Cisco IOS XE Catalyst SD-WAN Qualified Command Re
Cisco IOS XE Catalyst SD-WAN Qualified Command Re
Cisco IOS XE Catalyst SD-WAN Qualified Command Re
Command References /
Chapter Contents
clock
cong-transaction
crypto isakmp diagnose error
hostname
line
login authentication
login on-success log
mac address-table aging-time
mac address-table static
memory free low-watermark processor
platform qfp utilization monitor load
platform-resource
sdwan
service password-recovery
service tcp-small-servers
service timestamps
service udp-small-servers
speed
stopbits
transport input
transport output
username
clock
Set the timezone to use on the local device.
Syntax Description
Command Default
UTC
Command Modes
Global conguration (cong)
Release Modi4cation
Usage Guidelines
For usage guidelines, see the Cisco IOS XE clock
timezone command.
Examples
cong-transaction
To enter global conguration mode on a Cisco IOS XE
Catalyst SD-WAN device, use the con4g-transaction
command in privileged EXEC mode.
con4g-transaction
Syntax Description
This command has no keywords or arguments.
Command Default
None
Command Modes
Privileged EXEC (#)
Command History
Release Modi4cation
Cisco IOS XE Command qualied for use in
Catalyst SD-WAN Cisco SD-WAN Manager CLI
Release 17.2.1v templates.
Usage Guidelines
Use this command to enter global conguration mode
on a Cisco IOS XE Catalyst SD-WAN device.
Commands entered in this mode are written to the
running conguration le, but saved in the running
cong after commit.
Example
The following example shows how to enter global
conguration mode from privileged EXEC and set an ip
address for a name server, then commit changes.
Device# config-transaction
Device(config)# ip name-server 10.255.1.
Device(config)# commit
Syntax Description
Command Default
ISAKMP error diagnostic is enabled by default.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Cisco IOS XE Command qualied for use in
Catalyst SD-WAN Cisco SD-WAN Manager CLI
Release 17.2.1v templates.
Usage Guidelines
IKE is a hybrid protocol that implements the Oakley key
exchange and key exchange inside the framework. IKE
is a key management protocol standard that is used in
conjunction to congure basic VPNs. IPsec can be
congured without IKE, but IKE enhances IPsec by
providing additional features, exibility, and ease of
conguration for the IPsec standard.
Example
The following example shows how to congure the
crypto diagnose error count to 10.
hostname
To specify or modify the hostname for the network
server, use the hostname command in global
conguration mode.
hostname name
Syntax Description
Command Default
The default hostname is Router.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Usage Guidelines
For usage guidelines, see the Cisco IOS XE hostname
command.
line
To identify a specic line for conguration and enter
line conguration collection mode, use the line
command in global conguration mode. To remove
conguration from a specic line, use the no form of
this command.
Command Default
There is no default line.
Command Modes
Global conguration
Command History
Release Modi4cation
Usage Guidelines
For usage guidelines, see the Cisco IOS line
command.
line console 0
line vty 0 4
line auto-consolidation
line aux 0
line range 1 5
login authentication
To enable authentication, authorization, and
accounting (AAA) authentication for logins, use the
login authentication command in line conguration
mode. To return to the default specied by the aaa
authentication login command, use the no form of this
command.
Syntax Description
Command Default
Uses the default set with aaa authentication login .
Command Modes
Command History
Release Modi4cation
Usage Guidelines
line con 0
login authentication default
Syntax Description
Command Default
Every successful login attempt is logged.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Cisco IOS XE Command qualied for use in
Catalyst SD-WAN Cisco SD-WAN Manager CLI
Release 17.2.1v templates.
Usage Guidelines
Use the login on-success log command to generate a
syslog message on every successful login attempt, or
on any number of successful logins attempts up to
65535.
Example
The following example shows how to congure the
syslog message to log every 10th successful login
attempt.
Syntax Description
Command Default
The default aging time is 300 seconds.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Usage Guidelines
The aging time entry will take the specied value. Valid
entries are from 10 to 1000000 seconds.
Syntax Description
Command Default
Static entries are not added to the MAC address table.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Usage Guidelines
For usage guidelines, see the Cisco IOS XE mac
address-table static command.
Syntax Description
Command Default
None
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Cisco IOS XE Command qualied for use in
Catalyst SD-WAN Cisco SD-WAN Manager CLI
Release 17.2.1v templates.
Usage Guidelines
When a router is overloaded by processes, the amount
of available memory might fall to levels insucient for
it to issue critical notications. Use the memory free
low-watermark processor command to reserve a
region of memory to be used by the router for issuing
critical notications.
Example
The following example shows how to congure a
memory threshold for the router.
Syntax Description
Command Default
The default value for this command is set to 80%.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Cisco IOS XE Command qualied for use in
Catalyst SD-WAN Cisco SD-WAN Manager CLI
Release 17.2.1v templates.
Usage Guidelines
The qfp monitoring is set to 80 percent by default,
therefore when the CPU is running at 80 percent or
above it will start to log warning and error messages.
This default value can be changed to a smaller/larger
percent or globally.
Example
The following examples shows how to congure a
platform qfp utilization monitor load value to 75% and
60535 pps.
platform-resource
To select a template for core allocation, use the
platform-resource command in conguration mode.
To remove this conguration, use the no form of this
command.
no platform-resource
Syntax Description
Command Default
Platform resource template is not congured.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Cisco IOS XE Catalyst Command qualied for use
SD-WAN Release in Cisco vManage CLI
17.5.1a templates.
sdwan
To enter the SD-WAN conguration mode (cong-
sdwan) on a Cisco IOS XE SD-WAN device, enter the
sdwan command in the global conguration mode.
sdwan
Syntax Description
This comand has no keywords or arguments.
Command Default
None
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Cisco IOS XE Catalyst Command qualied for use
SD-WAN Release in Cisco vManage CLI
17.4.1a templates.
Example
Device# config-transaction
Device(config)# sdwan
service password-recovery
To enable password recovery capability, use the
service password-recovery command in global
conguration mode. To disable password recovery
capability, use the no service password-recovery
[strict] command.
service password-recovery
Syntax Description
Command Default
Password recovery capability is enabled.
Command Modes
Global conguration
Command History
Release Modi4cation
Cisco IOS XE Command qualied for use in
Release 17.6.1a Cisco vManage CLI templates.
Usage Guidelines
For usage guidelines, see the Cisco IOS XE service
password-recovery command.
Example
The following example shows how to disable
password recovery capability using the no service
password-recovery strict command:
service tcp-small-servers
To enable small TCP servers such as the Echo, use the
service tcp-small-servers command in global
conguration mode. To disable the TCP server, use the
no form of this command.
service tcp-small-servers
no service tcp-small-servers
Command Default
TCP small servers are disabled.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Usage Guidelines
For usage guidelines, see the Cisco IOS XE service tcp
small servers command.
service timestamps
To congure the system to apply a time stamp to
debugging messages or system logging messages,
use the service timestamps command in global
conguration mode. To disable this service, use the no
form of this command.
Syntax Description
Command Default
Time stamps are applied to debug and logging
messages.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Usage Guidelines
For usage guidelines, see the Cisco IOS XE service
timestamps command.
Router(config)# end
Router(config)# end
! The following line shows the timestamp
.Mar 22 2004 23:13:25 UTC: %SYS-5-CONFIG
service udp-small-servers
To enable small User Datagram Protocol (UDP) servers
such as the Echo, use the service udp-small-servers
command in global conguration mode. To disable the
UDP server, use the no form of this command.
service udp-small-servers
no service udp-small-servers
Command Default
UDP small servers are disabled.
Command Modes
Global conguration (cong)
Command History
Release Modi4cation
Usage Guidelines
For usage guidelines, see the Cisco IOS XE service
udp small servers command.
speed
To congure the speed for a Fast Ethernet or Gigabit
Ethernet interface, use the speed command in line
conguration mode. To return to the default
conguration, use the no form of this command.
speed speed-range
no speed speed-range
Syntax Description
Command Default
None
Command Modes
Line conguration (cong-line)
Command History
Release Modi4cation
Usage Guidelines
For usage guidelines, see the Cisco IOS XE speed
command.
stopbits
To congure the stop bits for the console port, use the
stopbits command. To revert to the default, use the
no form of this command.
stopbits { 1 }
no stopbits { 1 }
Syntax Description
Command Default
1 stop bit
Command Modes
Command History
Release Modi4cation
Usage Guidelines
You can congure the console port only from a session
on the console port.
line con 0
stopbits 1
transport input
To dene which protocols to use to connect to a
specic line of the router, use the transport input
command in line conguration mode. To change or
remove the protocol, use the no form of this
command.
Syntax Description
Command Default
No protocols are allowed on the auxiliary (AUX),
console, tty, and vty lines.
Command Modes
Line conguration (cong-line)
Command History
Release Modi4cation
Usage Guidelines
Cisco devices do not accept incoming network
connections to tty lines by default. You must specify an
incoming transport protocol or specify the transport
input all command before the line will accept incoming
connections.
configure terminal
line vty 0 32
transport input ssh
exit
transport output
To determine the protocols that can be used for
outgoing connections from a line, use the transport
output command in line conguration mode. To
change or remove the protocol, use the no form of this
command.
Syntax Description
Command Default
Telnet
Command Modes
Line conguration
Command History
Release Modi4cation
username
To establish a username-based authentication system,
use the username command in global conguration
mode. To remove an established username-based
authentication, use the no form of this command.
no username name
Syntax Description
Command Default
No username-based authentication system is
established.
Command Modes
Command History
Release Modi4cation
Usage Guidelines
The username command provides username or
password authentication, or both, for login purposes
only.
Yes No Feedback
+ Show 3 More
Contact Cisco
Open a Support Case
(Requires a Cisco Service Contract)
Quick Links -
About Cisco
Contact Us
Careers
Help
Privacy Statement
Cookies
Accessibility
Trademarks
Newsroom
Sitemap