background image

 

97 

Security 

In this section, you can configure the 802.1x and MAC address table.

 

 

802.1X/Radius Configuration 

 
802.1x is an IEEE authentication specification which prevents the client from connecting 
to a wireless access point or wired switch until it provides authority, like the user name 
and password that are verified by an authentication server (such as RADIUS server). 
 

System Configuration 

 
After enabling the IEEE 802.1X function, you can configure the parameters of this 
function. 

 

IEEE 802.1x Protocol:

 Enable or disable 802.1x protocol. 

 

Radius Server IP:

 Assign the RADIUS Server IP address. 

 

Server Port:

 Set the UDP destination port for authentication requests to the 

specified RADIUS Server. 

 

Accounting Port:

 Set the UDP destination port for accounting requests to the 

specified RADIUS Server. 

 

Shared Key:

 Set an encryption key for using during authentication sessions with 

the specified RADIUS server. This key must match the encryption key used on the 
RADIUS Server. 

 

NAS, Identifier: 

Set the identifier for the RADIUS client. 

  Click 

Apply

  button. 

Summary of Contents for LNX-1802GN

Page 1: ...16 port 10 100TX 2 port 10 100 1000T Mini GBIC L2 Managed Industrial Ethernet Switch with Redundant Ring User Manual ...

Page 2: ...t occur in a par ticular installation If this equipment does cause harmful interference to radio or television reception which can be de termined by turning the equipment off and on the user is encouraged to try to correct the interference by one or more of the following measures Reorient or relocate the receiving antenna Increase the separation between the equipment and receiver Connect the equip...

Page 3: ...LED Indicators 3 RJ 45 Pin Assignments 5 Cabling 8 SFP Connection 9 Wiring the Power Inputs 12 Wiring the Fault Alarm Contacts 13 Installation 14 DIN Rail Mounting 14 Wall Mounting 16 Installation Steps 17 Console Management 18 Connecting to the Console Port 18 Login in the Console Interface 19 CLI Management 20 Commands Level 21 Commands Set List 22 ...

Page 4: ... Commands Set 38 TFTP Commands Set 40 SystemLog SMTP and Event Commands Set 41 SNTP Commands Set 43 X ring Commands Set 44 Web Based Management 46 About Web based Management 46 Preparing for Web Management 46 System Login 47 System Information 48 IP Configuration 48 DHCP Server System configuration 49 DHCP Server Client Entries 51 DHCP Server Port and IP Bindings 51 TFTP Update Firmware 52 TFTP Re...

Page 5: ...atistics 64 Port Control 65 Port Trunk 66 Aggregator setting 67 Aggregator Information 68 State Activity 69 Port Mirroring 70 Rate Limiting 72 VLAN configuration 74 VLAN configuration Port based VLAN 74 802 1Q VLAN 78 Rapid Spanning Tree 82 RSTP System Configuration 82 RSTP Port Configuration 83 SNMP Configuration 85 System Configuration 85 Trap Configuration 86 SNMPV3 Configuration 87 QoS Configu...

Page 6: ... 91 COS Configuration 92 TOS Configuration 92 IGMP Configuration 93 X Ring 94 Security 97 802 1X Radius Configuration 97 MAC Address Table 100 Factory Default 103 Save Configuration 103 System Reboot 104 Troubleshooting 105 Technical Specifications 106 ...

Page 7: ...IC supports 100 1000 Dual Mode Store and Forward Switching Architecture Back plane Switching Fabric 7 2Gbps 1Mbits Packet Buffer 8K MAC Address Table Supports Wide Operating Temperature 40o C 75o C Case Installation IP 30 Protection DIN Rail and Wall Mount Design Power Supply Wide Range Redundant Power Design Power Polarity Reverse Protect Overload Current Protection Spanning Tree Supports IEEE 80...

Page 8: ...TX Packet only RX Packet only Both of TX and RX Packet System Event Log System Log Server Client SMTP e mail Alert Relay Alarm Output System Events Security Port Security MAC address entries filter IP Security IP address security management to prevent unauthorized intruder Login Security IEEE802 1X RADIUS SNMP Trap Device cold start Power status Authentication failure X Ring topology change Port L...

Page 9: ... from 1 to 4096 GVRP 256 groups Port Trunk with LACP LACP Port Trunk 4 Trunk groups Maximum 4 trunk members LLDP Supports LLDP that allows the switch to advertise its identity and capabilities on the LAN Spanning Tree IEEE802 1d spanning tree IEEE802 1w rapid spanning tree X Ring Supports X Ring Dual Homing and Couple Ring Provides redundant backup feature and the recovery time below 20ms Quality ...

Page 10: ...of packet type and the limit rates are 100K 250Mbps Ingress filter packet type combination rules are Broadcast Multicast Unknown Unicast packet Broadcast Multicast Broadcast packet only and all of packets The packet filter rate can be set from 100k to 250Mbps Flow Control Supports Flow Control for Full duplex and Back Pressure for Half duplex System Log Supports System log record and remote system...

Page 11: ...system quick installation Package Contents Please refer to the package content list below to verify them against the checklist 16 10 100TX 2 10 100 1000T Mini GBIC Combo w X Ring L2 Managed Industrial Switch x 1 Pluggable Terminal Block x 1 User Manual CD ROM x 1 Mounting plate x 2 RJ 45 to DB9 Female cable x 1 Compare the contents of the industrial switch with the standard checklist above If any ...

Page 12: ...installation Physical Dimensions 16 1 0 100TX 2 1 0 100 1000T Mini GBIC Combo w X Ring L2 M anaged Industrial Switch dimensions W x H x D are 72mm x 152mm x 105mm Front Panel The front panel of the 16 10 100TX 2 10 100 1000T Mini GBIC Combo w X Ring L2 Managed Industrial Switch is shown as below Front Panel of the industrial switch ...

Page 13: ... Switch has one terminal block connector with six contacts Top Panel of the industrial switch Warning Airflow around the switch must be unrestricted To prevent the switch from overheating there must be the following minimum clearances Top and bottom 2 0 in 50 8 mm Sides 2 0 in 50 8 mm Front 2 0 in 50 8 mm ...

Page 14: ...er inputs R M Green The industrial switch is the master device of the X Ring group Off The industrial switch is not the master device of the X Ring group PWR1 Green Power 1 is active Off Power 1 is inactive PWR2 Green Power 2 is active Off Power 2 is inactive Fault depends on the Fault Relay Alarm configuration Red Power or Ethernet port failure occurs Off No failure occurs P1 P16 Green Upper LED ...

Page 15: ...000T Green Upper LED Connected to network Blinking Upper LED Networking is active Off Upper LED Not connected to network Green Lower LED The port is operating at speed of 1000M Off Lower LED The port is disconnected or operates at speed of 10 100M P17 P18 Link Active 100 1000 SFP Green SFP port is connected to network Blinking Networking is active Off Not connected to network ...

Page 16: ...illustrations below for straight through and crossover cable schema 10 100Base TX Pinouts Pin Number Assignment 1 Tx 2 Tx 3 Rx 6 Rx Note and signs represent the polarity of the wires that make up each wire pair The table below shows the 10Base T 100Base TX MDI and MDI X port pinouts Pin Number MDI X Signal Name MDI Signal Name 1 Receive Data plus RD Transmit Data plus TD 2 Receive Data minus RD Tr...

Page 17: ... below describes the gigabit Ethernet RJ 45 pinouts Pin Signal name Description 1 BI_DA Bi directional pair A 2 BI_DA Bi directional pair A 3 BI_DB Bi directional pair B 4 BI_DC Bi directional pair C 5 BI_DC Bi directional pair C 6 BI_DB Bi directional pair B 7 BI_DD Bi directional pair D 8 BI_DD Bi directional pair D ...

Page 18: ...7 10 100 1000Base T Cable Schema The following two figures illustrate the 10 100 1000Base T cable schema Straight Through Cable Schema Crossover Cable Schema ...

Page 19: ...s They are used for connecting to the network segment with single or multi mode fiber You can choose the appropriate SFP t ransceiver t o pl ug i nto t he S FP s ocket T hen us e pr oper multi mode or single mode fiber cable according to that transceiver Note The particular SFP Copper Combo port is deemed to be a single port that either the SFP or Copper port works the SFP and Copper ports can t b...

Page 20: ... transceiver and the LC cable please follow the steps shown below First insert the transceiver into the SFP slot Notice that the triangle mark indicates the bottom of the slot Insert transceiver into the SFP slot Transceiver Inserted ...

Page 21: ...10 Second insert LC connector of the fiber cable into the transceiver LC connector to the transceiver ...

Page 22: ... please follow the steps below First press down the latches and pull the LC connector out of the transceiver Press down the latches to remove the LC connector Second push down the metal loop and pull out the transceiver by the handle Pull the transceiver out of the slot ...

Page 23: ...ts Please follow the steps below to insert the power wire 1 Insert the positive and negative wires into the V and V contacts on the terminal block connector 2 Tighten the wire clamp screws to prevent the DC wires from loosing ...

Page 24: ...s the picture shows below Inserting the wires it will detect the fault status which the power is failure or port link failure for managed model and form an open circuit Note The wire gauge for the terminal block should be in the range between 12 24 AWG Insert the wires into the fault alarm contacts No 3 4 ...

Page 25: ... on the industrial switch when out of factory If not please refer to the following steps to secure the DIN rail clip on the switch 1 Use the included screws to secure the DIN rail clip on the industrial switch 2 To remove the DIN rail clip reverse step 1 Rear Side of the Switch DIN Rail Clip ...

Page 26: ...l 1 First position the rear side of the switch directly in front of the DIN rail Make sure the top of the clip hooks over the top of the DIN rail 2 Push the unit downward 3 Check the DIN Rail clip is tightly fixed on the DIN rail 4 To remove the industrial switch from the track reverse the steps above ...

Page 27: ... follow the steps below 1 Remove the DIN rail clip 2 Prepare the two wall mount plates and six screws included 3 Align the screw holes bewteen the wall mount plates and the unit as the figure illustrated 4 Secure the plates to the unit with the accompanying screws ...

Page 28: ...r Inputs section for k nowing t he i nformation a bout h ow t o w ire t he power T he power LE D on t he Industrial switch will light up Please refer to the LED Indicators section for indication of LED lights 5 Prepare the twisted pair straight through Category 5 cable for Ethernet connection 6 Insert one side of RJ 45 cable category 5 into the Industrial switch Ethernet port RJ 45 port and anothe...

Page 29: ...nnector Attach the RS 232 connector to PC or terminal and the RJ 45 connector to the console port of the switch The connected terminal or PC must support the terminal emulation program Pin Assignment DB9 Connector RJ 45 Connector NC 1 O range White 2 2 O range 3 3 G reen White NC 4 B lue 5 5 Blue White NC 6 G reen NC 7 B rown White NC 8 B rown ...

Page 30: ...efault characteristics of the console port Baud Rate 9600 bps Data Bits 8 Parity none Stop Bit 1 Flow control None The settings of communication parameters After finishing the parameter settings click OK button When the blank screen shows up press Enter key to bring out the login prompt Key in root default value for both User name and Password use Enter key to switch then press Enter key and the M...

Page 31: ...terface CLI Management The system supports the console management CLI command After you log in on to the system you will see a command prompt To enter CLI management interface type in enable command CLI command interface ...

Page 32: ...EXEC Enter the enable command while in User EXEC mode switch Enter disable to exit The privileged command is the advanced mode Use this mode to Display advanced function status Save configuration Global Configuration Enter the configure command while in privileged EXEC mode switch config To exit to privileged EXEC mode enter exit or end Use this mode to configure those parameters that are going to...

Page 33: ...figure parameters for the switch and Ethernet ports Commands Set List User EXEC E Privileged EXEC P Global configuration G VLAN database V Interface configuration I System Commands Set Commands Level Description Example show config E Show switch configuration switch show config show terminal P Show console information switch show terminal write memory P Save user configuration into permanent memor...

Page 34: ...mation of switch switch show ip no ip dhcp G Disable DHCP client function of switch switch config no ip dhcp reload G Halt and perform a cold restart switch config reload default G Restore to default switch config default admin username Username G Changes a login username maximum 10 words switch config admin username xxxxxx admin password Password G Specifies a password maximum 10 words switch con...

Page 35: ...ation P Show configuration of DHCP server switch show dhcpserver configuration show dhcpserver clients P Show client entries of DHCP server switch show dhcpserver clients show dhcpserver ip binding P Show IP Binding information of DHCP server switch show dhcpserver ip binding no dhcpserver G Disable DHCP server function switch config no dhcpserver security enable G Enable IP security function swit...

Page 36: ... of operation for Fast Ethernet switch config interface fastEthernet 2 switch config if duplex full speed 10 100 1000 auto I Use the speed configuration command to specify the speed mode of operation for Fast Ethernet the speed can t be set to 1000 if the port isn t a giga port switch config interface fastEthernet 2 switch config if speed 100 no flowcontrol I Disable flow control of interface swit...

Page 37: ...nd multicast frame switch config interface fastEthernet 2 switch config if bandwidth type broadcast multicast bandwidth type broadcast only I Set interface ingress limit frame type to only accept broadcast frame switch config interface fastEthernet 2 switch config if bandwidth type broadcast only bandwidth in Value I Set interface input bandwidth Rate Range is from 100 kbps to 102400 kbps or to 25...

Page 38: ...e fastEthernet 2 switch config if show interface configuration show interface status I show interface actual status switch config interface fastEthernet 2 config if show interface status show interface accounting I show interface statistic counter switch config interface fastEthernet 2 config if show interface accounting no accounting I Clear interface accounting information switch config interfac...

Page 39: ...oup 1 1 4 lacp workp 2 or switch config aggregator group 2 1 4 3 lacp workp 3 aggregator group GroupID Port list nolacp G Assign a static trunk group GroupID 1 3 Port list Member port list This parameter could be a port range ex 1 4 or a port list separate by a comma ex 2 3 6 switch config aggregator group 1 2 4 nolacp or switch config aggregator group 1 3 1 2 nolacp show aggregator P Show the inf...

Page 40: ...grpid GroupID port PortNumbers V Add new port based VALN switch vlan vlan port based grpname test grpid 2 port 2 4 or switch vlan vlan port based grpname test grpid 2 port 2 3 4 show vlan GroupID or show vlan V Show VLAN information switch vlan show vlan 23 no vlan group GroupID V Delete port base group ID switch vlan no vlan group 2 IEEE 802 1Q VLAN vlan 8021q name GroupName vid VID V Change the ...

Page 41: ...g 6 8 vlan 8021q trunk PortNumber access link untag UntaggedVID V Assign a access link for VLAN by trunk group switch vlan vlan 8021q trunk 3 access link untag 33 vlan 8021q trunk PortNumber trunk link tag TaggedVID List V Assign a trunk link for VLAN by trunk group switch vlan vlan 8021q trunk 3 trunk link tag 2 3 6 99 or switch vlan vlan 8021q trunk 3 trunk link tag 3 20 vlan 8021q trunk PortNum...

Page 42: ...witch If a switch does not receive a bridge protocol data unit BPDU message from the root switch within this interval it recomputed the Spanning Tree Protocol STP topology switch config spanning tree max age 15 spanning tree hello time seconds G Use the spanning tree hello time global configuration command to specify the interval between hello bridge protocol data units BPDUs switch config spannin...

Page 43: ... Tree Protocol STP calculations In the event of a loop spanning tree considers the path cost when selecting an interface to place into the forwarding state switch config interface fastEthernet 2 switch config if stp path cost 20 stp path priority Port Priority I Use the spanning tree port priority interface configuration command to configure a port priority that is used when two switches tie for p...

Page 44: ...witch show spanning tree no spanning tree G Disable spanning tree switch config no spanning tree QOS Commands Set Commands Level Description Example qos policy weighted fair strict G Select QOS policy scheduling switch config qos policy weighted fair qos prioritytype port based cos only tos only cos first tos first G Setting of QOS priority type switch config qos prioritytype qos priority portbase...

Page 45: ...ails of an IGMP configuration switch show igmp configuration show igmp multi P Displays the details of an IGMP snooping entries switch show igmp multi no igmp G Disable IGMP snooping function switch config no igmp no igmp query G Disable IGMP query switch no igmp query Mac Filter Table Commands Set Commands Level Description Example mac address table static hwaddr MAC I Configure MAC address table...

Page 46: ...e filter switch config no mac address table filter hwaddr 000012348678 no mac address table G Remove dynamic entry of MAC address table switch config no mac address table SNMP Commands Set Commands Level Description Example snmp system name System Name G Set SNMP agent system name switch config snmp system name l2switch snmp system location System Location G Set SNMP agent system location switch c...

Page 47: ...Privacy Password G Configure the userprofile for SNMPV3 agent Privacy password could be empty switch config snmpv3 user test01 group G1 password AuthPW PrivPW snmpv3 access context name Context Name group Group Name security level NoAuthNoPriv AuthNoP riv AuthPriv match rule Exact Prifix views Read View Name Write View Name Notify View Name G Configure the access table of SNMPV3 agent switch confi...

Page 48: ...t switch config no snmpv3 user Test no snmpv3 access context name Context Name group Group Name security level NoAuthNoPriv AuthNoP riv AuthPriv match rule Exact Prifix views Read View Name Write View Name Notify View Name G Remove specified access table of SNMPv3 agent switch config no snmpv3 access context name Test group G1 security level AuthPr iv match rule Exact views V1 V1 V1 no snmpv3 mibv...

Page 49: ...or information switch show monitor show monitor I Show port monitor information switch config interface fastEthernet 2 switch config if show monitor no monitor I Disable source port of monitor function switch config interface fastEthernet 2 switch config if no monitor 802 1x Commands Set Commands Level Description Example 8021x enable G Use the 802 1x global configuration command to enable 802 1x ...

Page 50: ...nge the shared key value switch config 8021x system sharekey 123456 8021x system nasid words G Use the 802 1x system nasid global configuration command to change the NAS ID switch config 8021x system nasid test1 8021x misc quietperiod sec G Use the 802 1x misc quiet period global configuration command to specify the quiet period value of the switch switch config 8021x misc quietperiod 10 8021x mis...

Page 51: ...thperiod sec G Use the 802 1x misc reauth period global configuration command to set the reauth period switch config 8021x misc reauthperiod 3000 8021x portstate disable reject accept authorize I Use the 802 1x port state interface configuration command to set the state of the selected port switch config interface fastethernet 3 switch config if 8021x portstate accept show 8021x E Displays a summa...

Page 52: ...og SMTP and Event Commands Set Commands Level Description Example systemlog ip IP address G Set System log server IP address switch config systemlog ip 192 168 1 100 systemlog mode client server both G Specified the log mode switch config systemlog mode both show systemlog E Displays system log Switch show systemlog show systemlog P Show system log client server information switch show systemlog n...

Page 53: ...ent authentication failure both event ring topology change Systemlog SMTP Both G Set X ring topology changed event type switch config event ring topology change both event systemlog Link UP Link Down Both I Set port event for system log switch config interface fastethernet 3 switch config if event systemlog both event smtp Link UP Link Down Both I Set port event for SMTP switch config interface fa...

Page 54: ...ple sntp enable G Enable SNTP function switch config sntp enable sntp daylight G Enable daylight saving time if SNTP function is inactive this command can t be applied switch config sntp daylight sntp daylight period Start time End time G Set period of daylight saving time if SNTP function is inactive this command can t be applied Parameter format yyyymmdd hh mm switch config sntp daylight period ...

Page 55: ...no sntp daylight G Disable daylight saving time switch config no sntp daylight X ring Commands Set Commands Level Description Example ring enable G Enable X ring switch config ring enable ring master G Enable ring master switch config ring master ring couplering G Enable couple ring switch config ring couplering ring dualhoming G Enable dual homing switch config ring dualhoming ring ringport 1st R...

Page 56: ... Show the information of X Ring switch show ring no ring G Disable X ring switch config no ring no ring master G Disable ring master switch config no ring master no ring couplering G Disable couple ring switch config no ring couplering no ring dualhoming G Disable dual homing switch config no ring dualhoming ...

Page 57: ...t supports Internet Explorer 6 0 or later version And it is applied for Java Applets for reducing network bandwidth consumption enhance access speed and present an easy viewing screen Preparing for Web Management Before using the web management install the industrial switch on the network and make sure that any one o f t he PCs on t he n etwork c an c onnect w ith t he i ndustrial s witch through ...

Page 58: ...word The default user name and password are the same as root 5 Press Enter or click OK button and then t he home screen of the W eb based management appears Note The web interface features shown below are introduced by the screen displays of 16 10 100 TX 2 10 100 1000T Mini GBIC Combo model Unless specifically identified the all of the screen displays are suitable for the models in this manual ...

Page 59: ...re version Kernel Version Displays the kernel software version MAC Address Displays the unique hardware address assigned by manufacturer default And than click Apply button System information interface IP Configuration User can configure the IP Settings and DHCP client function in here DHCP Client Enable or disable the D HCP c lient function When DHCP c lient function is enabled the industrial swi...

Page 60: ... the user does not need to assign the subnet mask Gateway Assign the network gateway for the industrial switch The default gateway is 192 168 16 254 DNS1 Assign the primary DNS IP address DNS2 Assign the secondary DNS IP address And then click Apply IP configuration interface DHCP Server System configuration DHCP is the abbreviation of Dynamic Host Configuration Protocol that is a protocol for ass...

Page 61: ...ge For example dynamic IP is in the range between 192 168 1 100 192 168 1 200 In contrast 192 168 1 100 is the Low IP address High IP Address Type in an IP address High IP address is the end of the dynamic IP range For example dynamic IP is in the range between 192 168 1 100 192 168 1 200 In contrast 192 168 1 200 is the High IP address Subnet Mask Type in the subnet mask of the IP configuration G...

Page 62: ...ent information and displays it at this tab DHCP Client Entries interface DHCP Server Port and IP Bindings Assign the dynamic IP address to the port When the device is connecting to the port and asks for IP assigning the system will assign the IP address that has been assigned before to the connected device ...

Page 63: ...ions that allow user to update the switch firmware Before updating make sure the TFTP server is ready and t he firmware image is located on the TFTP server 1 TFTP Server IP Address Type in your TFTP server IP 2 Firmware File Name Type in the name of firmware image 3 Click Apply ...

Page 64: ...back the flash image 1 TFTP Server IP Address Type in the TFTP server IP 2 Restore File Name Type in the correct file name for restoring 3 Click Apply Restore Configuration interface TFTP Backup Configuration You can save the current configuration from flash ROM to TFTP server for restoring later 1 TFTP Server IP Address Type in the TFTP server IP 2 Backup File Name Type in the file name 3 Click A...

Page 65: ... is set as Client Only the system event log will only be sent to the client which has logged in on the switch When Syslog Client Mode is set as Server Only the system log will only be sent to the syslog server and you have to type the IP address in the Sysylog Server IP Address column If the Syslog Client Mode is set as Both the system log will be sent to client and server 4 Click Reload to refres...

Page 66: ...lert function 2 SMTP Server IP Set up the mail server IP address when Email Alert enabled this function will then be available 3 Sender Type in an alias of the switch in complete email address format e g switch101 123 com to identify where the event log comes from 4 Authentication Tick the checkbox to ena ble t his f unction configuring the em ail account and password for authentication when Email...

Page 67: ... u p i n SMTP Server IP Address column 6 Password Type in the password to the email account 7 Confirm Password Reconfirm the password 8 Rcpt e mail Address 1 6 You can also assign up to 6 e mail accounts to receive the alert 9 Click Apply button SMTP Configuration interface System Event Log Event Configuration When the Syslog SMTP checkbox is marked the event log will be sent to system log ...

Page 68: ...cutes warm s tart th e s ystem w ill issue a log event Authentication Failure When the SNMP authentication fails the system will issue a log event X ring topology change When the X ring topology has changed the system will issue a log event Port event selection Also be fore the dr op down m enu i tems are available t he Syslog Client Mode column on t he S yslog Configuration tab and the E mail A l...

Page 69: ...58 Event Configuration interface ...

Page 70: ...P Configuration You can configure the SNTP Simple Network Time Protocol settings The SNTP allows you to synchronize switch clocks in the Internet 1 SNTP Client Enable disable SNTP function to get the time from the SNTP server 2 Daylight Saving Time Enable disable daylight saving time function When daylight saving time is enabled you need to configure the daylight saving time period 3 UTC Timezone ...

Page 71: ...ylight 5 hours 7 am CST Central Standard MDT Mountain Daylight 6 hours 6 am MST Mountain Standard PDT Pacific Daylight 7 hours 5 am PST Pacific Standard ADT Alaskan Daylight 8 hours 4 am ALA Alaskan Standard 9 hours 3 am HAW Hawaiian Standard 10 hours 2 am Nome Alaska 11 hours 1 am CET Central European FWT French Winter MET Middle European MEWT Middle European Winter SWT Swedish Winter 1 hour 1 pm...

Page 72: ...m Standard USSR Zone 9 10 hours 10 pm IDLE International Date Line NZST New Zealand Standard NZT New Zealand 12 hours Midnight 4 SNTP Sever URL Set the SNTP server IP address 5 Switch Timer Displays the current time of the switch 6 Daylight Saving Period Set up the Daylight Saving beginning time and Daylight Saving ending time Both will be different in every year 7 Daylight Saving Offset mins For ...

Page 73: ...dresses among Security IP1 IP10 will be allowed to access this switch via HTTP service Enable Telnet Server When this c heckbox i s t icked t he I P ad dresses among Security IP1 IP10 will be allowed to access this switch via telnet service Security IP 1 10 The s ystem al lows t he us er t o a ssign u p t o 10 specific I P addresses for access security Only these 10 IP addresses can access and man...

Page 74: ...gin user name and password for the management security issue 1 User name Type in the new user name The default is root 2 Password Type in the new password The default is root 3 Confirm password Re type the new password 4 And then click Apply User Authentication interface ...

Page 75: ...ket The counts of transmitting bad packets including undersize less than 64 bytes oversize CRC Align errors fragments and jabbers packets via this port Rx Good Packet The counts of receiving good packets via this port Rx Bad Packet The counts of receiving good packets including undersize less than 64 bytes oversize CRC error fragments and jabbers via this port Tx Abort Packet The aborted packet wh...

Page 76: ...en you set it as Force you have to assign the speed and duplex mode manually 4 Speed It is available for selecting when the Negotiation column is set as Force When the Negotiation column is set as Auto this column is read only 5 Duplex It is available for selecting when the Negotiation column is set as Force When the Negotiation column is set as Auto this column is read only 6 Flow Control Set flo...

Page 77: ...any access from the device which connects to this port will be blocked unless the MAC address of the device is included in the static MAC address table See the segment of Static MAC Table 8 Click Apply button to make the configuration effective Port Control interface Port Trunk The Li nk Aggregation C ontrol P rotocol LACP pr ovides a s tandardized m eans for ...

Page 78: ...greement with its member ports first When disabled the trunk group is a static trunk group The advantage of having the LACP disabled is that a port joins the trunk group without any handshaking with its member ports But member ports won t know that they should be aggregated together to form a logic trunk group 4 Work ports This column field allows the user to type in the total number of active por...

Page 79: ...ator Setting interface four ports are added to the left field with LACP enabled Aggregator Information When you have setup the aggregator setting with LACP disabled you will see the local static trunk group information in here 1 Group Key Displays the trunk group ID 2 Port Member Displays the members of this static trunk group ...

Page 80: ...e the tick mark to the port and click Apply button the port state activity will change to Passive Active The port automatically sends LACP protocol packets Passive The por t d oes no t aut omatically s end L ACP protocol pac kets a nd responds only if it receives LACP protocol packets from the opposite device NOTE 1 A link having either two active LACP nodes or one active node can perform dynamic ...

Page 81: ...oring The Port mirroring is a method for monitoring traffic in switched networks Traffic through ports can be monitored by one specific port which means traffic goes in or out monitored source ports will be duplicated into mirroring destination port ...

Page 82: ... Or use one of two ports for monitoring RX traffic only and the other one for TX traffic only The user can connect the mirroring port to LAN analyzer or Netxray Source Port The ports that the user wants to monitor All monitored port traffic will be copied to mirroring destination port The user can select multiple source ports by ticking the RX or TX checkboxes to be monitored And then click Apply ...

Page 83: ...the frame type you want to filter The frame types have 4 opt ions for s electing All Broadcast Multicast Flooded Unicast Broadcast Multicast and Broadcast only The four frame type options are for ingress frames limitation The egress rate only supports All type All the ports support port ingress and egress rate control For example assume port ...

Page 84: ... rate 500Kbps The switch performs the ingress rate by packet counter to meet the specified rate Ingress Enter the port effective ingress rate The default value is 0 Egress Enter the port effective egress rate The default value is 0 And then click Apply to make the settings taken effect ...

Page 85: ...h physically The switch supports Port based and 802 1Q tagged based VLAN The de fault configuration of VLAN operation mode is Disable VLAN Configuration interface VLAN configuration Port based VLAN Packets c an g o a mong onl y m embers o f t he s ame V LAN g roup N ote al l unselected ports are treated as belonging to another single VLAN If the port based VLAN enabled the VLAN tagging is ignored ...

Page 86: ...e packet s uch as t he protocol VLAN Port Based interface Pull down the selection item and focus on Port Based then press Apply button to set the VLAN Operation Mode in Port Based mode Click Add button to add a new VLAN group The maximum VLAN group is up to 64 VLAN groups ...

Page 87: ...LAN ID Add the port number having selected into the right field to group these members to be a VLAN group or remove any of them listed in the right field from the VLAN And then click Apply button to have the settings taken effect You will see the VLAN displays ...

Page 88: ...ete button to delete the VLAN Use Edit button to modify group name VLAN ID or add remove the members of the existing VLAN group NOTE Remember to execute the Save C onfiguration action ot herwise t he n ew configuration will lose when switch power off ...

Page 89: ...change V LAN c onfiguration information with other devices GVRP i s bas ed on GARP Generic A ttribute R egistration P rotocol a pr otocol t hat defines procedures by which end s tations and switches in a local area network LAN can register and de register attributes such as identifiers or addresses with each other Every end station and switch thus has a current record of all the other end stations...

Page 90: ...o group ports by assigning the same Tagged VID across 2 or more switches Having set this link type the Tagged VID column field is available but the Untagged VID column field is disabled Hybrid Link Both Access Link and Trunk Link are available Untagged VID Assign the untagged frame VID Tagged VID Assign the tagged frame VID Click Apply button to have the settings taken effect You can see the link ...

Page 91: ...80 802 1Q VLAN interface Group Configuration Edit the existing VLAN Group Select the VLAN group in the table list Click Edit button ...

Page 92: ...81 Group Configuration interface You can modify the VLAN group name and VLAN ID Group Configuration interface Click Apply button ...

Page 93: ...as the root If the value is changed the user must reboot the switch The value must be a multiple of 4096 according to the protocol standard rule Max Age 6 40 The num ber o f s econds a switch waits without r eceiving Spanning tree P rotocol c onfiguration m essages be fore a ttempting a reconfiguration Enter a value between 6 through 40 Hello Time 1 10 The t ime t hat c ontrols the switch to send ...

Page 94: ...by priority in LAN Enter a number 0 through 240 the port of the highest value will be blocked The value of priority must be the multiple of 16 Admin P2P Some of the rapid state transactions that are possible within RSTP are dependent upon whether the port concerned can only be connected to exactly one other bridge i e it is served by a point to point LAN segment or can be connected to two or more ...

Page 95: ...bridging loop in the network To configure the port as an edge port set the port to True status Admin Non Stp The por t includes the S TP mathematic calculation True is n ot including STP m athematic calculation False is including the S TP m athematic calculation Click Apply RSTP Port Configuration interface ...

Page 96: ... the new community string set and remove the unwanted community string String Fill the name string RO Read o nly Enables r equests ac companied by t his community string to display MIB object information RW Read w rite Enables r equests ac companied by t his community string to display MIB object information and to set MIB objects Click Add button To r emove t he c ommunity s tring s elect the com...

Page 97: ... t he s tation an d a c ommunity s tring To d efine a management station as a trap m anager assign an I P a ddress enter the SNMP community strings and select the SNMP trap version IP Address Enter the IP address of the trap manager Community Enter the community string Trap Version Select the SNMP trap version type v1 or v2c Click Add button To remove the community string select the community stri...

Page 98: ...f context table Click Add to add context name Click Remove to remove the unwanted context name User Profile Configure SNMP v3 user table User ID Set up the user name Authentication Password Set up the authentication password Privacy Password Set up the private password Click Add to add the context name Click Remove to remove the unwanted context name ...

Page 99: ...88 SNMP V3 configuration interface Group Table Configure SNMP v3 group table ...

Page 100: ...up Security Level Set up the access level Context Match Rule Select the context match rule Read View Name Set up the read view Write View Name Set up the write view Notify View Name Set up the notify view Click Add to add the context name Click Remove to remove the unwanted context name MIBview Table Configure MIB view table ViewName Set up the name Sub Oid Tree Fill the Sub OID Type Select the ty...

Page 101: ... the system processing 1 frame of the lowest queue 2 frames of the low queue 4 frames o f t he m iddle q ueue a nd 8 frames o f the hi gh q ueue w ill be processed at the same time in accordance with the 8 4 2 1 policy rule Use a strict priority scheme Always the higher queue will be processed first except the higher queue is empty Priority Type There are 5 priority type selections available Port ...

Page 102: ...uration interface Port based Priority Configure the priority level for each port With the drop down selection item of Priority Type above being selected as Port based this control item will then be available to set ...

Page 103: ...n selection item of Priority Type above being selected as TOS only TOS first this control item will then be available to set the queuing policy for each port TOS priority The system provides 0 63 TOS priority level Each level has 4 types of p riority High Middle Low and L owest T he d efault v alue i s Lowest priority f or each level When the IP packet is received the system will check the TOS lev...

Page 104: ...st b elonging t o t he multicast group Report A message sent by a host to the querier to indicate that the host wants to be or is a member of a given group indicated in the report message Leave Group A message sent by a host to the querier to indicate that the host has quit being a member of a specific multicast group The switch supports IP multicast You can enable IGMP protocol via setting the IG...

Page 105: ... are called working switches and their two member ports are called working ports When the failure o f n etwork c onnection occurs t he backup p ort w ill automatically become a working port to recover from the failure The switch supports the function and interface for setting the switch as the ring master or slave mode The ring master can negotiate and place command to other switches in the X Ring...

Page 106: ...ter switch one of its two Ring Ports is the blocking port and another one is the forwarding port Once its forwarding port fails the system will automatically upgrade its blocking port to be the forwarding port of the Ring Master switch Enable Coupling Ring To e nable t he coupling r ing f unction Marking t he check box to enable the coupling ring function Coupling port Assign the member port which...

Page 107: ...g function enable user must disable the RSTP The X Ring function and RSTP function cannot exist in a switch at the same time Remember to execute the Save Configuration action ot herwise t he new configuration will lose when switch power off ...

Page 108: ... 1X function you can configure the parameters of this function IEEE 802 1x Protocol Enable or disable 802 1x protocol Radius Server IP Assign the RADIUS Server IP address Server Port Set the UDP destination port for authentication requests to the specified RADIUS Server Accounting Port Set the UDP destination port for accounting requests to the specified RADIUS Server Shared Key Set an encryption ...

Page 109: ...quired to be held in the unauthorized state Accept The specified port is required to be held in the Authorized state Authorized The specified p ort i s s et t o t he A uthorized or Unauthorized s tate i n accordance w ith t he out come o f an authentication exchange bet ween t he Supplicant and the authentication server Disable When di sabled the s pecified por t works w ithout complying w ith 802...

Page 110: ... EAPOL PDU during an authentication session Supplicant Timeout Set the per iod o f t ime t he s witch w aits for a s upplicant response to an EAP request Server Timeout Set the period of time the switch waits for a server response to an authentication request Max Requests Set the n umber o f au thentication t hat m ust t ime out bef ore authentication fails and the authentication session ends ...

Page 111: ...itch s address table regardless of whether the device is physically connected to the switch This saves the switch from having to re learn a device s MAC address when the disconnected or powered off device is active on the network again You can add modify delete a static MAC address Add the Static MAC Address You can add static MAC address in the switch MAC table here MAC Address Enter the MAC addr...

Page 112: ...t to delete the MAC address from filtering table select the MAC address and click Delete button Static MAC Addresses interface MAC Filtering By filtering MAC address the switch can easily filter the pre configured MAC address and reduce the un safety You can add and delete filtering MAC address ...

Page 113: ...ng table select the MAC address and click Delete button All MAC Addresses You can view the port that connected device s MAC address and the related devices MAC address 1 Select the port 2 The selected port of static dynamic MAC address information will be displayed in here 3 Click Clear MAC Table to clear the current port static MAC address information on screen ...

Page 114: ...Default Reset switch to default configuration Click Reset button to reset all configurations to the default value Factory Default interface Save Configuration Save all configurations that y ou hav e made i n t he s ystem To ensure t he all ...

Page 115: ... w ill be saved Click Save to s ave t he al l c onfiguration t o t he flash memory Save Configuration interface System Reboot Reboot the switch in software reset Click Reboot to reboot the system System Reboot interface ...

Page 116: ...nnection does not exceed 100 meters 328 feet Diagnosing LED Indicators To assist in identifying problems the switch can be easily m onitored t hrough pan el i ndicators w hich describe c ommon pr oblems the user may encounter and where the user can find possible solutions If the power indicator does not light up when the power cord is plugged in you may have a pr oblem with power cord Then check f...

Page 117: ...EE 802 1ab LLDP Protocol CSMA CD Transfer Rate 14 880 pps for 10Base T Ethernet port 148 800 pps for 100Base TX FX Fast Ethernet port 1 488 000 pps for Gigabit Fiber Ethernet port MAC Address 8K MAC entries Packet Buffer 1Mbits LED Per unit Power Green Power 1 Green Power 2 Green Fault Red Master Green 16 10 100TX Link Activity Green Full duplex Collision Yellow Gigabit Copper Link Activity Green ...

Page 118: ...and removable terminal block Power Consumption 11 2 Watts Relay Alarm Provides one relay output for port breakdown power failure Alarm relay current carrying ability 1A DC24V Installation DIN rail and Wall mount design Operating Temp 10o C to 60o C standard model 40o C to 75o C wide operating temperature model Operating Humidity 5 to 95 Non condensing Storage Temperature 40o C to 85o C Case Dimens...

Page 119: ...00 4 5 Surge CE EN61000 4 6 CS CE EN61000 4 8 CE EN61000 6 2 CE EN61000 6 4 Safety UL 60950 1 ISA 12 12 01 UL Class 1 Division 2 Stability Testing IEC60068 2 32 Free fall IEC60068 2 27 Shock IEC60068 2 6 Vibration ...

Reviews: