HPE FlexNetwork 5510 HI Switch Series

Similar documents
HPE FlexFabric 5950 Switch Series

HPE FlexFabric 5940 Switch Series

HP 5130 EI Switch Series

HPE FlexNetwork MSR Router Series

HPE FlexNetwork MSR Router Series

About the H3C S5130-HI configuration guides

HP 6125 Blade Switch Series

HP 6125 Blade Switch Series

HP FlexFabric Switch Series

About the HP MSR Router Series

About the H3C S5130-EI configuration guides

About the HP A7500 Configuration Guides

HPE FlexFabric 5940 Switch Series

HP FlexFabric 5700 Switch Series

HPE FlexFabric 5940 Switch Series

HP A5820X & A5800 Switch Series MPLS. Configuration Guide. Abstract

HPE FlexFabric 5940 Switch Series

Overview 1. Service Features 1

HP 5920 & 5900 Switch Series

About the Configuration Guides for HP Unified

HPE FlexNetwork 5510 HI Switch Series

Switch shall have 4 SFP 1000 Mb/s ports (2 Port dual-personality ports; 10/100/1000BASE-T or SFP and 2 Fixed 1G SFP port)

HPE FlexNetwork 5510 HI Switch Series

Quidway NetEngine 20E/20 Series Router Product Specification

HPE FlexFabric 7900 Switch Series

About the HP 830 Series PoE+ Unified Wired-WLAN Switch and HP 10500/ G Unified Wired-WLAN Module

HP A5820X & A5800 Switch Series Security. Configuration Guide. Abstract

LSW GP8GC: 24 SFP Gigabit ports, 8 10/100/1000 BASE-T Ethernet ports (Combo) and two

HP Unified Wired-WLAN Products

HP 3600 v2 Switch Series

Router 6000 R17 Training Programs. Catalog of Course Descriptions

HP 5920 & 5900 Switch Series

HPE 5920 & 5900 Switch Series

HPE FlexNetwork 5510 HI Switch Series

3Com Switch 4800G Series, Version Release Notes. Customer Support. Documentation

CCNA Routing and Switching (NI )

HP FlexFabric 7900 Switch Series

HP 5920 & 5900 Switch Series

HPE FlexNetwork 7500 Switch Series

Cisco Certified Network Associate ( )

CCNA. Murlisona App. Hiralal Lane, Ravivar Karanja, Near Pethe High-School, ,

Supported Standards. Class of Service Tagging for Ethernet frames. Multiple Spanning Tree Protocol. Rapid Spanning Tree Protocol

HP Unified Wired-WLAN Products

HP FlexFabric 5930 Switch Series

debug ip ospf database external default-metric subnet area 0 stub distribute-list in Serial0/1

HPE FlexNetwork HSR6800 Routers

Table of Contents. 1 Introduction 1-1 Related Manuals 1-1 Volume Introduction 1-1

Operation Manual IPv4 Routing H3C S3610&S5510 Series Ethernet Switches. Table of Contents

TEXTBOOK MAPPING CISCO COMPANION GUIDES

HP 6125 Blade Switch Series

CCNP (Routing & Switching and T.SHOOT)

HP MSR Router Series. About the HP MSR series Configuration Guides(V5)

Gigabit Managed Ethernet Switch

Routing Protocol Type Primarily IGP or EGP RIP Distance-Vector IGP EIGRP OSPF IS-IS BGP

ArubaOS-Switch IPv6 Configuration Guide for WC.16.03

Product features. Applications

AXILSPOT 48-Port 10-Gigabit L3 Managed Switch AS-MT48-L3

Gigabit Managed Ethernet Switch

Gigabit Managed Ethernet Switch

Appendix A Command Index A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

HP 6125G & 6125G/XG Blade Switches

HP FlexFabric 5930 Switch Series

HPE ArubaOS-Switch IPv6 Configuration Guide YA/YB.16.02

HP 5920 & 5900 Switch Series

Exam Topics Cross Reference

HPE FlexFabric 7900 Switch Series

HP Load Balancing Module

Configuring VPLS. VPLS overview. Operation of VPLS. Basic VPLS concepts

Implementing Cisco IP Routing (ROUTE)

Chapter 3 Command List

CCIE Route & Switch Written (CCIERSW) 1.0

Cisco Cookbook. Kevin Dooley and IanJ. Brown. O'REILLY 4 Beijing Cambridge Farnham Koln Paris Sebastopol Taipei Tokyo

HPE FlexFabric 5940 Switch Series

H3C S10500 Switch Series

HP Load Balancing Module

H3C S6800 Switch Series

Command Manual IPv4 Routing H3C S3610&S5510 Series Ethernet Switches. Table of Contents

HP 5820X & 5800 Switch Series Network Management and Monitoring. Configuration Guide. Abstract

Appendix A Command Index

HPE FlexFabric 12900E & 12900

Huawei Enterprise S6700 Series 10G Switches

PSGS-2610F L2+ Managed GbE PoE Switch

Management and Configuration Guide YA/ YB.15.18

HP MSR Router Series. Network Management and Monitoring Configuration Guide(V7)

Remote Access MPLS-VPNs

GS-2610G L2+ Managed GbE Switch

HPE OfficeConnect 1950 Switch Series

Quidway S5300 Series Gigabit Switches

HPE FlexNetwork HSR6800 Routers

Implementing Cisco IP Routing

JUNIPER JN0-643 EXAM QUESTIONS & ANSWERS

ArubaOS-Switch IPv6 Configuration Guide for WB.16.03

Vendor: HP. Exam Code: HP0-Y36. Exam Name: Deploying HP Enterprise Networks. Version: Demo

HP Routing Switch Series

LSW6600 are the industry's highest performance 1U stackable data center switch, featuring with 1.28Tbps

HP 830 Series PoE+ Unified Wired-WLAN Switch Switching Engine

CCIE Routing & Switching

HP 5500 EI & 5500 SI Switch Series

HP A3100 v2 Switch Series

HP 5500 HI Switch Series

Transcription:

HPE FlexNetwork 5510 HI Switch Series Configuration Guides Index Part number: 5200-0065b Software version: Release 11xx Document version: 6W102-20171020

Copyright 2015, 2017 Hewlett Packard Enterprise Development LP The information contained herein is subject to change without notice. The only warranties for Hewlett Packard Enterprise products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. Hewlett Packard Enterprise shall not be liable for technical or editorial errors or omissions contained herein. Confidential computer software. Valid license from Hewlett Packard Enterprise required for possession, use, or copying. Consistent with FAR 12.211 and 12.212, Commercial Computer Software, Computer Software Documentation, and Technical Data for Commercial Items are licensed to the U.S. Government under vendor s standard commercial license. Links to third-party websites take you outside the Hewlett Packard Enterprise website. Hewlett Packard Enterprise has no control over and is not responsible for information outside the Hewlett Packard Enterprise website. Acknowledgments Intel, Itanium, Pentium, Intel Inside, and the Intel Inside logo are trademarks of Intel Corporation in the United States and other countries. Microsoft and Windows are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. Adobe and Acrobat are trademarks of Adobe Systems Incorporated. Java and Oracle are registered trademarks of Oracle and/or its affiliates. UNIX is a registered trademark of The Open Group.

Index This index covers all configuration guides for the HPE FlexNetwork 5510 HI Switch Series product set. Use the table to match the code to the appropriate guide. Page numbers in the index are preceded by a matching code. For example, FM-12 indicates page 12 in the fundamentals configuration guide. Configuration guide HPE FlexNetwork 5510 HI Switch Series ACL and QoS Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series Fundamentals Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series High Availability Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series IP Multicast Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series IRF Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series Layer 2 LAN Switching Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series Layer 3 IP Routing Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series Layer 3 IP Services Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series MPLS Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series Network Management and Monitoring Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series OpenFlow Configuration Guide-R11xx HPE FlexNetwork 5510 HI Switch Series Security Configuration Guide-R11xx Code QACL FM HA MCAST IRF LSW IPR IPSER MPLS NM OF SEC?? (CLI online help access), FM-2 0 10-GE interface combine, LSW-2 40-GE interface split, LSW-2 1 1:1 VLAN mapping application scenario, LSW-214 configuration, LSW-220, LSW-226 implementation, LSW-216, LSW-217 1:2 VLAN mapping application scenario, LSW-216 configuration, LSW-225, LSW-231 implementation, LSW-216, LSW-218 1:N process redundancy, HA-200 1-way DM CFD 1-way DM configuration, HA-23 2 2:2 VLAN mapping application scenario, LSW-216 configuration, LSW-225, LSW-231 implementation, LSW-216, LSW-218 2-way DM CFD 2-way DM configuration, HA-23 3 3DES security IPsec encryption algorithm, SEC-262 1

4 4-byte IPv4 BGP AS number suppression, IPR-231 IPv6 BGP AS number suppression, IPR-231 6 6PE IP routing BGP 6PE, IPR-252 IP routing BGP 6PE basics, IPR-252 IP routing BGP 6PE optional capabilities, IPR-253 IPv6 BGP 6PE, IPR-296 6to4 tunnel configuration, IPSER-208, IPSER-209 8 802 802.1 LLDPDU TLV types, LSW-236 802.1Q-in-802.1Q. Use QinQ 802.3 LLDPDU TLV types, LSW-236 MACsec configuration, SEC-461, SEC-465, SEC-470 QinQ SVLAN tag 802.1p priority, LSW-208 QoS packet 802.1p priority, QACL-85 VLAN group configuration, LSW-141 802.1p priority marking configuration, QACL-59 802.1p priority drop precedence, QACL-59 802.1X. See also under 802 access control method, SEC-82 ACL assignment configuration, SEC-98 architecture, SEC-64 authentication, SEC-68 authentication (access device initiated), SEC-67 authentication (client initiated), SEC-67 authentication attempts max number for MAC authenticated users, SEC-83 authentication configuration, SEC-94 authentication initiation, SEC-67 authentication request attempts max, SEC-83 authentication timeout timers, SEC-83 authentication trigger, SEC-85 authentication+acl assignment, SEC-79 authentication+ead assistant feature, SEC-79 authentication+user profile assignment, SEC-79 Auth-Fail VLAN, SEC-75 Auth-Fail VLAN configuration, SEC-89 authorization VLAN, SEC-72 authorization VLAN configuration, SEC-96 basic configuration, SEC-94 concurrent port users max, SEC-82 configuration, SEC-72, SEC-80 controlled/uncontrolled port, SEC-64 critical VLAN, SEC-76, SEC-91 critical VLAN configuration, SEC-90 critical voice VLAN, SEC-78 critical voice VLAN enable, SEC-91 display, SEC-93 EAD assistant, SEC-100 EAD assistant configuration, SEC-93 EAP over RADIUS, SEC-66 EAP packet format, SEC-65 EAP relay authentication, SEC-69 EAP relay enable, SEC-81 EAP relay/termination authentication, SEC-68 EAP termination enable, SEC-81 EAP termination mode authentication, SEC-70 EAP-Message attribute, SEC-66 EAPOL packet format, SEC-66 EAP-Success packets sending, SEC-91 enable, SEC-80 feature cooperation, SEC-79 guest VLAN, SEC-74 guest VLAN assignment delay, SEC-88 guest VLAN configuration, SEC-87, SEC-96 MAC authentication delay, SEC-110 MAC-based access control, SEC-72 2

maintain, SEC-93 mandatory port authentication domain, SEC-86 online user handshake, SEC-84 overview, SEC-64 packet format, SEC-65 periodic online user reauthentication, SEC-87 port authorization state, SEC-82 port authorization status, SEC-64 port security authentication control mode, SEC-185 port security client macaddresselseuserloginsecure, SEC-201 port security client userloginwithoui, SEC-198 port security configuration, SEC-185, SEC-188, SEC-196 port security features, SEC-190 port security intrusion protection, SEC-191 port security MAC address autolearn, SEC-196 port security MAC move, SEC-193 port security MAC+802.1X authentication, SEC-187 port security mode, SEC-189 port security NTK, SEC-190 port-based access control, SEC-72 quiet timer, SEC-86 RADIUS Message-Authentication attribute, SEC-67 related protocols, SEC-65 security user profile configuration, SEC-454 supported domain name delimiters, SEC-92 troubleshoot, SEC-102 troubleshoot EAD assistant Web browser users, SEC-102 VLAN manipulation, SEC-72 A AAA concurrent login user max, SEC-48 configuration, SEC-1, SEC-17, SEC-49 device implementation, SEC-11 display, SEC-49 displaying local users/user groups, SEC-22 FIPS compliance, SEC-16 HWTACACS accounting server, SEC-35 HWTACACS authentication server, SEC-34 HWTACACS authorization server, SEC-34 HWTACACS display, SEC-39 HWTACACS implementation, SEC-6 HWTACACS maintain, SEC-39 HWTACACS outgoing packet source IP address, SEC-37 HWTACACS scheme, SEC-33 HWTACACS scheme creation, SEC-34 HWTACACS scheme VPN, SEC-36 HWTACACS server SSH user, SEC-49 HWTACACS shared keys, SEC-36 HWTACACS timer set, SEC-38 HWTACACS traffic statistics units, SEC-37 HWTACACS username format, SEC-37 HWTACACS/RADIUS differences, SEC-7 ISP domain accounting method, SEC-47 ISP domain attribute configuration, SEC-44 ISP domain authentication method, SEC-44 ISP domain authorization method, SEC-45 ISP domain creation, SEC-43 ISP domain method, SEC-43 LDAP administrator attribute, SEC-41 LDAP authentication server, SEC-42 LDAP display, SEC-42 LDAP implementation, SEC-9 LDAP scheme, SEC-40 LDAP scheme creation, SEC-42 LDAP server creation, SEC-40 LDAP server IP address, SEC-40 LDAP server SSH user authentication, SEC-56 LDAP user attribute, SEC-41 LDAP versions, SEC-40 local user attribute, SEC-19 local user configuration, SEC-18 3

methods, SEC-12 MPLS L3VPN implementation, SEC-13 NAS-ID profile configuration, SEC-48 protocols and standards, SEC-13 RADIUS accounting server parameters, SEC-25 RADIUS accounting-on configuration, SEC-31 RADIUS attributes, SEC-14 RADIUS authentication server, SEC-24 RADIUS display, SEC-33 RADIUS implementation, SEC-2 RADIUS maintain, SEC-33 RADIUS request transmission attempts max, SEC-27 RADIUS scheme, SEC-22 RADIUS scheme creation, SEC-23 RADIUS scheme VPN, SEC-26 RADIUS security policy server IP address, SEC-32 RADIUS server load sharing, SEC-29 RADIUS server SSH user authentication+authorization, SEC-52 RADIUS server status, SEC-28 RADIUS session-control, SEC-48 RADIUS shared keys, SEC-26 RADIUS SNMP notification, SEC-32 RADIUS timer set, SEC-30 RADIUS traffic statistics units, SEC-26 RADIUS username format, SEC-26 RBAC AAA authorization, FM-46 RBAC default user role, FM-51 RBAC local AAA authentication user configuration, FM-55 RBAC non-aaa authorization, FM-46 RBAC user role local AAA authentication, FM-51 RBAC user role non-aaa authentication, FM-52 RBAC user role remote AAA authentication, FM-51 scheme configuration, SEC-18 SSH user local authentication+hwtacacs authorization+radius accounting, SEC-50 troubleshoot HWTACACS, SEC-62 troubleshoot LDAP, SEC-62 troubleshoot LDAP authentication failure, SEC-62 troubleshoot RADIUS, SEC-61 troubleshoot RADIUS accounting error, SEC-62 troubleshoot RADIUS authentication failure, SEC-61 troubleshoot RADIUS packet delivery failure, SEC-61 user group attribute, SEC-21 user management by ISP domains, SEC-11 user management by user access types, SEC-11 abbreviating command, FM-4 aborting ISSU software activate/deactivate operation (install series commands), FM-119 ABR OSPF discard route configuration, IPR-75 OSPF route summarization (ABR), IPR-74 OSPF router type, IPR-63 OSPFv3 route summarization (ABR), IPR-353 absolute time range (ACL), QACL-87 AC VPLS VSI+AC binding, MPLS-367 AC (attachment circuit) MPLS L2VPN attachment circuit (AC), MPLS-310 MPLS L2VPN attachment circuit (AC) configuration, MPLS-316 MPLS L2VPN cross-connect+attachment circuit (AC) binding, MPLS-320 access control direct portal authentication configuration (local portal Web server), SEC-144, SEC-179 security portal authentication, SEC-129 security portal authentication configuration, SEC-123, SEC-145 4

security portal authentication cross-subnet, SEC-156 security portal authentication direct, SEC-145 security portal authentication extended cross-subnet, SEC-166 security portal authentication extended direct, SEC-159 security portal authentication extended re-dhcp, SEC-162 security portal authentication re-dhcp, SEC-153 security portal authentication server detection+user synchronization, SEC-169 SNMP MIB, NM-66 SNMP view-based MIB, NM-66 accessing CLI online help, FM-2 H-VPLS access mode, MPLS-358 H-VPLS Ethernet access mode, MPLS-358 IRF fabric, IRF-18 login management SNMP device access, FM-35 NTP access control, NM-10 NTP access control rights, NM-16 port-based VLAN assignment (access port), LSW-132 RBAC VPN instance access policy, FM-45 security portal authentication device access, SEC-124 SNMP access control mode, NM-67 account idle time (password control), SEC-208 accounting AAA configuration, SEC-1, SEC-17, SEC-49 AAA ISP domain accounting method, SEC-47 AAA RADIUS accounting server parameters, SEC-25 AAA RADIUS accounting-on, SEC-31 AAA SSH user local authentication+hwtacacs authorization+radius accounting, SEC-50 login management command accounting, FM-41, FM-42 login management user access control, FM-36 ACL 802.1X authentication+acl assignment, SEC-79 802.1X+ACL assignment configuration, SEC-98 advanced configuration, QACL-5 automatic rule numbering, QACL-3 automatic rule renumbering, QACL-3 basics configuration, QACL-3 categories, QACL-1 configuration, QACL-1, QACL-3, QACL-10 copying, QACL-8 display, QACL-10 Ethernet frame header configuration, QACL-7 IGMP snooping policy, MCAST-24 IPv4 advanced configuration, QACL-5 IPv4 basic configuration, QACL-4 IPv6 advanced configuration, QACL-6 IPv6 basic configuration, QACL-4 login management command authorization, FM-39, FM-40 login management login control (Telnet, SSH), FM-36 login management SNMP access control, FM-37, FM-38 login management SSH login control, FM-36 login management Telnet login control, FM-36 login management user access control, FM-36 MAC authentication ACL assignment, SEC-105, SEC-119 maintain, QACL-10 match order, QACL-2 MLD snooping policy, MCAST-176 naming, QACL-1 numbering, QACL-1 packet filtering applicable scope (VLAN interface), QACL-9 packet filtering application (interface), QACL-9 packet filtering configuration, QACL-8 packet filtering default action, QACL-10 packet filtering log interval, QACL-9 5

packet fragment filtering, QACL-3 QoS ACL-based configuration, QACL-38 routing policy, IPR-413 rule numbering, QACL-2 rule numbering step, QACL-3 security IPsec ACL, SEC-265 security IPsec ACL de-encapsulated packet check, SEC-273 security IPsec ACL rule keywords, SEC-265 security IPsec ACL-based implementation, SEC-262, SEC-264 security IPsec ACL-based tunnel establishment, SEC-263 security IPsec mirror image ACLs, SEC-265 security IPsec non-mirror image ACLs, SEC-265 SSH management parameters, SEC-336 switch applications, QACL-1 time range configuration, QACL-87 time range display, QACL-87 acquiring BOOTP client dynamic IP address, IPSER-75 DHCPv6 client IPv6 address, IPSER-182 DHCPv6 client IPv6 address acquisition configuration, IPSER-185 DHCPv6 client IPv6 prefix, IPSER-183 DHCPv6 IPv6 prefix acquisition configuration, IPSER-186 ACS attribute type, NM-208 attribute type (default)(cli), NM-209 attribute type (preferred), NM-208 authentication parameters, NM-210 autoconnect parameters, NM-211 connection interface, NM-211 HTTPS SSL client policy, NM-213 provision code, NM-210 action Ethernet OAM port action, HA-8 loop detection block, LSW-122 loop detection no-learning protection, LSW-122 loop detection protection action (Layer 2 aggregate interface), LSW-124 loop detection protection action configuration, LSW-124 loop detection shutdown protection, LSW-122 OpenFlow action list/set merge restrictions, OF-20 OpenFlow table-miss flow entry default action, OF-11 PBR node, IPR-314 activating ISSU activate operation (install series commands), FM-119 OpenFlow instance, OF-12 RRPP domain, HA-58 active ARP active acknowledgement, SEC-417 FTP active (PORT) operating mode, FM-69 security portal authentication type, SEC-123 virtual forwarder. Use AVF adding MAC address table blackhole entry, LSW-23 MAC address table entry (global), LSW-22 MAC address table entry (on interface), LSW-22 MAC address table multiport unicast entry, LSW-23 address Address Resolution Protocol. Use ARP, Use ARP BOOTP client IP address acquisition interface, IPSER-75 DHCP address assignment, IPSER-28 DHCP address pool, IPSER-28 DHCP address pool application on interface, IPSER-39 DHCP address pool selection, IPSER-29 DHCP allocation, IPSER-22 DHCP client duplicated address detection, IPSER-61 6

DHCP IP address allocation sequence, IPSER-30 DHCP IP address conflict detection, IPSER-39 DHCP IP address lease extension, IPSER-23 DHCP server address pool, IPSER-30 DHCP server address pool creation, IPSER-31 DHCP server address pool IP address range, IPSER-31 DHCPv6 address allocation, IPSER-165 DHCPv6 address pool, IPSER-165 DHCPv6 address pool selection, IPSER-165 DHCPv6 address/prefix assignment, IPSER-160 DHCPv6 address/prefix lease renewal, IPSER-161 DHCPv6 client IPv6 address acquisition, IPSER-182 DHCPv6 IA, IPSER-164 DHCPv6 IAID, IPSER-164 DHCPv6 IPv6 address assignment, IPSER-163 DHCPv6 IPv6 address/prefix allocation sequence, IPSER-166 DHCPv6 multicast, IPSER-164 DHCPv6 overview, IPSER-160 DHCPv6 server dynamic IPv6 address assignment, IPSER-174 DHCPv6 server IPv6 address assignment, IPSER-167 IP address classes, IPSER-16 IP addressing configuration, IPSER-16, IPSER-19 IP addressing interface address, IPSER-17 IP multicast, MCAST-5 IP routing MP-BGP address family, IPR-187 IPPO ICMP packet source address, IPSER-121 IPv6 addresses, IPSER-129 IPv6 ICMPv6 packet source address, IPSER-150 IS-IS area, IPR-126 IS-IS format, IPR-125 IS-IS NSAP format, IPR-125 IS-IS PPP interface hello packet source address check, IPR-140 IS-IS routing method, IPR-126 MAC address learning disable, LSW-24 MAC Information queue length, LSW-35 MLD snooping query source IPv6 address, MCAST-175 ping address reachability determination, NM-1 special IP addresses, IPSER-17 stateless DHCPv6, IPSER-162 urpf configuration, SEC-438, SEC-442 urpf enable, SEC-441 VPLS MAC address aging, MPLS-356 VPLS MAC address learning, MPLS-356, MPLS-369 VPLS MAC address withdrawal, MPLS-356 adjacency MPLS TE traffic forwarding automatic route advertisement (forwarding adjacency), MPLS-53 MPLS TE tunnel automatic route advertisement traffic direction (forwarding adjacency), MPLS-73 OSPF BDR, IPR-65 OSPF DR, IPR-65 OSPFv3 BFD configuration, IPR-386 OSPFv3 configuration, IPR-347, IPR-348, IPR-368 OSPFv3 DR election configuration, IPR-374 OSPFv3 GR configuration, IPR-384 OSPFv3 IPsec profile configuration, IPR-389 OSPFv3 NSSA area configuration, IPR-372 OSPFv3 route redistribution, IPR-377 OSPFv3 stub area configuration, IPR-368 adjusting ARP/ND table capacity, FM-136 IGMP performance adjustment, MCAST-77 MAC address table capacity, FM-136 MLD performance, MCAST-224 routing table capacity, FM-136 administrative scoping 7

IPv6 BIDIR-PIM domains, MCAST-244 IPv6 PIM-SM admin-scoped zone configuration, MCAST-273 IPv6 PIM-SM domains, MCAST-244 IPv6 PIM-SM mechanism, MCAST-244 IPv6 PIM-SM non-scoped zone configuration, MCAST-271 multicast Pv6 BIDIR-PIM zone relationships, MCAST-245 PIM-SM admin-scoped zone configuration, MCAST-125 PIM-SM domain divisions, MCAST-96 PIM-SM non-scoped zone configuration, MCAST-122 PIM-SM zone relationships, MCAST-97 PIM-SM zones, MCAST-96 advanced ACL category, QACL-1 naming, QACL-1 numbering, QACL-1 advertising DLDP advertisement packet send interval, HA-36 DLDP advertisement timer, HA-32 IP routing BGP COMMUNITY NO_ADVERTISE path attribute, IPR-178 IP routing BGP configuration, IPR-178, IPR-189 IP routing BGP default route to peer/peer group, IPR-207 IP routing BGP optimal route, IPR-207 IP routing BGP optimal route advertisement, IPR-207 IP routing BGP route advertisement rules, IPR-182 IP routing BGP route generation, IPR-203 IP routing RIP summary route advertisement, IPR-46 IPv4 BGP basics, IPR-257 IPv4 BGP BFD, IPR-283 IPv4 BGP COMMUNITY, IPR-241, IPR-270 IPv4 BGP confederation, IPR-275 IPv4 BGP configuration, IPR-257 IPv4 BGP fake AS number advertisement, IPR-224 IPv4 BGP GR, IPR-282 IPv4 BGP load balancing, IPR-267 IPv4 BGP path selection, IPR-279 IPv4 BGP route reflector, IPR-273 IPv4 BGP route summarization, IPR-264 IPv4 BGP-IGP route redistribution, IPR-261 IPv6 BGP basics, IPR-290 IPv6 BGP BFD, IPR-299 IPv6 BGP COMMUNITY, IPR-241 IPv6 BGP configuration, IPR-290 IPv6 BGP fake AS number advertisement, IPR-224 IPv6 BGP route reflector, IPR-293 IPv6 MPLS L3VPN routing information advertisement, MPLS-265 IRDP proxy-advertised IP address, IPSER-111 IRDP RA (router advertisement), IPSER-111 IS-IS default route, IPR-136 LDP advertisement messages, MPLS-15 LDP label advertisement control, MPLS-42 LDP label advertisement modes, MPLS-17 LDP label advertisement policy, MPLS-27 LLDP advertisable TLV, LSW-243 MCE EBGP VPN route advertisement, MPLS-433 MCE OSPF VPN route advertisement, MPLS-428 MPLS egress label type advertisement, MPLS-6 MPLS L2VPN BGP label block information advertisement, MPLS-318 MPLS L3VPN basics, MPLS-175 MPLS L3VPN HoVPN, MPLS-189 MPLS L3VPN route advertisement, MPLS-157 MPLS TE attribute advertisement, MPLS-52 MPLS TE CRLSP dynamic establishment, MPLS-51 MPLS TE link attribute (IGP TE extension), MPLS-64 8

MPLS TE link attribute (IS-IS TE), MPLS-65 MPLS TE link attribute (OSPF TE), MPLS-64 MPLS TE traffic forwarding automatic route advertisement (forwarding adjacency), MPLS-53 MPLS TE traffic forwarding automatic route advertisement (IGP shortcut), MPLS-53 MPLS TE tunnel traffic direction (automatic route advertisement), MPLS-72 OSPF basics configuration, IPR-96 OSPF configuration, IPR-60, IPR-66, IPR-96 OSPF host route advertisement, IPR-79 OSPF route summarization configuration, IPR-100 RIP default route, IPR-30 RIP on interface, IPR-27 RIPng default route, IPR-334 RIPv2 summary route, IPR-29 voice VLAN advertisement (CDP), LSW-181 voice VLAN advertisement (LLDP), LSW-181 voice VLAN information advertisement to IP phones, LSW-174 VPLS BGP label block information advertisement, MPLS-363 VPLS BGP PE information advertisement, MPLS-365 VRRP advertisement interval, HA-119 AES security IPsec encryption algorithm, SEC-262 affinity MPLS TE tunnel constraints, MPLS-65 process placement affinity (location type), HA-202 process placement affinity (location), HA-202 process placement affinity (process), HA-202 process placement affinity (self), HA-203 process placement location-set, HA-201 process placement location-type, HA-201 process placement negative (repulse) affinity, HA-201 process placement positive (attract) affinity, HA-201 process placement program, HA-201 process placement self, HA-201 agent sflow agent+collector information configuration, NM-184 SNMP agent host notification, NM-74 aggregate CAR configuration, QACL-74, QACL-75 priority marking configuration, QACL-59 QoS global CAR, QACL-73 aggregating link. See link aggregation aging ARP dynamic entry aging timer, IPSER-6 MAC address table timer, LSW-25 spanning tree max age timer, LSW-93 VPLS MAC address aging, MPLS-356 AH IPsec security protocol 51, SEC-260 airflow direction configuration, FM-143 AIS CFD AIS configuration, HA-22 CFD functions, HA-16 alarm RMON alarm configuration, NM-85, NM-89 RMON alarm group sample types, NM-84 RMON configuration, NM-82, NM-86 RMON group, NM-83 RMON private group, NM-83 alert protocol (SSL), SEC-393 algorithm MPLS TE CSPF path calculation, MPLS-52 security IPsec authentication, SEC-262 security IPsec encryption (3DES), SEC-262 security IPsec encryption (AES), SEC-262 security IPsec encryption (DES), SEC-262 security IPsec IKE DH algorithm, SEC-292 SSH negotiation, SEC-329 STP calculation, LSW-74 alias (CLI command keyword), FM-4 9

allocating DHCP address allocation, IPSER-28 DHCP addresses allocation, IPSER-22 DHCP IP address allocation sequence, IPSER-30 DHCPv6 dynamic address allocation, IPSER-165 DHCPv6 dynamic prefix allocation, IPSER-165 DHCPv6 IPv6 address/prefix allocation sequence, IPSER-166 DHCPv6 static address allocation, IPSER-165 DHCPv6 static prefix allocation, IPSER-165 alternate port (MST), LSW-84 AND-mode hierarchical CAR, QACL-76 anti-replay IPsec anti-replay window and sequence number synchronization, SEC-274 anti-replay (IPsec), SEC-274 any authentication (SSH), SEC-329 Anycast IPv6 address type, IPSER-130 IPv6 anycast address configuration, IPSER-139 MSDP Anycast RP configuration, MCAST-155 MSDP RP, MCAST-142 troubleshooting MSDP RP entry exchange, MCAST-163 API Python extended API, FM-155 Python extended API functions, FM-155 Python extended API import, FM-155 Appendix A OpenFlow Application restrictions, OF-19 Appendix A (Default priority maps), QACL-83 Appendix A (Supported NETCONF operations), NM-278 Appendix B OpenFlow MAC-IP flow table, OF-22 Appendix B (Packet precedence), QACL-84 Appendix C OpenFlow VLAN tagging+untagging flow tables, OF-25 application ACL switch applications, QACL-1 IP multicast data distribution, MCAST-4 IRF ARP MAD application scenario, IRF-10 IRF BFD MAD application scenario, IRF-9 IRF LACP MAD application scenario, IRF-8 IRF ND MAD application scenario, IRF-11 NQA+Track+static routing collaboration, HA-172 security IPsec application-based implementation, SEC-263 security IPsec application-based tunnel establishment, SEC-263 Track+application module association, HA-175 Track+policy-based routing association, HA-177 Track+Smart Link association, HA-178 Track+static routing association, HA-176 Track+VRRP association, HA-175 urpf network, SEC-441 VRRP, HA-120 VRRP load-sharing, HA-121 VRRP master/backup, HA-120 applying ACL packet filtering (interface), QACL-9 data buffer configuration, QACL-92 DDNS client policy to interface, IPSER-101 DHCP address pool on interface, IPSER-39 DHCPv6 snooping trusted/untrusted port, IPSER-190 flow mirroring QoS policy, NM-179 flow mirroring QoS policy (control plane), NM-180 flow mirroring QoS policy (global), NM-180 flow mirroring QoS policy (interface), NM-179 flow mirroring QoS policy (VLAN), NM-180 interface NAS ID profile, SEC-141 IPv6 PBR apply clause, IPR-405 MACsec MKA policy, SEC-469 10

OSPFv3 IPsec profile, IPR-365 PBR apply clause, IPR-312 PoE profile, NM-229 PoE profile (multiple PIs in system view), NM-229 PoE profile (single PI in PI view), NM-229 port security NAS-ID profile, SEC-194 QoS congestion avoidance queue-based WRED table, QACL-54 QoS policy, QACL-18 QoS policy (control plane), QACL-19 QoS policy (global), QACL-19 QoS policy (user profile), QACL-20 QoS policy (VLAN), QACL-19 QoS policy to interface, QACL-18 RIPng IPsec profile, IPR-337 routing policy apply clause, IPR-413, IPR-418 security IPsec policy to interface, SEC-273 architecture 802.1X, SEC-64 IP multicast network, MCAST-5 MPLS L3VPN, MPLS-155, MPLS-413 MPLS network, MPLS-2 NTP, NM-8 PKI, SEC-227 VPLS, MPLS-355 archiving configuration archive, FM-94 configuration archive parameters, FM-95 configuration archiving (automatic), FM-96 running configuration (manual), FM-96 area data buffer fixed area, QACL-89 data buffer shared area, QACL-89 IS-IS, IPR-127 IS-IS area address, IPR-126 IS-IS authentication (area), IPR-148 MPLS L3VPN OSPF area PE-CE configuration, MPLS-169 OSPF area, IPR-69 OSPF area configuration (NSSA), IPR-70, IPR-106 OSPF area configuration (stub), IPR-70, IPR-103 OSPF areas, IPR-61 OSPF authentication (area), IPR-83 OSPF backbone, IPR-62 OSPF network type, IPR-71 OSPF NSSA area, IPR-63 OSPF stub area, IPR-62 OSPF totally NSSA area, IPR-63 OSPF totally stub area, IPR-62 OSPF virtual link, IPR-71 OSPFv3 area parameter, IPR-350 OSPFv3 NSSA area, IPR-350 OSPFv3 NSSA area configuration, IPR-372 OSPFv3 stub area, IPR-350 OSPFv3 stub area configuration, IPR-368 OSPFv3 virtual link, IPR-351 QoS data buffer fixed-area max queue ratio, QACL-91 QoS data buffer shared-area max queue ratio, QACL-91 QoS data buffer total shared-area ratio, QACL-90 argument (CLI string/text type), FM-4 arithmetic packet capture filter configuration (expr relop expr expression), NM-239 packet capture filter configuration (proto [ expr size ] expression), NM-239 packet capture filter operator, NM-235 packet capture operator, NM-233 ARP attack protection. See ARP attack protection common proxy ARP configuration, IPSER-13 common proxy ARP enable, IPSER-13 configuration, IPSER-1, IPSER-8 customer-side port configuration, IPSER-6 display, IPSER-7 11

dynamic entry aging timer configuration, IPSER-6 dynamic entry check enable, IPSER-6 dynamic entry max (device), IPSER-4 dynamic entry max (interface), IPSER-5 dynamic table entry, IPSER-2 gratuitous ARP configuration, IPSER-11 gratuitous ARP IP conflict notification, IPSER-12 gratuitous ARP packet learning, IPSER-11 gratuitous ARP periodic packet send, IPSER-11 local proxy ARP enable, IPSER-13 logging enable, IPSER-7 MAC address table ARP fast update, LSW-30 MAD. See ARP MAD maintain, IPSER-7 message format, IPSER-1 MFF configuration, SEC-431, SEC-433, SEC-435 MFF configuration (manual-mode in ring network), SEC-436 MFF configuration (manual-mode in tree network), SEC-435 multiport entry configuration, IPSER-4, IPSER-9 operation, IPSER-1 proxy ARP configuration, IPSER-12 scanning configuration restrictions, SEC-426 snooping configuration, IPSER-15 snooping display, IPSER-15 snooping maintain, IPSER-15 static configuration, IPSER-8 static entry configuration, IPSER-3 static table entry, IPSER-2 table, IPSER-2 VRRP virtual MAC address assignment, HA-122 ARP attack protection active acknowledgement, SEC-417 ARP attack detection display, SEC-423 ARP attack detection maintain, SEC-423 authorized ARP configuration, SEC-417 authorized ARP configuration (DHCP relay agent), SEC-419 authorized ARP configuration (DHCP server), SEC-418 configuration, SEC-411 configuration (user+packet validity check), SEC-423 detection configuration, SEC-420 filtering configuration, SEC-428, SEC-429 fixed ARP configuration, SEC-426 gateway protection, SEC-427, SEC-428 logging enable, SEC-422 packet rate limit configuration, SEC-413 packet source MAC consistency check, SEC-416 packet validity check configuration, SEC-421 restricted forwarding, SEC-422 restricted forwarding configuration, SEC-424 scanning configuration, SEC-426 source MAC-based attack detection, SEC-414, SEC-415 source MAC-based detection display, SEC-415 unresolvable IP attack, SEC-411, SEC-413 unresolvable IP attack blackhole routing, SEC-412 unresolvable IP attack protection display, SEC-412 unresolvable IP attack source suppression, SEC-412 user validity check, SEC-420 ARP detection M:1 VLAN mapping (dynamic IP address assignment), LSW-221 ARP MAD IRF ARP MAD, IRF-10 IRF configuration, IRF-26 IRF configuration (common Ethernet port), IRF-26 IRF configuration (management Ethernet port), IRF-27 IRF fabric configuration, IRF-40 12

ARP snooping AS M:1 VLAN mapping (static IP address assignment), LSW-223 IP routing BGP confederation, IPR-244 IP routing BGP confederation compatibility, IPR-244 IP routing BGP configuration, IPR-178, IPR-189 IP routing BGP first AS number of EBGP route updates, IPR-227 IP routing BGP MED attribute, IPR-217 IP routing BGP path AS_PATH attribute, IPR-178 IP routing BGP path AS_SEQUENCE attribute, IPR-178 IP routing BGP path AS_SET attribute, IPR-178 IP routing IS-IS configuration, IPR-153 IPv4 BGP 4-byte AS number suppression, IPR-231 IPv4 BGP AS number substitution, IPR-225 IPv4 BGP basics, IPR-257 IPv4 BGP BFD, IPR-283 IPv4 BGP COMMUNITY, IPR-270 IPv4 BGP confederation, IPR-275 IPv4 BGP configuration, IPR-257 IPv4 BGP fake AS number advertisement, IPR-224 IPv4 BGP FRR, IPR-287 IPv4 BGP GR, IPR-282 IPv4 BGP load balancing, IPR-267 IPv4 BGP local AS number appearance, IPR-223 IPv4 BGP MED AS route comparison (confederation peers), IPR-220 IPv4 BGP MED AS route comparison (diff ASs), IPR-218 IPv4 BGP MED AS route comparison (per-as), IPR-219 IPv4 BGP MED default value, IPR-217 IPv4 BGP path selection, IPR-279 IPv4 BGP private AS number removal, IPR-226 IPv4 BGP route reflector, IPR-273 IPv4 BGP route summarization, IPR-264 IPv4 BGP-IGP route redistribution, IPR-261 IPv6 BGP 4-byte AS number suppression, IPR-231 IPv6 BGP AS number substitution, IPR-225 IPv6 BGP basics, IPR-290 IPv6 BGP BFD, IPR-299 IPv6 BGP configuration, IPR-290 IPv6 BGP fake AS number advertisement, IPR-224 IPv6 BGP FRR, IPR-302 IPv6 BGP local AS number appearance, IPR-223 IPv6 BGP MED AS route comparison (confederation peers), IPR-220 IPv6 BGP MED AS route comparison (diff ASs), IPR-218 IPv6 BGP MED AS route comparison (per-as), IPR-219 IPv6 BGP MED default value, IPR-217 IPv6 BGP private AS number removal, IPR-226 IPv6 BGP route reflector, IPR-293 IPv6 MPLS L3VPN inter-as IPv6 VPN, MPLS-275 IPv6 MPLS L3VPN inter-as IPv6 VPN option A, MPLS-276 IPv6 MPLS L3VPN inter-as IPv6 VPN option C, MPLS-276 IPv6 MPLS L3VPN inter-as option A, MPLS-286 IPv6 MPLS L3VPN inter-as option C, MPLS-291 IS-IS basic configuration, IPR-132 IS-IS basics configuration, IPR-153 IS-IS configuration, IPR-125, IPR-131 IS-IS DIS election configuration, IPR-158 MPLS L3VPN BGP AS number substitution, MPLS-171, MPLS-192, MPLS-253 MPLS L3VPN inter-as option A, MPLS-161, MPLS-209 MPLS L3VPN inter-as option B, MPLS-162, MPLS-213 13

MPLS L3VPN inter-as option C, MPLS-163, MPLS-218 MPLS L3VPN inter-as VPN, MPLS-183 MPLS L3VPN inter-as VPN option A, MPLS-161, MPLS-183 MPLS L3VPN inter-as VPN option B, MPLS-161, MPLS-184 MPLS L3VPN inter-as VPN option C, MPLS-161, MPLS-185 MPLS L3VPN inter-as VPN option C ASBR, MPLS-186 OSPF areas, IPR-61 OSPF AS External LSA, IPR-60 routing policy AS_PATH list, IPR-413, IPR-415 AS_PATH IP routing BGP attribute, IPR-223 IPv4 BGP optimal route selection, IPR-224 IPv6 BGP optimal route selection, IPR-224 ASBR IPv6 MPLS L3VPN inter-as IPv6 VPN option C ASBR-PE, MPLS-277 MPLS L3VPN inter-as VPN option C ASBR, MPLS-186 OSPF ASBR summary LSA, IPR-60 OSPF discard route configuration, IPR-75 OSPF route summarization (ASBR), IPR-74 OSPF router type, IPR-63 OSPFv3 redistributed route summarization (ASBR), IPR-353 ASCII transfer mode, FM-69 ASM IP multicast model), MCAST-4 assert IPv6 PIM-DM, MCAST-236 IPv6 PIM-SM, MCAST-241 PIM-DM, MCAST-88 PIM-SM, MCAST-93 assigning 802.1X authentication+acl assignment, SEC-79 802.1X authentication+user profile assignment, SEC-79 CLI user line assignment, FM-17 CWMP ACS attribute (preferred)(cli), NM-209 CWMP ACS attribute (preferred)(dhcp server), NM-208 DHCP address, IPSER-28 DHCPv6 address/prefix, IPSER-160 DHCPv6 assignment (4 messages), IPSER-160 DHCPv6 IPv6 address, IPSER-163 DHCPv6 IPv6 prefix, IPSER-163 DHCPv6 rapid assignment (2 messages), IPSER-160 DHCPv6 server dynamic IPv6 address assignment, IPSER-174 DHCPv6 server dynamic IPv6 prefix assignment, IPSER-171 DHCPv6 server IPv6 address assignment, IPSER-167 DHCPv6 server IPv6 prefix assignment, IPSER-166 DHCPv6 server network parameters assignment, IPSER-169 IP addressing interface address, IPSER-17 IPv4 VRRP virtual IP address, HA-127 IPv6 interface addresses, IPSER-135 IPv6 IS-IS route convergence priority, IPR-396 IPv6 multicast port-based VLAN user port, MCAST-199 IPv6 VRRP virtual IP address, HA-132 IRF device member ID, IRF-15 MAC address table learning priority, LSW-27 MAC authentication ACL, SEC-119 MAC-based VLAN assignment (dynamic), LSW-135 MAC-based VLAN assignment (server-assigned), LSW-136 MAC-based VLAN assignment (static), LSW-134 port isolation group (multiple ports), LSW-70 port mirroring monitor port to remote probe VLAN, NM-164 port-based multicast VLAN user port, MCAST-45 14

port-based VLAN access port (interface view), LSW-132 port-based VLAN access port (VLAN view), LSW-132 port-based VLAN hybrid port, LSW-133 port-based VLAN trunk port, LSW-133 RBAC local AAA authentication user role, FM-51 RBAC non-aaa authentication user role, FM-52 RBAC permission assignment, FM-44 RBAC remote AAA authentication user role, FM-51 RBAC user role, FM-51 RBAC user role assignment, FM-46 voice VLAN assignment mode (automatic), LSW-175 voice VLAN assignment mode (manual), LSW-176 VRRP virtual MAC address assignment, HA-122 assignment 802.1X guest VLAN assignment delay, SEC-88 assistant-edge node RRPP specification, HA-58 RRPP type, HA-46 associating IPv6 MCE VPN instance+interface, MPLS-439 IPv6 MPLS L3VPN VPN instance+interface, MPLS-267 IPv6 NTP client/server association mode, NM-27 IPv6 NTP symmetric active/passive association mode, NM-30 MACsec connectivity association (CA), SEC-461 MACsec connectivity association key (CAK), SEC-461 MACsec secure association (SA), SEC-461 MACsec secure association key (SAK), SEC-461 MCE VPN instance+interface, MPLS-417 MPLS L3VPN VPN instance+ interface, MPLS-176 NMM IPv6 NTP multicast association mode, NM-35 NMM NTP broadcast association mode, NM-31 NMM NTP broadcast association mode with authentication, NM-40 NMM NTP client/server mode with MPLS VPN time synchronization, NM-42 NMM NTP multicast association mode, NM-33 NMM NTP symmetric active/passive mode with MPLS VPN time synchronization, NM-44 NTP association mode, NM-12, NM-13 NTP broadcast association mode, NM-9, NM-14 NTP client/server association mode, NM-9, NM-13, NM-26 NTP client/server association mode+authentication, NM-38 NTP multicast association mode, NM-9, NM-15 NTP symmetric active/passive association mode, NM-9, NM-14, NM-29 security IPsec SA, SEC-261 Smart Link associated device, HA-95 Track+application module, HA-175 Track+BFD, HA-173 Track+CFD, HA-174 Track+detection modules, HA-173 Track+interface management, HA-174 Track+NQA, HA-173 Track+policy-based routing, HA-177 Track+Smart Link, HA-178 Track+static routing, HA-176 Track+VRRP, HA-175 asynchronous OpenFlow message (asynchronous), OF-6 attachment circuit (AC) VPLS architecture, MPLS-355 VPLS configuration, MPLS-361 attack ARP attack protection configuration, SEC-411 15

attack D&P configuration, SEC-460 TCP fragment attack prevention configuration, SEC-460 attack detection and prevention. See attack D&P attacking attribute detection and prevention. See attack D&P 802.1X RADIUS EAP-Message, SEC-66 802.1X RADIUS Message-Authentication, SEC-67 AAA HWTACACS scheme, SEC-33 AAA ISP domain attribute, SEC-44 AAA LDAP administrator attribute, SEC-41 AAA LDAP scheme, SEC-40 AAA LDAP user attribute, SEC-41 AAA local user, SEC-18 AAA local user attribute, SEC-19 AAA RADIUS, SEC-14 AAA RADIUS common standard attributes, SEC-14 AAA RADIUS extended attributes, SEC-6 AAA RADIUS H3C proprietary attributes, SEC-15 AAA RADIUS Login-Service attribute check method, SEC-32 AAA RADIUS scheme, SEC-22 AAA scheme, SEC-18 AAA user group attribute, SEC-21 Ethernet link aggregation attribute configuration, LSW-39 IP routing BGP AS_PATH attribute, IPR-223 IP routing BGP MED attribute, IPR-217 IP routing BGP path AS_PATH, IPR-178 IP routing BGP path COMMUNITY, IPR-178 IP routing BGP path LOCAL_PREF, IPR-178 IP routing BGP path MED, IPR-178 IP routing BGP path NEXT_HOP, IPR-178 IP routing BGP path ORIGIN, IPR-178 IP routing MP-BGP MP_REACH_NLRI extended attribute, IPR-186 IP routing MP-BGP MP_UNREACH_NLRI extended attribute, IPR-186 IPv4 BGP AS number substitution, IPR-225 IPv4 BGP AS_PATH optimal route selection, IPR-224 IPv4 BGP COMMUNITY, IPR-241, IPR-270 IPv4 BGP fake AS number advertisement, IPR-224 IPv4 BGP local AS number appearance, IPR-223 IPv4 BGP MED AS route comparison (confederation peers), IPR-220 IPv4 BGP MED AS route comparison (diff ASs), IPR-218 IPv4 BGP MED AS route comparison (per-as), IPR-219 IPv4 BGP MED default value, IPR-217 IPv4 BGP NEXT_HOP, IPR-221 IPv4 BGP private AS number removal, IPR-226 IPv4 VRRP packet attribute, HA-128 IPv6 BGP AS number substitution, IPR-225 IPv6 BGP AS_PATH optimal route selection, IPR-224 IPv6 BGP fake AS number advertisement, IPR-224 IPv6 BGP local AS number appearance, IPR-223 IPv6 BGP MED AS route comparison (confederation peers), IPR-220 IPv6 BGP MED AS route comparison (diff ASs), IPR-218 IPv6 BGP MED AS route comparison (per-as), IPR-219 IPv6 BGP MED default value, IPR-217 IPv6 BGP NEXT_HOP, IPR-221 IPv6 BGP private AS number removal, IPR-226 IPv6 MCE VPN instance route related attributes, MPLS-439 IPv6 VRRP packet attribute, HA-134 MCE VPN instance route related attributes, MPLS-417 MPLS L3VPN BGP export target attribute, MPLS-157, MPLS-415 16

MPLS L3VPN BGP import target attribute, MPLS-157, MPLS-415 MPLS L3VPN VPN instance route related attributes, MPLS-176, MPLS-267 MPLS TE attribute advertisement, MPLS-52 MPLS TE link attribute, MPLS-63 MPLS TE link attribute advertisement (IGP TE extension), MPLS-64 MPLS TE link attribute advertisement (IS-IS TE), MPLS-65 MPLS TE link attribute advertisement (OSPF TE), MPLS-64 MPLS TE tunnel constraints, MPLS-65 port-based multicast VLAN user port attribute, MCAST-45 authenticating 802.1X access device initiated authentication, SEC-67 802.1X authentication, SEC-68 802.1X authentication attempts max number for MAC authenticated users, SEC-83 802.1X authentication request attempts max, SEC-83 802.1X authentication trigger, SEC-85 802.1X client-initiated, SEC-67 802.1X EAP over RADIUS, SEC-66 802.1X EAP relay authentication, SEC-69 802.1X EAP relay enable, SEC-81 802.1X EAP relay/termination, SEC-68 802.1X EAP termination enable, SEC-81 802.1X EAP termination mode authentication, SEC-70 802.1X initiation, SEC-67 802.1X mandatory port authentication domain, SEC-86 802.1X overview, SEC-64 802.1X periodic online user reauthentication, SEC-87 802.1X RADIUS Message-Authentication attribute, SEC-67 802.1X timeout timers, SEC-83 802.1X VLAN manipulation, SEC-72 AAA configuration, SEC-1, SEC-17, SEC-49 AAA ISP domain authentication method, SEC-44 AAA LDAP authentication, SEC-9 AAA LDAP server SSH user authentication, SEC-56 AAA RADIUS server SSH user authentication+authorization, SEC-52 AAA RADIUS user authentication methods, SEC-2 AAA SSH user local authentication+hwtacacs authorization+radius accounting, SEC-50 CWMP CPE ACS authentication parameters, NM-210 DLDP MD5 authentication, HA-37 DLDP MD5 mode, HA-33 DLDP non-authentication mode, HA-33 DLDP password authentication, HA-37 DLDP plaintext authentication, HA-37 DLDP plaintext mode, HA-33 DLDP simple authentication, HA-37 FTP basic server authentication, FM-70 IPsec IKEv2+pre-shared key authentication, SEC-318 IPsec IKEv2+RSA signature authentication, SEC-321 IPv4 BGP peer MD5 authentication, IPR-232 IPv6 BGP IPsec, IPR-234 IPv6 BGP peer MD5 authentication, IPR-232 IS-IS authentication, IPR-165 IS-IS authentication (area), IPR-148 IS-IS authentication (neighbor relationship), IPR-147 IS-IS authentication (routing domain), IPR-148 IS-IS network security enhancement, IPR-147 LDP MD5 configuration, MPLS-26 login management CLI console or AUX none authentication, FM-19 login management CLI console or AUX password authentication, FM-20 login management CLI console or AUX scheme authentication, FM-20 login management CLI none authentication mode, FM-18 17

login management CLI password authentication mode, FM-18 login management CLI scheme authentication mode, FM-18 login management Telnet login none authentication, FM-23 login management Telnet login password authentication, FM-24 login management Telnet login scheme authentication, FM-25 MAC authentication, SEC-103, SEC-107, SEC-115 MAC authentication (local), SEC-115 MAC authentication (RADIUS-based), SEC-117 MAC authentication VLAN assignment, SEC-104 MAC local authentication method, SEC-103 MAC RADIUS authentication method, SEC-103 NMM NTP broadcast mode with authentication, NM-40 NTP, NM-11 NTP broadcast authentication, NM-20 NTP client/server mode authentication, NM-17 NTP client/server mode+authentication, NM-38 NTP configuration, NM-16 NTP multicast authentication, NM-22 NTP security, NM-10 NTP symmetric active/passive mode authentication, NM-18 OSPF configuration, IPR-83 periodic MAC reauthentication, SEC-106 port security authentication modes, SEC-185 port security client macaddresselseuserloginsecure, SEC-201 port security client userloginwithoui, SEC-198 port security configuration, SEC-185, SEC-188, SEC-196 port security MAC address autolearn, SEC-196 RBAC local AAA authentication user configuration, FM-55 RBAC RADIUS authentication user configuration, FM-57 RBAC temporary user role authorization (HWTACACS authentication), FM-60 RBAC temporary user role authorization (RADIUS authentication), FM-64 RBAC user role authentication, FM-54 RBAC user role local AAA authentication, FM-51 RBAC user role remote AAA authentication, FM-51 RIPng IPsec profile application, IPR-337 RIPv2 message authentication configuration, IPR-34 RSVP, MPLS-137 RSVP authentication configuration, MPLS-140 security IPsec, SEC-262 security IPsec authentication algorithms, SEC-262 security IPsec Authentication Header. Use AH security IPsec configuration, SEC-259, SEC-280 security IPsec Encapsulating Security Payload. Use ESP security IPsec IKE (main mode/pre-shared key authentication), SEC-301 security IPsec IKE DSA signature authentication, SEC-291 security IPsec IKE pre-shared key authentication, SEC-291 security IPsec IKE RSA signature authentication, SEC-291 security IPsec RIPng, SEC-285 security IPsec tunnel for IPv4 packets (IKE-based), SEC-283 security IPsec tunnel for IPv4 packets (manual), SEC-280 security password control, SEC-209, SEC-213 security password control configuration, SEC-206 security portal authentication (cross-subnet for MPLS L3VPN), SEC-177 security portal authentication client, SEC-124 security portal authentication server, SEC-124 18

security user profile configuration, SEC-454 SNTP authentication, NM-47 SSH configuration, SEC-328 SSH methods, SEC-329 SSH SCP file transfer+password authentication, SEC-381 SSH Secure Telnet client configuration (password authentication-enabled), SEC-362 SSH Secure Telnet client configuration (publickey authentication-enabled), SEC-365 SSH Secure Telnet server configuration (password authentication-enabled), SEC-354 SSH Secure Telnet server configuration (publickey authentication-enabled), SEC-356 SSH server configuration, SEC-331 SSH SFTP client configuration (publickey authentication-enabled), SEC-374 SSH SFTP server configuration (password authentication-enabled), SEC-372 SSL services, SEC-393 VRRP MD5 authentication, HA-119 VRRP simple authentication, HA-119 authentication creating user profile, SEC-454 Authentication, Authorization, and Accounting. Use AAA Auth-Fail VLAN 802.1X authentication, SEC-75 802.1X configuration, SEC-89 authorization VLAN 802.1X assignment, SEC-73 802.1X configuration, SEC-96 802.1X supported, SEC-72 802.1X unsupported, SEC-73 MAC authentication, SEC-104 authorized ARP configuration, SEC-417 configuration configuration (DHCP relay agent), SEC-419 configuration configuration (DHCP server), SEC-418 authorizing auto 802.1X authorization VLAN, SEC-72 802.1X port authorization state, SEC-82 802.1X port authorization status, SEC-64 802.1X port authorized-force state, SEC-82 802.1X port auto state, SEC-82 802.1X port unauthorized-force state, SEC-82 AAA configuration, SEC-1, SEC-17, SEC-49 AAA ISP domain authorization method, SEC-45 AAA LDAP authorization, SEC-9 AAA RADIUS server load sharing, SEC-29 AAA RADIUS server SSH user authentication+authorization, SEC-52 AAA RADIUS session-control, SEC-48 AAA SSH user local authentication+hwtacacs authorization+radius accounting, SEC-50 FTP basic server authorization, FM-70 login management command authorization, FM-39, FM-40 login management user access control, FM-36 MAC authentication authorization VLAN, SEC-104 port security authorization-fail-offline feature, SEC-194 port security server authorization information ignore, SEC-193 RBAC temporary user role authorization, FM-53 ACL auto match order sort, QACL-2 ACL automatic rule numbering, QACL-3 automatic configuration archiving, FM-96 CFD MIP auto-generation rule, HA-19 configuration. See automatic configuration CWMP ACS autoconnect parameters, NM-211 DHCP automatic address allocation, IPSER-22 DHCP client auto-configuration file, IPSER-36 DHCP snooping entry auto backup, IPSER-69 DHCPv6 snooping entry auto backup, IPSER-193 19

DLDP automatic unidirectional link shutdown, HA-38 FIPS mode (automatic reboot), SEC-445 FIPS mode entry (automatic reboot), SEC-449 FIPS mode exit (automatic reboot), SEC-447, SEC-452 interface auto power-down (Ethernet), LSW-7 interface automatic negotiation (Ethernet), LSW-9 IP routing IS-IS FRR automatic backup next hop calculation, IPR-151 IPv4 BGP route summarization (automatic), IPR-205 IPv6 interface link-local address automatic generation, IPSER-138 IPv6 link-local address automatic generation, IPSER-138 IPv6 ND stateless address autoconfiguration, IPSER-133 IPv6 stateless address autoconfiguration, IPSER-136 IRF software auto-update, IRF-21 IS-IS automatic cost calculation, IPR-135 loop detection port status auto recovery, LSW-122 MPLS E FRR bypass tunnel on PLR (automatic setup), MPLS-78 MPLS L2VPN pseudowire VCCV auto mode, MPLS-314 MPLS TE automatic bandwidth adjustment, MPLS-55, MPLS-71 MPLS TE traffic forwarding automatic route advertisement (forwarding adjacency), MPLS-53 MPLS TE traffic forwarding automatic route advertisement (IGP shortcut), MPLS-53 PKI certificate request (automatic), SEC-233 port security MAC address autolearn, SEC-196 tunneling automatic mode, IPSER-200 voice VLAN assignment (automatic), LSW-175 voice VLAN assignment mode configuration (automatic), LSW-183 voice VLAN LLDP automatic IP phone discovery enable, LSW-181 voice VLAN port operation configuration (automatic assignment), LSW-179 VPLS LDP PW configuration (BGP auto-discovery), MPLS-365 VPLS LDP PW creation (BGP auto-discovery), MPLS-366 automatic high availability DLDP automatic unidirectional link shutdown, HA-38 RIPv2 automatic route summarization enable, IPR-29 automatic configuration DHCP server, FM-162 DNS server, FM-163 file preparation, FM-161 file server configuration, FM-161 gateway, FM-163 HTTP server+python script, FM-170 HTTP server+tcl script, FM-169 interface selection, FM-164 IRF setup, FM-171 server-based, FM-160, FM-164 start, FM-164 TFTP server, FM-164 USB-based, FM-160 AutoMDIX mode (Ethernet interface), LSW-13 AUX AUX common user line settings, FM-21 console or AUX none authentication, FM-19 console or AUX password authentication, FM-20 console or AUX scheme authentication, FM-20 login management CLI local console port login, FM-19 login management overview, FM-14 AVF VRRP virtual forwarder (VF) weight/priority, HA-124 avoidance MPLS L3VPN routing loop avoidance, MPLS-170 20

B backbone H-VPLS configuration (MPLS access), MPLS-386 H-VPLS UPE dual homing configuration, MPLS-390 OSPF backbone area, IPR-62 OSPF router type, IPR-63 VPLS BGP PW configuration, MPLS-377 VPLS configuration, MPLS-355, MPLS-360, MPLS-370 VPLS LDP PW configuration, MPLS-375 VPLS LDP PW configuration (BGP auto-discovery), MPLS-382 VPLS static PW configuration, MPLS-370 backing up DHCP snooping entries, IPSER-69 DHCPv6 snooping entry auto backup, IPSER-193 IP routing route backup, IPR-3 IRF configuration backup, IRF-14 main next-startup configuration file, FM-99 MPLS L3VPN FRR IPv4 route backup (VPNv4 route), MPLS-174 MPLS L3VPN FRR VPNv4 route backup (IPv4 route), MPLS-173 MPLS L3VPN FRR VPNv4 route backup (VPNv4 route), MPLS-173 MPLS TE CRLSP backup, MPLS-74 MPLS TE CRLSP backup configuration, MPLS-104 MPLS TE CRLSP hot standby backup, MPLS-56 MPLS TE CRLSP ordinary backup, MPLS-56 MST backup port, LSW-84 Smart Link backup, HA-90 software upgrade backup image set, FM-102 VRRP virtual forwarder (VF) backup, HA-124 backoff mechanism (LDP), MPLS-25 bandwidth Ethernet link aggregate interface (expected bandwidth), LSW-51 banner MPLS TE automatic bandwidth adjustment, MPLS-71 MPLS TE CRLSP dynamic establishment, MPLS-51 MPLS TE CRLSP flooding, MPLS-69 MPLS TE CRLSP static implementation, MPLS-51 MPLS TE DS-TE bandwidth constraint, MPLS-57 MPLS TE DS-TE bandwidth constraint model, MPLS-56, MPLS-57 MPLS TE link attribute, MPLS-63 MPLS TE tunnel automatic bandwidth adjustment, MPLS-55 MPLS TE tunnel constraints, MPLS-65 MPLS TE tunnel reoptimization, MPLS-55 OSPF reference value, IPR-76 QoS overview, QACL-13 QoS policy configuration, QACL-15 static CRLSP configuration, MPLS-128, MPLS-129 configuration, FM-134, FM-135 incoming type, FM-134 legal type, FM-134 login type, FM-134 MOTD type, FM-134 multiple-line input mode, FM-134 shell type, FM-134 single-line input mode, FM-134 basic ACL category, QACL-1 basic management LLDPDU TLV types, LSW-236 BAS-IP security portal authentication BAS-IP, SEC-140 BDR OSPF, IPR-65 OSPF election, IPR-66 OSPF mechanism, IPR-65 behavior QoS traffic behavior definition, QACL-17 21