SCALANCE XB-200 Command Line. Interface SIMATIC NET. Industrial Ethernet switches SCALANCE XB-200 Command Line Interface.

Similar documents
SCALANCE XB-200 Command Line. Interface SIMATIC NET. Industrial Ethernet switches SCALANCE XB-200 Command Line Interface.

Siemens Distributor. SCALANCE W760/W720 to IEEE n Command Line Interface SIMATIC NET

SCALANCE W760/W720 to IEEE n Command Line Interface SIMATIC NET

SCALANCE W770/W730 to IEEE n Command Line Interface SIMATIC NET

SIMATIC NET. Industrial Ethernet Security SCALANCE S615 Getting Started. Preface. Connecting SCALANCE S615 to the WAN 1

SINEMA Remote Connect - Client SIMATIC NET. Industrial Remote Communication SINEMA Remote Connect - Client. Preface. Requirements for operation

SCALANCE XB-200/XP-200 Web. Based Management SIMATIC NET. Industrial Ethernet switches SCALANCE XB-200/XP-200 Web Based Management.

SCALANCE XB-200 Web Based. Management SIMATIC NET. Industrial Ethernet switches SCALANCE XB-200 Web Based Management. Introduction 1.

SIMATIC NET. Industrial Remote Communication - Remote Networks SINEMA Remote Connect - Client. Preface. Requirements for operation 1

Siemens Spares. Setting up security in STEP 7. Professional SIMATIC NET. Industrial Ethernet Security Setting up security in STEP 7 Professional

SIMATIC NET. Industrial Ethernet switches SCALANCE XB-200/XC-200/ XF-200BA/XP-200/XR-300WG Web Based Management. Introduction 1.

2 Notes on SCALANCE XM-400 and SCALANCE XR Notes on SCALANCE XB-200, SCALANCE XC-200, SCALANCE XF-200BA, SCALANCE XP-200 and SCALANCE XR-300WG

SCALANCE X-200 SIMATIC NET. Industrial Ethernet switches SCALANCE X-200. Preface. Network topologies and media redundancy 1

DANGER indicates that death or severe personal injury will result if proper precautions are not taken.

Readme SiVArc V14 SP1 Update 6

SIMATIC NET. Industrial Ethernet / PROFINET Primary Setup Tool (PST) Preface. Functions 1. Software installation 2. Operation. Configuration Manual

SIMATIC NET. Industrial Ethernet switches SCALANCE XB-200/XC-200/XF- 200BA/XP-200/XR-300WG Web Based Management. Introduction 1.

SIMATIC NET. Industrial Ethernet switches SCALANCE X-200. Preface. IRT communication with X Network topologies and media redundancy

SINEMA Remote Connect - Server SIMATIC NET. Industrial Remote Communication - TeleControl SINEMA Remote Connect - Server. Preface

SCALANCE X-300 / X-400 SIMATIC NET. Industrial Ethernet Switches SCALANCE X-300 / X-400. Preface. Introduction

SIMATIC. Process Control System PCS 7 VT Readme V8.2 (online) Security information 1. Overview 2. Notes on Installation 3. Notes on usage 4.

Primary Setup Tool (PST) SIMATIC NET. Industrial Ethernet / PROFINET Primary Setup Tool (PST) Preface. Description. Software installation 2

SIMATIC. Process Control System PCS 7 PCS 7 system documentation - Readme V8.0 SP2 (Update 1) Options for Accessing Documentation 1

SIMATIC. S7/HMI SIMATIC Automation Tool V3.1 SP1 product information. SIMATIC Automation Tool features 1. Known problems. Product Information

SIMATIC NET. Industrial Remote Communication - Remote Networks SINEMA Remote Connect. Preface. Connecting the SINEMA RC Server to the WAN 1

Creating the program. TIA Portal. SIMATIC Creating the program. Loading the block library 1. Deleting program block Main [OB1]

SIMATIC NET. S TeleControl MSC300_Library program block library. Block library for TCSB (V3) WDC_S7_300_... (FB92) 2 UDT_WDC_PARAM (UDT91) 3

SIMATIC NET. Industrial Remote Communication TeleService TS Gateway. Preface. Application and properties. Installation, commissioning and operation 2

Optional package printer driver V1.4

Performance data abgn SCALANCE W770/W730 SIMATIC NET. Industrial Wireless LAN Performance data abgn SCALANCE W770/W730.

Setting up securityglobal FW Rulesets SIMATIC NET. Industrial Ethernet Security Setting up security. Preface. Firewall in standard mode

SIMATIC. Industrial PC Microsoft Windows 7. Safety instructions 1. Initial startup: Commissioning the operating. system

SIMATIC. Industrial PC Microsoft Windows Embedded Standard 7. Safety instructions 1. Initial startup: Commissioning the operating.

Team engineering via Inter Project. Engineering. TIA Portal. Team engineering via Inter Project Engineering. Basics of "Inter Project Engineering"

SIMATIC. Process Control System PCS 7 SIMATIC Management Console (V9.0) Security information 1. Preface 2. Basics 3

TL-SG2216/TL-SG2424/TL-SG2424P/TL-SG2452. Gigabit Smart Switch REV

Class documentation. COMOSKDictionary COMOS. Platform Class documentation COMOSKDictionary. Trademarks. General. KDictionary. Programming Manual

SIMATIC. Process Control System PCS 7 Configuration McAfee Endpoint Security Security information 1. Preface 2.

MindSphere. Visual Explorer. Introduction. User roles for "Visual Explorer" Connecting "Visual Explorer" to MindSphere data. Creating Visualizations

Getting Started - Startdrive. Startdrive SINAMICS. Introduction 1. Connecting the drive unit to the PC. Creating a project 3

Command Guide of WGSW-28040

SIMATIC/SINAMICS. Getting started with SINAMICS V90 PN on S Motion Control. Fundamental safety instructions 1. Introduction

-1- Command Guide of SGS T2X

COMOS. Platform Class documentation RevisionMaster_dll. Class: RevisionInfo 1. Class: RevisionMaster 2. Programming Manual

SIMATIC. Industrial PC Microsoft Windows 7 (USB stick) Safety instructions 1. Initial startup: Commissioning the operating system

Software Kit. Automatic Door Controls. SIDOOR Software Kit. Introduction 1. General safety instructions. Installation. Uninstalling the software 4

Performance data abgn PCIe Minicard MPCIE-R1-ABGN-U3 SIMATIC NET

SCALANCE S615 SIMATIC NET. Industrial Ethernet Security SCALANCE S615 Web Based Management. Preface. Description. Technical basics

SIMATIC. STEP 7 PLUS TIA Portal Teamcenter Gateway. Introduction to TIA Portal Teamcenter Gateway 1. System requirements 2

SIMATIC. Process Control System PCS 7 SIMATIC Management Console (V9.0 Update 1) Security information 1. Preface 2. Basics 3

T PCT. Smart PoE Switch REV

DANGER indicates that death or severe personal injury will result if proper precautions are not taken.

SIMATIC. Process Control System PCS 7 Advanced Process Functions Operator Manual. Preface. Security information 1. Overview 2. Material management 3

CG-MSW2402TXR CG-MSW1601TXR コマンドリファレンス

Configuration limits for products of the SIMATIC NET PC Software V8.1 SIMATIC NET

SIMATIC. PCS 7 Licenses and configuration limits (V9.0) Security information 1. Preface 2. Selecting the correct license keys 3

Validity 1. Improvements in STEP 7 2. Improvements in WinCC 3 SIMATIC. Readme. Readme

SIMATIC. WinCC Readme Runtime Professional. Validity 1. Improvements in Update 7 2. Improvements in Update 6 3. Improvements in Update 5 4

SCALANCE WLC711 SIMATIC NET. Industrial Wireless LAN SCALANCE WLC711. Preface. Safety notes. Description. Getting started 3

TL-SL2210/TL-SL2218/TL-SL2428/TL-SL2452. Smart Switch REV

Use with 0 to 70 C ambient. temperature SIMATIC. Process Control System PCS 7 Use with 0 to 70 C ambient temperature. Preface 1. Product combination 2

48-Port 10/100/1000BASE-T + 4-Port 100/1000BASE-X SFP Gigabit Managed Switch GS T4S

SIMATIC. WinCC Readme Runtime Professional. Validity 1. Improvements in Update 2 2. Improvements in Update 1 3

SIMATIC. SIMATIC Energy Manager V1.0 App for ios and Android. Preface. SIMATIC Energy Manager app. Establish connection to SIMATIC Energy Manager PRO

SIMATIC. Process Control System PCS 7 OS Process Control (V8.1) Security information 1. Preface 2. Additional documentation 3

B.Data V6.0 Installation SIMATIC. B.Data V6.0 Installation. Introduction. Installing B.Data. Setting up B.Data Web 3

SIMATIC. Process Control System PCS 7 PCS 7 Documentation (V8.1) Options for Accessing Documentation 1. Documentation for the Planning Phase 2

SIMATIC. Process Control System PCS 7 Software update with utilization of new functions. Security information 1. Preface 2.

SIMATIC. Process Control System PCS 7 Configuration Symantec Endpoint Protection V14. Security information 1. Preface 2.

PD PA AP How To Configure Maxum II TimeServer Access

ST (6ES7132-6FD00-0BB1)

CLI Guide. JetStream 8-Port Gigabit Smart Switch T1500G-10MPS/T1500G-8T (TL-SG2008) T1500G-10PS (TL-SG2210P) REV

SIMATIC NET. Industrial Ethernet switches SCALANCE XM-400. Introduction 1. Safety notices. Description of the device. Installation 4.

Siemens Industrial SIMATIC. Process Control System PCS 7 Configuration Trend Micro OfficeScan Server XG. Security information 1.

Cycle and response times SIMATIC. S Cycle and response times. Preface. Documentation guide. Program processing 2. Cyclic program processing 3

CISCO SWITCH BEST PRACTICES GUIDE

Commissioning PC Stations - Manual. and Quick Start SIMATIC NET. PC software Commissioning PC Stations - Manual and Quick Start.

SIMATIC. ET 200SP Open Controller Product information on CPU 1515SP PC. Preface. Product Information. Technical update. Technical specifications 3

Key Panels Library SIMATIC HMI. Key Panels Library. Preface 1. Installation of Key Panels Library. Working with the Key Panels Library

Configuration limits for products of the HARDNET-PB DP-Base 1

JetStream L2 Managed Switch

SITOP UPS1600 under STEP 7 V5. SITOP UPS1600 under STEP 7 V5. Introduction. Safety notes. Description 3. Assigning the IP address

Gigabit Managed Ethernet Switch

Yamaha L2 Switch. SWP1 Series(SWP1-8, SWP1-8MMF, SWP1-16MMF) Command Reference Rev

SIMATIC. Process control system PCS 7 PCS 7 - PC Configuration (V9.0 SP1) Security information 1. Preface 2. PC components of a PCS 7 system 3

SIMATIC. Process Control System PCS 7 Trend Micro OfficeScan (V8.0; V8.0 SP1) Configuration. Using virus scanners 1.

SIMATIC. PCS 7 Process Control System SIMATIC Logon Readme V1.6 (Online) Security information 1. Overview 2. Notes on installation 3.

Yamaha L2 Switch. Intelligent L2 PoE SWR2311P-10G Command Reference Rev

SIMATIC HMI. WinCC V7.4. WinCC/Calendar Options. Calendar Options overview 1. WinCC/Calendar Options. Installation Notes 2

SIMATIC. Process Control System PCS 7 Symantec Endpoint Protection 11.0 Configuration. Using virus scanners 1. Configuration 2. Commissioning Manual

Digital output module. DQ 16x24VDC/0.5A BA (6ES7522-1BH10-0AA0) SIMATIC

Cisco Small Business SF200E Series Advanced Smart Switches

Siemens Automation Products

Catalyst 4500 Series IOS Commands

Index. B Boot software 5-2 Bridging architecture 7-6 Broadcast filter 8-55 limiting 8-22 Buffer port 7-9 Syslog 8-17, 8-20

Industrial Managed Ethernet Switch Software User Manual Last Update: September 10, 2015 Version 2.4.0

Product Information Mixed. Configuration ET 200SP / ET 200AL SIMATIC. ET 200SP Product Information Mixed Configuration ET 200SP / ET 200AL.

Appendix A Command Index

IPS-3106 SERIES Managed Industrial PoE Ethernet Switch

Product features. Applications

Transcription:

SCALANCE XB-200 Command Line Interface SIMATIC NET Industrial Ethernet switches SCALANCE XB-200 Command Line Interface Configuration Manual Introduction 1 General information 2 Configuration 3 Functions specific to SCALANCE 4 System time 5 Network structures 6 Network protocols 7 Layer 2 management protocols 8 Load control 9 Security and authentication 10 Diagnostics 11 09/2015 C79000-G8976-C361-03

Legal information Warning notice system This manual contains notices you have to observe in order to ensure your personal safety, as well as to prevent damage to property. The notices referring to your personal safety are highlighted in the manual by a safety alert symbol, notices referring only to property damage have no safety alert symbol. These notices shown below are graded according to the degree of danger. DANGER indicates that death or severe personal injury will result if proper precautions are not taken. WARNING indicates that death or severe personal injury may result if proper precautions are not taken. CAUTION indicates that minor personal injury can result if proper precautions are not taken. NOTICE indicates that property damage can result if proper precautions are not taken. If more than one degree of danger is present, the warning notice representing the highest degree of danger will be used. A notice warning of injury to persons with a safety alert symbol may also include a warning relating to property damage. Qualified Personnel The product/system described in this documentation may be operated only by personnel qualified for the specific task in accordance with the relevant documentation, in particular its warning notices and safety instructions. Qualified personnel are those who, based on their training and experience, are capable of identifying risks and avoiding potential hazards when working with these products/systems. Proper use of Siemens products Note the following: Trademarks WARNING Siemens products may only be used for the applications described in the catalog and in the relevant technical documentation. If products and components from other manufacturers are used, these must be recommended or approved by Siemens. Proper transport, storage, installation, assembly, commissioning, operation and maintenance are required to ensure that the products operate safely and without any problems. The permissible ambient conditions must be complied with. The information in the relevant documentation must be observed. All names identified by are registered trademarks of Siemens AG. The remaining trademarks in this publication may be trademarks whose use by third parties for their own purposes could violate the rights of the owner. Disclaimer of Liability We have reviewed the contents of this publication to ensure consistency with the hardware and software described. Since variance cannot be precluded entirely, we cannot guarantee full consistency. However, the information in this publication is reviewed regularly and any necessary corrections are included in subsequent editions. Siemens AG Division Process Industries and Drives Postfach 48 48 90026 NÜRNBERG GERMANY C79000-G8976-C361-03 P 09/2015 Subject to change Copyright Siemens AG 2015. All rights reserved

Table of contents 1 Introduction... 17 1.1 Information on the Configuration Manual... 17 2 General information... 21 2.1 Working with the Command Line Interface (CLI)... 21 2.2 Structure of the Command Line Interface... 22 2.3 Configuration limits... 24 2.4 Features not supported... 25 2.5 The CLI command prompt... 26 2.6 Symbols of the CLI commands... 27 2.7 Addresses and interface names... 28 2.7.1 Naming interfaces... 28 2.7.2 Address types, address ranges and address masks... 29 2.8 General CLI commands... 31 2.8.1 clear screen... 31 2.8.2 end... 31 2.8.3 exit... 32 2.8.4 Help functions and supported input... 32 2.8.4.1 help... 32 2.8.4.2 The command "?"... 33 2.8.4.3 Completion of command entries... 34 2.8.4.4 Abbreviated notation of commands... 35 2.8.4.5 Reusing the last used commands... 35 2.8.4.6 Working through a command sequence... 35 2.8.4.7 The "show" commands... 36 2.8.4.8 clear history... 37 3 Configuration... 39 3.1 System... 39 3.1.1 The "show" commands... 39 3.1.1.1 show cli-console-timeout... 39 3.1.1.2 show coordinates... 40 3.1.1.3 show device information... 40 3.1.1.4 show ethernetip... 41 3.1.1.5 show hardware... 41 3.1.1.6 show im... 42 3.1.1.7 show interface mtu... 42 3.1.1.8 show interfaces... 43 3.1.1.9 show interfaces... counters... 44 3.1.1.10 show ip interface... 45 3.1.1.11 show pnio... 46 3.1.1.12 show lldp neighbors... 47 Configuration Manual, 09/2015, C79000-G8976-C361-03 3

Table of contents 3.1.1.13 show lldp status... 47 3.1.1.14 show broadcast-block config... 48 3.1.1.15 show unicast-block config... 49 3.1.1.16 show multicast-block config... 49 3.1.1.17 show versions... 50 3.1.2 clear counters... 51 3.1.3 configure terminal... 51 3.1.4 disable... 52 3.1.5 enable... 53 3.1.6 logout... 53 3.1.7 ping... 54 3.1.8 clear line vty... 55 3.1.9 Commands in the global configuration mode... 56 3.1.9.1 interface... 56 3.1.9.2 no interface... 58 3.1.9.3 cli-console-timeout... 59 3.1.9.4 no cli-console-timeout... 60 3.1.9.5 coordinates height... 60 3.1.9.6 coordinates latitude... 61 3.1.9.7 coordinates longitude... 61 3.1.9.8 ethernetip... 62 3.1.9.9 pnio... 63 3.1.9.10 system contact... 64 3.1.9.11 system location... 64 3.1.9.12 system name... 65 3.1.9.13 username... 65 3.1.10 Commands in the interface configuration mode... 66 3.1.10.1 alias... 67 3.1.10.2 no alias... 67 3.1.10.3 broadcast-block... 68 3.1.10.4 no broadcast-block... 69 3.1.10.5 duplex... 69 3.1.10.6 no duplex... 70 3.1.10.7 lldp... 71 3.1.10.8 no lldp... 72 3.1.10.9 multicast-block... 72 3.1.10.10 no multicast-block... 73 3.1.10.11 negotiation... 74 3.1.10.12 no negotiation... 74 3.1.10.13 shutdown... 75 3.1.10.14 no shutdown... 76 3.1.10.15 speed... 76 3.1.10.16 unicast-block... 77 3.1.10.17 no unicast-block... 78 3.2 Load and Save... 79 3.2.1 File list... 79 3.2.2 The "show" commands... 80 3.2.2.1 show loadsave files... 80 3.2.2.2 show loadsave tftp... 80 3.2.3 load tftp... 81 3.2.4 save filetype... 82 3.2.5 Commands in the global configuration mode... 83 4 Configuration Manual, 09/2015, C79000-G8976-C361-03

Table of contents 3.2.5.1 loadsave... 83 3.2.6 Commands in the LOADSAVE configuration mode... 84 3.2.6.1 delete... 84 3.2.6.2 password... 85 3.2.6.3 no password... 85 3.2.6.4 tftp filename... 86 3.2.6.5 tftp load... 87 3.2.6.6 tftp save... 88 3.2.6.7 tftp server... 89 3.3 Reset and Defaults... 90 3.3.1 restart... 90 3.4 Configuration Save & Restore... 91 3.4.1 The "show" commands... 91 3.4.1.1 show running-config... 91 3.4.2 write startup-config... 94 3.4.3 Commands in the global configuration mode... 94 3.4.3.1 auto-save... 95 3.4.3.2 no auto-save... 96 3.5 SINEMA... 97 3.5.1 The "show" commands... 97 3.5.1.1 show sinema... 97 3.5.2 Commands in the global configuration mode... 97 3.5.2.1 sinema... 98 3.5.2.2 no sinema... 98 4 Functions specific to SCALANCE... 101 4.1 WBM... 101 4.1.1 The "show" commands... 101 4.1.1.1 show web-session-timeout... 101 4.1.2 Commands in the global configuration mode... 102 4.1.2.1 web-session-timeout... 102 4.1.2.2 no web-session-timeout... 103 4.2 Panel button... 104 4.2.1 Commands in the global configuration mode... 104 4.2.1.1 panel-button control-factory-defaults... 104 4.2.1.2 no panel-button control-factory-defaults... 105 5 System time... 107 5.1 System time setting... 107 5.1.1 The "show" commands... 107 5.1.1.1 show time... 107 5.1.2 Commands in the global configuration mode... 108 5.1.2.1 time... 108 5.1.2.2 time set... 109 5.2 NTP client... 110 5.2.1 The "show" commands... 110 5.2.1.1 show ntp info... 110 5.2.2 Commands in the global configuration mode... 111 5.2.2.1 ntp... 111 5.2.3 Commands in the NTP configuration mode... 112 Configuration Manual, 09/2015, C79000-G8976-C361-03 5

Table of contents 5.2.3.1 ntp server... 112 5.2.3.2 no ntp server... 113 5.2.3.3 ntp time diff... 113 5.3 SNTP client... 115 5.3.1 The "show" commands... 115 5.3.1.1 show sntp broadcast-mode status... 115 5.3.1.2 show sntp unicast-mode status... 115 5.3.1.3 show sntp status... 116 5.3.2 Commands in the global configuration mode... 117 5.3.2.1 sntp... 117 5.3.3 Commands in the SNTP configuration mode... 118 5.3.3.1 sntp client addressing-mode... 118 5.3.3.2 sntp time diff... 119 5.3.3.3 sntp unicast-server ipv4... 120 5.3.3.4 no sntp unicast-server ipv4... 121 6 Network structures... 123 6.1 Introduction to the section "Network structures"... 123 6.2 VLAN... 124 6.2.1 The "show" commands VLAN bridge)... 124 6.2.1.1 show mac-address-table... 124 6.2.1.2 show mac-address-table count... 125 6.2.1.3 show mac-address-table dynamic multicast... 126 6.2.1.4 show mac-address-table dynamic unicast... 127 6.2.1.5 show mac-address-table static multicast... 128 6.2.1.6 show mac-address-table static unicast... 129 6.2.1.7 show vlan... 130 6.2.1.8 show vlan device info... 130 6.2.1.9 show vlan learning params... 131 6.2.1.10 show vlan port config... 132 6.2.2 Commands in the global configuration mode (VLAN bridge)... 132 6.2.2.1 base bridge-mode... 133 6.2.2.2 interface range... 134 6.2.2.3 no interface range... 135 6.2.2.4 mgmt vlan... 136 6.2.2.5 vlan... 137 6.2.2.6 no vlan... 138 6.2.2.7 vlan range... 139 6.2.3 Commands in the Interface configuration mode (VLAN Bridge)... 140 6.2.3.1 switchport acceptable-frame-type... 140 6.2.3.2 no switchport acceptable-frame-type... 141 6.2.3.3 switchport access vlan... 141 6.2.3.4 no switchport access vlan... 142 6.2.3.5 switchport priority default... 143 6.2.3.6 no switchport priority default... 144 6.2.3.7 switchport pvid... 144 6.2.3.8 no switchport pvid... 145 6.2.4 Commands in the VLAN configuration mode (VLAN Bridge)... 146 6.2.4.1 name... 146 6.2.4.2 no name... 147 6.2.4.3 ports... 148 6 Configuration Manual, 09/2015, C79000-G8976-C361-03

Table of contents 6.2.4.4 no ports... 150 6.2.5 The "show" commands (Transparent Bridge)... 152 6.2.5.1 show dot1d mac-address-table... 152 6.2.5.2 show mac-address-table count... 153 6.2.5.3 show dot1d mac-address-table static multicast... 154 6.2.5.4 show dot1d mac-address-table static unicast... 154 6.2.5.5 show vlan device info... 155 6.2.6 Commands in the global configuration mode (Transparent Bridge)... 156 6.2.6.1 base bridge-mode... 156 6.2.6.2 vlan... 158 6.2.7 Commands in the VLAN configuration mode (Transparent Bridgee)... 159 6.2.7.1 ip address... 159 6.2.7.2 no ip address... 160 6.3 Spanning Tree... 162 6.3.1 Introduction to the section Spanning Tree... 162 6.3.2 The "show" commands... 162 6.3.2.1 show spanning-tree... 162 6.3.2.2 show spanning-tree active... 163 6.3.2.3 show spanning-tree bridge... 164 6.3.2.4 show spanning-tree detail... 164 6.3.2.5 show spanning-tree interface... 165 6.3.2.6 show spanning-tree root... 166 6.3.2.7 show spanning-tree passive-listening-compatibility... 167 6.3.2.8 show spanning-tree interface layer2-gateway-port... 168 6.3.3 clear spanning-tree detected protocols... 168 6.3.4 clear spanning-tree counters... 169 6.3.5 Commands in the global configuration mode... 170 6.3.5.1 spanning-tree... 170 6.3.5.2 no spanning-tree... 171 6.3.5.3 spanning-tree compatibility... 172 6.3.5.4 no spanning-tree compatibility... 172 6.3.5.5 spanning-tree priority... 173 6.3.5.6 no spanning-tree priority... 174 6.3.5.7 spanning-tree passive-listening-compatibility... 175 6.3.5.8 no spanning-tree passive-listening-compatibility... 176 6.3.5.9 Time settings for the Spanning Tree protocol... 177 6.3.6 Commands in the interface configuration mode... 179 6.3.6.1 spanning-tree... 180 6.3.6.2 no spanning-tree... 182 6.3.6.3 spanning-tree auto-edge... 183 6.3.6.4 no spanning-tree auto-edge... 184 6.3.6.5 spanning-tree bpdu-transmit... 184 6.3.6.6 spanning-tree bpdu-receive... 185 6.3.6.7 spanning-tree bpdufilter... 186 6.3.6.8 spanning-tree layer2-gateway-port... 187 6.3.6.9 no spanning-tree layer2-gateway-port... 187 6.3.6.10 spanning-tree loop-guard... 188 6.3.6.11 no spanning-tree loop-guard... 189 6.3.6.12 spanning-tree restricted-role... 190 6.3.6.13 no spanning-tree restricted-role... 190 6.3.6.14 spanning-tree restricted-tcn... 191 6.3.6.15 no spanning-tree restricted-tcn... 192 Configuration Manual, 09/2015, C79000-G8976-C361-03 7

Table of contents 6.4 Passive Listening... 193 6.4.1 The "show" commands... 193 6.4.1.1 show passive-listening... 193 6.4.2 Commands in the global configuration mode... 194 6.4.2.1 passive-listening bpdu-vlan-flood... 194 6.4.2.2 no passive-listening bpdu-vlan-flood... 194 6.4.2.3 passive listening... 195 6.4.2.4 no passive-listening... 196 7 Network protocols... 197 7.1 IPv4 protocol... 197 7.1.1 The "show" commands... 197 7.1.1.1 show ip gateway... 197 7.1.1.2 show ip telnet... 198 7.1.1.3 show dcp server... 198 7.1.1.4 show dcp forwarding... 199 7.1.2 Commands in the global configuration mode... 200 7.1.2.1 ip gateway... 200 7.1.2.2 no ip gateway... 201 7.1.2.3 ip echo-reply... 201 7.1.2.4 no ip echo-reply... 202 7.1.2.5 telnet-server... 203 7.1.2.6 no telnet-server... 203 7.1.2.7 dcp server... 204 7.1.2.8 no dcp server... 205 7.1.3 Commands in the interface configuration mode... 205 7.1.3.1 dcp forwarding... 206 7.1.3.2 ip address... 206 7.1.3.3 no ip address... 207 7.2 DHCP client... 209 7.2.1 The "show" commands... 209 7.2.1.1 show ip dhcp client stats... 209 7.2.1.2 show ip dhcp client... 209 7.2.2 Commands in the global configuration mode... 210 7.2.2.1 ip dhcp config-file-request... 210 7.2.2.2 no ip dhcp config-file-request... 211 7.2.2.3 ip dhcp client mode... 211 7.2.3 Commands in the Interface configuration mode... 212 7.2.3.1 ip address dhcp... 213 7.2.3.2 no ip address... 213 7.3 DHCP Relay... 215 7.3.1 The "show" commands... 215 7.3.1.1 show dhcp server... 215 7.3.1.2 show ip dhcp relay information... 216 7.3.2 Commands in the Global Configuration mode... 217 7.3.2.1 ip dhcp server... 217 7.3.2.2 no ip dhcp server... 218 7.3.2.3 ip dhcp relay circuit-id option... 219 7.3.2.4 ip dhcp relay information option... 220 7.3.2.5 no ip dhcp relay information option... 220 7.3.2.6 service dhcp-relay... 221 8 Configuration Manual, 09/2015, C79000-G8976-C361-03

Table of contents 7.3.2.7 no service dhcp-relay... 222 7.3.3 Commands in the Interface Configuration mode... 223 7.3.3.1 ip dhcp relay circuit-id... 223 7.3.3.2 no ip dhcp relay circuit-id... 224 7.3.3.3 ip dhcp relay remote-id... 224 7.3.3.4 no ip dhcp relay remote-id... 225 7.4 SNMP... 226 7.4.1 The "show" commands... 226 7.4.1.1 show snmp... 226 7.4.1.2 show snmp community... 227 7.4.1.3 show snmp engineid... 227 7.4.1.4 show snmp filter... 228 7.4.1.5 show snmp group... 228 7.4.1.6 show snmp group access... 229 7.4.1.7 show snmp inform statistics... 229 7.4.1.8 show snmp notif... 230 7.4.1.9 show snmp targetaddr... 230 7.4.1.10 show snmp targetparam... 231 7.4.1.11 show snmp tcp... 231 7.4.1.12 show snmp user... 232 7.4.1.13 show snmp viewtree... 232 7.4.2 Commands in the global configuration mode... 233 7.4.2.1 snmpagent... 233 7.4.2.2 no snmpagent... 233 7.4.2.3 snmp agent version... 234 7.4.2.4 snmp access... 235 7.4.2.5 no snmp access... 236 7.4.2.6 snmp community index... 237 7.4.2.7 no snmp community index... 238 7.4.2.8 snmp group... 239 7.4.2.9 no snmp group... 240 7.4.2.10 snmp notify... 241 7.4.2.11 no snmp notify... 242 7.4.2.12 snmp targetaddr... 243 7.4.2.13 no snmp targetaddr... 245 7.4.2.14 snmp targetparams... 246 7.4.2.15 no snmp targetparams... 248 7.4.2.16 snmp v1-v2 readonly... 248 7.4.2.17 no snmp v1-v2 readonly... 249 7.4.2.18 snmp user... 250 7.4.2.19 no snmp user... 251 7.4.2.20 snmp view... 252 7.4.2.21 no snmp view... 253 7.5 SMTP client... 254 7.5.1 The "show" commands... 254 7.5.1.1 show events smtp-server... 254 7.5.1.2 show events sender email... 255 7.5.1.3 show events smtp-port... 255 7.5.2 Commands in the Events configuration mode... 256 7.5.2.1 smtp-server... 256 7.5.2.2 no smtp-server... 257 Configuration Manual, 09/2015, C79000-G8976-C361-03 9

Table of contents 7.5.2.3 sender mail-address... 257 7.5.2.4 no sender mail-address... 258 7.5.2.5 send test mail... 259 7.5.2.6 smtp-port... 259 7.5.2.7 no smtp-port... 260 7.6 HTTP server... 261 7.6.1 The "show" commands... 261 7.6.1.1 show ip http server status... 261 7.6.2 Commands in the global configuration mode... 262 7.6.2.1 ip http... 262 7.6.2.2 no ip http... 263 7.7 HTTPS server... 264 7.7.1 The "show" commands... 264 7.7.1.1 show ip http secure server status... 264 7.7.1.2 show ssl server-cert... 265 7.8 ARP... 266 7.8.1 The "show" commands... 266 7.8.1.1 show ip arp... 266 7.8.2 Commands in the global configuration mode... 267 7.8.2.1 arp timeout... 267 7.8.2.2 no arp timeout... 268 7.9 SSH server... 269 7.9.1 The "show" commands... 269 7.9.1.1 show ip ssh... 269 7.9.2 Commands in the global configuration mode... 270 7.9.2.1 ssh-server... 270 7.9.2.2 no ssh-server... 271 8 Layer 2 management protocols... 273 8.1 Introduction to the section "Layer 2 management protocols"... 273 8.2 IGMP snooping... 273 8.2.1 The "show" commands... 273 8.2.1.1 show ip igmp snooping... 273 8.2.1.2 show ip igmp snooping forwarding-database... 274 8.2.1.3 show ip igmp snooping globals... 275 8.2.1.4 show ip igmp snooping mrouter... 275 8.2.1.5 show ip igmp snooping statistics... 276 8.2.1.6 show ip igmp snooping switch-ip... 277 8.2.2 Commands in the global configuration mode... 277 8.2.2.1 ip igmp snooping version... 277 8.2.2.2 ip igmp vlan-snooping... 278 8.2.2.3 no ip igmp vlan-snooping... 279 8.2.2.4 ip igmp snooping clear counters... 279 8.2.2.5 ip igmp snooping switch-ip... 280 8.2.2.6 ip igmp snooping port-purge-interval... 281 8.2.2.7 no ip igmp snooping port-purge-interval... 281 8.3 IGMP querier... 283 8.3.1 Commands in the Global Configuration mode... 283 8.3.1.1 ip igmp snooping querier... 283 10 Configuration Manual, 09/2015, C79000-G8976-C361-03

Table of contents 8.3.1.2 no ip igmp snooping querier... 284 8.4 Ring redundancy and standby connection... 285 8.4.1 clear hrp counters... 285 8.4.2 clear ring-redundancy manager counters... 286 8.4.3 clear standby counter... 286 8.4.4 The "show" commands... 287 8.4.4.1 show hrp counters... 287 8.4.4.2 show ring-redundancy... 288 8.4.4.3 show ring-redundancy manager counters... 288 8.4.5 Commands in the global configuration mode... 289 8.4.5.1 ring-redundancy configuration... 289 8.4.5.2 ring-redundancy mode... 290 8.4.5.3 no ring-redundancy... 291 8.4.5.4 ring-redundancy standby... 291 8.4.5.5 no ring-redundancy standby... 292 8.4.6 Commands in the redundancy configuration mode... 293 8.4.6.1 ring ports... 293 8.4.6.2 standby connection-name... 294 8.4.6.3 no standby connection-name... 295 8.4.6.4 standby force-master... 295 8.4.6.5 no standby force-master... 296 8.4.6.6 standby port... 296 8.4.6.7 no standby port... 297 8.5 Unicast... 299 8.5.1 The "show" commands VLAN bridge)... 299 8.5.1.1 show mac-address-table... 299 8.5.1.2 show mac-address-table dynamic unicast... 300 8.5.1.3 show mac-address-table static unicast... 301 8.5.1.4 show unicast-block config... 302 8.5.2 Commands in the global configuration mode (VLAN bridge)... 303 8.5.2.1 mac-address-table static unicast... 303 8.5.2.2 no mac-address-table static unicast... 304 8.5.3 The "show" commands (Transparent Bridge)... 305 8.5.3.1 show dot1d mac-address-table... 305 8.5.3.2 show dot1d mac-address-table static unicast... 306 8.5.3.3 show unicast-block config... 307 8.5.4 Commands in the global configuration mode (Transparent Bridge)... 308 8.5.4.1 mac-address-table static unicast... 308 8.5.4.2 no mac-address-table static unicast... 309 8.6 Multicast... 311 8.6.1 Introduction to the multicast section... 311 8.6.2 The "show" commands VLAN bridge)... 311 8.6.2.1 show mac-address-table... 311 8.6.2.2 show mac-address-table dynamic multicast... 312 8.6.2.3 show mac-address-table static multicast... 313 8.6.2.4 show multicast-block config... 314 8.6.3 Commands in the global configuration mode (VLAN bridge)... 315 8.6.3.1 mac-address-table static multicast... 315 8.6.3.2 no mac-address-table static multicast... 317 8.6.4 The "show" commands (Transparent Bridge)... 317 8.6.4.1 show dot1d mac-address-table... 318 Configuration Manual, 09/2015, C79000-G8976-C361-03 11

Table of contents 8.6.4.2 show dot1d mac-address-table static multicast... 319 8.6.4.3 show multicast-block config... 319 8.6.5 Commands in the global configuration mode (Transparent Bridge)... 320 8.6.5.1 mac-address-table static multicast... 321 8.6.5.2 no mac-address-table static multicast... 322 9 Load control... 323 9.1 Rate control... 323 9.1.1 The "show" commands... 323 9.1.1.1 show rate-limit output... 323 9.1.2 Commands in the interface configuration mode... 324 9.1.2.1 rate-limit output... 324 9.1.2.2 no rate-limit output... 325 9.1.2.3 storm-control... 326 9.1.2.4 no storm-control... 327 9.1.2.5 storm-control level... 328 9.1.2.6 no storm-control level... 328 9.2 Static MAC filtering... 330 9.2.1 Commands in the global configuration mode (VLAN bridge)... 330 9.2.1.1 mac-address-table static multicast... 330 9.2.1.2 no mac-address-table static multicast... 331 9.2.1.3 mac-address-table static unicast... 332 9.2.1.4 no mac-address-table static unicast... 333 9.2.2 Commands in the global configuration mode (Transparent Bridge)... 335 9.2.2.1 mac-address-table static multicast... 335 9.2.2.2 no mac-address-table static multicast... 336 9.2.2.3 mac-address-table static unicast... 337 9.2.2.4 no mac-address-table static unicast... 338 9.2.3 Commands in the interface configuration mode... 339 9.2.3.1 switchport ingress-filter... 339 9.2.3.2 no switchport ingress-filter... 340 9.3 Dynamic MAC aging... 341 9.3.1 The "show" commands... 341 9.3.1.1 show mac-address-table aging-time... 341 9.3.1.2 show mac-address-table aging-status... 342 9.3.2 Commands in the global configuration mode... 342 9.3.2.1 mac-address-table aging-time... 342 9.3.2.2 no mac-address-table aging-time... 343 9.3.2.3 mac-address-table aging... 344 9.3.2.4 no mac-address-table aging... 344 9.4 Flow control... 346 9.4.1 The "show" commands... 346 9.4.1.1 show flow-control... 346 9.4.2 Commands in the interface configuration mode... 347 9.4.2.1 flowcontrol... 347 9.5 Service classes... 349 9.5.1 The "show" commands... 349 9.5.1.1 show qos cos-map... 349 9.5.1.2 show qos dscp-map... 350 9.5.1.3 show qos-trust-mode... 350 12 Configuration Manual, 09/2015, C79000-G8976-C361-03

Table of contents 9.5.2 Commands in the Global configuration mode... 351 9.5.2.1 qos... 351 9.5.3 Commands in the QOS configuration mode... 352 9.5.3.1 cos-map... 352 9.5.3.2 dscp-map... 353 9.5.3.3 qos-trust-mode... 354 10 Security and authentication... 357 10.1 User rights management... 357 10.1.1 The "show" commands... 357 10.1.1.1 show users... 357 10.1.2 whoami... 358 10.2 RADIUS client... 359 10.2.1 The "show" commands... 359 10.2.1.1 show radius statistics... 359 10.2.1.2 show radius server... 360 10.2.2 Commands in the global configuration mode... 360 10.2.2.1 login authentication... 360 10.2.2.2 no login authentication... 361 10.2.2.3 radius-server... 362 10.2.2.4 no radius-server... 364 10.3 Management Access Control List... 365 10.3.1 The "show" commands... 365 10.3.1.1 show authorized-managers... 365 10.3.2 Commands in the Global configuration mode... 366 10.3.2.1 authorized-manager... 366 10.3.2.2 no authorized-manager... 366 10.3.2.3 authorized-manager ip-source... 367 10.3.2.4 no authorized-manager ip-source... 369 10.4 Port Access Control List Locked Ports... 371 10.4.1 The "show" commands... 371 10.4.1.1 show lock port... 371 10.4.2 Commands in the Global configuration mode... 372 10.4.2.1 clear-all-static-unicast... 372 10.4.2.2 auto-learn... 373 10.4.3 Commands in the interface configuration mode... 373 10.4.3.1 switchport lock... 374 10.4.3.2 no switchport lock... 374 10.4.4 Commands in the AUTOLEARN mode... 375 10.4.4.1 start... 375 10.4.4.2 stop... 376 10.5 Port Based Network Access Control... 377 10.5.1 The "show" commands... 377 10.5.1.1 show dot1x... 377 10.5.2 Commands in the interface configuration mode... 378 10.5.2.1 dot1x port-control... 378 10.5.2.2 no dot1x port-control... 379 10.5.2.3 dot1x reauthentication... 380 10.5.2.4 no dot1x reauthentication... 381 11 Diagnostics... 383 Configuration Manual, 09/2015, C79000-G8976-C361-03 13

Table of contents 11.1 Event and fault handling... 384 11.1.1 logging console... 384 11.1.2 no logging console... 384 11.1.3 The "show" commands... 385 11.1.3.1 show events config... 385 11.1.3.2 show events severity... 386 11.1.3.3 show events faults config... 386 11.1.3.4 show events faults status... 387 11.1.3.5 show startup-information... 388 11.1.3.6 show logbook... 388 11.1.3.7 show fault counter... 389 11.1.3.8 show cabletest interface... 389 11.1.3.9 show power-line-state... 390 11.1.4 clear logbook... 391 11.1.5 clear fault counter... 391 11.1.6 fault report ack... 392 11.1.7 Commands in the global configuration mode... 393 11.1.7.1 events... 393 11.1.7.2 cabletest interface... 394 11.1.8 Commands in the Events configuration mode... 395 11.1.8.1 add log... 395 11.1.8.2 client config... 395 11.1.8.3 no client config... 396 11.1.8.4 event config... 397 11.1.8.5 no event config... 399 11.1.8.6 severity... 401 11.1.8.7 no severity... 402 11.1.8.8 power... 403 11.1.8.9 no power... 403 11.1.8.10 link... 404 11.1.8.11 no link... 405 11.1.8.12 syslogserver... 406 11.1.8.13 no syslogserver... 407 11.2 Syslog client... 409 11.2.1 The "show" commands... 409 11.2.1.1 show events syslogserver... 409 11.2.2 Commands in the Events configuration mode... 410 11.2.2.1 syslogserver... 410 11.2.2.2 no syslogserver... 411 11.3 RMON... 412 11.3.1 The "show" commands... 412 11.3.1.1 show rmon... 412 11.3.2 Commands in the global configuration mode... 413 11.3.2.1 rmon... 413 11.3.2.2 no rmon... 414 11.3.2.3 rmon alarm... 415 11.3.2.4 no rmon alarm... 416 11.3.2.5 rmon event... 417 11.3.2.6 no rmon event... 418 11.3.3 Commands in the interface configuration mode... 419 11.3.3.1 rmon collection stats... 419 14 Configuration Manual, 09/2015, C79000-G8976-C361-03

Table of contents 11.3.3.2 no rmon collection stats... 420 11.3.3.3 rmon collection history... 420 11.3.3.4 no rmon collection history... 421 11.4 Port Mirroring... 423 11.4.1 The "show" commands... 423 11.4.1.1 show monitor... 423 11.4.1.2 show monitor barrier... 424 11.4.1.3 show monitor session... 424 11.4.2 Commands in the global configuration mode... 425 11.4.2.1 monitor... 425 11.4.2.2 no monitor... 426 11.4.2.3 monitor barrier enabled... 427 11.4.2.4 no monitor barrier enabled... 428 11.4.2.5 monitor session destination... 428 11.4.2.6 no monitor session destination... 429 11.4.2.7 monitor session source... 430 11.4.2.8 no monitor session source... 431 11.4.2.9 no monitor session... 432 11.5 Loop detection... 434 11.5.1 The "show" commands... 434 11.5.1.1 show loopd... 434 11.5.1.2 show loopd interface... 435 11.5.2 Commands in the global configuration mode... 436 11.5.2.1 loopd... 436 11.5.2.2 no loopd... 437 11.5.2.3 loopd vlan mode... 438 11.5.2.4 no loopd vlan mode... 438 11.5.3 Commands in the Interface Configuration mode... 439 11.5.3.1 loopd {blocked forwarder sender}... 439 11.5.3.2 loopd {tx-interval detect-threshold reaction-timeout}... 440 11.5.3.3 loopd port reset... 441 11.5.3.4 no loopd port reset... 442 11.5.3.5 loopd reaction local... 443 11.5.3.6 no loopd reaction local... 444 11.5.3.7 loopd reaction remote... 444 11.5.3.8 no loopd reaction remote... 445 Index... 447 Configuration Manual, 09/2015, C79000-G8976-C361-03 15

Table of contents 16 Configuration Manual, 09/2015, C79000-G8976-C361-03

Introduction 1 1.1 Information on the Configuration Manual Validity of this configuration manual This Configuration Manual covers the following products: SCALANCE XB-200 Below, the products are also called IE switches. There are two variants of each device with different article numbers. The two variants differ only in their factory settings. All other properties are identical. This Configuration Manual applies to the following software version: SCALANCE XB-200 firmware as of version 1.2 Factory settings EtherNet/IP variants Industrial Ethernet protocol: EtherNet/IP Base bridge mode: 802.1Q VLAN Bridge Redundancy mechanism: RSTP Trust mode: Trust DSCP PROFINET variants Industrial Ethernet protocol: PROFINET Base bridge mode: 802.1D transparent bridge Redundancy mechanism: Ring redundancy Trust mode: Trust COS Purpose of the Configuration Manual This Configuration Manual is intended to provide you with the information you require to install, commission and operate IE switches. It provides you with the information you require to configure the IE switches. Configuration Manual, 09/2015, C79000-G8976-C361-03 17

Introduction 1.1 Information on the Configuration Manual Orientation in the documentation Apart from the configuration manual you are currently reading, the products also have the following documentation: Configuration manual "SCALANCE XB-200 Web Based Management" This document is intended to provide you with the information you require to commission and configure SCALANCE XB-200 IE switches using the Web Based Management. Operating Instructions "SCALANCE XB-200" This document contains information on installing, connecting up and approvals for the products. Further documentation In the system manuals "Industrial Ethernet / PROFINET Industrial Ethernet" and "Industrial Ethernet / PROFINET passive network components", you will find information on other SIMATIC NET products that you can operate along with the devices of this product line in an Industrial Ethernet network. There, you will find among other things optical performance data of the communications partner that you require for the installation. You will find the system manuals here: On the data medium that ships with some products: Product CD / product DVD SIMATIC NET Manual Collection On the Internet pages of Siemens Industry Online Support under the following entry IDs: 27069465 (http://support.automation.siemens.com/ww/view/en/27069465) Industrial Ethernet / PROFINET Industrial Ethernet System Manual 84922825 (http://support.automation.siemens.com/ww/view/en/84922825) Industrial Ethernet / PROFINET - Passive network components System Manual SIMATIC NET manuals You will find the SIMATIC NET manuals here: On the data medium that ships with some products: Product CD / product DVD SIMATIC NET Manual Collection On the Internet pages of Siemens Industry Online Support. See also Siemens Industry online support (http://support.automation.siemens.com/ww/view/en) Link to the area "Industrial Communication" (http://support.automation.siemens.com/ww/view/en/10805878/130000) 18 Configuration Manual, 09/2015, C79000-G8976-C361-03

Introduction 1.1 Information on the Configuration Manual SIMATIC NET glossary Explanations of many of the specialist terms used in this documentation can be found in the SIMATIC NET glossary. You will find the SIMATIC NET glossary here: SIMATIC NET Manual Collection or product DVD The DVD ships with certain SIMATIC NET products. On the Internet under the following address: 50305045 (http://support.automation.siemens.com/ww/view/en/50305045) Security information Siemens provides products and solutions with industrial security functions that support the secure operation of plants, solutions, machines, equipment and/or networks. They are important components in a holistic industrial security concept. With this in mind, Siemens products and solutions undergo continuous development. Siemens recommends strongly that you regularly check for product updates. For the secure operation of Siemens products and solutions, it is necessary to take suitable preventive action (e.g. cell protection concept) and integrate each component into a holistic, state-of-the-art industrial security concept. Third-party products that may be in use should also be considered. For more information about industrial security, visit http://www.siemens.com/industrialsecurity. To stay informed about product updates as they occur, sign up for a product-specific newsletter. For more information, visit https://support.industry.siemens.com. License conditions Note Open source software Read the license conditions for open source software carefully before using the product. You can download the license conditions in the WBM on the "System > Load&Save" page. Trademarks The following and possibly other names not identified by the registered trademark sign are registered trademarks of Siemens AG: SIMATIC NET, SCALANCE, C-PLUG, OLM Firmware The firmware is signed and encrypted. This ensures that only firmware created by Siemens can be downloaded to the device. Configuration Manual, 09/2015, C79000-G8976-C361-03 19

Introduction 1.1 Information on the Configuration Manual 20 Configuration Manual, 09/2015, C79000-G8976-C361-03

General information 2 2.1 Working with the Command Line Interface (CLI) Introduction All the configuration settings for the device can be made using the Command Line Interface (CLI). The CLI therefore provides the same options as Web Based Management (WBM). You should read the detailed explanations of the parameters in the relevant configuration manual "Web Based Management". The CLI allows remote configuration over Telnet. Note Use with Windows 7 If you want to access the Command Line Interface in Windows 7, make sure that the functions required for this are enabled in Windows 7. Starting the CLI in a Windows console Follow the steps outlined below to start the Command Line Interface in a Windows console: 1. Open a Windows console and type in the command "telnet" followed by the IP address of the device you are configuring: C:\>telnet <IP address> 2. Enter your login and password. As an alternative, you can also enter the command "telnet" followed by the IP address of the device you are configuring in the Start > Run menu. Note for use of the CLI You should only use the command line interface if you are an experienced user. Even commands that bring about fundamental changes to the configuration are executed without a prompt for confirmation. Errors in the configuration can mean that no further operation is possible in the entire network. Note Command sets depend on the logged-on user. Changing configuration data is possible only with the "admin" role. Configuration Manual, 09/2015, C79000-G8976-C361-03 21

General information 2.2 Structure of the Command Line Interface 2.2 Structure of the Command Line Interface Grouping of the commands in the various modes The commands of the Command Line Interface are grouped according to various modes. Apart from a few exceptions (help, exit), commands can only be called up in the mode to which they are assigned. This grouping allows different levels of access rights for each individual group of commands. The following graphic is an overview of the available modes. User EXEC mode This mode is active after you log in with the user name user in a console window. In this mode, you can use show commands to display the current values of configuration parameters. It is not possible to modify parameters in this mode. To be able to modify configuration parameters, you need to change to the Privileged EXEC mode. Privileged EXEC mode You change to this mode if you log in with the name "admin" or enter the command enable in User EXEC mode. There are two ways of exiting the Privileged EXEC mode: 1. The exit command logs you out; the Login Prompt prompt appears. 2. The disable command brings you back one level from the Privileged EXEC mode to the User EXEC mode. (The disable command is not available in the User EXEC mode.) 22 Configuration Manual, 09/2015, C79000-G8976-C361-03

General information 2.2 Structure of the Command Line Interface Global configuration mode In this mode, you can make basic configuration settings. In addition to this, you can also call up modes for the configuration of special interfaces or functions, for example to configure a VLAN. You change to this mode by entering configure terminal in the Privileged EXEC mode. To exit this mode, enter end. Other configuration modes From the Global configuration mode, you can change to other configuration modes for special tasks. These are either general configuration modes (for example line configuration, interface configuration) or protocol-specific configuration modes (SNTP, NTP). Configuration Manual, 09/2015, C79000-G8976-C361-03 23

General information 2.3 Configuration limits 2.3 Configuration limits Configuration limits of the device The following table lists the configuration limits for Web Based Management and the Command Line Interface of the device. The ability to use various functions depends on the device type being used. Configurable function Maximum number System Syslog server 3 E-mail server 3 SNMP trap recipient 10 SNTP server 1 NTP server 1 Agent interfaces 1 Layer 2 Virtual LANs (including VLAN 1) 17 Mirroring sessions 1 Unicast filtering 128 Multicast groups 256 Static MAC addresses in the forward database (FDB) 128 Layer 3 DHCP Relay Agent interfaces 1 DHCP Relay Agent servers 4 Security IP addresses from RADIUS servers 3 Management ACLs (access rules for management) 10 24 Configuration Manual, 09/2015, C79000-G8976-C361-03

General information 2.4 Features not supported 2.4 Features not supported The following features are not supported by the IE switches SCALANCE XB-200 with firmware version 1.2: FMP FQDN IPv6 Layer 3 features Link Aggregation/Port Channel Loopback Multiple Spanning Tree Protocol (MSTP) Pnac PoE Even if these features are listed as parameters in the documentation and are displayed with the help functions help and?, you cannot execute them with a SCALANCE XB-200. Configuration Manual, 09/2015, C79000-G8976-C361-03 25

General information 2.5 The CLI command prompt 2.5 The CLI command prompt Overview The Command Line Interface prompt shows the following information: The mode in which the CLI is currently operating. Most commands can only be called in a particular mode. You should therefore check the CLI mode based on the command prompt. User Exec mode: CLI> Privileged Exec mode and configuration modes: CLI(...)# The selected interface when the CLI is in an Interface Configuration mode. In the Interface Configuration mode, the parameters are configured for one specific interface. The command prompt is displayed in the form CLI(config-if-$$$)# where the placeholder $$$ is replaced by the identifier of the Interface. You select the Interface by setting suitable parameters for the interface command. An identifier when the Trial mode is enabled. If you first test changes to the configuration and then want to discard them, disable the Auto save function with the no auto-save command. You are then in Trial mode. Changes to the configuration that you have not saved are indicated by an asterisk in front of the command prompt: *CLI(...)#. You save the changes to the configuration with the command write startup-config. With the auto-save command, you enable the Auto save function again. Note Upper and lower case The Command Line Interface does not distinguish between upper case and lower case letters. Make sure, however, that names used by the operating system or other programs are correctly written. Blank To use blanks in a text, enter the text in quotes, for example "H e l l o" 26 Configuration Manual, 09/2015, C79000-G8976-C361-03

General information 2.6 Symbols of the CLI commands 2.6 Symbols of the CLI commands Symbols for representing CLI commands When setting parameters for CLI commands, the following characters are used: Character Meaning <... > mandatory parameter Instead of the expression in parenthesis, you must enter a value [... ] optional parameter Instead of the expression in parenthesis, you can enter a value (... ) Value or range of values Enter a value to replace the expression in parenthesis (... -... ) Range of values Enter a value from this range {... } Selection list Select one more elements from the list {...... } exclusive selection Select exactly one element from this list These characters are used in combinations to describe mandatory and optional entries. There is a general description of some of these combinations below: Character combinations Meaning < variable > Instead of the expression in parentheses<>, enter a permitted value < variable (a - b) > Instead of the expression in parentheses <>, enter a value from the range "a" to "b" [< variable 1 >< variable 2 >] The parameter pair is optional. If you use the parameter assignment, you need to enter a permitted value to replace both expressions in parenthesis <> [ keyword < variable (a - b)>] The parameter assignment is optional. If you use the keyword, you need to enter a value from the range "a" to "b" to replace the expression in parenthesis <> [ keyword < variable (a - b) unit >] The parameter assignment is optional. If you use the keyword, you need to enter a value from the range "a" to "b" to replace the expression in parenthesis <>. "Unit" is one of the variables and is also replaced by the entry. [keyword { A B C }] The parameter assignment is optional. If you use the keyword, you need to specify exactly one of the values "A", "B" or "C" keyword { [A] [B] [C] } After the keyword, enter one or more of the values "A", "B" or "C" Configuration Manual, 09/2015, C79000-G8976-C361-03 27

General information 2.7 Addresses and interface names 2.7 Addresses and interface names 2.7.1 Naming interfaces Addressing interfaces The devices have several types of interface that are addressed in different ways. Addressing physical interfaces The following notation applies to all commands that address a physical interface: Enter the command "interface". Specify the interface type <interface-type>. After a space, enter the interface identifier, <interface-id>. The interface identifier is made up of the module number and the port number separated by a slash. You call a Fast Ethernet interface on the second port of module 0 with the following command. interface fa 0/2 Addressing logical interfaces The following notation applies to all commands that address a logical interface: Enter the command "interface". Enter the keyword for the logical interface, vlan. After a space, enter the number of the interface you assigned when you created it, <vlanid(1-4094)>. You call VLAN ports as follows: interface vlan 1 Available physical interfaces Available interface types SCALANCE XB-200 support the following interface types: interface-type Abbreviation/acronym fast-ethernet fa Available interface identifiers All physical interfaces of the SCALANCE XB-200 are called module 0. 28 Configuration Manual, 09/2015, C79000-G8976-C361-03

General information 2.7 Addresses and interface names Available logical interfaces VLAN The device supports up to 17 VLANs. To be able to use a VLAN, create it with the vlan command. Identification of the interfaces in the command prompt of the Interface configuration mode To configure the interface use the command interface in the global configuration mode. Since you configure precisely one of the existing interfaces in the Interface configuration mode, the command prompt shows not only the mode but also the name of this interface. cli(config-if-$$$)# The placeholder $$$ is replaced by the following name of the interface: Type of interface Command prompt fast-ethernet cli(config-if-fa0-$) # vlan cli(config-if-vlan-$)# The placeholders $ or $-$ denote the numbering of the interface. 2.7.2 Address types, address ranges and address masks Overview Since the various types of addresses can be represented by different notations, the notations used in the Command Line Interface are shown below: IPv4 addresses Addresses for the Internet Protocol version 4 are written in the decimal notation of four numbers from the range 0 to 255, separated by a period. Note With leading zeros, the numbers are interpreted as octal numbers, e.g.: 192.168.070.071 192.168.56.57. Network masks A network mask is a series of bits that describes the network part of an IP address. The notation is normally decimal in keeping with the IP address. Alternative notation for network masks In contrast to the notation described above, network masks can also be represented as a number of 1 bits. The mask of the decimal representation 255.255.0.0 is then written as /16. The syntax is then for example: <ipaddress> / 16 Note that there must be a space before and after the "/". Configuration Manual, 09/2015, C79000-G8976-C361-03 29

General information 2.7 Addresses and interface names MAC addresses In the syntax of the Command Line Interface, a MAC address is represented as a sequence of 6 bytes in hexadecimal format, in each case separated by a colon. The syntax is then, for example aa:aa:aa:aa:aa:aa Multicast addresses Layer 2 multicast addresses as used on this device use the notation of MAC addresses. For permitted address ranges, check the rules or ask your network administrator. 30 Configuration Manual, 09/2015, C79000-G8976-C361-03

General information 2.8 General CLI commands 2.8 General CLI commands This section describes commands that you can call up in any mode. 2.8.1 clear screen With this command, you clear the screen. The command prompt is displayed. Call the command without parameters: clear screen The screen is cleared. The command prompt is displayed. 2.8.2 end With this command, you exit the configuration mode and are then in the Privileged EXEC mode. You are in a configuration mode. Call the command without parameters: end You are in the Privileged EXEC mode. Configuration Manual, 09/2015, C79000-G8976-C361-03 31

General information 2.8 General CLI commands cli# 2.8.3 exit With this command, you close the current mode. Call the command without parameters: exit The current mode was exited. You are then at the next higher level. If you are in Privileged EXEC Modus or in User EXEC Modus mode, you will be logged out. 2.8.4 Help functions and supported input The Command Line Interface provides various functions that are helpful when making entries in the command line: help? Command completion with the tab key Automatic completion of incomplete commands Paging in the list of most recently used commands Display of the list of most recently used commands (show history) 2.8.4.1 help With this command, you display the help entry for a command or the command list. Call up help with the following parameters: help [command] Here, you replace [command] with the command for which you require help. 32 Configuration Manual, 09/2015, C79000-G8976-C361-03

General information 2.8 General CLI commands If the command for which you require help consists of several words, enter these words without spaces. The syntax of the command is displayed. If you call up help without parameters, you will obtain a list of all permitted commands in the current mode: help The mode-specific as well as the global commands are displayed. Note Incomplete command names If you have specified an incomplete command when calling help, a list of all commands that start with the term you have entered is created. 2.8.4.2 The command "?" With this command, you call up the command list. Enter a question mark to obtain a list of all permitted commands in the current mode:? For this command, you do not need to press the enter key. The command executes immediately after you type the character. Configuration Manual, 09/2015, C79000-G8976-C361-03 33

General information 2.8 General CLI commands The mode-specific as well as the global commands are displayed. Note Incomplete command names If you have specified an incomplete command when calling the help function, a list of all commands that start with the term you have entered is created. Note Output in pages With long lists, the results are displayed as pages. If -- more -- appears at the lower edge of the display, you can move to the next page with the spacebar. If the display is in pages, you cannot page back. You exit the page display with the q key. 2.8.4.3 Completion of command entries The command interpreter of the Command Line Interface supports you when you enter commands. As soon as the first characters of the command have been entered in the input line, the system can complete the entry as long as the character string is unambiguous. This can be repeated after entering further characters. Procedure Enter the first characters of the command. Press the tab key. The command interpreter completes the input as long as the command is unambiguous. If you enter a character string that cannot be completed to form a command, an error message is displayed. The command is not unique: % Ambiguous Command The command is unknown: % Invalid Command The command is incomplete: % Incomplete command If the entry is not yet complete, enter further characters. With?, you obtain a list of the possible commands. Repeat this if necessary until the command is complete and can execute. 34 Configuration Manual, 09/2015, C79000-G8976-C361-03

General information 2.8 General CLI commands 2.8.4.4 Abbreviated notation of commands The command interpreter of the Command Line Interface also detects commands if only the first character of the command or its parts is entered. This is only possible if all the parts of the abbreviated input can be assigned to exactly one command or to the parts of the command. Example The show event config command can be replaced by the expression sh e c. 2.8.4.5 Reusing the last used commands The Command Line Interface saves the last 14 commands used in a list assigned to the particular mode. This can then only be called up in the relevant mode. Example: In the Global Configuration mode, all entered commands are saved. If you entered commands earlier in the Interface Configuration mode, these commands are not included in the list of the Global Configuration mode. You can only call up and reuse these commands in the Interface Configuration mode. Procedure You can page through the list of the commands most recently used using the arrow up and arrow down keys. If the command you are looking for is displayed, you can edit the command line as required and execute the command with the enter key. You display the list of commands last used with the show history command. This function is available in every mode. 2.8.4.6 Working through a command sequence Separators for multiple commands in one line You can call up several commands one after the other in one line in the CLI. Separate the commands with a semicolon (;). Configuration Manual, 09/2015, C79000-G8976-C361-03 35