Command Line Reference
Security Configuration
CoPP
16 min
copp view copp view table 1 copp view table 1 copp view command purpose show policy map \[ policy map name ] display the copp configuration show copp status display the copp status show policy map \[ show policy map \[ policy map name ] \[command] show policy map \[ policy map name ] \[purpose] display the copp configuration \[parameters] parameter description policy map name copp policy name \[view] privileged user view \[use cases] sonic# show policy map ! policy map type copp copp system policy class copp system arp bandwidth 1000000 12800 show copp status show copp status \[command] show copp status \[purpose] display the copp status \[view] privileged user view \[use cases] sonic# show copp status class status \ copp system arp cbs 64000 cir 256000 meter type bytes mode sr tcm queue 5 red action drop trap action copy trap ids arp req,arp resp trap priority 5 copp config copp config table 2 copp config table 2 copp config command purpose policy map type copp copp system policy enter copp configuration view class system class name specify the type of message targeted by copp bandwidth cir cbs set copp rate limiting arp broadcast disable configure copp action for arp packets as trap ndp broadcast disable configure copp action for nd packets as trap igmp enable configure copp action for igmp packets as forward pim enable configure copp action for pim packets as forward isis enable configure copp action for isis packets as forward vrrp enable configure copp action for vrrp packets as forward ospf enable configure copp action for ospf packets as forward policy map type copp copp system policy policy map type copp copp system policy \[command] policy map type copp copp system policy \[purpose] enter copp configuration view \[view] global configuration view \[use cases] sonic(config)# policy map type copp copp system policy sonic(config pmap copp copp system policy)# class system class name class system class name \[command] class system class name \[purpose] specify the type of message targeted by copp \[parameters] parameter description system class name specify the type of message (copp system ttl err/copp system bgp/copp system bfd/copp system ospf/copp system vrrp/copp system isis/copp system lacp/copp system stp/copp system arp/copp system neigh discovery/ /copp system macsec/copp system lldp/copp system udld/copp system igmp/copp system dhcp relay/copp system sflow/copp system ip2me/copp system nat/copp system pvrst/copp system pim/copp system vrrpv6/copp system mld/ /copp system ssh/copp system snmp/copp system l3 mtu error/copp system ldp) \[view] copp configuration view \[use cases] sonic(config pmap copp copp system policy)# class copp system arp sonic(config pmap c copp system policy copp system arp)# bandwidth bandwidth cir cbs \[command] bandwidth cir cbs \[purpose] set copp rate limiting \[parameters] parameter description cir specify the cir(committed information rate) in byte/sec the range is 1000 400000000000 cbs specify cbs (committed burst size) in byte the range is 1000 400000000000 \[view] copp class map configuration view \[notes] run command no bandwidth delete the customized copp configuration and the system will revert to the default copp configuration \[use cases] sonic(config pmap copp copp system policy)# class copp system arp sonic(config pmap c copp system policy copp system arp)# bandwidth 1000000 12800 arp broadcast disable arp broadcast disable \[command] arp broadcast disable \[purpose] configure copp action for arp packets as trap \[view] global configuration view \[notes] the action trap means upload to cpu, and copy means both upload to cpu and forward the default action for arp packets is copy run command no arp broadcast disable to configure copp action for arp packets as copy \[use cases] sonic(config)# arp broadcast disable sonic(config)# no arp broadcast disable ndp broadcast disable ndp broadcast disable \[command] ndp broadcast disable \[purpose] configure copp action for nd packets as trap \[view] global configuration view \[notes] the action trap means upload to cpu, and copy means both upload to cpu and forward the default action for nd packets is copy run command no ndp broadcast disable to configure copp action for nd packets as copy \[use cases] sonic(config)# ndp broadcast disable sonic(config)# no ndp broadcast disable igmp enable igmp enable \[command] igmp enable \[purpose] configure copp action for igmp packets as copy \[view] global configuration view \[notes] the action forward means forward the packets, and copy means both upload to cpu and forward the default action for igmp packets is forward run command no igmp enable to configure copp action for igmp packets as forward \[use cases] sonic(config)# igmp enable sonic(config)# no igmp enable pim enable pim enable \[command] pim enable \[purpose] configure copp action for pim packets as copy \[view] global configuration view \[notes] the action forward means forward the packets, and copy means both upload to cpu and forward the default action for pim packets is forward run command no pim enable to configure copp action for pim packets as forward \[use cases] sonic(config)# pim enable sonic(config)# no pim enable isis enable isis enable \[command] isis enable \[purpose] configure copp action for isis packets as copy \[view] global configuration view \[notes] the action forward means forward the packets, and copy means both upload to cpu and forward the default action for isis packets is forward run command no isis enable to configure copp action for isis packets as forward \[use cases] sonic(config)# isis enable sonic(config)# no isis enable vrrp enable vrrp enable \[command] vrrp enable \[purpose] configure copp action for vrrp packets as copy \[view] global configuration view \[notes] the action forward means forward the packets, and copy means both upload to cpu and forward the default action for vrrp packets is forward run command no vrrp enable to configure copp action for vrrp packets as forward \[use cases] sonic(config)# vrrp enable sonic(config)# no vrrp enable ospf enable ospf enable \[command] ospf enable \[purpose] configure copp action for ospf packets as copy \[view] global configuration view \[notes] the action forward means forward the packets, and copy means both upload to cpu and forward the default action for ospf packets is forward run command no ospf enable to configure copp action for ospf packets as forward \[use cases] sonic(config)# ospf enable sonic(config)# no ospf enable
