mac access-group (ACL)Binds an access-list filter to an interface.
mac access-listCreates Layer 2 access list.
mac-age-timeConfigures the MAC address age timer.
mac-authentication auth-filterApplies the specified filter on the interface and the MAC addresses defined in the
filter (MAC filter) do not have to go through authentication.
mac-authentication dot1x-disableConfigures the device so that 802.1X authentication is not performed after successful
MAC authentication.
mac-authentication dot1x-overrideConfigures the device to perform 802.1X authentication when MAC authentication fails
when the authentication sequence is configured as MAC authentication followed by 802.1X
authentication.
mac-authentication enable (Flexible Authentication)Enables MAC authentication globally or on a specific interface.
- mac-authentication lldp-override
Configures the switch to replace the
authenticated MAC address on a FlexAuth-enabled port with the MAC address received
in an
LLDP frame globally.
mac-authentication password-format
Configures the MAC authentication password format.
mac-authentication password-override (Flexible Authentication)Enables password override for MAC authentication and specifies a user-defined password
instead of the MAC address for MAC authentication.
mac-learn-disableDisables a physical port from automatic learning the source MAC address.
mac-movement notificationEnables movement notifications and collects statistics for the movement of MAC addresses.
mac-move-syslog-disableDisables the generation of syslog messages
when a Media Access Control (MAC) address move is detected.
mac-notification interval Configures the MAC-notification interval between each set of generated traps.
macsec cipher-suiteEnables GCM-AES-128 bit encryption or GCM-AES-256 bit integrity checks on MACsec frames
transmitted between group members.
macsec confidentiality-offsetConfigures the offset size for MACsec encryption.
- macsec delay-protection
MACsec data-delay protection allows MKA
participants to ensure that the data frames protected by MACsec are not delayed by
more than
two seconds.
macsec frame-validationEnables validation checks for frames with MACsec headers and configures the validation
mode (strict or not strict).
macsec replay-protection Specifies the action to be taken when packets are received out of order, based on
their packet number. If replay protection is configured, you can specify the window
size within which out-of-order packets are allowed.
- management access
Configures access control for management
protocols.
management excludeExcludes in-band and out-of-band (OOB) interfaces from management traffic.
- management source-interface
Defines the interface to be used for the
specified protocol.
management-vlanConfigures a VLAN to be a part of the management VLAN.
management-vrfConfigures a Virtual Routing and Forwarding (VRF) as a global management VRF.
management vrfConfigures a Virtual Routing and Forwarding (VRF) as a global management VRF.
manager active-listConfigures the ICX-Management IP addresses
that the ICX device uses to initiate a connection with ICX-Management.
manager backupConfigures lower priority ICX-Management
IP addresses that the ICX device uses to initiate a connection with ICX-Management
if higher
priority IP addresses fail.
manager connect Connects the ICX device to
ICX-Management.
manager disableDisables cloud management of the ICX device.
manager disconnectDisconnects the ICX device from
ICX-Management
manager network-configLaunches the ICX-Management configuration wizard.
manager passiveConfigures lower priority ICX-manager IP addresses that the ICX device uses to initiate
a connection with the ICX-Manager if higher priority IP addresses fail.
manager port-listConfigures the destination port that the
ICX device uses to connect to ICX-Management.
manager query Initiates a query to a specific
ICX-Management IP address if ICX-Management is not yet connected.
manager registrarAllows an administrator to override the
default registrar host used in registrar-based ICX-Management discovery.
manager registrar-listUsed only in the no form, allows
administrators to clear addresses learned via the switch registrar from the ICX-Management
node list.
manager
registrar-query-restartAllows administrators to force start
ICX-Management discovery on ICX devices through the ICX-Management registrar.
manager resetBounces the connection between an ICX
device and ICX-Management.
- manager ssh-port
Specifies the SSH port for an
ICX-Management connection over the reverse SSH tunnel.
manager source-interfaceSpecifies the interface to be used by the ICX-Manager to manage the ICX device in
on-premises installations.
map vlan (VXLAN) Maps VLAN to a VXLAN Network Identifier
(VNI) for a VXLAN overlay-gateway.
map vlan-range (VXLAN)Maps a range of VLANs to a VXLAN Network
Identifier (VNI) for a VXLAN overlay gateway.
masterConfigures the device as a Network Time Protocol (NTP) master clock to which peers
synchronize themselves when an external NTP source is not available.
master (MRP)Configures a node as the master node for the metro ring.
master-vlanAdds the master VLAN to the topology group.
master-vlan (STP)Adds the master VLAN to an STP group.
match address-localConfigures matching an Internet Key Exchange version 2 (IKEv2) policy based on a local
IPv4 or IPv6 address.
match as-pathMatches a BGP autonomous system path (AS-path) ACL in a route map instance.
match communityMatches a BGP community access list name in a route-map instance.
match fvrfConfigures matching an Internet Key Exchange version 2 (IKEv2) policy based on a front-door
virtual routing forwarding (fvrf) instance.
-
match interface Configures the interface match clause in a route-map instance.
match ip addressMatches IP address conditions in a route map instance.
match ipv6 address Matches IPv6 address conditions in a route map instance.
match-identityConfigures match options for an Internet Key Exchange version 2 (IKEv2) profile based
on local or remote identity parameters.
match metricMatches a route metric in a route-map instance.
-
match protocol Matches the routes on protocol types and subtypes in a route-map instance.
-
match route-type Configures the route type clause in a route-map instance.
-
match tag Matches a route tag in a route-map instance.
max-hw-ageEnables and configures the maximum hardware age for denied MAC addresses.
max-mcacheConfigures the maximum number of PIM cache entries.
-
max-metric router-lsa
(OSPFv2)Advertises the maximum metric value in different Link State Advertisements (LSAs).
max-sw-ageConfigures the maximum software aging.
max-vlan (SPX)Configures the maximum number of VLANs of which an 802.1br port extender (PE) port
can be a member.
max-vlans-per-pe-port (SPX)Configures number of VLANs allowed per PE port in a Campus Fabric system.
-
maxas-limit
Imposes a limit on the number of autonomous systems in the AS-PATH attribute.
maximum (Port MAC Security)Configures the maximum number of secure MAC addresses an interface can store when
port MAC security is enabled.
-
maximum-paths
(BGP)Sets the maximum number of BGP4 and BGP4+ shared paths.
-
maximum-paths ebgp ibgp
Specifies the number of equal-cost multipath eBGP or iBGP routes or paths that are
selected.
-
maximum-preference Configures the Router Advertisement (RA) guard policy to accept RAs based on a router
preference setting.
mdi-mdixEnables or disables Media Dependent Interface (MDI) and Media Dependent Interface
Crossover (MDIX) detection on all Gigabit Ethernet Copper ports.
-
med-missing-as-worst
Configures the device to favor a route that has a Multi-Exit Discriminator (MED) over
a route that does not have one.
member-groupAdds the member VLAN group to the topology group.
member-group (STP)Adds the member VLAN group to the STP group.
member-vlanAdds members to the VLAN topology group.
member-vlan (STP)Adds member VLANs to the STP group.
mesh-groupConfigures a multicast source discovery protocol (MSDP) mesh group from several rendezvous
points (RPs).
message-intervalChanges the default PIM Sparse join or prune message interval.
-
metric-type
Configures the default metric type for external routes.
metro-ringAdds a metro ring to a port-based VLAN and enters MRP configuration mode.
micro-bfd-enableEnables micro-Bidirectional Forwarding Detection (micro-BFD) at a global level.
mirror-portConfigures port mirroring on individual ports.
mka-cfg-group
Creates and names a MACsec Key Agreement (MKA) configuration group.
- mka-keychain
Applies a pre-defined MKA keychain to
MACsec transmissions on a specific interface.
module (SPX) Manually configures SPX module information.
monitor (LAG)Monitors an individual port in a deployed LAG.
monitorConfigures monitoring of the mirrored ports.
monitor profile (ERSPAN traffic
type)Configures the type of monitored traffic
associated with a specific Encapsulated Remote Switched Port Analyzer (ERSPAN) profile
on a
monitoring port.
monitor-profile
(ERSPAN)Creates an Encapsulated Remote Switched
Port Analyzer (ERSPAN) profile and assigns it a profile number.
mount disk0Mounts the filesystem of the external USB.
msdp-peerConfigures a multicast source discovery protocol (MSDP) peer.
mstp admin-edge-portConfigures ports as operational edge ports.
mstp admin-pt2pt-macCreates a point-to-point link between ports to increase the speed of convergence.
mstp disableDisables MSTP on interfaces.
mstp edge-port-auto-detectAutomatically sets a port as an operational edge port.
mstp force-migration-checkTriggers a port to force transmit an MSTP BPDU.
mstp force-versionConfigures the bridge to send BPDUs in a specific format.
mstp forward-delayConfigures the length of time a port waits before it forwards an RST BPDU after a
topology change.
mstp hello-timeConfigures the interval between two Hello packets.
mstp instanceConfigures a Multiple Spanning Tree Protocol (MSTP) instance that allows multiple
VLANs to be managed by a single STP instance.
mstp max-ageConfigures the amount of time the device waits to receive a Hello packet before it
initiates a topology change.
mstp max-hopsConfigures the maximum hop count.
mstp nameConfigures the MSTP name for the device.
mstp revisionConfigures an MSTP revision number for the device.
mstp root-protect timeoutConfigures a root protection timeout value for MSTP root guard.
mstp scopeConfigures VLANs in Multiple Spanning Tee Protocol (MSTP) mode.
mstp startEnables MSTP on the device.
mtu-exceedConfigures a port to forward traffic to a port with a smaller MTU size.
multicastSets IGMP for a VLAN, and sets the IGMP mode as active or passive.
multicast disable-igmp-snoopDisables IGMP snooping for a specific VLAN when snooping is enabled globally.
multicast disable-pimsm-snoopDisables PIM Sparse mode (SM) snooping for a specific VLAN when snooping is enabled
globally.
multicast fast-convergenceConfigures a device to listen to topology change events in Layer 2 protocols such
as spanning tree, and then send general queries to shorten the convergence time.
multicast fast-leave-v2Configures fast leave for IGMPv2.
- multicast limit
Configures the maximum number of multicast
packets allowed per second and generates infralogs for pps packets.
multicast mvrEnables Multicast VLAN Registration (MVR)
on a VLAN.
multicast pimsm-snoopingEnables PIM SM snooping for a specific VLAN.
multicast port-versionConfigures the IGMP version on individual ports in a VLAN.
multicast proxy-offTurns off proxy activity for static groups.
multicast6 querier-addressConfigures the IPv6 querier address per VLAN.
multicast querier-addressConfigures the IPv4 querier address per VLAN.
multicast router-portConfigures a static router Ethernet port or LAG to receive multicast control and data
packets.
- multicast sdvoe
Enables Software Defined
Video-over-Ethernet (SDVoE) for an IGMP-snooping-enabled VLAN.
multicast static-groupConfigures a static IGMP group for a VLAN.
- multicast static-grp-fwd-disable
Disables multicast static group forwarding
at the VLAN level.
- multicast static-mcache profile
Selects a profile for adding multicast
addresses to the HW forwarding database.
multicast trackingEnables tracking and fast leave on VLANs.
multicast versionConfigures the IGMP version for snooping on a VLAN.
multicast6Configures the multicast listening discovery (MLD) mode on the device to active or
passive.
multicast6 disable-mld-snoopDisables multicast listening discovery (MLD) snooping for a specific VLAN when snooping
is enabled globally.
multicast6 disable-pimsm-snoopWhen PIM6 SM snooping is enabled globally, overrides the global setting and disables
it for a specific VLAN.
multicast6 fast-convergenceConfigures a device to listen to topology change events in Layer 2 protocols such
as spanning tree, and then send general queries to shorten the convergence time.
multicast6 fast-leave-v1Configures fast leave for multicast listening discovery Version 1 (MLDv1)
multicast6 pimsm-snoopingEnables PIM6 SM traffic snooping on a VLAN.
multicast6 port-versionConfigures the multicast listening discovery (MLD) version on individual ports in
a VLAN.
multicast6 proxy-offTurns off multicast listening discovery (MLD) proxy activity.
multicast6 router-portConfigures a static router port to receive IPv6 multicast control and data packets.
multicast6 static-groupConfigures a static multicast listening discovery (MLD) group for a VLAN.
multicast6 trackingEnables tracking and fast leave for IPv6 multicast listening discovery Version 2 (MLDv2)
on VLANs.
multicast6 versionConfigures the multicast listening discovery (MLD) version for snooping on a VLAN.
-
multipath
Changes load sharing to apply to only iBGP or eBGP paths, or to support load sharing
among paths from different neighboring autonomous systems.
multi-spx-lagChanges both ends of live SPX ports to form an SPX LAG.
multi-spx-portChanges both ends of a live SPX LAG into SPX ports.
multi-stack-port Converts both ends of a trunked link between stacking trunks in a traditional stack
to links between untrunked ports.
multi-stack-trunk Creates both ends of a multi-port stacking trunk on a live stack.
mvrp applicant-mode Configures the applicant state of the port that defines the Multiple VLAN Registration
Protocol (MVRP) participation of the port.
mvrp enable
Enables Multiple VLAN Registration Protocol (MVRP) at the system level.
mvrp enable (Interface)
Enables Multiple VLAN Registration Protocol (MVRP) on an interface or on multiple
physical interfaces.
mvrp point-to-point
Configures a point-to-point interface for Multiple VLAN Registration Protocol (MVRP).
mvrp registration-mode forbidden Forbids the VLAN from participating in Multiple VLAN Registration Protocol (MVRP)
and neither declares nor registers any VLANs on the port, ignoring all the registration
messages received for those VLANs.
mvrp timer
Defines the interval at which Multiple VLAN Registration Protocol (MVRP) updates (VLAN
join or VLAN leave messages) are transmitted at the system level or interface level
to be used for the particular MVRP instance.
mvrp spanning-tree Configures the Multiple VLAN
Registration Protocol (MVRP) dynamic VLANs to be enabled with the Spanning Tree
Protocol
(STP) or Rapid Spanning Tree Protocol (RSTP).
mvrp vlan-creation-disable
Disables dynamic VLAN creation by
Multiple VLAN Registration Protocol (MVRP) unless the VLAN that is being learned
is already
defined in the device.