Monday, April 27, 2015

Cisco ME-3600X IOS Upgrade Via archive download-sw Command

I often use the copy tftp flash command to perform an IOS upgrade on Cisco devices. The download software (from Cisco.com) for a Cisco ME-3600X switch is a .tar file, which is a compressed file that includes the .bin (bare image) and other HTML files.

The upgrade/downgrade of newer Cisco switch is now easier with the archive download-sw command. It's similar to the copy tftp flash command except that it will auto extract the .tar file, delete the existing .bin file and copy the new IOS.

We're using the ME switch as an aggregate Layer 3 switch for all Metro E client circuits. Most client router has Ethernet handoff and we don't need to keep on adding up Ethernet cards and schedule maintenance window on our PE routers. Here are some photos of the ME-3600X-24TS-M and the IOS upgrade procedure that I performed.





Using driver version 1 for media type 1

Base ethernet MAC Address: 0c:f5:a4:88:c4:80

Xmodem file system is available.

The password-recovery mechanism is enabled.


*** The system will autoboot in 5 seconds ***

Send break character to prevent autobooting.


Initializing Flash...

mifs[2]: 10 files, 1 directories

mifs[2]: Total bytes     :    1290240

mifs[2]: Bytes used      :     788992

mifs[2]: Bytes available :     501248

mifs[2]: mifs fsck took 1 seconds.

mifs[3]: 3 files, 1 directories

mifs[3]: Total bytes     :    4386816

mifs[3]: Bytes used      :    3215872

mifs[3]: Bytes available :    1170944

mifs[3]: mifs fsck took 0 seconds.

mifs[4]: 5 files, 1 directories

mifs[4]: Total bytes     :     258048

mifs[4]: Bytes used      :      10240

mifs[4]: Bytes available :     247808

mifs[4]: mifs fsck took 1 seconds.

mifs[5]: 5 files, 1 directories

mifs[5]: Total bytes     :     258048

mifs[5]: Bytes used      :      10240

mifs[5]: Bytes available :     247808

mifs[5]: mifs fsck took 0 seconds.

mifs[6]: 11 files, 3 directories

mifs[6]: Total bytes     :   57931776

mifs[6]: Bytes used      :   33608192

mifs[6]: Bytes available :   24323584

mifs[6]: mifs fsck took 7 seconds.

...done Initializing Flash.

done.

SD card is not present.      // ME SWITCH USE AN EXTERNAL SD CARD

Loading "flash:/me360x-universalk9-mz.154-3.S1/me360x-universalk9-mz.154-3.S1.bin"...@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@

<OUTPUT TRUNCATED>

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@


File "flash:/me360x-universalk9-mz.154-3.S1/me360x-universalk9-mz.154-3.S1.bin" uncompressed and installed, entry point: 0x3000

executing...


              Restricted Rights Legend

Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.

           cisco Systems, Inc.
           170 West Tasman Drive
           San Jose, California 95134-1706



Cisco IOS Software, ME360x Software (ME360x-UNIVERSALK9-M), Version 15.4(3)S1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2014 by Cisco Systems, Inc.
Compiled Wed 29-Oct-14 10:47 by prod_rel_team

Initializing flashfs...
Using driver version 1 for media type 1
mifs[4]: 10 files, 1 directories
mifs[4]: Total bytes     : 1290240  
mifs[4]: Bytes used      : 788992   
mifs[4]: Bytes available : 501248   
mifs[4]: mifs fsck took 0 seconds.
mifs[4]: Initialization complete.

mifs[5]: 3 files, 1 directories
mifs[5]: Total bytes     : 4386816  
mifs[5]: Bytes used      : 3215872  
mifs[5]: Bytes available : 1170944  
mifs[5]: mifs fsck took 0 seconds.
mifs[5]: Initialization complete.

mifs[6]: 5 files, 1 directories
mifs[6]: Total bytes     : 258048   
mifs[6]: Bytes used      : 10240    
mifs[6]: Bytes available : 247808   
mifs[6]: mifs fsck took 0 seconds.
mifs[6]: Initialization complete.

mifs[7]: 5 files, 1 directories
mifs[7]: Total bytes     : 258048   
mifs[7]: Bytes used      : 10240    
mifs[7]: Bytes available : 247808   
mifs[7]: mifs fsck took 1 seconds.
mifs[7]: Initialization complete.

mifs[8]: 11 files, 3 directories
mifs[8]: Total bytes     : 57931776 
mifs[8]: Bytes used      : 33608192 
mifs[8]: Bytes available : 24323584 
mifs[8]: mifs fsck took 0 seconds.
mifs[8]: Initialization complete.

...done Initializing flashfs.

%No working directory set
%No working directory set
%No working directory set
%No working directory set
 Tmpdisk creation successful, status = 0
flashfs[18]: 0 files, 1 directories
flashfs[18]: 0 orphaned files, 0 orphaned directories
flashfs[18]: Total bytes: 1935360
flashfs[18]: Bytes used: 1024
flashfs[18]: Bytes available: 1934336
 Control Processor Memory Error detection enabled
Waiting for I2C Bus Check...Complete

Checking for pSoC Firmware upgrade..
not needed

Checking Control FPGA Firmware upgrade.. not needed

POST: Timing Tests : Begin
POST: Timing Tests : End, Status Passed

POST: PortASIC Memory Tests : Begin
POST: PortASIC Memory Tests : End, Status Passed

POST: PortASIC CAM Subsystem Tests : Begin
POST: PortASIC CAM Subsystem Tests : End, Status Passed

POST: Port ASIC Loopback Tests : Begin
POST: Port ASIC Loopback Tests : End, Status Passed

POST: PortASIC Port Loopback Tests : Begin
POST: PortASIC Port Loopback Tests : End, Status Passed

POST: EMAC Loopback Tests : Begin
POST: EMAC Loopback Tests : End, Status Passed

POST: Thermal, Fan Tests : Begin
POST: Thermal, Fan Tests : End, Status Passed



This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to
export@cisco.com.

cisco ME-3600X-24TS-M (PowerPC8572) processor (revision C0) with 983040K/65528K bytes of memory.
Processor board ID FCW1902H123
Last reset from power-on
1 Virtual Ethernet interface
25 Gigabit Ethernet interfaces
2 Ten Gigabit Ethernet interfaces
The password-recovery mechanism is enabled.

1536K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address       : 0C:F5:A4:88:C4:12
Motherboard assembly number     : 73-12694-06
Motherboard serial number       : FOC1853N456
Model revision number           : C0
Motherboard revision number     : C0
Model number                    : ME-3600X-24TS-M
System serial number            : FCW1902H123
Top Assembly Part Number        : 800-32955-01
Top Assembly Revision Number    : F0
Version ID                      : V01
CLEI Code Number                : IPMSV00ABC



Press RETURN to get started!


*Mar  1 00:00:13.155: %SMART_LIC-6-AGENT_READY: Smart Agent for Licensing is initialized
*Jan  2 00:00:00.671: %IOS_LICENSE_IMAGE_APPLICATION-6-LICENSE_LEVEL: Module name = me3600 Next reboot level = AdvancedMetroIPAccess and License = AdvancedMetroIPAccess
*Jan  2 00:00:01.367: %PLATFORM_ENV-1-FRU_PS_SIGNAL_FAULTY:  Input signal on power supply 2 is faulty
*Jan  2 00:00:01.367: %PLATFORM_ENV-1-FRU_PS_SIGNAL_FAULTY:  Output signal on power supply 2 is faulty
*Jan  2 00:02:47.815: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to down
*Jan  2 00:03:00.139: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to down
*Mar 31 01:42:00.399: %SPANTREE-5-EXTENDED_SYSID: Extended SysId enabled for type vlan
*Mar 31 01:42:03.803: %SYS-5-CONFIG_I: Configured from memory by console
*Mar 31 01:42:04.839: %SYS-5-RESTART: System restarted --
Cisco IOS Software, ME360x Software (ME360x-UNIVERSALK9-M), Version 15.4(3)S1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2014 by Cisco Systems, Inc.
Compiled Wed 29-Oct-14 10:47 by prod_rel_team
*Mar 31 01:42:04.939: %LINK-5-CHANGED: Interface GigabitEthernet0, changed state to administratively down
*Mar 31 01:42:05.779: %LINK-3-UPDOWN: Interface GigabitEthernet0/1, changed state to down
*Mar 31 01:42:05.799: %LINK-5-CHANGED: Interface Vlan1, changed state to administratively down
*Mar 31 01:42:05.939: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to down
Switch>enable
Switch#show run interface vlan 1
Building configuration...

Current configuration : 48 bytes
!
interface Vlan1
 no ip address
 shutdown
end

Switch#configure terminal
Enter configuration commands, one per line.  End with CNTL/Z.
Switch(config)#interface vlan 1
Switch(config-if)#ip address 1.1.1.1 2 255.0.0.0
Switch(config-if)#no shutdown
Switch(config-if)#
*Mar 31 01:44:09.915: %LINK-3-UPDOWN: Interface Vlan1, changed state to up
*Mar 31 01:44:19.523: %LINK-3-UPDOWN: Interface GigabitEthernet0/1, changed state to up
*Mar 31 01:44:20.523: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/1, changed state to up
Switch(config-if)#end
Switch# ping 1.1.1.1     // PING TO TFTP SERVER/PC
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 1.1.1.1, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 1/201/1004 ms
Switch#
*Mar 31 01:47:02.683: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to up
Switch#archive download-sw /overwrite tftp://1.1.1.1/me360x-universalk9-tar
Ramdisk creation successful, status = 0
flashfs[27]: 0 files, 1 directories
flashfs[27]: 0 orphaned files, 0 orphaned directories
flashfs[27]: Total bytes: 41158656
flashfs[27]: Bytes used: 1024
flashfs[27]: Bytes available: 41157632
Loading me360x-universalk9-tar.152-4.S4.tar from 1.1.1.1 (via Vlan1): !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
[OK - 26818560 bytes]

Loading me360x-universalk9-tar.152-4.S4.tar from 1.1.1.1 (via Vlan1): !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!


Please wait till you receive the "Image Extraction Done" success message, or any other message reporting Failure !!!!!

examining image...
extracting info (87 bytes)
extracting me360x-universalk9-mz.152-4.S4/info (373 bytes)
extracting info (87 bytes)

System Type:             0x00010000
  Ios Image File Size:   0x01687A00
  Total Image File Size: 0x01993A00
  Minimum Dram required: 0x08000000
  Image Suffix:          universalk9-152-4.S4
  Image Directory:       me360x-universalk9-mz.152-4.S4
  Image Name:            me360x-universalk9-mz.152-4.S4.bin
  Image Feature:         IP|LAYER_3|PLUS|SSH|3DES|MIN_DRAM_MEG=128

Original_path = flash:me360x-universalk9-mz.154-3.S1/me360x-universalk9-mz.154-3.S1.bin
Backup_path = me360x-universalk9-mz.154-3.S1.bin
Backup_dir = me360x-universalk9-mz.154-3.S1
Ignoring backup option...
Old image for switch: flash:/me360x-universalk9-mz.154-3.S1
  Old image will be deleted before download.

Deleting `flash:/me360x-universalk9-mz.154-3.S1' to create required space
Extracting images from archive into flash...
me360x-universalk9-mz.152-4.S4/ (directory)
extracting me360x-universalk9-mz.152-4.S4/me360x-universalk9-mz.152-4.S4.bin (23617651 bytes)
extracting me360x-universalk9-mz.152-4.S4/me360x-mfpga.bit (2917810 bytes)
extracting me360x-universalk9-mz.152-4.S4/info (373 bytes)
me360x-universalk9-mz.152-4.S4/html/ (directory)
extracting me360x-universalk9-mz.152-4.S4/html/foo.html (0 bytes)
extracting me360x-universalk9-mz.152-4.S4/controlfpga.bin (235868 bytes)
extracting me360x-universalk9-mz.152-4.S4/psoc.dld (34378 bytes)
extracting info (87 bytes)

Installing (renaming): `ramfs:update/me360x-universalk9-mz.152-4.S4' ->
                                       `flash:me360x-universalk9-mz.152-4.S4'
Copy in progress...CCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCCC
New software image installed in flash:/me360x-universalk9-mz.152-4.S4


Ignoring backup option...
All software images installed.
Deleting Ramdisk

Switch#reload

System configuration has been modified. Save? [yes/no]: no
Proceed with reload? [confirm]

*Mar 31 02:06:23.347: %SYS-5-RELOAD: Reload requested by console. Reload Reason: Reload Command.

Using driver version 1 for media type 1

Base ethernet MAC Address: 0c:f5:a4:88:c4:12

Xmodem file system is available.

The password-recovery mechanism is enabled.


*** The system will autoboot in 5 seconds ***

Send break character to prevent autobooting.


Initializing Flash...

mifs[2]: 10 files, 1 directories

mifs[2]: Total bytes     :    1290240

mifs[2]: Bytes used      :     788992

mifs[2]: Bytes available :     501248

mifs[2]: mifs fsck took 0 seconds.

mifs[3]: 3 files, 1 directories

mifs[3]: Total bytes     :    4386816

mifs[3]: Bytes used      :    3215872

mifs[3]: Bytes available :    1170944

mifs[3]: mifs fsck took 1 seconds.

mifs[4]: 5 files, 1 directories

mifs[4]: Total bytes     :     258048

mifs[4]: Bytes used      :      10240

mifs[4]: Bytes available :     247808

mifs[4]: mifs fsck took 0 seconds.

mifs[5]: 5 files, 1 directories

mifs[5]: Total bytes     :     258048

mifs[5]: Bytes used      :      10240

mifs[5]: Bytes available :     247808

mifs[5]: mifs fsck took 0 seconds.

mifs[6]: 6 files, 2 directories

mifs[6]: Total bytes     :   57931776

mifs[6]: Bytes used      :   23820288

mifs[6]: Bytes available :   34111488

mifs[6]: mifs fsck took 5 seconds.

...done Initializing Flash.

done.

SD card is not present.

Loading "flash:/me360x-universalk9-mz.152-4.S4/me360x-universalk9-mz.152-4.S4.bin"...@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@

<OUTPUT TRUNCATED>

@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@


File "flash:/me360x-universalk9-mz.152-4.S4/me360x-universalk9-mz.152-4.S4.bin" uncompressed and installed, entry point: 0x3000

executing...


              Restricted Rights Legend

Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.

           cisco Systems, Inc.
           170 West Tasman Drive
           San Jose, California 95134-1706



Cisco IOS Software, ME360x Software (ME360x-UNIVERSALK9-M), Version 15.2(4)S4, RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2013 by Cisco Systems, Inc.
Compiled Sun 01-Sep-13 20:33 by prod_rel_team

Initializing flashfs...
Using driver version 1 for media type 1
mifs[4]: 10 files, 1 directories
mifs[4]: Total bytes     : 1290240  
mifs[4]: Bytes used      : 788992   
mifs[4]: Bytes available : 501248   
mifs[4]: mifs fsck took 1 seconds.
mifs[4]: Initialization complete.

mifs[5]: 3 files, 1 directories
mifs[5]: Total bytes     : 4386816  
mifs[5]: Bytes used      : 3215872  
mifs[5]: Bytes available : 1170944  
mifs[5]: mifs fsck took 0 seconds.
mifs[5]: Initialization complete.

mifs[6]: 5 files, 1 directories
mifs[6]: Total bytes     : 258048   
mifs[6]: Bytes used      : 10240    
mifs[6]: Bytes available : 247808   
mifs[6]: mifs fsck took 1 seconds.
mifs[6]: Initialization complete.

mifs[7]: 5 files, 1 directories
mifs[7]: Total bytes     : 258048   
mifs[7]: Bytes used      : 10240    
mifs[7]: Bytes available : 247808   
mifs[7]: mifs fsck took 0 seconds.
mifs[7]: Initialization complete.

mifs[8]: 6 files, 2 directories
mifs[8]: Total bytes     : 57931776 
mifs[8]: Bytes used      : 23820288 
mifs[8]: Bytes available : 34111488 
mifs[8]: mifs fsck took 0 seconds.
mifs[8]: Initialization complete.

...done Initializing flashfs.

%No working directory set
%No working directory set
%No working directory set
%No working directory set
 Control Processor Memory Error detection enabled
Waiting for I2C Bus Check...Complete

Checking for pSoC Firmware upgrade..
not needed

Checking Control FPGA Firmware upgrade.. not needed

POST: Timing Tests : Begin
POST: Timing Tests : End, Status Passed

POST: PortASIC Memory Tests : Begin
POST: PortASIC Memory Tests : End, Status Passed

POST: PortASIC CAM Subsystem Tests : Begin
POST: PortASIC CAM Subsystem Tests : End, Status Passed

POST: Port ASIC Loopback Tests : Begin
POST: Port ASIC Loopback Tests : End, Status Passed

POST: PortASIC Port Loopback Tests : Begin
POST: PortASIC Port Loopback Tests : End, Status Passed

POST: EMAC Loopback Tests : Begin
POST: EMAC Loopback Tests : End, Status Passed

POST: Thermal, Fan Tests : Begin
POST: Thermal, Fan Tests : End, Status Passed



This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to
export@cisco.com.

cisco ME-3600X-24TS-M (PowerPC8572) processor (revision C0) with 1015808K/32760K bytes of memory.
Processor board ID FCW1902H123
Last reset from power-on
1 Virtual Ethernet interface
25 Gigabit Ethernet interfaces
2 Ten Gigabit Ethernet interfaces
The password-recovery mechanism is enabled.

1536K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address       : 0C:F5:A4:88:C4:12
Motherboard assembly number     : 73-12694-06
Motherboard serial number       : FOC1853NABC
Model revision number           : C0
Motherboard revision number     : C0
Model number                    : ME-3600X-24TS-M
System serial number            : FCW1902H456
Top Assembly Part Number        : 800-32955-01
Top Assembly Revision Number    : F0
Version ID                      : V01
CLEI Code Number                : IPMSV00XYZ

license udi pid ME-3600X-24TS-M sn FCW1902H123
        ^
% Invalid input detected at '^' marker.

exception crashinfo file flash:crashinfo
  ^
% Invalid input detected at '^' marker.



Press RETURN to get started!


*Mar  1 00:00:09.651: %IOS_LICENSE_IMAGE_APPLICATION-6-LICENSE_LEVEL: Module name = me3600 Next reboot level = AdvancedMetroIPAccess and License = AdvancedMetroIPAccess
*Mar  1 00:00:10.035: %PLATFORM_ENV-1-FRU_PS_SIGNAL_FAULTY:  Input signal on power supply 2 is faulty     // PS 2 IS OFF
*Mar  1 00:00:10.035: %PLATFORM_ENV-1-FRU_PS_SIGNAL_FAULTY:  Output signal on power supply 2 is faulty
*Mar  1 00:02:56.003: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to down
*Mar  1 00:03:05.495: Table type:0, total entries:1024

*Mar  1 00:03:05.495: Table type:1, total entries:1024

*Mar  1 00:03:07.951: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to down
*Mar 31 02:10:41.331: %SPANTREE-5-EXTENDED_SYSID: Extended SysId enabled for type vlan
*Mar 31 02:10:44.383: %SYS-4-CONFIG_NEWER: Configuration from version 15.4 may not be correctly understood
*Mar 31 02:10:44.591: %LINK-5-CHANGED: Interface GigabitEthernet0, changed state to administratively down
*Mar 31 02:10:44.647: %SYS-5-CONFIG_I: Configured from memory by console
*Mar 31 02:10:45.683: %SYS-5-RESTART: System restarted --
Cisco IOS Software, ME360x Software (ME360x-UNIVERSALK9-M), Version 15.2(4)S4, RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2013 by Cisco Systems, Inc.
Compiled Sun 01-Sep-13 20:33 by prod_rel_team
*Mar 31 02:10:45.739: %SW_VLAN-4-VTP_INTERNAL_ERROR: VLAN manager received an internal error 41 from vtp function vtp_download_info: Bad VLAN count
-Traceback= 66B458z 216252Cz 211BD98z 2D42F04z 2D3E1C8z
*Mar 31 02:10:45.775: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to down
*Mar 31 02:10:46.583: %LINK-3-UPDOWN: Interface GigabitEthernet0/1, changed state to down
*Mar 31 02:10:46.583: %LINK-5-CHANGED: Interface Vlan1, changed state to administratively down
Switch> show version
Cisco IOS Software, ME360x Software (ME360x-UNIVERSALK9-M), Version 15.2(4)S4, RELEASE SOFTWARE (fc2)

Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2013 by Cisco Systems, Inc.
Compiled Sun 01-Sep-13 20:33 by prod_rel_team

ROM: Bootstrap program is WHALES boot loader
BOOTLDR: ME360x Boot Loader (ME360X-HBOOT-M), Version 12.2 [sourdutt-loader_release_ledfix 100]

Switch uptime is 3 minutes
System returned to ROM by power-on
System image file is "flash:/me360x-universalk9-mz.152-4.S4/me360x-universalk9-mz.152-4.S4.bin"
Last reload reason: Reload Command


This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
 --More--         compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to
export@cisco.com.

License Level: AdvancedMetroIPAccess
License Type: Permanent
Next reload license Level: AdvancedMetroIPAccess

cisco ME-3600X-24TS-M (PowerPC8572) processor (revision C0) with 1015808K/32760K bytes of memory.
Processor board ID FCW1902H123
Last reset from power-on
1 Virtual Ethernet interface
25 Gigabit Ethernet interfaces
2 Ten Gigabit Ethernet interfaces
The password-recovery mechanism is enabled.

1536K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address       : 0C:F5:A4:88:C4:12
Motherboard assembly number     : 73-12694-06
Motherboard serial number       : FOC1853NABC
Model revision number           : C0
Motherboard revision number     : C0
Model number                    : ME-3600X-24TS-M
System serial number            : FCW1902HXYZ
Top Assembly Part Number        : 800-32955-01
Top Assembly Revision Number    : F0
Version ID                      : V01
CLEI Code Number                : IPMSV00ABC

Configuration register is 0xF

Saturday, April 25, 2015

Configuring EtherChannel

We rarely use (or haven't used) EtherChannel in our data center core switches since we're running 1-GigabitEthernet and 10-GigabitEthernet fiber trunks all over the place. I always use the command below on a Nexus switch to check if the SFP/GBIC was detected and if the transmit (Tx) and receive (Rx) signals are within nominal range.

NEXUS# show interface eth1/1 transceiver details
Ethernet1/1
    transceiver is present
    type is 10Gbase-SR

    name is CISCO-FINISAR  
    part number is FTLX8571D3ABC-C2
    revision is A  
    serial number is FNS18283XYZ  
    nominal bitrate is 10300 MBit/sec
    Link length supported for 50/125um OM2 fiber is 82 m
    Link length supported for 62.5/125um fiber is 26 m
    Link length supported for 50/125um OM3 fiber is 300 m
    cisco id is --
    cisco extended id number is 4

           SFP Detail Diagnostics Information (internal calibration)
  ----------------------------------------------------------------------------
                Current              Alarms                  Warnings
                Measurement     High        Low         High          Low
  ----------------------------------------------------------------------------
  Temperature   50.44 C        75.00 C     -5.00 C     70.00 C        0.00 C
  Voltage        3.30 V         3.63 V      2.97 V      3.46 V        3.13 V
  Current        8.23 mA       11.80 mA     4.00 mA    10.80 mA       5.00 mA
  Tx Power       -2.44 dBm       1.69 dBm  -11.30 dBm   -1.30 dBm     -7.30 dBm
  Rx Power       -2.76 dBm       1.99 dBm  -13.97 dBm   -1.00 dBm     -9.91 dBm

  ----------------------------------------------------------------------------
  Note: ++  high-alarm; +  high-warning; --  low-alarm; -  low-warning


Below is the CCNP SWITCH EtherChannel lab that I did during my CCDP studies.


DLS1(config)#interface range fastethernet0/7-12
DLS1(config-if-range)#switchport trunk encapsulation dot1q
DLS1(config-if-range)#switchport mode trunk
DLS1(config-if-range)#end
DLS1#
*Mar  1 00:12:21.712: %SYS-5-CONFIG_I: Configured from console by console
*Mar  1 00:12:22.140: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to down
*Mar  1 00:12:22.140: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to down
*Mar  1 00:12:22.140: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/9, changed state to down
*Mar  1 00:12:22.140: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/10, changed state to down
*Mar  1 00:12:22.148: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to down
*Mar  1 00:12:22.148: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to down
*Mar  1 00:12:25.118: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to up
*Mar  1 00:12:25.134: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to up
*Mar  1 00:12:25.151: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/9, changed state to up
*Mar  1 00:12:25.168: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/10, changed state to up
*Mar  1 00:12:25.185: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to up
*Mar  1 00:12:25.193: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to up


ALS1(config)#interface range fastethernet0/1-2
ALS1(config-if-range)#switchport trunk encapsulation dot1q
ALS1(config-if-range)#switchport mode trunk
ALS1(config-if-range)#
00:14:57: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to down
00:14:58: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to down
00:15:01: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to up
00:15:01: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to up

ALS1(config-if-range)#interface range fastethernet0/4-5
ALS1(config-if-range)#switchport trunk encapsulation dot1q
ALS1(config-if-range)#switchport mode trunk
ALS1(config-if-range)#
00:15:18: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/4, changed state to down
00:15:18: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/5, changed state to down
ALS1(config-if-range)#
00:15:21: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/4, changed state to up
00:15:22: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/5, changed state to up

ALS1(config-if-range)#interface range fastethernet0/7-8
ALS1(config-if-range)#switchport trunk encapsulation dot1q
ALS1(config-if-range)#switchport mode trunk


ALS2(config)#interface range fastethernet0/1-2
ALS2(config-if-range)#switchport trunk encapsulation dot1q
ALS2(config-if-range)#switchport mode trunk
ALS2(config-if-range)#interface range fastethernet0/4-5
ALS2(config-if-range)#switchport trunk encapsulation dot1q
ALS2(config-if-range)#switchport mode trunk
ALS2(config-if-range)#interface range fastethernet0/7-8
ALS2(config-if-range)#switchport trunk encapsulation dot1q
ALS2(config-if-range)#switchport mode trunk
ALS2(config-if-range)#
00:17:28: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to down
00:17:28: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to down
ALS2(config-if-range)#
00:17:31: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to up
00:17:31: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to up


DLS2(config)#interface range fastethernet0/7-12
DLS2(config-if-range)#switchport trunk encapsulation dot1q
DLS2(config-if-range)#switchport mode trunk


ALS1#show interfaces trunk

Port        Mode         Encapsulation  Status        Native vlan
Fa0/1       on           802.1q         trunking      1  
Fa0/2       on           802.1q         trunking      1  
Fa0/4       on           802.1q         trunking      1
Fa0/5       on           802.1q         trunking      1
Fa0/7       on           802.1q         trunking      1
Fa0/8       on           802.1q         trunking      1

Port        Vlans allowed on trunk
Fa0/1       1-4094
Fa0/2       1-4094
Fa0/4       1-4094
Fa0/5       1-4094
Fa0/7       1-4094
Fa0/8       1-4094

Port        Vlans allowed and active in management domain
Fa0/1       1,100,110
Fa0/2       1,100,110
Fa0/4       1,100,110
Fa0/5       1,100,110
Fa0/7       1,100,110

Port        Vlans allowed and active in management domain
Fa0/8       1,100,110

Port        Vlans in spanning tree forwarding state and not pruned
Fa0/1       none
Fa0/2       none
Fa0/4       none
Fa0/5       none
Fa0/7       1,100,110
Fa0/8       none


ALS2#show interfaces trunk

Port        Mode         Encapsulation  Status        Native vlan
Fa0/1       on           802.1q         trunking      1  
Fa0/2       on           802.1q         trunking      1  
Fa0/4       on           802.1q         trunking      1
Fa0/5       on           802.1q         trunking      1
Fa0/7       on           802.1q         trunking      1
Fa0/8       on           802.1q         trunking      1

Port        Vlans allowed on trunk
Fa0/1       1-4094
Fa0/2       1-4094
Fa0/4       1-4094
Fa0/5       1-4094
Fa0/7       1-4094
Fa0/8       1-4094

Port        Vlans allowed and active in management domain
Fa0/1       1,100,110
Fa0/2       1,100,110
Fa0/4       1,100,110
Fa0/5       1,100,110
Fa0/7       1,100,110

Port        Vlans allowed and active in management domain
Fa0/8       1,100,110

Port        Vlans in spanning tree forwarding state and not pruned
Fa0/1       1,100,110
Fa0/2       1,100,110
Fa0/4       1,100,110
Fa0/5       none
Fa0/7       none
Fa0/8       none


ALS1(config)#interface range fastethernet0/1-2
ALS1(config-if-range)#shutdown     // SHUTDOWN PORTS BEFORE CONFIGURING ETHERCHANNEL; MIGHT GO IN ERR-DISABLE STATE
ALS1(config-if-range)#
00:22:27: %LINK-5-CHANGED: Interface FastEthernet0/1, changed state to administratively down
00:22:27: %LINK-5-CHANGED: Interface FastEthernet0/2, changed state to administratively down
ALS1(config-if-range)#channel-group ?
  <1-48>  Channel group number

ALS1(config-if-range)#channel-group 1 ?
  mode  Etherchannel Mode of the interface

ALS1(config-if-range)#channel-group 1 mode ?
  active     Enable LACP unconditionally
  auto       Enable PAgP only if a PAgP device is detected
  desirable  Enable PAgP unconditionally
  on         Enable Etherchannel only
  passive    Enable LACP only if a LACP device is detected

ALS1(config-if-range)#channel-group 1 mode desirable    // ACTIVELY NEGoTIATE PAgP ETHERCHANNEL LINK
Creating a port-channel interface Port-channel 1


ALS2(config)#interface range fastethernet0/1-2
ALS2(config-if-range)#shutdown
ALS2(config-if-range)#
00:22:05: %LINK-5-CHANGED: Interface FastEthernet0/1, changed state to administratively down
00:22:05: %LINK-5-CHANGED: Interface FastEthernet0/2, changed state to administratively down
00:22:06: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to down
ALS2(config-if-range)#
00:22:06: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to down
ALS2(config)#interface range f0/1-2
ALS2(config-if-range)#channel-group 1 mode desirable
Creating a port-channel interface Port-channel 1


ALS1(config)#interface ?
  Async              Async interface
  BVI                Bridge-Group Virtual Interface
  CTunnel            CTunnel interface
  Dialer             Dialer interface
  FastEthernet       FastEthernet IEEE 802.3
  Filter             Filter interface
  Filtergroup        Filter Group interface
  GigabitEthernet    GigabitEthernet IEEE 802.3z
  Group-Async        Async Group interface
  Lex                Lex interface
  Loopback           Loopback interface
  Null               Null interface
  Port-channel       Ethernet Channel of interfaces
  Portgroup          Portgroup interface
  Pos-channel        POS Channel of interfaces
  Tunnel             Tunnel interface
  Vif                PGM Multicast Host interface
  Virtual-Template   Virtual Template interface
  Virtual-TokenRing  Virtual TokenRing
  Vlan               Catalyst Vlans
  fcpa               Fiber Channel
  range              interface range command

ALS1(config)#interface port-channel ?
  <1-48>  Port-channel interface number

ALS1(config)#interface port-channel 1
ALS1(config-if)#switchport ?
  access         Set access mode characteristics of the interface
  backup         Set backup for the interface
  block          Disable forwarding of unknown uni/multi cast addresses
  host           Set port host
  mode           Set trunking mode of the interface
  nonegotiate    Device will not engage in negotiation protocol on this
                 interface
  port-security  Security related command
  priority       Set appliance 802.1p priority
  protected      Configure an interface to be a protected port
  trunk          Set trunking characteristics of the interface
  voice          Voice appliance attributes
  <cr>

ALS1(config-if)#switchport mode ?
  access        Set trunking mode to ACCESS unconditionally
  dot1q-tunnel  set trunking mode to TUNNEL unconditionally
  dynamic       Set trunking mode to dynamically negotiate access or trunk mode
  trunk         Set trunking mode to TRUNK unconditionally

ALS1(config-if)#switchport mode trunk
Command rejected: An interface whose trunk encapsulation is "Auto" can not be configured to "trunk"

mode.
ALS1(config-if)#switchport trunk encapsulation dot1q
ALS1(config-if)#switchport mode trunk    // CREATE LAYER 2 LOGICAL ETHERCHANNEL TRUNK


ALS2(config)#interface port-channel1
ALS2(config-if)#switchport trunk encapsulation dot1q
ALS2(config-if)#switchport mode trunk


ALS1#show etherchannel summary
Flags:  D - down        P - in port-channel
        I - stand-alone s - suspended
        H - Hot-standby (LACP only)
        R - Layer3      S - Layer2
        U - in use      f - failed to allocate aggregator
        u - unsuitable for bundling
        w - waiting to be aggregated
        d - default port


Number of channel-groups in use: 1
Number of aggregators:           1

Group  Port-channel  Protocol    Ports
------+-------------+-----------+-----------------------------------------------
1      Po1(SD)         PAgP      Fa0/1(D)    Fa0/2(D)     // LAYER 2 ETHERCHANNEL LINK; PORTS ARE DOWN


ALS1(config)#interface range fastethernet0/1-2
ALS1(config-if-range)#no shutdown
ALS1(config-if-range)#
00:29:29: %LINK-3-UPDOWN: Interface FastEthernet0/1, changed state to down
00:29:29: %LINK-3-UPDOWN: Interface FastEthernet0/2, changed state to down


ALS2(config)#interface range fastethernet0/1-2
ALS2(config-if-range)#no shutdown
ALS2(config-if-range)#
00:29:55: %LINK-3-UPDOWN: Interface FastEthernet0/1, changed state to up
00:29:55: %LINK-3-UPDOWN: Interface FastEthernet0/2, changed state to up
ALS2(config-if-range)#
00:30:01: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to up
00:30:01: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to up
ALS2(config-if-range)#
00:30:02: %LINK-3-UPDOWN: Interface Port-channel1, changed state to up   
00:30:03: %LINEPROTO-5-UPDOWN: Line protocol on Interface Port-channel1, changed state to up  

ALS2#show etherchannel summary
Flags:  D - down        P - in port-channel
        I - stand-alone s - suspended
        H - Hot-standby (LACP only)
        R - Layer3      S - Layer2
        U - in use      f - failed to allocate aggregator
        u - unsuitable for bundling
        w - waiting to be aggregated
        d - default port


Number of channel-groups in use: 1
Number of aggregators:           1

Group  Port-channel  Protocol    Ports
------+-------------+-----------+-----------------------------------------------
1      Po1(SU)         PAgP      Fa0/1(P)    Fa0/2(P)    



ALS1#show etherchannel summary
Flags:  D - down        P - in port-channel
        I - stand-alone s - suspended
        H - Hot-standby (LACP only)
        R - Layer3      S - Layer2
        U - in use      f - failed to allocate aggregator
        u - unsuitable for bundling
        w - waiting to be aggregated
        d - default port


Number of channel-groups in use: 1
Number of aggregators:           1

Group  Port-channel  Protocol    Ports
------+-------------+-----------+-----------------------------------------------
1      Po1(SU)         PAgP      Fa0/1(P)    Fa0/2(P)  


ALS1#show interfaces trunk

Port        Mode         Encapsulation  Status        Native vlan
Fa0/4       on           802.1q         trunking      1
Fa0/5       on           802.1q         trunking      1
Fa0/7       on           802.1q         trunking      1
Fa0/8       on           802.1q         trunking      1
Po1         on           802.1q         trunking      1    // PORT CHANNEL AS ONE LOGICAL TRUNK

Port        Vlans allowed on trunk
Fa0/4       1-4094
Fa0/5       1-4094
Fa0/7       1-4094
Fa0/8       1-4094
Po1         1-4094

Port        Vlans allowed and active in management domain
Fa0/4       1,100,110
Fa0/5       1,100,110
Fa0/7       1,100,110
Fa0/8       1,100,110
Po1         1,100,110

Port        Vlans in spanning tree forwarding state and not pruned

Port        Vlans in spanning tree forwarding state and not pruned
Fa0/4       none
Fa0/5       none
Fa0/7       1,100,110
Fa0/8       none
Po1         none


ALS1#show spanning-tree

VLAN0001
  Spanning tree enabled protocol ieee
  Root ID    Priority    32769
             Address     0016.c756.6180
             Cost        19
             Port        8 (FastEthernet0/7)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32769  (priority 32768 sys-id-ext 1)
             Address     6416.8dec.a700
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec
             Aging Time 300

Interface        Role Sts Cost      Prio.Nbr Type
---------------- ---- --- --------- -------- --------------------------------
Fa0/4            Altn BLK 19        128.5    P2p
Fa0/5            Altn BLK 19        128.6    P2p
Fa0/7            Root FWD 19        128.8    P2p
Fa0/8            Altn BLK 19        128.9    P2p
Po1              Altn BLK 12        128.56   P2p      // ALS2 FE PORTS 1 AND 2 WERE FIRS UNSHUT


VLAN0100
  Spanning tree enabled protocol ieee
  Root ID    Priority    32868
             Address     0016.c756.6180
             Cost        19
             Port        8 (FastEthernet0/7)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32868  (priority 32768 sys-id-ext 100)
             Address     6416.8dec.a700
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec
             Aging Time 300

Interface        Role Sts Cost      Prio.Nbr Type
---------------- ---- --- --------- -------- --------------------------------
Fa0/4            Altn BLK 19        128.5    P2p
Fa0/5            Altn BLK 19        128.6    P2p
Fa0/7            Root FWD 19        128.8    P2p
Fa0/8            Altn BLK 19        128.9    P2p
Po1              Altn BLK 12        128.56   P2p


VLAN0110
  Spanning tree enabled protocol ieee
  Root ID    Priority    32878
             Address     0016.c756.6180
             Cost        19
             Port        8 (FastEthernet0/7)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32878  (priority 32768 sys-id-ext 110)
             Address     6416.8dec.a700
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec
             Aging Time 300

Interface        Role Sts Cost      Prio.Nbr Type
---------------- ---- --- --------- -------- --------------------------------
Fa0/4            Altn BLK 19        128.5    P2p
Fa0/5            Altn BLK 19        128.6    P2p
Fa0/7            Root FWD 19        128.8    P2p
Fa0/8            Altn BLK 19        128.9    P2p
Po1              Altn BLK 12        128.56   P2p


ALS2#show interfaces trunk

Port        Mode         Encapsulation  Status        Native vlan
Fa0/4       on           802.1q         trunking      1
Fa0/5       on           802.1q         trunking      1
Fa0/7       on           802.1q         trunking      1
Fa0/8       on           802.1q         trunking      1
Po1         on           802.1q         trunking      1  

Port        Vlans allowed on trunk
Fa0/4       1-4094
Fa0/5       1-4094
Fa0/7       1-4094
Fa0/8       1-4094
Po1         1-4094

Port        Vlans allowed and active in management domain
Fa0/4       1,100,110
Fa0/5       1,100,110
Fa0/7       1,100,110
Fa0/8       1,100,110
Po1         1,100,110

Port        Vlans in spanning tree forwarding state and not pruned

Port        Vlans in spanning tree forwarding state and not pruned
Fa0/4       1,100,110
Fa0/5       none
Fa0/7       none
Fa0/8       none
Po1         1,100,110


ALS2#show spanning-tree

VLAN0001
  Spanning tree enabled protocol ieee
  Root ID    Priority    32769
             Address     0016.c756.6180
             Cost        19
             Port        5 (FastEthernet0/4)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32769  (priority 32768 sys-id-ext 1)
             Address     0022.5684.1380
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec
             Aging Time 300

Interface        Role Sts Cost      Prio.Nbr Type
---------------- ---- --- --------- -------- --------------------------------
Fa0/4            Root FWD 19        128.5    P2p
Fa0/5            Altn BLK 19        128.6    P2p
Fa0/7            Altn BLK 19        128.8    P2p
Fa0/8            Altn BLK 19        128.9    P2p
Po1              Desg FWD 12        128.56   P2p   


VLAN0100
  Spanning tree enabled protocol ieee
  Root ID    Priority    32868
             Address     0016.c756.6180
             Cost        19
             Port        5 (FastEthernet0/4)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32868  (priority 32768 sys-id-ext 100)
             Address     0022.5684.1380
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec
             Aging Time 300

Interface        Role Sts Cost      Prio.Nbr Type
---------------- ---- --- --------- -------- --------------------------------
Fa0/4            Root FWD 19        128.5    P2p
Fa0/5            Altn BLK 19        128.6    P2p
Fa0/7            Altn BLK 19        128.8    P2p
Fa0/8            Altn BLK 19        128.9    P2p
Po1              Desg FWD 12        128.56   P2p


VLAN0110
  Spanning tree enabled protocol ieee
  Root ID    Priority    32878
             Address     0016.c756.6180
             Cost        19
             Port        5 (FastEthernet0/4)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32878  (priority 32768 sys-id-ext 110)
             Address     0022.5684.1380
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec
             Aging Time 300

Interface        Role Sts Cost      Prio.Nbr Type
---------------- ---- --- --------- -------- --------------------------------
Fa0/4            Root FWD 19        128.5    P2p
Fa0/5            Altn BLK 19        128.6    P2p
Fa0/7            Altn BLK 19        128.8    P2p
Fa0/8            Altn BLK 19        128.9    P2p
Po1              Desg FWD 12        128.56   P2p


DLS1(config)#interface range fastethernet0/7-8
DLS1(config-if-range)#shutdown
DLS1(config-if-range)#
*Mar  1 00:35:04.743: %LINK-5-CHANGED: Interface FastEthernet0/7, changed state to administratively

down
*Mar  1 00:35:04.768: %LINK-5-CHANGED: Interface FastEthernet0/8, changed state to administratively

down
*Mar  1 00:35:05.750: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state

to down
DLS1(config-if-range)#
*Mar  1 00:35:05.775: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state

to down
DLS1(config-if-range)#channel-group ?
  <1-48>  Channel group number

DLS1(config-if-range)#channel-group 2 ?
  mode  Etherchannel Mode of the interface

DLS1(config-if-range)#channel-group 2 mode ?
  active     Enable LACP unconditionally
  auto       Enable PAgP only if a PAgP device is detected
  desirable  Enable PAgP unconditionally
  on         Enable Etherchannel only
  passive    Enable LACP only if a LACP device is detected

DLS1(config-if-range)#channel-group 2 mode active    // ACTIVELY NEGOTIATES LACP TRUNK
Creating a port-channel interface Port-channel 2


ALS1(config)#interface range fastethernet0/7-8
ALS1(config-if-range)#shutdown
ALS1(config-if-range)#
00:37:19: %LINK-5-CHANGED: Interface FastEthernet0/7, changed state to administratively down
00:37:19: %LINK-5-CHANGED: Interface FastEthernet0/8, changed state to administratively down
ALS1(config-if-range)#channel-group 2 mode active
Creating a port-channel interface Port-channel 2

ALS1(config-if-range)#no shutdown
ALS1(config-if-range)#
00:37:50: %LINK-3-UPDOWN: Interface FastEthernet0/7, changed state to down
00:37:50: %LINK-3-UPDOWN: Interface FastEthernet0/8, changed state to down


DLS1(config)#interface range fastethernet0/7-8
DLS1(config-if-range)#no shutdown
DLS1(config-if-range)#
*Mar  1 00:37:39.094: %LINK-3-UPDOWN: Interface FastEthernet0/7, changed state to up
*Mar  1 00:37:39.102: %LINK-3-UPDOWN: Interface FastEthernet0/8, changed state to up
DLS1(config-if-range)#
*Mar  1 00:37:46.484: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to up
*Mar  1 00:37:46.501: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to up
DLS1(config-if-range)#
*Mar  1 00:37:47.465: %LINK-3-UPDOWN: Interface Port-channel2, changed state to up 
*Mar  1 00:37:48.472: %LINEPROTO-5-UPDOWN: Line protocol on Interface Port-channel2, changed state to up
DLS1(config-if-range)#exit
DLS1(config)#interface port-channel2
DLS1(config-if)#switchport trunk encapsulation dot1q
DLS1(config-if)#switchport mode trunk


ALS1(config)#interface port-channel2
ALS1(config-if)#switchport trunk encapsulation dot1q
ALS1(config-if)#switchport mode trunk

ALS1#show etherchannel summary
Flags:  D - down        P - in port-channel
        I - stand-alone s - suspended
        H - Hot-standby (LACP only)
        R - Layer3      S - Layer2
        U - in use      f - failed to allocate aggregator
        u - unsuitable for bundling
        w - waiting to be aggregated
        d - default port


Number of channel-groups in use: 2
Number of aggregators:           2

Group  Port-channel  Protocol    Ports
------+-------------+-----------+-----------------------------------------------
1      Po1(SU)         PAgP      Fa0/1(P)    Fa0/2(P)
2      Po2(SU)         LACP      Fa0/7(P)    Fa0/8(P)    // LAYER 2 ETHERCHANNEL LINK


DLS1#show etherchannel summary
Flags:  D - down        P - bundled in port-channel
        I - stand-alone s - suspended
        H - Hot-standby (LACP only)
        R - Layer3      S - Layer2
        U - in use      f - failed to allocate aggregator

        M - not in use, minimum links not met
        u - unsuitable for bundling
        w - waiting to be aggregated
        d - default port


Number of channel-groups in use: 1
Number of aggregators:           1

Group  Port-channel  Protocol    Ports
------+-------------+-----------+-----------------------------------------------
2      Po2(SU)         LACP      Fa0/7(P)    Fa0/8(P)


DLS1(config)#interface range fastethernet0/11-12
DLS1(config-if-range)#no switchport    // CREATE A LAYER 3/ROUTED PORT
DLS1(config-if-range)#
*Mar  1 00:43:45.726: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to down
*Mar  1 00:43:45.776: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to down
DLS1(config-if-range)#
*Mar  1 00:43:47.748: %LINK-3-UPDOWN: Interface FastEthernet0/11, changed state to up
*Mar  1 00:43:47.798: %LINK-3-UPDOWN: Interface FastEthernet0/12, changed state to up
*Mar  1 00:43:48.754: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state

to up
DLS1(config-if-range)#
*Mar  1 00:43:48.805: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state

to up
DLS1(config-if-range)#channel-group 3 mode ?
  active     Enable LACP unconditionally
  auto       Enable PAgP only if a PAgP device is detected
  desirable  Enable PAgP unconditionally
  on         Enable Etherchannel only
  passive    Enable LACP only if a LACP device is detected

DLS1(config-if-range)#channel-group 3 mode desirable
Creating a port-channel interface Port-channel 3

DLS1(config-if-range)#
*Mar  1 00:44:03.602: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state

to down
*Mar  1 00:44:03.611: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state

to down
DLS1(config-if-range)#
*Mar  1 00:44:11.840: %EC-5-L3DONTBNDL1: Fa0/12 suspended: PAgP not enabled on the remote port.
*Mar  1 00:44:12.360: %EC-5-L3DONTBNDL1: Fa0/11 suspended: PAgP not enabled on the remote port.
DLS1(config-if-range)#exit
DLS1(config)#interface port-channel3
DLS1(config-if)#no switchport  
DLS1(config-if)#ip address 10.0.0.1 255.255.255.0   // CREATE A LAYER 3 ETHERCHANNEL LINK


DLS2(config)#interface range fastethernet0/11-12
DLS2(config-if-range)#no switchport
DLS2(config-if-range)#
*Mar  1 00:47:23.603: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to down
*Mar  1 00:47:23.654: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to down
DLS2(config-if-range)#
*Mar  1 00:47:25.617: %LINK-3-UPDOWN: Interface FastEthernet0/11, changed state to up
*Mar  1 00:47:25.675: %LINK-3-UPDOWN: Interface FastEthernet0/12, changed state to up
*Mar  1 00:47:26.623: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to up
DLS2(config-if-range)#
*Mar  1 00:47:26.682: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to up
DLS2(config-if-range)#channel-group 3 mode desirable
Creating a port-channel interface Port-channel 3

DLS2(config-if-range)#
*Mar  1 00:47:40.313: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to down
*Mar  1 00:47:40.322: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to down
DLS2(config-if-range)#
*Mar  1 00:47:42.318: %LINEPROTO-5-UPDOWN: Line protocol on Interface Port-channel3, changed state to up
*Mar  1 00:47:42.973: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to up
*Mar  1 00:47:43.258: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to up
DLS2(config-if-range)#
*Mar  1 00:47:43.962: %LINK-3-UPDOWN: Interface Port-channel3, changed state to up
DLS2(config-if-range)#exit
DLS2(config)#interface port-channel3
DLS2(config-if)#no switchport
DLS2(config-if)#ip address 10.0.0.2
% Incomplete command.

DLS2(config-if)#ip address 10.0.0.2 255.255.255.0
DLS2(config-if)#do ping 10.0.0.1

Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 10.0.0.1, timeout is 2 seconds:
.!!!!
Success rate is 80 percent (4/5), round-trip min/avg/max = 1/3/9 ms

DLS2#show etherchannel summary
Flags:  D - down        P - bundled in port-channel
        I - stand-alone s - suspended
        H - Hot-standby (LACP only)
        R - Layer3      S - Layer2
        U - in use      f - failed to allocate aggregator

        M - not in use, minimum links not met
        u - unsuitable for bundling
        w - waiting to be aggregated
        d - default port


Number of channel-groups in use: 1
Number of aggregators:           1

Group  Port-channel  Protocol    Ports
------+-------------+-----------+-----------------------------------------------
3      Po3(RU)         PAgP      Fa0/11(P)   Fa0/12(P)    // LAYER 3 ETHERCHANNEL LINK


DLS1#show etherchannel load-balance
EtherChannel Load-Balancing Configuration:
        src-mac      // DEFAULT METHOD; VARIES ON SWITCH PLATFORMS

EtherChannel Load-Balancing Addresses Used Per-Protocol:
Non-IP: Source MAC address
  IPv4: Source MAC address
  IPv6: Source MAC address


ALS1(config)#port-channel ?
  load-balance  Load Balancing method

ALS1(config)#port-channel load-balance ?
  dst-ip       Dst IP Addr
  dst-mac      Dst Mac Addr
  src-dst-ip   Src XOR Dst IP Addr
  src-dst-mac  Src XOR Dst Mac Addr
  src-ip       Src IP Addr
  src-mac      Src Mac Addr

ALS1(config)#port-channel load-balance src-dst-mac

ALS1#show etherchannel load-balance
EtherChannel Load-Balancing Configuration:
        src-dst-mac   

EtherChannel Load-Balancing Addresses Used Per-Protocol:
Non-IP: Source XOR Destination MAC address
  IPv4: Source XOR Destination MAC address
  IPv6: Source XOR Destination MAC address

Thursday, April 23, 2015

Cisco 7936 Conference Phone Default Password and Serial Number

I was doing a network inventory for one of our site remotely. I can't seem to login and get the serial number of a Cisco 7936 conference IP phone.  The default admin login is **# in order to access its web GUI. The MAC address is the same as the serial number.

The MAC address of the Cisco 7936 can be obtained via the Cisco Unified Communications Manager (CUCM) or Call Manager and under the Host Name portion on its web GUI.




Friday, April 17, 2015

Cisco 3650 PVLAN, Static VLANs, VLAN Trunking, VTP Domains and Modes

I was troubleshooting a Cisco 3650 Catalyst switch, which is their "new" line of stackable access switch, and I can't seem to get Private VLAN (PVLAN) to work. Cisco's data sheets were contradicting as to whether PVLAN is supported or not on this switch platform. I just couldn't believe this switch won't support this feature since its cousin switch like the 3750 and 3650 were using it. As I searched further, I found out that PVLAN is supported on IOS XE 3.7E but the IOS file was a bit large (around 300 MB).



It took me roughtly 40 minutes to TFTP the said IOS file on one switch. So I decided to try to configure the switch to use FTP instead. It took me around 3 mintues to upgrade the image.


3650(config)#ip ftp ?
  passive           Connect using passive mode
  password          Specify password for FTP connections
  source-interface  Specify interface for source address in FTP connections
  username          Specify username for FTP connections
3650(config)#ip ftp username ftp       // USE SAME USER/PASSWORD IN FTP CLIENT
3650(config)#ip ftp password cisco123
3650(config)#end
3650#copy
  /erase          Erase destination file system.
  /error          Allow to copy error file.
  /noverify       Don't verify image signature before reload.
  /verify         Verify image signature before reload.
  cns:            Copy from cns: file system
  crashinfo:      Copy from crashinfo: file system
  flash:          Copy from flash: file system
  ftp:            Copy from ftp: file system
  http:           Copy from http: file system
  https:          Copy from https: file system
  logging         Copy logging messages
  memory          Memory debug information
  null:           Copy from null: file system
  nvram:          Copy from nvram: file system
  onboard         no description
  processes       Active process statistics
  rcp:            Copy from rcp: file system
  running-config  Copy from current system configuration
  scp:            Copy from scp: file system
  startup-config  Copy from startup configuration
  stby-nvram:     Copy from stby-nvram: file system
  stby-rcsf:      Copy from stby-rcsf: file system
3650#copy ftp://172.27.197.1/cat3k_caa-universalk9. SPA.03.07.00.E.152-3.E.bin flash
Destination filename [cat3k_caa-universalk9.SPA.03.07.00.E.152-3.E.bin]?
Accessing ftp://172.27.197.1/cat3k_caa-universalk9.SPA.03.07.00.E.152-3.E.bin...!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

<OUTPUT TRUNCATED>

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
[OK - 310347344/4096 bytes]

310347344 bytes copied in 276.400 secs (1122820 bytes/sec)


Create the same username and password on the FTP client that is configured on the switch and point the folder directory where the IOS image was saved. I've used a free FTP client, which is 3CDaemon.




This was my first SWITCH lab that I did during my CCDP studies. The topology is a square looped design, which is very similar to the triangle loop design but there's a difference where STP blocking occurs.



DLS1(config)#interface vlan1
DLS1(config-if)#ip address 10.1.1.101 255.255.255.0
DLS1(config-if)#no shutdown
DLS1(config-if)#
*Mar  1 00:17:25.530: %LINK-3-UPDOWN: Interface Vlan1, changed state to up
*Mar  1 00:17:26.537: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to up
DLS1(config-if)#exit
DLS1(config)#enable secret cisco
DLS1(config)#line vty 0 15
DLS1(config-line)#password cisco
DLS1(config-line)#login


ALS1(config)#interface vlan 1
ALS1(config-if)#ip address 10.1.1.103 255.255.255.0
ALS1(config-if)#exit
ALS1(config)#enable secret cisco
ALS1(config)#line vty 0 15
ALS1(config-line)#password cisco
ALS1(config-line)#login


ALS2(config)#interface vlan 1
ALS2(config-if)#ip address 10.1.1.104 255.255.255.0
ALS2(config-if)#no shutdown
ALS2(config-if)#enable secret cisco
ALS2(config)#line vty 0 15
ALS2(config-line)#password cisco
ALS2(config-line)#login


DLS2(config)#interface vlan 1
DLS2(config-if)#ip address 10.1.1.102 255.255.255.0
DLS2(config-if)#no shutdown
DLS2(config-if)#exit
DLS2(config)#enable secret cisco
DLS2(config)#line vty 0 4
DLS2(config-line)#password cisco
DLS2(config-line)#login


DLS1#show vlan    // ALL PORTS ON VLAN 1 BY DEFAULT; TRUNK PORT NOT DISPLAYED

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/1, Fa0/2, Fa0/3, Fa0/4
                                                Fa0/5, Fa0/6, Fa0/7, Fa0/8
                                                Fa0/9, Fa0/10, Fa0/11, Fa0/12
                                                Fa0/13, Fa0/14, Fa0/15, Fa0/16
                                                Fa0/17, Fa0/18, Fa0/19, Fa0/20
                                                Fa0/21, Fa0/22, Fa0/23, Fa0/24
                                                Gi0/1, Gi0/2
1002 fddi-default                     act/unsup
1003 token-ring-default               act/unsup
1004 fddinet-default                  act/unsup
1005 trnet-default                    act/unsup

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1    enet  100001     1500  -      -      -        -    -        0      0
1002 fddi  101002     1500  -      -      -        -    -        0      0
1003 tr    101003     1500  -      -      -        -    -        0      0
1004 fdnet 101004     1500  -      -      -        ieee -        0      0
1005 trnet 101005     1500  -      -      -        ibm  -        0      0

Remote SPAN VLANs
------------------------------------------------------------------------------


Primary Secondary Type              Ports
------- --------- ----------------- ------------------------------------------


ALS1#show vlan

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/1, Fa0/2, Fa0/3, Fa0/4
                                                Fa0/5, Fa0/6, Fa0/7, Fa0/8
                                                Gi0/1
1002 fddi-default                     act/unsup
1003 token-ring-default               act/unsup
1004 fddinet-default                  act/unsup
1005 trnet-default                    act/unsup

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1    enet  100001     1500  -      -      -        -    -        0      0
1002 fddi  101002     1500  -      -      -        -    -        0      0
1003 tr    101003     1500  -      -      -        -    -        0      0
1004 fdnet 101004     1500  -      -      -        ieee -        0      0
1005 trnet 101005     1500  -      -      -        ibm  -        0      0

Remote SPAN VLANs
------------------------------------------------------------------------------


Primary Secondary Type              Ports
------- --------- ----------------- ------------------------------------------


DLS1#show vtp status
VTP Version                     : running VTP1 (VTP2 capable)   // DEFAULT VTP VERSION 1; ALL SWITCHES IN THE VTP DOMAIN MUST USE SAME VERSION
Configuration Revision          : 0    // NO CONFIGURED VLANs YET
Maximum VLANs supported locally : 1005
Number of existing VLANs        : 5   // DEFAULT OR BUILT IN VLANS; 3560 SUPPORTS UP TO 1005 MAX VLANs; 2960 SUPPORTS 255 MAX VLANs
VTP Operating Mode              : Server     // DEFAULT VTP MODE
VTP Domain Name                 :
VTP Pruning Mode                : Disabled
VTP V2 Mode                     : Disabled
VTP Traps Generation            : Disabled
MD5 digest                      : 0x57 0xCD 0x40 0x65 0x63 0x59 0x47 0xBD
Configuration last modified by 0.0.0.0 at 0-0-00 00:00:00
Local updater ID is 10.1.1.101 on interface Vl1 (lowest numbered VLAN interface found)


DLS1(config)#vtp domain SWLAB
Changing VTP domain name from NULL to SWLAB
*Mar  1 00:30:49.209: %SW_VLAN-6-VTP_DOMAIN_NAME_CHG: VTP domain name changed to SWLAB.
DLS1(config)#vtp version ?
  <1-2>  Set the adminstrative domain VTP version number

DLS1(config)#vtp version 2
DLS1(config)#vtp mode ?
  client       Set the device to client mode.
  server       Set the device to server mode.
  transparent  Set the device to transparent mode.

DLS1(config)#vtp mode server
Device mode already VTP SERVER.    // DEFAULT VTP MODE


ALS1(config)#vtp mode client
Setting device to VTP CLIENT mode.

ALS1#show vtp status
VTP Version                     : 2
Configuration Revision          : 0
Maximum VLANs supported locally : 1005
Number of existing VLANs        : 5
VTP Operating Mode              : Client  
VTP Domain Name                 :          // NULL; NO TRUNKS CONFIGURED YET
VTP Pruning Mode                : Disabled
VTP V2 Mode                     : Disabled
VTP Traps Generation            : Disabled
MD5 digest                      : 0x57 0xCD 0x40 0x65 0x63 0x59 0x47 0xBD
Configuration last modified by 0.0.0.0 at 0-0-00 00:00:00
Local updater ID is 0.0.0.0 (no valid interface found)   // NO IP ADDRESS LISTED FOR LAST CONFIG MODIFICATION

ALS1#show interface fastethernet0/7 ?
  accounting      Show interface accounting
  capabilities    Show interface capabilities information
  controller      Show interface status, configuration and controller status
  counters        Show interface counters
  crb             Show interface routing/bridging info
  dampening       Show interface dampening info
  debounce        Show interface debounce time info
  description     Show interface description
  etherchannel    Show interface etherchannel information
  fair-queue      Show interface Weighted Fair Queueing (WFQ) info
  flowcontrol     Show interface flowcontrol information
  irb             Show interface routing/bridging info
  mac-accounting  Show interface MAC accounting info
  mpls-exp        Show interface MPLS experimental accounting info
  mtu             Show interface mtu
  precedence      Show interface precedence accounting info
  private-vlan    Show interface private vlan information
  pruning         Show interface trunk VTP pruning information
  random-detect   Show interface Weighted Random Early Detection (WRED) info
  rate-limit      Show interface rate-limit info
  stats           Show interface packets & octets, in & out, by switching path
  status          Show interface line status
  summary         Show interface summary
  switchport      Show interface switchport information
  transceiver     Show interface transceiver
  trunk           Show interface trunk information
  vlan            Show interface vlan information
  |               Output modifiers
  <cr>

ALS1#show interface fastethernet0/7 switchport
Name: Fa0/7
Switchport: Enabled
Administrative Mode: dynamic auto   // DEFAULT; AUTO-AUTO NEGOTIATES TO ACCESS MODE
Operational Mode: static access
Administrative Trunking Encapsulation: negotiate
Operational Trunking Encapsulation: native
Negotiation of Trunking: On
Access Mode VLAN: 1 (default)   
Trunking Native Mode VLAN: 1 (default)
Administrative Native VLAN tagging: enabled
Voice VLAN: none
Administrative private-vlan host-association: none
Administrative private-vlan mapping: none
Administrative private-vlan trunk native VLAN: none
Administrative private-vlan trunk Native VLAN tagging: enabled
Administrative private-vlan trunk encapsulation: dot1q
Administrative private-vlan trunk normal VLANs: none
Administrative private-vlan trunk private VLANs: none
Operational private-vlan: none
Trunking VLANs Enabled: ALL 
Pruning VLANs Enabled: 2-1001
Capture Mode Disabled
Capture VLANs Allowed: ALL

Protected: false
Unknown unicast blocked: disabled
Unknown multicast blocked: disabled
Appliance trust: none


DLS1(config)#interface range fastethernet0/7-10
DLS1(config-if-range)#switchport trunk encapsulation ?
  dot1q      Interface uses only 802.1q trunking encapsulation when trunking
  isl        Interface uses only ISL trunking encapsulation when trunking
  negotiate  Device will negotiate trunking encapsulation with peer on
             interface

DLS1(config-if-range)#switchport trunk encapsulation dot1q    // 3560 SUPPORTS ISL AND 802.1Q; 2960

SUPPORTS 802.1Q ONLY
DLS1(config-if-range)#switchport mode ?
  access        Set trunking mode to ACCESS unconditionally
  dot1q-tunnel  set trunking mode to TUNNEL unconditionally
  dynamic       Set trunking mode to dynamically negotiate access or trunk mode
  private-vlan  Set private-vlan mode
  trunk         Set trunking mode to TRUNK unconditionally

DLS1(config-if-range)#switchport mode trunk    // BEST TO DISABLE DTP USING switchport nonegotiate
DLS1(config-if-range)#
*Mar  1 00:39:21.795: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to down
*Mar  1 00:39:21.804: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to down
*Mar  1 00:39:21.804: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/9, changed state to down
*Mar  1 00:39:21.812: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/10, changed state

to down
DLS1(config-if-range)#
*Mar  1 00:39:24.807: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to up
*Mar  1 00:39:24.824: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to up
*Mar  1 00:39:24.840: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/9, changed state to up
*Mar  1 00:39:24.857: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/10, changed state to up

DLS1(config)#interface range fastethernet0/11-12
DLS1(config-if-range)#switchport trunk encapsulation isl
DLS1(config-if-range)#switchport mode trunk
DLS1(config-if-range)#
*Mar  1 00:41:07.928: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to down
*Mar  1 00:41:07.936: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to down
DLS1(config-if-range)#
*Mar  1 00:41:10.939: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/11, changed state to up
*Mar  1 00:41:10.956: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/12, changed state to up


ALS1(config)#interface range fastethernet0/1-2
ALS1(config-if-range)#switchport trunk encapsulation dot1q
ALS1(config-if-range)#switchport mode trunk
ALS1(config-if-range)#
00:45:54: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to down
00:45:54: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to down
ALS1(config-if-range)#
00:45:57: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to up
00:45:57: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to up

ALS1(config-if-range)#interface range fastethernet0/4-5
ALS1(config-if-range)#switchport trunk encapsulation dot1q
ALS1(config-if-range)#switchport mode trunk
ALS1(config-if-range)#
00:46:12: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/4, changed state to down
00:46:12: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/5, changed state to down
ALS1(config-if-range)#
00:46:15: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/4, changed state to up
00:46:15: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/5, changed state to up

ALS1(config-if-range)#interface range fastethernet0/7-8
ALS1(config-if-range)#switchport trunk encapsulation dot1q
ALS1(config-if-range)#switchport mode trunk


DLS2(config)#interface range fastethernet0/7-8
DLS2(config-if-range)#switchport trunk encapsulation dot1q
DLS2(config-if-range)#switchport mode trunk
DLS2(config-if-range)#
*Mar  1 00:47:24.098: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to down
*Mar  1 00:47:24.107: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to down
DLS2(config-if-range)#
*Mar  1 00:47:27.110: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/7, changed state to up
*Mar  1 00:47:27.127: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/8, changed state to up


ALS2#show interface fastethernet0/7 switchport
Name: Fa0/7
Switchport: Enabled
Administrative Mode: dynamic auto  
Operational Mode: trunk     // NEGOTIATED WITH DLS2 MODE TRUNK
Administrative Trunking Encapsulation: negotiate
Operational Trunking Encapsulation: dot1q
Negotiation of Trunking: On
Access Mode VLAN: 1 (default)
Trunking Native Mode VLAN: 1 (default)  
Administrative Native VLAN tagging: enabled
Voice VLAN: none
Administrative private-vlan host-association: none
Administrative private-vlan mapping: none
Administrative private-vlan trunk native VLAN: none
Administrative private-vlan trunk Native VLAN tagging: enabled
Administrative private-vlan trunk encapsulation: dot1q
Administrative private-vlan trunk normal VLANs: none
Administrative private-vlan trunk private VLANs: none
Operational private-vlan: none
Trunking VLANs Enabled: ALL  
Pruning VLANs Enabled: 2-1001
Capture Mode Disabled
Capture VLANs Allowed: ALL

Protected: false
Unknown unicast blocked: disabled
Unknown multicast blocked: disabled
Appliance trust: none


DLS1#show interfaces trunk

Port        Mode             Encapsulation  Status        Native vlan
Fa0/7       on               802.1q         trunking      1
Fa0/8       on               802.1q         trunking      1
Fa0/9       on               802.1q         trunking      1
Fa0/10      on               802.1q         trunking      1
Fa0/11      on               isl            trunking      1
Fa0/12      on               isl            trunking      1

Port        Vlans allowed on trunk
Fa0/7       1-4094     // ALLOW ALL VLANs BY DEFAULT; RESTRICT VLANs USING switchport trunk allowed vlan <VLAN-ID> COMMAND AT EACH END OF THE TRUNK
Fa0/8       1-4094
Fa0/9       1-4094
Fa0/10      1-4094
Fa0/11      1-4094
Fa0/12      1-4094

Port        Vlans allowed and active in management domain
Fa0/7       1
Fa0/8       1
Fa0/9       1
Fa0/10      1
Fa0/11      1

Port        Vlans allowed and active in management domain
Fa0/12      1

Port        Vlans in spanning tree forwarding state and not pruned
Fa0/7       1
Fa0/8       1
Fa0/9       1
Fa0/10      1
Fa0/11      1
Fa0/12      1


DLS2#show interfaces trunk

Port        Mode             Encapsulation  Status        Native vlan
Fa0/7       on               802.1q         trunking      1
Fa0/8       on               802.1q         trunking      1
Fa0/9       auto             n-802.1q       trunking      1   // n MEANS NEGOTIATED
Fa0/10      auto             n-802.1q       trunking      1  
Fa0/11      auto             n-isl          trunking      1 
Fa0/12      auto             n-isl          trunking      1 

Port        Vlans allowed on trunk
Fa0/7       1-4094
Fa0/8       1-4094
Fa0/9       1-4094
Fa0/10      1-4094
Fa0/11      1-4094
Fa0/12      1-4094

Port        Vlans allowed and active in management domain
Fa0/7       1
Fa0/8       1
Fa0/9       1
Fa0/10      1
Fa0/11      1

Port        Vlans allowed and active in management domain
Fa0/12      1

Port        Vlans in spanning tree forwarding state and not pruned
Fa0/7       1
Fa0/8       1
Fa0/9       1
Fa0/10      1
Fa0/11      1
Fa0/12      none


DLS1(config)#interface fastethernet0/6
DLS1(config-if)#switchport mode ?
  access        Set trunking mode to ACCESS unconditionally
  dot1q-tunnel  set trunking mode to TUNNEL unconditionally
  dynamic       Set trunking mode to dynamically negotiate access or trunk mode
  private-vlan  Set private-vlan mode
  trunk         Set trunking mode to TRUNK unconditionally

DLS1(config-if)#switchport mode access   // USED FOR STATIC ACCESS FOR HOST OR PC

DLS1#show interfaces fastethernet0/6 switchport
Name: Fa0/6
Switchport: Enabled
Administrative Mode: static access  
Operational Mode: down
Administrative Trunking Encapsulation: negotiate
Negotiation of Trunking: Off  
Access Mode VLAN: 1 (default)
Trunking Native Mode VLAN: 1 (default)
Administrative Native VLAN tagging: enabled
Voice VLAN: none
Administrative private-vlan host-association: none
Administrative private-vlan mapping: none
Administrative private-vlan trunk native VLAN: none
Administrative private-vlan trunk Native VLAN tagging: enabled
Administrative private-vlan trunk encapsulation: dot1q
Administrative private-vlan trunk normal VLANs: none
Administrative private-vlan trunk associations: none
Administrative private-vlan trunk mappings: none
Operational private-vlan: none
Trunking VLANs Enabled: ALL
Pruning VLANs Enabled: 2-1001
Capture Mode Disabled
Capture VLANs Allowed: ALL

Protected: false
Unknown unicast blocked: disabled
Unknown multicast blocked: disabled
Appliance trust: none


ALS1#show vtp status
VTP Version                     : 2
Configuration Revision          : 1
Maximum VLANs supported locally : 1005
Number of existing VLANs        : 5  
VTP Operating Mode              : Client  
VTP Domain Name                 : SWLAB     // PROPAGATED DUE TO TRUNKS CONFIGURED
VTP Pruning Mode                : Disabled
VTP V2 Mode                     : Enabled
VTP Traps Generation            : Disabled
MD5 digest                      : 0xD1 0xC0 0x36 0xF9 0xC4 0x3E 0x73 0xA0
Configuration last modified by 10.1.1.101 at 3-1-93 00:30:59


ALS2(config)#vtp mode client
Setting device to VTP CLIENT mode.

ALS2#show vtp status
VTP Version                     : 2
Configuration Revision          : 1
Maximum VLANs supported locally : 1005
Number of existing VLANs        : 5  
VTP Operating Mode              : Client 
VTP Domain Name                 : SWLAB  
VTP Pruning Mode                : Disabled
VTP V2 Mode                     : Enabled
VTP Traps Generation            : Disabled
MD5 digest                      : 0xD1 0xC0 0x36 0xF9 0xC4 0x3E 0x73 0xA0
Configuration last modified by 10.1.1.101 at 3-1-93 00:30:59


DLS1#vlan database ?  
% Unrecognized command    // SYNTAX HELP UNAVAILABLE
DLS1#vlan database   // vlan database COMMAND IS BEING DEPRACATED BUT STILL AVAILABLE
% Warning: It is recommended to configure VLAN from config mode,
  as VLAN database mode is being deprecated. Please consult user
  documentation for configuring VTP/VLAN in config mode.

DLS1(vlan)#exit
APPLY completed.
Exiting....


DLS1(config)#interface fastethernet0/6
DLS1(config-if)#switchport mode access
DLS1(config-if)#switchport access vlan ?
  <1-4094>  VLAN ID of the VLAN when this port is in access mode
  dynamic   When in access mode, this interfaces VLAN is controlled by VMPS

DLS1(config-if)#switchport access vlan 100
% Access VLAN does not exist. Creating vlan 100


DLS2(config)#interface fastethernet0/6
DLS2(config-if)#switchport mode access
DLS2(config-if)#switchport access vlan 110
% Access VLAN does not exist. Creating vlan 110


DLS1#show vlan

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/1, Fa0/2, Fa0/3, Fa0/4
                                                Fa0/5, Fa0/13, Fa0/14, Fa0/15
                                                Fa0/16, Fa0/17, Fa0/18, Fa0/19
                                                Fa0/20, Fa0/21, Fa0/22, Fa0/23
                                                Fa0/24, Gi0/1, Gi0/2
100  VLAN0100                         active    Fa0/6  
110  VLAN0110                         active    // VLANs 100 AND 110 WERE CREATED; SWITCH AUTO ASSIGN

VLAN NAME WITH VLAN NUMBER
1002 fddi-default                     act/unsup
1003 trcrf-default                    act/unsup
1004 fddinet-default                  act/unsup
1005 trbrf-default                    act/unsup

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1    enet  100001     1500  -      -      -        -    -        0      0
100  enet  100100     1500  -      -      -        -    -        0      0
110  enet  100110     1500  -      -      -        -    -        0      0
1002 fddi  101002     1500  -      -      -        -    -        0      0
1003 trcrf 101003     4472  1005   3276   -        -    srb      0      0
1004 fdnet 101004     1500  -      -      -        ieee -        0      0

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1005 trbrf 101005     4472  -      -      15       ibm  -        0      0


VLAN AREHops STEHops Backup CRF
---- ------- ------- ----------
1003 7       7       off

Remote SPAN VLANs
------------------------------------------------------------------------------


Primary Secondary Type              Ports
------- --------- ----------------- ------------------------------------------



DLS1(config)#vlan 120    // ANOTHER WAY TO CREATE A VLAN
DLS1(config-vlan)#end
DLS1#
*Mar  1 01:38:24.120: %SYS-5-CONFIG_I: Configured from console by console
DLS1#show vlan

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/1, Fa0/2, Fa0/3, Fa0/4
                                                Fa0/5, Fa0/13, Fa0/14, Fa0/15
                                                Fa0/16, Fa0/17, Fa0/18, Fa0/19
                                                Fa0/20, Fa0/21, Fa0/22, Fa0/23
                                                Fa0/24, Gi0/1, Gi0/2
100  VLAN0100                         active    Fa0/6
110  VLAN0110                         active
120  VLAN0120                         active
1002 fddi-default                     act/unsup
1003 trcrf-default                    act/unsup
1004 fddinet-default                  act/unsup
1005 trbrf-default                    act/unsup

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1    enet  100001     1500  -      -      -        -    -        0      0
100  enet  100100     1500  -      -      -        -    -        0      0
110  enet  100110     1500  -      -      -        -    -        0      0
120  enet  100120     1500  -      -      -        -    -        0      0
1002 fddi  101002     1500  -      -      -        -    -        0      0

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1003 trcrf 101003     4472  1005   3276   -        -    srb      0      0
1004 fdnet 101004     1500  -      -      -        ieee -        0      0
1005 trbrf 101005     4472  -      -      15       ibm  -        0      0


VLAN AREHops STEHops Backup CRF
---- ------- ------- ----------
1003 7       7       off

Remote SPAN VLANs
------------------------------------------------------------------------------


Primary Secondary Type              Ports
------- --------- ----------------- ------------------------------------------


ALS1(config)#interface fastethernet0/6
ALS1(config-if)#switchport mode access
ALS1(config-if)#switchport access vlan 120   // SWITCH IN VTP CLIENT CAN'T CREATE VLANs
ALS1(config-if)#end
ALS1#
01:40:50: %SYS-5-CONFIG_I: Configured from console by console
ALS1#show vlan

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/3, Gi0/1
100  VLAN0100                         active
110  VLAN0110                         active
120  VLAN0120                         active    Fa0/6  
1002 fddi-default                     act/unsup
1003 trcrf-default                    act/unsup
1004 fddinet-default                  act/unsup
1005 trbrf-default                    act/unsup

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1    enet  100001     1500  -      -      -        -    -        0      0
100  enet  100100     1500  -      -      -        -    -        0      0
110  enet  100110     1500  -      -      -        -    -        0      0
120  enet  100120     1500  -      -      -        -    -        0      0
1002 fddi  101002     1500  -      -      -        -    -        0      0
1003 trcrf 101003     4472  1005   3276   -        -    srb      0      0
1004 fdnet 101004     1500  -      -      -        ieee -        0      0
1005 trbrf 101005     4472  -      -      15       ibm  -        0      0


VLAN AREHops STEHops Backup CRF
---- ------- ------- ----------
1003 7       7       off

Remote SPAN VLANs
------------------------------------------------------------------------------


Primary Secondary Type              Ports
------- --------- ----------------- ------------------------------------------


DLS1(config)#vlan 100
DLS1(config-vlan)#name SERVER-FARM-1   // HELPS THE ADMIN TO IDENTIFY VLAN FUNCTIONALITY
DLS1(config-vlan)#vlan 110
DLS1(config-vlan)#name SERVER-FARM-2
DLS1(config-vlan)#vlan 120
DLS1(config-vlan)#name NET-ENG
DLS1(config-vlan)#end
DLS1#
*Mar  1 01:41:34.264: %SYS-5-CONFIG_I: Configured from console by console
DLS1#show vlan

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/1, Fa0/2, Fa0/3, Fa0/4
                                                Fa0/5, Fa0/13, Fa0/14, Fa0/15
                                                Fa0/16, Fa0/17, Fa0/18, Fa0/19
                                                Fa0/20, Fa0/21, Fa0/22, Fa0/23
                                                Fa0/24, Gi0/1, Gi0/2
100  SERVER-FARM-1                    active    Fa0/6
110  SERVER-FARM-2                    active
120  NET-ENG                          active
1002 fddi-default                     act/unsup
1003 trcrf-default                    act/unsup
1004 fddinet-default                  act/unsup
1005 trbrf-default                    act/unsup

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1    enet  100001     1500  -      -      -        -    -        0      0
100  enet  100100     1500  -      -      -        -    -        0      0
110  enet  100110     1500  -      -      -        -    -        0      0
120  enet  100120     1500  -      -      -        -    -        0      0
1002 fddi  101002     1500  -      -      -        -    -        0      0

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1003 trcrf 101003     4472  1005   3276   -        -    srb      0      0
1004 fdnet 101004     1500  -      -      -        ieee -        0      0
1005 trbrf 101005     4472  -      -      15       ibm  -        0      0


VLAN AREHops STEHops Backup CRF
---- ------- ------- ----------
1003 7       7       off

Remote SPAN VLANs
------------------------------------------------------------------------------


Primary Secondary Type              Ports
------- --------- ----------------- ------------------------------------------


ALS1#show vlan

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/3, Gi0/1
100  SERVER-FARM-1                    active
110  SERVER-FARM-2                    active
120  NET-ENG                          active    Fa0/6
1002 fddi-default                     act/unsup
1003 trcrf-default                    act/unsup
1004 fddinet-default                  act/unsup
1005 trbrf-default                    act/unsup

VLAN Type  SAID       MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1    enet  100001     1500  -      -      -        -    -        0      0
100  enet  100100     1500  -      -      -        -    -        0      0
110  enet  100110     1500  -      -      -        -    -        0      0
120  enet  100120     1500  -      -      -        -    -        0      0
1002 fddi  101002     1500  -      -      -        -    -        0      0
1003 trcrf 101003     4472  1005   3276   -        -    srb      0      0
1004 fdnet 101004     1500  -      -      -        ieee -        0      0
1005 trbrf 101005     4472  -      -      15       ibm  -        0      0


VLAN AREHops STEHops Backup CRF
---- ------- ------- ----------
1003 7       7       off

Remote SPAN VLANs
------------------------------------------------------------------------------


Primary Secondary Type              Ports
------- --------- ----------------- ------------------------------------------


ALS1(config)#vlan 120
%VTP VLAN configuration not allowed when device is in CLIENT mode.  
ALS1(config)#vtp mode server
Setting device to VTP SERVER mode
ALS1(config)#vlan 120
ALS1(config-vlan)#?
VLAN configuration commands:
  are           Maximum number of All Route Explorer hops for this VLAN (or
                zero if none specified)
  backupcrf     Backup CRF mode of the VLAN
  bridge        Bridging characteristics of the VLAN
  exit          Apply changes, bump revision number, and exit mode
  media         Media type of the VLAN
  mtu           VLAN Maximum Transmission Unit
  name          Ascii name of the VLAN
  no            Negate a command or set its defaults
  parent        ID number of the Parent VLAN of FDDI or Token Ring type VLANs
  private-vlan  Configure a private VLAN
  remote-span   Configure as Remote SPAN VLAN
  ring          Ring number of FDDI or Token Ring type VLANs
  said          IEEE 802.10 SAID
  shutdown      Shutdown VLAN switching
  state         Operational state of the VLAN
  ste           Maximum number of Spanning Tree Explorer hops for this VLAN (or
                zero if none specified)
  stp           Spanning tree characteristics of the VLAN
  tb-vlan1      ID number of the first translational VLAN for this VLAN (or
                zero if none)
  tb-vlan2      ID number of the second translational VLAN for this VLAN (or
                zero if none)

ALS1(config-vlan)#shutdown   // CAUSE ALL LOCAL PORTS ON A SWITCH IN A PARTICULAR VLAN TO STOP SENDING DATA; DOESN'T INFLUENCE THE STATE OF OTHER SWITCHES IN THE VTP DOMAIN
ALS1(config-vlan)#end
ALS1#
01:45:54: %SYS-5-CONFIG_I: Configured from console by console
ALS1#show vlan brief

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/3, Gi0/1
100  SERVER-FARM-1                    active
110  SERVER-FARM-2                    active
120  NET-ENG                          act/lshut Fa0/6   
1002 fddi-default                     act/unsup
1003 trcrf-default                    act/unsup
1004 fddinet-default                  act/unsup
1005 trbrf-default                    act/unsup

ALS1(config)#vlan 120
ALS1(config-vlan)#state ?
  active   VLAN Active State
  suspend  VLAN Suspended State
ALS1(config-vlan)#no shutdown
ALS1(config-vlan)#state suspend    // CAUSES ALL PORTS IN SPECIFIC VLAN IN THE VTP DOMAIN TO STOP SENDING DATA

ALS1#show vlan brief

VLAN Name                             Status    Ports
---- -------------------------------- --------- -------------------------------
1    default                          active    Fa0/3, Gi0/1
100  SERVER-FARM-1                    active
110  SERVER-FARM-2                    active
120  NET-ENG                          suspended Fa0/6  
1002 fddi-default                     act/unsup
1003 trcrf-default                    act/unsup
1004 fddinet-default                  act/unsup
1005 trbrf-default                    act/unsup