leave on an interface.
ip igmp versionSpecifies the IGMP version used by the
device.
ip interface loopback (VXLAN) Configures the loopback interface for a VXLAN overlay-gateway.
ip irdpEnables ICMP Router Discovery Protocol (IRDP) globally.
ip irdp (Interface)Enables ICMP Router Discovery Protocol (IRDP) on an interface and configures IRDP
parameters.
ip load-sharingConfigures IPv4 load sharing.
ip-macManually configures an IP MAC address on an IP interface.
ip max-mroute Configures the maximum number of IPv4 multicast routes that are supported.
ip mrouteConfigures a directly connected static IPv4 multicast route.
ip mroute (Next Hop)Configures a static IPv4 multicast route (mroute) with a next hop..
ip mroute next-hop-enable-defaultEnables the option to use the default multicast route (mroute) to resolve a static
IPv4 mroute next hop.
ip mroute next-hop-recursion Configures the recursion level when using static mroutes to resolve a static mroute
next hop.
ip mtuChanges the Maximum Transmission Unit
(MTU) for a specific interface.
ip multicastSets IGMP globally on a device, and sets the IGMP mode as active or passive.
ip multicast age-intervalConfigures the time that group entries can remain in an IGMP group table on a specific
VLAN or on all VLANs.
ip multicast disable-floodingDisables the flooding of unregistered IPv4 multicast frames in an IGMP-snooping-enabled
VLAN.
- ip multicast edge-port
Configures edge ports for
IGMP-snooping-enabled interfaces.
- ip multicast flood-unregistered
Enables the flooding of initial packets
for unregistered IP multicast groups until hardware entries are programmed. Once the
hardware
entries are programmed, packets are dropped for unregistered multicast groups.
ip multicast group upnp dropBlocks IP multicast traffic destined to
specified Universal Plug and Play (UPnP) addresses.
ip multicast leave-wait-timeConfigures the wait time before stopping traffic to a port when a leave message is
received.
ip multicast max-response-timeSets the maximum number of seconds a client (IPv4) can wait before responding to a
query sent by the device.
ip multicast mcache-ageConfigures the time for an mcache to age out when it does not receive traffic.
ip multicast mvrEnables Multicast VLAN Registration (MVR)
on the device.
ip multicast
optimizationEnables or disables IP multicast (IPMC) entry optimization for Layer 2 IPv4 multicast
flows.
ip multicast query-intervalConfigures how often the device sends general queries when IP multicast traffic reduction
is set to active mode.
ip multicast report-controlLimits report forwarding within the same multicast group to no more than once every
10 seconds.
- ip multicast static-mcache profile
Adds multicast groups to a profile whose
packets are always flooded or dropped in the hardware.
ip multicast verbose-offTurns off the error or warning messages displayed by the device when it runs out of
software resources or when it receives packets with the wrong checksum or groups.
ip multicast versionConfigures the IGMP version for snooping globally.
ip multicast-boundaryDefines boundaries for PIM enabled interfaces.
ip multicast-debug-modeEnables global multicast debug mode for all VRFs.
ip multicast-nonstop-routingGlobally enables multicast non-stop routing for all virtual routing and forwarding
(VRF) instances.
ip multicast-routing
optimizationEnables or disables IP multicast (IPMC) hardware entry optimization for Layer 3 IPv4
multicast flows.
ip multicast-routing rpf-check mac-movement
Triggers Reverse Path Forwarding (RPF) check on MAC movement for directly connected
sources and sends a MAC address movement notification to the Protocol Independent
Multicast (PIM) module which results in PIM convergence.
ip options dropConfigures the IPv4 drop packet rule so
that IPv4 packets with an option, such as insert NOP, insert loose source route,
and insert
MTU probe, are dropped.
-
ip ospf active Sets a specific OSPF interface to active.
-
ip ospf area Enables OSPFv2 on an interface.
-
ip ospf authentication Configures MD5, HMAC-SHA-1 or HMAC-SHA-256 authentication for Open Shortest Path First
version 2 (OSPFv2).
-
ip ospf authentication key-activation-wait-time Configures the time before an authentication key change is activated for an Open
Shortest Path First version 2 (OSPFv2) interface.
-
ip ospf authentication keychain Configures Open Shortest Path First version 2 (OSPFv2) authentication using the keychain
authentication module.
-
ip ospf authentication plain-text Configures simple password-based authentication for Open Shortest Path First version
2 (OSPFv2).
ip ospf bfdEnables Bidirectional Forwarding Detection (BFD) sessions and configures BFD session
parameters for an Open Shortest Path First Version 2 (OSPFv2) interface.
-
ip ospf cost Configures cost for a specific interface.
-
ip ospf database-filter Configures filters for different types of outgoing Link State Advertisements (LSAs).
ip ospf dead-intervalConfigures the neighbor dead interval, which is the number of seconds that a neighbor
router waits for a hello packet from the device before declaring the router down.
-
ip ospf hello-interval Configures the hello interval, which is the length of time between the transmission
of hello packets that this interface sends to neighbor routers.
-
ip ospf mtu-ignore Enables or disables maximum transmission unit (MTU) match checking.
-
ip ospf network Configures the network type for the interface. Point-to-point can support unnumbered
links, which requires less processing by OSPF.
-
ip ospf passive Sets a specific OSPFv2interface to passive.
-
ip ospf priority Configures priority for designated router (DR) election.
-
ip ospf retransmit-interval Configures the retransmit interval. The retransmit interval is the time between Link-State
Advertisement (LSA) retransmissions to adjacent routers for a given interface.
-
ip ospf transmit-delay Configures transmit delay for link-update packets. The transmit delay is the estimated
time required for OSPFv2 to send link-state update packets on the interface to which
you are connected.
-
ip pcp-remark Enables remarking of the priority code
point (PCP) field in the VLAN header for tagged packets received.
ip pimConfigures PIM in Dense mode on an interface.
ip pim borderConfigures PIM parameters on an interface on a PIM Sparse border.
ip pim dr-priorityConfigures the designated router (DR) priority on IPv4 interfaces.
ip pim neighbor-filterDetermines which devices can become PIM neighbors.
ip pim-sparseEnables PIM Sparse on an interface that is connected to the PIM Sparse network.
ip pimsm-snoopingEnables PIM Sparse mode (SM) traffic snooping globally.
ip policy route-mapEnables policy-based routing (PBR).
ip prefix-listConfigures a RIP routing prefix list that can permit or deny specific routes. The
prefix list can be applied globally or to individual interfaces, where they may apply
to incoming (learned) our outgoing (advertised) routes.
ip preserve-acl-user-input-formatPreserves the user input format for ACL configuration.
ip-protoConfigures an IP protocol-based VLAN.
ip proxy-arpEnables IP proxy ARP globally.
ip proxy-arp (Interface)Enables IP proxy ARP on an interface.
ip radius source-interfaceConfigures an interface as the source IP address from which the RADIUS client sends
RADIUS requests or receives responses.
ip rarpEnables IP Reverse Address Resolution Protocol (RARP).
ip redirectEnables IPv4 redirect messages on individual Virtual Ethernet (VE) interface.
ip ripConfigures Routing Information Protocol at the interface level. RIP must first be
enabled globally on the device.
ip rip metric-offsetIncreases the cost metric an interface applies to learned or advertised RIP routes.
ip rip prefix-listApplies a pre-configured prefix-list to a RIP interface.
ip rip route-mapApplies a pre-configured route map to a RIP interface.
ip routeAdds a static route to the IP routing tables.
ip route bfdEnables Bidirectional Forwarding Detection (BFD) and configures BFD session parameters
for IP static routes.
ip route bfd holdover-intervalConfigures the time interval for which the BFD session state is not conveyed to the
static route application after the BFD session goes down. During this time period,
the static route is not withdrawn from the route table manager (RTM).
ip route next-hopEnables a device to use routes from a specified protocol to resolve a configured static
route.
ip route next-hop-enable-defaultEnables a device to use the default route (0.0.0.0/0) to resolve a static route.
ip route next-hop-recursionEnables a device to use static routes to resolve another static route.
ip router-idConfigures an IPv4 router ID.
ip sg-access-groupBinds an ingress IPv4 access control
list (ACL) meant for IP Source Guard (IPSG) ports (SG ACL) to a port or VLAN.
ip sg-access-listCreates an IP Source Guard (IPSG) ACL.
ip show-portnameDisplays interface names in syslog messages.
ip show-service-number-in-logDisplays TCP or UDP port numbers instead of the port names.
ip show-subnet-lengthEnables CIDR format for displaying network masks.
ip source-routeEnables forwarding of IP source-routed packets.
ip ssh authentication-retriesConfigures the number of SSH authentication retries.
ip ssh clientRestricts Secure Shell (SSH) access to a device based on the client IP address and
MAC address.
- ip ssh delete-known-host-key
When configured, the known host key for a
server is deleted and if a user attempts to connect to the server again, they
will be prompted to accept or reject the new key.
- ip ssh enable
Enables inbound and outbound SSH access to
the ICX devices.
ip ssh encryptionEnables the SSH encryption algorithms
specified.
ip ssh encryption aes-onlyEnables SSH AES encryption and disables support for 3des-cbc.
ip ssh encryption disable-aes-cbc Disables the Advanced Encryption Standard - Cipher-Block Chaining (AES-CBC) encryption
mode for the Secure Shell (SSH) protocol.
- ip ssh host-key-method
Enables or disables one or more secure
host key algorithms.
ip ssh idle-timeConfigures the amount of time an SSH session can be inactive before the device closes
it.
ip ssh interactive-authenticationConfigures the keyboard-interactive authentication.
ip ssh key-authenticationConfigures DSA or RSA challenge-response authentication.
ip ssh
key-exchange-methodConfigures the key-exchange methods that
can be used to establish an SSH connection.
ip ssh key-exchange-method dh-group1-sha1Disables or re-enables diffie-hellman-group1-sha1 as the key-exchange method to establish
an SSH connection.
- ip ssh message-authentication-code
Configures one or more message
authentication code used for data integrity over the SSH connection.
- ip ssh message-authentication-code
disable-hmac-sha1
Removes system support for HMAC SHA1
message-authentication code.
ip ssh password-authenticationConfigures password authentication.
ip ssh permit-empty-passwordAllows a user with an SSH client to log in without being prompted for a password.
ip ssh portConfigures the port for SSH traffic.
ip ssh pub-key-fileImports the authorized public keys into the active configuration of the device by
loading the public key file from a TFTP server.
ip ssh rekeyConfigures the Secure Shell (SSH) rekey interval, either in terms of the maximum number
of minutes or the maximum amount of data.
ip ssh scpEnables Secure Copy (SCP).
ip ssh strict-management-vrfAllows incoming SSH connection requests only from the management VRF and not from
the out-of-band (OOB) management port.
- ip ssh stricthostkeycheck ask
When the command is configured, the switch
prompts the user to confirm the authenticity of the remote host if the host key is
not
recognized.
ip ssh timeoutConfigures the wait time for a response from the client when the SSH server attempts
to negotiate a session key and encryption method with a connecting client.
ip sslConfigures Secure Socket Layer (SSL) settings.
- ip ssl disable-weak-ciphers
Disables weak SSL or TLS cipher.
ip ssl min-versionConfigures the minimum TLS version to be used to establish the TLS connection.
ip-subnetConfigures an IP subnet VLAN within a VLAN.
ip syslog source-interfaceConfigures an interface as the source IP address from which the syslog module sends
log messages.
ip tacacs source-interfaceConfigures an interface as the source IP address from which the TACACS+ client establishes
connections with TACACS+ servers.
ip tcp adjust-mss Configures the TCP MSS adjustment value on the IPv4 interface.
- ip tcp analytics rate
Changes the TCP Syn DDoS analytics
threshold rate to a value other than the default. TCP Syn DDoS refers to a type of
distributed denial-of-service attack in which an abnormal influx of Synchronize packets
at
the TCP layer disrupts normal traffic to the switch.
- ip tcp burst-max
Rate limits TCP SYN packets.
ip tcp burst-normalConfigures the threshold values for TCP SYN packets that are targeted at the router
itself or that pass through an interface.
- ip tcp fin-urg-psh
Drops TCP control packets with FIN URG and
PSH flags set.
ip tcp keepaliveConfigures the time interval between TCP keepalive messages.
ip tcp-mtu-probingEnables Transmission Control Protocol
(TCP) maximum transmission unit (MTU) probing so that a working path MTU can be
discovered
without relying on Internet Control Message Protocol (ICMP) messages.
- ip tcp over-mac-multicast
Configures the ICX device to drop any
control IPv4 of IPv6 TCP packets that have been sent using the MAC Multicast
mechanism.
- ip tcp port-zero
Drops TCP control packets that have either
the source or destination port set to zero.
- ip tcp syn-fin
Drops TCP control packets received with
both SYN and FIN flags set.
- ip tcp syn-rst
Drops TCP control packets with both SYN
and RST flags set.
- ip tcp tcp-all
Drops TCP control packets with
irregularities that typically signal DDOS attacks.
- ip tcp zero-flags
Drops TCP control packets received with
all flags set to zero.
ip-telephony dataSpecifies the Avaya IP telephony data options in the DHCP server pool.
ip-telephony voiceSpecifies the Avaya IP telephony voice options in the DHCP server pool.
ip telnet source-interfaceSets the lowest-numbered IP address configured on an interface as the device source
for all Telnet packets.
ip tftp blocksizeSpecifies the size of Trivial File
Transfer Protocol (TFTP) blocks.
ip tftp source-interfaceConfigures an interface as the source IP address from which TFTP sends and receives
data and acknowledgments.
ip ttlModifies the time-to-live (TTL) threshold value.
ip use-acl-on-arpConfigures the ARP module to check the source IP address of the ARP request packets
received on the interface before applying the specified ACL policies to the packet
(ACL ARP filtering).
ip vrrp auth-typeConfigures the type of authentication used on a Virtual Router Redundancy Protocol
(VRRP) interface.
ip vrrp vridConfigures an IPv4 Virtual Router Redundancy Protocol (VRRP) virtual router identifier
(VRID).
ip vrrp-extended auth-typeConfigures the type of authentication used on a Virtual Router Redundancy Protocol
Extended (VRRP-E) interface.
ip vrrp-extended vridConfigures an IPv4 Virtual Router Redundancy Protocol Extended (VRRP-E) virtual router
identifier (VRID).
ipsec profileCreates an IP security (IPsec) profile and enters IPsec profile configuration mode.
ipsec proposalCreates an IP security (IPsec) proposal and enters IPsec proposal configuration mode.
ipv6 access-groupApplies an IPv6 ACL to an interface.
ipv6 access-listCreates an IPv6 access control list (ACL) and enters IPv6 access-list configuration
sub-mode.
ipv6 addressConfigures an IPv6 address for an interface.
ipv6 address autoconfigEnables automatic IPv6 address
assignment and option retrieval using stateless or stateful autoconfiguration.
ipv6 cache-lifetime Configures the IPv6 cache-aging lifetime.
ipv6 default-gateway
Configures the IPv6 address of the default gateway.
ipv6
deny-undetermined-transportConfigures the IPv6 drop rule where IPv6
fragment traffic is dropped if received with an incomplete header in the first fragment.
ipv6 dhcp6-client auto-update
enableEnables DHCPv6
auto-provisioning.
ipv6 dhcp-relay accept-broadcastEnables the DHCPv6 relay agent to accept DHCPv6 client packets with a broadcast MAC
address.
ipv6 dhcp-relay destinationEnables the IPv6 DHCP relay agent function and specifies the IPv6 address as a destination
address to which the client messages are forwarded.
ipv6 dhcp-relay distanceAssigns the administrative distance to IPv6 DHCP static routes installed in the IPv6
route table for the delegated prefixes on the interface.
ipv6 dhcp-relay include-optionsIncludes the parameters on the IPv6 DHCP relay agent messages.
ipv6 dhcp-relay maximum-delegated-prefixesSets the number of delegated prefixes that can be learned at the global and interface
levels.
ipv6 dhcp6-server enableEnables the DHCPv6 server globally.
ipv6 dhcp6 snooping vlanEnables DHCPv6 snooping on a VLAN or a range of VLANs
ipv6 dns server-addressConfigures IPv6 DNS server address.
ipv6 drop routing-typeEnables the dropping of routing header
options so that only IPv6 routing type value 2 is allowed.. All other routing types,
from 0
through 255, are dropped.
ipv6 enableEnables IPv6.
ipv6 hitless-route-purge-timerConfigures the timer to set the duration for which the routes should be preserved
after switchover.
ipv6 hop-limitConfigures the maximum number of hops an IPv6 packet can traverse.
ipv6 icmp error-intervalConfigures ICMP rate limiting, that is, the rate at which IPv6 ICMP error messages
are sent out on a network.
ipv6 icmp fragment_header_bitSets the atomic fragment header bit when the maximum transmission unit (MTU) is less
than or equal to 1280.
ipv6 icmp source-routeGenerates ICMP parameter problem message for source routed IPv6 packet.
ipv6 load-sharingEnables Equal-cost multi-path routing (ECMP) load sharing for IPv6.
ipv6 max-mrouteConfigures the maximum number of IPv6 multicast routes that are supported.
ipv6 mld access-groupConfigures the Multicast Listener
Discovery (MLD) report filter policy globally, for a non-defaultvirtual routing
and
forwarding (VRF) instance, or for an Interface.
ipv6 mld group-membership-timeSpecifies the multicast listener discovery (MLD) group membership time for the default
VRF or for a specified VRF.
ipv6 mld llqi
Configures the multicast listener discovery (MLD) last listener query interval.
ipv6 mld max-group-addressConfigures the maximum number of Multicast
Listener Discovery (MLD) group addresses.
ipv6 mld max-response-timeConfigures the maximum time a Multicast
Listener Discovery (MLD) listener has to respond to queries for the default virtual
routing
and forwarding (VRF) instance or for a specified VRF.
ipv6 mld port-versionConfigures the multicast listening discovery (MLD) version on a virtual Ethernet interface.
ipv6 mld query-intervalConfigures the frequency at which multicast listening discovery (MLD) query messages
are sent.
ipv6 mld robustnessConfigures the number of times that the device sends each multicast listening discovery
(MLD) message from an interface.
ipv6 mld static-groupConfigures one or more physical ports to be a permanent (static) member of a multicast
listening discovery (MLD) group based on the range or count.
ipv6 mld trackingEnables multicast listening discovery (MLD) tracking on a virtual interface.
ipv6 mld versionConfigures the multicast listening discovery (MLD) version for snooping on an interface.
ipv6 mrouteConfigures a static IPv6 route to direct multicast traffic along a specific path.
ipv6 mroute (Next Hop)Configures a static IPv6 multicast route (mroute) with a next hop.
ipv6 mroute next-hop-enable-default Enables the option to use the default
multicast route (mroute) to resolve a static IPv6 mroute next hop.
ipv6 mroute next-hop-recursion Configures the recursion level for
resolving an IPv6 multicast static route static.
ipv6 mtuConfigures the IPv6 MTU on individual interfaces.
ipv6 multicastGlobally sets the multicast listening discovery (MLD) snooping mode to active.
ipv6 multicast age-intervalConfigures the time that group entries can remain in a multicast listening discovery
(MLD) group table.
ipv6 multicast disable-flooding Disables the flooding of unregistered IPv6 multicast frames in an MLD-snooping-enabled
VLAN.
- ipv6 multicast flood-unregistered
Enables the flooding of initial
packets for unregistered IPv6 multicast groups until hardware entries are
programmed. Once the hardware entries are programmed, packets are dropped for
unregistered multicast groups.
ipv6 multicast leave-wait-timeConfigures the wait time before stopping traffic to a port when a leave message is
received.
ipv6 multicast max-response-timeSets the maximum number of seconds a client (IPv6) can wait before responding to a
query sent by the device.
ipv6 multicast mcache-ageConfigures the time for an mcache to age out when it does not receive traffic.
ipv6 multicast
optimizationEnables or disables IP multicast (IPMC) hardware entry optimization for Layer 2 IPv6
multicast flows.
ipv6 multicast per-vlan
filter-to-cpuEnables per VLAN to CPU filtering of MLD and PIMv6 packets for MLD Snooping (PIMv6-SM
Snooping).
ipv6 multicast query-intervalConfigures how often the device sends group membership queries when the multicast
listening discovery (MLD) mode is set to active.
ipv6 multicast report-controlLimits report forwarding within the same group to no more than once every 10 seconds.
ipv6 multicast verbose-offTurns off error or warning messages that are displayed when the device runs out of
software resources or when it receives packets with the wrong checksum or groups.
ipv6 multicast versionConfigures the multicast listening discovery (MLD) version for snooping globally.
ipv6 multicast-boundaryDefines multicast boundaries for PIM-enabled interfaces.
ipv6 multicast-routing
optimizationEnables or disables IP multicast (IPMC) entry optimization for Layer 3 IPv6 multicast
flows.
ipv6 multicast-routing rpf-check mac-movement
Triggers Reverse Path Forwarding (RPF) check on MAC movement for directly connected
sources and sends a MAC address movement notification to the Protocol Independent
Multicast (PIM) module which results in PIM convergence.
ipv6 nd dad attemptsConfigures the number of consecutive neighbor solicitation messages that duplicate
address detection (DAD) sends on an interface.
ipv6 nd local-proxyConfigures IPv6 neighbor discovery proxy on a router interface.
ipv6 nd managed-config-flagSets the managed address configuration flag.
ipv6 nd ns-intervalConfigures the interval in milliseconds at which duplicate address detection sends
a neighbor solicitation message on an interface.
ipv6 nd other-config-flagConfigures the hosts can use stateful autoconfiguration to get non-IPv6-address information.
ipv6 nd prefix-advertisementConfigures the prefixes to be included in router advertisement messages.
ipv6 nd proxyEnables IPv6 Neighbor Discovery(ND) proxy on a router.
ipv6 nd proxy-disableDisables the Neighbor Discovery proxy on an individual port or range of ports.
ipv6 nd ra-dns-serverConfigures the IPv6 router advertisement (RA) of Domain Name System (DNS) server addresses
and the lifetime multiplier on an interface.
ipv6 nd ra-domain-nameConfigures the IPv6 router advertisement (RA) of Domain Name System (DNS) suffixes
and the lifetime multiplier on an interface.
ipv6 nd ra-hop-limitSets the hop limit for router advertisement messages.
ipv6 nd ra-intervalConfigures the interval at which an interface sends router advertisement messages.
ipv6 nd ra-lifetimeConfigures the value (in seconds) indicates if the router is advertised as a default
router on an interface.
ipv6 nd reachable-timeConfigures the duration that a router considers a remote IPv6 node reachable.
ipv6 nd router-preferenceConfigures the IPv6 router advertisement preference value to low or high (medium is
the default). IPv6 router advertisement preference enables IPv6 router advertisement
(RA) messages to communicate default router preferences from IPv6 routers to IPv6
hosts in network topologies where the host has multiple routers on its Default Router
List.
ipv6 nd stale-timeConfigures the stale state timeout for
IPv6 neighbors on an interface.
ipv6 nd suppress-raDisables the sending of router advertisement messages on an interface.
ipv6 nd suppress-ra addressSuppresses the advertisement of specified IPv6 addresses for router advertisement
(RA) messages on an interface.
ipv6 neighborAdds a static entry to the IPv6 neighbor discovery cache.
ipv6 neighbor inspectionConfigures the static neighbor discovery (ND) inspection entries.
ipv6 neighbor inspection vlanConfigures and enables Neighbor Discovery (ND) inspection on a VLAN, or a range of
VLANs, to inspect the IPv6 packets from untrusted ports.
ipv6 options dropConfigures the IPv6 options drop packet
rule so that IPv6 packets that have extension headers, such as hop-by-hop and destination,
are dropped.
-
ipv6 ospf active Sets a specific OSPFv3 interface to active.
-
ipv6 ospf area Enables OSPFv3 on an interface.
-
ipv6 ospf authentication Configures HMAC-SHA-1 or HMAC-SHA-256 authentication for Open Shortest Path First
version 3 (OSPFv3).
-
ipv6 ospf authentication disable Removes the authentication configuration settings on a specific interface in an Open
Shortest Path First version 3 (OSPFv3) area.
-
ipv6 ospf authentication ipsec
Specifies IP security (IPsec) as the authentication type for an OSPFv3 interface.
-
ipv6 ospf authentication ipsec disable
Disables IP security (IPsec) services on an OSPFv3 interface.
-
ipv6 ospf authentication ipsec spi Specifies the IP security (IPsec) security policy index (SPI) value for an OSPFv3
interface.
-
ipv6 ospf authentication key-activation-wait-time Configures the time before an authentication key change is activated for an Open
Shortest Path First version 3 (OSPFv3) interface.
-
ipv6 ospf authentication keychain Configures Open Shortest Path First version 3 (OSPFv3) authentication using the keychain
authentication module.
-
ipv6 ospf authentication rfc6506 Configures authentication in accordance with RFC 6506 for Open Shortest Path First
version 3 (OSPFv3).
ipv6 ospf bfdEnables Bidirectional Forwarding Detection (BFD) sessions and configures BFD session
parameters for an Open Shortest Path First Version 3 (OSPFv3) interface.
-
ipv6 ospf cost Configures cost for a specific OSPFv3 interface.
-
ipv6 ospf dead-interval Specifies the time period for which a neighbor router waits for a hello packet from
the device before declaring the router down.
-
ipv6 ospf hello-interval Sets the length of time between the transmission of hello packets that an interface
sends to neighbor routers.
-
ipv6 ospf hello-jitter Sets the allowed jitter between HELLO packets.
-
ipv6 ospf instance Specifies the number of OSPFv3 instances running on an interface.
-
ipv6 ospf mtu-ignore Enables or disables maximum transmission unit (MTU) match checking.
-
ipv6 ospf network Configures network type.
-
ipv6 ospf passive Sets a specific OSPFv3 interface to passive.
-
ipv6 ospf priority Configures priority for designated router (DR) election and backup designated routers
(BDRs) on the interface you are connected to.
-
ipv6 ospf retransmit-interval Configures the retransmit interval. The retransmit interval is the time between Link-State
Advertisement (LSA) retransmissions to adjacent routers for a given interface.
-
ipv6 ospf suppress-linklsa Suppresses link LSA advertisements.
-
ipv6 ospf transmit-delay Configures transmit delay for link-update packets. The transmit delay is the estimated
time required for OSPFv3 to send link-state update packets on the interface to which
you are connected.
ipv6 pim borderConfigures an interface to be on a PIM Sparse domain border.
ipv6 pim dr-priorityConfigures the designated router (DR) priority on IPv6 interfaces.
ipv6 pim neighbor-filter Determines which devices can become PIM neighbors.
ipv6 pim-sparseEnables PIM Sparse on an IPv6 interface.
ipv6 pimsm-snoopingEnables PIM6 SM traffic snooping.
ipv6 policy route-mapEnables IPv6 policy-based routing (PBR).
ipv6 prefix-listConfigures IPv6 prefix lists for use in basic traffic filtering.
-
ipv6 raguard policy Configures the specified Router Advertisement (RA) guard policy and enters RA guard
policy configuration mode.
-
ipv6 raguard vlan Associates a Router Advertisement (RA) guard policy with a VLAN.
-
ipv6 raguard whitelist Configures the Router Advertisement (RA) guard whitelist and adds the IPv6 address
as the allowed source IP address.
ipv6 redirectsEnables a Layer 3 switch to send an IPv6 ICMP redirect message to a neighboring host
to inform it of a better first-hop router on a path to a destination.
ipv6 rip default-informationConfigures learning and advertising of default routes for RIPng.
ipv6 rip enableEnables RIPng on an interface.
ipv6 rip metric-offsetChanges the metric for RIPng routes learned and advertised on an interface.
ipv6 rip summary-addressAdvertises a summary of IPv6 addresses from an interface and specifies an IPv6 prefix
that summarizes the routes.
ipv6 route Adds a static route to the IPv6 routing
tables.
ipv6 route next-hopEnables a device to use routes from a specified protocol to resolve a configured static
route.
ipv6 route
next-hop-enable-defaultYou can enable the IPv6 default static
route to resolve other static routes.
ipv6 route
next-hop-recursionYou can resolve static route destination
using recursive lookup in local address tables up to 10 hops away.
-
ipv6 router ospf Enables and configures the Open Shortest Path First version 3 (OSPFv3) routing protocol.
ipv6 router pimEnables IPv6 PIM Sparse mode for IPv6
Protocol Independent Multicast (PIMv6) routing globally or on a specified VRF.
ipv6 router ripEnables RIPng globally (on the device).
-
ipv6 router vrrp Globally enables IPv6 Virtual Router Redundancy Protocol (VRRP).
-
ipv6 router vrrp-extended Globally enables IPv6 Virtual Router Redundancy Protocol Extended (VRRP-E).
ipv6 tcp adjust-mss Configures the TCP maximum segment size (MSS) adjustment value on the IPv6 interface.
ipv6 unicast-routingEnables the forwarding of IPv6 traffic on a Layer 3 swtich.
ipv6 vrrp vridConfigures an IPv6 Virtual Router Redundancy Protocol (VRRP) virtual router identifier
(VRID).
ipv6 vrrp-extended vridConfigures an IPv6 Virtual Router Redundancy Protocol Extended (VRRP-E) virtual router
identifier (VRID).
ipv6-addressConfigures a virtual IPv6 address for a Virtual Router Redundancy Protocol version
3 (VRRPv3) or VRRP Extended version 3 (VRRP-Ev3) instance.
ipv6-address auto-gen-link-local Generates a virtual link-local IPv6 address and assigns it as the virtual IPv6 address
for a VRRPv3 instance.
ipv6-neighbor inspection trustEnables trust mode for specific ports.
ipv6-protoConfigures an IPv6 protocol-based VLAN.
ipx-networkConfigures the IPX network protocol-based VLANs.
ipx-protoConfigures the IPX protocol-based VLANs.
issu abortInitiates an in service software upgrade (ISSU) termination.
- issu primary
Initiates an in-service software upgrade (ISSU) using the image on the primary partition
and configures the system to reload from either the primary image or the secondary
image if the upgrade fails.
- issu secondary
Initiates an in-service software upgrade (ISSU) using the image on the secondary
partition and configures the system to reload from the image in either the primary
partition or the secondary partition should the upgrade fail.