TP-Link T2500G-10TS T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide
TP-Link T2500G-10TS Manual
View all TP-Link T2500G-10TS manuals
Add to My Manuals
Save this manual to your list of manuals |
TP-Link T2500G-10TS manual content summary:
- TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 1
CLI Reference Guide T2500G-10TS (TL-SG3210) 1910012660 REV2.1.0 December 2019 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 2
COPYRIGHT & TRADEMARKS Specifications are subject to change without notice. is a registered trademark of TP-Link Technologies Co., Ltd. Other brands and product names are trademarks or registered trademarks of their respective holders. No part of the specifications may be reproduced - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 3
line ...20 2.2 media-type rj45 ...21 Chapter 3 User Interface 22 3.1 3.2 3.3 3.4 3.5 3.6 3.7 3.8 3.9 3.10 enable...22 service password-encryption ...22 enable password ...23 enable secret ...24 configure...25 exit ...25 end ...26 clipaging...26 history ...27 history clear ...27 Chapter 4 User - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 4
33 5.34 5.35 5.36 system-time manual...34 system-time ntp...34 system-time dst predefined...36 system-time dst date...37 system-time dst recurring ...38 hostname...39 location ...40 contact-info ...40 ip address ...41 ip address-alloc...42 reset...43 service reset-disable ...43 reboot ...44 reboot - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 5
61 show system-time ntp...62 show cable-diagnostics interface 62 show cpu-utilization...63 show memory-utilization ...63 Chapter 6 EEE Configuration Commands 64 6.1 eee...64 6.2 show interface eee ...64 Chapter 7 SDM Template Commands 66 7.1 sdm prefer ...66 7.2 show sdm prefer ...67 Chapter - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 6
91 ddm shutdown ...91 ddm temperature_threshold...92 ddm voltage_threshold ...93 ddm bias_current_threshold...94 ddm tx_power_threshold ...95 ddm rx_power_threshold ...96 show ddm configuration ...97 show ddm status ...98 Chapter 13 Etherchannel Commands 99 13.1 13.2 13.3 13.4 13.5 13.6 13.7 13 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 7
notification 109 mac address-table max-mac-count 109 mac address-table notification (interface 111 mac address-table security ...112 mac address-table vlan-security 113 show mac address-table ...114 clear mac address-table...114 show mac address-table aging-time 115 show mac address-table max - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 8
drop-unknown 148 ip igmp snooping header-validation 149 ip igmp snooping vlan-config 149 ip igmp snooping vlan-config (immediate-leave 151 ip igmp snooping vlan-config (report-suppression 151 ip igmp snooping vlan-config (router-ports-forbidden 152 ip igmp snooping vlan-config (rport interface - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 9
25 20.26 20.27 ip igmp snooping vlan-config (static 154 ip igmp snooping vlan-config (querier 155 ip igmp snooping (interface) ...156 ip igmp snooping max-groups 157 ip igmp snooping immediate-leave 158 ip igmp snooping authentication 159 ip igmp snooping accounting 159 ip igmp profile ...160 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 10
ipv6 mld snooping ...182 show ipv6 mld snooping interface 182 show ipv6 mld snooping vlan 183 show ipv6 mld snooping groups 184 show ipv6 mld profile ...184 Chapter 22 -config 197 spanning-tree mode...198 spanning-tree mst configuration 199 instance...200 name ...200 revision ...201 spanning- - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 11
23.18 23.19 23.20 23.21 23.22 23.23 23.24 23.25 23.26 23.27 spanning-tree bpduguard ...207 spanning-tree guard loop ...208 spanning-tree guard root ...209 spanning-tree guard tc ...209 spanning-tree mcheck ...210 show spanning-tree active ...211 show spanning-tree bridge ...211 show spanning-tree - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 12
...243 show interface vlan...244 show ip interface ...244 show ip interface brief ...245 show ip route...245 show ip route specify...246 show ip route summary...247 show ipv6 interface ...247 show ipv6 route...248 show ipv6 route summary...248 Chapter 28 IPv6 Address Configuration Commands 250 28 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 13
30.17 30.18 30.19 30.20 service dhcp server ...266 ip dhcp server extend-option capwap-ac-ip 266 ip dhcp server extend-option vendor-class-id 267 ip dhcp server exclude-address 268 ip dhcp server pool ...269 ip dhcp server ping timeout ...269 ip dhcp server ping packets...270 network...271 lease - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 14
...284 ip helper-address ...285 ip dhcp relay information...285 ip dhcp relay information strategy 286 ip dhcp relay information format 287 ip dhcp relay information circuit-id 288 ip dhcp relay information remote-id 288 ip dhcp relay default-interface 289 ip dhcp relay vlan ...290 show ip dhcp - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 15
Commands 314 35.1 35.2 35.3 35.4 35.5 35.6 35.7 voice vlan ...314 voice vlan (interface) ...314 voice vlan priority ...315 voice vlan oui...316 show voice vlan ...316 show voice vlan oui-table...317 show voice vlan interface...317 Chapter 36 Auto VoIP Commands 319 36.1 36.2 36.3 36.4 36.5 36 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 16
server download key 338 show ip http configuration ...339 show ip http secure-server ...340 Chapter 39 SSH Commands 341 39.1 39.2 39.3 39.4 39.5 39.6 39.7 39.8 39.9 ip ssh server ...341 ip ssh port...341 ip ssh version ...342 ip ssh algorithm ...343 ip ssh timeout...343 ip ssh max-client ...344 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 17
...357 aaa authentication enable...358 aaa authentication dot1x default 359 aaa accounting dot1x default 360 show aaa authentication...360 show aaa accounting ssh) ...366 enable authentication (console 367 ip http login authentication ...367 ip http enable authentication 368 show aaa global... - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 18
dot1x auth-protocol ...374 dot1x vlan-assignment ...375 dot1x accounting ...376 dot1x mab ...377 dot1x guest-vlan...377 dot1x timeout quiet-period ... ...393 access-list resequence ...393 access-list mac ...394 access-list ip ...396 access-list combined ...397 access-list ipv6 ...399 access-list - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 19
IMPB Commands 409 47.1 47.2 47.3 47.4 47.5 47.6 47.7 ip source binding ...409 ip dhcp snooping ...410 ip dhcp snooping vlan...411 ip dhcp snooping max-entries 411 show ip source binding ...412 show ip dhcp snooping ...413 show ip dhcp snooping interface 413 Chapter 48 IPv6 IMPB Commands 415 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 20
-period 448 ethernet-oam link-monitor frame 449 ethernet-oam link-monitor frame-period 450 ethernet-oam link-monitor frame-seconds 451 ethernet-oam remote-failure 452 clear ethernet-oam statistics 453 clear ethernet-oam event-log 454 show ethernet-oam configuration 454 show ethernet-oam - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 21
snmp ...470 snmp-server traps ...471 snmp-server traps ddm ...472 snmp-server traps vlan ...473 snmp-server traps security ...474 snmp-server traps acl ...475 snmp-server traps ip...475 snmp-server traps link-status 476 rmon history ...477 rmon event ...478 rmon alarm ...479 rmon statistics ...480 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 22
12 57.13 ip arp inspection ...487 ip arp inspection validate ...487 ip arp inspection vlan ...488 ip arp inspection vlan logging 489 ip arp inspection trust...490 ip arp inspection limit-rate ...490 ip arp inspection burst-interval 491 ip arp inspection recover ...492 show ip arp inspection...492 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 23
59.9 59.10 59.11 59.12 59.13 59.14 59.15 logging monitor ...507 logging monitor level ...507 clear logging ...508 show logging local-config...509 show logging loghost...509 show logging buffer...510 show logging flash ...510 XXII - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 24
this Guide stands for T2500G-10TS JetStream 8-Port Gigabit L2 Managed Switch with 2 SFP Slots without any explanation. Overview of this Guide Chapter System Configuration Commands Provide information about the commands used for configuring the System information and System IP, reboot and reset the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 25
information about the commands used for configuring LAG (Link Aggregation Group) and LACP (Link Aggregation Control Protocol). Chapter 13: MAC Address Commands Provide information about the commands used for Address configuration. Chapter 14 IEEE 802.1Q VLAN Commands Provide information about the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 26
. Chapter 29: Bandwidth Commands Provide information about the commands used for configuring the Bandwidth Control. Chapter 30: Voice VLAN Commands Provide information about the commands used for configuring Voice VLAN. Chapter 31: Auto VoIP Commands Provide information about the commands used - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 27
Chapter 41: ACL Commands Provide information about the commands used for configuring the ACL (Access Control List). Chapter 42: IPv4 IMPB Commands Provide information about the commands used for binding the IP address, MAC address, VLAN and the connected Port number of the Host together. Chapter 43 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 28
USB port is required. The USB driver is provided on the resource CD. Follow the InstallSheild Wizard to accomplish the installation. The TP-Link USB Console Driver supports the following Windows operating systems: ▪ 32-bit Windows XP SP3 ▪ 64-bit Windows XP ▪ 32-bit Windows Vista ▪ 64-bit Windows - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 29
▪ 64-bit Windows 8.1 After the TP-Link USB Console Driver is installed, the PC's USB Hardware and Sound -> Device Manager -> Ports ->USB Serial Port. Figure 1-1 USB Serial Port Number 4. Configure the terminal emulation program or the terminal to use the following settings: ▪ Baud rate: 38400 bps ▪ - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 30
▪ Stop bits: 1 ▪ Flow control: none 5. Type the Username and Password in the Hyper Terminal window. The default value for both of them are admin. Press Enter in the main window and "T2500G-10TS>" will appear indicating that you have successfully logged in to the switch and you can use the CLI now. - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 31
press the Enter button. Figure 1-3 Run Window 2. Telnet the switch's IP address (factory setting is 192.168.0.1) in the prompt cmd window and press Enter. in the telnet command 3. Type in the User name and Password (the factory default value for both of them are admin) and press the Enter button to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 32
are two authentication modes to set up an SSH connection: Password Authentication Mode: It requires username and password, which are both admin by default. Key Authentication Mode: It requires a public key for the switch and a private key for the SSH client software. You can generate the public - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 33
Open the software to log on to the interface of PuTTY. Enter the IP address of the switch into Host Name field; keep the default value 22 in the Port field; select SSH as the Connection type. Figure Privileged EXEC Mode, so you can continue to configure the switch. Figure 1-9 Log on the Switch 10 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 34
■ Key Authentication Mode 1. Select the key type and key length, and generate SSH key. Figure 1-10 Generate SSH Key Note: 1. The key length is in the range of 512 to 3072 bits. 2. During the key generation, randomly moving the mouse quickly can accelerate the key generation. 11 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 35
2. After the key is successfully generated, please save the public key and private key to a TFTP server. Figure 1-11 Save the Generated Key 12 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 36
3. Log on to the switch by Telnet and download the public key file from the TFTP server to the switch, as the following figure shows: Figure 1-12 Download the Public Key Note: 1. The key type should accord with the type of the key file. 2. The SSH key downloading can not be interrupted. 13 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 37
4. After the public key is downloaded, please log on to the interface of PuTTY and enter the IP address for login. Figure 1-13 SSH Connection Config 14 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 38
downloaded. Figure 1-15 Log on the Switch 1.2 CLI Command Modes The CLI is divided into different command modes: User EXEC Mode, Privileged EXEC Mode, Global Configuration Mode, Interface Configuration Mode and VLAN Configuration Mode. 15 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 39
Configuration Mode can also be divided into Interface Ethernet, Interface link Configuration Mode Use the configure command to enter this mode from Privileged EXEC mode. T2500G-10TS> T2500G-10TS# T2500G-10TS(config Configuration mode. Use the vlan vlan-list to access VLAN Configuration mode. 16 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 40
mode. Use the end command or press Ctrl+Z to return to Privileged EXEC mode. Enter the exit or the # command to return to Global Configuration mode. T2500G-10TS(config-vlan)# Use the end command or press Ctrl+Z to return to Privileged EXEC mode. Enter the exit command or the # command to return to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 41
Ethernet ports. c). Interface link-aggregation: Configure parameters for a link-aggregation, such as broadcast storm. d). Interface range link-aggregation: Configure parameters for multi-trunks. e). Interface vlan: Configure parameters for the vlan-port. ▪ VLAN Configuration Mode: In this mode - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 42
address must be enter in the format of xx:xx:xx:xx:xx:xx. ▪ One or several values can be typed for a port-list or a vlan-list using comma to separate. Use a hyphen to designate a range of values, for instance, 1/0/1, 1/0/3-5, 1/0/7 indicates choosing port 1/0/1, 1/0/3, 1/0/4, 1/0/5, 1/0/7. 19 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 43
users have access to these commands. Example Enter the Console port configuration mode and configure the console port 0: T2500G-10TS(config)#line console 0 Enter the Virtual Terminal configuration mode so as to prepare further configurations such as password and login mode for virtual terminal 0 to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 44
default configuration, please use no media-type rj45 command. Syntax media-type rj45 no media-type rj45 Command Mode Line Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Enable the RJ-45 console input: T2500G-10TS(config)# line console 0 T2500G - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 45
EXEC Mode from User EXEC Mode: T2500G-10TS>enable Enter password: T2500G-10TS# 3.2 service password-encryption Description The service password-encryption command is used to encrypt the password when the password is defined or when the configuration is written, using the symmetric encryption - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 46
Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Enable the global encryption function: T2500G-10TS(config)# service type. 0 indicates that an unencrypted password will follow. By default, the encryption type is 0. password -- A string with 31 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 47
service password-encryption, the password in the configuration file will be displayed in the symmetric encrypted form. Example Set the super password as "admin" and unencrypted to access Privileged EXEC Mode from User EXEC Mode: T2500G-10TS . The special characters are By default, it is empty. 5 -- - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 48
Requirement Only Admin, Operator and Power User level users have access to these commands. Example Access Global Configuration Mode from Privileged EXEC Mode: T2500G-10TS# configure T2500G-10TS(config)# 3.6 exit Description The exit command is used to return to the previous Mode from the current - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 49
Requirement Only Admin level users have access to these commands. Example Return to Privileged EXEC Mode from Interface Configuration Mode: T2500G-10TS(config-if)#end T2500G-10TS# 3.8 clipaging Description The clipaging command is used to enable the pause function for the screen display. If you - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 50
the switch is powered. Syntax history Command Mode Privileged EXEC Mode and any Configuration Mode Privilege Requirement None. Example Show the commands you have entered in the current mode: T2500G-10TS (config)# history 1 history 3.10 history clear Description The history clear command is used - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 51
command. Syntax history clear Command Mode Privileged EXEC Mode and any Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Clear the commands you have entered in the current mode: T2500G-10TS(config)#history clear 28 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 52
means that you can only view some of the settings of different functions without the right to edit or modify. It is "admin" by default. For more details about privilege restrictions, please refer to the Privilege Requirement part in each command. 0 -- Specify the encryption type. 0 indicates that an - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 53
encryption function is enabled in service password-encryption, the password in the configuration file will be displayed in the symmetric encrypted form. Example Add and enable a new admin user named "tplink", of which the password is "admin" and unencrypted: T2500G-10TS(config)#user name tplink - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 54
, only the latest configured password will take effect. Example Add and enable a new admin user named "tplink", of which the password is "admin". The password will be displayed in the encrypted form. T2500G-10TS(config)#user name tplink privilege admin secret 0 admin 4.3 service password-recovery - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 55
its startup. Syntax service password-recovery no service password-recovery Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Enable the switch's password-recovery feature: T2500G-10TS(config)# service password-recovery 4.4 show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 56
of the users, including access-control, max-number and the idle-timeout, etc. Syntax show user configuration Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the security configuration information of the users: T2500G-10TS(config)# show user - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 57
the time is 12/20/2010 17:30:35 T2500G-10TS(config)# system-time manual 12/20/2010-17:30:35 5.2 system-time ntp Description The system-time ntp command is used to configure the time zone and the IP address for the NTP Server. The switch will get UTC automatically if it has connected - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 58
Solomon Is., New Caledonia, Vladivostok. UTC+12:00 -- TimeZone for Fiji, Magadan, Auckland, Welington. UTC+13:00 -- TimeZone for Nuku'alofa, Samoa. ntp-server -- The IP address for the Primary NTP Server. 35 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 59
Configure the system time mode as NTP, the time zone is UTC-12:00, the primary NTP server is 133.100.9.2 and the secondary NTP server is 139.78.100.163, the fetching-rate is 11 hours: T2500G-10TS Australia, Europe and New-Zealand respectively. The default value is Europe. Following are the time - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 60
the daylight saving time as USA standard: T2500G-10TS(config)#system-time dst predefined USA 5.4 system-time dst date Description The system-time dst date command is used to configure the one-off daylight saving time. The start date is in the current year by default. The time range of the daylight - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 61
by default. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Configure the daylight saving time from zero clock, Apr 1st to zero clock Oct 1st and the offset is 30 minutes in 2015: T2500G-10TS(config)# system - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 62
] no hostname Parameter hostname -- System Name. The length of the name ranges from 1 to 32 characters. By default, it is the device name, for example "T2500G-10TS". Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. 39 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 63
characters at most. It is "SHENZHEN" by default. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Configure the system location as SHENZHEN: T2500G-10TS(config)# location SHENZHEN 5.8 contact-info Description The - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 64
tp-link.com: T2500G-10TS(config)# contact-info www.tp-link.com 5.9 ip address Description This ip address command is used to configure the IP address and IP subnet mask for the specified interface manually. The interface type includes: routed port, port-channel interface, loopback interface and VLAN - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 65
Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enter the management VLAN 1 and enable the DHCP Client function on the management interface: T2500G-10TS(config)# interface vlan 1 T2500G-10TS(config-if)# ip address - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 66
10TS(config)# interface vlan 1 T2500G-10TS(config-if)# no ip address 5.11 reset Description The reset command is used to reset the switch's software. After resetting, all configuration of the switch will restore to the factory defaults and your current settings will be lost. Syntax reset [ except-ip - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 67
these commands. Example Disable the reset function of console port or reset button: T2500G-10TS(config)# service reset-disable 5.13 reboot Description The Reboot the switch: T2500G-10TS# reboot 5.14 reboot-schedule Description This reboot-schedule command is used to configure the switch to reboot - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 68
; otherwise the switch will reboot at the time point the next day. Example Specify the switch to save the configuration files and reboot in 200 minutes: T2500G-10TS(config)# reboot-schedule in 200 save_before_reboot 5.15 copy running-config startup-config Description The copy running-config startup - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 69
148 and name this file config.cfg: T2500G-10TS# copy startup-config tftp ip-address 192.168.0.148 filename config Backup the configuration files to TFTP server with the IP fe80::1234 and name this file config.cfg: T2500G-10TS# copy startup-config tftp ip-address fe80::1234 filename config 5.17 copy - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 70
from TFTP server with the IP 192.168.0.148: T2500G-10TS# copy tftp startup-config ip-address 192.168.0.148 filename config Download the configuration file named as config.cfg to the switch from TFTP server with the IP fe80::1234 T2500G-10TS# copy tftp startup-config ip-address fe80::1234 filename - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 71
Admin level users have access to these commands. Example Export the backup configuration file of the switch to the TFTP server with the IP 192.168.0.148 and name the file config.cfg: T2500G-10TS# copy backup-config tftp ip-address 192.168.0.148 filename config 5.19 copy backup-config startup-config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 72
. Command Mode Privileged EXEC Mode Privilege Requirement Only Admin level users have access to these commands. Example Download the configuration file named config.cfg from the TFTP server with the IP 192.168.0.148: T2500G-10TS# copy tftp backup-config ip-address 192.168.0.148 filename config 49 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 73
-- Specify the image file to be configured. By default, the image1.bin is the startup image T2500G-10TS(config)# boot application filename image2 startup 5.23 boot config Description The boot config command is used to configure the configuration file as startup configuration or backup configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 74
configuration file to be configured. By default, the config1.cfg is the startup image and the config2.cfg is the backup image. startup | backup-- Specify the property of the configuration. Command Mode Global Configuration Example Configure the config2.cfg as the startup image: T2500G-10TS(config)# - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 75
firmware upgrade ip-address ip-addr filename name Parameter ip-addr -- IP Address of the TFTP server. Both IPv4 and IPv6 addresses are supported, for the TFTP server with the IP address fe80::1234, but do not reboot the switch: T2500G-10TS# firmware upgrade ip-address fe80::1234 filename firmware. - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 76
boot autoinstall start no boot autoinstall start Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Start Auto Install function: T2500G-10TS(config)# boot autoinstall start 5.27 boot autoinstall persistent-mode Description - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 77
Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure Auto Install function to auto-save new configuration file to start-up configuration file: T2500G-10TS(config)# boot autoinstall auto-save 5.29 boot autoinstall auto-reboot Description The boot - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 78
Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure TFTP retry 2 times when download files failed: T2500G-10TS(config)# boot autoinstall retry-count 2 5.31 show boot autoinstall Description The show boot autoinstall command is used to display - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 79
None. Example Display the configuration file which downloaded by Auto Install: T2500G-10TS# show boot autoinstall downloaded-config 5.33 ping Description The ping command is used to test the connectivity between the switch and one node of the network. Syntax ping [ ip | ipv6 ] { ip_addr } [ -n count - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 80
test, the connection between the switch and the network device is failed to establish: T2500G-10TS# ping 192.168.0.131 -n 8 -l 512 To test the connectivity between the switch and the network device with the IP fe80::1234, please specify the count (-l) as 512 bytes and count (-i) as 1000 milliseconds - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 81
failed to establish: T2500G-10TS# tracert 192.168.0.131 20 Test the connectivity between the switch and the network device with the IP fe80::1234. If Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the system information: T2500G-10TS# show system-info 58 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 82
Only Admin level users have access to these commands. Example Display the system image files' information: T2500G-10TS# show image-info 5.37 show boot Description The show boot command is used to display the boot configuration of the system. Syntax show boot Command Mode Privileged EXEC Mode and Any - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 83
show running-config Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Display the system current operating configuration: T2500G-10TS# show running-config 5.39 show startup-config Description The show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 84
time information of the switch. Syntax show system-time Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the time information of the switch T2500G-10TS# show system-time 5.41 show system-time dst Description The show system-time dst command is - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 85
and Any Configuration Mode Privilege Requirement None. Example Display the NTP mode configuration information of the switch: T2500G-10TS# show system of the cable connected to the switch, locate and diagnose the trouble spot of the network. Syntax show cable-diagnostics interface { fastEthernet - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 86
1minute/5minutes. Syntax show cpu-utilization Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the CPU utilization information of the switch: T2500G-10TS# show cpu-utilization 5.45 show memory-utilization Description The show memory-utilization - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 87
access to these commands. Example Enable EEE on port 1/0/1: T2500G-10TS(config)#interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#eee 6.2 show interface eee Description The show interface eee command is used to display the EEE configuration on each port. Syntax show interface eee [ fastEthernet - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 88
Privilege Requirement None. Example Display the EEE configuration of each port T2500G-10TS# show interface eee 65 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 89
". enterpriseV6 -- Specify the SDM template used in the switch as "enterpriseV6". Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Specify the SDM template as enterpriseV4: T2500G-10TS(config)# sdm prefer enterpriseV4 66 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 90
sdm prefer { used | default | enterpriseV4 | enterpriseV6 } Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Display the resource allocation of the template currently in use, and the template that will become active after a reboot: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 91
-range named "tRange1" for the switch: T2500G-10TS(config)# time-range tRange1 8.2 absolute Description The absolute command is used to create an absolute time-range for the time-range of the switch. To delete the corresponding absolute time-range configuration, please use no absolute command. 68 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 92
T2500G-10TS(config)#time-range tRange1 T2500G-10TS(config-time-range)#absolute from 05/05/2017 to 10/05/2017 8.3 periodic Description The periodic command is used to create a periodic mode time-range for the time-range of the switch. To delete the corresponding periodic mode time-range configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 93
and Power User level users have access to these commands. Example Configure the time-range named "tRange2" as a periodic time-range and specify the date and time as 8:30 to 12:00 on weekends: T2500G-10TS(config)#time-range tRange2 T2500G-10TS(config -time-range)#periodic start 08:30 end 12:00 day - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 94
and Power User level users have access to these commands. Example Create a holiday named "holiday1" and configure the start date as October 1st and the end date as October 3rd: T2500G-10TS(config)# holiday holiday1 start-date 10/01 end-date 10/03 8.6 show holiday Description The show holiday - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 95
Example Display the defined holiday: T2500G-10TS# show holiday 8.7 show time-range Description The show time- from 1 to 16 characters. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the defined time-range: T2500G-10TS# show time-range 72 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 96
Power User level users have access to these commands. Example To enter the Interface gigabitEthernet Configuration Mode and configure port 2: T2500G-10TS(config)# interface gigabitEthernet 1/0/2 9.2 interface range gigabitEthernet Description The interface range gigabitEthernet command is used to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 97
one port. Example To enter the Interface range gigabitEthernet Configuration Mode, and configure ports 1, 2, 3, 6, 7 and 9 at the same time by adding them to one port-list: T2500G-10TS(config)# interface range gigabitEthernet 1/0/1-3,1/0/6-7,1/0/9 9.3 description Description The description command - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 98
-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# description Port_5 9.4 shutdown Description The shutdown command is used to disable an Ethernet port. To enable this port again, please use no shutdown command. Syntax shutdown no shutdown Command Mode Interface Configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 99
flow-control function for port 1/0/3: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# flow-control 9.6 duplex Description The duplex command is used to configure the Duplex Mode for an Ethernet port. To return to the default configuration, please use no duplex command - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 100
from 1518 to 9216 bytes, and the default is 1518 bytes. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Globally configure the size of jumbo frames as 9216: T2500G-10TS(config)# jumbo-size 9216 77 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 101
100Mbps, 1000Mbps and Auto negotiation mode (default). Command Mode Interface Configuration Mode (interface fastEthernet / interface range these commands. Example Configure the Speed Mode as 100Mbps for port 1/0/3: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# speed - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 102
Only Admin and Operator level users have access to these commands. Example Configure port 1/0/6 to collocate with electrical interface modules: T2500G-10TS(config)# interface gigabitEthernet 1/0/6 T2500G-10TS(config-if)# serdes-mode sgmii 9.10 clear counters Description The clear counters - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 103
of all fiber ports. Syntax show fiber ports Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the information of all fiber ports: T2500G-10TS(config)# show fiber ports 9.12 show interface status Description The show interface status command is - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 104
counters Display the statistics information of port 1/0/2: T2500G-10TS(config)# show interface counters gigabitEthernet 1/0/2 9.14 show interface configuration Description The show interface configuration command is used to display the configurations of all ports and port channels, including Port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 105
and Any Configuration Mode Privilege Requirement None. Example Display the configurations of all Ethernet ports and port channels: T2500G-10TS(config)# show interface configuration Display the configurations of port 1/0/2: T2500G-10TS(config)# show interface configuration gigabitEthernet 1/0/2 82 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 106
The port isolation command is used to configure the forward port/port channel list of on its list. To delete the corresponding configuration, please use no port isolation command. Interface Configuration Mode of port 1/0/5: T2500G-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 107
its forward port list, ranging from 1 to 6. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the forward-list of port 1/0/2: T2500G-10TS# show port isolation interface gigabitEthernet 1/0/2 Display the forward-list of all Ethernet ports and - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 108
Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the loopback detection function globally: T2500G-10TS of sending loopback detection packets. It ranges from 1 to 1000 seconds. By default, this value is 30. 85 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 109
2 to 1000000 seconds. By default, this value is 90. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the recovery-time as 70 seconds: T2500G-10TS(config)# loopback-detection recovery-time - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 110
detection function of ports 1-3: T2500G-10TS(config)# interface range gigabitEthernet 1/0/1-3 T2500G-10TS(Config-if-range)# loopback-detection 11.5 loopback-detection config process-mode Description The loopback-detection config process-mode command is used to configure the process-mode for the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 111
loop is detected and no packets can pass through the port. vlan-based -- When a loop is detected, the switch will Configure the loopback detection process-mode as port-based, and configure the recovery mode as manual for port 1/0/2: T2500G-10TS(config)# interface gigabitEthernet 1/0/2 T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 112
. Syntax show loopback-detection global Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the global configuration of loopback detection function: T2500G-10TS# show loopback-detection global 11.8 show loopback-detection interface Description The - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 113
and block status of the VLAN which the specified port belongs to. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configuration of loopback detection function and the status of all ports: T2500G-10TS# show loopback-detection interface - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 114
no ddm state enable Default Setting Enabled on all the SFP ports. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet) Example Enable DDM function on port 1/0/5: T2500G-10TS(config)#interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)#ddm state - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 115
an exceeding alarm threshold event is encountered. Default Setting none, which means the port will T2500G-10TS(config)#interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)#ddm shutdown warning 12.3 ddm temperature_threshold Description The ddm temperature_threshold command is used to configure - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 116
in Celsius. Default Setting None. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet ) Example Configure the high_alarm threshold of DDM temperature on the port 1/0/5 as 5: T2500G-10TS(config)#interface gigabitEthernet 1/0/5 T2500G-10TS(config-if - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 117
in Volt. Default Setting None. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet ) Example Configure the high_alarm threshold of DDM voltage on the port 1/0/5 as 5: T2500G-10TS(config)#interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)#ddm - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 118
value in mA. Default Setting None. Command Mode Interface Configuration Mode (interface fastEthernet / interface range fastEthernet / interface gigabitEthernet / interface range gigabitEthernet) Example Configure the high_alarm threshold of DDM Bias Current on the port 1/0/5 as 5: T2500G-10TS(config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 119
in mW. Default Setting None. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet ) Example Configure the high_alarm threshold of DDM Tx Power on the port 1/0/5 as 5: T2500G-10TS(config)#interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)#ddm - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 120
the threshold of the DDM Tx Power value. rx_power -- Displays the threshold of the DDM Rx Power value. Command Mode Privileged EXEC Mode and Any Configuration Mode Example View the DDM configuration state: T2500G-10TS(config)#show ddm configuration state View the threshold of the DDM Voltage value - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 121
the digital diagnostic monitoring status of SFP modules inserting into the switch's SFP ports. Syntax show ddm status Command Mode Privileged EXEC Mode and Any Configuration Mode Example View the DDM status: T2500G-10TS(config)#show ddm status 98 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 122
aggregation and disaggregation by exchanging LACP packets with its partner. The switch can dynamically group similarly configured ports into a single logical link, which will highly extend the bandwidth and flexibly balance the load. 13.1 channel-group Description The channel-group command is used - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 123
(config)# interface range gigabitEthernet 1/0/2-4 T2500G-10TS(config-if-range)# channel-group 1 mode on 13.2 port-channel load-balance Description The port-channel load-balance command is used to configure the Aggregate Arithmetic for LAG. To return to the default configurations, please use no port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 124
Arithmetic for LAG as "src-dst-ip": T2500G-10TS(config)# port-channel load-balance src-dst-ip 13.3 lacp system-priority Description The lacp system-priority command is used to configure the LACP system priority globally. To return to the default configurations, please use no lacp system-priority - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 125
32768 by default. Command Mode Interface Configuration Mode ( T2500G-10TS(config)# interface range gigabitEthernet 1/0/1-3 T2500G-10TS(config-if-range)# lacp port-priority 1024 Configure the LACP port priority as 2048 for port 4: T2500G-10TS(config)# interface gigabitEthernet 1/0/4 T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 126
The EtherChannel information in summary. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the detailed information of EtherChannel Group 1: T2500G-10TS(config)# show etherchannel 1 detail 13.6 show etherchannel load-balance Description The show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 127
-group-num -- The EtherChannel Group number, ranging from 1 to 14. By default, it is empty, and will display the information of all LACP groups. internal and Any Configuration Mode Privilege Requirement None. Example Display the internal LACP information of EtherChannel Group 1: T2500G-10TS(config)# - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 128
Example Display the LACP system priority: T2500G-10TS(config)# show lacp sys-id 105 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 129
be added or removed manually, independent of the aging Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Add a static Mac address entry to bind the MAC address 00:02:58:4f:6c:23, VLAN1 and port 1/0/1 together: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 130
Delete the MAC addresses on VLAN 1: T2500G-10TS(config)# no mac address-table dynamic vid 1 14.3 mac address-table aging-time Description The mac address-table aging-time command is used to configure aging time for the dynamic address. To return to the default configuration, please use no mac - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 131
address can be added or removed manually, independent of the aging time Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Add a filtering address entry of which VLAN ID is 1 and MAC address is 00:1e:4b:04:01:5d: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 132
2 seconds: T2500G-10TS(config)# mac address-table notification global-status enable table-full-status enable interval 2 14.6 mac address-table max-mac-count Description The mac address-table max-mac-count command is used to configure the Port Security. To return to the default configurations, please - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 133
out of the influence of the aging time and can only be deleted manually too. However, the learned entries will be saved even the switch is rebooted of the MAC addresses reaches the maximum learning number on the port. By default, this function is disabled. • forward: The packets will be forward but - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 134
be dropped: T2500G-10TS(config)# interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)# mac address-table max-mac-count max-number 30 mode static status drop 14.7 mac address-table notification (interface) Description The mac address-table notification command is used to configure the MAC change - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 135
-10TS(config)# interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# mac address-table notification learn-mode-change enable 14.8 mac address-table security Description The mac address-table security command is used to configure the maximum number of MAC address cane be learned in specified VLANs - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 136
Only Admin, Operator and Power User level users have access to these commands. Example Configure the max learned MAC address number is VLAN 2 as 1000, and drop the packets that have no match in the MAC address table: T2500G-10TS(config)# mac address-table security vid 2 max-learn 1000 drop 14.9 mac - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 137
T2500G-10TS(config)# mac address-table vlan-security vid 2 max-learn 1000 14.10 show mac . By default, all the entries are displayed. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the information of all address entries: T2500G-10TS(config)# - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 138
of the MAC address. Syntax show mac address-table aging-time Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the Aging Time of the MAC address: T2500G-10TS(config)# show mac address-table aging-time 14.13 show mac address-table max-mac-count - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 139
Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the security configuration of all ports: T2500G-10TS(config)# show mac address-table max-mac-count all Display the security configuration of port 1/0/1: T2500G-10TS(config)# show mac address-table max - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 140
which the MAC entries belong to. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the total MAC entry information in different VLANs: T2500G-10TS(config)# show mac address-table count 14.16 show mac address-table address Description The show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 141
. Syntax show mac address-table vlan vid Parameter vid --The specified VLAN id. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the MAC address configuration of vlan 1: T2500G-10TS(config)# show mac address-table vlan 1 14.18 show mac address - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 142
mac address-table vlan-security [ vid vid ] Parameter vid --The specified VLAN id. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the MAC address security configuration of VLAN 1: T2500G-10TS(config)# show mac address-table vlan- security vid - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 143
of 2-3, 5. It is multi-optional. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create VLAN 2-10 and VLAN 100: T2500G-10TS(config)# vlan 2-10,100 Delete VLAN 2: T2500G-10TS(config)# no vlan 2 120 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 144
16 characters at most. Command Mode VLAN Configuration Mode(VLAN) Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Specify the name of VLAN 2 as "group1": T2500G-10TS(config)# vlan 2 T2500G-10TS(config-vlan)# name group1 15.3 vlan_trunk - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 145
Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable VLAN Trunk for port 1/0/3: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 146
have access to these commands. Example Configure Gigabit Ethernet port 1/0/4 whose link type is "general" to VLAN 2 and its egress-rule as "tagged": T2500G-10TS(config)#interface gigabitEthernet 1/0/4 T2500G-10TS(config-if)#switchport general allowed vlan 2 tagged 15.6 switchport pvid Description - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 147
1/0/2 T2500G-10TS(config-if)# switchport pvid 2 15.7 switchport check ingress Description The switchport check ingress command is used to enable the Ingress Checking function for the switch ports. With this function enabled, the port will accept the packet of which the VLAN ID is in the port's VLAN - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 148
the acceptable frame type of Gigabit Ethernet port 1/0/4 as "tagged": T2500G-10TS(config)#interface gigabitEthernet 1/0/4 T2500G-10TS(config-if)#switchport acceptable frame tagged 15.9 show vlan summary Description The show vlan summary command is used to display the summarized information of IEEE - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 149
Mode and Any Configuration Mode Privilege Requirement None. Example Display the brief information of IEEE 802.1Q VLAN: T2500G-10TS(config)# show vlan brief 15.11 show vlan Description The show vlan command is used to display the information of IEEE 802.1Q VLAN. Syntax show vlan [ id vlan-id ] 126 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 150
Privilege Requirement None. Example Display the information of vlan 5: T2500G-10TS(config)# show vlan id 5 15.12 show interface switchport Description The show interface switchport command is used to display the IEEE 802.1Q VLAN configuration information of the specified port/port channel. Syntax - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 151
8 characters at most. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create VLAN 2 with the MAC address 00:11:11:01:01:12 and the name "TP": T2500G-10TS(config)#mac-vlan mac-address 00:11:11:01:01 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 152
access to these commands. Example Enable the Gigabit Ethernet port 1/0/3 for the MAC-based VLAN feature: T2500G-10TS(config)#interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)#mac-vlan 16.3 show mac-vlan Description The show mac-vlan command is used to display the information of the MAC-based - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 153
all the MAC-based VLAN entry: T2500G-10TS(config)#show mac-vlan all 16.4 show mac-vlan interface Description The show mac-vlan interface command is used to display the port state of MAC-based VLAN. Syntax show mac-vlan interface Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 154
and the SSAP type. template-idx -- The number of the Protocol-based VLAN Template. You can get the template corresponding to the number by the show protocol-vlan template command. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 155
type is 0x2024: T2500G-10TS(config)#protocol-vlan template name TP frame ether_2 ether-type 2024 17.2 protocol-vlan vlan Description The protocol-vlan vlan command is used to create a Protocol-based VLAN entry. To delete a Protocol-based VLAN entry, please use no protocol-vlan vlan command. Syntax - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 156
Example Create Protocol-based VLAN 2 and bind it with Protocol-based VLAN Template 3: T2500G-10TS(config)#protocol-vlan vlan 2 template 3 17.3 protocol-vlan group Description The protocol-vlan command is used to add the port to a specified protocol group. To remove the port from this protocol group, - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 157
Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the information of the Protocol-based VLAN templates: T2500G-10TS(config)#show protocol-vlan template 17.5 show protocol-vlan vlan Description The show protocol-vlan vlan command is used to display the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 158
to these commands. Example Enable the VLAN-VPN function globally: T2500G-10TS(config)#dot1q-tunnel 18.2 switchport dot1q-tunnel tpid Description The switchport dot1q-tunnel tpid command is used to configure Global TPID for the ports. To restore to the default value, please use the no switchport - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 159
1/0/2 T2500G-10TS(config-if)#switchport dot1q-tunnel tpid 9100 18.3 dot1q-tunnel mapping Description The dot1q-tunnel mapping command is used to enable the VLAN Mapping feature globally. To disable this function, please use the no dot1q-tunnel mapping command. By default, the VLAN Mapping - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 160
the VLAN mapping feature globally: T2500G-10TS(config)#dot1q-tunnel mapping 18.4 switchport dot1q-tunnel mode Description The switchport dot1q-tunnel mode command is used to configure the VPN port's mode. To close this VPN port, please use the no switchport dot1q-tunnel mode command. By default, no - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 161
and Power User level users have access to these commands. Example Enable the VLAN-VPN missdrop function for Gigabit Ethernet port 1/0/3: T2500G-10TS(config)#interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)#switchport dot1q-tunnel missdrop 18.6 switchport dot1q-tunnel mapping Note: Choose - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 162
VLAN as VLAN 2 and the Service Provider VLAN as VLAN 3: T2500G-10TS(config)#interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)#switchport dot1q-tunnel mapping 2 3 18.7 show dot1q-tunnel Description The show dot1q-tunnel command is used to display the global configuration information of the VLAN - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 163
Mapping entry. Syntax show dot1q-tunnel mapping Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the information of VLAN Mapping entry: T2500G-10TS(config)#show dot1q-tunnel mapping 18.9 show dot1q-tunnel interface Description The show dot1q - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 164
Example Display the port type of all VLAN VPN ports: T2500G-10TS(config)#show dot1q-tunnel interface 141 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 165
no gvrp command. Syntax gvrp no gvrp Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the GVRP function globally: T2500G-10TS(config)#gvrp 19.2 gvrp (interface) Description The gvrp command is - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 166
Ethernet ports 1/0/2-6: T2500G-10TS(config)#interface range gigabitEthernet 1/0/2-6 T2500G-10TS(config-if-range)#gvrp 19.3 gvrp registration Description The gvrp registration command is used to configure the GVRP registration type for the desired port. To restore to the default value, please use - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 167
Example Configure the GVRP registration mode as "fixed" for Gigabit Ethernet ports 1/0/2-6: T2500G-10TS(config)#interface range gigabitEthernet 1/0/2-6 T2500G-10TS(config-if-range)#gvrp registration fixed 19.4 gvrp timer Description The gvrp timer command is used to set a GVRP timer for the desired - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 168
of it to the default value: T2500G-10TS(config)#interface gigabitEthernet 1/0/6 T2500G-10TS(config-if)#gvrp timer leaveall 2000 T2500G-10TS(config-if)#no gvrp timer join 19.5 show gvrp interface Description The show gvrp interface command is used to display the GVRP configuration information of - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 169
19.6 show gvrp global Description The show gvrp global command is used to display the global GVRP status. Syntax show gvrp global Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the global GVRP status: T2500G-10TS(config)#show gvrp global 146 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 170
. Example Enable IGMP Snooping function: T2500G-10TS(config)# ip igmp snooping 20.2 ip igmp snooping version Description The ip igmp snooping version command is used to configure IGMP version globally. To return to the default configuration, please use no ip igmp snooping version command. Syntax - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 171
version as v2: T2500G-10TS (config)# ip igmp snooping version v2 20.3 ip igmp snooping drop-unknown Description The ip igmp snooping drop-unknown command is used to configure the way how the switch processes multicast streams that are sent to unknown multicast groups as Discard. By default, it is - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 172
Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable IGMP Header Validation: T2500G-10TS(config)# ip igmp snooping header-validation 20.5 ip igmp snooping vlan-config Description The ip igmp snooping vlan-config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 173
the default Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the IGMP Snooping function and modify Router Port Aging Time as 300 seconds, Member Port Aging Time as 200 seconds for VLAN 1-3: T2500G-10TS(config)# ip - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 174
5. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the Fast Leave for VLAN 1-3: T2500G-10TS(config)# ip igmp snooping vlan-config 1-3 immediate-leave 20.7 ip igmp snooping vlan-config (report - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 175
Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the IGMP Report Suppression for VLAN 1-3: T2500G-10TS(config)# ip igmp snooping vlan-config 1-3 report-suppression 20.8 ip igmp snooping vlan-config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 176
discarded. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Forbid the Ethernet ports 1/0/1-3 as being router ports in VLAN 1 : T2500G-10TS(config)# ip igmp snooping vlan-config 1 router-ports-forbidd - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 177
. Example Set the router port as 1/0/1 for VLAN 1-2: T2500G-10TS(config)# ip igmp snooping vlan-config 1-2 rport interface gigabitEthernet 1/0/1 20.10 ip igmp snooping vlan-config (static) Description This command is used to configure interfaces to statically join a multicast group. To remove - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 178
Example Configure port ports 1/0/1-3 in VLAN 2 to statically join multicast group 225.0.0.1: T2500G-10TS(config)# ip igmp snooping vlan-config 2 static 225.0.0.1 interface gigabitEthernet 1/0/1-3 20.11 ip igmp snooping vlan-config (querier) Description This command is used to enable the IGMP - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 179
default value is 1 second. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the IGMP Snooping Querier for VLAN 3, and configure the query interval as 100 seconds: T2500G-10TS(config)# ip igmp - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 180
Example Enable IGMP Snooping function of port 1/0/3: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# ip igmp snooping 20.13 ip igmp snooping max-groups Description The ip igmp snooping max-groups command is used to configure the maximum number of groups that a port can - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 181
numbers of groups that ports 1/0/2-5 can join as 10, and configure the throttling action as replace: T2500G-10TS(config)#interface range gigabitEthernet 1/0/2-5 T2500G-10TS(config-if-range)#ip igmp snooping max-groups 10 T2500G-10TS(config-if-range)#ip igmp snooping max-groups action replace 20.14 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 182
RADIUS server is configured. For how to enable AAA function and configure RADIUS server, please refer to aaa enable and radius-server host. Example Enable IGMP authentication on port 1/0/3: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# ip igmp snooping authentication - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 183
User level users have access to these commands. Example Enable IGMP accounting globally: T2500G-10TS(config)# ip igmp snooping accounting 20.17 ip igmp profile Description The ip igmp profile command is used to create the configuration profile. To delete the corresponding profile, please use no - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 184
Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the filtering mode of profile 1 as deny: T2500G-10TS(config)# ip igmp profile 1 T2500G-10TS(config-igmp-profile)#deny 20.19 permit Description The permit command is used to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 185
access to these commands. Example Configure one of the filter multicast address entry as range 225.1.1.1 to 226.3.2.1 in profile 1: T2500G-10TS(config)# ip igmp profile 1 T2500G-10TS(config-igmp-profile)#range 225.1.1.1 226.3.2.1 20.21 ip igmp filter Description The ip igmp filter command is used - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 186
User level users have access to these commands. Example Clear the statistics of the IGMP packets: T2500G-10TS(config)# clear ip igmp snooping statistics 20.23 show ip igmp snooping Description The show ip igmp snooping command is used to display the global configuration of IGMP snooping. Syntax show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 187
Requirement None. Example Display the IGMP baisic configuration configuration of all ports and port channels: T2500G-10TS# show ip igmp snooping interface basic-config Display the IGMP basic configuration of port 1/0/2: T2500G-10TS# show ip igmp snooping interface gigabitEthernet 1/0/2 basic-config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 188
T2500G-10TS# show ip igmp snooping interface gigabitEthernet 1/0/1-4 packet-stat 20.25 show ip igmp snooping vlan Description The show ip igmp snooping vlan command is used to display the VLAN configuration of IGMP snooping. Syntax show ip igmp snooping vlan [ vlan-id ] Parameter vlan-id --The VLAN - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 189
count Display the count of static multicast entries of VLAN 5 T2500G-10TS(config)#show ip igmp snooping groups vlan 5 static count 20.27 show ip igmp profile Description The show ip igmp profile command is used to display the configuration information of all the profiles or a specific profile. 166 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 190
Syntax show ip igmp profile [ id ] Parameter id -- Specify the ID of the profile, ranging from 1 to 999. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configuration information of all profiles: T2500G-10TS(config)# show ip igmp profile - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 191
command. Syntax ipv6 mld snooping no ipv6 mld snooping Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Enable MLD Snooping: T2500G-10TS(config)# ipv6 mld snooping 21.2 ipv6 mld snooping drop-unknown Description - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 192
T2500G-10TS(config)# ipv6 mld snooping drop-unknown 21.3 ipv6 mld snooping vlan-config Description The ipv6 mld snooping vlan-config command is used to enable VLAN vlan-config vlan-id-list [ rtime | mtime | ltime ] Parameter vlan-id-list -- The ID list of the VLAN desired to modify configuration, - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 193
Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Enable the MLD Snooping function and modify Router Port Time as 300 seconds, Member Port Time as 200 seconds for VLAN 1-3: T2500G-10TS(config)# ipv6 mld snooping vlan-config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 194
, in the format of 1-3, 5. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the MLD Report Suppression for VLAN 1-3: T2500G-10TS(config)# ipv6 mld snooping vlan-config 1-3 report-suppression 171 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 195
discarded. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Forbid the Ethernet ports 1/0/1-3 as being router ports in VLAN 1: T2500G-10TS(config)# ipv6 mld snooping vlan-config 1 router-ports-forbidd - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 196
commands. Example Set the router port as 1/0/1 for VLAN 1-2: T2500G-10TS(config)# ipv6 mld snooping vlan-config 1-2 rport interface gigabitEthernet 1/0/1 21.8 ipv6 mld snooping vlan-config (static) Description This command is used to configure interfaces to statically join a multicast group. To - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 197
Only Admin, Operator and Power User level users have access to these commands. Example Configure port ports 1/0/1-3 in VLAN 2 to statically join multicast group 225.0.0.1: T2500G-10TS(config)# ipv6 mld snooping vlan-config 2 static 225.0.0.1 interface gigabitEthernet 1/0/1-3 21.9 ipv6 mld snooping - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 198
source-ip | last-listener-query-count | last-listener-query-interval ] Parameter vlan-id-list -- The ID list of the VLAN desired to modify configuration, ranging are from 10 to 300 seconds, and the default value is 60 seconds. ip-addr-- The source IP address of the general query messages sent by the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 199
Example Enable the MLD Snooping Querier for VLAN 3, and configure the query interval as 100 seconds: T2500G-10TS(config)# ipv6 mld snooping vlan-config 3 querier T2500G-10TS(config)# ipv6 mld snooping vlan-config 3 querier query interval 100 21.10 ipv6 mld snooping (interface) Description The ipv6 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 200
the port can join. It ranges from 0 to 1000 and the default value is 1000. drop -- When the number of the dynamic multicast configure the throttling action as replace: T2500G-10TS(config)#interface range gigabitEthernet 1/0/2-5 T2500G-10TS(config-if-range)#ipv6 mld snooping max-groups 10 T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 201
the Fast Leave function for port 1/0/3: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# ipv6 mld snooping immediate-leave 21.13 ipv6 mld profile Description The ipv6 mld profile command is used to create the configuration profile. To delete the corresponding profile - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 202
Operator level users have access to these commands. Example Configure the filtering mode of profile 1 as deny: T2500G-10TS(config)# ipv6 mld profile 1 T2500G-10TS(config-MLD-profile)#deny 21.15 permit Description The permit command is used to configure the filtering mode of profile as permit. Syntax - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 203
mld profile 1 T2500G-10TS(config-igmp-profile)#permit 21.16 range Description The range command is used to configure the range of the profile's filtering multicast address. To delete the corresponding filtering multicast address, please use no range command. A profile contains 16 filtering IP-range - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 204
1/0/2 T2500G-10TS(config-if)# ipv6 mld filter 1 21.18 clear ipv6 mld snooping statistics Description The clear ipv6 mld snooping statistics command is used to clear the statistics of the MLD packets. Syntax clear ipv6 mld snooping statistics Command Mode Privileged EXEC Mode and Any Configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 205
of MLD Snooping. Syntax show ipv6 mld snooping Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the global configuration of MLD Snooping: T2500G-10TS(config)# show ipv6 mld snooping 21.20 show ipv6 mld snooping interface Description The show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 206
. Syntax show ipv6 mld snooping vlan [ vlan-id ] Parameter vlan-id -- The VLAN ID selected to display, ranging from 1 to 4094. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display all of the VLAN information: T2500G-10TS(config)# show ipv6 mld - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 207
[ vlan { vlan-id } ] [ ipv6_multicast_addr | count | dynamic | dynamic count | static | static count ] Parameter vlan-id --The VLAN ID Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display all of the multicast groups: T2500G-10TS(config)# show ipv6 mld snooping - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 208
Parameter id -- Specify the ID of the profile, ranging from 1 to 999. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configuration information of all profiles: T2500G-10TS(config)# show ipv6 mld profile 185 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 209
. Example Enable MVR globally: T2500G-10TS(config)# mvr 22.2 mvr group Description The mvr group command is used to add multicast groups to MVR. To delete multicast groups from MVR, please use no mvr group command. You can configure up to 511 multicast groups. Syntax mvr group ip-addr [count ] 186 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 210
T2500G-10TS (config)# mvr group 225.1.2.3 3 22.3 mvr mode Description The mvr mode command is used to configure the MVR mode as compatible or dynamic. By default, it is compatible. To return to the default configuration via the multicast VLAN (with appropriate translation of the VLAN ID). So the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 211
as dynamic: T2500G-10TS(config)# mvr mode dynamic 22.4 mvr querytime Description The mvr querytime command is used to configure the maximum time to wait for IGMP report on a receiver port before removing the port from multicast group membership. To return to the default configuration, please use - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 212
access to these commands. Example Configure the multicast VLAN as VLAN 10: T2500G-10TS(config)# mvr vlan 10 22.6 mvr (interface) Description This command is used to enable MVR for specific interfaces. To disable MVR for the interfaces, please use no mvr command. By default, it is disabled. Syntax - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 213
Enable MVR for port 1/0/1: T2500G-10TS(config)# interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#mvr 22.7 mvr type Description The mvr type command is used to configure the MVR port type as receiver or source. By default, the port is a non-MVR port. If you attempt to configure a non-MVR port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 214
support Fast Leave. Before enabling Fast Leave for a port, make sure there is only a single receiver device connecting to the port. Example Enable the Fast Leave feature of MVR for port 1/0/3: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)#mvr immediate 22.9 mvr vlan - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 215
to MVR group 225.1.2.3 statically. The multicast VLAN is VLAN 10: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)#mvr vlan 10 group 225.1.2.3 22.10 show mvr Description The show mvr command is used to display the global configuration of MVR. Syntax show mvr Command Mode - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 216
Display the MVR configuration of port 1/0/3: T2500G-10TS# show mvr interface gigabitEthernet 1/0/3 22.12 show mvr members Description The show mvr members command is used to display the membership information of all MVR groups or the specified MVR group. Syntax show mvr members [ ip-addr ] [ status - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 217
Example Display the membership information of all MVR groups: T2500G-10TS# show mvr members 194 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 218
Tree Protocol), compatible with both STP and RSTP and subject to IEEE 802.1s, can disbranch a ring network. STP is to block redundant links and backup links as well as optimize paths. 23.1 debug spanning-tree Description The debug spanning-tree command is used to enable debuggning of spanning-tree - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 219
. Syntax spanning-tree no spanning-tree Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the STP function: T2500G-10TS(config)# spanning-tree 23.3 spanning-tree (interface) Description The - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 220
1/0/2 T2500G-10TS(config-if)# spanning-tree 23.4 spanning-tree common-config Description The spanning-tree common-config command is used to configure the parameters of the ports for comparison in the CIST and the common parameters of all instances. To return to the default configuration, please - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 221
1/0/1 T2500G-10TS(config-if)# spanning-tree common-config port-priority 64 ext-cost 100 int-cost 100 portfast enable point-to-point open 23.5 spanning-tree mode Description The spanning-tree mode command is used to configure the STP mode of the switch. To return to the default configurations, please - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 222
spanning-tree mode as mstp: T2500G-10TS(config)# spanning-tree mode mstp 23.6 spanning-tree mst configuration Description The spanning-tree mst configuration command is used to access MST Configuration Mode from Global Configuration Mode, as to configure the VLAN-Instance mapping, region name and - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 223
remove all the mapping VLANs 1-100: T2500G-10TS(config)# spanning-tree mst configuration T2500G-10TS(config-mst)# no instance 1 Remove VLANs 1-50 in mapping VLANs 1-100 for Instance 1: T2500G-10TS(config)# spanning-tree mst configuration T2500G-10TS(config-mst)# no instance 1 vlan 1-50 23.8 name - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 224
Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the region name of MST as "region1": T2500G-10TS(config)# spanning-tree mst configuration T2500G-10TS(config-mst)# name region1 23.9 revision Description The revision command is used to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 225
the MST Instance 1 and configure its priority as 4096: T2500G-10TS(config)# spanning-tree mst instance 1 priority 4096 23.11 spanning-tree mst Description The spanning-tree mst command is used to configure MST Instance Port. To return to the default configuration of the corresponding Instance Port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 226
as 2000: T2500G-10TS(config)# interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)# spanning-tree mst instance 1 port-priority 64 cost 2000 23.12 spanning-tree priority Description The spanning-tree priority command is used to configure the bridge priority. To return to the default value of bridge - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 227
the bridge priority as 4096: T2500G-10TS(config)# spanning-tree priority 4096 23.13 spanning-tree timer Description The spanning-tree timer command is used to configure forward-time, hello-time and max-age of Spanning Tree. To return to the default configurations, please use no spanning-tree - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 228
, ranging from 1 to 20 in pps. By default, it is 5. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the hold-count of STP as 8pps: T2500G-10TS(config)# spanning-tree hold-count 8 23.15 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 229
discarded, ranging from 1 to 40 in hop. By default, it is 20. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the max-hops of STP as 30: T2500G-10TS(config)# spanning-tree max-hops 30 23.16 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 230
bpduflood no spanning-tree bpduflood Command Mode Interface Configuration Mode (interface fastEthernet / interface range fastEthernet / Enable the BPDU forward function for port 1/0/2: T2500G-10TS(config)# interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# spanning-tree bpduflood 23.18 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 231
Configuration Mode T2500G-10TS(config-if)# spanning-tree bpduguard 23.19 spanning-tree guard loop Description The spanning-tree guard loop command is used to enable the Loop Protect function for a port. Loop Protect is to prevent the loops in the network brought by recalculating STP because of link - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 232
root no spanning-tree guard root Command Mode Interface Configuration Mode (interface fastEthernet / interface range fastEthernet /interface Enable the Root Protect function for port 1/0/2: T2500G-10TS(config)# interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# spanning-tree guard root 23.21 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 233
Tree for port 1/0/2: T2500G-10TS(config)# interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# spanning-tree guard tc 23.22 spanning-tree mcheck Description The spanning-tree mcheck command is used to enable mcheck. Syntax spanning-tree mcheck Command Mode Interface Configuration Mode (interface - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 234
of spanning-tree. Syntax show spanning-tree active Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the active information of spanning-tree: T2500G-10TS(config)# show spanning-tree active 23.24 show spanning-tree bridge Description The show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 235
number. port-channel-id -- The ID of the port channel. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the spanning-tree information of all ports: T2500G-10TS(config)# show spanning-tree interface Display the spanning-tree information of port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 236
number. port-channel-id -- The ID of the port channel. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the protect information of all ports: T2500G-10TS(config)# show spanning-tree interface-security Display the protect information of port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 237
Privilege Requirement None. Example Display the region information and mapping information of VLAN and MST Instance: T2500G-10TS(config)#show spanning-tree mst configuration Display the related information of MST Instance 1: T2500G-10TS(config)#show spanning-tree mst instance 1 Display all the ports - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 238
lldp command. Syntax lldp no lldp Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable LLDP function globally: T2500G-10TS(config)#lldp 24.2 lldp forward_message Description The lldp forward_message - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 239
the Hold Multiplier parameter. It ranges from 2 to 10. By default, it is 4. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Specify Hold Multiplier as 5: T2500G-10TS(config)#lldp hold-multiplier 5 216 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 240
the interval for the local device to transmit LLDPDU to its neighbors. The value ranges from 5 to 32768 and the default value is 30 seconds. tx-delay -- Configure a value from 1 to 8192 in seconds to specify the time for the local device to transmit LLDPDU to its neighbors after changes occur - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 241
45 T2500G-10TS(config)#lldp timer notify-interval 120 24.5 lldp receive Description The lldp receive command is used to enable the designated port to receive LLDPDU. To disable the function, please use no lldp receive command. Syntax lldp receive no lldp receive Command Mode Interface Configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 242
Enable Gigabit Ethernet port 1/0/1 to transmit LLDPDU: T2500G-10TS(config)# interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#lldp transmit 24.7 lldp snmp-trap snmp-trap no lldp snmp-trap Command Mode Interface Configuration Mode (interface fastEthernet / interface range fastEthernetinterface / - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 243
outgoing from Gigabit Ethernet port 1/0/1: T2500G-10TS(config)# interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)# no lldp tlv-select management-address port-vlan 24.9 lldp management-address Description The lldp management-address command is used to configure the port's management address to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 244
ip-address } no lldp management-address Command Mode Interface Configuration Configure the port's management address as 192.168.1.100 for port 1/0/1: T2500G-10TS(config)# interface gigabitEthernet 1/0/1 T2500G-10TS parameter. The default value is 4. To return to the default configuration, please use - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 245
1/0/2 T2500G-10TS(config-if)# lldp med-status 24.12 lldp med-tlv-select Description The lldp med-tlv-select command is used to configure LLDP-MED TLVs to be included in outgoing LLDPDU for the corresponding port. To exclude LLDP-MED TLVs, please use no lldp med-tlv-select command. By default, All - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 246
T2500G-10TS(config)# interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# no lldp med-tlv-select network-policy inventorymanagement 24.13 lldp med-location Description The lldp med-location command is used to configure Call Service ELIN identifier, which is used during emergency call setup to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 247
the civic address in the Location Identification TLV's content in outgoing LLDPDU of port 1/0/2. Configure the language as English and city as London: T2500G-10TS(config)# interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# lldp med-location civic-address language English lci-city London 24.14 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 248
the LLDP configuration of Gigabit Ethernet port 1/0/1: T2500G-10TS#show lldp interface gigabitEthernet 1/0/1 24.16 show lldp local-information interface Description The show lldp local-information interface command is used to display the LLDP information of the corresponding port. By default, the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 249
-- The Ethernet port number. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the neighbor information of Gigabit Ethernet port 1/0/1: T2500G-10TS#show lldp neighbor-information interface gigabitEthernet 1/0/1 24.18 show lldp traffic interface - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 250
Parameters port -- The Ethernet port number. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the LLDP statistic information of Gigabit Ethernet port 1/0/1: T2500G-10TS#show lldp traffic interface gigabitEthernet 1/0/1 227 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 251
Tunneling) is a feature for service providers to transmit packets from different customers across their ISP networks and maintain Layer 2 protocol configurations of each customer. The supported Layer 2 protocols are STP (Spanning Tree Protocol), GVRP (GARP VLAN Registration Protocol), CDP (Cisco - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 252
for the STP packets. ▪ lacp: Enable protocol tunneling for the LACP packets. ▪ all: All the above Layer 2 protocols are supported for tunneling. threshold --Configure the threshold for packets-per-second accepted for encapsulation. Packets beyond the threshold will be dropped. It ranges from 0 to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 253
Only Admin and Operator level users have access to these commands. Example Configure port 1/0/3 as a UNI port for STP packets with the threshold as 1000 packets/second: T2500G-10TS(config)#interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# l2protocol-tunnel type uni stp threshold 1000 25.3 show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 254
Requirement None. Example Display the L2PT configuration information of Gigabit Ethernet port 1/0/1: T2500G-10TS(config)#show l2protocol-tunnel interface gigabitEthernet 1/0/1 Display the L2PT configuration information of all Ethernet ports: T2500G-10TS(config)#show l2protocol-tunnel interface 231 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 255
-insertion command. Syntax pppoe id-insertion no pppoe id-insertion Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the PPPoE ID-Insertion function: T2500G-10TS(config)# pppoe id-insertion 232 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 256
T2500G-10TS (config)# interface gigabitEthernet 1/0/1 T2500G-10TS (config-if)# pppoe circuit-id 26.3 pppoe circuit-id type Description The pppoe circuit-id type command is used to configure the type of PPPoE Circuit-ID for a specified port. By default, the PPPoE Circuit-ID type is "ip". Syntax - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 257
ip: The IP address of the switch will be used to encode the Circuit-ID option. This is the default value. udf: A user specified . Example Configure the type of PPPoE Circuit-ID as "mac" for the Gigabit Ethernet port 1/0/1: T2500G-10TS (config)# interface gigabitEthernet 1/0/1 T2500G-10TS (config-if - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 258
Admin, Operator and Power User level users have access to these commands. Example Configure the remote-ID as "mac" for the Gigabit Ethernet port 1/0/1: T2500G-10TS (config)# interface gigabitEthernet 1/0/1 T2500G-10TS (config-if)# pppoe remote-id mac 26.5 show pppoe id-insertion global Description - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 259
information of PPPoE Circuit-ID Insertion function of all Ethernet ports: T2500G-10TS# show pppoe id-insertion interface Display the configuration of PPPoE Circuit-ID Insertion function of the Gigabit Ethernet port 1/0/1 : T2500G-10TS# show pppoe id-insertion interface gigabitEthernet 1/0/1 236 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 260
ip routing no ip routing Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable IPv4 routing feature for the switch: T2500G-10TS(config)# ip routing 27.2 interface vlan Description This interface vlan - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 261
these commands. Example Create the VLAN interface 2: T2500G-10TS(config)# interface vlan 2 27.3 interface loopback Description Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create the loopback interface 1: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 262
, ranging from 1 to 14, in the format of 1-3, 5. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create the port-channel interfaces 1, 3, 4 and 5: T2500G-10TS(config)# interface port-channel 1,3-5 239 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 263
and VLAN Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Add a Description system-if to the routed port 1/0/9 : T2500G-10TS(config)# interface gigabitEthernet 1/0/9 T2500G-10TS(config-if)# no switchport T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 264
Command Mode Interface Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Shut down the routed port 1/0/9: T2500G-10TS(config)# interface gigabitEthernet 1/0/9 T2500G-10TS(config-if)# no switchport T2500G-10TS(config-if - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 265
Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create a static route with the destination IP address as 192.168.2.0, the subnet mask as 255.255.255.0 and the next-hop address as 192.168.0.2: T2500G-10TS(config)# ip - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 266
is. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create a static route with the destination network IP address as 3200::/64 and the next-hop address as 3100::1234: T2500G-10TS(config)# ipv6 route - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 267
the specified interface VLAN. Syntax show interface vlan vid Parameter vid -- The VLAN ID. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the information of VLAN 2: T2500G-10TS(config)#show interface vlan 2 27.13 show ip interface Description - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 268
VLAN interface 2: T2500G-10TS(config)# show ip interface vlan 2 27.14 show ip interface brief Description This show ip interface brief command is used to display the summary information of the Layer 3 interfaces. Syntax show ip interface brief Command Mode Privileged EXEC Mode and Any Configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 269
The connected routes. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the static routes: T2500G-10TS(config)# show ip route static 27.16 show ip route specify Description This show ip route specify command is used to display the valid routing - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 270
Display the summary information of route entries: T2500G-10TS(config)# show ip route summary 27.18 show ipv6 interface Description This command is used to display the configured IPv6 information of the management interface, including ipv6 function status, link-local address and global address, IPv6 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 271
. static: The static routes. connected: The connected routes. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the IPv6 static routes: T2500G-10TS(config)# show ipv6 route static 27.20 show ipv6 route summary Description This show ipv6 route - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 272
Privilege Requirement None. Example Display the summary information of IPv6 route entries: T2500G-10TS(config)# show ipv6 route summary 249 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 273
-10TS(config)# interface vlan 1 T2500G-10TS(config-if)# ipv6 enable 28.2 ipv6 address autoconfig Description This command is used to enable the automatic configuration of the ipv6 link-local address. The switch has only one ipv6 link-local address, which can be configured automatically or manually - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 274
automatic configuration of the ipv6 link-local address on VLAN interface 1: T2500G-10TS(config)# interface vlan 1 T2500G-10TS(config-if)# ipv6 address autoconfig 28.3 ipv6 address link-local Description The ipv6 address link-local command is used to configure the ipv6 link-local address manually on - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 275
and Power User level users have access to these commands. Example Configure the link-local address as fe80::1234 on the VLAN interface 1: T2500G-10TS(config)# interface vlan 1 T2500G-10TS(config-if)# ipv6 address fe80::1234 link-local 28.4 ipv6 address dhcp Description The ipv6 address dhcp command - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 276
function to obtain IPv6 address through the RA message on VLAN interface 1: T2500G-10TS(config)# interface vlan 1 T2500G-10TS(config-if)# ipv6 address ra 28.6 ipv6 address eui-64 Description This command is used to manually configure a global IPv6 address with an extended unique identifier (EUI) in - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 277
-64 global address on the interface with the network prefix 3ffe::/64: T2500G-10TS(config)# interface vlan 1 T2500G-10TS(config-if)# ipv6 address 3ffe::/64 eui-64 28.7 ipv6 address Description This command is used to manually configure a global IPv6 address on the interface. To remove a global IPv6 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 278
ipv6 function status, link-local address and global address, ipv6 multicast groups etc. Syntax show ipv6 interface Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the ipv6 information of the management interface: T2500G-10TS(config)# show ipv6 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 279
it as "arpa". Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create a static ARP entry with the IP as 192.168.0.1 and the MAC as 00:11:22:33:44:55: T2500G-10TS(config)# arp 192.168.0.1 00:11 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 280
to these commands. Example Clear all the dynamic ARP entries: T2500G-10TS(config)# clear arp-cache 29.3 arp dynamicrenew Description This arp dynamicremew command. By default, it is enabled. Syntax arp dynamicrenew no arp dynamicrenew Command Mode Global Configuration Mode Privilege Requirement Only - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 281
1 to 3000 seconds. The default value is 600 seconds. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the ARP aging time as 60 seconds on interface 1/0/1: T2500G-10TS(config-if)# arp timeout - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 282
EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Enable the switch's Layer 3 interface to send gratuitous ARP packets when receiving a gratuitous packets of which the IP address is the same as its own: T2500G-10TS(config)# gratuitous-arp dup-ip-detected enable 29.7 gratuitous - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 283
Mode Interface Configuration Mode (interface vlan / interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Privilege Requirement None. Example Specify the interface VLAN 1 to send gratuitous ARP packets every 1 second: T2500G-10TS(config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 284
Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Privilege Requirement None Example Enable the Proxy ARP function on VLAN Interface 2: T2500G-10TS(config)# interface vlan 2 T2500G-10TS(config-if)# ip - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 285
Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Privilege Requirement None Example Enable the Local Proxy ARP function on VLAN Interface 2: T2500G-10TS(config)# interface vlan 2 T2500G-10TS(config-if)# ip - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 286
ID. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the ARP entry associated with VLAN interface 2: T2500G-10TS(config)# show ip arp vlan 2 29.13 show ip arp summary Description This show ip arp summary command is used to display the number - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 287
show gratuitous-arp Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configuration of gratuitous ARP: T2500G-10TS(config)# show gratuitous-arp 29.15 show ip proxy-arp Description The show ip proxy-arp command is used to display the Proxy - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 288
Privilege Requirement None Example Display the Proxy ARP status: T2500G-10TS(config)# show ip proxy-arp 265 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 289
. Example Enable DHCP server service globally: T2500G-10TS(config)# service dhcp server 30.2 ip dhcp server extend-option capwap-ac-ip Description The ip dhcp server extend-option capwap-ac-ip command is used to specify the Option 138, which should be configured as the management IP address of an AC - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 290
Set the remote DHCP server's IP address as 192.168.3.1: T2500G-10TS(config)# ip dhcp server extend-option capwap-ac-ip 192.168.3.1 30.3 ip dhcp server extend-option vendor-class-id Description The ip dhcp server extend-option vendor-class-id command is used to configure the class ID of the packets - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 291
address are the same. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Set the reserved IP addresses from 192.168.1.1 to 192.168.1.9: T2500G-10TS(config)# ip dhcp server exclude-address 192.168.1.1 192 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 292
to 8 characters. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create the address pool of name POOL1: T2500G-10TS(config)# ip dhcp server pool POOL1 30.6 ip dhcp server ping timeout Description The - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 293
packets' number, ranging from 0 to 10. By default it's 1. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Specify the PING packets' number as 2: T2500G-10TS(config)# ip dhcp server ping packets 2 270 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 294
Command Mode DHCP Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Specify the address pool "product" as 192.168.1.0 255.255.255.0: T2500G-10TS(config)# ip dhcp server pool product T2500G-10TS(config-dhcp)# network - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 295
Command Mode DHCP Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Specify the lease time of address pool "product" as 10 minutes: T2500G-10TS(config)# ip dhcp server pool product T2500G-10TS(config-dhcp)# lease 10 30.10 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 296
as abc in ASCII: T2500G-10TS(config)# ip dhcp pool product T2500G-10TS(dhcp-config)# address 192.168.0.10 client-identifier abc ascii 30.12 default-gateway Description The default-gateway command is used to specify the default gateway of the address pool. To delete the configuration, please use no - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 297
192.168.0.1 and 192.168.1.1: T2500G-10TS(config)# ip dhcp server pool product T2500G-10TS(dhcp-config)# default-gateway 192.168.0.1,192.168.1.1 30.13 dns-server Description The dns-server command is used to specify the DNS server of the address pool. To delete this configuration, please use no dns - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 298
Mode DHCP Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Specify the address pool's Netbios servers as 192.168.0.1 and 192.168.1.1: T2500G-10TS(config)# ip dhcp server pool product T2500G-10TS(config-dhcp)# netbios - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 299
p-node. Command Mode DHCP Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Specify the address pool's Netbios server type as b-node: T2500G-10TS(config)# ip dhcp server pool product T2500G-10TS(config-dhcp)# netbios-node - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 300
the DHCP client. Command Mode DHCP Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Specify the DHCP client's domain name as edu: T2500G-10TS(config)# ip dhcp server pool product T2500G-10TS(config-dhcp)# domain-name edu - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 301
status Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the status of DHCP service: T2500G-10TS(config)# show ip dhcp server status 30.20 show ip dhcp server statistics Description The show ip dhcp server statistics command is used to display - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 302
Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configurations of the remote DCHP servers: T2500G-10TS(config)# show ip dhcp server extend-option 30.22 show ip dhcp server pool Description The show ip dhcp server pool command is used to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 303
Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configured reserved addresses: T2500G-10TS(config)# show ip dhcp server excluded-address 30.24 show ip dhcp server manual-binding Description The show ip dhcp server manual-binding command is used to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 304
the configured static binding address: T2500G-10TS(config)# show ip dhcp server manual-binding 30.25 show ip dhcp server binding Description The show ip dhcp server binding command is used to display the binding entries. Syntax show ip dhcp server binding [ ip ip-address ] Parameter ip-address - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 305
-address -- Specify the binding IP address. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Clear all the binding addresses: T2500G-10TS(config)# clear ip dhcp server binding 282 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 306
command. Syntax service dhcp relay no service dhcp relay Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable DHCP Relay function globally: T2500G-10TS(config)# service dhcp relay 31.2 ip dhcp relay - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 307
1 to 16, and the default value is 4. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the maximum number of relay hops as 6: T2500G-10TS(config)# ip dhcp relay hops 6 31.3 ip dhcp relay time - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 308
Interface Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Add DHCP Server address 192.168.2.1 to interface VLAN 1: T2500G-10TS(config)# interface vlan 1 T2500G-10TS(config-if)# ip helper-address 192.168.2.1 31.5 ip dhcp - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 309
access to these commands. Example Enable option 82 support in DHCP Relay for port 1/0/2: T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# ip dhcp relay information 31.6 ip dhcp relay information strategy Description The ip dhcp relay information strategy command is used to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 310
-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# ip dhcp relay information strategy replace 31.7 ip dhcp relay information format Description The ip dhcp relay information format command is used to select the format of option 82 sub-option value field. To restore to the default - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 311
commands. Example Specify the circuit ID as "TP-Link" for port 1/0/2: T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# ip dhcp relay information circuit-id TP-Link 31.9 ip dhcp relay information remote-id Description The ip dhcp relay information remote-id command is used - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 312
T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# ip dhcp relay information remote-id TP-Link 31.10 ip dhcp relay default-interface Description The ip dhcp relay default-interface command is used to configure default relay agent interface. When the switch works at DHCP VLAN - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 313
192.168.2.1 to interface VLAN 1: T2500G-10TS(config)# ip dhcp relay vlan 1 helper-address 192.168.2.1 31.12 show ip dhcp relay Description The show ip dhcp relay command is used to display the global status and Option 82 configuration of DHCP Relay. Syntax show ip dhcp relay Command Mode Privileged - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 314
Example Display the configuration of DHCP Relay: T2500G-10TS(config)# show ip dhcp relay 291 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 315
Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable DHCP L2 Relay function globally: T2500G-10TS(config)# ip dhcp l2relay 32.2 ip dhcp l2relay vlan Description The ip dhcp l2relay vlan command is - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 316
users have access to these commands. Example Enable DHCP L2 Relay for VLAN 2: T2500G-10TS(config)# ip dhcp l2relay vlan 2 32.3 ip dhcp l2relay information Description The ip dhcp l2relay information command is used to enable option 82 support in DHCP Relay. To disable this function, please use no - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 317
1/0/2 T2500G-10TS(config-if)# ip dhcp l2relay information strategy replace 32.5 ip dhcp l2relay information format Description The ip dhcp l2relay information format command is used to select the format of option 82 sub-option value field. To restore to the default option, please use no ip dhcp - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 318
is the value you configure for the related sub-option. Command Mode Interface Configuration Mode (interface fastEthernet T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)#ip dhcp l2relay information format normal 32.6 ip dhcp l2relay information circuit-id Description The ip - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 319
ID as "TP-Link" for port 1/0/2: T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)# ip dhcp l2relay information remote-id TP-Link 32.8 show ip dhcp l2relay Description The show ip dhcp l2relay command is used to display the global status and Option 82 configuration of DHCP - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 320
l2relay Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configuration of DHCP Relay: T2500G-10TS(config)# show ip dhcp l2relay 32.9 show ip dhcp l2relay interface Description The show ip dhcp l2relay interface command is used to display - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 321
Description The qos trust mode command is used to configure the trust mode of CoS (Class of Service) function for the ports. The default trust mode is trust port priority. Syntax qos trust as dscp: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# qos trust mode dscp 298 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 322
the priority of port 5 as 3: T2500G-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# qos port-priority 3 33.3 qos cos-map Description The qos cos-map command is used to configure 802.1p to queue mapping globally. To return to the default configuration, please use no qos cos-map - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 323
these commands. Example Map the 802.1p priority 5 to TC-2: T2500G-10TS (config)# qos cos-map 5 2 33.4 qos dot1p-remap Description The qos dot1p-remap command is used to configure the 802.1p to 802.1p mappings. To return to the default configuration, please use no qos dot1p-remap command. When 802.1p - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 324
. Example Remap 802.1p priority 5 to 802.1p priority 6: T2500G-10TS(config)#qos dot1p-remap 5 6 33.5 qos dscp-map Description The qos dscp-map command is used to configure the DSCP to 802.1p mapping. To return to the default configuration, please use no qos dscp-map command. DSCP (DiffServ Code - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 325
Example Map DSCP Priority 5 to 802.1p priority 2: T2500G-10TS(config)#qos dscp-map 5 2 33.6 qos dscp-remap Description The qos dscp-remap command is used to configure the DSCP to DSCP mappings. To return to the default configuration, please use no qos dscp-remap command. When DSCP remap is - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 326
you need to specify the queue weight at the same time. weight -- Configure the weight value of the specified TC queue. When the scheduler mode is set the queue weight as 10 for port 1/0/1: T2500G-10TS(config)# interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)# qos queue 1 mode wrr weight 10 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 327
to 802.1p priority mappings. Syntax show qos dot1p-remap Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the IEEE 802.1P remap configuration: T2500G-10TS# show qos dot1p-remap 33.10 show qos dscp-map Description The show qos dscp-map command - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 328
priority to DSCP priority mappingss. Syntax show qos dscp-remap Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the DSCP to DSCP mappings: T2500G-10TS# show qos dscp-remap 33.12 show qos port-priority interface Description The show qos port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 329
. port-channel-id -- The ID of the port channel. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the trust mode of all the ports: T2500G-10TS# show qos trust interface 33.14 show qos queue interface Description The show qos queue interface - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 330
Parameter port -- The port number. port-channel-id -- The ID of the port channel. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the scheduler settings of all the ports: T2500G-10TS# show qos queue interface 307 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 331
storm-control rate-mode command is used to configure the storm control mode of the interface. To return to the default configuration, please use no storm-control rate-mode command on port 1/0/5: T2500G-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# storm-control rate-mode kbps - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 332
levels on an interface. To return to the default configuration, please use no storm-control command. Syntax Configure the broadcast storm control rate as 1024 kbps on port 1/0/5: T2500G-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# storm-control rate-mode kbps T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 333
to 3600 and the default value is 0. When Configure the action as drop on port 1/0/5: T2500G-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# storm-control exceed drop 34.4 storm-control recover Description The storm-control recover command is used to recover the port manually - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 334
users have access to these commands. Example Recover port 1/0/5 manually: T2500G-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# storm-control recover 34.5 bandwidth Description The bandwidth command is used to configure the bandwidth limit for an Ethernet port. To disable the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 335
Admin, Operator and Power User level users have access to these commands. Example Configure the ingress-rate as 5120Kbps and egress-rate as 1024Kbps for port 1/0/5: T2500G-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# bandwidth ingress 5120 egress 1024 34.6 show storm-control - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 336
list of Ethernet ports. port-channel-id-list -- The list of port channels. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the bandwidth-limit information of port 1/0/4: T2500G-10TS(config)# show bandwidth interface gigabitEthernet 1/0/4 313 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 337
. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the Voice VLAN function for VLAN 10: T2500G-10TS(config)# voice vlan 10 35.2 voice vlan (interface) Description The voice vlan command is used - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 338
Enable the Voice VLAN function for port 1/0/1: T2500G-10TS(config)# interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#voice vlan 35.3 voice vlan priority Description The voice vlan priority command is used to configure the priority for the Voice VLAN. To restore to the default priority, please - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 339
a Voice VLAN OUI described as TP-Phone with the OUI address 00:11:11:11:11:11 and the mask address FF:FF:FF:00:00:00: T2500G-10TS(config)#voice vlan oui 00:11:11 oui-desc TP-Phone 35.5 show voice vlan Description The show voice vlan command is used to display the global configuration information of - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 340
commands. Example Display the configuration information of Voice VLAN globally: T2500G-10TS(config)# show voice vlan 35.6 show voice vlan oui-table Description The show voice vlan oui command is used to display the configuration information of Voice VLAN OUI. Syntax show voice vlan oui Command Mode - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 341
Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Display the Voice VLAN configuration information of all ports and port channels: T2500G-10TS(config)# show voice vlan interface 318 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 342
can help ensure that the sound quality of an IP phone does not deteriorate when data traffic on Configuration Mode Example Enable the Auto VoIP function globally: T2500G-10TS(config)# auto-voip 36.2 auto-voip (interface) Description The auto-voip command is used to specify the interface mode as VLAN - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 343
Configuration Mode (interface fastEthernet / interface range fastEthernet /interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Example Set Auto VoIP VLAN 3 for port 3: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 344
T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# auto-voip untagged 36.5 auto-voip none Description The auto-voip none command is used to specify the interface mode as none for the ports. In this mode, the switch allows the voice devices to use its own configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 345
Example Instruct voice devices that are connected to port 3 to send the packets according to its own configuration: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# auto-voip none 36.6 no auto-voip (interface) Description The no auto-voip command is used to specify the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 346
By default, it is 0. Command Mode Interface Configuration Mode (interface fastEthernet / interface range fastEthernet /interface gigabitEthernet / interface range gigabitEthernet / interface port-channel / interface range port-channel) Example Set DSCP value of Auto VoIP on port 3 as 33: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 347
the Auto VoIP configuration information of ports. When no parameter is entered, displays the global Auto VoIP configuration information. Command Mode Privileged EXEC Mode and any Configuration Mode Example Displays the global Auto VoIP configuration information: T2500G-10TS (config)# show auto - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 348
level users have access to these commands. Example Configure the access control mode as IP-based: T2500G-10TS(config)# user access-control ip-based enable 37.2 user access-control ip-based Description The user access-control ip-based command is used to limit the IP-range of the users for login. Only - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 349
enabled by default. id -- Delete the specified IP-based entry. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Enable the access-control of the user whose IP address is 192.168.0.148: T2500G-10TS(config)# user - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 350
entry to be deleted. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Configure that only the user whose MAC address is 00:00:13:0A:00:01 is allowed to login: T2500G-10TS(config)# user access-control mac-based 00 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 351
Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Configure the access control mode as Port-based: T2500G-10TS(config)# user access-control port-based enable 37.6 user access-control port-based Description The user access-control port-based - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 352
by default. id-- Specify the ID of the port-based entry to be deleted. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Configure that only the users connected to ports 2-6 are allowed to login: T2500G-10TS(config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 353
by default. The HTTP and HTTPS server function can be disabled at the same time. Syntax ip http server no ip http server Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Disable the HTTP function: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 354
users have access to these commands. Example Set the port number of HTTP server as 1800: T2500G-10TS(config)# ip http port 1800 38.3 ip http max-users Description The ip http max-users command is used to configure the maximum number of users that are allowed to connect to the HTTP server. To cancel - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 355
as 5, 1, 1, 1 for HTTP: T2500G-10TS(config)# ip http max-users 5 1 1 1 38.4 ip http session timeout Description The ip http session timeout command is used to configure the connection timeout of the HTTP server. To restore to the default timeout time, please use no ip http session timeout command - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 356
Disable the HTTP function: T2500G-10TS(config)# no ip http secure-server 38.6 ip http secure-port Description The ip http secure-port command is used to configure the port number of the HTTPS server within the switch. To set the number to the default value, please use no ip http secure-port command - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 357
as 2800: T2500G-10TS(config)# ip http port 2800 38.7 ip http secure-protocol Description The ip http secure-protocol command is used to configure the SSL protocol version. To restore to the default SSL version, please use no ip http secure-protocol command. By default, the switch supports SSLv3 and - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 358
connection as SSL 3.0: T2500G-10TS(config)# ip http secure-protocol ssl3 38.8 ip http secure-ciphersuite Description The ip http secure-ciphersuite command is used to configure the cipherSuites over the SSL connection supported by the switch. To restore to the default ciphersuite types, please use - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 359
than 16. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the maximum number of the Admin, Operator, Power User and User as 5, 1, 1, 1 for HTTPs: T2500G-10TS(config)# ip http secure-max-users - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 360
in minutes. By default, the value is 10. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the timeout time of the HTTPs connection as 15 minutes: T2500G-10TS(config)# ip http secure-session - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 361
. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Download an SSL Certificate named ssl-cert from TFTP server with the IP address of 192.168.0.146: T2500G-10TS(config)# ip http secure-server download - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 362
from TFTP server with the IP address of fe80::1234 T2500G-10TS(config)# ip http secure-server download key ssl-key ip-address fe80::1234 38.13 show ip http configuration Description The show ip http configuration command is used to display the configuration information of the HTTP server, including - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 363
secure-server command is used to display the global configuration of SSL. Syntax show ip http secure-server Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the global configuration of SSL: T2500G-10TS(config)# show ip http secure-server 340 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 364
to these commands. Example Enable the SSH function: T2500G-10TS(config)# ip ssh server 39.2 ip ssh port Description The ip ssh port command is used to configure the port for SSH service. To set the value to the default, please use no ip ssh port command. Syntax ip ssh port port no ip ssh port 341 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 365
from 1 to 65535. The default value is 22. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Configure the SSH port number as 22: T2500G-10TS(config)# ip ssh port 22 39.3 ip ssh version Description The - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 366
as AES128-CBC: T2500G-10TS(config)# ip ssh algorithm AES128-CBC 39.5 ip ssh timeout Description The ip ssh timeout command is used to specify the idle-timeout time of SSH. To restore to the factory defaults, please use ip ssh timeout command. Syntax ip ssh timeout value no ip ssh timeout Parameter - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 367
as 30 seconds: T2500G-10TS(config)# ip ssh timeout 30 39.6 ip ssh max-client Description The ip ssh max-client command is used to specify the maximum number of the connections to the SSH server. To return to the default configuration, please use no ip ssh max-client command. Syntax ip ssh max-client - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 368
::1234. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Download an SSH-1 type key file named ssh-key from TFTP server with the IP address 192.168.0.148: T2500G-10TS(config)# ip ssh download v1 ssh - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 369
39.9 show ip ssh Description The show ip ssh command is used to display the global configuration of SSH. Syntax show ip ssh Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the global configuration of SSH: T2500G-10TS(config)# show ip ssh 346 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 370
with the IP address of 192.168.0.10: T2500G-10TS# telnet 192 .168.0.10 40.2 telnet enable Description The telnet enable command is used to enable the Telnet function. To disable the Telnet function, please use the telnet disable command. This function is enabled by default - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 371
Only Admin and Operator level users have access to these commands. Example Disable the Telnet function: T2500G-10TS(config)# telnet disable 40.3 telnet port Description The telnet port command is used to configure the telent port number. To restore the setting, please use the no telnet port command - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 372
Syntax show telnet-status Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display whether the Telnet function is enabled: T2500G-10TS(config)# show telnet-status 349 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 373
console port. The default baul rate is 38400 bps. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Specify the communication baud rate on the console port to the default value: T2500G-10TS(config)# no serial_port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 374
methods and their sequence to authenticate a user. The switch supports Login List for users to gain access to the switch, and Enable List for normal users to gain administrative privileges. ■ RADIUS/TACACS+ Server User can configure the RADIUS/TACACS+ servers for the connection between the switch - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 375
are added in the server group "tacacs" by default. Example Configure a TACACS+ server with the IP address as 1.1.1.1, TCP port as 1500, timeout as 6 seconds, and the unencrypted key string as 12345. T2500G-10TS(config)# tacacs-server host 1.1.1.1 port 1500 timeout 6 key 12345 42.2 show tacacs - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 376
T2500G-10TS(config)# show tacacs-server 42.3 radius-server host Description The radius-server host command is used to configure ip-address Parameter ip-address -- Specify the IP address of the RADIUS server. auth-port port-id -- Specify the UDP destination port for authentication requests. By default - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 377
are added in the server group "radius" by default. Example Configure a RADIUS server with the IP address as 1.1.1.1, authentication port as 1200, timeout as 6 seconds, retransmit times as 3, and the unencrypted key string as 12345. T2500G-10TS(config)# radius-server host 1.1.1.1 auth-port 1200 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 378
type as RADIUS or TACACS+. group-name -- Specify the server group name. Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Create a RADIUS server group with the name radius1: T2500G-10TS(config)# aaa group radius radius1 355 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 379
the server's IP address. Command Mode Server Group Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Create the RADIUS server 1.1.1.1 to RADIUS server group "radius1": T2500G-10TS(config)# aaa group radius radius1 T2500G-10TS(aaa-group)# server - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 380
to these commands. Example Display the information of all the server groups: T2500G-10TS(config)# show aaa group 42.8 aaa authentication login Description This aaa authentication login command is used to configure a login authentication method list. A method list describes the authentication methods - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 381
to these commands. User Guidelines By default the login authentication method list is "default" with "local" as method1. Example Configure a login authentication method list "list1" with the priority1 method as radius and priority2 method as local: T2500G-10TS(config)# aaa authenticaiton login list1 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 382
group is supported, and the default method is server group "radius". Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure the default 802.1x authentication method as "radius1": T2500G-10TS(config)# aaa authentication - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 383
server group is supported, and the default method is server group "radius". Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure the default 802.1x accounting method as "radius1": T2500G-10TS(config)# aaa accounting - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 384
to these commands. Example Display the information of the default 802.1x accounting method list: T2500G-10TS(config)# show aaa accounting 42.14 line telnet Description The line telnet command is used to enter the Line Configuration Mode to configure the telnet terminal line to which you want to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 385
" by default, which contains the method "local". Command Mode Line Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure the login authentication method list on the telnet terminal line as "list1": T2500G-10TS(config)#line telnet T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 386
Enter the ssh terminal line configuration mode: T2500G-10TS(config)#line ssh 42.17 login authentication (ssh) Description The login authentication command is used to apply the login authentication method list to the ssh terminal line. To restore to the default authentication method list, please use - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 387
console 0 terminal line configuration mode: T2500G-10TS(config)#line console 0 42.19 login authentication (console) Description The login authentication command is used to apply the login authentication method list to the console terminal line. To restore to the default authentication method list - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 388
It is "default" by default, which contains the method "local". Command Mode Line Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure the login authentication method list on the console 0 terminal line as "list1": T2500G-10TS(config)# line - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 389
by default, which contains the method "none". Command Mode Line Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure the enable authentication method list on the ssh terminal line as "list2": T2500G-10TS(config)# line ssh T2500G-10TS(config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 390
It is "default" by default, which contains the method "none". Command Mode Line Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure the enable authentication method list on the console 0 terminal line as "list2": T2500G-10TS(config)# line - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 391
. It is "default" by default, which contains the method "local". Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure the login authentication method list on the HTTP access as "list1": T2500G-10TS(config)# ip http login - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 392
Example Configure the enable authentication method list on the HTTP access as "list2": T2500G-10TS(config)# ip http enable authentication list2 42.25 show aaa global Description This show aaa global command is used to display global status of AAA function and - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 393
configured here is unencrypted and the global encryption function is enabled in service password-encryption, the password in the configuration configured password will take effect. Example Set the Enable password as "abc123" and unencrypted for users to change the access level to admin: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 394
characters are By default, it is empty. The password in the configuration file will be configured password will take effect. Example Set the Enable password as "abc123" and unencrypted for users to change the access level to admin. The password will be displayed in the encrypted form. T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 395
Syntax enable-admin Command Mode Privileged EXEC Mode Privilege Requirement Only User, Power User and Operator level users have access to these commands. Example Get the administrative privelges (the Enable password is "123456"): T2500G-10TS# enable-admin Password: 123456 372 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 396
the supplicant. It is usually an 802.1x-supported network device, such as this TP-Link switch. It acts as an intermediary (proxy Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the IEEE 802.1x function: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 397
commands. Example Disable the 802.1x handshake function: T2500G-10TS(config)# no dot1x handshake 43.3 dot1x auth-protocol Description The dot1x auth-protocol command is used to configure the authentication protocol of IEEE 802.1x and the default 802.1x authentication method is "eap". To restore - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 398
have access to these commands. Example Configure the Authentication protocol of IEEE 802.1x as "pap": T2500G-10TS(config)#dot1x auth-protocol pap 43.4 dot1x vlan-assignment Description The dot1x vlan-assignment command is used to enable the VLAN assignment feature.To disable this feature, please - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 399
Syntax dot1x vlan-assignment no dot1x vlan-assignment Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the VLAN assignment feature: T2500G-10TS(config)#dot1x vlan-assignment 43.5 dot1x - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 400
. Example Enable the MAB feature on the Gigabit Ethernet port 1/0/1: T2500G-10TS(config)#interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#dot1x mab 43.7 dot1x guest-vlan Description The dot1x guest-vlan command is used to configure the Guest VLAN function on the port. To disable the Guest - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 401
Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the Guest VLAN function for VLAN 5 and set the VLAN ID as 20 on the Gigabit Ethernet port 1/0/1: T2500G-10TS(config)#interface gigabitEthernet 1/0/1 T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 402
Ethernet port 1/0/1: T2500G-10TS(config)#interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#dot1x quiet-period 5 43.9 dot1x timeout supp-timeout Description The dot1x timeout supp-timeout command is used to configure the supplicant timeout on the port.To restore to the default, please use no - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 403
gigabitEthernet 1/0/1 T2500G-10TS(config-if)#dot1x timeout supp-timeout 5 43.10 dot1x max- req Description The dot1x max-req command is used to configure the maximum transfer times of the repeated authentication request when the server cannot be connected. To restore to the default value, please - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 404
for the Gigabit Ethernet port 1: T2500G-10TS(config)#interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#dot1x 43.12 dot1x port-control Description The dot1x port-control command is used to configure the Control Mode of IEEE 802.1x for the specified port. By default, the control mode is "auto - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 405
as "authorized-force": T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)#dot1x port-control authorized-force 43.13 dot1x port-method Description The dot1x port-method command is used to configure the control type of IEEE 802.1x for the specified port. By default, the control - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 406
Only Admin, Operator and Power User level users have access to these commands. Example Configure the Control Type for Gigabit Ethernet port 2 as "port-based": T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)#dot1x port-method port-based 43.14 dot1x auth-init Description The - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 407
client whose MAC address is a 00:02:58:4f:6c:23 on port 1: T2500G-10TS(Config)# interface gigabitEthernet 1/0/1 T2500G-10TS(Config-if)#dot1x auth-reauth mac 00:02:58:4f:6c:23 43.16 show dot1x global Description The show dot1x global command is used to display the global configuration of 801.X. 384 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 408
Syntax show dot1x global Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configuration of 801.X globally: T2500G-10TS(config)#show dot1x global 43.17 show dot1x interface Description The show dot1x interface command is used to display all - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 409
of each port. Syntax show dot1x auth-state [ interface fastEthernet port | interface gigabitEthernet port] Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the authentication status of each port: T2500G-10TS(config)#show dot1x auth-state 386 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 410
security feature of the port and configure the related parameters. To disable the feature and restore the parameters to defaults on the port, please use feature and configure the mode as permanent and the status as drop: T2500G-10TS (config)#interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#mac - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 411
port | gigabitEthernet port | ten-gigabitEthernet port } Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the port security configuration on port 1/0/1 T2500G-10TS# show mac address-table max-mac-count interface gigabitEthernet 1/0/1 388 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 412
troubleshooting the network. 45.1 monitor session destination interface Description The monitor session destination interface command is used to configure . Example Create monitor session 1 and configure port 1/0/1 as the monitoring port: T2500G-10TS(config)# monitor session 1 destination interface - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 413
session 1 destination interface gigabitEthernet 1/0/2 Delete the monitor session 1: T2500G-10TS(config)# no monitor session 1 45.2 monitor session source Description The monitor session source command is used to configure the monitored interface. To delete the corresponding monitored interface - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 414
ports are in the same VLAN or not is not demanded strictly. 4. The monitoring port and monitored ports cannot be link-aggregation member. Example Create monitor session 1, then configure port 4, 5, 7 as monitored port and enable ingress monitoring: T2500G-10TS(config)# monitor session 1 source - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 415
Example Display the monitoring configuration of monitor session 1: T2500G-10TS(config)# show monitor session 1 392 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 416
Enter a name to identify the ACL. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create an IP ACL whose ID is 523: T2500G-10TS(config)# access-list create 523 46.2 access-list resequence Description - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 417
Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Resequence the rules of ACL 12 with the start ID as 1 and step value as 5: T2500G-10TS type ether-type] [pri dot1p-priority] [vid vlan-id] [tseg time-range-name] no access- - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 418
-range. The default is No Limit. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create MAC ACL 50 and configure Rule 5 to permit packets with source MAC address 00:34:a2:d4:34:b5: T2500G-10TS (config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 419
mask d-port-mask] [tcpflag tcpflag]] [tseg time-range-name] no access-list ip acl-id-or-name rule rule-id Parameter acl-id-or-name -- Enter the -- Specify the action to be taken with the packets that match the rule. By default, it is set to permit. The packets will be discarded if "deny" is selected - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 420
. The default is No Limit. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create IP ACL 600, and configure Rule 1 to permit packets with source IP address 192.168.1.100: T2500G-10TS (config)#access - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 421
a destination MAC address is entered. vlan-id: The VLAN ID ranges from 1 to 4094. ether-type -- Specify the Ethernet-type with 4 hexadecimal numbers. priority -- The user priority ranges from 0 to 7. The default is No Limit. source-ip: Enter the source IP address. source-ip-mask -- Enter the mask of - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 422
default is No Limit. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create Combined ACL 1100 and configure Rule 1 to deny packets with source IP address 192.168.3.100 in VLAN 2: T2500G-10TS(config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 423
permit -- Specify the action to be taken with the packets that match the rule. By default, it is set to permit. The packets will be discarded if "deny" is selected but only the first 64 bits will be valid. source-ip-mask -- Enter the source IP address mask. The mask is required if the source IPv6 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 424
an IPv6 ACL to a VLAN or interface, you should configure the SDM template as "enterpriseV6" and save your configurations. Example Create IPv6 ACL 1600 and configure Rule 1 to deny packets with source IPv6 address CDCD:910A:2222:5498:8475:1111:3900:2020: T2500G-10TS(config)# access-list create 1600 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 425
be redirected. The default is All. Command Mode Action Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Define the policy to redirect the matched packets to port 1/0/1 for rule 1 of ACL 6: T2500G-10TS(config)# access-list - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 426
specified rate. The default is None. Configure a policy for rule 1 of ACL 6: limit the transmission rate of the matched packets as 1000 Kbps and if the number of bytes per second is beyond 100, the packets will be discarded by the switch: T2500G-10TS(config)#access-list action 6 rule 1 T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 427
matching this rule: T2500G-10TS(config)#access-list action 6 rule 1 T2500G-10TS(config-action)#s-mirror interface gigabitEthernet 1/0/2 46.11 qos-remark Description The qos-remark command is used to configure QoS Remark function of policy action. To restore the settings to the default, please use no - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 428
Configure a policy for rule 1 of ACL 6: specify the DSCP region as 30 and local priority 2 for the packets matching this rule: T2500G-10TS(config)#access-list action 6 rule 1 T2500G-10TS access-list bind acl-id-or-name interface { [ vlan vlan-list ] | [ fastEthernet port-list ] | [gigabitEthernet - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 429
access to these commands. Example Bind ACL 1 to port 3 and VLAN 4: T2500G-10TS(config)#access-list bind 1 interface vlan 4 gigabitEthernet 1/0/3 46.13 show access-list Description The show access-list command is used to display configuration of ACL. Syntax show access-list acl-id-or-name Parameter - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 430
ACL entry resource. Syntax show access-list status Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the usage status of ACL entry resource: T2500G-10TS(config)# show access-list status 46.16 show access-list counter Description The show access - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 431
Example Display the packet counter of ACL 100: T2500G-10TS(config)# show access-list 100 counter 46.17 ID of the rule. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Clear the packet counter of ACL 100: T2500G-10TS(config)# clear access-list 100 408 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 432
verify source to filter the packets. 47.1 ip source binding Description The ip source binding command is used to bind the IP address, MAC address, VLAN ID and the Port number together manually. You can manually bind the IP address, MAC address, VLAN ID and the Port number together in the condition - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 433
User level users have access to these commands. Example Bind an ACL entry with the IP 192.168.0.1, MAC 00:00:00:00:00:01, VLAN ID 2 and the Port number 5 manually. And then enable the entry for the ARP detection: T2500G-10TS(config)#ip source binding host1 192.168.0.1 00:00:00:00:00:01 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 434
function on VLAN 1,4,6-7: T2500G-10TS(config)#ip dhcp snooping vlan 1,4,6-7 47.4 ip dhcp snooping max-entries Description The ip dhcp snooping max-entries command is used to configure the maximum number of entries that can be learned on a port via DHCP Snooping. To restore to the default setting - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 435
to these commands. Example Configure the maximum number of entries that can be learned on port 1/0/1 as 100: T2500G-10TS(config)#interface gigabitEthernet 1/0/1 T2500G-10TS(config-if)#ip dhcp snooping max-entries 100 47.5 show ip source binding Description The show ip source binding command is used - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 436
None. Example Display the running status of DHCP Snooping: T2500G-10TS#show ip dhcp snooping 47.7 show ip dhcp snooping interface Description The show ip dhcp snooping interface command is used to display the DHCP Snooping configuration of a desired Gigabit Ethernet port/port channel or of - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 437
Example Display the DHCP Snooping configuration of all Ethernet ports and port channels: T2500G-10TS#show ip dhcp snooping interface Display the DHCP Snooping configuration of Gigabit Ethernet port 1/0/5: T2500G-10TS#show ip dhcp snooping interface gigabitEthernet 1/0/5 414 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 438
IP verify source to filter the packets. 48.1 Ipv6 source binding Description The ipv6 source binding command is used to bind the IPv6 address, MAC address, VLAN ID and the Port number together manually. You can manually bind the IPv6 address, MAC address, VLAN Mode Global Configuration Mode 415 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 439
binding. Syntax Ipv6 dhcp snooping no ipv6 dhcp snooping Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the DHCPv6 Snooping function globally: T2500G-10TS(config)#ipv6 dhcp snooping 416 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 440
on VLAN 1,4,6-7: T2500G-10TS(config)#ipv6 dhcp snooping vlan 1,4,6-7 48.4 ipv6 dhcp snooping max-entries Description The ipv6 dhcp snooping max-entries command is used to configure the maximum number of entries that can be learned on a port via DHCPv6 Snooping. To restore to the default setting - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 441
Configure the maximum number of entries that can be learned on port 1/0/1 as 100: T2500G-10TS(config)#interface gigabitEthernet 1/0/1 T2500G-10TS(config VLAN and the connected Port number of the Host for automatic binding. Syntax ipv6 nd snooping no ipv6 nd snooping Command Mode Global Configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 442
format of 1-3, 5. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the ND snooping function on VLAN 1,4,6-7: T2500G-10TS(config)#ipv6 nd snooping vlan 1,4,6-7 48.7 ipv6 nd snooping max-entries - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 443
and Power User level users have access to these commands. Example Configure the maximum number of binding entries from ND Snooping of Gigabit Ethernet port 1/0/2 is 100: T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)#ipv6 nd snooping max-entries 100 48.8 show ipv6 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 444
of DHCPv6 Snooping. Syntax show ipv6 dhcp snooping Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the running status of DHCPv6 Snooping: T2500G-10TS#show ipv6 dhcp snooping 48.10 show ipv6 dhcp snooping interface Description The show ipv6 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 445
Requirement None. Example Display the DHCPv6 Snooping configuration of all Ethernet ports and port channels: T2500G-10TS#show ipv6 dhcp snooping interface Display the DHCPv6 Snooping configuration of Gigabit Ethernet port 1/0/5: T2500G-10TS#show ipv6 dhcp snooping interface gigabitEthernet 1/0/5 48 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 446
Privilege Requirement None. Example Display the ND Snooping configuration of all Ethernet ports and port channels: T2500G-10TS#show ipv6 nd snooping interface Display the ND Snooping configuration of Gigabit Ethernet port 1/0/5: T2500G-10TS#show ipv6 nd snooping interface gigabitEthernet 1/0/5 423 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 447
which can enhance the bandwidth utility. 49.1 ip verify source Description The ip verify source command is used to configure the IP Verify Source mode for a specified port. To disable the IP Verify Source function, please use no ip verify source command. Syntax ip verify source { sip+mac | sip } no - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 448
switch generate logs when receiving illegal packets: T2500G-10TS(config)#ip verify source logging 49.3 show ip verify source Description The show ip verify source command is used to display the IP Verify Source configuration information. Syntax show ip verify source Command Mode Privileged EXEC Mode - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 449
Requirement None. Example Display the IP Verify Source configuration information: T2500G-10TS(config)#show ip verify source 49.4 show ip verify source interface Description The show ip verify source interface command is used to display the IP verify source configuration of a desired Gigabit Ethernet - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 450
with its source IPv6 address and port number matched to the IPv6-MAC binding rules can be processed. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet ) Privilege Requirement Only Admin, Operator and Power User level users have access to these - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 451
information. Syntax show ipv6 verify source Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the IPv6 Verify Source configuration information: T2500G-10TS(config)#show ipv6 verify source 50.3 show ipv6 verify source interface Description The - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 452
Privilege Requirement None. Example Display the IPv6 verify source configuration of Gigabit Ethernet port 1/0/5: T2500G-10TS#show ipv6 verify source interface gigabitEthernet 1/0/5 429 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 453
filter command. Syntax ip dhcp filter no ip dhcp filter Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the DHCP Filter function globally: T2500G-10TS(config)#ip dhcp filter 51.2 ip dhcp filter - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 454
on port 1/0/1 T2500G-10TS(config)#interface gigabitEthernet 1/0/1 T2500G-10TS(Config-if)#ip dhcp filter 51.3 ip dhcp filter mac-verify Description The ip dhcp filter mac different. Syntax ip dhcp filter mac-verify no ip dhcp filter mac-verify Command Mode Interface Configuration Mode (interface - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 455
T2500G-10TS(config-if)#ip dhcp filter mac-verify 51.4 ip dhcp filter limit rate Description The ip dhcp filter limit rate command is used to enable the Flow Control feature for the DHCP packets. The excessive DHCP packets will be discarded. To restore to the default configuration, please use no ip - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 456
have access to these commands. Example Configure the rate limit of DHCP Decline packets as 20 packets per second on Gigabit Ethernet port 1/0/2: T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)#ip dhcp filter decline 20 51.6 ip dhcp filter server permit-entry Description - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 457
without client MAC address restricted: T2500G-10TS(config)#ip dhcp filter server permit-entry server-ip 192.168.0.100 client-mac all interface gigabitEthernet 1/0/1 51.7 show ip dhcp filter Description The show ip dhcp filter command is used to display the configuration of DHCP Filter. Syntax show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 458
None. Example Display the DHCP Filter configuration: T2500G-10TS#show ip dhcp filter 51.8 show ip dhcp filter interface Description The show ip dhcp filter interface command is used to display the configuration of DHCP Filter on ports. Syntax show ip dhcp filter interface [fastEthernet port - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 459
Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the legal DHCP server configuration: T2500G-10TS#show ip dhcp filter server permit-entry 436 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 460
are present on the network and both provide DHCPv6 services to different distinct groups of clients. 52.1 ipv6 dhcp Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the DHCPv6 Filter function globally: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 461
1/0/1 T2500G-10TS(Config-if)#ipv6 dhcp filter 52.3 ipv6 dhcp filter limit rate Description The ipv6 dhcp filter limit rate command is used to enable the Flow Control feature for the DHCPv6 packets. The excessive DHCPv6 packets will be discarded. To restore to the default configuration, please - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 462
port 2 as 20 pps: T2500G-10TS(config)#interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)#ipv6 dhcp filter limit rate 20 52.4 ipv6 dhcp filter decline rate Description The ipv6 dhcp filter decline rate command is used to enable the Decline Protect feature and configure the rate limit on DHCP - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 463
. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Create an entry for the legal DHCPv6 server whose IP address is 192.168.0.100 and connected port number is 1/0/1: T2500G-10TS(config)#ipv6 dhcp filter - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 464
of DHCPv6 Filter. Syntax show ipv6 dhcp filter Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the DHCPv6 Filter configuration: T2500G-10TS#show ipv6 dhcp filter 52.7 show ipv6 dhcp filter interface Description The show ipv6 dhcp filter - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 465
is used to display the legal server configuration. Syntax show ipv6 dhcp filter server permit-entry Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the legal DHCPv6 server configuration: T2500G-10TS#show ipv6 dhcp filter server permit-entry - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 466
sending a lot of service requests to the Host. Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the DoS defend function globally: T2500G-10TS(config)#ip dos-prevent 53.2 ip dos-prevent type Description The ip - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 467
with Ping packets, creating a broadcast storm that makes it impossible for the system to respond to legal communication. syn-flood --The attacker uses a fake IP address to send TCP request packets to the server. Upon receiving the request packets, the server responds with SYN-ACK packets. Since the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 468
with traffic. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the DoS Defend Type named Land attack: T2500G-10TS(config)#ip dos-prevent type land 53.3 show ip dos-prevent Description The show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 469
Example Display the DoS information of the detected DoS attack globally: T2500G-10TS(config)#show ip dos-prevent 446 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 470
monitoring and troubleshooting Ethernet networks. T2500G-10TS(config)# interface gigabitEthernet 1/0/2 T2500G-10TS(config-if)#ethernet-oam 54.2 ethernet-oam mode Description The ethernet-oam mode command is used to configure the OAM mode for the desired port. To return to the default configurations - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 471
1/0/2 T2500G-10TS(config-if)#ethernet-oam mode passive 54.3 ethernet-oam link-monitor symbol-period Description The ethernet-oam link-monitor symbol-period command is used to configure the parameters about one of the link events, error symbol period event. To return to the default configurations - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 472
1/0/2 T2500G-10TS(config-if)# ethernet-oam link-monitor symbol-period threshold 5 window 30 54.4 ethernet-oam link-monitor frame Description The ethernet-oam link-monitor frame command is used to configure the parameters about one of the link events, error frame event. To return to the default - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 473
return to the default configuration. Command Mode Interface Configuration Mode (interface configure the error threshold as 6 and the event detection interval as 9 seconds on Gigabit Ethernet port 1/0/3: T2500G-10TS(config)# interface gigabitEthernet 1/0/3 T2500G-10TS(config-if)# ethernet-oam link - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 474
return to the default configuration. Command Mode Interface Configuration Mode (interface configure the error threshold as 6 and the event detection interval as 150000 frames on Gigabit Ethernet port 1/0/4: T2500G-10TS(config)# interface gigabitEthernet 1/0/4 T2500G-10TS(config-if)# ethernet-oam link - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 475
commands. Example For error frame seconds event, configure the error threshold as 8 and the event detection interval as 30 seconds on Gigabit Ethernet port 5: T2500G-10TS(config)# interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)# ethernet-oam link-monitor frame-seconds threshold 8 window 300 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 476
number. By default, the Ethernet OAM statistics of all ports are cleared. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Clear Ethernet OAM statistics of Gigabit Ethernet port 1/0/3: T2500G-10TS(config)# clear - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 477
number. By default, the Ethernet OAM event logs of all ports are cleared. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Clear Ethernet OAM event log of Gigabit Ethernet port 1/0/3: T2500G-10TS(config)# clear - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 478
By default, the Ethernet OAM event logs of all ports are displayed. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Display Ethernet OAM event log of Gigabit Ethernet port 1/0/2: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 479
default, the Ethernet OAM statistics of all ports are displayed. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Display Ethernet OAM statistics of Gigabit Ethernet port 1/0/2: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 480
Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Display Ethernet OAM status of Gigabit Ethernet port 1/0/2: T2500G-10TS(config)# show ethernet-oam status interface gigabitEthernet 1/0/2 457 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 481
link is detected, the corresponding port will be shut down automatically or manually (depending on the shut mode configured). Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Enable the DLDP function globally: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 482
. The operation to shut down the unidirectional link ports is accomplished by the users. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Configure the shut-mode as manual: T2500G-10TS(config)# dldp shut-mode - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 483
commands. Example Enable the DLDP function of ports 1/0/2-4: T2500G-10TS (config)# interface range gigabitEthernet 1/0/2-4 T2500G-10TS (config-if-range)# dldp 55.5 show dldp Description The show dldp command is used to display the global configuration of DLDP function such as DLDP global state, DLDP - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 484
Example Display the global configuration of DLDP function: T2500G-10TS# show dldp 55.6 show dldp interface Description The show dldp interface command is used to display the configuration and state of the specified Ethernet port. By default, the configuration and state of all the ports will be - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 485
. To return to the default configuration, please use no snmp-server command. Syntax snmp-server no snmp-server Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Enable the SNMP function: T2500G-10TS(config)# snmp-server 56 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 486
Only Admin level users have access to these commands. Example Add a View named view1, configuring the OID as 1.3.6.1.6.3.20, and this OID can be managed by the SNMP management station: T2500G-10TS(config)# snmp-server view view1 1.3.6.1.6.3.20 include 56.3 snmp-server group Description The snmp - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 487
group, and configure the name as group 1, the Security Model as SNMP v3, the security level as authNoPriv, the management access to the assigned View viewDefault as read-write, besides the notification messages sent by View viewDefault can be received by Management station: T2500G-10TS(config)# snmp - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 488
user is connected to a remote SNMP engine. As the remote engine ID and user password are used to compute the authentication and privacy digests, before configuring a remote user, you need to set the remote engine ID first. group-name -- The Group Name of the User. The User is classified to the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 489
admin to Group group2, and configure the Security Model of the user as v3, the Security Level of the group as authPriv, the Authentication Mode of the user as MD5, the Authentication Password as 11111, the Privacy Mode as DES, and the Privacy Password as 22222: T2500G-10TS(config)# snmp-server user - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 490
community to access. Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Add community public, and the community has read-write management right to View viewDefault: T2500G-10TS(config)# snmp-server community public read-write - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 491
resend and timeout need to be configured if you select this option. You can only select the trap type in Security Model v1. By default, the type of the notifications is to these commands. Example Add a Notification entry, and configure the IP address of the management Host as 192.168.0.146, the - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 492
time as 100: T2500G-10TS(config)# snmp-server host fe80::1234 162 admin smode v2c type inform retries 100 timeout 1000 56.7 snmp-server engineID Description The snmp-server engineID command is used to configure the local and remote engineID of the switch. To restore to the default setting, please - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 493
remote engineID as abcdef123456: T2500G-10TS(config)# snmp-server engineID standard traps. All SNMP standard traps are enabled by default. To disable the sending of SNMP standard traps, please then enable SNMP after the SNMP is completely configured and enabled. coldstart -- Indicates an SNMP - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 494
you have set. The limit of CPU utilization rate for the switch is 80% by default. flash --Triggered when flash is modified during operations such as backup, reset, firmware upgrade, configuration import, and so on. lldp remtableschange --An lldp RemTablesChange notification is sent when the value - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 495
is disabled by default. The system will generate the trap when the memory utilization exceeds 80%. Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Enable SNMP extended bandwidth-control trap for the switch: T2500G-10TS(config - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 496
DDM traps. For more instructions about the alarm threshold or warning threshold, refer to Chapter 11 DDM Commands. Command Mode Global Configuration Mode Example Enable all the SNMP DDM traps for the switch: T2500G-10TS(config)# snmp-server traps ddm 56.11 snmp-server traps vlan Description The snmp - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 497
Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Enable all SNMP extended VLAN-related traps for the switch: T2500G-10TS(config)# snmp-server traps vlan Enable VLAN-created trap only for the switch: T2500G-10TS(config)# snmp-server traps vlan - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 498
Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Enable the ACL trap for the switch: T2500G-10TS(config)# snmp-server traps acl 56.14 snmp-server traps ip Description The snmp-server traps ip command is used to enable IP traps. To - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 499
conflict event. Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Enable the IP-Change trap for the switch: T2500G-10TS(config)# snmp-server traps ip change 56.15 snmp-server traps link-status Description The snmp-server traps - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 500
from 1 to 130. The default is 50 buckets. Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure the sample port as Gi1/0/2 and the sample interval as 100 seconds for the entry 1-3: T2500G-10TS(config)# rmon history - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 501
. By default, it is "public". descript -- The description of the event, ranging from 1 to 16 characters. By default, it is Configure the user name of entry 1, 2, 3 and 4 as user1, the description of the event as description1, the type of event as log and the owner of the event as owner1: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 502
56.18 rmon alarm Description The rmon alarm command is used to configure SNMP-RMON Alarm Management. To return to the default configuration, please use no rmon alarm command. Alarm Group is one of the commonly used RMON Groups. RMON alarm management allows monitoring the specific alarm variables. - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 503
. By default, it is 1800. Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Configure rmon alarm entries 1-3 binding with statistics entry 2, the owners as owner1 and the alarm intervals as 100 seconds: T2500G-10TS(config)#rmon - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 504
The creator of the event entry, ranging from 1 to 16 characters. By default, it is "monitor". status -- The status of the statistics entry, either " Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Display SNMP configuration globally: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 505
Group table. Syntax show snmp-server group Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Display the Group table: T2500G-10TS# show snmp-server group 56.23 show snmp-server user Description The show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 506
table. Syntax show snmp-server community Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Display the Community table: T2500G-10TS# show snmp-server community 56.25 show snmp-server host Description The - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 507
. By default, the configuration of all history sample entries is displayed. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Display the configuration of all history sample entries: T2500G-10TS# show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 508
command. By default, the configuration of all SNMP-RMON enabled entries is displayed. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Display the Event configuration of entry1-4: T2500G-10TS# show rmon - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 509
to 65535. By default, the configuration of all statistics entries is displayed. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin level users have access to these commands. Example Display the configuration of the statistics entry 1: T2500G-10TS#show rmon - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 510
detection command. Syntax ip arp inspection no ip arp inspection Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the ARP Detection function globally: T2500G-10TS(config)#ip arp inspection 57 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 511
Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the switch to check whether the source MAC address and the sender MAC address are the same when receiving an ARP packet T2500G-10TS(config)#ip arp - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 512
the switch generate a log when an ARP packet is discarded. Command Mode Global Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Enable the log feature on VLAN 2: T2500G-10TS(config)#ip arp inspection vlan 2 logging 489 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 513
Port: T2500G-10TS(config)#interface range gigabitEthernet 1/0/2-5 T2500G-10TS(config-if-range)#ip arp inspection trust 57.6 ip arp inspection limit-rate Description The ip arp inspection limit-rate command is used to configure the ARP speed of a specified port. To restore to the default speed - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 514
5: T2500G-10TS(config)#interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)#ip arp inspection limit-rate 50 57.7 ip arp inspection burst-interval Description The ip arp inspection burst-interval command is used to configure the burst interval of a specified port. To restore to the default speed - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 515
access to these commands. Example Configure the burst interval as 2 seconds for Gigabit Ethernet port 5: T2500G-10TS(config)#interface gigabitEthernet 1/0/5 T2500G-10TS(config-if)#ip arp inspection burst-interval 2 57.8 ip arp inspection recover Description The ip arp inspection recover command is - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 516
Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the ARP detection configuration globally: T2500G-10TS(config)#show ip arp inspection 57.10 show ip arp inspection interface Description The show ip arp inspection interface command is used to - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 517
is used to display the VLAN configuration of ARP detection. Syntax show ip arp inspection vlan Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the ARP Inspection configuration of VLAN: T2500G-10TS(config)#show ip arp inspection vlan 57.12 show - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 518
statistics Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement Only Admin, Operator and Power User level users have access to these commands. Example Clear the statistic of the illegal ARP packets received: T2500G-10TS(config)#clear ip arp inspection statistics 495 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 519
ipv6 nd detection no ipv6 nd detection Command Mode Global Configuration Mode Example Enable the ND Detection function globally: T2500G-10TS(config)#ipv6 nd detection 58.2 ipv6 nd detection vlan Description The ipv6 nd detection vlan command is used to enable ND Detection function on a specified - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 520
command. Syntax ipv6 nd detection vlan vlan-range logging no ipv6 nd detection vlan vlan-range logging Parameter vlan-range --Enter the vlan range in the format of 1-3, 5. Command Mode Global Configuration Mode Example Enable the Log function on VLAN 1,4,6-7: T2500G-10TS(config)#ipv6 nd detection - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 521
including the enable/disable status. Syntax show ipv6 nd detection Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the ND Detection configuration globally: T2500G-10TS(config)#show ipv6 nd detection 58.6 show ipv6 nd detection interface Description The show ipv6 nd - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 522
the ND statistics of each VLAN, including the number of forwarded and dropped ND packets. Syntax show ipv6 nd detection statistics Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the ipv6 ND Detection statistics of each VLAN. T2500G-10TS(config)#show ipv6 nd detection - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 523
The show ipv6 nd detection vlan command is used to display the VLAN configuration of ND Detection. Syntax show ipv6 nd detection vlan Command Mode Privileged EXEC Mode and Any Configuration Mode Example Display the ipv6 ND Detection configuration of VLAN. T2500G-10TS(config)#show ipv6 nd detection - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 524
Enable the system log buffer: T2500G-10TS(config)#logging buffer 59.2 logging buffer level Description The logging buffer level command is used to configure the severity level and the status of the configuration input to the log buffer. To return to the default configuration, please use no logging - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 525
. By default, it is 6 indicating that the log information with level 0-6 will be saved in the log buffer. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Set the severity level as 5: T2500G-10TS(config)#logging - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 526
flash, ranging from 1 to 48 hours. By default, the synchronization process takes place every 24 hours. immediate Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Specify the log file synchronization frequency as 10 hours: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 527
value will be stored to the flash. To restore to the default level, please use no logging file flash level command. Syntax T2500G-10TS(config)#logging file flash level 7 59.6 logging host index Description The logging host index command is used to configure the Log Host. To clear the configuration - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 528
of the log host. The switch supports 4 log hosts at most. host-ip -- The IP for the log host. level Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Enable log host 2 and set its IP address as 192.168.0.148, the level 5: T2500G-10TS - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 529
be output to the terminal devices. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Output the log information with severity levels between 0-7 to the console port: T2500G-10TS(config)# logging console level 7 506 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 530
. This function is enabled by default. Syntax logging monitor no logging monitor Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Disable logging to the terminal devices: T2500G-10TS(config)# no logging monitor 59 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 531
: buffer and flash. Clear the information of the two channels, by default. Command Mode Global Configuration Mode Privilege Requirement Only Admin and Operator level users have access to these commands. Example Clear the information in the log file: T2500G-10TS(config)# clear logging buffer 508 - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 532
the log file. Syntax show logging local-config Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the configuration of the Local Log: T2500G-10TS(config)# show logging local-config 59.13 show logging loghost Description The show logging loghost - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 533
. Display all the log information in the log buffer by default. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the log information from level 0 to level 5 in the log buffer: T2500G-10TS(config)# show logging buffer level 5 59.15 show logging - TP-Link T2500G-10TS | T2500G-10TSTL-SG3210UN V2 CLI Reference Guide Guide - Page 534
level will display. Display all the log information in the log file by default. Command Mode Privileged EXEC Mode and Any Configuration Mode Privilege Requirement None. Example Display the log information with the level marked 0~3 in the log file: T2500G-10TS(config)# show logging flash level 3 511
CLI Reference Guide
T2500G-10TS (TL-SG3210)
1910012660 REV2.1.0
December 2019