SG500 vs Catalyst 3750 command set
Hello world!
Could you give me the main differences between the set of commands SG500 and Catalyst 3750?
Thanks in advance!
Hello Gio, it cannot really be quantified. Not only is there a set difference command there a difference in functionality.
The primary opposition between SB vs the catalyst switches happen is how they deal with the VLAN. On a Catalyst switch, if you do a port a trunk and do not specify a VLAN on the port, all the VLANS will be passthrough port.
On all switches of SB, you must specify the VLAN and follow the guidelines of 802. 1 q, which means, vlan native unidentified, all the VLANS additional added to a port. In addition, a trunk port applies the filtering of capture (rejected a package where him VLAN does not fall on the port).
In addition, the vlan, VoIP is a global configuration
config t
ID of the vlan 100 voices
On a catalyst usually build you a policy then indicate this vlan voice on the port. If you specify a vlan voice on the port a SG500 it "will allow phone Yes" which is usually the opposite of the desired result.
Another notable difference, a catalyst using the terminal command length 0 for output, the SB switches use terminal datadump
Here's the CLI guide for the 500 series. You will actually receive a complete response, a few entries experiences user but that may be better than nothing.
http://www.Cisco.com/en/us/docs/switches/LAN/CSBMs/Sx500/cli_guide/CLI_500.PDF
-Tom
Please mark replied messages useful
Tags: Cisco Support
Similar Questions
-
Hello
I have a scan server (IP = 1.2.3.4 for this example) who wreaks havoc when it works, which is evident in the number of drops of output I see. I thought the police thing, but it is a production environment and 3750-G switch does not support Netflow or any other tool that would provide accurate estimates of flow to work from.
So, my thoughts are rather to implement queuing for the scan server and limit his access to common buffers, etc.. I would like to have some feedback on the config. (I've included notes in an attempt to illustrate my thought.)
!**| Catalyst 3750-G | **
!
! * Activate QoS
!
MLS qos
!
! * Create custom queue-set
! * increase buffer 1 and disable the stamp 4
!
MLS qos all the output queue 2 buffers 50 25 25 0
!
! * To queue 1, make available to the threshold of 1 full buffer,
! * reserve full buffer for the local queue only, enable
! * queue to borrow 3 x more common pool pads.
!
MLS qos all the queue of output 2 1 100 100 100 400 threshold
!
! * To queue 3, make available to the threshold of 1 full buffer,
! * reserve 30% of buffer for the local queue only, enable
! * queue to borrow 4 x more common pool pads.
!
MLS qos all the queue of output 2 3 100 100 33 165 threshold
!
! * Assign values DSCP 16, 18, 20, 22 & to queue 1;
! * assign values DSCP 8, 10, 12, 14 & the queue of 3
!
queue threshold 1 dscp-map of MLS qos srr-queue output 1 16 18 20 22
queue threshold 3 dscp-map of MLS qos srr-queue output 1 8 10 12 14
!
! * To be complete, assign COS values associated with the same queues.
!
queue threshold cos 1-map of MLS qos srr-queue output 1 2
queue threshold cos 3-map of MLS qos srr-queue output 1 1
!
! * Access-list 130 identifies (bidirectional) scan traffic.
!
IP access-list 130 allow any host 1.2.3.4
access-list 130 allow the host ip 1.2.3.4 everything
!
! * Create a class map to match previously configured access group.
!
class-map correspondence-any CM-SCANS
Description * no critical analysis traffic
game group-access 130
output
!
! * Create policy-map to assign a DSCP values to analyze default traffic.
!
Policy-map PM-QOS-IN
Description * Ingress QoS strategy
class of CM-SCANS
set ip dscp af11
output
!
class class by default
set ip dscp af21
output
output
!
! * Assign the queue-series 2 and/or service-policy (single entry) if required.
!
gix/x/x interface
queue-series 2
entry of service-politics-PM-QOS-IN
output
!PS - There is no voice that cross this switch, so I don't see it had to book the queue 1 for voice or turn on the priority queue, etc..
Any help is appreciated. Thank you in advance.
Disclaimer
The author of this announcement offers the information in this publication without compensation and with the understanding of the reader that there is no implicit or explicit adequacy or adaptation to any purpose. Information provided is for information purposes only and should not be interpreted as making the professional advice of any kind. Use information from this announcement is only at risk of the reader.
RESPONSIBILITY
Any author will be responsible for any wha2tsoever of damage and interest (including, without limitation, damages for loss of use, data or profits) arising out of the use or inability to use the information in the view even if author has been advised of the possibility of such damages.
Poster
Well, then you're a little stuck trying to manage the flow of this server. Unless you want to look at the penetration of the port police server and/or to "shape" the output port. The idea being, if you can slow down the movement of this server, you might avoid configuration QoS requirements.
Otherwise, you're on the right track, in what you're trying to do.
You may want to traffic of tag to this server as 'trap' (CS1). Ideally, you may be able to distinguish the traffic 'scan' of other traffic to and from this server.
On treatment of output of your QoS policy, rather than create a 'special' configuration to handle this traffic, you should consider having a policy that has a low priority class (scavenger), which is where direct you this traffic. That is a policy of 4 class that takes in charge in time real (PQ), foreground (twice in 10 x % of the default value), by default and the background (1%), planning priorities.
3750 of buffer management, I found the setting of thresholds all up and moving more if not all buffers to the pool, usually works quite well.
-
VXLAN on UCS: IGMP with Catalyst 3750, 5548 Nexus, Nexus 1000V
Hello team,
My lab consists of Catalyst 3750 with SVI acting as the router, 5548 Nexus in the vpc Setup, UCS in end-host Mode and Nexus 1000V with segmentation feature enabled (VXLAN).
I have two different VLAN for VXLAN (140, 141) to demonstrate connectivity across the L3.
VMKernel on VLAN 140 guests join the multicast fine group.
Hosts with VMKernel on 141 VLAN do not join the multicast group. Then, VMs on these hosts cannot virtual computers ping hosts on the local network VIRTUAL 140, and they can't even ping each other.
I turned on debug ip igmp on the L3 Switch, and the result indicates a timeout when he is waiting for a report from 141 VLAN:
15 Oct 08:57:34.201: IGMP (0): send requests General v2 on Vlan140
15 Oct 08:57:34.201: IGMP (0): set the report interval to 3.6 seconds for 224.0.1.40 on Vlan140
15 Oct 08:57:36.886: IGMP (0): receipt v2 report on 172.16.66.2 to 239.1.1.1 Vlan140
15 Oct 08:57:36.886: IGMP (0): group record received for group 239.1.1.1, mode 2 from 172.16.66.2 to 0 sources
15 Oct 08:57:36.886: IGMP (0): update EXCLUDE group 239.1.1.1 timer
15 Oct 08:57:36.886: IGMP (0): add/update Vlan140 MRT for (*, 239.1.1.1) 0
15 Oct 08:57:38.270: IGMP (0): send report v2 for 224.0.1.40 on Vlan140
15 Oct 08:57:38.270: IGMP (0): receipt v2 report on Vlan140 of 172.16.66.1 for 224.0.1.40
15 Oct 08:57:38.270: IGMP (0): group record received for group 224.0.1.40, mode 2 from 172.16.66.1 to 0 sources
15 Oct 08:57:38.270: IGMP (0): update EXCLUDE timer group for 224.0.1.40
15 Oct 08:57:38.270: IGMP (0): add/update Vlan140 MRT for (*, 224.0.1.40) by 0
15 Oct 08:57:51.464: IGMP (0): send requests General v2 on Vlan141<----- it="" just="" hangs="" here="" until="" timeout="" and="" goes="" back="" to="">----->
15 Oct 08:58:35.107: IGMP (0): send requests General v2 on Vlan140
15 Oct 08:58:35.107: IGMP (0): set the report interval to 0.3 seconds for 224.0.1.40 on Vlan140
15 Oct 08:58:35.686: IGMP (0): receipt v2 report on 172.16.66.2 to 239.1.1.1 Vlan140
15 Oct 08:58:35.686: IGMP (0): group record received for group 239.1.1.1, mode 2 from 172.16.66.2 to 0 sources
15 Oct 08:58:35.686: IGMP (0): update EXCLUDE group 239.1.1.1 timer
15 Oct 08:58:35.686: IGMP (0): add/update Vlan140 MRT for (*, 239.1.1.1) 0
If I do a show ip igmp interface, I get the report that there is no joins for vlan 141:
Vlan140 is up, line protocol is up
The Internet address is 172.16.66.1/26
IGMP is enabled on the interface
Current version of IGMP host is 2
Current version of IGMP router is 2
The IGMP query interval is 60 seconds
Configured IGMP queries interval is 60 seconds
IGMP querier timeout is 120 seconds
Configured IGMP querier timeout is 120 seconds
Query response time is 10 seconds max IGMP
Number of queries last member is 2
Last member query response interval is 1000 ms
Access group incoming IGMP is not defined
IGMP activity: 2 joints, 0 leaves
Multicast routing is enabled on the interface
Threshold multicast TTL is 0
Multicast designated router (DR) is 172.16.66.1 (this system)
IGMP querying router is 172.16.66.1 (this system)
Multicast groups joined by this system (number of users):
224.0.1.40 (1)
Vlan141 is up, line protocol is up
The Internet address is 172.16.66.65/26
IGMP is enabled on the interface
Current version of IGMP host is 2
Current version of IGMP router is 2
The IGMP query interval is 60 seconds
Configured IGMP queries interval is 60 seconds
IGMP querier timeout is 120 seconds
Configured IGMP querier timeout is 120 seconds
Query response time is 10 seconds max IGMP
Number of queries last member is 2
Last member query response interval is 1000 ms
Access group incoming IGMP is not defined
IGMP activity: 0 joins, 0 leaves
Multicast routing is enabled on the interface
Threshold multicast TTL is 0
Multicast designated router (DR) is 172.16.66.65 (this system)
IGMP querying router is 172.16.66.65 (this system)
No group multicast joined by this system
Is there a way to check why the hosts on 141 VLAN are joined not successfully? port-profile on the 1000V configuration of vlan 140 and vlan 141 rising and vmkernel are identical, except for the different numbers vlan.
Thank you
Trevor
Hi Trevor,
Once the quick thing to check would be the config igmp for both VLAN.
where did you configure the interrogator for the vlan 140 and 141?
are there changes in transport VXLAN crossing routers? If so you would need routing multicast enabled.
Thank you!
. / Afonso
-
Frustrated by the strange behavior of the command SET up FIRST HP!
I tried to define a function using the command SET the. The function is F = G * M * m / r ^ 2. No matter what I try, I still get the same generic error: INVALID INPUT. I went to the guess, user manual, half a page of information about the command SET. Better nothing, but far from what you would expect if the manual is YOUR main source of information on how to use the calculator. In the first instance, an error, here's what I discovered:
(1) name of the function cannot be long 1 letter. They can combine the capital letters, small letters and numbers...
(2) variable must be UPPERCASE
(3) variables can start with a letter and followed by a unique number. ONLY THAT, nothing more
Can someone, confirm please?
It is quite limited. So now, instead of the calculator not work for me I have to work for it. This is the formula I: F = G * M * m / r ^ 2 and that's what the calculator would accept in the screen SET: F12 = G * M1 * M2/R ^ 2, see figure 1. Quite annoying, but I can leave with it.
As you know, G is the gravitational constant: 6.67384 x 10 ^-11. The calculator is supposed to to remember, so why type it again? I went to CASE view, called my function, putting fake numbers, just to try it, had G of MAJ > units > Const > physics. This is how my edit line looks like: F12(6.67384E-11,100,300,25)... See figure 2. Guess what? An ERROR GENERIC, no idea of what the calculator don't like on this subject. After a while, I discovered he does not like the E in 6.67384E - 11, she she likes 6.67384e - 11, and then it throws another error (Bad arguments number) see figure 3. I check everything, it looks all right.
I decided to try my LUCK in the main screen. Everything works perfectly. He doesn't get complaint even the 'E' in G, and I get the result expected (figure 4).I went back to the screen set and passed under the name of the F12 function to Forc, put the numbers again, MAGIC, now this market (see figure 5). So, after all, it seems to be the calculator do not like the numbers the function name, but he didn't complain. Come on guys, you do not buy a top of the calculator online to go through this torment.
Can someone tell me what is the reason for the bizarre behavior?Hello
DEFINE functions MUST respect the rules of the home screen in every way shape and form. For example, the variables must be valid system variables...
DEFINE function names cannot collide with existing variables/functions names, which is why you cannot use single past uppercase to name...
If you want to use the names of other variables that the pre sets, you will first need to create them. Betai you can create them in CASES, it is best to create in the House because, as a general rule, it is best NOT to mix things ca and home (it is much slower and is more likely to cause disorders). To create a new variable home user, just assign a value to a variable as in abc: = 5 (or 5-> abc-> where is the arrow of the sto)... You will be asked if you want to create the variable. answer Yes and you're...
Cyrille
-
Diag on flax (with Diagnostic command set auto toolkit)
Hello
I need to develop an application in Labwindows/CVI 2013 which can make diagnostic tests based on LIN. I installed the resource kit "Automotive Diagnostic Command Set" and even tried the 2 examples of NEITHER.
I have a baord PXI-8516. I just need to send and receive frames.
I know that this framework is a good example: 3C-92-F2-00-00-00-00-00-00
The problem with the example, it's that the 0x3C and 0x3D are not used. I need to know how to create and send a frame and how to receive the ansewer (it takes a few ms before reading?)
here my code (part on the callaback function):
unsigned char dataIn [8] = {146, 242, 0, 0, 0, 0, 0, 0}; HEX: 92, F2, 00, 00, 00, 00, 00, 00
unsigned int len = 8;switch (event)
{
case EVENT_COMMIT:Delay (1);
for (int i = 0; i)<>
{
status = ndUDSWriteDataByIdentifier (& DiagStruct, 0x3C, dataIn, len, & success);Delay (1);
status = ndUDSWriteDataByIdentifier (& DiagStruct, 0x3D, dataIn, len, & success);
Delay (1);
}Thank you in advance!
-
Is it possible to run DiagOnCAN with the NI-CAN driver only (without car Diag command Set)
Hello world
Is it possible to run DiagOnCan without using Diag command set auto - only with the NI-CAN driver (hardware I use is low tolerant speed - USB8472 and NOR-XNET)?
G. Petko
no problem to do with your hardware and NI-CAN frame API.
However, you must implement the Diag and Services Transport layer on your own, which is quite a big job.
I recommend you spend the money for automotive diagnostic command set that supports
- NI CAN (PXI, PCI, PCMCIA, USB)
- NOR-XNET
- cRIO/985 x target (Pharlap and VxWorks) #.
which means that if you plan to transfer your application in the future to different hardware target or the real-time target, that you don't need to change your app at all.
-
diagnostic command set Auto popup error
Hello
Anyone know how to prevent ordering of diagnostic auto value error or warning message windows popup?
Thank you.
M.C.
Please check the source code of your application CVI does not use similar error code checks that we use in our examples.
The Aut. Diagnostic command Set CVI examples always contain this routine to check the State of the service.
void CheckError (const char * Routine, long status)
Please check your code if it contains this technique.
Thank you very much
-
Cisco switch Catalyst 3750 does support QoS CBWFQ?
I would understand if the catalyst IOS supports control of bandwidth to a class and offer a minimum bandwidth in a situation of congestion. I have a few applications that need to increase its flow when other classes use their bandwidth. On my 3750 I don't see bandwidth control.
Thank you very much.
Hi you should not have to configure the qos of the mls, just use the political function of the to apply, but from what I remember there are restrictions on 3750 s I don't think you can apply the outbound policy only entrants, but he was able to change most recent IOS, I have not tested recently
It is a good doc on 3750 s qos
http://www.Cisco.com/c/en/us/TD/docs/switches/LAN/catalyst3750/software/...
-
Command sets does not not on ACS 5.1
I'm under ACS 5-1-0-44-3.
I have everything works correctly on ACS 5.1. I want to implement the sets of commands for specific users and groups. Under access-> Device Admin-> authorization policies I have order selected sets. The provided cisco is DenyAllCommands. I have this command set running on all groups and all groups is still able to issue any order they wish. I also have a set of commands "show_only' that I issued a group and they are still able to do t conf or any other command.
Am I missing something?
Do you need to reference the set name command under the profiles of the shell?
His I understand all you have to do is reference in "Authorization" in the rules under device admin.
I can understand a defined custom command does not not because of user error but DenyAllCommands should work.
Anyone have any ideas?
I have re-patched GBA
Stopped and started services.
And it seems that the sets of commands is the only one not referenced in newspapers
paste your router config AAA and check in authorization Ganymede + aaa if orders are checked and so on.
concerning
-
Cisco Catalyst 3750 G cable StackWise Query
Hi everyone, I hope you can shed some light on my question.
I have a job reserved Friday to add a switch to an existing fireplace. I was wondering at what point I need to use a longer cable to complete the ring.
The existing stack consists of 2 x Cisco Catalyst 3750 G-24TS-24 switches are the 1.5U models and I will be adding a 3750 G-12-12 to the stack. So a total of 4U.
So I guess my question is, do you think that the CAB-STACK - 50CM = cable supplied with the unit will be long enough, or do you think I will need to order a CAB-STACK - 1 M =? It's been a while since I've done it and I think remember me being quite stiff and bulky cables. All switches are in order without a space.
Kind regards
Mike
Disclaimer
The author of this announcement offers the information in this publication without compensation and with the understanding of the reader that there is no implicit or explicit adequacy or adaptation to any purpose. Information provided is for information purposes only and should not be interpreted as making the professional advice of any kind. Use information from this announcement is only at risk of the reader.
RESPONSIBILITY
Any author will be responsible for any damage that it (including, without limitation, damages for loss of use, data or profits) arising out of the use or inability to use the information in the view even if author has been advised of the possibility of such damages.
Poster
If you do the 'classic' connections, i.e. 1 to 2, 2 to 3, 3, 4, and 4 to 1, and the 50CM won't reach between 1 and 4, you should be able to use shorter cables as: 1-2 and 1-3 and 4-2 and 4-3.
PS:
BTW, remember that 12-12 can use SDM models incompatible with the 3750 G. I.e., ensure the 12-12 has a model SDM compatible before connect you to the battery.
-
5.3 - command sets ACS does not
We installed Vmware-cent os 5.3 GBA and a cisco router is configured to authenticate to this server GANYMEDE +,.
I am able to connect to the router using the username specified of GANYMEDE. / password and able to see shots also like below in the policy,.
But the sets of commands work as defined, pls help me to find the problem...
Filter: StatusNameIdentity GroupNDG:LocationNDG:Device TypeTime and DateCommand SetsShell ProfileHit heads Match if: Equals EqualsNot EnabledDisabledMonitor only Status Name Conditions Results Hit Count Membership group NDG:Location Type of NDG:Device Time And Date Command Sets Shell Profile 1 ACCESS TO RO in all groups: READ ONLY ACCESS in all locations in all Types of devices -ANY- READ ONLY POLICY SHELL OF RO 10 2 RESTRICTED ACCESS in all groups: ACCESS SELECT in all locations in all Types of devices -ANY- RESTRICTED USER POLICY Allow access 1 3 SUPER ADMIN ACCESS in all groups: FULL ACCESS in all locations in all Types of devices -ANY- ALLOW ALL POLICIES Allow access 0 How you set up your sets of commands? Also make sure that we have orders for authorization on the router,
AAA authorization exec default group Ganymede + authenticated if
AAA authorization commands 1 default group Ganymede + authenticated if
AAA authorization commands 15 default group Ganymede + authenticated if
AAA authorization config-commands
Kind regards
~ JG
Note the useful messages
-
Reference Dell command set (CCTK v2.2.1)
Nice day. I am trying to configure a build custom offline process and I implemented a WinPE image with a few controls and remote files ini FILE to configure the BIOS settings for the technicians in offline mode. I hit a deer where CCTK put my Admin password, but it does not recognize password set it now. I'm locked out effectivly.
Here is the result of my batch file:
X:\Windows\System32>CCTK.exe--setuppwd is Abc! 23
Password is configured successfully.
X:\Windows\System32>CCTK--setuppwd = - valsetuppwd = Abc! 23
The supplied password is incorrect. Please try again.
What happened twice on two laptops Dell Latitude E6420.
CCTK version is 2.2.1
Never had a problem with CCTK done this before in our environment of MDT. This is the first time I'm trying to run a batch file and CCTK via a WinPE image.
I called Dell technical support to try to get unlocked BIOS. If anyone knows where the order has badly filmed?
Is there something that I forget trying to clear the admin password?
I do this for a completely offline set up and installation USB Stick Windows image.
Thank you!
Please use the command clear your password below. symbol "=" is extra in your set password command.
CCTK - setuppwd = - valsetuppwd == Abc! 23
A valid command to set the password is: cctk.exe - setuppwd = Abc! 23
-
Bundle of Web authentication on a WLAN controller integrated Catalyst 3750
We have set up a wifi zone based on a few 1131AG access points and a few Cisco 3750 integrated WLAN controllers. We are now trying to use web authentication for our comments area. No problem by defining a WLAN of COMMENTS and the associated VLAN. We have also managed to download a custom controller authentication web page.
However, when I try to display the custom page, both controllers of show me the internal default page (preview and during the phase of actual authentication).
Global web authentication settings are the following: Security--> Auth Web--> Web Login Page--> custom (downloaded).
On the controller software version is 4.2.112.0, and the page is an HTML page.
Reveal any help be appreciated.
Kind regards
Sonia
What you need to do is set internally (by default) and hit apply, then play again to custom and click on apply. You can still see the defaul if you use the preview, but if you associate the SSID and open your web browser, you should get the webauth page. I hope this helps.
-
5.2 ACS command set - how to allow empty arguments?
Hello together,
After the passage of a very old ACS ACS 5.2 3.2, I wonder how to specify an argument empty in a set of commands.
Example:
I want to allow:
To write
but I don't want to allow:
write terminal
write erase
write the network
write the kernel
and so on.
If I specify command = "Write" and leave the field to the empty argument, each argument is allowed. It would also "erase writing" what I don't want.
ACS 3.2 I could specify command = "Write" and the argument ="^
$". It's exactly what I want. Writing command with an empty argument is allowed. If there is no argument, the command is rejected. "ACS 5.2 if I get the same string in the field of the argument, the.
"is filtered and in the config is now only the string" ^ $"does not." Someone has an idea, how to specify an argument empty?
BTW: View ACS shows only [CmdAV = writing] in newspapers...
Thanks in advance for your help,
Tobias.
Please try the workaround in this bug to see if it works or not. The bug has been produced for some time, but it has not yet been set.
-
I tried many ways to create a custom PS CC brush (2015), and all my efforts give the same error identified in the subject. I copied the shape layer in PS CC (2014) and everything worked fine. As a solution, I saved the brush set out and transferred to 15. I can't understand what is wrong. Is there a bug in 15 w 'set preset shape' specifically? Greatly appreciate suggestions and knowledge. Thank you!
See you soon,.
-DK
Which will not. There's nothing a brush without bristles of brush 100% white. There is nothing to set.
Maybe you are looking for
-
I seem to have lost all my favorite Safari on my Mac Mini and devices
Synchronization of bookmarks (tons of them in folders) via iCloud on my Mac and all my other devices (iPhone and iPad). I deleted them inadvertently on an older Mac Mini, I reinstall and they appear no more of my devices (new Mac mini, iPhone iPad an
-
migration of data from the Office of windows 7 2007
Hello Keep transferring my files of Office 2007 (including Outlook e-mail) on a Windows 7 on my Macbook Air (El Capitan). I understand that I must buy Office for Mac and install first 2016. Does anyone have experience with these data migrations? I'm
-
Satellite P200-1JY and Win7 - SDHC card can not be read
HelloI am owner of a Satellite P200-1JY, my OS is windows 7 and I can't read SDHC cards, but only the SD card.On the same PC under windows XP, I could read SDHC cards!So I should have a driver problem? Thanks for your help.
-
Custom event is not captured by the Task Scheduler and unable to trigger by e-mail for the event
Hello world We have installed the 9.0 table in our windows 2008 R2 server and Scheduler tasks to send if you find error occurred for the application in it. That's why we created SMTP inside. First, we have implemented the Task Scheduler and generate
-
We have several computers at work that use 32-bit versions of Windows 7 Professional. We must move to 64-bit in order to use more memory. If I have a Windows 7 Professional 64 bit disc can I install the 64 bit version and reuse install the license ke