Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

[edit system] Configuration Statement Hierarchy on EX Series Switches

This topic lists supported and unsupported configuration statements in the [edit system] hierarchy level on EX Series switches.

  • Supported statements are those that you can use to configure some aspect of a software feature on the switch.
  • Unsupported statements are those that appear in the command-line interface (CLI) on the switch, but that have no effect on switch operation if you configure them.
  • Not all features are supported on all switch platforms. For detailed information about feature support on specific EX Series switch platforms, see EX Series Switch Software Features Overview.

This topic lists:

Supported Statements in the [edit system] Hierarchy Level

The following hierarchy shows the [edit system] configuration statements supported on EX Series switches.

system {accounting {destination {radius {server {server-address {accounting-port port-number;port port-number;retry number;secret password;source-address address;timeout seconds;}}}tacplus {server {server-address {port port-number;secret password;single-connection;timeout seconds;}}}}eventstraceoptions {file;flag;no-remote-trace;}}allow-v4-mapped-packets;archival {configuration {archive-sites {ftp://<username>:<password>@<host>:<port>/<url-path>;scp://<username>:<password>@<host>:<port>/<url-path>;}transfer-interval interval;transfer-on-commit;}}arp {aging-timer minutes;gratuitous-arp-delay;gratuitous-arp-on-ifup;interfaces interface-name{aging-timer minutes;}passive-learning;purging;}authentication-order [ authentication-methods ];autoinstallation {configuration-servers {server-url <password password>;}interfaces {interface-name {bootp;rarp;}}}backup-router address <destination [ destination-addresses ]>;commit {synchronize (and-quit | force);}(compress-configuration-files | no-compress-configuration-files);default-address-selection;domain-name domain-name;domain-search [ domain-list ];extensions {providers {provider-id {license-type license deployment-scope [ deployments ];}}resource-limits {package package-name {resources {cpu {priority number;time seconds;}file {core-size bytes;open number;size bytes;}memory {data-size bytes;locked-in bytes;resident-set-size bytes;socket-buffers bytes;stack-size bytes;}}}process process-ui-name {resources {cpu {priority number;time seconds;}file {core-size bytes;open number;size bytes;}memory {data-size bytes;locked-in bytes;resident-set-size bytes;socket-buffers bytes;stack-size bytes;}}}}}internet-options {(gre-path-mtu-discovery | no-gre-path-mtu-discovery);icmpv4-rate-limit bucket-size number packet-rate rate;icmpv6-rate-limit bucket-size number packet-rate rate;(ipip-path-mtu-discovery | no-ipip-path-mtu-discovery);ipv6-duplicate-addr-detection-transmits;(ipv6-path-mtu-discovery | noipv6-path-mtu-discovery);ipv6-path-mtu-discovery-timeout;ipv6-reject-zero-hop-limit | no-ipv6-reject-zero-hop-limit;no-tcp-reset;no-tcp-rfc1323-paws;no-tcp-rfc1323;(path-mtu-discovery | no-path-mtu-discovery);source-port upper-limit port-number;(source-quench | no-source-quench);tcp-drop-synfin-set;}kernel-replication;license {autoupdate {url url{password password;}}renew {before-expiration days;interva hoursl;}traceoptions {file <filename> <files number> <size maximum-file-size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}}location {altitude feet;building name;country-code code;floor number;hcoord horizontal-coordinate;lata service-area;latitude degrees;longitude degrees;npa-nxx number;postal-code postal-code;rack number;vcoord vertical-coordinate;}login {announcement "text";class class-name {access-end "hh<:mm:<ss>>";access-start "hh<:mm:<ss>>";allow-commands "regular-expression";allow-configuration-regexps "regular-expression";allowed-days [ sunday monday tuesday wednesday thursday friday saturday ];deny-commands "regular-expression";deny-configuration-regexps "regular-expression";idle-timeout minutes;login-alarms;login-script script-name;login-tip;permissions [ permissions ];security-role [security-role ] ;}deny-sources {address;}message "text";password {change-type (character-sets | set-transitions);format (des | md5 | sha1);maximum-length number;minimum-changes number;minimum-length number;}retry-options {backoff-factor number;backoff-threshold number;lockout-period number;maximum-time number;minimum-time number;tries-before-disconnect number;}user username {authentication {(encrypted-password "password" | plain-text-password);load-key-file filename;ssh-dsa "public-key" <from hostname>;ssh-rsa "public-key" <from hostname>;}class class-name;full-name "complete-name";uid uid-value;}}max-configurations-on-flash number;name-server {address;}nd-maxmcast-solicit;nd-retransmit-timer;no-multicast-echo;no-neighbor-learn;no-ping-record-route;no-ping-time-stamp;}ntp {authentication-key key-number type md5 value password;boot-server address;broadcast <address> <key key-number> <ttl value> <version value>;broadcast-client;multicast-client <address>;peer address <key key-number> <prefer> <version value>;server address <key key-number> <prefer> <version value>;source-address source-address;trusted-key [ key-numbers ];}ports {auxiliary {disable;insecure;port-type (mini-usb | rj45);type (ansi | small-xterm | vt100 | xterm);}console {disable;insecure;log-out-on-disconnect;type (ansi | small-xterm | vt100 | xterm);}}radius-options {attributes {nas-ip-address address;}password-protocol mschap-v2;}radius-server {server-address {accounting-port port-number;port port-number;retry number;secret password;source-address source-address;timeout seconds;}}root-authentication {(encrypted-password "password" | plain-text-password);load-key-file filename;ssh-dsa "public-key" <from hostname>;ssh-rsa "public-key" <from hostname>;}(saved-core-context | no-saved-core-context);saved-core-files number;scripts {commit {allow-transients;direct-access;file filename.xsl {checksum (md5 | sha-256 | sha2) hash;optional;refresh;refresh-from url;source url;}refresh;refresh-from url;traceoptions {file <filename> <files number> <size maximum-file-size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}}load-scripts-from-flash; op {file filename.xsl {arguments {argument-name {description descriptive-text;}}checksum (md5 | sha-256 | sha2) hash;command filename-alias;description descriptive-text;refresh;refresh-from url;source url;}no-allow-url;refresh;refresh-from url;traceoptions {file <filename> <files number> <size maximum-file-size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}}}services {database-replication {traceoptions {file <filename> <files number> <match regular-expression> <size maximum-file-size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}}dhcp {boot-file filename;boot-server (address | hostname);default-lease-time (seconds | infinite);domain-name domain-name;domain-search {domain-suffix;}maximum-lease-time (seconds | infinite);name-server {address;}next-server address;option option-index (array type-name [ type-values ] | byte 8-bit-value | flag (false | off | on | true) | integer signed-32-bit-value | ip-address address | short signed-16-bit-value | string text-string | unsigned-integer 32-bit-value | unsigned-short 16-bit-value);pool ip-prefix/prefix-length {address-range low address high address;boot-file filename;boot-server (address | hostname);default-lease-time (seconds | infinite);domain-name domain-name;domain-search {domain-suffix;}exclude-address {ipv4-address;}maximum-lease-time (seconds | infinite);name-server {address;}next-server address;option option-index (array type-name  type-values ] | byte 8-bit-value | flag (false | off | on | true) | integer signed-32-bit-value | ip-address address | short signed-16-bit-value | string text-string | unsigned-integer 32-bit-value | unsigned-short 16-bit-value);propagate-settings interface-name;router {address;}server-identifier identifier;sip-server {address {address;}name {name;}}wins-server {address;}}router {address;}server-identifier identifier;sip-server {address {address;}name {name;}}static-binding mac-address {boot-file filename;boot-server (address | hostname);client-identifier (ascii ascii-text | hexadecimal hexadecimal-value);domain-name domain-name;domain-search {domain-suffix;}fixed-address {ipv4-address;}host-name hostname;name-server {address;}next-server address;option option-index (array type-name  type-values ] | byte 8-bit-value | flag (false | off | on | true) | integer signed-32-bit-value | ip-address address | short signed-16-bit-value | string text-string | unsigned-integer 32-bit-value | unsigned-short 16-bit-value);router {address;}server-identifier identifier;sip-server {address {address;}name {name;}}wins-server {address;}}traceoptions {file <filename> <files number> <match regular-expression> <size maximum-file-size> <world-readable | no-world-readable>;flag flag;level severity;no-remote-trace;}wins-server {address;}}dhcp-local-server {group group-name {interface interface-name {exclude;overrides {client-discover-match <option60-and-option82>;interface-client-limit number;OBSOLETE - no-arp;process-inform {pool pool-name;}}trace;upto upto-interface-name;}overrides {client-discover-match <option60-and-option82>;interface-client-limit number;OBSOLETE - no-arp;process-inform {pool pool-name;}}reconfigure {attempts attempt-count;clear-on-abort;timeout timeout-value;token token-value; trigger {radius-disconnect;}}}interface-traceoptions {file <filename> <files number> <match regular-expression> <size size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}overrides {client-discover-match <option60-and-option82>;interface-client-limit number;OBSOLETE - no-arp;process-inform {pool pool-name;}}pool-match-order {external-authority;ip-address-first;option-82;}reconfigure {attempts attempt-count;clear-on-abort;timeout timeout-value;token token-value; trigger {radius-disconnect;}}traceoptions {file <filename> <files number> <match regular-expression> <size maximum-file-size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}}finger {connection-limit limit;rate-limit limit;}ftp {connection-limit limit;rate-limit limit;}netconf {ssh {connection-limit limit;port number; rate-limit limit;}}outbound-ssh {client client-id {address {port port-number;retry number;timeout seconds;}device-id device-id;keep-alive {retry number;timeout seconds;}reconnect-strategy (in-order | sticky);secret secret;services netconf;}traceoptions {file <filename> <files number> <match regular-expression> <size maximum-file-size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}}service-deployment {local-certificate certificate-name;servers {server-address {port port-number;security-options {(ssl3 | tls);}user username;}}source-address source-address;traceoptions {file <filename> <files number> <match regular-expression> <size maximum-file-size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}}ssh {ciphers; connection-limit limit;hostkey-algorithm {ssh-dss | no-ssh-dss;ssh-ecdsa | no-ssh-ecdsa;ssh-rsa | no-ssh-rsh;}key-exchange;macs; protocol-version [ v1 v2 ];rate-limit limit;root-login (allow | deny | deny-password);}subscriber-management{gres-route-flush-delay;maintain-subscriber {interface-delete;}traceoptions {file filename <files number> <match regular-expression > <size maximum-file-size> <world-readable | no-world-readable>;flag flag;no-remote-trace;}}telnet {connection-limit limit;rate-limit limit;}web-management {control {max-threads number;}http {interface [ interface-names ];port port-number;}https {interface [ interface-names ];(local-certificate certificate-name | pki-local-certificate certificate-name | system-generated-certificate);port port-number;}management-url url;session {idle-timeout minutes;session-limit number;}}xnm-clear-text {connection-limit limit;rate-limit limit;}xnm-ssl {connection-limit limit;local-certificate certificate-name;rate-limit limit;}}static-host-mapping {hostname {alias [ aliases ];inet [ addresses ];inet6 [ addresses ];sysid system-identifier;}}syslog {allow-duplicates; archive <files number> <size size> <world-readable | no-world-readable>;console {facility severity;}file filename {allow-duplicates; facility severity;archive <archive-sites {ftp-url <password password>}> <files number> <size size> <start-time "YYYY-MM-DD.hh:mm"> <transfer-interval minutes> <world-readable | no-world-readable>;explicit-priority;match "regular-expression";structured-data {brief;}}host (hostname | other-routing-engine) {facility severity;explicit-priority;facility-override facility;log-prefix string;match "regular-expression";}log-rotate-frequency;time-format (year | millisecond | year millisecond);user (username | *) {facility severity;explicit-priority;match "regular-expression";}}tacplus-options {(exclude-cmd-attribute | no-cmd-attribute-value);service-name service-name;}tacplus-server {server-address {port port-number;secret password;single-connection;source-address source-address;timeout seconds;}}time-zone (GMT | GMT+hour-offset | GMT-hour-offset | zone-name);tracing destination-override syslog host address;use-imported-time-zones;}

Unsupported Statements in the [edit system] Hierarchy Level

All statements in the [edit system] hierarchy level that are displayed in the command-line interface (CLI) on the switch are supported on the switch and operate as documented with the following exceptions:

Table 1: Unsupported [edit system] Configuration Statements on EX Series Switches

Statement

Hierarchy

Note: Variables, such as interface-name, are not shown in the statements or hierarchies.

mirror-flash-on-disk

[edit system]

processes

[edit system]

Published: 2014-04-23

Supported Platforms

Published: 2014-04-23